nss-util-3.53.1-17.el8_3 >  A _9U]tkg!*n̰s4d[Z C!g's:F+I􋓡 g<0 >xfgmǾEDи#-{u~*Ѱ)+c"VU$`ըQ1ToJm:/*etwNxKDZe0iipاI0S;UR2l[E#9x8۬LnAx6wYϪV&x$¸QH:#|57!WAЏm`Qy.ng9D^42 Sv l@?bH{F+b>p<?d   G "(0H T ` x  (@^|,d(89 H:YqGH I$X,Yx\]^bdefltuv wxy tx~Cnss-util3.53.117.el8_3Network Security Services Utilities LibraryUtilities for Network Security Services and the Softoken module_ ppc64le-02.mbox.centos.org^CentOSCentOSMPLv2.0CentOS Buildsys Unspecifiedhttp://www.mozilla.org/projects/security/pki/nss/linuxppc64le$ FAAA큤_ _ _ __ ^L72be9eb36550805594d2d45d09873329a505acfad576aac3301b1f7deffbabf0a20c1a32d1f8102432360b42e932869f7c11c7cdbacf9cac554c422132af47f4../../../../usr/lib64/libnssutil3.sorootrootrootrootrootrootrootrootrootrootrootrootnss-3.53.1-17.el8_3.src.rpmlibnssutil3.so()(64bit)libnssutil3.so(NSSUTIL_3.12)(64bit)libnssutil3.so(NSSUTIL_3.12.3)(64bit)libnssutil3.so(NSSUTIL_3.12.5)(64bit)libnssutil3.so(NSSUTIL_3.12.7)(64bit)libnssutil3.so(NSSUTIL_3.13)(64bit)libnssutil3.so(NSSUTIL_3.14)(64bit)libnssutil3.so(NSSUTIL_3.15)(64bit)libnssutil3.so(NSSUTIL_3.17.1)(64bit)libnssutil3.so(NSSUTIL_3.21)(64bit)libnssutil3.so(NSSUTIL_3.24)(64bit)libnssutil3.so(NSSUTIL_3.25)(64bit)libnssutil3.so(NSSUTIL_3.31)(64bit)libnssutil3.so(NSSUTIL_3.33)(64bit)libnssutil3.so(NSSUTIL_3.38)(64bit)libnssutil3.so(NSSUTIL_3.39)(64bit)libnssutil3.so(NSSUTIL_3.59)(64bit)nss-utilnss-util(ppc-64)@@@@@@@@     @libc.so.6()(64bit)libc.so.6(GLIBC_2.17)(64bit)libdl.so.2()(64bit)libnspr4.so()(64bit)libplc4.so()(64bit)libplds4.so()(64bit)libpthread.so.0()(64bit)libpthread.so.0(GLIBC_2.17)(64bit)nsprrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)rtld(GNU_HASH)4.25.03.0.4-14.6.0-14.0-15.2-14.14.3_@_^@___@__"@_"@_"@_!d_@_ L_ _@^^@@^@^ۅ@^4]N@]]߶]e@]M@]µ]L]]^@\F@\Q\\\\\\@\I\I\U@\ `\l@[[[u[#@[[W[O+[M@[ZZw@Z|;Zo Zo Zg#Z ZZZ@Y+@Y{YY@Yn@YV@Y@YyYm@Yg`YJ_Y1S@XX@XX @XXYX@X@XX~@Xx@XoX>@X*X@WW@Wt@W~Wv[@WrfWoWm WbWQq@WPWJWDB@W4p@W@Wo@W@VV޾V޾V@VяVIVɦV@V@V=@V@V@VO @VHsVEV3[V UYU@UU@U@U>Ua@Ug@U[%UUU @T@Ts@TTء@T@TÉ@TT@T@T?@T:m@T"@S@S<@S@S@S @SSSSpShS(5@S@SRy@RJ@R@RR@RSRR@Rm@Rg@RD!R@RRR|Q@Q*@QQ@QKQ@QQW@Qw@Q]k@QNQ9Q7/Q#@QQ @P!@PՠP @PqP@P@PAPXPd@Pd@PPP@PP5@PPnP;a@P(@P H@O;O;O@OiO@O@O}O~OiOYOX@OOdO&@O!@@OO@O@N>@N>@NNܲ@N`NؽNN@NuN;@Np@Nf @NA!@N*NpM@MWMc@MM@M@MMfH@M^_@MZjMS@MQ0@MQ0@MQ0@MQ0@MK@MGMF@M6@M-MM@Ls@LOLLZ@L6LdL@L*@L@LA@LL@L4Lx@Lx@Li(@Lf@L_L_LT@L0L0L K @KsKsKKCKCKCK]KMKLd@KD{@K<@K5K4@K,@K+nK*@K K@K@K@KJݦ@J - 3.53.1-17Bob Relyea - 3.53.1-16Bob Relyea - 3.53.1-15Bob Relyea - 3.53.1-14Bob Relyea - 3.53.1-13Bob Relyea - 3.53.1-12Bob Relyea - 3.53.1-11Bob Relyea - 3.53.1-10Daiki Ueno - 3.53.1-9Daiki Ueno - 3.53.1-8Bob Relyea - 3.53.1-7Daiki Ueno - 3.53.1-6Bob Relyea - 3.53.1-5Bob Relyea - 3.53.1-4Daiki Ueno - 3.53.1-3Daiki Ueno - 3.53.1-2Daiki Ueno - 3.53.1-1Daiki Ueno - 3.53.0-1Bob Relyea - 3.44.0-15Bob Relyea - 3.44.0-14Bob Relyea - 3.44.0-13Daiki Ueno - 3.44.0-12Bob Relyea - 3.44.0-11Daiki Ueno - 3.44.0-10Bob Relyea - 3.44.0-9Bob Relyea - 3.44.0-8Daiki Ueno - 3.44.0-7Daiki Ueno - 3.44.0-6Daiki Ueno - 3.44.0-5Bob Relyea - 3.44.0-4.1Bob Relyea - 3.44.0-4Daiki Ueno - 3.44.0-3Bob Relyea - 3.44.0-2Daiki Ueno - 3.44.0-1Daiki Ueno - 3.41.0-5Bob Relyea - 3.41.0-4Daiki Ueno - 3.41.0-3Daiki Ueno - 3.41.0-2Daiki Ueno - 3.41.0-1Daiki Ueno - 3.39.0-1.5Bob Relyea - 3.39.0-1.4Daiki Ueno - 3.39.0-1.3Daiki Ueno - 3.39.0-1.2Daiki Ueno - 3.39.0-1.1Daiki Ueno - 3.39.0-1.0Daiki Ueno - 3.38.0-1.2Daiki Ueno - 3.38.0-1.1Daiki Ueno - 3.38.0-1.0Kai Engert - 3.36.1-1.2Daiki Ueno - 3.36.1-1.1Daiki Ueno - 3.36.1-1.0Daiki Ueno - 3.36.0-1.0Fedora Release Engineering - 3.35.0-5Kai Engert - 3.35.0-4Kai Engert - 3.35.0-3Daiki Ueno - 3.35.0-2Daiki Ueno - 3.34.0-2Daiki Ueno - 3.33.0-6Kai Engert - 3.33.0-5Kai Engert - 3.33.0-4Kai Engert - 3.33.0-3Daiki Ueno - 3.33.0-2Daiki Ueno - 3.32.1-2Daiki Ueno - 3.32.0-4Kai Engert - 3.32.0-3Daiki Ueno - 3.32.0-2Fedora Release Engineering - 3.31.0-6Fedora Release Engineering - 3.31.0-5Daiki Ueno - 3.31.0-4Daiki Ueno - 3.31.0-3Daiki Ueno - 3.31.0-2Daiki Ueno - 3.30.2-3Daiki Ueno - 3.30.2-2Kai Engert - 3.30.0-3Daiki Ueno - 3.30.0-2Kai Engert - 3.29.1-3Daiki Ueno - 3.29.1-2Daiki Ueno - 3.29.0-3Daiki Ueno - 3.29.0-2Daiki Ueno - 3.28.1-6Daiki Ueno - 3.28.1-5Daiki Ueno - 3.28.1-4Daiki Ueno - 3.28.1-3Daiki Ueno - 3.28.1-2Daiki Ueno - 3.27.2-2Daiki Ueno - 3.27.0-5Kai Engert - 3.27.0-4Daiki Ueno - 3.27.0-3Daiki Ueno - 3.27.0-2Daiki Ueno - 3.26.0-2Elio Maldonado - 3.25.0-6Elio Maldonado - 3.25.0-5Elio Maldonado - 3.25.0-4Elio Maldonado - 3.25.0-3Elio Maldonado - 3.25.0-2Kamil Dudka - 3.24.0-3Elio Maldonado - 3.24.0-2.3Elio Maldonado - 3.24.0-2.2Elio Maldonado - 3.24.0-2.1Elio Maldonado - 3.24.0-2.0Elio Maldonado - 3.23.0-9Elio Maldonado - 3.23.0-8Elio Maldonado - 3.23.0-7Elio Maldonado - 3.23.0-6Elio Maldonado - 3.23.0-5Elio Maldonado - 3.23.0-4Elio Maldonado - 3.23.0-3Elio Maldonado - 3.23.0-2Elio Maldonado - 3.22.2-2Elio Maldonado - 3.22.1-3Elio Maldonado - 3.22.1-1Elio Maldonado - 3.22.0-3Elio Maldonado - 3.22.0-2Fedora Release Engineering - 3.21.0-7Elio Maldonado - 3.21.0-6Michal Toman - 3.21.0-5Elio Maldonado - 3.21.0-4Elio Maldonado - 3.21.0-3Elio Maldonado Batiz - 3.21.1-2Elio Maldonado - 3.20.1-2Elio Maldonado - 3.20.0-6Elio Maldonado - 3.20.0-5Elio Maldonado - 3.20.0-4Elio Maldonado - 3.20.0-3Elio Maldonado - 3.20.0-2Elio Maldonado - 3.19.3-2Elio Maldonado - 3.19.2-3Kai Engert - 3.19.2-2Kai Engert - 3.19.1-2Kai Engert - 3.19.0-2Kai Engert - 3.18.0-2Elio Maldonado - 3.18.0-1Elio Maldonado - 3.17.4-5Till Maas - 3.17.4-4Elio Maldonado - 3.17.4-3Elio Maldonado - 3.17.4-2Elio Maldonado - 3.17.4-1Ville Skyttä - 3.17.3-4Elio Maldonado - 3.17.3-3Elio Maldonado - 3.17.3-2Elio Maldonado - 3.17.3-1Elio Maldonado - 3.17.2-2Elio Maldonado - 3.17.2-1Kai Engert - 3.17.1-1Kevin Fenzi - 3.17.0-2Elio Maldonado - 3.17.0-1Fedora Release Engineering - 3.16.2-4Elio Maldonado - 3.16.2-3Tom Callaway - 3.16.2-2Elio Maldonado - 3.16.2-1Elio Maldonado - 3.16.1-4Fedora Release Engineering - 3.16.1-3Jaromir Capik - 3.16.1-2Elio Maldonado - 3.16.1-1Elio Maldonado - 3.16.0-1Elio Maldonado - 3.15.5-2Elio Maldonado - 3.15.5-1Elio Maldonado - 3.15.4-5Elio Maldonado - 3.15.4-4Elio Maldonado - 3.15.4-3Peter Robinson 3.15.4-2Elio Maldonado - 3.15.4-1Elio Maldonado - 3.15.3.1-1Elio Maldonado - 3.15.3-2Elio Maldonado - 3.15.3-1Elio Maldonado - 3.15.2-3Elio Maldonado - 3.15.2-2Elio Maldonado - 3.15.2-1Elio Maldonado - 3.15.1-7Elio Maldonado - 3.15.1-6Elio Maldonado - 3.15.1-5Elio Maldonado - 3.15.1-4Elio Maldonado - 3.15.1-3Elio Maldonado - 3.15.1-2Elio Maldonado - 3.15.1-1Elio Maldonado - 3.15-5emaldona - 3.15-4emaldona - 3.15-3Elio Maldonado - 3.15-2Elio Maldonado - 3.15-1Elio Maldonado - 3.15-0.1.beta1.2Elio Maldonado - 3.15-0.1.beta1.1Kai Engert - 3.14.3-12Kai Engert - 3.14.3-10Kai Engert - 3.14.3-9Elio Maldonado - 3.14.3-1Elio Maldonado - 3.14.2-2Elio Maldonado - 3.14.2-1Kai Engert - 3.14.1-3Elio Maldonado - 3.14.1-2Elio Maldonado - 3.14.1-1Elio Maldonado - 3.14-12Elio Maldonado - 3.14-11Elio Maldonado - 3.14-10Elio Maldonado - 3.14-9Elio Maldonado - 3.14-8Elio Maldonado - 3.14-7Elio Maldonado - 3.14-6Elio Maldonado - 3.14-5Elio Maldonado - 3.14-4Elio Maldonado - 3.14-3Elio Maldonado - 3.14-2Elio Maldonado - 3.14-1Elio Maldonado - 3.14-0.1.rc.1Kai Engert - 3.13.6-1Elio Maldonado - 3.13.5-8Elio Maldonado - 3.13.5-7Fedora Release Engineering - 3.13.5-6Elio Maldonado - 3.13.5-5Elio Maldonado - 3.13.5-4Elio Maldonado - 3.13.5-3Elio Maldonado - 3.13.5-2Elio Maldonado - 3.13.5-1Elio Maldonado - 3.13.4-3Elio Maldonado - 3.13.4-2Elio Maldonado - 3.13.4-1Elio Maldonado - 3.13.3-4Elio Maldonado - 3.13.3-3Elio Maldonado - 3.13.3-2Elio Maldonado - 3.13.3-1Tom Callaway - 3.13.1-13Elio Maldonado - 3.13.1-12Fedora Release Engineering - 3.13.1-11Elio Maldonado - 3.13.1-11Elio Maldonado - 3.13.1-10elio maldonado - 3.13.1-9Elio Maldonado - 3.13.1-8Elio Maldonado - 3.13.1-7Elio Maldonado - 3.13.1-6Elio Maldonado - 3.13.1-5Elio Maldonado Batiz - 3.13.1-4Elio Maldonado - 3.13.1-2Elio Maldonado - 3.13.1-1Elio Maldonado - 3.13-1Elio Maldonado - 3.13-0.1.rc0.1Elio Maldonado - 3.12.11-3Kai Engert - 3.12.11-2Elio Maldonado - 3.12.11-1Elio Maldonado - 3.12.10-6Michael Schwendt - 3.12.10-5Elio Maldonado - 3.12.10-4Dennis Gilmore - 3.12.10-3Elio Maldonado - 3.12.10-2Elio Maldonado - 3.12.10-1Elio Maldonado - 3.12.10-0.1.beta1Elio Maldonado - 3.12.9-15Elio Maldonado - 3.12.9-14Elio Maldonado - 3.12.9-13Elio Maldonado - 3.12.9-12Elio Maldonado - 3.12.9-11Elio Maldonado - 3.12.9-10Elio Maldonado - 3.12.9-9Fedora Release Engineering - 3.12.9-8Elio Maldonado - 3.12.9-7Christopher Aillon - 3.12.9-6Elio Maldonado - 3.12.9-5Elio Maldonado - 3.12.9-4Elio Maldonado - 3.12.9-3Elio Maldonado - 3.12.9-2Elio Maldonado - 3.12.9-1Elio Maldonado - 3.12.9-0.1.beta2Elio Maldonado - 3.12.8.99.2-1Elio Maldonado - 3.12.8.99.1-1Elio Maldonado - 3.12.8-9Elio Maldonado - 3.12.8-8Elio Maldonado - 3.12.8-7Elio Maldonado - 3.12.8-6Elio Maldonado - 3.12.8-5Elio Maldonado - 3.12.8-4Elio Maldonado - 3.12.8-3Elio Maldonado - 3.12.8-2Elio Maldonado - 3.12.8-1Elio Maldonado - 3.12.7.99.4-1Elio Maldonado - 3.12.7.99.3-2Elio Maldonado - 3.12.7.99.3-1Elio Maldonado - 3.12.7-3Elio Maldonado - 3.12.7-2Elio Maldonado - 3.12.7-1Elio Maldonado - 3.12.6-12Elio Maldonado - 3.12.6-11Elio Maldonado - 3.12.6-10Elio Maldonado - 3.12.6-9Dennis Gilmore - 3.12.6-8Elio Maldonado - 3.12.6-7Elio Maldonado - 3.12.6-6Elio Maldonado - 3.12.6-5Elio Maldonado - 3.12.6-4Elio Maldonado - 3.12.6-3Elio Maldonado - 3.12.6-2Elio Maldonado - 3.12.6-1.2Elio Maldonado - 3.12.6-1.1Elio Maldonado - 3.12.6-1Elio Maldonado - 3.12.5-8Elio Maldonado - 3.12.5-5Elio Maldonado - 3.12.5-1.1Elio Maldonado - 3.12.5-1.13.2Elio Maldonado - 3.12.5-1.13.1Elio Maldonado - 3.12.5-1.13Elio Maldonado - 3.12.5-1.11Elio maldonado - 3.12.5-1.9Elio Maldonado - 3.12.5-2.7Elio Maldonado - 3.12.5-1.6Elio Maldonado - 3.12.5-1.5Elio Maldonado - 3.12.5-1.1Elio Maldonado - 3.12.5-1.1Elio Maldonado - 3.12.5-1Elio Maldonado - 3.12.4-14.1Elio Maldonado - 3.12.4-13.1Elio Maldonado - 3.12.4-13Elio Maldonado - 3.12.4-12Elio Maldonado - 3.12.4-11Elio Maldonado - 3.12.4-10Elio Maldonado - 3.12.4-8Elio Maldonado - 3.12.4-6Elio Maldonado - 3.12.4-5Elio Maldonado - 3.12.4-4Elio Maldonado - 3.12.4-3Elio Maldonado - 3.12.4-2Elio Maldonado - 3.12.4-1Elio Maldonado - 3.12.3.99.3-30Elio Maldonado - 3.12.3.99.3-29Elio Maldonado - 3.12.3.99.3-28Elio Maldonado - 3.12.3.99.3-27Elio Maldonado - 3.12.3.99.3-26Elio Maldonado - 3.12.3.99.3-25Warren Togami - 3.12.3.99.3-24Elio Maldonado - 3.12.3.99.3-23Elio Maldonado - 3.12.3.99.3-22Elio Maldonado - 3.12.3.99.3-21Elio Maldonado - 3.12.3.99.3-20Elio Maldonado - 3.12.3.99.3-19Elio Maldonado - 3.12.3.99.3-18Elio Maldonado - 3.12.3.99.3-16Dennis Gilmore - 3.12.3.99.3-15Dennis Gilmore - 3.12.3.99.3-14Dennis Gilmore - 3.12.3.99.3-13Dennis Gilmore - 3.12.3.99.3-12Elio Maldonado+emaldona@redhat.com - 3.12.3.99.3-11Elio Maldonado - 3.12.3.99.3-10Dennis Gilmore - 3.12.3.99.3-9Elio Maldonado - 3.12.3.99.3-7.1Fedora Release Engineering - 3.12.3.99.3-7Elio Maldonado - 3.12.3.99.3-6Elio Maldonado - 3.12.3.99.3-5Elio Maldonado - 3.12.3.99.3-4Kai Engert - 3.12.3.99.3-3Kai Engert - 3.12.3.99.3-2Kai Engert - 3.12.3-7Kai Engert - 3.12.3-4Kai Engert - 3.12.3-3Kai Engert - 3.12.3-2Kai Engert - 3.12.2.99.3-7Kai Engert - 3.12.2.99.3-6Kai Engert - 3.12.2.99.3-5Kai Engert - 3.12.2.99.3-4Kai Engert - 3.12.2.99.3-3Kai Engert - 3.12.2.99.3-2Kai Engert - 3.12.2.99.3-1Fedora Release Engineering - 3.12.2.0-4Kai Engert - 3.12.2.0-3Dennis Gilmore - 3.12.1.1-4Kai Engert - 3.12.1.1-3Kai Engert - 3.12.1.1-2Kai Engert - 3.12.1.0-2Kai Engert - 3.12.0.3-7Kai Engert - 3.12.0.3-6Kai Engert - 3.12.0.3-3Kai Engert - 3.12.0.3-2Kai Engert - 3.12.0.1-1Jesse Keating - 3.11.99.5-2Kai Engert - 3.11.99.5-1Kai Engert - 3.11.99.4-1Kai Engert - 3.11.99.3-6Kai Engert - 3.11.99.3-5Kai Engert - 3.11.99.3-4Kai Engert - 3.11.99.3-3Kai Engert - 3.11.99.3-2Kai Engert - 3.11.99.3-1Kai Engert - 3.11.99.2b-3Kai Engert - 3.11.99.2b-2Kai Engert - 3.11.99.2-2Kai Engert - 3.11.99.2-1Kai Engert - 3.11.7-10Rob Crittenden - 3.11.7-9Kai Engert - 3.11.7-8Bob Relyea - 3.11.7-7Kai Engert - 3.11.7-6Kai Engert - 3.11.7-5Kai Engert - 3.11.7-4Kai Engert - 3.11.7-3Kai Engert - 3.11.7-2Kai Engert - 3.11.5-2Kai Engert - 3.11.5-1Bob Relyea - 3.11.4-4Kai Engert - 3.11.4-1Kai Engert - 3.11.3-2Kai Engert - 3.11.3-1Kai Engert - 3.11.2-2Jesse Keating - 3.11.2-1.1Kai Engert - 3.11.2-1Kai Engert - 3.11.1-2Kai Engert - 3.11.1-1Kai Engert - 3.11-4Jesse Keating - 3.11-3.2Jesse Keating - 3.11-3.1Ray Strode 3.11-3Christopher Aillon 3.11-2Christopher Aillon 3.11-1Christopher Aillon 3.11-0.cvs.2Christopher Aillon 3.11-0.cvsKai Engert Rob Crittenden 3.10-1- Fix various corner cases with ike v1 app b support.- Fix the following CVE - CVE-2020-12403 chacha-poly issues - CVE-2020-12400 constant time ECC. - CVE-2020-6829 constant time ECC.- Revert some policy changes the generate ABI runtime issues.- Add support for enable/disable in policy. Now if your policy file has disallow=x enable=y it will act just like our other libraries.- Add OAEP interface so applications can wrap keys with RSA-OAEP rather than RSA-PKCS-1.- fips need to reject small primes even if they are approved - code to autodetect whether or not to use the cache needs to do so in a way that doesn't mess with filesystem negative file caching. - add kdf selftests- Fix issue with upgradedb where upgradedb expects standard to generate dbm databases, not sql databases (default in RHEL8)- Disable dh timing test because it's unreliable on s390- Explicitly enable upgradedb/sharedb test cycles- Disable Delegated Credentials for TLS- Fix attribute decryption issue where the private key components integrity check on private attributes where not being checked.- Update nss-rsa-pkcs1-sigalgs.patch to the upstream version- Include required checks for dh and ecdh key generation in FIPS mode.- Add better checks for dh derive operations in FIPS mode.- Disable NSS_HASH_ALG_SUPPORT as well for MD5 (#1849938) - Adjust for update-crypto-policies packaging change (#1848649) - Fix compilation with -Werror=strict-prototypes (#1843417)- Fix regression in MD5 disablement (#1849938) - Include rsa_pkcs1_* in signature_algorithms extension (#1847945)- Update to NSS 3.53.1- Update to NSS 3.53- Fix swapped CMAC PKCS #11 values. - Fix data alignment crash in CMAC.- Fix coverify scan issue- Fix endian problem in SP-800 108 code.- Install cmac.h required by blapi.h (#1764513) - Fix out-of-bounds write in NSC_EncryptUpdate (#1775913)- Add SP-800 108 Generalized kdf- Check policy against hash algorithms used for ServerKeyExchange (#1730039)- Add CMAC- CKM_NSS_IKE1_APP_B_PRF_DERIVE was missing from the mechanism list, preventing PK11_Derive*() from using it. Add gtests for the PK11_Derive interface for all the CKM_NSS_IKE*_DERIVE mechanism.- Backport fixes from 3.44.1- Add continuous RNG test required by FIPS - fipstest: use CKM_TLS12_MASTER_KEY_DERIVE instead of vendor specific mechanism- Rebuild with the correct build target- rebuild to try to retrigger CI tests- Fix certutil man page - Fix extracting a public key from a private key for dh, ec, and dsa- Disable TLS 1.3 under FIPS mode - Disable RSASSA-PKCS1-v1_5 in TLS 1.3 - Fix post-handshake auth transcript calculation if SSL_ENABLE_SESSION_TICKETS is set - Revert the change to use XDG basedirs (mozilla#818686)- Add ike mechanisms in softokn - Add FIPS checks in softoken- Update to NSS 3.44 - Define NSS_SEED_ONLY_DEV_URANDOM=1 to exclusively use getentropy - Use %autosetup - Clean up manual pages generation - Clean up %check - Remove prelink dependency, which is not available in RHEL-8 - Remove upstreamed patches- Update manual pages to reflect recent changes in commands- Make sure corresponding public keys are created when importing private keys.- Fix the last change - Add --no-reload option to update-crypto-policies to avoid unnecessary restart of daemons- Restore LDFLAGS injection when linking DSO- Update to NSS 3.41 - Consolidate nss-util, nss-softokn, and nss into a single source package- Fix the last commit- Support for IKE/IPsec typical PKIX usage so libreswan can use nss without rejecting certs based on EKU- Backport upstream fixes for rhbz#1649026, rhbz#1608895, rhbz#1644854 - Document PKCS #11 URI - Add warning when adding module with modutil while p11-kit is enabled- Update nss-dsa.patch to not advertise DSA signature algorithm - Update PayPal test certs for testing- Backport "DSA" keyword in crypto-policies- Update to NSS 3.39- Fix LDFLAGS injection when linking DSO- Install crypto-policies configuration file for https://fedoraproject.org/wiki/Changes/NSSLoadP11KitModules - Port enable-fips-when-system-is-in-fips-mode.patch from RHEL-7 - Use %ldconfig_scriptlets - Remove needless use of %defattr, by Jason Tibbitts- Update to NSS 3.38- Backport upstream addition of nss-policy-check utility, rhbz#1428746, includes required fixes for mozbz#1296263 and mozbz#1474875- Switch the default DB type to SQL - Enable SSLKEYLOGFILE- Update to NSS 3.36.1 - Remove nss-3.14.0.0-disble-ocsp-test.patch - Fix partial injection of LDFLAGS - Remove NSS_NO_PKCS11_BYPASS, which is no-op in upstream- Update to NSS 3.36.0 - Add gcc-c++ to BuildRequires (C++ is needed for gtests) - Make test failure detection robuster- Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild- Fix a compiler error with gcc 8, mozbz#1434070 - Set NSS_FORCE_FIPS=1 at %build time, and remove from %check.- Stop pulling in nss-pem automatically, packages that need it should depend on it, rhbz#1539401- Update to NSS 3.35.0- Update to NSS 3.34.0- Make sure 32bit nss-pem always be installed with 32bit nss in multlib environment, patch by Kamil Dudka- Fix test script- Update tests to be compatible with default NSS DB changed to sql (the default was changed in the nss-util package).- rhbz#1505487, backport upstream fixes required for rhbz#1496560- Update to NSS 3.33.0- Update to NSS 3.32.1- Update iquote.patch to really prefer in-tree headers over system headers- NSS libnssckbi.so has already been obsoleted by p11-kit-trust, rhbz#1484449- Update to NSS 3.32.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild- Backport mozbz#1381784 to avoid deadlock in dnf- Move signtool to %_libdir/nss/unsupported-tools, for: https://fedoraproject.org/wiki/Changes/NSSSigntoolDeprecation- Rebase to NSS 3.31.0- Enable gtests- Rebase to NSS 3.30.2 - Enable TLS 1.3- Backport upstream mozbz#1328318 to support crypto policy FUTURE.- Rebase to NSS 3.30.0 - Remove upstreamed patches- Backport mozbz#1334976 and mozbz#1336487.- Rebase to NSS 3.29.1- Disable TLS 1.3, following the upstream change- Rebase to NSS 3.29.0 - Suppress -Werror=int-in-bool-context warnings with GCC7- Work around pkgconfig -> pkgconf transition issue (releng#6597)- Disable TLS 1.3 - Add "Conflicts" with packages using older Mozilla codebase, which is not compatible with NSS 3.28.1 - Remove NSS_ECC_MORE_THAN_SUITE_B setting, as it was removed in upstream- Add "Conflicts" with older firefox packages which don't have support for smaller curves added in NSS 3.28.1- Fix incorrect version specification in %nss_{util,softokn}_version, pointed by Elio Maldonado- Rebase to NSS 3.28.1 - Remove upstreamed patch for disabling RSA-PSS - Re-enable TLS 1.3- Rebase to NSS 3.27.2- Revert the previous fix for RSA-PSS and use the upstream fix instead- Disable the use of RSA-PSS with SSL/TLS. #1383809- Disable TLS 1.3 for now, to avoid reported regression with TLS to version intolerant servers- Rebase to NSS 3.27.0 - Remove upstreamed ectest patch- Rebase to NSS 3.26.0 - Update check policy file patch to better match what was upstreamed - Remove conditionally ignore system policy patch as it has been upstreamed - Skip ectest as well as ecperf, which are built as part of nss-softokn - Fix rpmlint error regarding %define usage- Incorporate some changes requested in upstream review and commited upstream (#1157720)- Add support for conditionally ignoring the system policy (#1157720) - Remove unneeded test scripts patches in order to run more tests - Remove unneeded test data modifications from the spec file- Remove obsolete patch and spurious lines from the spec file (#1347336)- Cleanup spec file and patches and add references to bugs filed upstream- Rebase to nss 3.25- decouple nss-pem from the nss package (#1347336)- Apply the patch that was last introduced - Renumber and reorder some of the patches - Resolves: Bug 1342158- Allow application requests to disable SSL v2 to succeed - Resolves: Bug 1342158 - nss-3.24 does no longer support ssl V2, installation of IPA fails because nss init fails- Rebase to NSS 3.24.0 - Restore setting the policy file location - Make ssl tests scripts aware of policy - Ajust tests data expected result for policy- Bootstrap build to rebase to NSS 3.24.0 - Temporarily not setting the policy file location- Change POLICY_FILE to "nss.config"- Change POLICY_FILE to "nss.cfg"- Change the POLICY_PATH to "/etc/crypto-policies/back-ends" - Regenerate the check policy patch with hg to provide more context- Fix typo in the last %changelog entry- Load policy file if /etc/pki/nssdb/policy.cfg exists - Resolves: Bug 1157720 - NSS should enforce the system-wide crypto policy- Remove unused patch rendered obsolete by pem update- Update pem sources to latest from nss-pem upstream - Resolves: Bug 1300652 - [PEM] insufficient input validity checking while loading a private key- Rebase to NSS 3.23- Rebase to NSS 3.22.2- Fix ssl2/exp test disabling to run all the required tests- Rebase to NSS 3.22.1- Update .gitignore as part of updating to nss 3.22- Update to NSS 3.22- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild- Resolves: Bug 1299040 - Enable ssl_gtests upstream test suite - Remove 'export NSS_DISABLE_GTESTS=1' go ssl_gtests are built - Use %define when specifying the nss_tests to run- Add 64-bit MIPS to multilib arches- Update %{nss_util_version} and %{nss_softokn_version} to 3.21.0 - Resolves: Bug 1284095 - all https fails with sec_error_no_token- Add references to bugs filed upstream- Update to NSS 3.21 - Package listsuites as part of the unsupported tools set - Resolves: Bug 1279912 - nss-3.21 is available - Resolves: Bug 1258425 - Use __isa_bits macro instead of list of 64-bit - Resolves: Bug 1280032 - Package listsuites as part of the nss unsupported tools set- Update to NSS 3.20.1- Enable ECC cipher-suites by default [hrbz#1185708] - Split the enabling patch in two for easier maintenance - Remove unused patches rendered obsolete by prior rebase- Enable ECC cipher-suites by default [hrbz#1185708] - Implement corrections requested in code review- Enable ECC cipher-suites by default [hrbz#1185708]- Fix patches that disable ssl2 and export cipher suites support - Fix libssl patch that disable ssl2 & export cipher suites to not disable RSA_WITH_NULL ciphers - Fix syntax errors in patch to skip ssl2 and export cipher suite tests - Turn ssl2 off by default in the tstclnt tool - Disable ssl stress tests containing TLS RC4 128 with MD5- Update to NSS 3.20- Update to NSS 3.19.3- Create on the fly versions of sslcov.txt and sslstress.txt that disable tests for SSL2 and EXPORT ciphers- Update to NSS 3.19.2- Update to NSS 3.19.1- Update to NSS 3.19- Replace expired test certificates, upstream bug 1151037- Update to nss-3.18.0 - Resolves: Bug 1203689 - nss-3.18 is available- Disable export suites and SSL2 support at build time - Fix syntax errors in various shell scripts - Resolves: Bug 1189952 - Disable SSL2 and the export cipher suites- Rebuilt for Fedora 23 Change https://fedoraproject.org/wiki/Changes/Harden_all_packages_with_position-independent_code- Commented out the export NSS_NO_SSL2=1 line to not disable ssl2 - Backing out from disabling ssl2 until the patches are fixed- Disable SSL2 support at build time - Fix syntax errors in various shell scripts - Resolves: Bug 1189952 - Disable SSL2 and the export cipher suites- Update to nss-3.17.4- Own the %{_datadir}/doc/nss-tools dir- Resolves: Bug 987189 - nss-tools RPM conflicts with perl-PAR-Packer - Install pp man page in %{_datadir}/doc/nss-tools/pp.1 - Use %{_mandir} instead of /usr/share/man as more generic- Install pp man page in alternative location - Resolves: Bug 987189 - nss-tools RPM conflicts with perl-PAR-Packer- Update to nss-3.17.3 - Resolves: Bug 1171012 - nss-3.17.3 is available- Resolves: Bug 994599 - Enable TLS 1.2 by default- Update to nss-3.17.2- Update to nss-3.17.1 - Add a mechanism to skip test suite execution during development work- Rebuild for rpm bug 1131960- Update to nss-3.17.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild- Replace expired PayPal test cert with current one to prevent build failure- fix license handling- Update to nss-3.16.2- Remove unwanted source directories at end of %prep so it truly does it - Skip the cipher suite already run as part of the nss-softokn build- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild- Replacing ppc64 and ppc64le with the power64 macro - Related: Bug 1052545 - Trivial change for ppc64le in nss spec- Update to nss-3.16.1 - Update the iquote patch on account of the rebase - Improve error detection in the %section - Resolves: Bug 1094702 - nss-3.16.1 is available- Update to nss-3.16.0 - Cleanup the copying of the tools man pages - Update the iquote.patch on account of the rebase- Restore requiring nss_softokn_version >= 3.15.5- Update to nss-3.15.5 - Temporarily requiring only nss_softokn_version >= 3.15.4 - Fix location of sharedb files and their manpages - Move cert9.db, key4.db, and pkcs11.txt to the main package - Move nss-sysinit manpages tar archives to the main package - Resolves: Bug 1066877 - nss-3.15.5 is available - Resolves: Bug 1067091 - Move sharedb files to the %files section- Revert previous change that moved some sysinit manpages - Restore nss-sysinit manpages tar archives to %files sysinit - Removing spurious wildcard entry was the only change needed- Add explanatory comments for iquote.patch as was done on f20- Update pem sources to latest from nss-pem upstream - Pick up pem fixes verified on RHEL and applied upstream - Fix a problem where same files in two rpms created rpm conflict - Move some nss-sysinit manpages tar archives to the %files the - All man pages are listed by name so there shouldn't be wildcard inclusion - Add support for ppc64le, Resolves: Bug 1052545- ARM tests pass so remove ARM conditional- Update to nss-3.15.4 (hg tag NSS_3_15_4_RTM) - Resolves: Bug 1049229 - nss-3.15.4 is available - Update pem sources to latest from the interim upstream for pem - Remove no longer needed patches - Update pem/rsawrapr.c patch on account of upstream changes to freebl/softoken - Update iquote.patch on account of upstream changes- Update to nss-3.15.3.1 (hg tag NSS_3_15_3_1_RTM) - Resolves: Bug 1040282 - nss: Mis-issued ANSSI/DCSSI certificate (MFSA 2013-117) - Resolves: Bug 1040192 - nss-3.15.3.1 is available- Bump the release tag- Update to NSS_3_15_3_RTM - Resolves: Bug 1031897 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741 nss: various flaws - Fix option descriptions for setup-nsssysinit manpage - Fix man page of nss-sysinit wrong path and other flaws - Document email option for certutil manpage - Remove unused patches- Revert one change from last commit to preserve full nss pluggable ecc supprt [1019245]- Use the full sources from upstream - Bug 1019245 - ECDHE in openssl available -> NSS needs too for Firefox/Thunderbird- Update to NSS_3_15_2_RTM - Update iquote.patch on account of modified prototype on cert.h installed by nss-devel- Update pem sources to pick up a patch applied upstream which a faulty merge had missed - The pem module should not require unique file basenames- Update pem sources to the latest from interim upstream- Resolves: rhbz#996639 - Minor bugs in nss man pages - Fix some typos and improve description and see also sections- Cleanup spec file to address most rpmlint errors and warnings - Using double percent symbols to fix macro-in-comment warnings - Ignore unversioned-explicit-provides nss-system-init per spec comments - Ignore invalid-url Source0 as it comes from the git lookaside cache - Ignore invalid-url Source12 as it comes from the git lookaside cache- Add man page for pkcs11.txt configuration file and cert and key databases - Resolves: rhbz#985114 - Provide man pages for the nss configuration files- Fix errors in the man pages - Resolves: rhbz#984106 - Add missing option descriptions to man pages for {cert|cms|crl}util - Resolves: rhbz#982856 - Fix path to script in man page for nss-sysinit- Update to NSS_3_15_1_RTM - Enable the iquote.patch to access newly introduced types- Install man pages for nss-tools and the nss-config and setup-nsssysinit scripts - Resolves: rhbz#606020 - nss security tools lack man pages- Build nss without softoken or util sources in the tree - Resolves: rhbz#689918- Update ssl-cbc-random-iv-by-default.patch- Fix generation of NSS_VMAJOR, NSS_VMINOR, and NSS_VPATCH for nss-config- Update to NSS_3_15_RTM- Fix incorrect path that hid failed test from view - Add ocsp to the test suites to run but ... - Temporarily disable the ocsp stapling tests - Do not treat failed attempts at ssl pkcs11 bypass as fatal errors- Update to NSS_3_15_BETA1 - Update spec file, patches, and helper scripts on account of a shallower source tree- Update expired test certificates (fixed in upstream bug 852781)- Fix incorrect post/postun scripts. Fix broken links in posttrans.- Configure libnssckbi.so to use the alternatives system in order to prepare for a drop in replacement.- Update to NSS_3_14_3_RTM - sync up pem rsawrapr.c with softoken upstream changes for nss-3.14.3 - Resolves: rhbz#908257 - CVE-2013-1620 nss: TLS CBC padding timing attack - Resolves: rhbz#896651 - PEM module trashes private keys if login fails - Resolves: rhbz#909775 - specfile support for AArch64 - Resolves: rhbz#910584 - certutil -a does not produce ASCII output- Allow building nss against older system sqlite- Update to NSS_3_14_2_RTM- Update to NSS_3_14_1_WITH_CKBI_1_93_RTM- Require nspr >= 4.9.4 - Fix changelog invalid dates- Update to NSS_3_14_1_RTM- Bug 879978 - Install the nssck.api header template where mod_revocator can access it - Install nssck.api in /usr/includes/nss3/templates- Bug 879978 - Install the nssck.api header template in a place where mod_revocator can access it - Install nssck.api in /usr/includes/nss3- Bug 870864 - Add support in NSS for Secure Boot- Disable bypass code at build time and return failure on attempts to enable at runtime - Bug 806588 - Disable SSL PKCS #11 bypass at build time- Fix pk11wrap locking which fixes 'fedpkg new-sources' and 'fedpkg update' hangs - Bug 872124 - nss-3.14 breaks fedpkg new-sources - Fix should be considered preliminary since the patch may change upon upstream approval- Add a dummy source file for testing /preventing fedpkg breakage - Helps test the fedpkg new-sources and upload commands for breakage by nss updates - Related to Bug 872124 - nss 3.14 breaks fedpkg new-sources- Fix a previous unwanted merge from f18 - Update the SS_SSL_CBC_RANDOM_IV patch to match new sources while - Keeping the patch disabled while we are still in rawhide and - State in comment that patch is needed for both stable and beta branches - Update .gitignore to download only the new sources- Fix the spec file so sechash.h gets installed - Resolves: rhbz#871882 - missing header: sechash.h in nss 3.14- Update the license to MPLv2.0- Use only -f when removing unwanted headers- Add secmodt.h to the headers installed by nss-devel - nss-devel must install secmodt.h which moved from softoken to pk11wrap with nss-3.14- Update to NSS_3_14_RTM- Update to NSS_3_14_RC1 - update nss-589636.patch to apply to httpdserv - turn off ocsp tests for now - remove no longer needed patches - remove headers shipped by nss-util- Update to NSS_3_13_6_RTM- Rebase pem sources to fedora-hosted upstream to pick up two fixes from rhel-6.3 - Resolves: rhbz#847460 - Fix invalid read and free on invalid cert load - Resolves: rhbz#847462 - PEM module may attempt to free uninitialized pointer - Remove unneeded fix gcc 4.7 c++ issue in secmodt.h that actually undoes the upstream fix- Fix pluggable ecc support- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- Fix checkin comment to prevent unwanted expansions of percents- Resolves: Bug 830410 - Missing Requires %{?_isa} - Use Requires: %{name}%{?_isa} = %{version}-%{release} on tools - Drop zlib requires which rpmlint reports as error E: explicit-lib-dependency zlib - Enable sha224 portion of powerup selftest when running test suites - Require nspr 4.9.1- Resolves: rhbz#833529 - revert unwanted change to nss.pc.in- Resolves: rhbz#833529 - Remove unwanted space from the Libs: line on nss.pc.in- Update to NSS_3_13_5_RTM- Resolves: Bug 812423 - nss_Init leaks memory, fix from RHEL 6.3- Resolves: Bug 805723 - Library needs partial RELRO support added - Patch coreconf/Linux.mk as done on RHEL 6.2- Update to NSS_3_13_4_RTM - Update the nss-pem source archive to the latest version - Remove no longer needed patches - Resolves: Bug 806043 - use pem files interchangeably in a single process - Resolves: Bug 806051 - PEM various flaws detected by Coverity - Resolves: Bug 806058 - PEM pem_CreateObject leaks memory given a non-existing file name- Resolves: Bug 805723 - Library needs partial RELRO support added- Cleanup of the spec file - Add references to the upstream bugs - Fix typo in Summary for sysinit- Pick up fixes from RHEL - Resolves: rhbz#800674 - Unable to contact LDAP Server during winsync - Resolves: rhbz#800682 - Qpid AMQP daemon fails to load after nss update - Resolves: rhbz#800676 - NSS workaround for freebl bug that causes openswan to drop connections- Update to NSS_3_13_3_RTM- fix issue with gcc 4.7 in secmodt.h and C++11 user-defined literals- Resolves: Bug 784672 - nss should protect against being called before nss_Init- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- Deactivate a patch currently meant for stable branches only- Resolves: Bug 770682 - nss update breaks pidgin-sipe connectivity - NSS_SSL_CBC_RANDOM_IV set to 0 by default and changed to 1 on user request- Revert to using current nss_softokn_version - Patch to deal with lack of sha224 is no longer needed- Resolves: Bug 754771 - [PEM] an unregistered callback causes a SIGSEGV- Resolves: Bug 750376 - nss 3.13 breaks sssd TLS - Fix how pem is built so that nss-3.13.x works with nss-softokn-3.12.y - Only patch blapitest for the lack of sha224 on system freebl - Completed the patch to make pem link against system freebl- Removed unwanted /usr/include/nss3 in front of the normal cflags include path - Removed unnecessary patch dealing with CERTDB_TERMINAL_RECORD, it's visible- Statically link the pem module against system freebl found in buildroot - Disabling sha224-related powerup selftest until we update softokn - Disable sha224 and pss tests which nss-softokn 3.12.x doesn't support- Rebuild with nss-softokn from 3.12 in the buildroot - Allows the pem module to statically link against 3.12.x freebl - Required for using nss-3.13.x with nss-softokn-3.12.y for a merge inrto rhel git repo - Build will be temprarily placed on buildroot override but not pushed in bodhi- Fix broken dependencies by updating the nss-util and nss-softokn versions- Update to NSS_3_13_1_RTM - Update builtin certs to those from NSSCKBI_1_88_RTM- Update to NSS_3_13_RTM- Update to NSS_3_13_RC0- Fix attempt to free initilized pointer (#717338) - Fix leak on pem_CreateObject when given non-existing file name (#734760) - Fix pem_Initialize to return CKR_CANT_LOCK on multi-treaded calls (#736410)- Update builtins certs to those from NSSCKBI_1_87_RTM- Update to NSS_3_12_11_RTM- Indicate the provenance of stripped source tarball (#688015)- Provide virtual -static package to meet guidelines (#609612).- Enable pluggable ecc support (#712556) - Disable the nssdb write-access-on-read-only-dir tests when user is root (#646045)- make the testsuite non fatal on arm arches- Fix crmf hard-coded maximum size for wrapped private keys (#703656)- Update to NSS_3_12_10_RTM- Update to NSS_3_12_10_BETA1- Implement PEM logging using NSPR's own (#695011)- Update to NSS_3.12.9_WITH_CKBI_1_82_RTM- Short-term fix for ssl test suites hangs on ipv6 type connections (#539183)- Add a missing requires for pkcs11-devel (#675196)- Run the test suites in the check section (#677809)- Fix cms headers to not use c++ reserved words (#676036) - Reenabling Bug 499444 patches - Fix to swap internal key slot on fips mode switches- Revert patches for 499444 until all c++ reserved words are found and extirpated- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Fix cms header to not use c++ reserved word (#676036) - Reenable patches for bug 499444- Revert patches for 499444 as they use a C++ reserved word and cause compilation of Firefox to fail- Fix the earlier infinite recursion patch (#499444) - Remove a header that now nss-softokn-freebl-devel ships- Fix infinite recursion when encoding NSS enveloped/digested data (#499444)- Update the cacert trust patch per upstream review requests (#633043)- Fix to honor the user's cert trust preferences (#633043) - Remove obsoleted patch- Update to 3.12.9- Rebuilt according to fedora pre-release package naming guidelines- Update to NSS_3_12_9_BETA2 - Fix libpnsspem crash when cacert dir contains other directories (#642433)- Update to NSS_3_12_9_BETA1- Update pem source tar with fixes for 614532 and 596674 - Remove no longer needed patches- Update PayPalEE.cert test certificate which had expired- Tell rpm not to verify md5, size, and modtime of configurations file- Fix certificates trust order (#643134) - Apply nss-sysinit-userdb-first.patch last- Move triggerpostun -n nss-sysinit script ahead of the other ones (#639248)- Fix invalid %postun scriptlet (#639248)- Replace posttrans sysinit scriptlet with a triggerpostun one (#636787) - Fix and cleanup the setup-nsssysinit.sh script (#636792, #636801)- Add posttrans scriptlet (#636787)- Update to 3.12.8 - Prevent disabling of nss-sysinit on package upgrade (#636787) - Create pkcs11.txt with correct permissions regardless of umask (#636792) - Setup-nsssysinit.sh reports whether nss-sysinit is turned on or off (#636801) - Added provides pkcs11-devel-static to comply with packaging guidelines (#609612)- NSS 3.12.8 RC0- Fix nss-util_version and nss_softokn_version required to be 3.12.7.99.3- NSS 3.12.8 Beta3 - Fix unclosed comment in renegotiate-transitional.patch- Change BuildRequries to available version of nss-util-devel- Define NSS_USE_SYSTEM_SQLITE and remove unneeded patch - Add comments regarding an unversioned provides which triggers rpmlint warning - Build requires nss-softokn-devel >= 3.12.7- Update to 3.12.7- Apply the patches to fix rhbz#614532- Removed pem sourecs as they are in the cache- Add support for PKCS#8 encoded PEM RSA private key files (#614532)- Fix nsssysinit to return userdb ahead of systemdb (#603313)- Require and BuildRequire >= the listed version not =- Require nss-softoken 3.12.6- Fix SIGSEGV within CreateObject (#596674)- Update pem source tar to pick up the following bug fixes: - PEM - Allow collect objects to search through all objects - PEM - Make CopyObject return a new shallow copy - PEM - Fix memory leak in pem_mdCryptoOperationRSAPriv- Update the test cert in the setup phase- Add sed to sysinit requires as setup-nsssysinit.sh requires it (#576071) - Update PayPalEE test cert with unexpired one (#580207)- Fix ns.spec to not require nss-softokn (#575001)- rebuilt with all tests enabled- Using SSL_RENEGOTIATE_TRANSITIONAL as default while on transition period - Disabling ssl tests suites until bug 539183 is resolved- Update to 3.12.6 - Reactivate all tests - Patch tools to validate command line options arguments- Fix curl related regression and general patch code clean up- retagging- Fix SIGSEGV on call of NSS_Initialize (#553638)- New version of patch to allow root to modify ystem database (#547860)- Temporarily disabling the ssl tests- Fix nsssysinit to allow root to modify the nss system database (#547860)- Fix an error introduced when adapting the patch for rhbz #546211- Remove left over trace statements from nsssysinit patching- Fix a misconstructed patch- Fix nsssysinit to enable apps to use system cert store, patch contributed by David Woodhouse (#546221) - Fix spec so sysinit requires coreutils for post install scriplet (#547067) - Fix segmentation fault when listing keys or certs in the database, patch contributed by Kamil Dudka (#540387)- Fix nsssysinit to set the default flags on the crypto module (#545779) - Remove redundant header from the pem module- Remove unneeded patch- Retagging to include missing patch- Update to 3.12.5 - Patch to allow ssl/tls clients to interoperate with servers that require renogiation- Retagging- Require nss-softoken of same architecture as nss (#527867) - Merge setup-nsssysinit.sh improvements from F-12 (#527051)- User no longer prompted for a password when listing keys an empty system db (#527048) - Fix setup-nsssysinit to handle more general formats (#527051)- Fix syntax error in setup-nsssysinit.sh- Fix sysinit to be under mozilla/security/nss/lib- Add nss-sysinit activation/deactivation script- Install blank databases and configuration file for system shared database - nsssysinit queries system for fips mode before relying on environment variable- Restoring nssutil and -rpath-link to nss-config for now - 522477- Add the nss-sysinit subpackage- Installing shared libraries to %{_libdir}- Retagging to pick up new sources- Update pem enabling source tar with latest fixes (509705, 51209)- PEM module implements memory management for internal objects - 509705 - PEM module doesn't crash when processing malformed key files - 512019- Remove symbolic links to shared libraries from devel - 521155 - No rpath-link in nss-softokn-config- Update to 3.12.4- Fix FORTIFY_SOURCE buffer overflows in test suite on ppc and ppc64 - bug 519766 - Fixed requires and buildrequires as per recommendations in spec file review- Restoring patches 2 and 7 as we still compile all sources - Applying the nss-nolocalsql.patch solves nss-tools sqlite dependency problems- restore require sqlite- Don't require sqlite for nss- Ensure versions in the requires match those used when creating nss.pc- Remove nss-prelink.conf as signed all shared libraries moved to nss-softokn - Add a temprary hack to nss.pc.in to unblock builds- caolan's nss.pc patch- Bump the release number for a chained build of nss-util, nss-softokn and nss- Fix nss-config not to include nssutil - Add BuildRequires on nss-softokn and nss-util since build also runs the test suite- disabling all tests while we investigate a buffer overflow bug- disabling some tests while we investigate a buffer overflow bug - 519766- remove patches that are now in nss-softokn and - remove spurious exec-permissions for nss.pc per rpmlint - single requires line in nss.pc.in- Fix BuildRequires: nss-softokn-devel release number- fix nss.pc.in to have one single requires line- cleanups for softokn- remove the softokn subpackages- don install the nss-util pkgconfig bits- remove from -devel the 3 headers that ship in nss-util-devel- kill off the nss-util nss-util-devel subpackages- split off nss-softokn and nss-util as subpackages with their own rpms - first phase of splitting nss-softokn and nss-util as their own packages- must install libnssutil3.since nss-util is untagged at the moment - preserve time stamps when installing various files- dont install libnssutil3.so since its now in nss-util- Fix spec file problems uncovered by Fedora_12_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- removed two patch files which are no longer needed and fixed previous change log number- updated pem module incorporates various patches - fix off-by-one error when computing size to reduce memory leak. (483855) - fix data type to work on x86_64 systems. (429175) - fix various memory leaks and free internal objects on module unload. (501080) - fix to not clone internal objects in collect_objects(). (501118) - fix to not bypass initialization if module arguments are omitted. (501058) - fix numerous gcc warnings. (500815) - fix to support arbitrarily long password while loading a private key. (500180) - fix memory leak in make_key and memory leaks and return values in pem_mdSession_Login (501191)- add patch for bug 502133 upstream bug 496997- rebuild with higher release number for upgrade sanity- updated to NSS_3_12_4_FIPS1_WITH_CKBI_1_75- re-enable test suite - add patch for upstream bug 488646 and add newer paypal certs in order to make the test suite pass- add conflicts info in order to fix bug 499436- ship .chk files instead of running shlibsign at install time - include .chk file in softokn-freebl subpackage - add patch for upstream nss bug 488350- Update to NSS 3.12.3- temporarily disable the test suite because of bug 494266- fix softokn-freebl dependency for multilib (bug 494122)- introduce separate nss-softokn-freebl package- disable execstack when building freebl- add upstream patch to fix bug 483855- build nspr-less freebl library- Update to NSS_3_12_3_BETA4- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild- update to NSS_3_12_2_RC1 - use system zlib- add sparc64 to the list of 64 bit arches- bug 456847, move pkgconfig requirement to devel package- Update to NSS_3_12_1_RC2- NSS 3.12.1 RC1- fix bug bug 429175 in libpem module- bug 456847, add Requires: pkgconfig- nss package should own /etc/prelink.conf.d folder, rhbz#452062 - use upstream patch to fix test suite abort- Update to NSS_3_12_RC4- Update to NSS_3_12_RC2- Zapping old Obsoletes/Provides. No longer needed, causes multilib headache.- Update to NSS_3_12_BETA3- NSS 3.12 Beta 2 - Use /usr/lib{64} as devel libdir, create symbolic links.- Apply upstream patch for bug 417664, enable test suite on pcc.- Support concurrent runs of the test suite on a single build host.- disable test suite on ppc- disable test suite on ppc64- Build against gcc 4.3.0, use workaround for bug 432146 - Run the test suite after the build and abort on failures.* NSS 3.12 Beta 1- move .so files to /lib- NSS 3.12 alpha 2b- upstream patches to avoid calling netstat for random data- NSS 3.12 alpha 2- Add /etc/prelink.conf.d/nss-prelink.conf in order to blacklist our signed libraries and protect them from modification.- Fix off-by-one error in the PEM module- fix a C++ mode compilation error- Add 3.12 ckfw and libnsspem- Updated license tag- Ensure the workaround for mozilla bug 51429 really get's built.- Better approach to ship freebl/softokn based on 3.11.5 - Remove link time dependency on softokn- Fix unowned directories, rhbz#233890- Update to 3.11.7, but freebl/softokn remain at 3.11.5. - Use a workaround to avoid mozilla bug 51429.- Fix rhbz#230545, failure to enable FIPS mode - Fix rhbz#220542, make NSS more tolerant of resets when in the middle of prompting for a user password.- Update to 3.11.5 - This update fixes two security vulnerabilities with SSL 2 - Do not use -rpath link option - Added several unsupported tools to tools package- disable ECC, cleanout dead code- Update to 3.11.4- Revert the attempt to require latest NSPR, as it is not yet available in the build infrastructure.- Update to 3.11.3- Add /etc/pki/nssdb- rebuild- Update to 3.11.2 - Enable executable bit on shared libs, also fixes debug info.- Enable Elliptic Curve Cryptography (ECC)- Update to 3.11.1 - Include upstream patch to limit curves- add --noexecstack when compiling assembler on x86_64- bump again for double-long bug on ppc(64)- rebuilt for new gcc4.1 snapshot and glibc changes- rebuild- Update file list for the devel packages- Update to 3.11- Add patch to allow building on ppc* - Update the pkgconfig file to Require nspr- Initial import into Fedora Core, based on a CVS snapshot of the NSS_3_11_RTM tag - Fix up the pkcs11-devel subpackage to contain the proper headers - Build with RPM_OPT_FLAGS - No need to have rpath of /usr/lib in the pc file- Adressed review comments by Wan-Teh Chang, Bob Relyea, Christopher Aillon.- Initial build3.53.1-17.el8_33.53.1-17.el8_3.build-idab9c06cd26b51776d17dc46b32a1c5d7d72d88c7libnssutil3.sonss-utilCOPYING/usr/lib//usr/lib/.build-id//usr/lib/.build-id/ab//usr/lib64//usr/share/licenses//usr/share/licenses/nss-util/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -mcpu=power8 -mtune=power8 -funwind-tables -fstack-clash-protectioncpioxz2ppc64le-redhat-linux-gnudirectoryELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, BuildID[sha1]=ab9c06cd26b51776d17dc46b32a1c5d7d72d88c7, strippedASCII textPPPPPPPPP P P P P PPPPRRRRRRRRR utf-85d9039f152248094b8290569338757194d25c451e5b515c0bd3c009d92127d5c?@7zXZ !#,] b2u jӫ`(xy tJH^ՄK+.go98cRYcрf|thDaA~ e?J :ҜIy蒫hQWϐӊ>.~/T6߆ 2>Xu X(y ]մװ#Z\ #³8-`&ޑ >ѭmN@v^CuJ=mj9nR,WL~ʎvnkʰS'hL>{ðE"iu^pl%eS$L" Zq&Sy!9M m?UdFj|{JgK_m1ҏ'͈C_3ApAE){4lr6FG@ d\*u29s=hE#5.{ޛ(+Oj K Bdy$+y7@8y`fd3uGp4Ȳb@Z@a5L(I;E a\hKM ZY. -9f"-O<3"hcE7CTcFXP?: ^R]Ze}<AﶛLgcg+Y+'%ŭϲ㌘|r]+Z~JJ j6Z7% U;!#ܛIʻ |Ŧ|Cv;Av'i%!w6^x}T` Y~ʸt[@CTWQiJцۿ@7aD-""=3_&2) ^=kxn4> z&n?}-2d4ZsWCiI68~qO<\kŲAټ/kUJ͌}+_o-EC^>'~5_y%FD:wpb R+9[bj$q$+t72~9f : 9L9(9Ur mX\ije/T2}f )ғ J6[k/6O۵쿜\F d)#Es1)yW%T*F1^ W)B$blω (q.GFYS$vЛ2eޢi3o`3[tGDgETȐQ|!cr9wcWҍ.UF-?\-1샼D4r~ 2[׏ɐ l7/yfgݮ4 o+?D羟ٟ8Qb~:dY_"t6c!6!XMZN`>+7gՎq>Ԛl(L NwZu2s_i(i#ې_ZeأĢҲaroJW|s1:KW^,PX$fmyҬ4%Jl1! I3|Mǘ s/ߚ? ȹƾ; ]:aV%{GpDEY0/G$c/sZL00]8<&ܷyʈ nڎ'yYۓ+qQAN}*U7Ƒݶ~R1v,TXeКDPب֟<ri 5#+XA>YIP|S0ߡDS^ 迏iHm"*A$zWz.}m7Wr ZϨIAU'vw5Aa,"NSN52TX䚄6z"=3+, yuԪ0KlS lPj#Kh?R.ϝvQu~`tn[|7f2/bM8! ]cVnA.bQ"Ʊp\ei$usqAta tZFצ}j)}A[ @Hx ,r]Λ9>vL8ǧrf=-=C|k*R%'u _j_ ]yKzjm.-hQK&[S)ΕI1]UǠmI)36]]kƟJ)џlb_yҰg(^d6K},CJ 0Rj3z_Y jU;c渮o".4tY7xpr%ܞ%w yOb Nl,dq:{7\uyוmv /AR'OR3;f;$M~éyMsƮn<-jTU6G7TMݸq( ND]#~c~KL &Ɠ=2Il Bk"dPky[p2!s)M}ȵ+AUx]J-F,kJn+7j{_Ov]ds截/ws R?K`?Ȼzvؽ*X1}it%Qj"VKz,]_80^=Q̭( ^l;!r| {3c ^G]:I 2eP7ޙzG$TyЫx1͸[puFl&-Mϟx@Q(d3ߧ7n/tʗuºCxe7>P)`bHUQ46dSВGBD )t<ѡT;;SNQv=ԁ9F-EKɉ㪢4URo@(,ĥ RfZuFKfsq`=㰰 Gm rCyyz.*lVs3ERi zوi4GQZͺҀKY\A&UJPkG()Q뜘07!MIU~ x~x4>BzjqrRtP2`RL#<"҇A-$<';=Eg#t!#0 t|u#w,a1"PHWo ݧ+F[#hS$S .k귽uъA|DZm0({L x6'J|'%hC/KFm &{hx"qcW,m{x%4b&bń[t_ ru TAPQ́w sѿԁk1!/9Ԍ-ap4&T'?2J-[$ު[3=KrBkeE6\Iy\^Θ*Tb2*uXnmnSՌd`1L􉀓ܗ|OFGp^. a2^2)ケ8!9)Ac>?Z儵-Bg .Џ5yaxmw<= fPI<756's?EXp"NZ EVP^h3[=BEsdK{akձۈW~*`GL>F$2h]~BP2J$e=^'IrA33GnoB~|H۶'`RgUCzIr lwJT;:g;8r=;KbJF)|LېyjAǾj=b !rhg\Y#qRSK5YB adQDd/jkskeʃטn}pN_o~ ׇHg$!obVy8UÊx>{}y"cdžsv2u 죠ε< q|M%a,UqΟ4bThw'V*s-6{`V"6\uf,V܉P/&_ K2 ukKxbV%3'dD2w.< #+c*\<4.(8<  \µ@:etv]ɳ \Ԟ 0Ð\tq{KLcor;sPYy?RGr+To}ZY{r|pwII/8ˤ7G:y=]oXJԬ uA%20|>'=1p)$@dHcr`_7Bԡ.PB0ךG`zo z}+ ~W |$O }^` &v`(߃M]iyJW-`aŠ?Q|q\o AS:E'~10$>"" 11)73jKkM9>(7~ߒ; 1Ԑ0=ʅW>r /=bm!I=I٦ټا2tqy@dPIh&ŷo=~Qi\ %+]e>_mTxMIϛ`[R̵zr vPxdr"X| 9S-1[/.ec鞛V'`(YG:I%~1D)*GœR@f K Ҵ CuRYy,=EP2h;O4gߛld9w/@IpқH|YalÑL! ,J7ra[i9 G[͌ϊyꨓ2iבA"W͡IߎqR<€B[*RI`})vM\Sv^A,B(-jxghPM~L,R2lN҆ߴZaHzMY)ҨcHsN OT~Ԏ ք AAߨV # Y\C>AQZ5}Ib:M+{[CWu+@wed Y)^b4Ns1(]$9Ҳ@ojY~Әp Eh2f$:ӂ5D1sHAv HEގ_<PK@'X_,I,%Kt+A{h8,ȉےKDKs]Uh ¦kb\Y,+ʠ2bݴEW 0-q)Gk7jO$ S} aOto_HlH?NYSz]Y6h3(yWhG!]yU\t= ^-k?x[DM-Ic?2,rwa"+$I:[&p_M_'Q]}Ȕe<*OgNYCu*wy,YnM5V mϨ@,g|æUG[o|=j ^|=/ };WvjVmiJĝn*(Y]2%`9jk`5tNoVVx`7חN%n~wEY@"f//d4QnyfLѠx3 {9x|n 3: s.cvz\M^EtÂ5-S>wCMPk ִZa_~ׁͤh~!܅ȫ PE_Bv'OY V0Ő0ݹ`"W*"I7ٯ%:T[W[jC !F-p ݏ? ֠J!PGMh1% sssAr<A F+_ޏw8@z3 [p-1z *B4Xm[>:hz 45Sz'E ڷƱ9Dlt/(b1vas~,Jm *!ec142ղyvhQP4^èV4ibh 79afa%K)KYd9>H-ʯ#JT-;KQ.u'd Ԓ{'ͦf%}[@@jnR}'Nu*'Lh0$8M ذMz4A 'eZC!VٵOtg +\;W;=@fO5Acxrf/k߸9~qT0RyI|d'ո9GDB?DLWɸ 49R^̱;dX3Hu.](dBmyX@F8na Q1`5|N-_a yj:n%m6eDV|UF^HL|~%u}8-=s1/{Pҙci?ո˙ӭ-VA^ʅYlaHMi{2?F%фWA2Ր^ť%cD3S<*9#z#ST|#8 J"0#/T+5)s*;ߢc3mwAҠZ4{1*/ v@Uh#EF I5"eTwH^?[kxkApshD&˷[0"xb]F2`.Z~Q`Ѩeo`}-T_h>Hh:g=s[22/迆up Pgl8n#.)]|]G xtT#*ϣqc~i fx6V=orE2#2qvbMBta͞6{Lh~3v p&/ :k)^[Ulm*\ #bk>~X#Ȥ]Q{vK_ehxyʪ C{^}:y.#;'JB1;(\8˦΅Ja^ƌ}k84YRYg(ݴX|H`t({mw1m&GGiґ&R}&֯rF^#d >0dg(RX :w؏X :'I]61zW9QOKJ(V˔"p!Y':]a%#tVzIEJ8$=M:2C=~,~L!J;3+sZ5ԪFViE cp[5 b\bQ4 {̷/drR\@㜿5 umó-޸ը"skNaTD`H3]LcezhI97{CtC ]DW'0,"dzaxȣs1[ WRO:* "BѫMW`I)&I?bJPڣN $U:nrӱ0 MkH0 N'l0lanmegB ۈ.0_ EMguy>ݏp |U.ð 7"9K2~KI(dpH &tce ?t4ksI;..)Kr /;1%sfzGc#o~K/nP%jO#F@.כҌDmg 'OC`':"F|S/O+k~8kTc?i#N AĂ_QAH#v%XEvayTaOU5YQTL/ ϯLxQ1&hmirVarO^ȋ -aUkjR(_XC0NrpAӷQc>J7 J`J 8Θ8S@̉ c`k0GS=2!OklA3g@Ζ ءU5}xPA#Ԟ#̩hzxx_hwS4e<.N{DH Q)ꉏ SA)ōˮbL5}ܕ"+r+Kj^WA x 4l2vs k[w3V Y0ΚVm0X(V(!A5Hڏ,18wx4CϲQHI6Yj.}-PAL%zx7{Cxvm=M{,lN+0]T(dgZY*; q!==7NSW1oŮ )Ql/ԉÃ?QYaXk~9TL',] g^"YmhnWXQRF=j3"&ls4?c&я^E딉}@ .Kz4#8S/<}D=?N(*ίsnJ>|qt`?TװݣMr.`$Ȑsy\v+xv}/pNYbb&L(C9,i,tFp囸 V뮜[CMH6A ^n [m_IL6Oه _6ױ&8hj8%|w ̷B`}0Z]7ݔ>=wwgQlX!پzse.3ѭSa`C̵QQ+ޓd:G|}h2bܒ_wYFK7cxʐHVxY ՠ0 v{ $F#xbJTዿbEZ S !,g%⢹$צRYX9w-dagA.epxqkokCU(Qc &=.@*U #WD|{lJ0x1ۿj!LbMFQ⍞DE}Qky Y\0:2DEc3y4ޏɋ 41@gP&? _JxD벭P-TnG+[b)ҭQ m@Ԯ7<İd2 ܍V5`3s Kek2;n\E ?ͨW(%{HqJ.s8 OmҶ&)$nՉ㊔ j0J3BLo/ >զkK> ϥ4s,W.P{(fS,N |yf#ʊpD w :.T.L aWkޙTwGv^| e*X&ߊIGg38~l5zuȤos4fDO2ef./Is尹yA@*D(`L6A]1͗7E-KmF) T_9ǗW糍b&ۍq` --)'|AU%ǘ *ak}oW IJR0T5*?$XId-{s25LceߌU*;%2}NmLNhg>p}_C|kn޺lW챹5v[$U侚,] #t.4zԽ[b8b}ُZaTj +X#CDHN;&5g M~(>e"?.E1Q_H# j{@@&.p&,BnC!"8AO~/;(nU.YQ2.g:3Ϛ|nq>E1M _Mϲj8)D E jMYuU؋r, pe5V.6  LhɣdMu76 +NTYo>htXݿf[jnFr`jɵYZ!/d“] ms3> 04RR1KpMl%Qot ruf)'خ}cY$*TPq!IYp[:~ *@Ld8qo-BDŽ[˰x1Xa%:6Q~X`(,Nvx (I  x3I]G~f Iָ \Mè3CIؿ)LzW]ZF5tvCMYh'B/32u*]U [JF&ZkX!G+'K@;p.lFDEG]Ꭼ^reC?pzsYnt*sv@v( .j ȻSKnv.zpf3z!>4p>RvN )i1~Ku(bЅo@ݍ)s^NX;\479pi(6T{hxrOb$hNDJGՆIg)1Nyrxes~n"L]$ۅO֝!M\ٶZ*m@KªW>7Z۾c(,LB$\4wxzo @.~>1a{i !  @!LC|S9"-KUUM v2h#)vV[SK\(u f /_rQ{ZRD2҈Į?^/Ʋ~TA~p;y \n*ϙOȋ7D}Cf{n}P9N FbWl}Ya ɝdU w.d+̻קEE kd9_ϐ{dOӪ<S*JUD$m=pԆ%Z7@㰱 Ny'Sꂀǣܶt':b{<̹"Ă@o;ݝ5@~%*>jOSAquMp[87(\x : o6o|;~ Km:F}P̧Δgtvd{GF ൂ yz0В0&}܊(Kj~5@mlPaЎ< *c2%kpjb$;Elq\GO^<6=wn@wfNg/m %?ksf;Z)I PQDPRv$OMe*#ߋs-z``\r ?$P]A͆ R!,5v\olZYIz3:8#DAҢ Iݍ}ۂVYT[|0i XLӰn1%3reY&nA*ZQH+:MùN3+NRTщg1~Ud''Puj:$^pFU;tf0t U2Pe='L\اOBX@G~*qkj%+Ʌ{=DE%hKM\Z,=趋^fZ( n~NaH" 7ψi5PxfB(bXEl%9%X_tn/3x: /Ιu` cxB}? ǥ.~UCeIF=Q+14a[!daM2sLxs_'Ep`Ae㋽|;g_R5b̤CS2E5Mv^]4 j0`fvKny$3&(4c5)E.˚| {j :͂7+Hop@ `eu"]R}DIpNRQ@كIJMb |sf=i)|ٷ\g0rMFmg,RmD~"hX7#= 1G绀]Vxᛜ}/Rڸ>Nx\gT|ʥMFڿa#&Wad?Yqr+ʜ 5? O3={i5|Uvzd^kиɓPëʪxk"aE{Z}c&:a|9۰)X[\MNu d2xɰ#vYd4emE} m:_3'q=l߳&,gD3ll>% !@UqbКe)ML3UUtpn4v)JeLL ~Ƚ;GNs Xb{S3w8Č="Zh- /yENm[q}XőG(O!#U|CL _Ą[YD+5Nr#j8p,O+%A%L!z!<#hN"L:27cAm\pg=r4B"t|78J!M{墖 ;WmQ?[MT78vCXC0OM9Lnmֿh;\L懨'7*EqEc}A.MuxnyRg=C;Ԣ B,n*<B5[t6zȂln -x0z6 aU[{9퍤7@il҃F ˌXLG:]†ٝ 2qW's w6̜'l1s?)ƣ$wBԐ?B>6nނ]( iC <og|Eu64 vIM[(Ii $jڣDGVYg?CH*Id16\s*Yf `f~J0Lܪo4H9x İbmfqp>9|)Z wfWˎ!kv8A|B2WO(3|sAE'|W }oE^ ߐJѼ=)To*ťԽFJgd+j^?Qt7v^p en%'"9曃.ԋ6!\8߮xr[T!*?r>&4edԨiΓRԁ(Ƌ`JU%1 6 3=]vc &xf'*Sm_NNx\'(d>Sl)WvTͿ|Ȱ{12CF lU,SDs g*o  ïgלxM}-58Zry[g#t16l6E*gm[IÝwhkƬ`:3>?=x@U/Qc,~99;YOXk5=:GGvᣯ<6975dZ Cӂ50pŇYv&Ycyt4'V'wG`X'^h(3ޱeeGY"; zZ՜ OSK_$4ߌ~E\*Yɸ־Ҳ nn?F!SVzE@. ,()yt.;zitU MK ʧ xIB(F-$U*NxL|r=%*xV% fm*VE5dhRda q-;~(7ATubо vf\dUr٢&Ny[JTSIكRvDK"!DOC&b|' >l +gY (\ zAyUR[Xl[':#!@)+Cg;tA_iJDq#\8$ : X=DG{ > @j!r$SXuƑ7BY>cGL0[btݛ!NwDlG6 mq@8::6 #}0}aZ9ACw-|zRqBˠ>o7@UL' G]+.$,T4^%FGL㘠'}8So dJ?9m 3`M ndL( dezoMM4IlVgP$r+X@{u|}-9)M  'l0$6~pCh ,%J&(#}1 0Rb᎓ $K jBн{l%o_W #_Ea7['s ye?4+,p^j NNq]]TcBĴpj uҲy1%]1 ðAl#_Co:/3$ZX!.*ȀMaMh)DlMdct/E2RV 'Q2 ":ue304QY¦L%wC.=Z "YoXfrJ.{  OcSagfJ3aCx3{CAg]Aċ Ŵm 3`_d(?}=E E=#!{$a0"_ A utnjTDv5ϼJuYt$t_'Nv+I5R)x$tM'2m_x~mE(wi\ZfjkR`#Vl@|-\W^9 d-RDtײmIla-Ի( KQplWT*oνDt34 RjӔkՁ ^:B\T"8i痢z(^ ,H>mqK+*n4,dG$O ;ÅI9I3# Pgaˈ3'^)' b8LJ6ǰ !'N_" MK҈pxAdޗm0d&Qh>M|ZU-5(w]t:<]EU85mRge4uY2C== -:bQnJk(bi$eWck/3| Ww'3Jxe:u܊Jǝ'3Q"~>/4@yT&3긌ZcZ^> `5MƠL [Qbw7˒yB%S\EC=$UdIn eHfF.U٩r )%paU-Q;UB.SE_;xU鰽[;-P<MfM/K\FGrݷd[ G.K(kq6B^dݦSI2LhA㏾\xSt(9p''@IHwY?NK;2JXn}ʢ8ݮs ou xru\< bS2V0z `ӞCpP>&o66Lw\;딾gj Dk9P{/;IDuZ*,aO+^|7BX>{ jJC8*Wc: XIUom68kkc8`k(:FX + AlY`K'(탢riZ8ՔMT]Q:#[|Z#w  ATPv|!*"{AX1PSZN" Ae#!08y5yyEtĭD99\hXk^Y|Dpc\J ~:\jlZe]6HGH8T$[jR,T6E;>C#KgӇבx}_3Z"n `s4JOA1<$EuCxʣ$Fٓl `zJpRZ@*IK-S@h.J"~KdWNy)qJ W3 ɨ-^$ONWu^`%5z߽m^RGfƁA%bTG;WʊMG.S8S쪭4NǕ^4EW^ZwNf#g%]{?|@+#Slm%|SgO5bo\SҤ*C z~}>@?=!“Js5U=dh(*#AЗT~\V!"#o)}lg"ޓ4LdE3M%__L41j4xVZ̍#΄іяɉaHY auPjLx#&,?˭U v%u1,U1Y XQ^(LH+<^<kb>LF6aVT i92^Ų#mhϣwb3K۱)9CvЇ*tȍo9_IY_m*sZEs|f} :a^[yV%!;^=yS(!-򇋅u ɽs(2FzG䝶_Y^æ` ᶗxe 0鋒uOf""P6I]}~1 ԈPw c-P W{ͅqbdS!I^檱)t#<Ԝ JqWcs1LX0GFpQD=3"LHOL]&ܶʗvgŤH}=u^`rL?' 8hmKFw!"^ߦ59Ƕ]+o.>.Iͮ$ 7pg'%{E2?E]6##+zSH 1Ǻ1x+Hфv@zbv|O;PvOxhH@WL{Uш~XGʯ]õݻ 6/氺- {² 4x#*0pFUDm w$%*C2s4:3ޢ:#V eg;T~e}x܀AUn)S*#{Ck 04SR')?$3ö'Q e mw{!|jI$aNAZg.(,<$m*{jSǶ)00% {6%֡mYڞɠ뜜J 8S{_Pk[}{a.wixl[DC9Y,PB96t8Gz? w;AU9;TD UL`UA]okd]m+noԐ.щG/cLz&(Yvr(~qvo8Sjbum*7? Ӡut ;|YC:|k3iȇ}_{ K*\;עxGSxKHlve _[NZ/e~%yAMx^Rq搱ys9U=^VmoLpQ>Ozfq]i`R= kXـf`W.@ tV ݣMET$ u/0lX0 4t^9}iO`4p \>z5En`fDmۮ^Pf3jV\?0bgB`a^0qgc= &@:TD{(Fikc`w0#v'& cWWq眎OR\3i- Ӟ'%&[Z>8YdFR!nA{aa~ - Qյ0 PB/j{Pgb3HRs8%L݄dbhBic zy9G8ߍJY"mG߼q>T+2Bc%ezf483_z#x.+`s3@Ja(6cC]hܱͶ:.jjE3(^E(|,5"Ñu40>v=-+s!i\?&7Ivyyf%$B8FiOyk֨{9^L{4a (},d*}u LBk *N_?"7v}vW\qwq5ϲQGw8NJ`T/LI:)E_C.H` ^B"KrׂY%'"Q(_Jrd{,&@!k_V1q2.EX [_!)P28@yۓҠ(rBC}e򂎐9>"8%M,4죚flD`(!Bȼy7f!7R3)K-t! m?)l:Cש Z?v1`I)j@Dt~uX Sw]H[Q5:viT}E#/P>|~[hb4a~#HΫx;gؗ#ġ*XF/r5G,aVr@Tad >zYs1Se b 2,Z L%dNZ2ԝ]ɓRNCC@ui[{`,wqK„H.#GWg^ETCN) rKkِeԮxD7ǬAAy\>u~^ZtƄn·]@Wca$ujk' 5c76',]dwYK.+d%n0]iuC4[v%e 0o kWFz P GIYF"GZ.g317';RXP2Dp 4!M$+/]PԱi- \ϛW^Ǖen=S 832*vg>5$廢r@ mυ}yB7!6lU5P9g tzD)?AF<QOQuc-WR3ӲWXqKhT'@B}R>Ib6c.\RŁAHiJp{ltH(VXD ÀF }i]S *Ԯ>W匎>ry׫T'hY~'-S*;cκ@paY6fhjrA;" e% y關vN :dNr)ton$ЄS̒ͻR2'z6ў\Nzz)@(Y=L#](ʎYJ5b˕f\JOh62?mG,kuQ,'5'_10IJ'Ҽ>rwP(]ැnŚscU~EcjW̱nI5dM*CIo.u} |Y_,E;3jtgq]dPQW| F}#h8%kh&Xg}0m3ʍ5(uxqxq5ǿ8*c_]*|&p{R G_"P{XںVMU(m6V<2?h or\1nFܘz61l~.I [ K]_. b/oQq:#!s_Q- ~(צV$c¶ΌL%#5BՋ[e /Inak53{\ePJ\[]d:";:eX.|dߍ15HGg63C{Q KSN9L<$Rc:p\|F۶kø_DO.iX{A!û/S@I3;dVHGS?l <[,[BU 2l2['9,4S /~@y/-L]؝< b4>'j>3 F D@4qU@d]Og=^2^UȾ@RAgvOt(B~yp:&mlym06PI5Ț~ڐ$(mbEvXϴ1C@=fΐ:yED5{)3Pi\O bʈ4g/:;mKQǰ÷o?>}xfYߕ>ܪh15[鼡=l1:뛼_=mnN_fa:п{ۇaR#|;Ȏxct}jMDX'dQa Y&og!ilEߩҏd}ݓd姯b!}گޮ6<V{NQ=593-a^V*r**̙ _B'h2 # ԟɯu_':£hfQw YkvmV1FQHWr/ =Ӳ&!5 \@, IlފLZ:-!=䃭t䏄dQ6)%nBI[x heMN2ZgDb0Mt B3X'^ QD5s0)N c#}׍'?rDFKW˜P^:kd=Pw?[fp9=HB@ӈWx5#$UJvi $UC{%M.j =3hω.=i(O9NBpM%֨W3M P$I]tծ#@.; Aiظ=Dʣ|g[Izw7 %Eş|ANά|wsWu㮦%4D(NJO_["!LBY9׬Xm3,w@j:r%'fqx@I:VMO(A3,_㙟ijQj.'ZRyC»o픢z³iӗ&(<ܴ.Qp߿ŦQE~W>+΄kO\힥du]^ Jt`6km{{ϸ=Z5<t9@WmՂh.9Mԅ) 3Ui/+ݳ"/ U_5eSZҎ>.ֺn \ P;^*5?|`X=+4~e(NbBd (3}GJ30ߛ%Ss# ~M:ݴdhb$bl8 }l(tǹs&>`X?Y {J4ylH^Ƙ%Y`D^ە8A>Z)-B,!&eWC8ЌTW*op`,~<ȣŤwU C<&MtH G3T9$l4^javƺYn>X" ֠#{]0)eMъgp"oE$OkIY1.~Z<0i˰KKȞQ7S-0~vdd+_c%CʝPµK/Xsb4*2Lva-uw(<2;Nȓ `Cs}qPҶs;fU`ڹuRg@>~J@rR=[? 9jY-DCVVO"Odfj#禍h`kYѣjά=}G8O^mS6nӎ0}ke@58u5Z<[S}ݱ*-vS@ܒ{}sQ&:~;u@,w]bYLt N#R~g6{ۇ(.{۵YAAFM2 D2E&<@\E '^\u u".1 D d^foLYKB`;N,ssrw&ۢ}^VS.+"_"iK wE~hxQ4BQf wH5Z-^-m\EgN}I} ldeJ8kp4YfOK/E>0xqMG%uJzκ̕GC"GdpZCD"^ '󞇣cݺFmKOS#ZGp `'Gv, eN mZNp_喻f}#m:a`6-Q[BoW /m -ee^l&KV.S]v&!!%|q#vVLB6o"IC]x]Fgz$cX|؀3$E|ftoDXV1,ropEG7^~`˺\KAB=MLkf7gY[z\ә?b/-ǣ;ŽZb.Cj 38xTDNќ.ɳ/z+ޤx} `iMK0mЃ jOֹ:/_=< HDx![TJ8 L_\' ŧzP_MkʳQD Ȝ u> dC]v9M~°~*žMgF61iڱ1TV * |?GYPݜ~RIe2!$z 1 H Dk(p2BEvs*:^Λ/=[Tc~E%iX>Yq簟WP,2=к_!J yQmJ#3w߅fPZUє5vM N|{:>8`IyMx \Er5FH -F#D={5Wxm hbY)4o4_n/AJ3 \xsvż{N-@[R&eF-`o*8A֪}giwuZ~21z tdݍy)(ݔૐ/Q 6^ؤH6~B}I [?"wjyc]~V|(ک2?]a[ 86埚5-'gx:lwjC2J ĢFkf(3A0L^F#ALӳCʏ`} WT. vBf s2m"޳fG}h*nkIu!] "H wiW&Ly~|/3JX6cwׇ`Y^1XGtṣxWbn.n*^" e 9XI QwPq9;ؘ*Xo04 ;q,i;( Z?q5K A߱b0]҉}(=b/(hI+#K]` Cz֕SojY7[H03ѠQ)W(݌e]ӈ]nc1'@@i/a?%8Hu3K ݃ͺLd,w|es`s=*c)o=g5r\`)fYk8jMQk%*`6:HBs<bt_F2U\;3AA z`V5%e Sr4"tG=_[1"ϡ"?BzB;H-kk9^<@Ē-ǭ;f н*{ůP/.dCAO VIj!v=bmJ\OG6 BfόOf _ mt9ƙIF'r둸clv.s"MJd[hgIM]il"s.Lk ށ~P迩Ayl;W];<>3Rt)nGkJ?=+Ævd9YC0w@kp? mݵ*(-(V1gfKG>&H\yLIz*oA++ug[+yfTvJP54Ca3JC_)հV9OU`6`'_ ӂtd iuesg4_"Ydre#\:cLPjı<=JfLр]Uы0;k5;X6)];{#lvKFE<6 R@?rjGVDnዯm'C(zUâdpAؽmz$d^\6 GH 7OLV`v yZu3]Ϥd^ qv~˖@w0黎TWU?y͠vW)&,5䭃¨&sK)T<)7۳Gj{5k)*WPǓQB:zY)_.m}ջ٢lR?]%2IasSw~0 =vs6Ҝwbf G=#Ck#$Wt3N8}s'/Q!tymHi<]~5n@0!k`QhNA(&B6xjر!+ 沧 s%}g yވy1: JƑŅ l[NƓI*%SG&5 q"<[fhH (%=? |7e Db=.|}pۊnVfY;9L3x'>41Ro=ҥD(֖itb䎗ǼtIWq{hk~Ξm1f_VϗH8Qڳj |WFO,%kW{^R(^ ң6r(!ӱ׻2m].X|6F<8 .Zc'\V%0K ;EQ4)a]^" {Ը@<,q`_)s +YHl>> f-!p+-k D}e&BǮMKe}y?b  !d ]Ziank;;ZF@孽 .#>^d&`ŹϯV뺾]릾h)q "ByuyGuZ}Yn&[{O?,] 8kS7ם~~Mqfi=Pd'W10OI֌WrMC!sӣL pH:轵hoSj-q14/8_9n-cs> I*DJ#B<٢==[wpVHrb] `-\3 T i۲Gh٬Wy;GI&9L-71Tʳ=ؠq,_ kͥ&Mqp !MD&'=&LDQPc'?& ~zt r)\Cs1| {mw>؏bͯе-z[imDJWC{Y n9?sɊ|Bl8Hjb?b ΎLꃞ [1UKZU|߮j,JzeWFCIJ)kl0cu=L^o5%l;փ,yNO/.ma[?C/22&T1G~UX; {"nEgu7\J@yM*p>+ Cqae .ɐx `lkHL9݌Pץn] !Jv8Hѵ>z .|4EQE.)KjgX~%qȵo31;B׳۫0TLg^N܋Er`G1hmHJj } K~pl Cdm{xe¯ Ԛ+UbiŇ&e+_ݺT~<|_0 px?^ ȒtრLI|8$DX'}EX4 &YӃGW3')t>f4{^>=n6̅ `,;CLч[V",Q%o~Udslz̓/#NT0tDt&q\BafKx=:mHUњ 4?:TqMD|Kk^e1`VT"0Vԝ|~%=(LkBROVz,_U>L,ȹMm;;])o1hgCCڤc!Z $ ! [MR%Tv>U ~#j27фg;x`DakJݘY-^6+iUwio77Nw+ {th)$ֶEiQ@>C"3NXkqQADe`J0TBY5Ęy[cGLۋi $03Bd(A1EQDpiҭ2).1Nčs,c-"ڻjQ|-²q%c=xuĤuѱ%ѮW""~I^$nH\uܕv&QI# TH.PY) \8FX[ɖ%e)yNYTCtN(YyN#rږܧ iUܼuV$S4Gcs\@Y4k/B @$拞WaD [%keM138R!t<'jGe_a0_15ŎcVXM)Ŀ]luuƘƢ~Fay u AVkD)-mg`Mp\%'#5oLSڜ!t@J6a <:Ko?ͬ LN|~uc-س`N*E Q#b:my֊9 r>F πbq Гčl t .l$uvY$xU1.H΃龛R r}6S?5WH_7![ kȥ[`#!Lڠ ;)CP?A$W-0kѶ%yp^М847JLYw=J5nfr;L 8 |ũg1>@e~rg@0,6cn'O :BdeH@0` hC#N,pM5=kWw ٺ;9~Zka-]18PTbHKWG@s7~ש?rۤ^vW4FDV1ޭGM ׸ċ wBeFߕpۖ!XZ2MAbhEk_$5bKиn 3`eeҺvh:nUh!d @tn!5>.1XhQo-hwm{U|i+}a!A!MǾl7eޠ1XB9U։r`]*!qb2(D]ʒ(zoIJ(*ew͙scO)OtGңgEu ,qfol̮YB U4hoLkN1rHoA^i^bU T9<ryuKIR( ܐJE8EZU!T 2L}Lz;>P(пl;2L'lR(/%VVA'd<љnoH#WhxE΁WgS).۶} dhɇtWGhl҉.' 5AN-n=aU1*v-;ÂcQXWj6#B&wK0^)YnY$o"V dCDn#X898`g 96dw!jArt|zH^`R^={; capԆK;3/؂{r8^`# Kw\CQ A{hOB1=ӾɖPld#hXe/eDg^`٬[miN2Du0uB'ױwX5:@8U*ϣ+AL>T_\`u{B\D4d9:uʶ 5ҫ3s#ޑe gb*ҘtKv2 >Iӓŏ+^2h\e Wn$8R"/ ? (!g٩&])vj q4 3̰Opk&g.6@YseMo:'s!ոjۭ_u WG M_&Z sW 9ߓ7a.~g:t@BH&%,u|d21WY)|\|F54|ig;Y$y\dD Zۖ>q28RU40=Kq"orIۭZ,N:)O?$hUIh27L[(3>q-.S^Hf{b4[O-sDpܶs 4 ҬS!S,WȽ\}LStĕ~3Px[t!%HE0 E8\JXdEƱ>մK]^Epsh mQYBd0͠8n'kC@5-fQ",%5jQ"xlp.mK9 P;`NWAZ@{cSlvwpʒK{S͠1?E)TpZ\{~m@wHʠ1EJ5hܟU(f_nk=0gn r!t;9roSED l `L#hPi}S<C5˗ *J+V]o\p}*Kfu4\KjAsYRAAؒ$fsFLM?ܰ4ۃxlSVkBoR3:Z'NɯYܪh˄ELauQVYհť;.œx. 2Sc)҂èaG\_EHi1e*.A-vD{~ uO;XL_-h:V҈W/Q&uFgKxE{>Pz,.5w܈ZKཱི>𩅧OJ.%|-4\KIZ*=|C[eҔ^#%Z4 i7Q5"Ӈ 1] 3k{9HNBTݣ!R8srq~*ë,;G| /Uo%\;MV4iBd3-1 ڷ{w~RB"~@^'9_"'$$ӊ<Xum̊ZF@?0SKBW/H yquev`Wc]݃8}N;&9|Q[:ǨcL*UDOc#7O 1mmmi03Cg\Ǩjw>Z@+8&&#2Gk ` sDF;\o$l_:e]-> Od hUU}E%h-J7^NSwJR6V2N!o5cm|k{f3zpNi %Pa/XAW%WpQ<{$y/9:8_6 3d~RAy4Gg~%!R)ODZa/.` GKx)D~#[B1%Ps ml58;&Z(vO7@Q0#º}A2^hZ`$Cqq@D!9_>/+ 3<SؑYF'(q{aG$m t_~4(5nܰm\7iYaDjO{JȀ ܟFQ6aOZ"#f_u(nO0XH 0o:OSV13;|>J qK_}׬!Υ:"x-9@beD@`\A D(|Pcad&{-bsQ9t y -ϑRi|7|ILm!Y}M$I6b6M+]h@Fľ Jwf2d𐸜J6irpl>ǦB8 Vfm2XO'Sr&ӱj7oܨJ١K* f\QUڨR~QBx#f 3zs⫄`O[$K[0ۣi|^e 2qܵc"4yxJ'nWGnFO|&yE1B"qgBMQg W8 UZ|+_&\ߛD8zZOh\,aODzD/Ku+uƢLpؓQԿY=]b0Jl<9ܰ4~W~<> =?E>d!c< ܉/z7 jHkVZVw˝!"#R-xW+sԤoڶ!Fr1  nrgeGzM((䷴8YO^:Wd !8+\M&$@liodقc)Ğf=J ne#E8r=+M|5VryȥETk=a#HF7$eaaQ]eQoxVHșU Ms3 ąR@Ga Ś,޷eDaM0qY*6qX@WTgW+ 6< f#'5rzt' 1qRH1nB*;@5@$^C +~7Y(]ke+ѣ`cTr Ȝ6 9D([@t-h J3˒8qn:cz-jOm&ׂ1gnOuV{%gV)hL|Y I>0 []2ڍ]0b6 " k(`8pDfX{ȜT&DSa`6}+؝fi, *Z·oоF:t]JeAI A8kI\8'ߥ,3tЩN=]q\ (FYm[TrԣCM$Hx2i>N<{Ct s@-07^4>-͕+!ٟ*ܩˌb@5-[igC)ܳ{Ni_89ǘ2۲'f "X:%u}$~ o9{qPGD˪l^8ap9"964?W1o1a9Ÿ^A]reiĊX[d3=m%MSaٶέƖW9HooK y3)K#a4tԳp@Zmd )C>oLs[=q(a `6x۽0;_/Tt; 'uYܢ6΃m\/lāj;0zs4\Ϗ-,z1px&pJ)a{>*4qy[TOаߌzEpw{y+~[:dya>e;?؉(=e).>ٹ T1e h5S 6,=Ov̀P,ig 1rhԥ<*pY "fE(+ Jlȼ䐶2?]5K†+ɀM*ꥉw\1i)QϚJ5vFTlP |rC]#CBT\Xc*j{ae8U׶1sFl, nc\HOd[*5ڝ4ImnQqƔW [v)Y^gU!:-9.NO?>oVdCଉP!hiJ-frQqhT)e˖F u4x_0M*_N9*1{-xd7T8] (ON7;Q N'"%&ɰhU?u=,EkwʓN%&B ~b%T4V=+[FC݄toS{uHRϴFG$h?/]R7Hz ]<@_VS6tZlwX}2EOa22jex>IhFzTL_:,y:NjFv@c'TNOG]#_'W.<ߊX\Oz}_joҋ"*Y\a~j9)B;#R'%Plk?1Ҹ P2(z)&C|#wNTGL2"Ժ'>&pe)<*~p}xa7k,~Y[3`"ϣhAc]]^nG!]՚ʅ2)7BY Vr%V2<-=Pz@U.-Z 1 `+gK|' e}@ܾCċl(DK2E1w|4C}!e7.m,0.mj7Ыw1߸[a7$U_γA͔L {b5ݗobD5<5!WY9樚$/ΊG.G#Hn2 F,V3!gDB֋ŻzT]:>],ՏSҾr),λ O QgXbJvLu+M)f*MhwGHMr=(@qJGҁ\"QtS K\rv ^s 1 ѫUk(^shl/ Ka \(k8a @|.GmIm;|~V8q違b "nM'9tN8!T_TǪP}$Pw2f( ドB畛iP.QA*­oXOZ;^IXt%5Kƺ#NW츴aNADGeɗ(U f1Ȫ#,; '6KRE(Վ';aAIcfkp#m^G=9p` ۰VFJVpb}xf?o:\ UD€YR;M™fM6=z ^_3@.ݣ3(˞ &y:_LeXiPqwqvK'9H CWQk#!w"N>yt{Z5 sR'&X9㮲ea3n}oP-;M,gۏ$Z4Kv*R"Y ܠ~ZT){zLil&#!=]W\HxqL͘!Zb޵P Ug1,-ERj߈3D6@_T{앓5~?T J\HBgo>.˞qo]inKPfnykn̺W}ᒣ}Paxl95(9h6`ydԌ1.^*j^JS4"0s&sʩ]w:Ufqkp玻<_0(K::Hbo8p4^> 6\wx!b"]ڙ N*%B<2Q1̛'YY7(sG,aEᨃKcDh)c@ri [<\aIWdO'[gYka2uN GM0KbU /^yoX]LBFZ݉f$ل+) _SK8ê gR뾭 I;,/ґ}@%DKx_(Nkݎ3ѥoGJ~(j:bO$\8 .zJ["'%= (A~Ofq{udw$g߅US!qabN>v;Z4"UƦ5ll41j| b(ؽnNL+v]"p*5;핰LJJ6;tmm*=/JoEhP;5V1f L=܊ E~xuVT$s~ElI. a K]^}2"7-D~\۩+)9UlEUR;Dn}?'0 9Ȱo9W36!,k摞 \fF* C r$,/]Nl? fUo w^9*t_[UtH^&y2}FbEP|HdjdM«.+#ECa/X5A-pC 9xB"LE{+2s1G8anp6.ZE&5[ I$fH ,R!Y&9E5N] s*m(]rHfKq8Q0$/əm;vQ)P5ܪńz)0+DiΦ;ah".S<1NhQaV0٘?側x%9f)0iuh2!=^߷;|0tOC r}F,:wóc:! 9*Ex/SX$pS:Cb0IEDRAގArSBJOִ0syZ,. 3fx1}I~nBf_֚q P$ !UD1D頋> xgP^,PBӁ10M' Z7"䮼 9XI-,/Wb>trvK#(3sـnv}7sm1%,4'Z)-UFlgƫ "8%z5[UIz=* CJy {hI^z pS֩zkj&(<%l嬈F&05>iQߨ'*K{;t t1{ăc: #״ř97s,''{btPXUmN?'yIRPv?5Z4AY^.ϱj/pɈ^3vL%P~PtȘVc9v ƣAFܚoF=]y|fi)鐈.^D޿U f?j6 X,~v [xT16Ɵ{HU&1j Qi" {>.`61bz6+AoD4E KZ毽dr+K-5-ӟ"`nވ3 =u2jlǃߋ]/ܟjX8[JY G⸟:"*$R#z67]0b%F!RV/z pʯR/V53TBa9eѧy [xUUR2爔e1]3!mN s"hU<;QTzXH<(e@] BQpF;4PfHs`Y6i!˒IA)%Xw\lmkT -u@+7:>W9#RT<)}CT&( Z 0KB4OZ TV\ײ6Eۺ%xBm`cZZ:\1SZnzp3|už @a#w`qoOV"-JitJy;CW(;DNń|Xgr[?a=rߋTAֳjޠ3%+ /&Boz6Rfޏ6[~X PGXdI X2ܔ se}쨆m{IƑb|ihGig-_\gJYȜi A ч*kU}ŒM߇' S Ro֌ޡ5p¸JnaK+ǵ6g#7Z>AYK͕H>Yq?\t`ȭ{EeBGG7?K36v1UB5i<Z wϘa%:#Fij[NDSuG)'1sUѷ=B6k. =^WLJfxSXkBYA M3PF\,+ZZu6.07X&R3 4/U 31 ΅8s] F<9ǮwAp1EKɨ< sh ={qR` jق9,GT |G@i( m Wz״ioNt26(Oa8[7cSAՁ8ỵ}fi}WAqy&\ߘb4uW=Į'ԅf5VB\!Y>Wp?d 73,9GTU6)8OuVe njFT (5!9ʺ4H^zSz nm7qv8aTPn2%f=FMcs籲CBm-=$8F/!6\y7h9rMFpM0|¯ (o( UhI&Y"&$\ye Rt!@TҾrp8 s| # #AR^ݖ G9ckCzvo|;Q*`N[4>JX!?h-ժ@h6D5xn sqaJoebwO);b0@%<|,ͧa.R Kx/  dCn _Ux`u#%` |ٕ(a*T7e|؉%4]b{}uX.XoA+rCP|zP Ca g g.cE-8 bq0^CHyzTEc:MMVz$ VEכz['ad7Nqg583>lqȖЋ- 4tq0o+6.؛;'İƺ~i6Xχ=ǬNUr= 8U JpW.[]xÓ8pmku|+$A7PF'Řlh3:w6OÜsw{&)_댝1pMneF4z OOMOLk&&g/D30Q`iݝHLؓYd5W9پgycJItbz1[qscj/Wsɋ#ga΋ԟm z6n餝O^K&%'9= {qC)l%xQ^E\sҼ9=+0 ypCNI~qݱ(IomA$͢Y )/ oU'˂O9@T7ĩ.8)MP佞NUIo!bAՌk$ox+,yDg{7Ts&{˜x6̓I}}}8X5Y^Ή 7&]s[wõ063ݩmoz rBfLcXa /kog_P Wh1R5WZ`` Uؗ#$D9,È,Y)ᴢmeDN. qcG\;`qGJǦd;j)~QL8df0Oe;'q7k%B%[MANe4k }K*B V7О|2Zdv%i Y+LV@Q-U ƈ"jt@ ?vw)\9M4e1Lqɞ~Cɡ2ҐB/Вj`Оu/H\W σoyzgHUp]j:o-`)hgq"nSt|K@@PwɪTN7dy\?}ۀqCz|[+eH_-JwnL{5<٭V%d]w{y4nV{@C^`\-; c-qa0BtUC9K n:6)W:, 7$'M2=Iq^`e\=亍.'Lqiû&H LQ+<#B|:D v4wEYG`ټ:n4-g-3:  KT5ʌB O]r디T?vHEEX^&&AVYH){W.S<3|E7T#%^eaF {w|>Ór#ҝܴzs~8̘> m@\ -+RTxaWdt$}Xb8wLd3hqdBC%#`]+ ,-[ΊQB_* GFO6Rn-B_Z ~B05ϡ x*ID-+3Fs wro$җa:Bv?Uu>E^[@ߙAˤ-BAĹ({29{Q QE7"n -lrdOy3qvuM=~^&mu`/zY,t!Pszc/ 1WcURFz FY_It0;Y^Xom9Zțk+d3zŻ6&r&n M6i]-g bpw# a\ 3hCn}{JO nDE+<ޢGcRՊzB@ &ބA 4x}6Bjfs/EWz}8n?,jJr{~%na\,-|Ŗcfex^oT2cЅ[>Zeo aD-951Mm(l. 6+o ۦ]L4vpBcg9#{;v݊zf Ҟ=10 3#[fx0ߒ+1r;GRgs٫n/B꫆Y1Ű8 >hS9fYgm2"Te>IX 0pn_m͂ZIex&R}ylx^ݼ~t}`'K| 5SdN"P RJГ3Z T4> ц)_ c5&s r䔚)7Ф3 o1h^e,!x&V=4eayc;L~׎UYSY6Odh/V*^;58v7D<ԗ^z{E! f0Cby?  w՛IO۾")xyǂ w@K5WZ^t۟x'MTY)|ԇY+ 0coD)hMx ++uG{j<<&{ VC %o[WPpV+ZWتЉݷ:6t%BPˋؚ0✷mI5^4޿m&]Si(_2}qTڿs/1 'Bw/wNV- ^Y kdT!Цېx@C+'[ʹXb=X 79M8Q%@jqw^| rUԮG+D {r /nFum,'TzQʺ[ nDz7y%8n4o% L՘W]x+&ǧvg}6kvk}lNh!5Ūs|MamXjc]XGuKpfk>Z}Rf݂*e7\v?S4^ )Ł#~u>uU^-^pqS^R!CFgs0.ҥ[x26GP[TKlM2{RN@ ג)$lzf%-36Ic\쨵<3&| 5mV\jV- ٻś10yKzµ"̰-ɷM!cvonM91+׶W%Or@?]ozU49Wb:W5\"L.GUIR#] *8E)yN,7'u}e[׆bOI ![X Fٺ~nP  \ w#h F@mHz#oYU?cK u_S\s sy٤ 慄,fYZPz[G- B2ރy=Q;xꢝ&;xu&lSndv{ i+l1]K4T;d-2ƁLȈ{6˾H+GW~Cj:ܞ9  ҪęѬqz 4"2dze@Mp u IYG#l*Tlأ-H>|o<ӏՠKLz@ŗ8CClq2|i-Ge!l啻tF@/zjfdTuyi'GZavQ#IXr BGةLnVuſ1 \;AUSU鶞~M.LXҐ7*/m'-Ǡj~nG<zJ[ƬlϮj̈́f mBQXNۋ*!1W#N4K 1eX&mDAXvŽ%&J-mV\_䬥*Ttwэ&x^I _L28e4*Ikp':W\PdO[}կ0jP_U@FI.)K<ᨒ)UĮa6N r|82 FQTmwIb(c#Q}1tk ᷣ]Ku鵌ӥU ~5 6o`@9|Y:O7{wLWil,Z 5lT fo&AqߊcJ$m'gˉlk ݞ2 XoM] W)OHKSo8n{^F,P!i+2iJVq0,'WVvŬtS4+g)@(BbVRB;-Iy72DeHQ@ӚJ9HP܊h5n~[gDtas|]>ƙl>{[Y4-hFKj=U^*">h|b>k749#us烇F*b\J/=^10juG,o>>YhE z$H4C<=rP F͢ ؗzP|غ5 1p[d|p 7SJ:x೿;NE%o/ ddr8 |zCjw4#`xpBT]NIgA`F{~ an-SOғ4NF#+\/oށl "T/THO%wS,OZl5}|b 7Gq#l+`p+f p 4)i >s\"ska(RῊcH8Ќ^:McK0LBjV#mOI=UBN+ҭ*Q R;v6Z1ѱSe,To%3Xry|X#vc3VĄ3{\|A3oNNn5Y&]"z⽽Gh"3x:uFt/-mu'{SW|oN9jDfv*If&|zێմBͧ |L`|Xuk2R'+x5Bnx? |vOH^]?}B2A f$]إhM{1Q:vi< t@/hC>nv!.^/YU濎yJа֯{Qiz?WKDŽJz` s%!)c U^Xb}RU:@"˙k$pTN{cmgz6BM-Ndȇm`fz\,ba4Ef6WC%[&iF\lPVH89AAFݹOD6 ֘QQܘΥz0Qj#Jp}f.Vo#r5̗.:`iiZݶ5$EҹFQgMD[OIM5Yq_3;zV`j1]uy3R |j.PT%p(|3>)q31]&1ɉWO֌u4Nh)0UuHJQ W;p%č;⢅s`96sR^=_eW6-e*<) MviW*BHk T-f̪GTsWcN9HiR b mF~M I& <4䋝Ogqm)%QaҏdDkף?Xne_ bH޷!o0q YсLn`kbDT|HQQSu?P$t"AU'R{{#W 'JSծ?\*zceF˼2-Ө; =YȜ Gۃv&C>u4H^jœ9O{"1|kXװ|^N482R:_eI3:7gȣp=:6(ܡuBo1˗ }7K2'%h3Kv4[*S;ͷZqWAN1} [v+L۱M5LU6Di_d,a/ek . f*߀>= 'TEPPRegν:pƀz9dj7vc+6$['N PڏޮLF.iR>0 (5ax  }^cڨ:7ѱvfO м$q |ײat!ؾ|a?Ԋf= T;~%%._K"G;o@?.-/lU(654@:.Ã>3`F^dGxœRh)ԣhVS=iJ!1=lۦJ&C4a}ˑ-m4}6hωY^sR;,z)u&l|t0pf'JFWkӜyՌ01]ʡU9iLMY3hU6Qsx `On ?L(szlq M}a<} ?w!:L W7!rR+ 20Z5`Qhcurmpg<1EU|uGGlH{l<{@>$W eO5bMx\JmՅ2K˒ o9MQD 5CV˘gɊ]]n3r'X4ΐ"|V{"C'yGDC5e UbYT9Ul=TE4RrQCԊGGSvr蠞7#L'Vbߢopo7*d^vN ~*xW7  kJR/6+I/B^c29gVhg>7t1gŵJ4+vuaMXnV-;u&d4Ei{8F QėNjgk)#$ p}HiniE 7n u  p9y)3h,cY?E`̪@S;BaO07CR!Ҽ&f9!)(/t&k*鐉?uS ]1Rt!W%{) J˘VHwku7EŦԦ9j7JTt:.H-$c Gh>b@7QcfKZAcOVY[>0<ɨF5Q0e I 2CDXTA5:pME۝|iNs<,KN>Q7MebgoHY OxTd#c 0U9i_Sg?DGT- =-Z3sJm6VvsR&VggOHyCzRI7輑C`ZqJ@bV]a!M902e5_3sp}MZT鍙tzS@L(mcTB]t] 6I@,Fľ2D9~WPN lx ٍI)ݏ1 p?LU(^ДCOG;$:D*M ƒYbo݇eVd8ˊmmg_ȨWJDꡚ/K$(L5(ְB׾]i>2FHz h =^"Vy 5,l3+/S"@!\.zz70."l9g']/0 CMeٜl'LJxMuɟJ.Q/:TL5c5^vzIr<(!$i.:J̆lP/mRI@q(/ؒPxR_U.)GmFF-삱T;WVXo y>O͋7)OJBHeN[BdZ0a gw%FfiZٜ#֨¹baw:ueT> /+ɗf!3h5̖̅86nͧf<OZ#v8-Yԏ_!Tާ:2/s\x^+S (Ą$jGkU~AFAObs T^1`II\Fw[ZbPT 3݂@fⓇ <%Z5ag`G1 Sњ:+0C< %KCS oC[1ʦք T 8-7;-c[S?MM0V A #}/@q!Oh5G(%;MSHAU*XP'Y:5å,S?K(5z|$_xG24( O'7O v1;wJn R{ڷ8Jk*f6&Hld*4K ÓQ8a/ ro?y%JU 2*랂]G\qVz8T<^-`yk@ؚ΢bqfery?O8^blce#烨B!8P, %fK- ٳH]d-c`+.5}YHibJz,߲mes>GI4}Ȉ,۰oOdo~xJf<q븙A?,+O@o2|5?mc5^5܃InQ^i v%˲L„R䞍|fE.4T;;GR h q⢫ $whtAv|͋2 +쉬&.O_(]} -~Y.CED(+D#We;yG5&MpTI趠Z^. %s񽕴Ⱥ\ž/O 1~rNi!sq'K.=v+7錼㠤sj+ Q{dRdV1Ovx`0lfq8\C*tO"MQcH/ݺrGV(Q'#X|uF|4V B0\G9Qmmj^[<%MRLܝ V \9-;U Ч;.?[BHApYaOt=Gw/$Z_ =0m*!lgFvPw^ u)v^&j* =/)?,|$9*e໷DJ}u&GQfAG*RegwŕÆ^Sզ!dWS\NI={0 x7P/xTuto} 14]A~i)/6^$3@ M i^[-ehWT{31%!UIX ݏIn򧂮Iy |Cv`qnX+R9"8?ʼtC*] 2Q 4a1VNP=iZbxK-Cٿu|a7@dpB>!Q J`E |S\>kۣӄPv-؄D=Gc`X.pKHMP3&Hx7SYd*7K曂p]4Sh'B麵_G.V;(}Fp2Iڛ1avU43R\>ڷzDL~WRi2FmZ)˂unƳk9n嵴ςa_9˜P;$Lz$eZ<23+OW4OGH8 E*8l{ċLY3_+a[78E۩tcM7)f[mݵݎjf*Y,#\v*y?Qj6{6[H&eozw!דj4I(5K{{]XeXq ոX`}^#S ('z Zdv>ݤ\C@5vS{ D# Ρ@o\蒶0iRz`0nĞ0Vi DzXREVB-)Yu>mX.i_|/$zD;5  & ))XUmY8v 5o>iYOl{IBe^uRn iXcȂ,tt%m஛TxV&&L>F.KO0Ǟ凊EZp8Rؠu/F!/bKA"Dj2{G+"ɀۀ}B@3cX36 e ~Oj0Jm;R NX\ ,՟n}\y%i,ʨR(FvsFf-X?;%=*t+(~U {lb |^=1g?4&0sɃ H yN2361X5K׊ VAqxۯqr Ӓ]2<:AHYƅm_tɸ8b'F tч~k[36IF+%p%w|K,@UQ׻/[({_PYe3C|%@b`ߤ.>T cbnjrD=#in} i3S/D_8 =qrڒYH0?$VkHfJMD_ )iNg*=Q-syIom/o)oH ؟(U z#NA=Rί>6Wo\?rGnI2wEA)sEHcMVbw K 9vT,8O ПByR|>h6=O~@,;5ޞ4O_'xơGQ4pm/;f,4㲘/݈]jCi:=^$DIF(2Yl9<kk氕odȖeRQ"$ ;&#ҧ@č}s\Crn*֔l\Ad^'|%^ L^#?z.7)q'dY@Uǂb+wҪ\|FYW@Lk*SR=Kf B owqiCn˛R{x$w_!0a8ieĊ™UyKbϗFɏE4C7ey,7! ɬ)OU)|bWɰ%_қVcJ V׮ O|cv4D["V0l:CQMO"uA>'>ne+eDG+3\kzςʁQ2 q?.x47>d-ƬnXfMy#MNPf9Q.@,J^)J*"ZnNGk MK}GitZL6XMק)pNЄ!݄1|Q銒؝ AZ$*h8 PaKT,^M#Mr ʒ)tɴ?)/;CUIwv9H =Fl #K z$O(7Y:U0G#P.m)|\XJbɘ92UIЧNUeNיSvgF1Ƣ C ~Mѱ{ȏ{ԻMv"f+:e/iɰ2Q*N1'pj=d"imY!68?bmS!0@ '[x_gA`w,aexeXr6r6 !q$ۖD"7_404 Su#ZYaVbk%1*T43_:ּY̩>'v.ȁOBڄ4c@ӥ&rrU%L2H :W=Aa#18 )sad@Th0.Li PW ti-IPEv2Ĺ ƓlMbTdE[F { (N(lT. *܊UZo &7K)CM+! G MD#og-6}Ի{f{*'feBUUF c'od / =;/gTD=DgPm@@YPRsB LS䯠]9l \~Ycy0J-C-o=0USRҽIlc' 9`섡>j.@jV|dѽiܽ\"5!̒ ,+iu#Ҩ+VrwQԗCJ~_Cb/h~YT{tyRR<P)'i tOVuv3,+Ah`n"Py;no'~d2=%m *k(ϓ p߸eє19VшҸ«hR8YYL,^vHd7B lD)$FybyX]S3,9Zr۠fOi_Ƙ*Cw /~k̛B@ N]zQ,&Eb1߄Y~&&7~|USaF[aK]SU;`F=1ǣ!vt$, !/ ^xe]9Jl;J#`#ڲ(GѐS#´J-$1\чEutg0;ÖjO8ROS9K$G&yjr$mЦBM sO Bq`ȝP2Wk'bYrWӍJ$WV5|\oz3iu>DűiFS?Z9r೛z97a[-(`36˷~5Yew*.kf6h6V"SVg_2|ՅBSpFC92#&LP}wbBdKxiMdq(4#^5( (,ehJ 2Anȍ,w!%>E2]݋˞掗t*D:KZ?+`K"^!g ]-]F/gIj l؞.m.VӗGKQL#o!K[k1m *v^Y6UEx;fs#= @|3jTMآfF/4^:-䙚*`-҉Y:D'w L}=@fD]JqK&vf^SYÖ\ڐ)*2u7nӛr p_D)T,m.ky;|N**Ew޼I2Xzzi2cc#*M8 &N0k;lGb=Z2 P=RE "1>(6>@DTqǔj;Ǩ裍W~pOr# $4O*K=-v߹o$aǩ[" RG]$ºĎJIYvH]K.R{ '+2~^C-aJ=(:v(L%bܹECr- H^z(xQ.~#5PsN \@@N} ub"wY;Z?Laƞ~m^Q6_ κ$wˎ44%2IȵX;z,ysbp9+댼H LW9G-hT 몐 +sop '=C" [2b%X6u TG9ȥVUE(6B$=j oRhtSpy4iJ= QӡzeVTD4aiȵ ?w :8xN * U6){='d!13Sʮ9[ȶSlFJWFG5j|_<$?]dLNuaRl遉 cBd+U=e񙨮01f~~ fz$96y31"!mGAU EB]*J? ViDkjxY'j>mFŜ߄([,=m$}} *'IҺǑw0 Mג2`uhǷw;azH?@Riᇡ*#Y ,} GӾ oo~m;sgd ZN* F$њh&~R5ĸt.Pa>Kᴯ6vB[Umkr<81ly fWM#Q''Z e'xS(ShdR(rJ\A+MȀG~5b 4kTpdg*%)@8#'t/kVP1 uV 6F75PڛI|/RFLvhwRy7 Jlmgáaow͓W{G90̅z{5l` z~Rŗw.Rv5;#A1!,i'FTi{Cy *Q"1>Y(3oMEjFoFf÷YRg`)[uI맡aG?tk,AE {., _a>Ď'>?0U>+? O,n\j#ǜ㱬>3-PDDEՄװ'9S!Ec'd!զ }QbGD4,*;j*WVN5FrL!j3 YYd̕ A \0k2vܷV;m9ZvUR H֙lTg̴*y$t OkSFFm m89fػ"_o[_oTaI?IDz~uI?sL.L 0 CVB.U lX`9D 'B53Oa>o>C?O7>yyAghONb=C@ϻʒ?"t)LJe  .!Jb8I) ɴGSB_8$m иE_ʉ:g 0}48)R0z˦jK3EH1R彊߂MW7[ @~RD)o1Fp6qKL0Rt!"Ъ]=8_BC"і Ur%2B*>FoF暡rPԟH}?c'A. ֓ڧMOO-0RG:9Xgi, 4l%j5M_¿/!HJI{OyG*|U*m} ;|s'gq/؁`*_8}sc^D?*&Rdqj5U7ZěIVz&9cx5,zE;R ,)DO<%+2:-'AOl(W<-cu^)^Թ^T& yG%]'JMƱהmx1\@$lpD']Ag?<>SK/B oؤb#N+\#ɡ&C :"Ui̯- obY{ .S^ {z:(MۛB}ZzH:8mPk:vo5ى0 gO]Td(8 W%)?<. S:Q 쟉 s{J`w-Y, ơ3ʁl_#(=hzpb0!y o\yug◒ЗbBuO"TYV79]=hč؀^ʬ:  >e͢ YiZw'(fi}'{^~agw't+XfcCB"ͭcI> aKh#*Ȁ1jbCP]ez'Z縛\8Ѩւ4ƴQK)h{DE82aϩ]۝s|@MM|].Q`bՍ7`UTiAfU?U踶: A>^-Nr3b'kκBp87kTMIVZhC\RJ⾕}=4e.8϶K3Tm׺|&8(.Yt3as.qO7A_bׅm˳4%wI^X^@U5GYG(>4/o 4R.7Ԙ̏9DYP20W]q9KOw2è̆>9kJnQϑDBUB> rJJYpđo?]8<4!v\wī߇)vo)Ax1FL~+Jܮs@Y7 ~H7("/`vF`K `vM AAc\P-)d3l@6RɄM?-ʻxh =(XATGD]q8Hy {Df[A7&Q8>Z0[:&2y`mGuEgIK,'W>wV๴@ Lӊ)=Z [ =3Zw]+W'NWߨ]\t/$RXUo8Y]Ero֏Etn0!+7#<}%)xt|U;|`ONO>nQ, 0$/#@L}xRͶ>Q, ܕbRiw<'#3>A{ <8˄m_Eݶ=U;FF}-!nxd<>9d7?I%۩=#B /z)l, }Ns@CHV2ndk#/SjFw|-?c@D< z4Zk:kS!jvGl0 sQ_lYP@3x!q0E=v׺P+r``]H7m,WMiUV#`*8(qsHI規[hȺ肑9@jKx: v<(,[d ۩Ƅn;x>lA 9ľ2];Ũiƈ;enJ\Jj vIߦ旭b{. - nӋ2ޥV%GC&zo+$ s 2.?6 u|>WSCcg5$C;%4CdAQ)O`w(?к.>] Ϛʭ1UT ᄊ<᪉0좊o*(|Bȭc)Vl5;>$y"7 *ߨ& 6 c"Tu6of>?ߝM!ʧ*}a5DX=~̚|f<>d`K 1s%z?޻'zUvu-H ˠuQ hz,6,٢`db1OPqET^ c7ZģB/|5KM%txC -d'|l PޖmY& MlJ>fkz&Yn8'u#]{2PvOwh6ڬ+naM ? /|bl4eMV'|7%D`οedOn8eyS`nYAK59Qgꥪu֩hj߫&eQNUn{ nc"FEFR܀fu;->J=G1q2] NR2=Iѯhw7^\EQ{-FESU)9w,HnХ P@āF@Zu?حGc.jI ?Ȏd"#eqs 17 &,]}$qZ82'5\v$f.D&8tΡ+|d'O8xE馆/%3r=[|य़Y+Ex!5J.5L6b.4}(#+X\6ro3c fD3="3"_4,fÚWw^:MD5+Zp0Rg3W;*Ę䎿Swt 5ldT`T 4_ɂ;` q|