Built motion from commit 3e059bc2.|2.5.32
[motion2.git] / server / components / auth / service.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x30a1=['splice','unshift','join','sign','options','promisify','randomBytes','toString','hex','../../mysqldb','../../config/license/hardware','../../config/license/util','../encryptor','lodash','jsonwebtoken','express-jwt','basic-auth','crypto','util','moment','secrets','session','role','fullname','internal','email','permissions','md5secret','voicePause','chatPause','mailPause','openchannelPause','pauseType','showWebBar','lastLoginAt','lastPauseAt','crudPermissions','allowmessenger','passwordResetAt','phoneBarAutoAnswer','phoneBarAutoAnswerDelay','phoneBarEnableDtmfTone','phoneBarEnableSettings','phoneBarExpires','phoneBarRemoteControlPort','hotdesk','interface','userProfileId','privacyEnabled','settingsEnabled','wssPort','downloadVoiceRecordings','downloadOmnichannelInteractions','isChatInteractionAuthorized','findOne','params','disposition','status','unmanaged','catch','use','headers','authorization','startsWith','Basic','User','name','then','authenticate','pass','Wrong\x20credentials.','Bearer','json','query','apikey','getUuid','Setting','allowedLoginAttempts','isEqual','apiKeyNonce','nonce','API\x20access\x20key\x20is\x20not\x20valid\x20anymore','disabled','Invalid\x20API\x20access\x20key','blockDuration','blockedAt','add','minutes','user','Unknown\x20authorization\x20format','find','User\x20not\x20found.','User\x20object\x20not\x20found.','canUpdate','Forbidden','isMiddleware','signToken','setTokenCookie','It\x20looks\x20like\x20you\x20aren\x27t\x20logged\x20in,\x20please\x20try\x20again.','cookie','motion.token','redirect','/dashboards/general','send','retrieveApiKey','isNil','apiKeyIat','generateApiKey','regenerateApiKey','Please\x20use\x20the\x20previous\x20API\x20access\x20key\x20to\x20generate\x20a\x20new\x20one','test','Sequelize','ValidationError','decryptString','split','toLowerCase','format','The\x20password\x20must\x20be\x20different\x20from\x20the\x20last\x20one.\x20Please\x20choose\x20another\x20one.','updatePasswordsHistory','length'];(function(_0x380bac,_0x2d0de8){var _0xa4617a=function(_0xf797b3){while(--_0xf797b3){_0x380bac['push'](_0x380bac['shift']());}};_0xa4617a(++_0x2d0de8);}(_0x30a1,0x81));var _0x130a=function(_0x20a584,_0xe384a5){_0x20a584=_0x20a584-0x0;var _0x4b41a8=_0x30a1[_0x20a584];return _0x4b41a8;};'use strict';var db=require(_0x130a('0x0'))['db'];var config=require('../../config/environment');var hardwareConf=require(_0x130a('0x1'));var licenseUtil=require(_0x130a('0x2'));var encryptor=require(_0x130a('0x3'));var _=require(_0x130a('0x4'));var jwt=require(_0x130a('0x5'));var expressJwt=require(_0x130a('0x6'));var compose=require('composable-middleware');var basicAuth=require(_0x130a('0x7'));var crypto=require(_0x130a('0x8'));var BPromise=require('bluebird');var util=require(_0x130a('0x9'));var moment=require(_0x130a('0xa'));var validateJwt=expressJwt({'secret':config[_0x130a('0xb')][_0x130a('0xc')]});var userAttributes=['id',_0x130a('0xd'),_0x130a('0xe'),'name',_0x130a('0xf'),_0x130a('0x10'),'userpic',_0x130a('0x11'),_0x130a('0x12'),_0x130a('0x13'),_0x130a('0x14'),_0x130a('0x15'),'faxPause','smsPause',_0x130a('0x16'),_0x130a('0x17'),_0x130a('0x18'),_0x130a('0x19'),_0x130a('0x1a'),_0x130a('0x1b'),_0x130a('0x1c'),_0x130a('0x1d'),'alias',_0x130a('0x1e'),_0x130a('0x1f'),'phoneBarDnd','phoneBarEnableRecording',_0x130a('0x20'),_0x130a('0x21'),_0x130a('0x22'),'phoneBarPrefixRequired','phoneBarRemoteControl',_0x130a('0x23'),_0x130a('0x24'),_0x130a('0x25'),_0x130a('0x26'),_0x130a('0x27'),_0x130a('0x28'),_0x130a('0x29'),_0x130a('0x2a'),_0x130a('0x2b'),'downloadAttachments'];exports[_0x130a('0x2c')]=function(){return this['isAuthenticated'](!![])['use'](function(_0x32d643,_0x4ff335,_0x5f2b3b){if(_0x32d643['user']){_0x5f2b3b();}else{return db['ChatInteraction'][_0x130a('0x2d')]({'where':{'id':_0x32d643[_0x130a('0x2e')]['id']},'attributes':['id','closed',_0x130a('0x2f')],'raw':!![]})['then'](function(_0x338199){if(_0x338199&&_0x338199['closed']){return _0x4ff335[_0x130a('0x30')](_0x338199[_0x130a('0x2f')]===_0x130a('0x31')?0x195:0x193)['json']({'message':_0x338199[_0x130a('0x2f')]===_0x130a('0x31')?'Unmanaged.':'Forbidden.'});}else{_0x5f2b3b();}})[_0x130a('0x32')](function(_0x2c55bf){_0x5f2b3b(_0x2c55bf);});}});};exports['isAuthenticated']=function isAuthenticated(_0x32013d){return compose()[_0x130a('0x33')](function(_0x15f4f3,_0x3a6077,_0x30e3d7){var _0xe0a7f0;if(_0x15f4f3[_0x130a('0x34')][_0x130a('0x35')]){if(_[_0x130a('0x36')](_0x15f4f3[_0x130a('0x34')][_0x130a('0x35')],_0x130a('0x37'))){var _0x156ef5=basicAuth(_0x15f4f3);db[_0x130a('0x38')]['find']({'where':{'name':_0x156ef5[_0x130a('0x39')]}})[_0x130a('0x3a')](function(_0x51b64c){if(!_0x51b64c||!_0x51b64c[_0x130a('0x3b')](_0x156ef5[_0x130a('0x3c')])){return _0x3a6077[_0x130a('0x30')](0x191)['json']({'message':_0x130a('0x3d')});}_0x15f4f3['user']={'id':_0x51b64c['id']};_0x30e3d7();})[_0x130a('0x32')](function(_0x11b73d){_0x30e3d7(_0x11b73d);});}else if(_[_0x130a('0x36')](_0x15f4f3[_0x130a('0x34')]['authorization'],_0x130a('0x3e'))){validateJwt(_0x15f4f3,_0x3a6077,_0x30e3d7);}else{if(_0x32013d){_0x30e3d7();}else{return _0x3a6077[_0x130a('0x30')](0x193)[_0x130a('0x3f')]({'message':'Unknown\x20authorization\x20format'});}}}else if(_0x15f4f3[_0x130a('0x40')][_0x130a('0x41')]){try{var _0xcd5632={'audience':hardwareConf[_0x130a('0x42')](),'issuer':hardwareConf[_0x130a('0x42')]()};verifyJwt(_0x15f4f3[_0x130a('0x40')][_0x130a('0x41')],_0xcd5632)['then'](function(_0x3fa0d7){return db['User']['find']({'where':{'id':_0x3fa0d7['sub']}})[_0x130a('0x3a')](function(_0x391c8c){_0xe0a7f0=_0x391c8c;return db[_0x130a('0x43')][_0x130a('0x2d')]({'where':{'id':0x1},'attributes':[_0x130a('0x44'),'blockDuration'],'raw':!![]});})[_0x130a('0x3a')](function(_0x214828){if(!_0xe0a7f0||!_[_0x130a('0x45')](_0xe0a7f0[_0x130a('0x46')],_0x3fa0d7[_0x130a('0x47')])){return _0x3a6077[_0x130a('0x30')](0x191)['json']({'message':_0x130a('0x48')});}if(_0xe0a7f0[_0x130a('0x49')]){return _0x3a6077[_0x130a('0x30')](0x191)['json']({'message':_0x130a('0x4a')});}if(_0xe0a7f0['blocked']){if(_0x214828[_0x130a('0x4b')]>0x0){if(moment(_0xe0a7f0[_0x130a('0x4c')])[_0x130a('0x4d')](_0x214828[_0x130a('0x4b')],_0x130a('0x4e'))>moment()){return _0x3a6077[_0x130a('0x30')](0x191)[_0x130a('0x3f')]({'message':_0x130a('0x4a')});}}else{return _0x3a6077[_0x130a('0x30')](0x191)['json']({'message':_0x130a('0x4a')});}}_0x15f4f3[_0x130a('0x4f')]={'id':_0xe0a7f0['id']};_0x30e3d7();});})[_0x130a('0x32')](function(){return _0x3a6077[_0x130a('0x30')](0x191)[_0x130a('0x3f')]({'message':'Invalid\x20API\x20access\x20key'});});}catch(_0x53f0a7){_0x30e3d7(_0x53f0a7);}}else if(_0x32013d){_0x30e3d7();}else{return _0x3a6077[_0x130a('0x30')](0x193)['json']({'message':_0x130a('0x50')});}})[_0x130a('0x33')](function(_0x1cc8a5,_0x4aa745,_0x3d9551){if(_0x1cc8a5[_0x130a('0x4f')]){db[_0x130a('0x38')][_0x130a('0x51')]({'where':{'id':_0x1cc8a5[_0x130a('0x4f')]['id']},'attributes':userAttributes})[_0x130a('0x3a')](function(_0x328c28){if(!_0x328c28){return _0x4aa745[_0x130a('0x30')](0x194)[_0x130a('0x3f')]({'message':_0x130a('0x52')});}_0x1cc8a5[_0x130a('0x4f')]=_0x328c28;_0x3d9551();})[_0x130a('0x32')](function(_0x1aee91){_0x3d9551(_0x1aee91);});}else if(_0x32013d){_0x3d9551();}else{return _0x4aa745[_0x130a('0x30')](0x194)['json']({'message':_0x130a('0x53')});}});};exports[_0x130a('0x54')]=function canUpdate(){return compose()[_0x130a('0x33')](function(_0x414d0b,_0x3053a7,_0x28573b){return licenseUtil['getLicense']()['then'](function(_0x58ac3c){if(_0x58ac3c['update']){_0x28573b();}else{return _0x3053a7[_0x130a('0x30')](0x193)[_0x130a('0x3f')]({'message':_0x130a('0x55')});}})['catch'](function(_0xb6b939){_0x28573b(_0xb6b939);});});};exports[_0x130a('0x56')]=function(_0x342461,_0x511b50,_0x1eef66){_0x342461[_0x130a('0x56')]=!![];return _0x1eef66();};exports[_0x130a('0x57')]=function signToken(_0x126807){return signJwt(_0x126807);};exports[_0x130a('0x58')]=function(_0x56f7b0,_0x1f50b6){if(!_0x56f7b0[_0x130a('0x4f')]){return _0x1f50b6['status'](0x194)['json']({'message':_0x130a('0x59')});}var _0x33d6d7={'payload':{'id':_0x56f7b0[_0x130a('0x4f')]['id'],'role':_0x56f7b0[_0x130a('0x4f')][_0x130a('0xd')]},'options':{'expiresIn':0x15180}};return signJwt(_0x33d6d7)[_0x130a('0x3a')](function(_0x369a78){_0x1f50b6[_0x130a('0x5a')](_0x130a('0x5b'),_0x369a78);_0x1f50b6[_0x130a('0x5c')](_0x130a('0x5d'));})[_0x130a('0x32')](function(_0x3a93e7){return _0x1f50b6['status'](0x1f4)[_0x130a('0x5e')](_0x3a93e7);});};exports[_0x130a('0x5f')]=function(_0x2089f0){if(_['isNil'](_0x2089f0['apiKeyNonce'])||_[_0x130a('0x60')](_0x2089f0[_0x130a('0x61')])){return null;}else{return createJwt(_0x2089f0);}};exports[_0x130a('0x62')]=function(_0xbf922d){_0xbf922d[_0x130a('0x46')]=generateNonce();_0xbf922d[_0x130a('0x61')]=generateIssuedAt();return createJwt(_0xbf922d);};exports[_0x130a('0x63')]=function(_0x5c6442,_0x5cdb3b){var _0x2ee76b=_0x5c6442['query'][_0x130a('0x41')];if(_0x2ee76b){var _0x238334={'nonce':_0x5cdb3b['apiKeyNonce'],'iat':_0x5cdb3b[_0x130a('0x61')],'audience':hardwareConf[_0x130a('0x42')](),'issuer':hardwareConf['getUuid']()};return verifyJwt(_0x2ee76b,_0x238334)[_0x130a('0x3a')](function(){return generateApiKey(_0x5cdb3b);});}else{throw{'message':_0x130a('0x64')};}};exports['validatePasswordPattern']=function(_0x449c81){var _0x103881=new RegExp(/(?=.*[a-z])(?=.*[A-Z])(?=.*[0-9])(?=.*[?!@#\$%\^&\*~\-_=+[{\]\}])(?=.{8,})/);if(!_0x103881[_0x130a('0x65')](_0x449c81))throw new db[(_0x130a('0x66'))][(_0x130a('0x67'))]('The\x20password\x20must\x20be\x20at\x20least\x208\x20characters\x20long\x20and\x20have\x201\x20lowercase\x20character,\x201\x20uppercase\x20character,\x201\x20number\x20and\x201\x20special\x20character\x20~!@#$%^&-_=+[{]}.');return;};exports['validatePasswordHistory']=function(_0x309868,_0x3b246a,_0x3b19b7){var _0x51772a=encryptor[_0x130a('0x68')](_0x3b246a)[_0x130a('0x69')](',');for(var _0x146320=0x0;_0x146320<_0x3b19b7;_0x146320++){if(!_0x51772a[_0x146320])break;if(_0x309868[_0x130a('0x6a')]()===_0x51772a[_0x146320]['toLowerCase']()){var _0x49ed27=util[_0x130a('0x6b')]('The\x20password\x20must\x20be\x20different\x20from\x20the\x20previous\x20%d\x20passwords.\x20Please\x20choose\x20another\x20one.',_0x3b19b7);if(_0x3b19b7===0x1){_0x49ed27=_0x130a('0x6c');}throw new db['Sequelize'][(_0x130a('0x67'))](_0x49ed27);}}return;};exports[_0x130a('0x6d')]=function(_0x3118eb,_0xbf2d22){var _0x4417f7=_0xbf2d22?encryptor[_0x130a('0x68')](_0xbf2d22)[_0x130a('0x69')](','):[];if(_0x4417f7[_0x130a('0x6e')]===0x5){_0x4417f7[_0x130a('0x6f')](-0x1,0x1);}_0x4417f7[_0x130a('0x70')](_0x3118eb);return encryptor['encryptString'](_0x4417f7[_0x130a('0x71')](','));};function signJwt(_0xfa9d4c){var _0x2a8bce=BPromise['promisify'](jwt[_0x130a('0x72')],{'context':jwt});var _0x31bb45=_0xfa9d4c['secret']||config[_0x130a('0xb')][_0x130a('0xc')];return new BPromise(function(_0x39496e,_0x807396){_0x2a8bce(_0xfa9d4c['payload'],_0x31bb45,_0xfa9d4c[_0x130a('0x73')])[_0x130a('0x3a')](function(_0x14ee66){_0x39496e(_0x14ee66);})['catch'](function(_0x28b41e){_0x807396(_0x28b41e);});});}function verifyJwt(_0x350bf2,_0x48f31b,_0x50b50a){var _0x42ccf9=BPromise[_0x130a('0x74')](jwt['verify'],{'context':jwt});var _0x25baca=_0x50b50a||config[_0x130a('0xb')][_0x130a('0xc')];return new BPromise(function(_0x1c1bc5,_0x137996){_0x42ccf9(_0x350bf2,_0x25baca,_0x48f31b)['then'](function(_0x17e3b6){_0x1c1bc5(_0x17e3b6);})[_0x130a('0x32')](function(_0x5a5b06){_0x137996(_0x5a5b06);});});}function generateNonce(){return crypto[_0x130a('0x75')](0x10)[_0x130a('0x76')](_0x130a('0x77'));}function generateIssuedAt(){return Math['floor'](Date['now']()/0x3e8)[_0x130a('0x76')]();}function createJwt(_0x11e9de){var _0x453239={'payload':{'iat':_0x11e9de[_0x130a('0x61')],'nonce':_0x11e9de[_0x130a('0x46')]},'options':{'algorithm':'HS512','subject':_0x11e9de['id'][_0x130a('0x76')](),'issuer':hardwareConf[_0x130a('0x42')](),'audience':hardwareConf['getUuid']()}};return signJwt(_0x453239)['then'](function(_0x582dac){return{'iat':_0x11e9de[_0x130a('0x61')],'nonce':_0x11e9de['apiKeyNonce'],'token':_0x582dac};});}