Built motion from commit b5413ace.|2.6.9
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x3653=['prompt','key','value','oauth2Claims','oauth2/','decode','payload','nonce','isAfter','unix','resolve','then','data3','findOne','data6','decryptString','data5','access_token','CloudProvider','update','error','authorization_code','POST','{TENANT_ID}','intervals','bind','catch','inspect','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','lodash','crypto','moment','util','../../components/encryptor','../../config/environment','../../config/logger','../../config/schedule/cloud-provider','../../mysqldb','redis','defaults','localhost','openid','profile','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','/authorize','/token','map','type','Dynamics365','push','data7','join','Outlook365','/.default','data2','code','from','stringify','toString','base64','randomBytes','client_id','data1','response_type','redirect_uri','data4','response_mode','form_post','scope'];(function(_0x46eac0,_0x1a1476){var _0x4a565d=function(_0x326651){while(--_0x326651){_0x46eac0['push'](_0x46eac0['shift']());}};_0x4a565d(++_0x1a1476);}(_0x3653,0x1cd));var _0x3365=function(_0x53c400,_0x21114){_0x53c400=_0x53c400-0x0;var _0x5e613d=_0x3653[_0x53c400];return _0x5e613d;};'use strict';var _=require(_0x3365('0x0'));var crypto=require(_0x3365('0x1'));var jwt=require('jsonwebtoken');var moment=require(_0x3365('0x2'));var Redis=require('ioredis');var rp=require('request-promise');var util=require(_0x3365('0x3'));var encryptor=require(_0x3365('0x4'));var config=require(_0x3365('0x5'));var logger=require(_0x3365('0x6'))('api');var schedule=require(_0x3365('0x7'));var db=require(_0x3365('0x8'))['db'];config[_0x3365('0x9')]=_[_0x3365('0xa')](config[_0x3365('0x9')],{'host':_0x3365('0xb'),'port':0x18eb});var redis=new Redis(config[_0x3365('0x9')]);var MICROSOFT_AUTH_URL='https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0';var AZURE_AUTH_SCOPES={'Outlook365':[_0x3365('0xc'),_0x3365('0xd'),'email',_0x3365('0xe'),_0x3365('0xf'),_0x3365('0x10'),_0x3365('0x11')],'Dynamics365':[_0x3365('0xc'),_0x3365('0xe')]};var MICROSOFT_AUTH_ENDPOINT=_0x3365('0x12');var MICROSOFT_TOKEN_ENDPOINT=_0x3365('0x13');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x1f3645){var _0xc64ff7=_[_0x3365('0x14')](AZURE_AUTH_SCOPES[_0x1f3645[_0x3365('0x15')]]);if(_0x1f3645['type']===_0x3365('0x16'))_0xc64ff7[_0x3365('0x17')](_0x1f3645[_0x3365('0x18')]+'/.default');return _0xc64ff7[_0x3365('0x19')]('\x20');}function getAccessTokenScope(_0x28da95){if(_0x28da95[_0x3365('0x15')]===_0x3365('0x1a'))return _0x3365('0xf');if(_0x28da95['type']===_0x3365('0x16'))return _0x28da95[_0x3365('0x18')]+_0x3365('0x1b');}function generateMicrosoftAuthorizationUrl(_0x497d88,_0xfc7ffb){var _0xc3b12b=MICROSOFT_AUTH_URL['replace']('{TENANT_ID}',_0x497d88[_0x3365('0x1c')]);var _0x5c9218=[_0x3365('0x1d'),'id_token'];var _0x2511dc=Buffer[_0x3365('0x1e')](JSON[_0x3365('0x1f')]({'id':_0xfc7ffb}))[_0x3365('0x20')](_0x3365('0x21'));var _0x4d36dd=crypto[_0x3365('0x22')](0x10)[_0x3365('0x20')]('hex');var _0x104a45=getAuthorizationScopes(_0x497d88);var _0x1a23f2=[{'key':_0x3365('0x23'),'value':_0x497d88[_0x3365('0x24')]},{'key':_0x3365('0x25'),'value':encodeURIComponent(_0x5c9218['join']('\x20'))},{'key':_0x3365('0x26'),'value':_0x497d88[_0x3365('0x27')]},{'key':_0x3365('0x28'),'value':_0x3365('0x29')},{'key':_0x3365('0x2a'),'value':encodeURIComponent(_0x104a45)},{'key':'state','value':_0x2511dc},{'key':'nonce','value':_0x4d36dd},{'key':_0x3365('0x2b'),'value':'login'}];var _0x332475=_0xc3b12b+MICROSOFT_AUTH_ENDPOINT+'?'+_['map'](_0x1a23f2,function(_0x182ad0){return _0x182ad0[_0x3365('0x2c')]+'='+_0x182ad0[_0x3365('0x2d')];})['join']('&');_0x497d88[_0x3365('0x2e')]={'issuer':_0xc3b12b['replace'](_0x3365('0x2f'),''),'audience':_0x497d88[_0x3365('0x24')],'state':_0x2511dc,'nonce':_0x4d36dd};redis['set'](_0x2511dc,JSON['stringify'](_0x497d88));return _0x332475;}function isValidIdToken(_0x3507e0,_0x17f57d){try{var _0x12da80=jwt[_0x3365('0x30')](_0x3507e0,{'complete':!![]});var _0x43995b=_0x12da80[_0x3365('0x31')];if(_0x43995b['iss']!==_0x17f57d['issuer'])return![];if(_0x43995b['aud']!==_0x17f57d['audience'])return![];if(_0x43995b[_0x3365('0x32')]!==_0x17f57d[_0x3365('0x32')])return![];if(moment()[_0x3365('0x33')](moment[_0x3365('0x34')](_0x43995b['exp'])))return![];return!![];}catch(_0x3252ac){throw _0x3252ac;}}function refreshOauth2MicrosoftAccessToken(_0x78f530){return Promise[_0x3365('0x35')]()[_0x3365('0x36')](function(){if(_0x78f530[_0x3365('0x37')])return _0x78f530;return db['CloudProvider'][_0x3365('0x38')]({'where':{'id':_0x78f530['id']},'raw':!![]});})['then'](function(_0x40044c){var _0x502e65={'grant_type':'refresh_token','refresh_token':_0x40044c[_0x3365('0x39')],'scope':getAccessTokenScope(_0x40044c),'redirect_uri':_0x40044c[_0x3365('0x27')],'client_id':_0x40044c[_0x3365('0x24')],'client_secret':encryptor[_0x3365('0x3a')](_0x40044c['data3'])};var _0x15da8f={'method':'POST','uri':MICROSOFT_AUTH_URL['replace']('{TENANT_ID}',_0x40044c[_0x3365('0x1c')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x502e65,'json':!![]};return rp(_0x15da8f);})[_0x3365('0x36')](function(_0x5bd903){_0x78f530[_0x3365('0x3b')]=_0x5bd903[_0x3365('0x3c')];_0x78f530[_0x3365('0x39')]=_0x5bd903['refresh_token'];return db[_0x3365('0x3d')][_0x3365('0x3e')]({'data5':_0x78f530['data5'],'data6':_0x78f530[_0x3365('0x39')]},{'where':{'id':_0x78f530['id']}});})[_0x3365('0x36')](function(){return _0x78f530;})['catch'](function(_0x2bf45d){logger[_0x3365('0x3f')]('Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s',_0x78f530['id'],_0x2bf45d);});}function getOauth2MicrosoftAccessToken(_0x47d2b5,_0x427e19){var _0x47f77b={'grant_type':_0x3365('0x40'),'code':_0x47d2b5,'scope':getAccessTokenScope(_0x427e19),'redirect_uri':_0x427e19[_0x3365('0x27')],'client_id':_0x427e19['data1'],'client_secret':encryptor[_0x3365('0x3a')](_0x427e19['data3'])};var _0x28d555={'method':_0x3365('0x41'),'uri':MICROSOFT_AUTH_URL['replace'](_0x3365('0x42'),_0x427e19[_0x3365('0x1c')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x47f77b,'json':!![]};return rp(_0x28d555);}function startRefreshInterval(_0x170b68){var _0x2d0a2a=schedule[_0x3365('0x43')];if(_0x2d0a2a[_0x170b68['id']])clearInterval(_0x2d0a2a[_0x170b68['id']]);_0x2d0a2a[_0x170b68['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x3365('0x44')](this,{'id':_0x170b68['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x3365('0x43')]=_0x2d0a2a;}function startAllRefreshIntervals(){return db['CloudProvider']['findAll']({'where':{'data6':{'$ne':null}},'raw':!![]})['then'](function(_0x2d6379){var _0x25a54a=_0x2d6379['map'](function(_0x11df55){return refreshOauth2MicrosoftAccessToken(_0x11df55)[_0x3365('0x36')](function(_0x2652c6){startRefreshInterval(_0x2652c6);});});return Promise['all'](_0x25a54a);})[_0x3365('0x45')](function(_0x2440a8){var _0xba997c=_0x2440a8?util[_0x3365('0x46')](_0x2440a8,{'showHidden':![],'depth':null}):'';logger[_0x3365('0x3f')](_0x3365('0x47'),_0xba997c);});}module['exports']={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};