2d7296b169094174274142d15b83c577409bf900
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x1cf7=['randomBytes','hex','data1','response_type','join','data4','response_mode','form_post','scope','state','prompt','login','key','value','oauth2Claims','oauth2/','decode','payload','iss','issuer','aud','audience','nonce','isAfter','unix','resolve','data3','CloudProvider','findOne','then','refresh_token','POST','data5','access_token','data6','catch','error','authorization_code','intervals','bind','findAll','map','inspect','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','exports','lodash','ioredis','request-promise','util','../../config/environment','api','../../config/schedule/cloud-provider','../../mysqldb','defaults','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','profile','email','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','/authorize','type','Dynamics365','push','data7','Outlook365','/.default','replace','{TENANT_ID}','data2','from','stringify','toString','base64'];(function(_0x310f48,_0x52fd82){var _0x14ccf7=function(_0x50339c){while(--_0x50339c){_0x310f48['push'](_0x310f48['shift']());}};_0x14ccf7(++_0x52fd82);}(_0x1cf7,0x15d));var _0x71cf=function(_0x566067,_0x3998ed){_0x566067=_0x566067-0x0;var _0x4bff03=_0x1cf7[_0x566067];return _0x4bff03;};'use strict';var _=require(_0x71cf('0x0'));var crypto=require('crypto');var jwt=require('jsonwebtoken');var moment=require('moment');var Redis=require(_0x71cf('0x1'));var rp=require(_0x71cf('0x2'));var util=require(_0x71cf('0x3'));var encryptor=require('../../components/encryptor');var config=require(_0x71cf('0x4'));var logger=require('../../config/logger')(_0x71cf('0x5'));var schedule=require(_0x71cf('0x6'));var db=require(_0x71cf('0x7'))['db'];config['redis']=_[_0x71cf('0x8')](config['redis'],{'host':_0x71cf('0x9'),'port':0x18eb});var redis=new Redis(config['redis']);var MICROSOFT_AUTH_URL=_0x71cf('0xa');var AZURE_AUTH_SCOPES={'Outlook365':[_0x71cf('0xb'),_0x71cf('0xc'),_0x71cf('0xd'),_0x71cf('0xe'),_0x71cf('0xf'),'https://outlook.office.com/POP.AccessAsUser.All',_0x71cf('0x10')],'Dynamics365':[_0x71cf('0xb'),_0x71cf('0xe')]};var MICROSOFT_AUTH_ENDPOINT=_0x71cf('0x11');var MICROSOFT_TOKEN_ENDPOINT='/token';var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x3f24ca){var _0x3ef07d=_['map'](AZURE_AUTH_SCOPES[_0x3f24ca[_0x71cf('0x12')]]);if(_0x3f24ca[_0x71cf('0x12')]===_0x71cf('0x13'))_0x3ef07d[_0x71cf('0x14')](_0x3f24ca[_0x71cf('0x15')]+'/.default');return _0x3ef07d['join']('\x20');}function getAccessTokenScope(_0x1fb605){if(_0x1fb605[_0x71cf('0x12')]===_0x71cf('0x16'))return _0x71cf('0xf');if(_0x1fb605[_0x71cf('0x12')]===_0x71cf('0x13'))return _0x1fb605[_0x71cf('0x15')]+_0x71cf('0x17');}function generateMicrosoftAuthorizationUrl(_0x2586eb,_0x2f5bfe){var _0x3949d0=MICROSOFT_AUTH_URL[_0x71cf('0x18')](_0x71cf('0x19'),_0x2586eb[_0x71cf('0x1a')]);var _0x53d661=['code','id_token'];var _0x1fb476=Buffer[_0x71cf('0x1b')](JSON[_0x71cf('0x1c')]({'id':_0x2f5bfe}))[_0x71cf('0x1d')](_0x71cf('0x1e'));var _0x4fb019=crypto[_0x71cf('0x1f')](0x10)[_0x71cf('0x1d')](_0x71cf('0x20'));var _0x1ceeb9=getAuthorizationScopes(_0x2586eb);var _0x41bb57=[{'key':'client_id','value':_0x2586eb[_0x71cf('0x21')]},{'key':_0x71cf('0x22'),'value':encodeURIComponent(_0x53d661[_0x71cf('0x23')]('\x20'))},{'key':'redirect_uri','value':_0x2586eb[_0x71cf('0x24')]},{'key':_0x71cf('0x25'),'value':_0x71cf('0x26')},{'key':_0x71cf('0x27'),'value':encodeURIComponent(_0x1ceeb9)},{'key':_0x71cf('0x28'),'value':_0x1fb476},{'key':'nonce','value':_0x4fb019},{'key':_0x71cf('0x29'),'value':_0x71cf('0x2a')}];var _0x553752=_0x3949d0+MICROSOFT_AUTH_ENDPOINT+'?'+_['map'](_0x41bb57,function(_0x72c26d){return _0x72c26d[_0x71cf('0x2b')]+'='+_0x72c26d[_0x71cf('0x2c')];})[_0x71cf('0x23')]('&');_0x2586eb[_0x71cf('0x2d')]={'issuer':_0x3949d0['replace'](_0x71cf('0x2e'),''),'audience':_0x2586eb['data1'],'state':_0x1fb476,'nonce':_0x4fb019};redis['set'](_0x1fb476,JSON[_0x71cf('0x1c')](_0x2586eb));return _0x553752;}function isValidIdToken(_0x168fed,_0x4cf61c){try{var _0x5e6ea8=jwt[_0x71cf('0x2f')](_0x168fed,{'complete':!![]});var _0xf820=_0x5e6ea8[_0x71cf('0x30')];if(_0xf820[_0x71cf('0x31')]!==_0x4cf61c[_0x71cf('0x32')])return![];if(_0xf820[_0x71cf('0x33')]!==_0x4cf61c[_0x71cf('0x34')])return![];if(_0xf820[_0x71cf('0x35')]!==_0x4cf61c['nonce'])return![];if(moment()[_0x71cf('0x36')](moment[_0x71cf('0x37')](_0xf820['exp'])))return![];return!![];}catch(_0x21142b){throw _0x21142b;}}function refreshOauth2MicrosoftAccessToken(_0x3b3182){return Promise[_0x71cf('0x38')]()['then'](function(){if(_0x3b3182[_0x71cf('0x39')])return _0x3b3182;return db[_0x71cf('0x3a')][_0x71cf('0x3b')]({'where':{'id':_0x3b3182['id']},'raw':!![]});})[_0x71cf('0x3c')](function(_0xf36153){var _0x4728fe={'grant_type':_0x71cf('0x3d'),'refresh_token':_0xf36153['data6'],'scope':getAccessTokenScope(_0xf36153),'redirect_uri':_0xf36153['data4'],'client_id':_0xf36153['data1'],'client_secret':encryptor['decryptString'](_0xf36153['data3'])};var _0x4694c6={'method':_0x71cf('0x3e'),'uri':MICROSOFT_AUTH_URL[_0x71cf('0x18')]('{TENANT_ID}',_0xf36153[_0x71cf('0x1a')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x4728fe,'json':!![]};return rp(_0x4694c6);})[_0x71cf('0x3c')](function(_0x42056a){_0x3b3182[_0x71cf('0x3f')]=_0x42056a[_0x71cf('0x40')];_0x3b3182[_0x71cf('0x41')]=_0x42056a['refresh_token'];return db[_0x71cf('0x3a')]['update']({'data5':_0x3b3182[_0x71cf('0x3f')],'data6':_0x3b3182[_0x71cf('0x41')]},{'where':{'id':_0x3b3182['id']}});})[_0x71cf('0x3c')](function(){return _0x3b3182;})[_0x71cf('0x42')](function(_0xb07acb){logger[_0x71cf('0x43')]('Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s',_0x3b3182['id'],_0xb07acb);});}function getOauth2MicrosoftAccessToken(_0xaa00e,_0xe0654){var _0x2b746c={'grant_type':_0x71cf('0x44'),'code':_0xaa00e,'scope':getAccessTokenScope(_0xe0654),'redirect_uri':_0xe0654[_0x71cf('0x24')],'client_id':_0xe0654[_0x71cf('0x21')],'client_secret':encryptor['decryptString'](_0xe0654[_0x71cf('0x39')])};var _0x21cfae={'method':'POST','uri':MICROSOFT_AUTH_URL[_0x71cf('0x18')](_0x71cf('0x19'),_0xe0654[_0x71cf('0x1a')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x2b746c,'json':!![]};return rp(_0x21cfae);}function startRefreshInterval(_0x315d36){var _0x48e9a0=schedule[_0x71cf('0x45')];if(_0x48e9a0[_0x315d36['id']])clearInterval(_0x48e9a0[_0x315d36['id']]);_0x48e9a0[_0x315d36['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x71cf('0x46')](this,{'id':_0x315d36['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x71cf('0x45')]=_0x48e9a0;}function startAllRefreshIntervals(){return db[_0x71cf('0x3a')][_0x71cf('0x47')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x71cf('0x3c')](function(_0x431335){var _0x37ff99=_0x431335[_0x71cf('0x48')](function(_0x4f02ea){return refreshOauth2MicrosoftAccessToken(_0x4f02ea)[_0x71cf('0x3c')](function(_0x193c26){startRefreshInterval(_0x193c26);});});return Promise['all'](_0x37ff99);})[_0x71cf('0x42')](function(_0x4ecc6f){var _0xbb0118=_0x4ecc6f?util[_0x71cf('0x49')](_0x4ecc6f,{'showHidden':![],'depth':null}):'';logger['error'](_0x71cf('0x4a'),_0xbb0118);});}module[_0x71cf('0x4b')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};