Built motion from commit (unavailable).|2.5.18
[motion2.git] / server / components / auth / service.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0xa6d5=['bluebird','util','moment','secrets','role','fullname','name','internal','email','userpic','permissions','chatPause','mailPause','openchannelPause','lastPauseAt','crudPermissions','allowmessenger','passwordResetAt','alias','phoneBarAutoAnswerDelay','phoneBarEnableRecording','phoneBarEnableDtmfTone','phoneBarExpires','phoneBarPrefixRequired','phoneBarRemoteControl','phoneBarRemoteControlPort','hotdesk','interface','userProfileId','settingsEnabled','isChatInteractionAuthorized','isAuthenticated','use','user','findOne','params','disposition','Unmanaged.','Forbidden.','catch','headers','authorization','startsWith','find','authenticate','pass','json','Wrong\x20credentials.','Bearer','status','query','apikey','getUuid','then','User','Setting','allowedLoginAttempts','blockDuration','isEqual','apiKeyNonce','nonce','API\x20access\x20key\x20is\x20not\x20valid\x20anymore','disabled','Invalid\x20API\x20access\x20key','add','minutes','Unknown\x20authorization\x20format','User\x20object\x20not\x20found.','update','signToken','setTokenCookie','It\x20looks\x20like\x20you\x20aren\x27t\x20logged\x20in,\x20please\x20try\x20again.','cookie','motion.token','/dashboards/general','send','retrieveApiKey','isNil','apiKeyIat','generateApiKey','Please\x20use\x20the\x20previous\x20API\x20access\x20key\x20to\x20generate\x20a\x20new\x20one','validatePasswordPattern','test','Sequelize','The\x20password\x20must\x20be\x20at\x20least\x208\x20characters\x20long\x20and\x20have\x201\x20lowercase\x20character,\x201\x20uppercase\x20character,\x201\x20number\x20and\x201\x20special\x20character\x20~!@#$%^&-_=+[{]}.','decryptString','toLowerCase','format','The\x20password\x20must\x20be\x20different\x20from\x20the\x20previous\x20%d\x20passwords.\x20Please\x20choose\x20another\x20one.','The\x20password\x20must\x20be\x20different\x20from\x20the\x20last\x20one.\x20Please\x20choose\x20another\x20one.','split','unshift','encryptString','join','sign','secret','payload','options','promisify','verify','session','randomBytes','hex','floor','toString','HS512','../../mysqldb','../../config/license/util','../encryptor','lodash','jsonwebtoken','basic-auth','crypto'];(function(_0x34eb2a,_0x2dde38){var _0x3e96b8=function(_0x34e2d8){while(--_0x34e2d8){_0x34eb2a['push'](_0x34eb2a['shift']());}};_0x3e96b8(++_0x2dde38);}(_0xa6d5,0x6a));var _0x5a6d=function(_0x479da8,_0x4c6112){_0x479da8=_0x479da8-0x0;var _0x35b643=_0xa6d5[_0x479da8];return _0x35b643;};'use strict';var db=require(_0x5a6d('0x0'))['db'];var config=require('../../config/environment');var hardwareConf=require('../../config/license/hardware');var licenseUtil=require(_0x5a6d('0x1'));var encryptor=require(_0x5a6d('0x2'));var _=require(_0x5a6d('0x3'));var jwt=require(_0x5a6d('0x4'));var expressJwt=require('express-jwt');var compose=require('composable-middleware');var basicAuth=require(_0x5a6d('0x5'));var crypto=require(_0x5a6d('0x6'));var BPromise=require(_0x5a6d('0x7'));var util=require(_0x5a6d('0x8'));var moment=require(_0x5a6d('0x9'));var validateJwt=expressJwt({'secret':config[_0x5a6d('0xa')]['session']});var userAttributes=['id',_0x5a6d('0xb'),_0x5a6d('0xc'),_0x5a6d('0xd'),_0x5a6d('0xe'),_0x5a6d('0xf'),_0x5a6d('0x10'),_0x5a6d('0x11'),'md5secret','voicePause',_0x5a6d('0x12'),_0x5a6d('0x13'),'faxPause','smsPause',_0x5a6d('0x14'),'pauseType','showWebBar','lastLoginAt',_0x5a6d('0x15'),_0x5a6d('0x16'),_0x5a6d('0x17'),_0x5a6d('0x18'),_0x5a6d('0x19'),'phoneBarAutoAnswer',_0x5a6d('0x1a'),'phoneBarDnd',_0x5a6d('0x1b'),_0x5a6d('0x1c'),'phoneBarEnableSettings',_0x5a6d('0x1d'),_0x5a6d('0x1e'),_0x5a6d('0x1f'),_0x5a6d('0x20'),_0x5a6d('0x21'),_0x5a6d('0x22'),_0x5a6d('0x23'),_0x5a6d('0x24')];exports[_0x5a6d('0x25')]=function(){return this[_0x5a6d('0x26')](!![])[_0x5a6d('0x27')](function(_0x1c30a2,_0x17280e,_0x593597){if(_0x1c30a2[_0x5a6d('0x28')]){_0x593597();}else{return db['ChatInteraction'][_0x5a6d('0x29')]({'where':{'id':_0x1c30a2[_0x5a6d('0x2a')]['id']},'attributes':['id','closed',_0x5a6d('0x2b')],'raw':!![]})['then'](function(_0x3c9198){if(_0x3c9198&&_0x3c9198['closed']){return _0x17280e['status'](_0x3c9198[_0x5a6d('0x2b')]==='unmanaged'?0x195:0x193)['json']({'message':_0x3c9198['disposition']==='unmanaged'?_0x5a6d('0x2c'):_0x5a6d('0x2d')});}else{_0x593597();}})[_0x5a6d('0x2e')](function(_0x141be4){_0x593597(_0x141be4);});}});};exports[_0x5a6d('0x26')]=function isAuthenticated(_0x13333e){return compose()[_0x5a6d('0x27')](function(_0x1209a2,_0x4c46c6,_0x234f31){var _0x2b750b;if(_0x1209a2[_0x5a6d('0x2f')][_0x5a6d('0x30')]){if(_[_0x5a6d('0x31')](_0x1209a2['headers'][_0x5a6d('0x30')],'Basic')){var _0x11c2f5=basicAuth(_0x1209a2);db['User'][_0x5a6d('0x32')]({'where':{'name':_0x11c2f5[_0x5a6d('0xd')]}})['then'](function(_0x1963ea){if(!_0x1963ea||!_0x1963ea[_0x5a6d('0x33')](_0x11c2f5[_0x5a6d('0x34')])){return _0x4c46c6['status'](0x191)[_0x5a6d('0x35')]({'message':_0x5a6d('0x36')});}_0x1209a2['user']={'id':_0x1963ea['id']};_0x234f31();})[_0x5a6d('0x2e')](function(_0x5ebb8a){_0x234f31(_0x5ebb8a);});}else if(_[_0x5a6d('0x31')](_0x1209a2['headers'][_0x5a6d('0x30')],_0x5a6d('0x37'))){validateJwt(_0x1209a2,_0x4c46c6,_0x234f31);}else{if(_0x13333e){_0x234f31();}else{return _0x4c46c6[_0x5a6d('0x38')](0x193)[_0x5a6d('0x35')]({'message':'Unknown\x20authorization\x20format'});}}}else if(_0x1209a2[_0x5a6d('0x39')][_0x5a6d('0x3a')]){try{var _0x17d117={'audience':hardwareConf[_0x5a6d('0x3b')](),'issuer':hardwareConf[_0x5a6d('0x3b')]()};verifyJwt(_0x1209a2[_0x5a6d('0x39')][_0x5a6d('0x3a')],_0x17d117)[_0x5a6d('0x3c')](function(_0x356b35){return db[_0x5a6d('0x3d')][_0x5a6d('0x32')]({'where':{'id':_0x356b35['sub']}})[_0x5a6d('0x3c')](function(_0x5d7b03){_0x2b750b=_0x5d7b03;return db[_0x5a6d('0x3e')][_0x5a6d('0x29')]({'where':{'id':0x1},'attributes':[_0x5a6d('0x3f'),_0x5a6d('0x40')],'raw':!![]});})[_0x5a6d('0x3c')](function(_0x587333){if(!_0x2b750b||!_[_0x5a6d('0x41')](_0x2b750b[_0x5a6d('0x42')],_0x356b35[_0x5a6d('0x43')])){return _0x4c46c6[_0x5a6d('0x38')](0x191)[_0x5a6d('0x35')]({'message':_0x5a6d('0x44')});}if(_0x2b750b[_0x5a6d('0x45')]){return _0x4c46c6[_0x5a6d('0x38')](0x191)[_0x5a6d('0x35')]({'message':_0x5a6d('0x46')});}if(_0x2b750b['blocked']){if(_0x587333['blockDuration']>0x0){if(moment(_0x2b750b['blockedAt'])[_0x5a6d('0x47')](_0x587333['blockDuration'],_0x5a6d('0x48'))>moment()){return _0x4c46c6[_0x5a6d('0x38')](0x191)['json']({'message':_0x5a6d('0x46')});}}else{return _0x4c46c6[_0x5a6d('0x38')](0x191)['json']({'message':_0x5a6d('0x46')});}}_0x1209a2[_0x5a6d('0x28')]={'id':_0x2b750b['id']};_0x234f31();});})[_0x5a6d('0x2e')](function(){return _0x4c46c6[_0x5a6d('0x38')](0x191)['json']({'message':'Invalid\x20API\x20access\x20key'});});}catch(_0x30102e){_0x234f31(_0x30102e);}}else if(_0x13333e){_0x234f31();}else{return _0x4c46c6[_0x5a6d('0x38')](0x193)[_0x5a6d('0x35')]({'message':_0x5a6d('0x49')});}})['use'](function(_0x27ebfa,_0x49a6f4,_0x3e7436){if(_0x27ebfa[_0x5a6d('0x28')]){db[_0x5a6d('0x3d')]['find']({'where':{'id':_0x27ebfa[_0x5a6d('0x28')]['id']},'attributes':userAttributes})[_0x5a6d('0x3c')](function(_0x3801a0){if(!_0x3801a0){return _0x49a6f4[_0x5a6d('0x38')](0x194)[_0x5a6d('0x35')]({'message':'User\x20not\x20found.'});}_0x27ebfa[_0x5a6d('0x28')]=_0x3801a0;_0x3e7436();})['catch'](function(_0x12860a){_0x3e7436(_0x12860a);});}else if(_0x13333e){_0x3e7436();}else{return _0x49a6f4['status'](0x194)[_0x5a6d('0x35')]({'message':_0x5a6d('0x4a')});}});};exports['canUpdate']=function canUpdate(){return compose()[_0x5a6d('0x27')](function(_0x254e1c,_0x1bb487,_0x2c6fbd){return licenseUtil['getLicense']()[_0x5a6d('0x3c')](function(_0x1d6236){if(_0x1d6236[_0x5a6d('0x4b')]){_0x2c6fbd();}else{return _0x1bb487[_0x5a6d('0x38')](0x193)[_0x5a6d('0x35')]({'message':'Forbidden'});}})['catch'](function(_0x43d5a7){_0x2c6fbd(_0x43d5a7);});});};exports['isMiddleware']=function(_0x4a1678,_0xcc1a48,_0x22b35f){_0x4a1678['isMiddleware']=!![];return _0x22b35f();};exports[_0x5a6d('0x4c')]=function signToken(_0x5f4535){return signJwt(_0x5f4535);};exports[_0x5a6d('0x4d')]=function(_0x3093fd,_0x57ca1c){if(!_0x3093fd[_0x5a6d('0x28')]){return _0x57ca1c[_0x5a6d('0x38')](0x194)[_0x5a6d('0x35')]({'message':_0x5a6d('0x4e')});}var _0x553452={'payload':{'id':_0x3093fd[_0x5a6d('0x28')]['id'],'role':_0x3093fd[_0x5a6d('0x28')][_0x5a6d('0xb')]},'options':{'expiresIn':0x15180}};return signJwt(_0x553452)['then'](function(_0x25c056){_0x57ca1c[_0x5a6d('0x4f')](_0x5a6d('0x50'),_0x25c056);_0x57ca1c['redirect'](_0x5a6d('0x51'));})['catch'](function(_0x28d1de){return _0x57ca1c[_0x5a6d('0x38')](0x1f4)[_0x5a6d('0x52')](_0x28d1de);});};exports[_0x5a6d('0x53')]=function(_0x4dda45){if(_[_0x5a6d('0x54')](_0x4dda45[_0x5a6d('0x42')])||_[_0x5a6d('0x54')](_0x4dda45[_0x5a6d('0x55')])){return null;}else{return createJwt(_0x4dda45);}};exports[_0x5a6d('0x56')]=function(_0x32d6e8){_0x32d6e8[_0x5a6d('0x42')]=generateNonce();_0x32d6e8['apiKeyIat']=generateIssuedAt();return createJwt(_0x32d6e8);};exports['regenerateApiKey']=function(_0x13a84b,_0x1a3050){var _0x702ae1=_0x13a84b[_0x5a6d('0x39')][_0x5a6d('0x3a')];if(_0x702ae1){var _0x497ea2={'nonce':_0x1a3050[_0x5a6d('0x42')],'iat':_0x1a3050['apiKeyIat'],'audience':hardwareConf['getUuid'](),'issuer':hardwareConf[_0x5a6d('0x3b')]()};return verifyJwt(_0x702ae1,_0x497ea2)[_0x5a6d('0x3c')](function(){return generateApiKey(_0x1a3050);});}else{throw{'message':_0x5a6d('0x57')};}};exports[_0x5a6d('0x58')]=function(_0x3af0cf){var _0x1bc8b8=new RegExp(/(?=.*[a-z])(?=.*[A-Z])(?=.*[0-9])(?=.*[?!@#\$%\^&\*~\-_=+[{\]\}])(?=.{8,})/);if(!_0x1bc8b8[_0x5a6d('0x59')](_0x3af0cf))throw new db[(_0x5a6d('0x5a'))]['ValidationError'](_0x5a6d('0x5b'));return;};exports['validatePasswordHistory']=function(_0x574348,_0x4b627a,_0xc51ba){var _0x1a18c6=encryptor[_0x5a6d('0x5c')](_0x4b627a)['split'](',');for(var _0x5f0a69=0x0;_0x5f0a69<_0xc51ba;_0x5f0a69++){if(!_0x1a18c6[_0x5f0a69])break;if(_0x574348[_0x5a6d('0x5d')]()===_0x1a18c6[_0x5f0a69][_0x5a6d('0x5d')]()){var _0x29edcb=util[_0x5a6d('0x5e')](_0x5a6d('0x5f'),_0xc51ba);if(_0xc51ba===0x1){_0x29edcb=_0x5a6d('0x60');}throw new db[(_0x5a6d('0x5a'))]['ValidationError'](_0x29edcb);}}return;};exports['updatePasswordsHistory']=function(_0x2d71f4,_0x3874d1){var _0x5f4082=_0x3874d1?encryptor['decryptString'](_0x3874d1)[_0x5a6d('0x61')](','):[];if(_0x5f4082['length']===0x5){_0x5f4082['splice'](-0x1,0x1);}_0x5f4082[_0x5a6d('0x62')](_0x2d71f4);return encryptor[_0x5a6d('0x63')](_0x5f4082[_0x5a6d('0x64')](','));};function signJwt(_0x3f1329){var _0x6726dc=BPromise['promisify'](jwt[_0x5a6d('0x65')],{'context':jwt});var _0x179728=_0x3f1329[_0x5a6d('0x66')]||config[_0x5a6d('0xa')]['session'];return new BPromise(function(_0x3ddd14,_0x4da287){_0x6726dc(_0x3f1329[_0x5a6d('0x67')],_0x179728,_0x3f1329[_0x5a6d('0x68')])[_0x5a6d('0x3c')](function(_0x3ab9e2){_0x3ddd14(_0x3ab9e2);})['catch'](function(_0x1dbaa0){_0x4da287(_0x1dbaa0);});});}function verifyJwt(_0x5afeb7,_0x19ede4,_0x53e03f){var _0x44f56c=BPromise[_0x5a6d('0x69')](jwt[_0x5a6d('0x6a')],{'context':jwt});var _0x135ddc=_0x53e03f||config[_0x5a6d('0xa')][_0x5a6d('0x6b')];return new BPromise(function(_0x100865,_0x298dc1){_0x44f56c(_0x5afeb7,_0x135ddc,_0x19ede4)[_0x5a6d('0x3c')](function(_0x309789){_0x100865(_0x309789);})[_0x5a6d('0x2e')](function(_0x46f2ac){_0x298dc1(_0x46f2ac);});});}function generateNonce(){return crypto[_0x5a6d('0x6c')](0x10)['toString'](_0x5a6d('0x6d'));}function generateIssuedAt(){return Math[_0x5a6d('0x6e')](Date['now']()/0x3e8)[_0x5a6d('0x6f')]();}function createJwt(_0x28c970){var _0x3762ee={'payload':{'iat':_0x28c970['apiKeyIat'],'nonce':_0x28c970[_0x5a6d('0x42')]},'options':{'algorithm':_0x5a6d('0x70'),'subject':_0x28c970['id'][_0x5a6d('0x6f')](),'issuer':hardwareConf[_0x5a6d('0x3b')](),'audience':hardwareConf['getUuid']()}};return signJwt(_0x3762ee)[_0x5a6d('0x3c')](function(_0x40ed9b){return{'iat':_0x28c970[_0x5a6d('0x55')],'nonce':_0x28c970[_0x5a6d('0x42')],'token':_0x40ed9b};});}