Built motion from commit a61a4a20.|2.5.46
[motion2.git] / server / components / auth / service.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0xe526=['encryptString','join','promisify','sign','secret','verify','randomBytes','toString','hex','floor','HS512','../../config/environment','../../config/license/hardware','../../config/license/util','../encryptor','lodash','express-jwt','composable-middleware','crypto','util','moment','secrets','session','name','internal','email','userpic','md5secret','voicePause','chatPause','smsPause','openchannelPause','pauseType','showWebBar','lastLoginAt','lastPauseAt','crudPermissions','allowmessenger','alias','phoneBarAutoAnswer','phoneBarDnd','phoneBarEnableRecording','phoneBarEnableSettings','phoneBarExpires','phoneBarRemoteControl','phoneBarRemoteControlPort','hotdesk','interface','userProfileId','privacyEnabled','settingsEnabled','wssPort','downloadVoiceRecordings','downloadOmnichannelInteractions','downloadAttachments','ignorePauseForPreviewCalls','selectRecallMeCampaign','isChatInteractionAuthorized','use','user','params','closed','disposition','status','unmanaged','json','Unmanaged.','Forbidden.','catch','headers','authorization','startsWith','Basic','find','then','authenticate','pass','Wrong\x20credentials.','Unknown\x20authorization\x20format','query','getUuid','apikey','User','sub','findOne','allowedLoginAttempts','blockDuration','isEqual','apiKeyNonce','API\x20access\x20key\x20is\x20not\x20valid\x20anymore','disabled','blocked','blockedAt','add','minutes','Invalid\x20API\x20access\x20key','User\x20not\x20found.','User\x20object\x20not\x20found.','canUpdate','getLicense','Forbidden','webrtc','isMiddleware','signToken','setTokenCookie','It\x20looks\x20like\x20you\x20aren\x27t\x20logged\x20in,\x20please\x20try\x20again.','cookie','/dashboards/general','isNil','regenerateApiKey','apiKeyIat','Please\x20use\x20the\x20previous\x20API\x20access\x20key\x20to\x20generate\x20a\x20new\x20one','validatePasswordPattern','test','ValidationError','The\x20password\x20must\x20be\x20at\x20least\x208\x20characters\x20long\x20and\x20have\x201\x20lowercase\x20character,\x201\x20uppercase\x20character,\x201\x20number\x20and\x201\x20special\x20character\x20~!@#$%^&-_=+[{]}.','decryptString','toLowerCase','format','The\x20password\x20must\x20be\x20different\x20from\x20the\x20previous\x20%d\x20passwords.\x20Please\x20choose\x20another\x20one.','The\x20password\x20must\x20be\x20different\x20from\x20the\x20last\x20one.\x20Please\x20choose\x20another\x20one.','split','length','unshift'];(function(_0x44730f,_0x55ba7d){var _0x3a1512=function(_0x4ae21f){while(--_0x4ae21f){_0x44730f['push'](_0x44730f['shift']());}};_0x3a1512(++_0x55ba7d);}(_0xe526,0x87));var _0x6e52=function(_0x273349,_0x1a55d4){_0x273349=_0x273349-0x0;var _0x14de5a=_0xe526[_0x273349];return _0x14de5a;};'use strict';var db=require('../../mysqldb')['db'];var config=require(_0x6e52('0x0'));var hardwareConf=require(_0x6e52('0x1'));var licenseUtil=require(_0x6e52('0x2'));var encryptor=require(_0x6e52('0x3'));var _=require(_0x6e52('0x4'));var jwt=require('jsonwebtoken');var expressJwt=require(_0x6e52('0x5'));var compose=require(_0x6e52('0x6'));var basicAuth=require('basic-auth');var crypto=require(_0x6e52('0x7'));var BPromise=require('bluebird');var util=require(_0x6e52('0x8'));var moment=require(_0x6e52('0x9'));var validateJwt=expressJwt({'secret':config[_0x6e52('0xa')][_0x6e52('0xb')]});var userAttributes=['id','role','fullname',_0x6e52('0xc'),_0x6e52('0xd'),_0x6e52('0xe'),_0x6e52('0xf'),'permissions',_0x6e52('0x10'),_0x6e52('0x11'),_0x6e52('0x12'),'mailPause','faxPause',_0x6e52('0x13'),_0x6e52('0x14'),_0x6e52('0x15'),_0x6e52('0x16'),_0x6e52('0x17'),_0x6e52('0x18'),_0x6e52('0x19'),_0x6e52('0x1a'),'passwordResetAt',_0x6e52('0x1b'),_0x6e52('0x1c'),'phoneBarAutoAnswerDelay',_0x6e52('0x1d'),_0x6e52('0x1e'),'phoneBarEnableDtmfTone',_0x6e52('0x1f'),_0x6e52('0x20'),'phoneBarPrefixRequired',_0x6e52('0x21'),_0x6e52('0x22'),_0x6e52('0x23'),_0x6e52('0x24'),_0x6e52('0x25'),_0x6e52('0x26'),_0x6e52('0x27'),_0x6e52('0x28'),_0x6e52('0x29'),_0x6e52('0x2a'),_0x6e52('0x2b'),_0x6e52('0x2c'),_0x6e52('0x2d')];exports[_0x6e52('0x2e')]=function(){return this['isAuthenticated'](!![])[_0x6e52('0x2f')](function(_0x340335,_0x506a94,_0x4f7b78){if(_0x340335[_0x6e52('0x30')]){_0x4f7b78();}else{return db['ChatInteraction']['findOne']({'where':{'id':_0x340335[_0x6e52('0x31')]['id']},'attributes':['id',_0x6e52('0x32'),_0x6e52('0x33')],'raw':!![]})['then'](function(_0x506c5d){if(_0x506c5d&&_0x506c5d[_0x6e52('0x32')]){return _0x506a94[_0x6e52('0x34')](_0x506c5d[_0x6e52('0x33')]===_0x6e52('0x35')?0x195:0x193)[_0x6e52('0x36')]({'message':_0x506c5d[_0x6e52('0x33')]===_0x6e52('0x35')?_0x6e52('0x37'):_0x6e52('0x38')});}else{_0x4f7b78();}})[_0x6e52('0x39')](function(_0x5c257a){_0x4f7b78(_0x5c257a);});}});};exports['isAuthenticated']=function isAuthenticated(_0x57f5d2){return compose()[_0x6e52('0x2f')](function(_0x227af1,_0x5e9bcb,_0x14478a){var _0x42dff5;if(_0x227af1[_0x6e52('0x3a')][_0x6e52('0x3b')]){if(_[_0x6e52('0x3c')](_0x227af1[_0x6e52('0x3a')][_0x6e52('0x3b')],_0x6e52('0x3d'))){var _0x4531c1=basicAuth(_0x227af1);db['User'][_0x6e52('0x3e')]({'where':{'name':_0x4531c1[_0x6e52('0xc')]}})[_0x6e52('0x3f')](function(_0x306ffb){if(!_0x306ffb||!_0x306ffb[_0x6e52('0x40')](_0x4531c1[_0x6e52('0x41')])){return _0x5e9bcb[_0x6e52('0x34')](0x191)['json']({'message':_0x6e52('0x42')});}_0x227af1[_0x6e52('0x30')]={'id':_0x306ffb['id']};_0x14478a();})['catch'](function(_0x1ff97f){_0x14478a(_0x1ff97f);});}else if(_[_0x6e52('0x3c')](_0x227af1[_0x6e52('0x3a')][_0x6e52('0x3b')],'Bearer')){validateJwt(_0x227af1,_0x5e9bcb,_0x14478a);}else{if(_0x57f5d2){_0x14478a();}else{return _0x5e9bcb['status'](0x193)[_0x6e52('0x36')]({'message':_0x6e52('0x43')});}}}else if(_0x227af1[_0x6e52('0x44')]['apikey']){try{var _0xd95aa6={'audience':hardwareConf[_0x6e52('0x45')](),'issuer':hardwareConf[_0x6e52('0x45')]()};verifyJwt(_0x227af1[_0x6e52('0x44')][_0x6e52('0x46')],_0xd95aa6)[_0x6e52('0x3f')](function(_0x48b08e){return db[_0x6e52('0x47')][_0x6e52('0x3e')]({'where':{'id':_0x48b08e[_0x6e52('0x48')]}})[_0x6e52('0x3f')](function(_0x59a4f9){_0x42dff5=_0x59a4f9;return db['Setting'][_0x6e52('0x49')]({'where':{'id':0x1},'attributes':[_0x6e52('0x4a'),_0x6e52('0x4b')],'raw':!![]});})[_0x6e52('0x3f')](function(_0x5aec87){if(!_0x42dff5||!_[_0x6e52('0x4c')](_0x42dff5[_0x6e52('0x4d')],_0x48b08e['nonce'])){return _0x5e9bcb[_0x6e52('0x34')](0x191)[_0x6e52('0x36')]({'message':_0x6e52('0x4e')});}if(_0x42dff5[_0x6e52('0x4f')]){return _0x5e9bcb['status'](0x191)[_0x6e52('0x36')]({'message':'Invalid\x20API\x20access\x20key'});}if(_0x42dff5[_0x6e52('0x50')]){if(_0x5aec87[_0x6e52('0x4b')]>0x0){if(moment(_0x42dff5[_0x6e52('0x51')])[_0x6e52('0x52')](_0x5aec87[_0x6e52('0x4b')],_0x6e52('0x53'))>moment()){return _0x5e9bcb[_0x6e52('0x34')](0x191)[_0x6e52('0x36')]({'message':_0x6e52('0x54')});}}else{return _0x5e9bcb[_0x6e52('0x34')](0x191)[_0x6e52('0x36')]({'message':_0x6e52('0x54')});}}_0x227af1[_0x6e52('0x30')]={'id':_0x42dff5['id']};_0x14478a();});})['catch'](function(){return _0x5e9bcb[_0x6e52('0x34')](0x191)['json']({'message':_0x6e52('0x54')});});}catch(_0x5a0bd3){_0x14478a(_0x5a0bd3);}}else if(_0x57f5d2){_0x14478a();}else{return _0x5e9bcb[_0x6e52('0x34')](0x193)['json']({'message':'Unknown\x20authorization\x20format'});}})['use'](function(_0x5b8639,_0x18da71,_0x2f4960){if(_0x5b8639[_0x6e52('0x30')]){db[_0x6e52('0x47')][_0x6e52('0x3e')]({'where':{'id':_0x5b8639['user']['id']},'attributes':userAttributes})['then'](function(_0x342830){if(!_0x342830){return _0x18da71['status'](0x194)['json']({'message':_0x6e52('0x55')});}_0x5b8639['user']=_0x342830;_0x2f4960();})[_0x6e52('0x39')](function(_0x2d23e3){_0x2f4960(_0x2d23e3);});}else if(_0x57f5d2){_0x2f4960();}else{return _0x18da71[_0x6e52('0x34')](0x194)[_0x6e52('0x36')]({'message':_0x6e52('0x56')});}});};exports[_0x6e52('0x57')]=function canUpdate(){return compose()['use'](function(_0x4c3f6c,_0x19889e,_0x48cc3e){return licenseUtil[_0x6e52('0x58')]()['then'](function(_0x3a9429){if(_0x3a9429['update']){_0x48cc3e();}else{return _0x19889e[_0x6e52('0x34')](0x193)[_0x6e52('0x36')]({'message':_0x6e52('0x59')});}})['catch'](function(_0x309fdf){_0x48cc3e(_0x309fdf);});});};exports['isWebrtcLicence']=function isWebrtcLicence(){return compose()[_0x6e52('0x2f')](function(_0x41629f,_0x27c2ec,_0x4ea199){return licenseUtil[_0x6e52('0x58')]()[_0x6e52('0x3f')](function(_0x2b83f5){if(_0x2b83f5[_0x6e52('0x5a')]){_0x4ea199();}else{return _0x27c2ec[_0x6e52('0x34')](0x193)[_0x6e52('0x36')]({'message':_0x6e52('0x59')});}})['catch'](function(_0x35a0b1){_0x4ea199(_0x35a0b1);});});};exports[_0x6e52('0x5b')]=function(_0x930ec8,_0x3e01cb,_0x3f4765){_0x930ec8['isMiddleware']=!![];return _0x3f4765();};exports[_0x6e52('0x5c')]=function signToken(_0x3811c0){return signJwt(_0x3811c0);};exports[_0x6e52('0x5d')]=function(_0xc7c41e,_0x597ee9){if(!_0xc7c41e[_0x6e52('0x30')]){return _0x597ee9[_0x6e52('0x34')](0x194)[_0x6e52('0x36')]({'message':_0x6e52('0x5e')});}var _0x2cf9b9={'payload':{'id':_0xc7c41e['user']['id'],'role':_0xc7c41e[_0x6e52('0x30')]['role']},'options':{'expiresIn':0x15180}};return signJwt(_0x2cf9b9)[_0x6e52('0x3f')](function(_0x14eda7){_0x597ee9[_0x6e52('0x5f')]('motion.token',_0x14eda7);_0x597ee9['redirect'](_0x6e52('0x60'));})['catch'](function(_0xbb582d){return _0x597ee9[_0x6e52('0x34')](0x1f4)['send'](_0xbb582d);});};exports['retrieveApiKey']=function(_0x56af5e){if(_['isNil'](_0x56af5e[_0x6e52('0x4d')])||_[_0x6e52('0x61')](_0x56af5e['apiKeyIat'])){return null;}else{return createJwt(_0x56af5e);}};exports['generateApiKey']=function(_0x26f50c){_0x26f50c[_0x6e52('0x4d')]=generateNonce();_0x26f50c['apiKeyIat']=generateIssuedAt();return createJwt(_0x26f50c);};exports[_0x6e52('0x62')]=function(_0x51f8f8,_0x5845fb){var _0xbb9b67=_0x51f8f8[_0x6e52('0x44')][_0x6e52('0x46')];if(_0xbb9b67){var _0x1f5359={'nonce':_0x5845fb[_0x6e52('0x4d')],'iat':_0x5845fb[_0x6e52('0x63')],'audience':hardwareConf[_0x6e52('0x45')](),'issuer':hardwareConf['getUuid']()};return verifyJwt(_0xbb9b67,_0x1f5359)[_0x6e52('0x3f')](function(){return generateApiKey(_0x5845fb);});}else{throw{'message':_0x6e52('0x64')};}};exports[_0x6e52('0x65')]=function(_0x5cdf27){var _0x571da=new RegExp(/(?=.*[a-z])(?=.*[A-Z])(?=.*[0-9])(?=.*[?!@#\$%\^&\*~\-_=+[{\]\}])(?=.{8,})/);if(!_0x571da[_0x6e52('0x66')](_0x5cdf27))throw new db['Sequelize'][(_0x6e52('0x67'))](_0x6e52('0x68'));return;};exports['validatePasswordHistory']=function(_0x57e861,_0x3e9f1a,_0x2ffbbc){var _0x13e9d4=encryptor[_0x6e52('0x69')](_0x3e9f1a)['split'](',');for(var _0x32a7b7=0x0;_0x32a7b7<_0x2ffbbc;_0x32a7b7++){if(!_0x13e9d4[_0x32a7b7])break;if(_0x57e861[_0x6e52('0x6a')]()===_0x13e9d4[_0x32a7b7][_0x6e52('0x6a')]()){var _0x25fbd7=util[_0x6e52('0x6b')](_0x6e52('0x6c'),_0x2ffbbc);if(_0x2ffbbc===0x1){_0x25fbd7=_0x6e52('0x6d');}throw new db['Sequelize']['ValidationError'](_0x25fbd7);}}return;};exports['updatePasswordsHistory']=function(_0x53cc77,_0x108ce5){var _0x599de8=_0x108ce5?encryptor[_0x6e52('0x69')](_0x108ce5)[_0x6e52('0x6e')](','):[];if(_0x599de8[_0x6e52('0x6f')]===0x5){_0x599de8['splice'](-0x1,0x1);}_0x599de8[_0x6e52('0x70')](_0x53cc77);return encryptor[_0x6e52('0x71')](_0x599de8[_0x6e52('0x72')](','));};function signJwt(_0x50190f){var _0x4f8811=BPromise[_0x6e52('0x73')](jwt[_0x6e52('0x74')],{'context':jwt});var _0x24753d=_0x50190f[_0x6e52('0x75')]||config[_0x6e52('0xa')][_0x6e52('0xb')];return new BPromise(function(_0x1f61e8,_0x4c290b){_0x4f8811(_0x50190f['payload'],_0x24753d,_0x50190f['options'])[_0x6e52('0x3f')](function(_0x4a6bdd){_0x1f61e8(_0x4a6bdd);})[_0x6e52('0x39')](function(_0x10ae72){_0x4c290b(_0x10ae72);});});}function verifyJwt(_0x15d77c,_0x7c514c,_0x91b5fc){var _0x2ec6d0=BPromise[_0x6e52('0x73')](jwt[_0x6e52('0x76')],{'context':jwt});var _0x17ae71=_0x91b5fc||config[_0x6e52('0xa')][_0x6e52('0xb')];return new BPromise(function(_0x3b1fc3,_0xc01f7b){_0x2ec6d0(_0x15d77c,_0x17ae71,_0x7c514c)[_0x6e52('0x3f')](function(_0x2b3d5d){_0x3b1fc3(_0x2b3d5d);})[_0x6e52('0x39')](function(_0x24bdf8){_0xc01f7b(_0x24bdf8);});});}function generateNonce(){return crypto[_0x6e52('0x77')](0x10)[_0x6e52('0x78')](_0x6e52('0x79'));}function generateIssuedAt(){return Math[_0x6e52('0x7a')](Date['now']()/0x3e8)[_0x6e52('0x78')]();}function createJwt(_0x1ea46f){var _0x4cc0e7={'payload':{'iat':_0x1ea46f['apiKeyIat'],'nonce':_0x1ea46f[_0x6e52('0x4d')]},'options':{'algorithm':_0x6e52('0x7b'),'subject':_0x1ea46f['id']['toString'](),'issuer':hardwareConf[_0x6e52('0x45')](),'audience':hardwareConf[_0x6e52('0x45')]()}};return signJwt(_0x4cc0e7)['then'](function(_0x19956f){return{'iat':_0x1ea46f['apiKeyIat'],'nonce':_0x1ea46f[_0x6e52('0x4d')],'token':_0x19956f};});}