d9eda49889519f257e16a1a942f6c491adc69ea3
[motion2.git] / server / components / auth / service.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x0f4c=['join','promisify','sign','options','verify','randomBytes','hex','now','toString','HS512','../../mysqldb','../../config/license/util','lodash','express-jwt','composable-middleware','bluebird','util','moment','secrets','session','role','fullname','name','internal','email','userpic','md5secret','voicePause','chatPause','mailPause','faxPause','smsPause','openchannelPause','pauseType','showWebBar','lastLoginAt','lastPauseAt','allowmessenger','alias','phoneBarAutoAnswer','phoneBarEnableRecording','phoneBarEnableDtmfTone','phoneBarEnableSettings','phoneBarExpires','phoneBarRemoteControl','phoneBarRemoteControlPort','hotdesk','interface','userProfileId','settingsEnabled','isChatInteractionAuthorized','isAuthenticated','user','ChatInteraction','findOne','closed','disposition','status','unmanaged','Unmanaged.','Forbidden.','catch','use','headers','authorization','startsWith','Basic','User','find','pass','json','Wrong\x20credentials.','Bearer','Unknown\x20authorization\x20format','apikey','getUuid','query','then','sub','Setting','blockDuration','apiKeyNonce','nonce','disabled','Invalid\x20API\x20access\x20key','blocked','blockedAt','add','minutes','User\x20not\x20found.','getLicense','update','Forbidden','isMiddleware','It\x20looks\x20like\x20you\x20aren\x27t\x20logged\x20in,\x20please\x20try\x20again.','cookie','motion.token','redirect','/dashboards/general','send','retrieveApiKey','apiKeyIat','generateApiKey','regenerateApiKey','Please\x20use\x20the\x20previous\x20API\x20access\x20key\x20to\x20generate\x20a\x20new\x20one','validatePasswordPattern','test','ValidationError','The\x20password\x20must\x20be\x20at\x20least\x208\x20characters\x20long\x20and\x20have\x201\x20lowercase\x20character,\x201\x20uppercase\x20character,\x201\x20number\x20and\x201\x20special\x20character\x20~!@#$%^&-_=+[{]}.','validatePasswordHistory','split','toLowerCase','format','The\x20password\x20must\x20be\x20different\x20from\x20the\x20previous\x20%d\x20passwords.\x20Please\x20choose\x20another\x20one.','Sequelize','updatePasswordsHistory','decryptString','length'];(function(_0x371b64,_0x4802ff){var _0x56323e=function(_0x55c29f){while(--_0x55c29f){_0x371b64['push'](_0x371b64['shift']());}};_0x56323e(++_0x4802ff);}(_0x0f4c,0x80));var _0xc0f4=function(_0x1f71d8,_0x278518){_0x1f71d8=_0x1f71d8-0x0;var _0x10b045=_0x0f4c[_0x1f71d8];return _0x10b045;};'use strict';var db=require(_0xc0f4('0x0'))['db'];var config=require('../../config/environment');var hardwareConf=require('../../config/license/hardware');var licenseUtil=require(_0xc0f4('0x1'));var encryptor=require('../encryptor');var _=require(_0xc0f4('0x2'));var jwt=require('jsonwebtoken');var expressJwt=require(_0xc0f4('0x3'));var compose=require(_0xc0f4('0x4'));var basicAuth=require('basic-auth');var crypto=require('crypto');var BPromise=require(_0xc0f4('0x5'));var util=require(_0xc0f4('0x6'));var moment=require(_0xc0f4('0x7'));var validateJwt=expressJwt({'secret':config[_0xc0f4('0x8')][_0xc0f4('0x9')]});var userAttributes=['id',_0xc0f4('0xa'),_0xc0f4('0xb'),_0xc0f4('0xc'),_0xc0f4('0xd'),_0xc0f4('0xe'),_0xc0f4('0xf'),'permissions',_0xc0f4('0x10'),_0xc0f4('0x11'),_0xc0f4('0x12'),_0xc0f4('0x13'),_0xc0f4('0x14'),_0xc0f4('0x15'),_0xc0f4('0x16'),_0xc0f4('0x17'),_0xc0f4('0x18'),_0xc0f4('0x19'),_0xc0f4('0x1a'),'crudPermissions',_0xc0f4('0x1b'),'passwordResetAt',_0xc0f4('0x1c'),_0xc0f4('0x1d'),'phoneBarAutoAnswerDelay','phoneBarDnd',_0xc0f4('0x1e'),_0xc0f4('0x1f'),_0xc0f4('0x20'),_0xc0f4('0x21'),'phoneBarPrefixRequired',_0xc0f4('0x22'),_0xc0f4('0x23'),_0xc0f4('0x24'),_0xc0f4('0x25'),_0xc0f4('0x26'),_0xc0f4('0x27')];exports[_0xc0f4('0x28')]=function(){return this[_0xc0f4('0x29')](!![])['use'](function(_0x161882,_0x10d1e8,_0x3a21d6){if(_0x161882[_0xc0f4('0x2a')]){_0x3a21d6();}else{return db[_0xc0f4('0x2b')][_0xc0f4('0x2c')]({'where':{'id':_0x161882['params']['id']},'attributes':['id',_0xc0f4('0x2d'),_0xc0f4('0x2e')],'raw':!![]})['then'](function(_0x3ac8a5){if(_0x3ac8a5&&_0x3ac8a5[_0xc0f4('0x2d')]){return _0x10d1e8[_0xc0f4('0x2f')](_0x3ac8a5[_0xc0f4('0x2e')]===_0xc0f4('0x30')?0x195:0x193)['json']({'message':_0x3ac8a5[_0xc0f4('0x2e')]===_0xc0f4('0x30')?_0xc0f4('0x31'):_0xc0f4('0x32')});}else{_0x3a21d6();}})[_0xc0f4('0x33')](function(_0x6de055){_0x3a21d6(_0x6de055);});}});};exports['isAuthenticated']=function isAuthenticated(_0x4b3763){return compose()[_0xc0f4('0x34')](function(_0x14298e,_0x10e989,_0x5735d1){var _0x5d790a;if(_0x14298e[_0xc0f4('0x35')][_0xc0f4('0x36')]){if(_[_0xc0f4('0x37')](_0x14298e[_0xc0f4('0x35')][_0xc0f4('0x36')],_0xc0f4('0x38'))){var _0x4f0196=basicAuth(_0x14298e);db[_0xc0f4('0x39')][_0xc0f4('0x3a')]({'where':{'name':_0x4f0196[_0xc0f4('0xc')]}})['then'](function(_0x4b154c){if(!_0x4b154c||!_0x4b154c['authenticate'](_0x4f0196[_0xc0f4('0x3b')])){return _0x10e989[_0xc0f4('0x2f')](0x191)[_0xc0f4('0x3c')]({'message':_0xc0f4('0x3d')});}_0x14298e['user']={'id':_0x4b154c['id']};_0x5735d1();})[_0xc0f4('0x33')](function(_0x5f0c7a){_0x5735d1(_0x5f0c7a);});}else if(_[_0xc0f4('0x37')](_0x14298e['headers']['authorization'],_0xc0f4('0x3e'))){validateJwt(_0x14298e,_0x10e989,_0x5735d1);}else{if(_0x4b3763){_0x5735d1();}else{return _0x10e989['status'](0x193)[_0xc0f4('0x3c')]({'message':_0xc0f4('0x3f')});}}}else if(_0x14298e['query'][_0xc0f4('0x40')]){try{var _0x4333b4={'audience':hardwareConf[_0xc0f4('0x41')](),'issuer':hardwareConf[_0xc0f4('0x41')]()};verifyJwt(_0x14298e[_0xc0f4('0x42')]['apikey'],_0x4333b4)[_0xc0f4('0x43')](function(_0x322656){return db[_0xc0f4('0x39')][_0xc0f4('0x3a')]({'where':{'id':_0x322656[_0xc0f4('0x44')]}})[_0xc0f4('0x43')](function(_0x5dc274){_0x5d790a=_0x5dc274;return db[_0xc0f4('0x45')][_0xc0f4('0x2c')]({'where':{'id':0x1},'attributes':['allowedLoginAttempts',_0xc0f4('0x46')],'raw':!![]});})['then'](function(_0x1a7d2c){if(!_0x5d790a||!_['isEqual'](_0x5d790a[_0xc0f4('0x47')],_0x322656[_0xc0f4('0x48')])){return _0x10e989[_0xc0f4('0x2f')](0x191)[_0xc0f4('0x3c')]({'message':'API\x20access\x20key\x20is\x20not\x20valid\x20anymore'});}if(_0x5d790a[_0xc0f4('0x49')]){return _0x10e989['status'](0x191)['json']({'message':_0xc0f4('0x4a')});}if(_0x5d790a[_0xc0f4('0x4b')]){if(_0x1a7d2c[_0xc0f4('0x46')]>0x0){if(moment(_0x5d790a[_0xc0f4('0x4c')])[_0xc0f4('0x4d')](_0x1a7d2c[_0xc0f4('0x46')],_0xc0f4('0x4e'))>moment()){return _0x10e989[_0xc0f4('0x2f')](0x191)['json']({'message':_0xc0f4('0x4a')});}}else{return _0x10e989[_0xc0f4('0x2f')](0x191)[_0xc0f4('0x3c')]({'message':_0xc0f4('0x4a')});}}_0x14298e['user']={'id':_0x5d790a['id']};_0x5735d1();});})['catch'](function(){return _0x10e989[_0xc0f4('0x2f')](0x191)[_0xc0f4('0x3c')]({'message':'Invalid\x20API\x20access\x20key'});});}catch(_0xe2e264){_0x5735d1(_0xe2e264);}}else if(_0x4b3763){_0x5735d1();}else{return _0x10e989[_0xc0f4('0x2f')](0x193)[_0xc0f4('0x3c')]({'message':_0xc0f4('0x3f')});}})[_0xc0f4('0x34')](function(_0x3b851c,_0x58267b,_0x1ad163){if(_0x3b851c[_0xc0f4('0x2a')]){db[_0xc0f4('0x39')]['find']({'where':{'id':_0x3b851c[_0xc0f4('0x2a')]['id']},'attributes':userAttributes})[_0xc0f4('0x43')](function(_0xfe3088){if(!_0xfe3088){return _0x58267b[_0xc0f4('0x2f')](0x194)[_0xc0f4('0x3c')]({'message':_0xc0f4('0x4f')});}_0x3b851c[_0xc0f4('0x2a')]=_0xfe3088;_0x1ad163();})['catch'](function(_0x4fdfbf){_0x1ad163(_0x4fdfbf);});}else if(_0x4b3763){_0x1ad163();}else{return _0x58267b['status'](0x194)[_0xc0f4('0x3c')]({'message':'User\x20object\x20not\x20found.'});}});};exports['canUpdate']=function canUpdate(){return compose()['use'](function(_0x51cb0e,_0x598975,_0x5d60c3){return licenseUtil[_0xc0f4('0x50')]()['then'](function(_0x3808d4){if(_0x3808d4[_0xc0f4('0x51')]){_0x5d60c3();}else{return _0x598975[_0xc0f4('0x2f')](0x193)['json']({'message':_0xc0f4('0x52')});}})['catch'](function(_0x1cee65){_0x5d60c3(_0x1cee65);});});};exports[_0xc0f4('0x53')]=function(_0x4ea3d9,_0x2362a3,_0x203849){_0x4ea3d9[_0xc0f4('0x53')]=!![];return _0x203849();};exports['signToken']=function signToken(_0x26e01c){return signJwt(_0x26e01c);};exports['setTokenCookie']=function(_0x368cdb,_0x2cbca7){if(!_0x368cdb[_0xc0f4('0x2a')]){return _0x2cbca7[_0xc0f4('0x2f')](0x194)['json']({'message':_0xc0f4('0x54')});}var _0x19898d={'payload':{'id':_0x368cdb[_0xc0f4('0x2a')]['id'],'role':_0x368cdb[_0xc0f4('0x2a')][_0xc0f4('0xa')]},'options':{'expiresIn':0x15180}};return signJwt(_0x19898d)[_0xc0f4('0x43')](function(_0x2ad468){_0x2cbca7[_0xc0f4('0x55')](_0xc0f4('0x56'),_0x2ad468);_0x2cbca7[_0xc0f4('0x57')](_0xc0f4('0x58'));})[_0xc0f4('0x33')](function(_0x1f00ef){return _0x2cbca7[_0xc0f4('0x2f')](0x1f4)[_0xc0f4('0x59')](_0x1f00ef);});};exports[_0xc0f4('0x5a')]=function(_0x596843){if(_['isNil'](_0x596843[_0xc0f4('0x47')])||_['isNil'](_0x596843[_0xc0f4('0x5b')])){return null;}else{return createJwt(_0x596843);}};exports[_0xc0f4('0x5c')]=function(_0x271e4d){_0x271e4d[_0xc0f4('0x47')]=generateNonce();_0x271e4d[_0xc0f4('0x5b')]=generateIssuedAt();return createJwt(_0x271e4d);};exports[_0xc0f4('0x5d')]=function(_0x28d45a,_0x19d0c3){var _0x355995=_0x28d45a[_0xc0f4('0x42')][_0xc0f4('0x40')];if(_0x355995){var _0x29e4ce={'nonce':_0x19d0c3[_0xc0f4('0x47')],'iat':_0x19d0c3[_0xc0f4('0x5b')],'audience':hardwareConf[_0xc0f4('0x41')](),'issuer':hardwareConf[_0xc0f4('0x41')]()};return verifyJwt(_0x355995,_0x29e4ce)[_0xc0f4('0x43')](function(){return generateApiKey(_0x19d0c3);});}else{throw{'message':_0xc0f4('0x5e')};}};exports[_0xc0f4('0x5f')]=function(_0x4efaa4){var _0x48064d=new RegExp(/(?=.*[a-z])(?=.*[A-Z])(?=.*[0-9])(?=.*[?!@#\$%\^&\*~\-_=+[{\]\}])(?=.{8,})/);if(!_0x48064d[_0xc0f4('0x60')](_0x4efaa4))throw new db['Sequelize'][(_0xc0f4('0x61'))](_0xc0f4('0x62'));return;};exports[_0xc0f4('0x63')]=function(_0x27b6d1,_0xeb7d26,_0xa5fcc6){var _0x4986b6=encryptor['decryptString'](_0xeb7d26)[_0xc0f4('0x64')](',');for(var _0x23be96=0x0;_0x23be96<_0xa5fcc6;_0x23be96++){if(!_0x4986b6[_0x23be96])break;if(_0x27b6d1[_0xc0f4('0x65')]()===_0x4986b6[_0x23be96]['toLowerCase']()){var _0x5cdf2e=util[_0xc0f4('0x66')](_0xc0f4('0x67'),_0xa5fcc6);if(_0xa5fcc6===0x1){_0x5cdf2e='The\x20password\x20must\x20be\x20different\x20from\x20the\x20last\x20one.\x20Please\x20choose\x20another\x20one.';}throw new db[(_0xc0f4('0x68'))]['ValidationError'](_0x5cdf2e);}}return;};exports[_0xc0f4('0x69')]=function(_0x5086a9,_0xdd26a6){var _0x37a315=_0xdd26a6?encryptor[_0xc0f4('0x6a')](_0xdd26a6)[_0xc0f4('0x64')](','):[];if(_0x37a315[_0xc0f4('0x6b')]===0x5){_0x37a315['splice'](-0x1,0x1);}_0x37a315['unshift'](_0x5086a9);return encryptor['encryptString'](_0x37a315[_0xc0f4('0x6c')](','));};function signJwt(_0x2113c4){var _0x3dbed6=BPromise[_0xc0f4('0x6d')](jwt[_0xc0f4('0x6e')],{'context':jwt});var _0x472303=_0x2113c4['secret']||config[_0xc0f4('0x8')][_0xc0f4('0x9')];return new BPromise(function(_0xad0619,_0x20196b){_0x3dbed6(_0x2113c4['payload'],_0x472303,_0x2113c4[_0xc0f4('0x6f')])['then'](function(_0x557bac){_0xad0619(_0x557bac);})[_0xc0f4('0x33')](function(_0x528a44){_0x20196b(_0x528a44);});});}function verifyJwt(_0x156fd6,_0xb2a2d7,_0x44bbf2){var _0x58aacf=BPromise['promisify'](jwt[_0xc0f4('0x70')],{'context':jwt});var _0x1ce228=_0x44bbf2||config[_0xc0f4('0x8')]['session'];return new BPromise(function(_0x3bfd1d,_0x3218f0){_0x58aacf(_0x156fd6,_0x1ce228,_0xb2a2d7)[_0xc0f4('0x43')](function(_0x445302){_0x3bfd1d(_0x445302);})[_0xc0f4('0x33')](function(_0x5938ab){_0x3218f0(_0x5938ab);});});}function generateNonce(){return crypto[_0xc0f4('0x71')](0x10)['toString'](_0xc0f4('0x72'));}function generateIssuedAt(){return Math['floor'](Date[_0xc0f4('0x73')]()/0x3e8)[_0xc0f4('0x74')]();}function createJwt(_0x38d139){var _0x4e4e6a={'payload':{'iat':_0x38d139[_0xc0f4('0x5b')],'nonce':_0x38d139['apiKeyNonce']},'options':{'algorithm':_0xc0f4('0x75'),'subject':_0x38d139['id']['toString'](),'issuer':hardwareConf['getUuid'](),'audience':hardwareConf['getUuid']()}};return signJwt(_0x4e4e6a)['then'](function(_0x20d578){return{'iat':_0x38d139[_0xc0f4('0x5b')],'nonce':_0x38d139['apiKeyNonce'],'token':_0x20d578};});}