Built motion from commit 0900f080.|2.5.45
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0xf282=['push','data7','/.default','https://outlook.office365.com/IMAP.AccessAsUser.All','Dynamics365','replace','{TENANT_ID}','data2','id_token','from','toString','randomBytes','hex','client_id','data1','response_type','join','redirect_uri','data4','response_mode','form_post','scope','state','nonce','prompt','login','key','oauth2Claims','oauth2/','set','decode','payload','iss','audience','unix','then','data3','CloudProvider','findOne','refresh_token','data6','decryptString','POST','data5','access_token','update','catch','error','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code','intervals','bind','findAll','map','all','inspect','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','exports','lodash','crypto','jsonwebtoken','ioredis','request-promise','util','../../components/encryptor','../../config/environment','../../config/logger','../../config/schedule/cloud-provider','../../mysqldb','redis','defaults','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','profile','offline_access','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','openid','/authorize','/token','type'];(function(_0x14add3,_0x13ce8d){var _0x4a174f=function(_0x2b3ed7){while(--_0x2b3ed7){_0x14add3['push'](_0x14add3['shift']());}};_0x4a174f(++_0x13ce8d);}(_0xf282,0x1cf));var _0x2f28=function(_0x5d6456,_0x58ecc7){_0x5d6456=_0x5d6456-0x0;var _0x4d66c1=_0xf282[_0x5d6456];return _0x4d66c1;};'use strict';var _=require(_0x2f28('0x0'));var crypto=require(_0x2f28('0x1'));var jwt=require(_0x2f28('0x2'));var moment=require('moment');var Redis=require(_0x2f28('0x3'));var rp=require(_0x2f28('0x4'));var util=require(_0x2f28('0x5'));var encryptor=require(_0x2f28('0x6'));var config=require(_0x2f28('0x7'));var logger=require(_0x2f28('0x8'))('api');var schedule=require(_0x2f28('0x9'));var db=require(_0x2f28('0xa'))['db'];config[_0x2f28('0xb')]=_[_0x2f28('0xc')](config[_0x2f28('0xb')],{'host':_0x2f28('0xd'),'port':0x18eb});var redis=new Redis(config['redis']);var MICROSOFT_AUTH_URL=_0x2f28('0xe');var AZURE_AUTH_SCOPES={'Outlook365':['openid',_0x2f28('0xf'),'email',_0x2f28('0x10'),'https://outlook.office365.com/IMAP.AccessAsUser.All',_0x2f28('0x11'),_0x2f28('0x12')],'Dynamics365':[_0x2f28('0x13'),_0x2f28('0x10')]};var MICROSOFT_AUTH_ENDPOINT=_0x2f28('0x14');var MICROSOFT_TOKEN_ENDPOINT=_0x2f28('0x15');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x27274c){var _0x528428=_['map'](AZURE_AUTH_SCOPES[_0x27274c['type']]);if(_0x27274c[_0x2f28('0x16')]==='Dynamics365')_0x528428[_0x2f28('0x17')](_0x27274c[_0x2f28('0x18')]+_0x2f28('0x19'));return _0x528428['join']('\x20');}function getAccessTokenScope(_0x491c){if(_0x491c['type']==='Outlook365')return _0x2f28('0x1a');if(_0x491c['type']===_0x2f28('0x1b'))return _0x491c[_0x2f28('0x18')]+'/.default';}function generateMicrosoftAuthorizationUrl(_0x524f57,_0x48585a){var _0x35c4a3=MICROSOFT_AUTH_URL[_0x2f28('0x1c')](_0x2f28('0x1d'),_0x524f57[_0x2f28('0x1e')]);var _0x146d15=['code',_0x2f28('0x1f')];var _0x376d73=Buffer[_0x2f28('0x20')](JSON['stringify']({'id':_0x48585a}))[_0x2f28('0x21')]('base64');var _0x384896=crypto[_0x2f28('0x22')](0x10)[_0x2f28('0x21')](_0x2f28('0x23'));var _0x5a2aa=getAuthorizationScopes(_0x524f57);var _0x147083=[{'key':_0x2f28('0x24'),'value':_0x524f57[_0x2f28('0x25')]},{'key':_0x2f28('0x26'),'value':encodeURIComponent(_0x146d15[_0x2f28('0x27')]('\x20'))},{'key':_0x2f28('0x28'),'value':_0x524f57[_0x2f28('0x29')]},{'key':_0x2f28('0x2a'),'value':_0x2f28('0x2b')},{'key':_0x2f28('0x2c'),'value':encodeURIComponent(_0x5a2aa)},{'key':_0x2f28('0x2d'),'value':_0x376d73},{'key':_0x2f28('0x2e'),'value':_0x384896},{'key':_0x2f28('0x2f'),'value':_0x2f28('0x30')}];var _0xe1f21a=_0x35c4a3+MICROSOFT_AUTH_ENDPOINT+'?'+_['map'](_0x147083,function(_0x5c4469){return _0x5c4469[_0x2f28('0x31')]+'='+_0x5c4469['value'];})[_0x2f28('0x27')]('&');_0x524f57[_0x2f28('0x32')]={'issuer':_0x35c4a3[_0x2f28('0x1c')](_0x2f28('0x33'),''),'audience':_0x524f57[_0x2f28('0x25')],'state':_0x376d73,'nonce':_0x384896};redis[_0x2f28('0x34')](_0x376d73,JSON['stringify'](_0x524f57));return _0xe1f21a;}function isValidIdToken(_0x175222,_0xa9cff6){try{var _0x2fe561=jwt[_0x2f28('0x35')](_0x175222,{'complete':!![]});var _0x2f6dc1=_0x2fe561[_0x2f28('0x36')];if(_0x2f6dc1[_0x2f28('0x37')]!==_0xa9cff6['issuer'])return![];if(_0x2f6dc1['aud']!==_0xa9cff6[_0x2f28('0x38')])return![];if(_0x2f6dc1[_0x2f28('0x2e')]!==_0xa9cff6[_0x2f28('0x2e')])return![];if(moment()['isAfter'](moment[_0x2f28('0x39')](_0x2f6dc1['exp'])))return![];return!![];}catch(_0x1b7057){throw _0x1b7057;}}function refreshOauth2MicrosoftAccessToken(_0x2a0e87){return Promise['resolve']()[_0x2f28('0x3a')](function(){if(_0x2a0e87[_0x2f28('0x3b')])return _0x2a0e87;return db[_0x2f28('0x3c')][_0x2f28('0x3d')]({'where':{'id':_0x2a0e87['id']},'raw':!![]});})[_0x2f28('0x3a')](function(_0xa07dbf){var _0x4228e5={'grant_type':_0x2f28('0x3e'),'refresh_token':_0xa07dbf[_0x2f28('0x3f')],'scope':getAccessTokenScope(_0xa07dbf),'redirect_uri':_0xa07dbf[_0x2f28('0x29')],'client_id':_0xa07dbf[_0x2f28('0x25')],'client_secret':encryptor[_0x2f28('0x40')](_0xa07dbf[_0x2f28('0x3b')])};var _0x2f9f82={'method':_0x2f28('0x41'),'uri':MICROSOFT_AUTH_URL['replace'](_0x2f28('0x1d'),_0xa07dbf[_0x2f28('0x1e')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x4228e5,'json':!![]};return rp(_0x2f9f82);})[_0x2f28('0x3a')](function(_0x44779b){_0x2a0e87[_0x2f28('0x42')]=_0x44779b[_0x2f28('0x43')];_0x2a0e87[_0x2f28('0x3f')]=_0x44779b['refresh_token'];return db['CloudProvider'][_0x2f28('0x44')]({'data5':_0x2a0e87[_0x2f28('0x42')],'data6':_0x2a0e87['data6']},{'where':{'id':_0x2a0e87['id']}});})[_0x2f28('0x3a')](function(){return _0x2a0e87;})[_0x2f28('0x45')](function(_0x3d0a01){logger[_0x2f28('0x46')](_0x2f28('0x47'),_0x2a0e87['id'],_0x3d0a01);});}function getOauth2MicrosoftAccessToken(_0x3c328a,_0x4795f9){var _0x381e12={'grant_type':_0x2f28('0x48'),'code':_0x3c328a,'scope':getAccessTokenScope(_0x4795f9),'redirect_uri':_0x4795f9[_0x2f28('0x29')],'client_id':_0x4795f9[_0x2f28('0x25')],'client_secret':encryptor['decryptString'](_0x4795f9[_0x2f28('0x3b')])};var _0x4abd90={'method':_0x2f28('0x41'),'uri':MICROSOFT_AUTH_URL[_0x2f28('0x1c')](_0x2f28('0x1d'),_0x4795f9[_0x2f28('0x1e')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x381e12,'json':!![]};return rp(_0x4abd90);}function startRefreshInterval(_0x2b1893){var _0x37687c=schedule[_0x2f28('0x49')];if(_0x37687c[_0x2b1893['id']])clearInterval(_0x37687c[_0x2b1893['id']]);_0x37687c[_0x2b1893['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x2f28('0x4a')](this,{'id':_0x2b1893['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x2f28('0x49')]=_0x37687c;}function startAllRefreshIntervals(){return db[_0x2f28('0x3c')][_0x2f28('0x4b')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x2f28('0x3a')](function(_0x3a901d){var _0x36321f=_0x3a901d[_0x2f28('0x4c')](function(_0x530fef){return refreshOauth2MicrosoftAccessToken(_0x530fef)['then'](function(_0x4d3a59){startRefreshInterval(_0x4d3a59);});});return Promise[_0x2f28('0x4d')](_0x36321f);})[_0x2f28('0x45')](function(_0x44eca7){var _0x543a56=_0x44eca7?util[_0x2f28('0x4e')](_0x44eca7,{'showHidden':![],'depth':null}):'';logger['error'](_0x2f28('0x4f'),_0x543a56);});}module[_0x2f28('0x50')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};