Built motion from commit d1eab355.|2.6.28
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x3956=['data7','Outlook365','/.default','replace','{TENANT_ID}','data2','code','id_token','from','toString','base64','hex','data1','response_type','redirect_uri','nonce','login','key','value','join','oauth2Claims','oauth2/','set','stringify','decode','payload','iss','aud','audience','isAfter','unix','exp','resolve','then','data3','CloudProvider','findOne','refresh_token','data4','data5','access_token','data6','update','catch','error','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code','decryptString','POST','intervals','bind','findAll','inspect','lodash','crypto','jsonwebtoken','ioredis','util','../../config/environment','../../config/logger','api','../../mysqldb','redis','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','profile','email','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','/authorize','/token','map','type','Dynamics365','push'];(function(_0x48f9e1,_0x4b180b){var _0x2afbbd=function(_0x492471){while(--_0x492471){_0x48f9e1['push'](_0x48f9e1['shift']());}};_0x2afbbd(++_0x4b180b);}(_0x3956,0x1bb));var _0x6395=function(_0xda6ad1,_0x5f09e3){_0xda6ad1=_0xda6ad1-0x0;var _0xedc3a5=_0x3956[_0xda6ad1];return _0xedc3a5;};'use strict';var _=require(_0x6395('0x0'));var crypto=require(_0x6395('0x1'));var jwt=require(_0x6395('0x2'));var moment=require('moment');var Redis=require(_0x6395('0x3'));var rp=require('request-promise');var util=require(_0x6395('0x4'));var encryptor=require('../../components/encryptor');var config=require(_0x6395('0x5'));var logger=require(_0x6395('0x6'))(_0x6395('0x7'));var schedule=require('../../config/schedule/cloud-provider');var db=require(_0x6395('0x8'))['db'];config['redis']=_['defaults'](config[_0x6395('0x9')],{'host':_0x6395('0xa'),'port':0x18eb});var redis=new Redis(config[_0x6395('0x9')]);var MICROSOFT_AUTH_URL=_0x6395('0xb');var AZURE_AUTH_SCOPES={'Outlook365':[_0x6395('0xc'),_0x6395('0xd'),_0x6395('0xe'),_0x6395('0xf'),_0x6395('0x10'),_0x6395('0x11'),_0x6395('0x12')],'Dynamics365':[_0x6395('0xc'),'offline_access']};var MICROSOFT_AUTH_ENDPOINT=_0x6395('0x13');var MICROSOFT_TOKEN_ENDPOINT=_0x6395('0x14');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x2b60b9){var _0x3c56e9=_[_0x6395('0x15')](AZURE_AUTH_SCOPES[_0x2b60b9['type']]);if(_0x2b60b9[_0x6395('0x16')]===_0x6395('0x17'))_0x3c56e9[_0x6395('0x18')](_0x2b60b9[_0x6395('0x19')]+'/.default');return _0x3c56e9['join']('\x20');}function getAccessTokenScope(_0x5e0114){if(_0x5e0114[_0x6395('0x16')]===_0x6395('0x1a'))return _0x6395('0x10');if(_0x5e0114[_0x6395('0x16')]===_0x6395('0x17'))return _0x5e0114[_0x6395('0x19')]+_0x6395('0x1b');}function generateMicrosoftAuthorizationUrl(_0x21c74e,_0x443e49){var _0x1ca6f0=MICROSOFT_AUTH_URL[_0x6395('0x1c')](_0x6395('0x1d'),_0x21c74e[_0x6395('0x1e')]);var _0x13522e=[_0x6395('0x1f'),_0x6395('0x20')];var _0x626fb9=Buffer[_0x6395('0x21')](JSON['stringify']({'id':_0x443e49}))[_0x6395('0x22')](_0x6395('0x23'));var _0x24eadf=crypto['randomBytes'](0x10)[_0x6395('0x22')](_0x6395('0x24'));var _0x309099=getAuthorizationScopes(_0x21c74e);var _0x29b1d3=[{'key':'client_id','value':_0x21c74e[_0x6395('0x25')]},{'key':_0x6395('0x26'),'value':encodeURIComponent(_0x13522e['join']('\x20'))},{'key':_0x6395('0x27'),'value':_0x21c74e['data4']},{'key':'response_mode','value':'form_post'},{'key':'scope','value':encodeURIComponent(_0x309099)},{'key':'state','value':_0x626fb9},{'key':_0x6395('0x28'),'value':_0x24eadf},{'key':'prompt','value':_0x6395('0x29')}];var _0x50c689=_0x1ca6f0+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0x6395('0x15')](_0x29b1d3,function(_0x23dfd1){return _0x23dfd1[_0x6395('0x2a')]+'='+_0x23dfd1[_0x6395('0x2b')];})[_0x6395('0x2c')]('&');_0x21c74e[_0x6395('0x2d')]={'issuer':_0x1ca6f0[_0x6395('0x1c')](_0x6395('0x2e'),''),'audience':_0x21c74e[_0x6395('0x25')],'state':_0x626fb9,'nonce':_0x24eadf};redis[_0x6395('0x2f')](_0x626fb9,JSON[_0x6395('0x30')](_0x21c74e));return _0x50c689;}function isValidIdToken(_0x31a47f,_0x573f2f){try{var _0x14fb7c=jwt[_0x6395('0x31')](_0x31a47f,{'complete':!![]});var _0x4decef=_0x14fb7c[_0x6395('0x32')];if(_0x4decef[_0x6395('0x33')]!==_0x573f2f['issuer'])return![];if(_0x4decef[_0x6395('0x34')]!==_0x573f2f[_0x6395('0x35')])return![];if(_0x4decef[_0x6395('0x28')]!==_0x573f2f[_0x6395('0x28')])return![];if(moment()[_0x6395('0x36')](moment[_0x6395('0x37')](_0x4decef[_0x6395('0x38')])))return![];return!![];}catch(_0x3ec6c9){throw _0x3ec6c9;}}function refreshOauth2MicrosoftAccessToken(_0x57882b){return Promise[_0x6395('0x39')]()[_0x6395('0x3a')](function(){if(_0x57882b[_0x6395('0x3b')])return _0x57882b;return db[_0x6395('0x3c')][_0x6395('0x3d')]({'where':{'id':_0x57882b['id']},'raw':!![]});})['then'](function(_0x32925f){var _0x32eae6={'grant_type':_0x6395('0x3e'),'refresh_token':_0x32925f['data6'],'scope':getAccessTokenScope(_0x32925f),'redirect_uri':_0x32925f[_0x6395('0x3f')],'client_id':_0x32925f[_0x6395('0x25')],'client_secret':encryptor['decryptString'](_0x32925f['data3'])};var _0x438148={'method':'POST','uri':MICROSOFT_AUTH_URL[_0x6395('0x1c')](_0x6395('0x1d'),_0x32925f[_0x6395('0x1e')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x32eae6,'json':!![]};return rp(_0x438148);})[_0x6395('0x3a')](function(_0x30ac81){_0x57882b[_0x6395('0x40')]=_0x30ac81[_0x6395('0x41')];_0x57882b[_0x6395('0x42')]=_0x30ac81[_0x6395('0x3e')];return db['CloudProvider'][_0x6395('0x43')]({'data5':_0x57882b[_0x6395('0x40')],'data6':_0x57882b[_0x6395('0x42')]},{'where':{'id':_0x57882b['id']}});})[_0x6395('0x3a')](function(){return _0x57882b;})[_0x6395('0x44')](function(_0x21d58d){logger[_0x6395('0x45')](_0x6395('0x46'),_0x57882b['id'],_0x21d58d);});}function getOauth2MicrosoftAccessToken(_0x3d0b82,_0x73cde0){var _0x2f92c9={'grant_type':_0x6395('0x47'),'code':_0x3d0b82,'scope':getAccessTokenScope(_0x73cde0),'redirect_uri':_0x73cde0['data4'],'client_id':_0x73cde0[_0x6395('0x25')],'client_secret':encryptor[_0x6395('0x48')](_0x73cde0['data3'])};var _0x257e2={'method':_0x6395('0x49'),'uri':MICROSOFT_AUTH_URL[_0x6395('0x1c')]('{TENANT_ID}',_0x73cde0[_0x6395('0x1e')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x2f92c9,'json':!![]};return rp(_0x257e2);}function startRefreshInterval(_0xf24be){var _0x525dd2=schedule[_0x6395('0x4a')];if(_0x525dd2[_0xf24be['id']])clearInterval(_0x525dd2[_0xf24be['id']]);_0x525dd2[_0xf24be['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x6395('0x4b')](this,{'id':_0xf24be['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x6395('0x4a')]=_0x525dd2;}function startAllRefreshIntervals(){return db[_0x6395('0x3c')][_0x6395('0x4c')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x6395('0x3a')](function(_0xb0f207){var _0x4d1ffe=_0xb0f207['map'](function(_0x83430e){return refreshOauth2MicrosoftAccessToken(_0x83430e)[_0x6395('0x3a')](function(_0x6dd6c9){startRefreshInterval(_0x6dd6c9);});});return Promise['all'](_0x4d1ffe);})['catch'](function(_0x585eb8){var _0x1fe4d1=_0x585eb8?util[_0x6395('0x4d')](_0x585eb8,{'showHidden':![],'depth':null}):'';logger[_0x6395('0x45')]('[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s',_0x1fe4d1);});}module['exports']={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};