sssd-ad-2.7.3-5.0.1.el8 >  A c U].;7h݊*7%6|X 2$OM7`v>"`FCBCN >:']rn CG+>eMwTM k/P;䎄Łnu=m =;,fCAJo26r%~sƴB=x7%I0l[I]ĉd~.2hE+ZN3heGe%"_}) p=fFG!9Ftzoy+KBm2c(2*4 ՈPB+ ‰N\>Ox[e+g")ćg1X%F6@@I1BxGJAR΃j(3x)Fp(EnRq=$k[$۫SUХn-w.BPbP﹃Ǻ f1RҘG0rW,bl:MI!* BTȂOb. }Gw_^kOE͘ Rv 15Qn5c04b619f238e38d9944881cb191ff9a1fc35a69dc74c76a4b92cf9a1ee13395988050bc76455da3cfeed706ca1d7fa5611a6d0ec U]/GfIJ;W1vD_o 4e\~Nn5okjݥ>>Zϥ=IP؎Vn>+[@o Zjφg:<'Žcs˕AʳTvFms^Il@K3'k(r#oA#jk $5UaM[{TsfY:̝1@6_Ѕ6YZsBɓ, q,N4҉rmV<)hPę̔uTDrsص.&|,\D7U =m2 5,;I$ݏ:"q-bK}r Blq(z)6[ﳏ<*&s |!ZL05a0v670i=L'.As4O'h&voXy)8rìxNH0igO Th>pEt?dd   6 3PV`            4 k  F4F yF049(H8P9:eG H I XY \D ]p ^# bd^ecfflht u vw0 x\ yR`Csssd-ad2.7.35.0.1.el8The AD back end of the SSSDProvides the Active Directory back end that the SSSD can utilize to fetch identity data from and authenticate against an Active Directory server.cx86-01.mbox.centos.org3CentOSCentOSGPLv3+CentOS Buildsys Applications/Systemhttps://github.com/SSSD/sssdlinuxx86_64'&K8L <O AA큤ccccccbºcŵcŵcŵcŵ56905d298ff426b1a6786de4d8c13f024fb7e8cefed34c54332336601fd9577bac36dc4d2c3c59cbd8ddc2613daed1ef6d0612b74998b916e9d69719ab0dc28f8ceb4b9ee5adedde47b31e975c1d90c73ad27b6b165a1dcd80c7c545eb65b9034e54f24973f62864ea2a52ca27339c2786467f78eecb375a37bd8956340e498e20aefe1b7b2572e175d283a4f0bf02c6685ffda0233b9a405129dc88c6e490874b84915b9f4cf29157ef9c9f0ffbe690bc66c7bda131c2fdd6b8ea5bc7db95b6cd6c65a6e08eabe8d716161e9125783bdb7bc36b6c4502a7eae99ba60c2a5394../../../../usr/lib64/sssd/libsss_ad.so../../../../usr/libexec/sssd/gpo_childrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootsssd-2.7.3-5.0.1.el8.src.rpmlibsss_ad.so()(64bit)sssd-adsssd-ad(x86-64)@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@    @ libbasicobjects.so.0()(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.14)(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.28)(64bit)libc.so.6(GLIBC_2.3)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.4)(64bit)libcollection.so.4()(64bit)libcom_err.so.2()(64bit)libcrypto.so.1.1()(64bit)libdbus-1.so.3()(64bit)libdhash.so.1()(64bit)libdhash.so.1(DHASH_0.4.3)(64bit)libini_config.so.5()(64bit)libini_config.so.5(INI_CONFIG_1.1.0)(64bit)libk5crypto.so.3()(64bit)libkeyutils.so.1()(64bit)libkrb5.so.3()(64bit)liblber-2.4.so.2()(64bit)libldap-2.4.so.2()(64bit)libldb.so.2()(64bit)libldb.so.2(LDB_0.9.10)(64bit)libndr-krb5pac.so.0()(64bit)libndr-krb5pac.so.0(NDR_KRB5PAC_0.0.1)(64bit)libndr-nbt.so.0()(64bit)libndr-nbt.so.0(NDR_NBT_0.0.1)(64bit)libndr-standard.so.0()(64bit)libndr.so.3()(64bit)libndr.so.3(NDR_0.0.1)(64bit)libndr.so.3(NDR_0.0.6)(64bit)libndr.so.3(NDR_1.0.0)(64bit)libpcre2-8.so.0()(64bit)libpopt.so.0()(64bit)libpopt.so.0(LIBPOPT_0)(64bit)libref_array.so.1()(64bit)librt.so.1()(64bit)libsamba-util.so.0()(64bit)libsasl2.so.3()(64bit)libselinux.so.1()(64bit)libsmbclient.so.0()(64bit)libsmbclient.so.0(SMBCLIENT_0.1.0)(64bit)libsss_cert.so()(64bit)libsss_certmaplibsss_certmap.so.0()(64bit)libsss_child.so()(64bit)libsss_crypt.so()(64bit)libsss_debug.so()(64bit)libsss_idmaplibsss_idmap.so.0()(64bit)libsss_idmap.so.0(SSS_IDMAP_0.4)(64bit)libsss_krb5_common.so()(64bit)libsss_ldap_common.so()(64bit)libsss_util.so()(64bit)libsystemd.so.0()(64bit)libtalloc.so.2()(64bit)libtalloc.so.2(TALLOC_2.0.2)(64bit)libtdb.so.1()(64bit)libtevent.so.0()(64bit)libtevent.so.0(TEVENT_0.9.9)(64bit)libunistring.so.2()(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)rtld(GNU_HASH)samba-client-libssssd-commonsssd-common-pacsssd-krb5-common2.7.3-5.0.1.el82.7.3-5.0.1.el83.0.4-14.6.0-14.0-15.2-14.17.2-2.el82.7.3-5.0.1.el82.7.3-5.0.1.el82.7.3-5.0.1.el8sssd1.10.0-8.beta24.14.3c_cc@bbγba@baZ@a6aɪa@aKa@`.`@`[` @`&m`@`x@__@_@_#___[@_?@_-B@_@_@^@^@^^(@^oj@^ku^Y^S^J@^C^0"@^0"@^0"@^@^@^@]f@]f@] @] @]+]]Y]Y]|@]o@]k]k]Y=]Y=]Y=]Y=]Y=]M`@]M`@]M`@]D%]D%]D%]9]9]]]@]@\\`@\]o@\\\\\\\@\>@\>@\>@\\\\l@[Ѱ@[^[[ā@[ā@[ā@[;@[;@[;@[;@[;@[[@[@[@[@[@[t[#@[#@[@[@[qr[;e@["XZZ&Zw@Z Z$Zz@ZyZiZiZWQZWQZ%8Z@Z@YZ@Y@YYzYKYyYw2YRHYRHY@X-XX~@XO@X}@X@XX6@XWXOXXWW@WWW@WWv[@Wi,@W5W@W@V3VVVvV%@VqR@VO @V<@V/g@V$@V @V @UpU|@U4@UUUU@UzUzUzUL@UL@U.RU@TTT@T~T8TܕT@T@TTTq@T@T@Tp@TA@TuTto@TG@TD@TT @S0SS@S.SP@S @Sg@SrS!@SkqSkqSG@SFSCS!SSRRpRpR^R[RSRNREs@RD!R@R@RNQB@Q@QQQکQQQo@Q)@Q@QQ@Q@QbQbQV@Q'@QQQQnQZ@QU@Q0@QQQ@Q@QQ @QQh@PP@P@P@Pz@Pz@PqnPl(PaPaPS@PH@PDPM>M2@MMzMx@Mj - 2.7.3-5Alexey Tikhonov - 2.7.3-4Alexey Tikhonov - 2.7.3-3Alexey Tikhonov - 2.7.3-2Alexey Tikhonov - 2.7.3-1Alexey Tikhonov - 2.7.2-1Alexey Tikhonov - 2.7.0-2Alexey Tikhonov - 2.6.2-3Alexey Tikhonov - 2.6.2-2Alexey Tikhonov - 2.6.2-1Alexey Tikhonov - 2.6.1-2Alexey Tikhonov - 2.6.1-1Alexey Tikhonov - 2.5.2-2Alexey Tikhonov - 2.5.2-1Alexey Tikhonov - 2.5.1-2Alexey Tikhonov - 2.5.1-1Alexey Tikhonov - 2.5.0-1Alexey Tikhonov - 2.4.0-8Alexey Tikhonov - 2.4.0-7Alexey Tikhonov - 2.4.0-6Alexey Tikhonov - 2.4.0-5Alexey Tikhonov - 2.4.0-4Alexey Tikhonov - 2.4.0-3Alexey Tikhonov - 2.4.0-2Alexey Tikhonov - 2.4.0-1Alexey Tikhonov - 2.3.0-9Alexey Tikhonov - 2.3.0-8Alexey Tikhonov - 2.3.0-7Alexey Tikhonov - 2.3.0-6Alexey Tikhonov - 2.3.0-5Alexey Tikhonov - 2.3.0-4Alexey Tikhonov - 2.3.0-3Alexey Tikhonov - 2.3.0-2Alexey Tikhonov - 2.3.0-1Alexey Tikhonov - 2.2.3-19Alexey Tikhonov - 2.2.3-19Michal Židek - 2.2.3-18Alexey Tikhonov - 2.2.3-17Alexey Tikhonov - 2.2.3-16Michal Židek - 2.2.3-15Michal Židek - 2.2.3-14Michal Židek - 2.2.3-13Michal Židek - 2.2.3-12Michal Židek - 2.2.3-11Michal Židek - 2.2.3-10Michal Židek - 2.2.3-9Michal Židek - 2.2.3-8Michal Židek - 2.2.3-7Michal Židek - 2.2.3-6Michal Židek - 2.2.3-5Michal Židek - 2.2.3-4Michal Židek - 2.2.3-3Michal Židek - 2.2.3-2Michal Židek - 2.2.3-1Michal Židek - 2.2.2-1Michal Židek - 2.2.0-19Michal Židek - 2.2.0-18Michal Židek - 2.2.0-17Michal Židek - 2.2.0-16Michal Židek - 2.2.0-15Michal Židek - 2.2.0-14Michal Židek - 2.2.0-13Michal Židek - 2.2.0-12Michal Židek - 2.2.0-11Michal Židek - 2.2.0-10Michal Židek - 2.2.0-9Michal Židek - 2.2.0-8Michal Židek - 2.2.0-7Michal Židek - 2.2.0-6Jakub Hrozek - 2.2.0-5Jakub Hrozek - 2.2.0-4Jakub Hrozek - 2.2.0-3Jakub Hrozek - 2.2.0-2Michal Židek - 2.2.0-1Michal Židek - 2.1.0-1Michal Židek - 2.0.0-45Jakub Hrozek - 2.0.0-43Michal Židek - 2.0.0-42Michal Židek - 2.0.0-41Michal Židek - 2.0.0-40Michal Židek - 2.0.0-39Michal Židek - 2.0.0-38Michal Židek - 2.0.0-36Michal Židek - 2.0.0-35Michal Židek - 2.0.0-34Michal Židek - 2.0.0-33Michal Židek - 2.0.0-32Michal Židek - 2.0.0-31Michal Židek - 2.0.0-30Michal Židek - 2.0.0-29Michal Židek - 2.0.0-28Michal Židek - 2.0.0-27Michal Židek - 2.0.0-26Michal Židek - 2.0.0-25Michal Židek - 2.0.0-24Jakub Hrozek - 2.0.0-23Jakub Hrozek - 2.0.0-22Jakub Hrozek - 2.0.0-21Jakub Hrozek - 2.0.0-20Jakub Hrozek - 2.0.0-19Jakub Hrozek - 2.0.0-18Jakub Hrozek - 2.0.0-17Jakub Hrozek - 2.0.0-16Jakub Hrozek - 2.0.0-15Jakub Hrozek - 2.0.0-14Jakub Hrozek - 2.0.0-13Jakub Hrozek - 2.0.0-12Jakub Hrozek - 2.0.0-11Jakub Hrozek - 2.0.0-10Jakub Hrozek - 2.0.0-9Jakub Hrozek - 2.0.0-8Jakub Hrozek - 2.0.0-7Jakub Hrozek - 2.0.0-6Jakub Hrozek - 2.0.0-5Jakub Hrozek - 2.0.0-4Jakub Hrozek - 2.0.0-3Jakub Hrozek - 2.0.0-2Fabiano Fidêncio - 2.0.0-1Tomas Orsava - 1.16.2-2Fabiano Fidêncio - 1.16.2-1Fabiano Fidêncio - 1.16.1-3Fabiano Fidêncio - 1.16.1-2Fabiano Fidêncio - 1.16.1-1Lukas Slebodnik - 1.16.0-13Fabiano Fidêncio - 1.16.0-12Lukas Slebodnik - 1.16.0-11Lukas Slebodnik - 1.16.0-10Igor Gnatenko - 1.16.0-9Lukas Slebodnik - 1.16.0-8Lukas Slebodnik - 1.16.0-7Björn Esser - 1.16.0-6Lukas Slebodnik - 1.16.0-5Lukas Slebodnik - 1.16.0-4Jakub Hrozek - 1.16.0-3Lukas Slebodnik - 1.16.0-2Lukas Slebodnik - 1.16.0-1Lukas Slebodnik - 1.15.3-5Lukas Slebodnik - 1.15.3-4Lukas Slebodnik - 1.15.3-3Fedora Release Engineering - 1.15.3-2Lukas Slebodnik - 1.15.3-1Lukas Slebodnik - 1.15.3-0.beta.5Lukas Slebodnik - 1.15.3-0.beta.4Lukas Slebodnik - 1.15.3-0.beta.3Lukas Slebodnik - 1.15.3-0.beta.2Lukas Slebodnik - 1.15.3-0.beta.1Lukas Slebodnik - 1.15.2-1Lukas Slebodnik - 1.15.1-1Jakub Hrozek - 1.15.0-4Lukas Slebodnik - 1.15.0-3Fedora Release Engineering - 1.15.0-2Lukas Slebodnik - 1.15.0-1Miro Hrončok - 1.14.2-3Lukas Slebodnik - 1.14.2-2Lukas Slebodnik - 1.14.2-1Lukas Slebodnik - 1.14.1-4Lukas Slebodnik - 1.14.1-3Lukas Slebodnik - 1.14.1-2Lukas Slebodnik - 1.14.1-1Stephen Gallagher - 1.14.0-5Fedora Release Engineering - 1.14.0-4Lukas Slebodnik - 1.14.0-3Lukas Slebodnik - 1.14.0-2.betaLukas Slebodnik - 1.14.0-1.alphaLukas Slebodnik - 1.13.4-3Lukas Slebodnik - 1.13.4-2Lukas Slebodnik - 1.13.4-1Lukas Slebodnik - 1.13.3-6Lukas Slebodnik - 1.13.3-5Fedora Release Engineering - 1.13.3-4Lukas Slebodnik - 1.13.3-3Lukas Slebodnik - 1.13.3-2Lukas Slebodnik - 1.13.3-1Lukas Slebodnik - 1.13.2-1Robert Kuska - 1.13.1-5Lukas Slebodnik - 1.13.1-4Lukas Slebodnik - 1.13.1-3Lukas Slebodnik - 1.13.1-2Lukas Slebodnik - 1.13.1-1Lukas Slebodnik - 1.13.0-6Lukas Slebodnik - 1.13.0-5Lukas Slebodnik - 1.13.0-4Lukas Slebodnik - 1.13.0-3Lukas Slebodnik - 1.13.0-2.alphaLukas Slebodnik - 1.13.0-1.alphaFedora Release Engineering - 1.12.5-4Lukas Slebodnik - 1.12.5-3Lukas Slebodnik - 1.12.5-2Lukas Slebodnik - 1.12.5-1Lukas Slebodnik - 1.12.4-8Lukas Slebodnik - 1.12.4-7Lukas Slebodnik - 1.12.4-6Lukas Slebodnik - 1.12.4-5Jakub Hrozek - 1.12.4-4Jakub Hrozek - 1.12.4-3Lukas Slebodnik - 1.12.4-2Lukas Slebodnik - 1.12.4-1Lukas Slebodnik - 1.12.3-7Lukas Slebodnik - 1.12.3-6Jakub Hrozek - 1.12.3-5Lukas Slebodnik - 1.12.3-4Lukas Slebodnik - 1.12.3-3Lukas Slebodnik - 1.12.3-2Lukas Slebodnik - 1.12.3-1Lukas Slebodnik - 1.12.2-8Sumit Bose - 1.12.2-7Lukas Slebodnik - 1.12.2-6Jakub Hrozek - 1.12.2-5Jakub Hrozek - 1.12.2-4Jakub Hrozek - 1.12.2-3Jakub Hrozek - 1.12.2-2Jakub Hrozek - 1.12.2-1Jakub Hrozek - 1.12.1-2Jakub Hrozek - 1.12.1-1Jakub Hrozek - 1.12.0-7Fedora Release Engineering - 1.12.0-6Stephen Gallagher 1.12.0-5Jakub Hrozek - 1.12.0-1Fedora Release Engineering - 1.12.0-4.beta2Jakub Hrozek - 1.12.0-1.beta2Jakub Hrozek - 1.12.0-2.beta1Jakub Hrozek - 1.12.0-1.beta1Jakub Hrozek - 1.11.5.1-4Stephen Gallagher - 1.11.5.1-3Stephen Gallagher - 1.11.5.1-2Jakub Hrozek - 1.11.5.1-1Stephen Gallagher 1.11.5-2Jakub Hrozek - 1.11.5-1Sumit Bose - 1.11.4-3Jakub Hrozek - 1.11.4-2Jakub Hrozek - 1.11.4-1Jakub Hrozek - 1.11.3-2Jakub Hrozek - 1.11.3-1Jakub Hrozek - 1.11.2-1Sumit Bose - 1.11.1-5Sumit Bose - 1.11.1-4Jakub Hrozek - 1.11.1-3Jakub Hrozek - 1.11.1-2Jakub Hrozek - 1.11.1-1Jakub Hrozek - 1.11.0-3Jakub Hrozek - 1.11.0-2Jakub Hrozek - 1.11.0-1Jakub Hrozek - 1.11.0-0.4.beta2Fedora Release Engineering - 1.11.0-0.3.beta2Jakub Hrozek - 1.11.0.2beta2Jakub Hrozek - 1.11.0.1beta2Jakub Hrozek - 1.10.1-1Jakub Hrozek - 1.10.0-17Stephen Gallagher - 1.10.0-16Stephen Gallagher - 1.10.0-15Stephen Gallagher - 1.10.0-14Jakub Hrozek - 1.10.0-13Dan Horák - 1.10.0-12.beta2Jakub Hrozek - 1.10.0-11.beta2Jakub Hrozek - 1.10.0-10.beta2Jakub Hrozek - 1.10.0-9.beta2Jakub Hrozek - 1.10.0-8.beta1Jakub Hrozek - 1.10.0-8.beta2Jakub Hrozek - 1.10.0-7.beta1Jakub Hrozek - 1.10.0-6.beta1Jakub Hrozek - 1.10.0-5.beta1Jakub Hrozek - 1.10.0-4.beta1Jakub Hrozek - 1.10.0-3.beta1Jakub Hrozek - 1.10.0-2.alpha1Jakub Hrozek - 1.10.0-1.alpha1Jakub Hrozek - 1.9.5-10Stephen Gallagher - 1.9.4-9Jakub Hrozek - 1.9.4-8Jakub Hrozek - 1.9.4-7Jakub Hrozek - 1.9.4-6Jakub Hrozek - 1.9.4-5Jakub Hrozek - 1.9.4-4Jakub Hrozek - 1.9.4-3Jakub Hrozek - 1.9.4-2Jakub Hrozek - 1.9.4-1Jakub Hrozek - 1.9.3-1Jakub Hrozek - 1.9.2-5Jakub Hrozek - 1.9.2-4Jakub Hrozek - 1.9.2-3Jakub Hrozek - 1.9.2-2Jakub Hrozek - 1.9.2-1Jakub Hrozek - 1.9.1-1Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-23Jakub Hrozek - 1.9.0-22.rc1Jakub Hrozek - 1.9.0-21.beta7Jakub Hrozek - 1.9.0-20.beta6Jakub Hrozek - 1.9.0-19.beta6Jakub Hrozek - 1.9.0-18.beta6Jakub Hrozek - 1.9.0-17.beta6Jakub Hrozek - 1.9.0-16.beta6Jakub Hrozek - 1.9.0-14.beta6Jakub Hrozek - 1.9.0-13.beta6Fedora Release Engineering - 1.9.0-13.beta5Jakub Hrozek - 1.9.0-12.beta5Stephen Gallagher - 1.9.0-11.beta4Jakub Hrozek - 1.9.0-10.beta4Jakub Hrozek - 1.9.0-9.beta4Stephen Gallagher - 1.9.0-8.beta3Stephen Gallagher - 1.9.0-7.beta2Stephen Gallagher - 1.9.0-6.beta2Stephen Gallagher - 1.9.0-5.beta2Stephen Gallagher - 1.9.0-4.beta1Stephen Gallagher - 1.9.0-3.beta1Stephen Gallagher - 1.9.0-2.beta1Stephen Gallagher - 1.9.0-1.beta1Stephen Gallagher - 1.8.3-11Stephen Gallagher - 1.8.2-10Stephen Gallagher - 1.8.1-9Stephen Gallagher - 1.8.1-8Stephen Gallagher - 1.8.1-7Stephen Gallagher - 1.8.0-6Stephen Gallagher - 1.8.0-5.beta3Stephen Gallagher - 1.8.0-4.beta3Petr Pisar - 1.8.0-3.beta2Stephen Gallagher - 1.8.0-1.beta2Stephen Gallagher - 1.8.0-1.beta1Stephen Gallagher - 1.7.0-5Stephen Gallagher - 1.7.0-4Stephen Gallagher - 1.7.0-3Fedora Release Engineering - 1.7.0-2Stephen Gallagher - 1.7.0-1Stephen Gallagher - 1.6.4-1Stephen Gallagher - 1.6.3-5Stephen Gallagher - 1.6.3-4Jakub Hrozek - 1.6.3-3Stephen Gallagher - 1.6.3-2Stephen Gallagher - 1.6.3-1Fedora Release Engineering - 1.6.2-5Stephen Gallagher - 1.6.2-4Stephen Gallagher - 1.6.2-3Stephen Gallagher - 1.6.2-2Stephen Gallagher - 1.6.2-1Stephen Gallagher - 1.6.1-1Stephen Gallagher - 1.6.0-2Stephen Gallagher - 1.6.0-1Stephen Gallagher - 1.5.11-2Stephen Gallagher - 1.5.10-1Stephen Gallagher - 1.5.9-1Stephen Gallagher - 1.5.8-1Stephen Gallagher - 1.5.7-3Stephen Gallagher - 1.5.7-2Stephen Gallagher - 1.5.7-1Stephen Gallagher - 1.5.6.1-1Stephen Gallagher - 1.5.6-1Stephen Gallagher - 1.5.5-5Stephen Gallagher - 1.5.5-4Stephen Gallagher - 1.5.5-3Stephen Gallagher - 1.5.5-2Stephen Gallagher - 1.5.5-1Stephen Gallagher - 1.5.4-1Stephen Gallagher - 1.5.3-2Stephen Gallagher - 1.5.3-1Stephen Gallagher - 1.5.2-1Simo Sorce - 1.5.1-9Stephen Gallagher - 1.5.1-8Stephen Gallagher - 1.5.1-7Stephen Gallagher - 1.5.1-6Stephen Gallagher - 1.5.1-5Fedora Release Engineering - 1.5.1-4Stephen Gallagher - 1.5.1-3Stephen Gallagher - 1.5.1-2Stephen Gallagher - 1.5.1-1Stephen Gallagher - 1.5.0-2Stephen Gallagher - 1.5.0-1Stephen Gallagher - 1.4.1-3Stephen Gallagher - 1.4.1-2Stephen Gallagher - 1.4.1-1Stephen Gallagher - 1.4.0-2Stephen Gallagher - 1.4.0-1Stephen Gallagher - 1.3.0-35Stephen Gallagher - 1.3.0-34Stephen Gallagher - 1.3.0-33Stephen Gallagher - 1.3.0-32Stephen Gallagher - 1.3.0-31Stephen Gallagher - 1.3.0-30David Malcolm - 1.2.91-21Stephen Gallagher - 1.2.91-20Stephen Gallagher - 1.2.1-15Stephen Gallagher - 1.2.0-12Stephen Gallagher - 1.1.92-11Stephen Gallagher - 1.1.91-10Simo Sorce - 1.1.1-3Stephen Gallagher - 1.1.1-1Stephen Gallagher - 1.1.0-2Stephen Gallagher - 1.1.0-1.pre20100317git0ea7f19Stephen Gallagehr - 1.0.5-2Stephen Gallagher - 1.0.5-1Stephen Gallagher - 1.0.4-1Stephen Gallagher - 1.0.3-1Stephen Gallagher - 1.0.2-1Stephen Gallagher - 1.0.1-1Stephen Gallagher - 1.0.0-2Stephen Gallagher - 1.0.0-1Stephen Gallagher - 0.99.1-1Stephen Gallagher - 0.99.0-1Stephen Gallagher - 0.7.1-1Stephen Gallagher - 0.7.0-2Stephen Gallagher - 0.7.0-1Stephen Gallagher - 0.6.1-2Stephen Gallagher - 0.6.1-1Stephen Gallagher - 0.6.0-1Sumit Bose - 0.6.0-0Simo Sorce - 0.5.0-0Jakub Hrozek - 0.4.1-4Fedora Release Engineering - 0.4.1-3Simo Sorce - 0.4.1-2Simo Sorce - 0.4.1-1Simo Sorce - 0.4.1-0Simo Sorce - 0.3.2-2Jakub Hrozek - 0.3.2-1Simo Sorce - 0.3.1-2Simo Sorce - 0.3.1-1Simo Sorce - 0.3.0-2Simo Sorce - 0.3.0-1Simo Sorce - 0.2.1-1Simo Sorce - 0.2.0-1Jakub Hrozek - 0.1.0-5.20090309git691c9b3Jakub Hrozek - 0.1.0-4Sumit Bose - 0.1.0-3Jakub Hrozek - 0.1.0-2Stephen Gallagher - 0.1.0-1- Related: rhbz#2132051 - Rebase Samba to the the latest 4.17.x release Rebuild against Samba rebase.- Resolves: rhbz#2116395 - NFS krb5 mount failed as "access denied" after test accessing a same file on krb5 nfs mount with multiple uids simultaneously since sssd-2.7.3-1.el8- Resolves: rhbz#2116395 - NFS krb5 mount failed as "access denied" after test accessing a same file on krb5 nfs mount with multiple uids simultaneously since sssd-2.7.3-1.el8 - Resolves: rhbz#2119726 - sssctl analyze --logdir option requires sssd to be configured - Resolves: rhbz#2120669 - Incorrect request ID tracking from responder to backend- Resolves: rhbz#2116488 - virsh command will hang after the host run several auto test cases - Resolves: rhbz#2116486 - [regression] sssctl analyze fails to parse PAM related sssd logs - Resolves: rhbz#2116487 - cache_req_data_set_hybrid_lookup: cache_req_data should never be NULL- Resolves: rhbz#2069379 - Rebase SSSD for RHEL 8.7 - Resolves: rhbz#2063016 - [sssd] RHEL 8.7 Tier 0 Localization- Resolves: rhbz#2069379 - Rebase SSSD for RHEL 8.7 - Resolves: rhbz#2098620 - sdap_nested_group_deref_direct_process() triggers internal watchdog for large data sets - Resolves: rhbz#2098619 - [Improvement] add SSSD support for more than one CRL PEM file name with parameters certificate_verification and crl_file - Resolves: rhbz#2088817 - pam_sss_gss ceased to work after upgrade to 8.6 - Resolves: rhbz#2098616 - Add idp authentication indicator in man page of sssd.conf - Resolves: rhbz#2056035 - 'getent hosts' not return hosts if they have more than one CN in LDAP - Resolves: rhbz#2098615 - Regression "Missing internal domain data." when setting ad_domain to incorrect - Resolves: rhbz#2098617 - Harden kerberos ticket validation - Resolves: rhbz#2087744 - Unable to lookup AD user if the AD group contains '@' symbol- Resolves: rhbz#2069379 - Rebase SSSD for RHEL 8.7 - Resolves: rhbz#2026799 - SSSD authenticating to LDAP with obfuscated password produces Invalid authtoken type message causing sssd_be to go offline (cross inter_ference of different provider plugins options) - Resolves: rhbz#2033347 - sssd error triggers backtrace : [write_krb5info_file_from_fo_server] (0x0020): [RID#73501] There is no server that can be written into kdc info file. - Resolves: rhbz#2056483 - [RFE] Add sssd internal krb5 plugin for authentication against external IdP via OAuth2 - Resolves: rhbz#2062689 - [Improvement] Add user and group version of sss_nss_getorigbyname() - Resolves: rhbz#2065692 - [RHEL8] Ship new sub-package called sssd-idp into sssd - Resolves: rhbz#2072050 - sssd_nss exiting (due to missing 'sssd' local user) making SSSD service to restart in a loop - Resolves: rhbz#2072931 - Use right sdap_domain in ad_domain_info_send - Resolves: rhbz#2087088 - sssd does not enforce smartcard auth for kde screen locker - Resolves: rhbz#2087744 - Unable to lookup AD user if the AD group contains '@' symbol - Resolves: rhbz#2087745 - 2FA prompting setting ineffective - Resolves: rhbz#2087746 - sssd fails GPO-based access if AD have setup with Japanese language- Resolves: rhbz#2039892 - 2.6.2 regression: Daemon crashes when resolving AD user names - Resolves: rhbz#1859315 - sssd does not use kerberos port that is set. - Resolves: rhbz#2030386 - sssd-kcm has requirement on krb5 symbol "krb5_unmarshal_credentials" only available in latest RHEL8.5 krb5 libraries - Resolves: rhbz#2035245 - AD Domain in the AD Forest Missing after sssd latest update - Resolves: rhbz#2017301 - [sssd] RHEL 8.6 Tier 0 Localization- Resolves: rhbz#2013260 - [RHEL8] Add ability to parse child log files (additional patch)- Resolves: rhbz#2011216 - Rebase SSSD for RHEL 8.6 - Resolves: rhbz#2013260 - [RHEL8] Add ability to parse child log files - Resolves: rhbz#2030386 - sssd-kcm has requirement on krb5 symbol "krb5_unmarshal_credentials" only available in latest RHEL8.5 krb5 libraries - Resolves: rhbz#1859315 - sssd does not use kerberos port that is set. - Resolves: rhbz#1961182 - Passwordless (GSSAPI) SSH not working due to missing "includedir /var/lib/sss/pubconf/krb5.include.d" directive in /etc/krb5.conf - Resolves: rhbz#2008829 - sssd_be segfault due to empty forest root name - Resolves: rhbz#2012263 - pam responder does not call initgroups to refresh the user entry - Resolves: rhbz#2012308 - Add client certificate validation D-Bus API - Resolves: rhbz#2012327 - Groups are missing while performing id lookup as SSSD switching to offline mode due to the wrong domain name in the ldap-pings(netlogon). - Resolves: rhbz#2013028 - [RFE] Health and Support Analyzer: Add sssctl sub-command to select and display a single request from the logs - Resolves: rhbz#2013259 - [RHEL8] Add tevent chain ID logic into responders - Resolves: rhbz#2017301 - [sssd] RHEL 8.6 Tier 0 Localization- Rebuild due to rhbz#2013596 - Rebase Samba to the the latest 4.15.x release- Resolves: rhbz#2011216 - Rebase SSSD for RHEL 8.6 - Resolves: rhbz#1968340 - 'exclude_groups' option provided in SSSD for session recording (tlog) doesn't work as expected - Resolves: rhbz#1952569 - SSSD should use "hidden" temporary file in its krb locator - Resolves: rhbz#1917970 - proxy provider: secondary group is showing in sssd cache after group is removed - Resolves: rhbz#1636002 - socket-activated services start as the sssd user and then are unable to read the confdb - Resolves: rhbz#2021196 - Make backtrace less "chatty" (avoid duplicate backtraces) - Resolves: rhbz#2018432 - 2.5.x based SSSD adds more AD domains than it should based on the configuration file (not trusted and from a different forest) - Resolves: rhbz#2015070 - Consistency in defaults between OpenSSH and SSSD - Resolves: rhbz#2013297 - disabled root ad domain causes subdomains to be marked offline - Resolves: rhbz#2013294 - Lookup with fully-qualified name does not work with 'cache_first = True' - Resolves: rhbz#2013218 - autofs lookups for unknown mounts are delayed for 50s - Resolves: rhbz#2013028 - [RFE] Health and Support Analyzer: Add sssctl sub-command to select and display a single request from the logs - Resolves: rhbz#2013024 - Add support for CKM_RSA_PKCS in smart card authentication. - Resolves: rhbz#2013006 - [RFE] support subid ranges managed by FreeIPA - Resolves: rhbz#2012308 - Add client certificate validation D-Bus API - Resolves: rhbz#2012122 - tps tests fail with cross dependency on sssd debuginfo package: removal of 'sssd-libwbclient-debuginfo' is missing- Resolves: rhbz#1975169 - EMBARGOED CVE-2021-3621 sssd: shell command injection in sssctl [rhel-8] - Resolves: rhbz#1962042 - [sssd] RHEL 8.5 Tier 0 Localization- Resolves: rhbz#1947671 - Rebase SSSD for RHEL 8.5 - Resolves: rhbz#1693379 - sssd_be and sss_cache too heavy on CPU - Resolves: rhbz#1909373 - Missing search index for `originalADgidNumber` - Resolves: rhbz#1954630 - [RFE] Improve debug messages by adding a unique tag for each request the backend is handling - Resolves: rhbz#1936891 - SSSD Error Msg Improvement: Bad address - Resolves: rhbz#1364596 - sssd still showing ipa user after removed from last group - Resolves: rhbz#1979404 - Changes made to /etc/pam.d/sssd-shadowutils are overwritten back to default on sssd-common package upgrade- Resolves: rhbz#1974257 - 'debug_microseconds' config option is broken - Resolves: rhbz#1936902 - SSSD Error Msg Improvement: Invalid argument - Resolves: rhbz#1627112 - RFE: Kerberos ticket renewal for sssd-kcm (additional patches and rebuild)- Resolves: rhbz#1947671 - Rebase SSSD for RHEL 8.5 - Resolves: rhbz#1942387 - Wrong default debug level of sssd tools - Resolves: rhbz#1917444 - SSSD Error Msg Improvement: Server resolution failed: [2]: No such file or directory - Resolves: rhbz#1917511 - SSSD Error Msg Improvement: Failed to resolve server 'server.example.com': Error reading file - Resolves: rhbz#1917535 - sssd.conf man page: parameter dns_resolver_server_timeout and dns_resolver_op_timeout - Resolves: rhbz#1940509 - [RFE] Health and Support Analyzer: Link frontend to backend requests - Resolves: rhbz#1649464 - auto_private_groups not working as expected with posix ipa/ad trust - Resolves: rhbz#1925514 - [RFE] Randomize the SUDO timeouts upon reconnection - Resolves: rhbz#1961215 - Invalid sssd-kcm return code if requested operation is not found - Resolves: rhbz#1837090 - SSSD fails nss_getby_name for IPA user with SID if the user has user private group - Resolves: rhbz#1879869 - sudo commands incorrectly exports the KRB5CCNAME environment variable - Resolves: rhbz#1962550 - sss_pac_make_request fails on systems joined to Active Directory. - Resolves: rhbz#1737489 - [RFE] SSSD should honor default Kerberos settings (keytab name) in /etc/krb5.conf- Resolves: rhbz#1947671 - Rebase SSSD for RHEL 8.5 - Resolves: rhbz#1930535 - [abrt] [faf] sssd: monitor_service_shutdown(): /usr/sbin/sssd killed by 11 - Resolves: rhbz#1942387 - Wrong default debug level of sssd tools - Resolves: rhbz#1945888 - Inconsistant debug level for connection logging - Resolves: rhbz#1948657 - pam_sss_gss.so doesn't work with large kerberos tickets - Resolves: rhbz#1949149 - [RFE] Poor man's backtrace - Resolves: rhbz#1920500 - Authentication handshake (ldap_install_tls()) fails due to underlying openssl operation failing with EINTR - Resolves: rhbz#1923964 - [RFE] SSSD Error Msg Improvement: write_krb5info_file failed, authentication might fail. - Resolves: rhbz#1928648 - SSSD logs improvements: clarify which config option applies to each timeout in the logs - Resolves: rhbz#1632159 - sssd-kcm starts successfully for non existent socket_path - Resolves: rhbz#1627112 - RFE: Kerberos ticket renewal for sssd-kcm - Resolves: rhbz#1925505 - [RFE] improve the sssd refresh timers for SUDO queries - Resolves: rhbz#1925514 - [RFE] Randomize the SUDO timeouts upon reconnection - Resolves: rhbz#1925561 - sssd-ldap(5) does not report how to disable the SUDO smart queries - Resolves: rhbz#1925621 - document impact of indices and of scope on performance of LDAP queries - Resolves: rhbz#1855320 - [RFE] RHEL8 sssd: inheritance of the case_sensitive parameter for subdomains. - Resolves: rhbz#1925608 - [RFE] make 'random_offset' addon to 'offline_timeout' option configurable - Resolves: rhbz#1447945 - man page / docs update required: if two certificate matching rules with the same priority match only one is used - Resolves: rhbz#1703436 - sssd not thread-safe in innetgr() - Resolves: rhbz#1713143 - SSSD does not translate the 2FA text labels("first factor" / "second factor") on GDM login and screensaver unlock screen - Resolves: rhbz#1888977 - sss_override: Usage limitations clarification in man page - Resolves: rhbz#1890177 - Clarify "single_prompt" option in "PROMPTING CONFIGURATION SECTION" section of sssd.conf man page - Resolves: rhbz#1902280 - fix sss_cache to also reset cached timestamp - Resolves: rhbz#1935683 - SSSD not detecting subdomain from AD forest (RHEL 8.3) - Resolves: rhbz#1937919 - IPA missing secondary IPA Posix groups in latest sssd 1.16.5-10.el7_9.7 - Resolves: rhbz#1944665 - No gpo found and ad_gpo_implicit_deny set to True still permits user login - Resolves: rhbz#1919942 - sss_override does not take precedence over override_homedir directive- Resolves: rhbz#1926622 - Add support to verify authentication indicators in pam_sss_gss - Resolves: rhbz#1926454 - First smart refresh query contains modifyTimestamp even if the modifyTimestamp is 0. - Resolves: rhbz#1893159 - Default debug level should report all errors / failures (additional patch)- Resolves: rhbz#1920001 - Do not add '%' to group names already prefixed with '%' in IPA sudo rules - Resolves: rhbz#1918433 - sssd unable to lookup certmap rules - Resolves: rhbz#1917382 - [abrt] [faf] sssd: dp_client_handshake_timeout(): /usr/libexec/sssd/sssd_be killed by 11- Resolves: rhbz#1113639 - autofs: return a connection failure until maps have been fetched - Resolves: rhbz#1915395 - Memory leak in the simple access provider - Resolves: rhbz#1915319 - SSSD: SBUS: failures during servers startup - Resolves: rhbz#1893698 - [RFE] sudo kerberos authentication (additional patches)- Resolves: rhbz#1631410 - Can't login with smartcard with multiple certs having same ID value - Resolves: rhbz#1884213 - [RFE] add offline_timeout_max config option to control offline interval backoff (additional patches) - Resolves: rhbz#1893159 - Default debug level should report all errors / failures - Resolves: rhbz#1893698 - [RFE] sudo kerberos authentication- Resolves: rhbz#1876514 - High CPU utilization by the sssd_kcm process - Resolves: rhbz#1876658 - filter_groups option partially filters the group from 'id' output of the user because gidNumber still appears in 'id' output [RHEL 8] - Resolves: rhbz#1895001 - User lookups over the InfoPipe responder fail intermittently- Resolves: rhbz#1900733 - sssd_be segfaults at be_refresh_get_values_ex() due to NULL ptrs in results of sysdb_search_with_ts_attr() - Resolves: rhbz#1876514 - High CPU utilization by the sssd_kcm process - Resolves: rhbz#1894540 - sssd component logging is now too generic in syslog/journal - Resolves: rhbz#1828483 - filtered ID is appearing due to strange negative cache behavior- This is to bump version to allow rebuild against rebased libldb.- Resolves: rhbz#1881992 - Rebase SSSD for RHEL 8.4 - Resolves: rhbz#1722842 - sssd-kcm does not store TGT with ssh login using GSSAPI - Resolves: rhbz#1734040 - sssd crash in ad_get_account_domain_search() - Resolves: rhbz#1784459 - [RFE] tlog does not allow to exclude some users from session recording - Resolves: rhbz#1791300 - sporadic sssd_be crash on s390x - Resolves: rhbz#1817122 - 'getent group ldapgroupname' doesn't show any LDAP users or some LDAP users when 'rfc2307bis' schema is used with SSSD. - Resolves: rhbz#1819012 - [RFE] Improve AD site discovery process - Resolves: rhbz#1846778 - [RfE] `/usr/libexec/sssd/p11_child` cmdline argument '--nssdb' might be confusing when SSSD was built against OpenSSL - Resolves: rhbz#1873715 - automount sssd issue when 2 automount maps have the same key (one un uppercase, one in lowercase) - Resolves: rhbz#1879860 - correction in sssd.conf:pam_response_filter man page - Resolves: rhbz#1881336 - [RFE] sssd-ldap man page modification for parameter "ldap_referrals" - Resolves: rhbz#1883488 - [RfE] Implement a new sssd.conf option to disable the filter for AD domain local groups from trusted domains - Resolves: rhbz#1884196 - [RFE] Add "enabled" option to domain section in config file - Resolves: rhbz#1884205 - KCM: Increase client idle timeout to 5 minutes - Resolves: rhbz#1884207 - [RFE] ldap: add new option ldap_library_debug_level - Resolves: rhbz#1884213 - [RFE] add offline_timeout_max config option to control offline interval backoff - Resolves: rhbz#1884281 - Secondary LDAP group go missing from 'id' command - Resolves: rhbz#1884301 - [RFE] dyndns: suport asymmetric auth for nsupdate- Resolves: rhbz#1855323 - When ad_gpo_implicit_deny is True, it is permitting users to login when no gpo is applied- Resolves: rhbz#1868387 - system not enforcing GPO rule restriction. ad_gpo_implicit_deny = True is not working - Resolves: rhbz#1854951 - sss-certmap man page change to add clarification for userPrincipalName attribute from AD schema - Resolves: rhbz#1856861 - False errors/warnings are logged in sssd.log file after enabling 2FA prompting settings in sssd.conf - Resolves: rhbz#1869683 - p11_child: default value of ocsp_dgst == sha256 doesn't conform RFC5019 and has to be changed to sha1- Resolves: rhbz#1723273 - RFE: Add option to specify alternate sssd config file location with "sssctl config-check" command. - Resolves: rhbz#1780404 - smartcards: special characters must be escaped when building search filter- Resolves: rhbz#1820574 - [sssd] RHEL 8.3 Tier 0 Localization- Resolves: rhbz#1821719 - sssd (sssd_be) is consuming 100% CPU, partially due to failing mem-cache - Fixed "requires/provides" rpmdiff warning- Resolves: rhbz#1815584 - id_provider = proxy proxy_lib_name = files returns * in password field, breaking PAM authentication - Resolves: rhbz#1794607 - SSSD must be able to resolve membership involving root with files provider - Resolves: rhbz#1803134 - Improve "unlock" time when user session already active- Resolves: rhbz#1829470 - `sssd.api.conf` and `sssd.api.d` should belong to `python-sssdconfig` package - Resolves: rhbz#1544457 - sssd fails to release file descriptor on child logs after receiving HUP - Resolves: rhbz#1824323 - SSSD user filtering is failing on RHEL 8 after "files" provider rebuilds cache - Resolves: rhbz#1827432 - When the passwd or group files are replaced, sssd stops monitoring the file for inotify events, and no updates are triggered - Resolves: rhbz#1835710 - Change the message "Please enter smart card" to "Please insert smart card" on GDM login with smart-card - Resolves: rhbz#1838037 - Oddjob-mkhomedir fails when using NSS compat - Resolves: rhbz#1845904 - gdm smart card authentication does not work shortly after disconnecting from network. - Resolves: rhbz#1845975 - sssd doesn't follow the link order of AD Group Policy Management - Resolves: rhbz#1845980 - sssd is failing to discover other subdomains in the forest if LDAP entries do not contain AD forest root information - Resolves: rhbz#1845987 - Document how to prevent invalid selinux context for default home directories in SSSD-AD direct integration. - Resolves: rhbz#1845994 - GDM failure loop when no user mapped for smart card - Resolves: rhbz#1846003 - GDM password prompt when cert mapped to multiple users and promptusername is False - Resolves: rhbz#1850961 - /usr/share/systemtap/tapset/sssd_functions.stp missing a comma- Resolves: rhbz#Bug 1723273 - RFE: Add option to specify alternate sssd config file location with "sssctl config-check" command.- Resolves: rhbz#1839037 - Rebase SSSD for RHEL 8.3 - Resolves: rhbz#1843872 - sssd 2.3.0 breaks AD auth due to GPO parsing failure - Resolves: rhbz#1834156 - sssd or sssd-ad not updating their dependencies on "yum update" which breaks working- Resolves: rhbz#1580506 - [RFE]: sssd to be able to read smartcard certificate EKU and perform an action based on value when generating SSH key from a certificate (additional patch)- Resolves: rhbz#1810634 - id command taking 1+ minute for returning user information- Resolves: rhbz#1580506 - [RFE]: sssd to be able to read smartcard certificate EKU and perform an action based on value when generating SSH key from a certificate- Resolves: rhbz#1718193 - p11_child should have an option to skip C_WaitForSlotEvent if the PKCS#11 module does not implement it properly- Resolves: rhbz#1792331 - sssd_be crashes when krb5_realm and krb5_server is omitted and auth_provider is krb5- Resolves: rhbz#1754996 - [sssd] Tier 0 Localization- Resolves: rhbz#1767514 - sssd requires timed sudoers ldap entries to be specified up to the seconds- Resolves: rhbz#1713368 - Add sssd-dbus package as a dependency of sssd-tools* Resolves: rhbz#1794016 - sssd_be frequent crash* Resolves: rhbz#1762415 - Force LDAPS over 636 with AD Access Provider* Resolves: rhbz#1583592 - [RFE] Add configurable randomness to SSSD ldap connection timeout* Resolves: rhbz#1783190 - [abrt] [faf] sssd: raise(): /usr/libexec/sssd/sssd_autofs killed by 6* Resolves: rhbz#1785214 - server/be: SIGTERM handling is incorrect* Resolves: rhbz#1785193 - Watchdog implementation or usage is incorrect* Resolves: rhbz#1704199 - pcscd rejecting sssd ldap_child as unauthorized* Resolves: rhbz#1744500 - [Doc]Provide explanation on escape character for match rules sss-certmap* Resolves: rhbz#1781728 - sssctl config-check command does not give proper error messages with line numbers* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release Increasing version number to pick latest libldb* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release PART2: Fix gating issue.* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release* Resolves: rhbz#1753694 - Rebase sssd to the latest upstream release- Resolves: rhbz#1712875 - Old kerberos credentials active instead of valid new ones (kcm)- Resolves: rhbz#1744134 - New defect found in sssd-2.2.0-16.el8 - Also sync. kcm multihost tests with master- Resolves: rhbz#1676385 - pam_sss with smartcard auth does not create gnome keyring - Also apply a patch to fix gating tests issue- Resolves: rhbz#1736861 - dyndns_update = True is no longer enough to get the IP address of the machine updated in IPA upon sssd.service startup- Resolves: rhbz#1736265 - Smart Card auth of local user: endless loop if wrong PIN was provided- Resolves: rhbz#1736796 - sssd config option "default_domain_suffix" should not cause files domain entries to be qualified, this can break sudo access- Resolves: rhbz#1669407 - MAN: Document that PAM stack contains the systemd-user service in the account phase in RHEL-8- Resolves: rhbz#1448094 - sssd-kcm cannot handle big tickets- Resolves: rhbz#1733372 - permission denied on logs when running sssd as non-root user- Resolves: rhbz#1736483 - Sudo prompt for smart card authentication is missing the trailing colon- Resolves: rhbz#1382750 - Conflicting default timeout values- Resolves: rhbz#1699480 - Include libsss_nss_idmap-devel in the Builder repository - This just required a raise in release number and changelog for the record.- Resolves: rhbz#1711318 - p11_child::sign_data() function implementation is not FIPS140 compliant- Resolves: rhbz#1726945 - negative cache does not use values from 'filter_users' config option for known domains- Resolves: rhbz#1729055 - sssd does not pass correct rules to sudo- Resolves: rhbz#1283798 - sssd failover does not work on connecting to non-responsive ldaps:// server- Resolves: rhbz#1725168 - sssd-proxy crashes resolving groups with no members- Resolves: rhbz#1673443 - sssd man pages: The default value of "ldap_user_home_directory" is not mentioned with AD server configuration- Resolves: rhbz#1687281 Rebase sssd in RHEL-8.1 to the latest upstream release- Resolves: rhbz#1687281 Rebase sssd in RHEL-8.1 to the latest upstream release- Replace ARRAY_SIZE with N_ELEMENTS to reflect samba changes. This is done here in order to unblock gating changes before rebase. - Related: rhbz#1682305- Resolves: rhbz#1672780 - gdm login not prompting for username when smart card maps to multiple users- Resolves: rhbz#1645291 - Perform some basic ccache initialization as part of gen_new to avoid a subsequent switch call failure-Resolves: rhbz#1659498 - Re-setting the trusted AD domain fails due to wrong subdomain service name being used-Resolves: rhbz#1660083 - extraAttributes is org.freedesktop.DBus.Error. UnknownProperty: Unknown property- Resolves: rhbz#1661183 - SSSD 2.0 has drastically lower sbus timeout than 1.x, this can result in time outs- Resolves: rhbz#1578014 - sssd does not work under non-root user - Note: Actually the patches were in the 2.0.0-37, this one just adds this changelog because it was missing.- Resolves: rhbz#1652563 - incorrect example in the man page of idmap_sss suggests using * for backend sss- Resolves: rhbz#1466503 - Snippets are not used when sssd.conf does not exist- Resolves: rhbz#1622008 - Error message when IPA server uninstall calls kdestroy caused by KCM returning a wrong error code during the delete operation- Resolves: rhbz#1646113 - Missing concise documentation about valid options for sssd-files-provider- Resolves: rhbz#1625670 - sssd needs to require a newer version of libtalloc and libtevent to avoid an issue in GPO processing- Resolves: 1658813 - PKINIT with KCM does not work- Resolves: 1657898 - SSSD must be cleared/restarted periodically in order to retrieve AD users through IPA Trust- Resolves: rhbz#1655459 - [abrt] [faf] sssd: raise(): /usr/libexec/sssd/proxy_child killed by 6- Resolves: rhbz#1652719 - [SECURITY] sssd returns '/' for emtpy home directories- Resolves: rhbz#1657979 - SSSD's LDAP authentication provider does not work if ID provider is authenticated with GSSAPI- Resolves: rhbz#1657980 - sssd_nss memory leak- Resolves: rhbz#1645566 - SSSD 2.x does not sanitize domain name properly for D-bus, resulting in a crash- Resolves: rhbz#1646168 - sssctl access-report always prints an error message - Resolves: rhbz#1643053 - Restarting the sssd-kcm service should reload the configuration without having to restart the whole sssd - Resolves: rhbz#1640576 - sssctl reports incorrect information about local user's cache entry expiration time - Resolves: rhbz#1645238 - Unable to su to root when logged in as a local user - Resolves: rhbz#1639411 - sssd support for for smartcards using ECC keys- Resolves: rhbz#1642508 - sssd ifp crash when trying to access ipa webui with smart card- Resolves: rhbz#1642372 - SSSD Python getgrouplist API was removed but required for IPA- Related: rhbz#1638150 - session not recording for local user when groups defined - Also add silence a Coverity warning, which is related to rhbz#1637131- Related: rhbz#1637513 - sssd crashes when refreshing expired sudo rules- Add OSCP checks for p11_child - Related: rhbz#1615417 - [RFE] Add Smart Card authentication for local users- Related: rhbz#1638006 - Files: The files provider always enumerates which causes duplicate when running getent passwd- Related: rhbz#1637131 - pam_unix unable to match fully qualified username provided by sssd during smartcard auth using gdm- Related: rhbz#1620123 - [RFE] Add option to specify a Smartcard with a PKCS#11 URI- Related: rhbz#1611011 - Support for "require smartcard for login option"- Related: rhbz#1635595 - Cant login with smartcard with multiple certs- Backport more sbus2 fixes - Related: rhbz#1623878 - crash related to sbus_router_destructor()- Resolves: rhbz#1636397 - SSSD not fetching all sudo rules from AD- Resolves: rhbz#1628122 - Printing incorrect information about domain with sssctl utility- Resolves: rhbz#1626001 - SSSD should log to syslog if a domain is not started due to a misconfiguration- Resolves: rhbz#1624785 - Remove references of sss_user/group/add/del commands in man pages since local provider is deprecated- Resolves: rhbz#1628126 - [abrt] [faf] sssd: unknown function(): /usr/libexec/sssd/sssd_be killed by 11 crash func _dbus_list_unlink- Resolves: rhbz#1628503 - sssd only sets the SELinux login context if it differs from the default- Resolves: rhbz#1625842 id_provider= local causes SSSD to abort startup- Resolves: rhbz#1615590 - Do not rely on "python" for el8- Resolves: rhbz#1615417 - [RFE] Add Smart Card authentication for local users- Resolves: rhbz#1623878 - crash related to sbus_router_destructor()- Resolves: rhbz#1622026 - sssd 2.0 regression: Kerberos authentication fails with the KCM ccache- Resolves: rhbz#1615460 - Rebase SSSD to the latest released version- Switch hardcoded python3 shebangs into the %{__python3} macro- Update to 1.16.2 release - Cleanup unused global definitions - Remove python2 references from the spec file - Resolves: rhbz#1585313 - Kerberos with sssd-kcm is not working on s390x- Resolves: upstream#3684 - A group is not updated if its member is removed with the cleanup task, but the group does not change - Resolves: upstream#3558 - sudo: report error when two rules share cn - Tone down shutdown messages for socket activated responders - IPA: Qualify the externalUser sudo attribute - Resolves: upstream#3550 - refresh_expired_interval does not work with netgrous in 1.15 - Resolves: upstream#3402 - Support alternative sources for the files provider - Resolves: upstream#3646 - SSSD's GPO code ignores ad_site option - Resolves: upstream#3679 - Make nss netgroup requests more robust - Resolves: upstream#3634 - sssctl COMMAND --help fails if sssd is not configured - Resolves: upstream#3469 - extend sss-certmap man page regarding priority processing - Improve docs/debug message about GC detection - Resolves: upstream#3715 - ipa 389-ds-base crash in krb5-libs - k5_copy_etypes list out of bound? - Resolves: upstream#2653 - Group renaming issue when "id_provider = ldap" is set. - Document which principal does the AD provider use - Resolves: upstream#3680 - GPO: SSSD fails to process GPOs If a rule is defined, but contains no SIDs - Resolves: upstream#3520 - Files provider supports only BE_FILTER_ENUM - Resolves: rhbz#1540703 - FreeIPA/SSSD implicit_file sssd_nss error: The Data Provider returned an error [org.freedesktop.sssd.Error.DataProvider.Fatal]- Resolves: upstream#3573 - sssd won't show netgroups with blank domain - Resolves: upstream#3660 - confdb_expand_app_domains() always fails - Resolves: upstream#3658 - Application domain is not interpreted correctly - Resolves: upstream#3687 - KCM: Don't pass a non null terminated string to json_loads() - Resolves: upstream#3386 - KCM: Payload buffer is too small - Resolves: upstream#3666 - Fix usage of str.decode() in our tests - A few KCM misc fixes- New upstream release 1.16.1 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_16_1.html- Resolves: upstream#3621 - backport bug found by static analyzers- Resolves: rhbz#1538643 - SSSD crashes when retrieving a Desktop Profile with no specific host/hostgroup set - Resolves: upstream#3621 - FleetCommander integration must not require capability DAC_OVERRIDE- Resolves: upstream#3618 - selinux_child segfaults in a docker container- Resolves: rhbz#1431153 - sssd: libsss_proxy.so needs to be linked with -ldl- Fix systemd executions/requirements- Fix building on rawhide. Remove -Wl,-z,defs from LDFLAGS- Fix building of sssd-nfs-idmap with libnfsidmap.so.1- Rebuilt for libnfsidmap.so.1- Resolves: upstream#3523 - ABRT crash - /usr/libexec/sssd/sssd_nss in setnetgrent_result_timeout - Resolves: upstream#3588 - sssd_nss consumes more memory until restarted or machine swaps - Resolves: failure in glibc tests https://sourceware.org/bugzilla/show_bug.cgi?id=22530 - Resolves: upstream#3451 - When sssd is configured with id_provider proxy and auth_provider ldap, login fails if the LDAP server is not allowing anonymous binds - Resolves: upstream#3285 - SSSD needs restart after incorrect clock is corrected with AD - Resolves: upstream#3586 - Give a more detailed debug and system-log message if krb5_init_context() failed - Resolves: rhbz#1431153 - SSSD ships a drop-in configuration snippet in /etc/systemd/system - Backport few upstream features from 1.16.1- Resolves: rhbz#1494002 - sssd_nss crashed in cache_req_search_domains_next- Backport extended NSS API from upstream master branch- Resolves: upstream#3529 - sssd-kcm Fix restart during/after upgrade- New upstream release 1.16.0 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_16_0.html- Resolves: rhbz#1499354 - CVE-2017-12173 sssd: unsanitized input when searching in local cache database access on the sock_file system_bus_socket- Resolves: rhbz#1488327 - SELinux is preventing selinux_child from write access on the sock_file system_bus_socket - Resolves: rhbz#1490402 - SSSD does not create /var/lib/sss/deskprofile and fails to download desktop profile data - Resolves: upstream#3485 - getsidbyid does not work with 1.15.3 - Resolves: upstream#3488 - SUDO doesn't work for IPA users on IPA clients after applying ID Views for them in IPA server - Resolves: upstream#3501 - Accessing IdM kerberos ticket fails while id mapping is applied- Backport few upstream patches/fixes- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild- New upstream release 1.15.3 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_3.html- Rebuild with libldb-1.2.0- Fix build issues: Update expided certificate in unit tests- Resolves: rhbz#1445680 - Properly fall back to local Smartcard authentication - Resolves: rhbz#1437199 - sssd-nfs-idmap-1.15.2-1.fc25.x86_64 conflicts with file from package sssd-common-1.15.1-1.fc25.x86_64 - Resolves: rhbz#1063278 - sss_ssh_knownhostsproxy doesn't fall back to ipv4- Fix issue with IPA + SELinux in containers - Resolves: upstream https://fedorahosted.org/sssd/ticket/3297- Backport upstream patches for 1.15.3 pre-release - required for building freeipa-4.5.x in rawhide- New upstream release 1.15.2 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_2.html- New upstream release 1.15.1 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_1.html- Cherry-pick patches from upstream that enable the files provider - Enable the files domain - Retire patch 0501-Partially-revert-CONFIG-Use-default-config-when-none.patch which is superseded by the files domain autoconfiguration - Related: rhbz#1357418 - SSSD fast cache for local users- Add missing %license macro- Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild- New upstream release 1.15.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.15.0- Rebuild for Python 3.6- Resolves: rhbz#1369130 - nss_sss should not link against libpthread - Resolves: rhbz#1392916 - sssd failes to start after update - Resolves: rhbz#1398789 - SELinux is preventing sssd from 'write' accesses on the directory /etc/sssd- New upstream release 1.14.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.2- libwbclient-sssd: update interface to version 0.13- Fix regression with krb5_map_user - Resolves: rhbz#1375552 - krb5_map_user doesn't seem effective anymore - Resolves: rhbz#1349286 - authconfig fails with SSSDConfig.NoDomainError: default if nonexistent domain is mentioned- Backport important patches from upstream 1.14.2 prerelease - Resolves: upstream #3154 - sssd exits if clock is adjusted backwards after boot - Resolves: upstream #3163 - resolving IPA nested user group is broken in 1.14- New upstream release 1.14.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.1- Add workaround patch for RHBZ #1366403- https://fedoraproject.org/wiki/Changes/Automatic_Provides_for_Python_RPM_Packages- New upstream release 1.14.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.0- New upstream release 1.14 beta - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.0beta- New upstream release 1.14 alpha - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.0alpha- Resolves: rhbz#1335639 - [abrt] sssd-dbus: ldb_msg_find_element(): sssd_ifp killed by SIGSEGV- Resolves: rhbz#1328108 - Protocol error with FreeIPA on CentOS 6- New upstream release 1.13.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.4- Resolves: rhbz#1276868 - Sudo PAM Login should support multiple password prompts (e.g. Password + Token) - Resolves: rhbz#1313041 - ssh with sssd proxy fails with "Connection closed by remote host" if locale not available- Resolves: rhbz#1310664 - [RFE] IPA: resolve external group memberships of IPA groups during getgrnam and getgrgid - Resolves: rhbz#1301303 - sss_obfuscate: SyntaxError: Missing parentheses in call to 'print'- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild- Additional upstream fixes- Resolves: rhbz#1256849 - SUDO: Support the IPA schema- New upstream release 1.13.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.3- New upstream release 1.13.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.2- Rebuilt for Python3.5 rebuild- Fix building pac responder with the krb5-1.14- python-sssdconfig: Fix parssing sssd.conf without config_file_version - Resolves: upstream #2837 - REGRESSION: ipa-client-automout failed- Fix few segfaults - Resolves: upstream #2811 - PAM responder crashed if user was not set - Resolves: upstream #2810 - sssd_be crashed in ipa_srv_ad_acct_lookup_step- New upstream release 1.13.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.1- Fix OTP bug - Resolves: upstream #2729 - Do not send SSS_OTP if both factors were entered separately- Backport upstream patches required by FreeIPA 4.2.1- Fix ipa-migration bug - Resolves: upstream #2719 - IPA: returned unknown dp error code with disabled migration mode- New upstream release 1.13.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.0- Unify return type of list_active_domains for python{2,3}- New upstream release 1.13 alpha - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.0alpha- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild- Fix libwbclient alternatives- Backport important patches from upstream 1.13 prerelease- New upstream release 1.12.5 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.5- Backport important patches from upstream 1.13 prerelease - Resolves: rhbz#1060325 - Does sssd-ad use the most suitable attribute for group name - Resolves: upstream #2335 - Investigate using the krb5 responder for driving the PAM conversation with OTPs - Enable cmocka tests for secondary architectures- Backport patches from upstream 1.12.5 prerelease - contains many fixes- Fix slow login with ipa and SELinux - Resolves: upstream #2624 - Only set the selinux context if the context differs from the local one- Fix regressions with ipa and SELinux - Resolves: upstream #2587 - With empty ipaselinuxusermapdefault security context on client is staff_u- Also relax libldb Requires - Remove --enable-ldb-version-check- Relax libldb BuildRequires to be greater-or-equal- Add support for python3 bindings - Add requirement to python3 or python3 bindings - Resolves: rhbz#1014594 - sssd: Support Python 3- New upstream release 1.12.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.4- Backport patches with Python3 support from upstream- Fix double free in monitor - Resolves: rhbz#1186887 [abrt] sssd-common: talloc_abort(): sssd killed by SIGABRT- Rebuild for new libldb- Decrease priority of sssd-libwbclient 20 -> 5 - It should be lower than priority of samba veriosn of libwbclient. - https://bugzilla.redhat.com/show_bug.cgi?id=1175511#c18- Apply a number of patches from upstream to fix issues found 1.12.3 - Resolves: rhbz#1176373 - dyndns_iface does not accept multiple interfaces, or isn't documented to be able to - Resolves: rhbz#988068 - getpwnam_r fails for non-existing users when sssd is not running - Resolves: upstream #2557 authentication failure with user from AD- Resolves: rhbz#1164156 - libsss_simpleifp should pull sssd-dbus - Resolves: rhbz#1179379 - gzip: stdin: file size changed while zipping when rotating logfile- New upstream release 1.12.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.3 - Fix spelling errors in description (fedpkg lint)- Rebuild for libldb 1.1.19- Resolves: rhbz#1175511 - sssd-libwbclient conflicts with Samba's and causes crash in wbinfo - in addition to the patch libwbclient.so is filtered out of the Provides list of the package- Fix regressions and bugs in sssd upstream 1.12.2 - https://fedorahosted.org/sssd/ticket/{id} - Regressions: #2471, #2475, #2483, #2487, #2529, #2535 - Bugs: #2287, #2445- Rebuild for libldb 1.1.18- Fix typo in libwbclient-devel %preun- Use alternatives for libwbclient- Backport several patches from upstream. - Fix a potential crash against old (pre-4.0) IPA servers- New upstream release 1.12.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.2- Resolves: rhbz#1139962 - Fedora 21, FreeIPA 4.0.2: sssd does not find user private group from server- New upstream release 1.12.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.1- Do not crash on resolving a group SID in IPA server mode- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild- Fix release version for upgrades- New upstream release 1.12.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild- New upstream release 1.12 beta2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0beta2- Fix tests on big-endian - Fix previous changelog entry- New upstream release 1.12 beta1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0beta1- Rebuild against new ding-libs- Make LDB dependency a strict equivalency- Rebuild against new libldb- New upstream release 1.11.5.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.5.1- Fix bug in generation of systemd unit file- New upstream release 1.11.5 - Remove upstreamed patch - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.5- Handle new error code for IPA password migration- Include couple of patches from upstream 1.11 branch- New upstream release 1.11.4 - Remove upstreamed patch - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.4- Handle OTP response from FreeIPA server gracefully- New upstream release 1.11.3 - Remove upstreamed patches - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.3- New upstream release 1.11.2 - Remove upstreamed patches - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.2- Fix potential crash with external groups in trusted IPA-AD setup- Add plugin for cifs-utils - Resolves: rhbz#998544- Fix failover from Global Catalog to LDAP in case GC is not available- Remove the ability to create public ccachedir (#1015089)- New upstream release 1.11.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.1- Fix multicast checks in the SSSD - Resolves: rhbz#1007475 - The multicast check is wrong in the sudo source code getting the host info- Backport simplification of ccache management from 1.11.1 - Resolves: rhbz#1010553 - sssd setting KRB5CCNAME=(null) on login- New upstream release 1.11.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0- Resolves: #967012 - [abrt] sssd-1.9.5-1.fc18: sss_mmap_cache_gr_invalidate_gid: Process /usr/libexec/sssd/sssd_nss was killed by signal 11 (SIGSEGV) - Resolves: #996214 - sssd proxy_child segfault- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild- Resolves: #906427 - Do not use %{_lib} in specfile for the nss and pam libraries- New upstream release 1.11 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0beta2- New upstream release 1.10.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.1- sssd-tools should require sssd-common, not sssd- Move sssd_pac to the sssd-ipa and sssd-ad subpackages - Trim out RHEL5-specific macros since we don't build on RHEL 5 - Trim out macros for Fedora older than F18 - Update libldb requirement to 1.1.16 - Trim RPM changelog down to the last year- Move sssd_pac to the sssd-krb5 subpackage- Fix Obsoletes: to account for dist tag - Convert post and pre scripts to run on the sssd-common subpackage - Remove old conversion from SYSV- New upstream release 1.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0- the cmocka toolkit exists only on selected arches- Apply a number of patches from upstream to fix issues found post-beta, in particular: -- segfault with a high DEBUG level -- Fix IPA password migration (upstream #1873) -- Fix fail over when retrying SRV resolution (upstream #1886)- Only BuildRequire libcmocka on Fedora- Fix typo in Requires that prevented an upgrade (#973916) - Use a hardcoded version in Conflicts, not less-than-current- Enable hardened build for RHEL7- New upstream release 1.10 beta2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta2 - BuildRequire libcmocka-devel in order to run all upstream tests during build - BuildRequire libnl3 instead of libnl1 - No longer BuildRequire initscripts, we no longer use /sbin/service - Remove explicit krb5-libs >= 1.10 requires; this platform doensn't carry any older krb5-libs version- Apply a couple of patches from upstream git that resolve crashes when ID mapping object was not initialized properly but needed later- Resolves: rhbz#961357 - Missing dyndns_update entry in sssd.conf during realm join - Resolves: rhbz#961278 - Login failure: Enterprise Principal enabled by default for AD Provider - Resolves: rhbz#961251 - sssd does not create user's krb5 ccache dir/file parent directory when logging in- BuildRequire recent libini_config to ensure consistent behaviour- Explicitly Require libini_config >= 1.0.0.1 to work around a SONAME bug in ding-libs - Fix SSH integration with fully-qualified domains - Add the ability to dynamically discover the NetBIOS name- New upstream release 1.10 beta1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta1- Add a patch to fix krb5 ccache creation issue with krb5 1.11- New upstream release 1.10 alpha1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0alpha1- Add a patch to fix krb5 unit tests- Split internal helper libraries into a shared object - Significantly reduce disk-space usage- Fix the Kerberos password expiration warning (#912223)- Do not write out dots in the domain-realm mapping file (#905650)- Include upstream patch to build with krb5-1.11- Rebuild against new libldb- Fix build with new automake versions- Recreate Kerberos ccache directory if it's missing - Resolves: rhbz#853558 - [sssd[krb5_child[PID]]]: Credential cache directory /run/user/UID/ccdir does not exist- Fix changelog dates to make F19 rpmbuild happy- New upstream release 1.9.4- New upstream release 1.9.3- Resolve groups from AD correctly- Check the validity of naming context- Move the sss_cache tool to the main package- Include the 1.9.2 tarball- New upstream release 1.9.2- New upstream release 1.9.1- require the latest libldb- Use mcpath insted of mcachepath macro to be consistent with upsteam spec file- New upstream release 1.9.0- New upstream release 1.9.0 rc1- New upstream release 1.9.0 beta7 - obsoletes patches #1-#3- Rebuild against libldb 1.12- Rebuild against libldb 1.11- Change the default ccache location to DIR:/run/user/${UID}/krb5cc and patch man page accordingly - Resolves: rhbz#851304- Rebuild against libldb 1.10- Only create the SELinux login file if there are SELinux mappings on the IPA server- Don't discard HBAC rule processing result if SELinux is on Resolves: rhbz#846792 (CVE-2012-3462)- New upstream release 1.9.0 beta 6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta6 - A new option, override_shell was added. If this option is set, all users managed by SSSD will have their shell set to its value. - Fixes for the support for setting default SELinux user context from FreeIPA. - Fixed a regression introduced in beta 5 that broke LDAP SASL binds - The SSSD supports the concept of a Primary Server and a Back Up Server in failover - A new command-line tool sss_seed is available to help prime the cache with a user record when deploying a new machine - SSSD is now able to discover and save the domain-realm mappings between an IPA server and a trusted Active Directory server. - Packaging changes to fix ldconfig usage in subpackages (#843995) - Rebuild against libldb 1.1.9- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- New upstream release 1.9.0 beta 5 - Obsoletes the patch for missing DP_OPTION_TERMINATOR in AD provider options - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta5 - Many fixes for the support for setting default SELinux user context from FreeIPA, most notably fixed the specificity evaluation - Fixed an incorrect default in the krb5_canonicalize option of the AD provider which was preventing password change operation - The shadowLastChange attribute value is now correctly updated with the number of days since the Epoch, not seconds- Fix broken ARM build - Add missing DP_OPTION_TERMINATOR in AD provider options- Own several directories create during make install (#839782)- New upstream release 1.9.0 beta 4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta4 - Add a new AD provider to improve integration with Active Directory 2008 R2 or later servers - SUDO integration was completely rewritten. The new implementation works with multiple domains and uses an improved refresh mechanism to download only the necessary rules - The IPA authentication provider now supports subdomains - Fixed regression for setups that were setting default_tkt_enctypes manually by reverting a previous workaround.- New upstream release 1.9.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta3 - Add a new PAC responder for dealing with cross-realm Kerberos trusts - Terminate idle connections to the NSS and PAM responders- Switch unicode library from libunistring to Glib - Drop unnecessary explicit Requires on keyutils - Guarantee that versioned Requires include the correct architecture- Fix accidental disabling of the DIR cache support- New upstream release 1.9.0 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta2 - Add support for the Kerberos DIR cache for storing multiple TGTs automatically - Major performance enhancement when storing large groups in the cache - Major performance enhancement when performing initgroups() against Active Directory - SSSDConfig data file default locations can now be set during configure for easier packaging- Fix regression in endianness patch- Rebuild SSSD against ding-libs 0.3.0beta1 - Fix endianness bug in service map protocol- Fix several regressions since 1.5.x - Ensure that the RPM creates the /var/lib/sss/mc directory - Add support for Netscape password warning expiration control - Rebuild against libldb 1.1.6- New upstream release 1.9.0 beta 1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta1 - Add native support for autofs to the IPA provider - Support for ID-mapping when connecting to Active Directory - Support for handling very large (> 1500 users) groups in Active Directory - Support for sub-domains (will be used for dealing with trust relationships) - Add a new fast in-memory cache to speed up lookups of cached data on repeated requests- New upstream release 1.8.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.3 - Numerous manpage and translation updates - LDAP: Handle situations where the RootDSE isn't available anonymously - LDAP: Fix regression for users using non-standard LDAP attributes for user information- New upstream release 1.8.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.2 - Several fixes to case-insensitive domain functions - Fix for GSSAPI binds when the keytab contains unrelated principals - Fixed several segfaults - Workarounds added for LDAP servers with unreadable RootDSE - SSH knownhostproxy will no longer enter an infinite loop preventing login - The provided SYSV init script now starts SSSD earlier at startup and stops it later during shutdown - Assorted minor fixes for issues discovered by static analysis tools- Don't duplicate libsss_autofs.so in two packages - Set explicit package contents instead of globbing- Fix uninitialized value bug causing crashes throughout the code - Resolves: rhbz#804783 - [abrt] Segfault during LDAP 'services' lookup- New upstream release 1.8.1 - Resolve issue where we could enter an infinite loop trying to connect to an auth server - Fix serious issue with complex (3+ levels) nested groups - Fix netgroup support for case-insensitivity and aliases - Fix serious issue with lookup bundling resulting in requests never completing - IPA provider will now check the value of nsAccountLock during pam_acct_mgmt in addition to pam_authenticate - Fix several regressions in the proxy provider - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#799031 - --debug option for sss_debuglevel doesn't work- New upstream release 1.8.0 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental) - Include the IPA AutoFS provider - Fixed several memory-corruption bugs - Fixed a regression in group enumeration since 1.7.0 - Fixed a regression in the proxy provider - Resolves: rhbz#741981 - Separate Cache Timeouts for SSSD - Resolves: rhbz#797968 - sssd_be: The requested tar get is not configured is logged at each login - Resolves: rhbz#754114 - [abrt] sssd-1.6.3-1.fc16: ping_check: Process /usr/sbin/sssd was killed by signal 11 (SIGSEGV) - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - Resolves: rhbz#786957 - sssd and kerberos should change the default location for create the Credential Cashes to /run/usr/USERNAME/krb5cc- Change default kerberos credential cache location to /run/user/- New upstream release 1.8.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta3 - Fixed a regression in group enumeration since 1.7.0 - Fixed several memory-corruption bugs - Finalized the ABI for the autofs support - Fixed a regression in the proxy provider- Rebuild against PCRE 8.30- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta2 - Fix two minor manpage bugs - Include the IPA AutoFS provider- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta1 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental)- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - fix netgroups and sudo as well- Fixes a serious memory hierarchy bug causing unpredictable behavior in the LDAP provider.- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- New upstream release 1.7.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.7.0 - Support for case-insensitive domains - Support for multiple search bases in the LDAP provider - Support for the native FreeIPA netgroup implementation - Reliability improvements to the process monitor - New DEBUG facility with more consistent log levels - New tool to change debug log levels without restarting SSSD - SSSD will now disconnect from LDAP server when idle - FreeIPA HBAC rules can choose to ignore srchost options for significant performance gains - Assorted performance improvements in the LDAP provider- New upstream release 1.6.4 - Rolls up previous patches applied to the 1.6.3 tarball - Fixes a rare issue causing crashes in the failover logic - Fixes an issue where SSSD would return the wrong PAM error code for users that it does not recognize.- Rebuild against libldb 1.1.4- Resolves: rhbz#753639 - sssd_nss crashes when passed invalid UTF-8 for the username in getpwnam() - Resolves: rhbz#758425 - LDAP failover not working if server refuses connections- Rebuild for libldb 1.1.3- Resolves: rhbz#752495 - Crash when apply settings- New upstream release 1.6.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.3 - Fixes a major cache performance issue introduced in 1.6.2 - Fixes a potential infinite-loop with certain LDAP layouts- Rebuilt for glibc bug#747377- Change selinux policy requirement to Conflicts: with the old version, rather than Requires: the supported version.- Add explicit requirement on selinux-policy version to address new SBUS symlinks.- Remove %files reference to sss_debuglevel copied from wrong upstreeam spec file.- Improved handling of users and groups with multi-valued name attributes (aliases) - Performance enhancements Initgroups on RFC2307bis/FreeIPA HBAC rule processing - Improved process-hang detection and restarting - Enabled the midpoint cache refresh by default (fewer cache misses on commonly-used entries) - Cleaned up the example configuration - New tool to change debug level on the fly- New upstream release 1.6.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.1 - Fixes a serious issue with LDAP connections when the communication is dropped (e.g. VPN disconnection, waking from sleep) - SSSD is now less strict when dealing with users/groups with multiple names when a definitive primary name cannot be determined - The LDAP provider will no longer attempt to canonicalize by default when using SASL. An option to re-enable this has been provided. - Fixes for non-standard LDAP attribute names (e.g. those used by Active Directory) - Three HBAC regressions have been fixed. - Fix for an infinite loop in the deref code- Build with _hardened_build macro- New upstream release 1.6.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.0 - Add host access control support for LDAP (similar to pam_host_attr) - Finer-grained control on principals used with Kerberos (such as for FAST or - validation) - Added a new tool sss_cache to allow selective expiring of cached entries - Added support for LDAP DEREF and ASQ controls - Added access control features for Novell Directory Server - FreeIPA dynamic DNS update now checks first to see if an update is needed - Complete rewrite of the HBAC library - New libraries: libipa_hbac and libipa_hbac-python- New upstream release 1.5.11 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.11 - Fix a serious regression that prevented SSSD from working with ldaps:// URIs - IPA Provider: Fix a bug with dynamic DNS that resulted in the wrong IPv6 - address being saved to the AAAA record- New upstream release 1.5.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.10 - Fixed a regression introduced in 1.5.9 that could result in blocking calls - to LDAP- New upstream release 1.5.9 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.9 - Support for overriding home directory, shell and primary GID locally - Properly honor TTL values from SRV record lookups - Support non-POSIX groups in nested group chains (for RFC2307bis LDAP - servers) - Properly escape IPv6 addresses in the failover code - Do not crash if inotify fails (e.g. resource exhaustion) - Don't add multiple TGT renewal callbacks (too many log messages)- New upstream release 1.5.8 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.8 - Support for the LDAP paging control - Support for multiple DNS servers for name resolution - Fixes for several group membership bugs - Fixes for rare crash bugs- Resolves: rhbz#706740 - Orphaned links on rc0.d-rc6.d - Make sure to properly convert to systemd if upgrading from newer - updates for Fedora 14- Fix segfault in TGT renewal- Resolves: rhbz#700891 - CVE-2011-1758 sssd: automatic TGT renewal overwrites - cached password with predicatable filename- Re-add manpage translations- New upstream release 1.5.6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.6 - Fixed a serious memory leak in the memberOf plugin - Fixed a regression with the negative cache that caused it to be essentially - nonfunctional - Fixed an issue where the user's full name would sometimes be removed from - the cache - Fixed an issue with password changes in the kerberos provider not working - with kpasswd- Resolves: rhbz#697057 - kpasswd fails when using sssd and - kadmin server != kdc server - Upgrades from SysV should now maintain enabled/disabled status- Fix %postun- Fix systemd conversion. Upgrades from SysV to systemd weren't properly - enabling the systemd service. - Fix a serious memory leak in the memberOf plugin - Fix an issue where the user's full name would sometimes be removed - from the cache- Install systemd unit file instead of sysv init script- New upstream release 1.5.5 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.5 - Fixes for several crash bugs - LDAP group lookups will no longer abort if there is a zero-length member - attribute - Add automatic fallback to 'cn' if the 'gecos' attribute does not exist- New upstream release 1.5.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.4 - Fixes for Active Directory when not all users and groups have POSIX attributes - Fixes for handling users and groups that have name aliases (aliases are ignored) - Fix group memberships after initgroups in the IPA provider- Resolves: rhbz#683267 - sssd 1.5.1-9 breaks AD authentication- New upstream release 1.5.3 - Support for libldb >= 1.0.0- New upstream release 1.5.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.2 - Fixes for support of FreeIPA v2 - Fixes for failover if DNS entries change - Improved sss_obfuscate tool with better interactive mode - Fix several crash bugs - Don't attempt to use START_TLS over SSL. Some LDAP servers can't handle this - Delete users from the local cache if initgroups calls return 'no such user' - (previously only worked for getpwnam/getpwuid) - Use new Transifex.net translations - Better support for automatic TGT renewal (now survives restart) - Netgroup fixes- Rebuild sssd against libldb 1.0.2 so the memberof module loads again. - Related: rhbz#677425- Resolves: rhbz#677768 - name service caches names, so id command shows - recently deleted users- Ensure that SSSD builds against libldb-1.0.0 on F15 and later - Remove .la for memberOf- Fix memberOf install path- Add support for libldb 1.0.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Fix nested group member filter sanitization for RFC2307bis - Put translated tool manpages into the sssd-tools subpackage- Restore Requires: cyrus-sasl-gssapi as it is not auto-detected during - rpmbuild- New upstream release 1.5.1 - Addresses CVE-2010-4341 - DoS in sssd PAM responder can prevent logins - Vast performance improvements when enumerate = true - All PAM actions will now perform a forced initgroups lookup instead of just - a user information lookup - This guarantees that all group information is available to other - providers, such as the simple provider. - For backwards-compatibility, DNS lookups will also fall back to trying the - SSSD domain name as a DNS discovery domain. - Support for more password expiration policies in LDAP - 389 Directory Server - FreeIPA - ActiveDirectory - Support for ldap_tls_{cert,key,cipher_suite} config options -Assorted bugfixes- CVE-2010-4341 - DoS in sssd PAM responder can prevent logins- New upstream release 1.5.0 - Fixed issues with LDAP search filters that needed to be escaped - Add Kerberos FAST support on platforms that support it - Reduced verbosity of PAM_TEXT_INFO messages for cached credentials - Added a Kerberos access provider to honor .k5login - Addressed several thread-safety issues in the sss_client code - Improved support for delayed online Kerberos auth - Significantly reduced time between connecting to the network/VPN and - acquiring a TGT - Added feature for automatic Kerberos ticket renewal - Provides the kerberos ticket for long-lived processes or cron jobs - even when the user logs out - Added several new features to the LDAP access provider - Support for 'shadow' access control - Support for authorizedService access control - Ability to mix-and-match LDAP access control features - Added an option for a separate password-change LDAP server for those - platforms where LDAP referrals are not supported - Added support for manpage translations- Solve a shutdown race-condition that sometimes left processes running - Resolves: rhbz#606887 - SSSD stops on upgrade- Log startup errors to the syslog - Allow cache cleanup to be disabled in sssd.conf- New upstream release 1.4.1 - Add support for netgroups to the proxy provider - Fixes a minor bug with UIDs/GIDs >= 2^31 - Fixes a segfault in the kerberos provider - Fixes a segfault in the NSS responder if a data provider crashes - Correctly use sdap_netgroup_search_base- Fix incorrect tarball URL- New upstream release 1.4.0 - Added support for netgroups to the LDAP provider - Performance improvements made to group processing of RFC2307 LDAP servers - Fixed nested group issues with RFC2307bis LDAP servers without a memberOf plugin - Build-system improvements to support Gentoo - Split out several libraries into the ding-libs tarball - Manpage reviewed and updated- Fix pre and post script requirements- Resolves: rhbz#606887 - sssd stops on upgrade- Resolves: rhbz#626205 - Unable to unlock screen- Resolves: rhbz#637955 - libini_config-devel needs libcollection-devel but - doesn't require it- Resolves: rhbz#632615 - the krb5 locator plugin isn't packaged for multilib- Resolves: CVE-2010-2940 - sssd allows null password entry to authenticate - against LDAP- Rebuilt for https://fedoraproject.org/wiki/Features/Python_2.7/MassRebuild- New upstream version 1.2.91 (1.3.0rc1) - Improved LDAP failover - Synchronous sysdb API (provides performance enhancements) - Better online reconnection detection- New stable upstream version 1.2.1 - Resolves: rhbz#595529 - spec file should eschew %define in favor of - %global - Resolves: rhbz#593644 - Empty list of simple_allow_users causes sssd service - to fail while restart. - Resolves: rhbz#599026 - Makefile typo causes SSSD not to use the kernel - keyring - Resolves: rhbz#599724 - sssd is broken on Rawhide- New stable upstream version 1.2.0 - Support ServiceGroups for FreeIPA v2 HBAC rules - Fix long-standing issue with auth_provider = proxy - Better logging for TLS issues in LDAP- New LDAP access provider allows for filtering user access by LDAP attribute - Reduced default timeout for detecting offline status with LDAP - GSSAPI ticket lifetime made configurable - Better offline->online transition support in Kerberos- Release new upstream version 1.1.91 - Enhancements when using SSSD with FreeIPA v2 - Support for deferred kinit - Support for DNS SRV records for failover- Bump up release number to avoid library sub-packages version issues with previous releases.- New upstream release 1.1.1 - Fixed the IPA provider (which was segfaulting at start) - Fixed a bug in the SSSDConfig API causing some options to revert to - their defaults - This impacted the Authconfig UI - Ensure that SASL binds to LDAP auto-retry when interrupted by a signal- Release SSSD 1.1.0 final - Fix two potential segfaults - Fix memory leak in monitor - Better error message for unusable confdb- Release candidate for SSSD 1.1 - Add simple access provider - Create subpackages for libcollection, libini_config, libdhash and librefarray - Support IPv6 - Support LDAP referrals - Fix cache issues - Better feedback from PAM when offline- Rebuild against new libtevent- Fix licenses in sources and on RPMs- Fix regression on 64-bit platforms- Fixes link error on platforms that do not do implicit linking - Fixes double-free segfault in PAM - Fixes double-free error in async resolver - Fixes support for TCP-based DNS lookups in async resolver - Fixes memory alignment issues on ARM processors - Manpage fixes- Fixes a bug in the failover code that prevented the SSSD from detecting when it went back online - Fixes a bug causing long (sometimes multiple-minute) waits for NSS requests - Several segfault bugfixes- Fix CVE-2010-0014- Patch SSSDConfig API to address - https://bugzilla.redhat.com/show_bug.cgi?id=549482- New upstream stable release 1.0.0- New upstream bugfix release 0.99.1- New upstream release 0.99.0- Fix segfault in sssd_pam when cache_credentials was enabled - Update the sample configuration - Fix upgrade issues caused by data provider service removal- Fix upgrade issues from old (pre-0.5.0) releases of SSSD- New upstream release 0.7.0- Fix missing file permissions for sssd-clients- Add SSSDConfig API - Update polish translation for 0.6.0 - Fix long timeout on ldap operation - Make dp requests more robust- Ensure that the configuration upgrade script always writes the config file with 0600 permissions - Eliminate an infinite loop in group enumerations- New upstream release 0.6.0- New upstream release 0.5.0- Fix for CVE-2009-2410 - Native SSSD users with no password set could log in without a password. (Patch by Stephen Gallagher)- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- Fix a couple of segfaults that may happen on reload- add missing configure check that broke stopping the daemon - also fix default config to add a missing required option- latest upstream release. - also add a patch that fixes debugging output (potential segfault)- release out of the official 0.3.2 tarball- bugfix release 0.3.2 - includes previous release patches - change permissions of the /etc/sssd/sssd.conf to 0600- Add last minute bug fixes, found in testing the package- Version 0.3.1 - includes previous release patches- Try to fix build adding automake as an explicit BuildRequire - Add also a couple of last minute patches from upstream- Version 0.3.0 - Provides file based configuration and lots of improvements- Version 0.2.1- Version 0.2.0- package git snapshot- fixed items found during review - added initscript- added sss_client- Small cleanup and fixes in the spec file- Initial release (based on version 0.1.0 upstream code) rusvuk2.7.3-5.0.1.el82.7.3-5.0.1.el8 .build-id998a10ebd03378987be47b390551b75686e491d4d61ab10e5ee12189ce798f220af7612d0cbblibsss_ad.sogpo_childsssd-adCOPYINGsssd-ad.5.gzsssd-ad.5.gzsssd-ad.5.gzsssd-ad.5.gz/usr/lib//usr/lib/.build-id/13//usr/lib/.build-id/2a//usr/lib64/sssd//usr/libexec/sssd//usr/share/licenses//usr/share/licenses/sssd-ad//usr/share/man/man5//usr/share/man/ru/man5//usr/share/man/sv/man5//usr/share/man/uk/man5/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -mtune=generic -fasynchronous-unwind-tables -fstack-clash-protection -fcf-protectioncpioxz2x86_64-redhat-linux-gnudirectoryELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=13998a10ebd03378987be47b390551b75686e491, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, for GNU/Linux 3.2.0, BuildID[sha1]=2ad4d61ab10e5ee12189ce798f220af7612d0cbb, strippedASCII texttroff or preprocessor input, ASCII text, with very long lines (gzip compressed data, max compression, from Unix)troff or preprocessor input, UTF-8 Unicode text, with very long lines (gzip compressed data, max compression, from Unix)99PRRR;RRRRR RR8RRRRRR2R&RRRRR%R4RRR,R3RRRR R5R$R!RR R'R9Rc(Vhyb+FFgCE)e&_Ϋ0VCn/z:Iyvq{N㋜UT:)7XxI` M{vˤgb|X/ٮjR3MaL |4%fN:$*HijF\҂@ 6Td"Fs_ .Ils00J)pM9K 4(6dfДc y-xtGJ?,O?˯jO)PW *,1<΂Z/;n>I@PDq>Vg7.\Rr KX܄|<9Ju]؃!Fsh:",%>FuƓo,~7\u`Z0܍ҭZl o{سHZF.@61 .1MoAwI@FD|B }9'αK =b*CPGӡY4BgzY@" I@q'.WseOfyJj1Kˑ̎9}/f=${T.IW|EWuضY&kR蒻Z#YX҃>*SIjŚOb)0pO~/|Їw-tM9^,VC,n:&Mlh7!#N ,?x^RIQ 4N"ƯpfO`EXi6cϳ8m{|R>Sg ﷉1+fEr޶VFt8.h'/4྽q/Jp(5 |YGD!Э΢ "ջj`( A qS?d X'((g3FЙ,B;Ƙ8ZE4jڊq[*D쪊:7Ƞ=;#1'H)ӭ|q6) pa8Dn΀ zm74^$H6&+!\FvG|U\LD'.Gӈ?TtPE -m[a_P9zL[݄1%nJC/d.MsQ|0):|x"D5Wf)/Rv+UXi׍@͊z(j27'c\Cek&|˾0e8k \C`T>rCCeNI<^1䈠-K*nSc>#/hx`7`Ĉo O3y$k_shPY6-h|_!8kkvCxyLe͉fTLQɥD-.Si˄'=0 6Dr~ ;nă]P*olL/D=# t^laAw5L%wF +z_϶^d7 3iwФ#(m' (P$1zR<њ*j|G eT[9ɺ}M˔]|BeEWZj.*􌩰4ѭi%[j~tV=ܧg  hl'p&5fhaYtU=n%bCn1x䥄@nxω;0n]͋aANF0)DzADmͰ ^8y<W }w3TẋT[Xq6qq|Ͷ qP`dq:7gv@&&i@nGT_(=ES[wBBgt*!x')LaDWhYn>c(/` _b`a^ IzN220JwJU)f hYZԽlno^" _2#i*VOK .4EMRX Z짬t1?0Vv/ 9EJYiD'uC5{GEDdZAƠBUUJr3!*6<|A ?*&q ũ;ZoGqbRBT4HUTqW_iW; E*5sB|Aenx{@6Ɣf Ȗ $+'1%jAb{.L?Sy>%h1F("ЅY؀OPzoRHoٲhNF~NV8e2|:؞E o8P\^ WoM~RvЮ3c˲3GTRXUbaJNThES€Ok_o[vo>Așg,!a(K$irRS4fpN#s 1֮\S <]رL/{]Z?*{80iU5fqqz)\.vqӾc;̔%I'MCstgCCqY-שz&MRaxTH>]m bs>ꚆbVJ {8Ese%\Q34&D&gf _39Mժ:U~_E6pco vO IJgFkM%[m*։OXm=s0KSk~5K֝ݮ])"[nqEB!LZB3drrr Hi<px}jdV)L:В튑~TPb< 㲺o:Hv{\ˌT 畞]Tˎ2HMϏi'cpiVfߢ4v$09XѽREƚ7yfͨ).&P%DA6mO%sp ? XZR`V֮:ēF1Mj9 H[?VSo ;]̾,sE` I;W 륥|U-=UUF2brsdA# nnә@20 #Qcjg$m dw#߯m8`}\(6k,+(N9ˋ1@wjl_eןY݈`)p2_hK'tFyFs?5W*'1 $5Ɛ}%Av\F&B/g,$aOq~ns>F&lb>-֭m''6Cb_R g>QcZT"'s5ERE(SC50B ;pi%޻rn蓼c/MGU`mHtǪ\w)AM>Hl !`[PR|Arl#Lgfmu12E_wloˀ#N#1*XO!wxH1Z;T:Pڊe/,,,g'ߧ7+!l@&Ps#Y< B}J4 X،1yE`V%g#gf:}rHl_:SJ>{eZ'Ҕ=T*.e=X}Q>UEӜce<㑼 ak/(tÆXuoBCfQrhZ XLޫC/kf3nql-' 2?`mcKQFOx?!8Q''LMA8V;ZPq )3MQtaHq#Nt=C-/뀒;j_me#-4fh|$zZ+u!`#a^n"Qt.bb$ɇ7o@5B6.զg|}&}[RmFUK{Bcf)i ((ЀgK[xEߑ 2_Ljx(9'1' p]v.HT]cX g\]|jE TFy5›Xȡ<F ά] ,UR;?|,EvI3&419`Yb٬66DZ9٥LHp+ {JB.`Y E$8ә@'osVVc]VH( 2]sKn> 1ٖ0<(-;2xs~V-).4%m+@B ֬CqFD[E י.;$-'n=_K##%eЅѣ?DK$==z ƿ-s2T汛 f9tCrc'j!jn;>g'I qUi; %w6/늿=q*TLs.x[6kVj((hucHI2[<r6rSۂv_ϻi`m}A귚J$7㋯>lBT̅ 6:& [$Q̊^۰Uqڄ~8&2ovEwŝ <ɚvWz0/лTVT0!qnݳJ4S"&l2fp|vN|,h '7M]ŠEi豚LVNOvb9>EÁPЉ/ޟ~ʀv/2uL8It$`-~TuFx(VI&eR0;v@ܹ6(`:.9d% `> <@w,ǔx9Fi/DKCb9Jdez>+¿6Ә'c\w-ȶ֒?Zya&>X5vܭItqٯ f*+nAM(:(eN1Z rt*-4Ԛbؒ?q7x/XӆBV7XOHSbM#6Y0WF? q= sg4GǽXbV{+"X64n`kygk~Iv3@B_`?[k㈞)xo۾7B$[FlWu nˆU'fFL({?mA :$œ Pړ O[q00pܴAfy8 QCma3ɝ/{='oUl(r c#9)泸}b%+B錰">_ 4M?bg&[IR4BQS@p4ViZ~位ߴb[:@8[Z,(E(-҇BEOGY䊙_ATC6ښ1W- _󋉵6ΦdEXD{$7IC_og쀛Z猜^{YY'5G.4zcspO.R`x F>IyqhsPChIJJ(+:e\ғWׅSѕH\M1mfz1~`1/Dix3хwP1VL?˯[92Ui1Pr(m$Z^~nU eԹtViS9B&3 G1RB>?Ŧ6aK6maGAq]F8&fM-z!(VDB$U* ժsy pz-d7׽dگސ%s)/h8s:Uνr<Z|V,?`axbu~n5ꑎ y8j;(6x =k6x#u&`c2xhpI1{E|/7c N=>]Dp}apS_ H(dp⊉Of92Tun1Oj=YF/ҕS+6K FU,򵰀}T"uټ;y <0#5>~@jIIacN$[0 -BF57׍{x<DToY͜:n4#>~MQp6j˝aNqeie{jΊlw8,S!?~D;>"GwɆgT߶!fXY}Ŏeq&9@j s?vL=tEml[Q(vp^ERz=zG7%ztS#W7(Ԁu58/"p!J|'"ZuP} ai?7+v 7y @aʩ,AΙI, l R_ζkB2St"nqE ")T(͔]?fLvw~r̡̬gj,1rr%Ga齸Pឌui16s^N4D&P] U[$ jLcŃȩѪ9m+ 0 iח6Q")% 7}Ò^C=үzZh`"># r'jTb1XY8U-/∏v4ev Ξ=,yB'~ݏ" (溊.um}jwCh^ԛD&ly',`:$VGH!t L)M8 RJ}: l*  kGO9)9d^Ɇ:ՃשT9\aLYj]pH.jJTb%{$~`P}o"B" RTkw'T4IQ צt7zh ׁ,A黃(an>~}-Xp?mk|1wnhԳc;,'W-M"G'Ll ۄ˰3t*дıipMWiV›̹ٲ^2c+;I Te|if]8p ߆Dt3=Lksڂ)MP" m5դK 8SNʾ;\,^Jx2Ebq g8V7SX Y©FOVIvut>81t{p|4AȞ ϖĠ\GHjl`oV԰t ^qls z9ce5~GJl4j\7(iKKss&=;qX_q((x7XNhlމ~]7*@8bH~1R~hYwj{]jPTウ#w<>u-ơl Yujon2 W& &mz,펦i1F󢱵s(ԋ Sr3?9H 2QuJ_79$Bi2`a0-.Q(=epiX8%oj8U%<(2Vy!LwTBԟt31(Fva%{{G^Ut]M2z%G>"Jk]w( F㞗>hƶnoHR7@*n/, ꯅ zyd)l8NZWSΖ􉶩ع񪁣;UE`Oc'x#G`T& t@M :և+*9T1\xY.3.;'JYQ$71Ox940BQ03l\ qU r|'R4=f*ۿ*Ȩmf9S㞆jZÝ]ܚ&wqP,!$u>5H3AE<2 "H(d6>rؚ}yiaoD,~ߜ=qkߐ.c` `qKvr [w48Iu ]8-:aMUTq[2 _hNp A9Y1{]6HWf)\3c8]H"H .~1lDsDʘhe{ Oj֙όǶ\CSw//Hpt@ɯ cCQp'Oj>l@O&sO@ TFN̡_O&]zKO,`:f o0dsg鎠ſX)!&߯Ի]JOy]LXI֭e$!EV55QKAbnbMo_|F^~̱iU4qT_i$r)XDkZ1N~&/y 8 ܿVWeON Dx Iw*+ N+sM<>Ws_^Aq=q>NGhHgu-az:5Ean۪ >84q[r|=E+{_Y^=U\7$F$0vg 𗽴%咋(--!`{0d(ߋnӶ'}^8N>Ż:CumJpsnjt90GLڂsPGABe%:uUO~ OHrէC ,a ՞,L:i`8XA)7+3/3c2e>"_{tOu=brV/A[4Sޞ/to4~*ӗ9TЌPvoK6P8bVG݉GNSuD[ w@V᧲깱:uw.~_YS.UZ~: 7[$:N{YNnEq$E Я9 lU*D((GB"29snZ{ެULtRM5wE7 Nnl/A#fxf"4xηx)s=t8PBc#\JFl]{3#͛ҼS+qeTK~.y4)\ &<ߊW|-H}`~~9Rd #wDJ~#]+p#;.{ӓ&uzסw"mLwgf(z]  T8=:!2*;LLƙhO;H("(|8ˁM!#fkU!3naz9"52 ֭xjK~#3 z5"X<$A!y3 W )ւ0.C@? bkCu;NVy /l9?C,tA:m`)]Mߎ@ZG <}k@|WE>:c~fnЎWa=SrS%m$^F ^!ҒPxϛvj>E+J];#I'h3whޡ1n@JM#<1zv[}fN22٩YЮE$ţ14 ؛|sy{ BlT&կ#m+Ɲ51T;Jsτ`f^%?؅ƲHШEK =Ҏ.i뻾mJ3hh(H٩cG`BsoGrˆZB>!yJ zcvYtpL\-6p߆iZ!' ievg,fFt\TOJrXw- !w_'>SeD(8IA3S+dĠ ki<~(.Xج+ms̭zK~d-`{Hk=w ` DSj\Z h).Gf=,8^T-f}l*+؜T_)r6 89I6eэu89=@/ȻPZsKǩ˱Q;;0TJ~>{RhF!.t\t/jVvTOAz+ȴv[k[)A~+όt}<4m,raz##q}s47GrH`5!v<[m3Anw{[8T]8 %+EkqJz ʣxwn־UDŽ2 F(ڌI᳠| (q@#i|6:Z*"T+PbL*}߬eUߙ* &wksRtoǸS`ܶXXbO4qmɓ]ft:+d#Y2~ʪ£6E謏<ٽ1ï` i3:jTET:qXh/碨v-Qnds ){f< U4;dɧ_z(' MR ǝj\8:*mIiX+;YS$X'qU*Mz M]u1 <3mi +z[/#8Gk6Yz#IF2*Irq ;{[P_ᙀؼBrs8Dcq,TY5$Oz |AɪOo&FcIVk9Vf-C&!vQW'qp+N>a"=dʯ2;Q='*2=3ג桠t`sߵD CPMYoiXfO dWCwH^vA<=#&cN\]6Ս$yM]ArաM"MkLs5g[61dzVv-zqѼk2{lbԇN޽Kn$'/ ϵZ+!lӸip ʽ#ndG Eo\ڢ%9CДKK'l:6, jrs#ټ 4gň?H=1qB&rN2s!eCܢ~.Wؓ֍ƎG@&׬;?X˔@lRJSU5k&=Y9 H(R K;Ռ mWkV^pE$cNgEU,:nϔ 3&l6I O쿴,6om MX <?4S+L$* 3P-<*D1_u`K>[WfӇ@z;‹ŵ s*e+#Pû(sO42WK\xm}F>0ZdCmai/E|póV{:u#[2P,UShP#j 0-r)ODGwRP&=`('2`UT(.na^_O$l֚.j`pSiSz._+Ɨ{&FϑK2p]O8fһl2c cEx9!Fq~@D"me խ^.P|FJHʸ`& J#wbtJxCmYӭdْ/b=eGz2Bb>pZN]AwGqWmvQYuF0%]I &lx+RW#.ңboa̞1(seE T2bnQ+CQ"C&Ce+}VBMxz$ay'f ^<8&KcT4b0M/ǑdWR~{#WbGMCtru,rʆp͑ =iaۭk)K`"$EG$NYpR>+X NQ5@i5lL>)#(_0uTBX!}i'5)\|I]xkkȈDYGz.DU<46qdSξxC% :7Kvwg~#I8%7QqV)"g>^#"9-L$vnkP.c\7a P ғ`E=ͺo$5Hջ =k7X(oO!j3f[mvKdT?IQ2LCamy.>gv.hՌ h"mI ] Q&2|p`I*mO8 J!3>ǘG1TXå?*ӫ ǎ56Jꖏk.`kVtCr4T :V=i|^=w(F/hm(=Vɱ ,U+nC @GW 穾n=B/@Fca ߚW?4| ]Ɉ.XF8zs<8kY𻎾XoVybQ^^`iu%cԪ<[9&,In.Aͺ8rZ 5TkIƓ$Oao,<T't{pIc9TpԖC8FVL[*Z;6Um2#>JZA |= hl ?aȎ El@U1[}a=(ĞwPe]Q ȝ2 yFN8nE"a Rّ;rlLc=a,pgh&15>?}6s0eHp "ڧhOtۥ?ﯾxnKڌ}@ R!sqRƞl[ё+~6`^R{6q^j XO'<אu3@cЂ3 bhh=UuV~%k.Õ]Ppvs׻^Lqcp?E#^u3Q=5+їqfdQIn;zf4}K|vGa_P⩎0bRۼdEA^oR$ۙ ۇٻ$TDm'j48~?tmO8A,9x-"U`Adj`?*er,J`z u%A:-E)*9B^؇3oCF]U2E38~cPٖלƥBp58P6ncʌL:q((ۤS7dV_OYiӯɣ" R,g`r6B"$ϘbZpVpyfRaHDN pEUfSLi7nk:TmZif%NT3۸ ≩`d?%F5z+ ̇H~\'e< #[.relL!A$+<_C.¡jd#apdD XD>?Syy3[rC\98Xi'Vv\ȼdhCo}jx-Kγ ?Y+`/Q; X|2".ϖT x2NݤD|쮿MvM u+^2LVJo aʲMTc9cm`EeȳSfTajM+yKrVsḙC+%jQ~;I}~^d7Wǫ+ :ad`ZnjR'y&-BKaWZ >s$h=!EIW>P+  Ewon :Q+AY yeSzXe3S%O4ι`.\E eY??=b韷^gKvJE Aڈd!jͨ ~[ʼ)#2L4]M=ٽH%3NtP_`bCydc<ɑZ0.8җ]550C_ c\VTڍ+_%df)NWm,(J$Q$| Q!cp&c< 5_ C؜U鵇]9/#{$9EzQX*V S+^;5آqq8ŨȞ1!.i+w74_OƷڀ?cb׷ TƁLJ @~ץCS~ >eg HDŽ0ȶR6/>7$|WZ|w^̊ܛ9P/5Qen0 5(dҌzzCh3\v˒g9x4ǬyS#z-2wNXZb Gla-8LPڦ͖iǶ89^T3̬2Wr?8ZiӣDSWp yuT\N(JɷR&;{W`8 |k\! BruɉJfhbX5f%f3 %_M{+ƻCߍUg0> ʻK &EO Y#XJG: | W0; ظ;j|efLq-XwK|P@(Ш*=pWųBxVOHd>Zϱ8 }xAm[N2ϼ' )|Qy["E=G3?No<ڴ^ngA~!P(5DŖ"өG+hycϗkeU,zߟTCTL #;|7_\Yش@篹kLkQ[mM5L+Yp 8ܡ]N0 3P34Hʫi2c>үG_HIl.0|v*S1,;P1rSzA_TRU=o#%p i՞U[z梪=#2E0t Pj}M`MWo3Ϙm?@a\s2;,5*@2 ]H˾ImMcdG(hQs[4 /AhȬsycVx ATKo=- µ.KR i\yaMX-0Aں,c\U֛=׺XW)o,}g.g 5Cph?@d˜ 7ǃiCa]7|/_xR2:W WXC25Et*,ѐHW&P&$QHTa|htqW72~r@Zb 8J7kNx6plj6֠??9ʾTB<@ð x-}>[+1dTTi1;ק"<]kp.N{:Vz\>QFZ}Qjw6VA祳IߪB]uǀ䈃.#z,dM.&o'0Vq3nom ]5_7ă(֠]{f\.#@d5# X(#Ğ/L}h%-QExRKm$⩜ck-roӪ( KՆ:ŶRŋV. 'mlvn] ?H5=،J/\L*8@EW+܅Y Ln rחlYP=l^(k)~ݹM3+sBB:s&4SZDh Ěb(I~Ɨ~RX͗1- `||W~T2-{7Y9|#l}*۫ }xT ި"n$z8v>SܳYrXp]T90i̛,!HtQJֲQU7x 3tM z^NUn;y9+E0$Vf4TɅԑ >il)cr>F`gҲmKOQ7Pwk7xP".#{hw`'\"A Ti`* 7}>CjKsF6.ivQpR;Zh"8sWV f "l 5i qEM: prJ ac~F q[l]Y/$}ܲMۊ%xNxy+¿[c`sRJǦppѠ*f#ڡiY/-(v#]:VpYyߡ$Қ[FOa:\9LB(jF`YVgñVc_Vj0ra `I\Fl9IV@[{Y *`I5;n uB󥙏E| Mm6 36rgzBN["'4.Cщ4W@_cxq.%"Y$Ua:Tj`MQ̺`1 4,j]۞lYY\c ŸBjqV~SZ {I/ 0C?=8|15N'ևEqƺO$֐A|Ґf[_D(, DC|(k6]K;QJ]}|ڣ=q>8QHd+҉r?_X2fO&AU_,1U4R3[yu |],5 7PT?[`.df~l|$~XDلda[Ҁ)g#Q˓I}uySs/ʈؓ|No `;` }РNzrX!}A=FfR!M̨%=PXG*8p R`rٖJj61{s ۬8%Aer'<$!/nţzxkցڤbᴼ~u.s:=r\|r.R7MwFt+@n*0Hͺp]We.1P,p`fxXhz45hS$ݧ†0@d7Z탰xuWjThnm)ӻ\ZѠB;}^<TZIKSFӤ`\vk `gZppz bׄH(/Hf)NKa':&:/zث{WJpp;U3L?oC_ڇuHx^}ڸxn( 7(Fi];Yב-XXt,!o-Z0'ql`̲ǥ ?>Ek.C[`v A"(Wqz :㻶IML/eQDot ,P{M-hg{@عkw'k9?WMX`>xFV,rz>Tl볼{9hW:oPJt[l._# KM߼ H ۄ$6)(HEGfP{HO% \g}ӝtVP| sΖuT:-(Xޮ |=ABз ?VNy_N2Ox0`+2W OL&(u3EvO*%ji%3^q&]xtRm5w;]P+Hb#3@t}{KcQӐ4NK }}f3I() ϣUk!{p^^dRcb|7/%qlƤqs1( HC;}1K_d  K9!QsIϳ)ݎ-P}!;,J/6v@:W*b/Mrl`Sc\b5vK#.Ym~I-$vV\z>'BY[>eZ#'w=2-*ז {Wfl P49Zq*q_{)G6eSV4굮2ɒ|=0 tzw/aMub9$ĖS?Jå(`QS?GgP'6pXuFR~4~ۂ"4P /PVojc@Э*, mS4&3Tdm룭VwV NW| Yœ"xUib=$##(EA'ܺE+Vwv|[~d|]z`_MݤsLÿ l{ӵz NLQRSĐPxE{E/!I?z.>a] _`PVmSq|{'Kܰb~X[Evo]#h'P!ZUhj%ZI];| 0FWQ}G 2Ė M,ѿ ؽ?D Tq!5I^3_)]ȽV3J夗HcpC {Bf_u+IU7Li hBX&r iÙ_c{2KKV74Gb / n![jTE_9ggs֭1c nh_pVl'@Ki%V qKWH<-C~ ًٙ4T:ltx ޱ? k;3WҋX1iy֤>Vcq|c0FX1gx^˓_oGm*qnĿIP&z}ZCJ8U{$9pןa;^̌/~[߰jyԥI:&G4#Ynq |It eZgӮG Xn$qK !'7fP2BÉQpaZv9$X GHg평*qׄ7r^hQl.ǯt̳5k[!3qqٔ\S4V3 C $nG6 ^|{CfN+9K_VtC!τ5c<ΈFO,exjwVOڒ"bC@:NęXkL\GݩZ4jڞ']hJ"mP+9~#sQUx iؐ{V)2vcݕ27hD0Fx[qAV+ⅽU8Q8cì3BsJyqiODNw\_(vW񬎴IˆvPmE[ڊɝKqڑG0+8Hҗ`>yA 2D'>!n/.MRvf {Qx޻pn 6Si^[AA(֏p!_m9Bȕt"A ΖkK9axS3n,#ajNF1Me=|@6$rZ@j]x>,vlGCN (&? ˞-=d BsA/ѻY8kpo> PڍfI"Ҁ4,"&2.A*/UE94ðs]#'h 8/4FcoԵdDR.ZJ2/oWEG)~t: Gg%TD92}Zf-Nw`X_e^t$))]4W{܏J_\;"Jl\ꏺW⃮lښS&0[-ƚxoG}zM2P! *JbrՏ5 zP:~=b >7pLvTjRJaȟOR%CAϩ sG v!ypɭԯPcxWawΫݵ| MC~Y8 WvjJ,y w;tl?q™Em5J&cPyEB-`Hڨ LZyYHR7O8'hNBȆ&-qZbRR?%v$QZqkM{KWBϧ"f)Q a8܄^EZퟓ8?sڈRK̓訄B% 7@P*8_y"Uu4|3_D:$yE?cO\'@rph0򠙼z@ugv7Dxifma񑖮S =$ Gӷz֡DҋVBxFzj2PX^ H|(>_ȐYhcdJ3q]c_B}|A#6ci]=K`.`XQdi{|vzrR ? M2wP?36]t.<\^/iYյJd&f2l:Ֆ߇10B;z:{^X?y\N|q?F4XVx#<ih! 4vʹ۹}bPܾfӛ.j+R>K F ]vuX^C8%jȨDoqkY~i&~QѸ^^85gzsq.n0<4զ wohu_%W  gh%6lVfI;B7bq= *6%!v2o\֬;3a&Loka~9l ݑ.ۊ\JHUߴF{[—к`"?u@Yb8Dl/%~•ʄ TR j;6VnRXjKraYu[TbFӀ'֊bvA|D7g˳#x4CUfzz^1.HȪ΄sj`؊_A}"3s|`Z鳈CeL l'JNIDh9z@f_r wkg_-Ybf2_e֎[54m.qIz Ov+Jn^SbhЬWu[3e %ʡBI?6'VZqگLa8PfvSf{usLUY+d޵!OΜn!5 :j1LU?4w^+4J:/`Jc*^9&~:qG^IME)hA.!BbjB/N2@8O'~TVdQ2 bkƄ;Ve eO$~ ^& pnDLzvaEB$a <= Dr z:~)TחqƸyed\{\lȩ4 & 8uYNS~0Ŧ~c1 I!u# %:/kPaonQ#|p5{d(D ko8.Jz%>r)\]*EkrKUY[*pe ;ޏc@ͦhjo1%\%.fYHI8ͨU<STOzR޷h,(9dJGR߅0.h` qPoy} YhIT bNK{>9- /Rȃ!bxwY?4Hy`\zu-L<='M׸yī:/O,UռB#jK/:ceAHwPË* Xn YG߫EP5KL~OѡV.pmo~r c~Og#/ .;vw0$/4=O$ ֈp 33@l< jFʣ}"h2+{zSt֝|487۳ekQA*xb$i5㵖X)CУ KYS``E{M6;+S7eHk D,6Ű y;ge$eHb'ͪ(TV?' ,2Hr>aWif7Ge Xvd}z=; 9R ʪDs3 MnLgaRPcLM4[|/?e ּ.~T|%v㾨e#TF7Oyk4_Rm2\̽B>lA)%άyh+}ivX]vp'p!V, oAeunbJ]k PwarJpAkhĹodrDG9S95NƬƂBgY(9f=(ssf(6'R*C56|d$V̇5N$| $ #O@ c%AM8 ivKԐpjozƤS6G 0. ,RR.">1rͰr!9&3A.}@h|^~!L".5tx ϻXƭΖ"yKy 3[$t|?ap۝Nv7G|\83aHSeTO&'=QO|ľ|BuĞ,m5uzɻJɑ 1fejgVCESG<e1PIouj^Bw>֥G,)pra?E򺎥XeQնp /wBHC"U *=sYʞ~˓I)~TÍy1[KϫC8 (H""s_HJƼW*)y`*z*цywCT b2JjĒ¹LH`!Dԡ\M`}|!G/@sr4Qj$>!^ɗCb^wk7:3K3H9/.s"X1ДI}$Sѵ3uh)I_t9/愃UHN@i:4XSA2m|9J8uqy0eW8V+v쪷'5>B~(6mY=\.bSA zm>RvPLO' ,c(AZK)zHc ӎ `5,?Kw傜ӚJOOW꼔9UM`,0n澹gwPKHD2OV0TɈY9 V4wۓHQcnZm۟"~dk l?o Rs9mȖZ JM # z3h=5Kn{rt,5THn5Ŀ)0,٠,;Wd}U [H񢕠Qͺ0]\ϑzI.} FE7Qg2T#$w8= |/Et%ıѭBrۋ,[(~;aU]jH5 }X$LFRk)'?F֮}[+g߰-6QY(O _ ,f}!dxA'^ L˜5$yjr$Od鸏W[Pt&Qܭe.B@`GР*5*{#.7 TT| ^p=it MqRֲ|7x[3q(^ ~FZ_vn2`} V5qYKjGݘKDsymTSJW̌N/ʶ{GuQ/a40|6>'go>Zٍ'+ķ4Af*ݣdr+1$j;AKyC4*?/_{-@old<)ՁO*:^ B"䙀8FTY:tf* Lv-4O'um6PC4 ҏo$|Iv ݨ\t[#ze8 b_z)/<<(]&=fˏ1Լ}p.5џ S(=c-VZ|S5lLBHk;P@~O(!OL Kʔ7Ztu(]{e#WBꙘjQ"?3;-W)W7a҆_ΈC^ >5*+*"- s_x] ahy җM?4rO2,a%Ϛ{(iAբVSYkCɉd®Bl 3~%de/ prm DFrrYhqɇb~raGPngU YB4aSgʈ)ECߞyO!)d|-Mes~Bgיpe *w者O[" 0 ;0U4 BՋ b))6(Lo|]6ZoY?A-VsAMY}-I6ΫƓ-$ZmMlpqh_u o?.,<4ѰhԗNv wt&nqY~ԛMKr d_\N` Rrjrhm^*!cH#K5bل䀸#G=U52S qńQ_,&.K8/DF3>1<pŢ c^<Vks)ޘ*`Z0^@چд(G/ Ν++lwtϮeR*X;~D񱀻$<ղ)gX _;dƿ#fR~Ə[xXcgK\h=t3MLDa2Np-D+~ozēCc952` ;ܳ[uCȚ̈IWfutfa KN }춡НMK/N,'8ZXnJT3|ҜDL,< 'Rn_loʖAPJ+r&{߭~Sq 0cjp+ u&BgԶ#oѓ؝]<䨊885SrQ;u.ն f6mNe]+F$9xHT 0shs.2:x7Z9ՆpQ/յ{44Jt+皂_ 8~Ⱦ@_T- .Cm;-YġyK3?B:YEZE* !|=r5&R#_=Q7(j HR^:5P囃|7I,$@Œ/uoLsPqGϻV7ipWAT@CaJQ"ٯӼ|TC e*7翢`a(^=mh돕/<ܧUDD%D>ܴxE- cѤhbI$C[$zqx?ta811}8kרA~~,'llq unhu%݀>H戅bYe| Y%AȲ/)L庅 Bf|xB7j`S鯷yF'A so rDŸ$VI&+bq2<WjL~N$6^_19c>ۓ.+0U,LmӑI|XzVe(T4ntPғWc 69̗t\-r%$zLXd%KXw MP0icmrd+_l]'e&N ֪{*` 8PFkaTN& LRPxy٣afm!t+jXtxMv?܋*{_@^T,X"r ,KWw+wu.}t)hSQSs?RkZ}lֳSl6 ( δhA \AtVLg"] ρ5_sT|i:] 3 D*XII;ӐEY6lk3Ǟ)t|zgB5:*&ӧul3^NiCGYg^11Of:DQg. [ 0~E tE \9Ebf'Q k͑!ag0aDUJQg _^[ f(TiY".疦Tgɠ{.n^Tq^/$vqR=<fQpn]#|#) MxiD[Q톥)' E4'\85߲J|>p@󆅴ɵ\i UzŚkoOLuvJOMI !VMZMt'O%L7]*FfDlp ]{*M{=35,z)d%b'\ڡ(حε!ta⊒pd[>IS.M dN7X AVF#iDp@&Tie }?uD#*(<"/yvSr!Zi=u9Mu$b=!yO񛯤r#B2UJwש̧[4p(% w-G7wt{glA?1 a1 ?,d'4RAx1WF[吼`&E,S2]9L{&YoBc5P}4dѳ@0bښi.E/fTm+Uߊ8H7+9^lt3ɲKd9S" Zs 5u@i2[ngpFI AK^A]VzOzs1W2|~ݨO^-tB^O}ߙsk8,!9|yRU3`]YVd+hMfhEtp _T1{SO[gHAAB kuG'uQt֏"ig \"K RB;26[JJ=RC|6f F c($' ƎSVx{%Dƈvuݑ0L~-!sppnAc3Luj4/m!QRd䙁7o *0q3PARR 9#v?./jxKʀ<5Ve<dpkx5k?UN;rn@Wmܛ+n2SQ. i 4#_ ~ (,rmCߒT$PK\gdh) u0ƙMR ΦHU>Tt/w*bZ>(]k\乔ڵwKu@֊.:29 `v"^Z UTi[*v[{Y\$Xu=eB$8S)Nqc@`Z"jӮzAlr HcןaLm Q_Z`0<䓵PW8&ljۢz 蓽 t'L:uF)_C~FΧ3~?lꨛ+>;[;p>?O@ ca~9o(n% Ou3| qy2 }gg("W.1]/덤Cg&H5@/ iBx ZKJG~b{T;=x Ii{^ӽT4$`$meÖa00w[)NG|t7؍DC P5;eˆmLQ2~C rO7!u+ RnFY m$멭!`ѥұ?XVSڝ:Dva!_Xbd<4z,:9^{]XW ߫M1 u n1c`BTo3Z*'\WNln0/éqYJnbCtc~b"切MeY@Ei%&yIwv!wHwhb"NU¾W{9IE/1wBnop~trr^+dךggUvqJT}wN!4y5hci|R~h J2FPLUW53r D>~oetetz&纺2ˍqo+F=~ʍ/ߘ{#e(i=쩏o?Ao}?.J{c.<#|ʮKjG*\wB0CҭĔAoM>Sn$8.h+nwkiG5d^ˡ>ݬ 1gDMgħsu-V'悡A6uwu]C|@t @sdYrPl&tlCkU|O~>~ZgJAi2)ݽ9ݲjV(s[3ژIf/]ρ;s6Ly(z@AR伳aWI!җ9{I\ M9e-!DID?Wg 0YR2| JʍՍ[ez{ V=oYh"!odCh" VU9 4r< &]u/si o=`wX)ٰ4{=O* jp9\ae. ޙbAPY(6bOAЄVxhh踭$`<~J,R gbXt$Ql296*3}؃׽LB-BۣE*fބMjl|l~lC >Dv.cPW>%)]2?ɎvI%S@L~ӺѿᏧhdيʛcdS3;NeVl+imd1f<2t9nW#XLyA~ ׈IG*09鼽%ou 0%s09LXAke!t7jW .&L0{gBY33jGQXhttFg]{b?AwN񞴭uo9@T-a/e}Bߒ]K #ے6^O;^3hO5n3{ak(tVp6n$~vH}HN  6Vlt'vD{1Oϑ6SYZ\#ۛ%+lX,I>!DPS$ 5{Q}V 9rb UǿȏEbV/A֩+׀#r&*M{32:(}b(ߌDGĘi"]^8'XFN{KDk"t&8^&fԑT*H |B iqkF:ӱ)>1(&"b_e,׹tђ`8%O]#:9^stJM 2RRxW) ׀?TB+Ajr<1VΟsb!w]5}B19`bH#=G%sƔz:CTq߰@J +.hc91|3xb(gNb@]AL'r{f;SeLm :VPgk6WIx]/&iBeFe&WCICxRrn?\fv'O O] qICD1%Vom=)A**SW5.a^W-„˖D,P9_š5`l˭ Ł? oiur˪13POV1" C͎Ӯ`I4CPIC!|guJ ^` &}YSIrRʠ;  ao/eg H$7_O\-Qj@g*ˠ{L8&%\5VÄq&vŻ%KOS0^pNqMz}x'FR5aۦDTM6fG7jKo=P mC˜V _4{F Ĵ1Pp/Kh}F1O'@Re!zP涼zy5QLOd!8.W#տoUie1.țC<=,XΤTI{1JstvjO'ۡ/:Yij s{#e]ƽS(ᑖ7AZ_n$AVi+F5B:K 6@FfrrBH]-c"]G_Rw\/:IoK|JS7s4 +7$6Mdv$ wt~.ę-2 fƝ扨!4Xõx@+`º):/YQ2{H~ਕT󳛥$Үgj{hU츞$Gٲ<2[5[Fϙ\P N ;13ADj:ZtT&CSW);)})s'C^k}'m%Tp츃e- א($A/~$>)mm-)GFw0)Kv\呒&yaM"^š.}$  _)0GRl\GdތW.8bJ;ui| !THܱoFz24z08^Z i9hrn[sgu[npM~)4q*A2TKW(̡'4gfJ =>*T6MbK6gGu=Ǵ(#H{DŠB[̨1֋WȘgQd3εXB Jz29A=ݜ EtOҾUذ) gSr9{O(|OFu~[l81~:C+x\آUwu=< ^J <QOPQ`EE5}o/6$?&ss;$vִĀ1S)qq)a *MG2Z*ʅ$DyF͸7;߶]?<'@!I<2[Ox`jw짛Z-?b=)0GG` Տf v._ $7D 0{͚Y#9 عQ@]DA;@:{03nӠ6bXn*&k)Z hQٸ7 @.DaӘ.1V5܉ѧO ka>W>7bP{7.w3ªN9hYbomuEmdJvSz$#l# 9œ,pq}LhIKQQFz~wy$X7b x{X/sH{: h,I GkֆmBQ^r6M})lm*Ti*t*,:vaf~ʑmu@mkKh҄&_pԺ@(Ǥ#KGnHo.a!ix,BPx(iYOS#Y%-0‘V㱙՚>JJ9NS]G+Qxf9s 0 Fɿ5sSkPYժ? <2<԰"Aq#UiefQbCŒ* :yv6+\-1[Z\kgFiŪ<~3NXlD7{/7i+;XǗ1XjF Yy^2uq0; |D4L1>Ƀ48(LԿU @ԓ2iso?`:(Xkj`Znrh j2ܮ`ލ5ENop<Ź0GIW_K2w{ <3+_o8N NFsE^(⹭6D$a%316Ze )N6\>bY 2D%s±旜"@|[,mu! "sQDMrr2U~/EF5XO .`"?=w84NALG ~]@pGGe]\8EvA:TǹWT%G [l> U+(z?+jlm`cЌȺF\uB9xn.!<8:A+H5%}a+%M]|,EEwci9"Y+uδѼVBW!xN i7pUFm߄ЊUppe1D= Be s@IvwST2qA P*fsJ{##Y,k^ld=W&'dT~_mA΅-] ,ٟO;c,ͭ/ UM#-x6*Ϸp)F<#K!RHSVR1' tb^E sMgGE dWgF^*0$;<-GkB7< 7ZOGE󢊭8_|1,+5|ƴ}f1q6]LpJ!#g|< "r@NJ؝␞(9*i۾4K]<@2J 1o QjἪUA5|mרhjC}wb WL\Tx!dסm>%D32뻻VCGa~ :ՃwSyR^R#?g%wWT TFO/ lo )^(=:8'B*R7]2rT-clUîp LL\X"IJVZ(˰y[RB}[%SV4(ڈ`I6 E=:M*;zQ#'!LMBgI( LNpI]և%ȃ<*tȦ1QpPx: B MtHZ:Ptm-HԏaْIaDsFstQ0uhՙpoWa{$'hdLY=XR*I|8?:[Q*l *q й ץVڰh+afQg}Ż …ÜB[BaxE9v0&t6CB a9pq,:&j;'K-u1$mrW1,Ve0vWT<7.XF!"f4=0@bFU3Kpus>8#J46 4cKM^]IAn{:Wuf<ѽ-2U("\Z'W3(X؂LWOE=ћ:e,n5==#+ODԲNt݅YI9h&z젝Zn]J NM^]éh !1ᓫv?0f[jRڠb*DZŽNPܥe!zc][&c$P(pYYtSH=MwiDsDnߛPM )6s#E^yw|@v?tv IU9E2W Dn5ZȆՓ&Zgͺ ~bґ~ݽd=:;NXc /Ejbf=yCO9#{^!Y0꽭f0KGWR|s8H}FءjY,j-[ "[ԤȖ5xJ%Jr=Fm똼{a?y֫j<P2d8^*!5⯄gxe;܉N jf6ؗ3#N20>B"܂2f<]xBth^TOiEAra{P8 U|)Ni~>H2}1ᥡ)hTPT'=y_ `m4EbFQ.NznJ3I- 5t,'1fT@-9TWDg8 a찣ǎ=K~^Φ%m_%}an/R.eoO)ۦ=ƭOr۵F4">M(kmx}(FR/y]Ԓ*1AdMl|繷!orm#%]xi}%GҔЦpa8 }s"M(fve\:$8JgrҳEbq- Ƀ!M$fMhy?#u/Z!֮w`|Yf GyqRIǦ5ܳx:yl~ن񄡁NTrt5ݺQޒW5O"9 BR "Hv>$ج@ŸkW 鏇oN18XV*,{^cxf;^&Xmp-h;Mftʢ9Z^>,u`s9qѓK|YhMTllC0 'a9Ẕ,KyYP.[ =e;{8 Z)T|"~0^$syYVdfJq?Bqc7XUV)"EP4o~oObYUO> Md Y80]@ 7pD wRd<|> f.AKS۬a{ 5}m&%Qh0_m_A(-Rz}M:dnMu%_|:D -<`$y+PtcYzWed|;P ǧjP$;Em 9aMƉs^ql"HXdY6s:#/؈?Fl'K=/+Ҵ١Zor1?'xUr86npzrt wWFchCa&UJ RXR=[:V[5<.Ja^3&a7wA-8\hOn> ɲ6UPxTC +kYL[EA!6lWu u+ ~0{FJ=<~4ODl#a`3 Y!Kԓp>k@럛Ǹ5x6)1 ޔ"_4l.MȬ`_/ci 6ia\[f`C e9VeDsN8!ƌ~=ak?3aqG&WО\R[''Aj~e3cFSv4Icg5m$A3^2ȚfI\IYŁXRrLPwLTdoSR5t҃Ζ,:Ͱ0:";P)fs^'ɘAv?g3BG8?Ceе?$cO5Ք ]YN-3#󝨼3_3~Ɋddk%kdhL} "z%Y=xX;I0r[ůq wu00b߶0cЭwR Ķ׻)@v:O.ڡ9P 36-N=}şt:*-ev =N щEe`]X='ymU\=QЩU &3$F5bkm+t{y/~Pr*b{C[ U($kyj C2_qg / -ʍn,VjK2SZbT" z)o|pOLmX8$װ\81Ԯ7eǣ92itք2tе(Y3F`-zq̘R0)EptԀ+ۑEy@<&\Q6 P4]6fԍz[޻iXRM/*n]? 8֫I71v܍f]0R3[Sew -D4 W-UI<Ol4Skmfe+ݑS tm^ \nH\X;I\(½- ԑg_L)Cw%!A/B' }~< &EWbhDp4 ̂DJ *x@yps.zuu+Oȍ0DPtވODܐ~ٽ+Nx3N}LJ|^h i ko;&.?jI蘽&懑|>BG"ڟX"iKHL3.aRI M31n=!dgGT1UDJt>Me1_5B)VKtAnkP#frW7aB0]M^f CA}sd^&JO #X ^`@+͋pOePJ УWI_$~=}z^daj͜ac>6ng84yoˮy&REX:I" =.w~!h.G/q:~R7%jT'ReB洟O5_FLIKUz DӤPp_6^Q@z2juPj.r>?'R66̰ۻ“sMxı?1XN*1>}zSE1XwE~;E20t磺Ẽ$WK/YlPPT"F3сVbF-A>~-u'Y/; ^Dԟwy~ Lg{!7cu 6vpܘ)$\aG<_ &}&RJc|YMXRv2dKrxl,^G0=- & jtf9|Ό+K\,OU,j ?dwR2ftYVA',qƟͬ\cm;.5;ݼo4|f*v\{Q%P $sp!,Z8g˯沫n6tT񸤸}FAsSvы^5IieYU>vL϶gċu^g_xҧ1WmNc\Mhھv [32}5{j^#SY?44,:[jh=M|bAY\Y򞾜Ǥ,".Oe iH")MaWuYtr4>3c5Q_YdbŽ$ʄαb@s {]&N}jTft!<(ybזndb6۞{.ʯy"Ym+Åe0J4\~A8~0]BhWp=C[Suup&ֻhS|d?2YfꁢH^@Ԧ̿=,&@⡭xU$]k59rO2+qH;y:BTpNi BOyϕ% %'ĦwZ`-J ˴9动b>ynε%OMsTa2+t(0Y5Ҳ :-?Van.RP$: [v+Q ez;ZUqBhvA89A)mΚ?Z!QƽsKSEH~.;߬?|ay  JPR>NSIA0v!fN zMe@ # +S!xOY Zd*#[@\A:iV^g . gǘ輥g_J\Xau 04;b !_Q|0R~Y=,!˗'JfĀeM/]щN>S p{~շq+s*S"))K:)%ޭlRkJs~Q"FSm + 5R֣Z\A9K{͋#U442tDkmtO%!;)v멒` v{hE%)'?5x_;RNȳ!{qZ|M.n笹f9Jm9JJ7\HǖK1S ]Eoܐv)Ggkm%br _.L&&[v#*x0hAQ `7RE75DVB8vk`]$ `w7Ӌϻ (ۙ3q_l GlGmz*=l `۱җKا .ȍc ȋc xYx|%f^W Zryξj[xX8i.h}ڸ@FgoV/=B˲(vIUo [$BMv7WLv.4f(;܅kBڞB\V~Z ._4,gI"}"h۴{X@W{ū W^8]˲$z(u:+/?Ӷ0wL*:C[^Mvϼu7 !0P#luuuU ,)YL[k "³CÉ_IJlP$[X0翶HW>q"|YOh^Bx)I/% ś(D39u ;\BQ]oH8u_-]נ8RM+˫A괹'\Үv)Jx4lD:Iū~+Jig 3v64: _ʮ9_j]猪8tqY&s,BܱP3,ǺiASYI6Bfۆk;*nik=F5gL.݅&`n޲ne^m]0ZC^$$A<#wfYhiW%*ΕÉCee4B0Ala:,\$4:IΩGiܶK:rjm.׭3K@Un2]~D)!oL|w"^bi$"Q~wvqC֮LF3䟄ɮ-zdw^ _qBVL1WIkTP8 Y,ʔB\N[O48,N!i'H-{1-#֔w|q+"\纗+d>X[aU ˳6H؇S9QHU ??a4_Jy_ID` Yч!Ib'Ys!n?&}Ns c;)v~Pf]f?d*Ҁ%V)SAY-6$(̰1WU}[ލB*zf. ]Z\&W@W٣\1ps"D,q97{9ZgP$buiLmjf)E6tjWLmNw?Q+e8n\Fp" W Ut:֠S`' g4|NYeN^6++7=U|# |Om.<_|̰9*b38e+K%Swqn?;B)ĬoD5XMc)5QWmwިQtO*FCC뎬g$h! |Z͙4p?pxvh /Յ}# B>5SS桍?\-Wv=e<x|_7Ug:|-$E&J- Ƃ8E0DzlɿxhQ*2'1J֥70QJ逸{@*iQؾfTdGi &DKLSep( jN| e? 5lL*`ӿ2ME7)FpTX8\ڦw.P|iVd|ɺ7oEAYQbTy|y.]D<~-V魖f*!ū?ǚ'dڌ\m:s?R O~W82q"#EI٘z52-1*!"YENzH4QXR9o_'Y8볡VJ } 2:9anY _ $z)Z߻o莯g/hl| K[>7՗ |~3:7/VL&[d6Q&y# ZĔ4`TгvKD}QzQY xAm#aC .俬1uS ҡppǷo 8@ F}].zwcO@;5OY?kYB//?hj[LX>h#qlO. t7s#K7]oJeIJiqy=n.=ſڒg.ZO_,<ʲ=ucsDJ}̲nd3/]UvD?7:4?HJGⳝQY?~jLR“ wa)SfbA:#kDdjL u$՛ϵ(VX4..M,3u8}i 7rOX* a-.kguteC= ;)v n sl3bSH/fF C[{ bA' Y@^^W 0;\l0*LZ$^5SyK?ǪWIQLV®ץ@M@",aCjaWrx{^%.~ TWƱӁ[p MZDy'ԣ]Σ0U[KZxfYa1UrĄZ:&H ߴVw1 n:7*u3(ya=g8C]5@̯0S:.V}.ٴOd7t &rfU9XswBh]c,^w{߶SA&fFaw{6S|gw䅋HmDg2*Gԁ2WToS'#ۆ}FLk^\? ORjK Rk&Bs1'=`LfcL87<?:)r+'iȲ~n1%&LzpD~"Q &W3Kc$[ 3;n pCYh텠8Vn!L^2iˡ>bwݏrmoX :fuB% \e4U@[}g<V|߫jœ^ifQT+m,WzT/*0"&jJyfscD$Uٌz Qg15{ H_ԻVu׺D3\X`X|QCIJ pD,_W%L]I-SN΁CE`={0VqV']>?+0INexц[3csl?,zq7 ;~4B~<6xxIy:Y`]_*%S&M3UݮgA3? +>>ToA!<YuR/t{oߪWz?}1|`s{"I5^,kOHF'*u "㬨xd(4W(`"m{g;wR"{d,R'zԗI%7}[M`֠Mwx{)%ݢDT .ZismcN#36uVYcX ]S65NBOh6 [*錶6!H|KCƥp`*Kmi^]#>=Xk*XC^p7'b [|J;3d/>a5ggvck'Ӕ 6u5h_G@щ+6E듸wA GX|m.0Pmi OI.F9CIx7#;nfrb^[\ )dR@dl*MIZRT#ssOz:*Jh ÎYzڶEgdDPg+/eO; kyvyF8Kz! ',+0]ivKJD-淴|M4Ht~Hq'#m[hIq2&dĐ#Z+yCvx/'Ѝ=hhKȝC Խiؼ']r[/bGVx=2\Ո-C둤yF{= ?+i!2z? ~̘zsSH`TEگfSľYiCZ,Qk %aUoA^5)Pnp$hß~W\a긗5N"?IP«?8ҕKVZ]-j) 0/|~eLiPϘC#Tt31/e.EgCr$s|vK6B mdC L{Ex֝}^?I$,N(ю$_jM:7nnO%gA-pwZ54zԠKz#pzVPͣIb9rm73tUޡvN̠G= -`!%їSGʋĻ :x2]~i39_4ahT.pOS"ްH9G +S]{홐DC+H "e[:"P  h a<ĕ7x`2zdi(V痀_w&RYXd2D< z5y8Op /$!U9t6]VC[MӠDTh+O̎-{4)&e=SqeN1Ul/Tb`5Y~'g6M~p}o:[INm/޸9 ףy4 \q5׍nlnI}E}5הo-"!\e1Ρ!ܒ;GsjG)& D7>iU}Yč:Lߓ]pޥXorЩֹT) fP1i1o1}"Rf8?]W3ckL!5Oc\GԆAf@Z6e^T_O(0wΑ + #w9|KqkWw;(֚) o/TINګ;5P '14(<eRMͫ˂rˉ C"؉ _i8)1.@RO4ƥ"]<(让A*KN1W4Y a2EmF͵{Ł3? L}|pC?PIQ@`{=yu|#ultv6 .GJRD>ݴt}BW?7~im*T =B}j\Jsdk4>NH{^X)}*83UԇLxQخW>Z)[€t5 U&65s7Qfl\l̤\kt V[GOy0"CSlUlM`NJVܑCMqI i4oR<'xL]i"x5ʡöb.}l! ^cs%y*΂JguZȅS.7bհh1IA=}N˹a舾*|B>gh|NW)~Q^)C!ޒ)HhD}!T"ڤMuek"!]L- fmv &kSIJVM?9eXFV~= zouf* w_^l[~" 00&cx`vJ`p2%;kD, nJt;nvHm_MA>n#yUkE!bSu2DŽޠXk#ǠkQ@7TlS˽=da&{_$_1q 6W#cr=7IV#~ c~jIT8 Q8W}xBM[y.= @d{zYw-⑿I]X%"yr})iƣՠ:su Ybt-3|3+S]C$Ra +n5Ygcr:}2GE4YLI)rtpA0ҜY mJ,z? )lYr!,"or!6./ҋ3$pa fұ[Nd7RMIoQOPyi[ӀYQᚽmϚO0FHA6 .sQkza'$0=C虻}`"qvSf&N{P'J]=v϶L 6q4uA_fOE"Op3}< \::QkEo*{yMܙ vҠSN \u$̹8d=ꋧ, +i^S/2hOF"(/P'ŝT?Y㻇4зwYݫ(:4 meF*-*I~P蠶c3qT^Bw?}RlR Bߣ$]늞bu`>kS&~^ˇ>@ؕYZ-CܿN!VӠlh7:ퟏt*=ؾYXl`1 *S=BXdm,gidvAg> 'iV8XA"BnJ>0*Jnʤ%if ؝&ľDIX|6-j>xp0^ah @N$w θ)o? CwET!⨙Zjf~<fbGD0-o1SV:pGӋ3xS$bL=l`$b}e5T5Gw-!1mx3k f&teO:wr0y6j *T&~[.?ձ+$V[b欿 ķEawrrޘ(H7tG>IOhŹo(0u yѐBe:ŀrDZ䫬SI N-b t™`8)Cb@o'7tOY==LCoT3lh`@:[H"쀟dL`vȟWӂ}~l?0-*_>̟!{5k`艅 ɑy`Z ur;ż bt3Ul4sl[ UVdʎ[pԓKj̫OJG`hDf~)KHO!i@ Lhz@gTxgQzIsm:?d [ c~_/ Bmkۖkb'u_8E?c/g;PRYtHtF!qrЉf.3.Z| f!SBS͟6#tŕwoQC)alk__û;.Luݽ\!KA;V jr [&=%W03kT>|Mk>L=d.E5HQ/H&6O8~ݏS0P W@.sX.,ڋ>~Pqp0 +fQ7X'I&0ƒd'*[!+ꬎ7l}W+kh``&It`靸X 9 /c;t.5\TVw8Na*Y"'#bJ3RYTY58.J3bD o %sQ\`bV4T R;7_P)t_n&[J2fFZKlDĖnS?lz$FVoP5'ĦQį$!DaoZ "(]wX}_`JzihglP e]ݘ7e^= }j$ƶlH=@I 嫽5OHpo&wjʴcu]Uk;_ΒCݎ>kuQxi[I+*N8+<9Xܸ^rczh-䍨KP!(1uk$SIk` EȌFMD(i!Ԋ1&|$E_F8^ Tr7rE>Y.xē۰e#8LL8J"S^$D2L Q@`z&!/4Oj>o.p, '/9-D]P(d|cu/ZCTecyע}F'l Fwf/0KfCgA HoN@;-/3Ź-k!i#LbGTM' qH7{ <_ݳh#QmFbX) =QPL;o[GO鲥)t5|0~4xnQ r i 즌=1=Z Mi4iʖ`s:#Y#դJ5pLwrڝlLɅ=x6GXƻ/\IK:>Р1)a7/<5tϬ#Hx EĚx; i~ޞ[G%Al.AO "H*h"lہYc,5hLyFZ׿.|E˝'P8lC <莈DMu)-O 8$oQZC1dap.0fwJ}\h_>[ bdVϦD#^ v"SODsl!r(w3K*/1;fq\w_s=.[C~eȠb*g2L9IU<%U)[ݲg7U) *qIZaBݩuX=?5&[v=^#yK;vƓւ@e:ۋ.:[]hs6'D5~*fQ畇HjUZYZ'bv?=DE\-oJ ܭot?C=L)-hDb騉Hۡ_˥oq)x! ݊ƛrҹߒÇOmlh.Rku3Z6S`%OGV 9uiLhF_NN:^^qs"gGTMԲ@>y:2QncF9k UxuLs&woT4}oc.g<}5Ժlwl.0?" ؓȶTH;g= 9MNyf \}Vvڟ&!d-N^1cx(Bi].E硯Z&5{3Ao5|Lx&L~ yG:ΡBo;2 Cp_^sܐ_` E32\66spLgaI{Bo(aOpVeys'G y/83 wʿŭjfƶl.\M"h`KSLTsCb02|GM۳5]@yHi&6ݍtՉ%kU΀^.7|󁶒X,ScG!#]Y%͏sȋ>̧xSKK y=an| ꆑfl\XLr? Ar#Ej JQ=ƸIg7(<]9Lv2q8I/9a\xv5jm=È%$+- Ε ie0دe`Iբ,n>pbh8TC4 c PB28-ҖɋL,2O->/!ivs)[kj({_z%&0) oo5sW ? ZKsu0-u5 VAq۔Feﳳ蠤#-U.xAd]Q'p3_g~+1d2B0F%}Wyʢy7S vk>{2LZˉ;(y_4>hktdeCf%PߒXNwZ`bf))No!C~c^X@ujv8~hƁ.ږr0 $ٽ i{47Êz^ ({ԝNL=ѕ'y˹C((fpmW_^?w]k EUq4d_DˉQP7Ļ9E:<4Z~ %8b<_ ݤq%|Ny|pNCߡIІ%JJ򸌬 MBףe9H=*õ]t*y/M-IđSv eD!{ oZ$D앪1uv ,ңQr<`odѱ$ؚT":ex5q}e#[zC˟5.v4[OtVJM2@>}50bED떋4/g+¢%-Nxj٦k(c3k nn^>GXjk1Dd/c|nHy@W(꼭e7x}<']sగd>ݘpsRt|f]_=֨j;Dgs2WIz4Up)Xa17%E/^!;"#AA̰Q_5t;fr%c &q A8=[E@yJ>R/`8JƖu8_s-"TUni} k?!cWhz2Fd7Kk2N Of-XF|:yNӑ%_}񭊐`,X_`Y W;Dnx8|T0cԏLv ۰ҳ\dm`Ar^1&IW6qCaJya9QOg@C_oԽU^N5Q &5SˆSM,3g`ﰔqdRUP059 N>oQM$J`#WsY7AD[x ]{ eś ĄA/ o3tCl<@¢87Ҍm21j\%("hnqAe4; ۘ>/51-N%uI;ϙRp1٫4#.4HQ=¼`1޾ӔcB0uG@ȶl;BD~}7F& Id; L}֢Kf3zbEZ$ַKztthws *Q{zlEJY. 3Guh7#S.W/ 9mw vIݤu? .Je.hՠ"_p?1sȩOel<lj ٯdy>[Hdr1#RS6yHs6g=DdFws oQbhmajuV!Ɨ㞢R|ibp# RAzƫ<#?>d[XUCiُ[K/yC?Ae fVaϲ=hh20Z(Y`(nj]?+?9*C G_E~ vHE ĸlLIe.Vq*j'!w2z37CӲٝd"UDV9Z$bo&HXjXC ae" VpF˃kXZV >izj!٬FX QS6!zf췭6،  #`Qnmre'k*TeNbt񍎠ٟT|q@8iJ9iș-u LmɣgϜmOW\N&QG[i&UX{N=uxQ[?=[{*V4RK3,Ʃa%dEh[\h"ވYznb/I2pSƳ1's 8kӭ<:_A:=Js$.ٷ@j)KŅ{L|@顭Ce)#L!]&}~{_4"g2o9iHa) tX%ltY+NP h AH@k-ݘHC1p<3ŝtb^SdO1#jpdBDɯ Fd.lQ- ѳq(YWhi/&SRkaf@ : )1'^,K14-(R?% y{e֤(4Z\ch9u,ܺdbշ3%ϒDm-JC;W @ ]7#&h2>zʳ㦂_ye&Na_/Ɩ ;q\zX^7^9 2jp#񺡐T SaT@ "c  ~ tAl@sNK7I&CmCԛiɗU{[Ԕ̊bfGR:к|pNg?v`K.!L <\1lQ}k[k_2DZA'әk|^!isJ8)_`'1EW4VvkwD4RL|e4yO;εh4Z,20GtN :z|BԈe_(F6e-`~fږf% '2cnҌ-^z`X31X~2 Rls?vp_|4tt?"N )Y 6nҍ/ξ=@} nZz-)LZ "!/1C Nz6èhTbEa0y#.+cSSMҩ˟T5#2K*Z:YG "0$a)|=̰dhxq \ o@ѧ 'W^ƾ&Haŀ%dep$@KAQʣ\E\G,3JwBbڞw[G}B1;T%kX^ɒ$?%`>UG%|.G߅dT5lt#V) $0g9& (sJ'N Y!036rnk6(w@ ϥʄajk$cl, @rLm!upIyExH`D75G}Fu9욠v[w95S7P7kg)8Kl ]=$422qWbhF>I)|=63aJG,*%0?,"fʐ/a^X]rlOÉ[rR5*Hbu>#;7ðߡ՗eز߾k  LW}-B%1V(nʧѸbTT-oYbD6:N ~_OsGa~=> 8?$殶ڱW"_^&rQoUs_iN e=<<||&76`v$SL\գ uKb+Jꓐ.MjVv.qy_)XMD͓5!!H }֟&k,mF"ܼĀ0 Б ƌ֣0{O#i 3ԅ<ʊ 5H4qqFK&W'ﶵkuy:sԫ)*{R?}c۾ݴdۛr%_Q.ВQ0ϗԌя[1;,[IBEXnلU[6n%au\}MX6.zxUb;QYt*PLeeg[)Z.I8;U/yc g†`9n|GʌM^pDe7j4z7WGqɴf[I溦xZĦ螖~`%7kI&k%6Lv+kjRx߅˝#w9 a?(=u~UFA~mz{=x?g&!QrSpGde!tĖzMަ2(B R(yakdz`svhFX+x3NmNb33P2V89X;ej18ΧE9« fp|ڔ>Ze;lg}UՒdkc)W TR7xE8tT\[R'xdDTf`qhKW'P5Ugc;OT{DKRB^/N45Mk@f&${OGxcBQ"6jW #"??6X0%wR ǂ;D8ϵObj^h*[$X,#=%w<̰!iJϵq[:Sɞy]NúTQv_AZѦT[ɔ\,N9o()N#y?sP#>a(O$3nU ',9V9IwZqs3n'\qtR@m+2t9KBp&|RLls_Xhӡ ^tM WRQ4*NpC<\f|d!Xj1fSu)8RzP=ɬ5*m*#6#`p ׫ yEtwݠJqJA46m{}lXʟ|BHLj.i :o•gO=r&b{zt4N9\x&ݡxJ^O"͆ x4)GdPL  fiFW̄ZC4([d;.{!F-x~M<M,s%g~(:T/*akli\ VdsU_6U1C2e|yz#_,G qzRjP|A,yXŔۭ|_[NϥP*Ƅ>\̽(dN]o"ecg@]`5*1A[ x5MA2L7VzUGLipߍV(4y1+7@O4&י[3w%< :<' ud-wܚeκ =![`4#Ě3z/JD y@n)ĉ%&oDȄԮTL( {d[K޻Yd [bo. [ W֩ndba̓qU0DE8w)/ޟ(,8t*;gX[aH刕>'[1o`rl=dfYёlkbCNtI (=g1&'BQxԀCRK8d ˒ 5n }%2S(_Lh'CO3pkϘNt4`Yhl4/S` ߉brgwDcVwQ߅-^X-ZS&#Z*ֱa\a[R,߫QDDRX4T͐7|/)}]a,!RLˎg +?C\yXw0}ѿ~ocڃ gVziWoÁ 좞8g2|_$`ԫnkzxh ́; gaIn*QޥG^]cA J='^(UA6U!`}TDAhŀgHU͋FrvwCI4,5EuکM֒> \K;EH!:dhB5f%8Gf!$aXόT-ԣ1ոTU0 &;]>'T?NjӾGl` &5鳔_npt8 hhݴL%; C0_c]6_5 ŌNՅk/5\@Px/TOyNPKPogEi?_Pv,+^Ja]ۙV49yEQ u7RaY sر8PaQShs+vr/pe%JAVIvr꾥$BY FyB^CAZ+Pit߿k=l*17 ^+`TwQWeGL.߼]swՁ֭V;aPCz?V4NYJc~+i D<0Da}_wM0BJ[ٯwҮǘKcՀψCP 1_'ˋ5A3$JO 63صa:=arpǸP7 z14kos oB/9TPT$?4e_zU 2K^syI#Ub lMGsFh~)>3/(!hnlΡXV4pe6R>wQ]-b5ֺUJ< ԙB㏝Ω0烪~@ %`KDAAQ[yP8qGJIR0%a`:(ʙ2\Lv{H[E>`B|'T0+)4!%ǯ+ǪG͋5>}왴x}~u-hXڅ /J@0v h9+n/%Xrb-*C@GC0[f հ"塂߲@Y<`TNBdߜt߬ 2nҴ#srSMI7ẀFԄmWi\T=֝F_5>bKExPۙPU0ϼ;.#@ɊjLp{T[]_RLeNI*0{bMD\v4f;_M)}U1A6K_JcT1txGw^Z s $h {/3ǂT %[.Y? ^R4:_v#CI|Q)w xkcoKǂT:GƙƆ jy{@u.-Ϫ+48q/ׄ +e))%LȇʩKFS4*Txݻٞ;ؑ "qO=CAr=aFR(KaNuMsnP$h@ܞ`)p RKSHݔ kRB٠@F~$)cnweM;Jd ֗csdHE@yR@1> d#7ɷ1Je' d[9:Cs}._̗4h?5$ûz9UMy\-m:Ȗab)^-Nƒȸ:jǯi/{˖Z-j7bL`Xs ?`45-(ݪrmO,̍nDԇ+8f1q4` 13ۚ}/|dA )[R8wy\Z_Bj*1s.%XfltO >H9緘2/$zV\ }fr:¶aP:m HS(Qn9#&u14n h=Q ?=SMC'#׏ZC`gƠ~Qs3+vǛm XM揯-e"M:p\p>-63(8ac4Yo~> oVYCk>KT8d0DHiImzQm'޺ ^UleY?#J <wx?qNg ]ViD'j}Uއ|faeXvJ*\Yɞy Z'b+OS 0نsP4%_~7(MSl4s̕ qBM;;fֻ꫇ > "Mu?BX[W Z;7`PJl5H@n%#4yfʽ]K`DŽYgGuls*d3,gT! v]C Meb:&c-Fy$Q5S>H/m@Zo=Fa"iN&ו<mu\#υzapѷf';]C05\F")fH?qv}`3(rNm4X2tQN1x vH 0.pVg ɫx7w G|5{K*T?)ʨ JHt ՚rl_.m"1!kq~H#m_f@[+^[H AeaNt?vXzCFHT9P~S)rDyeeT6>%T38kAgX;OʼOֻ.+M7~MCX6ou7-H16Úm6Z8BkX!T[hm|_60ۢUqF 36V2leiV`C.эLC+h>x+XsΙz5 ^T-to<7TlvcF4^m %5aRsG<ĿI<^ԝu.u3V;FM"()eIT!}+4j8M>bL+!N`$Tߺ<( MWF85D?"ї ]M/ Hl͓Q0- Ƃj̴cbs:G Aɳ&fv0JI^`NCmԇq(?,5$W[X{ΥG xj~^wZJ42'| wd(UD^ qSܒ W bV>0fj2 I0jp,e?ORѫaOLDT%j+x ~ ]> ve#1}ny*.PsJC&)^!gJkSIY1RC[?BFYTh/J0j.IK)fWK"l;Zkvolr*Rv滜 wX={8mr'b_(%X9\;b Q皝q}/h̉H7s-s~ENm`Jj'=<_8Sm7[)WT~du'Pdōf{kzv `%<1t89RiR U5"&v(~). j}vZ)*_KrߌitF!2[[' _a`χ!K5JxD6ngpi1OkStbp$&](g U#q9۳|yFu>#cEd\8=Ų*4V|S5#/v c@:Axz(X?#쟄Ojv&>_Ҥབրn!; x@c]A1ϥk{UGKC`>?úsg9Bbrg6+Q^֢.tu/F5cLȌקYkV'_J) ^`u?:g~##ͣ]40ƴϢ D9mS=[~wE( a& +Ew~SWCU I Lmy*+Q+ :H`?0\K[?k?J-\M$etdi$uFiݝ( OMwb rF(kL'%[ b<DHS%uɨ2+<?nRUu}*q7MHMS;NȐ7i-b"Yo-9>?,^@F<6_zY4&{1w.=LO."Rt9UB;6\#(gRaTڦN5lj>8zV8խRPp1XjaV$]䝙=>.6,1_sh} }f5tm,{>׻4kzYsY}LA sHͥ,f8ph."!9M-G/DPf4ٖaֲK\]OX6(H#-$EDeُ>^=LU0E'H&AD Cj{u) XpV:m`K k8̈́E"#hK*8c[W9-ԚΨQN_XesЦAYӮZ]OV٦3J4B`X/UfQܫ_*b&d@Ga^Y±\9]Xՠ,;uDCk*I.DmtcRe¹zZ=4ط=׎tn(1_+:F,>o7 4U.Y)3>_۠7bRѯ7!k'|07'Ff4OIھ%%Z{C#!(ID˨<Mz/ԼxRf_-OWf²p\v=Ё9ņYBqP+DxZ . 0J>ӡlFy7;OYe/ފkRBfR:{[8qoK7+t6M*z9m:J]Fbɢ{ZEk\Y(Gڴ0 (e+QfUI ƺ(fCgV7t dPMܗs"]m058N4Mk({_.:zeǕFΓp:Ob ŧ QMUk(ߤA;fٵr1qeqCNmh ۚ_$RJhë:&L!z]hufjk<ɐ1 w2,LMt9y|!oN2R1u]ЀkŬxAׇZpFz#9%y)~: ,vNR>Ki|dPxՈ$O%"kfXׇYJ Ì1c(f1@$Lq"jdk U^q?如$ BH$q&]\gPk":۽w şK3+6›t]9Po23-D,adYpzVw~XzK("xh=K"Dn3+r!feHKϡBԲ]\Ő! 8˝xJOfpIɢObY0y'ΨOvC}v l CQoX@CɅ@deqI8Bm6y9hR/g.[1ìb2:s='}*}c/vlq`-vc?:]$vӬ yc='])lԮ>lvF &w Q&G#o$Bc@[Q4y)jr!a<6}&o*PO>冉3Ip3Ik蚸.@v[ efY=?Y/hWG4߄Y6`iҴBQIj<*%,Jʴ;(4"k |GB6IQ:8P o?~+)C #:2E\.aoҿGFh4V4@'i΅}@A_mžV !Dhr2 y:q8HI.w+P>פs-Ӳw%prs5Ts囤qJ<UƊboJ:luxx=B3*e5Fqm ,}[pLqdL*fr".i*W3b<}֌U1#)Dxy+abo7[Un4wbvuyΚ&\*^WySI|_0b -mPH~ԂF|NsZO"QQ~Y"b+7ަ$ y \߁e?A| yMu0 ipqНo7hMizxIE)f5rTh#v谈I31jKF,-DLYww4):[{VsD LQ8ܷ?~hL}%;H0צeb]F.5ع#RBIoͱpH-hv@9%@(3KƋ" aS""x۫1R EbH~$> l jqK=^Y"VMXMXWF36Y+dl<<hۭ l- +5E [I-q%mwQXL_h>*B*w6֢;?#@us^?{ئ8X&xn|+]*FE4u~N|n:BԷCLGff,Sp>6KLhAgn># JooJlKٽrmrm>XSt\%"[N>|qp'L4ma5@c),6o1B0OKȒ+rn)̦)% NGoK8J 4yye2.\q3Ī5Tqƪ>qv:fOǝ߈T?-G=-z=t#ȟՔFd`F2蕂'R|Oe퓺bʨBU`:(i cmGM%10nS ~m'C nalr!)^"?z0;>#!ψ8`VA=8J.u_x[t?o ~N:J]X9};*J`vO7G^c)^k BSvWF{,Hr]Xjf% J@RGsݡb4`l"$8n"˘KW_4OI/xHWݪ!+87:xyv/Շ;p^#hjk<]4= 0jX^",edǑ2HQ{EyDx+Wp( _A:=<M 1 @l)Z#P7@& X0(L< t"WM>1WY3!v?g ;>(wh058,Zq>7,y#&TϚό: ;:)wEs^ɡ'SvG_PYX}WzXQCh/DAP2ȅk GfR!>OCw_ROYFo@hfў):4p`-Gsa dR%fǬ7]dMQi~KLCWhվ2 49s D]y^wg(QvR;6=fAUp'P6[ru jB6Hk=o8%1؋/%Ƹz/ȤTm,r%J,K9lIUm*b.+X+@Rr ^]kÍ鍩Q8|BMYh-NAO oD%NC[) -KsP$yf@Y~+d<,h 6! 69*TGgI&qk]0ON߲ǤV_z3aSӟ.4sFƝ/NYMCeɣVY[]8FuL!eFT?yKZզra>Z~Z#qgP~MA˲TF?9SFJXE0WBQAr"(UJ.:g ZM0zl:Y笆C>r ,p>x9# UYXeb}i,2mqA):ѿ&kepp v+Gsabw s8IإTk3˾MR1cy  iA 3ɂ<_'x #U!o~uxBlT6(™p3v]63d X-50]|`!zxTŒt5r:Uf&r(zDJh:ZkOiS13c&O[/6WmIwBn)z1@7JS%k=jf hc2Ww|=#%_䈃87`_XpfN"ZvdXgҘqq´ zSմ8\6+QKVçRMUV )n쨧1Zz$h* JgEr Wϫ[;S{:aoi(XKقi5]ՓG}_ Gqܯ^|tu(R1u{dCu8b{9z[(m'<1u;;&M:,Ylר5}oKq=ce2-j7:_4LOܡO%b =})m}}WL@]3ҎEb0L78"#0D%Ҟ oi>4FMN $| D?-|EQE8Gc<mT^ -2MvVk!Jt!!㙩kF溲j֚ QӀ:?:p@<2+tv ۯ<)i*[N(ǽN"U>Ri+ gae~AHHܾ^ :RLW_F  pR\.);Q}mklA礸:9_NF_6sZpB?Iɵ;2HDb+U$xwr{\bR F0whi"QdUI^1p-WBlABx*,WN%#Zp $s'牁ē Cy4ۼĿ~iLXdO}ӥY|09UwaͶ"TU[TeDpEƪs7Z31&zt:Wډ~j !+?D #!ȃsT"[c߸sn+Q=wWJ +sh- ?'yVk *Oag[swiL ! xHnW# M̈́Jx՟NZ#L6Ye $Ws4J T|6_&"2 :0zv .II%~Nݵ+!T6 >j-^KbAdyFώH}~"Ӭf|ZE>:%Iq-"jȧ|rm _}˽ӢV&Q#>}Um`t $J3o6 kԇ8s0H1t4=E1Ǿ( =/i9g1#e 9J+nTZMi;DK[`8یCQ%`mq`T+ ^P5V[*ۇ|2\E`?6Ȃ 6f5V{o&'"G=C#o:wl|G(u\gcj\h? 9 xYk=Z}K{y}cO`طh0Gjl-英B$B[}zU綌\rSoAD̹3aK*Zr>^E!:<5 5JE&jY\ e\̼w gh kj}/pqDh/6&RWmaYfXڏbcl3^ʤ? PVuk؟ȼԃzGǓlb r\d1UScf \{uaZB"v6rn--lÑ{j +3Yr-tnB~WHz'2&K?A%!(S=x h3,^t^)U̬-ѳ 밪z|@{AP/J,ci3Dȷ*T0xITz?ڪ]Z$IQTbyH+UESl #hlFU)ŏm%LeN~˟/<"b'uCZ3dUɍNx(<fK9ۏ f*$x9D :R%wmK5]w揬Qۓ?3gc_3DK~4}j-}%֋s6}oʨWdJUwɲ3ZvUWNؙLFU<* O~ҌuN:Qϩ27(0QV"V$l'X4_(m$R:rOF%aˆ$zI+)y`9ԄE%1cH-mvx*>u_QW&"56u|Kog-vѮtnxf ncl! H P`G2V^=B43p= t`K]/IҚ{]۷~Z*ZzBOٻc3F]ܛ9ЏMjkqc]nai4g9ELT*wS[߼\tĤ '?_Ō𶂼߫J(EY2 qwy3g׃1UpɉIeɗ\?>,5$r LՃ,t^ S3ٚgߒ=%$Ƚ0ّX wjڱgRV{7Rvu-Ƃ>v ut a&UU ~ M`#[W^V!{d51/p}GMbDWvtc 9*e"*wV7-| Nga::pj)֠0KY.->oiR%y]6\)) `Hz Hb!EJ:# d/bp pJ.ư"/]WtS.c'ivlZĞjA[u;AdMKUҚ #d>Gpo:MAPN{F80bl{?r/Y!"0ZxաOW 94h>žZ}~K JK`3H^]k"?_+8% FaX=hVR%>o]A]ށ;&v5wPz.?On!6O WeUG`Sw>LȗydjsnCWԁ-_VGq䤟`;yM#ãaw3`xrlnH'u+"Nju*s>庫#02:umbqf&N}dBsaƆ``O:GARU]Q̋QŒbf*)_Dq,6ޓˎ`l&[Ւ?$3[hUVG ^]k( )$҉Py}f)+gWHЧ+MXT}]G\QC0h7^*)@W-e/^+%@#W0~H))T?QӡW|0784ҊFKnЌq$L_ռ#C{ B\T__B27S& gUIKmZ88eRIJ^ChD$qm?i   54{@Dzr9 $2L:"ݻ=g^ ,f[6õ@ ?+Ƚ0k:Sb7v5Y)jz$Ǚ FG)[ ݵ&4hilv( "H6DJ~L_zjxuQ2& sQROqY=CޣBhmrX@}74&2nGoȂ)+4h@7ȥv_>@PNNŶI;NaF"Q ~da*bV K0=#E =co|&'))1B:ҜYoe8b1u#fdlq^ײ0(~kQ)tld?ޅFJTAw3V"i% 5J«{{G,V3!1@/+nx]uPA { pn喓^ r7K+x=q"Ӑ\: .%h5gs_M `W,9b^- > kt˲^E#M[8!W0a?F=ߚpM 1W}*YSy} `ðՏ{o"9"2MT^˛ H'_([.E=Qӫ"GDDڡCI[v'|[}ՂOIޮ whĮBRH6*><#ZI?JNpRD2lz?ٱoBta5 }eKO̓Gi+@`TM%R/"3t ){DrnIW>[KjFŪ31Z>sYD$x7*o #8/xgD! sfH1 K?.W qd<8Zjn-P+_xN/2U0u}Je<Lӈ4lE5Tב[MSNԕ`:a,n9cvQ`ri]APݕ)%2G&wDRPD0EB0hx["7B՞=(X !E4?>w ][ K`՟O䀪Wy|Ff@`]zL9\ZW DWlanz1NS%KAc/Xtdw(<|i0^뎟ݻ8_)E[> xa TW.h%ط;-џMNH5>E aN\n3X7H%)5t4i͵΄8W8ʳw몹;=U]>٩1մ6π^M/Xs|{~Hpz@bh[Xoj |4fY9 R Q:帺UFKlm9J7vC{ܲq2(iX>Y|R*չ,  agx~]nn\QZ0 6^ IP9X7P#rϒ#!Dԗa6֝szTeT"~:W`UJ Qfp63P ac<}t%}Ɂ5M$s07#]PU{2fڅODKƑoH8 5zf,E@,| B&PAdj$tz*52l)&iV|)fѐcCeÙg4G{2VƩG#l T_ b+HF@=~RA<^A=7 ׆6 6ܹF8o$i;M)rer9hYÊ\z8-qg2b ~$5^]NӤQsjVMy\G2fqcbmES)[ut$LD);h6IR+Bp5}^ڢʧv.``'4XwZ굺I6؇Cn N@V-6T[˂{SSrsDS,Q'1qg5KT!_O3B*iTYV_s-p-^B J D{Q-hXKPN"n7hl0Y<\B8{8~70h-/RhzA⢙TiJs+Pͣ_xq G[ `bOTKi\wHGݟ9^w YAvti"/y#(|nv/ *Ptufu# A%x5>!~ͤu~:k+Z:2~KHHRR/(cH [ ~^b4|>: l =apط1QP[*o>gPIA&/W, @͊l.!SUDL@ΐ'N)$RG\vc4. `i#@&+ pdj1;>D^{coo2d.H8NUɓc~%rU磡n;/VC \9_:G+h~(Yona@wLF&R*F&b>U!4$GxTІ#³ֺvpa=~qb8EN5B&$+\~"aEHVZH@禫Tp=bi#49$3:mWM>VMR7t.y.`tdFHpUNa Ol`..^֑]'G@t*2'F;nejOO^&H[%m t43d=Fg{qFf { U<{aַ~CCeH6^Ec}3a xiR_  A׿SGFy?3Ib= <V#+:D༡5S|e6Du x]=B gVNJYU( nqONtΎe;5ki̟w_ e̵1i41¾$wa&"@ֺbarI(9P}m/; {3D"RaXsR%Y>K!!*<_}JJvO5G%WSbjm~OĄ'WVCI 0Z?ls 03t}vu=qKs,NAK,a >hAFfI+ 4sVOMBs24l Otzb~)[є,͖FصJ_vdn{[¾Qo] 8+MТU鳪h"vf+O^wb첍޾T/5dƄ$(-`ǯޮM\ӊ]"ܐWYDq1OݵI5N#Bb~+YUYtk{=@BPi #*˄EZO7u?" 'в_-k]v+?] \ՏXd"6n5E-?ę5MMN1zIL]Hbᾡ'շq_q ?ifc4 G [ڒ-bzkci ,iI.UP d(؛Š~hz$`۫ C@ $A^Z]O-teXY`~.tk*VG }9̆TZwelwo6NRW(t < U(u$fTZ$M3VD}4-[3b`Ya>F&¢p A79_z{ݺPOs \Y}ptd cu5=ivpVKWeB6/bK* .Aq>2N\yv sP&7zj<rƶT~x"-AED>XsKSv9ؽf zODp 'ږOӭ]DWt"[piLct^\VRJ;jKzߕu{T3sُ,?wt/GX\ ZQ~b6c !z,ڝ@TR.?п{\  5.o P:h1@* R{F=ΈĨŜpfLMc kXqesYV[> Jjp|Ezט(zR~#)qIs{*ӷXhGD>աJL/imD*1x[b / C5 O5gc7CL(+340ߨF vp(tIr?OgjjW[v/-_V8% *e= ^&R}GtySg]!$Q?7aP9g5#_+4rRO,g7BhelG(~@/@eH&(Ֆu'g R"GE/v庱 Hᅿ/OF#r0ic> *dU( 17ν"P.,j-:2[' 2qoK^i\&ձuz"}cr?(I9dDЈI!(|%P7W+z=+y 歃MdËɕ .rSxwzD*6uDjtALb2ȘNLٝFfMw_nAv{zЌ IJX9b*-<+GfEsEa\(Sbo6a$v K"ⳌA 6+L4%(~/uI<ɧTyibi#pJq@66Ǭ:1! T;'l ̕F$p.tI,45Foy k>#>m͉_T 75&OߓGׁE)Ap퐬]Rٗf@6Ɂ0*q}wZ*^On"=b{O͟&%@vO!/˸!` ?F Iðq!" _AH"lE4ib/Hª:]6jPO64wUζBxEU~>A.:R)r<,vkϊ5?`]gz u$r%wO0Ω{&6=5:jo[߭|нqr';$iծ]rnSUs8X=~W}OǓR0wvi[]EԄh% }%=f!઺1iO0ү*\c넡wg&PjaQDr"C}eBߩ)gp;%Ͳm:5!Nh1vC"{|ybdg5\F٠ Okwku8Ƈ^ %Dk%`伆0ĵ7؎}r3-a!ǥ^(wY)h@Sw,h(ŒxHrj>}ouι'(Z&vlKAWA#"'D\o :L~0>MNh`gSIV~6S"0w/3<3S ԛftg%OTO>a[Y,y]Eu J&^ąڍ.(\w>%T|8oS5f00˳A9}b2:NTsĮ`p#4sOdZ Ͼ }DiJI{ &pOzZLv'm!92af l.,!ABV+NRvJ)H+*~-?>+w̸VB;Btt< ^EB-35c!A~b \]^0z,Eiu;)/PϏE}G"rylāf\./h ,&v5ģH?rpB|H7a&/ ф+z@o=3h<d?_\]1Z_4{+%JP;S̤Fkq N@{u xl_tWGMiu.g/{Ìu%w-5=&ī jưI"OF `d'qļYWI"/E8ü!VJ-HZ_h\<iԯ1q{ܟkX(2m.Mf$-zkdj6< K4S/ n4L /OX ,qZH-"nC 4zrfxz+ʱ3xxm?~B(v}^#VDNf{2R0p6Qyc!xز%GډqHT|b> {U(.PWS6cvimpn9 'I|_^{i@{h oӕVjvafq:us 5CnaT fCXz}Ri+S oH*yy6Wx&Be9Qȍ򺓫wsDlyONͭfDB7nS,FZf6ɱL" +ϑ]&[=/[ʁ$;䴉L>YmCZwT $H?rF$P6 a/2=4׈dR1J‡Rʏ6T lÝ\=b'2˽Isӷ:m ?=t-N坄 })(4]0v >\T+TEN hԾ6]߅@9Vyu_8wemX~ "9j6h D4=n1毑W>nHNWJ]fZ\u5DN5$s><[0vVSg (G0cZ (+ ITݞPrN˩h4w]>Hnl[ |Hl{ۍ Gr1/S~nFv9 h(=",S}y(M"]Jas^vy"` 2@r'6mQͩnC'E*Q&BZh"ʁ֗u\j'N60خ<+N8JB߸bc /5$BݲfvOf8Rx=Sthf.~6AJ]dG🀇ha".^y= 9N[`=V'Z$p*-*Q<Q'gĿ}`~+RxSGsT%؞])zʄTo`cTTHHtH] AR(6XQaw+xS|IhG> ʧ"xl %;aܔw1w-n]*SΡFLg\ӛLج8r@za뮡GPGx<͵^glfq'ͯTDMVp?6)5 ɥ]U*i{θ51"[EUZR]Gp5eH>YMpY!+{]O.Zlzb 3S-ElErwʻ  !*i(KNiݡκ=%:' hAgR&o_Ce=Ps$wLƸJESߢ}.s~`{u7˚yuYq `jiyT1 Te!YPROGIl^Ǻvsȷm7>7Y>Z< \)m 2$m2:[:˾\ K%28F|2b!ˏB _*et3;#C$3/, `5WcOJn0A=v͉pqa=]q, օDoհ@/w<JW?#ƞ3}`28VP럡J~J-e 24q#ӟ/6f2Ze"Is*9B :!}NR+8pt/%[~ vdjPh{ZO%'$j2E`4|F_kGK;#x }t}& M`'XYw+*h2fp<;\ }$k]~<琏u֣4}k2C"mo> /zxaOڤ,]w4Ǝt*ݎnE-l9^ыQeTE6FqmSżBl.wݲj|WR#n 81m@Oﶦj| d\@Tk 4 ẏV`D-kP>}Btc]Z(uջU0:QZ>8;z4 ;ap[ w UN;Hl~Zn됅xb 4cb6)s8sOyL[@f 'qi#Yt1 h|*thF P=Cp7)V{J³ăʽ{ɵaXz;vю^K  P6&Y NT1ƽ־!bYY V8u(W3!K}_2s+ut5$@ 5 [4L4em|h\:B 򯗃 f'J OUtW>̦tSQdb z+3u Ǣ.^"\8c[S>$.mnY?a;N^U _!le,vAjP /#Cb!JvboWP gIBV,B>$T힥Cv:V `sCb٧㧯7y_7!P3Qԙo|6~1->VͷRlٛYO(Xg9.<EZ{&>/ Qu7 ,?rڴYD'?8*kg zHV"p.7{>yP;[~m,L@ڞv JFމ&X\9yAr~ĸUw/w.CY#L4@M8xj^F<~Yݫ]K/R$D Ns|r[Pc13+7wK:9k qA,KmBT]j?!kPL|W\)eRMVY[3^\m~b>O#6Λ2΋R%઼M^mBJtc Ŗ#r5*2=:g|}0^e-L?cckX/tAf3*c*C1JmC]ןc3hꟐgmz¿JUnܳm2^۟Fs} *~BPxOF?Pj|mdW7(S>Yz(0XI͢U$kqq`KiQ>V}-˪JUEEBu\5 KGG" qd>6_fupd"(΄ X`Ny!xOCˤî H`D+0a'apy}%앩^FM}֚0۞VlhO'L0٫F7xm*E 2۶ Rzȋ⸓)$x.ǘۈ&wd!ҕ1ViCvEɓ4#1KLgafk뎢_j±W:Z@RI}BES@ˑ?+hD J%~Аt;s\GVhcr zqޱjJ;CcT YPsPgR}(D}s )teG`n0m;etH Lވ߁biXϳ^"2N8N8hDiJ(t|qz 0ƀtQD J# Ʋ*9Za#yO5EGX!(3߭}j = hG=²с 76qm6g=kWJP”muF!"2p9܅;:;@L &枠7< "'R#z /](ymD5(C/c!?MjYX9!#NXAz^*BFͲ~V-k]on%_Q7Jhڇ5|߰ݥa+7Cc3+ z0R,%eKe!{!*P(@a _B2خ!|YWӔz)K(DysEwȌfR{P/Xi/ m*aL\.jF k"7kO"- /zPL|_4詖xڿ 6/_9֧lA\Y}(:G >A2*YU`Xz)]?t,<@Իh  NoUɳL%mM lPV'Z2}@ܠAb2S礕L0|w:*{8'D4arJx;XWױ/P\]@eBf31؁-%x N[u8#5a׻ol8(lZvafl56# <mߌ`QJvx>#!S:le:xI  ^0CX/Ǎύ"Tuqd!xFK)B -ki.$hWרIFokcc&e}˜H{i|a𨩼QW姽 V.7%DQѬB{M%:Q:E}iv4$DpqCot޲}tm0fhG'SD:MGp(q*g[sthEq=']dZ+64%9:A?NKTjg쨪i_A 3ZQcJ+?cm7$QҲ6-V3Fῐ KCB7f,SG/΀:T B'1\U# _jBgYĮ wkO,w Yx*Cm:}3vMB&UGk 0äYɅbHyC2 {|Z9341'Eݿ_wOXfCGjE^g^TW=e({A E*p[Zv9 @c=zXLal{f0wxف! ؘĿ+:hBxR~ȮZ}j?+ABx53ue?qfAҌǭ́[2%&{+!^G&:DA1#*ԛ61lK3%+G !sL ~M-^ k+ mf{ FDT^-:Q S-@v6>w,w\;RnA\Dq@:}Wht{ P*78ete}YuUŶXz + ԏYH\.u5v!9X]1)'$1 AIP8AS,^Lӄ5﫤xȪ1h늪@J2F#kR ٧Nz]9< gs;vUzHgA 4|:kCX=Z$-gbs74 L~XXD3*RD:gq޺rMݟNM$72Rp:?Ghvr߀LXE_IbkW~Ai66xovYV9rJ*b&L\+yS'30nUBTjl7E4itY #K:팕@/.JEWZ)&ķx5︂d63Yb[L0樝Z\)m8gHmoEպt0|Tz:grگI{z?953`C`GcE?~ ٤3 `"6R=RaWN>⸬5lۧ=y AR<$O`$˕7w͙!&=#&e/U9s:$q0Lu P`yKls~vHґVWehVۿ Nv',ak$B*{c& =7)V-0Ą[⟴;VaĤۚh8Z3hrJHIdŬW'"58z-wBTD697 Z3]Cό f}B fL«LP?ƆI<]Ȕ8tm]gasmDc(qJtwaޢ02my'} J!]WNM#=l$pCN ?)R?npGH\+v/;k(VDAAXj^6成ɱ*3HAAR8`PV"h41_6fEInyaG?>Bܻ9w,vϊ©6#~JKaA92cy Fa{y ;`|,~kKSݡ YIKwuPA̬r#DJњܻ̀UC5csމAv fYPZvzwAQ<1/mKIEjb\'K >AIWu iWㅒbjlPp(6Y|k&S<7]T'7%{xr|& ETHrwa&.b7\>>XE&n#c%.@Z ;5 ${f~6.22VvfJ"0YҾM 2Q aʁtxWbn {b)$tD+K|mO:h|m zѡXՆAfduqN\x1>3ζP9E<1KOն_tKQnJ=ؼSFN :8 bamPЯv ǡ.u*0/q5f7"0Ҵ6h%/v]6Q^ѵ۾;lI߻6K޳c$5Rf8emOXZPr ateUf[%cZW d~ Ӌ\iaB1ÍԬ<'r@@N?ɮvZu6N?^R&w֓qzO|kT{ֵ_{8Q@i >_|(jƘv%uw5\<1U?DY۔N&QWyJTQYɆ1:^(֛hk]]RMްkZ!ĵ5݋i|>^e^*6t)Τ0vl`FU"9R0H"g:'!ܒTzlbWSm~, ek:ywXvQ)VAeU 4xLH ǜRi6EK|S~KFBFDkm%̒ `GMA5I+ӘDpI~WGIYN&b.!bqZXai )*գ/GFuSMyw.BwJPjSZ?ZJ;056#^d6-3q#l#6uC ;ް1zT NSp&Wz}VI;5ãՊKn\IQ|=~ɳ&_=Re댽A \<ȶh6g F,?X&滒X#*bKBw,`6OR#ѭ2S+|A1^$;Co{5ôE}_GXQpR*_`V3\0u1]_Ey> ʍ7aNN T*S%Kl2n.&iSmP%yAچ^JNun1gэCobuq`붐Az$qPk!D'bzֲŽi6wɰlN6#a['0jHcs0L7=1=.;Gp~-qjZ e*P2qZdV^qr))#4b/4ٌO2Dl[EXƦ%ɛ2a(NMIs_Ӧ1ɔk=qT"" Krn%{"Rs&!-- yPطw!ꌙueӱs%2kVi IO9ޘ1'aAݨAFD``xH&AkʌIm㻟juL!V핣N6s+d!*|+,%wԂ`uMpomv6 oUs޵;P}t; >)+qLW9ӂN^N)x')A^+6Vrb53cést kS8G[rиE#rt O K?UQÔS.|E+m?vٻ7Wa /XH 9'KsMKD2 Ϋ?BnzV+8rUhލ,&1wAA6ВքffG95)&V"@>69is9;}X˰*Gf>с4-~zYoAkQNV*6&8/pcAĿ%_ŋ.XkfVN΂ l@ څw]PoB=9L޳G4#?kUgHh:g pFY]I5l=$qY4FG\zP_NE " Z֦X/_Yy*wdS=XWW>/#HKLY,J}*uUQ$:sB2*4VGaIk؟E׎.vlhU$5}OܟO!ŧQ6rʕ0ܢمWQ& r{;1D̚#qaB]ٶn@ 2y_vB'fqoL*njG"-?|N Y+BGۂYx SRYɥG=uJAy}WLl|.G[xO$B5'G9DKCГ-nY"N`7I+F'5-g61d\vE.˜O==r[J['YdS`τ~ur3vP'R>|̡F'c GʜQsuB8 xl-;u_4x@+n OmH3B⬱l̟МB'kF`@Tјi"O \Et9-xPKLo@ ɋ>Y8uj2Nae[l#G|Y naUĄ{*rYX󅄳^mOJL@]}B-$vH S@xU -p8sMH!1!UĿEPU@~(z8Z-$ rڶ<ˁ|Ƈʖk'f{p'| Z,ܻC q]V*}w7v;x;Vّv[j?_\f9 @?a3 *u?3 ۂE,4\5n> Jٔi ֌pyR&U l-X Ў3D,d]h0F/;o{30(t0.N(ٽc>e ]/wXU,ETz Ee-A!S.PC(iïSݕܚJ%)Ȕņ6ӺsY|C)mK_cE*X9?k˪Lr1!HVEOLM6bjIǿ1L{ʪd;|1Y*3qR~l+ʥ,ElnYsj79QJ <2a[31I܉u 8aU9mn\T*)a/xSQY4\i1gV=i2Az9c֓D+xsdme4o(9J27l[+ڎ^ȒSmj9VV6 NybPUB+m TQI+<#dv+jvF񊍗D({2NXIm=$"L4o s@%D&VBR~^=D{,\v>T;5WhGoAmMZx,ֵҀ% o|m}lao{a=W?/`hF7ᘖEi%D%S 6$圕Wm(fW7 S((bT k┨]Y(Je5*P \Re5ĺԌW WX1+4dVz#`+X dѽ@@`Cq䮬6M3Ш !w܋\Z%TVoK#i)(8ӱ]fl.An%Ѯx {]_c/t?x@D(xL4`rR!mrwusn C>ܱQv8NӳA3GBӁwedWW^*WZϏjszzrJM,SB 3΃/\\ Ά眾K [A D.U2m 9φYD^s !WcG~iZ,$Ymnj30fk3j @df%bPXp%˴RE&nP.jR ;;r595]HJ9**%b$Q1~J!.U5yE%t,1u|'I M+ 蟍VSI&~;pq;suWP~R  q]n b&ev^@[q2.G( {!Ps0(e{5X~:b](}w)Dsc}/_["ڡ4pqQc+fBtǾ# f'#M-E~S/ {' Aj;L挀~bIF狝xP<+ww"E棨w ˶mQg2APL;Nmr&o}4.-SC5sm.*nkX4UJLO-k0Fw0v$$^UL1[4Yj`#-zh׮292  X]|VTZÂQB-J`xs>"\gƗ W)|i1^}i8b"$zY$7yS͘n bmC1,X3e.EyjM /ҵ 2]]B!;oT\EyfueӚd|?vr񑄾#zֵ!g$}# ==4Woґ_f{0-j>|_~b8Pb4gD~ ? ?~r*6 G^̱/Cp/)5X-PW"Ō=NqIùxe 6wB@p._7-̃An9=*aNi&pr`}P" u%s Jav giMM@ Z[%gR#sw=w [-!=)ǰV |mA@3OI`4A9A5Q3ߒ] wяrGw {zWva^~ the=g6'gbZntA`Zd ď\KQ 7g2C{hʢ ?>scNy$ljdqt] {Ҟ#G[cud#f2ģ~ ze\$SA̚?("O=2\3@cHֵ'zUpBG 0:n%?V7W]`P@U7$QpDwb(7BnIJyrlm[+%7xdA8]Q $}_8dN1\z=ZaA\Vw*9ܫŅn:9 @k*%c(f6ތ6g׷[] ̝_F1flHX žGC߸lmsc3 ("YC1y7YCa4YzϮ%𨃻f;>8a^B;2a%Ufsn ak}Wbj>b:n&(WH+_]􏀑yslFbjK'JIO4Ivz{䖯FMV9|:tPamrҠ9ڙcgͧ "0==*}}tD .KZ+Qzt=JLl E* *1@ Z؈=ϣX%M*d~4! ]RD]@}-'fƛV$)#lAiYfo9* k C9`TsM_7DK1 J՘f1 Tڿ#~SΏp ͕HH)%1D ''/6'żC×/bCl~"}U\Jvn OV'o3Dj Z.]È0 g(bO׍SIӂ:=3Avܬv6fM!0ǚ՚] y2aDEUr"l) ~SP0*E,!+}5=Xؒ V`0{sV6m#$NYdS?htaD,RRJ&5{0,i8R`J,35eXp|·6~z-'&O\Q|5* Wo-yۥZϛ6T_HsV"Ʀ_oYe!69)7A ~od]`,"}WR=0UnU:ur6sXsMc&c˾)4Tȵϐu4dU9 }Ht݉;@8JiwBPmq):®(#t~4S~4S9.-CElh(bjb޿ &3wumC}J "2 C/>'xgw{N&-r\3 02ܽT ^:rM|Mc1`}9VwE }A˿%$3bⶤ$`޻ƯOu1wFECOnϮЍ?,5W.;]{LJUʟBԿە8'ƴz. QĔpKM.Gȯ>֛-VK۔3~ob^{$-l-@9~3BG`.VGz7IQPgr 6J9K!3u)y^JNrH4\:Ez;h C$UXt&gpIP Em]gĶK5o6ara+L\mI,GŞ&'b;XYL,F3`)\Fé],r>H(J%MwK ?[r * 3IMx1۳oy} 1 Ȧ%RdQڙ>"1<ѯ8n%:R\>5Hє -b#Tp8lxHe<ú( d˵3F $5ڢCdl%Y9o-SwF&REe_]D؁2ұQ4DR/mȤRUܷXBι!r $&OܶsyKk:Po'4]Ȉ\A> lN\W4iWL{q%CjÊLTdtwFq"I/6yd (*}WӸk!U4Ң5=- iJl)8>/ߗKEJŭG E1epFRlۍXt&F VVr# զ Ӻ ~Qx+q(眖/7 }KD+:fGIjބ _rX|zE#XcV/9qR  $i Jf H[v&&͋|<yr}d`bIL!aϬHMR5X`{ 1R&:{ͮep)zPm,XvOB##YfDy dSh||߯Qc!;:yJM$?^L|GIk<\2 %+PW/fly ޿N ;Ԃb#T0_ Q#-=1җd24Ϗ*Uk>uָ'CW/̳B=^֑yݐ|}vrxMȊ m q3dU3Ʈ[CG8SvK0yѮӓ,uE#0OqK3(=jinPa\ΏT-'&M E(m_ MJ3̨G1(XoEý%猝 'Yfay8G@['&!ƧBΖu _8t5OU7 .Ǐ 12Q^j!:u*N 3%xH5ZfIXOn>8y:/zRdƔ"VGl4䐣hWTTC_WPj\rDwqdkZQ$b2.R8 (2meHqz>wByŪ{:c(\#51*qα>S#Pf2tttF q ;rhd)?Zw?9$m iat1o""J'eMsEa"/N,`P+sIC BtM'm!8\(%e#)rl6?jjf%ȹBCؕlŸK(s,( NR&QTϥCْ0\naS6DN(rj4wQºy^(W&ǦQ;m#"i%β4#GW ]4rq-.'>'ڦjjOU V {>}t?S?4H>5H+K`#2+-VY4Xg񜦄ߢAQ̣&6f)tyPh2VބYď]}34uO3YdDS>[ 7: Fnk#b] xX *'Ar{d'eu N]h) tKbNKa:[/cLpZySs`m4{ݾ ɿ״.h`f#cGs?k1V{"t$ wΈ0$uϘQ*mw]Goq &`x= Ylw f6ɲ(rD!\z<=*%P ">tPUP9][A'͋8˷sg"?o<87_@1+intYvY24^>p#N;\0t1Aɼi;: N?J;U [eC'R8IH~iAph9'(kU)x,z`gdFR/aRW\SJb{_&[{H4cqK5K2 ~}E,(ʸow*˾. 0Zmw|XvCulqgP<6 umCy>@8tyX,EIհq! b*ıcn3T[N"A=}{('ͻn5pZ\nH' \q۰6a XCIg?WpK}%#èB;cMy 0K~z[RЪIxw:ISLY'y/@!D] cV`< rTNO~_OL?尽  󠰁Ѱn,"$U憝{QPd[8/!\̂B7Mt0 c@FlQI5bBunc`@oFM)\;ub1kߜ 1yᵘ^u@ϧnP\|YБZ&J"8|.3iLD_͙5iC#bG>"rvpA[k8쵶%`zYcVh% ~uoVY_.7ow&Qwe 'l,ߖzMHuyT{]nIm'OcH~"'NQ86 kWtp I;5>'ϰ!q1`TO t u9$ ]Zܓ>QA)f 줧mxrwo2A]̔..q^^:,ރsYe~hm$aow LWA5@b/5g迋Yܻ} Yݼ@v4 bVTIʅZǝ]OLH*DESsʘVx`Á,DB)7&5F9d.RF;5.bS֡&RܬZ$*8tLL!8g@ĦA{}10ſ$ I zrFwhJK+|B Y JU[kA"8ŗ skz'lʚ͗Zz 0oVTbP~|;.u]L~ k]-Wt ֎/ɍ|7CsH?_`yKE&[b޲d|i8w;pJ$Ffr= W `ywtd2v> vRBϗSGdcہ)wFaq5_=ldMcl9Տۃ Ջ70pӶ4&g-stBs5-9_X|w˳K N343jU!|Zgk00Ij֘)׼yi߈ vdͭKٯ[6; 2/Sei۷lv4\yXjy/Qa1 ^[^&zFtnsym1d&eUQ,t|'b!6jkovO*wBO*Ah">^Ё$z;DZؠB[ImC:`jƅp:'K72P'[Cې4?U"e+\,uRTjA œ֚40!38 ̤T2Q"UzK•Rʫ&$;*Z Qԏi `Q-i{Wa &fo&3OU8=^;.#aQF-3MuDnanMt' <ԐRdEo߉JE^܎zZ)x( 2=W:' 5!/oVyЩF?i}CQ C."Vgi I$cTؓ5)t2m$U2RʹǸ8LP`f ?es8;=s?;C#I&EAͱ% xێQMuxe  NG<>GQ@⇾rar!$Y=oLJ}*<^/ -᭼@45V~դN\%kQuQ٩mamLHUh(vl9 7IPn5`gܺHc̨RCLY h0=kuF }}(>GܸT $,]O~.O%!b $X<"$ QKb|ljN1rѐ0_}`$0[k]RBQx'-%G#g2Gj0rƈ4a)C.DA Xձ^8]K^«0{Jr4\=z# pm1p^)y L`מZȝf6鳅-?SK\-i Բv_Hz%8~yl? e+}ЙSCo>jQ_VkH>G!$Z^8>Zf7OҬ(~RC[|n`83mq~(7UI-w*+m;1KI # G,dV09)xtڝhcÒ2?ח|\(}\qO]riO| ˂k t#Z `%-V/y7$tǫ؀1aB;mnqԈ}CMYH@nE @J ic|o!8`;hzP4abAbB, *ATd` v C/j{=ӱNPr8µNUNbnLȐeW$\42qwءD/4"v?v 5P~9T`<C3_cب}h (c4МM~jrNJTv$8 gsEg>],CRqie+B?֟3~̞6?ԲRm ~R&ɗB^rHkS*1rKn(LM8ZcFuⴝ&`8XۜS!Gq\`R$Ju*o"~>{ƍD`<:#In`l2( *q[9MX>js?%`7WA!}AO\V(UO$1MϤXM^ Kr3qXMs ƝހDA^a(עPN|uHL{a'o[V@0]ԇp[ݎ Kg=j~&I6

'GJb|bxU˿4j9.2vcHAց+%LNعk[Ivx/t[FrdMq<&SDe,3]ʬ,lM~4&½p#xDž_G !0}$96ra ҄zvqqhָ_V9RS&-PZ!ȈZk)\:tDeHOL" >6('_P~ XN}3dfKWNSj>,3y[\ E*:?@XrZš)q4<|p1zwDب-b6W4荒K^z;&r.wЙK7 jU|g*!XўЈA'Bb:DkL1S>pnb+t9{I .Q ^UT#kKKnVU9{h<ޔ7D,0fzה1Z/M -KbJlE_̤=ZQy*rxq^A7>bbwPXMU£ 13BV:+bP*؈mQh$tFCH@dd!fq p*> t=T]GXjݱr/ƓkA8fX;x`W;2Ҡ^DAshh֠\2I4Ggt% t`coԢ!.t۬aO}W;>q! c0sdIF‹l5zg7&KH2- jglD 4] ?ZT*zKlդ'.Yz2 _驋C"X80Su0+],CD" ƞPusR`@ Uiͷ[yOnNvEjI>h;m0&NX1@7v-6R!n" 6b:gl.e]BZéi=eR5553Sۃk]ܦĢ>h0(1*վ[g9fm|bm|!#^!Ri.U>Q# 1]<4f1yX+ :B`֭57<؂Ҙd 4$I~zoCWu4D-9p2dl8+=OE^d" o2?q3귳mҒK}jkY:?b6aQ|ؠN`L,v Xsm%7M|l 3$P?^gyni3h0ėAɕϭ\g]hyv| <;}ĥRP>':o1jp^xtU$pB}Fh(P*\+h lO,JvxM)v j!McHNawetB6^AڂC >ՓEɶh?$vP(pwd+OqEN# | w~{e*2uTO c2c'ɡf7%̙'0W.#6֩sm'U\(D9њJ>kטvBWR{iWkZv4a6s9OK$D)wp[ #ђK>4Fe>NGpa8U<:Ui'h"_#C0ͣ[P+O@L}5G\i C-A*/ز hhQ;ڳb8Āf!딒Brw,75CѕOX0̮o_L6Q%겙#.!оubI:Q7ǡ vc6-i oLp4_`a%RU !ܕQ<4/16L?7;;oLuYӅD@I 2icsfR껤Ѭm}Q/Ď56XP*.'6$J/{0W8Y4ځw"&ʝ.'i)p{,hr0b>}Fl `oQaз<3Gt卶`3zwف N7U ɕ6 H 8J)`Wf8+ZuB?`2Č;Fz\""W:2F?&?j6Xeߍ #P /up?pf]qXكYNŬ4i @+t]|e]HPPW1[c'dA( XTZ/{i b+ *i%a'^gqZRo O_ٴ sҦ=%KP90tOP6v${DXqptrv/nr [ȬTp;fCfʑ45-~(U{Q*SBDq4U2Q)+kyDj#I_#{;3G<2lhY0 hA= o_[]b=Y./R(0yk 2 zih_#HG_Ȃà֎n-.ofg]iF` ۀ 7ƕ8NqU"-k¾wKb6%$0L/GE*;[qvdJ4j7N2#,qs8}rIBC/[۞RXje3_CZe("v7%/`9Z[v>3w5ke1Ӄkl_\TCͅSܕw|mgmy~k eAlPT+f2{Bl|Qj;(|xI*AJS>(Zs $=$ahI/FwKXX$߲Ԡ{ۣ9jLGU2J%>Ts]]ɣ9x>LLf r0I. l2YUPǺި\ic&P6I؛EE *2r~]!aȄn/N#pGM `E9xA~?^~$סt@WS!Ai'Mv@L^Yd%ג7^AO ZOr3Ľ>$DҶLmEFpOF"9Wh{_M~髶B5@) zhB[ø|ii!O˩ dҐ٧Z\wG +߅&-[ŧ*l&S{~8aP}4.nUBVsG {_؍Ŀ!+}ӧDу$7ņ1!+RwLOkw X8C?$ 4yF; 45,]0-{vvTeI)U@Q0LV\F$V RW >E[mZ m'bDbˬz׬OU¹ތe|)?VQnLi_aHI㋽TEҹ\5JU9{ rm$&kwsr=ПEZCJ-0e=  *~h]!;a4K~FfA/6AXfy u9,HKi(Wz|t;1= 6s* ܚ)@d%l>?H]8<} YyF7:4ެ>I?z+nYY1(yJf;%KR1) 闈90IJa*)|,t$(>&Ƿ\wu E-Bq>iT",!s?Gof\}Rhi`vLmD-_ _L-SRL9jf w/!f odut&~}c zezQ➂@2`}ʭejMk) 9FNroO[ߎ+2/yoħ/jjHi07}5Hk'$F# c|uTF,"zTypF95y(h sۀ4*J.md> HޠPJ߇nyw*^HYoB}TL ا!3#ÉszgZE]pm7E^ؔM:_K̝حuʾu"vD[!@K-Tb49џ;ca4pnxXc+ԵM@Rfz1+SLcd̽։)`a!q%PsDϵLIY-UڇDjjsQfaLch"ɩ8wˌjD8myq}8 PW]10١8sR<?ѯ[sϞ7}eQhf.䰩{eF)JI=2[w;^ i2rI|kS T<¿{3EO&M¼S+64sM7MÉkGI`w:5b~9=ƻM-Gd={oݎw]_x?Ag˚.]_9JvtDq6F4&]Ǒmj d H2#zK"ڷmp#Ւ_q 6)Sh~DfrdԖˇ 19hHV' t8t:Z.ShN[*GQJ#j~PX/wH{%Gō @kJJwknP>(Ѵ2_)oбSzv3z:B:椡,\lJ^ᵏC%#4 \r#o+d\a1* yS'cRr9/w4!!̎yIAUk5`=9OYd0jMq>-IoAՀNi+5٤p1ӊLMH|3L5¥٣YdRJWr2r3ImFEȑt N_{@x}!)oυ?MK*վΒO+4Ȏën Iņ6X}1SsmDklQVUB50Nvm Yc $x(b'_7 @8]64Qu\RE2+EE[7@@uTpQ 8wB=f>9אr@k#c=3׊+3z E,~/8_PN\V>+PN|ʏ@~ fhpzHVgI?3T/2=hI&u7++zJmEnWh) 5BV"GG܋;Y1c}y~/;(=*jG~޷Y!HbYop[b5@Ԙ:pCI񉸠mbCxrdm@翦d!@ݸ N)fEF6"9CG9.}S1?Gꚪ1k^V,cw,v&3 =%0BV# b -xa_KBuQՅ@ʮˡuĖzB8GhT͍wT_VsJhb0O܁#7j"-Rۥ:ZjyzҞ*oCZ7)Uϸ^DSbnїGe}-,^f7B H X.68Y% O*E)Ow e91b.;t W+! 8-OGј> 6yJ#97fS& Ssf"ȻXΤd@/}Uz]W2^%íޙ:CPz'<*;|M _S#/AܸV4JpY񼟜 F0" owO29q#2vȡS,D emLe0);cVR.vT0S<)Db7Fg-X*7=GAm<1rqo۽Si;nQ59Vo W-t7jo|.]<#e7jsTmg=fR[D+.kc,R/v ']7gwz@'pk[Q,MIVMW5QѮC<J Nmb!6yݚ_=0yX\,9*QΟf ;-bPeOCP1s9B?"6ħ/Y_Ny(zlD 8cg6N(vn ) Jغ\K ,DhR&Xfkqcu e4E5dfRqpW/Ca]TAeV `/V+\x6,Ya&:\45S}Uvٟ{ɨqB1@3JZE@GCLQ{"(16oP|g!Y$_0A#=({끣$^a 7 ]<%O䀺HTmCT!~X}kGx7k{ʣx(\Pu߼v>~&"!uˡI~bxBobg5B*”m>5M1ʥa H sSW>$uRDxfeg~s6%wɹ@\ |nRIȷDƿzBqQ؅ FQwO ^h SC.E7/ ؆ ?\f(3x8J,N03 Na~te=_;~Xܒ!3O]~-_8o2`͇\}`!A?LG\ k-6H=LHvfr/bV29)sw`ssewnC?5_^i=rg"h6]u'C-ȱ7?3]AXPiNV^M"5 GwÃO VVespE |;#kdl1S$քk-S^;L˂+2;TS._7VLd*4$E4ʼ 0&G oCΥi~q]oC AX!AA@~ltQZv:>R=_KЬtA0btNw2ShFJfjr?ɀ;,,Q3?SS]^w2D~dJU \ވzQWq( Ln?YZ/AE.b9kUq䠸t6#$dRfPOdDB'77w!U?9y'k ӈ8)?o4 T*1GJOHGM^Xe3QS-H~f|:ZI2[Rzv2vcvT])B­Ħ'. !%y+%LPFO|pqxaƆ)qЧiD3feI@`XI|޾, 6& e|k TabXw:{"}QzƉV9S#jg0  dhEPFY;'BwFۣ̔A&JE m^ V|ė,$.gʹS_>c;%no"g"2!rF!|rn(Z(2 <45)E&=UԞ>(TgYLJ59hy)MPR~OZ6'8ճ{62Iu1% rrnǚHIr6 NK9-`>tY-f>@PwA.,>$5j#0ʖ䥃硰sB^IT !v%$fnۍCdʼn4Ie޾2bp$^ZmXL;'s=hSؿ9lr@7Bc.0H&o^메PR+jL@9A3{K\r:[0Ԯgkv6l-~Ga#.Ұ`6CEIG)%}Cl *}KНƑo.}«53Q v5.譏FaϟǪnRdI}A{oK{V6+k^3eQqd16 E jۣU͈z/KP 0V4aă"?țWgB6`ǰ S'ѹEN{Pub;;Fq5;taڈp FrMG+K37uݤɷ̴I;rb XJ ɴrB=ߦ sNItOaYai&[$mnԳ~%H|_#(]C%qs4!|4Vw,͹?7M9DA? Z {9Qz"dqJ?:BXoJ% O$hx~J9uS2QlNR Ɉtg"*7gB7L=tվ^5B_f f )Ȗu/,fZY"|ޏzm+ġ,C%_^`|0t:Kt|Fw3fuM3h :łϑv {+NPQ%Q)l/h:#ǎhBl*%)f([UkZ(~)R xJ+R ~'ەyXjhkvG},0T߽AzƫvrDž-!-FE=^a1 4?ڵo7Ght4D-Sh8kn<sJ)'[\o&DE0,u{( ;9e[K[|!v^+}AN{f>_Uz3`=`-_1~unܗW*j}kl~v,(iwj~8ey5E;rlmȤBKCr  Q-z۔%S8&x"H&_>WxHȽ%77r!JxehБnx =}݅Lsn9sa-s0Њ+ 𷫝gLwrm )~ g@0ZJS{u{cK6 uy K sgg]z[P'JR0z>[3㥯ܠR=IK(W$ : *⦅Tq{'  *]EohLduς.q` A_ 卛v{x\h>[;] Cb]*?y_GN a!ۅͪ4DgVE<]R58i ;еY[L"V:9Fʅ>i3v34R<^v,uԌGO[-㜓: ]᝼" ᡩ˲Γ2*!8c_z1sj Q~.DUC9Yuhpu3p!nNjt.&4\ϧZVqapwƫpOYKv|^+;jWU3).hgɍ;rcǩ/RP&RwSk$ o\I=W`^1%"THq& x{bj qY6u%鞟"/S4d=~(bc>wJ1'O? |c.H=7„Ubc4ץ R +JZb.ȭNʹ۞Bc9lFvɩ0OǺ GGtjz c7AEU#ɱIp >l)'YLDKvdJ)\?[t(@R3[Y{-@0CXX/V`v@O/[u{sJhL|#rsᔜ <Y]Nrm\b:Lzw{)Vjh4)4+>$5ĉ*}|[9[MMK%vReuN|iKt]tr ֶ:HT,UER,^J3& >i!!PUa֖1b<70oljF9 B1.oVY5QN R?`Ls`lU>/dp-\PM[Q=kspF.n;:OZuԼY{dzjG]XWYB];CwBh3;jILlvXP%ҋa<~3Ub1BԞvO8prUM:qԖ@"U iIDQW sG`(7h8[մJ|q:Lm}GN쬙Fvʂ^ `bq*…WZ(`1;fԱ(M8~0;])CYRs_kuRo7 5k KڲvR]pgՖS.TaW(!l5cD6oxxqR.st dDh=9x2POj4&6nV`1\I뺏Wps\L X#a1.>eGàB4\w|A;nY:X-JyΝrHg@\?f@aAIt(H)p%Ԅ\cx׵j p/f_WSX#aMŕM1U>R27,];qR+,9 tq vK}KxnUc}碢vd8rD9O88,x[yHJh<ґB[tK!tjՈwSBW3brԚ q 8!LyEp?K]wYzolDah1942HHɲul@D+del8dN_,]9^ 4fQ:U7446M%lm ?VxU3&;uxUSBu'\)c2>0q!~ܻ@>- dPK*ْYA8k@y3i_yvu :.`z8`qljyaFzz^kI{,b,1ˏApJw?>EJCzHcgGߠḐ(G8"ai,r[hK= ƎQD{rR4op|7U:{xPfaTzT_xvE{z2#oUZHju?HD.y{C}hBBOtsЦsPƛM?5zc2_!ԏS^H,m&ębc8pЍw#_A7~ڵF[/P;gxyuP}6U!)ޏ FZJg"8~n?2m[S#0Zdu"w|>̿EBRmY)_Iѫ`O@`A8Uy o`ӊ+6J1{6=\P rN/Oq_DDMm5%D2Խ0?3S(N|KI0,II_T~n4j!B$NE|SfK 58P5[( ?f6q>GyD3ao 9rQB#F[V &Gһ =7+KO4ӨcW^ 1AF֓cOʡ1:XP _9hax xx^W5*:|wl4wq;0QVhXIkMC1 ?~D{9.tC YobCKFSܮ+7q HקbKW* q~4.u~Ɠ"A(mg,G&"nb&0w]Ra]ƿ7cHU㌥KqT(YwoeF;XPaNth^G1OΓb3)&,M(ddӅSSiWyWb7k+cl>6uN:ߩE]1Eԉ(ͭAWE9ޖ?bcR,Fwy8 ٪<Ɛ5HUg5A<#~4@Vag_Xv\@vhk F<%?pل pZF*@v@vLpV9`ay`"{WJl9!Czd>;[w > ѣ&'N_'1{3E}X^ "% xO9K;z<OSv/J;nUn }<]yx֚5$BgmdxT~ zk#V@|gEt]8:u⾞= lex GTƮA +ɰza2oc Rb^FyS{4J,ɌgG) ]MOiU_bGG ~.ўx4Vf4'SA~_HY[^4}5Ʀ|jDErY+IKpv~Grzz,.D [rɎ2Np:^6@_ tQ# q>O{yeg!gVOժ+ S\C¸9 t{~U_|I7@zXv9wNJ+rЄ3R8}*8Ĉ.RLtq \%/İJe.?#e]}CUo'ijG$-6s˰nrͳ@Oxid9aj] k)Zܲ[W=~]@66!Jjn $H{bnKdU@`9ugqѮͰ><-X_G۵IvR6Im2t7-;(8jz2&[5+m^ ؘOurlN瀄,>A`,]i>P]#?5Օ"-h|i XyȬೀj>q//I;Ɛ0ekQ@MmRt̛D烘S!iČ6Eɂ| YX%3ڤӽ6FٕE)Q24b EUp fB~DY5M,')5~5xdуP EhO@}"?8i=Z஘DPpVpsp7\VK*a,"pH+B} 6x:_<2LGЧh(ٸq$ ^;a&܂L 'pYd92lc;R+G>uq3 Ua1$]jT<&hKىXՙsG be V7*ys@1Qp1ZT_c!eZ  7yy!z؇L5+#GB37>Sx&"؝1a1{c߂ਬNѤ|krtrNL(b#4tIXhex-!H+ֹBd^Cb\:dgc 'H֢2Nfu;ڸOo*԰m(w6f ڴ\9Os>|٠apVxhVu39>dAw]{  ϰր#;XXa>hv eش =ѥlc\}2|G2S_ˏE7!EF0%_)G9>cA5 4esX`;]tDZ'-$q<ɡLm6'ρ=]fWZ!M8EEz:$>"M(pFR8Q3`7 rh/$˚_P> u t$5z~!cCi 7H݊ί93%H%ꢖFupRzM:U"m~jxADA&bN"q H0yLS%KTF(f:El*>5߄|b* U(,m}&BFyߏJp!u|u1*9 {jXc% "y'.n@D3l> 5ΖLGu}TjrPO?!b;I:C驌hM7?eA+ls? [G ̎ˀ6P ?*W;$)FR]h[3Y~.ؤ˔f?N6SyZv mO (q烙}`ǢDU`Y/Q_@0hOQvykn m%*veJ$RJDZ.9K93VgaFzˇC\%s֦mz@Mjtn2@s1K^ߘf 9Wox4Ґqᕗ3HtgR47FC{rd)|,MA͋jM!E:Yg֒dM͒aϳHqFda+$(qyfȆ$Hʴ1% Q}@tŦ*NM}.+C9$o&%[)b0@Y{cXSDLm @`n9tMS/MolZYQ=[Wݳ¤)ZIWR]ll@W n:5ڨ >Ƞ0 ou~XQId%ȳut!S`qgpa\Ӷt~Ȣ9|{i#ôNՍo7XnX؇5GLITf)KOƥׂVbi(W7pɥ- =ZWYkΖ)VTrN\p96Lo֒@s'3X\#CcA_$ )l+^9K 9KS@ aŝ_{"ܥvI-FqkUiq3?g} iy1SV)Y1)c"Ek8~\IkCר2T:?^hXMNO+n?<%`e#ܵX04A:ûqjKui*#9:n_&@?;>Xb{!p)qwB5I}FYIn(6zs7 b[4GK~i"yzv52&؍;  㴱=N,i,"J*=u]f`,Sέh!5 skg[a} ڃg~ ^xrw 6} {2R(od Z{}B| nL-I#m/VґE{s rZ`NpC=dC{2&ENB.o\'o"}WD]%-dn_%LP.OOrA$;5yvA'@)Қ?ڐַ"Nv$撤g %ər22a*0LI:Qs!t{%2ct=>*@TT0Q&}ިbE~H$A9}[&0h'\ #sh|եutx?U)t4%<]_Ezļ9~z8K]CN$?Yh}A Y,,p=mݶ$h-]?ZjӋU@3Rfh,qGҸi@HN8"~3) R_x7hh zV3*(!VS4] ]  O }9duVڨN*y]cHBqVގ?^1O].Kqba1J&.LvPc2\{mnvu K| ^G"߻B^ *:QVn^k^9' [J4i[W/)d ъ'0"7%珩=<Z]mgu 2VҮ Z/uGGW Yo^1dnƪB*bGkq*+HnᗩZ>䢰K{w_zEP\O}GMF^N>M_y0 bvSE5"4pAU**Ck9~ۍfA=` #\q>bO3 qa?73z^;@̨>zrZxչR~ >߯2$22!P)<3. y%./!8?{h"ʋF"_ZA7 [3S8ҀS-Zq{xGNxڅku@1t3quIpBuL횔>z͠QNJvC5$c:vHU.~N9pi4\wDA\끝(B*;2l&eY2Q΀zA!w>Wf'{rIazw-ÕyDj[E{YK+cdpLDdVlV d>||+SÞ6=!e, Bp;uqmi@թ9|!LW䲩ѯ;mdMN떙>X*/tTn#&BWρӡecйWɿ8KJ0r?& ]-FZNx@T"}7.ͷ8]֙6+IZ=\VF ʀ|j͕LE}A㍠sV\O^|pT(Fqk|hH`E״8f,݋YlͶsܞftllF#%2Ӿul$&\໴K>72N+39L@fO`Zt08ٗH!P1g85΁Oj;COZb/Pw`]_@pOAy/AibM%8! <s'"CܙLWy= oaOAVP43AYW>׎D1VjIy'ͮeCK lW*:gPHx*Z+ }3rB!>9ڡ ޼mvu֮#jx\|(p1j2i+ya5 3N%coivGphY3xPI^ˌqRy>G!>QLrKM;Vf5Iڢ-^ 28NJdHDZ*k+3ٞSDik2ޚ7{o]K<,NzݛtW[b~ȑCS 7 @Ffi9qV9ߢ-f)"x"ߜM\PwW&3XLJCM9[%!e)Pm`D:7tXj7Mєhw]mfAË2__bI@cb[k̳B Wʋ֨rjetv653ʉeZc/[W_[#eovLid_hKB\ϹB]sNq gA y?ɦiȠ6& O:9{ޏfg -I,]`1q 3yvP1:,(IjDz233H}BhQ2}`SN1<,^ȯ95_34_XV0(=\$PObq( MA@"*+n"𻡒dO ZtwN[MbkZ1ӿ5VNIﯮgƏ[VFz,p- 'i sOXRך%7YT_aZWIS ޠp{3ѷwz6cXoKqJdjC1V[Y$' S;1cu-J:r-x ;o:ʦo ǖ _2=ȢhvIjmOn@g`*Ԉy_DΥ&NC XTE;UsFs{v;0,s&1Ä> ! c[6Iʒ˿5G)σ>e#X|Um [7SzDIe`b#LN\(" fnRvAbnB:aon2}*)_D]r"JՄv: Ji KN 0FS Hkv$!D4 1!4ぃZt'/hS (#).K/A VRUmLۏ>[,4+pKuc/> JV{#)p+6NG[SS&m`YϬCW[@%-!) ,Y:.[xyj]Lz!1cyw3~{[mOIpżku9@`EN:Ik`Y0G(VeFECedZ;ً<3; ?vL`Lj*Zn^7r5un@_jUXP2Av$8f;|iWՊ='à0 ־ A4g#' )ݜdq>ʌI DPΜX=X"tx員 >oE Dx Q)Gd97Cmp}FcP'%T!=W*K(c/2.H"cԐb!Ҟ~wRü<;C-$HP4B8Vd{qٍ`?m(2i\Qek>Wp{bT%ڋ-2RBq3֪:d\k2J#Cb[ݐ4ۣ7ȂV1з"LNN0-b>ol3{I e-o=(G!~[?'z"L9[V4luOjU(xUJ({@wm )n0 FȌgmjNRwukM745 $d-˧#RQX^W;^- m z& (Hۗ,ɲHnZВ1apZq*dPgMR$TO <  Vdr@!\Khϫx $7O>$"BĂ8/ckn`k]Ic5T7Tq_]_Zt6C]d&Л3`{QĖLZ+oO.\tF6b:lځʤ5Q&p#rD0j*E)џ`fI 36J3N0Ŷ@ %Qa` 5[ f V lOۇ2=ʘv፟۶P'*m;b'Nq45HڑEq*nb{Yռ;=rH?r_AYEFLlOv )kސ9!6טD G 7 =ǒZA5r>0GƟ&4Dre#S!Wl-C"2hOڪO2Dǖ14^w3by= -!so.Ԇn?ڿaW;6@d=lW:={Eiǘ kh]φDV/26_2zl`c <^>,Q,:0l Q >=dMhs݇wM ;# UTWI}S:@k$*iCG+!7=REd,?H4c]b? R9_$Q/ݣih%ae2z7.pB죯oXޅ9?TC?-ң/3>Эo#L`5kjʈ ;﷉-I<0U#MA.Y%A|^/8W #6BEj|^KYݗ)9ph8_zP )aq,dW0esv!.|K͝'KV8 qYs5[{b8J(pƷ:,h;OdG)"[:Ia`VTh{ n]GaMjWTWXm aWa{\jPJN&%nPGҋUx _T@hVZ&Tm<I[I[Z NJsgzXG+2@3@p C0=4ec fͨ<ֳjڝgy%} .v!t|Diuf.]%ie?!u4r@bSaDkB(!]\ItY6 ϷrLŌ#:yoNd#-{bZ:0&9, =+z;.tLUwhCQe݁A5YHf3[)V-2fIAƼO~ Ng޺@*(0w܉Y$]m<9Oo<Ǜs6_QuUhS;Uh[k,rϣYL.]DHkLӢ m}U!JXx&&zZo,7V[&ʌ\{?\Sv֩?y7Y :!q[AjD WA9ձXH/UT1H&Bi}Xڈ!^ A$027'TLE]ƴ-ʑ(!VgHٟ`2 ~g.?^q= f@@Rg4v|4'mq2>o؋V,ųǐwluH4ݿaxsؓoNR"Ȩw4P-aisQe< .x[n-U/ GԶofӵ 9郥D6Hs 8U(n6UFa=܅a>3xPI/%IO/:lOyP=^hSܒ#ɖ ?76ji)GEwLv<|K(g,#gނO /6¾r_<Vj1 =ikg?j;wR8*ª';CeO_CFX{pͺ(?̧:cf#]0MvxW䚄 Eq.֓'^D5zxVq&Z[ڂɷT)I@#iFl . oz3pGch%.蜼#>7z댳O .^7.xlp1Vg?QI{!ཎ'_C 6qy5[Y'r[/6\`"8!@At%kkbMTF[6FɈdYZز: h=I.gئֹW#4N3XF{^wo>Ι|gE/պ<1mO0]o@'bs7OQ'#NjO\v>$3@N[f(&dsLl`KLկYZ5jvfxUT2pR:ӥ it <]M4=)QYmJ5!{L0:s1rt!C)g#4$:4 Mԅm'f։D v f(n +C&t[K)lYJmL.-'%L"5W#Q ovut]FaQ:sa3'b0DiZee!kCs)]xܵ|dsV緄%-j 5Cf-&Y=uՒetEyRoc{O4fxgc_pa:,RlŶA vFK//%Th LZ2i ![ENN+~a)r:`h_0T4onigy9⯺#m4o c.N?xVKh^G5ǙQMFJY\ʂnA%QΝ>DYFo^gf@<0A) hR>,bf27sSM|5@x)@H:nbEW$]ק> ͽ٪kq{B lka_,Gxj`Erp V[} mx3 h^8mġjLAs8\"G;:akƠ }jfx_ډz ohQpZV B_a WvnX[f$/$D^΍x/;;2Ñ@A?1c^J}gg1 }Խ/p]_Hz5IjJԬ/ m(",7DŞ[a8JC;%ed$R5|h*R@d6xNt6vYSW᪟{@an/r\l@gR 﨤T(#/~yj.ќ6n&u+ǐvDX2er!$iSsw8!@S Eۺ޽ I Fͅ<,k$b-m#ev ATr^џ/eu@^.Xl$FY{39Ro:0NmܩۣX  <{mqw,!:--h/ƢEB*R\'ǟ^P4 -}kU&|Y}PQ /fThbF-,@;9uZ+Yh&wQk$bi[1iDಈZb?z9WkeYZWHؠY- W;YX~twjWG\wcGNm+||;oUsnQB SESzkvQܽDEH=ɳ&~iY# ͇Rblo+T8*aZ5[6" KX'S`j^Q:aAcoDMHw9ݽOmZ8&G4ѷVyVI6@.7>`#߄˾Z#iE$ thc6@7o #Ж!bϨd5P|n䑧qq[H;/\|( N5QRXI#,\᰿!YoEby8wV=H5O?><ik-xvrZW|m= e)ZlO XPb0G*:}ɲ98$aTYBxP/M73\瀳 H؀Yv`Hl-LӪu#0E8r~{=zF8s6#9MbΟ= 514Cg Z` Ϗ&] }v>^X&:xUGHKJC=(r NYO65ʿ#ɃW5"a<[H-/݃|OJlm,"ñjԇr(Jh1eӣ{ffRQq=9]~~0 aG];{Cti}z7a+3"c3^q$WQ\nx6")ȣg6aPSNH?'kdEp)9Avw;iTn,N6\zN֬Yjx*VEH_,nh-:4/`D,Mn_DMڨݝIƸ?$Q7b2Bq"W҉JZ,?^ۃHOG`}x X#" '+(/$@+mՎ}(U䗡ؿS:Zv,sqQKq5͟ Kl,97pԯ69; .!{tjNUPYA[jҮ9]N)6g+Sɳ2ОN,Ҕbʵ*}_E_3|l\b#Ǚ="(Kv?pӷ/7. ~׻q*ϲnu90u{^\[RhCjx\lkpqK'(u}McHR)˪֬-+ؖZb#N sYؕ;Zr& } Z;$"Px[Zp!( W3_OׇaW.n@wCX}%{SBw<&9NouAp(kJZJ(YʑO^H{UH^HQMUK. nWC_g f)PV< U  vu.GqTlF-~M")}Lލ8hvT9!h[!Q;ӽ=Jv6hs> )HJj}ȁp.ʉzӞ(Eݍk>X3;BtZ O&JͿ'!Cb oalے^%}hq٫<*vO(=&(ͺII_SK:Gh{+iDӜ? k!dG<_J<]'k !ZfV74G-ιU-'f P'1`$B7B=(D=yTCJx u>=[ .|PrkPC>? G*l_c8w:XvYEh+ oAH70vШ6!Zk7[JnUlH5[A-8B{!B%Жb7-°D湮eM}";2GFMѰ<6=~mŸ5fJY Zh>9> 62K7Mގ0mK>%5AӲWoԌgƊs}){]#dN5隤':u@fe6VqrMndJ"vgU>/0d];7"7GQU ¨W 0,käN p{`nYWRR^v E?h@ho±}ܥ?nөy֠ÐpJag9J N#x,FǙi^8Wr'x4.YpZjZ;i2t _݆k1CMwro*rti#[dZI[^&2]._ bKTlE P)'_5W39 , PC< Z>7-?ͦސ11Ī\(wΩbb/ &4v BF j}KJ^\Oq,ʫi. ʼn+`VP@ g=e&쾜mWh-]?8!_?"!Ƿ[p+[s@yﭓ/7XsȿR4*? JZg< #$ 5_u ¥MGKA'c(kq^`[C K ,߈<6N+So.ijяgk!> Kx2wNY&U=y\/|!O<K}$:M;c*BXy3`[n ~Swh)WNTgU](҉}RAj;f,j#^ Q LǤ_vC`RgYZp N#vZr{4~W%'`. +UorآȅpCJʠ߂Gdѯ7'* ))caЧDV;HOZ 6Z=jƗmǍ˔7= /\|RVڲJJcΪ_y!X{W>?Rܦ<ЯZ yAK2Nt;r6P@)L0=\:5\wAYX4k1:pzڇ5 QP ww1Up>r#P`&P^-EJD-0=;ft phh"%U1y>r )lKυ0zBKF8D5&MF /gtMWV w* 5""h=$~1v *ӄD\v"Ƕ +>N'g5D_}m1E7ї"7SOJ;bddžQǰӄuP3iUɜmtt c?i~rQ9`=O"FnQHR$DߔƤ%5b`YeOq14T9/6sW w~X. }uC] }d%V8g{5Q_ ]S X7pKN7{i?Ӛzsٗ"u%wd&r+J&d4:qGhv 0^<2q) ce;d+E/&9AG>]Q3V^ 0Yw̕Q$8v4 t̯t@u h~\z1ۂ\-zX(rK[(*R!ʇ"ؤGg-޴U9ȡQP,+hBfDAzاߑ!K#P0-.73Bز@}F>-"6#^4jLw]\ /acP;˸:\kgq`j.^RE 8Ҭ^7wjmT޺b/"f_vUCׅˮ) .)7ZfW_64?ISl-Dg ])u־ڙ.Qzl&XZSgFX5|_2mN{LΜ^<`)ZO80[vğe!grSm;cdz^i)I|c@7_!c{=5۶BBx.(oy# @?0rAX!+%21z1bI$VqH`sź ȁY҂=19jH9#7u=O"m@fyEKӞq WUJřnuv4oXڶorfԥ9Z9 ".z:nm~V=j87y5l5La -n'mNΕ qdƒWȰ*#9Pc%y,ް@])ρWEpCoIĉSԮc6r bh?g/YeQk`*VWV3FK&6ͫEJ;j%~b\pz.5_bg筙˷XX !D'W;*, "MkNnY̼W|@F$8sW/w7͒PbJ9!2UDs|dO ϣ6£:Uaٲ: xUaܻey&I߼E,*E ^ *Ր0yt&jCπw˒cvbhu쐷O;{氥VULkFS`&#ta\7I=g[p̄^\*SdNZ!AT OAun+Лf>zPZn3v%7ӷʓD|gáqFnC>Vdá!tWCz7rapO>x\~՜OS:aH:PD[+GQi?!)9ZfՒr}N>;ozHgdvizmeu0(.{q쌀aJxFVEӍWߋUSކZs> I/Q66 5+zjڂ F|A6[\nah8]vݿ;NwDv\7Lb/M4ayBTL<[==z;vn>7M2/tlYAŪ&h=1))"At!UΦ:Յی*Ar-K*kXOߺ&gm6&"X|~T Lo#soLBtd(,u衭_hi=6'pnSɵrxq;У)E?R3UZURZRw#E7lC~8r8ZHrA֦fQE¥L 沉&GgkhpOs#32pdT~¡$ua7!KȞw$z7mוA߆Ƈ*]alTt:ȚØB^75x:b^ߋ3*;͸^ -?}oCбRV+#ӏS6/y皍52 Cӑx( T ܲNofҦu!Չ/3=,++> kAaT`&Pg܍= ESdLUp CoOkǴPx +8Z]\FmyXbH}߆+)B70|lQX NEb|m+Y/)|a|D^pT8*_84zχR[X22P#zo3nKa{ExlK^Z/?LeL4rE|:~r)|=MaOR~nw m:N-zs$bw\KG},S=N>{z hd3:?0:3U6u@ZjeXm}|O'ߥ?iN#X?9>DG%;xh0"Vt9|KoH}ƇH3GBapO)R/|{r!_):e߃NaQ|6p[_o>gzA}16Y,OJ-WS`At7UֲMZb{Ux>|f7tȼM\gmtI =78;z@0h_JmR`+|tY=n>565`x{9$C 6/Ў.mCǨUwsXi].1Q=-cM k~ǀ${0`Jnu隦$~6ryAntV&?X"_U60C,߆-uٳEg/a:gP3 \F-݄J2\"PP.gݖsٖx ΑHuh1lK- ͧ9WT279b̫zs+'&I|:GlgoOh9xzrWޞ,O6zxWl ܲl>L-(1I#t~ǔ"$S C`.!):e,;{'GJR >-#d.&Je%hC0~D1D#Mw+;rA-Z֊| ,"8>>Wf^)^)+fl,KR}~;>sMNN]W/]P\W#=gr&*m_֠wWK>ҁCϥ rjqq)kzxф*8D8S@XX$4`.,%~-K NE}uY-u:tҟH}?dm8csIAZ.V׊b>;#gڿzg(LR">j2P CE覔 CbN gS̸WNhKnkUm?`5o#u8 |v=SIz} 1 kB-1]#14x!N807TTõq% NJqװGK?]kz^k5gs_G@ܨ쩐&1{|.y.Ax T~D4 v-7}7m77p@6DBzJ~",1dҬ߷4ۚ<5 d 8= b1DȾKY'4Vd4gd$ƌͬlAN$.e} }3#Umq80W -:y#F/"]~OnεHҶ6nK}OO^8wLJؚBgN^|qa_4|1#Q b򏏼:/#n!98\\O>w&}D ;G+ ?[ɰ4!XU3|(R)7,i0q//Uے1jqwjYf$}DaڎeJ{J#<'O1밋#5 /{[J`wbw1zK Y8z\9lyTr crǃ/xzQ3?,# x5Ecq<r5)+uz;vf/O G*ef. 秮]zalH<.,TE)ZVJF"a[Ԭrij.,a"|.g\kA彸ՌM Y;! .saJ"_rs)䗜:\Q@VGcWE.kIk6<n5Q7gfi: Ó#'ň( ,UH\x=N-\ Fd(HiF%scLQf ^,> V?ST5g0tώɑ ]3#od j@am,<}x#po"rp T9b`$#Pu%xHSC}r`D|}XJRٗd S8;:y@KQXW_(Pd#0uĨi_7h{&ϵ.h9CD͒i5uMfC] <4^:6Ҹˮ!C%Zv"u_n6q?@ZXՂ\GGbt9*G3Tm_8jL䞀>suUZ2d-:hռpy)EA'JN S{,@&ƓIe6qD& v l5 0'f{%;w@E:JŻ#jL?W!;ݱ8'> 1I@;p0eMWt'"1^kH'BQOaBA?P_PF5Uk4?63!P,'ebbSw(O4ェASO/(Ifћx>V"xP½ô*(>y3 &NKzKa1n2a ^oh/Dn<_/2*km25Azj𗳹P.)R`nߜ^8T]NVr VBU޵pWAK6tXgb&c:r%ך[8;&M{2I8fk"Lj.\A~DG!Ώ:1WVEt+5&װjX-"*& Q;9XM҈z 'B*|hG}H/7"%)oc\$<_! Z鏴r%P݃P=גk`*N!9,;!n=. MzFI_H#<)zz2JVACl5lXר2,@AI]NݝI[7Gs \"|\_l)w:Ԭ!kr U!RDnv*dbP EMFNs4B [4雲M Qsyn?c<%Tpsy# -"-[p1'"Zyg{m 0%kQ$LW87SJPmqmv{f# jO\kcٹJ4 ^ajbq!gߥWe<7A¿\@* \Լ U2~TCB(FMJ[I䒶Qnq Z %f3a |fe~m%Bac;* z}I-t49bpt&kY>7u!,pd A =l;)3抲@:L将hFA8 H[?{q"ʰ2[!+*`7Z`#((c gzMSR5x[|ty?lYuAk8v* F48D'U?ޯLRVȨGML'uG?&m۪:pqQcc VSx檈R#:#ӡ#)VAϝ6ʅR$:ۍ;׸{͞kC+O)F^RD!V m"Ogfϭ1ZZ Zj $8Mq~eeL[61^ IZ#/qӿFRm<"C8T7u]?<׎.@aZBfTH>zx1et"0sn!At4 p 06n E -Y&[ ѭRHn2dPr&-(t2s{lNZ7%1 ?+P/nѰ3{8yn|/6=,Cc07OErd9"~ަF"2h:nK^VzWq3 V*1k"VH+Œ@) ^jc@TE3?hrЪyFX.a?'2/@BnIA[3-X;X ¸GÑmN59x8NS'+kV<_\TԒZߗz.gk'%W^UrKg/FXBpO$KNIŅrQ @v^m< Hv/p/˫aw myMGm3x\a,FL mOlS7 |]7i6Bg斪~XǢk) G-/hN+Q/6jKQ~Vpw.ٴUٵ7KGFg^YM׫b5z*B̹/wHSНxt̹3 PtRO!'\}l' OHm%vBε0:n3`:=^'^қ ^f{Q6EHyt{+jSsb3C#KրǞ lC>_Ԧ,eGy#R]f>q8i"1tD RnwٯCO3;xZf]&|a î㝻?^kZH7WdӺxlc* !AoVAݯp[]N696N[tNS.vtS%;fD%`O$Ëd+Pes[j𰛹 `纬GT|ZƵBw?_w?.wE+bPoD14~R}WvL=)Yƞ?/gXOyrf ?56n'A6SeDJ:wEF[}6Sţ.P5DS8;43*[˶Qsl+B*={]-6 anbk2l2Ju2ۜ,ڮ]&C[@`CnZ\=?Ay#ҭWN 2"nLǍzte`0"KCZ;q 1MwcBYC,W~&dÝ8x78uqm$ 옂$7Klƺ~t,8 ;8h#CI1!6 a>0W~$,I} &NSP DLCE-ѵFԀ_d+Þ;&\Mޡj|\nVS%ڡ !%$L(N HNsa=HЧU%'V;j_JLr7V53L51qIfs7EΞm3i i wZ;Iӵz#}ʧ ܅Y!.#( 8ծ+dUPQb$y{97<ֶMޟ`J0!&"ZC)EMm[esSSk)po ?!%jOR/pi7%'v`K2leWaXtuD1 ѻ43-f8$GtX;FNNr``w2Hj2`sºW @\z) -1,5eԿw2~L 귔}XĴ$G=s:]øh WsN  =M 0:S3а q +{!@ڙZh5Z< '{qp^E\oB@vxC#&$2e cJ< D$g'zLQZ%/\Xɓ^2f⵫"̷:ђ3e/p$s +߰&Lg [s=:O[\lօw/.HHJyΌۜvpn-, h0[6@@(ix@˱Vc6u .F>mJJeҭD<햝`ID'Ǔ={mPab7~n8n‰Ft`^lȂ>ihafQH`cDQ>E6)}.P_0w'HSOP3sbG|,)r0-:uhAejM>XnÏ=gxؙd*/orrZbc!E$Ldbb)3c22ʉvy87th\74Mphe;6w1$&끼P-㍗NlP⤶҆m9 n \0`]/jXQC |PP6~iZvh-!$s֓:;9%<a 3婅bnE#2zXp+2B84s8#Hcӈp 5i-by񏃣ȩ# ejI= V/'4.+coD'xf,G}Ku|L O tWzn(\`y&5>w[oNKS)OF&qXAY`!6令͉ 8J d } Ԏ\S&_Ҧ+Ab&-ѳۜ%+LSWWϞ8ڄyFtּ"G> yc/4*cQ!n XYjVchЊ#Pnq|[ڋF\H_X5XiթDc(XmD鑏Ӡ* ETIăgJY }s  7/FWYRYy&Am5(sbPukSRaq7B96$27H[@;s>2#-:+iOx@aGxB>v4!sCZLf_p!d &2vHcϵzum0zM̨J\gӗ)2:yk|<\i/<>~YtN XOaxLZCש6ifM%\mt8vK\yVҥUh.N+L;)_@Xи+Y0u n;⌮֛"I(и-i-reDt _[P Vq|% cn6z.TZpboG&?7񼥑)E1)U pMDpMSl倹Y,ՇymA-{2l1,KWm}vavB< am[͸JuGTp0lcd:#[՞/ʐ'&b!ă[ +X{Yqq{JDཀR[Wpܦ8mꋱ+dRk&א=B}H2EHRCpXڸ(Z ]|GYHʩJ7omL>#X|p8)¬$#h6b%bX5UGՁ|kI-(/{7Oq5!L*_!zI GY6kGYI;Xw=1ebd2?$Sk2wЗO[*vN݌y\l@Qk7 ? ІcϞd(g{\?s B[?*rⰜJfTSr攓X u3žp0ñH/* ]ʼFZ,-˷.]Zc%(=]A :_NbЎ-&Q"֌7~eЙqv඿=mjv,6e'2~v[[⃤ӹ\ e3ki&#ڜA⎕wؤ%4'#xFi䴠jN^\#n)d CVtD0pÝjr=dJ8FuN<]Y}5"M"HoĪX(%wH+HAo"o T.'xu2!'*x&y-h >O]mO~Y8T7dms*(ڔ::Br ʾ@HɠK5?:Q>|g;^s߈a.e$Ռ}lF4/K gjI~(mND03gM.8$iQþznR%` X̰NrkM9 Զu9;EaIq6WEg*0eED,l+ZjKH^-|~*^_ӱ)8H,?wx rd~v]nW] T.œYdL:"[N8f;9dAs}he-%&lW$_A i0jhd;o< Nnzkv¡\#U ' h@/:."K]+QEVr\i ! etbfE\f狵4[@] 2WV,l0l }gs0Tҽ)zpmX-fukhοĩqC$zjq|_Niā{&!)S>ѹr'|t9_sL'u l}K n;d &DPo%(ɒX&9Df \Vj  m%#FQq 7EoP]Q njc8Br+ˋqf=k~[/ vr OWtw̡T͐l=@<:_{~-SJXq %D.%&`lߌ%M7q7N4P2;WT1T}Ftd41EF2.$dTFSU{ '.S*VNA#1rQ\iv({hL72dMm_7/Ld&?Hr'$/ c}CKm]3ocMY!Vg:wCZ#"M@^1h8>a܍rId:7%σ ZuuJ-U#AwO=ql\rd^D&kw2 X'bPa(4xGMĮX(x %oRR1.Ecx;ND!Mָb=D#qDP3 xH%oiW[7>XՇG- |D &b$*@VkwR_ㄭCoG%iDbNjf~kR؜So^v|,%Y<ԏkn!,Qt0NN-5/Y-JkƢ ȩYok~<{QnL\0*ʤ!'y^b_lsgnF%2^ۂBmH"3'!}f"ƜR?x!s&-wy, ]M!y<z}ڌpStwOtRbέi{w2.ڏ ϫ;Bc _w=kF0Lh@ǥN2կքIG-0HaӗX4q ()V$1L5]QN톔DQA$յ5٪vR@ !{v=UݚH {AK%4y}iaK:FՕr0]$)b#Gae\l+۝TS~ޔZXodcZqdA2o*>(`^i(t &Q³ {p"O<=핥X'ަjpDpGG?LSs`T~"쭾,"\i0PV~5Z}P,Ń3ltJ<݈צ}C 觧.1M"p<桾[6OWjj1/Єj_* 3 sx^*e9Tƛ˓K4c8)-GBuD.J.ȁ9(nuWٰ+xX>_;#%1 Ru׃ϹKmd͜м9΁$=eg5n]2ɤU$ w]ur#~5 n0~;V&U|̀"R ;z!rrO ^6up+ܨar+42ҁ oKgeXUIGafz1f_CrW&60@ׇX6vnuh0EN5\#%Y "x[Hm):R{D^[h~6ޣۡ7 -I#}bDEqc}K[lIu]WƐ嶴&\rf*`f'7\:PUiܪS`;|J xS*W'OM<} =s9ҹ3/9˓g^~q̩ϼ>}j%BjYc+cWQ8 i 85ˡzǽ._!P/+5AUF?/AѩsA ݵ]i% Ρ6 HնCL#nHG<Z1 `Xc$Kxn'= L,gR\\,3j64E’EZ 9̆-9ԎGWp:Փ6t9SMhtz.\2#SqKP KTrY: srފq1ӫf:gZqQ1JyT_(v}e85)-u: =?1O]u'NGvL c[^ T-DMtV6b;)6HAr8c}4^+~]F/sIH&ko*(4t*U1IZUp܁{a,\v naxZb׉ɎTk0zK(e>% d,\%_ld0!|r+ 9z l綏*tiyzb4 Jjom0em!GOgUCuRZ@ȾXn-U`\д[RkdţYҬMWG + Y*7;>*q8.v(}ht54ֵc?b1ިwf:n3T/y"7Pιֈ9}g*'qMDӌX&+5sDSݞ MTqӏd%‡:EaN :y-VF.~zF$d՚Mm.$7a3-0/wgPNexaIkY-g8< QJPDߧPr!X0bV58*)۽dRPC@>]Y|cߺt)}k+c'jte6kcF'~#_%Ky&.^(BUOKMmwHMm]=$5"~۽dH{j{;[0?qp QMuǶ: dBţE'5/G߼z}Bn72 ]L^.Almx_w*T(U+q{t_q+ ҏ[d'LˢMZG{z(D ܵy[8x/2m \UlT`S`ܩPe[HzrQxyojSN!$mamz{Ao{MG~ִ^ח,X&v7H%7+-?vz6m:? L+I=>II~%'bhXŒ38¾^GẽCa]P, c dӑN@_;}fViY\(D+PGCPpDu eD KsKC{(?<΁07070100000000000000000000000000000000000000010000000000000000000000000000000000000000000000000000000b00000000TRAILER!!! bgC:(5è@K3lpR 5x7 YZ