Built motion from commit d9028345.|2.5.43
[motion2.git] / server / components / auth / service.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x9f6a=['smsPause','openchannelPause','showWebBar','lastPauseAt','crudPermissions','allowmessenger','passwordResetAt','alias','phoneBarAutoAnswerDelay','phoneBarDnd','phoneBarEnableDtmfTone','phoneBarEnableSettings','phoneBarPrefixRequired','phoneBarRemoteControl','hotdesk','interface','userProfileId','settingsEnabled','downloadVoiceRecordings','downloadAttachments','ignorePauseForPreviewCalls','selectRecallMeCampaign','isChatInteractionAuthorized','isAuthenticated','user','params','closed','disposition','then','status','json','unmanaged','Unmanaged.','catch','use','headers','startsWith','authorization','Basic','User','find','authenticate','pass','Wrong\x20credentials.','getUuid','query','apikey','Setting','isEqual','apiKeyNonce','nonce','API\x20access\x20key\x20is\x20not\x20valid\x20anymore','disabled','blocked','blockedAt','minutes','Invalid\x20API\x20access\x20key','Unknown\x20authorization\x20format','User\x20not\x20found.','User\x20object\x20not\x20found.','canUpdate','getLicense','update','Forbidden','webrtc','isMiddleware','signToken','setTokenCookie','It\x20looks\x20like\x20you\x20aren\x27t\x20logged\x20in,\x20please\x20try\x20again.','cookie','motion.token','retrieveApiKey','apiKeyIat','generateApiKey','regenerateApiKey','Please\x20use\x20the\x20previous\x20API\x20access\x20key\x20to\x20generate\x20a\x20new\x20one','validatePasswordPattern','Sequelize','ValidationError','The\x20password\x20must\x20be\x20at\x20least\x208\x20characters\x20long\x20and\x20have\x201\x20lowercase\x20character,\x201\x20uppercase\x20character,\x201\x20number\x20and\x201\x20special\x20character\x20~!@#$%^&-_=+[{]}.','decryptString','split','toLowerCase','format','The\x20password\x20must\x20be\x20different\x20from\x20the\x20last\x20one.\x20Please\x20choose\x20another\x20one.','updatePasswordsHistory','splice','unshift','encryptString','join','promisify','secret','options','randomBytes','toString','hex','floor','HS512','../../mysqldb','../../config/license/hardware','lodash','jsonwebtoken','basic-auth','crypto','util','moment','secrets','session','role','fullname','name','email','userpic','md5secret','chatPause','mailPause','faxPause'];(function(_0x446a30,_0x54a32e){var _0x44f7ad=function(_0xfff09b){while(--_0xfff09b){_0x446a30['push'](_0x446a30['shift']());}};_0x44f7ad(++_0x54a32e);}(_0x9f6a,0x14c));var _0xa9f6=function(_0x3dbd6d,_0x3ee9d7){_0x3dbd6d=_0x3dbd6d-0x0;var _0x1216f1=_0x9f6a[_0x3dbd6d];return _0x1216f1;};'use strict';var db=require(_0xa9f6('0x0'))['db'];var config=require('../../config/environment');var hardwareConf=require(_0xa9f6('0x1'));var licenseUtil=require('../../config/license/util');var encryptor=require('../encryptor');var _=require(_0xa9f6('0x2'));var jwt=require(_0xa9f6('0x3'));var expressJwt=require('express-jwt');var compose=require('composable-middleware');var basicAuth=require(_0xa9f6('0x4'));var crypto=require(_0xa9f6('0x5'));var BPromise=require('bluebird');var util=require(_0xa9f6('0x6'));var moment=require(_0xa9f6('0x7'));var validateJwt=expressJwt({'secret':config[_0xa9f6('0x8')][_0xa9f6('0x9')]});var userAttributes=['id',_0xa9f6('0xa'),_0xa9f6('0xb'),_0xa9f6('0xc'),'internal',_0xa9f6('0xd'),_0xa9f6('0xe'),'permissions',_0xa9f6('0xf'),'voicePause',_0xa9f6('0x10'),_0xa9f6('0x11'),_0xa9f6('0x12'),_0xa9f6('0x13'),_0xa9f6('0x14'),'pauseType',_0xa9f6('0x15'),'lastLoginAt',_0xa9f6('0x16'),_0xa9f6('0x17'),_0xa9f6('0x18'),_0xa9f6('0x19'),_0xa9f6('0x1a'),'phoneBarAutoAnswer',_0xa9f6('0x1b'),_0xa9f6('0x1c'),'phoneBarEnableRecording',_0xa9f6('0x1d'),_0xa9f6('0x1e'),'phoneBarExpires',_0xa9f6('0x1f'),_0xa9f6('0x20'),'phoneBarRemoteControlPort',_0xa9f6('0x21'),_0xa9f6('0x22'),_0xa9f6('0x23'),'privacyEnabled',_0xa9f6('0x24'),'wssPort',_0xa9f6('0x25'),'downloadOmnichannelInteractions',_0xa9f6('0x26'),_0xa9f6('0x27'),_0xa9f6('0x28')];exports[_0xa9f6('0x29')]=function(){return this[_0xa9f6('0x2a')](!![])['use'](function(_0x39f2f1,_0x137eae,_0x474256){if(_0x39f2f1[_0xa9f6('0x2b')]){_0x474256();}else{return db['ChatInteraction']['findOne']({'where':{'id':_0x39f2f1[_0xa9f6('0x2c')]['id']},'attributes':['id',_0xa9f6('0x2d'),_0xa9f6('0x2e')],'raw':!![]})[_0xa9f6('0x2f')](function(_0x3e7e99){if(_0x3e7e99&&_0x3e7e99[_0xa9f6('0x2d')]){return _0x137eae[_0xa9f6('0x30')](_0x3e7e99['disposition']==='unmanaged'?0x195:0x193)[_0xa9f6('0x31')]({'message':_0x3e7e99[_0xa9f6('0x2e')]===_0xa9f6('0x32')?_0xa9f6('0x33'):'Forbidden.'});}else{_0x474256();}})[_0xa9f6('0x34')](function(_0x2b2f7c){_0x474256(_0x2b2f7c);});}});};exports[_0xa9f6('0x2a')]=function isAuthenticated(_0x11baaf){return compose()[_0xa9f6('0x35')](function(_0x73655d,_0x2e06a5,_0x41f3fa){var _0x1fba01;if(_0x73655d[_0xa9f6('0x36')]['authorization']){if(_[_0xa9f6('0x37')](_0x73655d[_0xa9f6('0x36')][_0xa9f6('0x38')],_0xa9f6('0x39'))){var _0x5352ab=basicAuth(_0x73655d);db[_0xa9f6('0x3a')][_0xa9f6('0x3b')]({'where':{'name':_0x5352ab[_0xa9f6('0xc')]}})[_0xa9f6('0x2f')](function(_0x3ce3cd){if(!_0x3ce3cd||!_0x3ce3cd[_0xa9f6('0x3c')](_0x5352ab[_0xa9f6('0x3d')])){return _0x2e06a5[_0xa9f6('0x30')](0x191)[_0xa9f6('0x31')]({'message':_0xa9f6('0x3e')});}_0x73655d['user']={'id':_0x3ce3cd['id']};_0x41f3fa();})[_0xa9f6('0x34')](function(_0x33c3fe){_0x41f3fa(_0x33c3fe);});}else if(_['startsWith'](_0x73655d[_0xa9f6('0x36')][_0xa9f6('0x38')],'Bearer')){validateJwt(_0x73655d,_0x2e06a5,_0x41f3fa);}else{if(_0x11baaf){_0x41f3fa();}else{return _0x2e06a5[_0xa9f6('0x30')](0x193)['json']({'message':'Unknown\x20authorization\x20format'});}}}else if(_0x73655d['query']['apikey']){try{var _0x405555={'audience':hardwareConf[_0xa9f6('0x3f')](),'issuer':hardwareConf[_0xa9f6('0x3f')]()};verifyJwt(_0x73655d[_0xa9f6('0x40')][_0xa9f6('0x41')],_0x405555)['then'](function(_0x2eaee2){return db['User'][_0xa9f6('0x3b')]({'where':{'id':_0x2eaee2['sub']}})['then'](function(_0x307108){_0x1fba01=_0x307108;return db[_0xa9f6('0x42')]['findOne']({'where':{'id':0x1},'attributes':['allowedLoginAttempts','blockDuration'],'raw':!![]});})[_0xa9f6('0x2f')](function(_0x1eb05f){if(!_0x1fba01||!_[_0xa9f6('0x43')](_0x1fba01[_0xa9f6('0x44')],_0x2eaee2[_0xa9f6('0x45')])){return _0x2e06a5[_0xa9f6('0x30')](0x191)[_0xa9f6('0x31')]({'message':_0xa9f6('0x46')});}if(_0x1fba01[_0xa9f6('0x47')]){return _0x2e06a5[_0xa9f6('0x30')](0x191)[_0xa9f6('0x31')]({'message':'Invalid\x20API\x20access\x20key'});}if(_0x1fba01[_0xa9f6('0x48')]){if(_0x1eb05f['blockDuration']>0x0){if(moment(_0x1fba01[_0xa9f6('0x49')])['add'](_0x1eb05f['blockDuration'],_0xa9f6('0x4a'))>moment()){return _0x2e06a5[_0xa9f6('0x30')](0x191)[_0xa9f6('0x31')]({'message':_0xa9f6('0x4b')});}}else{return _0x2e06a5[_0xa9f6('0x30')](0x191)['json']({'message':_0xa9f6('0x4b')});}}_0x73655d[_0xa9f6('0x2b')]={'id':_0x1fba01['id']};_0x41f3fa();});})[_0xa9f6('0x34')](function(){return _0x2e06a5['status'](0x191)[_0xa9f6('0x31')]({'message':'Invalid\x20API\x20access\x20key'});});}catch(_0x3d596e){_0x41f3fa(_0x3d596e);}}else if(_0x11baaf){_0x41f3fa();}else{return _0x2e06a5[_0xa9f6('0x30')](0x193)[_0xa9f6('0x31')]({'message':_0xa9f6('0x4c')});}})['use'](function(_0x3755cf,_0x4860ec,_0x5bbc49){if(_0x3755cf['user']){db['User'][_0xa9f6('0x3b')]({'where':{'id':_0x3755cf[_0xa9f6('0x2b')]['id']},'attributes':userAttributes})['then'](function(_0x58810a){if(!_0x58810a){return _0x4860ec['status'](0x194)[_0xa9f6('0x31')]({'message':_0xa9f6('0x4d')});}_0x3755cf[_0xa9f6('0x2b')]=_0x58810a;_0x5bbc49();})[_0xa9f6('0x34')](function(_0x8d0af4){_0x5bbc49(_0x8d0af4);});}else if(_0x11baaf){_0x5bbc49();}else{return _0x4860ec[_0xa9f6('0x30')](0x194)[_0xa9f6('0x31')]({'message':_0xa9f6('0x4e')});}});};exports[_0xa9f6('0x4f')]=function canUpdate(){return compose()[_0xa9f6('0x35')](function(_0x5731ae,_0x77e9d4,_0x15f7c8){return licenseUtil[_0xa9f6('0x50')]()[_0xa9f6('0x2f')](function(_0x59e62a){if(_0x59e62a[_0xa9f6('0x51')]){_0x15f7c8();}else{return _0x77e9d4[_0xa9f6('0x30')](0x193)[_0xa9f6('0x31')]({'message':_0xa9f6('0x52')});}})[_0xa9f6('0x34')](function(_0x15c569){_0x15f7c8(_0x15c569);});});};exports['isWebrtcLicence']=function isWebrtcLicence(){return compose()['use'](function(_0x598551,_0x49bf0e,_0x2c2726){return licenseUtil[_0xa9f6('0x50')]()[_0xa9f6('0x2f')](function(_0x10e3c7){if(_0x10e3c7[_0xa9f6('0x53')]){_0x2c2726();}else{return _0x49bf0e[_0xa9f6('0x30')](0x193)['json']({'message':_0xa9f6('0x52')});}})[_0xa9f6('0x34')](function(_0xda510){_0x2c2726(_0xda510);});});};exports[_0xa9f6('0x54')]=function(_0x3ffb86,_0x1f41ed,_0x3e6f44){_0x3ffb86[_0xa9f6('0x54')]=!![];return _0x3e6f44();};exports[_0xa9f6('0x55')]=function signToken(_0x1efaa5){return signJwt(_0x1efaa5);};exports[_0xa9f6('0x56')]=function(_0x10579e,_0x5067c3){if(!_0x10579e[_0xa9f6('0x2b')]){return _0x5067c3[_0xa9f6('0x30')](0x194)[_0xa9f6('0x31')]({'message':_0xa9f6('0x57')});}var _0x5b3b1f={'payload':{'id':_0x10579e[_0xa9f6('0x2b')]['id'],'role':_0x10579e[_0xa9f6('0x2b')][_0xa9f6('0xa')]},'options':{'expiresIn':0x15180}};return signJwt(_0x5b3b1f)['then'](function(_0xb82e05){_0x5067c3[_0xa9f6('0x58')](_0xa9f6('0x59'),_0xb82e05);_0x5067c3['redirect']('/dashboards/general');})['catch'](function(_0x246d64){return _0x5067c3[_0xa9f6('0x30')](0x1f4)['send'](_0x246d64);});};exports[_0xa9f6('0x5a')]=function(_0x177588){if(_['isNil'](_0x177588[_0xa9f6('0x44')])||_['isNil'](_0x177588[_0xa9f6('0x5b')])){return null;}else{return createJwt(_0x177588);}};exports[_0xa9f6('0x5c')]=function(_0x43816){_0x43816[_0xa9f6('0x44')]=generateNonce();_0x43816['apiKeyIat']=generateIssuedAt();return createJwt(_0x43816);};exports[_0xa9f6('0x5d')]=function(_0x4c9a4d,_0x260109){var _0x38deec=_0x4c9a4d[_0xa9f6('0x40')]['apikey'];if(_0x38deec){var _0x2f2948={'nonce':_0x260109[_0xa9f6('0x44')],'iat':_0x260109[_0xa9f6('0x5b')],'audience':hardwareConf['getUuid'](),'issuer':hardwareConf[_0xa9f6('0x3f')]()};return verifyJwt(_0x38deec,_0x2f2948)[_0xa9f6('0x2f')](function(){return generateApiKey(_0x260109);});}else{throw{'message':_0xa9f6('0x5e')};}};exports[_0xa9f6('0x5f')]=function(_0x27d873){var _0x72c8b8=new RegExp(/(?=.*[a-z])(?=.*[A-Z])(?=.*[0-9])(?=.*[?!@#\$%\^&\*~\-_=+[{\]\}])(?=.{8,})/);if(!_0x72c8b8['test'](_0x27d873))throw new db[(_0xa9f6('0x60'))][(_0xa9f6('0x61'))](_0xa9f6('0x62'));return;};exports['validatePasswordHistory']=function(_0x40bfa8,_0x5c1577,_0x14185f){var _0x6937bd=encryptor[_0xa9f6('0x63')](_0x5c1577)[_0xa9f6('0x64')](',');for(var _0x1de74b=0x0;_0x1de74b<_0x14185f;_0x1de74b++){if(!_0x6937bd[_0x1de74b])break;if(_0x40bfa8[_0xa9f6('0x65')]()===_0x6937bd[_0x1de74b]['toLowerCase']()){var _0x33b9bc=util[_0xa9f6('0x66')]('The\x20password\x20must\x20be\x20different\x20from\x20the\x20previous\x20%d\x20passwords.\x20Please\x20choose\x20another\x20one.',_0x14185f);if(_0x14185f===0x1){_0x33b9bc=_0xa9f6('0x67');}throw new db[(_0xa9f6('0x60'))][(_0xa9f6('0x61'))](_0x33b9bc);}}return;};exports[_0xa9f6('0x68')]=function(_0x516e5c,_0x1effc9){var _0x469494=_0x1effc9?encryptor[_0xa9f6('0x63')](_0x1effc9)[_0xa9f6('0x64')](','):[];if(_0x469494['length']===0x5){_0x469494[_0xa9f6('0x69')](-0x1,0x1);}_0x469494[_0xa9f6('0x6a')](_0x516e5c);return encryptor[_0xa9f6('0x6b')](_0x469494[_0xa9f6('0x6c')](','));};function signJwt(_0x2254bc){var _0x2b8f3f=BPromise[_0xa9f6('0x6d')](jwt['sign'],{'context':jwt});var _0x3a49a7=_0x2254bc[_0xa9f6('0x6e')]||config[_0xa9f6('0x8')][_0xa9f6('0x9')];return new BPromise(function(_0x5cc5b6,_0x50497e){_0x2b8f3f(_0x2254bc['payload'],_0x3a49a7,_0x2254bc[_0xa9f6('0x6f')])[_0xa9f6('0x2f')](function(_0xebed71){_0x5cc5b6(_0xebed71);})['catch'](function(_0x54e8ea){_0x50497e(_0x54e8ea);});});}function verifyJwt(_0x382b92,_0x203c02,_0x2d1c0f){var _0x435874=BPromise[_0xa9f6('0x6d')](jwt['verify'],{'context':jwt});var _0x44d1be=_0x2d1c0f||config[_0xa9f6('0x8')][_0xa9f6('0x9')];return new BPromise(function(_0x34b27e,_0x2a4dde){_0x435874(_0x382b92,_0x44d1be,_0x203c02)[_0xa9f6('0x2f')](function(_0x2812d1){_0x34b27e(_0x2812d1);})[_0xa9f6('0x34')](function(_0x310871){_0x2a4dde(_0x310871);});});}function generateNonce(){return crypto[_0xa9f6('0x70')](0x10)[_0xa9f6('0x71')](_0xa9f6('0x72'));}function generateIssuedAt(){return Math[_0xa9f6('0x73')](Date['now']()/0x3e8)[_0xa9f6('0x71')]();}function createJwt(_0x201596){var _0xeef420={'payload':{'iat':_0x201596[_0xa9f6('0x5b')],'nonce':_0x201596[_0xa9f6('0x44')]},'options':{'algorithm':_0xa9f6('0x74'),'subject':_0x201596['id'][_0xa9f6('0x71')](),'issuer':hardwareConf[_0xa9f6('0x3f')](),'audience':hardwareConf[_0xa9f6('0x3f')]()}};return signJwt(_0xeef420)[_0xa9f6('0x2f')](function(_0x16a9b5){return{'iat':_0x201596[_0xa9f6('0x5b')],'nonce':_0x201596[_0xa9f6('0x44')],'token':_0x16a9b5};});}