Built motion from commit (unavailable).|2.5.10
[motion2.git] / server / components / auth / service.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x3356=['floor','now','HS512','../../config/license/util','../encryptor','lodash','express-jwt','basic-auth','bluebird','util','secrets','role','fullname','name','internal','permissions','md5secret','voicePause','chatPause','mailPause','smsPause','openchannelPause','pauseType','lastLoginAt','lastPauseAt','crudPermissions','allowmessenger','passwordResetAt','phoneBarAutoAnswer','phoneBarAutoAnswerDelay','phoneBarDnd','phoneBarEnableRecording','phoneBarEnableDtmfTone','phoneBarEnableSettings','phoneBarRemoteControlPort','hotdesk','interface','userProfileId','settingsEnabled','isChatInteractionAuthorized','user','ChatInteraction','findOne','params','closed','disposition','then','status','unmanaged','json','isAuthenticated','use','headers','authorization','startsWith','Basic','find','authenticate','pass','Wrong\x20credentials.','catch','Bearer','Unknown\x20authorization\x20format','query','apikey','getUuid','User','sub','isEqual','API\x20access\x20key\x20is\x20not\x20valid\x20anymore','User\x20not\x20found.','User\x20object\x20not\x20found.','canUpdate','getLicense','Forbidden','isMiddleware','signToken','cookie','redirect','/dashboards/general','send','isNil','apiKeyNonce','apiKeyIat','generateApiKey','validatePasswordPattern','test','ValidationError','The\x20password\x20must\x20be\x20at\x20least\x208\x20characters\x20long\x20and\x20have\x201\x20lowercase\x20character,\x201\x20uppercase\x20character,\x201\x20number\x20and\x201\x20special\x20character\x20~!@#$%^&-_=+[{]}.','validatePasswordHistory','decryptString','split','toLowerCase','format','The\x20password\x20must\x20be\x20different\x20from\x20the\x20previous\x20%d\x20passwords.\x20Please\x20choose\x20another\x20one.','Sequelize','updatePasswordsHistory','length','splice','unshift','encryptString','join','sign','secret','session','payload','options','promisify','verify','toString','hex'];(function(_0x4bf24c,_0x4db662){var _0x39359e=function(_0x1e1ffa){while(--_0x1e1ffa){_0x4bf24c['push'](_0x4bf24c['shift']());}};_0x39359e(++_0x4db662);}(_0x3356,0x150));var _0x6335=function(_0x321bb2,_0x202794){_0x321bb2=_0x321bb2-0x0;var _0x9c12ed=_0x3356[_0x321bb2];return _0x9c12ed;};'use strict';var db=require('../../mysqldb')['db'];var config=require('../../config/environment');var hardwareConf=require('../../config/license/hardware');var licenseUtil=require(_0x6335('0x0'));var encryptor=require(_0x6335('0x1'));var _=require(_0x6335('0x2'));var jwt=require('jsonwebtoken');var expressJwt=require(_0x6335('0x3'));var compose=require('composable-middleware');var basicAuth=require(_0x6335('0x4'));var crypto=require('crypto');var BPromise=require(_0x6335('0x5'));var util=require(_0x6335('0x6'));var validateJwt=expressJwt({'secret':config[_0x6335('0x7')]['session']});var userAttributes=['id',_0x6335('0x8'),_0x6335('0x9'),_0x6335('0xa'),_0x6335('0xb'),'email','userpic',_0x6335('0xc'),_0x6335('0xd'),_0x6335('0xe'),_0x6335('0xf'),_0x6335('0x10'),'faxPause',_0x6335('0x11'),_0x6335('0x12'),_0x6335('0x13'),'showWebBar',_0x6335('0x14'),_0x6335('0x15'),_0x6335('0x16'),_0x6335('0x17'),_0x6335('0x18'),'alias',_0x6335('0x19'),_0x6335('0x1a'),_0x6335('0x1b'),_0x6335('0x1c'),_0x6335('0x1d'),_0x6335('0x1e'),'phoneBarExpires','phoneBarPrefixRequired','phoneBarRemoteControl',_0x6335('0x1f'),_0x6335('0x20'),_0x6335('0x21'),_0x6335('0x22'),_0x6335('0x23')];exports[_0x6335('0x24')]=function(){return this['isAuthenticated'](!![])['use'](function(_0x13f7f7,_0x334957,_0x35e558){if(_0x13f7f7[_0x6335('0x25')]){_0x35e558();}else{return db[_0x6335('0x26')][_0x6335('0x27')]({'where':{'id':_0x13f7f7[_0x6335('0x28')]['id']},'attributes':['id',_0x6335('0x29'),_0x6335('0x2a')],'raw':!![]})[_0x6335('0x2b')](function(_0x191b0d){if(_0x191b0d&&_0x191b0d[_0x6335('0x29')]){return _0x334957[_0x6335('0x2c')](_0x191b0d[_0x6335('0x2a')]===_0x6335('0x2d')?0x195:0x193)[_0x6335('0x2e')]({'message':_0x191b0d[_0x6335('0x2a')]===_0x6335('0x2d')?'Unmanaged.':'Forbidden.'});}else{_0x35e558();}})['catch'](function(_0x5b41d4){_0x35e558(_0x5b41d4);});}});};exports[_0x6335('0x2f')]=function isAuthenticated(_0x4864b1){return compose()[_0x6335('0x30')](function(_0x265535,_0x5c5e62,_0x38cd51){if(_0x265535[_0x6335('0x31')][_0x6335('0x32')]){if(_[_0x6335('0x33')](_0x265535['headers'][_0x6335('0x32')],_0x6335('0x34'))){var _0x3885c6=basicAuth(_0x265535);db['User'][_0x6335('0x35')]({'where':{'name':_0x3885c6['name']}})[_0x6335('0x2b')](function(_0x5080ad){if(!_0x5080ad||!_0x5080ad[_0x6335('0x36')](_0x3885c6[_0x6335('0x37')])){return _0x5c5e62[_0x6335('0x2c')](0x191)['json']({'message':_0x6335('0x38')});}_0x265535['user']={'id':_0x5080ad['id']};_0x38cd51();})[_0x6335('0x39')](function(_0x17f777){_0x38cd51(_0x17f777);});}else if(_[_0x6335('0x33')](_0x265535[_0x6335('0x31')][_0x6335('0x32')],_0x6335('0x3a'))){validateJwt(_0x265535,_0x5c5e62,_0x38cd51);}else{if(_0x4864b1){_0x38cd51();}else{return _0x5c5e62[_0x6335('0x2c')](0x193)[_0x6335('0x2e')]({'message':_0x6335('0x3b')});}}}else if(_0x265535[_0x6335('0x3c')][_0x6335('0x3d')]){try{var _0x17fc35={'audience':hardwareConf['getUuid'](),'issuer':hardwareConf[_0x6335('0x3e')]()};verifyJwt(_0x265535['query']['apikey'],_0x17fc35)['then'](function(_0x14f131){return db[_0x6335('0x3f')][_0x6335('0x35')]({'where':{'id':_0x14f131[_0x6335('0x40')]}})[_0x6335('0x2b')](function(_0xd69e1){if(!_0xd69e1||!_[_0x6335('0x41')](_0xd69e1['apiKeyNonce'],_0x14f131['nonce'])){return _0x5c5e62[_0x6335('0x2c')](0x191)[_0x6335('0x2e')]({'message':_0x6335('0x42')});}_0x265535[_0x6335('0x25')]={'id':_0xd69e1['id']};_0x38cd51();});})[_0x6335('0x39')](function(){return _0x5c5e62[_0x6335('0x2c')](0x191)[_0x6335('0x2e')]({'message':'Invalid\x20API\x20access\x20key'});});}catch(_0x37e1fe){_0x38cd51(_0x37e1fe);}}else if(_0x4864b1){_0x38cd51();}else{return _0x5c5e62[_0x6335('0x2c')](0x193)['json']({'message':'Unknown\x20authorization\x20format'});}})[_0x6335('0x30')](function(_0x4aaa0c,_0x263a7e,_0x3c1ed4){if(_0x4aaa0c[_0x6335('0x25')]){db['User'][_0x6335('0x35')]({'where':{'id':_0x4aaa0c[_0x6335('0x25')]['id']},'attributes':userAttributes})['then'](function(_0x4fe030){if(!_0x4fe030){return _0x263a7e[_0x6335('0x2c')](0x194)[_0x6335('0x2e')]({'message':_0x6335('0x43')});}_0x4aaa0c[_0x6335('0x25')]=_0x4fe030;_0x3c1ed4();})[_0x6335('0x39')](function(_0x31f9d8){_0x3c1ed4(_0x31f9d8);});}else if(_0x4864b1){_0x3c1ed4();}else{return _0x263a7e[_0x6335('0x2c')](0x194)[_0x6335('0x2e')]({'message':_0x6335('0x44')});}});};exports[_0x6335('0x45')]=function canUpdate(){return compose()[_0x6335('0x30')](function(_0x285c28,_0x403bbe,_0x220c3b){return licenseUtil[_0x6335('0x46')]()['then'](function(_0xb8dc14){if(_0xb8dc14['update']){_0x220c3b();}else{return _0x403bbe[_0x6335('0x2c')](0x193)[_0x6335('0x2e')]({'message':_0x6335('0x47')});}})[_0x6335('0x39')](function(_0x36a964){_0x220c3b(_0x36a964);});});};exports['isMiddleware']=function(_0x5de61a,_0x1ba3bf,_0x5d5cf4){_0x5de61a[_0x6335('0x48')]=!![];return _0x5d5cf4();};exports[_0x6335('0x49')]=function signToken(_0x420a0f){return signJwt(_0x420a0f);};exports['setTokenCookie']=function(_0x295082,_0x71bd1c){if(!_0x295082[_0x6335('0x25')]){return _0x71bd1c['status'](0x194)[_0x6335('0x2e')]({'message':'It\x20looks\x20like\x20you\x20aren\x27t\x20logged\x20in,\x20please\x20try\x20again.'});}var _0x192d4a={'payload':{'id':_0x295082[_0x6335('0x25')]['id'],'role':_0x295082[_0x6335('0x25')][_0x6335('0x8')]},'options':{'expiresIn':0x15180}};return signJwt(_0x192d4a)['then'](function(_0x4d52b0){_0x71bd1c[_0x6335('0x4a')]('motion.token',_0x4d52b0);_0x71bd1c[_0x6335('0x4b')](_0x6335('0x4c'));})[_0x6335('0x39')](function(_0xb700b6){return _0x71bd1c['status'](0x1f4)[_0x6335('0x4d')](_0xb700b6);});};exports['retrieveApiKey']=function(_0x2363a1){if(_[_0x6335('0x4e')](_0x2363a1[_0x6335('0x4f')])||_[_0x6335('0x4e')](_0x2363a1[_0x6335('0x50')])){return null;}else{return createJwt(_0x2363a1);}};exports[_0x6335('0x51')]=function(_0x29c940){_0x29c940[_0x6335('0x4f')]=generateNonce();_0x29c940[_0x6335('0x50')]=generateIssuedAt();return createJwt(_0x29c940);};exports['regenerateApiKey']=function(_0x324ca1,_0x5e15a2){var _0x12c82b=_0x324ca1['query'][_0x6335('0x3d')];if(_0x12c82b){var _0x53d3d2={'nonce':_0x5e15a2['apiKeyNonce'],'iat':_0x5e15a2[_0x6335('0x50')],'audience':hardwareConf[_0x6335('0x3e')](),'issuer':hardwareConf[_0x6335('0x3e')]()};return verifyJwt(_0x12c82b,_0x53d3d2)[_0x6335('0x2b')](function(){return generateApiKey(_0x5e15a2);});}else{throw{'message':'Please\x20use\x20the\x20previous\x20API\x20access\x20key\x20to\x20generate\x20a\x20new\x20one'};}};exports[_0x6335('0x52')]=function(_0x2024cd){var _0x5b11f8=new RegExp(/(?=.*[a-z])(?=.*[A-Z])(?=.*[0-9])(?=.*[?!@#\$%\^&\*~\-_=+[{\]\}])(?=.{8,})/);if(!_0x5b11f8[_0x6335('0x53')](_0x2024cd))throw new db['Sequelize'][(_0x6335('0x54'))](_0x6335('0x55'));return;};exports[_0x6335('0x56')]=function(_0x4079a8,_0xb53da4,_0x52ec39){var _0x445767=encryptor[_0x6335('0x57')](_0xb53da4)[_0x6335('0x58')](',');for(var _0x5d90e5=0x0;_0x5d90e5<_0x52ec39;_0x5d90e5++){if(!_0x445767[_0x5d90e5])break;if(_0x4079a8[_0x6335('0x59')]()===_0x445767[_0x5d90e5]['toLowerCase']()){var _0x247797=util[_0x6335('0x5a')](_0x6335('0x5b'),_0x52ec39);if(_0x52ec39===0x1){_0x247797='The\x20password\x20must\x20be\x20different\x20from\x20the\x20last\x20one.\x20Please\x20choose\x20another\x20one.';}throw new db[(_0x6335('0x5c'))][(_0x6335('0x54'))](_0x247797);}}return;};exports[_0x6335('0x5d')]=function(_0x4ed8e1,_0x48775f){var _0x281456=_0x48775f?encryptor['decryptString'](_0x48775f)[_0x6335('0x58')](','):[];if(_0x281456[_0x6335('0x5e')]===0x5){_0x281456[_0x6335('0x5f')](-0x1,0x1);}_0x281456[_0x6335('0x60')](_0x4ed8e1);return encryptor[_0x6335('0x61')](_0x281456[_0x6335('0x62')](','));};function signJwt(_0x201682){var _0x3c3b08=BPromise['promisify'](jwt[_0x6335('0x63')],{'context':jwt});var _0x104e2b=_0x201682[_0x6335('0x64')]||config[_0x6335('0x7')][_0x6335('0x65')];return new BPromise(function(_0x17aaf2,_0xab14e9){_0x3c3b08(_0x201682[_0x6335('0x66')],_0x104e2b,_0x201682[_0x6335('0x67')])[_0x6335('0x2b')](function(_0x243a07){_0x17aaf2(_0x243a07);})[_0x6335('0x39')](function(_0x4ecfe6){_0xab14e9(_0x4ecfe6);});});}function verifyJwt(_0x3d6d6b,_0x151ba3,_0x542a5b){var _0x1c539b=BPromise[_0x6335('0x68')](jwt[_0x6335('0x69')],{'context':jwt});var _0x2e2b16=_0x542a5b||config[_0x6335('0x7')][_0x6335('0x65')];return new BPromise(function(_0xd650e,_0x37bea8){_0x1c539b(_0x3d6d6b,_0x2e2b16,_0x151ba3)[_0x6335('0x2b')](function(_0x9580d8){_0xd650e(_0x9580d8);})['catch'](function(_0x24717a){_0x37bea8(_0x24717a);});});}function generateNonce(){return crypto['randomBytes'](0x10)[_0x6335('0x6a')](_0x6335('0x6b'));}function generateIssuedAt(){return Math[_0x6335('0x6c')](Date[_0x6335('0x6d')]()/0x3e8)['toString']();}function createJwt(_0x16edd2){var _0x4cd426={'payload':{'iat':_0x16edd2[_0x6335('0x50')],'nonce':_0x16edd2['apiKeyNonce']},'options':{'algorithm':_0x6335('0x6e'),'subject':_0x16edd2['id']['toString'](),'issuer':hardwareConf[_0x6335('0x3e')](),'audience':hardwareConf[_0x6335('0x3e')]()}};return signJwt(_0x4cd426)[_0x6335('0x2b')](function(_0x4ab35d){return{'iat':_0x16edd2[_0x6335('0x50')],'nonce':_0x16edd2[_0x6335('0x4f')],'token':_0x4ab35d};});}