8621a1db8532d33f2bf33c96b7e61aed58e96ebc
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x8cd1=['crypto','jsonwebtoken','ioredis','request-promise','util','../../components/encryptor','../../config/environment','../../config/logger','api','../../config/schedule/cloud-provider','../../mysqldb','defaults','redis','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','profile','email','offline_access','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','openid','/token','map','type','Dynamics365','push','data7','/.default','join','Outlook365','https://outlook.office365.com/IMAP.AccessAsUser.All','{TENANT_ID}','data2','code','id_token','from','randomBytes','toString','hex','client_id','data1','response_type','redirect_uri','response_mode','form_post','state','nonce','prompt','login','key','oauth2Claims','oauth2/','set','stringify','decode','payload','iss','issuer','aud','audience','isAfter','unix','exp','resolve','then','CloudProvider','data6','data4','data3','POST','replace','refresh_token','data5','catch','error','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code','intervals','bind','findAll','all','inspect','exports','lodash'];(function(_0x2b4411,_0x2625ed){var _0x8e41ef=function(_0x2aa8c1){while(--_0x2aa8c1){_0x2b4411['push'](_0x2b4411['shift']());}};_0x8e41ef(++_0x2625ed);}(_0x8cd1,0xa7));var _0x18cd=function(_0x5e37ca,_0x416e0f){_0x5e37ca=_0x5e37ca-0x0;var _0x458568=_0x8cd1[_0x5e37ca];return _0x458568;};'use strict';var _=require(_0x18cd('0x0'));var crypto=require(_0x18cd('0x1'));var jwt=require(_0x18cd('0x2'));var moment=require('moment');var Redis=require(_0x18cd('0x3'));var rp=require(_0x18cd('0x4'));var util=require(_0x18cd('0x5'));var encryptor=require(_0x18cd('0x6'));var config=require(_0x18cd('0x7'));var logger=require(_0x18cd('0x8'))(_0x18cd('0x9'));var schedule=require(_0x18cd('0xa'));var db=require(_0x18cd('0xb'))['db'];config['redis']=_[_0x18cd('0xc')](config[_0x18cd('0xd')],{'host':_0x18cd('0xe'),'port':0x18eb});var redis=new Redis(config[_0x18cd('0xd')]);var MICROSOFT_AUTH_URL=_0x18cd('0xf');var AZURE_AUTH_SCOPES={'Outlook365':['openid',_0x18cd('0x10'),_0x18cd('0x11'),_0x18cd('0x12'),'https://outlook.office365.com/IMAP.AccessAsUser.All',_0x18cd('0x13'),_0x18cd('0x14')],'Dynamics365':[_0x18cd('0x15'),_0x18cd('0x12')]};var MICROSOFT_AUTH_ENDPOINT='/authorize';var MICROSOFT_TOKEN_ENDPOINT=_0x18cd('0x16');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x112939){var _0x23bf59=_[_0x18cd('0x17')](AZURE_AUTH_SCOPES[_0x112939[_0x18cd('0x18')]]);if(_0x112939['type']===_0x18cd('0x19'))_0x23bf59[_0x18cd('0x1a')](_0x112939[_0x18cd('0x1b')]+_0x18cd('0x1c'));return _0x23bf59[_0x18cd('0x1d')]('\x20');}function getAccessTokenScope(_0x78be23){if(_0x78be23['type']===_0x18cd('0x1e'))return _0x18cd('0x1f');if(_0x78be23[_0x18cd('0x18')]===_0x18cd('0x19'))return _0x78be23[_0x18cd('0x1b')]+_0x18cd('0x1c');}function generateMicrosoftAuthorizationUrl(_0x2b30df,_0x10492a){var _0x348008=MICROSOFT_AUTH_URL['replace'](_0x18cd('0x20'),_0x2b30df[_0x18cd('0x21')]);var _0x17f89d=[_0x18cd('0x22'),_0x18cd('0x23')];var _0x1ee1c8=Buffer[_0x18cd('0x24')](JSON['stringify']({'id':_0x10492a}))['toString']('base64');var _0x21a327=crypto[_0x18cd('0x25')](0x10)[_0x18cd('0x26')](_0x18cd('0x27'));var _0x4d0a08=getAuthorizationScopes(_0x2b30df);var _0x2386d9=[{'key':_0x18cd('0x28'),'value':_0x2b30df[_0x18cd('0x29')]},{'key':_0x18cd('0x2a'),'value':encodeURIComponent(_0x17f89d[_0x18cd('0x1d')]('\x20'))},{'key':_0x18cd('0x2b'),'value':_0x2b30df['data4']},{'key':_0x18cd('0x2c'),'value':_0x18cd('0x2d')},{'key':'scope','value':encodeURIComponent(_0x4d0a08)},{'key':_0x18cd('0x2e'),'value':_0x1ee1c8},{'key':_0x18cd('0x2f'),'value':_0x21a327},{'key':_0x18cd('0x30'),'value':_0x18cd('0x31')}];var _0x361c35=_0x348008+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0x18cd('0x17')](_0x2386d9,function(_0x524a8a){return _0x524a8a[_0x18cd('0x32')]+'='+_0x524a8a['value'];})['join']('&');_0x2b30df[_0x18cd('0x33')]={'issuer':_0x348008['replace'](_0x18cd('0x34'),''),'audience':_0x2b30df[_0x18cd('0x29')],'state':_0x1ee1c8,'nonce':_0x21a327};redis[_0x18cd('0x35')](_0x1ee1c8,JSON[_0x18cd('0x36')](_0x2b30df));return _0x361c35;}function isValidIdToken(_0x168887,_0x477605){try{var _0x5cd4a4=jwt[_0x18cd('0x37')](_0x168887,{'complete':!![]});var _0x1d69a4=_0x5cd4a4[_0x18cd('0x38')];if(_0x1d69a4[_0x18cd('0x39')]!==_0x477605[_0x18cd('0x3a')])return![];if(_0x1d69a4[_0x18cd('0x3b')]!==_0x477605[_0x18cd('0x3c')])return![];if(_0x1d69a4['nonce']!==_0x477605[_0x18cd('0x2f')])return![];if(moment()[_0x18cd('0x3d')](moment[_0x18cd('0x3e')](_0x1d69a4[_0x18cd('0x3f')])))return![];return!![];}catch(_0x2252cb){throw _0x2252cb;}}function refreshOauth2MicrosoftAccessToken(_0x56a804){return Promise[_0x18cd('0x40')]()[_0x18cd('0x41')](function(){if(_0x56a804['data3'])return _0x56a804;return db[_0x18cd('0x42')]['findOne']({'where':{'id':_0x56a804['id']},'raw':!![]});})[_0x18cd('0x41')](function(_0x1e4f8b){var _0x33ee32={'grant_type':'refresh_token','refresh_token':_0x1e4f8b[_0x18cd('0x43')],'scope':getAccessTokenScope(_0x1e4f8b),'redirect_uri':_0x1e4f8b[_0x18cd('0x44')],'client_id':_0x1e4f8b[_0x18cd('0x29')],'client_secret':encryptor['decryptString'](_0x1e4f8b[_0x18cd('0x45')])};var _0xdf49ae={'method':_0x18cd('0x46'),'uri':MICROSOFT_AUTH_URL[_0x18cd('0x47')](_0x18cd('0x20'),_0x1e4f8b[_0x18cd('0x21')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x33ee32,'json':!![]};return rp(_0xdf49ae);})[_0x18cd('0x41')](function(_0x51a78d){_0x56a804['data5']=_0x51a78d['access_token'];_0x56a804['data6']=_0x51a78d[_0x18cd('0x48')];return db[_0x18cd('0x42')]['update']({'data5':_0x56a804[_0x18cd('0x49')],'data6':_0x56a804[_0x18cd('0x43')]},{'where':{'id':_0x56a804['id']}});})['then'](function(){return _0x56a804;})[_0x18cd('0x4a')](function(_0x3138a6){logger[_0x18cd('0x4b')](_0x18cd('0x4c'),_0x56a804['id'],_0x3138a6);});}function getOauth2MicrosoftAccessToken(_0x2b6984,_0x1cee30){var _0x4fa4cf={'grant_type':_0x18cd('0x4d'),'code':_0x2b6984,'scope':getAccessTokenScope(_0x1cee30),'redirect_uri':_0x1cee30['data4'],'client_id':_0x1cee30[_0x18cd('0x29')],'client_secret':encryptor['decryptString'](_0x1cee30[_0x18cd('0x45')])};var _0x274ace={'method':_0x18cd('0x46'),'uri':MICROSOFT_AUTH_URL[_0x18cd('0x47')]('{TENANT_ID}',_0x1cee30[_0x18cd('0x21')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x4fa4cf,'json':!![]};return rp(_0x274ace);}function startRefreshInterval(_0x21b622){var _0x3a94d3=schedule[_0x18cd('0x4e')];if(_0x3a94d3[_0x21b622['id']])clearInterval(_0x3a94d3[_0x21b622['id']]);_0x3a94d3[_0x21b622['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x18cd('0x4f')](this,{'id':_0x21b622['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x18cd('0x4e')]=_0x3a94d3;}function startAllRefreshIntervals(){return db['CloudProvider'][_0x18cd('0x50')]({'where':{'data6':{'$ne':null}},'raw':!![]})['then'](function(_0x5b87c9){var _0x42350a=_0x5b87c9['map'](function(_0x5224c8){return refreshOauth2MicrosoftAccessToken(_0x5224c8)[_0x18cd('0x41')](function(_0x41f098){startRefreshInterval(_0x41f098);});});return Promise[_0x18cd('0x51')](_0x42350a);})[_0x18cd('0x4a')](function(_0x5eff70){var _0x5e9e04=_0x5eff70?util[_0x18cd('0x52')](_0x5eff70,{'showHidden':![],'depth':null}):'';logger[_0x18cd('0x4b')]('[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s',_0x5e9e04);});}module[_0x18cd('0x53')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};