nss-util-3.67.0-2.el8_4 >  A `U]o48TB@.1պh&(#ڂ`ٚПeWi]\T!cp1Kn:n ozix.>9c1quSDެaPZ<|oOk5d}⡉#oaBSnctveDIڮ5YTr:)0O;9)A j`Z984a$x6db,?JxTtIw j&:y8*|`^ׂc6DN`jW@aر_,=r01mox% uMHU>|oZcN1*zK=7ˈ} no"-&7&&h9u%3t~gF-~wN %2` (h]8f0J7KɵvY1"vBh\II{1D o>ި[$( ~aa )c5}b58ea03d7dfceada87dfc918973e15a107137ac819350301c13b290064c4d1397dd9ab4605a73d90436829a98c60c686b7871933'`U]"/>nDaWӶ( yӪ2/zAU$z!|3LbK Vq-6vT'c_͐* ˥ٞ[z؛B-[tZj(\&νUw'GlQRDyL EH1H'6>(۠}\4OUw ٹ^Kp<t?dd   F "(0H T ` x  (@^|,d(89 \:Z^GHIXY\L]d^b,dkepfslutuvw|xy`Cnss-util3.67.02.el8_4Network Security Services Utilities LibraryUtilities for Network Security Services and the Softoken module`͛ppc64le-01.mbox.centos.org]$CentOSCentOSMPLv2.0CentOS Buildsys Unspecifiedhttp://www.mozilla.org/projects/security/pki/nss/linuxppc64le$pFAAA큤`͗`͗`͗`Ԙz`͗`b80c972742d915215c230e70560f3f9e0d33a6892a912d34cec2b2acaeb1603da20c1a32d1f8102432360b42e932869f7c11c7cdbacf9cac554c422132af47f4../../../../usr/lib64/libnssutil3.sorootrootrootrootrootrootrootrootrootrootrootrootnss-3.67.0-2.el8_4.src.rpmlibnssutil3.so()(64bit)libnssutil3.so(NSSUTIL_3.12)(64bit)libnssutil3.so(NSSUTIL_3.12.3)(64bit)libnssutil3.so(NSSUTIL_3.12.5)(64bit)libnssutil3.so(NSSUTIL_3.12.7)(64bit)libnssutil3.so(NSSUTIL_3.13)(64bit)libnssutil3.so(NSSUTIL_3.14)(64bit)libnssutil3.so(NSSUTIL_3.15)(64bit)libnssutil3.so(NSSUTIL_3.17.1)(64bit)libnssutil3.so(NSSUTIL_3.21)(64bit)libnssutil3.so(NSSUTIL_3.24)(64bit)libnssutil3.so(NSSUTIL_3.25)(64bit)libnssutil3.so(NSSUTIL_3.31)(64bit)libnssutil3.so(NSSUTIL_3.33)(64bit)libnssutil3.so(NSSUTIL_3.38)(64bit)libnssutil3.so(NSSUTIL_3.39)(64bit)libnssutil3.so(NSSUTIL_3.59)(64bit)nss-utilnss-util(ppc-64)@@@@@@@@     @libc.so.6()(64bit)libc.so.6(GLIBC_2.17)(64bit)libdl.so.2()(64bit)libnspr4.so()(64bit)libplc4.so()(64bit)libplds4.so()(64bit)libpthread.so.0()(64bit)libpthread.so.0(GLIBC_2.17)(64bit)nsprrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)rtld(GNU_HASH)4.25.03.0.4-14.6.0-14.0-15.2-14.14.3`̊`9@`Ȗ@`D`r_@_^@___@__"@_"@_"@_!d_@_ L_ _@^^@@^@^ۅ@^4]N@]]߶]e@]M@]µ]L]]^@\F@\Q\\\\\\@\I\I\U@\ `\l@[[[u[#@[[W[O+[M@[ZZw@Z|;Zo Zo Zg#Z ZZZ@Y+@Y{YY@Yn@YV@Y@YyYm@Yg`YJ_Y1S@XX@XX @XXYX@X@XX~@Xx@XoX>@X*X@WW@Wt@W~Wv[@WrfWoWm WbWQq@WPWJWDB@W4p@W@Wo@W@VV޾V޾V@VяVIVɦV@V@V=@V@V@VO @VHsVEV3[V UYU@UU@U@U>Ua@Ug@U[%UUU @T@Ts@TTء@T@TÉ@TT@T@T?@T:m@T"@S@S<@S@S@S @SSSSpShS(5@S@SRy@RJ@R@RR@RSRR@Rm@Rg@RD!R@RRR|Q@Q*@QQ@QKQ@QQW@Qw@Q]k@QNQ9Q7/Q#@QQ @P!@PՠP @PqP@P@PAPXPd@Pd@PPP@PP5@PPnP;a@P(@P H@O;O;O@OiO@O@O}O~OiOYOX@OOdO&@O!@@OO@O@N>@N>@NNܲ@N`NؽNN@NuN;@Np@Nf @NA!@N*NpM@MWMc@MM@M@MMfH@M^_@MZjMS@MQ0@MQ0@MQ0@MQ0@MK@MGMF@M6@M-MM@Ls@LOLLZ@L6LdL@L*@L@LA@LL@L4Lx@Lx@Li(@Lf@L_L_LT@L0L0L K @KsKsKKCKCKCK]KMKLd@KD{@K<@K5K4@K,@K+nK*@K K@K@K@KJݦ@J - 3.67.0-2Bob Relyea - 3.67.0-1Bob Relyea - 3.66.0-2Bob Relyea - 3.66.0-1.1Bob Relyea - 3.66.0-1Bob Relyea - 3.53.1-17Bob Relyea - 3.53.1-16Bob Relyea - 3.53.1-15Bob Relyea - 3.53.1-14Bob Relyea - 3.53.1-13Bob Relyea - 3.53.1-12Bob Relyea - 3.53.1-11Bob Relyea - 3.53.1-10Daiki Ueno - 3.53.1-9Daiki Ueno - 3.53.1-8Bob Relyea - 3.53.1-7Daiki Ueno - 3.53.1-6Bob Relyea - 3.53.1-5Bob Relyea - 3.53.1-4Daiki Ueno - 3.53.1-3Daiki Ueno - 3.53.1-2Daiki Ueno - 3.53.1-1Daiki Ueno - 3.53.0-1Bob Relyea - 3.44.0-15Bob Relyea - 3.44.0-14Bob Relyea - 3.44.0-13Daiki Ueno - 3.44.0-12Bob Relyea - 3.44.0-11Daiki Ueno - 3.44.0-10Bob Relyea - 3.44.0-9Bob Relyea - 3.44.0-8Daiki Ueno - 3.44.0-7Daiki Ueno - 3.44.0-6Daiki Ueno - 3.44.0-5Bob Relyea - 3.44.0-4.1Bob Relyea - 3.44.0-4Daiki Ueno - 3.44.0-3Bob Relyea - 3.44.0-2Daiki Ueno - 3.44.0-1Daiki Ueno - 3.41.0-5Bob Relyea - 3.41.0-4Daiki Ueno - 3.41.0-3Daiki Ueno - 3.41.0-2Daiki Ueno - 3.41.0-1Daiki Ueno - 3.39.0-1.5Bob Relyea - 3.39.0-1.4Daiki Ueno - 3.39.0-1.3Daiki Ueno - 3.39.0-1.2Daiki Ueno - 3.39.0-1.1Daiki Ueno - 3.39.0-1.0Daiki Ueno - 3.38.0-1.2Daiki Ueno - 3.38.0-1.1Daiki Ueno - 3.38.0-1.0Kai Engert - 3.36.1-1.2Daiki Ueno - 3.36.1-1.1Daiki Ueno - 3.36.1-1.0Daiki Ueno - 3.36.0-1.0Fedora Release Engineering - 3.35.0-5Kai Engert - 3.35.0-4Kai Engert - 3.35.0-3Daiki Ueno - 3.35.0-2Daiki Ueno - 3.34.0-2Daiki Ueno - 3.33.0-6Kai Engert - 3.33.0-5Kai Engert - 3.33.0-4Kai Engert - 3.33.0-3Daiki Ueno - 3.33.0-2Daiki Ueno - 3.32.1-2Daiki Ueno - 3.32.0-4Kai Engert - 3.32.0-3Daiki Ueno - 3.32.0-2Fedora Release Engineering - 3.31.0-6Fedora Release Engineering - 3.31.0-5Daiki Ueno - 3.31.0-4Daiki Ueno - 3.31.0-3Daiki Ueno - 3.31.0-2Daiki Ueno - 3.30.2-3Daiki Ueno - 3.30.2-2Kai Engert - 3.30.0-3Daiki Ueno - 3.30.0-2Kai Engert - 3.29.1-3Daiki Ueno - 3.29.1-2Daiki Ueno - 3.29.0-3Daiki Ueno - 3.29.0-2Daiki Ueno - 3.28.1-6Daiki Ueno - 3.28.1-5Daiki Ueno - 3.28.1-4Daiki Ueno - 3.28.1-3Daiki Ueno - 3.28.1-2Daiki Ueno - 3.27.2-2Daiki Ueno - 3.27.0-5Kai Engert - 3.27.0-4Daiki Ueno - 3.27.0-3Daiki Ueno - 3.27.0-2Daiki Ueno - 3.26.0-2Elio Maldonado - 3.25.0-6Elio Maldonado - 3.25.0-5Elio Maldonado - 3.25.0-4Elio Maldonado - 3.25.0-3Elio Maldonado - 3.25.0-2Kamil Dudka - 3.24.0-3Elio Maldonado - 3.24.0-2.3Elio Maldonado - 3.24.0-2.2Elio Maldonado - 3.24.0-2.1Elio Maldonado - 3.24.0-2.0Elio Maldonado - 3.23.0-9Elio Maldonado - 3.23.0-8Elio Maldonado - 3.23.0-7Elio Maldonado - 3.23.0-6Elio Maldonado - 3.23.0-5Elio Maldonado - 3.23.0-4Elio Maldonado - 3.23.0-3Elio Maldonado - 3.23.0-2Elio Maldonado - 3.22.2-2Elio Maldonado - 3.22.1-3Elio Maldonado - 3.22.1-1Elio Maldonado - 3.22.0-3Elio Maldonado - 3.22.0-2Fedora Release Engineering - 3.21.0-7Elio Maldonado - 3.21.0-6Michal Toman - 3.21.0-5Elio Maldonado - 3.21.0-4Elio Maldonado - 3.21.0-3Elio Maldonado Batiz - 3.21.1-2Elio Maldonado - 3.20.1-2Elio Maldonado - 3.20.0-6Elio Maldonado - 3.20.0-5Elio Maldonado - 3.20.0-4Elio Maldonado - 3.20.0-3Elio Maldonado - 3.20.0-2Elio Maldonado - 3.19.3-2Elio Maldonado - 3.19.2-3Kai Engert - 3.19.2-2Kai Engert - 3.19.1-2Kai Engert - 3.19.0-2Kai Engert - 3.18.0-2Elio Maldonado - 3.18.0-1Elio Maldonado - 3.17.4-5Till Maas - 3.17.4-4Elio Maldonado - 3.17.4-3Elio Maldonado - 3.17.4-2Elio Maldonado - 3.17.4-1Ville Skyttä - 3.17.3-4Elio Maldonado - 3.17.3-3Elio Maldonado - 3.17.3-2Elio Maldonado - 3.17.3-1Elio Maldonado - 3.17.2-2Elio Maldonado - 3.17.2-1Kai Engert - 3.17.1-1Kevin Fenzi - 3.17.0-2Elio Maldonado - 3.17.0-1Fedora Release Engineering - 3.16.2-4Elio Maldonado - 3.16.2-3Tom Callaway - 3.16.2-2Elio Maldonado - 3.16.2-1Elio Maldonado - 3.16.1-4Fedora Release Engineering - 3.16.1-3Jaromir Capik - 3.16.1-2Elio Maldonado - 3.16.1-1Elio Maldonado - 3.16.0-1Elio Maldonado - 3.15.5-2Elio Maldonado - 3.15.5-1Elio Maldonado - 3.15.4-5Elio Maldonado - 3.15.4-4Elio Maldonado - 3.15.4-3Peter Robinson 3.15.4-2Elio Maldonado - 3.15.4-1Elio Maldonado - 3.15.3.1-1Elio Maldonado - 3.15.3-2Elio Maldonado - 3.15.3-1Elio Maldonado - 3.15.2-3Elio Maldonado - 3.15.2-2Elio Maldonado - 3.15.2-1Elio Maldonado - 3.15.1-7Elio Maldonado - 3.15.1-6Elio Maldonado - 3.15.1-5Elio Maldonado - 3.15.1-4Elio Maldonado - 3.15.1-3Elio Maldonado - 3.15.1-2Elio Maldonado - 3.15.1-1Elio Maldonado - 3.15-5emaldona - 3.15-4emaldona - 3.15-3Elio Maldonado - 3.15-2Elio Maldonado - 3.15-1Elio Maldonado - 3.15-0.1.beta1.2Elio Maldonado - 3.15-0.1.beta1.1Kai Engert - 3.14.3-12Kai Engert - 3.14.3-10Kai Engert - 3.14.3-9Elio Maldonado - 3.14.3-1Elio Maldonado - 3.14.2-2Elio Maldonado - 3.14.2-1Kai Engert - 3.14.1-3Elio Maldonado - 3.14.1-2Elio Maldonado - 3.14.1-1Elio Maldonado - 3.14-12Elio Maldonado - 3.14-11Elio Maldonado - 3.14-10Elio Maldonado - 3.14-9Elio Maldonado - 3.14-8Elio Maldonado - 3.14-7Elio Maldonado - 3.14-6Elio Maldonado - 3.14-5Elio Maldonado - 3.14-4Elio Maldonado - 3.14-3Elio Maldonado - 3.14-2Elio Maldonado - 3.14-1Elio Maldonado - 3.14-0.1.rc.1Kai Engert - 3.13.6-1Elio Maldonado - 3.13.5-8Elio Maldonado - 3.13.5-7Fedora Release Engineering - 3.13.5-6Elio Maldonado - 3.13.5-5Elio Maldonado - 3.13.5-4Elio Maldonado - 3.13.5-3Elio Maldonado - 3.13.5-2Elio Maldonado - 3.13.5-1Elio Maldonado - 3.13.4-3Elio Maldonado - 3.13.4-2Elio Maldonado - 3.13.4-1Elio Maldonado - 3.13.3-4Elio Maldonado - 3.13.3-3Elio Maldonado - 3.13.3-2Elio Maldonado - 3.13.3-1Tom Callaway - 3.13.1-13Elio Maldonado - 3.13.1-12Fedora Release Engineering - 3.13.1-11Elio Maldonado - 3.13.1-11Elio Maldonado - 3.13.1-10elio maldonado - 3.13.1-9Elio Maldonado - 3.13.1-8Elio Maldonado - 3.13.1-7Elio Maldonado - 3.13.1-6Elio Maldonado - 3.13.1-5Elio Maldonado Batiz - 3.13.1-4Elio Maldonado - 3.13.1-2Elio Maldonado - 3.13.1-1Elio Maldonado - 3.13-1Elio Maldonado - 3.13-0.1.rc0.1Elio Maldonado - 3.12.11-3Kai Engert - 3.12.11-2Elio Maldonado - 3.12.11-1Elio Maldonado - 3.12.10-6Michael Schwendt - 3.12.10-5Elio Maldonado - 3.12.10-4Dennis Gilmore - 3.12.10-3Elio Maldonado - 3.12.10-2Elio Maldonado - 3.12.10-1Elio Maldonado - 3.12.10-0.1.beta1Elio Maldonado - 3.12.9-15Elio Maldonado - 3.12.9-14Elio Maldonado - 3.12.9-13Elio Maldonado - 3.12.9-12Elio Maldonado - 3.12.9-11Elio Maldonado - 3.12.9-10Elio Maldonado - 3.12.9-9Fedora Release Engineering - 3.12.9-8Elio Maldonado - 3.12.9-7Christopher Aillon - 3.12.9-6Elio Maldonado - 3.12.9-5Elio Maldonado - 3.12.9-4Elio Maldonado - 3.12.9-3Elio Maldonado - 3.12.9-2Elio Maldonado - 3.12.9-1Elio Maldonado - 3.12.9-0.1.beta2Elio Maldonado - 3.12.8.99.2-1Elio Maldonado - 3.12.8.99.1-1Elio Maldonado - 3.12.8-9Elio Maldonado - 3.12.8-8Elio Maldonado - 3.12.8-7Elio Maldonado - 3.12.8-6Elio Maldonado - 3.12.8-5Elio Maldonado - 3.12.8-4Elio Maldonado - 3.12.8-3Elio Maldonado - 3.12.8-2Elio Maldonado - 3.12.8-1Elio Maldonado - 3.12.7.99.4-1Elio Maldonado - 3.12.7.99.3-2Elio Maldonado - 3.12.7.99.3-1Elio Maldonado - 3.12.7-3Elio Maldonado - 3.12.7-2Elio Maldonado - 3.12.7-1Elio Maldonado - 3.12.6-12Elio Maldonado - 3.12.6-11Elio Maldonado - 3.12.6-10Elio Maldonado - 3.12.6-9Dennis Gilmore - 3.12.6-8Elio Maldonado - 3.12.6-7Elio Maldonado - 3.12.6-6Elio Maldonado - 3.12.6-5Elio Maldonado - 3.12.6-4Elio Maldonado - 3.12.6-3Elio Maldonado - 3.12.6-2Elio Maldonado - 3.12.6-1.2Elio Maldonado - 3.12.6-1.1Elio Maldonado - 3.12.6-1Elio Maldonado - 3.12.5-8Elio Maldonado - 3.12.5-5Elio Maldonado - 3.12.5-1.1Elio Maldonado - 3.12.5-1.13.2Elio Maldonado - 3.12.5-1.13.1Elio Maldonado - 3.12.5-1.13Elio Maldonado - 3.12.5-1.11Elio maldonado - 3.12.5-1.9Elio Maldonado - 3.12.5-2.7Elio Maldonado - 3.12.5-1.6Elio Maldonado - 3.12.5-1.5Elio Maldonado - 3.12.5-1.1Elio Maldonado - 3.12.5-1.1Elio Maldonado - 3.12.5-1Elio Maldonado - 3.12.4-14.1Elio Maldonado - 3.12.4-13.1Elio Maldonado - 3.12.4-13Elio Maldonado - 3.12.4-12Elio Maldonado - 3.12.4-11Elio Maldonado - 3.12.4-10Elio Maldonado - 3.12.4-8Elio Maldonado - 3.12.4-6Elio Maldonado - 3.12.4-5Elio Maldonado - 3.12.4-4Elio Maldonado - 3.12.4-3Elio Maldonado - 3.12.4-2Elio Maldonado - 3.12.4-1Elio Maldonado - 3.12.3.99.3-30Elio Maldonado - 3.12.3.99.3-29Elio Maldonado - 3.12.3.99.3-28Elio Maldonado - 3.12.3.99.3-27Elio Maldonado - 3.12.3.99.3-26Elio Maldonado - 3.12.3.99.3-25Warren Togami - 3.12.3.99.3-24Elio Maldonado - 3.12.3.99.3-23Elio Maldonado - 3.12.3.99.3-22Elio Maldonado - 3.12.3.99.3-21Elio Maldonado - 3.12.3.99.3-20Elio Maldonado - 3.12.3.99.3-19Elio Maldonado - 3.12.3.99.3-18Elio Maldonado - 3.12.3.99.3-16Dennis Gilmore - 3.12.3.99.3-15Dennis Gilmore - 3.12.3.99.3-14Dennis Gilmore - 3.12.3.99.3-13Dennis Gilmore - 3.12.3.99.3-12Elio Maldonado+emaldona@redhat.com - 3.12.3.99.3-11Elio Maldonado - 3.12.3.99.3-10Dennis Gilmore - 3.12.3.99.3-9Elio Maldonado - 3.12.3.99.3-7.1Fedora Release Engineering - 3.12.3.99.3-7Elio Maldonado - 3.12.3.99.3-6Elio Maldonado - 3.12.3.99.3-5Elio Maldonado - 3.12.3.99.3-4Kai Engert - 3.12.3.99.3-3Kai Engert - 3.12.3.99.3-2Kai Engert - 3.12.3-7Kai Engert - 3.12.3-4Kai Engert - 3.12.3-3Kai Engert - 3.12.3-2Kai Engert - 3.12.2.99.3-7Kai Engert - 3.12.2.99.3-6Kai Engert - 3.12.2.99.3-5Kai Engert - 3.12.2.99.3-4Kai Engert - 3.12.2.99.3-3Kai Engert - 3.12.2.99.3-2Kai Engert - 3.12.2.99.3-1Fedora Release Engineering - 3.12.2.0-4Kai Engert - 3.12.2.0-3Dennis Gilmore - 3.12.1.1-4Kai Engert - 3.12.1.1-3Kai Engert - 3.12.1.1-2Kai Engert - 3.12.1.0-2Kai Engert - 3.12.0.3-7Kai Engert - 3.12.0.3-6Kai Engert - 3.12.0.3-3Kai Engert - 3.12.0.3-2Kai Engert - 3.12.0.1-1Jesse Keating - 3.11.99.5-2Kai Engert - 3.11.99.5-1Kai Engert - 3.11.99.4-1Kai Engert - 3.11.99.3-6Kai Engert - 3.11.99.3-5Kai Engert - 3.11.99.3-4Kai Engert - 3.11.99.3-3Kai Engert - 3.11.99.3-2Kai Engert - 3.11.99.3-1Kai Engert - 3.11.99.2b-3Kai Engert - 3.11.99.2b-2Kai Engert - 3.11.99.2-2Kai Engert - 3.11.99.2-1Kai Engert - 3.11.7-10Rob Crittenden - 3.11.7-9Kai Engert - 3.11.7-8Bob Relyea - 3.11.7-7Kai Engert - 3.11.7-6Kai Engert - 3.11.7-5Kai Engert - 3.11.7-4Kai Engert - 3.11.7-3Kai Engert - 3.11.7-2Kai Engert - 3.11.5-2Kai Engert - 3.11.5-1Bob Relyea - 3.11.4-4Kai Engert - 3.11.4-1Kai Engert - 3.11.3-2Kai Engert - 3.11.3-1Kai Engert - 3.11.2-2Jesse Keating - 3.11.2-1.1Kai Engert - 3.11.2-1Kai Engert - 3.11.1-2Kai Engert - 3.11.1-1Kai Engert - 3.11-4Jesse Keating - 3.11-3.2Jesse Keating - 3.11-3.1Ray Strode 3.11-3Christopher Aillon 3.11-2Christopher Aillon 3.11-1Christopher Aillon 3.11-0.cvs.2Christopher Aillon 3.11-0.cvsKai Engert Rob Crittenden 3.10-1- Fix coverity issues- Rebase to NSS 3.67- Restore old pkcs12 defaults.- build nss for older nspr so we can pass gating with the new nspr in the build root- Rebase to NSS 3.66- Fix various corner cases with ike v1 app b support.- Fix the following CVE - CVE-2020-12403 chacha-poly issues - CVE-2020-12400 constant time ECC. - CVE-2020-6829 constant time ECC.- Revert some policy changes the generate ABI runtime issues.- Add support for enable/disable in policy. Now if your policy file has disallow=x enable=y it will act just like our other libraries.- Add OAEP interface so applications can wrap keys with RSA-OAEP rather than RSA-PKCS-1.- fips need to reject small primes even if they are approved - code to autodetect whether or not to use the cache needs to do so in a way that doesn't mess with filesystem negative file caching. - add kdf selftests- Fix issue with upgradedb where upgradedb expects standard to generate dbm databases, not sql databases (default in RHEL8)- Disable dh timing test because it's unreliable on s390- Explicitly enable upgradedb/sharedb test cycles- Disable Delegated Credentials for TLS- Fix attribute decryption issue where the private key components integrity check on private attributes where not being checked.- Update nss-rsa-pkcs1-sigalgs.patch to the upstream version- Include required checks for dh and ecdh key generation in FIPS mode.- Add better checks for dh derive operations in FIPS mode.- Disable NSS_HASH_ALG_SUPPORT as well for MD5 (#1849938) - Adjust for update-crypto-policies packaging change (#1848649) - Fix compilation with -Werror=strict-prototypes (#1843417)- Fix regression in MD5 disablement (#1849938) - Include rsa_pkcs1_* in signature_algorithms extension (#1847945)- Update to NSS 3.53.1- Update to NSS 3.53- Fix swapped CMAC PKCS #11 values. - Fix data alignment crash in CMAC.- Fix coverify scan issue- Fix endian problem in SP-800 108 code.- Install cmac.h required by blapi.h (#1764513) - Fix out-of-bounds write in NSC_EncryptUpdate (#1775913)- Add SP-800 108 Generalized kdf- Check policy against hash algorithms used for ServerKeyExchange (#1730039)- Add CMAC- CKM_NSS_IKE1_APP_B_PRF_DERIVE was missing from the mechanism list, preventing PK11_Derive*() from using it. Add gtests for the PK11_Derive interface for all the CKM_NSS_IKE*_DERIVE mechanism.- Backport fixes from 3.44.1- Add continuous RNG test required by FIPS - fipstest: use CKM_TLS12_MASTER_KEY_DERIVE instead of vendor specific mechanism- Rebuild with the correct build target- rebuild to try to retrigger CI tests- Fix certutil man page - Fix extracting a public key from a private key for dh, ec, and dsa- Disable TLS 1.3 under FIPS mode - Disable RSASSA-PKCS1-v1_5 in TLS 1.3 - Fix post-handshake auth transcript calculation if SSL_ENABLE_SESSION_TICKETS is set - Revert the change to use XDG basedirs (mozilla#818686)- Add ike mechanisms in softokn - Add FIPS checks in softoken- Update to NSS 3.44 - Define NSS_SEED_ONLY_DEV_URANDOM=1 to exclusively use getentropy - Use %autosetup - Clean up manual pages generation - Clean up %check - Remove prelink dependency, which is not available in RHEL-8 - Remove upstreamed patches- Update manual pages to reflect recent changes in commands- Make sure corresponding public keys are created when importing private keys.- Fix the last change - Add --no-reload option to update-crypto-policies to avoid unnecessary restart of daemons- Restore LDFLAGS injection when linking DSO- Update to NSS 3.41 - Consolidate nss-util, nss-softokn, and nss into a single source package- Fix the last commit- Support for IKE/IPsec typical PKIX usage so libreswan can use nss without rejecting certs based on EKU- Backport upstream fixes for rhbz#1649026, rhbz#1608895, rhbz#1644854 - Document PKCS #11 URI - Add warning when adding module with modutil while p11-kit is enabled- Update nss-dsa.patch to not advertise DSA signature algorithm - Update PayPal test certs for testing- Backport "DSA" keyword in crypto-policies- Update to NSS 3.39- Fix LDFLAGS injection when linking DSO- Install crypto-policies configuration file for https://fedoraproject.org/wiki/Changes/NSSLoadP11KitModules - Port enable-fips-when-system-is-in-fips-mode.patch from RHEL-7 - Use %ldconfig_scriptlets - Remove needless use of %defattr, by Jason Tibbitts- Update to NSS 3.38- Backport upstream addition of nss-policy-check utility, rhbz#1428746, includes required fixes for mozbz#1296263 and mozbz#1474875- Switch the default DB type to SQL - Enable SSLKEYLOGFILE- Update to NSS 3.36.1 - Remove nss-3.14.0.0-disble-ocsp-test.patch - Fix partial injection of LDFLAGS - Remove NSS_NO_PKCS11_BYPASS, which is no-op in upstream- Update to NSS 3.36.0 - Add gcc-c++ to BuildRequires (C++ is needed for gtests) - Make test failure detection robuster- Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild- Fix a compiler error with gcc 8, mozbz#1434070 - Set NSS_FORCE_FIPS=1 at %build time, and remove from %check.- Stop pulling in nss-pem automatically, packages that need it should depend on it, rhbz#1539401- Update to NSS 3.35.0- Update to NSS 3.34.0- Make sure 32bit nss-pem always be installed with 32bit nss in multlib environment, patch by Kamil Dudka- Fix test script- Update tests to be compatible with default NSS DB changed to sql (the default was changed in the nss-util package).- rhbz#1505487, backport upstream fixes required for rhbz#1496560- Update to NSS 3.33.0- Update to NSS 3.32.1- Update iquote.patch to really prefer in-tree headers over system headers- NSS libnssckbi.so has already been obsoleted by p11-kit-trust, rhbz#1484449- Update to NSS 3.32.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild- Backport mozbz#1381784 to avoid deadlock in dnf- Move signtool to %_libdir/nss/unsupported-tools, for: https://fedoraproject.org/wiki/Changes/NSSSigntoolDeprecation- Rebase to NSS 3.31.0- Enable gtests- Rebase to NSS 3.30.2 - Enable TLS 1.3- Backport upstream mozbz#1328318 to support crypto policy FUTURE.- Rebase to NSS 3.30.0 - Remove upstreamed patches- Backport mozbz#1334976 and mozbz#1336487.- Rebase to NSS 3.29.1- Disable TLS 1.3, following the upstream change- Rebase to NSS 3.29.0 - Suppress -Werror=int-in-bool-context warnings with GCC7- Work around pkgconfig -> pkgconf transition issue (releng#6597)- Disable TLS 1.3 - Add "Conflicts" with packages using older Mozilla codebase, which is not compatible with NSS 3.28.1 - Remove NSS_ECC_MORE_THAN_SUITE_B setting, as it was removed in upstream- Add "Conflicts" with older firefox packages which don't have support for smaller curves added in NSS 3.28.1- Fix incorrect version specification in %nss_{util,softokn}_version, pointed by Elio Maldonado- Rebase to NSS 3.28.1 - Remove upstreamed patch for disabling RSA-PSS - Re-enable TLS 1.3- Rebase to NSS 3.27.2- Revert the previous fix for RSA-PSS and use the upstream fix instead- Disable the use of RSA-PSS with SSL/TLS. #1383809- Disable TLS 1.3 for now, to avoid reported regression with TLS to version intolerant servers- Rebase to NSS 3.27.0 - Remove upstreamed ectest patch- Rebase to NSS 3.26.0 - Update check policy file patch to better match what was upstreamed - Remove conditionally ignore system policy patch as it has been upstreamed - Skip ectest as well as ecperf, which are built as part of nss-softokn - Fix rpmlint error regarding %define usage- Incorporate some changes requested in upstream review and commited upstream (#1157720)- Add support for conditionally ignoring the system policy (#1157720) - Remove unneeded test scripts patches in order to run more tests - Remove unneeded test data modifications from the spec file- Remove obsolete patch and spurious lines from the spec file (#1347336)- Cleanup spec file and patches and add references to bugs filed upstream- Rebase to nss 3.25- decouple nss-pem from the nss package (#1347336)- Apply the patch that was last introduced - Renumber and reorder some of the patches - Resolves: Bug 1342158- Allow application requests to disable SSL v2 to succeed - Resolves: Bug 1342158 - nss-3.24 does no longer support ssl V2, installation of IPA fails because nss init fails- Rebase to NSS 3.24.0 - Restore setting the policy file location - Make ssl tests scripts aware of policy - Ajust tests data expected result for policy- Bootstrap build to rebase to NSS 3.24.0 - Temporarily not setting the policy file location- Change POLICY_FILE to "nss.config"- Change POLICY_FILE to "nss.cfg"- Change the POLICY_PATH to "/etc/crypto-policies/back-ends" - Regenerate the check policy patch with hg to provide more context- Fix typo in the last %changelog entry- Load policy file if /etc/pki/nssdb/policy.cfg exists - Resolves: Bug 1157720 - NSS should enforce the system-wide crypto policy- Remove unused patch rendered obsolete by pem update- Update pem sources to latest from nss-pem upstream - Resolves: Bug 1300652 - [PEM] insufficient input validity checking while loading a private key- Rebase to NSS 3.23- Rebase to NSS 3.22.2- Fix ssl2/exp test disabling to run all the required tests- Rebase to NSS 3.22.1- Update .gitignore as part of updating to nss 3.22- Update to NSS 3.22- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild- Resolves: Bug 1299040 - Enable ssl_gtests upstream test suite - Remove 'export NSS_DISABLE_GTESTS=1' go ssl_gtests are built - Use %define when specifying the nss_tests to run- Add 64-bit MIPS to multilib arches- Update %{nss_util_version} and %{nss_softokn_version} to 3.21.0 - Resolves: Bug 1284095 - all https fails with sec_error_no_token- Add references to bugs filed upstream- Update to NSS 3.21 - Package listsuites as part of the unsupported tools set - Resolves: Bug 1279912 - nss-3.21 is available - Resolves: Bug 1258425 - Use __isa_bits macro instead of list of 64-bit - Resolves: Bug 1280032 - Package listsuites as part of the nss unsupported tools set- Update to NSS 3.20.1- Enable ECC cipher-suites by default [hrbz#1185708] - Split the enabling patch in two for easier maintenance - Remove unused patches rendered obsolete by prior rebase- Enable ECC cipher-suites by default [hrbz#1185708] - Implement corrections requested in code review- Enable ECC cipher-suites by default [hrbz#1185708]- Fix patches that disable ssl2 and export cipher suites support - Fix libssl patch that disable ssl2 & export cipher suites to not disable RSA_WITH_NULL ciphers - Fix syntax errors in patch to skip ssl2 and export cipher suite tests - Turn ssl2 off by default in the tstclnt tool - Disable ssl stress tests containing TLS RC4 128 with MD5- Update to NSS 3.20- Update to NSS 3.19.3- Create on the fly versions of sslcov.txt and sslstress.txt that disable tests for SSL2 and EXPORT ciphers- Update to NSS 3.19.2- Update to NSS 3.19.1- Update to NSS 3.19- Replace expired test certificates, upstream bug 1151037- Update to nss-3.18.0 - Resolves: Bug 1203689 - nss-3.18 is available- Disable export suites and SSL2 support at build time - Fix syntax errors in various shell scripts - Resolves: Bug 1189952 - Disable SSL2 and the export cipher suites- Rebuilt for Fedora 23 Change https://fedoraproject.org/wiki/Changes/Harden_all_packages_with_position-independent_code- Commented out the export NSS_NO_SSL2=1 line to not disable ssl2 - Backing out from disabling ssl2 until the patches are fixed- Disable SSL2 support at build time - Fix syntax errors in various shell scripts - Resolves: Bug 1189952 - Disable SSL2 and the export cipher suites- Update to nss-3.17.4- Own the %{_datadir}/doc/nss-tools dir- Resolves: Bug 987189 - nss-tools RPM conflicts with perl-PAR-Packer - Install pp man page in %{_datadir}/doc/nss-tools/pp.1 - Use %{_mandir} instead of /usr/share/man as more generic- Install pp man page in alternative location - Resolves: Bug 987189 - nss-tools RPM conflicts with perl-PAR-Packer- Update to nss-3.17.3 - Resolves: Bug 1171012 - nss-3.17.3 is available- Resolves: Bug 994599 - Enable TLS 1.2 by default- Update to nss-3.17.2- Update to nss-3.17.1 - Add a mechanism to skip test suite execution during development work- Rebuild for rpm bug 1131960- Update to nss-3.17.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild- Replace expired PayPal test cert with current one to prevent build failure- fix license handling- Update to nss-3.16.2- Remove unwanted source directories at end of %prep so it truly does it - Skip the cipher suite already run as part of the nss-softokn build- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild- Replacing ppc64 and ppc64le with the power64 macro - Related: Bug 1052545 - Trivial change for ppc64le in nss spec- Update to nss-3.16.1 - Update the iquote patch on account of the rebase - Improve error detection in the %section - Resolves: Bug 1094702 - nss-3.16.1 is available- Update to nss-3.16.0 - Cleanup the copying of the tools man pages - Update the iquote.patch on account of the rebase- Restore requiring nss_softokn_version >= 3.15.5- Update to nss-3.15.5 - Temporarily requiring only nss_softokn_version >= 3.15.4 - Fix location of sharedb files and their manpages - Move cert9.db, key4.db, and pkcs11.txt to the main package - Move nss-sysinit manpages tar archives to the main package - Resolves: Bug 1066877 - nss-3.15.5 is available - Resolves: Bug 1067091 - Move sharedb files to the %files section- Revert previous change that moved some sysinit manpages - Restore nss-sysinit manpages tar archives to %files sysinit - Removing spurious wildcard entry was the only change needed- Add explanatory comments for iquote.patch as was done on f20- Update pem sources to latest from nss-pem upstream - Pick up pem fixes verified on RHEL and applied upstream - Fix a problem where same files in two rpms created rpm conflict - Move some nss-sysinit manpages tar archives to the %files the - All man pages are listed by name so there shouldn't be wildcard inclusion - Add support for ppc64le, Resolves: Bug 1052545- ARM tests pass so remove ARM conditional- Update to nss-3.15.4 (hg tag NSS_3_15_4_RTM) - Resolves: Bug 1049229 - nss-3.15.4 is available - Update pem sources to latest from the interim upstream for pem - Remove no longer needed patches - Update pem/rsawrapr.c patch on account of upstream changes to freebl/softoken - Update iquote.patch on account of upstream changes- Update to nss-3.15.3.1 (hg tag NSS_3_15_3_1_RTM) - Resolves: Bug 1040282 - nss: Mis-issued ANSSI/DCSSI certificate (MFSA 2013-117) - Resolves: Bug 1040192 - nss-3.15.3.1 is available- Bump the release tag- Update to NSS_3_15_3_RTM - Resolves: Bug 1031897 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741 nss: various flaws - Fix option descriptions for setup-nsssysinit manpage - Fix man page of nss-sysinit wrong path and other flaws - Document email option for certutil manpage - Remove unused patches- Revert one change from last commit to preserve full nss pluggable ecc supprt [1019245]- Use the full sources from upstream - Bug 1019245 - ECDHE in openssl available -> NSS needs too for Firefox/Thunderbird- Update to NSS_3_15_2_RTM - Update iquote.patch on account of modified prototype on cert.h installed by nss-devel- Update pem sources to pick up a patch applied upstream which a faulty merge had missed - The pem module should not require unique file basenames- Update pem sources to the latest from interim upstream- Resolves: rhbz#996639 - Minor bugs in nss man pages - Fix some typos and improve description and see also sections- Cleanup spec file to address most rpmlint errors and warnings - Using double percent symbols to fix macro-in-comment warnings - Ignore unversioned-explicit-provides nss-system-init per spec comments - Ignore invalid-url Source0 as it comes from the git lookaside cache - Ignore invalid-url Source12 as it comes from the git lookaside cache- Add man page for pkcs11.txt configuration file and cert and key databases - Resolves: rhbz#985114 - Provide man pages for the nss configuration files- Fix errors in the man pages - Resolves: rhbz#984106 - Add missing option descriptions to man pages for {cert|cms|crl}util - Resolves: rhbz#982856 - Fix path to script in man page for nss-sysinit- Update to NSS_3_15_1_RTM - Enable the iquote.patch to access newly introduced types- Install man pages for nss-tools and the nss-config and setup-nsssysinit scripts - Resolves: rhbz#606020 - nss security tools lack man pages- Build nss without softoken or util sources in the tree - Resolves: rhbz#689918- Update ssl-cbc-random-iv-by-default.patch- Fix generation of NSS_VMAJOR, NSS_VMINOR, and NSS_VPATCH for nss-config- Update to NSS_3_15_RTM- Fix incorrect path that hid failed test from view - Add ocsp to the test suites to run but ... - Temporarily disable the ocsp stapling tests - Do not treat failed attempts at ssl pkcs11 bypass as fatal errors- Update to NSS_3_15_BETA1 - Update spec file, patches, and helper scripts on account of a shallower source tree- Update expired test certificates (fixed in upstream bug 852781)- Fix incorrect post/postun scripts. Fix broken links in posttrans.- Configure libnssckbi.so to use the alternatives system in order to prepare for a drop in replacement.- Update to NSS_3_14_3_RTM - sync up pem rsawrapr.c with softoken upstream changes for nss-3.14.3 - Resolves: rhbz#908257 - CVE-2013-1620 nss: TLS CBC padding timing attack - Resolves: rhbz#896651 - PEM module trashes private keys if login fails - Resolves: rhbz#909775 - specfile support for AArch64 - Resolves: rhbz#910584 - certutil -a does not produce ASCII output- Allow building nss against older system sqlite- Update to NSS_3_14_2_RTM- Update to NSS_3_14_1_WITH_CKBI_1_93_RTM- Require nspr >= 4.9.4 - Fix changelog invalid dates- Update to NSS_3_14_1_RTM- Bug 879978 - Install the nssck.api header template where mod_revocator can access it - Install nssck.api in /usr/includes/nss3/templates- Bug 879978 - Install the nssck.api header template in a place where mod_revocator can access it - Install nssck.api in /usr/includes/nss3- Bug 870864 - Add support in NSS for Secure Boot- Disable bypass code at build time and return failure on attempts to enable at runtime - Bug 806588 - Disable SSL PKCS #11 bypass at build time- Fix pk11wrap locking which fixes 'fedpkg new-sources' and 'fedpkg update' hangs - Bug 872124 - nss-3.14 breaks fedpkg new-sources - Fix should be considered preliminary since the patch may change upon upstream approval- Add a dummy source file for testing /preventing fedpkg breakage - Helps test the fedpkg new-sources and upload commands for breakage by nss updates - Related to Bug 872124 - nss 3.14 breaks fedpkg new-sources- Fix a previous unwanted merge from f18 - Update the SS_SSL_CBC_RANDOM_IV patch to match new sources while - Keeping the patch disabled while we are still in rawhide and - State in comment that patch is needed for both stable and beta branches - Update .gitignore to download only the new sources- Fix the spec file so sechash.h gets installed - Resolves: rhbz#871882 - missing header: sechash.h in nss 3.14- Update the license to MPLv2.0- Use only -f when removing unwanted headers- Add secmodt.h to the headers installed by nss-devel - nss-devel must install secmodt.h which moved from softoken to pk11wrap with nss-3.14- Update to NSS_3_14_RTM- Update to NSS_3_14_RC1 - update nss-589636.patch to apply to httpdserv - turn off ocsp tests for now - remove no longer needed patches - remove headers shipped by nss-util- Update to NSS_3_13_6_RTM- Rebase pem sources to fedora-hosted upstream to pick up two fixes from rhel-6.3 - Resolves: rhbz#847460 - Fix invalid read and free on invalid cert load - Resolves: rhbz#847462 - PEM module may attempt to free uninitialized pointer - Remove unneeded fix gcc 4.7 c++ issue in secmodt.h that actually undoes the upstream fix- Fix pluggable ecc support- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- Fix checkin comment to prevent unwanted expansions of percents- Resolves: Bug 830410 - Missing Requires %{?_isa} - Use Requires: %{name}%{?_isa} = %{version}-%{release} on tools - Drop zlib requires which rpmlint reports as error E: explicit-lib-dependency zlib - Enable sha224 portion of powerup selftest when running test suites - Require nspr 4.9.1- Resolves: rhbz#833529 - revert unwanted change to nss.pc.in- Resolves: rhbz#833529 - Remove unwanted space from the Libs: line on nss.pc.in- Update to NSS_3_13_5_RTM- Resolves: Bug 812423 - nss_Init leaks memory, fix from RHEL 6.3- Resolves: Bug 805723 - Library needs partial RELRO support added - Patch coreconf/Linux.mk as done on RHEL 6.2- Update to NSS_3_13_4_RTM - Update the nss-pem source archive to the latest version - Remove no longer needed patches - Resolves: Bug 806043 - use pem files interchangeably in a single process - Resolves: Bug 806051 - PEM various flaws detected by Coverity - Resolves: Bug 806058 - PEM pem_CreateObject leaks memory given a non-existing file name- Resolves: Bug 805723 - Library needs partial RELRO support added- Cleanup of the spec file - Add references to the upstream bugs - Fix typo in Summary for sysinit- Pick up fixes from RHEL - Resolves: rhbz#800674 - Unable to contact LDAP Server during winsync - Resolves: rhbz#800682 - Qpid AMQP daemon fails to load after nss update - Resolves: rhbz#800676 - NSS workaround for freebl bug that causes openswan to drop connections- Update to NSS_3_13_3_RTM- fix issue with gcc 4.7 in secmodt.h and C++11 user-defined literals- Resolves: Bug 784672 - nss should protect against being called before nss_Init- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- Deactivate a patch currently meant for stable branches only- Resolves: Bug 770682 - nss update breaks pidgin-sipe connectivity - NSS_SSL_CBC_RANDOM_IV set to 0 by default and changed to 1 on user request- Revert to using current nss_softokn_version - Patch to deal with lack of sha224 is no longer needed- Resolves: Bug 754771 - [PEM] an unregistered callback causes a SIGSEGV- Resolves: Bug 750376 - nss 3.13 breaks sssd TLS - Fix how pem is built so that nss-3.13.x works with nss-softokn-3.12.y - Only patch blapitest for the lack of sha224 on system freebl - Completed the patch to make pem link against system freebl- Removed unwanted /usr/include/nss3 in front of the normal cflags include path - Removed unnecessary patch dealing with CERTDB_TERMINAL_RECORD, it's visible- Statically link the pem module against system freebl found in buildroot - Disabling sha224-related powerup selftest until we update softokn - Disable sha224 and pss tests which nss-softokn 3.12.x doesn't support- Rebuild with nss-softokn from 3.12 in the buildroot - Allows the pem module to statically link against 3.12.x freebl - Required for using nss-3.13.x with nss-softokn-3.12.y for a merge inrto rhel git repo - Build will be temprarily placed on buildroot override but not pushed in bodhi- Fix broken dependencies by updating the nss-util and nss-softokn versions- Update to NSS_3_13_1_RTM - Update builtin certs to those from NSSCKBI_1_88_RTM- Update to NSS_3_13_RTM- Update to NSS_3_13_RC0- Fix attempt to free initilized pointer (#717338) - Fix leak on pem_CreateObject when given non-existing file name (#734760) - Fix pem_Initialize to return CKR_CANT_LOCK on multi-treaded calls (#736410)- Update builtins certs to those from NSSCKBI_1_87_RTM- Update to NSS_3_12_11_RTM- Indicate the provenance of stripped source tarball (#688015)- Provide virtual -static package to meet guidelines (#609612).- Enable pluggable ecc support (#712556) - Disable the nssdb write-access-on-read-only-dir tests when user is root (#646045)- make the testsuite non fatal on arm arches- Fix crmf hard-coded maximum size for wrapped private keys (#703656)- Update to NSS_3_12_10_RTM- Update to NSS_3_12_10_BETA1- Implement PEM logging using NSPR's own (#695011)- Update to NSS_3.12.9_WITH_CKBI_1_82_RTM- Short-term fix for ssl test suites hangs on ipv6 type connections (#539183)- Add a missing requires for pkcs11-devel (#675196)- Run the test suites in the check section (#677809)- Fix cms headers to not use c++ reserved words (#676036) - Reenabling Bug 499444 patches - Fix to swap internal key slot on fips mode switches- Revert patches for 499444 until all c++ reserved words are found and extirpated- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Fix cms header to not use c++ reserved word (#676036) - Reenable patches for bug 499444- Revert patches for 499444 as they use a C++ reserved word and cause compilation of Firefox to fail- Fix the earlier infinite recursion patch (#499444) - Remove a header that now nss-softokn-freebl-devel ships- Fix infinite recursion when encoding NSS enveloped/digested data (#499444)- Update the cacert trust patch per upstream review requests (#633043)- Fix to honor the user's cert trust preferences (#633043) - Remove obsoleted patch- Update to 3.12.9- Rebuilt according to fedora pre-release package naming guidelines- Update to NSS_3_12_9_BETA2 - Fix libpnsspem crash when cacert dir contains other directories (#642433)- Update to NSS_3_12_9_BETA1- Update pem source tar with fixes for 614532 and 596674 - Remove no longer needed patches- Update PayPalEE.cert test certificate which had expired- Tell rpm not to verify md5, size, and modtime of configurations file- Fix certificates trust order (#643134) - Apply nss-sysinit-userdb-first.patch last- Move triggerpostun -n nss-sysinit script ahead of the other ones (#639248)- Fix invalid %postun scriptlet (#639248)- Replace posttrans sysinit scriptlet with a triggerpostun one (#636787) - Fix and cleanup the setup-nsssysinit.sh script (#636792, #636801)- Add posttrans scriptlet (#636787)- Update to 3.12.8 - Prevent disabling of nss-sysinit on package upgrade (#636787) - Create pkcs11.txt with correct permissions regardless of umask (#636792) - Setup-nsssysinit.sh reports whether nss-sysinit is turned on or off (#636801) - Added provides pkcs11-devel-static to comply with packaging guidelines (#609612)- NSS 3.12.8 RC0- Fix nss-util_version and nss_softokn_version required to be 3.12.7.99.3- NSS 3.12.8 Beta3 - Fix unclosed comment in renegotiate-transitional.patch- Change BuildRequries to available version of nss-util-devel- Define NSS_USE_SYSTEM_SQLITE and remove unneeded patch - Add comments regarding an unversioned provides which triggers rpmlint warning - Build requires nss-softokn-devel >= 3.12.7- Update to 3.12.7- Apply the patches to fix rhbz#614532- Removed pem sourecs as they are in the cache- Add support for PKCS#8 encoded PEM RSA private key files (#614532)- Fix nsssysinit to return userdb ahead of systemdb (#603313)- Require and BuildRequire >= the listed version not =- Require nss-softoken 3.12.6- Fix SIGSEGV within CreateObject (#596674)- Update pem source tar to pick up the following bug fixes: - PEM - Allow collect objects to search through all objects - PEM - Make CopyObject return a new shallow copy - PEM - Fix memory leak in pem_mdCryptoOperationRSAPriv- Update the test cert in the setup phase- Add sed to sysinit requires as setup-nsssysinit.sh requires it (#576071) - Update PayPalEE test cert with unexpired one (#580207)- Fix ns.spec to not require nss-softokn (#575001)- rebuilt with all tests enabled- Using SSL_RENEGOTIATE_TRANSITIONAL as default while on transition period - Disabling ssl tests suites until bug 539183 is resolved- Update to 3.12.6 - Reactivate all tests - Patch tools to validate command line options arguments- Fix curl related regression and general patch code clean up- retagging- Fix SIGSEGV on call of NSS_Initialize (#553638)- New version of patch to allow root to modify ystem database (#547860)- Temporarily disabling the ssl tests- Fix nsssysinit to allow root to modify the nss system database (#547860)- Fix an error introduced when adapting the patch for rhbz #546211- Remove left over trace statements from nsssysinit patching- Fix a misconstructed patch- Fix nsssysinit to enable apps to use system cert store, patch contributed by David Woodhouse (#546221) - Fix spec so sysinit requires coreutils for post install scriplet (#547067) - Fix segmentation fault when listing keys or certs in the database, patch contributed by Kamil Dudka (#540387)- Fix nsssysinit to set the default flags on the crypto module (#545779) - Remove redundant header from the pem module- Remove unneeded patch- Retagging to include missing patch- Update to 3.12.5 - Patch to allow ssl/tls clients to interoperate with servers that require renogiation- Retagging- Require nss-softoken of same architecture as nss (#527867) - Merge setup-nsssysinit.sh improvements from F-12 (#527051)- User no longer prompted for a password when listing keys an empty system db (#527048) - Fix setup-nsssysinit to handle more general formats (#527051)- Fix syntax error in setup-nsssysinit.sh- Fix sysinit to be under mozilla/security/nss/lib- Add nss-sysinit activation/deactivation script- Install blank databases and configuration file for system shared database - nsssysinit queries system for fips mode before relying on environment variable- Restoring nssutil and -rpath-link to nss-config for now - 522477- Add the nss-sysinit subpackage- Installing shared libraries to %{_libdir}- Retagging to pick up new sources- Update pem enabling source tar with latest fixes (509705, 51209)- PEM module implements memory management for internal objects - 509705 - PEM module doesn't crash when processing malformed key files - 512019- Remove symbolic links to shared libraries from devel - 521155 - No rpath-link in nss-softokn-config- Update to 3.12.4- Fix FORTIFY_SOURCE buffer overflows in test suite on ppc and ppc64 - bug 519766 - Fixed requires and buildrequires as per recommendations in spec file review- Restoring patches 2 and 7 as we still compile all sources - Applying the nss-nolocalsql.patch solves nss-tools sqlite dependency problems- restore require sqlite- Don't require sqlite for nss- Ensure versions in the requires match those used when creating nss.pc- Remove nss-prelink.conf as signed all shared libraries moved to nss-softokn - Add a temprary hack to nss.pc.in to unblock builds- caolan's nss.pc patch- Bump the release number for a chained build of nss-util, nss-softokn and nss- Fix nss-config not to include nssutil - Add BuildRequires on nss-softokn and nss-util since build also runs the test suite- disabling all tests while we investigate a buffer overflow bug- disabling some tests while we investigate a buffer overflow bug - 519766- remove patches that are now in nss-softokn and - remove spurious exec-permissions for nss.pc per rpmlint - single requires line in nss.pc.in- Fix BuildRequires: nss-softokn-devel release number- fix nss.pc.in to have one single requires line- cleanups for softokn- remove the softokn subpackages- don install the nss-util pkgconfig bits- remove from -devel the 3 headers that ship in nss-util-devel- kill off the nss-util nss-util-devel subpackages- split off nss-softokn and nss-util as subpackages with their own rpms - first phase of splitting nss-softokn and nss-util as their own packages- must install libnssutil3.since nss-util is untagged at the moment - preserve time stamps when installing various files- dont install libnssutil3.so since its now in nss-util- Fix spec file problems uncovered by Fedora_12_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- removed two patch files which are no longer needed and fixed previous change log number- updated pem module incorporates various patches - fix off-by-one error when computing size to reduce memory leak. (483855) - fix data type to work on x86_64 systems. (429175) - fix various memory leaks and free internal objects on module unload. (501080) - fix to not clone internal objects in collect_objects(). (501118) - fix to not bypass initialization if module arguments are omitted. (501058) - fix numerous gcc warnings. (500815) - fix to support arbitrarily long password while loading a private key. (500180) - fix memory leak in make_key and memory leaks and return values in pem_mdSession_Login (501191)- add patch for bug 502133 upstream bug 496997- rebuild with higher release number for upgrade sanity- updated to NSS_3_12_4_FIPS1_WITH_CKBI_1_75- re-enable test suite - add patch for upstream bug 488646 and add newer paypal certs in order to make the test suite pass- add conflicts info in order to fix bug 499436- ship .chk files instead of running shlibsign at install time - include .chk file in softokn-freebl subpackage - add patch for upstream nss bug 488350- Update to NSS 3.12.3- temporarily disable the test suite because of bug 494266- fix softokn-freebl dependency for multilib (bug 494122)- introduce separate nss-softokn-freebl package- disable execstack when building freebl- add upstream patch to fix bug 483855- build nspr-less freebl library- Update to NSS_3_12_3_BETA4- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild- update to NSS_3_12_2_RC1 - use system zlib- add sparc64 to the list of 64 bit arches- bug 456847, move pkgconfig requirement to devel package- Update to NSS_3_12_1_RC2- NSS 3.12.1 RC1- fix bug bug 429175 in libpem module- bug 456847, add Requires: pkgconfig- nss package should own /etc/prelink.conf.d folder, rhbz#452062 - use upstream patch to fix test suite abort- Update to NSS_3_12_RC4- Update to NSS_3_12_RC2- Zapping old Obsoletes/Provides. No longer needed, causes multilib headache.- Update to NSS_3_12_BETA3- NSS 3.12 Beta 2 - Use /usr/lib{64} as devel libdir, create symbolic links.- Apply upstream patch for bug 417664, enable test suite on pcc.- Support concurrent runs of the test suite on a single build host.- disable test suite on ppc- disable test suite on ppc64- Build against gcc 4.3.0, use workaround for bug 432146 - Run the test suite after the build and abort on failures.* NSS 3.12 Beta 1- move .so files to /lib- NSS 3.12 alpha 2b- upstream patches to avoid calling netstat for random data- NSS 3.12 alpha 2- Add /etc/prelink.conf.d/nss-prelink.conf in order to blacklist our signed libraries and protect them from modification.- Fix off-by-one error in the PEM module- fix a C++ mode compilation error- Add 3.12 ckfw and libnsspem- Updated license tag- Ensure the workaround for mozilla bug 51429 really get's built.- Better approach to ship freebl/softokn based on 3.11.5 - Remove link time dependency on softokn- Fix unowned directories, rhbz#233890- Update to 3.11.7, but freebl/softokn remain at 3.11.5. - Use a workaround to avoid mozilla bug 51429.- Fix rhbz#230545, failure to enable FIPS mode - Fix rhbz#220542, make NSS more tolerant of resets when in the middle of prompting for a user password.- Update to 3.11.5 - This update fixes two security vulnerabilities with SSL 2 - Do not use -rpath link option - Added several unsupported tools to tools package- disable ECC, cleanout dead code- Update to 3.11.4- Revert the attempt to require latest NSPR, as it is not yet available in the build infrastructure.- Update to 3.11.3- Add /etc/pki/nssdb- rebuild- Update to 3.11.2 - Enable executable bit on shared libs, also fixes debug info.- Enable Elliptic Curve Cryptography (ECC)- Update to 3.11.1 - Include upstream patch to limit curves- add --noexecstack when compiling assembler on x86_64- bump again for double-long bug on ppc(64)- rebuilt for new gcc4.1 snapshot and glibc changes- rebuild- Update file list for the devel packages- Update to 3.11- Add patch to allow building on ppc* - Update the pkgconfig file to Require nspr- Initial import into Fedora Core, based on a CVS snapshot of the NSS_3_11_RTM tag - Fix up the pkcs11-devel subpackage to contain the proper headers - Build with RPM_OPT_FLAGS - No need to have rpath of /usr/lib in the pc file- Adressed review comments by Wan-Teh Chang, Bob Relyea, Christopher Aillon.- Initial build3.67.0-2.el8_43.67.0-2.el8_4.build-id4e8d7b20922e18c1d1c1a1bdcaac840356264154libnssutil3.sonss-utilCOPYING/usr/lib//usr/lib/.build-id//usr/lib/.build-id/4e//usr/lib64//usr/share/licenses//usr/share/licenses/nss-util/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -mcpu=power8 -mtune=power8 -funwind-tables -fstack-clash-protectioncpioxz2ppc64le-redhat-linux-gnudirectoryELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, BuildID[sha1]=4e8d7b20922e18c1d1c1a1bdcaac840356264154, strippedASCII textPPPPPPPPP P P P P PPPPRRRRRRRRR utf-839dc2ced193d91725dc813b04659a846bfcd91a2ddb66aed31ae3c2fb7535138?@7zXZ !#,] b2u jӫ`(y,xۋ$F[0^ Hf_c,eϘvRoVk]霈X9u;8 kI sl>9 n7cv+l^_}b쮤S*mQ]*fٕ:A㬔npfB{~Ky!-~jA}9%:w|L12ƀ~!. %&Q,U b(Sv*8eեA';P?V}f)f(}߲q5ܰ,J?LQ" uiw.p [ O#g`*SMZq ᔻ#vA]"c80+TuHuLwOȹ'GI^b.q[%Fom̀"+!r9A"O2!!'K rKcQ@_{!LF= xX}8K`Ujln݀ী+;9v 1ܦI \eL|p!,[Qd,)t6ꦯ@O6@@LkJ7HҢSĂ<'QQP5[pI-1|Mh+[!{-!opqȒH@MĝP+E'3GZW@JZ/RN..j(ϟc6VfR ңA"/,]U)I/IroI7ǩpX>bgE3 QE|s~@ev0MfDLa?\JB4[C0q!Wkq4W֮caV5pmgM>OgwuT1xnjM8DU._Eki+@Ro/~JA<[QN:w6#;կj4DM,RlRԾ A) pn/|.p 5ӬJ !S#ekkfC-Pi#q)o5r2# V8+] m's,aիj]ƒHǞ[eDX<>o,D@̨@' .5k@v0^8}A |㨻¡64ĉA,@b3{.gte!!nIvvMxҼF80Dm1Z(!eDung=O35F!\~jsKUL {~A_Uf[RQ:NN(9•-$z}ZUn@lj-PG 3gh>@H4"'h=3N7Nרkŕ0s`*&dC>]I)lBG7KwUNTl&7,SuW6$@*Zk4虗M-[H=(jֽna*0hV"z" 6dclE8;!#V; zOKZ_2w$ h.* Bƍ8;7bqS5I.rh8mitݥX-7]iO k]#J2@:&=C[Z6Zs\V,x;ddDEz]JY J½9^{:gX*TӰfޚ)F.4Ma"ž!}G@ߌ?/{# iVl;9KzG ^y@#6k1o/ UDueO^osq, P e2aM9/.FuֆLMJR(Y6n,qڔ5{o, Uuо!Wp؀`Љ-_||)/$f7r8=lwg6mJ89RK YH@qmQkmkqu9f9h<(K$kh䛚%%CH.)s(5ڄߺ:Yg;ՖZjs#YC*g6iyE'T ԩV<GA<;MC>ԲLh)[d95@}hK_0áU1'}:3,.Li/5d!@\ lj3@kHm2?Уϝ**p!R~?M4v uUSڎWAPSB^*m\\#m@4l6;Ąي!gzuT $5zJ$҇n*vԵ*MuX6f1v`ѡ%G^@tQP.4zá2Aѷ#b߿P)'x_6zY-Hٽ!?mC-'_i>~{3]Uvl#Hv "C.XX1#S=i+YjKD6WHnxL颁^a~+ڶ%_P`͞v]%yf>[>wneBEݨx9 Z%(Y\ ,D8Xobap&A%&"dEW݀l{ptv:~ 7~j]`\KݒɌr-(t&,D JSnZIWZ CaLK+1藅SfUnws@ȫ uHa{&@ĒAvItvH櫂.Ul1i“Zۙn\;*bՅ(K1@'ek@  +8?֬mM@%Z:s^{sB>oٟkXj[mܦ(ǮZ&?+)y~.wZG.R%e+%o}h}{uT~H3M[؅I6V]@}1l%g, `%WKg!ZE ѢR9q VpbQwAsK vH9:v[; 8mRŃ'{A Ќ&M)H Jj$g:*$3l;%7`c/MX%~6DNĉekظzY@,3wm'~Hn2G8nՊHjǴ D#ʝ6c<'d}4?cy2'ܨۮ/]%_vBy&ێ Q}kt ;IՍpmt9p[~rMn|cDq)s~23UHf.%U&/:t821 C`iIJ%p- V  5$!ȸZ*6ixIU_Yl}:%2:j%C@nNR0Ca+M8,H!4PKe/g EZk`VGaX gG*Dox[/YϹY{ CHAw"\;+YmL_(XܛƴU}j+.@yjD hCzjDNAִ_^ >n_rnoǝ#c>P*P,pi,tl!*l#eM_g:+c7B^_?_:TIvN5Oc|u"^-%R4 *jZK҂NSYdZ;57zLwppHxejGdM_By@#q2Z?yqZУVa)/G,e.c<5wemPiP'9CH#b7-r'[]H)n#SᥜLM@uymj@:"NtZ3leÇ(R??c!_fZgz){.*,'Nɽ:َٰ$lLY ]`GtKLfޡ&̉# p;\yS?66{F=J'Pn^;N1{,!tf+fwj;FR5ca:$d!@܄4菇ő&LzQ_9g:ܺD2E&:5ԏd_kA<B6k4=VrUȰC!2\Z!NX XfSDXލhCNK޿aߔ,:RiWawT"Ӷҿ̠-*[۽ne(\2HN/۷źW7&]jP ^Q_p q *AbGyEjA _*O Fi5NAF<# Ra+̨l1n8g3!Ўc_堶^o&ٳ$OfQ΋p!q~-%ǫ >cbxa;ۧ qB6%۷"834L & q9rZn"'&Hv &l kP]wAXZ; l/Rpp|P6Ng>2CV &}d^p8rÖ8`W"UV"lBWpƊ4 f~ nhe0-E˸v=ƭ/B MKz,#\5j.@CEo+A?\3偌{둳O;]Tz`gV@ag(KN^xYBJ׷ TU=Ԝiw M]4QLb hCJGDJ,w7QbP * .Dr<-R<'`arK!x?j(MQß?T@!PXyqzg0a;Pz$Z8iiO R6Az_ͩ~˳XfybxFc "!EOcЩnT`(ìDg'gzoޠE#_I:`pE֍-ILFP]X+"s-knGRd=_m-xt*šj33ȼ>P V \f!N^%sE^*}厣3lYumv 4VkX!rwթ.gXvgfn Tylץ\32 照BSKͬL+ܿ wjy T߾|K7Iӧu֏;1Krc!ug–u#A9~zg>n+.=ozS–k{O5yΧ>4s ̢2wǑ7Xtd}c!ߪow;)o<>aEgTAע":so5ٽA8y,f9iu%1J=i-%hq4ܙ3sNkNܦ+mj_ɯ~[6%) (>M2PuTX!kP}k!\eC'Ѧ43Y(L\Za0ɓ1g #[Wxwu N#5G8$&'GD%xAWJ]ZӸ[q;tH4x\(&̓t,~~` ARk/&z㕳kfʿLNyэFt-ٗR_obepaʯ^l@@twVOw'dˢvUbeL-)kK49XpΤQ}<oqOwzx:{.{,tl%VzrrG>AXCh>̠1Qs8֭> (Em,>%$fdצr S5jTYScw/3𮱊_\`Rrȵ㣜0Aur`"uPeG|a}vYTަBvuݹAH7qrS˯!mЕLwٖ1Q{t@1 ґslN_o;rp]uc1fadS,UJ4~,ѩcLi cfF gyjwVW&. "ٺ <5ղ]݀;Y͚_!0X<",&w="#% ]Uy!&he(SD^)N !1)}Hv̴'N9,b,;gw8Z#xE< ݈ {,@-(qz·Mr&$EU J{0HT.{nwV1Tao ?PArB‹I`\x;Q/w@@<"r%JM ,nYcT- D̉r:$%RнawTX 6ft؁ACnH~Xj!?/G;=~퀲Ny9JUIc\fK(0yaV@YA_09)\"ge%]U<`=ީdyHA⍻f]  L|ENJ ڴdLk/| ODl8:Rdb3f\Rˤ-|ay!(Bk5S܊`,1zݛ 7>C @db#0\y}z3p<3 (DuBv?"L1Of!٣l/[z4dC6c#泫?QE%mx4iQbgo%?·scO\@3349j*53E2S{kxS2ֆǣ <.W?'5ISQӤqIg 7}OWӃĥ[tPC\\QtR+5*xpLOx_?B6Vd磼rcf=:熂<<lhH1aLR8?ߢ.RֻR0IHo}#QMqS̟Fн^lQI>!-V=g7 .ZK,{EAnLl4 mC"Sub"pnc%ٸ$'JXvnGӥ?`r|\o'ݸg@qaV!3pR@Aϥ&;G2gm}$9,KƊ ֩\.m@ E^qCYD\)^y{#J~EԬ3 4g(/pRh8tXtC|FBC!HvX$-2?_)3de6Ӄ HƒO+B JZ9, @{pVoB>d'@Z-N4QRJo^:[GDqI]m/Ge_ /J~LTk"PZ61{ts:( LE$jkWY&@% O{`ROso*0x~ƈ[a~*^$VZ'D7v8 #{k 9#_)ZF|1DRIC-՚)8K fP7*tķh3J>+8ۢ <# ݂''S^25^cg*ߟ:~TFɣyRr=ny3r"G*!X=I2 DlV0lPjIV:(0 $ρ WVFqsx?~7L˯Y|.q*CƭY+29؇Ü#V}PZ1zp&n9rk}˺$e߻;We8v+$qKB=1q w0_>f\¼BsA g:>291 Ad]Q-iW!YYlcap/a)(71 +#a(=%X"?St&̔o~:`~ig-ȶRXb!PZ:f 0oENÝ,ﱐ:v]P*J?$[N""D{u4I+ʴ6|qR-"TpTWdRn@j2D5藈x3,>)YN&,54yS[wTD7jOݎ?:ʮ$d7#&F@ uY[.(Y*%R&| k~?1*!C\zzHj(_Hn*O\DWԙMٳXhxO(K r 9CT2#>&HFƵ+@8+/ێ}>"@j q&wHok.넍!V @dJ#xYTZ;gZ紵REާp:w?=WN۹bX 5=Ǡ.\R6|=BS1d3 ޵譔_޽Vi ^Bp&t`rnxR`so* aK{CX8+}GI f̰ O 7!Ou#Z*q`mmЈYٯ6! >Mbi"I;-L1fNLtBWxÆGm|*uHAnV[4ŲR=X.F"gӫfɌ#`HTI%EL*Sq5ˢ%yVhXS1?E GRḇD(ک}4p݁ND+'lO ZJoOp! q]COi C;)3T.iH bn#O Bה $syԌ k)E ) Ma,)/J,[}.]93EshxBѶ^Y&B ^3(m@[ <`0eZ2&aj,2]5 x SQ.G*2E%^]zՇ4.WPAUf_bܟQE%JS89l/z@Sl?eRĖI>%GH/X›gQ'jq!-=B6Mth'.{唐.̘u1)2z06>fF3"/nKy$V,ç&'^+|d]dfON'+ @Gw'iҽ(iLqB`? " m,lY0sV}VP,AxhlG@oY )fM)W=)8͹'7mB-rT-8rN怐iUfY=f\0z8&v$(_ߤI",HoC, }Y9Xc 4WoUNQu1Z d3RfgkMev;˼er]Kw+ K*6o}|ϸ= Yv2" "뚧➶T돲yyLpBU~om$5l(>ݖfjgDXddzSߡa)![ŕZ"6ƒW7)~l?qԼw3N]TR.p`P{~rkXZ.@O bUnJD5`m)Ci*IZhay sif}԰(K@fk0I"K^>A6:!4/_0X%b kT1,&X sa==,[Qu V&݃l=;Le S{GsλY6y N AŢ;v \NҲ l3 ,YZ'Bx5J{HPMӸ-ׯ2x##ryXٷ)B6ex~' B񉞌\P-i{VzW6 C/ x')"06ҝ[W]עnot0u07f] 3땝`.z7{\yi\ a O MA:/銡HnO>q?IO} C }`:~.;eZLf" CVuAS&Lo U:00:ָYQ+V`HJҁ$+k߽s+%v'O8n,peLs*WHwNۈ 'au 68YZ,.%l% {C97|KA@Y1SWORORB*z&cۺȯGlMfHo8)R1HYe쟿[{ MjS(HEfZ*)9&d ?⺾f^?oUqq HaYTԩ!vʹD7cz qS'Q/Z!}nXVH:==L ,A菜6DaFgǁ4^W{Lq$ q ҹVc59]f릛۽2r_w;ژ8|HT0 (j__ՃV/G͹3/Ls<!PbGǺlH\pa[9bd JCO%e,tL^ֳcm5WjP*in-sX7k(aT lS F.3{m Wx5JN^ P^T]ֹJc$Ppx. f&tXZښ6d[8H4;,a>Z_g&r WcSiʑ57ghMssUc{x6o@PP[8Fl&~RQE%I?%bl|C+yOֆ x@j#aO/# Ǿe{p65Tɬ93!j1yf`] 7~<$Hd]Q/E;\Ma}Od8rϨOK۝^G:(FACnTX{Գˡޓӟ-98x)،s_m5Y5$~fB딳>Hy~k?*:ŴwIG `Hc#` 78OlDւU?*OƥPd@EEً[rI[5ҝ2m+uv^g,Nmsi z82 3vT@Gfk]#]ά:--SXQ7p9aJP 2p|=` SyR $u؊pr>C^ůiS&*)jnۗb+IZBbfE%U(tOd 2J.E1TR)N5;8rtY#EXNj}5H9^:O3^2>5P몧#3<lv/="S3d.%$S,L"0 1NXȬ"gO僟8!oP;U"DFGNŭ&+}koӼ/FUN,ieydḶ܏L6ex iMDŽ:Mz-!Q 9CtmM<dYm59r-,.z]gj)큊qJ [i"C|P]-Wc 8di." LYl> nş#zTM2tI@]ߤ)3IQ?Kpm[·TM>es/B0[(|K/ 5OA/;RݽTAt+k%]h2>l<*O] c` rԔn#ZwEt{󑽒g!5%;cDD_/QTVn|?l}+d-^Ҳ?vt$5)҆S\PT(!# -gnr rk4>Tf T/g(FHаIa_!`1܉CxH;-lw' /bȞEIfx! kD>61{~90ircɬ/ ya4bxjgb5Cзv'4w#de8QX 6oM @:=O8d9:"w%*ӹC(h:Gr@+CAd"``>k}o~|;ko>z4Z E$چ!gT; RZd.P mhYT.QF蝬E7YA{T͟PPk_q|as,dsCw]U,RLUܵ~ 6˺w|V?Ld2Hr"=X ~6PJ*V&@AًNk(@6@r,^2]EB%3tmʮQʘ)x,)l_s|v0Ը)y<ih&v@^ !z>cKd4kKRSY|ie7 ~lŷdQ,R 2 Vmaw4GQSqgܸOv,ř42b{ GrfB}MGA%Gul$kn/z }Pa獯F_Rߡ+5ڃtؙh_)5#<yLy7nIøߠ-0&ɣ:DJro|@ub[ !hg-t HѦ F2@9tBA$6䖖-FkceS4kYu^N;?`_PS Ϋ%| v¿ԛUڛ.7pv:'{uΈؿw.S|=}(ؒ oai(kJ VC刘o[{0v P./.Njˠzϴb\c?D랝#:չ[#ueӣ.Th'w/$耐jR~l* =:3I"g.,޽QeT92>  P?|q9:[Z\)ϰƒ.yh ?Tָa{ȋJuYj?ss.pƢ"T81(}N e"/吿Z9.FY_5.,9'8#@E%e|qLUj! ݠ$(CVܜ ȂqׄG?eԗ=WJ7ުALA.pmjBx;2+25GFYw^$AM-zw^Xpڽ/۰뉟kG9r#w980XD`T&(1_BS%Lq\=Ee.*Up+"R鏶T }L o?W$` 5,G,V% GěU-mu\#f=ݛJdlœ %!*W +vKx|=ДpmȋLCd5F%~Hk8d蓲ݜlIXH_is… Go>o]XP2ՀrMK뺷3D+v*z7Y@]9?I/[ް[)]!z[pn̈vNV-EkaXIMo# !P#%B%ݪA. ';>{C>'g ׬ťU/Tgj|H-ĤPqSt sn2z_U%(kpk˺˶.jW =%+^l x0A.^f~V덍8{cӸfNmҍ#Ќ$Υ&I 2@j@#nq‚t v z&'_LՓezAOHnTF`}MT41;%MUA3[+ Xxuޤ?5"270AQ8/q?&W dDp !t$' &6_aD?z[9HJWAewGækOD8 d^. OoOOΛv"C)|Ѫ0 4+%uH`\wkv&fOzz_wzF$ 𪑟LH؄9]؟ }L]Kݻ꧘Wp ܶW7ppU-@Ec]vlq:S@^@}aQx^ [)-F/;7 kI $1#Ntp:h]u}Þ~3*@6+Byg.7PvpSUYmFoo:N@U1kC1> `-9JkiBԎ.%-WM#YvVGZ2ې@po^f <ۤZpUQ!H)Rs!j=}8~a+If'۟A\Cz;E^=0K`@k<8 U]Uu+%rnUPq2K wdy|ڽ9F~0[@;#wYp<aM` i*/BIo7c0:k[5:-Ѧ!:) g 9.2!2/0Č(af?W ;|W-lN91]驍$\ṫTu" t:E$plӁD|@5XQ56mY4*$G#K?f+*^y@sRA> irx{_zX^ZMJ.b!f]oGthkveFXx0X}3Ʒ^':#T >0yA964 "+lEͥcx:FC\>6sQE&ֹH=6iW)@8S cW|{Z㎜}.G?UoT$ 瀠ECT/Zs];;ޑS٣#maTkc|p4)r1}b#'@r!5Jny颖ŒEx\K;nm\k/9WT/HfR9ᚈ~]3<;:lrt;<=2W)V|gb2dZ /t4W\n07Y~[|  뱯F"ou>x20Ԅm5Iߩ>3[{@/S8mJkw_wBBGB\ <4thH s,ud"`z@1g(|}3~pVҹǩQR1臧"q_,(cE~:J, xFrΚ\xSf<[Cykt'XzmRǞR/>0>NYc1ꆲsyd쨕h6ʳ j-DW Fq'S 1>%rR79,S?ξ})[gi`bF$x%Hmc5B9哒V54ղGo^Fx$2Mlb}%P/:.% G]|6O9ؠnż { G&S\\N0ct9Hr)sֶo#H$k[*QPɜ7J"W݁AFiSJi2O|X>BO }xGA}29wzЁ9m#ɟ\s_vOE*J膘"H;6@47H\P!ٺޭ@)ْvߗ)S\迼c PwOΏlm,*v6s {2!25X?ʵ K+*M׸ig;:.zjG8[ /4@biXD#s6α]B:Awї-ͩl ctC|a>H)Ϸ;FQ@VY-4/WWv2׻u|2*tQ gFXKEw{y&L1k, Ƒ8X vUF[֊;'flzM*æ^gW:Z _i oN.ZRŌo86Z#_ĭDx6r6Hqy`(4-k { L oWG'pflܘH]wWg+M̷iv?V2Oy\se;j}eabd[o8cw.B+9pn{KL.K.ٺ=&6Kς'%.՞("$hy9@mDh%JhLA,UjTDy:|Б? w5:l㙔񳁆#*h?(5Rl Q{es3{c 5 7Zr% <*U rmbvlGQ3 努 "^ې&]O9O+CDk_gg مg-2?d$ϙlۥQV1hlS,kϚdԬ It]17#LO2%FVtVضMwLykB l2A?(V̩FQKߟz;>`Q2K` vmnّ)q{t!l/9ĝV]2ѽ}yM׷t;W8c4@MQ%>ӷEբ,m 6BuD s1:) C+}"B Y|{Iĥmsko]R('PzLkA0/SYԷOqc MNMCZ8Ft]E ͚T:%H:VGs_59_B'1k*9?ޤr5iGA_6 ^ !lnHZOYZ/ap[}d3*֑`(1P? v7v%sq'$Jr#n2$]LeG/=kڴrb[֧9rXJZL^ž'6pfyr~ Vu~DNd(]&E=C$5%Dn&u7eT.xFxWtcL*40ys+3Ki+-5ׅ%[-ɆTѸi@ cv@kt^9F1яD±AUO>T$|LD5;Fq l ckjs!pe`;8Ïe%?toӿQyS485*X2wOwws0_X^:i _YJQ &o&pwhedHCY#{]%ҹsqSBuj\ZcqAӗRڏy٭} aفK4ߴRehDne5we[>bz"KD `B*w? z QW_[N"R&UmVgm0]ʔ@9s^]#d XŌ'(註Ţ,IƭN5ܐkTW40G5XpD;:W <ոml?.UӨn>PW*z;|vB_O!+=7C! E}K5{eU.t͚N+@Xȼ.gBBG8[C~m` ]\P~;RИN&վci%fcȁb,Z3܁|FUU״t{a%xwSc,1lud뤔vǷi ?a O!ǿ`T* el)7_3zFIl[֐SEЂ WE&-T,J`ǩe ]+[`kUv+ LS9h$9c< :`ގafuRE#kAs$ĝDe @}CoL~Gyi O%rM޹mGnc?g5AhDN \5 `I@[:%|TV"{i @$n,F%= 9"_d.k8Ud0|(q~Om'H"~L^XLmmpb}ZhH⟙泡Z.c,(uKt5L*J"ZX^ZRcbc9n+w*Ui)>zH mYc5u$ڻnkB%2ӒGrjG#:8k,k#RiZt h0l1 Ɩ*B7nMA%)|%O W=!*<'ܺn6ƁLw3払о N"j1ces0E1TñP{{-z’77`"KPmRo杲_];{<4Q');Dp'sVf~ʄuTW*^maq3d,z&a$FfytbG*7 ܾ3/jq(mh?0 TDWؤ/c~wlcs| 7@"2:w_<.뱬}a9=hH@cE392'8nsļWKs NHy*ڼ}yX9e`JVUZI8##ѿRw>>spL+3Z2E0H3Ĺ6Joǽ%6+*t%i]CjΗ*dK)ƘQ |V-D:YkMyƛ։ZBU3* y; H>>)8P8S3E7 w;,ݖ0ϊœc_\MY1F*Κ`uVe1IbDWJzc\M'*qES*-2aNTۥKŻdMٌj,OU#dh_ Q$}\T#_/pS} ցdhB^a}2~"~as 8y<K0=\K+WUo~s%s2ӪP_{nkgUCh/M% ӰQ`{Tm ݳO_%|*n7cC%2d" SU>~NtYCB0K,e Z͖Daqs~ c?ёPtW jU31I4ڹ>iEKfMAݝbwfH_" t8oQŢcReucTU0d v0J6#)A=80cJ?hԼ-_rRj{"$: tǝ)JaDsH 캽=֎fiHmK?h\*b?R0n<˔Qഺ,>~]?WN z1.YDW%(AP.)spb+ lfse=[n( C2^&Zm}S/s$OTCjLLn)ߑQ9Aos8;!Z4va5zzCߘqµ@8jd& gc܊܁vWvBB1z$ٵLG} ВFQVj U5j *f?zvgM$a&m_ӐL'[rCb/߶:KeHoJ;q54 gay ^ mijbp4,"2j^Jwk*F1NjS4m3Z]Z]5zQ]b"\]_A~?$uŃ<<+ERڀq0HR<=LhxT% ))xMAWY@4GPW'mSɚq3l8-3P286]+ 6?}sAlA]߱&`=rDuE.64urF{MF|QT3+ OZg#iY+Fl1,&k͋D1Qw/ZUrha2M h1KjOz"i*^$p|;xCzp 8,meu@Yhx i+'U$Řa|~kuv]B؀UBH/fi5JmT){YޝVz RFeং”~x7Hۭ[칙7vv~p[o8Oe23mJ>X=𪜔{BŽ]AUrRQ(ت8[Of<`l$?n R𹱷 !Y>>VYBK? f6V0n}LC3Ѧ.ëףn1vd*xB1Xp֭c>>_ 陷}ѻ^ ( p͕քf`³F XٱY\OSF`wIǰnC "qטI)oP܅bnla3~gbE(tXXT_P!%7`3P\3lR sj!?f6gЭY)vE߹1cxa2([VE_R,uS- Sjd'Q gj,h {`3iR==@!ٌ6Э7r3dZ®9DpcbNo'wG䦜K%wEtnyU|ȢkEح).PN@XuL`Ƕ&G^Xhw>rԃZI^VL*/Tk)4-< z^=*IɨwD%~ H$8-<!C":1^h.E| %irsD6=6aP5t`BQ\4si~fiFW#Gpn'Is=9l&,vFZDad\j34PrŽӿ)ʂDp73sş)e1؋=O4Q)MG\t96'J/lWcĔ`oOn\*{62i %tCbhb 1/z1 VU+AA7DxQaD`̟Y7a0v؁e9(* f=ͼ#;!#TE %Fmҝη2м; D,]EeDI0]àE[Lx&bT?|(޻dGhsi27f:H}5ye~b P?0N5jl"I+(}^c}n8 7P\9ZKRH$ K;BȺ9<,=3O5 |xtT6i@? vv,$)C?MQF4ž)ig?a"djpZ|֤ɼT,٣ [!1_5lȴdTO1f, BuSdx8Q |"iO?(N%`ھ^纺<{HBIK[k(Î` WɁ<4'ݟE ]z(5aZQb*C.ouP٨xb_V/9rv'^,ޚ ?v阕kcd6gmJ^̢xDoN>^ZdVk|ge~R?"܈`")^k5J5žځ;60sIc(K7ӟNIdѮ O0OJzs  |Z,CG3LRĭJySή\*n`G2G-j`"8aBIa6XC\!yyiW˻ nioRa 7qCUqE(әrSJke- 2tT~A DxдWD7k 1U@:pFoe"NV)^LłK'wMp`1d( JufR@RV֏ Te J 맭@ {d;FY'Ռ+84{-tAX:c&D`MŽ|z邜eS;Ew[Ы}RAWTDJ|دϰOYwV sXj9;djđV?Vz*1ImD>KFvTO60ڤaHs7}sEn@U;G^D 1v>$PN m .b ch>Dw<aiQbsSO"30e?}sL!p~lF-?*.|%uX$Zo=D=9 *ES 00r0 :4irɆed8s{;Lc3k_PE>x(-IPԭ>ԁ`8f`FT8@%*Gtx\J85,-=04ǵo[n=e 5t bY mQd+:eI!i[HUg3nK-LK(wt!A=NpKdWҜKp*|SsL-8"` NΆBVT}vu"qW!tH|L]㳹w&3]CWB8B0>/l;jyDBǁsvgm,1saĎz6h$rUWSη1C[OPzF(l$`AЇCEyfq_A<01ӄY#_VƝ[17.R۲`ʇAH>5h֖LMزIhlWű3M敏T"xFdmxӒ^{so^S.ШURǢ}qbP4}]7VpՓ' QԸ'^1 iy>5&%$׾㍒s6WKwdHP+QCnOg-ġC*XRS#m5𼈍o"kD#;FdI-ǷdNl +/܊}R˜ ΅? @7#7գv<ğa'0ۍy`}1.3yB7wVHLXl`KIm4Q;pCekU2^ h$YVu_PJ;._\237|duDì|N#>Zބ+9ǭJFf=y@b Uj>b1l-9M r=|L]Nt/ypASC vZ O۟%h}nD G==~ 5ȩQ(0q%k. SHGm\@wX2?MqtX7 t-D0$vQȘ n륑?G%XI 1ͫc O2c"hk_wv\ ]cM?ߒToti>͌L>.j( T&5:n`A4}ۻ"e+ZH9VDƞ[P KUHB8PXB<3ؑF$TXwln?P\p 9dUS8zH]Nu Xs=I$ȁ#(SbZqf.a*6ڔ Mbn,D_' <[ tJRzBk+P^^cQB(I gTFVUJmB. SP@y71uF_( 3"7 Yge~Ժv W)P5v{|\9L4]C4/oed%zpᥪ%%Yϓڪh;R>\0„k|D0"ߋМ?/=b t@wtzxsr.gw1oU R/]kPgd".H͓s-*{d:KJFxkf]_,`>+O#CKԔ"fj /+$<56vOd*}o_P 'Vj¢0iyq$;xᔉyܿ.VqH]sQ]_s;v|*v󂿓Ķ^'0+@z &Sn Q%R J0jĹGׅ0>!_?'y>a3ksUH"eށix ҷ.VzQ;Dm 81(k%``CT}#P+9 \<@Q@EbsFȮf@`%&JA ^(!,İm,[>"X-{ ڦol>D#QֽU/(("& ge,ºOq~8!>DNֶo^B<.zYssGXo0"[^Ctw! r,WVp`[is9z +p^ό/$Ish4Cߓ˫qY-V|.2dHmzq8jq\e6wVg/4ꔵ.b9 Q(`lef3/,p&bstS2 5+Db_4q0`V0M[j9_~}i` x /ko?<42W`?a: ܥk m*0WąP"z gG EYћJFWF BG-g⠪ekE`Hڄ% \>Oky2tq$ѥsgcNoa6R`nq3VV zo_߄Il7Hg?| \| $d3eG\z 1lk < 3pcV?1:kA2D8v1t'@8EsrI3:αL]miYײDRQ&_Mot T}TѾkkUA8e%i')`/6FmÆ=Eu_l7B: I8eZd *L@vo|l[oPEi-b ?L]fRĽQP^ y i-؏1YuDb TIlh(c:ۇKQ(oYr@ǃ(pm%8X@59ֲZAg^)jx!م?@Jv3U Ap ၷ%*}/ !F-qt7Kb 2^@q>Jڞ*1RaRX6O;l,%md'V9iuɭɶuT"@3=I"FQWjsz*d ܜ;_5b7qn/Z 2Iֲsl? .'%ץHki QZ;Q9}>4b&ba?RIh}x+6Ԋ݆'6P[ʞB[#YfbW3D[mC8M޾4C\1g-X.qk\t4yV:(dE8ڏ`*LV.85Pˏ=oƈEǠ,!97@!H3Yyv>|5 3vӏIؔ|^;h l3 5<`TI%`DHc$dxԫtJ،**Ģ%`0f6.%avI(Cs*0»\4C}N^@/R$jMt>=O:; .EQOcV𠣞5Ϋ)̤հ|s|I͐HTQna/D׺N$@gqVL$avJ&$u H{Or4<~-F縇 F U mt/9W(U0+fL~/{Iϲp-r.Cm >uW"J%-.;53]bmBjsG,."ՙMUհ*ɭ( ܓϧaEϩ4>*Ux+1 £9.*+֑!mվQ=\}HbӨ.>%/hȁ+6R@.\I=\|yY@}+?U,6Bq)Xڭ(&|h/gs+oIKnx4u(A4ǷG!O h%%ٹ"Rapf}r Eb&w Oajpcr?y i+N6,󯁮(`\C+ /c΢+w'pXni{f9AIcQDpoO8_Pn? o +e8jO]XOTHW9ð{C;:/yV^$O'Km?[B7ɖ\Vwyv{ A_5VAt[{y5~ $ % U(MݤU3b0O 1v@WL\_C*ץgާE@ ʛ& ,,KwS f#W Yf,^RdsrSU 7;•ԑ[ϟ4\J9Jm|L^3& @m?>3+Ѷ0TֵiP(29.G~?x™zP z+[R9@ $(|7"&>F*3e;ᩧD? r AL;%ňB+!] n˙kXOș u?0ͲlËQ:fG8ߊ' (ՠUZXfTU']˺vuuM7;3uJ(^)' el7d iJqes7A벣 㙧7]pA,>nÁYDT+v|V"VS?ә:(IPvB2C:7}}O k2$Iu:T:VmA$P߁HV[]niYV$C_pb<@"&#{XNz5R::80-F[ u#0쭻}~Fu{ H7bEZ%[9J=u¤1NdM*KJ&c:pӤ#p[=d1v:v2 14ۆ,12/XNg >Gsuu*ioPܮmsxodzkDǒ\dhb pDsgaϲ0qdi:t47N#,}3o4s r4bLo 4+bb|g)Tjw4+M0P5l'\Ρ.򭀯  8-&zOpw۱W>3]uCBDwt?tre'Z)ûP Ί-EqK6՛U,|GɦmoDKg+[: 4vyxLE10)k0(h\r>c𱌬\-_eP=F\JDƋ{l0^ď)s~ļ[3ԅw*JM-ĕW>hw/Z?{T']=%PR ruIhH*p[N/zK!'|G^;u *s+ߨgSA<W%A lCr/ᙶ#vğM"}nwb^^悃uٌp\aڷyk'BR8/xR.SI&@{w|T=^mZ;}Wv/IhOU{2bЦLC Ϸ k;R }@jCg wvxwai9D%sM3.AAF٧a67H[`!Oب#5\\tO>D07ffK[)P__5:fm 9_YD5_ 2d[vPXSLhQ,B(< xykNXc;w%TgTEn"(CSC=q&sMD:4E,?#Axׅ$'HoF)ߧNB}7N2G8]|2`SM{ 2c̋ɋ*-Hƛ'u$zD4V-K7 nӄ\G$.锉҅a~e-EODAʌ*B1vu4e~E4SZZ>|!hcy0bQ Ju~H9NDr+%%׶K+!`x+">bj- s"8n'VծqeP_(5;&ވa N=-,%ΗYZSG E-YC ggVUxX8/tIe|pʜr./(v3Xe[cOc-|iaO* _4>w@eYZh #tqo%UE5|7C^e7>g,ts!c+0NT!0mtJyNTO+vZ߇F9Əֳ>Y>EkF = 8d 0JoB~_uM H] N;@ `Σ5isQfl4d2,]hIzn m4O?yJׯ',^j|V Ae7Q_8S >iyMCw?Rph CB~.f'hJ^*H"'IP *%=te[޽KTC%/Y؛;;u7vQ/$/|`lL 1pT9y0`#꟥7 Fˊ'`*9Coq;P9}gp4>$`jCH jM;B Fi`M4!ѻgvԂR; 8;}FF\@nL"ĀSNZr lDqg;.S h`kbc{!u`;dt,a^<`Ej)ul\Mں@׷M9\O4 b=~un)$~#kKaOxnOR.ƒḴj("s >S#ڇC5!?=p+>lKn&8(ƕ_{|.b45ƑzJÎ$C{r6S$|іP֍@Y:,Ѝy ./K*ʥx=3Th퍱RfΫxxۨ5@_|$Kg`3-]2nF~9! )qvT|G|<@h%jeQKP>`CHAIkAp_֡ED]f؜5癞YW' 1=/Ov˱& ʔKgECL'qPLy{e) %* ̽ /i.䖟_+-Sпsq2>yv-Z E9FV,Q ʁ|?>O`,a;D5 yanWt kOC3ő{ nzyIL "P5%q/8}},SsvJ4ITI;A~x\j@fL鈇%,+,ʛBG>n03uVTpzAMXyBZ@h5 a*[˕vFz6_u!:HMU5 N/O|.Fqw1l%L{C?Ҙ-I-7);24JGoj8K1Rzs,n slS+5IJYD$ |]t"+_^#7?T]_ AC. X:+/a*Ie?/S)967-_gZ/b;}zO›=šӗ/kj TZ31mϰ]Ie )t<|Û:wn^b=C@ (#ÞB I5nj4J j^F@i $!~!36 ֵwYI񅱦3b# I8#^:.$j>qғ&#k/?#2%|)#if =CKڎ mu,^oZA7vL, ky  & MS{/r1ꇎI%--Ka1J&|uKɡ9g:۱/rmdYمj@!7|WDDcI3$m"eCfi e2k |&?ö~T ޠiT I!ٵ q8^;h]hr|֟s!oOC>͢,eA gt:-@`pli >`gf0~;H6GvWQbe ؇+/FV0xjÍsD#zZo*N;guwXSZ,|fbC.Pbmo!BwºLQ2O.]L\;N`: K󼼢fvrfFbHi[/-A]Đs@[Ip*11l~Xnt,$NBACt8q@SQN~'Dn|4j.+:ҍ_ˤ$j21XOZ\ 6j Dn CW{/spZ;q^ қQva MA.jA)1uwnMtۢ,?"&;<088YHZz\Ro?V3MG6SPo]\D <(7bx6V>ɚG`8.^v~W0S<ު0qULƭ ʖڒʵ$09Q9D.\ `E'**__Dst@{NUJn̒C5&Ћm18po>1f sw>OoT^~LZc9~"g6gr~1r@Kۑ|h|ڬݭ>jiqIO*:Nh'c J M *C;/>˧$N/uǙE %RE!ZEevt;cÆ J\^w3}R}ag{R/}qmwXY9ԐӟZ֦3Qg|l$ʋs+};++ɑx氞"`¬O-~]*5*^ЂMLEʰ7G3s!ac#%"{zj$( E2X/̂Fr0X,lU-И^Ɋۏ61a:/6DN3?ʅskҖ9ScǗ@4M9x?70?ʠc#I& 3 D*յxZOn#\.^Q: n:Ʋ$aL(|z^/M>\U5fW 12cH]~wቤ1mw]pf@|n{FY'm4IV1DK?{7S`PW*rz> +H7*)1Pt_}Zt8w>#$*]җhlpC~8. Gc^X)cp"NjR2D#E.ubU U =f)#/UG"&@`} kZio H5/=5qO[#gwbKsECL&_ 5Eg-bԫ0T7gnx)lOsʂ'IKc3-6d d|u<|8eGjh]F]k@,]L9ٙ^bdW'2HighFWNgSKؒV`O/$ _qyFu]>u=A-W鏙]=.n^r tfjpz) *&O1V6W(zUV:ϥ Mnʂ[>O3&G8Tn/GXgg} RA #r3 Zg _al=9kF=xEk̜f_MbJ-LBN2,(`ϪNg/V55D0n=rf\+d=Ku*gz52=ZF mEׄvke]L_yna4ˇjm%κꅆ/+usuQœ#^1B4?gQd-.8pJ: Ǩ+w=sh>qj̉$.nQ6›U#P$[VLF],A'puRJѡ7(uD=ttoOBa0H>6$˜8vǤVV {"x_>eۜ:(w|L>Et@s`}#gΣU%:YagZ"E!HTFەMX].FixDµp|f6g"?TپTaM Ś%+4, \$ W)zirN9=F&;л= :tW?%na@>彸QcWҗhhşRN*qj|A!\C_/CgHS}'7X= F6SU ze >){9]|"6fҴՅ0|&I^yǓiC7>ܗCC<ǭ: ^m= ω!.{itS߅KGC< ptvy1ww3Yn:q=K2>q!NO*dj@n,- ZGQUl3Xi`|jXjt}! Si7a^/:hޓ=Cg\oi eF416YM3~9ord 1g0#K"v4}B]R^7ELlp1vKQvZ}yy~S6GSN~N).+3H~؍ prHү Bb?spHI=ݮ -1LVaR6PTw[Vff#33c-ae U0 T4 \fAi n&Ko\8EmXZ'm3h(:zI::X`I:R[h1y>t[ eD欞zg -ާzVfIq,@ pRHYօ;Γ}j3%Y9mӺ@7SlK*}u{2eCbjxz[r`yT\h @0FᩢQ=/%P2Sc/pkϪhߺ%oZx=`9!`q^ywlm9Z,EyeZDғn(D͉xbߟ=:ys$P6 I$\!K]1VB1~nc-M1raHscy'|PVZAը}Z O&~S!UkJKē:OJ6}SA NQg2Xq %rA?/jSr;ـp8gSz}HA `)_y6t (.q^[]sC"3#"g`3H"NmdP!n~S|dyT}wEl4S?+as0@&Ȉ1.d]ED4TRY;hpd.]b EF#=[Vp7BOb)a6 Z:zX_=Ϸqܞ4^EseSr (Hƚ'1? K%kB71Y4P Xk = o9nfj2Ͱe_!CǸa,foc _⵼7 1}R׍lg'31[z-g|vcP?*KH1K~(tb"!<p7G[2fE9כcUpMd5UoH2VDgOGlM4=,ujSzhqIY$}HZIpPؤw:(߻%Œ:dX#PKl@\0`2м03MKiU|Bn cN ̵ OJ֖L-7Ռ)|.f-H`º(Df?am\V+wL 9l37@0` MytN&xnլs{1H^VΗMel7WonhO6+*M55Pi2:a*IxcD` ;ba 5b bϊ5פ[r\k}Q=1۽GkT_ ;[$Ώg^GoPs:)^%^:u3F'۵9\}Ic(4;ưxRݓ9:~P[I>=B) ۏ *7AY#d< E.. ;@) C'4nO[ݼ̟leviGMxM~%#3$X@to_crӀ ;ea;j ?h 6)];i^&&R|\G9#f,ReQ IgCJ0]0k=D,M=օa-RA9YluIXʑekB?qf;f&I;5K;pDpRId5ܿhˉMA${"'ψoD[@bqdXP" sFL"diic/ GgC} ֺ%G7aQQ 2xa2҈U]kE .j|kEБRk&NY_=8#"4Ջ7LVkVB+@O[!(X,Ca?<ك[=&З]4mn4K8g, RgYPSvyq[.<%[ޜg(?;g8fo6+PUaHf„vcmr^mcW+}ޞ]'bfO~^y"VXK S'D<4"6-] *%*kɕ4J)K/mEgq(&Qd\I"0-ͼ.pl|.*si,؇a 4؍'x )Ak% ;/ o82WHϱdfʍ4#Lnt .ͤ"z~~`^_kr)b\pB14AH١mWZǻsxL&rIH-q$1% #B[X[C"sGFaҔÕ3FB `%7o'lŞ$4ޫ5^&|gTg6uw0GsuȜh;VkٰNwB AU9haAHVn65%G6Rp,rK1\r?O]&cp鐄x2H+T~9%yN2_'PdvgC6`XnDe5)m\Ϸ#2y[m}ve4 W-Aԃ8~|yGF|6^99j$[L'ژ020+U4IRp t%W_c]?,EL̶ɡp)=mC]R3>NDeyZC~( _f:ڙ~}+ |6m~,m z7/t JŭϏ56wSL6=Nnqd3 ] @D_K?KzF&Z'<%TXށ'~q|=k0 \Q~Ws=s.!~Q ͧUhY%P3`%UXXeIW5^E8˜Q5Bʐf\|hmb8=ܻEmR[yѶjnwǶcw6ZM ګcI xUHKyȰiNWOܱbvih`C+K׵w3W*OCl"09/P5/ddt4@ʳ n O f[PE8xkR\%Wp0Bϋ|>%v0xlz̛J̭8&ya _9BqVZ\2ÛףAYѵZ߉8Rl-LiajUkOWr /n_fֶ.@ڡG@5+Fl0!;y6jKr .42,QȝoY*Lgz8. nU2-Xw}lk=m+6U.N3 ̄WiKP. y6x4\f^`yjH,|"VRIYVa2b EÈ*Dk!|jB5'(7p0AOa|./0km[sAqĄw,?fwSZJq! adCBϿF"'$K9MqÂ7oNN*7۬tg}8Y 7zdwzS CD}dnбA1(VgBuyNr hJU,] x@y#D8 TI$84?{6ցh7vN PYyC`-S{5}U>VZhWm3_x`{Fs;,/aApo&К9eK68C~O f_$_O [nHO(qdl鿫ihT4O#IRo/#W!q@ۆ2Ya]2И4xu6чL1OLЎ}?#  R(i0dеO)kl;d& Kun_B~=bеy{p]mӆɉ[^> V%CP3JI?$ͯHkSZ< Ңy~-\u{';R^Sǔ@hK %H!\%%_iq v=+&T d R#WhU|4G_ n!/ӗ/V AD%k@2sWi_ t^U<}\uդEw]~ P.ں{)^\QSDq6&s#?;2go'Il'<98a7HtS"NY$̶sHG?GKŁt&1sйT҄&y+d>ro%qSC p>z1Z&Z:L|v1ǒ9ȷMgqwRN=Kdxⓖa͸Ԛݤʯ޿`Ɲ$6kϧ6A`6tL9@I1) LHSSǞ[܂p Y#[r E x[6Yjv9n2sYȿ8l&>vڵ5ajD8&Wܗ,]0G04g WPE "-KG߱1d [Kzh%cbL(V8͉rٹ5)˫њ?";}P#oĝ xI%߳B\i;TEӃ9u٣-Q3 >ahΩ޴ C8Ѩx#ёѠ"8sefS[`\Hĸ!6I0_K .,zs{dlY rresT?:\3ă$F#"~~T BCƿQx/2~PfM`Ѹ=yR}6̕WldIR=-)tqkƓ8`jkiCɕy{/3]_g,[FJU VS/c|Gʵ#PUء"o4~.k׷^4 7 4dnV,tD=# <̦%Y-{|'f~S8(QT'pPխ)kf`L60,Anc`e,}TTYW~u<ݩ?/?$I6VډL{"S߬6 }q.]|[Wi5JG}kk4IOU LyZ8af7FWb\gL9 ʺJG%i3 =OOY ޾4xm"0~|/̜|1քl [aEy^?*{7anKQOvv-){ oGVɰBdxVi5VYo@R`+^N}%fpt"Ouc:*iڞO~bmb?] w'e8KyX:Vm/7ݛN$3<l=ɏ&Dwfz'7={?A$:UO/M-[y^2g[@\A1q@F ܣ:n;xRDڣĊ{tč!m;D- o9(b1TS; " s0w!Wv 2>=WFPJveMGM?n ? ٦ѮSmwm"6?̵lo "UnMlj oy*pv$_.[2ɦ'"6*QZ4AK!56oBM{7n}#eL4x*>*%XNzO26M`᳋C+1cɛkxgʄBo[iS+!sBr3^V'c1` l7;28*DO$f,$4/h"{WN]5HFWDi%t+%{p$4~;,Pcs^}PI Dܭʩ@iϰ= ES8݃\v=f<".,/eyA C5C2Fmn)pt oAN݋fF0[U%.Ċo鋢NGanxPlaz,2ظ4WEĦ_ Q"I2}r"W/Vh6 I朶cM}J(IJ?2(!dWxir2$[lx@:ũ8 j ].c@.T'6I,DPR0^4Y$ZkV͑ҸMd1 9Y@,DEbNY=CIqKoxpxQ/ 9J3A5pYLpVұuiΨt{Ls0M/O ہkNPמxNd| bv4䉛 F "+;w., ,vP4@"Rm.>,)2}v3rIII,p3;/tn2DsĊٟhN[YN1 -y+vyc7>S)y(?:Xg;`=dB/C]D^Xa%fC\UY|˦ Mx' ZnXgùR z O0r/8?][ז6/yn#0ӤS$~^]F8vg8^^D#  *"8{A?|)d?U}_{r* aYb:!Iav"o(>zٟ0P3 9H]hGfu@CmFY/V6l60](4upAr&pTxw]Rv,ymͷvWHgaF:iPv=l]{glMD<~xA^~l91͆4Zs : PHL1rvHh$,JWՔ_^㸓&wovy O6Ɍ0zKITAk C6WldN_J,pmoyy?_];xg#@ //պsf6ˠ?$\R!exQu$Hd3Nl\. M(6 ØgsD7o?B-8c '5Kފ5z8vz3:(;@VjA>==X}csÑd/فX3('Q 4&Ѽ=JL԰]L<)6dFU+`zu6m .k_B?+ (qv$0偦i` DXagS1s^ 8b*S>Lض,T|,wx-ސI6\i1^e/kh!cvO-incCVh|ʃW.ѼBaPږsåS"$#p;ڝ C]lov#IfK%! ꝩ uTRLmm]T>e9Hѿ0,Q0{Rۤi7fcGrCU|Hj``̦҃WK_0E=4<*הm2D|AtHAEMaܖ'ژ8]sVYU- Bg#%\jUqZh-s+>3FRɪ yW(ٻ& ^3&~1:Hh1ɒe3%9 ZB5Fh A#b\3:q#H9сAe{}@|`tfv̉+z TrmF8:d b䗿@m1p$1 l5d|cd_*>;!2! n!ŲDۀek7e}vø8%-io#i~7pvNT\s~58Wm8s^|V[IRBw6e#viQg`RVMY6؃zO zw~v>y?4.:Wʒ Gd.qEK]=V cu g~lC.!8VF8~ Dj{:L pWqm4FmdZyMgǐˢO8F.x"k`zu`*} ^hB9 ݎZia.jPa>qrx{t?py"&4"Yճ2ZYw$¿ M 5KW}ZIbٟ UT<˦<; "P7:1S)h#v;6/ zi@ͅy(<=%ۂ8kmE\ Zzf9|uÕ4X)EW% w[Dg'R,4nql3vkō%RKbiw f8XV@HgȚj><lTgZ)if>2%ȞPQ=/D{1<}›:S~ C{^,_99۷l9Ήwḭ%:Yڃ޳)Gd)-gQ 2}1<6=?/|wSGW )] & {+"9zܲ qeAֲ;6gl TZmB,fF },爈_ +%-#Ʊnx.ZV%4$o:o YHH69 eH )"s_Ү0ɭ'.bh?E"#TUw|lH ~p t0p $Dajuy^ِϠDx3qTܲm 2V%5f1Vt|:t?K|0=}bZ{ݑ LBoxAjZ{7l{Dr͵I:p"ȖU7̈́ڳ<ֺ5<-ZcV@Ճ@O*L~ϝ*I=iÖ122*[Zͻn>/ ~[?#5N*D븺ܶ1^ySwhIuPLF ֔3ޜ[m(y Pӻ5@+]Y#M)=ZrfBb3Ie)0 SP AeByn?JzoY5ԉZ^=Lڱ|<*qm p)6 ϭF(tV2Zd$4P`!Jo9%g(VuovmVK)nJǰ=44"4^~[*TMJ[ؖ~'!98Hu'FU'ւZ\ʗE o~dy/k;jq.}}ձECU=ɞ4P0}On3oOJFYGޞhJҠP}5Ȳ?{fU5RC|Ks|57xbAmjs%^[Rܐ" mL_xD9C}&uy6_J/ЄmT+WbR!p/2G;$vQ&|2v8cW;`Xc^C= D8 nd\h 0-`_D*JcN߰GxK߄0;G6xW=ߙx{6j6k#Ѱ~jzΊwI{]T2>!e,gJ(҃:X0+ګӹZ,03ѫXOIb$1 VLM?daHKrIr #pamM pd\e65ݒ`)ԆK.S(D'~L%뷟8X^c@=M!C[R9`BCAܴ!=ڽ"ڊl=*wyP p=nSN h*=8͕|[++ aw-:gbvF~cݔ)ڂ1 2|C#[ Do/ $7L %zQ@yCmCD+8N.CZI ;T a翮J0jFhYz 9?q,m_={5[WJUI,Ƌ?Ůl^?%_JT21  a#U'O(VsfA1v(׵&N(FAbq@>)J GgS.劆>f]bsoC l5ggj'=.8&yQyl-"$`> &29g ,Imr]IZ[/ī3?N:e@rp qO!u,K_5=74j˓klˮ>oܟV i+ [RVp24Yd0i~rtmLE;@iS_:.b/[|ũ?T;9Li{#%=h {4)yt_OLgʥqc:);qo0P 1g:;9mzK;dmlo87GK6H/5CI~J u}T@3?_GkUkU)MmLuR)sW{F#jњgoUE;8?b0v؋'"{B6-B# Mn6.yէ[] G/>텯D Ȗ'w!V#?6 9S#Ҋ^qv)`)~zeui:X.^ɨQ`k!rTǿ,Ọ~Tͣ*lKA&KhB.fIxWDrI(-PΚ)ѝŽ֛u:,NyJ^V-_P%S/o=P9.G<YXJ<]wOC&Q93' IM՘=ζnL"zͳ7/trw,xsHN ^VyBke/%?L(+ *5<T40c?!9݀5wt7vfbbu>̷P;TF{QՄ dF՛Z<<_P5tZ$u_cܮ .RùK+jt{x(9 u[N?Mp|D Ra6`X;pc5ƍr$;.fȷ^qUgLISHUŋ[NĶם'̽Nw/ 6w\q GT! 2(L5At/_4oM}a3 $L8%c$d QP% _u@ 4VVue\NeP"OBs|X0I^ d v#ZԺ>l>TD}ɇ<ͧίӵw9Nl҅R/nmxq1XIk *(-̰ʭgj]RnFzNwVIjxOqI =gMׇsh,^NAMU^2NHnRk~`{߳/I+_d}ǟSbТbV9J`z_PL羞!VOpqe4>ђ>J(1~ECS XZ1G~=עu:cvh| 55x}B{9;b=PQ!de~T(O[\@SI lmSeKZ+yèOz|Gm:^2j-#Qgߏ3X9\}Yr0z/I$xj b@jryL#0apݫBwJ1>1_n2]ƈ}m%S 0f:dzK7+.?M_-;b!*{Q4JD6ҁV'Xk X,ddGa{w3`q)BtۀJ}lūAs @eYkj_+ iLg俙Gˋǎ&Sa[a]EKF$uߟ4sۿтGn O6[So͖8&I˟1G+$scqٲE GiK.M` xif_?9M)˘֙&Y5HW;("T7(4vʀ98t#iMǠ^a8׆v yזxp+E w0ѫCzaκڕJV|is%G@,|:K?̪ 3^-M*)&VjY[#qɝ,{~f8_b;[I"{P-1U$@ GB4N~P^hӔcpˠ!L\ nP]"g9nC O [eyڣ?>UxՓXVrp!3 K|I?ϐv{+\UcWYp{/ GJ NfyI @zs4e&*;0k_pC2vr+maOqy=Z3_;~+z#e"z(ĕQ*w^u5ۓ09}eo+BXj}TaO;My'ØB!~W9C:ݛcUannWo-ݒ0mlHTGߘ[6 M^k9ɾstsT'eXT1Rk% flډ0':>1q'_ B~}@r5ّ~=sX?1`o҉Z+M U(DG=&ݨ!=eaOJ-/΅ƫxV$  Yc+a+N v;#9c#De4dWPjKPeBɅRf-3 G%ڥ27M 4#WE_Czy +HxIvc2*%a5~*C PcD5o}B%ILq"RSXFJԲ%ibNfTL1X9dt}z|;;X&UvYrqu%P•{o Ph;vŐ]d*(AnO7uW{AŔ(*@TE#Q8G|<XU~e~f 05Є{Oyer[̂me,p]2M# ~3>[2m qtGXZpJBsGq/ M7 G2<8$jaqj=\< &5 ϣ]E۽-*v0mVz2,qZRrҎK @ۛbzҡJ<$) PfU-$EtXܚ8GZ>•Vp'VA}ϔF!{5`~mLmnJZ 0M^]}>zx󛪠K4d.V#<kd2 _%J=# x8Qc/ (M $^i50nsδ+~(Tӟ.!af.Y2B8fY(2 [݇-SQ03>g,j/a߆薴T Hj^=ft祉z`ٓ {)dƔT39=BD:$I=kzꬰx ]6ӗ}|D<~ V$X17)-#4 iCJ\v!$.xdҌ9w,>nV3ya(D3A[Ki:b]SA;/|IBQh%Y~Nj1(| L*%μZvUکFAy¦-TV_x|Ļ\G75ϹjCS ~p. uu y[yt} ]x$PY23ƝjMZSh,/:ÒBWL~#$T-}m"ܶIޢjmahԋlz/"3%]r=xbF tm*cHk ikD@iJC1(A }jZ֋γ@PXb ڤ Q+R4R(dhn:4t4[2] #Is]:J9 SYJ,CY1c .)X.ՆEX[E/U&yůTZۤ-H&g&}P7tZ4F[/ ṇyr(J`?r8`& :dx gy/&C$yrЩk@hʠo~WX1b~<t0 CA~*ܷ㤍=&r_ [%N`MbFO#\˒EVhDZ5W_WQK  :v wB{;,x D2~f5-7]\sOɣY~7 $g*R` *Vg{A;NRSp"abP] VƥN`փW**R} Zi[5,+jlOEcGό}61G^5nQU Kѿ)&OCyY?Jx>= x3*-q17@#>dàпb,;4Dv#d$V\Ys /%tρe Ӎ猐prO1~eŏa9̄yov2Kۓ9X+z-:dVS^S4)1Tze1)3AǤSA#CUU`V] u8fj!{&1h 7ߔiyV63`/<-C`'V`KY$H/0PV]QÒYKX8Cະ2ʊ`"fv3so4kcDeɻ#ny¯: W!9jLYoΊ =Gc߈ts UZiЇ|rR:QoqnR?3uXpZz!P"r&PhP%3 lېyy )0U&Av [v UJ{Ԅ^M'cvr&aEh|*v#Sb)Ob&ڽ{%yWu 5iV"R z{rdy_wt#!+7h*tLUxH.5ۄ#(LdF~2ShGG^-| 1'-F_>m^6U(hi?!"8ur/hd̈́42-ܛx93}X&Y=ۀW|U[%UYM=oK}<.ug8As`&n]tFia_a=!7 >K 7G0T xdNjqn[=!ں$Ρ}/BMgKi:Ni"%4! x؞Nl&2IϢ^ElUY*I73W 7`.cL } (дM.cB+u 슳vNlcxL 01 4N)蓣Dz$BSlfc+/18%3ϞڻÎ6M[߽!0-@u' vd 8d ћ\_J #G2+$@T2ЀD;pyW+tHI.KCW4MTrIjlj Ow$Em0llh#]j[+Zb ІJZ Lj$ 2'013x)>ᓵFQ>><ljrc'7tX5h!T͂&re~IBKoFc@őY6@k͸˄tF}]lh6vʘv2ssBM j\_Vkbd6A0n2L(J;H^I| ;ؠ%SŘ7iDY;&NhҶZTʜ)9oz{*IƓT F{ x1h͸"c5 %͵:пv>Sa1w2 E] ] 8(M03B}sH-d=͏:I3|eSGy@%MƤѝ·w߀JqAa&N2;5\8\'_,O%iјSH1䏻2Va3Ob  gvmow{3ޕ >5i:hu|ҋZddϘ[ ?"Yo^66# 9@V?9q*z qJG,RxWİCR (>|%>X {406fsǚRlcl&1#]_+#N*>#M32x#˿8߯'%jsZiE(?7-t!ab!#| "潋f EF"B]__~$`p hMI$_8g)! lzF^7 YZ