Built motion from commit 10af8726.|2.6.34
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
index 0de1cc1..0f7d9bd 100644 (file)
@@ -15,4 +15,4 @@
 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                        *
 // *                                                                       *
 // *************************************************************************
-var _0x1311=['api','../../config/schedule/cloud-provider','../../mysqldb','redis','defaults','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','profile','email','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','offline_access','/authorize','/token','map','type','push','data7','/.default','Outlook365','replace','{TENANT_ID}','data2','code','id_token','from','stringify','randomBytes','toString','hex','client_id','data1','response_type','redirect_uri','data4','response_mode','scope','state','prompt','login','value','join','oauth2Claims','oauth2/','decode','payload','iss','issuer','aud','audience','unix','exp','resolve','data3','CloudProvider','findOne','refresh_token','data6','decryptString','POST','then','data5','access_token','update','catch','error','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code','intervals','bind','findAll','all','inspect','exports','lodash','jsonwebtoken','moment','request-promise','util','../../config/environment','../../config/logger'];(function(_0x360ddb,_0x3da266){var _0x2cb1b7=function(_0x33548e){while(--_0x33548e){_0x360ddb['push'](_0x360ddb['shift']());}};_0x2cb1b7(++_0x3da266);}(_0x1311,0x1df));var _0x1131=function(_0x206ff0,_0x2d9052){_0x206ff0=_0x206ff0-0x0;var _0x3e7a34=_0x1311[_0x206ff0];return _0x3e7a34;};'use strict';var _=require(_0x1131('0x0'));var crypto=require('crypto');var jwt=require(_0x1131('0x1'));var moment=require(_0x1131('0x2'));var Redis=require('ioredis');var rp=require(_0x1131('0x3'));var util=require(_0x1131('0x4'));var encryptor=require('../../components/encryptor');var config=require(_0x1131('0x5'));var logger=require(_0x1131('0x6'))(_0x1131('0x7'));var schedule=require(_0x1131('0x8'));var db=require(_0x1131('0x9'))['db'];config[_0x1131('0xa')]=_[_0x1131('0xb')](config[_0x1131('0xa')],{'host':_0x1131('0xc'),'port':0x18eb});var redis=new Redis(config['redis']);var MICROSOFT_AUTH_URL=_0x1131('0xd');var AZURE_AUTH_SCOPES={'Outlook365':['openid',_0x1131('0xe'),_0x1131('0xf'),'offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All',_0x1131('0x10'),_0x1131('0x11')],'Dynamics365':['openid',_0x1131('0x12')]};var MICROSOFT_AUTH_ENDPOINT=_0x1131('0x13');var MICROSOFT_TOKEN_ENDPOINT=_0x1131('0x14');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x388b6b){var _0x4c9969=_[_0x1131('0x15')](AZURE_AUTH_SCOPES[_0x388b6b['type']]);if(_0x388b6b[_0x1131('0x16')]==='Dynamics365')_0x4c9969[_0x1131('0x17')](_0x388b6b[_0x1131('0x18')]+_0x1131('0x19'));return _0x4c9969['join']('\x20');}function getAccessTokenScope(_0x3dacf6){if(_0x3dacf6[_0x1131('0x16')]===_0x1131('0x1a'))return'https://outlook.office365.com/IMAP.AccessAsUser.All';if(_0x3dacf6['type']==='Dynamics365')return _0x3dacf6[_0x1131('0x18')]+'/.default';}function generateMicrosoftAuthorizationUrl(_0x32727f,_0x38c296){var _0x39e255=MICROSOFT_AUTH_URL[_0x1131('0x1b')](_0x1131('0x1c'),_0x32727f[_0x1131('0x1d')]);var _0x21bcbe=[_0x1131('0x1e'),_0x1131('0x1f')];var _0x3e4bbc=Buffer[_0x1131('0x20')](JSON[_0x1131('0x21')]({'id':_0x38c296}))['toString']('base64');var _0x43219a=crypto[_0x1131('0x22')](0x10)[_0x1131('0x23')](_0x1131('0x24'));var _0x30832=getAuthorizationScopes(_0x32727f);var _0x1cdb20=[{'key':_0x1131('0x25'),'value':_0x32727f[_0x1131('0x26')]},{'key':_0x1131('0x27'),'value':encodeURIComponent(_0x21bcbe['join']('\x20'))},{'key':_0x1131('0x28'),'value':_0x32727f[_0x1131('0x29')]},{'key':_0x1131('0x2a'),'value':'form_post'},{'key':_0x1131('0x2b'),'value':encodeURIComponent(_0x30832)},{'key':_0x1131('0x2c'),'value':_0x3e4bbc},{'key':'nonce','value':_0x43219a},{'key':_0x1131('0x2d'),'value':_0x1131('0x2e')}];var _0x2e5d9e=_0x39e255+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0x1131('0x15')](_0x1cdb20,function(_0x5c94f0){return _0x5c94f0['key']+'='+_0x5c94f0[_0x1131('0x2f')];})[_0x1131('0x30')]('&');_0x32727f[_0x1131('0x31')]={'issuer':_0x39e255[_0x1131('0x1b')](_0x1131('0x32'),''),'audience':_0x32727f[_0x1131('0x26')],'state':_0x3e4bbc,'nonce':_0x43219a};redis['set'](_0x3e4bbc,JSON[_0x1131('0x21')](_0x32727f));return _0x2e5d9e;}function isValidIdToken(_0x584ecb,_0x337bb4){try{var _0x53bc0e=jwt[_0x1131('0x33')](_0x584ecb,{'complete':!![]});var _0x2fbb63=_0x53bc0e[_0x1131('0x34')];if(_0x2fbb63[_0x1131('0x35')]!==_0x337bb4[_0x1131('0x36')])return![];if(_0x2fbb63[_0x1131('0x37')]!==_0x337bb4[_0x1131('0x38')])return![];if(_0x2fbb63['nonce']!==_0x337bb4['nonce'])return![];if(moment()['isAfter'](moment[_0x1131('0x39')](_0x2fbb63[_0x1131('0x3a')])))return![];return!![];}catch(_0x786d12){throw _0x786d12;}}function refreshOauth2MicrosoftAccessToken(_0x8f478f){return Promise[_0x1131('0x3b')]()['then'](function(){if(_0x8f478f[_0x1131('0x3c')])return _0x8f478f;return db[_0x1131('0x3d')][_0x1131('0x3e')]({'where':{'id':_0x8f478f['id']},'raw':!![]});})['then'](function(_0x3183da){var _0x2adc57={'grant_type':_0x1131('0x3f'),'refresh_token':_0x3183da[_0x1131('0x40')],'scope':getAccessTokenScope(_0x3183da),'redirect_uri':_0x3183da[_0x1131('0x29')],'client_id':_0x3183da['data1'],'client_secret':encryptor[_0x1131('0x41')](_0x3183da['data3'])};var _0x1bb7e5={'method':_0x1131('0x42'),'uri':MICROSOFT_AUTH_URL[_0x1131('0x1b')](_0x1131('0x1c'),_0x3183da[_0x1131('0x1d')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x2adc57,'json':!![]};return rp(_0x1bb7e5);})[_0x1131('0x43')](function(_0x127882){_0x8f478f[_0x1131('0x44')]=_0x127882[_0x1131('0x45')];_0x8f478f[_0x1131('0x40')]=_0x127882[_0x1131('0x3f')];return db[_0x1131('0x3d')][_0x1131('0x46')]({'data5':_0x8f478f['data5'],'data6':_0x8f478f['data6']},{'where':{'id':_0x8f478f['id']}});})[_0x1131('0x43')](function(){return _0x8f478f;})[_0x1131('0x47')](function(_0xaafe57){logger[_0x1131('0x48')](_0x1131('0x49'),_0x8f478f['id'],_0xaafe57);});}function getOauth2MicrosoftAccessToken(_0x14a750,_0x270058){var _0x2ca52f={'grant_type':_0x1131('0x4a'),'code':_0x14a750,'scope':getAccessTokenScope(_0x270058),'redirect_uri':_0x270058[_0x1131('0x29')],'client_id':_0x270058[_0x1131('0x26')],'client_secret':encryptor[_0x1131('0x41')](_0x270058[_0x1131('0x3c')])};var _0x23abca={'method':'POST','uri':MICROSOFT_AUTH_URL[_0x1131('0x1b')](_0x1131('0x1c'),_0x270058[_0x1131('0x1d')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x2ca52f,'json':!![]};return rp(_0x23abca);}function startRefreshInterval(_0x4a9d3b){var _0x39b31c=schedule[_0x1131('0x4b')];if(_0x39b31c[_0x4a9d3b['id']])clearInterval(_0x39b31c[_0x4a9d3b['id']]);_0x39b31c[_0x4a9d3b['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x1131('0x4c')](this,{'id':_0x4a9d3b['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x1131('0x4b')]=_0x39b31c;}function startAllRefreshIntervals(){return db['CloudProvider'][_0x1131('0x4d')]({'where':{'data6':{'$ne':null}},'raw':!![]})['then'](function(_0x1fab51){var _0x42e774=_0x1fab51[_0x1131('0x15')](function(_0x39ec37){return refreshOauth2MicrosoftAccessToken(_0x39ec37)['then'](function(_0x496d41){startRefreshInterval(_0x496d41);});});return Promise[_0x1131('0x4e')](_0x42e774);})[_0x1131('0x47')](function(_0x1d27f2){var _0x2386d8=_0x1d27f2?util[_0x1131('0x4f')](_0x1d27f2,{'showHidden':![],'depth':null}):'';logger[_0x1131('0x48')]('[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s',_0x2386d8);});}module[_0x1131('0x50')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};
\ No newline at end of file
+var _0x0d30=['oauth2Claims','oauth2/','data1','payload','iss','issuer','aud','isAfter','unix','exp','resolve','then','data3','findOne','refresh_token','POST','{TENANT_ID}','data2','data5','data6','CloudProvider','update','catch','error','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code','intervals','inspect','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','lodash','jsonwebtoken','moment','ioredis','request-promise','util','../../components/encryptor','../../config/environment','../../config/logger','../../config/schedule/cloud-provider','../../mysqldb','defaults','redis','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','profile','email','https://outlook.office365.com/IMAP.AccessAsUser.All','offline_access','/authorize','/token','type','Dynamics365','push','data7','join','Outlook365','/.default','replace','stringify','toString','base64','randomBytes','hex','client_id','redirect_uri','data4','response_mode','form_post','scope','state','nonce','prompt','map','value'];(function(_0x1cd034,_0x2e7c4a){var _0x2e7e20=function(_0x2e5a03){while(--_0x2e5a03){_0x1cd034['push'](_0x1cd034['shift']());}};_0x2e7e20(++_0x2e7c4a);}(_0x0d30,0x194));var _0x00d3=function(_0x25b439,_0xb20872){_0x25b439=_0x25b439-0x0;var _0xbf2210=_0x0d30[_0x25b439];return _0xbf2210;};'use strict';var _=require(_0x00d3('0x0'));var crypto=require('crypto');var jwt=require(_0x00d3('0x1'));var moment=require(_0x00d3('0x2'));var Redis=require(_0x00d3('0x3'));var rp=require(_0x00d3('0x4'));var util=require(_0x00d3('0x5'));var encryptor=require(_0x00d3('0x6'));var config=require(_0x00d3('0x7'));var logger=require(_0x00d3('0x8'))('api');var schedule=require(_0x00d3('0x9'));var db=require(_0x00d3('0xa'))['db'];config['redis']=_[_0x00d3('0xb')](config[_0x00d3('0xc')],{'host':_0x00d3('0xd'),'port':0x18eb});var redis=new Redis(config['redis']);var MICROSOFT_AUTH_URL=_0x00d3('0xe');var AZURE_AUTH_SCOPES={'Outlook365':[_0x00d3('0xf'),_0x00d3('0x10'),_0x00d3('0x11'),'offline_access',_0x00d3('0x12'),'https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send'],'Dynamics365':[_0x00d3('0xf'),_0x00d3('0x13')]};var MICROSOFT_AUTH_ENDPOINT=_0x00d3('0x14');var MICROSOFT_TOKEN_ENDPOINT=_0x00d3('0x15');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x4fdff6){var _0x278068=_['map'](AZURE_AUTH_SCOPES[_0x4fdff6[_0x00d3('0x16')]]);if(_0x4fdff6[_0x00d3('0x16')]===_0x00d3('0x17'))_0x278068[_0x00d3('0x18')](_0x4fdff6[_0x00d3('0x19')]+'/.default');return _0x278068[_0x00d3('0x1a')]('\x20');}function getAccessTokenScope(_0x46c9e6){if(_0x46c9e6[_0x00d3('0x16')]===_0x00d3('0x1b'))return _0x00d3('0x12');if(_0x46c9e6[_0x00d3('0x16')]==='Dynamics365')return _0x46c9e6[_0x00d3('0x19')]+_0x00d3('0x1c');}function generateMicrosoftAuthorizationUrl(_0x19819b,_0x4c56ac){var _0x17dca8=MICROSOFT_AUTH_URL[_0x00d3('0x1d')]('{TENANT_ID}',_0x19819b['data2']);var _0x2de926=['code','id_token'];var _0x53ca57=Buffer['from'](JSON[_0x00d3('0x1e')]({'id':_0x4c56ac}))[_0x00d3('0x1f')](_0x00d3('0x20'));var _0x2296cb=crypto[_0x00d3('0x21')](0x10)[_0x00d3('0x1f')](_0x00d3('0x22'));var _0x129c43=getAuthorizationScopes(_0x19819b);var _0x5a8e12=[{'key':_0x00d3('0x23'),'value':_0x19819b['data1']},{'key':'response_type','value':encodeURIComponent(_0x2de926[_0x00d3('0x1a')]('\x20'))},{'key':_0x00d3('0x24'),'value':_0x19819b[_0x00d3('0x25')]},{'key':_0x00d3('0x26'),'value':_0x00d3('0x27')},{'key':_0x00d3('0x28'),'value':encodeURIComponent(_0x129c43)},{'key':_0x00d3('0x29'),'value':_0x53ca57},{'key':_0x00d3('0x2a'),'value':_0x2296cb},{'key':_0x00d3('0x2b'),'value':'login'}];var _0x47c6c2=_0x17dca8+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0x00d3('0x2c')](_0x5a8e12,function(_0x58132c){return _0x58132c['key']+'='+_0x58132c[_0x00d3('0x2d')];})[_0x00d3('0x1a')]('&');_0x19819b[_0x00d3('0x2e')]={'issuer':_0x17dca8[_0x00d3('0x1d')](_0x00d3('0x2f'),''),'audience':_0x19819b[_0x00d3('0x30')],'state':_0x53ca57,'nonce':_0x2296cb};redis['set'](_0x53ca57,JSON['stringify'](_0x19819b));return _0x47c6c2;}function isValidIdToken(_0x4ff7c7,_0x779689){try{var _0x38f2b8=jwt['decode'](_0x4ff7c7,{'complete':!![]});var _0x3ec6a6=_0x38f2b8[_0x00d3('0x31')];if(_0x3ec6a6[_0x00d3('0x32')]!==_0x779689[_0x00d3('0x33')])return![];if(_0x3ec6a6[_0x00d3('0x34')]!==_0x779689['audience'])return![];if(_0x3ec6a6[_0x00d3('0x2a')]!==_0x779689[_0x00d3('0x2a')])return![];if(moment()[_0x00d3('0x35')](moment[_0x00d3('0x36')](_0x3ec6a6[_0x00d3('0x37')])))return![];return!![];}catch(_0x5ee298){throw _0x5ee298;}}function refreshOauth2MicrosoftAccessToken(_0x42c13e){return Promise[_0x00d3('0x38')]()[_0x00d3('0x39')](function(){if(_0x42c13e[_0x00d3('0x3a')])return _0x42c13e;return db['CloudProvider'][_0x00d3('0x3b')]({'where':{'id':_0x42c13e['id']},'raw':!![]});})[_0x00d3('0x39')](function(_0x498cd0){var _0xb5a18d={'grant_type':_0x00d3('0x3c'),'refresh_token':_0x498cd0['data6'],'scope':getAccessTokenScope(_0x498cd0),'redirect_uri':_0x498cd0[_0x00d3('0x25')],'client_id':_0x498cd0['data1'],'client_secret':encryptor['decryptString'](_0x498cd0[_0x00d3('0x3a')])};var _0x457336={'method':_0x00d3('0x3d'),'uri':MICROSOFT_AUTH_URL[_0x00d3('0x1d')](_0x00d3('0x3e'),_0x498cd0[_0x00d3('0x3f')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0xb5a18d,'json':!![]};return rp(_0x457336);})[_0x00d3('0x39')](function(_0x34c11a){_0x42c13e[_0x00d3('0x40')]=_0x34c11a['access_token'];_0x42c13e[_0x00d3('0x41')]=_0x34c11a[_0x00d3('0x3c')];return db[_0x00d3('0x42')][_0x00d3('0x43')]({'data5':_0x42c13e[_0x00d3('0x40')],'data6':_0x42c13e[_0x00d3('0x41')]},{'where':{'id':_0x42c13e['id']}});})[_0x00d3('0x39')](function(){return _0x42c13e;})[_0x00d3('0x44')](function(_0x243f0e){logger[_0x00d3('0x45')](_0x00d3('0x46'),_0x42c13e['id'],_0x243f0e);});}function getOauth2MicrosoftAccessToken(_0x1f168d,_0x53ba34){var _0xe89c21={'grant_type':_0x00d3('0x47'),'code':_0x1f168d,'scope':getAccessTokenScope(_0x53ba34),'redirect_uri':_0x53ba34['data4'],'client_id':_0x53ba34[_0x00d3('0x30')],'client_secret':encryptor['decryptString'](_0x53ba34[_0x00d3('0x3a')])};var _0x4e50df={'method':'POST','uri':MICROSOFT_AUTH_URL[_0x00d3('0x1d')](_0x00d3('0x3e'),_0x53ba34['data2'])+MICROSOFT_TOKEN_ENDPOINT,'form':_0xe89c21,'json':!![]};return rp(_0x4e50df);}function startRefreshInterval(_0x478dcc){var _0x266e94=schedule['intervals'];if(_0x266e94[_0x478dcc['id']])clearInterval(_0x266e94[_0x478dcc['id']]);_0x266e94[_0x478dcc['id']]=setInterval(refreshOauth2MicrosoftAccessToken['bind'](this,{'id':_0x478dcc['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x00d3('0x48')]=_0x266e94;}function startAllRefreshIntervals(){return db[_0x00d3('0x42')]['findAll']({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x00d3('0x39')](function(_0x5763d9){var _0x4bbce6=_0x5763d9[_0x00d3('0x2c')](function(_0x540317){return refreshOauth2MicrosoftAccessToken(_0x540317)[_0x00d3('0x39')](function(_0x34c84a){startRefreshInterval(_0x34c84a);});});return Promise['all'](_0x4bbce6);})[_0x00d3('0x44')](function(_0x50956b){var _0x459b53=_0x50956b?util[_0x00d3('0x49')](_0x50956b,{'showHidden':![],'depth':null}):'';logger[_0x00d3('0x45')](_0x00d3('0x4a'),_0x459b53);});}module['exports']={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};
\ No newline at end of file