sssd-kcm-2.5.2-1.el8 >  A `2U]Td>{cY";@MʋmͅFӒcH{! zK@Oq/׳AvW ǣMqV.~Oe:`i ,ZnLY\Ny"0X7.utf{wRwWUOD8gCʆ.= ՙP u_wtZѱ?5QONE99tciⳔM?!ƃ@wKÎ͊_Ak:tî+{=+e9a145fe340cbe796de01616545078616131ec35e9cc2d510de7fc11f341002d5e6125da2bbac4ecfc5ec4ede482a04060e8b789`2U]M°7e*I("Uڄ :>1';- ͉t7@TmQUtlc̪psB8UŎ:\7ĘSSm?DKLG~wY%u{pQLM\O55FNO%M]^Z%/l.m}xNX ŷODh~el-|9(w/ ߮vn Q­F^?*J=alٞDá(& ?eG5?h5bj9&̹6:X:pBp?od   B 'DJRgx   , { cL9 09{9(89T:c>f?f@fGfHfIg8XgLYg\\g]g^h bidjejfjljtkukTvkwn xnHynIooooCsssd-kcm2.5.21.el8An implementation of a Kerberos KCM serverAn implementation of a Kerberos KCM server. Use this package if you want to use the KCM: Kerberos credentials cache.`ppc64le-02.mbox.centos.org |CentOSCentOSGPLv3+CentOS Buildsys Applications/Systemhttps://github.com/SSSD/sssdlinuxppc64le if [ $1 -eq 1 ] ; then # Initial installation systemctl --no-reload preset sssd-kcm.socket &>/dev/null || : fi if [ $1 -eq 0 ] ; then # Package removal, not upgrade systemctl --no-reload disable --now sssd-kcm.socket &>/dev/null || : fi if [ $1 -ge 1 ] ; then # Package upgrade, not uninstall systemctl try-restart sssd-kcm.socket &>/dev/null || : fi if [ $1 -ge 1 ] ; then # Package upgrade, not uninstall systemctl try-restart sssd-kcm.service &>/dev/null || : fi,%4zځAAA큤A큤`Y``````Y`Y`^`^`N`N`N`U`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../../../../usr/lib64/sssd/libsss_secrets.so../../../../usr/libexec/sssd/sssd_kcmrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootsssd-2.5.2-1.el8.src.rpmconfig(sssd-kcm)libsss_secrets.so()(64bit)sssd-kcmsssd-kcm(ppc-64) @@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@    @/bin/sh/bin/sh/bin/shconfig(sssd-kcm)libbasicobjects.so.0()(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.17)(64bit)libc.so.6(GLIBC_2.28)(64bit)libcollection.so.4()(64bit)libcom_err.so.2()(64bit)libcrypto.so.1.1()(64bit)libdbus-1.so.3()(64bit)libdhash.so.1()(64bit)libdhash.so.1(DHASH_0.4.3)(64bit)libdl.so.2()(64bit)libdl.so.2(GLIBC_2.17)(64bit)libglib-2.0.so.0()(64bit)libini_config.so.5()(64bit)libjansson.so.4()(64bit)libk5crypto.so.3()(64bit)libkrb5.so.3()(64bit)libkrb5.so.3(krb5_3_MIT)(64bit)libldb.so.2()(64bit)libldb.so.2(LDB_0.9.10)(64bit)libpcre2-8.so.0()(64bit)libpopt.so.0()(64bit)libpopt.so.0(LIBPOPT_0)(64bit)libref_array.so.1()(64bit)librt.so.1()(64bit)libselinux.so.1()(64bit)libsss_cert.so()(64bit)libsss_child.so()(64bit)libsss_crypt.so()(64bit)libsss_debug.so()(64bit)libsss_iface.so()(64bit)libsss_sbus.so()(64bit)libsss_secrets.so()(64bit)libsss_util.so()(64bit)libsystemd.so.0()(64bit)libsystemd.so.0(LIBSYSTEMD_209)(64bit)libtalloc.so.2()(64bit)libtalloc.so.2(TALLOC_2.0.2)(64bit)libtdb.so.1()(64bit)libtdb.so.1(TDB_1.2.1)(64bit)libtevent.so.0()(64bit)libtevent.so.0(TEVENT_0.9.9)(64bit)libuuid.so.1()(64bit)libuuid.so.1(UUID_1.0)(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)rtld(GNU_HASH)sssd-commonsystemdsystemdsystemd2.5.2-1.el83.0.4-14.6.0-14.0-15.2-12.5.2-1.el84.14.3`.`@`[` @`&m`@`x@__@_@_#___[@_?@_-B@_@_@^@^@^^(@^oj@^ku^Y^S^J@^C^0"@^0"@^0"@^@^@^@]f@]f@] @] @]+]]Y]Y]|@]o@]k]k]Y=]Y=]Y=]Y=]Y=]M`@]M`@]M`@]D%]D%]D%]9]9]]]@]@\\`@\]o@\\\\\\\@\>@\>@\>@\\\\l@[Ѱ@[^[[ā@[ā@[ā@[;@[;@[;@[;@[;@[[@[@[@[@[@[t[#@[#@[@[@[qr[;e@["XZZ&Zw@Z Z$Zz@ZyZiZiZWQZWQZ%8Z@Z@YZ@Y@YYzYKYyYw2YRHYRHY@X-XX~@XO@X}@X@XX6@XWXOXXWW@WWW@WWv[@Wi,@W5W@W@V3VVVvV%@VqR@VO @V<@V/g@V$@V @V @UpU|@U4@UUUU@UzUzUzUL@UL@U.RU@TTT@T~T8TܕT@T@TTTq@T@T@Tp@TA@TuTto@TG@TD@TT @S0SS@S.SP@S @Sg@SrS!@SkqSkqSG@SFSCS!SSRRpRpR^R[RSRNREs@RD!R@R@RNQB@Q@QQQکQQQo@Q)@Q@QQ@Q@QbQbQV@Q'@QQQQnQZ@QU@Q0@QQQ@Q@QQ @QQh@PP@P@P@Pz@Pz@PqnPl(PaPaPS@PH@PDPM>M2@MMzMx@Mj - 2.5.2-1Alexey Tikhonov - 2.5.1-2Alexey Tikhonov - 2.5.1-1Alexey Tikhonov - 2.5.0-1Alexey Tikhonov - 2.4.0-8Alexey Tikhonov - 2.4.0-7Alexey Tikhonov - 2.4.0-6Alexey Tikhonov - 2.4.0-5Alexey Tikhonov - 2.4.0-4Alexey Tikhonov - 2.4.0-3Alexey Tikhonov - 2.4.0-2Alexey Tikhonov - 2.4.0-1Alexey Tikhonov - 2.3.0-9Alexey Tikhonov - 2.3.0-8Alexey Tikhonov - 2.3.0-7Alexey Tikhonov - 2.3.0-6Alexey Tikhonov - 2.3.0-5Alexey Tikhonov - 2.3.0-4Alexey Tikhonov - 2.3.0-3Alexey Tikhonov - 2.3.0-2Alexey Tikhonov - 2.3.0-1Alexey Tikhonov - 2.2.3-19Alexey Tikhonov - 2.2.3-19Michal Židek - 2.2.3-18Alexey Tikhonov - 2.2.3-17Alexey Tikhonov - 2.2.3-16Michal Židek - 2.2.3-15Michal Židek - 2.2.3-14Michal Židek - 2.2.3-13Michal Židek - 2.2.3-12Michal Židek - 2.2.3-11Michal Židek - 2.2.3-10Michal Židek - 2.2.3-9Michal Židek - 2.2.3-8Michal Židek - 2.2.3-7Michal Židek - 2.2.3-6Michal Židek - 2.2.3-5Michal Židek - 2.2.3-4Michal Židek - 2.2.3-3Michal Židek - 2.2.3-2Michal Židek - 2.2.3-1Michal Židek - 2.2.2-1Michal Židek - 2.2.0-19Michal Židek - 2.2.0-18Michal Židek - 2.2.0-17Michal Židek - 2.2.0-16Michal Židek - 2.2.0-15Michal Židek - 2.2.0-14Michal Židek - 2.2.0-13Michal Židek - 2.2.0-12Michal Židek - 2.2.0-11Michal Židek - 2.2.0-10Michal Židek - 2.2.0-9Michal Židek - 2.2.0-8Michal Židek - 2.2.0-7Michal Židek - 2.2.0-6Jakub Hrozek - 2.2.0-5Jakub Hrozek - 2.2.0-4Jakub Hrozek - 2.2.0-3Jakub Hrozek - 2.2.0-2Michal Židek - 2.2.0-1Michal Židek - 2.1.0-1Michal Židek - 2.0.0-45Jakub Hrozek - 2.0.0-43Michal Židek - 2.0.0-42Michal Židek - 2.0.0-41Michal Židek - 2.0.0-40Michal Židek - 2.0.0-39Michal Židek - 2.0.0-38Michal Židek - 2.0.0-36Michal Židek - 2.0.0-35Michal Židek - 2.0.0-34Michal Židek - 2.0.0-33Michal Židek - 2.0.0-32Michal Židek - 2.0.0-31Michal Židek - 2.0.0-30Michal Židek - 2.0.0-29Michal Židek - 2.0.0-28Michal Židek - 2.0.0-27Michal Židek - 2.0.0-26Michal Židek - 2.0.0-25Michal Židek - 2.0.0-24Jakub Hrozek - 2.0.0-23Jakub Hrozek - 2.0.0-22Jakub Hrozek - 2.0.0-21Jakub Hrozek - 2.0.0-20Jakub Hrozek - 2.0.0-19Jakub Hrozek - 2.0.0-18Jakub Hrozek - 2.0.0-17Jakub Hrozek - 2.0.0-16Jakub Hrozek - 2.0.0-15Jakub Hrozek - 2.0.0-14Jakub Hrozek - 2.0.0-13Jakub Hrozek - 2.0.0-12Jakub Hrozek - 2.0.0-11Jakub Hrozek - 2.0.0-10Jakub Hrozek - 2.0.0-9Jakub Hrozek - 2.0.0-8Jakub Hrozek - 2.0.0-7Jakub Hrozek - 2.0.0-6Jakub Hrozek - 2.0.0-5Jakub Hrozek - 2.0.0-4Jakub Hrozek - 2.0.0-3Jakub Hrozek - 2.0.0-2Fabiano Fidêncio - 2.0.0-1Tomas Orsava - 1.16.2-2Fabiano Fidêncio - 1.16.2-1Fabiano Fidêncio - 1.16.1-3Fabiano Fidêncio - 1.16.1-2Fabiano Fidêncio - 1.16.1-1Lukas Slebodnik - 1.16.0-13Fabiano Fidêncio - 1.16.0-12Lukas Slebodnik - 1.16.0-11Lukas Slebodnik - 1.16.0-10Igor Gnatenko - 1.16.0-9Lukas Slebodnik - 1.16.0-8Lukas Slebodnik - 1.16.0-7Björn Esser - 1.16.0-6Lukas Slebodnik - 1.16.0-5Lukas Slebodnik - 1.16.0-4Jakub Hrozek - 1.16.0-3Lukas Slebodnik - 1.16.0-2Lukas Slebodnik - 1.16.0-1Lukas Slebodnik - 1.15.3-5Lukas Slebodnik - 1.15.3-4Lukas Slebodnik - 1.15.3-3Fedora Release Engineering - 1.15.3-2Lukas Slebodnik - 1.15.3-1Lukas Slebodnik - 1.15.3-0.beta.5Lukas Slebodnik - 1.15.3-0.beta.4Lukas Slebodnik - 1.15.3-0.beta.3Lukas Slebodnik - 1.15.3-0.beta.2Lukas Slebodnik - 1.15.3-0.beta.1Lukas Slebodnik - 1.15.2-1Lukas Slebodnik - 1.15.1-1Jakub Hrozek - 1.15.0-4Lukas Slebodnik - 1.15.0-3Fedora Release Engineering - 1.15.0-2Lukas Slebodnik - 1.15.0-1Miro Hrončok - 1.14.2-3Lukas Slebodnik - 1.14.2-2Lukas Slebodnik - 1.14.2-1Lukas Slebodnik - 1.14.1-4Lukas Slebodnik - 1.14.1-3Lukas Slebodnik - 1.14.1-2Lukas Slebodnik - 1.14.1-1Stephen Gallagher - 1.14.0-5Fedora Release Engineering - 1.14.0-4Lukas Slebodnik - 1.14.0-3Lukas Slebodnik - 1.14.0-2.betaLukas Slebodnik - 1.14.0-1.alphaLukas Slebodnik - 1.13.4-3Lukas Slebodnik - 1.13.4-2Lukas Slebodnik - 1.13.4-1Lukas Slebodnik - 1.13.3-6Lukas Slebodnik - 1.13.3-5Fedora Release Engineering - 1.13.3-4Lukas Slebodnik - 1.13.3-3Lukas Slebodnik - 1.13.3-2Lukas Slebodnik - 1.13.3-1Lukas Slebodnik - 1.13.2-1Robert Kuska - 1.13.1-5Lukas Slebodnik - 1.13.1-4Lukas Slebodnik - 1.13.1-3Lukas Slebodnik - 1.13.1-2Lukas Slebodnik - 1.13.1-1Lukas Slebodnik - 1.13.0-6Lukas Slebodnik - 1.13.0-5Lukas Slebodnik - 1.13.0-4Lukas Slebodnik - 1.13.0-3Lukas Slebodnik - 1.13.0-2.alphaLukas Slebodnik - 1.13.0-1.alphaFedora Release Engineering - 1.12.5-4Lukas Slebodnik - 1.12.5-3Lukas Slebodnik - 1.12.5-2Lukas Slebodnik - 1.12.5-1Lukas Slebodnik - 1.12.4-8Lukas Slebodnik - 1.12.4-7Lukas Slebodnik - 1.12.4-6Lukas Slebodnik - 1.12.4-5Jakub Hrozek - 1.12.4-4Jakub Hrozek - 1.12.4-3Lukas Slebodnik - 1.12.4-2Lukas Slebodnik - 1.12.4-1Lukas Slebodnik - 1.12.3-7Lukas Slebodnik - 1.12.3-6Jakub Hrozek - 1.12.3-5Lukas Slebodnik - 1.12.3-4Lukas Slebodnik - 1.12.3-3Lukas Slebodnik - 1.12.3-2Lukas Slebodnik - 1.12.3-1Lukas Slebodnik - 1.12.2-8Sumit Bose - 1.12.2-7Lukas Slebodnik - 1.12.2-6Jakub Hrozek - 1.12.2-5Jakub Hrozek - 1.12.2-4Jakub Hrozek - 1.12.2-3Jakub Hrozek - 1.12.2-2Jakub Hrozek - 1.12.2-1Jakub Hrozek - 1.12.1-2Jakub Hrozek - 1.12.1-1Jakub Hrozek - 1.12.0-7Fedora Release Engineering - 1.12.0-6Stephen Gallagher 1.12.0-5Jakub Hrozek - 1.12.0-1Fedora Release Engineering - 1.12.0-4.beta2Jakub Hrozek - 1.12.0-1.beta2Jakub Hrozek - 1.12.0-2.beta1Jakub Hrozek - 1.12.0-1.beta1Jakub Hrozek - 1.11.5.1-4Stephen Gallagher - 1.11.5.1-3Stephen Gallagher - 1.11.5.1-2Jakub Hrozek - 1.11.5.1-1Stephen Gallagher 1.11.5-2Jakub Hrozek - 1.11.5-1Sumit Bose - 1.11.4-3Jakub Hrozek - 1.11.4-2Jakub Hrozek - 1.11.4-1Jakub Hrozek - 1.11.3-2Jakub Hrozek - 1.11.3-1Jakub Hrozek - 1.11.2-1Sumit Bose - 1.11.1-5Sumit Bose - 1.11.1-4Jakub Hrozek - 1.11.1-3Jakub Hrozek - 1.11.1-2Jakub Hrozek - 1.11.1-1Jakub Hrozek - 1.11.0-3Jakub Hrozek - 1.11.0-2Jakub Hrozek - 1.11.0-1Jakub Hrozek - 1.11.0-0.4.beta2Fedora Release Engineering - 1.11.0-0.3.beta2Jakub Hrozek - 1.11.0.2beta2Jakub Hrozek - 1.11.0.1beta2Jakub Hrozek - 1.10.1-1Jakub Hrozek - 1.10.0-17Stephen Gallagher - 1.10.0-16Stephen Gallagher - 1.10.0-15Stephen Gallagher - 1.10.0-14Jakub Hrozek - 1.10.0-13Dan Horák - 1.10.0-12.beta2Jakub Hrozek - 1.10.0-11.beta2Jakub Hrozek - 1.10.0-10.beta2Jakub Hrozek - 1.10.0-9.beta2Jakub Hrozek - 1.10.0-8.beta1Jakub Hrozek - 1.10.0-8.beta2Jakub Hrozek - 1.10.0-7.beta1Jakub Hrozek - 1.10.0-6.beta1Jakub Hrozek - 1.10.0-5.beta1Jakub Hrozek - 1.10.0-4.beta1Jakub Hrozek - 1.10.0-3.beta1Jakub Hrozek - 1.10.0-2.alpha1Jakub Hrozek - 1.10.0-1.alpha1Jakub Hrozek - 1.9.5-10Stephen Gallagher - 1.9.4-9Jakub Hrozek - 1.9.4-8Jakub Hrozek - 1.9.4-7Jakub Hrozek - 1.9.4-6Jakub Hrozek - 1.9.4-5Jakub Hrozek - 1.9.4-4Jakub Hrozek - 1.9.4-3Jakub Hrozek - 1.9.4-2Jakub Hrozek - 1.9.4-1Jakub Hrozek - 1.9.3-1Jakub Hrozek - 1.9.2-5Jakub Hrozek - 1.9.2-4Jakub Hrozek - 1.9.2-3Jakub Hrozek - 1.9.2-2Jakub Hrozek - 1.9.2-1Jakub Hrozek - 1.9.1-1Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-23Jakub Hrozek - 1.9.0-22.rc1Jakub Hrozek - 1.9.0-21.beta7Jakub Hrozek - 1.9.0-20.beta6Jakub Hrozek - 1.9.0-19.beta6Jakub Hrozek - 1.9.0-18.beta6Jakub Hrozek - 1.9.0-17.beta6Jakub Hrozek - 1.9.0-16.beta6Jakub Hrozek - 1.9.0-14.beta6Jakub Hrozek - 1.9.0-13.beta6Fedora Release Engineering - 1.9.0-13.beta5Jakub Hrozek - 1.9.0-12.beta5Stephen Gallagher - 1.9.0-11.beta4Jakub Hrozek - 1.9.0-10.beta4Jakub Hrozek - 1.9.0-9.beta4Stephen Gallagher - 1.9.0-8.beta3Stephen Gallagher - 1.9.0-7.beta2Stephen Gallagher - 1.9.0-6.beta2Stephen Gallagher - 1.9.0-5.beta2Stephen Gallagher - 1.9.0-4.beta1Stephen Gallagher - 1.9.0-3.beta1Stephen Gallagher - 1.9.0-2.beta1Stephen Gallagher - 1.9.0-1.beta1Stephen Gallagher - 1.8.3-11Stephen Gallagher - 1.8.2-10Stephen Gallagher - 1.8.1-9Stephen Gallagher - 1.8.1-8Stephen Gallagher - 1.8.1-7Stephen Gallagher - 1.8.0-6Stephen Gallagher - 1.8.0-5.beta3Stephen Gallagher - 1.8.0-4.beta3Petr Pisar - 1.8.0-3.beta2Stephen Gallagher - 1.8.0-1.beta2Stephen Gallagher - 1.8.0-1.beta1Stephen Gallagher - 1.7.0-5Stephen Gallagher - 1.7.0-4Stephen Gallagher - 1.7.0-3Fedora Release Engineering - 1.7.0-2Stephen Gallagher - 1.7.0-1Stephen Gallagher - 1.6.4-1Stephen Gallagher - 1.6.3-5Stephen Gallagher - 1.6.3-4Jakub Hrozek - 1.6.3-3Stephen Gallagher - 1.6.3-2Stephen Gallagher - 1.6.3-1Fedora Release Engineering - 1.6.2-5Stephen Gallagher - 1.6.2-4Stephen Gallagher - 1.6.2-3Stephen Gallagher - 1.6.2-2Stephen Gallagher - 1.6.2-1Stephen Gallagher - 1.6.1-1Stephen Gallagher - 1.6.0-2Stephen Gallagher - 1.6.0-1Stephen Gallagher - 1.5.11-2Stephen Gallagher - 1.5.10-1Stephen Gallagher - 1.5.9-1Stephen Gallagher - 1.5.8-1Stephen Gallagher - 1.5.7-3Stephen Gallagher - 1.5.7-2Stephen Gallagher - 1.5.7-1Stephen Gallagher - 1.5.6.1-1Stephen Gallagher - 1.5.6-1Stephen Gallagher - 1.5.5-5Stephen Gallagher - 1.5.5-4Stephen Gallagher - 1.5.5-3Stephen Gallagher - 1.5.5-2Stephen Gallagher - 1.5.5-1Stephen Gallagher - 1.5.4-1Stephen Gallagher - 1.5.3-2Stephen Gallagher - 1.5.3-1Stephen Gallagher - 1.5.2-1Simo Sorce - 1.5.1-9Stephen Gallagher - 1.5.1-8Stephen Gallagher - 1.5.1-7Stephen Gallagher - 1.5.1-6Stephen Gallagher - 1.5.1-5Fedora Release Engineering - 1.5.1-4Stephen Gallagher - 1.5.1-3Stephen Gallagher - 1.5.1-2Stephen Gallagher - 1.5.1-1Stephen Gallagher - 1.5.0-2Stephen Gallagher - 1.5.0-1Stephen Gallagher - 1.4.1-3Stephen Gallagher - 1.4.1-2Stephen Gallagher - 1.4.1-1Stephen Gallagher - 1.4.0-2Stephen Gallagher - 1.4.0-1Stephen Gallagher - 1.3.0-35Stephen Gallagher - 1.3.0-34Stephen Gallagher - 1.3.0-33Stephen Gallagher - 1.3.0-32Stephen Gallagher - 1.3.0-31Stephen Gallagher - 1.3.0-30David Malcolm - 1.2.91-21Stephen Gallagher - 1.2.91-20Stephen Gallagher - 1.2.1-15Stephen Gallagher - 1.2.0-12Stephen Gallagher - 1.1.92-11Stephen Gallagher - 1.1.91-10Simo Sorce - 1.1.1-3Stephen Gallagher - 1.1.1-1Stephen Gallagher - 1.1.0-2Stephen Gallagher - 1.1.0-1.pre20100317git0ea7f19Stephen Gallagehr - 1.0.5-2Stephen Gallagher - 1.0.5-1Stephen Gallagher - 1.0.4-1Stephen Gallagher - 1.0.3-1Stephen Gallagher - 1.0.2-1Stephen Gallagher - 1.0.1-1Stephen Gallagher - 1.0.0-2Stephen Gallagher - 1.0.0-1Stephen Gallagher - 0.99.1-1Stephen Gallagher - 0.99.0-1Stephen Gallagher - 0.7.1-1Stephen Gallagher - 0.7.0-2Stephen Gallagher - 0.7.0-1Stephen Gallagher - 0.6.1-2Stephen Gallagher - 0.6.1-1Stephen Gallagher - 0.6.0-1Sumit Bose - 0.6.0-0Simo Sorce - 0.5.0-0Jakub Hrozek - 0.4.1-4Fedora Release Engineering - 0.4.1-3Simo Sorce - 0.4.1-2Simo Sorce - 0.4.1-1Simo Sorce - 0.4.1-0Simo Sorce - 0.3.2-2Jakub Hrozek - 0.3.2-1Simo Sorce - 0.3.1-2Simo Sorce - 0.3.1-1Simo Sorce - 0.3.0-2Simo Sorce - 0.3.0-1Simo Sorce - 0.2.1-1Simo Sorce - 0.2.0-1Jakub Hrozek - 0.1.0-5.20090309git691c9b3Jakub Hrozek - 0.1.0-4Sumit Bose - 0.1.0-3Jakub Hrozek - 0.1.0-2Stephen Gallagher - 0.1.0-1- Resolves: rhbz#1947671 - Rebase SSSD for RHEL 8.5 - Resolves: rhbz#1693379 - sssd_be and sss_cache too heavy on CPU - Resolves: rhbz#1909373 - Missing search index for `originalADgidNumber` - Resolves: rhbz#1954630 - [RFE] Improve debug messages by adding a unique tag for each request the backend is handling - Resolves: rhbz#1936891 - SSSD Error Msg Improvement: Bad address - Resolves: rhbz#1364596 - sssd still showing ipa user after removed from last group - Resolves: rhbz#1979404 - Changes made to /etc/pam.d/sssd-shadowutils are overwritten back to default on sssd-common package upgrade- Resolves: rhbz#1974257 - 'debug_microseconds' config option is broken - Resolves: rhbz#1936902 - SSSD Error Msg Improvement: Invalid argument - Resolves: rhbz#1627112 - RFE: Kerberos ticket renewal for sssd-kcm (additional patches and rebuild)- Resolves: rhbz#1947671 - Rebase SSSD for RHEL 8.5 - Resolves: rhbz#1942387 - Wrong default debug level of sssd tools - Resolves: rhbz#1917444 - SSSD Error Msg Improvement: Server resolution failed: [2]: No such file or directory - Resolves: rhbz#1917511 - SSSD Error Msg Improvement: Failed to resolve server 'server.example.com': Error reading file - Resolves: rhbz#1917535 - sssd.conf man page: parameter dns_resolver_server_timeout and dns_resolver_op_timeout - Resolves: rhbz#1940509 - [RFE] Health and Support Analyzer: Link frontend to backend requests - Resolves: rhbz#1649464 - auto_private_groups not working as expected with posix ipa/ad trust - Resolves: rhbz#1925514 - [RFE] Randomize the SUDO timeouts upon reconnection - Resolves: rhbz#1961215 - Invalid sssd-kcm return code if requested operation is not found - Resolves: rhbz#1837090 - SSSD fails nss_getby_name for IPA user with SID if the user has user private group - Resolves: rhbz#1879869 - sudo commands incorrectly exports the KRB5CCNAME environment variable - Resolves: rhbz#1962550 - sss_pac_make_request fails on systems joined to Active Directory. - Resolves: rhbz#1737489 - [RFE] SSSD should honor default Kerberos settings (keytab name) in /etc/krb5.conf- Resolves: rhbz#1947671 - Rebase SSSD for RHEL 8.5 - Resolves: rhbz#1930535 - [abrt] [faf] sssd: monitor_service_shutdown(): /usr/sbin/sssd killed by 11 - Resolves: rhbz#1942387 - Wrong default debug level of sssd tools - Resolves: rhbz#1945888 - Inconsistant debug level for connection logging - Resolves: rhbz#1948657 - pam_sss_gss.so doesn't work with large kerberos tickets - Resolves: rhbz#1949149 - [RFE] Poor man's backtrace - Resolves: rhbz#1920500 - Authentication handshake (ldap_install_tls()) fails due to underlying openssl operation failing with EINTR - Resolves: rhbz#1923964 - [RFE] SSSD Error Msg Improvement: write_krb5info_file failed, authentication might fail. - Resolves: rhbz#1928648 - SSSD logs improvements: clarify which config option applies to each timeout in the logs - Resolves: rhbz#1632159 - sssd-kcm starts successfully for non existent socket_path - Resolves: rhbz#1627112 - RFE: Kerberos ticket renewal for sssd-kcm - Resolves: rhbz#1925505 - [RFE] improve the sssd refresh timers for SUDO queries - Resolves: rhbz#1925514 - [RFE] Randomize the SUDO timeouts upon reconnection - Resolves: rhbz#1925561 - sssd-ldap(5) does not report how to disable the SUDO smart queries - Resolves: rhbz#1925621 - document impact of indices and of scope on performance of LDAP queries - Resolves: rhbz#1855320 - [RFE] RHEL8 sssd: inheritance of the case_sensitive parameter for subdomains. - Resolves: rhbz#1925608 - [RFE] make 'random_offset' addon to 'offline_timeout' option configurable - Resolves: rhbz#1447945 - man page / docs update required: if two certificate matching rules with the same priority match only one is used - Resolves: rhbz#1703436 - sssd not thread-safe in innetgr() - Resolves: rhbz#1713143 - SSSD does not translate the 2FA text labels("first factor" / "second factor") on GDM login and screensaver unlock screen - Resolves: rhbz#1888977 - sss_override: Usage limitations clarification in man page - Resolves: rhbz#1890177 - Clarify "single_prompt" option in "PROMPTING CONFIGURATION SECTION" section of sssd.conf man page - Resolves: rhbz#1902280 - fix sss_cache to also reset cached timestamp - Resolves: rhbz#1935683 - SSSD not detecting subdomain from AD forest (RHEL 8.3) - Resolves: rhbz#1937919 - IPA missing secondary IPA Posix groups in latest sssd 1.16.5-10.el7_9.7 - Resolves: rhbz#1944665 - No gpo found and ad_gpo_implicit_deny set to True still permits user login - Resolves: rhbz#1919942 - sss_override does not take precedence over override_homedir directive- Resolves: rhbz#1926622 - Add support to verify authentication indicators in pam_sss_gss - Resolves: rhbz#1926454 - First smart refresh query contains modifyTimestamp even if the modifyTimestamp is 0. - Resolves: rhbz#1893159 - Default debug level should report all errors / failures (additional patch)- Resolves: rhbz#1920001 - Do not add '%' to group names already prefixed with '%' in IPA sudo rules - Resolves: rhbz#1918433 - sssd unable to lookup certmap rules - Resolves: rhbz#1917382 - [abrt] [faf] sssd: dp_client_handshake_timeout(): /usr/libexec/sssd/sssd_be killed by 11- Resolves: rhbz#1113639 - autofs: return a connection failure until maps have been fetched - Resolves: rhbz#1915395 - Memory leak in the simple access provider - Resolves: rhbz#1915319 - SSSD: SBUS: failures during servers startup - Resolves: rhbz#1893698 - [RFE] sudo kerberos authentication (additional patches)- Resolves: rhbz#1631410 - Can't login with smartcard with multiple certs having same ID value - Resolves: rhbz#1884213 - [RFE] add offline_timeout_max config option to control offline interval backoff (additional patches) - Resolves: rhbz#1893159 - Default debug level should report all errors / failures - Resolves: rhbz#1893698 - [RFE] sudo kerberos authentication- Resolves: rhbz#1876514 - High CPU utilization by the sssd_kcm process - Resolves: rhbz#1876658 - filter_groups option partially filters the group from 'id' output of the user because gidNumber still appears in 'id' output [RHEL 8] - Resolves: rhbz#1895001 - User lookups over the InfoPipe responder fail intermittently- Resolves: rhbz#1900733 - sssd_be segfaults at be_refresh_get_values_ex() due to NULL ptrs in results of sysdb_search_with_ts_attr() - Resolves: rhbz#1876514 - High CPU utilization by the sssd_kcm process - Resolves: rhbz#1894540 - sssd component logging is now too generic in syslog/journal - Resolves: rhbz#1828483 - filtered ID is appearing due to strange negative cache behavior- This is to bump version to allow rebuild against rebased libldb.- Resolves: rhbz#1881992 - Rebase SSSD for RHEL 8.4 - Resolves: rhbz#1722842 - sssd-kcm does not store TGT with ssh login using GSSAPI - Resolves: rhbz#1734040 - sssd crash in ad_get_account_domain_search() - Resolves: rhbz#1784459 - [RFE] tlog does not allow to exclude some users from session recording - Resolves: rhbz#1791300 - sporadic sssd_be crash on s390x - Resolves: rhbz#1817122 - 'getent group ldapgroupname' doesn't show any LDAP users or some LDAP users when 'rfc2307bis' schema is used with SSSD. - Resolves: rhbz#1819012 - [RFE] Improve AD site discovery process - Resolves: rhbz#1846778 - [RfE] `/usr/libexec/sssd/p11_child` cmdline argument '--nssdb' might be confusing when SSSD was built against OpenSSL - Resolves: rhbz#1873715 - automount sssd issue when 2 automount maps have the same key (one un uppercase, one in lowercase) - Resolves: rhbz#1879860 - correction in sssd.conf:pam_response_filter man page - Resolves: rhbz#1881336 - [RFE] sssd-ldap man page modification for parameter "ldap_referrals" - Resolves: rhbz#1883488 - [RfE] Implement a new sssd.conf option to disable the filter for AD domain local groups from trusted domains - Resolves: rhbz#1884196 - [RFE] Add "enabled" option to domain section in config file - Resolves: rhbz#1884205 - KCM: Increase client idle timeout to 5 minutes - Resolves: rhbz#1884207 - [RFE] ldap: add new option ldap_library_debug_level - Resolves: rhbz#1884213 - [RFE] add offline_timeout_max config option to control offline interval backoff - Resolves: rhbz#1884281 - Secondary LDAP group go missing from 'id' command - Resolves: rhbz#1884301 - [RFE] dyndns: suport asymmetric auth for nsupdate- Resolves: rhbz#1855323 - When ad_gpo_implicit_deny is True, it is permitting users to login when no gpo is applied- Resolves: rhbz#1868387 - system not enforcing GPO rule restriction. ad_gpo_implicit_deny = True is not working - Resolves: rhbz#1854951 - sss-certmap man page change to add clarification for userPrincipalName attribute from AD schema - Resolves: rhbz#1856861 - False errors/warnings are logged in sssd.log file after enabling 2FA prompting settings in sssd.conf - Resolves: rhbz#1869683 - p11_child: default value of ocsp_dgst == sha256 doesn't conform RFC5019 and has to be changed to sha1- Resolves: rhbz#1723273 - RFE: Add option to specify alternate sssd config file location with "sssctl config-check" command. - Resolves: rhbz#1780404 - smartcards: special characters must be escaped when building search filter- Resolves: rhbz#1820574 - [sssd] RHEL 8.3 Tier 0 Localization- Resolves: rhbz#1821719 - sssd (sssd_be) is consuming 100% CPU, partially due to failing mem-cache - Fixed "requires/provides" rpmdiff warning- Resolves: rhbz#1815584 - id_provider = proxy proxy_lib_name = files returns * in password field, breaking PAM authentication - Resolves: rhbz#1794607 - SSSD must be able to resolve membership involving root with files provider - Resolves: rhbz#1803134 - Improve "unlock" time when user session already active- Resolves: rhbz#1829470 - `sssd.api.conf` and `sssd.api.d` should belong to `python-sssdconfig` package - Resolves: rhbz#1544457 - sssd fails to release file descriptor on child logs after receiving HUP - Resolves: rhbz#1824323 - SSSD user filtering is failing on RHEL 8 after "files" provider rebuilds cache - Resolves: rhbz#1827432 - When the passwd or group files are replaced, sssd stops monitoring the file for inotify events, and no updates are triggered - Resolves: rhbz#1835710 - Change the message "Please enter smart card" to "Please insert smart card" on GDM login with smart-card - Resolves: rhbz#1838037 - Oddjob-mkhomedir fails when using NSS compat - Resolves: rhbz#1845904 - gdm smart card authentication does not work shortly after disconnecting from network. - Resolves: rhbz#1845975 - sssd doesn't follow the link order of AD Group Policy Management - Resolves: rhbz#1845980 - sssd is failing to discover other subdomains in the forest if LDAP entries do not contain AD forest root information - Resolves: rhbz#1845987 - Document how to prevent invalid selinux context for default home directories in SSSD-AD direct integration. - Resolves: rhbz#1845994 - GDM failure loop when no user mapped for smart card - Resolves: rhbz#1846003 - GDM password prompt when cert mapped to multiple users and promptusername is False - Resolves: rhbz#1850961 - /usr/share/systemtap/tapset/sssd_functions.stp missing a comma- Resolves: rhbz#Bug 1723273 - RFE: Add option to specify alternate sssd config file location with "sssctl config-check" command.- Resolves: rhbz#1839037 - Rebase SSSD for RHEL 8.3 - Resolves: rhbz#1843872 - sssd 2.3.0 breaks AD auth due to GPO parsing failure - Resolves: rhbz#1834156 - sssd or sssd-ad not updating their dependencies on "yum update" which breaks working- Resolves: rhbz#1580506 - [RFE]: sssd to be able to read smartcard certificate EKU and perform an action based on value when generating SSH key from a certificate (additional patch)- Resolves: rhbz#1810634 - id command taking 1+ minute for returning user information- Resolves: rhbz#1580506 - [RFE]: sssd to be able to read smartcard certificate EKU and perform an action based on value when generating SSH key from a certificate- Resolves: rhbz#1718193 - p11_child should have an option to skip C_WaitForSlotEvent if the PKCS#11 module does not implement it properly- Resolves: rhbz#1792331 - sssd_be crashes when krb5_realm and krb5_server is omitted and auth_provider is krb5- Resolves: rhbz#1754996 - [sssd] Tier 0 Localization- Resolves: rhbz#1767514 - sssd requires timed sudoers ldap entries to be specified up to the seconds- Resolves: rhbz#1713368 - Add sssd-dbus package as a dependency of sssd-tools* Resolves: rhbz#1794016 - sssd_be frequent crash* Resolves: rhbz#1762415 - Force LDAPS over 636 with AD Access Provider* Resolves: rhbz#1583592 - [RFE] Add configurable randomness to SSSD ldap connection timeout* Resolves: rhbz#1783190 - [abrt] [faf] sssd: raise(): /usr/libexec/sssd/sssd_autofs killed by 6* Resolves: rhbz#1785214 - server/be: SIGTERM handling is incorrect* Resolves: rhbz#1785193 - Watchdog implementation or usage is incorrect* Resolves: rhbz#1704199 - pcscd rejecting sssd ldap_child as unauthorized* Resolves: rhbz#1744500 - [Doc]Provide explanation on escape character for match rules sss-certmap* Resolves: rhbz#1781728 - sssctl config-check command does not give proper error messages with line numbers* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release Increasing version number to pick latest libldb* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release PART2: Fix gating issue.* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release- Resolves: rhbz#1712875 - Old kerberos credentials active instead of valid new ones (kcm)- Resolves: rhbz#1744134 - New defect found in sssd-2.2.0-16.el8 - Also sync. kcm multihost tests with master- Resolves: rhbz#1676385 - pam_sss with smartcard auth does not create gnome keyring - Also apply a patch to fix gating tests issue- Resolves: rhbz#1736861 - dyndns_update = True is no longer enough to get the IP address of the machine updated in IPA upon sssd.service startup- Resolves: rhbz#1736265 - Smart Card auth of local user: endless loop if wrong PIN was provided- Resolves: rhbz#1736796 - sssd config option "default_domain_suffix" should not cause files domain entries to be qualified, this can break sudo access- Resolves: rhbz#1669407 - MAN: Document that PAM stack contains the systemd-user service in the account phase in RHEL-8- Resolves: rhbz#1448094 - sssd-kcm cannot handle big tickets- Resolves: rhbz#1733372 - permission denied on logs when running sssd as non-root user- Resolves: rhbz#1736483 - Sudo prompt for smart card authentication is missing the trailing colon- Resolves: rhbz#1382750 - Conflicting default timeout values- Resolves: rhbz#1699480 - Include libsss_nss_idmap-devel in the Builder repository - This just required a raise in release number and changelog for the record.- Resolves: rhbz#1711318 - p11_child::sign_data() function implementation is not FIPS140 compliant- Resolves: rhbz#1726945 - negative cache does not use values from 'filter_users' config option for known domains- Resolves: rhbz#1729055 - sssd does not pass correct rules to sudo- Resolves: rhbz#1283798 - sssd failover does not work on connecting to non-responsive ldaps:// server- Resolves: rhbz#1725168 - sssd-proxy crashes resolving groups with no members- Resolves: rhbz#1673443 - sssd man pages: The default value of "ldap_user_home_directory" is not mentioned with AD server configuration- Resolves: rhbz#1687281 Rebase sssd in RHEL-8.1 to the latest upstream release- Resolves: rhbz#1687281 Rebase sssd in RHEL-8.1 to the latest upstream release- Replace ARRAY_SIZE with N_ELEMENTS to reflect samba changes. This is done here in order to unblock gating changes before rebase. - Related: rhbz#1682305- Resolves: rhbz#1672780 - gdm login not prompting for username when smart card maps to multiple users- Resolves: rhbz#1645291 - Perform some basic ccache initialization as part of gen_new to avoid a subsequent switch call failure-Resolves: rhbz#1659498 - Re-setting the trusted AD domain fails due to wrong subdomain service name being used-Resolves: rhbz#1660083 - extraAttributes is org.freedesktop.DBus.Error. UnknownProperty: Unknown property- Resolves: rhbz#1661183 - SSSD 2.0 has drastically lower sbus timeout than 1.x, this can result in time outs- Resolves: rhbz#1578014 - sssd does not work under non-root user - Note: Actually the patches were in the 2.0.0-37, this one just adds this changelog because it was missing.- Resolves: rhbz#1652563 - incorrect example in the man page of idmap_sss suggests using * for backend sss- Resolves: rhbz#1466503 - Snippets are not used when sssd.conf does not exist- Resolves: rhbz#1622008 - Error message when IPA server uninstall calls kdestroy caused by KCM returning a wrong error code during the delete operation- Resolves: rhbz#1646113 - Missing concise documentation about valid options for sssd-files-provider- Resolves: rhbz#1625670 - sssd needs to require a newer version of libtalloc and libtevent to avoid an issue in GPO processing- Resolves: 1658813 - PKINIT with KCM does not work- Resolves: 1657898 - SSSD must be cleared/restarted periodically in order to retrieve AD users through IPA Trust- Resolves: rhbz#1655459 - [abrt] [faf] sssd: raise(): /usr/libexec/sssd/proxy_child killed by 6- Resolves: rhbz#1652719 - [SECURITY] sssd returns '/' for emtpy home directories- Resolves: rhbz#1657979 - SSSD's LDAP authentication provider does not work if ID provider is authenticated with GSSAPI- Resolves: rhbz#1657980 - sssd_nss memory leak- Resolves: rhbz#1645566 - SSSD 2.x does not sanitize domain name properly for D-bus, resulting in a crash- Resolves: rhbz#1646168 - sssctl access-report always prints an error message - Resolves: rhbz#1643053 - Restarting the sssd-kcm service should reload the configuration without having to restart the whole sssd - Resolves: rhbz#1640576 - sssctl reports incorrect information about local user's cache entry expiration time - Resolves: rhbz#1645238 - Unable to su to root when logged in as a local user - Resolves: rhbz#1639411 - sssd support for for smartcards using ECC keys- Resolves: rhbz#1642508 - sssd ifp crash when trying to access ipa webui with smart card- Resolves: rhbz#1642372 - SSSD Python getgrouplist API was removed but required for IPA- Related: rhbz#1638150 - session not recording for local user when groups defined - Also add silence a Coverity warning, which is related to rhbz#1637131- Related: rhbz#1637513 - sssd crashes when refreshing expired sudo rules- Add OSCP checks for p11_child - Related: rhbz#1615417 - [RFE] Add Smart Card authentication for local users- Related: rhbz#1638006 - Files: The files provider always enumerates which causes duplicate when running getent passwd- Related: rhbz#1637131 - pam_unix unable to match fully qualified username provided by sssd during smartcard auth using gdm- Related: rhbz#1620123 - [RFE] Add option to specify a Smartcard with a PKCS#11 URI- Related: rhbz#1611011 - Support for "require smartcard for login option"- Related: rhbz#1635595 - Cant login with smartcard with multiple certs- Backport more sbus2 fixes - Related: rhbz#1623878 - crash related to sbus_router_destructor()- Resolves: rhbz#1636397 - SSSD not fetching all sudo rules from AD- Resolves: rhbz#1628122 - Printing incorrect information about domain with sssctl utility- Resolves: rhbz#1626001 - SSSD should log to syslog if a domain is not started due to a misconfiguration- Resolves: rhbz#1624785 - Remove references of sss_user/group/add/del commands in man pages since local provider is deprecated- Resolves: rhbz#1628126 - [abrt] [faf] sssd: unknown function(): /usr/libexec/sssd/sssd_be killed by 11 crash func _dbus_list_unlink- Resolves: rhbz#1628503 - sssd only sets the SELinux login context if it differs from the default- Resolves: rhbz#1625842 id_provider= local causes SSSD to abort startup- Resolves: rhbz#1615590 - Do not rely on "python" for el8- Resolves: rhbz#1615417 - [RFE] Add Smart Card authentication for local users- Resolves: rhbz#1623878 - crash related to sbus_router_destructor()- Resolves: rhbz#1622026 - sssd 2.0 regression: Kerberos authentication fails with the KCM ccache- Resolves: rhbz#1615460 - Rebase SSSD to the latest released version- Switch hardcoded python3 shebangs into the %{__python3} macro- Update to 1.16.2 release - Cleanup unused global definitions - Remove python2 references from the spec file - Resolves: rhbz#1585313 - Kerberos with sssd-kcm is not working on s390x- Resolves: upstream#3684 - A group is not updated if its member is removed with the cleanup task, but the group does not change - Resolves: upstream#3558 - sudo: report error when two rules share cn - Tone down shutdown messages for socket activated responders - IPA: Qualify the externalUser sudo attribute - Resolves: upstream#3550 - refresh_expired_interval does not work with netgrous in 1.15 - Resolves: upstream#3402 - Support alternative sources for the files provider - Resolves: upstream#3646 - SSSD's GPO code ignores ad_site option - Resolves: upstream#3679 - Make nss netgroup requests more robust - Resolves: upstream#3634 - sssctl COMMAND --help fails if sssd is not configured - Resolves: upstream#3469 - extend sss-certmap man page regarding priority processing - Improve docs/debug message about GC detection - Resolves: upstream#3715 - ipa 389-ds-base crash in krb5-libs - k5_copy_etypes list out of bound? - Resolves: upstream#2653 - Group renaming issue when "id_provider = ldap" is set. - Document which principal does the AD provider use - Resolves: upstream#3680 - GPO: SSSD fails to process GPOs If a rule is defined, but contains no SIDs - Resolves: upstream#3520 - Files provider supports only BE_FILTER_ENUM - Resolves: rhbz#1540703 - FreeIPA/SSSD implicit_file sssd_nss error: The Data Provider returned an error [org.freedesktop.sssd.Error.DataProvider.Fatal]- Resolves: upstream#3573 - sssd won't show netgroups with blank domain - Resolves: upstream#3660 - confdb_expand_app_domains() always fails - Resolves: upstream#3658 - Application domain is not interpreted correctly - Resolves: upstream#3687 - KCM: Don't pass a non null terminated string to json_loads() - Resolves: upstream#3386 - KCM: Payload buffer is too small - Resolves: upstream#3666 - Fix usage of str.decode() in our tests - A few KCM misc fixes- New upstream release 1.16.1 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_16_1.html- Resolves: upstream#3621 - backport bug found by static analyzers- Resolves: rhbz#1538643 - SSSD crashes when retrieving a Desktop Profile with no specific host/hostgroup set - Resolves: upstream#3621 - FleetCommander integration must not require capability DAC_OVERRIDE- Resolves: upstream#3618 - selinux_child segfaults in a docker container- Resolves: rhbz#1431153 - sssd: libsss_proxy.so needs to be linked with -ldl- Fix systemd executions/requirements- Fix building on rawhide. Remove -Wl,-z,defs from LDFLAGS- Fix building of sssd-nfs-idmap with libnfsidmap.so.1- Rebuilt for libnfsidmap.so.1- Resolves: upstream#3523 - ABRT crash - /usr/libexec/sssd/sssd_nss in setnetgrent_result_timeout - Resolves: upstream#3588 - sssd_nss consumes more memory until restarted or machine swaps - Resolves: failure in glibc tests https://sourceware.org/bugzilla/show_bug.cgi?id=22530 - Resolves: upstream#3451 - When sssd is configured with id_provider proxy and auth_provider ldap, login fails if the LDAP server is not allowing anonymous binds - Resolves: upstream#3285 - SSSD needs restart after incorrect clock is corrected with AD - Resolves: upstream#3586 - Give a more detailed debug and system-log message if krb5_init_context() failed - Resolves: rhbz#1431153 - SSSD ships a drop-in configuration snippet in /etc/systemd/system - Backport few upstream features from 1.16.1- Resolves: rhbz#1494002 - sssd_nss crashed in cache_req_search_domains_next- Backport extended NSS API from upstream master branch- Resolves: upstream#3529 - sssd-kcm Fix restart during/after upgrade- New upstream release 1.16.0 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_16_0.html- Resolves: rhbz#1499354 - CVE-2017-12173 sssd: unsanitized input when searching in local cache database access on the sock_file system_bus_socket- Resolves: rhbz#1488327 - SELinux is preventing selinux_child from write access on the sock_file system_bus_socket - Resolves: rhbz#1490402 - SSSD does not create /var/lib/sss/deskprofile and fails to download desktop profile data - Resolves: upstream#3485 - getsidbyid does not work with 1.15.3 - Resolves: upstream#3488 - SUDO doesn't work for IPA users on IPA clients after applying ID Views for them in IPA server - Resolves: upstream#3501 - Accessing IdM kerberos ticket fails while id mapping is applied- Backport few upstream patches/fixes- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild- New upstream release 1.15.3 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_3.html- Rebuild with libldb-1.2.0- Fix build issues: Update expided certificate in unit tests- Resolves: rhbz#1445680 - Properly fall back to local Smartcard authentication - Resolves: rhbz#1437199 - sssd-nfs-idmap-1.15.2-1.fc25.x86_64 conflicts with file from package sssd-common-1.15.1-1.fc25.x86_64 - Resolves: rhbz#1063278 - sss_ssh_knownhostsproxy doesn't fall back to ipv4- Fix issue with IPA + SELinux in containers - Resolves: upstream https://fedorahosted.org/sssd/ticket/3297- Backport upstream patches for 1.15.3 pre-release - required for building freeipa-4.5.x in rawhide- New upstream release 1.15.2 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_2.html- New upstream release 1.15.1 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_1.html- Cherry-pick patches from upstream that enable the files provider - Enable the files domain - Retire patch 0501-Partially-revert-CONFIG-Use-default-config-when-none.patch which is superseded by the files domain autoconfiguration - Related: rhbz#1357418 - SSSD fast cache for local users- Add missing %license macro- Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild- New upstream release 1.15.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.15.0- Rebuild for Python 3.6- Resolves: rhbz#1369130 - nss_sss should not link against libpthread - Resolves: rhbz#1392916 - sssd failes to start after update - Resolves: rhbz#1398789 - SELinux is preventing sssd from 'write' accesses on the directory /etc/sssd- New upstream release 1.14.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.2- libwbclient-sssd: update interface to version 0.13- Fix regression with krb5_map_user - Resolves: rhbz#1375552 - krb5_map_user doesn't seem effective anymore - Resolves: rhbz#1349286 - authconfig fails with SSSDConfig.NoDomainError: default if nonexistent domain is mentioned- Backport important patches from upstream 1.14.2 prerelease - Resolves: upstream #3154 - sssd exits if clock is adjusted backwards after boot - Resolves: upstream #3163 - resolving IPA nested user group is broken in 1.14- New upstream release 1.14.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.1- Add workaround patch for RHBZ #1366403- https://fedoraproject.org/wiki/Changes/Automatic_Provides_for_Python_RPM_Packages- New upstream release 1.14.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.0- New upstream release 1.14 beta - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.0beta- New upstream release 1.14 alpha - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.0alpha- Resolves: rhbz#1335639 - [abrt] sssd-dbus: ldb_msg_find_element(): sssd_ifp killed by SIGSEGV- Resolves: rhbz#1328108 - Protocol error with FreeIPA on CentOS 6- New upstream release 1.13.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.4- Resolves: rhbz#1276868 - Sudo PAM Login should support multiple password prompts (e.g. Password + Token) - Resolves: rhbz#1313041 - ssh with sssd proxy fails with "Connection closed by remote host" if locale not available- Resolves: rhbz#1310664 - [RFE] IPA: resolve external group memberships of IPA groups during getgrnam and getgrgid - Resolves: rhbz#1301303 - sss_obfuscate: SyntaxError: Missing parentheses in call to 'print'- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild- Additional upstream fixes- Resolves: rhbz#1256849 - SUDO: Support the IPA schema- New upstream release 1.13.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.3- New upstream release 1.13.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.2- Rebuilt for Python3.5 rebuild- Fix building pac responder with the krb5-1.14- python-sssdconfig: Fix parssing sssd.conf without config_file_version - Resolves: upstream #2837 - REGRESSION: ipa-client-automout failed- Fix few segfaults - Resolves: upstream #2811 - PAM responder crashed if user was not set - Resolves: upstream #2810 - sssd_be crashed in ipa_srv_ad_acct_lookup_step- New upstream release 1.13.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.1- Fix OTP bug - Resolves: upstream #2729 - Do not send SSS_OTP if both factors were entered separately- Backport upstream patches required by FreeIPA 4.2.1- Fix ipa-migration bug - Resolves: upstream #2719 - IPA: returned unknown dp error code with disabled migration mode- New upstream release 1.13.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.0- Unify return type of list_active_domains for python{2,3}- New upstream release 1.13 alpha - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.0alpha- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild- Fix libwbclient alternatives- Backport important patches from upstream 1.13 prerelease- New upstream release 1.12.5 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.5- Backport important patches from upstream 1.13 prerelease - Resolves: rhbz#1060325 - Does sssd-ad use the most suitable attribute for group name - Resolves: upstream #2335 - Investigate using the krb5 responder for driving the PAM conversation with OTPs - Enable cmocka tests for secondary architectures- Backport patches from upstream 1.12.5 prerelease - contains many fixes- Fix slow login with ipa and SELinux - Resolves: upstream #2624 - Only set the selinux context if the context differs from the local one- Fix regressions with ipa and SELinux - Resolves: upstream #2587 - With empty ipaselinuxusermapdefault security context on client is staff_u- Also relax libldb Requires - Remove --enable-ldb-version-check- Relax libldb BuildRequires to be greater-or-equal- Add support for python3 bindings - Add requirement to python3 or python3 bindings - Resolves: rhbz#1014594 - sssd: Support Python 3- New upstream release 1.12.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.4- Backport patches with Python3 support from upstream- Fix double free in monitor - Resolves: rhbz#1186887 [abrt] sssd-common: talloc_abort(): sssd killed by SIGABRT- Rebuild for new libldb- Decrease priority of sssd-libwbclient 20 -> 5 - It should be lower than priority of samba veriosn of libwbclient. - https://bugzilla.redhat.com/show_bug.cgi?id=1175511#c18- Apply a number of patches from upstream to fix issues found 1.12.3 - Resolves: rhbz#1176373 - dyndns_iface does not accept multiple interfaces, or isn't documented to be able to - Resolves: rhbz#988068 - getpwnam_r fails for non-existing users when sssd is not running - Resolves: upstream #2557 authentication failure with user from AD- Resolves: rhbz#1164156 - libsss_simpleifp should pull sssd-dbus - Resolves: rhbz#1179379 - gzip: stdin: file size changed while zipping when rotating logfile- New upstream release 1.12.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.3 - Fix spelling errors in description (fedpkg lint)- Rebuild for libldb 1.1.19- Resolves: rhbz#1175511 - sssd-libwbclient conflicts with Samba's and causes crash in wbinfo - in addition to the patch libwbclient.so is filtered out of the Provides list of the package- Fix regressions and bugs in sssd upstream 1.12.2 - https://fedorahosted.org/sssd/ticket/{id} - Regressions: #2471, #2475, #2483, #2487, #2529, #2535 - Bugs: #2287, #2445- Rebuild for libldb 1.1.18- Fix typo in libwbclient-devel %preun- Use alternatives for libwbclient- Backport several patches from upstream. - Fix a potential crash against old (pre-4.0) IPA servers- New upstream release 1.12.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.2- Resolves: rhbz#1139962 - Fedora 21, FreeIPA 4.0.2: sssd does not find user private group from server- New upstream release 1.12.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.1- Do not crash on resolving a group SID in IPA server mode- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild- Fix release version for upgrades- New upstream release 1.12.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild- New upstream release 1.12 beta2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0beta2- Fix tests on big-endian - Fix previous changelog entry- New upstream release 1.12 beta1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0beta1- Rebuild against new ding-libs- Make LDB dependency a strict equivalency- Rebuild against new libldb- New upstream release 1.11.5.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.5.1- Fix bug in generation of systemd unit file- New upstream release 1.11.5 - Remove upstreamed patch - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.5- Handle new error code for IPA password migration- Include couple of patches from upstream 1.11 branch- New upstream release 1.11.4 - Remove upstreamed patch - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.4- Handle OTP response from FreeIPA server gracefully- New upstream release 1.11.3 - Remove upstreamed patches - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.3- New upstream release 1.11.2 - Remove upstreamed patches - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.2- Fix potential crash with external groups in trusted IPA-AD setup- Add plugin for cifs-utils - Resolves: rhbz#998544- Fix failover from Global Catalog to LDAP in case GC is not available- Remove the ability to create public ccachedir (#1015089)- New upstream release 1.11.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.1- Fix multicast checks in the SSSD - Resolves: rhbz#1007475 - The multicast check is wrong in the sudo source code getting the host info- Backport simplification of ccache management from 1.11.1 - Resolves: rhbz#1010553 - sssd setting KRB5CCNAME=(null) on login- New upstream release 1.11.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0- Resolves: #967012 - [abrt] sssd-1.9.5-1.fc18: sss_mmap_cache_gr_invalidate_gid: Process /usr/libexec/sssd/sssd_nss was killed by signal 11 (SIGSEGV) - Resolves: #996214 - sssd proxy_child segfault- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild- Resolves: #906427 - Do not use %{_lib} in specfile for the nss and pam libraries- New upstream release 1.11 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0beta2- New upstream release 1.10.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.1- sssd-tools should require sssd-common, not sssd- Move sssd_pac to the sssd-ipa and sssd-ad subpackages - Trim out RHEL5-specific macros since we don't build on RHEL 5 - Trim out macros for Fedora older than F18 - Update libldb requirement to 1.1.16 - Trim RPM changelog down to the last year- Move sssd_pac to the sssd-krb5 subpackage- Fix Obsoletes: to account for dist tag - Convert post and pre scripts to run on the sssd-common subpackage - Remove old conversion from SYSV- New upstream release 1.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0- the cmocka toolkit exists only on selected arches- Apply a number of patches from upstream to fix issues found post-beta, in particular: -- segfault with a high DEBUG level -- Fix IPA password migration (upstream #1873) -- Fix fail over when retrying SRV resolution (upstream #1886)- Only BuildRequire libcmocka on Fedora- Fix typo in Requires that prevented an upgrade (#973916) - Use a hardcoded version in Conflicts, not less-than-current- Enable hardened build for RHEL7- New upstream release 1.10 beta2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta2 - BuildRequire libcmocka-devel in order to run all upstream tests during build - BuildRequire libnl3 instead of libnl1 - No longer BuildRequire initscripts, we no longer use /sbin/service - Remove explicit krb5-libs >= 1.10 requires; this platform doensn't carry any older krb5-libs version- Apply a couple of patches from upstream git that resolve crashes when ID mapping object was not initialized properly but needed later- Resolves: rhbz#961357 - Missing dyndns_update entry in sssd.conf during realm join - Resolves: rhbz#961278 - Login failure: Enterprise Principal enabled by default for AD Provider - Resolves: rhbz#961251 - sssd does not create user's krb5 ccache dir/file parent directory when logging in- BuildRequire recent libini_config to ensure consistent behaviour- Explicitly Require libini_config >= 1.0.0.1 to work around a SONAME bug in ding-libs - Fix SSH integration with fully-qualified domains - Add the ability to dynamically discover the NetBIOS name- New upstream release 1.10 beta1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta1- Add a patch to fix krb5 ccache creation issue with krb5 1.11- New upstream release 1.10 alpha1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0alpha1- Add a patch to fix krb5 unit tests- Split internal helper libraries into a shared object - Significantly reduce disk-space usage- Fix the Kerberos password expiration warning (#912223)- Do not write out dots in the domain-realm mapping file (#905650)- Include upstream patch to build with krb5-1.11- Rebuild against new libldb- Fix build with new automake versions- Recreate Kerberos ccache directory if it's missing - Resolves: rhbz#853558 - [sssd[krb5_child[PID]]]: Credential cache directory /run/user/UID/ccdir does not exist- Fix changelog dates to make F19 rpmbuild happy- New upstream release 1.9.4- New upstream release 1.9.3- Resolve groups from AD correctly- Check the validity of naming context- Move the sss_cache tool to the main package- Include the 1.9.2 tarball- New upstream release 1.9.2- New upstream release 1.9.1- require the latest libldb- Use mcpath insted of mcachepath macro to be consistent with upsteam spec file- New upstream release 1.9.0- New upstream release 1.9.0 rc1- New upstream release 1.9.0 beta7 - obsoletes patches #1-#3- Rebuild against libldb 1.12- Rebuild against libldb 1.11- Change the default ccache location to DIR:/run/user/${UID}/krb5cc and patch man page accordingly - Resolves: rhbz#851304- Rebuild against libldb 1.10- Only create the SELinux login file if there are SELinux mappings on the IPA server- Don't discard HBAC rule processing result if SELinux is on Resolves: rhbz#846792 (CVE-2012-3462)- New upstream release 1.9.0 beta 6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta6 - A new option, override_shell was added. If this option is set, all users managed by SSSD will have their shell set to its value. - Fixes for the support for setting default SELinux user context from FreeIPA. - Fixed a regression introduced in beta 5 that broke LDAP SASL binds - The SSSD supports the concept of a Primary Server and a Back Up Server in failover - A new command-line tool sss_seed is available to help prime the cache with a user record when deploying a new machine - SSSD is now able to discover and save the domain-realm mappings between an IPA server and a trusted Active Directory server. - Packaging changes to fix ldconfig usage in subpackages (#843995) - Rebuild against libldb 1.1.9- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- New upstream release 1.9.0 beta 5 - Obsoletes the patch for missing DP_OPTION_TERMINATOR in AD provider options - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta5 - Many fixes for the support for setting default SELinux user context from FreeIPA, most notably fixed the specificity evaluation - Fixed an incorrect default in the krb5_canonicalize option of the AD provider which was preventing password change operation - The shadowLastChange attribute value is now correctly updated with the number of days since the Epoch, not seconds- Fix broken ARM build - Add missing DP_OPTION_TERMINATOR in AD provider options- Own several directories create during make install (#839782)- New upstream release 1.9.0 beta 4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta4 - Add a new AD provider to improve integration with Active Directory 2008 R2 or later servers - SUDO integration was completely rewritten. The new implementation works with multiple domains and uses an improved refresh mechanism to download only the necessary rules - The IPA authentication provider now supports subdomains - Fixed regression for setups that were setting default_tkt_enctypes manually by reverting a previous workaround.- New upstream release 1.9.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta3 - Add a new PAC responder for dealing with cross-realm Kerberos trusts - Terminate idle connections to the NSS and PAM responders- Switch unicode library from libunistring to Glib - Drop unnecessary explicit Requires on keyutils - Guarantee that versioned Requires include the correct architecture- Fix accidental disabling of the DIR cache support- New upstream release 1.9.0 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta2 - Add support for the Kerberos DIR cache for storing multiple TGTs automatically - Major performance enhancement when storing large groups in the cache - Major performance enhancement when performing initgroups() against Active Directory - SSSDConfig data file default locations can now be set during configure for easier packaging- Fix regression in endianness patch- Rebuild SSSD against ding-libs 0.3.0beta1 - Fix endianness bug in service map protocol- Fix several regressions since 1.5.x - Ensure that the RPM creates the /var/lib/sss/mc directory - Add support for Netscape password warning expiration control - Rebuild against libldb 1.1.6- New upstream release 1.9.0 beta 1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta1 - Add native support for autofs to the IPA provider - Support for ID-mapping when connecting to Active Directory - Support for handling very large (> 1500 users) groups in Active Directory - Support for sub-domains (will be used for dealing with trust relationships) - Add a new fast in-memory cache to speed up lookups of cached data on repeated requests- New upstream release 1.8.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.3 - Numerous manpage and translation updates - LDAP: Handle situations where the RootDSE isn't available anonymously - LDAP: Fix regression for users using non-standard LDAP attributes for user information- New upstream release 1.8.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.2 - Several fixes to case-insensitive domain functions - Fix for GSSAPI binds when the keytab contains unrelated principals - Fixed several segfaults - Workarounds added for LDAP servers with unreadable RootDSE - SSH knownhostproxy will no longer enter an infinite loop preventing login - The provided SYSV init script now starts SSSD earlier at startup and stops it later during shutdown - Assorted minor fixes for issues discovered by static analysis tools- Don't duplicate libsss_autofs.so in two packages - Set explicit package contents instead of globbing- Fix uninitialized value bug causing crashes throughout the code - Resolves: rhbz#804783 - [abrt] Segfault during LDAP 'services' lookup- New upstream release 1.8.1 - Resolve issue where we could enter an infinite loop trying to connect to an auth server - Fix serious issue with complex (3+ levels) nested groups - Fix netgroup support for case-insensitivity and aliases - Fix serious issue with lookup bundling resulting in requests never completing - IPA provider will now check the value of nsAccountLock during pam_acct_mgmt in addition to pam_authenticate - Fix several regressions in the proxy provider - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#799031 - --debug option for sss_debuglevel doesn't work- New upstream release 1.8.0 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental) - Include the IPA AutoFS provider - Fixed several memory-corruption bugs - Fixed a regression in group enumeration since 1.7.0 - Fixed a regression in the proxy provider - Resolves: rhbz#741981 - Separate Cache Timeouts for SSSD - Resolves: rhbz#797968 - sssd_be: The requested tar get is not configured is logged at each login - Resolves: rhbz#754114 - [abrt] sssd-1.6.3-1.fc16: ping_check: Process /usr/sbin/sssd was killed by signal 11 (SIGSEGV) - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - Resolves: rhbz#786957 - sssd and kerberos should change the default location for create the Credential Cashes to /run/usr/USERNAME/krb5cc- Change default kerberos credential cache location to /run/user/- New upstream release 1.8.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta3 - Fixed a regression in group enumeration since 1.7.0 - Fixed several memory-corruption bugs - Finalized the ABI for the autofs support - Fixed a regression in the proxy provider- Rebuild against PCRE 8.30- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta2 - Fix two minor manpage bugs - Include the IPA AutoFS provider- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta1 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental)- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - fix netgroups and sudo as well- Fixes a serious memory hierarchy bug causing unpredictable behavior in the LDAP provider.- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- New upstream release 1.7.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.7.0 - Support for case-insensitive domains - Support for multiple search bases in the LDAP provider - Support for the native FreeIPA netgroup implementation - Reliability improvements to the process monitor - New DEBUG facility with more consistent log levels - New tool to change debug log levels without restarting SSSD - SSSD will now disconnect from LDAP server when idle - FreeIPA HBAC rules can choose to ignore srchost options for significant performance gains - Assorted performance improvements in the LDAP provider- New upstream release 1.6.4 - Rolls up previous patches applied to the 1.6.3 tarball - Fixes a rare issue causing crashes in the failover logic - Fixes an issue where SSSD would return the wrong PAM error code for users that it does not recognize.- Rebuild against libldb 1.1.4- Resolves: rhbz#753639 - sssd_nss crashes when passed invalid UTF-8 for the username in getpwnam() - Resolves: rhbz#758425 - LDAP failover not working if server refuses connections- Rebuild for libldb 1.1.3- Resolves: rhbz#752495 - Crash when apply settings- New upstream release 1.6.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.3 - Fixes a major cache performance issue introduced in 1.6.2 - Fixes a potential infinite-loop with certain LDAP layouts- Rebuilt for glibc bug#747377- Change selinux policy requirement to Conflicts: with the old version, rather than Requires: the supported version.- Add explicit requirement on selinux-policy version to address new SBUS symlinks.- Remove %files reference to sss_debuglevel copied from wrong upstreeam spec file.- Improved handling of users and groups with multi-valued name attributes (aliases) - Performance enhancements Initgroups on RFC2307bis/FreeIPA HBAC rule processing - Improved process-hang detection and restarting - Enabled the midpoint cache refresh by default (fewer cache misses on commonly-used entries) - Cleaned up the example configuration - New tool to change debug level on the fly- New upstream release 1.6.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.1 - Fixes a serious issue with LDAP connections when the communication is dropped (e.g. VPN disconnection, waking from sleep) - SSSD is now less strict when dealing with users/groups with multiple names when a definitive primary name cannot be determined - The LDAP provider will no longer attempt to canonicalize by default when using SASL. An option to re-enable this has been provided. - Fixes for non-standard LDAP attribute names (e.g. those used by Active Directory) - Three HBAC regressions have been fixed. - Fix for an infinite loop in the deref code- Build with _hardened_build macro- New upstream release 1.6.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.0 - Add host access control support for LDAP (similar to pam_host_attr) - Finer-grained control on principals used with Kerberos (such as for FAST or - validation) - Added a new tool sss_cache to allow selective expiring of cached entries - Added support for LDAP DEREF and ASQ controls - Added access control features for Novell Directory Server - FreeIPA dynamic DNS update now checks first to see if an update is needed - Complete rewrite of the HBAC library - New libraries: libipa_hbac and libipa_hbac-python- New upstream release 1.5.11 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.11 - Fix a serious regression that prevented SSSD from working with ldaps:// URIs - IPA Provider: Fix a bug with dynamic DNS that resulted in the wrong IPv6 - address being saved to the AAAA record- New upstream release 1.5.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.10 - Fixed a regression introduced in 1.5.9 that could result in blocking calls - to LDAP- New upstream release 1.5.9 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.9 - Support for overriding home directory, shell and primary GID locally - Properly honor TTL values from SRV record lookups - Support non-POSIX groups in nested group chains (for RFC2307bis LDAP - servers) - Properly escape IPv6 addresses in the failover code - Do not crash if inotify fails (e.g. resource exhaustion) - Don't add multiple TGT renewal callbacks (too many log messages)- New upstream release 1.5.8 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.8 - Support for the LDAP paging control - Support for multiple DNS servers for name resolution - Fixes for several group membership bugs - Fixes for rare crash bugs- Resolves: rhbz#706740 - Orphaned links on rc0.d-rc6.d - Make sure to properly convert to systemd if upgrading from newer - updates for Fedora 14- Fix segfault in TGT renewal- Resolves: rhbz#700891 - CVE-2011-1758 sssd: automatic TGT renewal overwrites - cached password with predicatable filename- Re-add manpage translations- New upstream release 1.5.6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.6 - Fixed a serious memory leak in the memberOf plugin - Fixed a regression with the negative cache that caused it to be essentially - nonfunctional - Fixed an issue where the user's full name would sometimes be removed from - the cache - Fixed an issue with password changes in the kerberos provider not working - with kpasswd- Resolves: rhbz#697057 - kpasswd fails when using sssd and - kadmin server != kdc server - Upgrades from SysV should now maintain enabled/disabled status- Fix %postun- Fix systemd conversion. Upgrades from SysV to systemd weren't properly - enabling the systemd service. - Fix a serious memory leak in the memberOf plugin - Fix an issue where the user's full name would sometimes be removed - from the cache- Install systemd unit file instead of sysv init script- New upstream release 1.5.5 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.5 - Fixes for several crash bugs - LDAP group lookups will no longer abort if there is a zero-length member - attribute - Add automatic fallback to 'cn' if the 'gecos' attribute does not exist- New upstream release 1.5.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.4 - Fixes for Active Directory when not all users and groups have POSIX attributes - Fixes for handling users and groups that have name aliases (aliases are ignored) - Fix group memberships after initgroups in the IPA provider- Resolves: rhbz#683267 - sssd 1.5.1-9 breaks AD authentication- New upstream release 1.5.3 - Support for libldb >= 1.0.0- New upstream release 1.5.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.2 - Fixes for support of FreeIPA v2 - Fixes for failover if DNS entries change - Improved sss_obfuscate tool with better interactive mode - Fix several crash bugs - Don't attempt to use START_TLS over SSL. Some LDAP servers can't handle this - Delete users from the local cache if initgroups calls return 'no such user' - (previously only worked for getpwnam/getpwuid) - Use new Transifex.net translations - Better support for automatic TGT renewal (now survives restart) - Netgroup fixes- Rebuild sssd against libldb 1.0.2 so the memberof module loads again. - Related: rhbz#677425- Resolves: rhbz#677768 - name service caches names, so id command shows - recently deleted users- Ensure that SSSD builds against libldb-1.0.0 on F15 and later - Remove .la for memberOf- Fix memberOf install path- Add support for libldb 1.0.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Fix nested group member filter sanitization for RFC2307bis - Put translated tool manpages into the sssd-tools subpackage- Restore Requires: cyrus-sasl-gssapi as it is not auto-detected during - rpmbuild- New upstream release 1.5.1 - Addresses CVE-2010-4341 - DoS in sssd PAM responder can prevent logins - Vast performance improvements when enumerate = true - All PAM actions will now perform a forced initgroups lookup instead of just - a user information lookup - This guarantees that all group information is available to other - providers, such as the simple provider. - For backwards-compatibility, DNS lookups will also fall back to trying the - SSSD domain name as a DNS discovery domain. - Support for more password expiration policies in LDAP - 389 Directory Server - FreeIPA - ActiveDirectory - Support for ldap_tls_{cert,key,cipher_suite} config options -Assorted bugfixes- CVE-2010-4341 - DoS in sssd PAM responder can prevent logins- New upstream release 1.5.0 - Fixed issues with LDAP search filters that needed to be escaped - Add Kerberos FAST support on platforms that support it - Reduced verbosity of PAM_TEXT_INFO messages for cached credentials - Added a Kerberos access provider to honor .k5login - Addressed several thread-safety issues in the sss_client code - Improved support for delayed online Kerberos auth - Significantly reduced time between connecting to the network/VPN and - acquiring a TGT - Added feature for automatic Kerberos ticket renewal - Provides the kerberos ticket for long-lived processes or cron jobs - even when the user logs out - Added several new features to the LDAP access provider - Support for 'shadow' access control - Support for authorizedService access control - Ability to mix-and-match LDAP access control features - Added an option for a separate password-change LDAP server for those - platforms where LDAP referrals are not supported - Added support for manpage translations- Solve a shutdown race-condition that sometimes left processes running - Resolves: rhbz#606887 - SSSD stops on upgrade- Log startup errors to the syslog - Allow cache cleanup to be disabled in sssd.conf- New upstream release 1.4.1 - Add support for netgroups to the proxy provider - Fixes a minor bug with UIDs/GIDs >= 2^31 - Fixes a segfault in the kerberos provider - Fixes a segfault in the NSS responder if a data provider crashes - Correctly use sdap_netgroup_search_base- Fix incorrect tarball URL- New upstream release 1.4.0 - Added support for netgroups to the LDAP provider - Performance improvements made to group processing of RFC2307 LDAP servers - Fixed nested group issues with RFC2307bis LDAP servers without a memberOf plugin - Build-system improvements to support Gentoo - Split out several libraries into the ding-libs tarball - Manpage reviewed and updated- Fix pre and post script requirements- Resolves: rhbz#606887 - sssd stops on upgrade- Resolves: rhbz#626205 - Unable to unlock screen- Resolves: rhbz#637955 - libini_config-devel needs libcollection-devel but - doesn't require it- Resolves: rhbz#632615 - the krb5 locator plugin isn't packaged for multilib- Resolves: CVE-2010-2940 - sssd allows null password entry to authenticate - against LDAP- Rebuilt for https://fedoraproject.org/wiki/Features/Python_2.7/MassRebuild- New upstream version 1.2.91 (1.3.0rc1) - Improved LDAP failover - Synchronous sysdb API (provides performance enhancements) - Better online reconnection detection- New stable upstream version 1.2.1 - Resolves: rhbz#595529 - spec file should eschew %define in favor of - %global - Resolves: rhbz#593644 - Empty list of simple_allow_users causes sssd service - to fail while restart. - Resolves: rhbz#599026 - Makefile typo causes SSSD not to use the kernel - keyring - Resolves: rhbz#599724 - sssd is broken on Rawhide- New stable upstream version 1.2.0 - Support ServiceGroups for FreeIPA v2 HBAC rules - Fix long-standing issue with auth_provider = proxy - Better logging for TLS issues in LDAP- New LDAP access provider allows for filtering user access by LDAP attribute - Reduced default timeout for detecting offline status with LDAP - GSSAPI ticket lifetime made configurable - Better offline->online transition support in Kerberos- Release new upstream version 1.1.91 - Enhancements when using SSSD with FreeIPA v2 - Support for deferred kinit - Support for DNS SRV records for failover- Bump up release number to avoid library sub-packages version issues with previous releases.- New upstream release 1.1.1 - Fixed the IPA provider (which was segfaulting at start) - Fixed a bug in the SSSDConfig API causing some options to revert to - their defaults - This impacted the Authconfig UI - Ensure that SASL binds to LDAP auto-retry when interrupted by a signal- Release SSSD 1.1.0 final - Fix two potential segfaults - Fix memory leak in monitor - Better error message for unusable confdb- Release candidate for SSSD 1.1 - Add simple access provider - Create subpackages for libcollection, libini_config, libdhash and librefarray - Support IPv6 - Support LDAP referrals - Fix cache issues - Better feedback from PAM when offline- Rebuild against new libtevent- Fix licenses in sources and on RPMs- Fix regression on 64-bit platforms- Fixes link error on platforms that do not do implicit linking - Fixes double-free segfault in PAM - Fixes double-free error in async resolver - Fixes support for TCP-based DNS lookups in async resolver - Fixes memory alignment issues on ARM processors - Manpage fixes- Fixes a bug in the failover code that prevented the SSSD from detecting when it went back online - Fixes a bug causing long (sometimes multiple-minute) waits for NSS requests - Several segfault bugfixes- Fix CVE-2010-0014- Patch SSSDConfig API to address - https://bugzilla.redhat.com/show_bug.cgi?id=549482- New upstream stable release 1.0.0- New upstream bugfix release 0.99.1- New upstream release 0.99.0- Fix segfault in sssd_pam when cache_credentials was enabled - Update the sample configuration - Fix upgrade issues caused by data provider service removal- Fix upgrade issues from old (pre-0.5.0) releases of SSSD- New upstream release 0.7.0- Fix missing file permissions for sssd-clients- Add SSSDConfig API - Update polish translation for 0.6.0 - Fix long timeout on ldap operation - Make dp requests more robust- Ensure that the configuration upgrade script always writes the config file with 0600 permissions - Eliminate an infinite loop in group enumerations- New upstream release 0.6.0- New upstream release 0.5.0- Fix for CVE-2009-2410 - Native SSSD users with no password set could log in without a password. (Patch by Stephen Gallagher)- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- Fix a couple of segfaults that may happen on reload- add missing configure check that broke stopping the daemon - also fix default config to add a missing required option- latest upstream release. - also add a patch that fixes debugging output (potential segfault)- release out of the official 0.3.2 tarball- bugfix release 0.3.2 - includes previous release patches - change permissions of the /etc/sssd/sssd.conf to 0600- Add last minute bug fixes, found in testing the package- Version 0.3.1 - includes previous release patches- Try to fix build adding automake as an explicit BuildRequire - Add also a couple of last minute patches from upstream- Version 0.3.0 - Provides file based configuration and lots of improvements- Version 0.2.1- Version 0.2.0- package git snapshot- fixed items found during review - added initscript- added sss_client- Small cleanup and fixes in the spec file- Initial release (based on version 0.1.0 upstream code)/bin/sh/bin/sh/bin/sh svuk2.5.2-1.el82.5.2-1.el82.5.2-1.el8 kcm_default_ccache.build-idd0c266f20b5ad9d7c647867ee5db42ca2b9cc87efafe2ebb3676d08da14445ed0d57e1b7cc6c82efsssd-kcm.servicesssd-kcm.socketlibsss_secrets.sosssd_kcmsssd-kcm.8.gzsssd-kcm.8.gzsssd-kcm.8.gzsssd-kcmkcm_default_ccache/etc/krb5.conf.d//usr/lib//usr/lib/.build-id//usr/lib/.build-id/d0//usr/lib/.build-id/fa//usr/lib/systemd/system//usr/lib64/sssd//usr/libexec/sssd//usr/share/man/man8//usr/share/man/sv/man8//usr/share/man/uk/man8//usr/share//usr/share/sssd-kcm/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -mcpu=power8 -mtune=power8 -funwind-tables -fstack-clash-protectioncpioxz2ppc64le-redhat-linux-gnuASCII textdirectoryELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, BuildID[sha1]=d0c266f20b5ad9d7c647867ee5db42ca2b9cc87e, strippedELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, interpreter /lib64/ld64.so.2, for GNU/Linux 3.10.0, BuildID[sha1]=fafe2ebb3676d08da14445ed0d57e1b7cc6c82ef, strippedtroff or preprocessor input, ASCII text, with very long lines (gzip compressed data, max compression, from Unix)troff or preprocessor input, UTF-8 Unicode text, with very long lines (gzip compressed data, max compression, from Unix)-PRRR)R%RRRR RR*RRRRRRRR R RR,R(R R!R&RR3R+R'R/RRRRR R)RRR-RRRR RR.R%R R!RR"R#R$RRRR RR*RRRRRRRR R,R(R R&RR3utf-8c7d22df80b06b104de3ceed9dc4b60229af89047dea9bcbf182c540a4bf143be?7zXZ !#,֬] b2u Q{LQ wF*IV\gMasT<&Wìw8qk_ݬIL L)]oF&I 5*b%7Ϝ.;Eqnbo=3oJۈdYf6qUJ&H( 8(o"T+c@4l!kwX aڮos)8sJWťt^.4]}.Q%+kL %:; /̈́k4V/)EkJB A'\ e*3"ri]Vs}(%v2(_%iMx\Tla~+ེ%YۭKi+dQO@;nH!mQՒgڣr߮&_5`X2 vX@J4"By}-7crk^(A$rR恜qwSm+zi]_Io;B+Ihǖ4o{Q,jnUni ҙŹIJe&M 4ې0K4x$ bV]%6`Nj۠D_MlK~54UeF4 w8ǒ} 6Nz*ofN*<DpOiat]yYt@^k:lȀ;Oe鵞Uy pɩ@iUhg.c8;Ijq1 trg:-D]ô~ j! u*,,)6|:P@ƇJ@C/ln]:[Rʁsg{7;qKӌ+g"2$[:zXXvr8uepz |qṉ-vP}3Uu=_35KZח*֕W{̖Pyxod8nTV 4QzpV-Z64*>o>Y7TSс%SFJpAqv1Nf]h{\vZ#-zwʙ޳F5$)Bm ]-) f9F8=s!Q|nܡV My<3|(R+5$N^n4ԭ^ȟL1g" nlis 83m]l`C˒S65!L*6ȝ^V+=ҜuEOZxF! e Op5b۫> f`+B侸#7YӪ3D:#UBc+ 0RծsQ8X-]x13oJl@]ZA NXILɞ<,{{6KXDMo"w)MUcX@\m kDhnya ~,:u$fs*V`{3ELih): u+_7=EUb%*mP>a2lY)7nԪZ_.yˬLF:55תLpX Xn06 3Jnm㗍Mehxt`=N :?G6O6+QgI- vUG 3ALGh3AF9L19X cGК$[hUb)r@aZom >e/혺?7~VH9 o3GSz`Q+ev`})Wv~>i޹ P0 ^dƸr啝4.' >xL] GH.;TY% 5M?XKFH6hW_cQ$pO;a7mrgyK: QOdArqgD,X\MەJ E+`޾z?QiS 1FPC F;z7..Rźp5{ j. MJ 4X],4E.n^ rۘ<6!6m !Q,bQ=DI;<'jSg@2oq規%B8oC{;S'a3> f,!MGIڊ#V4;> < ΢"/ObWri_8qQc½>`:Ďy;U |LLpTJ-d35\*8|s^6D.|r}>lrw}`Ub6)Lg0*4b02^!nS<Zu}tQm{CR6($]8לP,* ;R:ni)\NI-'ޔkv9HUsH&bL Vd~*6AoaIt|ځK=GǮg95= 0 )i"~ǥ}uU@NgX ACKVa9>r~bV5,y/AG| c/c@c?)ҞHP} I,ӦӴ {w)V{\US'<}'IwZͅe\u4{Ef?!ӐsßEl)w:VGl6<9Ci GƖb\8ʃ 5Uܨ~Ugwi>~Ec#r|+UƪAQxZpO%wRC ۔(7Ja(~6 6[^#.5B;uI9~(7]eEQ3,C06?t~KVm }\p&lntv 8F@Fٝ# LB=H M.j|d9hᅅ-CNE pqE޲H)~|)-*n83wvG(D\3^x`v;`I!|w7/xX`xBL9XHB&(f< {>Rc[`핕ou/_D/IƔ(jX$C!B֢+z9av %׭t.>N/C11XOy:emQ*U Z!=YyH.$bL4asMN0JHoӄLrjcfE&|iX,p:< g]eZ-g0- C;9>wf[elN0 g"Kq=RVB8X [I$Aq64Clt]/wbKi0"^ڜ;>@5< ].i3em8?i$?Oi'\}0aDQꗚ ca.Bټje"vzg?HwҟbqZY^Kkؕ@?|6"Jߛu?]? uY5)tPlثUg b˼o<4kFrLxyv}7p$ }2FO0c?уP Oy 2Ӫ(yChVj*Ⓛgp6q}ez:ttx;Ap.,::w&Ͻ&zvB{km)#Vb܈a)‹=Q!,8m5N+ʣK/< .61PV]q,MY>ς}fʲQ"_2 c@&vb="/:ƛPh{B^9]8L.(HP)@Ϲ\\u?+۔D_j*jX5PJ2~;fIs3ejT6|0WLv[?Lou+S80$c6:]2Y @v!ӑc{k˙Bk krwdסzvȄL53BӒB-dݛ݆L>۫⧃HV:1y ܢ6ð%In{E3UT_ J^lb_9F51R~QK1uKk$!2F,Y> ڽ(+ܢW­ *Z,%$&) WK ^ZZwH2<#5:Z˒n/WғAԊv-Oz}RkWk{<#A!_iT')ZSCEadQJX$|xg|Qـ_ R!t4 `^pnoI ~ӫ?X4?\ɢ"*hluW㒕.(t(;>5>CS ȭKل|gU#`fϾ)|z%3]HJc(D0ϞK zqK˛p|@-/H&P_dC%ܻ6B2g1[EÉ[UrX?ն`؂ѸT#7J{n f?gOAkN^Å&Ӛ,3>| v%|5[ }k[Fy>n9lBMߓTNh? GaM෾<*$xLu&JCY '(wLLN 5*bփ451TnԁlM:`uD Sv)#NwnT 2-lR*hcZ\U~ ̵S4;&w_dn{)]1;,zjdL_u/ϰ;g1`*62]zk -uZV#?$.X DI5uou0DypVSS3GLHRr܀I2&B5_k@u/`f϶iX5<J0lv s_]#g+f@D'% a6ӽ ,0KX5k~( br&1+]rzm2;:'2P-ֿaym_Ue!?)Z>g^ 7 2|lXBtl3fHO\BuFTo+斥|0FxOtV(}4L4n kk{1c=<玢#`7x9 ?ǰ޳~ŭ5e|'䩋Dbύ=+F~Šh|1y#(@R +\lHI\0J2X ګNl5kb\2?W-x̷>\ENO Y: >7rp$^]{_C%Abf2L`n G1Îyw.+QKlG)v*"'5Px{_Ju {,c` .%2 I䵼XS+7JkA[lX؎I@(iLidDuwu`cd C@>eC pJ+{6) =xo;0e"V 63̭(;Ut=v zml%¤/)CU9Ko<^`%YJGE#$}!S_w:p4XC:>p]dSӛ/[cA1EF@¥=pdtfgbU!}>@G 9YBA[$!AQկ4n}hHlG˸A- zh%(c ;y~UnޑN hC('ӓlV}}7?Cر&I fQ;{_Pmܥ! ԸfqyLD4Qi&;G58cg{r SovIIn]nS{I2RP>0eX]HT8)8#㴔AY_YĘ2@ür3J}iذhg w*Ewk1LP=jDEA-aOt-}qKfF3[޲¯#F"G39Pݜh/@vsIh^vS!Smڅ 8,`<5.5|M`/C,^Z" nGSF˦Na ,-M>y\(5"6bی_\xR 8g\z/4kXΪOߖg9EؓC5iiM(R0 3VE0?Ҽ^*BZ5{ 5ǜ |񟖈0ڑNؔeװŔ}yv;%=A9 aN`4H}duX>Fq$Kq VqD_SzmO%ݫ+gP/8JfϾ;Mؒ@{ }#׋@k9=q%9رuΫAΈWOSz03-ԭ E>tME:׳nNM_y`w:ܧYnRPU rLfHn_ouKk-z3ٲLIzQsmco)}*tOjӖ2md[}fĵz 0k|aV'"HD\Q_L)KgI9MCqrװB31Aqzn!0]߳ބg'gfv 5 &b"ږA\j>0}g)uާ8 ;1ֳ~׋ y W8臘)d_m{@]55@UV87ꎢpb%S "a5UL kϺFv1H$!0)[U&AKb 8! W:D5>옩Fw{ 1 V--SH+Dx@v6 `}AYضy/H؛*Ls96ObՁbڈճ|.r8RFŠ/la{ хfUQ]!PvIBZS+545vy-Mx7BSF]Hؖ~@)K ME?)\55I7'O5=Nsg#9KV;H}qoZG {TɋUQ OyxJ:ٳ3OWx6aKD!;,M]FGX(e`b%fY'.D[`+"[zŖ Yoh_d2[ZVJA.j"#upf ɲ gBHMPxh@ CBILXts+%qFYz +DŽ6Ʉ^FL_ }3JM bi-o/CNx 0fxɛZ"/>݀Hns U5b[3ф<3NBQQ 0W2S1E(.BcLC2ټ t{~>4bWS,boHA`L= 43tqY𺢫3Ƶfp UX]x`SwU-Ya lI/{4jjCis]uЋ'/BiOD0)_6#[Pnb|m QMF.0Tp.wI=yyD#-Z0 ilf.ȣMUn+2xMmPZZ[]z$"vtӃYL!)=ܳlY`hCws!jO3adcL%mk2ÛUGyيrA8WG]j=keJW&Îցc7] m>w黛_jN#W}IVnEe _i' +{la;m ܏{)8c2NY^ihkfR$_o)j/ 8m^_Z [IDupRXn:(וg[yÊ^E*;bm E.oJyx3JB?ѿK[:jEBp;J j#z^MheEdYGb&d]A`3> 4X!ތp40~^?<|sa)hNW@ tbȢ@}2UGA!ȡQ,a#q=CȈzeNCO/6( 쥼$H*)lk{\mEqm5 B^hED9XY~Q4 ;y[Y\m|l5e}x'~L&)U.żCYབ?Pjt_p/^6kGD.9"4>s"~1َG/9vAhyӒ|6{ï,*zyB5֫\G|TApc(Gf&R- _^Α5!0W .…\<^B*-Jˉ?W@RF-#8B,pr SBw6mV77H!_hl$[*h_&~Ђ w &aIȨA]ղ\ln'W&fPPoac7c:9!*g\Pj31.I-Zind$oYj ?*iYV QsETgƃc|a[g 3Ԏd O؟fw aeSF fmITJP 3*\͝N% qU)V6Cr}8տa^f5m?0zplO ErPތ/AxPf)ZWI3 ɟSNG/^0b}Sd֟&SuK) fS)$ N? ooQo{R9AoH ȸȄVlJ_CN%*dKmi*'tE@/(%-D7vZm 26IMZBj>Iu t|9c~]N" IZ!Ƿɴ]"% P .0Mv9 {PF| ?֘З#%bH2?98 SLM8:&O-꘠4uXhbV1i˜]] wxIF\7IXxxיX3I:f6/?ڽ VF)gY$}<:C.rp9)n };-p7ϥ:?KZ hr ^@'m^Cc^gfc2z,-mE}j-t)V`SϽIb֞ų;6/X$CրZ=y3Tc_Ś+ emۂ48ޒ5_8+lM2*latxEsÜB$Ɉ )sx.M,%I ,L;( GĉzΓ( ʤSy`-|3G ]^?BçdQisß!  !7{(+yNK״De&\:>}> ҭn;j_fTHh(c>Ijَn /} t%^$.o;W/E\pz\NAJkiiN|wXK{޴DkZsOɊSЃ2z" Zװ|Sۀ˲T_]]mo)S2Vy3gs??揨U2HG#D5FȻm%-h?Ne1fq6ӿ~SwH*_H1;Ʌ}yS9ȃJry$_Kol`q$W|t W? u{-8fDR"POx(wa.;S&Osxݰ+T'Z)?Ƅ [^T(pXALJlkNN;iT|h(0YpIk9X` Q~3~XS>?-9<=+@D< ps6%. D ?Ffe ]IљY8#)2DQ6,;5/RkQ  Wyaqp?%wMN.XPxt?9b:P0'׮~`Dm,~&q>{? ?͙ T<`Rlc@Ave>=ʂʁSdJK*B-wN.ѮN? X"3@՟V ٯzi]S!Y/=oӅZW;*HBએph?H[9k* @`;{Hs'-BvVNf'L?!%yLJ qZN2m/Xux lRIVExj )cov X9`C;#Q g` {ё(x?ma) )'fݯNmb'M^c`@2Ub@.Gc=;3d6{-U`Ej*Ovk[ /d* jtGc(njLG3dO7Zr`yB,1hrmd+7Ɗe1֧nqFjZ d w[SE1V5p᫸:dI[1(H TF3*m/IT՚ =mĽ܇1 ܤ{K?Y}m`_'F(U$ _k x.RqV)-@ U]pW_Y$]'Abz^^-خM]:wvupEAeD>K$%z>v=A DMTmnn̾`㨳6[PX@!zϵ3IM$k=lipҌʒ3y(s@RsY XUJĆRRS{ 8Tap*Kf8B WA4YLR]GU2x/ wE,٢@ӳ<@mJ^ꑘB} Jui~EuU)z CC{Rj0 )2t^buw? mkEF#htkaK[WHUڬ›eB{0 2'Z|S"ͅT85w s^$AAa71Evp+ U :ҫR_^4QxmD ^}yO&Q2zr~Ů>7Pҫ|#w1k}ҠLJ&cJ^L"mdJÌglyyգ eLPDDn̦`w4о'kYSjSr>*gϒR thR-?hp(ӶOh w^1ʟU EJ¿}ag\߮$)9mAQ# *GKvPk[V2["Cf8A]9H #$UkL:N7 K!JAӞ_a?q(:ՉLL̠xfo20Ƭ6JmūO9UɊ~kšO``8I<{#:&(MU0R`p3[>vXNiB4#@V-1.l6Hs)P[fc`v̢}99ͥUН?Mmm~\v/fx6b3TM -їJ`<ϑ o%9 ؐyHjJ0v51eψN8d|@-QnVR%Pv0O.wLT>D\ )iF"e_qŬxCypaT7"ݭ,ndLnxB YGZG-?J\?hnIC(:q ȟh0$L\x=גS?ɺm&B}[>$^ﱸl6\$uUU c] њqh6GLQ(C~ý 5ܲnc!?(lrJ'qvu@x+t1a' sh:#?2l-hUΉoɝR,^+1 ]ñ8M(9-~gmmI`%.XBC< "q`ƕW'6!2WW6Uio ƣC.@xZyCA6]n3|<.d Vp' Qcɠ,)*j/?P+ j(Xwe3) >%(hֈ$= 3;aMW̍Bx1?ɋ a(9f` aS@%9MO: {ҏr6 As}{mM߁HK19s@iW}wK*-]MΥUaYei:{ yƷ=9a&uvon~o-EycOSp+q+CLeOy8:f/:C_P3/5} Z.Z.Su.^co315LӼ eRV$?Ύ7RhcyUd_NV"$];VS䙾Eq~ٸR;z߻ Ld.p;Iuo^]byn\oYϲRa4}>p=z)MA9B^!h2"qmKpum[3L3 q6*Â(#ct]sgGaǖ\YLİߠ[|9X nN /KHzCƮWx.+^s$NAGeQ_߰w/e&LI+0e&V5rl6TM~?0o _qQ<Ѻs5y8dnOC79󅅷jT5 9S7oEzGƛ?,dp.u[deqe٠7 |_%ㇱqXF]YOavyKzAF/g+eS !SS2"''`76n{*!v+@;XzY$2;'@Υbw,!7RZ0;&!^;\xA< :d0Zek`O%RW) %tFAt%DR|6ݽ+(/'!>GfulB੃ un/w ÆP"j~(N`ΡN\wrAs1RK\RP_:mSƦ2tѿrDP+(4(iXx:.=` } f$+ Ʈ<ܦXX5$OGYW=6eRt}ØDhJDi(|@CQ?=GZϸOy>lE>*\Mnf@;f5D6ض[ z]j[dNƴWCbw~q {JHjIGjuz7by4Йq^J!>{nc E6kh0OYo0uYԔB1P|BUЇ}%1^@ .a]- 峙=Mwssq8wvsq[%x'$Ex%|vq<`9/E#-i^Z@ Fusq;F+ɳ-˃UC&6ea_<;>6}(2ۚ4މ~wK# Wbf&fe;.ӑ 2P<.:ry5*cO^ln-4mV׿HݨtsOb iL *?y[@ +aw'8!NowpIZK^~VN .TH3@#N0pH -aʸ`cᅗ9o6 Svs"gN쵨u`36۽h1hvߠO}Jϒ T?hc7TC@Oe}&4y0( YG!-܍7#Pԫ&-늙<g8$4^ 0CV*<?gf.wHΑ`7A.rzJl <`T?2OR~Ir/p33WD$쿚D:롔P_?4/#π)I7n):@2H=cf*گFxqxe(whӦ)k7E6oMcT~y(L?ԘeȾ`1Bi? Qx[؀;B %;xtFE,C! eQdHmW2g@j_m!3eVC}ĶGoYC˃>Wڠ_!ZI$ kcn|2ng(+E$nd4%XXŴ\aS75l&a#>H88E!lw N>/Nr)@^٧;=? Y6Ӻ \vں9I9T R1IoZgnh1VO㩨E v=x̪|-/u4lČxӈb.9m!7ъ)ytF wyb8,f݋MALj'#KTl`T୯ͩT qq.`&]ވv?<}oLٱOd:pݤ kcs3?ʢטm8ۡfCКq)eIbH "Guҕ_i⩚FcPiO%6ij t+DK8Kj! eS&4CY.3Y.hմM;qHvڄ¼ЧwGV-jѨZVm*p 8,N]kSL˅v6^ڤ;rp,dEE5$Pwö^,d vNABQ'; R8 yϠf?+G6}Yu>Yo^ < * ;tec)b'=JJv!zg8y*x-`|Ltܑz$ZRvneC'*4jyu=ZiMChBn(֤黲|Y` "@mLCspJϖ~ <SEEcP7+/cmu<Q^1*S(5+fTI>z0!D׊_<1ךہNj,P4:(/6NPP*lea:)N*DA? ݾOfVKŹ7_C֒05ԫa:|IޯqmaebIj(ra_UGS IWz폤 ӑ_D*d삙/1Q^ZL1Hp7TŮРl*~IPR[1d.IZ{G!UbF MߧMOdӽ -^q6uȘf/e'R*;4y"S6N b"o`| ed|` $+ӊg Ӵt;UMNs_'ӘYFx5l!cz:K:DJ]ïx/?CnMrW%u&a4[=Vؿz\|ЉDr!Cص1@} s wבr~0Iy{ل#@0l59U&6 ۂ/?@uzj;RhlO#D2DDK !ƿ=OfS mZ*/$ Xnpbh5W4Cьc. cǡc؊PZEJ&SHu 1nQ7^;Sי98b}& XBW{QȾ)"m>dC+<G8.04jo`ìܸUW1"lylULvA3?YlcRH]VW;cNFŚӈɋ0L c[!RMoFesW{mN!&QgqeHv":vDTbv'N䖘7&ioFzdK V'zԡS׿cAnzl[Wq&*Ty]sa~[%h5dAn'ȅ?1.w[dA طT=I|)k̄MǡMϐ$ .:+|",vwYkw0] !ٰYf<ޗ^q7Qu0Yૺd2NgDv"'cR$]7REk"oFu8 /RRu;ygӸDɜN #U΁HE0P5ZynӳAyioഄ%|-7{,VBjx-xr.G_Eȳy +%Qhtr YZշ]L)b|TobxmHSAinlSif MLg 4kA)(#K\ P RE+M39ߩJHd5▢.Dž) H2z(=wSr &?+5݊vii݋;kUm7V02A{3V~#$яb*H{3eE* &8"%:fʹQ@!Gu ׆ I<l}o[HSMwp#ZcC|&MArV4i=(/]y#\`5zWI&  q*(jؽ qY^^( Nc@a:vw2 %AWux1hmwo<*c׏q݄{~™:7>V= Y E03?ЬԌ"H1ޡћ!ܵ[4 0 %Z6TioN4OvSC]p%sn2s (~6&vO-o?0?Xyꂶ7Y0a)ĕMLNv9Fvԓb;g1YUX`'\VUsخ7D>Px"IջTD5 18 ".0G2x%'O0r\\(DcGl?!tᄵI Q̱s0‘ o76(_ͳGjFȐ 3.6ADSA *+?x<3,RkTuMnBCG@?V׳P++'YD}iU |uVT+ܺeP;\Djd(O8*5TNv?mqU [ia6M Ǩŝ&BVFG0$f\Ɍf.-R*%sMM๞)1mQp hvB pnKInic\M!c^k|k#*k}G׏#:͐z 2N D7 j`I/%רq0Cۘ9xLSFr!QkB3 uaelZ( :+R(ũjs={nXqyG=5nsmi5m%ut=a_"ujyРmk:_o SNxDg>`ۿD$]ES{h}XH8_g\ȩZNвXsDBI!-̏Raϻ%YT^ m<_(c3=A酩 p  eA8tN$8lF ۙpt&?T^)3p_ ~_cP7)jE, : վfM[X.NZ|4p$ڳk+9*y/ ;g[yh+c8FTb=`0]MB_8\tO:y)%bLD[%m&· 1j݊eKn|Ǒ_p2i0-dkl#Fg CI9a^vEK5s {@pe"ٻ7D ^6B[dw~%YlrɋMLl}O p7F B^5ّ"zjWblHكmhL#̈́E|KEM1B.`6x:v.do-hh?#AcχϢGOjxOZoc!N|_EpkbF*鸆'h]#2rFZB qG-ghY'nn:C!Grwh~[L^׶~| *iꀪT4O0m%"!P 'e a{YQR~35j7{ۓ)bok { jA;T7 zhs|wO`ėj5/`J}\BU,U;'5:?L:i&6#%+\3arR%؞w*dnO>ZkgHNzPM~ud" 8LɃ+LzųM.A0xƪM]T*?r>+ɳ9W߳Q[9˫g쑆! -<o\2v!s)Z};g`!v,[?v١`[Jbhki!lzQW =VNNb{mm@."+9pxT!j={1455E78Wo$GG\_D(3<Ϊ@* jT;.PO6:~e7z)lqZj`q8 2)%!}|_H|>XbĞ9NVJ}t!דÆܖ@[!4IJR2|ǫpT:+q^OPp%yrd")y ]V4~}RR076 PDKPg0)Vk#tǜlY?|iObsc\ũO&ᶁoV>/OZGòqg,+MCӔR˞ު%ƪsr(/z5*j LKyM: ;@,Tn_0~fӑBx("2͔Wg7ʋ~>X;dBl9] aSKI| `,4ymkp+P6 HW䤢@oΚ>l5vܦPZU@F}!c~~wM|\ @tY`.H}l/uQsM$Њ77QK xG3ta,dUzN.h޽px%E(bvh묎lSulγ}5$.@š7$^N21_5tπ}o'ߓ bwHoųJX,hCAb"x^C`yDo`=:bpJ܊Q}!RIiZ̧ pP@pPUˎ"ݴr^/MicinVIʖ P$I:?Z +!+Ɩ1BO@z}9*]ja!j \A丠.Ui3 7|,k:7JCgG'QJϬ[aD?zG@Tia_u4rm2&N)zKȁ84I"mD9PH9 , H\,H #nZ`)FQ774|LdsƾURq~SX|L{H9]I_g7v{/i(c|NYF&s||_{ ,%~ш% CskԳN^?uoI4ZkNNO(wԑZ1nbvwe SR'rM:Y9LDsiX젛1[U7q!?xtS]!ݪg_z>ܔ0jT.~k0L3k N k_ FN7,R^%Axjp@ ?ĺޏ^WwaEäQT3=[`j¦s;`1Zjg54-L;@eX?yy'@U&vX <Z}oѐ߲y%ח(Kۗo`uc_bFӏKĩVEX "b@6уo1VQF*eF6g`de= sŌ" H|&9/낟P%zl)oqq#O٫|ف)Vs٧e X`8[J_O%j=KE/ /f؀Y*EIAG%]1RlSϭ XAOon`cI )~!"y y7nPf'J`*m"쵰  Q1$~$^GXۥg~QD0[cT^dC(Xv9;?(WGs!u<3{ezL O ߑpos>azw /҆1q iEBxyu(}z)Puh ڻQ-q'#2pBgѕKH*N?bԺéqAwZ)x1W3"LhzߒguVxJCjjM:"nxBb,fQ3$;aTRf> GJK N Ϝ i2;h';]H@M٩;b}y"x, pHb4y:4^;,c0wL2@"9{?Ymä8- ?((V2!+f%u' UՒV$i2EW9xh%D#0& NJĢ/ -M1V+s!oa]/%d pZ6_G`Kv%RQkQ?WAه~‚$$FWCNl8~a-c Z%|cM&(3)x_>$"w̰Bnsfi9/ITyX&|:GG!=!]_qC3iCHyb#ӄ]2|W .GSKB+G(yݶF%vT tu n?%?0bd0"Vp2]œ 5g4P=" M ^WhP ny6ǰ5 nHUX-w\KZav}J{OHXμ`.,'Z||甘T3]l?npⱁ+w.`𧜈=aeo$NV p#+`.e.AEwCƼmA0DFPzd!jjo>b3tFlA66LR/% G>>Ȯ*gsK0^Ul>*E%%Q_x/\V닁=ءkK,΂GRZoM<sLI9)"OU:-_ .Ei$T/f^l;UpWA -pU4w=3g֔ XhKL;/`uTJVs֝ԣI=^ ܙ?S'igӅ75Ϡtl\}a2f:XqK~ʸ @3GCّpC[ :)Գ sl;2SeY8N\1@oڽ(xR2/e\rXT8(`Mօba)K>~=MU6dp.\*q:0q`#՗JUC1NO*գWEz"@M5ny΋͸(U am`3Vy\ATpٜN*,98oG%ϵmt,M*`9R#C& 0,hFl3*ݿa}2CV?fhf:WYdlr?S4<{kj}=dƴh+\) ˍ ,603 "6-$Y:VNɃonv膇yH2EpQIc~=QʎDjBSlt+-w= 뀧W0e%׶(y4S7i38Adܚl( lʵmi uҭNskSM- 23M eol&5͚ *%=``;QlCYkn*aVeV=u/hN P*v6[+Tc"vj= 4 wI=>zzțAMOo]y@b./ iSB&3Q7,[ U?FHeBtUTm!Y(ΑV$ZP 9?zq\k' wByU-brU *|CAf{<IH?BS2k]aN b@S^uϹաf6qk(?PW0vPyJU-m1Ҿpa\ és;CޗKj[|Yu%lse טA!yqTI3#Cz\90߼891\;t/HIWI;HpY”kµ9D/e-뎪22WolW&DXu? ^j ٤69GFAN^?*c[9u# I5U" @Fž8;q?IMXrP(aU*PxτŔTWMN V_]Uzc0l5 %Iӑ$Xpt&pA$E?6H< Wb# JIQاc@|v ̖o~Z${hVtP0| z-:!tE gl28/Vy˂'4R"[ |$TC;-OQ-RX֏>Kd7U4)hBS V=/ƥV@f}7-dpt ϹHuEs_@S֓#^\qmZ|o6XGe[Y @(H |obkORb}(mItvw?,v$&ԁNIn봔TʕAbW˻& O/~>uWhmq3ճy>[R '\kDfm3S$7=ln/ŴHNEI&/H}gNMX{"+ix>~vȇHb1tC0a8b_+6!\^(2jFC:o:בPCxٮX-fwf+Γkq暶2< r'#{R9Q0BUEè{ t$ ' qPH.LS^"/K c*o0= Aܶ@5(;`=0B}$gDr"Bo*Onrka9:cѱ|‹;Bʵ<"frrmUq.>,|,t (~W|9nۉ\ʝ^)Ԁ_,SD퉚XݡgK)t,QJq/.HDA:7Qbb ȂA$= mڈ&@8`zKN2D wLln S. La^ˮ'bklg\O5wBl;Z4 ͙i2vK5;RW&d1eV''Jɒru̷gE'} 0xuf?-V-r&,>Eo痭L+-1B7r`#0rKv:SAq!n lZ|R5ն׶~eMh\n𘮨;UNZmR )+&6O]>,~,Z\"y48)H/_lLHhoLHºQ`RHSp-fXeUiar+qY)/(7Ꞅy4r~v_$sdӿ^TdHGAܔw+Ĥ97DA&QR]&KoJgrˆ_hC՛/lM8#",5^}|l[sи8WʘtrRO.{kGNo|I<of[vH^{AÑABnv]@;cA8ui@~;¦0ӵ3:ߊs$d,/tBSv)X/R&m 1 k}ș:rrđu6but{Y˝6qU/p%^'c#)k\ZDo@ECeg5hS$rMN(Q`/[X%E8تuB9Ef/zP Z~BYj:LoL)o֨ISFho{AW+c(R}#[.&X9+4FfLggd}q+>8DMNU"X̍|ű>XS!;??)9H~8R%$4`,!..lL,T1 %lxA;f]~ 0}|7ȡ͌'[N/HO 2!N {chrHଘGi3jLnYBd:mJq*ݓͷIFA#XQ&#ߔܪ$<1jԶt1LߥݰWdgjs5Js쮽*9M>JwڨcFbXb[ܗN2z.x tjM&IkCI`5u"յ,<<JhM>? S rC{f&e%=ÒOUL>BGCagPp*17: T?鞾o h}+n(Zk9zBة #EJfs2e Yi/]śVwܟܵP>eE ᆅo;zᎯeX 9!x>{]!c'"‘->#u1:Vh "8#qދi#~d[/*&9/ml4}%YEPD/=rl:+_~_nԩ׋8*I)h/X 4>:i_E[L>eܼUP21cݶ.ݍ\9^#!czUzv8|pFY6YB.[DlzcJ6C9gF }LƓG ZFƒ} t @ioZgE5F>Z@}<ٴ}ϽmoD:ZRc4+X`3Yԟ9V+,_uf>j(p{2o br,B$8VC H,d2CeYp蟟(Y|kb!i/r g;>&~`,!G/}U{&=XtMn* ~+|^6aM%x$kDG0JR'lO6֕Vȍiyqx8 2s06 'v;٭k-p5e:p `c2:A+,D&}YV[:5y\ػrŽ :l*d 3i ,ht!;qXE*HAZЖ 30Dm %j `j7_),Iû& Y׺e;0% W oNuAe"}aF7  lhH4LJ{g8͐@AM/0doHNIsXlrۅhwv/oԬ.g:w̙Lpfk4oku0NbD-RyV*uS|08 \[!G%(1P ]cZ w쏻Let.wrSzc=ZEey`c̒2O2'Q10W d̤BeyWΤ}[=24|s^yi -[__'v-"n$Oc%*:GYj:z x_bާrv 76⃉`8D죲{nGS  QMjcÎ\9o{}:bm~$83Z l+17œ?mo @wJ-HF]Nqؑ:gKIm;T]qi'46UjN2rlQ g՘w?9~-u~Sxv~Ǭ^PGȫ*p~-|M-WPYxK|LL 5'?m6KDzuJRJ^j-}سP 8lRMm[ yT)cDtpa穉*l*P7wP}fιS3a=xY\~ڗ=F@n=#YCsAU/30׌X7D=᳇t> q~plRĘnYJ&Wy/[ǻsɷŰ1ŪLb񙡆Ey-jr<8%X|+grFxֺA0rwQpЫr9ò+SlpBU֗넢%zIpK'&`֪I]ᗲ`)ͬ}k<ՌfܱoOL)hF {GlUމp0./ ѸU4 ?R{U:j3oeJlXEkDfZFͪsG&jm/C~cK.b,M6G?5 况KK``Hhjb="ҜD,ִΤ: OULCNERV.dO'ҽnz z9궲e!_ͫij4uH/4Cn3Q!{矠{%=U}.r0X9`wU>%QV\VZCHV@=f1\ fyrv9mʧO]|yʙDKʍ"D^U j-̅ ;8q&F3;e"Rfdhy-zy20 nScqr/[A#[򊈹=O& f̼s{mp믤,>Vi?@9  J{ i/x6*\r~F&ư /JOjoFbGb$|U=5 gG[gǵMb0l⟩e~3^@/ AL4\ݛM{P}:HULӓ0|s!헑qjTZ3-^xt=rWG0ƣJqm`Y*%3c.wBoUW<}th;&/*&4DSt\ά)TUnn ]ȓq~3 @ } p;;5~<07T\xAҫ}1 %7=jWc& 7sT|G%)ڻ%f_'UzM[ Ur վ3*)8 < fX)4a2OZY!w$`efCjqv_,Y%L^Q{/lF,-S&!,EUVCCԮms.-"<9 B[k6w㻏' S w囔c2#H>M )jC Jgi* S+0%ZҍJx_\5prJoeVf~^!|od _K9e%G?ٚ76tѳwEτ0&xOm ș* ?B Pݫբ9qL qa=˲R'9uF"{IDPNu[{eX#*m`P$nww\ 9݄[.n{m2x0egXJ3IUWSXȏ ~%{2+ʌcNM0&jX[sDO~%v%$p+~M`h6NtA kpd}w Q^vIȘA1Mkbn!sD?M;8;TO[Buɉ-cGghw _m.__M=`|OTV^yB˺4zxll}~+Ǡ8 ץ2dY)%_ORqm :f[pSy Fhng1:树$f^fH8Ul.d ]ōsk :n9AQWٗ zw1~*_Bv{&S/y2k ,}Cax`ogw]?$ۜ9IJ_9e,͈t-mZ:o t9p2N4T&>1/ uБ2<^&GH䴠;mB1R6*]%.LKV&'3h)&7kHM٪^}[.O0tqτԈ㸫ƫ@,%HaE(O2]]stMu@5;C B!8H Q3~!zbv*Xa"oiZͨЊpa?+vl {'(s'^zo\z#*ƚMYоDY鋂CKc*}GF]; ;L;ÁCD^|-G2eܽ'gT9s;$ُosnVkz.[}Wk+xiRЍ#u@'Ds:Nx%jhAZ|I~N=UoKGCq֗J"(:)ER|P} ?Vɕ},@?mo:ҌG:靱'-K])j5rFcơ w*i?u"M|%X=9=D7ao*,l@cM^!Rվ56R<ٸ:Q`~]*Nu .[c,1ҞJ}dhAg%_u|&̞#~UjaY!sycq%h<ěGeo':YsLi-41N,q̬F;B$=D]nÈ?36+xEX3!xē%@2_@[$!xe"D@3Q=C5[!utII"ҋ.noxT&8 aR䤺-+U`da/݉J l54,'yM;gJ\DƈpGqX,GM|N]kO^6mvwl6-c3SaoHuzCg~nҀ,c6׻f lKsIE_xo%ѯFXH|cqlHʧI8>REo(9\~;^YrWǯҪ£i0ft$Ǧ}!ƕ^=ywJپ{R1?Jh~:7f"*b˴B;Ftg?!!>NsĻnLL=fU}:,V2/uzđ Dނ%z lWR7W.~ [j]"K|]*=]o R`8ɇWqi2,X|a|<&OЕ|Rg;xj`zF{ExXm ͚ b=&\O~iУc"Tc`\p?uƱWMAm>Ky˴X ҳ@!-_Zoa&^yL.t'Y-6DО?7_Z̈`3䏨>t懠,l|s)fZg,_YhQC Rpn6WB.Aú+E%|ZkASEGqhbb>;3Z7)DƩҮÉěx'~X~Sh26gL;e;XcCPb30Ơv S39 0{,1 2=i8G^P_|A_)zx>H%G^Q7+rQރM]#;Je/g% U.TԳ8ݭ_Wʲwܦsl"e"]SlcpS s߅nUY!$`?27{cҊ̵U ^"WJ!{Aٟv@ @Fㇼzy,g LMdysdS(_NHyD;`+e$Ҍe tz~[rcW&几HZCrی{-Ncľdמ Ζd]ai^K0!)9LŖuQ5e(>P{^pwh(b)t%0/nȯ dwb L]W6$BwJYxfD32PsHT4Fcn^읰"CC" bozte|.X/~:w-c-͗ɞiBbL5Um@+rg~wG,[a(I`6 tʟJ?~vӹiF R оW 6iFYOU|ORK`Z $ i*s9ҕOv V7[Ty$&MmosFݧFNTdYm+pqo\#@c4b9 ɁS<";2-3zg~2ٖ3t Lퟓs)[/FTWGv&-p@b{{[O&`ъ53=3-Oj1/ LHݞ:"(F㽺w 3lW"uTaއ$l^Noc*|6ѣZ$dȔLQ3Y: (IaPZs\ߢY|2A[l E%bVV+y^Z3Z#J/PL $j' 8YBBcz(<1;a*Ln7aqA*{q$4 {B/\ !*>ottblc>u4̲EjtdTm,:3 $I#9ћ7>hYZNW I$_cꏢJAN(2>\%zk ԋ/tX/klsÅ KV!W;esnoÉeAip*e̲q漢=O7:8>^Y<btLeFoc̜0N?"s.~x^PqS"#\s)/O he`p^唗UTPtgBƾO\emjOpA^Z}Qr Zt ["n(AZ-~Q\/=pKN7 9cO8YC$&β;ox g?$p/_qDv rV劃soD{*p3cz X{iW<%ݛ0+$Y KOPlSxua($qo=! Y=SbZ)$33$&o`0/=SOnYhBBc(m?M{0ܳ\ú!=t@TZ>wnqSgC.щ-)`ntul+й^ՠ{(uw5XЯ&(j3V[hq#T6#~6ԓm;l Ǘ?@ŲQ{UV$7SLj Z, ʳC 7!Z@{v[Wc&s$BtaʃcDptЏsM}7 &擜dCW !pRĒ֡DiܑV[FM# `کe<Vѕ(ǁE*L+S?(GyFXg6&0S\tL N8s?,285"%TAL=ra=A[KAkOF#mR^XqS|dNH(ΙVVs-ޚ~{TԹG谨F ?hlWNwKZUeY*b CGVV.F6"īhJܛt'ۖ^N6S}Uqc  `?e#3DĪC`v%yl:!0[,J'%l' d/%B ]mGO i{ @v^z˻U>':eI 3r.e+ʒՕA?BI"*][tK {1יF Iۨ;)\;R"Km9$vwÚ$pp|XRVu42Ey 8+c'|1?3K>:5>r6El~`#|ak$h TRM%q8'D "7ORXC Bu>.,K(UHuω$v JON٥KHRkl#Mx'00%6~д+3~n;}ȍF+.6zjhqc߭m@?,ID LŖn9n9 n ߡRAD-D3wR;lsu4̡FJiw:^!9$~{WUy |'n >կ$;ٳ2\B73{3O,Fڑ, Q6G:XT(? eoE䷘PL|SR@0Ź@ܱÄY r2 N|~HPp]Z2Hh=]gSbA6% %ڎɮ1G?A6szO{cg NY~ʤf"NkHèk`e+218\ ͷ'Z" x,! [2K8fxXtih쩑$t 5(Qx `E./jVIKWf]KK41-q2yY){PllP0EJmoAz-Խ@QwE^PBvŞr/$d#CEwWG2!A'Z66j[tUubĔހG3CqWƒC{@iF< DrVj}Rh"e`x[}ϝkT-jTEC&&B"2A}EǶE'5ԉ!ảuK6T%^%ݗTԄd$;]3}3$tc{7r%"u _sADh_#g+ÿ:,)knHaK3p3-sv(ÈXE_ }iP O - pSntg.$ vv\x( j̬!4m80IC^Lm==BX&![bԯLXqQa`̼#(u1~GoŰ|fbo[+S7o^3$QjVD5i(aXM9RS'EPኞ$@Tg(ܲT9wp8WQtF@GZ*ӧKr'0M͡@&9r]4ThQG=t0M'1y9 rJuqe}.@sYa+ئ38v׵#_%|#`U7X56[+Ha0~y%9Q  e0nSKؽED76#cSfpO-m QQdko5M?;}Hw7FI&Y'KZG.7SN5 kFw;{ۮ?ی%_uh@x;WZ g#v{؊>`i1YX?)6K10o tLYB{YC6?:,hmu֑ Bs$(f`v";rK#4=3]y_XZyjY"t_e]\uF4TO]Ьl,ēw7Ȥ=]T #/:PL7D%EmN#ϊr7bQPnMPlv"y2;GMܯ%AȓϝSasvdf%,(Zr)ﻄ` t"S\ Vu;X^/;u.<\?rPNDو܉d(Rk*9nFi*⇢ 73 HksMC"ky v#urClQL#x]d5ne\ȇ֟bU 텚yzu4h@ ԃ3G:_wg@uA8ǂׅdC.˞ic1 "b)B2ӚS>)m-;]1wP|5EZH}M=&&Su{,)̢vNs`tן{Fo*՘k !~MSMY_3/"}GMIaSZQP# N0duL @.ԭ0rfm!Ɩ-:G@33H9措MQ̃66Ӣ7&:J+[wG?'2f6K[;+ W &V>~S72./ׁ&5"6%2\S݌kIZ5|K* %\rPMҿw5ڴ^AjPy?c:pw>V!_z []?pbٝJN7rK|ihޞH;;ZIz)3 )׳KMm.`pLm xƱ7 Td6E4i\Ź$fcGe,7rU{#?.cgz!Z,WZpu:~<ӎ\"_$wL!49x4@eD?HPCEsuڥޝ}8xK2Y3vli/WAQMd)2ho$~MRVb #6cZqXg9k1LK/fh@0, A W*eubtLףeF:] OǤ\ZbzgDi[lJ9R@ڮbK!sC:~Fq0yiYJp I>c֌Mўf=Kjk\0b.o|t$]y=YԘfPNX•I7 ga=޴삨7(*36Pm^}V#B7 G껥CěN}o"Rp܃V@ LhU j9ۊr$ڜc[]phD ʺWm']#W-|o:*]e)pUu+X콼%#HA0 R쑗(e+4O,Hf CًTribX.D~tVBsUņFE&h/RE~:R53'0~_8 PBf;WH=D߻|-]g^yq ;Ůt#o4^TK}fF2M!6랏3EI+|I=C2qډ{g)"-j'T"'ʦ~C3 WޝviwzȼW7b6$ ޛʂw+4fl :נJMrF&oh8 53˚&)ə{X[7"Mț5;o52VMQ(Fy5du_s]E\xdY㜨u.V/Cݴb^l xJgb,Ku$EYZ!pRYNiADBZwnF\+O$i|]2-,796=R`ҒXm0.p)y6\d6`7l{>[^-+`j mo6nKXis@pnE.Й(|RBVӪlt%T@!H ޝDߐɻjzQ{]Kf?]n4۞?P @I[7,jxh0~`7[A}YaئO.iJ'0pS-Mػg@Xz0 ? խ˟>Uc֭4wRsq(u`%m8}HՙBlX;\n">O܈k|{.3w*+nN^<˜V :ώT3N$@-M^Sq?'fubzD:L7W?_V8lKCf)^_oy/ڞ[J{w4RYч@$ҜlD /#m +Ϛ<~ԧDr]f|" յҊB~usLiJPS}p˄z4&nAi!$E#-EmEs/611FJ/]y" =:Ä́gz}8oKqs/ӅIOc3w(HG0]C~LXn~! "mBKw$ϩ9`$,kXTh#V杛O]f様]Xߣiyg9:;_tjVSLb{tFWu~>?+{MQUM<=昮h! G1?D23h^XEEEE3K X9ƍ4\A -`Ȕ6gy!]"[{ٚL_Nj{zI9e,h]۩`)S'5a%fEr0[=;[m-Mnw6ֲ)H) Dpܝ =wȔ{}81@ʓ8Z l[QJ:NA8&[8z؀bG44w&6J=#\(b<\٠X6Wױ9c%w5!MI%+fK%!Yf8QadmR4՞R~QPeOlޫfoɁV|x!PDhQF-24~;&Ngk -77[Oy;o=E1(uCûkP;~LE:PQh8<ſ,=2"e6#aѾ9{Kf Y#Lv'β}(]>!$ЬՁ N4R<+f?6"//5TTH2H\a9N4%{DEoz:j2;X{ODndm7N!VD}ja_6N^zlN~ k.+b&pki7 p#ܘ2knjz/!#Kq8#F;r P+`k8ֳB2LP!bp\ρV. Io%%ZʚMѮW~|3֭(e0SC&ۧP*{gF t}LCxb_RVS2Fc`ZVq&42B9֖yjƒ <=]q_6F=?a y R|ѝ\DVL<ڴ+fÈ-i8J&̫{[س>=dJ KY%,Rl螸SpDFP>Q*^ʴW=a1 B=-8YUE7%$(vT6 3oU0H[p¤ݥM-ώEކ` 6r\i({F<,4~R! GI1ӵg&0>oW\4{Q@Zjd{40g&7赘ٲ~M/1~uC mE1e"4"f@?J֠865z6\Ҍ6"]=.\Rºl׭M ^^4Z{h< YG{KZy4-K0*"s!DQi\WP7~ y䩉a3TK_p$Rs yFE[-\Y ,3vKdw\Weu Pb+h4 $>"Q( $nx\"ݣOt@Xy>>. 2.f{*jfYbNәB򺉈 6>7L@_Oeq@n.0|IdX(K`/.{[p+Zp?1|`Ҏn,túoKEl2 m[vrx ur.FZ% &9h`C<y{cE00]oǯ!w^Y4)dw `LAҏDc$ySFzmLRe`ZL"7O-BD8oo ͞G30 >.z.#y=G6 j 1Ev>T_W&[I̜i틮D"RkEr}'Z5pH+~l2Vl $4&*+"#jY>Iz<A^/?h@p:Yfޑ} #1o{ġ%`iol8l1r8~6d|,$ަ(!eT +a|E%;6KS"=ZW^O~4Qe5m%˗.H9o1Sa##I<5_TDEZV͹+<*T>eD$c.E\ЎE[ge  6^ͶC1c>jA] '(;V^t{D]0{ee**??YiQ@?-/@U4&mWF*H8ʟFgB("+a#aM!zSc,=!:*Fh jw=D⅑vڿ# uz=ֱhwTp"|"zWw%]gdZGۓT ({h0s!.qY^yri?G0%֧ӆFt߇/wuߝ>HYdݟ\^7*Ւrv[ <3oosh96PEVo l=yFKD<҂Oi˃;7H.l6]9)rvW@If%AW~!"А* #3hԠ!H ܑI= C8=HZ>R爙[O@o!6)6гjQκE8>t*o$tzK(~!t)rN9DWJI~g07q/pk-FSjG&g>egiG}t0/ѤrRnCaWWf(ЉS34B7^犡AYVz*X+5PnZ"v-Hl!-iw!f VҧZV/h2UN*DݯFP C5pWv@eP+7TWoQ,h$*L%C -i=(KtQf%<-%}LfIΔ1 5nCJj_?{19I;$a4WS](1VuZpe> LL)$bV^:G%%V=N[@ Uj huf%{?d4,<[_7Fn%nCMqm-n6i;BLIA.$ ˷7lWJzapFIfuIfíAC"ZY(މ'wũ>)H>/\!G\;x$ [$f9p*yDC[͆h*S[YCF݉溽XDe`7UnB½oo4ge.q{Φ# â 0}!W4$e=;mGa6b47`KArOmC@))2`5MUGԈү* A,~[Qrɑd 7Y_q+őKC%<޽o" i )7@y6q X@|l_ƫil*X2φD-]?M$ᱽ?5.t}KT<=z7h&5>]zԺ=2׏L~ff*P V! ːܲIS_M۝1o+NڟI1UoYpn%(r~D{5ìHp p#Z7e7G<_^ s:?z6z{,0k$=(·w'[PUz:w-Wz)s|e۠CK-;]CYȷbr> 7F b(4]$"n^bE^YnStUc[D%]Z@U_1NAkO"$Ó0_uֻ4VR!q],oW5R oɇ ^1{,,3M+*5jGUvK1`KG) tV?,-1Gfv|IpYlpYij1LidDp!0 D*qs'Y& dG8qqc {:+f/)S=e_d93\}T=RgC>hIB|=0K>ʔaME )LTlvP}C[Zi_\HzK bwF "c [zzVe>)FaK{z'DZCnDJi:JsUրcɡVy<K6(Ӭ0v ^ J-3sC Dpػ茝7d{]ʬoS{հ1 (1[EZ?l`ޒD$N/t9 BP1tZ? WPs-uyտ-7u e6(F\nhf G vf%:aa:yP BU aD璚>/+\i2]W\LBƃQcPYj; _h  t'm"0  aWR$YEy^]t)ld-Q"ȁi;P|袌$ *Y|sf W^I[gǶaRhk]9Iڠ+cr%g+]} ЯMxB)4O8"QZ pH9R/f2OkK-If^S,+5i0̓ w'HL`Ĩ٪<cwTP碃sM"ͻ>6iKt߂Wh`qh{=n P۸[e]D@,/)4N28߽G瞕쨃8L݊ʅ/#p!v38hp*u7Tٿy p gp ts 8l6Q͎#,`b̝LkDב^.ZUdF-޸aXY!Qxg[v,O&Z@{{(+c)ɚ5^l1; M.YV4afb85K0-7k1sJD@"Wm uڥaTPNZ*'xRyvwt ^Cx!,䀘ͰdѳrAGN!NI{"d/I%O}$vx G 7S;:fruG{ 0{Js'plikwBkLw&bn>k;tck|ԓ6K x뛯3ŗ{iB K&)>ل ݒ3m+סk=6kI| -!%fӇ`~xAM)EyCTф0(n0W ,ugY;L/ٷ6 *,|UܼfѝZpFVf8s8u#8Fe%ïlCB<1[mko4iG _Ӷm8F4JDP!ᶇg=/.-ׅ#9O7 YBg|s{A4k4c lh'4xѠW/-X\ġ<,w{O֒ M7R:4דk L35xE[N>ic6[J@$c'_F'\tZg/J2;cb8DXcٗ¨u; &Kwj&d9z.Z1`f*EB kYFmþ^V\eiьeCrG-_7hXqځR+d#ʖs$JÒeF LͬeZqF/mB6.~ܧ-;y6r)[["M3M8!oT3gmyd6EͷJ]9O(*VO$1`T!/#V8^Tiw-y:]$f˜AԴr^v6611q ˮ'G.Q/JɌaQ!)Ǭ: STS :7#pBruuNGsLj7 ,S)-$acUknHۈwyjZtC-E"m2WLCGG~|ci*r{qDG\Nu:pA$cL`CEe.Z&\:&_(*p%b's:?ȫh ލ}*ILgP\f )Ϭٛ/֠a AIhF:'Zzh>bԛKԪ߃X>,Xi1& ?;Hn8|6Rt.VeB,P^kF -,[c+?"^'9~fc_A? M5<+v~SM55ލ̝R,., 8}V(Qn1mʎ] @QlFVw &v`g66݅(6"eRCFp`G݀LLkr_u.[YG闔NE=mAb8ΐQr) +C;rs5yMұEu~~$S^8@:0#$n Jj|.|%!3FR/C0%"%H^ ~CNjnds_l1QZX=0"%=8ay\4AFm*ArCȸ8Ո Ĝ"gQ5'rq'&./"3dkqn2L 0M#pvqFD(bWS'Vi[}M_1!Xh"C;PTP~C{%Gi{tZamB?A]{@ MX~A5~%X|N 0K߻:ٳwCXMn7p-jCȓ8bĹ4Z)Fr}W2/5q4f$b_@.+N؝#4@xN1v|B$q,TK-!:rx|+ƍb>lɦ&%7'n!Kc=t Ha*5 &P߉~s#r31$qo_ C(p$b g7W {Db: i*^ _4#7Z3Z1~ 04 KV`CgSQɾYxnNL~g{V`Don[CjǗz@.O@żR{,dc-!ʺ /sX6D8-=m2amLQ_JoYGp3IV|XjP#:AG!V=WB$hZl| ;e;rcmX#AjY o+ҽ+I/ó!X:TO2D8ן9*U$4Ս."%F.^~ayikdup b7}^-2LTqCbqٷ2CDv Vð5l%Ȏ' 4XOLǕ툰ԇ''^'[BYXŒO`bH@TRO1zqpHm LDUԁšh bya T1=}Y*s J2o409+\$/O]GQ6h" WHlISy ං'pMV)4c'*k|ZRBUw'(JI?#j7KZ wk3L-?xp'<2"hp\!x g wʬ֧V,"u "TRM%—hTFA+%'kW`|#IqÎƐ;yGH 8{MX\ʘdv1XUy^X!;glGhЯPNK0ߒyF;g7`69x=26LP^ZGvX%RppzӋ@) Q[[:EpuOUݡPmԿ& h@EnyIqxx#r ;"DdU.v] 7oѶt %y2OU!cȘ ^ @`ܪZ'k3͏իF2e9vI91Ye4X_;YOn,pR>LC,G)umoi];uA$ ߀/U1<3O֗H˴>ZWKqwvͮ v7B_A.öÃRؙok.d1>ұ/N;(hIǢbUK弳2ʓt*Ժ/k5+-xh4}[E==f|;_Wp0nW iz1%%u"̥4o-_æ GBڍZQN4Ý =bSln<= s Qt˙_oဃy#({D# $ƪjN 16o /'>5&:v8{sIa9^L=ΕlX6jg5U@kvxph7}eaI ɮ)UfnU q% WfvO3p@/)iDcҲ3'Tyz'mwfqM7H&YϢ6y  :_c#|p2ᔝzhc`o5+d69zzG3GVGZxsk~CXò?QviϮJ0`ATdYY(B7r?F%% qy;; ChDa "$:Ĥӌ&ZXF4@v}.Y?!PWVq}ᑽw@ong =璼X63CdF3%~\@7dejځ?H3F.앤'v+:iq bUka?%Ɨ.TdQf6q' Ȣ{5|: qX< Ƭ uyPE8RĜV7y'xX b5l#Ί_LQn_O@fK"^! /sqʽwH.[Cgp! _s\9ul6ᥦ,~ef+3g4'nVnb ]*Z"]B& r-75Uf`LB B𲢉UK#epNAr,T>.cA1S#xFճNPٯSՈWK*G6-x<{F\w[?_ ]V>5[=h\25%KQ(!S)ZD)b YtHDصl񨳥\ ecQ! ,QmF*m|9:͑PMe9Aq$syJ{<7`gx*tU9yBhРYEYE:ǔm@.krHZ'ixNQ=钜T8masTLhAje:hDCӘ*ybFB'YѪKxssFYVE*o.W\|ɬpJmXcȋ 4{PJ:8ZֈYEL:~_qV7_;/W:wYڻ{_0+ε]²O1ۈuRELJau_%ljLXCG ̭4Yys#|rnƙVpLB= _,0T.JE`-$QJ%p[8h]5GCP&Dw_'ګ]iZ5*܅CvdSA^YJgǕ 7R| p)؜,5;3Mx8Px(>I+9cc>%nB ֛1!]7*VxV}obhZ["ǮVyM<$aO ȶhKJZHm/gxQ>ioSAՂ"]`tO%Uȡ%^CSpW';׶bh C{Se;hm1;F4 #'x"\hƫv];,*l,[7NJ[jq sJze`HxvCD+"35^b2?ϊz mъJKvycd  +@ + i:$|OjĐLt$IiGRy9ZU,PC}MPH*#C]8VKVEPJv윆eQf'5Z{^y\AJ[=>u'n|mPD$tZZ.ҍGg8v%hh`*'W>$kme #>3=ٯbxzVmh7er{*Pj=QWK>ޚf#XZ܄}OI +ӑ+O1aFlPJ&'ɲdCaiȆcßi-ѥ 򐵏dηZܤݼlN2:pfm 29ym:7O!!?e'7'Fo(dJ> Z?_RZjr)B_"\eЄ!0rEKNo_^6u\k 3pIe֒<H;wO-Aܵsփ*'(X0oV,rԜ_ݙ8T^VVL}|g_Kᦥ'\x침5)&^sANX\wd]Gjr(5" ӌE}1%~NIy̪NQR#cvc1eA@릀e'y.Wſ$5S'4fp 1mt~*[uɷ|0wY߉e?y<\ͯmf #nrWWZ{?~X:0q<ދ#4Į,a>JՀyk uހ/YՃ2㢣+בd"('!3d]]U|'Z"Q AZ]WECK\JQĀ=+0CiBOFRmrv7as  ̡`#VE Wy-6uV.I$A]P[KVXA"PEz1נ",oɧ%(4O_ddeKorZ\@3Ջi0*gְ?֋AReϝ˩ ׃M$_I~PA _g&EY1m=td.$Sފg*x3e&!xPI#1g_3"zNX:k( K&VE{ccv%eQB18usàX |04v]v/ax`HNN{ wGpiBYNa8sK 5٪:T=Cuoa/U(&cLS]9ԁ6̒RV*Њ#mrd[{ӿN#X 7`Dފ ޮJk?3S_XizDJKNx4r}@H{q=v sfCa12'~omwgɯʨ? ^=JPJnI}'P}<"p{mlC9/!&4e:6P,O_JM>xIGDt.^@} x܈~ 4!DJ3qa Ȧ (c,x{n!>35jAGGʌ V*61 l˭sJLTFNxgI]c#vuLр0FЀcחKd!JUg(i9hqG so dΊ{3r eIͳE TXڥ(p.5wm=lLHxWp'>^#?)4R(6!-5hXRٌ6vFsMAtdd` (\)jv&3 ,L,: Q 7íZ9k:`V.TtFs;\]-[h[H4?Yc5kd`_6c 6=)Mx[\WOܮbd lб0.2Jo cf}WJi7TVr6 $X#^@i]qm !h<` _N5x1[1PqByԀǚz͎)]8sXE})@ L$Sl}5r 3x#10sjnQ#BJ\ç'h#Ld7e5i5WC'JgS$m5D`?N83o½CYfi qH~k}Ipr@$#^dd top4. y@lsz.t8ȊgC&=CO$4K҈j!k 4PV.o Pʚ(UT!1dV ;cj3zUт\V~-k5_jY>"@Nܰwh=m &׎fٴ TtbbQmЪ ;wHL0u0?IK* LSeDTnc@AZxӐ ?LKxR1hMHtY2|+u Qڣѝ&C)b~$Y'(`EU9ʦ= 04r͜,IpbNѿ&_iPm+rTce1ٖa}fC4zLj#Hd_t XFN3`Tш fN`nA>3jۗ() RM C\Uij lpҁA(ӘӚPBeЪ85sV ph4 _ #"]5ɎYvuUߡL6e\\|]+)CS@*IGs ;aS2U⬰>AapIDK8r!R&Μvz˜/Wb'J`Y ѻRYe#Ull3gK>K׈J4zDa'N:U Hx*K,eWX܌LU7娣&&ߝ (?xaj ރۊ%D hM#7fIS;eE56bΫ=G$Y ޒ bPq˭=K ƫ8 ;gYfv@Ϸ ˽OzՆPJoԓ7n=A&.ʁȥӧ%rY KKp^9,QC ԣ^ȿzLJ)VP| ~ki(q8rAQ\/tdG3Fn+M=NVY06Ekgxq6GYD㔒x-P¿K-/ӽAqa ݱ"<#b9l/+j7i{*BK 't::qrt,dj's^B] "Է(qoT*ÅLIޚz|PMxwI6z]@r/*Z1g^6’P:R)X&FcHCr}团h7,Dю\%k>l0sg/ YI챌l[`3( /ޕ tu;9ԀG_q,.ԇ0~bzԦ!{=f`n{ܒk"Kx4 j ),`e ^%-/8kP``21ea_Snhּҡ=W]``<^-}'3qGB{=qhp[v sy $|)</*# N*ru/PTY\:ʢ 0R.ygƧRZH`XĒ".Wvg&F6s)34j-2s|0RQHkKu\79sF r0N)U}2ym]=!g^u(w;o {D!=ZM`uZ^⸥ib&F'3aQgM `m2t+!@_8o^kb6k(*!]PGgXdqWhT{WRSYut}|*5G7&ҒtlED% }׶ r@:<$_KD_?SQ lxWmk8$[ة""`+K)!Ld_2(j%,Š%H@` ¤f= 8H +N_N^oIlNb)K%&WmpΥU 6בeWFyei*j)y+&WU,PuA'ؙA0.ba=F)]c¸$FS5]K'^ Τz&bxüs+"Y:˅A0P捺67rXt\ci!o ׍v^ݪ3mUX@2AH;/@ &ͫ膱K)'X&xz{ƜGp斉 49&=uS V8*އTM ѷ ;|/73c<9`6m~qt4? ׶kk ]IuqxFv0ǘ=*^Y(\ FڶEL#EFhL&)@q={rP??(opj/~K?I+z: 1 .l|jw%}ŚלZx :J8#vB9{ ȟZp?R' Y.w)V+!s;\N_s[L:"'ՊL7V\އw`,X͟V1P(NS0LDlaE%xh\iG ug_husф5;Uݯdn&`g8]cWߪO7^^umZvQX\ngߟ, 0/q\TyU$B( j{YrfˊU9{O|CHIapp0iB'*gJyB)w N ?8%Jya8o1_Uߨ#~鳅l^yDEi}NJKw]$$%H@۱>LWRl &fUF ht5):&"~[-z My{`Ke)+ =M?2=EƟWnzե^q*&IiޚSU}ax=ib2Z7oժ:3Hr,,˴ea|p/m(s*:dR3#,SDŸtYtl.| Dkd* -1 ?*FhzHh $Y4kőUflpE(]SGB,GFv˷LcjKA0zqdhQhKuU7hBХ5Nrr[A+9LH={̼TclCwdIr "gxvPQ6RU& e ZD-K496’{nˑWɄ f3C*Ӓr_A=0;\)->3=ejivɔRzAc:T&TLt x Fx3 yڙG_(TN>/ <`sfHm^ys#{͸͢0mќ^ $n(@NC>o_@p34nc:'փ`@3#ٱ yrx=1k3G6ou NJ4;*w6z=nC謴_RldÝK0 :94.0kHB87V1m%HkZ9hlHĤ;c3Z`3CztαBTVU p P\4F?fcG4CW# OW;,KX,ILdШFTzrL/zĖUj Q yQ8Ơ>|+cTh"'Ǔ]T iQHF%hzrSM{@ba+DžK n}DM׮V c'Z`@nȃ: SK^nn+cL9fmͳ @: RAC"S- ]yčovuʂhXHm{v x},N)p>,u RFk8l0r:]8hƱIߑ3 Й9h8u\B 44BiRn$]aw_MK~|*h>.DT;NGmKn`F}>7Wݶ/:), gOZxOE`"eїG?ܘ}n?e]c;\Ҵ?~ڰLMvKԓ*Lԭ)EWhXȁ_"ohJ yAkoKka,M2q󫙲3J{T-.>$^`XۅW*48JU 68yF"b/L/EX qJKh${F3ԉ6\SсVj`Wx !al'O%%{쎩ޠ)8RV*91pWHOH+儥,},]»*9$!hɘRӪkfI}̍qrSΛ`H` x9#};4&dk`eؓGc??h<''4%PywaYA ){p%c7<df[q  QmڪC͗mg o FnTvg J lu݊dG&guDKz gWLj2x롇H+VwT[vs2E( D}T;ǀN)w5@MfZh4-\q?6Qs=^VbѠt1퐡-m39\׋T wM, L98[jNvΝ7va2+R=,&󝮞Wq]J6ˬ'uB :]Je~LE?N1)r~s,G]pIj4Kweeg* $| \zXXU? M]o@y-⩉b/ KC|}?!\ešE;txE[x9Alms!j\|C-NS?&OOWX? v:k$N]Ɣ',Wn]^R Dm UdLRgiGE|=uq89#mưJ37ڛ[fєߋs/F+#ƹe'#73H*z (hbg1c2Hfc/#wtsΓRLȐbQvl)KEAާ%/5V6 P FGcle`}H01\Kb\ȕt^U-obœiqWhYAG|,3J&̒;fS6{S ކ"m R!;աXd+Oq7`G|XJP(WM|{rɘV1p6$_ND(~{%GutVZʧ\LßM8eO%j0yH賵X1K_).tP8X3%{`KXZwi_%ۤm߭7f@=u,"S/tuk=|gEdv2Lݽ1y^uAr@8ck\RryXI5œYg z Rч:He3:U<\Y"`Z>Y_Q@4DJS n~/փ-{VOЧ`CDN>iqV:+)1 l%=[آiV/C*\byjNJV aq߈QN ƞt-W6}g5Y QJG -{-pWL-8'1Y).Ͱm,^Vz`O LqXsTkpF" VXѤJյݤQIl3V}e5bL"1mFJc |4;gB4nB̋. 'Վ(l)henBwyC$NէÙ?sU@+RVoNhv AOvZgƁ L){0Voj& e8&CM~鿎 4.C_EwD==S;_vLV 7>\"Y&t2q;C'l0ߋ"]_P9ByɁoEe4cvgK Eh$q/(xl{.FI[&8e@ j ߶xKy&z鍣yqҬ/j1p:jautl:U}yE\sڹ$!6R@K$Y50#c *$|GQNݟ18-rtJ!BB%oN$4צlN1> B[^;\ F@KM,,5C=Ae!xv1^!]+$SѫF"3.y(}Ԙ02E$}dBQfQ%o rjɱkD?xz1U*SjvXWm&6H;cQgW\M5&v;VFбHeԼ(M|\l2dMVt"J]vJXiK=v (1jţ7.3pZh{{Jz , wɿ(77e@}u~NOT3oZ t=T΋<ĥv TZy"_@u#I@j]&RbCJoXu0Qjj`+@"u JVe ~l HOՏ}iV<yAMՙ+6MVE띝Pf'= L-zi0;h!7Y7ZFR=ГHSv;AmqT߷>pI|.,'"[405A` ^",f .^`zD=tu6Rƒ)R\~M; Ul "?jlnnV^WHї̥%lrSpF3OP+-uax  aB>pQ*F=K_ph=؄ttŔO"(eCya7DŨ(Z~XRe9yg.s<$O{K6nHsFKCv}q}XP<3VmȾ\fq-ٍy? ?5WaRK?Y|KۤЉΘ~5NAazksXg(E!:W1lQ4r*l>, GV~ o7iҙ0*;y9@n-Yb<(O2ݵjfH8c-&rZbn Fd$aB?h%C%L zqsAT=@!GӔ* dPc +_:w~m\gEvf $V1) h{kh# VӖd"*cK|# .@>=,ۘ[|B)4ހH/nI9 {[Ɣػ( q#gtE2 Dّ:G ^=h*'`3.MVj‹'hZ`'NUBh8،b"-ݳ]Q 7xQ![#1@E-x_{:ΰ`h 1ॼBOе.#3of»§-Cn'R8iMM,#ծN/W!,oա ٻwķ&Aro[\r!J;ӂ(vJĸ̫'$ʊavĘoZ"^NӠ;>kP'U.62ҳRQ{Qpt3WW5|z>ΡE欁ZC4?-Y(r޴ll$a^څ|o$/=Q?d2b{#$]!yz_?SLU:NF n.=^8vԇ}4f?A4^x+[Kze(2hY0ݞب:' _n7`*fyS@gFH$g\&c;d$:nޒl g_s-)ۖߟTB_16<^^\[^Z'#tZuTR6Ԯg]Lb%5h72Oj{Vʬvu )tdLئ _MttMÙ1ʀ@ҭi[NCܷ3*{G2!3}3'or0)e<:Q%NQX"7fBޕF+t5Z/[,>胕tAKyrt{ wU98yEe!"ܽ?rm1J1/)cZPR#}PJ;AY;i;=ۉ=8ha 30Ii`ܓS="rLVfo#d\?v&@[wa"爵-;ߣ2DܺQ&&ilosaפzJ!; cds sA3d3ۚ%H"| KCk@ɇRdb ĢϵyVt:H|+yN:!lb(Id_ ?"vEDaehOnzi %q׬=KnsNyzX b`(xI|f fHHiة n9c$$"%A0ik%WS.Yt9. A8Z#.eڍN]4ٞĖBe?(׸ߺ$wKVbPpos,lYxa\Y k]h4.E#CTϊol$0 ٠VA$-70P?#J1M.REDdB.}+0m* rkDzDեlCRoA I@~T厀 2XٔJ:,hd[1Fԓ׭ARUxPFyTos;Q-IR;Gc4~hEN)ba. uE/hon'#^4 B9#PTwE~M-P3]cfQE8 |tyYw voZ g|TN9| VѮkr^`Q7G;-.l9 }ψ$.ytt*gu4QKu`MlnIӗ[}e]F5j<x+>o~.^ aEU&zݢ2{ϬDUN+hPɵc>:4+><2oz%,P6*R.)vRS%$!Zaa\L|ˏ&<).ЍTmRh^y--YO,c:(XUP7cDeVQ/,="tQFF e͞uz?q0 TLR] -d1f[o~tAi2B[j=NS$M1# Zm  ?; l[_t6cQ:L)s}b0<0T54YWU)JxO 3IDA`ACX~v_s>RRghn]AsvJC& 9gDRaI< S1=$Wk&'$u"!z*Smy˚kTGvEqⱏ-]/,U!Iyl'h?L+NlSqHm* usP=aTN`ѷee :~DŽ)ӗ$+PЫZiJr(A%S*ډIas񤯖Ӣ;ۤ(`ԿCԋ.ayҬUv&Rj7ؚqd؂uY_V (ՄnєΨn{P7[Fnl倂@ulR\ 6m(9!UW !FJi_qe v,K`!L4 I7t$s?#zgz-3lkAl3d\Vk$gƿPjJpf),M5^pOlD`Â1.6aYܧB'9[8_Amh('x˨`S`3q#FDW9&THɛu7" -%Z_;2U|wPR~IE}Ϙ|9э8,s|F>I%0ԫhGc=)\*$Ύc_55C?!+fAQѤ-=R _/{uC/B*v lrL%t%u6"Y$+6!1[vJmJUݨxGI/]3BGɘ~Dg3#MvyyΩv?ian}tYȅGsaJPs>ne n1{n}Ҿu ^cF$tXɧSTPYZgQnӯ`Dтg׫c`k2 B $3T>Mc5-1 7uZ>䂓`f=yƛԎCm_)vk%Z,l6 Vy2H?ϣ[gMH/B4%<[ k<[_?' \m+_,߅3awY /;Bvq9{O-@wߩYUEINj;Xkq@@N'm5'b&lǪR.%p}- ' W iHEL8G5 XJzd szf*QI˭.D8op'%j7:b ˟Ol'[6ȋfn#q?tpa$آiYV{p';v$hI7(9e`m~]Jr7_a FhsXc_qgmW_'nkff^S1fF bϨhKh42_?&TAtvL^AM_Z/ra6V}S"s{\y} a=I 6+G{yL'I&eM-qLJ+fI~rߏ"aS=35y0IwfRoۥگŹ7o.,ѹ"~mLЮ)I)BJ1&=cQ.PuF|SK '>w3¯Y0Yf=8qDmPԱ%3xF#브^x𕜻'%0[WHBo?[á-auilN .0`21"s;" yFe,Mpz>o`y{o=.Cm<-beu6% %M5,N"$pZ4s^GE LB?!$O"p}pحhbV1 ´$] \Ÿ6J'"$fu1LhFʣEpM#>BO{f_V:fʄv$2uf#zESR<*9(uOVFSI>`\jD -Kk/w[ EVljsp+ҁGYU":W(maQ`zLUâ\S>5!|z_GOTgFT ~O-$%:Y;;\\MB.ԣ"ɋۨ^f[bqDUp͏qjvP^+%L]2 C,}bށ"nך_4W!kB>_[DZJBm|&3@ǟ,$t|~IakkZ㶲{b(-0<[3ED_ \T5d}-.~C]<-he*Z[޼Ën|e> % C??PnMYAъ! t:/}(y:9,6ӈXl<1ѱ?gF&r"M^棴SpFq\6 &7dX_3q 8KH{uzyH Tgx3 :\{ t%Q['vL''Kޜxe  |- s`=!(SJ 62JL$b~h.P%- lπvEMżp푚jK'H~.rA´{W^3;^Js~XAz5˭g4GG^ڟ^.m1_Kj{X6Kj⿁ct.3L&&(و=l '`s1ocEM 4iL2kB]CɿHOe $yQ 9{u`m|X7q, wRw6P?Y| l{eCpnBl3 SQ#ޮKbZ]I+j;P&lW,sCi}B Y ɂ#rsk3#zy/qH-RN:f`+ Y4rF-C4ؼLEΤyM%a6& Ѝ =ZKa'D97SC!DžpT Bpd{6Xq(B)Cv/iM\+F39JRAWCtT=Ų yvlNOUBz "tD¹rIY ۺRnr{|d )~E–դXfM?&xZ> ]Rq v5$f>R 67,*uUg+^B;-ezO {=xaAxEP O&lEANi$sLfOO(=*ϼȆSFDbnbrDO]۰oCܯǟ hX vP$N1qLH[i'ET!y"f-AF͋h+ F(a]Ej"!j/w(1AV:#dOs>K{IQ" 59wC6-.x5w}&Kz9n+x*&բ!ʗϋ0q&0#M<UMnCͷ>8 cSIYCXd3EMja<,OS;R6'Vpn6Hix[3;Mo5T2njhQv.%`+O,{ׯo@]}ux3SZImeCt&7DLh$_>TՄIP8.vsjd3uFgl*j"%d,.(D?G>ύ6Xٟ׳,Gp5-G%|E ZeNpPaۯea_{<xHhjdnUU"[ע\@(NHg R z1>=E/* M 8 3UU֕!5lpe̊p+52=a'$$ Qr*X *4/loh\yHZ s[B܄E0-ԙ S;oUZDjM8&PUDݽm5\I"; Ec-иٲ4E17g"Z <_N[Sa_0iwDtdɽd%L$or]P߂B4ةJ"1g %2&{ItOߠbX\PQfCOYnc9(G"CYKqglqu-hsԸ" l$7pO hQm65dGH0bCMiEr+r²jh5ϖxVrO: EykNS+z 2fS )$ur[hS7|,t1X٭[|'!OYJ{4. /??$h[~r1vt'b3]8LsHrΈr&$T(#DhFT &q4]6\nA+^B=*YU}]TłApy#MvuN[_۔5 !@RL{}^,Ϩz(S6=r[ػdMr MO κ/^l݀m* d]g0peˉ9=ö&^BxHsj+MM3gqv>Bef6Qh-IpTr JLyIX*Gw4I=z /ÿP}w2ҜH [cşݶ&wfJ E-1K:?0\}ML(so{^).sbUr]céRTH=Zzj؀HNިh _ ب鱈>A(14 )7LS䊛oK(JmXj8]П仞5OC;7TQ8c.Բ8ƴRcW~G ͂g/ҭQn[#=8Vʑ˨deF ,F#iUvnw>i"xҐj[ߘ/9I3O%\&^D0Nn\(N8cYC;WQij݁l6-=ݶ0(\lg0GBe~a}wqq]k1b6E:TR>\dQ~;9_լz *۟cDDaNV;z%)}-t6=>jaۿ-[<'F%54o"݉d?-.Р^aa뺌-T! z35~BNLa^jUgLfkz.B 脩v#j#FKݸzPIliVbwdM"b;X*JCTЌE8{L˔ezWc2jn)9P}ON5-9E]]~dRjKFxay/k78 +[3YaETvދ]1d.\s @4u>#D*efMZ91Lp oh0~rBZ[VgK;vTnWAՍJpd*_h*$RY<'ޔ uC7P3\gȒf)t2Z3:}ܘ$45EYٵq$(lNY,tX=m%{ƶ`s{|n02qJ,E19-}yy1fRYQrsn4}[U*S*IaP}fqXqzK'۸Uz+OiNpӉSMBo4m;sdo3X~Td6PԫJ훕t-9R C]RIή \zWZ 7JD^dZȤ @b6ϝm6 c[)P<5,Sq0gJ6?i>*\+Ssx{4V; )ny%>`Co "y89 OmNʑOŚ3);-J" Z#c[G3EjŒꎔ#zJŠS MR(2uECY$/J>ECcFӢvv!Q I70c4ZM$: F5[;Θ`Ӥі6AQN8|f |2\}}HtL쩡E qMk6Kxkȋث~Ф3+@=Ut,tݖhjfpu'v*!fbMD9^b6~3IX" f 6ڄe$ v Tq1θTSqn! gi 5MR>X{3$,*4ʺ2휭W.jM4)j9lc2iӺ 8s1%vH} ®:z Wfs,w;c,7Ӿ7mg_:û,I4S-'YP8TiՎAx9}?Z%^+#Pq&JڼdChpOєO{,P:͔*+I-#_߇HǪCvwv+\ XO+vCpA 7x^EqZD<;: .qх(`Gg`w =(`6^mM(9^VكI@LϣcQj"gz wc#㒚0;l3>RN|+gM{\ITΐ{B8`w6U}YVPGy'>adX<~$} hc$?w'كek.Frf$9 <؏?,IjMu``]XaUUD1_F(// xu_BZ[; Ogc8s;߁ia()- ?mP8M5 LηH/Wź-n=p* JBVTD>JȨc%7,D)u w.|󯥿6X_'SVsNgE7ݕ]1GrRџIW\͟^IosR`ZmiVԙP]ɬ;# 53N) yDDy;WUX ecd_DıSN$ܓ5 Cw8e#E_6|kMnhEA_ǚ w['8m~ejg+$+&3JuAv4u>؞A:ϘUTZnPn良X ]oNƃͷH'4}A?(ND[IE_gꭍ5`{@u~i÷W3H’.XQ,/uNLlY@@85Wކ; YXE/۰1&qtDw1.ANr*dhnIa"ZCe", Lk։qR@􎼘UD+u<~q49fi_JFmv>ع{o~dpA<|nj±_/a-s16.rwf'^]6Cx*qMZ9XkF'xN a-2,mʙ3fλjT#p= o:4%ޗV +)P<}1 iʋg HGжU>5,tËE*$!BX_I W @+S N T蚾PۜpRLX@-a5.4K;I.R+D4T㤦PbSϰ? 58gg|#s7dH3e@Y^eeb~|zLUc/pk)8s(ե]#lVt%3 < `bH?701//'&\𛈿xhStKc#g>:nĢE1Yu譟_obƐXY8Iر%9Y aҧp |Nt ][lb#hքݎ!=5$nBPˋu)^o#w6rwkyoD&pAID480ԤHAڋr_卪Dz˼hJ(e \.2`-ш+pxV3}vv@bٚN9mAaC8UGn! ☭DIzw)]*_W'.Y\O*4S)"_ZFr)+ܐBE#AY28W $?(Uk^7(2'oh`Pf{$c\1nE5F  EX_BmV̳ur (e,Gl%C=Ⱥ4M({}>_zaS.u`vư@42#15h IK@eK]p ;bi+$3P2tFCQ Ry_@J%H:.!N(R׿Ԡ OxBUJGeUW%ws{o0x/y#6 Oa`=yvy^U̯nkV0r'0'\<U \; 0YB@t m#H5QJDe 4"B#>u>;*,`o#6 @?sA<5 #pLYte 4TmJ!b3라 kyaˇ19zVX%5}yTrd2_sG&֙=|?W ܖ$y ٻ[b#0}cA^K~B( {8sTVT_iugv[OEC/"^#F6Otv ΃uMSүEQnr6y%'pR6B1%,Eh1{;ʎK3{=.h{%A_7f5W1j I*Nx=:7EG8RߜjQmV(Bh(4 /׷ AiPx ] j"G!8vxYJ.Fc~>~DXEX`}0>@P9Jb[z?Cx'pdEddx"D"YI>xB³ӣ +Y#g7wj 'h L?YԠg<~̚5kj {,@DB2KMF#wec3EJ=>]Ckl2"F< q @Ӥ#v6ڜPfs4`63gG G>vlc׾T0cs08SIiICLkk*ӘyPq_Sԝj^94>0̞Aҽʻ5^jn7_ɰWr%+B8M[F{6#5F J3][y6j!:F6ɥIbLj%U j6: sӌ]ԩDb.Y&YStNԠFrO0~#A^,focRSX(my^ RO@#ůM P9Ԥ~o[9Tn3Yh鱽bs8.qگ[^QRXEG-GG/p;O"ﴂe]&-0|m !=`*) ]pLB4J̝V񇽛Bi\%(3;n>~mvĠ׽F\ӸQ*CP"jym[)xJ{IT7|pUus DO+<, Ȩ<h|m,-oo"{c- ě혱_9ONC$G`M'ݢϧHGÇfJCkXJR;򯕔.(,7EL ߁k`u"8SICu]B×^rqɰSHEB utIpuKOY8.A}s1TGB4 m.zBu@uQy),Ӆbٚ%AhZqs 21d{D>+4`-oO>J;\DlɍSYzJr#}c rµO3nѲM}ݸL͙z&DUA|Ҡڅ?ݛ-X!Dx!Lj)?{3)] 0s-FEXm<@&) Ck/W[y1`.`dGs鮚ܱn~>;ߦ?Tƈo#L .UE2?8?Y@t*`\M"'%JI,Dݎd.ƥtfe?EAAA20bpۼpbZjp"?[V&rZ~g8Hԅv3: p[9B 'ԯY"*nW+Ё毼{ F`׮l0Iv7mqTT ]=[Zo(P>lH`pKt=,!`Z3k RG>ˏWY+siq fϊV;q4H; f_$4ম{Bziˇ-/ y X&Mh/eNMyIƑUCRޡAKb #bϘyMӈ6Ua2 PG{ҫp('o=Jn[d[#tэOzciGL J_є ^|UŸ#jx[S$Pb[[S6j(vf~ * xA$oh 蹺# 2s% {=N)4B\BE4[@C On?d+an0nCC#Fddi7sDžæ=_(!WVK:UH@)!Tu) Tǯ:a4l,.\C@t?oFa"P0u 88I7ψw#x\-6c٘Ud9u 8VRSlq$WX!Lν,%m253xs}c"ڞI#ܼWM1Xh46᧚ x WLz=GӅZֲH`ôFΕ9rhiw;{(PeP5diH131'nD%f.@_ei3ntʤ0 xjFvTV6䨋wJ3  |;ؘ|Ͻ_ND)`.8aӈzV]' &=s~\…̓_$* 'jF5~PČSeZEӀ&6燾8Djr4B0'MmK(D\`C h1C[աpf|18ӲI=o뤈l8ԅpsQ~Ǩ tؘx{B_ bk4h}Z{[9id݈Nxi9rT]Na沖pcS| &&1{mgػvڧ~X>l}{NwppCe_^Yc8e,:/uH$*B,BiK~\,6V'4 `&FtSƾȖ|+=:H(?`nR㖐"$DK$/)U̞|vs|V hH7v^Pz #Ljc4^'jQt˝G|Rg>Zoj}a;D&w#́;.rH2NC7]TC"jD~$0oIuIrO@ Г bwkMyL0] R6Z^=;RP),ɺ(iE|?S z~ nzQT~?ޢz Y\?W̋ Gg.v+YPO4Z« dCO)5%Q(=Ȋ4=[]V+[vmWklܕDB$k%{5{jfH 7{R;.̃έ;Q\w04|+uuY /q;8~Lfw񬝝Ʃ9c/pk ~/h_p '.OceαxM?,shztz)?/Jp[0c.1Wfιj6+dH3R!9;pxߘنEzvSJG5sdJBG$Ѭ's dD|4/Z-R `3H2C=I,-;4t:e'bsO߹$T}@QЍIb%.R @{pf-'ԃ5=ǾlFk@d߽B7cXtP,_N`u2ip@JyLenħy'y 7:0-愩o)Č^&d <:zҸ^Cr#rO6  >yN(ʩ6 ʵ4m.dbUBZ\_dasQpzM ID:J.l8 }5؆X:ty Wd;kb,+ G[;t?'4?> FN-as )hnT=Wg'vn'~%Xo`X`$rUqv^a]04;tiVhiETtB=UV˟RpSڨ/U#:+:xIX˘ ډa7g_z^{Z4Yqty_TϢOl[3ΏuԍY3ipl\QB庿@`9KWZ*wk$_7ß,0sSq=>C akqꘃ@dJv(# r.u9hzI Ȧ:ET:Rh >fU?HQ'޾MfGˬAL4 yuE|ЩVy?~t݄K#Xg>u{}gVhoZnZ<>/ތ3C(0%-*/!OG恝J;U R8ĕ'Ә+M o>`>KЕv6Zt!&aV -: l655"5h8W[3ldœ<.K 0z2k8 /#$3[y]ja15~Ro8kƃ>rX @*0a:p5-9^&NxMne#;jcoYce ~:olCX0X~vo1qߪ̯"KE&ǽUx݃@#\~杍n≃af.G9 VRN,`Bz|^ˤ:.#55I %Xwt,9mcZyn.XŲ's7X8=84HOvM5*Xśn۳ 16:Xŧt T}Gc,Aխa_^%s.C;cޙ8՘gmp/*a˭ڿo!` WvEH)"tʹ(I9Ivz_A `W#8kLԫ*]*ڵVwxp2KD)tVs3 skLXxgAO=7(#l67NŦTpuwiqdaQ@kI(e97go"tM1 h=8L7$*;aؖ:o#$)d@ݭ>K]iv4X,(U(LyɢNZXƏ^!CһAud9$N{Oݘxf7?ڀ{9eކ} C&gfK'lhɤ k3)Gx`)Uco_\e'x5 ZlvV^9)*-q;&,m\9?<>jBIoG`NDWTz{ƕD3 MM^>j([av26[ޱyӝ(N_V~@8rJb" ,2vh:xI+ErД 379P;_^Ǧӏ"bBoኹҏG_$jёC!+sQ;`։*f__1İdݗFߣ;y ౧uO3 1[Ca<ܬDC(Fg!َ{FCZjD(/֯Rd69q<SI+!ϗ;)}I}4ZIA] ? Q.{Rlʠ4 h9vyr[rӹLQ<ٺuQ[1Wa}J3KE8TQ5N|5PUT-(V,>̱p |QE]B yjcwde n_f|#x%xv"HݿPuǀ~ B$B藊T)}fs*9YFH, olYXx!XWNprptWN[8y.40%,g#/쏷BlmEK)EEV |8/m`1;lJ}Xa,BT9_&fNwjS$#MK;cc!dGTB_2m~켽n- Ο4_ pg5u)OB)e"$hkN4mz}0)A6 |̙\ DB= y+1tQuMapP~Ie!k[C1rt&,GFh}e<_g8/əw BaG'f:dGd ] \&LL \P(w?_.@b\reW۹Kvm7hɯFD\*v5|\` 3 }2F2FBPo)>kok7?Wm\~Z䜺gtK4R;9,]JE7|K0dFY ݦi8tŠUw4*iZMk4W@89dڿgNQuQ?J#R|B6|Dփ \VR@ > Oj7j U\!%OW;5Da˰<$?[w;/հ1Jtk*zbm@QSA0fYՈ|]*S8|qYߴk848TJiNOF K e@ˍ vfg1֗ʆ@_Es:\źVgtmQV3{QyPװA?dGvdSQI~F65ĻtѸf.O{w@q^1;` fTfb}`_|k2j0\P5<]Hc8=ְP N®YVqIZ2⌽-&\5\^Y!$XVelO!ͷ1 O܏wۃYpL"QǑNCͯ=W xP[;ӈ"QM3/\@tcho8wuS7"{vQ:%w҃=h;upIo.ڤ[fhda{ ʪhj?r'(D&ܟ^I>}t)k?Ho0J4 a5%5 l |w{xJZ"np40cE_"c'tHd͠O|5STmAM-W' ^k2ڜe>YSMdmbL\Q(ǯ  Fvѳ.[9F56u1ocȕ>hE6N8tg'eY;6 ƭ: 探dmX.\]~Ǣ2ctGʍn4@)gnT-O<#AQ~ 0'TGp&!bp扈K[ڦŮݩ &H=h(Vؓ@P6>CO^|L {Q9(U⺈2Nљ!Ī}L l Ix ^5 3ҭchV٠<^7p_h=stגIޏ P.̗w|)3%3#'}7>6p8R#tӏڂ3s z=MJu<%g80`vtR;gKmVpz}"3n ) ?vWclf\A!I!ƹBE75k>5siiIx9ıMWnW W&r ߏ#nU~Z+q 1*d߫u[wԅdU֦dGKl'fx0rb\&,0*QaMi,N^p"uڲ"`_b_nZ~JxtCD-#C3۠Ϫφ BO"Pwj'WcB89]15Z:"6%`&ժ{~")!'>,f|[i[5dU8l, L^u'Ż ɷq%D/^N>˳D[,UNo/98^7YL_3v V_,E^&(hN~OH6}hI N QͷfxˏW0(87LU*y}iq/EOr!DQڤtN=Ȋyo1kg]mYwV g9\+4Zyr-.;W+-L "_C8"Z|l ‰9py*ȤIY=a b$զ$N4Ğ*~x!x^֥ dFQifU> dѼu,˴r'L cc kG@ _BS:B(/YR'._bi 5 ̂w u08;> 6@S*K#X- \[! 'QaGH ¾_r;$1u߮nE5IzxH6Պw`"|n$IJ/07d d/zbsJV#8M #9꼸0|sxeƚӰnSGj)CvSF>$)ϴOXu&fҥ]N7ߏ;mJeK u\/5 uCa"툒:~ag$Dp𨎎7t^]Ե_TbH NŖF,kZL7[ ~˱6VFrf2 ~/7$`>^jJ#W,Z`$*I.B3ݎH/LcSC "ώW7cfnH]_luʬU/db\vqr^-c_Lԟc0*`c)6i,dJ;x>Զ(N(1!f/؝)]3ƚޮ|hNV7}-'H͂{YVTT̵~ЬZk>ɼ'Y~$!lHA(}x+aF^֣3L.1=7pvLih@vwNFUvճ%Vgn=ѡ%/]`A.#+x2uKrYaӜNӌ⃋c$]{T1Mwܧ_LVIKl/}kζ8,7[ S c.$MWHkIc(nh K4P)2r43 x8$>wgAu*笄 @aO*հ iXյL<.-y/RtZԻq,Q}Qr~n4VS ZzӶ7{$f*_`FBY_@WW4un[r+V0|tp,#&~.QQ1#5V[&l!xȧDTu6d-I&etC9a# ۅ ,9߶ P<;i󂥬SˠJ? _'ɣ{BUKZ2ء19q',=>(}tF%G`Wfrm\'bVZߗc# ,Ӟr$p(z5pg+"q['HKF<ZF{ ubv݈o`tQN<ԞCMQ QKil.F~O_a78a;\Fݔ+fsY|%)^)7wO$8 3a}fHQ%ư8@ȟS?BY _ذ׻ v8ԷsVӛ˰Uq"/ ghG1辘p @xtL~ri4릯jq85"lRl *ji[38F 00Њ?F2zd"e*\A Kg/)a?yJʰCTC1U& zck;PɌ*Khsf"yn~MRozU.'dbPF\k"9љʅ wAr'`?opan}ehbLQWĺ" 6cDȩ"F]m޵RYǙ^Q9Ւ8.Yٛ:(P<Ϯwrrָ̘#QTh2[jg'r'"ON!ΖBgXC%I=0 D[YP꡺IeX"[̓ܕ7!TXI . (M\\JO%.B# LWx"r J YSc1@ V5GYG\#_Ied,>Ě0TAHp:^.YHǣ.rpDYGׂ5?uy9fvbn 񉕠 M JQys[{QjTE oPe4;cH]^:GsʱUB6 疹ڝu0wM;˞=\TeGF4]2@:b >4>ؒEBZhhI?/ VQP+V"[j6CVq`rGNWt4YH_ ˡ.'sr_+¯G΋޹*dP_[)Qv]@kmT G)`lA)UǜmRrXV9Pm G;QQN/Xg/)%z:?&)CAi, ?]Gviw =\U虪 knwSuQw(ϣ3^ V͌lm#g$gÜQ藇i&lH4.h5x<Z%9HV#Vu79\nrPvc eXOh5j$ROνV@6( ]ʘ?8Rwq:+9WBdњUo^ĂO{9eоL8icC;p ~en@}o8[~#{.#&oCYxLo!(401MB^]3*yv@D]䭍ՖyP=syS$9SVgܨ/"L4[D&CO! sQZ2Hxh u.,aJ!~ SJy5nSLق{%ioHw~Fbm[:[V9cMUlfYSjV ].E26;\wPL; EbUN'Kr繒#sCkqORF:o3YuMqs ֱָl[R\,1j5b ᗞ,nGmӃB?e7V0$BFY΂B w6~ʀBnGד|~>eրOPZ?B(VЖoKCR` _g)'oW @OH,Ϳ֨YQTUa.I .&%eu^/X\PFLd(wջ^!? Q~(wDHgkbB® YV Zj/yIj[g,ؘ?Vh"i-`swIƮEą` pu\&+jwsS_6"*% J,_]_i WqT֭۬Du^gT=`!YCtUw'͡ɀՒτòALى*Gb!Lf4ц)x&Pxqo=(fw~w23_l6g`Vu*;)erU!imGt*ێr=A8GF8X[]7A&K+ h2ciAo IF9tauX80NHfcwf$qjnH!oLHܡČ UUS2OZfi\Y7OOm.=ń=)6`N1Ip8(xɛZ徺]$Kټݴ+}ϱ%K]3JY \ L'Bb:>x u2 tID8@rhfxM+7!m[|bZ3.0HueIO)8/;%['5aFIegΖʫq>M:h2*'RnvEay؞h6|ڨbWVyL . kL- m~W]qÒ3h@fHTfhw*b\sa.NP+)iP @hjM,qymmb>4 _Jx3'gvV}Nӊ6!J" b*H,m7#ܳ7 ~jƗ\(*OQ}q[hA'g9!S{ҫ5#fsr9Vx|VHBY^6=Mc+3rJt!Y'Mݞrdhvn0_Lg{uUUV+ɔ,țJXjG5#Ѡ|G+#7B$a߻L_sE' fHGN ~ %R*ޱG \r ֊|&"y \^@$:Eg!In*.ΧJH–9Yw:A 16Oe彧!N`&3߬ո5cI8y$i &[w!aI Uي%i65>qޘ#=w}xtWHAgj-T*H,c 8Ciy-[)M* HIyuk˻!o5Ǹf&T SJ\%D ;/-rK=Ԓ$Ml #LV#~c4l7.³ߓ)Ub;oM}&S'8k MÄmۦfv+eyrd@׵>X[Xl{В~]$$ix N맑EKl!7Z=?As;hI<dUbw,KSt0:fF!mj9޵P,OZ*T(lKD26Nͅ8V[Λ=ߦ>W e$5T*41A @}՛e[ïYhO ph(_Sʜq (ȪGՓ˄ WEȢ_^ 2۫nCC^sPMlUCٮ" (| +H(jbb7ihV] es*{2?8踂1vƷ7SU|o%v %v[%,nBݖ &Q7;X@|g,-|ydɕ{g@tEP<Y^2-uDGKiDN8 3JQeaBpAKv(i{SWb撦+"4nk:U#$`Iϸ$46@W'P%mN}W7DNi?U\;qy:J9E lR(xvC0_gt'o:Ռ-t.;oijoP5pOs^*."PYyg.s͞Z$8,x&2#8Z&4czJj)M'?}L\T7[{*I|я =bD|1BUѾy&9'L0~zl%vYTԍv-vBtX34awB ķ/t 󓱳'1a!*b5&q'le[zC}3%iE]3y0XW6y"DeϞ1$ ~>:g,cBB2:X T[0Xx?4LklR?u5p~hIŚd dO$r`j}E'5c#X';yZ;;whQi tTM]`b8%i P[gCH&rDsPbm(e [[HoItZ nw8n#>Sk!nQ-s]B[?!lpZF^qߦaAj1L:d,egY)Nd!B{)5@T=oC0ј _kBU[t;u 0JG-1Bu,"g$/өVVCUvYi `V]Kf 0Ɏt~E IK(+ZbDeϿֶ&YxALZV0T n?ˇ0Oz KĀ9;aPW-jIҧM +wlL L62)_~(u8q]/m>* 39*iuS&MVر=! ]J1E5+39j,MR5ۇ( a,CU^ O$3KRYQhZE6%Ms_*dVY?kqUfsr[uy"]2;wnPsD()X/NQ N(zGvD׬1BH\pyKeN[][70r+= kv.?9_WH-68h WSdհJiYrfh elI ҳ|QD?ƫRݫ 6|ľ;h\SbS["nPg6sƕBO5 5Df':7쮆bOuRPdw:,de)ZMB) B;U )æƙf<͠tLͭĥNŀ0 +ns?whoE1'I;e5Yw_n"{8fH˻h;v a^ĀJĈz̐+·Ę$2PI>5gvXUju̟x{>[bh~ZJPPrmb%6|*ӚL cQR;HPBu\95e ]GaN-h`XAyG2DwO@#GZJؼ (yx Z,wV}ڊ?,f [e/O՜YM|G'Z^zibOfrjeV|}t_.-D>)ekŘBfe]d;̝ mnؽ6FZ३ N\'0u7;b*j lEyp=)2ܜP.~ ׇu>FQoo;zedoh N*g FY~/C[EK WnZ8#F$./4KpliPp0ut巚įʂ@֪O+VdɌmF̯A1T* pE,TFO!yܙ)mbKE}>l?nWCaڝHuncU |[KݡP+Vew緫h]eЖ_gbJe+T2pa'OпK>'GoI37|LDfR>׆ QyK𛁩ЧmU" &.m N:^wvirahpF;ŝָR}3,e眰ȴ?[mS`3$(=(Կ92T,64<_a3 uez&,m-7zF)-kBU3Y {/tģ9UKl]i* |O kt[YcAԵWLvJ^ v a/±DdtӓbU?[TO5aLć:؇ 5|LM98>?LNЅlQ-Lʜ5z 0sE  R.r!D("HA^; 5BWC-y?D=bR4 Z0mrp'3Qr16N>Ulؤ.C _ 6Tn1h fdxy_Ur@lpJW,Oe7#U|RCUz?{eVۢPI0Ω㰳Yx-έ Wq27~Py9&~O&O^:JK9W2?Fs^->ؾ!@$c_=R>rYyb}r,[Ȼ;3h {:Czhw ѐ/".7Yo`E~YPM+H °XNgzg,!TX+EL yL^%LNܺ #0D۰DV$S6=•j+g9ѳJ)GlV7;E5T9%`cz02)=%x;f. zl m:G.xFżLϞ(1?&gAK(NpҟWYM&GrBdY{2:7xeحk'j.<(*. n(+Jxf+9%UB oM-h"1=0r?Jg$G*\ <,JX>EWfBSPfE舒PY!IR2o@@7 fpF& y Z SБ b5 MDN. ;Nڞ@8Ie`Y8{4BH Z"}^L>G >zt%%JMQX~·rH s xpVƎU{L&3J Z a&,u"@V9mdFkzd{Xˆ;_"In.^WxBji >JX.-DvݔAm%y} jb2rA2Xǻ8~"PYS5k(= /u%茟YZ4E~3΍Lwi &c0Kko?ֽHb, {Y^NkQie1&CՊ}t +d Uݖ,W2lhT|OBR\綖NQ{$5,*"O/ .9-ZQX??h0z~Ġzc_k2[qv`~6!k,X\]F!W]Q 82kL&z @l̋ҍvdN6 u]Z-[G Z0f`*^mfzr >zwLcns!"Kl)Dz%bD*hw(L'7BZR#| Df*P'ȸ]GOALgHK0n\I¿[R+8v0f;PL(-uQ4zCl>0;o=/PYWX8ݐh}Tcbjڋ>Sޱk B;Ϫ;~f0klt>`*9$: UDpsPV~6Og3h^6^+Kӏ yvq4o:7{|啡S aGQC?^.~zP JL諳Ve;]h0#y/e؝?q dU$],3t#z\k5;RUʯKN>0YX?H3C8s9!`O> SlgCC$4gV<ɘ1gxH^FK6 ifz}u9 TC5cɌ-YAEE9pة|:u|SӇ- :qƶ?b^qhxdo#'Y/KF%YwK1Ǡ "~T6vd#;T̵F_E<* {S9?n"4[t퓠\Ӽ- ޮs|l\b]!^m!sȓ_-,~-L9!5q9%U2 :ﯳ<T͎LR W#w_$BйN4N@D;%+ K|" K{RbL2Lz^!w1k={MrD>/LݍĴc\)ķ>ǥ@ |ύM7?=P"5`tgd#4;.ݨړ/=NHrʐ %T-v6lD@/lR!i Q7M5VA UO_ c7&o"GuBg=c?ws5"i9gHګDd꫸,-[^Bp8;{|9 q騇g=&>s&,7IR'4hY Hl=pqLVDq{Fq x|\&etF o- /HJuIvd$k} Id- 3zmլ1J;`#61_r-:} 9o^\q*/X19Q]J/NhMb&3Ze Lh#Y|&9P!WAcƫF ;g"= |WFp猩i<y/o}-/j5(yf1TRl Hl{*4r}%F`p~QL[ĺfqmz: q4R#H/5-{7 ٯun3LM=yݶEbxa!W;t{zМ4(kP<=.@3X/**SmyR:jR7|$dD}[ReNLH#p =u)hH$^kQKM0܋ <#_qEͦs~dX|c4E',1&?@h)zFw(- nvu|=+q\ @W81Vg9ۼ1F/B8UX@ )9*fs>tP J LVztOiȾ]x@&_-N-  ŮcDSd]bH%?"n53v#Ǽt *;\_-8f'X}C {nUF,u@UxCfUl^GQZגTs!¹ΧkK 6MM nٸ̒PNP.d|hFO\R |1֙YsƧ}hr2e5ء[)WԩC$ w ; ݊ÝK$2Ԡ&q|Q,@Ì웇ѕkq!o՞MiAia-' BwG7Dll̽lMSK*묱 ExPk D%v c1=y. LGceFA$_\įa)#W4@0aVPWGXcŀMO7O#d,w98PN!z&_e[8{s8rp$q̪QlXMbݗeM%^GՆ%1F^jӡR,(mhHMD֠PE;яTX8}0Jںcr۷odR ToV;]"e,ud[~@!yػ\_OB(i08X Eַ =h-5SNK,δHwk:Bdg~H=l卬kKgH:%-_T+v4,<K0mD+a q4",0.qU,K]҇,m./.7Z꼜+)\$(Ҫ>̍@zbfd)p9 CtNnq͍:kDU nUUio\%ħl%zLڄ1+~g} Q QdQdjt.fN!KZ-5@Sl4_AP욐mozXũt%`DMvmP@/ګvMB%ep<Ǒ( #A ї9M=  f .s{႑q qo^괈H$m~\#^wD([=쩖_nqi<aX˶!%lHd{2s.p\3όۙ͞ p:zTH6;0.%XU ^;TiLo3J,{ac}/ä2Z ^LP\a"aq\&jډfvԽP묾w"qLƯ5qt@|^䴍r-"rρ+w$_|6%kО!n!Х d&OZ>VRZCA1z'O_cJSi;/ӻ(ةl#*$v]QB:6so>j*hX!cz6cbU'\jYDcˬ,,oƿSZvb$V Fz6Yͮņ! &B8z⨲F!qq_37V *b׊A֠H5"xk;BS=G<':' -͎)h? AἬ~~%ˮ0(/i~׾ d(#G1r`]9zjR#2FE5P*ue`1kIx?)aBܬZDYά2(?yUs ^b Y.gI+!eS7xpHj{Oc=u C =༻:L= ~DrrE K5|5UsF+paM =}kgS9Zhj,RйmCu9 cU " l#%EyXH']j"7ߥe3/ۯ9%6U!N_.&qi7Q' e9%_s&zOf{8N4\AR !(۸(CxebM\xc/3 YBleD:;}ͬu&LXUy% X1{9cotC ؉Eg*UF|+?5afndmD>s:Dh0tƲw&Ӭ4ZL27/@[O{go4>GqxrwBcT ղ)U؎/QB]H[r`As)(~,5ם>AbuobShM>; %N*%XjzK` ;.5bJf:Ky&էKb(vs8n2Md:hSLؠoP)P%~Y/CxrnSdE{:$ӊÆY%wqͳ`9P9rIWM_$=pCQK_)ʚ!:52 2\d 7mtg ,w阄Ia=%' ri@wrx2͛#%X̱rS}BwSFBxRdl<0Hovx*4ѶwCz3-왯dTU#}iE<)̔/1Nk=ɃסYKJkqƮ<`*iBJ ˿Ri?91u['L)[EgRŒkNnss)?l<m6KaI| [s*TpT|Y\xsN$2 "1Fs㞉 l2[A4(VLg=ˉc)Eb$)?hطK]du qܤV_~@ 9#U1U!яvPT%!IH -s̈ROhZnr*2@&VɣwP$3~ 0`YC),՟J$w2XUd9h$k2:Gieb[NFA#n~7 _\HĈM6(SL\ؼ>)Ic3f4\P( #$#T1B8=fJu07jbMG@+U\!MȗYTGб w05k { j.^< ~ PW" Uaf"l3dꁞc9/"wĎe[ /x=x9@2ҷCE?Ib'hڶO\6oц/A4e*Pۭ#Jj]fL297}\0SOe{m3q)Tv򖫇&`u(5Ne_1+q0g[dۥڐ 9ZEUS x,n(59L˿7> 9w/BFX' PwN-ӈ#h rG=V(oNjXb“u}+v`Q,(p0'Ʀ=&, Kw=\[+s`3{9F:. >dkY"3P) q &1# 5/Й/cvZʄካ7紌{#gF2T}X}ASI 3Z e,_LiJ Br2:3k%=hϽ1~cbcaZVqQ W @cPr!u*0NaCOFHDT~V8ץ*nԇ&$ʉu"J\hkmŋruʀ6 }ٴrd#߫⍅.eP,ݛ ~yKD}|_r!"pt#0K5nѩҀ$j&c3`>ϚwT$'%\yOR4W3U\Hs%]U8gv ´h27Z:h ²RS7;5ص(ܨ9hegˁF2MzjYBJ;9*$\)/@@7ENUڈMk$ /GO27>ݵ(rm]9|O0 Ez'9G{dܬ/Zl ZG+fhg\ t# X:Z8ʪS ar} q9|dFE1nQ"=deSZ^V02,SߒT㨱i\F[GMq;s|R  ulT:54KVg.8NkwjCS62au9[x5 Tfc2Q׿CٳOH_dߢEvOeCTk*,+?[Tj+m޹ #@}?Ayafsa۠x?sZIe%~ }ەqwtMZhF? @*oBLq+TO9-<(Rp@3 ]~N,NQw%k@/.=fucB6FiD:J~tt;2re1xCx7 .-x[V~MGl6pDE8 s]M)T=*"VeR0IOPϡ2aGSEtzc#۝t>lڣv8^RquӞ'qfEbt 4aF\$ Le}Fj[8"BqAH8G|t1Ҷ'䓱^ui+:zj\LnFWQق/,zM_re|Sq_ιD (c>NbK1leAXG82-ZS#.`} -V.ZSCc$c%6F.'D]7Ug݀لv'< 8 Y:z>gL9M2.c3 I`M=雚 3g C̊~f RW5X-N<4?Vl [F7#^}"p`a -kԫF&]炈A`QC )wb2?!جo PBj֛/<̮ ͼY"EŷbG!TT,OU'ԑԋpFI{wM^mSeg X֝HRb :YeeݽFJ8haᘉZU{/ePN-S/bY߸KXOGk+1[+u;I_dnzjk<|A&wJ0VEV/c^aK hIVhQ&J $ 0H\ҏ♀šy] tWl236NC"q?z,4 BuN8W]* ^jܻ<ɱ%g ^ن  =q4 ^ "dkȤz- iemAnaԕb*ձ($ :jo]D#/T-k7=BrT$c) Px{F%$nޚN.CC@]o"]XI # y b9Kwb)MvM mDLe@A^сQ-FmMdb3%ݝLl?Qj^Tܑ#v(p :&4tf--4}'[HF5>q Xs"$㤾*)|cNo_5&EhRhuŰsχB_';*]=Ӟ Q]/$Dym30+xԉPq% =cH: '#g+S|Fl.#A%GD,z42&dO^l{We\Fo>R[?ÚԆIsRUK]~cO7õ 4'6.BmY'eݑ7&SDxb1HW8gn}ŕˍDHvCS]z%ӥ5hr0: sSaҒ|@3rfp`]྇L.a΄;bb2m;hxE#6m"~`D!F@=l{pCH+t._ ꐗ'‰b/XݠHXO?x9IAPrffN-.(qI{J6NSMtmT a¾DQ? zW # yr/[R >t@elG74H!<]j3E\ ГlAda$G{ӭSw lDv6џn~2=~ȫҕ|Yw,{zm7?).h$ 5?= aVn!|A4Da3HRpouJa ^\w#ITd 0)"u}}0MaS%& Wue))d,8DLD<q)PVY@mLDb uf(Y̋j~ƒPi"a6YmABɅ^|{ hա^GYc3Mӌ*U 2Oŕ9S-%;.8nIt, K̇Ƨ#zm9LBt!D%׃ 1 r.ۓ!(GkE%2,fD UkPH4"4缇]y˝v_i6/(0o%5h=$Ig RHʑP2sa[=Ta\f/k6*We,1^e7XFZ; bf`8ң.dY, ĝ`cVx30=v $KE_|() u5il 2oxj?;{\?#MڬJơ;4xKe/-N"8^PK[-%ǩ-L[vU-l#NI*XE hlSi~Ws#( ЏP'8‰J;V8$He{t})xqpY4]&ŖFX2Gi/O(*vR[v$AMf6[2hbN`>fBnd lz|4B8ķ<2 '{B` O"yZҘ~+O97וe^?zK*8lӠOUzos{Rʔ-2W.~u*:ܴ M+A;pĸhvh8sfbq{o\-XĒV ̱ڽuѓR'0h]IVtHKL!bVlRlB?o'd^w/rXTW{d#'PX3fϸAw '{>A9V BP ` rR2n#}SԵheMoRuB1SY=Qnk"zdaD )O6?2s^u)ܙ1K6ӯMlBvrzy!Eڽ83&vj+dNǭF¢Q$0dw%' h'/= K8 )A-kѴ EZ^eCnk9Y4yej֥z"i(~5B D+a {3z6cTrb8əTk(筞eQ:KQ!W'_=qns[#Jx؍C <zƗgwWM&R烰pFUٶ^Esx >[U U8CM{GKկ*5Lr.3sڣYu-ޟVt!*rVH rn0ЙVd)k t=[]AwrH䛘CσRJ/DhۭǺ,(Xyi-zst{WӺR <6LC«P)}q|WxPm<=$hCdR /=`YP`d,Nư̤/Eu'-|}8qiݽ* 53 bհBέH͜DkW"Z{tS_)s؞€=DcLoi2LZ|ڱb0x mE`~z#M_Ӛ7뻱 ޏƔԀfܴj_hs h"M{Gef`>u/'bEO򃘰6 t,Zl 6$˨ 9h}4pEQOKF.?%&D"b1 ǫy/9C=\y;0 1M .fB#8 I {343RxiN?P?w;HwzLRDQSUC~y`9K<;⨑~?c%=(Tm\kѨ_?ZK|Xl ?+ȃΥzR{zK&gJDto70zy3 YNr˩P#戤1Xtu[0cxӌ4ǥ>ݚAAk=#IiRq2qe^s0wn MNk)Nۋ2Y\ϞcSF-u;efpuc=:Lw/w|Tκߺ$u~{%kQ ˊٰ7uҧ/ڰ6jZHW dvʦp.m>r2 kJ13\ɫxPp r(siȒxJځ;Qg Z=DTʠs({6A#ZM(T C3Wpx:q H,Gou0[97 7}퀁rrޗI2z0Redm"KucY:h܈f?tO\m͏A :|hA?붠!WQh t"tEW"p I 9?;?.yjb{nxR^Q8|څ'(t2 GF e6ӖhcFWA0r=zeF^d-~1K!-jGJQ?+؅k}=[m :zz Dq@ҫU-&.LiVih&22]zׂ'9Kތl+qis؟`| O@dUz|8FIhxjV_r*Gtz[, ik>t>Y Zއ ݺ)g$z6_Q*+fju"t7~m,1ؒbQڴ|Y>jj mbTiLb |K/poVVYYZx^UCNlnZPW'9Yc,ul^k$nyi.W{HO"=bb/JS"ϡ8gւF݋ ޑ3Nb(|ƒM:WT?|g($FʃghҩPIf#dU3iT&DR@ 06wu hG^q?JbJݾ`sjgZ;2aGdC9"TzJDQt[H;ZXuX aYi)p7R7aTfdr=a݁gܰrjMΕ \;-s+u[7!4ംw)b%0K)Zi =A6|{A@jfm G;)=Qc"\S.V0Mu\\Ltd LTq;X%f !TRV{2/ki9םIAlc7XQJ@H<+_V55zHք̊=b&YoIW[} a6S$tDvEѕ|DKۡiå2[1Ds3Bm.ZV j>zZԭj}=%ګjSĈUِu|°c`Jܑf Ĥhu @̬ xC4EV;ݥ5.Ѱ2"bX&_抷RX9{2 Q5J9]oo{PUA^fCЄ5$8uuw@HRD-m퇗3[NgE>Ȓg/IkN`g!ysJ L71In:''f v_m;׶(~EA^~tB0sFCB}U+rHPΣ98sĂP?dRdK~ʺ9l9ž.2Dq2qQ>-MNks ';1њXv>plF'o֚xSeF:WqpH XcLjl([:W, r3jw"t"z7UC7݋eIwwxs\Lu~~:I^PcSXæM=ZC_<>me|9[Չ2VqV _)]_~F,3<{zejd5P'J%{KEqGd9Tt[b˒H6aF&J)X&)'UĦTi ,)md=ⓆEGCu tQ, +O|ͳq!ѰPt BqT3㢑(PnSsӬI4[tL~x?FH}vD1BBFKlkU\ 1o.uc/BWgm a5OOh@FoحVЩ5BT<IF+J .yhNgWRMh rԺ&EiVK xoMey*O 5f+h ҃ݵ5 %LPd&'Pm][TX c  fǩBNҷ9 m~O~p%G;3eW t? z+թDYږ>j?Dk 7rZa`sqTy9ߨlg;82 g}P}?k@DI)Uι(BP`Cg׃jAZo WRA " s0xh/w6ˡ2,+E;^>]ᏃrzQ0CΔ1M{PU0R/=tHQG.v*2|jj7Ven?1ՙ `0} N,'E<\]fPvDd v%zS=z}9? Z Ȧ>#?Aw`Tb1\_mHDf4 c:::#O|3;ȫnM3uSʖg#KiiQ?53} ЦVt /H2ǟ\E;qAfZО77#:cw֐ZEλ/+?"<kp';^>/gLQvmKWSZ.XE_߅*y:Co ^yoݽ`09}und茉 T-𽁒[ӷ|@Ogrtw&&Mt~\l~+$LQμPqE%\ GWvd)lc%ވ` CJdRz7t/bL RXWy:;/Ω6Nτ&`P@]TmeĸN%A!Ҷߑ2:x2U!?cc3-Iwp׏. zSh]՜EB{ pP DdqpU)U ]S-E=X܉lB8)Bb;%'/r{\Ӯ6`]`;9jdmHn /WK̄9]δŶ4gos!sfxx3m 3Mm.C۹αԧo*Yd4ژ$7(,8W"N~cȹrK(]Y%k4i$YA\jF%{R~yuƗP{Eo:)#Ј .9Π?h`%vnr+(Q`(Cq ֵ - X.-r8TE[S 5OB]5i`GO7N?~QMr<[KI΋nB^6tJQH@{05 @ayȘ:# v#߶u(֎х 3;+%\XDGNU*KrtGg"_0ՄC(Y)V痛~X5A-R*.:`k#l׭\Ҕb.e9# ^ˎ2-WgLJLZ/IoOOWL+`gY:9rUSn28sIBC_P\s W= *N'F5٭f.D~{ޝ!ZnyA'Ⰻ8;wâj'ˁ#\w|;/H\r&=H,x I,}n?s 2}jL4̃Y^Dbsb.~F|ݽˠy2#Z_1T MZy Xrؙ9![*}1 BТHFj?"'6ito#u't0 0;|t)P(C AUKVTin'LzLO2%@iӚIkq&LJ]J&E|-[оvUr>+e +bTYrYG@ IvW@ze{e!:"g>PWh= ٗIRr,Srk t^h~'a0y䳷sm;5dSjluͬf]2Y/8U6N8IQq;Wj=㳡gg~%:)Y81q6?u,xz7g*A_%,!20s[ڣ 9]ܿ?>TgcH%0TƢ D]ֻr6d"% ?]QGő$289Uنd+М7U2#nvNFx;8@^/FHl| 5 nԿ}]B4eP+og2K:ꕮӄˊ)'&b/XF{yc4>>YzE~1z|q狫!/b X %ҟs8 цo˵Y %e7M}Ď1W9K$N]æal> >J| @U)XKwk'4<==V} +<:I4?j}IWx4TzࠂZ 3FrN/_~EkW:{;SM'q臧oT3hMC^7'ϴJ=:c5Ŝҹ,܏@E~mcK=9{*F}_vM' FPVcQ.~qXOdž9' a9Px'nlz2RgV ):{ږ0ȥV_G` O̮45z YΊ1:DG"E0`$bP"R%AːL F)%ٶwo";gpihq6‹ %N 7O Ou[YL$C,Vm=5\K/R{G˄qz<"9Ą%hƓI޳;IӢ@PY1]c48xb)aT1=+˝k mwA zhp3D|+׶Y7Lv>!瘤'cc7g+cigҋJӷ4`FA*ts Y5+y;S{¦֩!<-V-t0HG^g= 20=>4O5\h))zNe@1(Eg$oi#59p? a{fX!쬴!iR fD+OESٛVYp柍" \&WH"ps7T?/YBu^;=3%q]9hh(9ΘV ;%$<ϜIf8 DV/z`dA3MX\7=b%/CVIZIduV0t'H9j%rT --ewTNG=-]O&/^H99MhI3Bv-o^'}۸5UOU<Teܴfs#aQS0JYۑ{oc▖L?kw0z!?w^ Pܺov"1{%C< la,,,€Oxg#t0A{;R0VI%@17|̀diK_46zᏺ9fx%JL$~:ٰ3hʒegER:#.2Ia9 =:v@P.G/p!Љ`[#Q8eEv(2nðWu‰(H1 +-Mu mgSw[F}O:kC5HLPa~lk>qFHоuT@>rYd-^إ&:} @AH A!5eZ,$Z_59*:p6yz Ȇ G] y%hEھ)!oO$Xe?FtY>m쳴rY.=8;.dhp Yz -^oi7VKWhkcOLL#ٌ+)j4BnLTT+KcNC\0pz\D'[ԟ?Oduy{Fͪ+U*/zfdiHt7WqSUx0<5⻆/L!7#Daup1ҋ <>~A/w &y* Ht La5뱂MRR0\:4fT',?@zJ\AX|{ӋtRonmolSsf"NG27ۡAQ̐`CY"p$5_rkBvkKf( %hLZR[xvu]5px}7#{yjx`9N3Ya {N81kmM玈v/^=b\4H_! "|j` o'E:x7*ܸJ.rʺrLYUCe\ET7=L6G퇟j״ٗŽie+RI=0| =CEnfq0-Ge 6ыNԯHo;23Uu̽1'ӆ~icē3!;K+hF ǍA/ WӒJu60,B]o~sKbS\{oHh,Dݧ~3 -x架•k$28m:-Hn^t1eY?x BRDحX4pm>n =LT NyL9⡓2aI/P>Sl×>XLj(KjҝsԞ"TShvo`UMhԋv_I{L&T\9⪵'+HGliBoj.C낃2VVc8K͏1jUv\2ڰJ'H@[ YPАe/=T5(g^ZPjw@)s-w$0lĸ]P7 Ip> E/q1ŲRPd8MDT}JՉN]pF.!J4debR/6]A)l:yXVߔb ̬J6oArc,71q{5)KtLEf:.NO t :XiGdZVq dI}+vE?v+XWSHG5H|`;Idy/ߗ  o{uI0hq= $.r}Om xTl ǦL6qX˥>x'ϒltdo\h7lwΑioAgՔ1K%2VĢ:5(~v=A/At.5a]E7 lsф6d]kJ* kY@w.+|>{P^m 6,K.Rj/r~A8e =NZIpmau] fkK&!L#y`ŏ`rƩ@[ߴ93-Lp}A @j2kL4bQKP,`22KD\ǒF m7vUn&zx Qna7اi(j}\{LA 0D8'ۘ7bMbR dI44IEvIqqS-:TJ_zˬ oV* |;{i:!:"߸OʯͮZOZ^Ft~doVP\ Ișٞ(ZXXx4؁žʠ_ AWaav8neG<W=BWBY8( _?%@u!ݎ(ۧ8k⨏<٫f`ؒxSb"h~6;7x3q z4狊|RJj߽[G>' sRo}9YtqZ-Lh5ZrI3JE=(>'R장rRKuXuZ@ZKM;Q0ǬJqӟK5U: R}k.TR%/Q}Yb,p-ý 'ܙ 6ݵG:X^A@++xR;=)I"dƌ.\$jG?\FH9/7MY%wgc'AQTjw6Z/qmfb^` 3ȏX1d">%Ǝ~ŮjD_F30Z]d`{U<-\63^Д}?R_+j"D ػcb_48 OLA .x$lq/]`+6,ha@9f?ST`llAuL6#:Dk>^O{D#)+=DXu4@,m-rHroE㋕"݊XdICȆPǦf!-Վ滅{Rh78}mvf9̞O+sWaoѵbd;h_{',a𡅶&W1e9s|r<t]5B3g"dU4-=~DB q,ۅuS`>.!s[G}aE+jh!q\N,2ɝZkq86e;/bl z7L'$O9`~R9)Klm D[;JCvnRC2qB;,O@݃}CO|H`ݒXpT*-Ҝ)_Tq [0r8"hD .y!AX YtD-_{A̘V`, Ѝ)GSdOmeqaM.offK]ݭC{?^[\27n2kl4 Vvo_z98VY=Z]sWr\WC9a @gڱW!nǹ00NWPVm^- [j>IUiD2.wQs? =Z@0mt$ayyCj1CD΁F6uRCDTj2_< qL4= I2BmqB=o S̈HZ"X -SSzpgG&h;>?6.mIz'8Qc{_cF~ T˞heg7XSWsG,7eL*_H܄O$RwbYzT6VDL J Smg $dwmD~DDVGbmcoul:3/4HQ%&&{T Dq(&K{Fh=ave1}: (@Cum8v,eF:B~͖+qDPpcPpLlل~à֫[ "jZ9YdVx~y(Yo(M3|v)e<†2fa2?0kSK`H`Z MíT ytg1NDHL;CcwItA4"{?WmRQg4mg ,vc)9x^!`+C@Дd1tC ܪ<8:rObi =2a4jII&q X V~kc[4ݹ 0NoNjLQK/PܵL=|ߋEn C."؊5[kkbEX_14>qWy\qz/bpG g#?M]6מ#,UD#Uǰ`tO(Kxmپ`Ke{1~)-VAL Xzm0W5 mAh5̈FnGoUjf#{ KF ,$]gW|Cཧ5p]zOc[ cL|t]0F(97v{CqրX*&Bd_NДrQmo;Rķ~A,XӂL|K3~GBhD.G.;V%bs7vEؒ"ʧs_(8GS7 ,N([i::ĝ(.ilmw|c9:[E`O̊!@( w¹Ԃ[#0x8bOm:Il),Fqߒ% 3GPX*6qo.g Ƥf*zs`%C51`49o8go35<,q>5r @hba I(456kc Pfx۷ҩĻ،O7]Ū!rw I8ʾu>X%Qdf~ R1W#2/8UVJ,jt]C#XgM$`02+4+SU-=$ֈ[H)N8<)uTA>܉7% .M@45XSgnVҒ>;+vV#^:rdlGS-M⩱A1w) A &uE+[4I 3hKQss;n<4lRB06~]WeۿO tY$rAV]kY~YL̞"DX9@ϭkqfR #`BK[jnW4P0{]|G> uWRxQK oHyur@*TkJ+'fr*eO(qJٹ8h!`uT}λ8z#(X*^eEdK֪}~&-6G:@i[}mWïekVj/cϦwNyyuB^q"믟/iXj`Q2a2;jJL&qj9 =/atlS̷}li 8vtVnVƛICr} 1* Jmo:FkDq /g!WD%јԺe|z^WAV!t| i؞DM3q $zk%]Վ8Ҧo57m'𠈮,Of *N*Q2U@ui,?eoM' XG#x(W'fEv*My {(Q8Wya>%BH)hZtV(xt;/!v79/,?7@"+d .ȧSo7HZOTtN!M%m"&Zۯt= jOx½~k`ҤlבrSa֙Yg1TMb{$Q 5!mc 7K´+<4~D<'/<]jIwoaF;&;x`=v,}d91;x Kz obB}F T+o"b0r; FZ! S]ndsq<7́Wy_-)i+̉iֽG.ޑi(zshL!TL!Ί+4gAзt^Rt#*_JGFRP{ &x!E:*wD&+VVw"Nb*f O.4 @qbڂgVQLh [ƞKRLilK1UMMb4#X1@&;42Fp8dC"n5=}é.û3D )9u0 pͥw| zɃ6F{:OӴkOET_y(_=XL[;rΔ:5pE޺Dj@eeCݐs}QyR䶥̻ j|V~mkM_^϶b.}rp_B=AKJ4@+4K,Z'~| 9<ƾyuLZ^ BM:-S %xbsݖT~#{|`QTj?@ӳbbك/25PoޙbwT?c7s*RY:mo"**S}YKZh!?b=$&.%r2:06DgԘѥf}[%PQ3MNr^ƕL{ln J?FpuZ&F=Y[sڅ {}Q|/D_2y {auL?RW)_ % zt_fz`$5ׁoJ-yިped2mng>?UVM8 #r3H1*h-qKhmZ+@638m7>ɦ<-wdFpI|2+XL6ID)tC۫&胔i#KϏE0?mql9L'$2; ɤĹ=A:PFxN_x2ppt2jG Ot)ܕ}Kr\(%6Ԉ686_cWg;F*+dcn]0A!6nBGǖAh)//ז@J|尖1ڪͭ+&? $ =vY"H=a A']ڝb{we5vǺ6I45laʜ/{)r`bLG9A˹4ўՁ[Ee!>sb۱kࠒڽD+eQ[f2(_**@WM}:mboJ ) *~[<rv=18}hAҝ$L)ՒTb0_C%s@%Rۥ7_n3k?b9>\O,P/@j {ЩeM6Oq{[qRsߋaTڶX{RF)@۲b1 XHpjkpݠWLG``[rsݥه9mAMjSW(:{{HpQxf GP]Dٮ,rdOU%o~EKo6r4b֣HI4ݽsؒCA%zZ&x`UQwɭ1^tvwp0"o$ضZDSL{WxЬ?G8O`57r8ʶ1-f$?z>!B*1rCk' R? wo*No %8W]q"eT ;&aT"̕ L%G{7)} ܝuz"X#[aq +ӹ/}6}˙Zb]D)<~ͫ)Lrzj0PVPRKWiYm a OJꝼuCJrSg/~X\ >ap\ iΖLvWs<@ RiG9U56 I4!T]}dpiX%0,Y1ZMu#Tpr *g"}s8]xbVܹbi"$pSr̪5&w3SW!) T`Tb II;Lړq!~e!=&X "ԊImhX44D] .Ǽ{0З3m~M!FA/SCcC%L1ƥ8;SqnL1ɦ+~>7+1X6kD=33M]Jev!";ц2R~I&q9I=&'\|'j@$(C,o0Vr$}1[Yq~O;3ty;Sbn:$dbxiRthwknd<4"P@ /El!3P'8 /@B~D4n.6̈pJ=TTi3(v/bΔF5jǠ<=AB!!)GD#5@ Lšhň;&h9"Ąso59Ur6`!RdٝSS tV?׼&_{(A;%?GYw5Lg&*Fc#?ٴs=2xPh77q0xUrINjȓ8-)bBL14_ Y'3ƛ,D53%2П6DF@prn2|ն  :,0N5 ,*8zs'} p5!>Fk4$L@j9kE 6ZX ENOq Hu~-kP-5*ޖ׶[WdN q<Mzn&n˷љg`ǤjQ,yiRQoA;yZ}G7uWIOpzy?&x4h²֡`d9< :ﱵe%vy9'Ã",ZW_pZwPZx3b޸[%8oC}G]U"X5=)eS|}_Tam\S!F(LKKQgccz#JY 1{;cV=OW 09m6|os*Ԓ0rl C K{c}QR$#0"048 OSJr<!j6@؝H1\{ޒp5̖џ8H2 JsA] )hh;ʏ,\d#@ *j% uuUϰ-Ǔ}!V qS4bQ7;|*%}3{U8p!CwR`$$z?ev[$ 9 }"{X8ItZ x+Rl&v$}U?gȏ0;w+*> >LFb*p3zjrs笀`*m". g wϬHT[-ԧ_Ϸcy}UO£m&:sd0r X5V|!I/2%u#eIp+R?)`HdX4!zmH"caַXnHhjj"#խ:N5 Xߙ;,t'F !,LN@ /廬PFe*CS'HC`MkNCycXqYm'{c.2/֘݃i)HLW̸;hra3Y!NOAA%+>92ha&j=y$+%L /^zAE7X2uwH>W$;i?%D* +V{UXx+fptMt˟q+oJ|.gWt{0%`Z D5)ϴ.2m;hU<>b^1%rZxzxr!?<gٹCg 籑$?a`4"ԓ8ubW}˺j/9D(eWO2e$&ILo:MTU73? 4UY.[2aA"%ׄ )6>5^gIpcCɜ&XEYL{^KMk11x) ^O(ʙ5- -;|3.s?Zi3wnjcjBX^2/ն2"e$;8>O|hca#wbdfR.D1Ns,! -dAMo F# _8T @|T@z*T%ܽNb*Jdp*/fN]/Abrt+e৵*动d#pQ)C~%z956N#Y&k^uY*8V #J^Ce/y'@Gjy;˄ny8Sl|"86)*h j/|[m~stYԦ7[h8<ǽ}ռVz0Kg5:QYjO]:ZM(Ri#b)$[P#V'[ I9h`g Ai.pa/ꦕ_-Kk@HC^?fPK}ƽN$:P׹]6f+ayUk;۠يеor}˹W2d{^UJJkt9rYZlc7$sZa3GQEqM򀒵K2v\X.g12˦ ]^1^ |&`mǕ&ݗl`1B;1pB<ۻ=,acFS-#(l\?sQ޴A |lW~la!Ծ׮mPdOpdW|Yv|F7 "Hk? #"UMCߘruzmm):M?rex)!t%]Rߒ2SǮ3zilm8+F'"NY;5mKj0%}=.I,a!ݞ5Y>q%%VwN3%q4T@9{h%>j'~riTb7 t\\5'Ͱ)_PK˷d4*R) @gXyg%]QD*nPUJb}i )J\lKgRxEY H23|sO= k>gQB`f0%@*"XEn3ywb&_}Oh,z8pX]y]3Ĥju[o%OW/W~0 ˣ4Iج0O Oq& &z@f m,6ggCۥ{1T~N{9u*]s W|2a;Lڈ0uA:SNJS 4emDSK7~8t~ԈKRDu׭ ^a'O=WrFokpMxC):YmJ"tc]cWRC m7iuil4 ^G#V#h[St /QB4x>0'W qqT>H\y5&ڜHjʁ҈e%RM}2kixa q䃔2n b9p&Ss@P͌wP*u|gٝY0-6|?@d@ K= *9x)՗h)(]>lenzC +|AYG>fB{BBVѵP_bE[Z#:86VwSWiBj>ށS3:dHuӶ#\$6E ФpD|KfJAT7؁:[Y+,i~b]̞KJt W*Aoa[ ie\%{V2)^AJ33˅P/7ɣ1~8_(CFYi&E&Bbӷ(ΣO4 :ov (y|=g+')5LGr[hM_NZ+Y(;!'e4nՃI|A .$Bkن"z:uY=?Y iww&K#w s_L}Kf6@h_ҐjF([llPM c}_6u,AzdiM;38DYkm2MҪ ǖk4M,gCk'(y\6;g(KjBOXMC.E8ϱ֛^z;1z 1&RJS0Td'7jhP iмȜ1r [H'[^7O\sX"~.;O!Y+JǶ=1{4pCXzZ -P;~wqRi}F33nBEz'uFcwCiK{'\+вoʮsbgZQ:^JP$=ݲ3>#CJ8dILUcSP߿'UcC[(Pϋ ۦ?įʵ<ǼE[ɻ"fz ~cgh7f5BTZ׋ʡzl5 ㄟs!Ta'\>صK1 h?AA;"j"^3< |L=-3q{Ń,#TDoM~AgortIt {̡5kG[8yhrbl6}L%ZG#ZzDݗcL==q;e_@Q]LiFe:[12HUxhm0U׃Y̗XR|1xWtq/V1j8"A;Q%/VUN;p!.?j[4ؙ' 2Wpk+jYb`H d*?>9AhUslH@ ؁I>@Q[3u#m$wk]zˑ-2^4\#)ou)RwKMZѿMuvӉ6咯6\#E ~"4ǯt<~xykaB|zCr U i8/a| t8wb$iЁg͛;bdt2|\߰[XvcD=֡Q*$+e'yw *KA"\Yl8*RI4ƊPo%] y܃A |^5} wno,Z?c^cj[]!n$Q*ᖳb2HV@ (a; VZs BEͶ/\QΫI#Mzv-tl:d< jw^pB2Q2.b"c,޾ UBT 97ofl;c< J1t͝W=/J:]$ޘSuYN][`33Ig+ʸk uh)ҍA``/<=WPjuBP@$y &t! YZ