Built motion from commit 497d3d92.|2.5.43
[motion2.git] / server / components / auth / service.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x4220=['passwordResetAt','alias','phoneBarAutoAnswerDelay','phoneBarDnd','phoneBarEnableRecording','phoneBarEnableDtmfTone','phoneBarExpires','phoneBarPrefixRequired','phoneBarRemoteControl','hotdesk','interface','userProfileId','privacyEnabled','settingsEnabled','wssPort','downloadVoiceRecordings','downloadAttachments','isAuthenticated','use','user','ChatInteraction','params','then','unmanaged','json','disposition','Unmanaged.','headers','startsWith','authorization','User','find','name','authenticate','pass','status','Wrong\x20credentials.','Bearer','Unknown\x20authorization\x20format','getUuid','apikey','sub','Setting','findOne','allowedLoginAttempts','blockDuration','isEqual','apiKeyNonce','disabled','blocked','blockedAt','minutes','Invalid\x20API\x20access\x20key','catch','User\x20object\x20not\x20found.','canUpdate','getLicense','update','Forbidden','webrtc','isMiddleware','signToken','setTokenCookie','It\x20looks\x20like\x20you\x20aren\x27t\x20logged\x20in,\x20please\x20try\x20again.','cookie','motion.token','/dashboards/general','send','retrieveApiKey','isNil','generateApiKey','query','apiKeyIat','validatePasswordPattern','test','ValidationError','The\x20password\x20must\x20be\x20at\x20least\x208\x20characters\x20long\x20and\x20have\x201\x20lowercase\x20character,\x201\x20uppercase\x20character,\x201\x20number\x20and\x201\x20special\x20character\x20~!@#$%^&-_=+[{]}.','validatePasswordHistory','decryptString','split','toLowerCase','format','The\x20password\x20must\x20be\x20different\x20from\x20the\x20previous\x20%d\x20passwords.\x20Please\x20choose\x20another\x20one.','The\x20password\x20must\x20be\x20different\x20from\x20the\x20last\x20one.\x20Please\x20choose\x20another\x20one.','Sequelize','updatePasswordsHistory','splice','unshift','encryptString','join','sign','secret','secrets','payload','options','promisify','session','randomBytes','toString','hex','floor','now','HS512','../../mysqldb','../../config/environment','../../config/license/hardware','../../config/license/util','../encryptor','basic-auth','crypto','bluebird','moment','role','internal','email','userpic','permissions','md5secret','voicePause','faxPause','smsPause','openchannelPause','pauseType','showWebBar','lastLoginAt','lastPauseAt'];(function(_0x3947c9,_0x4d6c97){var _0x2e7871=function(_0x1236cc){while(--_0x1236cc){_0x3947c9['push'](_0x3947c9['shift']());}};_0x2e7871(++_0x4d6c97);}(_0x4220,0xe5));var _0x0422=function(_0x5aa151,_0x5c2447){_0x5aa151=_0x5aa151-0x0;var _0x24a222=_0x4220[_0x5aa151];return _0x24a222;};'use strict';var db=require(_0x0422('0x0'))['db'];var config=require(_0x0422('0x1'));var hardwareConf=require(_0x0422('0x2'));var licenseUtil=require(_0x0422('0x3'));var encryptor=require(_0x0422('0x4'));var _=require('lodash');var jwt=require('jsonwebtoken');var expressJwt=require('express-jwt');var compose=require('composable-middleware');var basicAuth=require(_0x0422('0x5'));var crypto=require(_0x0422('0x6'));var BPromise=require(_0x0422('0x7'));var util=require('util');var moment=require(_0x0422('0x8'));var validateJwt=expressJwt({'secret':config['secrets']['session']});var userAttributes=['id',_0x0422('0x9'),'fullname','name',_0x0422('0xa'),_0x0422('0xb'),_0x0422('0xc'),_0x0422('0xd'),_0x0422('0xe'),_0x0422('0xf'),'chatPause','mailPause',_0x0422('0x10'),_0x0422('0x11'),_0x0422('0x12'),_0x0422('0x13'),_0x0422('0x14'),_0x0422('0x15'),_0x0422('0x16'),'crudPermissions','allowmessenger',_0x0422('0x17'),_0x0422('0x18'),'phoneBarAutoAnswer',_0x0422('0x19'),_0x0422('0x1a'),_0x0422('0x1b'),_0x0422('0x1c'),'phoneBarEnableSettings',_0x0422('0x1d'),_0x0422('0x1e'),_0x0422('0x1f'),'phoneBarRemoteControlPort',_0x0422('0x20'),_0x0422('0x21'),_0x0422('0x22'),_0x0422('0x23'),_0x0422('0x24'),_0x0422('0x25'),_0x0422('0x26'),'downloadOmnichannelInteractions',_0x0422('0x27'),'ignorePauseForPreviewCalls','selectRecallMeCampaign'];exports['isChatInteractionAuthorized']=function(){return this[_0x0422('0x28')](!![])[_0x0422('0x29')](function(_0x18c5e6,_0x35ce9a,_0x87972){if(_0x18c5e6[_0x0422('0x2a')]){_0x87972();}else{return db[_0x0422('0x2b')]['findOne']({'where':{'id':_0x18c5e6[_0x0422('0x2c')]['id']},'attributes':['id','closed','disposition'],'raw':!![]})[_0x0422('0x2d')](function(_0x3b59d9){if(_0x3b59d9&&_0x3b59d9['closed']){return _0x35ce9a['status'](_0x3b59d9['disposition']===_0x0422('0x2e')?0x195:0x193)[_0x0422('0x2f')]({'message':_0x3b59d9[_0x0422('0x30')]===_0x0422('0x2e')?_0x0422('0x31'):'Forbidden.'});}else{_0x87972();}})['catch'](function(_0xa8cb8f){_0x87972(_0xa8cb8f);});}});};exports[_0x0422('0x28')]=function isAuthenticated(_0x2943da){return compose()[_0x0422('0x29')](function(_0x5e3483,_0x5f4e39,_0x5e4cc7){var _0x2bfab7;if(_0x5e3483[_0x0422('0x32')]['authorization']){if(_[_0x0422('0x33')](_0x5e3483[_0x0422('0x32')][_0x0422('0x34')],'Basic')){var _0x38ae56=basicAuth(_0x5e3483);db[_0x0422('0x35')][_0x0422('0x36')]({'where':{'name':_0x38ae56[_0x0422('0x37')]}})[_0x0422('0x2d')](function(_0x576bd3){if(!_0x576bd3||!_0x576bd3[_0x0422('0x38')](_0x38ae56[_0x0422('0x39')])){return _0x5f4e39[_0x0422('0x3a')](0x191)[_0x0422('0x2f')]({'message':_0x0422('0x3b')});}_0x5e3483[_0x0422('0x2a')]={'id':_0x576bd3['id']};_0x5e4cc7();})['catch'](function(_0x28b86c){_0x5e4cc7(_0x28b86c);});}else if(_['startsWith'](_0x5e3483[_0x0422('0x32')][_0x0422('0x34')],_0x0422('0x3c'))){validateJwt(_0x5e3483,_0x5f4e39,_0x5e4cc7);}else{if(_0x2943da){_0x5e4cc7();}else{return _0x5f4e39[_0x0422('0x3a')](0x193)[_0x0422('0x2f')]({'message':_0x0422('0x3d')});}}}else if(_0x5e3483['query']['apikey']){try{var _0x36a3cb={'audience':hardwareConf[_0x0422('0x3e')](),'issuer':hardwareConf['getUuid']()};verifyJwt(_0x5e3483['query'][_0x0422('0x3f')],_0x36a3cb)[_0x0422('0x2d')](function(_0x56eb26){return db[_0x0422('0x35')][_0x0422('0x36')]({'where':{'id':_0x56eb26[_0x0422('0x40')]}})['then'](function(_0x3d7fae){_0x2bfab7=_0x3d7fae;return db[_0x0422('0x41')][_0x0422('0x42')]({'where':{'id':0x1},'attributes':[_0x0422('0x43'),_0x0422('0x44')],'raw':!![]});})[_0x0422('0x2d')](function(_0x5147ea){if(!_0x2bfab7||!_[_0x0422('0x45')](_0x2bfab7[_0x0422('0x46')],_0x56eb26['nonce'])){return _0x5f4e39[_0x0422('0x3a')](0x191)[_0x0422('0x2f')]({'message':'API\x20access\x20key\x20is\x20not\x20valid\x20anymore'});}if(_0x2bfab7[_0x0422('0x47')]){return _0x5f4e39[_0x0422('0x3a')](0x191)[_0x0422('0x2f')]({'message':'Invalid\x20API\x20access\x20key'});}if(_0x2bfab7[_0x0422('0x48')]){if(_0x5147ea[_0x0422('0x44')]>0x0){if(moment(_0x2bfab7[_0x0422('0x49')])['add'](_0x5147ea[_0x0422('0x44')],_0x0422('0x4a'))>moment()){return _0x5f4e39[_0x0422('0x3a')](0x191)['json']({'message':_0x0422('0x4b')});}}else{return _0x5f4e39[_0x0422('0x3a')](0x191)[_0x0422('0x2f')]({'message':_0x0422('0x4b')});}}_0x5e3483[_0x0422('0x2a')]={'id':_0x2bfab7['id']};_0x5e4cc7();});})[_0x0422('0x4c')](function(){return _0x5f4e39[_0x0422('0x3a')](0x191)[_0x0422('0x2f')]({'message':_0x0422('0x4b')});});}catch(_0x43f0f4){_0x5e4cc7(_0x43f0f4);}}else if(_0x2943da){_0x5e4cc7();}else{return _0x5f4e39[_0x0422('0x3a')](0x193)[_0x0422('0x2f')]({'message':'Unknown\x20authorization\x20format'});}})[_0x0422('0x29')](function(_0x37458c,_0x2bf220,_0x15a442){if(_0x37458c[_0x0422('0x2a')]){db[_0x0422('0x35')][_0x0422('0x36')]({'where':{'id':_0x37458c['user']['id']},'attributes':userAttributes})[_0x0422('0x2d')](function(_0x312749){if(!_0x312749){return _0x2bf220[_0x0422('0x3a')](0x194)[_0x0422('0x2f')]({'message':'User\x20not\x20found.'});}_0x37458c[_0x0422('0x2a')]=_0x312749;_0x15a442();})[_0x0422('0x4c')](function(_0x793ab0){_0x15a442(_0x793ab0);});}else if(_0x2943da){_0x15a442();}else{return _0x2bf220['status'](0x194)[_0x0422('0x2f')]({'message':_0x0422('0x4d')});}});};exports[_0x0422('0x4e')]=function canUpdate(){return compose()[_0x0422('0x29')](function(_0x3ffa0d,_0x3d663c,_0x34425e){return licenseUtil[_0x0422('0x4f')]()['then'](function(_0x76739f){if(_0x76739f[_0x0422('0x50')]){_0x34425e();}else{return _0x3d663c[_0x0422('0x3a')](0x193)[_0x0422('0x2f')]({'message':_0x0422('0x51')});}})[_0x0422('0x4c')](function(_0x659ff5){_0x34425e(_0x659ff5);});});};exports['isWebrtcLicence']=function isWebrtcLicence(){return compose()['use'](function(_0x3f3870,_0x763709,_0x54effa){return licenseUtil['getLicense']()['then'](function(_0x46d115){if(_0x46d115[_0x0422('0x52')]){_0x54effa();}else{return _0x763709[_0x0422('0x3a')](0x193)['json']({'message':_0x0422('0x51')});}})[_0x0422('0x4c')](function(_0x4d3141){_0x54effa(_0x4d3141);});});};exports[_0x0422('0x53')]=function(_0xad3c69,_0x2d186e,_0x106aed){_0xad3c69['isMiddleware']=!![];return _0x106aed();};exports[_0x0422('0x54')]=function signToken(_0x26a1cb){return signJwt(_0x26a1cb);};exports[_0x0422('0x55')]=function(_0x82c9e9,_0x4a35bf){if(!_0x82c9e9[_0x0422('0x2a')]){return _0x4a35bf[_0x0422('0x3a')](0x194)[_0x0422('0x2f')]({'message':_0x0422('0x56')});}var _0x1b4df4={'payload':{'id':_0x82c9e9['user']['id'],'role':_0x82c9e9[_0x0422('0x2a')][_0x0422('0x9')]},'options':{'expiresIn':0x15180}};return signJwt(_0x1b4df4)[_0x0422('0x2d')](function(_0x2dae87){_0x4a35bf[_0x0422('0x57')](_0x0422('0x58'),_0x2dae87);_0x4a35bf['redirect'](_0x0422('0x59'));})[_0x0422('0x4c')](function(_0xbaa09b){return _0x4a35bf[_0x0422('0x3a')](0x1f4)[_0x0422('0x5a')](_0xbaa09b);});};exports[_0x0422('0x5b')]=function(_0x3260a5){if(_['isNil'](_0x3260a5[_0x0422('0x46')])||_[_0x0422('0x5c')](_0x3260a5['apiKeyIat'])){return null;}else{return createJwt(_0x3260a5);}};exports[_0x0422('0x5d')]=function(_0x400783){_0x400783[_0x0422('0x46')]=generateNonce();_0x400783['apiKeyIat']=generateIssuedAt();return createJwt(_0x400783);};exports['regenerateApiKey']=function(_0x5871a3,_0x5b05bf){var _0x387f77=_0x5871a3[_0x0422('0x5e')][_0x0422('0x3f')];if(_0x387f77){var _0x228bbc={'nonce':_0x5b05bf['apiKeyNonce'],'iat':_0x5b05bf[_0x0422('0x5f')],'audience':hardwareConf[_0x0422('0x3e')](),'issuer':hardwareConf['getUuid']()};return verifyJwt(_0x387f77,_0x228bbc)[_0x0422('0x2d')](function(){return generateApiKey(_0x5b05bf);});}else{throw{'message':'Please\x20use\x20the\x20previous\x20API\x20access\x20key\x20to\x20generate\x20a\x20new\x20one'};}};exports[_0x0422('0x60')]=function(_0xbffa18){var _0x2060a9=new RegExp(/(?=.*[a-z])(?=.*[A-Z])(?=.*[0-9])(?=.*[?!@#\$%\^&\*~\-_=+[{\]\}])(?=.{8,})/);if(!_0x2060a9[_0x0422('0x61')](_0xbffa18))throw new db['Sequelize'][(_0x0422('0x62'))](_0x0422('0x63'));return;};exports[_0x0422('0x64')]=function(_0x29e5cb,_0x248255,_0x455790){var _0x146aea=encryptor[_0x0422('0x65')](_0x248255)[_0x0422('0x66')](',');for(var _0x47c50f=0x0;_0x47c50f<_0x455790;_0x47c50f++){if(!_0x146aea[_0x47c50f])break;if(_0x29e5cb[_0x0422('0x67')]()===_0x146aea[_0x47c50f][_0x0422('0x67')]()){var _0x2d3eea=util[_0x0422('0x68')](_0x0422('0x69'),_0x455790);if(_0x455790===0x1){_0x2d3eea=_0x0422('0x6a');}throw new db[(_0x0422('0x6b'))][(_0x0422('0x62'))](_0x2d3eea);}}return;};exports[_0x0422('0x6c')]=function(_0x556442,_0x485cfd){var _0x51b401=_0x485cfd?encryptor['decryptString'](_0x485cfd)[_0x0422('0x66')](','):[];if(_0x51b401['length']===0x5){_0x51b401[_0x0422('0x6d')](-0x1,0x1);}_0x51b401[_0x0422('0x6e')](_0x556442);return encryptor[_0x0422('0x6f')](_0x51b401[_0x0422('0x70')](','));};function signJwt(_0x3bedd3){var _0x31c7a5=BPromise['promisify'](jwt[_0x0422('0x71')],{'context':jwt});var _0x5097c1=_0x3bedd3[_0x0422('0x72')]||config[_0x0422('0x73')]['session'];return new BPromise(function(_0x15b3d7,_0x75126d){_0x31c7a5(_0x3bedd3[_0x0422('0x74')],_0x5097c1,_0x3bedd3[_0x0422('0x75')])['then'](function(_0x220129){_0x15b3d7(_0x220129);})[_0x0422('0x4c')](function(_0x59ccdb){_0x75126d(_0x59ccdb);});});}function verifyJwt(_0xf34c01,_0x44f6c6,_0x11381c){var _0x1ae5d7=BPromise[_0x0422('0x76')](jwt['verify'],{'context':jwt});var _0x8d92b0=_0x11381c||config[_0x0422('0x73')][_0x0422('0x77')];return new BPromise(function(_0x41e59f,_0x522e09){_0x1ae5d7(_0xf34c01,_0x8d92b0,_0x44f6c6)[_0x0422('0x2d')](function(_0x3cbd69){_0x41e59f(_0x3cbd69);})[_0x0422('0x4c')](function(_0x23d66c){_0x522e09(_0x23d66c);});});}function generateNonce(){return crypto[_0x0422('0x78')](0x10)[_0x0422('0x79')](_0x0422('0x7a'));}function generateIssuedAt(){return Math[_0x0422('0x7b')](Date[_0x0422('0x7c')]()/0x3e8)[_0x0422('0x79')]();}function createJwt(_0x85847){var _0x25c11e={'payload':{'iat':_0x85847['apiKeyIat'],'nonce':_0x85847[_0x0422('0x46')]},'options':{'algorithm':_0x0422('0x7d'),'subject':_0x85847['id'][_0x0422('0x79')](),'issuer':hardwareConf[_0x0422('0x3e')](),'audience':hardwareConf[_0x0422('0x3e')]()}};return signJwt(_0x25c11e)[_0x0422('0x2d')](function(_0x4e2c1c){return{'iat':_0x85847[_0x0422('0x5f')],'nonce':_0x85847['apiKeyNonce'],'token':_0x4e2c1c};});}