Built motion from commit (unavailable).|2.5.3
[motion2.git] / server / components / auth / service.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x83d7=['phoneBarAutoAnswerDelay','phoneBarDnd','phoneBarEnableRecording','phoneBarEnableDtmfTone','phoneBarEnableSettings','phoneBarExpires','phoneBarPrefixRequired','hotdesk','interface','userProfileId','isChatInteractionAuthorized','isAuthenticated','use','user','findOne','params','disposition','then','unmanaged','json','Forbidden.','headers','authorization','startsWith','Basic','User','find','name','authenticate','pass','status','Wrong\x20credentials.','catch','Bearer','getUuid','apikey','sub','isEqual','apiKeyNonce','nonce','API\x20access\x20key\x20is\x20not\x20valid\x20anymore','Unknown\x20authorization\x20format','User\x20not\x20found.','canUpdate','getLicense','update','Forbidden','isMiddleware','signToken','setTokenCookie','It\x20looks\x20like\x20you\x20aren\x27t\x20logged\x20in,\x20please\x20try\x20again.','cookie','redirect','/dashboards/general','send','apiKeyIat','generateApiKey','regenerateApiKey','query','Please\x20use\x20the\x20previous\x20API\x20access\x20key\x20to\x20generate\x20a\x20new\x20one','promisify','payload','options','randomBytes','hex','floor','HS512','toString','../../mysqldb','../../config/environment','../../config/license/hardware','jsonwebtoken','express-jwt','basic-auth','crypto','bluebird','secrets','session','role','fullname','internal','email','userpic','permissions','voicePause','mailPause','smsPause','openchannelPause','pauseType','lastLoginAt','crudPermissions','allowmessenger','alias'];(function(_0x3899d1,_0x4aa04c){var _0xeb4a7d=function(_0x3ea5ee){while(--_0x3ea5ee){_0x3899d1['push'](_0x3899d1['shift']());}};_0xeb4a7d(++_0x4aa04c);}(_0x83d7,0x1b8));var _0x783d=function(_0x2cc594,_0x4d727b){_0x2cc594=_0x2cc594-0x0;var _0x4abff7=_0x83d7[_0x2cc594];return _0x4abff7;};'use strict';var db=require(_0x783d('0x0'))['db'];var config=require(_0x783d('0x1'));var hardwareConf=require(_0x783d('0x2'));var _=require('lodash');var jwt=require(_0x783d('0x3'));var expressJwt=require(_0x783d('0x4'));var compose=require('composable-middleware');var basicAuth=require(_0x783d('0x5'));var crypto=require(_0x783d('0x6'));var BPromise=require(_0x783d('0x7'));var validateJwt=expressJwt({'secret':config[_0x783d('0x8')][_0x783d('0x9')]});var userAttributes=['id',_0x783d('0xa'),_0x783d('0xb'),'name',_0x783d('0xc'),_0x783d('0xd'),_0x783d('0xe'),_0x783d('0xf'),'md5secret',_0x783d('0x10'),'chatPause',_0x783d('0x11'),'faxPause',_0x783d('0x12'),_0x783d('0x13'),_0x783d('0x14'),'showWebBar',_0x783d('0x15'),'lastPauseAt',_0x783d('0x16'),_0x783d('0x17'),'passwordResetAt',_0x783d('0x18'),'phoneBarAutoAnswer',_0x783d('0x19'),_0x783d('0x1a'),_0x783d('0x1b'),_0x783d('0x1c'),_0x783d('0x1d'),_0x783d('0x1e'),_0x783d('0x1f'),'phoneBarRemoteControl','phoneBarRemoteControlPort',_0x783d('0x20'),_0x783d('0x21'),_0x783d('0x22')];exports[_0x783d('0x23')]=function(){return this[_0x783d('0x24')](!![])[_0x783d('0x25')](function(_0x4a2294,_0x34172e,_0x156b57){if(_0x4a2294[_0x783d('0x26')]){_0x156b57();}else{return db['ChatInteraction'][_0x783d('0x27')]({'where':{'id':_0x4a2294[_0x783d('0x28')]['id']},'attributes':['id','closed',_0x783d('0x29')],'raw':!![]})[_0x783d('0x2a')](function(_0x551e54){if(_0x551e54&&_0x551e54['closed']){return _0x34172e['status'](_0x551e54[_0x783d('0x29')]===_0x783d('0x2b')?0x195:0x193)[_0x783d('0x2c')]({'message':_0x551e54[_0x783d('0x29')]==='unmanaged'?'Unmanaged.':_0x783d('0x2d')});}else{_0x156b57();}})['catch'](function(_0x221abc){_0x156b57(_0x221abc);});}});};exports[_0x783d('0x24')]=function isAuthenticated(_0x2f59b5){return compose()[_0x783d('0x25')](function(_0x2a8b18,_0x3b7a08,_0x497df8){if(_0x2a8b18[_0x783d('0x2e')][_0x783d('0x2f')]){if(_[_0x783d('0x30')](_0x2a8b18[_0x783d('0x2e')][_0x783d('0x2f')],_0x783d('0x31'))){var _0x38b389=basicAuth(_0x2a8b18);db[_0x783d('0x32')][_0x783d('0x33')]({'where':{'name':_0x38b389[_0x783d('0x34')]}})[_0x783d('0x2a')](function(_0x2af7ec){if(!_0x2af7ec||!_0x2af7ec[_0x783d('0x35')](_0x38b389[_0x783d('0x36')])){return _0x3b7a08[_0x783d('0x37')](0x191)[_0x783d('0x2c')]({'message':_0x783d('0x38')});}_0x2a8b18[_0x783d('0x26')]={'id':_0x2af7ec['id']};_0x497df8();})[_0x783d('0x39')](function(_0x55da68){_0x497df8(_0x55da68);});}else if(_[_0x783d('0x30')](_0x2a8b18[_0x783d('0x2e')][_0x783d('0x2f')],_0x783d('0x3a'))){validateJwt(_0x2a8b18,_0x3b7a08,_0x497df8);}else{if(_0x2f59b5){_0x497df8();}else{return _0x3b7a08[_0x783d('0x37')](0x193)[_0x783d('0x2c')]({'message':'Unknown\x20authorization\x20format'});}}}else if(_0x2a8b18['query']['apikey']){try{var _0x21a600={'audience':hardwareConf[_0x783d('0x3b')](),'issuer':hardwareConf[_0x783d('0x3b')]()};verifyJwt(_0x2a8b18['query'][_0x783d('0x3c')],_0x21a600)['then'](function(_0x255da6){return db[_0x783d('0x32')]['find']({'where':{'id':_0x255da6[_0x783d('0x3d')]}})['then'](function(_0x2ae86e){if(!_0x2ae86e||!_[_0x783d('0x3e')](_0x2ae86e[_0x783d('0x3f')],_0x255da6[_0x783d('0x40')])){return _0x3b7a08[_0x783d('0x37')](0x191)[_0x783d('0x2c')]({'message':_0x783d('0x41')});}_0x2a8b18[_0x783d('0x26')]={'id':_0x2ae86e['id']};_0x497df8();});})[_0x783d('0x39')](function(){return _0x3b7a08[_0x783d('0x37')](0x191)['json']({'message':'Invalid\x20API\x20access\x20key'});});}catch(_0x48ac71){_0x497df8(_0x48ac71);}}else if(_0x2f59b5){_0x497df8();}else{return _0x3b7a08[_0x783d('0x37')](0x193)[_0x783d('0x2c')]({'message':_0x783d('0x42')});}})['use'](function(_0x13a81f,_0x1789e2,_0x470ad9){if(_0x13a81f['user']){db['User'][_0x783d('0x33')]({'where':{'id':_0x13a81f[_0x783d('0x26')]['id']},'attributes':userAttributes})[_0x783d('0x2a')](function(_0x5918cd){if(!_0x5918cd){return _0x1789e2[_0x783d('0x37')](0x194)[_0x783d('0x2c')]({'message':_0x783d('0x43')});}_0x13a81f[_0x783d('0x26')]=_0x5918cd;_0x470ad9();})['catch'](function(_0x37bf20){_0x470ad9(_0x37bf20);});}else if(_0x2f59b5){_0x470ad9();}else{return _0x1789e2[_0x783d('0x37')](0x194)[_0x783d('0x2c')]({'message':'User\x20object\x20not\x20found.'});}});};exports[_0x783d('0x44')]=function canUpdate(){return compose()['use'](function(_0x5e13d8,_0x2e2a91,_0x1dee8e){return require('../../config/license/util')[_0x783d('0x45')]()[_0x783d('0x2a')](function(_0x5ef017){if(_0x5ef017[_0x783d('0x46')]){_0x1dee8e();}else{return _0x2e2a91['status'](0x193)[_0x783d('0x2c')]({'message':_0x783d('0x47')});}})[_0x783d('0x39')](function(_0x390b70){_0x1dee8e(_0x390b70);});});};exports[_0x783d('0x48')]=function(_0x903a62,_0x3a1474,_0x35f0a4){_0x903a62[_0x783d('0x48')]=!![];return _0x35f0a4();};exports[_0x783d('0x49')]=function signToken(_0x3e10d1){return signJwt(_0x3e10d1);};exports[_0x783d('0x4a')]=function(_0x5177ba,_0x4683be){if(!_0x5177ba[_0x783d('0x26')]){return _0x4683be[_0x783d('0x37')](0x194)[_0x783d('0x2c')]({'message':_0x783d('0x4b')});}var _0x2fca89={'payload':{'id':_0x5177ba[_0x783d('0x26')]['id'],'role':_0x5177ba[_0x783d('0x26')][_0x783d('0xa')]},'options':{'expiresIn':0x15180}};return signJwt(_0x2fca89)[_0x783d('0x2a')](function(_0x2f8f6b){_0x4683be[_0x783d('0x4c')]('motion.token',_0x2f8f6b);_0x4683be[_0x783d('0x4d')](_0x783d('0x4e'));})['catch'](function(_0x552765){return _0x4683be['status'](0x1f4)[_0x783d('0x4f')](_0x552765);});};exports['retrieveApiKey']=function(_0x432840){if(_['isNil'](_0x432840[_0x783d('0x3f')])||_['isNil'](_0x432840[_0x783d('0x50')])){return null;}else{return createJwt(_0x432840);}};exports[_0x783d('0x51')]=function(_0x3e7b64){_0x3e7b64[_0x783d('0x3f')]=generateNonce();_0x3e7b64[_0x783d('0x50')]=generateIssuedAt();return createJwt(_0x3e7b64);};exports[_0x783d('0x52')]=function(_0x3294bf,_0x145dbd){var _0xd94f16=_0x3294bf[_0x783d('0x53')][_0x783d('0x3c')];if(_0xd94f16){var _0x330490={'nonce':_0x145dbd[_0x783d('0x3f')],'iat':_0x145dbd[_0x783d('0x50')],'audience':hardwareConf[_0x783d('0x3b')](),'issuer':hardwareConf['getUuid']()};return verifyJwt(_0xd94f16,_0x330490)[_0x783d('0x2a')](function(){return generateApiKey(_0x145dbd);});}else{throw{'message':_0x783d('0x54')};}};function signJwt(_0x1a9d98){var _0x58bebd=BPromise[_0x783d('0x55')](jwt['sign'],{'context':jwt});var _0x5e67f4=_0x1a9d98['secret']||config[_0x783d('0x8')][_0x783d('0x9')];return new BPromise(function(_0xf0c9b8,_0x52d13e){_0x58bebd(_0x1a9d98[_0x783d('0x56')],_0x5e67f4,_0x1a9d98[_0x783d('0x57')])[_0x783d('0x2a')](function(_0x9b1221){_0xf0c9b8(_0x9b1221);})['catch'](function(_0x4b0859){_0x52d13e(_0x4b0859);});});}function verifyJwt(_0xca72cb,_0x472471,_0x14cef2){var _0x931b4b=BPromise[_0x783d('0x55')](jwt['verify'],{'context':jwt});var _0x15c292=_0x14cef2||config[_0x783d('0x8')][_0x783d('0x9')];return new BPromise(function(_0x1cfabc,_0x38c9f1){_0x931b4b(_0xca72cb,_0x15c292,_0x472471)[_0x783d('0x2a')](function(_0x14fe59){_0x1cfabc(_0x14fe59);})[_0x783d('0x39')](function(_0x1a36fd){_0x38c9f1(_0x1a36fd);});});}function generateNonce(){return crypto[_0x783d('0x58')](0x10)['toString'](_0x783d('0x59'));}function generateIssuedAt(){return Math[_0x783d('0x5a')](Date['now']()/0x3e8)['toString']();}function createJwt(_0x2ef967){var _0x263f87={'payload':{'iat':_0x2ef967[_0x783d('0x50')],'nonce':_0x2ef967[_0x783d('0x3f')]},'options':{'algorithm':_0x783d('0x5b'),'subject':_0x2ef967['id'][_0x783d('0x5c')](),'issuer':hardwareConf[_0x783d('0x3b')](),'audience':hardwareConf[_0x783d('0x3b')]()}};return signJwt(_0x263f87)[_0x783d('0x2a')](function(_0x3aa540){return{'iat':_0x2ef967[_0x783d('0x50')],'nonce':_0x2ef967[_0x783d('0x3f')],'token':_0x3aa540};});}