5ef446d95b26b81effd49f434818a854ff38ad66
[motion2.git] / server / components / auth / service.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0xa9fc=['catch','headers','authorization','startsWith','User','find','pass','Wrong\x20credentials.','user','Bearer','Unknown\x20authorization\x20format','query','apikey','getUuid','Setting','findOne','blockDuration','apiKeyNonce','nonce','API\x20access\x20key\x20is\x20not\x20valid\x20anymore','disabled','Invalid\x20API\x20access\x20key','blocked','blockedAt','add','minutes','User\x20object\x20not\x20found.','canUpdate','getLicense','update','Forbidden','isMiddleware','signToken','setTokenCookie','It\x20looks\x20like\x20you\x20aren\x27t\x20logged\x20in,\x20please\x20try\x20again.','cookie','redirect','/dashboards/general','isNil','apiKeyIat','generateApiKey','regenerateApiKey','Please\x20use\x20the\x20previous\x20API\x20access\x20key\x20to\x20generate\x20a\x20new\x20one','validatePasswordPattern','Sequelize','ValidationError','The\x20password\x20must\x20be\x20at\x20least\x208\x20characters\x20long\x20and\x20have\x201\x20lowercase\x20character,\x201\x20uppercase\x20character,\x201\x20number\x20and\x201\x20special\x20character\x20~!@#$%^&-_=+[{]}.','validatePasswordHistory','decryptString','split','toLowerCase','The\x20password\x20must\x20be\x20different\x20from\x20the\x20previous\x20%d\x20passwords.\x20Please\x20choose\x20another\x20one.','The\x20password\x20must\x20be\x20different\x20from\x20the\x20last\x20one.\x20Please\x20choose\x20another\x20one.','updatePasswordsHistory','length','splice','unshift','encryptString','join','promisify','secret','payload','options','secrets','toString','hex','now','../../mysqldb','../../config/environment','../../config/license/hardware','../../config/license/util','../encryptor','jsonwebtoken','composable-middleware','basic-auth','moment','session','role','fullname','name','internal','email','userpic','permissions','voicePause','chatPause','mailPause','faxPause','openchannelPause','pauseType','lastLoginAt','lastPauseAt','crudPermissions','allowmessenger','passwordResetAt','alias','phoneBarAutoAnswer','phoneBarAutoAnswerDelay','phoneBarDnd','phoneBarEnableRecording','phoneBarExpires','phoneBarRemoteControlPort','hotdesk','userProfileId','settingsEnabled','isAuthenticated','use','ChatInteraction','params','closed','disposition','then','status','unmanaged','json','Forbidden.'];(function(_0x3d8bff,_0x1c7272){var _0x50ddf6=function(_0x176ebe){while(--_0x176ebe){_0x3d8bff['push'](_0x3d8bff['shift']());}};_0x50ddf6(++_0x1c7272);}(_0xa9fc,0x19f));var _0xca9f=function(_0xd09668,_0x1435b2){_0xd09668=_0xd09668-0x0;var _0x68726=_0xa9fc[_0xd09668];return _0x68726;};'use strict';var db=require(_0xca9f('0x0'))['db'];var config=require(_0xca9f('0x1'));var hardwareConf=require(_0xca9f('0x2'));var licenseUtil=require(_0xca9f('0x3'));var encryptor=require(_0xca9f('0x4'));var _=require('lodash');var jwt=require(_0xca9f('0x5'));var expressJwt=require('express-jwt');var compose=require(_0xca9f('0x6'));var basicAuth=require(_0xca9f('0x7'));var crypto=require('crypto');var BPromise=require('bluebird');var util=require('util');var moment=require(_0xca9f('0x8'));var validateJwt=expressJwt({'secret':config['secrets'][_0xca9f('0x9')]});var userAttributes=['id',_0xca9f('0xa'),_0xca9f('0xb'),_0xca9f('0xc'),_0xca9f('0xd'),_0xca9f('0xe'),_0xca9f('0xf'),_0xca9f('0x10'),'md5secret',_0xca9f('0x11'),_0xca9f('0x12'),_0xca9f('0x13'),_0xca9f('0x14'),'smsPause',_0xca9f('0x15'),_0xca9f('0x16'),'showWebBar',_0xca9f('0x17'),_0xca9f('0x18'),_0xca9f('0x19'),_0xca9f('0x1a'),_0xca9f('0x1b'),_0xca9f('0x1c'),_0xca9f('0x1d'),_0xca9f('0x1e'),_0xca9f('0x1f'),_0xca9f('0x20'),'phoneBarEnableDtmfTone','phoneBarEnableSettings',_0xca9f('0x21'),'phoneBarPrefixRequired','phoneBarRemoteControl',_0xca9f('0x22'),_0xca9f('0x23'),'interface',_0xca9f('0x24'),'privacyEnabled',_0xca9f('0x25')];exports['isChatInteractionAuthorized']=function(){return this[_0xca9f('0x26')](!![])[_0xca9f('0x27')](function(_0x1543aa,_0x83aa2b,_0x25008f){if(_0x1543aa['user']){_0x25008f();}else{return db[_0xca9f('0x28')]['findOne']({'where':{'id':_0x1543aa[_0xca9f('0x29')]['id']},'attributes':['id',_0xca9f('0x2a'),_0xca9f('0x2b')],'raw':!![]})[_0xca9f('0x2c')](function(_0x132663){if(_0x132663&&_0x132663['closed']){return _0x83aa2b[_0xca9f('0x2d')](_0x132663[_0xca9f('0x2b')]===_0xca9f('0x2e')?0x195:0x193)[_0xca9f('0x2f')]({'message':_0x132663[_0xca9f('0x2b')]==='unmanaged'?'Unmanaged.':_0xca9f('0x30')});}else{_0x25008f();}})[_0xca9f('0x31')](function(_0x162328){_0x25008f(_0x162328);});}});};exports[_0xca9f('0x26')]=function isAuthenticated(_0x319b3b){return compose()['use'](function(_0x40ef71,_0x1f7939,_0x46a0e8){var _0x4d64eb;if(_0x40ef71[_0xca9f('0x32')][_0xca9f('0x33')]){if(_[_0xca9f('0x34')](_0x40ef71[_0xca9f('0x32')][_0xca9f('0x33')],'Basic')){var _0xa5f9bc=basicAuth(_0x40ef71);db[_0xca9f('0x35')][_0xca9f('0x36')]({'where':{'name':_0xa5f9bc[_0xca9f('0xc')]}})[_0xca9f('0x2c')](function(_0x5c8aa0){if(!_0x5c8aa0||!_0x5c8aa0['authenticate'](_0xa5f9bc[_0xca9f('0x37')])){return _0x1f7939['status'](0x191)[_0xca9f('0x2f')]({'message':_0xca9f('0x38')});}_0x40ef71[_0xca9f('0x39')]={'id':_0x5c8aa0['id']};_0x46a0e8();})[_0xca9f('0x31')](function(_0x5a270a){_0x46a0e8(_0x5a270a);});}else if(_['startsWith'](_0x40ef71[_0xca9f('0x32')]['authorization'],_0xca9f('0x3a'))){validateJwt(_0x40ef71,_0x1f7939,_0x46a0e8);}else{if(_0x319b3b){_0x46a0e8();}else{return _0x1f7939['status'](0x193)[_0xca9f('0x2f')]({'message':_0xca9f('0x3b')});}}}else if(_0x40ef71[_0xca9f('0x3c')][_0xca9f('0x3d')]){try{var _0x282dc4={'audience':hardwareConf[_0xca9f('0x3e')](),'issuer':hardwareConf['getUuid']()};verifyJwt(_0x40ef71['query'][_0xca9f('0x3d')],_0x282dc4)['then'](function(_0x2b0176){return db[_0xca9f('0x35')][_0xca9f('0x36')]({'where':{'id':_0x2b0176['sub']}})['then'](function(_0x42b113){_0x4d64eb=_0x42b113;return db[_0xca9f('0x3f')][_0xca9f('0x40')]({'where':{'id':0x1},'attributes':['allowedLoginAttempts',_0xca9f('0x41')],'raw':!![]});})[_0xca9f('0x2c')](function(_0x566150){if(!_0x4d64eb||!_['isEqual'](_0x4d64eb[_0xca9f('0x42')],_0x2b0176[_0xca9f('0x43')])){return _0x1f7939[_0xca9f('0x2d')](0x191)[_0xca9f('0x2f')]({'message':_0xca9f('0x44')});}if(_0x4d64eb[_0xca9f('0x45')]){return _0x1f7939[_0xca9f('0x2d')](0x191)[_0xca9f('0x2f')]({'message':_0xca9f('0x46')});}if(_0x4d64eb[_0xca9f('0x47')]){if(_0x566150[_0xca9f('0x41')]>0x0){if(moment(_0x4d64eb[_0xca9f('0x48')])[_0xca9f('0x49')](_0x566150['blockDuration'],_0xca9f('0x4a'))>moment()){return _0x1f7939['status'](0x191)[_0xca9f('0x2f')]({'message':_0xca9f('0x46')});}}else{return _0x1f7939['status'](0x191)[_0xca9f('0x2f')]({'message':_0xca9f('0x46')});}}_0x40ef71[_0xca9f('0x39')]={'id':_0x4d64eb['id']};_0x46a0e8();});})[_0xca9f('0x31')](function(){return _0x1f7939[_0xca9f('0x2d')](0x191)['json']({'message':'Invalid\x20API\x20access\x20key'});});}catch(_0x4b5da3){_0x46a0e8(_0x4b5da3);}}else if(_0x319b3b){_0x46a0e8();}else{return _0x1f7939[_0xca9f('0x2d')](0x193)[_0xca9f('0x2f')]({'message':_0xca9f('0x3b')});}})['use'](function(_0x3a759a,_0x63edfe,_0x55ad0b){if(_0x3a759a[_0xca9f('0x39')]){db[_0xca9f('0x35')]['find']({'where':{'id':_0x3a759a[_0xca9f('0x39')]['id']},'attributes':userAttributes})[_0xca9f('0x2c')](function(_0x397d4a){if(!_0x397d4a){return _0x63edfe[_0xca9f('0x2d')](0x194)[_0xca9f('0x2f')]({'message':'User\x20not\x20found.'});}_0x3a759a[_0xca9f('0x39')]=_0x397d4a;_0x55ad0b();})[_0xca9f('0x31')](function(_0x5cfebe){_0x55ad0b(_0x5cfebe);});}else if(_0x319b3b){_0x55ad0b();}else{return _0x63edfe[_0xca9f('0x2d')](0x194)[_0xca9f('0x2f')]({'message':_0xca9f('0x4b')});}});};exports[_0xca9f('0x4c')]=function canUpdate(){return compose()[_0xca9f('0x27')](function(_0x40ae9a,_0x199bb9,_0x6284a1){return licenseUtil[_0xca9f('0x4d')]()[_0xca9f('0x2c')](function(_0x2bc911){if(_0x2bc911[_0xca9f('0x4e')]){_0x6284a1();}else{return _0x199bb9['status'](0x193)[_0xca9f('0x2f')]({'message':_0xca9f('0x4f')});}})[_0xca9f('0x31')](function(_0x2e2bd2){_0x6284a1(_0x2e2bd2);});});};exports[_0xca9f('0x50')]=function(_0x5233b6,_0x4b36cb,_0x470ad6){_0x5233b6['isMiddleware']=!![];return _0x470ad6();};exports[_0xca9f('0x51')]=function signToken(_0x3d2f61){return signJwt(_0x3d2f61);};exports[_0xca9f('0x52')]=function(_0x33cba8,_0x39ec0f){if(!_0x33cba8[_0xca9f('0x39')]){return _0x39ec0f['status'](0x194)[_0xca9f('0x2f')]({'message':_0xca9f('0x53')});}var _0x4c73a6={'payload':{'id':_0x33cba8[_0xca9f('0x39')]['id'],'role':_0x33cba8[_0xca9f('0x39')][_0xca9f('0xa')]},'options':{'expiresIn':0x15180}};return signJwt(_0x4c73a6)[_0xca9f('0x2c')](function(_0x5b0942){_0x39ec0f[_0xca9f('0x54')]('motion.token',_0x5b0942);_0x39ec0f[_0xca9f('0x55')](_0xca9f('0x56'));})[_0xca9f('0x31')](function(_0x449e00){return _0x39ec0f['status'](0x1f4)['send'](_0x449e00);});};exports['retrieveApiKey']=function(_0x1450f1){if(_[_0xca9f('0x57')](_0x1450f1[_0xca9f('0x42')])||_[_0xca9f('0x57')](_0x1450f1[_0xca9f('0x58')])){return null;}else{return createJwt(_0x1450f1);}};exports[_0xca9f('0x59')]=function(_0x656430){_0x656430[_0xca9f('0x42')]=generateNonce();_0x656430[_0xca9f('0x58')]=generateIssuedAt();return createJwt(_0x656430);};exports[_0xca9f('0x5a')]=function(_0x4dfa6d,_0x43782c){var _0x573abe=_0x4dfa6d[_0xca9f('0x3c')][_0xca9f('0x3d')];if(_0x573abe){var _0x4eb702={'nonce':_0x43782c[_0xca9f('0x42')],'iat':_0x43782c[_0xca9f('0x58')],'audience':hardwareConf[_0xca9f('0x3e')](),'issuer':hardwareConf[_0xca9f('0x3e')]()};return verifyJwt(_0x573abe,_0x4eb702)[_0xca9f('0x2c')](function(){return generateApiKey(_0x43782c);});}else{throw{'message':_0xca9f('0x5b')};}};exports[_0xca9f('0x5c')]=function(_0x20310f){var _0x599e2d=new RegExp(/(?=.*[a-z])(?=.*[A-Z])(?=.*[0-9])(?=.*[?!@#\$%\^&\*~\-_=+[{\]\}])(?=.{8,})/);if(!_0x599e2d['test'](_0x20310f))throw new db[(_0xca9f('0x5d'))][(_0xca9f('0x5e'))](_0xca9f('0x5f'));return;};exports[_0xca9f('0x60')]=function(_0x18acdc,_0x14ba2c,_0x588d0d){var _0x58fb7f=encryptor[_0xca9f('0x61')](_0x14ba2c)[_0xca9f('0x62')](',');for(var _0x499930=0x0;_0x499930<_0x588d0d;_0x499930++){if(!_0x58fb7f[_0x499930])break;if(_0x18acdc[_0xca9f('0x63')]()===_0x58fb7f[_0x499930][_0xca9f('0x63')]()){var _0x595ba2=util['format'](_0xca9f('0x64'),_0x588d0d);if(_0x588d0d===0x1){_0x595ba2=_0xca9f('0x65');}throw new db[(_0xca9f('0x5d'))][(_0xca9f('0x5e'))](_0x595ba2);}}return;};exports[_0xca9f('0x66')]=function(_0x24cebd,_0x3f9b32){var _0x1e9583=_0x3f9b32?encryptor[_0xca9f('0x61')](_0x3f9b32)[_0xca9f('0x62')](','):[];if(_0x1e9583[_0xca9f('0x67')]===0x5){_0x1e9583[_0xca9f('0x68')](-0x1,0x1);}_0x1e9583[_0xca9f('0x69')](_0x24cebd);return encryptor[_0xca9f('0x6a')](_0x1e9583[_0xca9f('0x6b')](','));};function signJwt(_0x3cb4d3){var _0x35f4b8=BPromise[_0xca9f('0x6c')](jwt['sign'],{'context':jwt});var _0x3ad946=_0x3cb4d3[_0xca9f('0x6d')]||config['secrets']['session'];return new BPromise(function(_0x5ac9ed,_0x36512d){_0x35f4b8(_0x3cb4d3[_0xca9f('0x6e')],_0x3ad946,_0x3cb4d3[_0xca9f('0x6f')])[_0xca9f('0x2c')](function(_0x3ac8f1){_0x5ac9ed(_0x3ac8f1);})[_0xca9f('0x31')](function(_0x430789){_0x36512d(_0x430789);});});}function verifyJwt(_0xf769a8,_0x19282a,_0x581879){var _0x470f14=BPromise['promisify'](jwt['verify'],{'context':jwt});var _0x4f994c=_0x581879||config[_0xca9f('0x70')][_0xca9f('0x9')];return new BPromise(function(_0x2d7991,_0x4d700c){_0x470f14(_0xf769a8,_0x4f994c,_0x19282a)['then'](function(_0x698ed8){_0x2d7991(_0x698ed8);})[_0xca9f('0x31')](function(_0x5d1638){_0x4d700c(_0x5d1638);});});}function generateNonce(){return crypto['randomBytes'](0x10)[_0xca9f('0x71')](_0xca9f('0x72'));}function generateIssuedAt(){return Math['floor'](Date[_0xca9f('0x73')]()/0x3e8)[_0xca9f('0x71')]();}function createJwt(_0x5a9fb3){var _0x517eda={'payload':{'iat':_0x5a9fb3[_0xca9f('0x58')],'nonce':_0x5a9fb3[_0xca9f('0x42')]},'options':{'algorithm':'HS512','subject':_0x5a9fb3['id'][_0xca9f('0x71')](),'issuer':hardwareConf['getUuid'](),'audience':hardwareConf['getUuid']()}};return signJwt(_0x517eda)[_0xca9f('0x2c')](function(_0x5ee08b){return{'iat':_0x5a9fb3['apiKeyIat'],'nonce':_0x5a9fb3[_0xca9f('0x42')],'token':_0x5ee08b};});}