Built motion from commit da24aabd.|2.6.20
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
index a2b5731..b583cbb 100644 (file)
@@ -15,4 +15,4 @@
 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                        *
 // *                                                                       *
 // *************************************************************************
-var _0xd474=['exports','crypto','jsonwebtoken','moment','ioredis','util','../../components/encryptor','../../config/environment','../../config/logger','../../config/schedule/cloud-provider','../../mysqldb','redis','defaults','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','profile','email','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','openid','/authorize','/token','map','type','push','/.default','join','Dynamics365','data7','replace','{TENANT_ID}','data2','code','id_token','stringify','toString','base64','hex','client_id','data1','response_type','redirect_uri','data4','response_mode','scope','state','nonce','login','key','oauth2Claims','oauth2/','set','decode','payload','aud','audience','isAfter','exp','resolve','then','refresh_token','data6','decryptString','access_token','CloudProvider','update','catch','error','authorization_code','data3','POST','intervals','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s'];(function(_0x1c71ef,_0x565714){var _0x395d3a=function(_0x33a6ff){while(--_0x33a6ff){_0x1c71ef['push'](_0x1c71ef['shift']());}};_0x395d3a(++_0x565714);}(_0xd474,0x125));var _0x4d47=function(_0x354a8e,_0x23f6ea){_0x354a8e=_0x354a8e-0x0;var _0x30f96e=_0xd474[_0x354a8e];return _0x30f96e;};'use strict';var _=require('lodash');var crypto=require(_0x4d47('0x0'));var jwt=require(_0x4d47('0x1'));var moment=require(_0x4d47('0x2'));var Redis=require(_0x4d47('0x3'));var rp=require('request-promise');var util=require(_0x4d47('0x4'));var encryptor=require(_0x4d47('0x5'));var config=require(_0x4d47('0x6'));var logger=require(_0x4d47('0x7'))('api');var schedule=require(_0x4d47('0x8'));var db=require(_0x4d47('0x9'))['db'];config[_0x4d47('0xa')]=_[_0x4d47('0xb')](config[_0x4d47('0xa')],{'host':'localhost','port':0x18eb});var redis=new Redis(config[_0x4d47('0xa')]);var MICROSOFT_AUTH_URL=_0x4d47('0xc');var AZURE_AUTH_SCOPES={'Outlook365':['openid',_0x4d47('0xd'),_0x4d47('0xe'),_0x4d47('0xf'),_0x4d47('0x10'),'https://outlook.office.com/POP.AccessAsUser.All',_0x4d47('0x11')],'Dynamics365':[_0x4d47('0x12'),_0x4d47('0xf')]};var MICROSOFT_AUTH_ENDPOINT=_0x4d47('0x13');var MICROSOFT_TOKEN_ENDPOINT=_0x4d47('0x14');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x4b1af7){var _0x339695=_[_0x4d47('0x15')](AZURE_AUTH_SCOPES[_0x4b1af7[_0x4d47('0x16')]]);if(_0x4b1af7[_0x4d47('0x16')]==='Dynamics365')_0x339695[_0x4d47('0x17')](_0x4b1af7['data7']+_0x4d47('0x18'));return _0x339695[_0x4d47('0x19')]('\x20');}function getAccessTokenScope(_0xeb54d2){if(_0xeb54d2['type']==='Outlook365')return _0x4d47('0x10');if(_0xeb54d2[_0x4d47('0x16')]===_0x4d47('0x1a'))return _0xeb54d2[_0x4d47('0x1b')]+_0x4d47('0x18');}function generateMicrosoftAuthorizationUrl(_0x450468,_0x5ebc71){var _0x325c45=MICROSOFT_AUTH_URL[_0x4d47('0x1c')](_0x4d47('0x1d'),_0x450468[_0x4d47('0x1e')]);var _0x5a0997=[_0x4d47('0x1f'),_0x4d47('0x20')];var _0x5c63eb=Buffer['from'](JSON[_0x4d47('0x21')]({'id':_0x5ebc71}))[_0x4d47('0x22')](_0x4d47('0x23'));var _0x2cace0=crypto['randomBytes'](0x10)[_0x4d47('0x22')](_0x4d47('0x24'));var _0x3952b7=getAuthorizationScopes(_0x450468);var _0xbb44a0=[{'key':_0x4d47('0x25'),'value':_0x450468[_0x4d47('0x26')]},{'key':_0x4d47('0x27'),'value':encodeURIComponent(_0x5a0997[_0x4d47('0x19')]('\x20'))},{'key':_0x4d47('0x28'),'value':_0x450468[_0x4d47('0x29')]},{'key':_0x4d47('0x2a'),'value':'form_post'},{'key':_0x4d47('0x2b'),'value':encodeURIComponent(_0x3952b7)},{'key':_0x4d47('0x2c'),'value':_0x5c63eb},{'key':_0x4d47('0x2d'),'value':_0x2cace0},{'key':'prompt','value':_0x4d47('0x2e')}];var _0x4636d7=_0x325c45+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0x4d47('0x15')](_0xbb44a0,function(_0x56a1a0){return _0x56a1a0[_0x4d47('0x2f')]+'='+_0x56a1a0['value'];})[_0x4d47('0x19')]('&');_0x450468[_0x4d47('0x30')]={'issuer':_0x325c45['replace'](_0x4d47('0x31'),''),'audience':_0x450468[_0x4d47('0x26')],'state':_0x5c63eb,'nonce':_0x2cace0};redis[_0x4d47('0x32')](_0x5c63eb,JSON[_0x4d47('0x21')](_0x450468));return _0x4636d7;}function isValidIdToken(_0x2a05a3,_0x5b581b){try{var _0x63c270=jwt[_0x4d47('0x33')](_0x2a05a3,{'complete':!![]});var _0xbeefe9=_0x63c270[_0x4d47('0x34')];if(_0xbeefe9['iss']!==_0x5b581b['issuer'])return![];if(_0xbeefe9[_0x4d47('0x35')]!==_0x5b581b[_0x4d47('0x36')])return![];if(_0xbeefe9[_0x4d47('0x2d')]!==_0x5b581b['nonce'])return![];if(moment()[_0x4d47('0x37')](moment['unix'](_0xbeefe9[_0x4d47('0x38')])))return![];return!![];}catch(_0x1d4007){throw _0x1d4007;}}function refreshOauth2MicrosoftAccessToken(_0x361dcb){return Promise[_0x4d47('0x39')]()[_0x4d47('0x3a')](function(){if(_0x361dcb['data3'])return _0x361dcb;return db['CloudProvider']['findOne']({'where':{'id':_0x361dcb['id']},'raw':!![]});})[_0x4d47('0x3a')](function(_0x2e1c88){var _0x4e7bcd={'grant_type':_0x4d47('0x3b'),'refresh_token':_0x2e1c88[_0x4d47('0x3c')],'scope':getAccessTokenScope(_0x2e1c88),'redirect_uri':_0x2e1c88[_0x4d47('0x29')],'client_id':_0x2e1c88[_0x4d47('0x26')],'client_secret':encryptor[_0x4d47('0x3d')](_0x2e1c88['data3'])};var _0x1950c8={'method':'POST','uri':MICROSOFT_AUTH_URL[_0x4d47('0x1c')]('{TENANT_ID}',_0x2e1c88[_0x4d47('0x1e')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x4e7bcd,'json':!![]};return rp(_0x1950c8);})[_0x4d47('0x3a')](function(_0x254455){_0x361dcb['data5']=_0x254455[_0x4d47('0x3e')];_0x361dcb['data6']=_0x254455[_0x4d47('0x3b')];return db[_0x4d47('0x3f')][_0x4d47('0x40')]({'data5':_0x361dcb['data5'],'data6':_0x361dcb[_0x4d47('0x3c')]},{'where':{'id':_0x361dcb['id']}});})[_0x4d47('0x3a')](function(){return _0x361dcb;})[_0x4d47('0x41')](function(_0x2858b6){logger[_0x4d47('0x42')]('Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s',_0x361dcb['id'],_0x2858b6);});}function getOauth2MicrosoftAccessToken(_0x3ed79f,_0x858bb9){var _0x231cc6={'grant_type':_0x4d47('0x43'),'code':_0x3ed79f,'scope':getAccessTokenScope(_0x858bb9),'redirect_uri':_0x858bb9[_0x4d47('0x29')],'client_id':_0x858bb9[_0x4d47('0x26')],'client_secret':encryptor[_0x4d47('0x3d')](_0x858bb9[_0x4d47('0x44')])};var _0x373d70={'method':_0x4d47('0x45'),'uri':MICROSOFT_AUTH_URL[_0x4d47('0x1c')](_0x4d47('0x1d'),_0x858bb9['data2'])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x231cc6,'json':!![]};return rp(_0x373d70);}function startRefreshInterval(_0x40cf0f){var _0x5ac5af=schedule['intervals'];if(_0x5ac5af[_0x40cf0f['id']])clearInterval(_0x5ac5af[_0x40cf0f['id']]);_0x5ac5af[_0x40cf0f['id']]=setInterval(refreshOauth2MicrosoftAccessToken['bind'](this,{'id':_0x40cf0f['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x4d47('0x46')]=_0x5ac5af;}function startAllRefreshIntervals(){return db[_0x4d47('0x3f')]['findAll']({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x4d47('0x3a')](function(_0x157288){var _0x4334d9=_0x157288[_0x4d47('0x15')](function(_0x34cf07){return refreshOauth2MicrosoftAccessToken(_0x34cf07)[_0x4d47('0x3a')](function(_0x2b1150){startRefreshInterval(_0x2b1150);});});return Promise['all'](_0x4334d9);})['catch'](function(_0x46bb93){var _0x5a8683=_0x46bb93?util['inspect'](_0x46bb93,{'showHidden':![],'depth':null}):'';logger[_0x4d47('0x42')](_0x4d47('0x47'),_0x5a8683);});}module[_0x4d47('0x48')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};
\ No newline at end of file
+var _0x441b=['payload','iss','aud','audience','isAfter','unix','resolve','then','data3','CloudProvider','findOne','refresh_token','data6','POST','data5','access_token','update','error','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code','{TENANT_ID}','intervals','findAll','all','catch','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','exports','lodash','crypto','jsonwebtoken','moment','ioredis','request-promise','util','../../config/environment','api','redis','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','profile','email','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','/authorize','/token','map','type','Dynamics365','push','data7','/.default','join','Outlook365','replace','data2','code','id_token','from','stringify','randomBytes','toString','data1','redirect_uri','data4','response_mode','form_post','state','nonce','login','key','oauth2/','decode'];(function(_0x5abe5a,_0x5747c0){var _0x5abba2=function(_0x36c001){while(--_0x36c001){_0x5abe5a['push'](_0x5abe5a['shift']());}};_0x5abba2(++_0x5747c0);}(_0x441b,0x143));var _0xb441=function(_0x5d9454,_0x519530){_0x5d9454=_0x5d9454-0x0;var _0x9618c9=_0x441b[_0x5d9454];return _0x9618c9;};'use strict';var _=require(_0xb441('0x0'));var crypto=require(_0xb441('0x1'));var jwt=require(_0xb441('0x2'));var moment=require(_0xb441('0x3'));var Redis=require(_0xb441('0x4'));var rp=require(_0xb441('0x5'));var util=require(_0xb441('0x6'));var encryptor=require('../../components/encryptor');var config=require(_0xb441('0x7'));var logger=require('../../config/logger')(_0xb441('0x8'));var schedule=require('../../config/schedule/cloud-provider');var db=require('../../mysqldb')['db'];config[_0xb441('0x9')]=_['defaults'](config[_0xb441('0x9')],{'host':_0xb441('0xa'),'port':0x18eb});var redis=new Redis(config[_0xb441('0x9')]);var MICROSOFT_AUTH_URL=_0xb441('0xb');var AZURE_AUTH_SCOPES={'Outlook365':[_0xb441('0xc'),_0xb441('0xd'),_0xb441('0xe'),_0xb441('0xf'),_0xb441('0x10'),_0xb441('0x11'),'https://outlook.office.com/SMTP.Send'],'Dynamics365':[_0xb441('0xc'),'offline_access']};var MICROSOFT_AUTH_ENDPOINT=_0xb441('0x12');var MICROSOFT_TOKEN_ENDPOINT=_0xb441('0x13');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x65d3){var _0x51c334=_[_0xb441('0x14')](AZURE_AUTH_SCOPES[_0x65d3['type']]);if(_0x65d3[_0xb441('0x15')]===_0xb441('0x16'))_0x51c334[_0xb441('0x17')](_0x65d3[_0xb441('0x18')]+_0xb441('0x19'));return _0x51c334[_0xb441('0x1a')]('\x20');}function getAccessTokenScope(_0x23671a){if(_0x23671a['type']===_0xb441('0x1b'))return'https://outlook.office365.com/IMAP.AccessAsUser.All';if(_0x23671a[_0xb441('0x15')]==='Dynamics365')return _0x23671a[_0xb441('0x18')]+_0xb441('0x19');}function generateMicrosoftAuthorizationUrl(_0x38631a,_0x4539a5){var _0x1002a8=MICROSOFT_AUTH_URL[_0xb441('0x1c')]('{TENANT_ID}',_0x38631a[_0xb441('0x1d')]);var _0x22283f=[_0xb441('0x1e'),_0xb441('0x1f')];var _0x4d4fbf=Buffer[_0xb441('0x20')](JSON[_0xb441('0x21')]({'id':_0x4539a5}))['toString']('base64');var _0x17d7cf=crypto[_0xb441('0x22')](0x10)[_0xb441('0x23')]('hex');var _0x175f5d=getAuthorizationScopes(_0x38631a);var _0x149fb8=[{'key':'client_id','value':_0x38631a[_0xb441('0x24')]},{'key':'response_type','value':encodeURIComponent(_0x22283f['join']('\x20'))},{'key':_0xb441('0x25'),'value':_0x38631a[_0xb441('0x26')]},{'key':_0xb441('0x27'),'value':_0xb441('0x28')},{'key':'scope','value':encodeURIComponent(_0x175f5d)},{'key':_0xb441('0x29'),'value':_0x4d4fbf},{'key':_0xb441('0x2a'),'value':_0x17d7cf},{'key':'prompt','value':_0xb441('0x2b')}];var _0x20837e=_0x1002a8+MICROSOFT_AUTH_ENDPOINT+'?'+_['map'](_0x149fb8,function(_0x2c4e97){return _0x2c4e97[_0xb441('0x2c')]+'='+_0x2c4e97['value'];})[_0xb441('0x1a')]('&');_0x38631a['oauth2Claims']={'issuer':_0x1002a8[_0xb441('0x1c')](_0xb441('0x2d'),''),'audience':_0x38631a[_0xb441('0x24')],'state':_0x4d4fbf,'nonce':_0x17d7cf};redis['set'](_0x4d4fbf,JSON[_0xb441('0x21')](_0x38631a));return _0x20837e;}function isValidIdToken(_0x36d53d,_0xfe2c0b){try{var _0x17cbe6=jwt[_0xb441('0x2e')](_0x36d53d,{'complete':!![]});var _0x3f3006=_0x17cbe6[_0xb441('0x2f')];if(_0x3f3006[_0xb441('0x30')]!==_0xfe2c0b['issuer'])return![];if(_0x3f3006[_0xb441('0x31')]!==_0xfe2c0b[_0xb441('0x32')])return![];if(_0x3f3006['nonce']!==_0xfe2c0b[_0xb441('0x2a')])return![];if(moment()[_0xb441('0x33')](moment[_0xb441('0x34')](_0x3f3006['exp'])))return![];return!![];}catch(_0x54b22e){throw _0x54b22e;}}function refreshOauth2MicrosoftAccessToken(_0x945501){return Promise[_0xb441('0x35')]()[_0xb441('0x36')](function(){if(_0x945501[_0xb441('0x37')])return _0x945501;return db[_0xb441('0x38')][_0xb441('0x39')]({'where':{'id':_0x945501['id']},'raw':!![]});})[_0xb441('0x36')](function(_0x40c30a){var _0x4c5233={'grant_type':_0xb441('0x3a'),'refresh_token':_0x40c30a[_0xb441('0x3b')],'scope':getAccessTokenScope(_0x40c30a),'redirect_uri':_0x40c30a[_0xb441('0x26')],'client_id':_0x40c30a[_0xb441('0x24')],'client_secret':encryptor['decryptString'](_0x40c30a['data3'])};var _0x550c73={'method':_0xb441('0x3c'),'uri':MICROSOFT_AUTH_URL[_0xb441('0x1c')]('{TENANT_ID}',_0x40c30a['data2'])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x4c5233,'json':!![]};return rp(_0x550c73);})['then'](function(_0x45896c){_0x945501[_0xb441('0x3d')]=_0x45896c[_0xb441('0x3e')];_0x945501[_0xb441('0x3b')]=_0x45896c[_0xb441('0x3a')];return db['CloudProvider'][_0xb441('0x3f')]({'data5':_0x945501[_0xb441('0x3d')],'data6':_0x945501[_0xb441('0x3b')]},{'where':{'id':_0x945501['id']}});})['then'](function(){return _0x945501;})['catch'](function(_0x517598){logger[_0xb441('0x40')](_0xb441('0x41'),_0x945501['id'],_0x517598);});}function getOauth2MicrosoftAccessToken(_0x386495,_0x433b6c){var _0x5bab47={'grant_type':_0xb441('0x42'),'code':_0x386495,'scope':getAccessTokenScope(_0x433b6c),'redirect_uri':_0x433b6c[_0xb441('0x26')],'client_id':_0x433b6c[_0xb441('0x24')],'client_secret':encryptor['decryptString'](_0x433b6c[_0xb441('0x37')])};var _0x3d62bc={'method':_0xb441('0x3c'),'uri':MICROSOFT_AUTH_URL[_0xb441('0x1c')](_0xb441('0x43'),_0x433b6c[_0xb441('0x1d')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x5bab47,'json':!![]};return rp(_0x3d62bc);}function startRefreshInterval(_0x558af1){var _0x5522db=schedule['intervals'];if(_0x5522db[_0x558af1['id']])clearInterval(_0x5522db[_0x558af1['id']]);_0x5522db[_0x558af1['id']]=setInterval(refreshOauth2MicrosoftAccessToken['bind'](this,{'id':_0x558af1['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0xb441('0x44')]=_0x5522db;}function startAllRefreshIntervals(){return db['CloudProvider'][_0xb441('0x45')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0xb441('0x36')](function(_0x554117){var _0xed6a23=_0x554117[_0xb441('0x14')](function(_0x253013){return refreshOauth2MicrosoftAccessToken(_0x253013)[_0xb441('0x36')](function(_0x47ba24){startRefreshInterval(_0x47ba24);});});return Promise[_0xb441('0x46')](_0xed6a23);})[_0xb441('0x47')](function(_0x53649a){var _0xd88e59=_0x53649a?util['inspect'](_0x53649a,{'showHidden':![],'depth':null}):'';logger['error'](_0xb441('0x48'),_0xd88e59);});}module[_0xb441('0x49')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};
\ No newline at end of file