Built motion from commit 8c034dcd.|2.6.31
[motion2.git] / server / components / auth / service.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x7d7c=['ignorePauseForPreviewCalls','emailAutoanswer','emailAutoanswerDelay','smsAutoanswer','smsAutoanswerDelay','faxAutoanswerDelay','whatsappAutoanswer','whatsappAutoanswerDelay','messengerSoundNotification','use','user','findOne','disposition','then','closed','query','forceDownload','status','unmanaged','Unmanaged.','Forbidden.','catch','headers','authorization','startsWith','find','authenticate','Wrong\x20credentials.','json','apikey','getUuid','sub','Setting','allowedLoginAttempts','isEqual','apiKeyNonce','nonce','API\x20access\x20key\x20is\x20not\x20valid\x20anymore','Invalid\x20API\x20access\x20key','blocked','blockedAt','blockDuration','minutes','Unknown\x20authorization\x20format','User','User\x20not\x20found.','User\x20object\x20not\x20found.','canUpdate','update','Forbidden','isWebrtcLicence','getLicense','isMiddleware','signToken','setTokenCookie','It\x20looks\x20like\x20you\x20aren\x27t\x20logged\x20in,\x20please\x20try\x20again.','role','cookie','motion.token','redirect','send','retrieveApiKey','isNil','generateApiKey','apiKeyIat','regenerateApiKey','Please\x20use\x20the\x20previous\x20API\x20access\x20key\x20to\x20generate\x20a\x20new\x20one','validatePasswordPattern','Sequelize','decryptString','split','toLowerCase','format','The\x20password\x20must\x20be\x20different\x20from\x20the\x20last\x20one.\x20Please\x20choose\x20another\x20one.','updatePasswordsHistory','length','splice','unshift','encryptString','join','promisify','sign','secret','session','payload','verify','randomBytes','toString','hex','floor','now','HS512','../../config/environment','../../config/license/hardware','lodash','jsonwebtoken','composable-middleware','crypto','util','moment','secrets','fullname','name','internal','email','userpic','permissions','md5secret','voicePause','mailPause','faxPause','openchannelPause','pauseType','showWebBar','lastLoginAt','lastPauseAt','allowmessenger','phoneBarAutoAnswerDelay','phoneBarDnd','phoneBarEnableRecording','phoneBarEnableDtmfTone','phoneBarEnableSettings','phoneBarExpires','phoneBarRemoteControl','interface','userProfileId','privacyEnabled','wssPort','downloadVoiceRecordings','downloadAttachments'];(function(_0x19b2b4,_0x5c4f47){var _0x3070c4=function(_0x42d6e1){while(--_0x42d6e1){_0x19b2b4['push'](_0x19b2b4['shift']());}};_0x3070c4(++_0x5c4f47);}(_0x7d7c,0xde));var _0xc7d7=function(_0x554456,_0x231849){_0x554456=_0x554456-0x0;var _0x3814b2=_0x7d7c[_0x554456];return _0x3814b2;};'use strict';var db=require('../../mysqldb')['db'];var config=require(_0xc7d7('0x0'));var hardwareConf=require(_0xc7d7('0x1'));var licenseUtil=require('../../config/license/util');var encryptor=require('../encryptor');var _=require(_0xc7d7('0x2'));var jwt=require(_0xc7d7('0x3'));var expressJwt=require('express-jwt');var compose=require(_0xc7d7('0x4'));var basicAuth=require('basic-auth');var crypto=require(_0xc7d7('0x5'));var BPromise=require('bluebird');var util=require(_0xc7d7('0x6'));var moment=require(_0xc7d7('0x7'));var validateJwt=expressJwt({'secret':config[_0xc7d7('0x8')]['session']});var userAttributes=['id','role',_0xc7d7('0x9'),_0xc7d7('0xa'),_0xc7d7('0xb'),_0xc7d7('0xc'),_0xc7d7('0xd'),_0xc7d7('0xe'),_0xc7d7('0xf'),_0xc7d7('0x10'),'chatPause',_0xc7d7('0x11'),_0xc7d7('0x12'),'smsPause',_0xc7d7('0x13'),_0xc7d7('0x14'),_0xc7d7('0x15'),_0xc7d7('0x16'),_0xc7d7('0x17'),'crudPermissions',_0xc7d7('0x18'),'passwordResetAt','alias','phoneBarAutoAnswer',_0xc7d7('0x19'),_0xc7d7('0x1a'),_0xc7d7('0x1b'),_0xc7d7('0x1c'),_0xc7d7('0x1d'),_0xc7d7('0x1e'),'phoneBarPrefixRequired',_0xc7d7('0x1f'),'phoneBarRemoteControlPort','hotdesk',_0xc7d7('0x20'),_0xc7d7('0x21'),_0xc7d7('0x22'),'settingsEnabled',_0xc7d7('0x23'),_0xc7d7('0x24'),'downloadOmnichannelInteractions',_0xc7d7('0x25'),_0xc7d7('0x26'),'selectRecallMeCampaign','chatAutoanswer','chatAutoanswerDelay',_0xc7d7('0x27'),_0xc7d7('0x28'),_0xc7d7('0x29'),_0xc7d7('0x2a'),'openchannelAutoanswer','openchannelAutoanswerDelay','faxAutoanswer',_0xc7d7('0x2b'),_0xc7d7('0x2c'),_0xc7d7('0x2d'),_0xc7d7('0x2e')];exports['isChatInteractionAuthorized']=function(){return this['isAuthenticated'](!![])[_0xc7d7('0x2f')](function(_0x205a44,_0xfd1f49,_0x208245){if(_0x205a44[_0xc7d7('0x30')]){_0x208245();}else{return db['ChatInteraction'][_0xc7d7('0x31')]({'where':{'id':_0x205a44['params']['id']},'attributes':['id','closed',_0xc7d7('0x32')],'raw':!![]})[_0xc7d7('0x33')](function(_0x428264){if(_0x428264&&_0x428264[_0xc7d7('0x34')]&&!_0x205a44[_0xc7d7('0x35')][_0xc7d7('0x36')]){return _0xfd1f49[_0xc7d7('0x37')](_0x428264[_0xc7d7('0x32')]===_0xc7d7('0x38')?0x195:0x193)['json']({'message':_0x428264[_0xc7d7('0x32')]==='unmanaged'?_0xc7d7('0x39'):_0xc7d7('0x3a')});}else{_0x208245();}})[_0xc7d7('0x3b')](function(_0x333167){_0x208245(_0x333167);});}});};exports['isAuthenticated']=function isAuthenticated(_0x5406e6){return compose()[_0xc7d7('0x2f')](function(_0x5dd3b0,_0x1fcd36,_0x2afd18){var _0x38b941;if(_0x5dd3b0[_0xc7d7('0x3c')][_0xc7d7('0x3d')]){if(_[_0xc7d7('0x3e')](_0x5dd3b0[_0xc7d7('0x3c')]['authorization'],'Basic')){var _0x23a9a1=basicAuth(_0x5dd3b0);db['User'][_0xc7d7('0x3f')]({'where':{'name':_0x23a9a1['name']}})[_0xc7d7('0x33')](function(_0x3b64b9){if(!_0x3b64b9||!_0x3b64b9[_0xc7d7('0x40')](_0x23a9a1['pass'])){return _0x1fcd36[_0xc7d7('0x37')](0x191)['json']({'message':_0xc7d7('0x41')});}_0x5dd3b0[_0xc7d7('0x30')]={'id':_0x3b64b9['id']};_0x2afd18();})[_0xc7d7('0x3b')](function(_0x535a8b){_0x2afd18(_0x535a8b);});}else if(_[_0xc7d7('0x3e')](_0x5dd3b0[_0xc7d7('0x3c')][_0xc7d7('0x3d')],'Bearer')){validateJwt(_0x5dd3b0,_0x1fcd36,_0x2afd18);}else{if(_0x5406e6){_0x2afd18();}else{return _0x1fcd36[_0xc7d7('0x37')](0x193)[_0xc7d7('0x42')]({'message':'Unknown\x20authorization\x20format'});}}}else if(_0x5dd3b0['query'][_0xc7d7('0x43')]){try{var _0x555256={'audience':hardwareConf[_0xc7d7('0x44')](),'issuer':hardwareConf[_0xc7d7('0x44')]()};verifyJwt(_0x5dd3b0[_0xc7d7('0x35')][_0xc7d7('0x43')],_0x555256)[_0xc7d7('0x33')](function(_0x1549b2){return db['User']['find']({'where':{'id':_0x1549b2[_0xc7d7('0x45')]}})['then'](function(_0x233635){_0x38b941=_0x233635;return db[_0xc7d7('0x46')][_0xc7d7('0x31')]({'where':{'id':0x1},'attributes':[_0xc7d7('0x47'),'blockDuration'],'raw':!![]});})[_0xc7d7('0x33')](function(_0x5d8ac6){if(!_0x38b941||!_[_0xc7d7('0x48')](_0x38b941[_0xc7d7('0x49')],_0x1549b2[_0xc7d7('0x4a')])){return _0x1fcd36[_0xc7d7('0x37')](0x191)[_0xc7d7('0x42')]({'message':_0xc7d7('0x4b')});}if(_0x38b941['disabled']){return _0x1fcd36[_0xc7d7('0x37')](0x191)[_0xc7d7('0x42')]({'message':_0xc7d7('0x4c')});}if(_0x38b941[_0xc7d7('0x4d')]){if(_0x5d8ac6['blockDuration']>0x0){if(moment(_0x38b941[_0xc7d7('0x4e')])['add'](_0x5d8ac6[_0xc7d7('0x4f')],_0xc7d7('0x50'))>moment()){return _0x1fcd36[_0xc7d7('0x37')](0x191)['json']({'message':_0xc7d7('0x4c')});}}else{return _0x1fcd36[_0xc7d7('0x37')](0x191)[_0xc7d7('0x42')]({'message':_0xc7d7('0x4c')});}}_0x5dd3b0['user']={'id':_0x38b941['id']};_0x2afd18();});})[_0xc7d7('0x3b')](function(){return _0x1fcd36['status'](0x191)[_0xc7d7('0x42')]({'message':_0xc7d7('0x4c')});});}catch(_0x34b84c){_0x2afd18(_0x34b84c);}}else if(_0x5406e6){_0x2afd18();}else{return _0x1fcd36[_0xc7d7('0x37')](0x193)[_0xc7d7('0x42')]({'message':_0xc7d7('0x51')});}})[_0xc7d7('0x2f')](function(_0x16f8f4,_0x2ae2d8,_0x191204){if(_0x16f8f4['user']){db[_0xc7d7('0x52')]['find']({'where':{'id':_0x16f8f4['user']['id']},'attributes':userAttributes})[_0xc7d7('0x33')](function(_0x39bedd){if(!_0x39bedd){return _0x2ae2d8[_0xc7d7('0x37')](0x194)[_0xc7d7('0x42')]({'message':_0xc7d7('0x53')});}_0x16f8f4[_0xc7d7('0x30')]=_0x39bedd;_0x191204();})[_0xc7d7('0x3b')](function(_0x27309d){_0x191204(_0x27309d);});}else if(_0x5406e6){_0x191204();}else{return _0x2ae2d8[_0xc7d7('0x37')](0x194)[_0xc7d7('0x42')]({'message':_0xc7d7('0x54')});}});};exports[_0xc7d7('0x55')]=function canUpdate(){return compose()[_0xc7d7('0x2f')](function(_0x41c851,_0x3568c4,_0x3d0361){return licenseUtil['getLicense']()[_0xc7d7('0x33')](function(_0x3c1aa5){if(_0x3c1aa5[_0xc7d7('0x56')]){_0x3d0361();}else{return _0x3568c4[_0xc7d7('0x37')](0x193)['json']({'message':_0xc7d7('0x57')});}})['catch'](function(_0x141546){_0x3d0361(_0x141546);});});};exports[_0xc7d7('0x58')]=function isWebrtcLicence(){return compose()[_0xc7d7('0x2f')](function(_0xcba428,_0x2b3338,_0x5d33c9){return licenseUtil[_0xc7d7('0x59')]()[_0xc7d7('0x33')](function(_0x22b9ab){if(_0x22b9ab['webrtc']){_0x5d33c9();}else{return _0x2b3338['status'](0x193)['json']({'message':_0xc7d7('0x57')});}})[_0xc7d7('0x3b')](function(_0x4c7243){_0x5d33c9(_0x4c7243);});});};exports['isMiddleware']=function(_0x5b3fdb,_0x338801,_0x2df0c7){_0x5b3fdb[_0xc7d7('0x5a')]=!![];return _0x2df0c7();};exports[_0xc7d7('0x5b')]=function signToken(_0x161b07){return signJwt(_0x161b07);};exports[_0xc7d7('0x5c')]=function(_0x1a86a0,_0x5def05){if(!_0x1a86a0['user']){return _0x5def05[_0xc7d7('0x37')](0x194)['json']({'message':_0xc7d7('0x5d')});}var _0x343a88={'payload':{'id':_0x1a86a0[_0xc7d7('0x30')]['id'],'role':_0x1a86a0[_0xc7d7('0x30')][_0xc7d7('0x5e')]},'options':{'expiresIn':0x15180}};return signJwt(_0x343a88)[_0xc7d7('0x33')](function(_0x199fe5){_0x5def05[_0xc7d7('0x5f')](_0xc7d7('0x60'),_0x199fe5);_0x5def05[_0xc7d7('0x61')]('/dashboards/general');})['catch'](function(_0x5448e8){return _0x5def05[_0xc7d7('0x37')](0x1f4)[_0xc7d7('0x62')](_0x5448e8);});};exports[_0xc7d7('0x63')]=function(_0x1c6fb8){if(_[_0xc7d7('0x64')](_0x1c6fb8[_0xc7d7('0x49')])||_[_0xc7d7('0x64')](_0x1c6fb8['apiKeyIat'])){return null;}else{return createJwt(_0x1c6fb8);}};exports[_0xc7d7('0x65')]=function(_0x2af8b9){_0x2af8b9[_0xc7d7('0x49')]=generateNonce();_0x2af8b9[_0xc7d7('0x66')]=generateIssuedAt();return createJwt(_0x2af8b9);};exports[_0xc7d7('0x67')]=function(_0x2a3271,_0x112e0b){var _0x53c244=_0x2a3271[_0xc7d7('0x35')][_0xc7d7('0x43')];if(_0x53c244){var _0x1ac748={'nonce':_0x112e0b['apiKeyNonce'],'iat':_0x112e0b[_0xc7d7('0x66')],'audience':hardwareConf['getUuid'](),'issuer':hardwareConf['getUuid']()};return verifyJwt(_0x53c244,_0x1ac748)[_0xc7d7('0x33')](function(){return generateApiKey(_0x112e0b);});}else{throw{'message':_0xc7d7('0x68')};}};exports[_0xc7d7('0x69')]=function(_0x5ae491){var _0x499d7b=new RegExp(/(?=.*[a-z])(?=.*[A-Z])(?=.*[0-9])(?=.*[?!@#\$%\^&\*~\-_=+[{\]\}])(?=.{8,})/);if(!_0x499d7b['test'](_0x5ae491))throw new db[(_0xc7d7('0x6a'))]['ValidationError']('The\x20password\x20must\x20be\x20at\x20least\x208\x20characters\x20long\x20and\x20have\x201\x20lowercase\x20character,\x201\x20uppercase\x20character,\x201\x20number\x20and\x201\x20special\x20character\x20~!@#$%^&-_=+[{]}.');return;};exports['validatePasswordHistory']=function(_0x5cbf48,_0x5c7759,_0x4c6cc1){var _0x14028e=encryptor[_0xc7d7('0x6b')](_0x5c7759)[_0xc7d7('0x6c')](',');for(var _0x5c780c=0x0;_0x5c780c<_0x4c6cc1;_0x5c780c++){if(!_0x14028e[_0x5c780c])break;if(_0x5cbf48[_0xc7d7('0x6d')]()===_0x14028e[_0x5c780c][_0xc7d7('0x6d')]()){var _0x56dc33=util[_0xc7d7('0x6e')]('The\x20password\x20must\x20be\x20different\x20from\x20the\x20previous\x20%d\x20passwords.\x20Please\x20choose\x20another\x20one.',_0x4c6cc1);if(_0x4c6cc1===0x1){_0x56dc33=_0xc7d7('0x6f');}throw new db['Sequelize']['ValidationError'](_0x56dc33);}}return;};exports[_0xc7d7('0x70')]=function(_0x1d82aa,_0x3cb3ee){var _0x410228=_0x3cb3ee?encryptor[_0xc7d7('0x6b')](_0x3cb3ee)[_0xc7d7('0x6c')](','):[];if(_0x410228[_0xc7d7('0x71')]===0x5){_0x410228[_0xc7d7('0x72')](-0x1,0x1);}_0x410228[_0xc7d7('0x73')](_0x1d82aa);return encryptor[_0xc7d7('0x74')](_0x410228[_0xc7d7('0x75')](','));};function signJwt(_0x2168ce){var _0x40d5df=BPromise[_0xc7d7('0x76')](jwt[_0xc7d7('0x77')],{'context':jwt});var _0x5c18f7=_0x2168ce[_0xc7d7('0x78')]||config[_0xc7d7('0x8')][_0xc7d7('0x79')];return new BPromise(function(_0x130a9f,_0x5ae3d9){_0x40d5df(_0x2168ce[_0xc7d7('0x7a')],_0x5c18f7,_0x2168ce['options'])[_0xc7d7('0x33')](function(_0x1d5362){_0x130a9f(_0x1d5362);})[_0xc7d7('0x3b')](function(_0x27df20){_0x5ae3d9(_0x27df20);});});}function verifyJwt(_0x2b886d,_0x41737f,_0x561d58){var _0x6bd9a3=BPromise[_0xc7d7('0x76')](jwt[_0xc7d7('0x7b')],{'context':jwt});var _0x5f3b4d=_0x561d58||config[_0xc7d7('0x8')][_0xc7d7('0x79')];return new BPromise(function(_0x3fad30,_0x19df1b){_0x6bd9a3(_0x2b886d,_0x5f3b4d,_0x41737f)[_0xc7d7('0x33')](function(_0x1afba5){_0x3fad30(_0x1afba5);})[_0xc7d7('0x3b')](function(_0x2f5397){_0x19df1b(_0x2f5397);});});}function generateNonce(){return crypto[_0xc7d7('0x7c')](0x10)[_0xc7d7('0x7d')](_0xc7d7('0x7e'));}function generateIssuedAt(){return Math[_0xc7d7('0x7f')](Date[_0xc7d7('0x80')]()/0x3e8)[_0xc7d7('0x7d')]();}function createJwt(_0x352f5f){var _0x2a7f6f={'payload':{'iat':_0x352f5f[_0xc7d7('0x66')],'nonce':_0x352f5f[_0xc7d7('0x49')]},'options':{'algorithm':_0xc7d7('0x81'),'subject':_0x352f5f['id'][_0xc7d7('0x7d')](),'issuer':hardwareConf[_0xc7d7('0x44')](),'audience':hardwareConf[_0xc7d7('0x44')]()}};return signJwt(_0x2a7f6f)[_0xc7d7('0x33')](function(_0x3572c5){return{'iat':_0x352f5f['apiKeyIat'],'nonce':_0x352f5f[_0xc7d7('0x49')],'token':_0x3572c5};});}