Built motion from commit 06a208af.|2.6.26
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
index 5e6d10f..dc7e9b4 100644 (file)
@@ -15,4 +15,4 @@
 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                        *
 // *                                                                       *
 // *************************************************************************
-var _0x7500=['oauth2Claims','oauth2/','set','decode','payload','iss','audience','isAfter','unix','CloudProvider','findOne','then','refresh_token','data6','decryptString','data3','POST','data5','access_token','update','catch','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','intervals','bind','findAll','all','inspect','error','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','exports','lodash','crypto','moment','request-promise','util','../../components/encryptor','../../config/environment','../../config/logger','../../config/schedule/cloud-provider','../../mysqldb','redis','defaults','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','profile','email','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','offline_access','/authorize','map','type','push','data7','join','Outlook365','replace','{TENANT_ID}','data2','code','id_token','from','stringify','toString','randomBytes','hex','data1','response_type','data4','response_mode','scope','state','nonce','prompt','key','value'];(function(_0x25eb70,_0x13e0a4){var _0x28d574=function(_0x39d05b){while(--_0x39d05b){_0x25eb70['push'](_0x25eb70['shift']());}};_0x28d574(++_0x13e0a4);}(_0x7500,0x156));var _0x0750=function(_0x17d9e3,_0x1f969c){_0x17d9e3=_0x17d9e3-0x0;var _0x14192d=_0x7500[_0x17d9e3];return _0x14192d;};'use strict';var _=require(_0x0750('0x0'));var crypto=require(_0x0750('0x1'));var jwt=require('jsonwebtoken');var moment=require(_0x0750('0x2'));var Redis=require('ioredis');var rp=require(_0x0750('0x3'));var util=require(_0x0750('0x4'));var encryptor=require(_0x0750('0x5'));var config=require(_0x0750('0x6'));var logger=require(_0x0750('0x7'))('api');var schedule=require(_0x0750('0x8'));var db=require(_0x0750('0x9'))['db'];config[_0x0750('0xa')]=_[_0x0750('0xb')](config[_0x0750('0xa')],{'host':_0x0750('0xc'),'port':0x18eb});var redis=new Redis(config[_0x0750('0xa')]);var MICROSOFT_AUTH_URL=_0x0750('0xd');var AZURE_AUTH_SCOPES={'Outlook365':[_0x0750('0xe'),_0x0750('0xf'),_0x0750('0x10'),'offline_access',_0x0750('0x11'),_0x0750('0x12'),_0x0750('0x13')],'Dynamics365':[_0x0750('0xe'),_0x0750('0x14')]};var MICROSOFT_AUTH_ENDPOINT=_0x0750('0x15');var MICROSOFT_TOKEN_ENDPOINT='/token';var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x32cf29){var _0xd0c51=_[_0x0750('0x16')](AZURE_AUTH_SCOPES[_0x32cf29[_0x0750('0x17')]]);if(_0x32cf29[_0x0750('0x17')]==='Dynamics365')_0xd0c51[_0x0750('0x18')](_0x32cf29[_0x0750('0x19')]+'/.default');return _0xd0c51[_0x0750('0x1a')]('\x20');}function getAccessTokenScope(_0x1032a4){if(_0x1032a4[_0x0750('0x17')]===_0x0750('0x1b'))return _0x0750('0x11');if(_0x1032a4[_0x0750('0x17')]==='Dynamics365')return _0x1032a4[_0x0750('0x19')]+'/.default';}function generateMicrosoftAuthorizationUrl(_0x5f0599,_0x420c18){var _0x530f9b=MICROSOFT_AUTH_URL[_0x0750('0x1c')](_0x0750('0x1d'),_0x5f0599[_0x0750('0x1e')]);var _0x57fd6b=[_0x0750('0x1f'),_0x0750('0x20')];var _0x5b5650=Buffer[_0x0750('0x21')](JSON[_0x0750('0x22')]({'id':_0x420c18}))[_0x0750('0x23')]('base64');var _0x5b8307=crypto[_0x0750('0x24')](0x10)['toString'](_0x0750('0x25'));var _0x50f22f=getAuthorizationScopes(_0x5f0599);var _0x32d202=[{'key':'client_id','value':_0x5f0599[_0x0750('0x26')]},{'key':_0x0750('0x27'),'value':encodeURIComponent(_0x57fd6b[_0x0750('0x1a')]('\x20'))},{'key':'redirect_uri','value':_0x5f0599[_0x0750('0x28')]},{'key':_0x0750('0x29'),'value':'form_post'},{'key':_0x0750('0x2a'),'value':encodeURIComponent(_0x50f22f)},{'key':_0x0750('0x2b'),'value':_0x5b5650},{'key':_0x0750('0x2c'),'value':_0x5b8307},{'key':_0x0750('0x2d'),'value':'login'}];var _0x51a655=_0x530f9b+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0x0750('0x16')](_0x32d202,function(_0x2f34aa){return _0x2f34aa[_0x0750('0x2e')]+'='+_0x2f34aa[_0x0750('0x2f')];})['join']('&');_0x5f0599[_0x0750('0x30')]={'issuer':_0x530f9b[_0x0750('0x1c')](_0x0750('0x31'),''),'audience':_0x5f0599[_0x0750('0x26')],'state':_0x5b5650,'nonce':_0x5b8307};redis[_0x0750('0x32')](_0x5b5650,JSON[_0x0750('0x22')](_0x5f0599));return _0x51a655;}function isValidIdToken(_0x50933c,_0x22f2e0){try{var _0x5339a8=jwt[_0x0750('0x33')](_0x50933c,{'complete':!![]});var _0x3a39b6=_0x5339a8[_0x0750('0x34')];if(_0x3a39b6[_0x0750('0x35')]!==_0x22f2e0['issuer'])return![];if(_0x3a39b6['aud']!==_0x22f2e0[_0x0750('0x36')])return![];if(_0x3a39b6['nonce']!==_0x22f2e0[_0x0750('0x2c')])return![];if(moment()[_0x0750('0x37')](moment[_0x0750('0x38')](_0x3a39b6['exp'])))return![];return!![];}catch(_0x43dccd){throw _0x43dccd;}}function refreshOauth2MicrosoftAccessToken(_0x18cdff){return Promise['resolve']()['then'](function(){if(_0x18cdff['data3'])return _0x18cdff;return db[_0x0750('0x39')][_0x0750('0x3a')]({'where':{'id':_0x18cdff['id']},'raw':!![]});})[_0x0750('0x3b')](function(_0x434c78){var _0x2c649f={'grant_type':_0x0750('0x3c'),'refresh_token':_0x434c78[_0x0750('0x3d')],'scope':getAccessTokenScope(_0x434c78),'redirect_uri':_0x434c78['data4'],'client_id':_0x434c78['data1'],'client_secret':encryptor[_0x0750('0x3e')](_0x434c78[_0x0750('0x3f')])};var _0x2790e2={'method':_0x0750('0x40'),'uri':MICROSOFT_AUTH_URL['replace'](_0x0750('0x1d'),_0x434c78['data2'])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x2c649f,'json':!![]};return rp(_0x2790e2);})[_0x0750('0x3b')](function(_0x2c43ee){_0x18cdff[_0x0750('0x41')]=_0x2c43ee[_0x0750('0x42')];_0x18cdff[_0x0750('0x3d')]=_0x2c43ee[_0x0750('0x3c')];return db[_0x0750('0x39')][_0x0750('0x43')]({'data5':_0x18cdff[_0x0750('0x41')],'data6':_0x18cdff['data6']},{'where':{'id':_0x18cdff['id']}});})['then'](function(){return _0x18cdff;})[_0x0750('0x44')](function(_0x4a3f63){logger['error'](_0x0750('0x45'),_0x18cdff['id'],_0x4a3f63);});}function getOauth2MicrosoftAccessToken(_0x30729,_0x49c528){var _0x7cbcb3={'grant_type':'authorization_code','code':_0x30729,'scope':getAccessTokenScope(_0x49c528),'redirect_uri':_0x49c528[_0x0750('0x28')],'client_id':_0x49c528[_0x0750('0x26')],'client_secret':encryptor['decryptString'](_0x49c528[_0x0750('0x3f')])};var _0x22a77c={'method':'POST','uri':MICROSOFT_AUTH_URL[_0x0750('0x1c')](_0x0750('0x1d'),_0x49c528[_0x0750('0x1e')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x7cbcb3,'json':!![]};return rp(_0x22a77c);}function startRefreshInterval(_0x54402d){var _0x210412=schedule[_0x0750('0x46')];if(_0x210412[_0x54402d['id']])clearInterval(_0x210412[_0x54402d['id']]);_0x210412[_0x54402d['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x0750('0x47')](this,{'id':_0x54402d['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule['intervals']=_0x210412;}function startAllRefreshIntervals(){return db[_0x0750('0x39')][_0x0750('0x48')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x0750('0x3b')](function(_0x10e9be){var _0xaa9dfd=_0x10e9be[_0x0750('0x16')](function(_0x27912a){return refreshOauth2MicrosoftAccessToken(_0x27912a)[_0x0750('0x3b')](function(_0x177c48){startRefreshInterval(_0x177c48);});});return Promise[_0x0750('0x49')](_0xaa9dfd);})[_0x0750('0x44')](function(_0x110145){var _0x3810bb=_0x110145?util[_0x0750('0x4a')](_0x110145,{'showHidden':![],'depth':null}):'';logger[_0x0750('0x4b')](_0x0750('0x4c'),_0x3810bb);});}module[_0x0750('0x4d')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};
\ No newline at end of file
+var _0xf78e=['../../mysqldb','defaults','redis','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','email','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','/authorize','map','type','Dynamics365','push','/.default','join','Outlook365','data7','replace','{TENANT_ID}','data2','code','stringify','toString','base64','hex','response_mode','form_post','scope','state','nonce','prompt','login','value','data1','set','decode','payload','issuer','aud','audience','unix','resolve','then','data3','CloudProvider','data6','data4','decryptString','data5','error','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code','POST','intervals','findAll','all','catch','inspect','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','exports','crypto','jsonwebtoken','ioredis','request-promise','util','../../components/encryptor','../../config/schedule/cloud-provider'];(function(_0x3a6efd,_0x2a5102){var _0x487b9a=function(_0x104f89){while(--_0x104f89){_0x3a6efd['push'](_0x3a6efd['shift']());}};_0x487b9a(++_0x2a5102);}(_0xf78e,0x83));var _0xef78=function(_0x13fe35,_0x537cee){_0x13fe35=_0x13fe35-0x0;var _0x4875a8=_0xf78e[_0x13fe35];return _0x4875a8;};'use strict';var _=require('lodash');var crypto=require(_0xef78('0x0'));var jwt=require(_0xef78('0x1'));var moment=require('moment');var Redis=require(_0xef78('0x2'));var rp=require(_0xef78('0x3'));var util=require(_0xef78('0x4'));var encryptor=require(_0xef78('0x5'));var config=require('../../config/environment');var logger=require('../../config/logger')('api');var schedule=require(_0xef78('0x6'));var db=require(_0xef78('0x7'))['db'];config['redis']=_[_0xef78('0x8')](config[_0xef78('0x9')],{'host':_0xef78('0xa'),'port':0x18eb});var redis=new Redis(config['redis']);var MICROSOFT_AUTH_URL=_0xef78('0xb');var AZURE_AUTH_SCOPES={'Outlook365':[_0xef78('0xc'),'profile',_0xef78('0xd'),_0xef78('0xe'),_0xef78('0xf'),'https://outlook.office.com/POP.AccessAsUser.All',_0xef78('0x10')],'Dynamics365':[_0xef78('0xc'),'offline_access']};var MICROSOFT_AUTH_ENDPOINT=_0xef78('0x11');var MICROSOFT_TOKEN_ENDPOINT='/token';var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x29bc53){var _0xf974e6=_[_0xef78('0x12')](AZURE_AUTH_SCOPES[_0x29bc53[_0xef78('0x13')]]);if(_0x29bc53[_0xef78('0x13')]===_0xef78('0x14'))_0xf974e6[_0xef78('0x15')](_0x29bc53['data7']+_0xef78('0x16'));return _0xf974e6[_0xef78('0x17')]('\x20');}function getAccessTokenScope(_0x3c1624){if(_0x3c1624[_0xef78('0x13')]===_0xef78('0x18'))return _0xef78('0xf');if(_0x3c1624[_0xef78('0x13')]==='Dynamics365')return _0x3c1624[_0xef78('0x19')]+_0xef78('0x16');}function generateMicrosoftAuthorizationUrl(_0x47d54a,_0xbb3e33){var _0x2d531d=MICROSOFT_AUTH_URL[_0xef78('0x1a')](_0xef78('0x1b'),_0x47d54a[_0xef78('0x1c')]);var _0xcf4ef8=[_0xef78('0x1d'),'id_token'];var _0xbfa00b=Buffer['from'](JSON[_0xef78('0x1e')]({'id':_0xbb3e33}))[_0xef78('0x1f')](_0xef78('0x20'));var _0x1b1582=crypto['randomBytes'](0x10)['toString'](_0xef78('0x21'));var _0x2caf3a=getAuthorizationScopes(_0x47d54a);var _0x3ca762=[{'key':'client_id','value':_0x47d54a['data1']},{'key':'response_type','value':encodeURIComponent(_0xcf4ef8['join']('\x20'))},{'key':'redirect_uri','value':_0x47d54a['data4']},{'key':_0xef78('0x22'),'value':_0xef78('0x23')},{'key':_0xef78('0x24'),'value':encodeURIComponent(_0x2caf3a)},{'key':_0xef78('0x25'),'value':_0xbfa00b},{'key':_0xef78('0x26'),'value':_0x1b1582},{'key':_0xef78('0x27'),'value':_0xef78('0x28')}];var _0x34e9ac=_0x2d531d+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0xef78('0x12')](_0x3ca762,function(_0x2a159a){return _0x2a159a['key']+'='+_0x2a159a[_0xef78('0x29')];})[_0xef78('0x17')]('&');_0x47d54a['oauth2Claims']={'issuer':_0x2d531d[_0xef78('0x1a')]('oauth2/',''),'audience':_0x47d54a[_0xef78('0x2a')],'state':_0xbfa00b,'nonce':_0x1b1582};redis[_0xef78('0x2b')](_0xbfa00b,JSON['stringify'](_0x47d54a));return _0x34e9ac;}function isValidIdToken(_0x20d0e9,_0x334704){try{var _0x407595=jwt[_0xef78('0x2c')](_0x20d0e9,{'complete':!![]});var _0x382b61=_0x407595[_0xef78('0x2d')];if(_0x382b61['iss']!==_0x334704[_0xef78('0x2e')])return![];if(_0x382b61[_0xef78('0x2f')]!==_0x334704[_0xef78('0x30')])return![];if(_0x382b61[_0xef78('0x26')]!==_0x334704[_0xef78('0x26')])return![];if(moment()['isAfter'](moment[_0xef78('0x31')](_0x382b61['exp'])))return![];return!![];}catch(_0x507d60){throw _0x507d60;}}function refreshOauth2MicrosoftAccessToken(_0x1c5e90){return Promise[_0xef78('0x32')]()[_0xef78('0x33')](function(){if(_0x1c5e90[_0xef78('0x34')])return _0x1c5e90;return db[_0xef78('0x35')]['findOne']({'where':{'id':_0x1c5e90['id']},'raw':!![]});})[_0xef78('0x33')](function(_0x431630){var _0x4b17d8={'grant_type':'refresh_token','refresh_token':_0x431630[_0xef78('0x36')],'scope':getAccessTokenScope(_0x431630),'redirect_uri':_0x431630[_0xef78('0x37')],'client_id':_0x431630[_0xef78('0x2a')],'client_secret':encryptor[_0xef78('0x38')](_0x431630[_0xef78('0x34')])};var _0x483199={'method':'POST','uri':MICROSOFT_AUTH_URL[_0xef78('0x1a')](_0xef78('0x1b'),_0x431630[_0xef78('0x1c')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x4b17d8,'json':!![]};return rp(_0x483199);})['then'](function(_0x456fee){_0x1c5e90['data5']=_0x456fee['access_token'];_0x1c5e90[_0xef78('0x36')]=_0x456fee['refresh_token'];return db[_0xef78('0x35')]['update']({'data5':_0x1c5e90[_0xef78('0x39')],'data6':_0x1c5e90[_0xef78('0x36')]},{'where':{'id':_0x1c5e90['id']}});})[_0xef78('0x33')](function(){return _0x1c5e90;})['catch'](function(_0x26b9cb){logger[_0xef78('0x3a')](_0xef78('0x3b'),_0x1c5e90['id'],_0x26b9cb);});}function getOauth2MicrosoftAccessToken(_0x31ee23,_0x11491a){var _0x39e6f={'grant_type':_0xef78('0x3c'),'code':_0x31ee23,'scope':getAccessTokenScope(_0x11491a),'redirect_uri':_0x11491a[_0xef78('0x37')],'client_id':_0x11491a['data1'],'client_secret':encryptor[_0xef78('0x38')](_0x11491a[_0xef78('0x34')])};var _0x1a6fb1={'method':_0xef78('0x3d'),'uri':MICROSOFT_AUTH_URL[_0xef78('0x1a')](_0xef78('0x1b'),_0x11491a[_0xef78('0x1c')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x39e6f,'json':!![]};return rp(_0x1a6fb1);}function startRefreshInterval(_0x34bb4a){var _0x252581=schedule[_0xef78('0x3e')];if(_0x252581[_0x34bb4a['id']])clearInterval(_0x252581[_0x34bb4a['id']]);_0x252581[_0x34bb4a['id']]=setInterval(refreshOauth2MicrosoftAccessToken['bind'](this,{'id':_0x34bb4a['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule['intervals']=_0x252581;}function startAllRefreshIntervals(){return db[_0xef78('0x35')][_0xef78('0x3f')]({'where':{'data6':{'$ne':null}},'raw':!![]})['then'](function(_0x15502e){var _0x5d3d68=_0x15502e[_0xef78('0x12')](function(_0x41dbdd){return refreshOauth2MicrosoftAccessToken(_0x41dbdd)[_0xef78('0x33')](function(_0x22e85a){startRefreshInterval(_0x22e85a);});});return Promise[_0xef78('0x40')](_0x5d3d68);})[_0xef78('0x41')](function(_0x3e939d){var _0x18b9c9=_0x3e939d?util[_0xef78('0x42')](_0x3e939d,{'showHidden':![],'depth':null}):'';logger[_0xef78('0x3a')](_0xef78('0x43'),_0x18b9c9);});}module[_0xef78('0x44')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};
\ No newline at end of file