Built motion from commit 753c950e.|2.5.42
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
index 9271883..4bf979c 100644 (file)
@@ -15,4 +15,4 @@
 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                        *
 // *                                                                       *
 // *************************************************************************
-var _0x326f=['../../config/logger','api','../../config/schedule/cloud-provider','../../mysqldb','defaults','redis','localhost','email','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','/token','type','push','data7','/.default','join','Dynamics365','replace','data2','code','id_token','from','randomBytes','data1','response_type','data4','response_mode','scope','state','nonce','prompt','login','value','oauth2Claims','oauth2/','stringify','decode','iss','issuer','aud','unix','exp','resolve','then','data3','CloudProvider','findOne','refresh_token','data6','decryptString','{TENANT_ID}','data5','access_token','update','catch','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s','authorization_code','intervals','bind','findAll','inspect','error','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart','lodash','moment','ioredis','request-promise','util','../../components/encryptor','../../config/environment'];(function(_0x501510,_0x61caa9){var _0x1e6ee5=function(_0x32845b){while(--_0x32845b){_0x501510['push'](_0x501510['shift']());}};_0x1e6ee5(++_0x61caa9);}(_0x326f,0xd1));var _0xf326=function(_0x3da1d8,_0xea7886){_0x3da1d8=_0x3da1d8-0x0;var _0x210731=_0x326f[_0x3da1d8];return _0x210731;};'use strict';var _=require(_0xf326('0x0'));var crypto=require('crypto');var jwt=require('jsonwebtoken');var moment=require(_0xf326('0x1'));var Redis=require(_0xf326('0x2'));var rp=require(_0xf326('0x3'));var util=require(_0xf326('0x4'));var encryptor=require(_0xf326('0x5'));var config=require(_0xf326('0x6'));var logger=require(_0xf326('0x7'))(_0xf326('0x8'));var schedule=require(_0xf326('0x9'));var db=require(_0xf326('0xa'))['db'];config['redis']=_[_0xf326('0xb')](config[_0xf326('0xc')],{'host':_0xf326('0xd'),'port':0x18eb});var redis=new Redis(config[_0xf326('0xc')]);var MICROSOFT_AUTH_URL='https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0';var AZURE_AUTH_SCOPES={'Outlook365':['openid','profile',_0xf326('0xe'),_0xf326('0xf'),_0xf326('0x10'),_0xf326('0x11'),_0xf326('0x12')],'Dynamics365':['openid',_0xf326('0xf')]};var MICROSOFT_AUTH_ENDPOINT='/authorize';var MICROSOFT_TOKEN_ENDPOINT=_0xf326('0x13');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x4aaf3a){var _0x2e4b71=_['map'](AZURE_AUTH_SCOPES[_0x4aaf3a[_0xf326('0x14')]]);if(_0x4aaf3a[_0xf326('0x14')]==='Dynamics365')_0x2e4b71[_0xf326('0x15')](_0x4aaf3a[_0xf326('0x16')]+_0xf326('0x17'));return _0x2e4b71[_0xf326('0x18')]('\x20');}function getAccessTokenScope(_0x5c8483){if(_0x5c8483[_0xf326('0x14')]==='Outlook365')return'https://outlook.office365.com/IMAP.AccessAsUser.All';if(_0x5c8483[_0xf326('0x14')]===_0xf326('0x19'))return _0x5c8483[_0xf326('0x16')]+_0xf326('0x17');}function generateMicrosoftAuthorizationUrl(_0x292f4b,_0x287a2a){var _0x34128e=MICROSOFT_AUTH_URL[_0xf326('0x1a')]('{TENANT_ID}',_0x292f4b[_0xf326('0x1b')]);var _0x453100=[_0xf326('0x1c'),_0xf326('0x1d')];var _0xcef2b5=Buffer[_0xf326('0x1e')](JSON['stringify']({'id':_0x287a2a}))['toString']('base64');var _0x16e605=crypto[_0xf326('0x1f')](0x10)['toString']('hex');var _0x128c68=getAuthorizationScopes(_0x292f4b);var _0x4dfa76=[{'key':'client_id','value':_0x292f4b[_0xf326('0x20')]},{'key':_0xf326('0x21'),'value':encodeURIComponent(_0x453100['join']('\x20'))},{'key':'redirect_uri','value':_0x292f4b[_0xf326('0x22')]},{'key':_0xf326('0x23'),'value':'form_post'},{'key':_0xf326('0x24'),'value':encodeURIComponent(_0x128c68)},{'key':_0xf326('0x25'),'value':_0xcef2b5},{'key':_0xf326('0x26'),'value':_0x16e605},{'key':_0xf326('0x27'),'value':_0xf326('0x28')}];var _0x2049ec=_0x34128e+MICROSOFT_AUTH_ENDPOINT+'?'+_['map'](_0x4dfa76,function(_0x55b9f4){return _0x55b9f4['key']+'='+_0x55b9f4[_0xf326('0x29')];})[_0xf326('0x18')]('&');_0x292f4b[_0xf326('0x2a')]={'issuer':_0x34128e[_0xf326('0x1a')](_0xf326('0x2b'),''),'audience':_0x292f4b[_0xf326('0x20')],'state':_0xcef2b5,'nonce':_0x16e605};redis['set'](_0xcef2b5,JSON[_0xf326('0x2c')](_0x292f4b));return _0x2049ec;}function isValidIdToken(_0xa3c0b,_0x212d5d){try{var _0x581531=jwt[_0xf326('0x2d')](_0xa3c0b,{'complete':!![]});var _0x55ad0f=_0x581531['payload'];if(_0x55ad0f[_0xf326('0x2e')]!==_0x212d5d[_0xf326('0x2f')])return![];if(_0x55ad0f[_0xf326('0x30')]!==_0x212d5d['audience'])return![];if(_0x55ad0f[_0xf326('0x26')]!==_0x212d5d[_0xf326('0x26')])return![];if(moment()['isAfter'](moment[_0xf326('0x31')](_0x55ad0f[_0xf326('0x32')])))return![];return!![];}catch(_0xd77aba){throw _0xd77aba;}}function refreshOauth2MicrosoftAccessToken(_0x18d110){return Promise[_0xf326('0x33')]()[_0xf326('0x34')](function(){if(_0x18d110[_0xf326('0x35')])return _0x18d110;return db[_0xf326('0x36')][_0xf326('0x37')]({'where':{'id':_0x18d110['id']},'raw':!![]});})[_0xf326('0x34')](function(_0x4b52f2){var _0x1035ed={'grant_type':_0xf326('0x38'),'refresh_token':_0x4b52f2[_0xf326('0x39')],'scope':getAccessTokenScope(_0x4b52f2),'redirect_uri':_0x4b52f2['data4'],'client_id':_0x4b52f2[_0xf326('0x20')],'client_secret':encryptor[_0xf326('0x3a')](_0x4b52f2[_0xf326('0x35')])};var _0x4df451={'method':'POST','uri':MICROSOFT_AUTH_URL[_0xf326('0x1a')](_0xf326('0x3b'),_0x4b52f2[_0xf326('0x1b')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x1035ed,'json':!![]};return rp(_0x4df451);})[_0xf326('0x34')](function(_0x30694f){_0x18d110[_0xf326('0x3c')]=_0x30694f[_0xf326('0x3d')];_0x18d110[_0xf326('0x39')]=_0x30694f['refresh_token'];return db[_0xf326('0x36')][_0xf326('0x3e')]({'data5':_0x18d110['data5'],'data6':_0x18d110[_0xf326('0x39')]},{'where':{'id':_0x18d110['id']}});})['then'](function(){return _0x18d110;})[_0xf326('0x3f')](function(_0x481b64){logger['error'](_0xf326('0x40'),_0x18d110['id'],_0x481b64);});}function getOauth2MicrosoftAccessToken(_0x4d8eac,_0x40dcb4){var _0x57aa27={'grant_type':_0xf326('0x41'),'code':_0x4d8eac,'scope':getAccessTokenScope(_0x40dcb4),'redirect_uri':_0x40dcb4[_0xf326('0x22')],'client_id':_0x40dcb4[_0xf326('0x20')],'client_secret':encryptor['decryptString'](_0x40dcb4[_0xf326('0x35')])};var _0x4095e6={'method':'POST','uri':MICROSOFT_AUTH_URL[_0xf326('0x1a')](_0xf326('0x3b'),_0x40dcb4[_0xf326('0x1b')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x57aa27,'json':!![]};return rp(_0x4095e6);}function startRefreshInterval(_0xaf65e0){var _0x51076c=schedule[_0xf326('0x42')];if(_0x51076c[_0xaf65e0['id']])clearInterval(_0x51076c[_0xaf65e0['id']]);_0x51076c[_0xaf65e0['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0xf326('0x43')](this,{'id':_0xaf65e0['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0xf326('0x42')]=_0x51076c;}function startAllRefreshIntervals(){return db[_0xf326('0x36')][_0xf326('0x44')]({'where':{'data6':{'$ne':null}},'raw':!![]})['then'](function(_0x3e830d){var _0x1b7bf6=_0x3e830d['map'](function(_0x4dd361){return refreshOauth2MicrosoftAccessToken(_0x4dd361)[_0xf326('0x34')](function(_0x577634){startRefreshInterval(_0x577634);});});return Promise['all'](_0x1b7bf6);})[_0xf326('0x3f')](function(_0x5d6ae2){var _0x3e1e8c=_0x5d6ae2?util[_0xf326('0x45')](_0x5d6ae2,{'showHidden':![],'depth':null}):'';logger[_0xf326('0x46')](_0xf326('0x47'),_0x3e1e8c);});}module['exports']={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};
\ No newline at end of file
+var _0xdb28=['set','decode','payload','iss','issuer','aud','audience','isAfter','resolve','data3','findOne','then','data6','POST','data5','access_token','refresh_token','CloudProvider','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s','decryptString','intervals','bind','findAll','all','catch','inspect','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart','exports','lodash','crypto','jsonwebtoken','moment','request-promise','util','../../components/encryptor','../../config/environment','../../config/logger','../../config/schedule/cloud-provider','../../mysqldb','redis','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','profile','email','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','offline_access','/authorize','map','type','data7','/.default','join','Outlook365','Dynamics365','replace','{TENANT_ID}','data2','code','id_token','stringify','toString','base64','hex','client_id','response_type','redirect_uri','data4','response_mode','form_post','scope','nonce','key','value','oauth2Claims','data1'];(function(_0x555543,_0x1a5a3a){var _0x3456d4=function(_0x285d10){while(--_0x285d10){_0x555543['push'](_0x555543['shift']());}};_0x3456d4(++_0x1a5a3a);}(_0xdb28,0x106));var _0x8db2=function(_0x11c6b2,_0x306b2b){_0x11c6b2=_0x11c6b2-0x0;var _0x5fa8ad=_0xdb28[_0x11c6b2];return _0x5fa8ad;};'use strict';var _=require(_0x8db2('0x0'));var crypto=require(_0x8db2('0x1'));var jwt=require(_0x8db2('0x2'));var moment=require(_0x8db2('0x3'));var Redis=require('ioredis');var rp=require(_0x8db2('0x4'));var util=require(_0x8db2('0x5'));var encryptor=require(_0x8db2('0x6'));var config=require(_0x8db2('0x7'));var logger=require(_0x8db2('0x8'))('api');var schedule=require(_0x8db2('0x9'));var db=require(_0x8db2('0xa'))['db'];config['redis']=_['defaults'](config[_0x8db2('0xb')],{'host':_0x8db2('0xc'),'port':0x18eb});var redis=new Redis(config[_0x8db2('0xb')]);var MICROSOFT_AUTH_URL=_0x8db2('0xd');var AZURE_AUTH_SCOPES={'Outlook365':[_0x8db2('0xe'),_0x8db2('0xf'),_0x8db2('0x10'),'offline_access',_0x8db2('0x11'),_0x8db2('0x12'),_0x8db2('0x13')],'Dynamics365':['openid',_0x8db2('0x14')]};var MICROSOFT_AUTH_ENDPOINT=_0x8db2('0x15');var MICROSOFT_TOKEN_ENDPOINT='/token';var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x41beda){var _0x3b2faa=_[_0x8db2('0x16')](AZURE_AUTH_SCOPES[_0x41beda[_0x8db2('0x17')]]);if(_0x41beda[_0x8db2('0x17')]==='Dynamics365')_0x3b2faa['push'](_0x41beda[_0x8db2('0x18')]+_0x8db2('0x19'));return _0x3b2faa[_0x8db2('0x1a')]('\x20');}function getAccessTokenScope(_0x1d6a15){if(_0x1d6a15[_0x8db2('0x17')]===_0x8db2('0x1b'))return _0x8db2('0x11');if(_0x1d6a15[_0x8db2('0x17')]===_0x8db2('0x1c'))return _0x1d6a15[_0x8db2('0x18')]+'/.default';}function generateMicrosoftAuthorizationUrl(_0x13b0f5,_0x24da1b){var _0x48101e=MICROSOFT_AUTH_URL[_0x8db2('0x1d')](_0x8db2('0x1e'),_0x13b0f5[_0x8db2('0x1f')]);var _0x3fddc2=[_0x8db2('0x20'),_0x8db2('0x21')];var _0x51d60d=Buffer['from'](JSON[_0x8db2('0x22')]({'id':_0x24da1b}))[_0x8db2('0x23')](_0x8db2('0x24'));var _0x1b64e4=crypto['randomBytes'](0x10)[_0x8db2('0x23')](_0x8db2('0x25'));var _0x260940=getAuthorizationScopes(_0x13b0f5);var _0x297ba3=[{'key':_0x8db2('0x26'),'value':_0x13b0f5['data1']},{'key':_0x8db2('0x27'),'value':encodeURIComponent(_0x3fddc2[_0x8db2('0x1a')]('\x20'))},{'key':_0x8db2('0x28'),'value':_0x13b0f5[_0x8db2('0x29')]},{'key':_0x8db2('0x2a'),'value':_0x8db2('0x2b')},{'key':_0x8db2('0x2c'),'value':encodeURIComponent(_0x260940)},{'key':'state','value':_0x51d60d},{'key':_0x8db2('0x2d'),'value':_0x1b64e4},{'key':'prompt','value':'login'}];var _0x52a9ca=_0x48101e+MICROSOFT_AUTH_ENDPOINT+'?'+_['map'](_0x297ba3,function(_0xec8cd2){return _0xec8cd2[_0x8db2('0x2e')]+'='+_0xec8cd2[_0x8db2('0x2f')];})[_0x8db2('0x1a')]('&');_0x13b0f5[_0x8db2('0x30')]={'issuer':_0x48101e[_0x8db2('0x1d')]('oauth2/',''),'audience':_0x13b0f5[_0x8db2('0x31')],'state':_0x51d60d,'nonce':_0x1b64e4};redis[_0x8db2('0x32')](_0x51d60d,JSON[_0x8db2('0x22')](_0x13b0f5));return _0x52a9ca;}function isValidIdToken(_0x8b7cec,_0x483aee){try{var _0x2e0691=jwt[_0x8db2('0x33')](_0x8b7cec,{'complete':!![]});var _0x241baf=_0x2e0691[_0x8db2('0x34')];if(_0x241baf[_0x8db2('0x35')]!==_0x483aee[_0x8db2('0x36')])return![];if(_0x241baf[_0x8db2('0x37')]!==_0x483aee[_0x8db2('0x38')])return![];if(_0x241baf[_0x8db2('0x2d')]!==_0x483aee['nonce'])return![];if(moment()[_0x8db2('0x39')](moment['unix'](_0x241baf['exp'])))return![];return!![];}catch(_0x302188){throw _0x302188;}}function refreshOauth2MicrosoftAccessToken(_0x25ed2c){return Promise[_0x8db2('0x3a')]()['then'](function(){if(_0x25ed2c[_0x8db2('0x3b')])return _0x25ed2c;return db['CloudProvider'][_0x8db2('0x3c')]({'where':{'id':_0x25ed2c['id']},'raw':!![]});})[_0x8db2('0x3d')](function(_0x14bd12){var _0x4d9e26={'grant_type':'refresh_token','refresh_token':_0x14bd12[_0x8db2('0x3e')],'scope':getAccessTokenScope(_0x14bd12),'redirect_uri':_0x14bd12[_0x8db2('0x29')],'client_id':_0x14bd12['data1'],'client_secret':encryptor['decryptString'](_0x14bd12[_0x8db2('0x3b')])};var _0x5178f3={'method':_0x8db2('0x3f'),'uri':MICROSOFT_AUTH_URL[_0x8db2('0x1d')](_0x8db2('0x1e'),_0x14bd12[_0x8db2('0x1f')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x4d9e26,'json':!![]};return rp(_0x5178f3);})[_0x8db2('0x3d')](function(_0xae31b7){_0x25ed2c[_0x8db2('0x40')]=_0xae31b7[_0x8db2('0x41')];_0x25ed2c['data6']=_0xae31b7[_0x8db2('0x42')];return db[_0x8db2('0x43')]['update']({'data5':_0x25ed2c[_0x8db2('0x40')],'data6':_0x25ed2c[_0x8db2('0x3e')]},{'where':{'id':_0x25ed2c['id']}});})['then'](function(){return _0x25ed2c;})['catch'](function(_0x3c1983){logger['error'](_0x8db2('0x44'),_0x25ed2c['id'],_0x3c1983);});}function getOauth2MicrosoftAccessToken(_0x264696,_0x26717d){var _0x22c896={'grant_type':'authorization_code','code':_0x264696,'scope':getAccessTokenScope(_0x26717d),'redirect_uri':_0x26717d[_0x8db2('0x29')],'client_id':_0x26717d['data1'],'client_secret':encryptor[_0x8db2('0x45')](_0x26717d[_0x8db2('0x3b')])};var _0x2c8bc9={'method':_0x8db2('0x3f'),'uri':MICROSOFT_AUTH_URL['replace']('{TENANT_ID}',_0x26717d[_0x8db2('0x1f')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x22c896,'json':!![]};return rp(_0x2c8bc9);}function startRefreshInterval(_0x2c0507){var _0x5dc2b4=schedule[_0x8db2('0x46')];if(_0x5dc2b4[_0x2c0507['id']])clearInterval(_0x5dc2b4[_0x2c0507['id']]);_0x5dc2b4[_0x2c0507['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x8db2('0x47')](this,{'id':_0x2c0507['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x8db2('0x46')]=_0x5dc2b4;}function startAllRefreshIntervals(){return db['CloudProvider'][_0x8db2('0x48')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x8db2('0x3d')](function(_0x953349){var _0x279e74=_0x953349[_0x8db2('0x16')](function(_0x40d82a){return refreshOauth2MicrosoftAccessToken(_0x40d82a)[_0x8db2('0x3d')](function(_0x1575ea){startRefreshInterval(_0x1575ea);});});return Promise[_0x8db2('0x49')](_0x279e74);})[_0x8db2('0x4a')](function(_0x21cf7c){var _0x20bf0b=_0x21cf7c?util[_0x8db2('0x4b')](_0x21cf7c,{'showHidden':![],'depth':null}):'';logger['error'](_0x8db2('0x4c'),_0x20bf0b);});}module[_0x8db2('0x4d')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};
\ No newline at end of file