trafficserver-selinux-9.1.3-1.el8 > 6 6_6 3!y덏%!E/֡bc !E/֡rBZ,L $!x}(֯A0ԏ")ewϐC)= u c ,vM[N XRy*~e8`k gFm^gbi܉"Zs}58 G z<%Q&_GKJ <򕥌wh-̲j){ W G^ |/8,V$-9>[iʺCn =f!>"j|N_ؔ$Hȁhkt[ &sPa˰yG7F=$ej6ҝBK m+x#p4t7|Ř΢daՏϰtNܤ ~H#x^#;<9?f5V2.Qb]ܷe`l\fؒm۴jfV39J|V:љS.;/SzԷ&smVݐ~34O16885bf0ef0283fdd130380616816dd1cba749913cef86e1ddb4d8347b84b7d45b177149bf4ebd25b3329b866bf295e5fd11f3cdxD3!y덏%!E/֡bc !E/֡p BlwURtG$8k>!1SQFE:z2-rϙ@CD# `uzH+? 2Gd 3y+ym*P> O73NI07jr {G-8n|:.gxjJUF:3 4'pOYNcݬq"}'0-ߝKꢷҪ\h^[xK<eB@eȪlfYelե qMX 1f"j~1ĕvcN݉[OLSΗ 'rʽLL8Exp*j/b#b%I{w|V 4M:8u9p)K[ `K&{&vX~Zfhlv7ҕ5<P%BrRzްhnb-o(2yx>2)U?dy Q}:JCnZ2ƁD1mOb掏a[Wn:>p@F?Fd $ Ahl ]14@ F L X    , 8 P  ( 8 b9 lb:6b=C5>C=@CEGCPHC\IChXClYCp\C|]C^CbD>dEjeEofErlEttEuEvEFTFXFFFCtrafficserver-selinux9.1.31.el8trafficserver SELinux policyTrafficserver SELinux policy moduleb^Ybuildvm-a64-05.iad2.fedoraproject.org8Fedora ProjectFedora ProjectASL 2.0Fedora ProjectUnspecifiedhttps://trafficserver.apache.org/linuxnoarch . /etc/selinux/config _policytype=targeted if [ -z "${_policytype}" ]; then _policytype="targeted" fi if /usr/sbin/selinuxenabled && [ "${SELINUXTYPE}" = "${_policytype}" ]; then [ -f /var/lib/rpm-state/file_contexts.pre ] || cp -f /etc/selinux/${SELINUXTYPE}/contexts/files/file_contexts /var/lib/rpm-state/file_contexts.pre fi . /etc/selinux/config _policytype=targeted if [ -z "${_policytype}" ]; then _policytype="targeted" fi if [ "${SELINUXTYPE}" = "${_policytype}" ]; then /usr/sbin/semodule -n -s ${_policytype} -X 200 -i /usr/share/selinux/packages/targeted/trafficserver.pp.bz2 /usr/sbin/selinuxenabled && /usr/sbin/load_policy || : fi . /etc/selinux/config _policytype=targeted if [ -z "${_policytype}" ]; then _policytype="targeted" fi if /usr/sbin/selinuxenabled && [ "${SELINUXTYPE}" = "${_policytype}" ]; then if [ -f /var/lib/rpm-state/file_contexts.pre ]; then /usr/sbin/fixfiles -C /var/lib/rpm-state/file_contexts.pre restore &> /dev/null rm -f /var/lib/rpm-state/file_contexts.pre fi fiif [ $1 -eq 0 ]; then . /etc/selinux/config _policytype=targeted if [ -z "${_policytype}" ]; then _policytype="targeted" fi if [ $1 -eq 0 ]; then if [ "${SELINUXTYPE}" = "${_policytype}" ]; then /usr/sbin/semodule -n -X 200 -s ${_policytype} -r trafficserver &> /dev/null || : /usr/sbin/selinuxenabled && /usr/sbin/load_policy || : fi fi . /etc/selinux/config _policytype=targeted if [ -z "${_policytype}" ]; then _policytype="targeted" fi if /usr/sbin/selinuxenabled && [ "${SELINUXTYPE}" = "${_policytype}" ]; then if [ -f /var/lib/rpm-state/file_contexts.pre ]; then /usr/sbin/fixfiles -C /var/lib/rpm-state/file_contexts.pre restore &> /dev/null rm -f /var/lib/rpm-state/file_contexts.pre fi fi fi .rbN+b^Qb^Raf9ca27482c005c42ce6de7033f0d4063321e0e5f2ec9348af8904f9ceb08df8db7f9cb52aa72b7d413adb948920290ca3a828326c125a51166bdb535ba76fff@rootrootrootrootrootroottrafficserver-9.1.3-1.el8.src.rpmtrafficserver-selinux     /bin/sh/bin/sh/bin/shlibselinux-utilspolicycoreutilspolicycoreutils-python-utilsrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)selinux-policyselinux-policy-baseselinux-policy-targetedselinux-policy-targeted3.0.4-14.6.0-14.0-15.2-13.14.3-95.el8_6.13.14.3-95.el8_6.14.14.3b@bb&b=b|bs@bobf@b]RbN@aya8` @` @]{]{\sZ@ZY+@Y@X,J@X,J@WSW@W>@W3W1@W WX@V@Vm@Vl@Vl@VVV<@Vj@Vj@Vj@U@U@UD@T,@SSϣSi@SP@S}S|@S`S[SFR 9.1.3-1Jered Floyd 9.1.2-9Jered Floyd 9.1.2-8Jered Floyd 9.1.2-7Jered Floyd 9.1.2-6Jered Floyd 9.1.2-5Jered Floyd 9.1.2-4Jered Floyd 9.1.2-3Jered Floyd 9.1.2-2Jered Floyd 9.1.2-1Hiroaki Nakamura 9.1.1-1Hiroaki Nakamura 9.1.0-1Hiroaki Nakamura 9.0.2-1Hiroaki Nakamura 8.1.2-1Hiroaki Nakamura 8.0.5-1Hiroaki Nakamura 7.1.8-1Hiroaki Nakamura 7.1.6-1Hiroaki Nakamura 7.1.3-1Hiroaki Nakamura 7.1.2-1Hiroaki Nakamura 7.1.1-1Hiroaki Nakamura 7.1.0-1Hiroaki Nakamura 7.0.0-2Hiroaki Nakamura 7.0.0-1Hiroaki Nakamura 6.2.0-2Hiroaki Nakamura 6.2.0-1Hiroaki Nakamura 6.1.1-10Hiroaki Nakamura 6.1.1-9Hiroaki Nakamura 6.1.1-8Hiroaki Nakamura 6.1.1-7Hiroaki Nakamura 6.1.1-6Hiroaki Nakamura 6.1.1-5Hiroaki Nakamura 6.1.1-4Hiroaki Nakamura 6.1.1-3Hiroaki Nakamura 6.1.1-2Hiroaki Nakamura 6.1.1-1Hiroaki Nakamura 6.1.0-1Hiroaki Nakamura 6.0.0-3Hiroaki Nakamura 6.0.0-2Hiroaki Nakamura 6.0.0-1Hiroaki Nakamura 5.3.0-2Peter Robinson 5.3.0-1Fedora Release Engineering - 5.0.1-4Kalev Lember - 5.0.1-3Petr Machata - 5.0.1-2Fedora Release Engineering - 5.0.1-1Jan-Frode Myklebust - 5.0.1-0Jan-Frode Myklebust - 5.0.0-0Fedora Release Engineering - 4.2.1-5Petr Machata - 4.2.1-4Jaroslav Škarvada - 4.2.1-3Jan-Frode Myklebust - 4.2.1-2Jan-Frode Myklebust - 4.2.1-rc1Jan-Frode Myklebust - 4.2.0-0Jan-Frode Myklebust - 4.1.2-0Jan-Frode Myklebust - 4.1.2-rc0Jan-Frode Myklebust - 4.0.2-5Jan-Frode Myklebust - 4.0.2-3Ralf Corsépius - 4.0.2-3Jan-Frode Myklebust - 4.0.2-2Jan-Frode Myklebust - 4.0.1-1Jan-Frode Myklebust - 3.2.5-3Jan-Frode Myklebust - 3.2.5-2Jan-Frode Myklebust - 3.2.5-1Jan-Frode Myklebust - 3.2.4-3Jan-Frode Myklebust - 3.2.4-1Jan-Frode Myklebust - 3.2.3-1Václav Pavlín - 3.2.0-6Jan-Frode Myklebust - 3.2.0-5Fedora Release Engineering - 3.2.0-3Jan-Frode Myklebust - 3.2.0-2Jan-Frode Myklebust - 3.2.0-1Jan-Frode Myklebust - 3.0.5-1Jan-Frode Myklebust - 3.0.4-5 - 3.0.4-4Dan Horák - 3.0.4-3 - 3.0.4-2 - 3.0.4-1 - 3.0.3-6 - 3.0.3-5 - 3.0.3-3 - 3.0.3-2 - 3.0.3-1 - 3.0.3-0 - 3.0.2-0 - 3.0.1-0 - 3.0.0-6 - 3.0.0-5 - 3.0.0-4 - 3.0.0-3 - 3.0.0-2 - 2.1.8-2 - 2.1.8-1 - 2.1.7-3 - 2.1.7-2 - 2.1.7-1 - 2.1.6-2 - 2.1.6-1 - 2.1.4- Update to 9.1.3, resolves CVE-2022-25763, CVE-2022-31779, CVE-2021-37150, CVE-2022-28129, CVE-2022-31780 - Resolve glibc 2.36 (f37) header incompatibility that caused FTBFS RHBZ#2112282- Don't try to use Crypto Policies on RHEL 7- Cherry-pick OpenSSL 3 compatibility required for RHEL 9 - Switch to OpenSSL 3 on f36+ - Include automake in BuildRequires- Exclude s390x architecture -- not supported upstream- Further changes based on package review; perl dependencies, paths- Changes based on spec review; change "RedHat" capitalization, and add link to upstream file layout discussion- Changes based on spec review- Allow self:process setsched, requested on EL8- Set SELinux policy to be more restrictive on privileged UDP ports- Initial revision - Adapt to modern rpm conventions - Add draft SELinux policy - Don't run as root, just claim CAP_NET_BIND_SERVICE for privileged ports - Merge and cleanup of upstream .spec file along with Copr version maintained by Hiroaki Nakamura , based on long-ophaned package. ChangeLog included below for reference.- Update to 9.1.1- Update to 9.1.0 - Disable mime-sanity-check which is usable only in debug build- Update to 9.0.2 - Use yaml-cpp vendored in lib/yamlcpp- Update to 8.1.2- Update to 8.0.5 LTS release- Update to 7.1.8 LTS release- Update to 7.1.6 LTS release - Return stale cache with s-maxage only if cache_required_headers is 99- Update to 7.1.3 LTS release- Update to 7.1.2 LTS release- Update to 7.1.1 LTS release- Update to 7.1.0 LTS release- Remove expat-devel from build dependencies- Update to 7.0.0 LTS release- Return stale cache even if the origin server response has "Cache-Control: s-maxage" header.- Update to 6.2.0 LTS release- Add patch to add new value to proxy.config.http.cache.required_headers to require s-maxage for contents to be cached. - Remove patch to concatenate multiple header values of the same name in TSLua.- Fix bug in patch to concatenate multiple header values of the same name in TSLua.- Concatenate multiple header values of the same name in TSLua.- Remove patch to add proxy.config.http.cache.ignore_expires and proxy.config.http.cache.ignore_server_cc_max_age.- Apply patch to add proxy.config.http.cache.ignore_expires and proxy.config.http.cache.ignore_server_cc_max_age.- Disable patch to enable unix domain socket.- Apply patch to enable unix domain socket.- Enable luajit- Set prefix to /opt/trafficserver and use relative directories- Update to 6.1.1 LTS release- Update to 6.1.0 LTS release- Build experimental plugins- Just use configure --disable-luajit without a patch or deleting files- Update to 6.0.0 LTS release- Add patch to cache_insepector to split multiline URLs correctly- Update to 5.3.0 LTS release - Build on aarch64 and power64 - Split perl bindings to sub package - Cleanup and modernise spec- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild- Rebuilt for GCC 5 C++11 ABI change- Rebuild for boost 1.57.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild- Fix CVE-2014-3525- New major version.- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild- Rebuild for boost 1.55.0- Rebuilt for https://fedoraproject.org/wiki/Changes/f21tcl86- Bump release tag. RC1 became final.- Update to 4.2.1-RC1- Update to 4.2.0- Bump to final. No change from rc0. - What's new: https://cwiki.apache.org/confluence/display/TS/What%27s+new+in+v4.1.x- Update to 4.1.2-rc0.- Buildrequire hwloc-devel, since it supposedly gives tremendous positive performance impact to use hwlock to optimize scaling and number of threads and alignment for actual hardware we're running on.- Rebuild for picking up ECC/ECDHE/EC/ECDSA/elliptic curves which are now enabled in OpenSSL.- Add BR: systemd for systemd.macros (RHBZ #1018080).- Update to 4.0.2, which fixes the following bugs: [TS-2144] - traffic_server crashes when clearing cache [TS-2173] - cache total hit/miss stats broken in version 4.0.1 [TS-2174] - traffic_shell/traffic_line miss some stats value [TS-2191] - when http_info enabled, the http_sm may be deleted but a event associated it not cancelled. [TS-2207] - Centos5 out of tree perl build fails [TS-2217] - remove the option to turn off body factory - setting it to 0 will result in empty responses - Automatically verify GPG signature during RPM prep. - Build requires boost-devel.- Update to 4.0.1. What's new in v4.0.0: https://cwiki.apache.org/confluence/display/TS/What%27s+new+in+v4.0.0 - Upgrade instructions from earlier versions: https://cwiki.apache.org/confluence/display/TS/Upgrading+to+v4.0 Important notes: proxy.config.remap.use_remap_processor has been removed, use the proxy.config.remap.num_remap_threads instead. Default proxy.config.cache.ram_cache.size has been increased by a magnitude. Support for pre v3.2 port configuration directives has been removed. The following records.config parameters should be removed: CONFIG proxy.config.bandwidth_mgmt.filename STRING "" CONFIG proxy.config.admin.autoconf.wpad_filename STRING "" CONFIG proxy.config.username.cache.enabled INT 0 CONFIG proxy.config.username.cache.filename STRING "" CONFIG proxy.config.username.cache.size INT 0 CONFIG proxy.config.username.cache.storage_path STRING "" CONFIG proxy.config.username.cache.storage_size INT 0 CONFIG proxy.config.http.wuts_enabled INT 0 CONFIG proxy.config.http.log_spider_codes INT 0 CONFIG proxy.config.http.accept_encoding_filter_enabled INT 0 CONFIG proxy.config.http.accept_encoding_filter.filename STRING "" CONFIG proxy.config.net.throttle_enabled INT 0 CONFIG proxy.config.net.accept_throttle INT 0 CONFIG proxy.config.cluster.num_of_cluster_connections INT 0 CONFIG proxy.config.cache.url_hash_method INT 0 CONFIG proxy.config.plugin.extensions_dir STRING "" CONFIG proxy.local.http.parent_proxy.disable_connect_tunneling INT 0 CONFIG proxy.config.remap.use_remap_processor INT 0- bz#994224 Use rpm configure macro, instead of calling configure directly.- bz#994224 Pass RPM_OPT_FLAGS as environment variables to configure, instead of overriding on make commandline. Thanks Dimitry Andric!- Update to v3.2.5 which fixes the following bugs: [TS-1923] Fix memory issue caused by resolve_logfield_string() [TS-1918] SSL hangs after origin handshake. [TS-1483] Manager uses hardcoded FD limit causing restarts forever on traffic_server. [TS-1784] Fix FreeBSD block calculation (both RAW and directory) [TS-1905] TS hangs (dead lock) on HTTPS POST/PROPFIND requests. [TS-1785, TS-1904] Fixes to make it build with gcc-4.8.x. [TS-1903] Remove JEMALLOC_P use, it seems to have been deprecated. [TS-1902] Remove iconv as dependency. [TS-1900] Detect and link libhwloc on Ubuntu. [TS-1470] Fix cache sizes > 16TB (part 2 - Don't reset the cache after restart)- Harden build with PIE flags, ref bz#955127.- Update to 3.2.4 release candiate- Update to v3.2.3. Remove patches no longer needed.- Scriptlets replaced with new systemd macros (#851462)- Add patch for TS-1392, to fix problem with SNI fallback.- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- Remove duplicate man-pages.- Update to v3.2.0- Remove trafficserver-gcc47.patch since it's fixed upstream, TS-1116. - Join trafficserver-condrestart.patch into trafficserver-init_scripts.patch, and clean out not needed junk.- Add hardened build.- Add patch for gcc-4.7 build issues.- switch to ExclusiveArch- Create /var/run/trafficserver using tmpfiles.d on f15+.- Update to new upstream release, v3.0.4. - remove trafficserver-cluster_interface_linux.patch since this was fixed upstream, TS-845.- Remove pidfile from systemd service file. This is a type=simple service, so pidfile shouldn't be needed.- Add systemd support. - Drop init.d-script on systemd-systems.- change default proxy.config.proxy_name to FIXME.example.com instead of the name of the buildhost - configure proxy.config.ssl.server.cert.path and proxy.config.ssl.server.private_key.path to point to the standard /etc/pki/ locations.- exclude ppc/ppc64 since build there fails, TS-1131.- Removed mixed use of spaces and tabs in specfile.- Update to v3.0.3- Update to v3.0.2 - Fix conderestart in initscript, TS-885.- Update to v3.0.1 - Remove uninstall-hook from trafficserver_make_install.patch, removed in v3.0.1.- Note FIXME's on top. - Remove .la and static libs. - mktemp'd buildroot. - include license- Rename patches to start with trafficserver-. - Remove odd version macro. - Clean up mixed-use-of-spaces-and-tabs.- Use dedicated user/group ats/ats. - Restart on upgrades.- update man pages, sugest from Jan-Frode Myklebust - patch records.config to fix the crashing with cluster iface is noexist - cleanup spec file- bump to version 3.0.0 stable release - cleanup the spec file and patches- fix tcl linking- bump to 2.1.8 - comment out wccp- enable wccp and fixed compile warning - never depends on sqlite and db4, add libz and xz-libs - fix libary permission, do post ldconfig updates- patch traffic_shell fix- bump to v2.1.7 - fix centos5 building - drop duplicated patches- fix gcc 4.6 building - split into -devel package for devel libs - fix init scripts for rpmlint requirement - fix install scripts to build in mock, without root privileges- bump to 2.1.6 unstable - replace config layout name as Fedora- initial release for public - original spec file is from neomanontheway@gmail.com/bin/sh/bin/sh/bin/sh9.1.3-1.el8trafficserver.iftrafficserver.pp.bz2trafficserver/usr/share/selinux/devel/include/distributed//usr/share/selinux/packages/targeted//var/lib/selinux/targeted/active/modules/200/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protectioncpioxz2aarch64-redhat-linux-gnuASCII textcannot open `/builddir/build/BUILDROOT/trafficserver-9.1.3-1.el8.aarch64/var/lib/selinux/targeted/active/modules/200/trafficserver' (No such file or directory)https://bugz.fedoraproject.org/trafficserverutf-8a98973665c53e8fedf7a887943c3f28cf651e3525f54ba731108cc0f9c14fa58?7zXZ !#,:,] b2u Q{LT2#Y4"sojN+'^Q=u|~ѓfC(5HM_aWKw` $Qnz[2BкPxdc*#W4RZ"#{f=H K@LIۻcǀ;͌]65r>u- Ny畗8 IV- #@!+}dj+ nNjrJ6dB53.Zqt "ȎuUiV+ FgjӪt; . @!Aŏ Ixj\[3f"p8bpOm=8U[Ȩ; cűhMU$ ' :Cg~[4s@N̓IS9w+ep2, |>AFQ79E ⁛?f8,݌c2 b*ݤ@C`xZ)94Hyt{/Xq~rg|u5/_͆qPv7EP1i_(teЋNr/=K9H 棾ʁ5I7*W]PcN<$#\YX5GiT/^Lxj_& D=#GC-}1 Oam#a)wV2X޼`.RnOaPbǴz\h^wSb2)FPO 5ш(A݆aB0u)JU|X0;y`X@;rqG5/JiUz R!&l89'MȔg61]IB`7m&P]7ڴy|[ V'!ľ﷒AYv65`RwZWf!o^z-1_#9%Aa Ş}P(YݬXG;b;hi.Ugam2dD^ZC?JS%2o̟?0M$,3~(SIZvBbPr{'xڅ?_P]؞ 0gzai+*PD=(ef_:{ekU v Y):h/'}ja=jV`.s[`*=Д$yt#*+Ϥ"Y]`? *|.-h i+wr.'7G, 2m_K/!2_ Xn`GbYROG:E8)Y_u6ͺth}'V]O~(P-(@C(XyƸJ] |:q;Y aRjFtJ=6w :?43fz竊آQRҒl>uEms.M.G|Ԍ+*G8xkY%A+\_&s`$RxRx֬>C_1af[d~߰|іדnh8h_z MSZl ([ڈSqu88^ifA>@C Q&\/<#7lgd.LltgD\t?cܤހGJǢHTvGycbQTxtuG2Zpr4^٥$ Jlo K 2BL^WRq7!k<DoB 9 h¯ǘU|7ݕerCN,|̗A$)[CA fq}  ~5w}R#Dl4'a|Ú>IFd %F&A>Qnʯ1ԓѡJgَR" ~>u(/E7ӄh7D;>sj0̬^im1mkV$);ZC9؉Dd_f&#j8ysӠ-1..+4P!`-ֹ4lGõ#E}atAN1ǿ.4oVK]P:CU']&u+zVϔ_]or01N}6)h.넶cV=Hx:8! '^ƅ6iVfkх}N,Ց綼3#2jAF.71#0W52'vԅ fF;3wpfxTI oA 0Ӹ0jdi>$uP .bu Á`?01{'46J~5BoY{az޲BG IqNV\Wfd5nR@(.Z"K[+C?ZhR( =H-nb6Rg4ԤCFLqvtA[x¦Ɖg*38vxNߏ\/DYͪI5_mR!PxG|cdfaK>ݳ [aS=(n8m2Ɗjc'c}_oT^nBP3f80:+V>^_|4Dd%Lƹu׊X* MR -ߕMexCW.//@BY_=kV]r|m\ aF{0FObǂuDKa6AbGzzrRplA,nÅ_6jM ?mW@#: Lcg9fϙ+CK}twY̗ ^҈rUBU zlT|~+ iDU0E`I rOG‚rP2#.,;X¦;=w"jh:e'Ԑ`!/ ĕerQOr~sðWg+= 0ixYFljkY/, sZdߖzto'Jx9*۩Y"6?ŨQ_U>q FZ6o9:ȐM]œCFa q.t/ĶކSN0Jo{a4 O&{3'nN2XЋfߢsw|S@(btoF{M|0{i̋o9:*L "Ŧ#}2z '}ԓ\N%Tpo{%T,kahB˾H;Ԗנּ3t3iFyi M+|s 7Bt%g֧Q;PVL;p}c_~,C*隍5s AQWfϯN:yB\#Y~(TssN'@<\'4̢yDƙd}a|T_? Sؓ7&p"_I2jfXS[O D|xc:6lcJͲitN )'[@QnAP@iIx=窶PPb Ƅ^> mlR6ܦWBnVΣ!L T(Md+I!.+qp$vtvl PX};jn'QWH~p+>̭(ݿ@ MW= r0W3^E:Dwq]zi3!"znTHݷ ,zld 0ZˣWr(U}jcR}mΩ_ĩ3L ٕY=zN;B-xxg%Zhc-.½{U5xp5wzDhwkzz[NQ5ͯ@CĨy> cp:vbHlR/Gdr$ 0† o_}l% }hKq2ӽUyEz&NQ/5G&l'G'7`QyH$t6 bC u+ *\ ®$*mI[X'_19Ɇ pP c \6BEaOdEЮӾzR4x~ Ӧ%2έ2IPѐ1f8fhj)ys@>שp&Yjs|DB*E1 "aXuzw{:h 9iPYy=#}QP% ̑I Q=\D>P_^'^KH- !6N'5_Kؑv-{v StOcrD_`p0p>~|>kh4~9P?'&ArǽLJxfV{M#d Li D^'P+M Z7^4T݇^IKMz#}uPLDv#S"|rRoR%zkӫ&f0UIEq]|%'WV .w q]] g2+Ig' 2-h`l.ρHz}IkH+]`M|;>@rP"͕6=S F+3^> .ZGH3dLWӗ+!Q.ث;I"Arc>Pܩ|K[<_ظ&O/Ж}"Vk\ͩl(nE$d3 ϷG"t#ĴªtèLv־A`Snw*ՄlS,:{f y ␀q\ELo1Q:e:\1=pqis^d,@!)H6|ON(Upm ])|xyϞYP ~S1IV KRӡNw+ٺl/N+⛢ &]AE)y-NQ^`" HToJܛ(lZ\hz9sYda >ȅb'f#ngo#ePad'޹6)u` ]Rɨ s]V$|qdJ5ŋhLeÞEHF ґ) WY rᄁ诶7ECp .ZD6Xy/!xݧYޟU--JH{lfF:iǻKgn;ٔ]S.IxMMq'r2wcOQVu Ak6_cS!u;Q۝IOnw3.oDVGڂ,oeh^3&낷"udۄS_}{;m p< Qٸ9`}ETUkϢstXMс^htB' /{ap,JnP2 ƀ}߇ڪGGpub15DmФ`')%[${iiu;NyWF5cc :+[+W-_tc zQqRL1PNJ_hƪLĚLg-.|Cr 8$z ڥI vF= {6=fdJd Fgnu5Q6Ϸ ߥlV+x!P,OQ ʬjcRtYF-.nw9 ,!D{ۛaZe14\/5Ryp ܹ]v} G X&Ij̀3NJȖ6ƩLfEEmH!l ?:Guv2Ɉ^ūI$'~/[%Q{Vv+.dyY`!Ɔ2έZI+2;?'F-5oϙݼƩJ;" oiX[贉tBb3-h`'q^ l[ sYs-E>׊>;ev׏)Z&o3`~CB2=2jx*0ƶ׾߳.ܳ,TF903w7fSZi=>1ne|Aj;4)}TT*4ЭAOעG ș=bXоC9"`'y$)Tp7ڟ CԿd,",\a zN 5WhårݵsU| fF+o}p3k:,GSbTuv sQvnV2C @3J.kcݯzjF7Gn?؂ld$H<w-C"sP7(@! g !UTZu$ YZ