Built motion from commit 0900f080.|2.5.45
[motion2.git] / server / components / auth / service.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x1649=['crypto','bluebird','util','moment','secrets','session','fullname','name','internal','email','userpic','permissions','md5secret','voicePause','mailPause','faxPause','smsPause','pauseType','showWebBar','lastLoginAt','crudPermissions','allowmessenger','alias','phoneBarAutoAnswer','phoneBarAutoAnswerDelay','phoneBarDnd','phoneBarEnableRecording','phoneBarEnableDtmfTone','phoneBarEnableSettings','phoneBarPrefixRequired','phoneBarRemoteControlPort','hotdesk','interface','userProfileId','privacyEnabled','settingsEnabled','wssPort','downloadVoiceRecordings','downloadOmnichannelInteractions','downloadAttachments','selectRecallMeCampaign','isChatInteractionAuthorized','isAuthenticated','use','disposition','then','status','unmanaged','Unmanaged.','Forbidden.','catch','authorization','startsWith','Basic','User','find','authenticate','json','Wrong\x20credentials.','headers','Bearer','Unknown\x20authorization\x20format','query','apikey','getUuid','sub','Setting','findOne','allowedLoginAttempts','isEqual','apiKeyNonce','nonce','Invalid\x20API\x20access\x20key','blocked','blockDuration','blockedAt','minutes','user','User\x20not\x20found.','User\x20object\x20not\x20found.','getLicense','Forbidden','isWebrtcLicence','isMiddleware','setTokenCookie','It\x20looks\x20like\x20you\x20aren\x27t\x20logged\x20in,\x20please\x20try\x20again.','cookie','motion.token','/dashboards/general','send','isNil','generateApiKey','apiKeyIat','regenerateApiKey','Please\x20use\x20the\x20previous\x20API\x20access\x20key\x20to\x20generate\x20a\x20new\x20one','validatePasswordPattern','test','Sequelize','The\x20password\x20must\x20be\x20at\x20least\x208\x20characters\x20long\x20and\x20have\x201\x20lowercase\x20character,\x201\x20uppercase\x20character,\x201\x20number\x20and\x201\x20special\x20character\x20~!@#$%^&-_=+[{]}.','validatePasswordHistory','split','toLowerCase','format','The\x20password\x20must\x20be\x20different\x20from\x20the\x20previous\x20%d\x20passwords.\x20Please\x20choose\x20another\x20one.','updatePasswordsHistory','decryptString','length','splice','unshift','join','promisify','sign','secret','payload','options','verify','randomBytes','hex','now','toString','HS512','../../mysqldb','../../config/environment','../../config/license/hardware','../../config/license/util','lodash','express-jwt','composable-middleware','basic-auth'];(function(_0x1536ed,_0x1b3489){var _0x487467=function(_0x54ddc6){while(--_0x54ddc6){_0x1536ed['push'](_0x1536ed['shift']());}};_0x487467(++_0x1b3489);}(_0x1649,0x79));var _0x9164=function(_0x59cc66,_0x52af40){_0x59cc66=_0x59cc66-0x0;var _0x1cd88b=_0x1649[_0x59cc66];return _0x1cd88b;};'use strict';var db=require(_0x9164('0x0'))['db'];var config=require(_0x9164('0x1'));var hardwareConf=require(_0x9164('0x2'));var licenseUtil=require(_0x9164('0x3'));var encryptor=require('../encryptor');var _=require(_0x9164('0x4'));var jwt=require('jsonwebtoken');var expressJwt=require(_0x9164('0x5'));var compose=require(_0x9164('0x6'));var basicAuth=require(_0x9164('0x7'));var crypto=require(_0x9164('0x8'));var BPromise=require(_0x9164('0x9'));var util=require(_0x9164('0xa'));var moment=require(_0x9164('0xb'));var validateJwt=expressJwt({'secret':config[_0x9164('0xc')][_0x9164('0xd')]});var userAttributes=['id','role',_0x9164('0xe'),_0x9164('0xf'),_0x9164('0x10'),_0x9164('0x11'),_0x9164('0x12'),_0x9164('0x13'),_0x9164('0x14'),_0x9164('0x15'),'chatPause',_0x9164('0x16'),_0x9164('0x17'),_0x9164('0x18'),'openchannelPause',_0x9164('0x19'),_0x9164('0x1a'),_0x9164('0x1b'),'lastPauseAt',_0x9164('0x1c'),_0x9164('0x1d'),'passwordResetAt',_0x9164('0x1e'),_0x9164('0x1f'),_0x9164('0x20'),_0x9164('0x21'),_0x9164('0x22'),_0x9164('0x23'),_0x9164('0x24'),'phoneBarExpires',_0x9164('0x25'),'phoneBarRemoteControl',_0x9164('0x26'),_0x9164('0x27'),_0x9164('0x28'),_0x9164('0x29'),_0x9164('0x2a'),_0x9164('0x2b'),_0x9164('0x2c'),_0x9164('0x2d'),_0x9164('0x2e'),_0x9164('0x2f'),'ignorePauseForPreviewCalls',_0x9164('0x30')];exports[_0x9164('0x31')]=function(){return this[_0x9164('0x32')](!![])[_0x9164('0x33')](function(_0x38e6b8,_0x1704ff,_0x3b08f3){if(_0x38e6b8['user']){_0x3b08f3();}else{return db['ChatInteraction']['findOne']({'where':{'id':_0x38e6b8['params']['id']},'attributes':['id','closed',_0x9164('0x34')],'raw':!![]})[_0x9164('0x35')](function(_0x1b4b4c){if(_0x1b4b4c&&_0x1b4b4c['closed']){return _0x1704ff[_0x9164('0x36')](_0x1b4b4c['disposition']===_0x9164('0x37')?0x195:0x193)['json']({'message':_0x1b4b4c['disposition']===_0x9164('0x37')?_0x9164('0x38'):_0x9164('0x39')});}else{_0x3b08f3();}})[_0x9164('0x3a')](function(_0x469ea8){_0x3b08f3(_0x469ea8);});}});};exports[_0x9164('0x32')]=function isAuthenticated(_0x135bc0){return compose()[_0x9164('0x33')](function(_0x3d447a,_0x231364,_0x5bcab5){var _0x3f9d0f;if(_0x3d447a['headers'][_0x9164('0x3b')]){if(_[_0x9164('0x3c')](_0x3d447a['headers'][_0x9164('0x3b')],_0x9164('0x3d'))){var _0x29acec=basicAuth(_0x3d447a);db[_0x9164('0x3e')][_0x9164('0x3f')]({'where':{'name':_0x29acec[_0x9164('0xf')]}})[_0x9164('0x35')](function(_0x5bec17){if(!_0x5bec17||!_0x5bec17[_0x9164('0x40')](_0x29acec['pass'])){return _0x231364['status'](0x191)[_0x9164('0x41')]({'message':_0x9164('0x42')});}_0x3d447a['user']={'id':_0x5bec17['id']};_0x5bcab5();})[_0x9164('0x3a')](function(_0x50abe5){_0x5bcab5(_0x50abe5);});}else if(_[_0x9164('0x3c')](_0x3d447a[_0x9164('0x43')][_0x9164('0x3b')],_0x9164('0x44'))){validateJwt(_0x3d447a,_0x231364,_0x5bcab5);}else{if(_0x135bc0){_0x5bcab5();}else{return _0x231364['status'](0x193)['json']({'message':_0x9164('0x45')});}}}else if(_0x3d447a[_0x9164('0x46')][_0x9164('0x47')]){try{var _0x3ee05e={'audience':hardwareConf[_0x9164('0x48')](),'issuer':hardwareConf[_0x9164('0x48')]()};verifyJwt(_0x3d447a[_0x9164('0x46')][_0x9164('0x47')],_0x3ee05e)[_0x9164('0x35')](function(_0x4aad4e){return db[_0x9164('0x3e')][_0x9164('0x3f')]({'where':{'id':_0x4aad4e[_0x9164('0x49')]}})['then'](function(_0x2f66d1){_0x3f9d0f=_0x2f66d1;return db[_0x9164('0x4a')][_0x9164('0x4b')]({'where':{'id':0x1},'attributes':[_0x9164('0x4c'),'blockDuration'],'raw':!![]});})[_0x9164('0x35')](function(_0x36435e){if(!_0x3f9d0f||!_[_0x9164('0x4d')](_0x3f9d0f[_0x9164('0x4e')],_0x4aad4e[_0x9164('0x4f')])){return _0x231364[_0x9164('0x36')](0x191)[_0x9164('0x41')]({'message':'API\x20access\x20key\x20is\x20not\x20valid\x20anymore'});}if(_0x3f9d0f['disabled']){return _0x231364[_0x9164('0x36')](0x191)[_0x9164('0x41')]({'message':_0x9164('0x50')});}if(_0x3f9d0f[_0x9164('0x51')]){if(_0x36435e[_0x9164('0x52')]>0x0){if(moment(_0x3f9d0f[_0x9164('0x53')])['add'](_0x36435e[_0x9164('0x52')],_0x9164('0x54'))>moment()){return _0x231364['status'](0x191)[_0x9164('0x41')]({'message':'Invalid\x20API\x20access\x20key'});}}else{return _0x231364[_0x9164('0x36')](0x191)['json']({'message':_0x9164('0x50')});}}_0x3d447a['user']={'id':_0x3f9d0f['id']};_0x5bcab5();});})[_0x9164('0x3a')](function(){return _0x231364[_0x9164('0x36')](0x191)[_0x9164('0x41')]({'message':_0x9164('0x50')});});}catch(_0x2dcef4){_0x5bcab5(_0x2dcef4);}}else if(_0x135bc0){_0x5bcab5();}else{return _0x231364[_0x9164('0x36')](0x193)[_0x9164('0x41')]({'message':'Unknown\x20authorization\x20format'});}})[_0x9164('0x33')](function(_0x2740fd,_0x38838e,_0x4a2619){if(_0x2740fd[_0x9164('0x55')]){db[_0x9164('0x3e')][_0x9164('0x3f')]({'where':{'id':_0x2740fd[_0x9164('0x55')]['id']},'attributes':userAttributes})[_0x9164('0x35')](function(_0x1b2549){if(!_0x1b2549){return _0x38838e['status'](0x194)[_0x9164('0x41')]({'message':_0x9164('0x56')});}_0x2740fd[_0x9164('0x55')]=_0x1b2549;_0x4a2619();})[_0x9164('0x3a')](function(_0xbb474b){_0x4a2619(_0xbb474b);});}else if(_0x135bc0){_0x4a2619();}else{return _0x38838e[_0x9164('0x36')](0x194)['json']({'message':_0x9164('0x57')});}});};exports['canUpdate']=function canUpdate(){return compose()[_0x9164('0x33')](function(_0xfa6456,_0x1ca475,_0x2a09b7){return licenseUtil[_0x9164('0x58')]()[_0x9164('0x35')](function(_0x3e7334){if(_0x3e7334['update']){_0x2a09b7();}else{return _0x1ca475['status'](0x193)[_0x9164('0x41')]({'message':_0x9164('0x59')});}})[_0x9164('0x3a')](function(_0x133526){_0x2a09b7(_0x133526);});});};exports[_0x9164('0x5a')]=function isWebrtcLicence(){return compose()[_0x9164('0x33')](function(_0x175276,_0x7a30a,_0x3c1425){return licenseUtil[_0x9164('0x58')]()[_0x9164('0x35')](function(_0x2e68c7){if(_0x2e68c7['webrtc']){_0x3c1425();}else{return _0x7a30a[_0x9164('0x36')](0x193)[_0x9164('0x41')]({'message':_0x9164('0x59')});}})[_0x9164('0x3a')](function(_0x38616a){_0x3c1425(_0x38616a);});});};exports['isMiddleware']=function(_0xf8245f,_0x16363,_0x533cea){_0xf8245f[_0x9164('0x5b')]=!![];return _0x533cea();};exports['signToken']=function signToken(_0x11f85b){return signJwt(_0x11f85b);};exports[_0x9164('0x5c')]=function(_0x21547b,_0x250740){if(!_0x21547b[_0x9164('0x55')]){return _0x250740['status'](0x194)[_0x9164('0x41')]({'message':_0x9164('0x5d')});}var _0x227dd4={'payload':{'id':_0x21547b['user']['id'],'role':_0x21547b[_0x9164('0x55')]['role']},'options':{'expiresIn':0x15180}};return signJwt(_0x227dd4)[_0x9164('0x35')](function(_0x6a4b4e){_0x250740[_0x9164('0x5e')](_0x9164('0x5f'),_0x6a4b4e);_0x250740['redirect'](_0x9164('0x60'));})['catch'](function(_0x3403c0){return _0x250740[_0x9164('0x36')](0x1f4)[_0x9164('0x61')](_0x3403c0);});};exports['retrieveApiKey']=function(_0xad9220){if(_['isNil'](_0xad9220[_0x9164('0x4e')])||_[_0x9164('0x62')](_0xad9220['apiKeyIat'])){return null;}else{return createJwt(_0xad9220);}};exports[_0x9164('0x63')]=function(_0x3994a4){_0x3994a4[_0x9164('0x4e')]=generateNonce();_0x3994a4[_0x9164('0x64')]=generateIssuedAt();return createJwt(_0x3994a4);};exports[_0x9164('0x65')]=function(_0x3f71b0,_0x2f2faa){var _0x102166=_0x3f71b0['query'][_0x9164('0x47')];if(_0x102166){var _0x505278={'nonce':_0x2f2faa['apiKeyNonce'],'iat':_0x2f2faa[_0x9164('0x64')],'audience':hardwareConf[_0x9164('0x48')](),'issuer':hardwareConf['getUuid']()};return verifyJwt(_0x102166,_0x505278)[_0x9164('0x35')](function(){return generateApiKey(_0x2f2faa);});}else{throw{'message':_0x9164('0x66')};}};exports[_0x9164('0x67')]=function(_0x4b0635){var _0xc5f456=new RegExp(/(?=.*[a-z])(?=.*[A-Z])(?=.*[0-9])(?=.*[?!@#\$%\^&\*~\-_=+[{\]\}])(?=.{8,})/);if(!_0xc5f456[_0x9164('0x68')](_0x4b0635))throw new db[(_0x9164('0x69'))]['ValidationError'](_0x9164('0x6a'));return;};exports[_0x9164('0x6b')]=function(_0x1eafa8,_0x304f0e,_0x429b50){var _0x45fdd4=encryptor['decryptString'](_0x304f0e)[_0x9164('0x6c')](',');for(var _0x2f16d6=0x0;_0x2f16d6<_0x429b50;_0x2f16d6++){if(!_0x45fdd4[_0x2f16d6])break;if(_0x1eafa8[_0x9164('0x6d')]()===_0x45fdd4[_0x2f16d6][_0x9164('0x6d')]()){var _0xa9cbe9=util[_0x9164('0x6e')](_0x9164('0x6f'),_0x429b50);if(_0x429b50===0x1){_0xa9cbe9='The\x20password\x20must\x20be\x20different\x20from\x20the\x20last\x20one.\x20Please\x20choose\x20another\x20one.';}throw new db[(_0x9164('0x69'))]['ValidationError'](_0xa9cbe9);}}return;};exports[_0x9164('0x70')]=function(_0x482986,_0x21c0b0){var _0x111b2b=_0x21c0b0?encryptor[_0x9164('0x71')](_0x21c0b0)[_0x9164('0x6c')](','):[];if(_0x111b2b[_0x9164('0x72')]===0x5){_0x111b2b[_0x9164('0x73')](-0x1,0x1);}_0x111b2b[_0x9164('0x74')](_0x482986);return encryptor['encryptString'](_0x111b2b[_0x9164('0x75')](','));};function signJwt(_0x34499b){var _0x56630b=BPromise[_0x9164('0x76')](jwt[_0x9164('0x77')],{'context':jwt});var _0xcb2933=_0x34499b[_0x9164('0x78')]||config[_0x9164('0xc')]['session'];return new BPromise(function(_0x52611e,_0x3294f3){_0x56630b(_0x34499b[_0x9164('0x79')],_0xcb2933,_0x34499b[_0x9164('0x7a')])[_0x9164('0x35')](function(_0x42ed32){_0x52611e(_0x42ed32);})[_0x9164('0x3a')](function(_0x457b11){_0x3294f3(_0x457b11);});});}function verifyJwt(_0x25cf69,_0x548653,_0x506bac){var _0x2375a9=BPromise[_0x9164('0x76')](jwt[_0x9164('0x7b')],{'context':jwt});var _0x4657aa=_0x506bac||config[_0x9164('0xc')]['session'];return new BPromise(function(_0x47721e,_0x59516a){_0x2375a9(_0x25cf69,_0x4657aa,_0x548653)[_0x9164('0x35')](function(_0x3a649e){_0x47721e(_0x3a649e);})[_0x9164('0x3a')](function(_0x4e19cf){_0x59516a(_0x4e19cf);});});}function generateNonce(){return crypto[_0x9164('0x7c')](0x10)['toString'](_0x9164('0x7d'));}function generateIssuedAt(){return Math['floor'](Date[_0x9164('0x7e')]()/0x3e8)[_0x9164('0x7f')]();}function createJwt(_0x430643){var _0xc60500={'payload':{'iat':_0x430643[_0x9164('0x64')],'nonce':_0x430643[_0x9164('0x4e')]},'options':{'algorithm':_0x9164('0x80'),'subject':_0x430643['id']['toString'](),'issuer':hardwareConf[_0x9164('0x48')](),'audience':hardwareConf[_0x9164('0x48')]()}};return signJwt(_0xc60500)[_0x9164('0x35')](function(_0x1318f7){return{'iat':_0x430643[_0x9164('0x64')],'nonce':_0x430643[_0x9164('0x4e')],'token':_0x1318f7};});}