4bf979c892b8c112e536d9369e04df77dea22d78
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0xdb28=['set','decode','payload','iss','issuer','aud','audience','isAfter','resolve','data3','findOne','then','data6','POST','data5','access_token','refresh_token','CloudProvider','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s','decryptString','intervals','bind','findAll','all','catch','inspect','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart','exports','lodash','crypto','jsonwebtoken','moment','request-promise','util','../../components/encryptor','../../config/environment','../../config/logger','../../config/schedule/cloud-provider','../../mysqldb','redis','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','profile','email','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','offline_access','/authorize','map','type','data7','/.default','join','Outlook365','Dynamics365','replace','{TENANT_ID}','data2','code','id_token','stringify','toString','base64','hex','client_id','response_type','redirect_uri','data4','response_mode','form_post','scope','nonce','key','value','oauth2Claims','data1'];(function(_0x555543,_0x1a5a3a){var _0x3456d4=function(_0x285d10){while(--_0x285d10){_0x555543['push'](_0x555543['shift']());}};_0x3456d4(++_0x1a5a3a);}(_0xdb28,0x106));var _0x8db2=function(_0x11c6b2,_0x306b2b){_0x11c6b2=_0x11c6b2-0x0;var _0x5fa8ad=_0xdb28[_0x11c6b2];return _0x5fa8ad;};'use strict';var _=require(_0x8db2('0x0'));var crypto=require(_0x8db2('0x1'));var jwt=require(_0x8db2('0x2'));var moment=require(_0x8db2('0x3'));var Redis=require('ioredis');var rp=require(_0x8db2('0x4'));var util=require(_0x8db2('0x5'));var encryptor=require(_0x8db2('0x6'));var config=require(_0x8db2('0x7'));var logger=require(_0x8db2('0x8'))('api');var schedule=require(_0x8db2('0x9'));var db=require(_0x8db2('0xa'))['db'];config['redis']=_['defaults'](config[_0x8db2('0xb')],{'host':_0x8db2('0xc'),'port':0x18eb});var redis=new Redis(config[_0x8db2('0xb')]);var MICROSOFT_AUTH_URL=_0x8db2('0xd');var AZURE_AUTH_SCOPES={'Outlook365':[_0x8db2('0xe'),_0x8db2('0xf'),_0x8db2('0x10'),'offline_access',_0x8db2('0x11'),_0x8db2('0x12'),_0x8db2('0x13')],'Dynamics365':['openid',_0x8db2('0x14')]};var MICROSOFT_AUTH_ENDPOINT=_0x8db2('0x15');var MICROSOFT_TOKEN_ENDPOINT='/token';var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x41beda){var _0x3b2faa=_[_0x8db2('0x16')](AZURE_AUTH_SCOPES[_0x41beda[_0x8db2('0x17')]]);if(_0x41beda[_0x8db2('0x17')]==='Dynamics365')_0x3b2faa['push'](_0x41beda[_0x8db2('0x18')]+_0x8db2('0x19'));return _0x3b2faa[_0x8db2('0x1a')]('\x20');}function getAccessTokenScope(_0x1d6a15){if(_0x1d6a15[_0x8db2('0x17')]===_0x8db2('0x1b'))return _0x8db2('0x11');if(_0x1d6a15[_0x8db2('0x17')]===_0x8db2('0x1c'))return _0x1d6a15[_0x8db2('0x18')]+'/.default';}function generateMicrosoftAuthorizationUrl(_0x13b0f5,_0x24da1b){var _0x48101e=MICROSOFT_AUTH_URL[_0x8db2('0x1d')](_0x8db2('0x1e'),_0x13b0f5[_0x8db2('0x1f')]);var _0x3fddc2=[_0x8db2('0x20'),_0x8db2('0x21')];var _0x51d60d=Buffer['from'](JSON[_0x8db2('0x22')]({'id':_0x24da1b}))[_0x8db2('0x23')](_0x8db2('0x24'));var _0x1b64e4=crypto['randomBytes'](0x10)[_0x8db2('0x23')](_0x8db2('0x25'));var _0x260940=getAuthorizationScopes(_0x13b0f5);var _0x297ba3=[{'key':_0x8db2('0x26'),'value':_0x13b0f5['data1']},{'key':_0x8db2('0x27'),'value':encodeURIComponent(_0x3fddc2[_0x8db2('0x1a')]('\x20'))},{'key':_0x8db2('0x28'),'value':_0x13b0f5[_0x8db2('0x29')]},{'key':_0x8db2('0x2a'),'value':_0x8db2('0x2b')},{'key':_0x8db2('0x2c'),'value':encodeURIComponent(_0x260940)},{'key':'state','value':_0x51d60d},{'key':_0x8db2('0x2d'),'value':_0x1b64e4},{'key':'prompt','value':'login'}];var _0x52a9ca=_0x48101e+MICROSOFT_AUTH_ENDPOINT+'?'+_['map'](_0x297ba3,function(_0xec8cd2){return _0xec8cd2[_0x8db2('0x2e')]+'='+_0xec8cd2[_0x8db2('0x2f')];})[_0x8db2('0x1a')]('&');_0x13b0f5[_0x8db2('0x30')]={'issuer':_0x48101e[_0x8db2('0x1d')]('oauth2/',''),'audience':_0x13b0f5[_0x8db2('0x31')],'state':_0x51d60d,'nonce':_0x1b64e4};redis[_0x8db2('0x32')](_0x51d60d,JSON[_0x8db2('0x22')](_0x13b0f5));return _0x52a9ca;}function isValidIdToken(_0x8b7cec,_0x483aee){try{var _0x2e0691=jwt[_0x8db2('0x33')](_0x8b7cec,{'complete':!![]});var _0x241baf=_0x2e0691[_0x8db2('0x34')];if(_0x241baf[_0x8db2('0x35')]!==_0x483aee[_0x8db2('0x36')])return![];if(_0x241baf[_0x8db2('0x37')]!==_0x483aee[_0x8db2('0x38')])return![];if(_0x241baf[_0x8db2('0x2d')]!==_0x483aee['nonce'])return![];if(moment()[_0x8db2('0x39')](moment['unix'](_0x241baf['exp'])))return![];return!![];}catch(_0x302188){throw _0x302188;}}function refreshOauth2MicrosoftAccessToken(_0x25ed2c){return Promise[_0x8db2('0x3a')]()['then'](function(){if(_0x25ed2c[_0x8db2('0x3b')])return _0x25ed2c;return db['CloudProvider'][_0x8db2('0x3c')]({'where':{'id':_0x25ed2c['id']},'raw':!![]});})[_0x8db2('0x3d')](function(_0x14bd12){var _0x4d9e26={'grant_type':'refresh_token','refresh_token':_0x14bd12[_0x8db2('0x3e')],'scope':getAccessTokenScope(_0x14bd12),'redirect_uri':_0x14bd12[_0x8db2('0x29')],'client_id':_0x14bd12['data1'],'client_secret':encryptor['decryptString'](_0x14bd12[_0x8db2('0x3b')])};var _0x5178f3={'method':_0x8db2('0x3f'),'uri':MICROSOFT_AUTH_URL[_0x8db2('0x1d')](_0x8db2('0x1e'),_0x14bd12[_0x8db2('0x1f')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x4d9e26,'json':!![]};return rp(_0x5178f3);})[_0x8db2('0x3d')](function(_0xae31b7){_0x25ed2c[_0x8db2('0x40')]=_0xae31b7[_0x8db2('0x41')];_0x25ed2c['data6']=_0xae31b7[_0x8db2('0x42')];return db[_0x8db2('0x43')]['update']({'data5':_0x25ed2c[_0x8db2('0x40')],'data6':_0x25ed2c[_0x8db2('0x3e')]},{'where':{'id':_0x25ed2c['id']}});})['then'](function(){return _0x25ed2c;})['catch'](function(_0x3c1983){logger['error'](_0x8db2('0x44'),_0x25ed2c['id'],_0x3c1983);});}function getOauth2MicrosoftAccessToken(_0x264696,_0x26717d){var _0x22c896={'grant_type':'authorization_code','code':_0x264696,'scope':getAccessTokenScope(_0x26717d),'redirect_uri':_0x26717d[_0x8db2('0x29')],'client_id':_0x26717d['data1'],'client_secret':encryptor[_0x8db2('0x45')](_0x26717d[_0x8db2('0x3b')])};var _0x2c8bc9={'method':_0x8db2('0x3f'),'uri':MICROSOFT_AUTH_URL['replace']('{TENANT_ID}',_0x26717d[_0x8db2('0x1f')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x22c896,'json':!![]};return rp(_0x2c8bc9);}function startRefreshInterval(_0x2c0507){var _0x5dc2b4=schedule[_0x8db2('0x46')];if(_0x5dc2b4[_0x2c0507['id']])clearInterval(_0x5dc2b4[_0x2c0507['id']]);_0x5dc2b4[_0x2c0507['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x8db2('0x47')](this,{'id':_0x2c0507['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x8db2('0x46')]=_0x5dc2b4;}function startAllRefreshIntervals(){return db['CloudProvider'][_0x8db2('0x48')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x8db2('0x3d')](function(_0x953349){var _0x279e74=_0x953349[_0x8db2('0x16')](function(_0x40d82a){return refreshOauth2MicrosoftAccessToken(_0x40d82a)[_0x8db2('0x3d')](function(_0x1575ea){startRefreshInterval(_0x1575ea);});});return Promise[_0x8db2('0x49')](_0x279e74);})[_0x8db2('0x4a')](function(_0x21cf7c){var _0x20bf0b=_0x21cf7c?util[_0x8db2('0x4b')](_0x21cf7c,{'showHidden':![],'depth':null}):'';logger['error'](_0x8db2('0x4c'),_0x20bf0b);});}module[_0x8db2('0x4d')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};