Built motion from commit 85328c08.|2.5.50
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0xa767=['response_mode','form_post','scope','state','prompt','login','key','oauth2Claims','oauth2/','data1','set','payload','iss','issuer','audience','nonce','exp','resolve','then','CloudProvider','findOne','refresh_token','data6','decryptString','data5','access_token','update','catch','error','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code','data3','POST','{TENANT_ID}','intervals','bind','inspect','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','lodash','crypto','jsonwebtoken','moment','ioredis','request-promise','util','../../config/environment','../../config/logger','../../config/schedule/cloud-provider','../../mysqldb','defaults','redis','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','profile','email','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','openid','/authorize','map','Dynamics365','push','data7','/.default','type','Outlook365','data2','code','id_token','from','stringify','toString','base64','hex','response_type','data4'];(function(_0x2717c9,_0x3166f1){var _0x553f1a=function(_0xadab68){while(--_0xadab68){_0x2717c9['push'](_0x2717c9['shift']());}};_0x553f1a(++_0x3166f1);}(_0xa767,0x156));var _0x7a76=function(_0x509af6,_0x348740){_0x509af6=_0x509af6-0x0;var _0x54edde=_0xa767[_0x509af6];return _0x54edde;};'use strict';var _=require(_0x7a76('0x0'));var crypto=require(_0x7a76('0x1'));var jwt=require(_0x7a76('0x2'));var moment=require(_0x7a76('0x3'));var Redis=require(_0x7a76('0x4'));var rp=require(_0x7a76('0x5'));var util=require(_0x7a76('0x6'));var encryptor=require('../../components/encryptor');var config=require(_0x7a76('0x7'));var logger=require(_0x7a76('0x8'))('api');var schedule=require(_0x7a76('0x9'));var db=require(_0x7a76('0xa'))['db'];config['redis']=_[_0x7a76('0xb')](config[_0x7a76('0xc')],{'host':'localhost','port':0x18eb});var redis=new Redis(config['redis']);var MICROSOFT_AUTH_URL=_0x7a76('0xd');var AZURE_AUTH_SCOPES={'Outlook365':['openid',_0x7a76('0xe'),_0x7a76('0xf'),_0x7a76('0x10'),_0x7a76('0x11'),'https://outlook.office.com/POP.AccessAsUser.All',_0x7a76('0x12')],'Dynamics365':[_0x7a76('0x13'),_0x7a76('0x10')]};var MICROSOFT_AUTH_ENDPOINT=_0x7a76('0x14');var MICROSOFT_TOKEN_ENDPOINT='/token';var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x467eb8){var _0x1bd5b2=_[_0x7a76('0x15')](AZURE_AUTH_SCOPES[_0x467eb8['type']]);if(_0x467eb8['type']===_0x7a76('0x16'))_0x1bd5b2[_0x7a76('0x17')](_0x467eb8[_0x7a76('0x18')]+_0x7a76('0x19'));return _0x1bd5b2['join']('\x20');}function getAccessTokenScope(_0x6a7fc4){if(_0x6a7fc4[_0x7a76('0x1a')]===_0x7a76('0x1b'))return _0x7a76('0x11');if(_0x6a7fc4['type']===_0x7a76('0x16'))return _0x6a7fc4[_0x7a76('0x18')]+_0x7a76('0x19');}function generateMicrosoftAuthorizationUrl(_0x10680c,_0x41f2d2){var _0x58243e=MICROSOFT_AUTH_URL['replace']('{TENANT_ID}',_0x10680c[_0x7a76('0x1c')]);var _0xb8bcfd=[_0x7a76('0x1d'),_0x7a76('0x1e')];var _0x3fad82=Buffer[_0x7a76('0x1f')](JSON[_0x7a76('0x20')]({'id':_0x41f2d2}))[_0x7a76('0x21')](_0x7a76('0x22'));var _0x5df7c8=crypto['randomBytes'](0x10)['toString'](_0x7a76('0x23'));var _0x131dbe=getAuthorizationScopes(_0x10680c);var _0x1de4e2=[{'key':'client_id','value':_0x10680c['data1']},{'key':_0x7a76('0x24'),'value':encodeURIComponent(_0xb8bcfd['join']('\x20'))},{'key':'redirect_uri','value':_0x10680c[_0x7a76('0x25')]},{'key':_0x7a76('0x26'),'value':_0x7a76('0x27')},{'key':_0x7a76('0x28'),'value':encodeURIComponent(_0x131dbe)},{'key':_0x7a76('0x29'),'value':_0x3fad82},{'key':'nonce','value':_0x5df7c8},{'key':_0x7a76('0x2a'),'value':_0x7a76('0x2b')}];var _0x404c6f=_0x58243e+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0x7a76('0x15')](_0x1de4e2,function(_0x5323fc){return _0x5323fc[_0x7a76('0x2c')]+'='+_0x5323fc['value'];})['join']('&');_0x10680c[_0x7a76('0x2d')]={'issuer':_0x58243e['replace'](_0x7a76('0x2e'),''),'audience':_0x10680c[_0x7a76('0x2f')],'state':_0x3fad82,'nonce':_0x5df7c8};redis[_0x7a76('0x30')](_0x3fad82,JSON['stringify'](_0x10680c));return _0x404c6f;}function isValidIdToken(_0x2b2bb3,_0x55312f){try{var _0x43839=jwt['decode'](_0x2b2bb3,{'complete':!![]});var _0x18fdc0=_0x43839[_0x7a76('0x31')];if(_0x18fdc0[_0x7a76('0x32')]!==_0x55312f[_0x7a76('0x33')])return![];if(_0x18fdc0['aud']!==_0x55312f[_0x7a76('0x34')])return![];if(_0x18fdc0['nonce']!==_0x55312f[_0x7a76('0x35')])return![];if(moment()['isAfter'](moment['unix'](_0x18fdc0[_0x7a76('0x36')])))return![];return!![];}catch(_0x9d4378){throw _0x9d4378;}}function refreshOauth2MicrosoftAccessToken(_0xe38bb9){return Promise[_0x7a76('0x37')]()[_0x7a76('0x38')](function(){if(_0xe38bb9['data3'])return _0xe38bb9;return db[_0x7a76('0x39')][_0x7a76('0x3a')]({'where':{'id':_0xe38bb9['id']},'raw':!![]});})[_0x7a76('0x38')](function(_0x2d6440){var _0x4cdbda={'grant_type':_0x7a76('0x3b'),'refresh_token':_0x2d6440[_0x7a76('0x3c')],'scope':getAccessTokenScope(_0x2d6440),'redirect_uri':_0x2d6440['data4'],'client_id':_0x2d6440[_0x7a76('0x2f')],'client_secret':encryptor[_0x7a76('0x3d')](_0x2d6440['data3'])};var _0x34daa2={'method':'POST','uri':MICROSOFT_AUTH_URL['replace']('{TENANT_ID}',_0x2d6440[_0x7a76('0x1c')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x4cdbda,'json':!![]};return rp(_0x34daa2);})[_0x7a76('0x38')](function(_0x4bec94){_0xe38bb9[_0x7a76('0x3e')]=_0x4bec94[_0x7a76('0x3f')];_0xe38bb9['data6']=_0x4bec94['refresh_token'];return db['CloudProvider'][_0x7a76('0x40')]({'data5':_0xe38bb9[_0x7a76('0x3e')],'data6':_0xe38bb9[_0x7a76('0x3c')]},{'where':{'id':_0xe38bb9['id']}});})['then'](function(){return _0xe38bb9;})[_0x7a76('0x41')](function(_0x2a66d1){logger[_0x7a76('0x42')](_0x7a76('0x43'),_0xe38bb9['id'],_0x2a66d1);});}function getOauth2MicrosoftAccessToken(_0x3cba68,_0x4f1c47){var _0xa2e1bb={'grant_type':_0x7a76('0x44'),'code':_0x3cba68,'scope':getAccessTokenScope(_0x4f1c47),'redirect_uri':_0x4f1c47[_0x7a76('0x25')],'client_id':_0x4f1c47[_0x7a76('0x2f')],'client_secret':encryptor[_0x7a76('0x3d')](_0x4f1c47[_0x7a76('0x45')])};var _0x184145={'method':_0x7a76('0x46'),'uri':MICROSOFT_AUTH_URL['replace'](_0x7a76('0x47'),_0x4f1c47[_0x7a76('0x1c')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0xa2e1bb,'json':!![]};return rp(_0x184145);}function startRefreshInterval(_0x31beba){var _0x2cb25c=schedule[_0x7a76('0x48')];if(_0x2cb25c[_0x31beba['id']])clearInterval(_0x2cb25c[_0x31beba['id']]);_0x2cb25c[_0x31beba['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x7a76('0x49')](this,{'id':_0x31beba['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x7a76('0x48')]=_0x2cb25c;}function startAllRefreshIntervals(){return db[_0x7a76('0x39')]['findAll']({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x7a76('0x38')](function(_0x211d29){var _0x3d31e5=_0x211d29[_0x7a76('0x15')](function(_0x889231){return refreshOauth2MicrosoftAccessToken(_0x889231)[_0x7a76('0x38')](function(_0x444e6b){startRefreshInterval(_0x444e6b);});});return Promise['all'](_0x3d31e5);})['catch'](function(_0x265e86){var _0x330d5d=_0x265e86?util[_0x7a76('0x4a')](_0x265e86,{'showHidden':![],'depth':null}):'';logger[_0x7a76('0x42')](_0x7a76('0x4b'),_0x330d5d);});}module['exports']={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};