sssd-ad-2.7.3-2.el8 >  A c U]f4vL,3M|X5cֹT w ߫bHWnQBE;̓fCݍfL9Yڍ2.~XTnZff\:F? ${įn058XZ7aXofO12ަN&|hה: -Š*0oSO9 K=žnE/Q+Sf*l&V6` q/ûg,fi>iVy睙f}kNn'*7>in% kfmm+Vedls&|I8ϰm;U'Ӯ}1l o?i[UIe^%?%7\+ #ˈQu8fHo:F^U4F5 o} H>pE?d   2 /LR\            T   $TFlF FTX](l8t9:erG H I$ X8YD\` ] ^M bLdeflt u v(w x yR04EHPcptzCsssd-ad2.7.32.el8The AD back end of the SSSDProvides the Active Directory back end that the SSSD can utilize to fetch identity data from and authenticate against an Active Directory server.bx86-01.mbox.centos.orgCentOSCentOSGPLv3+CentOS Buildsys Applications/Systemhttps://github.com/SSSD/sssdlinuxx86_64'&K8L <O AAAA큤bbbbbbbbbºbbbb3c8ac4e6a30543ff219f2f2cb2b3cdb416866c7d72bf2bbc753ce35f0cbff344fa2320c8b9291681db78de851aef88a9ef88b472c9a5644632b32c589693ee018ceb4b9ee5adedde47b31e975c1d90c73ad27b6b165a1dcd80c7c545eb65b9039a4eafd73dc9ccdfb60279aa64793043789eb3a486a8d46686acb32ac78d172368076e01fc197ecde952d399ef698654847434b40148b99ff31c71afcea214bb22258fb8c1d69cddfb99ccc5f41358618ade76d2313491ffe32f4e55c1895162e8d5daa4fe04a0b885fa5c5956224a2bafdfc903bfedbe35409154ae9acbff3d../../../../usr/lib64/sssd/libsss_ad.so../../../../usr/libexec/sssd/gpo_childrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootsssd-2.7.3-2.el8.src.rpmlibsss_ad.so()(64bit)sssd-adsssd-ad(x86-64)@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@    @ libbasicobjects.so.0()(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.14)(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.28)(64bit)libc.so.6(GLIBC_2.3)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.4)(64bit)libcollection.so.4()(64bit)libcom_err.so.2()(64bit)libcrypto.so.1.1()(64bit)libdbus-1.so.3()(64bit)libdhash.so.1()(64bit)libdhash.so.1(DHASH_0.4.3)(64bit)libini_config.so.5()(64bit)libini_config.so.5(INI_CONFIG_1.1.0)(64bit)libk5crypto.so.3()(64bit)libkeyutils.so.1()(64bit)libkrb5.so.3()(64bit)liblber-2.4.so.2()(64bit)libldap-2.4.so.2()(64bit)libldb.so.2()(64bit)libldb.so.2(LDB_0.9.10)(64bit)libndr-krb5pac.so.0()(64bit)libndr-krb5pac.so.0(NDR_KRB5PAC_0.0.1)(64bit)libndr-nbt.so.0()(64bit)libndr-nbt.so.0(NDR_NBT_0.0.1)(64bit)libndr-standard.so.0()(64bit)libndr.so.2()(64bit)libndr.so.2(NDR_0.0.1)(64bit)libndr.so.2(NDR_0.0.6)(64bit)libndr.so.2(NDR_1.0.0)(64bit)libpcre2-8.so.0()(64bit)libpopt.so.0()(64bit)libpopt.so.0(LIBPOPT_0)(64bit)libref_array.so.1()(64bit)librt.so.1()(64bit)libsamba-util.so.0()(64bit)libsasl2.so.3()(64bit)libselinux.so.1()(64bit)libsmbclient.so.0()(64bit)libsmbclient.so.0(SMBCLIENT_0.1.0)(64bit)libsss_cert.so()(64bit)libsss_certmaplibsss_certmap.so.0()(64bit)libsss_child.so()(64bit)libsss_crypt.so()(64bit)libsss_debug.so()(64bit)libsss_idmaplibsss_idmap.so.0()(64bit)libsss_idmap.so.0(SSS_IDMAP_0.4)(64bit)libsss_krb5_common.so()(64bit)libsss_ldap_common.so()(64bit)libsss_util.so()(64bit)libsystemd.so.0()(64bit)libtalloc.so.2()(64bit)libtalloc.so.2(TALLOC_2.0.2)(64bit)libtdb.so.1()(64bit)libtevent.so.0()(64bit)libtevent.so.0(TEVENT_0.9.9)(64bit)libunistring.so.2()(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)rtld(GNU_HASH)samba-client-libssssd-commonsssd-common-pacsssd-krb5-common2.7.3-2.el82.7.3-2.el83.0.4-14.6.0-14.0-15.2-14.16.4-1.el82.7.3-2.el82.7.3-2.el82.7.3-2.el8sssd1.10.0-8.beta24.14.3bbγba@baZ@a6aɪa@aKa@`.`@`[` @`&m`@`x@__@_@_#___[@_?@_-B@_@_@^@^@^^(@^oj@^ku^Y^S^J@^C^0"@^0"@^0"@^@^@^@]f@]f@] @] @]+]]Y]Y]|@]o@]k]k]Y=]Y=]Y=]Y=]Y=]M`@]M`@]M`@]D%]D%]D%]9]9]]]@]@\\`@\]o@\\\\\\\@\>@\>@\>@\\\\l@[Ѱ@[^[[ā@[ā@[ā@[;@[;@[;@[;@[;@[[@[@[@[@[@[t[#@[#@[@[@[qr[;e@["XZZ&Zw@Z Z$Zz@ZyZiZiZWQZWQZ%8Z@Z@YZ@Y@YYzYKYyYw2YRHYRHY@X-XX~@XO@X}@X@XX6@XWXOXXWW@WWW@WWv[@Wi,@W5W@W@V3VVVvV%@VqR@VO @V<@V/g@V$@V @V @UpU|@U4@UUUU@UzUzUzUL@UL@U.RU@TTT@T~T8TܕT@T@TTTq@T@T@Tp@TA@TuTto@TG@TD@TT @S0SS@S.SP@S @Sg@SrS!@SkqSkqSG@SFSCS!SSRRpRpR^R[RSRNREs@RD!R@R@RNQB@Q@QQQکQQQo@Q)@Q@QQ@Q@QbQbQV@Q'@QQQQnQZ@QU@Q0@QQQ@Q@QQ @QQh@PP@P@P@Pz@Pz@PqnPl(PaPaPS@PH@PDPM>M2@MMzMx@Mj - 2.7.3-2Alexey Tikhonov - 2.7.3-1Alexey Tikhonov - 2.7.2-1Alexey Tikhonov - 2.7.0-2Alexey Tikhonov - 2.6.2-3Alexey Tikhonov - 2.6.2-2Alexey Tikhonov - 2.6.2-1Alexey Tikhonov - 2.6.1-2Alexey Tikhonov - 2.6.1-1Alexey Tikhonov - 2.5.2-2Alexey Tikhonov - 2.5.2-1Alexey Tikhonov - 2.5.1-2Alexey Tikhonov - 2.5.1-1Alexey Tikhonov - 2.5.0-1Alexey Tikhonov - 2.4.0-8Alexey Tikhonov - 2.4.0-7Alexey Tikhonov - 2.4.0-6Alexey Tikhonov - 2.4.0-5Alexey Tikhonov - 2.4.0-4Alexey Tikhonov - 2.4.0-3Alexey Tikhonov - 2.4.0-2Alexey Tikhonov - 2.4.0-1Alexey Tikhonov - 2.3.0-9Alexey Tikhonov - 2.3.0-8Alexey Tikhonov - 2.3.0-7Alexey Tikhonov - 2.3.0-6Alexey Tikhonov - 2.3.0-5Alexey Tikhonov - 2.3.0-4Alexey Tikhonov - 2.3.0-3Alexey Tikhonov - 2.3.0-2Alexey Tikhonov - 2.3.0-1Alexey Tikhonov - 2.2.3-19Alexey Tikhonov - 2.2.3-19Michal Židek - 2.2.3-18Alexey Tikhonov - 2.2.3-17Alexey Tikhonov - 2.2.3-16Michal Židek - 2.2.3-15Michal Židek - 2.2.3-14Michal Židek - 2.2.3-13Michal Židek - 2.2.3-12Michal Židek - 2.2.3-11Michal Židek - 2.2.3-10Michal Židek - 2.2.3-9Michal Židek - 2.2.3-8Michal Židek - 2.2.3-7Michal Židek - 2.2.3-6Michal Židek - 2.2.3-5Michal Židek - 2.2.3-4Michal Židek - 2.2.3-3Michal Židek - 2.2.3-2Michal Židek - 2.2.3-1Michal Židek - 2.2.2-1Michal Židek - 2.2.0-19Michal Židek - 2.2.0-18Michal Židek - 2.2.0-17Michal Židek - 2.2.0-16Michal Židek - 2.2.0-15Michal Židek - 2.2.0-14Michal Židek - 2.2.0-13Michal Židek - 2.2.0-12Michal Židek - 2.2.0-11Michal Židek - 2.2.0-10Michal Židek - 2.2.0-9Michal Židek - 2.2.0-8Michal Židek - 2.2.0-7Michal Židek - 2.2.0-6Jakub Hrozek - 2.2.0-5Jakub Hrozek - 2.2.0-4Jakub Hrozek - 2.2.0-3Jakub Hrozek - 2.2.0-2Michal Židek - 2.2.0-1Michal Židek - 2.1.0-1Michal Židek - 2.0.0-45Jakub Hrozek - 2.0.0-43Michal Židek - 2.0.0-42Michal Židek - 2.0.0-41Michal Židek - 2.0.0-40Michal Židek - 2.0.0-39Michal Židek - 2.0.0-38Michal Židek - 2.0.0-36Michal Židek - 2.0.0-35Michal Židek - 2.0.0-34Michal Židek - 2.0.0-33Michal Židek - 2.0.0-32Michal Židek - 2.0.0-31Michal Židek - 2.0.0-30Michal Židek - 2.0.0-29Michal Židek - 2.0.0-28Michal Židek - 2.0.0-27Michal Židek - 2.0.0-26Michal Židek - 2.0.0-25Michal Židek - 2.0.0-24Jakub Hrozek - 2.0.0-23Jakub Hrozek - 2.0.0-22Jakub Hrozek - 2.0.0-21Jakub Hrozek - 2.0.0-20Jakub Hrozek - 2.0.0-19Jakub Hrozek - 2.0.0-18Jakub Hrozek - 2.0.0-17Jakub Hrozek - 2.0.0-16Jakub Hrozek - 2.0.0-15Jakub Hrozek - 2.0.0-14Jakub Hrozek - 2.0.0-13Jakub Hrozek - 2.0.0-12Jakub Hrozek - 2.0.0-11Jakub Hrozek - 2.0.0-10Jakub Hrozek - 2.0.0-9Jakub Hrozek - 2.0.0-8Jakub Hrozek - 2.0.0-7Jakub Hrozek - 2.0.0-6Jakub Hrozek - 2.0.0-5Jakub Hrozek - 2.0.0-4Jakub Hrozek - 2.0.0-3Jakub Hrozek - 2.0.0-2Fabiano Fidêncio - 2.0.0-1Tomas Orsava - 1.16.2-2Fabiano Fidêncio - 1.16.2-1Fabiano Fidêncio - 1.16.1-3Fabiano Fidêncio - 1.16.1-2Fabiano Fidêncio - 1.16.1-1Lukas Slebodnik - 1.16.0-13Fabiano Fidêncio - 1.16.0-12Lukas Slebodnik - 1.16.0-11Lukas Slebodnik - 1.16.0-10Igor Gnatenko - 1.16.0-9Lukas Slebodnik - 1.16.0-8Lukas Slebodnik - 1.16.0-7Björn Esser - 1.16.0-6Lukas Slebodnik - 1.16.0-5Lukas Slebodnik - 1.16.0-4Jakub Hrozek - 1.16.0-3Lukas Slebodnik - 1.16.0-2Lukas Slebodnik - 1.16.0-1Lukas Slebodnik - 1.15.3-5Lukas Slebodnik - 1.15.3-4Lukas Slebodnik - 1.15.3-3Fedora Release Engineering - 1.15.3-2Lukas Slebodnik - 1.15.3-1Lukas Slebodnik - 1.15.3-0.beta.5Lukas Slebodnik - 1.15.3-0.beta.4Lukas Slebodnik - 1.15.3-0.beta.3Lukas Slebodnik - 1.15.3-0.beta.2Lukas Slebodnik - 1.15.3-0.beta.1Lukas Slebodnik - 1.15.2-1Lukas Slebodnik - 1.15.1-1Jakub Hrozek - 1.15.0-4Lukas Slebodnik - 1.15.0-3Fedora Release Engineering - 1.15.0-2Lukas Slebodnik - 1.15.0-1Miro Hrončok - 1.14.2-3Lukas Slebodnik - 1.14.2-2Lukas Slebodnik - 1.14.2-1Lukas Slebodnik - 1.14.1-4Lukas Slebodnik - 1.14.1-3Lukas Slebodnik - 1.14.1-2Lukas Slebodnik - 1.14.1-1Stephen Gallagher - 1.14.0-5Fedora Release Engineering - 1.14.0-4Lukas Slebodnik - 1.14.0-3Lukas Slebodnik - 1.14.0-2.betaLukas Slebodnik - 1.14.0-1.alphaLukas Slebodnik - 1.13.4-3Lukas Slebodnik - 1.13.4-2Lukas Slebodnik - 1.13.4-1Lukas Slebodnik - 1.13.3-6Lukas Slebodnik - 1.13.3-5Fedora Release Engineering - 1.13.3-4Lukas Slebodnik - 1.13.3-3Lukas Slebodnik - 1.13.3-2Lukas Slebodnik - 1.13.3-1Lukas Slebodnik - 1.13.2-1Robert Kuska - 1.13.1-5Lukas Slebodnik - 1.13.1-4Lukas Slebodnik - 1.13.1-3Lukas Slebodnik - 1.13.1-2Lukas Slebodnik - 1.13.1-1Lukas Slebodnik - 1.13.0-6Lukas Slebodnik - 1.13.0-5Lukas Slebodnik - 1.13.0-4Lukas Slebodnik - 1.13.0-3Lukas Slebodnik - 1.13.0-2.alphaLukas Slebodnik - 1.13.0-1.alphaFedora Release Engineering - 1.12.5-4Lukas Slebodnik - 1.12.5-3Lukas Slebodnik - 1.12.5-2Lukas Slebodnik - 1.12.5-1Lukas Slebodnik - 1.12.4-8Lukas Slebodnik - 1.12.4-7Lukas Slebodnik - 1.12.4-6Lukas Slebodnik - 1.12.4-5Jakub Hrozek - 1.12.4-4Jakub Hrozek - 1.12.4-3Lukas Slebodnik - 1.12.4-2Lukas Slebodnik - 1.12.4-1Lukas Slebodnik - 1.12.3-7Lukas Slebodnik - 1.12.3-6Jakub Hrozek - 1.12.3-5Lukas Slebodnik - 1.12.3-4Lukas Slebodnik - 1.12.3-3Lukas Slebodnik - 1.12.3-2Lukas Slebodnik - 1.12.3-1Lukas Slebodnik - 1.12.2-8Sumit Bose - 1.12.2-7Lukas Slebodnik - 1.12.2-6Jakub Hrozek - 1.12.2-5Jakub Hrozek - 1.12.2-4Jakub Hrozek - 1.12.2-3Jakub Hrozek - 1.12.2-2Jakub Hrozek - 1.12.2-1Jakub Hrozek - 1.12.1-2Jakub Hrozek - 1.12.1-1Jakub Hrozek - 1.12.0-7Fedora Release Engineering - 1.12.0-6Stephen Gallagher 1.12.0-5Jakub Hrozek - 1.12.0-1Fedora Release Engineering - 1.12.0-4.beta2Jakub Hrozek - 1.12.0-1.beta2Jakub Hrozek - 1.12.0-2.beta1Jakub Hrozek - 1.12.0-1.beta1Jakub Hrozek - 1.11.5.1-4Stephen Gallagher - 1.11.5.1-3Stephen Gallagher - 1.11.5.1-2Jakub Hrozek - 1.11.5.1-1Stephen Gallagher 1.11.5-2Jakub Hrozek - 1.11.5-1Sumit Bose - 1.11.4-3Jakub Hrozek - 1.11.4-2Jakub Hrozek - 1.11.4-1Jakub Hrozek - 1.11.3-2Jakub Hrozek - 1.11.3-1Jakub Hrozek - 1.11.2-1Sumit Bose - 1.11.1-5Sumit Bose - 1.11.1-4Jakub Hrozek - 1.11.1-3Jakub Hrozek - 1.11.1-2Jakub Hrozek - 1.11.1-1Jakub Hrozek - 1.11.0-3Jakub Hrozek - 1.11.0-2Jakub Hrozek - 1.11.0-1Jakub Hrozek - 1.11.0-0.4.beta2Fedora Release Engineering - 1.11.0-0.3.beta2Jakub Hrozek - 1.11.0.2beta2Jakub Hrozek - 1.11.0.1beta2Jakub Hrozek - 1.10.1-1Jakub Hrozek - 1.10.0-17Stephen Gallagher - 1.10.0-16Stephen Gallagher - 1.10.0-15Stephen Gallagher - 1.10.0-14Jakub Hrozek - 1.10.0-13Dan Horák - 1.10.0-12.beta2Jakub Hrozek - 1.10.0-11.beta2Jakub Hrozek - 1.10.0-10.beta2Jakub Hrozek - 1.10.0-9.beta2Jakub Hrozek - 1.10.0-8.beta1Jakub Hrozek - 1.10.0-8.beta2Jakub Hrozek - 1.10.0-7.beta1Jakub Hrozek - 1.10.0-6.beta1Jakub Hrozek - 1.10.0-5.beta1Jakub Hrozek - 1.10.0-4.beta1Jakub Hrozek - 1.10.0-3.beta1Jakub Hrozek - 1.10.0-2.alpha1Jakub Hrozek - 1.10.0-1.alpha1Jakub Hrozek - 1.9.5-10Stephen Gallagher - 1.9.4-9Jakub Hrozek - 1.9.4-8Jakub Hrozek - 1.9.4-7Jakub Hrozek - 1.9.4-6Jakub Hrozek - 1.9.4-5Jakub Hrozek - 1.9.4-4Jakub Hrozek - 1.9.4-3Jakub Hrozek - 1.9.4-2Jakub Hrozek - 1.9.4-1Jakub Hrozek - 1.9.3-1Jakub Hrozek - 1.9.2-5Jakub Hrozek - 1.9.2-4Jakub Hrozek - 1.9.2-3Jakub Hrozek - 1.9.2-2Jakub Hrozek - 1.9.2-1Jakub Hrozek - 1.9.1-1Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-23Jakub Hrozek - 1.9.0-22.rc1Jakub Hrozek - 1.9.0-21.beta7Jakub Hrozek - 1.9.0-20.beta6Jakub Hrozek - 1.9.0-19.beta6Jakub Hrozek - 1.9.0-18.beta6Jakub Hrozek - 1.9.0-17.beta6Jakub Hrozek - 1.9.0-16.beta6Jakub Hrozek - 1.9.0-14.beta6Jakub Hrozek - 1.9.0-13.beta6Fedora Release Engineering - 1.9.0-13.beta5Jakub Hrozek - 1.9.0-12.beta5Stephen Gallagher - 1.9.0-11.beta4Jakub Hrozek - 1.9.0-10.beta4Jakub Hrozek - 1.9.0-9.beta4Stephen Gallagher - 1.9.0-8.beta3Stephen Gallagher - 1.9.0-7.beta2Stephen Gallagher - 1.9.0-6.beta2Stephen Gallagher - 1.9.0-5.beta2Stephen Gallagher - 1.9.0-4.beta1Stephen Gallagher - 1.9.0-3.beta1Stephen Gallagher - 1.9.0-2.beta1Stephen Gallagher - 1.9.0-1.beta1Stephen Gallagher - 1.8.3-11Stephen Gallagher - 1.8.2-10Stephen Gallagher - 1.8.1-9Stephen Gallagher - 1.8.1-8Stephen Gallagher - 1.8.1-7Stephen Gallagher - 1.8.0-6Stephen Gallagher - 1.8.0-5.beta3Stephen Gallagher - 1.8.0-4.beta3Petr Pisar - 1.8.0-3.beta2Stephen Gallagher - 1.8.0-1.beta2Stephen Gallagher - 1.8.0-1.beta1Stephen Gallagher - 1.7.0-5Stephen Gallagher - 1.7.0-4Stephen Gallagher - 1.7.0-3Fedora Release Engineering - 1.7.0-2Stephen Gallagher - 1.7.0-1Stephen Gallagher - 1.6.4-1Stephen Gallagher - 1.6.3-5Stephen Gallagher - 1.6.3-4Jakub Hrozek - 1.6.3-3Stephen Gallagher - 1.6.3-2Stephen Gallagher - 1.6.3-1Fedora Release Engineering - 1.6.2-5Stephen Gallagher - 1.6.2-4Stephen Gallagher - 1.6.2-3Stephen Gallagher - 1.6.2-2Stephen Gallagher - 1.6.2-1Stephen Gallagher - 1.6.1-1Stephen Gallagher - 1.6.0-2Stephen Gallagher - 1.6.0-1Stephen Gallagher - 1.5.11-2Stephen Gallagher - 1.5.10-1Stephen Gallagher - 1.5.9-1Stephen Gallagher - 1.5.8-1Stephen Gallagher - 1.5.7-3Stephen Gallagher - 1.5.7-2Stephen Gallagher - 1.5.7-1Stephen Gallagher - 1.5.6.1-1Stephen Gallagher - 1.5.6-1Stephen Gallagher - 1.5.5-5Stephen Gallagher - 1.5.5-4Stephen Gallagher - 1.5.5-3Stephen Gallagher - 1.5.5-2Stephen Gallagher - 1.5.5-1Stephen Gallagher - 1.5.4-1Stephen Gallagher - 1.5.3-2Stephen Gallagher - 1.5.3-1Stephen Gallagher - 1.5.2-1Simo Sorce - 1.5.1-9Stephen Gallagher - 1.5.1-8Stephen Gallagher - 1.5.1-7Stephen Gallagher - 1.5.1-6Stephen Gallagher - 1.5.1-5Fedora Release Engineering - 1.5.1-4Stephen Gallagher - 1.5.1-3Stephen Gallagher - 1.5.1-2Stephen Gallagher - 1.5.1-1Stephen Gallagher - 1.5.0-2Stephen Gallagher - 1.5.0-1Stephen Gallagher - 1.4.1-3Stephen Gallagher - 1.4.1-2Stephen Gallagher - 1.4.1-1Stephen Gallagher - 1.4.0-2Stephen Gallagher - 1.4.0-1Stephen Gallagher - 1.3.0-35Stephen Gallagher - 1.3.0-34Stephen Gallagher - 1.3.0-33Stephen Gallagher - 1.3.0-32Stephen Gallagher - 1.3.0-31Stephen Gallagher - 1.3.0-30David Malcolm - 1.2.91-21Stephen Gallagher - 1.2.91-20Stephen Gallagher - 1.2.1-15Stephen Gallagher - 1.2.0-12Stephen Gallagher - 1.1.92-11Stephen Gallagher - 1.1.91-10Simo Sorce - 1.1.1-3Stephen Gallagher - 1.1.1-1Stephen Gallagher - 1.1.0-2Stephen Gallagher - 1.1.0-1.pre20100317git0ea7f19Stephen Gallagehr - 1.0.5-2Stephen Gallagher - 1.0.5-1Stephen Gallagher - 1.0.4-1Stephen Gallagher - 1.0.3-1Stephen Gallagher - 1.0.2-1Stephen Gallagher - 1.0.1-1Stephen Gallagher - 1.0.0-2Stephen Gallagher - 1.0.0-1Stephen Gallagher - 0.99.1-1Stephen Gallagher - 0.99.0-1Stephen Gallagher - 0.7.1-1Stephen Gallagher - 0.7.0-2Stephen Gallagher - 0.7.0-1Stephen Gallagher - 0.6.1-2Stephen Gallagher - 0.6.1-1Stephen Gallagher - 0.6.0-1Sumit Bose - 0.6.0-0Simo Sorce - 0.5.0-0Jakub Hrozek - 0.4.1-4Fedora Release Engineering - 0.4.1-3Simo Sorce - 0.4.1-2Simo Sorce - 0.4.1-1Simo Sorce - 0.4.1-0Simo Sorce - 0.3.2-2Jakub Hrozek - 0.3.2-1Simo Sorce - 0.3.1-2Simo Sorce - 0.3.1-1Simo Sorce - 0.3.0-2Simo Sorce - 0.3.0-1Simo Sorce - 0.2.1-1Simo Sorce - 0.2.0-1Jakub Hrozek - 0.1.0-5.20090309git691c9b3Jakub Hrozek - 0.1.0-4Sumit Bose - 0.1.0-3Jakub Hrozek - 0.1.0-2Stephen Gallagher - 0.1.0-1- Resolves: rhbz#2116488 - virsh command will hang after the host run several auto test cases - Resolves: rhbz#2116486 - [regression] sssctl analyze fails to parse PAM related sssd logs - Resolves: rhbz#2116487 - cache_req_data_set_hybrid_lookup: cache_req_data should never be NULL- Resolves: rhbz#2069379 - Rebase SSSD for RHEL 8.7 - Resolves: rhbz#2063016 - [sssd] RHEL 8.7 Tier 0 Localization- Resolves: rhbz#2069379 - Rebase SSSD for RHEL 8.7 - Resolves: rhbz#2098620 - sdap_nested_group_deref_direct_process() triggers internal watchdog for large data sets - Resolves: rhbz#2098619 - [Improvement] add SSSD support for more than one CRL PEM file name with parameters certificate_verification and crl_file - Resolves: rhbz#2088817 - pam_sss_gss ceased to work after upgrade to 8.6 - Resolves: rhbz#2098616 - Add idp authentication indicator in man page of sssd.conf - Resolves: rhbz#2056035 - 'getent hosts' not return hosts if they have more than one CN in LDAP - Resolves: rhbz#2098615 - Regression "Missing internal domain data." when setting ad_domain to incorrect - Resolves: rhbz#2098617 - Harden kerberos ticket validation - Resolves: rhbz#2087744 - Unable to lookup AD user if the AD group contains '@' symbol- Resolves: rhbz#2069379 - Rebase SSSD for RHEL 8.7 - Resolves: rhbz#2026799 - SSSD authenticating to LDAP with obfuscated password produces Invalid authtoken type message causing sssd_be to go offline (cross inter_ference of different provider plugins options) - Resolves: rhbz#2033347 - sssd error triggers backtrace : [write_krb5info_file_from_fo_server] (0x0020): [RID#73501] There is no server that can be written into kdc info file. - Resolves: rhbz#2056483 - [RFE] Add sssd internal krb5 plugin for authentication against external IdP via OAuth2 - Resolves: rhbz#2062689 - [Improvement] Add user and group version of sss_nss_getorigbyname() - Resolves: rhbz#2065692 - [RHEL8] Ship new sub-package called sssd-idp into sssd - Resolves: rhbz#2072050 - sssd_nss exiting (due to missing 'sssd' local user) making SSSD service to restart in a loop - Resolves: rhbz#2072931 - Use right sdap_domain in ad_domain_info_send - Resolves: rhbz#2087088 - sssd does not enforce smartcard auth for kde screen locker - Resolves: rhbz#2087744 - Unable to lookup AD user if the AD group contains '@' symbol - Resolves: rhbz#2087745 - 2FA prompting setting ineffective - Resolves: rhbz#2087746 - sssd fails GPO-based access if AD have setup with Japanese language- Resolves: rhbz#2039892 - 2.6.2 regression: Daemon crashes when resolving AD user names - Resolves: rhbz#1859315 - sssd does not use kerberos port that is set. - Resolves: rhbz#2030386 - sssd-kcm has requirement on krb5 symbol "krb5_unmarshal_credentials" only available in latest RHEL8.5 krb5 libraries - Resolves: rhbz#2035245 - AD Domain in the AD Forest Missing after sssd latest update - Resolves: rhbz#2017301 - [sssd] RHEL 8.6 Tier 0 Localization- Resolves: rhbz#2013260 - [RHEL8] Add ability to parse child log files (additional patch)- Resolves: rhbz#2011216 - Rebase SSSD for RHEL 8.6 - Resolves: rhbz#2013260 - [RHEL8] Add ability to parse child log files - Resolves: rhbz#2030386 - sssd-kcm has requirement on krb5 symbol "krb5_unmarshal_credentials" only available in latest RHEL8.5 krb5 libraries - Resolves: rhbz#1859315 - sssd does not use kerberos port that is set. - Resolves: rhbz#1961182 - Passwordless (GSSAPI) SSH not working due to missing "includedir /var/lib/sss/pubconf/krb5.include.d" directive in /etc/krb5.conf - Resolves: rhbz#2008829 - sssd_be segfault due to empty forest root name - Resolves: rhbz#2012263 - pam responder does not call initgroups to refresh the user entry - Resolves: rhbz#2012308 - Add client certificate validation D-Bus API - Resolves: rhbz#2012327 - Groups are missing while performing id lookup as SSSD switching to offline mode due to the wrong domain name in the ldap-pings(netlogon). - Resolves: rhbz#2013028 - [RFE] Health and Support Analyzer: Add sssctl sub-command to select and display a single request from the logs - Resolves: rhbz#2013259 - [RHEL8] Add tevent chain ID logic into responders - Resolves: rhbz#2017301 - [sssd] RHEL 8.6 Tier 0 Localization- Rebuild due to rhbz#2013596 - Rebase Samba to the the latest 4.15.x release- Resolves: rhbz#2011216 - Rebase SSSD for RHEL 8.6 - Resolves: rhbz#1968340 - 'exclude_groups' option provided in SSSD for session recording (tlog) doesn't work as expected - Resolves: rhbz#1952569 - SSSD should use "hidden" temporary file in its krb locator - Resolves: rhbz#1917970 - proxy provider: secondary group is showing in sssd cache after group is removed - Resolves: rhbz#1636002 - socket-activated services start as the sssd user and then are unable to read the confdb - Resolves: rhbz#2021196 - Make backtrace less "chatty" (avoid duplicate backtraces) - Resolves: rhbz#2018432 - 2.5.x based SSSD adds more AD domains than it should based on the configuration file (not trusted and from a different forest) - Resolves: rhbz#2015070 - Consistency in defaults between OpenSSH and SSSD - Resolves: rhbz#2013297 - disabled root ad domain causes subdomains to be marked offline - Resolves: rhbz#2013294 - Lookup with fully-qualified name does not work with 'cache_first = True' - Resolves: rhbz#2013218 - autofs lookups for unknown mounts are delayed for 50s - Resolves: rhbz#2013028 - [RFE] Health and Support Analyzer: Add sssctl sub-command to select and display a single request from the logs - Resolves: rhbz#2013024 - Add support for CKM_RSA_PKCS in smart card authentication. - Resolves: rhbz#2013006 - [RFE] support subid ranges managed by FreeIPA - Resolves: rhbz#2012308 - Add client certificate validation D-Bus API - Resolves: rhbz#2012122 - tps tests fail with cross dependency on sssd debuginfo package: removal of 'sssd-libwbclient-debuginfo' is missing- Resolves: rhbz#1975169 - EMBARGOED CVE-2021-3621 sssd: shell command injection in sssctl [rhel-8] - Resolves: rhbz#1962042 - [sssd] RHEL 8.5 Tier 0 Localization- Resolves: rhbz#1947671 - Rebase SSSD for RHEL 8.5 - Resolves: rhbz#1693379 - sssd_be and sss_cache too heavy on CPU - Resolves: rhbz#1909373 - Missing search index for `originalADgidNumber` - Resolves: rhbz#1954630 - [RFE] Improve debug messages by adding a unique tag for each request the backend is handling - Resolves: rhbz#1936891 - SSSD Error Msg Improvement: Bad address - Resolves: rhbz#1364596 - sssd still showing ipa user after removed from last group - Resolves: rhbz#1979404 - Changes made to /etc/pam.d/sssd-shadowutils are overwritten back to default on sssd-common package upgrade- Resolves: rhbz#1974257 - 'debug_microseconds' config option is broken - Resolves: rhbz#1936902 - SSSD Error Msg Improvement: Invalid argument - Resolves: rhbz#1627112 - RFE: Kerberos ticket renewal for sssd-kcm (additional patches and rebuild)- Resolves: rhbz#1947671 - Rebase SSSD for RHEL 8.5 - Resolves: rhbz#1942387 - Wrong default debug level of sssd tools - Resolves: rhbz#1917444 - SSSD Error Msg Improvement: Server resolution failed: [2]: No such file or directory - Resolves: rhbz#1917511 - SSSD Error Msg Improvement: Failed to resolve server 'server.example.com': Error reading file - Resolves: rhbz#1917535 - sssd.conf man page: parameter dns_resolver_server_timeout and dns_resolver_op_timeout - Resolves: rhbz#1940509 - [RFE] Health and Support Analyzer: Link frontend to backend requests - Resolves: rhbz#1649464 - auto_private_groups not working as expected with posix ipa/ad trust - Resolves: rhbz#1925514 - [RFE] Randomize the SUDO timeouts upon reconnection - Resolves: rhbz#1961215 - Invalid sssd-kcm return code if requested operation is not found - Resolves: rhbz#1837090 - SSSD fails nss_getby_name for IPA user with SID if the user has user private group - Resolves: rhbz#1879869 - sudo commands incorrectly exports the KRB5CCNAME environment variable - Resolves: rhbz#1962550 - sss_pac_make_request fails on systems joined to Active Directory. - Resolves: rhbz#1737489 - [RFE] SSSD should honor default Kerberos settings (keytab name) in /etc/krb5.conf- Resolves: rhbz#1947671 - Rebase SSSD for RHEL 8.5 - Resolves: rhbz#1930535 - [abrt] [faf] sssd: monitor_service_shutdown(): /usr/sbin/sssd killed by 11 - Resolves: rhbz#1942387 - Wrong default debug level of sssd tools - Resolves: rhbz#1945888 - Inconsistant debug level for connection logging - Resolves: rhbz#1948657 - pam_sss_gss.so doesn't work with large kerberos tickets - Resolves: rhbz#1949149 - [RFE] Poor man's backtrace - Resolves: rhbz#1920500 - Authentication handshake (ldap_install_tls()) fails due to underlying openssl operation failing with EINTR - Resolves: rhbz#1923964 - [RFE] SSSD Error Msg Improvement: write_krb5info_file failed, authentication might fail. - Resolves: rhbz#1928648 - SSSD logs improvements: clarify which config option applies to each timeout in the logs - Resolves: rhbz#1632159 - sssd-kcm starts successfully for non existent socket_path - Resolves: rhbz#1627112 - RFE: Kerberos ticket renewal for sssd-kcm - Resolves: rhbz#1925505 - [RFE] improve the sssd refresh timers for SUDO queries - Resolves: rhbz#1925514 - [RFE] Randomize the SUDO timeouts upon reconnection - Resolves: rhbz#1925561 - sssd-ldap(5) does not report how to disable the SUDO smart queries - Resolves: rhbz#1925621 - document impact of indices and of scope on performance of LDAP queries - Resolves: rhbz#1855320 - [RFE] RHEL8 sssd: inheritance of the case_sensitive parameter for subdomains. - Resolves: rhbz#1925608 - [RFE] make 'random_offset' addon to 'offline_timeout' option configurable - Resolves: rhbz#1447945 - man page / docs update required: if two certificate matching rules with the same priority match only one is used - Resolves: rhbz#1703436 - sssd not thread-safe in innetgr() - Resolves: rhbz#1713143 - SSSD does not translate the 2FA text labels("first factor" / "second factor") on GDM login and screensaver unlock screen - Resolves: rhbz#1888977 - sss_override: Usage limitations clarification in man page - Resolves: rhbz#1890177 - Clarify "single_prompt" option in "PROMPTING CONFIGURATION SECTION" section of sssd.conf man page - Resolves: rhbz#1902280 - fix sss_cache to also reset cached timestamp - Resolves: rhbz#1935683 - SSSD not detecting subdomain from AD forest (RHEL 8.3) - Resolves: rhbz#1937919 - IPA missing secondary IPA Posix groups in latest sssd 1.16.5-10.el7_9.7 - Resolves: rhbz#1944665 - No gpo found and ad_gpo_implicit_deny set to True still permits user login - Resolves: rhbz#1919942 - sss_override does not take precedence over override_homedir directive- Resolves: rhbz#1926622 - Add support to verify authentication indicators in pam_sss_gss - Resolves: rhbz#1926454 - First smart refresh query contains modifyTimestamp even if the modifyTimestamp is 0. - Resolves: rhbz#1893159 - Default debug level should report all errors / failures (additional patch)- Resolves: rhbz#1920001 - Do not add '%' to group names already prefixed with '%' in IPA sudo rules - Resolves: rhbz#1918433 - sssd unable to lookup certmap rules - Resolves: rhbz#1917382 - [abrt] [faf] sssd: dp_client_handshake_timeout(): /usr/libexec/sssd/sssd_be killed by 11- Resolves: rhbz#1113639 - autofs: return a connection failure until maps have been fetched - Resolves: rhbz#1915395 - Memory leak in the simple access provider - Resolves: rhbz#1915319 - SSSD: SBUS: failures during servers startup - Resolves: rhbz#1893698 - [RFE] sudo kerberos authentication (additional patches)- Resolves: rhbz#1631410 - Can't login with smartcard with multiple certs having same ID value - Resolves: rhbz#1884213 - [RFE] add offline_timeout_max config option to control offline interval backoff (additional patches) - Resolves: rhbz#1893159 - Default debug level should report all errors / failures - Resolves: rhbz#1893698 - [RFE] sudo kerberos authentication- Resolves: rhbz#1876514 - High CPU utilization by the sssd_kcm process - Resolves: rhbz#1876658 - filter_groups option partially filters the group from 'id' output of the user because gidNumber still appears in 'id' output [RHEL 8] - Resolves: rhbz#1895001 - User lookups over the InfoPipe responder fail intermittently- Resolves: rhbz#1900733 - sssd_be segfaults at be_refresh_get_values_ex() due to NULL ptrs in results of sysdb_search_with_ts_attr() - Resolves: rhbz#1876514 - High CPU utilization by the sssd_kcm process - Resolves: rhbz#1894540 - sssd component logging is now too generic in syslog/journal - Resolves: rhbz#1828483 - filtered ID is appearing due to strange negative cache behavior- This is to bump version to allow rebuild against rebased libldb.- Resolves: rhbz#1881992 - Rebase SSSD for RHEL 8.4 - Resolves: rhbz#1722842 - sssd-kcm does not store TGT with ssh login using GSSAPI - Resolves: rhbz#1734040 - sssd crash in ad_get_account_domain_search() - Resolves: rhbz#1784459 - [RFE] tlog does not allow to exclude some users from session recording - Resolves: rhbz#1791300 - sporadic sssd_be crash on s390x - Resolves: rhbz#1817122 - 'getent group ldapgroupname' doesn't show any LDAP users or some LDAP users when 'rfc2307bis' schema is used with SSSD. - Resolves: rhbz#1819012 - [RFE] Improve AD site discovery process - Resolves: rhbz#1846778 - [RfE] `/usr/libexec/sssd/p11_child` cmdline argument '--nssdb' might be confusing when SSSD was built against OpenSSL - Resolves: rhbz#1873715 - automount sssd issue when 2 automount maps have the same key (one un uppercase, one in lowercase) - Resolves: rhbz#1879860 - correction in sssd.conf:pam_response_filter man page - Resolves: rhbz#1881336 - [RFE] sssd-ldap man page modification for parameter "ldap_referrals" - Resolves: rhbz#1883488 - [RfE] Implement a new sssd.conf option to disable the filter for AD domain local groups from trusted domains - Resolves: rhbz#1884196 - [RFE] Add "enabled" option to domain section in config file - Resolves: rhbz#1884205 - KCM: Increase client idle timeout to 5 minutes - Resolves: rhbz#1884207 - [RFE] ldap: add new option ldap_library_debug_level - Resolves: rhbz#1884213 - [RFE] add offline_timeout_max config option to control offline interval backoff - Resolves: rhbz#1884281 - Secondary LDAP group go missing from 'id' command - Resolves: rhbz#1884301 - [RFE] dyndns: suport asymmetric auth for nsupdate- Resolves: rhbz#1855323 - When ad_gpo_implicit_deny is True, it is permitting users to login when no gpo is applied- Resolves: rhbz#1868387 - system not enforcing GPO rule restriction. ad_gpo_implicit_deny = True is not working - Resolves: rhbz#1854951 - sss-certmap man page change to add clarification for userPrincipalName attribute from AD schema - Resolves: rhbz#1856861 - False errors/warnings are logged in sssd.log file after enabling 2FA prompting settings in sssd.conf - Resolves: rhbz#1869683 - p11_child: default value of ocsp_dgst == sha256 doesn't conform RFC5019 and has to be changed to sha1- Resolves: rhbz#1723273 - RFE: Add option to specify alternate sssd config file location with "sssctl config-check" command. - Resolves: rhbz#1780404 - smartcards: special characters must be escaped when building search filter- Resolves: rhbz#1820574 - [sssd] RHEL 8.3 Tier 0 Localization- Resolves: rhbz#1821719 - sssd (sssd_be) is consuming 100% CPU, partially due to failing mem-cache - Fixed "requires/provides" rpmdiff warning- Resolves: rhbz#1815584 - id_provider = proxy proxy_lib_name = files returns * in password field, breaking PAM authentication - Resolves: rhbz#1794607 - SSSD must be able to resolve membership involving root with files provider - Resolves: rhbz#1803134 - Improve "unlock" time when user session already active- Resolves: rhbz#1829470 - `sssd.api.conf` and `sssd.api.d` should belong to `python-sssdconfig` package - Resolves: rhbz#1544457 - sssd fails to release file descriptor on child logs after receiving HUP - Resolves: rhbz#1824323 - SSSD user filtering is failing on RHEL 8 after "files" provider rebuilds cache - Resolves: rhbz#1827432 - When the passwd or group files are replaced, sssd stops monitoring the file for inotify events, and no updates are triggered - Resolves: rhbz#1835710 - Change the message "Please enter smart card" to "Please insert smart card" on GDM login with smart-card - Resolves: rhbz#1838037 - Oddjob-mkhomedir fails when using NSS compat - Resolves: rhbz#1845904 - gdm smart card authentication does not work shortly after disconnecting from network. - Resolves: rhbz#1845975 - sssd doesn't follow the link order of AD Group Policy Management - Resolves: rhbz#1845980 - sssd is failing to discover other subdomains in the forest if LDAP entries do not contain AD forest root information - Resolves: rhbz#1845987 - Document how to prevent invalid selinux context for default home directories in SSSD-AD direct integration. - Resolves: rhbz#1845994 - GDM failure loop when no user mapped for smart card - Resolves: rhbz#1846003 - GDM password prompt when cert mapped to multiple users and promptusername is False - Resolves: rhbz#1850961 - /usr/share/systemtap/tapset/sssd_functions.stp missing a comma- Resolves: rhbz#Bug 1723273 - RFE: Add option to specify alternate sssd config file location with "sssctl config-check" command.- Resolves: rhbz#1839037 - Rebase SSSD for RHEL 8.3 - Resolves: rhbz#1843872 - sssd 2.3.0 breaks AD auth due to GPO parsing failure - Resolves: rhbz#1834156 - sssd or sssd-ad not updating their dependencies on "yum update" which breaks working- Resolves: rhbz#1580506 - [RFE]: sssd to be able to read smartcard certificate EKU and perform an action based on value when generating SSH key from a certificate (additional patch)- Resolves: rhbz#1810634 - id command taking 1+ minute for returning user information- Resolves: rhbz#1580506 - [RFE]: sssd to be able to read smartcard certificate EKU and perform an action based on value when generating SSH key from a certificate- Resolves: rhbz#1718193 - p11_child should have an option to skip C_WaitForSlotEvent if the PKCS#11 module does not implement it properly- Resolves: rhbz#1792331 - sssd_be crashes when krb5_realm and krb5_server is omitted and auth_provider is krb5- Resolves: rhbz#1754996 - [sssd] Tier 0 Localization- Resolves: rhbz#1767514 - sssd requires timed sudoers ldap entries to be specified up to the seconds- Resolves: rhbz#1713368 - Add sssd-dbus package as a dependency of sssd-tools* Resolves: rhbz#1794016 - sssd_be frequent crash* Resolves: rhbz#1762415 - Force LDAPS over 636 with AD Access Provider* Resolves: rhbz#1583592 - [RFE] Add configurable randomness to SSSD ldap connection timeout* Resolves: rhbz#1783190 - [abrt] [faf] sssd: raise(): /usr/libexec/sssd/sssd_autofs killed by 6* Resolves: rhbz#1785214 - server/be: SIGTERM handling is incorrect* Resolves: rhbz#1785193 - Watchdog implementation or usage is incorrect* Resolves: rhbz#1704199 - pcscd rejecting sssd ldap_child as unauthorized* Resolves: rhbz#1744500 - [Doc]Provide explanation on escape character for match rules sss-certmap* Resolves: rhbz#1781728 - sssctl config-check command does not give proper error messages with line numbers* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release Increasing version number to pick latest libldb* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release PART2: Fix gating issue.* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release- Resolves: rhbz#1712875 - Old kerberos credentials active instead of valid new ones (kcm)- Resolves: rhbz#1744134 - New defect found in sssd-2.2.0-16.el8 - Also sync. kcm multihost tests with master- Resolves: rhbz#1676385 - pam_sss with smartcard auth does not create gnome keyring - Also apply a patch to fix gating tests issue- Resolves: rhbz#1736861 - dyndns_update = True is no longer enough to get the IP address of the machine updated in IPA upon sssd.service startup- Resolves: rhbz#1736265 - Smart Card auth of local user: endless loop if wrong PIN was provided- Resolves: rhbz#1736796 - sssd config option "default_domain_suffix" should not cause files domain entries to be qualified, this can break sudo access- Resolves: rhbz#1669407 - MAN: Document that PAM stack contains the systemd-user service in the account phase in RHEL-8- Resolves: rhbz#1448094 - sssd-kcm cannot handle big tickets- Resolves: rhbz#1733372 - permission denied on logs when running sssd as non-root user- Resolves: rhbz#1736483 - Sudo prompt for smart card authentication is missing the trailing colon- Resolves: rhbz#1382750 - Conflicting default timeout values- Resolves: rhbz#1699480 - Include libsss_nss_idmap-devel in the Builder repository - This just required a raise in release number and changelog for the record.- Resolves: rhbz#1711318 - p11_child::sign_data() function implementation is not FIPS140 compliant- Resolves: rhbz#1726945 - negative cache does not use values from 'filter_users' config option for known domains- Resolves: rhbz#1729055 - sssd does not pass correct rules to sudo- Resolves: rhbz#1283798 - sssd failover does not work on connecting to non-responsive ldaps:// server- Resolves: rhbz#1725168 - sssd-proxy crashes resolving groups with no members- Resolves: rhbz#1673443 - sssd man pages: The default value of "ldap_user_home_directory" is not mentioned with AD server configuration- Resolves: rhbz#1687281 Rebase sssd in RHEL-8.1 to the latest upstream release- Resolves: rhbz#1687281 Rebase sssd in RHEL-8.1 to the latest upstream release- Replace ARRAY_SIZE with N_ELEMENTS to reflect samba changes. This is done here in order to unblock gating changes before rebase. - Related: rhbz#1682305- Resolves: rhbz#1672780 - gdm login not prompting for username when smart card maps to multiple users- Resolves: rhbz#1645291 - Perform some basic ccache initialization as part of gen_new to avoid a subsequent switch call failure-Resolves: rhbz#1659498 - Re-setting the trusted AD domain fails due to wrong subdomain service name being used-Resolves: rhbz#1660083 - extraAttributes is org.freedesktop.DBus.Error. UnknownProperty: Unknown property- Resolves: rhbz#1661183 - SSSD 2.0 has drastically lower sbus timeout than 1.x, this can result in time outs- Resolves: rhbz#1578014 - sssd does not work under non-root user - Note: Actually the patches were in the 2.0.0-37, this one just adds this changelog because it was missing.- Resolves: rhbz#1652563 - incorrect example in the man page of idmap_sss suggests using * for backend sss- Resolves: rhbz#1466503 - Snippets are not used when sssd.conf does not exist- Resolves: rhbz#1622008 - Error message when IPA server uninstall calls kdestroy caused by KCM returning a wrong error code during the delete operation- Resolves: rhbz#1646113 - Missing concise documentation about valid options for sssd-files-provider- Resolves: rhbz#1625670 - sssd needs to require a newer version of libtalloc and libtevent to avoid an issue in GPO processing- Resolves: 1658813 - PKINIT with KCM does not work- Resolves: 1657898 - SSSD must be cleared/restarted periodically in order to retrieve AD users through IPA Trust- Resolves: rhbz#1655459 - [abrt] [faf] sssd: raise(): /usr/libexec/sssd/proxy_child killed by 6- Resolves: rhbz#1652719 - [SECURITY] sssd returns '/' for emtpy home directories- Resolves: rhbz#1657979 - SSSD's LDAP authentication provider does not work if ID provider is authenticated with GSSAPI- Resolves: rhbz#1657980 - sssd_nss memory leak- Resolves: rhbz#1645566 - SSSD 2.x does not sanitize domain name properly for D-bus, resulting in a crash- Resolves: rhbz#1646168 - sssctl access-report always prints an error message - Resolves: rhbz#1643053 - Restarting the sssd-kcm service should reload the configuration without having to restart the whole sssd - Resolves: rhbz#1640576 - sssctl reports incorrect information about local user's cache entry expiration time - Resolves: rhbz#1645238 - Unable to su to root when logged in as a local user - Resolves: rhbz#1639411 - sssd support for for smartcards using ECC keys- Resolves: rhbz#1642508 - sssd ifp crash when trying to access ipa webui with smart card- Resolves: rhbz#1642372 - SSSD Python getgrouplist API was removed but required for IPA- Related: rhbz#1638150 - session not recording for local user when groups defined - Also add silence a Coverity warning, which is related to rhbz#1637131- Related: rhbz#1637513 - sssd crashes when refreshing expired sudo rules- Add OSCP checks for p11_child - Related: rhbz#1615417 - [RFE] Add Smart Card authentication for local users- Related: rhbz#1638006 - Files: The files provider always enumerates which causes duplicate when running getent passwd- Related: rhbz#1637131 - pam_unix unable to match fully qualified username provided by sssd during smartcard auth using gdm- Related: rhbz#1620123 - [RFE] Add option to specify a Smartcard with a PKCS#11 URI- Related: rhbz#1611011 - Support for "require smartcard for login option"- Related: rhbz#1635595 - Cant login with smartcard with multiple certs- Backport more sbus2 fixes - Related: rhbz#1623878 - crash related to sbus_router_destructor()- Resolves: rhbz#1636397 - SSSD not fetching all sudo rules from AD- Resolves: rhbz#1628122 - Printing incorrect information about domain with sssctl utility- Resolves: rhbz#1626001 - SSSD should log to syslog if a domain is not started due to a misconfiguration- Resolves: rhbz#1624785 - Remove references of sss_user/group/add/del commands in man pages since local provider is deprecated- Resolves: rhbz#1628126 - [abrt] [faf] sssd: unknown function(): /usr/libexec/sssd/sssd_be killed by 11 crash func _dbus_list_unlink- Resolves: rhbz#1628503 - sssd only sets the SELinux login context if it differs from the default- Resolves: rhbz#1625842 id_provider= local causes SSSD to abort startup- Resolves: rhbz#1615590 - Do not rely on "python" for el8- Resolves: rhbz#1615417 - [RFE] Add Smart Card authentication for local users- Resolves: rhbz#1623878 - crash related to sbus_router_destructor()- Resolves: rhbz#1622026 - sssd 2.0 regression: Kerberos authentication fails with the KCM ccache- Resolves: rhbz#1615460 - Rebase SSSD to the latest released version- Switch hardcoded python3 shebangs into the %{__python3} macro- Update to 1.16.2 release - Cleanup unused global definitions - Remove python2 references from the spec file - Resolves: rhbz#1585313 - Kerberos with sssd-kcm is not working on s390x- Resolves: upstream#3684 - A group is not updated if its member is removed with the cleanup task, but the group does not change - Resolves: upstream#3558 - sudo: report error when two rules share cn - Tone down shutdown messages for socket activated responders - IPA: Qualify the externalUser sudo attribute - Resolves: upstream#3550 - refresh_expired_interval does not work with netgrous in 1.15 - Resolves: upstream#3402 - Support alternative sources for the files provider - Resolves: upstream#3646 - SSSD's GPO code ignores ad_site option - Resolves: upstream#3679 - Make nss netgroup requests more robust - Resolves: upstream#3634 - sssctl COMMAND --help fails if sssd is not configured - Resolves: upstream#3469 - extend sss-certmap man page regarding priority processing - Improve docs/debug message about GC detection - Resolves: upstream#3715 - ipa 389-ds-base crash in krb5-libs - k5_copy_etypes list out of bound? - Resolves: upstream#2653 - Group renaming issue when "id_provider = ldap" is set. - Document which principal does the AD provider use - Resolves: upstream#3680 - GPO: SSSD fails to process GPOs If a rule is defined, but contains no SIDs - Resolves: upstream#3520 - Files provider supports only BE_FILTER_ENUM - Resolves: rhbz#1540703 - FreeIPA/SSSD implicit_file sssd_nss error: The Data Provider returned an error [org.freedesktop.sssd.Error.DataProvider.Fatal]- Resolves: upstream#3573 - sssd won't show netgroups with blank domain - Resolves: upstream#3660 - confdb_expand_app_domains() always fails - Resolves: upstream#3658 - Application domain is not interpreted correctly - Resolves: upstream#3687 - KCM: Don't pass a non null terminated string to json_loads() - Resolves: upstream#3386 - KCM: Payload buffer is too small - Resolves: upstream#3666 - Fix usage of str.decode() in our tests - A few KCM misc fixes- New upstream release 1.16.1 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_16_1.html- Resolves: upstream#3621 - backport bug found by static analyzers- Resolves: rhbz#1538643 - SSSD crashes when retrieving a Desktop Profile with no specific host/hostgroup set - Resolves: upstream#3621 - FleetCommander integration must not require capability DAC_OVERRIDE- Resolves: upstream#3618 - selinux_child segfaults in a docker container- Resolves: rhbz#1431153 - sssd: libsss_proxy.so needs to be linked with -ldl- Fix systemd executions/requirements- Fix building on rawhide. Remove -Wl,-z,defs from LDFLAGS- Fix building of sssd-nfs-idmap with libnfsidmap.so.1- Rebuilt for libnfsidmap.so.1- Resolves: upstream#3523 - ABRT crash - /usr/libexec/sssd/sssd_nss in setnetgrent_result_timeout - Resolves: upstream#3588 - sssd_nss consumes more memory until restarted or machine swaps - Resolves: failure in glibc tests https://sourceware.org/bugzilla/show_bug.cgi?id=22530 - Resolves: upstream#3451 - When sssd is configured with id_provider proxy and auth_provider ldap, login fails if the LDAP server is not allowing anonymous binds - Resolves: upstream#3285 - SSSD needs restart after incorrect clock is corrected with AD - Resolves: upstream#3586 - Give a more detailed debug and system-log message if krb5_init_context() failed - Resolves: rhbz#1431153 - SSSD ships a drop-in configuration snippet in /etc/systemd/system - Backport few upstream features from 1.16.1- Resolves: rhbz#1494002 - sssd_nss crashed in cache_req_search_domains_next- Backport extended NSS API from upstream master branch- Resolves: upstream#3529 - sssd-kcm Fix restart during/after upgrade- New upstream release 1.16.0 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_16_0.html- Resolves: rhbz#1499354 - CVE-2017-12173 sssd: unsanitized input when searching in local cache database access on the sock_file system_bus_socket- Resolves: rhbz#1488327 - SELinux is preventing selinux_child from write access on the sock_file system_bus_socket - Resolves: rhbz#1490402 - SSSD does not create /var/lib/sss/deskprofile and fails to download desktop profile data - Resolves: upstream#3485 - getsidbyid does not work with 1.15.3 - Resolves: upstream#3488 - SUDO doesn't work for IPA users on IPA clients after applying ID Views for them in IPA server - Resolves: upstream#3501 - Accessing IdM kerberos ticket fails while id mapping is applied- Backport few upstream patches/fixes- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild- New upstream release 1.15.3 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_3.html- Rebuild with libldb-1.2.0- Fix build issues: Update expided certificate in unit tests- Resolves: rhbz#1445680 - Properly fall back to local Smartcard authentication - Resolves: rhbz#1437199 - sssd-nfs-idmap-1.15.2-1.fc25.x86_64 conflicts with file from package sssd-common-1.15.1-1.fc25.x86_64 - Resolves: rhbz#1063278 - sss_ssh_knownhostsproxy doesn't fall back to ipv4- Fix issue with IPA + SELinux in containers - Resolves: upstream https://fedorahosted.org/sssd/ticket/3297- Backport upstream patches for 1.15.3 pre-release - required for building freeipa-4.5.x in rawhide- New upstream release 1.15.2 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_2.html- New upstream release 1.15.1 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_1.html- Cherry-pick patches from upstream that enable the files provider - Enable the files domain - Retire patch 0501-Partially-revert-CONFIG-Use-default-config-when-none.patch which is superseded by the files domain autoconfiguration - Related: rhbz#1357418 - SSSD fast cache for local users- Add missing %license macro- Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild- New upstream release 1.15.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.15.0- Rebuild for Python 3.6- Resolves: rhbz#1369130 - nss_sss should not link against libpthread - Resolves: rhbz#1392916 - sssd failes to start after update - Resolves: rhbz#1398789 - SELinux is preventing sssd from 'write' accesses on the directory /etc/sssd- New upstream release 1.14.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.2- libwbclient-sssd: update interface to version 0.13- Fix regression with krb5_map_user - Resolves: rhbz#1375552 - krb5_map_user doesn't seem effective anymore - Resolves: rhbz#1349286 - authconfig fails with SSSDConfig.NoDomainError: default if nonexistent domain is mentioned- Backport important patches from upstream 1.14.2 prerelease - Resolves: upstream #3154 - sssd exits if clock is adjusted backwards after boot - Resolves: upstream #3163 - resolving IPA nested user group is broken in 1.14- New upstream release 1.14.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.1- Add workaround patch for RHBZ #1366403- https://fedoraproject.org/wiki/Changes/Automatic_Provides_for_Python_RPM_Packages- New upstream release 1.14.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.0- New upstream release 1.14 beta - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.0beta- New upstream release 1.14 alpha - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.0alpha- Resolves: rhbz#1335639 - [abrt] sssd-dbus: ldb_msg_find_element(): sssd_ifp killed by SIGSEGV- Resolves: rhbz#1328108 - Protocol error with FreeIPA on CentOS 6- New upstream release 1.13.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.4- Resolves: rhbz#1276868 - Sudo PAM Login should support multiple password prompts (e.g. Password + Token) - Resolves: rhbz#1313041 - ssh with sssd proxy fails with "Connection closed by remote host" if locale not available- Resolves: rhbz#1310664 - [RFE] IPA: resolve external group memberships of IPA groups during getgrnam and getgrgid - Resolves: rhbz#1301303 - sss_obfuscate: SyntaxError: Missing parentheses in call to 'print'- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild- Additional upstream fixes- Resolves: rhbz#1256849 - SUDO: Support the IPA schema- New upstream release 1.13.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.3- New upstream release 1.13.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.2- Rebuilt for Python3.5 rebuild- Fix building pac responder with the krb5-1.14- python-sssdconfig: Fix parssing sssd.conf without config_file_version - Resolves: upstream #2837 - REGRESSION: ipa-client-automout failed- Fix few segfaults - Resolves: upstream #2811 - PAM responder crashed if user was not set - Resolves: upstream #2810 - sssd_be crashed in ipa_srv_ad_acct_lookup_step- New upstream release 1.13.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.1- Fix OTP bug - Resolves: upstream #2729 - Do not send SSS_OTP if both factors were entered separately- Backport upstream patches required by FreeIPA 4.2.1- Fix ipa-migration bug - Resolves: upstream #2719 - IPA: returned unknown dp error code with disabled migration mode- New upstream release 1.13.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.0- Unify return type of list_active_domains for python{2,3}- New upstream release 1.13 alpha - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.0alpha- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild- Fix libwbclient alternatives- Backport important patches from upstream 1.13 prerelease- New upstream release 1.12.5 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.5- Backport important patches from upstream 1.13 prerelease - Resolves: rhbz#1060325 - Does sssd-ad use the most suitable attribute for group name - Resolves: upstream #2335 - Investigate using the krb5 responder for driving the PAM conversation with OTPs - Enable cmocka tests for secondary architectures- Backport patches from upstream 1.12.5 prerelease - contains many fixes- Fix slow login with ipa and SELinux - Resolves: upstream #2624 - Only set the selinux context if the context differs from the local one- Fix regressions with ipa and SELinux - Resolves: upstream #2587 - With empty ipaselinuxusermapdefault security context on client is staff_u- Also relax libldb Requires - Remove --enable-ldb-version-check- Relax libldb BuildRequires to be greater-or-equal- Add support for python3 bindings - Add requirement to python3 or python3 bindings - Resolves: rhbz#1014594 - sssd: Support Python 3- New upstream release 1.12.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.4- Backport patches with Python3 support from upstream- Fix double free in monitor - Resolves: rhbz#1186887 [abrt] sssd-common: talloc_abort(): sssd killed by SIGABRT- Rebuild for new libldb- Decrease priority of sssd-libwbclient 20 -> 5 - It should be lower than priority of samba veriosn of libwbclient. - https://bugzilla.redhat.com/show_bug.cgi?id=1175511#c18- Apply a number of patches from upstream to fix issues found 1.12.3 - Resolves: rhbz#1176373 - dyndns_iface does not accept multiple interfaces, or isn't documented to be able to - Resolves: rhbz#988068 - getpwnam_r fails for non-existing users when sssd is not running - Resolves: upstream #2557 authentication failure with user from AD- Resolves: rhbz#1164156 - libsss_simpleifp should pull sssd-dbus - Resolves: rhbz#1179379 - gzip: stdin: file size changed while zipping when rotating logfile- New upstream release 1.12.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.3 - Fix spelling errors in description (fedpkg lint)- Rebuild for libldb 1.1.19- Resolves: rhbz#1175511 - sssd-libwbclient conflicts with Samba's and causes crash in wbinfo - in addition to the patch libwbclient.so is filtered out of the Provides list of the package- Fix regressions and bugs in sssd upstream 1.12.2 - https://fedorahosted.org/sssd/ticket/{id} - Regressions: #2471, #2475, #2483, #2487, #2529, #2535 - Bugs: #2287, #2445- Rebuild for libldb 1.1.18- Fix typo in libwbclient-devel %preun- Use alternatives for libwbclient- Backport several patches from upstream. - Fix a potential crash against old (pre-4.0) IPA servers- New upstream release 1.12.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.2- Resolves: rhbz#1139962 - Fedora 21, FreeIPA 4.0.2: sssd does not find user private group from server- New upstream release 1.12.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.1- Do not crash on resolving a group SID in IPA server mode- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild- Fix release version for upgrades- New upstream release 1.12.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild- New upstream release 1.12 beta2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0beta2- Fix tests on big-endian - Fix previous changelog entry- New upstream release 1.12 beta1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0beta1- Rebuild against new ding-libs- Make LDB dependency a strict equivalency- Rebuild against new libldb- New upstream release 1.11.5.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.5.1- Fix bug in generation of systemd unit file- New upstream release 1.11.5 - Remove upstreamed patch - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.5- Handle new error code for IPA password migration- Include couple of patches from upstream 1.11 branch- New upstream release 1.11.4 - Remove upstreamed patch - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.4- Handle OTP response from FreeIPA server gracefully- New upstream release 1.11.3 - Remove upstreamed patches - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.3- New upstream release 1.11.2 - Remove upstreamed patches - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.2- Fix potential crash with external groups in trusted IPA-AD setup- Add plugin for cifs-utils - Resolves: rhbz#998544- Fix failover from Global Catalog to LDAP in case GC is not available- Remove the ability to create public ccachedir (#1015089)- New upstream release 1.11.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.1- Fix multicast checks in the SSSD - Resolves: rhbz#1007475 - The multicast check is wrong in the sudo source code getting the host info- Backport simplification of ccache management from 1.11.1 - Resolves: rhbz#1010553 - sssd setting KRB5CCNAME=(null) on login- New upstream release 1.11.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0- Resolves: #967012 - [abrt] sssd-1.9.5-1.fc18: sss_mmap_cache_gr_invalidate_gid: Process /usr/libexec/sssd/sssd_nss was killed by signal 11 (SIGSEGV) - Resolves: #996214 - sssd proxy_child segfault- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild- Resolves: #906427 - Do not use %{_lib} in specfile for the nss and pam libraries- New upstream release 1.11 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0beta2- New upstream release 1.10.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.1- sssd-tools should require sssd-common, not sssd- Move sssd_pac to the sssd-ipa and sssd-ad subpackages - Trim out RHEL5-specific macros since we don't build on RHEL 5 - Trim out macros for Fedora older than F18 - Update libldb requirement to 1.1.16 - Trim RPM changelog down to the last year- Move sssd_pac to the sssd-krb5 subpackage- Fix Obsoletes: to account for dist tag - Convert post and pre scripts to run on the sssd-common subpackage - Remove old conversion from SYSV- New upstream release 1.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0- the cmocka toolkit exists only on selected arches- Apply a number of patches from upstream to fix issues found post-beta, in particular: -- segfault with a high DEBUG level -- Fix IPA password migration (upstream #1873) -- Fix fail over when retrying SRV resolution (upstream #1886)- Only BuildRequire libcmocka on Fedora- Fix typo in Requires that prevented an upgrade (#973916) - Use a hardcoded version in Conflicts, not less-than-current- Enable hardened build for RHEL7- New upstream release 1.10 beta2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta2 - BuildRequire libcmocka-devel in order to run all upstream tests during build - BuildRequire libnl3 instead of libnl1 - No longer BuildRequire initscripts, we no longer use /sbin/service - Remove explicit krb5-libs >= 1.10 requires; this platform doensn't carry any older krb5-libs version- Apply a couple of patches from upstream git that resolve crashes when ID mapping object was not initialized properly but needed later- Resolves: rhbz#961357 - Missing dyndns_update entry in sssd.conf during realm join - Resolves: rhbz#961278 - Login failure: Enterprise Principal enabled by default for AD Provider - Resolves: rhbz#961251 - sssd does not create user's krb5 ccache dir/file parent directory when logging in- BuildRequire recent libini_config to ensure consistent behaviour- Explicitly Require libini_config >= 1.0.0.1 to work around a SONAME bug in ding-libs - Fix SSH integration with fully-qualified domains - Add the ability to dynamically discover the NetBIOS name- New upstream release 1.10 beta1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta1- Add a patch to fix krb5 ccache creation issue with krb5 1.11- New upstream release 1.10 alpha1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0alpha1- Add a patch to fix krb5 unit tests- Split internal helper libraries into a shared object - Significantly reduce disk-space usage- Fix the Kerberos password expiration warning (#912223)- Do not write out dots in the domain-realm mapping file (#905650)- Include upstream patch to build with krb5-1.11- Rebuild against new libldb- Fix build with new automake versions- Recreate Kerberos ccache directory if it's missing - Resolves: rhbz#853558 - [sssd[krb5_child[PID]]]: Credential cache directory /run/user/UID/ccdir does not exist- Fix changelog dates to make F19 rpmbuild happy- New upstream release 1.9.4- New upstream release 1.9.3- Resolve groups from AD correctly- Check the validity of naming context- Move the sss_cache tool to the main package- Include the 1.9.2 tarball- New upstream release 1.9.2- New upstream release 1.9.1- require the latest libldb- Use mcpath insted of mcachepath macro to be consistent with upsteam spec file- New upstream release 1.9.0- New upstream release 1.9.0 rc1- New upstream release 1.9.0 beta7 - obsoletes patches #1-#3- Rebuild against libldb 1.12- Rebuild against libldb 1.11- Change the default ccache location to DIR:/run/user/${UID}/krb5cc and patch man page accordingly - Resolves: rhbz#851304- Rebuild against libldb 1.10- Only create the SELinux login file if there are SELinux mappings on the IPA server- Don't discard HBAC rule processing result if SELinux is on Resolves: rhbz#846792 (CVE-2012-3462)- New upstream release 1.9.0 beta 6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta6 - A new option, override_shell was added. If this option is set, all users managed by SSSD will have their shell set to its value. - Fixes for the support for setting default SELinux user context from FreeIPA. - Fixed a regression introduced in beta 5 that broke LDAP SASL binds - The SSSD supports the concept of a Primary Server and a Back Up Server in failover - A new command-line tool sss_seed is available to help prime the cache with a user record when deploying a new machine - SSSD is now able to discover and save the domain-realm mappings between an IPA server and a trusted Active Directory server. - Packaging changes to fix ldconfig usage in subpackages (#843995) - Rebuild against libldb 1.1.9- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- New upstream release 1.9.0 beta 5 - Obsoletes the patch for missing DP_OPTION_TERMINATOR in AD provider options - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta5 - Many fixes for the support for setting default SELinux user context from FreeIPA, most notably fixed the specificity evaluation - Fixed an incorrect default in the krb5_canonicalize option of the AD provider which was preventing password change operation - The shadowLastChange attribute value is now correctly updated with the number of days since the Epoch, not seconds- Fix broken ARM build - Add missing DP_OPTION_TERMINATOR in AD provider options- Own several directories create during make install (#839782)- New upstream release 1.9.0 beta 4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta4 - Add a new AD provider to improve integration with Active Directory 2008 R2 or later servers - SUDO integration was completely rewritten. The new implementation works with multiple domains and uses an improved refresh mechanism to download only the necessary rules - The IPA authentication provider now supports subdomains - Fixed regression for setups that were setting default_tkt_enctypes manually by reverting a previous workaround.- New upstream release 1.9.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta3 - Add a new PAC responder for dealing with cross-realm Kerberos trusts - Terminate idle connections to the NSS and PAM responders- Switch unicode library from libunistring to Glib - Drop unnecessary explicit Requires on keyutils - Guarantee that versioned Requires include the correct architecture- Fix accidental disabling of the DIR cache support- New upstream release 1.9.0 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta2 - Add support for the Kerberos DIR cache for storing multiple TGTs automatically - Major performance enhancement when storing large groups in the cache - Major performance enhancement when performing initgroups() against Active Directory - SSSDConfig data file default locations can now be set during configure for easier packaging- Fix regression in endianness patch- Rebuild SSSD against ding-libs 0.3.0beta1 - Fix endianness bug in service map protocol- Fix several regressions since 1.5.x - Ensure that the RPM creates the /var/lib/sss/mc directory - Add support for Netscape password warning expiration control - Rebuild against libldb 1.1.6- New upstream release 1.9.0 beta 1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta1 - Add native support for autofs to the IPA provider - Support for ID-mapping when connecting to Active Directory - Support for handling very large (> 1500 users) groups in Active Directory - Support for sub-domains (will be used for dealing with trust relationships) - Add a new fast in-memory cache to speed up lookups of cached data on repeated requests- New upstream release 1.8.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.3 - Numerous manpage and translation updates - LDAP: Handle situations where the RootDSE isn't available anonymously - LDAP: Fix regression for users using non-standard LDAP attributes for user information- New upstream release 1.8.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.2 - Several fixes to case-insensitive domain functions - Fix for GSSAPI binds when the keytab contains unrelated principals - Fixed several segfaults - Workarounds added for LDAP servers with unreadable RootDSE - SSH knownhostproxy will no longer enter an infinite loop preventing login - The provided SYSV init script now starts SSSD earlier at startup and stops it later during shutdown - Assorted minor fixes for issues discovered by static analysis tools- Don't duplicate libsss_autofs.so in two packages - Set explicit package contents instead of globbing- Fix uninitialized value bug causing crashes throughout the code - Resolves: rhbz#804783 - [abrt] Segfault during LDAP 'services' lookup- New upstream release 1.8.1 - Resolve issue where we could enter an infinite loop trying to connect to an auth server - Fix serious issue with complex (3+ levels) nested groups - Fix netgroup support for case-insensitivity and aliases - Fix serious issue with lookup bundling resulting in requests never completing - IPA provider will now check the value of nsAccountLock during pam_acct_mgmt in addition to pam_authenticate - Fix several regressions in the proxy provider - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#799031 - --debug option for sss_debuglevel doesn't work- New upstream release 1.8.0 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental) - Include the IPA AutoFS provider - Fixed several memory-corruption bugs - Fixed a regression in group enumeration since 1.7.0 - Fixed a regression in the proxy provider - Resolves: rhbz#741981 - Separate Cache Timeouts for SSSD - Resolves: rhbz#797968 - sssd_be: The requested tar get is not configured is logged at each login - Resolves: rhbz#754114 - [abrt] sssd-1.6.3-1.fc16: ping_check: Process /usr/sbin/sssd was killed by signal 11 (SIGSEGV) - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - Resolves: rhbz#786957 - sssd and kerberos should change the default location for create the Credential Cashes to /run/usr/USERNAME/krb5cc- Change default kerberos credential cache location to /run/user/- New upstream release 1.8.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta3 - Fixed a regression in group enumeration since 1.7.0 - Fixed several memory-corruption bugs - Finalized the ABI for the autofs support - Fixed a regression in the proxy provider- Rebuild against PCRE 8.30- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta2 - Fix two minor manpage bugs - Include the IPA AutoFS provider- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta1 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental)- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - fix netgroups and sudo as well- Fixes a serious memory hierarchy bug causing unpredictable behavior in the LDAP provider.- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- New upstream release 1.7.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.7.0 - Support for case-insensitive domains - Support for multiple search bases in the LDAP provider - Support for the native FreeIPA netgroup implementation - Reliability improvements to the process monitor - New DEBUG facility with more consistent log levels - New tool to change debug log levels without restarting SSSD - SSSD will now disconnect from LDAP server when idle - FreeIPA HBAC rules can choose to ignore srchost options for significant performance gains - Assorted performance improvements in the LDAP provider- New upstream release 1.6.4 - Rolls up previous patches applied to the 1.6.3 tarball - Fixes a rare issue causing crashes in the failover logic - Fixes an issue where SSSD would return the wrong PAM error code for users that it does not recognize.- Rebuild against libldb 1.1.4- Resolves: rhbz#753639 - sssd_nss crashes when passed invalid UTF-8 for the username in getpwnam() - Resolves: rhbz#758425 - LDAP failover not working if server refuses connections- Rebuild for libldb 1.1.3- Resolves: rhbz#752495 - Crash when apply settings- New upstream release 1.6.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.3 - Fixes a major cache performance issue introduced in 1.6.2 - Fixes a potential infinite-loop with certain LDAP layouts- Rebuilt for glibc bug#747377- Change selinux policy requirement to Conflicts: with the old version, rather than Requires: the supported version.- Add explicit requirement on selinux-policy version to address new SBUS symlinks.- Remove %files reference to sss_debuglevel copied from wrong upstreeam spec file.- Improved handling of users and groups with multi-valued name attributes (aliases) - Performance enhancements Initgroups on RFC2307bis/FreeIPA HBAC rule processing - Improved process-hang detection and restarting - Enabled the midpoint cache refresh by default (fewer cache misses on commonly-used entries) - Cleaned up the example configuration - New tool to change debug level on the fly- New upstream release 1.6.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.1 - Fixes a serious issue with LDAP connections when the communication is dropped (e.g. VPN disconnection, waking from sleep) - SSSD is now less strict when dealing with users/groups with multiple names when a definitive primary name cannot be determined - The LDAP provider will no longer attempt to canonicalize by default when using SASL. An option to re-enable this has been provided. - Fixes for non-standard LDAP attribute names (e.g. those used by Active Directory) - Three HBAC regressions have been fixed. - Fix for an infinite loop in the deref code- Build with _hardened_build macro- New upstream release 1.6.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.0 - Add host access control support for LDAP (similar to pam_host_attr) - Finer-grained control on principals used with Kerberos (such as for FAST or - validation) - Added a new tool sss_cache to allow selective expiring of cached entries - Added support for LDAP DEREF and ASQ controls - Added access control features for Novell Directory Server - FreeIPA dynamic DNS update now checks first to see if an update is needed - Complete rewrite of the HBAC library - New libraries: libipa_hbac and libipa_hbac-python- New upstream release 1.5.11 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.11 - Fix a serious regression that prevented SSSD from working with ldaps:// URIs - IPA Provider: Fix a bug with dynamic DNS that resulted in the wrong IPv6 - address being saved to the AAAA record- New upstream release 1.5.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.10 - Fixed a regression introduced in 1.5.9 that could result in blocking calls - to LDAP- New upstream release 1.5.9 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.9 - Support for overriding home directory, shell and primary GID locally - Properly honor TTL values from SRV record lookups - Support non-POSIX groups in nested group chains (for RFC2307bis LDAP - servers) - Properly escape IPv6 addresses in the failover code - Do not crash if inotify fails (e.g. resource exhaustion) - Don't add multiple TGT renewal callbacks (too many log messages)- New upstream release 1.5.8 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.8 - Support for the LDAP paging control - Support for multiple DNS servers for name resolution - Fixes for several group membership bugs - Fixes for rare crash bugs- Resolves: rhbz#706740 - Orphaned links on rc0.d-rc6.d - Make sure to properly convert to systemd if upgrading from newer - updates for Fedora 14- Fix segfault in TGT renewal- Resolves: rhbz#700891 - CVE-2011-1758 sssd: automatic TGT renewal overwrites - cached password with predicatable filename- Re-add manpage translations- New upstream release 1.5.6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.6 - Fixed a serious memory leak in the memberOf plugin - Fixed a regression with the negative cache that caused it to be essentially - nonfunctional - Fixed an issue where the user's full name would sometimes be removed from - the cache - Fixed an issue with password changes in the kerberos provider not working - with kpasswd- Resolves: rhbz#697057 - kpasswd fails when using sssd and - kadmin server != kdc server - Upgrades from SysV should now maintain enabled/disabled status- Fix %postun- Fix systemd conversion. Upgrades from SysV to systemd weren't properly - enabling the systemd service. - Fix a serious memory leak in the memberOf plugin - Fix an issue where the user's full name would sometimes be removed - from the cache- Install systemd unit file instead of sysv init script- New upstream release 1.5.5 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.5 - Fixes for several crash bugs - LDAP group lookups will no longer abort if there is a zero-length member - attribute - Add automatic fallback to 'cn' if the 'gecos' attribute does not exist- New upstream release 1.5.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.4 - Fixes for Active Directory when not all users and groups have POSIX attributes - Fixes for handling users and groups that have name aliases (aliases are ignored) - Fix group memberships after initgroups in the IPA provider- Resolves: rhbz#683267 - sssd 1.5.1-9 breaks AD authentication- New upstream release 1.5.3 - Support for libldb >= 1.0.0- New upstream release 1.5.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.2 - Fixes for support of FreeIPA v2 - Fixes for failover if DNS entries change - Improved sss_obfuscate tool with better interactive mode - Fix several crash bugs - Don't attempt to use START_TLS over SSL. Some LDAP servers can't handle this - Delete users from the local cache if initgroups calls return 'no such user' - (previously only worked for getpwnam/getpwuid) - Use new Transifex.net translations - Better support for automatic TGT renewal (now survives restart) - Netgroup fixes- Rebuild sssd against libldb 1.0.2 so the memberof module loads again. - Related: rhbz#677425- Resolves: rhbz#677768 - name service caches names, so id command shows - recently deleted users- Ensure that SSSD builds against libldb-1.0.0 on F15 and later - Remove .la for memberOf- Fix memberOf install path- Add support for libldb 1.0.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Fix nested group member filter sanitization for RFC2307bis - Put translated tool manpages into the sssd-tools subpackage- Restore Requires: cyrus-sasl-gssapi as it is not auto-detected during - rpmbuild- New upstream release 1.5.1 - Addresses CVE-2010-4341 - DoS in sssd PAM responder can prevent logins - Vast performance improvements when enumerate = true - All PAM actions will now perform a forced initgroups lookup instead of just - a user information lookup - This guarantees that all group information is available to other - providers, such as the simple provider. - For backwards-compatibility, DNS lookups will also fall back to trying the - SSSD domain name as a DNS discovery domain. - Support for more password expiration policies in LDAP - 389 Directory Server - FreeIPA - ActiveDirectory - Support for ldap_tls_{cert,key,cipher_suite} config options -Assorted bugfixes- CVE-2010-4341 - DoS in sssd PAM responder can prevent logins- New upstream release 1.5.0 - Fixed issues with LDAP search filters that needed to be escaped - Add Kerberos FAST support on platforms that support it - Reduced verbosity of PAM_TEXT_INFO messages for cached credentials - Added a Kerberos access provider to honor .k5login - Addressed several thread-safety issues in the sss_client code - Improved support for delayed online Kerberos auth - Significantly reduced time between connecting to the network/VPN and - acquiring a TGT - Added feature for automatic Kerberos ticket renewal - Provides the kerberos ticket for long-lived processes or cron jobs - even when the user logs out - Added several new features to the LDAP access provider - Support for 'shadow' access control - Support for authorizedService access control - Ability to mix-and-match LDAP access control features - Added an option for a separate password-change LDAP server for those - platforms where LDAP referrals are not supported - Added support for manpage translations- Solve a shutdown race-condition that sometimes left processes running - Resolves: rhbz#606887 - SSSD stops on upgrade- Log startup errors to the syslog - Allow cache cleanup to be disabled in sssd.conf- New upstream release 1.4.1 - Add support for netgroups to the proxy provider - Fixes a minor bug with UIDs/GIDs >= 2^31 - Fixes a segfault in the kerberos provider - Fixes a segfault in the NSS responder if a data provider crashes - Correctly use sdap_netgroup_search_base- Fix incorrect tarball URL- New upstream release 1.4.0 - Added support for netgroups to the LDAP provider - Performance improvements made to group processing of RFC2307 LDAP servers - Fixed nested group issues with RFC2307bis LDAP servers without a memberOf plugin - Build-system improvements to support Gentoo - Split out several libraries into the ding-libs tarball - Manpage reviewed and updated- Fix pre and post script requirements- Resolves: rhbz#606887 - sssd stops on upgrade- Resolves: rhbz#626205 - Unable to unlock screen- Resolves: rhbz#637955 - libini_config-devel needs libcollection-devel but - doesn't require it- Resolves: rhbz#632615 - the krb5 locator plugin isn't packaged for multilib- Resolves: CVE-2010-2940 - sssd allows null password entry to authenticate - against LDAP- Rebuilt for https://fedoraproject.org/wiki/Features/Python_2.7/MassRebuild- New upstream version 1.2.91 (1.3.0rc1) - Improved LDAP failover - Synchronous sysdb API (provides performance enhancements) - Better online reconnection detection- New stable upstream version 1.2.1 - Resolves: rhbz#595529 - spec file should eschew %define in favor of - %global - Resolves: rhbz#593644 - Empty list of simple_allow_users causes sssd service - to fail while restart. - Resolves: rhbz#599026 - Makefile typo causes SSSD not to use the kernel - keyring - Resolves: rhbz#599724 - sssd is broken on Rawhide- New stable upstream version 1.2.0 - Support ServiceGroups for FreeIPA v2 HBAC rules - Fix long-standing issue with auth_provider = proxy - Better logging for TLS issues in LDAP- New LDAP access provider allows for filtering user access by LDAP attribute - Reduced default timeout for detecting offline status with LDAP - GSSAPI ticket lifetime made configurable - Better offline->online transition support in Kerberos- Release new upstream version 1.1.91 - Enhancements when using SSSD with FreeIPA v2 - Support for deferred kinit - Support for DNS SRV records for failover- Bump up release number to avoid library sub-packages version issues with previous releases.- New upstream release 1.1.1 - Fixed the IPA provider (which was segfaulting at start) - Fixed a bug in the SSSDConfig API causing some options to revert to - their defaults - This impacted the Authconfig UI - Ensure that SASL binds to LDAP auto-retry when interrupted by a signal- Release SSSD 1.1.0 final - Fix two potential segfaults - Fix memory leak in monitor - Better error message for unusable confdb- Release candidate for SSSD 1.1 - Add simple access provider - Create subpackages for libcollection, libini_config, libdhash and librefarray - Support IPv6 - Support LDAP referrals - Fix cache issues - Better feedback from PAM when offline- Rebuild against new libtevent- Fix licenses in sources and on RPMs- Fix regression on 64-bit platforms- Fixes link error on platforms that do not do implicit linking - Fixes double-free segfault in PAM - Fixes double-free error in async resolver - Fixes support for TCP-based DNS lookups in async resolver - Fixes memory alignment issues on ARM processors - Manpage fixes- Fixes a bug in the failover code that prevented the SSSD from detecting when it went back online - Fixes a bug causing long (sometimes multiple-minute) waits for NSS requests - Several segfault bugfixes- Fix CVE-2010-0014- Patch SSSDConfig API to address - https://bugzilla.redhat.com/show_bug.cgi?id=549482- New upstream stable release 1.0.0- New upstream bugfix release 0.99.1- New upstream release 0.99.0- Fix segfault in sssd_pam when cache_credentials was enabled - Update the sample configuration - Fix upgrade issues caused by data provider service removal- Fix upgrade issues from old (pre-0.5.0) releases of SSSD- New upstream release 0.7.0- Fix missing file permissions for sssd-clients- Add SSSDConfig API - Update polish translation for 0.6.0 - Fix long timeout on ldap operation - Make dp requests more robust- Ensure that the configuration upgrade script always writes the config file with 0600 permissions - Eliminate an infinite loop in group enumerations- New upstream release 0.6.0- New upstream release 0.5.0- Fix for CVE-2009-2410 - Native SSSD users with no password set could log in without a password. (Patch by Stephen Gallagher)- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- Fix a couple of segfaults that may happen on reload- add missing configure check that broke stopping the daemon - also fix default config to add a missing required option- latest upstream release. - also add a patch that fixes debugging output (potential segfault)- release out of the official 0.3.2 tarball- bugfix release 0.3.2 - includes previous release patches - change permissions of the /etc/sssd/sssd.conf to 0600- Add last minute bug fixes, found in testing the package- Version 0.3.1 - includes previous release patches- Try to fix build adding automake as an explicit BuildRequire - Add also a couple of last minute patches from upstream- Version 0.3.0 - Provides file based configuration and lots of improvements- Version 0.2.1- Version 0.2.0- package git snapshot- fixed items found during review - added initscript- added sss_client- Small cleanup and fixes in the spec file- Initial release (based on version 0.1.0 upstream code) rusvuk2.7.3-2.el82.7.3-2.el8 .build-id035f0a1eb7efa5419626eb8e938624ef84f5efb5bc6ea9fabe1b4a82dba092cd5a0339fb3aa5012dlibsss_ad.sogpo_childsssd-adCOPYINGsssd-ad.5.gzsssd-ad.5.gzsssd-ad.5.gzsssd-ad.5.gz/usr/lib//usr/lib/.build-id//usr/lib/.build-id/03//usr/lib/.build-id/bc//usr/lib64/sssd//usr/libexec/sssd//usr/share/licenses//usr/share/licenses/sssd-ad//usr/share/man/man5//usr/share/man/ru/man5//usr/share/man/sv/man5//usr/share/man/uk/man5/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -mtune=generic -fasynchronous-unwind-tables -fstack-clash-protection -fcf-protectioncpioxz2x86_64-redhat-linux-gnudirectoryELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=035f0a1eb7efa5419626eb8e938624ef84f5efb5, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, for GNU/Linux 3.2.0, BuildID[sha1]=bc6ea9fabe1b4a82dba092cd5a0339fb3aa5012d, strippedASCII texttroff or preprocessor input, ASCII text, with very long lines (gzip compressed data, max compression, from Unix)troff or preprocessor input, UTF-8 Unicode text, with very long lines (gzip compressed data, max compression, from Unix)99PRRR;RRRRR RR8RRRRRR2R&RRRRR%R4RRR,R3RRRR R5R$R!RR R'R9R?\ 4;GeZ$Ur̭+G6i( bIIpnɸqSQd_܄N A:BNs;U);.R[)x1EO吿Ai>#du6YkkڃZj-McsROT%ap*/VR4:56SDxkt\3䜹JFO85=RIVN$fʥ,AG:a@\62+ERmJw*d u|dE`DJ6D*qyPHK|̨n22✀3X" |f}/φdI6rYzf5]|s5:*8g3P9KvWIA #`"uG6>yPh[P+#h 9fS<3x|ETuCY/+Ϟ$!~UsH;M/isZ1̔R=pIíPcV>b9¾LMeOy4V 7DG# %or0Ƕ 5քj}YΞߜIVqn"}:lKj^|(k 02>Tq]78Ki^@J%9ߛQVSBhO*̘Z')O`LPQ+\@8Y$L2-P}W ge4Iܹ 1H41wI ~ CH 7Qۛ;<[l :gU\Ex  ..#@Z ;b[(\ґd1×ƜP7բG'„V~7elIbO2gڰذtrR'd$ؙ\MƷ?]vn?O1 ݧᐔяyPHXs7's.(apc&CB.lmS`i!BAd8]+(;MQɛ-bs8DQXj`7%JsGm0/bnkK'oAˎ<`qՠt.~pE8K`Gz0)WhS3{&nV}xٍV-ʸ& '&IQ^u7‘^#Y6牙 ({V<6E\ʒeSxvA*ltL\CC`/ikq%?%?Q>7$MƼȦYD"]ո) P b>`$R,hJ3VpZb:UM;b(~=R+>fŤ`Տ3tO޸;άmˇZmOl3r }þP pڽ .ϕ]8e Sm=^W1l'U6.|(,X[E>G3i#ZyY$}H&d6rBw}-<"qW0w+O%ÂlTGZXIl#\`M[G7OC. o$mayg6'b ɀ |Bvg )t7"O-MЭۭ|{)FQ sfCtkZ*F7nIoLCZ/ LO(K"Nb‘A<{e$clڊ!}hE!˥Z CAH"8@cK#x|mK&NG&$T?"U=;+hB |Ěe(;g/K:G?:8De,BofK4Š|;>')ZDnsEuX0W,Nؾ=Oc=@cULM#i^~dIy:hP$qfb8SM +lwe9>`a01fԯY1%tKrkۏ$TŁn_ej6裊~ kV +>#,{]6[DE>fNӜծ(,m(2nZ7}tu=jB,6b ~ EN*B ʁ P QxYvhYKC<aRE{Th#j zG>O/@FRFyg 5ٗ}c0P!ћQVe*%;ji_޻e8rN^Cڹ BFd$KQ&lKZr'&7*|94iEk)5۫(jܑЀ\Ӯ9a0ri:vVqWG)xTr 16)1ut>hI5&j.g]]o4k/,L}tG+Y C] #OE1=|Q,ne E#+>+*Y;O-^lO\YqffC|h˚,ol# )7Q iȺc';Ϥ rEG*shOdN1%Mzǩ۾mbZBLh]cjVwY\Շ󫳂ԝH@;d:@ lay AZ)gMXS*A`'rCRB;ȳɖ `mR":eRwL6Ft(YC~uvFu{FKFp|XvjbAR`y(we/>Y?qb!S*Fd淣NƒsЕ5sۄ&:FFm1;j4:GU'K5佷<:1Bb)\V" ef>HXK|[؝Yex'#gv16F詎 rm&%kz $ux?BVwDٿ8W."\oРr)J0Ҳ;cKp/x&Xy6 Vo4acx7r9T"Þ4sٙSPbϝ 'mszNy;? byu!gV1<m>DR`Ik‡FjHr2`wFF.~qqQ{#;^l,?ƺ8סH o<޾9^mjyNW.qfm˭ ȵiUTW seyVό=_%r;_RHT\2" . 1v>bH+y"IBe +$xf%8Ȑ*ltb% i'F*7{m;=ɖ6~}N$[9Y}+$92;r/|], !MT9?K^8-d+'(TMȺ h_UTx<>; Z Q8rSkumԣ>J뭃%+ł]$CWBb&I|s7zW7b&_[_pD|I) "+j&kmJb.:2(؄6d#|.Bk2<3K'UTəH+bI+k)%WClQ (mˈ/d|| kv-(Ґ ϫ=TZۦ[,BC36Zx .?兕}*$#15.0m n1E1]e'(5Gjm9z4Տ>7x"`vUT2=5`40tb̠"S*m.y jgpKEI #c=( RրCr%짔12 $]CL"%Q~cїwb{ Еra6zhEXa 4x39,(/tTK*x[&{U;ТDF),ғӬBz,@dR5l'ٔU4YT¢24aj7ʔO6$$eud5O@hUBb2iZN!1_ "*&nCԘ/:+严;y7DZ*KX@J&NkWp@wU: t4r}Omd7Ϥ.3 iן5vl#k|E1i($M8$6^/y| {ZJtj`&(Ke2?6 = tP<Ӭ > LIՄ'PDڟІ 0 v0aQ6CW< D^=cz?GlP(]x}o 1۩SG;XGgD#k& R5g-MJzA=+i,%<ІdT3@0S !Ql %aɸ)ׁ^nN  |a VFr}^r;7OW)pL@lf蔹l W\xo^3#2#,:&uAmH;0DN6#Y^œyZ0B]QJ)fMiv$!5S64⑇JXL<מFeo8V%>T\Lֶ7mGFB 3D`o~-]R*`(ۄF5Z h:0WXbLlR @#-'|8 ϹS zA8מ1$@ދrVA.v4ʢs2x+iGprE4NzԴ<(ߛ.5< ` 1' Hixidi-]aB 8q%YݧAAsQ9D%4F]ߣogsT~9&ļ+b5:$>I#,g@F nߐl8(21/o.A!?20Х?.W^ŢIU͚.EVa!zfeWfj Xs{iƖYȮV񕪚Nif z|*4 `I" E4s?{6x{fXMpVBvw؃X=?I3ʘׄ"O4SC"b`K~w-R36{ ]NO5 BƢfqbt:0=sGjRgghushseO]]QQ5E sH)}5DB&]x#n=DTգqQyZ]z=!vxB10BjQG3^uF~EMѦ,\,"(e\ *d Ld1tm \("A-A90? %cZ @т\?l"o9&)/91wɛ6U"*H:LVPI-ZD>I9)!f5>b,ڏA+^x=MI|èWfEXՐ׎L#\M7wP@7v]dOK8RgzrU‘ֿy% /N݄gz%mpkJkS.v)DDŀ>o*եit|cݿ::E o7 [b|f) z =7vǀ3Gi@sSlۢCk Ylev}Um QZVĕ:e*~U1/\M2i)cgƎKa_oؾ_lD@M|3CwAP9ט]pgЂ߽e]i@<߳ĚE)P)^k֯ )nґG6 s#âup>ў%m^V}Fy=)At9ϋˤj;Pd [w=,xl=OrDM ~G ^A0RtʸyLSW{Q5ntG$l*r կSm%Qi~ ilk"ex/m|a ѡHC-sT+wXc N\5X HZ hGFr8xu(h7}`e7uak~Qu0h.rgK ʪwb~E#pC F?JcK5~LXXo,cVȺL까OEHRǭ)+~pt+sK8Wuk+vsfsb8Sj:&S*L7sV%¢݆X%d^ŧÿA<.ڇ=<50l6?KEvAu; l9pxԻKi9L1@ i`5%fQseD&??vrwܯArt UlSA~ĭ%Q^eDWS-EDk..c^nyP:(J]r 5~˙O3Rvna7|(:)D9:r cS>qR۬@ô2V8@a4@eD5,4Jw٥1MCwO-fqs]H,k֌r! m~jbBߦ zouÇCU~v~jW.R $lJ3w{ۈnDS0>ׇ?&סYF/nUXb6 4Eoϼic ,Eߍ9oLzF{R$~Ie@Gƒ% *KtL]rО "v݊i+9@Oﶘ}3`G>ges|@q!^?bZ*9Luucȏfȕd$em_8}3~SW$GlQ <hrklQBM!2z@㇯ fxVMUkSDŽd+}>Jh'~!lXFqp _;o&)13`qIGȯѱls G7Ө D/B"hӥRˉ Ԫn{SCYn~*{:5MbrapL?<4XۅօZ> MHYQ* =?)o{~'M(Ad(|HX** 8',*gXr!ޢw,LtiubK"5ó.U,pȺՕ)L$L4@gs/tݼ ~#iq[W! l÷߈-PF%Djmz <1ʶ(ZW1Hf_T}ԅ|#T[u.x~v4N^gEUew<@9ͣ2{_fuh/E[HrL{(v>DIW}^S5l+"X|S} nK=jq\G#af' LR0Ij=:k%X^"-mŎ@ǻ=N5Ā֪~!hggQ XD2/DPm[ok" hGP&U$j3֕,ݑ&Ub*W8= /ng7h@}aaD;~T?Ys2ޱ[웧qPjD} D5|W5{zjT|&pK5W;93_iYb} `\4YyԾVTere5\[ ;k;{i v d u"޼nlb,M0 ~Fٗw'CS*ؤ/T8t_=Xc+{no|J-'50PJd;QeW `HǠTL-5  fi(fY*΢v %#;<0#~^̌؟=+$j=HH+gƵj WMu]IHnA{:"^AgSg=wyޔrO`J|pvB^'C1~ 꼵T=jVM; 9Q$v^`Gt9,2YZ`!}}y˃24V+YҺdnh(iu# \JDL|C\ݾv0QpOkgp* F_qzYpoY],7H  ̽$dm\IL|fڵ"Ьuax=ʱ$<|问Dw_a4䩚@UFx=q_)_͊r!mb"w5`S! W`{brK͎7̷AP$)[Xʌ.<%{BG悻nYImO(uWOe ;2?^r&F&H_2P#>)v,3r8v4̗&I|7泝)o-I'^kBqNd(kBR+x9gВJUY% : 9#-dg6dɻe w[IkX3 y[~<2LƝ uͨnVzHv%ҌX ^5oY]YOWW٠:.Zle{DrXPK Yee(5!& ţN&5#,@Q'4|\5,i6=ΝXl%$¾պ\6µU>Mtb5$bd,/my& aEkU % a fZY{Kq@;k K}{{EO 3t=LY{\l1uZHܼ},1G +lsnNj1U&~L3>n:-hOqE.onWQV]#V* `#Vqe_GE`AQ^h)n$mc=3 ^#L`e Hi6d&$ 0Q_&#'BLT[ ,*+ FsRznMlh\m6BYu$n%,@Û 0,# o0GBiHKO\mbΕZL r-ԓ՗ݼb:yTF .zF&5j΋}. 8L=bY4GXAgOo ^n6RYMIh,C +PpyHx~(Қ)1MG@qiq#Y[I"V" aUhx)|@2=sONjtE[0^4 {%]ہ(yR@Y`"q*\W퍞>Ƌ&1< AïmLp4m+b29i3fPuAdX̥Qqb<ʞ:Ł0@^=VN3 鈾xom/V9D*?o(O؞;Nv ,L:f*>*z7T$='g 7`5դOq+<1qנ}y-aOwJ1W Ci)švI2[r{ \C I$^zYWhTPYmXS{e!_g h\ 1z`)qp[~gwυ2WQ#^C.CB 8[u|ܐM#CS ӟLt~2A *IQDkťp!mi?iCiJefo +*ipL0pإuZ0(Ĕl<r{DO SzT<̯fTJi8;iѮb 1)+ؘ*bqk5 G{iP,( ]x9sSm }s_ M jЙ"= ,<6s&UN2<, o[wJsi\ )wBԳ+&C 5SP!QenMO{ejcSX#s;9ABK e9؂t$e1xT,?ޛQe?#wX]Pgٔ7F,G;"Ӓdz[͟H(Eqyh4+Ɍ~K{/}HwȆS'y* TW.^wuZ>U;8U4E{;a$ӞU 8Xp+_CgR'v +HdF9e1@ĉ * C;?{)BH3_hh`U]\桲T#or77'2H߇y+71`hԙ3EnΊcLѬ߰?jӿV7_ krF$Ho۩]F2 I}ֆfDK/qF#&(6E&ܒQϨ@;;8ly o %_dCqyhWvyo0?!ղ;c2.l)M'-j5B}܎n/ cBRf #NP@|!WL|@a$ߎGodc!G#nP`Ogg (\U )qJBx%֜ ( Rܗ@Lg2_YPS;TuI.g.Cy˹X Sy,:I mH =h"a,g$Lvyi!8x%JdvE5pROr_qQy&MwHO51i̍N`P\(=m򢫦;6YyOO 45 3ZՍ塒JXj])w8%;hS]qUk! '\0T|L@7gih28mTE;d1E:"! iaD!PyJ#cA /9-D]h0:HK,TL;7(I5GvY35UUsp Twqp: 1HVaܪЬ8ƻ,75,`o>gB~<ǪuV}1v3J VQK[A!Z勓a ?َ%r򵥈zx>>^MdRQH[BM[aN8͛oկ8'yt]\uHW*8bhK^/4kWVG-zDd/M+rJ7]& f;f%"FA=Zʶ߆Mn; IZזԆu,1_sBi_54ƚ xa;[I^"}^tPt|*SZ`@Ȩ`=*vق O2$P6ƨ|~F</](zs풳!kW b֖Эkt|ȚBϟ\ߒU@ի`ɫ >|q xhfz:=5 Q,Wԯt^\۳.*̀DP\%|F!%6}/w|D(-~5pPcؿ %wPp * ڶmwQMܰg;f+m~lFBJb*3r7'|`7Gc++YmT͛τ;"Fx {Cx }x&@#ݷVi^)cs7Qtֆf,bwqp*gq8|lVQ ȧY˳K=%lo]2lQtn*cA%eC4N{q_+ׄ/aM}RKbtu-Ӝɵ''v[J?$QC,ib{Ty#NvP;z6Je$wXY5tzFk3} 5B 6rTKOjpaCe_ߥ94.Uj29%lX~OEb>wY6 `Ϧd|`QrKtpL&gH>0Tzb&O&ڭ]?y-=+悔G7+ɿ%M*^ö~y%5 UpДx3si8Gwȴ5L5F߽.􂹌P&VZqy/ZL%Mgsg:$aQ0f@{kg&Nq <8mV..ݚc* e;NfExѩ{% T[Έ``g:{# uL3G,^2-)Ί*eXs 6{ *S{!ps8U%'CZb$_t)dٰ?@(%-2V|ؒC.i,K beK Ha%7U`WI!*FI>^$d\0 5#^4AQg[~>ܕIz>)1E7 _=Eo: ?E69: È0Q³ֆFPE݀OYymuCoOT^2=l@{Ray/G~A+-&^+,2u,1xrHmX( Bi6' &БI`gUsW xB7aa_vO?h"+ CH<|nwFm~RJm%R!l6qӲMR2 :jӬe۫d_7e>5Eȏg X*vmm,..P2wU/FRQ=NtaPkTg 9o،uQ[-v{/зbk`$?$<[`Čdo+/46:K JDR;qD* H JGhz"\)_׸-N p@!_/XtYHgT@΋̷u*>".v-XV%n=VbپՁ%=VpV :w:G=qLzQj1_ 4)ou[D'*0?A)Ĕ%`vOWlc 'kuk +gp$4UJ Z`~ۦ[S&]Qv~ QW}(nu y}eb-HKI͖!:W6o! ڨew}7W5]f7~#%(U.71%I*VG.):gM!cdl/(͜{]&o$ G~TB[6jHT@:#DH(!f[hpˁ~ X/fSl"%{_^FbP#}}1N`0wMsK+f$H˘GC9)͡!#4qKK!Q3, iT[Lވ@xb|YR_qёZ*º &!vOu@ItܪcjplNU#v;Fg6GYWB! N-5LydC1ܯ*K7~7Jh4s3꒜ C-qi*IآqWD8z,qf+1}cքajťIp%W3'$ԵkZwF~_ ,Bu*\‹ۡ!;EH-$Ao?> j voM@ `=7ŠxKgϮ,-@ SЁ\R$Foٸ`[{ZLX܌*^tӋHDԗs(o{fN$tn>/$R#qSN)[;nN.wi'y :9~͡#ca%9XZMVGGӊTMEȟ}VQ"(Ѝ (+&q?!^-Md.)x)^-+ҴR=ڈ})/ Mcxeybb(Bv`нW4\81QNqX,F^4x! %"^"A; +fCVJm %F;l$-ilW^ +Xa<6+RGv.qWn6DE.#,EDK I_x_d* 5 uD wy*i]ʹ1Ψ6[?a^^JMt w =q-p~6I.U\=Cchk-+WqnN;! lCĦo?NbG;N4˖<]A'L䅴RA=) baߊ,v6CL W<}S1ﻼ_,1'k[Q;Y0񏍆o;a(&q5 RQ&c !ʆ62O5qnwWG؛{(W5ndS&Bim;Q6lLq qM m+-/~%b˽Q9.b5j7_AcxPGQ~#G1vjS4m~Hv?Re.'t+bmǺa5O7}Q W.~_!8.4$?5P^[2㕝lM~6P=].H6oT/m#aK?iMȉ ÔLV{nW >&c (IƢ#P;AQu%{~US[zݹMhC<=E(pXn zif`[(0owHG[< ݿCgNwejnbE4ȍ+z&85Z?wKe KVYCͅNPTk.2f2mRcJ4Yog%'n@}ҧ.E]Kg$70?}(V2a3L(I3R\!Ւ$Ezx0M^ ]-zq+v#|='6Z s-t2#&;?G\ZV9x`3\^ZSͼ8N&׳4@v ~P9ށur jn|fw5<6COtˁt՝@vyIh:aC l |Q(asz>}2x!A!|Z@Ÿۉ TL X4=rɯ x<~͹i~عΔ3,+&&I-P-& (M.]ȴ7Y4oHL8:cP pkbj4O$X={~V짚Q೹0Dps? -;\sekdv*J64EkrcS}4 7XɍI/Xr %b3s!0n> 2B{D'u)ƦMhZ2~7陒^C4q&6f6ewЈg]G͒b$?ފC5*$pB,(|9OLXñDQ}yaTbD93+,WK–N̜qP[7bÉ̍,e' ;CɅJE9 wH5x2ٍmZ'+vFsE-15~LbtMѿDgO.Nv\ sL)ϾyS)X]UM2 Hڹ^oju0I 6 b T2<W+[l>3l`$Et*6LA?\m9Ӟp"2m?µ%7ؕ.o_fηbʡz:00;KuerP阒AWp` cR$S@Su5Rz47[q<=oy.<0]^NMl_Oz#& +|vJ;\Rs-9ΡOΎZ?o6`5J0 l,cy0ͪ&Q hW|=BsN^O( _J-戝K|+OlNEV?E2 8'<~~sp*5%end !iPX(9!nTWڤⴶɵp8 ܞ~*.W!P&40y)Di3W9!Rᡊ*:l[ш<øTI—c>*E q769J6zDv↨i.~d@n0ʎ jZo@8!* |2E󛋛QI'\7st0 &wÊ E~c ӒÜ=<^~h%; 6kG2).$&n4f >C,l6^Je"dۓ-QWQג'i4iq8{|Ged~RrY*@ٺʈ:Ashv] PD͘<"\0Ws-_.bC >Fʈ8,+Ev`8xѓpm-iG/ x68=SDa0tƺAh3Ma%m2;G(H}L33KN~ٻ~^:$ԝ&ODfT@BvR6ȖV_/0}`-aLSؓAќ}ΜDZնyuke,p ci{$N̫^ }D`\o*bW&4U2OudX;p(KB*9V7`nAU{ Ө]fu[U /^cZNEtW"e湲z^ -3La=Q:MJ}D(t21K6wQ' @4lYSD -nM/:;ؗr;oi0.=+ek2PaO+tvFmifQ?~oAPsIz?qTYq~a9.d2ɹ4Jޒ/W2 ?R;˅}˕. bu"AWܳlʡPzήYbHѕrmXa8 J^cp_0*\sWI=ԝW:|XQ,&hŚb L[f5&]7 ;4$4 ["?eh5ۆFjӍWH}]BVVJM@!_}zfu3t'y:wRbBQ/(sh>&^O k άۜoXD45lD=tdM(5Z1*Vh! ѕ; bvٱf~0%!9ۢHgEn om.UҵJAA$egy֋74Xw.ۜ=6ظym͎}:6 : M6`{EugϺw%-vȪ}~ {oW -܍w[Z!7gZђ~]-Ucwz.@zeaHS8b,]PY]>f†:F^W7ИvMYvZ!6Jl<[A9߀ 40cFkW/`)oaf ە41V6;/k/Y ^7h|;鿦-f pDQsAT-γ`rFͣf~57%3́*B=*XI,,ڪK9Fڍ\.*;4 9kW-9of8d."!PhbՕ*W4g˛&^7f`j6 Ipr`R+?f{ ZZR"0~A"`<1Z @n8BJtRS)\ȱuc[n,/qj 34@79a8`tӝK$i`vB9ސl̢bb@lGMlıYe;28ǾpzYxFi5,Jd[,q:.\: ?2 .(kQah Tp ݭ=T8y ͓U%x\RՔBH{<,adC8$bXרsoPXvƑNiuh/o2je !Pw0s=x(N3V-ghq:oa) *M eH۱Î-= X=ڭ gU ΔRYCc]?/sÌQ|'e"kK-~ט]9Չ}U|L@Nҧk&P%r( X'0st<Rq(TǬ7JBbyyR!{ᅂ0\ [ݥV# Ct ]qe,4 x1m%;nɊ(30_~&"qndlΚKh.?orSnX*ݷ (Dl@On;J p?MH)THn/RYbi0@ Xpzq'cE?יX4تc!`s8!p X]Wln1d6̺Qt;Ag4f-#^ߴI/@SWYPN񷲲-B!eo;skrHp 9zm4\~O)8mk Ae4QJNs>J~c߲/T~x-RZk"@~ ~/mڒ5[g)[C]\HlA5HG;ztf{ +'6(xTwE頻poFCxky7Il]bל(a6m$7(K] }H@\5[EH)JR=24^GN7i IqHirp9/kd5:pnucIq)w%:,aq6=|!w݌j-Q`,)GYgECx;͠9/g_Udヲ%.z~QF2j.s dž$o)VOvơt3ݨ …XF d6b\hҌ'}~" Cj=~ Um:þNv\tW'lЪ)Ot>RуDb[N<;WkW\_y+}Ϭ蟮0 3osW®yX%!APc:xE~|T0e*M[;t;BoulYVoz7Z lnB6hulOr=eٞ{}f_r.j⣮龕a `9g!Rj '#+ d:3-ǞfP(b ryI&BN1Jf*T.ݳєa?Ts*;(\zqU Z 0k24rOTwCT< &v3$!eF+ "A0H<'` spH'^gHJ_3t{_a[4e%$gȍ?n}*X{1%t1DZJ9UiFNzLg5;Ʃ&/)ȫVݴ!w1.KD=fhRgU~@$ ik}w+>Pt/2#]`Ov8 ) RmJSzO|zȵ|e#H\%k"\6y@T]ce"B+՝rTz.dESuBcNv=+SivTþg DŽ ӳd H0 'YlY̰zG#Lŏ k47E1Xieێ Ygyn9=tyG{kQsX:O5CKi[xP}w Љ螏D_m=foqySV4/5s"_K$ `詪Y\\ ."]_1x 2 R/NJjX`xE-ƶYr-FS}¬m G.b)~ Wl>h)mU+*=$J ?o h>Ы}4S.$d'-fJ_704T5T 7< vxYlaӣL>w 3j5͸+F~x}@]P=X)+;pz)?(6ax=ZKӱͧMϒ7wz =v ?f4/ ږߖޒ(g:S.4LNJ|.䜏ɕ{a-cxo:fڛqvmuuw.zMAj%kxTf˒Mc)!u킂5};XfYW 2(j{ϒi Dr5+ߗPc&.Ub}6(:}3Y['@#h/e&&HEY {“L ģEnG7m-FW+NʉXC&L#yS;T]ܥ*˘8Yf+ ?v^mSvJ 70=%ʠ.%43V™TupYLb% !E2.&rCZQ({t#UL8 Li+ 2S?iD27Хn1AJgn@*e_\ qdm8j&))oHA1j,Eueϡ}Re=aB>w(GCTEIU@o:TofFr.7@Kk&FK!.jq4@hS'}k@j;6ÜgG~`+TAl+Ml=d,ڷ`I]CK;wE+5 >_6H IQQ1bX,%~We8b 땣5/[:+;'J )*:f`Kyf:qޘB~bq38e\̴2=q-_ݕ&ڗ̓*긡x#FUόǥ.Ϟv| Kv*tY) H[j v=u*K%6z}$# ;lˈML1X▦CWջ%.7QmţEC/ ZdzG85oӸ̙^ ot*Q)1ebJ1Jc+=$ xLh$N` ,'쾡.#:d \`v[uNt$ޜlF%k.>ę(T&h;/J>qI1xH fFErA=:QD#JMw& K,42XLQwi[J.u/ ˚;>.> H.Rq#<1aOy)ekD1U>| 8 -):]]B{˘8fJdZ\fNMa*bd>ǏPN쁭~yHUhKl^t0 u z?l0QUqr.Y7(d&9@=w\dGJ8n+<N_R2b$8D>6"%ۘƚHbB3Va { ~=jj~7A{b3k| MBo!tdUjNҐceT o)K>~>YSè1`0ySl,u"*AR,W*S%#Mp0|!F} Xë́#G뻐[!;QɺHE-\!hPYU-盚n̆^OzUb=n^[_%*]y,V}Z~`_Ka;:HT5s|z +jrǴ1s>)P j`7=Lj8n:W'  D6=dqb<ч"a_py2V͝|,E׾P7"f2+^܊#6|*EC}=Jw3722G,eƈבi`*Z_k)f]-/73#_–f] w$w>a!Qޥ9!6jiCK( -|w7^ҧ66!MP_c&|r_oCOɒaVBB>(w\F&!TDtʶ>RD$P|(x)A] ^!Hd}4>&zϯO4Mr9U_r@NF`YXsL dZpQ$(N\Hv fj٭#kWqqجqY\5 S܍e[ >>]' 'RPP 2Mͯf{b9#S@N9_ mI(fP  a/:%n"h5 Fr-E+z_=vM&qQ^Eǁ|87)|SC\9Lt򭐩ӻ.Lo~ 1`25V 57 Aݮ%$F];DTOW#t󫃾O:h$26qn":D  1 s zѣ iwzbbRlx|*_TOP:jԛvL9S,#Cs^N#cBݯ*TZU1i1|,GngO Z.ַ}v7!fO~@B;xc[.gG1|;vb  ϦѓGu¾I1ƖGڧ le8h! l`?B諸ײ`F*7\Ua:h(L1K{Ѕz9(W0FlXPWKBWgB\i7e߭룏B';fthI?9s MGtܨ^?> ڋw}5>3 EVupC'h4o1{߁AvcT>抴!%Nxk)SP ?GDXÜ{T*xФx R{^\yJFt=I4Nwe<-1P8sV(ٞՃ^P0X Ҽ'CYvv\gv HuN@}{iBGr(U7OŎH@9:"($Y~(hEuZMcњwfsbX+Usw+|~CfA{bC >ɀ9' cy2U襼#|lrT |T pzV#;l' Fū VO׍kl@mQJdn=n7fw1("9"[7Ԣ1Rc@l{V+OQ"?!3!.DQ#TH*N~2ѕZ_ 46\sd'ْ̌lO_r OU_XYjDHRh:5 ~`{n/fěC4FK)ym6)|| SLSKƄ/8H\ѧf)M d%JȞX.d *7ynB˙ϦZmY&>OT6+1X)* 3oϘr ժc665#0L]mjӱi!KUK?qi8[.dPss'I<1+`j*[ZLBK_l[R۪۽MVnw:MKز Eqx(J .E Jc]#}_% rWI:XH\9nEͅTj'rVͅ7D;Ÿ4D;%Y<4Hjvy?޶XaE|mp} ]]Q{ԉh7ކ"V#&[Hږ̷'߃j砣 Bf.-"ws3fmi2_[uő.>gŘrj55I74p r)kQ E%T2Sk'(&:xMeఝ<C gWdF埸D}(<YBtJO6$`dD_)C[Q| :Ky[xqXB$&B]u!|p_Y,!qӬ^kq(䶜ںxwH πe seg_訡Tُ-\"| \2`r|)T17 Cyֹzfɉ1``|W8lhfm1qGv?MU u Fm^vp$\ɞB~T&8H`y_rouZo8~Z$ kuqReޠ$}ZQh;Z-# #1&d\߮r$uOluP!DxSMb/K6 Fhah{x1>Ԕ!OQ!ǐD2c;_R @2&"뾩rrF0m<꿨xg)5e6 w@@u->f}QPx$L(F6'3eq2^mt/>|wmF]ky%"fԱ!Cp`kzqګf.dVeseq˪008P1fҌwٔe #"jmv͢-6#*ETBStw^.1?pxQ!<;tsy4%7@s2R9Ym},Γ joWe8^o{ {b#Wd2peٌՆ<-̕x(8+®l,:(HS$'q5z 'Y(ɩރ;l.L,+J ;ي=h$a)P2"V[~ 6g,obASo3Na[C:#mPD[<vCpE"ۇ?pΩ ug5{knp0^B![PANVCW+4}o}ݓEj{CPt]9s)x.ng`~%/0EX Q@-݃Qڶ7M)z\쁷^LP9m" R;u RK.9uvmA[Rn,({qq`% N.a&E VSC&-܌HD(tÂNiT ˣq-XݟLDsB(}aϮTf)5ޝ9 :HoA -6AӢzi&@|{ M6ϏS7+Wm{$ZT詥> EƙCp0Jpv6>.HPɼR˸/9:3aIuIO=#O-1ŸmUisDPd(llHym'J <`dmS] & V;M*t+ c|lWX?W@LXOWK.3N+jTbm! pVn*VrK˩ZՓ~lq!iP4?`x?QC35#:fmL#LbZDcn9ɡg2i{ I]Y˒9vϒDZRTH8}j+iL_Qw!^cx/DMǪA]g~XEb)Q.r枳ks7OXR@"x &f='.iUiJ P`+ BBttpyw| }&u@<~aA C"T)sݨ@k|d[8F3i F uBa7^Թ%a,sA 5J_ ctR*8p6β))CPPH(%)q^2KSv&{TGή .Hka%~q~> B]䐒l  r:Ȉ-,RL.nZgI?Iu@ :+"e$w*Er@@PEldz%o*hAf;I[A}mQn`ԥ^+RCX\Dķ5r[^. (M6F tX uDﮞ}ZhM\*It(4`0L0#x3سWr1(G4: Cj:pDoc{ NBCGQ{[ BY]hR(w;Q!$ W A\Uw<%S%[-0Nk|5<nG@]F9[Lg[5j6ƣ76NJY ;]*:+ry oD¿0R_)Əb&+wEcMq9SۙsQ.{taLH$Ad4ak;r8P YTg>e%HPyx)^\p {־. d#+WȳҸo%?/pCQMk'+K>|jYZ'}]t=f P@d&#V ʻt]}t89Yɦ2Z]ɢl"CH>̈u}jiPJ\BVh2d:P̖W"k}Gdk8Xp+hc 14t1ƭeȠ v!.CF.F汗d9#ɽ2?)lsϝ/Uk@pRuʑJ{Gg_ۧuRZ-e _''O>F 0% Nd.کbY6M1 bPj)fzBo}qZ* ٻ[ &Tά["{MRpjdFZ*p*W\nr$Q v džUv6^0ݡvהsT6iƟO*~ON{<7&ȳ]QCH֤>sqf"r p)lf.P N' 8E:"LXfS^`*eY_#kZyb`Q#Q7=崐%b8ij~=9(UŎ0æSnKl./ýpq[{@ TDŽKq:ٷL/+\ӞUACxe$֦GH3_KجJ?6yՇ=Ou9W̩+,'s4Q S4R dl7oltnD%sO,d3rf'E!iF.ʞ[n{Ve'yCOr_I:~" <̲daa"k=x2St71\O]MnOV+C ;*21^,85Nq~-vQtF5XgyI q@dk2+>5 /YwdW$HΉ<ErQoq7 9gp#BCm$!a%9C_?[P9dP-r P~JE\+9P/dP{q" +mBiB [g0zeOV:7м =M֟l+.Ƿ/n7SN:9DRZ|ZSy PX:&s&pϯwА q5OP=c-Ϥ:N'{##uK8ׯ77 6Xd F_q oŌ"FM*7xVR~'5a-2;ZWZre>J^%h ,,9?aydM\D i,(*x[ rEUoyWT@,dșiv:)As$\זxrN^\sI*;<270:@*< # @Mh̦E.5`1ʤ9Ϙf{+ұxUS\Zi4tFvpV\O+K?2NpЙZ,o)c ,HϫNb)qsfBUkiNUX۽?ud:Eu\6֤ ~ᬗl[ =Ǎϴ%!1yjOˠ(I9,taE$%MM3yz^Rm@*!A$2Qͦ 7ҁ},N%^{Kz_,skɋ~V@ew>=6b;m-S4 Lhd});V |"PAInu$Ҳp\ɡkoa\ u{3\C`bӼYKraz|p&k(Ɗ;۴G$jOp6ٛ gw;"4"{dqkN3ژܲt ,=ܙeu}L> )m%Dp@Q/ǎG ,gc B*qO8w~єE;!G7ߵ#f:wL>206uϳ2 .YiS1/V xȶ%7ρoWzJ=o=YZضHuHv9"~bƑaXvfke^(E2I(F:T+}p|1l4տFTP)<_1JYP|B6qSȠk@ _;ɯ : +nĢ9Y+`DmE~KRIqb})-\{cAI= $QO>/p+qln؇NX@-a4OhZ<Qۉ"jO_# ##q'Y5əoV|ŘtekaE!Fl@@-yjF@_ H^D&u5BK"ZϏ˞隅-B{lR}fO`)'`2uA}L/GJK< c\HN6z^sO2.\6_3\s )@]YrS(е"{Ÿdb*:Ev^7,wqԢLJ Fŋ&0:"΍eAԳdӜ`q##)gN{p:BɇvHafƁdƏ}d`TZg=U +4DpM7eE #$6~khfA!yaB}Ms13>: .O߉[+j$̫.32=>j%5ES; L<ѥcNM;lpK#97Pm8J9t'?IWTQnxL Ҫ [f4&E{Z&U /gC{{i`ϓ1s'ظH38V샸nҼ*ۤQ2DY\hMMq+%\^QM2&l"wx%qb`bޚ25x&9i`KEN=6T~ ,/ 4EQϛlz>#(Mvʏl Q^GJs;K]xeX|rx=fk] Cy6t7:nC3?cΰ(g\" G=Xtv-H 7,kԈh Q,X= dh~nZFCGu}P[[Ɉõ+}h}OJH#fLz M%5*QcK^fAt+WNK qi f(  Kt,HiikD:׎{?ر?izſ!Eiy+.,~^"-P4)}(\s9C0SX FWplmR֍|'"dc:̏® >gIx9@D@lv's+NHǨc/D,&_D:=JtĤ#Xhki\'n;+vΓ=^Z5 P6Omq$̕{;zQ;PT\=ʆ/I=崼=1,j<ߍl|{pE,=յPr܁G0Â@ϻ,M-%ul龁 n<Ǩ O̾(0,CQO??zojY9QUL꡿}A3"S/-qZڀqUUI4/LB6iŨ:qZVqƉE쏄b+Ӹ> EAb\W=Zyh@E*:%Z(Mڍy2c&7kͅ ?Wa "|ҥ@$fג4WVND(c8fl |< $$l,< 1ʏ͟s2©1 %2n #:nU[R뒝ƲG K7ӄu qr59{ƍ6xN("IKw5̿5!VtDG hBȺd= **%ᗕ7L4Y@$f! ҺƧ]wTLg:q25)WjHDӅ8ξ.lfUe10EZ&M2Tlyg % '?@k_Q;` .#}% ps$J6fGӔ(ۄJYڠ:칇PZ_o vS͙>Krl+UiͣtJiXPJ%/#Q?oS^-[e yiGTI \IS2I6jTO:r9Ю2Uë߿!՞FMHxhGipr+CxMO,6I @;zurJhߩAYŦCp)NX26ߑ:+Pkԧ# έQ'krȘf$`%UiPhG*3bbJcgX%+I,c͎ FYG)CΌSPIo_5?| 1s*$_A:tywbpq`wFڼ2MO2d_¤[*㏟ID;e Ez>8'm-RxR~wsiPq+v:%jL xb5P6lUgo՚[}`J%:4,TE{P-Nˌ \YP]ّdA*e*)ڔ13,88hvKUR$YwkɌ}\5*䒑%0dhJ'-Ϝzjg,13 P7QZ+c ʶ_{95>TJՂ6!$\R ,]m).zRHHg:naʋHovm=X&IM~>65A~7ˑLx)Ѥ%$OPLsأי3OfTx/rͶFh'{(Qv4d:.$%FnDJr?pWUJJu,eu@ߢ)}jž bh.W(w3B_ ̳=+J;ιW5jwRh~V(] HJTbuL]F{dEJX 2P-QC؋+[m;=hk=6ުGz:6iőǐ 2i>p s,]PkN\{ͳ/V^G읦 <>wڞ*;$_j].8 '[}#;XIR>y>cxuׯO?ZIeT< B/U4)MLRj?Ӭ.Qj^WTbP]#->Zw}IGRiS .!.C!i\>Pg+f ,2<*ӯoW|`&SRgPK 䌁C**aN}\ !-U'Z$OZ6I8aXG5rI.vU;Lhz.UpQY)0~[fxԍPItoEgd-&C>1>zi⺯\AѮVjBtݱf?+ u+C;{zfF&|>ť+R m\B{KW?SV,{ a]}:"YuuLk⟞֏jlN;G7ִ'ct{L9ak. M4z.j>)APPo{W}Y]:1SZfzMj`5f)S# <tYEl˜ՋH,L -Fq) ??SCvm$mN(.>Ly7$E#!AeQ7wPf=zUx0>q(z"z+6* gb]•#NSv.4NͧBzWԩy?%--C.fSLֳzPQ5WE':OM'v/|\ɓW|iee8B,O}r'CƄ DE'!xlPN'fXM{1w@8G9kԜԟ@ *lRbRr"ʼH( QL(t[-6.쯰񮫾ݫ:2c>۳ڼ9& s6$"(9i9RjG$6T,\2#?V8ȱB L;BKhCS.m>02\ykîOA`3sLh*|}OիU(5kkzJ>(9]1QC7z@gT2#ԯ`_H7sܼ~9v c"S4w!SI )`S=o>1qF00 L/s?`&Yqc+=QSa< !h&.X Rƣ;xYo;B?Sݥ>ǍɠeKoKyڈ*q#*M[{QfSYd?" X>^ۢɏ_bd-5G!=|6?뵩b3bQiA.ȼCN5UFK٘Gz8-% C#w5v y!l:Γp"uM%[FaS0 (s(6tZ\b!tWwq<-1'΀nH/@$EnZ_EzPd(ђ&eT:>!07W s^ G@>o;f H`)b Cq&0'MW{Mhjm_Bd<g=|%gTnoΪ{L1?,ȾX2k@fRilTECJ(+XFUYKk0l7φlmאlV|+j\!ay 5u_ITkLn I̖ /t;r0IDZ_uc|Tgw?1 9^A|.r&Eg(2-tJi@c2}t7V`>h@rzK~\; A;m(p|*qy=+؝I)2U@pM(aa(wv,gGAAb-+%Y׫I8Z }xZұ5 nGErK_o~=CyHm,(H RDq_ M11|ܲ;sY6ҏc!tUi#hJXB˭IrY 잍P rᅻ'[ڹNkۓ;pJoҞLfEP]~@ִCTS} s,Pw 'u),hpl_? [M/'] Wf*ӵp{K$i1X/y8HaJP&Q̢Ϋ<`fX+ʵ4NLW rx$`# b87Sfve0 ^X2y<\nҫrIޤ& oTJvoWɇm*&cDti,KA{U ]ZDрT' f#!x#k3Z h7U,l_$ L|ŗaaZ~$_75~{\F۸WU "uO $Bn⾛#^s0IRg}6x]+-Y .U].Gps;??fenm..[߼g| 42v6sni`Џ81*ZǴl|gPCމ\eL11gm qG[| May? ^&K|Z\/`౤8] t>ʷt7 9Bڮ|c7hgGH&C¶& Jw^c= m+({1BeK曮Z'-,dXLJl,0I9:mV߾V YhDm%O"J1ћ_beabD&+k<d\=y($ Aʭ{BѨ};l|" ԯAgvn?*^Gɘ*]Rg-C|ѩ&@ɏ,)_D :ͅ L\o)p]-,QicC6=5z0# R_u[ČwjV(OOsj^ð;rfQLjӦ2*\>+/ڐ;/nTaxKR@Ez&8kn,7ղ:o`t׉! - H:<շ+ 8ǎ:=$ ( ANV#L]y&젏׳ Kp)464-֬?'LQ=RFIg_f*$GҺ`h@_kC1"co\M:GVaG+ [lTkU_ZPtՈ6󾘍b\K"9&HJ$' X?M-GJ+*\u,_hU~~'Cä[~]? T:$EIte}1s5S`Z<,dzUO ,puDFl9 rRd%F&S`P|&W@iY{^XΗarIP{}J2)$C7~qzѭ. eJ1~ =Go)C =ms#G5LFQ :NO0',U0 u[w:rΟ inC-fa7w0> \_W55&3}jfX33q <)@j-;I u2f:g\/$N[:l$ '}ʮa:Pqhy$쭫u{5Cj6i[\q1Ыn*y$!;%6@m{>)LPSVBUԙN^1葙$PMOd<,DPb&/.U^&/' MmC6- "UP=^rDW ߳T:]bOkō%Ohf NB2HXZ6VΑ^kCCX&Ax_ֺ݋7ϸYAT'F[]nˇHe+Xn3^ٴ@+ujQ8Ca JfCbK/g`|C~c:[ rSRKUe`(<5oЏ:\ R`vTK\ ut]sFy|Xa  _PU N grfQuKy8Ø5YEJKq ,vt pk?uQ%IyAAon?6R鏔`Eݜ/PV4 GէUd uɂhD}jV.:CB? 6Rtf+=&,eao|j1YPJ%&ODM<BB杧Zdզ-QT@8!d%6AyD"B4o;4`@è;#ÜZf.m=8~WE.% L1i$1,)|sXfsShm dڛj>^#Rh,lY}^r7VοL]I#VUm}Z Sa&1< }|^*MNpG D⏋pKn)I fU7HW #ϖo!xEbtE龪5(T@'kyI!:jJHC ;JJ7Z \Q/ LkLB6VVa:nS"jxJ caͺP@ IL䏆;$.zw ax:NWO2[GPXPnP od!K_$7t`&SXRUcFTào!zId0WCg;8VFN{:As';m~UQ:_Z[: MJU QDzsw@.8t ׄӤDKJt#\ DBB&@|dK.mZ$CIKeR_хg5n_d*URo'-ؗz( c~α 4,]YH$}|1 1n<_A2bʡBB)ƫLRɡ=ť4T τ+Vɉk=n# tBj3jqV9&{ Q<;~^z_ (}Ci6g̥5yL:np̕]6/F  YDZ` 3/ /cD[ )ͷ#>rd rڪJ@[x)lBKxb^OĿ[G  FG0 莇iynBK&N4Z/b8B_REdH@%$bkBs :`k 2vļ%޲^7 ¦v_XOZ qzI ۃs)$P@CبJrPYDhkT]2k܈65ԁ>qFiD1dw@VʇŪoA &54H{ m6 i3hѹL([pSHQh :fJ(bo*!^5#avrhai`yBii0&rTiR?(ž+ K\D-ݾ*2OX3غ̗ӄNe4{2]R5+Ac?}xQZ~iIVO &U*(Z լRJɂᶔ?:+'E"~ֆ?~T<=ҥYN1} pBFCw ДyR8nx4A S?&35W˕Ngv@ţ.[E[^#%>VyzB8{R0:`JaҿReFm &Q1Kx,č]PyB]d5lz~WJ_&k W=w` d}Ӳ<.~),#PˮC 2?)`tމSʻ<$G%ևkuVv ۹\ 2 ]zOg>y#(I%`p59ZxQXS;y){S? ,n (ڂR8˻wN'.=d sU z'!pN8czҳ:uPhަKW^~' .Y5,q(6 #IulTksH̾Ary'fٖA:hz/b0tF >-@z+V:mW?"WYaFcE<GT15HذcuTQqaGuUSm|Қ>8V Lhr=/P-&l)RPKr*]m $Tu ȯ3la"xcr^v ƈ<F^Un/qRz+p/3?{DMiJ,3 v]۱y▴ӽsְ$?k`U1ip0y2YJdT^ ~I6?b?T?3m`Ss@gf ڜ3pd𧦉3m slqȏ;jOh9/^ ڮ6bI F k'X3W|;OXqmzaρa*Z:YM=G%%0I̱OeSCyLjqf.5WP{v{„LD6(_]IgNLR` %_ γM'#-.Tf߂1Q9ѢB%]{'Rd87Do Di" /,'(D3ꍯn_t63,Lv9'HM"LjR ԫ$Ss8̭)sѣ>!2"zTdv'+xusĤbt590!UsbՃVJ=H҂((1ɲ3Aa(IS.pAzD=[37B7Ƙ`LJ)l:*'DC A|lrt"QSRr;9"T?XsS ?+Mco8n| (E?I[H ‚żjHdþ/h*'K^diuR?}R`ڬ۟C!w@Ѷ_7scRaݯ&,Ŝ 5ƞPrH66t y6\FshZbv=0__a%NY]Oݥ !ø\|w`?aڡ_\[kc+߼.EVe u&@>ctDrhs\fwa~dž(ۮ.:O KsRvR̓U4(Ή/Bxg;㻚 bOZ؝\ݨ /bUv35-[wﱪΟW5 .ۯã+$(ګPEZ\|g_c/A3rAgͫ㤚SF_s_(, =#>ve!\s/ R[KZXũ}FʅdδN=^j}V%5;&N_ks,@m tഐ{߂C삡dR>- |>2><5:`}I;\u C?dH/'oml~pi!O($r-k @mav=^Cc2(9%7K%lxǜQЧ^2j2$R2"0.MtU I v΅ *>Y'r2UdmC9kC^lIJEϨK|' [XfDL>x<wT1{콱Ըp/_ 羚gi !YM z"p#;EOꝠɳ9+='~N9YeՑvىsvY.u7a`/fkw sxP#*NP{p_2&(C&o~2 Mt?*d!ю)i|*CbitS$2aLS>Yyֿ?r0 GI-% Hb/4[lW;5(" * ˟{B JdB15NQ0פCǸʍ۟p#em!W5F[`m|-} 9aw-aIO?SsDX$ZCcL_nz'ޕ'Nn^J`=ժr:4`bV\>iHץn sTqV3q.-IZ}JU≷)^mĈ.$ F )P2,VnWYwz&u-Y=5'D6H)]W?#%h(24_V \jP񸲷L(v"~dRڴDB:&3Y!wjKDo_w}j¶_rN0T[<.b[ v8siWC$gl5>]C}7A|je= IVVՎ_ +Jbڳm6SZ4 z[`XUӽ+$lD3Lldb(?܏|?$]AS/Vַr/f{Mw@^qB ۠" Q-ET܍˂&>&S` ߐȸخl&ru[FKHCzj޳θL;Ӹ>@. K/l'>Km =$^;o,oC!ŅS-=r<* j.qhqu|G%D-%N^f"W?LeF0\+/CRŶO+>s{tC*: LO)ģ `hQ BqN^/0x |9^g PWPmkwНEdWqE-cxPNSeh⚀'rD&R쏣-+^=U /v.F"p@$7C{? O Ev] g9tCX`h|j|a9> u|@8fZ*DAqym60:x@2Dt&C6pVtshdao9jwoo,ZT>{)-q%.@K،J?1p Ugv-w}la_,DRû.,Lvlp; k .E}=ci r8 N>iXLSj,ٙT(=k|TB">VH1gNg_廩Ʈ4Ţ662D~CXVib#4#ё^"vh"S<׼j~1gP `Zz=_.ҌO( 95PN_tG}qVmk^{LC>kPebm9xo{hǎE}WN=P}x~OɆ:(ҥ?US`ja djҳkϙ9ڑ{ "9z[xXԜbz1qtѡ0[δǜ=5ywy6p֔ٳɵ1~vvD tgPc2s:VZ{a:W 5*,F w\xݓZ$E[Ls%AHKVn=,Ey G!jZmkB_J˄Κ].;ezI4%RY䫃 3!MH\̤juB}O ӻJ>;7#Ve uY0Q %M]Ab1r_m>`;eAm+O|nQW;kY]X\B;[E-< ܛ]F䧈v[/WQPW-cl"86 {/\M^_LS@s2[~kiw5c %Ec"n}PDqS<823ϟ?j/blկ!|7-Gc8e}] 5{eg&7%>TNVoI ǒ#+pRg;ھU+/4 u^5zj|$d&/{O˔yzL@viDg~'o%1h" _4@ܞ0jZN BeFNc{~oUE;Eጰ^I/`- kWGnZ@3;?\Ɓ3(W'&sN/z<6rg2W,FG$ ٚTRYѿ}U H%4R_IF+_teN{iJ7sA58r{ګسhy?5I/^g=nݺ)^YT',:/_q}Du֛Tvo QO@@9}Ҿ1W,jB6kɹC =BX~NTWd^eY T!=1 liW01DXhVŇÑ6'KɕHI] jTOBDUV?p^.ouWao noT6DM5F $CQDM'y3s[W|deK d< {#_Kô9&'Wx:zU75Ptˢ.}o6){K)$ն۝2V5pHe`\ ZTy] *,ap+M[}>罡Ē0=5YoR*~TZFĜ26gq2sSJ\DIpNk[9竉\ث] {@zM!1 LAֺݷ&n On=Z~jAͷGIAGGv0~o(W'޴AР:T1FހSNb Do^PP}\Aec߬gmέKq"qZ!lkk]C.zy>f: -j>xxFYwu4 vZbȤc rEe8Tne@BbRN)ʶU!2|[=^!nLqCOr;XecZK͓9#k3,72a+(%Fj'zªV(tAm;fd~Y}!,غ-CY*}Xu%V5PLSU\EIp$`C kۗ&p|QybKfQ<?!Fllc>I,c#.:r󆣄RrPѩu䪁ktC*Ԇ_n֙5yRf:lw|?SqYT%g.1:>  RIn"nJ盔IeT[f`a 5Iʸ6Bbu9*ـ1N@9,? A M7!NWna@7N! ?O)b 7hܖSuӻ[+,]*&ŴW@v눘ӚLK7>hÐ&3Qx#9M0B5AMvXطoi_ lG3i][F#mferj>7 xG/DPj->K`8h_Qc+UpɷތnXy */ L |Qȣ8"ɳ)޼":a PMVv.R>Qi"1hxdB3.4qaIT7KqΕIv/z;?^5c̛1 d~ & 5%C.K 3qB0o=`6#xUEkH{QvHma:o?hnޒA9풺.pXfUwbA@빑j3\K;ǵ+5z}yl3aU)9/d֡(/_3c%\2m#EͅZ 0Ӟ0eIOpNoEhu\Uk}y>B:fMtխfJv2BGGxZScN+YE8L-K -L Rn(YFr}ޟ_JFƤW:]q2bD)< V+^-Ite_ɢ琢qi ґ<2*8D%G\"8pigb> 7Q}\ `x 67rښ9"?e=x2IЕ۾Wyʛokq XfVj|I%P cZT_6f R q^Jݾgس:|14J1 R3dȮ }DMf"[C9Nx) l! y' NFƉce|^6n<-PzA\J6[FnM&Da'"ËV"Lkvf.CI툠E1!DHvCnEPWb%?,$VӨa!Imv?7e>%!lǚqlg,%ǖ! W9- :x6 o} fp=wdB#ћ# <|.59H1Os-C 0T;ZW{m;ν#3%_f k5T%k Z̔](A`y$WDգh]<2FO<`mt6:0͔\zQ'2cvIF"nˆm%2Z/#DRk7EIi0 wij%Gk%x["5֢$Oxr.'4wl_sϧ!̀ cww ;: R0&mv1aV4V@E=}aJlJv渤UR7E}]U Bsn0>G!2*ܟ PFCOyh(ȊEw&k$ER2ZdWC 95&q% "}hXB&GѬl~KCLM_e *2m;@ )k:}h^:hϱ25UjеryI푠PB\'ytcM=~LrDl ܐ YP $QG>wCZK$D/Dou@zA`>D`CV(i؊=ִ)$@XdM~50+6a,NPC%sqsjXH7V, 3 к !"Hpx [0;fQˠKmT5Ao,mX? D)H~Iq'WDꌝ `ק$Q 5F?HP)zbtz9W'SSDT҄[-)rP.h7G7,x0 \A{QFTvYjYߴ> @cA69!B>an-WS xC _]w~iLJ #W`Y3l |XD  Wn&-[.&0U<>*jX,n5#\Lz[u#rwg.*zKw U*t $CIJW7|<ڽ$LH6X;+9@ɢ s(:=Gs>~ƍGɁ̣Je)^ј0̶l\ ԟy5qfꪮd|H靉`v3VP7=j <i 4H?A=َo.w[EFlVLeѸs.1\[ce*D"<-M۠J0!۔e 1=÷=ԩjp\'2f8cϏϰ1:1 2>lTF,_0/skR[!! CIKSڵǰ$7vfAHBYs/|)1Je (op} hևX¶}I+mꠃk x&[1Ͼ* "ؿ<6ÿR-döAX3܎IH({^7oxu3E7AR2G'W56 l\b[,J#|cᕺ.hAFN*mM,+;2Z2u`F2@M-@νM+O=H)tuw@ab\O4rHWoMVf NFix##G+SٵQ,R0/,LPkePD(?*k9ў) VQXSRjS7M~7PE`L v!ZHLաT7 ,JUL*!FM*@giS?D;Sn hO?2]}=ȶ6 ⰛCX`+)4`)Mdmm -.RjjYfK@y TheP !7ƮT/K-ͽ)gfan(QtמߕX1PM򑘼=tbY$F#op#GåE%(Sf LǤKn+͋rOs0Xyΰ)EY;rNjߘjGMֺZqh3AAw?{EkM˺8m۽p0Zǣ tubJ7cƳ5x$U꼕pm͉Fߐcj͙û4&!& 9hV) ܴlpݽɅE~-q8w㢼vcr SJPrֺf2@ع?(Wvq ^箢X,=ww"Jׯn!CiGZCEn+7QwV؇d^'ƈcR)Jo(QwIrγYXl@|{ڑUEx{ ,+z~h7SZj`@-/ I(>|:b͛BA$%hoGgt/3;Yʚ~++ᯙ fz"|H{cC1 nĚ]a[Gy^3Ӥ\F^6qEF {?氖3͘hiQ8Rzh An KMc W8]es6K\DwY떿n&F|y^P i5mᤰ8(_@pJ>mqCUw]+m 5zCB8tk'?~uUdͩmp3g6YLnI#'Er HÊ hR`i94!g+?+ qGPuy4b("s,jN3˅@6A0#NB z_Mx8X68=̙)Bղ@ }g۴L<5G`2I0:h@t,hF/߭9@7\^)_Z9"#5lxjH(8 HΪ\Yk] TZnxshL?{eצ, nbYoA(VZPgBB;cg4 j?¼8P, y(-\47Q7 2in]F HqP%R=`m90&KXD,t'.^VwHYÊp2Cl8c)4E7 ),ZruܾZM=dDXH|b@spO4tA5+gp_[!+97ZO[\2]DBQ+%+ ]x'ƥՁ i"q^[(Ir*VelJ4IĸMkdũzgi.H)䅹0L({ARv9jZ|GNВ#KrHW㦅z0^>zzNL|ofVsno=̀ qHS"sVߟqSrqU[6sk̈%Cb6!øNP4Eh\^!d0wݵ S[1hҨ>4JXʹ* w}>)kD*̛-VC8uOFmI2ܸ2 d:|Δ L)JmU0l$'boN>QINE$1|@ U].( lkP``YOX5'R0zs7,>mu;[֛Y<$ %⒗#y67< h%M q0 Q?2bFJȖջZkU^tҨc{fL)sucO@AʺNADZ4Y s@Le[kiy ]lc7쬅m_O +nH|bl/R-P-A|+x5hv=D@AS%H0m=N5> $q+N#g- )q="",FC3HǕUoI"by9^J]H5KRW[]Ëю׾6@'͎,>}dV^l^ʅJUP*! (g*ô#:^ZO-'S_&AWã[w[qS ~Pv'*:Xy F9hyaKb4N:' r NMBv:jF gwIma9v;aI 2.=p9EMT7" bTү,K-MՖ>> -TlR , v 3J!,k5fpS\`sβfq[M>lWL HߨfE1:Hi tB[" X~VBW2;z|ٌ6=jVxyD@i)mN=߷ @_$ V+ U\P;vg/ c*Q!e;~ip}i Hb|e71yT^}GKa:wIAhR5ZXQJxT$ނ8_}.O|PW(z`:c*Sq|ռo}o %Q@̏Y6T3e¶іzEZ R0QI%UtgA`J;/JB,v9M 65\m$-@Gqdl<4 Є%rd)LfiXp7G}U*Ee|XNS-B Kzw]ܫ (oob-iK@i5[bUTQ@Dfy-hG2U$wwCy{Cx)8Xf ;RiÝ#n{hl6%2s&5z#|2>"tP5L$]oG4Koxz DWLi783E}|PnW<Țl |E,5Mp_X<DG7xmbߚ&d"Oɥ/"Q2C8~fhb*u;)CQ lP@RXSFt|M:U<$\PʤL VŠd1 nIi d]h3RN6r>a8z)5Nm(]XA8 拢HWd[˸DZf;]9QX,؉Qkd-V]=s$M`S&ku vN3hf )6Q!_*Luil|z z 98]\YD!on{?$e6ҶyJ{/ԁ80ScѤ)gE쓇H$5~XEMWa,rV.eNm̩}52xta /4="i<"SfVj7"^NJ^T3q%#+$qDRq jMлª-BT baLe|p*{>NG_\pxIKg܁` ĸ$$&ِ#CC~`\MzWD@Gޏz@*h`A9y@C cfAg 1|Tv n;qz'OH* cVj~ ҟeMqC]#%<@i6;q셥{ Krʈfe](y.RGmj}(`30 oiԊVd/!T|CvC|mabfHzg^"C+>ݻf}#,ԿK ddd3N0'Ny=cuɖ!-r~7Wk>,@^m r洞51D&2>բTh.2w9RY/ߎhI\M@D}sj?&;F"h&܌c2M{)}(5s6S`;V lbbrCs"qOBoSbY|=K(\+XJm%`+<1[`MD_v#[mMwp=kKmAJyu4_LCzyjm'`[͠ٴ]["HwtcH%h4[g nQst9g1Hxr28h($¯9O#}IH߆ܜ7E>PY]Al(dg1cUẼҧW67dSߩ :mU5@vjyƻ(Uw$r)e/6 Mč-M)m_@lUh= \k,rgD Nt򞮶٤HP @<S O,b!)l==lZ p)t~C,5N:}Y\%NƝ DEuN,K[mvͲ ʦϩTA/$ÀVJkq<ڧ6uA`% Iu!hb'3* f'pETWnH#0CN̔.BTek.F?}*'eȓxkZGmW%ǣ|vշ7`(=R{0n[v8s׋Jܫ9y1fŒi/ޙ2QTj$$<9 ]{-9UMe2gNh `rk+HDl /Ԁ~OgZ֕aܫj"T| Gsfvl '2#TMOYR:̄E(m9X.nϷBGi[{ZA]~()hGLfb ]Uo&$Į'PS"T _jhxQMtZj'a2944Wȣ{v@kK35QieL_S0T @k~]@6oUUI:gl(ߐ0@ "u 5a2x/5vAR+`Z '31۫'0$TlY9\k.4)#$4b 5c±:4ann'(#Ԍr#;G#-,OFT謎Y7i*EBU{]ōhǁ :i'@ݢ\Ye#V)#{Iy edhΏzKx`-x#d i{͉O 360ZD=dB\QHoR^lٚ{JsP/ZdD,g]$TiM@JCG uHtXARս&\HëjsHX]9οl u{ܖooE]6ژ?\:3y^a*gd0x $ `RR=/#bjt#Ez+('\[ <|+`OR4 Hskcbh]\[<vKR|ё?zxr,~Xţ4ב)H(N%4w~*}Y.Ov~kpY=MsdP O)ŝEWQm1Xՠ]v;ǟL9Í) B;nWc<=={$K_ rp4O+ߩI:n<#L|d+֮[k $Tj[id=E*nw5kK޳ z7EI кЙj +wC bB^򠧺cCЍ}tV/A}S0w¤()N=E%qR^^-`'sn:Z'O"Ӫ|pr80"sR{`؎._M5Au$](d՘Es>* WsAj۾Gפb!g(E$8;+–E`v|eΧ[q\=3ы@"MI0qǀ aCCPRsB ^wWǭJJX7$ (chaH߰ 'h@Tm/ް&6C^֪$Mtiہ'k@'督\~#e}R=_+5I뚇N9k|eE/~<ΩP> JYQ8L @ܓ+V]xyx16~*3.o*AWi}W lzϔ?)38n AaFzYIˑ/:Fl5 䧈 l W$cݓ' T(< /ZZ#`PtqD#ucǿ"@zYfeRܽ^HO YПe#)xT}.4"q9]܃/>d+3~]|v.@9*4~=ɬi ^FZ:?;CcfNKo:svt+bsœar zݤ8vtuim+b-[m^Gb ߦXI+SoڐCM\ffA̸^gqLFgNk4caVkPZ2ĞFٶjޏ1KjX!WgDV,{ENwV݋O)'re:$f lv/ɖɗ ;H%/#od3J<f OIpܬlSt.PUgmmq&q׼`E#k6eP A']2ge9^c5e#uaQo>\M{k_bPr7r/xxoWn>'*k"P^<@qSers㟮o) k?:bMe%x^[8+?" 5˓xR*`+89ZN—1YV5_^.ug\=u3:ojNhtƯ$@ ot2w`䧵=i-|Azʪ "eyLS11W3U¼ 3?'3mH8+UDL~ʸH}AF;*O+&O{}d= cq JH!>ӲdX^E2˟X dHrS悱(Ҟu+ͷE.q:ck\n&Loƽt4-ݪ#:j꜐H&,vꖦѴQF䡤+"m {4*%ha:Ӽ DYNCIklR5%saD~Z<0٘[;X s,̞$ɸ$MĒs 0`I+U@xNhN\elg%L 'W-,8ӛP0vi[ 엵h 4hPNӝZȘhI,hZw]c/MEbc>$(8JC20u \#?FxkZ?>*pŷz{QUH/IU ox' DzvGe`]R+c'GXݯἬh=lUIӂ:Wr3tJW \҉ 5 Q\ ҦplW|c=t)f\툼?*_Dr5 Tx@C`J-.e`oI̳Acţə1yEvʻ;qBw_!h`_[ v00AN"s xxc>YA/t)g 2JsLn^Til$lSbm'` |~ ]~;*kg.7HBՎVZ@$%L1KJ8E]tMwj&~L=#WO/ %X^vtv9l]e=n!ʵ0lc]iC& nr"R}Ӌ!KZ$^"D?t;7dKK; 8 #$gMv7]uf7"iޙs&Y.rlHGb;QsU_w'6J/KD>ϗO"Y<& *3at 8E+`o_ߪ^ E[F}%91.' g-8;o/:lKz &xIϩQan٢=lwʹ@|^Zv0,P+8C$ݹ*:r:_R4cפJR~yQ!YffalCaݢf|"K[ӡ`|o -Cszo9c٥!Y{OG@Α @E8TKE()]UpsJdpwq S:?8)1$(rK)\&õe`oU KQXPX*`r|JpD/et875`e|OiY0E8G*J`f>' LC}3qZEӎ-x%8^u*X:PhK3;R.#g"-^9"BD  tIqhpunF>{#CۏٕW!=c 1+'$9vc#pu.D0"̻ 6- vQeɒidKZ)ןn _OA OTi'osf 9zihq*ZaZO4H|A&nHؕ/+ D28y~d İA4 V }lРuy0C\'ܩߜh?FfC0u9]ơhwϥ~39QLyGtv} ~;ʷJ{N]mc±; =gZkh2!"hFpaDn$uM8ӛEd~.Ů餼Ha!mq,CToԂ@osjx+,P SGcnyh,dDbϪٺf"DBq?*N6@GC⣷zfTuj2CcJgBـ!|qʹ"1&!tY`hLI˼F܎`q,Qy{^D0]Ƽf7!.ӱ9ҍ뤱j~xmep+8Pk"B.q6_NֽT'yuA" [A/t]l$o;@ 4OϦZJDOZ_Bu(o_M~17ƀQ < (YJ>}txxzM_O2LryX±B4;"~yٿ0.T7u \TL}%vv=sQբ67y?zsh@ܽ?x4U9mwd4G^ /Ᏽ[mtZdh81IN`21/Gc\b`!G ]L(H):z^ Z^Ι6ǗUѼG 搞6DCH?BO)5Dk`N* C#6cD*r-XIyJFZ&]{ڗ􌝅ۭ;@Ho$;> ū'jE%E g^kXn*& TLI͝;/Q| :vt_֬j\\ Xv4\(V&QQ3l7T3P vpbsGC:>3L#- I&'J9V@RQ `N\.6qI&UbZk4Xܵ}5}2μߝܜ5bXve{a<uwd%gT&pTߺ["²{sGޕw|@U  "w؅efC%/:Bb" ѹJ\h`<ʜ}wIz #ZvaA ) "HO^xyڌm$ooc4X'-XOH8 @5Ӛu?5q"ՋI9[O_ N&ӗr6G+҄ O@6FV}Ff\?w7h B7!^e-Fߪ2^:nI=d+ }PB~))syq5̞k-m%ܕ~xЖMՍ[P`bx?U'ƜQ20O֦J'_*"8d*l@ǬT,1Qh@QuuM&ΆgR3]{Li+WLb[hʻLe-g*[a5rQ|T)_3 6ִD-5 7 F6y%+({DpJCSS>q۴(li^+xAH~P" ?^ _EdO0AnbSܚ66l,Q@̿Zf7%M)'zM5|'ppxz+>ӻOIw_~P2yzf<(uB#]KďUx\έ׈An&DL]NFR_F~qO=./^~^cݵL`ǺnT?F˨P՜P@iTo&ٙFCޣ(KPkW ו_ TVئGuZ-!@I>{f$&4Ra(\4"Lu˭.5H0Jii䖚$݊rO6ujnH/X8M@ QL+O3@-\~g+,ۣ@Ma>N۳/>K;L>/TV3:X.@65 TRpSs(4p!bD`ls&Ս>oLS աͯ->5'O._.+'0<&s/->\~T#0c]Ƕ/ , i}Py!2Kov4TOis,eʲMkY]7p7vpo)fn`$Uc1w_XSNw˳4:}&迚S SnYslw G蚯h^g@5DJRM:ܿ4R"+ bq5V&c(k=6Dd2jfA˰ "P ? r%h:jBkmqtޓA3<3=wNåo#eb|&$!eWKم@jc' ) S=MwXJ.,0"7YrkټcZΫ>s_&9 69ߟ nCM /˛[sMv_ʾ ` #9[xfNOL+." rիhsB>o53|xAclɨuxL7cq tvaΣmhSߚQD\uv0űpO~yrl;0}r 'v<ϖ4B*J,Ð92!;mM7n܀&-g4I瑁d0'io~ay9>e Zt%}xo.o4?-Ok(xoRM4&?8V~%>UjFC,IzJf_sn"q"?{8G& %Hnv5?۲}UR.AdD$ߢZw'߽szXYPCXƎ{C(a+Чo9G|afugJ- FcQ4'wݚ/Ls9\*yL8ӻR_|vZׄ9>#߾Y2|@<[QzeS,ܝp?| A怾5&8Td,JSSHHes4m _2025=kh}vfE5-bW>YR0Yzve(>c@˽M$hwpe_ͻ Dq|c7^ gv-LHza]VqpF-Tp|ApԈI $Z:vk}z8|@9(_}ŎɒE(뗷Ɏό?zǻCy.6miLi0;=c[:~E)#v4]~toM5 אب| BGt%#V˫&D&"]BHa;h/Sje Mϔ:"E6sPD1{bд3dG6bn0$hFP 3G=+6A38O%Ml=o9d* igL[Kdn&\u"QOhlzbR\P`U$Tx񁣟,tWoCj+$60iRPb/^]gۮ\4W:5[Vjz8BЃ<X, !e y vJX{owvovuܗQ_-4; /}sK5.}ռ)2߰s~V67^4ix*Sy]oM(+Y`y_gg8 ojExZt+](Kxݩ~M/QvgP{v;VjQ/cE[>{c!"e,P~h-HlEϜb~Ɣ#G󪵥:l^fbM>PN8#fʌ?sbEK⃏<>_v^EM,:@^G_ ,I *2#fр*>dҌA~x+Q(r L|9N$ [g#s ҭ @,! :\JxDn}aHU woe^)˸3)Ayp iKtwݩ]cX2J|ȦIk)˽!6&JJwp L^cP~+1xaQA[$k!G 25мW˞(غ:vvBsQ9isܔ+%=l)MS(ebCNrAح#61)SR|2u*M md C}%Kg,N_)nO7Qхsu2 iXg<7 pnU a[dz{;YB'NZX> \)P.ub@feV=,E'>i=MDzIBSK);؟\/hЮ4;Atք,e:o(9?(PrI]}h4:nE;$JMJƧf x^AK!qtܢA1/L1Z*I>|rN <O^#Mo2TN/թS /"PhC'H &"Jgi@X.}zwvK<ܥ\~zmb/Q':M'{we;s˜}-xto@þwi;j)3-:In/;[|(4ʍ7b&,eE.rrdKuLfDP(~<^FDI5?ì.}1Ոǟ_إu /qQ^ (Fɯ=T>OlCN돾5=D@T!te>wMpފ\VibAhm*tPЛAUWM٦ 8^ZkMj(x}І+*I/ٔ25p/ݟD`C4dO@ /(%Xʲ$0nAϰ†FDn`inKo5~n>DZ?ޞDsuxRspϻ &Gyjr}IJ>4.(H$+挑+ kzsBt-W@xtX->-sM* 8^,Km9Gar^Mî^E/Бh"^ϴ>s3U|WR7> +f\#r|x5OKh/D SAy5u˸uyFQ~w!ٿe9aae&6s݅#OLJpȾ ̓pͮ lCO|Y@p2]v# y%B)0ʝ'tZ{ROlB_ M1c#9!<2(8p8 '(j.)!6-V);Rs;gW3Xt\ jΩꄬD+dp1'a ÅO%`+ۓON^@|O7T|wHnM;T _vD;Y{jGL.Q(TyZI;gF_AwJ#긊e.[Dđ3@nk߬KͮqXjL F0I -Xbo5EYr/a`);Jȕ >Ǚ̢ffc1x4ttD(+~8D =L!(E4vz>x{1E]5qQD^lLZj\4&7_(=3[Eû WM[/ }57fI ̀\t&?A:U*),?q*0d&k?wr˴{Ҍwm~?Pc' 9A⠬jz*\v+R6¨uM `p˴̺g(pkBt<<]g1'ꗄej|}+ i|s =C)y~;ᤣ+0|ar30n侪N*D:" -FNި3VJP3Y8DZ:iO/ VXoAHGI[hWfQa;YvS"sq* Yw''<*G,[_ \Ӄ+~i V00G0, |sl)(\yq4ItV:A nx:{{Eu^d!S.y ,Rv0K\4" E)3XZuF&7 /6KWZpx#>AǦpizvb*K[ßyoPӠgvŊ5;aJ-+n>6]VH#r ꏍwK~2g2͋bdH$ Z:YT&:8$j6V#kߣ#iĭԄȇ F>JHNͨ?S'!p'/1PLO'A;2V㋞9#ܚ:dToS59RgZ쟚yکtsH ,Q;[`p[2 12Wlu^ hxyAg-kU3φ#5ez<7Ntxx_LKVBq xa=!Xwe5!ͻx䟻ȼjW\@5Nhw[?uk\_UZzP@:tK`FF==%UF,)-Wsc급鉍^addDU {"dp8t$(̄>\Zp:iqm,P؜,eܿߣ3mkEVxǡ<0Al-Y咭~ !3gq9Ѩ!a#6ϣP^0^o| ,fn0:uE]]>ׁVq c [z4JW'y_ ;/۽uX?p'2ѐ nZBuӽo,BC R@\Dyftǿۢ'yGFI\N M+ lg>oed3bz 91+3XsV'ՄlR=v/p2>ăۀ:==o2u)&<xrny Bf[s GMIB#p/9|ݪP;v_ z[̀~dفQ:GG q]T+d8V >yj -z5M?lhQ/ˁqI9{G׉EB9Q(ʡ=kLrj8H} m׃.Xj,*6u(0;kXah!tD3LsRmm VAUJ{:ӍϿ_UyxҟO8fWxT] '$5c67dN4nZ7dɚK^a7Ex) PF=v$.XO`o!]&FNoő @gA!+'I%`j%㟳o;2bAL wݻӀL>+N*?w;fȿL3On#ҥB»X?_x9 TLJ`ǒE*bՑpGBH9J , *X슅N!}^C~}LWoJ;o/GdcL^(2x[b(…mtti2rV;^.|Ҭ3b|"b+C뢻IOJPqY9$pܾ2CP@V>թGT<.QӎQ=,!՝;u\'" Hzyh b]-F۸iE)(rl^Վ8k5AB[1H v"X=kM/haɎI36 nn[@@{ 8k]hCfTHVn&Qw_R~cA(V,*vD:cvUc`ܸl4Z#`l?( K`Ѻ7;a2kFK34d°VQqExo|Vx^mG8ɖ_9㢝yw k(52Λ6{󬑱o=M Ԫ Mr; 38=Y +#? nhO#DٛGRo6gvAۥTLdqn!IZ15Pɏ`) m9$"sx@6l4ĶUgWJcrO=p\$ , x,9C2\*gW7:+SwAI=XV_P5г eʾn)`c+kcG3yJY0WS]wH=;z"φCDbsD6ŽHnjG_yړPw$ mD{Ӂʞ|~rI+,%XIuoY!r ~z&5}K YE m5 ,,R/LWo#zuwcF&=C/ >'=YX Ge7ҰC,1;%b2y+ eE`|zn[܌O؟K6VN-w*-ldIXD7l2I8fxy h\skB)N_ ZD%;*Cj<0ītrݛC$ٜ+J/cx,< F;.?7]$q)Sr$G,o3Lɼt@6"`?ST|mN^[%ᘗN~7c $ [E¤f!"Ku` FJ~%.&9:.36Yc΄RPP{;}  #^dC9goxlh/j~ަ S pWL4x'/`ʌnz%rA oܻ+YZvQ>qfԋ$+׬Q M>ٔ3%Kpwœ/~WhL >km4ccfkfd"` z(z0ɓ71QG睓@ v]oJkJ-K7c@o|knsJN~QXhQb:wō9gRnIvFdiE!:޸3P BB̜;kPE[Yr0E4$^!h!^YFC1~fiw'g(WA:RwvWȺP5G`Pgh,Zbkmv)X:]\@E[\X. 2(^pKD *8e6![_~,EzHQc-绎 OD&ք^krH;Y9&<[JÛ ̔v=|iQ#e6i;ld˗{B$,MU.#Y{@&і+ԪP!sh#5 kQdoVk4ImZ% ܝ&C<ZyBiiY{1Mv%=T8;f"ݼkY~;co | gἀg{-dutfz8m | r+F!o ױYe-RPf z)`~p#k \#~ZUI^U2~HR$Cȇ/&KN?TվH|_p,XuuPۖjUR c?jĂ(A @9=f:Nz^ 5*cg+DkFSUޏdw6HAaŜ L[S(n+nhT>)]nO3hY`L.~f#4PM_!UiܒtVIXI\VWrДF CƁs nszu/c(,[I= .gN)Q? k4MA (3ߔW@jNRrUCgIYGT79W7Il谝

sz 17eu5:#f|J}ڳǍ%hNhuI/"ߢߍ0-1D%t4}ߏ?[+E#!nk&0dFzv:TyU9[(˜Qr#|S羶dzo.jhB+--JK43fSk%gЎ {;Py :ŊLoV JXJ>9| HzofsD Kr ; sYNU9(̀k'C\0͠~(ylDWFzCWuO17a۟x[!/6-$K}-մJPq)J~:̵q ow.i%fF9}9(zR40Gvwk?Dv>TX,v&(T{j InEPL$@`B D봩ԙt5c@2S`e5x)Jq9( ?#mAO+%g}Ye&ul۰Gݼc(פ7b= -b# wy1`i2G:ճྑ4ߖ1%CPa^snI7 "[SN2bGE%k(܏JjFqDn0ȎC%my}EB_#o*oϻt.%ƪm;:卦 xR,jl;K4K eɥz=KB#~j2l6t?y:Dr5h֪MeϚF.}Qb&XWC2nRP$s)of]9}Ęl_A3*gḇE9cC 1=$9NoCj j hjA#?:3_(0 ViÌj +dL6m9)-w' 1xg;}It\OW`eav8ayXXN)k4P+iTg6ou}_gK"n1!N?CS ݱmqW[AKٜ9Cߟow+t04zxv>8)X  =-ZO_'5=0foG}5J W!oX_A2eXW{\!zNSV8H'Iͭ@ i3ub6ߚI߹n$$v}#stU 1e 8a&Y#zX"%4}nvi#\͜8 Ai,hmUq–Z|wx:$YVg(\7VR<*\tcvSu#\ i+ZF-GX1x8kVYNj<(5Sd"EOlg./@) V W{ /B2Ai8n-yLrbfoèB,bت܌X9!&>t#Ώ]h{J&4U7kJ*ÛчDS96g y.㭌#\lL;01O2CX(ة|$/鳓vGrHkJn=HxʤQ!./ݓ_H8дeB9$g:u9 J9 v~r8ArsCҜm[-qt@_!Kԛ`}-6W .Hf;8ښ]R4vz/Wl҂%!m<6 Td7-+KMӬ./I0U˨ǔ0lCϒNLkbc~rvڔ/Yś/-a&X&2Q?X{PWc^/թ)>O*REdk݈=À[S^')A7INd:`i+,5 V=mV9}G}Vb3KM,eDi{ߖcV14Awj"hT}e$3*۫%[$i#PU?-6);Jh(X{C{NKH X[?*J_3vqYkj *ZXhe#yZ@(GKc|Jc'bކv&J8rNim^ ͢a:B0`ν֦x&^g%yN'&5$tZ l=]\ !}e<]~8* }B#acUxO6Odvܓyj|۹ .Ćp3i3"%O >}+C]R_3^(6kdEq3=d1I=USFlkr: ^7,r 5ǸK$ٝyѣ,k3DŽd>K vWg. :hgd oNjy.`uV8idk G@#ۺ2kl/DL^7vbӨԖTJ}Ӟna2머*:w,=HE4z8sqnmj p-եՖ fYKϢ?_r 3ix9iOtܜœ5x͡?òΡ:f<>I@D7s,H]ʽ_O|0TW0Vs VzhzJ#"eC~mX~  h{yo|Ŝ9W^A~] n͈L?b haa:z~Y8LYgh!q35ǡ}HHVSpXu]ͳgG;$Qp9"|ƛԪl~ #!U|pO{L{urYv]ɼH#S؈F$`~ljRbrY@WOT)/ͰCQý. 2=<c Q / mIյ;T`(,ϢueIvH2ht( B&ޫo%'gV˾c Be@] E4|@3Rw3(5~Gn,7g\GES6YL JW,gѩӹ u!!x7SXB$7׳X,v@lפ/ o)|SwQ cV;3u 6 f/E O{#}^ٿ|SOfEFH M6 BOqVm2lAAjn(%kj7Nu9LԚoT+^8Ra!q$zpJ D@47\OXa 5ikER9A);+.gZr! rAӫ *U78A\A-ǡ3MA6]wUDMY4D EU݄y:LFur٤/ƽEa 3ֿSXuAH"H=IwU*>4-xYTE5[Sf ?Ѫ0x)Uʾ{;Kx?P]—ɍ@pZ' XF\g=Jϑ}WBn_ѷ^ ,ѓuvG1O JWV/{+\0e.gQ < x*~$(?#|Ui/ -B`E#%68}8 !oUް?R5mݬt l6V mcXojI!R3ng2B9R4b" >WFc=5^;P.q^ g"8OTp"V4jakmE+TSNO:1g:"f5fqӯ%Uk5=,(-X|t(MφD/ъ(0gA^nf>p$H?t2DHJ}eRx IlvdcY.=&P۵s}꟤PrAOڡ\6ILBɝ%R<9j kw&ƔqLO:$tToS @Tj橗p;TmRy#r)kFy =c2 %J /C{\"-!hl]x:`}myQ,nj(lLס%`Vx.z@ r_mYzhBj]Ϩ Vf'[zZ(= S\|"UVfCEbT̮Eu cGF3Bw$F4s6RLUȫ;칲"Lp!zQU5k:l[~s/i_f3BPj2v_SO z #IuLAE=R=j_Y2~ =4tn{қmtfo8Jw$Ē^^KJ}kE2qQ WRCMm'6EnѾ+p)_Wql^O9'NGIi'-J,<9bnMڗ^ ",ˤL\Q㡒P Qx 2oko& Xh P7xtY}kl`}A 3. Ꙝȧ3/fU?ozVLxծ?dB$ے62;}l0`P %L43@;@c2g(5'+Y}sfׇ֮)Y.xU\Ni4!q{-wU.+ZS.d31)*iz֔e K{FP; \mGAw)ȏڥ㆗V0a[a YzW?WW+MG3)c:59J7y ц:f(F^~G1{xFެe,yj9Ө]eJ&` a(NvTOjǷ8X&;S}W]?e!zuQqecͼ@r|EҢJVƶ }xA{[YU,EqӦR`}Z>+S+ ## J(UZoLhp/Z/A.kes{>Ymfe6 YjCwuW{Ӯjo6 |W[ۿH_^oe]`v[ܡ:FW[jqp_{:f0e. o~$ S'zT(=RѴF*=&m!13 bא5֪X? 1`|J.a l)X+[6%=fiVNj 8Emm: N1"u< Tq2O}r;JZα;`1R,JGYbx,)%=/Is64]W5fՁ/Pެ2VpZo&}᚜-ĺٯt3̺w2Pȑk{a Mϩu# ǟ03oYR PR &J8*gG`7FW ~QmW%\Sּj }i{1KbYO7Yhض8V_׌M+6+\JOD |NK2hRS, > ^f&_x9,n.$qlXZfBi+r\3a&vd7KRj`cXY{wKޭ7^/ii/䦪 RnSǢ15(f*g|_ޔa"=Sbx_+I.VlK%cj(,ڒ|i_8(`AE^G;BgKN5:7`K5G$^?c~^<;V?ezXNpRNϝH*"ÑM }dMŇʚQJHٞ)csQVZD/ڸ RPtzkؿpETem9"`!./"Yi2'Y̶JvW+g&<9uoYv`bX! 뺝]Ϗ ʜtp|l G9^Y_Gߵ͝ w}mKN+N T'I-oJ]Th 38*L.4'lKIմmv;W1D)c%VϵN+ij)U#@b.3;|266>Pˍv {8;f$ZQxڈXK$JGu!NLhVO mt6x7$wˍ=!CX_4X" %lR ?sS3f U`s;w О:5΁pAdh[¡z$*ןE@1 QҘ-^+;[jRpEM#m>BeZtѺh1F'hN=ZQ2NN.>3*VZis[f@'+R8?e5YB"D UЈ]eD)̔אuCECX^ Q7 ۇF*3sb"+aFb1rfqx+3TcN2@!:a=iNSK5j)tS.6e5fgyJ1RlxRU+:>jbԈ>N[)WY k}MB^t*=qnJ=܁`"WGXEsT?R|t#@Qy w*X|UV&fZ,qan8lѲ{6J1e0C 僈6Ȼ Wɰm3* f!7 h:cdkIvr h ¹@#0g{Y[. PF zu $ӛq\_B`"{T*HPIC_ ߶ Kn&UKxq,81{tܣ0$bwAxmk[&SvGBpC}}vCq3摭Nd0q;'5C6TH+-T`)C?s*}`B8@'j>*?0v(9[QmddYhi2Kn,2,i#kٙ]5~S J~pDPmpm^WO Tdy&Q9DU(Xn~gXpN# he!@> Cz;RĉXvtq7. L-XNsP 4(ʫ|M|z 702SZt7rOee] 9IUK-&/c!  ︠ 5Ӌ?hVءN²qQ5&?FWݵO\nRnIc *2Z8"~]}h HYKt]!trJZ/GLIUG.?Jx k'f1AW໫zM5`N)e/Z2 9&0܎t(?vbYmHo}cK NTۯZP%T5e$MlAg*;+VM[ Wݍ 9oUC뽋{{+< Jh8)!؝'Md7Gy -@Ó_(^X;Q# Y]:,IHrΠF-tyI>-h]Iܽ }TL^Q(Ѕ޻!Vmz"9Kɫ+\=Xun5줢kX}ߓ.M\΂4ٰ}?cpq9Ш]eb[4 wzݬS,W~dEoaqb;ؿ'LŸ v3@|@yш6"68LTJ1D ϯ?lZ*GH\0` {5ŢюZ͂.ߝ}{Cgk DP (yOf7Xm:/ Yf\t3QRƋA3\6ByR";+m8Ж#C#Nr+G*D|\HDb0~oti3"$3]?B\r`̇'ΆH} qp6k65mYk'[L,b=(*kW6?H7o$OEsJ׭JyMhIhܞnZJ_> M e`%}#"6H̜ZZ/_Z,5_ rFd?` w1{Uh(Bɣ>:+ϗym @*D~%]Z /6sB6kS UF: wh%/FiXw7[c8 IfcS3>eg+p9;F.aRs<=FX  N`9.o X6 -8Zlۣͩj q3{|(7-CF<ر ?5e&HKH8Ⱥ웚6^hi< Zܩ)T`a謕8+\9@g4](\U$]CqwE6:'E?/GCg*tzJ~$̇ĠP7dHaw󄘴F7S&l9">аIr =GtkIQ_Q9iĀUF&h4ⵙbjHvBpv}ūiæN&CT ؼ7C6G*"pe5wLis m. @k~έSd a,U+Y@FWK~/⟫crozjJjϹ(ܮ/389kA*w,cA(9HXX_cp)U}B0w+r5pWMబ$U|V k.WDGoҊz ܴj,9ZWfbWh`ÊrlgN[8}7hy7'lf,(?d1SԃHbw\LCj )Hw+}exܨ?g-u:8J r$xDŰ.'2ϧĞ(-o&QJB'JƗ}&4Y*`AE+'|LD$߲X] '+C˶@4C$Z:CڳcJ`:eRr HN$]hņ.XϪ"-"!h(T2RFN&"L⦬H*j["WQ+y8@ۥS= ]4a.LճؿoU/ηzsS'Gw̫>6~TP;ĥx6q,OcA ϶0_—nkk?VC-Nps,OѧAvv E/vNG>UFJIG#z*g"{asOU"P1:zNŰ.A(l>kz'dl^ܚ O7fXOpȅ!M]xNPXCTs:v{pZagm\H,C2[YיP[V=!r G6ddu<#?άyw, Dײk.ZKtAKoZRMO6ԷgZ^M yeJUH9 MMT% Xm즛~: 6:c_l|58q]--M/,EeJ xH@G3xOZƖ:~ qe]c2X!50>bs֮Lw=u8K95'1Hb)6"Nf5 ɂK׸ǫM-kM,1[&Ըc*p36]3~ul=AL#le 4j^bT3 $FKIuRmGwp\ωx홷P70Zb)sȬb-c/ۭUoOH ;`,{UqEc]0`f̄5[˫bakq WƦ#M=S`ٞO 0K0ߋϟJkNXmkl)PEdS 7Sx['7֞Hd64A ɜe0O)'!ELFhZ(,ubqkM._Ι]qX#uQ!tx-HW@D;fΆy>W/v=ABBѿBGK{Ț\nb5+ -ay<eqmEK :{G!4NC jlp#tbS[ 6g_vu SѶ jJFyB28`_^Pf⣠tS+UTBXeZѽPV $\S  )i#.LE2ht T%#z^Flb|/c@LXJx/I* Jlwe* D7D>"Q3Hf~\1NAWWYX-|f fh\T!?|_:t!2-u13-{OvD)ÀI]<|q DQBn`g)t]ePOq9cs?S6jF$18;;8$ORbmj6gn Vuc )_hK6q soLI99@0@RmAv`+;Ba[q-]E]}W} {Z&'Z`g J "|4azs2*fʏ`sɥPQTdF(GCq޻x1_ !Ogu>_@sB<ߐP4f1هQ0*Y&lz ^I]zZCDIM7n[~*-'<&7v/ Y`WF)~p혉ffJ^&4ΒJ9#%]iQaęNn oC3/NaQ G;2qm Vhށk=R>##tD؆DPӲ}_ -:7BtIc6 {aK LXx\}"LSsp~t-~:Ogsendx-BtQ;W)8i;S8I:Hu{`v0`GCNlJ~v4IV`fBF5]GWtYMy*DARZA-ATDR}UDAZRfU>c:Ie]}Ҹb+wj~8>>HvT8A%%zPڵߟF^.#Ao&E(` 9/Ob3+z/KМXNҮq-%jD>ѡ8Aep8 %oIӜoUAH&tZN6>i0MP8vNLJ]4IfV@ګzZۏs,Xp=O[NXHhW9TI$_M̩F&df5Y;>awzBBXDqrR0&Or)&ۃOc/38 >JʌWK`IECpf'zv9LqF]Nli{#R!Q9?`X$-ࡍ.d]B+:tG .7RO,f9O/Քo؃@%d 5չ$c -$ 5 6Z;uҘ,L RGB0^CMߘ'>!77/|)TW-ƪf iͦ/SlLkBokQ5}IV Shn: =2:mt؆;$ 64~ dݓ9.RoelBХv?n ѿY٩pP]?~<# =~7Fl&+| LRϽ^f8ْڦL!ϛc$u+͌ I^-4Z/70넯I/JM-AaqpUfhN#Re?EW-)(Y \cS{U%Q+z(vP0%A!c2`TnlbD`fڎmmK>Y@Y&wuxڅ?yTi췈ؕT$6;L9 9Wnx䠵;,D.߬oyVLٕ$mOq5Ÿ}>b17<`v^ $3XF0A{`<0:'Vb8dhpU5O^$ƜM" x <| \I qQEDwY^'R1^-1TUT`iUu cV*qq32)T&D[8;tA%VR[T(zVsRo:o{?m(CJ4N+ QJXq`ƬtӌG(2/ManBjؒjy Tp|f*¿Ygȇr_ay6'*˽ Rt+btfzY0{O/3`Q PHϊlP 5-,!\--sAT 9Ӹb&{bm \M^~/;( 卸qhe:'3R$2f⼓ځB8'_#pz68Ys{`=]PqaN|.26{a Xx8s|N'I xO|`Slq&.Nh^kV^pTz$V i8kTn=/۠9Tt Du!QBCzOp: ˧ OX-z9꧞ȧk0RS`+Tx!=x_Ra$<>LѣbkW]&+EP dB'@yqk)eEF袒o/ӌ7AĒcn cftnahm2X@oF1,1_L(H5utPk[jy(RC=b8:[a<5Θuk{#6觱K"zwb "X=̽ tI7F_9 I?X eGrO-ެՎf{R1 Z4՞;7|aӷ%xځ̴ dE>"#;Cs 'D{j:-v%_V0 %% s8Ý7w;u@wX"P7~95cR!ΏM?4V3~t:xw$&Tچ4Va^̤^> !QbYGIˌG:f7Y[hJȫE@"5skQl6v)Y(f`4sھ($xOt9gٻtE3Byr PͲ2UaѤVC&"ͅT4Tʫ<4VP_mR0M(Cn kSP,o5C¤n_ސY5Y*Kg0{+&Ck2¼u+'uU?hSؑ (_BՠJt?e:ߢJ0LESG>FurЙ,"τ7cLP_\Po08^4jPH.ǯM r&9?O̼O׌=^Xu dV6b :n? ڦ&Kw_׮8Q4P{  L~^ۻ@3_)j fFޒ!!1 M (q)Q^ C1}j~V:喇zYNZzU-o퇊$Q*K+.Uq$sۿD0şP\fiַ+%Oè_,B2a|, 24$ OeNW!(7 {fkUVNKZM5MXe8y:nELIS!o ,f"սGRfz[96N4_N9z#תSﭚy9 D/!!.^O{Ѕh@@d &`Ǜl첺zd_֊D`]sb Oщ-̺Mx$[1YWyCpx  +冽00 EM L: lms~UqoA^>{ s3:H@FDZ#A> <Rk]ܧt\B긜CW7pV&& 'l"lxh6г v(qk՟ jCaX%G4Ɵx#xl̟F4Ps'с;F^!zB9l !=`u(.KKI.1A+$uLRropi'F+ LEȒ#MߐG20WWٳ0Ԩvv(Q .\YJcul 1yiBY4s9RJ,rN6 bbۦK(k=026W$*'j>Wk뀃 ĽfjKs|ʘŰQF5y5J\qͫ˯0u-Щ4cpɐr|xYdΫ5 Kx`&~(ډ/{7[+XCޘ8gK$׵%N 4BnPAWdh7d #|1BG QHP\hP,qxc V Uah6gd!QS[xqõ^M<,Ԭi+$P$D&M+rRz|Vj SBaF!9z'$!U#342~(j2;"[-3tXbe`|Lefн~R d#we6i^'edq;D۠< taD`$/> KccF\7*<׃Ώ9Wqd[s ji%JL~.l#9 ;3;~y\5h \a3֖4n jI)H?UK~fi` kgذ 1ԖZX+?`y/6_闤mu̦TD>& ?4@h'rF~ _m ! $4yaj F:rQf,#D7\bc:pV *cv ȬXWwUQ{J9_֛wm^Ş3n@\+fm?M>0M3}h_n_O4J9Td}%oASH 8S[%|K/'[a ńԀKH5<>]˟iYnhux`MHq;:'t9H:SU`S七O+2H76Y c/7CMMQن|z'& XY.KGVI6 '7fT:4ՂkpzAiddeXQea<:2~:}%>գ]:&MqhR'N%ft` .E *N6 \Z-[!r^^#{DSv|:"k𗌋fŕo?(.Xw_!IXYN!J_J Z:M%r"Z[/x;7{C$bEF}>E5pMzP.8U\Pfo 1oˆ /!Ml#)J&)ͫFY%fUܭ.h6zB1]xmB7kj v? US3@߈+٭9/X"F:-6/H+<8+lH"`.ٍْz|Zp~sA_d<~e$qU{cwsVaivD-6R~)0տ X,5gdԽNE&p+Z49O{hu nCX!U! kTLck na8C҇|fs?ic]j1v/69oL-^ #N;+lIԪ}Z[3:p*Nt%컦D"πt"=J4"_ɬV Tb;;ڸ/9Uu5TVٓvيsϐMHQF3]{nÿA:?Fn ,~rh9^\G367 Yx8wa2iS25o#SG`LZF.M(7a,8 @{ -Mkϥ01Kh L-#ޑ*02} k%jŏRoH(B05)ep0# KϘRY+%YɮL4˸i7S}Z 2ANSp*?U#H WjL]x &`ZEZVD1Z, =9UwN} FABfAp}i^,YI|O/AZ*+NOgggxxiC! l9 KX&^=3B:Om/OZ8(e"'|Y&#clC)__O/)[ JO u-v-cǣmLs3 nRЕTA :ɻe-j,*YdQ< ۅAcRNe =d%^V ^:ݧDv'(_OrLAJ7.N_D cS!#dѭdPngcZҜo'm%Л]z:Wg,2T}8v'Zl{gRKY6=DT 0#okK7勶ȹ1fCwۥ#Un1xt ~N_IT7}.̑+i 0"BLD`oc}z)kZHfpmGQcKfa7טS#Ir|.X|[ bκZѴ"l8HHubi:# M <#a?5e3fJ+B0UBY~ ܍#D_VKܚJ6 TY{ch:&^{k**z4ľQUa^k"*i7c'2.]\?-\~ @=I] %i/&][ ABa\ˉP!nIh԰3R{&ec'yù0xeGvX %@漨|OGuW4BEk:EIzguE2Iuq(|IEXYF,w]D1Mx+(iv Ռ{|3pQggvB0Ε-g{?Ԅ=Xog uJh?^ z-U]44t.Hx1z.N""ܼQ [YfɓMXi#w1O) |>a/w^ 񿀼c*Gmؔ:^%v+06p-[$̋;]^a~NA1+g)63=?3%;g 7;H #&rb٤$WEN;3+>#Cݞr1vسZyO&K35Qf&Xd Ŭ Ov9VdsψJ$6ߨm*i%Em.$YOCN<˦yAzKD51C ]wibZc9S>R^~6RaB @'OzPi » ?$]T;rmv3#^b7,{U& ˌlNbTzwq$ m~ջ^9qHk-jbk[@tCS=q(zwk.Ax-?Z}癙,̫Di[*e"LƉ$ ^I|SG,OV4HXP_Yd&&]Ԧx4a+ųH3kBKno fx3MAjeJ->;>I^/z:-eɗ{OoQIZG{m-?V=BYV]|K}.uT,8 ŋVG߻y4epppAI6MHtgՒfÑod`heOߕGg_T.%&l(]ug } G 縈u~]@-f,mwmGD媪!oWnVt" |V뺃Jy8n?L҅NɈƃ="52ΙgeU)_|(.3'[G:A=GJ XWHիt

ko8{)#,}9}W]Hm_pNyi}O "޶*8c'uj=RRmGˆ2P}w60+l dVdyd\O+~2e_ /!#dԶ;3zNEm$+gbsUviĖHmp8y9Y @ν^<P#h[Xc&vH8KU # f;Qhx؋0Znhnk سcPtvL`!Cu*7}gqfTpBdXģ-I-g^j>jUzw?ۨ00j: Cg=@:\,WMȸYQ')Q*mskU] )GDIGeAGlv .]꘽g?'~{HkqBh< hDG`r`rLw#î-Ϛ \(1hTL N( 尼\OP?" /rCbw{FWlM18_6" &\vV+ߧj\Ѡͱ:^ΤcyZp*so7/6#}'t+jNH'5'o? %&'AO}m(>6&'<0"k+0R) sJ!#} !r59ǚӉY-M糨lAsI& I;0#-aZF3N֤:x`c):Ηf5&?2 ݡn]uaOv8ѿ&D[kZG7E|o~ڣXwځqm8+ f-`+L&ZGUP=wJPv=;b)}gXsldM ֊`VBxoȶ&D'8)cQX/,L&$M3-9TȐD$#,SM}@ ^Rȇ~u[z\VT\-Rvlu"BVbb 3Ӗb(I}IemjL%jn#\?`wBjt ~i[F85#ȦSʹatbv?Zx SG%)'dFO>B;MlJwh uyhU)ڒJDI/jTtZ|br*;YhNc3;!0L^h3+oP)ɱyW#''2t .zLNE[?h?0c5irAեn>w3BZ hՒv$[G1{nK!Ɔsk/;xP2{I4vŊE~X~(3jǣ.JNՆ))>%`…#F# u|Q a6D >ܝOjrX12d%^dTǻFy`ng@ˁu|u ύQ\"؋6jm_sSBeeU{8',x<mk6!rw7J#5zǫ3ANKwڗdKqiC6YUͤoX$mO:иMg@l]q457JZQΨ0=ׇ=P`*< !(^A d^I)i7CٛLwEN(X$i;](ia v*?/wIC3 W~ La{FNqcsKFeZd{@ |RwbaESnsYnͤ::$2}Fa8iF=~; hb`Y y^i+c%N'Z"D$XH* yaf!rmzI`PSme~YAn=LLhlIN0I%΋@Fv?E$xh2ejh4(F (FJ^FHXhE 3z@[=gԲ[ͤ-Jw=niͰ:K.raG >YBȸK#ŃU4ՀQ 3o1adeO2B|ȷ *=;#䑂(SKR ȿ|)y2qiwUѬRMo}=\OѝFbz@.zv3gELERVxi1V/} w*Լ2[۫#-/wS:@8bqfܛm$ȂY 5OL>S;C6&y:!k] a ZG%ߪj帐F$G}]?)@4i(ϰ( 喩19k8NQ~o;PR*dsO~P ys!YY&к0(ܿ!Qj>R8ȄQ&\jF10:qx$]O~.dzsHrO S:ԡ/7b6RcBd*ʼnowJin1<&.)cBRQL:K'owNBjS9n 0=]yRiլV%yO[`&Ъ'apNKA$&M"C4IM>J<,,O ڧN3â hHQ繖fL ET(8;W {h.X懊EԾ_Z;^{br#u)=dyE=ŴZVY\>y"&,v)7x%G(rM񂞳E:W+f+24ǖ|r᳼ym Mٖ-[C)ng ;eLU z /K;*h]ΠWG( PILL-6hz{ԪU9 Rm2BMf]dA9H"W$*p澁0]܏텃H&KlT3>嗧![ﮍNX]ln6PQw4u Ɔonڌdk+έ6QMe7"0<C_ΥQ^pԠȓ͚I-;_2u6(K8&^YvWc)… .;K[bUٍOa.dNu !{s 6"Y9Of+4s^tm{ƈ5렣䛋21~4RK*ES0aJຩr@bwA/LBB㍠4x)ej=N=L~BFqD{z"P"˺_oD18x[We5 @q.$T<g~q%' @ѐcN*+I_4kc;oTs#) kAk½HprDaP\4QD\zAx_8_>ue6J:>äN3Cl}KYMPa&'Έ2 H5y렑dZQnE,L?i7>y+,bH5Je-ږV`-ThXE+-;6Sl>v6/Γ];#9 FDtb57#ؑ!篢0E4t,xMבk D?S BaXըW2ܵpvFA} ͒J_o,thin|yft AGsf~)#}TxN$pY_ϰ}kqCKY1HZQjYv 88Q ["xP#ƻ"zi0y0h9ݖ9u|dח`t<  GzzyQ?k:|uc!|oiP1_?b lIkva$HB=.3=Fo.Uc&7j(8 .U"$`d(0TarzB@j V%|޴n)GcH6^4Od>6_ 1ƵnpyZ}y=>f.I58Rַ> A02AaRH i@'^MfYi֏t'/5AJ_~@O9ujv$,]\adh٭H$*Guw5oqfr$b/iQq^v~AR5 ,FM}f(SȎ,cDhъPmTg96 OuBN0\`PyꧨYkϏ ,5ps']c""7!ڢ"aҲ!'=s{+#YYڀWT(0 %:-'gNCYBJ14`"DI欷}UphM >eCkla+Ea|tHe]]#EQdx3LtkNk{(W:IW9#ZsDq:0qsRqD2$*XW*\ɶ( J'>Qfn zR͢rHdPpILmkЀ 4Lٗg۠+Gs0.m96BXM5;/F?w+f^?aF}ӽmEi7Xv 5=0*B:\w8#Kl"Ijzz*έ'o_Uv4E 9(:XwW8_^th?QCaQrΜ`lG }n̝7*jQx?G* m"SP}/^ՈrG=u5 MĨ'`'3kjkA "j?'o tc?n-6%6  {w.s~O4QIGU+[YͪwLzB ,N<,P#R6\ K9 %Lq4y6›v|Қ u$bx/}o#l`E$i>gޱ=NCU ۽Zy&EhǕd3,gb2ʘ7t>Y''a&:Ph7F_:)iLQBl7Jx2'BIGidR1#MOudtGf&n1|,/g.>|}ԀΰLD~ N7?W7+au?EQn6ʶyglZ GeÃ~u(+h=RB(+gUavnpuU2J zGFpZTZ_hRKhꞙ7ID&`r"T*ƍ{: ,CO %y2KC$P2fi%Hwcw ?̦MHbה˲;D @8_ʋ75 N `Y #A>ߖ78BO=)NZPx/pSq/);%>8ob{)e1o(&h1GK ] vH0(O\svX^'=P t")mSwIm)v11:UT2v]:1_fE .mgoz&2Y.ڵ2 3/g t0z Ň[_j1ݾTot=YCUr+Ԭj ڈFD4,Eb@W_xfϷ[1m~",=x6 '}j uJ 3^c*d`=.Цv}k݌&n`E[){̤Aa"n..M<% ़ƴD.XDZ 6L6Ews ( <V^ _BD@0>.&ʓ3t~?6;l *E%&FHj|=ڀu)m./oE>boĤĜTR^Z r5)fdT;'%J}ɣr"恔EBZxoխ+Z PzM¼BI`Ej2_M^` ӯ20']jĝ.Km볿"%XRvث".20fRauMy 1# j+'is(}vpvSCӦ3D2PH+|[o&7?+ gy'N6itKKLdGyR?sPҺFY6!k Hc8>7T1Tųխ`pU*coM]f~&rhǀz^^6yJWgၐ]=XDAKqN*7% TNB{gZrNU*]6֐0HygJ#3ks#vRZ س'r_<9F'о $F{ZHr+1 <6@歅7 ya2 `#58]$݆KCN7A޲ NY|Jh?G( P b Y'E;=~Nwcl|v?LQg;q`&K cEIa|`m//`K Hpp MTVޖ[\'>~/avFi?5/p:{YfFu@j 2U@cyT2REǝ]!ŰlviV|` Fj`Ԗ56,2I,[v]ThjIC>8ᵣ8:kgmJ6frr/̼*ڔ2iʱXґaȬ˲n5 #bDSzsTsdҳuq='=p@P-9L3#L'U4u݊CE,(zD"+s|h](z|F4{vd * u =]x3 Aآ-1Sm!WU4LD[+qŞ>(B:SӼcBxo/4'H<5e]U{wfYeLNO% 8;Τܳ}Ĝ [ CAs=]i7s/ݷ7~){An(Cʱ=HnMzE\h=,{TR>D^'+ g9_ToR⍖iShD1hJDK~*+ fQ L*Ҹ%+ewLFTmeycrXH(Ge|z(GT$*U) cvB [owZ*ho>JXY3F@ea.JyVEq~u(҃Xae\ %f_:eh(~UTHى!fX oshŰM\vHUoao b-൸tY%Dާdb0NZ))uL뚃 Iq=_(M8S^ =q`&Q~(4{[(sدlL pG%1f k~-R̡;&MT,;X *?/Ě)jatvQ‡_ğ4fGFLZFH麱c||:e< 뤴43gr9'<2(H܈}S8[o3@/(3,uzI[X]f٪FfLO|v]d{>m,2QW"]4nt^nʛ(aMfs> 9gfNAۧ\VuZy޵F<\϶^V.$E="0v`U@4ME9R$L=[ߢ8 T81cWf VPD] )ީ؟7wSe'̀PZHR~NTֱl%?FZ%A;(vm [6`5 .D[7ZTrRױ{+g]HJV hQ0%u,A(IH"KK%5 fP9n}+~6C GY\@H9GQU= mʟ|lDwxe:bv( krȀ[`/^jb"`wt5dZ&[MAg&C\d)E9 WH͂g+: ǯV ט0qTK. B]y|ۻthهkL]:-G@yAs,y(f*T×;H΢@c)̳LOOQ`x5mʃM^4h)Qt$=$>{h3li+$[gnh2*3p+nx+ .a5ous¨ZCpc,5)mmds2bvF͒MRw.n 1_"i CMѹ3z' zgqM)tmi?`隺91O/և*h8g(8], }eMV9\}?Ebօkv< ٫9hhD1 aQgrKSZE}*e+}4}~IaF Dw]c:gkj6S$*sG艡4lQ*1-c^7U(>{)⣪, 4m у4j0٤7IPN7P;i_1dF iZ"[*3ߣLx{~6d;qhV$K^`1{LsمpJYd9-wM n3ۂ|xӥfmp듞S"s!7.늳!y0?7׼ IF}sN ؔ W7jܱ}I^ՓL.-w#H<`n_ʗmO!a?WK'L-a(=,+qDΤ1 Xsc |"y98uXKT4kj~5~EJ:Kt4B_ʬ2 Ei2&dǮOG$e%.{)#*̋lA^rl|0bVW!zЂ߷IaoͥNl r'7(O3}1qr6<.1L,̆%h.7(NCrwL;&I" +^<*axQe/nHyra?Jn@$񵷅ݱE j#,͝:g{XMwٌ$ umê1߮ 7:nL5ktf@# ݿceT$*3qE--q|# I s3t# =;3 @LV T_A\O^g= `-' OZeG,[9}E8@2̚~'Dqҍ؞Gn7 16+)⽳ᨗF KJ䑮Ͷx{,b"jzy030^?xnb!<(Nu$ ^)k9L%k"ޓI.Lp43J"()w)5,?m]y#W}+=b;z^1YBg ܆ݧmXi~ikֽ\uyc-OݹLo \ mM(e\Sf_m4nsq}v#`\$[=yr<ψz%x}:y M|X[S0j0X+3 1Af&mR~4ݙM(c./7;Dž AïS.d3?|b&瞕Bi:o9!t6e`6T9ڪ~% V免o/-4d9 nO).>Mb8hcaIaJbчTLuN\ ( 7̺̮Lř-qЭ%(r|[谺M7OnO}f -Rhx?UFGe-f+<:2 Ke:,9-T=]X7w!#.أs5ӊINjͥ!szPWVVJ7U{k 1(E1aٴMe09T'! R{9;>v_Uhp eri;qrw[==ՆT.ޢF=p#,EqV\c& Bpp]&RDd_ڂGGB;QVh-)6NMR o }x~efS H^@\x}L/W!ŲέKwQ.GDt͸zb͝Je!"'$E+2A #Eݩєe^o\G¼̡՚iD[ODDEN:bBek#*Yяg]GDZG ,:!-,_'EEƕiyz^p1x. ;JqEOUh%V:%} L$e5&MmN.@P̢vlJ{RE̩ZA;%h1˹mr1C[feoq6Y>ϤR~TۜVPKfP^HEOeZ4uZB$T#ED&A)bH2E)VA8Jgau#Oobz5MqvSh{R9kkԚT9l11YʢcoxTh.RwAaw }C 7~~SZ~S 3'UTI0Vm,.#:tZ痀MIrM?x@3"NыҞZa%((iDŽUxЂ4BI N m ܯxV\$ KGb4_X"r=WpxŜąLCgo6ʳ}u_U`D )ceqGY[^S!y,fZ 1]B#]gZEiC&2[ žbVT0hѫH>ɬPӗ:EVuX-bG5U\Dzvi=Z8NPg27;FMzh1[I-D6{WB7ߛ j~vCjNqļfv e,^ {'Li޿';/`@#Rz!YqF~2%\ x!Sn݂;%<̃ƹIf'%b=y0 H5.:D+v6*8$ӎ KR13# H6yË=35A@dkdSHQWD{VYuC"i*G>%2;k3gk mD/ kAnd3g]뚒z EF dDKkVB1iАJV5˜ϬzG[d0"w| 6?*fuxoEmBɾ־ Hpq97I^2"*J_^dR\1)w.Ƕ6%WڒBvl43խk[S!t-wA擠/uف9gg(uʡ Ԅ<^0L?HOZbݍֿқňo47kI&9Wid`uj`\+*?Ayԯ&3}- V"_y$2k!>T),d!,'_nSb;KKvV|luA,OqB䲸/%>8ثw勇v] uS׬Ո Ki.aAh:BGoS48RԔ5}@ubpn>7kqs Υ%h@FPHBVaQ! 0z}ΎT&`"jW}6JOK%3b2g%ό"pf޼.]F1q_p ìJ oT'|C6]ue agu4fr3n V;2]6 UˁK!zл9Ǎˮ,T'oP V5Jk 󚶱BS)?,/^#&tO5QK 6*T&Ht5D51i\)#6[(GBnh~ 7)Iz>q[)ԝ솪&m-R})ƭ#'mK5ӌkߙۄo!G䌧#)nuۢt`i>5<\6g_p 1ivKRr27UN~uǺ&Ý%bxgKj T;cZMb(KUx'ZJH zf +iߟWq #CWkxC  x稕Ķ ma)g^k1딪dB]{y< :psk3. Y|Jl?z\U]Mv-("^ͮ]%u:X(ȉv";󢑁FX㣗LOs`䢫?  ʹeۧO[+jooS~tR qOo`&FqLXy\ف%Vx e'39CPtkp!Awcoτ-(n%#T~\,atVN8Ǒ PmGdUL :e϶q#|s1z1|ԋjI(Z&֍9Lry=IIL3=[ٌM3~ߙ!7%g[c U뿤dփpAoPa~Or!7|5U{Ѝ|dp:}P/ഐV{U77 u=sEdϟ?IB=yH$^eAZuwADk6r8>XyK [MGkY_voH4\ ͱ0 (d+jsUNFgr-ዴrPƕy0 x O_!QХhxGp< Nįjss/`Y%}h<(qىRJHtyw:>W\/@*E;a 濵\T5:=K"K/ E Crwo5  qt_8|5%^F+ igDz^ 2+NV|6߶#oΈvD(ȡf`nKd|`[W( ľZz&?Nd)x03+:%lirdloVPB9<^,_2r qթm ^$4d=>ړMM қsSU0yeFa>dz z8ЁGf&-` 偗=/<忠*?3[y Xە\B֭@v##,Yڜ/c}n ћd0Ԑ' :8! suLyDU+jU{Lt ^N4NQڜ K*  tŝ{@}Nn'̧v;x*TCGW"L~{s:Q2U* <oˡGZC# s +I7dP (9і Km$LYټޠtM Tm : tlD({swvglVjň;vJX +PyNMwJlȊ-i?dN?[6J(B%ʷVg4/EqEgm]7Ĩ'ckh),wJ#r':W{M#&_VXCH?Ut]L@BS2Z$ޒu2LZ] G0; ms<4-f]5ȟZ]2'_΄IG3+Raň+&MrcW*vnXIRzDžό&A bEQf' ߃fczY3f or"s?JjRFc\ yywx ,?A˵r:)"V#2[3Hn,z1KV8>ȥ]kwѐ M~ Ԝ;NZO*ߗBm|1L>V/qVisז" NSb' #>kUܫI:+1^DT[@%WTT4O/jE5 xpjmfP'gn\&Q6LTUJq1WDx* 6{5/!`ǥaە"YZưO<7ВMHޯ }\i+,]UhT#ajb㏰Y̙T*g8^! <&f@J`>rZD9`߯Nn )5&yA؏D4FGR`*H8je$"͉mwyDžC9dO}qʎUkG\tR9|2 .ygm7ͪ^2/%-6q'y!T,I:Na%S+hȖ:[_B>YwPOAu,/* `я갔0/|Ř{(b Tb`5k_v)AlHW !yMW:G[Z 4IXJAs2Qh%uk d )gIg8k@J!cܰzhC'Y*ޘsTel?5pB.݁$fk}q(SgRpƕtr4#.|#6Kgib`|=z;j+yg=lPP?,D< w@k+`=!g;&週N+;zB<}V+_ a$Otx`D@0B& AoJاVadT@)╟EG/~:TRNy놕_L;#RsݿugUnBtEZh37q)fzHRފF$ èC̸Iʜ%!@؊:3ujh _'V,;I HV,4  .gP5,Ȍ/TSW:^#u73 NWm2JR3SQeɹV\+AZy? 8=^aWr~WԾ&? >.ۯ1pۏ꣝Q^`ӤlOUqO(-ǏP=mmp@6[WSooIT5r6>\:!-_/c`Ĝ~Ń)* 1HZtD]GL7sW:LYCȢ3O6^'Y)(EWX012/Ny@{Gep@7TTQj biqjFalM#6ZF\ui1h8TKΕ -:+rI5Ej;Ŀyu+KWyXP#[Τe龓sS_ 3q֣ ѥg biWgRD=6t5&ucaiv͆a>Ҙy)`W lU,R>5q"oiƘQ:_ЁX 1.XCvgϊV|@*x"(f^܃&, `~bMh6Y-< *$̲o;G~cp rfyQOZ.1͡l#Ӈ] ;$٪`V ɤ:́ ;YoxA:%؇jf11W$pØ#$P1㺻;6?x?:ZvE&H?^wGz2 㗝S::DO&؅>*>owێr*0I2A)Ej|f+6 x&}Jdwq nk*f~3G@,SHS¾mAq`V^a{}AI6F&"=ZFG^"H0:ꎠo1XYfY;^xpU I`7~3ڪG$〰N!"O];㝭jcQVVurl3'qQhu<Э!bǦc<>RʣyYoX, pQG Afp:3׸*BڨiH0ZpQEs g\cΚdx@.hxs38 94|0;N)Z{/.̹'7\"EYfIX!, H|ӌ1XVJRhO[|o]}Nv֍c:yӊ%dʚN6^SҰ>8/)J\XVR1u~3&uB{NN1}-5g} hT15Rlk@Mߍ=W]-UȣmQ5m:'SS[]^4 4Sj3Fw54Z=>%/ vJݦ lFDi KnBPM1'2 (TC'-6zq;g\P$PȹN\lA9?.a& oʴ9x ώǔ$? π#)eL wǨTO=g@PյL㘠Y%H IR."vͻ^)bQ&?(W*3XȆ{Ji6Pf*kI!~7͞n*sVG,vN>,tdF%L )Z `ndn>G:E7߯z ϰ˟Qq|dFV8W(pųB^X>iS7ڢ-rFtS/J/Qhi**g2cr9(rKK7Xs x)zŗ#O#H*)G5D O 'W2 @nPKe~AwCzW)Zg2-v뙋~˄a`B֦_$ۤ{?^XʽI5ƣx>ژnf=Q&kk((TcV{zF&;c'`թQ1T )Q\ }o&0 \<[ܑ[e7lv*OHDcܘ'`1(RdnN4O*8Tf3Ҡ .!ĀҳitsVȠV6pȴѰ!??πm\ă1D1 Mt&I;7TL(` xJ$YVE).k|"x%nKfx*y KBӝpV628|ǔ"TM~57\RA퇺IQ#Jl e~SбWp"0k'cn2_ϽϩH3OnUszrKE# ?$HU+k=8U((p'!cU&McMɺgE'"0p眻bYܖ<3_\Bt%{/簦1Rt*|9jE;7+tL-UqtZ9ev U)1w"8P&'u])))TDà 0m.Kꧭ}Ai] u tXgFezOY1zj<+hwA8FO}'"r!"7befB̋ɶhP8mM`3"S=)Ή9(I"S_A!%?f17*ڮAn>fQrJMi{|Df By XKA' ~fw)5l{y֨ vϪfd|L6Z͊_lle=@Xdqrɥe/5ie;P6v@{KzݸU8"+6һ ~|99iK4hŝzKg΃ {Pփ NP)-WnMa$IN 7mdesao9U#V4IAqPiw=?=EK7&{Tő(g_a ݉|ќr| YG.-F?hj,qL\IXY%w ͩV` |qt="L/EAiΆ re4W'r&4M&.B1 D Ls5ς HLd;J `I|d+ 3z`8ZғAl9w Ȏ,T,!X O|9CeH;>BgŭXe7w9Js[<=r,ݬ Kc7k"8Ic1/bqw|?w6џOj1RS|0c)6}| :SrSt'e.;ɰQmtⲢzq~;!o3UyI:ٍ 5CmCvz):ݟ>I݉j䩮._Vƫ>6,Vc{8ѧ<=J.4T8u&5HfT[ٳpW"Zk=3wWuL@Zm~KB\(N]rTO8h^)Iz* ޻ z5LPž#Ϊ@sTy>^~O3)M8uÜ8A!AWO]T S<@e>OeMˎG86~ >4B1'xǞblf<+/v~9trU~^{e^fm^܍?f͹/אAaMzB ls%?ya$wW)\p/ٱ)U4LynǁZꘖM)Ca=怏(su*8+֭ߊUYfӭ)kSOs\R ӟD -{0ڮF^w%.M6 x?){$f˔(=a k{ar$i&F=9䕞[%T,DȖvvJNZ9 EhPܑc/EB6nV3ǂ{`3UsŸ AXt]֮wIlZV^9_챔BDfIA)ƢGB>U7@FI3kEQGe( RSD-o"R7~{!X&-jvZB(^fǦ,_.bP6[DO%n##Qϰ.8 R54uQeKb*wiSbDj%uM_6v vCLzSRtwVV_dYȫ*; ovy2IDiRPեNx83hV(> V.<Kwر@T3hoSѶ?!7$8Q)݃eUΙetQaFG"wK-]",MSuNK m[NS_N*BEKd[37=#Q4~:hk >L)@K7 MsL ewpk3=ei^_-t?ZwDh=wʹ'<%wӡǸ|P%Fw+Okv!+@,+qHȧjD-Qóǿ.u&O#M$,8~&#q>V\ {B Ƽ-nF4\/*7 A4C}j0y 3㻕^NtPCÜeyN*Tڃgԏ࣭:7Z8j/9Eֱ<;Θ:% ԉa_<~ŒTd>!(>ˆv-&yQ.c WSa ૊ R_ uL:~F+EW񏍝:#1bD 'OpڿXh5Uw>C$ ۛac̍CdSLbBw^۱7W|Q&ڝ+u,y_8=ZQ#D|适47@ cK2Y_8޷{̗@^PB23Nwaȫp=w«/ߡʕкSȎ} hKjpQYT_ ؽvi 0򖓆]j@: >9}w=cd1'2 Xi.Ɵ=9[*^jwWA[m)<8.V5R<}p Rw-z5~6*B{߲<"uu!+yҖFƦ(E^u-"-pO_~%@y^׀WިNcrŗ,LP4h 4~ÓB;>(yMSH+c>Nal`(awNl>9O?M5 i8jX ja %*ONȨW|&8߆bz( ,f7Lȅmz@?* I]݋cAŷkp]Gm!<< 6:hj$ȽZtb3A(=Xvz9'{^ M;mXtmMTXaOWMa?n.;*>9sC(%5|C&XxtO-C$b>9%irKFi9QnRΪе̋/lRf?uŒ( "!lS6.$WpIȆuoY iMU佲ؿV=I7^}C2턪dK~/Xpuaf }iF U:Ql.͟dH#ib=Lm՘٨a, AqIlKn bhgz&-"*]WX8=N|.FJ&6Ǎז܇uaP·Hx<i9=P &c0~$6R/pb>ZEc`uwjnRX Z櫇iv2ߪ-Ƚj^ȳ -N` ]sHT>׎O~6\<8[?veȆ^:\rVVg CGb`ߴ6x!C |bn:З\n2̉)ݳuK:!FKK\݄ Ȏ85v@ĽsoCSQ`Nyд.< ixV M|r)a:o>؜W:Er! F1muBL ZEn Dw"?2吣L#=W<7J B~ yE*`/כ8 [D\Av0!|i+`CyoKS*S U_֪(.v,#D0Gwg8 gDu*b5!r\6F|Y,'q$;zE-BKէ撚UX:#4rZ20 l1FPD<}>mҶd`gBI~;= GPWo`heL:rj# nUy3Elif3Ol K|MaWc\Ѓ@ySTa\iE^LtI2:~|# kfN~X/=>=0Ȟ% '>A5'9܌Bl;Lڸ:ֻN)Yy +FWվ~f TA=vnt˶siߊJQgn!V|hU]_Xh:y"vRx(]q)k0Nc{rs&$OwKR0Vg#oW cn[u369U> Ao{t;`e(.%SBMᔠ}d9Df/\R¸,E󳭻yG'dHcwK8?dO%)9s(bK<&j& \Hadܱ_M%Jy'񗣁OHsm*ik3C#L553yȨاڻ@ļ=OY^[wĹ-r%vۦߊ~t;%ZCP1Y 8$_[$v?:ʦDy8B2|պӟ\5}ȕhP *ۋ5ĠF|YԪ/xi:;3Υjլ]z p".R`K |Z咬b6lE@.0 SՌ;WuҺ~o:ĭ Y[d]XR1IK{z5YXUW²1+潢7+ JBj/EǦ};z>5aMH)$ $ZHXo.Xd(!:(wa ^: e4\2/ ys̏"aFQdR/;(lRrjSG 4a7 AXֳwM-(Nj}kL:L{j7ȂUS#r@dvphZ)!'k]%<}C!w]>ΌXy" U ÂάǨGkҍ@'[躰OW*}W歝ȅ_[ցy;ħ2dZެO\! Kkb[x këj;jg{JwP`ɳګ79,( ^0G CWƤ%i)t)px$B|a- tGXI뗔Ĝє=qbpQd~C%_791sѼTiqp+=FB{ԜcɯɻSБjfa(1ւ%l~L3~NHg{QQkq6¯dÉ,NҠSI C%hdRO}3D tJ jqO*R{fu\%N宜@Y0hz}~v0LԸX<9W:`t 8D6~:uw"=[Wcw_H~84\kSt 6NĊFvDIIz+-v~6/LvgLrN1lL@ZڊST[&9)g.6ʇ|xRG5v#iW+ fZ5~ &`υ/B+$Zio (ml-.H~3.?+FS[d'Š 8N})d2=M 6cƈT> G̙=ǘa $QK!jeaȃB{fUk[*RFlW4iZhm}.EZ∌4K[ޢ~kֳ"NR 疼»b.²AR韐}[) rK1[6\Eu8XP5'Gn b){&?N eWBŘ (D<\Fjb b443DzyH߸?ש=͕p^KF= lǿ%֧Q*fHyEb3{MI8ǦB|C4̹g߹~Tbu暗j1C 'c"l¨ɑ+GSZJNSWmMMȝ|ѷF':(,h3+]|# uĕ}T:rO[lg(fChih)s4>> ̸ʮ@q}t^9\N 2ߗ1kls;bhs8uUbzN1q!"mlR#wclHjb6<f>ZoQg$T\{E(mg} BFշ&5 P S#N<Ҋo B> (p7ҠyD)C# 22C|އQt￶4-W-)}6C9ƴǦ͂[ҷȕ/(+=ZY0F]궪.hb7і/KIL0ZmRl c+9~UdBx9N$E-xBj;M}8.sTq<|! 2p-E+Cl!5G̺io2BY`&1ZwB:\wKVGs2Ts{&N='bDc@.?/n>*kԲD !4_ߛPZLJ9adk;y@KjՉ*@D͋))iK,CJKȧ3?^|gmKVwitxH'g[rv`l7}-?+B#ϥ~qۆ#Yqx Fλ6GTYkFw% 9˯'UY4 V؀SgQ=zXAik5 2 hC0 I aF7W ma(=-L?IPu oE5"6֒bPVS[*D]iC12웺x 42ѹ}YkavZT9H1yt!Lhü $4D7m"<ˣA%_Q#0V0) ms|dHm:\ `y2tUuEՄu:{1LE](}L:\~X7wI7 zS&0dYErKgˎfs?]3 W˷@ޞù$hxm\zpUP@VFl5}!El5UےLrrۙS5gR),߳eLH R.z|m[pJy[9f߹'WZ{H롫)cFy 9%RФ-jx?aGBǓ́W(S|\b_sɴK7C㴉6y";jYMSY} 36$U:Dq|ɓ22R.)j#+Hk멞y]t>(?B8(z~@gk-mAGՇx=Pn$ %A۵m8XΎspeElx0 we}OWY*5aN9G cZϳsJi3ҿ 8>-%͞]2L3(|8k~G=:,݂G+DcKƾJ^],bV<9 %=bns+{5zW-~ϱ) ^p[G|RYѼ}h )(GxՔ6# =bDT,=O ]["tzЄlt c+tZ/~"ŸUQʽKꁣ{HnXO]ko+ ɢsez J5 [!Iқm0%qjZx b?:_A;b $ 3e>6sk`9's˜ܺ^mHDNm]LCʻ qIcWSVD`?V'x[kTW%~{~b,GUo-_?5<N[?8lY :֡kW~07{`D7 Qծf'AA"s_:hNg(yKEۛGYF=k#V:ȭRs14L*!'e hn C+Z0'ěHT; #!02f&՛ϳn,93ɥwEP~Vb@I!PUUB6WgѰ$ -EsqVǒX8sVx*;#eeoDl_Ą> 4S>?zPBj1iÜmW8 QR]Y`LqENQJ 󸔵cYπh k!j8sz]=Nt5fMeW8ϽV#$ 2}-xg,p9b^ЬPY6}> o}s0$df"\(ZB;A}H',M6B5'|%˴ !- &R쓈Lú/Sjdz.ДNQL6=ҕ6nT.˱"*Ҥ8A>| )qd?[kX=2< Ɖg-L31RGT y2탇6KNo:@p NG;BhNyi!L  =.o I k[ sjPkerϙg)Y!)A8<âvvYҢ˕& hMTO zQJzX^_Mn&Y-U%aVCg1UwO;(1AQff׃rN;%rBP,zp?@Ѯ"A^-8M&. 6CHzT@CS/0☓ *<g`{ F 7q8u{zyCUTfFNs z"1#OVAH,T_}z *~o!A$|X- c>mDIO '찄V#1pZ%rpu!;B QuOd'}6OT_=[,`~'\C~8DhkLddo@2EcWɔmĭhE|9,>PL @jug?D迡IKcEE^̰t!KXL>.ޓ=w$ J>=^-vKfg<]MoUch-b'b˿H_) W$._F7On/@^~}푺#=P@Κ<oI팠=TX=1"ʽMJ0iIz#(Vc _K}ôQ!ֲ$Oz& OBX !Q~_FsYp14N"hyY :/\>bc) l7F}I[ots)OBv+ [ֹ<p gGiz] M1JE8ř|ű@ ,ذYs,PeTwOK'$}q &q+Ѩo'P)]A6`Z0J`5ԏP7;l/z/29V ugtnwic5X@{٣֗L<*) Q{]R_ @]6}~;c,țmv' 6s,pź׎ n8LT~1zQ׶6_.ٹB&]އ DVL^px+E1Ϯ0עIHq~l{뢐lNNQݻZ~5& SOC+d@:%4.{ *z"ᾤc2DD.Tsdʙzm1'X/6`f1$h54ʾ+{`H47Һv@,ݠΎ`!.?8|6&OxN '0oTQ,+U=Nӹ%}{t uG l虓e3P=xe\҄$[(]ȕ_Gs~KkdFnH|" jG֮`H>P$weyGԤ2_哢6}B`7{_F >X8y~qhܢ8ҷzުf '{)l:r"Z۪L(onw@|2_LQ9q6el!-3mJ G|\)ܷ/$uOS/7,zI;3lqˮ8DuKOH|> 8|O5Ud 0u?N]'Zy]GeU.'Oڻ*e})jJy;ge0 9EUG#:2p}_V8qD|4Us/WI%?&gdg6L\D1ҢޏiXX qGr:r-!mYu<Ǣoߓ= \ejǢ8ivB^I ~9iڶ*Ѐvk2̡ E@-FYgk6v2JYaibєP݅̔92[zwV )ɒr; 9Bwi2E' }0;\Uk?ei'UlZղ Ъy88TCQ6?Rxh͖^-qBkAڍR~!B="BEˆHj?}60_/mv,>ԒGyrEf|o.vQȀ-iwڽ!k8b d#y3+!p~lkg^8ρmFfͳ e ⵚ˨7w% K9-3-ҷ]1rIvWmiT%޼󫂑Z4v;Hݎ%j^f@{럖Ƴr!\{3-3Ae>X00L5Gw^:ڇޅ*\ah?/ô{\ Ļ:PK !ѢfUC| #L%;քO!ziYy`DN:K.*a(Bir}{BB2Ф6)4/!rP!AWQ6Crp`?&Lrcy_،c͘, )m!nMl@=]A b ^v17 _xFP->:j,&v;ˁEj]/M\fCAR&_ 7llת8h%kR%~~-,\_2يzpox֫5DdW[AO"UkABéNOo2iVi8C1g;}eiT2KJ[uԆ/e3.\qln{W4$ȋrd&hl$-ؘ>s@ف~TcwD9Qy=0INę*H)UOӃ 5C$$a+J JҀ͔QzqF(CxSp0Wv" 2K*_EH\,ȏBT/_:!q$jL gШRl构F95}%1/\i6GGb<_>< {,M)hȄ 789=7EO;n9yCp',!M#Y,i/b пI'r;<+R4Sm:=$.g"1Mh?LK̠:޾9:Zݹ#1K5oX\69(NP412[2msy:ClO0e/B7r[N$alX DS,hS9NN~'QAȎU cGU醙@ 'uy|ev|\_`OY CTBƯQwCTڝ+WH-dtS/+)<_y$뾳rnauma˂ȿZh!S#I'xv"3~!4oo($ VB MdIKO\+;ڹ/SeXdTef=#U-%*ۯ־w6_}Ƭf{T {9+ǞF=UBbw?h~ zU Pf&GrFYӨ-F3 ŁBcT>4>tM9I;+:r1-NZAPP$RtюA W 7vLi{@,|Gŵ6jTv' wjY `I Ar-|fGUV-N7fVW#HUHq3<"ִ]X0 I"v(7X@ۗo%s`/-PjBI9"bS舘I3ՙ(-.uUWgvn y-GL9ɮN4 j'\VW9vf^9lGz/UIq>0Gd O{Ӥ3ӫ8bޜZ6HDZS@s$Kva'̏4vڶXqo۪vYiYl9 euTj*sENUNLV]Ќo<A ]-g;)\h 6ڸzu%8(;/$tV~"D> ઁ"lwZU6W~)%<㘹jiłbM?h HF=Gqr{Z:]98)28? Fbm?R>ScB]fNp3g?7%;!R] H3эzJ4oZr$}L{uIB 4qݚ7JŠ1-P0x&?+C5۲]bg%%FauѺ'\T=]r[rYhXFw^"Uy)z2І4myR-߫.Lל;cis( #c]ۤ*qK1#8 |,Yi]BKÀlPy)pb)ʅƸ9D[#Jyd9uK@(R,؉In`t.Ӧ1˖G)ϕopdTBjoQf?'ܓH^Ǟ;s^DbE_غ ih'UOߑl޶Z]ef!Z0mvoWE(0n= g*S41X"g`JݒHk؉斸F,= 7{/3iqCcIBifۯ3' \ vf2sʹ(N&@$pIaSmBZ@ko}bz+*ةzE%?a|h@(xTj ;2p n[0r! Lmk*|CupEQ敷 aof7W *#Ab tM7//yt@Typ Mz < %iUh{5:Tr՟gYU2la"+n%lا,qpc?* Ԃ|~1i}v[ 4Ó.bI`[艭21GHxn m)aKG.B>,c$è+h/b^2*ˣ?,Tyk.CdNBEe(EsVȇ9,g8#EQ|McF_Fxtd_k ~_7**hWetW<%SN"! 7מ]{f'e#?8. M$T"3#)ey*בR2>p0T#k< (4HұDl2N- Q?QU)h?/]D ?F'BBAT\O֜I%m/@jn "Zmo(/|BW]v]e>m۴uW EL3kPV48ՁHx)SdL֫`Ů5 "`-J➀DE-7WQE}eish`wѮ^".t/5J&E2݈xXn iq i 2ҢmGO:%!L1Ԛ2 (8&9Dw[n_VB}H+[_=Z栆J^EL>aum*Ώzneұ #Љu,*Q0tn:,c& yh+8ȈxuM/Ao惢H?).,ME'>J@9bvl{D,hLL7;#o#m)s:T&z*&g?$-p&$K'DFm$OdP_.k<%(H"e1!] ! ouEF&lnlcR.Sl}LV8 %r-K}iW<v)DNkft{xdNTB ħq$U|#cFs۬巬Կ~7L?qQ%X@Q]?^&9+xQM*VZKgJ"/2"|']`Hm.wv_!o(0!KEa,y/QC@EDvBV}jmT9+͠fK:>w\R;߮rBwZDGJeIV!/0>aFVm`A}@AD7J@BpAd?Re&]g|Cś$W}= rIYЦrOLz+xXzZ&HF\"blӠd\?qLQPgOܤ~wΠtW7>m#CݏRҊY w"jIs7c<؛ l?(Pwfײj2&.m.c=1.JT/ΆYx=osVqLc_ 4n?yAw8EzZ5_}N(,?}^q|8>q cʈ4/Fp!+ Q`үh$'O!zJ=|9cË`?uz6ˆX`w5.!ǿ!Mzr"mτW =R=hI.qB[Hpꌗ:8qG@n}(Sg?}:~%E;hfB4-.٭Y'7RcrMwÕ;άxSDM&H3? TGKń}B$)7hF&f!@`!%r٬DBh H9E|Ǟpj_ǃJv`7dCtG=]Ad>N!JSZsYiJghR'(ͅC4(7T-``/R wLXOcO4 >ẓg ~tk@&m\ 8"q1b+b@,7pH<>}RU8 `L[$Yv^,7Wc&̬۠OC7,N~1V߲:T(AH}H.0 7@^kT aoD T`AsvF5-0)EV6 `kAB0Y8x`3LsiV>^ |ҷ"<,A$Ad lNOsl>Pv 8//:t.7IR?QZ_ qLJ8kzܟv kF*x-GIDN&,+c'x# FF#aT䉧NJ9`pvijvs6xuþ^`h6Y* ^ޜ=lR eOM$5R; v9IM&gvYS«atµp֌hB46yk C KB#$͊'B^එn2;e62bVZq#\GtyrR>ԩ3gϞԟߟxjJ5f$7!3Y69B>HXo̎XiA6jmp[(;sʖkpIx*Ir$Hccw &zx\( E$|p6ݭsdj[+%||ħFx~:n\yT{XԚ+BP.K`bGXX5G:9^'vᗣo^tAkjr}_-˽g0h}Y]-]0H*=&˩V\ƥdiGf\Lqa"`ǒ(7b/28#gguץ56w[F;DD:H2k _ɓFu-JH$j}X^+KEk 띡0I-WȨC& R& 96\4MZ2r\]:-eSV1*nXRմ:0N%)dv,0 Ytė@OtcOBP$ӰI;lZSR ƭ,8;y*ũ/Sgsx+g\H,=|v}zըW͉~Wd pB!d,WFD1P4۵\Ẽ =)@| Jrvߞ~Clk$ &ĊL􀌋mOĤ? 6/;{Od`:kp\Zݒ|5Tv^3V7lRbDL8= _ۗU%edD4_\pV)yz|v$\6t=-:"~Hdz-=={Q0=+ck 㓃&N9yކ}!ŌBRrfs1>yvܙȺN*${4oqR'Nӄ`c WHHް(ŇI@CTmKƨ ŋCg5#l]j;)1*>E.$&!n)[ݡ=|2Y,-da☖WsiP=șG.J>ɹEOxDNJNB4xo>:H?֤dHЮhWCpڙ<1h!Sǧ.:vꅱ (?P>jZ)]y&x J/o#Pnʥ^0>>`htMFǺqrV3n4=4f3P$MF^)Hͥ_rpEX)b]R\g%&`ܺD%!(@>6#,L:?pV #qU8pUW4Ѣ Ie Qk3FR(xH2Xa$LQՠ =;&G&t͌d~)\Ci$Ym;Nh{@M}.ކ2PՂ%GT@֕dtZS!M -a!n+ Jid_:ؓ}7ȚOdz-E bb]IRqhB12bg׏JhTF{~ l?ֺ `5Kfn8Zץ7ɛ?WztMT#$ڃ{TH.shى}VpNi cU pmrHf,R,JPI|Q3{ץVjb˜]{VR呧`L+M^8!47LjO:'#CDZYW~+HF2[~Ef!{(mbڎ1i;_ItX>$9 oH5]uӝlRFx"Sl Fa?ņ wHCe~AT9].~XԇBL"^fOz?SL5ߡ[UfZ `+I| 2zE[ąHc}Z^  rsQ#'D|V)Q  B r5)m%KF +|Nch)< 0{%AE y속g0i3 o'TqVWw)ҙEf#ԅ ‘)%fgJ`π+0y64lz #mA4\(l_Dh3 |oZ5OI]nu~y80г~fu <,!ة|&'tJ}\lV@zbg0:SrHY#52Qo'3枚m F=%X1O-wH"JLX[u](Χ?wڔz+VJ1l l7\ 7{V D?u<5juYH k3OnnֶV9G8Hps8;[fBC1Pl6[obU*)C`˃;6Zu@œnVܪ[c;uG[Gma3mpߌmO1kx{gp;Y1{߱m=Ln7[^4ۜT ' -' tAȡI2W9^o).:;2Bɂ;B4NE3> \Als瀵z`;<)K,TZY&J-n)[vK.Ӗ$mcA24!o<T;צ>E=>}'};,X=Ahh${&+Xs١R+ͨT_X3zI flfX!G7+9,9R,އw\;Նi kQ1"atƔщ͂YPjk?h},-xj 2ۜe014\gl1dDK{"CəhdX| kOp9iQ$xnS,$Cux]JDw  ?>a[ȧZ ˩iD6[z)XȠ-9zYr]%(ZL[[!K26s^'kx%*6Qm=̼AAcٺ,ܟOʼPi y%mʹ`T b:0'<G:;HbT;},OÃ5[|yrpQQKj~_Rw깜y]h\={U-LqښjW/t*iky8o54 &,h^@=$lʋ 7`L8,Q5ڶ;r|nǠi(3MVMd|]} ]ٻQHʌj&~/r KÊ]vd+\6H;2WKEC{/gPtiнM6oʱOG; ;zu,tc0lacPQYO7c(;oY*\CXkM"S8\&7LiD="ĢmU~:n.Gir,cjjo76u)F  -~窝.vhΦ)Q}V͛zmjCg< jCx>9wmm麴{X{;V+xE#$+ߕx܋#/OaZe>uR/9%aE%ڝzĶx$ ڽ.dž }f65R9: ksUvCmBF3ً+mabp tTjs&>>zKW/_xJo.x=Eu#B63ҥLΉ̈́Տ.O[{& |RŠSj@WK @v雱kJ>ġ apj*WeHAZV_|g; I>Uk`δu6Z0jFܛUvQM1/w|GPz H8j]#PS_ђMRn{ⱙ:7]:Y%z"##wublu9ظR:mѡ:=ϻNm<M՗k(=v /S;CYmi"0wn悀RUF\j }3w,~U2ݯk_AOtSKOw^&Q3WOf{{>/zc?ə1$;۸۔.O!)17lH |LGB9fMy<4ӼP>_Dl.ۚFGϱ W_Z Ox>wշ84ɰ(lshvMnmihsqZ𾒏rK^:;9$17MIҗ᪂,hu5,7Kq g \| wF(FYǑZmr4c x"n /ѱ +`%ńRxFh`'ir\R_%{'Q):uNB}".A0o =G~Ֆ6RZ~ {p5yq YM͖h27PP@0j8qp#9]݆ jqUNUw*Q:y\Jh W[W^0GW*Okʵ&Uj՟W ȍ&M ]Zmjv6y̐oɼKxur]C_j%4 wy<-7қ6qVg~ȖMԠ-ĄH`)=FtzMֺ6QR=ǤO &&Ji.x|*3Ez,=VW>8׭{ q紃qRtv*l@]-IJcm#| %k>:^ |W@BHSWT[4Ϫ})k3yaߴZ0%ŗW0rq;{ͤtNF)mjl|&i#OO](2pf^@0WҫﮐUAE)vpZ6y+);L[ÄpN]v@_F\ ZL~ 1Er:jeY7m)MMUsۯQѺZ'j=I?lK(ÝXئmޔt؁-ɰqO]a%59Jϟ*DsڧF<ӈsxa:}k;QR0ލ,Z#MlΑ ^)&qy6}T@*t~޶#PԔS31RcӒ|JKzÎv16㢝gP_ ;j7X$4 La@:7\8 R[J]Hg&셔[akgjk$*bb,7c{6rub̿ 5R uȔ-D*(Td͟y3F)jjpc&OZb{ɘ׮0DK&zθ $mh3|Þ> j$3m)n{8FłQ| €P't6V 9h7a)9CKEc1OU<"?A:'l@Ū>:aH>|KKnKC7yz6ۄ+arيH`zRHL5ѐ#y!wlD_e*_Mde j^XmCg_[:.]}u}lUd~pFFtj%)푼P`s2ZT|`FV,]QeHrma˂;/N <XaIe<ۼJ6'bb0*Ar$D!bX)/R;rM|I>{MQJ蛆~r0Dϖns3<>3lN]/^={hY (!zШ'G=npĻ`fi./YA+@mj/q:lcV )~acYlVc,/iFN[4Rc$DL*e5PsQZ.bAձ>tN?K6s #PDkJ ȸ 9ncȌt|O긯KL> 4D Q_nk53.>8`'g !=Im71*;r{NM_#t=0nXNƯp dӫ;I7`<1i  _|l94rѕ-qs?@Z HV/;yD"؆2V0|aAdi*f)r3ZoVދ8'M?B㶤șsƗ=*|GnB;7TZY7RN򅺗%\NhPk‰I<6.nrF>ŤTQ¥7I5M=ҳ `BNfeTyjɰ4,^څ y+oIh+7*5^r ISR=n׎\oU{z(CڎvR,n3x~(c}#|f-]*ՇvKqn]qA/(K]h$^C!TC~"IÑ_`E j㖢h#7,;\8vYe: >(+ T:*;#3c!HN1ۈ bTXr|ZV%ut;8&[<ք0ë|& |N$3es" Fg%%nrf`I X\mL%`A_>nQDB g9v3qɻS G5v J$ 'B:={qEz#\5l!ȉrS*֛QaNʙSN~b1D { "1~(t)^tEjH,^tn*7wi}Ï ^0w _M +|9񘋳aĮ2OvRd]Ӓ-ߢr kU|x#0Ԓ%;' -&s|I|r&Qf< M}ˇN ̀XQX{\P4*=Pv.Pp70Ph_d=uh4- wPox|U3"udӭc .4ey rA;G8[3[ LZntAgFفַXN)n˘fjمn!.~hoNr! 7*<dGhsR/;Va>Ʀj{슞Nn jM57ӂ<:yAN2rIYY(X1G wfثipHZ) fRױ:UijwY?fAԈ7 cT! TVJ [3\Rm$GvɄpL*efd`j<C,Jl7B? R0zWpR,G[rN]fuKPEߐ BͩlȢkSgI&3j_(If"&.whDK="px}#a˺M W3WY:NdҼ,'(fՕ&4I"FC]%9GE1{7(6Ise>gٳy} 7e% (˪5[?=AȏD\p( a s=P(Jsjm`~떘 2V$QTY78rU-c$6m_ʿ`-J=ς6Iuz]L3ם L~"0r09۔Ev˦+à9!m"B&7-W _:ֺr_<=ADzb$HP!avHPǁ|ӞIMAqYrSODFpI6i(=|>% jTXrTrWLYL10:C>`TTy$H6;vu,ǫjtg|ΜV7ఓEyFmKr5`:2Jl85(Pi&a\Erך3d$Z_h,ej#y2Sgz~MǦ 9Jb.ʑammw;6R_udRt sZgݒ1DDl9 Ax"n3;j-5K$ ^]TJ]K~6bRAgUHZ~ӚusZA DzvUNcV^IA u#h=%*sv1 "ڢpN!=z]67kƕB^ZJءxT`OSƻSܢs_&iMcm; }7m.zuhxq(:i(+om͉q'h~5ڦ픿(8FSL6! Vp9L+WY₈,4%踈L/5t%DBRXɩrYTkzymZs!5/,W\n0+uN4ʸ^Y겙¨:5Ppt͕BÌSIB}cm^hK8*Nt -ūűc?-:˧nr)Omc_DʩA2o`ב/YH-]7l@.^Ba(Wj'K3W8`Zx1 TTrp[%D8wK{'ZEƥ3]wN@uE- ɽ[//O 5oYj6mo70j'8{>^ѩ3R-B7C_7|tL\m'B0f؂7 wELV5OSCn =y;S_UO9M7WlbKPX) S\rzwi(ao[p:R) ZM @ؒ3KT@ѳ}3K4ǭ;@a\yR=nR80ǰ8R=ӑƈ"rERɸtASNU5[\NXZ93ˁFs١쑣M2%ތː5}ߤǧ0#ʝX"/|Ïa -u-$96fdr$Z>Z֋KI  +*߱jEPҳ4O]{pq7N '2zC~ WbqTxr 'A6_3O5>́QȲfZrlCVt**[րkBT)t#.c^n -4ҺH zg4enl<5_W[8@PG'̔>c|3y!y`S?o:g,O.M6c8SҌX n*Z Rȃ#%^gîaE|9Xb;4H=-BN_V>2.6sz~TC,:V`Nոu$V%viOP,TӻXY{0|TC2H2`9Cx =5W(zFeîhr> ʭӸHj&@K VV|/cebW%; 3Кђ^1 ]cET<nؠڹ)"*.SбUZ? Ҽ&(y,Nz+=U eJi=#zcT BgDs ̋[iۭgɨ.1O$`=ㄽy4=Ddi8p;ye6+Yrs[df0,#Rȩ{BʆعW^QS̤qFO?/j`|1z.k3mdY^@N-ܞvKN(F".Jʺ!q~b \ k)d'KPq$BɃ~s|.CVl Jm]OfK6^I37R/*Je]_\\4. [>Tt#⸔s٢_^V֜`[ PŜzZ>ޙ}rRT<=gh:@9Z#.*cxgu\P5qO3vbښDwM)Nu{04QM?,c`n:1d[罾¶_[sQEcf Uk6/#,L<ͼ@¼ ԞA9^wu\%=vfwEԓR3D)A]}B ˅`MÈ :[֤*$: oMK}PzB 'tft_~ҥh7]gӕKCo\h]2z |,yxշ.^x٢FWw?V+F/M4!S7uT^Cjl:!1|lp$ƙy[7D6e{GNR4]  } oUS r $t_*f{4PLW,s0{g}ݩP}TĵVC}=4<'H?n2.VK\4%k=e+p:m6 rW1~%RMqB]!l#Ea潩-N9G8y 7{[z]_N*C*nb\3#qӟcxBܘL!Ep|l ,x0&~'!'Ֆ~]<ߕVo~Liq)@m- p5h֬h^,eJ5n&X'^SR +>Vͺp3l5~7zoԧgbB3ŽUe Z.Vjss[ف߉5uw@T,k( y%~ 2?PBO)oݜkV<ҧE@9uts b[ʶie@VZɓ HJ${=h 02aODN(7GO!7zzH2"y/i7˵JQogZk͓tظvT:}̙s/  jyY΁07070100000000000000000000000000000000000000010000000000000000000000000000000000000000000000000000000b00000000TRAILER!!!b_TWt)l6 n⋞ 5? YZ