Built motion from commit b0a9a629.|2.6.33
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
index f9045fa..442e503 100644 (file)
@@ -15,4 +15,4 @@
 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                        *
 // *                                                                       *
 // *************************************************************************
-var _0x521a=['request-promise','util','../../components/encryptor','../../config/logger','api','../../config/schedule/cloud-provider','defaults','redis','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','profile','email','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','/authorize','/token','map','type','Dynamics365','push','data7','/.default','Outlook365','{TENANT_ID}','data2','id_token','stringify','toString','base64','randomBytes','hex','client_id','data4','response_mode','form_post','scope','nonce','login','value','replace','data1','set','decode','payload','aud','isAfter','exp','resolve','then','CloudProvider','findOne','refresh_token','POST','data5','access_token','data6','update','catch','error','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','decryptString','data3','intervals','bind','findAll','all','inspect','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','exports','lodash','crypto','jsonwebtoken','moment','ioredis'];(function(_0x279d37,_0x14de3f){var _0x530173=function(_0x37fc79){while(--_0x37fc79){_0x279d37['push'](_0x279d37['shift']());}};_0x530173(++_0x14de3f);}(_0x521a,0x1c3));var _0xa521=function(_0x221e0d,_0x384d06){_0x221e0d=_0x221e0d-0x0;var _0x41bcb7=_0x521a[_0x221e0d];return _0x41bcb7;};'use strict';var _=require(_0xa521('0x0'));var crypto=require(_0xa521('0x1'));var jwt=require(_0xa521('0x2'));var moment=require(_0xa521('0x3'));var Redis=require(_0xa521('0x4'));var rp=require(_0xa521('0x5'));var util=require(_0xa521('0x6'));var encryptor=require(_0xa521('0x7'));var config=require('../../config/environment');var logger=require(_0xa521('0x8'))(_0xa521('0x9'));var schedule=require(_0xa521('0xa'));var db=require('../../mysqldb')['db'];config['redis']=_[_0xa521('0xb')](config['redis'],{'host':'localhost','port':0x18eb});var redis=new Redis(config[_0xa521('0xc')]);var MICROSOFT_AUTH_URL=_0xa521('0xd');var AZURE_AUTH_SCOPES={'Outlook365':[_0xa521('0xe'),_0xa521('0xf'),_0xa521('0x10'),_0xa521('0x11'),_0xa521('0x12'),_0xa521('0x13'),_0xa521('0x14')],'Dynamics365':['openid','offline_access']};var MICROSOFT_AUTH_ENDPOINT=_0xa521('0x15');var MICROSOFT_TOKEN_ENDPOINT=_0xa521('0x16');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x378eb4){var _0x413d2d=_[_0xa521('0x17')](AZURE_AUTH_SCOPES[_0x378eb4[_0xa521('0x18')]]);if(_0x378eb4[_0xa521('0x18')]===_0xa521('0x19'))_0x413d2d[_0xa521('0x1a')](_0x378eb4[_0xa521('0x1b')]+_0xa521('0x1c'));return _0x413d2d['join']('\x20');}function getAccessTokenScope(_0x30d932){if(_0x30d932[_0xa521('0x18')]===_0xa521('0x1d'))return _0xa521('0x12');if(_0x30d932[_0xa521('0x18')]==='Dynamics365')return _0x30d932[_0xa521('0x1b')]+'/.default';}function generateMicrosoftAuthorizationUrl(_0x549d51,_0x13b5d6){var _0x562ab3=MICROSOFT_AUTH_URL['replace'](_0xa521('0x1e'),_0x549d51[_0xa521('0x1f')]);var _0x17bc41=['code',_0xa521('0x20')];var _0x282185=Buffer['from'](JSON[_0xa521('0x21')]({'id':_0x13b5d6}))[_0xa521('0x22')](_0xa521('0x23'));var _0x587956=crypto[_0xa521('0x24')](0x10)['toString'](_0xa521('0x25'));var _0x5b8c8b=getAuthorizationScopes(_0x549d51);var _0x170bec=[{'key':_0xa521('0x26'),'value':_0x549d51['data1']},{'key':'response_type','value':encodeURIComponent(_0x17bc41['join']('\x20'))},{'key':'redirect_uri','value':_0x549d51[_0xa521('0x27')]},{'key':_0xa521('0x28'),'value':_0xa521('0x29')},{'key':_0xa521('0x2a'),'value':encodeURIComponent(_0x5b8c8b)},{'key':'state','value':_0x282185},{'key':_0xa521('0x2b'),'value':_0x587956},{'key':'prompt','value':_0xa521('0x2c')}];var _0x55dc64=_0x562ab3+MICROSOFT_AUTH_ENDPOINT+'?'+_['map'](_0x170bec,function(_0xebd53){return _0xebd53['key']+'='+_0xebd53[_0xa521('0x2d')];})['join']('&');_0x549d51['oauth2Claims']={'issuer':_0x562ab3[_0xa521('0x2e')]('oauth2/',''),'audience':_0x549d51[_0xa521('0x2f')],'state':_0x282185,'nonce':_0x587956};redis[_0xa521('0x30')](_0x282185,JSON['stringify'](_0x549d51));return _0x55dc64;}function isValidIdToken(_0x2a0321,_0x2a0496){try{var _0x3aaa31=jwt[_0xa521('0x31')](_0x2a0321,{'complete':!![]});var _0x10644d=_0x3aaa31[_0xa521('0x32')];if(_0x10644d['iss']!==_0x2a0496['issuer'])return![];if(_0x10644d[_0xa521('0x33')]!==_0x2a0496['audience'])return![];if(_0x10644d[_0xa521('0x2b')]!==_0x2a0496[_0xa521('0x2b')])return![];if(moment()[_0xa521('0x34')](moment['unix'](_0x10644d[_0xa521('0x35')])))return![];return!![];}catch(_0x18853f){throw _0x18853f;}}function refreshOauth2MicrosoftAccessToken(_0x4c42a9){return Promise[_0xa521('0x36')]()[_0xa521('0x37')](function(){if(_0x4c42a9['data3'])return _0x4c42a9;return db[_0xa521('0x38')][_0xa521('0x39')]({'where':{'id':_0x4c42a9['id']},'raw':!![]});})[_0xa521('0x37')](function(_0x1759a0){var _0x361565={'grant_type':_0xa521('0x3a'),'refresh_token':_0x1759a0['data6'],'scope':getAccessTokenScope(_0x1759a0),'redirect_uri':_0x1759a0[_0xa521('0x27')],'client_id':_0x1759a0[_0xa521('0x2f')],'client_secret':encryptor['decryptString'](_0x1759a0['data3'])};var _0x211e65={'method':_0xa521('0x3b'),'uri':MICROSOFT_AUTH_URL[_0xa521('0x2e')](_0xa521('0x1e'),_0x1759a0[_0xa521('0x1f')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x361565,'json':!![]};return rp(_0x211e65);})[_0xa521('0x37')](function(_0x405a39){_0x4c42a9[_0xa521('0x3c')]=_0x405a39[_0xa521('0x3d')];_0x4c42a9[_0xa521('0x3e')]=_0x405a39[_0xa521('0x3a')];return db[_0xa521('0x38')][_0xa521('0x3f')]({'data5':_0x4c42a9[_0xa521('0x3c')],'data6':_0x4c42a9[_0xa521('0x3e')]},{'where':{'id':_0x4c42a9['id']}});})['then'](function(){return _0x4c42a9;})[_0xa521('0x40')](function(_0x173cb1){logger[_0xa521('0x41')](_0xa521('0x42'),_0x4c42a9['id'],_0x173cb1);});}function getOauth2MicrosoftAccessToken(_0x65f8c6,_0x39b6a4){var _0x35a23c={'grant_type':'authorization_code','code':_0x65f8c6,'scope':getAccessTokenScope(_0x39b6a4),'redirect_uri':_0x39b6a4[_0xa521('0x27')],'client_id':_0x39b6a4[_0xa521('0x2f')],'client_secret':encryptor[_0xa521('0x43')](_0x39b6a4[_0xa521('0x44')])};var _0x4d5f65={'method':_0xa521('0x3b'),'uri':MICROSOFT_AUTH_URL['replace'](_0xa521('0x1e'),_0x39b6a4[_0xa521('0x1f')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x35a23c,'json':!![]};return rp(_0x4d5f65);}function startRefreshInterval(_0x3deb76){var _0x3eb5a1=schedule[_0xa521('0x45')];if(_0x3eb5a1[_0x3deb76['id']])clearInterval(_0x3eb5a1[_0x3deb76['id']]);_0x3eb5a1[_0x3deb76['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0xa521('0x46')](this,{'id':_0x3deb76['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0xa521('0x45')]=_0x3eb5a1;}function startAllRefreshIntervals(){return db[_0xa521('0x38')][_0xa521('0x47')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0xa521('0x37')](function(_0xa79ad9){var _0x8ddf48=_0xa79ad9[_0xa521('0x17')](function(_0x43f8d2){return refreshOauth2MicrosoftAccessToken(_0x43f8d2)['then'](function(_0x26166a){startRefreshInterval(_0x26166a);});});return Promise[_0xa521('0x48')](_0x8ddf48);})[_0xa521('0x40')](function(_0x2082cf){var _0xc0ef93=_0x2082cf?util[_0xa521('0x49')](_0x2082cf,{'showHidden':![],'depth':null}):'';logger['error'](_0xa521('0x4a'),_0xc0ef93);});}module[_0xa521('0x4b')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};
\ No newline at end of file
+var _0xd60a=['then','data3','CloudProvider','findOne','refresh_token','data6','decryptString','POST','data5','access_token','catch','error','authorization_code','bind','intervals','findAll','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','exports','lodash','crypto','jsonwebtoken','moment','ioredis','util','../../components/encryptor','../../config/environment','../../config/logger','api','../../mysqldb','defaults','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','openid','map','type','push','data7','/.default','Dynamics365','replace','{TENANT_ID}','data2','code','id_token','from','stringify','randomBytes','toString','client_id','data1','response_type','join','redirect_uri','data4','response_mode','form_post','scope','nonce','prompt','login','key','value','oauth2Claims','oauth2/','set','decode','payload','iss','issuer','audience','isAfter','unix','exp','resolve'];(function(_0x5ba2ac,_0x53b1bc){var _0x1b2443=function(_0x2cfd26){while(--_0x2cfd26){_0x5ba2ac['push'](_0x5ba2ac['shift']());}};_0x1b2443(++_0x53b1bc);}(_0xd60a,0x193));var _0xad60=function(_0x165584,_0xe8e4f){_0x165584=_0x165584-0x0;var _0x46b7fc=_0xd60a[_0x165584];return _0x46b7fc;};'use strict';var _=require(_0xad60('0x0'));var crypto=require(_0xad60('0x1'));var jwt=require(_0xad60('0x2'));var moment=require(_0xad60('0x3'));var Redis=require(_0xad60('0x4'));var rp=require('request-promise');var util=require(_0xad60('0x5'));var encryptor=require(_0xad60('0x6'));var config=require(_0xad60('0x7'));var logger=require(_0xad60('0x8'))(_0xad60('0x9'));var schedule=require('../../config/schedule/cloud-provider');var db=require(_0xad60('0xa'))['db'];config['redis']=_[_0xad60('0xb')](config['redis'],{'host':_0xad60('0xc'),'port':0x18eb});var redis=new Redis(config['redis']);var MICROSOFT_AUTH_URL=_0xad60('0xd');var AZURE_AUTH_SCOPES={'Outlook365':['openid','profile','email',_0xad60('0xe'),_0xad60('0xf'),_0xad60('0x10'),'https://outlook.office.com/SMTP.Send'],'Dynamics365':[_0xad60('0x11'),_0xad60('0xe')]};var MICROSOFT_AUTH_ENDPOINT='/authorize';var MICROSOFT_TOKEN_ENDPOINT='/token';var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x24ffc5){var _0x43d281=_[_0xad60('0x12')](AZURE_AUTH_SCOPES[_0x24ffc5[_0xad60('0x13')]]);if(_0x24ffc5[_0xad60('0x13')]==='Dynamics365')_0x43d281[_0xad60('0x14')](_0x24ffc5[_0xad60('0x15')]+_0xad60('0x16'));return _0x43d281['join']('\x20');}function getAccessTokenScope(_0xd461a7){if(_0xd461a7[_0xad60('0x13')]==='Outlook365')return'https://outlook.office365.com/IMAP.AccessAsUser.All';if(_0xd461a7[_0xad60('0x13')]===_0xad60('0x17'))return _0xd461a7['data7']+_0xad60('0x16');}function generateMicrosoftAuthorizationUrl(_0x16267d,_0x5ee728){var _0xebe172=MICROSOFT_AUTH_URL[_0xad60('0x18')](_0xad60('0x19'),_0x16267d[_0xad60('0x1a')]);var _0x127ad0=[_0xad60('0x1b'),_0xad60('0x1c')];var _0x11e2b7=Buffer[_0xad60('0x1d')](JSON[_0xad60('0x1e')]({'id':_0x5ee728}))['toString']('base64');var _0x56399c=crypto[_0xad60('0x1f')](0x10)[_0xad60('0x20')]('hex');var _0x583f22=getAuthorizationScopes(_0x16267d);var _0x2402bc=[{'key':_0xad60('0x21'),'value':_0x16267d[_0xad60('0x22')]},{'key':_0xad60('0x23'),'value':encodeURIComponent(_0x127ad0[_0xad60('0x24')]('\x20'))},{'key':_0xad60('0x25'),'value':_0x16267d[_0xad60('0x26')]},{'key':_0xad60('0x27'),'value':_0xad60('0x28')},{'key':_0xad60('0x29'),'value':encodeURIComponent(_0x583f22)},{'key':'state','value':_0x11e2b7},{'key':_0xad60('0x2a'),'value':_0x56399c},{'key':_0xad60('0x2b'),'value':_0xad60('0x2c')}];var _0x316d30=_0xebe172+MICROSOFT_AUTH_ENDPOINT+'?'+_['map'](_0x2402bc,function(_0x1a430f){return _0x1a430f[_0xad60('0x2d')]+'='+_0x1a430f[_0xad60('0x2e')];})[_0xad60('0x24')]('&');_0x16267d[_0xad60('0x2f')]={'issuer':_0xebe172[_0xad60('0x18')](_0xad60('0x30'),''),'audience':_0x16267d[_0xad60('0x22')],'state':_0x11e2b7,'nonce':_0x56399c};redis[_0xad60('0x31')](_0x11e2b7,JSON[_0xad60('0x1e')](_0x16267d));return _0x316d30;}function isValidIdToken(_0x24582f,_0x1d53cb){try{var _0x20e32d=jwt[_0xad60('0x32')](_0x24582f,{'complete':!![]});var _0x1e0f85=_0x20e32d[_0xad60('0x33')];if(_0x1e0f85[_0xad60('0x34')]!==_0x1d53cb[_0xad60('0x35')])return![];if(_0x1e0f85['aud']!==_0x1d53cb[_0xad60('0x36')])return![];if(_0x1e0f85[_0xad60('0x2a')]!==_0x1d53cb[_0xad60('0x2a')])return![];if(moment()[_0xad60('0x37')](moment[_0xad60('0x38')](_0x1e0f85[_0xad60('0x39')])))return![];return!![];}catch(_0xfb2e55){throw _0xfb2e55;}}function refreshOauth2MicrosoftAccessToken(_0x25e2b5){return Promise[_0xad60('0x3a')]()[_0xad60('0x3b')](function(){if(_0x25e2b5[_0xad60('0x3c')])return _0x25e2b5;return db[_0xad60('0x3d')][_0xad60('0x3e')]({'where':{'id':_0x25e2b5['id']},'raw':!![]});})[_0xad60('0x3b')](function(_0xcb161a){var _0x205c46={'grant_type':_0xad60('0x3f'),'refresh_token':_0xcb161a[_0xad60('0x40')],'scope':getAccessTokenScope(_0xcb161a),'redirect_uri':_0xcb161a[_0xad60('0x26')],'client_id':_0xcb161a[_0xad60('0x22')],'client_secret':encryptor[_0xad60('0x41')](_0xcb161a[_0xad60('0x3c')])};var _0x55564b={'method':_0xad60('0x42'),'uri':MICROSOFT_AUTH_URL[_0xad60('0x18')]('{TENANT_ID}',_0xcb161a[_0xad60('0x1a')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x205c46,'json':!![]};return rp(_0x55564b);})[_0xad60('0x3b')](function(_0x3aeaa8){_0x25e2b5[_0xad60('0x43')]=_0x3aeaa8[_0xad60('0x44')];_0x25e2b5[_0xad60('0x40')]=_0x3aeaa8[_0xad60('0x3f')];return db[_0xad60('0x3d')]['update']({'data5':_0x25e2b5[_0xad60('0x43')],'data6':_0x25e2b5[_0xad60('0x40')]},{'where':{'id':_0x25e2b5['id']}});})[_0xad60('0x3b')](function(){return _0x25e2b5;})[_0xad60('0x45')](function(_0x4fe708){logger[_0xad60('0x46')]('Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s',_0x25e2b5['id'],_0x4fe708);});}function getOauth2MicrosoftAccessToken(_0x4b60fe,_0x3bfb8e){var _0x30c115={'grant_type':_0xad60('0x47'),'code':_0x4b60fe,'scope':getAccessTokenScope(_0x3bfb8e),'redirect_uri':_0x3bfb8e[_0xad60('0x26')],'client_id':_0x3bfb8e[_0xad60('0x22')],'client_secret':encryptor['decryptString'](_0x3bfb8e['data3'])};var _0x30781f={'method':_0xad60('0x42'),'uri':MICROSOFT_AUTH_URL['replace'](_0xad60('0x19'),_0x3bfb8e['data2'])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x30c115,'json':!![]};return rp(_0x30781f);}function startRefreshInterval(_0x1781a3){var _0x49f1dc=schedule['intervals'];if(_0x49f1dc[_0x1781a3['id']])clearInterval(_0x49f1dc[_0x1781a3['id']]);_0x49f1dc[_0x1781a3['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0xad60('0x48')](this,{'id':_0x1781a3['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0xad60('0x49')]=_0x49f1dc;}function startAllRefreshIntervals(){return db['CloudProvider'][_0xad60('0x4a')]({'where':{'data6':{'$ne':null}},'raw':!![]})['then'](function(_0x12a1a0){var _0x3a37e8=_0x12a1a0[_0xad60('0x12')](function(_0xa823a3){return refreshOauth2MicrosoftAccessToken(_0xa823a3)['then'](function(_0x11202c){startRefreshInterval(_0x11202c);});});return Promise['all'](_0x3a37e8);})[_0xad60('0x45')](function(_0x120a51){var _0x45dcee=_0x120a51?util['inspect'](_0x120a51,{'showHidden':![],'depth':null}):'';logger['error'](_0xad60('0x4b'),_0x45dcee);});}module[_0xad60('0x4c')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};
\ No newline at end of file