Built motion from commit 639a1a7f.|2.6.19
[motion2.git] / server / components / auth / service.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0xa571=['verify','randomBytes','toString','hex','floor','../../mysqldb','../../config/environment','../../config/license/hardware','../../config/license/util','lodash','jsonwebtoken','basic-auth','bluebird','util','moment','secrets','session','role','name','internal','email','permissions','md5secret','voicePause','chatPause','mailPause','faxPause','smsPause','openchannelPause','lastLoginAt','lastPauseAt','crudPermissions','passwordResetAt','alias','phoneBarAutoAnswerDelay','phoneBarEnableRecording','phoneBarEnableDtmfTone','phoneBarEnableSettings','phoneBarExpires','phoneBarRemoteControl','interface','userProfileId','privacyEnabled','wssPort','downloadVoiceRecordings','downloadOmnichannelInteractions','ignorePauseForPreviewCalls','selectRecallMeCampaign','chatAutoanswer','chatAutoanswerDelay','emailAutoanswer','smsAutoanswerDelay','openchannelAutoanswer','openchannelAutoanswerDelay','whatsappAutoanswerDelay','messengerSoundNotification','isChatInteractionAuthorized','isAuthenticated','use','user','ChatInteraction','findOne','params','closed','disposition','then','status','unmanaged','json','Forbidden.','catch','headers','authorization','Basic','find','authenticate','pass','Wrong\x20credentials.','Bearer','Unknown\x20authorization\x20format','query','apikey','getUuid','User','sub','Setting','allowedLoginAttempts','blockDuration','isEqual','apiKeyNonce','nonce','Invalid\x20API\x20access\x20key','blockedAt','add','User\x20not\x20found.','User\x20object\x20not\x20found.','canUpdate','getLicense','Forbidden','isWebrtcLicence','webrtc','isMiddleware','signToken','setTokenCookie','cookie','motion.token','retrieveApiKey','apiKeyIat','generateApiKey','regenerateApiKey','Please\x20use\x20the\x20previous\x20API\x20access\x20key\x20to\x20generate\x20a\x20new\x20one','validatePasswordPattern','The\x20password\x20must\x20be\x20at\x20least\x208\x20characters\x20long\x20and\x20have\x201\x20lowercase\x20character,\x201\x20uppercase\x20character,\x201\x20number\x20and\x201\x20special\x20character\x20~!@#$%^&-_=+[{]}.','decryptString','split','format','The\x20password\x20must\x20be\x20different\x20from\x20the\x20previous\x20%d\x20passwords.\x20Please\x20choose\x20another\x20one.','The\x20password\x20must\x20be\x20different\x20from\x20the\x20last\x20one.\x20Please\x20choose\x20another\x20one.','Sequelize','ValidationError','updatePasswordsHistory','length','splice','unshift','encryptString','promisify','secret','payload','options'];(function(_0x5c5164,_0x13f007){var _0x1ef244=function(_0x4697f9){while(--_0x4697f9){_0x5c5164['push'](_0x5c5164['shift']());}};_0x1ef244(++_0x13f007);}(_0xa571,0x107));var _0x1a57=function(_0x5a851c,_0x472438){_0x5a851c=_0x5a851c-0x0;var _0x27b461=_0xa571[_0x5a851c];return _0x27b461;};'use strict';var db=require(_0x1a57('0x0'))['db'];var config=require(_0x1a57('0x1'));var hardwareConf=require(_0x1a57('0x2'));var licenseUtil=require(_0x1a57('0x3'));var encryptor=require('../encryptor');var _=require(_0x1a57('0x4'));var jwt=require(_0x1a57('0x5'));var expressJwt=require('express-jwt');var compose=require('composable-middleware');var basicAuth=require(_0x1a57('0x6'));var crypto=require('crypto');var BPromise=require(_0x1a57('0x7'));var util=require(_0x1a57('0x8'));var moment=require(_0x1a57('0x9'));var validateJwt=expressJwt({'secret':config[_0x1a57('0xa')][_0x1a57('0xb')]});var userAttributes=['id',_0x1a57('0xc'),'fullname',_0x1a57('0xd'),_0x1a57('0xe'),_0x1a57('0xf'),'userpic',_0x1a57('0x10'),_0x1a57('0x11'),_0x1a57('0x12'),_0x1a57('0x13'),_0x1a57('0x14'),_0x1a57('0x15'),_0x1a57('0x16'),_0x1a57('0x17'),'pauseType','showWebBar',_0x1a57('0x18'),_0x1a57('0x19'),_0x1a57('0x1a'),'allowmessenger',_0x1a57('0x1b'),_0x1a57('0x1c'),'phoneBarAutoAnswer',_0x1a57('0x1d'),'phoneBarDnd',_0x1a57('0x1e'),_0x1a57('0x1f'),_0x1a57('0x20'),_0x1a57('0x21'),'phoneBarPrefixRequired',_0x1a57('0x22'),'phoneBarRemoteControlPort','hotdesk',_0x1a57('0x23'),_0x1a57('0x24'),_0x1a57('0x25'),'settingsEnabled',_0x1a57('0x26'),_0x1a57('0x27'),_0x1a57('0x28'),'downloadAttachments',_0x1a57('0x29'),_0x1a57('0x2a'),_0x1a57('0x2b'),_0x1a57('0x2c'),_0x1a57('0x2d'),'emailAutoanswerDelay','smsAutoanswer',_0x1a57('0x2e'),_0x1a57('0x2f'),_0x1a57('0x30'),'faxAutoanswer','faxAutoanswerDelay','whatsappAutoanswer',_0x1a57('0x31'),_0x1a57('0x32')];exports[_0x1a57('0x33')]=function(){return this[_0x1a57('0x34')](!![])[_0x1a57('0x35')](function(_0x39d3ce,_0x2efa49,_0x2f8b00){if(_0x39d3ce[_0x1a57('0x36')]){_0x2f8b00();}else{return db[_0x1a57('0x37')][_0x1a57('0x38')]({'where':{'id':_0x39d3ce[_0x1a57('0x39')]['id']},'attributes':['id',_0x1a57('0x3a'),_0x1a57('0x3b')],'raw':!![]})[_0x1a57('0x3c')](function(_0x182649){if(_0x182649&&_0x182649[_0x1a57('0x3a')]){return _0x2efa49[_0x1a57('0x3d')](_0x182649[_0x1a57('0x3b')]===_0x1a57('0x3e')?0x195:0x193)[_0x1a57('0x3f')]({'message':_0x182649[_0x1a57('0x3b')]==='unmanaged'?'Unmanaged.':_0x1a57('0x40')});}else{_0x2f8b00();}})[_0x1a57('0x41')](function(_0x545041){_0x2f8b00(_0x545041);});}});};exports[_0x1a57('0x34')]=function isAuthenticated(_0x54f6a5){return compose()[_0x1a57('0x35')](function(_0x4a2901,_0x53bf6e,_0x8179a4){var _0x274fe6;if(_0x4a2901[_0x1a57('0x42')][_0x1a57('0x43')]){if(_['startsWith'](_0x4a2901[_0x1a57('0x42')][_0x1a57('0x43')],_0x1a57('0x44'))){var _0x160536=basicAuth(_0x4a2901);db['User'][_0x1a57('0x45')]({'where':{'name':_0x160536[_0x1a57('0xd')]}})[_0x1a57('0x3c')](function(_0x32f79f){if(!_0x32f79f||!_0x32f79f[_0x1a57('0x46')](_0x160536[_0x1a57('0x47')])){return _0x53bf6e[_0x1a57('0x3d')](0x191)[_0x1a57('0x3f')]({'message':_0x1a57('0x48')});}_0x4a2901['user']={'id':_0x32f79f['id']};_0x8179a4();})[_0x1a57('0x41')](function(_0x1e27b4){_0x8179a4(_0x1e27b4);});}else if(_['startsWith'](_0x4a2901['headers'][_0x1a57('0x43')],_0x1a57('0x49'))){validateJwt(_0x4a2901,_0x53bf6e,_0x8179a4);}else{if(_0x54f6a5){_0x8179a4();}else{return _0x53bf6e[_0x1a57('0x3d')](0x193)[_0x1a57('0x3f')]({'message':_0x1a57('0x4a')});}}}else if(_0x4a2901[_0x1a57('0x4b')][_0x1a57('0x4c')]){try{var _0x41e466={'audience':hardwareConf[_0x1a57('0x4d')](),'issuer':hardwareConf[_0x1a57('0x4d')]()};verifyJwt(_0x4a2901[_0x1a57('0x4b')][_0x1a57('0x4c')],_0x41e466)[_0x1a57('0x3c')](function(_0x1a6231){return db[_0x1a57('0x4e')][_0x1a57('0x45')]({'where':{'id':_0x1a6231[_0x1a57('0x4f')]}})[_0x1a57('0x3c')](function(_0x53432f){_0x274fe6=_0x53432f;return db[_0x1a57('0x50')][_0x1a57('0x38')]({'where':{'id':0x1},'attributes':[_0x1a57('0x51'),_0x1a57('0x52')],'raw':!![]});})[_0x1a57('0x3c')](function(_0xf64cb5){if(!_0x274fe6||!_[_0x1a57('0x53')](_0x274fe6[_0x1a57('0x54')],_0x1a6231[_0x1a57('0x55')])){return _0x53bf6e['status'](0x191)['json']({'message':'API\x20access\x20key\x20is\x20not\x20valid\x20anymore'});}if(_0x274fe6['disabled']){return _0x53bf6e[_0x1a57('0x3d')](0x191)[_0x1a57('0x3f')]({'message':_0x1a57('0x56')});}if(_0x274fe6['blocked']){if(_0xf64cb5[_0x1a57('0x52')]>0x0){if(moment(_0x274fe6[_0x1a57('0x57')])[_0x1a57('0x58')](_0xf64cb5[_0x1a57('0x52')],'minutes')>moment()){return _0x53bf6e[_0x1a57('0x3d')](0x191)['json']({'message':_0x1a57('0x56')});}}else{return _0x53bf6e[_0x1a57('0x3d')](0x191)[_0x1a57('0x3f')]({'message':'Invalid\x20API\x20access\x20key'});}}_0x4a2901[_0x1a57('0x36')]={'id':_0x274fe6['id']};_0x8179a4();});})[_0x1a57('0x41')](function(){return _0x53bf6e[_0x1a57('0x3d')](0x191)[_0x1a57('0x3f')]({'message':_0x1a57('0x56')});});}catch(_0x528ed3){_0x8179a4(_0x528ed3);}}else if(_0x54f6a5){_0x8179a4();}else{return _0x53bf6e[_0x1a57('0x3d')](0x193)['json']({'message':'Unknown\x20authorization\x20format'});}})[_0x1a57('0x35')](function(_0x5b42bd,_0x433878,_0x398c59){if(_0x5b42bd[_0x1a57('0x36')]){db['User'][_0x1a57('0x45')]({'where':{'id':_0x5b42bd[_0x1a57('0x36')]['id']},'attributes':userAttributes})[_0x1a57('0x3c')](function(_0x392217){if(!_0x392217){return _0x433878['status'](0x194)[_0x1a57('0x3f')]({'message':_0x1a57('0x59')});}_0x5b42bd['user']=_0x392217;_0x398c59();})[_0x1a57('0x41')](function(_0x4c0759){_0x398c59(_0x4c0759);});}else if(_0x54f6a5){_0x398c59();}else{return _0x433878['status'](0x194)[_0x1a57('0x3f')]({'message':_0x1a57('0x5a')});}});};exports[_0x1a57('0x5b')]=function canUpdate(){return compose()[_0x1a57('0x35')](function(_0x5c0f5d,_0x44167e,_0xec234d){return licenseUtil[_0x1a57('0x5c')]()[_0x1a57('0x3c')](function(_0x473524){if(_0x473524['update']){_0xec234d();}else{return _0x44167e[_0x1a57('0x3d')](0x193)[_0x1a57('0x3f')]({'message':_0x1a57('0x5d')});}})[_0x1a57('0x41')](function(_0x4e540d){_0xec234d(_0x4e540d);});});};exports[_0x1a57('0x5e')]=function isWebrtcLicence(){return compose()['use'](function(_0x4bbfc3,_0x36f8dc,_0x167b40){return licenseUtil[_0x1a57('0x5c')]()[_0x1a57('0x3c')](function(_0x445df1){if(_0x445df1[_0x1a57('0x5f')]){_0x167b40();}else{return _0x36f8dc[_0x1a57('0x3d')](0x193)[_0x1a57('0x3f')]({'message':_0x1a57('0x5d')});}})[_0x1a57('0x41')](function(_0x136335){_0x167b40(_0x136335);});});};exports[_0x1a57('0x60')]=function(_0x47f9da,_0xf4d056,_0x480aff){_0x47f9da[_0x1a57('0x60')]=!![];return _0x480aff();};exports[_0x1a57('0x61')]=function signToken(_0x38b334){return signJwt(_0x38b334);};exports[_0x1a57('0x62')]=function(_0x323af1,_0x3cbb9e){if(!_0x323af1[_0x1a57('0x36')]){return _0x3cbb9e[_0x1a57('0x3d')](0x194)[_0x1a57('0x3f')]({'message':'It\x20looks\x20like\x20you\x20aren\x27t\x20logged\x20in,\x20please\x20try\x20again.'});}var _0x193b77={'payload':{'id':_0x323af1[_0x1a57('0x36')]['id'],'role':_0x323af1['user'][_0x1a57('0xc')]},'options':{'expiresIn':0x15180}};return signJwt(_0x193b77)[_0x1a57('0x3c')](function(_0x594f94){_0x3cbb9e[_0x1a57('0x63')](_0x1a57('0x64'),_0x594f94);_0x3cbb9e['redirect']('/dashboards/general');})['catch'](function(_0x2c1bac){return _0x3cbb9e[_0x1a57('0x3d')](0x1f4)['send'](_0x2c1bac);});};exports[_0x1a57('0x65')]=function(_0x18267c){if(_['isNil'](_0x18267c['apiKeyNonce'])||_['isNil'](_0x18267c[_0x1a57('0x66')])){return null;}else{return createJwt(_0x18267c);}};exports[_0x1a57('0x67')]=function(_0x431cf5){_0x431cf5[_0x1a57('0x54')]=generateNonce();_0x431cf5[_0x1a57('0x66')]=generateIssuedAt();return createJwt(_0x431cf5);};exports[_0x1a57('0x68')]=function(_0xd64b3a,_0x1f705b){var _0x516aff=_0xd64b3a['query']['apikey'];if(_0x516aff){var _0x5ef58d={'nonce':_0x1f705b['apiKeyNonce'],'iat':_0x1f705b[_0x1a57('0x66')],'audience':hardwareConf[_0x1a57('0x4d')](),'issuer':hardwareConf[_0x1a57('0x4d')]()};return verifyJwt(_0x516aff,_0x5ef58d)[_0x1a57('0x3c')](function(){return generateApiKey(_0x1f705b);});}else{throw{'message':_0x1a57('0x69')};}};exports[_0x1a57('0x6a')]=function(_0xe710e){var _0x3bf7f0=new RegExp(/(?=.*[a-z])(?=.*[A-Z])(?=.*[0-9])(?=.*[?!@#\$%\^&\*~\-_=+[{\]\}])(?=.{8,})/);if(!_0x3bf7f0['test'](_0xe710e))throw new db['Sequelize']['ValidationError'](_0x1a57('0x6b'));return;};exports['validatePasswordHistory']=function(_0x301db9,_0x10c058,_0x408e67){var _0x352aca=encryptor[_0x1a57('0x6c')](_0x10c058)[_0x1a57('0x6d')](',');for(var _0x5a80be=0x0;_0x5a80be<_0x408e67;_0x5a80be++){if(!_0x352aca[_0x5a80be])break;if(_0x301db9['toLowerCase']()===_0x352aca[_0x5a80be]['toLowerCase']()){var _0x4d5b1d=util[_0x1a57('0x6e')](_0x1a57('0x6f'),_0x408e67);if(_0x408e67===0x1){_0x4d5b1d=_0x1a57('0x70');}throw new db[(_0x1a57('0x71'))][(_0x1a57('0x72'))](_0x4d5b1d);}}return;};exports[_0x1a57('0x73')]=function(_0x2ca029,_0x4ab246){var _0x5b691c=_0x4ab246?encryptor[_0x1a57('0x6c')](_0x4ab246)[_0x1a57('0x6d')](','):[];if(_0x5b691c[_0x1a57('0x74')]===0x5){_0x5b691c[_0x1a57('0x75')](-0x1,0x1);}_0x5b691c[_0x1a57('0x76')](_0x2ca029);return encryptor[_0x1a57('0x77')](_0x5b691c['join'](','));};function signJwt(_0x47db75){var _0x3bf6dd=BPromise[_0x1a57('0x78')](jwt['sign'],{'context':jwt});var _0x55c89e=_0x47db75[_0x1a57('0x79')]||config[_0x1a57('0xa')][_0x1a57('0xb')];return new BPromise(function(_0x10ceb8,_0x3ddc7e){_0x3bf6dd(_0x47db75[_0x1a57('0x7a')],_0x55c89e,_0x47db75[_0x1a57('0x7b')])['then'](function(_0x5913cf){_0x10ceb8(_0x5913cf);})[_0x1a57('0x41')](function(_0x69da3c){_0x3ddc7e(_0x69da3c);});});}function verifyJwt(_0x299fb7,_0x2e0ba6,_0x5d92dc){var _0x33092d=BPromise[_0x1a57('0x78')](jwt[_0x1a57('0x7c')],{'context':jwt});var _0x33c8d4=_0x5d92dc||config[_0x1a57('0xa')]['session'];return new BPromise(function(_0x4aa36d,_0x59d0b0){_0x33092d(_0x299fb7,_0x33c8d4,_0x2e0ba6)[_0x1a57('0x3c')](function(_0x223ba5){_0x4aa36d(_0x223ba5);})[_0x1a57('0x41')](function(_0x33ffe5){_0x59d0b0(_0x33ffe5);});});}function generateNonce(){return crypto[_0x1a57('0x7d')](0x10)[_0x1a57('0x7e')](_0x1a57('0x7f'));}function generateIssuedAt(){return Math[_0x1a57('0x80')](Date['now']()/0x3e8)[_0x1a57('0x7e')]();}function createJwt(_0x39399b){var _0x50ff89={'payload':{'iat':_0x39399b['apiKeyIat'],'nonce':_0x39399b[_0x1a57('0x54')]},'options':{'algorithm':'HS512','subject':_0x39399b['id'][_0x1a57('0x7e')](),'issuer':hardwareConf[_0x1a57('0x4d')](),'audience':hardwareConf[_0x1a57('0x4d')]()}};return signJwt(_0x50ff89)[_0x1a57('0x3c')](function(_0x3e7603){return{'iat':_0x39399b[_0x1a57('0x66')],'nonce':_0x39399b[_0x1a57('0x54')],'token':_0x3e7603};});}