Built motion from commit d5e4af8c.|2.6.23
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0xbc8a=['resolve','data3','then','refresh_token','data6','POST','access_token','update','data5','catch','error','authorization_code','decryptString','intervals','bind','findAll','all','inspect','jsonwebtoken','moment','ioredis','util','../../components/encryptor','../../config/environment','../../config/logger','api','../../config/schedule/cloud-provider','../../mysqldb','redis','defaults','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','profile','email','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','/authorize','/token','map','type','Dynamics365','/.default','join','Outlook365','data7','replace','data2','id_token','stringify','base64','randomBytes','hex','client_id','data1','response_type','redirect_uri','data4','response_mode','form_post','scope','state','nonce','prompt','login','oauth2Claims','oauth2/','set','decode','payload','iss','issuer','audience','isAfter','unix','exp'];(function(_0x53c256,_0x382a24){var _0x25feb6=function(_0x2652fd){while(--_0x2652fd){_0x53c256['push'](_0x53c256['shift']());}};_0x25feb6(++_0x382a24);}(_0xbc8a,0x193));var _0xabc8=function(_0x7d4593,_0xd66d60){_0x7d4593=_0x7d4593-0x0;var _0x440c23=_0xbc8a[_0x7d4593];return _0x440c23;};'use strict';var _=require('lodash');var crypto=require('crypto');var jwt=require(_0xabc8('0x0'));var moment=require(_0xabc8('0x1'));var Redis=require(_0xabc8('0x2'));var rp=require('request-promise');var util=require(_0xabc8('0x3'));var encryptor=require(_0xabc8('0x4'));var config=require(_0xabc8('0x5'));var logger=require(_0xabc8('0x6'))(_0xabc8('0x7'));var schedule=require(_0xabc8('0x8'));var db=require(_0xabc8('0x9'))['db'];config[_0xabc8('0xa')]=_[_0xabc8('0xb')](config[_0xabc8('0xa')],{'host':_0xabc8('0xc'),'port':0x18eb});var redis=new Redis(config[_0xabc8('0xa')]);var MICROSOFT_AUTH_URL=_0xabc8('0xd');var AZURE_AUTH_SCOPES={'Outlook365':[_0xabc8('0xe'),_0xabc8('0xf'),_0xabc8('0x10'),_0xabc8('0x11'),_0xabc8('0x12'),_0xabc8('0x13'),'https://outlook.office.com/SMTP.Send'],'Dynamics365':[_0xabc8('0xe'),'offline_access']};var MICROSOFT_AUTH_ENDPOINT=_0xabc8('0x14');var MICROSOFT_TOKEN_ENDPOINT=_0xabc8('0x15');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x1b6925){var _0x5b2ba8=_[_0xabc8('0x16')](AZURE_AUTH_SCOPES[_0x1b6925[_0xabc8('0x17')]]);if(_0x1b6925[_0xabc8('0x17')]===_0xabc8('0x18'))_0x5b2ba8['push'](_0x1b6925['data7']+_0xabc8('0x19'));return _0x5b2ba8[_0xabc8('0x1a')]('\x20');}function getAccessTokenScope(_0x5ed373){if(_0x5ed373[_0xabc8('0x17')]===_0xabc8('0x1b'))return'https://outlook.office365.com/IMAP.AccessAsUser.All';if(_0x5ed373[_0xabc8('0x17')]==='Dynamics365')return _0x5ed373[_0xabc8('0x1c')]+_0xabc8('0x19');}function generateMicrosoftAuthorizationUrl(_0x2af3a5,_0x42f029){var _0x459ba9=MICROSOFT_AUTH_URL[_0xabc8('0x1d')]('{TENANT_ID}',_0x2af3a5[_0xabc8('0x1e')]);var _0x56ddc4=['code',_0xabc8('0x1f')];var _0x463bd=Buffer['from'](JSON[_0xabc8('0x20')]({'id':_0x42f029}))['toString'](_0xabc8('0x21'));var _0x47ba25=crypto[_0xabc8('0x22')](0x10)['toString'](_0xabc8('0x23'));var _0x218df9=getAuthorizationScopes(_0x2af3a5);var _0xf67b2c=[{'key':_0xabc8('0x24'),'value':_0x2af3a5[_0xabc8('0x25')]},{'key':_0xabc8('0x26'),'value':encodeURIComponent(_0x56ddc4[_0xabc8('0x1a')]('\x20'))},{'key':_0xabc8('0x27'),'value':_0x2af3a5[_0xabc8('0x28')]},{'key':_0xabc8('0x29'),'value':_0xabc8('0x2a')},{'key':_0xabc8('0x2b'),'value':encodeURIComponent(_0x218df9)},{'key':_0xabc8('0x2c'),'value':_0x463bd},{'key':_0xabc8('0x2d'),'value':_0x47ba25},{'key':_0xabc8('0x2e'),'value':_0xabc8('0x2f')}];var _0xcd4e94=_0x459ba9+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0xabc8('0x16')](_0xf67b2c,function(_0x370135){return _0x370135['key']+'='+_0x370135['value'];})[_0xabc8('0x1a')]('&');_0x2af3a5[_0xabc8('0x30')]={'issuer':_0x459ba9[_0xabc8('0x1d')](_0xabc8('0x31'),''),'audience':_0x2af3a5[_0xabc8('0x25')],'state':_0x463bd,'nonce':_0x47ba25};redis[_0xabc8('0x32')](_0x463bd,JSON[_0xabc8('0x20')](_0x2af3a5));return _0xcd4e94;}function isValidIdToken(_0x4a114f,_0x5e54dd){try{var _0x34a7c1=jwt[_0xabc8('0x33')](_0x4a114f,{'complete':!![]});var _0x3b3d8d=_0x34a7c1[_0xabc8('0x34')];if(_0x3b3d8d[_0xabc8('0x35')]!==_0x5e54dd[_0xabc8('0x36')])return![];if(_0x3b3d8d['aud']!==_0x5e54dd[_0xabc8('0x37')])return![];if(_0x3b3d8d[_0xabc8('0x2d')]!==_0x5e54dd[_0xabc8('0x2d')])return![];if(moment()[_0xabc8('0x38')](moment[_0xabc8('0x39')](_0x3b3d8d[_0xabc8('0x3a')])))return![];return!![];}catch(_0x4d2895){throw _0x4d2895;}}function refreshOauth2MicrosoftAccessToken(_0x2be4e0){return Promise[_0xabc8('0x3b')]()['then'](function(){if(_0x2be4e0[_0xabc8('0x3c')])return _0x2be4e0;return db['CloudProvider']['findOne']({'where':{'id':_0x2be4e0['id']},'raw':!![]});})[_0xabc8('0x3d')](function(_0x2e9813){var _0x2e8195={'grant_type':_0xabc8('0x3e'),'refresh_token':_0x2e9813[_0xabc8('0x3f')],'scope':getAccessTokenScope(_0x2e9813),'redirect_uri':_0x2e9813[_0xabc8('0x28')],'client_id':_0x2e9813[_0xabc8('0x25')],'client_secret':encryptor['decryptString'](_0x2e9813[_0xabc8('0x3c')])};var _0xf8a2d3={'method':_0xabc8('0x40'),'uri':MICROSOFT_AUTH_URL[_0xabc8('0x1d')]('{TENANT_ID}',_0x2e9813[_0xabc8('0x1e')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x2e8195,'json':!![]};return rp(_0xf8a2d3);})['then'](function(_0x152451){_0x2be4e0['data5']=_0x152451[_0xabc8('0x41')];_0x2be4e0[_0xabc8('0x3f')]=_0x152451[_0xabc8('0x3e')];return db['CloudProvider'][_0xabc8('0x42')]({'data5':_0x2be4e0[_0xabc8('0x43')],'data6':_0x2be4e0['data6']},{'where':{'id':_0x2be4e0['id']}});})['then'](function(){return _0x2be4e0;})[_0xabc8('0x44')](function(_0x31bd6){logger[_0xabc8('0x45')]('Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s',_0x2be4e0['id'],_0x31bd6);});}function getOauth2MicrosoftAccessToken(_0xd4cdd1,_0x428315){var _0x10b816={'grant_type':_0xabc8('0x46'),'code':_0xd4cdd1,'scope':getAccessTokenScope(_0x428315),'redirect_uri':_0x428315[_0xabc8('0x28')],'client_id':_0x428315[_0xabc8('0x25')],'client_secret':encryptor[_0xabc8('0x47')](_0x428315['data3'])};var _0x3d66b3={'method':'POST','uri':MICROSOFT_AUTH_URL[_0xabc8('0x1d')]('{TENANT_ID}',_0x428315[_0xabc8('0x1e')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x10b816,'json':!![]};return rp(_0x3d66b3);}function startRefreshInterval(_0x326ce2){var _0x59c82d=schedule[_0xabc8('0x48')];if(_0x59c82d[_0x326ce2['id']])clearInterval(_0x59c82d[_0x326ce2['id']]);_0x59c82d[_0x326ce2['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0xabc8('0x49')](this,{'id':_0x326ce2['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0xabc8('0x48')]=_0x59c82d;}function startAllRefreshIntervals(){return db['CloudProvider'][_0xabc8('0x4a')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0xabc8('0x3d')](function(_0x339fde){var _0x31932f=_0x339fde[_0xabc8('0x16')](function(_0x514ac7){return refreshOauth2MicrosoftAccessToken(_0x514ac7)[_0xabc8('0x3d')](function(_0x3d7891){startRefreshInterval(_0x3d7891);});});return Promise[_0xabc8('0x4b')](_0x31932f);})['catch'](function(_0x182680){var _0x4ce0d1=_0x182680?util[_0xabc8('0x4c')](_0x182680,{'showHidden':![],'depth':null}):'';logger[_0xabc8('0x45')]('[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s',_0x4ce0d1);});}module['exports']={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};