Built motion from commit (unavailable).|2.5.30
[motion2.git] / server / components / auth / service.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x4110=['API\x20access\x20key\x20is\x20not\x20valid\x20anymore','disabled','Invalid\x20API\x20access\x20key','blockedAt','add','minutes','Unknown\x20authorization\x20format','User\x20not\x20found.','User\x20object\x20not\x20found.','canUpdate','getLicense','update','isMiddleware','signToken','setTokenCookie','It\x20looks\x20like\x20you\x20aren\x27t\x20logged\x20in,\x20please\x20try\x20again.','cookie','redirect','/dashboards/general','send','retrieveApiKey','isNil','generateApiKey','apiKeyIat','regenerateApiKey','query','apiKeyNonce','Please\x20use\x20the\x20previous\x20API\x20access\x20key\x20to\x20generate\x20a\x20new\x20one','validatePasswordPattern','test','validatePasswordHistory','decryptString','split','toLowerCase','format','The\x20password\x20must\x20be\x20different\x20from\x20the\x20last\x20one.\x20Please\x20choose\x20another\x20one.','Sequelize','ValidationError','updatePasswordsHistory','length','unshift','encryptString','promisify','sign','secret','secrets','session','payload','options','verify','randomBytes','hex','toString','../../mysqldb','../../config/environment','../../config/license/hardware','../../config/license/util','jsonwebtoken','express-jwt','composable-middleware','basic-auth','crypto','bluebird','moment','role','fullname','internal','userpic','md5secret','voicePause','chatPause','mailPause','faxPause','smsPause','allowmessenger','alias','phoneBarAutoAnswer','phoneBarAutoAnswerDelay','phoneBarDnd','phoneBarEnableRecording','phoneBarEnableDtmfTone','phoneBarEnableSettings','phoneBarExpires','phoneBarPrefixRequired','phoneBarRemoteControl','phoneBarRemoteControlPort','hotdesk','userProfileId','privacyEnabled','settingsEnabled','wssPort','downloadOmnichannelInteractions','downloadAttachments','isAuthenticated','use','user','closed','disposition','then','unmanaged','json','catch','authorization','startsWith','Basic','User','find','authenticate','pass','Wrong\x20credentials.','headers','status','apikey','getUuid','Setting','findOne','allowedLoginAttempts','blockDuration','isEqual'];(function(_0x514c15,_0x486901){var _0x16283e=function(_0x53b7d0){while(--_0x53b7d0){_0x514c15['push'](_0x514c15['shift']());}};_0x16283e(++_0x486901);}(_0x4110,0xac));var _0x0411=function(_0x5e29dc,_0x80e733){_0x5e29dc=_0x5e29dc-0x0;var _0x208b08=_0x4110[_0x5e29dc];return _0x208b08;};'use strict';var db=require(_0x0411('0x0'))['db'];var config=require(_0x0411('0x1'));var hardwareConf=require(_0x0411('0x2'));var licenseUtil=require(_0x0411('0x3'));var encryptor=require('../encryptor');var _=require('lodash');var jwt=require(_0x0411('0x4'));var expressJwt=require(_0x0411('0x5'));var compose=require(_0x0411('0x6'));var basicAuth=require(_0x0411('0x7'));var crypto=require(_0x0411('0x8'));var BPromise=require(_0x0411('0x9'));var util=require('util');var moment=require(_0x0411('0xa'));var validateJwt=expressJwt({'secret':config['secrets']['session']});var userAttributes=['id',_0x0411('0xb'),_0x0411('0xc'),'name',_0x0411('0xd'),'email',_0x0411('0xe'),'permissions',_0x0411('0xf'),_0x0411('0x10'),_0x0411('0x11'),_0x0411('0x12'),_0x0411('0x13'),_0x0411('0x14'),'openchannelPause','pauseType','showWebBar','lastLoginAt','lastPauseAt','crudPermissions',_0x0411('0x15'),'passwordResetAt',_0x0411('0x16'),_0x0411('0x17'),_0x0411('0x18'),_0x0411('0x19'),_0x0411('0x1a'),_0x0411('0x1b'),_0x0411('0x1c'),_0x0411('0x1d'),_0x0411('0x1e'),_0x0411('0x1f'),_0x0411('0x20'),_0x0411('0x21'),'interface',_0x0411('0x22'),_0x0411('0x23'),_0x0411('0x24'),_0x0411('0x25'),'downloadVoiceRecordings',_0x0411('0x26'),_0x0411('0x27')];exports['isChatInteractionAuthorized']=function(){return this[_0x0411('0x28')](!![])[_0x0411('0x29')](function(_0x46a1ce,_0x6a849a,_0x41b24d){if(_0x46a1ce[_0x0411('0x2a')]){_0x41b24d();}else{return db['ChatInteraction']['findOne']({'where':{'id':_0x46a1ce['params']['id']},'attributes':['id',_0x0411('0x2b'),_0x0411('0x2c')],'raw':!![]})[_0x0411('0x2d')](function(_0x2d83d1){if(_0x2d83d1&&_0x2d83d1['closed']){return _0x6a849a['status'](_0x2d83d1['disposition']===_0x0411('0x2e')?0x195:0x193)[_0x0411('0x2f')]({'message':_0x2d83d1[_0x0411('0x2c')]===_0x0411('0x2e')?'Unmanaged.':'Forbidden.'});}else{_0x41b24d();}})[_0x0411('0x30')](function(_0x36abd9){_0x41b24d(_0x36abd9);});}});};exports['isAuthenticated']=function isAuthenticated(_0x52f6bc){return compose()[_0x0411('0x29')](function(_0x9a0dd0,_0x2e47f4,_0x48b176){var _0x1ad432;if(_0x9a0dd0['headers'][_0x0411('0x31')]){if(_[_0x0411('0x32')](_0x9a0dd0['headers']['authorization'],_0x0411('0x33'))){var _0x3e6cb4=basicAuth(_0x9a0dd0);db[_0x0411('0x34')][_0x0411('0x35')]({'where':{'name':_0x3e6cb4['name']}})['then'](function(_0x167755){if(!_0x167755||!_0x167755[_0x0411('0x36')](_0x3e6cb4[_0x0411('0x37')])){return _0x2e47f4['status'](0x191)['json']({'message':_0x0411('0x38')});}_0x9a0dd0[_0x0411('0x2a')]={'id':_0x167755['id']};_0x48b176();})[_0x0411('0x30')](function(_0x3bc7bc){_0x48b176(_0x3bc7bc);});}else if(_[_0x0411('0x32')](_0x9a0dd0[_0x0411('0x39')][_0x0411('0x31')],'Bearer')){validateJwt(_0x9a0dd0,_0x2e47f4,_0x48b176);}else{if(_0x52f6bc){_0x48b176();}else{return _0x2e47f4[_0x0411('0x3a')](0x193)[_0x0411('0x2f')]({'message':'Unknown\x20authorization\x20format'});}}}else if(_0x9a0dd0['query'][_0x0411('0x3b')]){try{var _0x2d534d={'audience':hardwareConf[_0x0411('0x3c')](),'issuer':hardwareConf[_0x0411('0x3c')]()};verifyJwt(_0x9a0dd0['query'][_0x0411('0x3b')],_0x2d534d)['then'](function(_0x4e6785){return db[_0x0411('0x34')][_0x0411('0x35')]({'where':{'id':_0x4e6785['sub']}})[_0x0411('0x2d')](function(_0x4f24f6){_0x1ad432=_0x4f24f6;return db[_0x0411('0x3d')][_0x0411('0x3e')]({'where':{'id':0x1},'attributes':[_0x0411('0x3f'),_0x0411('0x40')],'raw':!![]});})['then'](function(_0x5322a8){if(!_0x1ad432||!_[_0x0411('0x41')](_0x1ad432['apiKeyNonce'],_0x4e6785['nonce'])){return _0x2e47f4[_0x0411('0x3a')](0x191)[_0x0411('0x2f')]({'message':_0x0411('0x42')});}if(_0x1ad432[_0x0411('0x43')]){return _0x2e47f4[_0x0411('0x3a')](0x191)[_0x0411('0x2f')]({'message':_0x0411('0x44')});}if(_0x1ad432['blocked']){if(_0x5322a8[_0x0411('0x40')]>0x0){if(moment(_0x1ad432[_0x0411('0x45')])[_0x0411('0x46')](_0x5322a8[_0x0411('0x40')],_0x0411('0x47'))>moment()){return _0x2e47f4['status'](0x191)[_0x0411('0x2f')]({'message':'Invalid\x20API\x20access\x20key'});}}else{return _0x2e47f4[_0x0411('0x3a')](0x191)[_0x0411('0x2f')]({'message':'Invalid\x20API\x20access\x20key'});}}_0x9a0dd0[_0x0411('0x2a')]={'id':_0x1ad432['id']};_0x48b176();});})['catch'](function(){return _0x2e47f4[_0x0411('0x3a')](0x191)[_0x0411('0x2f')]({'message':_0x0411('0x44')});});}catch(_0x51e095){_0x48b176(_0x51e095);}}else if(_0x52f6bc){_0x48b176();}else{return _0x2e47f4[_0x0411('0x3a')](0x193)[_0x0411('0x2f')]({'message':_0x0411('0x48')});}})[_0x0411('0x29')](function(_0x5b3dc7,_0x2f5094,_0x547e4a){if(_0x5b3dc7[_0x0411('0x2a')]){db[_0x0411('0x34')][_0x0411('0x35')]({'where':{'id':_0x5b3dc7['user']['id']},'attributes':userAttributes})['then'](function(_0x52fa3d){if(!_0x52fa3d){return _0x2f5094['status'](0x194)[_0x0411('0x2f')]({'message':_0x0411('0x49')});}_0x5b3dc7[_0x0411('0x2a')]=_0x52fa3d;_0x547e4a();})[_0x0411('0x30')](function(_0x15a096){_0x547e4a(_0x15a096);});}else if(_0x52f6bc){_0x547e4a();}else{return _0x2f5094[_0x0411('0x3a')](0x194)['json']({'message':_0x0411('0x4a')});}});};exports[_0x0411('0x4b')]=function canUpdate(){return compose()['use'](function(_0x35b6c8,_0x2f39e0,_0x1de5ec){return licenseUtil[_0x0411('0x4c')]()[_0x0411('0x2d')](function(_0x2eacf1){if(_0x2eacf1[_0x0411('0x4d')]){_0x1de5ec();}else{return _0x2f39e0[_0x0411('0x3a')](0x193)[_0x0411('0x2f')]({'message':'Forbidden'});}})[_0x0411('0x30')](function(_0x571cb3){_0x1de5ec(_0x571cb3);});});};exports['isMiddleware']=function(_0x3456b9,_0x3f372e,_0x5435ec){_0x3456b9[_0x0411('0x4e')]=!![];return _0x5435ec();};exports[_0x0411('0x4f')]=function signToken(_0x20c33a){return signJwt(_0x20c33a);};exports[_0x0411('0x50')]=function(_0x237041,_0x457fd8){if(!_0x237041[_0x0411('0x2a')]){return _0x457fd8[_0x0411('0x3a')](0x194)[_0x0411('0x2f')]({'message':_0x0411('0x51')});}var _0x2f73ff={'payload':{'id':_0x237041[_0x0411('0x2a')]['id'],'role':_0x237041[_0x0411('0x2a')][_0x0411('0xb')]},'options':{'expiresIn':0x15180}};return signJwt(_0x2f73ff)[_0x0411('0x2d')](function(_0x1de393){_0x457fd8[_0x0411('0x52')]('motion.token',_0x1de393);_0x457fd8[_0x0411('0x53')](_0x0411('0x54'));})['catch'](function(_0x441479){return _0x457fd8['status'](0x1f4)[_0x0411('0x55')](_0x441479);});};exports[_0x0411('0x56')]=function(_0x23fe6c){if(_['isNil'](_0x23fe6c['apiKeyNonce'])||_[_0x0411('0x57')](_0x23fe6c['apiKeyIat'])){return null;}else{return createJwt(_0x23fe6c);}};exports[_0x0411('0x58')]=function(_0x4fea7a){_0x4fea7a['apiKeyNonce']=generateNonce();_0x4fea7a[_0x0411('0x59')]=generateIssuedAt();return createJwt(_0x4fea7a);};exports[_0x0411('0x5a')]=function(_0x63a72b,_0xa1da0b){var _0x5041e2=_0x63a72b[_0x0411('0x5b')]['apikey'];if(_0x5041e2){var _0x1867d5={'nonce':_0xa1da0b[_0x0411('0x5c')],'iat':_0xa1da0b[_0x0411('0x59')],'audience':hardwareConf[_0x0411('0x3c')](),'issuer':hardwareConf[_0x0411('0x3c')]()};return verifyJwt(_0x5041e2,_0x1867d5)[_0x0411('0x2d')](function(){return generateApiKey(_0xa1da0b);});}else{throw{'message':_0x0411('0x5d')};}};exports[_0x0411('0x5e')]=function(_0x1139b2){var _0x11554b=new RegExp(/(?=.*[a-z])(?=.*[A-Z])(?=.*[0-9])(?=.*[?!@#\$%\^&\*~\-_=+[{\]\}])(?=.{8,})/);if(!_0x11554b[_0x0411('0x5f')](_0x1139b2))throw new db['Sequelize']['ValidationError']('The\x20password\x20must\x20be\x20at\x20least\x208\x20characters\x20long\x20and\x20have\x201\x20lowercase\x20character,\x201\x20uppercase\x20character,\x201\x20number\x20and\x201\x20special\x20character\x20~!@#$%^&-_=+[{]}.');return;};exports[_0x0411('0x60')]=function(_0x14fdc2,_0xf8209d,_0x4991a2){var _0x4460fb=encryptor[_0x0411('0x61')](_0xf8209d)[_0x0411('0x62')](',');for(var _0x120256=0x0;_0x120256<_0x4991a2;_0x120256++){if(!_0x4460fb[_0x120256])break;if(_0x14fdc2[_0x0411('0x63')]()===_0x4460fb[_0x120256]['toLowerCase']()){var _0x4d0a87=util[_0x0411('0x64')]('The\x20password\x20must\x20be\x20different\x20from\x20the\x20previous\x20%d\x20passwords.\x20Please\x20choose\x20another\x20one.',_0x4991a2);if(_0x4991a2===0x1){_0x4d0a87=_0x0411('0x65');}throw new db[(_0x0411('0x66'))][(_0x0411('0x67'))](_0x4d0a87);}}return;};exports[_0x0411('0x68')]=function(_0x2e5415,_0x21c589){var _0x4c49f7=_0x21c589?encryptor[_0x0411('0x61')](_0x21c589)[_0x0411('0x62')](','):[];if(_0x4c49f7[_0x0411('0x69')]===0x5){_0x4c49f7['splice'](-0x1,0x1);}_0x4c49f7[_0x0411('0x6a')](_0x2e5415);return encryptor[_0x0411('0x6b')](_0x4c49f7['join'](','));};function signJwt(_0x32e819){var _0x3bc4f3=BPromise[_0x0411('0x6c')](jwt[_0x0411('0x6d')],{'context':jwt});var _0x48e491=_0x32e819[_0x0411('0x6e')]||config[_0x0411('0x6f')][_0x0411('0x70')];return new BPromise(function(_0x2b5206,_0x4b32c1){_0x3bc4f3(_0x32e819[_0x0411('0x71')],_0x48e491,_0x32e819[_0x0411('0x72')])[_0x0411('0x2d')](function(_0x21328e){_0x2b5206(_0x21328e);})[_0x0411('0x30')](function(_0x12d1fa){_0x4b32c1(_0x12d1fa);});});}function verifyJwt(_0x3dcfd9,_0x1c0e0a,_0x2611b7){var _0x501b6d=BPromise['promisify'](jwt[_0x0411('0x73')],{'context':jwt});var _0xd68b90=_0x2611b7||config[_0x0411('0x6f')]['session'];return new BPromise(function(_0x31fda6,_0x5b2c90){_0x501b6d(_0x3dcfd9,_0xd68b90,_0x1c0e0a)['then'](function(_0x3a6cbb){_0x31fda6(_0x3a6cbb);})[_0x0411('0x30')](function(_0x24d4aa){_0x5b2c90(_0x24d4aa);});});}function generateNonce(){return crypto[_0x0411('0x74')](0x10)['toString'](_0x0411('0x75'));}function generateIssuedAt(){return Math['floor'](Date['now']()/0x3e8)['toString']();}function createJwt(_0x2c1bb7){var _0x2d0f7b={'payload':{'iat':_0x2c1bb7[_0x0411('0x59')],'nonce':_0x2c1bb7[_0x0411('0x5c')]},'options':{'algorithm':'HS512','subject':_0x2c1bb7['id'][_0x0411('0x76')](),'issuer':hardwareConf[_0x0411('0x3c')](),'audience':hardwareConf[_0x0411('0x3c')]()}};return signJwt(_0x2d0f7b)[_0x0411('0x2d')](function(_0x569a13){return{'iat':_0x2c1bb7[_0x0411('0x59')],'nonce':_0x2c1bb7[_0x0411('0x5c')],'token':_0x569a13};});}