Built motion from commit (unavailable).|2.4.18
[motion2.git] / server / api / authLocal / authLocal.controller.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x51ca=['generate','toLowerCase','findOne','User','This\x20email\x20is\x20not\x20registered.','The\x20user\x20is\x20disabled.\x20Please\x20contact\x20the\x20administrator.','blocked','add','The\x20user\x20is\x20blocked.\x20Please\x20contact\x20the\x20administrator.','resetPasswordToken','resetPasswordExpires','now','save','You\x20are\x20receiving\x20this\x20because\x20you\x20(or\x20someone\x20else)\x20have\x20requested\x20the\x20reset\x20of\x20the\x20password\x20for\x20your\x20account.\x0a\x0a','Please\x20click\x20on\x20the\x20following\x20link,\x20or\x20paste\x20this\x20into\x20your\x20browser\x20to\x20complete\x20the\x20process:\x0a\x0a','http://','headers','/reset/','Reset\x20Email\x20sent!','catch','params','Password\x20reset\x20token\x20is\x20invalid\x20or\x20has\x20expired.','securePassword','password','Password\x20reset!','use','util','passport','passport-local','Strategy','jayson/promise','randomstring','../../mysqldb','../../components/auth/service','../../config/utils','http','Setting','then','name','salt','role','blockedAt','loginAttempts','admin','user','agent','authenticate','disabled','blockDuration','minutes','Incorrect\x20username\x20and/or\x20password.\x20Please\x20retry\x20again\x20or\x20contact\x20the\x20administrator.','clearBlockUser','allowedLoginAttempts','getLicense','find','email','Smtp','Unable\x20to\x20find\x20a\x20configured\x20SMTP\x20service!','service','host','port','secure','authentication','auth','pass','merge','format','\x22%s\x22\x20<%s>','request','error','SendMail\x20error:\x20%s.\x20Please\x20contact\x20your\x20Administrator!','message','stringify','status','send','The\x20password\x20must\x20be\x20at\x20least\x208\x20characters\x20long\x20and\x20have\x201\x20lowercase\x20character,\x201\x20uppercase\x20character,\x201\x20number\x20and\x201\x20special\x20character\x20~!@#$%^&-_=+[{]}.','login','local','Something\x20went\x20wrong,\x20please\x20try\x20again.','signToken','online','forgot','body','Email\x20parameter\x20is\x20missing'];(function(_0x57f8eb,_0x484ee9){var _0xc72795=function(_0x17cb9d){while(--_0x17cb9d){_0x57f8eb['push'](_0x57f8eb['shift']());}};_0xc72795(++_0x484ee9);}(_0x51ca,0x1be));var _0xa51c=function(_0x29d94e,_0xf386d6){_0x29d94e=_0x29d94e-0x0;var _0x106237=_0x51ca[_0x29d94e];return _0x106237;};'use strict';var util=require(_0xa51c('0x0'));var passport=require(_0xa51c('0x1'));var LocalStrategy=require(_0xa51c('0x2'))[_0xa51c('0x3')];var jayson=require(_0xa51c('0x4'));var _=require('lodash');var rs=require(_0xa51c('0x5'));var moment=require('moment');var db=require(_0xa51c('0x6'))['db'];var authService=require(_0xa51c('0x7'));var utils=require(_0xa51c('0x8'));var client=jayson['client'][_0xa51c('0x9')]({'port':0x232b});function localAuthenticate(_0x30f123,_0x381618,_0x5e665b,_0x4b352a){var _0xd71704,_0x1783bd;return db[_0xa51c('0xa')]['findOne']({'where':{'id':0x1},'attributes':['allowedLoginAttempts','blockDuration'],'raw':!![]})[_0xa51c('0xb')](function(_0x3fc6f8){_0xd71704=_0x3fc6f8;return _0x30f123['findOne']({'attributes':['id',_0xa51c('0xc'),'password',_0xa51c('0xd'),_0xa51c('0xe'),'disabled','blocked',_0xa51c('0xf'),_0xa51c('0x10')],'where':{'name':_0x381618,'role':{'$or':[_0xa51c('0x11'),_0xa51c('0x12'),_0xa51c('0x13')]}}});})['then'](function(_0x5a58c4){if(!_0x5a58c4||_0x5a58c4&&_0x5a58c4['name']!==_0x381618){throw new Error('Incorrect\x20username\x20and/or\x20password.\x20Please\x20retry\x20again\x20or\x20contact\x20the\x20administrator.');}else{_0x1783bd=_0x5a58c4;return _0x1783bd;}})[_0xa51c('0xb')](function(){_0x1783bd[_0xa51c('0x14')](_0x5e665b,function(_0x18b582,_0xcb572){var _0x5adb6f=_0x1783bd[_0xa51c('0x10')]+0x1;if(_0x18b582){return _0x4b352a(_0x18b582);}else if(!_0xcb572){if(_0x1783bd[_0xa51c('0x15')]){return _0x4b352a(null,![],{'message':'Incorrect\x20username\x20and/or\x20password.\x20Please\x20retry\x20again\x20or\x20contact\x20the\x20administrator.'});}else if(_0xd71704['allowedLoginAttempts']>0x0){if(_0x1783bd['blocked']){if(_0xd71704['blockDuration']>0x0){if(moment(_0x1783bd[_0xa51c('0xf')])['add'](_0xd71704[_0xa51c('0x16')],_0xa51c('0x17'))>moment()){return _0x4b352a(null,![],{'message':_0xa51c('0x18')});}else{return utils[_0xa51c('0x19')](_0x1783bd,_0x5adb6f,![],null)[_0xa51c('0xb')](function(){return _0x4b352a(null,![],{'message':_0xa51c('0x18')});});}}else{return _0x4b352a(null,![],{'message':'Incorrect\x20username\x20and/or\x20password.\x20Please\x20retry\x20again\x20or\x20contact\x20the\x20administrator.'});}}else{if(_0x5adb6f>=_0xd71704[_0xa51c('0x1a')]){return utils[_0xa51c('0x19')](_0x1783bd,0x0,!![],moment())['then'](function(){return _0x4b352a(null,![],{'message':_0xa51c('0x18')});});}else{return utils[_0xa51c('0x19')](_0x1783bd,_0x5adb6f,![],null)['then'](function(){return _0x4b352a(null,![],{'message':_0xa51c('0x18')});});}}}else{return _0x4b352a(null,![],{'message':'Incorrect\x20username\x20and/or\x20password.\x20Please\x20retry\x20again\x20or\x20contact\x20the\x20administrator.'});}}else{if(_0x1783bd[_0xa51c('0x15')]){return _0x4b352a(null,![],{'message':'Incorrect\x20username\x20and/or\x20password.\x20Please\x20retry\x20again\x20or\x20contact\x20the\x20administrator.'});}else if(_0xd71704['allowedLoginAttempts']>0x0){if(_0x1783bd['blocked']){if(_0xd71704['blockDuration']>0x0){if(moment(_0x1783bd['blockedAt'])['add'](_0xd71704['blockDuration'],'minutes')>moment()){return _0x4b352a(null,![],{'message':_0xa51c('0x18')});}else{return utils['clearBlockUser'](_0x1783bd,0x0,![],null)[_0xa51c('0xb')](function(){return utils[_0xa51c('0x1b')](_0x1783bd);})['then'](function(){return _0x4b352a(null,_0x1783bd);});}}else{return _0x4b352a(null,![],{'message':_0xa51c('0x18')});}}else{return utils[_0xa51c('0x19')](_0x1783bd,0x0,![],null)[_0xa51c('0xb')](function(){return utils['getLicense'](_0x1783bd);})[_0xa51c('0xb')](function(){return _0x4b352a(null,_0x1783bd);})['catch'](function(_0x954ced){return _0x4b352a(null,![],_0x954ced);});}}else{if(_0x1783bd['blocked']){return _0x4b352a(null,![],{'message':_0xa51c('0x18')});}else{return utils[_0xa51c('0x1b')](_0x1783bd)[_0xa51c('0xb')](function(){return _0x4b352a(null,_0x1783bd);});}}}});})['catch'](function(_0x1d72ec){return _0x4b352a(null,![],_0x1d72ec);});}function sendServiceMail(_0x433e59){return db['MailAccount'][_0xa51c('0x1c')]({'where':{'service':!![]},'attributes':['id',_0xa51c('0xc'),_0xa51c('0x1d')],'include':[{'model':db['MailServerOut'],'as':_0xa51c('0x1e')}]})[_0xa51c('0xb')](function(_0x2396e0){if(!_0x2396e0){throw new Error(_0xa51c('0x1f'));}var _0x2f81bb={'tls':{'rejectUnauthorized':![]}};if(_0x2396e0['Smtp'][_0xa51c('0x20')]){_0x2f81bb['service']=_0x2396e0['Smtp'][_0xa51c('0x20')];}else{_0x2f81bb[_0xa51c('0x21')]=_0x2396e0['Smtp']['host'];_0x2f81bb[_0xa51c('0x22')]=_0x2396e0[_0xa51c('0x1e')][_0xa51c('0x22')];_0x2f81bb[_0xa51c('0x23')]=_0x2396e0[_0xa51c('0x1e')]['secure'];}if(_0x2396e0[_0xa51c('0x1e')][_0xa51c('0x24')]){_0x2f81bb[_0xa51c('0x25')]={'user':_0x2396e0[_0xa51c('0x1e')][_0xa51c('0x12')],'pass':_0x2396e0[_0xa51c('0x1e')][_0xa51c('0x26')]};}var _0x3eb925={'account':_0x2f81bb,'message':_[_0xa51c('0x27')]({'from':util[_0xa51c('0x28')](_0xa51c('0x29'),_0x2396e0[_0xa51c('0xc')],_0x2396e0[_0xa51c('0x1d')]||_0x2396e0[_0xa51c('0x1e')][_0xa51c('0x12')])},_0x433e59)};return client[_0xa51c('0x2a')]('SendMail',_0x3eb925);})[_0xa51c('0xb')](function(_0x439e85){if(_0x439e85[_0xa51c('0x2b')]){throw new Error(util[_0xa51c('0x28')](_0xa51c('0x2c'),_0x439e85[_0xa51c('0x2b')][_0xa51c('0x2d')]||JSON[_0xa51c('0x2e')](_0x439e85[_0xa51c('0x2b')])));}return!![];});}function handleError(_0x5eb4e7,_0x5089f8,_0x476de6){return _0x5eb4e7[_0xa51c('0x2f')](_0x5089f8||0x1f4)[_0xa51c('0x30')]({'message':_0x476de6?_0x476de6['message']||_0x476de6:''});}function checkPasswordPattern(_0x3fc9a7,_0x543247,_0xd9a525){if(_0xd9a525){var _0x4ea1bb=new RegExp(/(?=.*[a-z])(?=.*[A-Z])(?=.*[0-9])(?=.*[?!@#\$%\^&\*~\-_=+[{\]\}])(?=.{8,})/);if(_0x4ea1bb['test'](_0x543247)){return _0x3fc9a7;}else{throw new Error(_0xa51c('0x31'));}}else{return _0x3fc9a7;}}exports[_0xa51c('0x32')]=function(_0x88bde0,_0x2ba87b,_0x894919){passport[_0xa51c('0x14')](_0xa51c('0x33'),function(_0x5a4d94,_0x4d0a47,_0x34c510){var _0xba8784=_0x5a4d94||_0x34c510;if(_0xba8784){return handleError(_0x2ba87b,0x191,_0xba8784);}if(!_0x4d0a47){return handleError(_0x2ba87b,0x194,{'message':_0xa51c('0x34')});}else{var _0x243335={'payload':{'id':_0x4d0a47['id'],'role':_0x4d0a47[_0xa51c('0xe')]},'options':{'expiresIn':0x15180}};return authService[_0xa51c('0x35')](_0x243335)[_0xa51c('0xb')](function(_0x3a82fb){_0x2ba87b['json']({'id':_0x4d0a47['id'],'token':_0x3a82fb,'statusCall':'','isAlreadyLogged':_0x4d0a47[_0xa51c('0x36')]});});}})(_0x88bde0,_0x2ba87b,_0x894919);};exports[_0xa51c('0x37')]=function(_0x4ecd5f,_0x405eb1,_0x16e541){if(!_0x4ecd5f[_0xa51c('0x38')][_0xa51c('0x1d')]){return handleError(_0x405eb1,0x1f4,{'message':_0xa51c('0x39')});}var _0x3d0153=rs[_0xa51c('0x3a')]();_0x4ecd5f[_0xa51c('0x38')][_0xa51c('0x1d')]=_0x4ecd5f[_0xa51c('0x38')][_0xa51c('0x1d')]['trim']()[_0xa51c('0x3b')]();var _0x3bd79b;return db[_0xa51c('0xa')][_0xa51c('0x3c')]({'where':{'id':0x1},'attributes':[_0xa51c('0x1a'),_0xa51c('0x16')],'raw':!![]})[_0xa51c('0xb')](function(_0x60aa07){_0x3bd79b=_0x60aa07;return db[_0xa51c('0x3d')]['find']({'where':{'email':_0x4ecd5f['body']['email']}});})[_0xa51c('0xb')](function(_0x45caad){if(!_0x45caad){throw new Error(_0xa51c('0x3e'));}if(_0x45caad['disabled']){throw new Error(_0xa51c('0x3f'));}if(_0x45caad[_0xa51c('0x40')]){if(moment(_0x45caad[_0xa51c('0xf')])[_0xa51c('0x41')](_0x3bd79b['blockDuration'],'minutes')>moment()){throw new Error(_0xa51c('0x42'));}else{_0x45caad[_0xa51c('0x40')]=![];_0x45caad[_0xa51c('0xf')]=null;}}_0x45caad[_0xa51c('0x43')]=_0x3d0153;_0x45caad[_0xa51c('0x44')]=Date[_0xa51c('0x45')]()+0x36ee80;return _0x45caad[_0xa51c('0x46')]();})[_0xa51c('0xb')](function(){return sendServiceMail({'to':_0x4ecd5f['body']['email'],'subject':'xCally\x20Motion\x20Password\x20Reset','text':_0xa51c('0x47')+_0xa51c('0x48')+_0xa51c('0x49')+_0x4ecd5f[_0xa51c('0x4a')][_0xa51c('0x21')]+_0xa51c('0x4b')+_0x3d0153+'\x0a\x0a'+'If\x20you\x20did\x20not\x20request\x20this,\x20please\x20ignore\x20this\x20email\x20and\x20your\x20password\x20will\x20remain\x20unchanged.\x0a'});})[_0xa51c('0xb')](function(){_0x405eb1[_0xa51c('0x2f')](0xc8)[_0xa51c('0x30')]({'message':_0xa51c('0x4c')});})[_0xa51c('0x4d')](function(_0x16c7b6){return handleError(_0x405eb1,0x1f4,_0x16c7b6);});};exports['reset']=function(_0x5345db,_0x1d3dee,_0x4b34ee){var _0x3ae899;return db[_0xa51c('0x3d')]['find']({'where':{'resetPasswordToken':_0x5345db[_0xa51c('0x4e')]['token'],'resetPasswordExpires':{'$gt':Date[_0xa51c('0x45')]()}}})[_0xa51c('0xb')](function(_0x3a7ec9){_0x3ae899=_0x3a7ec9;if(!_0x3ae899){throw new Error(_0xa51c('0x4f'));}return db[_0xa51c('0xa')][_0xa51c('0x3c')]({'attributes':['id',_0xa51c('0x50')]});})[_0xa51c('0xb')](function(_0x2cdee9){return checkPasswordPattern(_0x2cdee9,_0x5345db[_0xa51c('0x38')][_0xa51c('0x51')],_0x2cdee9[_0xa51c('0x50')]);})[_0xa51c('0xb')](function(){_0x3ae899['password']=_0x5345db[_0xa51c('0x38')][_0xa51c('0x51')];_0x3ae899['resetPasswordToken']=null;_0x3ae899['resetPasswordExpires']=null;return _0x3ae899[_0xa51c('0x46')]();})[_0xa51c('0xb')](function(){_0x1d3dee[_0xa51c('0x2f')](0xc8)['send']({'message':_0xa51c('0x52')});})[_0xa51c('0x4d')](function(_0x17eea0){return handleError(_0x1d3dee,0x1f4,_0x17eea0);});};passport[_0xa51c('0x53')](new LocalStrategy({'usernameField':_0xa51c('0xc'),'passwordField':_0xa51c('0x51')},function(_0x1c403e,_0x4a0bf3,_0x1e8d7){return localAuthenticate(db[_0xa51c('0x3d')],_0x1c403e,_0x4a0bf3,_0x1e8d7);}));