d5050855b31a5cc08b786311295b26ebad1a4ec0
[motion2.git] / server / components / auth / service.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0xe826=['promisify','secret','payload','options','randomBytes','toString','floor','now','HS512','../../mysqldb','../../config/environment','../../config/license/hardware','../../config/license/util','lodash','jsonwebtoken','express-jwt','composable-middleware','bluebird','util','moment','secrets','session','role','internal','email','userpic','permissions','md5secret','voicePause','mailPause','faxPause','openchannelPause','pauseType','lastLoginAt','crudPermissions','allowmessenger','passwordResetAt','alias','phoneBarAutoAnswer','phoneBarDnd','phoneBarEnableRecording','phoneBarEnableSettings','phoneBarPrefixRequired','phoneBarRemoteControl','phoneBarRemoteControlPort','hotdesk','interface','isChatInteractionAuthorized','isAuthenticated','use','findOne','params','closed','disposition','then','status','unmanaged','json','Unmanaged.','catch','headers','authorization','Basic','User','find','authenticate','pass','startsWith','query','apikey','getUuid','Setting','blockDuration','isEqual','API\x20access\x20key\x20is\x20not\x20valid\x20anymore','disabled','Invalid\x20API\x20access\x20key','blocked','blockedAt','add','minutes','user','Unknown\x20authorization\x20format','User\x20object\x20not\x20found.','canUpdate','getLicense','update','isMiddleware','setTokenCookie','cookie','motion.token','redirect','/dashboards/general','send','retrieveApiKey','isNil','apiKeyNonce','apiKeyIat','generateApiKey','regenerateApiKey','validatePasswordPattern','test','Sequelize','The\x20password\x20must\x20be\x20at\x20least\x208\x20characters\x20long\x20and\x20have\x201\x20lowercase\x20character,\x201\x20uppercase\x20character,\x201\x20number\x20and\x201\x20special\x20character\x20~!@#$%^&-_=+[{]}.','validatePasswordHistory','decryptString','toLowerCase','format','The\x20password\x20must\x20be\x20different\x20from\x20the\x20previous\x20%d\x20passwords.\x20Please\x20choose\x20another\x20one.','The\x20password\x20must\x20be\x20different\x20from\x20the\x20last\x20one.\x20Please\x20choose\x20another\x20one.','ValidationError','updatePasswordsHistory','split','length','unshift','encryptString','join'];(function(_0x5d338b,_0x3f6c0b){var _0x2034b3=function(_0x362716){while(--_0x362716){_0x5d338b['push'](_0x5d338b['shift']());}};_0x2034b3(++_0x3f6c0b);}(_0xe826,0x168));var _0x6e82=function(_0x2c7c60,_0x2572c0){_0x2c7c60=_0x2c7c60-0x0;var _0x54ea05=_0xe826[_0x2c7c60];return _0x54ea05;};'use strict';var db=require(_0x6e82('0x0'))['db'];var config=require(_0x6e82('0x1'));var hardwareConf=require(_0x6e82('0x2'));var licenseUtil=require(_0x6e82('0x3'));var encryptor=require('../encryptor');var _=require(_0x6e82('0x4'));var jwt=require(_0x6e82('0x5'));var expressJwt=require(_0x6e82('0x6'));var compose=require(_0x6e82('0x7'));var basicAuth=require('basic-auth');var crypto=require('crypto');var BPromise=require(_0x6e82('0x8'));var util=require(_0x6e82('0x9'));var moment=require(_0x6e82('0xa'));var validateJwt=expressJwt({'secret':config[_0x6e82('0xb')][_0x6e82('0xc')]});var userAttributes=['id',_0x6e82('0xd'),'fullname','name',_0x6e82('0xe'),_0x6e82('0xf'),_0x6e82('0x10'),_0x6e82('0x11'),_0x6e82('0x12'),_0x6e82('0x13'),'chatPause',_0x6e82('0x14'),_0x6e82('0x15'),'smsPause',_0x6e82('0x16'),_0x6e82('0x17'),'showWebBar',_0x6e82('0x18'),'lastPauseAt',_0x6e82('0x19'),_0x6e82('0x1a'),_0x6e82('0x1b'),_0x6e82('0x1c'),_0x6e82('0x1d'),'phoneBarAutoAnswerDelay',_0x6e82('0x1e'),_0x6e82('0x1f'),'phoneBarEnableDtmfTone',_0x6e82('0x20'),'phoneBarExpires',_0x6e82('0x21'),_0x6e82('0x22'),_0x6e82('0x23'),_0x6e82('0x24'),_0x6e82('0x25'),'userProfileId','settingsEnabled'];exports[_0x6e82('0x26')]=function(){return this[_0x6e82('0x27')](!![])[_0x6e82('0x28')](function(_0x18abf2,_0x1ed066,_0x245444){if(_0x18abf2['user']){_0x245444();}else{return db['ChatInteraction'][_0x6e82('0x29')]({'where':{'id':_0x18abf2[_0x6e82('0x2a')]['id']},'attributes':['id',_0x6e82('0x2b'),_0x6e82('0x2c')],'raw':!![]})[_0x6e82('0x2d')](function(_0x2e5eb4){if(_0x2e5eb4&&_0x2e5eb4[_0x6e82('0x2b')]){return _0x1ed066[_0x6e82('0x2e')](_0x2e5eb4[_0x6e82('0x2c')]===_0x6e82('0x2f')?0x195:0x193)[_0x6e82('0x30')]({'message':_0x2e5eb4[_0x6e82('0x2c')]==='unmanaged'?_0x6e82('0x31'):'Forbidden.'});}else{_0x245444();}})[_0x6e82('0x32')](function(_0x5a07ee){_0x245444(_0x5a07ee);});}});};exports[_0x6e82('0x27')]=function isAuthenticated(_0x32f26d){return compose()['use'](function(_0xc4a30a,_0x1c77cc,_0x5dc2e4){var _0x3bebd6;if(_0xc4a30a['headers']['authorization']){if(_['startsWith'](_0xc4a30a[_0x6e82('0x33')][_0x6e82('0x34')],_0x6e82('0x35'))){var _0x284506=basicAuth(_0xc4a30a);db[_0x6e82('0x36')][_0x6e82('0x37')]({'where':{'name':_0x284506['name']}})[_0x6e82('0x2d')](function(_0xcdd970){if(!_0xcdd970||!_0xcdd970[_0x6e82('0x38')](_0x284506[_0x6e82('0x39')])){return _0x1c77cc[_0x6e82('0x2e')](0x191)[_0x6e82('0x30')]({'message':'Wrong\x20credentials.'});}_0xc4a30a['user']={'id':_0xcdd970['id']};_0x5dc2e4();})[_0x6e82('0x32')](function(_0x14c56f){_0x5dc2e4(_0x14c56f);});}else if(_[_0x6e82('0x3a')](_0xc4a30a['headers'][_0x6e82('0x34')],'Bearer')){validateJwt(_0xc4a30a,_0x1c77cc,_0x5dc2e4);}else{if(_0x32f26d){_0x5dc2e4();}else{return _0x1c77cc['status'](0x193)['json']({'message':'Unknown\x20authorization\x20format'});}}}else if(_0xc4a30a[_0x6e82('0x3b')][_0x6e82('0x3c')]){try{var _0x2255a6={'audience':hardwareConf[_0x6e82('0x3d')](),'issuer':hardwareConf[_0x6e82('0x3d')]()};verifyJwt(_0xc4a30a[_0x6e82('0x3b')][_0x6e82('0x3c')],_0x2255a6)['then'](function(_0x1d7b6a){return db['User'][_0x6e82('0x37')]({'where':{'id':_0x1d7b6a['sub']}})[_0x6e82('0x2d')](function(_0x1c4e70){_0x3bebd6=_0x1c4e70;return db[_0x6e82('0x3e')][_0x6e82('0x29')]({'where':{'id':0x1},'attributes':['allowedLoginAttempts',_0x6e82('0x3f')],'raw':!![]});})[_0x6e82('0x2d')](function(_0x50aef1){if(!_0x3bebd6||!_[_0x6e82('0x40')](_0x3bebd6['apiKeyNonce'],_0x1d7b6a['nonce'])){return _0x1c77cc['status'](0x191)[_0x6e82('0x30')]({'message':_0x6e82('0x41')});}if(_0x3bebd6[_0x6e82('0x42')]){return _0x1c77cc[_0x6e82('0x2e')](0x191)['json']({'message':_0x6e82('0x43')});}if(_0x3bebd6[_0x6e82('0x44')]){if(_0x50aef1[_0x6e82('0x3f')]>0x0){if(moment(_0x3bebd6[_0x6e82('0x45')])[_0x6e82('0x46')](_0x50aef1['blockDuration'],_0x6e82('0x47'))>moment()){return _0x1c77cc['status'](0x191)[_0x6e82('0x30')]({'message':_0x6e82('0x43')});}}else{return _0x1c77cc['status'](0x191)[_0x6e82('0x30')]({'message':_0x6e82('0x43')});}}_0xc4a30a[_0x6e82('0x48')]={'id':_0x3bebd6['id']};_0x5dc2e4();});})['catch'](function(){return _0x1c77cc[_0x6e82('0x2e')](0x191)[_0x6e82('0x30')]({'message':_0x6e82('0x43')});});}catch(_0x5ca183){_0x5dc2e4(_0x5ca183);}}else if(_0x32f26d){_0x5dc2e4();}else{return _0x1c77cc[_0x6e82('0x2e')](0x193)[_0x6e82('0x30')]({'message':_0x6e82('0x49')});}})['use'](function(_0xd6b91,_0x99828a,_0x269b3a){if(_0xd6b91[_0x6e82('0x48')]){db['User'][_0x6e82('0x37')]({'where':{'id':_0xd6b91[_0x6e82('0x48')]['id']},'attributes':userAttributes})[_0x6e82('0x2d')](function(_0x5a14e8){if(!_0x5a14e8){return _0x99828a[_0x6e82('0x2e')](0x194)['json']({'message':'User\x20not\x20found.'});}_0xd6b91[_0x6e82('0x48')]=_0x5a14e8;_0x269b3a();})['catch'](function(_0x113f19){_0x269b3a(_0x113f19);});}else if(_0x32f26d){_0x269b3a();}else{return _0x99828a[_0x6e82('0x2e')](0x194)[_0x6e82('0x30')]({'message':_0x6e82('0x4a')});}});};exports[_0x6e82('0x4b')]=function canUpdate(){return compose()[_0x6e82('0x28')](function(_0x31319a,_0x3bfa97,_0x4b57df){return licenseUtil[_0x6e82('0x4c')]()['then'](function(_0x4559fe){if(_0x4559fe[_0x6e82('0x4d')]){_0x4b57df();}else{return _0x3bfa97['status'](0x193)[_0x6e82('0x30')]({'message':'Forbidden'});}})[_0x6e82('0x32')](function(_0x5e29a4){_0x4b57df(_0x5e29a4);});});};exports[_0x6e82('0x4e')]=function(_0x1e288b,_0x31a80e,_0x395ce4){_0x1e288b['isMiddleware']=!![];return _0x395ce4();};exports['signToken']=function signToken(_0x5b3df3){return signJwt(_0x5b3df3);};exports[_0x6e82('0x4f')]=function(_0x46eb32,_0x25cb0b){if(!_0x46eb32[_0x6e82('0x48')]){return _0x25cb0b[_0x6e82('0x2e')](0x194)['json']({'message':'It\x20looks\x20like\x20you\x20aren\x27t\x20logged\x20in,\x20please\x20try\x20again.'});}var _0x467c97={'payload':{'id':_0x46eb32[_0x6e82('0x48')]['id'],'role':_0x46eb32[_0x6e82('0x48')][_0x6e82('0xd')]},'options':{'expiresIn':0x15180}};return signJwt(_0x467c97)['then'](function(_0x25f3a6){_0x25cb0b[_0x6e82('0x50')](_0x6e82('0x51'),_0x25f3a6);_0x25cb0b[_0x6e82('0x52')](_0x6e82('0x53'));})[_0x6e82('0x32')](function(_0x140f97){return _0x25cb0b[_0x6e82('0x2e')](0x1f4)[_0x6e82('0x54')](_0x140f97);});};exports[_0x6e82('0x55')]=function(_0x3ecf55){if(_[_0x6e82('0x56')](_0x3ecf55[_0x6e82('0x57')])||_[_0x6e82('0x56')](_0x3ecf55[_0x6e82('0x58')])){return null;}else{return createJwt(_0x3ecf55);}};exports[_0x6e82('0x59')]=function(_0x2b758f){_0x2b758f[_0x6e82('0x57')]=generateNonce();_0x2b758f[_0x6e82('0x58')]=generateIssuedAt();return createJwt(_0x2b758f);};exports[_0x6e82('0x5a')]=function(_0x507d37,_0x119aca){var _0x19d8ca=_0x507d37[_0x6e82('0x3b')][_0x6e82('0x3c')];if(_0x19d8ca){var _0x24f023={'nonce':_0x119aca[_0x6e82('0x57')],'iat':_0x119aca[_0x6e82('0x58')],'audience':hardwareConf['getUuid'](),'issuer':hardwareConf[_0x6e82('0x3d')]()};return verifyJwt(_0x19d8ca,_0x24f023)['then'](function(){return generateApiKey(_0x119aca);});}else{throw{'message':'Please\x20use\x20the\x20previous\x20API\x20access\x20key\x20to\x20generate\x20a\x20new\x20one'};}};exports[_0x6e82('0x5b')]=function(_0x5f3ec8){var _0x43d22a=new RegExp(/(?=.*[a-z])(?=.*[A-Z])(?=.*[0-9])(?=.*[?!@#\$%\^&\*~\-_=+[{\]\}])(?=.{8,})/);if(!_0x43d22a[_0x6e82('0x5c')](_0x5f3ec8))throw new db[(_0x6e82('0x5d'))]['ValidationError'](_0x6e82('0x5e'));return;};exports[_0x6e82('0x5f')]=function(_0x4b4de8,_0x4be87f,_0x241646){var _0x3ee7b6=encryptor[_0x6e82('0x60')](_0x4be87f)['split'](',');for(var _0x55dcaf=0x0;_0x55dcaf<_0x241646;_0x55dcaf++){if(!_0x3ee7b6[_0x55dcaf])break;if(_0x4b4de8[_0x6e82('0x61')]()===_0x3ee7b6[_0x55dcaf]['toLowerCase']()){var _0x3aaf39=util[_0x6e82('0x62')](_0x6e82('0x63'),_0x241646);if(_0x241646===0x1){_0x3aaf39=_0x6e82('0x64');}throw new db[(_0x6e82('0x5d'))][(_0x6e82('0x65'))](_0x3aaf39);}}return;};exports[_0x6e82('0x66')]=function(_0x46d96f,_0x1bda7b){var _0x588cfa=_0x1bda7b?encryptor['decryptString'](_0x1bda7b)[_0x6e82('0x67')](','):[];if(_0x588cfa[_0x6e82('0x68')]===0x5){_0x588cfa['splice'](-0x1,0x1);}_0x588cfa[_0x6e82('0x69')](_0x46d96f);return encryptor[_0x6e82('0x6a')](_0x588cfa[_0x6e82('0x6b')](','));};function signJwt(_0x294f30){var _0x31b01b=BPromise[_0x6e82('0x6c')](jwt['sign'],{'context':jwt});var _0x1000b4=_0x294f30[_0x6e82('0x6d')]||config[_0x6e82('0xb')]['session'];return new BPromise(function(_0x57eafe,_0x3dceaf){_0x31b01b(_0x294f30[_0x6e82('0x6e')],_0x1000b4,_0x294f30[_0x6e82('0x6f')])[_0x6e82('0x2d')](function(_0x84263b){_0x57eafe(_0x84263b);})['catch'](function(_0x1e6afd){_0x3dceaf(_0x1e6afd);});});}function verifyJwt(_0x5c72a1,_0x5cd2cb,_0x391e14){var _0x227e57=BPromise[_0x6e82('0x6c')](jwt['verify'],{'context':jwt});var _0xef2075=_0x391e14||config[_0x6e82('0xb')][_0x6e82('0xc')];return new BPromise(function(_0x37df33,_0x3991bc){_0x227e57(_0x5c72a1,_0xef2075,_0x5cd2cb)[_0x6e82('0x2d')](function(_0x1f66b9){_0x37df33(_0x1f66b9);})[_0x6e82('0x32')](function(_0x42776e){_0x3991bc(_0x42776e);});});}function generateNonce(){return crypto[_0x6e82('0x70')](0x10)[_0x6e82('0x71')]('hex');}function generateIssuedAt(){return Math[_0x6e82('0x72')](Date[_0x6e82('0x73')]()/0x3e8)['toString']();}function createJwt(_0x5ae14b){var _0x2f9517={'payload':{'iat':_0x5ae14b[_0x6e82('0x58')],'nonce':_0x5ae14b['apiKeyNonce']},'options':{'algorithm':_0x6e82('0x74'),'subject':_0x5ae14b['id']['toString'](),'issuer':hardwareConf[_0x6e82('0x3d')](),'audience':hardwareConf[_0x6e82('0x3d')]()}};return signJwt(_0x2f9517)[_0x6e82('0x2d')](function(_0x5727eb){return{'iat':_0x5ae14b['apiKeyIat'],'nonce':_0x5ae14b[_0x6e82('0x57')],'token':_0x5727eb};});}