442e5038514b3be4eb67c2ff4ae719ef07ecad75
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0xd60a=['then','data3','CloudProvider','findOne','refresh_token','data6','decryptString','POST','data5','access_token','catch','error','authorization_code','bind','intervals','findAll','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','exports','lodash','crypto','jsonwebtoken','moment','ioredis','util','../../components/encryptor','../../config/environment','../../config/logger','api','../../mysqldb','defaults','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','openid','map','type','push','data7','/.default','Dynamics365','replace','{TENANT_ID}','data2','code','id_token','from','stringify','randomBytes','toString','client_id','data1','response_type','join','redirect_uri','data4','response_mode','form_post','scope','nonce','prompt','login','key','value','oauth2Claims','oauth2/','set','decode','payload','iss','issuer','audience','isAfter','unix','exp','resolve'];(function(_0x5ba2ac,_0x53b1bc){var _0x1b2443=function(_0x2cfd26){while(--_0x2cfd26){_0x5ba2ac['push'](_0x5ba2ac['shift']());}};_0x1b2443(++_0x53b1bc);}(_0xd60a,0x193));var _0xad60=function(_0x165584,_0xe8e4f){_0x165584=_0x165584-0x0;var _0x46b7fc=_0xd60a[_0x165584];return _0x46b7fc;};'use strict';var _=require(_0xad60('0x0'));var crypto=require(_0xad60('0x1'));var jwt=require(_0xad60('0x2'));var moment=require(_0xad60('0x3'));var Redis=require(_0xad60('0x4'));var rp=require('request-promise');var util=require(_0xad60('0x5'));var encryptor=require(_0xad60('0x6'));var config=require(_0xad60('0x7'));var logger=require(_0xad60('0x8'))(_0xad60('0x9'));var schedule=require('../../config/schedule/cloud-provider');var db=require(_0xad60('0xa'))['db'];config['redis']=_[_0xad60('0xb')](config['redis'],{'host':_0xad60('0xc'),'port':0x18eb});var redis=new Redis(config['redis']);var MICROSOFT_AUTH_URL=_0xad60('0xd');var AZURE_AUTH_SCOPES={'Outlook365':['openid','profile','email',_0xad60('0xe'),_0xad60('0xf'),_0xad60('0x10'),'https://outlook.office.com/SMTP.Send'],'Dynamics365':[_0xad60('0x11'),_0xad60('0xe')]};var MICROSOFT_AUTH_ENDPOINT='/authorize';var MICROSOFT_TOKEN_ENDPOINT='/token';var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x24ffc5){var _0x43d281=_[_0xad60('0x12')](AZURE_AUTH_SCOPES[_0x24ffc5[_0xad60('0x13')]]);if(_0x24ffc5[_0xad60('0x13')]==='Dynamics365')_0x43d281[_0xad60('0x14')](_0x24ffc5[_0xad60('0x15')]+_0xad60('0x16'));return _0x43d281['join']('\x20');}function getAccessTokenScope(_0xd461a7){if(_0xd461a7[_0xad60('0x13')]==='Outlook365')return'https://outlook.office365.com/IMAP.AccessAsUser.All';if(_0xd461a7[_0xad60('0x13')]===_0xad60('0x17'))return _0xd461a7['data7']+_0xad60('0x16');}function generateMicrosoftAuthorizationUrl(_0x16267d,_0x5ee728){var _0xebe172=MICROSOFT_AUTH_URL[_0xad60('0x18')](_0xad60('0x19'),_0x16267d[_0xad60('0x1a')]);var _0x127ad0=[_0xad60('0x1b'),_0xad60('0x1c')];var _0x11e2b7=Buffer[_0xad60('0x1d')](JSON[_0xad60('0x1e')]({'id':_0x5ee728}))['toString']('base64');var _0x56399c=crypto[_0xad60('0x1f')](0x10)[_0xad60('0x20')]('hex');var _0x583f22=getAuthorizationScopes(_0x16267d);var _0x2402bc=[{'key':_0xad60('0x21'),'value':_0x16267d[_0xad60('0x22')]},{'key':_0xad60('0x23'),'value':encodeURIComponent(_0x127ad0[_0xad60('0x24')]('\x20'))},{'key':_0xad60('0x25'),'value':_0x16267d[_0xad60('0x26')]},{'key':_0xad60('0x27'),'value':_0xad60('0x28')},{'key':_0xad60('0x29'),'value':encodeURIComponent(_0x583f22)},{'key':'state','value':_0x11e2b7},{'key':_0xad60('0x2a'),'value':_0x56399c},{'key':_0xad60('0x2b'),'value':_0xad60('0x2c')}];var _0x316d30=_0xebe172+MICROSOFT_AUTH_ENDPOINT+'?'+_['map'](_0x2402bc,function(_0x1a430f){return _0x1a430f[_0xad60('0x2d')]+'='+_0x1a430f[_0xad60('0x2e')];})[_0xad60('0x24')]('&');_0x16267d[_0xad60('0x2f')]={'issuer':_0xebe172[_0xad60('0x18')](_0xad60('0x30'),''),'audience':_0x16267d[_0xad60('0x22')],'state':_0x11e2b7,'nonce':_0x56399c};redis[_0xad60('0x31')](_0x11e2b7,JSON[_0xad60('0x1e')](_0x16267d));return _0x316d30;}function isValidIdToken(_0x24582f,_0x1d53cb){try{var _0x20e32d=jwt[_0xad60('0x32')](_0x24582f,{'complete':!![]});var _0x1e0f85=_0x20e32d[_0xad60('0x33')];if(_0x1e0f85[_0xad60('0x34')]!==_0x1d53cb[_0xad60('0x35')])return![];if(_0x1e0f85['aud']!==_0x1d53cb[_0xad60('0x36')])return![];if(_0x1e0f85[_0xad60('0x2a')]!==_0x1d53cb[_0xad60('0x2a')])return![];if(moment()[_0xad60('0x37')](moment[_0xad60('0x38')](_0x1e0f85[_0xad60('0x39')])))return![];return!![];}catch(_0xfb2e55){throw _0xfb2e55;}}function refreshOauth2MicrosoftAccessToken(_0x25e2b5){return Promise[_0xad60('0x3a')]()[_0xad60('0x3b')](function(){if(_0x25e2b5[_0xad60('0x3c')])return _0x25e2b5;return db[_0xad60('0x3d')][_0xad60('0x3e')]({'where':{'id':_0x25e2b5['id']},'raw':!![]});})[_0xad60('0x3b')](function(_0xcb161a){var _0x205c46={'grant_type':_0xad60('0x3f'),'refresh_token':_0xcb161a[_0xad60('0x40')],'scope':getAccessTokenScope(_0xcb161a),'redirect_uri':_0xcb161a[_0xad60('0x26')],'client_id':_0xcb161a[_0xad60('0x22')],'client_secret':encryptor[_0xad60('0x41')](_0xcb161a[_0xad60('0x3c')])};var _0x55564b={'method':_0xad60('0x42'),'uri':MICROSOFT_AUTH_URL[_0xad60('0x18')]('{TENANT_ID}',_0xcb161a[_0xad60('0x1a')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x205c46,'json':!![]};return rp(_0x55564b);})[_0xad60('0x3b')](function(_0x3aeaa8){_0x25e2b5[_0xad60('0x43')]=_0x3aeaa8[_0xad60('0x44')];_0x25e2b5[_0xad60('0x40')]=_0x3aeaa8[_0xad60('0x3f')];return db[_0xad60('0x3d')]['update']({'data5':_0x25e2b5[_0xad60('0x43')],'data6':_0x25e2b5[_0xad60('0x40')]},{'where':{'id':_0x25e2b5['id']}});})[_0xad60('0x3b')](function(){return _0x25e2b5;})[_0xad60('0x45')](function(_0x4fe708){logger[_0xad60('0x46')]('Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s',_0x25e2b5['id'],_0x4fe708);});}function getOauth2MicrosoftAccessToken(_0x4b60fe,_0x3bfb8e){var _0x30c115={'grant_type':_0xad60('0x47'),'code':_0x4b60fe,'scope':getAccessTokenScope(_0x3bfb8e),'redirect_uri':_0x3bfb8e[_0xad60('0x26')],'client_id':_0x3bfb8e[_0xad60('0x22')],'client_secret':encryptor['decryptString'](_0x3bfb8e['data3'])};var _0x30781f={'method':_0xad60('0x42'),'uri':MICROSOFT_AUTH_URL['replace'](_0xad60('0x19'),_0x3bfb8e['data2'])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x30c115,'json':!![]};return rp(_0x30781f);}function startRefreshInterval(_0x1781a3){var _0x49f1dc=schedule['intervals'];if(_0x49f1dc[_0x1781a3['id']])clearInterval(_0x49f1dc[_0x1781a3['id']]);_0x49f1dc[_0x1781a3['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0xad60('0x48')](this,{'id':_0x1781a3['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0xad60('0x49')]=_0x49f1dc;}function startAllRefreshIntervals(){return db['CloudProvider'][_0xad60('0x4a')]({'where':{'data6':{'$ne':null}},'raw':!![]})['then'](function(_0x12a1a0){var _0x3a37e8=_0x12a1a0[_0xad60('0x12')](function(_0xa823a3){return refreshOauth2MicrosoftAccessToken(_0xa823a3)['then'](function(_0x11202c){startRefreshInterval(_0x11202c);});});return Promise['all'](_0x3a37e8);})[_0xad60('0x45')](function(_0x120a51){var _0x45dcee=_0x120a51?util['inspect'](_0x120a51,{'showHidden':![],'depth':null}):'';logger['error'](_0xad60('0x4b'),_0x45dcee);});}module[_0xad60('0x4c')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};