Built motion from commit 449495f6.|2.6.27
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x9e23=['set','stringify','decode','payload','iss','aud','audience','isAfter','exp','then','CloudProvider','refresh_token','decryptString','POST','{TENANT_ID}','data5','access_token','data6','update','catch','authorization_code','data3','bind','intervals','findAll','all','inspect','error','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','exports','crypto','jsonwebtoken','moment','request-promise','util','../../components/encryptor','../../config/environment','../../config/logger','../../config/schedule/cloud-provider','../../mysqldb','redis','defaults','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','email','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','/authorize','/token','map','type','Dynamics365','data7','/.default','join','Outlook365','replace','data2','id_token','from','toString','base64','randomBytes','hex','data1','response_type','redirect_uri','data4','response_mode','form_post','scope','nonce','prompt','login','key','value','oauth2Claims'];(function(_0x563e7e,_0x4f9e06){var _0x80868a=function(_0x255620){while(--_0x255620){_0x563e7e['push'](_0x563e7e['shift']());}};_0x80868a(++_0x4f9e06);}(_0x9e23,0x15a));var _0x39e2=function(_0x31a4b1,_0x1656bb){_0x31a4b1=_0x31a4b1-0x0;var _0x444b04=_0x9e23[_0x31a4b1];return _0x444b04;};'use strict';var _=require('lodash');var crypto=require(_0x39e2('0x0'));var jwt=require(_0x39e2('0x1'));var moment=require(_0x39e2('0x2'));var Redis=require('ioredis');var rp=require(_0x39e2('0x3'));var util=require(_0x39e2('0x4'));var encryptor=require(_0x39e2('0x5'));var config=require(_0x39e2('0x6'));var logger=require(_0x39e2('0x7'))('api');var schedule=require(_0x39e2('0x8'));var db=require(_0x39e2('0x9'))['db'];config[_0x39e2('0xa')]=_[_0x39e2('0xb')](config[_0x39e2('0xa')],{'host':_0x39e2('0xc'),'port':0x18eb});var redis=new Redis(config[_0x39e2('0xa')]);var MICROSOFT_AUTH_URL=_0x39e2('0xd');var AZURE_AUTH_SCOPES={'Outlook365':['openid','profile',_0x39e2('0xe'),_0x39e2('0xf'),_0x39e2('0x10'),_0x39e2('0x11'),_0x39e2('0x12')],'Dynamics365':['openid',_0x39e2('0xf')]};var MICROSOFT_AUTH_ENDPOINT=_0x39e2('0x13');var MICROSOFT_TOKEN_ENDPOINT=_0x39e2('0x14');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x56b010){var _0x549626=_[_0x39e2('0x15')](AZURE_AUTH_SCOPES[_0x56b010[_0x39e2('0x16')]]);if(_0x56b010[_0x39e2('0x16')]===_0x39e2('0x17'))_0x549626['push'](_0x56b010[_0x39e2('0x18')]+_0x39e2('0x19'));return _0x549626[_0x39e2('0x1a')]('\x20');}function getAccessTokenScope(_0x297418){if(_0x297418[_0x39e2('0x16')]===_0x39e2('0x1b'))return'https://outlook.office365.com/IMAP.AccessAsUser.All';if(_0x297418[_0x39e2('0x16')]===_0x39e2('0x17'))return _0x297418['data7']+'/.default';}function generateMicrosoftAuthorizationUrl(_0xde6505,_0x39480a){var _0x3c8a4d=MICROSOFT_AUTH_URL[_0x39e2('0x1c')]('{TENANT_ID}',_0xde6505[_0x39e2('0x1d')]);var _0x4dea1a=['code',_0x39e2('0x1e')];var _0x3347ba=Buffer[_0x39e2('0x1f')](JSON['stringify']({'id':_0x39480a}))[_0x39e2('0x20')](_0x39e2('0x21'));var _0x2b229d=crypto[_0x39e2('0x22')](0x10)['toString'](_0x39e2('0x23'));var _0xe0fc03=getAuthorizationScopes(_0xde6505);var _0x1231bc=[{'key':'client_id','value':_0xde6505[_0x39e2('0x24')]},{'key':_0x39e2('0x25'),'value':encodeURIComponent(_0x4dea1a[_0x39e2('0x1a')]('\x20'))},{'key':_0x39e2('0x26'),'value':_0xde6505[_0x39e2('0x27')]},{'key':_0x39e2('0x28'),'value':_0x39e2('0x29')},{'key':_0x39e2('0x2a'),'value':encodeURIComponent(_0xe0fc03)},{'key':'state','value':_0x3347ba},{'key':_0x39e2('0x2b'),'value':_0x2b229d},{'key':_0x39e2('0x2c'),'value':_0x39e2('0x2d')}];var _0x3ab13e=_0x3c8a4d+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0x39e2('0x15')](_0x1231bc,function(_0x185e05){return _0x185e05[_0x39e2('0x2e')]+'='+_0x185e05[_0x39e2('0x2f')];})['join']('&');_0xde6505[_0x39e2('0x30')]={'issuer':_0x3c8a4d['replace']('oauth2/',''),'audience':_0xde6505['data1'],'state':_0x3347ba,'nonce':_0x2b229d};redis[_0x39e2('0x31')](_0x3347ba,JSON[_0x39e2('0x32')](_0xde6505));return _0x3ab13e;}function isValidIdToken(_0x41209c,_0x4e46d1){try{var _0x3b0d7f=jwt[_0x39e2('0x33')](_0x41209c,{'complete':!![]});var _0x2ede89=_0x3b0d7f[_0x39e2('0x34')];if(_0x2ede89[_0x39e2('0x35')]!==_0x4e46d1['issuer'])return![];if(_0x2ede89[_0x39e2('0x36')]!==_0x4e46d1[_0x39e2('0x37')])return![];if(_0x2ede89[_0x39e2('0x2b')]!==_0x4e46d1[_0x39e2('0x2b')])return![];if(moment()[_0x39e2('0x38')](moment['unix'](_0x2ede89[_0x39e2('0x39')])))return![];return!![];}catch(_0x3962bb){throw _0x3962bb;}}function refreshOauth2MicrosoftAccessToken(_0x12f2a3){return Promise['resolve']()[_0x39e2('0x3a')](function(){if(_0x12f2a3['data3'])return _0x12f2a3;return db[_0x39e2('0x3b')]['findOne']({'where':{'id':_0x12f2a3['id']},'raw':!![]});})[_0x39e2('0x3a')](function(_0x266941){var _0x28d018={'grant_type':_0x39e2('0x3c'),'refresh_token':_0x266941['data6'],'scope':getAccessTokenScope(_0x266941),'redirect_uri':_0x266941['data4'],'client_id':_0x266941[_0x39e2('0x24')],'client_secret':encryptor[_0x39e2('0x3d')](_0x266941['data3'])};var _0x4b1b33={'method':_0x39e2('0x3e'),'uri':MICROSOFT_AUTH_URL[_0x39e2('0x1c')](_0x39e2('0x3f'),_0x266941[_0x39e2('0x1d')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x28d018,'json':!![]};return rp(_0x4b1b33);})[_0x39e2('0x3a')](function(_0x434607){_0x12f2a3[_0x39e2('0x40')]=_0x434607[_0x39e2('0x41')];_0x12f2a3[_0x39e2('0x42')]=_0x434607[_0x39e2('0x3c')];return db[_0x39e2('0x3b')][_0x39e2('0x43')]({'data5':_0x12f2a3[_0x39e2('0x40')],'data6':_0x12f2a3[_0x39e2('0x42')]},{'where':{'id':_0x12f2a3['id']}});})[_0x39e2('0x3a')](function(){return _0x12f2a3;})[_0x39e2('0x44')](function(_0x11f02a){logger['error']('Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s',_0x12f2a3['id'],_0x11f02a);});}function getOauth2MicrosoftAccessToken(_0x1976e3,_0x3b7166){var _0x3708f7={'grant_type':_0x39e2('0x45'),'code':_0x1976e3,'scope':getAccessTokenScope(_0x3b7166),'redirect_uri':_0x3b7166['data4'],'client_id':_0x3b7166[_0x39e2('0x24')],'client_secret':encryptor[_0x39e2('0x3d')](_0x3b7166[_0x39e2('0x46')])};var _0x11cf93={'method':'POST','uri':MICROSOFT_AUTH_URL[_0x39e2('0x1c')](_0x39e2('0x3f'),_0x3b7166['data2'])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x3708f7,'json':!![]};return rp(_0x11cf93);}function startRefreshInterval(_0x294f77){var _0x30ac05=schedule['intervals'];if(_0x30ac05[_0x294f77['id']])clearInterval(_0x30ac05[_0x294f77['id']]);_0x30ac05[_0x294f77['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x39e2('0x47')](this,{'id':_0x294f77['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x39e2('0x48')]=_0x30ac05;}function startAllRefreshIntervals(){return db[_0x39e2('0x3b')][_0x39e2('0x49')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x39e2('0x3a')](function(_0x5141df){var _0x5c7dac=_0x5141df[_0x39e2('0x15')](function(_0xcb2805){return refreshOauth2MicrosoftAccessToken(_0xcb2805)[_0x39e2('0x3a')](function(_0x4bed98){startRefreshInterval(_0x4bed98);});});return Promise[_0x39e2('0x4a')](_0x5c7dac);})[_0x39e2('0x44')](function(_0x58725a){var _0x11a43f=_0x58725a?util[_0x39e2('0x4b')](_0x58725a,{'showHidden':![],'depth':null}):'';logger[_0x39e2('0x4c')](_0x39e2('0x4d'),_0x11a43f);});}module[_0x39e2('0x4e')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};