sssd-ad-2.9.3-2.el8 >  H   ;LPe[U U]+ w1^$HE93bC<pYePwFɪBM` l c$)>[X5?oq)S \J?{3!ohrV6O yoApu9ҞbѪ pȜ%bvMj:jn8ɏD|PbjlЌZlFhw}Mҡ{TLj,ׅ/4bk?|ٟvrsuLdlGv!` N4-cj3 1]RŭиX7[vA!D+x%\6&"݄7/Yg*8օ JW.Zw%w-w" sNe,3TlJ aK!6Vǥdzg %92~SށZz17܂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؉e[U U]U$gCP;N|שq59ij"vvTc ᖇapatfN).V8(Eϫr=m!O*D_hG!CxZYFIU"4!9Ά[l{dެ˔(oX@JV{~)|#o0h~ڋ=0w7g87œI.SpqM/f`]^%i0큶;7vsVĐ?ڱt8#;+ ]#M^w5sK*}NvQ4h@HaJ[ޭZ \|k"[9t/, ]?6F'El^vz^JUsY,뿤AHANH48Dž2ϒ-gVP )TܑHxaTuoxR;aY}[h(]U vj "uoLE_\IޏEJ307+k=!vF߃D4&UWdx>`E?|d   2 ,IOX            @ |  4B<B B   ( 8 9:gG H I XY$\@ ]p ^& b%ddeifllnt u vwd x yJ ,06xCsssd-ad2.9.32.el8The AD back end of the SSSDProvides the Active Directory back end that the SSSD can utilize to fetch identity data from and authenticate against an Active Directory server.eRg9ppc64le-02.stream.rdu2.redhat.com1CentOSCentOSGPLv3+builder@centos.orgApplications/Systemhttps://github.com/SSSD/sssdlinuxppc64le'&DXK:N>pQAAA큤eRg*eRg*eRg*eRg*eRfeRfeRg*eReRfeRfeRfeRfbd0d3f50d75c0bb3fb8cfbf1257dc20cbfe18a5b7c4afa1b54f6e7b24f9e74b272578d3e9f5d98f31cd8f52733352d6fd61dc15289fd0d11bb35b9257bbb85468ceb4b9ee5adedde47b31e975c1d90c73ad27b6b165a1dcd80c7c545eb65b9037eef77c218983c7b64bcc10bbc2df7b3b12a4e0fb15a4b2e8a84f619f5dbde56381ec374195a7c5c73e73ed11a87e9b124bc25c83dbfe4cbba4a1ab04b19e8b59b9d753fdd483bda04debe7eefe677774062e62a8c87cf07eb432a422788dfff27263dd1f408457c1c7f5278c49756aa90bb0fcf4d930e9ccc956a94a0e68be5../../../../usr/lib64/sssd/libsss_ad.so../../../../usr/libexec/sssd/gpo_childrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootsssd-2.9.3-2.el8.src.rpmlibsss_ad.so()(64bit)sssd-adsssd-ad(ppc-64)@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@    @ libbasicobjects.so.0()(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.17)(64bit)libc.so.6(GLIBC_2.28)(64bit)libcollection.so.4()(64bit)libcom_err.so.2()(64bit)libcrypto.so.1.1()(64bit)libdbus-1.so.3()(64bit)libdhash.so.1()(64bit)libdhash.so.1(DHASH_0.4.3)(64bit)libini_config.so.5()(64bit)libini_config.so.5(INI_CONFIG_1.1.0)(64bit)libk5crypto.so.3()(64bit)libkeyutils.so.1()(64bit)libkrb5.so.3()(64bit)liblber-2.4.so.2()(64bit)libldap-2.4.so.2()(64bit)libldb.so.2()(64bit)libldb.so.2(LDB_0.9.10)(64bit)libndr-krb5pac.so.0()(64bit)libndr-krb5pac.so.0(NDR_KRB5PAC_0.0.1)(64bit)libndr-nbt.so.0()(64bit)libndr-nbt.so.0(NDR_NBT_0.0.1)(64bit)libndr-standard.so.0()(64bit)libndr.so.3()(64bit)libndr.so.3(NDR_0.0.1)(64bit)libndr.so.3(NDR_0.0.6)(64bit)libndr.so.3(NDR_1.0.0)(64bit)libpcre2-8.so.0()(64bit)libpopt.so.0()(64bit)libpopt.so.0(LIBPOPT_0)(64bit)libref_array.so.1()(64bit)librt.so.1()(64bit)libsamba-util.so.0()(64bit)libsasl2.so.3()(64bit)libselinux.so.1()(64bit)libsmbclient.so.0()(64bit)libsmbclient.so.0(SMBCLIENT_0.1.0)(64bit)libsss_cert.so()(64bit)libsss_certmaplibsss_certmap.so.0()(64bit)libsss_child.so()(64bit)libsss_crypt.so()(64bit)libsss_debug.so()(64bit)libsss_idmaplibsss_idmap.so.0()(64bit)libsss_idmap.so.0(SSS_IDMAP_0.4)(64bit)libsss_krb5_common.so()(64bit)libsss_ldap_common.so()(64bit)libsss_util.so()(64bit)libsystemd.so.0()(64bit)libtalloc.so.2()(64bit)libtalloc.so.2(TALLOC_2.0.2)(64bit)libtdb.so.1()(64bit)libtevent.so.0()(64bit)libtevent.so.0(TEVENT_0.9.9)(64bit)libunistring.so.2()(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)rtld(GNU_HASH)samba-client-libssssd-commonsssd-common-pacsssd-krb5-common2.9.3-2.el82.9.3-2.el83.0.4-14.6.0-14.0-15.2-14.18.6-1.el82.9.3-2.el82.9.3-2.el82.9.3-2.el8sssd1.10.0-8.beta24.14.3eReRd@dd@du@doMdbc&@cR@c|c_cc@bbγba@baZ@a6aɪa@aKa@`.`@`[` @`&m`@`x@__@_@_#___[@_?@_-B@_@_@^@^@^^(@^oj@^ku^Y^S^J@^C^0"@^0"@^0"@^@^@^@]f@]f@] @] @]+]]Y]Y]|@]o@]k]k]Y=]Y=]Y=]Y=]Y=]M`@]M`@]M`@]D%]D%]D%]9]9]]]@]@\\`@\]o@\\\\\\\@\>@\>@\>@\\\\l@[Ѱ@[^[[ā@[ā@[ā@[;@[;@[;@[;@[;@[[@[@[@[@[@[t[#@[#@[@[@[qr[;e@["XZZ&Zw@Z Z$Zz@ZyZiZiZWQZWQZ%8Z@Z@YZ@Y@YYzYKYyYw2YRHYRHY@X-XX~@XO@X}@X@XX6@XWXOXXWW@WWW@WWv[@Wi,@W5W@W@V3VVVvV%@VqR@VO @V<@V/g@V$@V @V @UpU|@U4@UUUU@UzUzUzUL@UL@U.RU@TTT@T~T8TܕT@T@TTTq@T@T@Tp@TA@TuTto@TG@TD@TT @S0SS@S.SP@S @Sg@SrS!@SkqSkqSG@SFSCS!SSRRpRpR^R[RSRNREs@RD!R@R@RNQB@Q@QQQکQQQo@Q)@Q@QQ@Q@QbQbQV@Q'@QQQQnQZ@QU@Q0@QQQ@Q@QQ @QQh@PP@P@P@Pz@Pz@PqnPl(PaPaPS@PH@PDPM>M2@MMzMx@Mj - 2.9.3-2Alexey Tikhonov - 2.9.3-1Alexey Tikhonov - 2.9.2-1Alexey Tikhonov - 2.9.1-2Alexey Tikhonov - 2.9.1-1Alexey Tikhonov - 2.9.0-4Alexey Tikhonov - 2.9.0-3Alexey Tikhonov - 2.9.0-1Alexey Tikhonov - 2.8.2-2Alexey Tikhonov - 2.8.2-1Alexey Tikhonov - 2.8.1-1Alexey Tikhonov - 2.7.3-5Alexey Tikhonov - 2.7.3-4Alexey Tikhonov - 2.7.3-3Alexey Tikhonov - 2.7.3-2Alexey Tikhonov - 2.7.3-1Alexey Tikhonov - 2.7.2-1Alexey Tikhonov - 2.7.0-2Alexey Tikhonov - 2.6.2-3Alexey Tikhonov - 2.6.2-2Alexey Tikhonov - 2.6.2-1Alexey Tikhonov - 2.6.1-2Alexey Tikhonov - 2.6.1-1Alexey Tikhonov - 2.5.2-2Alexey Tikhonov - 2.5.2-1Alexey Tikhonov - 2.5.1-2Alexey Tikhonov - 2.5.1-1Alexey Tikhonov - 2.5.0-1Alexey Tikhonov - 2.4.0-8Alexey Tikhonov - 2.4.0-7Alexey Tikhonov - 2.4.0-6Alexey Tikhonov - 2.4.0-5Alexey Tikhonov - 2.4.0-4Alexey Tikhonov - 2.4.0-3Alexey Tikhonov - 2.4.0-2Alexey Tikhonov - 2.4.0-1Alexey Tikhonov - 2.3.0-9Alexey Tikhonov - 2.3.0-8Alexey Tikhonov - 2.3.0-7Alexey Tikhonov - 2.3.0-6Alexey Tikhonov - 2.3.0-5Alexey Tikhonov - 2.3.0-4Alexey Tikhonov - 2.3.0-3Alexey Tikhonov - 2.3.0-2Alexey Tikhonov - 2.3.0-1Alexey Tikhonov - 2.2.3-19Alexey Tikhonov - 2.2.3-19Michal Židek - 2.2.3-18Alexey Tikhonov - 2.2.3-17Alexey Tikhonov - 2.2.3-16Michal Židek - 2.2.3-15Michal Židek - 2.2.3-14Michal Židek - 2.2.3-13Michal Židek - 2.2.3-12Michal Židek - 2.2.3-11Michal Židek - 2.2.3-10Michal Židek - 2.2.3-9Michal Židek - 2.2.3-8Michal Židek - 2.2.3-7Michal Židek - 2.2.3-6Michal Židek - 2.2.3-5Michal Židek - 2.2.3-4Michal Židek - 2.2.3-3Michal Židek - 2.2.3-2Michal Židek - 2.2.3-1Michal Židek - 2.2.2-1Michal Židek - 2.2.0-19Michal Židek - 2.2.0-18Michal Židek - 2.2.0-17Michal Židek - 2.2.0-16Michal Židek - 2.2.0-15Michal Židek - 2.2.0-14Michal Židek - 2.2.0-13Michal Židek - 2.2.0-12Michal Židek - 2.2.0-11Michal Židek - 2.2.0-10Michal Židek - 2.2.0-9Michal Židek - 2.2.0-8Michal Židek - 2.2.0-7Michal Židek - 2.2.0-6Jakub Hrozek - 2.2.0-5Jakub Hrozek - 2.2.0-4Jakub Hrozek - 2.2.0-3Jakub Hrozek - 2.2.0-2Michal Židek - 2.2.0-1Michal Židek - 2.1.0-1Michal Židek - 2.0.0-45Jakub Hrozek - 2.0.0-43Michal Židek - 2.0.0-42Michal Židek - 2.0.0-41Michal Židek - 2.0.0-40Michal Židek - 2.0.0-39Michal Židek - 2.0.0-38Michal Židek - 2.0.0-36Michal Židek - 2.0.0-35Michal Židek - 2.0.0-34Michal Židek - 2.0.0-33Michal Židek - 2.0.0-32Michal Židek - 2.0.0-31Michal Židek - 2.0.0-30Michal Židek - 2.0.0-29Michal Židek - 2.0.0-28Michal Židek - 2.0.0-27Michal Židek - 2.0.0-26Michal Židek - 2.0.0-25Michal Židek - 2.0.0-24Jakub Hrozek - 2.0.0-23Jakub Hrozek - 2.0.0-22Jakub Hrozek - 2.0.0-21Jakub Hrozek - 2.0.0-20Jakub Hrozek - 2.0.0-19Jakub Hrozek - 2.0.0-18Jakub Hrozek - 2.0.0-17Jakub Hrozek - 2.0.0-16Jakub Hrozek - 2.0.0-15Jakub Hrozek - 2.0.0-14Jakub Hrozek - 2.0.0-13Jakub Hrozek - 2.0.0-12Jakub Hrozek - 2.0.0-11Jakub Hrozek - 2.0.0-10Jakub Hrozek - 2.0.0-9Jakub Hrozek - 2.0.0-8Jakub Hrozek - 2.0.0-7Jakub Hrozek - 2.0.0-6Jakub Hrozek - 2.0.0-5Jakub Hrozek - 2.0.0-4Jakub Hrozek - 2.0.0-3Jakub Hrozek - 2.0.0-2Fabiano Fidêncio - 2.0.0-1Tomas Orsava - 1.16.2-2Fabiano Fidêncio - 1.16.2-1Fabiano Fidêncio - 1.16.1-3Fabiano Fidêncio - 1.16.1-2Fabiano Fidêncio - 1.16.1-1Lukas Slebodnik - 1.16.0-13Fabiano Fidêncio - 1.16.0-12Lukas Slebodnik - 1.16.0-11Lukas Slebodnik - 1.16.0-10Igor Gnatenko - 1.16.0-9Lukas Slebodnik - 1.16.0-8Lukas Slebodnik - 1.16.0-7Björn Esser - 1.16.0-6Lukas Slebodnik - 1.16.0-5Lukas Slebodnik - 1.16.0-4Jakub Hrozek - 1.16.0-3Lukas Slebodnik - 1.16.0-2Lukas Slebodnik - 1.16.0-1Lukas Slebodnik - 1.15.3-5Lukas Slebodnik - 1.15.3-4Lukas Slebodnik - 1.15.3-3Fedora Release Engineering - 1.15.3-2Lukas Slebodnik - 1.15.3-1Lukas Slebodnik - 1.15.3-0.beta.5Lukas Slebodnik - 1.15.3-0.beta.4Lukas Slebodnik - 1.15.3-0.beta.3Lukas Slebodnik - 1.15.3-0.beta.2Lukas Slebodnik - 1.15.3-0.beta.1Lukas Slebodnik - 1.15.2-1Lukas Slebodnik - 1.15.1-1Jakub Hrozek - 1.15.0-4Lukas Slebodnik - 1.15.0-3Fedora Release Engineering - 1.15.0-2Lukas Slebodnik - 1.15.0-1Miro Hrončok - 1.14.2-3Lukas Slebodnik - 1.14.2-2Lukas Slebodnik - 1.14.2-1Lukas Slebodnik - 1.14.1-4Lukas Slebodnik - 1.14.1-3Lukas Slebodnik - 1.14.1-2Lukas Slebodnik - 1.14.1-1Stephen Gallagher - 1.14.0-5Fedora Release Engineering - 1.14.0-4Lukas Slebodnik - 1.14.0-3Lukas Slebodnik - 1.14.0-2.betaLukas Slebodnik - 1.14.0-1.alphaLukas Slebodnik - 1.13.4-3Lukas Slebodnik - 1.13.4-2Lukas Slebodnik - 1.13.4-1Lukas Slebodnik - 1.13.3-6Lukas Slebodnik - 1.13.3-5Fedora Release Engineering - 1.13.3-4Lukas Slebodnik - 1.13.3-3Lukas Slebodnik - 1.13.3-2Lukas Slebodnik - 1.13.3-1Lukas Slebodnik - 1.13.2-1Robert Kuska - 1.13.1-5Lukas Slebodnik - 1.13.1-4Lukas Slebodnik - 1.13.1-3Lukas Slebodnik - 1.13.1-2Lukas Slebodnik - 1.13.1-1Lukas Slebodnik - 1.13.0-6Lukas Slebodnik - 1.13.0-5Lukas Slebodnik - 1.13.0-4Lukas Slebodnik - 1.13.0-3Lukas Slebodnik - 1.13.0-2.alphaLukas Slebodnik - 1.13.0-1.alphaFedora Release Engineering - 1.12.5-4Lukas Slebodnik - 1.12.5-3Lukas Slebodnik - 1.12.5-2Lukas Slebodnik - 1.12.5-1Lukas Slebodnik - 1.12.4-8Lukas Slebodnik - 1.12.4-7Lukas Slebodnik - 1.12.4-6Lukas Slebodnik - 1.12.4-5Jakub Hrozek - 1.12.4-4Jakub Hrozek - 1.12.4-3Lukas Slebodnik - 1.12.4-2Lukas Slebodnik - 1.12.4-1Lukas Slebodnik - 1.12.3-7Lukas Slebodnik - 1.12.3-6Jakub Hrozek - 1.12.3-5Lukas Slebodnik - 1.12.3-4Lukas Slebodnik - 1.12.3-3Lukas Slebodnik - 1.12.3-2Lukas Slebodnik - 1.12.3-1Lukas Slebodnik - 1.12.2-8Sumit Bose - 1.12.2-7Lukas Slebodnik - 1.12.2-6Jakub Hrozek - 1.12.2-5Jakub Hrozek - 1.12.2-4Jakub Hrozek - 1.12.2-3Jakub Hrozek - 1.12.2-2Jakub Hrozek - 1.12.2-1Jakub Hrozek - 1.12.1-2Jakub Hrozek - 1.12.1-1Jakub Hrozek - 1.12.0-7Fedora Release Engineering - 1.12.0-6Stephen Gallagher 1.12.0-5Jakub Hrozek - 1.12.0-1Fedora Release Engineering - 1.12.0-4.beta2Jakub Hrozek - 1.12.0-1.beta2Jakub Hrozek - 1.12.0-2.beta1Jakub Hrozek - 1.12.0-1.beta1Jakub Hrozek - 1.11.5.1-4Stephen Gallagher - 1.11.5.1-3Stephen Gallagher - 1.11.5.1-2Jakub Hrozek - 1.11.5.1-1Stephen Gallagher 1.11.5-2Jakub Hrozek - 1.11.5-1Sumit Bose - 1.11.4-3Jakub Hrozek - 1.11.4-2Jakub Hrozek - 1.11.4-1Jakub Hrozek - 1.11.3-2Jakub Hrozek - 1.11.3-1Jakub Hrozek - 1.11.2-1Sumit Bose - 1.11.1-5Sumit Bose - 1.11.1-4Jakub Hrozek - 1.11.1-3Jakub Hrozek - 1.11.1-2Jakub Hrozek - 1.11.1-1Jakub Hrozek - 1.11.0-3Jakub Hrozek - 1.11.0-2Jakub Hrozek - 1.11.0-1Jakub Hrozek - 1.11.0-0.4.beta2Fedora Release Engineering - 1.11.0-0.3.beta2Jakub Hrozek - 1.11.0.2beta2Jakub Hrozek - 1.11.0.1beta2Jakub Hrozek - 1.10.1-1Jakub Hrozek - 1.10.0-17Stephen Gallagher - 1.10.0-16Stephen Gallagher - 1.10.0-15Stephen Gallagher - 1.10.0-14Jakub Hrozek - 1.10.0-13Dan Horák - 1.10.0-12.beta2Jakub Hrozek - 1.10.0-11.beta2Jakub Hrozek - 1.10.0-10.beta2Jakub Hrozek - 1.10.0-9.beta2Jakub Hrozek - 1.10.0-8.beta1Jakub Hrozek - 1.10.0-8.beta2Jakub Hrozek - 1.10.0-7.beta1Jakub Hrozek - 1.10.0-6.beta1Jakub Hrozek - 1.10.0-5.beta1Jakub Hrozek - 1.10.0-4.beta1Jakub Hrozek - 1.10.0-3.beta1Jakub Hrozek - 1.10.0-2.alpha1Jakub Hrozek - 1.10.0-1.alpha1Jakub Hrozek - 1.9.5-10Stephen Gallagher - 1.9.4-9Jakub Hrozek - 1.9.4-8Jakub Hrozek - 1.9.4-7Jakub Hrozek - 1.9.4-6Jakub Hrozek - 1.9.4-5Jakub Hrozek - 1.9.4-4Jakub Hrozek - 1.9.4-3Jakub Hrozek - 1.9.4-2Jakub Hrozek - 1.9.4-1Jakub Hrozek - 1.9.3-1Jakub Hrozek - 1.9.2-5Jakub Hrozek - 1.9.2-4Jakub Hrozek - 1.9.2-3Jakub Hrozek - 1.9.2-2Jakub Hrozek - 1.9.2-1Jakub Hrozek - 1.9.1-1Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-23Jakub Hrozek - 1.9.0-22.rc1Jakub Hrozek - 1.9.0-21.beta7Jakub Hrozek - 1.9.0-20.beta6Jakub Hrozek - 1.9.0-19.beta6Jakub Hrozek - 1.9.0-18.beta6Jakub Hrozek - 1.9.0-17.beta6Jakub Hrozek - 1.9.0-16.beta6Jakub Hrozek - 1.9.0-14.beta6Jakub Hrozek - 1.9.0-13.beta6Fedora Release Engineering - 1.9.0-13.beta5Jakub Hrozek - 1.9.0-12.beta5Stephen Gallagher - 1.9.0-11.beta4Jakub Hrozek - 1.9.0-10.beta4Jakub Hrozek - 1.9.0-9.beta4Stephen Gallagher - 1.9.0-8.beta3Stephen Gallagher - 1.9.0-7.beta2Stephen Gallagher - 1.9.0-6.beta2Stephen Gallagher - 1.9.0-5.beta2Stephen Gallagher - 1.9.0-4.beta1Stephen Gallagher - 1.9.0-3.beta1Stephen Gallagher - 1.9.0-2.beta1Stephen Gallagher - 1.9.0-1.beta1Stephen Gallagher - 1.8.3-11Stephen Gallagher - 1.8.2-10Stephen Gallagher - 1.8.1-9Stephen Gallagher - 1.8.1-8Stephen Gallagher - 1.8.1-7Stephen Gallagher - 1.8.0-6Stephen Gallagher - 1.8.0-5.beta3Stephen Gallagher - 1.8.0-4.beta3Petr Pisar - 1.8.0-3.beta2Stephen Gallagher - 1.8.0-1.beta2Stephen Gallagher - 1.8.0-1.beta1Stephen Gallagher - 1.7.0-5Stephen Gallagher - 1.7.0-4Stephen Gallagher - 1.7.0-3Fedora Release Engineering - 1.7.0-2Stephen Gallagher - 1.7.0-1Stephen Gallagher - 1.6.4-1Stephen Gallagher - 1.6.3-5Stephen Gallagher - 1.6.3-4Jakub Hrozek - 1.6.3-3Stephen Gallagher - 1.6.3-2Stephen Gallagher - 1.6.3-1Fedora Release Engineering - 1.6.2-5Stephen Gallagher - 1.6.2-4Stephen Gallagher - 1.6.2-3Stephen Gallagher - 1.6.2-2Stephen Gallagher - 1.6.2-1Stephen Gallagher - 1.6.1-1Stephen Gallagher - 1.6.0-2Stephen Gallagher - 1.6.0-1Stephen Gallagher - 1.5.11-2Stephen Gallagher - 1.5.10-1Stephen Gallagher - 1.5.9-1Stephen Gallagher - 1.5.8-1Stephen Gallagher - 1.5.7-3Stephen Gallagher - 1.5.7-2Stephen Gallagher - 1.5.7-1Stephen Gallagher - 1.5.6.1-1Stephen Gallagher - 1.5.6-1Stephen Gallagher - 1.5.5-5Stephen Gallagher - 1.5.5-4Stephen Gallagher - 1.5.5-3Stephen Gallagher - 1.5.5-2Stephen Gallagher - 1.5.5-1Stephen Gallagher - 1.5.4-1Stephen Gallagher - 1.5.3-2Stephen Gallagher - 1.5.3-1Stephen Gallagher - 1.5.2-1Simo Sorce - 1.5.1-9Stephen Gallagher - 1.5.1-8Stephen Gallagher - 1.5.1-7Stephen Gallagher - 1.5.1-6Stephen Gallagher - 1.5.1-5Fedora Release Engineering - 1.5.1-4Stephen Gallagher - 1.5.1-3Stephen Gallagher - 1.5.1-2Stephen Gallagher - 1.5.1-1Stephen Gallagher - 1.5.0-2Stephen Gallagher - 1.5.0-1Stephen Gallagher - 1.4.1-3Stephen Gallagher - 1.4.1-2Stephen Gallagher - 1.4.1-1Stephen Gallagher - 1.4.0-2Stephen Gallagher - 1.4.0-1Stephen Gallagher - 1.3.0-35Stephen Gallagher - 1.3.0-34Stephen Gallagher - 1.3.0-33Stephen Gallagher - 1.3.0-32Stephen Gallagher - 1.3.0-31Stephen Gallagher - 1.3.0-30David Malcolm - 1.2.91-21Stephen Gallagher - 1.2.91-20Stephen Gallagher - 1.2.1-15Stephen Gallagher - 1.2.0-12Stephen Gallagher - 1.1.92-11Stephen Gallagher - 1.1.91-10Simo Sorce - 1.1.1-3Stephen Gallagher - 1.1.1-1Stephen Gallagher - 1.1.0-2Stephen Gallagher - 1.1.0-1.pre20100317git0ea7f19Stephen Gallagehr - 1.0.5-2Stephen Gallagher - 1.0.5-1Stephen Gallagher - 1.0.4-1Stephen Gallagher - 1.0.3-1Stephen Gallagher - 1.0.2-1Stephen Gallagher - 1.0.1-1Stephen Gallagher - 1.0.0-2Stephen Gallagher - 1.0.0-1Stephen Gallagher - 0.99.1-1Stephen Gallagher - 0.99.0-1Stephen Gallagher - 0.7.1-1Stephen Gallagher - 0.7.0-2Stephen Gallagher - 0.7.0-1Stephen Gallagher - 0.6.1-2Stephen Gallagher - 0.6.1-1Stephen Gallagher - 0.6.0-1Sumit Bose - 0.6.0-0Simo Sorce - 0.5.0-0Jakub Hrozek - 0.4.1-4Fedora Release Engineering - 0.4.1-3Simo Sorce - 0.4.1-2Simo Sorce - 0.4.1-1Simo Sorce - 0.4.1-0Simo Sorce - 0.3.2-2Jakub Hrozek - 0.3.2-1Simo Sorce - 0.3.1-2Simo Sorce - 0.3.1-1Simo Sorce - 0.3.0-2Simo Sorce - 0.3.0-1Simo Sorce - 0.2.1-1Simo Sorce - 0.2.0-1Jakub Hrozek - 0.1.0-5.20090309git691c9b3Jakub Hrozek - 0.1.0-4Sumit Bose - 0.1.0-3Jakub Hrozek - 0.1.0-2Stephen Gallagher - 0.1.0-1- Resolves: RHEL-2630 - Rebase SSSD for RHEL 8.10- Resolves: RHEL-2630 - Rebase SSSD for RHEL 8.10 - Resolves: RHEL-14070 - sssd-2.9.2-1.el8 breaks smart card authentication - Resolves: RHEL-3665 - Unexplainable error "Unable to find primary gid [2]: No such file or directory" when SSSD performs lookup for an AD user- Resolves: RHEL-2630 - Rebase SSSD for RHEL 8.10 - Resolves: rhbz#2226021 - dbus and crond getting terminated with SIGBUS in sss_client code - Resolves: rhbz#2237253 - SSSD runs multiples lookup search for each NFS request (SBUS req chaining stopped working in sssd-2.7)- Resolves: rhbz#2149241 - [sssd] SSSD enters failed state after heavy load in the system- Resolves: rhbz#2167836 - Rebase SSSD for RHEL 8.9 - Resolves: rhbz#2196521 - [RHEL8] sssd : AD user login problem when modify ldap_user_name= name and restricted by GPO Policy - Resolves: rhbz#2195919 - sssd-be tends to run out of system resources, hitting the maximum number of open files - Resolves: rhbz#2192708 - [RHEL8] [sssd] User lookup on IPA client fails with 's2n get_fqlist request failed' - Resolves: rhbz#2139467 - [RHEL8] sssd attempts LDAP password modify extended op after BIND failure - Resolves: rhbz#2054825 - sssd_be segfault at 0 ip 00007f16b5fcab7e sp 00007fffc1cc0988 error 4 in libc-2.28.so[7f16b5e72000+1bc000] - Resolves: rhbz#2189583 - [sssd] RHEL 8.9 Tier 0 Localization - Resolves: rhbz#2170720 - [RHEL8] When adding attributes in sssd.conf that we have already, the cross-forest query just stop working - Resolves: rhbz#2096183 - BE_REQ_USER_AND_GROUP LDAP search filter can inadvertently catch multiple overrides - Resolves: rhbz#2151450 - [RHEL8] SSSD missing group membership when evaluating GPO policy with 'auto_private_groups = true'- Related: rhbz#2190417 - Rebase Samba to the latest 4.18.x release Rebuild against rebased Samba libs- Resolves: rhbz#2167836 - Rebase SSSD for RHEL 8.9- Resolves: rhbz#2167836 - Rebase SSSD for RHEL 8.9 - Resolves: rhbz#2101489 - [sssd] Auth fails if client cannot speak to forest root domain (ldap_sasl_interactive_bind_s failed) - Resolves: rhbz#2143925 - kinit switches KCM away from the newly issued ticket - Resolves: rhbz#2151403 - AD user is not found on IPA client after upgrading to RHEL8.7 - Resolves: rhbz#2164805 - man page entry should make clear that a nested group needs a name - Resolves: rhbz#2170484 - Unable to lookup AD user from child domain (or "make filtering of the domains more configurable") - Resolves: rhbz#2180981 - sss allows extraneous @ characters prefixed to username #- Resolves: rhbz#2149091 - Update to sssd-2.7.3-4.el8_7.1.x86_64 resulted in "Request to sssd failed. Device or resource busy"- Resolves: rhbz#2127511 - Rebase SSSD for RHEL 8.8 - Resolves: rhbz#2136701 - Lower the severity of the log message for SSSD so that it is not shown at the default debug level. - Resolves: rhbz#2139760 - [sssd] RHEL 8.8 Tier 0 Localization - Resolves: rhbz#2139865 - Analyzer: Optimize and remove duplicate messages in verbose list - Resolves: rhbz#2142795 - SSSD: `sssctl analyze` command shouldn't require 'root' privileged - Resolves: rhbz#2144491 - UPN check cannot be disabled explicitly but requires krb5_validate = false' as a work-around - Resolves: rhbz#2150357 - Smart Card auth does not work with p11_uri (with-smartcard-required)- Resolves: rhbz#2127511 - Rebase SSSD for RHEL 8.8 - Resolves: rhbz#2144581 - [RFE] provide dbus method to find users by attr - Resolves: rhbz#2144579 - sssd timezone issues sudonotafter - Resolves: rhbz#2144519 - [RFE] SSSD does not support to change the user’s password when option ldap_pwd_policy equals to shadow in sssd.conf file - Resolves: rhbz#2127822 - Cannot SSH with AD user to ipa-client (`krb5_validate` and `pac_check` settings conflict) - Resolves: rhbz#2111393 - authenticating against external IdP services okta (native app) with OAuth client secret failed- Related: rhbz#2132051 - Rebase Samba to the the latest 4.17.x release Rebuild against Samba rebase.- Resolves: rhbz#2116395 - NFS krb5 mount failed as "access denied" after test accessing a same file on krb5 nfs mount with multiple uids simultaneously since sssd-2.7.3-1.el8- Resolves: rhbz#2116395 - NFS krb5 mount failed as "access denied" after test accessing a same file on krb5 nfs mount with multiple uids simultaneously since sssd-2.7.3-1.el8 - Resolves: rhbz#2119726 - sssctl analyze --logdir option requires sssd to be configured - Resolves: rhbz#2120669 - Incorrect request ID tracking from responder to backend- Resolves: rhbz#2116488 - virsh command will hang after the host run several auto test cases - Resolves: rhbz#2116486 - [regression] sssctl analyze fails to parse PAM related sssd logs - Resolves: rhbz#2116487 - cache_req_data_set_hybrid_lookup: cache_req_data should never be NULL- Resolves: rhbz#2069379 - Rebase SSSD for RHEL 8.7 - Resolves: rhbz#2063016 - [sssd] RHEL 8.7 Tier 0 Localization- Resolves: rhbz#2069379 - Rebase SSSD for RHEL 8.7 - Resolves: rhbz#2098620 - sdap_nested_group_deref_direct_process() triggers internal watchdog for large data sets - Resolves: rhbz#2098619 - [Improvement] add SSSD support for more than one CRL PEM file name with parameters certificate_verification and crl_file - Resolves: rhbz#2088817 - pam_sss_gss ceased to work after upgrade to 8.6 - Resolves: rhbz#2098616 - Add idp authentication indicator in man page of sssd.conf - Resolves: rhbz#2056035 - 'getent hosts' not return hosts if they have more than one CN in LDAP - Resolves: rhbz#2098615 - Regression "Missing internal domain data." when setting ad_domain to incorrect - Resolves: rhbz#2098617 - Harden kerberos ticket validation - Resolves: rhbz#2087744 - Unable to lookup AD user if the AD group contains '@' symbol- Resolves: rhbz#2069379 - Rebase SSSD for RHEL 8.7 - Resolves: rhbz#2026799 - SSSD authenticating to LDAP with obfuscated password produces Invalid authtoken type message causing sssd_be to go offline (cross inter_ference of different provider plugins options) - Resolves: rhbz#2033347 - sssd error triggers backtrace : [write_krb5info_file_from_fo_server] (0x0020): [RID#73501] There is no server that can be written into kdc info file. - Resolves: rhbz#2056483 - [RFE] Add sssd internal krb5 plugin for authentication against external IdP via OAuth2 - Resolves: rhbz#2062689 - [Improvement] Add user and group version of sss_nss_getorigbyname() - Resolves: rhbz#2065692 - [RHEL8] Ship new sub-package called sssd-idp into sssd - Resolves: rhbz#2072050 - sssd_nss exiting (due to missing 'sssd' local user) making SSSD service to restart in a loop - Resolves: rhbz#2072931 - Use right sdap_domain in ad_domain_info_send - Resolves: rhbz#2087088 - sssd does not enforce smartcard auth for kde screen locker - Resolves: rhbz#2087744 - Unable to lookup AD user if the AD group contains '@' symbol - Resolves: rhbz#2087745 - 2FA prompting setting ineffective - Resolves: rhbz#2087746 - sssd fails GPO-based access if AD have setup with Japanese language- Resolves: rhbz#2039892 - 2.6.2 regression: Daemon crashes when resolving AD user names - Resolves: rhbz#1859315 - sssd does not use kerberos port that is set. - Resolves: rhbz#2030386 - sssd-kcm has requirement on krb5 symbol "krb5_unmarshal_credentials" only available in latest RHEL8.5 krb5 libraries - Resolves: rhbz#2035245 - AD Domain in the AD Forest Missing after sssd latest update - Resolves: rhbz#2017301 - [sssd] RHEL 8.6 Tier 0 Localization- Resolves: rhbz#2013260 - [RHEL8] Add ability to parse child log files (additional patch)- Resolves: rhbz#2011216 - Rebase SSSD for RHEL 8.6 - Resolves: rhbz#2013260 - [RHEL8] Add ability to parse child log files - Resolves: rhbz#2030386 - sssd-kcm has requirement on krb5 symbol "krb5_unmarshal_credentials" only available in latest RHEL8.5 krb5 libraries - Resolves: rhbz#1859315 - sssd does not use kerberos port that is set. - Resolves: rhbz#1961182 - Passwordless (GSSAPI) SSH not working due to missing "includedir /var/lib/sss/pubconf/krb5.include.d" directive in /etc/krb5.conf - Resolves: rhbz#2008829 - sssd_be segfault due to empty forest root name - Resolves: rhbz#2012263 - pam responder does not call initgroups to refresh the user entry - Resolves: rhbz#2012308 - Add client certificate validation D-Bus API - Resolves: rhbz#2012327 - Groups are missing while performing id lookup as SSSD switching to offline mode due to the wrong domain name in the ldap-pings(netlogon). - Resolves: rhbz#2013028 - [RFE] Health and Support Analyzer: Add sssctl sub-command to select and display a single request from the logs - Resolves: rhbz#2013259 - [RHEL8] Add tevent chain ID logic into responders - Resolves: rhbz#2017301 - [sssd] RHEL 8.6 Tier 0 Localization- Rebuild due to rhbz#2013596 - Rebase Samba to the the latest 4.15.x release- Resolves: rhbz#2011216 - Rebase SSSD for RHEL 8.6 - Resolves: rhbz#1968340 - 'exclude_groups' option provided in SSSD for session recording (tlog) doesn't work as expected - Resolves: rhbz#1952569 - SSSD should use "hidden" temporary file in its krb locator - Resolves: rhbz#1917970 - proxy provider: secondary group is showing in sssd cache after group is removed - Resolves: rhbz#1636002 - socket-activated services start as the sssd user and then are unable to read the confdb - Resolves: rhbz#2021196 - Make backtrace less "chatty" (avoid duplicate backtraces) - Resolves: rhbz#2018432 - 2.5.x based SSSD adds more AD domains than it should based on the configuration file (not trusted and from a different forest) - Resolves: rhbz#2015070 - Consistency in defaults between OpenSSH and SSSD - Resolves: rhbz#2013297 - disabled root ad domain causes subdomains to be marked offline - Resolves: rhbz#2013294 - Lookup with fully-qualified name does not work with 'cache_first = True' - Resolves: rhbz#2013218 - autofs lookups for unknown mounts are delayed for 50s - Resolves: rhbz#2013028 - [RFE] Health and Support Analyzer: Add sssctl sub-command to select and display a single request from the logs - Resolves: rhbz#2013024 - Add support for CKM_RSA_PKCS in smart card authentication. - Resolves: rhbz#2013006 - [RFE] support subid ranges managed by FreeIPA - Resolves: rhbz#2012308 - Add client certificate validation D-Bus API - Resolves: rhbz#2012122 - tps tests fail with cross dependency on sssd debuginfo package: removal of 'sssd-libwbclient-debuginfo' is missing- Resolves: rhbz#1975169 - EMBARGOED CVE-2021-3621 sssd: shell command injection in sssctl [rhel-8] - Resolves: rhbz#1962042 - [sssd] RHEL 8.5 Tier 0 Localization- Resolves: rhbz#1947671 - Rebase SSSD for RHEL 8.5 - Resolves: rhbz#1693379 - sssd_be and sss_cache too heavy on CPU - Resolves: rhbz#1909373 - Missing search index for `originalADgidNumber` - Resolves: rhbz#1954630 - [RFE] Improve debug messages by adding a unique tag for each request the backend is handling - Resolves: rhbz#1936891 - SSSD Error Msg Improvement: Bad address - Resolves: rhbz#1364596 - sssd still showing ipa user after removed from last group - Resolves: rhbz#1979404 - Changes made to /etc/pam.d/sssd-shadowutils are overwritten back to default on sssd-common package upgrade- Resolves: rhbz#1974257 - 'debug_microseconds' config option is broken - Resolves: rhbz#1936902 - SSSD Error Msg Improvement: Invalid argument - Resolves: rhbz#1627112 - RFE: Kerberos ticket renewal for sssd-kcm (additional patches and rebuild)- Resolves: rhbz#1947671 - Rebase SSSD for RHEL 8.5 - Resolves: rhbz#1942387 - Wrong default debug level of sssd tools - Resolves: rhbz#1917444 - SSSD Error Msg Improvement: Server resolution failed: [2]: No such file or directory - Resolves: rhbz#1917511 - SSSD Error Msg Improvement: Failed to resolve server 'server.example.com': Error reading file - Resolves: rhbz#1917535 - sssd.conf man page: parameter dns_resolver_server_timeout and dns_resolver_op_timeout - Resolves: rhbz#1940509 - [RFE] Health and Support Analyzer: Link frontend to backend requests - Resolves: rhbz#1649464 - auto_private_groups not working as expected with posix ipa/ad trust - Resolves: rhbz#1925514 - [RFE] Randomize the SUDO timeouts upon reconnection - Resolves: rhbz#1961215 - Invalid sssd-kcm return code if requested operation is not found - Resolves: rhbz#1837090 - SSSD fails nss_getby_name for IPA user with SID if the user has user private group - Resolves: rhbz#1879869 - sudo commands incorrectly exports the KRB5CCNAME environment variable - Resolves: rhbz#1962550 - sss_pac_make_request fails on systems joined to Active Directory. - Resolves: rhbz#1737489 - [RFE] SSSD should honor default Kerberos settings (keytab name) in /etc/krb5.conf- Resolves: rhbz#1947671 - Rebase SSSD for RHEL 8.5 - Resolves: rhbz#1930535 - [abrt] [faf] sssd: monitor_service_shutdown(): /usr/sbin/sssd killed by 11 - Resolves: rhbz#1942387 - Wrong default debug level of sssd tools - Resolves: rhbz#1945888 - Inconsistant debug level for connection logging - Resolves: rhbz#1948657 - pam_sss_gss.so doesn't work with large kerberos tickets - Resolves: rhbz#1949149 - [RFE] Poor man's backtrace - Resolves: rhbz#1920500 - Authentication handshake (ldap_install_tls()) fails due to underlying openssl operation failing with EINTR - Resolves: rhbz#1923964 - [RFE] SSSD Error Msg Improvement: write_krb5info_file failed, authentication might fail. - Resolves: rhbz#1928648 - SSSD logs improvements: clarify which config option applies to each timeout in the logs - Resolves: rhbz#1632159 - sssd-kcm starts successfully for non existent socket_path - Resolves: rhbz#1627112 - RFE: Kerberos ticket renewal for sssd-kcm - Resolves: rhbz#1925505 - [RFE] improve the sssd refresh timers for SUDO queries - Resolves: rhbz#1925514 - [RFE] Randomize the SUDO timeouts upon reconnection - Resolves: rhbz#1925561 - sssd-ldap(5) does not report how to disable the SUDO smart queries - Resolves: rhbz#1925621 - document impact of indices and of scope on performance of LDAP queries - Resolves: rhbz#1855320 - [RFE] RHEL8 sssd: inheritance of the case_sensitive parameter for subdomains. - Resolves: rhbz#1925608 - [RFE] make 'random_offset' addon to 'offline_timeout' option configurable - Resolves: rhbz#1447945 - man page / docs update required: if two certificate matching rules with the same priority match only one is used - Resolves: rhbz#1703436 - sssd not thread-safe in innetgr() - Resolves: rhbz#1713143 - SSSD does not translate the 2FA text labels("first factor" / "second factor") on GDM login and screensaver unlock screen - Resolves: rhbz#1888977 - sss_override: Usage limitations clarification in man page - Resolves: rhbz#1890177 - Clarify "single_prompt" option in "PROMPTING CONFIGURATION SECTION" section of sssd.conf man page - Resolves: rhbz#1902280 - fix sss_cache to also reset cached timestamp - Resolves: rhbz#1935683 - SSSD not detecting subdomain from AD forest (RHEL 8.3) - Resolves: rhbz#1937919 - IPA missing secondary IPA Posix groups in latest sssd 1.16.5-10.el7_9.7 - Resolves: rhbz#1944665 - No gpo found and ad_gpo_implicit_deny set to True still permits user login - Resolves: rhbz#1919942 - sss_override does not take precedence over override_homedir directive- Resolves: rhbz#1926622 - Add support to verify authentication indicators in pam_sss_gss - Resolves: rhbz#1926454 - First smart refresh query contains modifyTimestamp even if the modifyTimestamp is 0. - Resolves: rhbz#1893159 - Default debug level should report all errors / failures (additional patch)- Resolves: rhbz#1920001 - Do not add '%' to group names already prefixed with '%' in IPA sudo rules - Resolves: rhbz#1918433 - sssd unable to lookup certmap rules - Resolves: rhbz#1917382 - [abrt] [faf] sssd: dp_client_handshake_timeout(): /usr/libexec/sssd/sssd_be killed by 11- Resolves: rhbz#1113639 - autofs: return a connection failure until maps have been fetched - Resolves: rhbz#1915395 - Memory leak in the simple access provider - Resolves: rhbz#1915319 - SSSD: SBUS: failures during servers startup - Resolves: rhbz#1893698 - [RFE] sudo kerberos authentication (additional patches)- Resolves: rhbz#1631410 - Can't login with smartcard with multiple certs having same ID value - Resolves: rhbz#1884213 - [RFE] add offline_timeout_max config option to control offline interval backoff (additional patches) - Resolves: rhbz#1893159 - Default debug level should report all errors / failures - Resolves: rhbz#1893698 - [RFE] sudo kerberos authentication- Resolves: rhbz#1876514 - High CPU utilization by the sssd_kcm process - Resolves: rhbz#1876658 - filter_groups option partially filters the group from 'id' output of the user because gidNumber still appears in 'id' output [RHEL 8] - Resolves: rhbz#1895001 - User lookups over the InfoPipe responder fail intermittently- Resolves: rhbz#1900733 - sssd_be segfaults at be_refresh_get_values_ex() due to NULL ptrs in results of sysdb_search_with_ts_attr() - Resolves: rhbz#1876514 - High CPU utilization by the sssd_kcm process - Resolves: rhbz#1894540 - sssd component logging is now too generic in syslog/journal - Resolves: rhbz#1828483 - filtered ID is appearing due to strange negative cache behavior- This is to bump version to allow rebuild against rebased libldb.- Resolves: rhbz#1881992 - Rebase SSSD for RHEL 8.4 - Resolves: rhbz#1722842 - sssd-kcm does not store TGT with ssh login using GSSAPI - Resolves: rhbz#1734040 - sssd crash in ad_get_account_domain_search() - Resolves: rhbz#1784459 - [RFE] tlog does not allow to exclude some users from session recording - Resolves: rhbz#1791300 - sporadic sssd_be crash on s390x - Resolves: rhbz#1817122 - 'getent group ldapgroupname' doesn't show any LDAP users or some LDAP users when 'rfc2307bis' schema is used with SSSD. - Resolves: rhbz#1819012 - [RFE] Improve AD site discovery process - Resolves: rhbz#1846778 - [RfE] `/usr/libexec/sssd/p11_child` cmdline argument '--nssdb' might be confusing when SSSD was built against OpenSSL - Resolves: rhbz#1873715 - automount sssd issue when 2 automount maps have the same key (one un uppercase, one in lowercase) - Resolves: rhbz#1879860 - correction in sssd.conf:pam_response_filter man page - Resolves: rhbz#1881336 - [RFE] sssd-ldap man page modification for parameter "ldap_referrals" - Resolves: rhbz#1883488 - [RfE] Implement a new sssd.conf option to disable the filter for AD domain local groups from trusted domains - Resolves: rhbz#1884196 - [RFE] Add "enabled" option to domain section in config file - Resolves: rhbz#1884205 - KCM: Increase client idle timeout to 5 minutes - Resolves: rhbz#1884207 - [RFE] ldap: add new option ldap_library_debug_level - Resolves: rhbz#1884213 - [RFE] add offline_timeout_max config option to control offline interval backoff - Resolves: rhbz#1884281 - Secondary LDAP group go missing from 'id' command - Resolves: rhbz#1884301 - [RFE] dyndns: suport asymmetric auth for nsupdate- Resolves: rhbz#1855323 - When ad_gpo_implicit_deny is True, it is permitting users to login when no gpo is applied- Resolves: rhbz#1868387 - system not enforcing GPO rule restriction. ad_gpo_implicit_deny = True is not working - Resolves: rhbz#1854951 - sss-certmap man page change to add clarification for userPrincipalName attribute from AD schema - Resolves: rhbz#1856861 - False errors/warnings are logged in sssd.log file after enabling 2FA prompting settings in sssd.conf - Resolves: rhbz#1869683 - p11_child: default value of ocsp_dgst == sha256 doesn't conform RFC5019 and has to be changed to sha1- Resolves: rhbz#1723273 - RFE: Add option to specify alternate sssd config file location with "sssctl config-check" command. - Resolves: rhbz#1780404 - smartcards: special characters must be escaped when building search filter- Resolves: rhbz#1820574 - [sssd] RHEL 8.3 Tier 0 Localization- Resolves: rhbz#1821719 - sssd (sssd_be) is consuming 100% CPU, partially due to failing mem-cache - Fixed "requires/provides" rpmdiff warning- Resolves: rhbz#1815584 - id_provider = proxy proxy_lib_name = files returns * in password field, breaking PAM authentication - Resolves: rhbz#1794607 - SSSD must be able to resolve membership involving root with files provider - Resolves: rhbz#1803134 - Improve "unlock" time when user session already active- Resolves: rhbz#1829470 - `sssd.api.conf` and `sssd.api.d` should belong to `python-sssdconfig` package - Resolves: rhbz#1544457 - sssd fails to release file descriptor on child logs after receiving HUP - Resolves: rhbz#1824323 - SSSD user filtering is failing on RHEL 8 after "files" provider rebuilds cache - Resolves: rhbz#1827432 - When the passwd or group files are replaced, sssd stops monitoring the file for inotify events, and no updates are triggered - Resolves: rhbz#1835710 - Change the message "Please enter smart card" to "Please insert smart card" on GDM login with smart-card - Resolves: rhbz#1838037 - Oddjob-mkhomedir fails when using NSS compat - Resolves: rhbz#1845904 - gdm smart card authentication does not work shortly after disconnecting from network. - Resolves: rhbz#1845975 - sssd doesn't follow the link order of AD Group Policy Management - Resolves: rhbz#1845980 - sssd is failing to discover other subdomains in the forest if LDAP entries do not contain AD forest root information - Resolves: rhbz#1845987 - Document how to prevent invalid selinux context for default home directories in SSSD-AD direct integration. - Resolves: rhbz#1845994 - GDM failure loop when no user mapped for smart card - Resolves: rhbz#1846003 - GDM password prompt when cert mapped to multiple users and promptusername is False - Resolves: rhbz#1850961 - /usr/share/systemtap/tapset/sssd_functions.stp missing a comma- Resolves: rhbz#Bug 1723273 - RFE: Add option to specify alternate sssd config file location with "sssctl config-check" command.- Resolves: rhbz#1839037 - Rebase SSSD for RHEL 8.3 - Resolves: rhbz#1843872 - sssd 2.3.0 breaks AD auth due to GPO parsing failure - Resolves: rhbz#1834156 - sssd or sssd-ad not updating their dependencies on "yum update" which breaks working- Resolves: rhbz#1580506 - [RFE]: sssd to be able to read smartcard certificate EKU and perform an action based on value when generating SSH key from a certificate (additional patch)- Resolves: rhbz#1810634 - id command taking 1+ minute for returning user information- Resolves: rhbz#1580506 - [RFE]: sssd to be able to read smartcard certificate EKU and perform an action based on value when generating SSH key from a certificate- Resolves: rhbz#1718193 - p11_child should have an option to skip C_WaitForSlotEvent if the PKCS#11 module does not implement it properly- Resolves: rhbz#1792331 - sssd_be crashes when krb5_realm and krb5_server is omitted and auth_provider is krb5- Resolves: rhbz#1754996 - [sssd] Tier 0 Localization- Resolves: rhbz#1767514 - sssd requires timed sudoers ldap entries to be specified up to the seconds- Resolves: rhbz#1713368 - Add sssd-dbus package as a dependency of sssd-tools* Resolves: rhbz#1794016 - sssd_be frequent crash* Resolves: rhbz#1762415 - Force LDAPS over 636 with AD Access Provider* Resolves: rhbz#1583592 - [RFE] Add configurable randomness to SSSD ldap connection timeout* Resolves: rhbz#1783190 - [abrt] [faf] sssd: raise(): /usr/libexec/sssd/sssd_autofs killed by 6* Resolves: rhbz#1785214 - server/be: SIGTERM handling is incorrect* Resolves: rhbz#1785193 - Watchdog implementation or usage is incorrect* Resolves: rhbz#1704199 - pcscd rejecting sssd ldap_child as unauthorized* Resolves: rhbz#1744500 - [Doc]Provide explanation on escape character for match rules sss-certmap* Resolves: rhbz#1781728 - sssctl config-check command does not give proper error messages with line numbers* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release Increasing version number to pick latest libldb* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release PART2: Fix gating issue.* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release- Resolves: rhbz#1712875 - Old kerberos credentials active instead of valid new ones (kcm)- Resolves: rhbz#1744134 - New defect found in sssd-2.2.0-16.el8 - Also sync. kcm multihost tests with master- Resolves: rhbz#1676385 - pam_sss with smartcard auth does not create gnome keyring - Also apply a patch to fix gating tests issue- Resolves: rhbz#1736861 - dyndns_update = True is no longer enough to get the IP address of the machine updated in IPA upon sssd.service startup- Resolves: rhbz#1736265 - Smart Card auth of local user: endless loop if wrong PIN was provided- Resolves: rhbz#1736796 - sssd config option "default_domain_suffix" should not cause files domain entries to be qualified, this can break sudo access- Resolves: rhbz#1669407 - MAN: Document that PAM stack contains the systemd-user service in the account phase in RHEL-8- Resolves: rhbz#1448094 - sssd-kcm cannot handle big tickets- Resolves: rhbz#1733372 - permission denied on logs when running sssd as non-root user- Resolves: rhbz#1736483 - Sudo prompt for smart card authentication is missing the trailing colon- Resolves: rhbz#1382750 - Conflicting default timeout values- Resolves: rhbz#1699480 - Include libsss_nss_idmap-devel in the Builder repository - This just required a raise in release number and changelog for the record.- Resolves: rhbz#1711318 - p11_child::sign_data() function implementation is not FIPS140 compliant- Resolves: rhbz#1726945 - negative cache does not use values from 'filter_users' config option for known domains- Resolves: rhbz#1729055 - sssd does not pass correct rules to sudo- Resolves: rhbz#1283798 - sssd failover does not work on connecting to non-responsive ldaps:// server- Resolves: rhbz#1725168 - sssd-proxy crashes resolving groups with no members- Resolves: rhbz#1673443 - sssd man pages: The default value of "ldap_user_home_directory" is not mentioned with AD server configuration- Resolves: rhbz#1687281 Rebase sssd in RHEL-8.1 to the latest upstream release- Resolves: rhbz#1687281 Rebase sssd in RHEL-8.1 to the latest upstream release- Replace ARRAY_SIZE with N_ELEMENTS to reflect samba changes. This is done here in order to unblock gating changes before rebase. - Related: rhbz#1682305- Resolves: rhbz#1672780 - gdm login not prompting for username when smart card maps to multiple users- Resolves: rhbz#1645291 - Perform some basic ccache initialization as part of gen_new to avoid a subsequent switch call failure-Resolves: rhbz#1659498 - Re-setting the trusted AD domain fails due to wrong subdomain service name being used-Resolves: rhbz#1660083 - extraAttributes is org.freedesktop.DBus.Error. UnknownProperty: Unknown property- Resolves: rhbz#1661183 - SSSD 2.0 has drastically lower sbus timeout than 1.x, this can result in time outs- Resolves: rhbz#1578014 - sssd does not work under non-root user - Note: Actually the patches were in the 2.0.0-37, this one just adds this changelog because it was missing.- Resolves: rhbz#1652563 - incorrect example in the man page of idmap_sss suggests using * for backend sss- Resolves: rhbz#1466503 - Snippets are not used when sssd.conf does not exist- Resolves: rhbz#1622008 - Error message when IPA server uninstall calls kdestroy caused by KCM returning a wrong error code during the delete operation- Resolves: rhbz#1646113 - Missing concise documentation about valid options for sssd-files-provider- Resolves: rhbz#1625670 - sssd needs to require a newer version of libtalloc and libtevent to avoid an issue in GPO processing- Resolves: 1658813 - PKINIT with KCM does not work- Resolves: 1657898 - SSSD must be cleared/restarted periodically in order to retrieve AD users through IPA Trust- Resolves: rhbz#1655459 - [abrt] [faf] sssd: raise(): /usr/libexec/sssd/proxy_child killed by 6- Resolves: rhbz#1652719 - [SECURITY] sssd returns '/' for emtpy home directories- Resolves: rhbz#1657979 - SSSD's LDAP authentication provider does not work if ID provider is authenticated with GSSAPI- Resolves: rhbz#1657980 - sssd_nss memory leak- Resolves: rhbz#1645566 - SSSD 2.x does not sanitize domain name properly for D-bus, resulting in a crash- Resolves: rhbz#1646168 - sssctl access-report always prints an error message - Resolves: rhbz#1643053 - Restarting the sssd-kcm service should reload the configuration without having to restart the whole sssd - Resolves: rhbz#1640576 - sssctl reports incorrect information about local user's cache entry expiration time - Resolves: rhbz#1645238 - Unable to su to root when logged in as a local user - Resolves: rhbz#1639411 - sssd support for for smartcards using ECC keys- Resolves: rhbz#1642508 - sssd ifp crash when trying to access ipa webui with smart card- Resolves: rhbz#1642372 - SSSD Python getgrouplist API was removed but required for IPA- Related: rhbz#1638150 - session not recording for local user when groups defined - Also add silence a Coverity warning, which is related to rhbz#1637131- Related: rhbz#1637513 - sssd crashes when refreshing expired sudo rules- Add OSCP checks for p11_child - Related: rhbz#1615417 - [RFE] Add Smart Card authentication for local users- Related: rhbz#1638006 - Files: The files provider always enumerates which causes duplicate when running getent passwd- Related: rhbz#1637131 - pam_unix unable to match fully qualified username provided by sssd during smartcard auth using gdm- Related: rhbz#1620123 - [RFE] Add option to specify a Smartcard with a PKCS#11 URI- Related: rhbz#1611011 - Support for "require smartcard for login option"- Related: rhbz#1635595 - Cant login with smartcard with multiple certs- Backport more sbus2 fixes - Related: rhbz#1623878 - crash related to sbus_router_destructor()- Resolves: rhbz#1636397 - SSSD not fetching all sudo rules from AD- Resolves: rhbz#1628122 - Printing incorrect information about domain with sssctl utility- Resolves: rhbz#1626001 - SSSD should log to syslog if a domain is not started due to a misconfiguration- Resolves: rhbz#1624785 - Remove references of sss_user/group/add/del commands in man pages since local provider is deprecated- Resolves: rhbz#1628126 - [abrt] [faf] sssd: unknown function(): /usr/libexec/sssd/sssd_be killed by 11 crash func _dbus_list_unlink- Resolves: rhbz#1628503 - sssd only sets the SELinux login context if it differs from the default- Resolves: rhbz#1625842 id_provider= local causes SSSD to abort startup- Resolves: rhbz#1615590 - Do not rely on "python" for el8- Resolves: rhbz#1615417 - [RFE] Add Smart Card authentication for local users- Resolves: rhbz#1623878 - crash related to sbus_router_destructor()- Resolves: rhbz#1622026 - sssd 2.0 regression: Kerberos authentication fails with the KCM ccache- Resolves: rhbz#1615460 - Rebase SSSD to the latest released version- Switch hardcoded python3 shebangs into the %{__python3} macro- Update to 1.16.2 release - Cleanup unused global definitions - Remove python2 references from the spec file - Resolves: rhbz#1585313 - Kerberos with sssd-kcm is not working on s390x- Resolves: upstream#3684 - A group is not updated if its member is removed with the cleanup task, but the group does not change - Resolves: upstream#3558 - sudo: report error when two rules share cn - Tone down shutdown messages for socket activated responders - IPA: Qualify the externalUser sudo attribute - Resolves: upstream#3550 - refresh_expired_interval does not work with netgrous in 1.15 - Resolves: upstream#3402 - Support alternative sources for the files provider - Resolves: upstream#3646 - SSSD's GPO code ignores ad_site option - Resolves: upstream#3679 - Make nss netgroup requests more robust - Resolves: upstream#3634 - sssctl COMMAND --help fails if sssd is not configured - Resolves: upstream#3469 - extend sss-certmap man page regarding priority processing - Improve docs/debug message about GC detection - Resolves: upstream#3715 - ipa 389-ds-base crash in krb5-libs - k5_copy_etypes list out of bound? - Resolves: upstream#2653 - Group renaming issue when "id_provider = ldap" is set. - Document which principal does the AD provider use - Resolves: upstream#3680 - GPO: SSSD fails to process GPOs If a rule is defined, but contains no SIDs - Resolves: upstream#3520 - Files provider supports only BE_FILTER_ENUM - Resolves: rhbz#1540703 - FreeIPA/SSSD implicit_file sssd_nss error: The Data Provider returned an error [org.freedesktop.sssd.Error.DataProvider.Fatal]- Resolves: upstream#3573 - sssd won't show netgroups with blank domain - Resolves: upstream#3660 - confdb_expand_app_domains() always fails - Resolves: upstream#3658 - Application domain is not interpreted correctly - Resolves: upstream#3687 - KCM: Don't pass a non null terminated string to json_loads() - Resolves: upstream#3386 - KCM: Payload buffer is too small - Resolves: upstream#3666 - Fix usage of str.decode() in our tests - A few KCM misc fixes- New upstream release 1.16.1 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_16_1.html- Resolves: upstream#3621 - backport bug found by static analyzers- Resolves: rhbz#1538643 - SSSD crashes when retrieving a Desktop Profile with no specific host/hostgroup set - Resolves: upstream#3621 - FleetCommander integration must not require capability DAC_OVERRIDE- Resolves: upstream#3618 - selinux_child segfaults in a docker container- Resolves: rhbz#1431153 - sssd: libsss_proxy.so needs to be linked with -ldl- Fix systemd executions/requirements- Fix building on rawhide. Remove -Wl,-z,defs from LDFLAGS- Fix building of sssd-nfs-idmap with libnfsidmap.so.1- Rebuilt for libnfsidmap.so.1- Resolves: upstream#3523 - ABRT crash - /usr/libexec/sssd/sssd_nss in setnetgrent_result_timeout - Resolves: upstream#3588 - sssd_nss consumes more memory until restarted or machine swaps - Resolves: failure in glibc tests https://sourceware.org/bugzilla/show_bug.cgi?id=22530 - Resolves: upstream#3451 - When sssd is configured with id_provider proxy and auth_provider ldap, login fails if the LDAP server is not allowing anonymous binds - Resolves: upstream#3285 - SSSD needs restart after incorrect clock is corrected with AD - Resolves: upstream#3586 - Give a more detailed debug and system-log message if krb5_init_context() failed - Resolves: rhbz#1431153 - SSSD ships a drop-in configuration snippet in /etc/systemd/system - Backport few upstream features from 1.16.1- Resolves: rhbz#1494002 - sssd_nss crashed in cache_req_search_domains_next- Backport extended NSS API from upstream master branch- Resolves: upstream#3529 - sssd-kcm Fix restart during/after upgrade- New upstream release 1.16.0 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_16_0.html- Resolves: rhbz#1499354 - CVE-2017-12173 sssd: unsanitized input when searching in local cache database access on the sock_file system_bus_socket- Resolves: rhbz#1488327 - SELinux is preventing selinux_child from write access on the sock_file system_bus_socket - Resolves: rhbz#1490402 - SSSD does not create /var/lib/sss/deskprofile and fails to download desktop profile data - Resolves: upstream#3485 - getsidbyid does not work with 1.15.3 - Resolves: upstream#3488 - SUDO doesn't work for IPA users on IPA clients after applying ID Views for them in IPA server - Resolves: upstream#3501 - Accessing IdM kerberos ticket fails while id mapping is applied- Backport few upstream patches/fixes- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild- New upstream release 1.15.3 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_3.html- Rebuild with libldb-1.2.0- Fix build issues: Update expided certificate in unit tests- Resolves: rhbz#1445680 - Properly fall back to local Smartcard authentication - Resolves: rhbz#1437199 - sssd-nfs-idmap-1.15.2-1.fc25.x86_64 conflicts with file from package sssd-common-1.15.1-1.fc25.x86_64 - Resolves: rhbz#1063278 - sss_ssh_knownhostsproxy doesn't fall back to ipv4- Fix issue with IPA + SELinux in containers - Resolves: upstream https://fedorahosted.org/sssd/ticket/3297- Backport upstream patches for 1.15.3 pre-release - required for building freeipa-4.5.x in rawhide- New upstream release 1.15.2 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_2.html- New upstream release 1.15.1 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_1.html- Cherry-pick patches from upstream that enable the files provider - Enable the files domain - Retire patch 0501-Partially-revert-CONFIG-Use-default-config-when-none.patch which is superseded by the files domain autoconfiguration - Related: rhbz#1357418 - SSSD fast cache for local users- Add missing %license macro- Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild- New upstream release 1.15.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.15.0- Rebuild for Python 3.6- Resolves: rhbz#1369130 - nss_sss should not link against libpthread - Resolves: rhbz#1392916 - sssd failes to start after update - Resolves: rhbz#1398789 - SELinux is preventing sssd from 'write' accesses on the directory /etc/sssd- New upstream release 1.14.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.2- libwbclient-sssd: update interface to version 0.13- Fix regression with krb5_map_user - Resolves: rhbz#1375552 - krb5_map_user doesn't seem effective anymore - Resolves: rhbz#1349286 - authconfig fails with SSSDConfig.NoDomainError: default if nonexistent domain is mentioned- Backport important patches from upstream 1.14.2 prerelease - Resolves: upstream #3154 - sssd exits if clock is adjusted backwards after boot - Resolves: upstream #3163 - resolving IPA nested user group is broken in 1.14- New upstream release 1.14.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.1- Add workaround patch for RHBZ #1366403- https://fedoraproject.org/wiki/Changes/Automatic_Provides_for_Python_RPM_Packages- New upstream release 1.14.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.0- New upstream release 1.14 beta - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.0beta- New upstream release 1.14 alpha - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.0alpha- Resolves: rhbz#1335639 - [abrt] sssd-dbus: ldb_msg_find_element(): sssd_ifp killed by SIGSEGV- Resolves: rhbz#1328108 - Protocol error with FreeIPA on CentOS 6- New upstream release 1.13.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.4- Resolves: rhbz#1276868 - Sudo PAM Login should support multiple password prompts (e.g. Password + Token) - Resolves: rhbz#1313041 - ssh with sssd proxy fails with "Connection closed by remote host" if locale not available- Resolves: rhbz#1310664 - [RFE] IPA: resolve external group memberships of IPA groups during getgrnam and getgrgid - Resolves: rhbz#1301303 - sss_obfuscate: SyntaxError: Missing parentheses in call to 'print'- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild- Additional upstream fixes- Resolves: rhbz#1256849 - SUDO: Support the IPA schema- New upstream release 1.13.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.3- New upstream release 1.13.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.2- Rebuilt for Python3.5 rebuild- Fix building pac responder with the krb5-1.14- python-sssdconfig: Fix parssing sssd.conf without config_file_version - Resolves: upstream #2837 - REGRESSION: ipa-client-automout failed- Fix few segfaults - Resolves: upstream #2811 - PAM responder crashed if user was not set - Resolves: upstream #2810 - sssd_be crashed in ipa_srv_ad_acct_lookup_step- New upstream release 1.13.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.1- Fix OTP bug - Resolves: upstream #2729 - Do not send SSS_OTP if both factors were entered separately- Backport upstream patches required by FreeIPA 4.2.1- Fix ipa-migration bug - Resolves: upstream #2719 - IPA: returned unknown dp error code with disabled migration mode- New upstream release 1.13.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.0- Unify return type of list_active_domains for python{2,3}- New upstream release 1.13 alpha - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.0alpha- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild- Fix libwbclient alternatives- Backport important patches from upstream 1.13 prerelease- New upstream release 1.12.5 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.5- Backport important patches from upstream 1.13 prerelease - Resolves: rhbz#1060325 - Does sssd-ad use the most suitable attribute for group name - Resolves: upstream #2335 - Investigate using the krb5 responder for driving the PAM conversation with OTPs - Enable cmocka tests for secondary architectures- Backport patches from upstream 1.12.5 prerelease - contains many fixes- Fix slow login with ipa and SELinux - Resolves: upstream #2624 - Only set the selinux context if the context differs from the local one- Fix regressions with ipa and SELinux - Resolves: upstream #2587 - With empty ipaselinuxusermapdefault security context on client is staff_u- Also relax libldb Requires - Remove --enable-ldb-version-check- Relax libldb BuildRequires to be greater-or-equal- Add support for python3 bindings - Add requirement to python3 or python3 bindings - Resolves: rhbz#1014594 - sssd: Support Python 3- New upstream release 1.12.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.4- Backport patches with Python3 support from upstream- Fix double free in monitor - Resolves: rhbz#1186887 [abrt] sssd-common: talloc_abort(): sssd killed by SIGABRT- Rebuild for new libldb- Decrease priority of sssd-libwbclient 20 -> 5 - It should be lower than priority of samba veriosn of libwbclient. - https://bugzilla.redhat.com/show_bug.cgi?id=1175511#c18- Apply a number of patches from upstream to fix issues found 1.12.3 - Resolves: rhbz#1176373 - dyndns_iface does not accept multiple interfaces, or isn't documented to be able to - Resolves: rhbz#988068 - getpwnam_r fails for non-existing users when sssd is not running - Resolves: upstream #2557 authentication failure with user from AD- Resolves: rhbz#1164156 - libsss_simpleifp should pull sssd-dbus - Resolves: rhbz#1179379 - gzip: stdin: file size changed while zipping when rotating logfile- New upstream release 1.12.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.3 - Fix spelling errors in description (fedpkg lint)- Rebuild for libldb 1.1.19- Resolves: rhbz#1175511 - sssd-libwbclient conflicts with Samba's and causes crash in wbinfo - in addition to the patch libwbclient.so is filtered out of the Provides list of the package- Fix regressions and bugs in sssd upstream 1.12.2 - https://fedorahosted.org/sssd/ticket/{id} - Regressions: #2471, #2475, #2483, #2487, #2529, #2535 - Bugs: #2287, #2445- Rebuild for libldb 1.1.18- Fix typo in libwbclient-devel %preun- Use alternatives for libwbclient- Backport several patches from upstream. - Fix a potential crash against old (pre-4.0) IPA servers- New upstream release 1.12.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.2- Resolves: rhbz#1139962 - Fedora 21, FreeIPA 4.0.2: sssd does not find user private group from server- New upstream release 1.12.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.1- Do not crash on resolving a group SID in IPA server mode- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild- Fix release version for upgrades- New upstream release 1.12.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild- New upstream release 1.12 beta2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0beta2- Fix tests on big-endian - Fix previous changelog entry- New upstream release 1.12 beta1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0beta1- Rebuild against new ding-libs- Make LDB dependency a strict equivalency- Rebuild against new libldb- New upstream release 1.11.5.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.5.1- Fix bug in generation of systemd unit file- New upstream release 1.11.5 - Remove upstreamed patch - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.5- Handle new error code for IPA password migration- Include couple of patches from upstream 1.11 branch- New upstream release 1.11.4 - Remove upstreamed patch - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.4- Handle OTP response from FreeIPA server gracefully- New upstream release 1.11.3 - Remove upstreamed patches - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.3- New upstream release 1.11.2 - Remove upstreamed patches - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.2- Fix potential crash with external groups in trusted IPA-AD setup- Add plugin for cifs-utils - Resolves: rhbz#998544- Fix failover from Global Catalog to LDAP in case GC is not available- Remove the ability to create public ccachedir (#1015089)- New upstream release 1.11.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.1- Fix multicast checks in the SSSD - Resolves: rhbz#1007475 - The multicast check is wrong in the sudo source code getting the host info- Backport simplification of ccache management from 1.11.1 - Resolves: rhbz#1010553 - sssd setting KRB5CCNAME=(null) on login- New upstream release 1.11.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0- Resolves: #967012 - [abrt] sssd-1.9.5-1.fc18: sss_mmap_cache_gr_invalidate_gid: Process /usr/libexec/sssd/sssd_nss was killed by signal 11 (SIGSEGV) - Resolves: #996214 - sssd proxy_child segfault- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild- Resolves: #906427 - Do not use %{_lib} in specfile for the nss and pam libraries- New upstream release 1.11 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0beta2- New upstream release 1.10.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.1- sssd-tools should require sssd-common, not sssd- Move sssd_pac to the sssd-ipa and sssd-ad subpackages - Trim out RHEL5-specific macros since we don't build on RHEL 5 - Trim out macros for Fedora older than F18 - Update libldb requirement to 1.1.16 - Trim RPM changelog down to the last year- Move sssd_pac to the sssd-krb5 subpackage- Fix Obsoletes: to account for dist tag - Convert post and pre scripts to run on the sssd-common subpackage - Remove old conversion from SYSV- New upstream release 1.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0- the cmocka toolkit exists only on selected arches- Apply a number of patches from upstream to fix issues found post-beta, in particular: -- segfault with a high DEBUG level -- Fix IPA password migration (upstream #1873) -- Fix fail over when retrying SRV resolution (upstream #1886)- Only BuildRequire libcmocka on Fedora- Fix typo in Requires that prevented an upgrade (#973916) - Use a hardcoded version in Conflicts, not less-than-current- Enable hardened build for RHEL7- New upstream release 1.10 beta2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta2 - BuildRequire libcmocka-devel in order to run all upstream tests during build - BuildRequire libnl3 instead of libnl1 - No longer BuildRequire initscripts, we no longer use /sbin/service - Remove explicit krb5-libs >= 1.10 requires; this platform doensn't carry any older krb5-libs version- Apply a couple of patches from upstream git that resolve crashes when ID mapping object was not initialized properly but needed later- Resolves: rhbz#961357 - Missing dyndns_update entry in sssd.conf during realm join - Resolves: rhbz#961278 - Login failure: Enterprise Principal enabled by default for AD Provider - Resolves: rhbz#961251 - sssd does not create user's krb5 ccache dir/file parent directory when logging in- BuildRequire recent libini_config to ensure consistent behaviour- Explicitly Require libini_config >= 1.0.0.1 to work around a SONAME bug in ding-libs - Fix SSH integration with fully-qualified domains - Add the ability to dynamically discover the NetBIOS name- New upstream release 1.10 beta1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta1- Add a patch to fix krb5 ccache creation issue with krb5 1.11- New upstream release 1.10 alpha1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0alpha1- Add a patch to fix krb5 unit tests- Split internal helper libraries into a shared object - Significantly reduce disk-space usage- Fix the Kerberos password expiration warning (#912223)- Do not write out dots in the domain-realm mapping file (#905650)- Include upstream patch to build with krb5-1.11- Rebuild against new libldb- Fix build with new automake versions- Recreate Kerberos ccache directory if it's missing - Resolves: rhbz#853558 - [sssd[krb5_child[PID]]]: Credential cache directory /run/user/UID/ccdir does not exist- Fix changelog dates to make F19 rpmbuild happy- New upstream release 1.9.4- New upstream release 1.9.3- Resolve groups from AD correctly- Check the validity of naming context- Move the sss_cache tool to the main package- Include the 1.9.2 tarball- New upstream release 1.9.2- New upstream release 1.9.1- require the latest libldb- Use mcpath insted of mcachepath macro to be consistent with upsteam spec file- New upstream release 1.9.0- New upstream release 1.9.0 rc1- New upstream release 1.9.0 beta7 - obsoletes patches #1-#3- Rebuild against libldb 1.12- Rebuild against libldb 1.11- Change the default ccache location to DIR:/run/user/${UID}/krb5cc and patch man page accordingly - Resolves: rhbz#851304- Rebuild against libldb 1.10- Only create the SELinux login file if there are SELinux mappings on the IPA server- Don't discard HBAC rule processing result if SELinux is on Resolves: rhbz#846792 (CVE-2012-3462)- New upstream release 1.9.0 beta 6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta6 - A new option, override_shell was added. If this option is set, all users managed by SSSD will have their shell set to its value. - Fixes for the support for setting default SELinux user context from FreeIPA. - Fixed a regression introduced in beta 5 that broke LDAP SASL binds - The SSSD supports the concept of a Primary Server and a Back Up Server in failover - A new command-line tool sss_seed is available to help prime the cache with a user record when deploying a new machine - SSSD is now able to discover and save the domain-realm mappings between an IPA server and a trusted Active Directory server. - Packaging changes to fix ldconfig usage in subpackages (#843995) - Rebuild against libldb 1.1.9- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- New upstream release 1.9.0 beta 5 - Obsoletes the patch for missing DP_OPTION_TERMINATOR in AD provider options - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta5 - Many fixes for the support for setting default SELinux user context from FreeIPA, most notably fixed the specificity evaluation - Fixed an incorrect default in the krb5_canonicalize option of the AD provider which was preventing password change operation - The shadowLastChange attribute value is now correctly updated with the number of days since the Epoch, not seconds- Fix broken ARM build - Add missing DP_OPTION_TERMINATOR in AD provider options- Own several directories create during make install (#839782)- New upstream release 1.9.0 beta 4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta4 - Add a new AD provider to improve integration with Active Directory 2008 R2 or later servers - SUDO integration was completely rewritten. The new implementation works with multiple domains and uses an improved refresh mechanism to download only the necessary rules - The IPA authentication provider now supports subdomains - Fixed regression for setups that were setting default_tkt_enctypes manually by reverting a previous workaround.- New upstream release 1.9.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta3 - Add a new PAC responder for dealing with cross-realm Kerberos trusts - Terminate idle connections to the NSS and PAM responders- Switch unicode library from libunistring to Glib - Drop unnecessary explicit Requires on keyutils - Guarantee that versioned Requires include the correct architecture- Fix accidental disabling of the DIR cache support- New upstream release 1.9.0 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta2 - Add support for the Kerberos DIR cache for storing multiple TGTs automatically - Major performance enhancement when storing large groups in the cache - Major performance enhancement when performing initgroups() against Active Directory - SSSDConfig data file default locations can now be set during configure for easier packaging- Fix regression in endianness patch- Rebuild SSSD against ding-libs 0.3.0beta1 - Fix endianness bug in service map protocol- Fix several regressions since 1.5.x - Ensure that the RPM creates the /var/lib/sss/mc directory - Add support for Netscape password warning expiration control - Rebuild against libldb 1.1.6- New upstream release 1.9.0 beta 1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta1 - Add native support for autofs to the IPA provider - Support for ID-mapping when connecting to Active Directory - Support for handling very large (> 1500 users) groups in Active Directory - Support for sub-domains (will be used for dealing with trust relationships) - Add a new fast in-memory cache to speed up lookups of cached data on repeated requests- New upstream release 1.8.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.3 - Numerous manpage and translation updates - LDAP: Handle situations where the RootDSE isn't available anonymously - LDAP: Fix regression for users using non-standard LDAP attributes for user information- New upstream release 1.8.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.2 - Several fixes to case-insensitive domain functions - Fix for GSSAPI binds when the keytab contains unrelated principals - Fixed several segfaults - Workarounds added for LDAP servers with unreadable RootDSE - SSH knownhostproxy will no longer enter an infinite loop preventing login - The provided SYSV init script now starts SSSD earlier at startup and stops it later during shutdown - Assorted minor fixes for issues discovered by static analysis tools- Don't duplicate libsss_autofs.so in two packages - Set explicit package contents instead of globbing- Fix uninitialized value bug causing crashes throughout the code - Resolves: rhbz#804783 - [abrt] Segfault during LDAP 'services' lookup- New upstream release 1.8.1 - Resolve issue where we could enter an infinite loop trying to connect to an auth server - Fix serious issue with complex (3+ levels) nested groups - Fix netgroup support for case-insensitivity and aliases - Fix serious issue with lookup bundling resulting in requests never completing - IPA provider will now check the value of nsAccountLock during pam_acct_mgmt in addition to pam_authenticate - Fix several regressions in the proxy provider - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#799031 - --debug option for sss_debuglevel doesn't work- New upstream release 1.8.0 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental) - Include the IPA AutoFS provider - Fixed several memory-corruption bugs - Fixed a regression in group enumeration since 1.7.0 - Fixed a regression in the proxy provider - Resolves: rhbz#741981 - Separate Cache Timeouts for SSSD - Resolves: rhbz#797968 - sssd_be: The requested tar get is not configured is logged at each login - Resolves: rhbz#754114 - [abrt] sssd-1.6.3-1.fc16: ping_check: Process /usr/sbin/sssd was killed by signal 11 (SIGSEGV) - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - Resolves: rhbz#786957 - sssd and kerberos should change the default location for create the Credential Cashes to /run/usr/USERNAME/krb5cc- Change default kerberos credential cache location to /run/user/- New upstream release 1.8.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta3 - Fixed a regression in group enumeration since 1.7.0 - Fixed several memory-corruption bugs - Finalized the ABI for the autofs support - Fixed a regression in the proxy provider- Rebuild against PCRE 8.30- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta2 - Fix two minor manpage bugs - Include the IPA AutoFS provider- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta1 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental)- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - fix netgroups and sudo as well- Fixes a serious memory hierarchy bug causing unpredictable behavior in the LDAP provider.- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- New upstream release 1.7.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.7.0 - Support for case-insensitive domains - Support for multiple search bases in the LDAP provider - Support for the native FreeIPA netgroup implementation - Reliability improvements to the process monitor - New DEBUG facility with more consistent log levels - New tool to change debug log levels without restarting SSSD - SSSD will now disconnect from LDAP server when idle - FreeIPA HBAC rules can choose to ignore srchost options for significant performance gains - Assorted performance improvements in the LDAP provider- New upstream release 1.6.4 - Rolls up previous patches applied to the 1.6.3 tarball - Fixes a rare issue causing crashes in the failover logic - Fixes an issue where SSSD would return the wrong PAM error code for users that it does not recognize.- Rebuild against libldb 1.1.4- Resolves: rhbz#753639 - sssd_nss crashes when passed invalid UTF-8 for the username in getpwnam() - Resolves: rhbz#758425 - LDAP failover not working if server refuses connections- Rebuild for libldb 1.1.3- Resolves: rhbz#752495 - Crash when apply settings- New upstream release 1.6.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.3 - Fixes a major cache performance issue introduced in 1.6.2 - Fixes a potential infinite-loop with certain LDAP layouts- Rebuilt for glibc bug#747377- Change selinux policy requirement to Conflicts: with the old version, rather than Requires: the supported version.- Add explicit requirement on selinux-policy version to address new SBUS symlinks.- Remove %files reference to sss_debuglevel copied from wrong upstreeam spec file.- Improved handling of users and groups with multi-valued name attributes (aliases) - Performance enhancements Initgroups on RFC2307bis/FreeIPA HBAC rule processing - Improved process-hang detection and restarting - Enabled the midpoint cache refresh by default (fewer cache misses on commonly-used entries) - Cleaned up the example configuration - New tool to change debug level on the fly- New upstream release 1.6.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.1 - Fixes a serious issue with LDAP connections when the communication is dropped (e.g. VPN disconnection, waking from sleep) - SSSD is now less strict when dealing with users/groups with multiple names when a definitive primary name cannot be determined - The LDAP provider will no longer attempt to canonicalize by default when using SASL. An option to re-enable this has been provided. - Fixes for non-standard LDAP attribute names (e.g. those used by Active Directory) - Three HBAC regressions have been fixed. - Fix for an infinite loop in the deref code- Build with _hardened_build macro- New upstream release 1.6.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.0 - Add host access control support for LDAP (similar to pam_host_attr) - Finer-grained control on principals used with Kerberos (such as for FAST or - validation) - Added a new tool sss_cache to allow selective expiring of cached entries - Added support for LDAP DEREF and ASQ controls - Added access control features for Novell Directory Server - FreeIPA dynamic DNS update now checks first to see if an update is needed - Complete rewrite of the HBAC library - New libraries: libipa_hbac and libipa_hbac-python- New upstream release 1.5.11 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.11 - Fix a serious regression that prevented SSSD from working with ldaps:// URIs - IPA Provider: Fix a bug with dynamic DNS that resulted in the wrong IPv6 - address being saved to the AAAA record- New upstream release 1.5.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.10 - Fixed a regression introduced in 1.5.9 that could result in blocking calls - to LDAP- New upstream release 1.5.9 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.9 - Support for overriding home directory, shell and primary GID locally - Properly honor TTL values from SRV record lookups - Support non-POSIX groups in nested group chains (for RFC2307bis LDAP - servers) - Properly escape IPv6 addresses in the failover code - Do not crash if inotify fails (e.g. resource exhaustion) - Don't add multiple TGT renewal callbacks (too many log messages)- New upstream release 1.5.8 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.8 - Support for the LDAP paging control - Support for multiple DNS servers for name resolution - Fixes for several group membership bugs - Fixes for rare crash bugs- Resolves: rhbz#706740 - Orphaned links on rc0.d-rc6.d - Make sure to properly convert to systemd if upgrading from newer - updates for Fedora 14- Fix segfault in TGT renewal- Resolves: rhbz#700891 - CVE-2011-1758 sssd: automatic TGT renewal overwrites - cached password with predicatable filename- Re-add manpage translations- New upstream release 1.5.6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.6 - Fixed a serious memory leak in the memberOf plugin - Fixed a regression with the negative cache that caused it to be essentially - nonfunctional - Fixed an issue where the user's full name would sometimes be removed from - the cache - Fixed an issue with password changes in the kerberos provider not working - with kpasswd- Resolves: rhbz#697057 - kpasswd fails when using sssd and - kadmin server != kdc server - Upgrades from SysV should now maintain enabled/disabled status- Fix %postun- Fix systemd conversion. Upgrades from SysV to systemd weren't properly - enabling the systemd service. - Fix a serious memory leak in the memberOf plugin - Fix an issue where the user's full name would sometimes be removed - from the cache- Install systemd unit file instead of sysv init script- New upstream release 1.5.5 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.5 - Fixes for several crash bugs - LDAP group lookups will no longer abort if there is a zero-length member - attribute - Add automatic fallback to 'cn' if the 'gecos' attribute does not exist- New upstream release 1.5.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.4 - Fixes for Active Directory when not all users and groups have POSIX attributes - Fixes for handling users and groups that have name aliases (aliases are ignored) - Fix group memberships after initgroups in the IPA provider- Resolves: rhbz#683267 - sssd 1.5.1-9 breaks AD authentication- New upstream release 1.5.3 - Support for libldb >= 1.0.0- New upstream release 1.5.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.2 - Fixes for support of FreeIPA v2 - Fixes for failover if DNS entries change - Improved sss_obfuscate tool with better interactive mode - Fix several crash bugs - Don't attempt to use START_TLS over SSL. Some LDAP servers can't handle this - Delete users from the local cache if initgroups calls return 'no such user' - (previously only worked for getpwnam/getpwuid) - Use new Transifex.net translations - Better support for automatic TGT renewal (now survives restart) - Netgroup fixes- Rebuild sssd against libldb 1.0.2 so the memberof module loads again. - Related: rhbz#677425- Resolves: rhbz#677768 - name service caches names, so id command shows - recently deleted users- Ensure that SSSD builds against libldb-1.0.0 on F15 and later - Remove .la for memberOf- Fix memberOf install path- Add support for libldb 1.0.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Fix nested group member filter sanitization for RFC2307bis - Put translated tool manpages into the sssd-tools subpackage- Restore Requires: cyrus-sasl-gssapi as it is not auto-detected during - rpmbuild- New upstream release 1.5.1 - Addresses CVE-2010-4341 - DoS in sssd PAM responder can prevent logins - Vast performance improvements when enumerate = true - All PAM actions will now perform a forced initgroups lookup instead of just - a user information lookup - This guarantees that all group information is available to other - providers, such as the simple provider. - For backwards-compatibility, DNS lookups will also fall back to trying the - SSSD domain name as a DNS discovery domain. - Support for more password expiration policies in LDAP - 389 Directory Server - FreeIPA - ActiveDirectory - Support for ldap_tls_{cert,key,cipher_suite} config options -Assorted bugfixes- CVE-2010-4341 - DoS in sssd PAM responder can prevent logins- New upstream release 1.5.0 - Fixed issues with LDAP search filters that needed to be escaped - Add Kerberos FAST support on platforms that support it - Reduced verbosity of PAM_TEXT_INFO messages for cached credentials - Added a Kerberos access provider to honor .k5login - Addressed several thread-safety issues in the sss_client code - Improved support for delayed online Kerberos auth - Significantly reduced time between connecting to the network/VPN and - acquiring a TGT - Added feature for automatic Kerberos ticket renewal - Provides the kerberos ticket for long-lived processes or cron jobs - even when the user logs out - Added several new features to the LDAP access provider - Support for 'shadow' access control - Support for authorizedService access control - Ability to mix-and-match LDAP access control features - Added an option for a separate password-change LDAP server for those - platforms where LDAP referrals are not supported - Added support for manpage translations- Solve a shutdown race-condition that sometimes left processes running - Resolves: rhbz#606887 - SSSD stops on upgrade- Log startup errors to the syslog - Allow cache cleanup to be disabled in sssd.conf- New upstream release 1.4.1 - Add support for netgroups to the proxy provider - Fixes a minor bug with UIDs/GIDs >= 2^31 - Fixes a segfault in the kerberos provider - Fixes a segfault in the NSS responder if a data provider crashes - Correctly use sdap_netgroup_search_base- Fix incorrect tarball URL- New upstream release 1.4.0 - Added support for netgroups to the LDAP provider - Performance improvements made to group processing of RFC2307 LDAP servers - Fixed nested group issues with RFC2307bis LDAP servers without a memberOf plugin - Build-system improvements to support Gentoo - Split out several libraries into the ding-libs tarball - Manpage reviewed and updated- Fix pre and post script requirements- Resolves: rhbz#606887 - sssd stops on upgrade- Resolves: rhbz#626205 - Unable to unlock screen- Resolves: rhbz#637955 - libini_config-devel needs libcollection-devel but - doesn't require it- Resolves: rhbz#632615 - the krb5 locator plugin isn't packaged for multilib- Resolves: CVE-2010-2940 - sssd allows null password entry to authenticate - against LDAP- Rebuilt for https://fedoraproject.org/wiki/Features/Python_2.7/MassRebuild- New upstream version 1.2.91 (1.3.0rc1) - Improved LDAP failover - Synchronous sysdb API (provides performance enhancements) - Better online reconnection detection- New stable upstream version 1.2.1 - Resolves: rhbz#595529 - spec file should eschew %define in favor of - %global - Resolves: rhbz#593644 - Empty list of simple_allow_users causes sssd service - to fail while restart. - Resolves: rhbz#599026 - Makefile typo causes SSSD not to use the kernel - keyring - Resolves: rhbz#599724 - sssd is broken on Rawhide- New stable upstream version 1.2.0 - Support ServiceGroups for FreeIPA v2 HBAC rules - Fix long-standing issue with auth_provider = proxy - Better logging for TLS issues in LDAP- New LDAP access provider allows for filtering user access by LDAP attribute - Reduced default timeout for detecting offline status with LDAP - GSSAPI ticket lifetime made configurable - Better offline->online transition support in Kerberos- Release new upstream version 1.1.91 - Enhancements when using SSSD with FreeIPA v2 - Support for deferred kinit - Support for DNS SRV records for failover- Bump up release number to avoid library sub-packages version issues with previous releases.- New upstream release 1.1.1 - Fixed the IPA provider (which was segfaulting at start) - Fixed a bug in the SSSDConfig API causing some options to revert to - their defaults - This impacted the Authconfig UI - Ensure that SASL binds to LDAP auto-retry when interrupted by a signal- Release SSSD 1.1.0 final - Fix two potential segfaults - Fix memory leak in monitor - Better error message for unusable confdb- Release candidate for SSSD 1.1 - Add simple access provider - Create subpackages for libcollection, libini_config, libdhash and librefarray - Support IPv6 - Support LDAP referrals - Fix cache issues - Better feedback from PAM when offline- Rebuild against new libtevent- Fix licenses in sources and on RPMs- Fix regression on 64-bit platforms- Fixes link error on platforms that do not do implicit linking - Fixes double-free segfault in PAM - Fixes double-free error in async resolver - Fixes support for TCP-based DNS lookups in async resolver - Fixes memory alignment issues on ARM processors - Manpage fixes- Fixes a bug in the failover code that prevented the SSSD from detecting when it went back online - Fixes a bug causing long (sometimes multiple-minute) waits for NSS requests - Several segfault bugfixes- Fix CVE-2010-0014- Patch SSSDConfig API to address - https://bugzilla.redhat.com/show_bug.cgi?id=549482- New upstream stable release 1.0.0- New upstream bugfix release 0.99.1- New upstream release 0.99.0- Fix segfault in sssd_pam when cache_credentials was enabled - Update the sample configuration - Fix upgrade issues caused by data provider service removal- Fix upgrade issues from old (pre-0.5.0) releases of SSSD- New upstream release 0.7.0- Fix missing file permissions for sssd-clients- Add SSSDConfig API - Update polish translation for 0.6.0 - Fix long timeout on ldap operation - Make dp requests more robust- Ensure that the configuration upgrade script always writes the config file with 0600 permissions - Eliminate an infinite loop in group enumerations- New upstream release 0.6.0- New upstream release 0.5.0- Fix for CVE-2009-2410 - Native SSSD users with no password set could log in without a password. (Patch by Stephen Gallagher)- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- Fix a couple of segfaults that may happen on reload- add missing configure check that broke stopping the daemon - also fix default config to add a missing required option- latest upstream release. - also add a patch that fixes debugging output (potential segfault)- release out of the official 0.3.2 tarball- bugfix release 0.3.2 - includes previous release patches - change permissions of the /etc/sssd/sssd.conf to 0600- Add last minute bug fixes, found in testing the package- Version 0.3.1 - includes previous release patches- Try to fix build adding automake as an explicit BuildRequire - Add also a couple of last minute patches from upstream- Version 0.3.0 - Provides file based configuration and lots of improvements- Version 0.2.1- Version 0.2.0- package git snapshot- fixed items found during review - added initscript- added sss_client- Small cleanup and fixes in the spec file- Initial release (based on version 0.1.0 upstream code) rusvuk2.9.3-2.el82.9.3-2.el8 .build-id0d503e2ee74fcab1ef32861b04cc64c7c24e26e30d4d69b7184837876795ef2dd59169878fee30libsss_ad.sogpo_childsssd-adCOPYINGsssd-ad.5.gzsssd-ad.5.gzsssd-ad.5.gzsssd-ad.5.gz/usr/lib//usr/lib/.build-id//usr/lib/.build-id/0d//usr/lib/.build-id/57//usr/lib64/sssd//usr/libexec/sssd//usr/share/licenses//usr/share/licenses/sssd-ad//usr/share/man/man5//usr/share/man/ru/man5//usr/share/man/sv/man5//usr/share/man/uk/man5/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -mcpu=power8 -mtune=power8 -funwind-tables -fstack-clash-protectioncpioxz2ppc64le-redhat-linux-gnudirectoryELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, BuildID[sha1]=0d503e2ee74fcab1ef32861b04cc64c7c24e26e3, strippedELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, interpreter /lib64/ld64.so.2, for GNU/Linux 3.10.0, BuildID[sha1]=570d4d69b7184837876795ef2dd59169878fee30, strippedASCII texttroff or preprocessor input, ASCII text, with very long lines (gzip compressed data, max compression, from Unix)troff or preprocessor input, UTF-8 Unicode text, with very long lines (gzip compressed data, max compression, from Unix)55PRRR7R RRRRR RR4R.R"RRRRR!R0RRR(R/R RR RR1R RRRR#R5R8RR RRRR&R*RR)R6R3RR+R2R-RRcGWʣu®ȍS>D??lS@D P62I/E8c^,nuN6 ѿpV| /#ʔ kZ^\-͏:'[`$fD;k.r]+鮁!7feL ֕^2DrRЇP e`KU! U^ZlrdKNEG&NJz Cg U^ק@ѥq6~_p44(MhEC_8ҝ޷EXxp"Lb{bTZwq{C}l "!Y-nm'Gb:HU\j5~%3yc^A>Ź}hbzgRh%+O$"ǶwJn Ч,n ?/BQWʞ[HxxW^܈f'/NͿ5׮S>ec2YSRI q[l]<ܑ ї2LU" U/V}-b6TL=sF xY  /F-Մ]:`y?L|U8M_+kiJh R5͇Qq}Bcqcì'Ցn^rMja|!=&6EOR3MH8Vp{G)#A<֨5N'<Sy]+f;Rhd"ΰ,\iz}|J +g&̂ӲZXVEo@N2Q'{/-Bxi(04eI 7%'M(Oyb߻F۔q8z۶ª\ǃo%0$1&rsSP95wt:f;Tw5>P.05VuVⰳ+G!MG7^9.9GU~V}h 0HIR3=oeRn圡fziGHK1Y4$PKc֏ѭ>j)\O +, 0aypkPӫSC0r͗:;&95hӺH7Ůs E/.e.cJ%{"G鹅P?k{>_T aB~H`TykRs(1MBm>c{K&P^bFYoR웹rp?&:djX[xf{ '2'U^@f@y9i!nxNQ% 0japt늸] [۶t6ik$ru&\-iEH16h2úqISߝqg?i\cꚯ,N|¬Qo3N9gmh>QfKK1 \#Nd Rӌ* )Y6r" !݌C6ΗI\aAQ qǜ(Ỹ bO_~ĭU׬ wz&'SIz;l5 ȯ gDM*m.*Ls%B.6i{;hҭtjÜpΩYkr@nwԏoTu)p~)b0D$ݤn ~`{+v*9gGػ$y>.E!_LEM2eF! COVKPUtMt̤m;<\ 5[\iJY٭֯ƁăH/J 3G7x=#P \#Y&o~pƳ̨2bj|7ĘtP#58حFzz<ﻤ>̀M!,H8s$q=nfaMke` %LM+ FM p GŶFp8ɋj, *JȄPp`Xˊ_SyzA&v%̅yuxgB+٩գ;ܲ'/}3ٓf0ٍ^şq?gYZ8fk \T G9IвSW[U'ܩFjԛP}kǎ1VmѺ{At[(hm&Kwe0cy ^rMxfb|wCJ˚WV5ŘM{7HXZN>zߎr|MĮ79>'[ IeR'-MD0 Y&q"J90qϪZ,B.m2< 7{?7J(  jt.|W B?0ɦS"ϻџiU %!N$-nt#[DXP [YI1u<3 V/T盢5#78GXGe,[qZ∵f3w3[+; Dtp|y|6r_C6_n^Xvf`VJۚ:T.dPѸcgfǘ6ΊVt4g, 9 %V$ vrnߞM0Ѵ9C|WӴ.O(ګ7@`e4HAͤ@,p|mT=xM{ ; [+#d%Y$ʭqTLZ:bZuOnG|Mv \tʾοaVBiT%a(s۷"ƀbD|rg26\I~Oor] Mq6 X?\"Mi"U@X;aG#D7<ۡ{Pjj.3Kh*eK7JIk_+\ z;Ã.hf.uńdG:g1*6#lg@3h1ix_? 2l98L:&z ?yfnhydO.kk,={EO11c˫"Yִyi_vVV>+9I1ɸ'lWcщdᰇ p}"md `@EvS>i~mHFv]J|ߖҎ]j hx]d0Of`FGy@. 6z6rRNÓmEh6~=o6TvsFy0DsG^NX;(/I`+F(rknVkk ]oxdL-Z+mof{(VI(p((AJd~m!Pvwš+xplCr|>yWſ[pfy{jl&?AV4ke6qr;#n0tkR_#.n=c"-a7 7WK,"$=4R&-Y8d|or(Oc~9l+9+K"EYipOP1[ pʅ9Y E 6t M@'dwl"zWeh de(3` >ւA;jbk͍4SëyXzA܈HzoDʥ䟕M1 i{(9pKj2Ý.|bZT+ (+x79l[' 0l+»4h\ӐxC6+ ' J^?~u7yE\)Wzb<( KFHɊR8ۼĜvj{1/+oAOvt}6.!&S.LSד,٪@++W|j+X9{n~p r1/EecG1*=-iAW >đ6֕~8;}LeĶB5PLΏE;~Z5\uIX *qjődna:WKFYMdEg+>-9JC}ga( èa.:+*c}<+׃L'eee'S]5p3~Wn7)As&kXžQlۯQKͭtOeJhXwùW\43sRңU?m`&-3K&=ΠL+׀ʯɋ=|ORmѨpԛ;` @d |d~#q͊nIP3O:HwǮquLE`@hNAuAcGtd?RgœMC ex=$Kq`O -k#b{NɈ67e^WLqlM^JnU( R@+R @-bfummT|9p{v{*NץAmrLx%͝ut\  ؀cяewLvjݥ?!V` b=J 'W^ Zw|fJ9SBz3"j͐pR\m]0[3r%osbp1P\lGB;%s٤i]]Rb~Ν sP {eD͜+`5%N&eLLPkQNj5BOGhձA JxGR4)Pπzrag-f zmiV3]lx+Tx+Feaٮ M؈ slHx\!dV̐a&>V߃2qV|ˀ} ؑ ҏdp(&TN@9*{P%Mlq 5npl4/5qHJ)Ya+1~/ȈCo%T!W-QGR4"䑟C ~u]Q{n[Utc֛۴~ Iplr!l}~/F*59R-X2W{U.duy1NZ?cE@`a~ޏ`OښO*s2/Gg}K=J#EmH/JN٘*A㠠]ݱm5M!¹;S|#?TU-cfsg_ViҾQ[ⴧvl4U㵄(_h{S.{KD] 3#q; oOpZ{mb&~Xuϯc*;=o 9YԡVf.cV") .Rzful:&67DRx2]Nc8*8 ) k#7:s'渧QT)/ ͕Giߗmo_X eiUgBp7 ՞-9&,ZDIZ$TVL*4wkӫGO"~ڹjVKDU5N<4h\of.p)gY-*r:C;Uzt@X=J[pѨ?3aި/Qn-oMyhv?3ʮufjQBP 0nC ;Y:@|SVsQ\z(ҿk٦EpqqF΁~kAS@,qrƒ>MO/grXc[ WF_߆\XM.1'ETAWLn[!Vɐy_rٸq<}.0.PEOBۥ\U* rϕR8[PN H>PpV|3n!OϢt~%nHtЊa&` Z/UcCAc:)=MK!T ˇ]Hf+_Z{ {*Ӆ`hBI.v:Flwœ6Q.A(3@`n3}^'LJ4^ $D|WA]#xn-csXu#v;xRǑͫp{GZKIyk'rm n>dSSNTYdbnxv !#,m)?dƯy;'mdn`K2Xp^NW6ۛDZF3~ ZZali`bs.a^r-N\@2OK41x,X6SW:|}ZDgb.?5.>ZI*m*0h(m6$㖨NR9,)at2߇¼@-)%96=;ShqZJͲ(Gm";]@}R5<~<ֲ*LF|s' `^xrx~tnv nazZr) Ijl>1 Sfc X_Ċh}߰3"D\kEbo0uEOWׇOjNFo6(dQF9 1.[~JWcv7i㽐!ǝ JX/4] ."xYL CDU1JE jpey@GvG#G,9ctqˍ_'TBTɍ4@E} (Wٯ$# P/\P962={eZXYWb˚lPWCf|1wMtJ7`|CoA3&5yq'l* 8+ǎ*" \h;7=CL~bzqKBۥ<ĿE,m&4R{ ߱{qt׺·wWGt\ɶ/E0ž( べDLz CzͰF-6R[˲PWߨ*^'_juqjzAoB8Y;s/:P`7ܧGdj+*\M<5V|)~ĝo Y*rSRz`Ya5zt^Rҷ{h:eA*RrH+fp)К(H.*,6cKY S7mNio i.y~c Pã6=Rt-sv{h[?DTGrZsTx֣ȇ湇߆X1Mb9Tw-*z;+.( H]aF;P-ѡ-707S/̈E!Hzʲ:/?fDž-džnk} * u U*}LxkϠ ^֛H(KNHoQhdyA0,)*π,8R%s5S\mfUT& F oζ]á%:AʅBp^0=nem@lF惢E`l]D,R&kV Crfdb<at& 3<Æx 垶0i0ᛍpTglkXB18YPkjÓK5;^15pD0B}.5H:Btu#K@)|HĦtD n,-^/.سip673/1NCc苦#T|SU,ƃTz?ا`F3ỶOjkB(U. X̒Ϲ{qvj*.Hˣn~^X J, ˫ (QDXK~8;q0wyv gs #qW@BpT<&uKy.i1j7wF5Q3t^57A*Ƴ_Zh-ֆLG?`b'EQPCA9?QAGj<zC!@G~ro~r/^.C; ^-N{^>(Q&S3pH]o#ej !dFN+s fH{F7_+:}P<B^O.&b:it'aQE}6)qn3iU>X oY? ,33`~ޕ/mT2dU>Oe'*K>4 QKs?ecOI]fd>mm6znwc.<5UjcB8  =@%@m1D Ҩ(z@1&%͘8 {Fo$%)I "F v]dc_ LeW9)ʩ{WK4tbx()hGD?⾵%i;! gOr0s~LU>u }m8<ZQƆ+vf"pݧ"YӑbgMmPPE"xlA/5׷Md`C 0_\R|4y5&bVsS٦&jgkT0cB " ;3k"xJF-8<x곜_5q], 6fFSZNzuɾ,A(e%KV ׏khx,A:#`**WGQa `-xԉ`w.SzxSGׄ L<*TDxyq!)[X⬸D9gRĻOu& p0n]`0,Qص_cq6 G`CViEmv7:62ЭDQ+gV!/ʀ@*oPagN/`? cS9}Sr_&\>-^ò25ޟx*=oQ浽7:J6o->۸c7Au|0 PCx,fBwex1+FMY)nm^=m ڃ~l}*')ͺtk6;׫Iom/5 -L͡#/bCAi["vſ=_6] =)) YJщ@! M:_? =s p : Mߤ$+zc}0F$0MMoĶcM3j"f[NQ*IӜCMJy5@E#TcכD}tFcmgg̡-(禜߯ {8YaU.Q5'G+֔# Vu6J~#iBOI)9u+|^A`"s8ڂߨ̃` x3qeZǤ36I+QKሗaȆX 6'ِI[&L -Ԁ'pv9km$()S&7 *"g +XrcmMY"jv0b:{.=Z ׆Ȗ5AR/yGQp>"T6Ëj¾U) 2MLhOׯ׶}G` M"f3y2gxEܚq`kI}&^{7H!`~UT+6U}#KT!Dܿ@"}3m4ݧ rI|]>EVeVFLe21Ф 4$s=J}{ Qv^ / 6b/T 6zK:J@<;-!qv'Pڷz~VxuNUMq12 kk4bFI:ugmf!u綠NlE3q&f,ɺOYӖƨ|;a1Ț|^9BY7CS2k<(k0@teGa|ت?~Lp9ՙ'HTO>4k/xam@'Rej/=W9֔ C`|wte)dyYG%ra@>?6q:(2oBO q|K^El=r&S[!ה 8/y j'k!ZALrOUtGr3x(g=ޑL3V=)0P?xT˛]f>qr$4KętSpavu,ttr~by(8.b9]'k*$G+!r;wT&sИ6nUMf*ȰxC>(`mctmvkQ/]6y9@id"4F)On{(~[/s=50trzS(c-uUn\*쫜 I)5XH+)9Z|nziЕ"3 ήtbݲ!b-=PI$_3T|emw^URx"!,SQG9/ٳ9;lj _N3'u|f#3ò3Ä8B7$ZS,Nmqе@GhZ46$1B۫_ ~QA4ʥ )@P(/DZ FWXTjs/w(F'(cmdlTߝ!k93=爀⪀v2懊fq [E9NK.ȣ&;gNNȁcGW{r%ڙ|f#=M*)Ȓ1 :D>+cjPjZ=#A(MRmBooq0 gӳ=sZ6H y+(@2-] b7%ʛvSӊ~Ϸ2Q cA+H鰹uYCD|8j!Cl~JOcStR I.A2" T[4SF'uƱj*7MBS;|\]tGGS|[Hy5m2]\I%{)b[ ╧9g<Թqx9=JSvT84 ܖ!!'aDdN̸"71Dj yvd!uhf/%ha01Ӄ5c 3k|{pjg+)F u MM:+nX: ~& Xg.dy^ٮCmHV _9F|t9.Z@2K q?#Μ{--S}¥v4aB#6ʑD̑gV"A[shہP]7fiZETϜ۷罆UD:YeLs FDC.__mdզ)|4Hbwg5 kH%Nآ+lFDBS6Rhel8b݋^]w+jbOD=aOĦ~]XjJs"*+)]ZbYйYo^yWs(LЁΌo4urPFKeE#7A\h-3w=S#$jhk8_bSt1#5 ?9:M^xE"(lEa-1éT ,>Ƙlʙ[zkEgfTǔ`UP*+ tW n+DWJP Lnx`B.տFߐӭ.hv`,R Kp06ʺV0 [l2ڇI*(QuBWIj]s;-RbVK H͆|S놎axc1~=t pR+3cW'=J>5E+Oa߿|놪GSuqPP\hLlJ995^MmG*a;w}`]ٜdէ+&3qY\ Gc?\mWwoynF]/]˦b$s+ڶ;/SiI~N+I"?|k!cOwd$F5b(a-HUuP-uZ H@Uu0yE_P/1FYuw x[IEMl ~tq;NԆв_U)U&rоM`e|VC)Hp"T5WZHB Pj 2GEFSl zE?+\#هb%a˱Nj(Q7ynPDar1TSo7 "Mvߴy%Ew>`UuB>b(3Q\Ihdg-闛1 tre\l׶>qO[a]6u|J% *cso<_f 7ȸ> 䘁u^{rDR4HMd'>nj?8犚3iB+=&j0`$Tpzpg/޽*I 3~I*cL Ȃ1C::bh`sblUm3? w 0wI$a6 7wMU.̜!^dZ;TSqXCNQ"kCi7~vˌs *Gs'9?&r8dbCk8bxg9W9c^#ڪHNnÆ>+4RKiejcC$n+]1q2 .xdK| Tந{!|y)z2>֘ f1*I=?Hmyzb5ء)a&R Ŷ\j:H_ln7ذ/"Tkt+nVBfJ vwW8 "d z'T.HIyЃ~3[.:@7Lҏ LT6Y0QoV*0#hrXgGԟMI bUnu-A f#;aш nW͕Lj̿.1Z&(/6\Y"NҀ,lH2 a-s%zӯ5^r\ۤ <qUY`ꦛg䴟n5fkD݌_@Ww~ňd+)`LM68qąp32*<Bڙ-|B7(/FS-5ͱFy+~lCًqWmap$6\#J6uxQuCKpRК3 YUh_ R谰w";}l/_GM`>!ɡ'_)$7JU&ڊQT=+JGVC86'ԭ\r4Փj0)ޮe#?0EI}ֳ{ Y΋i1J}'3- > gG4ߛ=bcs8VFGG i[']8Zq_{Y:C58hp>z gMzpHy|v n߿HSRwP裊h{2oy=@؄65OΣY:05םF ^^AJ͗Q0_;X+y7z% Oy3qbK`EndE*54[Tݚ20$kyz ƔC\`͇Q1W%` ] dW .Uc #_DeWHffIr]z?ٍPإerJbb\Mcm!}/`d !1O()OF3rۥ5z2> Rވ: ˃(AcJ Nω0)8M*Gu7l Zoz7N$)@xolƧ`Jn.P\/)9-'hDժ{&1f>x(K{]n/jjyXبe"tK]"_AW98:9å7v?a,*0wg|!*d! }VyCtXԱH4=_Bm;oG =:MDQ>/dOk강kH}]a-XwJHW%HQEP+=.g0R{[?8,MwxY %,r.֒6/ H@MMęvRQ܉7]t.PߑIع ~:IfAX ­U/Jfi!u|ͻ ~r" }$,($ꞜC>:]z5#\'guQ|ĞD/)>jJ凨Kow=Ǫ /跛^ɚzaO)6mSS '%}c$ ]7mi´mivpozx%!=(u+Rq[N I`+HIuvM|TSZm1P94π^=pNX'AYaGEB# õ5*f\@;$,BGt #Ri.sܘ"(fnNs&ԁڼg] |^DK7w.mMî ЅP6eݛ%Eį!غ Q\MO9||N*=P\aˡ=_3YBq4yK!soj^ұʑo|uyiP9x>LϹ`<]F  Oj9&;wJ"5oS *OuqH%OS;LzE>Gq8C6j.ҋ3NVWk yJ09/:ŵ /xP@b-07=51 shuN;*4Lcӛ"g>1w]0O+;RD+ OvLչS&F%`<3nw{1!' _I8fb"#Vb]eD#)*t-^F̚ƀq-MpMKBV2ODtmC[b@fVװpfS`ѽF H`<p6{D?S/;j ֥-k e*\bXW`0 Hz l+AX4.&UaX^,v5tA_P7I6t )hq]5_{E=p ri`3e3k!"|Fu©\ ID(Rӏn=`2tdG:U.ఓƧW Fn)gF ( >jhxdea:a5 6R#:7n0頂tzҝvs^\@RѨ]vw|E5WD}<>+@:jtW8e500"T&ֵCk С7~i٫Ź"/녣|b/iW$nRRXQSmtأp|\|k|r>:=bl 64fnU[&X6cRԏL {\?s9~"idJSW$}a|jFrZ6jwq4YcJ5jWg n>.G6 \!q4Wk8fJZMC<|R^ Х쮐5yX^\0*f~"P oiro\+GQuD "!4M+a0Rl+#^eg =]&H mV\oN0='/"Ñ!aM4Z#Ml>k} l`s[DVǔpIoĔ&ܡz.Gs-Ř0{bp:Lt[a 8 R+fCV8r ((KG\Ch[a[iVxYN <>&Y#+dHلnj,Jb0ْY.Cn` zBڪU7Kۆ $R )Ksƈa eTg~#2[@ l9̓3 w8xY#!.ŋnwY͉A:AWE'q2$ }¾~臞XᛷCo>B J֋iKni(O8"DlJiulro{ky-e" [հnO3-ޫ:3Ӎ+s7rdGE0rNsj\.g yUlEkdG,;Hy cC~cFFqpB5 TpŅHQ?mL:sHk]pՔ'*GDH*UO:æUY!VD4zT"V&)= ?dqKj]GwE9KgCsgRgMLTjt& VDtI!u#t)F:;t6(꫙W:iu3]hUʐɁ/*ǶD&"Ƅlu53S-h mQߖdNϑ`{^ Zw]{Lk(t;.ځ0҆h$%c_EI %5f* q_FX4|FEO?1|[VvLg|<GUxQt;BF--nd.} x:qz٤Eh:D`mU $Z Fj5u5#qOlr~ -⸛=@qwSy`y5=xpI8Ejxk  a$<%Õz~xqoq~Ȼ&mnNn9l D.#3ze5U1^,B /le '?q u7}!A;Q631Q 1ZI6mZ)\_T( We6vN0G(I5K6CcNkFpk=S޶Q)pF񑉇M\Q?Ip0OHk^":_rS]ΞGAutjiRzun)#fWh9f& W^s ۓ$ױF0>$1s뵭N, mgUM㊀dh@} O"3-,C26Li |=.$:)`OK'*d[ ST<~\01RzS4jxC.H ǛDágf@Po|إ>ڝ2&T[Dio<xLS-0.3F XU6tu1@k\اBDycHTYfLxL=>: 7) 6^~zCz^Z!:؊mΌr?M/`d.1 ;__XzOb \SonGTlD._w"tGy94S;VNĦk '?c'~?p|9!#\^4#r̢V6PI9h&{rïŲ^27gߐ`i}faQk. šUԨM&f^ѿUGǔr3i}$!՚g>֍ @ڧn^s&Ypتʂ㸰 Ǫ|s%">`YI;KP%q: w.2Jj t-(OG7LjVM`T('/oǷ Z*\RgSh,IIVVdt_6e<l#U0qb^/1α ƺ$H.lcNTz:|JJOکLN,x g{W Ilv LWLңC㽴|s ͩ$án؊Ʈ4껥͉Y2&~E`a ]&$%pW@]ʹ(: S: [Ok6˙1n?U.-T5m R~, )v1{8~J69L]&QϞWLF'%- !;V1fr >TLQ|wu\赊섰`o& q$ϕ3OO|wßH{$ Q`%3Vua`:Hgp bJ+|Z5,_c&qDT/q 9&(͍\aIaUaY8qC5h$4ިNC9!N5:o#9L}S4+ ֝\,QIu&[̧|nuSS:\p-yEB{r$)6O٪ v@\+oMv㎪,)a@kTI bZmcVpPCn 5]3{6xRfOFCܘpʭ4S09sdeg} _2:ްOּ@fiSo6dE;38۟γ]c>!jZ\ c?֦>/Z3XNy**уwaȁ3;tÎdPyRmCN G8.7sk˜7NYꂖ %zUg!|cmȺ7~ 8y8NV㱡gAGsmy3F 9|yC|= 2uκ|]_{b XR16nz›0$*n A:Q;務F<:S}P1>ha̘H۷l[2o >guk0-#$Q6@u[RU" 44oVH\tBg!LүO\ΜP(h*2t3Hq(W¹q58tDχ#QWYH= znLmWo0]y@!>iIrS? ft}He)qb+.:ymn}v1worE!ϫ=hyu-?qG 1h;c-^"ԃZ33|k!ݸQ#GXfs2Ы¤=Q4T'(@B;d".z"6gݝ @8RեhwtU 0_ա*xr:O$֏CiK1ohzACEW&:۷N]ye^ío>v)&'\23~=Ol>< k]l`IjwA"VÈ5Ѵ2Hԯ })leBP@f*"$5P:&%I LÚ(fv1paُ\ԓok{Sñh -^R')M"uZb`aGeC!]we$d"`T&Mv-O0iO&w6g4&-a^6HQYٟ7iPSA2T@bۗ5Iɒi%۫10ގ?n&"_5 {>tŷi ޠM4ئDSƗ^&zt˪e2Va]CCXy?s)_(g֍ cM(_&H/{Lk6IIAVNsɧ"Y3rC[/qB1+_gC0kW#Pjg0R[\(kﱉ'n1yfrL% pr^6 >d`3/+B (HpF)iV#tR\@&2B >J43?ɰ;?2^|G|Fߘ`ѧiʢdWV) W]w" [jspS5,g{D):ʏ|h^wߵԘα.GT & Oi3hAB} oڮXF(<(:åzW׵)nwsi!ɶvcA) 3L tLbzKԽ7rIq==# V"cb٩M]0<"F[^;W/ 6^v,:;hcx c6(2iz[{.jpW*CaS"w0/6#({zd2^5E{ZFeߤb~# deA$c{6Bސ))i' *9Le daGDNo>==Hi|ޅ@8A̘kMIV#!w#ɕ?SƳ$ԉxHQOqlם7MVF5ԎV9!ETKV)ĭIt;5*B/;C(HRAsr'k/n~ݝ@NdE2uS&T.ťذWYBm-Ja,I("z!%1%w+ѭ"&0!x|1sT"4RV`^/]۽:Z JdN ;(q52A0C%ʵ>fyp*RGh @.(.A8,.wu-; Q7~pp5W츔)jJQ9ڸ2$y:MJITu&=?yXTC7T] oh)w2kB+[_eF:8+'ALqn{U_7Ld95{`Jb{j()EPx6 Cܗrя9ߢ'ccyA@  oE!_Rx&hv/?1z=cCtigT -I=$ɣጹܵuFղ} wzǘah{Dk#W#wAnkR!905Qĺ+YC1|uxyrJ&ƥd(ka" ±Q' X%>MaP52 xxiɪ+9 bn"`}Iƪлju #aM;T))`̐8h{]mTqsQʡ EM7:1THTNtf]1̋n# K~mf.IӸ|dkmu'y,C#:R-|\aF6Bq"[GфeoZ$S?=(RL0JZDN)O Z%ls-v};wgi61혷pʑ>\{xIU/ChER57=B&DTTt%OTQI6I/9&U3vIif~0Alj&/}g][ƛaB,Ι -kdaaBj+%Ŏȟbzygu3(x tVCӒMfh:xNf0j9foL<۴/厗{,f?ۓ??ӠWTj9T|֟)^;>sCXltKDHʀ} fa5X-'.3L">֟2\-6s ѽmj9Pv#Iz,AkS4kP6F]E  P\o#cW*IW|to{ !ްb0j`Mj-FNc\`ӷl`s=4'?40,ȡ&%*GziQ ʾS&27F[JJ+%~wIIӗlA~GSH$ 96u kCMl](F+^݆ $X^#^=mB8dGpkO(>\Up;v=_xq6f t^3=娤/Yɦ4P|0#!8,>Μ+j4_Ña.2)T 7ZO#>+[ߤyI_sec jW m&@d?]TEfmy):-sRYR(g!em~e7 zlȐ@ZWL"!2x9Hk mYzBu~" M`6|eriO\RogbA1q-hχ&RndI1t!솗eSHZ疚?'M3NZsO؏xh^Kr@v`F>WJ`F6嵰rpY\#2!2x9RA45z)XOG9ah}yAcÙ-{x̮(<o~K/M}dO(`S_5&}/m}-($ns~dU+I@(nrڹ9> IJ/-cbD^-v_}E|ЌE*ӈmy7daGi cu\Amqb[#0NÃ~y}0qJ,)qb8jL+'OM&UVyF`*Щݫp/n`л[1 yf^*YE° \J9OD}q`9s,;޽R9'$ԗnZ DW;bΊޅ~U/mVbΙ6q,>: e c٣JL@TefPC{3 Iu$aVا"H&Fހvn:/O:h}JegZ 4_6i^3cC7@,fNndmo؊ I[=mh%bz`xRp5,Fd@oJ#K3MMVRX/udž˱`b)/O [RCp`l/NޢC| S{)6qu A^?N 4 FuK(gr |X`x] "+[3|8NCP3 q8E.x <~} 7%GϾw%޷HiTK2,k!Bԩ{|sF%HAHyR{{^}#>#=[X*Bf¸rdTφҗH˽<1K(4rTm=; v kS|l_mR E.J\H||iAOEw#N>t}V`ΠGeÏ"5 o7mY{06v[^]}m+\ unn"К7 q&:a)H\M9۳Э&ȳŢOȾT!c Lw/ .bv_ğ%=FA\C3\wC8kO M4)/7B54c&52m-CY `^_ndNZRI  x(iaqx$"{|7PA/P==) Cr_UQLEl W_xl32黿%+@@U8iu(%x,J@peR1PaC60S \{$wgi9_S`^,.Rz i0(a> ( n,55 1{0Oz}Bzzo)Nk;񜿸\&g88PK9,#6V4z, 0qV ApԲܨ28A$ TB'*>ulBRĭyPR4Ro3.=Ys'hsr'YbCҵ'$׋ˍRM%ot/%CfwBQnL N )#(7NRnLsOIj7?ʬ0ctaT&ޞՋ>R꡾Q'NޟQf=QߞAvZ3BaX83r_0bxc'MJeT+6MZ^٠!f~-3kB.q]ݡ*THf۫kY}u[QC@S*_߯t w:5JtN+ϷЫМuy@:T;ؤmp#I8 $AWhK@߱(X䂞!..O]QB=TD{WmD$gP yHh¨ I[]3_ b"鳦tKBlf}HfT3䆂(z`xUJ䘩+qՀ\-Iܭ,N2U## 2) Vw%s7 հ7ƾZ/M]ł51::-;= -1 ‚}2ķ8a]`DlD;}J . ^VJVf-vӽMHgkł%Kñlj\aX9l !eC("G2e~NJZWUMXIkBŔ0{:֕:3,th$7, s-[W}X]|CdaWnE$9\[V) -`XpF"̏D|QąmClPSn GqJ&o'M5Rxl> #so7 Za0AϢsCםb/X-OCS2å@z7M= ж_q/It-լEJ*x׼{{xICJ~\z6u\#uxp79aa[ҼLFm^a԰z5g;MZn?=[0KRU \*)S^YJQ,hꡌ9)|UR1d{oJFmߢbb[G-VeZSj'ZfPww4HHM@zA~¦j[FC;"v;x@&5Ì Gb,j͗.N[v6NЭu9ڥJCԉ5U*i`Qr0; Os OkR7x+#nF hG;2&TF̝$6%'NrV\bd5ZTÆ"Oٳq(A*"w znrym-[@]qDʻ Mc-@p4@T0SCzV_BNV~4[eCѽ<"}A44ȵ}1y*adl,()e5͙֨[[m{cIߗ#! {9հ4z; Z?}"bTVO_P!tSu6p#i?[TqYZP0xӭ(DNY1YkܮB,Ӆd+Fn_<Uup(X8ՠc)heջVN#jtbi(aÆUzTa#n´FLM>[!z сJ=wvnA ICm XeHw:P?erP=^2_Z捧yYopG&lA6ԥ>wXV7_2 o%p,@{oܪ+!xY6ohR ?VPWƽ>HC@O #|x'A3gxMJ#`O>l4q>rF<12gm 󰀍Deʤi3f^y ̈́YG|2_#6eXL?.݉2O_B`0l`$3zJ9}1úy_477 dta* >4'ݙ.zJ!݇ҡ0ʦۭz5JU xӐPۖhXNdYVdhs=z--x Q0@n]5< iJb+bA ui{?ߔԌ {!s.py.2vK:W]u/:ܑe7|6t9nzS9wg48CD!)Aot,CjD,? Of&ǫ5\% ;/s%͈2J!2,HdFzt2v<Cq,S=rE]M31 Ʒ;64x6|h,WVCK6L7χ bǷqZ] pvn'$ŭ·QLiLxq۹}T8|Sbť`lب}x+[3_d|Ni5-,(l# zǹ`>P I夲7r5qF'?m+4p=Xrϡ%Y }~TG,%N5VT w58~GF>a?Srny3mҪXygIhΤlSA6ŕp-lIF$3FsS Bm&54C#Y$F?uN e).n.؏U~Լ~OzY+#PUa(Ok7Ul::۶'4)rHCԘʓٷmPQ?%h=U+-ަA@"0*_b&/ꎷ6F`ϸ%`TBNֻMLgZ Ց 2x ή ')&f ( <;ΚFd\ZUVܦ5?z-x[#]ա Wo7·NkDzYL%/B3}_~eoVy/R#oXHt T*>Yv5z[!R({qvTLA߱rg04Xu%+qnS+hhOn r*tp;{Tgzq+\֜pː9$lUn!R:7!^Y֌>zl5(}9ZU t#&IxjNЀMYtdK4pdN K.<4EqC/.rWeWccND-XQ v6$B5;"hJ8)Of80 JTs;Fc$ڭ뵖|1NΰBTVEjC=XA}߫=e# W3Ş@;>KIWJ|tNwhk+Q2lQO{D_{+K`51P[hhǴ{27MaeQ3˺;F iN?t6@4͔օ`9)%):XPPx|֘H. 4gXVׁvLԣv.wlJt]BSԪV0mL?@-tm* >&?=]/zS '}aL\55Fg?)r]T@ ǛtnNj*CX_{g[Jrҋ=ALj{hvllL0#x1:!V˿ݣsN}N#(Rr=PuR /'eKvw&oqPq0"*9KnjSpB9ď^>K(ܠnK&EiAxz}Y ^ оӟD(IKlnUɆsJ;z`i;$L6BFJ ce~}}@Eu^-τ󡮷 \o0MJ~l?_*h4@|S|UZ@m9~}WIu Q~ EeM \E"'bGSH7fpj ~ۍm"3޹xLd&hc2p8DV#Z%ms9řC"ʖ F1. & w1.VaLKL #sbYy e]Ɲ/Ѽ#O7D.8^np% / y*պ ;I(zf 0U{%2#7qj4 ]yA'E-%A^v?G6 Lq.> 9)r|yUpS8&R:+7+p *Ϲ؅e%۳?z Uz7gT ?\A1Z:$B,; P'kźkAMEV$$dx%&eySQ^8ukϐ<[ڞH}͖ȼQ o(8?'M?3th$+=y(e*`0s<%3=h lQ5xZ9|N}~v$v+Z]JChd;̳:_#ݛJU}$mixXw}1넎{qsl`XAHRp=M?^dL% fq:F)wmah *,ND8*dǼA+YBKQ64tI:/N4EG"evye^6khQcfCO[i~%5J[h1Z͕J=uo.ݫV&5K`7-Io~Ȁ6MjӟHoj1+cymI97cSN%W(иdec`V Uw8c9z l`#6r 6LvL^Xjz),x+obVJ  W'4: )~`תbFXa|e>9<o-&ۂikxs<%5IԂo 8@z[="9>NBupz7;bƑZxERct0Oj{H{lZw;=b=Wu6Rf,ջ\0XЖ)MONV[:(iM%;'^K`ݦbƄEu[,,TE @?"LAn sfGBX -Џk6 aEQ7C~nQ lևkm  Ubt?`έ&7cXk#Jq 9^>vDz'猖vf8<*wKܑUToxf4Fvm<>&$o.Ji-e;7jQ4,I7Ya-65*rv'0eɵm%gxN_ƬvrvP .K']Sޫ;jUEq !P @vs/"6ȜB(\ne#0%O> [(O']ŌFk>^b *@(8||9u4;AX1}'rNo0ЀPCE<w/J10p>N񒈲*W#ĝЖRt~1JM +-eU<\FbRnP(aLifW^gC~mAz TRƏRfotlTE7'}>hMW2nރZJV 9%x) %W ̆áR= HVn'%bK6HVP7r(uGv}^WuS\GgZLIrI|2K '-w<# گeJdBYkOR?&.a5>w2A%D6P!(H9K7>ԇ$W/˔=cؓѽpNKb+3 &z@lk2@Fޝ2oiЅm!S]W>yu 44P! UݥGtF;xLOKN@r{ϫiZp'$0^ǛOUY< {@b#1)dZ[\U @nSgfdI L/Cl#-遥Y Pddaˏo,kjjY+,Te`{I8s,1|uہҖ;3jeῧm=o2]ˆ-LΆVxѤ-afHed(QYQ@Qp]Rl% u٣h˖9 tu+r{z`ƌ#S2W_j:I[SjvTpQg9 sܖ~6IE":Ms h`wuӼwq|ʮ.l|TQ9gH<(V.Xa(@cm4 /"-6982vϚ^ I~]! Uʤ͎ʶ$TXH;/sF^3WmMaw<֟%"옳'GOXx6{4AmJuИ0?۰iI+m?:\UnxgD͔D3^\̫t.}$ -4j4JOr_fajָNg4x |VWldF|H bWgi }Dp׳N5{%mʟ&_:Y'Ǒli DnYmMnnZ\p6AǶv&\!9I)UrGQ9MJ ӷa;:ޅm|!w55كS|'Cj[Ju+| 7ֿNE#uU'E'fޯ"VSgN-0Uz-1Drl!W};>\ 'fAa:S? //1dU*4] Of0K*RNV#?̸EX *p5 řm |uȯ זnA +.L*R!4<;Ctu<1G(hgܓ*L}X\j?䘈9nG֞e]` <UyʧFp]%3jݏY~n32z^7+Br'hLcJ=<|늈V eWv0Hތpŷ;(4:C"w]<&t#mzT.1%_r;,9pvd ],%~X'=mA^N'rAL Hyb<8"Xn)M_Ɔ5}nsk0~;腌 z=$D Cӈ^=Y˸*nd:seNdA尸Op/Ohfǰ؅;9]*-r0+3S𲔡)kj. =/!o>D=!"ENJz m uP_OL=јCGR9^{5wr̹,&jI. $V GЗe=(eZ4wWo10ǩ`I3G/d-+Wؒ:} ^P6aٹ&W\dYWMFaJ B$Y{ױw^LgCOZA_UArg2|$iQv.ZMҕ^VLn 7Uu;)pp tU$rozBu%eY.ͦnnb-Fhh+U|)%q7޾ qlaqG%pch6ZX@SIux2L延u8خ쨀 8VͱAؙ'aΐ^]2}yZSBGhR 5]2d( 5iZ -=w|7>Eֈ hu1ݐC, Zb87 m_շbNqnZ`{vk 75Ek\kT/B> ud$ \[Zm.;HBU0>gy\s1&\ bYQw|tp^ (0![^•Gx.uY>o7\iaMyFcIx^o_%?I~8Ԁ ~ રꙞ*ĭ[4"ԹsE쫺%VGBǗc9c6..MybS;|!rT&n|x`Q=S;ʟOXKSrͻ씟A-ҊQNv@_:ΗN/E`xL8В20UAPs#c;_5/a4H1tV`e7jK! +Y:Dci: Dt\i:੼=4s31C<A.g *dcriؗW[pӉo˵(7tct 3]+՝mE]69Prߕ$XZ@Y (ԧ&/r\%[mLHSH>%)&z==$ =@'A, udMY^C0GbRXL6EeG5bi`]j\ Sv.F)eiJϰ!.cj(s:w | ﶁxyrs .dN ( ArPxSP\.P/?dsO'n*eqỄh*+ 4pܑ|uoN4m"f QnӴ͗cV 7=t]Ɏic3PC`m<\C{OҾ~9%e#xs{طV¶K%V˓nSxhڝc8ly-" ]H֜n~vf:CPГ(1ܬ!gyvM%)Ohй.`$) ~#yH0šTpoBIe]Lap3k/IR+E~Lx"7 SyuU9E}l?ft1E), ,קskN.j@;EۆQ&e'!Sde6'ֿ$ \ynv“͵oxzRx2=6QGzBvW״$8z+\jz,O, @@ҠbdlZ03f}w^a?MBn mQ6y|^ _DnXVg@P6`c̺UlFȭrzKNf W jDū˹0Y̒P4裹hH`bϐ^*8> V b bBXJ)b€?N__' Xbu>a/Ψ"G1M)37Pֶ0׹ϺΜg莛@m 'D 48^yE'bUl7eUHC.에#]^Z %WfzOO^KZm 8-37J :LvK.yguhq|Ch?XU'5ktwiufbweRS8mC0E'K4풂)1MLpj EUۛc?V5fsC{'7@lE5`h̫6uAT+cv{*>~ F4S zś5.4|.;lbUq9_:o iXH.t0Nsq|TRaW.tX'M l2x$sw[PpO".EGaNA#O ,EGeԜ]/tYŨ0togVtk̙K=">^~iBvt:Y4[bt7"X UNW~o _6"2[/mh _o^k[&V.[IH׻5m ŴCr8@"y`r$wMՈyXG S쟭>.Eb[]Ry.LPZ8jQ<YrBNlw|'ӏ S"-#a.%,y+T; Vw;qRp8V̋ 6mGc>7(s^*5MghAր^56ntuTc^J}sFH(N(<|WKcM4m!ew&{vYA b%AKmKNݦ-͈1P&Cq sWC?!3u/61ҏѥFN[fx~Z9SАZia8}z̪O5sΛ^\^+Ί[~ɆI$m!B9)TuAGؘA`\I -tɮiﻻ#Lf!"盶>sƿ|YI]7JNY3 ¶{fzNI[3BhuKrw|6 U2=$jnMh_%~Dvpy. >Km0Pn.ts~ZA ݛ2EЋ@зt[<QRαL,+dhn/go<޼L佻YMɇ}r!׺VP^;7.ӾdOR5z'1/Brl1mDždbDF{X!$=R@7nn,fz+fSO:2hdU,0КdɩHPTÁO[](>97[,}âkʈk<".hMڠꜳ.{kς^@8mAzWlf-˛A?s2&lT}&UݒF^ś|RVE@^x{4Aa†J 3DwRµ+=n oX1P2;v" 2lT\F;<ҋN 1e)]Q^4J~&<9dgaCsI>J9&*75(bd bP8"c-Hb=0i>G4QٍegIDv_AnYܓ`aߗS"ta"-2W3 $.>pQɅnɝPzX0( +y{EXP$wJb\wbAf&CIAKi/Yüw$ƒ)ψ!;s/%1VВH\#A8 ~.§UJ0K8&b.:'2{ocV`Cq, RMۃ/0ЃycRng~[ؤya"fɛ5'}}Bt7yKU%JIgG+3A>eܣGR˄QC/(͹ZYZU`i8cPDbZ=a >\)姗 U cbfd@ t\@#:U=G^|dեX3PEҖsMy5x4 2wlRH[ ^~n|0w`P4#Y‹k'fYQb(aJL%firuĉV>Vȸ9SE_uѣJZe"ofSX]@0.h|UEs-(*Ì#|IL0=f$G|ܺ)NT7HV˲Uݭ3Ej(#"@g]P-D&Y-_cm):ec~'1ғ>13ٰ)in7+*|,@xZUyn+J$p?Usj2-u$9ճ,l2;ǟ_A$Gјv,׊Tpǒ'ڈQ0,r_{ugQǘ[o_M[Y۽U9Dz}Jj4 rێ72aa1@V/ޱ%Ny/{!r.1z:'xzU5d֮]Z|AKryO, n[ 3%3wkt") ޡX9F/6]3jbQ`L9 u`>nd5]cP潔'4cE5rX@%oG9~ !i%q=+ @jYdF˯uZ5.<\{c釜QAѰ4݅xsep86lm#,j8¼D3CAɃBk+&H;Yfbؓ3̫R왝:uO&GgSeC)? ث%?$nu^M-h}!?l V](MۺECW ˼;2dJ̑DI|5if,1]$emM+[!+ Ԗ|ntYyd|b3͂|YҜ&*^~= %% (YcH4=[&3{?Ή1u^:P#=rx8 2+^&#Hq)ᇡޖ3\yRe]}꬀I+nWcp vTWJ]3',=:_ȩ- i l IG:j,Mj,/ ޾GB:|Pp;z?,GN?V=7B.yFP0xY84@q]z@eG@C"DxrKs"pZwaÍ 57çlK cj9cSǝ}ȂD, U@ W]0],nPfj{j+_&bW'[h{c,˺GC6&02Fc͕ؠ(kԒlwцB`%'vM4If_6\ddYG@Yg-ziljE Q3 ##(yyc{&2J? ZZ;1~ka8|Fq! _w)BoQz1KLT)g[9ko{D?y n#$84gpV*;p\" 0LR;4OC:V4:_ib*Odvy Ek AqjWrm6խⵖ"i#dz:HIM#/(QC*40ڿוXiB~zm00zA6?;ճ7_uxQi#p &џ36l#j}8huU,ԼEN#* DH@S7ž&;P >:Dģ\3 tlp1V DA)ikm *rAb/S}i`;Ehg%pJ.ܝɀ%;|A7?7$q:d㹇G`TL5µx!Iw,•G#MO*XSb|ax)M;? tJNNYin[:1= bP\$z '@H)xtHf{J$-)αdEYƎnXW/0A x-9ao].GZ 4KQ|5P 9scvא>#P-h{)njvcjZ )g^yaM# ~}JMI }h7,M\I&"iMW>Ѻh?R!oV~ёmu@ B';^,>=}+_bm-#>ĒPYu%(𲓛q7a+7CXf{ϡzᡑ]6$цIx6hO4L0{؊מ H7q? 8spMìD{/GцK¶SqU0C5Etzg|?i%f!EMǦ w->D?T* 2ܟZ5]2N#*d^N)ӷM_˪=p'-Oc]-ݰ* ҤGg?;,/toFǽs mf5 3:Xp\XK.0ai rz\q9W`.̹3 \UU5&.'ZAm@0%c̡2>uUoG> L8}Q@Տۼ!y6(0]qϳw0P kg>񌌆 JJd+u%7͹}*se$r~cwɴ< J6W"۰Q0Ad*3#͉eա$'k ᶬhxxB0[S`$c1,:ӕm+Yq鋃6ץ" M~LtԅѧȡLǥ27t**R-91_3f<ɕ+@T$vsF _JuG` NyĊ/#iZj<{og&juG0VTTgɭ~[\V D4򣥆944/u{r^6DcA ڃ0NmnpmD|Z5tn(GG伾}½6S2>"d-i=)[4(/ .SIM*4B(t9΋.C o ta>#x\MMx<+Uy ~F&x귻iϙt>uRDIA1ԷPC'yPx܊\Fn(`H̴qƟWib;͢a>zAjS0R:'DרD xB5.~Lř%l]xt|:OcX]i=jbG5]9<I+J@xt1OG'/,f*ew "eic[ nR8i0;t&:֙`aRŔHrEL Lգ%$k̈Ř>b,?L0X ӸʗǝGec)AQ ƒ.Qp)W.2&lM:'|23E̞Եes"# AY"ɚE\Ӯ٪ANگآٵ0JrNN8XeFCD^"FfHrx0nVQbf&dH\E氈E)sp{17;oR#2gԈ7vl d iON/#_5»vOE4;- :!j &gI"-v0xGa{gdkt-XFBdpV+הT,? fP#-AN\pakz}C"%)Gk:M WITsc6[<7>ƌ,_P!iM~@9 /G b]xAkafݽtj p&h 3w1dnbOޅOvӞ %/p,yκ?HTJЬXg9H,nmj٬qvb_4kfa|*ˤ NR`^RoAfy F^bi3s6֯ [?퐗VE *em0&Es8$tc:i&5 wQr%*u* OM_'obMp%'a!\e~ 0&tz/l{lg/n{P4'ϩ `0<׉k 5ʮG2j&G825~UK )e=ǦZ  ].cMzhbb\.L-sz2M:)H_93GJ@`b9`?>+ͽt#3 Qu:1dē3/ŃٵUVOZ<ԧ7,HohBǰ$;[éo>f_)X"ޚw5 @Y] + 1ͶaułCAo XW2|6Ňg?U"\6C$27w 9Q L/B)o(j R!҃s1}>=T؜Ҭ9kyjpkMv?X}Anwc]EGߝf %̷3m.cyrl@_ CXҸ=n)EQm /OY8qzG{+Н\[-F7(CJ\Z=f)2:$:^BA+e&[x>CrBX8, 2K/ҩNqU\-ZjkI<:,9Qe>UH1lUv ^3]G)ユ ?7 -}G+@R/Eg_g|[B\Y<U;U-Mn|&DͤA ɜ3*+2V}aMXl=NIf.C. $4 asfl7wZuB'Y9\8%RJM=AfVM41t^98@0F$B.ʚwͭf |7l(rѸ{Qpt6ۃ!yUiߣ25mꃞ= qMP 9Ke˲_=:3:drP4hhNCüt!񾐄8EDxrP ")qO6 ?'=M,3*`+7[VM*tqjnfP)da9s ky6g)Qd w~(P*Ky&w1i>SAW除速 ?Vy䁀GlIfYUNiUBkAq'C/f`{+h?<i2(W(Ōmƨjp?>@[("QD^#k|r)kϸdc<gZz \X? I*aX/ʫYNQ*DW-ߒuN ZV-i0Bú5\ d y%rxc5D7[\jW{4yttno3?eE+G"G fAH KюǩtTW  @TQq FeiҾA^pQ!W+a*2G;.Ft+I_.Qj.dÚAfW0j7T|"*kN ?WLğ|[.% \`][aXN%w0}RSˈFFo) rouu~PmF#:wm' ^̶(]6"s]E jN+2K@aS 4Ʊ!\.3y"~l:T`ï2NOTMK&6spI6x,*LY3u#2XFt;q\}r%!boA:zKC[`T9a;hNxLzmR@ ~}aZmGJg$/ekw,?2hGO"0&GW=7 '6(`MITL Hw,Aȳ@P?OόF/VMxx 1sS3[Aڤ8*RLH=.仉ݝ('nDmT Kœ !o#rȀ(7"Q|Ld;ň U:XUb=VڗXsuz1cGӳoLG(n z|OR"U E6OjF9 恽 ❬a\BëGZ)WUߡKiZGiKM(Ժ3*/3!\sàe$7vmD 鈳$N0Gmi k5V@ȅy_gP;H4uSp7N" $'m'(pTAX35&Oڢ*.K(. C3F4R"n!brB V  xj{Xe^@E*qHܚƹ<:1"qᚬ&F+CiZ21@RMH\=sO= oKzp̆Ȇ3lIDMIcڕv \/M&@ᖏ,!oSwa lyc3w@^6fnWs^c߄6 c%lf-q6>bFݑZϋflޓ]ôXL nCnͩ^'=؅hp7ז'6&t0zQЈ\6{VRD/58vPH+3RGH I#1z]T\]i8H,'{q\ʙ1qe5zYp.i:OA'2'PQ <Fɱs9l_&rj10&ɺ 1^t(T=Jd+C<4 Je/LePcYZ gGJ'I|J;LAh0i3i++AqWJ yNܫ;|7@!nyY )?#%lI:Զ0Iƭ t@T9~[CE>&gAv}/_L00MEkèf ^aܭ_6Rpw %"eΜe7b,PYT7{tn 0\b+2 DJLc3"g2?G•g/cC9t Ē_Z@h+28H)' ڻU5d؋gѭ@S?"Mc DÅ^oKykZt]?3=t{VT}s ԬKQFzKMթ)oNB#km+ 7XV*ߦJ fO 8r :< qtzcXF$[Ƈ,n-w @s$U #:Nc'=u9pB z;{T.{ɍԬb_5mnF|5eC1oWIqvf*a/ijEM߹)2>ސ*)z,]&jϖbJ ;׊يT*Iz&sBa1'g@S_2Vi>GhiQ[?Za&_ Qwȥn2;˺p0|^; =Km`%FTL'9h7y/J)PEZ(-++kԷy2.Yv|my {m!B B}Ƨ~.k\+Br/`Ksm۩X.?ݬUͻxZ3ӸBB), P{Y)oDޯ0Vfm_J=嵬P.-8rX^Zx m>kQ@R #FQJMDXsԔ%jZ4!Dr68%壍6 2:IˡQʂF;AYݥ4pxMK^lo`Mݥlo~"I`CcE\oC۫ t _8{z_?܉P\{L#.?e Ya$ r%ຍ n^ y~Eͺt.Z11Aj[M2&EpJ%HHx!dkuY2BւcԴqIը+\c: 37jM3 I(Q6(g>" S2p.% BCoV]؞ A 0baimSʑ;}$j, w(#ʛyun<0kd~ ٟ 5d0Э3.-*gzjœ+zI)df!jWz O(8e1IE Zw|G]_\ fL؋cv3Y |=)j[rtM.%=ʅX&9]K.>]ߩvabz9=ԛqwWc7m $$\ZO ; GD0 8S8&@!WJ^rt[X ZDt=0L3m0 ba}.a( [zVTq: >Ji$:ѤP`3S9HL|K1Ag&mt=:h(G8v3YB.CnX$DT Dɧ\{,9^=k*yn8Fҕ Q69`&kJ~H٢)vy_ VR  7y㆏CAל~+y+D6+ik1+v=5~J%HrZeTYɫ7͠(# 7;Jz<]#ݤHu\[]8kM+A1P MxVU!oBEɮCvÐ>mQR1MۼD6A<g&w}tV[KD>}c\`|Ɨ%5=PD K"C3d "@*IS|OErjX4ED3S=IO!ДքlDE\WSԀkT"[6^ηYA7-dǨ_W?zo;g#Zb_{`:lI+EtS ]E1% ӑl.z\tIf }&1dl;ǝ@+?C,/l4xm#>)(S>Z,m0_;i$xt X`Zk}ź N#`es|<ISF=W ːrquCQhw)I4![æJhu>w۽6DhVXǘI0^\mUl0ԅLtz+:8+ard4{[v_~2[~|Q4V? wJ \[Z gE~#lѺx_|5[ϋC4 *; XQj@ݴM?I ΝE2ๆv]H n|9HN2!T0XaW&Qe8Yi$a-`B_?q>UP_:P_) ~f˱kkSGQ l),Q9-8_5aV'4&t?M_ 9⺨R;HF}u_MLYDoiQѱ#3#y/`f_3m>LN-#M/a%2߻}#E mH;z=اT_Ry $!#I*c dP;}B1gNl6` Τ}^ВTwL\h3ByջSd$^^@o`d)5 EUE%01IPe7tF!~|UnJ o0K!sY8)~߁Sv>z /inqPS2V6Nۼ(JپK+lms0_=i/-Jp~YiY,!β$`K};=l[0n10p^rʤjgs裃)y}as9JܾycN^/6RM7egLj>~r88cxp 굞w8J9a| Hn4K"{H:'meok;ZpO9 RNTe&QY6շ +T})>?Jٵ(j!S1s+Nwpf^H~s,^V*[0|%{3Ae|Y46Y/8Xcmfh2i+6fQSqfF(n( $ CTb z,G;0ug>|YL~ uVvsaG,N7.r,ݜ\3?G"an)Ӓ%/e>>Pg>Bd7+ ,Ջ{>f&f.FO">hC/ 5#EǶ~@RBzT_^#Ҕ, уr+R^2aF8m@${6=%&2ՋjmJ''4m[PEmx#' ,r^ndKȒ)\&bPRW$w"XV!j2 3J?v77i𯘽pN]mIm5;i.Al PcQHڢ$m..0*^|q2QWՠ^2yc~Vq /GcF{Ms`Zea{qt`M~J+^r7֦&6Gls22Èb=a3v(|ZKU4C/v6B6|C Q4FVB2 ڟ4==¯Q `4(Gs('|ciTWzԒ@~Jv|9Xrڼ!v*٦u&T#^|6ua2,)1T.}G7jLr*4:;×V&UW-jsombY-LL~hUz->$O;B5#+5Ըx4gK`yi8e;idѤUr(,^j䁅E=҅\)%|R38fž?v˖ MfmPxdc$ꀿay_𨻙<6slh%-G|:}ri(4W:C@O*>cۉW G4JP4Gyt\W˰mpi/]QI 8E/n즥TL*9DhWi)X9Exhz9GF_b\?GofvD);WF _/VGme8>Vؠ )8Ǹ]jwl.ů,u>TޞDs{_7Duq/@-M@6#+.buS1;TL4 &TFڦ>/I n%(zwnkvTҴӛxl̒ 0Mc[ BU2b 9~Y5fi[MqJ]P?$XNl_V,(В"({Ǒ|wCdT~S᫝>\n/8aMMbe6 c|7L'-t0F|.y|*:*Uj뮏 |EžD]Wu}'ŔvlgKDL.\#&:ږz49SXH=E.7r]=GvľnLi9ƍ '6>vw(1%Y#҂X9+\аӐ8D9 LMz„&esFl H6bgY6dYuo'KΗrrCd4 vks4\QlXq!sV;:(# O&iqg1~Mjs׆X|J)YJ!N+@MV1<{)UE$lD侬>4Ң rf/Pxcbǩ+2xB_jAPyD)!p&IнSK%^wLnRu &~.%aa]ⷙX  ^z}Ux"$2dqyO΁[{\,Ma }oۜgI kN5h5Sv!ܔ_WIMBtpiKd-/HtW3YXG_oYƫa6%`l%pb9ݴA9@]iUaTl31-Tg80} 6Ayp2TyI}"#zdOWp/[p6q#$:ts<kDr-[KRu96pAz7W7c}\(:F-%As~cdtT. [w3tk9hRE_n?O3{.´w(rXhb4Z:!?G1!1:v~4m^hqwxsRr>~=?Y· o D|8]4?;f[$CX&0j-91g#Zv$j[hw2h` r;SI8q@$&u6#-Q LQTƒ&^uc|$wKNM9Mߐ]u6k6%PdZ57Q-U9(7X+ {^7F9 4#̞_.g@=w0D[Rj9$u ]ĽS|Jft^ ɠY%z*IZ@Uh|j4_Łܗj1Db6rO7 >YmSSݙ2QZuTЭ#jrlvzjlܪQ`CސI%5[겐>*kΔy^zG1/:6s*Za L:DtU̼oN`i~  ;W@De>y:FoӀà0/K6O>xaґ)E݆:2u@I߇9;K|UPOӮ`tyfo^l=ɚPpل<$h[+X0I`y7F7(NH1뢎Oc7w`uzJ_B6/S:șVw*vYTu.Md"(./&7E]Sk(YL.j' /d5CtK(nz M2Cf/#UٕU uG1p[x7FvGok[sWqt'!?{vY)[ʇ+Zdז^BujR!]&SO7^*d3VL;eOlum*D㋧J= [߂7SV NK,$O8mSlx- |&o`;&ϹC1YY8Ŋہ3~Hi84 _v/Z36J%m9<7mxV7YJ zaaV{66 }58 svHϤAR%sCJיb9 x 'daؐbxPҀFiChI;2x$Pqіߜ3[NUN㸼 C'5*=pUhmBU3@F0rBBO$_nSSR?;~LP+ƹ {li`kWcc{_, LӭЖRl ͅ2: MuGxM.~"zicƫ[A_ez NH5C,26?7]l*8q%**{I\#tmj;.Pcq֢kdžK˛vVl7"1D/(s-eEqBoYӛ js3RIԄ~Bc봱//~M::9}v<0DDxSˆUOy}SeKEo3آyY`б<'kAb$=Vtvg5e5(U àai?]d$5囃]/khڝ¬Q: ߌ,@Y @ . 5J7 C86R59#c<9hu7)qP\HSs).q bNopr%- -,j]~Gvs]״ }p2 JӚ"fS}=op tFHC2Nr8k]boC*"*C;L qe>I#A8p>?O"+gfwni9qT!Lh%}OkD1#;D: MlAl3Ӊ,$^uܛCpՁ9ژ(d>Ľ1_[7  H'K:Xճ-;(#c AR-=vU d c:_Od0/Qu[@B]&P |(hvR:g~LP_J4CqiB)R!sT{ܺnݔڧV US# ꄵ56CRql4MߢA=ev)\ach$ /hk/O꘧2 |w ,sYo\H޸6UPxd$$YhPBd]])լ&nJv.Ɔ`IUdz:PkPÌdJ `&H$KxGa}mU]4ݜw>QĐ|f]9ɏ$5>eS1I7Pj'䩃xmfOi c+^xdRtKfٸi-_Z=ʖQ8I!(}j>'|{ 2"/XFYrII*C4 WXޔZx֔.w>0ЦWFWDzY}E>_S׀TX(̻]lj._@?`Khؓ?/[('rґZ'E!|]+)[]!kdq$QV+,έcx3zt jT!1k,sv}HZ9,QExH߹Ecql_6YL^RyMxǦ Q]HH  E&L:Yi}ѩ]\Lғ7Zn.°kP ';w4Xs[so&Gqu*I;"&WCAkQVD C $S).[}iHOƢd`3r[L5&q;ҏT1jNFaZl Ip( T/\['|*AvR&1¢ZLVNB0[rrLx?_)BI.iei) Amն{_ͨy1R=L J~!6c3\}nĐo)ŶY zj"ÿ: &FZ׆Y$,tU}z7ΦϘ[jJ>uox7\aBiɖOgYmltȹoJa%zF^V/VTnwCt -^Z+,E'1C0h ϣA{kG :Ujz˜^(>4Ľjk*Xiz; !Y"Ov: 탒D*neO/mXջ ȭdr mJ'M|=0U[i 9͓*Mq ^Bv)6oHtMjr_Ef#pY`|z[EV`+ߤ;M{X 9Sn"6yU`SVpO?~ nSqFK=;#_ 5~rD5cNWHwSyCĮgmN zˉ s,?.VPq$ E5;Gk@#%m,10 :yTDoQ*&yx~޸oc2\}TӪ%/HpcI 3tCij]n늺hንE`1} 5ZHb ?_WƗCEV7Ë)ФLd(eFo: fD â#ܳ֓O' /8QɊ~v.Iw8[*+TWrhꑋ3^P`hͣ,BNIhJ=mLȗ[z̩̿ȃyyx/)d֤_KỦצmumDLxG~ !XkPt2^s"99Q+@ cnItssT/5R Y <}c<\<^`_Nx"7rHOי{w&%"iDRQFFC-hUp foMNA]|cgpgJ`'-J53àjm ]~q&Ux9TÚ5&u֠5{ Rt7fQeQU-g~2/cr([s򀮕ix}L!a'\KwfODvnr3EDz V*un:bЬ)}"e78_x;&K+6ިNzNj@P%nR̉%ͯ(&}ZRHiSW5Z_t;;z9EY1v!+!!BwcP,9/⩗ziۻ' <2[]-D۶>4-j}{Gr9Áڛ.$P5pV_7Mܦnl0&己N8*B{јǥ~4~3BwG<bLs {]p/?cZ:(X)\_B4^=mA7O4ʔ1y Sh*^}Dʳ8^*+Jzso.'q,"Z#x ) J[P =#y\f ;e݉=ZGfUVgPlIU.9qTsy\n3671o`@|d_?/[Ptkr|z5E#omI '!riʬWO,1sacol%dC -=z&k#=AV^MϪr͞H~w=G<,LzJ= ʻy ZY>ndC}vd_V ^Ck`,O^2kXBgG4ԃ(U ђ85,JzxԜ#<A>pjNћb&H7.0\ sDod;5!l⸐a]2$ t+Bbۀmd(/]$hxG'I߭@OxK }Hwעg &.|ٸÅhnR7)to8ܱ5@pԟXdՠb$D| X2dL,$4=.z/kV~&(3%WͪjZnE -'Vc<jo!U1n 9i",{D;>ay[Stl-ZDX,D2L6;tL5-%X}Mų}EUg<2XaR$_{A1K³!27\ 6:/ҥe%K,*&(l^ǞͲhd"Ie|eL.ww0_BU:B;akБ6UK/3syQ*ԫ0>Tpٵ VYpSGʦC|meVTE KL 0gBuVrw.R=;D*?V fb((Zh)-F5p'nHu+F7 SkSA3=@V6xnNzNۡѸc߲wm#Gzx+qF\)W(qRƧ vA yv-'|/>-Q^&Akjs0k1?ͷ1JѦZeM'|c|D׷tziOs3)daґہfq (} L+n' wM_)7Zn {#e5xo8;Vv(Z^ܶqy(~.= S*zI Xdk[C)Ss"Ble9^A,lbB} M|ޫ.ԃ%nHV HJ[>y:I'7PIAo9&2:jJ@М]R25W9epQ(izo0L+Knպd/"tJIROLQ%cYzt6+ j3ߪvk$ODtW4밆(t;բ,s&G-@ R%8 Q}U[%r=w6C|I-W;_@".|+`n5Ⱥ+s̑r+E^?nȿo54As$WҎ_ʽr:99 kYeјkFw?Jล#b6d./\w5n Vא+M2T{YS9v?ZJtMW}-?]Z96.~|F2/Zw8j:Tr 2 #1C:,<@Cq{-;y!J\%;"_hadBg4 jM\nG^C?BtJ©^$3LZ~(wR"`,auIqr n؂ 4nFVml2=>_AJsa#CvT}I46|) RNCAWe=}^qmFң-꣆[uqA`*F!P*XdL8EUq$04tK$ ۋdRĽ $4TԲi𢕷/ 6NM YKYhN7xA $.HMAKOȗBJ\dhk$BdSvH?< q))X/x%TT |E\/hUS=63\-Oy m9K>jASkkY65"ɛd^BzSlb݄ qoTKCC,)%D٣ESY'Ii.KEΒ kxε&|>p2?#pT,J[MC@,'@(CNxEn)(TTRY=Cn,3Gø p믵଻UӼʔiwj# Pyq]Hu^^to}srnekXW[2Ϭ YYj+h>- JVoWzm.Ob$(r> :j Z5RdJW\Q,0>&*6B8dIpw~i=]j  yG3y9 F{ʇY\CnODbP=!Gnԍ/lɥ5L=dIM 41qq779+4:@: JǺ!*"yr!y E{Tq@\yM&(jr١`݀FwCb@SF x3wSڶP J]}8B*IǬj$5Y%7&HW 8\.nA@\~SKvM.Y7fnO U0ɺN2]mo?Ьȑ׉`ފ"NVH;*{;]ݣNx,;5?uvzsF:/3\yС~^<^2€`Pb"k*``Rb*%. ~d:yt4n7f9٥#(aߨ +7w?> zf:1cAA)O;ZۚA@) M<ӆ{ZGJkj0GI|I`hAW`Zq^5ХsT\ra^CωDvXg :y5 ," 67&Hc97w҄+\:Ilⷖ/AuuSXkeo7h_pF,t9ћ9$. M40[G!CUb8Ѧ&f:=MZUi9,I)qFkۚ|$9}%3,ቴE}Ֆs6n#\̿ Zg-{F E w  Cqߴ™}ǚ^vT 6C G[KcPc"Ru.|}t~(-Jrf"Xg2;ᣦuɌqbYtUxbnX.9.#̀beJ8xKPY_PU|FY P󓅖99̃-^N-inQS=b=*^i-THےQ^sG]]<"B߯}S.Zޖ/nJ~֞VS.+=DLbNeUTS -awZ@n_`RFA0VɐlwuK0jIJhhe͌} Ʈi)vQgavmc?[>;qX&iȐ I1-cq#_C:8x^IZt@aH׹q rsq|H0>i++aNKp-38L{8_eͧ\њ<,phͽ#!vN.aI.0]_>*^iITr6rē4.?gK2%Öq hRf|ޅt>t&`*:/I 2#;KHqZWkS'cMkO0T,!(~}4-6تYe͐LUw5[ @U}TҀ]~h`G,?u]q;P@eUG$1@<ǥ-hJd_>[Br0Dn|¼e#(ls~:S ic:TQ8Vt69YC (#vo]+١"e/8 C(qِxծ|s#NB9)1E{齾93xaZز;R9|2z6):E__s®hmݛĶȄk`-@S%]ʈݟDT?.f=;>zd+_H-s@,uIuRdib5P/?uWRG#:|ȧa+ętR m1 OpYF0޻hN,c+^ 65va_)fܖ!FQ_:%⵱|e]2+Ln%?aIYg_7˭g(뽷"oSVI,I*S3;o`{Peɞ7[4ƛDaN7$?ט ­1Ҥpp'0OFkojO}fYM(/'w!d>`/v`|XԍX!O[vlmXi-SqG0-^-_R5.Kj):^ee%*#[ "]i"ɖM'zψT2g6?zaI=^JC"mb+1%Б'z7ʞK;rZ2G.x{@>qk{bIhj>lQIURvRm;yA>`.ڊk3q5Wm4*kX3J[/-}]J;Zu V wN/hƑNoUo۰+2o,u/(l$(λVdΥƧIB%!, Y_M/]Z V(O[` B,Tig"̀x̧:OJ*DȞT 返/2x|aL@r-}4`ax"uǐ"ĺ:IvnP%D1^>Yu̢í|REf\UR կ<^?~|!%8tara^aS`{U/"knS9/GmO?6Ql| pЀ(Ցy_z.=>8DaKPuPluesD\&eFd2H6,`}֓P%P$#7&od}[9bX$ ɛ |A7(-y7庰 ڸ'T̙A ̑K,qlV6JfO8(`o K[?i3*p~c?pf]հWgʬ|']r}b1mrNc?~3 ~ݥj }B%lQtƸ34s}G|-wK,5[0ܙdUF@y$~0 }X2#dK+&Qu!WAy|MUw.a`dgSKqХ_\<eew= :R+A3`!$870{5cCp}H6eŐSGDءӑF^RQYa w[t]a%Ξk6Eɗc`FUG4>, P"\9T!Rqx2Z!bPq]:h#syHB&{?.IoDT.Czl;z2~_x*diD-_;@7/!7ͼdSޟ*G4}9aD 콩@6`!;vwaг#)5U Rk] Vgbtqjee5Y0v "f9PQd<1zEF"emzm 7Og?eqa$&:'Mg$Gn`AMjMP8%-M`z?7~(dn,,hƁy^@ + < nO< L6EL-_[#.P!kӃ{LLҒKS!LClzT<61#="xYgҀ34HζO =8tپq6<1̯8?o ę04ҿM_Y3s VJ!,b6}N:߀j/[7+rFWv{ZY}ѼJ{E"|i1/^|m <(JHڄmK??^IJվ#zp?4U8m*0mH[M_ Dޑ=F4} BmZX&z~BRXmAʆ9 l䏐v#!7ҲYEijFm/,6R\#vFY[b`ح2*JGHP}HuhVIofGfZo{Nn,_ҽ!B &zaJ}»y)$VVB4! Њɦ1-Tӽѯ T~-`:ZUn-::cDY|Bc VSV q@g%(BP33#qnmQ;Z1J]`d|kھZ.~#Kn,}\Y?#W_)%;{Wn*޾22.}}k\I訃L/ߐ߳jGZQZ'(Yו=Cpk}?w0H_\EA*/HF=w@Õ T݀qᮩe*;X.sDi t76jĤΉk Σ#<S=.9vlFV;9-P,̵E&)g}<"Fg.'U؏ËnVÎbhc`Oa %+ 5&պk%׳:YڮrA@;(z!TЈ2`ag=) F"vs( ;1t`GrB9|kL܂l:QL^>r?1NXܬp錅٦볊Z ,T9ښh1KDT<\P}0t9|q\Vs"U4ky;|KFg͛7}9C¢ɟbq_7%4dv, )x#fů6AEσ&z.|o5**Q=w cň gjK;xA #޴gTԽʤZeSq#Pb܁Iv4(%4eʠ"7 _= Y2R]:Q̦!gxq߫,HYz&"&3쁛C)r[1z2n,, KF|dp-^7=cfXfIn$M4 !veb|[)ۼ<˚ U7:qy9^MsCk7/ .gcgҜڙk*x ~y˵3ym„ _9/[K_݈̂ U@~{D'` ~A:|PKt4 Dc4V&HP%G,4 aۧYy+f}|%_è~VVʵr("ڈF@ W%زoɳCc#}kM=<2 -eiWG)'|y%"N{5$]1j"sY '@]7a̹ +/je []u#X1шp^7 KXSpZdb.Ya.mDxC "WhumݢsM~ ('n|~k?e9֋WggX9@2PHf=6=MLP@ϷL'`]DP ])/K%ƥnvU9}3Rdݲm`pr{eC&nmPMyڭ+Z1jzS⍑zἮ_An.="/p+8+Nq 3| p `AN2שJBDMrЖ(y}esKC1,\oWB{ibˠ'[WMÍ)3|͔_tQZ9nGWJŌ4? =ഠ2kΟ 6Np}Fk%3K .w9E*{'LM{"sX"*YJ-Ί2\ ٪PNvX|pR"? -:Y_"Q |B,СN'9ѓd*c:*RFWg|X~=7^b?`7ys\_K]\ 6Z#2,n|Oy?^ˇv(Gju61a23*;4w#FΥ7 !U"bD.ߣeTsOM89+*v`NF6_|'є`1CG4wgN~ ǵW*.fqglCPZAggy2Xu1Ͷ͋ i>佇p,Ϲ^øh\} i_WwLo_s17DsHl!sY‹3XnqҦKy+Zһh=xI &>GpwC-#)EDvZ켉c`d͈ r6ڴqGg/VذUIc>[ؔgBI2(uaZ.s!k@*.M ; |/~tݸzkp\ o~EENЄ&UbǕ1S(WN3oI9-ed0͑CiװX8!E*"4FHb> s4r4,,ň|sr!!ݟHo HF@Jc8ě?Dc'4GOx#:L)#3)2qb݆y~;. 駓v)#2$;&_ԆY~oqbnBrZ&SF5Q/khT+gt٠#|{Q4A2]ӪtgPK>,w35qk42[=H\ilR#h5͆枇Mf7#S.CFF!m!^r qdWћ= m9d$4j ]$z`."Ah@h $d@o-Ӷ4HYJ' 0 16.7t%?>dx{<є E'a=L- Pr WG!n"<:nnbUn>q_s p9Uv' z\0{q_T7潃o>?fG\)}pTW;";scƩ TKfvo Nz.^Huį/˓jmM_ÃTkߚ{sAOuݪut]7&t&J&6M s>Md \D<;uXe{!O$)C)w;I}уlc ;WzB8)(U`o_{js Mfs}}ER <J7Tb4>QчT~Kf|χ+j㽱xZ=z'5sId $MLF>VJ!"溉 ZdxFH89$.J{HI遾҆f(b:F-=K3Knѓ{#[C8BgPƅzTE: 5 P.fd)S) }NVmu%RK\!NK(FxiAJ"DeSLOa qR;1K5(@. "dټ=tJ& ̤200u{P/9Gg4sӆ[,4- w[?1b,E_ԡ4v!o .R{tE!m1DPMW5&wM@}HtϺOC%oB\~o7uLkR&//w̄]z;K_A0/;I`vNj=N@f@/r6d[AZ^g}&02<|y2˿Y)4 Fߘ|pbW3 b_|(gY["[ij t3 ~]m &goT؈2_J_V\N2 3~*0GT R[cR7~s:3X sc܊8Lb=RR![c@W-ͪeZTIq);WTL2q5P6rQaV8z) Y#ホQ3z#=}ڧ{4NmMhM٭g’,_tY[ڈ~WLLBE?)MkfFWI*{jND0f+j`ۯI -<3ِ(*dc4C0<Cv?RMr 6Eޕ )9c$ۣ(❔0]@p_xnί/XPjR۾0ޟ>eOt9ǧl++?ަ[8͎ VP-оZNvEZ ,@9I;9B,q:W W+Qm#zihħ} 68xXk|(t fZ&Ȅac폯N{}~V>gC-`'u[VAʔd{j|AH&]"c;w= $z{-MYb f?s {`_+REC0j:;΍=9~ϋ]>Sכ&;]Ǝt5wD(k86 #&6{PuèTmS}ߣt1 5O+@'4-1wj6KMKGoN˛YB lMtco^v^# Y~ ^5^Wuy{@ˉ$%W4ش]mI o,w2, :rS*5{#<}wn痘bj"u.`>i^̴M]zQf>y1ڏ}})VjmS>)!7M瓲g;lo!шv9ŧoڨGB&o;3&^PW~z7ިX$/nYZD E:xpt~n3N ?\Mہx(Zd€0d. &!R޽/ա[|I t~` ^c7̽VsIB2b8gc wAYpD=x7Lh'җd=_T]u_QMX5v+x@8䢌yؤ7䔁ahDN4*&"k~K_B8fK vF Nv8qth]D:gNa 7oc¹lNJ Ӊf7]BfVAA&'><%pjcjnI*˨mje\8uA -f\rأKzʉ#{C3/\cTP2iwp[ߧIM =XJ+ѝ9 '>n[ɪ9kQIT&5~eydzol ^L?'PMc MB<"‰Pl#eq+vy{ALӗ2.% /|l^} {]T [9# v"5|J jpya>2*o=xIłHB06?+/ Yq<!C=}ײrdQ/Ibon.l)|'=TW,:>%h&,c[ޘ¯ aFLYlm证١E^@RN|srϦPp^( @¶aL(ʭzt6@{FKU7a8t>QC #!@sR@}; X pb?Z)!΅<~b~yNaXWCd2y<'aEg3iѿƢ{YK+,gs~qC̙Xnԥ*Jm9B*Q q;fތx*<5qE-Os w7drXibm1ld_yڏf`k\~78 /.ILG*fy?p8d}׃4/DmHԙEbW0Mߦ-bS %C!w'/?q#6I 9BV9{"Vl1(lnkv?Rf}7zyW촫b2LPXO].̧dJbDe^k GKu[zj M ڱl7l4K yt}l[N{Z/{v `^డS5oC](A@j8_8tL֖C$Nrh9YGN"n[BFfW1quzY>[UKۀx؏ulbB7n2^ٕGlB, _Ҷ (:%q:cD|8[4|"2=!`N]6F yDXZw5A$(П=uoY!CTYV<Q,yRsVc5KX\"!yd&|8;eL8/`D]mƸ&"_ yTt߿ G;' e,7B:aB>HC4yG򅰀9YVr4}ڒwו:FG/ KRl$.Qx6xyzdFkQ* FgD rĠǎ2_D &'~m>Y7bk/Ͱwˆnb `( 9QB>9d3ȼ$ܖE`oTe|Wͅ]ىE2[ ^jOʭuS4ɕ754qs)U*r#\Cm7FѼy'F֖pk i"X{Ι(c4!4ܝrњ0@,ʑ-ogF3a{`3ˍr%IGfjJј:0, 7oBEKr_m ׇGrgPCF 2X;">Zo)I7DYx=z|ǵxSaW[s/ZN+Pޭ 䏸}T#wR]%$dA 5[)]}NT0{j &7)g{) 3Um.Në3\M&]v6H7rVq#+{T UC:H_mIX*{^mf'JGhw)4 F j+Wӗ]mY۔}W~ďDʮnXo[>".E)6n= KexTǹ 9"t(E~鍵zʭ-@iiPnN~zcNqE$;X 3(E#.?Z5>odג@q yKPu+ll'zd{ ΅`@l՝)"Ixu(|$x$ߵ3tC3v'P9tQ%3ٟU%K4䆘o]qjPܷƄ~W DTf}NWi%HAKh jY?ܗGܑodŒV2q&jRcyАyPRbovartt-[F#MdtQ*vm0}ۤᯇn>S_O``ƕ= !O5g\_4zGV(U~(A|Z&iE+,Y!a"jFy“$ J} Fe-6#QzõCCֺ햁3Qd=#%*LCFãn"<[ikkFTOd,*7Ys$f䬠/.^ :ih%i ˒Y;]\DTE!"G->h$@$d$sˢ|? A3ּΑ2Y)VAI^g_oQB̐ mZrlBQ-*8{`&|2p#0 .)+jG5L D._} OTG`] Ԋ j|g 00o|B rJƝM;ĕ^C@r(9V)5[%LEND'4ڢtyRc37_cĄ)3>R\}TȒԒbw!N[A`=32UEf-  )зH%C'ʚ~ReoGStTbE!!`V'0f^q^3U %?O&9K,;O16Ղ#{oj:I:5䧝?[ ɓ6:1wZEk>NA2>AV9|ZLR噧}ӓITFhc016JJ^>w'*I ;ƫ u"ֈ0tSpUD p Ҡ3\aت}zY$ FnDiē2=qѻ_ᾇ2Z// jXGM=L&Y͆xqsơN+ eNz`@my;mʭ5'y9GMGFY1J'z@n"EUnVkQ[_HMgj'<33u0 _vsf1&G*\0ŠjK7<0zODէnUsNB̛E/2Tx=>$Oj*[tn4nL:аS.9 yܑ#,A8TvE*އy 3J#uԊsHLh"Pp$ҸprHa 94Ӌ>" PZRiF݁guQEZ c7E.]'N)o>*o%g-CVXF2Ͷ6,RbVgGt#arp_ &ߴiiCEg4=*M9d "|cdzo@R҅\fzO'g瀂ݥtA1PB/Fz:aô;u m VAqݒE7emViMze f1G> ;ƌdq5cxޜ @/AzV#y*Cw^KGT 4l2N]0uA-@ @TBwߍ7e~JQH]̔:`AaYeQ$ '^(Jzh Ýv?"h@h̳0?EbH%}˺jG$9.}k޳Bi ޙH@N{0UY'WR~ڞK)(tmmGhu^c(,ãmanЙ2'k4V!\!ob8 3>tJ~WJw>C>߭\xOr6x'ʗ[Q0SK7g+li=3FdCH,bbX ˱?;w:{[ xadSS5tat0;%7qX"q3"u;jp)Y3n9@CwcC l<@x p{nCLhGAݾfsSZv»SxNMe >YrY+[7VPٳ21,Yg1W4Zw8}l!+ 璠 @[2ZS[kә!M!dChp39RZҗzr 6#uk]-<,%9k!>~n!`w]_4uPXN*7)l \g ,C3Lj~ZE m!( $P%%D_:Na+/Cc㗟Kg1g7N_Mrc Z>2@P#ef@.}8ViКޅu|G$y&ֹ,5 k"x ;طG0pwEZg& yg⻎/Χmon_\ yA)gQ= 9#~ۃMc%0tGa,!Ai5F? ECC~ ^xOBDW»T2wסgYb-]JAlMo^ IgtC2>#!l3v(lmҒaD쯅xMu2FMb&%VRX]238g ag%|Ĺ,O'cICNl_@p5Xmz.~+ |a &-Iw˙({^QyBގ WQ>??HsblnV)a0fh]v{My[4uRmnN Z# 2Y/۪qtz_e1K'(p^ņ@kfnlbSHo@N\oӑ=Ŀ8+SM=:C2Rko/0QjӠ=vPЇLkؕt>q/Pk bohK;z?P6\N䥺)K2q_ A?PќɆ;n4K8K7\[$¯l72nTʃr5JnV!7Gv~!j^04|ąuhv@Y5^ #楦^ɢ5>6N/8,U\ 㨛§ǃ5YOu8deP/p`0ő;4 p-E #jщjפ\܄qaC)fn@Y(3Vt\j-rz&$t4}ǎMQXSl}R3ʊ1sJ\Fe7gL ڠYX_e3ſČPyi fA]L&=ś1N p_풮F o >7m/џT ލ4ػ!><~M /HT]r42{4gzR!l+~L P>;xZhF $F./4!] s{|[.iKWu;P=]r&YN&9n 7~۶v!lAXYjCۺh/'ɋ\4@[(@I` 7gP h#K}v- 5qV?.f1.`R^BxF(,JVN@tq g<>jcAV0)RĆ:оBIJ [|YinfLPr\΃G a#^?8ƲosgT3N¿6iڰ#dQv=4GJ9<7P\X&4tx|'S|\%#L(v'h/&7n^ʅpx2>%&վg0k,wSW?wԍ"^fcglzA8nH T+ڊONţ5u;h&^]<#O&\&Iͷ@}<}S'.JW62VS=ıth(W[Bկp-a*?fn Px=rSH?qƱB~U.V \Xy @:Dۦfw%;\J'kKru eB@m@po<ͧ\DZTUقӠ((ĊV#dܱ<pD al4փZVzAE ̠X 0ު{*6MBgUL+]yjtRVYBU}9t7ӟf' rPY±7pѯiߴܪ APrO|88C7Yq?qȫJv ՞Lbw3dJQH k[ Xō)i_֙Q02!핯Ba e9ZR-%U߉`ma͢VvTP8Fni$W>KLl]ƷCR/t 34j]X7\xyOO#1Sf[)ph*>229mg0NZQ[n)S^:c*#$b Gk} {p}Ug%{<Up4?-Z1Ex6 ǵlB/geX.ܕ(N}uӿ'*aӿ%X>h+,y'VҳMRt/pnyЋTi!{LcSq.8ez0~H_qji l#v^Ӛk޼CC:˖ROQ }Z<F/ &d9#'%,иLmGRXJ6McT=*QG=:*擒t)g2quPXruM4S5|  ;~>S\kJs%\y/k\?J$ p7Y5⬥wyj9KQ1`67یltq0Gܟx40*HiЄNr$^oO9op`1(mO*mg^[Ų$E0,O'aM fEr'ihpz?}bV q*efDy"܎ۃurkJ4aI0rJj { yjX*0[GV0.r4FXNF;L!u~Tn3yw`漡y 0[`8m(D(p}>s4?*HiHRGf;X*d=\ص%mZ`9zaďoʻuRbLR`-)7]G2rwqḬUs}c4ыŚՕJ:<͵u5<_b [SL}q|@J+w3BGf0=^!*눳Σ8;.P+;p%SZ F݆`T $3 ]4:*Pƺj^^T&e&%HBe<, 엤>ExOLjuX PQB-V,׉tߵ6NsbluĬŇ9C~Ա+ua|1M.Ό"/ha@׭cE{Y.Naʍ[vZ T*L[ވoCg\diH!`3v\R[`[=5r&HW( xuGO[Ní)濐Mn1 NY=R:QMfN dwRdnYsqnB;nFgY!0rAnnѼuS'~oC_"UPA8`Nڞn觋F q\l]",`* YD^öf cLU+J0e( `*,VXAes(1cIyAA.^,C u_Ysl E[s*lx+wՆbW-mi7mX\-j !C\X&zu`J 2ݴgS ~Q>EfDZ 96 _~xϡ3mAeWW )ϋ1FYG"l3@n_kCA j8a:(eU͙4MǞ3кm?vQ)T<ŃwQާSEh\bh7c9۽GW[(n L<][R9fs1oH3\[ְiAk@ UBU%7PԠyɺQs9B.o>i䒊22Q P5qhڛxm V¦b$*FxP .:4_tW7rE-kg_:x @9O#v['@i5=9x+OH!h#,J4OA]M?&diqkA`zɳ ]>AGMrzNs>A-񀉠b2loeybL]% 9XHe5Ͻa"aIR.1zNv!7=)C@Lެk \%$έJ|iJdVբM뚳b w^=pQ^8ZT4elRvyq <'pvQވyJb'ērހJhPd?Gw)wDb]#/![Yjtjh$>1ƞ㴡(}&t(P]c׃vV$H,_uz7yaxwr㌐+5RX[We<ҩ0myWH>)ܔQA<pR'pF_ۜ"4 _bV iuٜR/=ﶫQ㨄Rp]t7YG7(M@*!eVF,] konL-F02F5:nRsRXQ@TcnK˔=wcKG _s4 .S1+Tנ^'hq>??x ^35J01!`q,mp*\SCB>@mŒaoj݌NQoWIFر(g}~8$Nz[*Y7̚[ҔHAI3 fw޲};83]p(X﫾6OIUR\S#IR'Y%!ֶ3}Hf)&&Y 8bTOpkuJ+l1uI.8#K(j5Zן & ~Nj\@P`Ab?A'x4Vnr4漠 a>5Zub'%QMg\/l'f)c3"ŋsF4QkW)q1ѿmDop!PWք"^kbިP`:T儚P.aޛfӿV##'xZ~ rU֧Fh@A0 @3j$L@Yݸlxd23}l7le/3 quGHNz/ =+5߬5q>ԕ\hy-оQX4vmN'DLB#\\}ٳsY \py0xpw移1H4O'޼| M,yzk[ *Y0Cɉ eL6KqU#dWwks^l}*jоć'10wfy9$ODvE/ifJ9@05a | '@OroWusKRC,o<֗yjU0ZI*R2ۣ-ڐ.t#)o6 (fys@pH\Iy୶-Zn 1M_;.^!m Nkl.8p6)d% X{ycXH\?i(l1ꍥJ1(.NƸ,4STn(TPu!Ʌ, v>ڧ*kp*nLkQ_ ,wO WgW\Z ul=TaCI[던N15 ʗv|Fc%s7۽KǎFѢM|oaFMG(3):ϋ8BWю9lW#D]> 3K?x]48 vB =Hx|0;..*0'Qߊ6t*]ȕQ̳? (U Y*hD{}P2տ=YX:guK]/l|OZ`]S|V^o9;yBě{{ޔ?Epby&kص`5}s9_6CoO cHp:qřTLf&$LFv!гUkƧv,gQQ\T@F2oI9~^O臔̂&L/7s`-Xi3RpmlHy)moeйgۋ ޮ|>OLtqPꄢ*5YT} TY*?t>FX+4U_'s yN,[[.7`a ގn&LլI.goZLupzD!4\yT&(Ij$p3Z`{$;EbBo'"ūA3g7[@@q#H̒Qs1ȘEN3er8€LLo LJM]xxq/CƗkl AK`TL|P=|ºQMY`nT̤)䍦sOxV*r4vDTKA4 dv@t"`ŜȖo1.sD\JDQ>}\ssE0ϗH6iXJ`HVlXf }>B˰3uc<7WXe*֖48 `{w ~h./eT1`hVn&# )n-Sg0J3ҊǀO#E:x;:]^%j Aw*3@ȦɗsMxX[yb|i(:}[eU`;>LLѳ},e}>ٷkx{b.IܬJqQ: 6cMG GM H=Z2MA2gSϟFN~I󙶻+5 2oGh6^ʩa p.!ur|ys 4 ScF}yh1@ xUA` ̽Iej0m`l̝ba4<:vO㽟t6vۍ3>s6nxKFbhUSi(V7 M6>?(Vk ¨9N""l~{Y-֔tJPh>c2O5\aSTa;ī_[x-.C_6Y@ g$kIjWݓs | T|Cq|*t=i_jm3tyZŞk6V=F6P8 @$6yO8HoMw?= #27ģ[ҏھc"V?џ}p^ca@eᓍQ E-Gdg׈d[ҋ[ (+u՟Wbq^T": `ȏ?8'+ԁmPj6W /vP),/uIK#l }:ߎd0D̝6_/6V+` !9q4QpUIjǐb*k.q; a& y9݉&רᓤgntA$K$KOMvR`5&HZ>ê>S)Џ!>)%e*9`;|wq0g3Jit-g'hL_1B9varW6Pd>y$/(5>tK[ *~M s!C4bx žwL~LPi_̶*< D9F}[?8Fe_ (>-|ǔa\ׅŵ(벶Rx-iƉpx|";ci3T&| gAbNz&uiT%z1.s2,BL%bQ< n\IBpnZ]Lw p%"li6қOnW)Hc}$tl#cԁxK7]S4aKJE9}M rr*AE~Ĕ~ NU\qꂗrZ -j3<Ѕ28^X-a`R п\x0 @^kG/ߨ&?|p/Үlh}`u""H܉ ~%Cz|y:`yOgt[ww'wp‘`+g TѶ.VϑjO:O+w-ȡEЋ*kiEEʼw?hk${f0իy?tavW7ӢsEɟa)\1} Ϲ K#n)cWyFfTPS)R]Pݩ3y׹j,0.`}D&TՒQ|iS_h4:!.Khq:D;Pz, \EHNQ:3\-DGABhtUO_IOcXQ˖6YκޣDIQEtv2̂6ӡY 8Z׿ bN2P/(+;x[m8PY$^רMdgsUlzFӣoT0ugvVG.fר4;9գqO؜IM:TQg O[OtJ Go-Eu[$euίQ,#;R6xi!}VL0VvY? DlX?u6[ uL/)唵`:\bBv}>C_4oqG]LޓV@/|0nh-1evU?]5I!nZd$fU+̑)8;ԻBL8<"y u )ŋ1@$lHL]'玩(VG[ %~2w t8ґ‚XnHc4?a[ca6ib򈖬OB<;lo5n&W__FYRSM&xʚakَM$mɉr8<8CW+TWuc rHY M ݞ+--K97U<7W6*lX>2fERz"926m8jWIXaYveA$ͥ$Vjr^f`8jȣpL ʿ?%2K$n} '%J[~j#Pū.^nQ, IkN7]B2^k񵟂pg Xuqm@pVGELenfpkŎL=1a I!@` Mnr#'$ !H -j7Z3o +;D v+]_|;[j"܈AKbhooӎr[۰PUnZ'?g`)QsUQO,}P/SYU[-q5n 55C6=`GWhYm{zg \]]3Egd/4"xfʏ }g(7Suq_zR#>C1y#9w&,֫_ITi$x hn8ܸiD ;ϨjV-bHPs a*>z+yv [) `WT.īT'>RL ARy+PMH.U_b5": oyKŒw.$>]>PXX6NS.eԷIUUdM.ez׸ WoF hA"[Iz2V1 6sB%FK~FžFDIn Xzu[h[QuNs]^u:$Òv:EfuܦmL88_1 `u<+yz!=F[ÍWL$Oɗ_.jKp\LH@DǼBP؍#oJl(]?\ HOer1A5պ$?#GO| hheE˅^}<TDJC2}t,>`mVYa4 8|zv!L+?RtP,+=k~w+9>@Gϭ:Ҋ n2s=ՈQ)LTI0aD$Z;)hAaYz\)KfԮ:OsYe|^LcM1HiEj=*|oX&YdX#w9~Z8^1AL>`Ǣɟ~9:,ҧqFJX}G5g`%dpMJuŌ؏ *`ܝ]œ$±raڌ)>w!I)O֓Kؼj &m='V{/fOlI)n ҥ ES<%  m1Vkmz |?_̭DN}A}TF50~q+!/p!ۻ.42\Pc.t%87?1tZU'kjӞ [C&e41%K!*Ys8!A5Rm‘P!ݾ( :}SJ".NJ6K*QOM>VtΠc| 6ءzHR ff 7WW>QZreq}* Ube[4u@ԟ>fe$]goQcp\(ũ=Uxbt%{=l Y>EQ{l [p*;[de%iܝV4'#+k9N=)k㥪tqLóUmgn?Ze.Y`Zg1Gz5=IowJo2i\ר4?ѻДG 3_E\b?ᓡ!b44(\0ɹ&*[:Y%N7L$2b~T 5)x}`㭆>rym1j rtCswF7nR!N%}f#f-!5ķwlOv体O*K܅Ꝉ:no? {!wc-a 3i2h[FVtLtG m F͒hLX_ZC7cjh ;: ?Q>jfwniaK%̬3;m5yciז-ȬdH5jĕށAٻ\&WAk!G<CیtACid_䤜OC )ã;=TaWai-dQ^bF @Lȇ׈bBN'_0d9SeRʈo ɐ4_v?6KAOȅNwZQpymZT]q[u׊$4 v͟쐶S`y$7ju~ג2hh̞"(&:Ft:ns^%oq1 fM*L-*Lfg鄅yv}Vh\IZh SnGoe'S\'͞9{8o`α$rCXTv`)i)EHNvX(Ĉ 8\'ۜďĽOAZim2h/44*\ `iw!O+M#iN`Jg5J 3WEx14V F܋[xdIaXOlSB*+)MM7B%< {X80˵+ES\{>YCPQ :ּf&-X̻sG~c p7K+^½'[S I@C)Qq 7jj±37k/dۻE܉[NCD~ 덜&\2`q`?褆Չ2s#Ԃ5@; :|rRr3t^&\>XVS('ic-i(7TX 8t.ˮ}j_"Gj}2'ݜhú0^ὰR95XƟ`ÌI:;U#ִ߮Go@^BYޥ#2۞|zUr 5qǓ{1aAVmmWao񉐊Ra+(f/(aY!-+q'v`E!`ɭI`1,eqHVQo34O0oD} $~\jNS/<w`]E-YMrs~a"{(D`8()GXJ@ sw`$ǼZjs6g N+]k-;Hg WUa0Vn6 6*_>ZAY $AZM5J-c8m{V0`199u蟽A_^xi 7Ql'Տ v˔}>'f滧/ {dER | $e6W"Q@j?n{9(*BaCѭ*هlv=J.@]:KZL-b қݒj+ 8u*ͪ%7F,=A32rx%&jf GZP5C:,UƐ 3BD=H5}~D#8CLzw eJ.zJY/ uca^O|;XЅ r SWaHIxg>nBO58%Ak ">=02x):% Ů38C ;G)ލ~"Wg/{RXDhN'MCL0|Љ'+0GAz+!3ށ À~_[=pmUG~OfViΛx$vǥ9 &ͫO4iаJ,FP}a'͛ETd55A5* Sd 5l00+`(y O-_=%ҩky9.@ YH16o2Nۙ~[+:5tV铈I~=, /k?$4ОĿxz]Bܙf\ڇ2s8G)z ;=dEP+`kvfl`=vaZN/! Vx&(F $B4+ cUl|z'dqC k30w}0x6aY^~V*yˇo%6Y Qk n6"ar:A7t HKL4jWWDkU#ј)띮ğ-wOgfϸ8 Y<&A?v++3N^=hX27Z$\y2EH2HiU0~fISB%U;xAJuYp m,fMpI4jse4OdmF2]qF^-#3Fp礢;h\}&7k/w,LWf}' i9h\Q헿;*F% Y$ P,4O˫w6ݫۮg?Wϊ5/6 %jL̻#6GinG#-7Bw^йȮRp45=:߃pW`mg֣~V \P7fiѣFS:4D=Dϓ}GCUOo=Ӈ)%;S7ji~*n:O"URͳ.wG0 4@r"H^ko6sۼM_Ue4;hA~u4i[\7TD`ԎtkX7d[RјʼnX)axjq5 qMݖE g62պ;(nvDTC*\UY^ϑ)!UCPPp,ed}YeD3 zN˹d]wLυ~dz2ԶkOwtwnf ,wQY.?%c|Xq |)JJh7\ q/w:4wlKlH6ry Յq[AݮLA9e鎫3m>Lo7 ݦ~G~e=ܻ:GyOd ],Xº uh`vmt" @ Q-kyTNd^luEL _I:瑃TZ'ޖ}4y>>1։qFX\i0b !Й$r9IO&LRNR&G:'13VC?Ɨ%e&V38^-h( "6 -7tuP_5YpƷ͇9>툙F^bczӹ0^3P'~gq9WMS@s&8 C-8;!$&@ĥn uәp/a.?jjb<'!M]wO[ᄹe` B RN 1z]+d Ϯ)#ËtR'v3-ef#`v\2?|?0g]UoÅu'/BySVH/[19x0Th^~L! #ui1D sMoo3hhP>̹ii`)jV  w@&p/:r" 7%ހ3QwyǩҘ(?۵Qe\=8 %r Ƕ5<56,7\7x Mzq޹O`Wۋu R(xtf 2s +^6@рW ;g5AN5#<:<\ۛw':B€(ǼaXW!͢1kRbZ3?eC9jU0R`Rd :ZLwW`r-r hABEɬSjGD=DRq4rT]|/BE$P~sSԑ5Mu6虗H L. ǘ%t aL[( H3¹o `B .@ǎrr{#uZtAWSYbGXR%%Wd  j؆s!>#mعG^5"@8e+* 6YdiECON aUel[Mb#%Nm6aLYI8u21>8.xq˚"bҍ4קeZf!&A<!" 7l+Cky)e&$4w InVg>,GZjhq/urzk$AyyL3pKĚMvCܲ&( 8qR sJP쐒d/텦wLs$a/"UDYӬY'w\oNN_YDΫ<8PWH%e eoXwGYЊ :| | oQ~(|m{ .pOײ|ݷ|PaQY!zL3ؓkYvL5Ssf5vFsL}4y9tH[E/! ph(quk|MpIl ҋU|KϿ9ʦƓ6,ї uykh5TdMWeH786̘Y:RL~4uֱef_tQ{?z 8 KjHomFpwpNpy+|UiP}#FNo_6b&%A"cEƇ<D $g`5uEZвS48ql$wI­BO fr`,¯AC6W=z+d1}ʦqϏwnR.\Z˅'Ҋ}33u8Np̑I;GG,Mh A뇞=g+BHxYP0qA#E?j= pdu"*LԪY~y@j9TS$rnuQHY=pTӹQN@d"_xt -MtpL%}׵=]>?Q;% 29]BsԬ#=8R8|NXZfWii<0ui1Rx5GٚF,qBa.-˳dӨ>,Ԙ]*RaL h*k%\\H]w3.]lb؀vmtj HQ{A# du@g"}dDS5WD:7v_AYY``یtyTսRr,OFzb˒UM<fcmePUjfp$}:qzw+ʏ:zߌ:U#ZtJN,*~,c-_WݫԝqT/x{[LiAl2qÏ9FQ۶đ bElFhMG7IM1I0TkGmE鍿 ybcYW›a {Pz4WU=d $@ܱU;1/|FN^9z4Iw 8AǪӸ)L1Heb|',J[4zE<0IkWnN\faK" ] H"%".(qkmP`0AquV~sts-綄ģ?Vڿu=$y  hv"n\%OJʺD.hkk5&4Ծ%u C8֘|.9` {pa{gͫX)8(4TWqJ+UGV)O^[Mf1LkU,OU:1aI .H ? F$|,AnęI:QS]q6Ӌ `K.zdޑVbJf@0ck4f<&h(h\=`+|yʇl)T_{ƃIpovY.xFΦ.%{MMt $ghYd$QJ3Oiφ áLFҝX{d5 LvDm ͎me4TIL*#?K"xOHPs]_HrӋ.jTn/LO?Or0E 3yJxMT#Y Nj\› :q<} 5?i4 6xx8nxWUaFSZ6_|2JrIA[Cc_v=ȵՋجKeǢζ^ =7<G%'y;y{ ;+K7o13j}-PjBH۠ɑ зafRLL!$Z7_DH=M+]4MZ620ȋj =?G\=n[}qȥ/3"Dx|嘇E{ bkI${”MWVM(|j+7^o K]h We, ۫W.y6R/^QnTnF\Kw*s Zl9B}zM ,/.Y:n\)`nJtxܡa'6U8`e+`4T;˓/ul4Wjw$l["T ӌh%Y=)g;6$, ZpqtrGBh]%Z64CH?%EiC}Zӝ{x~-f˰54/gpn3:Q0Tz|@c*ƔF+DM혎U2}_fxwF;o2ZMDh<^( o% vj?u3kRdV˦ƒdy1Iy{ z8X%s"Zs.;H>7 ՞$12?e+pIj_&n'~Tm>cy*-J3 ˤ kf[\wg29U@0 qΕKT`E>d-24wvU %* F=d/xM>k@$y$c"t`v,1'=ӽpb}%K{5-&4!Li)cxuֈ<\65[-Jގ $RSYwoIGdhChXǾNٺ /إ fz)ODo,O -2DqVߜ#xҾ:s&ebAsis]M`{OEp-cx [O !U).||u ڔaT hnHX5aJ3xO, L Y'u.lFAP +>?XR=_8i|{*A ,e*@|{u)Fgd5leH2̺UWL @n4D$pGF%+6Rr+snCK;S7{&iBW+E Y2݋}Kϳ{Bv^{pIxꆫo8!]X}Ck(}TQ-^LLyh+. Hݱ=ݡ+ ?=/q-Vuŷi tp+N\[K5 +,1@idHɬw""{ٯܥVH 7A3 x^GZ~eo0 _:ya +VP7xL K\Y=LӠiGg :d/6}MQ~MЄB&m):mnJ>_g֌ǣ\ @f]va_~MxLȕwU?/' u~{ ыkXQ@!lY#t%ұ9&Zc 66-(TMfN}̒*Ğ<)%P.1u?7I^_8'{ys6m\iS !G¹e~mr-ȃs;#!.TK)N @n#UO?9O*6D`B5/ 0]w9g_BpAW^sBJ/N$s Өxr-LAEv~/{~`*81E.xDZqZV bKq"BK NHS婄D;@gڧBSA-Tp[48H7;2T Gj@%Qke?4ɬn:Xp5D)Zr; p] t9˴BMârOmB8CUcvcBXϽsjmf)L)3Az 0 _P  I@74gGq[_"cб;Ӌ1iֈl̡t@2>[/ [ЄĻ8'%*m9<5ӌA`Tt8ʿXu[l_. Z89u)\|8rb(4@-N:[2,>f}ʿ O*h0'_T-;8_*(I\& 1 W"g#21 >>ntؽV,L!=ܤʵ@rUyBz#>@-́S[b;gh2Sm]p\B6(+!hc4٬Q#׀PL),Xy<_SySL3+"R/R>rggO8 h\QtMel[׺OoX{.K[[}k(Cېf3YE&&:Fܣܢ?HMYi=F]HUw8BVSuZ7ZcV¸]q\ً1E% {T2_ɹL(1=L,U BHf[a*UПKuICqkS=E3z0]"VfVx7[|[U͎7D4қi:3fRI~͢8j< ۢmsf1)b<jd7^ W{kd(#'w{[?W9ffk_$Y:虗(I.3 PFMx==$}'Wٖr 1Aꯝ-.#mv*$=QL̦@w[Tnef45ہȰ8Y:vʱ {u)Khߑ UEf ٠T(rf9#O"G4E+w5t 0w͎+#Wje}0Q`V64wQ NL'?4NfWm{E30-C YW8Iz35B {3PC>IwnoJG5K)2 Ҿ ]~McfC+hI8i[Z[dSͶ d:[6]߲<Y5J<yCMuE'0޲ξYy6 p2 3m2Pp\];5N54lLL'lG9D[} SWLitK-"Ih!&VYI>3Rm֣*{闂/!"}H8#BL'ý],_p5uHF*Y%BY!:kp5>(m;(E 3ID;m} J,B%^OZ@;<4 yRFRSH2̝I:{ާ-WmBC}B0d#7WEw[ @P#6+5kYe~ΙăF:73q>GN6?z͌4:Zly.jA[Ҡ]bREk".oy`9$Γ`{i[ Ef*@< tK8y$t9 ]@7h#aM`ǥqX~NO .fPF;Æ`W~ڶ*윜ec+cr1]$ҾR}3>zՀv@Ay$&Xl 9a7W EQ#i<Q5fq>69JmZDHUL)Ի VoOV٤"F(-nxpP\F-Xqk 6nv;m.cJNLv,H/e!MX^dn0}_9ن@+6ɯ9ɨPjG[,⼱ %K3t!JBPJO 8o{9-+a=n`>X/W ,>uz.*c~˚F־ 2\,h!OwSj_ۑ?[TL-S1+|Z1MAj$.^0*dl(С[<*܅$bdO3ySZ='M/!I=GLGH; 2-MdJK엵+kAu0UR)߰7 㓅/,hPMB \,Q/Eq3Ljn/ .!_tm\ԗЍ2ܟ!IqͽÅT6\~ I!=zYI`(JJ2x@bDGLQ B(c˟GTޡoqVZנbP1~aEEc7xM{y* Hʘ׀Q1}d]ewG#YPR Eliow WdL2v&=O`c8_[>%or|\SVDoYg%z% H )ID) \`z9_N@KU9+b%TyXQ`/=;, k$w%1`G#WB?a/\U@BD\ CDA$ve_c=vx=1ie=7?Op-u ٨U;|MF%>Y%Y4h8a18q2T^a:3, Hd&T%W-E[thCoE4`@= }`z HݨyԑMc=u(Y [M̯'0w% uB78NSKPM N|VS-8AY:Rz)NVMKp @Zj$S* H0mMɧ)YEhior=$ xzg-U6龇1+P# g()1D5s][%sS7@3[kmX <"ݾ/aGl\?mO4`Bب%%ZDQlr1%|.A v5}oe@ ><\vc>/Yr&+'_$$l4 _f/^"@\<39""5]`jf4p=!K+q:>5ڐB`{ !8dG&Xϰ5kP7ܣ<4[J)D  y{3} d7N&Ȃ7-=hS'Lm,:0 InP8c?W&C}kYW("[Tg+7ްk5֡s]a 4!{|sb⠾|y`V,c>֤TI ?wzyqCGv2hȬuD鰂!V_:S_VW6K-_k{Q))R;vZk2-ĴlaÒ!qU{||uEȶ(ٵj-\@FƦ{=Ҿ{ksNx Dayb5^̇w Cӿ 1\HOp8P p0̌/.%vn%ˍl>uk &ud)X~ jGr %Ø3͜mn2rPEEq#8FzOe;MrohϤK;Xp2 DnoFتvJuF!"]9ݫ8}{y"Yo aBdǯS!HiϽ4@="rzzQ*]=G ?@bDc@(7lF8[$W𵾔Wi ؈j%$' ݒ$Р*ɤ⡴Qȇ9+yGA.[xGPm5?-eǢ`9^J@F/u(aXuBp*ƲKT/%\#N).[Hh@n^@s7Kވ晰U|~f5ѭ3LϑT&P'֦|.v-_;5\: "dS4 صE\[N?粴K '5^3{JD4e].p\ *F@nsQ0X|Eڻ7ΧAݲ!/SumNH&h:FtzGy?Q<d|E,YNJ̃ Q!*u8d$B (۾_aW1Xwq.EG#%=z{렾վuDݦߵQ|tbg[I)yuL&(R-BqϭmIK}{X ;4LVAZ}DؼKy-󋮠ٿϪ--}:s^jfFT*Lr> qϹc&xg' П*:SHOD{3ɸ-w%\ʰo~u:>bp;%Ö'_Z *˻IbJX*Ή(K=N &tCdvATHYi`x~vTO Yt0d`L: h$j;AC/1{~6߻Kҗx=ȈiGnVBP&]/G_U:yH"+;S ,ijx<#YgЀ6S~ǒ"4\ٵz׹'3QxP>5r[zU&+O[tǚ&tUpTL ?v-s˃ VdBp/zD~gx/]kǑWV1D ̶u BEKDxUV#WxWa?ɀ~tf ֿ쩡n)5 u{x~.Q͛g++&dma) m,m -t5ħARmgv*}| ΀ 2Β|7y'$%0bQ~m oC ` 4,n& k#ƅ1)&h]Gfnl1q ţ]q'^k3F=<81;O .{q4 G%"4Y\b`rf9cW-uI[qOѨާѠ]H!/-/L8eρİ{Ե$JTup񍉗;D,ѱ C_'MfH9Ղz@ _oDJYB;'es8Ԓ皒pZ4El8oDJ"ߟ}7T{>:'dQ&?Li fϩ /U3Wm#EUJ)fq'yKM%g?+\4>Lj*mܗzeM ֏wKa~KyML=᷿ߓa3҅[xM!%$4)iv#꩕8 ߨ<؁sGYF#Hׂ&6g8hQ"LmuGd&O߰4\OC^9ǚඔVIkX6oU rg*)cxBܼ2K *!W-鷾@W=sƻMtN!h#)#|Fݑ a { .`t[txWg/iGre Bxh]c,. |9g4S /?F ʮTCqmʽl :.MltmK߀PqEh2*ܒ Ay곣=].# nګf[H H~@ٵ'i?%m! tn xz.J$ʥ~šA ּjECf&+e̻hܓB]./K<` (7v=.^=C:H n*ަvݶ{L ep-O]DBS]Z Ϲ&M@O4=F1^Qݛb{-h4OXL_aVYUInc N+|lh: ;NK鐠Z<)`(9$)C@xMpN50DP\m `۠5%\IY%|l_љ3ACVY"Nkh"쯞j2-}$ak%>݉ҸK6 ՝)H/?ÙY%\ǑJl-NɄ*@|1bAE04nrER¿3wl'4S/j |NT} S$t@P QCw\#oۦ`:ZvbzJ~!Eip;^ mj2y w]HeiɏIB_ܾiӵpmGTPfXct1hƘ*aWwTbjSMa, *2H9]lK„·L^խˌ,(| <p]-n6.my{<5;'Ye F\-BpC{6.aìu\%~$=/2KO&M SK U:OPpdhG7+)hDAF3^pf$껖NL;6^cj 0<ѴE3|YSv OX4}{Nqpxc!mt~O(-_}3gb:^~ =k10exSA4`zfŝ:Wcܟ|crbvepI%EGHH3`|p$ Ix?eVj!]FYŧx]O0ojkFoKTJP e`wcxUwTh[l?N },;Y͘H|,yxA;zu3 3\%u9pNz0)G03Dgoe<:f_󇲃DzE}+^ֲlyH5֔abKRrsv.?Q,^RJ%x?bUivw2XƈTS"M$C5y7AXjk8ݖ)\~287!gӫV5e蟢 !Kd v'SRR>sSZlt="iֱW[{ )=(}.Wyz Z[iDzL6F |0QˉZsDQ(*l -{Rzj@+ 0lr|: v[ܹJ^vtSI2}nj6 ?,?(نsa澪2EPG*{jPg8csG&L oM3.8$ĝfhR,)8.N.|528}E,aBߐiȅ=hZEZ,2]#tjl'x]cIV-aI/ֵkv|k`ͭy<.IWK/ClZ"ף3.ȕ{w,Z;lcW\N^A W͈FLL*NdDgj]Н[kYFy^ݠ}#%ep~~Aw;^A"Ql [[{x)ܦa"kKf?ӂn:Ԁ?yxQ}iԐrC͌mx!wv /qi*PCU]sB"AL=5:L%0ZRB*˽Bv\3Le<x^Cpj${x!\MfgS*Sh/Us<?]BC;J,yx--!N\^_eHXhA$'X;m ky✯y݆Gma v)9 C|bB&l(hAszN껆>yJ)=↙IH`nx9~P£J649Cp73\=<4+DuEc0rD 2HW^[<d6nW 3R? ϻwN€vc{·ۦqzWyuShTH"YeR[axZVt",g N{>r]-yZB}ʟjZ<= b R*>,nd* rrϏPPx: UcTqUYLFQ^g+cS`?:,ܓ}re-4o7PJb# H&̊qQINR|.ݶXpj c*,m}!TX*HH%yCxjr-nXUP}H)%Yoҷ!l) գ 2T6e{ 1=c@Иߨ+i2_胠3+؍0<ΏXI~ِOnDi;QocAkta$#>rbY h{AK^?o>ffu+Xm,W1ԮF5VHiU2~Sbsn}>: ˺.F֋@귥,nxGi 뽷6F o\8T=0ڰiQ:V/lsЖ"@[)m\5!!x5V)K|0$=unU*MaG.5E&z4{~{H2ZD)/ؙR ~kRC+Y}g1XmBz1&,$b|x>_ XX˜0_t=A~a c2јA3&C91u-D<>jN4Eۡ^CZj v9iE{r}1d'э0IexZTxAJD0Ab[.<1Ki(@AyVh';8=A8䧒rtS+˹ }dl˜~ߑ7d_{A5[w~,}d^ڤ~L#j*6dL 9َ'XھlFIJGX$Pنnm$G \BJ\Tf06ٲP#XzON4qD{ךO yCR'I?U|/ڗT`^X~C]/m"52Yc~, 2&m#9:jjq$[Zz_к4xZs8vP<C3ϕyW'PDEAT+i!Q|}HLZ_A+A@U-:Vh1M^!6@,R,HUwq@TN }'*%@jگ'ޤM Y",?w7Lj3 :.Q6Uc@GirN'C">; p0”+-?LcóZav43nA;' yncqᵮ_,4|b`)73 4pB_/*Vd?yMCF+tWr(;EIR<ŶB*>U8`@SdƋ˥g8@І;߾ (H}'V竘/N;׃`R-s_ |AK7{zgv :L]vI{.EtѮ&@P >C u ;+2EF'2i+4?R!KϷ }1zUrܸ̀ ؚXb]TxXQmPyֳ.t؄n6A1ӲL(2$3;+p2[ 8KUy&Fu㆖ljc4 Wo*W??c|OC^f  w,5)طcV(֤/Y56HBڈSX`Xy*;ڑ'RFz:yV:p0yt>xͤ9ŊA|Zqgj""o U| b)FcP T5^R7ROfFd ?i<$u*+;lSw`2z9D ToÉ-BJ|~WNXLhC)(ё'"d|]ǻ[|j'lB;z}G)}wCOϺUnp>5iyHM[8ҳYƯghS+Ib(M ZJgdMK?BQjPUg%tKekXn|DK5)S | NS.Gn XavQI!bt1,:$!3$;O+ m7 ~Pӫ5h,lYj.>EIx <%5 XM;6}v`.oFŭIhAK-ʡ4kuς@S~ޔQ#kGxOW[ Τ hb=Tu7bcgͬ%ƇR~Z=rm1Z*ob0L:or9|BJ8y h-\ oa_ot_ԋ,ݾN'ZQ'c1#_YYD/@kds Z$-=Gr=lNsS|K)]$!<S╹֓ "[U8'XM9;G28l7a`CˌW0o`8IBw%S<`Í ^ ,]ŞHFMOotS^dAq᝖uka;VzУWV} =(,tx@39B^җw4Zڣf. 7#6!7ߝ~$=f?\rHzDFiJ\[wxòEj۾b~wē^hxPBPRMmZYqԁv*,͑㘀vs>g-@'Oo4ѭҿ=2P2ylYۙ Ry5G^(\p-ww@k%Ye-bː+zMI0CZĤڌE荢MUEEj4!VebP.m# 0T,5#PS!eGЙypZ]?`\U}2_%כB#yj/s{(`oHtHT6SZ\/&xW?}鳟e~!>Qӥ0G1;΅{gu >W!Uݾ@o7(I ќ#I Dȼvڧ> bݪ]fZ :e٦ h0i#@L0E;'z4od7*d,3UW [M $pPzA$/xlP[!ezlosU^o77ŋy QgePۤZԡ=a)~Wrq%Gkn+]FBH*[npm*;mb' #zS|QMtۋoD >IfHm(=ίJK:=Qk}BP,č|}Qi2"$ S*(,th|p:OOELxPo_@3P߃i*יF`{ wjٛypIލ_uu> 4}4T3fR>Dnʚ,^ogY#Ar467eqL~I [ +qo,nm`1y'NF){@x*[:gj] BX P6`viB*Y8[""ފLdmB@ـz;hfLgJƅO` YZ<,7b,s"MmB/b~% |n>ݾFb5< :,})"k ɁʇT_|XQݏ8²PJ+zF\} t5n,<8wDD!BD9/Z~;tBٮk"GϘMHt풃1āx0CCS.BkEfgš)T}1Y'e-<p 3R$3cI~N.#;ڟ&8SAuc[~L5# ^LPeg hۛ46q1=|,Κ4g~^$I_σkT&SO`^txUFXovh1ByCa>y]$I&7Vc|ڝObM@>a̒ ]pUO*^ N0KYƢ^`aVZ0vc]g!a[w ۍP:7z0h7g(P+=5^)rPmA nrчkNE&xK/b|]v%A۰zDӶ"hD|ƗpuZӳCQUP_;"* @O +"s[`.(ChT)hq-S|HGPe%_@ZuDeWl*̳3a!􂁎 zw1~ԌB|t.DROAOaX q} 6I;NnS<[PulC<1 }+L6f?"fs!ip,l[Go&Bl !Ի5dyuZ#/,~g e@ ]Be0`jV@9H뷰!qۍLăw6Ҥl_(})r(O'ko<Ĕ6d &i1 ρ8 r23mZ-D>(H]1[ *TqÓ'Nl]fV :C0 fh@:@!"ul̚!NoÅ'x?s`P:_`qd>ֽl>_KHC~9eW/|Pz0Be_N3Cz0 +Ʒ+obnX0 =i<mI7M=:X] =(&fFy'Q-Dpcu t fGMņu"h6ws,c6-,R+Cz7LmEL- ۔Y-rg3]p7ԯ?ו#Sz G->3>P9@HA TlpBek:̏W#/ kTW85e^-yC@ԒCEgZJ]XRyMJM 4c) ; 2 QfģMh3{p+?+i-ȵv6A8 yAɸmia/1Ν,GJ CC`ati\a6!(Qp#ibƶ6VgEO"2ه_nr:j\G,X3n9~9u3;R-*!<,bQ+) }3o)w>IU"о4-G!=:7=kI/A앖V1J3W;5@G?G+_ buᯠB -G> xʌ }ugV5h7h2AgNkX5pJCRln֒xN:*JO]!J54x lE5ڼp"IXG',#\`L.1 n4ʮ_L"Ov$ԁyFĤ>0WjDpFR4},LkUf ַz?cz+M!9?fgT@kvWtfĸҊV_Er2s9a/Qڥ"nt7> Ǻl~eXm!%9yhx>7gFwc vT'oVC'oO(PA|SpU 9S܃^-|q8v[Zsb" 8 +1݈4.-zhHW.pVc^@Ly#03M}]]S?U@_JaH4Upx"ݯ/N=3' x(lW2(ħEYo`O"HcjӒ$}f=~5 4314& #KTiaV?@\TUQ;熮HzYi&}w6%Ypq+CWi-^o@-]n_WG LX1#@LF_~5$ºj93DFRUNAvqzi<Z-`ϭ6|{zTyH/OsJOJzBikQWj5[ӆS}죦xUA~41! c =.=C&u88zI|Vji͸_1D\g5Es((6F& }O0爎.&jq w ;u0DO)iu|_& xӄoF+`SO -$p+3$F%Ӟ{ɻUZlXWDML@[G$,ZyM{:D2Vj>L)!bkv%\u`V e'TQN'ODH.JA e+keŐ3Ҙ5*BoZӉtvNڈ iW!0l":&NrL࿽?5bF$g+f?V0ɿgg/WK9-/=y 1da=$u]c/`N[A!>{wOGe$D6W\zM<7јy,/d@ڽSc^[.OS-\EE 0 1* xD;NNtɄ΢ IreAO:¬P#%!+2_{VvJH`3wu=ֹ_K}˅"Z@k$|"׶=D3Z٭CfJ&HpBh+<}悐q%0eI)|!5 + *xDCFtzLa۽Qn6o6 hBׄIKqN+a劇4.;j{`< VF:T悽Wu{D ywDXN ,{pl>L2>3vy9t[8gN7H,AEEib^~mn`KNlB$LPeAq,di8O39O{ܒA:'{$:#Am4`9FjH͡YU*y@YD8[u%c5!+=Ith=}R -fEШh=S+)]7!mi>=BTThɜT'9,c!{BُWk )Ÿ֊9{SV+Y w5BvM맍.bneʭPQ*#o:YK芠@PF}bJNE]H{bGTop/Twc!s6PF_!iFZqz9q XydZQe(oˤ"êEasZl!K`F?+Y0(Hf_!ɧC/;JC6Q(K#RP3!Š!08N6%#z2hpf\ I^[2#-}ev$ayThӨC+ıf&ӧ )ZRɩY)U`WyY]yO8J ?!RAqf.(5]}G-6wMf5\dz*V1)joO`Jp0vjb2 um}8 ߀@1P|f,be7b<7{Pdu啞=NxOj=%{:NXX ,(ǾMQ,P>Amǡ!ħ&0CPSD6@}G 1 5vRPl]sؖ}2C9)Nl[iu7 a%tyFՉѲƧPzh.Lψxa!',j RDek묶c9IĒchUܮ[|Vx˗)2ْ,1w(EI^޷3T]3GX9{KuReI=G2($eٲ I%3nhۥ@_V`؃ Z#O'P1Q]l4>mu,6CؙtS\_c&q2f1\te{ pGH3*W9&ȵ"sR] #Chs28 k ƉeO&~K8>G~rs8KMqIȉa(/`!赬QdwlpP{hQ>oh@51K) |Md%nLVY1NHN Yq|T4& bz{JT 3eț?EF&aŷ6Fr%9Lp s\QZ~.dѹOck 6*҄Ks`gRTSRƆj9 +#^O~*{uSʚ;z#=хV845bn@h?([R*,A2{-9frGΊB+r$4$l4#e7Paw /W̏3 OrwM.1gM igX)9OE54t#/x+Π'j=|0N`Ǻ_̱.C]FP*USU$3KXd#^)1~?C5Qrw#!2> [Ǹi9|G|N6BvwO/e s{U% \/Yd-`X~͘<,pPH &'TMZ,#].60Y_ KCh#ԇ ERxaɎg:JWRsEʾ 7SMpG~lQZ]2ca~e*l!`nA>)a.8ugik5S Y9rCD<%ehV8 V`z;6[{4x9t;%9[O3uf k ͡"y[Y?ϯ:59MvR TJV*vl1k.|p>5w,Лdj?Dx}^m zy9 goGAw pc5]>ђG6YXE>Y6wÉ/:$'ś.S䍞` i88:W&)H ˩9AɊa lnҲ)ejRt %d{ӓH=~Ak䕻fC?hqE$iGL ŎOߐcYUy5no}vrpSv%B鑾>PW-DPc@I1I?$+u:[Lk ?13CVnc2ЮG Ea2Ҧ##sjg%m 1)5EArEr=#ذ>Aʺ2ʩENh3M_sF/ryYe([BLuK/>vYpHws?S}GJ- TԖ0VڨdBTl T' L z jgʓ !tT{;2"$S1?7gcS]:N#/(uhk@BWs}}9Rɴ0L~/j-T6PC A2]a^C͆KQ|eW0HlN I /7gZ9qq.<|IGn*, c6lt.9RiE\ tm@D9SΕzf*n:-g!)6GAh؝P^p<=j,{/6gߡLg S}m1Bu]891nW4#WWRx|O?f`q]9Ί+hRYG^4'_E99YI"vI{qMYVUMV$֍و7t#,4}45T#nL&v]s)(Ӏu1LJ%^MsH &{~ӷՉ^V c rlZ50 Pݎ`+߅Nsu'иۜ.Jף𝻄xksg_MhPLd v;r`:04M =X.9Ŀڹo^_<-tT`yCtZ&OG>,Fpj+/ljA*4F@T:G#>tooT(3^dF-ڳ"2F*bOk| Aݏ|FW0SZJ9*VLLd |p)~ق- 6|Z\ns Ze8E^EF$|w|E0xm׽%yͬ@Nc2/Du%1E/1X$C,}Sh}Q VK|3}߳Ӟ $m [%3xh{v}P\lʹ`|%߻lnY\s[}Rgb *:WFT8"'.*~wXdb-!W|R̠>MZWEW4` އAZ 1 =p8XڤRlXwBbY3 =f6;ad̽?ꀁ҇MRUĹFi#3s4U!GVTͩdvcf+4Fyzkypȣ܁hD5qٶX ol):r>@yqҕh 8eUQ~ GUЊ@Q59ɰY1v_r S.?=e9ܴch" g2` ^>tyJ \=*ڣ!0Ґ57YR nUbL~ԏ!(~weok-8wl*VM<ͤd6߳ߖM/|q9Wf_3.m%o4rageLl(ZL@4-~ݗI&I' أmaX>f: x:*Gɚ4H+$qnY_~CQE`ׇyY;N0}#V q՞h- CCBX78jvX?픱xU I\Ť.ڳ)7,GtpWhՉHm AAλ 9z%̾U<߸[~o䳑Ӳ*`1pgV6pٚwT4>&$TKCiޜ*pp('KG}83lmOڅAb{bw[?>7t|ณjkW__yh'ͤ5z!+ĽHR@r'.x(נ}\l͏.+ECO!s^N!u@ZKR(v#`n T=L#7U'gyUN&k풏 #%2~H ܎MDQ7VTOI( =I$\,UrצBǐ9[J51p5.E }1A:^.(5ݸPÇO9! :|1"i;ǻ9uпaYe!y_ʽ2G\-UT?ύ : M'kTZҩ@3)׬4Ri m\ 9YپlwDzwa#y9[ꎰwhO' ?@"\SyۈfԡdMG:ƌ޷BD|KRR_<\-/p}㗈u-b[qآn?glݙs.mq{++Zj C?QC=mvim/9rO8ގVEwizN;["b;H%]?u4!hл%p뱟˼ nwe5j6 S9)4`/??0Gp"W;ɀ*h^LF&x[-G ^:Z_)E Q4M܉pGxgWȪ8џ믊6d>J f' 5xϊT8txjR(Q6[2X"]q*{=y;i7J48'\e/`p  yC/';HX4lXXfioŠ6Рb]>>42dY o sD(wSpL5/~OP< f3 #:}QY+}xT`W G_4( Ij Êu%#bxº^Ku {6rGTԙKUQT(sF'R &TNd lQ>/)ru@:J)cK~7p"!+p33Jb}xt9leua%NLK䉠r~ɑZT 4'L'2jS,lS$~;5̒ l Eꧾ-XeB)t;^ONQsSR4OFf7uB{O1zo_? ƒ\[d)E5&;D:Z&ZRZ^|帽|Hf(:d@ԫdEa[?)vˈ0`P}sˎ$û%'ȳ<,mL{\ٰLioao*~K O5VR w9}^`'D(u}9,S0G/5 ޢ1G:fԍO.ݣO^\vp- ;z#RBhXURϡ\lA'}M M A1-A'++ә!_M/MޮkK9/\$>#Z$,}i PPw8(/`wFtTB::3f#覛hW_J5t\UgdmxAM| }3MM m*+"md%f UsȚAWXd'XjJ%U73g`o{qF#T >r>Lo_x3fUcPh|=1Q#m2H*X r5BZǖ'P8A'/[5EkTd5nM+[7ּT5.S+Q/`,:42[1XjH zE~A,Epx度6mT=ȍ$R*1ޡS:{޳gYkѯ^aaVԀS̾6b7\ Q7}97j| s%wY-x.J{`<͢?&~[& 4˅2Ω"M7x2s` eysVP:̛6paFꕺ"J/'nt "WiV93h6SjlH~dNwF ܨdQ _>g٦UviR(i"|d@&(a/'p<^Q^sr^ےyRHsAaO;3Qoēqi% $"CX-dX;HM̥Гol,W؄b61e$z o.)/@9{h, dg xYG 9!F` M"O }ZNz#@_t^<#CӓMxGě^ƈ'V5%rDi5b},Qflv0{/m 4lbvM9 \4%o OB[z R)q&PpasAZ90آiʷa.mEx 1 L81V-f'und6SCJˏ+"OիRFτkȅO|\WyحP%(ڵMeƘTy_NReL^4?s)6LllcE-Tjn ~p(d$ܵ^qƆ<>.&x4Cg iaſIT2wb+vC}e|b~ئ1Z0ϮO)G eHӷ笻8(cpׂ pPbE$"\W'MzSJWa,ja3x-FD5w;K^$FF5@N@`EY꓉;0m9lGu=|ǩUT҈6N^q~ CFpE&0!B@*2lYiV;)2[҇pW/YRV/풙(r)<ݘzˤtE:E0CJ\N7#J;a 0CɡAGL:duSo_B>|"j,'}&@n>pr^4ieiSQ+16յ.K>%dcP=#g޻m5G\޳gWٱ:fMaC_hou S#t*_Y{)zP$[SbX׌po*% L nf!Zgcb&mXy؏DfhEU@qKU 3^] S(|p <&HP2>P08]&$W^tN vbӼcCL`dx"8j&3#ofqޏ~a߳u tpm6ʞ 4Fre:lq7W%.;iQf ?{VcA >s0ǗoK -. ّ)\]Q(5갦r/vt36!)A7jR.0`yty'09g14[@۫)܄nܜI)e 6W[1wϾc}^YCǍ= Ț0mboQU O+';q U{-ٕDVګ#4.ZloD-|cXڞQwPqbq9- Ҩ inP3590YDm,*z!k/_jOtD=Oya.Y5x8bh"kyq6L%)%BV#}HN ugJMTBȺLU"/`L)!id 9N9ϊK))@`9z UNrTiwS)2P_դi|d"QV,HJΜO\݃8|Ȱ>,`jhL{u??1H`nAR$)ȶn [ў3\'"l%ȦN l本+m].LG{-}+P\F  $&,.%2JH'69g(@H٢. ud1{Wn.Ό9)ⒾZn‹ W+NVF/ 6i68lP%@;.fsv׾5]'99֗űWl&ͪ(T^gꕄ*kwS5Fڟ;qeّ˚}uаy27Fe;$]i+mxNVU7tW>49O2PY#C,mb}qLQTj޷b<,ru;KqX 4၀>}9t8 tdsgZ tM11dHM> b4VĂʧ(Kz^g5_{xXqF`S_!9Co^E)<׫/Gj-U+V9``{C[1ߏcpg=~5ᩧVPâyf42aАJA p0wVLȘH^(z{5^?`Ys5Jku.(F, Lj˃Ft`Ǵ^s -]"e5DzVyX#k%FFDJ~1C4\DϱwP+,UE $G3BhS;]O~H$5H,mJw@9R:rO=t7rQplrЖYNF.q; NAD/qI, %K.ZZPjaC0qBwpI0FO#ukS8 :2[LFvpX゜_G'6u n+yȹ~ nˮϑֶͣgtL;bquGGy˅fX0&SdK19>A0ԉ~($ݹuI"|wc$0͡.4:X_>sU饗݄O)-bDq Nx[M ߂q!< q:^+̧! &# t& .@1Mk:~v-7kb79&U'H%E.Z㻨pT &rP@/Dd nxhZk֟I\+b7.턘GcO}&녿oI6~ta _tׯ/F.d{y♙:cYx^1_6!{EDV؍Ǎ7ٚW_:>g=c#Ky*&# 9!\=}ç}Bl @%g0 M/r:Z ,l~jkygwd ,ML8?t()̟!T:wNiO/i!ѥ%EG7Y7epܸ6mKљE!/ lB'cL PeQa_ī"TEFadܢeWK؋7ixtsOjE}D{x(緛<>6dN.pנwr87Mf0P?O_l>ZČc J^n1D5&Ilf")݀@nq·R0qHXTq.Q<󿽷J_@/~{17NYtY#e Dh !}aA#f? Ҝ;zh{KE=+&~<Nhz<`(E}KB5ڔa"a(v5S$nIi&˼ac֮k=.FzU~[$zʖm2vwkvDP晹@U*z,IUKzwͧ!]C2cqynkYgI?<_t"EHЁeL2jCeⴿT!qvN.Y%[p&)֤5󕶐nDe@%A2 */À ֞XpVM"qeFF&s5-$XN6dddƄpD^{~%pB 2mڀ( -Xf9g{5/o`x.|b!{t14o~oB@'6D”#ϣ6 Gkw_qڢ,31|"A v-ƒ\MدAa"x4wCL;{*DBl˶hEǷVpwP%NGD!3g4gK{0j_B2 O |yyn-dm$-L/#}XE_8H< N fتg)]MEɃ aHV)!ەr5Hd0CIpN\%0/QčNI1"ԯ5v;HZ5Ƒ^vh׭(9lZJaR'60z`o@>ROˊ^\o 8wB2씾}HA(6N_ɯM '6U;ٝjC{Z RA%gV|>MX"ƻ.p)]Zu<^NIj.gD:f+7[5C L9w'qRO/"h 1CPvR yd<f D\nOR)yBboRA!\Et/փktqc]QF8 ֻAQϦ2[_tR@7"~~ 6x"Ju8%LuD؝sXEH%\UŚܢh(c%B8 xrr''ۀ,k!R:|k/DoP4U⹥wTW.1g D3Z_qD*T1?sm͍+f tҀU>taG|ɇ!S9*NKC+ۇ{s W,=e0^h˧IM=S~yq Jx/;Qt̝.>i>]O ]Q_"Q!g0:3A'%1چgp4D,/y(ʹw'(=3>_kmnAE?lCYu=ҹIH+@ Ŷ݂r/o@NNn%E5cI6e"'8O?Qά}>4@:5ekM^.|E37pW$CX_u!!bo"<-}o^0 V;UlMv͸c D`S9!CI)ͼnHm)7+3ߊ|D꤇p,0{z1MbzX~,"Ɩ;}DzÉX]x(Q4@kOZ&C bSIk& :ܰq"-z>b5D h*愭q}Ȫ6[k" `~lpy_҆S)Qys#EDk'xL,Ռ 1(®};;'snqkiE"!WҹbDR/}@KSk|0T=Ǎ0`>6K.FфO?{Fmy^*ɜUH5ѩ+RAppkM&Ӷͮf"D{Pݵ]2n\B+M>kb$&DL(@' a[ΚӓRmf2kPEq]zJ8rNpUA(ҩ؝VŽY39 鶪 e0}Mq3h=Saݰmmb@3kmTK '}|NXBsXZ pYpmjT6^2E#pW[l}3?:\u8ũXg KP4|y; 5~&n@{aT\sp *-([u̓co kJwepŪяeA)VaSA ȟPoTO۬ڀo;Bɕv^*U jԆi | kqfIjhxD [nOʟDM%<ӱ}[\5BV>2j Sc#F/~IPW\T}m">8$"֐ˊT;Ep%׭RIO}IH䉬 in-hx;=TZIFgCVyrz;Q!߽t,16" ?lI*n/CE9 /lZOȮRAỤj-5db*ҥ_cd+SE>p@:^By: d_T$ J ^Jʯ4y{k|@&$\DgW9UQ \|);$w>C;^h53*UUy[(HgC2j 봑mi"xͪo9yH ?p :3¹mqEIny7\^3Hj1Ng,yT7bZWe~( RrYOi$ZF^*>7hh9enBf([,!Av`}M4" ui@w֟)*'k%P]W81^g>BkT㘻0Ϟ,R;FσF%o{lG~9ifʱ欽&&W(Wɑ[H$r YQI%*pOwb@^hd,_ƘYl@BNcS_:F$~P[mHV^ܚÁ;M}SϊdjCG@  5|i5P#{ GqZMF8I9!F0Qbs/фnq4& KN|~E$"]k~YַX˳e{ q{?{ LL4Ya=ĎnltߞR}5SY"$㴅h8ډנ&n2%@gfhqa:Х8Q&qEXh3F3_*bN? n'i֠|@0v)!%UPr.`d|a[ZK2Xd+A|礚p'BT@`!)12GSd\*jꕉ2a_T#]_WW9m[a{;Pm5/*7g9 YWny{)+%g#j/B(DK]mE(e^"@w`kzx)]( @?G 2%ڊ m_'0k-ev@7l@X>+ :֎z#yI6+$g92 =:#?=w!yס/Ѕ/+]:6ň&.bt9 YVgqa#_J{OIEvchy#ek}{F+_4oЃI~R BrQ8 ˃7_x $FW^ۯTq+l0 = щ3'r)0!h ~dkY Dž qXY iU=}%[KٗapK5}s mn)8 hUi42W}*Z*x<Š?Hm\+Rw2%@۹q +v\GuD=cL$HgF_nKs5P?.\P<{1 N|@hfSLq x|%W ۤb+"qlT&*ygu CΏJ&~Uk.fWaԎ6H#6FƘGWN1y0v;1 Aqv0szC|#646mqr^_OM*}z[g4a^Vӹ$=D6(*)zϡ`%A/A:~oA7ٕsuO5xrL;H9!LS`Q kRߴHxnAf;n+*u`)[02]%*>қҼ&FdHNđ^5B\Q9Z͖vL|]ߕoGOǔٳ s4'C8\OV{/[t3BCh~B#vy8;"x~pO&TL|} o\󪖕52!ۍ"h -JJq4^ vO {]rnՋ.b^_RJ 9n=r /@r6sR>)8A=_&o"}Tٴ[GNfyuV4rmgSێS7R*˅AzfBuB"FSLaBPS.."%ߛu|VjaP3u1[pjyćx0tQ:1a 8@3 2gcXKEh+ qN8hvt6bi*噳$2w<\Df#3H) !' }d:hX&AAg dX`jh.,h  / )% mv6o#XOS?{#MlP=Y"[&rs6tQ5[+Y@#],߿ g xֳ[;uc tA V6si.i"kEgm:M)Un&P 2֨O:0dU?m#91M:E(ceF wZj0V㱵P4G='k\ `f[C%ADRV'A&Ľsj |yqio, XgB*m}UrE/" NК ޠ$"`8D.'ĆZ¡={2b:x8:nki875 ntMkCϽ?}: H.\tV{\em8"% ϳA]_Lq [V)&=XS#bp퓨/5u ͘}|:PX%?^[jZޚiQ7"'μ n:;ˆJBI t?NYoҀh4#_춽l@}n)mW'Uhp>*s`XZ]DswGm0)'R*|W)$6F6}&pD6J#ݰ1x!KtYt/ObdQ!t5ڼvC,@xcyjRB+])0$f_L$O @Rl >x%S:8'4g֪~Q~̚鸪PhpmE[OݹMX͂ = 䝕e٘9c*ZEJ,+K: YAw9_wHwZlac' ý ^1V({8Ӽ>c@y=pN'sϒcXɭ@Hi;M}ҭaIN{B51y\t؊9evvͣ LEH k?)t-1~27c5VP!iWrjYrm]C:}=Yp]ѯ؋?̗掱gh] n< !Y?#1M߇U\~6 ?m>VUN |lܠA4h*"; l\OBkSy"F bN^38pM. MWFG@B[lɬR ٌ͸=Am|q gQ{JT޻@j"-ep˷LP]L5XҖnjUdG%sO(:\ & yuKf8Q {yŗ3: Nz3<8o-xWE/>)i[y}E fLٝǤm 0XG)3h|m(PLieCՈo;O~+D,0bsGƻzUde`(Xo)ᚒJBY)-j"g/K@c1řK)JƛyBN8ִ."l9 CNxOD>{(<ЈtN-dlbcgE},2xF|>B.L6e2M/x,jR+,+I3 ];F<%=Gw8A&h S%o.gHClxMzqAH m7 y+竸/8^3B?}>1BmWf`.&jFt "?,U6$HWkoVB nfp"ȯDR7$U z [ ~to.MA=삧4*^i ѪC$2xұhMa[G;1T3}Őj7fWo\'_l{.ѓb#/JAIa,kRSCNQ0`ر%#ô$Nt+>eC+#?ƃW:LUfD}Qq~ZΆỪxa.j-YCFC>I /N>d"e֤!ʫKaFI ;( {V~:2o#hxrp:795abE ͔;}A!Zpu?LI|y`o+Pسc.Yُdl‡:;x,dڇ lGr~gNR7dxdF.&gڽ!'o Czx׌@t./nĎi+Ĵ<4X#jaR F%. v/z*9bq(Y@V!sE'?țFqlQ׷Ve=I"c0C/F#[B wE0ϭ+*_'xpGTZ+ <'/.p9UId%q6H$5TE0uwrK/r!$'IUT. 5ټ~ψ}+*u^q|62=iSVIvř64AY`[O@: wΫ`jqx2S;&8{']:TWޙ9yDs#JL^!3{mx <se8:P$4H)gثqր_9rX;=#G:"r|dV}zq(' &b0)jw-ܯWZ=IO{D+~#mNm`L]G+[k>,)0B#y ujp ; V>diUkY~m g0*E ZJ$w,0ЋUYw`A}&N^”2F\04 P[4"⡏:YW3Cf+! \Iբ=#uWi?"V3h<zSգRmI ymG"*UǢ*9ٝ 8(4 8ʨzQUY[GQQt]W )EhBsc|PSQT0rOu[‘.wɠO^)g8R4í'k-vbc58O^5FW4))ib0H4H 6 !g<Y jչ >o@iLV_Zw^pOR x&$9@0j6fCx%ƦP-zķ$k-7Jnͧ&OBc6lo߬>7 7X9#¥k*xCn7tQ+E"]?QNvp+5XϢPF *]}\>UzF/'/Mԥ59#gpo~3a8]R^/K\qJ(u}m.!Yb,'J6S}1o *̡k/=,hѬ[j1K8n/<SӯK$kI8;ɤ. ki%( < P}"LJ:S'm@0C$|--9aaXV'uͱ/zeN3\` D@p$^4ݻL#H NطRj/Ϗ*{Ӟ;; [hv(

&|=;KA:j9bgA\dEMDU죔'(~o_K@ʹǁe0޾U .0-(O0m]>FrvP9!R ncEqT(垓# [){] SZ6'?U0sqpfغӪ6GqtA,KNlxf.lE$ v-]M\AD3y&ARˬ(P 8 yvEݐȢzC .IuA( jhUlvn(- U__UIMlUh=wBy&J̷ShUs}tI>ˡdY]] S4b. Oe*EtPt﬘oEc^#(5' EZ;#%)jy4/zٳ:8:ޗ6ZcQW2 C6,lY'N%\` V;esƓ)jCclּ,7=F.&Kp-֣yl/sFǨNSA][FBRD!L h28J) Ttm'e~(.I&9] ٌ h41wXqxg1u<`WiOil]~XQׄyd %D{Y33C4j)} uiuN籨bm0p?,qkR`\)Ҡ\!1lWZLh!e/NueaTxC,RnC7ܡ!|0k$Ag)d9ȓQDg##~'zzHjg dlKFҍGHfRne|=ZLr(#`=C\ndN 7Frhk %ʁhX|xH-+D :>eO}s?pC1ǶKMcJX`0Q:mMf.VtE" lMa{f 27 pHp뀠}^OYftaKAˌ/់B#|i>Eh+1>Qz_Dn ,Yk|yh~tu-TKƟ d ãSuDXr0AMZS5^&*k"pJ *72BTȽOacW"@OO:Y%fx-"5ibg )_bu/ ilCK;Gݗ udY:zÕ]gnN+,i:ivNe2]ש :q4@,# ?[ó>wVwUmlroy5^O׮ЈT~M; Gۤ%KE7XP4D'?/I1Z $E9cT9lJ 3{tצb3ä%zX,ᔄ 4AʂzNri%9N*1ߎݧ|+i.O(0>N^F,ΎL[޿EFC_W ԐuK2ݳ ;]CFOS6]FvL qAax `yuAa bhPU\kG{o~eeɋD!JcR*cvSlzeHF*z~mU `#gURS(3բ!o³l*l!v1~3ҮzDǓ`4HȦ1OD3H'@|ҋ2 !v Stw?+d@'=<66V7YГ2иE/ =fB(sDiL$WgLk y8U_4-^8eJXV-^_U07(AvM{+D0C'n(F5}08}@}B@M+PB~+i;äaVC<4]4<b%ΊqT寫i֥c֛9̞I]5 M/ te{yZPt(U5䂡7h?߯[TgM=7my]Z#2 Vjxx f<;g1\oe9s l/ q:gcm>u]3|Ֆc7ZSmMroUzk;mlf)F $YƇ}IiJ`(Vk;jqͪlM$n^%g1GY*_+r12YslN:wC&+x$诗5Aܞ5G)@Aŵn!4EXPRzE :rsNODzeXS:NYܪ' {BGK$S/Zc?LZ ~0 1_i R i]|MZE21$dYgY݇O>}YgݝG''%Ʀ8ˑ=]u:Dh&k̀ SIgr;2yP/a/]*c@B 9QȃR1IŏD(Y-I\>B(cUcD/+ZA] ($IY;ʍOk6ZOUǑS!𵰘C3 4[gMpMc!WdL޾4"-kiH 䋛QZS[mG?eTE `[`QgKl2AHdyo fX!(1Bn k~95I28jd<[:@bA~ffm$\ P OD8W,rTߜ)tscWL;{$Ĭ#¦^g=ԇu_QDAZaZk 鸿u/.ݝ#6Alo̷-B*"nJu,J:&Sռm% K$@`k*$K eD[ I~KP'3 $'0-Fr56 G㐙O2)cܾ9~XH-06PkA9:o/^N1oO~8zųӃniOX~{tk|tp?|>n{>$H7Gcn Sk7F#L(HM)%W˓%Sc 2U^/ey8$KA3 *hńᬔ lKKa?|ʥ^B, qkĊ>4/ SY4*{%QP6u_j Ҩdf*aTt/#ڻ[3ګZ`{n)vXd-Ap% @-4k3&eYJcQ٤/p>7E崤BTYpJ׼ ҤM%ϩb w!AAћC *"A# XcI4 n-k|(AV='ίf&cfC>?IYyDC w#ť4P 1"͖q홍>HMg=3]lI F5gbpM;{ ~T}(API|6_dy+sI; & 8/HF1K'14C{r6$[-p+L>̇{PX*o~ >Ⲫffok".[6EzȭQ'A<(!gٰ,L14,OF<[x'l/-ӣў: t^!P>[$o$>}̮%"Q0707010000000c000081a4000000000000000000000001655266ee000051c8000000000000000000000000000000000000002500000000./usr/share/man/uk/man5/sssd-ad.5.gz}ysǕIQ݁DZb"4 C(t5ᮆ$lH РG,Ϭ'±nh|7|Gfʪn4)$GV/{p慨50Z2iZ+剕b9u:/4jcGHI3n5ʯ5F?M֒t1IZi^ZF+0(ϩO#5 sqKԩSgFO>y+5w;j{ 5Zz^Q:PoSfY .xAvP s/D/Ud^?G gGQt.֓(m,%rي窵jjVIYQVґJ2W#ٱ_z:V:P_fy^2Z.4~28Th◊_$5"K ӤUx֊ͥժjՒhbR[F}`+i:_-`\VՒV7Q]+QXᭉ /_>i:q=fJKoayc43u?WnpU]ۏ#` gx7oF喢\<~7z_2X-DPB/_7`X@ÏoI۹lo>\77հjhxz@}j/8 <3?9ߌDqj&[D`_j ?>IܫV?^ϝe sS>Q7`/]6:{Og[OԛegPewO/mܨ~?,:sH1p&fwޅǩCƽ<~fzx_.lYw,Wa}h3?}:*lmGaxPq|2?V>bqh"w@jʰaj"؁'whwj2@ouVqA -QaVބ'Q RMmNL\=c=I!<-Ox:%IwamX5c<>to+p>f{ H g #pppj~mT 6uqt┺@j=[TdS>M>EOgIs.i6Rsc%Qjwhj;@qd?X^mh*YJ4y:Rz#:9p1\6 Gmgt#x^rx戛WmұKe&}R= k8Iy<2 o6khN.%Br WKf-6D#O15# ^HPr"jUGaa)2̈$ma-l:(Zu}M*hoXE152RUe|/6Ȱe`3n֫mޤY}n(W r< 0aVXq$ 6iL&!R2dsm-5C7pݟ@EY#\HJbuIU:͈&c>|QngG8:[IPčp@(4gMc!)m_`ۼנeNG.ʢs)R]RJV2RJ'WJZ\;og4{K:kJn:8z**^t؛;AdU-2Q3LW*!vqx՘OpUk}=}}2`ęhXmE W 9[t՜gj\# 5/4?Q;_é)KbZ~/VQ.e$%^s8K2QCǽAƾj/EoHsoo;jS<%.6ldF~Fm=u}"n|OS0Be' n/cI>*mO,O'&@tѷQ8Z~MoHmV4\G3<3029802/#`j}!z5i\KH702_u8O_W=_tr .B q9_Ek0~e4p۴úo:,F;n_t 3VmwCOm Eq/"N@_mOh)2?.qҨs)x[o3, f>R;#ّoy<%+]<$Mo >H8 Oռݠ޾ njE k5]TvЪňh1xsc=vM73pv-*⦚[ޞ|C%#%Pb2;_m-ngbw5{^_/Rӏa.pŶ.dy70Y2*vWexn ܷ2$\}G<ЏH6#3XjSh UvZ]E/@48.IsY:M R?*봫.aDr0;W_AJm>ʊx^ǂn# GGsӓ-m1q܉>_Vwޙkg9'xL:|zfޙ̤?>-.ʇ<Hi hSx̞ ^U$9`W{c0|ޟ3~n)̬15ڔkl9i"U.C5^68˾־xW {d6P| WK_=敚{&Sv٠Ud@sUi#ՇL̓ZiWy6X \WfHQr·G ڛrBy-5o~QfR\ l\?qJlWѠ]jg>, :x$˘dİOǨڤI$/}șt`'?Us7z;J}zluh*?RkF3bO1I!|ox ;Ҷ1(uVt@} ~Rz).Fl|O|wYSn:$4!ʍxf8MfJ*Y|<P}B6#ޯjQuh&Q\7TWXM27xkӤUb5D%My=|6Wħͩ'Wk0]}V`çHWaQg;_fXi6IE5h/6jVVZIPI[0*9>(5=[Bj5W`/xR{a'R+Pqx?y8W׹d.b6.qD:ʊ~=l;{ux'ͯFi\K`e$ u#Jj_/Bqe:;+IS\\~we_ oiGuT(Zz wPړ(p%lE[OXȷHUm1ZP;)lkpêOa3]CqL^-|Q] }4נ(?P'!@U<Bkzc`g  5AZyuKby~}RU8c `[$R2h҃q17΋jtޤ6(V h_|[VG*C +ɥc ך1l]1Iq_74wc7 inHAkX71Ѻ FtSqF< :83{fy.3*0a!oCCGf$Ĵ ]@ ރ`QEXۧ۸"֑0N Jߐ?~9nGg?@gQ<<#a$nj"Z,˓秦x# ~ьF#a5TaŜs08dB;h}5GDM߰8J 4-"]С8\s QC#dx풷]ze~(g)Bae"߫atsƵ7цmБ2 M 4+$4sxtDw$CkȈ|Xi!BƁ@( 1~JʋcSΜ=S㌅]G`1# gɢcw8NqA:^Fsaʽ- Z) G7\su!ˈD%YcA![SW>KdP%ے>dOތm9 \.Ȑ!-B iMpGEm_5SW$a?B!8'zzهmc=#L9-\0I#t~ǔ#B!2xK@ŃZ9eYv5N>Ix*Ir$H1ȹ`v)` 7*4PM \C[ 0t#7Ԓnʂq<ħdi.i^\5,UiB*WSo44L }MN5|+ϫ|]Mnq՞eLfM^`DJЁCKR4 U[I_LqaE%@BYr;d>#{[uNs<= ~]Oc{ƲCD f3=2B=it[譄Dq(nߨ5Zz܊k!$;;CaU[ nQGJ_*B7L; s~p dՒ y׍["Qqò-T,5mDйGg6w*i_BL{`ϵ| .:c1ɼ\,ߝp`n6nN,893ǩ/Ssx+g\H\?|a}FlԞ͉~ Wd @rq2Ge,+ǹD1P4۵݄~s:-8dSfe-6(1w}`[3%€U0^ .=iB4ۼzB" Cq]권㬑^md#r'bQLؾR/s4rxA[g~Hz%ioĈEw䶘DL@"{eC5==z 0=i =B3gN^|q@uluF1@6={!u_GBj8Te5MWѳc/DQBJ3U 39X&ְ͕Ba0q//HA-^XHuS3مY8VإgRQiD)6&xvq&IeqKf],d8{c,.0qL-sn{8 z3\xՄ}3?{3s+LI r4|j`•>9O&qex䂟hR2$hWzyw8_v G*ef&/칩fL^r~rHhW,FU p sȄ̏Hy@am[5h{@ }.\`*G:dT2yjo^nHIsIiPJ"AB<(C]csC+I/nM(2obr}@4U>PhcԯBiMcZ!fG&y3u͂-r;F!FIҩ,]M9l(Ѳ:v#iƪ9'::l否QYL$_!Q3%(p=}rFveNYHu =|ǫyqS0Nۗ&/aNBx'_ֱm!ߓ؉M/~+H2 [~Xq@'&iϼdNwl,ʼn*HDa ip0塮TN6)Dl#c"Sl뗑Fa?dž wHCuiYl%_7\@! AwbD8A W9Pn$%Oȝ^*P5^i7ϊ%=h^gp/(>J7CތgFT U%e65 t ]zC{!r$TOzQ_swh;E sUU8 iJTI&oms@q8TRm2qywm5~\w G6tXgb&c:sUך[+8;cP{2I8f"Lj.\A~DG!Ώ:=5jsV<78>?ʯEi? V"bh`_pZpsqNyTWs #8?TQYs<_wf&VR.pKo'@=~M:kO=a 6g-m"1 ?/:_.%aglq|;^l{hETǎ`nr?S"\a9Wu2͜hF M%G/Bn8?_\FK|+bIwچxNl LPF -Ssߢ~<3l<#h,[尟R X q!,\4  ¸GÑmn53|$NȨ3jJ*3+ZT2#Ts/D߫jYIZk^н"j^H1^58~|1q]t?d9Gq]$aS^ԏpcƑטeѶ]Oϐ[+u;MCy( ~٪ۢlb_W{}%yWIdž++=2Zzɪ-aaċ܂~bק8֞l%׆uʁ[ozM+ ߥݡ= Ǘ3p(4ff7ԌcOǬ; ;~u,t`aPQYL7(& ${K+Kb@Ro"BRX.wKpVbѶ*qZ7㣴GC@91rTwRD F5pL܇HsnbvsNa9]Et*553}ff 9fROޏkVzF"V+iKDl7;YM%p<&Vi?Q`f8#7`J;b`\"&Lޜ@r[4݈lR!>ϪyS-bSm,'A-P1~V03,e۹c5]EwlRwP4R½gǢ/FXBpO$KNIؕJ Bs/Pm< Hv/q/kaw myMm3!\Ц`,~PǙE}6ءnn ;@7l?-UES `s4N3Z^n>rޯD&JKQ~Vpw.ٴUٵ7&Dg^IM7jbyy+'o`%t'>t3 PtRM˘!'\# *i ?zvIm%vBε`:m&.155q傶K3SW.ro.y=EuȑR!t *] iPR=5g.Pi,,V4]@VzT7^-u+٥oƾ)#.-éN_Δ "FiY}q~MWwUk`δu6Z0jFܛ5vQ&c^v MZpպF~_K6Kn)a touT z" J,DFF~=krɱq-tڢC]sz@s]r;xA7U_B~hFD\M2H*,nK[_v3\h6rѼZQg[]%#>~Z!w۟"v 4 ~J}o R_ƞϷ[P_Hq?ǙI$;۸ۜ.O!*)17%lH |GB9fMy<4ӼP>_Ll.ۚFGϱ W.O]Z}z4W>wշ84ɰ(lsh1~4Sr0WW~,,j$>Z9CZ"GFj@/2\;&\Mޡj|RnV eڡ !%$L(N$HNsa=H7w}|*]x"l<`^JBV"Fo϶3/m'ô5t%jWߡ a89b}]ALaQu\>&"ZC)EMm[esSS)poV5DJTGR/*pe7O:[av- Jk浝(P)Fe&]e6Gz[ȅuɇ&qy}T@*t~޶vc(Xj֩zؙo)iI>ӥS={tv16㢝1Aߏ^snHi@љ̝9X(HAo)B<(ae/ [;˭fO"&Ƣ:^ޱWj#W'P],PLj LyBB5Q0I_BŸUo+|T]XR +$E q&ZY)/FDqjA'n JjW$Ω^Nf[:U/txj= ^n+"Ug H+gD4ԓ̴qf$ ܥx޽0J^öFgܘ1sLtYmMAC(p=4h墾.huz-U%6rs* X"MHM9Y]9Q.z)oA0Q#veB؊! ILA%3H"\}t9Orק5%h$t{6:#jغN^<0Ҫ;B $*-|!wu[O %QN6o`+f5u@ ]e+R9#9*FW2tJS3lr6;h4{/\yEM9:Kxo[Xk}OO&C2g=>qb6[lV+bc)T,2ijב>h7(vaP2tkАywlAF#UD>@T) vPՎ`~94VW p'cnhV" ;>1<% צ"Uꁯo_ Go+]iVr\.)SKYߪ g{r`Nŀ]DT&w7B"C~wT "NƬe-gb>.poߴ) Hg,%`%3MWҖ:ه@u\-ľLYC6}l7"e,NhWQqTgO[jx˜ytD::Ү9A@x*e2"QPQkisQ:А4xA,*%]6wGǠ.\(I+Rm!Ɂ͝UQI&8Xdhl'{#L\D#]^pl?"t_,e~RW?Sv./:M |`U\^,m0l h<0d=iB d;?b @ٖ)qXS< p-a7:0R]P0;rk|C&HH Qfݲw=xi||ǪYC?a 89zSӷLH=z,eceI iebTHŀ!5%XCtCcqyjI=[V*d.+cSoF/(Z!@/_$}^8P!`m &|X3e"j{C X*B-QbXqgy1e $!b B5N %ms%(&xmtt8Fƀ[Rq|.#kg_8jȍދkU.*B'}XnVՏDO=np̻Hߴ,jV t'PqeqXE3kK'*TX^5Dimv)"KLR4{9զ]*~$ |g!jE=(xk #_z_I\El)(n$>=N|OUx,@ kpc'!u_S"Dq N>,od7=B*Yq&4~=瓁k|"\045uY\\~7'(<&/;$T]H M%8_t=vK\yVҥUh8N+O;))_HXи+E ao:8]i"N#( mi-r!e2ntH}k(ƶrK`KFIeon};b8T5Lގ$ Bmntm9]|[C5r*R-!VL}0!Es2Y<5Z6f)n@M yWSߒ`NOur YS)`Sw)tkG/ʐ]} [ Q'Gܢg[޻LI'* fU_=<_QalZ3Hl"0#+B EEH"#}؀[ea_p]`gqdtP5|PN9lWyxk+sRGߓ"J2BOl#&|P"ȋ%geL`}[\w2zc.mLUJC_|ݦxbd؏Kޝb $tѶs_&HA;W_Iٓ E8l0bA(b'3N)ZonAy>u(gN9fP7)lǯEb|5<*tJnMa'\w8SPz&Jx•0dXr%w;ŮiWȖoRi*>< }; ,ʂF?/8J5Ij#YX-Ώi G򡩵(c;B3`hS`(j ~i# ^& uE4l=́@<(/L44Pox|U23"ud-c]p)Sirkݴ8Jĩ16V?'^`s:32>iOm}zc8}>K,,`iFioVqʑ|.p~Ui d`}W鍢&i^dVu)i4|~ GGګb< $w2/^1o/(_2M } lKV(r/[ xjllf n,nnvS7Ns 5Ln+u3Pc9D="4US7qzM8 +󶽬h\5Gy{ESM*\o(=|J^ /hXrTr_LY2huiXRss`ʺd"sƢ)nxUdX+[\IӢܶuv9KYa%6{ךrmZTȵ͓0m.)T`ꠈ kEٖam,ցfQ[8~^d*>`gؕ\ #8CTZldu ,x(N&cz͉r4^7Lqgk4,؇Vjf26xuQϓ{(}tՊzc냜/*}di9h2~`}\PI 13QJZWQ.( 'T!7EKa3)LQj\$H46ߛ~6*k{yCGw؁ pШ@/E㴿#]$`Ͷ-5SO/?S254z="_5d .i*\qDiDgĕ(YȢs'+9UeH5}{HO Vk"b.dFKq}(rŅ-2P7KDA*[Gg\i8|/dN}!\ﬖBKuh;_Tĉex8V>T]zG_~M>ā{&!)3Uh΢sOA2ob˖/J-_7lmS.^Ba( g3W8`[1!TTrp۹5O8wgE3qwN@uE񲻹OKٽ[V.,%Mߚximv.o`NphC*ShJ-YΆ3 t.ɠn(/LmN`cK$64@܁9`*r+\0(8˹?3=̹X~g @6y+6B6+6d(,H ):OմMRGR÷KMT<˶Z-y]l˙e#JMپ0 J փGorɝh0ev<l+.|0ǰ8R=hvcD;"xd\IȠ@Z Nm].VNI#1rQ\iq({xLM:2dMw8/Ld&?Xr'h%/ 'ںxhߜmmdrdeZ֋KI +-߱MՊgi25u\=ٸ`ɸ(RN&,hH"8 C;jfv"D;n/ ~T!mq5pn۱}" iƍ'B+p~&5,j(2 "yd$1^m"b WEk-%' (ۓ0h8F! O_VK'lz{.#sZRg54@"\m}d) jINLVEWC4#gu:toYOjQZ~5mFN=z _󛭕ًʞw[>'gQ& 9xCiig2nFe2^؂BmH"3g!}N)"9kQ;CL["3[@.',C4y"yجB,u?;IJT;Dh?=:a C\3*idѓ3eqeMQЭQ2vnNܦ'NlKRALn 1Ǿ[k0@.mߴI~V2=-l@jW,uPuR9;&$1L5]Q톔LQA$յ5٪vR@ {=UݚH {;A?*4y}iaK6 +յ :w1aY)*391zSĢ@ @ X3sA/(n7wOOfժڅ_t}'C$;g aClp}g Wg@J s@I[066<+K8N*M9屈G?LSs`T(쭾,"\i0HpMNr2<_Sfk^k,яO i]h}=DD2y,A}.UGh+AjCԜ1*3Gnest^*e?s#o:,O.Mvd8SҌXk/z RuWٰ+xX!_,훬4H=-B_V>2.6sz~TC,:VaƭK& .NoG΀b/f o%g١ ("uӰ )('\DC>\&0싮NJx ܰA'/#?S<@E{STc5R"򋧱eݖb4o {~ MwMCu{qۻ3"g]a;iFTn!?i\7,Ŗ}]7um YnKge*`~jfv3&KcUjxc[5yr/ݹ}jeBjYc+c_Q8 8WB{]j(Cb Q{bWd9kv=:7 ^^fcяSCم~kJJCm@2?m? Gݐpyǻ'4kUQ.cX;;Nl s?1Di`b}&J2ZWOa$,Y5Cl辛e<77B>غiCwi/;e8LFGʯKfp.n) a)J.KA ӤsUd3{3N-^QZ-7VR0ǻC(N cJsD?HO"ESs*7.Wt4i2-Ux BBԔ߯>_LQkFVQOQ]Xi&RDFWkh.ZQ[I%J[q.(UIOIJTIK uzz>(TĸϸiJm*Y±f˔֙kT$J$ %Hq(GUDmn S*/L@[g߹rW>o5²ҁ3p]NuÐlȭBd}^&.cZLj5?j.'>գ Ζ2-M=KVY_|ur3Ň36_bwVvk`J *akh8ao,z=}ݷu 5lc}x4^j9ax@4VSVƘ=xl nsXSnSn;[?K+JXi-*-uu@Xsbh*';S]TZ =S:sn+\';/jJIƌ9'0o rNyK4nɞ'hnَ_[Z3պh[n9xx*l ~,K$> 5nYxiQ`Õ۪#~/`,/%t](ш|-2r$s\oе71"q߼y~bd護&.!8/>1}'iWG.Y$Uب3-{H-{<~yNQ55r-Ztr-g9pv/LkݳM$}m/s `Yzo]xjevxZIKrދ8@\hJ"OnDVMЇ_{XyhU<]f%IqI9/`&6`"w"s;Z HH2pʇ?!#td@9k_1J,o4m9 pY^IoPc~ɟs+vKzՊ,-s{{fv8FReP M_g[`qZɵW$9BcY ktufrʗdz=Vp.WdԮd3@BO_?}fh^MߊK2"Pz:z ѺS/#2އcy۹itԧ.\o5*'} q`.ƅk!B ǭV:JRwsg*JrWW櫵3ҕJ#bpF}Xmbs8~̭,ԒFcn~% z$‚g1dh.Vu["6W?%w.!>.( S?=e:/b9^R_axr]Լvsdȅ4)Ch y[Þm'tDx,Zr L5jcb<$e&y5bv4yM? ITtdZn6| Ѥ>_Wä*Xo)4 Wѥ/$+u%V\b*c`ғùƹ⭩sS`I*["Ľ<6RVkͫgμH.s9ȶ$07070100000000000000000000000000000000000000010000000000000000000000000000000000000000000000000000000b00000000TRAILER!!!MVdUh)swL4@g:B 7y YZ