policycoreutils-2.9-18.el8 >  A af U]N]DhC3qb@*;ŞY1coľX-\ HM95!kƌCS7X!>P\ p\>+mP܈3Tg gG83Yq v^(ACao />xYe6B'b6 1z7H2Eo*&CMeyvecE-XAnB)q B8er'b9ZK<7&2ub}\mA&$P#בq|S侠LSNf@(='$kƨ>*Z}͊zpF6?6d  ;PTpt{ (    P   /  1H37:N:t==h=@@h@t@(@8@9S: >?BGHPIX8YLZp[t\]^qbydefltu!pv$w04x2y5\I6666Cpolicycoreutils2.918.el8SELinux policy core utilitiesSecurity-enhanced Linux is a feature of the Linux® kernel and a number of utilities with enhanced security functionality designed to add mandatory access controls to Linux. The Security-enhanced Linux kernel contains new architectural components originally developed to improve the security of the Flask operating system. These architectural components provide general support for the enforcement of many kinds of mandatory access control policies, including those based on the concepts of Type Enforcement®, Role-based Access Control, and Multi-level Security. policycoreutils contains the policy core utilities that are required for basic operation of a SELinux system. These utilities include load_policy to load policies, setfiles to label filesystems, newrole to switch roles.appc64le-02.mbox.centos.org>CentOSCentOSGPLv2CentOS Buildsys Unspecifiedhttps://github.com/SELinuxProject/selinuxlinuxppc64le if [ $1 -eq 1 ] ; then # Initial installation systemctl --no-reload preset selinux-autorelabel-mark.service &>/dev/null || : fi if [ $1 -eq 0 ] ; then # Package removal, not upgrade systemctl --no-reload disable --now selinux-autorelabel-mark.service &>/dev/null || : fi$ #&&!%- ) FY8*E$f+>Gc5!,2)8( /+! $Q- 0$b/((.Q(U $@Z'!=,,C,%X=eG* .lq F <z < 88.b&AAAAAAAAAAAAA큤AA큤AA큤a蝣a蝩a蝩a蝩a蝩a蝩a蝭a蝭a蝭a蝭a蝭a蝭a蝭a蝭a蝭a蝭a蝭a蝭a蝭a蝭a蝭a蝭a蝭a蝭a蝭a蝭a蝭a蝭a蝭a蝭a蝭aaaaa蝧a蝩aa蝣a蝣a蝩a蝣a蝩a蝩a蝩a蝩a蝩a蝣a蝣a蝣a蝭\>a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝟a蝣a蝤a蝣a蝣a蝣a蝣a蝣a蝣a蝣a蝥a蝥a蝥a蝥a蝣a蝣a蝣a蝣a蝤a蝣a蝣a蝣a蝣a蝣a蝣a蝣a蝥a蝥a蝥a蝥a蝣a蝣a蝣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../../../../usr/sbin/setsebool../../../../usr/bin/semodule_package../../../../usr/sbin/setfiles../../../../usr/sbin/load_policy../../../../usr/bin/semodule_expand../../../../usr/sbin/sestatus../../../../usr/bin/semodule_unpackage../../../../usr/bin/secon../../../../usr/libexec/selinux/hll/pp../../../../usr/bin/semodule_link../../../../usr/sbin/semodule../../../../usr/sbin/restorecon_xattrsemodulesetfilesrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootpolicycoreutils-2.9-18.el8.src.rpm/sbin/fixfiles/sbin/restoreconconfig(policycoreutils)policycoreutilspolicycoreutils(ppc-64)@ @@@@@ @@@@ @@@    @/bin/bash/bin/sh/bin/sh/bin/shconfig(policycoreutils)coreutilsdiffutilsgawkgreplibaudit.so.1()(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.17)(64bit)libc.so.6(GLIBC_2.27)(64bit)libselinux-utilslibselinux.so.1()(64bit)libsemanage.so.1()(64bit)libsemanage.so.1(LIBSEMANAGE_1.0)(64bit)libsemanage.so.1(LIBSEMANAGE_1.1)(64bit)libsepollibsepol.so.1()(64bit)libsepol.so.1(LIBSEPOL_1.0)(64bit)libsepol.so.1(LIBSEPOL_1.1)(64bit)rpmrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)rtld(GNU_HASH)sedutil-linux2.9-18.el82.9-12.9-13.0.4-14.6.0-14.0-15.2-1filesysteminitscriptsselinux-policy-base39.663.13.1-1384.14.3aea@aC1`i@`Gc@`3`>`U`@^!]|@]@]ʞ]µ]o@]^]G@\@\@\\l@\[[%@[Ѱ@[[ā@[[Q@[W[P}@[2*[[[@ZlZZZ@ZZ Z@Zv@Z}@ZqZ`@Z:PZ1@ZfY@Y(@Y(@YV@Y@Y}@Y{'@YyX-XXf@XX@XBXXZnX@X43@WH@W9W@WgW@W~Wq@Wk@W3W'A@W#LWW@VV@V@VIV=@Vn@VKVI@VD@V@V9@VZVqUUUŬUL@U@U@U(U(U@U4@U4@UK@Uy@UUJ@U+TgTfTk4TZ@TZ@T!`S@SuS/SϣSSS{CSuSpShShS`SZN@SXS:@S4S2@S0@R@R@RRa@RR=RʚRƦ@RƦ@R1@R@R@RR@RRG@R@R RrF@RrF@Rj]@R^RW@RW@RNRL RIgRFR9R' R' R%@R @RC@R R6R6R@Q@QdQQp@Q*@Q@Q5Q@QLQLQֵ@Q4Q@Q@@Q@@Q@QKQKQ@Q@QyQyQ(@QQQ@QaQ@Q'@Q'@QQQ@Q@Qu&@QfQeT@QdQb@Q\QYvQT0QR@QR@QP<@QJ@QJ@QHS@QAQ=@Q8@Q7/Q5@Q4Q0@Q/FQ/FQ*Q*Q']Q']Q']Q& @Q& @Q$Q"QQQ@Q.Q@Q \QsPDPDP[P[PP@PrPPѬ@P @P @PPPP7@PPPN@PN@PP@P@P*P6@P6@P6@PPPM@P@P@P@Pd@P@PoPoPP{@P)P)P5@P@P~P~P}L@P}L@Puc@PtPr@Pp@Pmz@PaPU@PU@PQP"TPPOjOO0@O"O"OO9O Os@O@O~O8OOD@O@Oz@Oz@Ou@OtNOr@OiOX@OX@ON@OKp@OB5OM@M@MM2@MMMI@M@M@MzMzMwkMv@Mv@MtMoMgMRMJMJMIG@M9u@M6@M0:M%M$]@M@MM @MLLL[@L[@L@LΫLΫLʷ@Lq@L*@LA@LA@L@L@LL@L)@L{@L{@LuLs@LrbLe3Le3Lc@LZLZLZLZLYV@LT@LPLPLN@LMxLF@LELk@Lk@Lk@L0L @L@L@LGLGK^KuKuKuKKKFK @K޺KtK#@KKKKŮ@K\K"@K9@KK@K@K[KrK,K@KK@K@KK{@KzKs@Kl@Kie@KbKa|@Ka|@K`*KXAKUKO@KG@KG@KD{@K+nK*@K(K K?KK@K KK>J@JJ@J@Jݦ@JTJ`@JJս@J1@JęJęJH@J@Jv@J$J$J0@J0@J0@JG@JG@JJ^@JJu@J#J#JJ@J:J@J@JJJ@J@J Jyt@Jp9JlE@JS8JD@J'@J#JJJIIIIzI@IܑIIyI@IaI@II@IU@IIIIx_Iw@IuImIl@IcGIFFI?@I:i@I7@I5#@I3I1.IsI"@I-I9@I IP@IP@II@Ig@HrH~@Hf@Hf@HYH@He@HHH|@H@HoH)HH@H@HH@H@H@Ht@HsVHsVHkmHkmHj@HhH`H_@HVUHQHQHO@H-w@H-w@H(1@H(1@H!H!H@H@G@G@G߮G@GGGD@GOG[@G@G}G}G,@G,@G,@GGG@G@GZ@GGeGxGxGkGjY@GiGiGbp@G^{G]*@GR@GAzGAzGAzGAzG=@G=@G<4G2@G/G/G+@G)G(n@G@G@GJGGV@GV@GV@G@G@G'@G2G2G2FF@FIFFFFFwF&@F@F1FFޚ@FFF@F@FҼFF@FvFvFɂ@FuF@F@F;@FF@FFi@F@F@F{Fzh@Fo@Fo@Fm9@Fm9@FcFcF` @FNFLCF; @F7+F5@F/BF/BF-@F-@F(@F&@F&@F&@F&@F$F#e@F @FpF@FF*F*FAF F @F@F@E{@E@E@E@E@EE@E݅E݅EEEEK@EVEɿ@E@EJ@EJ@EJ@EE@E@Ex@EEEE=E@EEI@E%E@EEySEx@EvEp@Emv@Emv@Emv@El$El$EfEd;EaEaE]@E\RE\RE[@E[@E[@E[@EYEYES@EO#E*9E&E@E E~E~E~E@E D@E D@EEEOE[@E D@D@D D D@D@D@D@DDD@DГDГDB@DȪDD@D{D{DA@DX@D@D4D@DD@DDW@DDDD|3DvDtJDtJDr@DoDhm@Dhm@Dhm@DaD_2D]@DYDGwDC@D?D5D5D3@D*vD)%@DDDDD@DDDDj@Dj@D $@D/C@CC@CtC@CCCCEC@CC @Ch@Ch@Ch@Ch@C@C@C@C-C-C-C@CCCǖ@CáCáC @C @CCC,C8@CC@C@C@CC @CqCqC @CCC}@C+C@CC@CBC@C|pC{@Cx|@CtCqCqCp@Cp@CoAC^@C^@CWCTCTCP@COCNL@CLCJWCFc@CECC@C:C:C1K@C/C)b@C&@C%mCC@C@C@C C C @C&BTBBw@BۙB@B@BB]@B@B@BBB@BBr!B^[@B] BZfBZfBU BS@B9q@B6@B06B.@B-B$Y@B#B@B@BBp@BB@B*@B@B@B@B @B LB LB @BBX@BBAA)@A)@AA@AAAA@An@A3A3A3AҜ@AƾAA@AAx@Ax@Ak@A]FA]FAT @ARAPA@EA3A,@A,@A,@A+-A+-A)@A(A AA,AA@@ @@@@@7@@7@@@@@@@@@p@@@@@@@@@@5@@5@@@@@c@@n@n@z@@@@@b@@z@u>@mU@l@@h@h@h@h@d@@b@`&@Y@@Y@@Y@@X=@X=@X=@X=@X=@U@U@U@O@@M@M@Hk@=@=@=@;<@4@@,@@@@@@@R??@??D@?@?@?z?q@?a@?a@?2?@?2?@?2?@?/@><@Vit Mojzis - 2.9-18Petr Lautrbach - 2.9-17Vit Mojzis - 2.9-16Vit Mojzis - 2.9-15Vit Mojzis - 2.9-14Vit Mojzis - 2.9-13Petr Lautrbach - 2.9-12Vit Mojzis - 2.9-11Vit Mojzis - 2.9-10Vit Mojzis - 2.9-9Vit Mojzis - 2.9-8Petr Lautrbach - 2.9-7Petr Lautrbach - 2.9-6Vit Mojzis - 2.9-5Petr Lautrbach - 2.9-4Vit Mojzis - 2.9-3Petr Lautrbach - 2.9-2Petr Lautrbach - 2.9-1Petr Lautrbach - 2.8-16.1Petr Lautrbach - 2.8-15Petr Lautrbach - 2.8-14Petr Lautrbach - 2.8-13Petr Lautrbach - 2.8-12Petr Lautrbach - 2.8-11.1Petr Lautrbach - 2.8-10Petr Lautrbach - 2.8-9Petr Lautrbach - 2.8-8Petr Lautrbach - 2.8-7Petr Lautrbach - 2.8-6.1Petr Lautrbach - 2.8-5Petr Lautrbach - 2.8-4Petr Lautrbach - 2.8-3Petr Lautrbach - 2.8-2Petr Lautrbach - 2.8-1.1Petr Lautrbach - 2.7-19Petr Lautrbach - 2.7-18Petr Lautrbach - 2.7-17Petr Lautrbach - 2.7-16Petr Lautrbach - 2.7-15Petr Lautrbach - 2.7-14Petr Lautrbach - 2.7-13Miro Hrončok - 2.7-12Petr Lautrbach - 2.7-11Fedora Release Engineering - 2.7-10Petr Lautrbach - 2.7-9Igor Gnatenko - 2.7-8Petr Lautrbach - 2.7-7Petr Lautrbach - 2.7-6Petr Lautrbach - 2.7-5Petr Lautrbach - 2.7-4Zbigniew Jędrzejewski-Szmek - 2.7-3Zbigniew Jędrzejewski-Szmek - 2.7-2Petr Lautrbach - 2.7-1Fedora Release Engineering - 2.6-9Florian Weimer - 2.6-8Petr Lautrbach - 2.6-7Fedora Release Engineering - 2.6-6Petr Lautrbach - 2.6-5Petr Lautrbach - 2.6-4Petr Lautrbach - 2.6-3Petr Lautrbach - 2.6-2Petr Lautrbach - 2.6-1.1Igor Gnatenko - 2.5-22Fedora Release Engineering - 2.5-21Kevin Fenzi - 2.5-20Petr Lautrbach - 2.5-19Petr Lautrbach - 2.5-18Petr Lautrbach 2.5-17Petr Lautrbach 2.5-16Petr Lautrbach 2.5-15Richard W.M. Jones - 2.5-14Fedora Release Engineering - 2.5-13Petr Lautrbach - 2.5-12Petr Lautrbach - 2.5-11Petr Lautrbach - 2.5-10Petr Lautrbach - 2.5-9Petr Lautrbach - 2.5-8Petr Lautrbach - 2.5-7Petr Lautrbach - 2.5-6Petr Lautrbach - 2.5-5Petr Lautrbach - 2.5-4Petr Lautrbach - 2.5-3Petr Lautrbach 2.5-2Petr Lautrbach 2.5-1Fedora Release Engineering - 2.4-21Petr Lautrbach - 2.4-20Petr Lautrbach 2.4-19Petr Lautrbach 2.4-18Fedora Release Engineering - 2.4-17Petr Lautrbach 2.4-16Robert Kuska - 2.4-15Petr Lautrbach 2.4-14Petr Lautrbach 2.4-13Petr Lautrbach 2.4-12Petr Lautrbach 2.4-11Petr Lautrbach 2.4-10Petr Lautrbach 2.4-9Petr Lautrbach 2.4-8Petr Lautrbach 2.4-7Petr Lautrbach 2.4-6Petr Lautrbach 2.4-5Petr Lautrbach 2.4-4Petr Lautrbach 2.4-3Petr Lautrbach 2.4-2Petr Lautrbach 2.4-1.1Petr Lautrbach 2.4-0.7Petr Lautrbach 2.4-0.6Fedora Release Engineering - 2.3-18Petr Lautrbach 2.3-17Petr Lautrbach 2.4-0.4Petr Lautrbach 2.3-16Petr Lautrbach 2.3-15Dan Walsh - 2.3-14Miroslav Grepl - 2.3-13Miroslav Grepl - 2.3-12Miroslav Grepl - 2.3-11Fedora Release Engineering - 2.3-10Dan Walsh - 2.3-9Tom Callaway - 2.3-8Miroslav Grepl - 2.3-7Fedora Release Engineering - 2.3-6Kalev Lember - 2.3-5Miroslav Grepl - 2.3-4Dan Walsh - 2.3-3Miroslav Grepl - 2.3-2Dan Walsh - 2.3-1Miroslav Grepl - 2.2.5-15Dan Walsh - 2.2.5-14Miroslav Grepl - 2.2.5-13Miroslav Grepl - 2.2.5-12Dan Walsh - 2.2.5-11Miroslav Grepl - 2.2.5-10Dan Walsh - 2.2.5-9Dan Walsh - 2.2.5-8Dan Walsh - 2.2.5-7Dan Walsh - 2.2.5-6Dan Walsh - 2.2.5-5Dan Walsh - 2.2.5-4Dan Walsh - 2.2.5-3Dan Walsh - 2.2.5-2Dan Walsh - 2.2.5-1Dan Walsh - 2.2.4-8Dan Walsh - 2.2.4-7Dan Walsh - 2.2.4-6Dan Walsh - 2.2.4-5Dan Walsh - 2.2.4-4Dan Walsh - 2.2.4-3Dan Walsh - 2.2.4-2Dan Walsh - 2.2.4-1Dan Walsh - 2.2.3-1Dan Walsh - 2.2.2-2Dan Walsh - 2.2.2-1Dan Walsh - 2.2-2Dan Walsh - 2.2-1Dan Walsh - 2.1.14-89Dan Walsh - 2.1.14-88Dan Walsh - 2.1.14-87Dan Walsh - 2.1.14-86Dan Walsh - 2.1.14-85Dan Walsh - 2.1.14-84Dan Walsh - 2.1.14-83Dan Walsh - 2.1.14-82Dan Walsh - 2.1.14-81Dan Walsh - 2.1.14-80Dan Walsh - 2.1.14-79Dan Walsh - 2.1.14-78Dan Walsh - 2.1.14-77Dan Walsh - 2.1.14-76Dan Walsh - 2.1.14-75Dan Walsh - 2.1.14-74Dan Walsh - 2.1.14-73Dan Walsh - 2.1.14-72Dan Walsh - 2.1.14-71Dan Walsh - 2.1.14-70Dan Walsh - 2.1.14-69Dan Walsh - 2.1.14-68Dan Walsh - 2.1.14-67Dan Walsh - 2.1.14-66Dan Walsh - 2.1.14-65Dan Walsh - 2.1.14-64Dan Walsh - 2.1.14-63Dan Walsh - 2.1.14-62Dan Walsh - 2.1.14-61Dan Walsh - 2.1.14-60Dan Walsh - 2.1.14-59Dan Walsh - 2.1.14-58Dan Walsh - 2.1.14-57Dan Walsh - 2.1.14-56Dan Walsh - 2.1.14-55Dan Walsh - 2.1.14-54Dan Walsh - 2.1.14-53Dan Walsh - 2.1.14-52Dan Walsh - 2.1.14-51Dan Walsh - 2.1.14-50Dan Walsh - 2.1.14-49Dan Walsh - 2.1.14-48Dan Walsh - 2.1.14-47Dan Walsh - 2.1.14-46Dan Walsh - 2.1.14-45Dan Walsh - 2.1.14-44Dan Walsh - 2.1.14-43Dan Walsh - 2.1.14-42Dan Walsh - 2.1.14-41Dan Walsh - 2.1.14-40Dan Walsh - 2.1.14-39Dan Walsh - 2.1.14-38Dan Walsh - 2.1.14-37Dan Walsh - 2.1.14-36Dan Walsh - 2.1.14-35Dan Walsh - 2.1.14-34Dan Walsh - 2.1.14-33Dan Walsh - 2.1.14-32Dan Walsh - 2.1.14-31Dan Walsh - 2.1.14-30Dan Walsh - 2.1.14-28Dan Walsh - 2.1.14-27Dan Walsh - 2.1.14-26Dan Walsh - 2.1.14-25Dan Walsh - 2.1.14-24Dan Walsh - 2.1.14-23Dan Walsh - 2.1.14-22Dan Walsh - 2.1.14-21Dan Walsh - 2.1.14-20Dan Walsh - 2.1.14-19Dan Walsh - 2.1.14-18Dan Walsh - 2.1.14-17Dan Walsh - 2.1.14-16Dan Walsh - 2.1.14-15Dan Walsh - 2.1.14-14Dan Walsh - 2.1.14-13Rahul Sundaram - 2.1.14-13Dan Walsh - 2.1.14-12Dan Walsh - 2.1.14-11Dan Walsh - 2.1.14-10Dan Walsh - 2.1.14-9Dan Walsh - 2.1.14-8Dan Walsh - 2.1.14-7Dan Walsh - 2.1.14-6Dan Walsh - 2.1.14-5Dan Walsh - 2.1.14-4Dan Walsh - 2.1.14-3Dan Walsh - 2.1.14-2Dan Walsh - 2.1.14-1Dan Walsh - 2.1.12-58Dan Walsh - 2.1.12-57Dan Walsh - 2.1.12-56Dan Walsh - 2.1.12-55Dan Walsh - 2.1.12-54Dan Walsh - 2.1.12-53Dan Walsh - 2.1.12-52Dan Walsh - 2.1.12-51Dan Walsh - 2.1.12-50Dan Walsh - 2.1.12-49Dan Walsh - 2.1.12-48Dan Walsh - 2.1.12-47Dan Walsh - 2.1.12-46Dan Walsh - 2.1.12-45Dan Walsh - 2.1.12-44Dan Walsh - 2.1.12-43Dan Walsh - 2.1.12-42Dan Walsh - 2.1.12-41Dan Walsh - 2.1.12-40Dan Walsh - 2.1.12-39Dan Walsh - 2.1.12-38Dan Walsh - 2.1.12-37Dan Walsh - 2.1.12-36Dan Walsh - 2.1.12-35Dan Walsh - 2.1.12-34Dan Walsh - 2.1.12-33Dan Walsh - 2.1.12-32Dan Walsh - 2.1.12-31Dan Walsh - 2.1.12-30Dan Walsh - 2.1.12-29Dan Walsh - 2.1.12-27Dan Walsh - 2.1.12-26Dan Walsh - 2.1.12-25Dan Walsh - 2.1.12-24Dan Walsh - 2.1.12-23Dan Walsh - 2.1.12-22Dan Walsh - 2.1.12-21Dan Walsh - 2.1.12-20Dan Walsh - 2.1.12-19Dan Walsh - 2.1.12-18Dan Walsh - 2.1.12-17Dan Walsh - 2.1.12-16Dan Walsh - 2.1.12-15Dan Walsh - 2.1.12-14Dan Walsh - 2.1.12-13Dan Walsh - 2.1.12-12Dan Walsh - 2.1.12-11Dan Walsh - 2.1.12-10Dan Walsh - 2.1.12-9Dan Walsh - 2.1.12-8Dan Walsh - 2.1.12-7Dan Walsh - 2.1.12-6Dan Walsh - 2.1.12-5Dan Walsh - 2.1.12-4Dan Walsh - 2.1.12-3Dan Walsh - 2.1.12-2Dan Walsh - 2.1.12-1Dan Walsh - 2.1.11-6Dan Walsh - 2.1.11-5Dan Walsh - 2.1.11-4Dan Walsh - 2.1.11-3Dan Walsh - 2.1.11-2Dan Walsh - 2.1.11-1Dan Walsh - 2.1.11-18Dan Walsh - 2.1.11-17Dan Walsh - 2.1.11-16Dan Walsh - 2.1.11-15Dan Walsh - 2.1.11-12Dan Walsh - 2.1.11-11Dan Walsh - 2.1.11-10Dan Walsh - 2.1.11-9Dan Walsh - 2.1.11-8Dan Walsh - 2.1.11-7Dan Walsh - 2.1.11-6Dan Walsh - 2.1.11-5Dan Walsh - 2.1.11-4Dan Walsh - 2.1.11-3Dan Walsh - 2.1.11-2Dan Walsh - 2.1.11-1Dan Walsh - 2.1.10-30Dan Walsh - 2.1.10-29Dan Walsh - 2.1.10-28Dan Walsh - 2.1.10-27Dan Walsh - 2.1.10-26Dan Walsh - 2.1.10-25Dan Walsh - 2.1.10-24Dan Walsh - 2.1.10-23Dan Walsh - 2.1.10-22Dan Walsh - 2.1.10-21Dan Walsh - 2.1.10-20Dan Walsh - 2.1.10-19Dan Walsh - 2.1.10-18Dan Walsh - 2.1.10-17Harald Hoyer 2.1.10-16Harald Hoyer 2.1.10-15Harald Hoyer 2.1.10-14Harald Hoyer 2.1.10-13Harald Hoyer 2.1.10-12Dan Walsh - 2.1.10-11Dan Walsh - 2.1.10-10Dan Walsh - 2.1.10-9Dan Walsh - 2.1.10-8Dan Walsh - 2.1.10-7Dan Walsh - 2.1.10-5Dan Walsh - 2.1.10-4Dan Walsh - 2.1.10-3Dan Walsh - 2.1.10-2Dan Walsh - 2.1.10-1Dan Walsh - 2.1.9-3Dan Walsh - 2.1.9-2Dan Walsh - 2.1.9-1Dan Walsh - 2.1.8-8Dan Walsh - 2.1.8-7Dan Walsh - 2.1.8-6Dan Walsh - 2.1.8-5Dan Walsh - 2.1.8-4Dan Walsh - 2.1.8-3Dan Walsh - 2.1.8-2Dan Walsh - 2.1.8-1Dan Walsh - 2.1.7-6Dan Walsh - 2.1.7-5Dan Walsh - 2.1.7-4Dan Walsh - 2.1.7-3Dan Walsh - 2.1.7-2Dan Walsh - 2.1.7-1Dan Walsh - 2.1.6-3Dan Walsh - 2.1.6-2Dan Walsh - 2.1.6-1Dan Walsh - 2.1.5-6Dan Walsh - 2.1.5-5Dan Walsh - 2.1.5-4Dan Walsh - 2.1.5-3Dan Walsh - 2.1.5-2Dan Walsh - 2.1.5-1Dan Walsh - 2.1.4-2Dan Walsh - 2.1.4-1Dan Walsh 2.0.86-20Dan Walsh 2.0.86-18Dan Walsh 2.0.86-17Dan Walsh 2.0.86-16Jóhann B. Guðmundsson - 2.0.86-15Dan Walsh 2.0.86-14Dan Walsh 2.0.86-13Dan Walsh 2.0.86-12Dan Walsh 2.0.86-11Dan Walsh 2.0.86-10Dan Walsh 2.0.86-9Dan Walsh 2.0.86-8Dan Walsh 2.0.86-7Dan Walsh 2.0.86-6Dan Walsh 2.0.86-5Dan Walsh 2.0.86-4Dan Walsh 2.0.86-2Dan Walsh 2.0.86-1Dan Walsh 2.0.85-30Dan Walsh 2.0.85-29Dan Walsh 2.0.85-28Dan Walsh 2.0.85-27Dan Walsh 2.0.85-26Dan Walsh 2.0.85-25Dan Walsh 2.0.85-24Dan Walsh 2.0.85-23Dan Walsh 2.0.85-22Dan Walsh 2.0.85-21Dan Walsh 2.0.85-20Dan Walsh 2.0.85-19Dan Walsh 2.0.85-18Dan Walsh 2.0.85-17Dan Walsh 2.0.85-16Dan Walsh 2.0.85-15Dan Walsh 2.0.85-13Fedora Release Engineering - 2.0.85-12Dan Walsh 2.0.85-11Dan Walsh 2.0.85-10Dan Walsh 2.0.85-9Dan Walsh 2.0.85-8Dan Walsh 2.0.85-7Dan Walsh 2.0.85-6Dan Walsh 2.0.85-4Dan Walsh 2.0.85-3Dan Walsh 2.0.85-2Dan Walsh 2.0.85-1Dan Walsh 2.0.84-5Dan Walsh 2.0.84-4Dan Walsh 2.0.84-3Dan Walsh 2.0.84-2Dan Walsh 2.0.84-1Dan Walsh 2.0.83-37Dan Walsh 2.0.83-36Dan Walsh 2.0.83-35Dan Walsh 2.0.83-34Dan Walsh 2.0.83-33Dan Walsh 2.0.83-32jkeating - 2.0.83-31Dan Walsh 2.0.83-30Dan Walsh 2.0.83-29Dan Walsh 2.0.83-28Dan Walsh 2.0.83-27Dan Walsh 2.0.83-26Dan Walsh 2.0.83-25Dan Walsh 2.0.83-24Dan Walsh 2.0.83-23Dan Walsh 2.0.83-22Dan Walsh 2.0.83-21Dan Walsh 2.0.83-20Dan Walsh 2.0.83-19Dan Walsh 2.0.83-18Dan Walsh 2.0.83-17Dan Walsh 2.0.83-16Dan Walsh 2.0.83-15Dan Walsh 2.0.83-14Dan Walsh 2.0.83-13Dan Walsh 2.0.83-12Dan Walsh 2.0.83-11David Malcolm - 2.0.83-10Dan Walsh 2.0.83-9Dan Walsh 2.0.83-8Dan Walsh 2.0.83-7Dan Walsh 2.0.83-6David Malcolm - 2.0.83-5Dan Walsh 2.0.83-4Dan Walsh 2.0.83-3Dan Walsh 2.0.83-1Dan Walsh 2.0.82-31Dan Walsh 2.0.82-30Dan Walsh 2.0.82-29Dan Walsh 2.0.82-28Dan Walsh 2.0.82-27Dan Walsh 2.0.82-26Dan Walsh 2.0.82-25Dan Walsh 2.0.82-24Dan Walsh 2.0.82-23Dan Walsh 2.0.82-22Dan Walsh 2.0.82-21Dan Walsh 2.0.82-20Dan Walsh 2.0.82-18Dan Walsh 2.0.82-17Dan Walsh 2.0.82-15Dan Walsh 2.0.82-14Dan Walsh 2.0.82-13Dan Walsh 2.0.82-11Dan Walsh 2.0.82-10Dan Walsh 2.0.82-8Dan Walsh 2.0.82-7Dan Walsh 2.0.82-6Dan Walsh 2.0.82-5Dan Walsh 2.0.82-4Dan Walsh 2.0.82-3Dan Walsh 2.0.82-2Dan Walsh 2.0.82-1Dan Walsh 2.0.81-4Dan Walsh 2.0.81-3Dan Walsh 2.0.81-2Dan Walsh 2.0.81-1Dan Walsh 2.0.80-2Dan Walsh 2.0.80-1Dan Walsh 2.0.79-5Dan Walsh 2.0.79-4Dan Walsh 2.0.79-3Dan Walsh 2.0.79-2Dan Walsh 2.0.79-1Dan Walsh 2.0.78-21Dan Walsh 2.0.78-20Dan Walsh 2.0.78-19Dan Walsh 2.0.78-17Dan Walsh 2.0.78-16Dan Walsh 2.0.78-15Dan Walsh 2.0.78-14Dan Walsh 2.0.78-13Dan Walsh 2.0.78-12Dan Walsh 2.0.78-11Dan Walsh 2.0.78-10Dan Walsh 2.0.78-9Dan Walsh 2.0.78-8Dan Walsh 2.0.78-7Dan Walsh 2.0.78-6Dan Walsh 2.0.78-5Dan Walsh 2.0.78-4Dan Walsh 2.0.78-3Dan Walsh 2.0.78-2Dan Walsh 2.0.78-1Dan Walsh 2.0.77-1Dan Walsh 2.0.76-1Dan Walsh 2.0.75-3Dan Walsh 2.0.75-2Dan Walsh 2.0.75-1Dan Walsh 2.0.74-15Dan Walsh 2.0.74-14Dan Walsh 2.0.74-13Dan Walsh 2.0.74-12Dan Walsh 2.0.74-11Dan Walsh 2.0.74-10Dan Walsh 2.0.74-9Dan Walsh 2.0.74-8Dan Walsh 2.0.74-7Dan Walsh 2.0.74-6Dan Walsh 2.0.74-5Dan Walsh 2.0.74-4Dan Walsh 2.0.74-3Dan Walsh 2.0.74-2Dan Walsh 2.0.74-1Dan Walsh 2.0.73-5Dan Walsh 2.0.73-4Dan Walsh 2.0.73-3Dan Walsh 2.0.73-2Dan Walsh 2.0.73-1Dan Walsh 2.0.71-15Bill Nottingham 2.0.71-15Dan Walsh 2.0.71-14Tomas Mraz - 2.0.71-13Dan Walsh 2.0.71-12Dan Walsh 2.0.71-11Dan Walsh 2.0.71-10Ville Skyttä - 2.0.71-9Dan Walsh 2.0.71-7Dan Walsh 2.0.71-6Dan Walsh 2.0.71-5Dan Walsh 2.0.71-4Dan Walsh 2.0.71-3Dan Walsh 2.0.71-2Dan Walsh 2.0.71-1Dan Walsh 2.0.70-2Dan Walsh 2.0.70-1Dan Walsh 2.0.68-1Fedora Release Engineering - 2.0.64-3Tom "spot" Callaway 2.0.64-2Dan Walsh 2.0.64-1Dan Walsh 2.0.63-5Dan Walsh 2.0.63-4Dan Walsh 2.0.63-3Dan Walsh 2.0.63-2Dan Walsh 2.0.63-1Dan Walsh 2.0.62-14Dan Walsh 2.0.62-13Dan Walsh 2.0.62-12Dan Walsh 2.0.62-10Dan Walsh 2.0.62-9Dan Walsh 2.0.62-8Dan Walsh 2.0.62-7Dan Walsh 2.0.62-6Dan Walsh 2.0.62-5Dan Walsh 2.0.62-4Fedora Release Engineering - 2.0.62-3Dan Walsh 2.0.62-2Dan Walsh 2.0.62-1Dan Walsh 2.0.61-10Dan Walsh 2.0.61-9Dan Walsh 2.0.61-8Dan Walsh 2.0.61-7Dan Walsh 2.0.61-6Dan Walsh 2.0.61-4Dan Walsh 2.0.61-3Dan Walsh 2.0.61-2Dan Walsh 2.0.61-1Dan Walsh 2.0.60-7Dan Walsh 2.0.60-6Dan Walsh 2.0.60-5Dan Walsh 2.0.60-4Ignacio Vazquez-Abrams - 2.0.60-3Dan Walsh 2.0.60-2Dan Walsh 2.0.60-1Ignacio Vazquez-Abrams - 2.0.59-2Dan Walsh 2.0.59-1Dan Walsh 2.0.58-1Dan Walsh 2.0.57-12Jesse Keating - 2.0.57-11Dan Walsh 2.0.57-10Dan Walsh 2.0.57-9Dan Walsh 2.0.57-8Dan Walsh 2.0.57-7Dan Walsh 2.0.57-6Dan Walsh 2.0.57-5Dan Walsh 2.0.57-4Dan Walsh 2.0.57-3Dan Walsh 2.0.57-2Dan Walsh 2.0.57-1Dan Walsh 2.0.56-1Dan Walsh 2.0.55-8Dan Walsh 2.0.55-7Dan Walsh 2.0.55-5Dan Walsh 2.0.55-4Dan Walsh 2.0.55-2Dan Walsh 2.0.55-1Dan Walsh 2.0.54-7Dan Walsh 2.0.54-6Dan Walsh 2.0.54-5Dan Walsh 2.0.54-2Dan Walsh 2.0.54-1Dan Walsh 2.0.53-3Dan Walsh 2.0.53-2Dan Walsh 2.0.53-1Dan Walsh 2.0.52-6Dan Walsh 2.0.52-5Dan Walsh 2.0.52-4Dan Walsh 2.0.52-3Dan Walsh 2.0.52-2Dan Walsh 2.0.52-1Dan Walsh 2.0.50-2Dan Walsh 2.0.50-1Dan Walsh 2.0.49-10Dan Walsh 2.0.49-8Dan Walsh 2.0.49-7Dan Walsh 2.0.49-6Dan Walsh 2.0.49-5Dan Walsh 2.0.49-4Dan Walsh 2.0.49-3Dan Walsh 2.0.49-2Dan Walsh 2.0.49-1Dan Walsh 2.0.47-3Dan Walsh 2.0.47-2Dan Walsh 2.0.47-1Matthias Clasen - 2.0.46-5Matthias Clasen - 2.0.46-4Dan Walsh 2.0.46-3Dan Walsh 2.0.46-2Dan Walsh 2.0.46-1Dan Walsh 2.0.44-1Dan Walsh 2.0.43-2Dan Walsh 2.0.43-1Dan Walsh 2.0.42-3Dan Walsh 2.0.42-2Dan Walsh 2.0.42-1Dan Walsh 2.0.41-1Dan Walsh 2.0.39-1Dan Walsh 2.0.38-1Dan Walsh 2.0.37-1Dan Walsh 2.0.36-2Dan Walsh 2.0.36-1Dan Walsh 2.0.35-5Dan Walsh 2.0.35-4Dan Walsh 2.0.35-3Dan Walsh 2.0.35-2Dan Walsh 2.0.35-1Dan Walsh 2.0.34-8Dan Walsh 2.0.34-7Dan Walsh 2.0.34-5Dan Walsh 2.0.34-4Dan Walsh 2.0.34-3Dan Walsh 2.0.34-2Dan Walsh 2.0.34-1Dan Walsh 2.0.33-4Dan Walsh 2.0.33-3Dan Walsh 2.0.33-2Dan Walsh 2.0.33-1Dan Walsh 2.0.32-2Dan Walsh 2.0.32-1Dan Walsh 2.0.31-20Dan Walsh 2.0.31-19Dan Walsh 2.0.31-18Dan Walsh 2.0.31-17Dan Walsh 2.0.31-16Dan Walsh 2.0.31-15Dan Walsh 2.0.31-14Dan Walsh 2.0.31-13Dan Walsh 2.0.31-12Dan Walsh 2.0.31-11Dan Walsh 2.0.31-10Dan Walsh 2.0.31-9Dan Walsh 2.0.31-8Dan Walsh 2.0.31-7Dan Walsh 2.0.31-6Dan Walsh 2.0.31-5Dan Walsh 2.0.31-4Dan Walsh 2.0.31-3Dan Walsh 2.0.31-1Dan Walsh 2.0.29-2Dan Walsh 2.0.29-1Dan Walsh 2.0.28-1Dan Walsh 2.0.27-7Dan Walsh 2.0.27-6Dan Walsh 2.0.27-5Dan Walsh 2.0.27-4Dan Walsh 2.0.27-3Dan Walsh 2.0.27-1Dan Walsh 2.0.26-3Dan Walsh 2.0.26-2Dan Walsh 2.0.26-1Dan Walsh 2.0.25-15Dan Walsh 2.0.25-14Dan Walsh 2.0.25-13Dan Walsh 2.0.25-12Dan Walsh 2.0.25-11Dan Walsh 2.0.25-10Dan Walsh 2.0.25-9Dan Walsh 2.0.25-8Dan Walsh 2.0.25-7Dan Walsh 2.0.25-6Dan Walsh 2.0.25-5Dan Walsh 2.0.25-4Dan Walsh 2.0.25-3Dan Walsh 2.0.25-2Dan Walsh 2.0.25-1Dan Walsh 2.0.23-2Dan Walsh 2.0.23-1Dan Walsh 2.0.22-13Dan Walsh 2.0.22-11Dan Walsh 2.0.22-10Jeremy Katz - 2.0.22-9Dan Walsh 2.0.22-8Dan Walsh 2.0.22-7Dan Walsh 2.0.22-6Dan Walsh 2.0.22-5Dan Walsh 2.0.22-4Dan Walsh 2.0.22-3Dan Walsh 2.0.22-2Dan Walsh 2.0.22-1Dan Walsh 2.0.21-2Dan Walsh 2.0.21-1Dan Walsh 2.0.20-1Dan Walsh 2.0.19-5Dan Walsh 2.0.19-4Dan Walsh 2.0.19-3Dan Walsh 2.0.19-2Dan Walsh 2.0.19-1Dan Walsh 2.0.16-2Dan Walsh 2.0.16-1Dan Walsh 2.0.15-1Dan Walsh 2.0.14-2Dan Walsh 2.0.14-1Dan Walsh 2.0.13-1Dan Walsh 2.0.10-2Dan Walsh 2.0.10-1Dan Walsh 2.0.9-10Dan Walsh 2.0.9-9Dan Walsh 2.0.9-8Dan Walsh 2.0.9-7Dan Walsh 2.0.9-6Dan Walsh 2.0.9-5Dan Walsh 2.0.9-4Dan Walsh 2.0.9-3Dan Walsh 2.0.9-2Dan Walsh 2.0.9-1Dan Walsh 2.0.8-1Dan Walsh 2.0.7-11Dan Walsh 2.0.7-10Dan Walsh 2.0.7-9Dan Walsh 2.0.7-8Dan Walsh 2.0.7-7Dan Walsh 2.0.7-6Dan Walsh 2.0.7-5Dan Walsh 2.0.7-4Dan Walsh 2.0.7-3Dan Walsh 2.0.7-2Dan Walsh 2.0.7-1Dan Walsh 2.0.6-3Dan Walsh 2.0.6-2Dan Walsh 2.0.6-1Dan Walsh 2.0.3-2Dan Walsh 2.0.3-1Dan Walsh 2.0.2-3Dan Walsh 2.0.2-2Dan Walsh 2.0.2-1Dan Walsh 2.0.1-2Dan Walsh 2.0.1-1Dan Walsh 2.0.0-1Dan Walsh 1.34.1-4Dan Walsh 1.34.1-3Dan Walsh 1.34.1-2Dan Walsh 1.34.1-1Dan Walsh 1.33.15-1Dan Walsh 1.33.14-1Dan Walsh 1.33.12-3Dan Walsh 1.33.12-2Dan Walsh 1.33.12-1Dan Walsh 1.33.11-1Dan Walsh 1.33.10-1Dan Walsh 1.33.8-2Dan Walsh 1.33.8-1Dan Walsh 1.33.7-1Dan Walsh 1.33.6-9Dan Walsh 1.33.6-8Dan Walsh 1.33.6-7Dan Walsh 1.33.6-6Dan Walsh 1.33.6-5Jeremy Katz - 1.33.6-4Dan Walsh 1.33.6-3Dan Walsh 1.33.6-2Dan Walsh 1.33.6-1Dan Walsh 1.33.5-4Dan Walsh 1.33.5-3Dan Walsh 1.33.5-2Dan Walsh 1.33.5-1Dan Walsh 1.33.4-2Dan Walsh 1.33.4-1Dan Walsh 1.33.2-2Dan Walsh 1.33.2-1Dan Walsh 1.33.1-9Dan Walsh 1.33.1-8Dan Walsh 1.33.1-7Dan Walsh 1.33.1-6Dan Walsh 1.33.1-5Dan Walsh 1.33.1-4Dan Walsh 1.33.1-3Dan Walsh 1.33.1-2Dan Walsh 1.33.1-1Dan Walsh 1.32-3Dan Walsh 1.32-2Dan Walsh 1.32-1Dan Walsh 1.30.30-2Dan Walsh 1.30.30-1Dan Walsh 1.30.29-6Dan Walsh 1.30.29-5Dan Walsh 1.30.29-4Dan Walsh 1.30.29-3Dan Walsh 1.30.29-2Dan Walsh 1.30.29-1Dan Walsh 1.30.28-9Dan Walsh 1.30.28-8Dan Walsh 1.30.28-7Dan Walsh 1.30.28-6Dan Walsh 1.30.28-5Dan Walsh 1.30.28-4Dan Walsh 1.30.28-3Dan Walsh 1.30.28-2Dan Walsh 1.30.28-1Dan Walsh 1.30.27-5Dan Walsh 1.30.27-4Dan Walsh 1.30.27-3Dan Walsh 1.30.27-2Dan Walsh 1.30.27-1Dan Walsh 1.30.26-1Dan Walsh 1.30.25-1Dan Walsh 1.30.22-3Dan Walsh 1.30.22-2Dan Walsh 1.30.22-1Dan Walsh 1.30.17-7Dan Walsh 1.30.17-6Dan Walsh 1.30.17-5Dan Walsh 1.30.17-4Dan Walsh 1.30.17-3Dan Walsh 1.30.17-2Dan Walsh 1.30.17-1Dan Walsh 1.30.14-5Dan Walsh 1.30.14-4Dan Walsh 1.30.14-3Dan Walsh 1.30.14-2Dan Walsh 1.30.14-1James Antill 1.30.12-5Dan Walsh 1.30.12-4Dan Walsh 1.30.12-3Dan Walsh 1.30.12-2Dan Walsh 1.30.12-1Dan Walsh 1.30.11-1Dan Walsh 1.30.10-4James Antill 1.30.10-3James Antill 1.30.10-2Dan Walsh 1.30.10-1Dan Walsh 1.30.9-4James Antill 1.30.9-3James Antill 1.30.9-2Dan Walsh 1.30.9-1Dan Walsh 1.30.8-2Dan Walsh 1.30.8-1Dan Walsh 1.30.6-5Dan Walsh 1.30.6-4Dan Walsh 1.30.6-3Dan Walsh 1.30.6-2Dan Walsh 1.30.6-1Karsten Hopp 1.30.4-4Karsten Hopp 1.30.4-3Dan Walsh 1.30.4-2Dan Walsh 1.30.4-1Dan Walsh 1.30.1-4Dan Walsh 1.30.1-3Dan Walsh 1.30.1-2Dan Walsh 1.30.1-1Dan Walsh 1.30-5Dan Walsh 1.30-4Dan Walsh 1.30-3Dan Walsh 1.30-2Dan Walsh 1.30-1Dan Walsh 1.29.27-1Dan Walsh 1.29.26-6Dan Walsh 1.29.26-5Dan Walsh 1.29.26-4Dan Walsh 1.29.26-3Dan Walsh 1.29.26-2Dan Walsh 1.29.26-1Dan Walsh 1.29.23-1Jesse Keating - 1.29.20-2.1Dan Walsh 1.29.20-2Dan Walsh 1.29.20-1Jesse Keating - 1.29.18-2.1Dan Walsh 1.29.18-2Dan Walsh 1.29.18-1Dan Walsh 1.29.17-1Dan Walsh 1.29.15-1Dan Walsh 1.29.12-1Dan Walsh 1.29.11-3Dan Walsh 1.29.11-2Dan Walsh 1.29.11-1Dan Walsh 1.29.9-2Dan Walsh 1.29.9-1Dan Walsh 1.29.8-4Dan Walsh 1.29.8-3Dan Walsh 1.29.8-2Dan Walsh 1.29.8-1Dan Walsh 1.29.7-4Dan Walsh 1.29.7-3Dan Walsh 1.29.7-2Dan Walsh 1.29.7-1Dan Walsh 1.29.5-3Dan Walsh 1.29.5-2Dan Walsh 1.29.5-1Dan Walsh 1.29.4-1Dan Walsh 1.29.3-1Dan Walsh 1.29.2-10Dan Walsh 1.29.2-9Dan Walsh 1.29.2-8Dan Walsh 1.29.2-7Dan Walsh 1.29.2-6Dan Walsh 1.29.2-5Dan Walsh 1.29.2-4Dan Walsh 1.29.2-3Dan Walsh 1.29.2-1Dan Walsh 1.29.1-2Jesse Keating Dan Walsh 1.29.1-1Dan Walsh 1.28-1Dan Walsh 1.27.37-1Dan Walsh 1.27.36-2Dan Walsh 1.27.36-1Dan Walsh 1.27.35-1Dan Walsh 1.27.33-1Dan Walsh 1.27.31-1Dan Walsh 1.27.30-1Dan Walsh 1.27.29-1Dan Walsh 1.27.28-3Dan Walsh 1.27.28-2Dan Walsh 1.27.27-5Dan Walsh 1.27.27-3Dan Walsh 1.27.27-1Dan Walsh 1.27.26-4Dan Walsh 1.27.26-1Dan Walsh 1.27.23-1Dan Walsh 1.27.20-1Dan Walsh 1.27.19-2Dan Walsh 1.27.19-1Dan Walsh 1.27.18-1Dan Walsh 1.27.14-1Dan Walsh 1.27.13-1Dan Walsh 1.27.12-1Dan Walsh 1.27.11-1Dan Walsh 1.27.7-2Dan Walsh 1.27.7-1Dan Walsh 1.27.6-1Dan Walsh 1.27.5-3Dan Walsh 1.27.5-1Dan Walsh 1.27.3-2Dan Walsh 1.27.3-1Dan Walsh 1.27.2-2Dan Walsh 1.27.2-1Dan Walsh 1.27.1-1Dan Walsh 1.26-3Dan Walsh 1.26-2Dan Walsh 1.26-1Dan Walsh 1.25.9-2Dan Walsh 1.25.9-1Dan Walsh 1.25.7-3Dan Walsh 1.25.7-2Dan Walsh 1.25.7-1Dan Walsh 1.25.6-1Dan Walsh 1.25.5-3Dan Walsh 1.25.5-2Dan Walsh 1.25.5-1Dan Walsh 1.25.4-1Dan Walsh 1.25.3-1Dan Walsh 1.25.2-1Dan Walsh 1.25.1-1Dan Walsh 1.24-1Dan Walsh 1.23.11-4Dan Walsh 1.23.11-3Dan Walsh 1.23.11-2Dan Walsh 1.23.11-1Dan Walsh 1.23.10-2Dan Walsh 1.23.10-1Dan Walsh 1.23.9-1Dan Walsh 1.23.8-1Dan Walsh 1.23.7-1Dan Walsh 1.23.6-1Dan Walsh 1.23.5-1Dan Walsh 1.23.4-3Dan Walsh 1.23.4-1Dan Walsh 1.23.3-2Dan Walsh 1.23.3-1Dan Walsh 1.23.2-1Dan Walsh 1.23.1-1Dan Walsh 1.22-2Dan Walsh 1.21.22-2Dan Walsh 1.21.22-1Dan Walsh 1.21.21-1Dan Walsh 1.21.20-3Dan Walsh 1.21.20-2Dan Walsh 1.21.20-1Dan Walsh 1.21.19-4Dan Walsh 1.21.19-2Dan Walsh 1.21.19-1Dan Walsh 1.21.18-2Dan Walsh 1.21.18-1Dan Walsh 1.21.17-2Dan Walsh 1.21.17-1Dan Walsh 1.21.15-9Dan Walsh 1.21.15-8Dan Walsh 1.21.15-5Dan Walsh 1.21.15-1Dan Walsh 1.21.14-1Dan Walsh 1.21.13-1Dan Walsh 1.21.12-2Dan Walsh 1.21.12-1Dan Walsh 1.21.10-2Dan Walsh 1.21.10-1Dan Walsh 1.21.9-1Dan Walsh 1.21.7-3Dan Walsh 1.21.5-1Dan Walsh 1.21.4-1Dan Walsh 1.21.3-2Dan Walsh 1.21.3-1Dan Walsh 1.21.1-3Dan Walsh 1.21.1-1Dan Walsh 1.20.1-2Dan Walsh 1.20.1-1Dan Walsh 1.19.3-1Dan Walsh 1.19.2-4Dan Walsh 1.19.2-1Dan Walsh 1.19.1-1Dan Walsh 1.18.1-3Dan Walsh 1.18.1-1Steve Grubb 1.17.7-3Dan Walsh 1.17.7-2Dan Walsh 1.17.7-1Dan Walsh 1.17.6-2Dan Walsh 1.17.6-1Dan Walsh 1.17.5-6Dan Walsh 1.17.5-5Dan Walsh 1.17.5-4Dan Walsh 1.17.5-3Dan Walsh 1.17.5-2Dan Walsh 1.17.5-1Dan Walsh 1.17.4-1Dan Walsh 1.17.3-4Dan Walsh 1.17.3-3Dan Walsh 1.17.3-2Dan Walsh 1.17.3-1Dan Walsh 1.17.2-1Dan Walsh 1.17.1-1Dan Walsh 1.15.7-1Dan Walsh 1.15.6-1Dan Walsh 1.15.5-1Dan Walsh 1.15.3-2Dan Walsh 1.15.3-1Dan Walsh 1.15.2-4Dan Walsh 1.15.2-3Dan Walsh 1.15.2-2Dan Walsh 1.15.2-1Dan Walsh 1.15.1-2Dan Walsh 1.15.1-1Dan Walsh 1.14.1-2Dan Walsh 1.14.1-1Dan Walsh 1.13.4-1Dan Walsh 1.13.3-2Dan Walsh 1.13.3-1Dan Walsh 1.13.2-2Dan Walsh 1.13.2-1Elliot Lee Dan Walsh 1.13.1-2Dan Walsh 1.13.1-1Dan Walsh 1.13-3Dan Walsh 1.13-2Dan Walsh 1.13-1Dan Walsh 1.12-2Dan Walsh 1.12-1Dan Walsh 1.11-4Dan Walsh 1.11-3Dan Walsh 1.11-2Dan Walsh 1.11-1Dan Walsh 1.10-4Colin Walters 1.10-3Dan Walsh 1.10-2Dan Walsh 1.10-1Dan Walsh 1.9.2-1Dan Walsh 1.9.1-1Dan Walsh 1.9-19Dan Walsh 1.9-18Dan Walsh 1.9-17Dan Walsh 1.9-16Dan Walsh 1.9-15Dan Walsh 1.9-14Dan Walsh 1.9-12Dan Walsh 1.9-11Dan Walsh 1.9-10Dan Walsh 1.9-9Dan Walsh 1.9-8Dan Walsh 1.9-7Dan Walsh 1.9-6Dan Walsh 1.9-5Dan Walsh 1.9-4Dan Walsh 1.9-3Dan Walsh 1.9-2Dan Walsh 1.9-1Dan Walsh 1.6-8Dan Walsh 1.6-7Dan Walsh 1.6-6Dan Walsh 1.6-5Dan Walsh 1.6-4Dan Walsh 1.6-3Dan Walsh 1.6-2Dan Walsh 1.6-1Dan Walsh 1.4-9Elliot Lee Dan Walsh 1.4-7Dan Walsh 1.4-6Dan Walsh 1.4-5Dan Walsh 1.4-4Dan Walsh 1.4-3Dan Walsh 1.4-2Dan Walsh 1.4-1Dan Walsh 1.2-9Dan Walsh 1.2-8Dan Walsh 1.2-7Dan Walsh 1.2-6Dan Walsh 1.2-5Dan Walsh 1.2-4Dan Walsh 1.2-3Dan Walsh 1.2-1Dan Walsh 1.1-4Dan Walsh 1.1-3Dan Walsh 1.1-2Dan Walsh 1.0-1- Improve error message when selabel_open fails (#1926511)- semodule: add -m | --checksum option- Update translations (#1962009)- setfiles: do not restrict checks against a binary policy (#1973754)- Update translations (#1899695)- selinux(8,5): Describe fcontext regular expressions (#1904059)- setfiles: Do not abort on labeling error (#1794518)- python/sepolgen: allow any policy statement in if(n)def (#1868717)- python/semanage: Sort imports in alphabetical order - python/semanage: empty stdout before exiting on BrokenPipeError (#1822100)- Update translations (#1754978)- restorecond: Fix redundant console log output error (#1626468)- dbus: Fix FileNotFoundError in org.selinux.relabel_on_boot (#1754873)- Configure autorelabel service to output to journal and to console if set (#1766578)- fixfiles: Fix "verify" option (#1647532) - semanage: Improve handling of "permissive" statements (#1417455) - semanage: fix moduleRecords.customized() - semanage: Add support for DCCP and SCTP protocols (#1563742)- semanage: Do not use default s0 range in "semanage login -a" (#1554360) - gui: Fix remove module in system-config-selinux (#1748763)- fixfiles: Fix unbound variable problem (#1743213)- Update transition - fixfiles: Fix [-B] [-F] onboot- SELinux userspace 2.9 release- semanage: move valid_types initialisations to class constructors - semanage: import sepolicy only when it's needed - sepolicy: Add sepolicy.load_store_policy(store) - semanage: Start exporting "ibendport" and "ibpkey" entries- chcat: use check_call instead of getstatusoutput - semanage: Use standard argparse.error() method - semanage: Fix handling of -a/-e/-d/-r options- Update translations- Use ipaddress module instead of IPy- Handle more reserved port types - Replace aliases with corresponding type names- Fix RESOURCE_LEAK coverity scan defects- sepolicy: Update to work with setools-4.2.0 - gui: Make all polgen button labels translatable- sepolicy: Fix get_real_type_name to handle query failure properly- sepolicy: search() for dontaudit rules as well- setfiles: Improve description of -d switch - Fix typo in newrole.1 manpage - semanage: Stop rejecting aliases in semanage commands - sepolicy: Stop rejecting aliases in sepolicy commands - sepolicy: Fix "info" to search aliases as well - sepolgen: fix refpolicy parsing of "permissive" - sepolgen: return NotImplemented instead of raising it - semanage: fix Python syntax of catching several exceptions - semanage: Replace bare except with specific one - semanage: Fix logger class definition - semanage: Stop logging loginRecords changes - add xperms support to audit2allow - sepolgen: fix access vector initialization - sepolgen: print all AV rules correctly- Update translations- sandbox: Use matchbox-window-manager instead of openbox (#1568295)- selinux-autorelabel: Use plymouth --quit rather then --hide-splash (#1592221) - selinux-autorelabel: Increment boot_indeterminate grub environment variable (#1592221) - Do not require libcgroup - it's not used anymore- Do not use symlinks to enable selinux-autorelabel-mark.service (#1589720)- Don't build the Python 2 subpackages (#1567354)- SELinux userspace 2.8 release- selinux-autorelabel: set UEFI boot order (BootNext) same as BootCurrent - selinux-autorelabel: synchronize cached writes before reboot (#1385272)- Move semodule_* utilities to policycoreutils package (#1562549)- semanage/seobject.py: Fix undefined store check (#1559174)- Build python only subpackages as noarch - Move semodule_package to policycoreutils-devel- sepolicy: Fix translated strings with parameters - sepolicy: Support non-MLS policy - sepolicy: Initialize policy.ports as a dict in generate.py - gui/polgengui.py: Use stop_emission_by_name instead of emit_stop_by_name - Minor update for bash completion - semodule_package: fix semodule_unpackage man page - gui/semanagePage: Close "edit" and "add" dialogues when successfull - gui/fcontextPage: Set default object class in addDialog\ - sepolgen: fix typo in PolicyGenerator - build: follow standard semantics for DESTDIR and PREFIX- Use Fedora RPM build flags (#1548740)- Fix mangling of python shebangs- Rename the python3 subpackage to have prefix, not suffix - Use python3 prefixes in requires where possible- Rewrite selinux-polgengui to use Gtk3 - Drop python2 and gnome-python2 from gui Requires- Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild- Require audit-libs-python2- Remove obsolete scriptlets- semanage: bring semanageRecords.set_reload back to seobject.py (#1527745)- semanage: make seobject.py backward compatible - Own %{pythonX_sitelib}/site-packages/sepolicy directories (#1522942)- sepolicy: Fix sepolicy manpage - semanage: Update Infiniband code to work on python3 - semanage: Fix export of ibendport entries - semanage: Enforce noreload only if it's requested by -N option- restorecond: check write() and daemon() results - sepolicy: do not fail when file_contexts.local or .subs do not exist - sepolicy: remove stray space in section "SEE ALSO" - sepolicy: fix misspelling of _ra_content_t suffix - gui: port to Python 3 by migrating to PyGI - gui: remove the status bar - gui: fix parsing of "semodule -lfull" in tab Modules - gui: delete overridden definition of usersPage.delete() - Enable listing file_contexts.homedirs (#1409813) - remove semodule_deps- Also add Provides for the old name without %_isa- Python 2 binary package renamed to python2-policycoreutils See https://fedoraproject.org/wiki/FinalizingFedoraSwitchtoPython3- Update to upstream release 2017-08-04 - Move DBUS API from -gui to -dbus package- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild- Rebuild with binutils fix for ppc64le (#1475636)- Make 'sepolicy manpage' and 'sepolicy transition' faster - open_init_pty: restore stdin/stdout to blocking upon exit - fixfiles: do not dereference link files in tmp - fixfiles: use a consistent order for options to restorecon - fixfiles: don't ignore `-F` when run in `-C` mode - fixfiles: remove bad modes of "relabel" command - fixfiles: refactor into the `set -u` dialect - fixfiles: if restorecon aborts, we should too - fixfiles: usage errors are fatal - fixfiles: syntax error - fixfiles: remove two unused variables - fixfiles: tidy up usage(), manpage synopsis - fixfiles: deprecate -l option - fixfiles: move logit call outside of redirected function - fixfiles: fix logging about R/O filesystems - fixfiles: clarify exclude_dirs() - fixfiles: remove (broken) redundant code- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild- semanage: Unify argument handling (#1398987) - setfiles: set up a logging callback for libselinux - setfiles: Fix setfiles progress indicator - setfiles: stdout messages don't need program prefix - setfiles: don't scramble stdout and stderr together (#1435894) - restorecond: Decrease loglevel of termination message (#1264505) - fixfiles should handle path arguments more robustly - fixfiles: handle unexpected spaces in command - fixfiles: remove useless use of cat (#1435894) - semanage: Add checks if a module name is passed in (#1420707) - semanage: fix export of fcontext socket entries (#1435127) - selinux-autorelabel: remove incorrect redirection to /dev/null (#1415674)- Fix selinux-polgengui (#1432337) - sepolicy - fix obtaining domain name in HTMLManPages- Fix several issues in gui and 'sepolicy manpage' (#1416372)- Use %{__python3} instead of python3- Fix pp crash when processing base module (#1417200) - Update to upstream release 2016-10-14- Rebuild for brp-python-bytecompile- Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild- Rebuild for python 3.6- seobject: Handle python error returns correctly - policycoreutils/sepolicy/gui: fix current selinux state radiobutton - policycoreutils: semodule_package: do not fail with an empty fc file- Update translations - Fix fcontextPage editing features (#1344842)- sandbox: Use dbus-run-session instead of dbus-launch when available - hll/pp: Change warning for module name not matching filename to match new behavior - Remove LDFLAGS from CFLAGS - sandbox: create a new session for sandboxed processes - sandbox: do not try to setup directories without -X or -M - sandbox: do not run xmodmap in a new X session - sandbox: Use GObject introspection binding instead of pygtk2 - sandbox: fix file labels on copied files - sandbox: tests - close stdout of p - sandbox: tests - use sandbox from cwd - audit2allow: tests should use local copy not system - audit2allow: fix audit2why import from seobject - audit2allow: remove audit2why so that it gets symlinked - semanage: fix man page and help message for import option - semanage: fix error message for fcontext -m - semanage: Fix semanage fcontext -D - semanage: Correct fcontext auditing - semanage: Default serange to "s0" for port modify - semanage: Use socket.getprotobyname for protocol - semanage: fix modify action in node and interface - fixfiles: Pass -n to restorecon for fixfiles check - sepolicy: Check get_rpm_nvr_list() return value - Don't use subprocess.getstatusoutput() in Python 2 code - semanage: Add auditing of changes in records - Remove unused 'q' from semodule getopt string- Remove unused autoconf files from po/ - Remove duplicate, empty translation files - Rebuilt with libsepol-2.5-9, libselinux-2.5-11, libsemanage-2.5-7- Fix sandbox -X issue related to python3 (#1358138)- Use generator approach to fix autorelabel- https://fedoraproject.org/wiki/Changes/Automatic_Provides_for_Python_RPM_Packages- open_init_pty: Do not error on EINTR - Fix [-s STORE] typos in semanage - Update sandbox types in sandbox manual - Update translations- Convert sandbox to gtk-3 using pygi-convert.sh (#1343166)- Fix typos in semanage manpages - Fix the documentation of -l,--list for semodule - Minor fix in a French translation - Fix the extract example in semodule.8 - Update sandbox.8 man page - Remove typos from chcat --help - sepolgen: Remove additional files when cleaning- Fix multiple spelling errors - Rebuild with libsepol-2.5-6- Rebuilt with libsepol-2.5-5- hll/pp: Warn if module name different than output filename- Ship selinux-autorelabel utility and systemd unit files (#1328825)- sepolgen: Add support for TYPEBOUNDS statement in INTERFACE policy files (#1319338)- Add documentation for MCS separated domains - Move svirt man page out of libvirt into its own- policycoreutils: use python3 in chcat(#1318408)- policycoreutils/sepolicy: selinux_server.py to use GLib instead of gobject - policycoreutils-gui requires python-slip-dbus (#1314685)- Update to upstream release 2016-02-23- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild- Fix 'semanage permissive -l' subcommand (#1286325) - Several 'sepolicy gui' fixes (#1281309,#1281309,#1282382)- Require at least one argument for 'semanage permissive -d' (#1255676)- Improve sepolicy command line interface - Fix sandbox to propagate specified MCS/MLS Security Level. (#1279006) - Fix 'audit2allow -R' (#1280418)- Rebuilt for https://fedoraproject.org/wiki/Changes/python3.5- policycoreutils-gui needs policycoreutils-python (#1279046)- Rebuilt for Python3.5 rebuild- Revert the attempt to port -gui to GTK 3 (#1269328, #1266059)- newrole: Set keepcaps around setresuid calls - newrole: Open stdin as read/write- Fix several semanage issue (#1247714) - Decode output from subprocess, if error occurred (#1247039)- audit2allow, audit2why - ignore setlocale errors (#1208529)- Port sandbox to GTK 3 and fix issue with Xephyr- Fix another python3 issues mainly in sepolicy (#1247039,#1247575,#1251713)- Fix multiple python3 issues in sepolgen (#1249388,#1247575,#1247564)- policycoreutils-python3 depends on python-IPy-python3- policycoreutils-devel depends on policycoreutils-python-utils (#1246818)- Move python utilities from -python to -python-utilities - All scripts originally from policycoreutils-python use python 3 now- policycoreutils: semanage: fix moduleRecords deleteall method- Improve compatibility with python 3 - Add sepolgen module to python3 package- Add Python3 support for sepolgen module (#1125208,#1125209)- Update to 2.4 release- Fix typo in semanage args for minimum policy store- policycoreutils: semanage: update to new source policy infrastructure - semanage: move permissive module creation to /tmp- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild- setfiles/restorecon: fix -r/-R option (#1211721)- Update to upstream 2.4- Temporary removed Requires:audit-libs-python from policycoreutils-python3 subpackage (#1195139) - Simplication of sepolicy-manpage web functionality (#1193552)- We need to cover file_context.XXX.homedir to have fixfiles with exclude_dirs working correctly - Use dnf instead of yum (#1156547)- Audit2allow will check for mislabeled files, and tells user to fix the label. - Also checks for basefiles and suggests creating a different label. - Patch from Ryan Hallisey- Switch back to yum. Need additional fixes to make it working correctly.- Switch over to dnf from yum- Improvements to audit2allow from rhallise@redhat.com * Check for mislabeled files. * Check for base file use and * Suggest writable files as alternatives- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild- Remove build requires for openbox, not needed- fix license handling- Examples are no longer in the main semanage man page (#1084390) - Add support for Fedora22 man pages. We need to fix it to not using hardcoding. - Print usage for all mutually exclusive options. - Fix selinux man page to refer seinfo and sesearch tools.- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Changes/Python_3.4- Fix setfiles to work correctly if -r option is defined- Update Miroslav Grepl Patches * If there is no executable we don't want to print a part of STANDARD FILE CON * Add-manpages-for-typealiased-types * Make fixfiles_exclude_dirs working if there is a substituion for the given d- If there is no executable we don't want to print a part of STANDARD FILE CONTEXT- Update to upstream * Add -P semodule option to man page from Dan Walsh. * selinux_current_policy_path will return none on a disabled SELinux system from Dan Walsh. * Add new icons for sepolicy gui from Dan Walsh. * Only return writeable files that are enabled from Dan Walsh. * Add domain to short list of domains, when -t and -d from Dan Walsh. * Fix up desktop files to match current standards from Dan Walsh. * Add support to return sensitivities and categories for python from Dan Walsh. * Cleanup whitespace from Dan Walsh. * Add message to tell user to install sandbox policy from Dan Walsh. * Add systemd unit file for mcstrans from Laurent Bigonville. * Improve restorecond systemd unit file from Laurent Bigonville. * Minor man pages improvements from Laurent Bigonville.- Apply patch to use setcon in seunshare from luto@mit.edu- Remove requirement for systemd-units- Fix previous Fix-STANDARD_FILE_CONTEXT patch to exclude if non_exec does not exist- Add policycoreutils-rhat-revert.patch to revert the last two commits to make build working - Add 0001-Fix-STANDARD_FILE_CONTEXT-section-in-man-pages patch- Update Translations- Add support for Fedora21 html manpage structure - Fix broken dependencies to require only usermode-gtk- mgrepl [PATCH] Deleteall user customization fails if there is a user used - for the default login. We do not want to fail on it and continue to delete - customizations for users which are not used for default login.- Update Translations - Make selinux-policy build working also on another architectures related to s - Miroslav grepl patch to fix the creation of man pages on different architectures. - Add ability to list the actual active modules - Fix spelling mistake on sesearch in generate man pages.- Allow manpages to be built on aarch64- Don't be verbose in fixfiles if there is not tty- Yum should only be required for policycoreutils-devel- Update translations- Add Miroslav patch to - Fix previously_modified_initialize() to show modified changes properly for all selections- Do not require /usr/share/selinux/devel/Makefile to build permissive domains- Update to upstream * Ignore selevel/serange if MLS is disabled from Sven Vermeulen.- Update Tranlations - Patch from Yuri Chornoivan to fix typos- Fixes Customized booleans causing a crash of the sepolicy gui- Fix sepolicy gui selection for advanced screen - Update Translations - Move requires checkpolicy requirement into policycoreutils-python- Fix semanage man page description of import command - Fix policy kit file to allow changing to permissive mode- Fix broken dependencies.- Break out python3 code into separate package- Add mgrepl patch - ptrace should be a part of deny_ptrace boolean in TEMPLATETYPE_admin- Update to upstream * Revert automatic setting of serange and seuser in seobject; was breaking non-MLS systems. - Add patches for sepolicy gui from mgrepl to Fix advanced_item_button_push() to allow to select an application in advanced search menu Fix previously_modified_initialize() to show modified changes properly for all selections- Update to upstream * Apply polkit check on all dbus interfaces and restrict to active user from Dan Walsh. * Fix typo in sepolicy gui dbus.relabel_on_boot call from Dan Walsh. - Apply Miroslav Grepl patch to fix TEMPLATETYPE_domtrans description in sepolicy generate- Fix selinux-polgengui, get_all_modules call- Speed up startup time of sepolicy gui - Clean up ports screen to only show enabled ports. - Update to upstream * Remove import policycoreutils.default_encoding_utf8 from semanage from Dan Walsh. * Make yum/extract_rpms optional for sepolicy generate from Dan Walsh. * Add test suite for audit2allow and sepolgen-ifgen from Dan Walsh.- Shift around some of the files to more appropriate packages. * semodule_* packages are required for devel.- Update to upstream * Properly build the swig exception file from Laurent Bigonville. * Fix man pages from Laurent Bigonville. * Support overriding PATH and INITDIR in Makefile from Laurent Bigonville. * Fix LDFLAGS usage from Laurent Bigonville. * Fix init_policy warning from Laurent Bigonville. * Fix semanage logging from Laurent Bigonville. * Open newrole stdin as read/write from Sven Vermeulen. * Fix sepolicy transition from Sven Vermeulen. * Support overriding CFLAGS from Simon Ruderich. * Create correct man directory for run_init from Russell Coker. * restorecon GLOB_BRACE change from Michal Trunecka. * Extend audit2why to report additional constraint information. * Catch IOError errors within audit2allow from Dan Walsh. * semanage export/import fixes from Dan Walsh. * Improve setfiles progress reporting from Dan Walsh. * Document setfiles -o option in usage from Dan Walsh. * Change setfiles to always return -1 on failure from Dan Walsh. * Improve setsebool error r eporting from Dan Walsh. * Major overhaul of gui from Dan Walsh. * Fix sepolicy handling of non-MLS policy from Dan Walsh. * Support returning type aliases from Dan Walsh. * Add sepolicy tests from Dan Walsh. * Add org.selinux.config.policy from Dan Walsh. * Improve range and user input checking by semanage from Dan Walsh. * Prevent source or target arguments that end with / for substitutions from Dan Walsh. * Allow use of <> for semanage fcontext from Dan Walsh. * Report customized user levels from Dan Walsh. * Support deleteall for restoring disabled modules from Dan Walsh. * Improve semanage error reporting from Dan Walsh. * Only list disabled modules for module locallist from Dan Walsh. * Fix logging from Dan Walsh. * Define new constants for file type character codes from Dan Walsh. * Improve bash completions from Dan Walsh. * Convert semanage to argparse from Dan Walsh (originally by Dave Quigley). * Add semanage tests from Dan Walsh. * Split semanage man pages from Dan Walsh. * Move bash completion scripts from Dan Walsh. * Replace genhomedircon script with a link to semodule from Dan Walsh. * Fix fixfiles from Dan Walsh. * Add support for systemd service for restorecon from Dan Walsh. * Spelling corrections from Dan Walsh. * Improve sandbox support for home dir symlinks and file caps from Dan Walsh. * Switch sandbox to openbox window manager from Dan Walsh. * Coalesce audit2why and audit2allow from Dan Walsh. * Change audit2allow to append to output file from Dan Walsh. * Update translations from Dan Walsh. * Change audit2why to use selinux_current_policy_path from Dan Walsh.- Fix handling of man pages.- Cleanup errors found by pychecker - Apply patch from Michal Trunecka to allow restorecon to handle {} in globs- sepolicy gui - mgrepl fixes for users and login - Update Translations.- sepolicy gui - mgrepl added delete screens for users and login - Fix lots of bugs. - Update Translations.- Fixes for fixfiles * exclude_from_dirs should apply to all types of restorecon calls * fixfiles check now works * exit with the correct status - semanage no longer import selinux- Fixes for sepolicy gui - Fix setsebool to return 0 on success - Update Po- Fix sizes of help screens in sepolicy gui- Improvements to sepolicy gui - Add more help information - Cleanup code - Add deny_ptrace on lockdown screen - Make unconfined/permissivedomains lockdown work - Add more support for file equivalency- Add back in the help png files - Begin Adding support for file equivalency.- Random fixes for sepolicy gui * Do not prompt for password until you make a change * Add user mappings and selinux users page * lots of code cleanup - Verify homedir is owned by user before mounting over it with seunshare - Fix fixfiles to handle Relabel properly - Fix semanage fcontext -e / command to allow "/"- Add Miroslav Grepl setsebool patch to give better error message on bad boolean names - Additional help screens for sepolicy gui- Random fixes for sepolicy gui - Update Translations- Add help screens for each page - Fixes for system page- Add Miroslav Grepl Patch to handle semanage -i and semanage -o better - Update Translations- Update sepolicy gui code, cleanups and add file transition tab - Fix semanage fcontext -a --ftype code to work.- If policy is not installed get_bools should not crash- Fix doc versioning- Update sepolicy gui code, cleanups and add file transition tab - Fix semanage argparse problems- Update sepolicy gui code, adding dbus calls - Update Translations- Fix semanage argparse bugs - Update Translations - Add test suite for semanage command lines- Fix semanage argparse bugs- Fix bugs introduced by previous patch. semanage port - Update Translations - Add test suite for sepolicy command lines- Fix bugs introduced by previous patch. semanage port - Update Translations- Rewrite argparse code in semanage and fix reload problem.- Do not generate shell script or spec file for sepolicy generate --newtype - Update translations - Fix sepolicy generate --admin_user man page again - Fix setsebool to print less verbose error messages by default, add -V for ve- Move audit2allow and audit2why back into -python package- Update sepolicy gui. - Error out of you call sepolicy gui without policycoreutils-gui package installed - Fix semanage login -d command - Update Translations- Update sepolicy gui.- Add Ryan Hallisey sepolicy gui. - Update Translations- Fix semanage module error handling- Add back default exception handling for errors, which argparse rewrite removed.- Fix generation of booleans in man pages- Remove requires for systemd-sysv - Move systemd-units require to restorecond section - Update Tranlasions - More sepolicy interfaces for gui - Cleanup man pages for sepolicy generate- Fix semanage export/import commands - Fix semange module command - Remove --version option from sandbox- Add man page doc for --role and bash complestion support for sepolicy --role- Make fcdict return a dictionary of dictionaries - Fix for sepolicy manpage- Add new man pages for each semanage subsection- Fix handling of sepolicy network sorting. - Additional interfaces needed for sepolicy gui- Fix handling of semanage args- Fix sepolicy generate --confined_admin to generate tunables - Add new interface to generate entrypoints for use with new gui- Fix handing of semanage with no args- Fix audit2allow -o to open file for append - Fix the name of the spec file generated in the build script- Fix mgrepl patch to support all semanage command parsing- Fix the name of the spec file generated in the build script - Add mgrepl patch to support argparse for semanage command parsing- Fix sandbox to always use sandbox_file_t, so generated policy will work. - Update Translations- Fix sepolicy-generate man page to clear up options/policy type - Add Miroslav Grepl to not generate man page when doing sepolicy generate --customize - Add support for executing semanage user within spec file - Fix generation of confined admin domains, to handle booleans properly.- Need to handle gziped policy.xml as well as not compressed.- Add support for Xephyr -resizable, so sandbox can now resize window - Add support for compressed policy.xml - Miroslav Grepl patch to allow sepolicy interface on individual interface fil - Also add capability to test interfaces for correctness.- Apply patches from Sven Vermeulen for sepolgen to fix typos.- Only require selinux-policy-devel for policycoreutils-devel, this will shrink the size of the livecd.- Run sepolgen-ifgen in audit2allow and sepolicy generate, if needed, first time - Add Sven Vermeulen patches to cleanup man pages- No longer run sepolgen-ifgen at install time. - Run sepolgen-ifgen in audit2allow and sepolicy generate, if needed. - Update Translations- Fix exceptionion hanling in audit2allow -o - Generate Man pages for everydomain, not just ones with exec_t entrypoints - sepolicy comunicate should return ValueError not TypeError - Trim header line in sepolicy manpage to use less space - Add missing options to restorecon man page- Raise proper Exception on sepolicy communicate with invalid value- Update translations - Add patch by Miroslav Grepl to add compile test for sepolicy interface command.- Update translations - Add patch inspired by Miroslav Grepl to add extended information for sepolicy interface command.- Update translations - Add missing man pages and fixup existing man pages- Move sepolicy to policycoreutils-devel pacage, since most of it is used for devel - Apply Miroslav Grepl Patches for sepolicy -- Fix generate mutually groups option handling -- EUSER is used for existing policy -- customize options can be used together with admin_domain option -- Fix manpage.py to generate correct man pages for SELinux users -- Fix policy *.te file generated by customize+writepaths options -- Fix install script for confined_admin option- Add post install scripts for gui to make sure Icon Cache is refreshed. - Fix grammar issue in secon man page - Update Translations- Add buildrequires for OpenBox to prevent me from accidently building into RHEL7 - Add support for returning alias data to sepolicy.info python bindings- Fix audit2allow output to better align analysys with the allow rules - Apply Miroslav Grepl patch to clean up sepolicy generate usage - Apply Miroslav Grepl patch to fixupt handing of admin_user generation - Update Tranlslations- Allow semanage fcontext -a -t "<>" ... to work- Can not unshare IPC in sandbox, since it blows up Xephyr - Remove bogus error message sandbox about reseting setfsuid- Fix sepolicy generate --customize to generate policy with -w commands- sepolgen-ifgen needs to handle filename transition rules containing ":"- sepolicy manpage: - use nroff instead of man2html - Remove checking for name of person who created the man page - audit2allow - Fix output to show the level that is different.- Fix newrole to not drop capabilities from the bounding set. - Stop dropping capabilities from its children. - Add better error messages. - Change location of bash_completion files to /usr/share/bash-completion/compl- sepolicy generate should look for booleans that effect equivalence names, and add them to the man page- Mention creation of permissive domains in sepolicy generate man page - Change sepolicy manpage to use shortname with an "_" to stop accidently grabbing unrelated types for a domain. - Fix audit2allow to show better information on constraint violations.- Have restorecon exit -1 on errors for consistancy.- Need to provide a value to semanage boolean -m- Fix cut and paste errors for sepolicy network command- Fix sepoicy interface to work properly- Fix fixfiles to use exclude_dirs on fixfiles restore- Allow users with symlinked homedirs to work. call realpath on homedir - Fix sepolicy reorganization of helper functions.- Update trans - Fix sepolicy reorganization of helper functions.- remove vendor tag from desktop file. https://fedorahosted.org/fpc/ticket/247 - clean up spec to follow current guidelines- Do not load interface file by default when sepolicy is called, mov get_all_methods to the sepolicy package- sepolgen-ifgen should use the current policy path if selinux is enabled- Fix sepolicy to be able to work on an SELinux disabled system. - Needed to be able to build man pages in selinux-policy package- Add yum to requires of policycoreutils-python since sepolicy requires it.- Sepolixy should not throw an exception on an SELinux disabled machine - Switch from using console app to using pkexec, so we will work better with policykit. - Add missing import to fix system-config-selinux startup - Add comment to pamd files about pam_rootok.so - Fix sepolicy generate to not comment out the first line- Add --root/-r flag to sepolicy manpage, - This allows us to generate man pages on the fly in the selinux-policy build- Fix newrole to retain cap_audit_write when compiled with namespace, also do not drop capabilities when run as root.- Fix man page generation and public_content description- Revert some changes which are causing the wrong policy version file to be created - Switch sandbox to start using openbox rather then matchbox - Make sepolgen a symlink to sepolicy - update translations- Fix empty system-config-selinux.png, again- Fix empty system-config-selinux.png- Update to upstream * setfiles: estimate percent progress * load_policy: make link at the destination directory * Rebuild polgen.glade with glade-3 * sepolicy: new command to unite small utilities * sepolicy: Update Makefiles and po files * sandbox: use sepolicy to look for sandbox_t * gui: switch to use sepolicy * gui: sepolgen: use sepolicy to generate * semanage: use sepolicy for boolean dictionary * add po file configuration information * po: stop running update-po on all * semanage: seobject verify policy types before allowing you to assign them. * gui: Start using Popen, instead of os.spawnl * sandbox: Copy /var/tmp to /tmp as they are the same inside * qualifier to shred content * semanage: Fix handling of boolean_sub names when using the -F flag * semanage: man: roles instead of role * gui: system-config-selinux: Catch no DISPLAY= error * setfiles: print error if no default label found * semanage: list logins file entries in semanage login -l * semanage: good error message is sepolgen python module missing * gui: system-config-selinux: do not use lokkit * secon: add support for setrans color information in prompt output * restorecond: remove /etc/mtab from default list * gui: If you are not able to read enforcemode set it to False * genhomedircon: regenerate genhomedircon more often * restorecond: Add /etc/udpatedb.conf to restorecond.conf * genhomedircon generation to allow spec file to pass in SEMODULE_PATH * fixfiles: relabel only after specific date * po: update translations * sandbox: seunshare: do not reassign realloc value * seunshare: do checking on setfsuid * sestatus: rewrite to shut up coverity- Reorginize sepolicy so all get_all functions are in main module - Add -B capability to fixfiles onboot and fixfiles restore, basically searches for all files created since the last boot.- Update to latest patches from eparis/Upstream - fixfiles onboot will write any flags handed to it to /.autorelabel. - * Patch sent to initscripts to have fedora-autorelabel pass flags back to fixfiles restore - * This should allow fixfiles -F onboot, to force a hard relabel. - Add -p to show progress on full relabel.- Additional changes for bash completsion and generate man page to match the w - Add newtype as a new qualifier to sepolicy generate. This new mechanism wil - a policy write to generate types after the initial policy has been written a - will autogenerate all of the interfaces. - I also added a -w options to allow policy writers from the command line to s - the writable directories of files. - - Modify network.py to include interface definitions for newly created port type - Standardize of te_types just like all of the other templates. - Change permissive domains creation to raise exception if sepolgen is not ins - get_te_results no longer needs or uses the opts parameter. - The compliler was complaining so I just removed the option. - Start returning analysis data for audit2allow- Update Translations - Fix handling of semanage generate --cgi -n MODULE PATHTO/CGI - This fixes the spec file and script file getting wrong names for modules and types.- Additional patch from Miroslav to handle role attributes- Update with Miroslav patch to handle role attributes - Update Translations - import sepolicy will only throw exception on missing policy iff selinux is enabled- Update to latest patches from eparis/Upstream - secon: add support for setrans color information in prompt output - Update translations- Update translations - Fix sepolicy booleans to handle autogenerated booleans descriptions - Cleanups of sepolicy manpage - Fix crash on git_shell man page generation- Update translations - update sepolicy manpage to generate fcontext equivalence data and to list default file context paths. - Add ability to generate policy for confined admins and domains like puppet.- Fix semanage permissive , this time with the patch. - Update translations- Fix semanage permissive - Change to use correct gtk forward button - Update po- Move audit2why to -devel package- sepolicy transition was blowing up. Also cleanup output when only source is specified. - sepolicy generate should allow policy modules names that include - or _- Apply patch from Miroslav to display proper range description in man pages g - Should print warning on missing default label when run in recusive mode iff - Remove extra -R description, and fix recursive description- Additional fixes for disabled SELinux Box - system-config-selinux no longer relies on lokkit for /etc/selinux/config- sepolicy should failover to installed policy file on a disabled SELinux box, if it exists.- Update Translations - sepolicy network -d needs to accept multiple domains- Add --path as a parameter to sepolicy generate - Print warning message if program does not exists when generating policy, and do not attempt to run nm command - Fix sepolicy generate -T to not take an argument, and supress the help message - Since this is really just a testing tool- Fix sepolicy communicate to handle invalid input- Fix sepolicy network -p to handle high ports- Fix handling of manpages without entrypoints, nsswitch domains - Update Translations- Move sepogen python bindings back into policycoreutils-python out of -devel, since sepolicy is using the- Fix sepolicy/__init__.py to handle _()- Add Miroslav Grepl patch to create etc_rw_t sock files policy- Fix semanage to work without policycoreutils-devel installed - Update translations- Fix semanage login -l to list contents of /etc/selinux/POLICY/logins directory- Fix booleansPage not showing booleans - Fix audit2allow -b- Fix sepolicy booleans again - Fix man page- Move policy generation tools into policycoreutils-devel- Document and fix sepolicy booleans - Update Translations - Fix several spelling mistakes- Only report restorecon warning for missing default label, if not running recusively - Update translations- Fix semanage booleans -l, move more boolean_dict handling into sepolicy - Update translations - Fixup sepolicy generate to discover /var/log, /var/run and /var/lib directories if they match the name - Fix kill function call should indicate signal_perms not kill capability - Error out cleanly in system-config-selinux, if it can not contact XServer- Remove run_init, no longer needed with systemd. - Fix sepolicy generate to not include subdirs in generated fcontext file. (mgrepl patch)- Fix manpage to generate proper man pages for alternate policy, basically allow me to build RHEL6 man pages on a Fedora 18 box, as long as I pull the policy, policy.xml and file_contexts and file_contexts.homedir- Fix some build problems in sepolicy manpage and sepolicy transition- Add alias man pages to sepolicy manpage- Redesign sepolicy to only read the policy file once, not for every call- Fixes to sepolicy transition, allow it to list all transitions from a domain- Change sepolicy python bindings to have python pick policy file, fixes weird memory problems in sepolicy network- Allow sepolicy to specify the policy to generate content from- Fix semanage boolean -F to handle boolean subs- Add Miroslav Grepl patch to generate html man pages - Update Translations - Add option to sandbox to shred files before deleting- Add Requires(post) PKGNAME to sepolicy generate /usr/bin/pkg- Add role_allow to sepolicy.search python bindings, this allows us to remove last requirement for setools-cmdline in gui tools. - Fix man page generator.- Remove dwalsh@redhat.com from man pages - Fix spec file for sepolicy generate- Add missing spec.py from templates directory needed for sepolicy generate - Add /var/tmp as collection point for sandbox apps.- Handle audit2allow -b in foreign locales- Update sepolicy generate with patch to create spec file and man page. - Patch initiated by Miroslav Grepl- Fix semanage to verify that types are appropriate for commands. * Patch initiated by mgrepl * Fixes problem of specifying non file_types for fcontext, or not port_types for semanage port- Fix typo in preunstall line for restorecond - Add mgrepl patch to consolidate file context generated by sepolicy generate- Fix manpage generation, missing import - Add equiv_dict to get samba booleans into smbd_selinux - Add proper translations for booleans and remove selinux.tbl- Fix system-config-selinux to use sepolicy.generate instead of sepolgen- Add sepolicy commands, and change tools to use them.- Rebuild without bogus prebuild 64 bit seunshare app- Allow fixfiles to specify -v, so they can get verbosity rather then progress. - Fix load_file Makefile to use SBINDIR rather then real OS. - Fix man pages in setfiles and restorecon to reflect what happens when you relabel the entire OS.- Use systemd post install scriptlets- Update to upstream * genhomedircon: manual page improvements * setfiles/restorecon minor improvements * run_init: If open_init_pty is not available then just use exec * newrole: do not drop capabilities when newrole is run as * restorecon: only update type by default * scripts: Don't syslog setfiles changes on a fixfiles restore * setfiles: do not syslog if no changes * Disable user restorecond by default * Make restorecon return 0 when a file has changed context * setfiles: Fix process_glob error handling * semanage: allow enable/disable under -m * add .tx to gitignore * translations: commit translations from Fedora community * po: silence build process * gui: Checking in policy to support polgengui and sepolgen. * gui: polgen: search for systemd subpackage when generating policy * gui: for exploring booleans * gui: system-config-selinux gui * Add Makefiles to support new gui code * gui: remove lockdown wizard * return equivalency records in fcontext customized * semanage: option to not load new policy into kernel after * sandbox: manpage update to describe standard types * setsebool: -N should not reload policy on changes * semodule: Add -N qualifier to no reload kernel policy * gui: polgen: sort selinux types of user controls * gui: polgen: follow symlinks and get the real path to * gui: Fix missing error function * setfiles: return errors when bad paths are given * fixfiles: tell restorecon to ignore missing paths * setsebool: error when setting multiple options * semanage: use boolean subs. * sandbox: Make sure Xephyr never listens on tcp ports * sepolgen: return and output constraint violation information * semanage: skip comments while reading external configuration files * restorecond: relabel all mount runtime files in the restorecond example * genhomedircon: dynamically create genhomedircon * Allow returning of bastard matches * sepolgen: return and output constraint violation information * audit2allow: one role/type pair per line- Change polgen to generate dbus apps as optional so they can compile on minimal policy system, patch from Miroslav Grepl- Fix sepolgen/audit2allow to handle multiple role/types in avc messages properly- Fix restorecon to generate a better percentage of completion on restorecon -R /. - Have audit2allow look at the constaint violation and tell the user whether it - is because of user,role or level- userapps is generating sandbox code in polgengui- Remove load_policy symbolic link on usrmove systems this breaks the system- Update to upstream - policycoreutils * restorecond: wrong options should exit with non-zero error code * restorecond: Add -h option to get usage command * resorecond: user: fix fd leak * mcstrans: add -f to run in foreground * semanage: fix man page range and level defaults * semanage: bash completion for modules should include -a,-m, -d * semanage: manpage update for -e * semanage: dontaudit off should work * semanage: locallist option does not take an argument * sepolgen: Make use of setools optional within sepolgen - sepolgen * Make use of setools optional within sepolgen * We need to support files that have a + in them- Make restorecon exit with an error on a bad path- Fix setsebool command, handling of = broken. - Add missing error option in booleansPage- Fix sepolgen to use realpath on executables handed to it. - Brian Bickford- Allow stream sock_files to be stored in /tmp and etc_rw_t directories by sepolgen - Trigger on selinux-policy needs to change to selinux-policy-devel - Update translations - Fix semanage dontaudit off/on exception- Add -N qualifier to semanage, setsebool and semodule to allow you to update - policy without reloading it into the kernel.- add some definition to the standard types available for sandboxes- Remove lockdown wizard- Fix semanage fcontext -E to extract the equivalance customizations.- Add mgrepl patch to have sepolgen search for -systemd rpm packages- Apply Stef Walter patch for semanage man page- Rebuild to get latest libsepol which fixes the file_name transition problems - Update translations - Fix calls to close fd for restorecond- Update translations - Fix sepolgen to discover unit files in /lib/systemd/- Update translations - Fix segfault on restorecon- Allow filename transitions to use + in a file name- Change policycoreutils-python to require selinux-policy-devel package- Update to upstream - policycoreutils * sandbox: do not propogate inside mounts outside * sandbox: Removing sandbox init script, should no longer be necessary * restorecond: Stop using deprecated interfaces for g_io * semanage: proper auditting of user changes for LSPP * semanage: audit message to show what record(s) and item(s) have chaged * scripts: Update Makefiles to handle /usrmove * mcstrans: Version should have been bumped on last check in * seunshare: Only drop caps not the Bounding Set from seunshare * Add bash-completion scripts for setsebool and semanage * newrole: Use correct capng calls in newrole * Fix infinite loop with inotify on 2.6.31 kernels * fix ftbfs with hardening flags * Only run setfiles if we found read-write filesystems to run it on * update .po files * remove empty po files * do not fail to install if unable to make load_policy lnk file - sepolgen * Fix dead links to www.nsa.gov/selinux * audit.py Dont crash if empty data is passed to sepolgen * do not use md5 when calculating hash signatures * fix detection of policy loads- Have sepolgen script specify the pp file with the make command. From mgrepl.- Fix sepolgen handling of unit files.- Require selinux-policy-doc- Fix unit file handling in sepolgen- Add bash_command completion for setsebool/getsebool- Disable restorecond on desktop by default - Change seunshare to not modify the bounding set- Stop using sandbox init in post install since it no longer exists.- Change to use new selinux_current_policy_path()- Change to use new selinux_binary_policy_path() - Add systemd_passwd_agent_exec($1), and systemd_read_fifo_file_passwd_run($1) to templates for _admin interface- On full relabels we will now show a estimated percent complete rather then just *s.- Add unit_file.py for sepolgen- Change sepolgen to use sha256 instead of md5- Stop syslogging on full restore - Stop syslogging when restorecon is not changing values- Change semanage to produce proper audit records for Common Criteria - Cleanup packaging for usrmove- fixed load_policy location- fixed load_policy location- fixed load_policy location- add filesystem guard- install everything in /usr https://fedoraproject.org/wiki/Features/UsrMove- restorecond fixes: Stop using depracated g_io interfaces Exit with non zero exit code if wrong options given Add -h option- Eliminate not needed Requires- fix sepolgen to not crash on echo "" | audit2allow- Remove sandbox init script, should no longer be necessary- Add unit file support to sepolgen, and cleanup some of the output.- Fix English in templates for sepolgen- Fix the handling of namespaces in seunshare/sandbox. - Currently mounting of directories within sandbox is propogating to the - parent namesspace.- Add umount code to seunshare to cleanup left over mounts of /var/tmp- Remove open_init_pty-Update to upstream - sepolgen * better analysis of why things broke - policycoreutils * Remove excess whitespace * sandbox: Add back in . functions to sandbox.init script * Fix Makefile to match other policycoreutils Makefiles * semanage: drop unused translation getopt- Bump libsepol version requires rebuild- Add back accidently dropped patches for semanage- Upgrade to upstream * sandbox: move sandbox.conf.5 to just sandbox.5 * po: Makefile use -p to preserve times to allow multilib simultatious installs * of po files * sandbox: Allow user to specify the DPI value for X in a sandbox * sandbox: make sure the domain launching sandbox has at least 100 categories * sandbox: do not try forever to find available category set * sandbox: only complain if sandbox unable to launch * sandbox: init script run twice is still successful * semanage: print local and dristo equiv rules * semanage: check file equivalence rules for conflict * semanage: Make sure semanage fcontext -l -C prints even if local keys * are not defined * semanage: change src,dst to target,substitute for equivalency * sestatus: Updated sestatus and man pages. * Added SELinux config file man page. * add clean target to man Makefile- Fix semange fcontext -a to check for more conflicts on equivalency- Fix dpi handling in sandbox - Make sure semanage fcontext -l -C prints if only local equiv have changed- Add listing of distribution equivalence class from semanage fcontext -l - Add checking to semanage fcontext -a to guarantee a file specification will not be masked by an equivalence- Allow ~ as a valid part of a filename in sepolgen- sandbox init script should always return 0 - sandbox command needs to check range of categories and report error if not big enough- Allow user to specify DPI when running sandbox- Add Miroslav patch to return all attributes- Upgrade to policycoreutils upstream * sandbox: Maintain the LANG environment into the sandbox * audit2allow: use audit2why internally * fixfiles: label /root but not /var/lib/BackupPC * semanage: update local boolean settings is dealing with localstore * semanage: missing modify=True * semanage: set modified correctly * restorecond: make restorecond dbuss-able * restorecon: Always check return code on asprintf * restorecond: make restorecond -u exit when terminal closes * sandbox: introduce package name and language stuff * semodule_package: remove semodule_unpackage on clean * fix sandbox Makefile to support DESTDIR * semanage: Add -o description to the semanage man page * make use of the new realpath_not_final function * setfiles: close /proc/mounts file when finished * semodule: Document semodule -p in man page * setfiles: fix use before initialized * restorecond: Add .local/share as a directory to watch - Upgrade to sepolgen upstream * Ignore permissive qualifier if found in an interface * Return name field in avc data- Rebuild versus newer libsepol- A couple of minor coverity fixes for a potential leaked file descriptor - An an unchecked return code. - Add ~/.local/share/* to restorecond_user watches- Have sepolgen return name field in AVC- restorecond -u needs to watch terminal for exit if run outside of dbus.- Do not drop capabilities if running newrole as root-Update to upstream * semanage: fix indentation error in seobject- Ignore permissive commands in interfaces- Remove gnome requirement from polgengui-Update to upstream policycoreutils-2.1.6 * sepolgen-ifgen: new attr-helper does something * audit2allow: use alternate policy file * audit2allow: sepolgen-ifgen use the attr helper * setfiles: switch from stat to stat64 * setfiles: Fix potential crash using dereferenced ftsent * setfiles: do not wrap * output at 80 characters * sandbox: add -Wall and -Werror to makefile * sandbox: add sandbox cgroup support * sandbox: rewrite /tmp handling * sandbox: do not bind mount so much * sandbox: add level based kill option * sandbox: cntrl-c should kill entire process control group * Create a new preserve_tunables flag in sepol_handle_t. * semanage: show running and disk setting for booleans * semanage: Dont print heading if no items selected * sepolgen: audit2allow is mistakakenly not allowing valid module names * semanage: Catch RuntimeErrors, that can be generated when SELinux is disabled * More files to ignore * tree: default make target to all not install * sandbox: do not load unused generic init functions sepolgen-1.1.2 * src: sepolgen: add attribute storing infrastructure * Change perm-map and add open to try to get better results on * look for booleans that might solve problems * sepolgen: audit2allow is mistakakenly not allowing valid module names * tree: default make target to all not install- Change separator on -L from ; to :- Add back lockdown wizard for booleans using pywebkitgtk- Maintain the LANG environment Variable into the sandbox - Change restorecon/setfiles to only change type part of the context unless -f qualifier is given- Remove lockdown wizard, since gtkhtml2 is no longer supported.- Allow setfiles and restorecon to use labeledprefix to speed up processing and limit memory.-Update to upstream * policycoreutils * setfiles: Fix process_glob to handle error situations * sandbox: Allow seunshare to run as root * sandbox: trap sigterm to make sure sandbox * sandbox: pass DPI from the desktop * sandbox: seunshare: introduce helper spawn_command * sandbox: seunshare: introduce new filesystem helpers * sandbox: add -C option to not drop * sandbox: split seunshare caps dropping * sandbox: use dbus-launch * sandbox: numerous simple updates to sandbox * sandbox: do not require selinux context * sandbox: Makefile: new man pages * sandbox: rename dir to srcdir * sandbox: allow users specify sandbox window size * sandbox: check for paths up front * sandbox: use defined values for paths rather * sandbox: move seunshare globals to the top * sandbox: whitespace fix * semodule_package: Add semodule_unpackage executable * setfiles: get rid of some stupid globals * setfiles: move exclude_non_seclabel_mounts to a generic location * sepolgen * refparser: include open among valid permissions * refparser: add support for filename_trans rules- Fix bug in glob handling for restorecon-Update to upstream 2.1.4 2011-08-17 * run_init: clarification of the usage in the * semanage: fix usage header around booleans * semanage: remove useless empty lines * semanage: update man page with new examples * semanage: update usage text * semanage: introduce file context equivalencies * semanage: enable and disable modules * semanage: output all local modifications * semanage: introduce extraction of local configuration * semanage: cleanup error on invalid operation * semanage: handle being called with no arguments * semanage: return sooner to save CPU time * semanage: surround getopt with try/except * semanage: use define/raise instead of lots of * semanage: some options are only valid for * semanage: introduce better deleteall support * semanage: do not allow spaces in file * semanage: distinguish between builtin and local permissive * semanage: centralized ip node handling * setfiles: make the restore function exclude() non-static * setfiles: use glob to handle ~ and * fixfiles: do not hard code types * fixfiles: stop trying to be smart about * fixfiles: use new kernel seclabel option * fixfiles: pipe everything to cat before sending * fixfiles: introduce /etc/selinux/fixfiles_exclude_dirs * semodule: support for alternative root paths 2.1.3 2011-08-03 * semanage: fix indention * semodule_package: fix man page typo * semodule_expand: update man page with -a * semanage: handle os errors * semanage: fix traceback with bad options * semanage: show usage on -h or --help * semanage: introduce more deleteall options * semanage: verify ports < 65536 * transaction into semanageRecords * make get_handle a method of semanageRecords * remove a needless blank line * make process_one error if not initialized correctly * fixfiles: correct usage for r_opts.rootpath * put -p in help for restorecon and * fixfiles: do not try to only label * fixfiles clean up /var/run and /var/lib/debug * fixfiles delete tmp sockets and pipes rather * fixfile use find -delete instead of pipe * chcat man page typo * add man page for genhomedircon * setfiles fix typo * setsebool should inform users they need to * setsebool typos * open_init_tty man page typos * Don't add user site directory to sys.path * newrole retain CAP_SETPCAP 2.1.2 2011-08-02 * seunshare: define _GNU_SOURCE earlier * make ignore_enoent do something * restorecond: first user logged in is not noticed * Repo: update .gitignore 2.1.1 2011-08-01 * Man page updates * restorecon fix for bad inotify assumptions 2.1.0 2011-07-27 * Release, minor version bump- Fix sepolgen usage statement - Stop using -k insandbox - Fix seunshare usage statement- Change seunshare to send kill signals to the childs session. - Also add signal handler to catch sigint, so if user enters ctrl-C sandbox will shutdown.- Add -k qualifier to seunshare to have it attempt to kill all processes with the matching MCS label.- Add -C option to sandbox and seunshare to maintain capabilities, otherwise the bounding set will be dropped. - Change --cgroups short name -c rather then -C for consistancy - Fix memory and fd leaks in seunshare- Introduce systemd unit file for restorecond drop SysV support- Do not drop capability bounding set in seunshare, this allows sandbox to - run setuid apps.- Add semanage-bash-completion.sh script- Remove mount -o bind calls from sandbox init script - pam_namespace now has this built in.- Pass desktop dpi to sandbox Xephyr window- Allow semodule to pick alternate root for selinux files - Add ~/.config/* to restorcond_user.conf, so restorecond will watch for mislabeled files in this directory.- Fix var_spool template read_spool_files - Fix sepolgen to handle filename transitions- Templates cleanedup by Dominic Grift- Clean up some of the templates for sepolgen- Apply patches from Christoph A. * fix sandbox title * stop xephyr from li - Also ignore errors on sandbox include of directory missing files- rebuild versus latest libsepol- Change fixfiles restore to delete unlabeled sockets in /tmp- rebuild versus latest libsepol- Update to upstream * Use correct color range in mcstrand by Richard Haines.- Add Elia Pinto patches to allow user to specify directories to ignore- Fix policycoreutils-sandbox description- rsynccmd should run outside of execcon- Fix semange node handling of ipv6 addresses- Fix sepolgen-ifgen call, add -p option- Fix sepolgen-ifgen call- Fix rsync command to work if the directory is old. - Fix all tests- Fix sepolgen to generate network polcy using generic_if and genric_node versus all_if and all_node- Return to original seunshare man page- change default location of HOMEDIR in sandbox to /tmp/.sandbox_home_* - This will allow default sandboxes to work on NFS homedirs without allowing access to homedir data- Change sepolgen-ifgen to search all available policy files - Exit in restorecond if it can not find a UID in the passwd database- Fix portspage in system-config-selinux to not crash - More fixes for seunshare from Tomas Hoger- put back in old handling of -T in sandbox command - Put back setsid in seunshare - Fix rsync to maintain times- Use rewritten seunshare from thoger- Require python-IPy for policycoreutils-python package - Fixes for sepologen - Usage statement needs -n name - Names with _ are being prevented - dbus apps should get _chat interface- Fix error message in seunshare, check for tmpdir existance before unlink.- Rewrite seunshare to make sure /tmp is mounted stickybit owned by root - Only allow names in polgengui that contain letters and numbers - Fix up node handling in semanage command - Update translations- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Fix sandbox policy creation with udp connect ports- Cleaup selinux-polgengui to be a little more modern, fix comments and use selected name - Cleanup chcat man page- Report full errors on OSError on Sandbox- Fix newrole hanlding of pcap- Have restorecond watch more directories in homedir- Add sandbox to sepolgen- Fix proper handling of getopt errors - Do not allow modules names to contain spaces- Polgengui raises the wrong type of exception. #471078 - Change semanage to not allow it to semanage module -D - Change setsebool to suggest run as root on failure- Fix restorecond watching utmp file for people logging in our out- Update to upstream- Change to allow sandbox to run on nfs homedirs, add start python script- Move seunshare to sandbox package- Fix sandbox to show correct types in usage statement- Stop fixfiles from complaining about missing dirs- Update to upstream - List types available for sandbox in usage statement- Don't report error on load_policy when system is disabled.- Fix up problems pointed out by solar designer on dropping capabilities- Check if you have full privs and reset otherwise dont drop caps- Fix setools require line- Move /etc/pam.d/newrole in to polcicycoreutils-newrole - Additional capability checking in sepolgen- Remove setuid flag and replace with file capabilities - Fix sandbox handling of files with spaces in them- Rebuilt for gcc bug 634757- Move restorecond into its own subpackage- Fix semanage man page- Add seremote, to allow the execution of command inside the sandbox from outside the sandbox.- Fix sandbox copyfile when copying a dir with a socket, print error- Stop polgengui from crashing if selinux policy is not installed- Fix bug preventing sandbox from using -l- Eliminate quotes fro desktop files- Add -w windowsize patch from Christoph A.- Update po- Update po- Tighten down seunshare to create /tmp dir with sticky bit and MS_NODEV | MS_NOSUID | MS_NOEXEC; - Remove setsid on seunshare so ^c on sandbox will cause apps to exit - Add dbus-launch --exit-with-session so all processes launched within the sandbox exit with the sandbox - Clean up error handling so error will get sent back to sandbox tool- Fix translation handling in file context page of system-config-selinux- Fix sandbox error handling- Apply patch to restorecond from Chris Adams, which will cause restorecond - to watch first user that logs in.- Add COPYING file to doc dir- Update po and translations Resolves: #610473- More fixes for polgen tools- Remove requirement to run selinux-polgen as root- Update po and translations - Fix gui policy generation tools- Update po and translations- rebuild against python 2.7- Update selinux-polgengui to sepolgen policy generation- Fix invalid free in seunshare and fix man page- Update translations- Fix sandbox man page- Rebuilt for https://fedoraproject.org/wiki/Features/Python_2.7/MassRebuild- Add translations for menus - Fixup man page from Russell Coker- Change python scripts to use -s flag - Update po- Update to upstream * Add sandbox support from Dan Walsh with modifications from Steve Lawrence.- Fix sepolgen code generation Resolve: #603001- Add cgroup support for sandbox- Allow creation of /var/cache/DOMAIN from sepolgen- Fix sandbox init script - Add dbus-launch to sandbox -X Resolve: #599599- Move genhomedircon.8 to same package as genhomedircon - Fix sandbox to pass unit test Resolves: #595796- Fix listing of booleans from audit2allow- Fix audit2allow to output if the current policy has avc - Update translations - Fix icon- Man page fixes - sandbox fixes - Move seunshare to base package- Fix seunshare translations - Fix seunshare to work on all arches - Fix icon for system-config-selinux Resolves: #595276- Fix can_exec definition in sepolgen- Add man page for seunshare and genhomedircon Resolves: #594303 - Fix node management via semanage- Fixes from upstream for sandbox command Resolves: #580938- Fix sandbox error handling on copyfile - Fix desktop files- Fix policy tool to have correct name in menus - Fix seunshare to handle /tmp being in ~/home - Fix saving of altered files - Update translations- Allow audit2allow to specify alternative policy file for analysis- Update po - Fix sepolgen --no_attrs Resolves: #588280- Make semanage boolean work on disabled machines and during livecd xguest - Fix homedir and tmpdir handling in sandbox Resolves: #587263- Make semanage boolean work on disabled machines- Make sepolgen-ifgen be quiet- Make sepolgen report on more interfaces - Fix system-config-selinux display of modules- Fix crash when args are empty Resolves: #582542 - Fix semange to exit on bad options - Fix semanage dontaudit man page section Resolves: #582533- Remove debug line from semanage - Update po- Fix sandbox comment on HOMEDIRS - Fix sandbox to throw error on bad executable- Fix spacing in templates- Fix semanage return codes- Fix sepolgen to confirm to the "Reference Policy Style Guide"- Update to upstream * Add avc's since boot from Dan Walsh. * Fix unit tests from Dan Walsh.- Update to upstream - sepolgen * Add since-last-boot option to audit2allow from Dan Walsh. * Fix sepolgen output to match what Chris expects for upstream refpolicy from Dan Walsh.- Allow restorecon on > 2 Gig files- Fix semanage handling of boolean options - Update translations- Update to upstream * Add dontaudit flag to audit2allow from Dan Walsh.- Use --rbind in sandbox init scripts- Update to upstream * Module enable/disable support from Dan Walsh.- Rewrite of sandbox script, add unit test for sandbox - Update translations- Fix patch for dontaudit rules from audit2allow for upstream acceptance- Fixes for fixfiles- Fix sandbox to complain if mount-shared has not been run - Fix to use /etc/sysconfig/sandbox- Update to upstream * Fix double-free in newrole - Fix python language handling- Fix display of command in sandbox- Catch OSError in semanage- Fix seobject and fixfiles- Change seobject to use translations properly- Cleanup spec file Resolves: 555835- Add use_resolve to sepolgen- Add session capability to sandbox - sandbox -SX -H ~/.homedir -t unconfined_t -l s0:c15 /etc/gdm/Xsession- Fix executable template for fifo files- Fix patch xod xmodmap - Exit 0 from script- Run with the same xdmodmap in sandbox as outside - Patch from Josh Cogliati- Fix sepolgen to not generate user sh section on non user policy- Add -e to semanage man page - Add -D qualifier to audit2allow to generate dontaudit rules- Speed up audit2allow processing of audit2why comments- Fixes to sandbox man page- Add setools-libs-python to requires for gui- If restorecond running as a user has no files to watch then it should exit. (NFS Homedirs)- Move sandbox man page to base package- Fix audit2allow to report constraints, dontaudits, types, booleans- Fix restorecon -i to ignore enoent- Update to upstream * Remove non-working OUTFILE from fixfiles from Dan Walsh. * Additional exception handling in chcat from Dan Walsh. * fix sepolgen to read a "type 1403" msg as a policy load by Stephen Smalley * Add support for Xen ocontexts from Paul Nuzzi.- Update to upstream * Fixed bug preventing semanage node -a from working from Chad Sellers * Fixed bug preventing semanage fcontext -l from working from Chad Sellers - Change semanage to use unicode- Update to upstream * Remove setrans management from semanage, as it does not work from Dan Walsh. * Move load_policy from /usr/sbin to /sbin from Dan Walsh.- Raise exception if user tries to add file context with an embedded space- Fix sandbox to setsid so it can run under mozilla without crashing the session- Update to upstream * Factor out restoring logic from setfiles.c into restore.c- Fix typo in seobject.py- Allow semanage -i and semanage -o to generate customization files. - semanage -o will generate a customization file that semanage -i can read and set a machines to the same selinux configuration- Fix restorecond man page- Add generation of the users context file to polgengui- Remove tabs from system-config-selinux glade file- Remove translations screen from system-config-selinux- Move fixfiles man pages into the correct package - Add genhomedircon to fixfiles restore- Add check to sandbox to verify save changes - Chris Pardy - Fix memory leak in restorecond - Steve Grubb- Fixes Templates- Fixes for polgengui to handle tcp ports correctly - Fix semanage node -a- Fixes for semanage -equiv, readded modules, --enable, --disable- Close sandbox when eclipse exits- Security fixes for seunshare - Fix Sandbox to handle non file input to command.- Security fixes for seunshare- Update to upstream * Change semodule upgrade behavior to install even if the module is not present from Dan Walsh. * Make setfiles label if selinux is disabled and a seclabel aware kernel is running from Caleb Case. * Clarify forkpty() error message in run_init from Manoj Srivastava.- Fix sandbox to handle relative paths- Add symbolic link to load_policy- Fix restorecond script to use force-reload- Fix init script to show status in usage message- Update to upstream * Add semanage dontaudit to turn off dontaudits from Dan Walsh. * Fix semanage to set correct mode for setrans file from Dan Walsh. * Fix malformed dictionary in portRecord from Dan Walsh. * Restore symlink handling support to restorecon based on a patch by Martin Orr. This fixes the restorecon /dev/stdin performed by Debian udev scripts that was broken by policycoreutils 2.0.70.- Add DAC_OVERRIED to seunshare- Fix typo- Add enable/disable patch- rebuilt with new audit- Tighten up controls on seunshare.c- Add sandboxX- Fix realpath usage to only happen on argv input from user- Don't try to remove restorecond after last erase (done already in %preun). - Ensure scriptlets exit with status 0. - Fix %post and %pr- Fix glob handling of /..- Redesign restorecond to use setfiles/restore functionality- Fix sepolgen again- Add --boot flag to audit2allow to get all AVC messages since last boot- Fix semanage command- exclude unconfined.if from sepolgen- Fix chcat to report error on non existing file - Update to upstream * Modify setfiles/restorecon checking of exclude paths. Only check user-supplied exclude paths (not automatically generated ones based on lack of seclabel support), don't require them to be directories, and ignore permission denied errors on them (it is ok to exclude a path to which the caller lacks permission).- Don't warn if the user did not specify the exclude if root can not stat file system- Update to upstream * Modify restorecon to only call realpath() on user-supplied pathnames from Stephen Smalley. * Fix typo in fixfiles that prevented it from relabeling btrfs filesystems from Dan Walsh.- Fix location of man pages - Update to upstream * Modify setfiles to exclude mounts without seclabel option in /proc/mounts on kernels >= 2.6.30 from Thomas Liu. * Re-enable disable_dontaudit rules upon semodule -B from Christopher Pardy and Dan Walsh. * setfiles converted to fts from Thomas Liu.- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- fix multiple directory ownership of mandirs- Update to upstream * Keep setfiles from spamming console from Dan Walsh. * Fix chcat's category expansion for users from Dan Walsh. - Update po files - Fix sepolgen- Add sepolgen executable- Fix Sandbox option handling - Fix fixfiles handling of btrfs- Fix sandbox to be able to execute files in homedir- Change polgen.py to be able to generate policy- Update to upstream * Fix transaction checking from Dan Walsh. * Make fixfiles -R (for rpm) recursive. * Make semanage permissive clean up after itself from Dan Walsh. * add /root/.ssh/* to restorecond.conf- Fix audit2allow -a to retun /var/log/messages- Run restorecond as a user service- Add semanage module support- Do not print \n, if count < 1000;- Handle case where subs file does not exist- Update po files - Add --equiv command for semanage- Cleanup creation of permissive domains - Update po files- Update po files- Fix semanage transations- Update polgengui templates to match current upstream policy- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild- Add /root/.ssh to restorecond.conf - fixfiles -R package should recursively fix files- Update to upstream * Add btrfs to fixfiles from Dan Walsh. * Remove restorecond error for matching globs with multiple hard links and fix some error messages from Dan Walsh. * Make removing a non-existant module a warning rather than an error from Dan Walsh. * Man page fixes from Dan Walsh.- Fix script created by polgengui to not refer to selinux-policy-devel- Change initc scripts to use proper labeling on gui- Add obsoletes to cause policycoreuils to update both python and non python version- Dont report errors on glob match and multiple links- Move sepolgen-ifgen to post python- Fix Translations- Add Domains Page to system-config-selinux - Add ability to create dbus confined applications to polgen- Split python into a separate package- Update to upstream * chcat: cut categories at arbitrary point (25) from Dan Walsh * semodule: use new interfaces in libsemanage for compressed files from Dan Walsh * audit2allow: string changes for usage- Don't error out when removing a non existing module- fix audit2allow man page- Fix Japanese translations- Change md5 to hashlib.md5 in sepolgen- Rebuild for Python 2.6- Fix error checking in restorecond, for inotify_add_watch- Update to upstream * semanage: use semanage_mls_enabled() from Stephen Smalley.- Rebuild for Python 2.6- Update to upstream * fcontext add checked local records twice, fix from Dan Walsh.- Update to upstream * Allow local file context entries to override policy entries in semanage from Dan Walsh. * Newrole error message corrections from Dan Walsh. * Add exception to audit2why call in audit2allow from Dan Walsh.- add compression- Move the usermode-gtk requires to the -gui subpackage.- Fix traceback in audit2why- Make GUI use translations- Fix typo in man page- Handle selinux disabled correctly - Handle manipulation of fcontext file correctly- Add usermode-gtk requires- Allow addition of local modifications of fcontext policy.- Fix system-config-selinux booleanspage throwing and exception - Update po files- Fix text in newrole - Fix revertbutton on booleans page in system-config-selinux- Change semodule calls for libsemanage- Update to upstream * Update po files from Dan Walsh.- Fix semanage help display - Update to upstream * fixfiles will now remove all files in /tmp and will check for unlabeled_t in /tmp and /var/tmp from Dan Walsh. * add glob support to restorecond from Dan Walsh. * allow semanage to handle multi-line commands in a single transaction from Dan Walsh.- Only call gen_requires once in sepolgen- Change Requires line to gnome-python2-gnome - Fix spelling mistakes - Require libselinux-utils- Add node support to semanage- Fix fixfiles to correct unlabeled_t files and remove .? files- Add glob support to restorecond so it can check every file in the homedir- Update to upstream * Merged semanage node support from Christian Kuester.- Add require libsemanage-python- Add missing html_util.py file- Fixes for multiple transactions- Allow multiple transactions in one semanage command- Update to upstream * Add support for boolean files and group support for seusers from Dan Walsh. * Ensure that setfiles -p output is newline terminated from Russell Coker.- Allow semanage user to add group lists % groupname- Fix help- Update to upstream * Change setfiles to validate all file_contexts files when using -c from Stephen Smalley.- Fix boolean handling - Upgrade to latest sepolgen - Update po patch- Additial cleanup of boolean handling for semanage- Handle ranges of ports in gui- Fix indent problems in seobject- Add lockdown wizard - Allow semanage booleans to take an input file an process lots of booleans at once.- Default prefix to "user"- Remove semodule use within semanage - Fix launching of polgengui from toolbar- Update to upstream * Fix audit2allow generation of role-type rules from Karl MacMillan.- Fix spelling of enforcement- Fix sepolgen/audit2allow handling of roles- Fix sepolgen-ifgen processing- Add deleteall to semanage permissive, cleanup error handling- Complete removal of rhpl requirement- Add semanage permissive *- Fix fixfiles to cleanup /tmp and /var/tmp- Fix listing of types in gui- Update to upstream * Remove security_check_context calls for prefix validation from semanage. * Change setfiles and restorecon to not relabel if the file already has the correct context value even if -F/force is specified.- Remove /usr/share/locale/sr@Latn/LC_MESSAGES/policycoreutils.mo- Add rm -rf /tmp/gconfd-* /tmp/pulse-* /tmp/orbit-* to fixfiles restore - So that mislabeled files will get removed on full relabel- Make restorecond not start by default - Fix polgengui to allow defining of confined roles. - Add patches from Lubomir Rintel * Add necessary runtime dependencies on setools-console for -gui * separate stderr when run seinfo commands - Update to upstream * Update semanage man page for booleans from Dan Walsh. * Add further error checking to seobject.py for setting booleans.- Uninvasive (ie no string or widget changes) HIG approximations in selinux-polgenui- Move s-c-selinux to the right menu- Fix boolean descriptions - Fix semanage man page- Don't use prefix in gui- Update to upstream * Update audit2allow to report dontaudit cases from Dan Walsh. * Fix semanage port to use --proto from Caleb Case.- Update to upstream * Fix for segfault when conf file parse error occurs.- Don't show tabs on polgengui- Update to upstream * Merged fix fixfiles option processing from Vaclav Ovsik. - Added existing users, staff and user_t users to polgengui- Add messages for audit2allow DONTAUDIT- Add ability to transition to roles via polgengui- Update to upstream * Make semodule_expand use sepol_set_expand_consume_base to reduce peak memory usage.- Update to upstream * Merged audit2why fix and semanage boolean --on/--off/-1/-0 support from Dan Walsh. * Merged a second fixfiles -C fix from Marshall Miller.- Don't initialize audit2allow for audit2why call. Use default - Update to upstream * Merged fixfiles -C fix from Marshall Miller.- Update to upstream * Merged audit2allow cleanups and boolean descriptions from Dan Walsh. * Merged setfiles -0 support by Benny Amorsen via Dan Walsh. * Merged fixfiles fixes and support for ext4 and gfs2 from Dan Walsh.- Update to upstream * Merged replacement for audit2why from Dan Walsh.- Cleanup fixfiles -f message in man page- Update to upstream * Merged update to chcat, fixfiles, and semanage scripts from Dan Walsh. * Merged sepolgen fixes from Dan Walsh.- handle files with spaces on upgrades- Add support in fixfiles for ext4 ext4dev and gfs2- Allow files with spaces to be used by setfiles- Add descriptions of booleans to audit2allow- Update to upstream * Merged support for non-interactive newrole command invocation from Tim Reed.- Change to use selinux bindings to audit2why- Fix fixfiles to handle no args- Fix roles output when creating a module- Handle files with spaces in fixfiles- Catch SELINUX_ERR with audit2allow and generate policy- Make sepolgen set error exit code when partial failure - audit2why now checks booleans for avc diagnosis- Update to upstream * Update Makefile to not build restorecond if /usr/include/sys/inotify.h is not present- Fix sepolgen to be able to parse Fedora 9 policy Handle ifelse statements Handle refpolicywarn inside of define Add init.if and inetd.if into parse Add parse_file to syntax error message- Add scroll bar to fcontext gui page- Add Russion Man pages- Upgrade from NSA * Drop verbose output on fixfiles -C from Dan Walsh. * Fix argument handling in fixfiles from Dan Walsh. * Enhance boolean support in semanage, including using the .xml description when available, from Dan Walsh. - Fix handling of final screen in polgengui- Fix handling of disable selinux button in gui- Upgrade from NSA * load_policy initial load option from Chad Sellers.- Don't show error on missing policy.xml- GUI Enhancements - Fix cgi generation - Use more patterns- Remove codec hacking, which seems to be fixed in python- Fix typo - Change to upstream minimal privledge interfaces- Fix fixfiles argument parsing- Fix File Labeling add- Fix semanage to handle state where policy.xml is not installed- Remove -v from restorecon in fixfiles- Fix filter and search capabilities, add wait cursor- Translate booleans via policy.xml - Allow booleans to be set via semanage- Require use of selinux-policy-devel- Validate semanage fcontext input - Fix template names for log files in gui- Fix template to generate correct content- Fix consolekit link to selinux-polgengui- Fix the generation templates- Fix enable/disable audit messages- Add booleans page- Lots of updates to gui- Remove no.po - Update to upstream * Fix semodule option handling from Dan Walsh. * Add deleteall support for ports and fcontexts in semanage from Dan Walsh.- Fix semodule parameter checking- Update to upstream * Add genhomedircon script to invoke semodule -Bn from Dan Walsh. - Add deleteall for ports and fcontext- Update to upstream * Update semodule man page for -D from Dan Walsh. * Add boolean, locallist, deleteall, and store support to semanage from Dan Walsh.- Add genhomedircon script to rebuild file_context for shadow-utils- Update translations- Additional checkboxes for application policy- Allow policy writer to select user types to transition to there users- Fix bug in building policy with polgengui - Creating ports correctly- Update to upstream * Improve semodule reporting of system errors from Stephen Smalley.- Show local changes with semanage- Fixed spelling mistakes in booleans defs - Update po- Update to upstream * Fix setfiles selabel option flag setting for 64-bit from Stephen Smalley.- Fix wording in policy generation tool- Fix calls to _admin interfaces- Upgrade version of sepolgen from NSA * Expand the sepolgen parser to parse all current refpolicy modules from Karl MacMillan. * Suppress generation of rules for non-denials from Karl MacMillan (take 3).- Remove bogus import libxml2- Lots of fixes for polgengui- Change Requires /bin/rpm to rpm- Bump libsemanage version for disable dontaudit - New gui features for creating admin users- Fix generated code for admin policy- Lots of fixes for role templates- Add more role_templates- Update genpolgui to add creation of user domains- Fix location of sepolgen-ifgen- Add selinux-polgengui to desktop- Cleanup spec- Update semodule man page * Fix genhomedircon searching for USER from Todd Miller * Install run_init with mode 0755 from Dan Walsh. * Fix chcat from Dan Walsh. * Fix fixfiles pattern expansion and error reporting from Dan Walsh. * Optimize genhomedircon to compile regexes once from Dan Walsh. * Fix semanage gettext call from Dan Walsh.- Update semodule man page- Update to match NSA * Disable dontaudits via semodule -D- Speed up genhomedircon by an order of magnitude by compiling regex - Allow semanage fcontext -a -t <> /path to work- Fixfiles update required to match new regex- Update booleans translations- rebuild for toolchain bug- Add requires libselinux-python- Fix fixfiles to report incorrect rpm - Patch provided by Tony Nelson- Clean up spec file- Require newer libselinux version- Fix checking for conflicting directory specification in genhomedircon- Fix spelling mistakes in GUI- Fix else path in chcat- Update to match NSA * Rebase setfiles to use new labeling interface.- Add filter to all system-config-selinux lists- Update to match NSA * Fixed setsebool (falling through to error path on success).- Update to match NSA * Merged genhomedircon fixes from Dan Walsh. * Merged setfiles -c usage fix from Dan Walsh. * Merged restorecon fix from Yuichi Nakamura. * Dropped -lsepol where no longer needed.- Fix translations code, Add more filters to gui- Fix setfiles -c to make it work- Fix french translation to not crash system-config-selinux- Fix genhomedircon to work in stage2 builds of anaconda- Update to match NSA- Fixes for polgentool templates file- Updated version of policycoreutils * Merged support for modifying the prefix via semanage from Dan Walsh. - Fixed genhomedircon to find homedirs correctly.- Updated version of policycoreutils * Merged po file updates from Dan Walsh. - Fix semanage to be able to modify prefix in user record- Fix title on system-config-selinux- Updated version of policycoreutils * Build fix for setsebool.- Updated version of policycoreutils * Merged setsebool patch to only use libsemanage for persistent boolean changes from Stephen Smalley. * Merged genhomedircon patch to use the __default__ setting from Dan Walsh. * Dropped -b option from load_policy in preparation for always preserving booleans across reloads in the kernel.- Fixes for polgengui- Updated version of policycoreutils * Merged chcat, fixfiles, genhomedircon, restorecond, and restorecon patches from Dan Walsh.- Fix genhomedircon to handle non user_u for the default user- More cleanups for gui- Fix size and use_tmp problem on gui- Fix restorecon crash- Change polgengui to a druid- Fully path script.py- Add -l flag to restorecon to not traverse file systems- Fixes for policygengui- Add polgengui- Updated version of sepolgen * Merged seobject setransRecords patch to return the first alias from Xavier Toth.- Updated version of sepolgen * Merged updates to sepolgen-ifgen from Karl MacMillan. * Merged updates to sepolgen parser and tools from Karl MacMillan. This includes improved debugging support, handling of interface calls with list parameters, support for role transition rules, updated range transition rule support, and looser matching.- Don't generate invalid context with genhomedircon- Add filter to booleans page- Fix polgen.py to not generate udp rules on tcp input- system-config-selinux should be able to run on a disabled system, - at least enough to get it enabled.- Many fixes to polgengui- Updated version of sepolgen * Merged patch to discard self from types when generating requires from Karl MacMillan.- Change location of audit2allow and sepol-ifgen to sbin - Updated version of sepolgen * Merged patch to move the sepolgen runtime data from /usr/share to /var/lib to facilitate a read-only /usr from Karl MacMillan.- Add polgen gui - Many fixes to system-config-selinux- service restorecond status needs to set exit value correctly- Fix gui- Update to upstream * Merged restorecond init script LSB compliance patch from Steve Grubb. -sepolgen * Merged better matching for refpolicy style from Karl MacMillan * Merged support for extracting interface paramaters from interface calls from Karl MacMillan * Merged support for parsing USER_AVC audit messages from Karl MacMillan.- Update to upstream -sepolgen * Merged support for enabling parser debugging from Karl MacMillan. - Add sgrupp cleanup of restorcon init script- Add Bill Nottinham patch to run restorcond condrestart in postun- Update to upstream - policycoreutils * Merged newrole O_NONBLOCK fix from Linda Knippers. * Merged sepolgen and audit2allow patches to leave generated files in the current directory from Karl MacMillan. * Merged restorecond memory leak fix from Steve Grubb. -sepolgen * Merged patch to leave generated files (e.g. local.te) in current directory from Karl MacMillan. * Merged patch to make run-tests.py use unittest.main from Karl MacMillan. * Merged patch to update PLY from Karl MacMillan. * Merged patch to update the sepolgen parser to handle the latest reference policy from Karl MacMillan.- Do not fail on sepolgen-ifgen- Update to upstream * Merged translations update from Dan Walsh. * Merged chcat fixes from Dan Walsh. * Merged man page fixes from Dan Walsh. * Merged seobject prefix validity checking from Dan Walsh. * Merged Makefile and refparser.py patch from Dan Walsh. Fixes PYTHONLIBDIR definition and error handling on interface files.- Updated newrole NONBlOCK patch- Remove Requires: %{name}-plugins- Update to upstream * Merged seobject exception handler fix from Caleb Case. * Merged setfiles memory leak patch from Todd Miller.- Cleanup man pages syntax - Add sepolgen- Update to upstream * Merged small fix to correct include of errcodes.h in semodule_deps from Dan Walsh.- Update to upstream * Merged new audit2allow from Karl MacMillan. This audit2allow depends on the new sepolgen python module. Note that you must run the sepolgen-ifgen tool to generate the data needed by audit2allow to generate refpolicy. * Fixed newrole non-pam build. - Fix Changelog and spelling error in man page- Fix audit2allow on missing translations- More chcat fixes- Change chcat to exec semodule so file context is maintained- Fix system-config-selinux ports view - Update to upstream * Fixed newrole non-pam build. * Updated version for stable branch.- Update to upstream * Merged unicode-to-string fix for seobject audit from Dan Walsh. * Merged man page updates to make "apropos selinux" work from Dan Walsh.* Merged newrole man page patch from Michael Thompson. * Merged patch to fix python unicode problem from Dan Walsh.- Fix handling of audit messages for useradd change Resolves: #222159- Update man pages by adding SELinux to header to fix apropos database Resolves: #217881- Want to update to match api - Update to upstream * Merged newrole securetty check from Dan Walsh. * Merged semodule patch to generalize list support from Karl MacMillan. Resolves: #200110- Update to upstream * Merged fixfiles and seobject fixes from Dan Walsh. * Merged semodule support for list of modules after -i from Karl MacMillan.- Update to upstream * Merged patch to correctly handle a failure during semanage handle creation from Karl MacMillan. * Merged patch to fix seobject role modification from Dan Walsh.- Stop newrole -l from working on non secure ttys Resolves: #200110- Update to upstream * Merged patches from Dan Walsh to: - omit the optional name from audit2allow - use the installed python version in the Makefiles - re-open the tty with O_RDWR in newrole- Update to upstream * Patch from Dan Walsh to correctly suppress warnings in load_policy.- Fix fixfiles script to use tty command correctly. If this command fails, it should set the LOGFILE to /dev/null Resolves: #220879- Remove hard coding of python2.4 from Makefiles- add exists switch to semanage to tell it not to check for existance of Linux user Resolves: #219421- Fix audit2allow generating reference policy - Fix semanage to manage user roles properly Resolves: #220071- Update po files - Fix newrole to open stdout and stderr rdrw so more will work on MLS machines Resolves: #216920- rebuild for python 2.5- Update po files Resolves: #216920- Update po files Resolves: #216920- Update to upstream * Patch from Dan Walsh to add an pam_acct_msg call to run_init * Patch from Dan Walsh to fix error code returns in newrole * Patch from Dan Walsh to remove verbose flag from semanage man page * Patch from Dan Walsh to make audit2allow use refpolicy Makefile in /usr/share/selinux/- Fixing the Makefile line again to build with LSPP support Resolves: #208838- Don't report errors on restorecond when file system does not support XATTRS Resolves: #217694- Fix -q qualifier on load_policy Resolves: #214827- Merge to upstream - Fix makefile line Resolves: #208838- Additional po changes - Added all booleans definitions- Upstream accepted my patches * Merged setsebool patch from Karl MacMillan. This fixes a bug reported by Yuichi Nakamura with always setting booleans persistently on an unmanaged system.- Fixes for the gui- Upstream accepted my patches- Add Amy Grifis Patch to preserve newrole exit status- Fix display of gui- Add patch by Jose Plans to make run_init use pam_acct_mgmt- More fixes to gui- Fix audit2allow to generate referene policy- Add group sort for portsPage.py - Add enable/disableaudit to modules page- Add glade file- Fix Module handling in system-config-selinux- Update to upstream * Merged newrole patch set from Michael Thompson. - Add policycoreutils-gui- No longer requires rhpl- Fix genhomedircon man page- Add newrole audit patch from sgrubb - Update to upstream * Merged audit2allow -l fix from Yuichi Nakamura. * Merged restorecon -i and -o - support from Karl MacMillan. * Merged semanage/seobject fix from Dan Walsh. * Merged fixfiles -R and verify changes from Dan Walsh.- Separate out newrole into its own package- Update to upstream * Merged newrole auditing of failures due to user actions from Michael Thompson.- Pass -i qualifier to restorecon for fixfiles -R - Update translations- Remove recursion from fixfiles -R calls - Fix semanage to verify prefix- More translations - Compile with -pie- Add translations - Fix audit2allow -l- Rebuild- Update to upstream - Change -o to take "-" for stdout- Add -h support for genhomedircon- Fix fixfiles handling of -o- Make restorecon return the number of changes files if you use the -n flag- Change setfiles and restorecon to use stderr except for -o flag - Also -o flag will now output files- Put back Erich's change- Remove recursive switch when using rpm- Fix fixfiles to handle multiple rpm and make -o work- Apply patch- Security fixes to run python in a more locked down manner - More Translations - Update to upstream * Merged fix for restorecon // handling from Erich Schubert. * Merged translations update and fixfiles fix from Dan Walsh.- Change scripts to use /usr/sbin/python- Add -i qualified to restorecon to tell it to ignore files that do not exist - Fixfiles also modified for this change- Ignore sigpipe- Fix init script and add translations- Update to upstream * Merged fix for restorecon symlink handling from Erich Schubert.- Update to upstream * Merged semanage local file contexts patch from Chris PeBenito. - Fix fixfiles log creation - More translations- Update to upstream * Merged patch from Dan Walsh with: * audit2allow: process MAC_POLICY_LOAD events * newrole: run shell with - prefix to start a login shell * po: po file updates * restorecond: bail if SELinux not enabled * fixfiles: omit -q * genhomedircon: fix exit code if non-root * semodule_deps: install man page * Merged secon Makefile fix from Joshua Brindle. * Merged netfilter contexts support patch from Chris PeBenito.- Fix audit2allow to handle reload of policy- Stop restorecond init script when selinux is not enabled- Update to upstream * Merged restorecond size_t fix from Joshua Brindle. * Merged secon keycreate patch from Michael LeMay. * Merged restorecond fixes from Dan Walsh. Merged updated po files from Dan Walsh. * Merged python gettext patch from Stephen Bennett. * Merged semodule_deps from Karl MacMillan.- Change newrole to exec a login shell to prevent suspend.- Report error when selinux not enabled in restorecond- Fix handling of restorecond- Fix creation of restorecond pidfile- Update translations - Update to new GCC- Add verbose flag to restorecond and update translations- Update to upstream * Lindent. * Merged patch from Dan Walsh with: * -p option (progress) for setfiles and restorecon. * disable context translation for setfiles and restorecon. * on/off values for setsebool. * Merged setfiles and semodule_link fixes from Joshua Brindle.- Add progress indicator on fixfiles/setfiles/restorecon- Don't use translations with matchpathcon- Prompt for selinux-policy-devel package in audit2allow- Allow setsebool to use on/off - Update translations- Update to upstream * Merged fix for setsebool error path from Serge Hallyn. * Merged patch from Dan Walsh with: * Updated po files. * Fixes for genhomedircon and seobject. * Audit message for mass relabel by setfiles.- Update audit mass relabel to only compile in when audit is installed.- Update to required versions - Update translation- Fix shell selection- Add BuildRequires for gettext* Updated fixfiles script for new setfiles location in /sbin.- Update to upstream * Merged more translations from Dan Walsh. * Merged patch to relocate setfiles to /sbin for early relabel when /usr might not be mounted from Dan Walsh. * Merged semanage/seobject patch to preserve fcontext ordering in list. * Merged secon patch from James Antill.- Fix seobject.py to not sort the file_context file. - move setfiles to /sbin- secon man page and getopt fixes. - Enable mass relabel audit, even though it doesn't work.- secon fixes for --self-exec etc. - secon change from level => sensitivity, add clearance. - Add mass relabel AUDIT patch, but disable it until kernel problem solved.- Update to upstream * Merged patch with updates to audit2allow, secon, genhomedircon, and semanage from Dan Walsh.- Fix exception in genhomedircon- Add rhpl dependancy- Add secon man page and prompt options.- Update to upstream * Fixed audit2allow and po Makefiles for DESTDIR= builds. * Merged .po file patch from Dan Walsh. * Merged bug fix for genhomedircon.- Fix exception on bad file_context- Update to upstream * Merged fix warnings patch from Karl MacMillan. * Merged patch from Dan Walsh. This includes audit2allow changes for analysis plugins, internationalization support for several additional programs and added po files, some fixes for semanage, and several cleanups. It also adds a new secon utility.- Fix genhomedircon to catch duplicate homedir problem- Add secon program - Add translations- Fix check for "msg"- Ship avc.py- Add /etc/samba/secrets.tdb to restorecond.conf - Update from upstream * Merged semanage prefix support from Russell Coker. * Added a test to setfiles to check that the spec file is a regular file.- added some missing buildrequires - added Requires: initscripts for /sbin/service- use absolute path /sbin/service- Fix audit2allow to not require ausearch. - Fix man page - Add libflashplayer to restorecond.conf- Update from upstream * Merged audit2allow fixes for refpolicy from Dan Walsh. * Merged fixfiles patch from Dan Walsh. * Merged restorecond daemon from Dan Walsh. * Merged semanage non-MLS fixes from Chris PeBenito. * Merged semanage and semodule man page examples from Thomas Bleher.- Clean up reference policy generation in audit2allow- Add IN_MOVED_TO to catch renames- make restorecond only ignore non directories with lnk > 1- Make audit2allow translate dontaudit as well as allow rules - Update from upstream * Merged semanage labeling prefix patch from Ivan Gyurdiev.- Fix audit2allow to retrieve dontaudit rules- Open file descriptor to make sure file does not change from underneath.- Fixes for restorecond attack via symlinks - Fixes for fixfiles- Restorecon has to handle suspend/resume- Update to upstream- Add restorecond- Remove prereq- Fix audit2allow to generate all rules- Minor fixes to chcat and semanage- Add missing setsebool man page- Change audit2allow to use devel instead of refpolicy- Update from upstream * Merged semanage bug fix patch from Ivan Gyurdiev. * Merged improve bindings patch from Ivan Gyurdiev. * Merged semanage usage patch from Ivan Gyurdiev. * Merged use PyList patch from Ivan Gyurdiev.- Update from upstream * Merged newrole -V/--version support from Glauber de Oliveira Costa. * Merged genhomedircon prefix patch from Dan Walsh. * Merged optionals in base patch from Joshua Brindle.- bump again for double-long bug on ppc(64)- Fix auditing to semanage - Change genhomedircon to use new prefix interface in libselinux- Update from upstream * Merged seuser/user_extra support patch to semodule_package from Joshua Brindle. * Merged getopt type fix for semodule_link/expand and sestatus from Chris PeBenito. - Fix genhomedircon output- rebuilt for new gcc4.1 snapshot and glibc changes- Add auditing to semanage- Update from upstream * Merged clone record on set_con patch from Ivan Gyurdiev.- Update from upstream * Merged genhomedircon fix from Dan Walsh. * Merged seusers.system patch from Ivan Gyurdiev. * Merged improve port/fcontext API patch from Ivan Gyurdiev. * Merged genhomedircon patch from Dan Walsh.- Update from upstream * Merged newrole audit patch from Steve Grubb. * Merged seuser -> seuser local rename patch from Ivan Gyurdiev. * Merged semanage and semodule access check patches from Joshua Brindle.- Add a default of /export/home- Cleanup of the patch- Correct handling of symbolic links in restorecon- Added translation support to semanage - Update from upstream * Modified newrole and run_init to use the loginuid when supported to obtain the Linux user identity to re-authenticate, and to fall back to real uid. Dropped the use of the SELinux user identity, as Linux users are now mapped to SELinux users via seusers and the SELinux user identity space is separate. * Merged semanage bug fixes from Ivan Gyurdiev. * Merged semanage fixes from Russell Coker. * Merged chcat.8 and genhomedircon patches from Dan Walsh.- Fix genhomedircon to work on MLS policy- Update to match NSA * Merged chcat, semanage, and setsebool patches from Dan Walsh.- Fixes for "add"-"modify" error messages - Fixes for chcat- Add management of translation file to semaange and seobject- Fix chcat -l -L to work while not root- Update to match NSA * Merged semanage fixes from Ivan Gyurdiev. * Merged semanage fixes from Russell Coker. * Merged chcat, genhomedircon, and semanage diffs from Dan Walsh.- Update chcat to manage user categories also- Add check for root for semanage, genhomedircon- Add ivans patch- Update to match NSA * Merged newrole cleanup patch from Steve Grubb. * Merged setfiles/restorecon performance patch from Russell Coker. * Merged genhomedircon and semanage patches from Dan Walsh. * Merged remove add_local/set_local patch from Ivan Gyurdiev.- Fixes for mls policy- Update semanage and split out seobject - Fix labeleing of home_root- Update to match NSA * Added filename to semodule error reporting.- Update to match NSA * Merged genhomedircon and semanage patch from Dan Walsh. * Changed semodule error reporting to include argv[0].- Update to match NSA * Merged semanage getpwnam bug fix from Serge Hallyn (IBM). * Merged patch series from Ivan Gyurdiev. This includes patches to: - cleanup setsebool - update setsebool to apply active booleans through libsemanage - update semodule to use the new semanage_set_rebuild() interface - fix various bugs in semanage * Merged patch from Dan Walsh (Red Hat). This includes fixes for restorecon, chcat, fixfiles, genhomedircon, and semanage.- Fix restorecon to not say it is changing user section when -vv is specified- Fixes for semanage, patch from Ivan and added a test script- Fix getpwnam call- Anaconda fixes- Turn off try catch block to debug anaconda failure- More fixes for chcat- Add try catch for files that may not exists- Remove commands from genhomedircon for installer- Fix genhomedircon to work in installer - Update to match NSA * Merged patch for chcat script from Dan Walsh.- More fixes to chcat- rebuilt- Update to match NSA * Merged fix for audit2allow long option list from Dan Walsh. * Merged -r option for restorecon (alias for -R) from Dan Walsh. * Merged chcat script and man page from Dan Walsh.- Update to match NSA - Add gfs support- Update to match NSA - Add chcat to policycoreutils, adding +/- syntax `- Require new version of libsemanage- Update to match NSA * Changed genhomedircon to warn on use of ROLE in homedir_template if using managed policy, as libsemanage does not yet support it.- Update to match NSA * Merged genhomedircon bug fix from Dan Walsh. * Revised semodule* man pages to refer to checkmodule and to include example sections.- Update to match NSA * Merged audit2allow --tefile and --fcfile support from Dan Walsh. * Merged genhomedircon fix from Dan Walsh. * Merged semodule* man pages from Dan Walsh, and edited them. * Changed setfiles to set the MATCHPATHCON_VALIDATE flag to retain validation/canonicalization of contexts during init.- Update to match NSA * Changed genhomedircon to always use user_r for the role in the managed case since user_get_defrole is broken. - Add te file capabilities to audit2allow - Add man pages for semodule- Update to match NSA * Merged sestatus, audit2allow, and semanage patch from Dan Walsh. * Fixed semodule -v option.- Update to match NSA * Merged audit2allow python script from Dan Walsh. (old script moved to audit2allow.perl, will be removed later). * Merged genhomedircon fixes from Dan Walsh. * Merged semodule quieting patch from Dan Walsh (inverts default, use -v to restore original behavior).- Audit2allow * Add more error checking * Add gen policy package * Add gen requires- Update to match NSA * Merged genhomedircon rewrite from Dan Walsh. - Rewrite audit2allow to python- Fix genhomedircon to work with non libsemanage systems- Patch genhomedircon to use libsemanage.py stuff- Update to match NSA * Merged setsebool cleanup patch from Ivan Gyurdiev.- Fix genhomedircon to use seusers file, temporary fix until swigified semanage* Added -B (--build) option to semodule to force a rebuild. * Reverted setsebool patch to call semanage_set_reload_bools(). * Changed setsebool to disable policy reload and to call security_set_boolean_list to update the runtime booleans. * Changed setfiles -c to use new flag to set_matchpathcon_flags() to disable context translation by matchpathcon_init().- Update to match NSA * Changed setfiles for the context canonicalization support. * Changed setsebool to call semanage_is_managed() interface and fall back to security_set_boolean_list() if policy is not managed. * Merged setsebool memory leak fix from Ivan Gyurdiev. * Merged setsebool patch to call semanage_set_reload_bools() interface from Ivan Gyurdiev.- Update to match NSA * Merged setsebool patch from Ivan Gyurdiev. This moves setsebool from libselinux/utils to policycoreutils, and rewrites it to use libsemanage for permanent boolean changes.- Rebuild to use latest libselinux, libsemanage, and libsepol- Update to match NSA * Merged semodule support for reload, noreload, and store options from Joshua Brindle. * Merged semodule_package rewrite from Joshua Brindle.- Update to match NSA * Cleaned up usage and error messages and releasing of memory by semodule utilities. * Corrected error reporting by semodule. * Updated semodule_expand for change to sepol interface. * Merged fixes for make DESTDIR= builds from Joshua Brindle.- Update to match NSA * Updated semodule_package for sepol interface changes.- Update to match NSA * Updated semodule_expand/link for sepol interface changes.- Update to match NSA * Merged non-PAM Makefile support for newrole and run_init from Timothy Wood.- Update to match NSA * Updated semodule_expand to use get interfaces for hidden sepol_module_package type. * Merged newrole and run_init pam config patches from Dan Walsh (Red Hat). * Merged fixfiles patch from Dan Walsh (Red Hat). * Updated semodule for removal of semanage_strerror.- Fix run_init.pamd and spec file- Update to match NSA * Updated semodule_link and semodule_expand to use shared libsepol. Fixed audit2why to call policydb_init prior to policydb_read (still uses the static libsepol).- Update to match NSA * Updated for changes to libsepol. Changed semodule and semodule_package to use the shared libsepol. Disabled build of semodule_link and semodule_expand for now. Updated audit2why for relocated policydb internal headers, still needs to be converted to a shared lib interface.- Update newrole pam file to remove pam-stack - Update run_init pam file to remove pam-stack- Update to match NSA * Fixed warnings in load_policy. * Rewrote load_policy to use the new selinux_mkload_policy() interface provided by libselinux.- Rebuild with newer libararies- Update to match NSA * Merged patch to update semodule to the new libsemanage API and improve the user interface from Karl MacMillan (Tresys). * Modified semodule for the create/connect API split.- More fixes to stop find from following nfs paths- Update to match NSA * Merged run_init open_init_pty bug fix from Manoj Srivastava (unblock SIGCHLD). Bug reported by Erich Schubert.- Update to match NSA * Merged error shadowing bug fix for restorecon from Dan Walsh. * Merged setfiles usage/man page update for -r option from Dan Walsh. * Merged fixfiles -C patch to ignore :s0 addition on update to a MCS/MLS policy from Dan Walsh.- Add chcat script for use with chcon.- Fix restorecon to exit with error code* Updated version for release.- Add prereq for mount command- Update to match NSA * Changed setfiles -c to translate the context to raw format prior to calling libsepol.- Use new version of libsemange and require it for install- Ignore s0 in file context- Update to match NSA * Merged patch for fixfiles -C from Dan Walsh.- Update to match NSA * Merged fixes for semodule_link and sestatus from Serge Hallyn (IBM). Bugs found by Coverity.- Fix fixfiles to call sort -u followed by sort -d.- Change fixfiles to ignore /home directory on updates- Update to match NSA * Merged patch to move module read/write code from libsemanage to libsepol from Jason Tang (Tresys).- Update to match NSA * Changed semodule* to link with libsemanage.- Update to match NSA * Merged restorecon patch from Ivan Gyurdiev.- Update to match NSA * Merged load_policy, newrole, and genhomedircon patches from Red Hat.- Update to match NSA * Merged loadable module support from Tresys Technology.- Update to match NSA * Updated version for release.- Fix Ivan's patch for user role changes- Add Ivan's patch for user role changes in genhomedircon- Fix warning message on reload of booleans- Update to match NSA * Merged fixfiles and newrole patch from Dan Walsh. * Merged audit2why man page from Dan Walsh.- Add call to pam_acct_mgmt in newrole.- Update to match NSA * Extended audit2why to incorporate booleans and local user settings when analyzing audit messages.- Update to match NSA * Updated audit2why for sepol_ prefixes on Flask types to avoid namespace collision with libselinux, and to include now.- Fix fixfiles to accept -f - Update to match NSA * Added audit2why utility.- Change -f flag in fixfiles to remove stuff from /tmp - Change -F flag to pass -F flag to restorecon/fixfiles. (IE Force relabel).- Update to match NSA * Fixed signed/unsigned pointer bug in load_policy. * Reverted context validation patch for genhomedircon.- Update to match NSA * Reverted load_policy is_selinux_enabled patch from Dan Walsh. Otherwise, an initial policy load cannot be performed using load_policy, e.g. for anaconda.- remove is_selinux_enabled check from load_policy (Bad idea)- Update to version from NSA * Merged load_policy is_selinux_enabled patch from Dan Walsh. * Merged restorecon verbose output patch from Dan Walsh. * Merged setfiles altroot patch from Chris PeBenito.- Don't run load_policy on a non SELinux kernel.- Update to version from NSA * Merged context validation patch for genhomedircon from Eric Paris. - Fix verbose output of restorecon- Update to version from NSA * Changed setfiles -c to call set_matchpathcon_flags(3) to turn off processing of .homedirs and .local.- Update to released version from NSA * Merged rewrite of genhomedircon by Eric Paris. * Changed fixfiles to relabel jfs since it now supports security xattrs (as of 2.6.11). Removed reiserfs until 2.6.12 is released with fixed support for reiserfs and selinux.- Update to released version from NSA - Patch genhomedircon to handle passwd in different places.- Fix genhomedircon to not put bad userad error in file_contexts.homedir- Cleanup error reporting* Merged load_policy and genhomedircon patch from Dan Walsh.- Fix genhomedircon to add extr "\n"- Fix genhomedircon to handle blank users- Update to latest from NSA - Add call to libsepol- Fix genhomedircon to handle root - Fix fixfiles to better handle file system types- Fix genhomedircon to handle spaces in SELINUXPOLICYTYPE- Update to latest from NSA * Merged several fixes from Ulrich Drepper.- Apply Uli patch * The Makefiles should use the -Wall option even if compiled in beehive * Add -W, too * use -Werror when used outside of beehive. This could also be used unconditionally * setfiles/setfiles.c: fix resulting warning * restorecon/restorecon.c: Likewise * run_init/open_init_pty.c: argc hasn't been checked, the program would crash if called without parameters. ignore the return value of nice properly. * run_init: don't link with -ldl lutil * load_policy: that's the bad bug. pointer to unsigned int is passed, size_t is written to. fails on 64-bit archs * sestatus: signed vs unsigned problem * newrole: don't link with -ldl- Update to latest from NSA * Changed load_policy to fall back to the original policy upon an error from sepol_genusers().- Only restorecon on ext[23], reiser and xfs- Update to latest from NSA * Merged new genhomedircon script from Dan Walsh. * Changed load_policy to call sepol_genusers().- Remove Red Hat rhpl usage - Add back in original syntax - Update man page to match new syntax- Fix genhomedircon regular expression - Fix exclude in restorecon- Trap failure on write - Rewrite genhomedircon to generate file_context.homedirs - several passes- Update from NSA * Changed relabel Makefile target to use restorecon.- Update from NSA * Merged restorecon patch from Dan Walsh.- Update from NSA * Merged further change to fixfiles -C from Dan Walsh. * Merged updated fixfiles script from Dan Walsh. - Fix error handling of restorecon- Fix sestatus for longer booleans- More cleanup of fixfiles sed patch * Merged further patches for restorecon/setfiles -e and fixfiles -C.- More cleanup of fixfiles sed patch- More cleanup of fixfiles sed patch - Upgrade to latest from NSA * Merged patch for open_init_pty from Manoj Srivastava.- More cleanup of sed patch - Upgrade to latest from NSA * Merged updated fixfiles script from Dan Walsh. * Merged updated man page for fixfiles from Dan Walsh and re-added unzipped. * Reverted fixfiles patch for file_contexts.local; obsoleted by setfiles rewrite. * Merged error handling patch for restorecon from Dan Walsh. * Merged semi raw mode for open_init_pty helper from Manoj Srivastava. * Rewrote setfiles to use matchpathcon and the new interfaces exported by libselinux (>= 1.21.5).- Fix fixfiles patch - Upgrade to latest from NSA * Prevent overflow of spec array in setfiles. - Add diff comparason between file_contexts to fixfiles - Allow restorecon to give an warning on file not found instead of exiting- Upgrade to latest from NSA * Merged newrole -l support from Darrel Goeddel (TCS). - Fix genhomedircon STARTING_UID- Upgrade to latest from NSA * Merged fixfiles patch for file_contexts.local from Dan Walsh.- Temp file needs to be created in /etc/selinux/POLICYTYPE/contexts/files/ directory.- Upgrade to latest from NSA * Fixed restorecon to not treat errors from is_context_customizable() as a customizable context. * Merged setfiles/restorecon patch to not reset user field unless -F option is specified from Dan Walsh. * Merged open_init_pty helper for run_init from Manoj Srivastava. * Merged audit2allow and genhomedircon man pages from Manoj Srivastava.- Don't change user componant if it is all that changed unless forced. - Change fixfiles to concatinate file_context.local for setfiles- Update to latest from NSA- Fix restorecon segfault- Update to latest from NSA * Merged fixfiles rewrite from Dan Walsh. * Merged restorecon patch from Dan Walsh.- Update to latest from NSA * Merged fixfiles and restorecon patches from Dan Walsh. * Don't display change if only user part changed.- Fix fixfiles handling of rpm - Fix restorecon to not warn on symlinks unless -v -v - Fix output of verbose to show old context as well as new context- Update to latest from NSA * Changed restorecon to ignore ENOENT errors from matchpathcon. * Merged nonls patch from Chris PeBenito.- Update to latest from NSA * Removed fixfiles.cron. * Merged run_init.8 patch from Dan Walsh.- Fix run_init.8 to refer to correct location of initrc_context- Upgrade to latest from NSA- Add code to sestatus to output the current policy from config file- Patch audit2allow to return self and no brackets if only one rule- Update to latest from NSA - Eliminate fixfiles.cron- Only run fixfiles.cron once a week, and eliminate null message- Update with NSA * Added -l option to setfiles to log changes via syslog. * Merged -e option to setfiles to exclude directories. * Merged -R option to restorecon for recursive descent.- Add -e (exclude directory) switch to setfiles - Add syslog to setfiles- Add -R (recursive) switch to restorecon.- Change to only display to terminal if tty is specified- Only display to stdout if logfile not specified- Add Steve Grubb patch to cleanup log files.- Add optargs - Update to match NSA- Add fix to get cdrom info from /proc/media in fixfiles.- Add Steve Grub patches for * Fix fixfiles.cron MAILTO * Several problems in sestatus- Add -q (quiet) qualifier to load_policy to not report warnings- Add requires for libsepol >= 1.1.1- Update to latest from upstream- Update to latest from upstream - Includes Colin patch for verifying file_contexts- Update to latest from upstream- Update to latest from upstream- Add Man page for load_policy- new version from NSA uses libsepol- Fix genhomedircon join command- Latest from NSA- Change fixfiles to not change when running a check- Fix restorecon getopt call to stop hang on IBM Arches- Only mail files less than 100 lines from fixfiles.cron - Add Russell's fix for genhomedircon- Latest from NSA- Add ro warnings- Latest from NSA - Fix fixfiles.cron to delete outfile- Fix fixfiles.cron to not run on non SELinux boxes - Fix several problems in fixfiles and fixfiles.cron- Update from NSA - Add cron capability to fixfiles- Update from NSA- Fix fixfiles to handle no rpm file on relabel- Update latest from NSA - Add -o option to setfiles to save output of any files with incorrect context.- Add rpm support to fixfiles - Update restorecon to add file input support- Update with NSA Latest- rebuilt- Fix run_init to use policy formats- Update from NSA- Change location of file_context file- Change to use /etc/sysconfig/selinux to determine location of policy files- Update to latest from NSA - Change fixfiles to prompt before deleteing /tmp files- have restorecon ingnore <> - Hand matchpathcon the file status- Update to match NSA- Move location of log file to /var/tmp- Better grep command for bind- Eliminate bind and context mounts- update to match NSA- Log fixfiles to the /tmp directory- Add patch to fall back to authenticating via uid if the current user's SELinux user identity is the default identity - Add BuildRequires pam-devel- Add man page, thanks to Richard Halley- Upgrade to latest from NSA- Update with latest from gentoo and NSA- Check return codes in sestatus.c- Fix sestatus to not double free - Fix sestatus.conf to be unix format- Warn on setfiles failure to relabel.- Updated version of sestatus- Fix fixfiles to checklabel properly- add sestatus- Change free call to freecon - Cleanup- Remove setfiles-assoc patch - Fix restorecon to not crash on missing dir- Eliminate trailing / in restorecon- Add Verbosity check- Change restorecon to not follow symlinks. It is too difficult and confusing - to figure out the file context for the file pointed to by a symlink.- Fix restorecon- Read restorecon patch- Change genhomedircon to take POLICYSOURCEDIR from command line- Add checkselinux - move fixfiles and restorecon to /sbin- Restore patch of genhomedircon- Add setfiles-assoc patch to try to freeup memory use- Add fixlabels- Update to latest from NSA- Increase the size of buffer accepted by setfiles to BUFSIZ.- genhomedircon should complete even if it can't read /etc/default/useradd- fix restorecon to relabel unlabled files.- Add genhomedircon from tresys - Fixed patch for restorecon- exit out when selinux is not enabled- Fix minor bugs in restorecon- Add restorecon c program- Update to latest tarball from NSA- Add sort patch- rebuilt- remove mods to run_init since init scripts don't require it anymore- fix genhomedircon not to return and error- add setfiles quiet patch- add checkcon to verify context match file_context- fix command parsing restorecon- Add restorecon- Update to latest NSA 1.4- Change run_init.console to run as run_init_t- Remove dietcc since load_policy is not in mkinitrd - Change to use CONSOLEHELPER flag- Don't authenticate run_init when used with consolehelper- Add run_init consolehelper link- Add russell spead up patch to deal with file path stems- Build load_policy with diet gcc in order to save space on initrd- Update with NSA latest- remove i18n - Temp remove gtk support- Remove wnck requirement- Add gtk support to run_init- Add internationalization- Initial version/bin/sh/bin/shpolicycoreutils  !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~afamarasbalbebgbnbnbrbscacscydadedeeleneseteufafifrgaglguhehihrhuiaidiloisitjakakkkmknkoltlvmaimkmlmrmsnbndsnenlnnnsoorpaplptptrorusiskslsqsrsr@latinsvtatetgthtrukurvizhzhzu2.9-18.el82.9-18.el82.9-18.el82.0.61-2      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijkllmmmmmmmmmmmmmnoopppppppppppppsestatus.confseconsemodule_expandsemodule_linksemodule_packagesemodule_unpackage.build-id23b305f03d12c4bb76f1ddb1083a9934359328132e19033e17e365639701e94b069356c88b77be0e3466d19f9fcf073bb64d5beb3243d5d37cf904984036f9998bd0880e0f968ec89f0c0c6c8b114db964d95698fe9e05656c020a3bcae8e9102db4d8f3799ab42a1e908184bdef95e5ab2004f7780fc3a1b7d02fc735e681b38ebd4df259d93166a9bf9179bfa3a74ccda1ffd489133b6370dbf2068e260d99d3e2f8c9a47bd74515bd6891e02c167a8d0fd866dbfb7ec0999e9baa04533b36100b3242617486eaecf8d366ab5fa2aa5f26aa86772974638cdbc72ef9841749077a7d0bc43cf6550a573e0e71d40c2cselinux-autorelabel-generator.shselinux-autorelabel-mark.serviceselinux-autorelabel.serviceselinux-autorelabel.targethllppselinux-autorelabelfixfilesgenhomedirconload_policyrestoreconrestorecon_xattrsemodulesestatussetfilessetseboolbash-completionsetseboolpolicycoreutilspolicycoreutilsCOPYINGpolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mopolicycoreutils.mosecon.1.gzselinux_config.5.gzsestatus.conf.5.gzfixfiles.8.gzgenhomedircon.8.gzload_policy.8.gzrestorecon.8.gzrestorecon_xattr.8.gzsemodule.8.gzsemodule_expand.8.gzsemodule_link.8.gzsemodule_package.8.gzsemodule_unpackage.8.gzsestatus.8.gzsetfiles.8.gzsetsebool.8.gzsecon.1.gzselinux_config.5.gzsestatus.conf.5.gzfixfiles.8.gzgenhomedircon.8.gzload_policy.8.gzrestorecon.8.gzrestorecon_xattr.8.gzsemodule.8.gzsemodule_expand.8.gzsemodule_link.8.gzsemodule_package.8.gzsemodule_unpackage.8.gzsestatus.8.gzsetfiles.8.gzsetsebool.8.gz/etc//usr/bin//usr/lib//usr/lib/.build-id//usr/lib/.build-id/23//usr/lib/.build-id/2e//usr/lib/.build-id/34//usr/lib/.build-id/40//usr/lib/.build-id/64//usr/lib/.build-id/79//usr/lib/.build-id/b7//usr/lib/.build-id/bf//usr/lib/.build-id/d3//usr/lib/.build-id/db//usr/lib/.build-id/ec//usr/lib/.build-id/f9//usr/lib/systemd/system-generators//usr/lib/systemd/system//usr/libexec/selinux//usr/libexec/selinux/hll//usr/sbin//usr/share//usr/share/bash-completion/completions//usr/share/doc//usr/share/licenses//usr/share/licenses/policycoreutils//usr/share/locale/af/LC_MESSAGES//usr/share/locale/am/LC_MESSAGES//usr/share/locale/ar/LC_MESSAGES//usr/share/locale/as/LC_MESSAGES//usr/share/locale/bal/LC_MESSAGES//usr/share/locale/be/LC_MESSAGES//usr/share/locale/bg/LC_MESSAGES//usr/share/locale/bn/LC_MESSAGES//usr/share/locale/bn_IN/LC_MESSAGES//usr/share/locale/br/LC_MESSAGES//usr/share/locale/bs/LC_MESSAGES//usr/share/locale/ca/LC_MESSAGES//usr/share/locale/cs/LC_MESSAGES//usr/share/locale/cy/LC_MESSAGES//usr/share/locale/da/LC_MESSAGES//usr/share/locale/de/LC_MESSAGES//usr/share/locale/de_CH/LC_MESSAGES//usr/share/locale/el/LC_MESSAGES//usr/share/locale/en_GB/LC_MESSAGES//usr/share/locale/es/LC_MESSAGES//usr/share/locale/et/LC_MESSAGES//usr/share/locale/eu/LC_MESSAGES//usr/share/locale/fa/LC_MESSAGES//usr/share/locale/fi/LC_MESSAGES//usr/share/locale/fr/LC_MESSAGES//usr/share/locale/ga/LC_MESSAGES//usr/share/locale/gl/LC_MESSAGES//usr/share/locale/gu/LC_MESSAGES//usr/share/locale/he/LC_MESSAGES//usr/share/locale/hi/LC_MESSAGES//usr/share/locale/hr/LC_MESSAGES//usr/share/locale/hu/LC_MESSAGES//usr/share/locale/ia/LC_MESSAGES//usr/share/locale/id/LC_MESSAGES//usr/share/locale/ilo/LC_MESSAGES//usr/share/locale/is/LC_MESSAGES//usr/share/locale/it/LC_MESSAGES//usr/share/locale/ja/LC_MESSAGES//usr/share/locale/ka/LC_MESSAGES//usr/share/locale/kk/LC_MESSAGES//usr/share/locale/km/LC_MESSAGES//usr/share/locale/kn/LC_MESSAGES//usr/share/locale/ko/LC_MESSAGES//usr/share/locale/lt/LC_MESSAGES//usr/share/locale/lv/LC_MESSAGES//usr/share/locale/mai/LC_MESSAGES//usr/share/locale/mk/LC_MESSAGES//usr/share/locale/ml/LC_MESSAGES//usr/share/locale/mr/LC_MESSAGES//usr/share/locale/ms/LC_MESSAGES//usr/share/locale/nb/LC_MESSAGES//usr/share/locale/nds/LC_MESSAGES//usr/share/locale/ne/LC_MESSAGES//usr/share/locale/nl/LC_MESSAGES//usr/share/locale/nn/LC_MESSAGES//usr/share/locale/nso/LC_MESSAGES//usr/share/locale/or/LC_MESSAGES//usr/share/locale/pa/LC_MESSAGES//usr/share/locale/pl/LC_MESSAGES//usr/share/locale/pt/LC_MESSAGES//usr/share/locale/pt_BR/LC_MESSAGES//usr/share/locale/ro/LC_MESSAGES//usr/share/locale/ru/LC_MESSAGES//usr/share/locale/si/LC_MESSAGES//usr/share/locale/sk/LC_MESSAGES//usr/share/locale/sl/LC_MESSAGES//usr/share/locale/sq/LC_MESSAGES//usr/share/locale/sr/LC_MESSAGES//usr/share/locale/sr@latin/LC_MESSAGES//usr/share/locale/sv/LC_MESSAGES//usr/share/locale/ta/LC_MESSAGES//usr/share/locale/te/LC_MESSAGES//usr/share/locale/tg/LC_MESSAGES//usr/share/locale/th/LC_MESSAGES//usr/share/locale/tr/LC_MESSAGES//usr/share/locale/uk/LC_MESSAGES//usr/share/locale/ur/LC_MESSAGES//usr/share/locale/vi/LC_MESSAGES//usr/share/locale/zh_CN/LC_MESSAGES//usr/share/locale/zh_TW/LC_MESSAGES//usr/share/locale/zu/LC_MESSAGES//usr/share/man/man1//usr/share/man/man5//usr/share/man/man8//usr/share/man/ru/man1//usr/share/man/ru/man5//usr/share/man/ru/man8/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -mcpu=power8 -mtune=power8 -funwind-tables -fstack-clash-protectioncpioxz2ppc64le-redhat-linux-gnu   ASCII textELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, interpreter /lib64/ld64.so.2, for GNU/Linux 3.10.0, BuildID[sha1]=bfa3a74ccda1ffd489133b6370dbf2068e260d99, strippedELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, interpreter /lib64/ld64.so.2, for GNU/Linux 3.10.0, BuildID[sha1]=64d95698fe9e05656c020a3bcae8e9102db4d8f3, strippedELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, interpreter /lib64/ld64.so.2, for GNU/Linux 3.10.0, BuildID[sha1]=dbfb7ec0999e9baa04533b36100b3242617486ea, strippedELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, interpreter /lib64/ld64.so.2, for GNU/Linux 3.10.0, BuildID[sha1]=2e19033e17e365639701e94b069356c88b77be0e, strippedELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, interpreter /lib64/ld64.so.2, for GNU/Linux 3.10.0, BuildID[sha1]=b7d02fc735e681b38ebd4df259d93166a9bf9179, strippeddirectoryPOSIX shell script, ASCII text executableELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, interpreter /lib64/ld64.so.2, for GNU/Linux 3.10.0, BuildID[sha1]=d3e2f8c9a47bd74515bd6891e02c167a8d0fd866, strippedBourne-Again shell script, ASCII text executableELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, interpreter /lib64/ld64.so.2, for GNU/Linux 3.10.0, BuildID[sha1]=4036f9998bd0880e0f968ec89f0c0c6c8b114db9, strippedELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, interpreter /lib64/ld64.so.2, for GNU/Linux 3.10.0, BuildID[sha1]=f9841749077a7d0bc43cf6550a573e0e71d40c2c, strippedELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, interpreter /lib64/ld64.so.2, for GNU/Linux 3.10.0, BuildID[sha1]=ecf8d366ab5fa2aa5f26aa86772974638cdbc72e, strippedELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, interpreter /lib64/ld64.so.2, for GNU/Linux 3.10.0, BuildID[sha1]=799ab42a1e908184bdef95e5ab2004f7780fc3a1, strippedELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, interpreter /lib64/ld64.so.2, for GNU/Linux 3.10.0, BuildID[sha1]=3466d19f9fcf073bb64d5beb3243d5d37cf90498, strippedELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, interpreter /lib64/ld64.so.2, for GNU/Linux 3.10.0, BuildID[sha1]=23b305f03d12c4bb76f1ddb1083a993435932813, strippedtroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)troff or preprocessor input, ASCII text, with very long lines (gzip compressed data, max compression, from Unix)troff or preprocessor input, UTF-8 Unicode text (gzip compressed data, max compression, from Unix)troff or preprocessor input, UTF-8 Unicode text, with very long lines (gzip compressed data, max compression, from Unix)  !'.6:BR RR RR RRR RR RRR RR RRR RR RRR RRRRR RR RRRRR RRR RR R RRR R RR RRRRRR RR RR RRR R RRR R RR RRRRR Rutf-8d30d245e586655292c012c174cb3cf4575d3a076063a30d552041722102082dd?7zXZ !#,>4] b2u Q{LRfp;$ uhďk@h-DIn3Kv@ujdԊj=5WIt{0aN V.x2Br)&_RIPabD ڀ> 01\7ddSxkpԫIQkpf1VRMZ/ơKeȄZL* 8:ڀdˀ=19&{ Qn~v(үÝ-\ϽK5pi%~[ș_1GE ؞@pꅩgtܿx@[9Tfgj־Kn˒1\af ";^ `j~c::f6wAm>_ SA*Ka˜UJeHY[3+^:Q] C?=´stGd:h딄Mjir9GUrYTAQb* 2?'>'L޹ujDjjGu_CX-9e*?ӳ"-ŇS@#PaW7~<2{1 XOPrRڪ{d,<)A&־Q/%|PF$FES5U%YWm6t7-YLbcuJ,y|"VlkÕwi6(caШ#Ç.ˡ΅ؠ .SM}9ru#þo٩X0 5Y7 }y_V,+?8u'/td/xLw꫐a:r,ʉW~FuX\FKn0_e{wn,i!-xK쌭ZX@Lxs H_lҷʩ˲8r}Hp"5sݩ_XCnV %.#% PrVw\څ.0qn6=OV`>;Ǭ`L@;DUtj$w2^[j#FYbnoJAiv\}()۫K=j~|ہR]H ǡȤߦ.@u}4bK, uϤT_8o?/9&4A28k/sib!eỄUܟ~񌏘6t#BR yCeczͫW} %8H-`d=} S-MjئRBp 4:C'9_XO zTnGʈwOZ s<M,f?HiT|fVW:!!^p7w[;)oWScԆ)Y VvҊ`٪'4|IeBVHw]s^Tkү+ Px&K]/)[ӧdz즃@.k\xt7"껲\p yii[wczy2m (ahqX˧{M+UsFu2VV1G*yәIY;֎fPُZ1h2E|jc'' B9:=e ¢9oM.vee5)?PQ {:֕ˈơýM :9m rTL9\Gl+-:Efo! 6 8#L+[?|?O݋ssj,)RILr-͑h9"O!q9e֚۫Lq3HU`ˆ<T٠2mXMTpRzG- # ϔS8_d=r=G> |P>Y[bjy"\)T=dfd$yf36HRf&L<!K`kՠ*mY~SH$idG`3~Hacṡ<N|'KiUk6dh'xNE塹tV-J_ >\eNXU:5x1Lp8WiCE] _-^.F\ZS0}wMEp$Ė VӲ-pgMN=ϕ67M?R$--}6?VO s829&MnQ<$H$_S#,m0'0ݬ ;v.D_uZ W?>^0ڨl\3y-;8'{:EOw x:*§)躃Ñ4 <yaa18 ' дcsڔZBA\K\ׂR>m%<8\FmX^:e\^4RWP3-a:HM\M;=( {=jO w"DMf]TTX'#%ӲT_Kjnk9OF"\ߊjS]+o{Fx_HoL<ߏ`O+CZa<"c]-_#T0[y:0hb-NY.L7m,=*b>c-w*BC݄yKi R-PP`C \Ox$}F̭t~džɝ_#ot}ev+ru>FBxr27Ы>Uw19.[ӭ+[lۢ?OK .ƍ2< usΧ|X mfSP5W5dHBBi.N'a:VG8H\lŠf3]=;feBb۹7M!OQ-`(NdtC;TjQg Zù/-۟\.) DOw/ 'SɷU|:Q-%U::h$ ȦzOOR鉁qU/A|m`_:t90>k99wIit~m&5ȊcRԡS&$wrRzRp(Jy9d vn# ދB a 960Cj`vR"TAگ68Xжdۈoq;By{Adeh73:h3$!+؂Un̿f xA$O.FA,00p݅A${BQ`Ʊ%X i/ oD_ӧT)R[G*IS/524m6 rDCIRble͕(!@[kvBy-'b0-3 Tb$b`[9~d/M !!PO>od(} I策rU.>mvi\#=nHGuDf-3+bWU9R>8 X atC Hخȭާf= h$s^@Övyv`= AԞWKdhG+δѿ{%wWs<I̓흚b9Wc64n9 EjŒ"F?idwHN.IXP${0.gd 7 y4&T-N:IoG}McZG/o"cېd&=t2a`ZQ`ǤKF.:R, 6#4PW2IxG>e(#kr`7A?/ү`u(gp5rT*1~@ P--rn\Q\+lQ բ{8xkzECHʠ"J 腐lhZm;*fS7v%RP\sև2^/&xP泄X+e+0+E_d )8@&ͱ2q] 2F]և4A}G9 31:םdczv&Ak­{UIGpC}1/9y=r5H+$ujڒzQcs# iA$43C;WZpx~M[R@_'~RŅ,0;enb3 pj湪،pn. 9"Q9\:zJ`WğcVNjaS߶f*;b^_F4#2Z,6x";*#`mB-g/z H=%;j }t>ww5yR.K{X/ħxp6a݀s@yݠp兯%Ж/"nXh'/}XUͩDh<&Ieu{Q!Bw+LyKzC#bc:nu3^\i@9n;Ez|^Jxt]U=.mINgqzoKl7'0 aGv"?wq^9QIБw15)ĩ[qu[330t!>)rmIqWFxwVB\rP@p 5Gspxŋ %_埊Ak0NVWq~)wn^ <\TP6tlE~cIpDٸYo[-x;5Ŀf@Huy,cI\|'sYsZ>D8ݩ^B> ͚LyKv X?Ȧcmj$\d)5u}zpk^Mb{p kmRڽM58 v:2]|*FM쁂AA ]=r)4b}" &|a_nE>M'wQ78+"&19LL Nx0ݽ\H02?} L慯t6 wҘ!H]G{&mɄ.>ojOu"f!>>&J^xź43j/z1VFgȣM4Wî+ X ݬ"i0(D X%'6⼙iYJH h/o_ކ'A#U³/g3][2ߑeh-Hs` pS[0hgn[hj`UacY,.xFeJP6OJ7HS"Y SGϊ hV*BXf>Qv~|I cڤ2hG+W!ĸ_ B*Wb(% `?pwN?1W\2@78c\azZYy檿>WbEW1< UӲ;a k/hƷ~J7|)IXj@J2n" zezeW848n0߹M%[cd/s&ӡ`;sFAs Uo_QB)|ucz1,bdIqwn nPjsXX4oiHgk0Ξ%\kiߑl51E2fF7ϕ;nÀgaQ6Ah 4\Bکľ FMUn%*6"Q!m!̺Ig,H${QT`_G)y =-%'lQӼծr6ʌ\g TUjm.4e}aCCEuH֍Ɏ@T=J`vA TDe-5,6akvuqle$<&0 ~ž6_0rx$ IŔ{G]zjTa61rGQйMҽT՝z;En[>v8G5RHOK*|khe>tׇDIy]gNH*%2E SXиJ̎tš-&Dw^ʟr5V YwyɆ \}N?Mwupq,Ga'z8n#UV4W =Ļ VH|уoAoČyJ泍NrޱIr3#*"5(6IW?áTz.D>^1X{s'o߳뤲\ah$j؜Q^wx@F1Ir(ֺ%5Dz?q@;5zH|:JΣr ֢ %?Z%Ҫ~K ,#)޻LI&ɤh귫g7Q3Ǻi$LVƘH[{}y HyLGHo6wWJR~ ,*̌+2BE!rWk=% (BPvLSB%rGO:8nK`F% )# 4f'+"7Q3 5a_\,(%Nxm1p\T$/LSlGd%7i4]p!\$![QRSJaA5{paۺq<vqk-+M[Dmʏۧ7L䏹I!_?$aVC X;U) n~yXc1&_nN `Y;t[Q`tyFΎɢMē6,˲Y d*HAbil/w-Ɠ?v&OGB%L^2ᯀFP"w'HZe:,lZr(˰6.?15)V;WQ;0)ܰa/l^%]I{c=`4zD^4{ ^`N讗0[s~9#6z47ɱH3|{^e -| ~fFEM+-քkKrd$Ȕłp q(٪PcHЊTȍIN^iP, E*yPFaɵRyh#G ~qBF84Oa,sǪYA!Sw9ӽQoN1" 6Jp+KڨV;To)Q#McP)Z_3-QxK<%fv?}Ȕb!LX/,y{_Gbaɥʇ1K2bGevO3H"&bjL"E<insF1L(|tП HfMŘC>݀ TVpWU<%A{7%BlG.J8";(!b>m㗨."wNtfNU7K,VN6s$2u$ \ViB>Uǹ8XxgXL&eK ]YɦzS '9:f3Fφ>f RO^Kw."NM{x&H![mHTXm@p*^񿼃#״FP+ Z{5n$(5yLKCy]ebl:)ˋGQ & \QQw=={v(f`qPpcBi_FmtV+w>1e!X@6஭>lv%s ?ycB̃PBx@JSEB80}jlg+z.*0m~M^~ZᾋN5.y*vt/&-;@q"X|KޣCYNv-(92JV 4RBV&Z"T7po ƦE 3ΊL*WMÜZ0_6O{ӃrWtO *RfmXIGv\& ׺"TL HHʚQxco DN C= }7,ҦS_K^r_9 -$yZ FJ~k -b?4GΏd727B22ҋ&nK^xmLR{}I˧ڢ>-Bߎ*)C"[k٪bfı!8ip 1{ZU#rNa-v[lR޿n;yyTB!B1;Nؑ5 O /`v `,w曋Og} ;weJ3na);!@eUh}۳8\<}. d訫jHIchiĸIgW $%_ڨoWeK-(sٓ|J?RO줻V`̈́he0i:UyUs5_!ےғ`oRp@k9@!ϷvWʭ o\:Ze;TumO͕pTA15Պ5S,ؑq"ehَ!4Q q]$%a?9(` PFCGU㳞+ poBH)O#c5O"|̖L B,Vrn|,u ١%dWύK CZ:|3SmNOVT[^p<5 o8Tuav;r"=+%gmTez9Qc̀Wb5o_T /@G%uBG,FGkl:~Q )] ȑ3\LƆ`syTH(/K+Idzf\8&Fz]]@x BYdBR吸I yC!1K.C #gK* ŴQӈ̅4-;3\0XX>_o"0vbȦT㞵wrT2o$s,cٛC)pl֢o'ن}d"s+/̦_0I' OAAS[u׶*'3Lm+ZI#}7{1LO:K{`|=eto̝ux07Z6& ̶7W8OȨStei4ϑOٙYe-RMz6j È*rB_|iR*̣JC06p~! PSKexk6KC+`ΔgT 6;iEZO^a1rK\.h5 0SmfRKz*u6rOV "4^]g>?j ^LC;DQ3@ "ƝiG LQ17oU?oh{e֤э2Gi)Dϸ Ĵ\l; ^ωpڄ52/m1\mOU\& 8"^9Q/P㟄k4բul26s׎F! WXh` 59Wg_嚩zܒ5Fb EX;9cP_ <OyyG{96/0W Ŷy+)|pMH4>.e|r8l5NAldJ5;kn6i+E$tB0P5f\NgJ'4toX‡xMcJ6Jvɚon| GdJS%4@ ],H ŝ8Fjyx+-Kvז$Oͥk* kO??!Jc&v_۸W 15Seqf 2MwR;+SixftvUI37n>FS+0}!+#,4JAF̮='Q f>ہMrܑ ~U L Lm3ˑ㊍;EQ޺ty|)l( kxaX8.Da!ΨEKTqy@ D͖DAt& {`*q]̗>>P -mQ{LWB_螸P0=k IG_(xYYfga-\8Cqv+ؙŒL"CfՑeΉYCWə.aTs|F`DPyW3ج1d'rѰlj ̊dm:n 5 UǺJ1Fx7Ͼ -|{I I^WWǵc/!G&Z ~.6z1Rg):'p}%v{]i>]Hh`}Ƨ.0J<_ݧpT"߯_JopN a|0ji<<T=$('TI8 粮Em $vi]`#Xggxy݅77sEs Z3I|~ G@p;4 )c!8'jy^!FCUS:PZmF\s5pr_g;̕l|t/MA١ƯV&]+ h$睒}D"r!,nv*R 8mUV0a>=LZͪ1]1 I_/\D<@|VwT#VO;KNCqt۽GԞj'_9(Vb7הKRwVv#1a(d"K JV}b蝏ίS(E<8/ujaw,A2I~Bz|_'7Aa''aĬ{̥bei"H a{+ˍ(F;rKVVڥ (YYI=olJSDKQ@QÜrQFVtVԷ^r6(1=A_JC~iQPF,S.}̓fFBf Oҁv]tfE+g9:<e\, JaKfEp!U/Vc+%=Y૶=_Fxzn|b,ʇT&ulh+ņ'&fwe*kg=.'}jO2c1$NE=bv޴D)g)}6R ϊ91 /F&LĎ'Y+RȆm<0Q#5S[) BSҲnxvWٜ;:֏LFVTm&S'eQ>#˪YٛZ`FM(13߷awm0U!~O+&,EYb<ɽ[ˑI^A3y; m݊W$[:8c'3XHw@l6B I8s|( v<#Pk>ա3LVVB֟rbv4"֮%-XIj3mWEׯ0:F0uJ6kkW$69W*[}c_ JaPP\T*&[WM ENEE(^[c%ewq@?3(N6U7Qk f@YeʖҺAncḂ]询a j>l{BOha57,d86[.$\"y>*sM8X18a2闙'6UW薴]#3gߍ 9l"bOh9^fE . xO3Y.yX'c/B`da eR?+g,ჼ0wxa_҇9Ϋa#]v3'Qœg(y_uleE^&e;ĸ53b>^wh+P2V+W|?x)ηNPh$b^S Q ޥmt圯*zJXڭw HWd W0cnݒԸT:5 46+ Sy6 (|t =;Jnޙ@ɻG ҃-WJ)s5ì5UnVI[:ņx4jeҘ8Fqp1JiOVN\ĉ !趨ME! ^r;#ej Ž7CƠ!YTP Gh(gn7@Ij9j;3./yйo8qN մ@Z5 EZg +lMʌ/JΊDVpl$4c=6-sVfRy t.@w[[0It' Rr/yKoNShBsGO{6җF'&v 4B@qW]^Bx$G,3_Gu~ƾqUT1+Z3fTWf}ꉾLM! c[({=:4E-,& 6f?Vên;PbKa)T*Ad)81r/M"AxCT8#F{‚ ']-QҨ0|If2ﳠ#<{ňç|](z-M!5(G*;@,iRPmS=ȧ2ѵx'dDy +9E ]cj`͝~Ufa{ hR&;٨̼DDbӻd-Q"Z+o<4@Bz@DžǿQD>N&[lyy+1/-KPu˲I 2 ?Il" @ZX2aDA +z~[ pU*Jo1Y-Q0eFXk74 Cq,j/&ȉ$mev1$14y6oEХNѧkSKWc^/zPm77~jIW Lv=~u ި$,3~dv ToR 1&SQ@{FБ ǭKw<3IF&;.ˆ#)Ƕ??UЯVKEqq ~^8!B[VdwⲜVnEӱ/p"de>oHI5cp`$0=ҾhG1_л;@rrLsS_LZ9mK F⹾F~oǨE3x,X++:-7v7yؼsnWhԠ$zl-A}.aBh@bt\*WTHP|D^`Uiw(f |U?&'K/]z鄩.f=|".Mg(jǙiUHz䚭<5U~ヹEQ%y#z0o<؝ MnT9<>x+ʶkDS/" ݗjU'b?35npk_bC֊ *3 |qr-Vګ?)?)ar9I"t/Q(;6YS,ClEYiJJƸ?vD Խ_3|,7zc2L]vNeOJUqԠbx3c.pwX,^[U&v0_t.Fq9-nEOUi(ijJ%'ti:)p1_쮤-ɜ^bS9C(RmbZG|oRBȓ8T3*0HD'Iy}PHFž-,j!W|AkIl׬iXo |,zI*7!3Py.2e\feC4茟/h"-MoTI0ЩiAiU:nD 'D3Y/pg2M8׎ok8~GD"b1 47GqPx,@ݴh"t`KDz(_džEhI\]Qav<~_=)BmOH1*`I껦B!Z8@z6:Ƨ#""??M,z_`tJ7 )V@L\6Rf>S/JZʶas ^&Pfp2OP~p_Ӥ{}敐 YswD& Yҫ,nf ˅pĮGeHs%e a[*j+VÞ0l^Q$?EHRy5(2#6f4C>XQOU1ދ akU0'/2`Mh"˯:]> HmZ-xWe>qj-_ź1~0iEh4;g \Ӝ7s0W72$N_cJCnwTTs]s>=:Q3'M3 "2nE.'Tio(%,c'/_, 'Ja)}+nN__).n ayBRgHt\>%?q7 ̵;X|uЛo&u62LtO &L$ǖ9,Xn7L2rJ:BW7:9Z~x%9,#mA{f$ܫֵ6Q~9}*_ حZ@$ Հ:_r0y?eY@ _쨚GiHhrȭp:@tF?t/yĆwo3d=h%w4nLN8Z,r6s+942I~F`[[h\(.A'?2&}ܖJgd%ߊh89m $ru98+|dIMyG >O*dXh뀄g`Jh&gP!PCL$l]dv 9;v:4St7*yj:s`/,Zкe׶)d>Vz |rY(5z#6ֹ9#v -qU +K4hsf%7!' 4VΐvNgmWf͡*0UnryJuQ[ ?DXhWt2Ԯ@ܾZl{ZW(:8>Pw7ZM~ou!|B柵.Q\@xJ߰8jrsփ3<}c_}Li< z /E0tVANDOك0E@fR\yjO{Ο/6SHbwFEw9ZLSԖݳ aj}P}ɳQltBz({RPҪh$g]0֊ -$"IDqLQ`-aQE~a Ax/y*8bNn_IcGR:d٤ {>޻;:9pF 9-]Wvqb^(u8:a}ӭ^oQzgàViAAM6ļ_"pQ?>[#p/7/KX-6o!^^Zc ǩ(.A}e7F,@!g2Pt5`*amΊKŵZoՕ=jkj^&(S-aJ <.ӡz&Z5K @iEEwaa l^t=iWy6pc^)_M*$ t1B[ae{J6VRnZp%(זg]|Z#{|[ †#&ւV$`34T"C6πvhzuy;͂)?IeO"{>s&(E X@ G2ӲA\^ PVj 4_)-ȯ+.hjBEl*9[?4 XZB2|qB)֮ 8jj[G申tK;ie]fˉ~ΞܩJ;4M7GoP)2Q_q[n(aъU/M"lYM w,ޅ=yyA*ףmt<&\U} jǴpQ;Q9=g|#f\bv"jū= "$Vo]ߖ1AfK ep4ָPzhFlX>tFNO۠+|߇g9baQ+ۅva"P!L@߱n =hwJ$c~yTO[`>΅r_r ua^lI!{%wxbk v .q@`R:+Zmg\ñvc)ͳigiar-mzx=Pjpv*+zh;T˯Vo`7p\C͐c._A?90.= ou#]7?)j۟%}8*ẑ Y&B)N~hǵqd/h]6/\ 4Iv&7GաQ2붋^EflwR@Pg#2 n'Zy 'lLuhr|)FV_/f/8xlj{*2b.veɽ|uo` k#1_)v: KUy]o=SLwUR)Ϩ> koִW8 E9cA֬y}#/Kz&:gAb|Sk3Q wbh]4CնX,qA=#Nޏ~iǴ܂b[eySG_uZIUI'wt_**1T jƍXf;@NAGپ"x+\osOU0,1xMZQHjc[.a?o 7b"8%Je1)WD\+K/^Te,܈">Y%!.THPog ko.X?6Pzpa\Ǹǹ_ہ@ƈ1 *{jTK|$Õlv , g.:d)=~nZ>MYFk,5 +Aُ2 w%pac؅2a*t~,4g 6ʉzCfU7na8e҇ mm\ o |CrOĜ,<0l{Q)+;,tǴs"$ĒO/Qv> >\ZDXVrdN_=GEJ/4w2m>Éa0ui##=<)%Sڝx{/YVmirϠ[Ģn6Xl1R>=5#rқijiw>7+hNF q; J7s|n0LWd݌ @"IMw~&Ese,'b(wCV%~zt(qYa%3'Mϭ/6JE10㣺s*Qk]M')\Yn%l)nwX ^) U3oH!?4^%s[, T'9'$qysT;XjĔk9\吝]8Ue?b(l]3Nt T:JK&)A:u[¤fk2]>yN:^JlBGN)%0 4HtD,k 'c7!"^8lV^'{ o]}[8.gZ?}n|Ipjrc@u<}{Y =!J p#k3}+UdJ /u1b zW,\r(Oj`]fyG.x2Y("o)C9x gl(wҨYqR-BXw@8Ow?V(Cy=mry I i~rmsHL7)}$6ADa.DP-g'>Os.ܲj8tsX@}VPQxCF5|rL+B/Ltk1Cb3(;zq76~rŜH,ssyN@END)N >q'Ud:veo38'U,=feP_Nס#H,:6foq 6F%+2p`:`]F}ˊ Wqf`;M4.x+U8*r|^:7C8bzRr2Gy<&w*@΁=[lZ^.DnIM0d50 ѣgզb8EhF9\+~d]lTCgxyRH_$A @v;cwfLb/ôGz0C\9ۂ71=i9[WD7`LY<1̶ÝvI: zk&yHSlܲ QZ"RC3w2}:'Xz8YWm4|4 =@?)i.6H#PZW E{h}ov۟}s8 }}.=¯{ 'yUMk2 NxJvyq7+z[/p"oJagU r}B8nnXD"eF wRbw Ix[ `=xm $i'+HCsֹi(;7'8!9H1hb>eZޥ!󅋧e%}3@-a_&Su1]k 9GXȭn !hA3g0/')J!vUyU*9 ӲĄ1:t:?p*僞g? k)ゃ{@sٞp/KU:")}RkQ#r[(ұ Rz]TB3wZI8+;ȯ?v_̓|J-CfϫIYk,45;5y~fQf0skJ=;nb?O4[j4|H’IC-}}%I=7SW9}ٛ() xo6B8 [TR;]L-*p>L;tXׄGC8/+dP."f DJ1 Ra jh!Am*BT*]4cƦy.{\|fkްk+8>쨳+y}[fhL|_V>YsL7  }rcd|X6SLQ)G9#4IjᎤˆ$K+NAf~\A{()ViR&{G̙ERl/QLf8%. RGN922B"Y1HF '1QUw&quߨ,%t4.#HgMOqBIԩ%TЏL{뎙:wXC2SbZ'@-yUr<G5~%å} #rENlt}%6u"韮b@r JҲ.\y^#̯ki@ڴ޶XS(2,{Zo; ^3m.1( /]`KJ$R!ILÝk_Tx#g[P] {\Ƞ[=v(B 2}Oi n; p2gP1.ǜ<5jy v,R$ҷpV(ʡ8JXI!E1b tMzE"VG'0rrַYπ,yp D5~!}5 @(CxKC JbLpkg'թWTӋeP"q|R g)cWN0 \5mQCg=LUץKTu30.N6eL0\o]AaI eV{M-WC:N'1<۸QԺDlЗFZ_Y@|}cQL^;L[&+чACK˲z *@==֓,EVhbh}L|'VH)03 M/Ief4V-J̴Lo"a |Ԛl;9w[%^fz:7qe̱+iӈU6(9E\f!e{ڔa ច~ZLmޯJ!UF3TFhN QM ۧULtEFJ0MW$ulLU J~b\[=6N;#%U{{Rh,!Ar@o+X?Fo)"gz/Ye0 mU0 Rw .]ȀbeoWrԏ[ Mӱ3;4a]9*U ZUSZy(}_:QңDGuGӆd%.l E= )0uG'\$ 8'V55H"/rv UTYݡM?Q^ѿfM͏u),GkN<d&%O=̻0Xֱ>.Vb65cb7_7P;`In${=NNIMS7:Q{@;ol \#u&f7$`g*NB3լq7<6wOZ&/70<5 MHrK{aҵJJb:X9>M D6 -+Ux=7_9A*dfͽ"`D6t[)kB9ȯup4. <||.AQV !=̀]I4bv.K-~S=nl>CH (ُYrgHSqIIu]~ȓhh N%5ӡ5ajbO|(k4XQapQlHi%6@f4tH^Ә~RQvQ Kssm֝b o_65=vTsQ|'Rر6E 2s7\tp0-Apth;֌A@BCŻ mÖyi2YR#p"Zw_ǫc.mKcsՂm@l!fuE$.I/>v ri|{2Y2 # R} s ,7qy1F񣥹~x}tj p~&lZ@>4#V`v&N29ܐ{.^)!ɹ#[$YCId6+FA<~2dxb /3>#\ͪNCY;fa6-iUd2:[5fBSچ>U/6')(`CD*aK~!R)Y\[]YfgwH~{ _8N6.Dwjm+nyş⭜e*exE<:j}BS.LRY^5q4!I +AF1pe =lLQ-g' QOR8p }N@Wedt/Dó<쏀^VMx܎EbZ1Ic6Nu*PpcTjզ{,WmՃкhHFg2Xz,>s%TV'szg^EEtzAWSձՅ;FsJ7}4#&;5h~cOրy@ly&gIKrϥx+v"`-8׭EܡRX_vI{Ok=*U>3!ekj紳 g95#ei*ʮ %. .zK;Cf˳9m[7yB( gs aUt@$dz.{MSE"eR?` Oa;OHKQA2j{X9,ZN$B?/CAQqDyۆ7`OATT}.A kZ;suƤ/lD*<ؼeQW!ݘJ!;H3}%?δntߡԵRZ:r듡HG]*{fH壩ED@jSY?"$OO =eNT+w|ף.¤JT,ԡ~th4P#q]W`4 ;dFv5AJjL.uS%VP+1y#AMmʉ|s˦ʗҒm͇1f@8ԍŏrYsT[[GAʀdK\N61 k"Oߎ3Ilv1PܣM]7{ c%SQ5-&%`³Zat>L-CR@6&Ųc#4\sjm"J,@d׍\[ @vodVZk~jzA~!C7fvhP NtލlgG(^loTDÖC%K^r1jKF ۨ('KIFc%Oeȡ,m{wiOUhim2qUeׄqgAZ?[{eƸ?lV/&i%cF4G*\L'Vʿw?rE9̌#j ou}T ^=ͮl'TN@n YƇU+(|x@0dXx> gcK˅|fQxB%CIjw=]MS=N@4NO?pVbG}B\VR}kCt*&pXR2_Z`$T S|[ WAG?CbM+kp֧Ѱ"S`h|NU*#ĉnTpc] ;c-,%ciRC9&8 `䔊S! _GcZ';5.mjji1OOcr󘿸%YM  Fɠ$:ʉNQӢtF i]2HK$M)+j?Xj6',+ YNmi?۾Hz̍D6ҶGe-$n'm}y'1@BaԻfMșavZ偌mSW!F7ڪJ.-/d^~ w]t/W&5?jo4陕V4gPؑm ZX̌E]ɑ>}h:8fr%N$ t%n3~y%\y!aEҗmԑ1KazC?Z9Xh=8JtRo5L9n7wyWT>ma4؊NY ,y v-r=q`n͎a}yfC3@ξ¸nOR4x^ٷ1`,zwG}2֨$z߰wz+q  Vu?/^`>1$p O@u;}GN\(!GHc)XOLxПI(cEIS=J(tC FPFi,JK @x˵+ӗ{ Xvi#ػ`g-: TK%-)i \*BV!_ K&a4u+8$PZPS+9nk_Ĥnq]+-/' ^/i͚jz5 z2eWG(H# kю3MOܙ&^{͏ۃam;P~)AIh~෥#3(Q~;ډX:Aya#@x#6WmÁ0R>3EnWc凎uGzZmH_%Z76yECM\ШTU""L~>bI8 ֧Cޏv5.| _ &;BZ\qk';!ͺ._zM Y45%_]3cLEe_20r;ĶAREM;BCgN~ aД9g5vK+,3~̾yGluvĵMx͢Vrcp>%QV36a [M?4_D5(w3hЋ[RZz."WVV+Mu}xPþ4Wx^ &hm~0ia?xk6mۑH|$%uJ)(meywX1=lX7jw*Dcd^6a۸>^ЍۧOVߩe 5=uuM-mں jHAl_"X@Jʅ-.$< D/=Aѓj1,q,)7|ڳtFq7%S Hn{; A3D - H_Fv;oяZ)σ,0Lm3f0Eh+((fܧ!@Z9 P=SD]S<'is{|0E))ѬPEQ#`ZS/7и+SF' M/D]M72Wl,{_P"JaS@Co|u<('h8A phv )ְI}0=u[$^W꿴k+tF1^1 88[7=ӘkTYr.f#:$d+K3gU6]1L0(u9iZ apߚ˴&n =e$A9FuEjJB*u\;{U !e(=o;ovƩh5`Qz^ի)6.D$D u-,.GŶˡMi4fPNE*iשRf;ZG*ԕ/ՌY҅Kf&]lӔBySEce zqO]-o9N[JzJd`zydin FMWR{:0w0T=1 ٛN硷('52*w J`1n͕::Jah>\52oyd'7nq1>eIQ/Eʌ0s@7UydS-+5!28U)\(84MlO: eKOrJ+BFtF]/<ݥ, kiﱥazVSFYHlQ?ҍs {S_.aatCM-MYH&T>lQؚE#} (l!\ŋ ڿJ#\''>!lh*a]&waopE7aX6i<%'U9wK_BYrk60Ateprq:\OA%'8&|y,0䥺<»f"ox fSBݰl*[_^)Z3Ǎʃm?a\Hu¡BVB萫P[*ny%R].RsC?s^Ω` J c]F-ӟr9xDHhuǩЂGpM.i>QdǸ\o4|!-@# Q:P~2Qa~.&?᝹0ŷ(XJ'{6e'T{M-&ˀɏa~,LVO@K9cuka\ ckYqQDn;#8k>D3TXù $cOHQ~~DZ(?_ s ً|uCamnv56LX3CS˯sP抹.| N-/ GgHtעz8QJ +%ȱ`Y,o*4.ԏӑ@ъM$)իT.Йμd4CSBeK$4S GDH/OҨv2IpVޛ$ݠ} F O( U]3zubDp`N' UrG]@/ TАHyu4{8ׯ݁־!p=DuM)O?pׂT4z1 >%30%(_S ihkektsG89zC5Qib䎥hv-g^%)˹/G\iUdv#(1S),1s^z B7zDz:5ߡ0ϧ8]I4-c> *Mkl?hs0@9"Rm-{ޒFr\QU-h/A4vk@HSB%+u`q':wًlW|y`IfJ^W+x,bݱcDبioaz#2:ԿPM_Dtf#`aU)"TX?h○ &DDiq\UrWbTT, ĬHL[&RDQ`ν^y/q;P~m&e< -j;JVх$z%tEAFOW~Ea.1`oAn5~#z(\.ƞ@U{ CTw`z߈i3E6`]$&'ct5:ǃCwQy Dفq2 wq$;aHgE\69Oy =\u"onm(CݱgjZ `:/eBmϯJ}WƸK0(Z>QWI*2J< vSA(qfhC#OL%t&`NxڑBmM~./+Jtż^L`U6kI⨒J}iQrsiy aT _I0obj7 ڰ55ae8vhqSrZa^5HYۍ+*1 &TvDMGK#2 <Ȟ4q?Hz/yJ>\ mrˡJDۢy L  k4z)>|DͪhQƬk8$'.Z?{O}b&BCO߾OFW$eQ!)ˆ')H,"3}kkRJxK$_CzɅ`SiktHymI[r/iU8*X$,״;M* *:dTOq:l*ʆB CUwB=X̾ ܏T=X3>Xx֊}H>etASfS%W]g9}g;U6j]˷cL0j>acѭQkNŦ 1QE@mLdhhZA} (npAGQI@0S{ j=ꚸ{dvSڨPܤ40疸L{pPWdLXµ=ق'uB޸$n:h{I2/[c8pkM&Mcז3V#{>|kRPٸF82VV1_;2靇w (6>M=[)[NKdukK-f-` ^dqH:SC=FtzT Q6(G# /ӡu%O%5BiOt&FLPnҢi;7"F(Ij4[LTDgјG 8kO}%VE/}yÅiBrz҉Ql>{Χ X:OɬKBVxRz>/fʔPi^wSZe0֔x]U`k5M"s( piS*uQ)l󤀋S.>mo!\+#Db5,*ל7V&x~ wq)\oQ>Ěx1B,&mp@V jq `2V]X0tߢ1v!pcXiQ%3"BZ_ȂƟ_1vF.%? ~E| j&˪"ZZgp?Db!0QE?JxBb<“ɴUد'ddRx5M0>(HEbInǟ~ֲ'w7q730*}3r$(WBtkKlsA / ,V12s`&m~훩ld?6 3T$x UUoNw@da͹?6Šwqc'vF(fHۉ黬^w:ʡnnqv8>I2FZ2IĮ7>1;-FQvȌr=f tO\~4mBz] /ΰS\&ѽ-3, >ʃTk{U.Yr`r98/3x3Գ5:.Crz8µǙ?墦`/Z6~q w|6NSaU *O v٣UI^Б<D|n$[4`!]Zu! r Y_MUS>ztA()݀5wa7 K^qdjO:Cx̗f0[|%!ҁ~SX #\8 f)3\`5As 6.xTHUAhS.p>QI UN5n-Ķmxu`6A 3Rp }ah~_:@Fۚ6;@ob;Ku ㎲C1JuԀ~@z to_BϟRy!RPy+/p$hVM?c5X8E b: !|k^ z"et>V.~@)yu6/ΜFEċ3) AK̄ڌ9 .̓ 8(WlY*`DW| qRoSZ5MܙYl{?7PUVs .ķoF y"cHSےB0|{ی̈Q?3'DQY24Be-ۯVخ"DSv!s2 0m -!f15~! sa΋i~cyl72\LQz3t9 ijawhzRQs+"**Ö$vR@쉟]W ixXEӜJ9TB +zW으9d[zc0AVVQ( &UB8..Bbxr0jߐΑ9*F^oB_~n@cZj-@L@iMUHļtH$GA6[KlJc Kq X(XjC'a`VAYxI"aJq*GJdiL{V)Zs3̰q}.]v\C/&d-*e;5{O6RL.QlxZSK/M$$2R7iV!äf1gJwZnsF[=uwC[)#N,?A12p'A,-gX@_~)@f*/|j@-w/3P4%֎XGylD=18FCJ*z-JA!V$lo} eZR~t@JI]y¡lF.YURV5$۰zwT>$c jFjW dU8k_!L&gVB~W`gzE3q|akq'@aLףԇ8хJ rcp6#|c a_'F:< lSyO& ph<0L}FC`<I#>$D94jx򀬅o c} ERn5S%cryȹueMI1Jd׺3,jSwvQٲ*mpV5f.UkdF4xp5ᗬsc%piֺLJ̻&'#Uv 3/l߾$$Q|e_X/Zz AK}+D1X(X.";&gF$$dF.ǚ6U^AG`U㚲ХbX=SMCXV IX.V>5cm} E᭮).2ĤԎid@ ~tͪ583ƻ5nw7Rơ&hLBNk?5͵H8;VR MAI.~Qtr3>PI讄W\ܟcZP9 ,kKÎesMgeH"J&'o9.ꢹW2$=3T*l;V3u%ʈMK[԰bK&QY< Q%t҂mx+m gV6 xegNQEGwE5DA3T|Yet&NP -$u)e)v_7mxX{`jrWaOƯ,S=L^[.=1jɽ2fxڈ)ƤL7Q_ M8(7HV Y?v305O'W$)lB,JѨFd|Z_rM&r^2}n- @| 'eO)'-"?Eo=WzB\F bQ] pXBdIO:j^"END83؃̖IkoXeKO +JBTCmIp!UeΟaMeokDž"Et7ǻ;i4>>+ "jBse73<w%QϤvU]R_m =e5Q[9"BMᯤzGx6||S ka-MI$QN>UT7y ^"TZ"2!snL䔓o Zk{e{h»^BbmkÝ[9N4HP{h xRQOB-GeUTKd<5Oi ¶ft%?tjI\no؊܆=.ނ֗f8 #caoL58ɹ\juIe]P=2uW3~r"-0B)bkxUP { G*0u~m^m흖'd lB{ҹ%o/'cLW/B1gs{Y'ԫINAzK6WTٛb7Dq'?fZPj(G9n/R5am(k V&>z~,{9g=/͍W+,_ڠ*@_)](ޓYARf0x½NZ 5?q׸Uk5OU*Yq>B /?$h >ga)g<)Qg.kS_˓K}@Hu$d jsT1_+r-d:a50%7]B_c_WgM(Xa-іTdZA@ufi{͜C~<LQ=|WRCqEivcKtՀoQYߦ⥽(Ax5JכpqnyvN~xgOW_#plb 1UK^^NmTfǧD; ۆ6ou?HYz/*?Kd^]u@>6G"פZZrJIEqÅe/R4G[[=Z+h,/OWs- P{Y]̢K, n%Dvq{3g'P  )ރ3esRKbef!2p.TtW>#-r;I94rQ7&~rUi| ܥq;W\22Iv0iR@)mQ`бEqP ؀BE>f뷂E)]=R`ZIqF'_&UA)x1WYG.巿8b* Ĕ+ †_(&XkT["(OY#|imw@)T'IıiUH0":\7hСe=9zUUsVIisw?uכGbz=Tb IDTxTlS^zÞ;:IǓdwgz^W]{vbGq8Z(ےD-:Q܆Ėvk XEBq_-%WWULCA@#КPsgdJIMF8O$Jw*ٵEA-O$X!|kGֱMҭ{0kyTR208mD;5 }Z6ZQe\|#$'MQL.p-w0/\#LIxHiO=$ p&wهʴԤ+!(k*TG.{Td:*GƮV֫ׯQ(N` ]t$`ksh'X Z`H691|4rډP3Boԩ웝3OFCh̛J:YkeH)l6i4gcK@g/F5)뷀]7K(a#XIx^YcީKGQ`ALArL?$^nǟ&N)*L^0qt1Q㭰vw="cOiy:x&uvvkc9*WYO|f/ .k<_L~xɜ /W>nGv&hXSzTbCzuQ<9DaЊkctgXVf:'񱋹+=>-=SRm,p%42w Bq<[n=ҝb?)^}}ni6$RdNãPh ±y刜g'!OTSd\i!m+(&=$º ۅysW QR06 xW[00P*=ƔsaTS^0Z3ܤݰT~޻{d̷o5ο.>z>)'R(2]|Tn׿0*?RNuI5ƼLydD~!'{ppAe5l*%,A`Tv*.GpHC<&*3z לnQYۜ^(LYhfQ^x2Vwq3{TfbПTZE`i4U<8UK﹧gp[k0bAB93LÔ&or_D8 fٱ&p&Ґ?Y[Tbwf}R ټ:weXRv3:Gg,1#$RM:?/y4PޏLEҨZp G qT&NLe+m #==.VU(旹Z\LǔGNij#8ySv8ıAP!9˨@;ڪ,CU *ܘ.0!:Ó,hJu>WAɌO5݇K*Q4u<7x5~mw/%y0m#zË=EVX")c$@R- #j^eLcI2Z/^v43\^R( '\h9yZL<.|&"B`B&-vs2 <$e=crdy{X+ *,d20jp{9oZ-&F8o[xk8#<'`q&gj37):ͶYQD)t4%|OxAA*rPѩ{N4wLpDPs7r"Ks_߈8:U@k\VXFUu#eЧ2f]-=bj euą^\~%(}tNd{&_gzO,{F4P,JtNk=eI ,I`Qwfg WI$;Px0}E%0%w4*7r~R6 _:_]l0*zjY G5Bj),4—ru,]A֘?H c3:XmrWs՞[MEL3ARmED/"9c;Y@$r8t ׂ-f=zНah;c90 aJOeĦ8,q jg O]iG;}k%\;lH3§"&@NeGG#! @X Mp!`0pPRl4'2UbZh^JqΠdL=/y!6婧 _dW[KpnD6O̒\V+}Ut9aT}?6HRI 3MQ+UG-6H[7d80Tzi@и́4Xie^T/{IGM"Nc!nD26/_R4vCipF6sI4_l74n9類-^"m>SYٛn, bn)L8?H{ &.&㲚a V|`J|Ƿ@`ҶqmEm4|C,({FmL#th@!TbE}C1b̫i[ jfOH\>kz%jiȟ@vW7Umvܛ42@\yW"艫塖ܘr9G| /H!&W8t"Uӄe;VcތPecu Pt`2蚨T#KEdKoWit衣RbXerzGvޠEB#RR(GFyѽ rE; R'7lNFJ P60޺]VPr..{wVOfv.V!oduv+aY960Oi!l: F '3Շ0KF y=Є&tH2A~ѱo8MռkHGP1٘C홀bX[fn]S%7䥥U|v(s#[Z^ƉR_,gX%<r V\}mM(Xc0u`gc^üR BC ES7 ׷NzO3BN{58V[ g Q/O=ɴnWxҜO+xM= GȪ vuiQWΕ\%C#k#Ca6C\Nzy:ڊO%6z+w21wJŎ./SäAD)o!RUoݓQeW2~bzE`AJ}$>7/RTᑒNnBS9*nj]q8 FԤ]8հڸ* U߹((Bp5~qB_mWf; RF=:Y(A0`/mjVv] (@̹2I:SfMi;<K2]&7</iH I&k4|*Ru V V?m-?>elݦNkO?!pZH4s. TՐ '7?ȹ>Nu^5S˧(KsfNY?ߘQFbXBCW3yq pMZ D.{ȇECL,T,EɿIRA.fou'ê=hA_4'#Σq56}1GO:e! EoEK1PaeE~JZ#ۢ}?*ݳxoYC%DԴ`ryᆚ>k Di &"rp/H`ͳ|lX 𴈐e aC+UtH h8*^.բbiav 2O9TϼfVUQ&-ͦ*qw&ήVVYgkFVtqlͶ=6-لJoq?FU(`;vp3M-hqӧ^`uWpV63jhzqv-ռri9?{SDk91 F2 `aw$%+NM_ 9'btΥOgL$?k=mx}Q< 2=B>Jl =/zC[KX4z↞r]cSgKx*`P#)HWzK'gq)Y H$+P_(OXKQD7RN{+gO?v732;E }^Ri+3ybXU&llObĜs<Ӟ)؁fYCl2}MC-*&VLEO6[ޢĜ~DN$me" o>y/FnGh{=\e51s~Bu ]EU45}l=K, AVt#Fی6kfͅ}DX buo mAZ3$Aj7 OHfLT1ÐD8lW]DNH8Y6# ÞӢCc0 J9T 쪸iMSX@demMhn 2L}uK2mH+;˧#禂 TTǟ8 I-H=)e,|+H]8cjO7BקhPV !ˏx gj"{M$N[Y֏E{tt3|;]!g NwϺ!Av޲LZr1^h xw/p-=]pPgȺ^9x9]%E |>\}ժ+ wD;īýFcap\40&Ap) /' s:c! e:f<}=0)!|=*j1)G,^Gfc2.֋jg>IH*!| #1L@{i}{pA-U T #γ8(Xg d̓|=M^9Su=~5KB.6>WC/[e aɔ̑0Wvϸ[$jX&+G?_VH k,hI2?'fV֊iD?Io_Tg2J 8#.;"#gk[SCUy_%2Ai[lmQR}!6ovIکG'm28[WEJo噞?ǻzOVwk@ل bK |҂{[1%LGN` SCTfr+l]vy=iSl.ƷǏ0ʅe^МFSG7!NM,Ewܤz8pj |bBU"L#dN -Y%N@ULKwxRڎ8{4&)jGSUK)󪥧-,׆P)]eFjyI}1Xh ʉY-ÖRNkк(ϪMvH#/%U¶3LR0r̓3AL>#EQMyU! XdcǸcݑ$crdoMS.@p 22![!$i]~% 醩27r@7v>EIM為41I[bDYaU 8,8!ԡ|9vERF Lh0 {?wO=vE/S L) pl5(*'Ws4S?rHm{B">xk.,KUlO( V dN2+zZZs/jI\՗fҤd`1oʫu*YɶVkM $S g,5QTevEQ65ݣT!M%+X-4J@q[# xRPujIm1.z0[ "HAI9z'U`V9"ۼ#T %aAV_QN 'v!tU44w?'\ r ʺ{'߀r8p1ܛ|6:`|  ̷<\N.R*׋3~,4%^o}^ ~MxDگr3t]5܏i{Z3|f{kMݳT bx][E`.!rOz_+pe}O=Eu/)'_Lx~+Mh#$},g_ o éyn -;AN~Lq!Xߪ_Zݙ xЉo_0;uz2̷&\ifR}>6VOO MjTjLeCv *m:YZsd[`ofY3#/2!3^1 N'^򪨯ɒMynvpl%&ջ0ZtS4}00OsQ}.sל6wo8JtMʫo)J@b~׎_ƻ^цBqjs,nQdHv~)wXs ( sTH5$=dHy%h'4$SOVu!ka;cwe`*R}'ۛճrkُ;jiC\ DF*OUI,eJVG!ܣNhӀ?$7E+-:Ԍܙ+i)fH8xǘ%;4R)!f'%~'DzVSb&. ]LA"TzgI d@\g$ٽF)HvEѥpUT* SrvmhZѴqϗ@ =')Q%>&|7뻰xeh"nvG=.9{[ U^}W=잷̑ 3QIE|&e R8Aʆo&5Idp4PjGGv!IlXO_{XC gO"Ҫ 5DI4;K1`d6BUl^j^qh;7LΟ}4|;Ll3&.f:!@EzB'h,̄ږ4-9p3+%l)Cc?ޗkd'Z`.o*:æg8$V)jCLT b"蝄=H-a`ۈrHe_T k3>5P| %i5zϋn\H%^~{9\$̡AM->U!L$mȊuB4}=hC}z'B "! ,jg.e++z/+S^uBB&@Á>8MKS:b3(ڜЃWjpOGBy3C DƇP??f3tni*D]\TTlI:/lE} `K^a*2tPJiw@KSj򣀓bM6g"kAy(o>ccHT7XBO9p?P3d/8߬3c;cg8CYūIn2P&t}:`O&Bf8x>oЕV~9BL]=^nē*Wp3+Ъ)|8MsmL)>WRA$'Pxs\(wymo2Q /:mN 4,;9^7-؊R?ܻFX3wGA+zō-sY^yCt8H<'R wODz.xbG(KkGw]atA%F0ϾI3%eRq0n`d&d "%>$h$kM-l3nZmר؊Q:PwNrZO ttxFo-a bn}]R# WzL3ƽ P]H GnhHRfU{`/;vȍ?>8ndUH&^}|ɠU¹qjA)\6Eo|ؗB夏GLIo4{T E?`oGB~m@ ob&IJޣPr1Ul zi>|yJFOGn%3dlIh)R @&,ɉmO֒;Rn;E;s}oq3f$ם <R9IrF{IVSdY.{.1&m~h/m7TFiԬ&N9/mp(*= _t~AM#4t延Vxq%]R&mߺQ|Xv@Pl;^?gO7re8 vlw&lBDT¨[.bD]jb`%y+\hCk9\8>-=s U%ya0~@G+f3(m-1$_f#|d<:{-7|db)KpRRE><;X&t*Ŋ'4[ !^| ' JobkdxЬcRoe~Oɥwh-Fu(Kd|)X.ni֘`qBk"{ɘjO: 9ʹc޺iujj멣uF b͠EXO;7,Gi'XaRЯ>4DAȥÅt4~_@Z9Ty?T;k)z(hgjpNMK%2+Z ⮴lcCV?!l-@?gyO ɋ <ޭjcF7kęvp09ۉyCG-EcexLb-'~_{Y ><\!k c`.yK O8?{ 5@ȩ0ӆT=ٜ1k˪-Әdw(oّqm UbƂe9XnQP5V(nmd~Id}wRE?TEob!䝼Ky2bU( }Ip*4iЧY |fg:͡6_#.ZKA?ֹ)A)l{[J=>K>^jM ~yPlbE5׊[8-CYTuk2gh=Mj,FlffRgfi3AQ pM5 A>!apYN߾ܟѥY]?"@YVVZڴlqW5 md:j^,˭0fJZdCn#t|0&ҩX'pfuC, !^.HPI( d}z9V`=P?86m-" (Ԫ m@d_ IR~nHer*)Ik ==sSh#-(jIsTk>s@֝tP kv=0X5m V!ڧ׈r\g"5kb*">^P{Ɍф=~h Qw;ŌvR.̯E{o.n6 kӁrYg/M;zo@9H\~:⪢[>k?Q!2CT!rKbB~p*Pp_"P]# N!n jnkfjzHi"L~IA ef ˩'QH ,&SRմ$͐^Xyd$&"ev޿I{Jk{G0 1*C-3`r7~}W\)Kéo8rhA+vQQvOX+>vNN"f&Cm#GQ>jk)ȞRՂ F+U$Wu5_ շ {ROLK- zx(ȚאHlАN(֬=wk,bUHua LS5bn)kAcS(c64}T_L` c&M22d4归%IX$-m ELh^nG`Rj'aM}pc>oAȝ#zsYyc\+WruUb+/c[[.٫43< sI9؜FQӳ3O).AR "C"$yAp<%3D,τfܵ+iyV6:tc]ࡻݺmJd+PG5ZA 嘑[19jpF ӹK`m7= Dw-)߭ȇGiPDҞvG_C.rVҨLvOk<;r`dx&>fƐH=bpYuw|y+%*ʧۧckGAS[i PunZ+ xŽt2-{7f*Yo"!)ն42} VZ㓂xO\pw(րeuUɗNe.ȝ2'ǫO!bl9]jM_DR|%ܯ1CmLlIr*hq<<5\a TD!*=A>hhmSh?5х?] +Hw]XK{,pr7DOi# R02FJqrZY*;kihži!'?ތ.V{032RpwCᡗc"RTDpBN-ΓҫV ٖ97=L}v] bHɐ3xm KD w:f7oV062$Tչ;ep,!/ҿD''[SFj/v"3T8.aDy*d<peJy| p2̊ή+|` #hwl!߉V|TsZhj|fcCyfT@ɿdǑ$֥O:ޝoٯ)y0xZIL ϛʇ*=Q&eAҚqr7''᪠92X<-3կ\č{t 旓7N;3YgEh}ہ9PbН%,K2xIHV䭮l/JLôUf'5RE"#^ѹ}\XIjjC< !l$z#&Dȸ/qv$j-16( o:tsءl_85!0uoB$3\l^⺂܉&XfkC ΔV#5!7ͧ(p3N:3Ւp6e;jq+̓!rW\H|Ӕ N#,H2e_b:wC_k-FE!zNuي>O!BO׶'AvB۷{3h1K3琱Z#`/3{5R8 w?2eN&Ph6~m̗*twt S` s\&CAy袻Gvc 53aA \>BdŽDZ6P=1N"^NhK-Rڪ6-mWapk>>q4__`p>ߖw-b NퟑpjڢL|~(E@gCՏ̷{`q+.m'kRe&n( mȭ'WbU{ Fk'wL'̬1;GPg[T#֊4M BN Suv$TMD.>b!!Nlg K%ކ# fU. @K)OR挓 B:%nXih@!cd` :).K~M ibTގ[Z {Λ&ti:m̉zѝ;iQu#xxv%2nVԾ(zj*X#SyIVӀI .Wkҍ %2Ԛ-)t~¯EQsiCQ{@JtL iZaI/lg= ) fc<0$A=/v 8.i5PuISA |8+?bhY\]rǬN/0;OW`')yS;V&O2:5`g.8Ysr 5>RQ[$;RmH$&1K8,o0-8wy_8A2\ 'H̯)c)4ce< E&F]Bw6}􌳵zsJgUAUەG#|?<5{/WM!8^Y;ԏgXVW.?h~3r1OG^ekU@Y~އ2gmֳ-+z3ʫZ>GAfO3gYR=»X@:供$[SʛAyE{-T@pI 'hYzh]^7OQ9iMHJW7?~y(Ȕ&f(-w^i]1Wnǖ,J!hȳL D?"J >В 5XѢӧoX`jI3'6絋첼\=s\ $p)f(XZaBvrF972GgwGhL.)vl胕~ =AJ[GL"g*~gw&~)\$LҼ|=uvE5AM?:+qΔ|0*159+F"Gj2lE4B\_t^F\Ӹu윍ZiB6;=a~x!=| 9( YQ#{1س&JY?OYUO81gͷ+Ҁu{K;e-ۍYSd;UcЎk+. J^(rrCoI|4{27^".@%ųH|$"vly/(ds P{'_^SփwⳓVĈu 室SWvh,$4gaT!Q*L03j`|lo Jӹ-01c#Fz߹xQς%P Ȣr S~}[ǐTʙ&-9;{8ִ,}L &wke5dn7jMpWIz)ښ|8w?{eTǻHUI]΁] #Eï+t:o Cs0X0毻"ƁR?yKc1Pr&xbyo,B:*5Ű6-q;ު]>f=ox3$s}udFmJ 1a-11$"փq~Leʀ-ńyoࠊ, B. ?C' m)Fg <w&TZQ`^=V':؉0|=|#*n`<5zn'O-zr0wBro|.8v{gjW" Cg(Ld FS$鸺*JH<u9X.NK $Rg} <T*"6lC_s"MfH1}cO(Xx$ a՗Q/$""UH"&_<@6ݦogAkk7'NXp>>eÔƲ;3ZpcI*\q`2kQP$xanUcIZܝ6Ƥz{RK+Nr &X.3= u|TRwvO A(T]b CZޚt|wbRrmPX@|ﳄ6ί?dL0QvxIih߼ +ɲz<& qBbH#guJ +Q_qds0ɵeiMې]5{S0K1,:>Hu>G2C*)RM.|7wF'PR:V6zc4C<06(LAl"cn>.ĐņQX(EPߍmȱ`\u> E*`tm,-?a rY>|i=x*'uGUuc˼A e>ɐ}&JQ4ok.}z.pҐ]&H:+ :$on<7/k1RYxP!h=2zm;ZZ$03A# ;*WDр΋'vqp>nm)T 3Gu'XF yȦbkU?^rk@}ko:_d|wnnU-G z_(=-+g(9rl Aı62GhD(NdnPE8X{9ѢQzkzƗ ?\gx@,\Mg\}݌D%^ u7հ?vrkc`[AiYF3m`NF%L{ZAB]V'7M$che޺uuI?ѥ=tiR( i;dü_.D {kJ%W }6)),<#j.W¬p$JE E'I7}#´[~t &cd;v/?_➝$^js/ɫs+uS%0Cc F4;_[z>2[%|}Y~Y<X2kU\16E 黼fJҹ7*3>_L= iY2B5w#n -s?C+>Ty'|6{އ:6vʠ13 9OoYbj"m&ZtפZŔ_txT` d1J~x\T=(ƊKd;c]};HK{I-CF -q>e'2!РEm\/Б x?iFzi5JwshU{rBʣg 2,}(U Bfx=3dJ̀kI,#iKFMVE۬3F'`,_>%$:m9BH,{˴l3QYDp0(ޅ5B *cnZ|RE_-zgtqTt榾]:[zߒq+G;a  tCJ>btSW/5DF Gi -w}? ;J9]Wq0,;dK52PqTԚgo6WX􋦥cCb)B)s^1@̡Z#5ȚDhS5@4X\؉ "2 }KH*ĸZj?2o$bΕǃ$x^e4[z(4 {٠">A{q3aQt^uwK I%rp{}wS`\Q ^(V;S^ $^\515hW'PWr԰D*BXo y?1h_IwxĨ]H;H |Z`ce TU'':N;F=2Cblo=̢7,'|4]P[`ͻ;iC(!Qǂ=ٮ9pL#U"T(IJv琦+z*XHAvuTY@~wiV(cM{Qw Jw"hO!fI:#z-VƐObx13cE٘M~ݫQ @@ۑ8 ZmyXiv,b(b[|K;BϓT02S!9 7BxSrWn5#%Adങts=4rK0<˹nBѹ|an5NV"||.jB|jo_01KE Y@ \֛mqޞF*0DkܓT^xAۭHRÎfi*Jy`5# d^E!Uj6qj¦#:W?{/Sbo+ۆiOk=3jpJ! = `u-~x@?LT) )+^Ufo,7fBg !agDIլYAhXdG"+~ЃD 5_jGboy~13mdrG6IBPtO4p+,Is*,i8Aq!t'rZx)WvDa`؏|=Z%b V9U/9\}RCJ S cWȇБC>5v&%`*yEpަ7Ch,zv)_2͌~\ :͕:2_DBs<[v[1`)7;@ 샷熠P# VX\Ls$r\1q"wh&5n&x'A,cLne*;ktOu)w_ؐ*H&smbE"rp9"\-n?sN^0Շ ~t엝nmXFlz =e }`]6p0iʥwes˥li@y3K`!.UES"Uᮓ9dl>ub!n&!$7qW1T:kP-tY1F{yhli,qBn%k-ʘptlBmف1֘ϳZbX6+$w6m-h AcT JR\\>;9@ BWi - )JCQ.8: ]kT9iׂ3x ~@5ǏZ㐱;uQm5EQgMn{cP'0gvpO~Z2]W a#2x' 8ںϬ{ DN3X;/A-Z'!;]gf`Ä'\3k'i"mk9ى"&+qK,髆܌gF`? lH JKe}) `Ƅ7YZl1>(4,YӥC!sXfD9.op<^'\ ]$Hl8ěu_EHv:~ Pgqr,Z=m<)fmbpo!ǡE8V>!hVr\nAM%@񢷅_6,=|yR^ 5/dǁQO+T:XwRfd>S d#0^59уt4IN*!M5}҃|o׺vVatn' ~]Rd"uVIÜzS+ r?LF|T@K+E| B12:|1n*ŹΞVʭD1 8q|y?|${q> ̅cgfl24Uŀw!ZQ5׌ #՚Dm#=ߤ9V0u/ֹMqQS!d~9O%ir1{;dcus#c>Za\j=uHgX:r`Oq>% W\Ggltp>`JA5"q&~Ć<ڿJ`gph ?PU1t}rmHg~yy' ՃW9dTK ,+ ~@`<8f`e\!y&SCphU |t: $E]> w<-F9EǠ_ّ䂊@[2L襠 *CrP*Woɻk!-*eLœVlW l}TMp{ XyZjSN{)'3~(YebZNDG4&Hm:5PKEI<<̯n|;rqGi6`~p ۙV&ׂa8._+卾WQ|1br6}O 8b5ƚEbiV\p{ ^;; ߄+ w3fts<&I~qvocջÔC!<@iO˹Gӏ~͹R؍+No9b;EP*T`vbi.;SMޖ~]US <`xS*'Wdti?̪ p p8ڇZ˥5li׸k5颸4Վڐ,77`Za6Y\ߡHK釆KLJdWR)vUm}ݯph=գe6LEzƄe;~8kH/7Uub5"E!k~H)Jg^ wg GmGGߋZ#> bq>0GkH MۍgudO+3 J>G_ߛ2g =60>k@+ro6nkTwq{VW>g#nL{Yea >ʻl$dXzgBYȚ-K'CTq}f " ~$u' I{|{dܑo@LݛC ƽ/PǧkV]<uǪp\?g$(6A kW`˅8|>c9dpWpu=IIr圳AZG-Xc9jp#y5o2>sk'cNu+N גƣ(גD^WؓmE"e?$u}jx`#uz]b ;ƛePBl1j?s2>4]S$fs+oz($)RcV2a4,diФ w unWCHգ~qo03KƏ4M$~1kh*Y+X)H 6A绂ZguۯtqUt|ՂVpYTn Oӧ!VyUW*A7O$^SP8B:,K?oCj]I lJ:f_aA扫{ǗmzI U~,٥X+o,lS;`׮W->&[Bwb&pRY"dbRlwD;"Ģ.T?(g\hs5]"pTtvsDƄt7v!$ɿ]'oqeAS)"+xgYbdn'ćFP1\RPeOkiOڶOjZOH/ "VsmMbhcفJY̊Xe %^rlQy&TI=!%q1T=+.KB͝ |$iJf0}d}x#rYXǧh4QQF, Fg@JW A$-Яn3o=G,cTըdoʥx H[n ĸ|N)PFb{fD,uːHم[K9| ,Kx볞U]ǝ\h<-xA45988丝 a =U1r6ze衺*lG1>Qub7@=yW_y)I퐱ߧLBE:A?NWwR<^y>B Q/bV/d3?!x U׈b>ikЪPϽX= %;;Ff2{w]~Rq_MgГuv}#=GEo'{ubϟ?Ow]ߘەi+}ȹsq|ېc@{dN&* lca>%W=o\/+1LAoz`an܉5 5@'sqel ffnd&.tD@?I3%M +"CZA 2yຖpu _JWZBЬfr+7`2F(`r؇Dc$\w5W޻Ƀ ֚+B5 S2LD^ 0d6aw42}I<3 c Y- 6 |<ӺPлviR`1MWŧՒR^He8ٽTf q5[rz8XO2`([ OIIoQ›)ku [/p ۽ĝ@L!te b E?ʒUĶi IByu-!קӊ(g(:BɵNÂ痎yCU?as|hJ -!n۱;#4i܁KZ"ǽRƏG^FIs@Xq">XQnp(馺p`A.24p7\U>^#*g &7+.p>W$Sto`$i?=)6v@]pmHrfLY AH')  oKDGi7>N__ 3CccP;tv;>_orXߚ;ga0KҖ,xXuCs4ֶ݌] .L 4E;dm AI+P-XaX?Nj0SzjFh{mm7X7[HR WµʂSIuWCsgv6b0(Khq{*}4KNYpN[ߏG8dmb # 4ꃂJB+T[(tJvm^x O!ZL~,Wz;'L "e^Ip+ʵvuo|'K/RMUyDUqa 6q[#Þ&u Cʊ@v1jȧ=Mn]gv5d*?NCh>{n`,fnJ=XS ~L+@ӳnltiw܆gRcEQgZ+3kobIZ,)bsyj qG& 16zʈrwF9ٯqPK(\5+9ߍxӂYF ʬK7wğT4| ‘.A6ҕ>^DĻ,$FZK`sرJU'xȥ+qQftu%2Lj!KA[$7&GsY*C)w1pr#3=OcS ._\ߢmhWq5gñBL g>,ngdג ,:Q ‡&lޘK7TZ݌F7#] c%Z(QKİE <<ŢW389BZkC€mu|v6&;&4h-pSOWN;o9ԕR3`kFSq"`ɾD\˻nQNu'op)x-SvnDHXP _^X!ҞLtҞȸ+_Ըü ޼W Sg+$dᇎ7cu+炣&/keM+Ng͗=F(;1PG[Y~DQZabRFִq}E?<~Af [CW_ܣaiYg|Ju]@grVn qi&_*|~(4@ek#> ݶ9^>Ę};&wzْ/rWu`lx%HtbVV˻]hՃ7vVHRelD쁭d8s ipSL,l8<2I@z\d-+ b<͈]~D -4j-݌ƟzS6޵;|X[9%mv2Ri5muz9lpVCu3^mnLPT? bsGCO7cV;f.䂗@4A"i}h>T^!'bվȘs ڷ JP ^srV2Ϸ?7C8:tp6b"wߏ*J]\ib؃=O"uE{ bEFq ]&,gL@*DMA+tV.b`:P8'MR EiskAf|#h&3o\mv*((:E;ke|;\:ן딺V55n6g6Vl;s5vW(1ˌzpQiXz+7O=nc4 T&/Jl>,5I˖p:cỈ{"1େJ3Cv9ea;=ZiU~HF_ tf.c\.!sw,6;[Qk޶Y=mf#Ns׉"æwF](P@?)B0wH zzeU*$ߏ9[*u=ێ~Rexg ﮹Dr+g.{[rvWu"Ļ?RfhއU@W^e{ RhN \qaϢ _HGʉ#]Y\ ܈MqEa1˜W?Rc'l/q#pm8x~b?۲*׏DX8ܒm-6y}*@̻Nyv^ L fxP˲i{ND&cW&wdM;Nm,c,u@(..%>d->~5͊ ɨ+'ܪ~& -Urݯ9<'l]v #=A0٤.RTTE kx?rB^sh1jrQ(M+u/:2VgTzA?P"*N؋3^oDSzDxjF,+^1["hk[;erW4qA{Ct^d8<gr+M{,daH@@=Kod %1qW݀=v{ong}A=D} gmq˖ /[Z ϊ<αa^S珦Ň1YcΉCŘ; @7D)'u"}q64ASoVzk |e at#St8iK}U[G-e~s5i7`Qr+Z[~*Qb;(3ʟǰHgƺ~9_.):)tMC48 +OE /D~* =h k!|`Wak2Ž3Z烈т?m^^vyaU3)]l.cC19NW a&mYzY EL~ja $ѭ'` IHP4(Vgq+*^Nv"T5L2c*KBjRsC0 je^Yħq(ĭ5콮;8bdN6<+OCi1)bO ً0Uӭz^U{ח-VW닆H6x[=Ԧ2tmzncfP8;C҆PEFBCG;@J0^MG?nRpX^H}/ҩwA_PNv"$8mp0/xbr܁ Ccnkl%E%S(4$8ŀ`{; 8C/3n?yU4ݯ W.C4Wރօ\vʸO>+'8{W8I7_{@(ͳ~öй*h%>W1Yp'I7 &X%e)3t;9UWOKU~}1ӵ[uSc.6mTJ"kI{yI˹@3ICphS#Pbt};mNUOc?C2=t$2xU*exj` ."0RGR2SZsi~=6G c6Nwс}lLAόQ-,Թ 9$^+>Gwـ6 1N?o` Qk"̵]B#kfat `. "kԯxFh62j~ke$RJwE,XŮEs82H+h P -GW|sq/EZd4ъ*Q_Bun6f J=!L!iwNrn !颴MPp/J'q7XTI\LU`99o1u wSuw#9y0fTtmd[ a?ײ2;>ŭ,V^eݒvOPHF٣A!?88y6]a`N~%`#miĀPGF1kO[n$W"!ƱA]:!gDV 7~ZQaslsm̭}տJUGs[u6qK%fXIg@qL3@ k.^gǡB 󶎯be9?~ { }:gk̃ـ#I*F Q#d!C"y66V5 `~vQ+Pۑv x-v{ۆS5&}QVs](SWÁKGŊ9 R70vbe1_6o+#;9}!4 fg~,V>pN8avga 2ذ Pbx:.mRucMHX Eδ2Zǩ#Oht!{:CԱ˃s@_w!: 8- YFDN6LW쬦#3lsGsX[q+~V;_ѽüLGJ@,e8=@Ҭxh |F yҫ؜3 & j@1zz-.hvPXY 2_&y//lֹvQ~#.yaRN 6g0ߺ;`Xx޵WƇ@ RSԀcX0+Yi0Hڀ:va E lV65H ʛEdLa T8ڡ͊z=+[|T vBn+C6|,0ߺW5YZ_!tpd2aهL`|V \>(UU3'(5H]v_sy;rOSdN uER g=:Q*}M.)F]<[DHaq x2*>>"ˊw!ӳ^TwaѢ͒"fĽjs-y#.Uvas 7OUl|/ZAd5zr%=N:>jhb^rWtkNP)4j^Ө(Ɏ)R-Z 4_۫NOSK& Ǽ:uj>ّ(aUѾ}!5sgwYj,t7d&M5XplBscwD~O>﫭}I=t듪.-NbsFA9|'3Yds_GAjU毧i;l@wS6#[{;ÏQϠo6]J.SKbs&m)|T+~7xî6FxH*{PRA|Z%t InLr w,Tl,ZT`ϯ5D5>ZW<]M+:$yO/ޅp9əRv%bj(n䋿Yl''JFP3(wB%L5RG'^ UMhcnu: b2$HTGVN;TL& }ifoq;Vm}0qfbwpxrԆ\YHVɮh$ 1qUBKDxIZ}NH`",)s"_8< ׃:#lY_%y4U뇌|!{sf_l4t/Rg Ӓƿ\DR~ʍ?;.j(. wq!&su@:Koy#Ptyjl| i6Wq IptM%qVu {,,M(ک=S= >q 8Y2>f=hg y{}+p1h%Yx?O*Jaʎ mTX)X^M2x:33ܫNos} W!pr yy{; kqw4cNfJzd,RQ?SdI mϥȪWm2]<OogNYjE|)Ь~8&YHx5 =2؛κd*!Pė%wp 1IRO2%" -eop lts!Z!]X DProM1GZtCD0hQ~GM}M+|\wj8%'UnIvĀJfvu[fR9jK0 m ׊6$Q8ŰAnЊZ&xC(6ǎ\`z { 2c(Rzh0; ?Zwd&I+et%ݬCxW0ZlϏ5a,ۻD, "h!q`Z]ON0QTP /0F,ȺJ>-1`dc1C ~{P"Ҭ)(Mgp[#Ӧ.::>Bɭh]d>k{J@䬰Qb*w.r{#@bb nhK;Zr$D[=᧞gXxDh9@1Q)BwgD~Y}^)Y 0*!1H=5%JϽbzTRa WI?u 9 6B&^ߎJx"VP|-iGQ[]k> Z ϴ`\2e'B?LĀZe&[ kЋDa?݅qZ٣[+`!a<6kS//LR5yŇi>QS[زDHGho~(P#?ifay…N$!Sv@ҐrԞSiV$jɎ5!AcWϱPېؖ.e9X3#^t̰g6`h=e]0 PD,:sЮmJ">ޗ}g0ue$]1Ya"19fzsi#+ M/3*TեIlZvoqMoMg=$Ik;lM(ai`E]Kre ' sS{̡c/"yJ|Y셻s_k:|.fL*YZ5Vo!{(6a}Wġ6^A\ӳ*cz[{=[& 4vat` -!ۣ& CGڍmnU*?| K 5 yy5PQovB*|I%C1P6>ZV>]SsfhF@f0rS;0l-8Q5Wa`d0 D"Q$N貒R(:%!̈L ηTc,SIO?NQ|OrD[t, XS }ahf-?4Dݭ,ZŹ8CSeB5d|FuEFc[{ ZVZ:".. v<s0/D=}&gPO>Hk7H[wH$8y$d8}MW[|M~yDE&sms:ay{{oKce˝yeD /PtbFR{_P{)= _$ ~S Q3>/&=89$nv_f0,Gk]844W+dkt9܆Zy p f[[-)F ʛ &(Jo;t"8hRsuG"M W?h0{)<-/UۇCez>gU fm~攩>Xj[ l;xW wǾܛ^?5MȂUU'c*̣TN-ͮWv~i3%yj'!,]ND5?pTѰ6Ttw^:G up!4;;+Eã6"Էs1ãQjժ$~겥9RIBca+λNۺOzV{*DOJASVvt㡜vA⤙s',E4?J}. A-^21Z#"\O\A90b?~'l+uݏ"Gt D zS)) iNgYMψjR/0ƙUbP`oةIwGPF]d>!#|BԚ(IN6-*4\vzQVQ3&TP)o&#N#K c.sV<;{ ::y?M:ie3zD m>_rvy)MS J,܇p_3tf[EJ號~Zb6 E;0"s7!P=A*苎c:f"r }) Kg239 gUWFj PѾnyYDp_8ߪR++O@ jA N"ܽޱ8/,S8F;/xZC>mgYi4p_ $wv U *Ӹ熱07a^ŝl/[=QU>1m ef qG:!y[Igc[ rIIM<}u/*K6cu.k!۵vouXYAF 5.i%3HC 7=g`aI2zڒ8X|g]Oo l& ƃ&W2Y'*@ZN7!x&#:fx̹(Si6,Hۣ7Cyv<[a!#,6!1Z 0ԌDVbĻin"C,o4_uFgA0-?EQ~Ư+ C[LES&AM 7ƨatH/W<$+,hYqFa@RUVa"79 FCnc۔_. ar**P5(#,J40\dьg*J;fU)!57ݛ.TEGT@nE;7tE c|98t*-eNK5˜wCcdKҡ[tA31X, !q4~ę/C;&AD[ F`;mXZiwnC=A=+K}Oiq_!#!b=2GCd4f\.e73WH8/";TvoGsϐ78U\ SlRxtt$^q*{ƀص< ~a5VcIZ1k}E6qд9:iPgX=̗kF \͚Օt*&;Ǹ4Z+!gD9t(=‹?O)ۿyGsr%3ٻ'|ppnfE3[qI3L P2rA?irRn Nl&F&0ߌCօVw"ALIӌI\F@]Ԭ$Ymmy g)O*Py` )#m=^F?d6arEf>cbkTtkzM]=ìhCWUf(L=MMS=l/7 ؼF`zuhFBGI^mc3r_R~#ZroygF+Fߊc-ʼn/݇G{OhՎ׻{NldU$ɾ5Jb`ާD=׿^Bdku8DdVMz/hs1<[ Mvtڱ(MwVE}B7{^߿U퐨)wIn.ADJSAH2 Gy;}fy@ZH̼XY-㌽bkn'] }w&Ӛ8:Y+ IΌ Igڔ#YS{%{N_J(>fâ;uXmF}$#N9U_\U3VK  `L j+S<9^ ƜG^&oeܠSDQ߻¥bE\ԑOW0#N+@Wq;o- 55[~G!&O!K(5NUĀ ˗FThk)Tb'y< ֪q, @tXa7!Wshlv&>ӹ_Ka"͞.(Տ`U* )򫩟L $WMX{ڌB&,azɵ2^wf $PbOuS Y;P,'}$iTQX8c-Ɍ_7͎8nG"pQ\z!,O`<_!Qd* b-RdHv|q @Sɵ)I`sLt)jq/)xU l⴮| >ݎRgSיӇP@ꂊa>//s'U@& J&ka̭+g}~lY0Zΰ=/P:ꢀCsM7ЯgW>V{ Ҕ' Dcz":6b.;OW,.ݍҤaId"p$,fhg&La7ٻ$C{l8vڱ5e` "(N"ZmXݯL1w;qo8li# - zt}Y z'.kClM3Bv#(/*X+a:zɬ$J$)ds2c8}P{Ӿ4W ^~BmgگHnďР_wK|{ nMÏ}3b)ɋ3wJC4-~-nĭAc;TAwKO`G diD ^m@(q=h> gdQcPmtg{J)8*f"naO[צ*GoR f%jO_H 'q ނIK!\ K(a,J?ŌD dk[#' ]Ľ]vLB]F LI뚑h դ7E3K;$} 8[VGy>@«/enk"&ڜf&rHPRLif~)+E"(vmɦD8Iη|{6ā j[ Uh_qГaaȒ^!{OI/}sHOԊ%u9(Vh& E*garWK2tNNjwHp_sh>((8Q{>9Ab " {kUCXU575`7̄!@ ɽsosJE#g}xÄƀrƋ 2A`'Ih^LI+X4'=7}8f0H} lHC߷s7Dj^q-e_,H\}σ+_gn>D훵O$iaH&ra1 Ɋ892lmk&dՆnJP'lN8b`xmF5J }v1џgh)%" r.>p=[2:#ۄ +4AU2es ed'7j/eZlr5TӘ0R^¸PtjSN=;e=5'V^2Q*O e@uc[`LYK $pWC.lK\q*i^5LaS MXL @Wb#CgHIW]k 6(᧹kʲ/NBrjSa\5h 9ҏl0Vy}Plxy d̻ϧ|e* m̕ "rlyJEPn^W؂J xҌQϧ X΄2\HގrA3VuNn̬㮶QP! ¯̵Mʈ%1hOU22ac]H ~ 6[|IŘX_pj!ynUgE{61ɠ)SqQ27*3' _EVr(kM]u&.~y8o q["auH ()_'FۥW^1FuR6 ZP0A7iU˲$:bgmRE"CX*Lͯ-優9}y>c΂ǰ`d~p<;W9%  B%[ 8W}m xq~eUPSb6 ˀ6ꀅ3wQmoذ drTiXF}k+G@ hyLn9}oؑ: l"֔$U9_WA҃B.eY|;b ^U \ ˾Kyxp{7TGH@y}/Bͧ䌅A&27AQ}D,] b. ϩ(.bL2UE?ԃXn))Oݰ9;;<@TyepnaRi:@YfyVt{|0nn\k]j4X!DJ+:ǧ`[rKrc6 96}FBC1;bwM͆ۋry#of,~pX\Vskup$LLTJ@3yzkc)Gv{nWkc|0Sp!qhU pK܊2K.MX F5N bFrV~JrCFM-@}~SCh_t7yJ6Fٰo<+.iP>jH FFs P)u=䅾XV$Lc}?ra{'Ov엂m8:['VJ[dESH'-l&gZy]Yw{ڣD@C/iO@#^\:`{h؇n>c?zDQRZ΂f_74W37D^f%Ӟ7oHxL)Pw3YnQkХsF)_E$H2`ܦx"[poK]")EG+ dE} -$r!W:l@W >@srp/ʞ"IƺA2J~dUfW%OEWۭC泏. _|up\lt[~ J4L"VrU{>&9oN,x"hȽ֢8E](9icx*+Xl4,_n"]ܟ_.d59N2{yQМzæ&m3pV(^5{STj _.VM/!A<8KQ[JШ`qNd{S MIǨqi ++'nj>]`+Е0b5*?Z>}nIL0n'k!ž4! ʒ6=,2J .Jq"̇{$ #b k5/51QNB7^WZ6&O>> )@|p>:0'Ozu0Op>M3V$2e\gKZxOׄGV b)EtrBvV`@&q fpI.*K\{Ÿ?/Z@݆@GDC"%I%qY õcYp@gad7< xxvWU6[2&//ج.C.q8L bg.X)ZÒ"Anc󃘒lAG2ʌVrڌLHj)8]ݍ&;]&f^_=\ˡY`5H؝A VI *s4C;9kX ^:.J$j؁Y`aݟZ.b8 *ݟ;wOZ yh}+෤i%`K]tx!7O &EήD3s"WR=j b?vq&(BW̛EYBjqr Qv0hG8}AV@^9KE'9ŎfC"3v:ŕj_3m, WqgRZCf.2.*&iFo?4'mSeJ{=|8Xv7{sH\x̆u1tg*tmw bÀӕ̢[5dIEKr fOVv6voXE&KR2rT_R (C:~ǡz}J7rP9'n:{e3812Px.ܢ`IN@3^uH7o 4UBdHYFկoeg1k 7XwPecu~]31~mE:&\t)o-T0|ONzˉ j#6QɢXk-tւ>JPب+IO⽹ t4j?DJ޽o*EkC >'m}*ς~^H 2@gdw iK7Y)*@L!hE-K|۬C@8Z.ӛ *x݁+l:m' l_K#gJMDxZ`:/l!}'w`!<O\fb %{rØn*ړ>>giN"@np~xPLvN[)vCVnCNsz+ʾT;*gwv L$Ll(}7?A!5K>h#A#dwE]5U؂ K -R6qP9spWB Tz1,0nM%15Ł`U+K,qp\d,ָV$k8 .ՒX[]xwW~wօ緘)|\uYX@h`PD?dHV|RXw:ժoi gs*%t!Qy`lī1K 65"î01گuPi$3AeJ"ۚ-Pu :zw_+ &6(2&?{T-FGҍӃKHYUulx_w^Gbsp* x. `\Gda'5ԺHPTwr2;=4Q8dz?3 ߉I%뉚c0UK4j,MTe@f4LSU4G_+Dqm_;R{ţ8"]~BkX3Höe6qݻ)UTv zgD 0MrP@-.Z׌Ҿ!ZBA~A=*96SwAi.o pt |0ZU96y,U^,6;^|ffeYJZ{Uvo)_!szB p[KVVu ˋfL爦URf(!JX7^ GUR,#!L (lfDھSh9Z^4?ǟZD\)[ZR,Z5 !gC[>&+:HjiGsj-Sk 9;5V h@2B|G 'D%݉.!myy q^niZJ0HM^^L3m+?U3X[=>N%7' l9e?qΔ;BxCfDyCv . :CA̋@! o-B^f«2 ԕ4@aCdGUW^Ƌ-bItr܊m;NZmEVSo+7T2+9cڢR9ړ@&[O6LUɈ ʍ*hAo/>HJQ/%őQe E/SAD4FD5죸@t6D=2Aw(y"K/_~Yϩ;JBSߍu"7Y2iFsP@G3A9fӋs$`%oB^ޫF.#ǪK>kbfPUJpǂ}g]TSj{Jta!LˇM"s4Jjk2R L# .M QiSmȇ;࢘ڟde JiSJq`Nn,̔ 0!pTu3/Cy~p7ۉ`\Oz}OOr '=tylId_+q}ŨLt&-;55*Mz2S~Z)ܨLSΦ0YhFBlQ#D|>*Z'|*⦧z YB4~hS~|8",P{i 孲STSEn g kBYBV5Ȯ%xiѼW|%6ˋXUA.MVx;pne Wrר1;"R8vJ-e>auF:w)=QM-b-^:=fcK*>S.5b-kz2,cq[Ӌ>_Mˍ]j.Bpgf/%| U}%FK?bcŒpŋ1!X+^S_Ό;ȗlMK`ax Fc}_w4V>x<~͘JAg2wiZ,``Ƨt ᑘԽAF &d| vaC7^e䖍y' -k5 QHNr[ vb;՟y,c)$ca ˇ5{}Np&˖30YJELj)GHk ڽz,MiVgMk3ZB[ho<% kFl\TGhH|Hf93JSy KܾX6|$!^F)a6B0`nshcTJE2LV^6<+g<13 !Z57HWb=^߱3l}g'g־/ezҮPԏs=AF5 ^[Jcއ ^)Žuלg,2x6Tæ7cx nc(mU/aY9iCħ+@Y\lRGeMˠKWgTȕ-0,"'mY HqwOk* yӸ[!-%ALۂޚ˝csDrg_{(,o@'ĊXZ_oЋ:nU_aU7|IG}3>J0GδDhT+r+Ͽ;^3u!rACWW8K8/o;@e;e :Vv7y DJTJatIPF =Jgs0ޅ] ԇZȽ΁ R&qc#l Ry7Nm0lPvFkt AMl,^OAvlgleMem !Wl#ZIq i;5Yc&=;ZLݳ'In\ltQGdXoJѠK3 1d$dTRο6soK-H7q/kfՊ-B<^M2{r^`CdKS:β2.0tV@S Q=Ų8zfNHr*z@-&؏DV<.E_yLDYpD&}K 'uoj Ch!UZR-ops䈗#[-oi~ A һr&ȅJj[`H1I[Fc?P퇒jNDt AK<޸lM~t$QcUZI?~'ePT˚Zfj* 'sGrg5AjH~Pu ztx\}biɥw`<#&`r6$F$*sT./54"vR] boO) T4mjBC}٧i#q1ُF"lN703-?T xz[]?1Ao/c˥U{5ABPޅ񲼜*‚ ?mPUʎs߉*@.m^w_:?|g>>0!FIs91,2N=XCbx\99]/`w~h0KI4~h̊jV9b_3<7͵Yf'1^AS?ZmDהyNMk "9{F3զa#C0C C7i#egӳ!['9aHIysF5Ϩ4s*P䅙QuSFU]c)K̠h{; kY&BJ*w̐Z'4E9w n],.dٸq6SK/z69],>MZ0 c={FL9UoD\J ~5kMm~Nx>XЫiP*8 7dh_ .QѨؒ+=#9FpJzV0ǿY}|qLUi OIj1J.(q-k?Vo_]=IQ{6n-$ࣜ{,mpU adLӑ qP]I6p_-\./ O5Fgoes#/ƱPjK"5c̛q^1¶ Zq+l1RssB`tmH੃LKQL$ Vr ¥#L3e U|RCh3.vE{XVb?.CsE+=YK=4/N\a_:UCs3kTx=/]i '!w)3Hwxu;5{" =("N1ȺW](^"4IE#X+3eޢ'ȔJoy634w*\_ڏ=s7&Rf"EQs,59&Eש.v&&ъSEc (*+E{8s#l  \jO?\F/kU {ZL`C2[_q<`ad؂j|c5g}Db=~e;lq?&D"pҦLZgv A\0!!P(/_V?ea 5'FLd];_l*>9X0Q.J|~zvXSa<? wxFgye^yU/GY v>Y_jEmt+GDԳ9SmeR3I/t }M{d]]tj3#>Cibjx#k6la';Wz/;R sTgϫ6s֭t559::~4:Ł{#9%!R7cA cBb,%z%!b֛B!KE:ꑻ0nfA5y{կ~-+t&(La N\̋Gau:hkP~g8mhNp MMWԑ_ї =3w{YN`H bi5q?ax:կښ&?׆=ER]6fO =zg5$lK?%1T?V5N"nS6vq k:6Rʂd-Ilθ:Ȑ3ArW#qc*%;{Q ED%ӊ ]f"`ՉW[^7QCWmC=1,W2xTreD\X( =^|*ۥ/~opL2T_]<|!6@% >hV^ͣ'-? X>R5tOzF 2d--u[rϱ'tQ)zJJZOcgvD"zSM ` ʹEBUV9ټ7GGf> 5]$@C'?4*XGS)0tS˺k6eܳhd@4 bdyB&_GbӟmUtιu@*(fF2|TcK{/CRt3c]sMgK:2M;ښsĚ~+Xml+Ve@MI@iŶhQ/F H}M10YvokسȴkM4QEV- WuXJؙ [i܄+P.7MȵRZ^zP@·79l5D$k g'EBad3LeV5٭qIF˂ my0?xr]Fb;8'+MKf|tP Ĥd@Hء&[!qF9gHdi*l1ܜ"Z*>@exXB(CәYJJVz;?gYqxKDul}L7&y$R .f͙U o[ ZlZ;78^o4qeAi[[%oy%RNj[$:ZN.Ƽ@X#fry¶ey0R R$G$_h85^j*ȡSkhJ-sO!05n% 2ҳM8h*q%[Pg^03f!*j!/K"( \׏q.C 8zZ |9J5b;jdʛ- `%5 _5YnwYتt-gn#^#sk_} ĆڰZ\D,U zymd!z?'mM/BcobMY<`e]M ,! Cy}!:fe>t=ThaSa +GEJa! a_jmU/k~ XW;۸5WpdH͓ܞ&\"foWkoy*E(.Ÿl?sWP]'YTĬn:;Ab tBD?[ Ú8WgHk]e=͆~} SWb42g: N? Gl38rtgVb3[ #QM ++(0?+0z/@+܊)/m"&iRǑx}{iJt{UyGxxeژ>m.8BG+t |1D})baQiԋchXH~CnquSоBym]rhk ch"P.FI G[i32,(7VlGa$ ZgExBHYD8r'T![je|{_ b_gkH`Kirp2l9f8#hЖ@8_&?;W˕wۑiMzg^f[P1W֔4 NDZ.FncƙA9J iF3JKG+y0.A2';RqWB@SDz/NR@N``jJ;B06R /%0O'rح"IltH={L,.6\ʓq)`M}3P̙A)PUiu^I"Rr tKҗt+9ZEGIH$:]OG6?IXlSx"&fB>ƺ\}i<3Җ-8SyDӛM0C]9 oW՛8 SŴ vv W-j0e#)'xy[{71|:g:Rzm.Y⏲U2Hw i\- 㐸$%U_Ԙ!l)WlD\-g5X"ݠ #]Q?[X<jgttO:Rn`&Ms;>tS(>2nq)ݧⰵxuv*Q:@D=v\ lg㳶bV=78rs Ќ;Y ?Ƥch11QC{.55rlI=|:&2gAh-V?]w+%}G,YV8 } R2Zv@)y#ksqE%FR{,#S͒!xfP(CH؄<%r}a6@QZ|؍"^YF몠2A~p+zTLKQ~P> `!Ed.SQtu]V^+MW0ب{pfl% "`𹤠(oa0N`gt_Z?DlVe*z|BH-#mR '*Byy-DIGW Qe@E=< wS%)x+gu!B8qVc}SY01\`8I#84 8<dד‚@;]wşGsvu !a4)ܿVmfVR"y'x[ Mׇ+ ';p1X,8aGg*BX7^ ~F%^ ,9?0b])xs^^PK@QdtE dp%zs0_wy)\K8MRMmg {9+ȗ7*I>x D\×ua @Ԝ 0{W<ޗ몊Ȗ5A6*,ۍ=<9 f< j fI@rE{m;CNl .: ʌ"-܊I;5Ҝ"P~5Cƌy+XSbY,e ȕ _+ 7b{~n'-S7P5("SڍJ1 z}ikRTF45Jk(,^̓ ݋wԼ։Uϡ`oіBY|u_sᱬ:1:<Ńh6(gU=-[1R-/I--1̗FX/7DWTslȿ@!8QduMZO |8w!#]"Qu$Bv0yVXZц߄:ÁRZ!L+5spjM-@N1鷾iMCX#GWRb.q>ɟWWwDha^ϒ`-|&įV8LU YݲP UTeI԰Y[l -^d{`Sj"s-sقXd4Sxr I {ފw8&`*ы^!,NtN}`)Cw͕FMV] 0!I{vu^ރqzw;G3[!xl@ѤȡH4/t}pm'7}j='>Tc}6,5/baș4(H)#AFo|wP3OfX+$HvB"_+HN(0p?Cf"٫E^;|lޚ_QQ~%L91[ߑ9 -s]% q| Υ_Ҽ.4jfANg4FyNAyj[}cC}Cl4% \Ygظ]WHˇ(DŽh B yNs8cwBUxu 6"NBx近{^n rб6p(7veo-&mk=*0CUl҂ jJ8{+!UG57w]i`NW)~{DX%x >+%ipSbc`}zIR= t]D&($+ ']@6{K%|=DF]JV$ 6&aW˄\̐Kڧ+S4?Av]ƙ9`fp Mu Iy+~2qeB9V&&ըv>r]PmH9 /0āLR;";Mu8_=/ 7=ZIzm+eo/@]L=ȑ v 4>km<.n5y#T,5:lQA `7(\۷Q1zH-U'u>D^wQES6xJSÍp=bS+_ldhg$ՄM1`_͇-cXYr6Յ9if+ {&& iV@h8轊ÝZ;zBHXPV-W*Wo䜫ij/ nOKuC;J1aε~~Yt& z a60KhtqjZ93(n RL=2pl݊qnqYeXcgaI6+SaH=! dtǤsw9WHPPߌy5irXBv[%nOA1TZ*a1GZm[5̣Y,_pK;dB`&?"u !br /BL97˯hHЄw21>1ک9]0c{8R1=Q5䂢¿"ɥNu'|Ԏ~%"q#vn=4=B]BW-g)bUɻi+_ޣ-76NY{mʾdĤoV|j ˍB?x?lۧҺ- j,Zڙnl^"ABZX%틹y{y.moP"i5[[0MN' fj#'An?6FIr~sSuߦw[IQ%Rhi`WJ Kg @јwZUX!TTw.y®QOp#/Xuf!`c5#zQ-ln.7 h5Ѩu\bęaqKف d$A^xQ/(?οkw^ĕ+SrawZ1wTi/Bt/5t] Ix DL"^!d|gx 84Zùn[̙r.{u]GJӁU}0;UMH ON ~LLb_P[5 Jn{X?S6n hvo&KkʷzQP4)9Wu5AfT}(<+*RIPnC:酩bg:· ]-&g%A?Pp M^6NЇ/S\vMG2#@Kk/†PZ7븳yVąmʢ)a4ۛlcO@f}[jo *Q"qk,%8Clc ?#MV5c>[eHnuf6Q3}OCһSxS4ά>{(2>cxEo3UO,ۡ 2X~t4m |E<霋N/A ._o8-ߧATifH$T1}è5ߟ%@]-WaM&u'AQw>!UfьRD7}gjdǯxb>$fs0) Y4@d|:9!ɤ~\X?/}K5Em,Mbƒ~ O^r3ZAp3\K7W VR?G,֬u$]\&iNnO5:z9MY,/2"Rg/#2ATv:}Za%bHF4˄Mhv&qo4m9y&tL}FIXXs]*cE5K\r>)s[jw cRSlTջ=EilWf1p$ uAMӠe&>:Mo=/F7L{=)]d JI/ ?=1/PO 2uXuƍ@#[,:O m&E4"ޖ>|uYea)"ŷ+ MHD/祂k*-Lj|~qoo[(Nr}5'o-a \f/+>})(Q:Mٿ +E]1K s%*vvޓl 9M?Z&. z iNB~Ώ2V/ ~ggiQ!`{{fGA$PGzQPUTZ\^G~Sv΄"837i EH)-<@\23\s/ \.hJwJ;&WᝋF^&am|16W2Lu)|a;XuTS@q}0q9Yb&205w5Sܭ3E 18=T,  لZ㏓hWC $E%:#LX&͉d{ܯU(ד-!g;B3Kc'8|58^*𮞫IN^eKK'&1#Q0Kx4^ya8nZt/V?nlpW}Gё*~S;xp%,%]{? _[| Sۯk^њAd IDDEM#w@\2$3ۍVO.><yd Dz`*Nj[BSFb$>ɷ֩a?zlOg@Waڑp>j7(;  W0xE(쌩Dw•SV 5ɗOǠ<u!Yyb/GN FG5(8Dy/5Ն<҈X{ʅm;$Ak7FOh FmZ&VlB:(JIJGʌ"Ch$H2Qm7n=BdS氯)fDheYZJVǽ7MKX!0sMuW)LMۛHq2 t3N+`Mi駭/Oj?TjWq^(UО9rUqrl| 1" qWSK1 ȭ# xՃWZ[cMR 4qpx_ lb,dT )܁qfo,_TS_,B;m\xo`&n$ySwaz]Zk>8mţ[bE WE:x ?LEKyU/ (\6{OK|Nb97 6u>»Ze`ik& y[ťUXNv܍<*Li@Vil"CzcfBcouϱ'v:޾uH[46MҲ:xMeb2 ! Cf4gRY>Uj\FNu9״s竳ڪ'$% c'7l0ew$<%rK;В >[7>Pf??:`W tsr>~Ŝs$'lYבG#zfr1v,5?k&CXi7h(I\Nh›{&; 2a#ЭJnRvCթAMU;ށϮMfLE??͕Ę|"6U:\fڊwks[3+l]3 ,#Lt:=9lob!cK%ptTNkM}~ou2 zM2}HI,FYݎmD)t/]UWpjҍB-~Mwa/z[vw`~Hq![GPP0M6Dֶ`lyѪTHj{nSr˟GQ 0ܬ$+ʷ^I3ïJՉ-^)g6}܃X!]?RQiZ%fhI 7\>;r z8=oḤP9<, JCKį)*@M_t yěH3ѥ9ҊHFl LSu "y ,X5xP` u*q{UsߣG-~W!LILl1~N@Ӫn Dv`mX(UϯE C§Tmcd5:y[i:kPf@b$е潢} 2Hurv 1B/A/4p}i;̎0nOݮ S;$$l&I֒n@J!SAe*7p)2Qv6FXW=uWB. 5DE֦h oZ9M_!( LC5Nj=)( *7&+9 eSΛ5f/&(2RϦ^03d{bi& rGi ކtPō/}H̹mXDYm>a݃š*|UySGEVtٛ)<6].2&Z AZ?3;A 1Iz$ |7xw5^o ygicWm=Է鹚Vh|7;t$;燹DSjR5b{K}f>BϹ@jցHEVs:T*wK7~{:j_ W99]ɕ.(Ξ묨ۨȷ_30'I~פ"2YMn4RzڽoVۺ`M 8<% |Z \+gahŅ^#6 $Zm$1-Tc ̑FWV1V_@ U~.0|W `_"o_H0833JĮB^4,'l!JBA;J@Nxɕ;$!3 {Boh:PfNh<>{`4ӱd]ׁ 0:-!JEz\P1LV(c@P ]&? LBEUPr}9 .FkYDx,BgsG9Re q VZfR`fq}=8lX8'_QSa{arǁ_"b%g[oe2h$IqQ5|pzE _$,|GQ=XIHHV+'iV6T7|!0iHy-R#~S}:ڊ )#H>RyQ!9=)QH}qZǀнi=S.7F*G !pk#y-]Dfl9Z~f'/fVpU |Ϡ'~c-z$&s`ʾ%yX:ҌrK ?j eh/NoQ@\?16,VRuoZjP߭ӄBaO 2{JJTϩ`.tZ@^\4+h (9sQXJ 'M"+{+őn IB&Hg0{}R!(]-LqU5uag̶\5餛 7[AIc-:ğ[_+{ȠJwG\qaoٌRDCV6};AyݬCrN$3)Ў:NKn3XulMF Cq3;:0=eD{]wH+TT ͉iܺ"V)8'Ԃu{jځ,V9$ŶY1<1rA#;T~o:*-͘7{iL2da3n"ɑm pn6ӶH!'y[[ -%ܰ&Z=L9l6?Any0Q@1?nW{kvIohP*&r,xBlP9yI}j,qo> ++*^-ѻk׋ Bo` ]6Br@ e(%5 7n3\kws_\'BnHDZ`qڏa2޻U>2*` ܅V{)1HI  j٤ه)FZI#.5b}H_*X :a%l:Ǘa1|SiȬ̚\KYwC`p{M·L DJyt'! .$-$ 'b:2T^^Җ.1aDV:L ?^Š&c$*/X%@鴦5 'iI %nȔ|o3'4]L$"`,޸ 0SJsMf&d1J/-& 6Gͼ~Mt`ۋB1kÉ!1BCv_: A} $\ j6w0{ RGk03˵˫ q"lm>A^Qu%Gbش)R|@[?|+HNv8S' a,S,j|֐-\Y[o(F<䧑=D4>IaAq2pX/MFim{d[Iw4}%EeCN\ w1ς` :̀N"4_eUVt7 y!K> o#Y>ok.^)0#*Hn MvBj-Cߠ+|ֱ]qt}f+-Rb<>I(UTrZ|vpv0gU0%\)= w^=cc°=Rzqk~lDVp ۫u&vQͽ$үu!Y Ў\7̇VzNe7T pig\]Aڋ>Y@^"~A]7ރ^ln歊PH% nB۴~Mاz{^Ihzd~PMvlmpϱe"~ꬠȹMF88%Mtk4XZ¿#G40lo6NɉOwl %߆]6# ]WB%F?]7Se@U߮ #[Pd3+ֹ ,X~N,G V?!a1E9+qbrHZ]>k~衶RXLIw$UͯAw bץceq LR(eqfL8g8-wnBVq)^(qS٘%FRLJ0J5.Ƀ #u-+k:V!Oƕ[mS+4XInA#E]NW,].X,z(GCd%\W X~zPJـ,*]#5 2JTt q t1=֝W@XTTVl>; VHjq^e7GN@'sA%.$p;$V{njh mc\zeMl:D5(s!&%hBbИMCsW1퀓qt=HH)04غ_f Jm{ʆx3ҩWI{;.! %Hw|dQ]-O%eCN#@ mD3Ւ`'{MޅyeSk..UM 8kBZO~yqRa@$aC! 9]MH?W/Ԫ#)II>xOL',3*l'ul}e N!ȞGTBϏ>xHLH_ r.foeNTWyHGE:bodVݴL_v֢[^aw]I\ج ˖UE l!|#jq~},mULlO4 x?vi>F i Uph#K fm6SO*hBqLk Bnb꿧|lnO xs`+鲳 g\,Χ,[!|%tLƠruk $UY: g梔mdڄ2ẺSMoe!=L˦Vfگ5QqX1UZ6x`ts9+EX2~ p+䚗*C}!C+HF+o=ŋöp؀{2{VG)gmzK.? u-⼵M >W1MQ/<47޾6**Q|㍯E"ToBƤs3- % z}OP圻hcʶvY仝,(6kV!Jύηt#?α m$.0V79>jش \?]ӥŞ MOR<[dW?{MrJs›c2Zz`VEXcea~vYn re]τ)E_ù bPk IvĚ iXaZ(,4=4e4~1уUd9C{?m|G8^sg-O֨u-DNub7_҅LLۂ 2păh? PEs:p&PnI?Ft"o)SAC)QduQT =&ҩ0ml{`ULo#NP&mW[9} Pde?=}uN6:amnWH\D!]h_N(rLJ< u4ׂI0G^ Apj7::÷؆;6{ tHQNKOtbK&rU˚Ua ~B`ֆ8;IkLB}h>A~S)uX?ȇdU2s [`x}Vz <]Up@l*K'jzPT9ũ7YnQ,Bΐ8tLk-q"ݨ@D@ a|8q|1GwSoY=4p+rAVٰo+pH7o (Z<J,nQrc%`%gQ9:"=xB_az'^D࠹vzњȴE)mT`He @QK%ڸhQ(4xB׽4^5(NLg3AiOJ/WtqQ(jdٖ_ N!` x/>l*;l0#rn "C>͞8 ǃ*RbJ7f\V4Z- =xqwLR.L#MQo{dS+GМH):n,Bp_n^|/nCH"z~A3gbVԭ_3s>hQCnM:S7ƤneC)Y>JdO %H 0H޷;c(1X3fU&[~^?˫i Ikݬ^n:ACY$}ss8FeL5\|ZTe,xrS?袯CuG=( '=ӑ93vƿ d~)+Yh>2,T%i%oe,8:RWyeCA Ys;PC!I/K_m(lLhgn2Eh!pCD-kbZE:W ,g`^_ /*r'3ۺs`֋Ps\ĦZw]"_'cȱ ZR_',X?@`跦]w]}_7x)$ oYZWSbDT@"+j (f228 L^ˌ 5KZڡ}03t0i!(Ćc!+ޭXe4Ѿ܍R&a)ɉCFP4^"f{Q9/C#u@mq'sW ~xU_MQ;K !TT=)cv6%#Yvjoؗ? V=YӿC3D^q2v92tRBq]h q &9[|2cYCZybHOD"[kal{RBt]JpWN(:yG!kyId:e7>zYȆ鲣Ct vcӞ/6gI 7Sײƣ~5a)`HcOأyZTp،sXg#Ys%g3t&/JZ8a(N)94;?,=zHʌ۹|C岥xNZ-Q>{XOt㿐Ai!2*CE)sKg~xu幪4GE/Ta0+<2e(^rX7JuXSC1>LPE1NM9&a".odKLO& &F'{3{#WBXy1c(*{]xm脶8vq~̲U\,/TkM6 TbbiЋtOq.@FTD'T K[MV_BZ|:f |ăvUins\Vj#11x g˱ H;ªABB"%epӀajC/zE/IpI ۅ#UOM8+ijoBZܾ%d5l?UR{ONFe+Zї2:.Am9S\qozź y#S6D بͳ5g = Qf Hmޘ[*ЪOO#`Rk 9v:3]o;co3n'DX{ܞu-su)j:I5qdk6|f_f[PP^aUa{ ժ6 LNY2yt5 n:\ˆfSW=4}m TGdEN-(;Xc PhעmQ%S.MꮅFA)%<ע+: /Y/zQQ܈UM 0K,G&GN߽U3sWѭu5Tug4k \b\C:*-[˷:~p .k E xOG"0 x-YRA5 a&j7 -\BNWAwڹ`㲕yJS厢O`*iSsmؖ I>.1ubjC=O#UA'z>*UWX+ -3ҝ'e#{]'R¹ͰoDM~o7[QVdއclӴdy_0ȶ x[f毷gWo$G1 qϐ6XGC~ 3t!RF0hRw+&KnB((-B&c'f#phRS{u p$r#*x[EYCR^Gq(O,`|SL| EjUE4twC򦎞&Σ$l6JJO>nO@zqn'?׆s>RJyy;rd/)Xq0!:dlBűRK ~;)CT/~俌 (ب|H+4zQNx}X;о떽Y6ܶa*K}uV@ m;;cJ#lt/9jdʑ5[FN;`ge%]Vګ~&T6\u!l \3'kYyVQ${ oaA9MOiF:(|VYTStV!NPAb@[TLj#~ء3:ϖD2J ~Ggh"=S=0Z F0ԍ9)IY>#`f#kG oӜhc_Ljp`b2C.DoȽNjZ2LǺ'坌NK=:Ѕo}d Cz!JG,Fwڧ97aaմ6;T}wWg~zLiX;GM!El1VqDX= t34g?6"ӸoAOB?W >9pn-2ë. :]!ԿoH2`)ŚXE&}7ΐ䚂rxy!, ᇠG\Xgy}K['whԨɭqwi;'"}0*~dcW\xuTd51ǂZwnD9 W\7񵒙}ǀ{8toWdlIG:-JO2u@YM{:cHsВgw9bUJC oz]B٨e",m/ h)S_d}E 2T70&4@ >gpUDat㛭Ήѐ% zTZ'.xTRz7p* :,%B Ù]<$nbdnHe xds~$mZ9v\ BwuNCx W`sȟ˴AR|OmMcq$dy8k&;"žj*qXbj8.F::/>!_t~/8xA_a3+ں ƚ<'9G%Ʌ:a.R9h1-#Z ([8hqc;v ]fy\:r0> av v|}[E:,!>s@S)=ܞ鴔6(? iOgwhe6Sp q// ,518(SMlX(+N^m &Cr"Bǒby]Z]53sps/PM) e"=1[Jr_d=m{pθYGƍֿ~CvHlhh>yɒZSWn.S/LcX;V0N9M@knF?0Pys66*:$n&W6_ݞ+A(g9py ªN2gctyl^Ώ~r0Ā#Uס:@c幋Sc[u:K YtXa8cT*n=HpNk h |=ϕ{ =k7򔙃m+:P|EĀ7 aQP)E.iP 1lY*{9]Ui>LTr@DQmU;Z,YdžHkooL;d*sj~hT>Mzh2 ` )=X(m WDKuJG@(^pLnQ^rr;oz Qq 11ƳP,ȥhV QJѤ{Xu'+ml]G !gj2X_RAWlH -.fumAܻT6&I4Qq/869}Kɤ8ѣ:CBaK΢#8XPE35(\+D܆C5ˀ>Bs~j 3$6#ںԊi %AX|9c |EitD<ĴB:lkBzCi9y+fZ)}/oO]ޠ[xk Dʛ?K:Bܟ׋@wBZւK0Uχ7a''hЂFcyEjFWY1R"d v҇ti!} ُk7cNl7gx*\rO `bG#Olfeqhy)Rݼug3vD"IB#u~Eik?I]ꕫ$@m=/ GN+d%}s V` *e/7 ~aMZzjSƪPQZD @sbZV/zK-Q7a6MWlsl{ъ[T+h{pYjd=k6gH۰w.@=Br:lsvMiېgnME O럩~s?w\6զ;<*f»dpԚ4.$P%-y\SAEI?S1q=c+W8sĞA$F&Iwh&<hFGNZӬ6i <(^h\bVAv/]bh|aAQġᢺB+$j;13+v-VH<#< IwMQⳜUo}d 懫TThda`ıIm&O@6,WD,Wgw+)P+Xա"*/OzA$C~\)gOXr4!+xt|`+C{]Ds`4|wXD\UHiݩDLSҫONXhrfr,%FwL0 cjҤ+ji蔖*Qm\pTz:3|M~`*,pzKT@xbZ*1O~UҦ 0npy}C,|,i8b k&L&ljcP[8mV&̕+[`a~PY (  G1G}xlo+Mh}u\]lw}9=Xl\9ȩ, ]zN/bF'g ӨA<.?4"bܸutXzV_w\O˩ڌ .VҐEG/ ~I2Gs-ô%|/qwt{RSRU/5d2&d#|'5~h>Q8TF9v$KDFzcsɬ$7bY!m97S2F3 +dಚ\8W?{ \Թ9䛉Ùoعd@v0NpQi|E̤W% ࡐ|\>\Vw5u rZ5j WmL\|«L?s>é']s0<"(e*{mw 8{-̀׹!Iw*%:IjqűHH1-=uaxbzM9¬2>`z{cJR_SaǐP:!]$`qF[EE{{rOp-&\ڪ;O ?"R =W8]Qc-qo5LUf85 s`0Cf &ޒC'[_q+SƔtWrzCX}tgm>%hբ6.y<<ϲvےeRH+0ē4=`|s:z}K %Z=N_7G1#"b")$sA=clpt-uUMcr>*{R d++ף"!MmԊ8>1G=@R @^Z\WǺLf˛z>C6mw=Nqu.dN1:k,Tq;NJy0ZҬ^K.ZScJ_"d6%rH m 4"qz㟏8pR%yBKfGȅlL|l~!G0t&눵vk`6E)SM.B,~`1\l K47-%~;,isʜDٮHtS5HI2p7志BBTBe,=n@‘^h/}V݌8wX-r5=: O+)#(نk7Z`cfGm~x5<& 2hmz$CI_] V" ^_ҡ9_vʥIǓeJ?]RkAЇ~HEF q'?-e4YZ&Ĕ,P:y: `Q.n0$:&4,8@l+s>_mM+Lo 2L&'qY4+qK3R*LλR{!TLRpt(4v0EPWw3i?3P!A A@sقWL8lHiEE5bҷqB{@[c:́DO||SCMpFOi7Mx%cFIʍ6ϱDl)eޜyKjWmDՈ.W}+mF;Rb4.d Hi,F`wk5M :Bc{+]B,`e9" 9vmQIo ȗVI^'\бj}ֹ̹EGg#&-7cJ߰hzd,`#ޓQ+ M&ӪY=F0JOpW-#lozmpP^5Ԥ&3>g-~1G1hTV6Llk;ntR{_YXds"wދ=lM+V*_q]z\Qz9景Pib< ׋fohU?*o/. cP ˯_391 "-BSAw;'U˛3uik(PN%!C~-E݇ DoN4FL1tl|hLFZ |si(D`-wx'oI4} -z. MtjjvIg7 YFм/ Zhd|ܘ} m^z_kH);gX^f' xܦְQ*KJOCWW!ޮq< -i s6e(f:*P50 A&ĺY?n`(]ÑLd\vn񽑲 XVlW޲˩<k"h P@N%jHcQCv52VL[DZ/nƍYE+Xmy\o5Krn-zseҏʰUU1|M}muH# KS =4:K&[E鲸jQi7>nȜ01yuQ= nxgc/.;r-v6a\ix' ;gsE&983:,L,EAp"q.G[Hr`ҁ+o>MaM{9am?6׮Zѯ-\hUrlV:뀌.#pttL/jsH Em kiLM"1g]Mg@ͳ,QY/5ot5QVMRGjIXRs/7"օ;p/?vQl7\;IUEcV\ֈ"ɍ85H kj/c}(0-DfNj[ m6.Ls ؟"bcڛٴ}|h]3dK猄]!4 ҇?!!-םrͬh>WVȵځO1pAEμ^`=^sݯ9~kݺ9~4`b@.9רF"Pᔄjpɞ٢wcX xP ,KSoa M{ A#3d f1]־t+?bpf83i.UӷKvm01!x27ܫ@bQ ==3#=!h]sX:S6CEŽʢf!uz$[_'&(AȉXYUs.A;ҹF=1v4wLNb̹Z_2Ʈ)%]v)*d@Cj=8'EL\쓫aO?VjkvGr{EȍZip>A] *#/]9Uo }#!_7rZ6}ՒB}[SN[y9qxס0z.HU!-k,̾ 'fgϣ'C3 ɢBB7m) H_bݨGQ!v8R 'JM` cw2GD-"[2@McARzaoq[bza.AT݇oZm)#yvf̷r͗ k6mqXjq>[GtOI}`񤧮:+~K$b:}%?ڌ 3 A0+S J X18$8TrLqim)H#i#z7S 6kN 2mo jGCs+1HC㡚?yDѢnGq*.8K)"ly#Kb^VN2b،uvs< =* L|U2?NfGV3Fیn ^p/vU +, 1|=J^dϘÿRr7}q@`@~q+3B^4D}e<:|r2fZJ5Xlb=! %<_V1'Q:jqu+m'86 Xt*1D"d#H{'sOXwS2 k̤noK.UkRbڔqSA(>e-ZSk?C;Q$d83jۗ" 8G*9$Cy3K|vӡq,u(h$@ON 4 dZ-\ӻ7( z"m`'x͜AHki*oΫaEAID9` ,(ߟCk`ޱ! ½Vī ړF>LB!X7q#۪pHC94O=wŤv"Krn#7F4%n}s B9tRR2cv¡DR$Mqk? l%%D9&F#lK@&>>O+h ^Kit]Zw'KOL(@ЅjiE~1\@}Ov(:C^x,MZw~v,w$3bg( 7 _>ݽ7jc=,ϿghcUp/wһq,no1n+NveO5"^^}7ʵ Np-yacd:a,P+BMx{֫VDEI@ƎxP^`YD~|Nz@. d*s^kV @g;  G-0]f'Tr - RF<=C%WVވ'Cyfew|;O6xœ)BB v e+a*!^餧Ih$HWYn4'xym6ahGZ}aGe yQfHiޙQKq% !S%bV;ß䂁X)Dس\Ӳ.Ih$7z?JqIƻy [ZejilnŕY/5ݕ5>|88"{(X}nD㚹Lta.ЬB Xo M9 TlRv=ދR78ĤK 'iu̓W`=!b6ds,1M?ZF+$\48q^%ZMkg4Ș}{C^秆A$"K5zUPi!̗eIgG3F}KKfoӓuIOlQ(n-,[=$4.oi|^H8gI 냾< ^v* EO6'&4]y^{p66?#4Y pJP?zZTOv8/nXM" K6Zvcd$_")'(ib]FPi%vdlfk[#1.m`ÚMaQIٰzq܄FfblOKC@pJɬ|rM1nn! /l86,:dA2cxǵvJML6\m$j_dSxً |76OgLc}#02!6Ŕ=p-Ԅm ĘGG_tFKsbr\fq Tոl"+צ$z 3<2ĺ6vSȹ!/=o@C?7V$̔WU_]ymMp}/q6w MQP{:izr˛;TAul~α~/愫XҼӖY5Vg[ N ݠQ-Ty /n'AMwA./E ZW ڼ{ф>j㻪021pyqAYtwD~">V@(QrƵ_F:Хnn|D~L9Nd<$؂$iF,urxs}gZ|^&5}AH.(W5;,>'&[KsOv@) vXJ!xq9~}vͤI o`{)|+,A-,3َ}>r25C={-\X7hF pY:,!&zg"q{IzDghArB߄(cYR2csHEY(23s (TY1IK%ѿ]oV6 DY#?UXΓtK[ BM%h"A9 vi}_ #sA (AnpA!ҨSݔIA[ 6߸~6$h ~d'W$lև6FX7krҏsNAc : WU} ~ LVt_O$-?*!-5._+H]Hq,AS)vԲHkd)e+ȋl` j |-[l;.ֈӽlxw/iѮ5pT uΚU6PлJ(ܮpuS"XU,;k"(][z (4U)T[B8@tQ6Ύlk#<͐@q)6 2`cΌ:&mizȣOǜ$ ( K8oT5S3-ن;2&IƗ/ӎkv6Nj(?pUDhl]ܨ*U hV7V: V`glg0͘@M ;W>̰_jl̏ Wt}( n+u0cҦ$nE7Zy= UbE#3k;#Ul~ȅ?#h*;gRe$j#?NNs-ҕsn !JXPMh";5 y# {, 9lf J8 ¤a9;A?*FW_PN6GA(JX~b˭":vch+O|$P`oѶ@6]iFcb]$6_ۺ~N>(ǥIo ^$g 8u¸EM6TI̾K3 bj_ﶼrXwnj; ;`ܢ'O YO&m|" ;}cI^:KL</X&i9,uX2a|+qO;#; Nf4 *4&aJB_pur<۲˰:#!F~SEI֣B#%ʋ/LG_7/v^¦g:ѳU0)ng|U.Pj0jx? U[j8)cz3=2 Q&u{5A8ݿNQR !`+֔"pT/!}GxaLgNg:+5K6Ԍ` EuX4'm5θ@^`i ~4#'p7q5bkv'!ΐf4\nD2I=GwLxg!|^X#snS8+߀h;n1>u9AWm$SB?C/"/CoOYӝHRWXQTߙ.8HIlEWޣUEgl!F,d'jٯti|zXk|W%^X57I5NSl< xcےCB݁m$ӫ ]ˋC8+z. sweĝ!8Ѹ۸~)W-{k, P&g' G7bK~M Rva2 ` ψLV&<仛Sug.ـWZa.G7'JOZP ˧ȑP;{%N>c 2N6^bcaJ0M&b&{ql`wOiˢ|ۃ~#G4@.6zǥQ.Qʪ= JXv NƤVadRI#.>mx#Ϊ$G.$`@,zƤdޭ«cQA.eY&^Fp4B*2pT13Lvֵz\=U`7BTVSO$Zyhl4@sӟYzѴ^r8|Yw3t[6@ji0,{Z z{ui6~34`S&r?ےijJf4xo@;?SAO^+pYNQM]c"*( lD6h(DdgyL`j AUEjjZ:wsƹq:Sla V3JI!IGx~&H\ ,iYe?ZoC7Q|BBjnI6)fq v65+v|j9٫ؽ럷 odk}:4yD2B3 FRLYOھA?U5|Ł/'y|1,!pҥW  {zs,' 1de jm35c徹:&_ `Y_C+[V `~Lٴ}qK3@ :; r=D W9CO:ƘklP %b[ ƥ8Wߔ ZUh29-᝝{ B6ZGr a] oa'M`^.@$,FԽlZ`R ~C2x h;rA:qxȟ IߩG(Lњ3'/F4ѻ4e0!"yy6$;p@cӤzUaiK$SO3dQZyi㻃AeOןp׭/Y)\>sSٌc:ZG@2PxWXɰҳ:/D,ow9Dn_tUuYm Xew,J}O]/ƫ{2B\I?N2jnV I\;`ӹOJ/5ޣa;T,,ݚ]:ՅyNCu!{p&(F'08}$fsl3lY_2CE-ty߸#r#Y?R!t` !cr4;u繖)ekYDEK,}QN44bM &ni\PEB$ t NQdteo+ck +9@B8o֚eaSdKjR@M+Lܥ3oAcx 9rה#̌y%Tnsn?mQ6<)v> 1.ڞ@@1!3TyVRQx]T 0YcGMoCLE-.'  |P!yғ6k>l*ֿ%CQz\,pS[Ψ|H¡bXFc>\psD=@6 ?txZ+Y ܻ7^+kJ_%2 `ʺd+Ob̌< bCdĥDAcl^>v~Nb@ )'MՋF^tS"*M:'fQ\g9+g8jáJik}yУ}ҿEU5Y}IZ5C *%D .Ha_2x}{Pf=Egy$NSt2q7.KRPa2i+TjJG:e\~[&kq9<{iX6&aLX 8y;~6ٜqyk30QG.I2QBL; W|Aƭ7V Pf.m4)s>R~棐pbI}`x!bU7 /Rv |f|yx:$Š毀pX:D5ḰǠ(zrg&jXӾ+8zu0SsӖz wI)m5KoQ 厚hwמhn]M ÇG}HqK Sd'BOrWBN<Ng`2X͛)IZΨ(nuIuv:`-uD"_M~l2&'3"Q}kcU+]SaeMwCGߤg!蠁cM6BXk/w?$y(DZh"y}\(nCVϹ[qJDCN=* F$1CG' 8DOI6@7"ౘB݀}Vgʌ 87xdgE bz1Օ?%|]^b IO~RȱŔΆ@Vid} &Zb/B̰,XBX`%l"i^^I4,\Ǝ #TԸ-UF-sFid Ǽ @y;Wxl Tѽ( ٌm]j$#?bMSXD"P~7Xy*$m+ķԌp y<щ;FP:u7g_r0.C0HzaA`5\%)>iC6owOsBL2GN`;f'@ch%8oiL-{]֍rUgajƄu)oK0N). @=3`=vإ&aKVFwGdKz/QEu"$]W0qow( ?bq˵MJwWqBNHHt;aJʩno$ T O@e}ӎ/oZZD ׂ > Eۡӕ).J;^e"?sPX57|ZYhb^\8@i: C}L3a7"0*Ihd 2]{`&bb]JnpQ[_ʺ n08; u*xʆT}&[cG0`B3Ba^O" ji.f/9f-:weu [-cEYy>ô(Ή֠Q =u=0  ·yv5m.anLAu24>B/Ű|ޕw+C9$j(]A9d+i7htdYоV%3?X%p⩀ ]NuadFz7I ٚ;36*'SA*vKw i1."=}JF0sq@ N) k0l{{.O8ؕ4X֩J~""Qb2!YX$%Wtܐ-daU:Aca)%/޵W}؉pM;^҄EBW₵Q?c4ZXMow>cs> W@wW3GFˇ wV)]O>U31.6tNdb +5o,3'WS fzxjS6i PXPH*!Κp5~&p%LF8A ^{C򡺔s'.iƪ瀆h n~ԋv U@VZYf}C_cQҴ "/hlE|iE+bNkjka9Xq"r $8 `$>ϛM KcK*l, HUȪtx/q>fyI=b3,fo'cg$|>ne1f8W1&KCA ؃'%G2{B!`L?VIoYUzm|AyP3ˆ$7~?Ϗ6&n;*AְvxxQT{Sǐu" l)rca&h?ʱ0 S2.c63H,Rm j$2h7[D%HKW jtz8 ĮxeX>?uVʧDQ L ҽUYU99\"PR)M_{tëM0苞܁1>,l!6Q/L?bϽ|)#"/?ѭy_V-@O h l4PqPQ^A*|ep{0R˯H*J'[#*;ɤAy.W s-s 5<0|5qꯑF7a')ŔdzM aYuY?]]]wR(8۽']㿺b?E7 /h~PMxL_5KĔbV'>!^`4$HlwXごCk[M B򊀐2gO`wI,Y.A|8w]dx}ZYOιFHoV)b =2v,h<s:FΕ{qx1yv7f;G)Qq9eiDo6'btlWytThpaYm"\@608kXI`۰ZGܘICJa^m7Fx+CahY3"Z97Xឰk).n=yV80)!T 6u]ŗ'+r_~+ho%&>S99՟"k~њus-72 D99&ArEL^[R0_G/||)%C$k$zHE;kbiyc!,-F#,4NM8+Y|nBW]&Djߌ]lJEWuKZ>Lyv4ŀq'/j06"J R7)5V5[vbEi8rcKD!okedn7"3T12L+5n(z9?]wB| vMOoIcllEe" +e~f;N#$A(&6(3o's2M"΀,JpT zƛљ drK[`|œ'̈́kg*Ax\|6xS~'Ie沌t9wxuKD[IYE4 K dv5H nw,)c3~{T f`':ꏙ[2h) (̬UhQy妷t=FHZ Nqͱ̐u с8}|,t X; e-a=Z?YcC+o=mquJlH1]Glw Ő$d?.Řqs5Q-jFĎ˷=5NoTFXDC^'*"%OhaoNFqViwYAeTV#x/CrĥEo,O7K!J# I[Rm̥JUGmcَíM s e)++}͎Ԍ km|?f)8#8ei&ݏ8[I#KqMԞUd+OEhsw pz%5-+U_d-nGUHjuҁ_j 2/6l޻AEJosciAH r/?Ks2r~Y@6-0Q؂."h6 ;ȑb+0pyY-l"X8GX {}}㹚K7'O>E0/YpGvBqcٙ"fT f}%\t RkN%:N`qdO1{CI[|*yχAp5H)V_e?n;'W.a%JmPN%T4`/ҝ9uUv*lEtڃ9Pl)xܰYdruHW2w#&L^z:N[l2 J_cn-;VX}E5o#9ϛoy2du?Z5?6f`3t||-!5BHSDМ+9f@7 dR!=X΂(K~Hd:4A^it-5sv E ̈$Ebsw$ܱ/TFN[gU LZDn+^vC6xkڬO+h") ) ֗[x=2nHȪb%hyCO|C'ug?:JYSSv41m*٩8;'F]r?`}AjPinvNT8hbfb oU7 f蕦6w|Pa':1Xzޥ,sG=Q&A|QT2a6*p㷸y6^l&+¢ u3֥ϡGBEYk7h<+e)oQ1T{C&d?s l%/miO_ j qKOc*)[QP^uBrmtǺL s3OɃ崪30AQ =uW[9* v a5*W2Zs>%ǩQ} *o E~8QlD?IT~"@UC_=1EHc !e%]_0cjƓ]v-J\3;EͩKS557LlbЋ|o|7R#@E׊`@5e/dl[JtH~鵒{ɂd(h)xJ`,8wNVIhWe7c..Nw ,u/jB:M(;`V-/G獬eK S=EbiGUn(׏sCEDRSZef?j%LR)7}:qڱ_a_*7Śb,#WH޺pS hdrYZ^ѧr=},mּlO6h%9Ch,5 O[-Uo}7: Y[T%6ϫM - { ֔,7xhdB⧠7QR< m/Go6G5@Nm\ƶ3>ӯz+X񎛪&Ym]bn&+H 5mCNa8gڄ`+=;?` KO>W;VaRxdt}Ik5VA ÊqNӖw~yTj_D? CsX#fͿ(BC*+zu5]SgF[n(1wfFfa`) lezD= #>뫘5궨] ."V] i ʾoi_r#]rU?:66ˁg 6ϢIyO <ՠ5b;z 3Gy'-I*~}СttC 9]i}/ (G<g|ܧ\Yo;pSlhpw|Nea)n sTЊicM-pR |}\tHGfSR //I=q+s>Lj7|LBx9^͞?$9L7GzzajBe܉CYBOGuM[mla=[;BKg4[0g"nz3kɝeͫt T5Pqo.%ĖU$w3TB .]r޿[ܟ,߀]t fVE^oG,NA&?9Ɏaz3I( uub8vc <` qƩPd/X Vfv8D˖.QL`_)̫F6m1 z8:H 2̈pf)=ԕkʼnD'vgX|uB+RSVb7RHT\!a&]QQ†B2$U )ReQf.i4=8YC\43Jh-}f̓f򇲪yf~5o9ePM`X0fHM_ԹbKN(Z+Rk}V lʭ$/*s34@dwAoLd34@3Z"ݑ0\ɜ]FZRi~GXE`̚+7ঋ0^aTa4,({{90*+ƽJkD;e'0\g7toRC$C]6Z}Mj(BW(uΑ{uq|c@T,]sb[^W6+vbw*t47[CZ[2}eNORBT|87gLKTŖTXu]135ZK9xɀrNXV o?09UoUa""֯ :|"hMϖ=mco/5Xfw#r#[%q܅p9uTR|hl W#iVOXi<`;ڳB$+ja>ysiЮ;vuՀyh8obUNU6ρ T(-.LEYROkf7 ㋤VGD{caAXx4Y6GuD=Դ [⼬ܝ{%o;Br:I7Ody;,0(%howf8_WY i챾1p&᯺̸DyͰ@Ͳ*{Oӝ7xGHKJ4J^ק"˃YKmXaE6* cVꀿHSU@R#+F0$|tȀ/LJo&f!g'A.Ktc)=pUNJIGC)熵t1m}@Ap.w7z>AO)XS"5Qɉ= /Sx]!z)?Nqj?!o;vUw2O_uJ r\uŔITCS 3"0|4s nuHOD.$(2ؖ+\Tb7뵇w7~?T ׫:7fYA`,)PQ7ї[cq۬uW<փn %ƅLU4wϲc32\KlӐXTfuڋ<(j|U +VtÑ(JQStP3@3p*&$ BLT(a_)j:03k\%p LfmNYWJ$m|JN0N8O4n;Ue*3o`(CM9L4(1*uICJ{e9>&~h u-QhZPكV7]++^Encx- QqXU\< y_s_0 5 kTi VGZz& hpܔ1tpDkTDgȟ[ q2)G!< *Aؐ if%%'Wb_̨J%,v ,'p>4+d2IVwc\'edW(S, DRV`ҭ("`S>B_^(5oYAX/}v`!YFdFVn޲䌗:w< Nв^~!R(ۜN;kD!aEN0.l@N <5=fu#ʷ:`3fO1y)hZ?(%ɥa#τ:s^IFWu,{NXW7`!vZgv@  JX0;?< ϟ~B!_10z.fe#j3uE+^`tIkoG#}ȁCM?l/?G5eZͣ *C)6̔^\uI8| EhDC ;oc6 3tÈudmsb ָ[7к6ku)Ik(*揖$զIlNp@ZeF,+ &nĐ!rd{iegչڞ[m c!R]j7.V{R*;[7kΆwKzۨ#, H s䴪Mb6 55[* gT knrکR|b)0POի)ps_ M#-.%D@yƓ&ww-4hAj5::78^mD:_1  01֙t* KZ~YlG>-#1{c(%؄{f~-Ya @|Yn,]ȹιfPoP2of>w,b0 =^*[ڊǡEvK%+A0ڴƔ M$:dP9"Eo*y̋u*h\29*ZtlsPC9DŽwo\W'f_/4dq6O+3ވxE \,҂ǻ7_vr %SY LHp:FSvξ-UEc w7:h"$(Yso)5$l*EPS]CQ"_1inpenCKAC)ĤyhrD^6XeյmviFgUAL glaױ2|y]H-f1!%7ep (M)=Aj'îq>q5˻tvLp_Ehil?gŁJRPP@