Built motion from commit 87cd5f02.|2.5.48
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x0e9f=['toString','base64','data1','response_type','redirect_uri','response_mode','state','nonce','login','map','key','oauth2/','set','stringify','decode','payload','iss','issuer','aud','audience','isAfter','unix','resolve','then','data3','CloudProvider','findOne','refresh_token','data6','data4','decryptString','POST','access_token','data5','catch','error','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code','intervals','bind','findAll','inspect','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','exports','lodash','crypto','jsonwebtoken','moment','ioredis','util','../../config/environment','../../config/logger','api','../../config/schedule/cloud-provider','../../mysqldb','redis','defaults','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','profile','email','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','offline_access','/authorize','/token','type','Dynamics365','push','join','Outlook365','data7','/.default','{TENANT_ID}','data2','code'];(function(_0x5a776b,_0x46f785){var _0xbbef59=function(_0x38313e){while(--_0x38313e){_0x5a776b['push'](_0x5a776b['shift']());}};_0xbbef59(++_0x46f785);}(_0x0e9f,0x1b2));var _0xf0e9=function(_0x4b8160,_0x36e900){_0x4b8160=_0x4b8160-0x0;var _0x216416=_0x0e9f[_0x4b8160];return _0x216416;};'use strict';var _=require(_0xf0e9('0x0'));var crypto=require(_0xf0e9('0x1'));var jwt=require(_0xf0e9('0x2'));var moment=require(_0xf0e9('0x3'));var Redis=require(_0xf0e9('0x4'));var rp=require('request-promise');var util=require(_0xf0e9('0x5'));var encryptor=require('../../components/encryptor');var config=require(_0xf0e9('0x6'));var logger=require(_0xf0e9('0x7'))(_0xf0e9('0x8'));var schedule=require(_0xf0e9('0x9'));var db=require(_0xf0e9('0xa'))['db'];config[_0xf0e9('0xb')]=_[_0xf0e9('0xc')](config['redis'],{'host':_0xf0e9('0xd'),'port':0x18eb});var redis=new Redis(config[_0xf0e9('0xb')]);var MICROSOFT_AUTH_URL=_0xf0e9('0xe');var AZURE_AUTH_SCOPES={'Outlook365':[_0xf0e9('0xf'),_0xf0e9('0x10'),_0xf0e9('0x11'),'offline_access',_0xf0e9('0x12'),_0xf0e9('0x13'),_0xf0e9('0x14')],'Dynamics365':[_0xf0e9('0xf'),_0xf0e9('0x15')]};var MICROSOFT_AUTH_ENDPOINT=_0xf0e9('0x16');var MICROSOFT_TOKEN_ENDPOINT=_0xf0e9('0x17');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x54785a){var _0x2c7d93=_['map'](AZURE_AUTH_SCOPES[_0x54785a['type']]);if(_0x54785a[_0xf0e9('0x18')]===_0xf0e9('0x19'))_0x2c7d93[_0xf0e9('0x1a')](_0x54785a['data7']+'/.default');return _0x2c7d93[_0xf0e9('0x1b')]('\x20');}function getAccessTokenScope(_0x5905f5){if(_0x5905f5[_0xf0e9('0x18')]===_0xf0e9('0x1c'))return'https://outlook.office365.com/IMAP.AccessAsUser.All';if(_0x5905f5[_0xf0e9('0x18')]===_0xf0e9('0x19'))return _0x5905f5[_0xf0e9('0x1d')]+_0xf0e9('0x1e');}function generateMicrosoftAuthorizationUrl(_0x23d7a8,_0x44efa6){var _0x3b73af=MICROSOFT_AUTH_URL['replace'](_0xf0e9('0x1f'),_0x23d7a8[_0xf0e9('0x20')]);var _0x4b7ef1=[_0xf0e9('0x21'),'id_token'];var _0x4290b8=Buffer['from'](JSON['stringify']({'id':_0x44efa6}))[_0xf0e9('0x22')](_0xf0e9('0x23'));var _0x596326=crypto['randomBytes'](0x10)[_0xf0e9('0x22')]('hex');var _0x1e366c=getAuthorizationScopes(_0x23d7a8);var _0x470141=[{'key':'client_id','value':_0x23d7a8[_0xf0e9('0x24')]},{'key':_0xf0e9('0x25'),'value':encodeURIComponent(_0x4b7ef1['join']('\x20'))},{'key':_0xf0e9('0x26'),'value':_0x23d7a8['data4']},{'key':_0xf0e9('0x27'),'value':'form_post'},{'key':'scope','value':encodeURIComponent(_0x1e366c)},{'key':_0xf0e9('0x28'),'value':_0x4290b8},{'key':_0xf0e9('0x29'),'value':_0x596326},{'key':'prompt','value':_0xf0e9('0x2a')}];var _0x1a196f=_0x3b73af+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0xf0e9('0x2b')](_0x470141,function(_0x20bb48){return _0x20bb48[_0xf0e9('0x2c')]+'='+_0x20bb48['value'];})[_0xf0e9('0x1b')]('&');_0x23d7a8['oauth2Claims']={'issuer':_0x3b73af['replace'](_0xf0e9('0x2d'),''),'audience':_0x23d7a8[_0xf0e9('0x24')],'state':_0x4290b8,'nonce':_0x596326};redis[_0xf0e9('0x2e')](_0x4290b8,JSON[_0xf0e9('0x2f')](_0x23d7a8));return _0x1a196f;}function isValidIdToken(_0x3c7782,_0x2356c5){try{var _0x19c4ac=jwt[_0xf0e9('0x30')](_0x3c7782,{'complete':!![]});var _0x1ffdf7=_0x19c4ac[_0xf0e9('0x31')];if(_0x1ffdf7[_0xf0e9('0x32')]!==_0x2356c5[_0xf0e9('0x33')])return![];if(_0x1ffdf7[_0xf0e9('0x34')]!==_0x2356c5[_0xf0e9('0x35')])return![];if(_0x1ffdf7[_0xf0e9('0x29')]!==_0x2356c5[_0xf0e9('0x29')])return![];if(moment()[_0xf0e9('0x36')](moment[_0xf0e9('0x37')](_0x1ffdf7['exp'])))return![];return!![];}catch(_0x3492e0){throw _0x3492e0;}}function refreshOauth2MicrosoftAccessToken(_0x41b156){return Promise[_0xf0e9('0x38')]()[_0xf0e9('0x39')](function(){if(_0x41b156[_0xf0e9('0x3a')])return _0x41b156;return db[_0xf0e9('0x3b')][_0xf0e9('0x3c')]({'where':{'id':_0x41b156['id']},'raw':!![]});})['then'](function(_0x4f4f08){var _0x2cde5a={'grant_type':_0xf0e9('0x3d'),'refresh_token':_0x4f4f08[_0xf0e9('0x3e')],'scope':getAccessTokenScope(_0x4f4f08),'redirect_uri':_0x4f4f08[_0xf0e9('0x3f')],'client_id':_0x4f4f08[_0xf0e9('0x24')],'client_secret':encryptor[_0xf0e9('0x40')](_0x4f4f08[_0xf0e9('0x3a')])};var _0x34800b={'method':_0xf0e9('0x41'),'uri':MICROSOFT_AUTH_URL['replace'](_0xf0e9('0x1f'),_0x4f4f08[_0xf0e9('0x20')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x2cde5a,'json':!![]};return rp(_0x34800b);})[_0xf0e9('0x39')](function(_0x4b4bdb){_0x41b156['data5']=_0x4b4bdb[_0xf0e9('0x42')];_0x41b156['data6']=_0x4b4bdb['refresh_token'];return db['CloudProvider']['update']({'data5':_0x41b156[_0xf0e9('0x43')],'data6':_0x41b156[_0xf0e9('0x3e')]},{'where':{'id':_0x41b156['id']}});})[_0xf0e9('0x39')](function(){return _0x41b156;})[_0xf0e9('0x44')](function(_0x168b07){logger[_0xf0e9('0x45')](_0xf0e9('0x46'),_0x41b156['id'],_0x168b07);});}function getOauth2MicrosoftAccessToken(_0x53bd72,_0x43c303){var _0x4f7648={'grant_type':_0xf0e9('0x47'),'code':_0x53bd72,'scope':getAccessTokenScope(_0x43c303),'redirect_uri':_0x43c303[_0xf0e9('0x3f')],'client_id':_0x43c303['data1'],'client_secret':encryptor[_0xf0e9('0x40')](_0x43c303[_0xf0e9('0x3a')])};var _0x3232a8={'method':_0xf0e9('0x41'),'uri':MICROSOFT_AUTH_URL['replace'](_0xf0e9('0x1f'),_0x43c303[_0xf0e9('0x20')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x4f7648,'json':!![]};return rp(_0x3232a8);}function startRefreshInterval(_0x7b68e7){var _0x4953ee=schedule[_0xf0e9('0x48')];if(_0x4953ee[_0x7b68e7['id']])clearInterval(_0x4953ee[_0x7b68e7['id']]);_0x4953ee[_0x7b68e7['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0xf0e9('0x49')](this,{'id':_0x7b68e7['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0xf0e9('0x48')]=_0x4953ee;}function startAllRefreshIntervals(){return db[_0xf0e9('0x3b')][_0xf0e9('0x4a')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0xf0e9('0x39')](function(_0x1fe690){var _0x4af326=_0x1fe690[_0xf0e9('0x2b')](function(_0x4a0d5e){return refreshOauth2MicrosoftAccessToken(_0x4a0d5e)['then'](function(_0x93378){startRefreshInterval(_0x93378);});});return Promise['all'](_0x4af326);})['catch'](function(_0x350fef){var _0x2a6c31=_0x350fef?util[_0xf0e9('0x4b')](_0x350fef,{'showHidden':![],'depth':null}):'';logger[_0xf0e9('0x45')](_0xf0e9('0x4c'),_0x2a6c31);});}module[_0xf0e9('0x4d')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};