Built motion from commit 9d1906d1.|2.5.40
[motion2.git] / server / components / auth / service.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x6473=['blockedAt','add','minutes','User\x20not\x20found.','User\x20object\x20not\x20found.','canUpdate','update','Forbidden','isWebrtcLicence','webrtc','isMiddleware','signToken','setTokenCookie','It\x20looks\x20like\x20you\x20aren\x27t\x20logged\x20in,\x20please\x20try\x20again.','cookie','motion.token','redirect','/dashboards/general','send','retrieveApiKey','isNil','apiKeyNonce','apiKeyIat','generateApiKey','regenerateApiKey','getUuid','test','Sequelize','The\x20password\x20must\x20be\x20at\x20least\x208\x20characters\x20long\x20and\x20have\x201\x20lowercase\x20character,\x201\x20uppercase\x20character,\x201\x20number\x20and\x201\x20special\x20character\x20~!@#$%^&-_=+[{]}.','decryptString','split','toLowerCase','format','The\x20password\x20must\x20be\x20different\x20from\x20the\x20previous\x20%d\x20passwords.\x20Please\x20choose\x20another\x20one.','ValidationError','updatePasswordsHistory','length','join','promisify','payload','options','verify','toString','floor','now','../../mysqldb','../../config/environment','../../config/license/util','../encryptor','lodash','express-jwt','composable-middleware','basic-auth','crypto','bluebird','util','moment','secrets','session','role','name','internal','email','userpic','permissions','md5secret','voicePause','chatPause','mailPause','faxPause','smsPause','openchannelPause','showWebBar','lastPauseAt','crudPermissions','passwordResetAt','alias','phoneBarAutoAnswerDelay','phoneBarDnd','phoneBarEnableRecording','phoneBarEnableSettings','phoneBarExpires','phoneBarPrefixRequired','phoneBarRemoteControl','phoneBarRemoteControlPort','interface','userProfileId','privacyEnabled','settingsEnabled','wssPort','downloadVoiceRecordings','downloadAttachments','ignorePauseForPreviewCalls','isChatInteractionAuthorized','use','findOne','params','closed','disposition','status','unmanaged','Forbidden.','catch','isAuthenticated','startsWith','authorization','Basic','User','find','then','authenticate','pass','Wrong\x20credentials.','user','headers','Bearer','json','query','apikey','sub','Setting','allowedLoginAttempts','blockDuration','isEqual','nonce','API\x20access\x20key\x20is\x20not\x20valid\x20anymore','disabled','Invalid\x20API\x20access\x20key'];(function(_0x49c081,_0x159ed4){var _0x1b2362=function(_0x55f4b2){while(--_0x55f4b2){_0x49c081['push'](_0x49c081['shift']());}};_0x1b2362(++_0x159ed4);}(_0x6473,0xad));var _0x3647=function(_0x133063,_0x2c4ee8){_0x133063=_0x133063-0x0;var _0x424c34=_0x6473[_0x133063];return _0x424c34;};'use strict';var db=require(_0x3647('0x0'))['db'];var config=require(_0x3647('0x1'));var hardwareConf=require('../../config/license/hardware');var licenseUtil=require(_0x3647('0x2'));var encryptor=require(_0x3647('0x3'));var _=require(_0x3647('0x4'));var jwt=require('jsonwebtoken');var expressJwt=require(_0x3647('0x5'));var compose=require(_0x3647('0x6'));var basicAuth=require(_0x3647('0x7'));var crypto=require(_0x3647('0x8'));var BPromise=require(_0x3647('0x9'));var util=require(_0x3647('0xa'));var moment=require(_0x3647('0xb'));var validateJwt=expressJwt({'secret':config[_0x3647('0xc')][_0x3647('0xd')]});var userAttributes=['id',_0x3647('0xe'),'fullname',_0x3647('0xf'),_0x3647('0x10'),_0x3647('0x11'),_0x3647('0x12'),_0x3647('0x13'),_0x3647('0x14'),_0x3647('0x15'),_0x3647('0x16'),_0x3647('0x17'),_0x3647('0x18'),_0x3647('0x19'),_0x3647('0x1a'),'pauseType',_0x3647('0x1b'),'lastLoginAt',_0x3647('0x1c'),_0x3647('0x1d'),'allowmessenger',_0x3647('0x1e'),_0x3647('0x1f'),'phoneBarAutoAnswer',_0x3647('0x20'),_0x3647('0x21'),_0x3647('0x22'),'phoneBarEnableDtmfTone',_0x3647('0x23'),_0x3647('0x24'),_0x3647('0x25'),_0x3647('0x26'),_0x3647('0x27'),'hotdesk',_0x3647('0x28'),_0x3647('0x29'),_0x3647('0x2a'),_0x3647('0x2b'),_0x3647('0x2c'),_0x3647('0x2d'),'downloadOmnichannelInteractions',_0x3647('0x2e'),_0x3647('0x2f'),'selectRecallMeCampaign'];exports[_0x3647('0x30')]=function(){return this['isAuthenticated'](!![])[_0x3647('0x31')](function(_0x454fba,_0x1243f7,_0x2ca38e){if(_0x454fba['user']){_0x2ca38e();}else{return db['ChatInteraction'][_0x3647('0x32')]({'where':{'id':_0x454fba[_0x3647('0x33')]['id']},'attributes':['id',_0x3647('0x34'),_0x3647('0x35')],'raw':!![]})['then'](function(_0x3bf891){if(_0x3bf891&&_0x3bf891[_0x3647('0x34')]){return _0x1243f7[_0x3647('0x36')](_0x3bf891[_0x3647('0x35')]===_0x3647('0x37')?0x195:0x193)['json']({'message':_0x3bf891[_0x3647('0x35')]===_0x3647('0x37')?'Unmanaged.':_0x3647('0x38')});}else{_0x2ca38e();}})[_0x3647('0x39')](function(_0x488cb2){_0x2ca38e(_0x488cb2);});}});};exports[_0x3647('0x3a')]=function isAuthenticated(_0x330c07){return compose()[_0x3647('0x31')](function(_0x30ef75,_0x328981,_0x304662){var _0x38fe64;if(_0x30ef75['headers']['authorization']){if(_[_0x3647('0x3b')](_0x30ef75['headers'][_0x3647('0x3c')],_0x3647('0x3d'))){var _0x529865=basicAuth(_0x30ef75);db[_0x3647('0x3e')][_0x3647('0x3f')]({'where':{'name':_0x529865[_0x3647('0xf')]}})[_0x3647('0x40')](function(_0x445f65){if(!_0x445f65||!_0x445f65[_0x3647('0x41')](_0x529865[_0x3647('0x42')])){return _0x328981[_0x3647('0x36')](0x191)['json']({'message':_0x3647('0x43')});}_0x30ef75[_0x3647('0x44')]={'id':_0x445f65['id']};_0x304662();})[_0x3647('0x39')](function(_0x2c87b8){_0x304662(_0x2c87b8);});}else if(_[_0x3647('0x3b')](_0x30ef75[_0x3647('0x45')][_0x3647('0x3c')],_0x3647('0x46'))){validateJwt(_0x30ef75,_0x328981,_0x304662);}else{if(_0x330c07){_0x304662();}else{return _0x328981[_0x3647('0x36')](0x193)[_0x3647('0x47')]({'message':'Unknown\x20authorization\x20format'});}}}else if(_0x30ef75[_0x3647('0x48')]['apikey']){try{var _0x50c1f3={'audience':hardwareConf['getUuid'](),'issuer':hardwareConf['getUuid']()};verifyJwt(_0x30ef75['query'][_0x3647('0x49')],_0x50c1f3)[_0x3647('0x40')](function(_0x4ecee6){return db[_0x3647('0x3e')]['find']({'where':{'id':_0x4ecee6[_0x3647('0x4a')]}})[_0x3647('0x40')](function(_0x5bea2f){_0x38fe64=_0x5bea2f;return db[_0x3647('0x4b')][_0x3647('0x32')]({'where':{'id':0x1},'attributes':[_0x3647('0x4c'),_0x3647('0x4d')],'raw':!![]});})[_0x3647('0x40')](function(_0x197394){if(!_0x38fe64||!_[_0x3647('0x4e')](_0x38fe64['apiKeyNonce'],_0x4ecee6[_0x3647('0x4f')])){return _0x328981[_0x3647('0x36')](0x191)[_0x3647('0x47')]({'message':_0x3647('0x50')});}if(_0x38fe64[_0x3647('0x51')]){return _0x328981[_0x3647('0x36')](0x191)[_0x3647('0x47')]({'message':_0x3647('0x52')});}if(_0x38fe64['blocked']){if(_0x197394[_0x3647('0x4d')]>0x0){if(moment(_0x38fe64[_0x3647('0x53')])[_0x3647('0x54')](_0x197394[_0x3647('0x4d')],_0x3647('0x55'))>moment()){return _0x328981[_0x3647('0x36')](0x191)[_0x3647('0x47')]({'message':_0x3647('0x52')});}}else{return _0x328981[_0x3647('0x36')](0x191)[_0x3647('0x47')]({'message':_0x3647('0x52')});}}_0x30ef75[_0x3647('0x44')]={'id':_0x38fe64['id']};_0x304662();});})[_0x3647('0x39')](function(){return _0x328981['status'](0x191)[_0x3647('0x47')]({'message':'Invalid\x20API\x20access\x20key'});});}catch(_0x1c97c3){_0x304662(_0x1c97c3);}}else if(_0x330c07){_0x304662();}else{return _0x328981[_0x3647('0x36')](0x193)[_0x3647('0x47')]({'message':'Unknown\x20authorization\x20format'});}})[_0x3647('0x31')](function(_0x52d62c,_0x55c4a8,_0x29c7e0){if(_0x52d62c[_0x3647('0x44')]){db[_0x3647('0x3e')][_0x3647('0x3f')]({'where':{'id':_0x52d62c[_0x3647('0x44')]['id']},'attributes':userAttributes})[_0x3647('0x40')](function(_0x48534d){if(!_0x48534d){return _0x55c4a8[_0x3647('0x36')](0x194)[_0x3647('0x47')]({'message':_0x3647('0x56')});}_0x52d62c['user']=_0x48534d;_0x29c7e0();})[_0x3647('0x39')](function(_0x1a46a9){_0x29c7e0(_0x1a46a9);});}else if(_0x330c07){_0x29c7e0();}else{return _0x55c4a8[_0x3647('0x36')](0x194)[_0x3647('0x47')]({'message':_0x3647('0x57')});}});};exports[_0x3647('0x58')]=function canUpdate(){return compose()[_0x3647('0x31')](function(_0x52f461,_0x580a22,_0x4ce599){return licenseUtil['getLicense']()[_0x3647('0x40')](function(_0x48f597){if(_0x48f597[_0x3647('0x59')]){_0x4ce599();}else{return _0x580a22[_0x3647('0x36')](0x193)['json']({'message':_0x3647('0x5a')});}})[_0x3647('0x39')](function(_0x2dfb3c){_0x4ce599(_0x2dfb3c);});});};exports[_0x3647('0x5b')]=function isWebrtcLicence(){return compose()[_0x3647('0x31')](function(_0x1c0a8b,_0x1c27a3,_0x383f81){return licenseUtil['getLicense']()[_0x3647('0x40')](function(_0x34c25e){if(_0x34c25e[_0x3647('0x5c')]){_0x383f81();}else{return _0x1c27a3[_0x3647('0x36')](0x193)['json']({'message':_0x3647('0x5a')});}})[_0x3647('0x39')](function(_0x5f36cb){_0x383f81(_0x5f36cb);});});};exports[_0x3647('0x5d')]=function(_0x96cc23,_0x1c88ea,_0x4cbc3c){_0x96cc23['isMiddleware']=!![];return _0x4cbc3c();};exports[_0x3647('0x5e')]=function signToken(_0x5502bc){return signJwt(_0x5502bc);};exports[_0x3647('0x5f')]=function(_0x328f7c,_0x5c4135){if(!_0x328f7c[_0x3647('0x44')]){return _0x5c4135[_0x3647('0x36')](0x194)[_0x3647('0x47')]({'message':_0x3647('0x60')});}var _0x1938e5={'payload':{'id':_0x328f7c['user']['id'],'role':_0x328f7c[_0x3647('0x44')][_0x3647('0xe')]},'options':{'expiresIn':0x15180}};return signJwt(_0x1938e5)[_0x3647('0x40')](function(_0x29d421){_0x5c4135[_0x3647('0x61')](_0x3647('0x62'),_0x29d421);_0x5c4135[_0x3647('0x63')](_0x3647('0x64'));})[_0x3647('0x39')](function(_0x393fdf){return _0x5c4135[_0x3647('0x36')](0x1f4)[_0x3647('0x65')](_0x393fdf);});};exports[_0x3647('0x66')]=function(_0x58920a){if(_[_0x3647('0x67')](_0x58920a[_0x3647('0x68')])||_[_0x3647('0x67')](_0x58920a[_0x3647('0x69')])){return null;}else{return createJwt(_0x58920a);}};exports[_0x3647('0x6a')]=function(_0x238f3c){_0x238f3c[_0x3647('0x68')]=generateNonce();_0x238f3c[_0x3647('0x69')]=generateIssuedAt();return createJwt(_0x238f3c);};exports[_0x3647('0x6b')]=function(_0x59acd3,_0x56559d){var _0xdc09ac=_0x59acd3['query'][_0x3647('0x49')];if(_0xdc09ac){var _0x44d1da={'nonce':_0x56559d[_0x3647('0x68')],'iat':_0x56559d[_0x3647('0x69')],'audience':hardwareConf[_0x3647('0x6c')](),'issuer':hardwareConf[_0x3647('0x6c')]()};return verifyJwt(_0xdc09ac,_0x44d1da)[_0x3647('0x40')](function(){return generateApiKey(_0x56559d);});}else{throw{'message':'Please\x20use\x20the\x20previous\x20API\x20access\x20key\x20to\x20generate\x20a\x20new\x20one'};}};exports['validatePasswordPattern']=function(_0x5a6200){var _0x27f01d=new RegExp(/(?=.*[a-z])(?=.*[A-Z])(?=.*[0-9])(?=.*[?!@#\$%\^&\*~\-_=+[{\]\}])(?=.{8,})/);if(!_0x27f01d[_0x3647('0x6d')](_0x5a6200))throw new db[(_0x3647('0x6e'))]['ValidationError'](_0x3647('0x6f'));return;};exports['validatePasswordHistory']=function(_0xc5a136,_0x1ddb71,_0x316264){var _0x3f6c44=encryptor[_0x3647('0x70')](_0x1ddb71)[_0x3647('0x71')](',');for(var _0x56bcfb=0x0;_0x56bcfb<_0x316264;_0x56bcfb++){if(!_0x3f6c44[_0x56bcfb])break;if(_0xc5a136[_0x3647('0x72')]()===_0x3f6c44[_0x56bcfb][_0x3647('0x72')]()){var _0x3aa5e1=util[_0x3647('0x73')](_0x3647('0x74'),_0x316264);if(_0x316264===0x1){_0x3aa5e1='The\x20password\x20must\x20be\x20different\x20from\x20the\x20last\x20one.\x20Please\x20choose\x20another\x20one.';}throw new db[(_0x3647('0x6e'))][(_0x3647('0x75'))](_0x3aa5e1);}}return;};exports[_0x3647('0x76')]=function(_0x42e72c,_0x53c577){var _0x5a5421=_0x53c577?encryptor[_0x3647('0x70')](_0x53c577)[_0x3647('0x71')](','):[];if(_0x5a5421[_0x3647('0x77')]===0x5){_0x5a5421['splice'](-0x1,0x1);}_0x5a5421['unshift'](_0x42e72c);return encryptor['encryptString'](_0x5a5421[_0x3647('0x78')](','));};function signJwt(_0x301f98){var _0x4f79ca=BPromise[_0x3647('0x79')](jwt['sign'],{'context':jwt});var _0x3cf548=_0x301f98['secret']||config[_0x3647('0xc')][_0x3647('0xd')];return new BPromise(function(_0x1c8127,_0x41f17f){_0x4f79ca(_0x301f98[_0x3647('0x7a')],_0x3cf548,_0x301f98[_0x3647('0x7b')])[_0x3647('0x40')](function(_0x2875be){_0x1c8127(_0x2875be);})[_0x3647('0x39')](function(_0x337fe9){_0x41f17f(_0x337fe9);});});}function verifyJwt(_0x20e756,_0x39507c,_0x1ff4e2){var _0x4550eb=BPromise[_0x3647('0x79')](jwt[_0x3647('0x7c')],{'context':jwt});var _0x481e1c=_0x1ff4e2||config[_0x3647('0xc')][_0x3647('0xd')];return new BPromise(function(_0x34e7e3,_0x5164b3){_0x4550eb(_0x20e756,_0x481e1c,_0x39507c)[_0x3647('0x40')](function(_0x325d41){_0x34e7e3(_0x325d41);})[_0x3647('0x39')](function(_0xd88cef){_0x5164b3(_0xd88cef);});});}function generateNonce(){return crypto['randomBytes'](0x10)[_0x3647('0x7d')]('hex');}function generateIssuedAt(){return Math[_0x3647('0x7e')](Date[_0x3647('0x7f')]()/0x3e8)[_0x3647('0x7d')]();}function createJwt(_0x22048c){var _0xd6d7b1={'payload':{'iat':_0x22048c[_0x3647('0x69')],'nonce':_0x22048c['apiKeyNonce']},'options':{'algorithm':'HS512','subject':_0x22048c['id']['toString'](),'issuer':hardwareConf[_0x3647('0x6c')](),'audience':hardwareConf[_0x3647('0x6c')]()}};return signJwt(_0xd6d7b1)[_0x3647('0x40')](function(_0x25f76b){return{'iat':_0x22048c[_0x3647('0x69')],'nonce':_0x22048c['apiKeyNonce'],'token':_0x25f76b};});}