Built motion from commit 43538d75.|2.5.35
[motion2.git] / server / components / auth / service.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x0d0c=['payload','verify','randomBytes','hex','now','toString','../../mysqldb','../../config/environment','../../config/license/hardware','../../config/license/util','../encryptor','lodash','jsonwebtoken','composable-middleware','crypto','bluebird','util','secrets','session','role','internal','permissions','md5secret','chatPause','mailPause','faxPause','openchannelPause','showWebBar','crudPermissions','allowmessenger','passwordResetAt','phoneBarAutoAnswerDelay','phoneBarDnd','phoneBarEnableRecording','phoneBarEnableDtmfTone','phoneBarExpires','phoneBarPrefixRequired','phoneBarRemoteControl','phoneBarRemoteControlPort','hotdesk','settingsEnabled','wssPort','downloadVoiceRecordings','downloadOmnichannelInteractions','downloadAttachments','isChatInteractionAuthorized','isAuthenticated','use','user','findOne','params','closed','status','disposition','unmanaged','json','Unmanaged.','Forbidden.','catch','headers','authorization','startsWith','User','find','authenticate','pass','Wrong\x20credentials.','Bearer','query','apikey','getUuid','then','Setting','allowedLoginAttempts','blockDuration','isEqual','apiKeyNonce','API\x20access\x20key\x20is\x20not\x20valid\x20anymore','disabled','Invalid\x20API\x20access\x20key','blocked','blockedAt','minutes','Unknown\x20authorization\x20format','User\x20object\x20not\x20found.','canUpdate','getLicense','Forbidden','isMiddleware','signToken','setTokenCookie','It\x20looks\x20like\x20you\x20aren\x27t\x20logged\x20in,\x20please\x20try\x20again.','cookie','motion.token','redirect','/dashboards/general','send','retrieveApiKey','isNil','apiKeyIat','generateApiKey','regenerateApiKey','Please\x20use\x20the\x20previous\x20API\x20access\x20key\x20to\x20generate\x20a\x20new\x20one','validatePasswordPattern','Sequelize','ValidationError','The\x20password\x20must\x20be\x20at\x20least\x208\x20characters\x20long\x20and\x20have\x201\x20lowercase\x20character,\x201\x20uppercase\x20character,\x201\x20number\x20and\x201\x20special\x20character\x20~!@#$%^&-_=+[{]}.','validatePasswordHistory','split','format','The\x20password\x20must\x20be\x20different\x20from\x20the\x20previous\x20%d\x20passwords.\x20Please\x20choose\x20another\x20one.','The\x20password\x20must\x20be\x20different\x20from\x20the\x20last\x20one.\x20Please\x20choose\x20another\x20one.','updatePasswordsHistory','decryptString','length','splice','unshift','encryptString','promisify','sign','secret'];(function(_0x5317b5,_0x4dfd6e){var _0x3b7ce2=function(_0xc146d6){while(--_0xc146d6){_0x5317b5['push'](_0x5317b5['shift']());}};_0x3b7ce2(++_0x4dfd6e);}(_0x0d0c,0x171));var _0xc0d0=function(_0x5e97a9,_0x59e05a){_0x5e97a9=_0x5e97a9-0x0;var _0x5e01f8=_0x0d0c[_0x5e97a9];return _0x5e01f8;};'use strict';var db=require(_0xc0d0('0x0'))['db'];var config=require(_0xc0d0('0x1'));var hardwareConf=require(_0xc0d0('0x2'));var licenseUtil=require(_0xc0d0('0x3'));var encryptor=require(_0xc0d0('0x4'));var _=require(_0xc0d0('0x5'));var jwt=require(_0xc0d0('0x6'));var expressJwt=require('express-jwt');var compose=require(_0xc0d0('0x7'));var basicAuth=require('basic-auth');var crypto=require(_0xc0d0('0x8'));var BPromise=require(_0xc0d0('0x9'));var util=require(_0xc0d0('0xa'));var moment=require('moment');var validateJwt=expressJwt({'secret':config[_0xc0d0('0xb')][_0xc0d0('0xc')]});var userAttributes=['id',_0xc0d0('0xd'),'fullname','name',_0xc0d0('0xe'),'email','userpic',_0xc0d0('0xf'),_0xc0d0('0x10'),'voicePause',_0xc0d0('0x11'),_0xc0d0('0x12'),_0xc0d0('0x13'),'smsPause',_0xc0d0('0x14'),'pauseType',_0xc0d0('0x15'),'lastLoginAt','lastPauseAt',_0xc0d0('0x16'),_0xc0d0('0x17'),_0xc0d0('0x18'),'alias','phoneBarAutoAnswer',_0xc0d0('0x19'),_0xc0d0('0x1a'),_0xc0d0('0x1b'),_0xc0d0('0x1c'),'phoneBarEnableSettings',_0xc0d0('0x1d'),_0xc0d0('0x1e'),_0xc0d0('0x1f'),_0xc0d0('0x20'),_0xc0d0('0x21'),'interface','userProfileId','privacyEnabled',_0xc0d0('0x22'),_0xc0d0('0x23'),_0xc0d0('0x24'),_0xc0d0('0x25'),_0xc0d0('0x26')];exports[_0xc0d0('0x27')]=function(){return this[_0xc0d0('0x28')](!![])[_0xc0d0('0x29')](function(_0x15ae95,_0x11df73,_0x3d4567){if(_0x15ae95[_0xc0d0('0x2a')]){_0x3d4567();}else{return db['ChatInteraction'][_0xc0d0('0x2b')]({'where':{'id':_0x15ae95[_0xc0d0('0x2c')]['id']},'attributes':['id',_0xc0d0('0x2d'),'disposition'],'raw':!![]})['then'](function(_0x54d4cd){if(_0x54d4cd&&_0x54d4cd[_0xc0d0('0x2d')]){return _0x11df73[_0xc0d0('0x2e')](_0x54d4cd[_0xc0d0('0x2f')]===_0xc0d0('0x30')?0x195:0x193)[_0xc0d0('0x31')]({'message':_0x54d4cd['disposition']===_0xc0d0('0x30')?_0xc0d0('0x32'):_0xc0d0('0x33')});}else{_0x3d4567();}})[_0xc0d0('0x34')](function(_0x22245c){_0x3d4567(_0x22245c);});}});};exports[_0xc0d0('0x28')]=function isAuthenticated(_0x146dbe){return compose()[_0xc0d0('0x29')](function(_0x607033,_0x471c39,_0x2c82cd){var _0x1c373a;if(_0x607033[_0xc0d0('0x35')][_0xc0d0('0x36')]){if(_[_0xc0d0('0x37')](_0x607033[_0xc0d0('0x35')][_0xc0d0('0x36')],'Basic')){var _0x2eabe1=basicAuth(_0x607033);db[_0xc0d0('0x38')][_0xc0d0('0x39')]({'where':{'name':_0x2eabe1['name']}})['then'](function(_0x4bd652){if(!_0x4bd652||!_0x4bd652[_0xc0d0('0x3a')](_0x2eabe1[_0xc0d0('0x3b')])){return _0x471c39['status'](0x191)[_0xc0d0('0x31')]({'message':_0xc0d0('0x3c')});}_0x607033['user']={'id':_0x4bd652['id']};_0x2c82cd();})[_0xc0d0('0x34')](function(_0x1d450d){_0x2c82cd(_0x1d450d);});}else if(_[_0xc0d0('0x37')](_0x607033['headers'][_0xc0d0('0x36')],_0xc0d0('0x3d'))){validateJwt(_0x607033,_0x471c39,_0x2c82cd);}else{if(_0x146dbe){_0x2c82cd();}else{return _0x471c39[_0xc0d0('0x2e')](0x193)[_0xc0d0('0x31')]({'message':'Unknown\x20authorization\x20format'});}}}else if(_0x607033[_0xc0d0('0x3e')][_0xc0d0('0x3f')]){try{var _0x2a7675={'audience':hardwareConf[_0xc0d0('0x40')](),'issuer':hardwareConf['getUuid']()};verifyJwt(_0x607033[_0xc0d0('0x3e')]['apikey'],_0x2a7675)[_0xc0d0('0x41')](function(_0x3495fc){return db['User'][_0xc0d0('0x39')]({'where':{'id':_0x3495fc['sub']}})[_0xc0d0('0x41')](function(_0x1926a2){_0x1c373a=_0x1926a2;return db[_0xc0d0('0x42')]['findOne']({'where':{'id':0x1},'attributes':[_0xc0d0('0x43'),_0xc0d0('0x44')],'raw':!![]});})[_0xc0d0('0x41')](function(_0x5c1621){if(!_0x1c373a||!_[_0xc0d0('0x45')](_0x1c373a[_0xc0d0('0x46')],_0x3495fc['nonce'])){return _0x471c39[_0xc0d0('0x2e')](0x191)[_0xc0d0('0x31')]({'message':_0xc0d0('0x47')});}if(_0x1c373a[_0xc0d0('0x48')]){return _0x471c39[_0xc0d0('0x2e')](0x191)['json']({'message':_0xc0d0('0x49')});}if(_0x1c373a[_0xc0d0('0x4a')]){if(_0x5c1621[_0xc0d0('0x44')]>0x0){if(moment(_0x1c373a[_0xc0d0('0x4b')])['add'](_0x5c1621[_0xc0d0('0x44')],_0xc0d0('0x4c'))>moment()){return _0x471c39['status'](0x191)[_0xc0d0('0x31')]({'message':_0xc0d0('0x49')});}}else{return _0x471c39[_0xc0d0('0x2e')](0x191)[_0xc0d0('0x31')]({'message':_0xc0d0('0x49')});}}_0x607033[_0xc0d0('0x2a')]={'id':_0x1c373a['id']};_0x2c82cd();});})[_0xc0d0('0x34')](function(){return _0x471c39[_0xc0d0('0x2e')](0x191)[_0xc0d0('0x31')]({'message':_0xc0d0('0x49')});});}catch(_0x25b465){_0x2c82cd(_0x25b465);}}else if(_0x146dbe){_0x2c82cd();}else{return _0x471c39['status'](0x193)[_0xc0d0('0x31')]({'message':_0xc0d0('0x4d')});}})[_0xc0d0('0x29')](function(_0x3bfe39,_0x2b9e53,_0x15b02b){if(_0x3bfe39[_0xc0d0('0x2a')]){db[_0xc0d0('0x38')][_0xc0d0('0x39')]({'where':{'id':_0x3bfe39[_0xc0d0('0x2a')]['id']},'attributes':userAttributes})[_0xc0d0('0x41')](function(_0x276fa3){if(!_0x276fa3){return _0x2b9e53[_0xc0d0('0x2e')](0x194)['json']({'message':'User\x20not\x20found.'});}_0x3bfe39['user']=_0x276fa3;_0x15b02b();})[_0xc0d0('0x34')](function(_0x2e4a74){_0x15b02b(_0x2e4a74);});}else if(_0x146dbe){_0x15b02b();}else{return _0x2b9e53['status'](0x194)[_0xc0d0('0x31')]({'message':_0xc0d0('0x4e')});}});};exports[_0xc0d0('0x4f')]=function canUpdate(){return compose()[_0xc0d0('0x29')](function(_0x37cfc0,_0x38be41,_0x1f2404){return licenseUtil[_0xc0d0('0x50')]()[_0xc0d0('0x41')](function(_0x3d7a0a){if(_0x3d7a0a['update']){_0x1f2404();}else{return _0x38be41['status'](0x193)['json']({'message':_0xc0d0('0x51')});}})[_0xc0d0('0x34')](function(_0x5f4abe){_0x1f2404(_0x5f4abe);});});};exports[_0xc0d0('0x52')]=function(_0x37aedb,_0x26c0af,_0x580cc4){_0x37aedb['isMiddleware']=!![];return _0x580cc4();};exports[_0xc0d0('0x53')]=function signToken(_0x5c405c){return signJwt(_0x5c405c);};exports[_0xc0d0('0x54')]=function(_0x1bf530,_0x3dfeb2){if(!_0x1bf530[_0xc0d0('0x2a')]){return _0x3dfeb2[_0xc0d0('0x2e')](0x194)[_0xc0d0('0x31')]({'message':_0xc0d0('0x55')});}var _0x5286d8={'payload':{'id':_0x1bf530[_0xc0d0('0x2a')]['id'],'role':_0x1bf530[_0xc0d0('0x2a')][_0xc0d0('0xd')]},'options':{'expiresIn':0x15180}};return signJwt(_0x5286d8)[_0xc0d0('0x41')](function(_0x4a5656){_0x3dfeb2[_0xc0d0('0x56')](_0xc0d0('0x57'),_0x4a5656);_0x3dfeb2[_0xc0d0('0x58')](_0xc0d0('0x59'));})[_0xc0d0('0x34')](function(_0x105aca){return _0x3dfeb2[_0xc0d0('0x2e')](0x1f4)[_0xc0d0('0x5a')](_0x105aca);});};exports[_0xc0d0('0x5b')]=function(_0xe8dee2){if(_[_0xc0d0('0x5c')](_0xe8dee2[_0xc0d0('0x46')])||_[_0xc0d0('0x5c')](_0xe8dee2[_0xc0d0('0x5d')])){return null;}else{return createJwt(_0xe8dee2);}};exports[_0xc0d0('0x5e')]=function(_0x27ab1c){_0x27ab1c[_0xc0d0('0x46')]=generateNonce();_0x27ab1c[_0xc0d0('0x5d')]=generateIssuedAt();return createJwt(_0x27ab1c);};exports[_0xc0d0('0x5f')]=function(_0x1d021f,_0x308af3){var _0x44dedd=_0x1d021f[_0xc0d0('0x3e')][_0xc0d0('0x3f')];if(_0x44dedd){var _0xb5a040={'nonce':_0x308af3[_0xc0d0('0x46')],'iat':_0x308af3[_0xc0d0('0x5d')],'audience':hardwareConf['getUuid'](),'issuer':hardwareConf['getUuid']()};return verifyJwt(_0x44dedd,_0xb5a040)['then'](function(){return generateApiKey(_0x308af3);});}else{throw{'message':_0xc0d0('0x60')};}};exports[_0xc0d0('0x61')]=function(_0x41178e){var _0xe4fc81=new RegExp(/(?=.*[a-z])(?=.*[A-Z])(?=.*[0-9])(?=.*[?!@#\$%\^&\*~\-_=+[{\]\}])(?=.{8,})/);if(!_0xe4fc81['test'](_0x41178e))throw new db[(_0xc0d0('0x62'))][(_0xc0d0('0x63'))](_0xc0d0('0x64'));return;};exports[_0xc0d0('0x65')]=function(_0x331f27,_0x150216,_0x2796f2){var _0x10d710=encryptor['decryptString'](_0x150216)[_0xc0d0('0x66')](',');for(var _0x30c709=0x0;_0x30c709<_0x2796f2;_0x30c709++){if(!_0x10d710[_0x30c709])break;if(_0x331f27['toLowerCase']()===_0x10d710[_0x30c709]['toLowerCase']()){var _0xee81d0=util[_0xc0d0('0x67')](_0xc0d0('0x68'),_0x2796f2);if(_0x2796f2===0x1){_0xee81d0=_0xc0d0('0x69');}throw new db['Sequelize'][(_0xc0d0('0x63'))](_0xee81d0);}}return;};exports[_0xc0d0('0x6a')]=function(_0x56dfb2,_0x47b13f){var _0x16a388=_0x47b13f?encryptor[_0xc0d0('0x6b')](_0x47b13f)['split'](','):[];if(_0x16a388[_0xc0d0('0x6c')]===0x5){_0x16a388[_0xc0d0('0x6d')](-0x1,0x1);}_0x16a388[_0xc0d0('0x6e')](_0x56dfb2);return encryptor[_0xc0d0('0x6f')](_0x16a388['join'](','));};function signJwt(_0x13d475){var _0x568425=BPromise[_0xc0d0('0x70')](jwt[_0xc0d0('0x71')],{'context':jwt});var _0x197e89=_0x13d475[_0xc0d0('0x72')]||config[_0xc0d0('0xb')][_0xc0d0('0xc')];return new BPromise(function(_0x15ad81,_0x5b4497){_0x568425(_0x13d475[_0xc0d0('0x73')],_0x197e89,_0x13d475['options'])['then'](function(_0x287f54){_0x15ad81(_0x287f54);})[_0xc0d0('0x34')](function(_0x541313){_0x5b4497(_0x541313);});});}function verifyJwt(_0x64f59,_0x288d59,_0xa86b5d){var _0x4634e9=BPromise[_0xc0d0('0x70')](jwt[_0xc0d0('0x74')],{'context':jwt});var _0x1ad00a=_0xa86b5d||config['secrets'][_0xc0d0('0xc')];return new BPromise(function(_0x108746,_0xfd27a7){_0x4634e9(_0x64f59,_0x1ad00a,_0x288d59)['then'](function(_0x41b454){_0x108746(_0x41b454);})['catch'](function(_0x4ad851){_0xfd27a7(_0x4ad851);});});}function generateNonce(){return crypto[_0xc0d0('0x75')](0x10)['toString'](_0xc0d0('0x76'));}function generateIssuedAt(){return Math['floor'](Date[_0xc0d0('0x77')]()/0x3e8)[_0xc0d0('0x78')]();}function createJwt(_0x1159c2){var _0x266e55={'payload':{'iat':_0x1159c2[_0xc0d0('0x5d')],'nonce':_0x1159c2[_0xc0d0('0x46')]},'options':{'algorithm':'HS512','subject':_0x1159c2['id'][_0xc0d0('0x78')](),'issuer':hardwareConf[_0xc0d0('0x40')](),'audience':hardwareConf[_0xc0d0('0x40')]()}};return signJwt(_0x266e55)[_0xc0d0('0x41')](function(_0x2f4212){return{'iat':_0x1159c2[_0xc0d0('0x5d')],'nonce':_0x1159c2[_0xc0d0('0x46')],'token':_0x2f4212};});}