428d9c00efa95c73e7397def320450221c38ecb2
[motion2.git] / server / components / auth / service.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x0d1f=['faxPause','openchannelPause','showWebBar','lastLoginAt','crudPermissions','passwordResetAt','alias','phoneBarAutoAnswer','phoneBarAutoAnswerDelay','phoneBarEnableDtmfTone','phoneBarEnableSettings','phoneBarExpires','phoneBarPrefixRequired','phoneBarRemoteControl','hotdesk','interface','settingsEnabled','isChatInteractionAuthorized','isAuthenticated','use','ChatInteraction','params','disposition','then','closed','status','unmanaged','json','Unmanaged.','Forbidden.','catch','headers','authorization','startsWith','Basic','User','authenticate','Unknown\x20authorization\x20format','query','apikey','getUuid','sub','apiKeyNonce','nonce','API\x20access\x20key\x20is\x20not\x20valid\x20anymore','user','Invalid\x20API\x20access\x20key','find','User\x20not\x20found.','getLicense','isMiddleware','signToken','setTokenCookie','It\x20looks\x20like\x20you\x20aren\x27t\x20logged\x20in,\x20please\x20try\x20again.','role','cookie','motion.token','/dashboards/general','send','retrieveApiKey','isNil','apiKeyIat','generateApiKey','regenerateApiKey','Please\x20use\x20the\x20previous\x20API\x20access\x20key\x20to\x20generate\x20a\x20new\x20one','Sequelize','ValidationError','The\x20password\x20must\x20be\x20at\x20least\x208\x20characters\x20long\x20and\x20have\x201\x20lowercase\x20character,\x201\x20uppercase\x20character,\x201\x20number\x20and\x201\x20special\x20character\x20~!@#$%^&-_=+[{]}.','validatePasswordHistory','split','toLowerCase','format','The\x20password\x20must\x20be\x20different\x20from\x20the\x20previous\x20%d\x20passwords.\x20Please\x20choose\x20another\x20one.','The\x20password\x20must\x20be\x20different\x20from\x20the\x20last\x20one.\x20Please\x20choose\x20another\x20one.','updatePasswordsHistory','decryptString','length','splice','unshift','encryptString','join','promisify','sign','secret','payload','options','verify','toString','hex','floor','HS512','../../config/environment','../../config/license/hardware','../encryptor','lodash','jsonwebtoken','express-jwt','composable-middleware','basic-auth','bluebird','util','secrets','name','internal','email','permissions','md5secret','voicePause'];(function(_0x3a88f2,_0xbeb889){var _0x5d38d7=function(_0x3c2f2f){while(--_0x3c2f2f){_0x3a88f2['push'](_0x3a88f2['shift']());}};_0x5d38d7(++_0xbeb889);}(_0x0d1f,0x133));var _0xf0d1=function(_0x36ff00,_0x5aa0e2){_0x36ff00=_0x36ff00-0x0;var _0x519263=_0x0d1f[_0x36ff00];return _0x519263;};'use strict';var db=require('../../mysqldb')['db'];var config=require(_0xf0d1('0x0'));var hardwareConf=require(_0xf0d1('0x1'));var licenseUtil=require('../../config/license/util');var encryptor=require(_0xf0d1('0x2'));var _=require(_0xf0d1('0x3'));var jwt=require(_0xf0d1('0x4'));var expressJwt=require(_0xf0d1('0x5'));var compose=require(_0xf0d1('0x6'));var basicAuth=require(_0xf0d1('0x7'));var crypto=require('crypto');var BPromise=require(_0xf0d1('0x8'));var util=require(_0xf0d1('0x9'));var validateJwt=expressJwt({'secret':config[_0xf0d1('0xa')]['session']});var userAttributes=['id','role','fullname',_0xf0d1('0xb'),_0xf0d1('0xc'),_0xf0d1('0xd'),'userpic',_0xf0d1('0xe'),_0xf0d1('0xf'),_0xf0d1('0x10'),'chatPause','mailPause',_0xf0d1('0x11'),'smsPause',_0xf0d1('0x12'),'pauseType',_0xf0d1('0x13'),_0xf0d1('0x14'),'lastPauseAt',_0xf0d1('0x15'),'allowmessenger',_0xf0d1('0x16'),_0xf0d1('0x17'),_0xf0d1('0x18'),_0xf0d1('0x19'),'phoneBarDnd','phoneBarEnableRecording',_0xf0d1('0x1a'),_0xf0d1('0x1b'),_0xf0d1('0x1c'),_0xf0d1('0x1d'),_0xf0d1('0x1e'),'phoneBarRemoteControlPort',_0xf0d1('0x1f'),_0xf0d1('0x20'),'userProfileId',_0xf0d1('0x21')];exports[_0xf0d1('0x22')]=function(){return this[_0xf0d1('0x23')](!![])[_0xf0d1('0x24')](function(_0x42b359,_0x2c5845,_0x7d1fa5){if(_0x42b359['user']){_0x7d1fa5();}else{return db[_0xf0d1('0x25')]['findOne']({'where':{'id':_0x42b359[_0xf0d1('0x26')]['id']},'attributes':['id','closed',_0xf0d1('0x27')],'raw':!![]})[_0xf0d1('0x28')](function(_0x5baa07){if(_0x5baa07&&_0x5baa07[_0xf0d1('0x29')]){return _0x2c5845[_0xf0d1('0x2a')](_0x5baa07[_0xf0d1('0x27')]===_0xf0d1('0x2b')?0x195:0x193)[_0xf0d1('0x2c')]({'message':_0x5baa07['disposition']===_0xf0d1('0x2b')?_0xf0d1('0x2d'):_0xf0d1('0x2e')});}else{_0x7d1fa5();}})[_0xf0d1('0x2f')](function(_0x26534a){_0x7d1fa5(_0x26534a);});}});};exports[_0xf0d1('0x23')]=function isAuthenticated(_0x3e1249){return compose()['use'](function(_0x2098a8,_0x347693,_0xcbfd8d){if(_0x2098a8[_0xf0d1('0x30')][_0xf0d1('0x31')]){if(_[_0xf0d1('0x32')](_0x2098a8[_0xf0d1('0x30')][_0xf0d1('0x31')],_0xf0d1('0x33'))){var _0x1087ef=basicAuth(_0x2098a8);db[_0xf0d1('0x34')]['find']({'where':{'name':_0x1087ef['name']}})[_0xf0d1('0x28')](function(_0x174e80){if(!_0x174e80||!_0x174e80[_0xf0d1('0x35')](_0x1087ef['pass'])){return _0x347693['status'](0x191)[_0xf0d1('0x2c')]({'message':'Wrong\x20credentials.'});}_0x2098a8['user']={'id':_0x174e80['id']};_0xcbfd8d();})[_0xf0d1('0x2f')](function(_0x27b97b){_0xcbfd8d(_0x27b97b);});}else if(_[_0xf0d1('0x32')](_0x2098a8['headers'][_0xf0d1('0x31')],'Bearer')){validateJwt(_0x2098a8,_0x347693,_0xcbfd8d);}else{if(_0x3e1249){_0xcbfd8d();}else{return _0x347693[_0xf0d1('0x2a')](0x193)[_0xf0d1('0x2c')]({'message':_0xf0d1('0x36')});}}}else if(_0x2098a8[_0xf0d1('0x37')][_0xf0d1('0x38')]){try{var _0x44cb15={'audience':hardwareConf[_0xf0d1('0x39')](),'issuer':hardwareConf['getUuid']()};verifyJwt(_0x2098a8[_0xf0d1('0x37')]['apikey'],_0x44cb15)[_0xf0d1('0x28')](function(_0x5a3185){return db[_0xf0d1('0x34')]['find']({'where':{'id':_0x5a3185[_0xf0d1('0x3a')]}})[_0xf0d1('0x28')](function(_0x4d54a9){if(!_0x4d54a9||!_['isEqual'](_0x4d54a9[_0xf0d1('0x3b')],_0x5a3185[_0xf0d1('0x3c')])){return _0x347693[_0xf0d1('0x2a')](0x191)[_0xf0d1('0x2c')]({'message':_0xf0d1('0x3d')});}_0x2098a8[_0xf0d1('0x3e')]={'id':_0x4d54a9['id']};_0xcbfd8d();});})[_0xf0d1('0x2f')](function(){return _0x347693['status'](0x191)['json']({'message':_0xf0d1('0x3f')});});}catch(_0x3b6a3b){_0xcbfd8d(_0x3b6a3b);}}else if(_0x3e1249){_0xcbfd8d();}else{return _0x347693[_0xf0d1('0x2a')](0x193)[_0xf0d1('0x2c')]({'message':'Unknown\x20authorization\x20format'});}})['use'](function(_0x24337a,_0x28836b,_0x422b23){if(_0x24337a[_0xf0d1('0x3e')]){db['User'][_0xf0d1('0x40')]({'where':{'id':_0x24337a[_0xf0d1('0x3e')]['id']},'attributes':userAttributes})[_0xf0d1('0x28')](function(_0x5bbe48){if(!_0x5bbe48){return _0x28836b['status'](0x194)['json']({'message':_0xf0d1('0x41')});}_0x24337a[_0xf0d1('0x3e')]=_0x5bbe48;_0x422b23();})['catch'](function(_0x4126fd){_0x422b23(_0x4126fd);});}else if(_0x3e1249){_0x422b23();}else{return _0x28836b[_0xf0d1('0x2a')](0x194)[_0xf0d1('0x2c')]({'message':'User\x20object\x20not\x20found.'});}});};exports['canUpdate']=function canUpdate(){return compose()['use'](function(_0x4398c8,_0x236b43,_0x2b25e5){return licenseUtil[_0xf0d1('0x42')]()[_0xf0d1('0x28')](function(_0x196b4d){if(_0x196b4d['update']){_0x2b25e5();}else{return _0x236b43[_0xf0d1('0x2a')](0x193)[_0xf0d1('0x2c')]({'message':'Forbidden'});}})[_0xf0d1('0x2f')](function(_0x2f93bf){_0x2b25e5(_0x2f93bf);});});};exports[_0xf0d1('0x43')]=function(_0x4be8ec,_0x205354,_0x512f3a){_0x4be8ec[_0xf0d1('0x43')]=!![];return _0x512f3a();};exports[_0xf0d1('0x44')]=function signToken(_0x2b3434){return signJwt(_0x2b3434);};exports[_0xf0d1('0x45')]=function(_0x3def16,_0x5c629a){if(!_0x3def16['user']){return _0x5c629a['status'](0x194)[_0xf0d1('0x2c')]({'message':_0xf0d1('0x46')});}var _0x5a1ceb={'payload':{'id':_0x3def16['user']['id'],'role':_0x3def16[_0xf0d1('0x3e')][_0xf0d1('0x47')]},'options':{'expiresIn':0x15180}};return signJwt(_0x5a1ceb)[_0xf0d1('0x28')](function(_0x3b43b8){_0x5c629a[_0xf0d1('0x48')](_0xf0d1('0x49'),_0x3b43b8);_0x5c629a['redirect'](_0xf0d1('0x4a'));})[_0xf0d1('0x2f')](function(_0x4a3a38){return _0x5c629a[_0xf0d1('0x2a')](0x1f4)[_0xf0d1('0x4b')](_0x4a3a38);});};exports[_0xf0d1('0x4c')]=function(_0x65cf93){if(_['isNil'](_0x65cf93['apiKeyNonce'])||_[_0xf0d1('0x4d')](_0x65cf93[_0xf0d1('0x4e')])){return null;}else{return createJwt(_0x65cf93);}};exports[_0xf0d1('0x4f')]=function(_0x15a043){_0x15a043['apiKeyNonce']=generateNonce();_0x15a043[_0xf0d1('0x4e')]=generateIssuedAt();return createJwt(_0x15a043);};exports[_0xf0d1('0x50')]=function(_0x357310,_0x430b4a){var _0x3664f1=_0x357310[_0xf0d1('0x37')]['apikey'];if(_0x3664f1){var _0x209cef={'nonce':_0x430b4a[_0xf0d1('0x3b')],'iat':_0x430b4a[_0xf0d1('0x4e')],'audience':hardwareConf['getUuid'](),'issuer':hardwareConf[_0xf0d1('0x39')]()};return verifyJwt(_0x3664f1,_0x209cef)[_0xf0d1('0x28')](function(){return generateApiKey(_0x430b4a);});}else{throw{'message':_0xf0d1('0x51')};}};exports['validatePasswordPattern']=function(_0x13c8de){var _0x110ddf=new RegExp(/(?=.*[a-z])(?=.*[A-Z])(?=.*[0-9])(?=.*[?!@#\$%\^&\*~\-_=+[{\]\}])(?=.{8,})/);if(!_0x110ddf['test'](_0x13c8de))throw new db[(_0xf0d1('0x52'))][(_0xf0d1('0x53'))](_0xf0d1('0x54'));return;};exports[_0xf0d1('0x55')]=function(_0x2fa8d7,_0x3f93bb,_0x1d2100){var _0x202634=encryptor['decryptString'](_0x3f93bb)[_0xf0d1('0x56')](',');for(var _0x3ff8b7=0x0;_0x3ff8b7<_0x1d2100;_0x3ff8b7++){if(!_0x202634[_0x3ff8b7])break;if(_0x2fa8d7[_0xf0d1('0x57')]()===_0x202634[_0x3ff8b7][_0xf0d1('0x57')]()){var _0x670c42=util[_0xf0d1('0x58')](_0xf0d1('0x59'),_0x1d2100);if(_0x1d2100===0x1){_0x670c42=_0xf0d1('0x5a');}throw new db[(_0xf0d1('0x52'))][(_0xf0d1('0x53'))](_0x670c42);}}return;};exports[_0xf0d1('0x5b')]=function(_0xd1c059,_0x14dc0c){var _0x4ca84a=_0x14dc0c?encryptor[_0xf0d1('0x5c')](_0x14dc0c)[_0xf0d1('0x56')](','):[];if(_0x4ca84a[_0xf0d1('0x5d')]===0x5){_0x4ca84a[_0xf0d1('0x5e')](-0x1,0x1);}_0x4ca84a[_0xf0d1('0x5f')](_0xd1c059);return encryptor[_0xf0d1('0x60')](_0x4ca84a[_0xf0d1('0x61')](','));};function signJwt(_0x28c5a3){var _0x1157f3=BPromise[_0xf0d1('0x62')](jwt[_0xf0d1('0x63')],{'context':jwt});var _0x1173b3=_0x28c5a3[_0xf0d1('0x64')]||config['secrets']['session'];return new BPromise(function(_0x5250cc,_0x4e78a1){_0x1157f3(_0x28c5a3[_0xf0d1('0x65')],_0x1173b3,_0x28c5a3[_0xf0d1('0x66')])['then'](function(_0x2940b6){_0x5250cc(_0x2940b6);})[_0xf0d1('0x2f')](function(_0xacb7f8){_0x4e78a1(_0xacb7f8);});});}function verifyJwt(_0x1ab79d,_0x3d8f2d,_0x1bd162){var _0x343efe=BPromise[_0xf0d1('0x62')](jwt[_0xf0d1('0x67')],{'context':jwt});var _0x5a9adb=_0x1bd162||config[_0xf0d1('0xa')]['session'];return new BPromise(function(_0x223259,_0x1ebcc9){_0x343efe(_0x1ab79d,_0x5a9adb,_0x3d8f2d)['then'](function(_0x1e5069){_0x223259(_0x1e5069);})[_0xf0d1('0x2f')](function(_0xecaf06){_0x1ebcc9(_0xecaf06);});});}function generateNonce(){return crypto['randomBytes'](0x10)[_0xf0d1('0x68')](_0xf0d1('0x69'));}function generateIssuedAt(){return Math[_0xf0d1('0x6a')](Date['now']()/0x3e8)['toString']();}function createJwt(_0x1eab26){var _0x5da310={'payload':{'iat':_0x1eab26['apiKeyIat'],'nonce':_0x1eab26[_0xf0d1('0x3b')]},'options':{'algorithm':_0xf0d1('0x6b'),'subject':_0x1eab26['id']['toString'](),'issuer':hardwareConf[_0xf0d1('0x39')](),'audience':hardwareConf[_0xf0d1('0x39')]()}};return signJwt(_0x5da310)[_0xf0d1('0x28')](function(_0x3ee306){return{'iat':_0x1eab26[_0xf0d1('0x4e')],'nonce':_0x1eab26[_0xf0d1('0x3b')],'token':_0x3ee306};});}