2d3e032932d438e37ae7ecbde4630be1a794a12b
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x77e3=['response_mode','form_post','scope','state','prompt','login','key','value','oauth2Claims','oauth2/','set','decode','payload','iss','issuer','aud','nonce','isAfter','unix','exp','resolve','then','data3','CloudProvider','findOne','refresh_token','data6','decryptString','{TENANT_ID}','data5','access_token','catch','error','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code','POST','intervals','bind','findAll','all','inspect','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','crypto','jsonwebtoken','ioredis','util','../../components/encryptor','../../config/environment','../../config/logger','api','../../config/schedule/cloud-provider','../../mysqldb','redis','defaults','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','profile','email','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','/authorize','/token','map','type','Dynamics365','/.default','join','Outlook365','replace','data2','code','id_token','from','stringify','toString','randomBytes','hex','client_id','data1','response_type','redirect_uri','data4'];(function(_0x3d8128,_0x137d87){var _0x7495b=function(_0x10cf91){while(--_0x10cf91){_0x3d8128['push'](_0x3d8128['shift']());}};_0x7495b(++_0x137d87);}(_0x77e3,0x176));var _0x377e=function(_0x402950,_0x52d699){_0x402950=_0x402950-0x0;var _0x643b00=_0x77e3[_0x402950];return _0x643b00;};'use strict';var _=require('lodash');var crypto=require(_0x377e('0x0'));var jwt=require(_0x377e('0x1'));var moment=require('moment');var Redis=require(_0x377e('0x2'));var rp=require('request-promise');var util=require(_0x377e('0x3'));var encryptor=require(_0x377e('0x4'));var config=require(_0x377e('0x5'));var logger=require(_0x377e('0x6'))(_0x377e('0x7'));var schedule=require(_0x377e('0x8'));var db=require(_0x377e('0x9'))['db'];config[_0x377e('0xa')]=_[_0x377e('0xb')](config['redis'],{'host':'localhost','port':0x18eb});var redis=new Redis(config[_0x377e('0xa')]);var MICROSOFT_AUTH_URL=_0x377e('0xc');var AZURE_AUTH_SCOPES={'Outlook365':[_0x377e('0xd'),_0x377e('0xe'),_0x377e('0xf'),_0x377e('0x10'),_0x377e('0x11'),'https://outlook.office.com/POP.AccessAsUser.All',_0x377e('0x12')],'Dynamics365':[_0x377e('0xd'),_0x377e('0x10')]};var MICROSOFT_AUTH_ENDPOINT=_0x377e('0x13');var MICROSOFT_TOKEN_ENDPOINT=_0x377e('0x14');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x1979b3){var _0x832956=_[_0x377e('0x15')](AZURE_AUTH_SCOPES[_0x1979b3[_0x377e('0x16')]]);if(_0x1979b3[_0x377e('0x16')]===_0x377e('0x17'))_0x832956['push'](_0x1979b3['data7']+_0x377e('0x18'));return _0x832956[_0x377e('0x19')]('\x20');}function getAccessTokenScope(_0x16f11f){if(_0x16f11f[_0x377e('0x16')]===_0x377e('0x1a'))return _0x377e('0x11');if(_0x16f11f[_0x377e('0x16')]===_0x377e('0x17'))return _0x16f11f['data7']+_0x377e('0x18');}function generateMicrosoftAuthorizationUrl(_0x4e6b12,_0x392f5a){var _0x2794a4=MICROSOFT_AUTH_URL[_0x377e('0x1b')]('{TENANT_ID}',_0x4e6b12[_0x377e('0x1c')]);var _0x150e18=[_0x377e('0x1d'),_0x377e('0x1e')];var _0x45d496=Buffer[_0x377e('0x1f')](JSON[_0x377e('0x20')]({'id':_0x392f5a}))[_0x377e('0x21')]('base64');var _0x306176=crypto[_0x377e('0x22')](0x10)[_0x377e('0x21')](_0x377e('0x23'));var _0xe15cc4=getAuthorizationScopes(_0x4e6b12);var _0x456a9f=[{'key':_0x377e('0x24'),'value':_0x4e6b12[_0x377e('0x25')]},{'key':_0x377e('0x26'),'value':encodeURIComponent(_0x150e18[_0x377e('0x19')]('\x20'))},{'key':_0x377e('0x27'),'value':_0x4e6b12[_0x377e('0x28')]},{'key':_0x377e('0x29'),'value':_0x377e('0x2a')},{'key':_0x377e('0x2b'),'value':encodeURIComponent(_0xe15cc4)},{'key':_0x377e('0x2c'),'value':_0x45d496},{'key':'nonce','value':_0x306176},{'key':_0x377e('0x2d'),'value':_0x377e('0x2e')}];var _0x27f380=_0x2794a4+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0x377e('0x15')](_0x456a9f,function(_0x4305c5){return _0x4305c5[_0x377e('0x2f')]+'='+_0x4305c5[_0x377e('0x30')];})['join']('&');_0x4e6b12[_0x377e('0x31')]={'issuer':_0x2794a4[_0x377e('0x1b')](_0x377e('0x32'),''),'audience':_0x4e6b12[_0x377e('0x25')],'state':_0x45d496,'nonce':_0x306176};redis[_0x377e('0x33')](_0x45d496,JSON[_0x377e('0x20')](_0x4e6b12));return _0x27f380;}function isValidIdToken(_0x2fc3a7,_0xa37d1b){try{var _0x1b864c=jwt[_0x377e('0x34')](_0x2fc3a7,{'complete':!![]});var _0x33b461=_0x1b864c[_0x377e('0x35')];if(_0x33b461[_0x377e('0x36')]!==_0xa37d1b[_0x377e('0x37')])return![];if(_0x33b461[_0x377e('0x38')]!==_0xa37d1b['audience'])return![];if(_0x33b461['nonce']!==_0xa37d1b[_0x377e('0x39')])return![];if(moment()[_0x377e('0x3a')](moment[_0x377e('0x3b')](_0x33b461[_0x377e('0x3c')])))return![];return!![];}catch(_0x2e6ee2){throw _0x2e6ee2;}}function refreshOauth2MicrosoftAccessToken(_0x1408b7){return Promise[_0x377e('0x3d')]()[_0x377e('0x3e')](function(){if(_0x1408b7[_0x377e('0x3f')])return _0x1408b7;return db[_0x377e('0x40')][_0x377e('0x41')]({'where':{'id':_0x1408b7['id']},'raw':!![]});})[_0x377e('0x3e')](function(_0x301ce5){var _0x7bb6e8={'grant_type':_0x377e('0x42'),'refresh_token':_0x301ce5[_0x377e('0x43')],'scope':getAccessTokenScope(_0x301ce5),'redirect_uri':_0x301ce5['data4'],'client_id':_0x301ce5[_0x377e('0x25')],'client_secret':encryptor[_0x377e('0x44')](_0x301ce5[_0x377e('0x3f')])};var _0x2a31da={'method':'POST','uri':MICROSOFT_AUTH_URL['replace'](_0x377e('0x45'),_0x301ce5['data2'])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x7bb6e8,'json':!![]};return rp(_0x2a31da);})[_0x377e('0x3e')](function(_0x614b6){_0x1408b7[_0x377e('0x46')]=_0x614b6[_0x377e('0x47')];_0x1408b7[_0x377e('0x43')]=_0x614b6[_0x377e('0x42')];return db[_0x377e('0x40')]['update']({'data5':_0x1408b7['data5'],'data6':_0x1408b7[_0x377e('0x43')]},{'where':{'id':_0x1408b7['id']}});})[_0x377e('0x3e')](function(){return _0x1408b7;})[_0x377e('0x48')](function(_0x444f35){logger[_0x377e('0x49')](_0x377e('0x4a'),_0x1408b7['id'],_0x444f35);});}function getOauth2MicrosoftAccessToken(_0x2ebdc2,_0x4de7c2){var _0x3dc314={'grant_type':_0x377e('0x4b'),'code':_0x2ebdc2,'scope':getAccessTokenScope(_0x4de7c2),'redirect_uri':_0x4de7c2[_0x377e('0x28')],'client_id':_0x4de7c2[_0x377e('0x25')],'client_secret':encryptor['decryptString'](_0x4de7c2[_0x377e('0x3f')])};var _0xfd8731={'method':_0x377e('0x4c'),'uri':MICROSOFT_AUTH_URL['replace'](_0x377e('0x45'),_0x4de7c2[_0x377e('0x1c')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x3dc314,'json':!![]};return rp(_0xfd8731);}function startRefreshInterval(_0x3e20b7){var _0xf04b94=schedule[_0x377e('0x4d')];if(_0xf04b94[_0x3e20b7['id']])clearInterval(_0xf04b94[_0x3e20b7['id']]);_0xf04b94[_0x3e20b7['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x377e('0x4e')](this,{'id':_0x3e20b7['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule['intervals']=_0xf04b94;}function startAllRefreshIntervals(){return db[_0x377e('0x40')][_0x377e('0x4f')]({'where':{'data6':{'$ne':null}},'raw':!![]})['then'](function(_0x4aaab0){var _0x4b2e4a=_0x4aaab0[_0x377e('0x15')](function(_0x2b419a){return refreshOauth2MicrosoftAccessToken(_0x2b419a)[_0x377e('0x3e')](function(_0x57d03e){startRefreshInterval(_0x57d03e);});});return Promise[_0x377e('0x50')](_0x4b2e4a);})[_0x377e('0x48')](function(_0x36a326){var _0x15fc17=_0x36a326?util[_0x377e('0x51')](_0x36a326,{'showHidden':![],'depth':null}):'';logger['error'](_0x377e('0x52'),_0x15fc17);});}module['exports']={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};