57bc4b230334bdf07767e02a6a6f9c24d5503533
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x589b=['/authorize','/token','type','Dynamics365','push','data7','/.default','join','Outlook365','https://outlook.office365.com/IMAP.AccessAsUser.All','replace','{TENANT_ID}','id_token','from','toString','base64','randomBytes','hex','client_id','data1','data4','response_mode','form_post','scope','state','nonce','prompt','login','map','value','oauth2Claims','set','decode','payload','iss','isAfter','unix','exp','then','CloudProvider','findOne','refresh_token','data6','data2','access_token','update','data5','catch','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code','data3','POST','intervals','findAll','all','inspect','error','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','lodash','crypto','moment','ioredis','request-promise','util','../../components/encryptor','../../config/environment','../../config/schedule/cloud-provider','../../mysqldb','defaults','redis','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','profile','offline_access','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send'];(function(_0x521b74,_0x3c9887){var _0x31dedf=function(_0x5b5d9c){while(--_0x5b5d9c){_0x521b74['push'](_0x521b74['shift']());}};_0x31dedf(++_0x3c9887);}(_0x589b,0x16e));var _0xb589=function(_0x3dd15e,_0x1f0015){_0x3dd15e=_0x3dd15e-0x0;var _0x231fd0=_0x589b[_0x3dd15e];return _0x231fd0;};'use strict';var _=require(_0xb589('0x0'));var crypto=require(_0xb589('0x1'));var jwt=require('jsonwebtoken');var moment=require(_0xb589('0x2'));var Redis=require(_0xb589('0x3'));var rp=require(_0xb589('0x4'));var util=require(_0xb589('0x5'));var encryptor=require(_0xb589('0x6'));var config=require(_0xb589('0x7'));var logger=require('../../config/logger')('api');var schedule=require(_0xb589('0x8'));var db=require(_0xb589('0x9'))['db'];config['redis']=_[_0xb589('0xa')](config[_0xb589('0xb')],{'host':_0xb589('0xc'),'port':0x18eb});var redis=new Redis(config[_0xb589('0xb')]);var MICROSOFT_AUTH_URL=_0xb589('0xd');var AZURE_AUTH_SCOPES={'Outlook365':[_0xb589('0xe'),_0xb589('0xf'),'email',_0xb589('0x10'),'https://outlook.office365.com/IMAP.AccessAsUser.All',_0xb589('0x11'),_0xb589('0x12')],'Dynamics365':[_0xb589('0xe'),_0xb589('0x10')]};var MICROSOFT_AUTH_ENDPOINT=_0xb589('0x13');var MICROSOFT_TOKEN_ENDPOINT=_0xb589('0x14');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x5b12d8){var _0x15ecfd=_['map'](AZURE_AUTH_SCOPES[_0x5b12d8[_0xb589('0x15')]]);if(_0x5b12d8[_0xb589('0x15')]===_0xb589('0x16'))_0x15ecfd[_0xb589('0x17')](_0x5b12d8[_0xb589('0x18')]+_0xb589('0x19'));return _0x15ecfd[_0xb589('0x1a')]('\x20');}function getAccessTokenScope(_0xf320e8){if(_0xf320e8[_0xb589('0x15')]===_0xb589('0x1b'))return _0xb589('0x1c');if(_0xf320e8[_0xb589('0x15')]===_0xb589('0x16'))return _0xf320e8[_0xb589('0x18')]+_0xb589('0x19');}function generateMicrosoftAuthorizationUrl(_0x39cb99,_0x25e88a){var _0x64fff1=MICROSOFT_AUTH_URL[_0xb589('0x1d')](_0xb589('0x1e'),_0x39cb99['data2']);var _0x3545d2=['code',_0xb589('0x1f')];var _0x51c121=Buffer[_0xb589('0x20')](JSON['stringify']({'id':_0x25e88a}))[_0xb589('0x21')](_0xb589('0x22'));var _0x1ab46a=crypto[_0xb589('0x23')](0x10)[_0xb589('0x21')](_0xb589('0x24'));var _0x487187=getAuthorizationScopes(_0x39cb99);var _0x18f502=[{'key':_0xb589('0x25'),'value':_0x39cb99[_0xb589('0x26')]},{'key':'response_type','value':encodeURIComponent(_0x3545d2[_0xb589('0x1a')]('\x20'))},{'key':'redirect_uri','value':_0x39cb99[_0xb589('0x27')]},{'key':_0xb589('0x28'),'value':_0xb589('0x29')},{'key':_0xb589('0x2a'),'value':encodeURIComponent(_0x487187)},{'key':_0xb589('0x2b'),'value':_0x51c121},{'key':_0xb589('0x2c'),'value':_0x1ab46a},{'key':_0xb589('0x2d'),'value':_0xb589('0x2e')}];var _0x34df1c=_0x64fff1+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0xb589('0x2f')](_0x18f502,function(_0x36d708){return _0x36d708['key']+'='+_0x36d708[_0xb589('0x30')];})[_0xb589('0x1a')]('&');_0x39cb99[_0xb589('0x31')]={'issuer':_0x64fff1['replace']('oauth2/',''),'audience':_0x39cb99[_0xb589('0x26')],'state':_0x51c121,'nonce':_0x1ab46a};redis[_0xb589('0x32')](_0x51c121,JSON['stringify'](_0x39cb99));return _0x34df1c;}function isValidIdToken(_0x4107d6,_0xbc6ba8){try{var _0x762b35=jwt[_0xb589('0x33')](_0x4107d6,{'complete':!![]});var _0xe55c05=_0x762b35[_0xb589('0x34')];if(_0xe55c05[_0xb589('0x35')]!==_0xbc6ba8['issuer'])return![];if(_0xe55c05['aud']!==_0xbc6ba8['audience'])return![];if(_0xe55c05['nonce']!==_0xbc6ba8[_0xb589('0x2c')])return![];if(moment()[_0xb589('0x36')](moment[_0xb589('0x37')](_0xe55c05[_0xb589('0x38')])))return![];return!![];}catch(_0x4b3be3){throw _0x4b3be3;}}function refreshOauth2MicrosoftAccessToken(_0x11bba9){return Promise['resolve']()[_0xb589('0x39')](function(){if(_0x11bba9['data3'])return _0x11bba9;return db[_0xb589('0x3a')][_0xb589('0x3b')]({'where':{'id':_0x11bba9['id']},'raw':!![]});})[_0xb589('0x39')](function(_0x1fa1f9){var _0x35e946={'grant_type':_0xb589('0x3c'),'refresh_token':_0x1fa1f9[_0xb589('0x3d')],'scope':getAccessTokenScope(_0x1fa1f9),'redirect_uri':_0x1fa1f9[_0xb589('0x27')],'client_id':_0x1fa1f9['data1'],'client_secret':encryptor['decryptString'](_0x1fa1f9['data3'])};var _0x2fa5f6={'method':'POST','uri':MICROSOFT_AUTH_URL[_0xb589('0x1d')]('{TENANT_ID}',_0x1fa1f9[_0xb589('0x3e')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x35e946,'json':!![]};return rp(_0x2fa5f6);})[_0xb589('0x39')](function(_0xc0786){_0x11bba9['data5']=_0xc0786[_0xb589('0x3f')];_0x11bba9[_0xb589('0x3d')]=_0xc0786[_0xb589('0x3c')];return db[_0xb589('0x3a')][_0xb589('0x40')]({'data5':_0x11bba9[_0xb589('0x41')],'data6':_0x11bba9[_0xb589('0x3d')]},{'where':{'id':_0x11bba9['id']}});})[_0xb589('0x39')](function(){return _0x11bba9;})[_0xb589('0x42')](function(_0x4c7a95){logger['error'](_0xb589('0x43'),_0x11bba9['id'],_0x4c7a95);});}function getOauth2MicrosoftAccessToken(_0x54a185,_0x5a064c){var _0x332b95={'grant_type':_0xb589('0x44'),'code':_0x54a185,'scope':getAccessTokenScope(_0x5a064c),'redirect_uri':_0x5a064c[_0xb589('0x27')],'client_id':_0x5a064c['data1'],'client_secret':encryptor['decryptString'](_0x5a064c[_0xb589('0x45')])};var _0x44ad9c={'method':_0xb589('0x46'),'uri':MICROSOFT_AUTH_URL[_0xb589('0x1d')]('{TENANT_ID}',_0x5a064c[_0xb589('0x3e')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x332b95,'json':!![]};return rp(_0x44ad9c);}function startRefreshInterval(_0x1c4fc0){var _0x4db916=schedule[_0xb589('0x47')];if(_0x4db916[_0x1c4fc0['id']])clearInterval(_0x4db916[_0x1c4fc0['id']]);_0x4db916[_0x1c4fc0['id']]=setInterval(refreshOauth2MicrosoftAccessToken['bind'](this,{'id':_0x1c4fc0['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0xb589('0x47')]=_0x4db916;}function startAllRefreshIntervals(){return db[_0xb589('0x3a')][_0xb589('0x48')]({'where':{'data6':{'$ne':null}},'raw':!![]})['then'](function(_0x391e59){var _0x5ccb4c=_0x391e59['map'](function(_0x5afdca){return refreshOauth2MicrosoftAccessToken(_0x5afdca)[_0xb589('0x39')](function(_0x38fb2d){startRefreshInterval(_0x38fb2d);});});return Promise[_0xb589('0x49')](_0x5ccb4c);})[_0xb589('0x42')](function(_0x4add2e){var _0x35aa5b=_0x4add2e?util[_0xb589('0x4a')](_0x4add2e,{'showHidden':![],'depth':null}):'';logger[_0xb589('0x4b')](_0xb589('0x4c'),_0x35aa5b);});}module['exports']={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};