sssd-common-1.13.3-57.el6_9$>;h*~ݶ{><$?d  8" Nb}rr r tr <r  nr  r"r$r''<r)*Xe+e3Je444$(4D84L9;X:p>?BGrHrIrX`YZ[\\r]$r^{>bOdeflCsssd-common1.13.357.el6_9Common files for the SSSDCommon files for the SSSD. The common package includes all the files needed to run a particular back end, however, the back ends are packaged in separate subpackages such as sssd-ldap.Yc1bl.rdu2.centos.org0hCentOSGPLv3+CentOS BuildSystem Applications/Systemhttp://fedorahosted.org/sssd/linuxi686/sbin/chkconfig --add sssd # sssd-1.8.0-24 changed the startup order # We need to make sure this is always updated on # clients /sbin/chkconfig sssd resetpriorities if [ $1 -ge 1 ] ; then restorecon -R %{mcachepath} 2>/dev/null || : fiif [ $1 -eq 0 ] ; then /sbin/service sssd stop 2>&1 > /dev/null /sbin/chkconfig --del sssd fi HSl@t3,HK/ @+,W?8HKuCp%|v*RJ1 G?_68qH(sS Z B   E  @# ( ylh 9T   L? (ZuX큤AAAA큤A큤A큤AAAAA큤AAAAY/Y,Y/Y+Y[Y@Y@Y@Y@Y@Y@Y@Y@Y@Y@Y@Y@Y@Y@Y@Y@Y@Y@Y@Y@Y@Y@Y@Y@Y@Y@Y@Y[VpnVpnY$Y$Y$Y$Y$Y$Y$Y$Y$Y$Y$Y$Y$Y$Y$Y$Y$Y$Y$Y$Y$Y%Y%Y%Y%Y%Y%Y%Y%Y%Y%Y%Y%Y%Y%Y%Y%Y%Y%Y%Y%Y%Y%Y%Y%Y&Y&Y&Y&Y&Y&Y%Y%Y%Y%Y%Y%Y,Y,Y,Y,Y,Y,Y,Y,Y,Y,Y/Y+Y+Y+Y+Y[Y[Y[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@@@rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootsssd-1.13.3-57.el6_9.src.rpmlibsss_sudolibsss_sudo-devellibsss_autofslibsss_autofs.solibsss_autofs.so(EXPORTED)libsss_cert.solibsss_child.solibsss_crypt.solibsss_debug.solibsss_krb5_common.solibsss_ldap_common.solibsss_semanage.solibsss_simple.solibsss_sudo.solibsss_sudo.so(EXPORTED)libsss_util.somemberof.sosss.sosssd-commonsssd-common(x86-32)       @@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@ libldb(x86-32)libtdb(x86-32)sssd-client(x86-32)libsss_idmap(x86-32)libini_configinitscriptschkconfiginitscriptschkconfiginitscriptschkconfigrpmlib(VersionedDependencies)/bin/sh/bin/shrpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(CompressedFileNames)/bin/shlibbasicobjects.so.0libcares.so.2libcollection.so.4libcom_err.so.2libc.so.6libc.so.6(GLIBC_2.0)libc.so.6(GLIBC_2.1)libc.so.6(GLIBC_2.1.1)libc.so.6(GLIBC_2.1.3)libc.so.6(GLIBC_2.2)libc.so.6(GLIBC_2.3)libc.so.6(GLIBC_2.3.4)libc.so.6(GLIBC_2.4)libc.so.6(GLIBC_2.6)libc.so.6(GLIBC_2.7)libc.so.6(GLIBC_2.8)libdbus-1.so.3libdhash.so.1libdhash.so.1(DHASH_0.4.3)libdl.so.2libdl.so.2(GLIBC_2.0)libdl.so.2(GLIBC_2.1)libglib-2.0.so.0libini_config.so.5libini_config.so.5(INI_CONFIG_1.1.0)libk5crypto.so.3libkeyutils.so.1libkeyutils.so.1(KEYUTILS_0.3)libkrb5.so.3libkrb5.so.3(krb5_3_MIT)liblber-2.4.so.2libldap-2.4.so.2libldb.so.1libldb.so.1(LDB_0.9.10)libnl-3.so.200libnl-route-3.so.200libnspr4.solibnss3.solibnss3.so(NSS_3.10)libnss3.so(NSS_3.12)libnss3.so(NSS_3.12.5)libnss3.so(NSS_3.2)libnss3.so(NSS_3.3)libnss3.so(NSS_3.4)libnss3.so(NSS_3.6)libnss3.so(NSS_3.8)libnss3.so(NSS_3.9)libnssutil3.solibpam.so.0libpam.so.0(LIBPAM_1.0)libpcre.so.0libplc4.solibplds4.solibpopt.so.0libpopt.so.0(LIBPOPT_0)libpthread.so.0libpthread.so.0(GLIBC_2.0)libpthread.so.0(GLIBC_2.12)libpthread.so.0(GLIBC_2.2)libref_array.so.1librt.so.1libselinux.so.1libsemanage.so.1libsemanage.so.1(LIBSEMANAGE_1.0)libsmime3.solibssl3.solibsss_cert.solibsss_child.solibsss_crypt.solibsss_debug.solibsss_idmap.so.0libsss_idmap.so.0(SSS_IDMAP_0.4)libsss_idmap.so.0(SSS_IDMAP_0.5)libsss_krb5_common.solibsss_util.solibtalloc.so.2libtalloc.so.2(TALLOC_2.0.2)libtdb.so.1libtdb.so.1(TDB_1.2.1)libtevent.so.0libtevent.so.0(TEVENT_0.9.9)rtld(GNU_HASH)rpmlib(PayloadIsXz)1.1.131.1.31.13.3-57.el6_91.13.3-57.el6_91.1.0-11.el6_8.13.0.3-14.6.0-14.0-13.0.4-15.2-1selinux-policysssd3.7.19-1661.10.0-8.el6_9.beta24.8.0YyX6@X6@XS@XOXJXGXF@X@X6@X6@X-X!@X!@X&X X X WWWW@W@W_@W_@WWW@W@W@W@Wi,@WYZ@WPWPV@VJVJVV@VՄ@VՄ@V@V&@V=@V=@V@V@V@VvV%@V%@V%@VVVVVpVii@V\:@VXEVV@VV@VV@VMV2 @Vf@Vf@Vf@UAUUuUn@UmUjUcUcUUUUUJ@UB@UB@U@U?v@U>$U8U.RU.RU-@U-@U-@U-@UF@UF@UUUUUU U U U@U@U@U@T9TTTTTTT@T@T~T~Tk4Tk4T$TTT@SvSvSvS%@S0S<@S<@S<@SSSSSSS/S/S;@SFS@S@S@S@S@S@Si@S@SSS!@SsZSpSNpS 4@S 4@RRRRRRfhRD!R1R%@R @R @RR|R|R|R|R|RRRRRRRRRRRRR@R@R@R@R@R@R@R@R@R@Q@Q@QQ*@Q?@QQvwQkQIQ5@Q0@Q']Q @PPPP@P@P@P-P@P@P@PDPDPDPDP[PPPPP@P@P@P@PPPPPPPP @P @P @P @P @P @Pf@PPPPP @P @P @P @P@P@P@PPPPPPPP@P@P@PpPpPpP@P@P@P@P@P@P@PP@PP@P@P@P@P@PPXPP{P{P{Pz@PqnPl(PaP`K@P#@Oĺ@O"O"OOO@OO~O@OOO@O@Ou@Ou@Oc+@O]@OYOOdON@OLOLOLOLOLO;@O5O1@ObN@NNNN@NNNj@NN$@N$@NN@N@Nx@Nm@Ng\N[@NTN?N:N:N:NNN|@M{@M{@Mߒ@M@M۝M۝M@MM@M@M3@MM>M>M@MM@M@Mx@MM=M=MwkMwkMv@MtMtMc@Mc@MbSM_MQ0@MJMGMA^@MA^@MA^@M.@M9L!L@L@L@L@LNLNL@L@LA@L@Lk@LYV@LRLI@L7@L(L_LLGKj@KK@KK@KK[K@KK~}@K]KY@KO@KKK/c@K+nK"4@KJJ@JJJkJJ@JJp9JlE@J?r@J0J,@IcIcIzI)@I)@I)@IV@IV@I@I@III@Jakub Hrozek - 1.13.3-57Lukas Slebodnik - 1.13.3-56Lukas Slebodnik - 1.13.3-55Jakub Hrozek - 1.13.3-54Jakub Hrozek - 1.13.3-53Jakub Hrozek - 1.13.3-52Jakub Hrozek - 1.13.3-51Jakub Hrozek - 1.13.3-50Jakub Hrozek - 1.13.3-49Jakub Hrozek - 1.13.3-48Jakub Hrozek - 1.13.3-47Jakub Hrozek - 1.13.3-46Jakub Hrozek - 1.13.3-45Jakub Hrozek - 1.13.3-44Jakub Hrozek - 1.13.3-43Jakub Hrozek - 1.13.3-42Jakub Hrozek - 1.13.3-41Jakub Hrozek - 1.13.3-40Jakub Hrozek - 1.13.3-39Jakub Hrozek - 1.13.3-38Jakub Hrozek - 1.13.3-37Jakub Hrozek - 1.13.3-36Jakub Hrozek - 1.13.3-35Jakub Hrozek - 1.13.3-34Jakub Hrozek - 1.13.3-33Jakub Hrozek - 1.13.3-32Jakub Hrozek - 1.13.3-31Jakub Hrozek - 1.13.3-30Jakub Hrozek - 1.13.3-29Jakub Hrozek - 1.13.3-28Jakub Hrozek - 1.13.3-27Jakub Hrozek - 1.13.3-26Jakub Hrozek - 1.13.3-25Jakub Hrozek - 1.13.3-24Jakub Hrozek - 1.13.3-23Jakub Hrozek - 1.13.3-22Jakub Hrozek - 1.13.3-21Jakub Hrozek - 1.13.3-20Jakub Hrozek - 1.13.3-19Jakub Hrozek - 1.13.3-18Jakub Hrozek - 1.13.3-17Jakub Hrozek - 1.13.3-16Jakub Hrozek - 1.13.3-15Jakub Hrozek - 1.13.3-14Jakub Hrozek - 1.13.3-14Jakub Hrozek - 1.13.3-13Jakub Hrozek - 1.13.3-12Jakub Hrozek - 1.13.3-11Jakub Hrozek - 1.13.3-10Jakub Hrozek - 1.13.3-9Jakub Hrozek - 1.13.3-8Jakub Hrozek - 1.13.3-7Jakub Hrozek - 1.13.3-6Jakub Hrozek - 1.13.3-5Jakub Hrozek - 1.13.3-4Jakub Hrozek - 1.13.3-3Jakub Hrozek - 1.13.3-2Jakub Hrozek - 1.13.3-1Jakub Hrozek - 1.13.2-7Jakub Hrozek - 1.13.2-6Jakub Hrozek - 1.13.2-5Jakub Hrozek - 1.13.2-4Jakub Hrozek - 1.13.2-3Jakub Hrozek - 1.13.2-2Jakub Hrozek - 1.13.2-1Jakub Hrozek - 1.13.1-1Jakub Hrozek - 1.12.4-51Jakub Hrozek - 1.12.4-50Jakub Hrozek - 1.12.4-49Jakub Hrozek - 1.12.4-48Jakub Hrozek - 1.12.4-47Jakub Hrozek - 1.12.4-46Jakub Hrozek - 1.12.4-45Jakub Hrozek - 1.12.4-44Jakub Hrozek - 1.12.4-43Jakub Hrozek - 1.12.4-42Jakub Hrozek - 1.12.4-41Jakub Hrozek - 1.12.4-40Jakub Hrozek - 1.12.4-39Jakub Hrozek - 1.12.4-38Jakub Hrozek - 1.12.4-37Jakub Hrozek - 1.12.4-36Jakub Hrozek - 1.12.4-35Jakub Hrozek - 1.12.4-34Jakub Hrozek - 1.12.4-33Jakub Hrozek - 1.12.4-32Jakub Hrozek - 1.12.4-31Jakub Hrozek - 1.12.4-30Jakub Hrozek - 1.12.4-29Jakub Hrozek - 1.12.4-28Jakub Hrozek - 1.12.4-27Jakub Hrozek - 1.12.4-26Jakub Hrozek - 1.12.4-25Jakub Hrozek - 1.12.4-24Jakub Hrozek - 1.12.4-23Jakub Hrozek - 1.12.4-22Jakub Hrozek - 1.12.4-21Jakub Hrozek - 1.12.4-20Jakub Hrozek - 1.12.4-19Jakub Hrozek - 1.12.4-18Jakub Hrozek - 1.12.4-17Jakub Hrozek - 1.12.4-16Jakub Hrozek - 1.12.4-15Jakub Hrozek - 1.12.4-14Jakub Hrozek - 1.12.4-13Jakub Hrozek - 1.12.4-12Jakub Hrozek - 1.12.4-11Jakub Hrozek - 1.12.4-10Jakub Hrozek - 1.12.4-9Jakub Hrozek - 1.12.4-8Jakub Hrozek - 1.12.4-7Jakub Hrozek - 1.12.4-6Jakub Hrozek - 1.12.4-5Jakub Hrozek - 1.12.4-4Jakub Hrozek - 1.12.4-3Jakub Hrozek - 1.12.4-2Jakub Hrozek - 1.12.4-1Jakub Hrozek - 1.11.6-33Jakub Hrozek - 1.11.6-32Jakub Hrozek - 1.11.6-31Jakub Hrozek - 1.11.6-30Jakub Hrozek - 1.11.6-29Jakub Hrozek - 1.11.6-28Jakub Hrozek - 1.11.6-27Jakub Hrozek - 1.11.6-26Jakub Hrozek - 1.11.6-25Jakub Hrozek - 1.11.6-24Jakub Hrozek - 1.11.6-23Jakub Hrozek - 1.11.6-22Jakub Hrozek - 1.11.6-21Jakub Hrozek - 1.11.6-20Jakub Hrozek - 1.11.6-19Jakub Hrozek - 1.11.6-18Jakub Hrozek - 1.11.6-17Jakub Hrozek - 1.11.6-16Jakub Hrozek - 1.11.6-15Jakub Hrozek - 1.11.6-14Jakub Hrozek - 1.11.6-13Jakub Hrozek - 1.11.6-12Jakub Hrozek - 1.11.6-11Jakub Hrozek - 1.11.6-10Jakub Hrozek - 1.11.6-9Jakub Hrozek - 1.11.6-8Jakub Hrozek - 1.11.6-7Jakub Hrozek - 1.11.6-6Jakub Hrozek - 1.11.6-5Jakub Hrozek - 1.11.6-4Jakub Hrozek - 1.11.6-3Jakub Hrozek - 1.11.6-2Jakub Hrozek - 1.11.6-1Jakub Hrozek - 1.11.5.1-4Jakub Hrozek - 1.11.5.1-3Jakub Hrozek - 1.11.5.1-2Jakub Hrozek - 1.11.5.1-1Jakub Hrozek - 1.9.2-134Jakub Hrozek - 1.9.2-133Jakub Hrozek - 1.9.2-132Jakub Hrozek - 1.9.2-131Jakub Hrozek - 1.9.2-130Jakub Hrozek - 1.9.2-129Jakub Hrozek - 1.9.2-128Jakub Hrozek - 1.9.2-127Jakub Hrozek - 1.9.2-126Jakub Hrozek - 1.9.2-125Jakub Hrozek - 1.9.2-124Jakub Hrozek - 1.9.2-123Jakub Hrozek - 1.9.2-122Jakub Hrozek - 1.9.2-121Jakub Hrozek - 1.9.2-120Jakub Hrozek - 1.9.2-119Jakub Hrozek - 1.9.2-118Jakub Hrozek - 1.9.2-117Jakub Hrozek - 1.9.2-116Jakub Hrozek - 1.9.2-115Jakub Hrozek - 1.9.2-114Jakub Hrozek - 1.9.2-113Jakub Hrozek - 1.9.2-112Jakub Hrozek - 1.9.2-111Jakub Hrozek - 1.9.2-110Jakub Hrozek - 1.9.2-109Jakub Hrozek - 1.9.2-108Jakub Hrozek - 1.9.2-107Jakub Hrozek - 1.9.2-106Jakub Hrozek - 1.9.2-105Jakub Hrozek - 1.9.2-104Jakub Hrozek - 1.9.2-103Jakub Hrozek - 1.9.2-102Jakub Hrozek - 1.9.2-101Jakub Hrozek - 1.9.2-100Jakub Hrozek - 1.9.2-99Jakub Hrozek - 1.9.2-98Jakub Hrozek - 1.9.2-97Jakub Hrozek - 1.9.2-96Jakub Hrozek - 1.9.2-95Jakub Hrozek - 1.9.2-94Jakub Hrozek - 1.9.2-93Jakub Hrozek - 1.9.2-92Jakub Hrozek - 1.9.2-91Jakub Hrozek - 1.9.2-90Jakub Hrozek - 1.9.2-89Jakub Hrozek - 1.9.2-88Jakub Hrozek - 1.9.2-87Jakub Hrozek - 1.9.2-86Jakub Hrozek - 1.9.2-85Jakub Hrozek - 1.9.2-84Jakub Hrozek - 1.9.2-83Jakub Hrozek - 1.9.2-82Jakub Hrozek - 1.9.2-81Jakub Hrozek - 1.9.2-80Jakub Hrozek - 1.9.2-79Jakub Hrozek - 1.9.2-78Jakub Hrozek - 1.9.2-77Jakub Hrozek - 1.9.2-76Jakub Hrozek - 1.9.2-75Jakub Hrozek - 1.9.2-74Jakub Hrozek - 1.9.2-73Jakub Hrozek - 1.9.2-72Jakub Hrozek - 1.9.2-71Jakub Hrozek - 1.9.2-70Jakub Hrozek - 1.9.2-69Jakub Hrozek - 1.9.2-68Jakub Hrozek - 1.9.2-67Jakub Hrozek - 1.9.2-66Jakub Hrozek - 1.9.2-65Jakub Hrozek - 1.9.2-64Jakub Hrozek - 1.9.2-63Jakub Hrozek - 1.9.2-62Jakub Hrozek - 1.9.2-61Jakub Hrozek - 1.9.2-60Jakub Hrozek - 1.9.2-59Jakub Hrozek - 1.9.2-58Jakub Hrozek - 1.9.2-57Jakub Hrozek - 1.9.2-56Jakub Hrozek - 1.9.2-55Jakub Hrozek - 1.9.2-54Jakub Hrozek - 1.9.2-53Jakub Hrozek - 1.9.2-52Jakub Hrozek - 1.9.2-51Jakub Hrozek - 1.9.2-50Jakub Hrozek - 1.9.2-49Jakub Hrozek - 1.9.2-48Jakub Hrozek - 1.9.2-47Jakub Hrozek - 1.9.2-46Jakub Hrozek - 1.9.2-45Jakub Hrozek - 1.9.2-44Jakub Hrozek - 1.9.2-43Jakub Hrozek - 1.9.2-42Jakub Hrozek - 1.9.2-41Jakub Hrozek - 1.9.2-40Jakub Hrozek - 1.9.2-39Jakub Hrozek - 1.9.2-38Jakub Hrozek - 1.9.2-37Jakub Hrozek - 1.9.2-36Jakub Hrozek - 1.9.2-35Jakub Hrozek - 1.9.2-34Jakub Hrozek - 1.9.2-33Jakub Hrozek - 1.9.2-32Jakub Hrozek - 1.9.2-31Jakub Hrozek - 1.9.2-30Jakub Hrozek - 1.9.2-29Jakub Hrozek - 1.9.2-28Jakub Hrozek - 1.9.2-27Jakub Hrozek - 1.9.2-26Jakub Hrozek - 1.9.2-25Jakub Hrozek - 1.9.2-24Jakub Hrozek - 1.9.2-23Jakub Hrozek - 1.9.2-22Jakub Hrozek - 1.9.2-21Jakub Hrozek - 1.9.2-20Jakub Hrozek - 1.9.2-20Jakub Hrozek - 1.9.2-19Jakub Hrozek - 1.9.2-18Jakub Hrozek - 1.9.2-17Jakub Hrozek - 1.9.2-16Jakub Hrozek - 1.9.2-15Jakub Hrozek - 1.9.2-14Jakub Hrozek - 1.9.2-13Jakub Hrozek - 1.9.2-12Jakub Hrozek - 1.9.2-11Jakub Hrozek - 1.9.2-10Jakub Hrozek - 1.9.2-9Jakub Hrozek - 1.9.2-8Jakub Hrozek - 1.9.2-7Jakub Hrozek - 1.9.2-6Jakub Hrozek - 1.9.2-5Jakub Hrozek - 1.9.2-4Jakub Hrozek - 1.9.2-3Jakub Hrozek - 1.9.2-2Jakub Hrozek - 1.9.2-1Jakub Hrozek - 1.9.1-1Jakub Hrozek - 1.9.0-3Jakub Hrozek - 1.9.0-2Jakub Hrozek - 1.9.0-1.rc1Jakub Hrozek - 1.8.0-33Stephen Gallagher - 1.8.0-32Stephen Gallagher - 1.8.0-31Stephen Gallagher - 1.8.0-30Stephen Gallagher - 1.8.0-29Stephen Gallagher - 1.8.0-28Stephen Gallagher - 1.8.0-27Stephen Gallagher - 1.8.0-26Stephen Gallagher - 1.8.0-25Stephen Gallagher - 1.8.0-24Stephen Gallagher - 1.8.0-23Stephen Gallagher - 1.8.0-22Stephen Gallagher - 1.8.0-21Stephen Gallagher - 1.8.0-20Stephen Gallagher - 1.8.0-18Stephen Gallagher - 1.8.0-17Stephen Gallagher - 1.8.0-15Stephen Gallagher - 1.8.0-12Stephen Gallagher - 1.8.0-11Stephen Gallagher - 1.8.0-10Stephen Gallagher - 1.8.0-9Stephen Gallagher - 1.8.0-8Stephen Gallagher - 1.8.0-7Stephen Gallagher - 1.8.0-6Stephen Gallagher - 1.8.0-5Stephen Gallagher - 1.8.0-4.beta3Stephen Gallagher - 1.8.0-3.beta2Stephen Gallagher - 1.8.0-2.beta2Stephen Gallagher - 1.5.1-68Stephen Gallagher - 1.5.1-67Stephen Gallagher - 1.5.1-66Stephen Gallagher - 1.5.1-65Stephen Gallagher - 1.5.1-64Stephen Gallagher - 1.5.1-63Stephen Gallagher - 1.5.1-62Stephen Gallagher - 1.5.1-61Stephen Gallagher - 1.5.1-60Stephen Gallagher - 1.5.1-59Stephen Gallagher - 1.5.1-58Stephen Gallagher - 1.5.1-57Stephen Gallagher - 1.5.1-56Stephen Gallagher - 1.5.1-55Stephen Gallagher - 1.5.1-53Stephen Gallagher - 1.5.1-52Stephen Gallagher - 1.5.1-51Stephen Gallagher - 1.5.1-50Stephen Gallagher - 1.5.1-49Stephen Gallagher - 1.5.1-48Stephen Gallagher - 1.5.1-47Stephen Gallagher - 1.5.1-46Stephen Gallagher - 1.5.1-45Stephen Gallagher - 1.5.1-44Stephen Gallagher - 1.5.1-43Stephen Gallagher - 1.5.1-42Stephen Gallagher - 1.5.1-41Stephen Gallagher - 1.5.1-40Stephen Gallagher - 1.5.1-39Stephen Gallagher - 1.5.1-38Stephen Gallagher - 1.5.1-37Stephen Gallagher - 1.5.1-36Stephen Gallagher - 1.5.1-35Stephen Gallagher - 1.5.1-34Stephen Gallagher - 1.5.1-33Stephen Gallagher - 1.5.1-32Stephen Gallagher - 1.5.1-31Stephen Gallagher - 1.5.1-30Stephen Gallagher - 1.5.1-29Stephen Gallagher - 1.5.1-28Stephen Gallagher - 1.5.1-27Stephen Gallagher - 1.5.1-26Stephen Gallagher - 1.5.1-25Stephen Gallagher - 1.5.1-24Stephen Gallagher - 1.5.1-23Stephen Gallagher - 1.5.1-21Stephen Gallagher - 1.5.1-20Stephen Gallagher - 1.5.1-17Stephen Gallagher - 1.5.1-16Stephen Gallagher - 1.5.1-15Stephen Gallagher - 1.5.1-14Stephen Gallagher - 1.5.1-13Stephen Gallagher - 1.5.1-12Stephen Gallagher - 1.5.1-11Stephen Gallagher - 1.5.1-10Stephen Gallagher - 1.5.1-9Stephen Gallagher - 1.5.1-8Stephen Gallagher - 1.5.1-7Stephen Gallagher - 1.5.1-6Stephen Gallagher - 1.5.1-5Stephen Gallagher - 1.5.1-4Stephen Gallagher - 1.5.1-3Stephen Gallagher - 1.5.1-2Stephen Gallagher - 1.5.1-1Stephen Gallagher - 1.5.0-2Stephen Gallagher - 1.5.0-1Stephen Gallagher - 1.2.1-28.4Stephen Gallagher - 1.2.1-36Stephen Gallagher - 1.2.1-35Stephen Gallagher - 1.2.1-28.3Stephen Gallagher - 1.2.1-34Stephen Gallagher - 1.2.1-28.2Stephen Gallagher - 1.2.1-33Stephen Gallagher - 1.2.1-28.1Stephen Gallagher - 1.2.1-32Stephen Gallagher - 1.2.1-29Stephen Gallagher - 1.2.1-28Stephen Gallagher - 1.2.1-27Stephen Gallagher - 1.2.1-26Stephen Gallagher - 1.2.1-23Stephen Gallagher - 1.2.1-21Stephen Gallagher - 1.2.1-20Stephen Gallagher - 1.2.1-19Stephen Gallagher - 1.2.1-15Stephen Gallagher - 1.2.0-14Stephen Gallagher - 1.2.0-13Stephen Gallagher - 1.2.0-12Stephen Gallagher - 1.1.92-11.1Stephen Gallagher - 1.1.92-11Stephen Gallagher - 1.1.91-10Simo Sorce - 1.1.1-3Stephen Gallagher - 1.1.1-1Stephen Gallagher - 1.1.0-2Stephen Gallagher - 1.1.0-1.pre20100317git0ea7f19Stephen Gallagehr - 1.0.5-2Stephen Gallagher - 1.0.5-1Stephen Gallagher - 1.0.4-1Stephen Gallagher - 1.0.3-1Stephen Gallagher - 1.0.2-1Stephen Gallagher - 1.0.1-1Stephen Gallagher - 1.0.0-2Stephen Gallagher - 1.0.0-1Stephen Gallagher - 0.99.1-1Stephen Gallagher - 0.99.0-1Stephen Gallagher - 0.7.1-1Stephen Gallagher - 0.7.0-2Stephen Gallagher - 0.7.0-1Stephen Gallagher - 0.6.1-2Stephen Gallagher - 0.6.1-1Stephen Gallagher - 0.6.0-1Sumit Bose - 0.6.0-0Simo Sorce - 0.5.0-0Jakub Hrozek - 0.4.1-4Fedora Release Engineering - 0.4.1-3Simo Sorce - 0.4.1-2Simo Sorce - 0.4.1-1Simo Sorce - 0.4.1-0Simo Sorce - 0.3.2-2Jakub Hrozek - 0.3.2-1Simo Sorce - 0.3.1-2Simo Sorce - 0.3.1-1Simo Sorce - 0.3.0-2Simo Sorce - 0.3.0-1Simo Sorce - 0.2.1-1Simo Sorce - 0.2.0-1Jakub Hrozek - 0.1.0-5.20090309git691c9b3Jakub Hrozek - 0.1.0-4Sumit Bose - 0.1.0-3Jakub Hrozek - 0.1.0-2Stephen Gallagher - 0.1.0-1- Resolves: rhbz#1473005 - The originalMemberOf attribute disappears from the cache, causing intermittent HBAC issues- Resolves: rhbz#1404697 - SSSD does not skip GPO if no gpcFunctionalityVersion present - Resolves: rhbz#1374813 - SSSD fails to process GPO from Active Directory- Resolves: rhbz#1415785 - ldap_child does not remove temporary files when it's killed with SIGTERM- Apply several more smartcard-related patches. - Related: rhbz#1300421 - Screen locks and smart card is removed - must show a message to insert the correct smartcard- Resolves: rhbz#1400643 - sssd prevents sudo from getting data from LDAP- Resolves: rhbz#1393592 - SSH-CERT: always initialize cert_verify_opts- Revert the ding-libs requirement - Related: rhbz#1374813 - SSSD fails to process GPO from Active Directory.- Related: rhbz#1369921 - Members of nested netgroups configured in IdM cannot be seen by getent on clients- Require the matching version of ding-libs - Related: rhbz#1374813 - SSSD fails to process GPO from Active Directory.- Fix a coverity warning - Related: rhbz#1382395 - sudo: ignore case on case insensitive domains- Resolves: rhbz#1382395 - sudo: ignore case on case insensitive domains- Resolves: rhbz#1369921 - Members of nested netgroups configured in IdM cannot be seen by getent on clients- Resolves: rhbz#1324428 - [RFE] Discover forest's root SID even if subdomains_provider = none- Resolves: rhbz#1367802 - using overides causes segfault in libldb- Resolves: rhbz#1329378 - pam_sss set KRB5CCNAME with sudo logins- Resolves: rhbz#1382603 - autofs map resolution doesn't work offline- Resolves: rhbz#1339986 - [sssd-ldap] man page needs attention- Resolves: rhbz#1321884 - IPA sudo: support the externalUser attribute- Resolves: rhbz#1299994 - ssh client checks only the first certificate on a smartcard when the card has multiple certs - Resolves: rhbz#1300421 - Screen locks and smart card is removed - must show a message to insert the correct smartcard - Resolves: rhbz#1372681 - ssh with Smartcards - skip invalid certificates- Resolves: rhbz#1329648 - Protocol error with IPA on RHEL-6 - Resolves: rhbz#1329647 - IPA view: view name not stored properly with default FreeIPA installation- Resolves: rhbz#1339986 - [sssd-ldap] man page needs attention- Resolves: rhbz#1327272 - local overrides: issues with sub-domain users and mixed case names- Resolves: rhbz#1293168 - Inconsistent user synching between IPA and AD- Resolves: rhbz#1374813 - SSSD fails to process GPO from Active Directory.- Resolves: rhbz#1377782 - sssd is looking at a server in the GC of a subdomain, not the root domain.- Resolves: rhbz#1365218 - SSSD does not fail over to next GC- Resolves: rhbz#1367435 - Intermittent sssd auth failures- Resolves: rhbz#1369079 - sssd runs out of available child slots and starts queuing requests in proxy mode- Resolves: rhbz#1338619 - segmentation fault in sssd after upgrade to sssd-1.13.3-22.el6.x86_64 when upgrading cache- Resolves: rhbz#1324107 - GPO: Access denied after blocking connection to AD.- Resolves: rhbz#1293168 - Inconsistent user synching between IPA and AD- Resolves: rhbz#1340927 - sssd-common requires libnfsidmap- Resolves: rhbz#1340176 - The AD keytab renewal task leaks a file descriptor- Resolves: rhbz#1335400 - In IPA-AD trust environment access is granted to AD user even if the user is disabled on AD.- Resolves: rhbz#1336453 - sssd_be doesn't terminate forked child process if adcli is not installed- Resolves: rhbz#1312062 - sssd does not pass LDAP rules to sudo- Resolves: rhbz#1313940 - SSSD PAM module does not support multiple password prompts (e.g. Password + Token) with sudo- Actually apply patches from previous build - Resolves: rhbz#1313940 - sudorule not working with ipa sudo_provider- Resolves: rhbz#1313940 - sudorule not working with ipa sudo_provider- Resolves: rhbz#1209600 - Getting ERROR (getpwnam() failed): Broken pipe with 1.11.6- Backport of a more minimal dependency patch to avoid changes to AD provider behaviour - Related: rhbz#1264705 - Allow SSSD to notify user of denial due to AD account lockout- Resolves: rhbz#1308939 - After removing certificate from user in IPA and even after sss_cache, FindByCertificate still finds the user- Require a newer selinux-policy to avoid issues when prompting for SC PIN - Related: rhbz#1299066 - smartcard login does not prompt for pin when ocsp checking is enabled (default config)- Resolves: rhbz#1264705 - Allow SSSD to notify user of denial due to AD account lockout- Resolves: rhbz#1259687 - sssd_nss memory usage keeps growing on sssd-1.12.4-47.el6.x86_64 (RHEL6.7) when trying to retrieve non-existing netgroups- Update sssd-ldap man page for the recent ID mapping changes - Related: rhbz#1268902 - SSSD doesn't set the ID mapping range automatically- Resolves: rhbz#1295883 - refresh_expired_interval stops sss_cache from working- Resolves: rhbz#1268902 - SSSD doesn't set the ID mapping range automatically- Resolves: rhbz#1298253 - Screen lock prompts for smartcard user password and not smartcard pin when logged in using smartcard pin- Resolves: rhbz#1292458 - sssd_be AD segfaults on missing A record- Resolves: rhbz#1262981 - sssd dereference processing failed : Input/output error- Resolves: rhbz#1290761 - [RFE] Support Automatic Renewing of Kerberos Host Keytabs- Resolves: rhbz#1244957 - [RFE] SUDO: Support the IPA schema- Resolves: rhbz#1298634 - Cannot retrieve users after upgrade from 1.12 to 1.13- Resolves: rhbz#1287807 - SRV lookup for KDC servers doesn't work- Resolves: rhbz#1273802 - ad_site parameter does not work- Fix memory leak in the NFS plugin - Related: rhbz#1269820 - Rebase SSSD to 1.13.x in RHEL-6.8 - Resolves: rhbz#1296620 - Properly remove OriginalMemberOf attribute in SSSD cache if user has no secondary groups anymore - Resolves: rhbz#1283898 - MAN: Clarify that subdomains always use service discovery- Rebase to 1.13.3 - Remove setuid bit from proxy_child, RHEL-6 doesn't support running SSSD as a non-privileged user - Resolves: rhbz#1269820 - Rebase SSSD to 1.13.x in RHEL-6.8- Don't own files as the SSSD user - Resolves: rhbz#1289482 - warning: user sssd does not exist - using root- Resolves: rhbz#1279971 - groups get deleted from the cache- The p11_child doesn't have to run privileged anymore, remove the setuid bit - Related: rhbz#1270027 - [RFE] Support for smart cards- Resolves: rhbz#1266108 - Check next certificate on smart card if first is not valid - Also enable OCSP checks- Resolves: rhbz#1285852 - sssd: [sysdb_add_user] (0x0400): Error: 17 (File exists)- Silence compilation warnings and Coverity issues - Related: rhbz#1269820 - Rebase SSSD to 1.13.x in RHEL-6.8- Resolves: rhbz#1269820 - Rebase SSSD to 1.13.x in RHEL-6.8 - Squash in packaging review changes by lslebodn@redhat.com- Resolves: rhbz#1269820 - Rebase SSSD to 1.13.x in RHEL-6.8 - The rebase also resolves the following bugzillas: - Resolves: rhbz#1270029 - [RFE] Add a way to lookup users based on CAC identity certificates - Resolves: rhbz#1270027 - [RFE] Support for smart cards - Resolves: rhbz#1269422 - [FEAT] UID and GID mapping on individual clients - Resolves: rhbz#1269421 - [RFE] The fast memory cache should cache initgroups - Resolves: rhbz#1265429 - If the site discovery fails, ad-site option is not taken into account. - Resolves: rhbz#1254193 - Fix for cyclic dependencies between sssd-{krb5,}-common - Resolves: rhbz#1247997 - [IPA/IdM] sudoOrder not honored as expected - Resolves: rhbz#1237142 - [RFE] authenticate against cache in SSSD - Resolves: rhbz#1232632 - Kerberos-based providers other than krb5 do not queue requests - Resolves: rhbz#1227804 - Group members are not turned into ghost entries when the user is purged from the SSSD cache - Resolves: rhbz#1227685 - sssd with ldap backend throws error domain log - Resolves: rhbz#1221365 - [RFE] Support GPOs from different domain controllers - Resolves: rhbz#1215195 - Override for IPA users with login does not list user all groups - Resolves: rhbz#1196204 - sssd cache holding gid values for nss, but not the alpha group name representation - Resolves: rhbz#1194039 - [RFE] User's home directories are not taken from AD when there is an IPA trust with AD- Resolves: rhbz#1266404 - Memory leak / possible DoS with krb auth.- Resolves: rhbz#1264524 - SSSD POSIX attribute check is too strict- Resolves: rhbz#1255285 - cleanup_groups should sanitize dn of groups- Resolves: rhbz#1251349 - sysdb sudo search doesn't escape special characters- Resolves: rhbz#1232738 - Cache is not updated after user is deleted from ldap server- Resolves: rhbz#1227860 - Provide a way to disable the cleanup task - Resolves: rhbz#1227863 - ignore_group_members doesn't work for subdomains- Resolves: rhbz#1226834 - id lookup for non-root domain users doesn't return all groups on first attempt- Resolves: rhbz#1225614 - IPA enumeration provider crashes- Resolves: rhbz#1212610 - sssd ad groups work intermittently- Resolves: rhbz#1215765 - sssd nss responder gets wrong number of secondary groups- Resolves: rhbz#1221358 - SSSD doesn't work with ID mapping and disabled subdomains- Resolves: rhbz#1219844 - Unable to resolve group memberships for AD users when using sssd-1.12.2-58.el7_1.6.x86_64 client in combination with ipa-server-3.0.0-42.el6.x86_64 with AD Trust- Resolves: rhbz#1216094 - /usr/libexec/sssd/selinux_child crashes and gets avc denial when ssh- Include several upstream fixes related to ID views - Resolves: rhbz#1215195 - Override for IPA users with login does not list user all groups - Resolves: rhbz#1213947 - Group resolution is inconsistent with group overrides - Resolves: rhbz#1213822 - Overrides with --login work in second attempt- Resolves: rhbz#1217328 - autofs provider fails when default_domain_suffix and use_fully_qualified_names set- Resolves: rhbz#1212387 - sssd_be segfault id_provider = ad src/providers/ad/ad_gpo.c:843- Resolves: rhbz#1213940 - Overridde with --login fails trusted adusers group membership resolution- Resolves: rhbz#1170910 - SSSD should not fail authentication when only allow rules are used- Resolves: rhbz#1213716 - idoverridegroup for ipa group with --group-name does not work - Resolves: rhbz#1213822 - Overrides with --login work in second attempt- Resolves: rhbz#1212017 - Sudo responder does not respect filter_users and filter_groups- Resolves: rhbz#1203642 - GPO access control looks for computer object in user's domain only- Related: rhbz#1211728 - Only set the selinux context if the context differs from the local one- Package the localauth plugin - Related: rhbz#1168357 - [RFE] Implement localauth plugin for MIT krb5 1.12- Resolves: rhbz#1207720 - id lookup resolves "Domain Local" group and errors appear in domain log- BuildRequire the proper libkrb5 version for correct localauth plugin build - Related: rhbz#1168357 - [RFE] Implement localauth plugin for MIT krb5 1.12- Resolves: rhbz#1194367 - sssd_be dumping core- Resolves: rhbz#1206121 - ldap_access_order=ppolicy: Explicitly mention in manpage that unsupported time specification will lead to sssd denying access- Resolves: rhbz#1205382 - Properly handle AD's binary objectGUID- Resolves: rhbz#1205716 - Installing sssd-common-1.12.4-18.el6 might install with wrong user account (root)- Fix a typo in DEBUG message - Related: rhbz#1173198 - [RFE] Have OpenLDAP lock out ssh keys when account naturally expires- Handle TTL=0 in SRV queries correctly - Resolves: rhbz#1171378 - Read and use the TTL value when resolving a SRV query- Cherry-pick unit test changes from upstream to allow cherry-picking sssd-1-12 patches - Remove unused LDAP provider code to avoid static analyser warnings - Related: rhbz#1168347 - Rebase sssd to 1.12.x- Resolves: rhbz#1206092 - sssd crashes intermittently in GPO code- Resolves: rhbz#1202728 - sssd-ad requires samba3, but ipa-server-trust-ad requires samba4- Resolves: rhbz#1203630 - SSSD doesn't own the GPO cache directory- Fix warning in SELinux code - Handle setups with empty default and no SELinux maps - Related: rhbz#1194302 - With empty ipaselinuxusermapdefault security context on client is staff_u - Resolves: rhbz#1202305 - sssd_be segfault on IPA(when auth with AD trusted domain) client at src/providers/ipa/ipa_s2n_exop.c:1605 - Resolves: rhbz#1201847 - SSSD downloads too much information when fetching information about groups- Fix PAM responder initgroups cache for subdomain users - Log extop failures better - Related: rhbz#1168344 - [RFE] ID Views: Support migration from the sync solution to the trust solution- Fix internal error codes broken when fixing rhbz#1036745 - Related: rhbz#1036745 - [RFE] Allow SSSD to issue shadow expiration warning even if alternate authentication method is used- Resolves: rhbz#1200093 - sssd_nss segfaults if initgroups request is by UPN and doesn't find anything- Fix Coverity warning in ldap_child - Add better debugging - Related: rhbz#1198478 - ccname_file_dummy is not unlinked on error- Resolves: rhbz#1098147 - [RFE] Implement background refresh for users, groups or other cache objects- Resolves: rhbz#1173198 - [RFE] Have OpenLDAP lock out ssh keys when account naturally expires- Initialize a pointer in ldap_child to NULL - Resolves: rhbz#1198478 - ccname_file_dummy is not unlinked on error- Relax the ldb requirement - Related: rhbz#1168347 - Rebase sssd to 1.12.x- Resolves: rhbz#1194302 - With empty ipaselinuxusermapdefault security context on client is staff_u- Resolves: rhbz#1198478 - ccname_file_dummy is not unlinked on error- Resolves: rhbz#1171378 - Read and use the TTL value when resolving a SRV query- Resolves: rhbz#1171378 - Read and use the TTL value when resolving a SRV query - Rebuild against latest krb5, add a versioned BuildRequires - Resolves: rhbz#1168357 - [RFE] Implement localauth plugin for MIT krb5 1.12- Related: rhbz#1036745 - [RFE] Allow SSSD to issue shadow expiration warning even if alternate authentication method is used- Do not mark the selinux_child helper as setuid, we don't support rootless SSSD in 6.7 - Related: rhbz#1168347 - Rebase sssd to 1.12.x- Resolves: rhbz#1168347 - Rebase sssd to 1.12.x - The rebase resolves the following RHEL bugzillas - Resolves: rhbz#1172865 - sssd.conf(5) man page gives bad advice about domains parameter - Resolves: rhbz#1172494 - PAC: krb5_pac_verify failures should not be fatal (backport fix from upstream) - Resolves: rhbz#1171782 - [RFE]: SSSD should preserve case for user uid field - Resolves: rhbz#1170910 - SSSD should not fail authentication when only allow rules are used - Resolves: rhbz#1168377 - [RFE] User's home directories and shells are not taken from AD when there is an IPA trust with AD - Resolves: rhbz#1168363 - [RFE] Add domains= option to pam_sss - Resolves: rhbz#1168344 - [RFE] ID Views: Support migration from the sync solution to the trust solution - Resolves: rhbz#1161564 - [RFE]ad provider dns_discovery_domain option: kerberos discovery is not using this option - Resolves: rhbz#1148582 - inconsistent group information when multiple ad domain sections are configured in sssd - Resolves: rhbz#1140909 - sssd.conf man page missing subdomains_provider ad support - Resolves: rhbz#1139878 - SSSD connection terminated after failing anonymous bind to IBM Tivoli Directory Server - Resolves: rhbz#1135838 - Man sssd-ldap shows parameter ldap_purge_cache_timeout with "Default: 10800 (12 hours)" - Resolves: rhbz#1135432 - Dereference code errors out when dereferencing entries protected by ACIs - Resolves: rhbz#1134942 - sssd does not recognize Windows server 2012 R2's LDAP as AD - Resolves: rhbz#1123291 - automount segfaults in sss_nss_check_header - Resolves: rhbz#1088402 - [RFE] Allow login through SSSD using multiple attributes- Resolves: rhbz#1154042 - RHEL6.6 sssd (1.11) doesn't return all group memberships against an IPA server- Resolves: rhbz#1160713 - TokenGroups for LDAP provider breaks in corner cases- Resolves: rhbz#1141814 - Password expiration policies are not being enforced by SSSD- Resolves: rhbz#1139044 - RHEL6.6 ipa user private group not found- Resolves: rhbz#1103487 - CVE-2014-0249 - sssd: incorrect expansion of group membership when encountering a non-POSIX group- Resolves: rhbz#1125187 - simple_allow_groups does not lookup groups from other AD domains- Resolves: rhbz#1127270 - sssd connect to ipa-server is long- Resolves: rhbz#1130017 - Saving group membership fails if provider is AD, POSIX attributes are used and primary group contains the user as a member- Resolves: rhbz#1111528 - Expired shadow policy user(shadowLastChange=0) is not prompted for password change- Resolves: rhbz#1132361 - use-after-free in dyndns code- Resolves: rhbz#1099290: RFE: Be able to configure sssd to honor openldap account lock to restrict access via ssh key- Use the correct sudo iterator - Related: rhbz#1118336 - sudo: invalid sudoHost filter with asterisk- Add notes about offline mode to sssd.conf - Related: rhbz#1110226 - Requests queued during transition from offline to online mode- Resolves: rhbz#1127278 - Auth fails when space in username is replaced with character set by override_default_whitespace- Resolves: rhbz#1127757 - sssd can't retrieve sudo rules when using the "default_domain_suffix" option- Resolves: rhbz#1127265 - Problems with tokengroups and ldap_group_search_base- Resolves: rhbz#1126636 - RHEL6.6 sssd not running after upgrade- Resolves: rhbz#1128612 - IFP: FQDN lookups are broken- Resolves: rhbz#1118336 - sudo: invalid sudoHost filter with asterisk- Resolves: rhbz#1110226 - Requests queued during transition from offline to online mode- Resolves: rhbz#1122873 - Failover does not always happen from SRV to hostname resolution(via /etc/hosts) - Remove spurious systemctl call on %postun- Resolves: rhbz#1111317 - [RFE] Add option for sssd to replace space with specified character in LDAP group- Resolves: rhbz#1109188 - dereferencing control failure against openldap server- Resolves: rhbz#1084532 - sssd_sudo process segfaults- Resolves: rhbz#1122158 - ad: group membership is empty when id mapping is off and tokengroups are enabled- Resolves: rhbz#1118541 - Floating point exception using ldap- Resolves: rhbz#1042922 - [RFE] Add fallback to sudoRunAs when sudoRunAsUser is not defined and no ldap_sudorule_runasuser mapping has been defined in SSSD- Resolves: rhbz#1120508 - tokengroups do not work with id_provider=ldap- Fix potential NULL dereference in IFP code - Related: rhbz#1110369 - sssd is started before messagebus, making sssd-ifp fail- BuildRequire the latest libini_config - Related: #1051164 - Rebase SSSD to 1.11+ in RHEL6- Resolves: rhbz#1110369 - sssd is started before messagebus, making sssd-ifp fail- Resolves: rhbz#1104145 - public key validator is too strict and does not allow newlines anywhere in the public key string, not even at the end- Rebase to 1.11.6 - Resolves: #1051164 - Rebase SSSD to 1.11+ in RHEL6- Rebuild against new ding-libs - Related: #1051164 - Rebase SSSD to 1.11+ in RHEL6- Backport the InfoPipe patches needed for Sat6 integration - Related: #1051164 - Rebase SSSD to 1.11+ in RHEL6- Resolves: #1085412 - SSSD Crashes when storage experiences high latency- Resolves: #1051164 - Rebase SSSD to 1.11+ in RHEL6Resolves: #1036168 - sssd can't retrieve auto.master when using the "default_domain_suffix"- Resolves: #1065534 - SSSD pam module accepts usernames with leading spaces- Resolves: #1038098 - sssd_nss grows memory footprint when netgroups are requested- Allow combination of proxy id backend and LDAP auth backend - Resolves: #1025813 - SSSD: Allow for custom attributes in RDN when using id_provider = proxy- Inherit UID limits for subdomains - Resolves: #1020905 - Creating system accounts on a IdM client takes up to 10 minutes when AD trust is configured in the IdM.- Do not crash when LDAP disconnects while a search is still in progress - Resolves: #1019979 - sssd_be segfault when authenticating against active directory- More upstream fixes to prevent memcache crashes - Related: #997406 - sssd_nss core dumps under load- Resolves: #1002929 - sssd_be segfaults if IPA dynamic DNS update times out- Make IPA SELinux provider aware of subdomain users - A better version of already committed patch - Resolves: #954342 - In IPA AD trust setup, the sssd logs throws 'sysdb_search_user_by_name failed' error when AD user tries to login via ipa client.- Resolves: #997406 - sssd_nss core dumps under load - Resolves: #984814 - sssd_nss terminated with segmentation fault- Resolves: #1002161 - large number of sudo rules results in error - Unable to create response: Invalid argument- Silence restorecon on clean install - Resolves: #987456 - RHEL6 sssd upgrade restorecon workaround for /var/lib/sss/mc context- Make IPA SELinux provider aware of subdomain users - Resolves: #954342 - In IPA AD trust setup, the sssd logs throws 'sysdb_search_user_by_name failed' error when AD user tries to login via ipa client.- Print password complexity hint when password change fails with constraint violation - Related: #983028 - passwd returns "Authentication token manipulation error" when entering wrong current password- Resolves: #983028 - passwd returns "Authentication token manipulation error" when entering wrong current password- Resolves: #948830 - sssd do too many disk writes causing delay in "getent netgroup allmachines-netgroup" nested netgroups.- Resolves: #984814 - sssd_nss terminated with segmentation fault- Resolves: #966757 - SSSD failover doesn't work if the first DNS server in resolv.conf is unavailable- Resolves: #963235 - sssd_be crashing with nested ldap groups- Apply a forgotten dependency for patch #254 - Related: #916997 - getgrnam / getgrgid for large user groups is too slow due to range retrieval functionality - Add two fixes for better handling of faulty SRV processing - Related: #954275 - sssd fails connect to IPA server during boot when spanning tree is enabled in network router. - Remove enumerate=true from example in man page - Related: #988381 - clarify the disadvantages of enumeration in sssd.conf- Resolves: #914433 - sssd pam write_selinux_login_file creating the temp file for SELinux data failed- Resolves: #916997 - getgrnam / getgrgid for large user groups is too slow due to range retrieval functionality- Resolves: #918394 - sssd etas 99% CPU and runs out of file descriptors when clearing cache- Resolves: #924113 - man sssd-sudo has wrong title- Resolves: #924397 - document what does access_provider=ad do- Use permissive control when adding ghost users - Resolves: #928797 - cyclic group memberships may not work depending on order of operations- Set correct state of SRV servers on resolving error - Resolves: #954275 - sssd fails connect to IPA server during boot when spanning tree is enabled in network router.- Resolves: #954323 - SSSD doesn't display warning for last grace login.- Format patch to configure sysv script differently - RHEL-6 patch(1) apparently doesn't like the output of git format-patch -M -C and doesn't properly copy files on renames - Resolves: #971435 - Enhance sssd init script so that it would source a configuration.- Resolves: #973345 - SSSD service randomly dies- Resolves: #971435 - Enhance sssd init script so that it would source a configuration- Resolves: #961356 - SUDO is not working for users from trusted AD domain- Resolves: #970519 - [RFE] Add support for suppressing group members- Resolves: #976273 - [RFE] Add a new override_homedir expansion for the "original value"- Resolves: #978966 - sudoHost mismatch response is incorrect sometimes- Clarify the min_id/max_id limits further - Resolves: #978994 - SSSD filter out ldap user/group if uid/gid is zero- Resolves: #979046 - sssd_be goes to 99% CPU and causes significant login delays when client is under load- Resolves: #986379 - sss_cache -N/-n should invalidate the hash table in sssd_nss- Resolves: #988525 - sssd fails instead of skipping when a sudo ldap filter returns entries with multiple CNs- Mention that enumeration should be discouraged - Resolves: #988381 - clarify the disadvantages of enumeration in sssd.conf- Call restorecon on memcache files to force the right context on upgrades - Resolves: #987456 - RHEL6 sssd upgrade restorecon workaround for /var/lib/sss/mc context- Resolves: #987479 - libsss_sudo should depend on sudo package with sssd support- Resolves: #951086 - sssd_pam segfaults if sssd_be is stuck- Resolves: #967636 - SSSD frequently fails to return automount maps from LDAP- Resolves: #953165 - Enabling enumeration causes sssd_be process to utilize 100% of the CPU- Resolves: #906398 - sssd_be crashes sometimes- Resolves: #950874: Simple access control always denies uppercased users in case insensitive domain- Resolves: #921454: Resolve local group members in LDAP groups- Resolves: rhbz#911299 - sssd: simple access provider flaw prevents intended ACL use when client to an AD provider- Fix pwd_expiration_warning=0 - Resolves: rhbz#911329 - pwd_expiration_warning has wrong default for Kerberos- Resolves: rhbz#911329 - pwd_expiration_warning has wrong default for Kerberos- Resolves: rhbz#872827 - Serious performance regression in sssd- Resolves: rhbz#888614 - Failure in memberof can lead to failed database update- Resolves: rhbz#903078 - TOCTOU race conditions by copying and removing directory trees- Resolves: rhbz#903078 - Out-of-bounds read flaws in autofs and ssh services responders- Resolves: rhbz#902716 - Rule mismatch isn't noticed before smart refresh on ppc64 and s390x- Resolves: rhbz#896476 - SSSD should warn when pam_pwd_expiration_warning value is higher than passwordWarning LDAP attribute.- Resolves: rhbz#902436 - possible segfault when backend callback is removed- Resolves: rhbz#895132 - Modifications using sss_usermod tool are not reflected in memory cache- Resolves: rhbz#894302 - sssd fails to update to changes on autofs maps- Resolves: rhbz894381 - memory cache is not updated after user is deleted from ldb cache- Resolves: rhbz895615 - ipa-client-automount: autofs failed in s390x and ppc64 platform- Resolves: rhbz#894997 - sssd_be crashes looking up members with groups outside the nesting limit- Resolves: rhbz#895132 - Modifications using sss_usermod tool are not reflected in memory cache- Resolves: rhbz#894428 - wrong filter for autofs maps in sss_cache- Resolves: rhbz#894738 - Failover to ldap_chpass_backup_uri doesn't work- Resolves: rhbz#887961 - AD provider: getgrgid removes nested group memberships- Resolves: rhbz#878583 - IPA Trust does not show secondary groups for AD Users for commands like id and getent- Resolves: rhbz#874579 - sssd caching not working as expected for selinux usermap contexts- Resolves: rhbz#892197 - Incorrect principal searched for in keytab- Resolves: rhbz#891356 - Smart refresh doesn't notice "defaults" addition with OpenLDAP- Resolves: rhbz#878419 - sss_userdel doesn't remove entries from in-memory cache- Resolves: rhbz#886848 - user id lookup fails for case sensitive users using proxy provider- Resolves: rhbz#890520 - Failover to krb5_backup_kpasswd doesn't work- Resolves: rhbz#874618 - sss_cache: fqdn not accepted- Resolves: rhbz#889182 - crash in memory cache- Resolves: rhbz#889168 - krb5 ticket renewal does not read the renewable tickets from cache- Resolves: rhbz#886091 - Disallow root SSH public key authentication - Add default section to switch statement (Related: rhbz#884666)- Resolves: rhbz#886038 - sssd components seem to mishandle sighup- Resolves: rhbz#888800 - Memory leak in new memcache initgr cleanup function- Resolves: rhbz#888614 - Failure in memberof can lead to failed database update- Resolves: rhbz#885078 - sssd_nss crashes during enumeration if the enumeration is taking too long- Related: rhbz#875851 - sysdb upgrade failed converting db to 0.11 - Include more debugging during the sysdb upgrade- Resolves: rhbz#877972 - ldap_sasl_authid no longer accepts full principal- Resolves: rhbz#870045 - always reread the master map from LDAP - Resolves: rhbz#876531 - sss_cache does not work for automount maps- Resolves: rhbz#884666 - sudo: if first full refresh fails, schedule another first full refresh- Resolves: rhbz#880956 - Primary server status is not always reset after failover to backup server happened - Silence a compilation warning in the memberof plugin (Related: rhbz#877974) - Do not steal resolv result on error (Related: rhbz#882076)- Resolves: rhbz#882923 - Negative cache timeout is not working for proxy provider- Resolves: rhbz#884600 - ldap_chpass_uri failover fails on using same hostname- Resolves: rhbz#858345 - pam_sss(crond:account): Request to sssd failed. Timer expired- Resolves: rhbz#878419 - sss_userdel doesn't remove entries from in-memory cache- Resolves: rhbz#880176 - memberUid required for primary groups to match sudo rule- Resolves: rhbz#885105 - sudo denies access with disabled ldap_sudo_use_host_filter- Resolves: rhbz#883408 - Option ldap_sudo_include_regexp named incorrectly- Resolves: rhbz#880546 - krb5_kpasswd failover doesn't work - Fix the error handler in sss_mc_create_file (Related: #789507)- Resolves: rhbz#882221 - Offline sudo denies access with expired entry_cache_timeout - Fix several bugs found by Coverity and clang: - Check the return value of diff_gid_lists (Related: #869071) - Move misplaced sysdb assignment (Related: #827606) - Remove dead assignment (Related: #827606) - Fix copy-n-paste error in the memberof plugin (Related: #877974)- Resolves: rhbz#882923 - Negative cache timeout is not working for proxy provider - Link sss_ssh_authorizedkeys and sss_ssh_knowhostsproxy with the client libraries (Related: #870060) - Move sss_ssh_knownhosts documentation to the correct section (Related: #870060)- Resolves: rhbz#884480 - user is not removed from group membership during initgroups - Fix incorrect synchronization in mmap cache (Related: #789507)- Resolves: rhbz#883336 - sssd crashes during start if id_provider is not mentioned- Resolves: rhbz#882290 - arithmetic bug in the SSSD causes netgroup midpoint refresh to be always set to 10 seconds- Resolves: rhbz#877974 - updating top-level group does not reflect ghost members correctly - Resolves: rhbz#880159 - delete operation is not implemented for ghost users- Resolves: rhbz#881773 - mmap cache needs update after db changes- Resolves: rhbz#875677 - password expiry warning message doesn't appear during auth - Fix potential NULL dereference when skipping built-in AD groups (Related: rhbz#874616) - Add missing parameter to DEBUG message (Related: rhbz#829742)- Resolves: rhbz#882076 - SSSD crashes when c-ares returns success but an empty hostent during the DNS update - Do not version libsss_sudo, it's not supposed to be linked against, but dlopened (Related: rhbz#761573)- Resolves: rhbz#880140 - sssd hangs at startup with broken configurations- Resolves: rhbz#878420 - SIGSEGV in IPA provider when ldap_sasl_authid is not set- Resolves: rhbz#874616 - Silence the DEBUG messages when ID mapping code skips a built-in group- Resolves: rhbz#824244 - sssd does not warn into sssd.log for broken configurations- Resolves: rhbz#874673 - user id lookup fails using proxy provider - Fix a possibly uninitialized variable in the LDAP provider - Related: rhbz#877130- Resolves: rhbz#878262 - ipa password auth failing for user principal name when shorter than IPA Realm name - Resolves: rhbz#871843 - Nested groups are not retrieved appropriately from cache- Resolves: rhbz#870238 - IPA client cannot change AD Trusted User password- Resolves: rhbz#877972 - ldap_sasl_authid no longer accepts full principal- Resolves: rhbz#861075 - SSSD_NSS failure to gracefully restart after sbus failure- Resolves: rhbz#877354 - ldap_connection_expire_timeout doesn't expire ldap connections- Related: rhbz#877126 - Bump the release tag- Resolves: rhbz#877126 - subdomains code does not save the proper user/group name- Resolves: rhbz#877130 - LDAP provider fails to save empty groups - Related: rhbz#869466 - check the return value of waitpid()- Resolves: rhbz#870039 - sss_cache says 'Wrong DB version'- Resolves: rhbz#875740 - "defaults" entry ignored- Resolves: rhbz#875738 - offline authentication failure always returns System Error- Resolves: rhbz#875851 - sysdb upgrade failed converting db to 0.11- Resolves: rhbz#870278 - ipa client setup should configure host properly in a trust is in place- Resolves: rhbz#871160 - sudo failing for ad trusted user in IPA environment- Resolves: rhbz#870278 - ipa client setup should configure host properly in a trust is in place- Resolves: rhbz#869678 - sssd not granting access for AD trusted user in HBAC rule- Resolves: rhbz#872180 - subdomains: Invalid sub-domain request type - Related: rhbz#867933 - invalidating the memcache with sss_cache doesn't work if the sssd is not running- Resolves: rhbz#873988 - Man page issue to list 'force_timeout' as an option for the [sssd] section- Resolves: rhbz#873032 - Move sss_cache to the main subpackage- Resolves: rhbz#873032 - Move sss_cache to the main subpackage - Resolves: rhbz#829740 - Init script reports complete before sssd is actually working - Resolves: rhbz#869466 - SSSD starts multiple processes due to syntax error in ldap_uri - Resolves: rhbz#870505 - sss_cache: Multiple domains not handled properly - Resolves: rhbz#867933 - invalidating the memcache with sss_cache doesn't work if the sssd is not running - Resolves: rhbz#872110 - User appears twice on looking up a nested group- Resolves: rhbz#871576 - sssd does not resolve group names from AD - Resolves: rhbz#872324 - pam: fd leak when writing the selinux login file in the pam responder - Resolves: rhbz#871424 - authconfig chokes on sssd.conf with chpass_provider directive- Do not send SIGKILL to service right after sending SIGTERM - Resolves: #771975 - Fix the initial sudo smart refresh - Resolves: #869013 - Implement password authentication for users from trusted domains - Resolves: #869071 - LDAP child crashed with a wrong keytab - Resolves: #869150 - The sssd_nss process grows the memory consumption over time - Resolves: #869443- BuildRequire selinux-policy so that selinux login support is built in - Resolves: #867932- Do not segfault if namingContexts contain no values or multiple values - Resolves: rhbz#866542- Fix the "ca" translation of the sssd-simple manual page - Related: rhbz#827606 - Rebase SSSD to 1.9 in 6.4- New upstream release 1.9.2- Rebase to 1.9.1- Require the latest libldb- Rebase to 1.9.0 - Resolves: rhbz#827606 - Rebase SSSD to 1.9 in 6.4- Rebase to 1.9.0 RC1 - Resolves: rhbz#827606 - Rebase SSSD to 1.9 in 6.4 - Bump the selinux-policy version number to pull in required fixes- Resolves: rhbz#840089 - Update the shadowLastChange attribute with days since the Epoch, not seconds- Fix protocol break for services map - Related: rhbz#825028 - Service lookups by port number doesn't work on s390x/ppc64 arches- Resolves: rhbz#825028 - Service lookups by port number doesn't work on s390x/ppc64 arches- Resolves: rhbz#824616 - sssd_nss crashes when configured with use_fully_qualified_names = true- Resolves: rhbz#824062 - sssd_be crashed with SIGSEGV in _tevent_schedule_immediate()- Resolves: rhbz#822236 - SSSD netgroups do not honor entry_cache_nowait_percentage- Resolves: rhbz#820759 - AVC denial seen on sssd upgrade during ipa-client upgrade - Resolves: rhbz#821044 - sss_groupadd no longer detects duplicate GID numbers- Resolves: rhbz#818642 - Auth fails for user with non-default attribute names - Resolves: rhbz#819063 - sssd fails to provide partial data till paged search returns "Size Limit Exceeded" - Resolves: rhbz#820585 - Group enumeration fails in proxy provider- Resolves: rhbz#816616 - group members are now lowercased in case insensitive domains- Resolves: rhbz#805431 - NFS files/folders are mapped to nobody user if NFS top level directory is chowned by a SSSD user- Resolves: rhbz#805924 - SSSD should attempt to get the RootDSE after binding - Resolves: rhbz#814237 - sdap_check_aliases must not error when detects the same user - Resolves: rhbz#812281 - autofs client: map name length used as key length - Related: rhbz#784870 - SSSD fails during autodetection of search bases for new LDAP features - Related: rhbz#814269 - sssd-1.5.1-66.el6_2.3.x86_64 freezes- Fix typo in patch for SSH umask - Related: rhbz#808107 - Coverity revealed memory management defects- Resolves: rhbz#808458 - Authconfig crashes when sets krb realm - Resolves: rhbz#808597 - sssd_nss crashes on request when no back end is running - Resolves: rhbz#808107 - Coverity revealed memory management defects- Related: rhbz#805452 - Unable to lookup user, group, netgroup aliases with case_sensitive=false- Resolves: rhbz#804057 - Initial service lookups having name with uppercase alphabets doesn't work - Resolves: rhbz#804065 - Service lookup using case-sensitive protocol names doesn't work when case_sensitive=false - Resolves: rhbz#805281 - sssd: Uses the wrong key when there a multiple realms in a single keytab - Resolves: rhbz#805452 - Unable to lookup user, group, netgroup aliases with case_sensitive=false - Resolves: rhbz#805918 - Wrong resolv_status might cause crash when name resolution times out - Resolves: rhbz#805431 - NFS files/folders are mapped to nobody user if NFS top level directory is chowned by a SSSD user- Related: rhbz#802207 - getent netgroup hangs when "use_fully_qualified_names = TRUE" in sssd - Resolves: rhbz#801719 - "Error looking up public keys" while ssh to replica using IP address - Resolves: rhbz#803659 - Service lookup shows case sensitive names twice with case_sensitive=false - Resolves: rhbz#803842 - Unable to bind to LDAP server when minssf set - Resolves: rhbz#805034 - accessing an undefined variable might cause crash - Resolves: rhbz#805108 - sss_ssh_knownhostproxy infinite loop hangs SSH login- Update translations - Resolves: rhbz#802372 - Pick up latest translation files for SSSD - Resolves: rhbz#802207 - getent netgroup hangs when "use_fully_qualified_names = TRUE" in sssd - Related: rhbz#801451 - Logging in with ssh pub key should consult authentication authority policies- Resolves: rhbz#801407 - sssd_nss gets hung processing identical search requests - Resolves: rhbz#801451 - Logging in with ssh pub key should consult authentication authority policies - Resolves: rhbz#795562 - Infinite loop checking Kerberos credentials - Resolves: rhbz#798317 - sssd crashes when ipa_hbac_support_srchost is set to true - Resolves: rhbz#799039 - --debug option for sss_debuglevel doesn't work - Resolves: rhbz#799915 - Unable to lookup netgroups with case_sensitive=false - Resolves: rhbz#799929 - Raise limits for max num of files sssd_nss/sssd_pam can use - Resolves: rhbz#799971 - sssd_be crashes on shutdown - Resolves: rhbz#801533 - sssd_be crashes when resolving non-trivial nested group structure - Resolves: rhbz#801368 - Group lookups doesn't return members with proxy provider configured - Resolves: rhbz#801377 - getent returns non-existing netgroup name, when sssd is configured as proxy provider- Do not auto-upgrade debug levels - Tool still available for manual use - Reverts: rhbz#753763 - Provide logging configuration compatibility on SSSD 1.5/1.6 upgrade - Resolves: rhbz#798881 - Install-time warnings - Resolves: rhbz#798774 - IPA provider should assume that ipa_domain is also the dns_discovery_domain - Resolves: rhbz#798655 - Password logins failing due to a process with high UID- Fix explicit requires to use openldap instead of openldap-libs - Related: rhbz#797282 - sssd-1.5.1-66.el6.x86_64 needs openldap >= openldap-2.4.23-20.el6.x86_64- Fix multilib-clean issue due to upgrade script - Remove old copy from the spec file - Related: rhbz#753763 - Provide logging configuration compatibility on SSSD 1.5/1.6 upgrade- Fix multilib-clean issue due to upgrade script - Fix typo in the patch - Related: rhbz#753763 - Provide logging configuration compatibility on SSSD 1.5/1.6 upgrade- Fix multilib-clean issue due to upgrade script - Use a patch and install the script to python_sitelib - Related: rhbz#753763 - Provide logging configuration compatibility on SSSD 1.5/1.6 upgrade- Fix multilib-clean issue due to upgrade script - Related: rhbz#753763 - Provide logging configuration compatibility on SSSD 1.5/1.6 upgrade- Resolves: rhbz#753763 - Provide logging configuration compatibility on SSSD 1.5/1.6 upgrade - Resolves: rhbz#785871 - wrong build dependency on nscd - Resolves: rhbz#785873 - IPA host search base cannot be set - Resolves: rhbz#791208 - Entries lacking a POSIX username value break group lookups - Resolves: rhbz#796307 - Simple Paged Search control needs to be used more sparingly - Resolves: rhbz#797282 - sssd-1.5.1-66.el6.x86_64 needs openldap >= openldap-2.4.23-20.el6.x86_64 - Resolves: rhbz#787035 - ipa - sssd slow response with thousands of user entries - Resolves: rhbz#742509 - [RFE] Add SSSD Tool to purge cache - Resolves: rhbz#772297 - Fails to update if all nisNetgroupTriple or memberNisNetgroup entries are deleted from a netgroup - Resolves: rhbz#783138 - Backend occasionally goes offline under heavy load - Resolves: rhbz#797975 - sssd_be: The requested target is not configured is logged at each login - Resolves: rhbz#735422 - Rebase SSSD to 1.8.0 in RHEL 6.3- Resolves: rhbz#761570 - [RFE] support looking up autofs maps via SSSD - Resolves: rhbz#788979 - sssd crashes during initgroups against a user belonging to nested rfc2307bis group- Handle filtering python Provides in a safer way - Related: rhbz#735422 - Rebase SSSD to 1.8.0 in RHEL 6.3- Related: rhbz#735422 - Rebase SSSD to 1.8.0 in RHEL 6.3 - Resolves: rhbz#786553 - sssd on ppc64 doesn't pull cyrus-sasl-gssapi.ppc as a dependancy - Resolves: rhbz#785909 - --debug-timestamps=1 is not passed to providers - Resolves: rhbz#785908 - ldap_*_search_base doesn't fully limit the group and netgroup search base correctly - Resolves: rhbz#785907 - [RFE] Add support to request canonicalization on krb AS requests - Resolves: rhbz#785905 - [RFE] DEBUG timestamps should offer higher precision - Resolves: rhbz#785904 - [RFE] SSSD should have --version option - Resolves: rhbz#785902 - Errors with empty loginShell and proxy provider - Resolves: rhbz#785898 - Enable midway cache refresh by default - Resolves: rhbz#785888 - sssd returns empty netgroup at a second request for a non-existing netgroup - Resolves: rhbz#785884 - Honour TTL when resolving host names - Resolves: rhbz#785883 - check DNS records before updates - Resolves: rhbz#785881 - List the keytab to pick the princiapl to use instead of guessing - Resolves: rhbz#785880 - debug_level in sssd.conf overrides command-line - Resolves: rhbz#785879 - sss_obfuscate/python config parser modifies config file too much - Resolves: rhbz#785877 - on reconnect we need to detect that a ipa/ds server has been reinitialized - Resolves: rhbz#785741 - sssd.api.conf and sssd.api.d should not be in /etc - Resolves: rhbz#773660 - Kerberos errors should go to syslog - Resolves: rhbz#772163 - Iterator loop reuse cases a tight loop in the native IPA netgroups code - Resolves: rhbz#771706 - sssd_be crashes during auth when there exists UTF source host group in an hbacrule - Resolves: rhbz#771702 - sssd_pam crashes during change password operation against a IPA server - Resolves: rhbz#771361 - case_sensitive function not working as intended for ldap - Resolves: rhbz#768935 - Crash when applying settings - Resolves: rhbz#766941 - The full dyndns update message should be logged into debug logs - Resolves: rhbz#766930 - [RFE] Add a new option to override home directory value - Resolves: rhbz#766913 - [RFE] Add option to select validate and FAST keytab principal name - Resolves: rhbz#766907 - Use [...] for IPv6 addresses in kdc info files - Resolves: rhbz#766904 - [RFE] Create a command line tool to change the debug levels on the fly - Resolves: rhbz#766876 - [RFE] Make HBAC srchost processing optional - Resolves: rhbz#766141 - [RFE] SSSD should support FreeIPA's internal netgroup representation - Resolves: rhbz#761582 - [RFE] Add ldap_sasl_minssf option - Resolves: rhbz#759186 - [abrt] sssd-1.6.3-1.fc16: ping_check: Process /usr/sbin/sssd was killed by signal 11 (SIGSEGV) - Resolves: rhbz#755506 - [RFE] Add host-based (pam_host_attr) access control - Resolves: rhbz#753876 - [RFE] Add support for the services map - Resolves: rhbz#746181 - "getgrgid call returned more than one result" after group name change in MSAD - Resolves: rhbz#744197 - [RFE] close LDAP connection to the server when idle for some (configurable) time - Resolves: rhbz#742510 - [RFE] Separate Cache Timeouts for SSSD - Related: rhbz#742509 - [RFE] Add SSSD Tool to purge cache - Resolves: rhbz#742052 - id -G group resolution takes extremely long - Resolves: rhbz#739312 - [RFE] sssd does not set shadowLastChange - Resolves: rhbz#736150 - [RFE] SSSD should support multiple search bases - Resolves: rhbz#735827 - [RFE] Ability to set a domain as case sensitive or insensitive - Resolves: rhbz#735405 - [RFE] Option to disable warnings for unknown users - Resolves: rhbz#728212 - [RFE] sssd does not handle when paging control disabled for openldap - Resolves: rhbz#726467 - SSSD takes 30+ seconds to login - Resolves: rhbz#721289 - Process /usr/libexec/sssd/sssd_be was killed by signal 11 during auth when password for the user is not set- Resolves: rhbz#773655 - Race-condition bug in LDAP auth provider- Resolves: rhbz#753842 - sssd_nss crashes when passed invalid UTF-8 for the username in getpwnam() - Resolves: rhbz#758157 - LDAP failover not working if server refuses connections- Related: rhbz#750359 - Major cached entry performance regression- Resolves: rhbz#750359 - Major cached entry performance regression- Resolves: rhbz#749822 - SSSD may go into infinite loop during RFC2307bis initgroups when groups appear in multiple nesting levels- Resolves: rhbz#749256 - SELinux errors with SSSD Downgrade- Resolves: rhbz#748924 - RHEL6.1/sssd_pam segmentation fault- Resolves: rhbz#748412 - Memory leaks during the initgroups() operation- Related: rhbz#743841 - SSSD can crash due to dbus server removing a UNIX socket- Resolves: rhbz#742288 - RFC2307bis initgroups calls are slow - Resolves: rhbz#746654 - SSSD backend gets killed on slow systems - Related: rhbz#743925 - HBAC processing is very slow when dealing with FreeIPA deployments with large numbers of hosts Fixes a crash introduced by the earlier patch. - Related: rhbz#733382 - SSSD should pick a user/group name when there are multi-valued names Fixes for internationalization- Related: rhbz#742278 - Rework the example config- Resolves: rhbz#743925 - HBAC processing is very slow when dealing with FreeIPA deployments with large numbers of hosts - Resolves: rhbz#745966 - sssd_pam segfaults on sssd restart - Related: rhbz#743841 - SSSD can crash due to dbus server removing a UNIX socket- Resolves: rhbz#742278 - Rework the example config - Resolves: rhbz#746037 - Only access sssd_nss internal hash table if it was initialized - Resolves: rhbz#742526 - SSSD's man pages are missing information - Resolves: rhbz#743841 - SSSD can crash due to dbus server removing a UNIX socket- Resolves: rhbz#738621 - Lookup fails for non-primary usernames with multi-valued uid - Resolves: rhbz#738629 - Group lookups doesn't return it's member for sometime when the member has multi-valued uid - Resolves: rhbz#742295 - Use an explicit base 10 when converting uidNumber to integer - Resolves: rhbz#733382 - SSSD should pick a user/group name when there are multi-valued names- Resolves: rhbz#741751 - HBAC rule evaluation does not properly handle host groups - Resolves: rhbz#740501 - SSSD not functional after "self" reboot - Resolves: rhbz#742539 - HBAC: Hostname comparisons should be case-insensitive- Resolves: rhbz#728343 - SSSD taking 5 minutes to log in - Resolves: rhbz#739850 - Coverity defects newly introduced in rhel 6.2- Resolves: rhbz#737157 - "System error" appears in log during change password operation of a user in openldap server with ppolicy enabled - Resolves: rhbz#737172 - "Unknown (private extension) error(21853), (null)" messages are logged during change password operation of a user in openldap server with ppolicy enabled- Resolves: rhbz#736314 - sssd crashes during auth while there exists multiple external hosts along with managed host - Resolves: rhbz#732974 - [RFE] Have SSSD cache properly with krb5_validate = True and SElinux enabled- Resolves: rhbz#732010 - LDAP+GSSAPI needs explicit Kerberos realm - Resolves: rhbz#733382 - SSSD should pick a user/group name when there are multi-valued names - Resolves: rhbz#733409 - Improve password policy error message - Resolves: rhbz#733663 - Authentication fails when there exists an empty hbacsvcgroup - Resolves: rhbz#732935 - Add LDAP provider option to set LDAP_OPT_X_SASL_NOCANON - Resolves: rhbz#734101 - sssd blocks login of ipa-users- Related: rhbz#728353 - Resolve RPMDiff errors in SSSD- Resolves: rhbz#728961 - Provide a mechanism for vetoing the use of certain shells- Related: rhbz#728267 - When non-posix groups are skipped, initgroups returns random GID- Related: rhbz#726466 - HBAC rule evaluation does not support extended UTF-8 languages - Related: rhbz#718250 - Remove DENY rules from the HBAC access provider - Fixes an issue on big endian platforms- Resolves: rhbz#700828 - Process /usr/libexec/sssd/sssd_be was killed by signal 11 (SIGSEGV) when ldap_uri is misconfigured - Resolves: rhbz#726438 - sssd doesn't honor ldap supportedControls - Resolves: rhbz#726466 - HBAC rule evaluation does not support extended UTF-8 languages - Resolves: rhbz#718250 - Remove DENY rules from the HBAC access provider - Resolves: rhbz#728267 - When non-posix groups are skipped, initgroups returns random GID - Resolves: rhbz#726475 - sssd_pam leaks file descriptors - Resolves: rhbz#725868 - Explicitly ignore groups with gidNumber = 0- Related: rhbz#721052 - sssd does not handle kerberos server IP change - Use ares_search instead of ares_query to honor - search entries in /etc/resolv.conf- Resolves: rhbz#711416 - During the change password operation the ccache is - not replaced by a new one if the old one isn't - active anymore - Resolves: rhbz#715609 - Certificate validation fails with message - "Connection error: TLS: hostname does not match CN - in peer certificate" - Resolves: rhbz#719089 - IPA dynamic DNS update mangles AAAA records - Resolves: rhbz#721052 - sssd does not handle kerberos server IP change - Honor TTL values when resolving hostnames- Resolves: rhbz#713961 - libsss_ldap segfault at login against OpenLDAP - Resolves: rhbz#713438 - sssd shuts down if inotify crashes- Resolves: rhbz#709081 - sssd.$arch should require sssd-client.$arch- Resolves: rhbz#709342 - Typo in negative cache notification for initgroups() - Resolves: rhbz#708009 - "renew_all_tgts" and "renew_handlers" messages are - being logged multiple times when the provider comes - back online - Resolves: rhbz#707997 - The IPA provider does not work with IPv6 - Resolves: rhbz#677327 - [RFE] Support overriding attribute value - Resolves: rhbz#692090 - SSSD is not populating nested groups in - Active Directory- Resolves: rhbz#707627 - Include valid "ldap_uri" formats in sssd-ldap man - page- Resolves: rhbz#707513 - Unable to authenticate users when username - contains "\0"- Resolves: rhbz#698723 - kpasswd fails when using sssd and - kadmin server != kdc server- Resolves: rhbz#707282 - latest sssd fails if ldap_default_authtok_type is - not mentioned - Resolves: rhbz#692404 - rfc2307bis groups are being enumerated even when the - gidNumber is out of the range of min_id,max_id. - Resolves: rhbz#699530 - Users with a local group as their primary GID are - denied access by the simple access provider - Resolves: rhbz#700172 - RFE: SSSD should support paged LDAP lookups - Resolves: rhbz#705434 - IPA provider fails initgroups() if user is not a - member of any group - Resolves: rhbz#703624 - SSSD's async resolver only tries the first - nameserver in /etc/resolv.conf- Resolves: rhbz#701700 - sssd client libraries use select() but should use - poll() instead- Related: rhbz#693818 - Automatic TGT renewal overwrites cached password - Fix segfault in TGT renewal- Related: rhbz#693818 - Automatic TGT renewal overwrites cached password - Fix typo causing build breakage- Resolves: rhbz#693818 - Automatic TGT renewal overwrites cached password- Resolves: rhbz#696972 - Filters not honoured against fully-qualified users- Resolves: rhbz#694146 - SSSD consumes GBs of RAM, possible memory leak- Related: rhbz#691678 - SSSD needs to fall back to 'cn' for GECOS - information- Related: rhbz#694783 - SSSD crashes during getent when anonymous bind is - disabled- Resolves: rhbz#694444 - Unable to resolve SRV record when called with - _srv_, in ldap_uri - Related: rhbz#694783 - SSSD crashes during getent when anonymous bind is - disabled- Resolves: rhbz#694783 - SSSD crashes during getent when anonymous bind is - disabled- Resolves: rhbz#692472 - Process /usr/libexec/sssd/sssd_be was killed by - signal 11 (SIGSEGV) - Fix is to not attempt to resolve nameless servers- Resolves: rhbz#691678 - SSSD needs to fall back to 'cn' for GECOS - information- Resolves: rhbz#690866 - Groups with a zero-length memberuid attribute can - cause SSSD to stop caching and responding to - requests- Resolves: rhbz#690131 - Traceback messages seen while interrupting - sss_obfuscate using ctrl+d - Resolves: rhbz#690421 - [abrt] sssd-1.2.1-28.el6_0.4: _talloc_free: Process - /usr/libexec/sssd/sssd_be was killed by signal 11 - (SIGSEGV)- Related: rhbz#683885 - SSSD should skip over groups with multiple names- Resolves: rhbz#683158 - SSSD breaks on RDNs with a comma in them - Resolves: rhbz#689886 - group memberships are not populated correctly during - IPA provider initgroups - Resolves: rhbz#683885 - SSSD should skip over groups with multiple names- Resolves: rhbz#683860 - Skip users and groups that have incomplete contents - Resolves: rhbz#688491 - authconfig fails when access_provider is set as krb5 - in sssd.conf- Resolves: rhbz#683255 - sudo/ldap lookup via sssd gets stuck for 5min - waiting on netgroup - Resolves: rhbz#683431 - sssd consumes 100% CPU - Related: rhbz#680440 - sssd does not handle kerberos server IP change- Related: rhbz#680440 - sssd does not handle kerberos server IP change - SSSD was staying with the old server if it was still online- Resolves: rhbz#682850 - IPA provider should use realm instead of ipa_domain - for base DN- Resolves: rhbz#682340 - sssd-be segmentation fault - ipa-client on - ipa-server - Resolves: rhbz#680440 - sssd does not handle kerberos server IP change - Resolves: rhbz#680442 - Dynamic DNS update fails if multiple servers are - given in ipa_server config option - Resolves: rhbz#680932 - Do not delete sysdb memberOf if there is no memberOf - attribute on the server - Resolves: rhbz#682807 - sssd_nss core dumps with certain lookups- Related: rhbz#678614 - SSSD needs to look at IPA's compat tree for netgroups - Related: rhbz#679082 - SSSD IPA provider should honor the krb5_realm option- Resolves: rhbz#679082 - SSSD IPA provider should honor the krb5_realm option - Resolves: rhbz#677318 - Does not read renewable ccache at startup- Resolves: rhbz#678593 - User information not updated on login for secondary - domains - Resolves: rhbz#678777 - IPA provider does not update removed group - memberships on initgroups- Resolves: rhbz#677588 - sssd crashes at the next tgt renewals it tries - Resolves: rhbz#678410 - name service caches names, so id command shows - recently deleted users - Resolves: rhbz#678614 - SSSD needs to look at IPA's compat tree for - netgroups- Resolves: rhbz#670511 - SSSD and sftp-only jailed users with pubkey login - Resolves: rhbz#675284 - "no matching rule" message logged on all successful - requests - Resolves: rhbz#676911 - SSSD attempts to use START_TLS over LDAPS for - authentication- Resolves: rhbz#674164 - sss_obfuscate fails if there's no domain named - "default" - Resolves: rhbz#674515 - -p option always uses empty string to obfuscate - password - Resolves: rhbz#674141 - Traceback call messages displayed while - "sss_obfuscate" command is executed as a non-root - user- Resolves: rhbz#674172 - Group members are not sanitized in nested group - processing - Put translated tool manpages into the sssd-tools subpackage- Related: rhbz#670259 - Refresh SSSD in 6.1 to 1.5.1 - Also add the updated ding-libs to the BuildRequires- Related: rhbz#670259 - Refresh SSSD in 6.1 to 1.5.1 - Explicitly require updated ding-libs- Resolves: rhbz#670259 - Refresh SSSD in 6.1 to 1.5.1 - New upstream release 1.5.1 - Addresses CVE-2010-4341 - DoS in sssd PAM responder can prevent logins - Vast performance improvements when enumerate = true - All PAM actions will now perform a forced initgroups lookup instead of just - a user information lookup - This guarantees that all group information is available to other - providers, such as the simple provider. - For backwards-compatibility, DNS lookups will also fall back to trying the - SSSD domain name as a DNS discovery domain. - Support for more password expiration policies in LDAP - 389 Directory Server - FreeIPA - ActiveDirectory - Support for ldap_tls_{cert,key,cipher_suite} config options - Assorted bugfixes- Add noverify to sssd.conf - Resolves: rhbz#627165 - TPS VerifyTest failure- Related: rhbz#644072 - Rebase SSSD to 1.5 - New upstream release 1.5.0 - Fixed issues with LDAP search filters that needed to be escaped - Add Kerberos FAST support on platforms that support it - Reduced verbosity of PAM_TEXT_INFO messages for cached credentials - Added a Kerberos access provider to honor .k5login - Addressed several thread-safety issues in the sss_client code - Improved support for delayed online Kerberos auth - Significantly reduced time between connecting to the network/VPN and - acquiring a TGT - Added feature for automatic Kerberos ticket renewal - Provides the kerberos ticket for long-lived processes or cron jobs - even when the user logs out - Added several new features to the LDAP access provider - Support for 'shadow' access control - Support for authorizedService access control - Ability to mix-and-match LDAP access control features - Added an option for a separate password-change LDAP server for those - platforms where LDAP referrals are not supported - Added support for manpage translations- Resolves: rhbz#660592 - SSSD shutdown sometimes hangs - Resolves: rhbz#660585 - getent passwd ' returns nothing if its - uidNumber gt 2147483647- Resolves: rhbz#659401 - SSSD shutdown sometimes hangs- Resolves: rhbz#645449 - 'getent passwd ' returns nothing if its - uidNumber gt 2147483647- Resolves: rhbz#658374 - sssd stops on upgrade- Resolves: rhbz#658158 - sssd stops on upgrade- Resolves: rhbz#649312 - SSSD will sometimes lose groups from the cache- Resolves: rhbz#649286 - SSSD will sometimes lose groups from the cache- Resolves: rhbz#637070 - the krb5 locator plugin isn't packaged for multilib - Resolves: rhbz#642412 - SSSD initgroups does not behave as expected- Resolves: rhbz#633406 - the krb5 locator plugin isn't packaged for multilib - Resolves: rhbz#633487 - SSSD initgroups does not behave as expected- Resolves: rhbz#633406 - the krb5 locator plugin isn't packaged for multilib- Resolves: rhbz#629949 - sssd stops on upgrade- Resolves: rhbz#625122 - GNOME Lock Screen unocks without a password- Resolves: rhbz#621307 - Password changes are broken on LDAP- Resolves: rhbz#617623 - SSSD suffers from serious performance issues on - initgroups calls- Resolves: rhbz#607233 - SSSD users cannot log in through GDM - - Real issue was that long-running services - - do not reconnect if sssd is restarted- Resolves: rhbz#591715 - sssd should emit warnings if there are problems with - /etc/krb5.keytab file- Resolves: rhbz#606836 - libcollection needs an soname bump before RHEL 6 - final - Resolves: rhbz#608661 - SASL with OpenLDAP server fails - Resolves: rhbz#608688 - SSSD doesn't properly request RootDSE attributes- New upstream bugfix release 1.2.1 - Resolves: rhbz#601770 - SSSD in RHEL 6.0 should ship with zero open Coverity - bugs. - Resolves: rhbz#603041 - Remove unnecessary option krb5_changepw_principal - Resolves: rhbz#604704 - authconfig should provide error with no trace back - if disabling sssd when sssd is not enabled - Resolves: rhbz#591873 - Connecting to the network after an offline kerberos - auth logs continuous error messages to sssd_ldap.log - Resolves: rhbz#596295 - Authentication fails for user from the second domain - when the same user name is filtered out from the - first domain - Related: rhbz#598559 - Update translation files for SSSD before RHEL 6 - final- Resolves: rhbz#593696 - Empty list of simple_allow_users causes sssd service - to fail while restart - Resolves: rhbz#600352 - Wrapping the value for "ldap_access_filter" in - parentheses causes ldap_search_ext to fail - Resolves: rhbz#600468 - Segfault in krb5_child - Related: rhbz#601770 - SSSD in RHEL 6.0 should ship with zero open Coverity - bugs.- Resolves: rhbz#598670 - Ccache file of a user is removed too early - Resolves: rhbz#599057 - Incomplete comparison of a service name in - IPA access provider - Resolves: rhbz#598496 - Failure with IPA access provider - Resolves: rhbz#599027 - Makefile typo causes SSSD not to use the - kernel keyring- New stable upstream version 1.2.0 - Support ServiceGroups for FreeIPA v2 HBAC rules - Fix long-standing issue with auth_provider = proxy - Better logging for TLS issues in LDAP - Resolves: rhbz#584001 - Rebase sssd to 1.2 - Resolves: rhbz#584017 - Unconfiguring sssd leaves KDC locator file - Resolves: rhbz#587384 - authconfig fails if krb5_kpasswd in sssd.conf - Resolves: rhbz#587743 - Need to replicate pam_ldap's pam_filter in sssd.conf - Resolves: rhbz#590134 - sssd: auth_provider = proxy regression - Resolves: rhbz#591131 - Kerberos provider needs to rewrite kdcinfo file when - going online - Resolves: rhbz#591136 - Change SSSD ipa BE to handle new structure of the - HBAC rule- Improve DEBUG logs for STARTTLS failures- New LDAP access provider allows for filtering user access by LDAP attribute - Reduced default timeout for detecting offline status with LDAP - GSSAPI ticket lifetime made configurable - Better offline->online transition support in Kerberos- Release new upstream version 1.1.91 - Enhancements when using SSSD with FreeIPA v2 - Support for deferred kinit - Support for DNS SRV records for failover- Bump up release number to avoid library sub-packages version issues with previous releases.- New upstream release 1.1.1 - Fixed the IPA provider (which was segfaulting at start) - Fixed a bug in the SSSDConfig API causing some options to revert to - their defaults - This impacted the Authconfig UI - Ensure that SASL binds to LDAP auto-retry when interrupted by a signal- Release SSSD 1.1.0 final - Fix two potential segfaults - Fix memory leak in monitor - Better error message for unusable confdb- Release candidate for SSSD 1.1 - Add simple access provider - Create subpackages for libcollection, libini_config, libdhash and librefarray - Support IPv6 - Support LDAP referrals - Fix cache issues - Better feedback from PAM when offline- Rebuild against new libtevent- Fix licenses in sources and on RPMs- Fix regression on 64-bit platforms- Fixes link error on platforms that do not do implicit linking - Fixes double-free segfault in PAM - Fixes double-free error in async resolver - Fixes support for TCP-based DNS lookups in async resolver - Fixes memory alignment issues on ARM processors - Manpage fixes- Fixes a bug in the failover code that prevented the SSSD from detecting when it went back online - Fixes a bug causing long (sometimes multiple-minute) waits for NSS requests - Several segfault bugfixes- Fix CVE-2010-0014- Patch SSSDConfig API to address - https://bugzilla.redhat.com/show_bug.cgi?id=549482- New upstream stable release 1.0.0- New upstream bugfix release 0.99.1- New upstream release 0.99.0- Fix segfault in sssd_pam when cache_credentials was enabled - Update the sample configuration - Fix upgrade issues caused by data provider service removal- Fix upgrade issues from old (pre-0.5.0) releases of SSSD- New upstream release 0.7.0- Fix missing file permissions for sssd-clients- Add SSSDConfig API - Update polish translation for 0.6.0 - Fix long timeout on ldap operation - Make dp requests more robust- Ensure that the configuration upgrade script always writes the config file with 0600 permissions - Eliminate an infinite loop in group enumerations- New upstream release 0.6.0- New upstream release 0.5.0- Fix for CVE-2009-2410 - Native SSSD users with no password set could log in without a password. (Patch by Stephen Gallagher)- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- Fix a couple of segfaults that may happen on reload- add missing configure check that broke stopping the daemon - also fix default config to add a missing required option- latest upstream release. - also add a patch that fixes debugging output (potential segfault)- release out of the official 0.3.2 tarball- bugfix release 0.3.2 - includes previous release patches - change permissions of the /etc/sssd/sssd.conf to 0600- Add last minute bug fixes, found in testing the package- Version 0.3.1 - includes previous release patches- Try to fix build adding automake as an explicit BuildRequire - Add also a couple of last minute patches from upstream- Version 0.3.0 - Provides file based configuration and lots of improvements- Version 0.2.1- Version 0.2.0- package git snapshot- fixed items found during review - added initscript- added sss_client- Small cleanup and fixes in the spec file- Initial release (based on version 0.1.0 upstream code)/bin/sh/bin/shlibsss_sudolibsss_sudo-devellibsss_autofs  !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrbgdeeseufrhuiditjanbnlplptptrusvtgtrukzhzhcacacacadedededededeesesesesfrfrfrfrfrjajajaukukukukukuk1.13.3-57.el6_91.13.3-57.el6_91.13.3-57.el6_91.13.3-57.el6_91.13.3-57.el6_9 1.10.0-7.el6_9.beta11.10.0-7.el6_9.beta11.10.0-7.el6_9.beta1  !"#$%&&''(((())**++,,,--.//00111122333344566777777789:::;;;:<:=sssdsssdsssdsssdsssd.confsss_ssh_authorizedkeyssss_ssh_knownhostsproxymemberof.sosss.solibsss_sudo.sosssdlibsss_cert.solibsss_child.solibsss_crypt.solibsss_debug.solibsss_krb5_common.solibsss_ldap_common.solibsss_semanage.solibsss_simple.solibsss_util.solibsss_autofs.sosssdp11_childsss_signalsssd_autofssssd_besssd_nsssssd_pamsssd_sshsssd_sudosss_cachesssdsssd-common-1.13.3COPYINGsssd-example.confsssd.mosssd.mosssd.mosssd.mosssd.mosssd.mosssd.mosssd.mosssd.mosssd.mosssd.mosssd.mosssd.mosssd.mosssd.mosssd.mosssd.mosssd.mosssd.mosssd.mosssd.mosssd-ifp.5.gzsssd-simple.5.gzsss_cache.8.gzsssd.8.gzsssd-ifp.5.gzsssd-simple.5.gzsssd-sudo.5.gzsssd.conf.5.gzsss_cache.8.gzsssd.8.gzsssd-simple.5.gzsssd-sudo.5.gzsss_cache.8.gzsssd.8.gzsssd-simple.5.gzsssd-sudo.5.gzsssd.conf.5.gzsss_cache.8.gzsssd.8.gzsssd-simple.5.gzsss_cache.8.gzsssd.8.gzsss_ssh_authorizedkeys.1.gzsss_ssh_knownhostsproxy.1.gzsss_rpcidmapd.5.gzsssd-simple.5.gzsssd-sudo.5.gzsssd.conf.5.gzsss_cache.8.gzsssd.8.gzsssd-ifp.5.gzsssd-simple.5.gzsssd-sudo.5.gzsssd.conf.5.gzsss_cache.8.gzsssd.8.gzsssdsssd.api.confsssd.api.dsssd-ad.confsssd-ipa.confsssd-krb5.confsssd-ldap.confsssd-local.confsssd-proxy.confsssd-simple.confkrb5rcachesssdbgpo_cachemcgroupinitgroupspasswdpipesprivatepubconfsssd/etc/logrotate.d//etc/rc.d/init.d//etc/rwtab.d//etc//etc/sssd//usr/bin//usr/lib/ldb/modules/ldb//usr/lib/libnfsidmap//usr/lib//usr/lib//usr/lib/sssd//usr/lib/sssd/modules//usr/libexec//usr/libexec/sssd//usr/sbin//usr/share/doc//usr/share/doc/sssd-common-1.13.3//usr/share/locale/bg/LC_MESSAGES//usr/share/locale/de/LC_MESSAGES//usr/share/locale/es/LC_MESSAGES//usr/share/locale/eu/LC_MESSAGES//usr/share/locale/fr/LC_MESSAGES//usr/share/locale/hu/LC_MESSAGES//usr/share/locale/id/LC_MESSAGES//usr/share/locale/it/LC_MESSAGES//usr/share/locale/ja/LC_MESSAGES//usr/share/locale/nb/LC_MESSAGES//usr/share/locale/nl/LC_MESSAGES//usr/share/locale/pl/LC_MESSAGES//usr/share/locale/pt/LC_MESSAGES//usr/share/locale/pt_BR/LC_MESSAGES//usr/share/locale/ru/LC_MESSAGES//usr/share/locale/sv/LC_MESSAGES//usr/share/locale/tg/LC_MESSAGES//usr/share/locale/tr/LC_MESSAGES//usr/share/locale/uk/LC_MESSAGES//usr/share/locale/zh_CN/LC_MESSAGES//usr/share/locale/zh_TW/LC_MESSAGES//usr/share/man/ca/man5//usr/share/man/ca/man8//usr/share/man/de/man5//usr/share/man/de/man8//usr/share/man/es/man5//usr/share/man/es/man8//usr/share/man/fr/man5//usr/share/man/fr/man8//usr/share/man/ja/man5//usr/share/man/ja/man8//usr/share/man/man1//usr/share/man/man5//usr/share/man/man8//usr/share/man/uk/man5//usr/share/man/uk/man8//usr/share//usr/share/sssd//usr/share/sssd/sssd.api.d//var/cache//var/lib//var/lib/sss//var/lib/sss/mc//var/lib/sss/pipes//var/log/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector --param=ssp-buffer-size=4 -m32 -march=i686 -mtune=atom -fasynchronous-unwind-tablesdrpmxz2i686-redhat-linux-gnu?@7zXZ !PH6]"k%P}z'Cg /s~A_x˽(;1|.!("SOyNo&_T[V[VTL_8(W̵?TUf,2SJ2 LuE֐D훿@ZjCy.e+i"^0re FQAV)QWbKuu31}׾;Q hj#lj)kMBD丄" zH$2Q:܎u^3gi+ZzM$U])$VFp] +(Mo05r[" 9pU1ڂgeTJ!h/=0+o#̗:x L|Kf )Zh2"%^ F%K?Y[u,mz-Ac+7GϯutP`ʁ W.]r`OJc|qzph\Xv:L!_HĬ8,uDXa|YOYsc11i$*{&H:p5n!/uzu[C9Vh2i XثxdJJ5~2~('Ʊz1 !Rt%X,H@jٚ #h[iopO@[ e+ \*/gp)5twL;Nמ9ܖ$ 9]ŠtWvZxBf!-n:p=*^Sh#v#RJck2Yފ@M%GMnl{KX&iS 3,;̘]c\\x 2'qJw_ꭜ(LBUT%7 9d:9c%~A258B sK$Zz$i:cf8Od \#c1IX5.{ 0uRoq ͅGF7"$7 5ET!@}Ҍ Ġ+!xShObgy+ژh;3K@k5 yݴP >OPVa!OG I1% QaWIQg?UExLZ<롟iiɞ 0 #` \wl LLIu@av>koB!n؎ -pn{qA.l~Ͱg;ߥ=WR; ,E9bLN][d [VBY@_ҏ*_LdrYO=O} 0i@5[m-WP#K5pt=K4+J 0\Sʳl2!sD/\$)R&ŸHB[GRf|+nmŒBZ=sm7eڠ2tAZK&pal%}6 F' )SH:Fh6xo75[':+r{>֩wfs%F -ڛ]g I d ]h=Eţ~߲iyy[,ݯ<!BxY,} jh+-N1:Dˡ)ލǬ a LYI]i ljoU2Os-$ʚڮ=r*4PO.3UÑH]oF2|+,9DA|b&h(>xZYn8PsO}k0B;!QXlvo 7dfW. $ޢYxIg ;f#? F([:A4,-% y(.s&ݖ8$sUPVU`EbWI+Esosh2 sٙz4|.Hΰׁ(#921ɞ2J}PL(nlUK& TGα+Ў18nB) R;e~mQu>L5)N&Ve/+:i^$÷7?@tknk*rÄ ? -ceSFCˮkпE|ɅˬQ8*ҷr j35θFm}[d@HS^'Wr%JJ[!]sL,?tLuHL 4I4첀ΨF;6S=N3XIAQ0?թW7#4C).^4tύo)wqMY϶pLlf\[5ٲªJGI[4J_1?`<[U83r*|//h@P!m!y8}o7/ūU,WGP,W'"V#JRb(8s`aƠ%& # 3z#,$rO֍;|OΫ|LJh,`yuKڀtSzZoI?_ n])C5Pb`^$+#[Hs:q'VD{CrBq$2 FzNDPTyaׄFE0/z.qVZ3pZ8d(ɏ('3M[.!\9`xv S \gm0] !iɀD$"ɤ;T|F~oO_/{b`]L0ou{3&CZmmMa&MgC맢o,ٵ8kP!3abzpPvcJ60^r}2s^U(v0ur(ܗV/ĥ_b?hx [הhW: 7.)ިIxTȗ/=} 6 @U 8]ۛbW[.Ԝ$0 yx ꐊ/tjlBE8 >O09B2Rދ4LqX `dnCϡO Dn#U&٧ɜNJǏV8%ڑE=5g~M43N iBἫbc>%PGK@~.BCt5&P,v?/Եt!Xv_|^#]V{^<=nݑZQeY j͞N8z20*m|7fD,pl&'PCbw>›ДG\%lZQrn ?oSvWSkbaMpݭ hۿ zz3El&0SԶTnͱ/E_O"i9bT#mVm9ވ5L\za,Bejʢr.X'W뗵[G" <#pz1"^eʈ Z>9ay OOغ^Ef H"eNwKR7K3)e?jkܑlϮ7i鞲 TxSڐMʪ|Ħ>^rw5WRaź[c9sa3͗ =@ 3/q4*`E.+HH0OEuqF=qƷDodlJDz5LI =32=ӔT]j|3:!{͌O:7hcu1"hZ6);W{)C{JbPR-y_NZ* f<e ]rK|J 9 EE,X1S1/tV͍`۩+{* 7n/SC ~>}C8)}8hdq*6P+;eʷWhQX4޸d,^)nkx.M$HW892ؑ9KOaɌq?Yt z"G3@ ;8jZf V$S eɁuG2Z{DsҿJ1 M.h\'jtdۇpAQp\ɣf[%9.r>B\i6wQ27" Xʜj" ,yQK Si\MDM31y<M7F6_V% ϧ#,XPmzMz:L_ໃ HhÐiOUNIPhʬ92ecvSR-l]!L-{@߿;;չCiXz:J.eM,p\g0^ c_E"iQ,B`y@ g l̋pՅЮɪ12A.ӟ%l@ /q7 Pm࢐8hAհmsFo}RȖ >R훉fNrB:NLqbDNu:RjSG$澧M0<(gZ\u(GJJR>r Gϝn*\vHuc=L@n2u^(yhmYjMstIN-Tk X{䇆}4DJ'R K}wm`>vuI4|WK{Y[Bn5ɫ.ڄC9G^ȐDwRLk?2f1o樂s؇S \&.1/Y49A0D m2(,}fWi#R,w&P+Y1 9?WOj|j 8 ,:= #xnVFB+@j!#|}6T.۱؆@H7]eC姸QR:Gޙ <Ib4\jjsoyIY4!óC(Z`#nHoWь51K++Xm8 `qbMFnBc՘pWB&d$nZ3bQҸڨr80 =w#Q_ `9םjȹ `58f|b*`MJԕ;tPѾ!7|0j vܥc8rB @Nu)V%فFeQ#vfuђI- FIzIKu1ϨVeь9neL&(ǹLG%"țԙ="__9LJ?w]"V3]nLV&F&קɣ+8 yt ^ʦhL&M.ܑRΘ22#! #VDf~ ˄7WR1R&9_@!~݋>։%ķڤ;ďE {:%/]hyP;_qb!qeDss=[`s渌Wz8զw ,98K{ͷ3X}GqvF}vj'̢:gA[pފ8L㎭.?p &u['KKfie@S!ttL,r,VbY8!)ްOs\ZF R8/_'Xp~+H8kY eʖόЁ 6t>s hz:s-`H>r]ɶ%Bm|?b݈ɍb3cR (M1i{><n:LM0K~b4:V6^Yk_Ɂzl '&F Do<^ SPfXKӣc{ =Z2{5KR:l۶(AN9ީ <%ab~{w %}.i=_i.ei3SNQynDaeo}`nr!=CD_?Ov `̚`Xie/ _~W.ş(ջˋ9WĬk!V7ጴr$%Js~1`uxe}S&gY&_NFܸ ,D)1p8$uq/ʺp\M.Whq"d@eH!_2gh~! 2;wRDn)FZ2aoyӹ+@&# ;t/t= սLlyu_wgwj E<@oStzHA P?('QLy~x5ĢQVPz1 &Mq̪SRa$7ʸpd7Fy.cfKp7IqC F=}y8&^+ƾZLRudY7F(epP@[Xec:{Pq 9FI8ClnF!~nxזa+3/UޔGhykȴ<^h *Q0%+evi,/ 2<KExXЯ\h'ӄfoypCutcfąP᩺FXY%׊R~6fZs8ڂ}CX{[̵d3Ԭ] ۚ饞Tij@{_=r4j(F{mGvE<}#x~H$u;.<)Q掊eBI'HFdx_'ټ6 \*pf'fDܐ^K֚X6ִ:+&r\9$*t!.H5[O1M$5#ږ~LʴyE&Lc,'\ʷ!%Q,Rwl[avI/cB'sT5 7xE$rz(J9K!+* !T!b >B)kBfQ=Z 8ᯥH 񑥘9,,vlvA:_̥ ~l%_۷@m}1TZzewN ]@%P'}Jg0q9U]kS ޵8zZs[v/RyS?VvsKAS^, [* fI nT~Wr1t*炀:PhQ0ݖGAArZ}/uj%C-U'ʖ*;u7rVk`+(¼9Y)3a(iClf T]s`mٙ̐ 30koe4w%1J@ |4m[^ӄɏgEZ'wRƆ] [z/9/QejOOb0 P:&ehfck_G{.w<(+-C[|U#S4;a+v #_H[ k>3v42 ";k;3&N;*fQ9Z|ZF|~`4Rf[`(RIME~\t li}m̘W^D-_Ot),e^z?gJ:i?xr,*NUg'lm)V#xUTH x~}T% <͠*@?Y*?vJ!H<.J\`KH(]Pʓ(ׯ:jx@/<>\.pa a˸[.W?O)~Ii3SoSJfUPJM?S ~^Y??pKXl|[d.Q^(r [}-"DGhi0#dǻfT?Z|XVI;ײwl-K#1-ۿPxK6·QNx)tόH%/ #KXuH}-\Q!8+Kh\( On̔v,a…ӈ71xto I5 Iŷhd:@}j$kxANnp$ ١δz55g#C۠OBQݢ1φϢ"@)D&4m bqI 0z5IDSn]Z%f$m.SYM>7@]R j` }`p[k,*Pq] %u%,."t(r@Yxr|zȍMܔS(i0oÆC҆ l^+n M"*nbUK^hb F &52>cMN.aW_x<7sī9uF#XR):8bVn aws`qIN{9$͖ܟ6jvx[gH1Ɔ8`"v{*a{ȝv>@ȄEBYW(#`xFTof|+-i!'hMlK_`AM-=gOq ' 0ֈh倮Z#Ioa#Kz+̍8x=\Rm1☜k7s0O oXugK* *]눟ocDEqz燂:+P" gk6!S5jZC"fQpy.ܻpIqNѕ:*}IE$- e9yXÅaNBOdkjb}AxeQ6pnyׁ''1~Xd&Ph_Ͽr>G"?0p56CUbXZ?'Qxޱ.}I3̓t"MԊRbQ{m:L¢Oۅ1'dHuwZa%Ҋ1h\mYx^08'73vJcHաWC/# ـuJ[t鷵n`fz |@4{a.|qd]f"ePm$6oRoƬ9bn`K7(6h=ĵd;ګ#O;ldϴA->YPDθVߪ jHH]Q -`ܵDƪHRCU‚En ڱ+[A_MT9WWh;a7!%$t7{FWps8-ոvCNY]!rS^ֺ DιV.. 4Y;ExJy$a52= H^EX2\/b\4T)}8/u_Q:j҈d^%+m]|Ǧ 8W#@]$u#i7†ԑtQ>ӝ`<5$(Ih?1Nh2!XV \#~Lz:&^Ahcx"+PYɹm*;QOj5 }q"WG&!0,,/R?wK=9E)m=`r]dn;8-UkoÊh3Ks Pڣc 9}HGH11mh{K=xx-,2%]ݢm~ xkCnPf!bÁl%=~+1|2`1TA1pA>ȽX`=&}kcpe!&싢RFW*y27.aB[z,{^^gԉ-/=ISX=vwP9egΐÊ("$>UЯ ǡgHp&ΛqFCٍ kyEl_jρ|ޑUzMBԧW -SDP%r62h<L3R [?xY p̶ٞ=ɞ'0T{`fĝ.s`p}񨔰S>LΆIRhco+;ų'2EGbTKqC .UoL\wgŒR$ ,'BqӃ +E?Qh3*}{|G\ <|a;^8=38CS8S^i!N[6vxC&cΡVD ixKNP^8`Ur=fOH~PrlݭYYrQ .TA@fev_`k9ڵo֒kh )]BEe)LVͶzYJ҇osr-LC0l4j˱}J_K=9a_nКVj;jѨ{g} j,'G+wB|yGTHDO!K~M4n>M'3?_kdSEG%mH #ǓwKJ$j3 |[xB&,Ru@O[7$U_dN@>@X=N5do` 㬈˚Mu\ 8D$Y<)kh]Gr.5s|w4.=1 z uҦ}I$¥[e"Δxr8?_ Ϥ'=.c"Ư1z.(AIAc:`mcہXƐsawO|xz[eшn^B`Cd pkr3W?auD*Sg&gM{{KdH/grnUo%cHPBcdʕ)j <;dnuhG#!BԪk9n3Re1aB¶@S>]lF[9U(A:?)A6aHJC9+[4uƣ s7}(TPƠ/'s~*e./;ԇChjxF&f%FcT1Z/HQ="~&:Ur\Z.dRJ RѶyQ)wX՛ZZ>['ˋ v7z}2w, 2OoL5$nb=KzF"=DNBAPYƟ0^9ΓjDaYp$V4qwQKfz̺PG:l@y+J#>3Ш٣HClܫۏ6~o-qvƊ9VIriGIuJ$ )q\pO@ۿ[D\7/"\S?^d:O~Z&^gSjsE of}bcЁƺ}F)']3.x) v#o|CE:w\ʃr@ƽ,wJ0"DV6Aݶ9Rc Am (b.O!O(jFEfc.#C_($%5 {l}m\i2/4[9AL,9e;v^˅lՇjM0<CᠣDrJii&=grBQ `lld3p * 5毯ո0Pv)gQFf>qٰ 7EL(5M })W2!U?hBr0+[F9b *\2 8z%_E&C2jiRׇը+rG銰jDĎHG"Bҥ2щK6u^tLO"OyNAt X%W(c(;s/$yW: ) `n7fFňhA>Oԩv2Ol%^A,DXؘhh ,u#{tͫw_S]4ˠ251D2/ڤ)m<[1nt9Wgw/<tHBm & )#SH|m.4# J #_u@Upu^{Q.B9”4 _,$9`gGC񒑕zմL(P1n%_Ad(΁dgHE+\Lx$r UW+1=*X=im\D:HJ_{zYЀ2iq)o&.~@<`@ RwI,6 ނȌ$kݫ/Oϙ^6/7V|X|Jjf+b|^=9MBHK`آg$+p[YmlILى, 'R™78rm:dsk[).@}]ɦ:Ƣ<5q[l]4Z#$dToC /4 1{G B_e%Y Ϧ5RaYG##[d\d Y H2 Tt#Q(-e݊2\T-m6-&d^Av !]1ǬIɼӚ1ʥdm@>`t6I.˩7!$9N 7dA{AμpJu+1[Rx凟{3DG7-Q܉3_;4aSn?d`Շo|ɓ$~Iv5iH=omuQFXd|S,ރs d3…T@*I,8ZoNB}x0{醤\$N/nRWn@vĬ/ p R Q!"TO[O#6j;AU&"wLoD,^YWAr"/~8¥%PgܵƘwCize@1 Nˤm'W#D_*ۨmI(l*e}'N]r |]&'2Jm]*Z E# g2Z Š%9WL/b1B'B0MlWmUMr|w!W$!Ou!o>&nJHlA6ZI^M~mx'-U otOwaٖLF@*L`Բ}7K+xϔ]:e-Tx:Y JV6][*oTyj5*b;VqG %?#$n`XN.fܫ4r'V;³`-` ^J@VPGĆ dkHBuaD{Q:nO '7f߁=_67X +[G>׻Ft$s]jcUQF>,IT9_W2J;5L6mzU*l6J|&?hJZ}=ŭgm凡KZת 1 `+s7KG5E|StД\ϩhAQիhpx8-[pczN"4`k][Gc$W4z'3V\]IT!6ù\Mz(,&q)xTif kK:CPX3GaѦWbu\e1Z 4d;3l÷$_^T ,ZQˮUh]5 Kfp.04%mLcd,^{X;[OZ;aΕdb[yy+>l))u/w>rž V#Ҵߣʿ IXJO=Z'Gxqmd&ܳ)`qz2eJAEgLM O HB% ^Θ=V,a.ݓWS{tT%C1f zcE:+GeRxdBsKka5B=֭SUÖ5is#vD4@vf@7 Dzb4\υk+[DdV 궴A.LQ+gFXP>{yӄ= }9+r'8VsE{7OY~GfV m|T6/ G\W[>C7-qG A`+޲oZcϋߖ{j>KX9XaP'6Qw̫yo嗭>]f9;E +V!Jr屑s66#2\o?j/nI*9cF,aOF~_`ow@ڪ>$jeg+nwp xG[ɍ1 1$~Yz#%M{y${.5=#i҉5:LJDeeeyB<.B ARwW:x2GHB "xCd(u}q$&&|g}FP;\kUDLa :!t G˹q@wev;%OQZp|3d"e=s8P'hJڙ=8m@6O]& O2?:Dog:hsbl{\`RaupfߚŰ#%KW/VS=.Rd6($ !y[_)~թ)rq Chrwf*]OTiN9d 9h5āxi3QPfB[%=[{}\iV eِ۠'ɈSYiZﭦVݼ5WFsXDyTqZ:~OO\GUZpar;fBLS/ ^X-(OM'iWz4\.) ꫁ {>^G׏ 3 \TQ&2li)_:Ή.$x p O1!2 ;e,hc&W;Ȭ߲䘕+XX AK ݞ$s7Z (36b ιx IE.BVryNYusR|`^gA]6ٮrp~)1ԕe!Q"b@sg:=R W*UU!P5; # m)F9࠺1ة^%#yD!HaKM!D&U[Y?\0#r`K EjvzpcGa@j%;ٿ<]W(?.O J@plo]n$sTij2b]V9klyF{簴yCtE#ӣ ^L_ÇkG5z^ M {*cdN/$`H\+'5rLq!ži)Ӧ(JXI\M!TF/W ҂Qָ9 y6*?L5t&=?O{0KN(J[ziJln3s1NWJWEbYH |5d,;EE:ŵ)X atWj0Lԋ޷`0%^1ԛ[,⊊Dߕi|M0pF-[!_'05z pgG~&,,2S&9^›5bW0䱯!-x >SGnƯ̜84n6zpF4LVP]"4@( o ,Klj!>]]L(v슟 (qBnzCʠs i3K≬m&ât >,7N%{PgZΏOiͶ.K^"py'oեqB VMzƄ;HMk v|!ڒx%5%ڶfbvKqn5!& Gjl>RMi=Բ/ "7D{"DPsu@km'R%C'%d\.kvpQh"3Z;4ݰXV2_k3IdBz܉34i5m`|T _H+j88<y .⍴׆_} !Lj稵Ac&e8p]8,0{s8;Yd8o!N(mdwk-9qf(eR-"c}1$t1۩Fo9ͩH XGV:/iE~kh҈ \>g3[Ľ4t I$T>*^0{.fA2+~pa/$1%kAq@prl"Gno|:Za"/ϔA&fpk6/Vמ6r͊Ƿ^q']45ΔWˋD "ºc…Kg5WƵ28. hJᘾ2@F_H;tXA]R:c5p{ʘe^Հ=fVSO.驡 ˙_PwZ- a9Q=ʫ$ e5'."xuӴ92|;q2ܤ|9O (geށ4̵}w*d۽7xw>Nŝ0zAΆM]*^O8dߨ/ʩ԰("脄_K!\Lv۶o_o|jMP$iVnL/,eRWT6bIX zlmcj.tp|+(YXT+p),XؒVFTb0%Qّn@Q0 A:ߟ}Yn&œ>SMk[ =adpૻRqr\y38H-YE(do+C"01C c?|dn#0P#[ٶ^O1 ⳕ q~D6NR"rͶ(scZ VY+cFd¾y3T ~YYuDHQ2;F{!I艜'$@h#2c0TT졆979HVӦ⟻@m+P)-|}ICG~P ӷnAK/JVV w$!0Xk1@'bZ$+:{tf`s Ig>GIͳ1#.$whtmBU[@K_$S wfWеWܧ&eÿvJ˚,ofŋJ;6&eT ‘ʢ &pw$ݰ ׎(sy2c23.hOO^pgtֻGnZL`]ٛN͊(oO88*noe,-ĭyيr0N ~$b)2kK,9.N&oVN|BŁ[h)6J1#=Z1 _Bb m71VZހ sv Mb[iLX_xLZ%= 7&dg|b1 {|R!9\5$+ݙf춄m R oO闵C9@ba xbbpEܼG>n*c37[d/?6? K[smøkbA: ZIUOq?Cx)E$4n?Es 3_>MUryޘ yerF\8B}Bzt 5O͐@R4-^vh'Bє3lTDceM"냒"r~JFUc)Y`b9:y9|j:=3Z6,Zlpd닭+&R:"Me>*ol3*Ov^F-TZ)"秀jD8ܗf15 @}VKct"SЮF;-`~\kWh&d͏$ڒGض&TA鉖1&ai/g"WRF&X|+4 [ 7U !5t® chN`lDOWæP,] DLQFKN(!庌Hɨrש:BP2-<ʩQטqv)3M[Y#_-{!D^uo-?H3@ѡKU/7Gt›Yqw|w- qdⰈu2taVK2SPVt+XԜ=p ؇Fd] !IrI%dD>CK3)B!n:#8WQRr! @s,iHPVFb?VFPtt)`p~"5~;=tǠ|k7=U eԵ-y6csyٌr|I }1׸7i+Ҽ ƑC?dIt؜bA u0N,&q13)A]6TO[<~/ĉd",JcL.}ցNJ6 g+-y9+dXgY͏%~8 T'b}*fG^[ jK'2ٓe/`X?:BYb-ٚSnu¡}\Y)p6^}k8FR$:4GC.{z1 ׹K]|HĩlH: !_,pI>7PxWF#C2BN,ԸAy]FkdiNEyv2ˬbV['iꛖQ댼裾V&MEZer?оb1AS-i/ЅݡciJD`.`{a_o'!5|ðY[w8 pCzȩ|e(%}Pv1^@'!n&fV 4N.9 A!`nsuC?/WU NmX;w*QzėJ .=3Ϡmwʡ v՘u4~SK K.__g v`B|6MM)lÈ +, qaFAH!+~6@u3Ҧޝ31ۑ.4h@#^b:*FGV8 ZgIr)g2TF^[MJ8~(\}<ǂxt[3fʍ }upPPb.Ng=vu{w_,{ٔ,{hfpv=mxZӧ7Ѓ-!,T4j7] .8B 9_\43}uя?uj4*Sp1%Cd>fmmzPldi8)-?m &VyO/`P1yV d. c .̻),}$?=~HpneTۍk'e kF&%AK/sF( *,wv񽋊?=.vf'd쪅ut{UN+&c5]uqp%)%]]$0qM[⩃cHE~@Ƞ.!:_)ǽ\EitW&A)QWJ¦\ <-r D%֧'_!2~GMÔ0ֳ鐎xt@KPoB7 c?FQ `hB ^< Kh_4$!Ua Yg)]Vg-NCUH )nхM64I[D0.;HSZe1s#@$L;׋)B7 5{k—X~D\56bv wF^P8S1dc=j^m>!dߎ^ˑ1a(MT~K"i%Ž_ jŽGk3Caˇ'TKvB^i|"P9b-p Y*]QM짣t<3}~& plo: 6%("pBUWMI "B/`$4" eBYׅwŲw8d cK|4L{MT{,[>L&2 DvSeR!󭖏|G, hk1CyJzY'N7"!j8iE@JMAKv\ p4Ĵm1RNDE1,y8:-_ Vqbb8ڎQ%v$OgD"4|FsξX˳E ' V$>WpBjkXeM*U5|֥>utWӍvux#|kNn"$ĹZma]eQWH +vyׂ25miK'$QnIYKn+D¨F߆,C,W'K2LM,/&K;cI7ids. hiW{dZJy92Z7jIcls>}&W窲 mOIPqjO+gH>bO Yf D\ _8̿;j4 y%`uHM0"j@bʖ{R6 pf| w'GܶWl2LpHH{qQW*"1ަJ8i-7!9[lDTәPeb9!g/? ݌6sNL\e9Wv!yFM`A٘1QuۉS܍^h&S}D0L, =g𤿌ڶL.VdxbKo,tEj~T9q9CsV&9@ƃPV- :X*wUZRGDcLx;aiFcפWk΂osD#5 !3#kbp$,c:(\]W8m!pNQs',)pSyD傑کe}POsh5w ^O2U)ݮ5 Ih{_JDǥU̢2 h@1Ain3Ԕ>Lcg=;&+Vұ_Bj1bC f\&Ӈj{8F`j=~Gh m/]_݂s [hb 3[ ;O[ `ݼ7AX,<ゎXMuA W219jP3/?a*s*uځnQT987S3# RAKܵk[IBw(kE$Ug0(Vgc]>e+t30!=̇3?@4D#{J_md֍MzaGԽ=f ks1 q\)Wc薎eo<v缥r4c79g L$Dh ^T)Tk֗BΗ[o '!OVPTEZm3uXF=N^Yga*n?QlƜ^ laoyDt'݅k)p8}4a8Bǥ|5QC@AFeXҊ俲3`ZbۥABpkEf0W<`65 i"veQ߈Q2ˌR b]4rl޼[J0/ɐLw>:,D[܁WbW㓕hU<7PS&)kNÔnw;l\$gP{*󁵫qԊykЈUs x,_dvXDrnuA=4NTsM5M]V@YID#%4B'RT(xŊ~һs>?8/nу@nB%Ah$3c3čD zO},HLBSpH8j"tAei|scg1ĨWH_t!r u@ /ۡ^ָs +&nS=_T}M^*j&;L@@e3NB~[uyҕ}Ӱ4G6z2>>'fIK+I&"^rƨ*5nO#UoDFJ$6=_@&/чi,wl#c34ǞTI0l"Rdn]X5.e)lGD Xg:O)Re(( Lmp~NZ/|?i B=w[`=a ޓf΄B {ߎ%Ԏ8LMb-t]TTwpI|j\ T<D"a6w|:cS&_R`tcD`)Gy r;,ް&|s?Uć$}K=BɨkVRhT!y'!yPޑ= .~F_͞;@c7Li3te_mq~i`̠MOJέeIޣi0֦-ЛR!aƃ=@mQ)Sa&F-W]̞) XU* r7Zk2^1Y *q,pz b4DxZm@䋆roE4ĘͥoQ?%ifVNO0L%3e=5TT̈zR̡ڷ.'rE&qC$Q=c:#<<7n WJ[2Jڽ3Pez߲<ziQɬ򚹼<؄)a#}p(OS)?CL4I'<חVkPi}#9;"WGYM|8ȄZY܋@-BЈ%J.fi "R0K5pM[  ӧ:oQ~Ko*+n7MIAۍGh+IyR]55/':nH .#ı1au Lu?%!9f340Scl%qm{ZPˉb$J9FǢ%2={UdsЂh]S,B U++_zzo|q S}g@iI›@̥0KtVz-5\o~VjvD;<F/R;yt(LF r/ub;`_}U7֭$=PPk@,5 o3QƜv|ijdQ91{z`'<nHb&<]2~$Kwc]Ra.ɰ8N96*ڋZyʵ C+ɿ;9 &tAA@/_&T#m&HV!B0ShybDgq>Gj@Ee<`xD*JѩS -߂b.M7Kz8 foe̅A&{N8U#3 QGup%>[? <8?95 qlP7ʬ쮬;"}Z|V&xuĚ{5pLS^%a* 0*m߳%Wiji$TA5(F5~JPe^Yqz#6ZҶSe9SY (4k9*wG FU6Dky=NT\X \#[ ;7ijX by;h5ٙ#ʭ%YvɞjXz^$+6حǥM_*˷6̣\ Ȓn lZiLŜXMcȪqˊXg]Ƕ}lxEH;ēTx&ѾCQ;ІhlٯB*7+rq!ai Ǐ±D"Ek5R}~^_̣,똞l myMo 3K07G,A2D\ jM ޱAQmT5f{)k0mCLuZro j`O/jI[_ACXBa Y|x'Ob TϘW1uYc)+9l" ;J_da6fc~S!kH|{.~ *ixP($;ILEˆZaqi~X⏭bjl0,D%3pGjlTy4PgA~w2p[_ɉ+>&Kr4[f>Ȳ=h5ho[Ԣ7*'jAJM0q$"d=`;j19yǠyNXa ڔ+ 0Ǭ c;_V+b0yRC@Ga uVPlO(?)lI`i?x_Ba: >?:G\m ㄏ^?ي21X<'+6䝢kp2^Vucjb:RQ+<:m:]8fԢ} |rt6Q]y,g.nޯ]`;~7ZNM͹C0sF%'Y(6% ]23e:=F|2m\ -SiI3C*WAzz*a"3kۮ*2DVdzN[ԛlY2=rW:mOPS;zib㠾PY}#QO1R~o& kfM)@+xdְFEYS{K@'n%¼ͥS%QΏP-"lQa|J5NF2([$~b84h/l9LֵG{SUz[Ek;Z3oqsQžR %}'pC^LD9 L}HY ~@ס;Qi(,ʐ^O{&ѿ}UA.䏐 EF2AfX9[\ѻGlUQlrғSBN7 @P z`"Dza:`'yŢa Mg_J/S2c'Cg"uugQdf;3MN. Jx-`8H @:V}?';2'kbJӖ"a|Tpo[[WFBr X - I$O媹VKED >$SnS~胙 !_J(i4^IX0~Q )6pv-:t*Ϭ ovSw{ O#=g VM S,Y7ۻAws5Y( %~f?#}`؉ŝnt2 2Qzrp&[hwD m^s'~CJ3Fv)L6p_c. Pfg4G>\}/?:۳odT{8 7 /oDpL;G+@ }rhQhqw뽥& ;7uKLGfO1uu"JwQ@eZtneK}Aኈ>.N8V~w8pAɷ6y.\8@ %[8R@ IY Ϡ+J19}(m %>$~:AVm #c'T @(ZtT&Yo] +=Jl$]lZNfdꚈ3#O] "ZX=<3&#[h.;/Rkd.թ ~.+*Hs9 /B 'm".D:5Vο#q_k8gjz}fVЦi*"|XSjĶ_/GR;ar 7=|˿+j|%j`h%>2H>{ھrȃ@,j3ed5Onc(U`$pBBGpyTT|1v5q/y 2Iuq,5^:shDsB ۆqߘ-{u> |Fa҅l-6d}f%ˑ4CS' J(\IfR1W O6 Sd#$)!q0F+ 9^2j(k zP˥.00>fi-zQDhϪbKmݘ+xvLə1T" 72>sJ(g#O\-0Fxz1aȱ6s[^ VŲe*yW()gtF(X]T䎋m?my@ TG~N/{7+sb 4#۳C_00*Ƞt۰܆YXl`뢳?臮Ѓypg 5F%sL`A\wd 18]w%qunȯǾ5AZV/ ~z,*ƌVM{#J;?7#||VȂ2B ]3#V[$IH[ФZ'H @7*-9Fs5wua& Vyg?P%ɳO Xz]`-Y>\IzAFrknV+}p%!m%]&} YYbl|)guh0f6~{S:l¨og3o"cG/!կ5>I(&aw%bўp\郒!*hHr:5N8wXۇ\,LpHu ['F}bl=ly98vo6ksT>n{C* q\p?(vӄU(-E)D/ar2 |a(kYpW_<O7-ͣ'Ro[?uW)25/К ={YDa \cm-&du_ߖnx> W_`Pĵ55mor[?wZjRLJ"~R3Ʈ Ef=[!.۽ճ`gEN|Ԣ15^*ИX ]MT3PSr5eMO_/,UDwwG7 AYNTˢDP5齓4_AfF#kNtZ?"F=L>i(jnyagS-OPiC>u'N͞A&*R.-f{ BQn&Gͨ1&(ؙҍ8k1wmi$[K?QKz-AG(p8W("ye zЫƑ ctZn&*4M j0etqDӆo{8qy2R,3[n9R;+D?+=`Y((>l:sৼ, qIab.\u祵gܭ/.sC:Nͫ<R%^Hjm5yi/Li10)̢-/Yg띢$8H9َ?j\m5X+hu3/%u69ȤDnsM4YR~ "Zh  "# wz4߅E١OY4om8TϺVHۿqE՚w-B)s/`> ;\xG+k@BHSgj''jk:v=w.OǾPء0Gr 0ɔgjTh̩bbGs{]BV \|_Nvyh֢Ua';^`ZI^RrxT0 Di s׌ w4y[$s c^~= iBM96T?ÛDUP rs8L\af*?tg!H~E@=-S_\PaP<;*uks@vzSbUWAW@8h%oD eMT2h2?lM}AjkoOq#v\"..8pF7nD@g `Go-m/5PyoKr/\;&̩sveDaۅqxQqOZ䕓iCsK 34D#aILk/fwG*wksjOti=``.'̂DDuQ[W[[]ԝ%E| FD"/DUfO)[NWj?~Š6FW\8@uɼ3.vc L qʟ`Lܺe Vq>a30M-SE7S`]5w4vg)Y'Z|NHJ=!8% |X2%["D{Gt:x=|J22 &kU;)$b(UVemTN ߔiR'˰k[ibӵۤ&= 5"u({-SsSçlC|?je]GmYj1vw-Ialfdyvz97-B}~н4d'?GE@̴| Nu*]FN\^w 0oNUB$Q2)!:ov8|w7C}g$6i|qO$(>(N9X Vr}Gʔ~"Q,OJ¦W7V[Wkzz 9d~z V s-t!qy-^0ިOI$z \́ʫoY{lٷ.ʺ[LifIK\C[vOrc{< 5o8WY6AKkac>zX 5*;`ּ?XdEŬa镧e\/iDaj\+R ,ʏPNFYugn2/]ꇐ+| vk{Y(7vw,{$@DǦ+R|wz\̀aig5IF'!g#'v]i%KQfG ޽`p5O?-ʥEhAJ|ﴱ,+-aB>Z]<@vˇ6.D{Љ b.q{/R=r_7@ ˧LG'bx$R>bnPV,}.?~x*úɜ5aɳnZk`Oi UN@s0>,66J[D>S@H)O ~ Вnd[\P)vQޖ:q\R[??1f=}Xo 8;>˱쿨J JCJh @-Jy_߉R}iLyl3hX{pe '*>رP404lfcZج4z_ւ(6,s3dK%Dˋq6@R-? )[ڵD,<_=aTͨ1}?UYӰgv5MZâ_rhԽ4D/]cAs. ZY#Fڭ(.VZ$ P:{RY^ٮi 8cfkxutZWX@::xp!;f\6@lQグ6!h2?d0 ^v|Sƥ/JN]df:NJ+k;*7<>& ؠNJiG#wqrnE[,ɒTwO#Obw- c%ր6;Itruel:.~a؝I&)mb; u3F5nqx Π&#$<8֋27$rΆҨؙ467]l6#WoPP ]ޒ~'M:yu_ J,%žll+:A){D4uM8J2*tvt" S+,cke\۪l]\psxw DkTftlb.OV='&n ƣ2VI c&|IRrdОvp;cuB.jŤ:c1ED:l1lK0T $[O ?nt[@ž٢b~Àl!uƹbPNNKU+\ݔ3Z bf|ԗpt'UAFa_'4v;xTUmi~RoG*gni5s; /C7Xo w 4t5Rpn`xMW$W; 6aH!eHͻS'J"erc9 ~9 MQȠYP4KֿCKc.NjN1[nn8l]6!NFC''] g\7hٞP^äe3u~Vv.ڧ8H燃wv]M3Uo_`( وo]TVޑe3m_%7j K7콳(>?ؗy/g][NF̫23qS]KvV'qmP._[:}Ph<,C4dËo-bVЧ$FBX"te#zfsS;LWj r(Cɝm\SUvtPyew] ]at`q Z =Tdowv| :S?m:sl\YYxN35a"Sh33!8fI \am~;:hGήrOwa΃fA57g@.&w:./VNtASԦt`,u@{YO/LIҹRiʚQԂѦJ,lP |GwH ثl'B\y3#i%\פf+Q9)/&Hg3#ϯcbBmz1@rp` 93\x/̮iie-<`E IwS A`-sl yRpxXP8R7dqA̕Ti"<~0.f A)hͣLI[O6LNRJie<}܁3>4 ʘ6q-" ;*Mupf;f UZNW%ym@5 3 }|N792uH<}w H^c]"0@0R4>sv%93f'%BYOc&/f69pÇ[n uREj@!OշQy|m82&%T[C ~H1 ^҄xun7. ^LqhHV gtWÙ 7T:̅PYEY-L4HLM[)uZ<)<>&X^3(TD0kɲ2)+/4yLo8 p:w'EXz8S0>l…|9:gJXqiL}yoL'Vk݀@JZx.SE_GTt >9wP!3 d"BxJ!L Cд ])s$Et>Ymcdjf5DP8C̻pϭ眨Ԯ-div {?S qO(ӑ yZNIwa:/! )$i SFi\ºpI5z)_gc=3_^sEoQv4IIyB$H+ձ]QtL+_9;0E*bS%6FX9vʼJg42Ʃ]։_?:*ZuЫg(5Me1;.yjs4mcyIԯ0x6>PGKHٖTB8z4VmX鮓74ia^΅`>nN8{VJsZeb<@8 & g}YOm& T;:ǞʼnTS)bG)X7gk0 j ]vqCF4;خܑu]I].u?c'><0sOvitG` ~&˜^H*VRT[qg{.V4gb?Z?@IɚzԺNB` 5AkOQ! DZ ]ӧ0Z/c%ōSM|2+}-/ЉI =*fp` \Zp %L:>F˜69V=J\[81坸su^\xD m? E{g%YnKj=ĶqNs5i8d19Q"43_@&@@^s.Ws0TJ~,fi>C.~X]H"nѨD@gڋx 9K9~Ԡou!ҙ=ϗbا9ВKty%%O0N6ֆ{CZ! >;<>'5&^ϩGO?2&rV%] }ՄZ;>xA .\+݁x8ѷP|XW {dWhUwYN^kY cjsPVlw r"N (V*V`i>5! Iʍ?;x}킻v/)^8 pV]*j<}($_mP`Gz)?}LNp|Ri#b5Q>DiS 8-_)79S=2PZ+\R5"#XWb+Y-+IS J''Y$<7E'˳r7=WNJ^J~Lb'Dxjsդ7ּ͍H߭a$|OG`^A-O=afĢ+v!Cah'&r=2kFbgm nDAt3Vk ngTO: c* 2.ޝZ 0|K$|]ѼȲ)@'*H#Xۨ?|FD7^*.(m+bxW7t B4 |zJ܋HE) h,8K:xd,n~LC9jS8 '/>YXه -"gvh<;DYdct%kL$ŎcՐnmlJ? 5Z%{U3 |AߣYSiU|1C zJÑS54%D8Η]+V-ީ_ׂ>./Br;N¬29 \w =Rb@=޲s{ߚo^lsPP _ dSfÕQF``=QQj=ҞўyUcmN6\kh}"~h0HZNqz3쎪j },Dh'п?B+b7s~ T#`ŨBżTլˏe] u($}~mp' Rb{<ڴ>p)p &F b? ]"jgf,hƐlVN)PZDq h*VN6uQhcݘeAWÚbmY nIzS`TG]b44P`ϵfGUw cpTF3/VטgM6=">o?(ZH8]!i$Z!ԓ{LeG[65n&8,`A=4͕fc@ͤ*EQ#*81뺅GcI11&E9=WHz)$7 uzuqRϋIm}%[F_$hfp ZB_MAPP EKsFF#,8:`{VB@)P9#z~Ss{ @mЙbOf\ԟ~u9"RW5$PRUP!!=vC;j_섧ҿ@o7%]˞t{ h](4h4`O9w-hDv#\.%*>C9i$8; *M\D;_3dA `zm٠R,NYipcxlnB͞;ZL6Gƪ{OʳA/mN`Wj ӣv;aB߅n0Rk95(`H>":<U ;IZ-Bp#*h^ݵ κ 6ףw@k88>1zɏ n^QmUw#H :.~OP ]c˶j d3/*:3hP=2IkBԔ41s}MB*m-Ubնnwv.Xz}9 q!lrdS\7}JvOxVF+ i踁.UVw,$r2&I`&9cd𧋕 #'o5H̞_i{\vJSU4TleP`e4J:*(Aeb qF^S$WH8c2\*K؁Zaa,8b3ofWG*FPҴևF->wXY9nאȘ-h4 Yz^p\TQ5zWڥ[vcw5 &ʇ1lOZ=ɯ'V XU& G->Ie<1zy`^^~ 35K)ٵ`Rsgm:hL5`#gQgF?@\|Yn*m+%*!nG3mH#^R]Y"[Ti eqm~öpXBמzG[#10AӃe3Ҭī :7ycyv>rMWqO2Q{Fm#Ť9 !(`(i)w+5bI`[/!'-q"/:FyXdWT&X۹u.x$8A <ø;T=Pџt=l0dUüAMW*;x*'; P$h۾)!n^&~ٯc)t}_g6.0zCNVu$Ylu~kCkO~AE xdjvUy {aQ =x` kFeP3gH2CEQ+zK sxVϻ9Uy=s[OfF>swtLEg^EI[։*ɕJ%(aҞq#sz㗿Ƕ|DdBu]<9' c8'KHE 0 4Xn.Fb;윕ʴ_AP_$, GN$eX )-zlGg۴;q}nt\SVe)kshń-ETSG!Cәjt0q.d< ϲtAl4&+ !VzB$rI!N Nz:&AiiriT~BD#u=<Ϯ 0?7,ۉ#U~o7ߪDRwoR{Snvrh8Jgp~/<%?37ƯB(ߙ` ;h!߽=b: w!!ܷI3 `5(5€`Uk<'$zϞA[iPjC4μ:0@^SMf=?/™wD=͜ڀF's@UMi9XPFfp ^ڟ8)cÇj3ǹV`iG"W VQ&XFG)-a~R a;($ ( Bq i!:!jZѬ6/M՚2ȕ|$/ÙcCʾ =HnUmSp}29n[I*tҮ 5iR:G#5a\>@EC=1ёN ࠃAA۞( ,eu W9߆T($GQhl#Y9{PjKxS.QG_9>To[N1k 4ČmcޗG`>~ ϺdY.ڸl9aJͦPH@5e@$ + v`S#j@Y-✀b˷s)%8X;Ѧ|t:1xw#(EE#완%G GqqAh@r& 㞊X* x(žb^4hp܋=$3/RvP&͒ke(R 4f ǗG~a՗f .N>.< \ʕqQ\>' v%uN6&&L7q|4ltEd)<@`(?si =ĔЇWXIt+l{#:c9Rt1?q4g,4F+W-|φ0]3>Zy _2 ^FxSU2+{ k58ş)gY⌞ȩ6=+\q4<+/(ת3gFp,xg@nq%HAol PNh%۔?aA$CBr.  o‹SFa- ҵ)kq,).rfmM^k[禰rȂF t`yIɢ x@Q[Q77V_S7N+cm$L,U:u2#d2q;jieh?%9(0P^m|*`;`oXI0'dPeZ7sQb(%'8zg/C3FV 24DL'^fɜ%w)V.e?L@qhu"_6 ut2TX <'n]?3|zR: D'cW2s6bw0ǒ0KFRɺn@耳fuoK 9GE vǃgR֦J dAk##|mxv-(qcwN=iYS0 Y%* b1LhD*Gdbm(x8d%fI ^-48ᲙZz ,Il֛.K.NP958GԨcd{ci| +=%w\E#E6m#*<[4^}+š&}iJIBK",N{&ajJFӪ}W"`‹8#~:y O2Bh!LxH3Mo܈!a znRa}Bi O7FCNK3_[iSU%P06م/Sx$` gB eٝTb6[V6Fdz&ӣc~#aL96dSKVOL~*Ko`,5:"`vyM?(.gG#9.Sx+ "9Akcwo|0Ea(BQmmZx"f_DYd.d 30d?Ɍc&2J큯Ҧg7v𦔒kbYm}tM2h(cULNL`CpۑZaߚ5pPa;`_;A"&.A+XY|в/.2a =%绰>*֚_ {]ɒ5+{gD^C|3i :b@\[u`M̭`\}NTj`bEv ovl.>̩\ZzVw};x~,Q S|Xg+/ښo̢/4 F.y' i3?UVJDK=)~xf* H󷵀%$qSqKmWI {nw0d/rqj.T G[1"$K-#Wԛ"M94 /Uߚ90}T>8;ǰzt")={䒙hho [s_$P]Yd%gRV9Yǽy\i&[IC ]Ip_Of(AtW#Vę*7 %K'@V9~UYzfJą%bʛ1޼LlX&1t_ef2kPEC!uzi} 4J+Yq=>a{ʋyIV6eA;BS*įlB?=OG%splK8.&6:7E ՗9j1|è) E}^y;|,zn&u L$˻dmp ZYI#X* n4HTU= oobI]Գ'-zY^0?2X;m!Eoƞ:@]Q‹v:Ia%%?Kٷr@flr.j;'+biL]__ z{N?P7z)[-kd.ƯDə2Ԗurʄ]R1 bV-2k"er|ZOKrvݰ> 0O=p2nBV*Jdm҆ kb!RtxnLÉga78Ѱ.k[cZ+l'ίA{ ~[Bڀ.!*rG* ~5q6'ED@zt3_Sĉx)EO_\`U]?jZ{%Hqj;` =SH60MbycO%Mw,TK/Er =lFVsga 6'nKzZm!ӷdd24۩BӡYQ oE<v+ӡzԚ"JEd8/ۼ!`@糒1@u,9#XWrfd,Waso4:rK ʹ70Ȃ6AMykе/၁K_ Igc P] w.3A)IUVarˤONj;+8De[S@to«O4f]AE 9`(A嚉{tQ΄hՠ^a>DR)tE Hͽ2LBCh4ܦU*N^"t9SE3sn]T>,;_Yq afbGQymaN8rƝ6tJ_}I|[`T@JwU'7"BHIKkr^q+Y1LB{Nt}x $/%,ZJ`ٰJtkG]lB|1lWf@V}~RULerY+|]r\-|'b؈׆3@l٨?~WF3ƭOxrsbSv`b\^S1$95?B{:=5گƒ$K Q^D)\ eZ~b(RRmt03'U$9-$OT!7_B] 4]8yfVs0|0O>1T\T vjഎLIjLmlZطή)B36-81E ؊"TۉO;qZ,#D`j ۨOLWˤ~跇|L5GOMYLa)riY@j.Sd aip=)E_ts3J9m`eBV!]"F$u/7dLZA SIz%ň d[noKVfߔe8O!ܴ4cC -3 .f>Jgɸ *lZ@unN]QX\DU;@W*Iu4/@oI  jJ@/ƞ[|xF@æCXpnZU&$X{&+1Wjd0=An*^_C4^#vbJnKחU߬ E,/IQTai9~0;U3wSVPƺRɴ5nF"d2 (drTEdAߤK6P/Qk"VV5>Syu"R=`-|#iJ+ ;4tx\_1%f,ᅰZ'mX}k8*aY.鿺[d6v.^M/CzKB $[`-rX&s SZ!tKqeL!&|#.EcZ;:C\q#Z>.P'. TC}X)rԵ[Ce[ZQ+XүJq5fzf`` MH"h3ӷPL8\' z<|&9b8]3l^6cJΨ}tc* #-Z$dS杘",nhħj*5o' -O= >|EaR_ F1^s`:~YU[:,VԉqFVe="P&!93hz: WҼ%Om<.Z+&'DJ tt7Ɵ2lS*KcXlgYtzLxk P|Іq\E,\Ճ;.9ԩZr{F::azĻw &V,C4{E!3IYߒ%m(k^P0C$lڗyk#97 V)yPA"yA^ fBE;9UWh``@UZ> soTmlpʆ Lͥܐ.ʘDFȚrc9tSO N#Djh2^U(J5gg@OnۃyktF7)N)EosհtKi6(xqo-4:DL*Q`~gF":Z ܏UOjwo]gG%{N/3³\=@;ю?@؉v_5_"^T81ޱnNe+ZtWgbs;#mJ_0(aT=#\⭻f^82Zb>֗)E.`nN4t p][/|=l:n RJT]_%KMgws74 }K-vKOhrji#rlx S#kq" RDT[Y"=[9YZ׀c>{΢ #L,Q{`\wR%[DM<=rC $ƙWnȋ^uՆT۷wۖ_C9m%wəVO90)$725\Vh1+z-慆i1_YfT Yg4\҂2HEo ߌ<^'Sf~@<$pL;niArdU8cʾF^V/n-z\;<8_b1IrP㣿09 bj5W}3Tp8 ib\Zx@(ᙵr ex#xKM]$V po<܌w=zƘSPRQ{.47ew?O>sNr%dfOs쌸_6ȥ>.XjaH#SO֎C'6l7撅7EdjD` >GgPj@$;fӈNrcDLS'%6qdt:&,)mzax,Z AE,GYXX{Iu\NgVTaZpǿ#<%-[5L,˜zd{(-Bi:j2] 4X󃨘⯔0Ya 8כ{Z i%%V6W_6zѥ(J=@\IOS;RG(sr b.@u8pM[CQX{]w/n97 C`c/зS}omНA8sڪ*aӯ_MܭˑqΝn -Q7X7sL+\=}DT}GU>k'ZcT6xNV3uw5`Ii}1V m7_;=/L(lRFW?_@٬Fة*fLu0́Ŕ "y?{yM~cdc@حpYA1}&MSMb.b菇&q`@V4>K{&DH9R?$Q3esW_)?D/ɩO_2jqgmu6UYj"`h?X H:{I/mO5[ N]dk&EVon]A9 fG'1#2I, E7!ZVa% "V^2*$5&;}R^ˋˤc{˭ڷs|jVha gzv:(@N`V'Ź{<-AG<_ ݟemeILބV8-.E7506T N= WuFr겲}bos{F{7y>~, c<2dj쿅9`;L;?! t]_MC=!Ő];6tz[BޠA_̺ G՗8Lg ,D#r4h~kWGIF쌉=0$6G+Nòғtc_;ߞq;鎧- tHh_rQ7Zei6%gY\eh*C7FHR[Ȇ;i9pdG$!&fsR@ xǂЎ]mA* Px8cLSaLXiR3dg iZL"y+Ul^,8L-o?ϧo.+1'~#|s#rmwc5$/þ78OzDf'6LtD "C*\C)_*Gy3.^uJ CMᠥ]_ Y{s|ӤdLb5et" hʌ ΡW+ky\T f̴5 qX+ 5_P?hH:LURa5ooCb " n횷MaC#a듧wf*Ȇ'([H֭gd##+w-O©I~ e/ItB0h  Q S}1m%'U,E 7K=Jtf%$2,eDXiHEhV. Bn`)Acd"2)3A,M[qi1:%A.\'לτoAG[lL<hi=OvS|P$]2gK&GB*{՗=-TӨʘd2ky\˚WX/ĄX\N#;&(Hf 1 Op/g3'11NFNEbJ%^Kasrj`ߣMSdь\#O.CAQ7D oFb!b'O@`O%0ߍn00 vs!b `6w:.;5RƝ1 #50jx,%R An,.rQ ؄ :dͼ=砅Ong0"ݕaO-&ARXx,v3 $aQZ-3BF&̇E dx§/ SPDg|T)1!}-VZ5}~ɭx[F }n3n|JByR7əq( ߼wj.J-NVL5jp`!2~C71L6w 0䧋T cZ׈BN &zaog~ZlXw>T)ONBՉV1 9uʍovvŠN?_o@I]$?OMŐ 5T5>ӎS 1Z;tu"wBB}?E 6r:,O54?RJY h3".01aʞ(}3sx$R?Gq]aQU׮܍_J"˷xSSΦSqҌ8&&\=^= pU>aɅc 15ס gDjfG(XCϲńyH'~.WPAJeAeZOp(׼_0X} 8/Kl"n_>6bJEp5PJlosNB+o9p#Puኗ=M$>:%XA-" w&˧% iOd:7ς*u&5r|ԇNXw*[7u*>w!O5'hQS, .jI44C$c#?oϷԋVQpn2VUni'ErTVcd +Dpq%LćS]ȿ`œnZ21v_$;k5@cu6eqWv_-ɾN7Ŭ7x~]X\p ,'.LY|EZL =NuVIaIcD"xREР4ܢ52a\\Ks SͧCpb[!ƚ$y&`TgTrd˭༛h'I{i"sǣ+(&V1[9?JO+h$V'.EJ'y8 6k=, SX\WTio߈2qu4V-'zE&̧= cآ_B>ߎaYPg1{_)8r"%IL=*%^7羭~)/' ~[XW&~`^NB+zyOR҂l|`QbۣEKL^ĈYHx}[R\F{ʌl @o7;VAvj22#T9yo!\_wgbÌ9~4K1IE>pN% 7cA (!Q5ٮ'ntV"sE#i 2LJ:V{5=WCW*X@{3чqYS|Q?};;/p2U{sXH.Q;N;P;W:>:Y`lG8D+~XEsAp q/яٺ{-9ȝP _`h B"i7jܿ/ք o>tضC|CpCk@G=k#`0O~?aZY !8b oJ6( V @ o1F*( @0m)5{ذγ.FG.YFtLX p? U9Wȍ%@2 @uQy9MeAP0?cRgjy֔q{ԍ-{dZiQf7^>QD3@<D*&JjV{HO5_C!4}7LO:wVV,3׿蛦GHzUvjO^WL|M;TIx׍t4!XjVUJ̴m8*,3j1 T ?Ra]"3c4*uTA"ꗘ--/ h^!q,sNqn6DEoFC;d6LE6m&|<.0d8EdOX?ab+Y$BHS,FoߝLDE'xi&n4ab!AbPƢ4ފ,`1<$qV (j C h Kþ!jLGs\w> bb ׆<}?Wa}ť1qߩL Tt,ↁ(eqnY ]WJݺt $ `D-Ks]uTϦu3O⒯avE-{r TZJ^(#g "KlC{9/Ҋ7%JgF,[eJ5R>gr`ԼaVT]W.g-?IVv`'b)`##[oQ~(WߡzOb Զ:q23 cXfi[m,̢aČbb(QkQFҵ*F4LJ%am\K70S =kaGt+^TƩ>q*|fUݨu%}N**ձJaʓu%{J ,-_4|-rzž!5R,Lu mW;˯HnLL> ,RK#mVNx<0AʡAqgjCy_q՛#P^35gNkZz^xOSgzT8hvGf3fXskC 0ņe))D)m2r pKHB3ԺfYA ŰԱ5r/aXɿ, _m`pd97 u1OŜ/g fDP;%?{FV)2ĜD{`BMN*p11 U'::a]=^Xޏ"pbCÛٟER:kFEu u>O rbT+սG.<(%X:Y"FV v qѵ: ~ _Z]nWʆ]$zRE Y:\LomGs[^P%Fe]u庥vᅩ:׵\b05Up;q7ؔyܸOh=<C}՗jI޶nvp8SNKv~jVx`jCeԚo 0 hiɨAO otNz{l_e˨mgsCҦ?iٻC528)(G`D—{mZאN3>y7|pm^.˲{ T#jPp+FhЈ&~Ѐ}sMo襤xǡ|&~U)HUh?UA9͂j8Yӂp7A0U0.{z:ٝ~RK9Jw= $^78jhH$8;}Ǖ`9@[&\~Bu+U`-;IF嵶QkK=b~.lT9ts1joQj 2Գ,$֮ړ?j ȌŰT3p5ak/؇Onmu5IC%>g]c: n7O]ѡ?#+8cAc1V~5x Nf^6{vN |y4:pǸh=&,Ɣq0ۿS8_"vO ss&5La|vL31pMGH{Zs7*h{jG]ΰ+Z?uZ/BvEp d`ϲt)+vpAҾXl *J1V꺾 `)V8!֭2M6]c/Ṽ m {~+@=G pMq7Tj?]r8l<g1ztcfZoDȁ բA&!P-fڅ7Uڸ;Sȱ/ sFGczHjb߇Ec] *ՆLt6.K1'tc;l.cYu.1Цal{2(EQӨ4Qo^L҆!2۳hk';g7z(:Ov[+\o?.~گQ۞? 1 7fxǠI*9`h֠Vc@Hͥz>LZL[=%_\懪FA:~C}_#aYQߣ>|ʅȪ/t˱"6uXtVL߹V1}FX>ކ}'WMNs9^?ƳuO=q4}2o/Vft &TmNi}\[)./CJ+2ҝ.[l+ʔ.оMOAK*U8<&' Ԣ~9DEU˚=»U&RlD `;sp(hٱl$^]c+i???^~_vCvUV}ey2bkeR\ٚYf6m۰#Mh_.ZjLX/ƃ40`M^5 hdơ<:s^w!Yfi5&kWiК(qkpsI A Cj(Y9ŀCfzcIAV^=ŗ37tHŇ1Zh0{^ݯG+tz5dm:|_KwAI$tB$[k$ ,xk3)v{q "X]Pձb-xn“w (i3"M.g}%lLf YٜUM-'l^@谐9SցOa9g{=F!!=0Nͺ[eLU#;Mgu_w|,9Zg,d`"!7 _@T`E#|q⺳{ز"דw$L|]ͥM@E2`QTj" h#Kdx2ƥ8̴+([Uj!QEDWQNكf%qP5PHU,ʒF}ߓ*?in:3ORw# ׉| gOM_ϥ!b01,ڥˆ]x03,YT g"6–惜X,ONɜWAq9.Άlﮉ 0U7d\f Sj^M̳{N=U -b$DQMš0ٮE{cv57fQV8Հ3ywJR>*'u¾GYvҮWwdÃ[II*)ϱ|춪,|1Òʖ¨skm1Jߧ 4.8j҂ хJ7cV]+]G`Z~s(a=4eEpl1:|ґ^rCC=%DR p^yqIWI_U+,a\J3>e_0idVq(h\yB<}~nz% OA(J]/*8j.JO|a HQeK˳}[zIi^eSYΓ4W^enICpi"-D'υy޽$t&ZI}μ4k[{a4O'o,lرA׆nr댒7%qaO6J*rÏ=fE"mË+^Ւld<<[' 1SplYWŵ-^(`J2JeN:CeHgO.Z>f̍qWwI]MM79 r3k |oIp{NTb0A\uv 'I49Gzc{Org1H,gB\P$ʷC?"ДB v;&eo5 ы6:'BO0jLk-Pjrnr=EU-vy0"ԯRQ,tWpcpOń1 SBRӔ%Z!ndfֶYoxl>M~MifW4?'e͞$[J}#,*Gb /䆖|jʳ5"_go5!jF()> zR5;NP L$%2D[T_"!4E.ZsZb*"~9}r $CQZZC"Bp-IbV]9SSIM'Ol\oۜSB(g 7v9zJo48|)1t 4xx(Mdi!Ik—FeIckeir&)!=ʏ]=-z 4;sqpb֡zy ڕN>D19\ o&\QuB_$B] DM5Y*l/.0}LD$ƨU@&erSAZ"Yȿmc3i( ޽*@ʩٞ3`0o>a{6'fh1 :@n-WzC@R =-{lNp+^d2 MR:w_t3ȁ Na6 KZ;3AK0X*r`T6Iݵ*+a<Ā9$%EltQ%r^sW`59h%0{z PdRt袸p#S;[h3FìE"_֓OB~vjcB)5I+s_ M׸S΁ҭ+`l^c F=WLah 8e}2a ; /1 7՜pXz)?>q5L>W{h5h=Y< =A$ӝ#?mƌbwG#|$"pK( gFyn9K߂J9Avs(3\h ՓaҚH"jb㺚^rAvQKn1#:u0ʚ^I;9{^ ߀G i Ƿɵ6k,+>QE˼Ӣ2`Z~Iq6O?w&VJl:L6Ƕquߩc`@x6 <9101w(I/1.bҔAKh8 ͎ſ@+h㡋I^J5ut[ȣa~m,8>bA+*{r j"ZA;usP]UJndQ&^i*AfVuP7(7P> &zr_ڲOҿPShtt= Nw4h`bCV0Pư2B2;+^?'+>мiQ!5ВFssmyhHn y >)И`j1| Jx4[ 8]P )Bio_с_aè%iHu]{y?ML\V-cEe|CAN_R 0ƈ7֭q>X4'[Ab"7!gQtAOI\SAeq,휲ֹ{.I꽉>$,IEEFIFa9?b}c_tьHYG?D9Pj$'y<)OrݑȵWK }`@" bjD#m g`@4f"ry?ye^% #򧄧B]]f}agK ]n~7uGxNwG~Q+B֑{Qڿw2NW3vTiV8D=}9_Jǃ;6{ bS!|3*.G.ձjWpPSۇ0DmVJ"e*H`ٹA95ǘ_0iyJ֎(et! >;$7K'&+jH˵u.N`?.y0|2sV c;8>;lԱ[]ma ?ػJ՞gH_}W mS1}i/=:Rbq ehI xRg3ri__b ewO `ltF ):n7sX[[ߴGq)f=`rZ8;h%L00RL8\GV:mqmKΔ._W B"vz\_Fn'8_c>BPu^,WJ<iy)ȐB ;,=6B&ylIS-ivΨ,=X1t10@_O$Gk$ϯkI%9>AΩ!-{ &Eu]1Y{I7l-'"MvZ.eNpGNZl{zb.,0J",ِP0H@BH4$EV̬%V݀^D.GwvfҌRHz^?R\G}z~*#UpǴ`b:Of]'n95Ù2ړQmX5eGq$םaJJzJݠ#v2!@ZQAEu%a>+qkӁj;x KGS3t=~ Cy]~#n@?PZtV3W:j9dF:9 ?CE"H mM A@5{)?k,upzGW? L%~|,=/7y6C9(\@lZ89I~xCfz2~X?[9OS҃n7; V_J4"Vd|J|shnN"Z:BemѲ]BӣS}vn"2 ߾9T :W!V:`|RF'seuϾG`qw*yLoߏ!(ޫ_b NsP$ܰ`'W E DŴx׃y=/޽nya0QpP9'뿳P_v2 (@v ٤UT'~]к?X+1^Im8&܂"`)tΫs< ~9*SAI`$Pコ/GCS7]8dܹڎBn;D *^`P@cNŞpx*G}%d:8SD\H8;}j3L.p 5nj%[&OF]2jHSHԑ4H/7%he-Π:^]՚F#~`r%,??Z?="P8Gp8(c;ھ -f< nΓAygv!ZhޘяÀCNPHQǀAG.!v8B:! (iFsX:p?${ϲ5[( x$,޲7_TzktB6v cU=5X3-Q qYnũGg{+ͥ{DKo4 yQ̌t ram1A߲ }7,{3ւJ /[ѦQ:3ځΜ Uc93-*4-dۧQL#;w;L%djd_[^zuXaDo[$!FG|\|;AH(_"~ūO o6]*,{F3#n`hum:R|@DI`m>.pHk(Wv$ާ69ILYJOЃ[X>!rY.h$Pcj+2hRB<-|7K`R֏0yM=K>1d>v/ζEKy'i8+3m=Vt>ܫH(=-Dh Z}?j\ f\@Cĩ@A"J[Z޿O6.n\~RPA {Qd Ld87>Ziy+;qS{D %RQgſxhP$38.ph[%d0z@LIKѓMԧNIMZ/ZWf9]я4k1kZ§Y8Hѓ]2~մYYj]g~JEY3!XۚnykFT[wJzm-mU1l1[?+n"Yi(Ԁ։Z]b"/]La}tK $[r^{kl^{.- oP˻s7%gk~~cnTw-L qS4 QOFKHy!!VxvM! GSK,^Ċ8 Cy^@h87y2xwraޏ}:%2zo??ȏnCFnn(.!Kzg2V-8I}.u;<,BHEDhbi8*hG]i|; (,\%pT`9h y]\yb`u:|Nt.WƽmZ~3'(MC-iHCJ|v1At|݄ePZַh".vg(ΣqO?T^as$)w t/-JuwgȪQνLLr]-f_˥&qp!vkbuiOJ7NxFc+Tx`$f{Ax4h pQr- O$flw$H+U򑝖mFcnm'2 ^Fmۛtu(\b%F.= [YoE!]#miZw $A`# I ]lQ|$L14 B] v\-$=sŭT*U Y}Z8BuͿ\$[nu$tz?=Rws(܆)/k$?G ǵ7}n|,%Љ)ehNB=G58:\&0KI<-׏ة`q6i씐٧[$_|8 ږIϗoB⯟u$ڎhQ iKх/j@2ntQ+pO~̟2o7ëv~wѭ{0Cnrk[\sWAdH~9ws!.}Ts^wI} Yk5Yy(zJR*F&qf)޾Kunm;}i sywFzgQ3jȯŎZT ?|gҷ߉!`i:g 'T b痉> g2ib#nz0|BAA @@ lżtUCXpg, \Qm"<'Ȕ:t= D#nd+lwQ>o/ \%L}t׿6~^YQR;D^0uu֏`*n_ 03Nu+z0(j:c R;PKޘW{% V: Owa\w3TwEѯC+cbd<".^$G.Ht44 FFI=_ Om| ]si:E7"FasGTK7MMTrШ:|)ɭ*{sǛ5 (}]c!?o4fޯj Q춪앗Y5wR(o;ymgH7dix#~:2=o!&gbs9{/>M:S9L㮁#J5"HDj"Mk;/89s+~sܯD"񟨘|lo5{5{FǞ8f4 q%}.FGΊtSU1g x#B E=4tZdbͣ$C0Fn戠%^c[*L?MV5]CBH+eq4S^]`C[#Xa;[ 1n[7IS2l]BBij7"$ak;)>nM WsT bָh:g{;hA>Fa'TjBXz/*i6W6;Qj> >SubY2 \SJL/LϱU:k8kMo-Է4@ǭ!TaVlcBSWWL oec:4w~%cYG9#w>1~_܍bI I |ku?Sʹ}MIkBDe $$?k~k#'&.|XcY#!*}eOqA")/ڭm\cvjݙEFSƶ }LlНB6<,wH?hk~>'.ᬋQ@$* |p@ j>9v $E3~%nP_~_*? h"]M>?2PGGGv o: Roj)M?iB:inO&c!"4g T7:ĤlLE ;`-(D5pwoq?JL߿޶EWYwǥ<qR\՝2'H_϶˟8yd]xhe9TI9N,Gw1ަavjZ 7=!XC 3É; jzqKiMf~WP3&N?e SU .7P9d׶Ma0bUMνʵ,G'{Ms$ޮ!~-Vc73  b"Ę8G`33ƜFo=/횫+oQzJ~ ٹgCW4cg۟23hȥ@lpf%qaGieNYX *&x5܋D7UrC , lDtQL<49R;A6 ; u)Vf "y׎ژ=}qZ䍂RQdBSVqp,|J/1M9my+)"Ko3] %|J,y}-gcl-?KT&*'f\.TnT+~~9#^,T;օ+}/cqAӎ Z.H4w䉃zYdl| (d %VS^GgQX>yߧ݋:<5׳8En7K.N?sVe/\l }O<9|_oKf?Td&~4% ^Qe5cp%|ؒ}-]FʩUq{"0ۿxS1q2chW?'a~;6(N~Ocp֞f9Kxv+7s\1JH+Z=V~wDm(iBt3]d"@!5!Qβ&oR|پIԹ]L dZڑr0?Rėa 8 97]۳>5lvyNWjrS>f:)~1CPk`蔑&=rɦb!;%̠2Vou^*?:{0][?MӯăkUNĀXG} P^fUseZ`l# BnOTO=o}f3.-(cKߩoknq˗q!9$Q/~(BnWAQK5pRj,?:?2@ڴD;/"3Cow} ܫ"U `pHe.|Cn/w5pm.&S˨U_13nqixTgiiy8$Uq68n3% `b?ca)i:u:|*W"z0ln'/>iG ^-KT6On=澆%v aߊyfLy> ^kP^(ĊLcs?s8ye56럓7[6I75D+mOFTП).iQkc^BdAduϡ9ASbF YTeg/rqcvNr߃׊dg,}3f}|ܕ/JQG&±x]w\mBtLIA7}1xM"œOkar5A>#~"L}b=kELJhs _6.kxģZxS&EZ<(F/oٜ vȮݰ.eCq'ln S:j/肠gKtɺVwo!?'{XV%f4p=Gž^c⧗ȩqs׳8_#'Kq?OvFګpZ^# ` Ӂ X=XI&AZxO&v| &% *BLt (1ב{ 6͟n-]ڤvyݳ&VVOLȡ~O.R-p_Aŷ3;itk(:LA<E*fiW: =FF G  шj pHIɩY.#. ݥ<#)ߴM$SZ1E׳ 3W*CocM)y|6lKe(Gw-`z3[?[E`;H=n@RӳF]Hcq1 rH:[WmTκJ>x]9B=[Ow%Ǖ/Wcwv<:s%d:Z9N_NQEYkgЀT`^@Dy^@jLť6oQo9!W|*($M@RޫY%Fjh>zWNgz[ eARu]~m5$ʏBN?#YUbeLhR%D>_he \ IrH&߳%! n|+׺S><eBo,k`Sm8xI$o^!L:E Oz L҇^2fo&_jچ8@vQw&l4_*¹`Ba`eܭHg`DM+PϾ܃[}c# 0}'K̲^!oDLL'!v(w7E՘aٌs9|jU0!r 3Ƃ?_S]~.u#4WG(|d)Xێ.;yX.{(Y|)!"T">`VBo$FkOE[4^Я:p:= jCwt,띓neS"&5hd( jzVo8|^$xX(󟩁uѴz:Er@HTz>ۄF;3+wKam;1 z5!NA-xIN~dQpA |nwuqP uf&|EC1_. 6[W/˄asty,؈d`|*iG;,2VBVj_Q~ȋw Knv`;)tS4gC]aHlU7uB$Ӑ XVM_İ%:jd,]㉖gk)8pLb}^\e[0\:RۉJd Y? w#w5gf5}A=A&YhC:LTPRtDNUY}c\H`Ia#>O|4=Wfi1)8T‘[~ D:A lb^ce84;;[KIyxk>sjzxRycINYz|^V=nj}L,ͦPP{/8ǔ}|c G0Yf^8MwcXk97mar|mq$S?{mOݷx/kRvyz$Q$4Q"}NZJ$#yiJGCsN#g#A:Wק=욺6{3o<˫(;C!ֵ:Ū{汾;j m166,\KqDIY۪()ˬE"A #{9#ekj芾cff!g˙E0Su3FБImI ~3\Eha'QhkX?'d`&#ˬ)D[6ĭgʃD&1J pJkɇfΎt4._|R|KZ]E_ч`gG8Zm~+}{hnt'~=cߪm,ڶXK2?NSmNteX\y2/?Ŭ)o%TܱWv=c]B@eߋC[۳_%Z97nH !~UP_)Qwb+}/E|}W\%Ai')<)Ӎjso./oiy=TƳQi,ZzDp' TށT))Z|jHx>m}̟WK}.=q.ҝKJhUݓUHYVwu3,9_7˩mߗ-^DeO&wcQ~~:>~^qN(Z mAlun.gp}FKnl>☒\6ᒳgٲ-b&D~32J ĘH}8naÆH^Jw5ƕ-~{zC4R#Pdsl8ݛUc8 tm~ߧmoR=,[:[d ߹I&D.̡b &] (^nƱs+m{~%8TnQ˛BSnd{R켽F^g[x5PWz|/[ܼg'EҾFnnP}G[S%:'u*=#;D©k|!~gݦv˲ԣ#s(Sf>g E|&W {OGu[Mxc4}*N~3ZZbx^b5kley:)u^A#M|M x8zˮ=sjh1Nfc{i[;v#=SBϚo*qk;t<)YZkhO糡6*^7P`"à_g0Wyb}ɈfOie"ZTzM7MEWAQV6U̥JBU_LcLe`W拉-~$h|د:q<>Іr=uVXGRFLXD 8{6PC:W ?_5,꯮uHg`M<$h# Ah*\ǼZ[05ڍȵyMѕ6z¤< ;xN9O7?8p*TZRbZEk\#So}|>w 8tB(\LҁU}u'F/Ycm_A?C{{8VZShF;jϔli;R:idIQ yy%9gHOi%/8'тk!=Af.L1;M8r]ƐkʞY'!F%., @ɚ%LnK`Y" j;LQ VQ܅񱲖~6a3^tճ*-{E??=#DEZtOB"T=߇_:~)r5^IfoۅO~Uh?3LjɏksQ]֣{WZYߪ1z{WF{͞U46~O}ょ/Ѿ# J|b! smutcr6A3+'7kkIĂ@ "~JEmN8Eĭ\Gm/soQu4KB"ZWgCF 4Ԛi=vUH3Moc`b)&Y[%ow<,lnUux(R"65DPB3j,ZܓM?P=斜M`CJg æ;vye'!Gxtӻ4 ӥQKle0ݩ/uy{x#ݘ{4ox[NnԞ)NZ֮U;} ^u_oUkjiͅ7wN^m?C:ԐH5'dV;޵,Dݜ2lݪjQNnP#\w;Jz9!$6)n<,y 6H7*uGM…O\" B({PʇBOg3Y&BSp#}oW7E=,Las5RZ|&υanjNōWXLCƐ<-^UWjKbĆOQXMsOĒwHE|orb U c hG]BDKʩ>|?kQ۠O+"tr[vf]3=EIczr>ʦƪr+.roaev=ߟ6ZmKr>;zsSz2^OCvebNUCPiGxg1ZKYRpNPa6# POU٦ Y(}LD" .N=M]j仺7ViˀQN=[va.wp{oH9^Z-'ᖄJ/z`Fߧ`wk3tkb\# B:f{a-|r3$`Lue.'S1\kQ+KSbl^‚sfdeLp#&Nem:df%Eu 懓=9 RAjo%ų<Ÿ=7$`@|u#  =BIMand໗]e~I֕;KY s+cYJۜb .3f&[ggp3vbK:"G&6k @N͖-{6Ų6WUY;%M5W-8㞾Og]^I}SzW5%VIg6oI4Oο3LuOJ'L?+/]D! \utCv[>=Mj[Z"^_w}yy TiBug)aHwLÜPbE&uws.׽lY:CFK9*^s; K}kgK^DbJQQwΖX[`$S45ՎH[Tt(b1CZvj`&ҹN(G:C lvrGV.x jJe4eu+ޛlmQ?;=R HMGP¥=a% ےTLul;;X6b>@E!h!)< -Qrg H鄍(ņ..M1CB!l L?Wt{߫4!$ߴ{.%vj_j]m\u+[Y CD}ow]4{~;kxd>_;>V Y_,{E} xd /Q36[2Bs&sSML6I2- ѹ$cS;![Ao.՚Z.yskr<7p#׃}f*EY[ebʊJ2оw (XqOUPe ǃ=.g6o]0/`t Ax6; Τ@籫y|B!Q&l8l h PY[[|^)>xxAR":, X>H2ϻDgtpx4#algni(ʖy"c՚سU ̬A@ {pOoX$RZVqqC5u݌f.32-4>fa#1=O'SVs/P̹Uhм9+xp3ԃ|Nݱڟ!9!mB!ɂXY3-C&z$`?豝أz3{S$曃ݯԣ3lg#HᢻbZS.r\ݞ!:}8=*3 Sp1 4D& aa]z5?i[\JMBlM7лFABͪȒYJד_Fj4ϒa+V}Jg챿]ױF< .مu&pgl1b=,3+]џ8vOgP?KgWQ_΂}5Pz -т!j#7-2]N>I2EnI:4w`>[_)---MR1c}Gfi"NEPV)U>ҧьM]Uv~ $Y<+p!ѓ~ s $Y^iG-$?cƉ_(vVT,OlTo1iC~)1:t_qҪ6PQWְȊ(/+Cf=Ȋ&$?BȚϘ2)YIgP3m1=EX7{_?9k7LLf!R&b~9*ya L,'I3*(<,ާ m ̳nh^XA H 8ka1`Ę"0 UR*wwxί=ܾx(gVVfnNzk3>'S)0`QAp<̺G‡VY|4x۵o\)jQc0#ѻlZ:eEecN潛f@I1sd(ut[!;FNlZ`H3D\ܞx5/" ЪϴyL`sPƧo4ʉ3k2V:8nUKu`iވ! 1ʍ,/[ooz(-׭^B+Ś|5o;j&7EY0-Crjx-us7v6wueP76,Ac{ns۫^}GK=m9Qu+t*S㽤u+Vu׳CF id c,@$X|mw _qQyŧ{MɥQ*$Q QđhćꭢէI\LW=zOsPss1ї rFHJwx#t'1_a u$u})hSBzIKԪ, eUr}t>x;8){GI I>3F#Q~8^?,24Ԟթ3#ODѤp)r OB\lͿwSHӹ5%^9<؄tcsbŃljBZyvv%A$fWW"7 Bx9D_rvֻ_ y9X44Ųsk k{7\#㡮QTfk4S+]ϼJvknߧP3^~QL4Njbns蔎G qGzeߖz($aU{M2Nj$%>wgjm-G04DAx5;+^s+<^.! Xu*Ÿok|40ַ-4GvCBo쭬YG3YR:$?q'm&֎e[jΡ-q*R[]:{ 30  81 0"AnV݀RltztMɕ%n౎k/zY 0# VZ-HHzCnK-GTpB9A9~Mզa-IY86ܞ8c$JSid{wHȬd$WXJ#[ZLH^xkTeOɋH򏔝Z(!UsBԽ>m ȢSP>쿜yJfjǙۡqnp,$JvE~γ!{^ÔmKԌ_I&}"`~R}Ģs'?|MvW2vת$jӭd\[ap=Mۭ4ly;>6*2zqD֯7#+MXՆyUu>o/NJb9b3=\SQ]8yɎIQp+;X\obb{G]f/ȇϜ?.}*>n,$d6"`ꇡW%o(d;KЛnN5?a^הHuW3q1މ0"sը7SM|^Vby9pX;V +^K1 ooV0dW4!v @/G4&iVsuPqHDH !>!x +hG )1+pމ8꣰0Eu賧|xe{;WO WjhLq]BL-tQdskMuٹ7ޫV0QXl> %+l;/X۔Loƺ3׉ⅦI;ѳMZn\Y _eK[}ZU`m4R+;{n>sw=P-,i.-KCxF G-6ኒ; ; U TK[L(W5oZa֕XQ%Ef2Lmi~K_$O̢@hd |d' ^s7:T[(0;;kh%/ɹw,L6ԓ3ٌ6v..ȌY9, _|.E_X+t7r[UXis ;Ieu_tS  Ǘ0yj+P(]EeKźAbXRdŭBel ; ݋̿W>@deY&FC] S\P (l_ˎ:&*#.c1"܌߲)/27/ \[&F}ѽ@vFeSޫ&ኊk+T;*"-\b8< wOf)Xd:x(6|θ 쯧sc1JTBbLdޅ2R:1s(^s<$zӗ>yZHC2H/k\)j{m6zM̒C`".QCC=?%*7T柫0TwZ;Q_geHfq֒HC%1]fsrO@ʥλ"\&`,Pl.ѓ҈lڢlr 횁B(z'|TvGl~#iߏYlwL-%r|oBoKm2].{vIf2k?ߧsak}ejwvA{3e=5-g{^~- >iyæ p(L,sz=').(2quz1t 7o}c,!_;''o:Dܰh#X/s)Mɻ+ 2hKm\yk7p}o&NiͶ fh{B: ,\ [ƀ2iqb$$7K`. _ȷ@F" =8m_gHMʦ-N`ʕyb`83'Xf\u_Oƒ2R/ɞ\I׽oܝf:4Ovyng&VMޏ}{u4(p36B6ÛYT3=|'}?Gv(3y>7"O}#Eݥsn|Z{F=ڢ-?W7y3 GިGc@)24z7ņ})!ݍC${z F^U˩Qfdd< 4gD4{Gsn;ض=f7uLS8KXƏR.na1 ^oT|RE8q>lp$eR&iS[hUHQ{3y~#.F!Yl+uN^昦ɄEM2Elʰuq3ܐ y]=98lx?p3Hѿ|!2-( c'@|f]Fev`P3O$\Y)%ch}5Γn\\0_չ$jO=*z+G$ǏG_9>UDs֩4mYZj" M<|J%>\,hNrn:@?2!JHE؈n~* q}+qܓPo`;qQd|~Pj [k+^@ٗ@/?!H z`?O WKD4{~@Ut-Umf#!oxv,-!L ZAbSO.uhyC\q Uxc[GXeW;QeȤ[{rY`ͭMz8QKOOf|.qxf~,D)pUCΎd FO! aX( uZAOCdH { uYG |@6v9WdS h^"oʄ<-wfcA~HD7;>Ʒ t9u7lno5%KJ{Xގ?.27캼9~4qp"#ΨK.}Y66k5 LU=0KP7 0YMheȞPz_{Ԝ|gʹ٤/Y>\ .7v ҽWU.u?u J.c&7*wțr1{߿"c9h[R,Ơ=g'xWQ'B#m4IFM8NeL3Lmn?&y6o,4m V[8~wsÙݝf۟u{*q8msx k-n4Z ^fr֯%†J0I+' i'b%FZZ w€ói,B1ol, Tj \>5ϭ9($/6f{i~<&.6f.usX|cv_WdY6?koϤ537ehשt6/oғԏc.D0~|Q3(@Dw<\ [ތo OnӬwNmZc'J(< #{/۫`6y5RC϶ ZS Hة0/3aPG: k"1;]jd۪guZ_Szl/c#7ZвK9uhsҲ\|>?&.zs.rmM-r?%TF&#I;yM:I{}o^ɖ-{P}O:\Xmc׃Ζw`Lb6g;-vS&C̆Z>Q*^eHT2䵆EDLNb!M[1 |&&!-lc #QF!U""?6V?V?i['O6iaz'̯m~''G~B伏|yz)Xd:5޲:)o͹dkgV S\AYN)|m<(b:'׭~6{[Hp3cqub39nc5&D0AP.Xd "!M8Ńu*M3n@!l Tb^$>U ՆnnjŤO4|w,~/=t\ED1tsi*Lzɏ#赲1z q}+P58սWl[Uu/.]π{06:zL\Z tw9{[qcθ -xsgqRV&l!V&-s@n ;TɪS$[Yc1>!7٭(Jt{7Enm;Xd?V_a|eI %oᲭvx&5sA)T7֓( "f y@UTB(6e5f~ӆS@$b*4.п tPԏ#1[j20Gv[jC\Lr@#cSbEکoE{Ao(5(M%!Ik\ͭluFF뼵dct/[@ ?x>IΨ.xp]mTյz^DKò}K~l< ='O^A,1xo.X"bvY2lǚ\v.PFchleUF;0/wС|a'=G첮\ӟ& }H\}NV,q'r퇠5ԕ2hbOr;޴o.G!S 1™.ϭvu v)lDCYpˊpO|Lr+[7#qG5d^F& C:G!tA 캗vQbwdzrE|mAj޾ ;] A:nߏ=mAVz>$W1o$v}IHDǶ?'"IݱoVuj=wWH LQ]vuyH暴N ¾'þELAn0Y$f k߯%-wϞ]4.XQ$;=@H^~'p:jn9KjDʥ[]ר^-/Qx0b Ri[W>os͓mX[~`)$ʔ]lz[>M8OSaET JT:6^}%+FYM(|J=vywnE<$g ǿa@q% DGgp觿|&:9w;$zw%66o{I_XVF0Z$A?D nds_7< s}#m{g*%/Zl Z-d.^O04c9Iă5OK.\©7뿲S2b*Q);hEHK5}>6&}Kb&:w[o%տ5>mLLUTuBVH.nsu'k\;Sѐ}asiW0A`߄ctC>>㓼竳kڣqs; 3%4?Ѫܞ]g;ܬ14_OHEf:שVe7䯀Hv?E|gI+D%}m\;5>p-)csdFRj{;:C{ؑ -F'`2dF ,%ZČhI%e{<> s츼S J|%V1H~d2=M1}!;,a,Zppo9wdU$ 34AùА'I:'s ӥξmuWO (|¯٤ps-mQo|X\WADhFh= fb9H{ka堓sg$$W̹? Ĭ>xkn"}g%{C=^9ȝq{¾{3gt^sk֍%~=b`JXFY#; @qkw6$a1i.s$~kqA\yHS>W_YxϓǬﳜfٔ}o7_| gbNvka2Ni{r^/1 e2Cڷ~ˡgA*Fhc3 k1^j;',qi_]EC~I/TSsnF/TL39GlE߳lԲdT~3aߒZ6mP8Ur)_2{hgy52Wըi0m0>lO3FzJ0U봳}pd;mO_TzܖgAlu2򤳱9]5#ؓ7WxAb~1 &i6cj8 }gp'Kj$?x ?Q&+:߳DIVs .湐 Ao &LjRzv?wGIa=F|Fj_?3u45ϠO$&{|-fNv"_%F'8Qd[_+i@,ŅXIK"'*y`A;(|g+M&BkH?֮UY}F6Q͋Yݟ%R9Vu:-ZpRwbmk>3Y%^=< h}"19 Zӯ3y:  RȾYd}qM2m{ >N~+׍`c})?W u2{P$.D}sZYi"mH~dc_ls2M'+[+5n}0^$N/ÀWwq39k<}gkc}јwӲ-\r4(`d$Yژh&nOm^O=mL_cy0;hTә$r"`D %gB*zROR_D>aDްS_^ MQx ̽)'ȫz{WՊ1_=Uq૲3Oo58U$:QWyUW9=/uudۭs+)]WqҲ{9PX[/[^F,hgP"noɿS"<کncDՑVFrټܤ+8\>{Sz>Lwmtߧmwմ;}[G{%_cǛs O]m0鴫\T^֩]B+Co7S8x~X}w;l;16}yKY_֬Ŭ`R(5H_o[^"Va>~ޕC~_}*TTnv&?G6fy8.ktcz7)YDZ<"|Ij% _i"MpxLYlxX&yi}DVe=?at{fտ$~e޳e9oC&Wy~o™72P1k 8rLqPQ<]0rpKFN`n7'WSԢo7͂*=^jvN d<%m݅M^c}Үn;^ǧ/3u9 ^ւ9$J&9n{#{lˏr;RBM(iZ9Nj&y=]n a[E3m#9o)C!bS rR. 2GT.vvMf~&z^\\')DY̤qt2cLIb)]V3'{wekfm<[/GEBrŴlxx ̔bq6&KkQPzpwFt0&B7G&Џ tی]fSES\Z%Z9$֫/:F㈳-۬mĮ_<۫LLjܒ7õJ.Y 5Hs5\ty\9ocA)A;B d) Cd5E=?NR% 49sI^(%D5'%Q5?E8Fo5c'Sf<.:$5uІ8~ #e-vse7%1PG#{,8~(Φg9 ?ǔAhiy{OG2kqv [ GsC*K%Rmr7˜DNIZwFgsn+-??|Nywy kY N~&cW;W>oU#Ѫ;WoۓNYDoR:Jy'gm)܁ "&>#f;\г /R&s2@ӥ{=%묆2;>|&*Fb|z͟5\ ӳAr>QðZ/Ӯʟ{tiRt5Y|S fOg /Ni 1~tD'n\y8=/?< M?Q#lt_icTl~(o 0Az7O} ''[{lpg!Zݬ+9|v7XjmG~%+K6.I Cus4&&>7ez{Nsƛ60l|ˮM$7^=S0EH}J~v$v~drH:Tւ啦썒z_~ݾkQ7Zޣ4m^7/#Fx`X~~r`OcB0!$BF)D* V{`[aS0HmK!('&zpʲAVY pK,*;)L `P@15,rM f緆 kEA[t띭t|͊9SS3]O"0u|?8g:z:*rN=}|-%rsᖋp?W#tK\ܯݱ>"Hh/ٮC].T`7i=0Pb"ACB# Ƨj8R=Z f#٦W%C6{lKxO)0K7E1 הR H/cS0|ZbhD1(eBڄx׌69Ḥ.%4Q+F'O*ֵ%4RgQ^S N! ;[T[]K=॰cC>|jfI$MPP'5c{UzN:'ABrOg:-KAhII(>Fx3*bf4rX~4pd484Wib~sF6-jq [.l [W^OfV{[w8i&~gU^- 5mtsCZipZNJȷ.VgM +GJYQ|1'BD΄28rNa$5{`!vj5D5&eZY w:I#<4UÙ`ZVclethŷM(-xkZ!u@*wV"Cv'\/`5]N2x'Q|i9X:ކ ZQUIn)B5o8L @=PqR3P;V%BR/eCz e](C?F"Бm rYEFdiM bSSP0FHt{Ro(+E#ҚrAl\3UU}NY{1jSRzR1M=_+:?lˡ2څ0uo֟yq< 9]>[?o?K_exq- uigcSc8Qy7ڮV$Qdx2I-bmJU6{lRr#?yhYa 6mO٣a(]^QT0V?岾L3/ءFˇY uG#azWO~QqS+}.!ԤX"hy qu=m&B2JEMP{vqE o7Q7KӘkgum%+>ԹP5kI>oO}~OkF~zK|7Q! lgk*"Ns/3;bYXP"bq{(?U(Vѻmíy &w^}r}=/k5{~ay.:1.61ASxOOu?-)egܯZDouNTV+Iy$k C/9`>A0TbJfV­XUTst ?Y&{2nXM׉S0i,#hAkybFtRdtt JA/h2cyw:~:hEL@! y#H.!)- +Bvnp.V7&ǐS~ 6VR#6F䵒ͱ;RZ¾-FӠ5erandYmcو.yQtX'ݓsJw|r%HwU*D`VT]ch/1Ou.y'j=h;4WuADTaPA>_wbyKݮsA*HselGn\CDm "'ZLcybn'$wb\rg ιƹEY_z!+yHc3!;&CfwObnI쥌RA!Pc^܆P|iCFLzN)ju+nAB#%qfeXSq[q06f*D7}oBį^j!ΦM&$wFX #tP#ֽ+=wsBLgKΖue _E>&w|֓wG3]igUu! Xa^gƩ?Xr;s'|MN;ʻ?UK97dj\Ml>ݿ+^v 3=MFR=jۆܔ#Fy 涓t%5h&ʾ f}ĉI6lmT*)}EjxZP̼dm,A9vTny[vCEKHxfЈKԻlV,JcisQ2CLm}"՗*H9gS0RL^spqiwѰ,#Y J*RH 5ݫS$sDDINs~ΉgU*F@-g7>$ܭJ3\'>Ҧp0::&v~0>3΋STf5lp;iS[.5y|QAi=KmP~:sL@#]p|[fߵ{u =wH ٪a B D,Px%'pY>|ULpW#!l [nեjo]qY3)I\ګިUjyqo[w9l|U^Ss4ل ,p1&.c=gۯG#"ai<)J8'=OF#@h51~rMߓ6 in:'Rh\FaNl)d}:Vt 5TύqJ|"y1uh LZ_ڧLfZBɳK]ufSȚn.yr#zWd?G-ϯ5naxQmkygR˿֗8A.t鬩5U{g6oE)8am_I;Vçzˎ?ūaMr]pɍj^ +ʺ~ 8v>Ǜ3CP`z=) n][ Q\eW~h4ⱦ? 0_GWDR]-[8lq 0s DB JUޜ b='Vft܅S3Gw[}S|dsURo8 %{JE??_42fΞ %4TIm\rHSǩQML>0A8N6Inh3jh'=KJl*/- 3oCEGi+Xc3b`[Im8EJo?qw\#_)iQR|0;&"4PMuP!^[2_^q;9#ٗT.烛&uٷbE!r<rK}X).,sj׺CDu*|P\3%ּt8<Z3}Gň0]T.4Kw*HZb/vBVR<$N#ĥoSuB\MZ٬[^Ψ yDҫesVOrRkEyg|CB^P:/wC#Fc^: 붦#r%,g+afGp}]d$b_#0!U+l}N\j9じ؛#,</QH蘛v8 r*zl;~b`aINl;ޫ44"]+<_ʠ_^zz%/Oڵ_cf-Z1ČEuzǺ0## *j\gkrÖtfD+eZGYf:٨ ? PfųPK|YPZܲ;UzYFfSo.GNbupzɆ7z-˝>?9~U:b`U:ktk}a}線/*"s >bxcP0~iw}mȊ;yW8 {Q/B9:dd1sl<>?W?}R/:3ncVPط9Dwz.F|Chfη)ar;="|璄~Z ٘鎌$zފ 4]oAag;m)9TBmJ'j1N}T '1B F-6?R!(d((OxBt~sg ښdI:?bՓx&.޶jB.g} =l՛n^-E]C5RQt|n}yΖ& R6{HLXh<[+8ss2p?_ZPmfhѬkza51ܖw]Yy> * 4[w1{ iYxـIG Z{V Р" yy"҂N'|qXPH+% nrO嵎xp2Ϳ\嚂O\kPrmGOzxk[ȓ?J3fC,a+z"*/^_{EO?VPkA$Z-Vua&VtoLy0*{~|R_y\ _ZϋOBГÀAD!0&!A*S;q!8͞T3ғ½tE4 > iMwndi"bXbQ>"m)^X“:z:{>՜QaFTxNIڀxvޞi1ؾ!8媉PR@\Erb,ɲj;"vW,2KC|;okqU 0n.i3-2q݆D7d&ʓmY,ղ@\`c\[s( Ɔ"( .d%ud=E\88/NF17W\-(K:Iz~ ;̡۞`F=sz>%לmMs?Iwshm5O=Vzo'!똙(ۻf "Nn$OCV$7 2Hְ ]1 l"^Q fuIQ,pڠ kt\.ԣ Fj(:HB$JudE[ܵ?/FAiGPr" Ռv3v,\ iFրWPKPzrr oClA'!&H2½68v=܀D$C>2wZ'6é>eF"a7)o: fc7mXiJXaI~֔K _:`mjbs2#Mڮv)ㅐmr r}ߣ]e B̉ _CylRbļd6 ho呠VCMO/=xX{=۠@OLQchi譲KUlGR©RfYӻ`Jt|~2͒Mٽ*PcL`i C!8=.{5%Z>?ܛ좳RzRpg9䉇LY;־l@CwN݄-ei˷\Cr_LZ ap%"27jKJf2o-#ҕ*HC 377fmś__<]|e4AԐ[ٻ p!,jgpCpV|zO8O#]*ai&'OBW=`Fu=$R 9iܗV7߿;ةLK3|BDIDN?IIJOY+^K hς~ve"s v*(UIg\skvLe `(j -.uwnڢ!XV8s*L>phA永YYṠ$=<9! T5Mg}zi6IӜޕȿ)HΉbFlž@alD+6I~ /gt,`\ݥ'-9C, 8+˕sx>[uq~溱P͗4qz3{#*}n>,NњZ'BLhI mkQKk6di/{ͶTA b"YX(U1b$A"Ȳ,X1błEF ?a=ɿ3ICfWMM:?fQQ]B ,F\@hOѤNzrU6$=NnDM'(͙maI-o8M89̉deh)A"l ttoVL X^[Hb+ݤsg5[nkߩveG"%fžOg!w'r7u<&Ė]v߱7Wv  D󿍂Ks ljnpvSMs5"a8v3K O'|!Zͯ=S33jl%fra40EV+"5meT*fTmE֊i)FTw/OdҎUh,f܌83 M1#Өcu,!~/JѹK?Ǣ4l5~E?|o^x{5.z ~wǓ'RjM+ =X-sM~ @@f0ހ|ѬJ~Ņ`Hg}qt~l?S`B/yϚ7"aણ#٘sb2 ||G&KR f'_gK]ԤySmE s%u UVn(€FCR*0xSSO&n_J @}!TCHB(w۠ET`^aYD*J|,023X1ҔHv1CtVء >::| H歙52$'P/t\6Rފ^)OBCx~y [@qpMf*}R~a5PWصJp,^ʦ#s6RM:to21yA/:IYDRXez@[@4:CJq,.AN} DI;+9\mTmѺj S2D8-/wˤ t+$IpGdrsb4 8TN}HDҤ%H F+a{E[iSkI37m&: 6/3g0$n4Ug+nOyv2PJ,duK֛H^}tˤ̪ԇU[Y1۲gئSmЛyZ^9iJ8_"xms*s-\5;\rl)ZțGV#ήވ< oLzr צMW}|>qQf\,sevnU^Y/?iJBjފ(d_=ܶƿmi;x:lDbǘ!a^bs I`@@HHNg}s3V'ϦlR/ ؉ݖw)|뽷N{?g0MMVT?8]+vG/7v-M:~ͬ)y_عShzOm$0.1R([-&ZNU¶gI|b\*O#&h0gvOoп%}#~p~3NAGJ,[5ۏepͅMs}y2H&˹m:䪝8{'M3"z4zZ{v&y]fJ=c޿~h>mv|RB(Rܿf)AvJ=*PJ%ez~zϱ/=}s-6{0!}5%@d!w}7D^w.aA1jز.epgOθᱥͮ5? Ry7etkoZEL<xžN7,;Ԑc{.MyAyE-'^'DOe98rFiەv&9* kXm6nVY7wdNcLb3N8t4nY1[С̈́ϙLV8+&jMZ`V+"[ A"5,tu&L(;%j&H6m]f3m%5M3R2ʂknZ[ !Qfi6qjY2DF(l,ҭIma@I k"0)aRaVG˙[f.*LiɊ52ɧdTֈLhF m\- vSJL3)(jŽ-Ek?UX .42f3*cӗvfuCg@`G\99,IH|.X$Hw~?McN0kR9,]'盻.z͐pvHYզxY=K*Ux׬Rl)_JKҺ?g?Te2{I]<\͔OK+rњCOf4Yסҧe P d?foOm}]ظOrr^n~?。&N u k2Nq%pQ-I >"Rs0(I na跡 6ڗ(w5fopЈtHi,J [5U,~%+q`8~-0QNnF$Lv,m`bs42A.K4ckdT+T.i4O[ȽY].߾ueÅ/ gcxJ0ģ(͘>P ϭMagTnMؽMvKoPdʧx7Hkn&IsBz%¢fc_Qo/8Ji|7pE$CE ea#[˹{opgY%r&%U !w|ɮ67|BOLasKXO'e@ފ2s~ˌT>1°"PdQƑPJV7D|CѰoORn" ѓOT͙SgC &yQƚ-SAd6hR.q:j:s_80'cՆaKRfM[sO!R2=?qHQ߈}w7}|1/h[m+W- qHi\m+&W]M"_3}u:6]Ь4 Jj؛02չLksZ;iIkZ\v?oÞ~׹):il80aRW,bJN;^)USsU|?Ee`ԚG;J,ߏ2kSS2^ԟB#Ob]rI);ܸ3:e==R o:UUyԴ)L*>"eQ/Yh<3R"6!I=񈴞=g"BDz]ȷj_% "G=& S63)T:=ͷһs~(ߵNViWms&uOnI,09k[-hI^׉sW,옶Ym?l~ioƊ^c=A<^^*k| [idf01T8m)2&nWQ0{mD n|;M \ez|#=Rl=7R ̵Z4YxP8B]Ɛ;~mYu|daIa*n\F襄o~X\xqv N6zjLI 03 kI@mHI8E#ƽo.rD `b"B i^GV{M s-!c .wԢBa.@~\`&SDHB C8 C?%6opÀ Z kFC2Mu?=a 3) @cBM@6lBI $;@blBB!cy6Wmw&ut+zgWj^y$WK2˸-/%_-5Hyw #xOo:ΣpjnB{Iz)xtc/X֧JPo)V+z#n-{+>^(Kލ4#{Dz6i[ZsUO5pLJ $E9_ɠ$tB`$!0hH;  ,\Ki9Fڰ#COGӜD UvH+ǞPD6fl_{. 2oy?~Vd=ZA ET TH CIڶS(ZmթHb%07it>~.w`%a ̑/Umlϔ>=I|;TR OOT75׳$>Gh^&sIo+ RnRK#~ HZ-Ϳ#s3w }<nV^R;Jm7LMe)]& _a} gM A?wkY5խhյ𰠨!755iO&Dz;(h>YNėsA²ok^zGLNm)UlHVagoz:CO^ld͚;9uJ0,oWN=[_F N\8mr x,afgDExaTדI5JТ˂Jo_NwZxҨԯξsH=duQ|=Ci`!f–kKPQ%UV4b(ף(|BTRr?:DFjIW2v9{=r_ߔQB~Kz o'+ ՎJm>F74A| XŤ:d0Z3:O_Wgs11ݟYbKX"s$9Y280GϢ;@l[Ԣ{Q8c6|:(ZFN *'~~?ZN1}\<,,{jn٨Wet(CqZ.dkUlwhGkt׷uETkKmH\1\ }H!C.k[K$KɁd+Y!ԅRTaV# )$!td?f ?Jd5 P$~ͦ`a6)0=ZvB,W|3b:eݐ~멜/8019U,I3a Ԁ^N#5GslSDb@.(TIDlX 6P&iTDb~@}A^K9ym f 0%U c_viP X GA%ʿՆ A*\0 dES5f(\ & ,$ L@" Y^&IP]r0Z T$2vDžl %&@oXH2n-=x@[d"¥Y**jMC!R8˦"U )hor\G{rT@$0*,=@Ӣk`G^Jۃ&1C6┯FKj?@(B_2% ԒQR1L\L"UₓsMI\}@I,z900fA/`eGl-b& -|dM "MਲJ=~G,r:2gQ?dgeβ]O B&d,MX.&B|+RpDLJ+/b 88L1hB n[Hpv suFdMMpb_%uT5 $/U0mA+3.KuGIS! (u'=F`4jb,L+WnJY~Cܗ9τzw<#Q&=+ w 5vm :yWI_+؍4b2t#EG6nU7 =adR@`!6m6G?M{}>z)[vV!wLH>Dkl%z3N&N=u$+i[%)NtHق մ|BHQNEzϟI敲CzV=)d=;~/T#HX`"#.mBFo4]GAx:5\EZdX@R9W_!@7Xw&DQfHHT&61'f}iGk߲ B3_|dEfh`QPDTh)$9I M=p%0"h+̚:z`[`sxt^zqek_ pءҨ PEl_h -rCI 6¢*/3+uxs3͝n>#OBL)) ]{ݕ`-ɨDWq)T1|U]{q]73Cu$<3TK_!AmtҦ}97“4lٻj/A~M5W\6 E7\8e27zXWeWG L/o_ CoC %TiVcrhaM~CL}CpʗU=g67[aa oҗCkUJlfY8CCuBz,l4-Kݏ69>-bA|y}uj| (c#n[?#xM}[W2JF00""5Zq5~JƎ.E>~M2P Q6Su964 t~`%ܜ#݈G84.}ׯ/&K9%l/"QyGc(nJ}w&ezӼڳDhgh88c%"(3߀ס. %zI#6[8R$kRGL!UB.~U H9(mOYyw(Bs0\,Xۯ9FKb:DTϓk:eӡQ#~KY.=3TQG&L /VajlLp(Z+ckv_cz`i.]M{Mw`O~P:5 ~^$DB.'3$@QI$ =f.#-[\=83QQݳ^cTp$c`arDÏcS 3u3V@˺C)%Xd dJC(ݣEbʿst9 0 ?-OV" {J%}Qg ?֙1Z[8qa,,xG6hS8Fjfϐa}TOcU]%ݶ/SΆ!rH\@ LizE~ac%~'t8Ti2N4@tJ]u"}4Ӟy_v0KҲ~xSsxB9VXJ,6]qg~vtsv5ӃϔDXP}~`NO[6[!Mf7IF2KOФgk@6=I$f䐱kGR5h̷QQk1`빙Y$Y6Erqdn+ ^*8׊; 9 u<1` 3~l̝ۚln>qI(. 2.jtVN/0O揧ߎZ ~˂΅%#uDV? 1IJ+H;[Iw)6]_e}e;"6pF{\A$Kt(;:O;kE>ԛ+W"BϲmYvEѠ@ZHF.`^PـLj4gqDQ'x՗̿77֪y ВbZ)-Z^bz:hE:|,3{l}xHB{NMqYx/=փKoKry7&mc^Nmă;pfD30O9# AA\)Ӌ xˏ%WpC ^MղZ MYіT<ge 6'q4_N*|dDy^GgoX̂~.qU:ameVv* Hr|NE[\)@|܇19)o_?vo5tV~\"=1`ltihOe/\_dnȋH8g93R=mL~i;f!Gh+V@n27ɩ;F׳'Cĸet-6[#S K 'VقD4za7MZG=f$\l ,+#>8 u%:s6wچMdHuC <7qLg!Ic{p43'7ARˤED²*a@1ƊHTF?+4q͑t/~7ӊ\Mވ&I;!!7^kԁ׌hM-0\$S~-1rk|`E-K]S)9?U[/Tidd9ŗouܧ"ط2+v+$0Ao|e{\ vUwlQi-FIM[ |sI)LB@Auu07]d_M~7׈!oMx$>2WbAwt ewCJd]j =G!g2͇zgssWwQ;Z=zRzBIEU_|b!ǬYl9dX[l(ߝøt2D@'R!{8T,7>VN: I\/!2c5L(^\FV !W-{f/CeFߩ}QxQFKcY {qT( 5 /;8R濗6(ssf@Ǭ]*LxG,uzL8*+-;V?{K/R0l\a%6dšR/NB?73ܩZOJ@jOy,X9ԧ$n؜FKmm5UϓbH̲@xU 4=:/7~gIAzi J *E0b@'vӲ ]K_Y"Lʎc3D#H3׵Zqٓ,DEKUYHzLQNit1TJ0L,V&cov)܂2$QC__e[?&[ZC*nD @sISw<﯀՟*uovKnGMߙjf6E96bg/|>m# 4%JX92WTzffu*ml] Yj1U5:4bAfkhFvl!b#юƒb&\(ޥ*XNt'S@CxhC~aJm~;26[011EAz>w붞殹,5Inf¸Gź(&ǯw4izHԨ*~Р&J!$[ 1s,ΌBY-+rnaG$a'֯ blSgU?ݡvs3 62s,xa϶"0:IgΔQZ.`4 ؄yr8xЃ!ϾR";{VmW:LKi-j˞ $]9FcfG̦[*Wb6lE}0Urn;ƣqcZ]u;Zhʩ|2$*,/߫fh' =O 6բiId$u,9,l:,uRM.V;66j^OD 3O%K_ժ̰-jPUEye*w̬o?%.eFXZ,cX~Wb p\IjVd-+$O)J{`j5 b d} zڝGZ-;3x"YӪEI'Su.#$il"iвXsMPLWzEY޶.4Q(AfS`k@߅M*h#d֋7i Z٥L W|^uD#"l`1cUUE|x8d_J  P]uDӠuS96o) l,SxYS2IU`b8{55xiذy}kħY6rgT.c(˷xtU\H4Az>d`&]S{lQ3P&P*~u"^dICara FDB0&fh1@)=75|Ǣ$r؉%ax:Z^lw%}E)M%eyz X‘( @E/5$!T ":y${V׾c(N[-fJ@_3*fyx7uB֥JrCB&0>y~\"'Vi=EU5~8Ey % [9b|F#,Ŗ4 v$nb R4ti\FvW,TbCf!5~H1XrKlj앞:0=78?DЯZc]! 3kW,ZÃX/9|tr%YكC!HM7 ̏"wޢVq~<ֱJ{&&FBwLVl3-Ꭰ*4 9n%DL&XO]`Gly9oPwه:ԤS.,R#dN£w^@F1^E78 UEZ7"]-+nG FYXiSHj}HUXAW+sb\~obu7 bֹB{iiURń@ﱤlsPR*pAvf 2 !SMSEUyd<>;?bfS7D6A{S|I$9GI~ %y@p.ɒ<79i@Vy`P" xKSYyo[+9v$iu fC,%':6^GAQV4Ɩ"UOܖOn 2OAgRG宺BْYGũ`W P-;։>!Ƿ$&.i5ōwIÜ Q$[@J1Ke,:X u35KF@_]WtL pߴ} W 7`@lEp(gk 75),;uiuav/| %ԙR2{8"Xֽen;CVBWŦW5HZc_V(nCuo˄ >úB xڶyh)5؀<٧ԗ ;AF޻ji]VJlM> o&aEzϡ':,m:K #|,J~!WD$ŒadLAΖ!62IH\y;kFP} 53|Yx,62=nSP)ѻi.UhO4fA\6dO@$Oej^ҳ22w)#yEnr%C}wV(T[yhP<t55yQ1(޴28q_*#F0>41Fi&2$uqMȦ855BZ_𱔽3G9`^=`LБ"F?mr筏\jkVt;JvpD1VFu%"0pϬ?e. r55*d帻~-ҘC27LOʚC%_`7Dt\wm`XfR߳ϥU螝֨@">|T-VcV'd̽ U:ЊͱQH[PMAúk-D3 dRjgո(.-1@kB^daTk{uҰ6=~ۤ\#yMP"?jQ؎e$q,nK#ÞzPG3O"_2($3RYhܡnv_rmyodd"ގ(s/w\ g*u4nYEx'U3{ Vo`Q#̪Q$Z9νf a{/>: o[~+/S3azxp۳LhW“eN@C815CxIl #V_$,hGǸuݩ)z? 꺡I2]aa80a-%T 壗pi> AI+2G@HKf=&%/{=CRkz6^_x[L͆aG>Y(J>{23tR`}/kWM,#+Rz/rǷ6/Z Ip Z(\G_ ѿ  {J"b:wVůHW0%}Z\醙H%OD\ +I%<;KuecKN Xye@]Bڶde1t#-y*}&z|dŋ'csFuA0famn*i.֚}x>\_\?TS#Qېr$Er>Us𾖭Ǘ掵sIHu*IhE]Co^z ywY,5M}{P-8HG˰/ü#@1S~̣Ex2_g#/,%|ך&TK)XbVb6il󉫋v⯴"B(I<.jw<.ɀ6{f)¤㐾I,ߢWՎ\tJ=<*PO5-O7!-|%t#\ɾGyUShֆ/|xԍՠ~eP}lJWw1ĈAW:0k K2(u /ʻ=ad'[޳Uy8\7"`zl<- '$PT bAMd#pl zn<7?#_\7 tȆHlrQnMĶw%YBHm+beF[smÕ:K4/mƀS#{cG>7P2|>E%$:^^WUjJw57^n_A62KYV=/*TF_e@ KTo۫۠kKE_SEpiU*ƫ3&W)d0A}nw%$юq4tOJ`ҩM7j+~6N(Fr*;<̩JXaFӔ,ϸ`Z޴P oPa+0ۉS fo,M4k@Y!EkF'Anև8;s'C3=;ZLQXf]8@fLiPGJ/:9V{h1'jKMّB .8VmKX 0 "vno{CP·8jd hڛV,(&+fR#uOk'󫶔¶9Qx'AKoF3p[kПcFg5N h/HP\D5$ݼڅ@qЩ8 Q4pGnFbN 3`=3}ʈ"_E\Q(K 01jNXp`tJ5gdrZB*1M^ZRRdBVi`'[?| S|y3mss|T|?mNB^^8TDu-=yHK#%hŷ(`cxS EN9Kw^ LeCH(Iْmg'?anV+J $P~*H,0k8C UPO.x!n-*͇7~8}~|Ɲj>lxgK3KB)3WFB;5d_*"۔U;Sf`A_"jisAI2sADJo?P<K)7 ϓVٷbic:Ol,+g—6L((VVn. )Mgf"odv{&43pxO'H]a#fl!%l{}7Y3DOΪ1F-vm).>=Ӗt6nO@6YݘFO4wk<VD_BiT0Q$c5F ڵJ,FtX6t|yHR:۲M*>Y^nV1ġ884}eZC퀿I:pm;4ͶuL;a+Ij\0oP*a j|5EKd LU-WhxNQwˎ?r}ـQZsf' |Qdj.!x#s_Dݕ SfcQܽ93:S~O cP(- kDi;&[ f/LC@H?4YKM{LzHev$EJ͙L!t7H e9?V 3lE|߻f0ؑ-xH*C幸LĂo0֟,W!Q:VJ[qcj5xUF1iхr pLK} UOꑐF&wuد !Nݣ9Ey[^w榞YkYG\]}|cU'C#1^BbGhRK.D$o_ՑĐ. Be.JLJaj@5"-HD$jȿ{ק /JR6$ QT7yκ-Vc"16Dj,-JzJs̝  B(HzGڔ3AVVdZ|> ކ(o\]ZFt]K>k1(rH;wΝ=4l6/RwH,?#tyfӪ8zL%CܻGaJ*RF:S1˷m`%(Q'aZ:U8YZ:syL6 Kb)ql}_VYP(DM b8-L <9Bש1 P7_xs!s45JtzXR{!^(2 7 1Mm _/,M ^]4|*_k$Ms\À:z ;)X}9Tm% {fvf9:s6h.g4$.#Po Г(*'Xg<-twokdڐ+~DvK;Ep*칆쓄ZDKjvoZc o}hRMqraU.Ph p=˝Ԟ`iXJfMpETCd,iZ ߌ%IA_)!bc^J幤8e`WӮsQl{ ]xw0)=LڇG6Ra8Us5ĹB˵E~.T7S]??l7An)Etܦ/.6@-P IjuBPPp%VyNO(S\}qGs5qlICZVڢ!sKO-I7`WiN9 ?YK9*E{p<,b8>_no.:U0V$8 B'zS*"6PH-C)G%Z؆.͢%ho6$W-HˆEV6bkNFb븒GŴIBo?݊9}4˪^vAWXB#nq{."Nȍ=LfͤinL({B*r{4*1@T CqDnVhFU nq*'(dIK7Tk9y-ҍmP~iIjkrX-؄Sy&+jYEP{#/7)/Ucce`{DmFO)5%8D%(0)^UD-^~8oӛN\W, R1Z6p?(!]h$ҮjDsݰn!3H!6_λ,ļByH>N|ڹU_l~ ;bGyú:Ҍ-Պlp69sӷCnkF>eRXpp֜nԺk.O燇-ݐ2%> o^w .)ت9w< OQ:_I` *Q- MgSvhADΖ 6F0mί_ȑBCQJ3ͯJqnЁ^%ښDHJZPlÚɟ+bE|~09:Y4 |7$߷hZy QI±<6A<Y$$gTn+3΃PT& sĭ1:88~\\`R !o ddag; =ϭp,3Q^igC'w:@$릚xit4"aguYmbd1d#N̨~p!ɮ-iNJ^)_7lqSaUDRö͸c,֔_$ưiD>E &-.)%']|s5 ^Ž@b )sT=Wr?{_x>WN_oVyIohc똶i?-SQJ""uk.O"Yj^8Z=*B"%inb~YE'` ^uw#~+FZl~ QUOU! %@a\V6]JA PK&xTA`7qW-Ƴct/:9Œo`]S> 4fPgyCͬ|-2(2bj=F~1C1&;IK$3 Vuu;UyUy~'̱vC?minmFRN֯ " dA4| _4IF˼1Bh]4C>YrT{m`dz}ˑc7,O^%*c ΡU=Cz$듷7pR?ĪW?j͝(j2E$H!.֐`8\! SHnFBVP2R.ȅHm7XXY#m+`~1PuɸZ8}R(}<FO1A?*+w{3؉y{OPGF*3e]tjMd-=ao^6;H]kV\lhuZ9oOęz(#ᫀQvdCS{Ր^#MX`k=J:Y]q "xVa2*\=vB^x|Utk,q+j|R@e)tn; \8N@n]{he톈(֍>ebDFp{&V7ϝK 0w6M9O'?ДgRNkmkJjX{->cWv" t{+uD$v@(0FC~>Be`;g /&JO&#T*2 ~df یaSQ'nhmy4@#Qѭ%%M )4|Y=l a-pІʝOj(ϱ~!в7-i16\[wdWI:)\3琺1WE_50)m- &v)u?꿲GlHqt_6DB{.08B5~M kqu={#U\$Wկ #]n4MPz3~'L h oFהd;2((Zmj5x7%w{ (̂Ecк _IV,ʹgxѪcP ^W¡1Qǐl!KQoٮ` 5E5lw<3dp绅oJԗ^(mz΍"6ag(_ajMX9ށ?(ɻC(@^=KAKaY<'"XNAHҚ="Cf* qr+ZXV3v:$G LRz 1Le\$׿FwR"'M dL -j>N9_ #zB.&aզ$RO+q衬[=@kÎZ#L[:=v. Jމ.AaTքh@qJ)i%WB7*\x9͡su/J]{k}۸4Q 07WHh\ x*qDXm0^G3hԖٿt 1v*s.a'l2@"]]H\b +\׹0)r- [ؙ5!4¬}R -<ڴu-ξӳw#%`rX%o,'7.$ <L|w&TF(+QecM28Kg9f2ԑh XKD]3? {ЖSn"} x n~I:fE> y %A2B1onHbk~Ul1Lʅc1ZONeq |MIMk.`;vس]h0/!ˢ !JU#C/۲;Sqaߒ,ޑQfϺW"Ⱦ_V lEwvG(uِ: fjgz!E [5So>EԏOӵ P-m8Ѣ@XymFszNiZ8U`{@C.3zTDJwN+puuC <唈?miE /tb-?́Ē>ڢOlUV߲Df6Jsi{E,0shw^.=$EV 5Ľ1 " eP%*dϙ^],罙wURO `c5X/Q}s|} ~jyI.^d@;36]H 6B adP @9n(<Ɂ7^u:ec0F w\8w5*NaZjSN=-'T{ũa[@><"~:+Cl+d"G bM1:d"'iWVv &,N 7/ّz..%3>|[eS=z~,^+twy>ؑeV-TJB_g[):OI^دj,40D2lEvR1"xT4E3, 4y;z0B4i\cA}O峥O2L< AMW `+n/@Ҫ>g:Wlzhΐʼn:Y= '1L~)ԛVBPk;=$/g9 Q1c0y_k[l@3?wH#`[@TlBܕο[w8S90EN #,< XC~Kd"1l(2力M 1^rݡ& K%[>VVh^j]CBWl-Bm2Pu؝? 2,Á#/(wʩxf;C^g'iHq3Bvf;Kբy+7܋3!Xt(;iOcW(Pe!'@W-']8aK_!o' 9b0:r]O_rlF(y{jl!44MoN5G%<0S1@,yw|;Kv`^~ʴ/"J/hUC0vEfpeQ%MΕSkh11n4qI;u'l^ֳBNY 8?!x &7{m1,ql6klQĻ_kNzkw|QĢ&THǻXm4-*K p3KYʳz ^5WZT vUio%:y(m^%Y>A)xFK,/b1읏3^ԸiΟW<_.j0X.Nyy*_3=;n H>nS$?!#`l4W]$u 7HSrDfqD!(#,T=ǻ~Z&;'1AP 0ݦ҉oKfO @g_'^92nyF|g̿JY ?TƱ]!1U)҉ j8ѿ"qU,,cON$@ XRyPco^)&8kD1N* ?.&u^PGMx?Ia\đgҍOESo^ͱOon: +NcmqKTh"1L`U-11ctЫU%vdmz%H38P LpJP|gA=J{+ cn!h ;[QWkr#T#y:Rﺤ&jU "B: AXVP;+H8g`|Ͽr-ȥM/HFg%Fb"JtҢ$x[NW2Ә7HP`w78a)D ;x]!M>oɆ FvzY}hObEp (jaA?9%;mڱ7x2,0Z/Y!m;)àVQ+IR (0dM8O{]U{ *F'mkNMK!-m"4lq 3hx YPf`Doq5?I#0g^ٍnK:| l*"@9"}l_摨޾?H28y%Y`S5ӊseC6`W@vцQqy۶#&UxWM;XW_efkף0rDhgaڊ_Ӄ4wzEASil\SÐxF!ʱLh_CҲxl|VebF\2tT}^%4> L BqpiJW~VPj c-p;4YUƻ1m裮#jm/}n3qRi~އ[bY#ݛC/+;kg'6=qzJIEG: gIެHt"^?f3a-xyFciC:5سsq_ꛅ)wq &_XϲRRS춐._26jqŴL9cͦc>~/50Z:{n@I@T5|KyEq)؁eL}+v(l!9Jk ʰCtFken[dL YZw LX>Tf{(cLhGX|f޸ wNl7$HNmz+N@tiU≉ԱB\#ngr|[z"ZHS/ 1{;0r $U0)96_n5ڧd?2E3:#!ismuU$t#F5xu4M֞zekJnʒgY0Rگ=o`W9}|fهC;B.{xz 95}HOqEٯH'v]X"daqV!KJz@R 9OiWX}zdp}|ORΩ9] tOMuQtwbrEI9tZp@ Sc"ÿږ2i.Kip~`._i /\o<Ąm0qG]>!Ǜ-S5FB:P!N) Ui]@C^ f.smUXPЍ:zMRe*h\z|G *%(b`k.E#eaV%w@s/l;Z3FK姬U.3|] {?شx~?4 OG'AcO¤vV:s@:5E$RiT$s5ƅ":v€o E^!όC_ʅ%} sZ-&0*3n.Ur_4nu|<ݪĚTȫ,s#g;ž%S9Aap0<~`7~|3i-1^py؅vE[)V$=&^ C"ʋfG5Z|gAp3TM ÿSy$u0dO^?5S_AG2YR>E˺Ʉ\<~ !X4:OP'-Ȳ3* si$Ȼ Mw:[gӉ`< n_l>5 Ǜ{X%94bpyz~k;kB0Z m:aM9xr온ܳ,~^r 00v?kܔZNX̧32tFBRJ#9T}CH/}&'\3l~6#X~+lM7+=ztNZmX3,6lHnQ2od)ubŀCs'<~2t61lqj)u}uVFߗyàynI[Fg/5~aQC@L_L Ł|yuMﳘrzCd| {cErO:^JXdtho#Vj|^. 㢛QR`s}kNieP[Vb݁bFE8~³ts8?~yH=+x6 BoA{3w"U0]:փm5O' F9V\i8T7ٚF?Uo$$-IԴWpͽ"IHwIfʅ94*uL[sH͌1 I*r趂B霮ämʼn?:GiIR y'$|ۤɕ F%8?2TX.굜j}+tfiGF1jʼC/LijH>fySIH;fxq2o=fJLXzIoRdb|z|ɒ3w4$b1Xu/Y,z5d/qa^RY])Sq )!<)bҸi,|Dž"z,%2 +Nmt"kH*äZ3TmF#I``- 3YFDjO=syOfϥrPYɤ6pgq=^#=7pd _p䔌!۾0Ftׂ`5b4g=z))A:mO (?X2)کdHKiwqQ` ["VoGp,+}3a˩}gf08ڲ&TCt4RPKex/Y} t^feR )|Y+y(@5>.RPM&eõ"oӮ"0lD4ҙqD/n-"6kjvR-ÿb(Ȍ]2Jls/5r!T 31E-R=aB!"bp!#lctI4|>):TԔu\PJ,_#-6_L0֧(4Ü vWt2 l뮂ߏPgu`W1"x1"0E3Yvj7Y?*=Jb pFuyտ2[:iZp:r%ɅNw%ē/x~) hX~hW'~0>B̍$>d.PsOWc)Gϼ&083*'ˣeL5j@ Სm_Y}aOmcm#s'8ʻXhIL.VJs450k=s.scejJ|i_d}DRu `$]QYoP3cNo\5&bB*zWx:ps;ՆPVZ`ZAs^_V}վn iJF>Qtc"#'RڲJ2Y<ډ xQ VUb"zӄSJ|_s nLh*,{;yy0TgCcP 8bCz #BFzŗqɞ$ٔ A(]2z!<4;]"hw\ BO-7灀E5sSփ48 `M6'WG9ҩdV8EtF!EPΞvۇN$wR4KW5 W%An$o0yޔSgIl<~smXj O.kqgq1}*냲w~Hq^Hl9Dt{櫨I0HE9L~֪GeUI ș)¶Hk!1S瘹bǠ)h "ED)vdk@4dO[yX]ze,=ӵЗWm?&r89'r;u N'?ŬO $csi7P/CUw mdLFa>*޳9|d衿Sq3c.թTL.9jSL 'wlث_au&)썮Yp]p?$/$Ɉn([xۓuE ;Msߔ_Ԧ`un2o2V"Īm)%?keTL赗RNK?sD$}_G9f`Kdh5qt@CKIe.jZ*$I4]I`:AWu[ +i*㸂"EW.#p4Jl~fzT96r `J?-'"9+f USp;<5BD(iwRU';gٔ4i d10P[gݖWgJNW613ա`~.~mrlf))Sn]u?j;,:2Xd-1T%,peWhMɂLT~yyamOWIyݲCp_6ɔ(ZZ ߞ5tW0( w w"rS ـk%ZB݈I^rN9a:NJPxn|1 O&UH66XrIfs~dx#P+N2u +%{ݟ30Ɨep`>^ {Oni~g+넋uFyT9|bTT"r,ZdJ.Cy736#cS#uxG g 6s댄w}gm>AKq e0_/â؋{>PW hZ*L3ˊ6GY޴ h)_(_vJKRaq}gX|!]ySp@ _֑<2Eۓ(ʂ9"^ȰK_J,o}g,A@H)އ$:PM#+-h.[Ѡ!dv mz8)I= ^k{NPSuwZ֏zTvJgJ_Ώx[y]+|Vjp) å_K2€g JYhĸ$3Kθ3RD?+x~ǟ-"E*6JYc$!n5%,”'FoQHҥVl&$~ $܊ͦ}۪K޴uL]'?"WMEt;Nz-qVskLca.a}k:E~Kd;XHV3 _Uto$9<" N)j%FL\}R6t|Iyua։2=4F95;:( |xi)fuRbZQL V0t46l[_uoYfC@K;vw;.ZG/Rq 6_!-D˭Zzsp]xK4g@їt]Ӓ.;2l۞K <1hxzErU:Lx3t06aյpgUUWd1veݨҲ?yF^𧞂AX|d)(9 zT֭fDޮCx8Xٍhi65U8j"}X %qdUba_ &+ I܃ w :zT5j9lkSAXRTqHT-h78dsQv*""rtf7n7C zIBCRLˣ|Y r: $0J /kB`7ZD5Xsyf]F ^]:JC\_m@wzH7KZ3ƁU%iUJh rwdV+x(F'QH3h%C.TӴ+KAB $Qɞ OkN⳴~+aD<_>B`&-g yѽqهH):a Es`\(H08^ى"%iJ.Fn470CdæK?Ge1.:#FnlOWh ,0,-qL0,33=Lg  ,wrISyzbׅ{ܺ#0KgKPڳuSNY⃀A~&#L|4|TYC{[BOa"#rr(|&g7^}@s1aK.o@Ky8=b'N@؍(Hy zh +/T,\-Ue5!q+,!c2SB5)MDK+f8tD̼``,/ *rp^Tyb,b];T~1|2x%̠5 L[ NF&+8J4Qy 7ѪX40}V-!i0heϹHLR9~ظj 8[>EfZ& Pco1Hpey!xUFr{z&b+e`S$AxBN{C]A !+'~85 M?De(}8*eb>N@V0}"> ~dՒ-V|;D}•۷RU~tA[rJ}f۩~:[PAG*|y~99"ϑi"Jo3?_Dl7ƯJiv["^P]1ׄEz[5wqm]X51q*UzHW7R0j}J ".~ܰzyW6# ؁vzv&V,2Sރ4KcExPB,^QFtmȋ|7QL񈷄'-P^ ]z>-.惷3~hg`h\+(3 r!X  Y#(2A>Ҵmw,Ucn2r|a@.:CM%~R)MPH0y$ K /Ýb5.Ds'߷p(!&c|u{q ՙb+8){rIV pКN3M[vqޘ\9(>YM/l,C/&H]$d[Y08;~̦g0Sdnv[¬4#J@+)aPhR.J (a,jȣF#$hZVYV%K*-Y+Ð;ۢEk_zPcRxA45btb؃@Ï8O ^XO ܥP{)&ɲene8^Δ/eo4T/* vł>ʶܧύFΤꎩvudby^wţRX' S@rjXGUpPM3W?V@JkhZԇ寐'A ]wgve#2b! 7VۇYI:Hݘ.a@2ޞ8f4F>ʺg~|%P3͗gzp&Q90 ǐ1r*q5)QhةMV0uՅESVv/<eQmx=: ]2 TQU ~5W$ YccT4jKvpݣ^v.%?eOnP0&s‰}h\˽UC"d43b[sqEv<mwxQfp @|fU% &pݳr-eC'p_2}m*W.W0VS:Өמ.bpZ?To,Z%QJ@o?e.-_9VSXӽ"J Ᏼ |8툕=燎Â~Dy>r=!8'ͪeV- cc5(mE^Pbu/7Ln }a"y-Ӏ3䷼N)9S($VJo9-DfcMOP \p۶U*fe7ՙ.8Ozyzdn.zIs^g(ߩyl(N-mJnm_.c^VBj.|ޡx8H^Ll .q~=v-puGC系0̹o%0ʦ5'^U{ a4دpRq vK f"bߜ%-r#V`إ}v63g0^Kị˱GZOWt8}4_V\D>˓)S00) 7 %'M*Xi|S#3xo$eIv>;Z#Zz$e=PNUf!qV8a.- δGԜy.LRLNΥBnNmtd0l wM =Oj^s9@Fa45bQ8pl~ԥ$|&iaH%)< `k YR0GkkO71i3 bK\NH78;{57j:L7hnq1p4XYKzyvIμ zl]z$S9oLHa#=g"8$cw$ ,AQQ>2bgs9ӻU`N'eDK0օ\ts?e;zȿ#$ LL˼jEܔbnr&UgVP^ g6DlZUW;`W7kG.$PUMղLFUG^ G|I7w@) RוW:]L,& 9Jb@ɦa77YB)/d?S 8l]7lwn0Rr `mHDh C#Ie'N#Pғi~b◜NsVdgS+bJ;tw ?DFˈ_)Ca\<8=< Ǣ2[r󀀠 3J+?$]w]ꅑ9NB|'tXB{Q}r3lO1L xWrDbYta hlac;@zd<XS̱qdB߬<< s" a57Y?(nd Üx$èQ,[xx}jOPh ( ^_{@+B+4$lZ&NuLwy~^vҢO$-Yq FLBqMYY-t[P: B5ʍ|+\V2jYsU']lO7T5,$aCmdvv'\$6zް]MИMhPB(o}nhb5ۖf& L) uZeuJ?ci-^[e4utI4sVjX1eYj\ljU c#T`&eZB [9/=[- xT(~]ċPGϗ>; ; j\a:P k\2r0MOomy܈tvvJ]ZS9D^xP)_61 MxyhU}!4`葴;r:m 6GVUp_uh}wY(洨&cBTO탁9=9m+c Hya @EC̟68lVD=r`FF.CDajz%&IexDr#,Źn " +&{]k OGעe^B+4xSgfg"g`a1u}gÁJ;z1 ?!ϱ2.S}FmOIUUv=s"[˭eHHeq=8u%9xGcIMs2.]_.wGg%YY䐃s_PQ~ZV+.rvO \Roz1QP ~_ nđd p#1Ń ,u Bsj 2p9{. BAՄ( g.z4s&~P˸.̿ᕚa7MkT4V{dvnD %ךFt~Z/ڛޥwu,z6I6;gN9tlQ+P؀OA$7[6$:^T:rj~c?2BiMMC@/m!#Scl$Kز ;=ÈThg%ZlSkKrhp.ʹ@eXU>/x4LcQ8P ej̹fl&QBߣAIw_l!i<Hfzb1̂^嵃~Cl4q6M[0QS):Q3 ٕq7?JbZzRnIۈZpɔݑտPaXiB[b;[(>MҧyH>YnwxſkDhGI { p1w~ԁ ҋZ?A7%]!--LɣDǮp'}k{^CrRqF}HoSi(Ct=,<:J\-KCg#5YҀCUc-evh r 0>ԗr h&r{1NyI!$k`ȳY=#Xqg$ p69,I~ J#Zw'c EV 2i&1> =z83n𙮯Y~TO6FRH꺢Tf}3#.E|] ¥&Ƨ(wn P:\ťqH&. 1 EXWLvW82s4RѧË)YtP{ 3QWP< ewW:'k9Zr$RTn eρ/L,eԟEoQ1zc5\M.dS\Jgz 7j0& d)r<"ѽ(t3Nף4NEq~5 D;D |ϩ0`c2m B;t@DCF/͞8-#D H(4>ۏKV-Uz;``<rEg4Խ7`/Mu _ cdfiH>3-{/e=!]UQL̳c| g^kڣx1of 1ݬ`Cr"L 0P\U.WB 9N08yÎkv˷6歺^zЁZh'0׵R8= #WRpEbS~YD@>D 1I}`HL'Z<\G>W/0ӈ܏kKr1dfؚ݁p0 !f2ki2Ѷ68ϣ+Xj9\AۡG@(q2vWK1"@&ՃD+ҥa+?} Za{[>ր'HGQ4JB uWc-0V5$983D#nb;ltY:"(CQ˕Fʷ' Y zGrUO%xW\9N5){.c"pst? 0d mŪ7z p?^!$pɖ.v 2_[jfeș6ϐ42ՂXBkvtB)3F\FH7J&! v$6͡C-tmf \'NbbJyt8*Z8 6L5UZkU%\J~/L`n9iDTaIUH$H=aIcDja9JҎ fv<:fuE>A"/vsca''ĦrE&* t:П1b+p+C!ɖqL_?GE;% ڟdᮭ98E)X\pGU"bf9'NM W>r}(u#s쥣uyidmX   )6TI2\c)Q滂]=pAdTɶ~U?t4i i+_ hS0&̍/ :4@!C}dCX|AA'I:0sԷvvD4r\iXl}G?*B 2?*ӽ!z„ٽvEDCR뮡PtLʬK~³b3yg v;@?[i1GSjgI1T*0&Pk[jA|;h4W,ԒOEs rt%=%$(4 ѕj vsh[52ce\lo=+%ͅ+z~)X!߄!߽R5Ubn{bT6@ͳ~濌(_sQQ )?OH j UT#2̓n8wj, " 숮H9 g}M}qrTQ&fGN<*A7"8dczkI~?[ج䙛ԑ+Op0fv+ t&*r[Ig5A"yƳM/ūq OUe`'C:ƨ_l`u45sb[/|;:=9|DՙbKReȴxH7"Mwۿ5C(绞Wsy˭@A_˧G\a[>-m- !4j7:bY XlX^PVD=~&@z~NJlY8G{P .t,^X.\)^\$5UWpOH~ûC~NiQCS`#V$E'ע&ZH4C, t@6qtkHQ;DC+->ј5IP"%!귙 ],#"Lt:Y#+l݀sDk`J"n=^\{2 "`aL7a7z=ZdbJa :EHN=m2yGd;"O>n!ԿnAX.) ȭcÙ%%8V~to"M(QXK! m\ݧpXTsRWg.t>^1ˋAy8'rf'PZ98 */ql JDHH%aP~lW1D8'#UQ1O@@37\5q .nyY/"CNþikg*k52;~뼘Z7y .wq6h 52?ԯ/.I~זiwQUf?%!X)  ؓߒߜY'z 1j<łk hSvO hS' x>L8" (>md>__U׌?Fj9;`kQ&&coYJK-6|G],.J4ȸu/E޽@t>PSjl6"w*ևth % \bbeQTH"ԭۘJ#r?R#*yXURp{zQs ]azFD\FݧN4^!7q RH`w"D~P&^4\9pCa؀)5]yAr+v/Vs^bXD]cG@+V_rvo)CXN,.cs4ʞր̳Q`)VtU :yO --<=iEjl:(4^ OY;Wuf J֘96fAᣒ?󗦎]P&*e٥ `ܫIMEu {Ɠ C|-lyv%wHhK1)o,{b}U@IYYqڀJifN{yA)yBǵg\ ;4g q'ε9 Tf2t&Dp%u9QdZ4M]p\91c5dYJRcH߄dٜ.Nӧ>FPbBضI"?"?$4ttq=%E(agMf~'D8: By$CPrQX0H՛YQ"21T cg`}1椻XG??-̵0^au?q@"J(B*N؆D+P0˫ Sr%Ԋ6eK0<_zPJ@Qߨ٤r)聣٦dlw^q45|8svJ14"uz0)&<94ZfG օ!xrz,*OoJ^rBl>yS)_i̾y6T|㣳F{S?}LVQzU!$(p-qW&*5:Ds_K#;(Fۖ7CޔZ+huVr0.2|0(l Ǯ h?29BJ!̬'ޖ VMQ8b++5!S`,i.N [ GP"_ޯ{&_8Ÿq_BndDTf*ŐJE^ibqV/hE9"H䣞vIz`XU,b S5E9 TGLI<.[ /y&.ëWcd3žՃ 8ha,"xFad%Om @< z z@$mǞeWk ;*m9 T}[պ"G4 -H2*E[#l;,UZʽb<<+N@ܴyj^xE+#fصEûdV>ogdµ=}c^:ϋb/i\0A|_g'1 ߠs@hq${m}š$.=ĥ5L\R`NB'yZ>wznUz d)!4"Ѥf;[?Ru2շʍ hq.mc(!l9M7ת @hA L Q7xp[Ede8%y}ls=9oOC|ը 0rx;vTt$˧JY[J=xiX?; {\nJ Xkވ9LvCy?ݒ竴 g n=+YV9 ycR|qcUƅpIi)dhL%+W 6B|;@BS&EnDݬg0?"kaQex+PyjyG7C|Vk+Mck)Ƴ`:;߬G s 5?0]5`#(zoHb dMA ﺊcw;i RXW5O,a8]#s\*g)Lr͐F&y cș!BKlaل(7a5anIg!z|޷PLCz̵WlTpl E3PJĐq4.!V%Yv(p䅥:Kq HJ*f -brF['qv%*j*߻c#`rY18*al=|+3#Wh&ӾU[O@3-!75MxEb6A>seC)D9xoJ9tDT=<qbqh?RV MS)Aq)M~Sk<"Ù*0n&o28Wwq%'$9F[pt\n~z[b⚍TuB&kާG Mqb08BGkXWY59ىkmKOEd\aÈEH 2 NW#Lj&fѡ|q[bDBP!An`&ݔ6#Uh-a;RR;|rC4Bרb+E&Jpm.kzQwIIOi㡕Q!@̄TQG(f5;l ??|,l졧n5$j?mβxOr`!e;R9$f2W^@ِ'lޗK9L7kִܠ"'E-`do{ZAV\`Uר>"?zKȳ`kkowE?jawX)n<+HP) N=p`]R%Z/R0sVK394O#Ub~j`n3 8-iZfP51z_S7=0987]NUWT$,i50$BmXK[ҷq[Idߧ<ʌm?ta",*'D̚s<r!>"-"MhTcύf K%ԣV<ۨa%-;4x0U CtV\ZC<Tuard}$kLwv%p2D7oUKJo>S\<[*޽]7WFm,i4*-I*Rd}@K<ۘX$7öP|^4|* ڋ cCMjoN|NA;f. 2IvƢURļj*3Ą>_tWS/h2pH }  rDS|tӬs|fI pJogIv \4o'Csa7?wmB ĊrNjgUFnv?d!1ؐ4?aS7=9P)ZS595F}wk QjF<Q hO&^cӸ8#%jD9'_gԳ%pM D/)T~`12bo*E*Mޓa\t(|ޟѶSm/ʈo7yD!1t,]xիu##xa/$ yty7ctd&:53todj;#טnw\\m5#bBBh2W+]%[ʷ%cEY7l1Zu?@{B=`#l)^Y0m.`Wj\NT9AݓjFx>{xe&]P~﷝>ƀGEJ7 +4C}v墳!c^!;,{87#?&:N%uTQ-T n7XwXO% t욇ц3%*H-hRꁌ?}Ϩ(&a͓g1IG1 dd@߮P5d@IW>9jʳPPBq)ۋx0ք/W*T>۰q=(!Nb_ ǥ˲n֊aJuu8\_h{XP(- ͆LOql{*km[ÐQ(`ҩ ^r=ܰiX+ډ])cOw`ǺxVLJRL&PCmKyn,l!Fh]Xnw\B8q$~W>`xOU,OA .A]:t%Z=<`giD ƻ +6S[uMؘ;ARҨ CظTĭQ=,wT7 Ҷok!-Ғ*tϸVsRrr:H50dCO Zf 7ׁE4MN[8qs%`ztğc؇E~fMIĥ-p_6/ĀGڭY4QWwkZ&<m'h|jvGeQةw,o>w57'R҇*wFU# o1l)B܄Wijpښkavz~#/=VR.>lXZF)?Lß P0aˇ5]Vl݃XqdxWA [>E{~._0v7hsgX-g֨<[Btװ];?n$61d݀:VG׭eAȹQK}q,ƷzPcϨ&IX p;idʵY{%0q= v\W c9#eGiO.xTh&):4ְ U; >@5|0v76!I۪ (xeqk˖X%)׼'c_QkDXE=LJ&bI9PF+}J d% v^mKQu<:[]*'Ɏ h xcُk͉DG|]`5$Ǩ $wYG^H$ EhȽV 0,g;W%Nº.AʮM}|iy_͑%p v*S@O2LULQhݬU ұ懳D&sgJ_o07YvT{b|\fw^xvh:3xQ#v];=D"4Zx1E"o|E_v1#W7$g<ݠfU$d<5JޔoXHzsv - UXF l2`b rʛqeAׂ+LK C_r!Mm6_\DȦٻ:d_&*4e#XZ2eฦ02(IMR@eZG:ky67;=~IY gD0 0ljɰ_; u?qDt1gDIah5!pj:EEBW<[̚V2қJEPKG mM``,ĸ aܱoz:%F/} 8`RעolC: }!l =y+{Y A|99![F#w j!r9.j  umd'ԋ;3E92|F$xsdתmQj&"d㾯EtN6TM@NͱKPfn#b 'qA1HITe:{]@7݆[p5@8`$zf/D_r#ZT\\`lM#+ 0q+"--7#t[-"wM@n;# $&-s4/p"ŗiP_N< Oj[.E ~M1aoǐe٪|4jhD~}b=/-FNwoEp԰C[4Oш 0߰6cK]4$\MF2jF_lDE+_ʼnbJGb 7^!ܝ iD0>g_`I%uXu3Xe1gX~f M: [ٌSȬ\v\&? W2=XƝ˂~g<C  ZQ+֓TOH#LJ;ފܜ|Ə k`]쓷Bt o￁bֿMD+WO#mSq׹ŵ/\-@&ֶ*~Oem:~[8i>-ԭs2OھX[z柑Ć *(E#E1 :0{P=Dhʓ \j= 5pRd37+b%?"bfkP?BNN2YE.Z]O~o1#8BaB{m)#'8`LJ?;~?_Ve?{oR(y`vz7EǢ4KĐϗlGloA>#f5߰ #$. r9R0,}("16 =I6?U#g^  I&%KĽ1W^^ 1(&D! ZڷkN1օm3e/Ƨ%g.*Ag4vqDPA6PC5ejl5 lݻɕnf8 aPR:dϛ6ٚ ~(2m6stzc [K׸l 4JpMAuٲ;ݿY7B?~!NSlSXqJ)kɓ</T&ZS=rnf(%6V_nx9|}W!gOs_yo#0¼:#K@)ۨ<5b[Ђr#ɴ+m Ww\4]Rwݛfm{F|'ݩ|,_{f/8Lf@L-4H,]O8E; xF_vVD]AuZzM\`> ဂ\IT`գ̥,,,9%ʼnK-knY;m0(^Xthn]vp8{6uNn\am5qz7htY]C~DŮ&$1[KEv ([h>#@fѠ -MZ{") +;=Y2q^Dtt4:&/rRf+DpN$W{ ċhAP\]unƏSCV7 3GgU{܎r[nGQ}psb.\w2h6sޣo4; |:[Vo#dh1bSx9pTU WbJyR,HAdD lccLr6S`- 0Iw}o{bǤ ɊJIߕ ʞiYtYkWKoyc@4]L+":KzV//9%O,ڗ>N诤;<,Q"!<&.'S.'IdV_>E8>D.?jVUd}7jsPzadfeDB fPQNq`EA/ȆPv?va-G*"`vVREv\R7UT5Nz $, ൎL"|iTݩR]~ٓ0+oSX74"97mU^dnRz؋. 6nI^.{^vlm%x*/"_n} s;QHN&jHYFǠfZ1UJST떴F*DdshV6}DG?,}4 >U!>՘X_\Wu]8t-\W^,l%aB,*"'p.*)fEϓ.0ݥ|aF+qiEU^-6i`謃QV}X$aBgW8+&=8H?Mv7Pc@"\vD\V:r}}n+VY߅.sVss=0*\,a8}7eP"*5gs Ѿ|3uclZ~+1_ |VJsqr6,s6I> =NkVu>Wy3Φ)&W>DU!8d5LՅ/HL$\7ȗz#dխV6Ȟ 0+q,q&4mh`d KϕW'%ڃ{RK164< 8b!]Ei5d B{o*8Eɯ r_ĐaXJy-N$Fݒ8Ɛ=EH^"ŴnvX jaLǚ Ȱ /wݚHB6'PMz g}N)0'>Dž,hr^N[5m) !~F;ےHJ'Uտ ( w?.Y<i7W7W ׽]PyVwvQ쇇t+J=(#5=,P@Wo- qzԠ Q+Azo/="mIb,*k2. jܓit  DGCi.zԅVf9Cz= {pwyI2)e4bklJWJ3 ||mq:ƛa0<Utc.7S{&=,dG"ٹW>D'&}.w tUt}^LJ^¥o>㯌Dܘ]i/##Fnr,F3ߥsChOuYJ .ޯSZ8 1 lr8  M,S TdA[ +!Xu?iϐĝ>! pO"Rɼ0-iQрnoٸ@4 Y8"Uc( r  DŽ۴K# t}~cY#+P;6G#=9SbM5\8X} gĤ1L1<g6q(!]x0jx삕9^H4Z-SFh e%vF|`40GDeAX@RA%ː/YhӺ~a`_*G6].Iӳ#Qa '.6*Ø xٱe~]/R K_4 MTǞŒT(U,db&s24ӥdGDCJ%DCzTmd|G׊AzmH5.7!`9^v]ltEٍ*S'נHnv:j@_$5Jސ Z'9Bg@$*A% bSZ.m&A)%`vӛ c޲WBJ D9, cR[Z!yYr<֙(CHD!ʡ _"Tl2Odכ>k!Рa`xTH:*W\ٕ}"ʕ՟E5 7|~7N4sDBKl#wtL^0 [9 &|[U4Z^O lDٜ^] ]`Bϳ5D`ybՑLTФ&%NJXE)eE۲K;)+ 3!zLe 9ؔ`.'-{[ /QtL|ɏc ڲ-8醻=< k5ܑeS経H{wߢAUޯߑjar Kn Y6"fQVV9#ADb73Bg5*8iLܨi*(3s¸.^$LD//\y C| #n jZ2 K /hRqO[PcRATH7`gB9]^fA ƍC_5?5Z;X9W]4E1#ۗVYh;8!V&?gB"!4B<˳Homiw>J=ӥ2G EG{ki>˧zlJwRL_ =!t]#=& 0ű(&qRDg]&W=6iepS_-"+Pj6#OcĥG̤ɑ䙫k x$PIru9% {Aա`ov<[!T(vnVsձYѢ/@ 5`Nxq]pvN3 {q](М'F9f(f/)PUX(FeSm{U11Vk6%DUXϳUx;i.cBgΦqU r/{2I)\D"^e9/"wc̫&ʭ_.Oh% y_Iʬ]\cm5Jb!梾Res?%bleޕS͚t߽^VZ>^MA GVN82*3#wtAS'Hrpdo 3*"_Oytu?ҁ!sp;H AkRebb<+) ߢk43Uϒ7Jbxy[ޠ3'kp*O{ޕ/c-ʒKyY9zDa$ N,l[TmV]'+_5]6s[a,?r2>ņםj$ |pZע/ӑC؀DZwsmV?)`kBjID^/( .@ʌ${)kv(lC: A Qdłzd=iJ[SYhzmh+hX5>&>-&UU?W@v~)4 (?xw=^NT}=ˆ zodM (Zq[!l!1Fm@@oOlIƀ !FT1R`ɑca,\iʹ)C^B|+ d?uJku@IGE%U3Vd76Vv ˕O3;l"c^t&6iك7gP*zī]eDݟow*u-^FKfձHYtmNt'/X1\༣5/XID[xH-j0vԠ}{E~֚GoΣkl9.$%o7*8w -ћ^e|+9T.qJF.h?p{BQj'\:F] Yu =w*fˆu0ke="GA4i֜v@}h:ٯD<W-uOV,pT'}]04^ԩTmŧ BVsyWxO\Iܳ[כ 9OȀV2 ܱPSJIKkRa/?R]M'l)]E<'khtj@j ?nfS.jz֟Nfӊ C~*%I,.aXuԸu't`ٵ^WFj8^ǣ,7RUy NKD5TRO0K$2JT0q`G֡ݣ쥱Ȉus%3=MY8nOɔ~oz#.M8]r xcuH-%$麗Z "[Lu:Em*1TQ5;ׄrkՀ/=8ńu }%K ix6-̰,* `WG5.g/(dcźBS~O eJO֬R}sHNCvNU1$`nP>6J͞ju&K)$ҳ7\%]Jϵz5h33βV;^px=uwv8Ck ]2U1oR9po,GA#t__Kl]=@1|Oqfs9 Q&BM=-wK0PGlc}  /R6Ƶ8 {>/Pe =[v7]X Kt9丢. y^kRn$JB!UI?hևic}6*s $9*-G{ }pVSrF[ṛijӀtӽT\`)uǛJ^HsQeU$Ђvy$:ĺxuMⰶk& Vg4%i6 \fdE3x m㺶Yg_t;iCJ'P @_xdUSK xNq~џ׉X0!l ] C6 9L0Q1nI2U;SA$M $ZB袯M}WORדo&堞B~B`im>1KbѿީY<3o:XݝbF}+$(wsֱJڨjO*3L۹ N*N,/Xj[e95#nJI@ߧOfZON.aW$HW0,'G>hTϺ3~TG9u}G i(SPCHqkåyN<{c`KҞҷBT\7?2<,x4fR,@ qKEFdX ={ x2.B@vuӼYf|f=$% I'G?:G"?Kgԙ I" Dlv/CvS`=S_Yz’oգ&.V6xp`$F(;GY؄HC3 5^2VxA0I$ QXHKs@)Q96DcJu/vD‡Q[#and}2+-;v(FRftwB݌٨N@ݶm_d xvƥ)Q2I^ UE|;"nw[)sIG;oZ]ےԌ7ic$ʎ?^QӞӖxfD0lPeTr` d8E^QIYQ7 fhfͻU@S|هu9%8(KI԰{<^Wa"M-!q4 ̠A?Ms;[v[|1qwM,wmfqlRz)Dpm;VxF~*KHau)$An;~'F2ïWno|iEf|sYxk8I3:A\rhg 9I$&2OqҜ zUmnLǠ\L%Vl-- ofIqDg;D{LpMEI/5cÚ@jEo|",3/iO/nվXVeYJfuS9E;+*ba|o)W>~!\0S4RL/4e[HOK%HZ*P߮A`{'RÓ}}k0#]ga7}ŝsI88}#w?RgYI$td8ZohwuM E؃|$ p]9YN̩Tx&Y٩5XM~p:^ )xEJ{q͏G`9ltȵ>bİUqXUZ˄`Y]*DcV3A͉㡎10mUϊM#@4^96Cq0rw=0B{OA GJCNȅWY R2{Bsk5ed'(f ͸$s&HM$ĝ]L?=ˏ21;33tܭX*e cQ]Đ(.JSsm^NuGk0k}{qg{sHAo1 $s$(Łۦ7D϶~8iAjFܾ+Dq-c- a+g֢iLcJ̈`]~v^YkL!_?',a2A FS&]n5؜1f[*_l?wv%٬u3zX񇔅ݷK.*CN᫂~$g~@hz[GP$)[.UCU|8UAu*[YMT+~./r[5׉X l l_tCjQ{](E~i&h|+[JkXJD'@k] sܰzW>N0wF.uY^V:Vs9Bkֵ2CbX;1o+I+U6YRmr3rqĠSͰ團YB)6&^!#}˃_֙ &Ewa'd~3>)}^~x"" H)]@!֚0uC0h&8:b,eQiAǢ6NVE[Q;AQ<}h2*Mh,-T3'd)3$#גyB[jg(`ninjDUl`[Mg Oޜl"}W!f혁Dpe29.xwY-x>zlgV.1[ƜbC&^l 툣U 3mtlgg"ߒKר2E6q(AoEf}̊z.f`q ʉPL]Xa?9˟PK *veK=i֢eM~-n'-j1(P)АdX,+ u'epMhwdE:(%I ےfq-^9ڝ_ cI2R z:iU=#*`Һgm(HҪ|;g}}/9 QY) &ItBi+uD]ҝp"jy*v, Ѻٵ̑\>̞lh{R]%NsƦ;ָ Rr:%[ f08&z9?Ϋՙ;[caH-Dv;Aq9sgZ&abT7ܗ )O+bৈHmNCjh4?'fjtFFJ+jY?&.DG{ڳүm525{~ *Nzae}qPXt1hwD)j:<euq ]V HFK!N](3!4[ɑC޸͟XDdv^YSȖf<En :GG}5%e_fnQ:Y,(p< 9{.@KI` h8TK]Ln=e5}ց%1?>.=!/7cbnH(צ] ucꭋkl@S?%\XN%ڠP1&VGҿ!"B[{ۚSmrH=߁9Lֹ S).cƯ]q$R;[RF 륅р!Z$m4}Hf vGqz1Wbwd;8b)vdѝƳ_DľS]:\06 t,w =tW4j'mÒ Rmm/,_wpJBm?E> j}33ϑ=xeJ~M$ڹ+IܝǨy@`.s_!ć 1ƈ; #SL70X"$ej`uStsv/N#r5AaEa<:Y ƚ!Q{.2&Y[kA}b]19kv^zeKߎA+fcZk? M#p\Px->r?ics(\C1W9BܱB[227sL{}d/ ҬD+a(=e"XQjV~MWwm6"\KgIW#Og6@&=Ͽ) :\M-eUZZlsٝ3geA8Rk8K2n1c Ps| 1SҪ5GJb6V@:kV0n3 *xʯYCdOW!襇!|iUoR- KzcnR!y6teǦ3*۸z\bK*‘ *- k[[xO!XA$NEn1j@ě]f~Ș8: !NYׁ{ pL*˘¶qp,~ 2aI,5\wYE>3țslW$CRfid^NcUH">f2?/΢0Qqr xM 6 X-ɛY>*6 \}I55AEnLՈbg\oE^ESNg]@C9>-ѓ^!-(zza'_\ =od3MM%6JW]>V-p+꣉iuhL5cőQ0WU e9Edw᜗C蕢 rw?^\U,9J.L;FǩeGSpe% WD4z?ש]?2Ā-9 9xVn ~ƠQu\˪?uc!Ybѵ6Hhs;aFLZ,97A5rmCi|Z] d{:ݥYulnc׃r\@Mۯw `Yi-!k܍ӷŘA:Aw;J<HQBY!@kPEIg^Ci߄JU:P Hi+˯bC$`C{҆Bn>k}I1yɿPy}۱󓫸 .]1BE:&.5hmdLCt;n ۬|%vÿd+6 5:׳|sw׆0 R(5uI^{P(Yކ ;m2G kK37gnw'YyH[^率\*//00k/;q^kiX@6X{ڂ^B!HqV=Bgu7&QE5qez)ZM;=QŒ"P?Uw2~DC3D\ g}Fi 6*MANi3KtXW.E ^fZSI[Vnazݡ\soନ [>?e)IV^>t_67Raܩ|_,Niz&xquUIZ^/ޝD,h PPoM]J3yG+ȆAqX7>̈́|銿p/]͔ZVaph5An=)YHo %}Mc@C[Y.Tj2G uA<{ Ojs> 0U6b4\Υ?D3,/0] ?|`^^"CnU gNlܯ>NEit_#d B0^B<.C$(vh2֡ qdT ~Rw}SD9(,M2(@ y}# 9YV Pb%د$>? mڝL+f ]$@wǞ4LX\x(wL1YY×ܤzx)F:5_ 1vDʹÙrR B.5_؉GYiAζIL1=,zx*UI< /"{~Ké:qhPY_z핎+t*|v`;A(xg\u>P(miPjEM#vcF(~i(ÿ-,(vjXn3eGf<ן"6z߰^3s6q"15jM3qV2Z\0'V\5Zmp^ #e?T7%,~svauoݲ /Fm)8=Gd8jy`ǫWh,k '#x:__gKBA|vL%O~Ke4bqtȂzhh!#i2P̦^?S]BFC13ṕd_+~ku~Gɾ O&=^zAaqo](s|bP'q6O*PMEDJ@>n.Ɖ8. ZzдJ6 s7}%  L>~[ gJb6ddl#A.uxO1hv +[9?;olsZf飕-UQx T ~x J9 m -%4js HgQ&Ktd n;b%6'ؗ/&UX'/b*ew6ieڶs~jo`ۆA`c:k@ d:G;+.Js?r-soUVL+pFF/ ((Mgp|2VHcz!F0{.y!@7? ),vϻV\+փێxm!LQ/W gՊH 吖 + O4ۡwtzV$Y;t39[S!#'"Ʊ bGdJDYtFAߝmsSaO!2K 2Sx~O_4%shjFrD>7~n<&ICE0">"X|j\+h`V%5A LyZ8OWOH=]TOuՐp]W`BE-Ce&ڡҮ™s n.xW©QW1hox6QH55}23`~JAsvmZjIYDP90G O6  iYWC7 !SАq-c* z9.AހA4T_u v7Ch)Iؽ$.T!} _X/C!\D׽e7rz3#;Vd%rŸP1kOs)gdHZ{o"5F2tA&M;~߯Z)$+E>o1@g $AHp5 ^\ٟ&OD; `"20~7I6f?Sk1  f-hu 'MA3jMJvݓ}r'^o\m.Rf)M'1:h-u7^WevkVetfG%& jh9G ^㭁LZo2ގf[x:6HYxɇ{qQ[X0:8w*:iz^>ЯY;ҮސNyes8ϩފDr$$ۍ0L|8С[Vh}<!Gre qpo|^H>$D.DO(i;5xB‰X:%g %17>Vɱ?S;pP k̑n*v[ 3bCV`9jz'}}lc9j0n܄CȊ4"~iwYhv<0:5&>5K{ ̎]3<1C*@+G8Wyjj_8sBa=;qeL5>2ʀSPeVVv͗2:f#S =ɄN!G`d ?˫5nRӟ:d* yj8i'Y6]+[sѯ4CՇy@iDQVIHZ.̫-{op~|ף2$\-fH+t[UkW"OZx8&"CHs۴S{zWD/܆}rᏒGqK *k-1R3sf})뙴W%w9r(@-ܺDk%ȣΥcw^eR>͈IKrɕ 2 b,<+Pau,A{œZ[=v٭JC ct&7G2ap04!Z;I87 +f5X)sN19˦ҡR>0:#{wScd#XNbf/y)t&Zh܃Ƭ,4okS 8ZޢÞ0Qd Sy3ԭu;1e6m.fjbfJc 5멸fDJ1^8SFCڑP@uRa3do9k"*l(\Xr('xFu9/Z;g~+p"8NlDN7Bh;i敫V*Fդvfo~=*%t\ &C8)b; wѽ+p Hݟ@jZ/Vfک6F6||S05zA~Iwq*ҭ1J( u(̹0zBz%u@=`܀[u q|>2wq`Dmf>C 'jh ܮd_RcHXicwUYFj vrQRTЯ2~s_̙Fԇɇmo 3UeFw} ]0dU3O`y}%p+COVE,b_R(B[W}gF)L(c^> Ή5TSИaVv#@7bZ8B,(ނ]M*D vdxiyb]0TtlY#wSVaO|ox`Z)!2Щxm&k眶{M`uNȋb, ̘CU2 戙: Wufp2$icM$D5!PXXl f\I4lD+hJi/jiH=DiMm`OIGf3Ԫ)gk6 o1uj,R5/-T)?]O$WZU @ Ń=d:TLclaw-`n *cs W^SzjD"+@\\;s[1\>iaQm8U 1pqH|)aA/ 29.w?d$9PgۻQXOu R^z)HFfA&X9U`YdWJkCAErW_>N`1ԅL ye&*eH  Xx w~+ZD{QvaleLǤ!d^ 7B+nZg-Q!6<_APo9g!iK?j#! b-gT]s Y_ߡ+2ʋ@, ^,>=RZPڛVv`1ka0+Hyc;S$\ZEA;}<%mM'ؔoBU#xiq^/+"Γvo i3gG | O=j MugxRvG{L^<9OYu~lLl*Q=m<Зz^Ct&a#wH0^[W:/8kNq=c풮`F\1ji/% INfiTvխ_9kSڱ\sdR1w=Tހlt=m@'~GdŢsj)7 7Tn {Ec)X_Ia;fg',F?uh={V+JnpT\Mh^v k#rVPWѐ_{+#+創,m5XDR< 04o׵(%*Fjc GN /8:y3&o(>HC-$eq/gjR0|<0F3VqÏ9}V%9Hu5HC/QR]GX hQ,ꠛͰ$=;aR ˩F;j\Լб' *"*}$kٷs 6ڰRR%dAЗAlBWO#6h&ڗ1+VJd>?WwYˑw`osL/OhB}?DB;JʘptP!">dGSfP JPrr񗠔"k~If0&w<"Ek (j0ӷڣ6DW8O04a_Eӹ;2,hb(KUqgsP .`EW &# * 6"% zN`8D`TM\D \#é DTTzc1#OƝ)h:Tj\0)1\ fm@H ?(7MbkK՘iNW ڥn.rEr9qY77^LE[cuMBO} `L@ec&_Oł6*dC12ּ ,qdꬓjgY/xriżsᬾAfc7إ^p3MSw,]";:JfU(%{\¤ns՜0Kg{j^! 6[dm PZ4K`RMRQfCREOFm\g͉ iܥx}=>d"t'5Pf6Gdъ~~ϊKmpE⣍* (I^U3V!_QRkj]ƞ ދgAhma-wADi~c\оϝ^4rpLMe1H%oӫS-t*TU,wtOk}0iEnקs6ʅl % bWu=}ۃI()2fp?˱>uc2p߉dNzð 06J4dR 0B# 3CLP1.mǶ:Z#G #;j=-+\:n %ǃ: n ?*˝h,m}̠f-0 1*cjvZ'W^m) ḿ t-Xg*>]~OeZ {l}{ׯf -,?` _>G4 3h<9)2(CAI9shc(*8OKu51N 4Kq%.F)F>"9>c\I='j~ J!"?C-7Pe*<4hϧǫ$`SqI?/\{X:I'2þc搼F*d q\l"zLC+>u@(iy~yJ֟~KY?}ݦbx-%X 5k.RZcsSw06#s\oI9}'K֟'g a³f{%_"53ʅUdd|o}dVBB? 9HkAceϣ'o<$f]R:ur\or{\RϞ\p} ~tܕ[duVg>u!C[% ^r#8ra!yB> B [L ٍspnaF]D Lvլ8 ce!cA瓢4W2 /AndNA #,ҝC[$# $RѕWebH8#mo d3 : TCq֫HFVނ?2^/C/Ex:P:A6WxH%!hM`HҰhf9Tv E KRg]RCWd{7U>4v9~0bmچpE!82mq7)1X!s5+,큲hׅqrEfK:;w>њ xι9 DUC9'8 j=: Y XQ(RlTSpc8 -,/A[<̧ˆP ӾbjqG$\v8`ncM0Sn.16M =ȓ" c=cxѵ5\C ^Dk,p6oс.Hnug>|tv=َ";L2E~Ts*ӣu->l5سr&̌5x+L(B?f*;BRl=Jwϑ0 Fv#keu#K>c/s>|P?`(3H}4 VF4_+Y󅀄!qpx_lw :F>]pwiƘB{'Z:p79T.r [in[)^[4BH|4϶ꑙыk ^@8ψ?lW;c+H>EHV]k_)u f%2Ť!\wu䗐5c Ft@e[TI9=a_9ѮL7, m %\_^ԠP12]B3=Hi̔#y7Ϻ<Ç C7aRo9A3$9#By?1֖r \|~zZӖC# HBT3PYhdG_(O2 3 +^nDnC9Xώ4݆4ih7wPP͞ Tࣻ3߬ߢfu_@C !xMCk…r9?`-cAL4 6pk~N˦PG|ӃQ?grg`D}Zۦ:mm/۸q7<#M$`7ђY5_+}K>1Dټ]áhPUͬj[!wVj.9hI:eΦd- ڑZ X~č씙.* )QU֯fֵ,h%;H|8TVA[7qvlYfb@5p\f'b/ZDOFa@v=?䭔U 1Bc5"?wإ*QpgD*ޠ F':v)4C>s@Ⱦ K|Q >O%:(ZhcL7qrE;#UՅ4Y~N\zSƋQk7]&0SdXoKJEQfLjp幤^!@e<).q+aP<'*7RrFynSNql~lH脼`'HSS ̗rc{uqu1^PfnMJ'h3 ^JDF+{SKEo(6{~W-e2JO/&Ū@P1 H*hgdZ4h<.NbZbAyL*4&\Z(v/Ii7"#8 -A3lXQTgfmo]<" ͅѳԜq(ON/ioA8sotb͐OdR:0($ V&, iӰ&NW0XY.-Ze0,ߧj8/}6X`ZM?}^&}d0!f&Gݒi-r9cQ\°T[A y|АPh Xh:IɬZvщ/5w#wF{PP"Zt wFWX}ѳ7o(@lv7'1%o]28x_{>YTtJ* &Q:sl M{*0i=CFMrq H^ u-~IzuU }Iok X?U!}jC[#BesEd?{ݾf@?f+F%X;tZ<ɏ+|Yx AW9&.C~rg9kjwUJqo-Ўn?3>&'u Ef.G+[ w4Xblht h{ Q("] 3EŸtZ2S׮(WV湀'mׄʼc\0^cvz[ Wٰ 4uXb4e6}Kkvq>̂l{qO/PTOhO8bnLn~㧱_V `W qʨۤ,إI%4w޲ج![Pk> /me6щ>Iј;-bQ:y W|hritaAAֽEwY1";&iJ&?JTIW W|oLu4L7V!#lZNae+07!ILƏR`*kưZ+ZzSCJ5Ѧ1j">6kur>diPaO7*qP%Bb a3(35L]]t&pMSdqMcm&P?w5J;7C2(K>-3A;o;~OfHXڢP 3 ZmRO:v]ރqZa 4_~7Tp 7Xw}mXGfp Qv-M"7GoCHArK2I.<&`}p!z䑢64*̐㜩Nlĕ?vA/D֥;mP# ^Q_ _+\#꿞f ӂnw{: ו.t+!nC2ܮ!Is`)_lUhydVci7&c& Gqȗzۯ"]߂¯Rǻ^XdA`,9$c[:xUqf~ ~5ݜȄ(AU(Fq_+bA|Nb#2_$%YrXLMcRP̴;)*FU% hWdJ7*u=Kbp12IJ-.5f;9 0Noo@09&b|3YDk4(HpdHC/L(oOc:h#ʿ[>;Ac~3[ ;kGMz*4"1iF oM{T4|s<-~.c4ٛ]VIi6Ԧl6B4o:p%iKcVF$<,+;}12A; Ū\ޠzMA^!Ql``̒h%AowA3$l.ngzm C-Ka\$we Zz@ | ̙"IoONbxa" Yi1bBLZEFܩz+MjOoq*a#~1;] Xu??%^6B2c<qD&`8>q - __pCK$; p )~/,ay|\D[,DZFcgX-%cyݝ*EMۻ#h]%<!PH,aAC`\vV:ϚONXD4S~d2Qcp-+GZ۩Nc4r&) ^|C;pz] 9TRa~x7foL!i[.Y2Ms.ȄzE(|QlN#Zm(om &j/xs:Ϙm@ BJg tri.ˏR(^Trtiq{';#)- ~@%m $YX4EoP`Ϳ:ۮ}|*=0uw ɛPC Z)ᄷ8DߒQkJ=2qtE[k}KPĩ9Biɩa&_#ٗ"G/HX]zqv$#29RC5lIE+N|e+}(svǶqCTl(\ݿS]2}yd* i-Mbk UrXP2i^^@-} A7ypPgZQ|m9}s"NVp8NT{vz|CH~h甐z9GqSa;jN1Y$V̗ %=pl" '>a%^S/6jEHNMB+|`#]$pyąS[(Cb-`(޼x2InxQ^7~:3pyKu-BҺpԔ\/H4X7C: !IUb/1]) :S$&yr2;6`Ll /߃~YE奉A;?UUPeP_M&BR<:ˣysM((&;keudUPt(.NvWesfY2{?plPaq+R=X/ޓv?\n<Rr\5~(!kQ1jjﶲ96KJtq7Yzmf=h'^}$ W߼R?Bmw'Yl473,FfE"`7'mI Ql./:GG_`D F1ps nົI$s=dB>jb!0{<CdF}[O"7*KG.KQQ *yMz^R%S:]rf@C޸Lee҇ ]s B[P7ИUnKFy u-a}y,ԗ2gx|G?I8`v@ؖC u1 qIHK\~n a%Ip0|?50D!Q7/gq ź2Lv5j dǑXIFI׺ 96MfSt4iҫ19>i!<{˭q ,:0j =wódM:7E6O gO9K$neXTNYf*sihw?9ZJ(Oc'9>ҭ?Ph b9&a{) ^ab5?⭾;mj&xp2f>?Pls0!4QzBG%zNH@sSI&稠Fqc}ԟ t,Gd6Oz(B+g6}1+%Ly%X;!a? %eZ,,Tb99t"WMzIΘ?,U ]_u;vhMY=mUV'4>X lOGf4@Uo%mqAc@zg"` (b Ѷu0mg6ˆW0-RQH؆?An\&m6Oaa>"Ll9#<f:sLfn<?SvY)bcTϸP#)=Չ.}r% pi6PE(<.*@zR 2&Qjh{g  !NMdxvin'1+SoiR,QR+ L}E|Y$ZX֜x;r c?t\˪~x;kg6ࡣ܋1`7 m%0MhTr:tX.  YZ