-
-
Notifications
You must be signed in to change notification settings - Fork 3.7k
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Feat: Support for Microsoft Oauth in Email Channel (#6227)
- Adds the backend APIs required for Microsoft Email Channels Co-authored-by: Pranav Raj S <pranav@chatwoot.com> Co-authored-by: Sojan <sojan@pepalo.com>
- Loading branch information
1 parent
d0972a2
commit 00cbdaa
Showing
22 changed files
with
611 additions
and
10 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
27 changes: 27 additions & 0 deletions
27
app/controllers/api/v1/accounts/microsoft/authorizations_controller.rb
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,27 @@ | ||
class Api::V1::Accounts::Microsoft::AuthorizationsController < Api::V1::Accounts::BaseController | ||
include MicrosoftConcern | ||
before_action :check_authorization | ||
|
||
def create | ||
email = params[:authorization][:email] | ||
redirect_url = microsoft_client.auth_code.authorize_url( | ||
{ | ||
redirect_uri: "#{base_url}/microsoft/callback", | ||
scope: 'offline_access https://outlook.office.com/IMAP.AccessAsUser.All https://outlook.office.com/SMTP.Send openid', | ||
prompt: 'consent' | ||
} | ||
) | ||
if redirect_url | ||
::Redis::Alfred.setex(email, Current.account.id, 5.minutes) | ||
render json: { success: true, url: redirect_url } | ||
else | ||
render json: { success: false }, status: :unprocessable_entity | ||
end | ||
end | ||
|
||
private | ||
|
||
def check_authorization | ||
raise Pundit::NotAuthorizedError unless Current.account_user.administrator? | ||
end | ||
end |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,22 @@ | ||
module MicrosoftConcern | ||
extend ActiveSupport::Concern | ||
|
||
def microsoft_client | ||
::OAuth2::Client.new(ENV.fetch('AZURE_APP_ID', nil), ENV.fetch('AZURE_APP_SECRET', nil), | ||
{ | ||
site: 'https://login.microsoftonline.com', | ||
authorize_url: 'https://login.microsoftonline.com/common/oauth2/v2.0/authorize', | ||
token_url: 'https://login.microsoftonline.com/common/oauth2/v2.0/token' | ||
}) | ||
end | ||
|
||
private | ||
|
||
def parsed_body | ||
@parsed_body ||= Rack::Utils.parse_nested_query(@response.raw_response.body) | ||
end | ||
|
||
def base_url | ||
ENV.fetch('FRONTEND_URL', 'http://localhost:3000') | ||
end | ||
end |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,72 @@ | ||
class Microsoft::CallbacksController < ApplicationController | ||
include MicrosoftConcern | ||
|
||
def show | ||
@response = microsoft_client.auth_code.get_token( | ||
oauth_code, | ||
redirect_uri: "#{base_url}/microsoft/callback" | ||
) | ||
|
||
inbox = find_or_create_inbox | ||
::Redis::Alfred.delete(users_data['email']) | ||
redirect_to app_microsoft_inbox_agents_url(account_id: account.id, inbox_id: inbox.id) | ||
rescue StandardError => e | ||
ChatwootExceptionTracker.new(e).capture_exception | ||
redirect_to '/' | ||
end | ||
|
||
private | ||
|
||
def oauth_code | ||
params[:code] | ||
end | ||
|
||
def users_data | ||
decoded_token = JWT.decode parsed_body[:id_token], nil, false | ||
decoded_token[0] | ||
end | ||
|
||
def parsed_body | ||
@parsed_body ||= @response.response.parsed | ||
end | ||
|
||
def account_id | ||
::Redis::Alfred.get(users_data['email']) | ||
end | ||
|
||
def account | ||
@account ||= Account.find(account_id) | ||
end | ||
|
||
def find_or_create_inbox | ||
channel_email = Channel::Email.find_by(email: users_data['email'], account: account) | ||
channel_email ||= create_microsoft_channel_with_inbox | ||
update_microsoft_channel(channel_email) | ||
channel_email.inbox | ||
end | ||
|
||
def create_microsoft_channel_with_inbox | ||
ActiveRecord::Base.transaction do | ||
channel_email = Channel::Email.create!(email: users_data['email'], account: account) | ||
account.inboxes.create!( | ||
account: account, | ||
channel: channel_email, | ||
name: users_data['name'] | ||
) | ||
channel_email | ||
end | ||
end | ||
|
||
def update_microsoft_channel(channel_email) | ||
channel_email.update!({ | ||
imap_login: users_data['email'], imap_address: 'outlook.office365.com', | ||
imap_port: '993', imap_enabled: true, | ||
provider: 'microsoft', | ||
provider_config: { | ||
access_token: parsed_body['access_token'], | ||
refresh_token: parsed_body['refresh_token'], | ||
expires_on: (Time.current.utc + 1.hour).to_s | ||
} | ||
}) | ||
end | ||
end |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Oops, something went wrong.