dc5e44a16f119271a73818dbac194ab93f0c0a56
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x8126=['data3','intervals','bind','findAll','all','lodash','crypto','jsonwebtoken','moment','ioredis','request-promise','util','../../components/encryptor','../../config/environment','../../config/logger','api','../../config/schedule/cloud-provider','redis','defaults','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','profile','email','offline_access','https://outlook.office.com/POP.AccessAsUser.All','/authorize','map','type','Dynamics365','push','data7','/.default','join','Outlook365','https://outlook.office365.com/IMAP.AccessAsUser.All','replace','{TENANT_ID}','data2','from','stringify','toString','hex','client_id','data1','response_type','response_mode','form_post','state','prompt','key','oauth2Claims','oauth2/','set','decode','payload','iss','aud','audience','nonce','isAfter','unix','resolve','CloudProvider','findOne','then','data6','data4','decryptString','POST','data5','access_token','refresh_token','update','catch','error','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code'];(function(_0x368282,_0x19980f){var _0x7ff7b8=function(_0x36cce9){while(--_0x36cce9){_0x368282['push'](_0x368282['shift']());}};_0x7ff7b8(++_0x19980f);}(_0x8126,0x18b));var _0x6812=function(_0x50ede0,_0x7e6410){_0x50ede0=_0x50ede0-0x0;var _0x5cbe32=_0x8126[_0x50ede0];return _0x5cbe32;};'use strict';var _=require(_0x6812('0x0'));var crypto=require(_0x6812('0x1'));var jwt=require(_0x6812('0x2'));var moment=require(_0x6812('0x3'));var Redis=require(_0x6812('0x4'));var rp=require(_0x6812('0x5'));var util=require(_0x6812('0x6'));var encryptor=require(_0x6812('0x7'));var config=require(_0x6812('0x8'));var logger=require(_0x6812('0x9'))(_0x6812('0xa'));var schedule=require(_0x6812('0xb'));var db=require('../../mysqldb')['db'];config[_0x6812('0xc')]=_[_0x6812('0xd')](config['redis'],{'host':_0x6812('0xe'),'port':0x18eb});var redis=new Redis(config[_0x6812('0xc')]);var MICROSOFT_AUTH_URL=_0x6812('0xf');var AZURE_AUTH_SCOPES={'Outlook365':[_0x6812('0x10'),_0x6812('0x11'),_0x6812('0x12'),_0x6812('0x13'),'https://outlook.office365.com/IMAP.AccessAsUser.All',_0x6812('0x14'),'https://outlook.office.com/SMTP.Send'],'Dynamics365':[_0x6812('0x10'),_0x6812('0x13')]};var MICROSOFT_AUTH_ENDPOINT=_0x6812('0x15');var MICROSOFT_TOKEN_ENDPOINT='/token';var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x215934){var _0x286d32=_[_0x6812('0x16')](AZURE_AUTH_SCOPES[_0x215934[_0x6812('0x17')]]);if(_0x215934[_0x6812('0x17')]===_0x6812('0x18'))_0x286d32[_0x6812('0x19')](_0x215934[_0x6812('0x1a')]+_0x6812('0x1b'));return _0x286d32[_0x6812('0x1c')]('\x20');}function getAccessTokenScope(_0x35a88d){if(_0x35a88d[_0x6812('0x17')]===_0x6812('0x1d'))return _0x6812('0x1e');if(_0x35a88d[_0x6812('0x17')]==='Dynamics365')return _0x35a88d['data7']+_0x6812('0x1b');}function generateMicrosoftAuthorizationUrl(_0x1fda17,_0x5cf128){var _0x4d7d32=MICROSOFT_AUTH_URL[_0x6812('0x1f')](_0x6812('0x20'),_0x1fda17[_0x6812('0x21')]);var _0x296418=['code','id_token'];var _0xdfcf51=Buffer[_0x6812('0x22')](JSON[_0x6812('0x23')]({'id':_0x5cf128}))['toString']('base64');var _0x585205=crypto['randomBytes'](0x10)[_0x6812('0x24')](_0x6812('0x25'));var _0x5e4e3d=getAuthorizationScopes(_0x1fda17);var _0x439619=[{'key':_0x6812('0x26'),'value':_0x1fda17[_0x6812('0x27')]},{'key':_0x6812('0x28'),'value':encodeURIComponent(_0x296418['join']('\x20'))},{'key':'redirect_uri','value':_0x1fda17['data4']},{'key':_0x6812('0x29'),'value':_0x6812('0x2a')},{'key':'scope','value':encodeURIComponent(_0x5e4e3d)},{'key':_0x6812('0x2b'),'value':_0xdfcf51},{'key':'nonce','value':_0x585205},{'key':_0x6812('0x2c'),'value':'login'}];var _0x20b2eb=_0x4d7d32+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0x6812('0x16')](_0x439619,function(_0x1d2055){return _0x1d2055[_0x6812('0x2d')]+'='+_0x1d2055['value'];})[_0x6812('0x1c')]('&');_0x1fda17[_0x6812('0x2e')]={'issuer':_0x4d7d32[_0x6812('0x1f')](_0x6812('0x2f'),''),'audience':_0x1fda17[_0x6812('0x27')],'state':_0xdfcf51,'nonce':_0x585205};redis[_0x6812('0x30')](_0xdfcf51,JSON[_0x6812('0x23')](_0x1fda17));return _0x20b2eb;}function isValidIdToken(_0x2e5e85,_0x16c81d){try{var _0x5b3b94=jwt[_0x6812('0x31')](_0x2e5e85,{'complete':!![]});var _0x556167=_0x5b3b94[_0x6812('0x32')];if(_0x556167[_0x6812('0x33')]!==_0x16c81d['issuer'])return![];if(_0x556167[_0x6812('0x34')]!==_0x16c81d[_0x6812('0x35')])return![];if(_0x556167[_0x6812('0x36')]!==_0x16c81d['nonce'])return![];if(moment()[_0x6812('0x37')](moment[_0x6812('0x38')](_0x556167['exp'])))return![];return!![];}catch(_0x155a2d){throw _0x155a2d;}}function refreshOauth2MicrosoftAccessToken(_0x341567){return Promise[_0x6812('0x39')]()['then'](function(){if(_0x341567['data3'])return _0x341567;return db[_0x6812('0x3a')][_0x6812('0x3b')]({'where':{'id':_0x341567['id']},'raw':!![]});})[_0x6812('0x3c')](function(_0xed8146){var _0x38893b={'grant_type':'refresh_token','refresh_token':_0xed8146[_0x6812('0x3d')],'scope':getAccessTokenScope(_0xed8146),'redirect_uri':_0xed8146[_0x6812('0x3e')],'client_id':_0xed8146[_0x6812('0x27')],'client_secret':encryptor[_0x6812('0x3f')](_0xed8146['data3'])};var _0x396487={'method':_0x6812('0x40'),'uri':MICROSOFT_AUTH_URL['replace']('{TENANT_ID}',_0xed8146[_0x6812('0x21')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x38893b,'json':!![]};return rp(_0x396487);})[_0x6812('0x3c')](function(_0x3c1444){_0x341567[_0x6812('0x41')]=_0x3c1444[_0x6812('0x42')];_0x341567[_0x6812('0x3d')]=_0x3c1444[_0x6812('0x43')];return db[_0x6812('0x3a')][_0x6812('0x44')]({'data5':_0x341567[_0x6812('0x41')],'data6':_0x341567[_0x6812('0x3d')]},{'where':{'id':_0x341567['id']}});})[_0x6812('0x3c')](function(){return _0x341567;})[_0x6812('0x45')](function(_0x12b853){logger[_0x6812('0x46')](_0x6812('0x47'),_0x341567['id'],_0x12b853);});}function getOauth2MicrosoftAccessToken(_0x29b6b7,_0x4f2d8b){var _0x3d4684={'grant_type':_0x6812('0x48'),'code':_0x29b6b7,'scope':getAccessTokenScope(_0x4f2d8b),'redirect_uri':_0x4f2d8b[_0x6812('0x3e')],'client_id':_0x4f2d8b[_0x6812('0x27')],'client_secret':encryptor[_0x6812('0x3f')](_0x4f2d8b[_0x6812('0x49')])};var _0x1a7ca8={'method':_0x6812('0x40'),'uri':MICROSOFT_AUTH_URL[_0x6812('0x1f')](_0x6812('0x20'),_0x4f2d8b[_0x6812('0x21')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x3d4684,'json':!![]};return rp(_0x1a7ca8);}function startRefreshInterval(_0x41fc19){var _0x6f8d1=schedule[_0x6812('0x4a')];if(_0x6f8d1[_0x41fc19['id']])clearInterval(_0x6f8d1[_0x41fc19['id']]);_0x6f8d1[_0x41fc19['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x6812('0x4b')](this,{'id':_0x41fc19['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x6812('0x4a')]=_0x6f8d1;}function startAllRefreshIntervals(){return db['CloudProvider'][_0x6812('0x4c')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x6812('0x3c')](function(_0x330f9d){var _0x249cf2=_0x330f9d[_0x6812('0x16')](function(_0x208793){return refreshOauth2MicrosoftAccessToken(_0x208793)[_0x6812('0x3c')](function(_0x41c512){startRefreshInterval(_0x41c512);});});return Promise[_0x6812('0x4d')](_0x249cf2);})['catch'](function(_0x557c6a){var _0x260d55=_0x557c6a?util['inspect'](_0x557c6a,{'showHidden':![],'depth':null}):'';logger[_0x6812('0x46')]('[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s',_0x260d55);});}module['exports']={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};