sssd-ad-2.9.4-2.el8 >  H   (,e U]Ô"~B{B 蒄Jۍ$MeDJܯsٜ:׈KtKÌKYu m}֞s=`6:$%{{1k$|8D*+GR$sKTlP" CIbuX$D$#7_qj$ۦ[a*4Q4pUf RxUs%ku` 6QA*nP&g`SnZUWRyjz,USn9E|W 8`[TQҵ6UC5H||_? e B+;1B.ۋ|0b9WT3X`g/_w\`<'ڣ$<_-STh=ot5+@2Ń9DJӵ?KKv᯳Op+-Nk4:MJ:B&B(){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 U];U IJ&D^ϝDިX[dhJ6A{éXZ*k^؀$z?~W&vvT%%'{^ u}?9I2 soXfn`3I M`磔%sWN_}]hNu[uCeH+!l9گR)=p.U[Tt6g[ӶP$XgP7Yb@juiQE@hͫ=x$]q'.<%kf1 @8*@s4St+zjD}qESt_Dz!Y I}V 5" b)iK]gq=s$6 `E4?$d   2 ,IOX            P    PC\C RC   (89:hNG( H\ I XY\ ] ^ bdeflt uP vw x4 yhK Csssd-ad2.9.42.el8The AD back end of the SSSDProvides the Active Directory back end that the SSSD can utilize to fetch identity data from and authenticate against an Active Directory server.eppc64le-03.stream.rdu2.redhat.comCentOSCentOSGPLv3+builder@centos.orgApplications/Systemhttps://github.com/SSSD/sssdlinuxppc64le&'D8K:N>nQAAAA큤eeeeeeeee+eeee2ca9cb16ec10984491c48b10592c0b8babaaf7485a948cbdf0e0b47cc2474eab93b76a3e277a59252830390e10f72c110988e555c860c39a8cf555e463f450158ceb4b9ee5adedde47b31e975c1d90c73ad27b6b165a1dcd80c7c545eb65b90313fe4a92ebadab7af11866f7c61ce771c631cdea58fb90fd010a34069423ebc38df69abf102e37440ba5cdf6abce58901eea8a20d61adf01aecfdf02cde52d917f9b1f57008d51c05bb717f3a4ba27aa057ead6b6583ecc0576403ffcc82707e42c287364db50563592cd9ef5032fb6ce6898382020ae25979e68a2eb19bb335../../../../usr/libexec/sssd/gpo_child../../../../usr/lib64/sssd/libsss_ad.sorootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootsssd-2.9.4-2.el8.src.rpmlibsss_ad.so()(64bit)sssd-adsssd-ad(ppc-64)@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@    @ libbasicobjects.so.0()(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.17)(64bit)libc.so.6(GLIBC_2.28)(64bit)libcollection.so.4()(64bit)libcom_err.so.2()(64bit)libcrypto.so.1.1()(64bit)libdbus-1.so.3()(64bit)libdhash.so.1()(64bit)libdhash.so.1(DHASH_0.4.3)(64bit)libini_config.so.5()(64bit)libini_config.so.5(INI_CONFIG_1.1.0)(64bit)libk5crypto.so.3()(64bit)libkeyutils.so.1()(64bit)libkrb5.so.3()(64bit)liblber-2.4.so.2()(64bit)libldap-2.4.so.2()(64bit)libldb.so.2()(64bit)libldb.so.2(LDB_0.9.10)(64bit)libndr-krb5pac.so.0()(64bit)libndr-krb5pac.so.0(NDR_KRB5PAC_0.0.1)(64bit)libndr-nbt.so.0()(64bit)libndr-nbt.so.0(NDR_NBT_0.0.1)(64bit)libndr-standard.so.0()(64bit)libndr.so.3()(64bit)libndr.so.3(NDR_0.0.1)(64bit)libndr.so.3(NDR_0.0.6)(64bit)libndr.so.3(NDR_1.0.0)(64bit)libpcre2-8.so.0()(64bit)libpopt.so.0()(64bit)libpopt.so.0(LIBPOPT_0)(64bit)libref_array.so.1()(64bit)librt.so.1()(64bit)libsamba-util.so.0()(64bit)libsasl2.so.3()(64bit)libselinux.so.1()(64bit)libsmbclient.so.0()(64bit)libsmbclient.so.0(SMBCLIENT_0.1.0)(64bit)libsss_cert.so()(64bit)libsss_certmaplibsss_certmap.so.0()(64bit)libsss_child.so()(64bit)libsss_crypt.so()(64bit)libsss_debug.so()(64bit)libsss_idmaplibsss_idmap.so.0()(64bit)libsss_idmap.so.0(SSS_IDMAP_0.4)(64bit)libsss_krb5_common.so()(64bit)libsss_ldap_common.so()(64bit)libsss_util.so()(64bit)libsystemd.so.0()(64bit)libtalloc.so.2()(64bit)libtalloc.so.2(TALLOC_2.0.2)(64bit)libtdb.so.1()(64bit)libtevent.so.0()(64bit)libtevent.so.0(TEVENT_0.15.0)(64bit)libtevent.so.0(TEVENT_0.9.9)(64bit)libunistring.so.2()(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)rtld(GNU_HASH)samba-client-libssssd-commonsssd-common-pacsssd-krb5-common2.9.4-2.el82.9.4-2.el83.0.4-14.6.0-14.0-15.2-14.19.4-3.el82.9.4-2.el82.9.4-2.el82.9.4-2.el8sssd1.10.0-8.beta24.14.3e@e{@eReRd@dd@du@doMdbc&@cR@c|c_cc@bbγba@baZ@a6aɪa@aKa@`.`@`[` @`&m`@`x@__@_@_#___[@_?@_-B@_@_@^@^@^^(@^oj@^ku^Y^S^J@^C^0"@^0"@^0"@^@^@^@]f@]f@] @] @]+]]Y]Y]|@]o@]k]k]Y=]Y=]Y=]Y=]Y=]M`@]M`@]M`@]D%]D%]D%]9]9]]]@]@\\`@\]o@\\\\\\\@\>@\>@\>@\\\\l@[Ѱ@[^[[ā@[ā@[ā@[;@[;@[;@[;@[;@[[@[@[@[@[@[t[#@[#@[@[@[qr[;e@["XZZ&Zw@Z Z$Zz@ZyZiZiZWQZWQZ%8Z@Z@YZ@Y@YYzYKYyYw2YRHYRHY@X-XX~@XO@X}@X@XX6@XWXOXXWW@WWW@WWv[@Wi,@W5W@W@V3VVVvV%@VqR@VO @V<@V/g@V$@V @V @UpU|@U4@UUUU@UzUzUzUL@UL@U.RU@TTT@T~T8TܕT@T@TTTq@T@T@Tp@TA@TuTto@TG@TD@TT @S0SS@S.SP@S @Sg@SrS!@SkqSkqSG@SFSCS!SSRRpRpR^R[RSRNREs@RD!R@R@RNQB@Q@QQQکQQQo@Q)@Q@QQ@Q@QbQbQV@Q'@QQQQnQZ@QU@Q0@QQQ@Q@QQ @QQh@PP@P@P@Pz@Pz@PqnPl(PaPaPS@PH@PDPM>M2@MMzMx@Mj - 2.9.4-2Alexey Tikhonov - 2.9.4-1Alexey Tikhonov - 2.9.3-2Alexey Tikhonov - 2.9.3-1Alexey Tikhonov - 2.9.2-1Alexey Tikhonov - 2.9.1-2Alexey Tikhonov - 2.9.1-1Alexey Tikhonov - 2.9.0-4Alexey Tikhonov - 2.9.0-3Alexey Tikhonov - 2.9.0-1Alexey Tikhonov - 2.8.2-2Alexey Tikhonov - 2.8.2-1Alexey Tikhonov - 2.8.1-1Alexey Tikhonov - 2.7.3-5Alexey Tikhonov - 2.7.3-4Alexey Tikhonov - 2.7.3-3Alexey Tikhonov - 2.7.3-2Alexey Tikhonov - 2.7.3-1Alexey Tikhonov - 2.7.2-1Alexey Tikhonov - 2.7.0-2Alexey Tikhonov - 2.6.2-3Alexey Tikhonov - 2.6.2-2Alexey Tikhonov - 2.6.2-1Alexey Tikhonov - 2.6.1-2Alexey Tikhonov - 2.6.1-1Alexey Tikhonov - 2.5.2-2Alexey Tikhonov - 2.5.2-1Alexey Tikhonov - 2.5.1-2Alexey Tikhonov - 2.5.1-1Alexey Tikhonov - 2.5.0-1Alexey Tikhonov - 2.4.0-8Alexey Tikhonov - 2.4.0-7Alexey Tikhonov - 2.4.0-6Alexey Tikhonov - 2.4.0-5Alexey Tikhonov - 2.4.0-4Alexey Tikhonov - 2.4.0-3Alexey Tikhonov - 2.4.0-2Alexey Tikhonov - 2.4.0-1Alexey Tikhonov - 2.3.0-9Alexey Tikhonov - 2.3.0-8Alexey Tikhonov - 2.3.0-7Alexey Tikhonov - 2.3.0-6Alexey Tikhonov - 2.3.0-5Alexey Tikhonov - 2.3.0-4Alexey Tikhonov - 2.3.0-3Alexey Tikhonov - 2.3.0-2Alexey Tikhonov - 2.3.0-1Alexey Tikhonov - 2.2.3-19Alexey Tikhonov - 2.2.3-19Michal Židek - 2.2.3-18Alexey Tikhonov - 2.2.3-17Alexey Tikhonov - 2.2.3-16Michal Židek - 2.2.3-15Michal Židek - 2.2.3-14Michal Židek - 2.2.3-13Michal Židek - 2.2.3-12Michal Židek - 2.2.3-11Michal Židek - 2.2.3-10Michal Židek - 2.2.3-9Michal Židek - 2.2.3-8Michal Židek - 2.2.3-7Michal Židek - 2.2.3-6Michal Židek - 2.2.3-5Michal Židek - 2.2.3-4Michal Židek - 2.2.3-3Michal Židek - 2.2.3-2Michal Židek - 2.2.3-1Michal Židek - 2.2.2-1Michal Židek - 2.2.0-19Michal Židek - 2.2.0-18Michal Židek - 2.2.0-17Michal Židek - 2.2.0-16Michal Židek - 2.2.0-15Michal Židek - 2.2.0-14Michal Židek - 2.2.0-13Michal Židek - 2.2.0-12Michal Židek - 2.2.0-11Michal Židek - 2.2.0-10Michal Židek - 2.2.0-9Michal Židek - 2.2.0-8Michal Židek - 2.2.0-7Michal Židek - 2.2.0-6Jakub Hrozek - 2.2.0-5Jakub Hrozek - 2.2.0-4Jakub Hrozek - 2.2.0-3Jakub Hrozek - 2.2.0-2Michal Židek - 2.2.0-1Michal Židek - 2.1.0-1Michal Židek - 2.0.0-45Jakub Hrozek - 2.0.0-43Michal Židek - 2.0.0-42Michal Židek - 2.0.0-41Michal Židek - 2.0.0-40Michal Židek - 2.0.0-39Michal Židek - 2.0.0-38Michal Židek - 2.0.0-36Michal Židek - 2.0.0-35Michal Židek - 2.0.0-34Michal Židek - 2.0.0-33Michal Židek - 2.0.0-32Michal Židek - 2.0.0-31Michal Židek - 2.0.0-30Michal Židek - 2.0.0-29Michal Židek - 2.0.0-28Michal Židek - 2.0.0-27Michal Židek - 2.0.0-26Michal Židek - 2.0.0-25Michal Židek - 2.0.0-24Jakub Hrozek - 2.0.0-23Jakub Hrozek - 2.0.0-22Jakub Hrozek - 2.0.0-21Jakub Hrozek - 2.0.0-20Jakub Hrozek - 2.0.0-19Jakub Hrozek - 2.0.0-18Jakub Hrozek - 2.0.0-17Jakub Hrozek - 2.0.0-16Jakub Hrozek - 2.0.0-15Jakub Hrozek - 2.0.0-14Jakub Hrozek - 2.0.0-13Jakub Hrozek - 2.0.0-12Jakub Hrozek - 2.0.0-11Jakub Hrozek - 2.0.0-10Jakub Hrozek - 2.0.0-9Jakub Hrozek - 2.0.0-8Jakub Hrozek - 2.0.0-7Jakub Hrozek - 2.0.0-6Jakub Hrozek - 2.0.0-5Jakub Hrozek - 2.0.0-4Jakub Hrozek - 2.0.0-3Jakub Hrozek - 2.0.0-2Fabiano Fidêncio - 2.0.0-1Tomas Orsava - 1.16.2-2Fabiano Fidêncio - 1.16.2-1Fabiano Fidêncio - 1.16.1-3Fabiano Fidêncio - 1.16.1-2Fabiano Fidêncio - 1.16.1-1Lukas Slebodnik - 1.16.0-13Fabiano Fidêncio - 1.16.0-12Lukas Slebodnik - 1.16.0-11Lukas Slebodnik - 1.16.0-10Igor Gnatenko - 1.16.0-9Lukas Slebodnik - 1.16.0-8Lukas Slebodnik - 1.16.0-7Björn Esser - 1.16.0-6Lukas Slebodnik - 1.16.0-5Lukas Slebodnik - 1.16.0-4Jakub Hrozek - 1.16.0-3Lukas Slebodnik - 1.16.0-2Lukas Slebodnik - 1.16.0-1Lukas Slebodnik - 1.15.3-5Lukas Slebodnik - 1.15.3-4Lukas Slebodnik - 1.15.3-3Fedora Release Engineering - 1.15.3-2Lukas Slebodnik - 1.15.3-1Lukas Slebodnik - 1.15.3-0.beta.5Lukas Slebodnik - 1.15.3-0.beta.4Lukas Slebodnik - 1.15.3-0.beta.3Lukas Slebodnik - 1.15.3-0.beta.2Lukas Slebodnik - 1.15.3-0.beta.1Lukas Slebodnik - 1.15.2-1Lukas Slebodnik - 1.15.1-1Jakub Hrozek - 1.15.0-4Lukas Slebodnik - 1.15.0-3Fedora Release Engineering - 1.15.0-2Lukas Slebodnik - 1.15.0-1Miro Hrončok - 1.14.2-3Lukas Slebodnik - 1.14.2-2Lukas Slebodnik - 1.14.2-1Lukas Slebodnik - 1.14.1-4Lukas Slebodnik - 1.14.1-3Lukas Slebodnik - 1.14.1-2Lukas Slebodnik - 1.14.1-1Stephen Gallagher - 1.14.0-5Fedora Release Engineering - 1.14.0-4Lukas Slebodnik - 1.14.0-3Lukas Slebodnik - 1.14.0-2.betaLukas Slebodnik - 1.14.0-1.alphaLukas Slebodnik - 1.13.4-3Lukas Slebodnik - 1.13.4-2Lukas Slebodnik - 1.13.4-1Lukas Slebodnik - 1.13.3-6Lukas Slebodnik - 1.13.3-5Fedora Release Engineering - 1.13.3-4Lukas Slebodnik - 1.13.3-3Lukas Slebodnik - 1.13.3-2Lukas Slebodnik - 1.13.3-1Lukas Slebodnik - 1.13.2-1Robert Kuska - 1.13.1-5Lukas Slebodnik - 1.13.1-4Lukas Slebodnik - 1.13.1-3Lukas Slebodnik - 1.13.1-2Lukas Slebodnik - 1.13.1-1Lukas Slebodnik - 1.13.0-6Lukas Slebodnik - 1.13.0-5Lukas Slebodnik - 1.13.0-4Lukas Slebodnik - 1.13.0-3Lukas Slebodnik - 1.13.0-2.alphaLukas Slebodnik - 1.13.0-1.alphaFedora Release Engineering - 1.12.5-4Lukas Slebodnik - 1.12.5-3Lukas Slebodnik - 1.12.5-2Lukas Slebodnik - 1.12.5-1Lukas Slebodnik - 1.12.4-8Lukas Slebodnik - 1.12.4-7Lukas Slebodnik - 1.12.4-6Lukas Slebodnik - 1.12.4-5Jakub Hrozek - 1.12.4-4Jakub Hrozek - 1.12.4-3Lukas Slebodnik - 1.12.4-2Lukas Slebodnik - 1.12.4-1Lukas Slebodnik - 1.12.3-7Lukas Slebodnik - 1.12.3-6Jakub Hrozek - 1.12.3-5Lukas Slebodnik - 1.12.3-4Lukas Slebodnik - 1.12.3-3Lukas Slebodnik - 1.12.3-2Lukas Slebodnik - 1.12.3-1Lukas Slebodnik - 1.12.2-8Sumit Bose - 1.12.2-7Lukas Slebodnik - 1.12.2-6Jakub Hrozek - 1.12.2-5Jakub Hrozek - 1.12.2-4Jakub Hrozek - 1.12.2-3Jakub Hrozek - 1.12.2-2Jakub Hrozek - 1.12.2-1Jakub Hrozek - 1.12.1-2Jakub Hrozek - 1.12.1-1Jakub Hrozek - 1.12.0-7Fedora Release Engineering - 1.12.0-6Stephen Gallagher 1.12.0-5Jakub Hrozek - 1.12.0-1Fedora Release Engineering - 1.12.0-4.beta2Jakub Hrozek - 1.12.0-1.beta2Jakub Hrozek - 1.12.0-2.beta1Jakub Hrozek - 1.12.0-1.beta1Jakub Hrozek - 1.11.5.1-4Stephen Gallagher - 1.11.5.1-3Stephen Gallagher - 1.11.5.1-2Jakub Hrozek - 1.11.5.1-1Stephen Gallagher 1.11.5-2Jakub Hrozek - 1.11.5-1Sumit Bose - 1.11.4-3Jakub Hrozek - 1.11.4-2Jakub Hrozek - 1.11.4-1Jakub Hrozek - 1.11.3-2Jakub Hrozek - 1.11.3-1Jakub Hrozek - 1.11.2-1Sumit Bose - 1.11.1-5Sumit Bose - 1.11.1-4Jakub Hrozek - 1.11.1-3Jakub Hrozek - 1.11.1-2Jakub Hrozek - 1.11.1-1Jakub Hrozek - 1.11.0-3Jakub Hrozek - 1.11.0-2Jakub Hrozek - 1.11.0-1Jakub Hrozek - 1.11.0-0.4.beta2Fedora Release Engineering - 1.11.0-0.3.beta2Jakub Hrozek - 1.11.0.2beta2Jakub Hrozek - 1.11.0.1beta2Jakub Hrozek - 1.10.1-1Jakub Hrozek - 1.10.0-17Stephen Gallagher - 1.10.0-16Stephen Gallagher - 1.10.0-15Stephen Gallagher - 1.10.0-14Jakub Hrozek - 1.10.0-13Dan Horák - 1.10.0-12.beta2Jakub Hrozek - 1.10.0-11.beta2Jakub Hrozek - 1.10.0-10.beta2Jakub Hrozek - 1.10.0-9.beta2Jakub Hrozek - 1.10.0-8.beta1Jakub Hrozek - 1.10.0-8.beta2Jakub Hrozek - 1.10.0-7.beta1Jakub Hrozek - 1.10.0-6.beta1Jakub Hrozek - 1.10.0-5.beta1Jakub Hrozek - 1.10.0-4.beta1Jakub Hrozek - 1.10.0-3.beta1Jakub Hrozek - 1.10.0-2.alpha1Jakub Hrozek - 1.10.0-1.alpha1Jakub Hrozek - 1.9.5-10Stephen Gallagher - 1.9.4-9Jakub Hrozek - 1.9.4-8Jakub Hrozek - 1.9.4-7Jakub Hrozek - 1.9.4-6Jakub Hrozek - 1.9.4-5Jakub Hrozek - 1.9.4-4Jakub Hrozek - 1.9.4-3Jakub Hrozek - 1.9.4-2Jakub Hrozek - 1.9.4-1Jakub Hrozek - 1.9.3-1Jakub Hrozek - 1.9.2-5Jakub Hrozek - 1.9.2-4Jakub Hrozek - 1.9.2-3Jakub Hrozek - 1.9.2-2Jakub Hrozek - 1.9.2-1Jakub Hrozek - 1.9.1-1Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-23Jakub Hrozek - 1.9.0-22.rc1Jakub Hrozek - 1.9.0-21.beta7Jakub Hrozek - 1.9.0-20.beta6Jakub Hrozek - 1.9.0-19.beta6Jakub Hrozek - 1.9.0-18.beta6Jakub Hrozek - 1.9.0-17.beta6Jakub Hrozek - 1.9.0-16.beta6Jakub Hrozek - 1.9.0-14.beta6Jakub Hrozek - 1.9.0-13.beta6Fedora Release Engineering - 1.9.0-13.beta5Jakub Hrozek - 1.9.0-12.beta5Stephen Gallagher - 1.9.0-11.beta4Jakub Hrozek - 1.9.0-10.beta4Jakub Hrozek - 1.9.0-9.beta4Stephen Gallagher - 1.9.0-8.beta3Stephen Gallagher - 1.9.0-7.beta2Stephen Gallagher - 1.9.0-6.beta2Stephen Gallagher - 1.9.0-5.beta2Stephen Gallagher - 1.9.0-4.beta1Stephen Gallagher - 1.9.0-3.beta1Stephen Gallagher - 1.9.0-2.beta1Stephen Gallagher - 1.9.0-1.beta1Stephen Gallagher - 1.8.3-11Stephen Gallagher - 1.8.2-10Stephen Gallagher - 1.8.1-9Stephen Gallagher - 1.8.1-8Stephen Gallagher - 1.8.1-7Stephen Gallagher - 1.8.0-6Stephen Gallagher - 1.8.0-5.beta3Stephen Gallagher - 1.8.0-4.beta3Petr Pisar - 1.8.0-3.beta2Stephen Gallagher - 1.8.0-1.beta2Stephen Gallagher - 1.8.0-1.beta1Stephen Gallagher - 1.7.0-5Stephen Gallagher - 1.7.0-4Stephen Gallagher - 1.7.0-3Fedora Release Engineering - 1.7.0-2Stephen Gallagher - 1.7.0-1Stephen Gallagher - 1.6.4-1Stephen Gallagher - 1.6.3-5Stephen Gallagher - 1.6.3-4Jakub Hrozek - 1.6.3-3Stephen Gallagher - 1.6.3-2Stephen Gallagher - 1.6.3-1Fedora Release Engineering - 1.6.2-5Stephen Gallagher - 1.6.2-4Stephen Gallagher - 1.6.2-3Stephen Gallagher - 1.6.2-2Stephen Gallagher - 1.6.2-1Stephen Gallagher - 1.6.1-1Stephen Gallagher - 1.6.0-2Stephen Gallagher - 1.6.0-1Stephen Gallagher - 1.5.11-2Stephen Gallagher - 1.5.10-1Stephen Gallagher - 1.5.9-1Stephen Gallagher - 1.5.8-1Stephen Gallagher - 1.5.7-3Stephen Gallagher - 1.5.7-2Stephen Gallagher - 1.5.7-1Stephen Gallagher - 1.5.6.1-1Stephen Gallagher - 1.5.6-1Stephen Gallagher - 1.5.5-5Stephen Gallagher - 1.5.5-4Stephen Gallagher - 1.5.5-3Stephen Gallagher - 1.5.5-2Stephen Gallagher - 1.5.5-1Stephen Gallagher - 1.5.4-1Stephen Gallagher - 1.5.3-2Stephen Gallagher - 1.5.3-1Stephen Gallagher - 1.5.2-1Simo Sorce - 1.5.1-9Stephen Gallagher - 1.5.1-8Stephen Gallagher - 1.5.1-7Stephen Gallagher - 1.5.1-6Stephen Gallagher - 1.5.1-5Fedora Release Engineering - 1.5.1-4Stephen Gallagher - 1.5.1-3Stephen Gallagher - 1.5.1-2Stephen Gallagher - 1.5.1-1Stephen Gallagher - 1.5.0-2Stephen Gallagher - 1.5.0-1Stephen Gallagher - 1.4.1-3Stephen Gallagher - 1.4.1-2Stephen Gallagher - 1.4.1-1Stephen Gallagher - 1.4.0-2Stephen Gallagher - 1.4.0-1Stephen Gallagher - 1.3.0-35Stephen Gallagher - 1.3.0-34Stephen Gallagher - 1.3.0-33Stephen Gallagher - 1.3.0-32Stephen Gallagher - 1.3.0-31Stephen Gallagher - 1.3.0-30David Malcolm - 1.2.91-21Stephen Gallagher - 1.2.91-20Stephen Gallagher - 1.2.1-15Stephen Gallagher - 1.2.0-12Stephen Gallagher - 1.1.92-11Stephen Gallagher - 1.1.91-10Simo Sorce - 1.1.1-3Stephen Gallagher - 1.1.1-1Stephen Gallagher - 1.1.0-2Stephen Gallagher - 1.1.0-1.pre20100317git0ea7f19Stephen Gallagehr - 1.0.5-2Stephen Gallagher - 1.0.5-1Stephen Gallagher - 1.0.4-1Stephen Gallagher - 1.0.3-1Stephen Gallagher - 1.0.2-1Stephen Gallagher - 1.0.1-1Stephen Gallagher - 1.0.0-2Stephen Gallagher - 1.0.0-1Stephen Gallagher - 0.99.1-1Stephen Gallagher - 0.99.0-1Stephen Gallagher - 0.7.1-1Stephen Gallagher - 0.7.0-2Stephen Gallagher - 0.7.0-1Stephen Gallagher - 0.6.1-2Stephen Gallagher - 0.6.1-1Stephen Gallagher - 0.6.0-1Sumit Bose - 0.6.0-0Simo Sorce - 0.5.0-0Jakub Hrozek - 0.4.1-4Fedora Release Engineering - 0.4.1-3Simo Sorce - 0.4.1-2Simo Sorce - 0.4.1-1Simo Sorce - 0.4.1-0Simo Sorce - 0.3.2-2Jakub Hrozek - 0.3.2-1Simo Sorce - 0.3.1-2Simo Sorce - 0.3.1-1Simo Sorce - 0.3.0-2Simo Sorce - 0.3.0-1Simo Sorce - 0.2.1-1Simo Sorce - 0.2.0-1Jakub Hrozek - 0.1.0-5.20090309git691c9b3Jakub Hrozek - 0.1.0-4Sumit Bose - 0.1.0-3Jakub Hrozek - 0.1.0-2Stephen Gallagher - 0.1.0-1- Resolves: RHEL-25064 - AD users are unable to log in due to case sensitivity of user because the domain is found as an alias to the email address. [rhel-8] - Resolves: RHEL-25066 - gdm smartcard login fails with sssd-2.9.3 in case of multiple identities [rhel-8] - Resolves: RHEL-25065 - ssh pubkey stored in ldap/AD no longer works to authenticate via sssd [rhel-8]- Resolves: RHEL-2630 - Rebase SSSD for RHEL 8.10 - Resolves: RHEL-1680 - auto_private_groups does not create cache in IPA server SSSD cache - Resolves: RHEL-10092 - logfile rotation for sssd_kcm not working properly, sssd_kcm never receives a 'kill -HUP' - Resolves: RHEL-17495 - New sssd.conf seems not to be backwards compatible (wrt SmartCard auth of local users using 'files provider') - Resolves: RHEL-18431 - Excessive logging to sssd_nss and sssd_be in multi-domain AD forest - Resolves: RHEL-5033 - Incorrect IdM product name in man sssd.conf - Resolves: RHEL-15368 - SSSD GPO lacks group resolution on hosts [rhel-8] - Resolves: RHEL-10721 - very bad performance when requesting service tickets - Resolves: RHEL-19011 - Invalid handling groups from child domain - Resolves: RHEL-19949 - latest sssd breaks logging in via XDMCP for LDAP/Kerberos users [rhel-8]- Resolves: RHEL-2630 - Rebase SSSD for RHEL 8.10- Resolves: RHEL-2630 - Rebase SSSD for RHEL 8.10 - Resolves: RHEL-14070 - sssd-2.9.2-1.el8 breaks smart card authentication - Resolves: RHEL-3665 - Unexplainable error "Unable to find primary gid [2]: No such file or directory" when SSSD performs lookup for an AD user- Resolves: RHEL-2630 - Rebase SSSD for RHEL 8.10 - Resolves: rhbz#2226021 - dbus and crond getting terminated with SIGBUS in sss_client code - Resolves: rhbz#2237253 - SSSD runs multiples lookup search for each NFS request (SBUS req chaining stopped working in sssd-2.7)- Resolves: rhbz#2149241 - [sssd] SSSD enters failed state after heavy load in the system- Resolves: rhbz#2167836 - Rebase SSSD for RHEL 8.9 - Resolves: rhbz#2196521 - [RHEL8] sssd : AD user login problem when modify ldap_user_name= name and restricted by GPO Policy - Resolves: rhbz#2195919 - sssd-be tends to run out of system resources, hitting the maximum number of open files - Resolves: rhbz#2192708 - [RHEL8] [sssd] User lookup on IPA client fails with 's2n get_fqlist request failed' - Resolves: rhbz#2139467 - [RHEL8] sssd attempts LDAP password modify extended op after BIND failure - Resolves: rhbz#2054825 - sssd_be segfault at 0 ip 00007f16b5fcab7e sp 00007fffc1cc0988 error 4 in libc-2.28.so[7f16b5e72000+1bc000] - Resolves: rhbz#2189583 - [sssd] RHEL 8.9 Tier 0 Localization - Resolves: rhbz#2170720 - [RHEL8] When adding attributes in sssd.conf that we have already, the cross-forest query just stop working - Resolves: rhbz#2096183 - BE_REQ_USER_AND_GROUP LDAP search filter can inadvertently catch multiple overrides - Resolves: rhbz#2151450 - [RHEL8] SSSD missing group membership when evaluating GPO policy with 'auto_private_groups = true'- Related: rhbz#2190417 - Rebase Samba to the latest 4.18.x release Rebuild against rebased Samba libs- Resolves: rhbz#2167836 - Rebase SSSD for RHEL 8.9- Resolves: rhbz#2167836 - Rebase SSSD for RHEL 8.9 - Resolves: rhbz#2101489 - [sssd] Auth fails if client cannot speak to forest root domain (ldap_sasl_interactive_bind_s failed) - Resolves: rhbz#2143925 - kinit switches KCM away from the newly issued ticket - Resolves: rhbz#2151403 - AD user is not found on IPA client after upgrading to RHEL8.7 - Resolves: rhbz#2164805 - man page entry should make clear that a nested group needs a name - Resolves: rhbz#2170484 - Unable to lookup AD user from child domain (or "make filtering of the domains more configurable") - Resolves: rhbz#2180981 - sss allows extraneous @ characters prefixed to username #- Resolves: rhbz#2149091 - Update to sssd-2.7.3-4.el8_7.1.x86_64 resulted in "Request to sssd failed. Device or resource busy"- Resolves: rhbz#2127511 - Rebase SSSD for RHEL 8.8 - Resolves: rhbz#2136701 - Lower the severity of the log message for SSSD so that it is not shown at the default debug level. - Resolves: rhbz#2139760 - [sssd] RHEL 8.8 Tier 0 Localization - Resolves: rhbz#2139865 - Analyzer: Optimize and remove duplicate messages in verbose list - Resolves: rhbz#2142795 - SSSD: `sssctl analyze` command shouldn't require 'root' privileged - Resolves: rhbz#2144491 - UPN check cannot be disabled explicitly but requires krb5_validate = false' as a work-around - Resolves: rhbz#2150357 - Smart Card auth does not work with p11_uri (with-smartcard-required)- Resolves: rhbz#2127511 - Rebase SSSD for RHEL 8.8 - Resolves: rhbz#2144581 - [RFE] provide dbus method to find users by attr - Resolves: rhbz#2144579 - sssd timezone issues sudonotafter - Resolves: rhbz#2144519 - [RFE] SSSD does not support to change the user’s password when option ldap_pwd_policy equals to shadow in sssd.conf file - Resolves: rhbz#2127822 - Cannot SSH with AD user to ipa-client (`krb5_validate` and `pac_check` settings conflict) - Resolves: rhbz#2111393 - authenticating against external IdP services okta (native app) with OAuth client secret failed- Related: rhbz#2132051 - Rebase Samba to the the latest 4.17.x release Rebuild against Samba rebase.- Resolves: rhbz#2116395 - NFS krb5 mount failed as "access denied" after test accessing a same file on krb5 nfs mount with multiple uids simultaneously since sssd-2.7.3-1.el8- Resolves: rhbz#2116395 - NFS krb5 mount failed as "access denied" after test accessing a same file on krb5 nfs mount with multiple uids simultaneously since sssd-2.7.3-1.el8 - Resolves: rhbz#2119726 - sssctl analyze --logdir option requires sssd to be configured - Resolves: rhbz#2120669 - Incorrect request ID tracking from responder to backend- Resolves: rhbz#2116488 - virsh command will hang after the host run several auto test cases - Resolves: rhbz#2116486 - [regression] sssctl analyze fails to parse PAM related sssd logs - Resolves: rhbz#2116487 - cache_req_data_set_hybrid_lookup: cache_req_data should never be NULL- Resolves: rhbz#2069379 - Rebase SSSD for RHEL 8.7 - Resolves: rhbz#2063016 - [sssd] RHEL 8.7 Tier 0 Localization- Resolves: rhbz#2069379 - Rebase SSSD for RHEL 8.7 - Resolves: rhbz#2098620 - sdap_nested_group_deref_direct_process() triggers internal watchdog for large data sets - Resolves: rhbz#2098619 - [Improvement] add SSSD support for more than one CRL PEM file name with parameters certificate_verification and crl_file - Resolves: rhbz#2088817 - pam_sss_gss ceased to work after upgrade to 8.6 - Resolves: rhbz#2098616 - Add idp authentication indicator in man page of sssd.conf - Resolves: rhbz#2056035 - 'getent hosts' not return hosts if they have more than one CN in LDAP - Resolves: rhbz#2098615 - Regression "Missing internal domain data." when setting ad_domain to incorrect - Resolves: rhbz#2098617 - Harden kerberos ticket validation - Resolves: rhbz#2087744 - Unable to lookup AD user if the AD group contains '@' symbol- Resolves: rhbz#2069379 - Rebase SSSD for RHEL 8.7 - Resolves: rhbz#2026799 - SSSD authenticating to LDAP with obfuscated password produces Invalid authtoken type message causing sssd_be to go offline (cross inter_ference of different provider plugins options) - Resolves: rhbz#2033347 - sssd error triggers backtrace : [write_krb5info_file_from_fo_server] (0x0020): [RID#73501] There is no server that can be written into kdc info file. - Resolves: rhbz#2056483 - [RFE] Add sssd internal krb5 plugin for authentication against external IdP via OAuth2 - Resolves: rhbz#2062689 - [Improvement] Add user and group version of sss_nss_getorigbyname() - Resolves: rhbz#2065692 - [RHEL8] Ship new sub-package called sssd-idp into sssd - Resolves: rhbz#2072050 - sssd_nss exiting (due to missing 'sssd' local user) making SSSD service to restart in a loop - Resolves: rhbz#2072931 - Use right sdap_domain in ad_domain_info_send - Resolves: rhbz#2087088 - sssd does not enforce smartcard auth for kde screen locker - Resolves: rhbz#2087744 - Unable to lookup AD user if the AD group contains '@' symbol - Resolves: rhbz#2087745 - 2FA prompting setting ineffective - Resolves: rhbz#2087746 - sssd fails GPO-based access if AD have setup with Japanese language- Resolves: rhbz#2039892 - 2.6.2 regression: Daemon crashes when resolving AD user names - Resolves: rhbz#1859315 - sssd does not use kerberos port that is set. - Resolves: rhbz#2030386 - sssd-kcm has requirement on krb5 symbol "krb5_unmarshal_credentials" only available in latest RHEL8.5 krb5 libraries - Resolves: rhbz#2035245 - AD Domain in the AD Forest Missing after sssd latest update - Resolves: rhbz#2017301 - [sssd] RHEL 8.6 Tier 0 Localization- Resolves: rhbz#2013260 - [RHEL8] Add ability to parse child log files (additional patch)- Resolves: rhbz#2011216 - Rebase SSSD for RHEL 8.6 - Resolves: rhbz#2013260 - [RHEL8] Add ability to parse child log files - Resolves: rhbz#2030386 - sssd-kcm has requirement on krb5 symbol "krb5_unmarshal_credentials" only available in latest RHEL8.5 krb5 libraries - Resolves: rhbz#1859315 - sssd does not use kerberos port that is set. - Resolves: rhbz#1961182 - Passwordless (GSSAPI) SSH not working due to missing "includedir /var/lib/sss/pubconf/krb5.include.d" directive in /etc/krb5.conf - Resolves: rhbz#2008829 - sssd_be segfault due to empty forest root name - Resolves: rhbz#2012263 - pam responder does not call initgroups to refresh the user entry - Resolves: rhbz#2012308 - Add client certificate validation D-Bus API - Resolves: rhbz#2012327 - Groups are missing while performing id lookup as SSSD switching to offline mode due to the wrong domain name in the ldap-pings(netlogon). - Resolves: rhbz#2013028 - [RFE] Health and Support Analyzer: Add sssctl sub-command to select and display a single request from the logs - Resolves: rhbz#2013259 - [RHEL8] Add tevent chain ID logic into responders - Resolves: rhbz#2017301 - [sssd] RHEL 8.6 Tier 0 Localization- Rebuild due to rhbz#2013596 - Rebase Samba to the the latest 4.15.x release- Resolves: rhbz#2011216 - Rebase SSSD for RHEL 8.6 - Resolves: rhbz#1968340 - 'exclude_groups' option provided in SSSD for session recording (tlog) doesn't work as expected - Resolves: rhbz#1952569 - SSSD should use "hidden" temporary file in its krb locator - Resolves: rhbz#1917970 - proxy provider: secondary group is showing in sssd cache after group is removed - Resolves: rhbz#1636002 - socket-activated services start as the sssd user and then are unable to read the confdb - Resolves: rhbz#2021196 - Make backtrace less "chatty" (avoid duplicate backtraces) - Resolves: rhbz#2018432 - 2.5.x based SSSD adds more AD domains than it should based on the configuration file (not trusted and from a different forest) - Resolves: rhbz#2015070 - Consistency in defaults between OpenSSH and SSSD - Resolves: rhbz#2013297 - disabled root ad domain causes subdomains to be marked offline - Resolves: rhbz#2013294 - Lookup with fully-qualified name does not work with 'cache_first = True' - Resolves: rhbz#2013218 - autofs lookups for unknown mounts are delayed for 50s - Resolves: rhbz#2013028 - [RFE] Health and Support Analyzer: Add sssctl sub-command to select and display a single request from the logs - Resolves: rhbz#2013024 - Add support for CKM_RSA_PKCS in smart card authentication. - Resolves: rhbz#2013006 - [RFE] support subid ranges managed by FreeIPA - Resolves: rhbz#2012308 - Add client certificate validation D-Bus API - Resolves: rhbz#2012122 - tps tests fail with cross dependency on sssd debuginfo package: removal of 'sssd-libwbclient-debuginfo' is missing- Resolves: rhbz#1975169 - EMBARGOED CVE-2021-3621 sssd: shell command injection in sssctl [rhel-8] - Resolves: rhbz#1962042 - [sssd] RHEL 8.5 Tier 0 Localization- Resolves: rhbz#1947671 - Rebase SSSD for RHEL 8.5 - Resolves: rhbz#1693379 - sssd_be and sss_cache too heavy on CPU - Resolves: rhbz#1909373 - Missing search index for `originalADgidNumber` - Resolves: rhbz#1954630 - [RFE] Improve debug messages by adding a unique tag for each request the backend is handling - Resolves: rhbz#1936891 - SSSD Error Msg Improvement: Bad address - Resolves: rhbz#1364596 - sssd still showing ipa user after removed from last group - Resolves: rhbz#1979404 - Changes made to /etc/pam.d/sssd-shadowutils are overwritten back to default on sssd-common package upgrade- Resolves: rhbz#1974257 - 'debug_microseconds' config option is broken - Resolves: rhbz#1936902 - SSSD Error Msg Improvement: Invalid argument - Resolves: rhbz#1627112 - RFE: Kerberos ticket renewal for sssd-kcm (additional patches and rebuild)- Resolves: rhbz#1947671 - Rebase SSSD for RHEL 8.5 - Resolves: rhbz#1942387 - Wrong default debug level of sssd tools - Resolves: rhbz#1917444 - SSSD Error Msg Improvement: Server resolution failed: [2]: No such file or directory - Resolves: rhbz#1917511 - SSSD Error Msg Improvement: Failed to resolve server 'server.example.com': Error reading file - Resolves: rhbz#1917535 - sssd.conf man page: parameter dns_resolver_server_timeout and dns_resolver_op_timeout - Resolves: rhbz#1940509 - [RFE] Health and Support Analyzer: Link frontend to backend requests - Resolves: rhbz#1649464 - auto_private_groups not working as expected with posix ipa/ad trust - Resolves: rhbz#1925514 - [RFE] Randomize the SUDO timeouts upon reconnection - Resolves: rhbz#1961215 - Invalid sssd-kcm return code if requested operation is not found - Resolves: rhbz#1837090 - SSSD fails nss_getby_name for IPA user with SID if the user has user private group - Resolves: rhbz#1879869 - sudo commands incorrectly exports the KRB5CCNAME environment variable - Resolves: rhbz#1962550 - sss_pac_make_request fails on systems joined to Active Directory. - Resolves: rhbz#1737489 - [RFE] SSSD should honor default Kerberos settings (keytab name) in /etc/krb5.conf- Resolves: rhbz#1947671 - Rebase SSSD for RHEL 8.5 - Resolves: rhbz#1930535 - [abrt] [faf] sssd: monitor_service_shutdown(): /usr/sbin/sssd killed by 11 - Resolves: rhbz#1942387 - Wrong default debug level of sssd tools - Resolves: rhbz#1945888 - Inconsistant debug level for connection logging - Resolves: rhbz#1948657 - pam_sss_gss.so doesn't work with large kerberos tickets - Resolves: rhbz#1949149 - [RFE] Poor man's backtrace - Resolves: rhbz#1920500 - Authentication handshake (ldap_install_tls()) fails due to underlying openssl operation failing with EINTR - Resolves: rhbz#1923964 - [RFE] SSSD Error Msg Improvement: write_krb5info_file failed, authentication might fail. - Resolves: rhbz#1928648 - SSSD logs improvements: clarify which config option applies to each timeout in the logs - Resolves: rhbz#1632159 - sssd-kcm starts successfully for non existent socket_path - Resolves: rhbz#1627112 - RFE: Kerberos ticket renewal for sssd-kcm - Resolves: rhbz#1925505 - [RFE] improve the sssd refresh timers for SUDO queries - Resolves: rhbz#1925514 - [RFE] Randomize the SUDO timeouts upon reconnection - Resolves: rhbz#1925561 - sssd-ldap(5) does not report how to disable the SUDO smart queries - Resolves: rhbz#1925621 - document impact of indices and of scope on performance of LDAP queries - Resolves: rhbz#1855320 - [RFE] RHEL8 sssd: inheritance of the case_sensitive parameter for subdomains. - Resolves: rhbz#1925608 - [RFE] make 'random_offset' addon to 'offline_timeout' option configurable - Resolves: rhbz#1447945 - man page / docs update required: if two certificate matching rules with the same priority match only one is used - Resolves: rhbz#1703436 - sssd not thread-safe in innetgr() - Resolves: rhbz#1713143 - SSSD does not translate the 2FA text labels("first factor" / "second factor") on GDM login and screensaver unlock screen - Resolves: rhbz#1888977 - sss_override: Usage limitations clarification in man page - Resolves: rhbz#1890177 - Clarify "single_prompt" option in "PROMPTING CONFIGURATION SECTION" section of sssd.conf man page - Resolves: rhbz#1902280 - fix sss_cache to also reset cached timestamp - Resolves: rhbz#1935683 - SSSD not detecting subdomain from AD forest (RHEL 8.3) - Resolves: rhbz#1937919 - IPA missing secondary IPA Posix groups in latest sssd 1.16.5-10.el7_9.7 - Resolves: rhbz#1944665 - No gpo found and ad_gpo_implicit_deny set to True still permits user login - Resolves: rhbz#1919942 - sss_override does not take precedence over override_homedir directive- Resolves: rhbz#1926622 - Add support to verify authentication indicators in pam_sss_gss - Resolves: rhbz#1926454 - First smart refresh query contains modifyTimestamp even if the modifyTimestamp is 0. - Resolves: rhbz#1893159 - Default debug level should report all errors / failures (additional patch)- Resolves: rhbz#1920001 - Do not add '%' to group names already prefixed with '%' in IPA sudo rules - Resolves: rhbz#1918433 - sssd unable to lookup certmap rules - Resolves: rhbz#1917382 - [abrt] [faf] sssd: dp_client_handshake_timeout(): /usr/libexec/sssd/sssd_be killed by 11- Resolves: rhbz#1113639 - autofs: return a connection failure until maps have been fetched - Resolves: rhbz#1915395 - Memory leak in the simple access provider - Resolves: rhbz#1915319 - SSSD: SBUS: failures during servers startup - Resolves: rhbz#1893698 - [RFE] sudo kerberos authentication (additional patches)- Resolves: rhbz#1631410 - Can't login with smartcard with multiple certs having same ID value - Resolves: rhbz#1884213 - [RFE] add offline_timeout_max config option to control offline interval backoff (additional patches) - Resolves: rhbz#1893159 - Default debug level should report all errors / failures - Resolves: rhbz#1893698 - [RFE] sudo kerberos authentication- Resolves: rhbz#1876514 - High CPU utilization by the sssd_kcm process - Resolves: rhbz#1876658 - filter_groups option partially filters the group from 'id' output of the user because gidNumber still appears in 'id' output [RHEL 8] - Resolves: rhbz#1895001 - User lookups over the InfoPipe responder fail intermittently- Resolves: rhbz#1900733 - sssd_be segfaults at be_refresh_get_values_ex() due to NULL ptrs in results of sysdb_search_with_ts_attr() - Resolves: rhbz#1876514 - High CPU utilization by the sssd_kcm process - Resolves: rhbz#1894540 - sssd component logging is now too generic in syslog/journal - Resolves: rhbz#1828483 - filtered ID is appearing due to strange negative cache behavior- This is to bump version to allow rebuild against rebased libldb.- Resolves: rhbz#1881992 - Rebase SSSD for RHEL 8.4 - Resolves: rhbz#1722842 - sssd-kcm does not store TGT with ssh login using GSSAPI - Resolves: rhbz#1734040 - sssd crash in ad_get_account_domain_search() - Resolves: rhbz#1784459 - [RFE] tlog does not allow to exclude some users from session recording - Resolves: rhbz#1791300 - sporadic sssd_be crash on s390x - Resolves: rhbz#1817122 - 'getent group ldapgroupname' doesn't show any LDAP users or some LDAP users when 'rfc2307bis' schema is used with SSSD. - Resolves: rhbz#1819012 - [RFE] Improve AD site discovery process - Resolves: rhbz#1846778 - [RfE] `/usr/libexec/sssd/p11_child` cmdline argument '--nssdb' might be confusing when SSSD was built against OpenSSL - Resolves: rhbz#1873715 - automount sssd issue when 2 automount maps have the same key (one un uppercase, one in lowercase) - Resolves: rhbz#1879860 - correction in sssd.conf:pam_response_filter man page - Resolves: rhbz#1881336 - [RFE] sssd-ldap man page modification for parameter "ldap_referrals" - Resolves: rhbz#1883488 - [RfE] Implement a new sssd.conf option to disable the filter for AD domain local groups from trusted domains - Resolves: rhbz#1884196 - [RFE] Add "enabled" option to domain section in config file - Resolves: rhbz#1884205 - KCM: Increase client idle timeout to 5 minutes - Resolves: rhbz#1884207 - [RFE] ldap: add new option ldap_library_debug_level - Resolves: rhbz#1884213 - [RFE] add offline_timeout_max config option to control offline interval backoff - Resolves: rhbz#1884281 - Secondary LDAP group go missing from 'id' command - Resolves: rhbz#1884301 - [RFE] dyndns: suport asymmetric auth for nsupdate- Resolves: rhbz#1855323 - When ad_gpo_implicit_deny is True, it is permitting users to login when no gpo is applied- Resolves: rhbz#1868387 - system not enforcing GPO rule restriction. ad_gpo_implicit_deny = True is not working - Resolves: rhbz#1854951 - sss-certmap man page change to add clarification for userPrincipalName attribute from AD schema - Resolves: rhbz#1856861 - False errors/warnings are logged in sssd.log file after enabling 2FA prompting settings in sssd.conf - Resolves: rhbz#1869683 - p11_child: default value of ocsp_dgst == sha256 doesn't conform RFC5019 and has to be changed to sha1- Resolves: rhbz#1723273 - RFE: Add option to specify alternate sssd config file location with "sssctl config-check" command. - Resolves: rhbz#1780404 - smartcards: special characters must be escaped when building search filter- Resolves: rhbz#1820574 - [sssd] RHEL 8.3 Tier 0 Localization- Resolves: rhbz#1821719 - sssd (sssd_be) is consuming 100% CPU, partially due to failing mem-cache - Fixed "requires/provides" rpmdiff warning- Resolves: rhbz#1815584 - id_provider = proxy proxy_lib_name = files returns * in password field, breaking PAM authentication - Resolves: rhbz#1794607 - SSSD must be able to resolve membership involving root with files provider - Resolves: rhbz#1803134 - Improve "unlock" time when user session already active- Resolves: rhbz#1829470 - `sssd.api.conf` and `sssd.api.d` should belong to `python-sssdconfig` package - Resolves: rhbz#1544457 - sssd fails to release file descriptor on child logs after receiving HUP - Resolves: rhbz#1824323 - SSSD user filtering is failing on RHEL 8 after "files" provider rebuilds cache - Resolves: rhbz#1827432 - When the passwd or group files are replaced, sssd stops monitoring the file for inotify events, and no updates are triggered - Resolves: rhbz#1835710 - Change the message "Please enter smart card" to "Please insert smart card" on GDM login with smart-card - Resolves: rhbz#1838037 - Oddjob-mkhomedir fails when using NSS compat - Resolves: rhbz#1845904 - gdm smart card authentication does not work shortly after disconnecting from network. - Resolves: rhbz#1845975 - sssd doesn't follow the link order of AD Group Policy Management - Resolves: rhbz#1845980 - sssd is failing to discover other subdomains in the forest if LDAP entries do not contain AD forest root information - Resolves: rhbz#1845987 - Document how to prevent invalid selinux context for default home directories in SSSD-AD direct integration. - Resolves: rhbz#1845994 - GDM failure loop when no user mapped for smart card - Resolves: rhbz#1846003 - GDM password prompt when cert mapped to multiple users and promptusername is False - Resolves: rhbz#1850961 - /usr/share/systemtap/tapset/sssd_functions.stp missing a comma- Resolves: rhbz#Bug 1723273 - RFE: Add option to specify alternate sssd config file location with "sssctl config-check" command.- Resolves: rhbz#1839037 - Rebase SSSD for RHEL 8.3 - Resolves: rhbz#1843872 - sssd 2.3.0 breaks AD auth due to GPO parsing failure - Resolves: rhbz#1834156 - sssd or sssd-ad not updating their dependencies on "yum update" which breaks working- Resolves: rhbz#1580506 - [RFE]: sssd to be able to read smartcard certificate EKU and perform an action based on value when generating SSH key from a certificate (additional patch)- Resolves: rhbz#1810634 - id command taking 1+ minute for returning user information- Resolves: rhbz#1580506 - [RFE]: sssd to be able to read smartcard certificate EKU and perform an action based on value when generating SSH key from a certificate- Resolves: rhbz#1718193 - p11_child should have an option to skip C_WaitForSlotEvent if the PKCS#11 module does not implement it properly- Resolves: rhbz#1792331 - sssd_be crashes when krb5_realm and krb5_server is omitted and auth_provider is krb5- Resolves: rhbz#1754996 - [sssd] Tier 0 Localization- Resolves: rhbz#1767514 - sssd requires timed sudoers ldap entries to be specified up to the seconds- Resolves: rhbz#1713368 - Add sssd-dbus package as a dependency of sssd-tools* Resolves: rhbz#1794016 - sssd_be frequent crash* Resolves: rhbz#1762415 - Force LDAPS over 636 with AD Access Provider* Resolves: rhbz#1583592 - [RFE] Add configurable randomness to SSSD ldap connection timeout* Resolves: rhbz#1783190 - [abrt] [faf] sssd: raise(): /usr/libexec/sssd/sssd_autofs killed by 6* Resolves: rhbz#1785214 - server/be: SIGTERM handling is incorrect* Resolves: rhbz#1785193 - Watchdog implementation or usage is incorrect* Resolves: rhbz#1704199 - pcscd rejecting sssd ldap_child as unauthorized* Resolves: rhbz#1744500 - [Doc]Provide explanation on escape character for match rules sss-certmap* Resolves: rhbz#1781728 - sssctl config-check command does not give proper error messages with line numbers* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release Increasing version number to pick latest libldb* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release PART2: Fix gating issue.* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release- Resolves: rhbz#1712875 - Old kerberos credentials active instead of valid new ones (kcm)- Resolves: rhbz#1744134 - New defect found in sssd-2.2.0-16.el8 - Also sync. kcm multihost tests with master- Resolves: rhbz#1676385 - pam_sss with smartcard auth does not create gnome keyring - Also apply a patch to fix gating tests issue- Resolves: rhbz#1736861 - dyndns_update = True is no longer enough to get the IP address of the machine updated in IPA upon sssd.service startup- Resolves: rhbz#1736265 - Smart Card auth of local user: endless loop if wrong PIN was provided- Resolves: rhbz#1736796 - sssd config option "default_domain_suffix" should not cause files domain entries to be qualified, this can break sudo access- Resolves: rhbz#1669407 - MAN: Document that PAM stack contains the systemd-user service in the account phase in RHEL-8- Resolves: rhbz#1448094 - sssd-kcm cannot handle big tickets- Resolves: rhbz#1733372 - permission denied on logs when running sssd as non-root user- Resolves: rhbz#1736483 - Sudo prompt for smart card authentication is missing the trailing colon- Resolves: rhbz#1382750 - Conflicting default timeout values- Resolves: rhbz#1699480 - Include libsss_nss_idmap-devel in the Builder repository - This just required a raise in release number and changelog for the record.- Resolves: rhbz#1711318 - p11_child::sign_data() function implementation is not FIPS140 compliant- Resolves: rhbz#1726945 - negative cache does not use values from 'filter_users' config option for known domains- Resolves: rhbz#1729055 - sssd does not pass correct rules to sudo- Resolves: rhbz#1283798 - sssd failover does not work on connecting to non-responsive ldaps:// server- Resolves: rhbz#1725168 - sssd-proxy crashes resolving groups with no members- Resolves: rhbz#1673443 - sssd man pages: The default value of "ldap_user_home_directory" is not mentioned with AD server configuration- Resolves: rhbz#1687281 Rebase sssd in RHEL-8.1 to the latest upstream release- Resolves: rhbz#1687281 Rebase sssd in RHEL-8.1 to the latest upstream release- Replace ARRAY_SIZE with N_ELEMENTS to reflect samba changes. This is done here in order to unblock gating changes before rebase. - Related: rhbz#1682305- Resolves: rhbz#1672780 - gdm login not prompting for username when smart card maps to multiple users- Resolves: rhbz#1645291 - Perform some basic ccache initialization as part of gen_new to avoid a subsequent switch call failure-Resolves: rhbz#1659498 - Re-setting the trusted AD domain fails due to wrong subdomain service name being used-Resolves: rhbz#1660083 - extraAttributes is org.freedesktop.DBus.Error. UnknownProperty: Unknown property- Resolves: rhbz#1661183 - SSSD 2.0 has drastically lower sbus timeout than 1.x, this can result in time outs- Resolves: rhbz#1578014 - sssd does not work under non-root user - Note: Actually the patches were in the 2.0.0-37, this one just adds this changelog because it was missing.- Resolves: rhbz#1652563 - incorrect example in the man page of idmap_sss suggests using * for backend sss- Resolves: rhbz#1466503 - Snippets are not used when sssd.conf does not exist- Resolves: rhbz#1622008 - Error message when IPA server uninstall calls kdestroy caused by KCM returning a wrong error code during the delete operation- Resolves: rhbz#1646113 - Missing concise documentation about valid options for sssd-files-provider- Resolves: rhbz#1625670 - sssd needs to require a newer version of libtalloc and libtevent to avoid an issue in GPO processing- Resolves: 1658813 - PKINIT with KCM does not work- Resolves: 1657898 - SSSD must be cleared/restarted periodically in order to retrieve AD users through IPA Trust- Resolves: rhbz#1655459 - [abrt] [faf] sssd: raise(): /usr/libexec/sssd/proxy_child killed by 6- Resolves: rhbz#1652719 - [SECURITY] sssd returns '/' for emtpy home directories- Resolves: rhbz#1657979 - SSSD's LDAP authentication provider does not work if ID provider is authenticated with GSSAPI- Resolves: rhbz#1657980 - sssd_nss memory leak- Resolves: rhbz#1645566 - SSSD 2.x does not sanitize domain name properly for D-bus, resulting in a crash- Resolves: rhbz#1646168 - sssctl access-report always prints an error message - Resolves: rhbz#1643053 - Restarting the sssd-kcm service should reload the configuration without having to restart the whole sssd - Resolves: rhbz#1640576 - sssctl reports incorrect information about local user's cache entry expiration time - Resolves: rhbz#1645238 - Unable to su to root when logged in as a local user - Resolves: rhbz#1639411 - sssd support for for smartcards using ECC keys- Resolves: rhbz#1642508 - sssd ifp crash when trying to access ipa webui with smart card- Resolves: rhbz#1642372 - SSSD Python getgrouplist API was removed but required for IPA- Related: rhbz#1638150 - session not recording for local user when groups defined - Also add silence a Coverity warning, which is related to rhbz#1637131- Related: rhbz#1637513 - sssd crashes when refreshing expired sudo rules- Add OSCP checks for p11_child - Related: rhbz#1615417 - [RFE] Add Smart Card authentication for local users- Related: rhbz#1638006 - Files: The files provider always enumerates which causes duplicate when running getent passwd- Related: rhbz#1637131 - pam_unix unable to match fully qualified username provided by sssd during smartcard auth using gdm- Related: rhbz#1620123 - [RFE] Add option to specify a Smartcard with a PKCS#11 URI- Related: rhbz#1611011 - Support for "require smartcard for login option"- Related: rhbz#1635595 - Cant login with smartcard with multiple certs- Backport more sbus2 fixes - Related: rhbz#1623878 - crash related to sbus_router_destructor()- Resolves: rhbz#1636397 - SSSD not fetching all sudo rules from AD- Resolves: rhbz#1628122 - Printing incorrect information about domain with sssctl utility- Resolves: rhbz#1626001 - SSSD should log to syslog if a domain is not started due to a misconfiguration- Resolves: rhbz#1624785 - Remove references of sss_user/group/add/del commands in man pages since local provider is deprecated- Resolves: rhbz#1628126 - [abrt] [faf] sssd: unknown function(): /usr/libexec/sssd/sssd_be killed by 11 crash func _dbus_list_unlink- Resolves: rhbz#1628503 - sssd only sets the SELinux login context if it differs from the default- Resolves: rhbz#1625842 id_provider= local causes SSSD to abort startup- Resolves: rhbz#1615590 - Do not rely on "python" for el8- Resolves: rhbz#1615417 - [RFE] Add Smart Card authentication for local users- Resolves: rhbz#1623878 - crash related to sbus_router_destructor()- Resolves: rhbz#1622026 - sssd 2.0 regression: Kerberos authentication fails with the KCM ccache- Resolves: rhbz#1615460 - Rebase SSSD to the latest released version- Switch hardcoded python3 shebangs into the %{__python3} macro- Update to 1.16.2 release - Cleanup unused global definitions - Remove python2 references from the spec file - Resolves: rhbz#1585313 - Kerberos with sssd-kcm is not working on s390x- Resolves: upstream#3684 - A group is not updated if its member is removed with the cleanup task, but the group does not change - Resolves: upstream#3558 - sudo: report error when two rules share cn - Tone down shutdown messages for socket activated responders - IPA: Qualify the externalUser sudo attribute - Resolves: upstream#3550 - refresh_expired_interval does not work with netgrous in 1.15 - Resolves: upstream#3402 - Support alternative sources for the files provider - Resolves: upstream#3646 - SSSD's GPO code ignores ad_site option - Resolves: upstream#3679 - Make nss netgroup requests more robust - Resolves: upstream#3634 - sssctl COMMAND --help fails if sssd is not configured - Resolves: upstream#3469 - extend sss-certmap man page regarding priority processing - Improve docs/debug message about GC detection - Resolves: upstream#3715 - ipa 389-ds-base crash in krb5-libs - k5_copy_etypes list out of bound? - Resolves: upstream#2653 - Group renaming issue when "id_provider = ldap" is set. - Document which principal does the AD provider use - Resolves: upstream#3680 - GPO: SSSD fails to process GPOs If a rule is defined, but contains no SIDs - Resolves: upstream#3520 - Files provider supports only BE_FILTER_ENUM - Resolves: rhbz#1540703 - FreeIPA/SSSD implicit_file sssd_nss error: The Data Provider returned an error [org.freedesktop.sssd.Error.DataProvider.Fatal]- Resolves: upstream#3573 - sssd won't show netgroups with blank domain - Resolves: upstream#3660 - confdb_expand_app_domains() always fails - Resolves: upstream#3658 - Application domain is not interpreted correctly - Resolves: upstream#3687 - KCM: Don't pass a non null terminated string to json_loads() - Resolves: upstream#3386 - KCM: Payload buffer is too small - Resolves: upstream#3666 - Fix usage of str.decode() in our tests - A few KCM misc fixes- New upstream release 1.16.1 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_16_1.html- Resolves: upstream#3621 - backport bug found by static analyzers- Resolves: rhbz#1538643 - SSSD crashes when retrieving a Desktop Profile with no specific host/hostgroup set - Resolves: upstream#3621 - FleetCommander integration must not require capability DAC_OVERRIDE- Resolves: upstream#3618 - selinux_child segfaults in a docker container- Resolves: rhbz#1431153 - sssd: libsss_proxy.so needs to be linked with -ldl- Fix systemd executions/requirements- Fix building on rawhide. Remove -Wl,-z,defs from LDFLAGS- Fix building of sssd-nfs-idmap with libnfsidmap.so.1- Rebuilt for libnfsidmap.so.1- Resolves: upstream#3523 - ABRT crash - /usr/libexec/sssd/sssd_nss in setnetgrent_result_timeout - Resolves: upstream#3588 - sssd_nss consumes more memory until restarted or machine swaps - Resolves: failure in glibc tests https://sourceware.org/bugzilla/show_bug.cgi?id=22530 - Resolves: upstream#3451 - When sssd is configured with id_provider proxy and auth_provider ldap, login fails if the LDAP server is not allowing anonymous binds - Resolves: upstream#3285 - SSSD needs restart after incorrect clock is corrected with AD - Resolves: upstream#3586 - Give a more detailed debug and system-log message if krb5_init_context() failed - Resolves: rhbz#1431153 - SSSD ships a drop-in configuration snippet in /etc/systemd/system - Backport few upstream features from 1.16.1- Resolves: rhbz#1494002 - sssd_nss crashed in cache_req_search_domains_next- Backport extended NSS API from upstream master branch- Resolves: upstream#3529 - sssd-kcm Fix restart during/after upgrade- New upstream release 1.16.0 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_16_0.html- Resolves: rhbz#1499354 - CVE-2017-12173 sssd: unsanitized input when searching in local cache database access on the sock_file system_bus_socket- Resolves: rhbz#1488327 - SELinux is preventing selinux_child from write access on the sock_file system_bus_socket - Resolves: rhbz#1490402 - SSSD does not create /var/lib/sss/deskprofile and fails to download desktop profile data - Resolves: upstream#3485 - getsidbyid does not work with 1.15.3 - Resolves: upstream#3488 - SUDO doesn't work for IPA users on IPA clients after applying ID Views for them in IPA server - Resolves: upstream#3501 - Accessing IdM kerberos ticket fails while id mapping is applied- Backport few upstream patches/fixes- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild- New upstream release 1.15.3 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_3.html- Rebuild with libldb-1.2.0- Fix build issues: Update expided certificate in unit tests- Resolves: rhbz#1445680 - Properly fall back to local Smartcard authentication - Resolves: rhbz#1437199 - sssd-nfs-idmap-1.15.2-1.fc25.x86_64 conflicts with file from package sssd-common-1.15.1-1.fc25.x86_64 - Resolves: rhbz#1063278 - sss_ssh_knownhostsproxy doesn't fall back to ipv4- Fix issue with IPA + SELinux in containers - Resolves: upstream https://fedorahosted.org/sssd/ticket/3297- Backport upstream patches for 1.15.3 pre-release - required for building freeipa-4.5.x in rawhide- New upstream release 1.15.2 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_2.html- New upstream release 1.15.1 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_1.html- Cherry-pick patches from upstream that enable the files provider - Enable the files domain - Retire patch 0501-Partially-revert-CONFIG-Use-default-config-when-none.patch which is superseded by the files domain autoconfiguration - Related: rhbz#1357418 - SSSD fast cache for local users- Add missing %license macro- Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild- New upstream release 1.15.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.15.0- Rebuild for Python 3.6- Resolves: rhbz#1369130 - nss_sss should not link against libpthread - Resolves: rhbz#1392916 - sssd failes to start after update - Resolves: rhbz#1398789 - SELinux is preventing sssd from 'write' accesses on the directory /etc/sssd- New upstream release 1.14.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.2- libwbclient-sssd: update interface to version 0.13- Fix regression with krb5_map_user - Resolves: rhbz#1375552 - krb5_map_user doesn't seem effective anymore - Resolves: rhbz#1349286 - authconfig fails with SSSDConfig.NoDomainError: default if nonexistent domain is mentioned- Backport important patches from upstream 1.14.2 prerelease - Resolves: upstream #3154 - sssd exits if clock is adjusted backwards after boot - Resolves: upstream #3163 - resolving IPA nested user group is broken in 1.14- New upstream release 1.14.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.1- Add workaround patch for RHBZ #1366403- https://fedoraproject.org/wiki/Changes/Automatic_Provides_for_Python_RPM_Packages- New upstream release 1.14.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.0- New upstream release 1.14 beta - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.0beta- New upstream release 1.14 alpha - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.0alpha- Resolves: rhbz#1335639 - [abrt] sssd-dbus: ldb_msg_find_element(): sssd_ifp killed by SIGSEGV- Resolves: rhbz#1328108 - Protocol error with FreeIPA on CentOS 6- New upstream release 1.13.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.4- Resolves: rhbz#1276868 - Sudo PAM Login should support multiple password prompts (e.g. Password + Token) - Resolves: rhbz#1313041 - ssh with sssd proxy fails with "Connection closed by remote host" if locale not available- Resolves: rhbz#1310664 - [RFE] IPA: resolve external group memberships of IPA groups during getgrnam and getgrgid - Resolves: rhbz#1301303 - sss_obfuscate: SyntaxError: Missing parentheses in call to 'print'- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild- Additional upstream fixes- Resolves: rhbz#1256849 - SUDO: Support the IPA schema- New upstream release 1.13.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.3- New upstream release 1.13.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.2- Rebuilt for Python3.5 rebuild- Fix building pac responder with the krb5-1.14- python-sssdconfig: Fix parssing sssd.conf without config_file_version - Resolves: upstream #2837 - REGRESSION: ipa-client-automout failed- Fix few segfaults - Resolves: upstream #2811 - PAM responder crashed if user was not set - Resolves: upstream #2810 - sssd_be crashed in ipa_srv_ad_acct_lookup_step- New upstream release 1.13.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.1- Fix OTP bug - Resolves: upstream #2729 - Do not send SSS_OTP if both factors were entered separately- Backport upstream patches required by FreeIPA 4.2.1- Fix ipa-migration bug - Resolves: upstream #2719 - IPA: returned unknown dp error code with disabled migration mode- New upstream release 1.13.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.0- Unify return type of list_active_domains for python{2,3}- New upstream release 1.13 alpha - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.0alpha- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild- Fix libwbclient alternatives- Backport important patches from upstream 1.13 prerelease- New upstream release 1.12.5 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.5- Backport important patches from upstream 1.13 prerelease - Resolves: rhbz#1060325 - Does sssd-ad use the most suitable attribute for group name - Resolves: upstream #2335 - Investigate using the krb5 responder for driving the PAM conversation with OTPs - Enable cmocka tests for secondary architectures- Backport patches from upstream 1.12.5 prerelease - contains many fixes- Fix slow login with ipa and SELinux - Resolves: upstream #2624 - Only set the selinux context if the context differs from the local one- Fix regressions with ipa and SELinux - Resolves: upstream #2587 - With empty ipaselinuxusermapdefault security context on client is staff_u- Also relax libldb Requires - Remove --enable-ldb-version-check- Relax libldb BuildRequires to be greater-or-equal- Add support for python3 bindings - Add requirement to python3 or python3 bindings - Resolves: rhbz#1014594 - sssd: Support Python 3- New upstream release 1.12.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.4- Backport patches with Python3 support from upstream- Fix double free in monitor - Resolves: rhbz#1186887 [abrt] sssd-common: talloc_abort(): sssd killed by SIGABRT- Rebuild for new libldb- Decrease priority of sssd-libwbclient 20 -> 5 - It should be lower than priority of samba veriosn of libwbclient. - https://bugzilla.redhat.com/show_bug.cgi?id=1175511#c18- Apply a number of patches from upstream to fix issues found 1.12.3 - Resolves: rhbz#1176373 - dyndns_iface does not accept multiple interfaces, or isn't documented to be able to - Resolves: rhbz#988068 - getpwnam_r fails for non-existing users when sssd is not running - Resolves: upstream #2557 authentication failure with user from AD- Resolves: rhbz#1164156 - libsss_simpleifp should pull sssd-dbus - Resolves: rhbz#1179379 - gzip: stdin: file size changed while zipping when rotating logfile- New upstream release 1.12.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.3 - Fix spelling errors in description (fedpkg lint)- Rebuild for libldb 1.1.19- Resolves: rhbz#1175511 - sssd-libwbclient conflicts with Samba's and causes crash in wbinfo - in addition to the patch libwbclient.so is filtered out of the Provides list of the package- Fix regressions and bugs in sssd upstream 1.12.2 - https://fedorahosted.org/sssd/ticket/{id} - Regressions: #2471, #2475, #2483, #2487, #2529, #2535 - Bugs: #2287, #2445- Rebuild for libldb 1.1.18- Fix typo in libwbclient-devel %preun- Use alternatives for libwbclient- Backport several patches from upstream. - Fix a potential crash against old (pre-4.0) IPA servers- New upstream release 1.12.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.2- Resolves: rhbz#1139962 - Fedora 21, FreeIPA 4.0.2: sssd does not find user private group from server- New upstream release 1.12.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.1- Do not crash on resolving a group SID in IPA server mode- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild- Fix release version for upgrades- New upstream release 1.12.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild- New upstream release 1.12 beta2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0beta2- Fix tests on big-endian - Fix previous changelog entry- New upstream release 1.12 beta1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0beta1- Rebuild against new ding-libs- Make LDB dependency a strict equivalency- Rebuild against new libldb- New upstream release 1.11.5.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.5.1- Fix bug in generation of systemd unit file- New upstream release 1.11.5 - Remove upstreamed patch - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.5- Handle new error code for IPA password migration- Include couple of patches from upstream 1.11 branch- New upstream release 1.11.4 - Remove upstreamed patch - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.4- Handle OTP response from FreeIPA server gracefully- New upstream release 1.11.3 - Remove upstreamed patches - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.3- New upstream release 1.11.2 - Remove upstreamed patches - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.2- Fix potential crash with external groups in trusted IPA-AD setup- Add plugin for cifs-utils - Resolves: rhbz#998544- Fix failover from Global Catalog to LDAP in case GC is not available- Remove the ability to create public ccachedir (#1015089)- New upstream release 1.11.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.1- Fix multicast checks in the SSSD - Resolves: rhbz#1007475 - The multicast check is wrong in the sudo source code getting the host info- Backport simplification of ccache management from 1.11.1 - Resolves: rhbz#1010553 - sssd setting KRB5CCNAME=(null) on login- New upstream release 1.11.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0- Resolves: #967012 - [abrt] sssd-1.9.5-1.fc18: sss_mmap_cache_gr_invalidate_gid: Process /usr/libexec/sssd/sssd_nss was killed by signal 11 (SIGSEGV) - Resolves: #996214 - sssd proxy_child segfault- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild- Resolves: #906427 - Do not use %{_lib} in specfile for the nss and pam libraries- New upstream release 1.11 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0beta2- New upstream release 1.10.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.1- sssd-tools should require sssd-common, not sssd- Move sssd_pac to the sssd-ipa and sssd-ad subpackages - Trim out RHEL5-specific macros since we don't build on RHEL 5 - Trim out macros for Fedora older than F18 - Update libldb requirement to 1.1.16 - Trim RPM changelog down to the last year- Move sssd_pac to the sssd-krb5 subpackage- Fix Obsoletes: to account for dist tag - Convert post and pre scripts to run on the sssd-common subpackage - Remove old conversion from SYSV- New upstream release 1.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0- the cmocka toolkit exists only on selected arches- Apply a number of patches from upstream to fix issues found post-beta, in particular: -- segfault with a high DEBUG level -- Fix IPA password migration (upstream #1873) -- Fix fail over when retrying SRV resolution (upstream #1886)- Only BuildRequire libcmocka on Fedora- Fix typo in Requires that prevented an upgrade (#973916) - Use a hardcoded version in Conflicts, not less-than-current- Enable hardened build for RHEL7- New upstream release 1.10 beta2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta2 - BuildRequire libcmocka-devel in order to run all upstream tests during build - BuildRequire libnl3 instead of libnl1 - No longer BuildRequire initscripts, we no longer use /sbin/service - Remove explicit krb5-libs >= 1.10 requires; this platform doensn't carry any older krb5-libs version- Apply a couple of patches from upstream git that resolve crashes when ID mapping object was not initialized properly but needed later- Resolves: rhbz#961357 - Missing dyndns_update entry in sssd.conf during realm join - Resolves: rhbz#961278 - Login failure: Enterprise Principal enabled by default for AD Provider - Resolves: rhbz#961251 - sssd does not create user's krb5 ccache dir/file parent directory when logging in- BuildRequire recent libini_config to ensure consistent behaviour- Explicitly Require libini_config >= 1.0.0.1 to work around a SONAME bug in ding-libs - Fix SSH integration with fully-qualified domains - Add the ability to dynamically discover the NetBIOS name- New upstream release 1.10 beta1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta1- Add a patch to fix krb5 ccache creation issue with krb5 1.11- New upstream release 1.10 alpha1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0alpha1- Add a patch to fix krb5 unit tests- Split internal helper libraries into a shared object - Significantly reduce disk-space usage- Fix the Kerberos password expiration warning (#912223)- Do not write out dots in the domain-realm mapping file (#905650)- Include upstream patch to build with krb5-1.11- Rebuild against new libldb- Fix build with new automake versions- Recreate Kerberos ccache directory if it's missing - Resolves: rhbz#853558 - [sssd[krb5_child[PID]]]: Credential cache directory /run/user/UID/ccdir does not exist- Fix changelog dates to make F19 rpmbuild happy- New upstream release 1.9.4- New upstream release 1.9.3- Resolve groups from AD correctly- Check the validity of naming context- Move the sss_cache tool to the main package- Include the 1.9.2 tarball- New upstream release 1.9.2- New upstream release 1.9.1- require the latest libldb- Use mcpath insted of mcachepath macro to be consistent with upsteam spec file- New upstream release 1.9.0- New upstream release 1.9.0 rc1- New upstream release 1.9.0 beta7 - obsoletes patches #1-#3- Rebuild against libldb 1.12- Rebuild against libldb 1.11- Change the default ccache location to DIR:/run/user/${UID}/krb5cc and patch man page accordingly - Resolves: rhbz#851304- Rebuild against libldb 1.10- Only create the SELinux login file if there are SELinux mappings on the IPA server- Don't discard HBAC rule processing result if SELinux is on Resolves: rhbz#846792 (CVE-2012-3462)- New upstream release 1.9.0 beta 6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta6 - A new option, override_shell was added. If this option is set, all users managed by SSSD will have their shell set to its value. - Fixes for the support for setting default SELinux user context from FreeIPA. - Fixed a regression introduced in beta 5 that broke LDAP SASL binds - The SSSD supports the concept of a Primary Server and a Back Up Server in failover - A new command-line tool sss_seed is available to help prime the cache with a user record when deploying a new machine - SSSD is now able to discover and save the domain-realm mappings between an IPA server and a trusted Active Directory server. - Packaging changes to fix ldconfig usage in subpackages (#843995) - Rebuild against libldb 1.1.9- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- New upstream release 1.9.0 beta 5 - Obsoletes the patch for missing DP_OPTION_TERMINATOR in AD provider options - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta5 - Many fixes for the support for setting default SELinux user context from FreeIPA, most notably fixed the specificity evaluation - Fixed an incorrect default in the krb5_canonicalize option of the AD provider which was preventing password change operation - The shadowLastChange attribute value is now correctly updated with the number of days since the Epoch, not seconds- Fix broken ARM build - Add missing DP_OPTION_TERMINATOR in AD provider options- Own several directories create during make install (#839782)- New upstream release 1.9.0 beta 4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta4 - Add a new AD provider to improve integration with Active Directory 2008 R2 or later servers - SUDO integration was completely rewritten. The new implementation works with multiple domains and uses an improved refresh mechanism to download only the necessary rules - The IPA authentication provider now supports subdomains - Fixed regression for setups that were setting default_tkt_enctypes manually by reverting a previous workaround.- New upstream release 1.9.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta3 - Add a new PAC responder for dealing with cross-realm Kerberos trusts - Terminate idle connections to the NSS and PAM responders- Switch unicode library from libunistring to Glib - Drop unnecessary explicit Requires on keyutils - Guarantee that versioned Requires include the correct architecture- Fix accidental disabling of the DIR cache support- New upstream release 1.9.0 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta2 - Add support for the Kerberos DIR cache for storing multiple TGTs automatically - Major performance enhancement when storing large groups in the cache - Major performance enhancement when performing initgroups() against Active Directory - SSSDConfig data file default locations can now be set during configure for easier packaging- Fix regression in endianness patch- Rebuild SSSD against ding-libs 0.3.0beta1 - Fix endianness bug in service map protocol- Fix several regressions since 1.5.x - Ensure that the RPM creates the /var/lib/sss/mc directory - Add support for Netscape password warning expiration control - Rebuild against libldb 1.1.6- New upstream release 1.9.0 beta 1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta1 - Add native support for autofs to the IPA provider - Support for ID-mapping when connecting to Active Directory - Support for handling very large (> 1500 users) groups in Active Directory - Support for sub-domains (will be used for dealing with trust relationships) - Add a new fast in-memory cache to speed up lookups of cached data on repeated requests- New upstream release 1.8.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.3 - Numerous manpage and translation updates - LDAP: Handle situations where the RootDSE isn't available anonymously - LDAP: Fix regression for users using non-standard LDAP attributes for user information- New upstream release 1.8.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.2 - Several fixes to case-insensitive domain functions - Fix for GSSAPI binds when the keytab contains unrelated principals - Fixed several segfaults - Workarounds added for LDAP servers with unreadable RootDSE - SSH knownhostproxy will no longer enter an infinite loop preventing login - The provided SYSV init script now starts SSSD earlier at startup and stops it later during shutdown - Assorted minor fixes for issues discovered by static analysis tools- Don't duplicate libsss_autofs.so in two packages - Set explicit package contents instead of globbing- Fix uninitialized value bug causing crashes throughout the code - Resolves: rhbz#804783 - [abrt] Segfault during LDAP 'services' lookup- New upstream release 1.8.1 - Resolve issue where we could enter an infinite loop trying to connect to an auth server - Fix serious issue with complex (3+ levels) nested groups - Fix netgroup support for case-insensitivity and aliases - Fix serious issue with lookup bundling resulting in requests never completing - IPA provider will now check the value of nsAccountLock during pam_acct_mgmt in addition to pam_authenticate - Fix several regressions in the proxy provider - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#799031 - --debug option for sss_debuglevel doesn't work- New upstream release 1.8.0 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental) - Include the IPA AutoFS provider - Fixed several memory-corruption bugs - Fixed a regression in group enumeration since 1.7.0 - Fixed a regression in the proxy provider - Resolves: rhbz#741981 - Separate Cache Timeouts for SSSD - Resolves: rhbz#797968 - sssd_be: The requested tar get is not configured is logged at each login - Resolves: rhbz#754114 - [abrt] sssd-1.6.3-1.fc16: ping_check: Process /usr/sbin/sssd was killed by signal 11 (SIGSEGV) - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - Resolves: rhbz#786957 - sssd and kerberos should change the default location for create the Credential Cashes to /run/usr/USERNAME/krb5cc- Change default kerberos credential cache location to /run/user/- New upstream release 1.8.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta3 - Fixed a regression in group enumeration since 1.7.0 - Fixed several memory-corruption bugs - Finalized the ABI for the autofs support - Fixed a regression in the proxy provider- Rebuild against PCRE 8.30- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta2 - Fix two minor manpage bugs - Include the IPA AutoFS provider- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta1 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental)- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - fix netgroups and sudo as well- Fixes a serious memory hierarchy bug causing unpredictable behavior in the LDAP provider.- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- New upstream release 1.7.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.7.0 - Support for case-insensitive domains - Support for multiple search bases in the LDAP provider - Support for the native FreeIPA netgroup implementation - Reliability improvements to the process monitor - New DEBUG facility with more consistent log levels - New tool to change debug log levels without restarting SSSD - SSSD will now disconnect from LDAP server when idle - FreeIPA HBAC rules can choose to ignore srchost options for significant performance gains - Assorted performance improvements in the LDAP provider- New upstream release 1.6.4 - Rolls up previous patches applied to the 1.6.3 tarball - Fixes a rare issue causing crashes in the failover logic - Fixes an issue where SSSD would return the wrong PAM error code for users that it does not recognize.- Rebuild against libldb 1.1.4- Resolves: rhbz#753639 - sssd_nss crashes when passed invalid UTF-8 for the username in getpwnam() - Resolves: rhbz#758425 - LDAP failover not working if server refuses connections- Rebuild for libldb 1.1.3- Resolves: rhbz#752495 - Crash when apply settings- New upstream release 1.6.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.3 - Fixes a major cache performance issue introduced in 1.6.2 - Fixes a potential infinite-loop with certain LDAP layouts- Rebuilt for glibc bug#747377- Change selinux policy requirement to Conflicts: with the old version, rather than Requires: the supported version.- Add explicit requirement on selinux-policy version to address new SBUS symlinks.- Remove %files reference to sss_debuglevel copied from wrong upstreeam spec file.- Improved handling of users and groups with multi-valued name attributes (aliases) - Performance enhancements Initgroups on RFC2307bis/FreeIPA HBAC rule processing - Improved process-hang detection and restarting - Enabled the midpoint cache refresh by default (fewer cache misses on commonly-used entries) - Cleaned up the example configuration - New tool to change debug level on the fly- New upstream release 1.6.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.1 - Fixes a serious issue with LDAP connections when the communication is dropped (e.g. VPN disconnection, waking from sleep) - SSSD is now less strict when dealing with users/groups with multiple names when a definitive primary name cannot be determined - The LDAP provider will no longer attempt to canonicalize by default when using SASL. An option to re-enable this has been provided. - Fixes for non-standard LDAP attribute names (e.g. those used by Active Directory) - Three HBAC regressions have been fixed. - Fix for an infinite loop in the deref code- Build with _hardened_build macro- New upstream release 1.6.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.0 - Add host access control support for LDAP (similar to pam_host_attr) - Finer-grained control on principals used with Kerberos (such as for FAST or - validation) - Added a new tool sss_cache to allow selective expiring of cached entries - Added support for LDAP DEREF and ASQ controls - Added access control features for Novell Directory Server - FreeIPA dynamic DNS update now checks first to see if an update is needed - Complete rewrite of the HBAC library - New libraries: libipa_hbac and libipa_hbac-python- New upstream release 1.5.11 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.11 - Fix a serious regression that prevented SSSD from working with ldaps:// URIs - IPA Provider: Fix a bug with dynamic DNS that resulted in the wrong IPv6 - address being saved to the AAAA record- New upstream release 1.5.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.10 - Fixed a regression introduced in 1.5.9 that could result in blocking calls - to LDAP- New upstream release 1.5.9 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.9 - Support for overriding home directory, shell and primary GID locally - Properly honor TTL values from SRV record lookups - Support non-POSIX groups in nested group chains (for RFC2307bis LDAP - servers) - Properly escape IPv6 addresses in the failover code - Do not crash if inotify fails (e.g. resource exhaustion) - Don't add multiple TGT renewal callbacks (too many log messages)- New upstream release 1.5.8 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.8 - Support for the LDAP paging control - Support for multiple DNS servers for name resolution - Fixes for several group membership bugs - Fixes for rare crash bugs- Resolves: rhbz#706740 - Orphaned links on rc0.d-rc6.d - Make sure to properly convert to systemd if upgrading from newer - updates for Fedora 14- Fix segfault in TGT renewal- Resolves: rhbz#700891 - CVE-2011-1758 sssd: automatic TGT renewal overwrites - cached password with predicatable filename- Re-add manpage translations- New upstream release 1.5.6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.6 - Fixed a serious memory leak in the memberOf plugin - Fixed a regression with the negative cache that caused it to be essentially - nonfunctional - Fixed an issue where the user's full name would sometimes be removed from - the cache - Fixed an issue with password changes in the kerberos provider not working - with kpasswd- Resolves: rhbz#697057 - kpasswd fails when using sssd and - kadmin server != kdc server - Upgrades from SysV should now maintain enabled/disabled status- Fix %postun- Fix systemd conversion. Upgrades from SysV to systemd weren't properly - enabling the systemd service. - Fix a serious memory leak in the memberOf plugin - Fix an issue where the user's full name would sometimes be removed - from the cache- Install systemd unit file instead of sysv init script- New upstream release 1.5.5 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.5 - Fixes for several crash bugs - LDAP group lookups will no longer abort if there is a zero-length member - attribute - Add automatic fallback to 'cn' if the 'gecos' attribute does not exist- New upstream release 1.5.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.4 - Fixes for Active Directory when not all users and groups have POSIX attributes - Fixes for handling users and groups that have name aliases (aliases are ignored) - Fix group memberships after initgroups in the IPA provider- Resolves: rhbz#683267 - sssd 1.5.1-9 breaks AD authentication- New upstream release 1.5.3 - Support for libldb >= 1.0.0- New upstream release 1.5.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.2 - Fixes for support of FreeIPA v2 - Fixes for failover if DNS entries change - Improved sss_obfuscate tool with better interactive mode - Fix several crash bugs - Don't attempt to use START_TLS over SSL. Some LDAP servers can't handle this - Delete users from the local cache if initgroups calls return 'no such user' - (previously only worked for getpwnam/getpwuid) - Use new Transifex.net translations - Better support for automatic TGT renewal (now survives restart) - Netgroup fixes- Rebuild sssd against libldb 1.0.2 so the memberof module loads again. - Related: rhbz#677425- Resolves: rhbz#677768 - name service caches names, so id command shows - recently deleted users- Ensure that SSSD builds against libldb-1.0.0 on F15 and later - Remove .la for memberOf- Fix memberOf install path- Add support for libldb 1.0.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Fix nested group member filter sanitization for RFC2307bis - Put translated tool manpages into the sssd-tools subpackage- Restore Requires: cyrus-sasl-gssapi as it is not auto-detected during - rpmbuild- New upstream release 1.5.1 - Addresses CVE-2010-4341 - DoS in sssd PAM responder can prevent logins - Vast performance improvements when enumerate = true - All PAM actions will now perform a forced initgroups lookup instead of just - a user information lookup - This guarantees that all group information is available to other - providers, such as the simple provider. - For backwards-compatibility, DNS lookups will also fall back to trying the - SSSD domain name as a DNS discovery domain. - Support for more password expiration policies in LDAP - 389 Directory Server - FreeIPA - ActiveDirectory - Support for ldap_tls_{cert,key,cipher_suite} config options -Assorted bugfixes- CVE-2010-4341 - DoS in sssd PAM responder can prevent logins- New upstream release 1.5.0 - Fixed issues with LDAP search filters that needed to be escaped - Add Kerberos FAST support on platforms that support it - Reduced verbosity of PAM_TEXT_INFO messages for cached credentials - Added a Kerberos access provider to honor .k5login - Addressed several thread-safety issues in the sss_client code - Improved support for delayed online Kerberos auth - Significantly reduced time between connecting to the network/VPN and - acquiring a TGT - Added feature for automatic Kerberos ticket renewal - Provides the kerberos ticket for long-lived processes or cron jobs - even when the user logs out - Added several new features to the LDAP access provider - Support for 'shadow' access control - Support for authorizedService access control - Ability to mix-and-match LDAP access control features - Added an option for a separate password-change LDAP server for those - platforms where LDAP referrals are not supported - Added support for manpage translations- Solve a shutdown race-condition that sometimes left processes running - Resolves: rhbz#606887 - SSSD stops on upgrade- Log startup errors to the syslog - Allow cache cleanup to be disabled in sssd.conf- New upstream release 1.4.1 - Add support for netgroups to the proxy provider - Fixes a minor bug with UIDs/GIDs >= 2^31 - Fixes a segfault in the kerberos provider - Fixes a segfault in the NSS responder if a data provider crashes - Correctly use sdap_netgroup_search_base- Fix incorrect tarball URL- New upstream release 1.4.0 - Added support for netgroups to the LDAP provider - Performance improvements made to group processing of RFC2307 LDAP servers - Fixed nested group issues with RFC2307bis LDAP servers without a memberOf plugin - Build-system improvements to support Gentoo - Split out several libraries into the ding-libs tarball - Manpage reviewed and updated- Fix pre and post script requirements- Resolves: rhbz#606887 - sssd stops on upgrade- Resolves: rhbz#626205 - Unable to unlock screen- Resolves: rhbz#637955 - libini_config-devel needs libcollection-devel but - doesn't require it- Resolves: rhbz#632615 - the krb5 locator plugin isn't packaged for multilib- Resolves: CVE-2010-2940 - sssd allows null password entry to authenticate - against LDAP- Rebuilt for https://fedoraproject.org/wiki/Features/Python_2.7/MassRebuild- New upstream version 1.2.91 (1.3.0rc1) - Improved LDAP failover - Synchronous sysdb API (provides performance enhancements) - Better online reconnection detection- New stable upstream version 1.2.1 - Resolves: rhbz#595529 - spec file should eschew %define in favor of - %global - Resolves: rhbz#593644 - Empty list of simple_allow_users causes sssd service - to fail while restart. - Resolves: rhbz#599026 - Makefile typo causes SSSD not to use the kernel - keyring - Resolves: rhbz#599724 - sssd is broken on Rawhide- New stable upstream version 1.2.0 - Support ServiceGroups for FreeIPA v2 HBAC rules - Fix long-standing issue with auth_provider = proxy - Better logging for TLS issues in LDAP- New LDAP access provider allows for filtering user access by LDAP attribute - Reduced default timeout for detecting offline status with LDAP - GSSAPI ticket lifetime made configurable - Better offline->online transition support in Kerberos- Release new upstream version 1.1.91 - Enhancements when using SSSD with FreeIPA v2 - Support for deferred kinit - Support for DNS SRV records for failover- Bump up release number to avoid library sub-packages version issues with previous releases.- New upstream release 1.1.1 - Fixed the IPA provider (which was segfaulting at start) - Fixed a bug in the SSSDConfig API causing some options to revert to - their defaults - This impacted the Authconfig UI - Ensure that SASL binds to LDAP auto-retry when interrupted by a signal- Release SSSD 1.1.0 final - Fix two potential segfaults - Fix memory leak in monitor - Better error message for unusable confdb- Release candidate for SSSD 1.1 - Add simple access provider - Create subpackages for libcollection, libini_config, libdhash and librefarray - Support IPv6 - Support LDAP referrals - Fix cache issues - Better feedback from PAM when offline- Rebuild against new libtevent- Fix licenses in sources and on RPMs- Fix regression on 64-bit platforms- Fixes link error on platforms that do not do implicit linking - Fixes double-free segfault in PAM - Fixes double-free error in async resolver - Fixes support for TCP-based DNS lookups in async resolver - Fixes memory alignment issues on ARM processors - Manpage fixes- Fixes a bug in the failover code that prevented the SSSD from detecting when it went back online - Fixes a bug causing long (sometimes multiple-minute) waits for NSS requests - Several segfault bugfixes- Fix CVE-2010-0014- Patch SSSDConfig API to address - https://bugzilla.redhat.com/show_bug.cgi?id=549482- New upstream stable release 1.0.0- New upstream bugfix release 0.99.1- New upstream release 0.99.0- Fix segfault in sssd_pam when cache_credentials was enabled - Update the sample configuration - Fix upgrade issues caused by data provider service removal- Fix upgrade issues from old (pre-0.5.0) releases of SSSD- New upstream release 0.7.0- Fix missing file permissions for sssd-clients- Add SSSDConfig API - Update polish translation for 0.6.0 - Fix long timeout on ldap operation - Make dp requests more robust- Ensure that the configuration upgrade script always writes the config file with 0600 permissions - Eliminate an infinite loop in group enumerations- New upstream release 0.6.0- New upstream release 0.5.0- Fix for CVE-2009-2410 - Native SSSD users with no password set could log in without a password. (Patch by Stephen Gallagher)- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- Fix a couple of segfaults that may happen on reload- add missing configure check that broke stopping the daemon - also fix default config to add a missing required option- latest upstream release. - also add a patch that fixes debugging output (potential segfault)- release out of the official 0.3.2 tarball- bugfix release 0.3.2 - includes previous release patches - change permissions of the /etc/sssd/sssd.conf to 0600- Add last minute bug fixes, found in testing the package- Version 0.3.1 - includes previous release patches- Try to fix build adding automake as an explicit BuildRequire - Add also a couple of last minute patches from upstream- Version 0.3.0 - Provides file based configuration and lots of improvements- Version 0.2.1- Version 0.2.0- package git snapshot- fixed items found during review - added initscript- added sss_client- Small cleanup and fixes in the spec file- Initial release (based on version 0.1.0 upstream code) rusvuk2.9.4-2.el82.9.4-2.el8 .build-id0137a3e5710dce26d41d64ab7b745df46da273bdf956f3097377c6d4704af63f4cf63afa8ada5edblibsss_ad.sogpo_childsssd-adCOPYINGsssd-ad.5.gzsssd-ad.5.gzsssd-ad.5.gzsssd-ad.5.gz/usr/lib//usr/lib/.build-id//usr/lib/.build-id/01//usr/lib/.build-id/f9//usr/lib64/sssd//usr/libexec/sssd//usr/share/licenses//usr/share/licenses/sssd-ad//usr/share/man/man5//usr/share/man/ru/man5//usr/share/man/sv/man5//usr/share/man/uk/man5/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -mcpu=power8 -mtune=power8 -funwind-tables -fstack-clash-protectioncpioxz2ppc64le-redhat-linux-gnudirectoryELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, BuildID[sha1]=f956f3097377c6d4704af63f4cf63afa8ada5edb, strippedELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, interpreter /lib64/ld64.so.2, for GNU/Linux 3.10.0, BuildID[sha1]=0137a3e5710dce26d41d64ab7b745df46da273bd, strippedASCII texttroff or preprocessor input, ASCII text, with very long lines (gzip compressed data, max compression, from Unix)troff or preprocessor input, UTF-8 Unicode text, with very long lines (gzip compressed data, max compression, from Unix)66PRRR7R8R RRRRR RR4R.R"RRRRR!R0RRR(R/R RR RR1R RRRR#R5R9RR RRRR&R*RR)R6R3RR+R2R-RR=R R RRR%R4RR+R2RRR RRRR$R!R6R3RR=adclibind-utilssssd-winbind-idmap2.9.4-2.el8utf-82e1220ba3bb8b82718ebe152d68126e91f04f8158d1faa7931313ef5c75c9717?7zXZ !#, ] b2u jӫ`(y/u`쮱ctְ&r* ey ]Ni,,bzl\`yJ{,۬H14A/rg—hfd ǩQ`$"wi^#1*"ԕ3m+B ;a\nfCf:q' 3 b22p ;cӺ,*pK)ѥ+7T?rxNpMY=xֵ;! =DŶy2iw2EΟ|MkiϹ>T :՝^-o"Gv+iTH(k ~0qPN$Ǥ-LJGjO防4BTZ*-1H46#ԇBM˿5?TiYޅ>=cX4o&.~lw)B$G-|J#;q.4z?KF`دN3+ܥL)8˯STذg=}'3W ,}Z-:P_(yL* lPlDe~N.&C=z< K4/VT?fa&} mR&h]af³v7l#Y?K5 $/) e~Ҿ K.hXz߲bBBc`40ĽMP_F6UW,Xf̅YD@:i,-;-42Vعڨcu  + jbb64p\rF%eR¾1J^bs/yvf# aij}"qg㖿!- ùc.U3kN7bn28&=/wL$97e|(.-tNO8/WKL}`3HYqD(S%MW4c|ehL$ay( 8*ow{ݒɦZi).h2Qw>7ilT8&S/d~-=-Gv\j-G:R Jf8}/iJ>uW 櫗p[8N-?\Rjk46^c:&e{¦ιP,Eط -Wvh*H)Y$\p-6-A#RSNȿt@Icf SP UhblǷhDO^i: 1)F{y S[^.pd "F'\p0C>3P@ ~5l *gD#n5 hד%\z4ۇH۞@![8Zd_1PKp :i ZW?#»~?ˊ]$ԯO&{%ブ'] 7GUd?:X.+;6MݤQJ0/Y.]4@fxꛯ#)x@1}?Y3k0E?<:NfY# ^L7;KE^3)ZF> 0twC7@^++JmARy2* \ vD5͎ m#E[h0MT#gW(^x@U >0i0^[]6EUpp3p.L'Iud .>OwU,2 Uu?YoKHNγ7MWy2Aξm}d˂Ѳ' 2UWWS9RDKy+N,&ڤP⯷Dw ˒'wrn5wNFєdZ[O8 c6{4a3LJȆo& 'jє8a.+.]OUs`8|DSL ^C<9uXc:-[0`_}sq/=:D;]]0%p9|7lǬā#=p. =r&W-OEz]Vȟ \5I (Dy]Z׻W tvuUvO8\g zW~ڋ. BBPc ,jg$3+[ ǢDbˆmy^x">d}U_y_NzBuuiZφ`P[*vPh&jqJx|O" N[]6l""3o$܈'zUHӤN7vGOA4U-)g1;&ND(s 8;;9DVao$U#/ YH8:x# 6{?CyokZx[ECn}@6:LFwYk }bk7n`rPB06c5J6/ؓɦ>Ǣj;_&af ZpθHt=FZ$0'mB^Q[vw5Vht*u.J FZ|H!w/$֌0((UB{DW-EtZ5}B{1_xI]hئ3Xqp",#[LV@5-QK/!IDKkߥWK}jkPS?FIWi['j5HLgGYZMٚ_@[TY FGo:<֢NsX_Y 2Ye[ H}< ,1_ CS~b%EorNGhΛѥrW+P#5z SEd~GP8%' 'L{{9j|{e!؅;ov2/B ft@?.q#Uژ`>oc(K zвtg2Lּ6b|**T;HlGk+Oۦ.1 ^&u(viذUH_ܰtuʡaSsK\%`u(%ܓL{VC.2xSUvn6yN5 =}R啧`*;"G nߔE{BR5`wpԚ?mЌZ_(55cĵi f<Ye<҂LwE&bEۈ+_AɓMc~Eܔdʸ4"t˸46T<eY|ȨhpWud!mI<`67."i] Zcmy#mƭonJ c̓s}P 3|/69bRTo, +peT&fR?ʴX}~袤eߧF5v;mY ֖k*O!)Ѝh@]˃]S!CܭycYl װoD,FFܓ(: ]X*?L_}8]ĚqB^-p:Cj4c n(`s&]4wL`@^jwO8#nO1_t׼Sq_8(mޣڗ/X<03[%pi2I!r5gӣpAXh渰ko.jS6EN% %8< wQY|Ѹ$AO `7 .K0s!*JٙrGE?fcGԄ_k2ZqwWꥒEjG=F7oDQo*XJIѷzbA&e I1gCey~SO"sʗ{s|`BxbhlozH#5d-kY99hG<5~2p 9e.^g*hQV?+v :\pi-s@ sΣo`[kcX333]8{u*kup*uтwC(gj~ 'lDOnb7!.kqrxn@7 ҄R+(FMJ'Hewl[֟١CT߄uκ3OAdFꙋ"igxܳc-m}4 R cGCg<0IJ3I+-^ &5v Ƃe1hjÜb8_ׯax$lF Wg%nC*%;OR❮& ux>~{>NH $2Qk*p ]?2@&jp9#qm8B4#G.Q,qY;Y`?BƁ. @?YfmyȀQcՏ]z#y8: bj7KΘEvUڋPBZǶyڙkĖ|_qnUse]2R>qQ7`$p|M\b˱t[f6:)/ǯ1ɿ_HL?&&aBlܙvr|cr%kԖLE6w_ȴ-X1e7!]LɈDYJjWl1{aLjxfER| a?#ԏdTxA`t ˏ`i~pALETl7 S$jK`$V u3/H\^]ur[=i@&\0Y9!q(Cw)>?HM5ozSktOJO fZ+Œ&~jVFyἧ}}ye |_Z9E 7a꭫*$Q%#ܟq1wz#A1hobYEJr--MνL9*݆Qo_}: B 9OMjͫ/Z[é68IgN56J;zL98>Ť1aQ.*fY>0P_iD3e.F"7YV](~g+(*LmO:C}/xg]$ A/e*S)eFOxOz^]j⇬ٞ/7FTfhc0Uze+r@݀zճlfDHJE:K.-wj6mA~JAS"R19MyXa88!~`DZAZE}0@xIkWôldx J5I@n0܁ zrjy&~:뻿) B(5BWd|slҡLkR1!FXá ]&\Aөeho8~jz-RS8iGΩ&iƫL /): +ׯRi%>%MD@MG6ܰ[MWz_z"SHqQt*V܎te]#EwKʯ9cCW=ڢ˧Tx^Uk h8&"bpu~Q&򸉣etbeZ>O[oܬ*-[J\_Lo7Bc _XX@V&oۤ}tOaD/ v]xOq-wh™3r[Q[Žb1}tpܚ7]ۢ{kDߋ_[䜈1ֶHà8&Y$Z aKfj~bkEkrQHɥzފ|%aۥ6Nq.JyR5 ']5N0ÙYNJǖ]uo"#7U{,NȧR־6<D}X6Z kT@eο3kSB+͢;Vqd/B2@۲6:kwsiի#R(q_fX m%k A-v2-9 \42jOf\g`#FyA#uG>$ hج}bژpsgsbCQLbsiUb4h% J\{͘I%קْ2-ֽ7\L|ASoak)5->J$%0 gCFY FyCRcAz _&jiӒݿAفKj3f<>AWMd EΚ>B5Og~sDK8W2JD~nMފ>As>ݛ`[Dt~kSPW6VWu4wJD 4[g#(6>O}]M+P9j /Bb&ڧyp{ĺA #3sP "CDt 4ԖUhmnK0OlϤ-5%qWO`d Yм ^H]E,d,ۧ)HCJӰ AgMiwS%||xlhf@ =a f˷Is!}h'FG,~GZtǬbKBjŧJT N͒*2̗5mћmTlc=.=@&;].HkBO . F>5ߔ|Pl|l,7=xXU `4eb;kf>aS͎yOEܝfiVD*8uӑ8}Qt?XƸ6 0EAlݙY4 N;#%EP'Aлm oGAKݷt0I"N~kW5aCnEnw.sdg5-7ӧ2yiC4 gvPr~_+tit"!C:60F 06T)PWi &##ڽPۓX`].o|+͕jOťM b9UL{ Yq&`RB"CʷcskIV48dj q0`00{fno?mcCe :H @@m"24h "{1Yr@iBU,כlEG6\_j(9C):1 8<%7l ]iA#L4"i}Ý%Vhͤ[!;=@e9Rs-~Y#5j4v4}߹:QV'-8NՕ#{8Oþ(r_`oDZ 1Ge0Ϛe$!zfk+ ӹ<)ۇ%0T-@qҎ2RKf gM˒BQa^o:^I"4>aexkҶuWJMAÙa[u,ZJ*tʪ#,RFT;TJȰ$^iseUxc tx{6UzOιpQ)൦zucSnCe$z>6lɇ(…Xn`w]IW$/Jv~oG t-}n/폵ZڣA$>*N'fCQ"l*ErސŽzObR.xi9cO6\$]A۳> .E'dd393bQ " <;'k W Q? dݶo jv } 0 %,g dR6VMiC(o&6 _sړm$たDg@dPucTЁӵv\q(I7|m\.f\!& {2?jL=., %Cfq>Z/- ۋYMm0][ޤ0Mhe "pum$9zGC9(`ͥ}س88f8~tfk/0ҏ ÇNfmv퓫I%2:- !6 C&` EbHQtܭ4*q+{a[[e'y/ö^ܽ)Š=L!N+ '߉֒BX̏ƆKGDŽι!gK,1\bDK ̎j"6;;/8thfYk_ OA/wo))U IMK)>*3N{y8acɀt+=nW`iY\ 垼 =.p{4+E ` fnsG0J4a*Je ۂL Z2!ƹId{w?'1PQFC7縺65k1uT蟩i]O(r//O?FB{3ږ++^vpe.ފt=>"1z]} YE8(Ea.P-/z%GgF(ߧ ws/UIS}4l"ʤ&R`(ƌx K;Kd`~@9:z7|+qVÐ mD Degǻ+ {H]+|^q738nӑ+ނ  "U)>'s{%S_k?:9I/R\f-3)'\Wj @s  ^j=<8j~N%XUQCy*D;>wwa!bzU:kJBл1{4}Q:jA}ޑ==+W:Fob!r4gWvkK1nC/T(ƞ_Y( POĄ.S3)IT Ɛ 0J<0N` @or;h-7T.%lyOLO{ꂑV+0qݡB2ow%T7bY6A(a;]\rKN|H^m&L;)Lo1|׵hpG=$e~ó4 =ycwKI-Oٶ!]bHB]}ұD[+=OQpA ̶iN\}|zi46jGAF2aY:Zc0,SRG=[Cրdl_%zijiH'SDZ&CKN^}w\2&_K!S\9;hÙ]4ٯ g>;ILILi;5#GnMz_mŹ"5[Rw$;4&a=#"h젮&))G׭<_ [ua9Q6871i3B9yE6@)8*9$H9f.<Ѓ`Ŭ#+ix aI?'Sa:wTc2ܡ< yxl NjWk1tohw A0Ȕ@P 1 ZhRD05`;&R3qiS lB-Ai[nc-F%TF5ryym aؤ a劣zigC. fD8 u :_tXn!HkW9 j\^iKl| s(ze;ICכٚ2>u`ɳuarv=li )ލ/.=|1P(9ǎޅAen!,07pKo< : gIs|lM3H*K,QN  VtPm %DKfW"< '4B- d8oy*6׫R#|ZWD.vAr(~ T #\&Z4j+~Je>  3,KEY6ꘅm颁/(@q*[y`ddXaN>)W6" TL3]5[^E#Xʷ/Kq{sUgm)aj)=s]$ڄqoaf!jG 7d|{Q6"a5Mu(XƁ!s8 y0>Wj/z5vQ6Wq)j6!' 7eOs|;0Oq1<(F_~+aبN=Q5XI+s[]dUR#:[_=;!ng KT%FT>j~`X4 ^d0]EC*B`7MճNeP}Rv)=$Cq^[}4"|kfzM>s/YW?`ԡTtm0zDww6j8]g-09JS%Ɓ~G2"^(_C=moo9M\_F? SQA ȉG]oܘ.~ZLvYda_F&:F3tV>.ɚƒQ_LMG=CFjDX wT 5kˎ.M^Ƭ9T*lOJs7M b&K {cʹ9X6-:hm|̾qtTTFP@ YBb{l70JQՁӵ{]|:T/Uԛru $I9Ԩ ٰBP M$֎2;a(R l3`d#^MlFJ_(*RF$6sq4H&9ZIނZb_.{^z˘bHiu79*ߑmrph\ )l![HK1G`+2:PT/>-鹷~nv6 7`qv*$ZbS.|bzn}((+z4\.2W/U0纍?=>w͗.Ku<%%:a<].%rI mG*?bzHjw~ aliJm|s'H~wVt6y6|,M.Յ<xEdkhD4$.d1%XՆ)Pnշ]GJ@t.e!2>$|Z]-Ӯ^Dڳ23b : )k5r<?Ӄ2YG+lȔ9${=/tQ2sin LQr`YZ7trK~ⳅOĞu^7}O5f^q qQBUgg?yֲ(q*{Z@qN,?e,ش \/. Ԕ)wK8`R;XPzN^,eо?ۖmTgǸx1A<*ЛZ{$^xQ+"vP/JZ="d&:PSt>!J:c?TKvI-tv"v¼*GlUg_w Hc,9?,#l@7]:GasZ@>8 )]D3p*1MVLwC;b#CLXΆi "d@l}~|l}GDdca8쇬[U׭}[WUlr{ia"-}5ᗜڜ? EFV{79 E*$A] ǩէA 3T/7XY]x>}5u\SjIA j vMmOXOT ІL$a<$tF]K!r 햣pW,uL۴?q C"F3odR]Rwg5Tׅ$q j.am692;TNR!#jHg2hs:IcCUHi^a6˒8(tݪz$4?6aQ~m4q}A$.f/ _7(-ypVR75\6Ԛ|};^bbt%իUC:[r'7\+~ۢM?!L/x1iܒ~6*K<N/MD9T<ѐ"h2IqʁCfMJpSxݴ(]YTHzt%2" nL]&XA,B=b΂o* 1n(Ҍf>RB`9p}Ǧ,#(G<{:* f!*k\ӌy₤IIV ݝ x]G#N80d]gǥj0Gx &vB-:gO2~rF3h©\qDз;,@F1% aJ:n,&9N/ghhW%aK:0ۡɧ-4OnU(\ w?X_St+MP0$25wxLoNS+VMq'_i6b^ A3K@,Go+OsBMayI Y $!7A˨h/n|ױAkkk da& F6V6a% 0KV_;(;_u5n8RxCqc(C8plwKЕ AG"G"}w5٩p EzUS҆d@s{2! '3%g9z?+oZ7z}vC{-.bDA10\#h6qJ,T61/'Ai@+(oP(ҘIZ,D*ՈN"*⭑Rl 3=Ã1Ao(nJpK$J}4 RW(9|0DT*ő\4 bXK: 'pntD^W[+񁡥wݚk# A< 4*S-/ vVWyo\6ԉoPOȯI5;zf͢XsVEW}C 9Aި듦,hֽDha=o0ю{lF>UNA_K$K1rr^tvP1 GSd`ZpZ)yŦJ$v^Ez'[(trtx#Z>!v}gQqH5"MgQHۆJE}:0skڑK] Fh- Xv̒lhr=@je|=G5ܭmewwӁF2f5lӦ'z2Y\WTZXwn+!~Ln /y'ᘘ˂a,aɩ{>*$M0gZBr|qMWςJ#L1xQPM+C= ͊b1EYn39P V=PhjbJC=[7"H r@#p[ %줜/"E^m&~kX|Mr\gәY#F OtXS;M$-;/>ehMIn͏3'Qh'Oը-[d)K=sF$ i+C뇗b}Tsh84A{gO=$'m,شԻUBYG>k=+4@[m:?s~cLDBeHQijB}?0Iis%{I-sь+Uڙ}֖5B>o"ZψoOxzr`JL76b` UEsl}w:jA,ʲ5)-*hlEeƯj arovǔ6NRzٳ߹+1}/5E(q aQ*"ՇG>*eH EuIlJ5> S̻&FrݵUw@DJlw YZoޗE%9et;<ʦJ)YSVhBcO!?K^¥{bKKIcjvdUMΦTמ'2 Uv u`D}x+YAE :4LaJ (a_m"KZK6_T*S"{^\lNp\$(4rPB0x]K^Cݐpk#p!b]!ov8I;JVZIlfdJ6ZLAU%Fu髎@X0 /^EYds'Ȃ\uD;s={Xb)|W-?j(78 ;#*:&4> Q,ؽM@Κ`wgÓZd9CiˮOIAP8]zxTP[퐖.wYV:He+رy:Z\*.𖸇8nTFGW둦7 FW juXi1 ;z&&\ } $>eeY_sp/4)|--3, nh }H:u"v2;u+>׭ {}CժQM}> Zmsk@\?iʻ JGg0(^Q UR`ti \Szłvv#}YF (=wnL x߷N#H#v(IVpBGNs_덉uQWX]/Bc;>ʺFmXC䇿~Y򑵷.|M*՟߁1Pʜqе$10!Μd4$^.Ʃy?! "V6lA%֡Y-3R2oI'"g7_I%0}a)Y OPM |Pm1Y]Hwi,Um5C1-FXƺsb=P)(+Qbo4P>8a'^|H W~z|SԆ /CKv;R՟A[ʥ>:16_ц#+c|f|$8Y] ϓI4+pZ+]9_X7;BIL TYj0уSurT<#v6J!ȟz !:JCkbI~MTa E\ח]Y럮L; u"(-G!5@wUQ;ER+<2YcLPCN" NqjXSm`#zlo[ ehrW sLrEʫ":Q+k!N&ZT4i?i_, m!5 m?d XXTDӼNm̗=XvY+y/yJ'4@5"[2B_Ҡݺݝjoad7+}-_RÅݲ$jPz+` U%{4PIJ -~'A zmw32sm#At9K) (/aM;f@R}$NNS-ށRf*k'$LGxYkʚq`".~c?kD6>bckîT K2߆ b 7⟆t=Y/S28V\L/Ck\Wp_j!o1'lXI2U?e+`]h8.R`nb{@gkܪxVU9 É,[ W9hTS|ȔbzVhuÍeK,i߱(z~=܆٪z"|VRpP !S.MͷW`JHSPY%fTYrJ2Tr eVw!ABR2j>@ +Uy%&LY}(7oèV/\=.St8rQd~BGad\I_^Oח:E@(@EmEBl.!>pņ,F޼3>Q_|u01u~4;k/V6G \1d5F6S'a2d=Zo"`#2secbЬ":XȈ>q6-@NToƬC`U]Y[" # &\^#PlAE'$^Jr޴%coRb$yvNՄM~]`Jѹ%[N+^,ߤc6GH`[f˗({orC:$=4Pk]] gM5)wÿ09 n`VL=`ho-G K0-Tێ]ң68qGN³ىcchHAh}ˣ2J5˩)'[PtA#t59`TPA61SQQ2H2&%'_CFH+ #R@%)]҂qw?ʠ3%4 /B3H,̈^SufU ¶eͪ G@Qi'>@˿&-jSiдxjxk%g;ѷϽN䃬~߫CJۨak⧟A]"->Zi,h@v>ݝkH` >h'ad&4ErUP+V ͏+ҮkP4b E1ٔ"UbZr #_#i.qrJrNT>3%E Xs~*݇IZFZ8*J 3B'K:u |[旄{.̄;? %PځJ ? H,}\~8ΩPlcb@pvNmsUۑ-C,;G]d~gUWa6zPR~b I`U`K>[Idf7qyWe@KUsn 1Wn.vxJR3tX}cUxl5];"HFEo 9tqBମֶ@zmC8VamDUEoUg7ϰv.To%qEomgDy߳{!%e8.ڹWd)֎ pD$7O/㾈τT2[-l2&raNxγETWRm[p; n;$S8N~xNDm }>>3̎,%slWGObY 81e*X.[ꭲ> XU=l^`flΧT-=I HED^I7{"C:WE!FTJV:BgAU P]hěeY^)eW]ڂwφe?r3ky6l")̼#DzN ?R $E V8%kr?:%%iph5f&`ai3&aʝ}|g^ v-GXGDVq)/1ZqC+@cC͏mXTTa~ۗM-5f2VT%WC'%gonqŖD{񏦡ٌ u95M$GZx%#߱0%hĮGʗt4v0c1&qa-ؖ&8d6* fn")\X:gzc P,?l؛` y"j7sߝNvNd,!gzCоEWN:a',^QTb} 2}?bE0 8^sazbi%_TsOᡶ@m-6'vE{gN_8 cpGBKomWMLg8ǩѲ?L|o]~dPBT񻘪sT Z>ql! ׺x9UY'F:GCUj"2JoNʾ]}-?Œ,Y$@g9'M5qe8eI& u3˿^|Uz Zljy1kJ@lI-bl,*EAN4KivS{|n~:4{4:ʃvMm"UV3S%$0G,ي:졮 e3_ ,i(zkP>CE~f| |CT깿wӲ|\ Xa^6(_@T8xKdݯ\֕Inغ^$lZҸ&ok Js0{R(/T~6dUSE 8 =X׹x#/ݐLpwhMW>; Aamn7/̩N & Iɻ?V>8nL-6ɾƋp $Hso΂_Qy$!8%zlN3GجmKdQ/(y%Y%P Ue&?A42;†Xc].r5XX kƧM[ɣ}6{Ck_؉ bx)ڙ}v a|'x`13LcCۣcrY-CfU@`n>;bq47NoN)pC9|FA7=>;V 6zė78^_o!m8'7wEEe>Sno0oa}VxNX{̡ 8G1JkS;,4[d^x/ZM dj\$ r.JRiGd(֠e@im(g2kMAJ(MrG@[{P}aHb--_:\=mx_ssR _ȅTHӆc{u#Wdz9-q[vzQe^ ['Z?Rq-bTJƎ nܻqwyZvVU?LFo) " OK-A2mLnl&I`W u^Wֹϩy]2GTIjNrP]/I/M~b? ,xf u%vtJޠsROİl§d}(Lu XCى xڈf)tğ!.%b ~&QdmK&lHM"_®BcłGݥ=WJh_芴J ?Tn仫X<X<؜|U%# >,3y6QBCaTWi@epNe(ƒM28؈ә L|YJrd$D}wƨSӧP?Ļ~ju3(3FU0l$ѺpRcr̨e_R ek@%u=c&_a8S0RNp"Sw)V܉g^NK`=왙ٵ]ܜn2#UH oxLkWp\ܕtMjqztKTlXX;')^WKЩs#IKP} iu|-UC[?#t3[N=·ĄR>u+*4/r0l,j͸>^+ 9CiX?5&>$vơ|)TF$mpUNT<7Y<‚كW^h>f-l~V֧ r{q#TEJCYGU!6zɸa՝ǡP+Hv\9}厣!&Z?iypo/ޠm%y';'n(/fdeh2`I]UY4+FоF\[kG"MoG}DE_|Կ4v`hV U9&J/`8`'Fݘi}.\vz6k)Y#C d~;)b Z#xY6 ^eː^g+Z+ _/FRbLܜ 3vr{J ]-)ni"Gc蔪(r/B)vZ_<֝7d.<)-zJ_,). H:P;b&WEה a+̫;m/`Յp :8&V3~_ 2SF0mu1{"(Q?[(I|ayY T-Y$A&F)GV1z>d+˃3 D$x4`Җ{8@']k:`BZ~)li;'":1o@AȯnN~dg_Wnj]kjC[?=vBwy!sik,B3w;3|"`iH$EaR ,W4@0O%wR5]'2XMQA; {0=UlJ>U &ۉ%T:~O a! ^N fFPHY@:т&rs2`br+$1бݓ98xHQ}&yӜhi+j^DcݸǾ$}Iw(G.-3BZb tgDx˓ C5)Nx'ѳgkC{P|C!H \ʥd%$ ןё,,va/K7{pZ PT?aEH#yEѹ|{VE_c3h=Գa߂țҨFAUPeX^W>_SH:WG4 .2UHm=LŠMjzuW[6Y %,ͣQ6}EDF`{'ʹ b3t]BU:FGȎcmBi@>xyʭ)_kC'F,Gi (ooߠ85-=zI$k]lݹe}q ɭjo$lu[qAnw~P:RyPjI%o,n>L9W%5Ti)3ˆ؟p@eo 4aJ~N mm(mT(Ivaz_) +k[U9t@|Ozu@"OnE@Μ$Eo= 0%C|TAm@2Y zdBC )Ψ KN۫h`)C:\K1֪C[)1$l%3X88Ňh"ue5gj :߿ T]v]-1Q4~gFݷ@N?G^AD̾ݏ;n2 mJ)ѐՖx)4C=7sBΥva>*sW nq3OvUszb'` `i{G!7]bQPQ=8O5 R n3,SF =i$-doXȊu].&eIQpY>,H %UU`kH)VlĒYaK}&Js{K^~q3Kj8\?e@p&VɃښ 4Q_,s3)BR8QL}W џ5l,*&aT-ƄX@Ujd'GU_3|~/aX @OgVsgr"&Qup.(Д-)qv(~I0E1्T"O1Փ>(%v#aB'XTQ _dDVS'dkɉfy/4MHq'P9\;ũ[Y0HnC W>!P8Dž wXٙg CGq19Nlzq.!ڈFx.9s -zJ%yc]ifSheٵ^e_<~Ay=ir{]{(Ary~7U)\&8OQ@bw 4ip,?K&2&pM-]7U19flұ~cS8Y3d"gi S i5'Gf64G2Ր 뇰0F|!sU<҄Eeg˷A**U6lAbE^tg/&Tb9`@1Xl6ݵۖ*d0y4˶ڻ$yUӍHӨpDj~xۜ9u[n Az $xc ! J`o'2H4'|G`zX-R0~娲Te)%U/L]d?+ n:mQT'yWN8p_ Zن!-߁`6 ,(['HUNBݵUP0EONJG[T"UJ\2@d?rwQLcu2j' <B 8NVbXմl FL|Q{l̪a^/cڢs\sw-= 98nuXЌx ) qJ+VmM$4 _c6A5c,.7zfCF);^8wc:j iءD3$;ct}̫8iFp?ݥ1/--bYEn.zm+"G(8hAgT6ćP_ԢI ) yo|i#h.{64dd3='*}%+kwB")#?q"4=c[|$ӭYtz~ҧ*{A .v5X6&ܴ%_3FNuVx{@_) v,@U|NoU'ˌI Dw88BARXb5RTKX#t ftU w/~?TB{Q:j T (NRK]ex t 'q7iU!i矺$<6UX\ \xn^s$LhY%H ـ gn[JS,62 yC _<ZWFu0O~zGxV^2XUjU⿀KgXa*@ٝ sT'N]`Nm(Vs&~?\ʼ 5MHZ"*]j ^{sŌlxܭR2ܥ6]cBeS9级/ggzl0" dPXH9_Jtl\̀?SXIɐ3!4yFOV=['DbPMr橞g/T ŎM Fr씗MeȜWJdհs]0S%{&>3="#K;nC<׈jME@ۢMx]q:dbS87T'/ A&nx A¨Z\9 cAgD:JIT Sqћ<2tq;!Sil5G.{qJbCu C,,6->{|Q>fu{~,wbmj\DH$A8c[;7dE+lș,ƪZן'!ЅT^fcA6ĪaA` Y~p z'4 b۫:UqN)?F̡/A-s e~V{F(:Fa SJǜ&೙Fit[:ǗfyѼNZ!lW~~iJA F{# W]5D,A5#p6.TV*Dl;@g32 Ŏ@2)"@ 1V(g/&q\>㲽=vՅ>9=0:4\)rFC-\jY6#E2LEgo 1qSTuعoڳ>¤k#(YA;6T^Vn l1El}MJxq`Yo{@6\:&B *<.fm E؄N_PYlM$" ԟ-5"vk& $9aG|nAA#p/I"dMWPK̋/C+i'V=6n [h|1ә6))tw '6҄-S F !KJažAg̾;*{\'hر fW6J^mh#n3Lg4!9tSaDP`ODkg lY?FUBȱ(ѕ +~3[}gnUW/F/ҹ/PXn&#5EGP o &R' smn_~`wn^5Į˲"l5UJ?׵m.'Ȁv^gm4; 靠aFPaG`<\#F(<&8b'K TEk:lWhJ}$Cض6G.aդ?9&t=q7H(d0/fA֗eL*&LT\+:+>]H{૘V=B;!.T)0j7֋2JǪZ=u5{~#=C,YÒ_:yU+Ƚ0xK}׮WJo s\ajEXƐ`̼lc.HgǃYin.N<0j~3E|3K#b8'#TO<rD6\j]a <^X6ud.?C܂U2/JmrBE7R=2$N.ZA 'wjSJ#&]G1xQ׍T4@@ssvSN7a f~] Ldp"bp(s~ 298x[ 2ƚcbJR-!Q- DW`̓isλk`T8AX1t/"z7Ɲ -SM**gLGrg>pM?jʪ>#:ͬ&xL.l5x"P܅]HH\l%|=h J18Nex8l <g^Mpϼ? u;7vB*ػyf_{5%j~վf=GAS L:%KHޛt\ 4AL"wwNR8Ȉ _o1IJ=|Y 9|I{I 67R4*ѻԣ*eYi^ܾ&$BX]FnNqXpsƌqx<5$:.&0[a^]UTmhȷ}m -P 1Pm}\ڰ9ߞLj5vVò6ɭqUFQ蜽w:"]ht0a\*Ln[c%Mj4܆[1P V#_d|Tp *{Ho*WhY;Oր'[nz ?Zp/}2ǵ_t~7[q-K<ӛ0wK!{ 9(PE0.Qavm\6AEVvğG5n`!Q"Do[lXť)h3k̦0!kב~am,r/Vm Ԓ@>Pr+5IX" |o"b!e_f;'::{ln-e驪6/7ғL_4DyAGfWP.P9HޮcxWa1nnU_?I_ӵ\1[wy)R+1Pbj"Zmjvtt1( i! slq_LqĤUbק#Yp+8 YC ݁h! &=8Y9![&e @n3З웈Sc&iwܔ7MVr|p6Vn ] ޫG%O=?hc 7/n=֓5'\(M {kBlV:YavuYsqRi[ZS`?^B,J"_%x 'nNQrƴ)70㢦>G*xݚ&u/#dh7kh*OM ۣl?o:x`CίJ\op,A ̙&5遝>(r Uj(vmb`Z&z)ǁKʳpU$)3o e,8(BO-S&)гެ_Yv,`Bl%2EguTM}Rr>Cɡf]"(+ILBeGQ_C" @1nh8n NN/NNEj$F;;bs'(e,\쿶:L@6YT^A@U%˒W-(^Pf->'T M݀7 '@ 3nk.xU)IEdSʠfo*ncq26w4I2|k'38PhAte[9KT-H_u#VcyC[G-R!ӵ1O˾IRU_ 5ߣ'%fC鏫a=9vғC^02Q!jnM*T'Ja&~Sl\{?R-^aNP{1`Ip؏p|חk. -U1,X*s`E?z[Vi:ðHyyCL.q^{V)J=ʩ.Ofb^'u_YEM [Cy0W5 N(ͥю@è(+K#ތ MWDPҪ尴pp1U!²i-9 Xj >ų&BozᜩÃ~N(st9d)Hx^d<|{`Zr Pk) z4=y׿C5aڟCS9)隶 > BQLo:t/4€wMJJcV%C [RPEKs梏а(Sѡ)u*/pD^Tي KB`TdчmҀ%=Ŕm% >2]!. usR}x^>oY_f>jδ|ѵy{wPp1I$ƒe{ŧApsaT9;x0 VI(o JE \rmw(ÂK /  #⣶†; LT2+%"(J [Aܗsedd?sc}ap[ÜzZe0c0w'uc_c߶&˿j[/|YjQ'Ql.Z刔=z;,У7:Fr+v;WtEԍ#y>#ZzT]8T߰2l(GU {&0rv?f#!șۿY>9ȒURjt4 jǗq(MS (B?Ū@zqfN2v{&3{vpG]A9iWOvײMIxú6|J.QӶ佨i,g'iXˉ{C{a}F?_lO=[Ds:SQP3$h GvmF 'MjZuj&tKD ogu2K;-ۄ&(0FV 2QǶlS2ųvW-M S WS|>J5\[_l3%Dڥxլj + ]|,%$y%!3޿cmHJlj4Y i^Nd$~q׌tu%?nZ>?rqײ pN֨zg vdȞ}:O@6&f{u5$wL^i|_irIEݱ柋2ge8^H8@\1t]t@Zj~mb- GVNzR9Y-q@eofZ:[ф:Kg*6}K>

2YK|v7~ϊ?8uE$,C+wP$XLBdJy<3YaIՙbVwzI֕h)A4 TP b4{ !EE_n\aW9 ;%IQ5űd!AԪr"6!ֹPR7=Dj;(Á .+ݤE=|Bыg{0` (Ф2+ޤsC2߲>~ϧ@Z# gH5&7#ΖjpZ BF7C"85CE)y_Bp֛] 7s).af_-*\\h\Y`)ls0|8IO*%Mx:!S¹C-^x4x1o[u_Mb|Pq6x^ז$; R]{!(U.<9Mzy3+c/p:9:i2v34%OpoR:[WEΰ 4 |nP9cz=S u ^O]3j.jxoG-=U> ~H} >q|)d/0)Trbe]|},EFG s;TsNah.VL4pg(ڏ?MtVR v fI]%U70^76t@JnG MǾGтS:muLAtN.ZvwG\4$Sned W| ߱TwmZ#iǀS&ZҢ 8%iBQ쫹cW0 ne4`O)>Ӧ3V8nјwjrUy;gHV;~rWf<~Ee w]’JI?R ~: "kDV]Gt%a稕hɼ!}F>vSR=@ޗ2Jz %ŽG4_KV w6>-&N32H;&,(MzGIX#O;~Z)HG L gW` 2p"uJOf ,=XyA(O.Pv)sy4:LnE!X HИz'["dΨ˜՜o3f#bA+Aˡӂp۶*mzBqNoZKkg(t&n=&;]m*j iPખi\, aGMTrkso?UUd!4Qh% #`j %i,!z޷"޼OyM)g_^tW+`2 5\EOZ½f;ŇCBܮ /V,~6; U$==eT%gCh`ˡ2iH3wZ{6H3c*yל(Z˜Pw Ru[Vu K[ۍj^ &E~t1NHTkw;y3 WH ,ZG#r[ TU2i#/E`t{j |1^]Ct@Z{wN6O=W7wQv̫z>tC8i 1*yФn1gթnw$RvU^i#qDag5{թq5^_pgxzcP''}] w-> IҮXs|{O'Q7RQoH{6R4ڵ7F+-9Opb,`v 0uQ/vNe9owN?,VLyAѵ;qK1~CxuJH-su!Wʢ(h:nWK! Vk]o\t&ӐPX{;LZ0SԢxOuOU⊯(#G`Ǽ}5NfNP~#?kSq`;87%蒈£MD1,O(D0 b:su1,! UXcQ7P$ (=Pf\Y45LnOeWc4* X1ty0cսHs8~?%=rՙRkDɲJ'퍙W}H.B5,ũX;'&?Lޛ\+S(t54ؐg9(c|V d7c*h/cooR [ASݻ^^bq|jP`[wF.Hl.5D‡ &{~ݯ?kVݝ5 ,FJ@|X}8-[ٷțaՖrSSlC ~4͡\h1?6aij2l/qCKDh8]Vд8{qJjDI=ˉ@fCpe:h4NG($Vg8A($/VS#ēWK>vnsW}ԌS*'sOެCTi:^G&}zh#E{s3_Avsk~e[*ł;-N4 ' ~&fF$NG*1Q$M{xi& ҚҪ;le9[]$CZ9~L#+*^Y(j82&K5C0RR0n-oʚ/el˦73PR2䁄V ;vxaCoP;䮕GKMW$c/wa]^7CNɞ=RDRh k{boAJIƚf.˕Ed)brOYd3-ׇ־% ß?z=\OJAxڼdYqLa&BE Rl/̈.md8/}ڃ}tCrk lXETB 4<+XCl| k2-I@é mT>K v d }*,&[$lR7h7>xgy{L̔w}>E>A"՗Gd]te^ǮDKL6n C@D0qT-8S(L@ETEΛ@9sV\'D,`!q'w6K`X`&@3\;bSs+V'5ݺc ~=AE}ܕ"hfVZia%}ع,JH]~ø {ŬARTF3[П/%|I(0JOoY2X$Tfr?|r 4\1]+hLG̣|Rmd7;g-jr0]`~4BNX,)W 2a /{ &b&|)[;5F<ѵZ z ocPBk\|f;yR'5^( x&G] gT"PCMհr7I.b0Sv$g=+gu2E`İ'AW֚vwq >R-7=5}dh?LL Qա)sUQ1CUiMvk|n6!oƲdIyۢ[(E31>-;<28e$Gd&IdI.vwtGW+}_%TMl0T3L]b=/-]'+G.G,="S25^ +v/H1 4 pj,2 5ۆ˱0.Ҕ>WmW}S&Zf-z/b*KS4 iؓ$X@:F0;#3a3[j4.w^U&XJGmoo ?X ,r̴IUd5 wq1o/3!V?0bΜ JUzX!)1@-Dp>psml0 b@eeJ;,q_JªwWҶ>O] #el!jD,Kbŕ+>JZFi$@vOCof.4o?+Rvu滎 (9֪L[+i9aZRߎ8"!  DSǣp_鄎T#sT\RRhn1Onċ9(dQ”9WxD\Y9ij "z?r*(AL~@¡Sg6a<TB5v#s]a,SY6kV.k$d'/ut>M5FYP;3۝64ȧ>]Ku r`/au spUND&-SP~D.ǩ lBZwfH0yAw]vu7 ^}>2Z ƲF[bx tufC?ڠ"VICۅ`+CHg$'hQ!l89 oTY ύoZ۝7nI0tz}q^6[ E(& [ e9TXy|Z ƪڰ=C[0>[Bʜ  +$'!RѲɗŏFFMau̜ Җ]KZQî1C^ xg50?;T =m1rﯡ e}Cgʫ!tKOܫwjKI˷{["?*'g8!T,R--ݸ.w q-%պ0x eI!\"\KU@ҩ-7%YΜ=G fM5QKʐvFh }yMU7Ld);E&#>:D%[dmϭzL&6ZqmOʍ#v25\t nIRl0/`j lЃ+ h0b9szr~l +Z|Q/}|LʪτW JWKW^ sͼWx'isb9OeJVUdk|BT<_DpHpFyPOp.jCp6 _{ {9Px/ш/p-{>h> Obw2bYemHLH0M2۱@_=U?/avW ZMC\! Iy <Ԙ]ηlpl -93Sh J u TmwB\jbԁ9`.IY=YX߽>(VG8xRx~wp{9X'[}ϭLvn뎄x켍t R`qVR-q\Aɥ2 [| 9'fm^peO|I!7׼VMj&4KlZt=7'8%4$>@҄ >QԱ2s#5wԷl@Ϊd(MM|]- kKL@Uh'Ve>C(-y%u00r[gܠrû.Qt[גX <2e2Ν}긐ɳMeUgڌۭT1=s"bH+B* oRx*$gV~954`ϲnE];vnh~AS\ Lt#Yl u q Z4Hy95h]̃˦TC5?sP B&9q#ӱd丵_\=P Vi fJ^l6U_;7ꛏˁbr*Rȑo ڮ-Y4P 0B?VMHϔߜkE0\iIފiS&Y:mƼY7n!L#C©/9ǿ!~'o@_GgvK2cc%:xg=4FJb:,\qu,ؽ#PXLDT7=Zn5Ɨw&s[؞ִ-ݎdO9"BoXu)R\ }T`?aOGטm'%!rَ@#@w^ }޸̝)DYKM f CG] k,=Ni@l`$SY>֐4( 6J&e"h Zo.mh "wh@` ogbD 'ݷ#Sx2=f#~cY@a*\(ɘ&8ץ[M8r+~sx.Pᬡt\<%h`(OSA:0 cck>򼲩9426rLm!zͿ^mo`:q^>9䍆ΊLӠ$AB%d'W Wql?Z-Fs2fQ+r~23Fj }f64 ea?;y%Hyͧ} -k`u_ư,sL-x;Zs5:Ml"~UH1/"7qii2tPכc"aK xQLEjd'Œ"z<⶚Ūz>2$4P ]K<8 X }Sz=ϠNxZP}yV[]z~9$Ǵp;0|;UpD7A/fLN_Sv+5 `YgMN /H-J5 9Db~~uysz}/UH֚XZҖhvn,0: ~!q-Y9_RqՅ1 -b.G cZ;).G{Om FT']K 77hvaG!81i|Ř7/?&d7-T'iZjEĔeJ害r1ak,IxK3IǚI$S٪XnUqRŮn+ϕJ ~90Ѷ"UA8 _DlLj*1Y ('܇/gsڄ6e] vWK\| Ҧk 趀Y¡7;v |+7ЖM팛 lWgy4 Z#84 I AD7@Bgk%ЏcVб7nYP1/bWI8 iRs t9{nc O8^X/`Hۛ$[Ku`[L]lg"T*GmX 3JnSyՉKP+Qd@YY <ՅJc\eǑ븖:L" 1nQ ((۰@`AZԉ vk[PX*`ZH >)5z?efyK|iPyc]E.ݓ_‡a7)8S-ziK;I;+Qqqiŭ 򋠛+d=rʄ|74Y_\yDd~˥,AC"LĽ'!v͙u-_w_jmsepΊ|nU ^Ӗ++hc{/مx cY| t^TMv2r{osNfRlmhP2Ô6v|wH[LȮ6h/Gfhwʬ8!!+G'yߒSo-7uѣk6>(Ibd73z?1Om./Rhۘ}Ǡ0_mz Yr>2 @qTLwKFGaӮ]<-ħ^i>*>9%*p{U3GAlp+MXaq;Ej6-=; Φ,őFrX)iM58 Ģ W  |b9`HPYF$i ޽TјljAaJK@SEgUə7kae*964u+ tm֋6j106/hn^^}  s]ƹ\rpt2SΛcuC*q#0pY kEM\1vj@?T!ܭ[d 9gD\t ZQ$?rAPQM@iW]mxhL;2dTԇb$ҺxkhJs " ڶʐz"h$񴔬QyN?]6,y`1Z h]28 -2ecnY{'pajfOJ.Suqb0`wOc6huϯV~2 #Q5 aU յ+@3moZD2Or'f/8;1C--զ>QA{PVCt]7eNHO%!OQZ#ǪsL$rXηSi8B v5/S%XcѹF\ܢr*7q6?DTPUl襰P,w=f_Cqy&q;2ĩ:l%͔A3"`2y,#]`wlR|#8m?Ǧl,x'*'ڋk?Tf(IR!C@_} th0 呮쇰#$}ЄlsR %mg,NMzm%S̶ uɣ@&ct$sC#ID)RJۃ_b:aWOe1Xzew3&~o[w$UkɨwqNG=7R╎j'@ ECxm[WginVlF| Y_yLCT;`=ϷSQe{h1-K6J{='oeu۔JϕԷum[/*zj <ž ]ǟN!ϫ(O~͕_=*SMF]"6F̖&R>q)(oCy8TyIrb,vf+yh~tZLjՍ9!x0ǑJm$ZG8A 1ļqUSϭYwlELj0UgyVAr SU}c3Rnvc)gZt 0 57x9Өsʸe@Bv?Tؖ\oBn,* (d2խ7fMք|x[%!._%RŸm):QWgdѺZLc^}Brch_rBRH7ɴ?+ʰ{cදL dD9s9R>E)*Z?=-vq!WH!3 p̩&3uڀkh ϬXih!=)54FGMGo[uMP!3hU z )6G#~Ɍ\aiMiKCTk$/\UwP6d}$30lEGnݳnZ[[ h[ Y;!%ԡMRjK*pf8K$qxrGoB h5r[MZ.1A54;eP{b͝k{6'}Ir' Xq( -nȺCmO:2/HiH F _È&xB0A mor _块ih΁xVVo0f8.'V;>:H|eO~ ;qL=5rO_Hj#yg%l"J\(SFJX׶W1I @k&tʩ aIz˞6)B.虓jy &\i `YBa9[;F|_(mqZ9u΄W|)R NFOa^ASxC@99r l|*5 @K QBʠp5Ģ/lk"Zv-`i ,]ZSjs73yHwBYD QR~<Ӻ+OSÜO v?ng$ޙǭjg 9=g"Ԁ[E x)> 1%ys5Ih2M2}wuzڏmn2m$724F4M:w8֌66X6w㟲ݺXqy׶{ ,xn *!X5#QIi DHV{*n?> ԢgoϑG[- Rl@M-eA }=?cVX"qީ6֥ ],Ya FWjqH؍nRx^j5=?mzG12nm.{qttL0u~ ^ދq%A}1{}2VJ 7^D숓NŲcLLE>g`>=y_iו ;'z^P-fE`ѯtf+knoֲ͝XsyQIs>:E&g7 Ζ05ViGJzirgXU%} 5s$mH:Տ62e0sW9kt= >j`j.JKf ~'G}3,@tt ?2 2fB#W$n]SSH^|2[ ^;9=ʉ&Jb5)[-~fxkŴ웺p09녻c+ HpC?u>E.-mU&YfU”in 6^gAfuz#،= DE=,v@ʱhg`!Fhf4PJ#,<ɚ Gn}IJOfkuGlD~͍7 #C \[2q+el_E/lK_r(/"`L_:J XX|z' I0a|ֵn}4J'bqy$ \E+CxV [Ҕ=:Z߷~-.t-: RLlDӌ1ά}Nn uwƢ)N.*r#@V +ziT'9Z!@oa<(By!V $rP0D?-2 4t PwuL(xgQhwQڸ)̄Ylv6Z=^o9´xs킗hnJDSKCÓ pO yS_r{+C4>|oRfg 풳bȆЃG HS+84`^qřӽ^Rc)kȝ%G1V4bΘ [o3jJ׀Q|KCr6GȆz1 ژT3 Tĵӗ:J]t&QAM Wi|ד RniW_']hݱZ/Y9M%ka#c&& 0YHgXKBu qS*LDwzm|QH >Sx'W*>W*ңohp_ǗᮉSO3ވ7~J$jR4t?y{~q00w+:+'|I 9g::_SBNS, fty{ #q  H/>ǔ%^Q9,%j6DxN NJLx} L~⯺U}-YPgӃs#L6; C2:5oy ddȿۉ*!uF^|%V%,\>͝-u|<C eoByUFy~d> Q~Xҝcpk ~4"}ANKv0e_]F/;Nu˺o3>d)MH2&jcu`~W ,2&) 0:EA" 8XƵ: p+2ŭQZan"%7V6i#}dSNTAl\ɇLFEť4(&;2W%A> d.'W''E5ۚDj4eiR̓Rh}5EN̨873K!yc`A ;}svK~W!O7島L\iK΅JH.IO^6meuR}| y{q15wxnSꫮ$\򒘼cB SOصTgguB{8$Ӡ"WRƤELa@$kx A{%oxW)N⪮YpUqqq<#)#Z,}efHZ}?V_[!@([ucy6#@cc0T$~LJD/>,=VTFFr[lGVtxZe5: ׿-:XIK!zS~5axkwrcz*,pȢ Ȏ|a@%7eTeKAX2Kчqdn$,D#s[Xd@g %B:)R=`AՂfd>#S+滦w|H# *Q/> 31\m h`&mg}uVHTBS:e`=CƐ`Fƾ{]3d}\lnae?}1"Q幑\ 'ZSjAm△^=.'_>LYJ,7\̂rFE<"(>ڿԾO>j} [>glm≩nNW 0i6I7AHŻ:g5δfw|H#k)a>Nw6qku6 2J!12FѸ`u6ΘMN 0)JGLޓjgݾBl35(W<>U ! j+ټ5)j mk6#*?4/`WGKgIMc/\'DǟNkV:+Fy*bDIgg !&n[LqSe飨<,"FedK!۔n}HTFǪo&;%1#GI-L깢z ,4Ot{uKPZvr?71=[#II1I.& x)PCJeٺS80]7)TUan3-ͺ'B]1O"? " .yNn]4_W-O!3ޅsAeF;<SNx %eʠ5aI,[I PP5!|aZ'ud/&Z*L/,R))0 qDpÝα4}492H ouÓgB ]zƜ?lt+<wW4:ߺP\i{?RVuKg7m}[2۰%^]8/l vHt *%O&7aOƕ,ڔ?ϭYNGiIZr,NRG{b4.% H'S6>]<\]iv7ðLs^sn.@&Q@pnӎT՝gRsDSt_ܧ#mPB+:CLثF uN{䇲<l onfi>gG@,2n$䭫mϻۂ;Q#*H_grՠyV ]:_E>v""x?W|Ǥ(Aal$hY49.0<$vt}TL %-"dn9V<8'rv%B$͑G^^ E6') fj:EBA1XOMgp3.x_4}6 sW cvE !:ςڢiʟ~ctUPf7L 3_zn_qe;C3\=4m'xBhCy!Ixbbb^L*p*u2/0vرr (" ߖTc!dNִRQZ. [xl=c"h ;$*C:)<@Wz/4dNOzp `3*+p& 25ϹklWYK'Eͱs~q(m:5ElR6 wwn`@m?}! Wi4 dCe9(?}9W{ +hʦ 5u.A3e&ihT;sЯ\i ׽~ [" 9z=,>Y4ߵB<#Fhԭ~JAPh֙}vN?e.%CRsh|=&d`OɈ`q{$Fa(FWB䓙 p*ƽKŨ_=LцFݐAU3"R ?Mu>܈ڃH!t%=7L/אú9%{D҄J&UÇ\odEyQɯ%R)/kQa.rhZ;ү f٘p|N99Fxfij Js()|b ߿y_ܺYôӥlӍ_925FP/LKN 4NO?:L~l+E:E=Ŀ8Y g&P}UQլ2: ^+=oDkDh /mx{?%C*7ǰ|],mrVLXZs̓/B=AY;2--3[-TO%M{{񗼷58@5OLgVcL[1h2L&PzݏqOp#7ѭ֊C)ݢX޸>TNKR"ȳ`=(LCEP{_.%SWa$X&1eiW4|jxmaPHFf2O6Li6&߯S# 8&9[!k(Sm R{EH$VܖcbS?[|u[s2p.ڵ;o^THaxnyZu-\w~Y,jWHv-D_̐-cy:>j\t'H(p{]T4*vJsl\Tt<哝{Ц ~{iQR| <^kΉ#لs5_N/* ntohrDII 6\ ,;ClE0nie4|-l K@PQꓥtilj3OJ6'oJ"q9w4T̕nNW52Y+}Ҫ#b4E+^GXwv6cfºǯնQ|B"}mg#R d{!;վH/k~B7-Kc(+z^6֮x)~.l RNRT2`XA =]sTڷ1TE܌W˶ $R2,I%#A1y<,E;PO2WIY{jD$ΦB}NidM] v _oҿx&q]ih۹.$iX-!$CjL^IۦD i0*83A.1L>tToâ5}O|ڝ*Ʒ H&mr! n¥ G 3jH]2E+=4uw">2[]l_ gx3eԩT=X ӻYaX\ќ}MLo(31r {gI~>()SM$> S)fO,sHK`׫tr||NZ%9pӊ-rBўp]CٖsZ/:@Nfb1 N84TYdidrӦX?FB..SKE A[k\֭om=?;l;1я^l)mdGݦ AS;bK-ݿr,ncl"x y\:g8?dk`vv[`YD8@㤚\.ULY&3Glseh9ܓY,T*k~/H- n7L#Om/ӎ'ԑ@@ %1"b>Ct(oR7ګƃnU|+ڔt0VyoAV餟5aY$PBF<1Ѓmu&]|`}ЁAAȎPB¯"/cƐf!@ gR hE&ƍqv! W2ʞ7rh>vTېB *g@F}Q*3B"e*{J┮ip\OtЌ\Sx^E'`Y4A7+i\]3f6rԱ `K <(?GqE Hk]W l* ~?eǠ&OCLZec.4nӭDK]&cAU[wGь9?"Hg;]gKx{mI]|N4#qNAsgȢ2}%ܵrh;3PX NՋꕸ֙Q3ȱtШD'>Hb{^#'k Fd'#"_UeRƂH9nVIbL;*G}LKΡ+LעG LZIU&rfh8.[+Na&j*}m ,UF.^K0zz5">5< xva`4)6Mf gxhT(¤1NN W;!vL aWeg$a8+xot_Ѷ4oה;;cI43QUBm=_Ag;W]E_3^;+@a-N>ڿ(馞ƒtJBH6"ljN. r| O^8e4'L lޤ FsA׹Ұ#r !]UPL<՘ʄzbCuŽRzaR#7 VCpN nf#hk(&w9+8>&?ZXG1*g8_}>l^̡B9u$E,%ٶس~=+R&)[TKTLf+ F=c/;t,g!@%JˮKg4y cn#.Wm2enݽ qXޑ#P٭zmLjޖ e2 ҢLtPD{>i r7.$lQT|P(* It& G&$@ʮ68d-YAsq@%עmXR$T=8GxNRM%1O_^0r L , 0D<:^ge!T{O1Nr'Cc9&_A%SE4o=8ޢ8jM!)= RH>#,)t*|܀~J |ɼ(b+(= i1͕d f0cUU_{l^E(FR]o45+ ,L}!Y:e(L1ii#?)cOq%rC ׭ǁO4aPm֍l^ 3dМU2Ku&ۣ9~1[$𭈌d6lS#Z|& Zb}$ #2fbRʵo>;.5up۵,qXᾬ{knF `ڱ3v'ǀYrR2 "䤍|2 &;Bn/.\p>y bܵڀ%gq8?Ao E/N_8 $3=,O8:g04T[Yfޝ ÃXrYZpK\u>нLֹ|1B:HEHѫO](~]oտ /.($/V܁{<39 o^u-q+07Zq'귿B)-}7mG"Ow? Tb/S*͙ť9( zI{ Ap2 z* N *w:Hݓi("i{jbNN^j<7ZX [W:+}09ζL>,2I#8U-ssuH @+W<~ gJ5&출8qv+GsLFxp^SH ѯ;7:տO1q ֳ& 1,\܈|V3Lk&btbmpoBVx'D vP2^qQؠ['qP+2|D z uwQ_ԉؕt3s?Ψj*3鏌n+-?nj:rpJ/ C@O^;f:7û;%4p٨X41n^ Eq`Ym~o'o1D]աW*hsXݨ7ԑEjZԔkhR p5c[p5XNnBȫ⧠\@ӗGIwZ{jB%qy6t|X.B9g9rt3q{ Dm:cA& |5'L32)k~9d})KոRͰK, Bi fÑeFb+p+LINɞ5@bUy )/FG}x OwTp l Ckboٺ)#K sbYAB 9Ċur3FN3"{9 yd*Q"%PPhl,?7`U)gܧb?5a JQ節@Zbޯd9)Kí--ӷԩ'cuH"c;7 Z,6M@ó#nB Hn,T- J^>?O;l**K6̰4MӋnǵR"Y4I7Åy8%w!]*NT(O; zoW Dq"<Qa,)(;ij wVU g쁠~I= TO4,: e'8;H`hOrT+T)׋! RM*ꉣt⋽v/sfI!%cͬƙ;=>Vy`tĀ^^XA~ķJ?VЩn{/ Raz-l9ҙ<le)@)~ W?M]I=I AP-ݠ;9%> &Ha0D3=4Hf/G~UD,V : X58``*лඋ,:8Fy?x1Lzވ a0[l[ҺlhflnmdƵPY)P?8eqCZGdCU3B1_svjeG␄2K5VӍT5rXA}JD 41e)oq|gRz4`Ab ̨ǔ[WW:eʚDI*Z0~1=II<չ{E&Iܲt-xWCa6GIXXG gܯ22tt\}몴@!AY;U* F iFiߠ׹:H]e_dSh)vK1"wzxKX[C"@E%ISA~Dݤ6ޗѝ N]Lef;&rW ,Km nʺ!'0v~z]ahNlDצ&pDʇr `A$ۖʊb3uRZ?r-"RVQBa\MSb&ᅿ|;d?MzZed/%RY/Rhfh*Som`MmfG6Y w(HB ["#y%[>!thU Fr=> :=39y&n xͷ֢s܁x?X.%X$5HbhTCQrO= yx ?SiSqc+)Jghr2&ӮM7fw.`\|f!su:Y7@9 ,Oo4ݞ6gD@%4 "J\f~`nY Teb$DOp9Y J<0_{XQͥ(&!,գkYT&Koԕ)٫V`t+r[L^uŇ1ը~z@ V\ ҄>"Qm&Pʒ5-Uf\Ãzb$w^dQgsʃ4s2%tm4pqYUHG;̬Rq^;*dM 6&w J1;'% :╍Z+]#zik$vX&M] !VI\C6A@WoawCQ$l49SuoN$q\^̧zb ߨ@mkɆː*@DSJ3땃 E~Qδ#s%2!=;Qq.Gb=uf#^rbCSΥL. #wU1z5Eh;b %c',LA0~[TUb\J^zyv'ptܹ?ɜq%ˠ.h("9n2x6ެ jн$ ׉wJ"eoJ @sY8|!CbŤ' й($~&ۉ{hqЦHOcc*P{nSw CKPkL``ʵIg7loެsi<}\!_kUg]*CٽvN˴I^ZgJ)U~%_ٶzXNMm]dOsp5N6>o6G7}OF/D1,]R ݲ.s9mG+JA(H2N`^렿J~Óg[F[3<^w\X^j^&*mZC|Oy*m&}D(έ}W4YHgC5w\)n+_#Lvmm%pct&la-'Mr/:~ps-g"<5!"`v-ro}~dBS9]k:3÷߾U'Vh ?Gy92{}R @ DN)7U`dO_4CdT'V<5ʙ-^6lۆTg @GST&2 vt 6QCCdQthaY#qJG#>ASr.Pb#xEcY@RΗk둊k84QʢL98e|pLV\t:QRb+ !Z-JܣZm "'7p'.`c(AܤZ,L`:zWf");rQ4QGRpg 1 Tn*Z.pM{ \ s0#lsy4fy2b.mيP/Zĵ2650)!R>,LT n[ `q=Ʃg?h)i;.oanɂ a @]?印'4OI5ozO+L0,Ca?*T3fG NJqv^HU[ńO!Xi }0=q/x҂7;UȚ?KAaeM2XUvu^7Go }HcE u;N 0ܗr>F(s@9 UItC|MP~_f-pez)!J@镫3S5SF qCzq]yU*l頜ƅ5Egsw 4ԚPkT ULnjO_ t0gΪVȒJŊ7P>ӆ`. [y&1jAOf\>*NϘM1@&k97U W׿?lܼy7]<ʔ%@de+"ʼn]Z -Ezq'*H}'2*A o|Z3|m(.ѣK%>= _u9݈y~d,ʯ_Z7M14pw=EQD4e :CBKr}[ҊSKMF@ҽy6Y!42:+Z61n-65 L̍e1R QrϭJQ]h!ߒd8M+0ܬo#2Cg6 W8$𦦑{`$:/R*1@WVy%Phƻ!i34}N*01hsp+;";]}83 6 <#*)!o}8N- 2[r!̕^)NܚJ)*;Ep逸4*ؼvftF7hwķUm2HKkʚ c(ɇd`~nQ;e!™07ݝi9h0-Pgbc|'"kkQ z_ق " v۲u3F$F8`=o~5d`I6Rϩ W#ti(pXtKFbos> #йe242 d HGq8F\7l)" /bg3.!ƥg?o84)=Z۸=WV~8''0`n(4ou:$ξ0Fe&zy3kc\gozVpx:rKh@1{ś<8sӧ| IN%L݉i& )t2Եʛu3Y!=Zb+zן,Dkyd&䝙 Rzid Х^j jC k, YʠƊ8 }W{5I$X)5_K̂\wcZ65J-\s ޱNګhp 2x#<6첸i4.&v~c;)C J2߈^Эo9)`]򯿰r%)H#[3\^Y@7Kvntm0!Gtd[RG2Fj(-e{ݞ+{wTp[&o,DW-fJQd {YoH#?l+UU;zRy ̿?JrJ֡V,DbAfCY;&GK:AYςc&`s>(!&N6~%Q\g")u@QWȢ;vG#i.G eEwn`ЊW(O{Vl]p7𠺅ܰ,@}31ҴJnzgc)Fӱ@h˜\qWݦav.@lZh f0ܨz7HX3`7R5FJ|VhqqSQq2L)i<;܌cS$k Ua$e)%1[]mX=$+aU? ), q~TbC lCPIoQIe\^i$oKrs (.2 ?&u󤊅n5qG*S>("pw'&yrxU)uu!y e߸Ao3 GڀADl4&!H+1+]{3'{Hc3%9Xp(Eӊ!"- gE/xusLYT=.xL>}aHD^lD]ak7qITݼFS `&g>h=2|6$95'"=yV_+ʌIzt:ji!#ʙOrJ=ӇNoA$h.MOPEUlŌqy>^ (( "ZWR6"Eۯ!!O\>WOnY7NvFcsx@?=uS"n)"[|ZGe8iL1C0m61ZZޠY-a58Wuw[ݶ@ '3&wy72yHPpQؿPf0΃]`i hUlD.>l;-5-k%@oVZS|px` %mFe44Web:} 9.b>VyпMhjҁv![ߝ!sG}{aY;clt$̮Wle> W,&!ޫ>va#Nn|ݤ~5#B2C'?o2rj60Z(W>ܤe|'^{N6b@1eB?m(/>w\@=y)#QQ*_K%[mN$ˤBpiGFB4/dΘW"S BĊ٢ d$ Lj._" l.M Z:5?e/ʶo_`N:aȜvQLEmJSnlW@ͻxH]GfzDtFc+Q^_b 5!n)"^Ac4E#GD=jrSf] ,zc,|O9ﶇ!nQ-:Tv<3rǜh73b$(:f9*Dvi/ (ӊAek osS[z͗eK^= TTj J jrGvv%Npԡ$tcs"b£7#)ͲAwuZT#89 E-g;8]<i:쯺]VODIP/%m|ƱVv9%+G~Շ2 e X/^%5o3S=!}vʱ;挺z׸:! n+s-&Z,BFz@bqe8Px596g>~>z};Z46q2Kf_&!̾o`:N3I+ҧ_B²C}u>X՘zPMf'2K{BSm~: $ƨPӞb #f{dԦrM)i~GjA͟F OG5q@k}r ;~pZ.Iovtfp&eΗ?#gXҖ($?_{y"5d8Z 2ӄQ*-!3&a-q؟ׄX=ʴ&B -C#T*Z1O+YHǜY% -mk!RXSq韱6Tikz&!V'ԭ0ˆJxiw]ZzpڢـoLD!eSie g/v{E<;XcPSoݷn67hBnLXmP&W":9LGݑϐֽfY: |uQH% {=(ż{`Yd4T;SIkmc7 k.N FaKt&2$EuKQPL1fl6+h8k:HG0U $!: @9;iK*Wy mfZvm`y.lmUtHz8?,MC)i#Ȩ#(KRւɐxBkޭ/hzSmQ)n|i蘿Z^г5~ȮAƒnvMy}ӽ&ŒDOqiPpL/99RIjn6[>ui=ɨlu]v`3 ]Vaߓ׶CE6ޅzK]b/d<=x+;\yTXj0'M)y\ gFrճm/%)yׄsT^?\Y~hkyEOCϒ #Vt}b vmpͤrjAAozX~92Yy7 LJT1lE%~#{ABM  ,:yS)PPK>lUKrS3:u@t6;# Y;aehu*~~2Z*]n6B'?*ZqeGڻS R(R#Y [=cJE.M;j{fJ-KA, 1\Juc2@nM{gP9٦=r-K#IoBFwUeX~buUX"!-pF`EC5[<˔x}?p-"~4&pv'7zw`VI_Mz*HNH{RZȯtzU}(2di\":`$6`"2A\tJI]k6j92fzB9HS1? kiYGRQ"/E0n)K w`ѷrL+ )FlTT#Rv}%7>=_!M0*L l/:ۻB~}vm|/PlfhcW4PTD;j}7M9KwŒ#pu ~-X[߉3.,,㧚̳I-W>Ϥ6Go&šoU?,cڪɯ]VkEZX؊ [ IAib<,Ǹ*(KkAjYL\-> ^+uqx9n e"y4`w"> ? v&qRYw򪌲D'Vd5yۑQ6qDbbe# 7R/tӖt7XbOL -WlV m=)]8/ğ& v]<9+xgW ]ď]XhZwN77!:SҮ l`q8E Vum`NhS&:JPE!*Xy$/ϡ/!*)-q┓|M$|JMm/>{|68j+m;om \3> vSjұY6 <Ǚy Z(fS/BygV\ ^񲂥JViE;Og c"=u:!^{aW IK)X&p\dK^0ma$Ɂ?)ֹyxWcy ]]c~@^-TpW#–0<,RC3gra}W 2 Lαo3ͪ QAt ]lBAgU3qůIЏb7p:gtpUd4ZP\̋p ĂPu; j YQtT5ε㉙2aPmgQ/3GOԘtrX@﮷i$7(kکA\!525sc_称)5v7)jy4,Sv>ae az%2{]0JJI3^N`jSQ Gs>!4uPX'`}bI:,WhAG=S_lLZExJ7pu->Tҹ=_X,oTN/ 7V0!T"OY7MQL')矄Lbeضg?`lKq#HFǞOtM'+bx» 'hA7;g=#[}mgwnaxl1 t!bRҋ\4mo<ǾΌŴ%ˉ\K'|Cʑvai+NOK}7-rY"ojTt;Q>0޺ͨ#R v, ‚ <{wvWdwFNħ0ޘ8kHqp=}j<%K9#Y.v D :hNmj^2xӨetS#r*}|_ cf ɱj+_['c![fV@ |k+(TPywVKpzb` o@&D&s+9H(Z<4ǻ`$@iirԐdef 5Sg4KWl4dib7)ϠR 4n$E]Hsq{7`ze`߉G[8m9fM^%(%] E'p-Ԡ}Bcb ͇~/}iYn5G!cru(w4H<ߴ?;庪׃迍Bn0=4衍G}g8m|Kun:5w;6NHl/%+tYbJC]{ V{W); ɗ9ty"{I>2 2+AMw!vJbcӠ:D2{a.Qf5:0c9׃R'T5EK 6"h+ A)|!|,ݩ1@ yiyiеh1*^-+9L9L#E `|@vw#.1Iy,7+`\u8w CzoE/Tn~l<0ѣ׋ͯ[ij,g>S9qGZ7t{"ݥd3!z -n3঻u˻°{ܸs&&qU8/^aZS~اZg~_(3Uˁ&vykhFT$ 'ݨG 9ont tl5Wu&Ss2҈R8NrJPp<#&9ij7΢ g֣u-[4*Ziv^IԢNRvNtzfDˬ  mV#`,9}TVB}(fz Dko;@t>86I=I][*9协,\F&(Ь!6j| TRY.k*[ Vśԇʩ+=H4_$T9/GYbMbB9GQՊ%o!B+R<@{n{?BoNY˥)s\tg@P\+V ss{̉x 8aKnGqΣA/fnv9Cq%%B\жI R!*w)9YVd 5*mկr"綽C c>bBr'e/홿(lAHJ"Yu]u@Reurχw1fV6KyYgfHLInT&RCTx&VlSQ7[*Y9K4W).ڿqrWh$bEz^&JOH@teĭa+=wA~ͧ;(ơ )$;Zg+37J6y%1>pGWHuznɚ4h6\ Eǵʹl%֕>&n6$",ki d>E9RؿciFMWĞDv:HH㸫U}dxd:J7&pӬq`څOW`QM7`W@L8CLXjep:.\g}_ŏ$/0rvoa?'&܂xb C>&RwN;NâAzuIgV-$j7VRVql l MBQ/e>q໧~g4$ȜPua/k_WT&~$^zQC"1]]sGNh*'X؋F\/)U l3*[?笨O&ҙpseF{?:Zo܋^AsV~ fҐ|Wy)w7 V j, gX}3B 7͠UJŸpax ^Zz4 9u M<5E D028IM$fIYod3ox_aIs{[.A$bMG2rvR^CiJ;ڂ9yޛO+-.9ȏ(1EG,/z@|d !$̉eay&u ˌS%M&vp9X֧Ȃ +&>gpC2΋J-B1R^1+#̣2g{e[b tp[qz;;hrom8gs2o3*Ic+>E{B⍖, Zl*n? i֠uq%)2%iB@ĉӇ]LR<6N k!޺yG6# srFqYCӤ{2I,2&vP9 بoO*b$;_B)or\?ux~O^`f3r'Fc= 0@RedK?-g |Ӵ!JL3ZR{ %Dx ZZp|S[ß""jI33a4b } m3dE"9]90"켧r=4?qT?V yĪ+-ѱv{Q(~l=`͍ pHnK+L7K+4Z+X^Ƈ5|}y= q6!gFJ%^{yj%ATX櫓H<6SV|.U@/*8w& ?7X>%aEknuHlã!\u=}d&^ü OZ桚k9:HL>=rų1c<\d[M] 4K ni EfMO{]$BQ_2~\L|^u3:*UIy`b?h& dIhUŤW.xba ƺ̂*`4]V)HTNm*PvΘbӏژ /߲X6E6R0N dqdHJ//J*z[ר > Z,r~xS8:֖:دac$z[C2rʳ |IZ!^h W|F29F@DtR_SxUha-aHvsÑȘ  ⦘S0۳Χj=Ex툢Òpcʱt}n^k2)k=S;%PG)ԒTƗlkڛygم(V9\j6I}R_pCs2; 2_qon[:uu xFжs|\l_* 13J[-xGejS t%EH],&6]:n{mRy/BWwi0%k ހ%>?}m׹Nw7Dޝ@1{/$n=<3$1cpmY|PG{I䁤[ _mQؤޝ"XWa E\|_1xkZkش\8l 5$'Iw8I}(LN@<1iG|P0qg e&Twj>50Id-Cۇ8~frGĥD RZkϪi 'WI*I kUW7ϐ L. ?_ cOh^=Zg~!ב%+XE)\{_LR8Ѥ.0@Q`f鹅]z Q:[-ey%,|?/f2FpnnX iQT0uGAy#4`3۟Nb$vZ`~}"E Mrͮ ۵߯])EJ"媹2Ig>@gK{%i\p>\W0X l{zFer.VI yOҤ= "BFv蝱hAT!^zi" 5H`ְNg| NDǪ"R˾IϑX>STP&\I#B\:o=ERYZ8T(BCW$Vn˲ ` K9S5AUl#W?2OxցͰ[J5$` wmI/3;L2Ay;%tO3F OZʝl!U1andR W=zt_{-j+|\H٬xiMe Yj-BHF,@Rzwp?ox1YM,,F -Ȇ'32Oe6)Qr%lpsNsϒ  \ss%bkaHW*r Y9M!њ{Ŕ\}T\}ްh.r1#Ht%tj+s yatxk@9:$N^̜"7,#.VKANcQG9DK}7zkxcՌB%r@j`Elpu{i$8w« p FCfҹ;\{=ud1i`l8x:VfO'h+(TI`/l2 U}P~^# 1Ltk-f㦠U4馸uٗ&3KT@\su+>ɖ9R"~T":rS>K:KaWNkjJ |cB|^/-ܢ2 /]yCќ}|jUYܐ.jUonlH4y#A)XlA;H!_`+A#qne%R' k)X#B-@w2VyHɓ*VDxDE?1xJ8ޣ+9wݤTGM1w5oJ$o-`(ٖYTK_6}0C1FNZib'x̂ӗa}Q"&XV=Ւ' ŗ ܶM  V즴 _@5V.9ͫ<`z_YFܙpUΣqjX$k/`)TNWϠLV^9 UҠD[m%? {G k$鋢 \Dw̵6#M-Y U 5p j:jʣ:ąLY.,Z*"5Ui x/] sx,oHRo%9{M'k\:'~$ŎWTɸ''0Gy-*bYUdIsM~[i]q^יD% H~q-6QR8n]׀5-h '>mgGWT& [ Q -]8,%@ @Ed(V_hAYpH?;;-`B\9M󒢽~Έ#H:sy ! 2h^Hm)T)Vۻ "*2.*е8>%oO{9Yh9;͹NfwI\e" zp88@i"{@BPh;˛G8z#ϳqr_[V; $vFd^.O@|!=3l gf̖aᱨ:}hu`"UwgB#wb>ygwDT'7~Ԥ^.:=M] rB=<<*w~et(?w7'ɀ0am[9_[TY?O-C\ p9%]zox:ZկEW.40|9 ,hzDPX B"8Y^,qWhjäY,L*{,a>M9ɈYTab v]]Y&k|RMv]#{90Y6/Xop;@q~hÛ}돚"Vr> VEUVA=]4e]yXJ b/(5Y Ihۮ/FgTJ{eiՇ&] ?x!k>+8ʳX j7:c|CLT" ײ*_dde Ot>ɾܜKIymb^`#՗#-@z@$3$b%Srx5!ygth Kx^ϨH UԤʿqҖL#$Bd`O8[JL5C\CDʁySd RG_7m"f)GGr2yTkwKJd1I,~U֕f #b:Nxķ.NQ-$UU8?.` 5մ 7AH'NŘO{icZpۃ1?B~`}f4 '\WܫoVn#ʮ/la`4k$ֲ3vBiӻ?,>jv8ƯN^G:NԖ>z`@@w=ꮍ~i*hCQ[#ˋ>YzU?W޽QFU?jZbqBas9S-5i܉Yw` 5N[ح\PV"rw965KBu ‘%ǤNmL^YcnK?/z7BE!NGpȳ]lfI 80ųuPy,"Ը!H\m#&$M 9OGlo؝Di;u"KHcӪ|3B>'.F*FuG-X@ \Wp. Fb"~FKJdǜLɡH?דyZkơ8 /FQ7RHRrx탠c7zk_mҞg|XG>WdlYj}I;k݆l4$GG(Rydc`SQ; ˑ7 J2=So%T!nQx^(^WIZYL׉ 3О*Ddxh`2Iw pȄЎ/ͭ5vgܲӧT#2xWaBM8Ñ=z8+xW5e~gC_괞e4Xl{Lmag9 f iT1:v1Oo'Tb,2%Pz/Bhj.Ǯ*ECcol'ehv剐-P j`Y :́b\19b8ChW.X-,/4^#?@*)z.BH=UB~q tlSX'ã嗴 L<\),E6/zBI:cEG/=Nf#/B[wBxۥz*8:HS3}ju쮳τS0qDI9g oᠢӅl7y*Nq_H3\i J5["' |{BA r8\gÀм$t 9p (e$b`p*G9GAU>KDNvHqc鴭ބnrX~ҠQ\''ig!ѹ7mlTfKb =>s躃Kٍȝ~R5 "XnwPOkx,"ļ#Lr*SąٮIB:vAˮΝj>WG'h溕Wk6̍ĢGT}jF]jӱsWrN5bp _#/~z 웂 e͵X2q;Gv h^Va8~0T~\G4L>\ܢ=Cq^](ݿK!/*+''|fCB1~VvPsf[߿4u9ƳN5bf^GhB"0c>[ 4'kոT@h1jes7?Htzlf5!lFDud`Y?5>ܠ]PK%DoJ(_<}'pGhs^7܎G%yH:iMhA!,$L7ވ܄8Q_%][7{ubD}(Qq0?W>` pG)5:(8ghknJ1OҘI: X׌aVךXɁ]-x߰bK![ ۤTlgDv np]-0** DES4'0UΥ ^مyCɺlԟF~ErၥunTa$Z]+yZΝ gNP0T8g <8ڿ*RC`Bsq<4-;%1CKtfIɆ'y!߄jb6iC=  0.`3@MOܯ3zFZ7_.J`4~WW8\\ggG.Dl;#+ U$r?;6DD0g`U?7m`^Mm(a>i#]=5C6 {ct<8ԱRFj8'OiuBMRc2ރBWpnK;_w k/G@ha׭)g=bex#/U#hZ<|RiUubgFϔډjQ] l8Mns HJΐ}y/~`Y>*exenk|=寁Zv p!䷿?G"|/Jh٩iCNwq/OV.%+W7Gy{m'{ x6(` ] mH2Q_E)f4avծm:\/QT1 k%)on[/i8\;ӯz{%*^t>vT3L\q@8gӱcK 0c1 1Js$!ƹÍyw_,NVmy_J iNYg仅xg{e6gLfl:uܢmvOiz`UO -@Z=yskuQzµZ;䤦OryݡT«vKv[3>^[쏭}bʚC c4! &Iܕ rUJy,OySvzW\?he56%X+d]!O[w}$bG'5 A $5MSR$zH:vۃH͹W0JY%IvBH6AKz(B{h`Vc;q zeJhj!>Y#WeKoC/# tRZt&.^E&%xO5>*{Clp,FQnQ&v 12de]˜e]a|u\ ~^RϛGL5ļ}sѓYK-.BFMc⣮D>u3Lxh\/$&> ~jp㧧gQ(ocPt) q(N 89 gM俰QJcQξ/8?2>yMǎPBP@QI:Q^>("CEK>"W ځu :ƍFx/i)EtSLޅ`xAŶa8QV9L{"hKm`HaWO(.)wwjL%&T+x̆s2dgM@QbS3/ƹS{k=6? Iw1 ᬝsJ%}a\D6p#\|CL;¬BQY(љ#0gֿa'EB|-:EI]XyT@7i(, :[z^ e(.>bBwYΈVJ Ƣjyle+ wUP{s&?b<+uǣ,kDfEcRqc}PPqb.Էn?C0 S{˘E@P XZMj<ʐ R'iwe؟O%,e-JJG%uGDTS)}p2{F75r`A~59n8 lxFq[6H/7,VsSva?wYk@ҷ->D9jEPxJ,/IT;µx(g+3$KR3RLՔ'(6jEُ B)X- *0t]yŃ4{syzXlЊ7zcI@+]#[{ dKBv惾(Yh1L,Xk4QЅEkeeei rXװҙ;8tVlwM:=O8{DP M-kڞ Qu!EucQЂR4n=Ea`L +_}ŏLL$Իz*lhK)ei+ 遙l!c"S% <.s>t6a5=Rs!Sw HQ/$_ݝ3hๅe[!i{Ϲr2pﱻ痗c YR{Vqߦl)kz_c.z<Ԇ/щry0k ןڥ>If5Ojhd7TݵgI蘄ζXN5$wy T?/h0 hL;Z 435.6;Y ryiCsYIM'" tki|Wvs&s4\UWU!rt{m~P];*oB䟌v9-o GjA9#RnrӨ9,L'_&uEHm>D؆l^UKp:xpjF?,cχ!Ԏ/ҀyjFGjqY_K$_ȇMՓ*نߒr@YgBG|جT շ>txYjAHsĀ  pG|BW ևIdOEF%;ߟ$!^`WGgA8x̌3$Ēm('^,ؤ?7ZG1LDVU 9yR1Uso4wVi%iX~sVrfA!֡NCF/+MUU%j8y g* ˝Hۛ 1`I')QoTmʺg@5~~h yik3H{eZ37ˀ#13ewK9 x#:.]YQMþONg\irBb!ැfx{sgIz$4" .>Z_+>8E5Z 6wF c>PeVMrMxLrI`g,zMc.J aXF;~p0~ *<0M}Xw`=$2Kcr1e½Jrɜ4k$8t<Նmo/-qՍhMjTZnB7% O8d&V.t5I ':V_ v8Z0}i 4稨id\]oQNab<|$vIf"6ax7zX՝GW((G$x3`e}nײ9LT:QFE*tVX%: 1͊Y%8l<ٸj ,T;mZl*r%T[љW4\߉%jĩ^gHU~]5buyk}bIFy-]MȇHǙjFvÕ j>[&Gp0SZ4l 4$qib5zY, a#Gu+U}"]eR!+a'Vf~rd6|M 2 Z3 %$$itlTr a#|wKyVO2i0on"f@R/9ۯU>#zSl%nNFnAV XDOI]/5,Q(Ep0ӗ@Kp1H-h1um~iAfJ8l=9OL~r8לXu,՗S N˝T'#{T|rk ^8`8 JdO S(Uaf61jdz=xRn=QL5qC!c>Y5*jz\-ߩk"} ;ϥJw!FVwhyz~:81F0"8SjD;K4ūG'`8r"//;U\ OTu\v1VVf7}rxҞ;Pf >ך!5G8UA^u#;erE11*3E/HZv. `>Z {҂rΒ[$RzUYjw9*e+ݖf?!BAD"Kъ,iJ;p]@vmib' (3/) m"y VQZAca(kτmI5R\m}_;%ǥjtHG 99Mi&c(6 HlqjsI_|=1un?ّ%ެ[t0Wݽ5IشPZ 6sgb4Fy YnQq?SWE'Xѫj/&$\2K$.X@l$a 8^zqkȽYQK붳= &?H-m@TWǍ$f62Ok$5[]7TU"T~͹$qqYCCfKUi. Xt9.uaT]i^L'ֶ@LVJ#)VW=K-M,)%µGq4'Ģi\I Z嬐5jQ-{ͫQyIqCsRlfv!a:.W쪏aNM'~85iӛ <[^hGg%3 L@YKb瑝ir,)_tZ&:)i }hq7y=uOl;xpgFفǬ=E}4n_̸_k=VFI\rWύ?J=6JW6S8 qm- DsA.ݘE?E&`}(=-bbHyfaYA;b<5,&%8,{')*Z=v3R8>fRNhP7yPE:i|0_V+OF !VH8(Ejؾ*_DIZFJ(.FcV+vOeTeodԆ*cQS Aj7T0w+[qw'+(~9U`ׄ;C~Md/snҢ>h_Zu#jPQZ ̂?y ɳ "su]9z6 ]pϳivU+ S S%w#U h6sFsdyWu U:88|g$qsK u`KTwGOR*ѥ)Ys!= 6"uqm}W#4wi`Y?y=`ș(/Xy^l7ҳ5#z!Smp@HmnWW6 {#2++؍ɼxOW_6(cE|Tb'`FC[t0"֡ճ@GCpC|,=b`]Ѫž.4xzSDyeFq(y}T>#P,jv έdzMZ/'&S@ UOH 7 .9\tKƂ 1rѐ PNkl#v(@ Utv'}ngg6WGT֊`b7wsTVeDvde<<4M.l%+2gSb8[0U =ԘWO i?vI=/c(~a"x(QřkWN[%rzG4Z}k3Ǐ$ UKnUEN$7h8GB!JN[ca"@`n.vP1[֚\eiE3KuԒH'\zo\Ȳ bM,-27~J~j^]v>irB #vN=1fpf .{LHgUFYhuQ놚 `kjbAm9Z\^`W62 b ZcmG7}pV¾nOI-A}w4{;֛zʊwV1;yҺ R'y24 fb4{4&a'M`} P!?4 H|(oa lZ:Gq()@fu0ATȃӝxb`P)\b~=x] -d@m3?,5+?y>{?3$ـ:,ЇK,.^\GrEmÌ4h^g* vB4H%hF/(Q!I YGl.idOFh+$s~뷗MPp=K~lH^L.DM\-jb# ΕabǼ$*gPB| XamU9'ӭYgL!PkQk!?}ȊZUs7kaYGa[oObYϧR#)J͵xq_W\fH:Lݓ&afm[d{e\)9"qC4< !*,BğxܻFS#@"0GRŞpB:\ YYBDP}tG?(L Sd27Y|l%_ݎ0Z` bU pE5-]z gQݒ"1 Z?͔[F߼wsdq J'9|!&+ {Ŵj|!CN4h'05UwrȈ}l2IG=8[621wJ+Xϡiyc6CgvD.HujvFu3A7C0(=(ЋȨƅt{Fs 5&wh,k8VDUԃѱ0h-]4;JT*"t{uHp@.Z  `f5|# `BR+DqUjhKA1}a/U@$:s${/Qڐcb J灜\BHzU5)]_@vH>z0Gd4me5J^,8>034.-tXJsS YCDǤtH+f;|Xч{(IQݍCgוs4n>)u9kK]W8ŲjWAyl-+|br0y:Oۅ;T7a6\X_ݽ/ }%BS s?qՐ2qΈwj7 Ŵ+*n 6`(*!bd6,%@#lZpu EsvT*RKKfAb}6]B@Ar&2iZ$WS0IkrKz+ qC^mlEhk;\ reXaes%/x,y EjB>&<4$, B#@UNFPRVKhY"V8}=Y =fw&<00U& Fhτ}`]*`*sLjj-< ]{A( ߮JjWpv=d 1n5T黣HA{3 G2jdl4{}!+5fI(nsO\ ;+H@GhA TXS|2u_)H/5_n 2o` jūRKJaܕU;7{ ;L­v1m>XڞIg鑙s6oke,b!<oDj,x= [><[W_{Nl:0EB{w! PtgGH\J3^QClP 9U W}ZVfF}\4skr3HԘ>صR6m rxƠ@n3+_x=o4,ITKL ƅfnCK9`AA3{FC1cܹ G)9zP5㥅,͠d_z R%D 'I[*Gǝ. U ,ZXeΐVޤ]x}9!LCiW kAi?`}b3)`ũxşM@-3ԧɯ_qᲅ9FG/6˅X-i䭪Nn/ 2- 9n8"Qք&b3SQN;+O<9yACov'S'vOO'wd9dÇ HG ?[M HW3|$5t.бv], #5'7sҁK?){t /h9r.#7>j܆8um#ngǤ?ʒ[L䙢Y-b2Z|\  W 1ݒBmg (E_?Sd>] a hQa)$}srN5Wn6}_,AGARB0-$WMazGs?c>%OQfuJ+MaHa>OB%?2y= ڰƶ߸t6 3R$[eὣMZ7LID(<@P-2Ja4v"1el &E+-}7,5jFŬ^K6JJ4d$ם92a&S/ fvYl=sc=\9m)Z]N 1PeF_i`qr+*q!6ˏh؛2: ([YSc,^*R}.К];hTXU/.RF4SEUi{~7$H"9')H?ݹlHا;_̮-mWb2j⥣QOYNX,cdM+5$T*^Tqjj#"f/ӭ<}ϼå6oWog~ko2㚃 Zkk4OyNR K:b`WC:1HX(!U9ICΗDY ZFfoEwlDje/,1 L_sjɛ}՗u@U<˾ƊҊ x[8JtOu'K@QD .Ϸ Yz$}-Z%*D].I1<' 'ZnOR,Z'4f+1X֢,s^&(pY֫jŬ2) %Kngr2ɵК-3"7rZ)]޹66-=쳝Q=]Y*04CE?.6Ӊ{V/k =2nvAQ#pػҦc'bIX2g^,-!N^*=k7w?SJ4aPU2w (c`![I`f YmQ,)b^t(3@頴.Zۣ&0,ܰ͟2"PvW٦%H,vQ'Bi+o[0.)zj+|dER.Ng~vBt@u_v[ĩ >o@씊yk%HܓMd >4Dnr7l#$dfgij|YwB7"nJ Ϻ@pj"T?)%32S <F{kHV 5xc<[]0y9wm:S aԽ^eNP@%M,*?4-᲌$Vɱ`7MZQJ2FǸ_&ژr l^Nn\h$i!Fd|eJFn\Ժ?o|{ 4&J!\r{md>97 ̪jTFW-rfHTc).' J A+fBvŦjoEόwVƩ@U{JPZӱW =6o:ѡpK)=HeA7J(N)1Mڽ -S8)+v{u|>3-+d k$V" 6:[оqE<<(#4/e:XB=>CM$ﷳnǾ$m/Advv`/2HmPR  9@lKhnöfG ڽy$dcPC4)# ʙON;ijϫk eHBEJឥe?S5$niw:F $e,Tq~)uzb -1B iSc׾IT7X_r]/1;00VGs0h &B=l3sCo*ְ($I6Sg{!$EqrB`_M,אY\n=(g).K/C*8E"恱ԾPxZ v!<̉>Q9Bbk8_I]Uc ƞS;|$yVɳchg$h dԥ/ҽ7 Yk!8PSvLa0)軺D(Vs206jd[0,\ȬWRRKE-ml\lWC DƦïc,ڭ* L$ b#Abz]*a)+S>KBl4xfs@H|s |+̴ݏԥr8/sn1 ,laք0O.@`g^پ4`X4wn,p?ZIVK(}Ff'yw!Z]̆kU2SV6w=K O}(a¢a ?Mwwjj?Dc81j8˥=2k ?"b T 5 ږ*MͅZwQ)Kt[4dV]liПOΆRhn &˪R^vSщwP)a *k4O}]b_%vS>k̐pV'S!~`*85by]w+X\ZV"§樮:cۙ+jQ+G:y*btҒJߌpc=KWJ ܗ%~- n;Æ'|nOo3 LnY?2j(]i_n~L0qiҽOn9ِ=IS{,.FzKi,5B>_>೨^rb$u~Ѷ}#MuSf$wBo>v[44ڛ ؜ʣ an_􁸟GхR\~cms>ԌcĂƢ72f?szi #h;(lV pCYZ栅\ܡMnG!I+Kpc.t"ZA0$բA-rZuA"^舻i$;a6o]V*YX%o"Al򎠣j'xV[H U*?Bbvfg2+AtAX7|{g =YBcJ*-3٫C(^[\$8쀘JN{` =!F1~l FNļPOu`Жᢤ7  +&o'd-XEtH Dh~H>z%Ev!d*u}-ިQuSY# sIaAW+)]$LJ lL<_G dຳ"P7λAv/0h>oPh#aY=Zé@xopGsGU3Y3a }kнָ9J=M׹)^zpΈGXoFj,>ڽwH>}55Sqevlؤ1E$YLB&cWj*%Q}DLr{?SMN2N@HL5f͍~0^&.{@"mńaM0(2|m.v{3"޶ٸ57z k;5uaL%DZ Ja _RBj?@ǏOU1%>cL'|s :sD$o9!J1o5`ueG5`3Ă.ӫxFHy%zO?f{J w)86UXO>kI:>^"&oEoM].耶 ߘi_~Uا9ŕc֬mk29*ya4M.|/ P%C$-/iIv7=һyvou Q渧Na4SCΤ9p7˲޿J<H 9yאN먂`$z?[ m//N@_Bv[-k7_Қ-%.#H\1"-v<"Zl"Sdܓmq@, R0$APMy5ܵӼ[s}P%R#wIzeX fz%q30%S%'HIAZ09z%>gyM+6OI"1Իۧ-zkH|;Bg%gF%)]CS%L2{4k&4&w&oQx#!rYvulG0`#ZYMrWCkC֙Ms4)]By%s?re{t$3m96l͹(SV >T*k[qs.tX wlT/Y BEǧ_ 53r ;#:jM3؛-`ӏ|6[][V@/<}ܑO.k5~ +K7@]!FZW қ#D, q:郊;N"E a@FC[_`@.*$h % `H.9,?2uX5%m 0 +0<?ޘ.$38Ϫ.N )w*?ހ?jb;z5/Te>˗ mE|ԐԅKқ^EK^]ftm-/BaxQm0v^$_/!{ u!zNnxq7Bt&k!+] ;ggvߞ .sS?[g[Apm`bX_/Iܾ~Ī SȀgXֆtd0vl!1Áq{ u|Wx"i^掜zJ1׋s(nW9?PzذsP6%=w¦4XVbӉfitOőd XÔ#N[PTi/3OP @.ZkpuY'#R櫭q69+C5VW*]_szO %j$zBslalu3oGzO)wv9W'_g:_h~!ltiVu& 6o.~[c`9>T 6^R8hH-9A^/o/Յ\$5{ Mp1T$`e/Ŵ:)4; f\ۃnhHQ//'ǭ;Nmdݵ$\޶<7j}ļ[xvJ:.Sr$qCPffrk˺5+Sc@E'&24'es6FL7cXrۑf$+55z7+2|1=Ar*?Ia.MPme`ۯB%>=x=6t}@| pjh]&iX;'D(S OMs e_һkSjz:0ҎPxF=66P2 6-Y5+ڇje(2S@XEBljxQ06w*Z? ׂ] s|31 baHR  ʖ9U5#Pߔd` e/NIQ4v#U74,:q˱ssAq;܌ZV2Rʍi(.i7O'x@(vwgp9x#XT˹<.U&C' ـm[ிe/h㤔~!pU0\VA#zlxn:0T?,宩k7Q|ɳHym'߭؉ gzVRgU4_i02zrX#|NEM~5݊#>儬wng?PWEa9 hHó,#2U&OZ6!2bE@UNnDNkVb ]R3u<&Z 5[IÂ2cz)/hUk\%c$,igEݠtPvr 􋊹WSFޏi:}%tLf-\ zkB"gzR-'3lp3KFO=9:͙ͼr5z{Ds}j,1[g9ktO;I&bvx<;{[@H]pL 駔Jh(Ń@FYe֤|(ʌL)3+ظFbw8"̀#ᷟ 5z+e`W2M b6ێ ɺ2#@l`-zpqIgJu7Jadٱ:Q,0މV(;uUY!ZU0OډJzt-#Wۑ4`JGTb^zrj.m' -C1wy:;/V%jLp-ZoU_z$$5PZ? QMu+ 8>žƘ3csZšqTD d!Ĵ|%ȩ}$~]U()an># 󝌽}uuktеFb :Pk|ki$1=&^[9ɩ3`wL@ˌߤiuPI}>z`-MO]+Cr-,W$ |P"n(n~Ҹn͂*ȅVg#-kGеsw=]H|l*T#oUQz{!76JFu[؆Y=C@ ! j7?@;W{&3susmb^Pzc?Rd1,(:>[jf!+b0Ҵ U~+˰exjwZR=1raÂs!y'&s>\\@6W2HK^&nSz#nz|֏3ֈFv}idݑçV]%܆LWej|,WE d4=tnPu9xA5DdX\cdw\K'r> Z /cF @zpJw0C16f#"E2` 6T]fu_)e+*P79j΍8#&I{灇ܓ-~1rW;R!-zIq{ S}8 Cw4 j[1!{ˆ- ΙeFsVFPDG lF]܀&|$L]ٷ_xme;J:\8G1IdFs`H!~1e?fQFWI!߂r;,Q-ZebNN, ۃ-BHAdXiq|Kl ~vzb-I1BBOUt\`㳔\\?~N-q{aTQ^|1^w(#͞j(`I9tȗO!\f.Ԃ[ڳs[8j{ƒ;gz8172r^ T"\F>%.~E)2ճ21PIm֥AF^:oٓvH ̓Cg0 JAչi wÉ> ͕5)䞃PԪX<>C5矍hGuaPDMc=Rк-H.FUG+c=g:(lURK̖#q|)@7.z} tf W3W8_CI֫6d7ϵ'~ߴ6[JiIZ0oTHr\mj'v\+vl".y%#x>{@TJǬ:C3$dq+X^*ol"IuVyyibW09@ |L`ZHxI=Qo䕇sR-ְ`FT1B)=PRȉ|-p>AYߡ wjOP\g>#M1_Mc@"RDNZlb#$b+ 6QS>gΛ$JV-h1äP(i9..D;DJ $ Gr)'wv|)}g+k9XVe&siiLDJX b(Yfl%df hE1C sӇ@MqEdSϓ")1˳3ƽ{2KGmd _I٬ LzڼW "(-8 :zsZ7nlj7q- 5cmȲ}#diO#|]Kζ5$'͂g.e k+H)H}C<4#?z*cvFƗG=gZ¥ҹSB9˦Ѫ0 ^CzLh)241 ;JA{^6~7@ܸlyC% Cie_ xg ɜ*yъ`k#A7 ETʹ %kxKN90@t#Nvl"#FY_O͒іˎA4.#׆nj%8͜vqYXNsc]SG5 # b8N1r^=!F$Py̹[3H=u8%Z/ӜdV"T0ENf8TGoH#! nl$z(>ؗ?;S1qy%엔8l$>Jmq}FVq??*#Fhbĭjr>WwM!IӈA|<[^\#KL5cXdB;C=W`sNuu]M_7;KNdjκnϳ94|* Ny5˅E5E / /vfYÄ#)5AFvxF[s_3%b/F1c?3W{qT+/G퍞Q@\"Iqm) xָB:g<&ҩ^%SK!kW[>V %_e%xʁ0Ҙ7sʋ'~1䊤Cz#[8 YB,@jjvХU0~Q_sb-, Yw‹_Y ^WۀT25 GӤ4SRaxں1cCnA|g7'񸗜9ob97&;p'yE `gP~@-s-bNWtjN YY􎰏bC>iR'@$jxlʋ2#@  Ynp.o. QLAqp39ǔXu5r}G,[u^+7zEpLKP ~A'HuX+t|M+|<Α6{[BI xM_tR1U'E;']@/;akwp0=cKy8w̓  5'|fq> \t "E7{c4*AyŇy9D[=1*AHLNbt'St6wFw|M?ָHFr풄ra_iV/ 05 iW!ZP2+ngh$x<܀28mX6_^yy>@hA`$2.K}bHqmpu:rhha/hbKQa'Sz:82 $7OP,@r- OT^%r ^?F Ų=)bvG_x q OQTRb;źGydS ]sz {-1߁F+ ӧ0J:;j"@`%#4 ךKBC6ڏ&n!繚s4Foh%n'>9(d3@!F`;4v}{ t=+Ā ^}NЪ7KlxCS*wYmK|b%rU'#v`,19V%sdgY7BgVFݰ 2fj"ެuum$FvX]bU{&7jޚ ύikI"汅j8`q눸iNG1Udx K(M.6 Upnxdx i3#+@vQAzK>,𢜒yqzCG|:Ƞ5l3^7V˷i#[XW-2g|3>,:&QDp @P+9nmMyQTgs ึ94t&|yUp}4Sm)Ly۷)K yA`0|O}d)׾:_^Ժ(~*al傆u K[[ldM_`|CKX6Hod L#61/܆8Пu;zBvkMOVOFOS{/S7{tEUx,Zһ2l 3^ߦ9'8 ,Ym)nCxqxٳQ&Jk5` H|~КPMY.o~X\awlj0GA#Z^uDijhRQ<;9yU.r&l[?õbx8hCyؠTw;yɚ\=>̍T.CJZ-=PK:_qKح)[䇍rr2aQŃgDD97!NRmew`URvV[m{ W*TdrX4  p`~$s!gijeZyV؈7׹x śTTc$k\[vYKnop&'#$t6 x/*]@bAXPPLfȼLW]%qfYDҞ"-#npILup@!fz^s#@kGR^d񾄏VCxIЙ#{,?-HEh$BtH-z^ck1y\}OF e^p\ŋ'DR ݞw:܊ 4l Pf2~K c1Qw/2/A/~U$M<gV룽 _HB%gU8o(p j6W oFCqlu* S/˝iꯈmqߓۍ ؖ^vэd6UB\B21psajx oQp2(W>x$|N_sht|2Ec >eqarҳQ2KrhR1&ٗfmMff{[/ka݂a 46!WFk%pULZ>@>X}Q^ȽXnCtV]MY6 80 LLO!Y Ĵ9+ѻ눌&u<8ѴP-Q l" H#`ҹG+'ZNڭtь!)wX܍WK7VfD5uNlԲKe } bΗW: \vaOkB۴4$:=>@OUon]c@881;TwJgMYK|GQI1x?\-8V|'Fk-V<ǖGV, طIf+NØJ)FH*gDJ{ n4S&Y!!{]Pk`Ӎ**'bmf흜DNc!逗s;!܇#N{n=bD^ZLֽMA!_=:8Z y UNaDȄa9!^"ǭz>)B#'+Q 'Z$UEB+ow- eLUx=61%'Hp;@jZ.uksmTja$IK==50ZRS7G:nL ]ftj,4~E#zE*=2Ϥ$N"6%q=g8тZ5˭#8bATjbx!M6Z*Gls/u'=Jb-+6˯AUtU#ϚVXi A, ưBݗָG(ŁcFTQY `RzE5 .y麟8K(1y+ s\Q=2K )&7nꒇ ;IOO26ug},k3:r I7 }cp}_).눿|deW{VSE׺=x9l H\Zs̸ kBC!tk! tNRlj'&UJÿ:"d.h|}z/g+_n-g-vT hFN}‰9R х /~dĨP3,!9Iiѣ4׽U[L[%㓌)@e:jm2VC[P|,9~nv}s5пdKLZ#n_Bq>"ZyJEKWd;rc.@ f4*rGCqmrvA` Yk%,kQo16 ޣ0&⋓.56`xөqrG6 ;bx@{mCvHk|58fD󢻼 4pwqivZRxUx7jTv$3RɁ 8#u|Rʨ L:w_Uʕ;~_ͥB1St|y``03)*~1'v6`oGEN#Y ֆXQ]Co}/LK!lgVnX{½",L!$Hh9A/:qE Z޲镉;y+w$,cy%@CRPyUZ1ICD#Cs%tڽjOG^b_Cmv!V ;V8D$5*䴬o$][HtC[4yKl² Mѯ |ݘj;%gtn,~&e~ͤ(p͕zj8`lNc{ObCj*qL_h+dk[auH2ץ5g%YH 7LbHE7'"c :,;DK'qآ[0dwMrND91XIK/zu!7*I&`Ț?B}/+aw$2[x`ũl-$2jU,Hp}o"*eF|kfDߗP KG󪑤BI`qLu.fw7{#` a ۢ!!Y2`sLXR42pIy#zW%vd&QLK,E>7a?!p2WGzQ^1δÿL>< nr$QYB:\K*o&WEcI{n0 @ r JimjRrGCݕ@'NMZ*fې.Ԑcch8 >C#oM-sjdt&Xn 󋑨>WgòuOq^{@̕y0`{vY{U㢦fPw-ܲ yhގV@`-q0Qi$)R Lc8kI"uxs9ީ59m*\PYOG f )B?eHv`3ټJ{^N%' Z7X;s/&6rTGǿ 8Cr$+$!d :) biC;6$8nس(H Q<[(M:[䶎#˫WR'  =t]ޣ̓oqΛ5u)Y,ܛ2wӫ 9zioƋ(v*] Msr, 7!@9QoDrPPeׄ {Mx;ǹUHgAQP,GAÝu\w>zuzg.56(uNˡ7鏤fՊ) ᢎV÷2,gcv BҢEt4Smgh.kEyyج멁&ϨoX[iZ7e_cvw9+/;|ܕ d~A {8 :3ƥyGS-aP*iC-{,+"~,~cC8N,-:XmN($û:1".2|m?RhqYp 5gBxqeOL~&2a#cPUZ $_Ҍs)`\Hgg#0I$B@lR\:V"hbϿ 2K4Vwnb?2 H@@a@P}B[-sbpu#;l:t$[DQ1˼QfܣdwlM1;Ì*X,4P`z_wׅ4Q!W?1IUAK\\JzM/˘ay2U1ܖQ񃵱;0iN>irءz:-:IԸX"oS̢ڹe+NuW&1E^yP$7* !pǞ&lp |]`aX,Fyd v%/.T"w!Fؓ XM!1@aKF!Exj&~J~NuN`;,5Ь>^X8Xi؍t}Z7Xaa)t-;AL|hoJ$Q[2N JqT!!w VY[J2Vv`z)aL`A"8L+`Y SoG/7fe DHR68>:DUܠ4䩆r0G'Ѵzӈa~7,@梐re{2&RK(,g-GlcEC<rRy+>~NÏsHO[f)d'i״IB6TG ~TR?fɂigCp_+Ok2V揿`'CNV qAsd }E V|9  L[u|Ty{E?T@xB-#Yk^b-P gYjCc<YLT۹oEsB_ +_Y-^ހY)$ >~"Huumd@4 L pbhv`=r-Qi4`ϏCmзH-'}KJ G?-sHolK?xRFiվݵ3bO/6, |VoG3Q:Ӊ` sޥ0Հpɓ= 엇.m| 5ePxjBi+B@:-*&5~%֢it~l=UOGfkpKK'2ΡCUMsc^OЋE2aA nMz7GGl"L{,P#֦6O= M( 欛y6Y@"P؁Kؒ[\h+1K;s4&WPo[N;s]Ha;ߡt A70 *bȮR`J`1"3ڏ VB' 9^;_yPKUn5S':A >7 괯o6H̯@ T韋#ew 8vlg\y*!,@zcWo,A;;-*5iA,FJ 9i!G3|9~y-ObM@Q]/'S~`Mǝi,-`cx C~`-"oGγ'gkfj.$L{u-bg@d$.H[ߨeo du6Ic /h5S0NϺqh$Jېl}afQ~.'߲>',v;j 8&hguKÃOV,тNH77{)z=d(aFE3WP=L\3o𷭄v)T'"CF?Wف=ac`6z)j~Ze᧟́iV%U^HL5SA.9}EQu#2^H$|. ,k``C;vȀCwvK-pr>}+om'4yi~Pyh;՘&:I?,Rhռ,o05X,d- /N?R%GZb$2 kڳ:%j7PKxr{HO+ޝ1 #1zi?m@ybKtTȑ{3vQot^9k%YHd/Um!i*Tg'3>BbCsI!Ǫ4V[P뺺/yҸgE8C36&&m '<6Y^ 2un® Ln68 ~yI(L&[2!Ee^B֪q]N=ut5(t[yJvvG [)1=5cWlܴj*s'7oF7\p ԺmiJӖ\Qҏj+P][hYhy 诰iNZkJzɨw\(ly0Hw%4V!l+{.5'&NrH0š鍂&S޸;IT77W8/#e?ff|$ѯ7;H]@$g/dmZ=},9}׍BZxHԉ(~FEcg'WߚT{y:p%Wԕ'u8WC R-&X=qBS-K7e-X#)D}GD`B h&*[\@p ث 銬Wv8 zDSY#d} io'}58 ò qSe181@&Ԅ911.&%rUڷR U ]$JW/YAYRK'X"1%]1z' lXPEp i+9A  C~ckap1a|sTJLN>:z0dnDۢnJSR j /[lrCEPL8LCe2 T+Omn5:D0DzQ[y_ْnc2 !*nGEQ1bH^"h_ngݿjnfEX|r+M&Iy{V@ 3L!*=8 4BM&ipm?̵ͅKɻ2~HGXBAƢ>ȧhFB]I+@-v|uYW0DŽo9\1"/ZL,bc뛪׹6 @4{;>;4V+ǵņnKyŦz% $Oڞ`DS3!5!??`WZwm..RT׾n=a0#" B{aKK7u?d uo7ߞPӮs 9PCE1 #WW1/զ='} GdY QIPǭXVy=/22Hⲙ_E~8dT.0f/I`ǟ͞3n%II9mzݖ;+N<5tJ6Wu_85C FM'=_84eg.MQ%D$=ݣ+J%B$p,2MVGWgSڍ?A4s]̣d4G1OLk/pLLAsۋ>=1A?_HHjtz"+X&ġһRm=*Ju[*Ză㣻d J uReDq fLCǓQ%ke.YH4Tط<ɖCs*̕d>p֦3TmA}!;rw\7nmz+ѸYbn+W?ƫdos:be=-[QwX͹B$="(&mJڝZčKƎ k;"B=ck@#geu!N{ wRy,? ui#+zSՓ|xt>s֖/|;:8Y@JgtaΜD6fM1#G-^XqR KǛK[#}v2ZMV$1# 2ωɭpHu̠D &ڀygf# m\UQݔ}a7++iCfFԄ}f]V}ydí鱠 ڨ%A%5tqDǾdL+ g07 2H# _3I6qz q5 4pt4 ͓){ҽK6#1dfB~yN d ]ejV[/|o/G p)@*(AUZ)*9+S2k,Bmf^/t2}j&VJljӛЪPk4 4od0Fr$Mzo>R+<2)2'Vk ~ʙ: % OYr*9G!yww Jp[U(2)|:(C`ck`ӫm_>H7쏐jSF#>'3`}x^ObYFT"7ĹJDo,#ǥpjP.+KgФ yA20,B\&6@+UB}?O1G|PZ{dsq>)S&> (VT<uS|lD] .3)z6/+~G+M˱ sLkRci:Wi_YMX.=_4iW6áoCs+ýپGJYM+\Kq{-0Okgv\EĩOyw=kW Xv>Cy+ΆXTcɐJDKe-Kw"v"׍OkTQQ?tKx; ܃L!Kd.VpqO]wM[BnDˣӦKc q@R 9)ST?̠*}Z?3d"k/XkT<.`e"+=~\Je"}#W'C 4CwNyU u DA1@lNL\ɳABntP8>H Zy"2-/>*ie5&g[!RW Ƚ˭$āId`LF_]}Vԛ1t1 LYe^?n:G.8>9< cu xdrZ=4WGl:@$Y`/xRy'Y4ҚS}+4Z8rvݩI>g8NOJⶌDC#FiU kzbJ̜Ƞ jx. Jx[BxS"mIhbhT R権gYW5[IsN)xe|0.E8 6J6pL`ka XE ;fR ɡ8\%׫xVɉ4HFU ,J)]UA?*sMh"qdZƽbõL.l{GR8DNdS !OlE[rt؅pZVo>ڤN-O;F XV-Z`S-u9rO [U>T]x?m3T4sq4YgS#|JJu)n $6~-dD-XNo=<ǝ{3`Ut'48+ y @ivTh"eїs})-Nw)پ.|wX2$r6U& .w6薌n\JMeң7qv  ̑:kM{T91F8i.+JD\MO1U_sZVw*vťķvfh5_^1yٸSn«ٓṎڻ2$1m kk3 `~aksM'i5o ʪ'`PRL2 (o{ ŚPy8~+u1M\&7+ h6.7:FF~#_rtr~ 1Ȩ{hْ1}6c[=:B k?Kik?EoQ^R,/8z V9 93Au Ή<%H "ՂBֿ%Xl Ӧ-WitU{y6nGX@,/2 phgJzPB p "P ̭CD"]اUF!N4gR-lB=E(ur _KZ$OVx3Rx1˯aE}^_[,(h*@7[5m43e )Hƹ/@|~Yē]lX|@5"R!M:^+8P+[ Ǥdtp&"NC%gjќ9eJ_ɥs:V]֢,7c*A!#3Vm5hl${&˨f_sXDqZ D =_U)p<}qPԣV+1*W Aj:3%s${ܢ1y,,C0i8A cإ|5̗oSfì;ufSTbhj7%$|;^L! "sscw9c9~: |:`8/G&(slaȳw $OX^ ;7lQIl?WV18D-`k*>ORCg?_'QP q)ޛUֳYȭ*5zs*Q=̡w_}&ByLq-eT%yㅺi[ėI٣.<1:- XR;i!7UWN6l Jӟ\QyRjBۑ}aMz~| oS$2투O唈J0I)IZr0Z)[fR Ýu#XJF\')y.k9WB}'AH >ܷ:\ `Wf,G9.H$Cȃq Aq*IS6W: VcB"F$ɜ6!FN|heП"Z06dR@"NQ^s$@suư$BLlOm$ϩY%w},'LJ+?]jpKʰ*?u#+Lq&fEΙU/v9hc~.ќ?ʂhb- KM7Ѽ:*P{,H[@3CAvh5I" Wc?YLCT,1kphok5 ¢TM 0PĚ.%Ah#;/AԌDn[#Ylav#OzBKs'jݢ*oo4󋂦lzu1{0?2C˿CJmn r6u m=\h(GI61 &o_{>k?+PG~M؝uBbZ,$SƖn 0$*7Y 2n~$]1,O1=ʔ1iɃnmwJ,҉?&[jPj"X2InN ˆmw#T@žVoz$JjcWiTM*K[AN<0)kCQ-;Q0hXwk=ŶFHGuo%d帔?ItOWr4{`@zpS )5ioC Z[\84>X!~皚ms*%d"0qn{ ?1YP}P؛Wz|)mLaݒ9ommۚwA^xE5 Sn=;V+uޣj΅td*mբFÑ= wB j0 /xD~m~d>cOAߑT?fC@p9SJK)_As11`Nl`w%BѮd~AI's8]۽O$$Ws !WAcm0 Bݿɟt@Xr~zhB{TU8{KP!Y:Gk"炅h-Y Vo%kϮ>֦7 ,X,4*ӁK5wj׬UuPgZ\,5*V鵡Y:'6ϒp@+bb_hrStd@"lіD'W`+#5hVҫE D>d$ _g+" "yC0o[YVHv `lSS4c%Ё^D]g/|cŹ&FF.12?XgjYW>O3#Xcopj.tiⷆTmv\{&Et qɿAm[CKU Dobh"rpW7nҷiE!DTmu8 >*T;&Z XאMGYYrlp*Uأ!2u48xSeB**6 &Dj-קC{h6!bLCD|Y^"\LPٸ@{}@ +:Ttt&wܲmCҜ(o,@^yU<_MTW{{R$pL3s(ca]FszE$Ǧ*205s_l99S5]Y 1sD[!/)%HN  j1,&oksyn)LPd lg;,X1'.=W}'06̄ܢ](oJjh ܅-kZ ;}b`_3zohbv>Yq.ʟTJ|yطĢUJ-,z2bTUzW(>z'$UY>79o:\4Gy*I[e>%R_/㾥Q M{LA#t >WR9~tχtZB(; >T|zϳ9V+ L}|=|v{[k 2A `5 D!Ƥ(E`5'utX!t:cB|v5D޷Zy>.o{0~ϾY$(_Q(F<~ov  s (޻W1_ĝ PEckY6zH4s&01+*n3cj.<ƹjK[É!M"Ƞz H><ßW`o.PۍH-%"jhX_IA" M k B"4B̚G,VÉ1kjMpTFx$o}nm_MHeد|!RM<H[EFXW"T޳f'=ݕTc!g˨oU{!T1E[(hV9ʒe/\Z#[t[LƋ|K#Cb T=O -Zs9#PF`h$;JṾ{ǰVqjNeb?iN<0LE%'da_~ڡ,-y_n6`03k?O ƴܣ'd+Z+hGtfB]V@VAu] +";U|Aq ;OS`=rTQwT ,*9" -Y $ gXﳬv8<8-q> j` wăTҹ؍ctZd5GMrf]e[&C*h{E1)xs7pP ㊡}%% E[\>:w?&k~'ov:c[qC 7ouMá-wa\;FS{!a|+72DmkqRa:$2KI|s6Sw";p3L(sx(~b^-u8e{*{Iِ_3[ 5pu\*M:s(] ,ȟHEy|ۜ!.dniїWgc{0QG`L1OdUm}bUgƴixGDwsۨl_g)=Ҷ0w:;̃r] FwlvOM]ľtzX/`7;fohQT prҫ!29ZRdtW9غ(aGk3!_D@->]͓ˌA'玺.эB1h%@KJpv7wPzWu/g20f)cSAy՜#8eHWbML6tØp\@ꀔ9[2'jBfj!' +VwT$!*WCO2-`Ed3m5+M6-}HT 5٪:iL[HAxtsIGo>%yNm (.;+Un!lƋqϕwI?TȰS4vf.L@ UC;#xČվ]:'̼[<"(~ 10 cW|{!6ὠN|E a=_ah[")RaJCV\}"89_o-J y' :;>G/$e˜bTQy8ۍ"V9Hq+[4mMH1~ڞtRAA't j9',)^EIX ;D/"EݭL= HPquq4l\?EwHP6u >q''q~wk?~1;6 [xHrF8Irx9؞MZ:VPrv0NEbY}>dvҏ̈́ *s)?e?d0mUPo5\6wJG 1Һ"ކ9:2~H(^#1⤶2elт(C^'Khd}0Xϟ*)5lEUj򎛖uYv :FDUZ:>oYiD7ƛ-wKxSoagk#g{/G.Xi:*5N310QU F0[&uL\/ogJ9LYtk U/ uju'Mܾ; @4{) eED)Oaz@.:{!+7p`0:TB{=GL gM'sJ!KF_˙mil{79GӰ~BqY (D^[T08:@,eF5WYq>VmN$펒 mcD.4Q'J+^Ns6 (#z[q^xh%ȕrU—sͭ7h'!v|=oN7\BSظ7q[V1]{!LMM%:o$\%Rt?LଏW7dPClibKDTa){,z#:X_eoI_Sz?/z[mpNIԋhx2`KIVLW#`Bк#$SЁ_;_rȹV-fAxcfKb 7vW<B\umP]LSSUB) u:J*IvBTLŵk<hFh]ԑpf ݢ윾ǝ_;1 p cNvBc|NO&ǕW A8;"kp<ᚽXҵlgsnpG? o겛ޕ}jK=4U ~aPX{T#(oDn7vQsd)-s[`8IYO0~΂ܶZYbMYZj7u UY7;.I4!UK69M#4vp5~%[HVww1f|AAp`h '(M'7q>{>~áKʄ![akJQ (Cgj}OZbse|aY$\B Ԅ\TzvՀN.ҥ)ibCсlNFyu^ 7DQ7[&#_jSgOid ]R#7zg+%]-{qsi՟ n/EcZPob b ?)ܝ/̅Q4Lxۖ]eXmAEA;{_&]z eNpFg?ƒ %1bW՜8d apQq9otURKLy'^ȕȚ逖c%Eܻ dէC$s(Uy7n> 5Rog?o7T !Ii)(LK[.$|ny3Z ->zâ`u_QpF$V{ϛa#Z]1'Dӵ[@R;jiMz=8jlմHv`\u2ޤ@g9ěL j%4B=zV Yj{# CNl AVC@c>F 4Y+R];E+U<\ّO/mb{/ޣtB}^KSDG˛%م$jݱi tw%~~ȸlSB؟-}abϢ `/Ilة íGU"kguD)!/Z%ݵ["'+:!(dž ý'Mrr%֥D'ȵb`C$;S 0]~ [v 5T<Zj! $d0JƼf,7j֡D3 [fiv Y7:Fk-ɬf{-S hf;!xVk( B']Q@i[nhi]0q>n?d:*5I"W)0}c!lwq86UeO`/bG0o6k޵# @BHU#萟2[Oak\h*a2UO"$\@ ayQ͞Ofٮ)K2[qPɧ[*&aN#W<Ǜʵب MӇ% ?/gIzD$@Ɵ[KuSȥ~ sWzpY #:V/G4iDH=,L'@jc8 l:ﱇF6MhW]Zt-OD!  =UL|h̫wn(4eJf Z|>&vl-Y<(Hά*ڏZon'Jr#G26BJ\mk]# *$CyL5x 4, ߕ^Z7kʠ!V1RFWx QW江:!hPEpnbFB vۤ|JSz֊ [bOφ2ӖrmTqB9)6YB둦=[{_=Q*>_XHc lA/4y7h ao܀ Ҧdaٞ^$E%_uǮWRB qCi""iαq| E_jDxS(qwɩ,Lu|Tl 1%QӼHʃ!'{®Sb++ӪP(KV7q^h -~c1h2!.]3IX$Ki^Dԙ6ew롢D>ϿEZ`6.ɕƒJ$}歾'?eMnW`S^~ hBGH@j(\gTJBR&j ):qV N(ǡi`ߨ 7]sG ʨq2CDO-*Q5p. #qiiU kl: k|xˢs#8ȍB%Y+՗VNQ>uOK)9g*pN1kjmx la툩qEFT_ޑpMjf/Y~:̴xs|= Q(\#%esW&Y }]1X/3` |R~+YUO}d̸s_0yEC(~,M5>YGkG*B,#zȹ6 fd8Ra$ώKxcRQt Dߦa(̦\ܞ.x1U/Gy-kkǺCAG 728mh!hRvq9yt!G'{"Hj/+6ZlVn:w|yR(Hמ S&4eB#8%kKE>Ox<sAU~$ZV+g2>C+b܂vmT'n(} 5 *Z hl_V`L0m81Ԗ2J T-QŎ Lx-J$16OU4/(K dQ h՝U9XMGp ʤA[:pN?a]s n 2Wx.Ua^(bB1/ _d3QHcw|7AΓ0Yz3GT'^o՞W@{809yt;BtsAO^ -[{ˢj*e! հ{EjonFrl(9~}s^Ҕ%[XJE3P!v#F!]͒^, 9B5A12!0 x("Fuq~#\erZe/< yQ3%ƩV~=]цZ;! ,%s_l1!ċ4>s1+iIP5UeDZdUMd@7_[}9hgtThw&cTL/ҳFxJz9Q#=,ϰ *vJ1x i=hKq6y90YROTq`E2ĕZO wvNdxwY=ӹ:JT:ү]Cy[ͱ]HRhGӞS\E5 Wkn/4qyIBQC*35 y-X#sJSU۾fzfLtc95sʹi]y[ItȀ.9O K?Cj|}8}5rsiN)|sg8h/e~ ?y ^>fRɚ$ɉ\`THe6N]U1c!o,.lGǚ'8.ړSQ/dWo-oA{gpUjDWg,7.8 45R\2a2PiKQR]8zSQjoΣšo"(.i_"Z }/ܴF"5%1ߒf(LZ^nX=`#[YZek?Km8c3ѧDAe (ԡ~݈yk&POnZruZI" ~J#Z=&7!] R0Sރ݊'UpOѳ3˛(7CtU/ neݩ/x4LU3ف P/4kBZ6[C,~N<3ZK)vc4͖ƭR CYl:?Ny~6O,Q;mkIh;ҟ2u/L&N!_I2vϑY$$!_*\Ⱦ ipIߩ$fӃcD[.> 9jA,|`Af67~gsQ>)3;kv nz[R  bMBw:'da]DY 5-4?j0kwKkZbP.~Gr͂ʝU՘5c ?c1,}$7&{8Qp+O]YO;ekz*E$ HD#'.9 RWbP KrL^OnHt]-.&nϡD-hF<$hoyv(xdվ-=iTt%JKM-P]eV"ģ+M҈,UNqswҦO]itZ}sp_v{/4ETrga\&#[GRj @:rhκhdeCB{`vAO݈9vQۮ|a 0C}' C4fw?WsH+Os쑣1Rc琜_&w2N]9&ĹF"X#AΑ@ P3l7w'g-m";7h="ŧc:.CFHKa\ú5_AMDiAR&ЮCͬ`$vW5Li WH=ͼ1}ØdS%8`yL)g-:xximDD2GlMvn#JMmd )7@כ5\/RmƴL1ADf,[O%_ݕj̦t1kß"9ExeHPPf򺥱Nji+u*8VyK–0@QҘwڷO'`KcS$TTLװ% r!TG+h˰&-U%qѾiFvLkT= g$X;!pϧrĵd `+'hrɍaCIYPq9a*ib3F u|*[ͨ"\YZJM^}rɺ4 {rLwH r!S L3DFن+ \ndZ\wϗ 2Q$ODXʊE':ٝ*NJ9)n5s67k9,i9~{" `ˡ^ckZV&;I~NO,a;I\\Rg>( J8RrB T0kV[:'8d3 |jPXv~Hoahľ?֣3?"(߂]!BdiVKoo(-t;Q?<$09&VH 1܃UWcj X=w6O3=_$ ^m%um)Ɖ@(ʈ:`kkt{^ekqͥ MX_ GZnd#xʕ:T}`6/:[(o$! a ,#[@9NR Z/owf5oնxGVAe=rLԇ,hE`Fd8͎Q+vdx" ځK )qaM~ 26d= Ze;^9NmeY!o@݈82yMřQ,!lc܉ Eb1NT Edњw(] ) $1#dn/"BOnDs3twXPNbuV=z}#z_[{dsV_$vd0J{ʱ+gs%܅d3 fMpKg[%NdCZ/5 *aB25zn c8\|WOWG5q7>H~sf9ʓѣ"Tu?W; ${l%qՠ7^ Jfgj;7ϝf %xns󠊍L ѼkAO{ ;KM6 ^((aJAݕbBI.bTYE B'LST?+=!FI=o~s &B̃kp!87X?Yɀ/,ф FxԻDm0>ix1c`FzOO~R#}Ixx6ޮF۔4"ITJOx~w߲lb $`Ź $&V*ЂڪR^bx`B⨁uj+v) fTBQ"莀@;59{u:l>cs|&Y6,Yy4~8;n?}Տr=Z/ {M!m(T{9L ==$f}^tX;7cM[G9ra&HAx{ٝQs+D'2.=Zc' dߏy_|ZxE ;_wL=#UZH-az'2AxOpN/:r΀AȟTa&v4 eXY7mثw3mܭsj(ԉhwELjei8)XC+g-)n~߯#|_VH%>C͚2(UX9F?:N y@[uRboiB 'u9(to9qGgɖj/|N=Ҿk:Aƕ`vX(ނ _>ΎrɹMh i]eۘX}-r׈A!]3=K{ťթ$R;Y<0v7yǏ;K_ߥc JJf>s-yB] d#4~DM|ZL'@l-zG,q6}ntq0M5&<Sz*O^Pc6, t?})l 0Vx|ﮮm I)Ud $q&e|K#h[MCQ;)NookmFWV0(#߃*ujꝕqU#º")sT^+E>+C&i#-x*2 ,pe#W~x>ɉ{% X#*7[+eܤ~ >Hz dh-[1{87T/LܲZVBVB;$ 1)z.oq|FsUsr&1w2}"#UBv2 Ty߼su!&ݓVQ(V1pؠ(qc:5Bj~?אQ#t(zSD (?$0aP L[gT> .l25j"SA'PytakmpJlIt .޳S3-)\hĴ3K^iȺU@jҳ^W|/8ү{\/h® Y2b%x\D 'S> oh-)k ߂᳦)YN6'nJIN\/3yZcRH8w"ձ*"͘cOR2JӍD"nsqal%CkC˻½;b &ε /i?Zu9p21**!N\b٘&qNWxlf}5~ly3nց}tyWJfx2%VN<Z.uw$~]+5f pJQuhJ"5\*4G 8|ukGJq[g۠M5n{y iI{+6UGl% o{ 6GīWW zI219i Fp4[*OO@ODC  ņ־z5:>`nK s lѡm UE-ZᑃaUJ(aIIX' J=gC7Yc/%"v-Zb,0)s4G4ktj ۵U(Mk; \Vxqn#]59l=B_;p I'n;+i喜nZ( \b#Hƕ"&G^4^sasD ϥG&F6~dG􏞇@= k ~rG78k,ǛP{PX2 Q<\e >`q:^3JV0AV12PwVAfK{h*|F2y[ 7ykd/jU"ffl9CrJXҩ|rT|~"8o<_ z# @wvF&aTȍ~F4Q/w0䣢E_RCwq:2:N=iCJx %JY1XhD30"Rch:Wgr``z5zVV[Y@A}?(c(nstrG˂b%9t u s qɹ" N'EbVq5m q뛾 ̌aa|=sWF׳ Tavp/[xzxe[/>߄M(>KiuKĺ۬~a\߃=W};1m/BN W{{sw /s6@j{=!"t? RmJdƧ֛gp􎪜IKPB8S٣Y#dSKHC)LG"7kwYl$ Z;T r?m6]֊Dh0v~zhYMֲ6B\OWXT5vGW$D y=?KK_qU|lOJߒFY*̜72,qr ^*a0\t+>hxsWzy##<7*XÙ|Ły1k {XOB[`%mvZ!5<֤L**xH%li_hhn@@Ljz'GIN0p֌VU_ HGWgtu cZ܍O}rZ&q}"Ij:{ v;Uj;d>ܪ,{mNη.xA1h/ezd9 yjA-ԩdODhѪFa?X C;(P}CB,_~qu.yېD_xP5 StKL(y/$ $g$t?"?ߣ(w{ָ+ .y,+7boR4X 0UPγؕP\hV  wDcS**‘sWOpML 6IlpgANU6FS`^ڗз(Eqv2D;x$>\G+/\N䋍_%{ble)lGrkŃd]ky;:/IsOG*N1V,ilv65*щsec@ߪqeXkӧ]ow}fj㷵*˧bG}VnaFz EfC7t >sR6"RO/I<# <ν"89%}PbȌt./t9st|EDEbӝ:F섦ї{zP Af :%PwO T)^$޴C]-e&/ͪXF&TJ" (=,/rw Fkf~V)5n ! w͑L#/`|װ/s7 upG6d2EBX}-/`j$N%#} ?&Z)Ei+ ђ&rk"w Z,FZV>E:\X$ 養7vFvcpJh \;ߵGouØ4*r|f(<+x"4]ΏjsHV <>y-ssNr嫼XVWZ肘hI.kI2-U8@h"Ei_].)]t p%,0YY޼.Q)y8:)kjtix#=is{o=O&@+2S,o~!iR7[Xa+UlwOAQvi?fjj!Ao\r&|hd7)H8ԩ/uA6]W^B]cn .YGg~VIc?S3qǙ؛yZ> dWsL+a Yh.rc̟N]5{GUNeqJbCĽ(ٙmѴ:AKlx)=j'D2uS^;j |y2:Aw£$B|'C@/ҡУ~ٕOk@eZvt|Az]?Lgz_k{B@ nӓEs 9Ώ7Pü+`#Z] cOnO% ix"C%F!jv845 DwT0! p!v p%{{x-霉g7l%BK&Sj Edߵu9@ʹr|tzu h =aK4<Ξ+j\W$؂5PcZOXH&#n@j7QӉGI Iuimp1 M9IeXJ%rG#=#yBrz}O;rhq6Zcu)A)!VǾ< EN$j큏^ &9v )+UPjX[VL*Ag!e 6Տ=fݏ͉KbƘ+ɩSD:*~Ggt!-`V7;b]lHu .*;iUFb7.<< &) ⪦]Lt?o6]1?sᙌ.$v޶  -]Oǿhg:VZ tOYG~7<=X׽α[8xIz8-•l4<<PTx ~fP>+Erm>T)fUڪgd/H A-ٷob%ZڑhRt.^ɔC*ScŅ(3Vyg%"kVd7S[7R7-[s3û#8ʐxn#.bcy& 5SVz9t-w ~Cx\%]Dz~uaΣ(BW!6#בe Mɏ]uΕr11P-u1HyrCXpѱKa4New۞2Q"hS~3tewKf{fX "][r;-(y$oe$n ~Zi~VP! Sx$4Vm95 E堵A9K/3E_y)OMpS."֎Ys,#L {]6C2U7{!fog&kz@_R1cPF~x0 0BOT2UMG( pIW: akር Pf$NQݣ%NiiqnS1k}vY>>wn%qί=N(~iK8d_E6cA,y;t@xbi $9lϿ6#PCk!)ޘ@ PPe  DY8ܔ RsRF0,-DF%}p *L啓8B2]zl 9R{-iV' Sƅ[ɱQuѵ_f_J˱ AI/8BXDRL;p Rwm=1EvetIb$=zY:">rd c@|uFS62V˚akWQacK&$hLPW m%F_ہpBᤉ[ Q $YVpp'gD3$盧ĸ %.JQ . Bb ݴ.`x(dX%T=D+d=wguH~Ii(9v1}D Ņ77'ws2)"6+nlR.5BW,iQu]K9pYul`'7 u oh=EJBW)3x֫=+&} SKGKQyuQSúץQs_⭢.KSkB;a% 2knz[t*אo[DߥwE.b@Éי}~ ~kyt[´{w8uݡNun e[?ʿj t M Mb{ȯ+\i8 Gs{,$Daw}&AͧzNF(?3bѻ `*`&j+3' ˪[*f|jRgǣ}KtJ|b ;p:EDl;!/F.5+M@^%>ʽ"HV o=IsmѬ<iJb+Xl{Է-Q #e(װ>jV{VpAWQ?l^_k\F?89䳜M\ I^MI,0GU0*PF9"uB2udU3X $mt! % /D-yLH吒%ljWB3xz#e L/!tVM-c0m: ߲amD(xQqs+6KⳚO>IN 0W;9,>dϱT|&BY ?##P WuNM~sHW;l՗OD;K;E*[7;)vh5cqV= ufcO Ξ/Z?.xn^%5 /N7\h@gcPw]:B@F@+KLȒ֋[JES5hY]̹|iYtLB2ZSpolqYxt{K<ٛ)gI~1&ϼQ"9, J<3_C1_s-"˒Q[*WL ^Y83:'cF|%u\!)--__Vs.E?ӢkU<@Sx3}ǜK+CdLsϫsU {2i)1J_ Mwc]gjpd,5k>jy}p+8dO%jgN(ۮ씽 Bґ(bR zRnGfG꘲1JwP"~ y]a Ԋ# uFWd?׊nAYHS@Od5ɠk4$7+ Gs2%GhY_7I3p - JR8Ky"-N;y fXkAN6F G{䧪fV;AR0uCvp)*}RaSsgV=!@l/*vy觷 3QR_NH8q+wh%<>*׮h@/ QtNP%yyl2DD zJmfA )DV#u(I - d#Y\c=*L)c(}0a!ipZ ̷h=-R, m\rL<$i>o QT\"KSFH,n qb`È9J$W\#HtӫV 4QS=˼gb,[-EN"XIo}LY{Y'p/hјQ0o^ai #3q@ d~sOL5+[3:pTEy%7ͳ^01d kec:gRȆIUH3*6!;%+Z15QIz/v/jR旹5 \ʆP W784{f (]>5?RY#M!<%yrGx&/ZZYB[4݀ģU:}@$r9b!?@=<%(mb]9鈔-F0Lܲjya,u\L|67ui?Vha,i;v6`Z7ze ~=Is'E4'ۃ )왌HRlʀf@PUwP A 9AmO]D?sK}hа! 01tEUvdg|闷'vmE>ag]Ut 8/Vu:X=(5!ǰ'ůoɉ,l`ֵo&FZfN4 !z5`4gQ~{(/rtxciJ*UX&+NQ'8O<8o_F}ᅀA$sfձlڟˬ4iJ:5R`v lwLxذbapיmGJ ]GzF2b`iq]C#rs]FtWB;ɱq2?eNga-Mn0 y:jgٰ|mAJ9}a|,%fgFt8X~-$%x/D0U~u$Khx 2--#wTabFM9WXadYm亷EOﱪ=T<=:Eoc]ӫҡELf`ZuzZ݄cFcOs/F2^"xI>Oe:>.ԭvty;d\v<(4m-l$# ӷN)hCtÛ(/_.p *%Y, 0R|A ~[vzzpw3]d r5:s˷tbmy؎dft#grq* #v:=7my7> r2]XZoe$Q Jk^_y:9)b:W)C(Ĉ~ÇMtjV*dii&TyLb, D{*5^[pʪH4pKIv( 3$0ƴ>Wl'vHSOgyKnۢlFUzpCӂ_6|s *jI*\K(䰙S}mNŶ!\6WZHJ GNO$2}ZI.stCg dGy%Tۏ,wA_H]'+~g*+-G,hJ,L[-n=b c <1_wQ)825_2qe#7wH4r ݢKE㿪B4kpTSv8뀈^LIV(*H>g|ZBߛ B[@ %:35i]_5URf , MT!My~RbL(1dZSgk:W#NTtۤWf OIJPBcpco`\!Lqן_jSAM%h3+߮HB58%C.CY@O \#Un$g~$p}.¡{5(v=$wy_;C\)'Y{f .[UAAb+>Lcr(xIOv1c[$~ӶdӤF%I7U>5ѵ&rk#% ۰ ŏa(nZIL,%KaIuNSV]{NiOw&>LAcq3`LVRB.1k*MՌe'Z5?T=x4a͎GnQ܈q;lR3%*,*/Sv$ƀ ܦb/ʯo@kTdV1inD*R,-ۚTr'js.txEPlPCU-K^ ~qKiO_ܲ6M cy7{r+zNT)94ʇCfbʋ &~F1k*_g`yZp3(;;%9PD54Xǫ)զŐy@78 J}r 7+FeXzZŝ{e6]+V@w`i|㬥"tGONf*dwqssYXV νhoWu2}HRSYWtn;^P@BXÚSZ%<#D;-h5"y3Ae{s\zmf QXc N`|1sM8\PLCe>ǀyŖtc0l=O({;$L}\27 ԼT1s֬';9v*̍*9hpF1zlk0,T\9Thƚ"HחG(7QqYv"A7I(%^1Avc^2#eD ZQ '7q 5ZY]y]òE!4`lbB])M "KG+dQ6; LdCfacp<))DS )j*źicxsjxiiŤg_훵u#._>39%䎷*{V0!+>7,ŔՔ}Ւ> 2w4~ _BvK3c4s84N08cR퀣C:{%i)q.# Uգ0$yQ#2l "gn\UFw)'ylV-u_17xyO6̟oյQ-@46Hr7k bD)ްSAG,akZv i_yyu!^6U!KJa5v , 8ܻaؾ -?" ܋+FJeJ&L "N0HʣOA]M3 ٲ0qbfu !@{h7.{OK]C 嘃v (Y5$`EG o_Лq&A q: jأFr[)΍KH,4D1YVw^3RJageBD<\:9f#c q=-lJ uܠ&NJqYh!P~JQs™h(\Y*N^(Y,ePF;l/. PV_>2z)QrD̏^_L>h3tc-o?w̯ &@>RԈ昕S-8ϛHTj)Ja!M{t/ "a UbǙgxVo@(,7?:nIq =rwߤ(BewyMhC>_Έa.x=u]Nn.(d'y`AP8w:Ąe8dKݙOt-2y|=-S󤈈df&ވc/>:(N+ӛzqx}".pU,A#p'^`W]ςEPthn1HA09fZJqN؆)9޳ [Yv(Us#C0,  픖,>pғ˼)U0S* <4 mhĚٯo:Spp.-5B~߼%n9 k.q퀏*N)kd^ 4.0ۋIubBIhڧ[D=!4]YIU$ld>$K8@{[\(].6Zݮ`+ >tݐM8b?z , S7)s` /yNxę(2g{/u8u֦fz?RM:'Y4v0p!l5t(GkkMyAwķgȗN8(5Q43Kh)4`s@0ِti\|}ƗA#2kA4qRF¯kr݀-Jw&A4Uc%YJ|KeVi3WkT?'7&]',wU^m̬>E:ɯI#%y)15">WvC} d@F'Dgy {0;@tAf#Q Qb2/Rݠ=񉕽&WP𰆋R$x U|c'&*_ :Lu[{ {x 5X}~}mLVk4gx*O OW4^xkRoj"[ubl;ttʳS5VP%fu+BV֖ɍ jݠdOp3 9u'_*Egh?0MYbhGzV)'YR`R ;B7̖)ğEWm#'n "+.tڕV{ &3# /3PyeayA՛ ѧkUk }d,LH  hX/Vk0Н*hw+J|#cERFpL$9N6A{av<”q(\Wܲ^bB3,859g+8gRNg&>Mˎ,m uVP>cA\2ȦWG/c/v;%c"{;~3԰ksZdXQfiHj#/nzMbۉpi]=HJ-ZrX㔗B8>'i PدergNJk{PA`Nb \Cˉ>_!.YpNk (kW_G&Uh祜)&A)i^嶺ÂQ5c G)ۂI Egs|g{eDV|ٓ(u/F~ @HhϷWE*/na=:;Qn\ܶI]w饚6_b /Tf[zHVJՁX4^)w-)hgؕn@6?Ysc sG 7ޛXPu7#bu9nn*I X#s ,CnvH7!姱oCVa[p MA%\adÊC HhQmW 6ay`ucwBfqFZ["\:F8HNwwb!7[ySf{ C"M  vSp󊘹$wu.XeCM%XYLJ|pG~ <-%FwkT04zԘZh8q4r̛ih}/^:SmG9Έ5nXvzK۹܀u.13æEl=;x Bs6bSCuReE3e>X)icr{h5OKHQG!zng9L.Vb6^?A|Udu+MI8i ~MBE .XkՏ.:e$tL3u|yQ'c`CrlotB>Z|b/ÓDg ;J: fxnR)Y7ƲApiZZ񬂺ANɃ*p5peL?f›m+~O&wT ĀaKإLL_ >v:SJC{.vzQ$ A9:*}dL2Ĩ<Os,U̵ܐ8hǐ/}e x͞ML,M;-hvgz3@@&6 4,|jӠsm-!"b$݆Ug D/Ĕ7Pq[ )mXƵl j1AJД +WVVj^%69?r)_Ѭ&sӶ"yQfFck&L@,Dgy۵ڎxCT<J;Lm(cs<@I?-Uk$!b4̽ A"6! 9KF3M6@ ӏMSNelPBt)_s`aJ%JOM$7Zmij>:ȩ$=\.e hxb4{`w&%Vq|,GkF\ Pc+  ? t,yL (1sڻ JRڋz0@o5=[A˲ (pI./~a1 1aC~2~㛘") VB} 'e5Bg]wCne[ˬmRZuS1 a$+_|O2$L%:΋!vAŊ8ܥbLmѬY-T"qXYQ2q?.H+}*RLkmr:>h*]2Ŷ"EFf;_8FJ9F'|8&~yi`Q揭ʱatH*"ܦ}?5wv|bA2QPi{k-&6jW0Ku$櫙ҫfP ٧Vboa_ (D>ȕ\* D n1JWNk HOO_]fjtuk-0ۻ-Ĺ*5?Ai:o?[WA:=4W/Tq SsuIXs80U`aFOWOLUٿ=kTLXMh m OO)Jq!vcf"sc¿SFT@éu2oh>ɻ5Y68h! !i32mZ':8^ɐ p#Zewe˟^O, U:N:TȕHыhdzCEv8F!is%j a6# Nvj!۔ukl n(tEbl9uˊf [I^D܌/V$p5?^ټK"MЍ|,+|36hWr龻#3xp\n=8Qx)ԶFGQa~L[m08ɦOA5m(DyIeҊ+aWJs_ہGi? kVtD$) 4V0ŭ8hE怰Efpp9b_5<+_0Pm+s$Р V2"ȯ$f@T@7$ ܒm9~^jZOܡw $!+Df~p a&- «AVi5AFlԁ/~qE³{ L 05W{~X?AZHzWcȆ/ph>hnry9JoiMzgQSSKG㗱T |Ha!To&+d{q' D(yf|) &w.p4G aL=0ݾGbɱsd< pvW)4@Ŋb5߷~h^YIɾ ԎVwɚ Sx~G~2PIUj_y_U1/Iӓ+֖f! :t(B,ҦdLH» [!=vܳv%h:'Θo(Fchc\( s8,EjjYk̯ * ~XkMr@8}M-. Fe<Wmq])wbߘmTj+{dY+XPPλO%ى+)abQ@6 ֙kYXya0?y%EGO*. ԢzMуV@ ex*0'&BT\, Y2N_jUeў|"e!{H#n5k4[nrMCiU누rl'OA w.ȓ,>d^.蜏 dBЮHwI0oDI H't[R050o{mݱ%\V=woR&Å.ݚ狡FӚBl(GzBGuok% 5Q[7嘓f[^ީ Xɪ%_0*7~ztX;%!X%2ͰeN( r24 د5rfwޙnHW/O$օ5%V1Dيd!n?;4hUPBoBuv@5JL0'i@F7ɶc=?3Ȇ'--Q>LsǛW8cR gÚ[5o)ψ X*or2U>T\II7R,Zc~8Y*ʿyno;'uzaK+s8hc QdJݕcS;R)4>ŭȾUcȝG Wx}`4 bIe3`N3@;!Tqǭ 'FĤ[*[UE:pa~8 R̬̹h]Xr Pcl8%lvap(:lW<-R\;y=_*y\5E "PNE\>͸GG5!ZyIK爵*g3Wg̔Y:-te6oHLIݱϙ $Va1nEGk7ъ,,ׅI*]CE7Q)pՍPߠ2WɋYnJU_m`bסmz0(?|lۖ:ʶ+x ˒k8 `RAe>HeKx B@4'=->93 U8 sg,}%d}X3K2gqz0<- e)7dG);W)Uޑ~3"$`$&^br`3oJy1>Ļazhe=5lh{Ql).On<, pK'EWZgm u^KK]ͳUMNH|7R)3'o^q0YiF/푙#I~Vܙ禜4U}7"LHHP>28 wa?ix&uF[OSK2^똍Gcyߍ9 C޹Ҩ 3YA&tܺ;dHPto<͓O悖ɑtq1vDGP]b"V*sB>8=bN􈇈x.PR{߆x/$VNh]ۘ0B2*]5H)At < 3#W&S2b[PgT P]5z|0iĄV˵}\hK!3hr:')}#QqxQwBi )tUcoHrUXkY'Ni}?4P/=67Z LŻk_jnʼc'F?u ȆGI~q e?Qӆ{Nm Ik| ab)(]0Rve@z]+PTbըDAwS}b@1]+EƼ`, n>tҮH,(7(g&T#$V!G&;O svnlN5.TbБr vB'%$Tf-o- eRCCn n:TVٳuGDv5x|hgC)Hbggx_Jt7|:SODs:ȹmh#j'_[Q΃݂O@vL s(EU55'B4I$?,3H*2Ҙf˅c'k;NT~ǂnG6/ȡ_4}zJN~^<鄽`y5'F)J\44 dc5oX,^aŜ/O~d+{$@H\knK-k$CT{ Fq7N^[  (_+8QXjcJZel{_7Ұs%x8wʯ4 Q&L}I o$kT>gU{ },Km>Pw3Dc%S{kuy@vr={G~05oPq6ox>^P]MhHl(z[\U *_/SEg mmd1li8ʥk ,6m5%!> =H 5~6<.rC‚8:vYGY(kVWU+B!0m_g= 4+Et1Xvd&F)pKkdީЭrP+#ay$7ʐ,,d)Dla|G] (m (AspT;U~P{+&˨#\w|@U[$~Ld\ 3׵ʗy1V!.4ab@hFg%P7q澘a9D6²)׏IUq^eC;m*≾4m>jS"M1ә ۍpeXaֹ]CU" &A狅Hzu)rŒ'XNę5NLb _i1}äy 6d˥^GC> z,7+"vk儶%YЈ e*ىr4^iJ# *zLZͅ ayzl zҢ JG O҈xr  %rb#Yˉj &\`@ w0TC|nk-K;ӵ]iO/<`D| .BϤ6ٱf2˦nC{6}icԓMbhC%|OCZ:st\\3O={!6կ3#[+DzHU GM<^l5yD5@^}(IDQeJM7ͫz:M]?HJhQxFXcX5E q^,QS Y4PZt 0N+^\ $`\:C`fQdd =7Ãb#fHL%el.wNXSwuYl8B[cCHk"%E'W+,FKW~dꜢso[Te{%~ vdCKs{? {{{[&&t n/Y!ˏBpz/`SCyw{\d4AwW~U(UN^t,DLvL}6(jf/wP^)R H`! .[FeaBq>L0k1CQ^ (ZNJ|Ѯk0[OIW 4O;L7#t/ŧ~S +4HH%t2w's|яێ~LϿttWCI St̒f ˛*;йskĻXc?Nb.6E] .J s32O [N/RH%f%eMl+0A`SsAlb1 VbX[VRBHnj)؈.@ &W"iדּsp'w>欳hΣGMY璎tcSoȞ.wp DiO"w@sOf@։xnj)$3}Fr\Qe2Ҏ+9 jo[1+O߽wUIbaSC:{/( 0Zuut_:ϠM7[Lq!h 7s:V%g)j^6%yT J%GkC? %(LsCƈF9WţVqL}' F1~n_r?,$\ZŊR≏E7OKzקGm?~mAW=:~{5>:8>_qr$ã1G7}_m &GƔ+Nɒ h)1zQ<{v l4bpVJK̥0Y RJ/!g|b{pxy˵XbE\Fplr,x (O]WF{G idQ230HnQ-ŌqU-]=l,2e Fn Yz,`J1ѨlҗC8fk˛rZR! ,8kCiiҦlz˻HiSD|ܠxz,aԱ$7dM>X@ndOsr~hdWl3?_s3|ՃMФ_Kx?ܠYܤi} ԊHEy>/$ Lqzm{as$xu]륓SH½P9- n& ={(tT7N }qYU3uUS-|s "GRil {W(Ɠ _Gs͌˳IR WlXUUwf}'{#- ފNbBhOTb:IC{HCU~vt(h-ߍMMn ]o >~UlfW~qQ0707010000000d000081a400000000000000000000000165ca02a6000051c8000000000000000000000000000000000000002500000000./usr/share/man/uk/man5/sssd-ad.5.gz{sǕ'?>Ez $EI{uB"-1" C(t5ᮆ$nH РWoYYoĺ Wh|瑙' $ m& #+'wKQgwXim8Ǘ; XFo[SwNo[xx]?R/lEd1Ztұx~Fx>୤<|F~KdZ#IFx)]huSZYSܩf qG`3#gFϼy'n. ?Dw{ÛjHu5nu'[&O]zBsQOSSoG/ϿtNySq/3?gdLDKv'7kQY;'G#]OOՒzQa/_:?O/z{7<^کj9;sx>TG"zJtx6-zg \aMlpׇpz밫MYx^A=Y&}1CPS|ST+ 6gDICMzߩܰ/}sM=/ >9T}F(l55 f,)G>dV. m<2}QïIJ&W&/2tIPK-sT4p>5:=pjb28՜&;z1^Z7ף_č4jXY xHmkΡW_Y'5p)'6mrכ1K.]jvюj',08+UxSyHQËW[*/SdFLC܄4\62֛' 2{'j%;Җm5bdkq5ߐXA_M\ǝ TK [pO|VpUAehZPƟ7<=F#o۪ׄy<gO~^!n7T2RZ5.$3svaF:~v)|W=Mž< ?ܚ* Wl:F-z.s,bw\Kǯ},S=N><z*d3:?1:3U6u@ZjeXm}|ORџ4upxq#L]N;FĊ.q9 o]Dڞ~ц-U|*(PN>°zt47=R[=^lc9yO읹=CHe'<7{o3˿:tm:tQ>DXtNSD*d\o:®"Uڳ+tHafyѦ\e ȡNuubJx_wƳu`X## رK^z \D3ݷe}p" ☓H׸ n>tuM`BMs X?Jhr00cGȸ?W}2O^ޔ#̾UC%n4P tfB8N~R^VQ0+k3b\oFjsClO4&/0-c>j'늼a#g:@Ё8W ΃@Wj#Ӝ`CS|E?^.:~ڏyuLUW àE[+!R\cEwԗ{y.'7.^VJzs ͂Jt4'7 xTm-.iNR"vV:/EaшV;plupd5Jz \c&J!j i!ڭEt95&>mV=郸ހ<>Gx<;߹zrI. Dsx^ͶŝN>IRO5`܁Qa٤т'YV5nj{iù %cuEǴqx#ڜ}QVseݹmF2c^6q#K>ԍm_tCEޢ  F^ƌ!Lܗ\)M6VgKJP~H}|4@[C"ډ/%pU] YAKFXD|)Y3f7j 6uǴؽ<ѿη ޥзJS{|  z=~ ZA/VCJS_ni 5wx#"x%=k|RZ"/߲w6OqBxGv͖(Pln znɚE%"l_;$gwDZzJ;Xtc/#B)npFV&BdoɺmBRT0z>ىhaK[A36Zg[Q^֡g*rf^ύ0 W8L- 9N7uMC$j4#hCk;@5gDZjd J:9]=wG})Ɲ<?,+%W$ N>EMw5qWL?aH7!Y[`Lg:h }Jsa &Ki`/cC3"(JkNϒ}1Ljp0ɳXEvMi x5Ⱥ%}1v&HGֶBA7P<+ϣc촚絗GߧO=wAyO1wƌd&ݑ~&4;u#x[1+6-h٢ .Z(vbtAK(֘@.#dmlNep_Qd.E@oWJb4r-+g!;$$ˑ 2kAΥHKdQɅjZd0NܦUOL-wkE>Vy]'>=6.&IqmL+ۭ奴Rš`bgXX)53:9p2w^NM5үWΖsMU4y)C*&i&zťYfwRLqa"`ǒH_ Xs,92d- ZWǏ9ɞjYfLϡ CfOց38z+!d9ٸwFk~%'΢PE|r[fҗ3M)ӎBŜ_.წZ2r\]:a6tSV1*nXj:(N%뛝SpX๖/1_=!~rz"&Eͦ>- 'g8ej{tkX#G/jvڭ9ѯ#L X.Y&3{zQy1.Ax T~D4 v-7}7!fߜe-"@@| Jr=@ 0YI0`LhmOd 6/;::Ðu\צ%8k$+&Wfn.g܉p~ w&T˜)i1^rV9=q_7a~IaZzmt}-&'8^Y(FM}N^8wLzb)鮐=9=|zz3ꟗ_m8b{(~g(M`'^{P)UYOd+g#:Gxs@CLzBL5lq%uFPE*EֹF8L >K%iP;&V+RԌlvaNtvZϨ4s"Q8r$񲇸n v.{d21zKY8V\9wjP=șG.z>酟eGtJNANt)>=p>9uߟHX?դdHЮhOCpZTʐL\|3\r? zy_Zj\StըW=E<e9qo^2X4WAD]&\OcߤZnS >! .saJ"_vs)䗴;ZѲ@V9@cOE.kJk6<n5S?gfiΫ: Ó#gň(;,UH\x}NG\Sd(HyF%sS\]7*^%>> V?ST5g0t #fF 2?$&[ci$wXmk`a]{;\ UX-XqD5]]J;dP߼">_Ҡ&:D=9p΍B<(C]csC+I/nM(2obr}@4U>PhcOԯBi&ϵ.h9CD͊;y55Mf6wr CNhSYl=%)?vPe'RuXz`:%Us(:Out$v!MgI4ܬBfJ|Q3{9Nj9 b˜^{WR㵱g`L'M^8!47LmÜj#O:'cC'EdV9F#8d` 97+ ==`OCM]5ly+XGW0@7`#]ӝlRFx=E:/#~  220ꝙZҼV6\P! AwbD8A W;9Pj/'Oȝ^*P5^i7ϊ%{=h^gp/8>*7CތgFf2IXt.xEd*ҧrȨ;p`\"鹪_*Tbrޅ4Z]C"̍7綸`le8U)!.u be/D^e=[j{7Q]7֙؇I_%}ŵV <ؤ?Ҟ AY-fS hhQQNMčl루 74J\ES!ևFK8 rP^5neR8Ⱥ,4iv򇴖rE_};@Q}RTQ=;g\"\$Vʍ3Li뙖ԉjlBV2A#l35lXר2,@ZݮIW7s G\"b+b!kr  U!JD,oxt3d bP vEEMFNs4B [4雲M Qsyn?c<%Tpsy# -"-[К1/#Z))y{%蛝T|+[;Gr%BĶζ=7~v[.[͉By%IoXAQXp51r`ݳrB˫t _. `.j^[^*t=r*"]Fv&$rI(# q -fJ92g y캍032 o'UqVWw)ҙ:crq .NwOOMH _3mHY512Qoԧ 枛m i}%X13-\OUIQԛDgd:luʼUKbfX^MCv5@*xoڐzswzjø\X[j$pVJ;qsv:=DZGS;_[7R[ =a)N[ .N5>߯- GNdNbԴv.7k?s,: :lUOyaaib[gzq t >?,ޘv>&7-cmN*dž3 $+ޜcw_`dA~MyOr/3~u@.7xVlDZ'VzDi&e+.veڒ5y r6H'#DѾёbg HDQ2wC¶ < 6w1 VO,uW{=AvH!ťehhaZ>d;d 9YZef[::KFVbڂ1 `7?f/EVlܩ.1lH^~a_}q׌{e7jQcXr'?2Y'/:AnT%T8Q0l ٞ)G0 ͂j[F܂g6 -[" v-Vt\H$7\2}u(%~M:kO=a 6g-/l 1 ?:_./%aglq;Ql{h+ETǎ`nrP"\a9Wu2͜hF宨 %G?Bn9_\VG|'bIچxNl LPF MSsߢ~:=l<#h,[_Z X r!,\ ¸G/‘m~3=|$NȨZIkˊZTǒ2#T/ D?jYKFg^н"j^H1^U82M8.liy.)/g\{8܀1Hk̲Bh^gȭæ<]l-J6-g@IޕwʊD詖nj gX"߸9+[IڰRyDڑ=**(p|9Kcmm|CH$RV 2q W"[MU;]1ty]өԨd(;gs|7fZKHE*W`Ӗ7ovzhJxL,=6 IE7q,iwG,oQ Ő D$M(9嶌h;1B%ϪyS-bSm,'A-P1~V0=,f۹m5]vpo:jh{ثF3/GXB{pO$KNIZ Bs/Pق6$ZW8֗Uذ{_wQ6BٙynhMHFL cOlS7 |]7Y6Bg斪~XǢk9 -/hI+Q/L/e)J%=*sftkqe|Fk6nDoƝbg_9I*X4݉OF}hĉ:gL }l g ;$E]~rg|P 06fuQ㓗FޚzQOɫ/u?}W:mpHi:g.uoX ܴ`uNlftApz3Amzs+ +=*?P7cϔ}CI TnGgrg; I*50gv:^-N#*Lf1/w|WPV H8jM#PS%֥p7ܔ̰:7]:Y%z"##wublu9ظr:mѡ:=ϻNm</!\\R4#".{&^$[ vp-u.ˀV+5D`;e-.iU.eEvOɈ{_U}.uH}?~Mg߿Q޿«D;}W5}E4{wm֟ԗg޸͟ $vq;Q Z9]B(Rҹc,of7*#+ v%rͨ!yh|y|Vؒ]5?ڏc^K>ioXSb&&&['iȢF?L}M@3i1J>-zp,?$٤JNgI_*#":ti4x1&$5rM6ᎃxk^g=GjѶ&i`'D$A_b0cAVi6J O 1丢JfQ#Q)uB}".A0o =G~Ֆ.RZ~ 1jUC&tn) `*@qFr A4So4Q:y\ʆ2h W[WHBafU,?I׮]k֚)Uj_W ȍ&O =Z]jv.y̐oɼGxuz]C_j%4 wy2-7қ6qVg~ȖMԠ-̄H`9=FtzMֺ6QR=ǤO &&JiCLx^aUUE.ouvBA9Fo_r CW |@DxB]mΪ>ЧU%FNu9/Vs 9NQ$F"ng϶ni4M$mځIS,hasjW*(1=ξ2:׶Mޟ`J0#".q?r`@-f?¢v|LDJ2߇RpǶ禦w(Rh]m#j}I?lKXئmޔt"}Zv HWXQx}L:\;IA\a:}k;Q]R0ލ,Z#MlΑ ^9gM&mLTm!PԔS-31RSӒ|JKz btmE;cP2`$ 2 3;s QR6܅dyQ^H5vf:O"&Ƣ:^޵Wj#W&P],PLj LyBB5Q0I_B򝅸Uo+\Xo\Xb k$E qs6ZY)/VDqZA'n IJT@T&3qW<J{?y7Ur|ي3eu@`6n)!$3m)=dR ^)װn97&jj7{m= ]|VoG) `ϭ: Ziocv ZVӵ^lUpM0ܿCEjS`5'> kvNVFdօ]X/E1=&Tb®_B[2\u?%? 9>d.)RYD+#7Y $:mpF9y2V [K&@ZuG"wX2ӳ/zK7b2 5 l彬ȮTa7~R J`+3XSRk4jסVq4J!gеF+!O^1#ˏ6^JWJ x"09پ8<8ljRl]%3 ŤVȐV_G"OH㜊KڅeBIЭFCC c޵=>Ox3WlQ!3 3#N@HkT;e8tO[G<\w/ɇA[Պ(@{G;' a/ ep6լ/FR|~hz8zWjެ֗FtYZп}ѻ(l K `FBd|ߐO]a]i[,^m6ջ8A%df3lQG6O hҼŘ7FS~) 6wȟ:&}r>Ps z4?(ViA c G>N䡣##R[%, >E iq`;HS;J: Ģb YRe1@[x{u "V"YE5f9%K&q':T^I?% _cB׋oYR&dX}%+3e'Ïqn OLJ6_šmAEbv <ƝC}`L(C; qGҲA22%Nbmg<.%lZ@Y F]s*7daDuѯi^h-|׃.to{ 5./3h'qcvYKKs8m,&@d)ɜZF&s9:U ' Z--9' R\NhP2U';7 m\ѵt- ȩ(JyX1U_o" zgg dChjbiNFh7u#a(s%q& Z4w?"R=8*R׎\oUz(CvLpW;( Bn3xNQԿK5.ny2%6i X2W}1v|E=jD#&htM$IJ!b6n)J9}uaQAA9]I!-Wɗ'EdFLDKʘUy|-Ӹո&7r<9.&0^0@7Wsh8K1`atVR]} dT\n&&1Z+E 8CɰKޝb $tvs_&HA;W_ZIٓ E8l0bA(b '3N%ZonAy>u(gO;fP7)lǯEb|%<*tJnM~p.7wi} ^0w_M U|9+aɞ Kv]Ӓ-_ߢZ kW|xÑyvn s 4]Y(^@q9j $>u F"O8[&CSQVxυf *PԎ-@(=F.L(; =hfzxPh_d15ii=y {-p@eZgD62Ȧ[lA]p)Sirkݰ8Jĩ16V?'^`s:32>i_m}zc8=>K,,`yFioVqʑ|.p~S5{!Ն+Ir^kG֗*x$&>[<5X-v3LF%e+j4?nς=!>E{]m]ƀ[tr攅dQ3bu$[o/M$`]3 @A;hDe|8c;^s߈am](Hd=Y:NdYgPPM?2?R0S0M, xXbI, :|FFM0p\Y YD!%'䭫hMYi+'%/&*jd+=lEW)#%xADBf\-a5Ҝ}gXM3W s!QT$m5>Hڜ :ө/&1`B6P1B{Vtr@gA:}QF+ocm ENeӕ%!GGGmRf7խ}4 _ֺr_=> U96OeMڃ*A.](>9_wLgae}޶5u˒J w_ej0:ts*SjAu~Eb4{eJGدHJ=]3T%Sɘ3Ovu,ǫjtg9corf')Ns\/k ~depV=kQkR!7OôT]zoFg^}M>ā&!) U3h΢sOA2oc˖J-_7lmS.^Ba( g3W8`[1 TTrp[5O8wgE3qwN@uE{O+ٽ[.//&mlMo6m;70j'8w1ѩZR-B7C_K2 퇶Lam'B0o 0[. tz-ps.9_93/MJ ',|s&T "0QV V*Djc)wgV9/A-9LyD =۷&AI3|zM. FΕ'mŅCG྇B#:2Q-^#2h*#йV~K˩SH?蹽a1nZ;d+Sθ Yg{| O8>I*ZK,';𙡥.7'tc`G~ĜJ~Iܵ!s&-wy- ]XL!y<Y7+VtLI_⇨9T3fJY1>U2s#o:,O.Mvd8SҌXk /z RuWٰ+xX1_,4H=-B_V>2.6s~TC,:VaƭK& .NoG΀b/f o3PGGde A{fP!y`s.DW9neUF:PC7Ae|Vf{ʎ]ttftf֏IѲ~1 ]cET<nؠϑ)"݀)p)2GJNa7Gtgc}ݙoz 4#*k7ߐ0.vbK[6,320 Vg53]|̥˪N5\ƭ=*!,ڕ(tSzkz._!P=1+5A UF?B[!sE ݵ=i% Ρ6 HյCL#nHOZ1Q `XvÄ͟,0Iqrˍ#m0%fs( ]9Zs~sS tꃭu:Shtz)\2#sqKP KTrY: K2twONc9bWw9xY1zmZ\;e[>dw2QƔ斉:DUJot]xh d,bKԫ )Xo֛5}.4B=ZKz K>Nj">7lōFwZvv\; QڨW_v+ެ8[p[zU}}8 Q\qRθiJ*Y±fӔҙT$JTo\8T٥*6D)j&CQI ]׃ϭҷ\F+ ͷ}ֻ5²ҁ3KwƉaA6V!r2˘tij2]-\W$U7ǵr2^C搳G{JA_]zc/L C]acծ`9 os5N؛'0 /~GTHcV#W]L#9W,WPn]C"ݍ/?077ɫ!zNiU3I1=և!xE]vUY2,M\O'n_0TgШMIrJl8ðFM%z?7RGorѸ[mOfKu6^-G37/J|J>^]SRC&|P6njU#q9害E3΂";׆NDXŒVQ;ٙ}gvIi'gM!\T2Nvv_(|Iƌ9'0 rNyK 5n[xiQ`Õ۪#~/`yk_.hDȖ~rf9m9+2A}~[wQS= $r}݅e,}5SOJE'/4 eRWf"KY{jUF&VYOɮ^ܽ_b:>\oе70"qKw޾2qq꟨ W&.qʛo9qa|Dw/)4ƅ .9>u'iWGKS/[$Uب3-{wI-{<~y~kxkťF [? Bs^ϙ>u61cTJB5/߹z{RA  =J$M KqŁ*D݆uFj4;uЪ Bx&x[40y/`&{6`"G氷M?.Q+\a2U;~*CF/r(*r>Վ>pcX.h3s*K0}Vޠƾ#?CV^ӗ~#!7 YZ\#n̈q&.%zd Ϸœk/IrR{mADz$1ݫ;/08Z/{̥~@d\"Sn@Mθg !xWf=}'^D+PNB3e֜zY>,M$ >Wv*\~U ?+Ra\!P9̼6 "p˝$~={-^/Kqe>#]2)Wo5(6WoλpSj|# ixofSyI ,xCvRcy.`qekKR{?"" 9UkSs E%hj/UEh7ZI;0\H4D U5}LLTB,TSFx:._ORfKS/A&[n>EqKh3p'zV5=X[ikzH^NG>7ka҈F|lv?׆kb܌瓑妒i'n1U10L I$]^AYbZkWӨ϶j̙g_yT.}sML$07070100000000000000000000000000000000000000010000000000000000000000000000000000000000000000000000000b00000000TRAILER!!!zo0 #L+h] Wh3LA!?y Ċ$z{5 YZ