Built motion from commit ddca4d0d.|2.5.47
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x5686=['Outlook365','data2','code','id_token','from','stringify','randomBytes','toString','hex','client_id','redirect_uri','data4','form_post','scope','nonce','prompt','login','key','replace','data1','decode','payload','iss','issuer','aud','isAfter','exp','data3','findOne','then','refresh_token','data6','decryptString','POST','{TENANT_ID}','access_token','CloudProvider','update','catch','error','authorization_code','intervals','bind','findAll','all','inspect','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','exports','lodash','crypto','jsonwebtoken','moment','ioredis','request-promise','../../components/encryptor','../../config/environment','api','../../mysqldb','redis','defaults','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','openid','offline_access','/authorize','/token','map','type','Dynamics365','push','data7','/.default','join'];(function(_0x3ab51d,_0x2fa01d){var _0x29a04e=function(_0x7807b0){while(--_0x7807b0){_0x3ab51d['push'](_0x3ab51d['shift']());}};_0x29a04e(++_0x2fa01d);}(_0x5686,0x1ac));var _0x6568=function(_0x90a39a,_0x32020d){_0x90a39a=_0x90a39a-0x0;var _0x2b62f7=_0x5686[_0x90a39a];return _0x2b62f7;};'use strict';var _=require(_0x6568('0x0'));var crypto=require(_0x6568('0x1'));var jwt=require(_0x6568('0x2'));var moment=require(_0x6568('0x3'));var Redis=require(_0x6568('0x4'));var rp=require(_0x6568('0x5'));var util=require('util');var encryptor=require(_0x6568('0x6'));var config=require(_0x6568('0x7'));var logger=require('../../config/logger')(_0x6568('0x8'));var schedule=require('../../config/schedule/cloud-provider');var db=require(_0x6568('0x9'))['db'];config[_0x6568('0xa')]=_[_0x6568('0xb')](config[_0x6568('0xa')],{'host':_0x6568('0xc'),'port':0x18eb});var redis=new Redis(config[_0x6568('0xa')]);var MICROSOFT_AUTH_URL=_0x6568('0xd');var AZURE_AUTH_SCOPES={'Outlook365':['openid','profile','email','offline_access',_0x6568('0xe'),_0x6568('0xf'),_0x6568('0x10')],'Dynamics365':[_0x6568('0x11'),_0x6568('0x12')]};var MICROSOFT_AUTH_ENDPOINT=_0x6568('0x13');var MICROSOFT_TOKEN_ENDPOINT=_0x6568('0x14');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x4d5a55){var _0x39cb92=_[_0x6568('0x15')](AZURE_AUTH_SCOPES[_0x4d5a55[_0x6568('0x16')]]);if(_0x4d5a55[_0x6568('0x16')]===_0x6568('0x17'))_0x39cb92[_0x6568('0x18')](_0x4d5a55[_0x6568('0x19')]+_0x6568('0x1a'));return _0x39cb92[_0x6568('0x1b')]('\x20');}function getAccessTokenScope(_0x4f2b9e){if(_0x4f2b9e[_0x6568('0x16')]===_0x6568('0x1c'))return'https://outlook.office365.com/IMAP.AccessAsUser.All';if(_0x4f2b9e[_0x6568('0x16')]===_0x6568('0x17'))return _0x4f2b9e[_0x6568('0x19')]+_0x6568('0x1a');}function generateMicrosoftAuthorizationUrl(_0x56d361,_0x433da1){var _0x1e7d1d=MICROSOFT_AUTH_URL['replace']('{TENANT_ID}',_0x56d361[_0x6568('0x1d')]);var _0x142218=[_0x6568('0x1e'),_0x6568('0x1f')];var _0x42b16f=Buffer[_0x6568('0x20')](JSON[_0x6568('0x21')]({'id':_0x433da1}))['toString']('base64');var _0x1e81c0=crypto[_0x6568('0x22')](0x10)[_0x6568('0x23')](_0x6568('0x24'));var _0x1ddeaf=getAuthorizationScopes(_0x56d361);var _0x299408=[{'key':_0x6568('0x25'),'value':_0x56d361['data1']},{'key':'response_type','value':encodeURIComponent(_0x142218[_0x6568('0x1b')]('\x20'))},{'key':_0x6568('0x26'),'value':_0x56d361[_0x6568('0x27')]},{'key':'response_mode','value':_0x6568('0x28')},{'key':_0x6568('0x29'),'value':encodeURIComponent(_0x1ddeaf)},{'key':'state','value':_0x42b16f},{'key':_0x6568('0x2a'),'value':_0x1e81c0},{'key':_0x6568('0x2b'),'value':_0x6568('0x2c')}];var _0x54aa08=_0x1e7d1d+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0x6568('0x15')](_0x299408,function(_0x4fa425){return _0x4fa425[_0x6568('0x2d')]+'='+_0x4fa425['value'];})['join']('&');_0x56d361['oauth2Claims']={'issuer':_0x1e7d1d[_0x6568('0x2e')]('oauth2/',''),'audience':_0x56d361[_0x6568('0x2f')],'state':_0x42b16f,'nonce':_0x1e81c0};redis['set'](_0x42b16f,JSON[_0x6568('0x21')](_0x56d361));return _0x54aa08;}function isValidIdToken(_0xc7379d,_0x3cd96e){try{var _0x1918ea=jwt[_0x6568('0x30')](_0xc7379d,{'complete':!![]});var _0x5700aa=_0x1918ea[_0x6568('0x31')];if(_0x5700aa[_0x6568('0x32')]!==_0x3cd96e[_0x6568('0x33')])return![];if(_0x5700aa[_0x6568('0x34')]!==_0x3cd96e['audience'])return![];if(_0x5700aa['nonce']!==_0x3cd96e[_0x6568('0x2a')])return![];if(moment()[_0x6568('0x35')](moment['unix'](_0x5700aa[_0x6568('0x36')])))return![];return!![];}catch(_0xc614ed){throw _0xc614ed;}}function refreshOauth2MicrosoftAccessToken(_0x3d28e8){return Promise['resolve']()['then'](function(){if(_0x3d28e8[_0x6568('0x37')])return _0x3d28e8;return db['CloudProvider'][_0x6568('0x38')]({'where':{'id':_0x3d28e8['id']},'raw':!![]});})[_0x6568('0x39')](function(_0x1826b0){var _0x464bfe={'grant_type':_0x6568('0x3a'),'refresh_token':_0x1826b0[_0x6568('0x3b')],'scope':getAccessTokenScope(_0x1826b0),'redirect_uri':_0x1826b0[_0x6568('0x27')],'client_id':_0x1826b0[_0x6568('0x2f')],'client_secret':encryptor[_0x6568('0x3c')](_0x1826b0[_0x6568('0x37')])};var _0x117a23={'method':_0x6568('0x3d'),'uri':MICROSOFT_AUTH_URL[_0x6568('0x2e')](_0x6568('0x3e'),_0x1826b0[_0x6568('0x1d')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x464bfe,'json':!![]};return rp(_0x117a23);})[_0x6568('0x39')](function(_0x4a62fb){_0x3d28e8['data5']=_0x4a62fb[_0x6568('0x3f')];_0x3d28e8[_0x6568('0x3b')]=_0x4a62fb['refresh_token'];return db[_0x6568('0x40')][_0x6568('0x41')]({'data5':_0x3d28e8['data5'],'data6':_0x3d28e8[_0x6568('0x3b')]},{'where':{'id':_0x3d28e8['id']}});})[_0x6568('0x39')](function(){return _0x3d28e8;})[_0x6568('0x42')](function(_0x43f92d){logger[_0x6568('0x43')]('Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s',_0x3d28e8['id'],_0x43f92d);});}function getOauth2MicrosoftAccessToken(_0x2906b8,_0x5baccb){var _0x295eae={'grant_type':_0x6568('0x44'),'code':_0x2906b8,'scope':getAccessTokenScope(_0x5baccb),'redirect_uri':_0x5baccb[_0x6568('0x27')],'client_id':_0x5baccb[_0x6568('0x2f')],'client_secret':encryptor[_0x6568('0x3c')](_0x5baccb['data3'])};var _0x343524={'method':_0x6568('0x3d'),'uri':MICROSOFT_AUTH_URL[_0x6568('0x2e')](_0x6568('0x3e'),_0x5baccb['data2'])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x295eae,'json':!![]};return rp(_0x343524);}function startRefreshInterval(_0x548e8f){var _0x67b9f4=schedule[_0x6568('0x45')];if(_0x67b9f4[_0x548e8f['id']])clearInterval(_0x67b9f4[_0x548e8f['id']]);_0x67b9f4[_0x548e8f['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x6568('0x46')](this,{'id':_0x548e8f['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x6568('0x45')]=_0x67b9f4;}function startAllRefreshIntervals(){return db[_0x6568('0x40')][_0x6568('0x47')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x6568('0x39')](function(_0x13d6b5){var _0x577878=_0x13d6b5[_0x6568('0x15')](function(_0x44b29b){return refreshOauth2MicrosoftAccessToken(_0x44b29b)[_0x6568('0x39')](function(_0x37e467){startRefreshInterval(_0x37e467);});});return Promise[_0x6568('0x48')](_0x577878);})[_0x6568('0x42')](function(_0x266eb1){var _0x2529fa=_0x266eb1?util[_0x6568('0x49')](_0x266eb1,{'showHidden':![],'depth':null}):'';logger[_0x6568('0x43')](_0x6568('0x4a'),_0x2529fa);});}module[_0x6568('0x4b')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};