nss-3.28.4-4.el6_9$>Y:=X9?9N>??d   /hl k @  X  p     ,   8  h     ,[>>> (8( 9 :Q >@G$ HT I X[Y[\ ] ^=bd"e'f*l,tD ut v¤wP xÀ yðCnss3.28.44.el6_9Network Security ServicesNetwork Security Services (NSS) is a set of libraries designed to support cross-platform development of security-enabled client and server applications. Applications built with NSS can support SSL v2 and v3, TLS, PKCS #5, PKCS #7, PKCS #11, PKCS #12, S/MIME, X.509 v3 certificates, and other security standards.YCc1bl.rdu2.centos.org&CentOSMPLv2.0CentOS BuildSystem System Environment/Librarieshttp://www.mozilla.org/projects/security/pki/nss/linuxi686# If we upgrade, and the shared filename is a regular file, then we must # remove it, before we can install the alternatives symbolic link. if [ $1 -gt 1 ] ; then # when upgrading or downgrading if ! test -L /usr/lib/libnssckbi.so; then rm -f /usr/lib/libnssckbi.so fi fi # Install the symbolic link # FYI: Certain other packages use alternatives --set to enforce that the first # installed package is preferred. We don't do that. Highest priority wins. /usr/sbin/update-alternatives --install /usr/lib/libnssckbi.so \ libnssckbi.so /usr/lib/nss/libnssckbi.so 10 /sbin/ldconfigif [ $1 -eq 0 ] ; then # package removal /usr/sbin/update-alternatives --remove libnssckbi.so /usr/lib/nss/libnssckbi.so else # upgrade or downgrade # If the new installed package uses a regular file (not a symblic link), # then cleanup the alternatives link. if ! test -L /usr/lib/libnssckbi.so; then /usr/sbin/update-alternatives --remove libnssckbi.so /usr/lib/nss/libnssckbi.so fi fi /sbin/ldconfig@@wA큤A큤큤Y4!YQY4 KLKLKLfY4)Y4 Y4(Y4)Y4)Y4(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@rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootnss-3.28.4-4.el6_9.src.rpmconfig(nss)libnss3.solibnss3.so(NSS_3.10)libnss3.so(NSS_3.10.2)libnss3.so(NSS_3.11)libnss3.so(NSS_3.11.1)libnss3.so(NSS_3.11.2)libnss3.so(NSS_3.11.7)libnss3.so(NSS_3.11.9)libnss3.so(NSS_3.12)libnss3.so(NSS_3.12.1)libnss3.so(NSS_3.12.10)libnss3.so(NSS_3.12.3)libnss3.so(NSS_3.12.4)libnss3.so(NSS_3.12.5)libnss3.so(NSS_3.12.6)libnss3.so(NSS_3.12.7)libnss3.so(NSS_3.12.9)libnss3.so(NSS_3.13)libnss3.so(NSS_3.13.2)libnss3.so(NSS_3.14)libnss3.so(NSS_3.14.1)libnss3.so(NSS_3.14.3)libnss3.so(NSS_3.15)libnss3.so(NSS_3.15.4)libnss3.so(NSS_3.16.1)libnss3.so(NSS_3.16.2)libnss3.so(NSS_3.18)libnss3.so(NSS_3.19)libnss3.so(NSS_3.19.1)libnss3.so(NSS_3.2)libnss3.so(NSS_3.2.1)libnss3.so(NSS_3.21)libnss3.so(NSS_3.22)libnss3.so(NSS_3.3)libnss3.so(NSS_3.3.1)libnss3.so(NSS_3.4)libnss3.so(NSS_3.5)libnss3.so(NSS_3.6)libnss3.so(NSS_3.7)libnss3.so(NSS_3.7.1)libnss3.so(NSS_3.8)libnss3.so(NSS_3.9)libnss3.so(NSS_3.9.2)libnss3.so(NSS_3.9.3)libnssckbi.solibnssckbi.so(NSS_3.1)libnsspem.solibnsspem.so(NSS_3.1)libsmime3.solibsmime3.so(NSS_3.10)libsmime3.so(NSS_3.12.10)libsmime3.so(NSS_3.12.2)libsmime3.so(NSS_3.13)libsmime3.so(NSS_3.15)libsmime3.so(NSS_3.16)libsmime3.so(NSS_3.18)libsmime3.so(NSS_3.2)libsmime3.so(NSS_3.2.1)libsmime3.so(NSS_3.3)libsmime3.so(NSS_3.4)libsmime3.so(NSS_3.4.1)libsmime3.so(NSS_3.6)libsmime3.so(NSS_3.7)libsmime3.so(NSS_3.7.2)libsmime3.so(NSS_3.8)libsmime3.so(NSS_3.9)libsmime3.so(NSS_3.9.3)libssl3.solibssl3.so(NSS_3.11.4)libssl3.so(NSS_3.11.8)libssl3.so(NSS_3.12.10)libssl3.so(NSS_3.12.6)libssl3.so(NSS_3.13)libssl3.so(NSS_3.13.2)libssl3.so(NSS_3.14)libssl3.so(NSS_3.15)libssl3.so(NSS_3.15.4)libssl3.so(NSS_3.2)libssl3.so(NSS_3.2.1)libssl3.so(NSS_3.20)libssl3.so(NSS_3.21)libssl3.so(NSS_3.22)libssl3.so(NSS_3.23)libssl3.so(NSS_3.24)libssl3.so(NSS_3.27)libssl3.so(NSS_3.28)libssl3.so(NSS_3.4)libssl3.so(NSS_3.7.4)nssnss(x86-32)@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@    @ /bin/sh/bin/sh/usr/sbin/update-alternatives/usr/sbin/update-alternativesconfig(nss)libc.so.6libc.so.6(GLIBC_2.0)libc.so.6(GLIBC_2.1)libc.so.6(GLIBC_2.1.3)libc.so.6(GLIBC_2.3)libc.so.6(GLIBC_2.3.4)libc.so.6(GLIBC_2.4)libdl.so.2libfreebl3.solibnspr4.solibnss3.solibnss3.so(NSS_3.10)libnss3.so(NSS_3.11)libnss3.so(NSS_3.11.1)libnss3.so(NSS_3.11.2)libnss3.so(NSS_3.12)libnss3.so(NSS_3.12.6)libnss3.so(NSS_3.14)libnss3.so(NSS_3.14.3)libnss3.so(NSS_3.15)libnss3.so(NSS_3.19.1)libnss3.so(NSS_3.2)libnss3.so(NSS_3.21)libnss3.so(NSS_3.22)libnss3.so(NSS_3.3)libnss3.so(NSS_3.3.1)libnss3.so(NSS_3.4)libnss3.so(NSS_3.6)libnss3.so(NSS_3.7)libnss3.so(NSS_3.8)libnss3.so(NSS_3.9)libnssdbm3.solibnssutil3.solibnssutil3.so(NSSUTIL_3.12)libnssutil3.so(NSSUTIL_3.12.3)libnssutil3.so(NSSUTIL_3.12.5)libnssutil3.so(NSSUTIL_3.13)libnssutil3.so(NSSUTIL_3.14)libnssutil3.so(NSSUTIL_3.15)libnssutil3.so(NSSUTIL_3.17.1)libnssutil3.so(NSSUTIL_3.21)libnssutil3.so(NSSUTIL_3.24)libplc4.solibplds4.solibpthread.so.0libpthread.so.0(GLIBC_2.0)libsoftokn3.solibz.so.1nsprnss-softokn(x86-32)nss-system-initnss-utilrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rtld(GNU_HASH)rpmlib(PayloadIsXz)3.28.4-4.el6_94.13.03.14.3-223.28.33.0.4-14.6.0-14.0-15.2-1curl7.19.7-26.el64.8.0YaY@Y i@X@X @X,Xf@Xs{@XOXF@XAb@X,J@X%X#X!@X@X2@X@W%W@V3V@VJVV͛@V@Vk@VVy;@VMVLh@V'~@U@U|@UzUrU@U2G@U+U) U'@U"u@U@TuTd@T"@SS@S@S׌SSQ@S@S-S@S@S@S!@SSU@SFS2@S2@Rb@R߲RƦ@RR$RR;R].@R].@RR@RQPRNREs@R@-@R:@R:@R9R2@R2@R+@R)R)R R@RR@Q@Q@Qzl@QR@QQQNP@P[PqPM@PM@Pd@P@P@PPx@Px@PvO@O O@Ọ@O Oc+@O`@O_6O_6OTOLOLOLOB5O&@O#@O@NU@NNGNN@N@NNw.N`@N`@N`@N^"@N\NGNENNN*N*M@M@MUMMlMfH@M] M:M4/@LL@LwLvW@LvW@LvW@LvW@L @K[KKKO@KK]KUKRKRKMKMKLd@KD{@KD{@KD{@K4@K,@K*@K@KJ@J1@JSJSJ@Jv@J@JG@JG@JJJ@JRJ J@JiJiJ@J@JJJu@Ju@Ju@Ju@Ju@J#J#J@J@JJJJ/@J:J:JzJjJ?r@J?r@J,@J)J)J@J{IzIzIIIԨIԨIIII2HHH+H@H@HoH@H`HCHG@GQG]@G@G@G~G-@G-@G-@G}G@G_@GSG1G FFFޚ@F@F@FvsFkF` @EE(EEl$E D@E D@D@D@D@D@DvCC@CC@C@CZCZCZCZBϼ@Daiki Ueno - 3.28.4-4Daiki Ueno - 3.28.4-3Kai Engert - 3.28.4-2Daiki Ueno - 3.28.4-1Daiki Ueno - 3.28.3-3Daiki Ueno - 3.28.3-2Daiki Ueno - 3.28.3-1Daiki Ueno - 3.27.1-13Daiki Ueno - 3.27.1-12Daiki Ueno - 3.27.1-11Daiki Ueno - 3.27.1-10Daiki Ueno - 3.27.1-9Daiki Ueno - 3.27.1-8Daiki Ueno - 3.27.1-7Kai Engert - 3.27.1-6Kai Engert - 3.27.1-5Kai Engert - 3.27.1-4Kai Engert - 3.27.1-3Daiki Ueno - 3.27.1-2Daiki Ueno - 3.27.1-1Kai Engert - 3.21.0-8Elio Maldonado - 3.21.0-7Elio Maldonado - 3.21.0-6Elio Maldonado - 3.21.0-5Elio Maldonado - 3.21.0-4Elio Maldonado - 3.21.0-3Elio Maldonado - 3.21.0-2Elio Maldonado - 3.21.0-1Elio Maldonado - 3.19.1-9Elio Maldonado - 3.19.1-7Elio Maldonado - 3.19.1-6Elio Maldonado - 3.19.1-5Elio Maldonado - 3.19.1-4Kai Engert - 3.19.1-3Kai Engert - 3.19.1-2Elio Maldonado - 3.19.1-1Kai Engert - 3.18.0-5.3Elio Maldonado - 3.18.0-5Elio Maldonado - 3.18.0-4Elio Maldonado - 3.18.0-3Elio Maldonado - 3.18.0-2Elio Maldonado - 3.18.0-1Elio Maldonado - 3.16.2.3-4Elio Maldonado - 3.16.2.3-3Elio Maldonado - 3.16.2.3-1Elio Maldonado - 3.16.1-14Elio Maldonado - 3.16.1-13Elio Maldonado - 3.16.1-12Elio Maldonado - 3.16.1-11Elio Maldonado - 3.16.1-10Elio Maldonado - 3.16.1-9Elio Maldonado - 3.16.1-8Elio Maldonado - 3.16.1-7Elio Maldonado - 3.16.1-6Elio Maldonado - 3.16.1-5Elio Maldonado - 3.16.1-4Elio Maldonado - 3.16.1-3Elio Maldonado - 3.16.1-2Elio Maldonado - 3.16.1-1Elio Maldonado - 3.15.3-11Elio Maldonado - 3.15.3-10Elio Maldonado - 3.15.3-9Elio Maldonado - 3.15.3-8Elio Maldonado - 3.15.3-7Elio Maldonado - 3.15.3-6Elio Maldonado - 3.15.3-5Elio Maldonado - 3.15.3-4Elio Maldonado - 3.15.3-3Elio Maldonado - 3.15.3-2Elio Maldonado - 3.15.3-1Elio Maldonado - 3.15.1-15Elio Maldonado - 3.15.1-14Elio Maldonado - 3.15.1-13Elio Maldonado - 3.15.1-12Elio Maldonado - 3.15.1-11Elio Maldonado - 3.15.1-10Elio Maldonado - 3.15.1-9Elio Maldonado - 3.15.1-8Kai Engert - 3.15.1-7Elio Maldonado - 3.15.1-6Elio Maldonado - 3.15.1-5Elio Maldonado - 3.15.1-4Elio Maldonado - 3.15.1-3Elio Maldonado - 3.15.1-2Elio Maldonado - 3.15.1-1Elio Maldonado - 3.14.3-37Elio Maldonado - 3.14.3-36Elio Maldonado - 3.14.3-35Elio Maldonado - 3.14.3-34Kai Engert - 3.14.3-33Elio Maldonado - 3.14.3-5Elio Maldonado - 3.14.3-4Elio Maldonado - 3.14.3-3Elio Maldonado - 3.14.3-2Elio Maldonado - 3.14.3-1Elio Maldonado - 3.14.0.0-12Elio Maldonado - 3.14.0.0-11Elio Maldonado - 3.14.0.0-10Elio Maldonado - 3.14.0.0-9Elio Maldonado - 3.14.0.0-8Elio Maldonado - 3.14.0.0-7Elio Maldonado - 3.14.0.0-6Elio Maldonado - 3.14.0.0-5Elio Maldonado - 3.14.0.0-4Kai Engert - 3.14.0.0-3Bob Relyea - 3.14.0.0-2Elio Maldonado - 3.14.0.0-1Elio Maldonado - 3.13.5-3Elio Maldonado - 3.13.5-2Elio Maldonado - 3.13.5-1Elio Maldonado - 3.13.3-7Elio Maldonado - 3.13.3-6Elio Maldonado Batiz - 3.13.3-5Elio Maldonado Batiz - 3.13.3-4Elio Maldonado - 3.13.3-3Elio Maldonado - 3.13.3-2Elio Maldonado - 3.13.3-1Elio Maldonado Batiz - 3.13.1-6Elio Maldonado - 3.13.1-5Elio Maldonado - 3.13.1-4Elio Maldonado - 3.13.1-4Martin Stransky 3.13.1-3Elio Maldonado Batiz - 3.13.1-2Elio Maldonado - 3.13.1-1Elio Maldonado - 3.12.10-17Elio Maldonado - 3.12.10-16Elio Maldonado - 3.12.10-15Elio Maldonado - 3.12.10-14Elio Maldonado - 3.12.10-13Elio Maldonado - 3.12.10-12Elio Maldonado - 3.12.10-11Elio Maldonado - 3.12.10-10Elio Maldonado - 3.12.10-9Elio Maldonado - 3.12.10-8Elio Maldonado - 3.12.10-7Elio Maldonado - 3.12.10-6Elio Maldonado - 3.12.10-5Elio Maldonado - 3.12.10-4Elio Maldonado - 3.12.10-3Elio Maldonado - 3.12.10-2Elio Maldonado - 3.12.10-1Elio Maldonado - 3.12.9-11Elio Maldonado - 3.12.9-10Elio Maldonado Batiz - 3.12.9-9Elio Maldonado - 3.12.9-8Elio Maldonado - 3.12.9-7Elio Maldonado - 3.12.9-6Elio Maldonado - 3.12.9-5Elio Maldonado - 3.12.9-4Elio Maldonado - 3.12.9-3Elio Maldonado - 3.12.9-2Elio Maldonado - 3.12.9-1Elio Maldonado - 3.12.8-2Elio Maldonado - 3.12.8-1Kai Engert - 3.12.7-2Elio Maldonado - 3.12.7-1Elio Maldonado - 3.12.6-6Elio Maldonado - 3.12.6-5Elio Maldonado - 3.12.6-4Elio Maldonado - 3.12.6-3Elio Maldonado - 3.12.6-2Elio Maldonado - 3.12.6-1.2Elio Maldonado - 3.12.6-1.1Elio Maldonado - 3.12.6-1Elio Maldonado - 3.12.5.99-1Elio Maldonado - 3.12.5-8Elio Maldonado - 3.12.5-7.3Elio Maldonado - 3.12.5-7.2Elio Maldonado - 3.12.5-7.1Elio Maldonado - 3.12.5-7Elio Maldonado - 3.12.5-6Elio Maldonado - 3.12.5-2.1Elio Maldonado - 3.12.5-2Elio Maldonado - 3.12.5-1.14Elio Maldonado - 3.12.5-1.12.1Elio Maldonado - 3.12.5-1.11Elio maldonado - 3.12.5-1.10Elio Maldonado - 3.12.5-1.8Elio Maldonado - 3.12.5-2.1Elio Maldonado - 3.12.5-1.2Elio Maldonado - 3.12.4-15Elio Maldonado - 3.12.4-14Elio Maldonado - 3.12.4-12Elio Maldonado - 3.12.4-11Elio Maldonado - 3.12.4-10Elio Maldonado - 3.12.4-8Elio Maldonado - 3.12.4-6Elio Maldonado - 3.12.4-5Elio Maldonado - 3.12.4-4Elio Maldonado - 3.12.4-3Elio Maldonado - 3.12.4-2Elio Maldonado - 3.12.4-1Elio Maldonado - 3.12.3.99.3-30Elio Maldonado - 3.12.3.99.3-29Elio Maldonado - 3.12.3.99.3-28Elio Maldonado - 3.12.3.99.3-27Elio Maldonado - 3.12.3.99.3-26Elio Maldonado - 3.12.3.99.3-25Warren Togami - 3.12.3.99.3-24Elio Maldonado - 3.12.3.99.3-23Elio Maldonado - 3.12.3.99.3-22Elio Maldonado - 3.12.3.99.3-21Elio Maldonado - 3.12.3.99.3-20Elio Maldonado - 3.12.3.99.3-19Elio Maldonado - 3.12.3.99.3-18Elio Maldonado - 3.12.3.99.3-16Dennis Gilmore - 3.12.3.99.3-15Dennis Gilmore - 3.12.3.99.3-14Dennis Gilmore - 3.12.3.99.3-13Dennis Gilmore - 3.12.3.99.3-12Elio Maldonado+emaldona@redhat.com - 3.12.3.99.3-11Elio Maldonado - 3.12.3.99.3-10Dennis Gilmore - 3.12.3.99.3-9Elio Maldonado - 3.12.3.99.3-7.1Fedora Release Engineering - 3.12.3.99.3-7Elio Maldonado - 3.12.3.99.3-6Elio Maldonado - 3.12.3.99.3-5Elio Maldonado - 3.12.3.99.3-4Kai Engert - 3.12.3.99.3-3Kai Engert - 3.12.3.99.3-2Kai Engert - 3.12.3-7Kai Engert - 3.12.3-4Kai Engert - 3.12.3-3Kai Engert - 3.12.3-2Kai Engert - 3.12.2.99.3-7Kai Engert - 3.12.2.99.3-6Kai Engert - 3.12.2.99.3-5Kai Engert - 3.12.2.99.3-4Kai Engert - 3.12.2.99.3-3Kai Engert - 3.12.2.99.3-2Kai Engert - 3.12.2.99.3-1Fedora Release Engineering - 3.12.2.0-4Kai Engert - 3.12.2.0-3Dennis Gilmore - 3.12.1.1-4Kai Engert - 3.12.1.1-3Kai Engert - 3.12.1.1-2Kai Engert - 3.12.1.0-2Kai Engert - 3.12.0.3-7Kai Engert - 3.12.0.3-6Kai Engert - 3.12.0.3-3Kai Engert - 3.12.0.3-2Kai Engert - 3.12.0.1-1Jesse Keating - 3.11.99.5-2Kai Engert - 3.11.99.5-1Kai Engert - 3.11.99.4-1Kai Engert - 3.11.99.3-6Kai Engert - 3.11.99.3-5Kai Engert - 3.11.99.3-4Kai Engert - 3.11.99.3-3Kai Engert - 3.11.99.3-2Kai Engert - 3.11.99.3-1Kai Engert - 3.11.99.2b-3Kai Engert - 3.11.99.2b-2Kai Engert - 3.11.99.2-2Kai Engert - 3.11.99.2-1Kai Engert - 3.11.7-10Rob Crittenden - 3.11.7-9Kai Engert - 3.11.7-8Bob Relyea - 3.11.7-7Kai Engert - 3.11.7-6Kai Engert - 3.11.7-5Kai Engert - 3.11.7-4Kai Engert - 3.11.7-3Kai Engert - 3.11.7-2Kai Engert - 3.11.5-2Kai Engert - 3.11.5-1Bob Relyea - 3.11.4-4Kai Engert - 3.11.4-1Kai Engert - 3.11.3-2Kai Engert - 3.11.3-1Kai Engert - 3.11.2-2Jesse Keating - 3.11.2-1.1Kai Engert - 3.11.2-1Kai Engert - 3.11.1-2Kai Engert - 3.11.1-1Kai Engert - 3.11-4Jesse Keating - 3.11-3.2Jesse Keating - 3.11-3.1Ray Strode 3.11-3Christopher Aillon 3.11-2Christopher Aillon 3.11-1Christopher Aillon 3.11-0.cvs.2Christopher Aillon 3.11-0.cvsKai Engert Rob Crittenden 3.10-1- Backport patch to simplify transcript calculation for CertificateVerify- Fix zero-length record treatment for stream ciphers and SSLv2- Include CKBI 2.14 and updated CA constraints from NSS 3.28.5- Rebase to 3.28.4- Fix crash with tstclnt -W - Adjust gtests to run with our old softoken and downstream patches- Avoid cipher suite ordering change, spotted by Hubert Kario- Rebase to 3.28.3 - Remove upstreamed moz-1282627-rh-1294606.patch, moz-1312141-rh-1387811.patch, moz-1315936.patch, and moz-1318561.patch - Remove no longer necessary nss-duplicate-ciphers.patch - Disable X25519 and exclude tests using it - Catch failed ASN1 decoding of RSA keys, by Kamil Dudka (#1427481)- Update expired PayPalEE.cert- Disable unsupported test cases in ssl_gtests- Adjust the sslstress.txt filename so that it matches with the disableSSL2tests patch ported from RHEL 7 - Exclude SHA384 and CHACHA20_POLY1305 ciphersuites from stress tests - Don't add gtests and ssl_gtests to nss_tests, unless gtests are enabled- Add patch to fix SSL CA name leaks, taken from NSS 3.27.2 release - Add patch to fix bash syntax error in tests/ssl.sh - Add patch to remove duplicate ciphersuites entries in sslinfo.c - Add patch to abort selfserv/strsclnt/tstclnt on non-parsable version range - Build with support for SSLKEYLOGFILE- Update fix_multiple_open patch to fix regression in openldap client - Remove pk11_genobj_leak patch, which caused crash with Firefox - Add comment in the policy file to preserve the last empty line - Disable SHA384 ciphersuites when CKM_TLS12_KEY_AND_MAC_DERIVE is not provided by softoken; this superseds check_hash_impl patch- Fix problem in check_hash_impl patch- Add patch to check if hash algorithms are backed by a token - Add patch to disable TLS_ECDHE_{RSA,ECDSA}_WITH_AES_128_CBC_SHA256, which have never enabled in the past- Add upstream patch to fix a crash. Mozilla #1315936- Disable the use of RSA-PSS with SSL/TLS. #1390161- Use updated upstream patch for RH bug 1387811- Added upstream patches to fix RH bugs 1057388, 1294606, 1387811- Enable gtests when requested- Rebase to NSS 3.27.1 - Remove nss-646045.patch, which is not necessary - Remove p-disable-md5-590364-reversed.patch, which is no-op here, because the patched code is removed later in %setup - Remove disable_hw_gcm.patch, which is no-op here, because the patched code is removed later in %setup. Also remove NSS_DISABLE_HW_GCM setting, which was only required for RHEL 5 - Add Bug-1001841-disable-sslv2-libssl.patch and Bug-1001841-disable-sslv2-tests.patch, which completedly disable EXPORT ciphersuites. Ported from RHEL 7 - Remove disable-export-suites-tests.patch, which is covered by Bug-1001841-disable-sslv2-tests.patch - Remove nss-ca-2.6-enable-legacy.patch, as we decided to not allow 1024 legacy CA certificates - Remove ssl-server-min-key-sizes.patch, as we decided to support DH key size greater than 1023 bits - Remove nss-init-ss-sec-certs-null.patch, which appears to be no-op, as it clears memory area allocated with PORT_ZAlloc() - Remove nss-disable-sslv2-libssl.patch, nss-disable-sslv2-tests.patch, sslauth-no-v2.patch, and nss-sslstress-txt-ssl3-lower-value-in-range.patch as SSLv2 is already disabled in upstream - Remove fix-nss-test-filtering.patch, which is fixed in upstream - Add nss-check-policy-file.patch from Fedora - Install policy config in /etc/pki/nss-legacy/nss-rhel6.config- Ensure all ssl.sh tests are executed- Update sslauth patch to run more tests- Fix syntax errors in patch that disables sslv2 tests - Resolves: Bug 1297888 - Rebase RHEL 6.8 to NSS 3.21 for Firefox 45- Resolves: Bug 1304812 - Disable support for SSLv2 completely.- Add patches for ABI compatibility- Disable extended master-secret due to older version of softoken- Enable two additional ciphers and keep another one disabled - Prevent enabling extended masker key derive- Rebase to NSS-3.21- Prevent TLS 1.2 Transcript Collision attacks against MD5 in key exchange protocol - Resolves: Bug 1289890- Package listsuites as part of the unsupported tools set - Resolves: Bug 1283655- Resolves: Bug 1272504 - Enable TLS 1.2 as the default in nss- Rebuild against updated NSPR- Sync up with the rhel-6.6 branch - Resolves: Bug 1224450- Additional NULL initialization.- Updated the patch to keep old cipher suite order - Resolves: Bug 1224450- Rebase to nss-3.19.1 - Resolves: Bug 1224450- On RHEL 6.x keep the TLS version defaults unchanged. - Require softokn build 22 to ensure runtime compatibility. - Relax the requirement from pkcs11-devel to nss-softokn-freebl-devel to allow same or newer. - Update to CKBI 2.4 from NSS 3.18.1 (the only change in NSS 3.18.1)- Update and reeneable nss-646045.patch on account of the rebase - Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL7.1]- Fix shell syntax error in nss/tests/all.sh - Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-6.6]- Restore a patch that had been mistakenly disabled - Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-6.6]- Replace expired PayPal test certificate that breaks the build - Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-6.6]- Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-6.6] - Resolves: Bug 1131311 - rhel65 ns-slapd crash, segfault error 4 in libnss3.so in PK11_DoesMechanism at pk11slot.c:1824 - Temporarily disable some tests until expired PayPalEE.cert is renewed- Keep the same cipher suite order as we had in NSS_3_15_3_RTM - Resolves: Bug 1123092 - openldap-2.4.23-34.el6_5.1.i686 fails after updating nss to nss-3.16.1-4.el6_5.i686- Resolves: Bug 1158160 - Upgrade to NSS 3.16.2.3 for Firefox 31.3 - Remove unused indentation pseudo patch - require nss util 3.16.2.3 - Restore patch for certutil man page - supply missing options descriptions to the man page- Resolves: Bug 1158160 - Upgrade to NSS 3.16.2.3 for Firefox 31.3- Resolves: Bug 1145432 - CVE-2014-1568- Fix pem deadlock caused by previous version of a fix for a race condition - Fixes: Bug 1090681- Add references to bugs filed upstream - Related: Bug 1090681, Bug 1104300- Resolves: Bug 1090681 - RHDS 9.1 389-ds-base-1.2.11.15-31 crash in PK11_DoesMechanism- Replace expired PayPal test certificate that breaks the build - Related: Bug 1099619- Fix defects found by coverity - Resolves: Bug 1104300- Backport nss-3.12.6 upstream fix required by Firefox 31 - Resolves: Bug 1099619- Update nspr-version to 4.10.6- Update pem sources to the same ones used on rhel-7 - Remove no longer needed patches on account of this update - Resolves: Bug 1002205- Move removal of directories to the end of the %prep section - Resolves: Bug 689919 - build without any softoken or util sources in the tree- Remove unused patches rendered obsolete- Fix pem module trashing of private keys on failed login - Resolves: Bug 1002205 - PEM module trashes private keys if login fails- Restore use of indentation patch until another bug is resolved - Resolves: Bug 606022 - nss security tools lack man pages- Update to nss-3.16.1 - Resolves: Bug 1099619 - Rebase nss in RHEL 6.6 to NSS 3.16.1- Resolves: Bug 689919 - build without any softoken or util sources in the tree - Add define-uint32.patch to deal with using older version of nss-softokn - Fix suboptimal test failure detection shell code in the %check section- Prevent users from disabling the internal crypto module - Resolves: Bug 1059176 - nss segfaults with opencryptoki module- Improve support for ECDSA algorithm via pluggable ECC - Document the purpose of the iquote.patch - Resolves: Bug 1057224 - Pluggable ECC in NSS not enabled on RHEL 6 and above- Install man pages for the nss security tools - Resolves: Bug 606022 - nss security tools lack man pages- Fix the numbering and naming of the patches - Resolves: Bug 895339 - [PEM] active FTPS with encrypted client key ends up with SSL_ERROR_TOKEN_INSERTION_REMOVAL- make derEncodingsMatch work with encrypted keys - rename a patch, dropped the experimental moniker from it - Resolves: Bug 895339 - [PEM] active FTPS with encrypted client key ends up with SSL_ERROR_TOKEN_INSERTION_REMOVAL- Resolves: Bug 895339 - [PEM] active FTPS with encrypted client key ends up with SSL_ERROR_TOKEN_INSERTION_REMOVAL- Revoke trust in one mis-issued anssi certificate - Resolves: Bug 1042686 - nss: Mis-issued ANSSI/DCSSI certificate (MFSA 2013-117) [rhel-6.6]- Disable hw gcm on rhel-5 based build environments where OS lacks support - Rollback changes to build nss without softokn until Bug 689919 is approved - Cipher suite was run as part of the nss-softokn build- Build nss without softoken, freebl, or util sources in the build source tree - Resolves: Bug 1032472 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741- Update to NSS_3_15_3_RTM - Resolves: Bug 1032472 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741 - Resolves: Bug 1031238 - deadlock in trust domain lock and object lock- Using export NSS_DISABLE_HW_GCM=1 to deal with some problemmatic build systems - Resolves: rhbz#1016044 - nss.s390: primary link for libnssckbi.so must be /usr/lib64/libnssckbi.so- Add s390x and ia64 to the %define multilib_arches list used for defining alt_ckbi - Resolves: rhbz#1016044 - nss.s390: primary link for libnssckbi.so must be /usr/lib64/libnssckbi.so- Add zero default value to DISABLETEST check and fix the TEST_FAILURES check and reporting - Resolves: rhbz#990631 - file permissions of pkcs11.txt/secmod.db must be kept when modified by NSS - Related: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Add a zero default value to the DISABLETEST and TEST_FAILURES checks - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Fix the test for zero failures in the %check section - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Restore a mistakenly removed patch - Resolves: rhbz#961659 - SQL backend does not reload certificates- Rebuild for the pem module to link with freel from nss-softokn-3.14.3-6.el6 - Related: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0] - Related: rhbz#1010224 - NSS 3.15 breaks SSL in OpenLDAP clients- Don't require nss-softokn-fips - Resolves: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0]- Additional syntax fixes in nss-versus-softoken-test.patch - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Fix all.sh test for which application was last build by updating nss-versus-softoken-test.path - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Disable the cipher suite already run as part of the nss-softokn build - Resolves: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0]- Require nss-softokn-fips - Resolves: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0]- Require nspr-4.10.0 - Related: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Fix relative path in %check section to prevent undetected test failures - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Rebase to NSS_3.15.1_RTM - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x) - Update patches on account of the shallow tree with the rebase to 3.15.1 - Update the pem module sources nss-pem-20130405.tar.bz2 with latest patches applied - Remove patches rendered obsolete by the nss rebase and the updated nss-pem sources - Enable the iquote.patch to access newly introduced types- Do not hold issuer certificate handles in the crl cache - Resolves: rhbz#961659 - SQL backend does not reload certificates- Resolves: rhbz#977341 - nss-tools certutil -H does not list all options- Resolves: rhbz#702083 - dont require unique file basenames- Fix race condition in cert code related to smart cards - Resolves: rhbz#903017 - Firefox hang when CAC/PIV smart card certificates are viewed in the certificate manager- Configure libnssckbi.so to use the alternatives system in order to prepare for a drop in replacement. Please ensure that older packages that don't use the alternatives system for libnssckbi.so have a smaller n-v-r.- Syncup with uptream changes for aes gcm and ecc suiteb - Enable ecc support for suite b - Apply several upstream AES GCM fixes - Use the pristine nss upstream sources with ecc included - Export NSS_ENABLE_ECC=1 in both the build and the check sections - Make failed requests for unsupoprted ssl pkcs 11 bypass non fatal - Resolves: rhbz#882408 - NSS_NO_PKCS11_BYPASS must preserve ABI - Related: rhbz#918950 - rebase nss to 3.14.3- Revert to accepting MD5 on digital signatures by default - Resolves: rhbz#918136 - nss 3.14 - MD5 hash algorithm disabled- Ensure pem uses system freebl as with this update freebl brings in new API's - Resolves: rhbz#918950 - [RFE][RHEL6] Rebase to nss-3.14.3 to fix the lucky-13 issue- Install sechash.h and secmodt.h which are now provided by nss-devel - Resolves: rhbz#918950 - [RFE][RHEL6] Rebase to nss-3.14.3 to fix the lucky-13 issue - Remove unsafe -r option from commands that remove headers already shipped by nss-util and nss-softoken- Update to NSS_3.14.3_RTM - Resolves: rhbz#918950 - [RFE][RHEL6] Rebase to nss-3.14.3 to fix the lucky-13 issue - Update expired test certificates (fixed in upstream bug 852781) - Sync up pem module's rsawrapr.c with softoken's upstream changes for nss-3.14.3 - Reactivate the aia tests- Recreate the distrust patch by backporting the upstream one - Resolves: rhpbz#890914 - Dis-trust TURKTRUST mis-issued *.google.com certificate- Resolves: rhpbz#890914 - Dis-trust TURKTRUST mis-issued *.google.com certificate- Remove a patch that caused a regression - Resolves: rhbz#883620- Fix locking issue causing curl hangs and authenticate to the correct session - Resolves: rhbz#872838- PEM peminit returns CKR_CANT_LOCK when needed to inform caller module isn't thread safe - Resolves: rhbz#555019 - [PEM] invalid writes in multi-threaded libcurl based application- Add dummy sources file to test for and prevent breaking rhpkg commands - Enable testing for 'rhpk upload' and 'rhpk new-sources' breakage such as hangs - Related: rhbz#837089- Update the license to MPLv2.0 - turn off the aia tests - Resolves: rhbz#837089- Resolves: rhbz#702083 - NSS pem module should not require unique base file names- turn on the aia tests - update nss-589636.patch to apply to httpdserv- turn off aia tests for now- turn off ocsp tests for now- Rebase to nss-3.14.0.0-1 - Resolves: rhbz#837089 - Update ssl-cbc-random-iv patch for new sources - Remove patches rendered obsoleted by rebase to 3.14 - Add a patch to enforce no pkcs11 bypass- Resolves: rhbz#830302 - require nspr 4.9.1- Resolves: rhbz#830302 - revert unwanted changes to nss.pc.in- Resolves: rhbz#830302 - Update RHEL 6.x to NSS 3.13.5 and NSPR 4.9.1 for Mozilla 10.0.6- Resolves: rhbz#827351 invalid read and free on invalid cert load failure- Resolves: #rhbz#805232 PEM module may attempt to free uninitialized pointer- Resolves: rhbz#717913 - [PEM] various flaws detected by Coverity - Require nss-util 3.13.3- Resolves: rhbz#772628 nss_Init leaks memory- Resolves: rhbz#746632 - pem_CreateObject mem leak on non existing file name - Use completed patch per code review- Resolves: rhbz#746632 - pem_CreateObject mem leak on non existing file name - Resolves: rhbz#768669 - PEM unregistered callback causes SIGSEGV- Update to 3.13.3 - Resolves: rhbz#798539 - Distrust MITM subCAs issued by TrustWave - Remove builtins-nssckbi_1_88_rtm.patch which the rebase obsoletes- Resolves: rhbz#746632 - Adjust the patch for new sources- Resolves: rhbz#746632 - pem_CreateObject() leaks memory given a non-existing file name- Resolves: 784674 - Protect NSS_Shutdown from clients that fail to initialize nss- Add two needed patches - Resolves: rhbz#783315 - Need nss workaround for freebl bug that causes openswan to drop connections - Resolves: rhbz#747387 - Unable to contact LDAP Server during winsync- Rebuild- Resolves: Bug 784490 - CVE-2011-3389 - Activate a patch that was left out in previous build- Resolves: Bug 744070 - Update to 3.13.1 - Resolves: Bug 784674 - nss should protect against being called before nss_Init - Resolves: Bug 784490 - CVE-2011-3389 HTTPS: block-wise chosen-plaintext attack against SSL/TLS (BEAST)- Resolves: Bug 761086 - Fix nss-735047.patch to not revert the nss-bz689031.patch- Update builtins certs to those from NSSCKBI_1_88_RTM- Bug 747387 - Unable to contact LDAP Server during winsync- Add to the spec file the patch for Bug 671266- More coverity related fixes in the pem module- Coverity related fixes- Add relro support for executables and shared libraries- Add partial RELRO support- Fix the name of the last patch file- Retagging to pick up two missing commits- Update builtins certs to those from NSSCKBI_1_87_RTM- Update builtins certs to those from NSSCKBI_1_86_RTM- Update builtins certs to those from NSSCKBI_1_85_RTM- Fix CMS to verify signed data when SignerInfo indicates signer by subjectKeyID- Fix pem logging to deal with files originally created by root- Retagging for updated patch missing from previous tag- Update to 3.12.10- Resolves: rhbz# 703658 - Fix crmf hard-coded maximum size for wrapped private keys- Resolves: rhbz#688423 - Enable NSS support for pluggable ECC- Add "Conflicts: curl < 7.19.7-26.el6" to fix Bug 694663- Construct private key nickname based on the full pathname of the pem file- Update expired PayPayEE.cert test certificate - Conditionalize some database tests on user not being root- Update to NSS_3.12.9_WITH_CKBI_1_82_RTM- Fix memory leaks caused by SECKEY_ImportDERPublicKey- Short-term fix for ssl test suites hangs on ipv6 type connections- Add requires for pkcs11-devel on nss-softokn-freebl devel - Run the test suites in check section per packaging guidelines- Prefer user database ca cert trust settings system's ones - Swap internal key slot on fips mode switches- Update to 3.12.9 - Fix libnsspem to test for and reject directories- Add suppport for pkcs8 formatted keys in the pem module - Add verify(not md5 size mtime) to configuration files attributes - Prevent nss-sysinit disabling on package upgrade - Create pkcs11.txt with correct permissions regardless of current umask - Add option to setup-nsssysinit.sh to report nss-sysinit status - Update test certificate which had expired- Update to 3.12.8- Increase release version number, no code changes- Update to 3.12.7- Rebuilt- Appying the changes in previous log - Changing some BuildRequires to >= as well - Temporarily disabling all tests for faster builds- Change some = to >= in Requires to enable a rebase next- Fix SIGSEGV within CreateObject (#596783) - Update expired test certificate- Fix nss.pc to not require nss-softokn- rebuilt using nss-util 3.2.6- rebuilt using nspr-devel 4.8.4- Update to 3.12.6- Update to NSS_3_12_6_RC1- Fix curl related regression and general patch code clean up- Resolves: #551784 rebuilt after nss-softokn and nss-util builds - this will generate the coorect nss.spec- rebuilt for RHEL-6 candidate, Resolves: #551784- Updated to 3.12.5 from CVS import from Fedora 12 - Moved blank legacy databases to the lookaside cache - Reenabled the full test suite - Retagging for a RHEL-6-test-build- Retagged- retagging- Fix SIGSEGV on call of NSS_Initialize (#553638)- bump release number and rebuild- Fix nsssysinit to allow root to modify the nss system database (#547860)- Temporarily disabling the ssl tests until Bug 539183 is resolved- Fix an error introduced when adapting the patch for 546211- Remove some left over trace statements from nsssysinit patching- Fix nsssysinit to set the default flags on the crypto module (#545779) - Fix nsssysinit to enable apps to use the system cert store, patch contributed by David Woodhouse (#546221) - Fix segmentation fault when listing keys or certs in the database, patch contributed by Kamil Dudka (#540387) - Sysinit requires coreutils for post install scriplet (#547067) - Remove redundant header from the pem module- Remove unneeded patch- Update to 3.12.5 - CVE-2009-3555 TLS: MITM attacks via session renegotiation- Require nss-softoken of same arch as nss (#527867)- Fix bug where user was prompted for a password when listing keys on an empty system database (#527048) - Fix setup-nsssysinit to handle more general flags formats (#527051)- Fix syntax error in setup-nsssysinit.sh- Fix sysinit to be under mozilla/security/nss/lib- Add nss-sysinit activation/deactivation script- Install blank databases and configuration file for system shared database - nsssysinit queries system for fips mode before relying on environment variable- Restoring nssutil and -rpath-link to nss-config for now - 522477- Add the nss-sysinit subpackage- Installing shared libraries to %{_libdir}- Retagging to pick up new sources- Update pem enabling source tar with latest fixes (509705, 51209)- PEM module implements memory management for internal objects - 509705 - PEM module doesn't crash when processing malformed key files - 512019- Remove symbolic links to shared libraries from devel - 521155 - No rpath-link in nss-softokn-config- Update to 3.12.4- Fix FORTIFY_SOURCE buffer overflows in test suite on ppc and ppc64 - bug 519766 - Fixed requires and buildrequires as per recommendations in spec file review- Restoring patches 2 and 7 as we still compile all sources - Applying the nss-nolocalsql.patch solves nss-tools sqlite dependency problems- restore require sqlite- Don't require sqlite for nss- Ensure versions in the requires match those used when creating nss.pc- Remove nss-prelink.conf as signed all shared libraries moved to nss-softokn - Add a temprary hack to nss.pc.in to unblock builds- caolan's nss.pc patch- Bump the release number for a chained build of nss-util, nss-softokn and nss- Fix nss-config not to include nssutil - Add BuildRequires on nss-softokn and nss-util since build also runs the test suite- disabling all tests while we investigate a buffer overflow bug- disabling some tests while we investigate a buffer overflow bug - 519766- remove patches that are now in nss-softokn and - remove spurious exec-permissions for nss.pc per rpmlint - single requires line in nss.pc.in- Fix BuildRequires: nss-softokn-devel release number- fix nss.pc.in to have one single requires line- cleanups for softokn- remove the softokn subpackages- don install the nss-util pkgconfig bits- remove from -devel the 3 headers that ship in nss-util-devel- kill off the nss-util nss-util-devel subpackages- split off nss-softokn and nss-util as subpackages with their own rpms - first phase of splitting nss-softokn and nss-util as their own packages- must install libnssutil3.since nss-util is untagged at the moment - preserve time stamps when installing various files- dont install libnssutil3.so since its now in nss-util- Fix spec file problems uncovered by Fedora_12_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- removed two patch files which are no longer needed and fixed previous change log number- updated pem module incorporates various patches - fix off-by-one error when computing size to reduce memory leak. (483855) - fix data type to work on x86_64 systems. (429175) - fix various memory leaks and free internal objects on module unload. (501080) - fix to not clone internal objects in collect_objects(). (501118) - fix to not bypass initialization if module arguments are omitted. (501058) - fix numerous gcc warnings. (500815) - fix to support arbitrarily long password while loading a private key. (500180) - fix memory leak in make_key and memory leaks and return values in pem_mdSession_Login (501191)- add patch for bug 502133 upstream bug 496997- rebuild with higher release number for upgrade sanity- updated to NSS_3_12_4_FIPS1_WITH_CKBI_1_75- re-enable test suite - add patch for upstream bug 488646 and add newer paypal certs in order to make the test suite pass- add conflicts info in order to fix bug 499436- ship .chk files instead of running shlibsign at install time - include .chk file in softokn-freebl subpackage - add patch for upstream nss bug 488350- Update to NSS 3.12.3- temporarily disable the test suite because of bug 494266- fix softokn-freebl dependency for multilib (bug 494122)- introduce separate nss-softokn-freebl package- disable execstack when building freebl- add upstream patch to fix bug 483855- build nspr-less freebl library- Update to NSS_3_12_3_BETA4- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild- update to NSS_3_12_2_RC1 - use system zlib- add sparc64 to the list of 64 bit arches- bug 456847, move pkgconfig requirement to devel package- Update to NSS_3_12_1_RC2- NSS 3.12.1 RC1- fix bug bug 429175 in libpem module- bug 456847, add Requires: pkgconfig- nss package should own /etc/prelink.conf.d folder, rhbz#452062 - use upstream patch to fix test suite abort- Update to NSS_3_12_RC4- Update to NSS_3_12_RC2- Zapping old Obsoletes/Provides. No longer needed, causes multilib headache.- Update to NSS_3_12_BETA3- NSS 3.12 Beta 2 - Use /usr/lib{64} as devel libdir, create symbolic links.- Apply upstream patch for bug 417664, enable test suite on pcc.- Support concurrent runs of the test suite on a single build host.- disable test suite on ppc- disable test suite on ppc64- Build against gcc 4.3.0, use workaround for bug 432146 - Run the test suite after the build and abort on failures.* NSS 3.12 Beta 1- move .so files to /lib- NSS 3.12 alpha 2b- upstream patches to avoid calling netstat for random data- NSS 3.12 alpha 2- Add /etc/prelink.conf.d/nss-prelink.conf in order to blacklist our signed libraries and protect them from modification.- Fix off-by-one error in the PEM module- fix a C++ mode compilation error- Add 3.12 ckfw and libnsspem- Updated license tag- Ensure the workaround for mozilla bug 51429 really get's built.- Better approach to ship freebl/softokn based on 3.11.5 - Remove link time dependency on softokn- Fix unowned directories, rhbz#233890- Update to 3.11.7, but freebl/softokn remain at 3.11.5. - Use a workaround to avoid mozilla bug 51429.- Fix rhbz#230545, failure to enable FIPS mode - Fix rhbz#220542, make NSS more tolerant of resets when in the middle of prompting for a user password.- Update to 3.11.5 - This update fixes two security vulnerabilities with SSL 2 - Do not use -rpath link option - Added several unsupported tools to tools package- disable ECC, cleanout dead code- Update to 3.11.4- Revert the attempt to require latest NSPR, as it is not yet available in the build infrastructure.- Update to 3.11.3- Add /etc/pki/nssdb- rebuild- Update to 3.11.2 - Enable executable bit on shared libs, also fixes debug info.- Enable Elliptic Curve Cryptography (ECC)- Update to 3.11.1 - Include upstream patch to limit curves- add --noexecstack when compiling assembler on x86_64- bump again for double-long bug on ppc(64)- rebuilt for new gcc4.1 snapshot and glibc changes- rebuild- Update file list for the devel packages- Update to 3.11- Add patch to allow building on ppc* - Update the pkgconfig file to Require nspr- Initial import into Fedora Core, based on a CVS snapshot of the NSS_3_11_RTM tag - Fix up the pkcs11-devel subpackage to contain the proper headers - Build with RPM_OPT_FLAGS - No need to have rpath of /usr/lib in the pc file- Adressed review comments by Wan-Teh Chang, Bob Relyea, Christopher Aillon.- Initial build/bin/sh/bin/sh 3.28.4-4.el6_93.28.4-4.el6_93.28.4-4.el6_9nss-legacynss-rhel6.confignssdbcert8.dbkey3.dbsecmod.dblibnss3.solibnssckbi.solibnsspem.solibsmime3.solibssl3.solibnssckbi.so/etc/pki//etc/pki/nss-legacy//etc/pki/nssdb//usr/lib//usr/lib/nss/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector --param=ssp-buffer-size=4 -m32 -march=i686 -mtune=atom -fasynchronous-unwind-tablesdrpmxz2i686-redhat-linux-gnuASCII textBerkeley DB 1.85 (Hash, version 2, native byte-order)ELF 32-bit LSB shared object, Intel 80386, version 1 (SYSV), dynamically linked, strippeddirectoryemptyBUB,< PPPPPPPPP P P P P PPPPPPPPPPPPPPPPPPP P!P"P#P$P%P&P'P(P)P*P+P,RRRRR R R R RR%R&R'R(R)R*R,R-R.R/R0R1RP?P@PAPBPCRRRR R RRRRRRRRRRR R!R"R#R%R&R/R0R1R#{eCk57cjJyA} CX6.R>jzLk8L>&hiǸʕ uQi uVu@}\lnX1 T$;Q<nj9f)UaN EnZ9#c]ܚpb[ "tS&clL0`Wz mw4s= 5)5$ZCo 6_#Q5ȣ;19E6`WLfnF]҅;q J9,4hMۈD]?=IӈC2acI&H:V^LP۱ΒuկHŲxq|bK #<07pn*z+@ ^\i9= #݊  YTM!]sfn3 F{ K,6dCOR=gv\okGn%;ouTUJ|6 4u=IwM++xߦH5Ai3j}Fhބ!]7Wq 46(+0F0Ѯ׈Jk\[F:.itLk}rM]56 tmjhѩd—'@"^wt=u]0H~Xi.-~ mNǰ5e[xsğwE:jNAAyEqyUiW{)Z| #vŸ28`~QƍK:Bms|)ϥA?tF9a?S 9@ QLmI>|ʒ&,6϶A[gڑY@>F0[TcQH ش[ zv 9,r=S2m=fJVРOdsbީ2l8 a."hvm$RS+@fV[: EWM!jo8(3R-yyѻ!}Բd)gn`#o %1:y44P}VGjNlNM Z7\ (=1ާzA{wK ?;U,8=˴h CS_W/nL +[uomueE'F4CC扢w^047I !KdSg /V檊dX߅.#+[@6 rp_N[)Rѥ h(,8UXVkF&l֥E)n_18_VrKA?$C`LΫ4qU"`s^f@p&">*L pfPM⨐DqNhf{MaE߬B$>!eZz.7F}?yT|9rB+i.$fJ=8K1wc_}&W*`Vyqc iJug<Ⱌ%}'EM66@/!6HM닁|"|yNF86[뿳^z5@I'vTnƎcgr׻j[Կ-?B@iciuj;$:E I,,8j\P!|.[3\DD?hcR(U:2 ,^\Ԝ'fSL>U6Et) 9T&WƖ.7G,IfzYqR&0% w-0qM*&9eV H.d۷]~`]gtģd>S䣔'jz({ ւt MB[q&GFPtHB]?`D3`ש%qy>CAs3 w%j=:KEk Ez)ѹi ;$.WS2mnRyT qHݞ[FmߩPt7ˈf4wPh6:H7)p2W.E7;#kLˉ'Ic>|a?ۥ$,ĆÃE:e-ٳ7A5ILQy(C3ٟ͑9Wܘ}=s6=P#zehkHg@7ָRnOۜbtmk1Lib&w NX'c4g,K.GuUS7 tF> Z!|]O38nkSm160` udҲDhON lJ6^ԫmoTCtTR*ٛZڬ4xL/-p |(S=կT ўˎ Fw` X -66]B䏅 xlFdC-:mΤfMV..;}s|6-E>Apg`vf8 }a>~iel5w;wjIA  ڣ cFST`ri6` )M1:-$T;fB#}fO&8*lxTrp>Nnz|xa%ԩdQ\Nk8%s9# U%{e-!P>:&mqC)"n.:ADcҷёQjDz$C@sIcKqߟ}L_8vr.h!5t8I⍸%`rPbhxfQTiqva::MDCQ}okܵ!Ul +JrFJ:K2,suչr*;I%9 m£;5-x9$ky9Rz qA'e-zb /Z2Va}I|$$!tOEъo@bg~ʚ. #V̀ӫA$xSU9Vr;O=pOOXAE搁vΨ]5br.TA|}xcgI|x*#(f?Z1(Mh,<.Ηxȑj !"!3ZEVӝ]m4ЪJ:ija>_t:牐*\(eIF 2KPN]v$=c8A%rŲ:;&"vu[ $Z_|Tzxoݞdsc?$IAqAYAǖ}m0'V-bj9@ =zCqw/<ЭfGi^=1Ҡ1;'g|i )H68(oon"Ŭ~""ῒd$/ d?sĽDϷ:sdHzWreT@"KQCg|ai.KؘQ->]9zjTZrEBw<Ͳ"$+;QᩯOa&~bh}M "%x|wLܲ~|etXm_n)M4z]&us5qnhXOEz`/Ϡ/_(9SoX`\ jSx)Ƴ:ܳ0r{8" u2!7{UB Z縼c=s=g#\>r]N &W<(w[NMw:?t)ݢ1'f!]41@X"8X SJr2nu? ~eα5HԃclAA-Aj&39`,AZnN_9?_Iz9:)yw2eD |wҙV{7vnJnXZO;rۭ<CD.b +PfRN`{ƿ=VQKݟn]wY *)"SX#rY/_7^qC1Co/E"3 >XBobi?ޔ^p}vBA Y|B&cb^2sAeP[e=D) )vxe{ˌPㅇL_֌,кn!V6[6^ yfE>GϝFhuɉSvs|oH&`9z}6t}7H"6_% qåizIXuTa#:]C1k9Ack{2F!Y3VU^bJ(B*ʥ@ g[`5H{H#%+F\l9ޒSN26-/P1{ -g#(XAr nnF.n"izCw%Z1lSLמ/KBInHR^Jd[*="JnZ<4F$ğ|Sbl`KT];g @:k`6E IynO)ľe4vNq7ۮXh+kqpw*âzb2Mw|Hw=uz9G }O4I`FC/CYNqֱF)Ț("nMj?-0 w9kr͇~Ě .XSPWɷp'k5\ K)U^VI~0rKtgl^]rGYg 8O}NJ8},JFPF|n!ERVr -߻]s5. [:|RO* o=`UNaJ Gg˕._SusRNnƎo9=հwEf)jYCQ\#fȒ,نŽ9Ecc0ep̥".mn4IͿTm1S.X;\?U?-Uq;w =rv|cEbZ-O$>iNY Y$)4 ]~*,CM47 |HO:5E4a ͘q}fnnqg?d-@ǔ{@kB qO" 5۟+tz5k8vT4^IjP2DvVn +RJSq3YX=mݏ3IJ6iyȓ8E` 0IɅ!lç$[E-Ѿn34+ kxψ:hxjW\-W&Yb]L_|TSB *˱X=6`Umy۪lKfJ1@4&ىJǏC>Nn0p~Ó|cf$*2x+Sw~9a)z_p4NmdʃRȿ `Iưs2C'SFgYP2Ďt#OT^\S^<_v m*C}@{v?ϰBwyg91\qgy >W%&|+RLHʻzJO1ϹV[&:;3##"عYy^=ZN'~}cHG踽1 3屷^|'ag}5`d5%)D֓"\0[QV! RC jœt}щ )juV-_o,A'ˆ^= \Nq0QmI :wz1Il=2 d <0qUY0N^ ި2N%QWSۍpٶ<4tҾfX"jygi,P_ PZMB cshʷ"ڬ>KW{c*?8Ґɾb;<: p\#_X5^^ Qӊ]3/ZՓm*8A,@.a(Hdfp7$ 74}{C[Jz|8`'H2NzHَ]^CRIw5η}]D?l1ϓh_Eg:a!鱧2 jYk^/Gԇ]]7Kjs'v `[>BjCrA4҉<Lcu6MYfO3:O=5<-0#㷴蜳L$2!PTWH%tGz~fw"MƉ㙃b43rs;|g^+25.O%}W]D??`|O[+=}wI~5U>GX\T$>"={O|BQ(<}45,a Ei EKg/>֕ dYƂ?;h=&Go$^IzP!?/2Zk2M·`8@hٹ_ZW &ah丯#i8ăܟn5'R<H2Đg^q@2{6!}Q%fvW$ ۽j6RBRjgqJmgM:GxΥ?xsr,`u{E[F{lQ$plDp'S}EcA(o>e ;JE‰ kߖW-aZIh27B/I$O%OOHsdN*O`) BeFL=g_sEuRV9.8#8,PKnl5@&xp$O:JYf d{+>ZY+:?lBY9˭R*Jpj~#=P:+Z8Pat #QN FZ@Fw݇?3XMi>J1AxT|n}xhZU-PS K =M&\ZXQѲ e_/X3ƢjK-.D^@5X q‘W0Qr[c9?u p,'3jr/H_kc݃t e5u*J ,O^pOoñsD5&3K }{_Rg/Xjzrr/').K_YSNnr嬷/A6߆:dXjfa7֥q0QλT :zgTW7")Z gTY."mPh(mQR١'-[z3:^v'I as:'\rP7;*tA>`DY=QhL&]Ϋ]U$=K5 t#v^ǖ>Kтa,d\CW԰6Ԧofc;Rٱkt_ZbÓN ^aqH{.hE?dnnA-h򙴎;"eu E<R#"աwt~89=\yb(R U8ѷU&'D8׍(פldAQ:MttmJh40j>FhGRHl]?M1Z? XiGcz2N=ay.7] 6jMT T3D)~UsXv)Ċz^s#5`Jo!Uܣ ӑ\@DH+Aja#7 'gH Xm ouSEn*͇Ѕ!JrXqcܗN7%ЁõP5)GKM)[7W:cV[* .sP{uXxЁoQ_!m"4 #g%Ha~ˆKiSounTggͦYER0a?ߺ#PlڜCs \(mΣ.m@5ѱ+8{ȑp@j>ڶ]&ϧ`D%i|pbr+u/9%AdVkol+ =mKο1KI`фD)>Q 6kij9}NC2g d7|fgA!=bV˟T)Lu\^M`~[ B"{UE*eV5׽߫!ʳh:pOL&Φʼn>5垣`C4xUɼ[ӿrZM/7bsOLúO-6znJV:K@'{qp';`|YΚ)1qYVK^l " < eaq3sGT7g#uL wJh@ko^tm߅7L'Bgը}3+5W@[a qP<AvϨ cO${P O'N యeO9e%B&v&g`I{-gϡM:ܸ/J }D&<*c@OԹEf:k|>YIsp`ﲖ (.CΥ7>#{VG(%vRGȕr&8|1%݆3#@xoCx=4N uGa4Œ6Gp.X\rf$q&?\;Ԉ }Ά,)fݱ . .Z˜Rm`TB/P7Q?j`3P΄cꪾ8?vL&]Y~*W.].f݀fs%^E#V +MtcԂ,_"%zR[ LwuœF%D9~Z;-ps%>3gI9aĸ Kfu6DIm;33noC.@q߸$?c ]%Nj"f 6,^X#UgJ`B\$O6t6p-MRhYx|#DÊvZ:^^x;?b?z'tj3FЪ{,L>$KHQ:#k$G?<蒖=w C<V$;1B pY[;(jbfqcLp DiD*sopx dMh$J|J35nQaZDᆘ^gq-I@;xyG/鋞 #W교+W0g>W)aON&<%7 ~aYMܴ?ivtgS/=?Alkd(/sna4'>vohI+ޜW :9 V4{3$q\%\LdtV đqYK,0Wm'Gxq2~ml a !ګ 9k'"z4% 6ꏙvXTZ\ rh̄\h_XwvB^{7<6V/F,rJ'm2ຝ1f6Zߟ`Q*a̬m-ⱏdq죑GvD|w0 IZlҥv^6u {ē\3qahhoHRP=LW3\LZ;,^]i3R,rE)S 2"8}~ZV )L);Cw7?8<ŝ)#dFWRx-̯ PTNJuɕEG║0+xVx4 V s&4]"Cy$?8E 5?l\qu}2qܦa:Xƞv*T0|Ex˘Ct-Os4N?ꎙWR ݿ65H;ň}f5+r#w:a]Ë,Ki{=! T(M鲾4$djH׬A\\_U//Y7WN"`I>գY~1l~}A6hnn(g*%c^,?+)ɝ Zd`چ՞3 M;e`'IVH02'JyCwDjhI s,flKtD\QMu}OTq`PIN}dӦ: 4&a`u>W~%R ݞ\N l`(Kp"o1,(G85AA׭exTBW#_+?PEze?Z~xɸЦ2Ԝ&YSJ7@&D0\Λ!>(l6nkoI(#jWm?Uho1DGfyK%MT#:Q.9tFN:bz v gC #} VPFqkDA8t{_Nrb1m+I~.9gSG-C$L]]~6m-EcyX+NZT~簪q58ɱZMn=,'Zn}zk*SxA_= lN pT?尴R:oH2u]& ~0jhRBDr[?-*)ڨn8Lä"TjA ]3dV %M m|~nLmHK7O >bTԍb{ 9drUҋW1>ӲڋavޢY Re`qCJ峫Pf43ᄆ-" /EEMH˔ ;Q5b|Tu|H-¡ ؤO+*ʺ5v1ήG7ɬ!]<3-y7ɺ\QC} )zaRzZSMFmQO]4m=hX.B(e] Q֣?蛮&i|~-łkE/P7?#7{E 5&4[w|OSj1&SQCp)qhҸ?Eb߼4\ Jw$CAg%A矯ىEa.~gXC-—e)5?m_&zNUN"0[Oiz.o,oG_adxhTgLtB g >lt-HYlòaYދ9E[Ӗ`cIi)m -Cd6C`?vo%sȹO KyîI03=.(;`d9-7l藡›cz#fer$ P=1C^"vSЉiXJ h# ]_wy]!ڥ336O[w8|f?[E-i\nLC'Db6\ Q%y[pctin/%-y B蠷/X;,z;! |ysS`5A_)_S ZUmf]`ܻ};Uu0H<x%;:]:~zd47vLÀ, #[)fjw7A6$u[S"}r`mdLȱºĽI@1N G51\s& bvS3YMr_53 \:gY>Pćla8p]'ݼ+}O"B9rv30 A47R>HlyfõI̝챙F@2Oи"" 1]qWZx].ii 1VNJ|‰\Yf2 uґ0s-!4bl]G|H/x4Ϝ<3 ƶH7P|%R`FzvBw MiyFRA9KZL4\sBOG[D(JQou$Wr&Z) 3P|vXm.7z9 #SNez)ȯ>+'‡/1+=KȳUnӛ%\Ѵ+IÖ>7)&jRuݢ rq+( &UDhzȂTߑ|݄8`Fx? cbHdLWDPbb]0 %ٌ&bhF*l֩ߚLuy'NZ// áwsXΟicHѶ[@ڎjzl '[C}N(/64]ҝB~7_|.?E$<6cT|I6VS1⛆v"ׯ#"$ƹ6Bq7G:<%< $3MrʜEC嗬b#-6 |hlς%SaN"q*$,GTpK9&}ѳ8iNgT2"C}&;Ÿ;QJQ{KI~D@oVT sއ֘)V3nOM.M9v16oy4<RRZj7.DxcTR ="?-A|eH5<̀}P(Id 3u5RQ+kiݚLWt&KLڶ+6ThJ[mF̀_N\Y 8oB^L~zKv=+UKkr%uGLA&_dj'תGNia%ȕJHȲ(W8\ :.aNi( 6@9K)˭lE1}>p2Vm^ %$Djn[V 3J-_=3jDµ!v Պt2jm\󪬫RA: t:J,L!l^0M!/pzhy.(߮m]]Wt UfI9ϑIHhiS~I{ EM:Qh/p ē7EzgBMkҿaf4l˳!E!`ٓ*im,R(Wgzkk=+~j_|O}yD<)5M"Bd6N3$f sgM -qqP>-F9;&d~8_4"=@:G@Cȡӿ8"Tq/)@,T8h:_="YP.gp)YSW˔Xg\ųT0:oI:@ #r.ʯGj8 7\+xW0 ܀ZYB{\1]!2^g>3Emf,r{8 1wWg!f{($y$ى Pbb2$oKods|&“ʠg"TOALuX2CXs͙tʒq:A(2dױF7G'Q3C+:-p<96AϛFT^ Y}˓U΍u5x`ܶhPY@Eô4hd&01zOODv[,5)3TQ%qA'KX [-Gp( zS@LK52X,̵,v;saTVue@/^عN<f}1]ZOb$T#v0o@w-YnO"tlG%UK 0Mͯ_zr`t~<Ĺ=;xAgjDy)_TGj2%\2`%nuU?`iqmq7oF^ wb08\<Va~EnF:ry}xIH%b͕ '.M݌TXg|=T'8/|{u*ʝ\wѐH9? .t6SPkxzA>0wA%>(#N' -Ψ!gc1J^*6YPuO!XQ#Y( ga*~hAX`G*Ư,>/H<1Ľg6崅ޙ\As9 DBqFȆJ1!Tq)znO^cRc+a`Q)ݗiIZ来%L͎ʩ(߃@+S22Z ~.{ۏ_#q9Ȼy7E$lqaQ<\CZ ׈bATCAl>tعH]ȑ[3"tSۇt>NO y4m}brfk,&w,g .+ApW$)|\D B3'i#]=r. 0+-]UD?~"mЖ%!cM|ёcA],H ˀ 4&SoePA ? Mk+)d纾-{ -Fw|'M "̍X@khlG}v?RFk#ނ* uW5nnjz~l!ΪAu?g;MǬVHTƄS?WTJZd)('ө<-MFzTBIDW/@6>BHfE0:X1O.Oq9O^nEyoHQ˕j"pXyMeK||K8hp\`̼"0It'/W~ vR8a=B_4XKMQhϣYi۰ $n)ݳp1v!)x-<-a%R\.H~'P ̹ulsmRkJA$WkOКGU{]glU@\PeIMmw!xWfcl;F*7K]\d.1aqe4Kb mC]J+F;_IyDR[&* WbTr[ݪ&Lɺt3=BQ-%38-DJfzZ- Ie+r׆x;cIt!Qe:3n!femmIW҂,ڛA=5}TQJ42FZ H,p+"?RQk6?l[~ZԪhgZ=+)(kQ2UΞp99Qq{Ñ!HŖ UK_g*H_ߕM?+lD6fim=]k_FώM~:2wh2aAʤ;Dv&_HdR&9/ls P#[Hg h4~]F14BF6ATP.5.4<& v񴐏/8t;|OD@}xdVs* ʎLC6eIoY~W,kzM2p| 鳌, /bLzʴQUIf"͌y"q9xxRc ěZwV GGaa{=/qHCCƫ/|Ҿ+JWX["eVxr[*"Fѯi3b.h34m3MXǙ(mW:f@(9q E1mJJ;b(Of/a 7Ko]f3K$G=qj띨T3^ D] 2k2\`Πi8WV(Ē(!^=(HI*ꭊE5hoA!FMd[׵ra5wסadnl^1Ok<'z{ȋ2߄As;b|_yc|tUtż`+?/!(nS>uswR'ۅ9  C\s# X63"a%w,,;^K@T hv 9׉ez(ף> qHT kWi.VwЈG쑒Z:5Vg6yEunZϡb%lMOqBU7Fx2vٖ^Č ĂYm ͸6q)tD:Fweganп Mo%ں#xnl8\g3k=čxBAyh>eՀ7 иu54)$Vm<#]c=H+n$큢9p%En_O2 rW nCvf, 7dy`{/:d*_/Ev 9>7N =j +Q' $=P+G7VUO=ʑECSLL$Xt߈pz{h$NY# 03ݽHa"/)%dr#yP˚dA=h}`aQ,͙իCRFaDp=L1-m4AwVwݾ2rJ<)%1K|,1w%虎}1Dv`YB ]}¤ KA+fV]$2|W>HP YjzZ좡IwX5J|FƳDFQ&:-`oZM ns=Jެ:g]\r\yk]?*.Kic%!mII,Gft~ZsCm,.bp9zϯ9ؤ-0j(к#laʴ0\/|'1xa%KB^ 3@}ׇ/pp뺧p1 Jpƾ5 &c- SZx:+GTz֨ib$!`2 !rr ÓNӝA>CԳ_us3t\ F]U$LVM]* _G9y#Ea67c~(߮u8vVB^Pu9\S1k1ZZǂ \[* IJ,5TDRI8/҄]]ۑ]7*IUa.+UJ֬algJfd{1=ۖ EߛR`+_(s5/м[Ly/O wy‚tke=qyIns6e HoaJ*RI^7Iˆp/tȖt8+66%`""lV,j/Gf 305G/n~wqi8$! (2bӄƥ.*^cY+b*ɹ"I^ʮyeb/ '^z=w{ Qdv #)`:UQ f/0=g֜ .Pc\ 5NIo1ӊm?&xɧn)lSFw`jpQQ\qZEڅah_I[qoޡXA~Ztb1Er˳g*-t-_2#bEAmXfv7WB 7 |΍2 |ܽ"&dUi#`GDf8b g}NU kc/mPYJmjZ6tHG o!( Ɇfdj"v R*P3=`meCZN Ș]31mr/Қnm7(8I^Pq$d1/G7x4hT%X%C\͈8\lI%˓iYQgգ›ݺ||%xϠLGzDhjqF6i wc/l[Hbjb7~bD/BO2)+u#X>j+;g0e +qp ~.D%;U[G* hqّ#h|PŅYi鼢_ 5Grړ,4[An-c87yr#J8}>x'7 .s$偒wȴGYW_>eShuɠ*xyn8(^a \s֐ɣZƑtU9 Rx#knWYUV6[)Z#Sc_eY({Nal24}1?9 !S 7!s*ݞ+߃ZbPрҍ:'A"ѕqgzҽM67dTݰZ0BA/||gv3ރ4˶sYr˫MA閪6k;Yhጞױ;/vsmw\v ߁H9i`{ݪؗ%',yʈH+QRn"24-7G[aij:O*/ؒ{0f Soݕ0zbO)U$2}ZyE %H-jEcX]on"8|0G{*r^4m|% bH[C\DJ؊)LWx|oeM[ xƗ(u]{ s5`. *܂3~ob04:AN*7JŴ ΢Y<.ˇ5T1C,LF)u˭Gr$Qfv%Y [t5M>lfT D$@Rbs]ѽ{twFrmn'FThBBvBp<"7c-A9k1Z A{Ѷ5%|DJTP:l_,Œ- e=p}7nFg̏Wqw;Kt:hQRԟeH١7)Q_;mRQ$4NVb=YFLO6<]ڣ-O%Ձr1RHb;[߂?HH=6^}9$KᏢ^G"TwXhf;M?bo3d=U*~mF DS^A)C6ntnПrGW'X,r) u8κ?'bPQmIBr_VLFWۢ㩧( ABDJcӂ}5ΓYExh.ua~ղ@g([9|%; P/JŠi5߮UAt>%R'|"_2棃`0Ԥ}ٵ̘Ouy!x?,-#p=+re PwoMŭ[1,?vd$}ʐuRՇ $ph ym0YhKX*nq ֫6 c|Z6u66ic[# ]\,$)#pr ?(;QY[, 7+ G#wK"2j hϞm#7/h^*)=m$z^dF]0KJcBstg!hzI j`} ĻTq7)O5?+RhB2k~LI+A>;X_ SN3F4\2?D-@<,Q&Jmy%95 cZ;+eY*8h3E\{?+ Z@ޫ+ 5g$ߧOItaK䳑#cczh`/8B_4Ib9bjc[*mZI٤OF0{gWjEh!1Nfj㮝zIMdh^bz˧ D*jh:^^vaznTjBxk6(ڱ_0lFg8{t`H̿VwU:rZ<p T]1 T5;%J5aꀔs(j9WFsQ8ST8ˌGA&\x31&iFAq'1擼'5ڮ爛:7RTN?# v e"Ŋ纰#V/0z,um ך)j<'ʝ5FY9!&)e;,Z׍e%jY^|gtf˙ ~ %ʣIS_~*2z>/"gJH)6] K5ĵ9g d/h] %.h -P%㽺 U'C=?lכ`}`?=-*: ޝP͌|fcR(W:Zڰg͈H K3* By fx$Hn| TF%>LsOXDԩ(w7ʯ2䗛X0gâHz[RP_*wG&"9S2cPͤ>"ַ4#:`oFL1[RZ&g/F)MN_=Ӿyʑ!WS? )U˰m.WE$5Ja{|"Ukg#_%Td_'/d4?JQ[g!%/9JW^ L1O%|~Țg~a nڵI->" lN .ѷGJ]@9@S H -[O x qLHH K\5n؜9[8ƿr s|l1[.o bZ{ĸeU]' jk_Co&E&3PvFc(z2_%;;}qτM{L_O%׍CKNۘ4YfݭN?^ ]3!=̕,nu qж7.;%luODHy\e1ghJNMbKo,2.ꦷңXÉZfey? Y O ` oB4|O@-CGg7KC+d*alZ\=EG|"x <;ЫA)EZoRPA  𽉅RLJa:RFD+Roi#U8*XoѮe2ά*)aMQgݨ6ba`PSvnU)W?P~ {<ԧCW$VHyԝP UL&sC꿕K h-RXF 2Sp$c>ÆڿU~wCSc8sG1+S{Iu{}pAv3<iA#BBw&1Ѽ,z[n7%\,S41|N4E#(yLHgS OS>9/7 !U(Eф r?AR<.9_fsM|"BC$WDCHDJ/j&Y=r** Ԣ~ *큯┐hmש(R8l xKGp1OK%I^/y]施ad&NOuVpC5Dy{^rS)CHgVI,DFUats*N1sf1zVM::'c}h쎇˔ᬶO3~s./V@#_4Z}1RޓX c/$ʴzY3wWDvsc_AiڣÝXy5OChߴн G==hvKnԧ)$q5"so@G1gB{_E9Z4nR H0[02⑴%rιX168kZ QϯyG3P*S"bG{Xp /> &JJ::fUQ8 [KtBMp,{_j5j>(kKMMi-[5Ligv=$/ʖ7G.POItf<\l-Ȧd:y1u{_8]W *X`/,@" -j7O9=TA4z'S1Rb8ت\OSiPsk>Ȧ*QNގE;]Iaw})g\T&!dπ@hj¶ʕj]\VϾcc\ЛC;eր :k} ~"j&%@YW\FIu CS7gj}I/oL˥/Ӝ+{ "0+bf5D[rjgrzk W(u/?  [G݄{aj1N^m.iC>9$W}́]˜mw+c ëڝFAܓEXc*I"@HC]@HV Q{*6A(Ssje)w>llz74v)v0% Q:m`U ^DU6?6?5.w:X o|h( ^4h覦xtEOCTl ZsV` smBeA?1+%f"%ڲ1VZ,c3 I&L74OQ~^/亮c6aILHa]. Kq%6އeWh*/]ĪS§-_8 Db h)<,ht$r5%#}Q"tm|](Z1UZv+ŋÒ(xwĕYΥEƮWNcm!o#`{w5%_ht8B1zP%rBtBG̶uI0^-oOp H-p2hy_%`4v MЄIoS1Azl\1㜳gQB1$ykElgc Tq8hnJ4Kk@Ewby;g\!WU}jMYGp䥬>އ9]x=ƍ𽲣*RZe3);R#H-PI- mH$L0TK0܂]mfs+Ssq 8OaI첊&pjQVy/ zG /Ycoq- 6/!4~Ԝv}־0 b2V;7YۼkֿmX'|Җ#aMF"7V~xeue7R()_/eku~26_RX t!4%7*C|uЌPZ/mʊiyyWOrM{L[zעv ShEPS,,e [sg 1L 6cc#wlPMF?P:sW}ǽLgtyJT*r"#+.)l4lA0녭X 8T^f~ ?/Gnp39P p!ҵ'r稏$goyHSKRGϮ(KGgm:L;=\^DXOǵ^h)LRs QJ n Xve(n5:6,͟_t4ԃ$XX7t@iW\e-n#FōRHE @' Ņ(~K0XxYDrtܸ{@oQ-ƢY}!m&-y!ȈD@h(/5Byܙ@iI+x yL쒄G()^rW* hk?bfYvL4 EJ]RBɥ\wtdǯ7r l@ioza`Hg0<>--~p,@޹i&vىx3dИhHa.` |tS,V#^?:;W~2-zIfnDNbşFs_ϣlpMOwReҨ+wAvZ(CƷ4eG?QZtsj:O`rjNM԰I[J1NB,*rS{0˾"΂FZT׈eЯ!,n?1FB8$2 Pq `\nM[@ і!X0); v)emؠ5ܝu;tAKQYZL6.v)2an`a״['>fOB9?c@ JC3&2-)ܔ1%-Vbdfi1Q%N3м&rԳg2\jEh9oBu~ҁxiFT^BɊit:䳷|HdԜK͓k:sO.} <}iS}N:$ mFK]b6Yht4ޫHQol=^bM(eZ^j̵A[$J$ ЮnP;g.Ay"uo.t\(W] VSj8R`%f 1+92WL8Τxt"@/F{@g >e U ί{iȾry[/P;ԡ=D % ?53y7_zc<9Su:S^:- 3UE>ΜJ.7T8I$AZwT٬oPppu2;Gֱ0ɧ=i'H?cy~_(Lt㔘FB[{a;b{B 10-WO7~H4]\4:36|Y N 2_b!|y?sM!sF%g/ @L ƩJ-/kKE˦`Úqlc ݀\g|v&r"&m ș.̝m.̐(uPo}&E"E<ztqJ\ĤU;'UH6V0HU.40vT!Zvn L~3mq0^&"NW=|o4gJ<"t5o\uȞBrc`(]qoYYQ,A4Bm z VMbTZtK* tuݬ\mBfneX^aA]{p&8GZϽy}9)YH!(:ahC0eAm/?V-!n!XTN(\,u6_}_>D@Ӡݢ ZDj)L*cCJOD"}m+^TuŶg7ƌ{y:V /X.Ns7Yu(TٽAq{ 寎?S.0&i3vD7AKkX(@XX+h! 6*5~lu8fۤnOjl78P I`YΒef&沮X~`љa7b' vn+ 览ky$BE1^%PU-O<|N|V849qQV[GLA,0.ļNݲs wkZ9G&1O;3!Vkɠ fFɰH4(bMVΟ ԰!i^a xfL {V} ڧ oLe ёcW|Dy}˧>PǨ 4T"g"`8ɰid#sPjD}RPbskr^69節D~mj.$BLDhiK; vz.qlߺK]|j 5a2f49ݕj%w| yTo*؅)6J#E̥DgiU쩝sc KUյ6EP ~O*vCDŽoo{!?yaA j_Ʊ2#J]G7Ko >Uw;2,7 )zA P9KC oNxtŚsf&{4f}=6%T+Z7d…FH!I%: mL$)I.PRBm[84(T6٘`ŲdI0%fʩ8[19Ku܃}˞ 3R`;Va.W#L@:ɋҎNYQԟXRsdM~cG:FC"! c 4rݏhH?6c=Ŏҩ '_مϽ{ѧ.,NX496ZD`~(e_I4 e4-Z=O:|s*d˴Z6޶ J(|10hk0#%ꙧEq؄'߀Awi0R+]NBY=c\gZC_R6.hEZ2$ ֒ tD=`DR1ago( ܒ`6:EUȬ~mث$sln7QAM )!XJ: 1C*PGwR,9BY~iNqwg7yfI.3ŴH"/^&⡟Ы@NR2|9xG2'ɢL]y[oltxLSzv:!Ɍ\"a]-KMnmܻ1C^ rR;?i)gtL뎸;|ISKY|j&ڀD0xh* Gw^ǰΆnbDP 3sIv)C)Β](?dWsgøw/."[&ڋEՄv YZ