selinux-policy-minimum-3.13.1-102.el7_3.16$>h[G)ف;'>E ? d  - Ix|  % 2 ? Y  |D8   ()*+,-8 91 :) =u>uDuGuHI4XY\]$^b Cd D^e Dcf Dfl Dht Du ^v x w zTx ty  Cselinux-policy-minimum3.13.1102.el7_3.16SELinux minimum base policySELinux Reference policy minimum base module.X< c1bm.rdu2.centos.orgꗲCentOSGPLv2+CentOS BuildSystem System Environment/Basehttp://oss.tresys.com/repos/refpolicy/linuxnoarch if [ $1 -ne 1 ] && [ -s /etc/selinux/config ]; then . /etc/selinux/config; FILE_CONTEXT=/etc/selinux/minimum/contexts/files/file_contexts; if [ "${SELINUXTYPE}" = minimum -a -f ${FILE_CONTEXT} ]; then [ -f ${FILE_CONTEXT}.pre ] || cp -f ${FILE_CONTEXT} ${FILE_CONTEXT}.pre; fi; touch /etc/selinux/minimum/.rebuild; if [ -e /etc/selinux/minimum/.policy.sha512 ]; then POLICY_FILE=`ls /etc/selinux/minimum/policy/policy.* | sort | head -1` sha512=`sha512sum $POLICY_FILE | cut -d ' ' -f 1`; checksha512=`cat /etc/selinux/minimum/.policy.sha512`; if [ "$sha512" == "$checksha512" ] ; then rm /etc/selinux/minimum/.rebuild; fi; fi; fi; if [ $1 -ne 1 ]; then /usr/sbin/semodule -s minimum --list-modules=full | awk '{ if ($4 != "disabled") print $2; }' > /usr/share/selinux/minimum/instmodules.lst fiif [ -e /etc/selinux/minimum/modules/active/base.pp ]; then DONT_REBUILD=1 /usr/libexec/selinux/selinux-policy-migrate-local-changes.sh minimum touch /etc/selinux/minimum/.rebuild systemctl daemon-reexec fi contribpackages=`cat /usr/share/selinux/minimum/modules-contrib.lst` basepackages=`cat /usr/share/selinux/minimum/modules-base.lst` #TODO: (cd /etc/selinux/minimum/modules/active/modules; rm -f pkcsslotd.pp) if [ ! -d /etc/selinux/minimum/active/modules/disabled ]; then mkdir /etc/selinux/minimum/active/modules/disabled fi if [ $1 -eq 1 ]; then for p in $contribpackages; do touch /etc/selinux/minimum/active/modules/disabled/$p done for p in $basepackages apache dbus inetd kerberos mta nis; do rm -f /etc/selinux/minimum/active/modules/disabled/$p done /usr/sbin/semanage import -S minimum -f - << __eof login -m -s unconfined_u -r s0-s0:c0.c1023 __default__ login -m -s unconfined_u -r s0-s0:c0.c1023 root __eof /sbin/restorecon -R /root /var/log /var/run 2> /dev/null /usr/sbin/semodule -B -s minimum else instpackages=`cat /usr/share/selinux/minimum/instmodules.lst` for p in $contribpackages; do touch /etc/selinux/minimum/active/modules/disabled/$p done for p in $instpackages apache dbus inetd kerberos mta nis; do rm -f /etc/selinux/minimum/active/modules/disabled/$p done /usr/sbin/semodule -B -s minimum . /etc/selinux/config; FILE_CONTEXT=/etc/selinux/minimum/contexts/files/file_contexts; /usr/sbin/selinuxenabled; if [ $? = 0 -a "${SELINUXTYPE}" = minimum -a -f ${FILE_CONTEXT}.pre ]; then /sbin/fixfiles -C ${FILE_CONTEXT}.pre restore 2> /dev/null; rm -f ${FILE_CONTEXT}.pre; fi; if /sbin/restorecon -e /run/media -R /root /var/log /var/run /etc/passwd* /etc/group* /etc/*shadow* 2> /dev/null;then continue; fi; fi exit 0 l.0)>p)")!) q)H)F# )v ) x'~)"r) A'))f,).#)8a)k,H).)()!) (r)3L)#v)E>) (+)@$?)$)0)))..)B$)'){$)0)S._)-))#"~)#)M") !)!&)!2)#f)$): d) q)/)!2)#)M)7!})>1)a$E)/)C!) ) )z2)K c) +) ,r) ') &)2 )5F) ()S.)x!) ')!)} V))&I) &)>) *1) %) '0)!)-))1O) @'I)%:)#)<)$)E )).0&)2 ) ) J&)$)9a)_4)*$) ')2 )9-) r&)~) ')S#a) &9)$A),@)!)#K))0)6f)/@)) #'j)c$l)A$u) &)/) z'i)/?) q+})38)p )"N)$g)2))$B)q)) ()!4)1)Fx)$))) *) s):) ,) (%9) )$))pK) r')u)l ))-)r$) h'v)0)r)[-)#f)C#1)@ ) ) *%) Y&)1)1)#e)K") %)O ))0)")Y!)/;):2r) )u)k+)") )v9) )).#)) )!.)q x)) %)P!)x~)))u)m) ))!$)2)>$g) ,)x$x) [)&:P) EH) ') ,p)n%=)3B)=q)0&)!) x@)) ' )) ')7)O H)+/) ') I(u)O#) q)&") &s))+c) -%))#l) j))> X))1R>K))e5) P%X) (') ) h)"=)#)h#),)% )"oB)))0)L })4)#)##).)")F#$)})?) 9)#)/).)-)D"#) |')9!)"a)|t)C)0) 3))c,)%) )?)$k) s,) )) ) *)L^)/i)^#/)>)"<) S*%)%oIT)Q03) &)q) ()Z6))-))#)./)b$)!pA3) H*)") C'h) ')gC)!)-M)#):)#) +)) H)t)6!.) 8)i$_)$D)3I))t {) )))Q)X37)F#)\ )"$) 'm) %)"2)"s) )j) ()$)]1)")m7_)lV)/)$J)-)S)")%')-#)s#)!)")w\)$x)m7)!])"C) ) ))-) 1%)&#)G!L)P!) ')H#) ))"i)R+) ')!F)%")%)#)"dE))Dy)9%*)1))\:)<#6)b>~)#) '))"O)!)a"d)GNoa) =&[)+):))r$)X")!-)* =),) s&<) ') ()1/)+S)Fw)0) )[) y%) ()8je ?lI"3qM!J59#kBa3>G h8_j0 \_fs vA큤AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA큤A큤A큤AA큤A큤X7X7X7X7X7X7X1jX7X7X7X1kX1kX7X7X1kX1kX7X7X1lX1kX7X7X1lX1lX7X7X1lX1lX7X7X1mX1lX7X7X1mX1mX7X7X1mX1mX7X7X1nX1nX7X7X1nX1nX7X7X1oX1nX7X7X1oX1oX7X7X1pX1oX7X7X1pX1pX7X7X1qX1pX7X7X1qX1qX7X7X1rX1rX7X7X1sX1rX7X7X1sX1sX7X7X1tX1sX7X7X1uX1tX7X7X1uX1uX7X7X1vX1uX7X7X1wX1vX7X7X1wX1wX7X7X1kX1jX7X7X1xX1xX7X7X1yX1yX7X7X1zX1yX7X7X1{X1zX7X7X1|X1{X7X7X1|X1|X7X7X1}X1}X7X7X1~X1~X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X7X1X1X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X1X1X7X7X2X1X7X7X2X2X7X7X2X2X7X7X2X2X7X7X2 X2X7X7X2 X2 X7X7X2X2 X7X7X2X2X7X7X2X2X7X7X2X2X7X7X2X2X7X7X2X2X7X7X2X2X7X7X2 X2X7X7X2#X2!X7X7X2%X2$X7X7X2(X2&X7X7X2+X2)X7X7X2-X2,X7X7X20X2.X7X7X23X21X7X7X26X24X7X7X29X27X7X7X2;X29X7X7X2>X2X3X7X7X4GX4DX7X7X4LX4IX7X7X4QX4NX7X7X4WX4SX7X7X4\X4XX7X7X4aX4^X7X7X4fX4cX7X7X4lX4hX7X7X4qX4mX7X7X4vX4sX7X7X4|X4xX7X7X4X4}X7X7X4X4X7X7X4X4X7X7X4X4X7X7X4X4X7X7X4X4X7X7X4X4X7X7X4X4X7X7X4X4X7X7X4X4X7X7X4X4X7X7X4X4X7X7X4X4X7X7X4X4X7X7X4X4X7X7X4X4X7X7X4X4X7X7X4X4X7X7X4X4X7X7X4X4X7X7X4X4X7X7X4X4X7X7X4X4X7X7X5X4X7X7X5X5 X7X7X5X5X7X7X5X5X7X7X5 X5X7X7X5&X5"X7X7X5,X5(X7X7X52X5.X7X7X58X54X7X7X5>X5:X7X7X5DX5@X7X7X5JX5FX7X7X5PX5LX7X7X5WX5RX7X7X5]X5YX7X7X5cX5_X7X7X5iX5eX7X7X5oX5kX7X7X5vX5qX7X7X5|X5xX7X7X5X5~X7X7X5X5X7X7X5X5X7X7X5X5X7X7X5X5X7X7X5X5X7X7X5X5X7X7X5X5X7X7X5X5X7X7X5X5X7X7X5X5X7X7X5X5X7X7X5X5X7X7X5X5X7X7X5X5X7X7X5X5X7X7X5X5X7X7X5X5X7X7X5X5X7X7X5X5X7X7X6X6X7X7X6 X6X7X7X6X6X7X7X6X6X7X7X6!X6X7X7X6(X6#X7X7X6/X6+X7X7X67X62X7X7X6>X69X7X7X6EX6@X7X7X6LX6GX7X7X6SX6NX7X7X6ZX6VX7X7X6bX6]X7X7X6iX6dX7X7X6pX6kX7X7X6wX6sX7X7X6X6zX7X7X6X6X7X7X6X6X7X7X6X6X7X7X6X6X7X7X6X6X7X7X6X6X7X7X6X6X7X7X6X6X7X7X6X6X7X7X6X6X7X7X6X6X7X7X6X6X7X7X6X6X7X7X6X6X7X7X6X6X7X7X6X6X7X7X6X6X7X7X7X7X7X7X7X7 X7X7X7X7X7X7X7X7X7X7X7'X7!X7X7X7/X7)X7X7X77X71X7X7X7?X79X7X7X7GX7AX7X7X7OX7IX7X7X7WX7QX7X7X7_X7YX7X7X7gX7bX7X7X7oX7jX7X7X7wX7rX7X7X7X7zX7X7X7X7X7X7X7X7X7X7X7X7X7X7X7X7X7X7X7X7X7X7X7X7X7X7X7X7X7X7X7X7X1jX7X7X7X7X7X7X1jX1jX1jX1jX7X7X7X7X7X7X7X7X7X1jX1jX1jX1jX7X1jX1jX1jX1jX1jX1jX1jX1jX1jX1jX1jX1jX1jX1jX1jX7X;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../selinux-policy-migrate-local-changes@.service@@@@rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootselinux-policy-3.13.1-102.el7_3.16.src.rpmconfig(selinux-policy-minimum)selinux-policy-baseselinux-policy-minimum@     /bin/bash/bin/sh/bin/sh/bin/shconfig(selinux-policy-minimum)coreutilspolicycoreutils-pythonrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)selinux-policyselinux-policyrpmlib(PayloadIsXz)3.13.1-102.el7_3.162.53.0.4-14.6.0-14.0-13.13.1-102.el7_3.163.13.1-102.el7_3.165.2-1seedit4.11.3if [ `ls -A /etc/selinux/minimum/active/modules/disabled/` ]; then rm -f /etc/selinux/minimum/active/modules/disabled/* fi exit 0selinux-policy-minimum3.13.1-66XCXXv@Xs{@XlXWXRXOXEVX)@X#X#X`@W%WSW_@W_@Wv@W;W@WίWW:WQW@WW@W@WW~W@WW~D@W{@Ws@WrfWj}WbW^@WYZ@WYZ@WUeWM|WBW9@W9@W1@W(W V@V@V@V޾V2V@V_VVCV@VZV @VqV }@V }@VBUUU@U@UpUUUUoUoU5@UUȒ@UĝUUWUU@UUK@UUU'Ua@U~@UzUv@UT@U@Tr@T@T@T7TTTC@T@TTT}Tto@TsTk4T`T[bTWn@T?@T>aT6xT6xT@S@SSDSg}@SB@S>S;S:@S9XS5d@S4S2@S0@S,)S*@S)S)S&S&S"@S!S L@SSS@SSc@SSnS @S SK@RRR@RRJ@Ra@RRR&R&RRR=RʚRR@R@R@Rv@Rv@R@RR@R R@R@R|@Rz/@Rz/@RsRpRnQRi RfhR_@R_@R[R[RSRNRNRL RIgRB@RB@R:@R1R-@R-@R(r@R' R%@R7RRNRR@Q@QQdQQ@QQޞ@Q@QکQکQ@QzQQ4Q@@Q@QKQQ@Q@Q@Q@QQ@QQQQ@Q@QQQ@Qzl@Qw@QvwQo@Qo@QnQm=@QkQfQb@Q`@Q^QZ@QQQIQGQ@j@Q9Q8@Q4Q0@Q-@Q& @Q$QQ@QQ@Q @Qh@QsPP@P@PP@P[PP!@P8@PO@P @Pf@PPqP @PP7@P@PPPYP@P@PPPM@PPd@P@PoP{@P{@P@PP5@P@P~P}L@Px@PvPvPuc@Puc@Pr@Pmz@Pmz@Pmz@Pj@Pd?Pd?Pb@PaPaP[@PXb@PWPS@PQPO'PM@PIP@@P>@P8@P7lP2&P2&P,P,P*=P(@P#@P#@P!@P!@P@PkPw@Pw@PP

@NNU@NNl@N@N@NåN@NNNN@NNN@N@NGNGNGN@N@NNS@NS@N^N^N @N @NNj@Nj@NN$@NN@N/N@N@NFNFN@NNN@N@N@N]Ni@Ni@Ni@N|tNyNx@Ns:@NoENoENiNf @N^"@N\N[@NTNS@NS@NC@NBrN:N98@N7N6@N2N.@N*N)f@N(N%qN$ @N@N7@N e@NpNpM@M@Md@Md@MM{@M@M۝M@M@M‘@M@M@M@My@My@M3@M@M@MMM@MMMMTMx@Mx@Mv@MlMbSM[@MRMQ0@MQ0@MJMGMGMA^@M>@M9u@M6@M5M4/@M4/@M0:M,F@M$]@M@M9MMMMM\@M M M@L!L!L@LL@L@L@LOLOL[@L@L@Lr@L L,@L,@Lډ@L7LLLNL@LΫLeL|L@LB@LB@LB@L@LMLL@LdLL{L*@L@L5LLA@LLLL@LcL@L@L@LzL)@L|L|L|L{@LvW@LvW@Ls@Ls@LrbLrbLmLk@LjyLe3Lc@La?@LZLYV@LXLN@LN@LMxLMxLI@LH2LF@LEL=L=L=L;L7@L LT@L@LL@L@L0LLGL@K^K^KKKj@K$@KKK@K@KK@K]K޺K@KtK#@KKՀ@K:@KK͗@KŮ@K\K\K @KKKKK9@KK@KK@K@KKKKrKK~@K,K,K,K@KK8@KKK@KK@KqKqK}+K{@K{@KuBKs@KqN@KjKie@Kf@Ka|@K`*K]KXAKTM@KPXKEKEKEKD{@KC)KA@K;@K2@K0K/c@K+nK*@K(K"4@KK>K>K>JJęJH@JH@JJJ_@J@JjJjJ@Jv@Jv@Jv@Jv@J$J@JJ0@J@J@JG@JG@J@JJ@J@J@JJJ#J@JJJ@J:J@JJQJ@J J J|@JzJyt@Jyt@Jx"JrJrJq@Jn@Jn@JmJhPJeJ\s@JW-@JT@JS8JKOJI@JCfJCfJB@J@J@J?r@J<@J;}J:,@J7@J67J2C@J0J/@J,@J%@JJB@JJMJ J dJ@J@JJ@J*@J*@II@IIA@IIII@I@IIIX@IX@IX@II@I@IcIIo@Io@IzI)@I@IܑI@@II@I@I@IԨIд@I̿In@I3I3I@II@I@IV@IIaIIm@I@I'@II2III@IIIIIIII@III@I1I@III~@I}Iy@Ix_Iw@IuItk@Itk@Io%@Ik0IeIcGIa@I`IVIO@IJ;@IHIAI>]I= @I7@I6tI3I-I@III9@I9@II IP@I@IIg@Ig@HHH@HrH~@H,H@HCHHH @H @Hf@Hf@H@H+H@H׈H׈H7@HBH@HǶH@HH|@HHH@H{@H)HHL@H@H@H@HnH}H|@Ht@HsVHr@Hl@HkmHgy@HcH`H_@H^>HRa@HQHQHO@HFHFH$@DX@DU@DN@DN@DLDH@DGwDGwDDD@@D?D?D;@D;@D:HD:HD2_D1@D1@D-D+@D+@D'D!<@D!<@D!<@DDD@D@D@DDDDDD@D@D@D@D uD $@D D @D @DDDFC@C@C@C@CCCCCR@CCCCC@Ci@CC@C@CtC@C@CC:@CECCC @C @CعCعCعCعCC@C-C-C-C@C@CCǖ@C@CáCáCP@CP@C[C @C @CCg@Cg@CCC!@C~@C,C@CCCCC@CC@C@C@CZCZC @C @CCCf@Cf@Cf@CC@CqCqC @C @C @CCC}@C7@C7@C7@CBCBCYC@C@CC}@CqCqLukas Vrabec - 3.13.1-102.16Lukas Vrabec - 3.13.1-102.15Lukas Vrabec - 3.13.1-102.14Lukas Vrabec - 3.13.1-102.13Lukas Vrabec - 3.13.1-102.12Lukas Vrabec - 3.13.1-102.11Lukas Vrabec - 3.13.1-102.10Lukas Vrabec - 3.13.1-102.9Lukas Vrabec - 3.13.1-102.8Lukas Vrabec - 3.13.1-102.7Lukas Vrabec - 3.13.1-102.6Lukas Vrabec - 3.13.1-102.5Miroslav Grepl - 3.13.1-102.4Petr Lautrbach - 3.13.1-102.3Lukas Vrabec - 3.13.1-102.1Dan Walsh - 3.13.1-102Lukas Vrabec - 3.13.1-101Lukas Vrabec - 3.13.1-100Lukas Vrabec - 3.13.1-99Lukas Vrabec - 3.13.1-98Lukas Vrabec - 3.13.1-97Lukas Vrabec - 3.13.1-96Lukas Vrabec - 3.13.1-95Lukas Vrabec - 3.13.1-94Lukas Vrabec - 3.13.1-93Lukas Vrabec - 3.13.1-92Lukas Vrabec - 3.13.1-91Lukas Vrabec - 3.13.1-90Lukas Vrabec - 3.13.1-89Lukas Vrabec - 3.13.1-88Lukas Vrabec - 3.13.1-87Lukas Vrabec - 3.13.1-86Lukas Vrabec - 3.13.1-85Lukas Vrabec - 3.13.1-84Lukas Vrabec - 3.13.1-83Lukas Vrabec - 3.13.1-82Lukas Vrabec - 3.13.1-81Lukas Vrabec - 3.13.1-80Petr Lautrbach - 3.13.1-79Lukas Vrabec - 3.13.1-78Lukas Vrabec - 3.13.1-77Lukas Vrabec - 3.13.1-76Lukas Vrabec - 3.13.1-75Lukas Vrabec - 3.13.1-74Lukas Vrabec - 3.13.1-73Lukas Vrabec - 3.13.1-72Lukas Vrabec - 3.13.1-71Lukas Vrabec - 3.13.1-70Lukas Vrabec - 3.13.1-69Lukas Vrabec - 3.13.1-68Lukas Vrabec - 3.13.1-67Petr Lautrbach - 3.13.1-66Lukas Vrabec 3.13.1-65Lukas Vrabec 3.13.1-64Lukas Vrabec 3.13.1-63Lukas Vrabec 3.13.1-62Lukas Vrabec 3.13.1-61Miroslav Grepl 3.13.1-60Miroslav Grepl 3.13.1-59Lukas Vrabec 3.13.1-58Lukas Vrabec 3.13.1-57Miroslav Grepl 3.13.1-56Lukas Vrabec 3.13.1-55Lukas Vrabec 3.13.1-54Lukas Vrabec 3.13.1-53Lukas Vrabec 3.13.1-52Miroslav Grepl 3.13.1-51Lukas Vrabec 3.13.1-50Lukas Vrabec 3.13.1-49Lukas Vrabec 3.13.1-48Lukas Vrabec 3.13.1-47Lukas Vrabec 3.13.1-46Lukas Vrabec 3.13.1-45Lukas Vrabec 3.13.1-44Lukas Vrabec 3.13.1-43Lukas Vrabec 3.13.1-42Lukas Vrabec 3.13.1-41Lukas Vrabec 3.13.1-40Miroslav Grepl 3.13.1-39Lukas Vrabec 3.13.1-38Lukas Vrabec 3.13.1-37Lukas Vrabec 3.13.1-36Lukas Vrabec 3.13.1-35Lukas Vrabec 3.13.1-34Lukas Vrabec 3.13.1-33Lukas Vrabec 3.13.1-32Miroslav Grepl 3.13.1-31Miroslav Grepl 3.13.1-30Miroslav Grepl 3.13.1-29Miroslav Grepl 3.13.1-28Miroslav Grepl 3.13.1-27Miroslav Grepl 3.13.1-26Miroslav Grepl 3.13.1-25Miroslav Grepl 3.13.1-24Miroslav Grepl 3.13.1-23Miroslav Grepl 3.13.1-22Miroslav Grepl 3.13.1-21Miroslav Grepl 3.13.1-20Miroslav Grepl 3.13.1-19Miroslav Grepl 3.13.1-18Miroslav Grepl 3.13.1-17Miroslav Grepl 3.13.1-16Miroslav Grepl 3.13.1-15Miroslav Grepl 3.13.1-14Miroslav Grepl 3.13.1-13Miroslav Grepl 3.13.1-12Miroslav Grepl 3.13.1-11Miroslav Grepl 3.13.1-10Miroslav Grepl 3.13.1-9Miroslav Grepl 3.13.1-8Miroslav Grepl 3.13.1-7Miroslav Grepl 3.13.1-6Miroslav Grepl 3.13.1-5Miroslav Grepl 3.13.1-4Miroslav Grepl 3.13.1-3Miroslav Grepl 3.13.1-2Miroslav Grepl 3.13.1-1Miroslav Grepl 3.12.1-156Miroslav Grepl 3.12.1-155Miroslav Grepl 3.12.1-154Miroslav Grepl 3.12.1-153Miroslav Grepl 3.12.1-152Miroslav Grepl 3.12.1-151Miroslav Grepl 3.12.1-149Miroslav Grepl 3.12.1-149Miroslav Grepl 3.12.1-148Miroslav Grepl 3.12.1-147Miroslav Grepl 3.12.1-146Miroslav Grepl 3.12.1-145Miroslav Grepl 3.12.1-144Lukas Vrabec 3.12.1-143Miroslav Grepl 3.12.1-142Miroslav Grepl 3.12.1-141Miroslav Grepl 3.12.1-140Miroslav Grepl 3.12.1-139Lukas Vrabec 3.12.1-138Miroslav Grepl 3.12.1-137Miroslav Grepl 3.12.1-136Miroslav Grepl 3.12.1-135Miroslav Grepl 3.12.1-134Miroslav Grepl 3.12.1-133Miroslav Grepl 3.12.1-132Miroslav Grepl 3.12.1-131Miroslav Grepl 3.12.1-130Miroslav Grepl 3.12.1-129Miroslav Grepl 3.12.1-128Miroslav Grepl 3.12.1-127Miroslav Grepl 3.12.1-126Miroslav Grepl 3.12.1-125Miroslav Grepl 3.12.1-124Miroslav Grepl 3.12.1-123Miroslav Grepl 3.12.1-122Miroslav Grepl 3.12.1-121Miroslav Grepl 3.12.1-120Miroslav Grepl 3.12.1-119Miroslav Grepl 3.12.1-118Miroslav Grepl 3.12.1-117Miroslav Grepl 3.12.1-116Miroslav Grepl 3.12.1-115Miroslav Grepl 3.12.1-114Miroslav Grepl 3.12.1-113Miroslav Grepl 3.12.1-112Miroslav Grepl 3.12.1-111Miroslav Grepl 3.12.1-110Miroslav Grepl 3.12.1-109Miroslav Grepl 3.12.1-108Miroslav Grepl 3.12.1-107Dan Walsh 3.12.1-106Miroslav Grepl 3.12.1-105Miroslav Grepl 3.12.1-104Miroslav Grepl 3.12.1-103Miroslav Grepl 3.12.1-102Miroslav Grepl 3.12.1-101Miroslav Grepl 3.12.1-100Miroslav Grepl 3.12.1-99Miroslav Grepl 3.12.1-98Miroslav Grepl 3.12.1-97Miroslav Grepl 3.12.1-96Miroslav Grepl 3.12.1-95Miroslav Grepl 3.12.1-94Miroslav Grepl 3.12.1-94Miroslav Grepl 3.12.1-93Miroslav Grepl 3.12.1-92Miroslav Grepl 3.12.1-91Miroslav Grepl 3.12.1-90Miroslav Grepl 3.12.1-89Miroslav Grepl 3.12.1-88Miroslav Grepl 3.12.1-87Miroslav Grepl 3.12.1-86Miroslav Grepl 3.12.1-85Miroslav Grepl 3.12.1-84Miroslav Grepl 3.12.1-83Miroslav Grepl 3.12.1-82Miroslav Grepl 3.12.1-81Miroslav Grepl 3.12.1-80Miroslav Grepl 3.12.1-79Miroslav Grepl 3.12.1-78Miroslav Grepl 3.12.1-77Miroslav Grepl 3.12.1-76Miroslav Grepl 3.12.1-75Miroslav Grepl 3.12.1-74Miroslav Grepl 3.12.1-73Miroslav Grepl 3.12.1-72Miroslav Grepl 3.12.1-71Miroslav Grepl 3.12.1-70Miroslav Grepl 3.12.1-69Miroslav Grepl 3.12.1-68Miroslav Grepl 3.12.1-67Miroslav Grepl 3.12.1-66Miroslav Grepl 3.12.1-65Miroslav Grepl 3.12.1-64Miroslav Grepl 3.12.1-63Miroslav Grepl 3.12.1-62Miroslav Grepl 3.12.1-61Miroslav Grepl 3.12.1-60Miroslav Grepl 3.12.1-59Miroslav Grepl 3.12.1-58Miroslav Grepl 3.12.1-57Miroslav Grepl 3.12.1-56Miroslav Grepl 3.12.1-55Miroslav Grepl 3.12.1-54Miroslav Grepl 3.12.1-53Miroslav Grepl 3.12.1-52Miroslav Grepl 3.12.1-51Miroslav Grepl 3.12.1-50Miroslav Grepl 3.12.1-49Miroslav Grepl 3.12.1-48Miroslav Grepl 3.12.1-47Miroslav Grepl 3.12.1-46Miroslav Grepl 3.12.1-45Miroslav Grepl 3.12.1-44Miroslav Grepl 3.12.1-43Miroslav Grepl 3.12.1-42Miroslav Grepl 3.12.1-41Miroslav Grepl 3.12.1-40Miroslav Grepl 3.12.1-39Miroslav Grepl 3.12.1-38Miroslav Grepl 3.12.1-37Miroslav Grepl 3.12.1-36Miroslav Grepl 3.12.1-35Miroslav Grepl 3.12.1-34Miroslav Grepl 3.12.1-33Miroslav Grepl 3.12.1-32Miroslav Grepl 3.12.1-31Miroslav Grepl 3.12.1-30Miroslav Grepl 3.12.1-29Dan Walsh 3.12.1-28Dan Walsh 3.12.1-27Miroslav Grepl 3.12.1-26Miroslav Grepl 3.12.1-25Miroslav Grepl 3.12.1-24Miroslav Grepl 3.12.1-23Miroslav Grepl 3.12.1-22Miroslav Grepl 3.12.1-21Miroslav Grepl 3.12.1-20Miroslav Grepl 3.12.1-19Miroslav Grepl 3.12.1-18Miroslav Grepl 3.12.1-17Miroslav Grepl 3.12.1-16Miroslav Grepl 3.12.1-15Miroslav Grepl 3.12.1-14Miroslav Grepl 3.12.1-13Miroslav Grepl 3.12.1-12Miroslav Grepl 3.12.1-11Miroslav Grepl 3.12.1-10Miroslav Grepl 3.12.1-9Miroslav Grepl 3.12.1-8Miroslav Grepl 3.12.1-7Miroslav Grepl 3.12.1-6Miroslav Grepl 3.12.1-5Miroslav Grepl 3.12.1-4Miroslav Grepl 3.12.1-3Miroslav Grepl 3.12.1-2Miroslav Grepl 3.12.1-1Dan Walsh 3.11.1-69.1Miroslav Grepl 3.11.1-69Miroslav Grepl 3.11.1-68Miroslav Grepl 3.11.1-67Miroslav Grepl 3.11.1-66Miroslav Grepl 3.11.1-65Miroslav Grepl 3.11.1-64Miroslav Grepl 3.11.1-63Miroslav Grepl 3.11.1-62Miroslav Grepl 3.11.1-61Miroslav Grepl 3.11.1-60Miroslav Grepl 3.11.1-59Miroslav Grepl 3.11.1-58Miroslav Grepl 3.11.1-57Miroslav Grepl 3.11.1-56Miroslav Grepl 3.11.1-55Miroslav Grepl 3.11.1-54Miroslav Grepl 3.11.1-53Miroslav Grepl 3.11.1-52Miroslav Grepl 3.11.1-51Miroslav Grepl 3.11.1-50Miroslav Grepl 3.11.1-49Miroslav Grepl 3.11.1-48Miroslav Grepl 3.11.1-47Miroslav Grepl 3.11.1-46Miroslav Grepl 3.11.1-45Miroslav Grepl 3.11.1-44Miroslav Grepl 3.11.1-43Miroslav Grepl 3.11.1-42Miroslav Grepl 3.11.1-41Miroslav Grepl 3.11.1-40Miroslav Grepl 3.11.1-39Miroslav Grepl 3.11.1-38Miroslav Grepl 3.11.1-37Miroslav Grepl 3.11.1-36Miroslav Grepl 3.11.1-35Miroslav Grepl 3.11.1-34Miroslav Grepl 3.11.1-33Miroslav Grepl 3.11.1-32Miroslav Grepl 3.11.1-31Miroslav Grepl 3.11.1-30Miroslav Grepl 3.11.1-29Miroslav Grepl 3.11.1-28Miroslav Grepl 3.11.1-27Miroslav Grepl 3.11.1-26Miroslav Grepl 3.11.1-25Miroslav Grepl 3.11.1-24Miroslav Grepl 3.11.1-23Miroslav Grepl 3.11.1-22Miroslav Grepl 3.11.1-21Miroslav Grepl 3.11.1-20Miroslav Grepl 3.11.1-19Miroslav Grepl 3.11.1-18Miroslav Grepl 3.11.1-17Miroslav Grepl 3.11.1-16Dan Walsh 3.11.1-15Miroslav Grepl 3.11.1-14Dan Walsh 3.11.1-13Miroslav Grepl 3.11.1-12Miroslav Grepl 3.11.1-11Miroslav Grepl 3.11.1-10Dan Walsh 3.11.1-9Dan Walsh 3.11.1-8Dan Walsh 3.11.1-7Dan Walsh 3.11.1-6Miroslav Grepl 3.11.1-5Miroslav Grepl 3.11.1-4Miroslav Grepl 3.11.1-3Miroslav Grepl 3.11.1-2Miroslav Grepl 3.11.1-1Miroslav Grepl 3.11.1-0Miroslav Grepl 3.11.0-15Miroslav Grepl 3.11.0-14Miroslav Grepl 3.11.0-13Miroslav Grepl 3.11.0-12Fedora Release Engineering - 3.11.0-11Miroslav Grepl 3.11.0-10Miroslav Grepl 3.11.0-9Miroslav Grepl 3.11.0-8Miroslav Grepl 3.11.0-7Miroslav Grepl 3.11.0-6Miroslav Grepl 3.11.0-5Miroslav Grepl 3.11.0-4Miroslav Grepl 3.11.0-3Miroslav Grepl 3.11.0-2Miroslav Grepl 3.11.0-1Miroslav Grepl 3.10.0-128Miroslav Grepl 3.10.0-127Miroslav Grepl 3.10.0-126Miroslav Grepl 3.10.0-125Miroslav Grepl 3.10.0-124Miroslav Grepl 3.10.0-123Miroslav Grepl 3.10.0-122Miroslav Grepl 3.10.0-121Miroslav Grepl 3.10.0-120Miroslav Grepl 3.10.0-119Miroslav Grepl 3.10.0-118Miroslav Grepl 3.10.0-117Miroslav Grepl 3.10.0-116Miroslav Grepl 3.10.0-115Miroslav Grepl 3.10.0-114Miroslav Grepl 3.10.0-113Miroslav Grepl 3.10.0-112Miroslav Grepl 3.10.0-111Miroslav Grepl 3.10.0-110Miroslav Grepl 3.10.0-109Miroslav Grepl 3.10.0-108Miroslav Grepl 3.10.0-107Miroslav Grepl 3.10.0-106Miroslav Grepl 3.10.0-105Miroslav Grepl 3.10.0-104Miroslav Grepl 3.10.0-103Miroslav Grepl 3.10.0-102Miroslav Grepl 3.10.0-101Miroslav Grepl 3.10.0-100Miroslav Grepl 3.10.0-99Miroslav Grepl 3.10.0-98Miroslav Grepl 3.10.0-97Miroslav Grepl 3.10.0-96Miroslav Grepl 3.10.0-95Miroslav Grepl 3.10.0-94Miroslav Grepl 3.10.0-93Miroslav Grepl 3.10.0-92Miroslav Grepl 3.10.0-91Miroslav Grepl 3.10.0-90Miroslav Grepl 3.10.0-89Miroslav Grepl 3.10.0-88Miroslav Grepl 3.10.0-87Miroslav Grepl 3.10.0-86Miroslav Grepl 3.10.0-85Miroslav Grepl 3.10.0-84Miroslav Grepl 3.10.0-83Miroslav Grepl 3.10.0-82Dan Walsh 3.10.0-81.2Miroslav Grepl 3.10.0-81Miroslav Grepl 3.10.0-80Miroslav Grepl 3.10.0-79Miroslav Grepl 3.10.0-78Miroslav Grepl 3.10.0-77Miroslav Grepl 3.10.0-76Miroslav Grepl 3.10.0-75Dan Walsh 3.10.0-74.2Miroslav Grepl 3.10.0-74Miroslav Grepl 3.10.0-73Miroslav Grepl 3.10.0-72Miroslav Grepl 3.10.0-71Miroslav Grepl 3.10.0-70Miroslav Grepl 3.10.0-69Miroslav Grepl 3.10.0-68Miroslav Grepl 3.10.0-67Miroslav Grepl 3.10.0-66Miroslav Grepl 3.10.0-65Miroslav Grepl 3.10.0-64Miroslav Grepl 3.10.0-63Miroslav Grepl 3.10.0-59Miroslav Grepl 3.10.0-58Dan Walsh 3.10.0-57Dan Walsh 3.10.0-56Dan Walsh 3.10.0-55.2Dan Walsh 3.10.0-55.1Miroslav Grepl 3.10.0-55Dan Walsh 3.10.0-54.1Miroslav Grepl 3.10.0-54Dan Walsh 3.10.0-53.1Miroslav Grepl 3.10.0-53Miroslav Grepl 3.10.0-52Miroslav Grepl 3.10.0-51Dan Walsh 3.10.0-50.2Dan Walsh 3.10.0-50.1Miroslav Grepl 3.10.0-50Miroslav Grepl 3.10.0-49Miroslav Grepl 3.10.0-48Miroslav Grepl 3.10.0-47Dan Walsh 3.10.0-46.1Miroslav Grepl 3.10.0-46Dan Walsh 3.10.0-45.1Miroslav Grepl 3.10.0-45Miroslav Grepl 3.10.0-43Miroslav Grepl 3.10.0-42Miroslav Grepl 3.10.0-41Dan Walsh 3.10.0-40.2Miroslav Grepl 3.10.0-40Dan Walsh 3.10.0-39.3Dan Walsh 3.10.0-39.2Dan Walsh 3.10.0-39.1Miroslav Grepl 3.10.0-39Dan Walsh 3.10.0-38.1Miroslav Grepl 3.10.0-38Miroslav Grepl 3.10.0-37Dan Walsh 3.10.0-36.1Miroslav Grepl 3.10.0-36Dan Walsh 3.10.0-35Dan Walsh 3.10.0-34.7Dan Walsh 3.10.0-34.6Dan Walsh 3.10.0-34.4Miroslav Grepl 3.10.0-34.3Dan Walsh 3.10.0-34.2Dan Walsh 3.10.0-34.1Miroslav Grepl 3.10.0-34Miroslav Grepl 3.10.0-33Dan Walsh 3.10.0-31.1Miroslav Grepl 3.10.0-31Miroslav Grepl 3.10.0-29Miroslav Grepl 3.10.0-28Miroslav Grepl 3.10.0-27Miroslav Grepl 3.10.0-26Miroslav Grepl 3.10.0-25Miroslav Grepl 3.10.0-24Miroslav Grepl 3.10.0-23Miroslav Grepl 3.10.0-22Miroslav Grepl 3.10.0-21Dan Walsh 3.10.0-20Miroslav Grepl 3.10.0-19Miroslav Grepl 3.10.0-18Miroslav Grepl 3.10.0-17Miroslav Grepl 3.10.0-16Miroslav Grepl 3.10.0-14Miroslav Grepl 3.10.0-13Miroslav Grepl 3.10.0-12Miroslav Grepl 3.10.0-11Miroslav Grepl 3.10.0-10Miroslav Grepl 3.10.0-9Miroslav Grepl 3.10.0-8Miroslav Grepl 3.10.0-7Miroslav Grepl 3.10.0-6Miroslav Grepl 3.10.0-5Miroslav Grepl 3.10.0-4Miroslav Grepl 3.10.0-3Miroslav Grepl 3.10.0-2Miroslav Grepl 3.10.0-1Miroslav Grepl 3.9.16-30Dan Walsh 3.9.16-29.1Miroslav Grepl 3.9.16-29Dan Walsh 3.9.16-28.1Miroslav Grepl 3.9.16-27Miroslav Grepl 3.9.16-26Miroslav Grepl 3.9.16-25Miroslav Grepl 3.9.16-24Miroslav Grepl 3.9.16-23Miroslav Grepl 3.9.16-22Miroslav Grepl 3.9.16-21Miroslav Grepl 3.9.16-20Miroslav Grepl 3.9.16-19Miroslav Grepl 3.9.16-18Miroslav Grepl 3.9.16-17Dan Walsh 3.9.16-16.1Miroslav Grepl 3.9.16-16Miroslav Grepl 3.9.16-15Miroslav Grepl 3.9.16-14Miroslav Grepl 3.9.16-13Miroslav Grepl 3.9.16-12Miroslav Grepl 3.9.16-11Miroslav Grepl 3.9.16-10Miroslav Grepl 3.9.16-7Miroslav Grepl 3.9.16-6Miroslav Grepl 3.9.16-5Miroslav Grepl 3.9.16-4Miroslav Grepl 3.9.16-3Miroslav Grepl 3.9.16-2Miroslav Grepl 3.9.16-1Miroslav Grepl 3.9.15-5Miroslav Grepl 3.9.15-2Miroslav Grepl 3.9.15-1Fedora Release Engineering - 3.9.14-2Dan Walsh 3.9.14-1Miroslav Grepl 3.9.13-10Miroslav Grepl 3.9.13-9Dan Walsh 3.9.13-8Miroslav Grepl 3.9.13-7Miroslav Grepl 3.9.13-6Miroslav Grepl 3.9.13-5Miroslav Grepl 3.9.13-4Miroslav Grepl 3.9.13-3Miroslav Grepl 3.9.13-2Miroslav Grepl 3.9.13-1Miroslav Grepl 3.9.12-8Miroslav Grepl 3.9.12-7Miroslav Grepl 3.9.12-6Miroslav Grepl 3.9.12-5Dan Walsh 3.9.12-4Dan Walsh 3.9.12-3Dan Walsh 3.9.12-2Miroslav Grepl 3.9.12-1Dan Walsh 3.9.11-2Miroslav Grepl 3.9.11-1Miroslav Grepl 3.9.10-13Dan Walsh 3.9.10-12Miroslav Grepl 3.9.10-11Miroslav Grepl 3.9.10-10Miroslav Grepl 3.9.10-9Miroslav Grepl 3.9.10-8Miroslav Grepl 3.9.10-7Miroslav Grepl 3.9.10-6Miroslav Grepl 3.9.10-5Dan Walsh 3.9.10-4Miroslav Grepl 3.9.10-3Miroslav Grepl 3.9.10-2Miroslav Grepl 3.9.10-1Miroslav Grepl 3.9.9-4Dan Walsh 3.9.9-3Miroslav Grepl 3.9.9-2Miroslav Grepl 3.9.9-1Miroslav Grepl 3.9.8-7Dan Walsh 3.9.8-6Miroslav Grepl 3.9.8-5Miroslav Grepl 3.9.8-4Dan Walsh 3.9.8-3Dan Walsh 3.9.8-2Dan Walsh 3.9.8-1Dan Walsh 3.9.7-10Dan Walsh 3.9.7-9Dan Walsh 3.9.7-8Dan Walsh 3.9.7-7Dan Walsh 3.9.7-6Dan Walsh 3.9.7-5Dan Walsh 3.9.7-4Dan Walsh 3.9.7-3Dan Walsh 3.9.7-2Dan Walsh 3.9.7-1Dan Walsh 3.9.6-3Dan Walsh 3.9.6-2Dan Walsh 3.9.6-1Dan Walsh 3.9.5-11Dan Walsh 3.9.5-10Dan Walsh 3.9.5-9Dan Walsh 3.9.5-8Dan Walsh 3.9.5-7Dan Walsh 3.9.5-6Dan Walsh 3.9.5-5Dan Walsh 3.9.5-4Dan Walsh 3.9.5-3Dan Walsh 3.9.5-2Dan Walsh 3.9.5-1Dan Walsh 3.9.4-3Dan Walsh 3.9.4-2Dan Walsh 3.9.4-1Dan Walsh 3.9.3-4Dan Walsh 3.9.3-3Dan Walsh 3.9.3-2Dan Walsh 3.9.3-1Dan Walsh 3.9.2-1Dan Walsh 3.9.1-3Dan Walsh 3.9.1-2Dan Walsh 3.9.1-1Dan Walsh 3.9.0-2Dan Walsh 3.9.0-1Dan Walsh 3.8.8-21Dan Walsh 3.8.8-20Dan Walsh 3.8.8-19Dan Walsh 3.8.8-18Dan Walsh 3.8.8-17Dan Walsh 3.8.8-16Dan Walsh 3.8.8-15Dan Walsh 3.8.8-14Dan Walsh 3.8.8-13Dan Walsh 3.8.8-12Dan Walsh 3.8.8-11Dan Walsh 3.8.8-10Dan Walsh 3.8.8-9Dan Walsh 3.8.8-8Dan Walsh 3.8.8-7Dan Walsh 3.8.8-6Dan Walsh 3.8.8-5Dan Walsh 3.8.8-4Dan Walsh 3.8.8-3Dan Walsh 3.8.8-2Dan Walsh 3.8.8-1Dan Walsh 3.8.7-3Dan Walsh 3.8.7-2Dan Walsh 3.8.7-1Dan Walsh 3.8.6-3Miroslav Grepl 3.8.6-2Dan Walsh 3.8.6-1Dan Walsh 3.8.5-1Dan Walsh 3.8.4-1Dan Walsh 3.8.3-4Dan Walsh 3.8.3-3Dan Walsh 3.8.3-2Dan Walsh 3.8.3-1Dan Walsh 3.8.2-1Dan Walsh 3.8.1-5Dan Walsh 3.8.1-4Dan Walsh 3.8.1-3Dan Walsh 3.8.1-2Dan Walsh 3.8.1-1Dan Walsh 3.7.19-22Dan Walsh 3.7.19-21Dan Walsh 3.7.19-20Dan Walsh 3.7.19-19Dan Walsh 3.7.19-17Dan Walsh 3.7.19-16Dan Walsh 3.7.19-15Dan Walsh 3.7.19-14Dan Walsh 3.7.19-13Dan Walsh 3.7.19-12Dan Walsh 3.7.19-11Dan Walsh 3.7.19-10Dan Walsh 3.7.19-9Dan Walsh 3.7.19-8Dan Walsh 3.7.19-7Dan Walsh 3.7.19-6Dan Walsh 3.7.19-5Dan Walsh 3.7.19-4Dan Walsh 3.7.19-3Dan Walsh 3.7.19-2Dan Walsh 3.7.19-1Dan Walsh 3.7.18-3Dan Walsh 3.7.18-2Dan Walsh 3.7.18-1Dan Walsh 3.7.17-6Dan Walsh 3.7.17-5Dan Walsh 3.7.17-4Dan Walsh 3.7.17-3Dan Walsh 3.7.17-2Dan Walsh 3.7.17-1Dan Walsh 3.7.16-2Dan Walsh 3.7.16-1Dan Walsh 3.7.15-4Dan Walsh 3.7.15-3Dan Walsh 3.7.15-2Dan Walsh 3.7.15-1Dan Walsh 3.7.14-5Dan Walsh 3.7.14-4Dan Walsh 3.7.14-3Dan Walsh 3.7.14-2Dan Walsh 3.7.14-1Dan Walsh 3.7.13-4Dan Walsh 3.7.13-3Dan Walsh 3.7.13-2Dan Walsh 3.7.13-1Dan Walsh 3.7.12-1Dan Walsh 3.7.11-1Dan Walsh 3.7.10-5Dan Walsh 3.7.10-4Dan Walsh 3.7.10-3Dan Walsh 3.7.10-2Dan Walsh 3.7.10-1Dan Walsh 3.7.9-4Dan Walsh 3.7.9-3Dan Walsh 3.7.9-2Dan Walsh 3.7.9-1Dan Walsh 3.7.8-11Dan Walsh 3.7.8-9Dan Walsh 3.7.8-8Dan Walsh 3.7.8-7Dan Walsh 3.7.8-6Dan Walsh 3.7.8-5Dan Walsh 3.7.8-4Dan Walsh 3.7.8-3Dan Walsh 3.7.8-2Dan Walsh 3.7.8-1Dan Walsh 3.7.7-3Dan Walsh 3.7.7-2Dan Walsh 3.7.7-1Dan Walsh 3.7.6-1Dan Walsh 3.7.5-8Dan Walsh 3.7.5-7Dan Walsh 3.7.5-6Dan Walsh 3.7.5-5Dan Walsh 3.7.5-4Dan Walsh 3.7.5-3Dan Walsh 3.7.5-2Dan Walsh 3.7.5-1Dan Walsh 3.7.4-4Dan Walsh 3.7.4-3Dan Walsh 3.7.4-2Dan Walsh 3.7.4-1Dan Walsh 3.7.3-1Dan Walsh 3.7.1-1Dan Walsh 3.6.33-2Dan Walsh 3.6.33-1Dan Walsh 3.6.32-17Dan Walsh 3.6.32-16Dan Walsh 3.6.32-15Dan Walsh 3.6.32-13Dan Walsh 3.6.32-12Dan Walsh 3.6.32-11Dan Walsh 3.6.32-10Dan Walsh 3.6.32-9Dan Walsh 3.6.32-8Dan Walsh 3.6.32-7Dan Walsh 3.6.32-6Dan Walsh 3.6.32-5Dan Walsh 3.6.32-4Dan Walsh 3.6.32-3Dan Walsh 3.6.32-2Dan Walsh 3.6.32-1Dan Walsh 3.6.31-5Dan Walsh 3.6.31-4Dan Walsh 3.6.31-3Dan Walsh 3.6.31-2Dan Walsh 3.6.30-6Dan Walsh 3.6.30-5Dan Walsh 3.6.30-4Dan Walsh 3.6.30-3Dan Walsh 3.6.30-2Dan Walsh 3.6.30-1Dan Walsh 3.6.29-2Dan Walsh 3.6.29-1Dan Walsh 3.6.28-9Dan Walsh 3.6.28-8Dan Walsh 3.6.28-7Dan Walsh 3.6.28-6Dan Walsh 3.6.28-5Dan Walsh 3.6.28-4Dan Walsh 3.6.28-3Dan Walsh 3.6.28-2Dan Walsh 3.6.28-1Dan Walsh 3.6.27-1Dan Walsh 3.6.26-11Dan Walsh 3.6.26-10Dan Walsh 3.6.26-9Bill Nottingham 3.6.26-8Dan Walsh 3.6.26-7Dan Walsh 3.6.26-6Dan Walsh 3.6.26-5Dan Walsh 3.6.26-4Dan Walsh 3.6.26-3Dan Walsh 3.6.26-2Dan Walsh 3.6.26-1Dan Walsh 3.6.25-1Dan Walsh 3.6.24-1Dan Walsh 3.6.23-2Dan Walsh 3.6.23-1Dan Walsh 3.6.22-3Dan Walsh 3.6.22-1Dan Walsh 3.6.21-4Dan Walsh 3.6.21-3Tom "spot" Callaway 3.6.21-2Dan Walsh 3.6.21-1Dan Walsh 3.6.20-2Dan Walsh 3.6.20-1Dan Walsh 3.6.19-5Dan Walsh 3.6.19-4Dan Walsh 3.6.19-3Dan Walsh 3.6.19-2Dan Walsh 3.6.19-1Dan Walsh 3.6.18-1Dan Walsh 3.6.17-1Dan Walsh 3.6.16-4Dan Walsh 3.6.16-3Dan Walsh 3.6.16-2Dan Walsh 3.6.16-1Dan Walsh 3.6.14-3Dan Walsh 3.6.14-2Dan Walsh 3.6.14-1Dan Walsh 3.6.13-3Dan Walsh 3.6.13-2Dan Walsh 3.6.13-1Dan Walsh 3.6.12-39Dan Walsh 3.6.12-38Dan Walsh 3.6.12-37Dan Walsh 3.6.12-36Dan Walsh 3.6.12-35Dan Walsh 3.6.12-34Dan Walsh 3.6.12-33Dan Walsh 3.6.12-31Dan Walsh 3.6.12-30Dan Walsh 3.6.12-29Dan Walsh 3.6.12-28Dan Walsh 3.6.12-27Dan Walsh 3.6.12-26Dan Walsh 3.6.12-25Dan Walsh 3.6.12-24Dan Walsh 3.6.12-23Dan Walsh 3.6.12-22Dan Walsh 3.6.12-21Dan Walsh 3.6.12-20Dan Walsh 3.6.12-19Dan Walsh 3.6.12-16Dan Walsh 3.6.12-15Dan Walsh 3.6.12-14Dan Walsh 3.6.12-13Dan Walsh 3.6.12-12Dan Walsh 3.6.12-11Dan Walsh 3.6.12-10Dan Walsh 3.6.12-9Dan Walsh 3.6.12-8Dan Walsh 3.6.12-7Dan Walsh 3.6.12-6Dan Walsh 3.6.12-5Dan Walsh 3.6.12-4Dan Walsh 3.6.12-3Dan Walsh 3.6.12-2Dan Walsh 3.6.12-1Dan Walsh 3.6.11-1Dan Walsh 3.6.10-9Dan Walsh 3.6.10-8Dan Walsh 3.6.10-7Dan Walsh 3.6.10-6Dan Walsh 3.6.10-5Dan Walsh 3.6.10-4Dan Walsh 3.6.10-3Dan Walsh 3.6.10-2Dan Walsh 3.6.10-1Dan Walsh 3.6.9-4Dan Walsh 3.6.9-3Dan Walsh 3.6.9-2Dan Walsh 3.6.9-1Dan Walsh 3.6.8-4Dan Walsh 3.6.8-3Dan Walsh 3.6.8-2Dan Walsh 3.6.8-1Dan Walsh 3.6.7-2Dan Walsh 3.6.7-1Dan Walsh 3.6.6-9Dan Walsh 3.6.6-8Fedora Release Engineering - 3.6.6-7Dan Walsh 3.6.6-6Dan Walsh 3.6.6-5Dan Walsh 3.6.6-4Dan Walsh 3.6.6-3Dan Walsh 3.6.6-2Dan Walsh 3.6.6-1Dan Walsh 3.6.5-3Dan Walsh 3.6.5-1Dan Walsh 3.6.4-6Dan Walsh 3.6.4-5Dan Walsh 3.6.4-4Dan Walsh 3.6.4-3Dan Walsh 3.6.4-2Dan Walsh 3.6.4-1Dan Walsh 3.6.3-13Dan Walsh 3.6.3-12Dan Walsh 3.6.3-11Dan Walsh 3.6.3-10Dan Walsh 3.6.3-9Dan Walsh 3.6.3-8Dan Walsh 3.6.3-7Dan Walsh 3.6.3-6Dan Walsh 3.6.3-3Dan Walsh 3.6.3-2Dan Walsh 3.6.3-1Dan Walsh 3.6.2-5Dan Walsh 3.6.2-4Dan Walsh 3.6.2-3Dan Walsh 3.6.2-2Dan Walsh 3.6.2-1Dan Walsh 3.6.1-15Dan Walsh 3.6.1-14Dan Walsh 3.6.1-13Dan Walsh 3.6.1-12Dan Walsh 3.6.1-11Dan Walsh 3.6.1-10Dan Walsh 3.6.1-9Dan Walsh 3.6.1-8Dan Walsh 3.6.1-7Dan Walsh 3.6.1-4Ignacio Vazquez-Abrams - 3.6.1-2Dan Walsh 3.5.13-19Dan Walsh 3.5.13-18Dan Walsh 3.5.13-17Dan Walsh 3.5.13-16Dan Walsh 3.5.13-15Dan Walsh 3.5.13-14Dan Walsh 3.5.13-13Dan Walsh 3.5.13-12Dan Walsh 3.5.13-11Dan Walsh 3.5.13-9Dan Walsh 3.5.13-8Dan Walsh 3.5.13-7Dan Walsh 3.5.13-6Dan Walsh 3.5.13-5Dan Walsh 3.5.13-4Dan Walsh 3.5.13-3Dan Walsh 3.5.13-2Dan Walsh 3.5.13-1Dan Walsh 3.5.12-3Dan Walsh 3.5.12-2Dan Walsh 3.5.12-1Dan Walsh 3.5.11-1Dan Walsh 3.5.10-3Dan Walsh 3.5.10-2Dan Walsh 3.5.10-1Dan Walsh 3.5.9-4Dan Walsh 3.5.9-3Dan Walsh 3.5.9-2Dan Walsh 3.5.9-1Dan Walsh 3.5.8-7Dan Walsh 3.5.8-6Dan Walsh 3.5.8-5Dan Walsh 3.5.8-4Dan Walsh 3.5.8-3Dan Walsh 3.5.8-1Dan Walsh 3.5.7-2Dan Walsh 3.5.7-1Dan Walsh 3.5.6-2Dan Walsh 3.5.6-1Dan Walsh 3.5.5-4Dan Walsh 3.5.5-3Dan Walsh 3.5.5-2Dan Walsh 3.5.4-2Dan Walsh 3.5.4-1Dan Walsh 3.5.3-1Dan Walsh 3.5.2-2Dan Walsh 3.5.1-5Dan Walsh 3.5.1-4Dan Walsh 3.5.1-3Dan Walsh 3.5.1-2Dan Walsh 3.5.1-1Dan Walsh 3.5.0-1Dan Walsh 3.4.2-14Dan Walsh 3.4.2-13Dan Walsh 3.4.2-12Dan Walsh 3.4.2-11Dan Walsh 3.4.2-10Dan Walsh 3.4.2-9Dan Walsh 3.4.2-8Dan Walsh 3.4.2-7Dan Walsh 3.4.2-6Dan Walsh 3.4.2-5Dan Walsh 3.4.2-4Dan Walsh 3.4.2-3Dan Walsh 3.4.2-2Dan Walsh 3.4.2-1Dan Walsh 3.4.1-5Dan Walsh 3.4.1-3Dan Walsh 3.4.1-2Dan Walsh 3.4.1-1Dan Walsh 3.3.1-48Dan Walsh 3.3.1-47Dan Walsh 3.3.1-46Dan Walsh 3.3.1-45Dan Walsh 3.3.1-44Dan Walsh 3.3.1-43Dan Walsh 3.3.1-42Dan Walsh 3.3.1-41Dan Walsh 3.3.1-39Dan Walsh 3.3.1-37Dan Walsh 3.3.1-36Dan Walsh 3.3.1-33Dan Walsh 3.3.1-32Dan Walsh 3.3.1-31Dan Walsh 3.3.1-30Dan Walsh 3.3.1-29Dan Walsh 3.3.1-28Dan Walsh 3.3.1-27Dan Walsh 3.3.1-26Dan Walsh 3.3.1-25Dan Walsh 3.3.1-24Dan Walsh 3.3.1-23Dan Walsh 3.3.1-22Dan Walsh 3.3.1-21Dan Walsh 3.3.1-20Dan Walsh 3.3.1-19Dan Walsh 3.3.1-18Dan Walsh 3.3.1-17Dan Walsh 3.3.1-16Dan Walsh 3.3.1-15Bill Nottingham 3.3.1-14Dan Walsh 3.3.1-13Dan Walsh 3.3.1-12Dan Walsh 3.3.1-11Dan Walsh 3.3.1-10Dan Walsh 3.3.1-9Dan Walsh 3.3.1-8Dan Walsh 3.3.1-6Dan Walsh 3.3.1-5Dan Walsh 3.3.1-4Dan Walsh 3.3.1-2Dan Walsh 3.3.1-1Dan Walsh 3.3.0-2Dan Walsh 3.3.0-1Dan Walsh 3.2.9-2Dan Walsh 3.2.9-1Dan Walsh 3.2.8-2Dan Walsh 3.2.8-1Dan Walsh 3.2.7-6Dan Walsh 3.2.7-5Dan Walsh 3.2.7-3Dan Walsh 3.2.7-2Dan Walsh 3.2.7-1Dan Walsh 3.2.6-7Dan Walsh 3.2.6-6Dan Walsh 3.2.6-5Dan Walsh 3.2.6-4Dan Walsh 3.2.6-3Dan Walsh 3.2.6-2Dan Walsh 3.2.6-1Dan Walsh 3.2.5-25Dan Walsh 3.2.5-24Dan Walsh 3.2.5-22Dan Walsh 3.2.5-21Dan Walsh 3.2.5-20Dan Walsh 3.2.5-19Dan Walsh 3.2.5-18Dan Walsh 3.2.5-17Dan Walsh 3.2.5-16Dan Walsh 3.2.5-15Dan Walsh 3.2.5-14Dan Walsh 3.2.5-13Dan Walsh 3.2.5-12Dan Walsh 3.2.5-11Dan Walsh 3.2.5-10Dan Walsh 3.2.5-9Dan Walsh 3.2.5-8Dan Walsh 3.2.5-7Dan Walsh 3.2.5-6Dan Walsh 3.2.5-5Dan Walsh 3.2.5-4Dan Walsh 3.2.5-3Dan Walsh 3.2.5-2Dan Walsh 3.2.5-1Dan Walsh 3.2.4-5Dan Walsh 3.2.4-4Dan Walsh 3.2.4-3Dan Walsh 3.2.4-1Dan Walsh 3.2.4-1Dan Walsh 3.2.3-2Dan Walsh 3.2.3-1Dan Walsh 3.2.2-1Dan Walsh 3.2.1-3Dan Walsh 3.2.1-1Dan Walsh 3.1.2-2Dan Walsh 3.1.2-1Dan Walsh 3.1.1-1Dan Walsh 3.1.0-1Dan Walsh 3.0.8-30Dan Walsh 3.0.8-28Dan Walsh 3.0.8-27Dan Walsh 3.0.8-26Dan Walsh 3.0.8-25Dan Walsh 3.0.8-24Dan Walsh 3.0.8-23Dan Walsh 3.0.8-22Dan Walsh 3.0.8-21Dan Walsh 3.0.8-20Dan Walsh 3.0.8-19Dan Walsh 3.0.8-18Dan Walsh 3.0.8-17Dan Walsh 3.0.8-16Dan Walsh 3.0.8-15Dan Walsh 3.0.8-14Dan Walsh 3.0.8-13Dan Walsh 3.0.8-12Dan Walsh 3.0.8-11Dan Walsh 3.0.8-10Dan Walsh 3.0.8-9Dan Walsh 3.0.8-8Dan Walsh 3.0.8-7Dan Walsh 3.0.8-5Dan Walsh 3.0.8-4Dan Walsh 3.0.8-3Dan Walsh 3.0.8-2Dan Walsh 3.0.8-1Dan Walsh 3.0.7-10Dan Walsh 3.0.7-9Dan Walsh 3.0.7-8Dan Walsh 3.0.7-7Dan Walsh 3.0.7-6Dan Walsh 3.0.7-5Dan Walsh 3.0.7-4Dan Walsh 3.0.7-3Dan Walsh 3.0.7-2Dan Walsh 3.0.7-1Dan Walsh 3.0.6-3Dan Walsh 3.0.6-2Dan Walsh 3.0.6-1Dan Walsh 3.0.5-11Dan Walsh 3.0.5-10Dan Walsh 3.0.5-9Dan Walsh 3.0.5-8Dan Walsh 3.0.5-7Dan Walsh 3.0.5-6Dan Walsh 3.0.5-5Dan Walsh 3.0.5-4Dan Walsh 3.0.5-3Dan Walsh 3.0.5-2Dan Walsh 3.0.5-1Dan Walsh 3.0.4-6Dan Walsh 3.0.4-5Dan Walsh 3.0.4-4Dan Walsh 3.0.4-3Dan Walsh 3.0.4-2Dan Walsh 3.0.4-1Dan Walsh 3.0.3-6Dan Walsh 3.0.3-5Dan Walsh 3.0.3-4Dan Walsh 3.0.3-3Dan Walsh 3.0.3-2Dan Walsh 3.0.3-1Dan Walsh 3.0.2-9Dan Walsh 3.0.2-8Dan Walsh 3.0.2-7Dan Walsh 3.0.2-5Dan Walsh 3.0.2-4Dan Walsh 3.0.2-3Dan Walsh 3.0.2-2Dan Walsh 3.0.1-5Dan Walsh 3.0.1-4Dan Walsh 3.0.1-3Dan Walsh 3.0.1-2Dan Walsh 3.0.1-1Dan Walsh 2.6.5-3Dan Walsh 2.6.5-2Dan Walsh 2.6.4-7Dan Walsh 2.6.4-6Dan Walsh 2.6.4-5Dan Walsh 2.6.4-2Dan Walsh 2.6.4-1Dan Walsh 2.6.3-1Dan Walsh 2.6.2-1Dan Walsh 2.6.1-4Dan Walsh 2.6.1-2Dan Walsh 2.6.1-1Dan Walsh 2.5.12-12Dan Walsh 2.5.12-11Dan Walsh 2.5.12-10Dan Walsh 2.5.12-8Dan Walsh 2.5.12-5Dan Walsh 2.5.12-4Dan Walsh 2.5.12-3Dan Walsh 2.5.12-2Dan Walsh 2.5.12-1Dan Walsh 2.5.11-8Dan Walsh 2.5.11-7Dan Walsh 2.5.11-6Dan Walsh 2.5.11-5Dan Walsh 2.5.11-4Dan Walsh 2.5.11-3Dan Walsh 2.5.11-2Dan Walsh 2.5.11-1Dan Walsh 2.5.10-2Dan Walsh 2.5.10-1Dan Walsh 2.5.9-6Dan Walsh 2.5.9-5Dan Walsh 2.5.9-4Dan Walsh 2.5.9-3Dan Walsh 2.5.9-2Dan Walsh 2.5.8-8Dan Walsh 2.5.8-7Dan Walsh 2.5.8-6Dan Walsh 2.5.8-5Dan Walsh 2.5.8-4Dan Walsh 2.5.8-3Dan Walsh 2.5.8-2Dan Walsh 2.5.8-1Dan Walsh 2.5.7-1Dan Walsh 2.5.6-1Dan Walsh 2.5.5-2Dan Walsh 2.5.5-1Dan Walsh 2.5.4-2Dan Walsh 2.5.4-1Dan Walsh 2.5.3-3Dan Walsh 2.5.3-2Dan Walsh 2.5.3-1Dan Walsh 2.5.2-6Dan Walsh 2.5.2-5Dan Walsh 2.5.2-4Dan Walsh 2.5.2-3Dan Walsh 2.5.2-2Dan Walsh 2.5.2-1Dan Walsh 2.5.1-5Dan Walsh 2.5.1-4Dan Walsh 2.5.1-2Dan Walsh 2.5.1-1Dan Walsh 2.4.6-20Dan Walsh 2.4.6-19Dan Walsh 2.4.6-18Dan Walsh 2.4.6-17Dan Walsh 2.4.6-16Dan Walsh 2.4.6-15Dan Walsh 2.4.6-14Dan Walsh 2.4.6-13Dan Walsh 2.4.6-12Dan Walsh 2.4.6-11Dan Walsh 2.4.6-10Dan Walsh 2.4.6-9Dan Walsh 2.4.6-8Dan Walsh 2.4.6-7Dan Walsh 2.4.6-6Dan Walsh 2.4.6-5Dan Walsh 2.4.6-4Dan Walsh 2.4.6-3Dan Walsh 2.4.6-1Dan Walsh 2.4.5-4Dan Walsh 2.4.5-3Dan Walsh 2.4.5-2Dan Walsh 2.4.5-1Dan Walsh 2.4.4-2Dan Walsh 2.4.4-2Dan Walsh 2.4.4-1Dan Walsh 2.4.3-13Dan Walsh 2.4.3-12Dan Walsh 2.4.3-11Dan Walsh 2.4.3-10Dan Walsh 2.4.3-9Dan Walsh 2.4.3-8Dan Walsh 2.4.3-7Dan Walsh 2.4.3-6Dan Walsh 2.4.3-5Dan Walsh 2.4.3-4Dan Walsh 2.4.3-3Dan Walsh 2.4.3-2Dan Walsh 2.4.3-1Dan Walsh 2.4.2-8Dan Walsh 2.4.2-7James Antill 2.4.2-6Dan Walsh 2.4.2-5Dan Walsh 2.4.2-4Dan Walsh 2.4.2-3Dan Walsh 2.4.2-2Dan Walsh 2.4.2-1Dan Walsh 2.4.1-5Dan Walsh 2.4.1-4Dan Walsh 2.4.1-3Dan Walsh 2.4.1-2Dan Walsh 2.4-4Dan Walsh 2.4-3Dan Walsh 2.4-2Dan Walsh 2.4-1Dan Walsh 2.3.19-4Dan Walsh 2.3.19-3Dan Walsh 2.3.19-2Dan Walsh 2.3.19-1James Antill 2.3.18-10James Antill 2.3.18-9Dan Walsh 2.3.18-8Dan Walsh 2.3.18-7Dan Walsh 2.3.18-6Dan Walsh 2.3.18-5Dan Walsh 2.3.18-4Dan Walsh 2.3.18-3Dan Walsh 2.3.18-2Dan Walsh 2.3.18-1Dan Walsh 2.3.17-2Dan Walsh 2.3.17-1Dan Walsh 2.3.16-9Dan Walsh 2.3.16-8Dan Walsh 2.3.16-7Dan Walsh 2.3.16-6Dan Walsh 2.3.16-5Dan Walsh 2.3.16-4Dan Walsh 2.3.16-2Dan Walsh 2.3.16-1Dan Walsh 2.3.15-2Dan Walsh 2.3.15-1Dan Walsh 2.3.14-8Dan Walsh 2.3.14-7Dan Walsh 2.3.14-6Dan Walsh 2.3.14-4Dan Walsh 2.3.14-3Dan Walsh 2.3.14-2Dan Walsh 2.3.14-1Dan Walsh 2.3.13-6Dan Walsh 2.3.13-5Dan Walsh 2.3.13-4Dan Walsh 2.3.13-3Dan Walsh 2.3.13-2Dan Walsh 2.3.13-1Dan Walsh 2.3.12-2Dan Walsh 2.3.12-1Dan Walsh 2.3.11-1Dan Walsh 2.3.10-7Dan Walsh 2.3.10-6Dan Walsh 2.3.10-3Dan Walsh 2.3.10-1Dan Walsh 2.3.9-6Dan Walsh 2.3.9-5Dan Walsh 2.3.9-4Dan Walsh 2.3.9-3Dan Walsh 2.3.9-2Dan Walsh 2.3.9-1Dan Walsh 2.3.8-2Dan Walsh 2.3.7-1Dan Walsh 2.3.6-4Dan Walsh 2.3.6-3Dan Walsh 2.3.6-2Dan Walsh 2.3.6-1Dan Walsh 2.3.5-1Dan Walsh 2.3.4-1Dan Walsh 2.3.3-20Dan Walsh 2.3.3-19Dan Walsh 2.3.3-18Dan Walsh 2.3.3-17Dan Walsh 2.3.3-16Dan Walsh 2.3.3-15Dan Walsh 2.3.3-14Dan Walsh 2.3.3-13Dan Walsh 2.3.3-12Dan Walsh 2.3.3-11Dan Walsh 2.3.3-10Dan Walsh 2.3.3-9Dan Walsh 2.3.3-8Dan Walsh 2.3.3-7Dan Walsh 2.3.3-6Dan Walsh 2.3.3-5Dan Walsh 2.3.3-4Dan Walsh 2.3.3-3Dan Walsh 2.3.3-2Dan Walsh 2.3.3-1Dan Walsh 2.3.2-4Dan Walsh 2.3.2-3Dan Walsh 2.3.2-2Dan Walsh 2.3.2-1Dan Walsh 2.3.1-1Dan Walsh 2.2.49-1Dan Walsh 2.2.48-1Dan Walsh 2.2.47-5Dan Walsh 2.2.47-4Dan Walsh 2.2.47-3Dan Walsh 2.2.47-1Dan Walsh 2.2.46-2Dan Walsh 2.2.46-1Dan Walsh 2.2.45-3Dan Walsh 2.2.45-2Dan Walsh 2.2.45-1Dan Walsh 2.2.44-1Dan Walsh 2.2.43-4Dan Walsh 2.2.43-3Dan Walsh 2.2.43-2Dan Walsh 2.2.43-1Dan Walsh 2.2.42-4Dan Walsh 2.2.42-3Dan Walsh 2.2.42-2Dan Walsh 2.2.42-1Dan Walsh 2.2.41-1Dan Walsh 2.2.40-2Dan Walsh 2.2.40-1Dan Walsh 2.2.39-2Dan Walsh 2.2.39-1Dan Walsh 2.2.38-6Dan Walsh 2.2.38-5Dan Walsh 2.2.38-4Dan Walsh 2.2.38-3Dan Walsh 2.2.38-2Dan Walsh 2.2.38-1Dan Walsh 2.2.37-1Dan Walsh 2.2.36-2Dan Walsh 2.2.36-1James Antill 2.2.35-2Dan Walsh 2.2.35-1Dan Walsh 2.2.34-3Dan Walsh 2.2.34-2Dan Walsh 2.2.34-1Dan Walsh 2.2.33-1Dan Walsh 2.2.32-2Dan Walsh 2.2.32-1Dan Walsh 2.2.31-1Dan Walsh 2.2.30-2Dan Walsh 2.2.30-1Dan Walsh 2.2.29-6Russell Coker 2.2.29-5Dan Walsh 2.2.29-4Dan Walsh 2.2.29-3Dan Walsh 2.2.29-2Dan Walsh 2.2.29-1Dan Walsh 2.2.28-3Dan Walsh 2.2.28-2Dan Walsh 2.2.28-1Dan Walsh 2.2.27-1Dan Walsh 2.2.25-3Dan Walsh 2.2.25-2Dan Walsh 2.2.24-1Dan Walsh 2.2.23-19Dan Walsh 2.2.23-18Dan Walsh 2.2.23-17Karsten Hopp 2.2.23-16Dan Walsh 2.2.23-15Dan Walsh 2.2.23-14Dan Walsh 2.2.23-13Dan Walsh 2.2.23-12Jeremy Katz - 2.2.23-11Jeremy Katz - 2.2.23-10Dan Walsh 2.2.23-9Dan Walsh 2.2.23-8Dan Walsh 2.2.23-7Dan Walsh 2.2.23-5Dan Walsh 2.2.23-4Dan Walsh 2.2.23-3Dan Walsh 2.2.23-2Dan Walsh 2.2.23-1Dan Walsh 2.2.22-2Dan Walsh 2.2.22-1Dan Walsh 2.2.21-9Dan Walsh 2.2.21-8Dan Walsh 2.2.21-7Dan Walsh 2.2.21-6Dan Walsh 2.2.21-5Dan Walsh 2.2.21-4Dan Walsh 2.2.21-3Dan Walsh 2.2.21-2Dan Walsh 2.2.21-1Dan Walsh 2.2.20-1Dan Walsh 2.2.19-2Dan Walsh 2.2.19-1Dan Walsh 2.2.18-2Dan Walsh 2.2.18-1Dan Walsh 2.2.17-2Dan Walsh 2.2.16-1Dan Walsh 2.2.15-4Dan Walsh 2.2.15-3Dan Walsh 2.2.15-1Dan Walsh 2.2.14-2Dan Walsh 2.2.14-1Dan Walsh 2.2.13-1Dan Walsh 2.2.12-1Dan Walsh 2.2.11-2Dan Walsh 2.2.11-1Dan Walsh 2.2.10-1Dan Walsh 2.2.9-2Dan Walsh 2.2.9-1Dan Walsh 2.2.8-2Dan Walsh 2.2.7-1Dan Walsh 2.2.6-3Dan Walsh 2.2.6-2Dan Walsh 2.2.6-1Dan Walsh 2.2.5-1Dan Walsh 2.2.4-1Dan Walsh 2.2.3-1Dan Walsh 2.2.2-1Dan Walsh 2.2.1-1Dan Walsh 2.1.13-1Dan Walsh 2.1.12-3Dan Walsh 2.1.11-1Dan Walsh 2.1.10-1Jeremy Katz - 2.1.9-2Dan Walsh 2.1.9-1Dan Walsh 2.1.8-3Dan Walsh 2.1.8-2Dan Walsh 2.1.8-1Dan Walsh 2.1.7-4Dan Walsh 2.1.7-3Dan Walsh 2.1.7-2Dan Walsh 2.1.7-1Dan Walsh 2.1.6-24Dan Walsh 2.1.6-23Dan Walsh 2.1.6-22Dan Walsh 2.1.6-21Dan Walsh 2.1.6-20Dan Walsh 2.1.6-18Dan Walsh 2.1.6-17Dan Walsh 2.1.6-16Dan Walsh 2.1.6-15Dan Walsh 2.1.6-14Dan Walsh 2.1.6-13Dan Walsh 2.1.6-11Dan Walsh 2.1.6-10Dan Walsh 2.1.6-9Dan Walsh 2.1.6-8Dan Walsh 2.1.6-5Dan Walsh 2.1.6-4Dan Walsh 2.1.6-3Dan Walsh 2.1.6-2Dan Walsh 2.1.6-1Dan Walsh 2.1.4-2Dan Walsh 2.1.4-1Dan Walsh 2.1.3-1Jeremy Katz - 2.1.2-3Dan Walsh 2.1.2-2Dan Walsh 2.1.2-1Dan Walsh 2.1.1-3Dan Walsh 2.1.1-2Dan Walsh 2.1.1-1Dan Walsh 2.1.0-3Dan Walsh 2.1.0-2.Dan Walsh 2.1.0-1.Dan Walsh 2.0.11-2.Dan Walsh 2.0.11-1.Dan Walsh 2.0.9-1.Dan Walsh 2.0.8-1.Dan Walsh 2.0.7-3Dan Walsh 2.0.7-2Dan Walsh 2.0.6-2Dan Walsh 2.0.5-4Dan Walsh 2.0.5-1Dan Walsh 2.0.4-1Dan Walsh 2.0.2-2Dan Walsh 2.0.2-1Dan Walsh 2.0.1-2Dan Walsh 2.0.1-1- Allow openvswitch read script state. - Allow openvswitch exec hostname and readinitrc_t files Resolves: rhbz#1430751- Allow sssd_t domain setpgid Resolves:rhbz#1419836- Upgrade fails %post: Re-declaration of type pkcsslotd_t Resolves: rhbz#1411660- Allow systemd container to read/write usermodehelperstate Resolves: rhbz#1408126 - Allow glusterd_t to bind on glusterd_port_t udp ports. Resolves: rhbz#1408128- Allow glusterd_t to bind on glusterd_port_t udp ports. Resolves: rhbz#1408128 - Allow glusterd_t send signals to userdomain. Label new glusterd binaries as glusterd_exec_t Resolves: rhbz#1408128 - Fixes for containers - Allow containers to attempt to write to unix_sysctls. - Allow cotainers to use the FD's leaked to them from parent processes. Resolves: rhbz#1408126 - Allow systemd to stop glusterd_t domains. Resolves: rhbz#1408125- Update ctdbd_t policy to reflect all changes. Resolves: rhbz#1403266- Allow ctdbd_t domain transition to rpcd_t Resolves:rhbz#1403266- Make working CTDB:NFS: CTDB failover from selinux-policy POV Resolves: rhbz#1403266- Allow puppetagent_t to access timedated dbus. Use the systemd_dbus_chat_timedated interface to allow puppetagent_t the access. Resolves: rhbz#1400505- Update systemd on RHEL-7.2 box to version from RHEL-7.3 and then as a separate yum command update the selinux policy systemd will start generating USER_AVC denials and will start returning "Access Denied" errors to DBus clients. Resolves: rhbz#1394715- Allow cluster_t communicate to fprintd_t via dbus Resolves: rhbz#1349798- Fix error message during update from RHEL-7.2 to RHEL-7.3, when /usr/sbin/semanage command is not installed and selinux-policy-migrate-local-changes.sh script is executed in %post install phase of selinux-policy package Resolves: rhbz#1393045- Allow GlusterFS with RDMA transport to be started correctly. It requires ipc_lock capability together with rw permission on rdma_cm device. Resolves:#1386620 - Allow glusterd to get attributes on /sys/kernel/config directory. Resolves:#1386621- Use selinux-policy-migrate-local-changes.sh instead of migrateStore* macros Resolves: rhbz#1383450 - Add selinux-policy-migrate-local-changes service Resolves: rhbz#1383450- Allow sssd_selinux_manager_t to manage also dir class. Resolves: rhbz#1380687 - Add interface seutil_manage_default_contexts_dirs() Resolves: rhbz#1380687- Add virt_sandbox_use_nfs -> virt_use_nfs boolean substitution. Resolves: rhbz#1355783- Allow pcp_pmcd_t domain transition to lvm_t Add capability kill and sys_ptrace to pcp_pmlogger_t Resolves: rhbz#1309883- Allow ftp daemon to manage apache_user_content Resolves: rhbz#1097775 - Label /etc/sysconfig/oracleasm as oracleasm_conf_t Resolves: rhbz#1331383 - Allow oracleasm to rw inherited fixed disk device Resolves: rhbz#1331383 - Allow collectd to connect on unix_stream_socket Resolves: rhbz#1377259- Allow iscsid create netlink iscsid sockets. Resolves: rhbz#1358266 - Improve regexp for power_unit_file_t files. To catch just systemd power unit files. Resolves: rhbz#1375462- Update oracleasm SELinux module that can manage oracleasmfs_t blk files. Add dac_override cap to oracleasm_t domain. Resolves: rhbz#1331383 - Add few rules to pcp SELinux module to make ti able to start pcp_pmlogger service Resolves: rhbz#1206525- Add oracleasm_conf_t type and allow oracleasm_t to create /dev/oracleasm Resolves: rhbz#1331383 - Label /usr/share/pcp/lib/pmie as pmie_exec_t and /usr/share/pcp/lib/pmlogger as pmlogger_exec_t Resolves: rhbz#1206525 - Allow mdadm_t to getattr all device nodes Resolves: rhbz#1365171 - Add interface dbus_dontaudit_stream_connect_system_dbusd() Resolves:rhbz#1052880 - Add virt_stub_* interfaces for docker policy which is no longer a part of our base policy. Resolves: rhbz#1372705 - Allow guest-set-user-passwd to set users password. Resolves: rhbz#1369693 - Allow samdbox domains to use msg class Resolves: rhbz#1372677 - Allow domains using kerberos to read also kerberos config dirs Resolves: rhbz#1368492 - Allow svirt_sandbox_domains to r/w onload sockets Resolves: rhbz#1342930 - Add interface fs_manage_oracleasm() Resolves: rhbz#1331383 - Label /dev/kfd as hsa_device_t Resolves: rhbz#1373488 - Update seutil_manage_file_contexts() interface that caller domain can also manage file_context_t dirs Resolves: rhbz#1368097 - Add interface to write to nsfs inodes Resolves: rhbz#1372705 - Allow systemd services to use PrivateNetwork feature Resolves: rhbz#1372705 - Add a type and genfscon for nsfs. Resolves: rhbz#1372705 - Allow run sulogin_t in range mls_systemlow-mls_systemhigh. Resolves: rhbz#1290400- Allow arpwatch to create netlink netfilter sockets. Resolves: rhbz#1358261 - Fix file context for /etc/pki/pki-tomcat/ca/ - new interface oddjob_mkhomedir_entrypoint() - Move label for /var/lib/docker/vfs/ to proper SELinux module - Allow mdadm to get attributes from all devices. - Label /etc/puppetlabs as puppet_etc_t. - Allow systemd-machined to communicate to lxc container using dbus - Allow systemd_resolved to send dbus msgs to userdomains Resolves: rhbz#1236579 - Allow systemd-resolved to read network sysctls Resolves: rhbz#1236579 - Allow systemd_resolved to connect on system bus. Resolves: rhbz#1236579 - Make entrypoint oddjob_mkhomedir_exec_t for unconfined_t - Label all files in /dev/oracleasmfs/ as oracleasmfs_t Resolves: rhbz#1331383- Label /etc/pki/pki-tomcat/ca/ as pki_tomcat_cert_t Resolves:rhbz#1366915 - Allow certmonger to manage all systemd unit files Resolves:rhbz#1366915 - Grant certmonger "chown" capability Resolves:rhbz#1366915 - Allow ipa_helper_t stream connect to dirsrv_t domain Resolves: rhbz#1368418 - Update oracleasm SELinux module Resolves: rhbz#1331383 - label /var/lib/kubelet as svirt_sandbox_file_t Resolves: rhbz#1369159 - Add few interfaces to cloudform.if file Resolves: rhbz#1367834 - Label /var/run/corosync-qnetd and /var/run/corosync-qdevice as cluster_var_run_t. Note: corosync policy is now par of rhcs module Resolves: rhbz#1347514 - Allow krb5kdc_t to read krb4kdc_conf_t dirs. Resolves: rhbz#1368492 - Update networkmanager_filetrans_named_content() interface to allow source domain to create also temad dir in /var/run. Resolves: rhbz#1365653 - Allow teamd running as NetworkManager_t to access netlink_generic_socket to allow multiple network interfaces to be teamed together. Resolves: rhbz#1365653 - Label /dev/oracleasmfs as oracleasmfs_t. Add few interfaces related to oracleasmfs_t type Resolves: rhbz#1331383 - A new version of cloud-init that supports the effort to provision RHEL Atomic on Microsoft Azure requires some a new rules that allows dhclient/dhclient hooks to call cloud-init. Resolves: rhbz#1367834 - Allow iptables to creating netlink generic sockets. Resolves: rhbz#1364359- Allow ipmievd domain to create lock files in /var/lock/subsys/ Resolves:rhbz#1349058 - Update policy for ipmievd daemon. Resolves:rhbz#1349058 - Dontaudit hyperkvp to getattr on non security files. Resolves: rhbz#1349356 - Label /run/corosync-qdevice and /run/corosync-qnetd as corosync_var_run_t Resolves: rhbz#1347514 - Fixed lsm SELinux module - Add sys_admin capability to sbd domain Resolves: rhbz#1322725 - Allow vdagent to comunnicate with systemd-logind via dbus Resolves: rhbz#1366731 - Allow lsmd_plugin_t domain to create fixed_disk device. Resolves: rhbz#1238066 - Allow opendnssec domain to create and manage own tmp dirs/files Resolves: rhbz#1366649 - Allow opendnssec domain to read system state Resolves: rhbz#1366649 - Update opendnssec_manage_config() interface to allow caller domain also manage opendnssec_conf_t dirs Resolves: rhbz#1366649 - Allow rasdaemon to mount/unmount tracefs filesystem. Resolves: rhbz#1364380 - Label /usr/libexec/iptables/iptables.init as iptables_exec_t Allow iptables creating lock file in /var/lock/subsys/ Resolves: rhbz#1367520 - Modify interface den_read_nvme() to allow also read nvme_device_t block files. Resolves: rhbz#1362564 - Label /var/run/storaged as lvm_var_run_t. Resolves: rhbz#1264390 - Allow unconfineduser to run ipa_helper_t. Resolves: rhbz#1361636- Dontaudit mock to write to generic certs. Resolves: rhbz#1271209 - Add labeling for corosync-qdevice and corosync-qnetd daemons, to run as cluster_t Resolves: rhbz#1347514 - Revert "Label corosync-qnetd and corosync-qdevice as corosync_t domain" - Allow modemmanager to write to systemd inhibit pipes Resolves: rhbz#1365214 - Label corosync-qnetd and corosync-qdevice as corosync_t domain Resolves: rhbz#1347514 - Allow ipa_helper to read network state Resolves: rhbz#1361636 - Label oddjob_reqiest as oddjob_exec_t Resolves: rhbz#1361636 - Add interface oddjob_run() Resolves: rhbz#1361636 - Allow modemmanager chat with systemd_logind via dbus Resolves: rhbz#1362273 - Allow NetworkManager chat with puppetagent via dbus Resolves: rhbz#1363989 - Allow NetworkManager chat with kdumpctl via dbus Resolves: rhbz#1363977 - Allow sbd send msgs to syslog Allow sbd create dgram sockets. Allow sbd to communicate with kernel via dgram socket Allow sbd r/w kernel sysctls. Resolves: rhbz#1322725 - Allow ipmievd_t domain to re-create ipmi devices Label /usr/libexec/openipmi-helper as ipmievd_exec_t Resolves: rhbz#1349058 - Allow rasdaemon to use tracefs filesystem. Resolves: rhbz#1364380 - Fix typo bug in dirsrv policy - Some logrotate scripts run su and then su runs unix_chkpwd. Allow logrotate_t domain to check passwd. Resolves: rhbz#1283134 - Add ipc_lock capability to sssd domain. Allow sssd connect to http_cache_t Resolves: rhbz#1362688 - Allow dirsrv to read dirsrv_share_t content Resolves: rhbz#1363662 - Allow virtlogd_t to append svirt_image_t files. Resolves: rhbz#1358140 - Allow hypervkvp domain to read hugetlbfs dir/files. Resolves: rhbz#1349356 - Allow mdadm daemon to read nvme_device_t blk files Resolves: rhbz#1362564 - Allow selinuxusers and unconfineduser to run oddjob_request Resolves: rhbz#1361636 - Allow sshd server to acces to Crypto Express 4 (CEX4) devices. Resolves: rhbz#1362539 - Fix labeling issue in init.fc file. Path /usr/lib/systemd/fedora-* changed to /usr/lib/systemd/rhel-*. Resolves: rhbz#1363769 - Fix typo in device interfaces Resolves: rhbz#1349058 - Add interfaces for managing ipmi devices Resolves: rhbz#1349058 - Add interfaces to allow mounting/umounting tracefs filesystem Resolves: rhbz#1364380 - Add interfaces to allow rw tracefs filesystem Resolves: rhbz#1364380 - Add interface dev_read_nvme() to allow reading Non-Volatile Memory Host Controller devices. Resolves: rhbz#1362564 - Label /sys/kernel/debug/tracing filesystem Resolves: rhbz#1364380 - Allow sshd setcap capability. This is needed due to latest changes in sshd Resolves: rhbz#1357857- Dontaudit mock_build_t can list all ptys. Resolves: rhbz#1271209 - Allow ftpd_t to mamange userhome data without any boolean. Resolves: rhbz#1097775 - Add logrotate permissions for creating netlink selinux sockets. Resolves: rhbz#1283134 - Allow lsmd_plugin_t to exec ldconfig. Resolves: rhbz#1238066 - Allow vnstatd domain to read /sys/class/net/ files Resolves: rhbz#1358243 - Remove duplicate allow rules in spamassassin SELinux module Resolves:rhbz#1358175 - Allow spamc_t and spamd_t domains create .spamassassin file in user homedirs Resolves:rhbz#1358175 - Allow sshd setcap capability. This is needed due to latest changes in sshd Resolves: rhbz#1357857 - Add new MLS attribute to allow relabeling objects higher than system low. This exception is needed for package managers when processing sensitive data. Resolves: rhbz#1330464 - Allow gnome-keyring also manage user_tmp_t sockets. Resolves: rhbz#1257057 - corecmd: Remove fcontext for /etc/sysconfig/libvirtd Resolves:rhbz#1351382- Allow ipa_dnskey domain to search cache dirs Resolves: rhbz#1350957- Allow ipa-dnskey read system state. Reasolves: rhbz#1350957 - Allow dogtag-ipa-ca-renew-agent-submit labeled as certmonger_t to create /var/log/ipa/renew.log file Resolves: rhbz#1350957- Allow firewalld to manage net_conf_t files. Resolves:rhbz#1304723 - Allow logrotate read logs inside containers. Resolves: rhbz#1303514 - Allow sssd to getattr on fs_t Resolves: rhbz#1356082 - Allow opendnssec domain to manage bind chace files Resolves: rhbz#1350957 - Fix typo in rhsmcertd policy module Resolves: rhbz#1329475 - Allow systemd to get status of systemd-logind daemon Resolves: rhbz#1356141 - Label more ndctl devices not just ndctl0 Resolves: rhbz#1355809- Allow rhsmcertd to copy certs into /etc/docker/cert.d - Add interface docker_rw_config() Resolves: rhbz#1344500 - Fix logrotate fc file to label also /var/lib/logrotate/ dir as logrotate_var_lib_t Resolves: rhbz#1355632 - Allow rhsmcertd to read network sysctls Resolves: rhbz#1329475 - Label /var/log/graphite-web dir as httpd_log_t Resolves: rhbz#1310898 - Allow mock to use generic ptys Resolves: rhbz#1271209 - Allow adcli running as sssd_t to write krb5.keytab file. Resolves: rhbz#1356082 - Allow openvswitch connect to openvswitch_port_t type. Resolves: rhbz#1335024 - Add SELinux policy for opendnssec service. Resolves: rhbz#1350957 - Create new SELinux type for /usr/libexec/ipa/ipa-dnskeysyncd Resolves: rhbz#1350957 - label /dev/ndctl0 device as nvram_device_t Resolves: rhbz#1355809- Allow lttng tools to block suspending Resolves: rhbz#1256374 - Allow creation of vpnaas in openstack Resolves: rhbz#1352710 - virt: add strict policy for virtlogd daemon Resolves:rhbz#1311606 - Update makefile to support snapperd_contexts file Resolves: rhbz#1352681- Allow udev to manage systemd-hwdb files - Add interface systemd_hwdb_manage_config() Resolves: rhbz#1350756 - Fix paths to infiniband devices. This allows use more then two infiniband interfaces. Resolves: rhbz#1210263- Allow virtual machines to rw infiniband devices. Resolves: rhbz#1210263 - Allow opensm daemon to rw infiniband_mgmt_device_t Resolves: rhbz#1210263 - Allow systemd_hwdb_t to relabel /etc/udev/hwdb.bin file. Resolves: rhbz#1350756 - Make label for new infiniband_mgmt deivices Resolves: rhbz#1210263- Fix typo in brltty SELinux module - Add new SELinux module sbd Resolves: rhbz#1322725 - Allow pcp dmcache metrics collection Resolves: rhbz#1309883 - Allow pkcs_slotd_t to create dir in /var/lock Add label pkcs_slotd_log_t Resolves: rhbz#1350782 - Allow openvpn to create sock files labeled as openvpn_var_run_t Resolves: rhbz#1328246 - Allow hypervkvp daemon to getattr on all filesystem types. Resolves: rhbz#1349356 - Allow firewalld to create net_conf_t files Resolves: rhbz#1304723 - Allow mock to use lvm Resolves: rhbz#1271209 - Allow keepalived to create netlink generic sockets. Resolves: rhbz#1349809 - Allow mirromanager creating log files in /tmp Resolves:rhbz#1328818 - Rename few modules to make it consistent with source files Resolves: rhbz#1351445 - Allow vmtools_t to transition to rpm_script domain Resolves: rhbz#1342119 - Allow nsd daemon to manage nsd_conf_t dirs and files Resolves: rhbz#1349791 - Allow cluster to create dirs in /var/run labeled as cluster_var_run_t Resolves: rhbz#1346900 - Allow sssd read also sssd_conf_t dirs Resolves: rhbz#1350535 - Dontaudit su_role_template interface to getattr /proc/kcore Dontaudit su_role_template interface to getattr /dev/initctl Resolves: rhbz#1086240 - Add interface lvm_getattr_exec_files() Resolves: rhbz#1271209 - Fix typo Compliling vs. Compiling Resolves: rhbz#1351445- Allow krb5kdc_t to communicate with sssd Resolves: rhbz#1319933 - Allow prosody to bind on prosody ports Resolves: rhbz#1304664 - Add dac_override caps for fail2ban-client Resolves: rhbz#1316678 - dontaudit read access for svirt_t on the file /var/db/nscd/group Resolves: rhbz#1301637 - Allow inetd child process to communicate via dbus with systemd-logind Resolves: rhbz#1333726 - Add label for brltty log file Resolves: rhbz#1328818 - Allow dspam to read the passwd file Resolves: rhbz#1286020 - Allow snort_t to communicate with sssd Resolves: rhbz#1284908 - svirt_sandbox_domains need to be able to execmod for badly built libraries. Resolves: rhbz#1206339 - Add policy for lttng-tools package. Resolves: rhbz#1256374 - Make mirrormanager as application domain. Resolves: rhbz#1328234 - Add support for the default lttng-sessiond port - tcp/5345. This port is used by LTTng 2.x central tracing registry session daemon. - Add prosody ports Resolves: rhbz#1304664 - Allow sssd read also sssd_conf_t dirs Resolves: rhbz#1350535- Label /var/lib/softhsm as named_cache_t. Allow named_t to manage named_cache_t dirs. Resolves:rhbz#1331315 - Label named-pkcs11 binary as named_exec_t. Resolves: rhbz#1331315 - Allow glusterd daemon to get systemd status Resolves: rhbz#1321785 - Allow logrotate dbus-chat with system_logind daemon Resolves: rhbz#1283134 - Allow pcp_pmlogger to read kernel network state Allow pcp_pmcd to read cron pid files Resolves: rhbz#1336211 - Add interface cron_read_pid_files() Resolves: rhbz#1336211 - Allow pcp_pmlogger to create unix dgram sockets Resolves: rhbz#1336211 - Add hwloc-dump-hwdata SELinux policy Resolves: rhbz#1344054 - Remove non-existing jabberd_spool_t() interface and add new jabbertd_var_spool_t. Resolves: rhbz#1121171 - Remove non-existing interface salk_resetd_systemctl() and replace it with sanlock_systemctl_sanlk_resetd() Resolves: rhbz#1259764 - Create label for openhpid log files. esolves: rhbz#1259764 - Label /var/lib/ganglia as httpd_var_lib_t Resolves: rhbz#1260536 - Allow firewalld_t to create entries in net_conf_t dirs. Resolves: rhbz#1304723 - Allow journalctl to read syslogd_var_run_t files. This allows to staff_t and sysadm_t to read journals Resolves: rhbz#1288255 - Include patch from distgit repo: policy-RHEL-7.1-flask.patch. Resolves: rhbz#1329560 - Update refpolicy to handle hwloc Resolves: rhbz#1344054 - Label /etc/dhcp/scripts dir as bin_t - Allow sysadm_role to run journalctl_t domain. This allows sysadm user to read journals. Resolves: rhbz#1288255- Allow firewalld_t to create entries in net_conf_t dirs. Resolves: rhbz#1304723 - Allow journalctl to read syslogd_var_run_t files. This allows to staff_t and sysadm_t to read journals Resolves: rhbz#1288255 - Allow mongod log to syslog. Resolves: rhbz#1306995 - Allow rhsmcertd connect to port tcp 9090 Resolves: rhbz#1337319 - Label for /bin/mail(x) was removed but /usr/bin/mail(x) not. This path is also needed to remove. Resolves: rhbz#1262483 Resolves: rhbz#1277506 - Label /usr/libexec/mimedefang-wrapper as spamd_exec_t. Resolves: rhbz#1301516 - Add new boolean spamd_update_can_network. Resolves: rhbz#1305469 - Allow rhsmcertd connect to tcp netport_port_t Resolves: rhbz#1329475 - Fix SELinux context for /usr/share/mirrormanager/server/mirrormanager to Label all binaries under dir as mirrormanager_exec_t. Resolves: rhbz#1328234 - Allow prosody to bind to fac_restore tcp port. Resolves: rhbz#1321787 - Allow ninfod to read raw packets Resolves: rhbz#1317964 - Allow pegasus get attributes from qemu binary files. Resolves: rhbz#1260835 - Allow pegasus get attributes from qemu binary files. Resolves: rhbz#1271159 - Allow tuned to use policykit. This change is required by cockpit. Resolves: rhbz#1346464 - Allow conman_t to read dir with conman_unconfined_script_t binary files. Resolves: rhbz#1297323 - Allow pegasus to read /proc/sysinfo. Resolves: rhbz#1265883 - Allow sysadm_role to run journalctl_t domain. This allows sysadm user to read journals. Resolves: rhbz#1288255 - Label tcp ports:16379, 26379 as redis_port_t Resolves: rhbz#1348471 - Allow systemd to relabel /var and /var/lib directories during boot. - Add files_relabel_var_dirs() and files_relabel_var_dirs() interfaces. - Add files_relabelto_var_lib_dirs() interface. - Label tcp port 2004 as mailbox_port_t. Resolves: rhbz#1332843 - Label tcp and udp port 5582 as fac_restore_port_t Resolves: rhbz#1321787 - Allow sysadm_t user to run postgresql-setup. Resolves: rhbz#1282543 - Allow sysadm_t user to dbus chat with oddjob_t. This allows confined admin run oddjob mkhomedirfor script. Resolves: rhbz#1297480 - Update netlink socket classes.- Allow conman to kill conman_unconfined_script. Resolves: rhbz#1297323 - Make conman_unconfined_script_t as init_system_domain. Resolves:rhbz#1297323 - Allow init dbus chat with apmd. Resolves:rhbz#995898 - Patch /var/lib/rpm is symlink to /usr/share/rpm on Atomic, due to this change we need to label also /usr/share/rpm as rpm_var_lib_t. Resolves: rhbz#1233252 - Dontaudit xguest_gkeyringd_t stream connect to system_dbusd_t Resolves: rhbz#1052880 - Add mediawiki rules to proper scope Resolves: rhbz#1301186 - Dontaudit xguest_gkeyringd_t stream connect to system_dbusd_t Resolves: rhbz#1052880 - Allow mysqld_safe to inherit rlimit information from mysqld Resolves: rhbz#1323673 - Allow collectd_t to stream connect to postgresql. Resolves: rhbz#1344056 - Allow mediawiki-script to read /etc/passwd file. Resolves: rhbz#1301186 - Add filetrans rule that NetworkManager_t can create net_conf_t files in /etc. Resolves: rhbz#1344505 - Add labels for mediawiki123 Resolves: rhbz#1293872 - Fix label for all fence_scsi_check scripts - Allow ip netns to mounton root fs and unmount proc_t fs. Resolves: rhbz#1343776 Resolves: rhbz#1286851 - Allow sysadm_t to run newaliases command. Resolves: rhbz#1344828 - Add interface sysnet_filetrans_named_net_conf() Resolves: rhbz#1344505- Fix several issues related to the SELinux Userspace changes- Allow glusterd domain read krb5_keytab_t files. Resolves: rhbz#1343929 - Fix typo in files_setattr_non_security_dirs. Resolves: rhbz#1115987- Allow tmpreaper_t to read/setattr all non_security_file_type dirs Resolves: rhbz#1115987 - Allow firewalld to create firewalld_var_run_t directory. Resolves: rhbz#1304723 - Add interface firewalld_read_pid_files() Resolves: rhbz#1304723 - Label /usr/libexec/rpm-ostreed as rpm_exec_t. Resolves: rhbz#1340542 - Allow sanlock service to read/write cephfs_t files. Resolves: rhbz#1315332 - Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) - Added missing docker interfaces: - docker_typebounds - docker_entrypoint Resolves: rhbz#1236580 - Add interface files_setattr_non_security_dirs() Resolves: rhbz#1115987 - Add support for onloadfs - Allow iptables to read firewalld pid files. Resolves: rhbz#1304723 - Add SELinux support for ceph filesystem. Resolves: rhbz#1315332 - Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) Resolves: rhbz#1236580- Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) - Added missing docker interfaces: - docker_typebounds - docker_entrypoint Resolves: rhbz#1236580 - New interfaces needed for systemd-machinectl Resolves: rhbz#1236580 - New interfaces needed by systemd-machine Resolves: rhbz#1236580 - Add interface allowing sending and receiving messages from virt over dbus. Resolves: rhbz#1236580 - Backport docker policy from Fedora. Related: #1303123 Resolves: #1341257 - Allow NetworkManager_t and policykit_t read access to systemd-machined pid files. Resolves: rhbz#1236580 - Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) - Added interfaces needed by new docker policy. Related: rhbz#1303123 - Add support for systemd-machined daemon Resolves: rhbz#1236580 - Allow rpm-ostree domain transition to install_t domain from init_t. Resolves: rhbz#1340542- dnsmasq: allow NetworkManager to control dnsmasq via D-Bus Resolves: rhbz#1336722 - Directory Server (389-ds-base) has been updated to use systemd-ask-password. In order to function correctly we need the following added to dirsrv.te Resolves: rhbz#1333198 - sftpd_* booleans are functionless these days. Resolves: rhbz#1335656 - Label /var/log/ganesha.log as gluster_log_t Allow glusterd_t domain to create glusterd_log_t files. Label /var/run/ganesha.pid as gluster_var_run_t. Resolves: rhbz#1335828 - Allow ganesha-ha.sh script running under unconfined_t domain communicate with glusterd_t domains via dbus. Resolves: rhbz#1336760 - Allow ganesha daemon labeled as glusterd_t create /var/lib/nfs/ganesha dir labeled as var_lib_nfs_t. Resolves: rhbz#1336737 - Label /usr/libexec/storaged/storaged as lvm_exec_t to run storaged daemon in lvm_t SELinux domain. Resolves: rhbz#1264390 - Allow systemd_hostanmed_t to read /proc/sysinfo labeled as sysctl_t. Resolves: rhbz#1337061 - Revert "Allow all domains some process flags." Resolves: rhbz#1303644 - Revert "Remove setrlimit to all domains." Resolves: rhbz#1303644 - Label /usr/sbin/xrdp* files as bin_t Resolves: rhbz#1276777 - Add mls support for some db classes Resolves: rhbz#1303651 - Allow systemd_resolved_t to check if ipv6 is disabled. Resolves: rhbz#1236579 - Allow systemd_resolved to read systemd_networkd run files. Resolves: rhbz#1236579- Allow ganesha-ha.sh script running under unconfined_t domain communicate with glusterd_t domains via dbus. Resolves: rhbz#1336760 - Allow ganesha daemon labeled as glusterd_t create /var/lib/nfs/ganesha dir labeled as var_lib_nfs_t. Resolves: rhbz#1336737- Allow logwatch to domtrans to postqueue Resolves: rhbz#1331542 - Label /var/log/ganesha.log as gluster_log_t - Allow glusterd_t domain to create glusterd_log_t files. - Label /var/run/ganesha.pid as gluster_var_run_t. Resolves: rhbz#1335828 - Allow zabbix to connect to postgresql port Resolves: rhbz#1330479 - Add userdom_destroy_unpriv_user_shared_mem() interface. Related: rhbz#1306403 - systemd-logind remove all IPC objects owned by a user on a logout. This covers also SysV memory. This change allows to destroy unpriviledged user SysV shared memory segments. Resolves: rhbz#1306403- We need to restore contexts on /etc/passwd*,/etc/group*,/etc/*shadow* during install phase to get proper labeling for these files until selinux-policy pkgs are installed. Resolves: rhbz#1333952- Add interface glusterd_dontaudit_read_lib_dirs() Resolves: rhbz#1295680 - Dontaudit Occasionally observing AVC's while running geo-rep automation Resolves: rhbz#1295680 - Allow glusterd to manage socket files labeled as glusterd_brick_t. Resolves: rhbz#1331561 - Create new apache content template for files stored in user homedir. This change is needed to make working booleans: - httpd_enable_homedirs - httpd_read_user_content Resolves: rhbz#1246522 - Allow stunnel create log files. Resolves: rhbz#1296851 - Label tcp port 8181 as intermapper_port_t. Resolves: rhbz#1334783 - Label tcp/udp port 2024 as xinuexpansion4_port_t Resolves: rhbz#1334783 - Label tcp port 7002 as afs_pt_port_t Label tcp/udp port 2023 as xinuexpansion3_port_t Resolves: rhbz#1334783 - Dontaudit ldconfig read gluster lib files. Resolves: rhbz#1295680 - Add interface auth_use_nsswitch() to systemd_domain_template. Resolves: rhbz#1236579- Label /usr/bin/ganesha.nfsd as glusterd_exec_t to run ganesha as glusterd_t. Allow glusterd_t stream connect to rpbind_t. Allow cluster_t to create symlink /var/lib/nfs labeled as var_lib_nfs_t. Add interface rpc_filetrans_var_lib_nfs_content() Add new boolean: rpcd_use_fusefs to allow rpcd daemon use fusefs. Resolves: rhbz#1312809 Resolves: rhbz#1323947 - Allow dbus chat between httpd_t and oddjob_t. Resolves: rhbz#1324144 - Label /usr/libexec/ipa/oddjob/org.freeipa.server.conncheck as ipa_helper_exec_t. Resolves: rhbz#1324144 - Label /var/log/ipareplica-conncheck.log file as ipa_log_t Allow ipa_helper_t domain to manage logs labeledas ipa_log_t Allow ipa_helper_t to connect on http and kerberos_passwd ports. Resolves: rhbz#1324144 - Allow prosody to listen on port 5000 for mod_proxy65. Resolves: rhbz#1316918 - Allow pcp_pmcd_t domain to manage docker lib files. This rule is needed to allow pcp to collect container information when SELinux is enabled. Resolves: rhbz#1309454- Allow runnig php7 in fpm mode. From selinux-policy side, we need to allow httpd to read/write hugetlbfs. Resolves: rhbz#1319442 - Allow openvswitch daemons to run under openvswitch Linux user instead of root. This change needs allow set capabilities: chwon, setgid, setuid, setpcap. Resolves: rhbz#1296640 - Remove ftpd_home_dir() boolean from distro policy. Reason is that we cannot make this working due to m4 macro language limits. Resolves: rhbz#1097775 - /bin/mailx is labeled sendmail_exec_t, and enters the sendmail_t domain on execution. If /usr/sbin/sendmail does not have its own domain to transition to, and is not one of several products whose behavior is allowed by the sendmail_t policy, execution will fail. In this case we need to label /bin/mailx as bin_t. Resolves: rhbz#1262483 - Allow nsd daemon to create log file in /var/log as nsd_log_t Resolves: rhbz#1293140 - Sanlock policy update. - New sub-domain for sanlk-reset daemon Resolves: rhbz#1212324 - Label all run tgtd files, not just socket files Resolves: rhbz#1280280 - Label all run tgtd files, not just socket files. Resolves: rhbz#1280280 - Allow prosody to stream connect to sasl. This will allow using cyrus authentication in prosody. Resolves: rhbz#1321049 - unbound wants to use ephemeral ports as a default configuration. Allow to use also udp sockets. Resolves: rhbz#1318224 - Allow prosody to listen on port 5000 for mod_proxy65. Resolves: rhbz#1316918 - Allow targetd to read/write to /dev/mapper/control device. Resolves: rhbz#1063714 - Allow KDM to get status about power services. This change allow kdm to be able do shutdown. Resolves: rhbz#1316724 - Allow systemd-resolved daemon creating netlink_route sockets. Resolves:rhbz#1236579 - Allow systemd_resolved_t to read /etc/passwd file. Allow systemd_resolved_t to write to kmsg_device_t when 'systemd.log_target=kmsg' option is used Resolves: rhbz#1065362 - Label /etc/selinux/(minimum|mls|targeted)/active/ as semanage_store_t Resolves: rhbz#1321943 - Label all nvidia binaries as xserver_exec_t Resolves: rhbz#1322283- Create new permissivedomains CIL module and make it active. Resolves: rhbz#1320451 - Add support for new mock location - /usr/libexec/mock/mock. Resolves: rhbz#1271209 - Allow bitlee to create bitlee_var_t dirs. Resolves: rhbz#1268651 - Allow CIM provider to read sssd public files. Resolves: rhbz#1263339 - Fix some broken interfaces in distro policy. Resolves: rhbz#1121171 - Allow power button to shutdown the laptop. Resolves: rhbz#995898 - Allow lsm plugins to create named fixed disks. Resolves: rhbz#1238066 - Add default labeling for /etc/Pegasus/cimserver_current.conf. It is a correct patch instead of the current /etc/Pegasus/pegasus_current.confResolves: rhbz#1278777 - Allow hyperv domains to rw hyperv devices. Resolves: rhbz#1309361 - Label /var/www/html(/.*)?/wp_backups(/.*)? as httpd_sys_rw_content_t.Resolves: rhbz#1246780 - Create conman_unconfined_script_t type for conman script stored in /use/share/conman/exec/ Resolves: rhbz#1297323 - Fix rule definitions for httpd_can_sendmail boolean. We need to distinguish between base and contrib. - Add support for /dev/mptctl device used to check RAID status. Resolves: rhbz#1258029 - Create hyperv* devices and create rw interfaces for this devices. Resolves: rhbz#1309361 - Add fixes for selinux userspace moving the policy store to /var/lib/selinux. - Remove optional else block for dhcp ping- Allow rsync_export_all_ro boolean to read also non_auth_dirs/files/symlinks. Resolves: rhbz#1263770 - Fix context of "/usr/share/nginx/html". Resolves: rhbz#1261857 - Allow pmdaapache labeled as pcp_pmcd_t access to port 80 for apache diagnostics Resolves: rhbz#1270344 - Allow pmlogger to create pmlogger.primary.socket link file. Resolves: rhbz#1270344 - Label nagios scripts as httpd_sys_script_exec_t. Resolves: rhbz#1260306 - Add dontaudit interface for kdumpctl_tmp_t Resolves: rhbz#1156442 - Allow mdadm read files in EFI partition. Resolves: rhbz#1291801 - Allow nsd_t to bind on nsf_control tcp port. Allow nsd_crond_t to read nsd pid. Resolves: rhbz#1293140 - Label some new nsd binaries as nsd_exec_t Allow nsd domain net_admin cap. Create label nsd_tmp_t for nsd tmp files/dirs Resolves: rhbz#1293140 - Add filename transition that /etc/princap will be created with cupsd_rw_etc_t label in cups_filetrans_named_content() interface. Resolves: rhbz#1265102 - Add missing labeling for /usr/libexec/abrt-hook-ccpp. Resolves: rhbz#1213409 - Allow pcp_pmie and pcp_pmlogger to read all domains state. Resolves: rhbz#1206525 - Label /etc/redis-sentinel.conf as redis_conf_t. Allow redis_t write to redis_conf_t. Allow redis_t to connect on redis tcp port. Resolves: rhbz#1275246 - cockpit has grown content in /var/run directory Resolves: rhbz#1279429 - Allow collectd setgid capability Resolves:#1310898 - Remove declaration of empty booleans in virt policy. Resolves: rhbz#1103153 - Fix typo in drbd policy - Add new drbd file type: drbd_var_run_t. Allow drbd_t to manage drbd_var_run_t files/dirs. Allow drbd_t create drbd_tmp_t files in /tmp. Resolves: rhbz#1134883 - Label /etc/ctdb/events.d/* as ctdb_exec_t. Allow ctdbd_t to setattr on ctdbd_exec_t files. Resolves: rhbz#1293788 - Allow abrt-hook-ccpp to get attributes of all processes because of core_pattern. Resolves: rhbz#1254188 - Allow abrt_t to read sysctl_net_t files. Resolves: rhbz#1254188 - The ABRT coredump handler has code to emulate default core file creation The handler runs in a separate process with abrt_dump_oops_t SELinux process type. abrt-hook-ccpp also saves the core dump file in the very same way as kernel does and a user can specify CWD location for a coredump. abrt-hook-ccpp has been made as a SELinux aware apps to create this coredumps with correct labeling and with this commit the policy rules have been updated to allow access all non security files on a system. - Allow abrt-hook-ccpp to getattr on all executables. - Allow setuid/setgid capabilities for abrt-hook-ccpp. Resolves: rhbz#1254188 - abrt-hook-ccpp needs to have setfscreate access because it is SELinux aware and compute a target labeling. Resolves: rhbz#1254188 - Allow abrt-hook-ccpp to change SELinux user identity for created objects. Resolves: rhbz#1254188 - Dontaudit write access to inherited kdumpctl tmp files. Resolves: rbhz#1156442 - Add interface to allow reading files in efivarfs - contains Linux Kernel configuration options for UEFI systems (UEFI Runtime Variables) Resolves: rhbz#1291801 - Label 8952 tcp port as nsd_control. Resolves: rhbz#1293140 - Allow ipsec to use pam. Resolves: rhbz#1315700 - Allow to log out to gdm after screen was resized in session via vdagent. Resolves: rhbz#1249020 - Allow setrans daemon to read /proc/meminfo. Resolves: rhbz#1316804 - Allow systemd_networkd_t to write kmsg, when kernel was started with following params: systemd.debug systemd.log_level=debug systemd.log_target=kmsg Resolves: rhbz#1298151 - Label tcp port 5355 as llmnr-> Link-Local Multicast Name Resolution Resolves: rhbz#1236579 - Add new selinux policy for systemd-resolved dawmon. Resolves: rhbz#1236579 - Add interface ssh_getattr_server_keys() interface. Resolves: rhbz#1306197 - Allow run sshd-keygen on second boot if first boot fails after some reason and content is not syncedon the disk. These changes are reflecting this commit in sshd. http://pkgs.fedoraproject.org/cgit/rpms/openssh.git/commit/?id=af94f46861844cbd6ba4162115039bebcc8f78ba rhbz#1299106 Resolves: rhbz#1306197 - Allow systemd_notify_t to write to kmsg_device_t when 'systemd.log_target=kmsg' option is used. Resolves: rhbz#1309417 - Remove bin_t label for /etc/ctdb/events.d/. We need to label this scripts as ctdb_exec_t. Resolves: rhbz#1293788- Prepare selinux-policy package for userspace release 2016-02-23. Resolves: rhbz#1305982- Allow sending dbus msgs between firewalld and system_cronjob domains. Resolves: rhbz#1284902 - Allow zabbix-agentd to connect to following tcp sockets. One of zabbix-agentd functions is get service status of ftp,http,innd,pop,smtp protocols. Resolves: rhbz#1242506 - Add new boolean tmpreaper_use_cifs() to allow tmpreaper to run on local directories being shared with Samba. Resolves: rhbz#1284972 - Add support for systemd-hwdb daemon. Resolves: rhbz#1257940 - Add interface fs_setattr_cifs_dirs(). Resolves: rhbz#1284972- Add new SELinux policy fo targetd daemon. Resolves: rhbz#1063714 - Add new SELinux policy fo ipmievd daemon. Resolves: rhbz#1083031 - Add new SELinux policy fo hsqldb daemon. Resolves: rhbz#1083171 - Add new SELinux policy for blkmapd daemon. Resolves: rhbz#1072997 - Allow p11-child to connect to apache ports. - Label /usr/sbin/lvmlockd binary file as lvm_exec_t. Resolves: rhbz#1278028 - Add interface "lvm_manage_lock" to lvm policy. Resolves: rhbz#1063714- Allow openvswitch domain capability sys_rawio. Resolves: rhbz#1278495- Allow openvswitch to manage hugetlfs files and dirs. Resolves: rhbz#1278495 - Add fs_manage_hugetlbfs_files() interface. Resolves: rhbz#1278495- Allow smbcontrol domain to send sigchld to ctdbd domain. Resolves: #1293784 - Allow openvswitch read/write hugetlb filesystem. Resolves: #1278495Allow hypervvssd to list all mountpoints to have VSS live backup working correctly. Resolves:#1247880- Revert Add missing labeling for /usr/libexec/abrt-hook-ccpp patch Resolves: #1254188- Allow search dirs in sysfs types in kernel_read_security_state. Resolves: #1254188 - Fix kernel_read_security_state interface that source domain of this interface can search sysctl_fs_t dirs. Resolves: #1254188- Add missing labeling for /usr/libexec/abrt-hook-ccpp as a part of #1245477 and #1242467 bugs Resolves: #1254188 - We need allow connect to xserver for all sandbox_x domain because we have one type for all sandbox processes. Resolves:#1261938- Remove labeling for modules_dep_t file contexts to have labeled them as modules_object_t. - Update files_read_kernel_modules() to contain modutils_read_module_deps_files() calling because module deps labeling could remain and it allows to avoid regressions. Resolves:#1266928- We need to require sandbox_web_type attribute in sandbox_x_domain_template(). Resolves: #1261938 - ipsec: The NM helper needs to read the SAs Resolves: #1259786 - ipsec: Allow ipsec management to create ptys Resolves: #1259786- Add temporary fixes for sandbox related to #1103622. It allows to run everything under one sandbox type. Resolves:#1261938 - Allow abrt_t domain to write to kernel msg device. Resolves: #1257828 - Allow rpcbind_t domain to change file owner and group Resolves: #1265266- Allow smbcontrol to create a socket in /var/samba which uses for a communication with smbd, nmbd and winbind. Resolves: #1256459- Allow dirsrv-admin script to read passwd file. Allow dirsrv-admin script to read httpd pid files. Label dirsrv-admin unit file and allow dirsrv-admin domains to use it. Resolves: #1230300 - Allow qpid daemon to connect on amqp tcp port. Resolves: #1261805- Label /etc/ipa/nssdb dir as cert_t Resolves:#1262718 - Do not provide docker policy files which is shipped by docker-selinux.rpm Resolves:#1262812- Add labels for afs binaries: dafileserver, davolserver, salvageserver, dasalvager Resolves: #1192338 - Add lsmd_plugin_t sys_admin capability, Allow lsmd_plugin_t getattr from sysfs filesystem. Resolves: #1238079 - Allow rhsmcertd_t send signull to unconfined_service_t domains. Resolves: #1176078 - Remove file transition from snmp_manage_var_lib_dirs() interface which created snmp_var_lib_t dirs in var_lib_t. - Allow openhpid_t daemon to manage snmp files and dirs. Resolves: #1243902 - Allow mdadm_t domain read/write to general ptys and unallocated ttys. Resolves: #1073314 - Add interface unconfined_server_signull() to allow domains send signull to unconfined_service_t Resolves: #1176078- Allow systemd-udevd to access netlink_route_socket to change names for network interfaces without unconfined.pp module. It affects also MLS. Resolves:#1250456- Fix labeling for fence_scsi_check script Resolves: #1255020 - Allow openhpid to read system state Allow openhpid to connect to tcp http port. Resolves: #1244248 - Allow openhpid to read snmp var lib files. Resolves: #1243902 - Allow openvswitch_t domains read kernel dependencies due to openvswitch run modprobe - Allow unconfined_t domains to create /var/run/xtables.lock with iptables_var_run_t Resolves: #1243403 - Remove bin_t label for /usr/share/cluster/fence_scsi_check\.pl Resolves: #1255020- Fix regexp in chronyd.fc file Resolves: #1243764 - Allow passenger to getattr filesystem xattr Resolves: #1196555 - Label mdadm.conf.anackbak as mdadm_conf_t file. Resolves: #1088904 - Revert "Allow pegasus_openlmi_storage_t create mdadm.conf.anacbak file in /etc." - Allow watchdog execute fenced python script. Resolves: #1255020 - Added inferface watchdog_unconfined_exec_read_lnk_files() - Remove labeling for /var/db/.*\.db as etc_t to label db files as system_db_t. Resolves: #1230877- Allow watchdog execute fenced python script. Resolves: #1255020 - Added inferface watchdog_unconfined_exec_read_lnk_files() - Label /var/run/chrony-helper dir as chronyd_var_run_t. Resolves: #1243764 - Allow dhcpc_t domain transition to chronyd_t Resolves: #1243764- Fix postfix_spool_maildrop_t,postfix_spool_flush_t contexts in postfix.fc file. Resolves: #1252442- Allow exec pidof under hypervkvp domain. Resolves: #1254870 - Allow hypervkvp daemon create connection to the system DBUS Resolves: #1254870- Allow openhpid_t to read system state. Resolves: #1244248 - Added labels for files provided by rh-nginx18 collection Resolves: #1249945 - Dontaudit block_suspend capability for ipa_helper_t, this is kernel bug. Allow ipa_helper_t capability net_admin. Allow ipa_helper_t to list /tmp. Allow ipa_helper_t to read rpm db. Resolves: #1252968 - Allow rhsmcertd exec rhsmcertd_var_run_t files and rhsmcerd_tmp_t files. This rules are in hide_broken_sympthons until we find better solution. Resolves: #1243431 - Allow abrt_dump_oops_t to read proc_security_t files. - Allow abrt_dump_oops to signull all domains Allow abrt_dump_oops to read all domains state Allow abrt_dump_oops to ptrace all domains - Add interface abrt_dump_oops_domtrans() - Add mountpoint dontaudit access check in rhsmcertd policy. Resolves: #1243431 - Allow samba_net_t to manage samba_var_t sock files. Resolves: #1252937 - Allow chrome setcap to itself. Resolves: #1251996 - Allow httpd daemon to manage httpd_var_lib_t lnk_files. Resolves: #1253706 - Allow chronyd exec systemctl Resolves: #1243764 - Add inteface chronyd_signal Allow timemaster_t send generic signals to chronyd_t. Resolves: #1243764 - Added interface fs_dontaudit_write_configfs_dirs - Add label for kernel module dep files in /usr/lib/modules Resolves:#916635 - Allow kernel_t domtrans to abrt_dump_oops_t - Added to files_dontaudit_write_all_mountpoints intefface new dontaudit rule, that domain included this interface dontaudit capability dac_override. - Allow systemd-networkd to send logs to systemd-journald. Resolves: #1236616- Fix label on /var/tmp/kiprop_0 Resolves:#1220763 - Allow lldpad_t to getattr tmpfs_t. Resolves: #1246220 - Label /dev/shm/lldpad.* as lldapd_tmpfs_t Resolves: #1246220 - Allow audisp client to read system state.- Allow pcp_domain to manage pcp_var_lib_t lnk_files. Resolves: #1252341 - Label /var/run/xtables.* as iptables_var_run_t Resolves: #1243403- Add interface to read/write watchdog device - Add labels for /dev/memory_bandwith and /dev/vhci. Thanks ssekidde Resolves:#1210237 - Allow apcupsd_t to read /sys/devices Resolves:#1189185 - Allow logrotate to reload services. Resolves: #1242453 - Allow openhpid use libwatchdog plugin. (Allow openhpid_t rw watchdog device) Resolves: #1244260 - Allow openhpid liboa_soap plugin to read generic certs. Resolves: #1244248 - Allow openhpid liboa_soap plugin to read resolv.conf file. Resolves: #1244248 - Label /usr/libexec/chrony-helper as chronyd_exec_t - Allow chronyd_t to read dhcpc state. - Allow chronyd to execute mkdir command.- Allow mdadm to access /dev/random and add support to create own files/dirs as mdadm_tmpfs_t. Resolves:#1073314 - Allow udev, lvm and fsadm to access systemd-cat in /var/tmp/dracut if 'dracut -fv' is executed in MLS. - Allow admin SELinu users to communicate with kernel_t. It is needed to access /run/systemd/journal/stdout if 'dracut -vf' is executed. We allow it for other SELinux users. - Allow sysadm to execute systemd-sysctl in the sysadm_t domain. It is needed for ifup command in MLS mode. - Add fstools_filetrans_named_content_fsadm() and call it for named_filetrans_domain domains. We need to be sure that /run/blkid is created with correct labeling. Resolves:#1183503 - Add support for /etc/sanlock which is writable by sanlock daemon. Resolves:#1231377 - Allow useradd add homedir located in /var/lib/kdcproxy in ipa-server RPM scriplet. Resolves:#1243775 - Allow snapperd to pass data (one way only) via pipe negotiated over dbus Resolves:#1250550 - Allow lsmd also setuid capability. Some commands need to executed under root privs. Other commands are executed under unprivileged user.- Allow openhpid to use libsnmp_bc plugin (allow read snmp lib files). Resolves: #1243902 - Allow lsm_plugin_t to read sysfs, read hwdata, rw to scsi_generic_device Resolves: #1238079 - Allow lsm_plugin_t to rw raw_fixed_disk. Resolves:#1238079 - Allow rhsmcertd to send signull to unconfined_service.- Allow httpd_suexec_t to read and write Apache stream sockets Resolves: #1243569 - Allow qpid to create lnk_files in qpid_var_lib_t Resolves: #1247279- Allow drbd to get attributes from filesystems. - Allow redis to read kernel parameters. Resolves: #1209518 - Allow virt_qemu_ga_t domtrans to passwd_t - Allow audisp_remote_t to start power unit files domain to allow halt system. Resolves: #1186780 - Allow audisp_remote_t to read/write user domain pty. Resolves: #1186780 - Label /usr/sbin/chpasswd as passwd_exec_t. - Allow sysadm to administrate ldap environment and allow to bind ldap port to allow to setup an LDAP server (389ds). Resolves:#1221121- gnome_dontaudit_search_config() needs to be a part of optinal_policy in pegasus.te - Allow pcp_pmcd daemon to read postfix config files. - Allow pcp_pmcd daemon to search postfix spool dirs. Resolves: #1213740 - Added Booleans: pcp_read_generic_logs. Resolves: #1213740 - Allow drbd to read configuration options used when loading modules. Resolves: #1134883 - Allow glusterd to manage nfsd and rpcd services. - Allow glusterd to communicate with cluster domains over stream socket. - glusterd call pcs utility which calls find for cib.* files and runs pstree under glusterd. Dontaudit access to security files and update gluster boolean to reflect these changes.- Allow glusterd to manage nfsd and rpcd services. - Allow networkmanager to communicate via dbus with systemd_hostanmed. Resolves: #1234954 - Allow stream connect logrotate to prosody. - Add prosody_stream_connect() interface. - httpd should be able to send signal/signull to httpd_suexec_t, instead of httpd_suexec_exec_t. - Allow prosody to create own tmp files/dirs. Resolves:#1212498- Allow networkmanager read rfcomm port. Resolves:#1212498 - Remove non exists label. - Fix *_admin intefaces where body is not consistent with header. - Label /usr/afs/ as afs_files_t, Allow afs_bosserver_t create afs_config_t and afs_dbdir_t dirs under afs_files_t, Allow afs_bosserver_t read kerberos config - Remove non exits nfsd_ro_t label. - Make all interfaces related to openshift_cache_t as deprecated. - Add rpm_var_run_t label to rpm_admin header - Add jabberd_lock_t label to jabberd_admin header. - Add samba_unconfined_script_exec_t to samba_admin header. - inn daemon should create innd_log_t objects in var_log_t instead of innd_var_run_t - Fix ctdb policy - Add samba_signull_winbind() - Add samba_signull_unconfined_net() - Allow ctdbd_t send signull to samba_unconfined_net_t. - Allow openshift_initrc_t to communicate with firewalld over dbus Resolves:#1221326- Allow gluster to connect to all ports. It is required by random services executed by gluster. - Add interfaces winbind_signull(), samba_unconfined_net_signull(). - Dontaudit smbd_t block_suspend capability. This is kernel bug. - Allow ctdbd sending signull to process winbind, samba_unconfined_net, to checking if processes exists. - Add tmpreaper booleans to use nfs_t and samba_share_t. - Fix path from /usr/sbin/redis-server to /usr/bin/redis-server - Allow connect ypserv to portmap_port_t - Fix paths in inn policy, Allow innd read innd_log_t dirs, Allow innd execute innd_etc_t files - Add support for openstack-nova-* packages - Allow NetworkManager_t send signull to dnssec_trigger_t. - Allow glusterd to execute showmount in the showmount domain. - Label swift-container-reconciler binary as swift_t. - Allow dnssec_trigger_t relabelfrom dnssec_trigger_var_run_t files. - Add cobbler_var_lib_t to "/var/lib/tftpboot/boot(/.*)?" Resolves:#1213540 - Merge all nova_* labels under one nova_t.- Add logging_syslogd_run_nagios_plugins boolean for rsyslog to allow transition to nagios unconfined plugins Resolves:#1233550 - Allow dnssec_trigger_t create dnssec_trigger_tmp_t files in /var/tmp/ - Add support for oddjob based helper in FreeIPA. - Add new boolean - httpd_run_ipa to allow httpd process to run IPA helper and dbus chat with oddjob. - Add nagios_domtrans_unconfined_plugins() interface. - Update mta_filetrans_named_content() interface to cover more db files. Resolves:#1167468 - Add back ftpd_use_passive_mode boolean with fixed description. - Allow pmcd daemon stream connect to mysqld. - Allow pcp domains to connect to own process using unix_stream_socket. Resolves:#1213709 - Allow abrt-upload-watch service to dbus chat with ABRT daemon and fsetid capability to allow run reporter-upload correctly. - Add new boolean - httpd_run_ipa to allow httpd process to run IPA helper and dbus chat with oddjob. - Add support for oddjob based helper in FreeIPA. - Allow dnssec_trigger_t create dnssec_trigger_tmp_t files in /var/tmp/- Allow iptables to read ctdbd lib files. Resolves:#1224879 - Add systemd_networkd_t to nsswitch domains. - Allow drbd_t write to fixed_disk_device. Reason: drbdmeta needs write to fixed_disk_device during initialization. Resolves:#1130675 - Allow NetworkManager write to sysfs. - Fix cron_system_cronjob_use_shares boolean to call fs interfaces which contain only entrypoint permission. - Add cron_system_cronjob_use_shares boolean to allow system cronjob to be executed from shares - NFS, CIFS, FUSE. It requires "entrypoint" permissios on nfs_t, cifs_t and fusefs_t SELinux types. - Allow NetworkManager write to sysfs. - Allow ctdb_t sending signull to smbd_t, for checking if smbd process exists. - Dontaudit apache to manage snmpd_var_lib_t files/dirs. - Add interface snmp_dontaudit_manage_snmp_var_lib_files(). - Dontaudit mozilla_plugin_t cap. sys_ptrace. - Rename xodbc-connect port to xodbc_connect - Allow ovsdb-server to connect on xodbc-connect and ovsdb tcp ports. - Allow iscsid write to fifo file kdumpctl_tmp_t. Appears when kdump generates the initramfs during the kernel boot. - Dontaudit chrome to read passwd file. - nrpe needs kill capability to make gluster moniterd nodes working. Resolves:#1235587- We allow can_exec() on ssh_keygen on gluster. But there is a transition defined by init_initrc_domain() because we need to allow execute unconfined services by glusterd. So ssh-keygen ends up with ssh_keygen_t and we need to allow to manage /var/lib/glusterd/geo-replication/secret.pem. - Allow sshd to execute gnome-keyring if there is configured pam_gnome_keyring.so. - Allow gnome-keyring executed by passwd to access /run/user/UID/keyring to change a password. - Label gluster python hooks also as bin_t. - Allow glusterd to interact with gluster tools running in a user domain - Add glusterd_manage_lib_files() interface. - ntop reads /var/lib/ntop/macPrefix.db and it needs dac_override. It has setuid/setgid. - Allow samba_t net_admin capability to make CIFS mount working. - S30samba-start gluster hooks wants to search audit logs. Dontaudit it. Resolves:#1224879- Allow glusterd to send generic signals to systemd_passwd_agent processes. - Allow glusterd to access init scripts/units without defined policy - Allow glusterd to run init scripts. - Allow glusterd to execute /usr/sbin/xfs_dbin glusterd_t domain. Resolves:#1224879- Calling cron_system_entry() in pcp_domain_template needs to be a part of optional_policy block. - Allow samba-net to access /var/lib/ctdbd dirs/files. - Allow glusterd to send a signal to smbd. - Make ctdbd as home manager to access also FUSE. - Allow glusterd to use geo-replication gluster tool. - Allow glusterd to execute ssh-keygen. - Allow glusterd to interact with cluster services. - Allow glusterd to connect to the system DBUS for service (acquire_svc). - Label /dev/log correctly. Resolves:#1230932- Back port the latest F22 changes to RHEL7. It should fix most of RHEL7.2 bugs - Add cgdcbxd policy Resolves:#1072493 - Fix ftp_homedir boolean Resolve:#1097775 - Dontaudit ifconfig writing inhertited /var/log/pluto.log. - Allow cluster domain to dbus chat with systemd-logind. Resolves:#1145215 - Dontaudit write access to inherited kdumpctl tmp files Resolves:#1156442 - Allow isnsd_t to communicate with sssd Resolves:#1167702 - Allow rwho_t to communicate with sssd Resolves:#1167718 - Allow sblim_gatherd_t to communicate with sssd Resolves:#1167732 - Allow pkcs_slotd_t to communicate with sssd Resolves:#1167737 - Allow openvswitch_t to communicate with sssd Resolves:#1167816 - Allow mysqld_safe_t to communicate with sssd Resolves:#1167832 - Allow sshd_keygen_t to communicate with sssd Resolves:#1167840 - Add support for iprdbg logging files in /var/log. Resolves:#1174363 - Allow tmpreaper_t to manage ntp log content Resolves:#1176965 - Allow gssd_t to manage ssh keyring Resolves:#1184791 - Allow httpd_sys_script_t to send system log messages Resolves:#1185231 - Allow apcupsd_t to read /sys/devices Resolves:#1189185 - Allow dovecot_t sys_resource capability Resolves:#1191143 - Add support for mongod/mongos systemd unit files. Resolves:#1197038 - Add bacula fixes - Added label mysqld_etc_t for /etc/my.cnf.d/ dir. Resolves:#1203991- Label /usr/libexec/postgresql-ctl as postgresql_exec_t. - Add more restriction on entrypoint for unconfined domains. - Only allow semanage_t to be able to setenforce 0, no all domains that use selinux_semanage interface - Allow all domains to read /dev/urandom. It is needed by all apps/services linked to libgcrypt. There is no harm to allow it by default. - Update policy/mls for sockets related to access perm. Rules were contradictory. - Add nagios_run_pnp4nagios and nagios_run_sudo booleans to allow r un sudo from NRPE utils scripts and allow run nagios in conjunction w ith PNP4Nagios. Resolves:#1201054 - Don't use deprecated userdom_manage_tmpfs_role() interface calliing and use userdom_manage_tmp_role() instead. - Update virt_read_pid_files() interface to allow read also symlinks with virt_var_run_t type - Label /var/lib/tftpboot/aarch64(/.*)? and /var/lib/tftpboot/images2(/.*)? - Add support for iprdbg logging files in /var/log. - Add fixes to rhsmcertd_t - Allow puppetagent_t to transfer firewalld messages over dbus - Add support for /usr/libexec/mongodb-scl-helper RHSCL helper script. - Added label mysqld_etc_t for /etc/my.cnf.d/ dir. - Add support for mongod/mongos systemd unit files. - cloudinit and rhsmcertd need to communicate with dbus - Allow dovecot_t sys_resource capability- ALlow mongod execmem by default. - Update policy/mls for sockets. Rules were contradictory. Resolves:#1207133 - Allow a user to login with different security level via ssh.- Update seutil_manage_config() interface. Resolves:#1185962 - Allow pki-tomcat relabel pki_tomcat_etc_rw_t. - Turn on docker_transition_unconfined by default- Allow virtd to list all mountpoints. Resolves:#1180713- pkcsslotd_lock_t should be an alias for pkcs_slotd_lock_t. - Allow fowner capability for sssd because of selinux_child handling. - ALlow bind to read/write inherited ipsec pipes - Allow hypervkvp to read /dev/urandom and read addition states/config files. - Allow gluster rpm scripletto create glusterd socket with correct labeling. This is a workaround until we get fix in glusterd. - Add glusterd_filetrans_named_pid() interface - Allow radiusd to connect to radsec ports. - Allow setuid/setgid for selinux_child - Allow lsmd plugin to connect to tcp/5988 by default. - Allow lsmd plugin to connect to tcp/5989 by default. - Update ipsec_manage_pid() interface. Resolves:#1184978- Update ipsec_manage_pid() interface. Resolves:#1184978- Allow ntlm_auth running in winbind_helper_t to access /dev/urandom.- Add auditing support for ipsec. Resolves:#1182524 - Label /ostree/deploy/rhel-atomic-host/deploy directory as system_conf_t - Allow netutils chown capability to make tcpdump working with -w- Allow ipsec to execute _updown.netkey script to run unbound-control. - Allow neutron to read rpm DB. - Add additional fixes for hyperkvp * creates new ifcfg-{name} file * Runs hv_set_ifconfig.sh, which does the following * Copies ifcfg-{name} to /etc/sysconfig/network-scripts - Allow svirt to read symbolic links in /sys/fs/cgroups labeled as tmpfs_t - Add labeling for pacemaker.log. - Allow radius to connect/bind radsec ports. - Allow pm-suspend running as virt_qemu_ga to read /var/log/pm-suspend.log - Allow virt_qemu_ga to dbus chat with rpm. - Update virt_read_content() interface to allow read also char devices. - Allow glance-registry to connect to keystone port. Resolves:#1181818- Allow sssd to send dbus all user domains. Resolves:#1172291 - Allow lsm plugin to read certificates. - Fix labeling for keystone CGI scripts. - Make snapperd back as unconfined domain.- Fix bugs in interfaces discovered by sepolicy. - Allow slapd to read /usr/share/cracklib/pw_dict.hwm. - Allow lsm plugins to connect to tcp/18700 by default. - Allow brltty mknod capability to allow create /var/run/brltty/vcsa. - Fix pcp_domain_template() interface. - Fix conman.te. - Allow mon_fsstatd to read /proc/sys/fs/binfmt_misc - Allow glance-scrubber to connect tcp/9191. - Add missing setuid capability for sblim-sfcbd. - Allow pegasus ioctl() on providers. - Add conman_can_network. - Allow chronyd to read chrony conf files located in /run/timemaster/. - Allow radius to bind on tcp/1813 port. - dontaudit block suspend access for openvpn_t - Allow conman to create files/dirs in /tmp. - Update xserver_rw_xdm_keys() interface to have 'setattr'. Resolves:#1172291 - Allow sulogin to read /dev/urandom and /dev/random. - Update radius port definition to have also tcp/18121 - Label prandom as random_device_t. - Allow charon to manage files in /etc/strongimcv labeled as ipsec_conf_t.- Allow virt_qemu_ga_t to execute kmod. - Add missing files_dontaudit_list_security_dirs() for smbd_t in samba_export_all_ro boolean. - Add additionnal MLS attribute for oddjob_mkhomedir to create homedirs. Resolves:#1113725 - Enable OpenStack cinder policy - Add support for /usr/share/vdsm/daemonAdapter - Add support for /var/run/gluster- Remove old pkcsslotd.pp from minimum package - Allow rlogind to use also rlogin ports. - Add support for /usr/libexec/ntpdate-wrapper. Label it as ntpdate_exec_t. - Allow bacula to connect also to postgresql. - Label /usr/libexec/tomcat/server as tomcat_exec_t - Add support for /usr/sbin/ctdbd_wrapper - Add support for /usr/libexec/ppc64-diag/rtas_errd - Allow rpm_script_roles to access system_mail_t - Allow brltty to create /var/run/brltty - Allow lsmd plugin to access netlink_route_socket - Allow smbcontrol to read passwd - Add support for /usr/libexec/sssd/selinux_child and create sssd_selinux_manager_t domain for it Resolves:#1140106 - Allow osad to execute rhn_check - Allow load_policy to rw inherited sssd pipes because of selinux_child - Allow admin SELinux users mounting / as private within a new mount namespace as root in MLS - Add additional fixes for su_restricted_domain_template to make moving to sysadm_r and trying to su working correctly - Add additional booleans substitions- Add seutil_dontaudit_access_check_semanage_module_store() interface Resolves:#1140106 - Update to have all _systemctl() interface also init_reload_services(). - Dontaudit access check on SELinux module store for sssd. - Add labeling for /sbin/iw. - Allow named_filetrans_domain to create ibus directory with correct labeling.- Allow radius to bind tcp/1812 radius port. - Dontaudit list user_tmp files for system_mail_t. - Label virt-who as virtd_exec_t. - Allow rhsmcertd to send a null signal to virt-who running as virtd_t. - Add missing alias for _content_rw_t. Resolves:#1089177 - Allow spamd to access razor-agent.log. - Add fixes for sfcb from libvirt-cim TestOnly bug. - Allow NetworkManager stream connect on openvpn. - Make /usr/bin/vncserver running as unconfined_service_t. - getty_t should be ranged in MLS. Then also local_login_t runs as ranged domain. - Label /etc/docker/certs.d as cert_t.- Label /etc/strongimcv as ipsec_conf_file_t. - Add support for /usr/bin/start-puppet-ca helper script Resolves:#1160727 - Allow rpm scripts to enable/disable transient systemd units. Resolves:#1154613 - Make kpropdas nsswitch domain Resolves:#1153561 - Make all glance domain as nsswitch domains Resolves:#1113281 - Allow selinux_child running as sssd access check on /etc/selinux/targeted/modules/active - Allow access checks on setfiles/load_policy/semanage_lock for selinux_child running as sssd_t Resolves:#1140106- Dontaudit access check on setfiles/load_policy for sssd_t. Resolves:#1140106 - Add kdump_rw_inherited_kdumpctl_tmp_pipes() Resolves:#1156442 - Make linuxptp services as unconfined. - Added new policy linuxptp. Resolves:#1149693 - Label keystone cgi files as keystone_cgi_script_exec_t. Resolves:#1138424 - Make tuned as unconfined domain- Allow guest to connect to libvirt using unix_stream_socket. - Allow all bus client domains to dbus chat with unconfined_service_t. - Allow inetd service without own policy to run in inetd_child_t which is unconfined domain. - Make opensm as nsswitch domain to make it working with sssd. - Allow brctl to read meminfo. - Allow winbind-helper to execute ntlm_auth in the caller domain. Resolves:#1160339 - Make plymouthd as nsswitch domain to make it working with sssd. Resolves:#1160196 - Make drbd as nsswitch domain to make it working with sssd. - Make conman as nsswitch domain to make ipmitool.exp runing as conman_t working. - Add support for /var/lib/sntp directory. - Add fixes to allow docker to create more content in tmpfs ,and donaudit reading /proc - Allow winbind to read usermodehelper - Allow telepathy domains to execute shells and bin_t - Allow gpgdomains to create netlink_kobject_uevent_sockets - Allow mongodb to bind to the mongo port and mongos to run as mongod_t - Allow abrt to read software raid state. - Allow nslcd to execute netstat. - Allow dovecot to create user's home directory when they log into IMAP. - Allow login domains to create kernel keyring with different level.- Allow modemmanger to connectto itself Resolves:#1120152 - Allow pki_tomcat to create link files in /var/lib/pki-ca. Resolves:#1121744 - varnishd needs to have fsetid capability Resolves:#1125165 - Allow snapperd to dbus chat with system cron jobs. Resolves:#1152447 - Allow dovecot to create user's home directory when they log into IMAP Resolves:#1152773 - Add labeling for /usr/sbin/haproxy-systemd-wrapper wrapper to make haproxy running haproxy_t. - ALlow listen and accept on tcp socket for init_t in MLS. Previously it was for xinetd_t. - Allow nslcd to execute netstat. - Add suppor for keepalived unconfined scripts and allow keepalived to read all domain state and kill capability. - Allow nslcd to read /dev/urandom.- Add back kill permisiion for system class Resolves:#1150011- Add back kill permisiion for service class Resolves:#1150011 - Make rhsmcertd_t also as dbus domain. - Allow named to create DNS_25 with correct labeling. - Add cloudform_dontaudit_write_cloud_log() - Call auth_use_nsswitch to apache to read/write cloud-init keys. - Allow cloud-init to dbus chat with certmonger. - Fix path to mon_statd_initrc_t script. - Allow all RHCS services to read system state. - Allow dnssec_trigger_t to execute unbound-control in own domain. - kernel_read_system_state needs to be called with type. Moved it to antivirus.if. - Added policy for mon_statd and mon_procd services. BZ (1077821) - Allow opensm_t to read/write /dev/infiniband/umad1. - Allow mongodb to manage own log files. - Allow neutron connections to system dbus. - Add support for /var/lib/swiftdirectory. - Allow nova-scheduler to read certs. - Allow openvpn to access /sys/fs/cgroup dir. - Allow openvpn to execute systemd-passwd-agent in systemd_passwd_agent_t to make openvpn working with systemd. - Fix samba_export_all_ro/samba_export_all_rw booleans to dontaudit search/read security files. - Add auth_use_nsswitch for portreserve to make it working with sssd. - automount policy is non-base module so it needs to be called in optional block. - ALlow sensord to getattr on sysfs. - Label /usr/share/corosync/corosync as cluster_exec_t. - Allow lmsd_plugin to read passwd file. BZ(1093733) - Allow read antivirus domain all kernel sysctls. - Allow mandb to getattr on file systems - Allow nova-console to connect to mem_cache port. - Make sosreport as unconfined domain. - Allow mondogdb to 'accept' accesses on the tcp_socket port. - ALlow sanlock to send a signal to virtd_t.- Build also MLS policy Resolves:#1138424- Add back kill permisiion for system class - Allow iptables read fail2ban logs. - Fix radius labeled ports - Add userdom_manage_user_tmpfs_files interface - Allow libreswan to connect to VPN via NM-libreswan. - Label 4101 tcp port as brlp port - fix dev_getattr_generic_usb_dev interface - Allow all domains to read fonts - Make sure /run/systemd/generator and system is labeled correctly on creation. - Dontaudit aicuu to search home config dir. - Make keystone_cgi_script_t domain. Resolves:#1138424 - Fix bug in drbd policy, - Added support for cpuplug. - ALlow sanlock_t to read sysfs_t. - Added sendmail_domtrans_unconfined interface - Fix broken interfaces - radiusd wants to write own log files. - Label /usr/libexec/rhsmd as rhsmcertd_exec_t - Allow rhsmcertd send signull to setroubleshoot. - Allow rhsmcertd manage rpm db. - Added policy for blrtty. - Fix keepalived policy - Allow rhev-agentd dbus chat with systemd-logind. - Allow keepalived manage snmp var lib sock files. - Add support for /var/lib/graphite-web - Allow NetworkManager to create Bluetooth SDP sockets - It's going to do the the discovery for DUN service for modems with Bluez 5. - Allow swift to connect to all ephemeral ports by default. - Allow sssd to read selinux config to add SELinux user mapping. - Allow lsmd to search own plguins. - Allow abrt to read /dev/memto generate an unique machine_id and uses sosuploader's algorithm based off dmidecode[1] fields. - ALlow zebra for user/group look-ups. - Allow nova domains to getattr on all filesystems. - Allow collectd sys_ptrace and dac_override caps because of reading of /proc/%i/io for several processes. - Allow pppd to connect to /run/sstpc/sstpc-nm-sstp-service-28025 over unix stream socket. - Allow rhnsd_t to manage also rhnsd config symlinks. - ALlow user mail domains to create dead.letter. - Allow rabbitmq_t read rabbitmq_var_lib_t lnk files. - Allow pki-tomcat to change SELinux object identity. - Allow radious to connect to apache ports to do OCSP check - Allow git cgi scripts to create content in /tmp - Allow cockpit-session to do GSSAPI logins. - Allow sensord read in /proc - Additional access required by usbmuxd- Allow locate to look at files/directories without labels, and chr_file and blk_file on non dev file systems - Label /usr/lib/erlang/erts.*/bin files as bin_t - Add files_dontaudit_access_check_home_dir() inteface. - Allow udev_t mounton udev_var_run_t dirs #(1128618) - Add systemd_networkd_var_run_t labeling for /var/run/systemd/netif and allow systemd-networkd to manage it. - Add init_dontaudit_read_state() interface. - Add label for ~/.local/share/fonts - Allow unconfined_r to access unconfined_service_t. - Allow init to read all config files - Add new interface to allow creation of file with lib_t type - Assign rabbitmq port. - Allow unconfined_service_t to dbus chat with all dbus domains - Add new interfaces to access users keys. - Allow domains to are allowed to mounton proc to mount on files as well as dirs - Fix labeling for HOME_DIR/tmp and HOME_DIR/.tmp directories. - Add a port definition for shellinaboxd - Label ~/tmp and ~/.tmp directories in user tmp dirs as user_tmp_t - Allow userdomains to stream connect to pcscd for smart cards - Allow programs to use pam to search through user_tmp_t dires (/tmp/.X11-unix) - Update to rawhide-contrib changes Resolves:#1123844- Rebase to 3.13.1 which we have in Fedora21 Resolves:#1128284- Back port fixes from Fedora. Mainly OpenStack and Docker fixes- Add policy-rhel-7.1-{base,contrib} patches- Add support for us_cli ports - Fix labeling for /var/run/user//gvfs - add support for tcp/9697 - Additional rules required by openstack, needs backport to F20 and RHEL7 - Additional access required by docker - ALlow motion to use tcp/8082 port - Allow init_t to setattr/relabelfrom dhcp state files - Dontaudit antivirus domains read access on all security files by default - Add missing alias for old amavis_etc_t type - Allow block_suspend cap for haproxy - Additional fixes for instack overcloud - Allow OpenStack to read mysqld_db links and connect to MySQL - Remove dup filename rules in gnome.te - Allow sys_chroot cap for httpd_t and setattr on httpd_log_t - Allow iscsid to handle own unit files - Add iscsi_systemctl() - Allow mongod to create also sock_files in /run with correct labeling - Allow httpd to send signull to apache script domains and don't audit leaks - Allow rabbitmq_beam to connect to httpd port - Allow aiccu stream connect to pcscd - Allow dmesg to read hwdata and memory dev - Allow all freeipmi domains to read/write ipmi devices - Allow sblim_sfcbd to use also pegasus-https port - Allow rabbitmq_epmd to manage rabbit_var_log_t files - Allow chronyd to read /sys/class/hwmon/hwmon1/device/temp2_input - Allow docker to status any unit file and allow it to start generic unit files- Change hsperfdata_root to have as user_tmp_t Resolves:#1076523- Fix Multiple same specifications for /var/named/chroot/dev/zero - Add labels for /var/named/chroot_sdb/dev devices - Add support for strongimcv - Use kerberos_keytab_domains in auth_use_nsswitch - Update auth_use_nsswitch to make all these types as kerberos_keytab_domain to - Allow net_raw cap for neutron_t and send sigkill to dnsmasq - Fix ntp_filetrans_named_content for sntp-kod file - Add httpd_dbus_sssd boolean - Dontaudit exec insmod in boinc policy - Rename kerberos_keytab_domain to kerberos_keytab_domains - Add kerberos_keytab_domain() - Fix kerberos_keytab_template() - Make all domains which use kerberos as kerberos_keytab_domain Resolves:#1083670 - Allow kill capability to winbind_t- varnishd wants chown capability - update ntp_filetrans_named_content() interface - Add additional fixes for neutron_t. #1083335 - Dontaudit getattr on proc_kcore_t - Allow pki_tomcat_t to read ipa lib files - Allow named_filetrans_domain to create /var/cache/ibus with correct labelign - Allow init_t run /sbin/augenrules - Add dev_unmount_sysfs_fs and sysnet_manage_ifconfig_run interfaces - Allow unpriv SELinux user to use sandbox - Add default label for /tmp/hsperfdata_root- Add file subs also for /var/home- Allow xauth_t to read user_home_dir_t lnk_file - Add labeling for lightdm-data - Allow certmonger to manage ipa lib files - Add support for /var/lib/ipa - Allow pegasus to getattr virt_content - Added some new rules to pcp policy - Allow chrome_sandbox to execute config_home_t - Add support for ABRT FAF- Allow kdm to send signull to remote_login_t process - Add gear policy - Turn on gear_port_t - Allow cgit to read gitosis lib files by default - Allow vdagent to read xdm state - Allow NM and fcoeadm to talk together over unix_dgram_socket- Back port fixes for pegasus_openlmi_admin_t from rawhide Resolves:#1080973 - Add labels for ostree - Add SELinux awareness for NM - Label /usr/sbin/pwhistory_helper as updpwd_exec_t- add gnome_append_home_config() - Allow thumb to append GNOME config home files - Allow rasdaemon to rw /dev/cpu//msr - fix /var/log/pki file spec - make bacula_t as auth_nsswitch domain - Identify pki_tomcat_cert_t as a cert_type - Define speech-dispater_exec_t as an application executable - Add a new file context for /var/named/chroot/run directory - update storage_filetrans_all_named_dev for sg* devices - Allow auditctl_t to getattr on all removeable devices - Allow nsswitch_domains to stream connect to nmbd - Allow unprivusers to connect to memcached - label /var/lib/dirsrv/scripts-INSTANCE as bin_t- Allow also unpriv user to run vmtools - Allow secadm to read /dev/urandom and meminfo Resolves:#1079250 - Add booleans to allow docker processes to use nfs and samba - Add mdadm_tmpfs support - Dontaudit net_amdin for /usr/lib/jvm/java-1.7.0-openjdk-1.7.0.51-2.4.5.1.el7.x86_64/jre-abrt/bin/java running as pki_tomcat_t - Allow vmware-user-sui to use user ttys - Allow talk 2 users logged via console too - Allow ftp services to manage xferlog_t - Make all pcp domanis as unconfined for RHEL7.0 beucause of new policies - allow anaconda to dbus chat with systemd-localed- allow anaconda to dbus chat with systemd-localed - Add fixes for haproxy based on bperkins@redhat.com - Allow cmirrord to make dmsetup working - Allow NM to execute arping - Allow users to send messages through talk - Add userdom_tmp_role for secadm_t- Add additional fixes for rtas_errd - Fix transitions for tmp/tmpfs in rtas.te - Allow rtas_errd to readl all sysctls- Add support for /var/spool/rhsm/debug - Make virt_sandbox_use_audit as True by default - Allow svirt_sandbox_domains to ptrace themselves- Allow docker containers to manage /var/lib/docker content- Allow docker to read tmpfs_t symlinks - Allow sandbox svirt_lxc_net_t to talk to syslog and to sssd over stream sockets- Allow collectd to talk to libvirt - Allow chrome_sandbox to use leaked unix_stream_sockets - Dontaudit leaks of sockets into chrome_sandbox_t - If you create a cups directory in /var/cache then it should be labeled cups_rw_etc_t - Run vmtools as unconfined domains - Allow snort to manage its log files - Allow systemd_cronjob_t to be entered via bin_t - Allow procman to list doveconf_etc_t - allow keyring daemon to create content in tmpfs directories - Add proper labelling for icedtea-web - vpnc is creating content in networkmanager var run directory - Label sddm as xdm_exec_t to make KDE working again - Allow postgresql to read network state - Allow java running as pki_tomcat to read network sysctls - Fix cgroup.te to allow cgred to read cgconfig_etc_t - Allow beam.smp to use ephemeral ports - Allow winbind to use the nis to authenticate passwords- Make rtas_errd_t as unconfined domain for F20.It needs additional fixes. It runs rpm at least. - Allow net_admin cap for fence_virtd running as fenced_t - Make abrt-java-connector working - Make cimtest script 03_defineVS.py of ComputerSystem group working - Fix git_system_enable_homedirs boolean - Allow munin mail plugins to read network systcl- Allow vmtools_helper_t to execute bin_t - Add support for /usr/share/joomla - /var/lib/containers should be labeled as openshift content for now - Allow docker domains to talk to the login programs, to allow a process to login into the container - Allow install_t do dbus chat with NM - Fix interface names in anaconda.if - Add install_t for anaconda. A new type is a part of anaconda policy - sshd to read network sysctls- Allow zabbix to send system log msgs - Allow init_t to stream connect to ipsec Resolves:#1060775- Add docker_connect_any boolean- Allow unpriv SELinux users to dbus chat with firewalld - Add lvm_write_metadata() - Label /etc/yum.reposd dir as system_conf_t. Should be safe because system_conf_t is base_ro_file_type - Allow pegasus_openlmi_storage_t to write lvm metadata - Add hide_broken_symptoms for kdumpgui because of systemd bug - Make kdumpgui_t as unconfined domain Resolves:#1044299 - Allow docker to connect to tcp/5000- Allow numad to write scan_sleep_millisecs - Turn on entropyd_use_audio boolean by default - Allow cgred to read /etc/cgconfig.conf because it contains templates used together with rules from /etc/cgrules.conf. - Allow lscpu running as rhsmcertd_t to read /proc/sysinfo - Fix label on irclogs in the homedir - Allow kerberos_keytab_domain domains to manage keys until we get sssd fix - Allow postgresql to use ldap - Add missing syslog-conn port - Add support for /dev/vmcp and /dev/sclp Resolves:#1069310- Modify xdm_write_home to allow create files/links in /root with xdm_home_ - Allow virt domains to read network state Resolves:#1072019- Added pcp rules - dontaudit openshift_cron_t searching random directories, should be back ported to RHEL6 - clean up ctdb.te - Allow ctdbd to connect own ports - Fix samba_export_all_rw booleanto cover also non security dirs - Allow swift to exec rpm in swift_t and allow to create tmp files/dirs - Allow neutron to create /run/netns with correct labeling - Allow certmonger to list home dirs- Change userdom_use_user_inherited_ttys to userdom_use_user_ttys for systemd-tty-ask - Add sysnet_filetrans_named_content_ifconfig() interface - Allow ctdbd to connect own ports - Fix samba_export_all_rw booleanto cover also non security dirs - Allow swift to exec rpm in swift_t and allow to create tmp files/dirs - Allow neutron to create /run/netns with correct labeling - Allow kerberos keytab domains to manage sssd/userdomain keys" - Allow to run ip cmd in neutron_t domain- Allow block_suspend cap2 for systemd-logind and rw dri device - Add labeling for /usr/libexec/nm-libreswan-service - Allow locallogin to rw xdm key to make Virtual Terminal login providing smartcard pin working - Add xserver_rw_xdm_keys() - Allow rpm_script_t to dbus chat also with systemd-located - Fix ipa_stream_connect_otpd() - update lpd_manage_spool() interface - Allow krb5kdc to stream connect to ipa-otpd - Add ipa_stream_connect_otpd() interface - Allow vpnc to unlink NM pids - Add networkmanager_delete_pid_files() - Allow munin plugins to access unconfined plugins - update abrt_filetrans_named_content to cover /var/spool/debug - Label /var/spool/debug as abrt_var_cache_t - Allow rhsmcertd to connect to squid port - Make docker_transition_unconfined as optional boolean - Allow certmonger to list home dirs- Make snapperd as unconfined domain and add additional fixes for it - Remove nsplugin.pp module on upgrade- Add snapperd_home_t for HOME_DIR/.snapshots directory - Make sosreport as unconfined domain - Allow sosreport to execute grub2-probe - Allow NM to manage hostname config file - Allow systemd_timedated_t to dbus chat with rpm_script_t - Allow lsmd plugins to connect to http/ssh/http_cache ports by default - Add lsmd_plugin_connect_any boolean - Allow mozilla_plugin to attempt to set capabilities - Allow lsdm_plugins to use tcp_socket - Dontaudit mozilla plugin from getattr on /proc or /sys - Dontaudit use of the keyring by the services in a sandbox - Dontaudit attempts to sys_ptrace caused by running ps for mysqld_safe_t - Allow rabbitmq_beam to connect to jabber_interserver_port - Allow logwatch_mail_t to transition to qmail_inject and queueu - Added new rules to pcp policy - Allow vmtools_helper_t to change role to system_r - Allow NM to dbus chat with vmtools - Fix couchdb_manage_files() to allow manage couchdb conf files - Add support for /var/run/redis.sock - dontaudit gpg trying to use audit - Allow consolekit to create log directories and files - Fix vmtools policy to allow user roles to access vmtools_helper_t - Allow block_suspend cap2 for ipa-otpd - Allow pkcsslotd to read users state - Add ioctl to init_dontaudit_rw_stream_socket - Add systemd_hostnamed_manage_config() interface - Remove transition for temp dirs created by init_t - gdm-simple-slave uses use setsockopt - sddm-greater is a xdm type program- Add lvm_read_metadata() - Allow auditadm to search /var/log/audit dir - Add lvm_read_metadata() interface - Allow confined users to run vmtools helpers - Fix userdom_common_user_template() - Generic systemd unit scripts do write check on / - Allow init_t to create init_tmp_t in /tmp.This is for temporary content created by generic unit files - Add additional fixes needed for init_t and setup script running in generic unit files - Allow general users to create packet_sockets - added connlcli port - Add init_manage_transient_unit() interface - Allow init_t (generic unit files) to manage rpc state date as we had it for initrc_t - Fix userdomain.te to require passwd class - devicekit_power sends out a signal to all processes on the message bus when power is going down - Dontaudit rendom domains listing /proc and hittping system_map_t - Dontauit leaks of var_t into ifconfig_t - Allow domains that transition to ssh_t to manipulate its keyring - Define oracleasm_t as a device node - Change to handle /root as a symbolic link for os-tree - Allow sysadm_t to create packet_socket, also move some rules to attributes - Add label for openvswitch port - Remove general transition for files/dirs created in /etc/mail which got etc_aliases_t label. - Allow postfix_local to read .forward in pcp lib files - Allow pegasus_openlmi_storage_t to read lvm metadata - Add additional fixes for pegasus_openlmi_storage_t - Allow bumblebee to manage debugfs - Make bumblebee as unconfined domain - Allow snmp to read etc_aliases_t - Allow lscpu running in pegasus_openlmi_storage_t to read /dev/mem - Allow pegasus_openlmi_storage_t to read /proc/1/environ - Dontaudit read gconf files for cupsd_config_t - make vmtools as unconfined domain - Add vmtools_helper_t for helper scripts. Allow vmtools shutdonw a host and run ifconfig. - Allow collectd_t to use a mysql database - Allow ipa-otpd to perform DNS name resolution - Added new policy for keepalived - Allow openlmi-service provider to manage transitient units and allow stream connect to sssd - Add additional fixes new pscs-lite+polkit support - Add labeling for /run/krb5kdc - Change w3c_validator_tmp_t to httpd_w3c_validator_tmp_t in F20 - Allow pcscd to read users proc info - Dontaudit smbd_t sending out random signuls - Add boolean to allow openshift domains to use nfs - Allow w3c_validator to create content in /tmp - zabbix_agent uses nsswitch - Allow procmail and dovecot to work together to deliver mail - Allow spamd to execute files in homedir if boolean turned on - Allow openvswitch to listen on port 6634 - Add net_admin capability in collectd policy - Fixed snapperd policy - Fixed bugsfor pcp policy - Allow dbus_system_domains to be started by init - Fixed some interfaces - Add kerberos_keytab_domain attribute - Fix snapperd_conf_t def- Addopt corenet rules for unbound-anchor to rpm_script_t - Allow runuser to send send audit messages. - Allow postfix-local to search .forward in munin lib dirs - Allow udisks to connect to D-Bus - Allow spamd to connect to spamd port - Fix syntax error in snapper.te - Dontaudit osad to search gconf home files - Allow rhsmcertd to manage /etc/sysconf/rhn director - Fix pcp labeling to accept /usr/bin for all daemon binaries - Fix mcelog_read_log() interface - Allow iscsid to manage iscsi lib files - Allow snapper domtrans to lvm_t. Add support for /etc/snapper and allow snapperd to manage it. - Make tuned_t as unconfined domain for RHEL7.0 - Allow ABRT to read puppet certs - Add sys_time capability for virt-ga - Allow gemu-ga to domtrans to hwclock_t - Allow additional access for virt_qemu_ga_t processes to read system clock and send audit messages - Fix some AVCs in pcp policy - Add to bacula capability setgid and setuid and allow to bind to bacula ports - Changed label from rhnsd_rw_conf_t to rhnsd_conf_t - Add access rhnsd and osad to /etc/sysconfig/rhn - drbdadm executes drbdmeta - Fixes needed for docker - Allow epmd to manage /var/log/rabbitmq/startup_err file - Allow beam.smp connect to amqp port - Modify xdm_write_home to allow create also links as xdm_home_t if the boolean is on true - Allow init_t to manage pluto.ctl because of init_t instead of initrc_t - Allow systemd_tmpfiles_t to manage all non security files on the system - Added labels for bacula ports - Fix label on /dev/vfio/vfio - Add kernel_mounton_messages() interface - init wants to manage lock files for iscsi- Added osad policy - Allow postfix to deliver to procmail - Allow bumblebee to seng kill signal to xserver - Allow vmtools to execute /usr/bin/lsb_release - Allow docker to write system net ctrls - Add support for rhnsd unit file - Add dbus_chat_session_bus() interface - Add dbus_stream_connect_session_bus() interface - Fix pcp.te - Fix logrotate_use_nfs boolean - Add lot of pcp fixes found in RHEL7 - fix labeling for pmie for pcp pkg - Change thumb_t to be allowed to chat/connect with session bus type - Allow call renice in mlocate - Add logrotate_use_nfs boolean - Allow setroubleshootd to read rpc sysctl- Turn on bacula, rhnsd policy - Add support for rhnsd unit file - Add dbus_chat_session_bus() interface - Add dbus_stream_connect_session_bus() interface - Fix logrotate_use_nfs boolean - Add lot of pcp fixes found in RHEL7 - fix labeling for pmie for pcp pkg - Change thumb_t to be allowed to chat/connect with session bus type - Allow call renice in mlocate - Add logrotate_use_nfs boolean - Allow setroubleshootd to read rpc sysctl - Fixes for *_admin interfaces - Add pegasus_openlmi_storage_var_run_t type def - Add support for /var/run/openlmi-storage - Allow tuned to create syslog.conf with correct labeling - Add httpd_dontaudit_search_dirs boolean - Add support for winbind.service - ALlow also fail2ban-client to read apache logs - Allow vmtools to getattr on all fs - Add support for dey_sapi port - Add logging_filetrans_named_conf() - Allow passwd_t to use ipc_lock, so that it can change the password in gnome-keyring- Update snapper policy - Allow domains to append rkhunter lib files - Allow snapperd to getattr on all fs - Allow xdm to create /var/gdm with correct labeling - Add label for snapper.log - Allow fail2ban-client to read apache log files - Allow thumb_t to execute dbus-daemon in thumb_t- Allow gdm to create /var/gdm with correct labeling - Allow domains to append rkhunterl lib files. #1057982 - Allow systemd_tmpfiles_t net_admin to communicate with journald - Add interface to getattr on an isid_type for any type of file - Update libs_filetrans_named_content() to have support for /usr/lib/debug directory - Allow initrc_t domtrans to authconfig if unconfined is enabled - Allow docker and mount on devpts chr_file - Allow docker to transition to unconfined_t if boolean set - init calling needs to be optional in domain.te - Allow uncofined domain types to handle transient unit files - Fix labeling for vfio devices - Allow net_admin capability and send system log msgs - Allow lldpad send dgram to NM - Add networkmanager_dgram_send() - rkhunter_var_lib_t is correct type - Back port pcp policy from rawhide - Allow openlmi-storage to read removable devices - Allow system cron jobs to manage rkhunter lib files - Add rkhunter_manage_lib_files() - Fix ftpd_use_fusefs boolean to allow manage also symlinks - Allow smbcontrob block_suspend cap2 - Allow slpd to read network and system state info - Allow NM domtrans to iscsid_t if iscsiadm is executed - Allow slapd to send a signal itself - Allow sslget running as pki_ra_t to contact port 8443, the secure port of the CA. - Fix plymouthd_create_log() interface - Add rkhunter policy with files type definition for /var/lib/rkhunter until it is fixed in rkhunter package - Add mozilla_plugin_exec_t for /usr/lib/firefox/plugin-container - Allow postfix and cyrus-imapd to work out of box - Allow fcoemon to talk with unpriv user domain using unix_stream_socket - Dontaudit domains that are calling into journald to net_admin - Add rules to allow vmtools to do what it does - snapperd is D-Bus service - Allow OpenLMI PowerManagement to call 'systemctl --force reboot' - Add haproxy_connect_any boolean - Allow haproxy also to use http cache port by default Resolves:#1058248- Allow apache to write to the owncloud data directory in /var/www/html... - Allow consolekit to create log dir - Add support for icinga CGI scripts - Add support for icinga - Allow kdumpctl_t to create kdump lock file Resolves:#1055634 - Allow kdump to create lnk lock file - Allow nscd_t block_suspen capability - Allow unconfined domain types to manage own transient unit file - Allow systemd domains to handle transient init unit files - Add interfaces to handle transient- Add cron unconfined role support for uncofined SELinux user - Call corenet_udp_bind_all_ports() in milter.te - Allow fence_virtd to connect to zented port - Fix header for mirrormanager_admin() - Allow dkim-milter to bind udp ports - Allow milter domains to send signull itself - Allow block_suspend for yum running as mock_t - Allow beam.smp to manage couchdb files - Add couchdb_manage_files() - Add labeling for /var/log/php_errors.log - Allow bumblebee to stream connect to xserver - Allow bumblebee to send a signal to xserver - gnome-thumbnail to stream connect to bumblebee - Allow xkbcomp running as bumblebee_t to execute bin_t - Allow logrotate to read squid.conf - Additional rules to get docker and lxc to play well with SELinux - Allow bumbleed to connect to xserver port - Allow pegasus_openlmi_storage_t to read hwdata- Allow init_t to work on transitient and snapshot unit files - Add logging_manage_syslog_config() - Update sysnet_dns_name_resolve() to allow connect to dnssec por - Allow pegasus_openlmi_storage_t to read hwdata Resolves:#1031721 - Fix rhcs_rw_cluster_tmpfs() - Allow fenced_t to bind on zented udp port - Added policy for vmtools - Fix mirrormanager_read_lib_files() - Allow mirromanager scripts running as httpd_t to manage mirrormanager pid files - Allow ctdb to create sock files in /var/run/ctdb - Add sblim_filetrans_named_content() interface - Allow rpm scritplets to create /run/gather with correct labeling - Allow gnome keyring domains to create gnome config dirs - Dontaudit read/write to init stream socket for lsmd_plugin_t - Allow automount to read nfs link files - Allow lsm plugins to read/write lsmd stream socket - Allow certmonger to connect ldap port to make IPA CA certificate renewal working. - Add also labeling for /var/run/ctdb - Add missing labeling for /var/lib/ctdb - ALlow tuned to manage syslog.conf. Should be fixed in tuned. #1030446 - Dontaudit hypervkvp to search homedirs - Dontaudit hypervkvp to search admin homedirs - Allow hypervkvp to execute bin_t and ifconfig in the caller domain - Dontaudit xguest_t to read ABRT conf files - Add abrt_dontaudit_read_config() - Allow namespace-init to getattr on fs - Add thumb_role() also for xguest - Add filename transitions to create .spamassassin with correct labeling - Allow apache domain to read mirrormanager pid files - Allow domains to read/write shm and sem owned by mozilla_plugin_t - Allow alsactl to send a generic signal to kernel_t- Add back rpm_run() for unconfined user- Add missing files_create_var_lib_dirs() - Fix typo in ipsec.te - Allow passwd to create directory in /var/lib - Add filename trans also for event21 - Allow iptables command to read /dev/rand - Add sigkill capabilityfor ipsec_t - Add filename transitions for bcache devices - Add additional rules to create /var/log/cron by syslogd_t with correct labeling - Add give everyone full access to all key rings - Add default lvm_var_run_t label for /var/run/multipathd - Fix log labeling to have correct default label for them after logrotate - Labeled ~/.nv/GLCache as being gstreamer output - Allow nagios_system_plugin to read mrtg lib files - Add mrtg_read_lib_files() - Call rhcs_rw_cluster_tmpfs for dlm_controld - Make authconfing as named_filetrans domain - Allow virsh to connect to user process using stream socket - Allow rtas_errd to read rand/urand devices and add chown capability - Fix labeling from /var/run/net-snmpd to correct /var/run/net-snmp Resolves:#1051497 - Add also chown cap for abrt_upload_watch_t. It already has dac_override - Allow sosreport to manage rhsmcertd pid files - Add rhsmcertd_manage_pid_files() - Allow also setgid cap for rpc.gssd - Dontaudit access check for abrt on cert_t - Allow pegasus_openlmi_system providers to dbus chat with systemd-logind- Fix semanage import handling in spec file- Add default lvm_var_run_t label for /var/run/multipathd Resolves:#1051430 - Fix log labeling to have correct default label for them after logrotate - Add files_write_root_dirs - Add new openflow port label for 6653/tcp and 6633/tcp - Add xserver_manage_xkb_libs() - Label tcp/8891 as milter por - Allow gnome_manage_generic_cache_files also create cache_home_t files - Fix aide.log labeling - Fix log labeling to have correct default label for them after logrotate - Allow mysqld-safe write access on /root to make mysqld working - Allow sosreport domtrans to prelikn - Allow OpenvSwitch to connec to openflow ports - Allow NM send dgram to lldpad - Allow hyperv domains to execute shell - Allow lsmd plugins stream connect to lsmd/init - Allow sblim domains to create /run/gather with correct labeling - Allow httpd to read ldap certs - Allow cupsd to send dbus msgs to process with different MLS level - Allow bumblebee to stream connect to apmd - Allow bumblebee to run xkbcomp - Additional allow rules to get libvirt-lxc containers working with docker - Additional allow rules to get libvirt-lxc containers working with docker - Allow docker to getattr on itself - Additional rules needed for sandbox apps - Allow mozilla_plugin to set attributes on usb device if use_spice boolean enabled - httpd should be able to send signal/signull to httpd_suexec_t - Add more fixes for neturon. Domtrans to dnsmasq, iptables. Make neutron as filenamtrans domain.- Add neutron fixes- Allow sshd to write to all process levels in order to change passwd when running at a level - Allow updpwd_t to downgrade /etc/passwd file to s0, if it is not running with this range - Allow apcuspd_t to status and start the power unit file - Allow udev to manage kdump unit file - Added new interface modutils_dontaudit_exec_insmod - Allow cobbler to search dhcp_etc_t directory - systemd_systemctl needs sys_admin capability - Allow sytemd_tmpfiles_t to delete all directories - passwd to create gnome-keyring passwd socket - Add missing zabbix_var_lib_t type - Fix filename trans for zabbixsrv in zabbix.te - Allow fprintd_t to send syslog messages - Add zabbix_var_lib_t for /var/lib/zabbixsrv, also allow zabix to connect to smtp port - Allow mozilla plugin to chat with policykit, needed for spice - Allow gssprozy to change user and gid, as well as read user keyrings - Label upgrades directory under /var/www as httpd_sys_rw_content_t, add other filetrans rules to label content correctly - Allow polipo to connect to http_cache_ports - Allow cron jobs to manage apache var lib content - Allow yppassword to manage the passwd_file_t - Allow showall_t to send itself signals - Allow cobbler to restart dhcpc, dnsmasq and bind services - Allow certmonger to manage home cert files - Add userdom filename trans for user mail domains - Allow apcuspd_t to status and start the power unit file - Allow cgroupdrulesengd to create content in cgoups directories - Allow smbd_t to signull cluster - Allow gluster daemon to create fifo files in glusterd_brick_t and sock_file in glusterd_var_lib_t - Add label for /var/spool/cron.aquota.user - Allow sandbox_x domains to use work with the mozilla plugin semaphore - Added new policy for speech-dispatcher - Added dontaudit rule for insmod_exec_t in rasdaemon policy - Updated rasdaemon policy - Allow system_mail_t to transition to postfix_postdrop_t - Clean up mirrormanager policy - Allow virt_domains to read cert files, needs backport to RHEL7 - Allow sssd to read systemd_login_var_run_t - Allow irc_t to execute shell and bin-t files: - Add new access for mythtv - Allow rsync_t to manage all non auth files - allow modemmanger to read /dev/urand - Allow sandbox apps to attempt to set and get capabilties- Add labeling for /var/lib/servicelog/servicelog.db-journal - Add support for freeipmi port - Add sysadm_u_default_contexts - Make new type to texlive files in homedir - Allow subscription-manager running as sosreport_t to manage rhsmcertd - Additional fixes for docker.te - Remove ability to do mount/sys_admin by default in virt_sandbox domains - New rules required to run docker images within libivrt - Add label for ~/.cvsignore - Change mirrormanager to be run by cron - Add mirrormanager policy - Fixed bumblebee_admin() and mip6d_admin() - Add log support for sensord - Fix typo in docker.te - Allow amanda to do backups over UDP - Allow bumblebee to read /etc/group and clean up bumblebee.te - type transitions with a filename not allowed inside conditionals - Don't allow virt-sandbox tools to use netlink out of the box, needs back port to RHEL7 - Make new type to texlive files in homedir- Allow freeipmi_ipmidetectd_t to use freeipmi port - Update freeipmi_domain_template() - Allow journalctl running as ABRT to read /run/log/journal - Allow NM to read dispatcher.d directory - Update freeipmi policy - Type transitions with a filename not allowed inside conditionals - Allow tor to bind to hplip port - Make new type to texlive files in homedir - Allow zabbix_agent to transition to dmidecode - Add rules for docker - Allow sosreport to send signull to unconfined_t - Add virt_noatsecure and virt_rlimitinh interfaces - Fix labeling in thumb.fc to add support for /usr/lib64/tumbler-1/tumblerddd support for freeipmi port - Add sysadm_u_default_contexts - Add logging_read_syslog_pid() - Fix userdom_manage_home_texlive() interface - Make new type to texlive files in homedir - Add filename transitions for /run and /lock links - Allow virtd to inherit rlimit information Resolves:#975358- Change labeling for /usr/libexec/nm-dispatcher.action to NetworkManager_exec_t Resolves:#1039879 - Add labeling for /usr/lib/systemd/system/mariadb.service - Allow hyperv_domain to read sysfs - Fix ldap_read_certs() interface to allow acess also link files - Add support for /usr/libexec/pegasus/cmpiLMI_Journald-cimprovagt - Allow tuned to run modprobe - Allow portreserve to search /var/lib/sss dir - Add SELinux support for the teamd package contains team network device control daemon. - Dontaudit access check on /proc for bumblebee - Bumblebee wants to load nvidia modules - Fix rpm_named_filetrans_log_files and wine.te - Add conman policy for rawhide - DRM master and input event devices are used by the TakeDevice API - Clean up bumblebee policy - Update pegasus_openlmi_storage_t policy - Add freeipmi_stream_connect() interface - Allow logwatch read madm.conf to support RAID setup - Add raid_read_conf_files() interface - Allow up2date running as rpm_t create up2date log file with rpm_log_t labeling - add rpm_named_filetrans_log_files() interface - Allow dkim-milter to create files/dirs in /tmp - update freeipmi policy - Add policy for freeipmi services - Added rdisc_admin and rdisc_systemctl interfaces - opensm policy clean up - openwsman policy clean up - ninfod policy clean up - Added new policy for ninfod - Added new policy for openwsman - Added rdisc_admin and rdisc_systemctl interfaces - Fix kernel_dontaudit_access_check_proc() - Add support for /dev/uhid - Allow sulogin to get the attributes of initctl and sys_admin cap - Add kernel_dontaudit_access_check_proc() - Fix dev_rw_ipmi_dev() - Fix new interface in devices.if - DRM master and input event devices are used by the TakeDevice API - add dev_rw_inherited_dri() and dev_rw_inherited_input_dev() - Added support for default conman port - Add interfaces for ipmi devices- Allow sosreport to send a signal to ABRT - Add proper aliases for pegasus_openlmi_service_exec_t and pegasus_openlmi_service_t - Label /usr/sbin/htcacheclean as httpd_exec_t Resolves:#1037529 - Added support for rdisc unit file - Add antivirus_db_t labeling for /var/lib/clamav-unofficial-sigs - Allow runuser running as logrotate connections to system DBUS - Label bcache devices as fixed_disk_device_t - Allow systemctl running in ipsec_mgmt_t to access /usr/lib/systemd/system/ipsec.service - Label /usr/lib/systemd/system/ipsec.service as ipsec_mgmt_unit_file_t- Add back setpgid/setsched for sosreport_t- Added fix for clout_init to transition to rpm_script_t (dwalsh@redhat.com)- Dontaudit openshift domains trying to use rawip_sockets, this is caused by a bad check in the kernel. - Allow git_system_t to read git_user_content if the git_system_enable_homedirs boolean is turned on - Add lsmd_plugin_t for lsm plugins - Allow dovecot-deliver to search mountpoints - Add labeling for /etc/mdadm.conf - Allow opelmi admin providers to dbus chat with init_t - Allow sblim domain to read /dev/urandom and /dev/random - Allow apmd to request the kernel load modules - Add glusterd_brick_t type - label mate-keyring-daemon with gkeyringd_exec_t - Add plymouthd_create_log() - Dontaudit leaks from openshift domains into mail domains, needs back port to RHEL6 - Allow sssd to request the kernel loads modules - Allow gpg_agent to use ssh-add - Allow gpg_agent to use ssh-add - Dontaudit access check on /root for myslqd_safe_t - Allow ctdb to getattr on al filesystems - Allow abrt to stream connect to syslog - Allow dnsmasq to list dnsmasq.d directory - Watchdog opens the raw socket - Allow watchdog to read network state info - Dontaudit access check on lvm lock dir - Allow sosreport to send signull to setroubleshootd - Add setroubleshoot_signull() interface - Fix ldap_read_certs() interface - Allow sosreport all signal perms - Allow sosreport to run systemctl - Allow sosreport to dbus chat with rpm - Add glusterd_brick_t files type - Allow zabbix_agentd to read all domain state - Clean up rtas.if - Allow smoltclient to execute ldconfig - Allow sosreport to request the kernel to load a module - Fix userdom_confined_admin_template() - Add back exec_content boolean for secadm, logadm, auditadm - Fix files_filetrans_system_db_named_files() interface - Allow sulogin to getattr on /proc/kcore - Add filename transition also for servicelog.db-journal - Add files_dontaudit_access_check_root() - Add lvm_dontaudit_access_check_lock() interface- Allow watchdog to read /etc/passwd - Allow browser plugins to connect to bumblebee - New policy for bumblebee and freqset - Add new policy for mip6d daemon - Add new policy for opensm daemon - Allow condor domains to read/write condor_master udp_socket - Allow openshift_cron_t to append to openshift log files, label /var/log/openshift - Add back file_pid_filetrans for /var/run/dlm_controld - Allow smbd_t to use inherited tmpfs content - Allow mcelog to use the /dev/cpu device - sosreport runs rpcinfo - sosreport runs subscription-manager - Allow staff_t to run frequency command - Allow systemd_tmpfiles to relabel log directories - Allow staff_t to read xserver_log file - Label hsperfdata_root as tmp_t- More sosreport fixes to make ABRT working- Fix files_dontaudit_unmount_all_mountpoints() - Add support for 2608-2609 tcp/udp ports - Should allow domains to lock the terminal device - More fixes for user config files to make crond_t running in userdomain - Add back disable/reload/enable permissions for system class - Fix manage_service_perms macro - We need to require passwd rootok - Fix zebra.fc - Fix dnsmasq_filetrans_named_content() interface - Allow all sandbox domains create content in svirt_home_t - Allow zebra domains also create zebra_tmp_t files in /tmp - Add support for new zebra services:isisd,babeld. Add systemd support for zebra services. - Fix labeling on neutron and remove transition to iconfig_t - abrt needs to read mcelog log file - Fix labeling on dnsmasq content - Fix labeling on /etc/dnsmasq.d - Allow glusterd to relabel own lib files - Allow sandbox domains to use pam_rootok, and dontaudit attempts to unmount file systems, this is caused by a bug in systemd - Allow ipc_lock for abrt to run journalctl- Fix config.tgz- Fix passenger_stream_connect interface - setroubleshoot_fixit wants to read network state - Allow procmail_t to connect to dovecot stream sockets - Allow cimprovagt service providers to read network states - Add labeling for /var/run/mariadb - pwauth uses lastlog() to update system's lastlog - Allow account provider to read login records - Add support for texlive2013 - More fixes for user config files to make crond_t running in userdomain - Add back disable/reload/enable permissions for system class - Fix manage_service_perms macro - Allow passwd_t to connect to gnome keyring to change password - Update mls config files to have cronjobs in the user domains - Remove access checks that systemd does not actually do- Add support for yubikey in homedir - Add support for upd/3052 port - Allow apcupsd to use PowerChute Network Shutdown - Allow lsmd to execute various lsmplugins - Add labeling also for /etc/watchdog\.d where are watchdog scripts located too - Update gluster_export_all_rw boolean to allow relabel all base file types - Allow x86_energy_perf tool to modify the MSR - Fix /var/lib/dspam/data labeling- Add files_relabel_base_file_types() interface - Allow netlabel-config to read passwd - update gluster_export_all_rw boolean to allow relabel all base file types caused by lsetxattr() - Allow x86_energy_perf tool to modify the MSR - Fix /var/lib/dspam/data labeling - Allow pegasus to domtrans to mount_t - Add labeling for unconfined scripts in /usr/libexec/watchdog/scripts - Add support for unconfined watchdog scripts - Allow watchdog to manage own log files- Add label only for redhat.repo instead of /etc/yum.repos.d. But probably we will need to switch for the directory. - Label /etc/yum.repos.d as system_conf_t - Use sysnet_filetrans_named_content in udev.te instead of generic transition for net_conf_t - Allow dac_override for sysadm_screen_t - Allow init_t to read ipsec_conf_t as we had it for initrc_t. Needed by ipsec unit file. - Allow netlabel-config to read meminfo - Add interface to allow docker to mounton file_t - Add new interface to exec unlabeled files - Allow lvm to use docker semaphores - Setup transitons for .xsessions-errors.old - Change labels of files in /var/lib/*/.ssh to transition properly - Allow staff_t and user_t to look at logs using journalctl - pluto wants to manage own log file - Allow pluto running as ipsec_t to create pluto.log - Fix alias decl in corenetwork.te.in - Add support for fuse.glusterfs - Allow dmidecode to read/write /run/lock/subsys/rhsmcertd - Allow rhsmcertd to manage redhat.repo which is now labeled as system.conf. Allow rhsmcertd to manage all log files. - Additional access for docker - Added more rules to sblim policy - Fix kdumpgui_run_bootloader boolean - Allow dspam to connect to lmtp port - Included sfcbd service into sblim policy - rhsmcertd wants to manaage /etc/pki/consumer dir - Add kdumpgui_run_bootloader boolean - Add support for /var/cache/watchdog - Remove virt_domain attribute for virt_qemu_ga_unconfined_t - Fixes for handling libvirt containes - Dontaudit attempts by mysql_safe to write content into / - Dontaudit attempts by system_mail to modify network config - Allow dspam to bind to lmtp ports - Add new policy to allow staff_t and user_t to look at logs using journalctl - Allow apache cgi scripts to list sysfs - Dontaudit attempts to write/delete user_tmp_t files - Allow all antivirus domains to manage also own log dirs - Allow pegasus_openlmi_services_t to stream connect to sssd_t- Add missing permission checks for nscd- Fix alias decl in corenetwork.te.in - Add support for fuse.glusterfs - Add file transition rules for content created by f5link - Rename quantum_port information to neutron - Allow all antivirus domains to manage also own log dirs - Rename quantum_port information to neutron - Allow pegasus_openlmi_services_t to stream connect to sssd_t- Allow sysadm_t to read login information - Allow systemd_tmpfiles to setattr on var_log_t directories - Udpdate Makefile to include systemd_contexts - Add systemd_contexts - Add fs_exec_hugetlbfs_files() interface - Add daemons_enable_cluster_mode boolean - Fix rsync_filetrans_named_content() - Add rhcs_read_cluster_pid_files() interface - Update rhcs.if with additional interfaces from RHEL6 - Fix rhcs_domain_template() to not create run dirs with cluster_var_run_t - Allow glusterd_t to mounton glusterd_tmp_t - Allow glusterd to unmout al filesystems - Allow xenstored to read virt config - Add label for swift_server.lock and make add filetrans_named_content to make sure content gets created with the correct label - Allow mozilla_plugin_t to mmap hugepages as an executable- Add back userdom_security_admin_template() interface and use it for sysadm_t if sysadm_secadm.pp- Allow sshd_t to read openshift content, needs backport to RHEL6.5 - Label /usr/lib64/sasl2/libsasldb.so.3.0.0 as textrel_shlib_t - Make sur kdump lock is created with correct label if kdumpctl is executed - gnome interface calls should always be made within an optional_block - Allow syslogd_t to connect to the syslog_tls port - Add labeling for /var/run/charon.ctl socket - Add kdump_filetrans_named_content() - Allo setpgid for fenced_t - Allow setpgid and r/w cluster tmpfs for fenced_t - gnome calls should always be within optional blocks - wicd.pid should be labeled as networkmanager_var_run_t - Allow sys_resource for lldpad- Add rtas policy- Allow mailserver_domains to manage and transition to mailman data - Dontaudit attempts by mozilla plugin to relabel content, caused by using mv and cp commands - Allow mailserver_domains to manage and transition to mailman data - Allow svirt_domains to read sysctl_net_t - Allow thumb_t to use tmpfs inherited from the user - Allow mozilla_plugin to bind to the vnc port if running with spice - Add new attribute to discover confined_admins and assign confined admin to it - Fix zabbix to handle attributes in interfaces - Fix zabbix to read system states for all zabbix domains - Fix piranha_domain_template() - Allow ctdbd to create udp_socket. Allow ndmbd to access ctdbd var files. - Allow lldpad sys_rouserce cap due to #986870 - Allow dovecot-auth to read nologin - Allow openlmi-networking to read /proc/net/dev - Allow smsd_t to execute scripts created on the fly labeled as smsd_spool_t - Add zabbix_domain attribute for zabbix domains to treat them together - Add labels for zabbix-poxy-* (#1018221) - Update openlmi-storage policy to reflect #1015067 - Back port piranha tmpfs fixes from RHEL6 - Update httpd_can_sendmail boolean to allow read/write postfix spool maildrop - Add postfix_rw_spool_maildrop_files interface - Call new userdom_admin_user_templat() also for sysadm_secadm.pp - Fix typo in userdom_admin_user_template() - Allow SELinux users to create coolkeypk11sE-Gate in /var/cache/coolkey - Add new attribute to discover confined_admins - Fix labeling for /etc/strongswan/ipsec.d - systemd_logind seems to pass fd to anyone who dbus communicates with it - Dontaudit leaked write descriptor to dmesg- Activate motion policy- Fix gnome_read_generic_data_home_files() - allow openshift_cgroup_t to read/write inherited openshift file types - Remove httpd_cobbler_content * from cobbler_admin interface - Allow svirt sandbox domains to setattr on chr_file and blk_file svirt_sandbox_file_t, so sshd will work within a container - Allow httpd_t to read also git sys content symlinks - Allow init_t to read gnome home data - Dontaudit setroubleshoot_fixit_t execmem, since it does not seem to really need it. - Allow virsh to execute systemctl - Fix for nagios_services plugins - add type defintion for ctdbd_var_t - Add support for /var/ctdb. Allow ctdb block_suspend and read /etc/passwd file - Allow net_admin/netlink_socket all hyperv_domain domains - Add labeling for zarafa-search.log and zarafa-search.pid - Fix hypervkvp.te - Fix nscd_shm_use() - Add initial policy for /usr/sbin/hypervvssd in hypervkvp policy which should be renamed to hyperv. Also add hyperv_domain attribute to treat these HyperV services. - Add hypervkvp_unit_file_t type - Fix logging policy - Allow syslog to bind to tls ports - Update labeling for /dev/cdc-wdm - Allow to su_domain to read init states - Allow init_t to read gnome home data - Make sure if systemd_logind creates nologin file with the correct label - Clean up ipsec.te- Add auth_exec_chkpwd interface - Fix port definition for ctdb ports - Allow systemd domains to read /dev/urand - Dontaudit attempts for mozilla_plugin to append to /dev/random - Add label for /var/run/charon.* - Add labeling for /usr/lib/systemd/system/lvm2.*dd policy for motion service - Fix for nagios_services plugins - Fix some bugs in zoneminder policy - add type defintion for ctdbd_var_t - Add support for /var/ctdb. Allow ctdb block_suspend and read /etc/passwd file - Allow net_admin/netlink_socket all hyperv_domain domains - Add labeling for zarafa-search.log and zarafa-search.pid - glusterd binds to random unreserved ports - Additional allow rules found by testing glusterfs - apcupsd needs to send a message to all users on the system so needs to look them up - Fix the label on ~/.juniper_networks - Dontaudit attempts for mozilla_plugin to append to /dev/random - Allow polipo_daemon to connect to flash ports - Allow gssproxy_t to create replay caches - Fix nscd_shm_use() - Add initial policy for /usr/sbin/hypervvssd in hypervkvp policy which should be renamed to hyperv. Also add hyperv_domain attribute to treat these HyperV services. - Add hypervkvp_unit_file_t type- init reload from systemd_localed_t - Allow domains that communicate with systemd_logind_sessions to use systemd_logind_t fd - Allow systemd_localed_t to ask systemd to reload the locale. - Add systemd_runtime_unit_file_t type for unit files that systemd creates in memory - Allow readahead to read /dev/urand - Fix lots of avcs about tuned - Any file names xenstored in /var/log should be treated as xenstored_var_log_t - Allow tuned to inderact with hugepages - Allow condor domains to list etc rw dirs- Fix nscd_shm_use() - Add initial policy for /usr/sbin/hypervvssd in hypervkvp policy which should be renamed to hyperv. Also add hyperv_domain attribute to treat these HyperV services. - Add hypervkvp_unit_file_t type - Add additional fixes forpegasus_openlmi_account_t - Allow mdadm to read /dev/urand - Allow pegasus_openlmi_storage_t to create mdadm.conf and write it - Add label/rules for /etc/mdadm.conf - Allow pegasus_openlmi_storage_t to transition to fsadm_t - Fixes for interface definition problems - Dontaudit dovecot-deliver to gettatr on all fs dirs - Allow domains to search data_home_t directories - Allow cobblerd to connect to mysql - Allow mdadm to r/w kdump lock files - Add support for kdump lock files - Label zarafa-search as zarafa-indexer - Openshift cgroup wants to read /etc/passwd - Add new sandbox domains for kvm - Allow mpd to interact with pulseaudio if mpd_enable_homedirs is turned on - Fix labeling for /usr/lib/systemd/system/lvm2.* - Add labeling for /usr/lib/systemd/system/lvm2.* - Fix typos to get a new build. We should not cover filename trans rules to prevent duplicate rules - Add sshd_keygen_t policy for sshd-keygen - Fix alsa_home_filetrans interface name and definition - Allow chown for ssh_keygen_t - Add fs_dontaudit_getattr_all_dirs() - Allow init_t to manage etc_aliases_t and read xserver_var_lib_t and chrony keys - Fix up patch to allow systemd to manage home content - Allow domains to send/recv unlabeled traffic if unlabelednet.pp is enabled - Allow getty to exec hostname to get info - Add systemd_home_t for ~/.local/share/systemd directory- Fix lxc labels in config.tgz- Fix labeling for /usr/libexec/kde4/kcmdatetimehelper - Allow tuned to search all file system directories - Allow alsa_t to sys_nice, to get top performance for sound management - Add support for MySQL/PostgreSQL for amavis - Allow openvpn_t to manage openvpn_var_log_t files. - Allow dirsrv_t to create tmpfs_t directories - Allow dirsrv to create dirs in /dev/shm with dirsrv_tmpfs label - Dontaudit leaked unix_stream_sockets into gnome keyring - Allow telepathy domains to inhibit pipes on telepathy domains - Allow cloud-init to domtrans to rpm - Allow abrt daemon to manage abrt-watch tmp files - Allow abrt-upload-watcher to search /var/spool directory - Allow nsswitch domains to manage own process key - Fix labeling for mgetty.* logs - Allow systemd to dbus chat with upower - Allow ipsec to send signull to itself - Allow setgid cap for ipsec_t - Match upstream labeling- Do not build sanbox pkg on MLS- wine_tmp is no longer needed - Allow setroubleshoot to look at /proc - Allow telepathy domains to dbus with systemd logind - Fix handling of fifo files of rpm - Allow mozilla_plugin to transition to itself - Allow certwatch to write to cert_t directories - New abrt application - Allow NetworkManager to set the kernel scheduler - Make wine_domain shared by all wine domains - Allow mdadm_t to read images labeled svirt_image_t - Allow amanda to read /dev/urand - ALlow my_print_default to read /dev/urand - Allow mdadm to write to kdumpctl fifo files - Allow nslcd to send signull to itself - Allow yppasswd to read /dev/urandom - Fix zarafa_setrlimit - Add support for /var/lib/php/wsdlcache - Add zarafa_setrlimit boolean - Allow fetchmail to send mails - Add additional alias for user_tmp_t because wine_tmp_t is no longer used - More handling of ther kernel keyring required by kerberos - New privs needed for init_t when running without transition to initrc_t over bin_t, and without unconfined domain installed- Dontaudit attempts by sosreport to read shadow_t - Allow browser sandbox plugins to connect to cups to print - Add new label mpd_home_t - Label /srv/www/logs as httpd_log_t - Add support for /var/lib/php/wsdlcache - Add zarafa_setrlimit boolean - Allow fetchmail to send mails - Add labels for apache logs under miq package - Allow irc_t to use tcp sockets - fix labels in puppet.if - Allow tcsd to read utmp file - Allow openshift_cron_t to run ssh-keygen in ssh_keygen_t to access host keys - Define svirt_socket_t as a domain_type - Take away transition from init_t to initrc_t when executing bin_t, allow init_t to run chk_passwd_t - Fix label on pam_krb5 helper apps- Allow ldconfig to write to kdumpctl fifo files - allow neutron to connect to amqp ports - Allow kdump_manage_crash to list the kdump_crash_t directory - Allow glance-api to connect to amqp port - Allow virt_qemu_ga_t to read meminfo - Add antivirus_home_t type for antivirus date in HOMEDIRS - Allow mpd setcap which is needed by pulseaudio - Allow smbcontrol to create content in /var/lib/samba - Allow mozilla_exec_t to be used as a entrypoint to mozilla_domtrans_spec - Add additional labeling for qemu-ga/fsfreeze-hook.d scripts - amanda_exec_t needs to be executable file - Allow block_suspend cap for samba-net - Allow apps that read ipsec_mgmt_var_run_t to search ipsec_var_run_t - Allow init_t to run crash utility - Treat usr_t just like bin_t for transitions and executions - Add port definition of pka_ca to port 829 for openshift - Allow selinux_store to use symlinks- Allow block_suspend cap for samba-net - Allow t-mission-control to manage gabble cache files - Allow nslcd to read /sys/devices/system/cpu - Allow selinux_store to use symlinks- Allow xdm_t to transition to itself - Call neutron interfaces instead of quantum - Allow init to change targed role to make uncofined services (xrdp which now has own systemd unit file) working. We want them to have in unconfined_t - Make sure directories in /run get created with the correct label - Make sure /root/.pki gets created with the right label - try to remove labeling for motion from zoneminder_exec_t to bin_t - Allow inetd_t to execute shell scripts - Allow cloud-init to read all domainstate - Fix to use quantum port - Add interface netowrkmanager_initrc_domtrans - Fix boinc_execmem - Allow t-mission-control to read gabble cache home - Add labeling for ~/.cache/telepathy/avatars/gabble - Allow memcache to read sysfs data - Cleanup antivirus policy and add additional fixes - Add boolean boinc_enable_execstack - Add support for couchdb in rabbitmq policy - Add interface couchdb_search_pid_dirs - Allow firewalld to read NM state - Allow systemd running as git_systemd to bind git port - Fix mozilla_plugin_rw_tmpfs_files()- Split out rlogin ports from inetd - Treat files labeld as usr_t like bin_t when it comes to transitions - Allow staff_t to read login config - Allow ipsec_t to read .google authenticator data - Allow systemd running as git_systemd to bind git port - Fix mozilla_plugin_rw_tmpfs_files() - Call the correct interface - corenet_udp_bind_ktalkd_port() - Allow all domains that can read gnome_config to read kde config - Allow sandbox domain to read/write mozilla_plugin_tmpfs_t so pulseaudio will work - Allow mdadm to getattr any file system - Allow a confined domain to executes mozilla_exec_t via dbus - Allow cupsd_lpd_t to bind to the printer port - Dontaudit attempts to bind to ports < 1024 when nis is turned on - Allow apache domain to connect to gssproxy socket - Allow rlogind to bind to the rlogin_port - Allow telnetd to bind to the telnetd_port - Allow ktalkd to bind to the ktalkd_port - Allow cvs to bind to the cvs_port- Cleanup related to init_domain()+inetd_domain fixes - Use just init_domain instead of init_daemon_domain in inetd_core_service_domain - svirt domains neeed to create kobject_uevint_sockets - Lots of new access required for sosreport - Allow tgtd_t to connect to isns ports - Allow init_t to transition to all inetd domains: - openct needs to be able to create netlink_object_uevent_sockets - Dontaudit leaks into ldconfig_t - Dontaudit su domains getattr on /dev devices, move su domains to attribute based calls - Move kernel_stream_connect into all Xwindow using users - Dontaudit inherited lock files in ifconfig o dhcpc_t- Also sock_file trans rule is needed in lsm - Fix labeling for fetchmail pid files/dirs - Add additional fixes for abrt-upload-watch - Fix polipo.te - Fix transition rules in asterisk policy - Add fowner capability to networkmanager policy - Allow polipo to connect to tor ports - Cleanup lsmd.if - Cleanup openhpid policy - Fix kdump_read_crash() interface - Make more domains as init domain - Fix cupsd.te - Fix requires in rpm_rw_script_inherited_pipes - Fix interfaces in lsm.if - Allow munin service plugins to manage own tmpfs files/dirs - Allow virtd_t also relabel unix stream sockets for virt_image_type - Make ktalk as init domain - Fix to define ktalkd_unit_file_t correctly - Fix ktalk.fc - Add systemd support for talk-server - Allow glusterd to create sock_file in /run - Allow xdm_t to delete gkeyringd_tmp_t files on logout - Add fixes for hypervkvp policy - Add logwatch_can_sendmail boolean - Allow mysqld_safe_t to handle also symlinks in /var/log/mariadb - Allow xdm_t to delete gkeyringd_tmp_t files on logout- Add selinux-policy-sandbox pkg0 - Allow rhsmcertd to read init state - Allow fsetid for pkcsslotd - Fix labeling for /usr/lib/systemd/system/pkcsslotd.service - Allow fetchmail to create own pid with correct labeling - Fix rhcs_domain_template() - Allow roles which can run mock to read mock lib files to view results - Allow rpcbind to use nsswitch - Fix lsm.if summary - Fix collectd_t can read /etc/passwd file - Label systemd unit files under dracut correctly - Add support for pam_mount to mount user's encrypted home When a user logs in and logs out using ssh - Add support for .Xauthority-n - Label umount.crypt as lvm_exec_t - Allow syslogd to search psad lib files - Allow ssh_t to use /dev/ptmx - Make sure /run/pluto dir is created with correct labeling - Allow syslog to run shell and bin_t commands - Allow ip to relabel tun_sockets - Allow mount to create directories in files under /run - Allow processes to use inherited fifo files- Add policy for lsmd - Add support for /var/log/mariadb dir and allow mysqld_safe to list this directory - Update condor_master rules to allow read system state info and allow logging - Add labeling for /etc/condor and allow condor domain to write it (bug) - Allow condor domains to manage own logs - Allow glusterd to read domains state - Fix initial hypervkvp policy - Add policy for hypervkvpd - Fix redis.if summary- Allow boinc to connect to @/tmp/.X11-unix/X0 - Allow beam.smp to connect to tcp/5984 - Allow named to manage own log files - Add label for /usr/libexec/dcc/start-dccifd and domtrans to dccifd_t - Add virt_transition_userdomain boolean decl - Allow httpd_t to sendto unix_dgram sockets on its children - Allow nova domains to execute ifconfig - bluetooth wants to create fifo_files in /tmp - exim needs to be able to manage mailman data - Allow sysstat to getattr on all file systems - Looks like bluetoothd has moved - Allow collectd to send ping packets - Allow svirt_lxc domains to getpgid - Remove virt-sandbox-service labeling as virsh_exec_t, since it no longer does virsh_t stuff - Allow frpintd_t to read /dev/urandom - Allow asterisk_t to create sock_file in /var/run - Allow usbmuxd to use netlink_kobject - sosreport needs to getattr on lots of devices, and needs access to netlink_kobject_uevent_socket - More cleanup of svirt_lxc policy - virtd_lxc_t now talks to dbus - Dontaudit leaked ptmx_t - Allow processes to use inherited fifo files - Allow openvpn_t to connect to squid ports - Allow prelink_cron_system_t to ask systemd to reloaddd miscfiles_dontaudit_access_check_cert() - Allow ssh_t to use /dev/ptmx - Make sure /run/pluto dir is created with correct labeling - Allow syslog to run shell and bin_t commands - Allow ip to relabel tun_sockets - Allow mount to create directories in files under /run - Allow processes to use inherited fifo files - Allow user roles to connect to the journal socket- selinux_set_enforce_mode needs to be used with type - Add append to the dontaudit for unix_stream_socket of xdm_t leak - Allow xdm_t to create symlinks in log direcotries - Allow login programs to read afs config - Label 10933 as a pop port, for dovecot - New policy to allow selinux_server.py to run as semanage_t as a dbus service - Add fixes to make netlabelctl working on MLS - AVCs required for running sepolicy gui as staff_t - Dontaudit attempts to read symlinks, sepolicy gui is likely to cause this type of AVC - New dbus server to be used with new gui - After modifying some files in /etc/mail, I saw this needed on the next boot - Loading a vm from /usr/tmp with virt-manager - Clean up oracleasm policy for Fedora - Add oracleasm policy written by rlopez@redhat.com - Make postfix_postdrop_t as mta_agent to allow domtrans to system mail if it is executed by apache - Add label for /var/crash - Allow fenced to domtrans to sanclok_t - Allow nagios to manage nagios spool files - Make tfptd as home_manager - Allow kdump to read kcore on MLS system - Allow mysqld-safe sys_nice/sys_resource caps - Allow apache to search automount tmp dirs if http_use_nfs is enabled - Allow crond to transition to named_t, for use with unbound - Allow crond to look at named_conf_t, for unbound - Allow mozilla_plugin_t to transition its home content - Allow dovecot_domain to read all system and network state - Allow httpd_user_script_t to call getpw - Allow semanage to read pid files - Dontaudit leaked file descriptors from user domain into thumb - Make PAM authentication working if it is enabled in ejabberd - Add fixes for rabbit to fix ##992920,#992931 - Allow glusterd to mount filesystems - Loading a vm from /usr/tmp with virt-manager - Trying to load a VM I got an AVC from devicekit_disk for loopcontrol device - Add fix for pand service - shorewall touches own log - Allow nrpe to list /var - Mozilla_plugin_roles can not be passed into lpd_run_lpr - Allow afs domains to read afs_config files - Allow login programs to read afs config - Allow virt_domain to read virt_var_run_t symlinks - Allow smokeping to send its process signals - Allow fetchmail to setuid - Add kdump_manage_crash() interface - Allow abrt domain to write abrt.socket- Add more aliases in pegasus.te - Add more fixes for *_admin interfaces - Add interface fixes - Allow nscd to stream connect to nmbd - Allow gnupg apps to write to pcscd socket - Add more fixes for openlmi provides. Fix naming and support for additionals - Allow fetchmail to resolve host names - Allow firewalld to interact also with lnk files labeled as firewalld_etc_rw_t - Add labeling for cmpiLMI_Fan-cimprovagt - Allow net_admin for glusterd - Allow telepathy domain to create dconf with correct labeling in /home/userX/.cache/ - Add pegasus_openlmi_system_t - Fix puppet_domtrans_master() to make all puppet calling working in passenger.te - Fix corecmd_exec_chroot() - Fix logging_relabel_syslog_pid_socket interface - Fix typo in unconfineduser.te - Allow system_r to access unconfined_dbusd_t to run hp_chec- Allow xdm_t to act as a dbus client to itsel - Allow fetchmail to resolve host names - Allow gnupg apps to write to pcscd socket - Add labeling for cmpiLMI_Fan-cimprovagt - Allow net_admin for glusterd - Allow telepathy domain to create dconf with correct labeling in /home/userX/.cache/ - Add pegasus_openlmi_system_t - Fix puppet_domtrans_master() to make all puppet calling working in passenger.te -httpd_t does access_check on certs- Add support for cmpiLMI_Service-cimprovagt - Allow pegasus domtrans to rpm_t to make pycmpiLMI_Software-cimprovagt running as rpm_t - Label pycmpiLMI_Software-cimprovagt as rpm_exec_t - Add support for pycmpiLMI_Storage-cimprovagt - Add support for cmpiLMI_Networking-cimprovagt - Allow system_cronjob_t to create user_tmpfs_t to make pulseaudio working - Allow virtual machines and containers to run as user doains, needed for virt-sandbox - Allow buglist.cgi to read cpu info- Allow systemd-tmpfile to handle tmp content in print spool dir - Allow systemd-sysctl to send system log messages - Add support for RTP media ports and fmpro-internal - Make auditd working if audit is configured to perform SINGLE action on disk error - Add interfaces to handle systemd units - Make systemd-notify working if pcsd is used - Add support for netlabel and label /usr/sbin/netlabelctl as iptables_exec_t - Instead of having all unconfined domains get all of the named transition rules, - Only allow unconfined_t, init_t, initrc_t and rpm_script_t by default. - Add definition for the salt ports - Allow xdm_t to create link files in xdm_var_run_t - Dontaudit reads of blk files or chr files leaked into ldconfig_t - Allow sys_chroot for useradd_t - Allow net_raw cap for ipsec_t - Allow sysadm_t to reload services - Add additional fixes to make strongswan working with a simple conf - Allow sysadm_t to enable/disable init_t services - Add additional glusterd perms - Allow apache to read lnk files in the /mnt directory - Allow glusterd to ask the kernel to load a module - Fix description of ftpd_use_fusefs boolean - Allow svirt_lxc_net_t to sys_chroot, modify policy to tighten up svirt_lxc_domain capabilties and process controls, but add them to svirt_lxc_net_t - Allow glusterds to request load a kernel module - Allow boinc to stream connect to xserver_t - Allow sblim domains to read /etc/passwd - Allow mdadm to read usb devices - Allow collectd to use ping plugin - Make foghorn working with SNMP - Allow sssd to read ldap certs - Allow haproxy to connect to RTP media ports - Add additional trans rules for aide_db - Add labeling for /usr/lib/pcsd/pcsd - Add labeling for /var/log/pcsd - Add support for pcs which is a corosync and pacemaker configuration tool- Label /var/lib/ipa/pki-ca/publish as pki_tomcat_cert_t - Add labeling for /usr/libexec/kde4/polkit-kde-authentication-agent-1 - Allow all domains that can domtrans to shutdown, to start the power services script to shutdown - consolekit needs to be able to shut down system - Move around interfaces - Remove nfsd_rw_t and nfsd_ro_t, they don't do anything - Add additional fixes for rabbitmq_beam to allow getattr on mountpoints - Allow gconf-defaults-m to read /etc/passwd - Fix pki_rw_tomcat_cert() interface to support lnk_files- Add support for gluster ports - Make sure that all keys located in /etc/ssh/ are labeled correctly - Make sure apcuspd lock files get created with the correct label - Use getcap in gluster.te - Fix gluster policy - add additional fixes to allow beam.smp to interact with couchdb files - Additional fix for #974149 - Allow gluster to user gluster ports - Allow glusterd to transition to rpcd_t and add additional fixes for #980683 - Allow tgtd working when accessing to the passthrough device - Fix labeling for mdadm unit files- Add mdadm fixes- Fix definition of sandbox.disabled to sandbox.pp.disabled- Allow mdamd to execute systemctl - Allow mdadm to read /dev/kvm - Allow ipsec_mgmt_t to read l2tpd pid content- Allow nsd_t to read /dev/urand - Allow mdadm_t to read framebuffer - Allow rabbitmq_beam_t to read process info on rabbitmq_epmd_t - Allow mozilla_plugin_config_t to create tmp files - Cleanup openvswitch policy - Allow mozilla plugin to getattr on all executables - Allow l2tpd_t to create fifo_files in /var/run - Allow samba to touch/manage fifo_files or sock_files in a samba_share_t directory - Allow mdadm to connecto its own unix_stream_socket - FIXME: nagios changed locations to /log/nagios which is wrong. But we need to have this workaround for now. - Allow apache to access smokeping pid files - Allow rabbitmq_beam_t to getattr on all filesystems - Add systemd support for iodined - Allow nup_upsdrvctl_t to execute its entrypoint - Allow fail2ban_client to write to fail2ban_var_run_t, Also allow it to use nsswitch - add labeling for ~/.cache/libvirt-sandbox - Add interface to allow domains transitioned to by confined users to send sigchld to screen program - Allow sysadm_t to check the system status of files labeled etc_t, /etc/fstab - Allow systemd_localed to start /usr/lib/systemd/system/systemd-vconsole-setup.service - Allow an domain that has an entrypoint from a type to be allowed to execute the entrypoint without a transition, I can see no case where this is a bad thing, and elminiates a whole class of AVCs. - Allow staff to getsched all domains, required to run htop - Add port definition for redis port - fix selinuxuser_use_ssh_chroot boolean- Add prosody policy written by Michael Scherer - Allow nagios plugins to read /sys info - ntpd needs to manage own log files - Add support for HOME_DIR/.IBMERS - Allow iptables commands to read firewalld config - Allow consolekit_t to read utmp - Fix filename transitions on .razor directory - Add additional fixes to make DSPAM with LDA working - Allow snort to read /etc/passwd - Allow fail2ban to communicate with firewalld over dbus - Dontaudit openshift_cgreoup_file_t read/write leaked dev - Allow nfsd to use mountd port - Call th proper interface - Allow openvswitch to read sys and execute plymouth - Allow tmpwatch to read /var/spool/cups/tmp - Add support for /usr/libexec/telepathy-rakia - Add systemd support for zoneminder - Allow mysql to create files/directories under /var/log/mysql - Allow zoneminder apache scripts to rw zoneminder tmpfs - Allow httpd to manage zoneminder lib files - Add zoneminder_run_sudo boolean to allow to start zoneminder - Allow zoneminder to send mails - gssproxy_t sock_file can be under /var/lib - Allow web domains to connect to whois port. - Allow sandbox_web_type to connect to the same ports as mozilla_plugin_t. - We really need to add an interface to corenet to define what a web_client_domain is and - then define chrome_sandbox_t, mozilla_plugin_t and sandbox_web_type to that domain. - Add labeling for cmpiLMI_LogicalFile-cimprovagt - Also make pegasus_openlmi_logicalfile_t as unconfined to have unconfined_domain attribute for filename trans rules - Update policy rules for pegasus_openlmi_logicalfile_t - Add initial types for logicalfile/unconfined OpenLMI providers - mailmanctl needs to read own log - Allow logwatch manage own lock files - Allow nrpe to read meminfo - Allow httpd to read certs located in pki-ca - Add pki_read_tomcat_cert() interface - Add support for nagios openshift plugins - Add port definition for redis port - fix selinuxuser_use_ssh_chroot boolean- Shrink the size of policy by moving to attributes, also add dridomain so that mozilla_plugin can follow selinuxuse_dri boolean. - Allow bootloader to manage generic log files - Allow ftp to bind to port 989 - Fix label of new gear directory - Add support for new directory /var/lib/openshift/gears/ - Add openshift_manage_lib_dirs() - allow virtd domains to manage setrans_var_run_t - Allow useradd to manage all openshift content - Add support so that mozilla_plugin_t can use dri devices - Allow chronyd to change the scheduler - Allow apmd to shut downthe system - Devicekit_disk_t needs to manage /etc/fstab- Make DSPAM to act as a LDA working - Allow ntop to create netlink socket - Allow policykit to send a signal to policykit-auth - Allow stapserver to dbus chat with avahi/systemd-logind - Fix labeling on haproxy unit file - Clean up haproxy policy - A new policy for haproxy and placed it to rhcs.te - Add support for ldirectord and treat it with cluster_t - Make sure anaconda log dir is created with var_log_t- Allow lvm_t to create default targets for filesystem handling - Fix labeling for razor-lightdm binaries - Allow insmod_t to read any file labeled var_lib_t - Add policy for pesign - Activate policy for cmpiLMI_Account-cimprovagt - Allow isnsd syscall=listen - /usr/libexec/pegasus/cimprovagt needs setsched caused by sched_setscheduler - Allow ctdbd to use udp/4379 - gatherd wants sys_nice and setsched - Add support for texlive2012 - Allow NM to read file_t (usb stick with no labels used to transfer keys for example) - Allow cobbler to execute apache with domain transition- condor_collector uses tcp/9000 - Label /usr/sbin/virtlockd as virtd_exec_t for now - Allow cobbler to execute ldconfig - Allow NM to execute ssh - Allow mdadm to read /dev/crash - Allow antivirus domains to connect to snmp port - Make amavisd-snmp working correctly - Allow nfsd_t to mounton nfsd_fs_t - Add initial snapper policy - We still need to have consolekit policy - Dontaudit firefox attempting to connect to the xserver_port_t if run within sandbox_web_t - Dontaudit sandbox apps attempting to open user_devpts_t - Allow dirsrv to read network state - Fix pki_read_tomcat_lib_files - Add labeling for /usr/libexec/nm-ssh-service - Add label cert_t for /var/lib/ipa/pki-ca/publish - Lets label /sys/fs/cgroup as cgroup_t for now, to keep labels consistant - Allow nfsd_t to mounton nfsd_fs_t - Dontaudit sandbox apps attempting to open user_devpts_t - Allow passwd_t to change role to system_r from unconfined_r- Don't audit access checks by sandbox xserver on xdb var_lib - Allow ntop to read usbmon devices - Add labeling for new polcykit authorizor - Dontaudit access checks from fail2ban_client - Don't audit access checks by sandbox xserver on xdb var_lib - Allow apps that connect to xdm stream to conenct to xdm_dbusd_t stream - Fix labeling for all /usr/bim/razor-lightdm-* binaries - Add filename trans for /dev/md126p1- Make vdagent able to request loading kernel module - Add support for cloud-init make it as unconfined domain - Allow snmpd to run smartctl in fsadm_t domain - remove duplicate openshift_search_lib() interface - Allow mysqld to search openshift lib files - Allow openshift cgroup to interact with passedin file descriptors - Allow colord to list directories inthe users homedir - aide executes prelink to check files - Make sure cupsd_t creates content in /etc/cups with the correct label - Lest dontaudit apache read all domains, so passenger will not cause this avc - Allow gssd to connect to gssproxy - systemd-tmpfiles needs to be able to raise the level to fix labeling on /run/setrans in MLS - Allow systemd-tmpfiles to relabel also lock files - Allow useradd to add homdir in /var/lib/openshift - Allow setfiles and semanage to write output to /run/files- Add labeling for /dev/tgt - Dontaudit leak fd from firewalld for modprobe - Allow runuser running as rpm_script_t to create netlink_audit socket - Allow mdadm to read BIOS non-volatile RAM- accountservice watches when accounts come and go in wtmp - /usr/java/jre1.7.0_21/bin/java needs to create netlink socket - Add httpd_use_sasl boolean - Allow net_admin for tuned_t - iscsid needs sys_module to auto-load kernel modules - Allow blueman to read bluetooth conf - Add nova_manage_lib_files() interface - Fix mplayer_filetrans_home_content() - Add mplayer_filetrans_home_content() - mozilla_plugin_config_roles need to be able to access mozilla_plugin_config_t - Revert "Allow thumb_t to append inherited xdm stream socket" - Add iscsi_filetrans_named_content() interface - Allow to create .mplayer with the correct labeling for unconfined - Allow iscsiadmin to create lock file with the correct labeling- Allow wine to manage wine home content - Make amanda working with socket actiovation - Add labeling for /usr/sbin/iscsiadm - Add support for /var/run/gssproxy.sock - dnsmasq_t needs to read sysctl_net_t- Fix courier_domain_template() interface - Allow blueman to write ip_forward - Allow mongodb to connect to mongodb port - Allow mongodb to connect to mongodb port - Allow java to bind jobss_debug port - Fixes for *_admin interfaces - Allow iscsid auto-load kernel modules needed for proper iSCSI functionality - Need to assign attribute for courier_domain to all courier_domains - Fail2ban reads /etc/passwd - postfix_virtual will create new files in postfix_spool_t - abrt triggers sys_ptrace by running pidof - Label ~/abc as mozilla_home_t, since java apps as plugin want to create it - Add passenger fixes needed by foreman - Remove dup interfaces - Add additional interfaces for quantum - Add new interfaces for dnsmasq - Allow passenger to read localization and send signull to itself - Allow dnsmasq to stream connect to quantum - Add quantum_stream_connect() - Make sure that mcollective starts the service with the correct labeling - Add labels for ~/.manpath - Dontaudit attempts by svirt_t to getpw* calls - sandbox domains are trying to look at parent process data - Allow courior auth to create its pid file in /var/spool/courier subdir - Add fixes for beam to have it working with couchdb - Add labeling for /run/nm-xl2tpd.con - Allow apache to stream connect to thin - Add systemd support for amand - Make public types usable for fs mount points - Call correct mandb interface in domain.te - Allow iptables to r/w quantum inherited pipes and send sigchld - Allow ifconfig domtrans to iptables and execute ldconfig - Add labels for ~/.manpath - Allow systemd to read iscsi lib files - seunshare is trying to look at parent process data- Fix openshift_search_lib - Add support for abrt-uefioops-oops - Allow colord to getattr any file system - Allow chrome processes to look at each other - Allow sys_ptrace for abrt_t - Add new policy for gssproxy - Dontaudit leaked file descriptor writes from firewalld - openshift_net_type is interface not template - Dontaudit pppd to search gnome config - Update openshift_search_lib() interface - Add fs_list_pstorefs() - Fix label on libbcm_host.so since it is built incorrectly on raspberry pi, needs back port to F18 - Better labels for raspberry pi devices - Allow init to create devpts_t directory - Temporarily label rasbery pi devices as memory_device_t, needs back port to f18 - Allow sysadm_t to build kernels - Make sure mount creates /var/run/blkid with the correct label, needs back port to F18 - Allow userdomains to stream connect to gssproxy - Dontaudit leaked file descriptor writes from firewalld - Allow xserver to read /dev/urandom - Add additional fixes for ipsec-mgmt - Make SSHing into an Openshift Enterprise Node working- Add transition rules to unconfined domains and to sysadm_t to create /etc/adjtime - with the proper label. - Update files_filetrans_named_content() interface to get right labeling for pam.d conf files - Allow systemd-timedated to create adjtime - Add clock_create_adjtime() - Additional fix ifconfing for #966106 - Allow kernel_t to create boot.log with correct labeling - Remove unconfined_mplayer for which we don't have rules - Rename interfaces - Add userdom_manage_user_home_files/dirs interfaces - Fix files_dontaudit_read_all_non_security_files - Fix ipsec_manage_key_file() - Fix ipsec_filetrans_key_file() - Label /usr/bin/razor-lightdm-greeter as xdm_exec_t instead of spamc_exec_t - Fix labeling for ipse.secrets - Add interfaces for ipsec and labeling for ipsec.info and ipsec_setup.pid - Add files_dontaudit_read_all_non_security_files() interface - /var/log/syslog-ng should be labeled var_log_t - Make ifconfig_var_run_t a mountpoint - Add transition from ifconfig to dnsmasq - Allow ifconfig to execute bin_t/shell_exec_t - We want to have hwdb.bin labeled as etc_t - update logging_filetrans_named_content() interface - Allow systemd_timedate_t to manage /etc/adjtime - Allow NM to send signals to l2tpd - Update antivirus_can_scan_system boolean - Allow devicekit_disk_t to sys_config_tty - Run abrt-harvest programs as abrt_t, and allow abrt_t to list all filesystem directories - Make printing from vmware working - Allow php-cgi from php54 collection to access /var/lib/net-snmp/mib_indexes - Add virt_qemu_ga_data_t for qemu-ga - Make chrome and mozilla able to connect to same ports, add jboss_management_port_t to both - Fix typo in virt.te - Add virt_qemu_ga_unconfined_t for hook scripts - Make sure NetworkManager files get created with the correct label - Add mozilla_plugin_use_gps boolean - Fix cyrus to have support for net-snmp - Additional fixes for dnsmasq and quantum for #966106 - Add plymouthd_create_log() - remove httpd_use_oddjob for which we don't have rules - Add missing rules for httpd_can_network_connect_cobbler - Add missing cluster_use_execmem boolean - Call userdom_manage_all_user_home_type_files/dirs - Additional fix for ftp_home_dir - Fix ftp_home_dir boolean - Allow squit to recv/send client squid packet - Fix nut.te to have nut_domain attribute - Add support for ejabberd; TODO: revisit jabberd and rabbit policy - Fix amanda policy - Add more fixes for domains which use libusb - Make domains which use libusb working correctly - Allow l2tpd to create ipsec key files with correct labeling and manage them - Fix cobbler_manage_lib_files/cobbler_read_lib_files to cover also lnk files - Allow rabbitmq-beam to bind generic node - Allow l2tpd to read ipse-mgmt pid files - more fixes for l2tpd, NM and pppd from #967072- Dontaudit to getattr on dirs for dovecot-deliver - Allow raiudusd server connect to postgresql socket - Add kerberos support for radiusd - Allow saslauthd to connect to ldap port - Allow postfix to manage postfix_private_t files - Add chronyd support for #965457 - Fix labeling for HOME_DIR/\.icedtea - CHange squid and snmpd to be allowed also write own logs - Fix labeling for /usr/libexec/qemu-ga - Allow virtd_t to use virt_lock_t - Allow also sealert to read the policy from the kernel - qemu-ga needs to execute scripts in /usr/libexec/qemu-ga and to use /tmp content - Dontaudit listing of users homedir by sendmail Seems like a leak - Allow passenger to transition to puppet master - Allow apache to connect to mythtv - Add definition for mythtv ports- Add additional fixes for #948073 bug - Allow sge_execd_t to also connect to sge ports - Allow openshift_cron_t to manage openshift_var_lib_t sym links - Allow openshift_cron_t to manage openshift_var_lib_t sym links - Allow sge_execd to bind sge ports. Allow kill capability and reads cgroup files - Remove pulseaudio filetrans pulseaudio_manage_home_dirs which is a part of pulseaudio_manage_home_files - Add networkmanager_stream_connect() - Make gnome-abrt wokring with staff_t - Fix openshift_manage_lib_files() interface - mdadm runs ps command which seems to getattr on random log files - Allow mozilla_plugin_t to create pulseaudit_home_t directories - Allow qemu-ga to shutdown virtual hosts - Add labelling for cupsd-browsed - Add web browser plugins to connect to aol ports - Allow nm-dhcp-helper to stream connect to NM - Add port definition for sge ports- Make sure users and unconfined domains create .hushlogin with the correct label - Allow pegaus to chat with realmd over DBus - Allow cobblerd to read network state - Allow boicn-client to stat on /dev/input/mice - Allow certwatch to read net_config_t when it executes apache - Allow readahead to create /run/systemd and then create its own directory with the correct label- Transition directories and files when in a user_tmp_t directory - Change certwatch to domtrans to apache instead of just execute - Allow virsh_t to read xen lib files - update policy rules for pegasus_openlmi_account_t - Add support for svnserve_tmp_t - Activate account openlmi policy - pegasus_openlmi_domain_template needs also require pegasus_t - One more fix for policykit.te - Call fs_list_cgroups_dirs() in policykit.te - Allow nagios service plugin to read mysql config files - Add labeling for /var/svn - Fix chrome.te - Fix pegasus_openlmi_domain_template() interfaces - Fix dev_rw_vfio_dev definiton, allow virtd_t to read tmpfs_t symlinks - Fix location of google-chrome data - Add support for chome_sandbox to store content in the homedir - Allow policykit to watch for changes in cgroups file system - Add boolean to allow mozilla_plugin_t to use spice - Allow collectd to bind to udp port - Allow collected_t to read all of /proc - Should use netlink socket_perms - Should use netlink socket_perms - Allow glance domains to connect to apache ports - Allow apcupsd_t to manage its log files - Allow chrome objects to rw_inherited unix_stream_socket from callers - Allow staff_t to execute virtd_exec_t for running vms - nfsd_t needs to bind mountd port to make nfs-mountd.service working - Allow unbound net_admin capability because of setsockopt syscall - Fix fs_list_cgroup_dirs() - Label /usr/lib/nagios/plugins/utils.pm as bin_t - Remove uplicate definition of fs_read_cgroup_files() - Remove duplicate definition of fs_read_cgroup_files() - Add files_mountpoint_filetrans interface to be used by quotadb_t and snapperd - Additional interfaces needed to list and read cgroups config - Add port definition for collectd port - Add labels for /dev/ptp* - Allow staff_t to execute virtd_exec_t for running vms- Allow samba-net to also read realmd tmp files - Allow NUT to use serial ports - realmd can be started by systemctl now- Remove userdom_home_manager for xdm_t and move all rules to xserver.te directly - Add new xdm_write_home boolean to allow xdm_t to create files in HOME dirs with xdm_home_t - Allow postfix-showq to read/write unix.showq in /var/spool/postfix/pid - Allow virsh to read xen lock file - Allow qemu-ga to create files in /run with proper labeling - Allow glusterd to connect to own socket in /tmp - Allow glance-api to connect to http port to make glance image-create working - Allow keystonte_t to execute rpm- Fix realmd cache interfaces- Allow tcpd to execute leafnode - Allow samba-net to read realmd cache files - Dontaudit sys_tty_config for alsactl - Fix allow rules for postfix_var_run - Allow cobblerd to read /etc/passwd - Allow pegasus to read exports - Allow systemd-timedate to read xdm state - Allow mout to stream connect to rpcbind - Add labeling just for /usr/share/pki/ca-trust-source instead of /usr/share/pki- Allow thumbnails to share memory with apps which run thumbnails - Allow postfix-postqueue block_suspend - Add lib interfaces for smsd - Add support for nginx - Allow s2s running as jabberd_t to connect to jabber_interserver_port_t - Allow pki apache domain to create own tmp files and execute httpd_suexec - Allow procmail to manger user tmp files/dirs/lnk_files - Add virt_stream_connect_svirt() interface - Allow dovecot-auth to execute bin_t - Allow iscsid to request that kernel load a kernel module - Add labeling support for /var/lib/mod_security - Allow iw running as tuned_t to create netlink socket - Dontaudit sys_tty_config for thumb_t - Add labeling for nm-l2tp-service - Allow httpd running as certwatch_t to open tcp socket - Allow useradd to manager smsd lib files - Allow useradd_t to add homedirs in /var/lib - Fix typo in userdomain.te - Cleanup userdom_read_home_certs - Implement userdom_home_reader_certs_type to allow read certs also on encrypt /home with ecryptfs_t - Allow staff to stream connect to svirt_t to make gnome-boxes working- Allow lvm to create its own unit files - Label /var/lib/sepolgen as selinux_config_t - Add filetrans rules for tw devices - Add transition from cupsd_config_t to cupsd_t- Add filetrans rules for tw devices - Cleanup bad transition lines- Fix lockdev_manage_files() - Allow setroubleshootd to read var_lib_t to make email_alert working - Add lockdev_manage_files() - Call proper interface in virt.te - Allow gkeyring_domain to create /var/run/UID/config/dbus file - system dbus seems to be blocking suspend - Dontaudit attemps to sys_ptrace, which I believe gpsd does not need - When you enter a container from root, you generate avcs with a leaked file descriptor - Allow mpd getattr on file system directories - Make sure realmd creates content with the correct label - Allow systemd-tty-ask to write kmsg - Allow mgetty to use lockdev library for device locking - Fix selinuxuser_user_share_music boolean name to selinuxuser_share_music - When you enter a container from root, you generate avcs with a leaked file descriptor - Make sure init.fc files are labeled correctly at creation - File name trans vconsole.conf - Fix labeling for nagios plugins - label shared libraries in /opt/google/chrome as testrel_shlib_t- Allow certmonger to dbus communicate with realmd - Make realmd working- Fix mozilla specification of homedir content - Allow certmonger to read network state - Allow tmpwatch to read tmp in /var/spool/{cups,lpd} - Label all nagios plugin as unconfined by default - Add httpd_serve_cobbler_files() - Allow mdadm to read /dev/sr0 and create tmp files - Allow certwatch to send mails - Fix labeling for nagios plugins - label shared libraries in /opt/google/chrome as testrel_shlib_t- Allow realmd to run ipa, really needs to be an unconfined_domain - Allow sandbox domains to use inherted terminals - Allow pscd to use devices labeled svirt_image_t in order to use cat cards. - Add label for new alsa pid - Alsa now uses a pid file and needs to setsched - Fix oracleasmfs_t definition - Add support for sshd_unit_file_t - Add oracleasmfs_t - Allow unlabeled_t files to be stored on unlabeled_t filesystems- Fix description of deny_ptrace boolean - Remove allow for execmod lib_t for now - Allow quantum to connect to keystone port - Allow nova-console to talk with mysql over unix stream socket - Allow dirsrv to stream connect to uuidd - thumb_t needs to be able to create ~/.cache if it does not exist - virtd needs to be able to sys_ptrace when starting and stoping containers- Allow alsa_t signal_perms, we probaly should search for any app that can execute something without transition and give it signal_perms... - Add dontaudit for mozilla_plugin_t looking at the xdm_t sockets - Fix deny_ptrace boolean, certain ptrace leaked into the system - Allow winbind to manage kerberos_rcache_host - Allow spamd to create spamd_var_lib_t directories - Remove transition to mozilla_tmp_t by mozilla_t, to allow it to manage the users tmp dirs - Add mising nslcd_dontaudit_write_sock_file() interface - one more fix - Fix pki_read_tomcat_lib_files() interface - Allow certmonger to read pki-tomcat lib files - Allow certwatch to execute bin_t - Allow snmp to manage /var/lib/net-snmp files - Call snmp_manage_var_lib_files(fogorn_t) instead of snmp_manage_var_dirs - Fix vmware_role() interface - Fix cobbler_manage_lib_files() interface - Allow nagios check disk plugins to execute bin_t - Allow quantum to transition to openvswitch_t - Allow postdrop to stream connect to postfix-master - Allow quantum to stream connect to openvswitch - Add xserver_dontaudit_xdm_rw_stream_sockets() interface - Allow daemon to send dgrams to initrc_t - Allow kdm to start the power service to initiate a reboot or poweroff- Add mising nslcd_dontaudit_write_sock_file() interface - one more fix - Fix pki_read_tomcat_lib_files() interface - Allow certmonger to read pki-tomcat lib files - Allow certwatch to execute bin_t - Allow snmp to manage /var/lib/net-snmp files - Don't audit attempts to write to stream socket of nscld by thumbnailers - Allow git_system_t to read network state - Allow pegasas to execute mount command - Fix desc for drdb_admin - Fix condor_amin() - Interface fixes for uptime, vdagent, vnstatd - Fix labeling for moodle in /var/www/moodle/data - Add interface fixes - Allow bugzilla to read certs - /var/www/moodle needs to be writable by apache - Add interface to dontaudit attempts to send dbus messages to systemd domains, for xguest - Fix namespace_init_t to create content with proper labels, and allow it to manage all user content - Allow httpd_t to connect to osapi_compute port using httpd_use_openstack bolean - Fixes for dlm_controld - Fix apache_read_sys_content_rw_dirs() interface - Allow logrotate to read /var/log/z-push dir - Fix sys_nice for cups_domain - Allow postfix_postdrop to acces postfix_public socket - Allow sched_setscheduler for cupsd_t - Add missing context for /usr/sbin/snmpd - Kernel_t needs mac_admin in order to support labeled NFS - Fix systemd_dontaudit_dbus_chat() interface - Add interface to dontaudit attempts to send dbus messages to systemd domains, for xguest - Allow consolehelper domain to write Xauth files in /root - Add port definition for osapi_compute port - Allow unconfined to create /etc/hostname with correct labeling - Add systemd_filetrans_named_hostname() interface- Allow httpd_t to connect to osapi_compute port using httpd_use_openstack bolean - Fixes for dlm_controld - Fix apache_read_sys_content_rw_dirs() interface - Allow logrotate to read /var/log/z-push dir - Allow postfix_postdrop to acces postfix_public socket - Allow sched_setscheduler for cupsd_t - Add missing context for /usr/sbin/snmpd - Allow consolehelper more access discovered by Tom London - Allow fsdaemon to send signull to all domain - Add port definition for osapi_compute port - Allow unconfined to create /etc/hostname with correct labeling - Add systemd_filetrans_named_hostname() interface- Fix file_contexts.subs to label /run/lock correctly- Try to label on controlC devices up to 30 correctly - Add mount_rw_pid_files() interface - Add additional mount/umount interfaces needed by mock - fsadm_t sends audit messages in reads kernel_ipc_info when doing livecd-iso-to-disk - Fix tabs - Allow initrc_domain to search rgmanager lib files - Add more fixes which make mock working together with confined users * Allow mock_t to manage rpm files * Allow mock_t to read rpm log files * Allow mock to setattr on tmpfs, devpts * Allow mount/umount filesystems - Add rpm_read_log() interface - yum-cron runs rpm from within it. - Allow tuned to transition to dmidecode - Allow firewalld to do net_admin - Allow mock to unmont tmpfs_t - Fix virt_sigkill() interface - Add additional fixes for mock. Mainly caused by mount running in mock_t - Allow mock to write sysfs_t and mount pid files - Add mailman_domain to mailman_template() - Allow openvswitch to execute shell - Allow qpidd to use kerberos - Allow mailman to use fusefs, needs back port to RHEL6 - Allow apache and its scripts to use anon_inodefs - Add alias for git_user_content_t and git_sys_content_t so that RHEL6 will update to RHEL7 - Realmd needs to connect to samba ports, needs back port to F18 also - Allow colord to read /run/initial-setup- - Allow sanlock-helper to send sigkill to virtd which is registred to sanlock - Add virt_kill() interface - Add rgmanager_search_lib() interface - Allow wdmd to getattr on all filesystems. Back ported from RHEL6- Allow realmd to create tmp files - FIx ircssi_home_t type to irssi_home_t - Allow adcli running as realmd_t to connect to ldap port - Allow NetworkManager to transition to ipsec_t, for running strongswan - Make openshift_initrc_t an lxc_domain - Allow gssd to manage user_tmp_t files - Fix handling of irclogs in users homedir - Fix labeling for drupal an wp-content in subdirs of /var/www/html - Allow abrt to read utmp_t file - Fix openshift policy to transition lnk_file, sock-file an fifo_file when created in a tmpfs_t, needs back port to RHEL6 - fix labeling for (oo|rhc)-restorer-wrapper.sh - firewalld needs to be able to write to network sysctls - Fix mozilla_plugin_dontaudit_rw_sem() interface - Dontaudit generic ipc read/write to a mozilla_plugin for sandbox_x domains - Add mozilla_plugin_dontaudit_rw_sem() interface - Allow svirt_lxc_t to transition to openshift domains - Allow condor domains block_suspend and dac_override caps - Allow condor_master to read passd - Allow condor_master to read system state - Allow NetworkManager to transition to ipsec_t, for running strongswan - Lots of access required by lvm_t to created encrypted usb device - Allow xdm_t to dbus communicate with systemd_localed_t - Label strongswan content as ipsec_exec_mgmt_t for now - Allow users to dbus chat with systemd_localed - Fix handling of .xsession-errors in xserver.if, so kde will work - Might be a bug but we are seeing avc's about people status on init_t:service - Make sure we label content under /var/run/lock as <> - Allow daemon and systemprocesses to search init_var_run_t directory - Add boolean to allow xdm to write xauth data to the home directory - Allow mount to write keys for the unconfined domain - Add unconfined_write_keys() interface- Add labeling for /usr/share/pki - Allow programs that read var_run_t symlinks also read var_t symlinks - Add additional ports as mongod_port_t for 27018, 27019, 28017, 28018 and 28019 ports - Fix labeling for /etc/dhcp directory - add missing systemd_stub_unit_file() interface - Add files_stub_var() interface - Add lables for cert_t directories - Make localectl set-x11-keymap working at all - Allow abrt to manage mock build environments to catch build problems. - Allow virt_domains to setsched for running gdb on itself - Allow thumb_t to execute user home content - Allow pulseaudio running as mozilla_plugin_t to read /run/systemd/users/1000 - Allow certwatch to execut /usr/bin/httpd - Allow cgred to send signal perms to itself, needs back port to RHEL6 - Allow openshift_cron_t to look at quota - Allow cups_t to read inhered tmpfs_t from the kernel - Allow yppasswdd to use NIS - Tuned wants sys_rawio capability - Add ftpd_use_fusefs boolean - Allow dirsrvadmin_t to signal itself- Allow localectl to read /etc/X11/xorg.conf.d directory - Revert "Revert "Fix filetrans rules for kdm creates .xsession-errors"" - Allow mount to transition to systemd_passwd_agent - Make sure abrt directories are labeled correctly - Allow commands that are going to read mount pid files to search mount_var_run_t - label /usr/bin/repoquery as rpm_exec_t - Allow automount to block suspend - Add abrt_filetrans_named_content so that abrt directories get labeled correctly - Allow virt domains to setrlimit and read file_context- Allow nagios to manage nagios spool files - /var/spool/snmptt is a directory which snmdp needs to write to, needs back port to RHEL6 - Add swift_alias.* policy files which contain typealiases for swift types - Add support for /run/lock/opencryptoki - Allow pkcsslotd chown capability - Allow pkcsslotd to read passwd - Add rsync_stub() interface - Allow systemd_timedate also manage gnome config homedirs - Label /usr/lib64/security/pam_krb5/pam_krb5_cchelper as bin_t - Fix filetrans rules for kdm creates .xsession-errors - Allow sytemd_tmpfiles to create wtmp file - Really should not label content under /var/lock, since it could have labels on it different from var_lock_t - Allow systemd to list all file system directories - Add some basic stub interfaces which will be used in PRODUCT policies- Fix log transition rule for cluster domains - Start to group all cluster log together - Dont use filename transition for POkemon Advanced Adventure until a new checkpolicy update - cups uses usbtty_device_t devices - These fixes were all required to build a MLS virtual Machine with single level desktops - Allow domains to transiton using httpd_exec_t - Allow svirt domains to manage kernel key rings - Allow setroubleshoot to execute ldconfig - Allow firewalld to read generate gnome data - Allow bluetooth to read machine-info - Allow boinc domain to send signal to itself - Fix gnome_filetrans_home_content() interface - Allow mozilla_plugins to list apache modules, for use with gxine - Fix labels for POkemon in the users homedir - Allow xguest to read mdstat - Dontaudit virt_domains getattr on /dev/* - These fixes were all required to build a MLS virtual Machine with single level desktops - Need to back port this to RHEL6 for openshift - Add tcp/8891 as milter port - Allow nsswitch domains to read sssd_var_lib_t files - Allow ping to read network state. - Fix typo - Add labels to /etc/X11/xorg.d and allow systemd-timestampd_t to manage them- Adopt swift changes from lhh@redhat.com - Add rhcs_manage_cluster_pid_files() interface - Allow screen domains to configure tty and setup sock_file in ~/.screen directory - ALlow setroubleshoot to read default_context_t, needed to backport to F18 - Label /etc/owncloud as being an apache writable directory - Allow sshd to stream connect to an lxc domain- Allow postgresql to manage rgmanager pid files - Allow postgresql to read ccs data - Allow systemd_domain to send dbus messages to policykit - Add labels for /etc/hostname and /etc/machine-info and allow systemd-hostnamed to create them - All systemd domains that create content are reading the file_context file and setfscreate - Systemd domains need to search through init_var_run_t - Allow sshd to communicate with libvirt to set containers labels - Add interface to manage pid files - Allow NetworkManger_t to read /etc/hostname - Dontaudit leaked locked files into openshift_domains - Add fixes for oo-cgroup-read - it nows creates tmp files - Allow gluster to manage all directories as well as files - Dontaudit chrome_sandbox_nacl_t using user terminals - Allow sysstat to manage its own log files - Allow virtual machines to setrlimit and send itself signals. - Add labeling for /var/run/hplip- Fix POSTIN scriptlet- Merge rgmanger, corosync,pacemaker,aisexec policies to cluster_t in rhcs.pp- Fix authconfig.py labeling - Make any domains that write homedir content do it correctly - Allow glusterd to read/write anyhwere on the file system by default - Be a little more liberal with the rsync log files - Fix iscsi_admin interface - Allow iscsid_t to read /dev/urand - Fix up iscsi domain for use with unit files - Add filename transition support for spamassassin policy - Allow web plugins to use badly formated libraries - Allow nmbd_t to create samba_var_t directories - Add filename transition support for spamassassin policy - Add filename transition support for tvtime - Fix alsa_home_filetrans_alsa_home() interface - Move all userdom_filetrans_home_content() calling out of booleans - Allow logrotote to getattr on all file sytems - Remove duplicate userdom_filetrans_home_content() calling - Allow kadmind to read /etc/passwd - Dontaudit append .xsession-errors file on ecryptfs for policykit-auth - Allow antivirus domain to manage antivirus db links - Allow logrotate to read /sys - Allow mandb to setattr on man dirs - Remove mozilla_plugin_enable_homedirs boolean - Fix ftp_home_dir boolean - homedir mozilla filetrans has been moved to userdom_home_manager - homedir telepathy filetrans has been moved to userdom_home_manager - Remove gnome_home_dir_filetrans() from gnome_role_gkeyringd() - Might want to eventually write a daemon on fusefsd. - Add policy fixes for sshd [net] child from plautrba@redhat.com - Tor uses a new port - Remove bin_t for authconfig.py - Fix so only one call to userdom_home_file_trans - Allow home_manager_types to create content with the correctl label - Fix all domains that write data into the homedir to do it with the correct label - Change the postgresql to use proper boolean names, which is causing httpd_t to - not get access to postgresql_var_run_t - Hostname needs to send syslog messages - Localectl needs to be able to send dbus signals to users - Make sure userdom_filetrans_type will create files/dirs with user_home_t labeling by default - Allow user_home_manger domains to create spam* homedir content with correct labeling - Allow user_home_manger domains to create HOMEDIR/.tvtime with correct labeling - Add missing miscfiles_setattr_man_pages() interface and for now comment some rules for userdom_filetrans_type to make build process working - Declare userdom_filetrans_type attribute - userdom_manage_home_role() needs to be called withoout usertype attribute because of userdom_filetrans_type attribute - fusefsd is mounding a fuse file system on /run/user/UID/gvfs- Man pages are now generated in the build process - Allow cgred to list inotifyfs filesystem- Allow gluster to get attrs on all fs - New access required for virt-sandbox - Allow dnsmasq to execute bin_t - Allow dnsmasq to create content in /var/run/NetworkManager - Fix openshift_initrc_signal() interface - Dontaudit openshift domains doing getattr on other domains - Allow consolehelper domain to communicate with session bus - Mock should not be transitioning to any other domains, we should keep mock_t as mock_t - Update virt_qemu_ga_t policy - Allow authconfig running from realmd to restart oddjob service - Add systemd support for oddjob - Add initial policy for realmd_consolehelper_t which if for authconfig executed by realmd - Add labeling for gnashpluginrc - Allow chrome_nacl to execute /dev/zero - Allow condor domains to read /proc - mozilla_plugin_t will getattr on /core if firefox crashes - Allow condor domains to read /etc/passwd - Allow dnsmasq to execute shell scripts, openstack requires this access - Fix glusterd labeling - Allow virtd_t to interact with the socket type - Allow nmbd_t to override dac if you turned on sharing all files - Allow tuned to created kobject_uevent socket - Allow guest user to run fusermount - Allow openshift to read /proc and locale - Allow realmd to dbus chat with rpm - Add new interface for virt - Remove depracated interfaces - Allow systemd_domains read access on etc, etc_runtime and usr files, also allow them to connect stream to syslog socket - /usr/share/munin/plugins/plugin.sh should be labeled as bin_t - Remove some more unconfined_t process transitions, that I don't believe are necessary - Stop transitioning uncofnined_t to checkpc - dmraid creates /var/lock/dmraid - Allow systemd_localed to creatre unix_dgram_sockets - Allow systemd_localed to write kernel messages. - Also cleanup systemd definition a little. - Fix userdom_restricted_xwindows_user_template() interface - Label any block devices or char devices under /dev/infiniband as fixed_disk_device_t - User accounts need to dbus chat with accountsd daemon - Gnome requires all users to be able to read /proc/1/- virsh now does a setexeccon call - Additional rules required by openshift domains - Allow svirt_lxc_domains to use inherited terminals, needed to make virt-sandbox-service execute work - Allow spamd_update_t to search spamc_home_t - Avcs discovered by mounting an isci device under /mnt - Allow lspci running as logrotate to read pci.ids - Additional fix for networkmanager_read_pid_files() - Fix networkmanager_read_pid_files() interface - Allow all svirt domains to connect to svirt_socket_t - Allow virsh to set SELinux context for a process. - Allow tuned to create netlink_kobject_uevent_socket - Allow systemd-timestamp to set SELinux context - Add support for /var/lib/systemd/linger - Fix ssh_sysadm_login to be working on MLS as expected- Rename files_rw_inherited_tmp_files to files_rw_inherited_tmp_file - Add missing files_rw_inherited_tmp_files interface - Add additional interface for ecryptfs - ALlow nova-cert to connect to postgresql - Allow keystone to connect to postgresql - Allow all cups domains to getattr on filesystems - Allow pppd to send signull - Allow tuned to execute ldconfig - Allow gpg to read fips_enabled - Add additional fixes for ecryptfs - Allow httpd to work with posgresql - Allow keystone getsched and setsched- Allow gpg to read fips_enabled - Add support for /var/cache/realmd - Add support for /usr/sbin/blazer_usb and systemd support for nut - Add labeling for fenced_sanlock and allow sanclok transition to fenced_t - bitlbee wants to read own log file - Allow glance domain to send a signal itself - Allow xend_t to request that the kernel load a kernel module - Allow pacemaker to execute heartbeat lib files - cleanup new swift policy- Fix smartmontools - Fix userdom_restricted_xwindows_user_template() interface - Add xserver_xdm_ioctl_log() interface - Allow Xusers to ioctl lxdm.log to make lxdm working - Add MLS fixes to make MLS boot/log-in working - Add mls_socket_write_all_levels() also for syslogd - fsck.xfs needs to read passwd - Fix ntp_filetrans_named_content calling in init.te - Allow postgresql to create pg_log dir - Allow sshd to read rsync_data_t to make rsync working - Change ntp.conf to be labeled net_conf_t - Allow useradd to create homedirs in /run. ircd-ratbox does this and we should just allow it - Allow xdm_t to execute gstreamer home content - Allod initrc_t and unconfined domains, and sysadm_t to manage ntp - New policy for openstack swift domains - More access required for openshift_cron_t - Use cupsd_log_t instead of cupsd_var_log_t - rpm_script_roles should be used in rpm_run - Fix rpm_run() interface - Fix openshift_initrc_run() - Fix sssd_dontaudit_stream_connect() interface - Fix sssd_dontaudit_stream_connect() interface - Allow LDA's job to deliver mail to the mailbox - dontaudit block_suspend for mozilla_plugin_t - Allow l2tpd_t to all signal perms - Allow uuidgen to read /dev/random - Allow mozilla-plugin-config to read power_supply info - Implement cups_domain attribute for cups domains - We now need access to user terminals since we start by executing a command outside the tty - We now need access to user terminals since we start by executing a command outside the tty - svirt lxc containers want to execute userhelper apps, need these changes to allow this to happen - Add containment of openshift cron jobs - Allow system cron jobs to create tmp directories - Make userhelp_conf_t a config file - Change rpm to use rpm_script_roles - More fixes for rsync to make rsync wokring - Allow logwatch to domtrans to mdadm - Allow pacemaker to domtrans to ifconfig - Allow pacemaker to setattr on corosync.log - Add pacemaker_use_execmem for memcheck-amd64 command - Allow block_suspend capability - Allow create fifo_file in /tmp with pacemaker_tmp_t - Allow systat to getattr on fixed disk - Relabel /etc/ntp.conf to be net_conf_t - ntp_admin should create files in /etc with the correct label - Add interface to create ntp_conf_t files in /etc - Add additional labeling for quantum - Allow quantum to execute dnsmasq with transition- boinc_cliean wants also execmem as boinc projecs have - Allow sa-update to search admin home for /root/.spamassassin - Allow sa-update to search admin home for /root/.spamassassin - Allow antivirus domain to read net sysctl - Dontaudit attempts from thumb_t to connect to ssd - Dontaudit attempts by readahead to read sock_files - Dontaudit attempts by readahead to read sock_files - Create tmpfs file while running as wine as user_tmpfs_t - Dontaudit attempts by readahead to read sock_files - libmpg ships badly created librarie- Change ssh_use_pts to use macro and only inherited sshd_devpts_t - Allow confined users to read systemd_logind seat information - libmpg ships badly created libraries - Add support for strongswan.service - Add labeling for strongswan - Allow l2tpd_t to read network manager content in /run directory - Allow rsync to getattr any file in rsync_data_t - Add labeling and filename transition for .grl-podcasts- mount.glusterfs executes glusterfsd binary - Allow systemd_hostnamed_t to stream connect to systemd - Dontaudit any user doing a access check - Allow obex-data-server to request the kernel to load a module - Allow gpg-agent to manage gnome content (~/.cache/gpg-agent-info) - Allow gpg-agent to read /proc/sys/crypto/fips_enabled - Add new types for antivirus.pp policy module - Allow gnomesystemmm_t caps because of ioprio_set - Make sure if mozilla_plugin creates files while in permissive mode, they get created with the correct label, user_home_t - Allow gnomesystemmm_t caps because of ioprio_set - Allow NM rawip socket - files_relabel_non_security_files can not be used with boolean - Add interface to thumb_t dbus_chat to allow it to read remote process state - ALlow logrotate to domtrans to mdadm_t - kde gnomeclock wants to write content to /tmp- kde gnomeclock wants to write content to /tmp - /usr/libexec/kde4/kcmdatetimehelper attempts to create /root/.kde - Allow blueman_t to rwx zero_device_t, for some kind of jre - Allow mozilla_plugin_t to rwx zero_device_t, for some kind of jre - Ftp full access should be allowed to create directories as well as files - Add boolean to allow rsync_full_acces, so that an rsync server can write all - over the local machine - logrotate needs to rotate logs in openshift directories, needs back port to RHEL6 - Add missing vpnc_roles type line - Allow stapserver to write content in /tmp - Allow gnome keyring to create keyrings dir in ~/.local/share - Dontaudit thumb drives trying to bind to udp sockets if nis_enabled is turned on - Add interface to colord_t dbus_chat to allow it to read remote process state - Allow colord_t to read cupsd_t state - Add mate-thumbnail-font as thumnailer - Allow sectoolm to sys_ptrace since it is looking at other proceses /proc data. - Allow qpidd to list /tmp. Needed by ssl - Only allow init_t to transition to rsync_t domain, not initrc_t. This should be back ported to F17, F18 - - Added systemd support for ksmtuned - Added booleans ksmtuned_use_nfs ksmtuned_use_cifs - firewalld seems to be creating mmap files which it needs to execute in /run /tmp and /dev/shm. Would like to clean this up but for now we will allow - Looks like qpidd_t needs to read /dev/random - Lots of probing avc's caused by execugting gpg from staff_t - Dontaudit senmail triggering a net_admin avc - Change thumb_role to use thumb_run, not sure why we have a thumb_role, needs back port - Logwatch does access check on mdadm binary - Add raid_access_check_mdadm() iterface- Fix systemd_manage_unit_symlinks() interface - Call systemd_manage_unit_symlinks(() which is correct interface - Add filename transition for opasswd - Switch gnomeclock_dbus_chat to systemd_dbus_chat_timedated since we have switched the name of gnomeclock - Allow sytstemd-timedated to get status of init_t - Add new systemd policies for hostnamed and rename gnomeclock_t to systemd_timedate_t - colord needs to communicate with systemd and systemd_logind, also remove duplicate rules - Switch gnomeclock_dbus_chat to systemd_dbus_chat_timedated since we have switched the name of gnomeclock - Allow gpg_t to manage all gnome files - Stop using pcscd_read_pub_files - New rules for xguest, dontaudit attempts to dbus chat - Allow firewalld to create its mmap files in tmpfs and tmp directories - Allow firewalld to create its mmap files in tmpfs and tmp directories - run unbound-chkconf as named_t, so it can read dnssec - Colord is reading xdm process state, probably reads state of any apps that sends dbus message - Allow mdadm_t to change the kernel scheduler - mythtv policy - Update mandb_admin() interface - Allow dsspam to listen on own tpc_socket - seutil_filetrans_named_content needs to be optional - Allow sysadm_t to execute content in his homedir - Add attach_queue to tun_socket, new patch from Paul Moore - Change most of selinux configuration types to security_file_type. - Add filename transition rules for selinux configuration - ssh into a box with -X -Y requires ssh_use_ptys - Dontaudit thumb drives trying to bind to udp sockets if nis_enabled is turned on - Allow all unpriv userdomains to send dbus messages to hostnamed and timedated - New allow rules found by Tom London for systemd_hostnamed- Allow systemd-tmpfiles to relabel lpd spool files - Ad labeling for texlive bash scripts - Add xserver_filetrans_fonts_cache_home_content() interface - Remove duplicate rules from *.te - Add support for /var/lock/man-db.lock - Add support for /var/tmp/abrt(/.*)? - Add additional labeling for munin cgi scripts - Allow httpd_t to read munin conf files - Allow certwatch to read meminfo - Fix nscd_dontaudit_write_sock_file() interfac - Fix gnome_filetrans_home_content() to include also "fontconfig" dir as cache_home_t - llow mozilla_plugin_t to create HOMEDIR/.fontconfig with the proper labeling- Allow gnomeclock to talk to puppet over dbus - Allow numad access discovered by Dominic - Add support for HOME_DIR/.maildir - Fix attribute_role for mozilla_plugin_t domain to allow staff_r to access this domain - Allow udev to relabel udev_var_run_t lnk_files - New bin_t file in mcelog- Remove all mcs overrides and replace with t1 != mcs_constrained_types - Add attribute_role for iptables - mcs_process_set_categories needs to be called for type - Implement additional role_attribute statements - Sodo domain is attempting to get the additributes of proc_kcore_t - Unbound uses port 8953 - Allow svirt_t images to compromise_kernel when using pci-passthrough - Add label for dns lib files - Bluetooth aquires a dbus name - Remove redundant files_read_usr_file calling - Remove redundant files_read_etc_file calling - Fix mozilla_run_plugin() - Add role_attribute support for more domains- Mass merge with upstream- Bump the policy version to 28 to match selinux userspace - Rebuild versus latest libsepol- Add systemd_status_all_unit_files() interface - Add support for nshadow - Allow sysadm_t to administrate the postfix domains - Add interface to setattr on isid directories for use by tmpreaper - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - Add systemd_status_all_unit_files() interface - Add support for nshadow - Allow sysadm_t to administrate the postfix domains - Add interface to setattr on isid directories for use by tmpreaper - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - Allow sshd_t sys_admin for use with afs logins - Add labeling for /var/named/chroot/etc/localtim- Allow setroubleshoot_fixit to execute rpm - zoneminder needs to connect to httpd ports where remote cameras are listening - Allow firewalld to execute content created in /run directory - Allow svirt_t to read generic certs - Dontaudit leaked ps content to mozilla plugin - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - init scripts are creating systemd_unit_file_t directories- systemd_logind_t is looking at all files under /run/user/apache - Allow systemd to manage all user tmp files - Add labeling for /var/named/chroot/etc/localtime - Allow netlabel_peer_t type to flow over netif_t and node_t, and only be hindered by MLS, need back port to RHEL6 - Keystone is now using a differnt port - Allow xdm_t to use usbmuxd daemon to control sound - Allow passwd daemon to execute gnome_exec_keyringd - Fix chrome_sandbox policy - Add labeling for /var/run/checkquorum-timer - More fixes for the dspam domain, needs back port to RHEL6 - More fixes for the dspam domain, needs back port to RHEL6 - sssd needs to connect to kerberos password port if a user changes his password - Lots of fixes from RHEL testing of dspam web - Allow chrome and mozilla_plugin to create msgq and semaphores - Fixes for dspam cgi scripts - Fixes for dspam cgi scripts - Allow confine users to ptrace screen - Backport virt_qemu_ga_t changes from RHEL - Fix labeling for dspam.cgi needed for RHEL6 - We need to back port this policy to RHEL6, for lxc domains - Dontaudit attempts to set sys_resource of logrotate - Allow corosync to read/write wdmd's tmpfs files - I see a ptrace of mozilla_plugin_t by staff_t, will allow without deny_ptrace being set - Allow cron jobs to read bind config for unbound - libvirt needs to inhibit systemd - kdumpctl needs to delete boot_t files - Fix duplicate gnome_config_filetrans - virtd_lxc_t is using /dev/fuse - Passenger needs to create a directory in /var/log, needs a backport to RHEL6 for openshift - apcupsd can be setup to listen to snmp trafic - Allow transition from kdumpgui to kdumpctl - Add fixes for munin CGI scripts - Allow deltacloud to connect to openstack at the keystone port - Allow domains that transition to svirt domains to be able to signal them - Fix file context of gstreamer in .cache directory - libvirt is communicating with logind - NetworkManager writes to the systemd inhibit pipe- Allow munin disk plugins to get attributes of all directories - Allow munin disk plugins to get attributes of all directorie - Allow logwatch to get attributes of all directories - Fix networkmanager_manage_lib() interface - Fix gnome_manage_config() to allow to manage sock_file - Fix virtual_domain_context - Add support for dynamic DNS for DHCPv6- Allow svirt to use netlink_route_socket which was a part of auth_use_nsswitch - Add additional labeling for /var/www/openshift/broker - Fix rhev policy - Allow openshift_initrc domain to dbus chat with systemd_logind - Allow httpd to getattr passenger log file if run_stickshift - Allow consolehelper-gtk to connect to xserver - Add labeling for the tmp-inst directory defined in pam_namespace.conf - Add lvm_metadata_t labeling for /etc/multipath- consoletype is no longer used- Add label for efivarfs - Allow certmonger to send signal to itself - Allow plugin-config to read own process status - Add more fixes for pacemaker - apache/drupal can run clamscan on uploaded content - Allow chrome_sandbox_nacl_t to read pid 1 content- Fix MCS Constraints to control ingres and egres controls on the network. - Change name of svirt_nokvm_t to svirt_tcg_t - Allow tuned to request the kernel to load kernel modules- Label /var/lib/pgsql/.ssh as ssh_home_t - Add labeling for /usr/bin/pg_ctl - Allow systemd-logind to manage keyring user tmp dirs - Add support for 7389/tcp port - gems seems to be placed in lots of places - Since xdm is running a full session, it seems to be trying to execute lots of executables via dbus - Add back tcp/8123 port as http_cache port - Add ovirt-guest-agent\.pid labeling - Allow xend to run scsi_id - Allow rhsmcertd-worker to read "physical_package_id" - Allow pki_tomcat to connect to ldap port - Allow lpr to read /usr/share/fonts - Allow open file from CD/DVD drive on domU - Allow munin services plugins to talk to SSSD - Allow all samba domains to create samba directory in var_t directories - Take away svirt_t ability to use nsswitch - Dontaudit attempts by openshift to read apache logs - Allow apache to create as well as append _ra_content_t - Dontaudit sendmail_t reading a leaked file descriptor - Add interface to have admin transition /etc/prelink.cache to the proper label - Add sntp support to ntp policy - Allow firewalld to dbus chat with devicekit_power - Allow tuned to call lsblk - Allow tor to read /proc/sys/kernel/random/uuid - Add tor_can_network_relay boolean- Add openshift_initrc_signal() interface - Fix typos - dspam port is treat as spamd_port_t - Allow setroubleshoot to getattr on all executables - Allow tuned to execute profiles scripts in /etc/tuned - Allow apache to create directories to store its log files - Allow all directories/files in /var/log starting with passenger to be labeled passenger_log_t - Looks like apache is sending sinal to openshift_initrc_t now,needs back port to RHEL6 - Allow Postfix to be configured to listen on TCP port 10026 for email from DSPAM - Add filename transition for /etc/tuned/active_profile - Allow condor_master to send mails - Allow condor_master to read submit.cf - Allow condor_master to create /tmp files/dirs - Allow condor_mater to send sigkill to other condor domains - Allow condor_procd sigkill capability - tuned-adm wants to talk with tuned daemon - Allow kadmind and krb5kdc to also list sssd_public_t - Allow accountsd to dbus chat with init - Fix git_read_generic_system_content_files() interface - pppd wants sys_nice by nmcli because of "syscall=sched_setscheduler" - Fix mozilla_plugin_can_network_connect to allow to connect to all ports - Label all munin plugins which are not covered by munin plugins policy as unconfined_munin_plugin_exec_t - dspam wants to search /var/spool for opendkim data - Revert "Add support for tcp/10026 port as dspam_port_t" - Turning on labeled networking requires additional access for netlabel_peer_t; these allow rules need to be back ported to RHEL6 - Allow all application domains to use fifo_files passed in from userdomains, also allow them to write to tmp_files inherited from userdomain - Allow systemd_tmpfiles_t to setattr on mandb_cache_t- consolekit.pp was not removed from the postinstall script- Add back consolekit policy - Silence bootloader trying to use inherited tty - Silence xdm_dbusd_t trying to execute telepathy apps - Fix shutdown avcs when machine has unconfined.pp disabled - The host and a virtual machine can share the same printer on a usb device - Change oddjob to transition to a ranged openshift_initr_exec_t when run from oddjob - Allow abrt_watch_log_t to execute bin_t - Allow chrome sandbox to write content in ~/.config/chromium - Dontaudit setattr on fontconfig dir for thumb_t - Allow lircd to request the kernel to load module - Make rsync as userdom_home_manager - Allow rsync to search automount filesystem - Add fixes for pacemaker- Add support for 4567/tcp port - Random fixes from Tuomo Soini - xdm wants to get init status - Allow programs to run in fips_mode - Add interface to allow the reading of all blk device nodes - Allow init to relabel rpcbind sock_file - Fix labeling for lastlog and faillog related to logrotate - ALlow aeolus_configserver to use TRAM port - Add fixes for aeolus_configserver - Allow snmpd to connect to snmp port - Allow spamd_update to create spamd_var_lib_t directories - Allow domains that can read sssd_public_t files to also list the directory - Remove miscfiles_read_localization, this is defined for all domains- Allow syslogd to request the kernel to load a module - Allow syslogd_t to read the network state information - Allow xdm_dbusd_t connect to the system DBUS - Add support for 7389/tcp port - Allow domains to read/write all inherited sockets - Allow staff_t to read kmsg - Add awstats_purge_apache_log boolean - Allow ksysguardproces to read /.config/Trolltech.conf - Allow passenger to create and append puppet log files - Add puppet_append_log and puppet_create_log interfaces - Add puppet_manage_log() interface - Allow tomcat domain to search tomcat_var_lib_t - Allow pki_tomcat_t to connect to pki_ca ports - Allow pegasus_t to have net_admin capability - Allow pegasus_t to write /sys/class/net//flags - Allow mailserver_delivery to manage mail_home_rw_t lnk_files - Allow fetchmail to create log files - Allow gnomeclock to manage home config in .kde - Allow bittlebee to read kernel sysctls - Allow logrotate to list /root- Fix userhelper_console_role_template() - Allow enabling Network Access Point service using blueman - Make vmware_host_t as unconfined domain - Allow authenticate users in webaccess via squid, using mysql as backend - Allow gathers to get various metrics on mounted file systems - Allow firewalld to read /etc/hosts - Fix cron_admin_role() to make sysadm cronjobs running in the sysadm_t instead of cronjob_t - Allow kdumpgui to read/write to zipl.conf - Commands needed to get mock to build from staff_t in enforcing mode - Allow mdadm_t to manage cgroup files - Allow all daemons and systemprocesses to use inherited initrc_tmp_t files - dontaudit ifconfig_t looking at fifo_files that are leaked to it - Add lableing for Quest Authentication System- Fix filetrans interface definitions - Dontaudit xdm_t to getattr on BOINC lib files - Add systemd_reload_all_services() interface - Dontaudit write access on /var/lib/net-snmp/mib_indexes - Only stop mcsuntrustedproc from relableing files - Allow accountsd to dbus chat with gdm - Allow realmd to getattr on all fs - Allow logrotate to reload all services - Add systemd unit file for radiusd - Allow winbind to create samba pid dir - Add labeling for /var/nmbd/unexpected - Allow chrome and mozilla plugin to connect to msnp ports- Fix storage_rw_inherited_fixed_disk_dev() to cover also blk_file - Dontaudit setfiles reading /dev/random - On initial boot gnomeclock is going to need to be set buy gdm - Fix tftp_read_content() interface - Random apps looking at kernel file systems - Testing virt with lxc requiers additional access for virsh_t - New allow rules requied for latest libvirt, libvirt talks directly to journald,lxc setup tool needs compromize_kernel,and we need ipc_lock in the container - Allow MPD to read /dev/radnom - Allow sandbox_web_type to read logind files which needs to read pulseaudio - Allow mozilla plugins to read /dev/hpet - Add labeling for /var/lib/zarafa-webap - Allow BOINC client to use an HTTP proxy for all connections - Allow rhsmertd to domain transition to dmidecod - Allow setroubleshootd to send D-Bus msg to ABRT- Define usbtty_device_t as a term_tty - Allow svnserve to accept a connection - Allow xend manage default virt_image_t type - Allow prelink_cron_system_t to overide user componant when executing cp - Add labeling for z-push - Gnomeclock sets the realtime clock - Openshift seems to be storing apache logs in /var/lib/openshift/.log/httpd - Allow lxc domains to use /dev/random and /dev/urandom- Add port defintion for tcp/9000 - Fix labeling for /usr/share/cluster/checkquorum to label also checkquorum.wdmd - Add rules and labeling for $HOME/cache/\.gstreamer-.* directory - Add support for CIM provider openlmi-networking which uses NetworkManager dbus API - Allow shorewall_t to create netlink_socket - Allow krb5admind to block suspend - Fix labels on /var/run/dlm_controld /var/log/dlm_controld - Allow krb5kdc to block suspend - gnomessytemmm_t needs to read /etc/passwd - Allow cgred to read all sysctls- Allow all domains to read /proc/sys/vm/overcommit_memory - Make proc_numa_t an MLS Trusted Object - Add /proc/numactl support for confined users - Allow ssh_t to connect to any port > 1023 - Add openvswitch domain - Pulseaudio tries to create directories in gnome_home_t directories - New ypbind pkg wants to search /var/run which is caused by sd_notify - Allow NM to read certs on NFS/CIFS using use_nfs_*, use_samba_* booleans - Allow sanlock to read /dev/random - Treat php-fpm with httpd_t - Allow domains that can read named_conf_t to be able to list the directories - Allow winbind to create sock files in /var/run/samba- Add smsd policy - Add support for OpenShift sbin labelin - Add boolean to allow virt to use rawip - Allow mozilla_plugin to read all file systems with noxattrs support - Allow kerberos to write on anon_inodefs fs - Additional access required by fenced - Add filename transitions for passwd.lock/group.lock - UPdate man pages - Create coolkey directory in /var/cache with the correct label- Fix label on /etc/group.lock - Allow gnomeclock to create lnk_file in /etc - label /root/.pki as a home_cert_t - Add interface to make sure rpcbind.sock is created with the correct label - Add definition for new directory /var/lib/os-probe and bootloader wants to read udev rules - opendkim should be a part of milter - Allow libvirt to set the kernel sched algorythm - Allow mongod to read sysfs_t - Add authconfig policy - Remove calls to miscfiles_read_localization all domains get this - Allow virsh_t to read /root/.pki/ content - Add label for log directory under /var/www/stickshift- Allow getty to setattr on usb ttys - Allow sshd to search all directories for sshd_home_t content - Allow staff domains to send dbus messages to kdumpgui - Fix labels on /etc/.pwd.lock and friends to be passwd_file_t - Dontaudit setfiles reading urand - Add files_dontaudit_list_tmp() for domains to which we added sys_nice/setsched - Allow staff_gkeyringd_t to read /home/$USER/.local/share/keyrings dir - Allow systemd-timedated to read /dev/urandom - Allow entropyd_t to read proc_t (meminfo) - Add unconfined munin plugin - Fix networkmanager_read_conf() interface - Allow blueman to list /tmp which is needed by sys_nic/setsched - Fix label of /etc/mail/aliasesdb-stamp - numad is searching cgroups - realmd is communicating with networkmanager using dbus - Lots of fixes to try to get kdump to work- Allow loging programs to dbus chat with realmd - Make apache_content_template calling as optional - realmd is using policy kit- Add new selinuxuser_use_ssh_chroot boolean - dbus needs to be able to read/write inherited fixed disk device_t passed through it - Cleanup netutils process allow rule - Dontaudit leaked fifo files from openshift to ping - sanlock needs to read mnt_t lnk files - Fail2ban needs to setsched and sys_nice- Change default label of all files in /var/run/rpcbind - Allow sandbox domains (java) to read hugetlbfs_t - Allow awstats cgi content to create tmp files and read apache log files - Allow setuid/setgid for cupsd-config - Allow setsched/sys_nice pro cupsd-config - Fix /etc/localtime sym link to be labeled locale_t - Allow sshd to search postgresql db t since this is a homedir - Allow xwindows users to chat with realmd - Allow unconfined domains to configure all files and null_device_t service- Adopt pki-selinux policy- pki is leaking which we dontaudit until a pki code fix - Allow setcap for arping - Update man pages - Add labeling for /usr/sbin/mcollectived - pki fixes - Allow smokeping to execute fping in the netutils_t domain- Allow mount to relabelfrom unlabeled file systems - systemd_logind wants to send and receive messages from devicekit disk over dbus to make connected mouse working - Add label to get bin files under libreoffice labeled correctly - Fix interface to allow executing of base_ro_file_type - Add fixes for realmd - Update pki policy - Add tftp_homedir boolean - Allow blueman sched_setscheduler - openshift user domains wants to r/w ssh tcp sockets- Additional requirements for disable unconfined module when booting - Fix label of systemd script files - semanage can use -F /dev/stdin to get input - syslog now uses kerberos keytabs - Allow xserver to compromise_kernel access - Allow nfsd to write to mount_var_run_t when running the mount command - Add filename transition rule for bin_t directories - Allow files to read usr_t lnk_files - dhcpc wants chown - Add support for new openshift labeling - Clean up for tunable+optional statements - Add labeling for /usr/sbin/mkhomedir_helper - Allow antivirus domain to managa amavis spool files - Allow rpcbind_t to read passwd - Allow pyzor running as spamc to manage amavis spool- Add interfaces to read kernel_t proc info - Missed this version of exec_all - Allow anyone who can load a kernel module to compromise kernel - Add oddjob_dbus_chat to openshift apache policy - Allow chrome_sandbox_nacl_t to send signals to itself - Add unit file support to usbmuxd_t - Allow all openshift domains to read sysfs info - Allow openshift domains to getattr on all domains- MLS fixes from Dan - Fix name of capability2 secure_firmware->compromise_kerne- Allow xdm to search all file systems - Add interface to allow the config of all files - Add rngd policy - Remove kgpg as a gpg_exec_t type - Allow plymouthd to block suspend - Allow systemd_dbus to config any file - Allow system_dbus_t to configure all services - Allow freshclam_t to read usr_files - varnishd requires execmem to load modules- Allow semanage to verify types - Allow sudo domain to execute user home files - Allow session_bus_type to transition to user_tmpfs_t - Add dontaudit caused by yum updates - Implement pki policy but not activated- tuned wants to getattr on all filesystems - tuned needs also setsched. The build is needed for test day- Add policy for qemu-qa - Allow razor to write own config files - Add an initial antivirus policy to collect all antivirus program - Allow qdisk to read usr_t - Add additional caps for vmware_host - Allow tmpfiles_t to setattr on mandb_cache_t - Dontaudit leaked files into mozilla_plugin_config_t - Allow wdmd to getattr on tmpfs - Allow realmd to use /dev/random - allow containers to send audit messages - Allow root mount any file via loop device with enforcing mls policy - Allow tmpfiles_t to setattr on mandb_cache_t - Allow tmpfiles_t to setattr on mandb_cache_t - Make userdom_dontaudit_write_all_ not allow open - Allow init scripts to read all unit files - Add support for saphostctrl ports- Add kernel_read_system_state to sandbox_client_t - Add some of the missing access to kdumpgui - Allow systemd_dbusd_t to status the init system - Allow vmnet-natd to request the kernel to load a module - Allow gsf-office-thum to append .cache/gdm/session.log - realmd wants to read .config/dconf/user - Firewalld wants sys_nice/setsched - Allow tmpreaper to delete mandb cache files - Firewalld wants sys_nice/setsched - Allow firewalld to perform a DNS name resolution - Allown winbind to read /usr/share/samba/codepages/lowcase.dat - Add support for HTTPProxy* in /etc/freshclam.conf - Fix authlogin_yubike boolean - Extend smbd_selinux man page to include samba booleans - Allow dhcpc to execute consoletype - Allow ping to use inherited tmp files created in init scripts - On full relabel with unconfined domain disabled, initrc was running some chcon's - Allow people who delete man pages to delete mandb cache files- Add missing permissive domains- Add new mandb policy - ALlow systemd-tmpfiles_t to relabel mandb_cache_t - Allow logrotate to start all unit files- Add fixes for ctbd - Allow nmbd to stream connect to ctbd - Make cglear_t as nsswitch_domain - Fix bogus in interfaces - Allow openshift to read/write postfix public pipe - Add postfix_manage_spool_maildrop_files() interface - stickshift paths have been renamed to openshift - gnome-settings-daemon wants to write to /run/systemd/inhibit/ pipes - Update man pages, adding ENTRYPOINTS- Add mei_device_t - Make sure gpg content in homedir created with correct label - Allow dmesg to write to abrt cache files - automount wants to search virtual memory sysctls - Add support for hplip logs stored in /var/log/hp/tmp - Add labeling for /etc/owncloud/config.php - Allow setroubleshoot to send analysys to syslogd-journal - Allow virsh_t to interact with new fenced daemon - Allow gpg to write to /etc/mail/spamassassiin directories - Make dovecot_deliver_t a mail server delivery type - Add label for /var/tmp/DNS25- Fixes for tomcat_domain template interface- Remove init_systemd and init_upstart boolean, Move init_daemon_domain and init_system_domain to use attributes - Add attribute to all base os types. Allow all domains to read all ro base OS types- Additional unit files to be defined as power unit files - Fix more boolean names- Fix boolean name so subs will continue to work- dbus needs to start getty unit files - Add interface to allow system_dbusd_t to start the poweroff service - xdm wants to exec telepathy apps - Allow users to send messages to systemdlogind - Additional rules needed for systemd and other boot apps - systemd wants to list /home and /boot - Allow gkeyringd to write dbus/conf file - realmd needs to read /dev/urand - Allow readahead to delete /.readahead if labeled root_t, might get created before policy is loaded- Fixes to safe more rules - Re-write tomcat_domain_template() - Fix passenger labeling - Allow all domains to read man pages - Add ephemeral_port_t to the 'generic' port interfaces - Fix the names of postgresql booleans- Stop using attributes form netlabel_peer and syslog, auth_use_nsswitch setsup netlabel_peer - Move netlable_peer check out of booleans - Remove call to recvfrom_netlabel for kerberos call - Remove use of attributes when calling syslog call - Move -miscfiles_read_localization to domain.te to save hundreds of allow rules - Allow all domains to read locale files. This eliminates around 1500 allow rules- Cleanup nis_use_ypbind_uncond interface - Allow rndc to block suspend - tuned needs to modify the schedule of the kernel - Allow svirt_t domains to read alsa configuration files - ighten security on irc domains and make sure they label content in homedir correctly - Add filetrans_home_content for irc files - Dontaudit all getattr access for devices and filesystems for sandbox domains - Allow stapserver to search cgroups directories - Allow all postfix domains to talk to spamd- Add interfaces to ignore setattr until kernel fixes this to be checked after the DAC check - Change pam_t to pam_timestamp_t - Add dovecot_domain attribute and allow this attribute block_suspend capability2 - Add sanlock_use_fusefs boolean - numad wants send/recieve msg - Allow rhnsd to send syslog msgs - Make piranha-pulse as initrc domain - Update openshift instances to dontaudit setattr until the kernel is fixed.- Fix auth_login_pgm_domain() interface to allow domains also managed user tmp dirs because of #856880 related to pam_systemd - Remove pam_selinux.8 which conflicts with man page owned by the pam package - Allow glance-api to talk to mysql - ABRT wants to read Xorg.0.log if if it detects problem with Xorg - Fix gstreamer filename trans. interface- Man page fixes by Dan Walsh- Allow postalias to read postfix config files - Allow man2html to read man pages - Allow rhev-agentd to search all mountpoints - Allow rhsmcertd to read /dev/random - Add tgtd_stream_connect() interface - Add cyrus_write_data() interface - Dontaudit attempts by sandboxX clients connectiing to the xserver_port_t - Add port definition for tcp/81 as http_port_t - Fix /dev/twa labeling - Allow systemd to read modules config- Merge openshift policy - Allow xauth to read /dev/urandom - systemd needs to relabel content in /run/systemd directories - Files unconfined should be able to perform all services on all files - Puppet tmp file can be leaked to all domains - Dontaudit rhsmcertd-worker to search /root/.local - Allow chown capability for zarafa domains - Allow system cronjobs to runcon into openshift domains - Allow virt_bridgehelper_t to manage content in the svirt_home_t labeled directories- nmbd wants to create /var/nmbd - Stop transitioning out of anaconda and firstboot, just causes AVC messages - Allow clamscan to read /etc files - Allow bcfg2 to bind cyphesis port - heartbeat should be run as rgmanager_t instead of corosync_t - Add labeling for /etc/openldap/certs - Add labeling for /opt/sartest directory - Make crontab_t as userdom home reader - Allow tmpreaper to list admin_home dir - Add defition for imap_0 replay cache file - Add support for gitolite3 - Allow virsh_t to send syslog messages - allow domains that can read samba content to be able to list the directories also - Add realmd_dbus_chat to allow all apps that use nsswitch to talk to realmd - Separate out sandbox from sandboxX policy so we can disable it by default - Run dmeventd as lvm_t - Mounting on any directory requires setattr and write permissions - Fix use_nfs_home_dirs() boolean - New labels for pam_krb5 - Allow init and initrc domains to sys_ptrace since this is needed to look at processes not owned by uid 0 - Add realmd_dbus_chat to allow all apps that use nsswitch to talk to realmd- Separate sandbox policy into sandbox and sandboxX, and disable sandbox by default on fresh installs - Allow domains that can read etc_t to read etc_runtime_t - Allow all domains to use inherited tmpfiles- Allow realmd to read resolv.conf - Add pegasus_cache_t type - Label /usr/sbin/fence_virtd as virsh_exec_t - Add policy for pkcsslotd - Add support for cpglockd - Allow polkit-agent-helper to read system-auth-ac - telepathy-idle wants to read gschemas.compiled - Allow plymouthd to getattr on fs_t - Add slpd policy - Allow ksysguardproces to read/write config_usr_t- Fix labeling substitution so rpm will label /lib/systemd content correctly- Add file name transitions for ttyACM0 - spice-vdagent(d)'s are going to log over to syslog - Add sensord policy - Add more fixes for passenger policy related to puppet - Allow wdmd to create wdmd_tmpfs_t - Fix labeling for /var/run/cachefilesd\.pid - Add thumb_tmpfs_t files type- Allow svirt domains to manage the network since this is containerized - Allow svirt_lxc_net_t to send audit messages- Make "snmpwalk -mREDHAT-CLUSTER-MIB ...." working - Allow dlm_controld to execute dlm_stonith labeled as bin_t - Allow GFS2 working on F17 - Abrt needs to execute dmesg - Allow jockey to list the contents of modeprobe.d - Add policy for lightsquid as squid_cron_t - Mailscanner is creating files and directories in /tmp - dmesg is now reading /dev/kmsg - Allow xserver to communicate with secure_firmware - Allow fsadm tools (fsck) to read /run/mount contnet - Allow sysadm types to read /dev/kmsg -- Allow postfix, sssd, rpcd to block_suspend - udev seems to need secure_firmware capability - Allow virtd to send dbus messages to firewalld so it can configure the firewall- Fix labeling of content in /run created by virsh_t - Allow condor domains to read kernel sysctls - Allow condor_master to connect to amqp - Allow thumb drives to create shared memory and semaphores - Allow abrt to read mozilla_plugin config files - Add labels for lightsquid - Default files in /opt and /usr that end in .cgi as httpd_sys_script_t, allow - dovecot_auth_t uses ldap for user auth - Allow domains that can read dhcp_etc_t to read lnk_files - Add more then one watchdog device - Allow useradd_t to manage etc_t files so it can rename it and edit them - Fix invalid class dir should be fifo_file - Move /run/blkid to fsadm and make sure labeling is correct- Fix bogus regex found by eparis - Fix manage run interface since lvm needs more access - syslogd is searching cgroups directory - Fixes to allow virt-sandbox-service to manage lxc var run content- Fix Boolean settings - Add new libjavascriptcoregtk as textrel_shlib_t - Allow xdm_t to create xdm_home_t directories - Additional access required for systemd - Dontaudit mozilla_plugin attempts to ipc_lock - Allow tmpreaper to delete unlabeled files - Eliminate screen_tmp_t and allow it to manage user_tmp_t - Dontaudit mozilla_plugin_config_t to append to leaked file descriptors - Allow web plugins to connect to the asterisk ports - Condor will recreate the lock directory if it does not exist - Oddjob mkhomedir needs to connectto user processes - Make oddjob_mkhomedir_t a userdom home manager- Put placeholder back in place for proper numbering of capabilities - Systemd also configures init scripts- Fix ecryptfs interfaces - Bootloader seems to be trolling around /dev/shm and /dev - init wants to create /etc/systemd/system-update.target.wants - Fix systemd_filetrans call to move it out of tunable - Fix up policy to work with systemd userspace manager - Add secure_firmware capability and remove bogus epolwakeup - Call seutil_*_login_config interfaces where should be needed - Allow rhsmcertd to send signal to itself - Allow thin domains to send signal to itself - Allow Chrome_ChildIO to read dosfs_t- Add role rules for realmd, sambagui- Add new type selinux_login_config_t for /etc/selinux//logins/ - Additional fixes for seutil_manage_module_store() - dbus_system_domain() should be used with optional_policy - Fix svirt to be allowed to use fusefs file system - Allow login programs to read /run/ data created by systemd_login - sssd wants to write /etc/selinux//logins/ for SELinux PAM module - Fix svirt to be allowed to use fusefs file system - Allow piranha domain to use nsswitch - Sanlock needs to send Kill Signals to non root processes - Pulseaudio wants to execute /run/user/PID/.orc- Fix saslauthd when it tries to read /etc/shadow - Label gnome-boxes as a virt homedir - Need to allow svirt_t ability to getattr on nfs_t file systems - Update sanlock policy to solve all AVC's - Change confined users can optionally manage virt content - Handle new directories under ~/.cache - Add block suspend to appropriate domains - More rules required for containers - Allow login programs to read /run/ data created by systemd_logind - Allow staff users to run svirt_t processes- Update to upstream- More fixes for systemd to make rawhide booting from Dan Walsh- Add systemd fixes to make rawhide booting- Add systemd_logind_inhibit_var_run_t attribute - Remove corenet_all_recvfrom_unlabeled() for non-contrib policies because we moved it to domain.if for all domain_type - Add interface for mysqld to dontaudit signull to all processes - Label new /var/run/journal directory correctly - Allow users to inhibit suspend via systemd - Add new type for the /var/run/inhibit directory - Add interface to send signull to systemd_login so avahi can send them - Allow systemd_passwd to send syslog messages - Remove corenet_all_recvfrom_unlabeled() calling fro policy files - Allow editparams.cgi running as httpd_bugzilla_script_t to read /etc/group - Allow smbd to read cluster config - Add additional labeling for passenger - Allow dbus to inhibit suspend via systemd - Allow avahi to send signull to systemd_login- Add interface to dontaudit getattr access on sysctls - Allow sshd to execute /bin/login - Looks like xdm is recreating the xdm directory in ~/.cache/ on login - Allow syslog to use the leaked kernel_t unix_dgram_socket from system-jounald - Fix semanage to work with unconfined domain disabled on F18 - Dontaudit attempts by mozilla plugins to getattr on all kernel sysctls - Virt seems to be using lock files - Dovecot seems to be searching directories of every mountpoint - Allow jockey to read random/urandom, execute shell and install third-party drivers - Add aditional params to allow cachedfiles to manage its content - gpg agent needs to read /dev/random - The kernel hands an svirt domains /SYSxxxxx which is a tmpfs that httpd wants to read and write - Add a bunch of dontaudit rules to quiet svirt_lxc domains - Additional perms needed to run svirt_lxc domains - Allow cgclear to read cgconfig - Allow sys_ptrace capability for snmp - Allow freshclam to read /proc - Allow procmail to manage /home/user/Maildir content - Allow NM to execute wpa_cli - Allow amavis to read clamd system state - Regenerate man pages- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- Add realmd and stapserver policies - Allow useradd to manage stap-server lib files - Tighten up capabilities for confined users - Label /etc/security/opasswd as shadow_t - Add label for /dev/ecryptfs - Allow condor_startd_t to start sshd with the ranged - Allow lpstat.cups to read fips_enabled file - Allow pyzor running as spamc_t to create /root/.pyzor directory - Add labelinf for amavisd-snmp init script - Add support for amavisd-snmp - Allow fprintd sigkill self - Allow xend (w/o libvirt) to start virtual machines - Allow aiccu to read /etc/passwd - Allow condor_startd to Make specified domain MCS trusted for setting any category set for the processes it executes - Add condor_startd_ranged_domtrans_to() interface - Add ssd_conf_t for /etc/sssd - accountsd needs to fchown some files/directories - Add ICACLient and zibrauserdata as mozilla_filetrans_home_content - SELinux reports afs_t needs dac_override to read /etc/mtab, even though everything works, adding dontaudit - Allow xend_t to read the /etc/passwd file- Until we figure out how to fix systemd issues, allow all apps that send syslog messages to send them to kernel_t - Add init_access_check() interface - Fix label on /usr/bin/pingus to not be labeled as ping_exec_t - Allow tcpdump to create a netlink_socket - Label newusers like useradd - Change xdm log files to be labeled xdm_log_t - Allow sshd_t with privsep to work in MLS - Allow freshclam to update databases thru HTTP proxy - Allow s-m-config to access check on systemd - Allow abrt to read public files by default - Fix amavis_create_pid_files() interface - Add labeling and filename transition for dbomatic.log - Allow system_dbusd_t to stream connect to bluetooth, and use its socket - Allow amavisd to execute fsav - Allow tuned to use sys_admin and sys_nice capabilities - Add php-fpm policy from Bryan - Add labeling for aeolus-configserver-thinwrapper - Allow thin domains to execute shell - Fix gnome_role_gkeyringd() interface description - Lot of interface fixes - Allow OpenMPI job running as condor_startd_ssh_t to manage condor lib files - Allow OpenMPI job to use kerberos - Make deltacloudd_t as nsswitch_domain - Allow xend_t to run lsscsi - Allow qemu-dm running as xend_t to create tun_socket - Add labeling for /opt/brother/Printers(.*/)?inf - Allow jockey-backend to read pyconfig-64.h labeled as usr_t - Fix clamscan_can_scan_system boolean - Allow lpr to connectto to /run/user/$USER/keyring-22uREb/pkcs11- initrc is calling exportfs which is not confined so it attempts to read nfsd_files - Fixes for passenger running within openshift. - Add labeling for all tomcat6 dirs - Add support for tomcat6 - Allow cobblerd to read /etc/passwd - Allow jockey to read sysfs and and execute binaries with bin_t - Allow thum to use user terminals - Allow cgclear to read cgconfig config files - Fix bcf2g.fc - Remove sysnet_dns_name_resolve() from policies where auth_use_nsswitch() is used for other domains - Allow dbomatic to execute ruby - abrt_watch_log should be abrt_domain - Allow mozilla_plugin to connect to gatekeeper port- add ptrace_child access to process - remove files_read_etc_files() calling from all policies which have auth_use_nsswith() - Allow boinc domains to manage boinc_lib_t lnk_files - Add support for boinc-client.service unit file - Add support for boinc.log - Allow mozilla_plugin execmod on mozilla home files if allow_ex - Allow dovecot_deliver_t to read dovecot_var_run_t - Allow ldconfig and insmod to manage kdumpctl tmp files - Move thin policy out from cloudform.pp and add a new thin poli - pacemaker needs to communicate with corosync streams - abrt is now started on demand by dbus - Allow certmonger to talk directly to Dogtag servers - Change labeling for /var/lib/cobbler/webui_sessions to httpd_c - Allow mozila_plugin to execute gstreamer home files - Allow useradd to delete all file types stored in the users hom - rhsmcertd reads the rpm database - Add support for lightdm- Add tomcat policy - Remove pyzor/razor policy - rhsmcertd reads the rpm database - Dontaudit thumb to setattr on xdm_tmp dir - Allow wicd to execute ldconfig in the networkmanager_t domain - Add /var/run/cherokee\.pid labeling - Allow mozilla_plugin to create mozilla_plugin_tmp_t lnk files too - Allow postfix-master to r/w pipes other postfix domains - Allow snort to create netlink_socket - Add kdumpctl policy - Allow firstboot to create tmp_t files/directories - /usr/bin/paster should not be labeled as piranha_exec_t - remove initrc_domain from tomcat - Allow ddclient to read /etc/passwd - Allow useradd to delete all file types stored in the users homedir - Allow ldconfig and insmod to manage kdumpctl tmp files - Firstboot should be just creating tmp_t dirs and xauth should be allowed to write to those - Transition xauth files within firstboot_tmp_t - Fix labeling of /run/media to match /media - Label all lxdm.log as xserver_log_t - Add port definition for mxi port - Allow local_login_t to execute tmux- apcupsd needs to read /etc/passwd - Sanlock allso sends sigkill - Allow glance_registry to connect to the mysqld port - Dontaudit mozilla_plugin trying to getattr on /dev/gpmctl - Allow firefox plugins/flash to connect to port 1234 - Allow mozilla plugins to delete user_tmp_t files - Add transition name rule for printers.conf.O - Allow virt_lxc_t to read urand - Allow systemd_loigind to list gstreamer_home_dirs - Fix labeling for /usr/bin - Fixes for cloudform services * support FIPS - Allow polipo to work as web caching - Allow chfn to execute tmux- Add support for ecryptfs * ecryptfs does not support xattr * we need labeling for HOMEDIR - Add policy for (u)mount.ecryptfs* - Fix labeling of kerbero host cache files, allow rpc.svcgssd to manage host cache - Allow dovecot to manage Maildir content, fix transitions to Maildir - Allow postfix_local to transition to dovecot_deliver - Dontaudit attempts to setattr on xdm_tmp_t, looks like bogus code - Cleanup interface definitions - Allow apmd to change with the logind daemon - Changes required for sanlock in rhel6 - Label /run/user/apache as httpd_tmp_t - Allow thumb to use lib_t as execmod if boolean turned on - Allow squid to create the squid directory in /var with the correct labe - Add a new policy for glusterd from Bryan Bickford (bbickfor@redhat.com) - Allow virtd to exec xend_exec_t without transition - Allow virtd_lxc_t to unmount all file systems- PolicyKit path has changed - Allow httpd connect to dirsrv socket - Allow tuned to write generic kernel sysctls - Dontaudit logwatch to gettr on /dev/dm-2 - Allow policykit-auth to manage kerberos files - Make condor_startd and rgmanager as initrc domain - Allow virsh to read /etc/passwd - Allow mount to mount on user_tmp_t for /run/user/dwalsh/gvfs - xdm now needs to execute xsession_exec_t - Need labels for /var/lib/gdm - Fix files_filetrans_named_content() interface - Add new attribute - initrc_domain - Allow systemd_logind_t to signal, signull, sigkill all processes - Add filetrans rules for etc_runtime files- Rename boolean names to remove allow_- Mass merge with upstream * new policy topology to include contrib policy modules * we have now two base policy patches- Fix description of authlogin_nsswitch_use_ldap - Fix transition rule for rhsmcertd_t needed for RHEL7 - Allow useradd to list nfs state data - Allow openvpn to manage its log file and directory - We want vdsm to transition to mount_t when executing mount command to make sure /etc/mtab remains labeled correctly - Allow thumb to use nvidia devices - Allow local_login to create user_tmp_t files for kerberos - Pulseaudio needs to read systemd_login /var/run content - virt should only transition named system_conf_t config files - Allow munin to execute its plugins - Allow nagios system plugin to read /etc/passwd - Allow plugin to connect to soundd port - Fix httpd_passwd to be able to ask passwords - Radius servers can use ldap for backing store - Seems to need to mount on /var/lib for xguest polyinstatiation to work. - Allow systemd_logind to list the contents of gnome keyring - VirtualGL need xdm to be able to manage content in /etc/opt/VirtualGL - Add policy for isns-utils- Add policy for subversion daemon - Allow boinc to read passwd - Allow pads to read kernel network state - Fix man2html interface for sepolgen-ifgen - Remove extra /usr/lib/systemd/system/smb - Remove all /lib/systemd and replace with /usr/lib/systemd - Add policy for man2html - Fix the label of kerberos_home_t to krb5_home_t - Allow mozilla plugins to use Citrix - Allow tuned to read /proc/sys/kernel/nmi_watchdog - Allow tune /sys options via systemd's tmpfiles.d "w" type- Dontaudit lpr_t to read/write leaked mozilla tmp files - Add file name transition for .grl-podcasts directory - Allow corosync to read user tmp files - Allow fenced to create snmp lib dirs/files - More fixes for sge policy - Allow mozilla_plugin_t to execute any application - Allow dbus to read/write any open file descriptors to any non security file on the system that it inherits to that it can pass them to another domain - Allow mongod to read system state information - Fix wrong type, we should dontaudit sys_admin for xdm_t not xserver_t - Allow polipo to manage polipo_cache dirs - Add jabbar_client port to mozilla_plugin_t - Cleanup procmail policy - system bus will pass around open file descriptors on files that do not have labels on them - Allow l2tpd_t to read system state - Allow tuned to run ls /dev - Allow sudo domains to read usr_t files - Add label to machine-id - Fix corecmd_read_bin_symlinks cut and paste error- Fix pulseaudio port definition - Add labeling for condor_starter - Allow chfn_t to creat user_tmp_files - Allow chfn_t to execute bin_t - Allow prelink_cron_system_t to getpw calls - Allow sudo domains to manage kerberos rcache files - Allow user_mail_domains to work with courie - Port definitions necessary for running jboss apps within openshift - Add support for openstack-nova-metadata-api - Add support for nova-console* - Add support for openstack-nova-xvpvncproxy - Fixes to make privsep+SELinux working if we try to use chage to change passwd - Fix auth_role() interface - Allow numad to read sysfs - Allow matahari-rpcd to execute shell - Add label for ~/.spicec - xdm is executing lspci as root which is requesting a sys_admin priv but seems to succeed without it - Devicekit_disk wants to read the logind sessions file when writing a cd - Add fixes for condor to make condor jobs working correctly - Change label of /var/log/rpmpkgs to cron_log_t - Access requires to allow systemd-tmpfiles --create to work. - Fix obex to be a user application started by the session bus. - Add additional filename trans rules for kerberos - Fix /var/run/heartbeat labeling - Allow apps that are managing rcache to file trans correctly - Allow openvpn to authenticate against ldap server - Containers need to listen to network starting and stopping events- Make systemd unit files less specific- Fix zarafa labeling - Allow guest_t to fix labeling - corenet_tcp_bind_all_unreserved_ports(ssh_t) should be called with the user_tcp_server boolean - add lxc_contexts - Allow accountsd to read /proc - Allow restorecond to getattr on all file sytems - tmpwatch now calls getpw - Allow apache daemon to transition to pwauth domain - Label content under /var/run/user/NAME/keyring* as gkeyringd_tmp_t - The obex socket seems to be a stream socket - dd label for /var/run/nologin- Allow jetty running as httpd_t to read hugetlbfs files - Allow sys_nice and setsched for rhsmcertd - Dontaudit attempts by mozilla_plugin_t to bind to ssdp ports - Allow setfiles to append to xdm_tmp_t - Add labeling for /export as a usr_t directory - Add labels for .grl files created by gstreamer- Add labeling for /usr/share/jetty/bin/jetty.sh - Add jetty policy which contains file type definitios - Allow jockey to use its own fifo_file and make this the default for all domains - Allow mozilla_plugins to use spice (vnc_port/couchdb) - asterisk wants to read the network state - Blueman now uses /var/lib/blueman- Add label for nodejs_debug - Allow mozilla_plugin_t to create ~/.pki directory and content- Add clamscan_can_scan_system boolean - Allow mysqld to read kernel network state - Allow sshd to read/write condor lib files - Allow sshd to read/write condor-startd tcp socket - Fix description on httpd_graceful_shutdown - Allow glance_registry to communicate with mysql - dbus_system_domain is using systemd to lauch applications - add interfaces to allow domains to send kill signals to user mail agents - Remove unnessary access for svirt_lxc domains, add privs for virtd_lxc_t - Lots of new access required for secure containers - Corosync needs sys_admin capability - ALlow colord to create shm - .orc should be allowed to be created by any app that can create gstream home content, thumb_t to be specific - Add boolean to control whether or not mozilla plugins can create random content in the users homedir - Add new interface to allow domains to list msyql_db directories, needed for libra - shutdown has to be allowed to delete etc_runtime_t - Fail2ban needs to read /etc/passwd - Allow ldconfig to create /var/cache/ldconfig - Allow tgtd to read hardware state information - Allow collectd to create packet socket - Allow chronyd to send signal to itself - Allow collectd to read /dev/random - Allow collectd to send signal to itself - firewalld needs to execute restorecon - Allow restorecon and other login domains to execute restorecon- Allow logrotate to getattr on systemd unit files - Add support for tor systemd unit file - Allow apmd to create /var/run/pm-utils with the correct label - Allow l2tpd to send sigkill to pppd - Allow pppd to stream connect to l2tpd - Add label for scripts in /etc/gdm/ - Allow systemd_logind_t to ignore mcs constraints on sigkill - Fix files_filetrans_system_conf_named_files() interface - Add labels for /usr/share/wordpress/wp-includes/*.php - Allow cobbler to get SELinux mode and booleans- Add unconfined_execmem_exec_t as an alias to bin_t - Allow fenced to read snmp var lib files, also allow it to read usr_t - ontaudit access checks on all executables from mozilla_plugin - Allow all user domains to setexec, so that sshd will work properly if it call setexec(NULL) while running withing a user mode - Allow systemd_tmpfiles_t to getattr all pipes and sockets - Allow glance-registry to send system log messages - semanage needs to manage mock lib files/dirs- Add policy for abrt-watch-log - Add definitions for jboss_messaging ports - Allow systemd_tmpfiles to manage printer devices - Allow oddjob to use nsswitch - Fix labeling of log files for postgresql - Allow mozilla_plugin_t to execmem and execstack by default - Allow firewalld to execute shell - Fix /etc/wicd content files to get created with the correct label - Allow mcelog to exec shell - Add ~/.orc as a gstreamer_home_t - /var/spool/postfix/lib64 should be labeled lib_t - mpreaper should be able to list all file system labeled directories - Add support for apache to use openstack - Add labeling for /etc/zipl.conf and zipl binary - Turn on allow_execstack and turn off telepathy transition for final release- More access required for virt_qmf_t - Additional assess required for systemd-logind to support multi-seat - Allow mozilla_plugin to setrlimit - Revert changes to fuse file system to stop deadlock- Allow condor domains to connect to ephemeral ports - More fixes for condor policy - Allow keystone to stream connect to mysqld - Allow mozilla_plugin_t to read generic USB device to support GPS devices - Allow thum to file name transition gstreamer home content - Allow thum to read all non security files - Allow glance_api_t to connect to ephemeral ports - Allow nagios plugins to read /dev/urandom - Allow syslogd to search postfix spool to support postfix chroot env - Fix labeling for /var/spool/postfix/dev - Allow wdmd chown - Label .esd_auth as pulseaudio_home_t - Have no idea why keyring tries to write to /run/user/dwalsh/dconf/user, but we can dontaudit for now- Add support for clamd+systemd - Allow fresclam to execute systemctl to handle clamd - Change labeling for /usr/sbin/rpc.ypasswd.env - Allow yppaswd_t to execute yppaswd_exec_t - Allow yppaswd_t to read /etc/passwd - Gnomekeyring socket has been moved to /run/user/USER/ - Allow samba-net to connect to ldap port - Allow signal for vhostmd - allow mozilla_plugin_t to read user_home_t socket - New access required for secure Linux Containers - zfs now supports xattrs - Allow quantum to execute sudo and list sysfs - Allow init to dbus chat with the firewalld - Allow zebra to read /etc/passwd- Allow svirt_t to create content in the users homedir under ~/.libvirt - Fix label on /var/lib/heartbeat - Allow systemd_logind_t to send kill signals to all processes started by a user - Fuse now supports Xattr Support- upowered needs to setsched on the kernel - Allow mpd_t to manage log files - Allow xdm_t to create /var/run/systemd/multi-session-x - Add rules for missedfont.log to be used by thumb.fc - Additional access required for virt_qmf_t - Allow dhclient to dbus chat with the firewalld - Add label for lvmetad - Allow systemd_logind_t to remove userdomain sock_files - Allow cups to execute usr_t files - Fix labeling on nvidia shared libraries - wdmd_t needs access to sssd and /etc/passwd - Add boolean to allow ftp servers to run in passive mode - Allow namepspace_init_t to relabelto/from a different user system_u from the user the namespace_init running with - Fix using httpd_use_fusefs - Allow chrome_sandbox_nacl to write inherited user tmp files as we allow it for chrome_sandbox- Rename rdate port to time port, and allow gnomeclock to connect to it - We no longer need to transition to ldconfig from rpm, rpm_script, or anaconda - /etc/auto.* should be labeled bin_t - Add httpd_use_fusefs boolean - Add fixes for heartbeat - Allow sshd_t to signal processes that it transitions to - Add condor policy - Allow svirt to create monitors in ~/.libvirt - Allow dovecot to domtrans sendmail to handle sieve scripts - Lot of fixes for cfengine- /var/run/postmaster.* labeling is no longer needed - Alllow drbdadmin to read /dev/urandom - l2tpd_t seems to use ptmx - group+ and passwd+ should be labeled as /etc/passwd - Zarafa-indexer is a socket- Ensure lastlog is labeled correctly - Allow accountsd to read /proc data about gdm - Add fixes for tuned - Add bcfg2 fixes which were discovered during RHEL6 testing - More fixes for gnome-keyring socket being moved - Run semanage as a unconfined domain, and allow initrc_t to create tmpfs_t sym links on shutdown - Fix description for files_dontaudit_read_security_files() interface- Add new policy and man page for bcfg2 - cgconfig needs to use getpw calls - Allow domains that communicate with the keyring to use cache_home_t instead of gkeyringd_tmpt - gnome-keyring wants to create a directory in cache_home_t - sanlock calls getpw- Add numad policy and numad man page - Add fixes for interface bugs discovered by SEWatch - Add /tmp support for squid - Add fix for #799102 * change default labeling for /var/run/slapd.* sockets - Make thumb_t as userdom_home_reader - label /var/lib/sss/mc same as pubconf, so getpw domains can read it - Allow smbspool running as cups_t to stream connect to nmbd - accounts needs to be able to execute passwd on behalf of users - Allow systemd_tmpfiles_t to delete boot flags - Allow dnssec_trigger to connect to apache ports - Allow gnome keyring to create sock_files in ~/.cache - google_authenticator is using .google_authenticator - sandbox running from within firefox is exposing more leaks - Dontaudit thumb to read/write /dev/card0 - Dontaudit getattr on init_exec_t for gnomeclock_t - Allow certmonger to do a transition to certmonger_unconfined_t - Allow dhcpc setsched which is caused by nmcli - Add rpm_exec_t for /usr/sbin/bcfg2 - system cronjobs are sending dbus messages to systemd_logind - Thumnailers read /dev/urand- Allow auditctl getcap - Allow vdagent to use libsystemd-login - Allow abrt-dump-oops to search /etc/abrt - Got these avc's while trying to print a boarding pass from firefox - Devicekit is now putting the media directory under /run/media - Allow thumbnailers to create content in ~/.thumbails directory - Add support for proL2TPd by Dominick Grift - Allow all domains to call getcap - wdmd seems to get a random chown capability check that it does not need - Allow vhostmd to read kernel sysctls- Allow chronyd to read unix - Allow hpfax to read /etc/passwd - Add support matahari vios-proxy-* apps and add virtd_exec_t label for them - Allow rpcd to read quota_db_t - Update to man pages to match latest policy - Fix bug in jockey interface for sepolgen-ifgen - Add initial svirt_prot_exec_t policy- More fixes for systemd from Dan Walsh- Add a new type for /etc/firewalld and allow firewalld to write to this directory - Add definition for ~/Maildir, and allow mail deliver domains to write there - Allow polipo to run from a cron job - Allow rtkit to schedule wine processes - Allow mozilla_plugin_t to acquire a bug, and allow it to transition gnome content in the home dir to the proper label - Allow users domains to send signals to consolehelper domains- More fixes for boinc policy - Allow polipo domain to create its own cache dir and pid file - Add systemctl support to httpd domain - Add systemctl support to polipo, allow NetworkManager to manage the service - Add policy for jockey-backend - Add support for motion daemon which is now covered by zoneminder policy - Allow colord to read/write motion tmpfs - Allow vnstat to search through var_lib_t directories - Stop transitioning to quota_t, from init an sysadm_t- Add svirt_lxc_file_t as a customizable type- Add additional fixes for icmp nagios plugin - Allow cron jobs to open fifo_files from cron, since service script opens /dev/stdin - Add certmonger_unconfined_exec_t - Make sure tap22 device is created with the correct label - Allow staff users to read systemd unit files - Merge in previously built policy - Arpwatch needs to be able to start netlink sockets in order to start - Allow cgred_t to sys_ptrace to look at other DAC Processes- Back port some of the access that was allowed in nsplugin_t - Add definitiona for couchdb ports - Allow nagios to use inherited users ttys - Add git support for mock - Allow inetd to use rdate port - Add own type for rdate port - Allow samba to act as a portmapper - Dontaudit chrome_sandbox attempts to getattr on chr_files in /dev - New fixes needed for samba4 - Allow apps that use lib_t to read lib_t symlinks- Add policy for nove-cert - Add labeling for nova-openstack systemd unit files - Add policy for keystoke- Fix man pages fro domains - Add man pages for SELinux users and roles - Add storage_dev_filetrans_named_fixed_disk() and use it for smartmon - Add policy for matahari-rpcd - nfsd executes mount command on restart - Matahari domains execute renice and setsched - Dontaudit leaked tty in mozilla_plugin_config - mailman is changing to a per instance naming - Add 7600 and 4447 as jboss_management ports - Add fixes for nagios event handlers - Label httpd.event as httpd_exec_t, it is an apache daemon- Add labeling for /var/spool/postfix/dev/log - NM reads sysctl.conf - Iscsi log file context specification fix - Allow mozilla plugins to send dbus messages to user domains that transition to it - Allow mysql to read the passwd file - Allow mozilla_plugin_t to create mozilla home dirs in user homedir - Allow deltacloud to read kernel sysctl - Allow postgresql_t to connectto itselfAllow postgresql_t to connectto itself - Allow postgresql_t to connectto itself - Add login_userdomain attribute for users which can log in using terminal- Allow sysadm_u to reach system_r by default #784011 - Allow nagios plugins to use inherited user terminals - Razor labeling is not used no longer - Add systemd support for matahari - Add port_types to man page, move booleans to the top, fix some english - Add support for matahari-sysconfig-console - Clean up matahari.fc - Fix matahari_admin() interfac - Add labels for/etc/ssh/ssh_host_*.pub keys- Allow ksysguardproces to send system log msgs - Allow boinc setpgid and signull - Allow xdm_t to sys_ptrace to run pidof command - Allow smtpd_t to manage spool files/directories and symbolic links - Add labeling for jetty - Needed changes to get unbound/dnssec to work with openswan- Add user_fonts_t alias xfs_tmp_t - Since depmod now runs as insmod_t we need to write to kernel_object_t - Allow firewalld to dbus chat with networkmanager - Allow qpidd to connect to matahari ports - policykit needs to read /proc for uses not owned by it - Allow systemctl apps to connecto the init stream- Turn on deny_ptrace boolean- Remove pam_selinux.8 man page. There was a conflict.- Add proxy class and read access for gssd_proxy - Separate out the sharing public content booleans - Allow certmonger to execute a script and send signals to apache and dirsrv to reload the certificate - Add label transition for gstream-0.10 and 12 - Add booleans to allow rsync to share nfs and cifs file sytems - chrome_sandbox wants to read the /proc/PID/exe file of the program that executed it - Fix filename transitions for cups files - Allow denyhosts to read "unix" - Add file name transition for locale.conf.new - Allow boinc projects to gconf config files - sssd needs to be able to increase the socket limit under certain loads - sge_execd needs to read /etc/passwd - Allow denyhost to check network state - NetworkManager needs to read sessions data - Allow denyhost to check network state - Allow xen to search virt images directories - Add label for /dev/megaraid_sas_ioctl_node - Add autogenerated man pages- Allow boinc project to getattr on fs - Allow init to execute initrc_state_t - rhev-agent package was rename to ovirt-guest-agent - If initrc_t creates /etc/local.conf then we need to make sure it is labeled correctly - sytemd writes content to /run/initramfs and executes it on shutdown - kdump_t needs to read /etc/mtab, should be back ported to F16 - udev needs to load kernel modules in early system boot- Need to add sys_ptrace back in since reading any content in /proc can cause these accesses - Add additional systemd interfaces which are needed fro *_admin interfaces - Fix bind_admin() interface- Allow firewalld to read urand - Alias java, execmem_mono to bin_t to allow third parties - Add label for kmod - /etc/redhat-lsb contains binaries - Add boolean to allow gitosis to send mail - Add filename transition also for "event20" - Allow systemd_tmpfiles_t to delete all file types - Allow collectd to ipc_lock- make consoletype_exec optional, so we can remove consoletype policy - remove unconfined_permisive.patch - Allow openvpn_t to inherit user home content and tmp content - Fix dnssec-trigger labeling - Turn on obex policy for staff_t - Pem files should not be secret - Add lots of rules to fix AVC's when playing with containers - Fix policy for dnssec - Label ask-passwd directories correctly for systemd- sshd fixes seem to be causing unconfined domains to dyntrans to themselves - fuse file system is now being mounted in /run/user - systemd_logind is sending signals to processes that are dbus messaging with it - Add support for winshadow port and allow iscsid to connect to this port - httpd should be allowed to bind to the http_port_t udp socket - zarafa_var_lib_t can be a lnk_file - A couple of new .xsession-errors files - Seems like user space and login programs need to read logind_sessions_files - Devicekit disk seems to be being launched by systemd - Cleanup handling of setfiles so most of rules in te file - Correct port number for dnssec - logcheck has the home dir set to its cache- Add policy for grindengine MPI jobs- Add new sysadm_secadm.pp module * contains secadm definition for sysadm_t - Move user_mail_domain access out of the interface into the te file - Allow httpd_t to create httpd_var_lib_t directories as well as files - Allow snmpd to connect to the ricci_modcluster stream - Allow firewalld to read /etc/passwd - Add auth_use_nsswitch for colord - Allow smartd to read network state - smartdnotify needs to read /etc/group- Allow gpg and gpg_agent to store sock_file in gpg_secret_t directory - lxdm startup scripts should be labeled bin_t, so confined users will work - mcstransd now creates a pid, needs back port to F16 - qpidd should be allowed to connect to the amqp port - Label devices 010-029 as usb devices - ypserv packager says ypserv does not use tmp_t so removing selinux policy types - Remove all ptrace commands that I believe are caused by the kernel/ps avcs - Add initial Obex policy - Add logging_syslogd_use_tty boolean - Add polipo_connect_all_unreserved bolean - Allow zabbix to connect to ftp port - Allow systemd-logind to be able to switch VTs - Allow apache to communicate with memcached through a sock_file- Fix file_context.subs_dist for now to work with pre usrmove- More /usr move fixes- Add zabbix_can_network boolean - Add httpd_can_connect_zabbix boolean - Prepare file context labeling for usrmove functions - Allow system cronjobs to read kernel network state - Add support for selinux_avcstat munin plugin - Treat hearbeat with corosync policy - Allow corosync to read and write to qpidd shared mem - mozilla_plugin is trying to run pulseaudio - Fixes for new sshd patch for running priv sep domains as the users context - Turn off dontaudit rules when turning on allow_ypbind - udev now reads /etc/modules.d directory- Turn on deny_ptrace boolean for the Rawhide run, so we can test this out - Cups exchanges dbus messages with init - udisk2 needs to send syslog messages - certwatch needs to read /etc/passwd- Add labeling for udisks2 - Allow fsadmin to communicate with the systemd process- Treat Bip with bitlbee policy * Bip is an IRC proxy - Add port definition for interwise port - Add support for ipa_memcached socket - systemd_jounald needs to getattr on all processes - mdadmin fixes * uses getpw - amavisd calls getpwnam() - denyhosts calls getpwall()- Setup labeling of /var/rsa and /var/lib/rsa to allow login programs to write there - bluetooth says they do not use /tmp and want to remove the type - Allow init to transition to colord - Mongod needs to read /proc/sys/vm/zone_reclaim_mode - Allow postfix_smtpd_t to connect to spamd - Add boolean to allow ftp to connect to all ports > 1023 - Allow sendmain to write to inherited dovecot tmp files - setroubleshoot needs to be able to execute rpm to see what version of packages- Merge systemd patch - systemd-tmpfiles wants to relabel /sys/devices/system/cpu/online - Allow deltacloudd dac_override, setuid, setgid caps - Allow aisexec to execute shell - Add use_nfs_home_dirs boolean for ssh-keygen- Fixes to make rawhide boot in enforcing mode with latest systemd changes- Add labeling for /var/run/systemd/journal/syslog - libvirt sends signals to ifconfig - Allow domains that read logind session files to list them- Fixed destined form libvirt-sandbox - Allow apps that list sysfs to also read sympolicy links in this filesystem - Add ubac_constrained rules for chrome_sandbox - Need interface to allow domains to use tmpfs_t files created by the kernel, used by libra - Allow postgresql to be executed by the caller - Standardize interfaces of daemons - Add new labeling for mm-handler - Allow all matahari domains to read network state and etc_runtime_t files- New fix for seunshare, requires seunshare_domains to be able to mounton / - Allow systemctl running as logrotate_t to connect to private systemd socket - Allow tmpwatch to read meminfo - Allow rpc.svcgssd to read supported_krb5_enctype - Allow zarafa domains to read /dev/random and /dev/urandom - Allow snmpd to read dev_snmp6 - Allow procmail to talk with cyrus - Add fixes for check_disk and check_nagios plugins- default trans rules for Rawhide policy - Make sure sound_devices controlC* are labeled correctly on creation - sssd now needs sys_admin - Allow snmp to read all proc_type - Allow to setup users homedir with quota.group- Add httpd_can_connect_ldap() interface - apcupsd_t needs to use seriel ports connected to usb devices - Kde puts procmail mail directory under ~/.local/share - nfsd_t can trigger sys_rawio on tests that involve too many mountpoints, dontaudit for now - Add labeling for /sbin/iscsiuio- Add label for /var/lib/iscan/interpreter - Dont audit writes to leaked file descriptors or redirected output for nacl - NetworkManager needs to write to /sys/class/net/ib*/mode- Allow abrt to request the kernel to load a module - Make sure mozilla content is labeled correctly - Allow tgtd to read system state - More fixes for boinc * allow to resolve dns name * re-write boinc policy to use boinc_domain attribute - Allow munin services plugins to use NSCD services- Allow mozilla_plugin_t to manage mozilla_home_t - Allow ssh derived domain to execute ssh-keygen in the ssh_keygen_t domain - Add label for tumblerd- Fixes for xguest package- Fixes related to /bin, /sbin - Allow abrt to getattr on blk files - Add type for rhev-agent log file - Fix labeling for /dev/dmfm - Dontaudit wicd leaking - Allow systemd_logind_t to look at process info of apps that exchange dbus messages with it - Label /etc/locale.conf correctly - Allow user_mail_t to read /dev/random - Allow postfix-smtpd to read MIMEDefang - Add label for /var/log/suphp.log - Allow swat_t to connect and read/write nmbd_t sock_file - Allow systemd-tmpfiles to setattr for /run/user/gdm/dconf - Allow systemd-tmpfiles to change user identity in object contexts - More fixes for rhev_agentd_t consolehelper policy- Use fs_use_xattr for squashf - Fix procs_type interface - Dovecot has a new fifo_file /var/run/dovecot/stats-mail - Dovecot has a new fifo_file /var/run/stats-mail - Colord does not need to connect to network - Allow system_cronjob to dbus chat with NetworkManager - Puppet manages content, want to make sure it labels everything correctly- Change port 9050 to tor_socks_port_t and then allow openvpn to connect to it - Allow all postfix domains to use the fifo_file - Allow sshd_t to getattr on all file systems in order to generate avc on nfs_t - Allow apmd_t to read grub.cfg - Let firewallgui read the selinux config - Allow systemd-tmpfiles to delete content in /root that has been moved to /tmp - Fix devicekit_manage_pid_files() interface - Allow squid to check the network state - Dontaudit colord getattr on file systems - Allow ping domains to read zabbix_tmp_t files- Allow mcelog_t to create dir and file in /var/run and label it correctly - Allow dbus to manage fusefs - Mount needs to read process state when mounting gluster file systems - Allow collectd-web to read collectd lib files - Allow daemons and system processes started by init to read/write the unix_stream_socket passed in from as stdin/stdout/stderr - Allow colord to get the attributes of tmpfs filesystem - Add sanlock_use_nfs and sanlock_use_samba booleans - Add bin_t label for /usr/lib/virtualbox/VBoxManage- Add ssh_dontaudit_search_home_dir - Changes to allow namespace_init_t to work - Add interface to allow exec of mongod, add port definition for mongod port, 27017 - Label .kde/share/apps/networkmanagement/certificates/ as home_cert_t - Allow spamd and clamd to steam connect to each other - Add policy label for passwd.OLD - More fixes for postfix and postfix maildro - Add ftp support for mozilla plugins - Useradd now needs to manage policy since it calls libsemanage - Fix devicekit_manage_log_files() interface - Allow colord to execute ifconfig - Allow accountsd to read /sys - Allow mysqld-safe to execute shell - Allow openct to stream connect to pcscd - Add label for /var/run/nm-dns-dnsmasq\.conf - Allow networkmanager to chat with virtd_t- Pulseaudio changes - Merge patches- Merge patches back into git repository.- Remove allow_execmem boolean and replace with deny_execmem boolean- Turn back on allow_execmem boolean- Add more MCS fixes to make sandbox working - Make faillog MLS trusted to make sudo_$1_t working - Allow sandbox_web_client_t to read passwd_file_t - Add .mailrc file context - Remove execheap from openoffice domain - Allow chrome_sandbox_nacl_t to read cpu_info - Allow virtd to relabel generic usb which is need if USB device - Fixes for virt.if interfaces to consider chr_file as image file type- Remove Open Office policy - Remove execmem policy- MCS fixes - quota fixes- Remove transitions to consoletype- Make nvidia* to be labeled correctly - Fix abrt_manage_cache() interface - Make filetrans rules optional so base policy will build - Dontaudit chkpwd_t access to inherited TTYS - Make sure postfix content gets created with the correct label - Allow gnomeclock to read cgroup - Fixes for cloudform policy- Check in fixed for Chrome nacl support- Begin removing qemu_t domain, we really no longer need this domain. - systemd_passwd needs dac_overide to communicate with users TTY's - Allow svirt_lxc domains to send kill signals within their container- Remove qemu.pp again without causing a crash- Remove qemu.pp, everything should use svirt_t or stay in its current domain- Allow policykit to talk to the systemd via dbus - Move chrome_sandbox_nacl_t to permissive domains - Additional rules for chrome_sandbox_nacl- Change bootstrap name to nacl - Chrome still needs execmem - Missing role for chrome_sandbox_bootstrap - Add boolean to remove execmem and execstack from virtual machines - Dontaudit xdm_t doing an access_check on etc_t directories- Allow named to connect to dirsrv by default - add ldapmap1_0 as a krb5_host_rcache_t file - Google chrome developers asked me to add bootstrap policy for nacl stuff - Allow rhev_agentd_t to getattr on mountpoints - Postfix_smtpd_t needs access to milters and cleanup seems to read/write postfix_smtpd_t unix_stream_sockets- Fixes for cloudform policies which need to connect to random ports - Make sure if an admin creates modules content it creates them with the correct label - Add port 8953 as a dns port used by unbound - Fix file name transition for alsa and confined users- Turn on mock_t and thumb_t for unconfined domains- Policy update should not modify local contexts- Remove ada policy- Remove tzdata policy - Add labeling for udev - Add cloudform policy - Fixes for bootloader policy- Add policies for nova openstack- Add fixes for nova-stack policy- Allow svirt_lxc_domain to chr_file and blk_file devices if they are in the domain - Allow init process to setrlimit on itself - Take away transition rules for users executing ssh-keygen - Allow setroubleshoot_fixit_t to read /dev/urand - Allow sshd to relbale tunnel sockets - Allow fail2ban domtrans to shorewall in the same way as with iptables - Add support for lnk files in the /var/lib/sssd directory - Allow system mail to connect to courier-authdaemon over an unix stream socket- Add passwd_file_t for /etc/ptmptmp- Dontaudit access checks for all executables, gnome-shell is doing access(EXEC, X_OK) - Make corosync to be able to relabelto cluster lib fies - Allow samba domains to search /var/run/nmbd - Allow dirsrv to use pam - Allow thumb to call getuid - chrome less likely to get mmap_zero bug so removing dontaudit - gimp help-browser has built in javascript - Best guess is that devices named /dev/bsr4096 should be labeled as cpu_device_t - Re-write glance policy- Move dontaudit sys_ptrace line from permissive.te to domain.te - Remove policy for hal, it no longer exists- Don't check md5 size or mtime on certain config files- Remove allow_ptrace and replace it with deny_ptrace, which will remove all ptrace from the system - Remove 2000 dontaudit rules between confined domains on transition and replace with single dontaudit domain domain:process { noatsecure siginh rlimitinh } ;- Fixes for bootloader policy - $1_gkeyringd_t needs to read $HOME/%USER/.local/share/keystore - Allow nsplugin to read /usr/share/config - Allow sa-update to update rules - Add use_fusefs_home_dirs for chroot ssh option - Fixes for grub2 - Update systemd_exec_systemctl() interface - Allow gpg to read the mail spool - More fixes for sa-update running out of cron job - Allow ipsec_mgmt_t to read hardware state information - Allow pptp_t to connect to unreserved_port_t - Dontaudit getattr on initctl in /dev from chfn - Dontaudit getattr on kernel_core from chfn - Add systemd_list_unit_dirs to systemd_exec_systemctl call - Fixes for collectd policy - CHange sysadm_t to create content as user_tmp_t under /tmp- Shrink size of policy through use of attributes for userdomain and apache- Allow virsh to read xenstored pid file - Backport corenetwork fixes from upstream - Do not audit attempts by thumb to search config_home_t dirs (~/.config) - label ~/.cache/telepathy/logger telepathy_logger_cache_home_t - allow thumb to read generic data home files (mime.type)- Allow nmbd to manage sock file in /var/run/nmbd - ricci_modservice send syslog msgs - Stop transitioning from unconfined_t to ldconfig_t, but make sure /etc/ld.so.cache is labeled correctly - Allow systemd_logind_t to manage /run/USER/dconf/user- Fix missing patch from F16- Allow logrotate setuid and setgid since logrotate is supposed to do it - Fixes for thumb policy by grift - Add new nfsd ports - Added fix to allow confined apps to execmod on chrome - Add labeling for additional vdsm directories - Allow Exim and Dovecot SASL - Add label for /var/run/nmbd - Add fixes to make virsh and xen working together - Colord executes ls - /var/spool/cron is now labeled as user_cron_spool_t- Stop complaining about leaked file descriptors during install- Remove java and mono module and merge into execmem- Fixes for thumb policy and passwd_file_t- Fixes caused by the labeling of /etc/passwd - Add thumb.patch to transition unconfined_t to thumb_t for Rawhide- Add support for Clustered Samba commands - Allow ricci_modrpm_t to send log msgs - move permissive virt_qmf_t from virt.te to permissivedomains.te - Allow ssh_t to use kernel keyrings - Add policy for libvirt-qmf and more fixes for linux containers - Initial Polipo - Sanlock needs to run ranged in order to kill svirt processes - Allow smbcontrol to stream connect to ctdbd- Add label for /etc/passwd- Change unconfined_domains to permissive for Rawhide - Add definition for the ephemeral_ports- Make mta_role() active - Allow asterisk to connect to jabber client port - Allow procmail to read utmp - Add NIS support for systemd_logind_t - Allow systemd_logind_t to manage /run/user/$USER/dconf dir which is labeled as config_home_t - Fix systemd_manage_unit_dirs() interface - Allow ssh_t to manage directories passed into it - init needs to be able to create and delete unit file directories - Fix typo in apache_exec_sys_script - Add ability for logrotate to transition to awstat domain- Change screen to use screen_domain attribute and allow screen_domains to read all process domain state - Add SELinux support for ssh pre-auth net process in F17 - Add logging_syslogd_can_sendmail boolean- Add definition for ephemeral ports - Define user_tty_device_t as a customizable_type- Needs to require a new version of checkpolicy - Interface fixes- Allow sanlock to manage virt lib files - Add virt_use_sanlock booelan - ksmtuned is trying to resolve uids - Make sure .gvfs is labeled user_home_t in the users home directory - Sanlock sends kill signals and needs the kill capability - Allow mockbuild to work on nfs homedirs - Fix kerberos_manage_host_rcache() interface - Allow exim to read system state- Allow systemd-tmpfiles to set the correct labels on /var/run, /tmp and other files - We want any file type that is created in /tmp by a process running as initrc_t to be labeled initrc_tmp_t- Allow collectd to read hardware state information - Add loop_control_device_t - Allow mdadm to request kernel to load module - Allow domains that start other domains via systemctl to search unit dir - systemd_tmpfilses, needs to list any file systems mounted on /tmp - No one can explain why radius is listing the contents of /tmp, so we will dontaudit - If I can manage etc_runtime files, I should be able to read the links - Dontaudit hostname writing to mock library chr_files - Have gdm_t setup labeling correctly in users home dir - Label content unde /var/run/user/NAME/dconf as config_home_t - Allow sa-update to execute shell - Make ssh-keygen working with fips_enabled - Make mock work for staff_t user - Tighten security on mock_t- removing unconfined_notrans_t no longer necessary - Clean up handling of secure_mode_insmod and secure_mode_policyload - Remove unconfined_mount_t- Add exim_exec_t label for /usr/sbin/exim_tidydb - Call init_dontaudit_rw_stream_socket() interface in mta policy - sssd need to search /var/cache/krb5rcache directory - Allow corosync to relabel own tmp files - Allow zarafa domains to send system log messages - Allow ssh to do tunneling - Allow initrc scripts to sendto init_t unix_stream_socket - Changes to make sure dmsmasq and virt directories are labeled correctly - Changes needed to allow sysadm_t to manage systemd unit files - init is passing file descriptors to dbus and on to system daemons - Allow sulogin additional access Reported by dgrift and Jeremy Miller - Steve Grubb believes that wireshark does not need this access - Fix /var/run/initramfs to stop restorecon from looking at - pki needs another port - Add more labels for cluster scripts - Allow apps that manage cgroup_files to manage cgroup link files - Fix label on nfs-utils scripts directories - Allow gatherd to read /dev/rand and /dev/urand- pki needs another port - Add more labels for cluster scripts - Fix label on nfs-utils scripts directories - Fixes for cluster - Allow gatherd to read /dev/rand and /dev/urand - abrt leaks fifo files- Add glance policy - Allow mdadm setsched - /var/run/initramfs should not be relabeled with a restorecon run - memcache can be setup to override sys_resource - Allow httpd_t to read tetex data - Allow systemd_tmpfiles to delete kernel modules left in /tmp directory.- Allow Postfix to deliver to Dovecot LMTP socket - Ignore bogus sys_module for lldpad - Allow chrony and gpsd to send dgrams, gpsd needs to write to the real time clock - systemd_logind_t sets the attributes on usb devices - Allow hddtemp_t to read etc_t files - Add permissivedomains module - Move all permissive domains calls to permissivedomain.te - Allow pegasis to send kill signals to other UIDs- Allow insmod_t to use fds leaked from devicekit - dontaudit getattr between insmod_t and init_t unix_stream_sockets - Change sysctl unit file interfaces to use systemctl - Add support for chronyd unit file - Allow mozilla_plugin to read gnome_usr_config - Add policy for new gpsd - Allow cups to create kerberos rhost cache files - Add authlogin_filetrans_named_content, to unconfined_t to make sure shadow and other log files get labeled correctly- Make users_extra and seusers.final into config(noreplace) so semanage users and login does not get overwritten- Add policy for sa-update being run out of cron jobs - Add create perms to postgresql_manage_db - ntpd using a gps has to be able to read/write generic tty_device_t - If you disable unconfined and unconfineduser, rpm needs more privs to manage /dev - fix spec file - Remove qemu_domtrans_unconfined() interface - Make passenger working together with puppet - Add init_dontaudit_rw_stream_socket interface - Fixes for wordpress- Turn on allow_domain_fd_use boolean on F16 - Allow syslog to manage all log files - Add use_fusefs_home_dirs boolean for chrome - Make vdagent working with confined users - Add abrt_handle_event_t domain for ABRT event scripts - Labeled /usr/sbin/rhnreg_ks as rpm_exec_t and added changes related to this change - Allow httpd_git_script_t to read passwd data - Allow openvpn to set its process priority when the nice parameter is used- livecd fixes - spec file fixes- fetchmail can use kerberos - ksmtuned reads in shell programs - gnome_systemctl_t reads the process state of ntp - dnsmasq_t asks the kernel to load multiple kernel modules - Add rules for domains executing systemctl - Bogus text within fc file- Add cfengine policy- Add abrt_domain attribute - Allow corosync to manage cluster lib files - Allow corosync to connect to the system DBUS- Add sblim, uuidd policies - Allow kernel_t dyntrasition to init_t- init_t need setexec - More fixes of rules which cause an explosion in rules by Dan Walsh- Allow rcsmcertd to perform DNS name resolution - Add dirsrvadmin_unconfined_script_t domain type for 389-ds admin scripts - Allow tmux to run as screen - New policy for collectd - Allow gkeyring_t to interact with all user apps - Add rules to allow firstboot to run on machines with the unconfined.pp module removed- Allow systemd_logind to send dbus messages with users - allow accountsd to read wtmp file - Allow dhcpd to get and set capabilities- Fix oracledb_port definition - Allow mount to mounton the selinux file system - Allow users to list /var directories- systemd fixes- Add initial policy for abrt_dump_oops_t - xtables-multi wants to getattr of the proc fs - Smoltclient is connecting to abrt - Dontaudit leaked file descriptors to postdrop - Allow abrt_dump_oops to look at kernel sysctls - Abrt_dump_oops_t reads kernel ring buffer - Allow mysqld to request the kernel to load modules - systemd-login needs fowner - Allow postfix_cleanup_t to searh maildrop- Initial systemd_logind policy - Add policy for systemd_logger and additional proivs for systemd_logind - More fixes for systemd policies- Allow setsched for virsh - Systemd needs to impersonate cups, which means it needs to create tcp_sockets in cups_t domain, as well as manage spool directories - iptables: the various /sbin/ip6?tables.* are now symlinks for /sbin/xtables-multi- A lot of users are running yum -y update while in /root which is causing ldconfig to list the contents, adding dontaudit - Allow colord to interact with the users through the tmpfs file system - Since we changed the label on deferred, we need to allow postfix_qmgr_t to be able to create maildrop_t files - Add label for /var/log/mcelog - Allow asterisk to read /dev/random if it uses TLS - Allow colord to read ini files which are labeled as bin_t - Allow dirsrvadmin sys_resource and setrlimit to use ulimit - Systemd needs to be able to create sock_files for every label in /var/run directory, cupsd being the first. - Also lists /var and /var/spool directories - Add openl2tpd to l2tpd policy - qpidd is reading the sysfs file- Change usbmuxd_t to dontaudit attempts to read chr_file - Add mysld_safe_exec_t for libra domains to be able to start private mysql domains - Allow pppd to search /var/lock dir - Add rhsmcertd policy- Update to upstream- More fixes * http://git.fedorahosted.org/git/?p=selinux-policy.git- Fix spec file to not report Verify errors- Add dspam policy - Add lldpad policy - dovecot auth wants to search statfs #713555 - Allow systemd passwd apps to read init fifo_file - Allow prelink to use inherited terminals - Run cherokee in the httpd_t domain - Allow mcs constraints on node connections - Implement pyicqt policy - Fixes for zarafa policy - Allow cobblerd to send syslog messages- Add policy.26 to the payload - Remove olpc stuff - Remove policygentool- Fixes for zabbix - init script needs to be able to manage sanlock_var_run_... - Allow sandlock and wdmd to create /var/run directories... - mixclip.so has been compiled correctly - Fix passenger policy module name- Add mailscanner policy from dgrift - Allow chrome to optionally be transitioned to - Zabbix needs these rules when starting the zabbix_server_mysql - Implement a type for freedesktop openicc standard (~/.local/share/icc) - Allow system_dbusd_t to read inherited icc_data_home_t files. - Allow colord_t to read icc_data_home_t content. #706975 - Label stuff under /usr/lib/debug as if it was labeled under /- Fixes for sanlock policy - Fixes for colord policy - Other fixes * http://git.fedorahosted.org/git/?p=selinux-policy.git;a=log- Add rhev policy module to modules-targeted.conf- Lot of fixes * http://git.fedorahosted.org/git/?p=selinux-policy.git;a=log- Allow logrotate to execute systemctl - Allow nsplugin_t to getattr on gpmctl - Fix dev_getattr_all_chr_files() interface - Allow shorewall to use inherited terms - Allow userhelper to getattr all chr_file devices - sandbox domains should be able to getattr and dontaudit search of sysctl_kernel_t - Fix labeling for ABRT Retrace Server- Dontaudit sys_module for ifconfig - Make telepathy and gkeyringd daemon working with confined users - colord wants to read files in users homedir - Remote login should be creating user_tmp_t not its own tmp files- Fix label for /usr/share/munin/plugins/munin_* plugins - Add support for zarafa-indexer - Fix boolean description - Allow colord to getattr on /proc/scsi/scsi - Add label for /lib/upstart/init - Colord needs to list /mnt- Forard port changes from F15 for telepathy - NetworkManager should be allowed to use /dev/rfkill - Fix dontaudit messages to say Domain to not audit - Allow telepathy domains to read/write gnome_cache files - Allow telepathy domains to call getpw - Fixes for colord and vnstatd policy- Allow init_t getcap and setcap - Allow namespace_init_t to use nsswitch - aisexec will execute corosync - colord tries to read files off noxattr file systems - Allow init_t getcap and setcap- Add support for ABRT retrace server - Allow user_t and staff_t access to generic scsi to handle locally plugged in scanners - Allow telepath_msn_t to read /proc/PARENT/cmdline - ftpd needs kill capability - Allow telepath_msn_t to connect to sip port - keyring daemon does not work on nfs homedirs - Allow $1_sudo_t to read default SELinux context - Add label for tgtd sock file in /var/run/ - Add apache_exec_rotatelogs interface - allow all zaraha domains to signal themselves, server writes to /tmp - Allow syslog to read the process state - Add label for /usr/lib/chromium-browser/chrome - Remove the telepathy transition from unconfined_t - Dontaudit sandbox domains trying to mounton sandbox_file_t, this is caused by fuse mounts - Allow initrc_t domain to manage abrt pid files - Add support for AEOLUS project - Virt_admin should be allowed to manage images and processes - Allow plymountd to send signals to init - Change labeling of fping6- Add filename transitions- Fixes for zarafa policy - Add support for AEOLUS project - Change labeling of fping6 - Allow plymountd to send signals to init - Allow initrc_t domain to manage abrt pid files - Virt_admin should be allowed to manage images and processes- xdm_t needs getsession for switch user - Every app that used to exec init is now execing systemdctl - Allow squid to manage krb5_host_rcache_t files - Allow foghorn to connect to agentx port - Fixes for colord policy- Add Dan's patch to remove 64 bit variants - Allow colord to use unix_dgram_socket - Allow apps that search pids to read /var/run if it is a lnk_file - iscsid_t creates its own directory - Allow init to list var_lock_t dir - apm needs to verify user accounts auth_use_nsswitch - Add labeling for systemd unit files - Allow gnomeclok to enable ntpd service using systemctl - systemd_systemctl_t domain was added - Add label for matahari-broker.pid file - We want to remove untrustedmcsprocess from ability to read /proc/pid - Fixes for matahari policy - Allow system_tmpfiles_t to delete user_home_t files in the /tmp dir - Allow sshd to transition to sysadm_t if ssh_sysadm_login is turned on- Fix typo- Add /var/run/lock /var/lock definition to file_contexts.subs - nslcd_t is looking for kerberos cc files - SSH_USE_STRONG_RNG is 1 which requires /dev/random - Fix auth_rw_faillog definition - Allow sysadm_t to set attributes on fixed disks - allow user domains to execute lsof and look at application sockets - prelink_cron job calls telinit -u if init is rewritten - Fixes to run qemu_t from staff_t- Fix label for /var/run/udev to udev_var_run_t - Mock needs to be able to read network state- Add file_contexts.subs to handle /run and /run/lock - Add other fixes relating to /run changes from F15 policy- Allow $1_sudo_t and $1_su_t open access to user terminals - Allow initrc_t to use generic terminals - Make Makefile/Rules.modular run sepolgen-ifgen during build to check if files for bugs -systemd is going to be useing /run and /run/lock for early bootup files. - Fix some comments in rlogin.if - Add policy for KDE backlighthelper - sssd needs to read ~/.k5login in nfs, cifs or fusefs file systems - sssd wants to read .k5login file in users homedir - setroubleshoot reads executables to see if they have TEXTREL - Add /var/spool/audit support for new version of audit - Remove kerberos_connect_524() interface calling - Combine kerberos_master_port_t and kerberos_port_t - systemd has setup /dev/kmsg as stderr for apps it executes - Need these access so that init can impersonate sockets on unix_dgram_socket- Remove some unconfined domains - Remove permissive domains - Add policy-term.patch from Dan- Fix multiple specification for boot.log - devicekit leaks file descriptors to setfiles_t - Change all all_nodes to generic_node and all_if to generic_if - Should not use deprecated interface - Switch from using all_nodes to generic_node and from all_if to generic_if - Add support for xfce4-notifyd - Fix file context to show several labels as SystemHigh - seunshare needs to be able to mounton nfs/cifs/fusefs homedirs - Add etc_runtime_t label for /etc/securetty - Fixes to allow xdm_t to start gkeyringd_USERTYPE_t directly - login.krb needs to be able to write user_tmp_t - dirsrv needs to bind to port 7390 for dogtag - Fix a bug in gpg policy - gpg sends audit messages - Allow qpid to manage matahari files- Initial policy for matahari - Add dev_read_watchdog - Allow clamd to connect clamd port - Add support for kcmdatetimehelper - Allow shutdown to setrlimit and sys_nice - Allow systemd_passwd to talk to /dev/log before udev or syslog is running - Purge chr_file and blk files on /tmp - Fixes for pads - Fixes for piranha-pulse - gpg_t needs to be able to encyprt anything owned by the user- mozilla_plugin_tmp_t needs to be treated as user tmp files - More dontaudits of writes from readahead - Dontaudit readahead_t file_type:dir write, to cover up kernel bug - systemd_tmpfiles needs to relabel faillog directory as well as the file - Allow hostname and consoletype to r/w inherited initrc_tmp_t files handline hostname >> /tmp/myhost- Add policykit fixes from Tim Waugh - dontaudit sandbox domains sandbox_file_t:dir mounton - Add new dontaudit rules for sysadm_dbusd_t - Change label for /var/run/faillock * other fixes which relate with this change- Update to upstream - Fixes for telepathy - Add port defition for ssdp port - add policy for /bin/systemd-notify from Dan - Mount command requires users read mount_var_run_t - colord needs to read konject_uevent_socket - User domains connect to the gkeyring socket - Add colord policy and allow user_t and staff_t to dbus chat with it - Add lvm_exec_t label for kpartx - Dontaudit reading the mail_spool_t link from sandbox -X - systemd is creating sockets in avahi_var_run and system_dbusd_var_run- gpg_t needs to talk to gnome-keyring - nscd wants to read /usr/tmp->/var/tmp to generate randomziation in unixchkpwd - enforce MCS labeling on nodes - Allow arpwatch to read meminfo - Allow gnomeclock to send itself signals - init relabels /dev/.udev files on boot - gkeyringd has to transition back to staff_t when it runs commands in bin_t or shell_exec_t - nautilus checks access on /media directory before mounting usb sticks, dontaudit access_check on mnt_t - dnsmasq can run as a dbus service, needs acquire service - mysql_admin should be allowed to connect to mysql service - virt creates monitor sockets in the users home dir- Allow usbhid-ups to read hardware state information - systemd-tmpfiles has moved - Allo cgroup to sys_tty_config - For some reason prelink is attempting to read gconf settings - Add allow_daemons_use_tcp_wrapper boolean - Add label for ~/.cache/wocky to make telepathy work in enforcing mode - Add label for char devices /dev/dasd* - Fix for apache_role - Allow amavis to talk to nslcd - allow all sandbox to read selinux poilcy config files - Allow cluster domains to use the system bus and send each other dbus messages- Update to upstream- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Update to ref policy - cgred needs chown capability - Add /dev/crash crash_dev_t - systemd-readahead wants to use fanotify which means readahead_t needs sys_admin capability- New labeling for postfmulti #675654 - dontaudit xdm_t listing noxattr file systems - dovecot-auth needs to be able to connect to mysqld via the network as well as locally - shutdown is passed stdout to a xdm_log_t file - smartd creates a fixed disk device - dovecot_etc_t contains a lnk_file that domains need to read - mount needs to be able to read etc_runtim_t:lnk_file since in rawhide this is a link created at boot- syslog_t needs syslog capability - dirsrv needs to be able to create /var/lib/snmp - Fix labeling for dirsrv - Fix for dirsrv policy missing manage_dirs_pattern - corosync needs to delete clvm_tmpfs_t files - qdiskd needs to list hugetlbfs - Move setsched to sandbox_x_domain, so firefox can run without network access - Allow hddtemp to read removable devices - Adding syslog and read_policy permissions to policy * syslog Allow unconfined, sysadm_t, secadm_t, logadm_t * read_policy allow unconfined, sysadm_t, secadm_t, staff_t on Targeted allow sysadm_t (optionally), secadm_t on MLS - mdadm application will write into /sys/.../uevent whenever arrays are assembled or disassembled.- Add tcsd policy- ricci_modclusterd_t needs to bind to rpc ports 500-1023 - Allow dbus to use setrlimit to increase resoueces - Mozilla_plugin is leaking to sandbox - Allow confined users to connect to lircd over unix domain stream socket which allow to use remote control - Allow awstats to read squid logs - seunshare needs to manage tmp_t - apcupsd cgi scripts have a new directory- Fix xserver_dontaudit_read_xdm_pid - Change oracle_port_t to oracledb_port_t to prevent conflict with satellite - Allow dovecot_deliver_t to read/write postfix_master_t:fifo_file. * These fifo_file is passed from postfix_master_t to postfix_local_t to dovecot_deliver_t - Allow readahead to manage readahead pid dirs - Allow readahead to read all mcs levels - Allow mozilla_plugin_t to use nfs or samba homedirs- Allow nagios plugin to read /proc/meminfo - Fix for mozilla_plugin - Allow samba_net_t to create /etc/keytab - pppd_t setting up vpns needs to run unix_chkpwd, setsched its process and write wtmp_t - nslcd can read user credentials - Allow nsplugin to delete mozilla_plugin_tmpfs_t - abrt tries to create dir in rpm_var_lib_t - virt relabels fifo_files - sshd needs to manage content in fusefs homedir - mock manages link files in cache dir- nslcd needs setsched and to read /usr/tmp - Invalid call in likewise policy ends up creating a bogus role - Cannon puts content into /var/lib/bjlib that cups needs to be able to write - Allow screen to create screen_home_t in /root - dirsrv sends syslog messages - pinentry reads stuff in .kde directory - Add labels for .kde directory in homedir - Treat irpinit, iprupdate, iprdump services with raid policy- NetworkManager wants to read consolekit_var_run_t - Allow readahead to create /dev/.systemd/readahead - Remove permissive domains - Allow newrole to run namespace_init- Add sepgsql_contexts file- Update to upstream- Add oracle ports and allow apache to connect to them if the connect_db boolean is turned on - Add puppetmaster_use_db boolean - Fixes for zarafa policy - Fixes for gnomeclock poliy - Fix systemd-tmpfiles to use auth_use_nsswitch- gnomeclock executes a shell - Update for screen policy to handle pipe in homedir - Fixes for polyinstatiated homedir - Fixes for namespace policy and other fixes related to polyinstantiation - Add namespace policy - Allow dovecot-deliver transition to sendmail which is needed by sieve scripts - Fixes for init, psad policy which relate with confined users - Do not audit bootloader attempts to read devicekit pid files - Allow nagios service plugins to read /proc- Add firewalld policy - Allow vmware_host to read samba config - Kernel wants to read /proc Fix duplicate grub def in cobbler - Chrony sends mail, executes shell, uses fifo_file and reads /proc - devicekitdisk getattr all file systems - sambd daemon writes wtmp file - libvirt transitions to dmidecode- Add initial policy for system-setup-keyboard which is now daemon - Label /var/lock/subsys/shorewall as shorewall_lock_t - Allow users to communicate with the gpg_agent_t - Dontaudit mozilla_plugin_t using the inherited terminal - Allow sambagui to read files in /usr - webalizer manages squid log files - Allow unconfined domains to bind ports to raw_ip_sockets - Allow abrt to manage rpm logs when running yum - Need labels for /var/run/bittlebee - Label .ssh under amanda - Remove unused genrequires for virt_domain_template - Allow virt_domain to use fd inherited from virtd_t - Allow iptables to read shorewall config- Gnome apps list config_home_t - mpd creates lnk files in homedir - apache leaks write to mail apps on tmp files - /var/stockmaniac/templates_cache contains log files - Abrt list the connects of mount_tmp_t dirs - passwd agent reads files under /dev and reads utmp file - squid apache script connects to the squid port - fix name of plymouth log file - teamviewer is a wine app - allow dmesg to read system state - Stop labeling files under /var/lib/mock so restorecon will not go into this - nsplugin needs to read network state for google talk- Allow xdm and syslog to use /var/log/boot.log - Allow users to communicate with mozilla_plugin and kill it - Add labeling for ipv6 and dhcp- New labels for ghc http content - nsplugin_config needs to read urand, lvm now calls setfscreate to create dev - pm-suspend now creates log file for append access so we remove devicekit_wri - Change authlogin_use_sssd to authlogin_nsswitch_use_ldap - Fixes for greylist_milter policy- Update to upstream - Fixes for systemd policy - Fixes for passenger policy - Allow staff users to run mysqld in the staff_t domain, akonadi needs this - Add bin_t label for /usr/share/kde4/apps/kajongg/kajongg.py - auth_use_nsswitch does not need avahi to read passwords,needed for resolving data - Dontaudit (xdm_t) gok attempting to list contents of /var/account - Telepathy domains need to read urand - Need interface to getattr all file classes in a mock library for setroubleshoot- Update selinux policy to handle new /usr/share/sandbox/start script- Update to upstream - Fix version of policy in spec file- Allow sandbox to run on nfs partitions, fixes for systemd_tmpfs - remove per sandbox domains devpts types - Allow dkim-milter sending signal to itself- Allow domains that transition to ping or traceroute, kill them - Allow user_t to conditionally transition to ping_t and traceroute_t - Add fixes to systemd- tools, including new labeling for systemd-fsck, systemd-cryptsetup- Turn on systemd policy - mozilla_plugin needs to read certs in the homedir. - Dontaudit leaked file descriptors from devicekit - Fix ircssi to use auth_use_nsswitch - Change to use interface without param in corenet to disable unlabelednet packets - Allow init to relabel sockets and fifo files in /dev - certmonger needs dac* capabilities to manage cert files not owned by root - dovecot needs fsetid to change group membership on mail - plymouthd removes /var/log/boot.log - systemd is creating symlinks in /dev - Change label on /etc/httpd/alias to be all cert_t- Fixes for clamscan and boinc policy - Add boinc_project_t setpgid - Allow alsa to create tmp files in /tmp- Push fixes to allow disabling of unlabeled_t packet access - Enable unlabelednet policy- Fixes for lvm to work with systemd- Fix the label for wicd log - plymouthd creates force-display-on-active-vt file - Allow avahi to request the kernel to load a module - Dontaudit hal leaks - Fix gnome_manage_data interface - Add new interface corenet_packet to define a type as being an packet_type. - Removed general access to packet_type from icecast and squid. - Allow mpd to read alsa config - Fix the label for wicd log - Add systemd policy- Fix gnome_manage_data interface - Dontaudit sys_ptrace capability for iscsid - Fixes for nagios plugin policy- Fix cron to run ranged when started by init - Fix devicekit to use log files - Dontaudit use of devicekit_var_run_t for fstools - Allow init to setattr on logfile directories - Allow hald to manage files in /var/run/pm-utils/ dir which is now labeled as devicekit_var_run_t- Fix up handling of dnsmasq_t creating /var/run/libvirt/network - Turn on sshd_forward_ports boolean by default - Allow sysadmin to dbus chat with rpm - Add interface for rw_tpm_dev - Allow cron to execute bin - fsadm needs to write sysfs - Dontaudit consoletype reading /var/run/pm-utils - Lots of new privs fro mozilla_plugin_t running java app, make mozilla_plugin - certmonger needs to manage dirsrv data - /var/run/pm-utils should be labeled as devicekit_var_run_t- fixes to allow /var/run and /var/lock as tmpfs - Allow chrome sandbox to connect to web ports - Allow dovecot to listem on lmtp and sieve ports - Allov ddclient to search sysctl_net_t - Transition back to original domain if you execute the shell- Remove duplicate declaration- Update to upstream - Cleanup for sandbox - Add attribute to be able to select sandbox types- Allow ddclient to fix file mode bits of ddclient conf file - init leaks file descriptors to daemons - Add labels for /etc/lirc/ and - Allow amavis_t to exec shell - Add label for gssd_tmp_t for /var/tmp/nfs_0- Put back in lircd_etc_t so policy will install- Turn on allow_postfix_local_write_mail_spool - Allow initrc_t to transition to shutdown_t - Allow logwatch and cron to mls_read_to_clearance for MLS boxes - Allow wm to send signull to all applications and receive them from users - lircd patch from field - Login programs have to read /etc/samba - New programs under /lib/systemd - Abrt needs to read config files- Update to upstream - Dontaudit leaked sockets from userdomains to user domains - Fixes for mcelog to handle scripts - Apply patch from Ruben Kerkhof - Allow syslog to search spool dirs- Allow nagios plugins to read usr files - Allow mysqld-safe to send system log messages - Fixes fpr ddclient policy - Fix sasl_admin interface - Allow apache to search zarafa config - Allow munin plugins to search /var/lib directory - Allow gpsd to read sysfs_t - Fix labels on /etc/mcelog/triggers to bin_t- Remove saslauthd_tmp_t and transition tmp files to krb5_host_rcache_t - Allow saslauthd_t to create krb5_host_rcache_t files in /tmp - Fix xserver interface - Fix definition of /var/run/lxdm- Turn on mediawiki policy - kdump leaks kdump_etc_t to ifconfig, add dontaudit - uux needs to transition to uucpd_t - More init fixes relabels man,faillog - Remove maxima defs in libraries.fc - insmod needs to be able to create tmpfs_t files - ping needs setcap- Allow groupd transition to fenced domain when executes fence_node - Fixes for rchs policy - Allow mpd to be able to read samba/nfs files- Fix up corecommands.fc to match upstream - Make sure /lib/systemd/* is labeled init_exec_t - mount wants to setattr on all mountpoints - dovecot auth wants to read dovecot etc files - nscd daemon looks at the exe file of the comunicating daemon - openvpn wants to read utmp file - postfix apps now set sys_nice and lower limits - remote_login (telnetd/login) wants to use telnetd_devpts_t and user_devpts_t to work correctly - Also resolves nsswitch - Fix labels on /etc/hosts.* - Cleanup to make upsteam patch work - allow abrt to read etc_runtime_t- Add conflicts for dirsrv package- Update to upstream - Add vlock policy- Fix sandbox to work on nfs homedirs - Allow cdrecord to setrlimit - Allow mozilla_plugin to read xauth - Change label on systemd-logger to syslogd_exec_t - Install dirsrv policy from dirsrv package- Add virt_home_t, allow init to setattr on xserver_tmp_t and relabel it - Udev needs to stream connect to init and kernel - Add xdm_exec_bootloader boolean, which allows xdm to execute /sbin/grub and read files in /boot directory- Allow NetworkManager to read openvpn_etc_t - Dontaudit hplip to write of /usr dirs - Allow system_mail_t to create /root/dead.letter as mail_home_t - Add vdagent policy for spice agent daemon- Dontaudit sandbox sending sigkill to all user domains - Add policy for rssh_chroot_helper - Add missing flask definitions - Allow udev to relabelto removable_t - Fix label on /var/log/wicd.log - Transition to initrc_t from init when executing bin_t - Add audit_access permissions to file - Make removable_t a device_node - Fix label on /lib/systemd/*- Fixes for systemd to manage /var/run - Dontaudit leaks by firstboot- Allow chome to create netlink_route_socket - Add additional MATHLAB file context - Define nsplugin as an application_domain - Dontaudit sending signals from sandboxed domains to other domains - systemd requires init to build /tmp /var/auth and /var/lock dirs - mount wants to read devicekit_power /proc/ entries - mpd wants to connect to soundd port - Openoffice causes a setattr on a lib_t file for normal users, add dontaudit - Treat lib_t and textrel_shlib_t directories the same - Allow mount read access on virtual images- Allow sandbox_x_domains to work with nfs/cifs/fusefs home dirs. - Allow devicekit_power to domtrans to mount - Allow dhcp to bind to udp ports > 1024 to do named stuff - Allow ssh_t to exec ssh_exec_t - Remove telepathy_butterfly_rw_tmp_files(), dev_read_printk() interfaces which are nolonger used - Fix clamav_append_log() intefaces - Fix 'psad_rw_fifo_file' interface- Allow cobblerd to list cobler appache content- Fixup for the latest version of upowed - Dontaudit sandbox sending SIGNULL to desktop apps- Update to upstream-Mount command from a confined user generates setattr on /etc/mtab file, need to dontaudit this access - dovecot-auth_t needs ipc_lock - gpm needs to use the user terminal - Allow system_mail_t to append ~/dead.letter - Allow NetworkManager to edit /etc/NetworkManager/NetworkManager.conf - Add pid file to vnstatd - Allow mount to communicate with gfs_controld - Dontaudit hal leaks in setfiles- Lots of fixes for systemd - systemd now executes readahead and tmpwatch type scripts - Needs to manage random seed- Allow smbd to use sys_admin - Remove duplicate file context for tcfmgr - Update to upstream- Fix fusefs handling - Do not allow sandbox to manage nsplugin_rw_t - Allow mozilla_plugin_t to connecto its parent - Allow init_t to connect to plymouthd running as kernel_t - Add mediawiki policy - dontaudit sandbox sending signals to itself. This can happen when they are running at different mcs. - Disable transition from dbus_session_domain to telepathy for F14 - Allow boinc_project to use shm - Allow certmonger to search through directories that contain certs - Allow fail2ban the DAC Override so it can read log files owned by non root users- Start adding support for use_fusefs_home_dirs - Add /var/lib/syslog directory file context - Add /etc/localtime as locale file context- Turn off default transition to mozilla_plugin and telepathy domains from unconfined user - Turn off iptables from unconfined user - Allow sudo to send signals to any domains the user could have transitioned to. - Passwd in single user mode needs to talk to console_device_t - Mozilla_plugin_t needs to connect to web ports, needs to write to video device, and read alsa_home_t alsa setsup pulseaudio - locate tried to read a symbolic link, will dontaudit - New labels for telepathy-sunshine content in homedir - Google is storing other binaries under /opt/google/talkplugin - bluetooth/kernel is creating unlabeled_t socket that I will allow it to use until kernel fixes bug - Add boolean for unconfined_t transition to mozilla_plugin_t and telepathy domains, turned off in F14 on in F15 - modemmanger and bluetooth send dbus messages to devicekit_power - Samba needs to getquota on filesystems labeld samba_share_t- Dontaudit attempts by xdm_t to write to bin_t for kdm - Allow initrc_t to manage system_conf_t- Fixes to allow mozilla_plugin_t to create nsplugin_home_t directory. - Allow mozilla_plugin_t to create tcp/udp/netlink_route sockets - Allow confined users to read xdm_etc_t files - Allow xdm_t to transition to xauth_t for lxdm program- Rearrange firewallgui policy to be more easily updated to upstream, dontaudit search of /home - Allow clamd to send signals to itself - Allow mozilla_plugin_t to read user home content. And unlink pulseaudio shm. - Allow haze to connect to yahoo chat and messenger port tcp:5050. Bz #637339 - Allow guest to run ps command on its processes by allowing it to read /proc - Allow firewallgui to sys_rawio which seems to be required to setup masqerading - Allow all domains to search through default_t directories, in order to find differnet labels. For example people serring up /foo/bar to be share via samba. - Add label for /var/log/slim.log- Pull in cleanups from dgrift - Allow mozilla_plugin_t to execute mozilla_home_t - Allow rpc.quota to do quotamod- Cleanup policy via dgrift - Allow dovecot_deliver to append to inherited log files - Lots of fixes for consolehelper- Fix up Xguest policy- Add vnstat policy - allow libvirt to send audit messages - Allow chrome-sandbox to search nfs_t- Update to upstream- Add the ability to send audit messages to confined admin policies - Remove permissive domain from cmirrord and dontaudit sys_tty_config - Split out unconfined_domain() calls from other unconfined_ calls so we can d - virt needs to be able to read processes to clearance for MLS- Allow all domains that can use cgroups to search tmpfs_t directory - Allow init to send audit messages- Update to upstream- Allow mdadm_t to create files and sock files in /dev/md/- Add policy for ajaxterm- Handle /var/db/sudo - Allow pulseaudio to read alsa config - Allow init to send initrc_t dbus messagesAllow iptables to read shorewall tmp files Change chfn and passwd to use auth_use_pam so they can send dbus messages to fpr intd label vlc as an execmem_exec_t Lots of fixes for mozilla_plugin to run google vidio chat Allow telepath_msn to execute ldconfig and its own tmp files Fix labels on hugepages Allow mdadm to read files on /dev Remove permissive domains and change back to unconfined Allow freshclam to execute shell and bin_t Allow devicekit_power to transition to dhcpc Add boolean to allow icecast to connect to any port- Merge upstream fix of mmap_zero - Allow mount to write files in debugfs_t - Allow corosync to communicate with clvmd via tmpfs - Allow certmaster to read usr_t files - Allow dbus system services to search cgroup_t - Define rlogind_t as a login pgm- Allow mdadm_t to read/write hugetlbfs- Dominic Grift Cleanup - Miroslav Grepl policy for jabberd - Various fixes for mount/livecd and prelink- Merge with upstream- More access needed for devicekit - Add dbadm policy- Merge with upstream- Allow seunshare to fowner- Allow cron to look at user_cron_spool links - Lots of fixes for mozilla_plugin_t - Add sysv file system - Turn unconfined domains to permissive to find additional avcs- Update policy for mozilla_plugin_t- Allow clamscan to read proc_t - Allow mount_t to write to debufs_t dir - Dontaudit mount_t trying to write to security_t dir- Allow clamscan_t execmem if clamd_use_jit set - Add policy for firefox plugin-container- Fix /root/.forward definition- label dead.letter as mail_home_t- Allow login programs to search /cgroups- Fix cert handling- Fix devicekit_power bug - Allow policykit_auth_t more access.- Fix nis calls to allow bind to ports 512-1024 - Fix smartmon- Allow pcscd to read sysfs - systemd fixes - Fix wine_mmap_zero_ignore boolean- Apply Miroslav munin patch - Turn back on allow_execmem and allow_execmod booleans- Merge in fixes from dgrift repository- Update boinc policy - Fix sysstat policy to allow sys_admin - Change failsafe_context to unconfined_r:unconfined_t:s0- New paths for upstart- New permissions for syslog - New labels for /lib/upstart- Add mojomojo policy- Allow systemd to setsockcon on sockets to immitate other services- Remove debugfs label- Update to latest policy- Fix eclipse labeling from IBMSupportAssasstant packageing- Make boot with systemd in enforcing mode- Update to upstream- Add boolean to turn off port forwarding in sshd.- Add support for ebtables - Fixes for rhcs and corosync policy-Update to upstream-Update to upstream-Update to upstream- Add Zarafa policy- Cleanup of aiccu policy - initial mock policy- Lots of random fixes- Update to upstream- Update to upstream - Allow prelink script to signal itself - Cobbler fixes- Add xdm_var_run_t to xserver_stream_connect_xdm - Add cmorrord and mpd policy from Miroslav Grepl- Fix sshd creation of krb cc files for users to be user_tmp_t- Fixes for accountsdialog - Fixes for boinc- Fix label on /var/lib/dokwiki - Change permissive domains to enforcing - Fix libvirt policy to allow it to run on mls- Update to upstream- Allow procmail to execute scripts in the users home dir that are labeled home_bin_t - Fix /var/run/abrtd.lock label- Allow login programs to read krb5_home_t Resolves: 594833 - Add obsoletes for cachefilesfd-selinux package Resolves: #575084- Allow mount to r/w abrt fifo file - Allow svirt_t to getattr on hugetlbfs - Allow abrt to create a directory under /var/spool- Add labels for /sys - Allow sshd to getattr on shutdown - Fixes for munin - Allow sssd to use the kernel key ring - Allow tor to send syslog messages - Allow iptabels to read usr files - allow policykit to read all domains state- Fix path for /var/spool/abrt - Allow nfs_t as an entrypoint for http_sys_script_t - Add policy for piranha - Lots of fixes for sosreport- Allow xm_t to read network state and get and set capabilities - Allow policykit to getattr all processes - Allow denyhosts to connect to tcp port 9911 - Allow pyranha to use raw ip sockets and ptrace itself - Allow unconfined_execmem_t and gconfsd mechanism to dbus - Allow staff to kill ping process - Add additional MLS rules- Allow gdm to edit ~/.gconf dir Resolves: #590677 - Allow dovecot to create directories in /var/lib/dovecot Partially resolves 590224 - Allow avahi to dbus chat with NetworkManager - Fix cobbler labels - Dontaudit iceauth_t leaks - fix /var/lib/lxdm file context - Allow aiccu to use tun tap devices - Dontaudit shutdown using xserver.log- Fixes for sandbox_x_net_t to match access for sandbox_web_t ++ - Add xdm_etc_t for /etc/gdm directory, allow accountsd to manage this directory - Add dontaudit interface for bluetooth dbus - Add chronyd_read_keys, append_keys for initrc_t - Add log support for ksmtuned Resolves: #586663- Allow boinc to send mail- Allow initrc_t to remove dhcpc_state_t - Fix label on sa-update.cron - Allow dhcpc to restart chrony initrc - Don't allow sandbox to send signals to its parent processes - Fix transition from unconfined_t -> unconfined_mount_t -> rpcd_t Resolves: #589136- Fix location of oddjob_mkhomedir Resolves: #587385 - fix labeling on /root/.shosts and ~/.shosts - Allow ipsec_mgmt_t to manage net_conf_t Resolves: #586760- Dontaudit sandbox trying to connect to netlink sockets Resolves: #587609 - Add policy for piranha- Fixups for xguest policy - Fixes for running sandbox firefox- Allow ksmtuned to use terminals Resolves: #586663 - Allow lircd to write to generic usb devices- Allow sandbox_xserver to connectto unconfined stream Resolves: #585171- Allow initrc_t to read slapd_db_t Resolves: #585476 - Allow ipsec_mgmt to use unallocated devpts and to create /etc/resolv.conf Resolves: #585963- Allow rlogind_t to search /root for .rhosts Resolves: #582760 - Fix path for cached_var_t - Fix prelink paths /var/lib/prelink - Allow confined users to direct_dri - Allow mls lvm/cryptosetup to work- Allow virtd_t to manage firewall/iptables config Resolves: #573585- Fix label on /root/.rhosts Resolves: #582760 - Add labels for Picasa - Allow openvpn to read home certs - Allow plymouthd_t to use tty_device_t - Run ncftool as iptables_t - Allow mount to unmount unlabeled_t - Dontaudit hal leaks- Allow livecd to transition to mount- Update to upstream - Allow abrt to delete sosreport Resolves: #579998 - Allow snmp to setuid and gid Resolves: #582155 - Allow smartd to use generic scsi devices Resolves: #582145- Allow ipsec_t to create /etc/resolv.conf with the correct label - Fix reserved port destination - Allow autofs to transition to showmount - Stop crashing tuned- Add telepathysofiasip policy- Update to upstream - Fix label for /opt/google/chrome/chrome-sandbox - Allow modemmanager to dbus with policykit- Fix allow_httpd_mod_auth_pam to use auth_use_pam(httpd_t) - Allow accountsd to read shadow file - Allow apache to send audit messages when using pam - Allow asterisk to bind and connect to sip tcp ports - Fixes for dovecot 2.0 - Allow initrc_t to setattr on milter directories - Add procmail_home_t for .procmailrc file- Fixes for labels during install from livecd- Fix /cgroup file context - Fix broken afs use of unlabled_t - Allow getty to use the console for s390- Fix cgroup handling adding policy for /cgroup - Allow confined users to write to generic usb devices, if user_rw_noexattrfile boolean set- Merge patches from dgrift- Update upstream - Allow abrt to write to the /proc under any process- Fix ~/.fontconfig label - Add /root/.cert label - Allow reading of the fixed_file_disk_t:lnk_file if you can read file - Allow qemu_exec_t as an entrypoint to svirt_t- Update to upstream - Allow tmpreaper to delete sandbox sock files - Allow chrome-sandbox_t to use /dev/zero, and dontaudit getattr file systems - Fixes for gitosis - No transition on livecd to passwd or chfn - Fixes for denyhosts- Add label for /var/lib/upower - Allow logrotate to run sssd - dontaudit readahead on tmpfs blk files - Allow tmpreaper to setattr on sandbox files - Allow confined users to execute dos files - Allow sysadm_t to kill processes running within its clearance - Add accountsd policy - Fixes for corosync policy - Fixes from crontab policy - Allow svirt to manage svirt_image_t chr files - Fixes for qdisk policy - Fixes for sssd policy - Fixes for newrole policy- make libvirt work on an MLS platform- Add qpidd policy- Update to upstream- Allow boinc to read kernel sysctl - Fix snmp port definitions - Allow apache to read anon_inodefs- Allow shutdown dac_override- Add device_t as a file system - Fix sysfs association- Dontaudit ipsec_mgmt sys_ptrace - Allow at to mail its spool files - Allow nsplugin to search in .pulse directory- Update to upstream- Allow users to dbus chat with xdm - Allow users to r/w wireless_device_t - Dontaudit reading of process states by ipsec_mgmt- Fix openoffice from unconfined_t- Add shutdown policy so consolekit can shutdown system- Update to upstream- Update to upstream- Update to upstream - These are merges of my patches - Remove 389 labeling conflicts - Add MLS fixes found in RHEL6 testing - Allow pulseaudio to run as a service - Add label for mssql and allow apache to connect to this database port if boolean set - Dontaudit searches of debugfs mount point - Allow policykit_auth to send signals to itself - Allow modcluster to call getpwnam - Allow swat to signal winbind - Allow usbmux to run as a system role - Allow svirt to create and use devpts- Add MLS fixes found in RHEL6 testing - Allow domains to append to rpm_tmp_t - Add cachefilesfd policy - Dontaudit leaks when transitioning- Change allow_execstack and allow_execmem booleans to on - dontaudit acct using console - Add label for fping - Allow tmpreaper to delete sandbox_file_t - Fix wine dontaudit mmap_zero - Allow abrt to read var_t symlinks- Additional policy for rgmanager- Allow sshd to setattr on pseudo terms- Update to upstream- Allow policykit to send itself signals- Fix duplicate cobbler definition- Fix file context of /var/lib/avahi-autoipd- Merge with upstream- Allow sandbox to work with MLS- Make Chrome work with staff user- Add icecast policy - Cleanup spec file- Add mcelog policy- Lots of fixes found in F12- Fix rpm_dontaudit_leaks- Add getsched to hald_t - Add file context for Fedora/Redhat Directory Server- Allow abrt_helper to getattr on all filesystems - Add label for /opt/real/RealPlayer/plugins/oggfformat\.so- Add gstreamer_home_t for ~/.gstreamer- Update to upstream- Fix git- Turn on puppet policy - Update to dgrift git policy- Move users file to selection by spec file. - Allow vncserver to run as unconfined_u:unconfined_r:unconfined_t- Update to upstream- Remove most of the permissive domains from F12.- Add cobbler policy from dgrift- add usbmon device - Add allow rulse for devicekit_disk- Lots of fixes found in F12, fixes from Tom London- Cleanups from dgrift- Add back xserver_manage_home_fonts- Dontaudit sandbox trying to read nscd and sssd- Update to upstream- Rename udisks-daemon back to devicekit_disk_t policy- Fixes for abrt calls- Add tgtd policy- Update to upstream release- Add asterisk policy back in - Update to upstream release 2.20091117- Update to upstream release 2.20091117- Fixup nut policy- Update to upstream- Allow vpnc request the kernel to load modules- Fix minimum policy installs - Allow udev and rpcbind to request the kernel to load modules- Add plymouth policy - Allow local_login to sys_admin- Allow cupsd_config to read user tmp - Allow snmpd_t to signal itself - Allow sysstat_t to makedir in sysstat_log_t- Update rhcs policy- Allow users to exec restorecond- Allow sendmail to request kernel modules load- Fix all kernel_request_load_module domains- Fix all kernel_request_load_module domains- Remove allow_exec* booleans for confined users. Only available for unconfined_t- More fixes for sandbox_web_t- Allow sshd to create .ssh directory and content- Fix request_module line to module_request- Fix sandbox policy to allow it to run under firefox. - Dont audit leaks.- Fixes for sandbox- Update to upstream - Dontaudit nsplugin search /root - Dontaudit nsplugin sys_nice- Fix label on /usr/bin/notepad, /usr/sbin/vboxadd-service - Remove policycoreutils-python requirement except for minimum- Fix devicekit_disk_t to getattr on all domains sockets and fifo_files - Conflicts seedit (You can not use selinux-policy-targeted and seedit at the same time.)- Add wordpress/wp-content/uploads label - Fixes for sandbox when run from staff_t- Update to upstream - Fixes for devicekit_disk- More fixes- Lots of fixes for initrc and other unconfined domains- Allow xserver to use netlink_kobject_uevent_socket- Fixes for sandbox- Dontaudit setroubleshootfix looking at /root directory- Update to upsteam- Allow gssd to send signals to users - Fix duplicate label for apache content- Update to upstream- Remove polkit_auth on upgrades- Add back in unconfined.pp and unconfineduser.pp - Add Sandbox unshare- Fixes for cdrecord, mdadm, and others- Add capability setting to dhcpc and gpm- Allow cronjobs to read exim_spool_t- Add ABRT policy- Fix system-config-services policy- Allow libvirt to change user componant of virt_domain- Allow cupsd_config_t to be started by dbus - Add smoltclient policy- Add policycoreutils-python to pre install- Make all unconfined_domains permissive so we can see what AVC's happen- Add pt_chown policy- Add kdump policy for Miroslav Grepl - Turn off execstack boolean- Turn on execstack on a temporary basis (#512845)- Allow nsplugin to connecto the session bus - Allow samba_net to write to coolkey data- Allow devicekit_disk to list inotify- Allow svirt images to create sock_file in svirt_var_run_t- Allow exim to getattr on mountpoints - Fixes for pulseaudio- Allow svirt_t to stream_connect to virtd_t- Allod hald_dccm_t to create sock_files in /tmp- More fixes from upstream- Fix polkit label - Remove hidebrokensymptoms for nss_ldap fix - Add modemmanager policy - Lots of merges from upstream - Begin removing textrel_shlib_t labels, from fixed libraries- Update to upstream- Allow certmaster to override dac permissions- Update to upstream- Fix context for VirtualBox- Update to upstream- Allow clamscan read amavis spool files- Fixes for xguest- fix multiple directory ownership of mandirs- Update to upstream- Add rules for rtkit-daemon- Update to upstream - Fix nlscd_stream_connect- Add rtkit policy- Allow rpcd_t to stream connect to rpcbind- Allow kpropd to create tmp files- Fix last duplicate /var/log/rpmpkgs- Update to upstream * add sssd- Update to upstream * cleanup- Update to upstream - Additional mail ports - Add virt_use_usb boolean for svirt- Fix mcs rules to include chr_file and blk_file- Add label for udev-acl- Additional rules for consolekit/udev, privoxy and various other fixes- New version for upstream- Allow NetworkManager to read inotifyfs- Allow setroubleshoot to run mlocate- Update to upstream- Add fish as a shell - Allow fprintd to list usbfs_t - Allow consolekit to search mountpoints - Add proper labeling for shorewall- New log file for vmware - Allow xdm to setattr on user_tmp_t- Upgrade to upstream- Allow fprintd to access sys_ptrace - Add sandbox policy- Add varnishd policy- Fixes for kpropd- Allow brctl to r/w tun_tap_device_t- Add /usr/share/selinux/packages- Allow rpcd_t to send signals to kernel threads- Fix upgrade for F10 to F11- Add policy for /var/lib/fprint-Remove duplicate line- Allow svirt to manage pci and other sysfs device data- Fix package selection handling- Fix /sbin/ip6tables-save context - Allod udev to transition to mount - Fix loading of mls policy file- Add shorewall policy- Additional rules for fprintd and sssd- Allow nsplugin to unix_read unix_write sem for unconfined_java- Fix uml files to be owned by users- Fix Upgrade path to install unconfineduser.pp when unocnfined package is 3.0.0 or less- Allow confined users to manage virt_content_t, since this is home dir content - Allow all domains to read rpm_script_tmp_t which is what shell creates on redirection- Fix labeling on /var/lib/misc/prelink* - Allow xserver to rw_shm_perms with all x_clients - Allow prelink to execute files in the users home directory- Allow initrc_t to delete dev_null - Allow readahead to configure auditing - Fix milter policy - Add /var/lib/readahead- Update to latest milter code from Paul Howarth- Additional perms for readahead- Allow pulseaudio to acquire_svc on session bus - Fix readahead labeling- Allow sysadm_t to run rpm directly - libvirt needs fowner- Allow sshd to read var_lib symlinks for freenx- Allow nsplugin unix_read and write on users shm and sem - Allow sysadm_t to execute su- Dontaudit attempts to getattr user_tmpfs_t by lvm - Allow nfs to share removable media- Add ability to run postdrop from confined users- Fixes for podsleuth- Turn off nsplugin transition - Remove Konsole leaked file descriptors for release- Allow cupsd_t to create link files in print_spool_t - Fix iscsi_stream_connect typo - Fix labeling on /etc/acpi/actions - Don't reinstall unconfine and unconfineuser on upgrade if they are not installed- Allow audioentroy to read etc files- Add fail2ban_var_lib_t - Fixes for devicekit_power_t- Separate out the ucnonfined user from the unconfined.pp package- Make sure unconfined_java_t and unconfined_mono_t create user_tmpfs_t.- Upgrade to latest upstream - Allow devicekit_disk sys_rawio- Dontaudit binds to ports < 1024 for named - Upgrade to latest upstream- Allow podsleuth to use tmpfs files- Add customizable_types for svirt- Allow setroubelshoot exec* privs to prevent crash from bad libraries - add cpufreqselector- Dontaudit listing of /root directory for cron system jobs- Fix missing ld.so.cache label- Add label for ~/.forward and /root/.forward- Fixes for svirt- Fixes to allow svirt read iso files in homedir- Add xenner and wine fixes from mgrepl- Allow mdadm to read/write mls override- Change to svirt to only access svirt_image_t- Fix libvirt policy- Upgrade to latest upstream- Fixes for iscsid and sssd - More cleanups for upgrade from F10 to Rawhide.- Add pulseaudio, sssd policy - Allow networkmanager to exec udevadm- Add pulseaudio context- Upgrade to latest patches- Fixes for libvirt- Update to Latest upstream- Fix setrans.conf to show SystemLow for s0- Further confinement of qemu images via svirt- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild- Allow NetworkManager to manage /etc/NetworkManager/system-connections- add virtual_image_context and virtual_domain_context files- Allow rpcd_t to send signal to mount_t - Allow libvirtd to run ranged- Fix sysnet/net_conf_t- Fix squidGuard labeling- Re-add corenet_in_generic_if(unlabeled_t)* Tue Feb 10 2009 Dan Walsh 3.6.5-2 - Add git web policy- Add setrans contains from upstream- Do transitions outside of the booleans- Allow xdm to create user_tmp_t sockets for switch user to work- Fix staff_t domain- Grab remainder of network_peer_controls patch- More fixes for devicekit- Upgrade to latest upstream- Add boolean to disallow unconfined_t login- Add back transition from xguest to mozilla- Add virt_content_ro_t and labeling for isos directory- Fixes for wicd daemon- More mls/rpm fixes- Add policy to make dbus/nm-applet work- Remove polgen-ifgen from post and add trigger to policycoreutils-python- Add wm policy - Make mls work in graphics mode- Fixed for DeviceKit- Add devicekit policy- Update to upstream- Define openoffice as an x_domain- Fixes for reading xserver_tmp_t- Allow cups_pdf_t write to nfs_t- Remove audio_entropy policy- Update to upstream- Allow hal_acl_t to getattr/setattr fixed_disk- Change userdom_read_all_users_state to include reading symbolic links in /proc- Fix dbus reading /proc information- Add missing alias for home directory content- Fixes for IBM java location- Allow unconfined_r unconfined_java_t- Add cron_role back to user domains- Fix sudo setting of user keys- Allow iptables to talk to terminals - Fixes for policy kit - lots of fixes for booting.- Cleanup policy- Rebuild for Python 2.6- Fix labeling on /var/spool/rsyslog- Allow postgresl to bind to udp nodes- Allow lvm to dbus chat with hal - Allow rlogind to read nfs_t- Fix cyphesis file context- Allow hal/pm-utils to look at /var/run/video.rom - Add ulogd policy- Additional fixes for cyphesis - Fix certmaster file context - Add policy for system-config-samba - Allow hal to read /var/run/video.rom- Allow dhcpc to restart ypbind - Fixup labeling in /var/run- Add certmaster policy- Fix confined users - Allow xguest to read/write xguest_dbusd_t- Allow openoffice execstack/execmem privs- Allow mozilla to run with unconfined_execmem_t- Dontaudit domains trying to write to .xsession-errors- Allow nsplugin to look at autofs_t directory- Allow kerneloops to create tmp files- More alias for fastcgi- Remove mod_fcgid-selinux package- Fix dovecot access- Policy cleanup- Remove Multiple spec - Add include - Fix makefile to not call per_role_expansion- Fix labeling of libGL- Update to upstream- Update to upstream policy- Fixes for confined xwindows and xdm_t- Allow confined users and xdm to exec wm - Allow nsplugin to talk to fifo files on nfs- Allow NetworkManager to transition to avahi and iptables - Allow domains to search other domains keys, coverup kernel bug- Fix labeling for oracle- Allow nsplugin to comminicate with xdm_tmp_t sock_file- Change all user tmpfs_t files to be labeled user_tmpfs_t - Allow radiusd to create sock_files- Upgrade to upstream- Allow confined users to login with dbus- Fix transition to nsplugin- Add file context for /dev/mspblk.*- Fix transition to nsplugin '- Fix labeling on new pm*log - Allow ssh to bind to all nodes- Merge upstream changes - Add Xavier Toth patches- Add qemu_cache_t for /var/cache/libvirt- Remove gamin policy- Add tinyxs-max file system support- Update to upstream - New handling of init scripts- Allow pcsd to dbus - Add memcache policy- Allow audit dispatcher to kill his children- Update to upstream - Fix crontab use by unconfined user- Allow ifconfig_t to read dhcpc_state_t- Update to upstream- Update to upstream- Allow system-config-selinux to work with policykit- Fix novel labeling- Consolodate pyzor,spamassassin, razor into one security domain - Fix xdm requiring additional perms.- Fixes for logrotate, alsa- Eliminate vbetool duplicate entry- Fix xguest -> xguest_mozilla_t -> xguest_openiffice_t - Change dhclient to be able to red networkmanager_var_run- Update to latest refpolicy - Fix libsemanage initial install bug- Add inotify support to nscd- Allow unconfined_t to setfcap- Allow amanda to read tape - Allow prewikka cgi to use syslog, allow audisp_t to signal cgi - Add support for netware file systems- Allow ypbind apps to net_bind_service- Allow all system domains and application domains to append to any log file- Allow gdm to read rpm database - Allow nsplugin to read mplayer config files- Allow vpnc to run ifconfig- Allow confined users to use postgres - Allow system_mail_t to exec other mail clients - Label mogrel_rails as an apache server- Apply unconfined_execmem_exec_t to haskell programs- Fix prelude file context- allow hplip to talk dbus - Fix context on ~/.local dir- Prevent applications from reading x_device- Add /var/lib/selinux context- Update to upstream- Add livecd policy- Dontaudit search of admin_home for init_system_domain - Rewrite of xace interfaces - Lots of new fs_list_inotify - Allow livecd to transition to setfiles_mac- Begin XAce integration- Merge Upstream- Allow amanada to create data files- Fix initial install, semanage setup- Allow system_r for httpd_unconfined_script_t- Remove dmesg boolean - Allow user domains to read/write game data- Change unconfined_t to transition to unconfined_mono_t when running mono - Change XXX_mono_t to transition to XXX_t when executing bin_t files, so gnome-do will work- Remove old booleans from targeted-booleans.conf file- Add boolean to mmap_zero - allow tor setgid - Allow gnomeclock to set clock- Don't run crontab from unconfined_t- Change etc files to config files to allow users to read them- Lots of fixes for confined domains on NFS_t homedir- dontaudit mrtg reading /proc - Allow iscsi to signal itself - Allow gnomeclock sys_ptrace- Allow dhcpd to read kernel network state- Label /var/run/gdm correctly - Fix unconfined_u user creation- Allow transition from initrc_t to getty_t- Allow passwd to communicate with user sockets to change gnome-keyring- Fix initial install- Allow radvd to use fifo_file - dontaudit setfiles reading links - allow semanage sys_resource - add allow_httpd_mod_auth_ntlm_winbind boolean - Allow privhome apps including dovecot read on nfs and cifs home dirs if the boolean is set- Allow nsplugin to read /etc/mozpluggerrc, user_fonts - Allow syslog to manage innd logs. - Allow procmail to ioctl spamd_exec_t- Allow initrc_t to dbus chat with consolekit.- Additional access for nsplugin - Allow xdm setcap/getcap until pulseaudio is fixed- Allow mount to mkdir on tmpfs - Allow ifconfig to search debugfs- Fix file context for MATLAB - Fixes for xace- Allow stunnel to transition to inetd children domains - Make unconfined_dbusd_t an unconfined domain- Fixes for qemu/virtd- Fix bug in mozilla policy to allow xguest transition - This will fix the libsemanage.dbase_llist_query: could not find record value libsemanage.dbase_llist_query: could not query record value (No such file or directory) bug in xguest- Allow nsplugin to run acroread- Add cups_pdf policy - Add openoffice policy to run in xguest- prewika needs to contact mysql - Allow syslog to read system_map files- Change init_t to an unconfined_domain- Allow init to transition to initrc_t on shell exec. - Fix init to be able to sendto init_t. - Allow syslog to connect to mysql - Allow lvm to manage its own fifo_files - Allow bugzilla to use ldap - More mls fixes- fixes for init policy (#436988) - fix build- Additional changes for MLS policy- Fix initrc_context generation for MLS- Fixes for libvirt- Allow bitlebee to read locale_t- More xselinux rules- Change httpd_$1_script_r*_t to httpd_$1_content_r*_t- Prepare policy for beta release - Change some of the system domains back to unconfined - Turn on some of the booleans- Allow nsplugin_config execstack/execmem - Allow nsplugin_t to read alsa config - Change apache to use user content- Add cyphesis policy- Fix Makefile.devel to build mls modules - Fix qemu to be more specific on labeling- Update to upstream fixes- Allow staff to mounton user_home_t- Add xace support- Add fusectl file system- Fixes from yum-cron - Update to latest upstream- Fix userdom_list_user_files- Merge with upstream- Allow udev to send audit messages- Add additional login users interfaces - userdom_admin_login_user_template(staff)- More fixes for polkit- Eliminate transition from unconfined_t to qemu by default - Fixes for gpg- Update to upstream- Fixes for staff_t- Add policy for kerneloops - Add policy for gnomeclock- Fixes for libvirt- Fixes for nsplugin- More fixes for qemu- Additional ports for vnc and allow qemu and libvirt to search all directories- Update to upstream - Add libvirt policy - add qemu policy- Allow fail2ban to create a socket in /var/run- Allow allow_httpd_mod_auth_pam to work- Add audisp policy and prelude- Allow all user roles to executae samba net command- Allow usertypes to read/write noxattr file systems- Fix nsplugin to allow flashplugin to work in enforcing mode- Allow pam_selinux_permit to kill all processes- Allow ptrace or user processes by users of same type - Add boolean for transition to nsplugin- Allow nsplugin sys_nice, getsched, setsched- Allow login programs to talk dbus to oddjob- Add procmail_log support - Lots of fixes for munin- Allow setroubleshoot to read policy config and send audit messages- Allow users to execute all files in homedir, if boolean set - Allow mount to read samba config- Fixes for xguest to run java plugin- dontaudit pam_t and dbusd writing to user_home_t- Update gpg to allow reading of inotify- Change user and staff roles to work correctly with varied perms- Fix munin log, - Eliminate duplicate mozilla file context - fix wpa_supplicant spec- Fix role transition from unconfined_r to system_r when running rpm - Allow unconfined_domains to communicate with user dbus instances- Fixes for xguest- Let all uncofined domains communicate with dbus unconfined- Run rpm in system_r- Zero out customizable types- Fix definiton of admin_home_t- Fix munin file context- Allow cron to run unconfined apps- Modify default login to unconfined_u- Dontaudit dbus user client search of /root- Update to upstream- Fixes for polkit - Allow xserver to ptrace- Add polkit policy - Symplify userdom context, remove automatic per_role changes- Update to upstream - Allow httpd_sys_script_t to search users homedirs- Allow rpm_script to transition to unconfined_execmem_t- Remove user based home directory separation- Remove user specific crond_t- Merge with upstream - Allow xsever to read hwdata_t - Allow login programs to setkeycreate- Update to upstream- Update to upstream- Allow XServer to read /proc/self/cmdline - Fix unconfined cron jobs - Allow fetchmail to transition to procmail - Fixes for hald_mac - Allow system_mail to transition to exim - Allow tftpd to upload files - Allow xdm to manage unconfined_tmp - Allow udef to read alsa config - Fix xguest to be able to connect to sound port- Fixes for hald_mac - Treat unconfined_home_dir_t as a home dir - dontaudit rhgb writes to fonts and root- Fix dnsmasq - Allow rshd full login privs- Allow rshd to connect to ports > 1023- Fix vpn to bind to port 4500 - Allow ssh to create shm - Add Kismet policy- Allow rpm to chat with networkmanager- Fixes for ipsec and exim mail - Change default to unconfined user- Pass the UNK_PERMS param to makefile - Fix gdm location- Make alsa work- Fixes for consolekit and startx sessions- Dontaudit consoletype talking to unconfined_t- Remove homedir_template- Check asound.state- Fix exim policy- Allow tmpreadper to read man_t - Allow racoon to bind to all nodes - Fixes for finger print reader- Allow xdm to talk to input device (fingerprint reader) - Allow octave to run as java- Allow login programs to set ioctl on /proc- Allow nsswitch apps to read samba_var_t- Fix maxima- Eliminate rpm_t:fifo_file avcs - Fix dbus path for helper app- Fix service start stop terminal avc's- Allow also to search var_lib - New context for dbus launcher- Allow cupsd_config_t to read/write usb_device_t - Support for finger print reader, - Many fixes for clvmd - dbus starting networkmanager- Fix java and mono to run in xguest account- Fix to add xguest account when inititial install - Allow mono, java, wine to run in userdomains- Allow xserver to search devpts_t - Dontaudit ldconfig output to homedir- Remove hplip_etc_t change back to etc_t.- Allow cron to search nfs and samba homedirs- Allow NetworkManager to dbus chat with yum-updated- Allow xfs to bind to port 7100- Allow newalias/sendmail dac_override - Allow bind to bind to all udp ports- Turn off direct transition- Allow wine to run in system role- Fix java labeling- Define user_home_type as home_type- Allow sendmail to create etc_aliases_t- Allow login programs to read symlinks on homedirs- Update an readd modules- Cleanup spec file- Allow xserver to be started by unconfined process and talk to tty- Upgrade to upstream to grab postgressql changes- Add setransd for mls policy- Add ldconfig_cache_t- Allow sshd to write to proc_t for afs login- Allow xserver access to urand- allow dovecot to search mountpoints- Fix Makefile for building policy modules- Fix dhcpc startup of service- Fix dbus chat to not happen for xguest and guest users- Fix nagios cgi - allow squid to communicate with winbind- Fixes for ldconfig- Update from upstream- Add nasd support- Fix new usb devices and dmfm- Eliminate mount_ntfs_t policy, merge into mount_t- Allow xserver to write to ramfs mounted by rhgb- Add context for dbus machine id- Update with latest changes from upstream- Fix prelink to handle execmod- Add ntpd_key_t to handle secret data- Add anon_inodefs - Allow unpriv user exec pam_exec_t - Fix trigger- Allow cups to use generic usb - fix inetd to be able to run random apps (git)- Add proper contexts for rsyslogd- Fixes for xguest policy- Allow execution of gconf- Fix moilscanner update problem- Begin adding policy to separate setsebool from semanage - Fix xserver.if definition to not break sepolgen.if- Add new devices- Add brctl policy- Fix root login to include system_r- Allow prelink to read kernel sysctls- Default to user_u:system_r:unconfined_t- fix squid - Fix rpm running as uid- Fix syslog declaration- Allow avahi to access inotify - Remove a lot of bogus security_t:filesystem avcs- Remove ifdef strict policy from upstream- Remove ifdef strict to allow user_u to login- Fix for amands - Allow semanage to read pp files - Allow rhgb to read xdm_xserver_tmp- Allow kerberos servers to use ldap for backing store- allow alsactl to read kernel state- More fixes for alsactl - Transition from hal and modutils - Fixes for suspend resume. - insmod domtrans to alsactl - insmod writes to hal log- Allow unconfined_t to transition to NetworkManager_t - Fix netlabel policy- Update to latest from upstream- Update to latest from upstream- Update to latest from upstream- Allow pcscd_t to send itself signals- Fixes for unix_update - Fix logwatch to be able to search all dirs- Upstream bumped the version- Allow consolekit to syslog - Allow ntfs to work with hal- Allow iptables to read etc_runtime_t- MLS Fixes- Fix path of /etc/lvm/cache directory - Fixes for alsactl and pppd_t - Fixes for consolekit- Allow insmod_t to mount kvmfs_t filesystems- Rwho policy - Fixes for consolekit- fixes for fusefs- Fix samba_net to allow it to view samba_var_t- Update to upstream- Fix Sonypic backlight - Allow snmp to look at squid_conf_t- Fixes for pyzor, cyrus, consoletype on everything installs- Fix hald_acl_t to be able to getattr/setattr on usb devices - Dontaudit write to unconfined_pipes for load_policy- Allow bluetooth to read inotifyfs- Fixes for samba domain controller. - Allow ConsoleKit to look at ttys- Fix interface call- Allow syslog-ng to read /var - Allow locate to getattr on all filesystems - nscd needs setcap- Update to upstream- Allow samba to run groupadd- Update to upstream- Allow mdadm to access generic scsi devices- Fix labeling on udev.tbl dirs- Fixes for logwatch- Add fusermount and mount_ntfs policy- Update to upstream - Allow saslauthd to use kerberos keytabs- Fixes for samba_var_t- Allow networkmanager to setpgid - Fixes for hal_acl_t- Remove disable_trans booleans - hald_acl_t needs to talk to nscd- Fix prelink to be able to manage usr dirs.- Allow insmod to launch init scripts- Remove setsebool policy- Fix handling of unlabled_t packets- More of my patches from upstream- Update to latest from upstream - Add fail2ban policy- Update to remove security_t:filesystem getattr problems- Policy for consolekit- Update to latest from upstream- Revert Nemiver change - Set sudo as a corecmd so prelink will work, remove sudoedit mapping, since this will not work, it does not transition. - Allow samba to execute useradd- Upgrade to the latest from upstream- Add sepolgen support - Add bugzilla policy- Fix file context for nemiver- Remove include sym link- Allow mozilla, evolution and thunderbird to read dev_random. Resolves: #227002 - Allow spamd to connect to smtp port Resolves: #227184 - Fixes to make ypxfr work Resolves: #227237- Fix ssh_agent to be marked as an executable - Allow Hal to rw sound device- Fix spamassisin so crond can update spam files - Fixes to allow kpasswd to work - Fixes for bluetooth- Remove some targeted diffs in file context file- Fix squid cachemgr labeling- Add ability to generate webadm_t policy - Lots of new interfaces for httpd - Allow sshd to login as unconfined_t- Continue fixing, additional user domains- Begin adding user confinement to targeted policy- Fixes for prelink, ktalkd, netlabel- Allow prelink when run from rpm to create tmp files Resolves: #221865 - Remove file_context for exportfs Resolves: #221181 - Allow spamassassin to create ~/.spamassissin Resolves: #203290 - Allow ssh access to the krb tickets - Allow sshd to change passwd - Stop newrole -l from working on non securetty Resolves: #200110 - Fixes to run prelink in MLS machine Resolves: #221233 - Allow spamassassin to read var_lib_t dir Resolves: #219234- fix mplayer to work under strict policy - Allow iptables to use nscd Resolves: #220794- Add gconf policy and make it work with strict- Many fixes for strict policy and by extension mls.- Fix to allow ftp to bind to ports > 1024 Resolves: #219349- Allow semanage to exec it self. Label genhomedircon as semanage_exec_t Resolves: #219421 - Allow sysadm_lpr_t to manage other print spool jobs Resolves: #220080- allow automount to setgid Resolves: #219999- Allow cron to polyinstatiate - Fix creation of boot flags Resolves: #207433- Fixes for irqbalance Resolves: #219606- Fix vixie-cron to work on mls Resolves: #207433Resolves: #218978- Allow initrc to create files in /var directories Resolves: #219227- More fixes for MLS Resolves: #181566- More Fixes polyinstatiation Resolves: #216184- More Fixes polyinstatiation - Fix handling of keyrings Resolves: #216184- Fix polyinstatiation - Fix pcscd handling of terminal Resolves: #218149 Resolves: #218350- More fixes for quota Resolves: #212957- ncsd needs to use avahi sockets Resolves: #217640 Resolves: #218014- Allow login programs to polyinstatiate homedirs Resolves: #216184 - Allow quotacheck to create database files Resolves: #212957- Dontaudit appending hal_var_lib files Resolves: #217452 Resolves: #217571 Resolves: #217611 Resolves: #217640 Resolves: #217725- Fix context for helix players file_context #216942- Fix load_policy to be able to mls_write_down so it can talk to the terminal- Fixes for hwclock, clamav, ftp- Move to upstream version which accepted my patches- Fixes for nvidia driver- Allow semanage to signal mcstrans- Update to upstream- Allow modstorage to edit /etc/fstab file- Fix for qemu, /dev/- Fix path to realplayer.bin- Allow xen to connect to xen port- Allow cups to search samba_etc_t directory - Allow xend_t to list auto_mountpoints- Allow xen to search automount- Fix spec of jre files- Fix unconfined access to shadow file- Allow xend to create files in xen_image_t directories- Fixes for /var/lib/hal- Remove ability for sysadm_t to look at audit.log- Fix rpc_port_types - Add aide policy for mls- Merge with upstream- Lots of fixes for ricci- Allow xen to read/write fixed devices with a boolean - Allow apache to search /var/log- Fix policygentool specfile problem. - Allow apache to send signals to it's logging helpers. - Resolves: rhbz#212731- Add perms for swat- Add perms for swat- Allow daemons to dump core files to /- Fixes for ricci- Allow mount.nfs to work- Allow ricci-modstorage to look at lvm_etc_t- Fixes for ricci using saslauthd- Allow mountpoint on home_dir_t and home_t- Update xen to read nfs files- Allow noxattrfs to associate with other noxattrfs- Allow hal to use power_device_t- Allow procemail to look at autofs_t - Allow xen_image_t to work as a fixed device- Refupdate from upstream- Add lots of fixes for mls cups- Lots of fixes for ricci- Fix number of cats- Update to upstream- More iSCSI changes for #209854- Test ISCSI fixes for #209854- allow semodule to rmdir selinux_config_t dir- Fix boot_runtime_t problem on ppc. Should not be creating these files.- Fix context mounts on reboot - Fix ccs creation of directory in /var/log- Update for tallylog- Allow xend to rewrite dhcp conf files - Allow mgetty sys_admin capability- Make xentapctrl work- Don't transition unconfined_t to bootloader_t - Fix label in /dev/xen/blktap- Patch for labeled networking- Fix crond handling for mls- Update to upstream- Remove bluetooth-helper transition - Add selinux_validate for semanage - Require new version of libsemanage- Fix prelink- Fix rhgb- Fix setrans handling on MLS and useradd- Support for fuse - fix vigr- Fix dovecot, amanda - Fix mls- Allow java execheap for itanium- Update with upstream- mls fixes- Update from upstream- More fixes for mls - Revert change on automount transition to mount- Fix cron jobs to run under the correct context- Fixes to make pppd work- Multiple policy fixes - Change max categories to 1023- Fix transition on mcstransd- Add /dev/em8300 defs- Upgrade to upstream- Fix ppp connections from network manager- Add tty access to all domains boolean - Fix gnome-pty-helper context for ia64- Fixed typealias of firstboot_rw_t- Fix location of xel log files - Fix handling of sysadm_r -> rpm_exec_t- Fixes for autofs, lp- Update from upstream- Fixup for test6- Update to upstream- Update to upstream- Fix suspend to disk problems- Lots of fixes for restarting daemons at the console.- Fix audit line - Fix requires line- Upgrade to upstream- Fix install problems- Allow setroubleshoot to getattr on all dirs to gather RPM data- Set /usr/lib/ia32el/ia32x_loader to unconfined_execmem_exec_t for ia32 platform - Fix spec for /dev/adsp- Fix xen tty devices- Fixes for setroubleshoot- Update to upstream- Fixes for stunnel and postgresql - Update from upstream- Update from upstream - More java fixes- Change allow_execstack to default to on, for RHEL5 Beta. This is required because of a Java compiler problem. Hope to turn off for next beta- Misc fixes- More fixes for strict policy- Quiet down anaconda audit messages- Fix setroubleshootd- Update to the latest from upstream- More fixes for xen- Fix anaconda transitions- yet more xen rules- more xen rules- Fixes for Samba- Fixes for xen- Allow setroubleshootd to send mail- Add nagios policy- fixes for setroubleshoot- Added Paul Howarth patch to only load policy packages shipped with this package - Allow pidof from initrc to ptrace higher level domains - Allow firstboot to communicate with hal via dbus- Add policy for /var/run/ldapi- Fix setroubleshoot policy- Fixes for mls use of ssh - named has a new conf file- Fixes to make setroubleshoot work- Cups needs to be able to read domain state off of printer client- add boolean to allow zebra to write config files- setroubleshootd fixes- Allow prelink to read bin_t symlink - allow xfs to read random devices - Change gfs to support xattr- Remove spamassassin_can_network boolean- Update to upstream - Fix lpr domain for mls- Add setroubleshoot policy- Turn off auditallow on setting booleans- Multiple fixes- Update to upstream- Update to upstream - Add new class for kernel key ring- Update to upstream- Update to upstream- Break out selinux-devel package- Add ibmasmfs- Fix policygentool gen_requires- Update from Upstream- Fix spec of realplay- Update to upstream- Fix semanage- Allow useradd to create_home_dir in MLS environment- Update from upstream- Update from upstream- Add oprofilefs- Fix for hplip and Picasus- Update to upstream- Update to upstream- fixes for spamd- fixes for java, openldap and webalizer- Xen fixes- Upgrade to upstream- allow hal to read boot_t files - Upgrade to upstream- allow hal to read boot_t files- Update from upstream- Fixes for amavis- Update from upstream- Allow auditctl to search all directories- Add acquire service for mono.- Turn off allow_execmem boolean - Allow ftp dac_override when allowed to access users homedirs- Clean up spec file - Transition from unconfined_t to prelink_t- Allow execution of cvs command- Update to upstream- Update to upstream- Fix libjvm spec- Update to upstream- Add xm policy - Fix policygentool- Update to upstream - Fix postun to only disable selinux on full removal of the packages- Allow mono to chat with unconfined- Allow procmail to sendmail - Allow nfs to share dosfs- Update to latest from upstream - Allow selinux-policy to be removed and kernel not to crash- Update to latest from upstream - Add James Antill patch for xen - Many fixes for pegasus- Add unconfined_mount_t - Allow privoxy to connect to httpd_cache - fix cups labeleing on /var/cache/cups- Update to latest from upstream- Update to latest from upstream - Allow mono and unconfined to talk to initrc_t dbus objects- Change libraries.fc to stop shlib_t form overriding texrel_shlib_t- Fix samba creating dirs in homedir - Fix NFS so its booleans would work- Allow secadm_t ability to relabel all files - Allow ftp to search xferlog_t directories - Allow mysql to communicate with ldap - Allow rsync to bind to rsync_port_t- Fixed mailman with Postfix #183928 - Allowed semanage to create file_context files. - Allowed amanda_t to access inetd_t TCP sockets and allowed amanda_recover_t to bind to reserved ports. #149030 - Don't allow devpts_t to be associated with tmp_t. - Allow hald_t to stat all mountpoints. - Added boolean samba_share_nfs to allow smbd_t full access to NFS mounts. - Make mount run in mount_t domain from unconfined_t to prevent mislabeling of /etc/mtab. - Changed the file_contexts to not have a regex before the first ^/[a-z]/ whenever possible, makes restorecon slightly faster. - Correct the label of /etc/named.caching-nameserver.conf - Now label /usr/src/kernels/.+/lib(/.*)? as usr_t instead of /usr/src(/.*)?/lib(/.*)? - I don't think we need anything else under /usr/src hit by this. - Granted xen access to /boot, allowed mounting on xend_var_lib_t, and allowed xenstored_t rw access to the xen device node.- More textrel_shlib_t file path fixes - Add ada support- Get auditctl working in MLS policy- Add mono dbus support - Lots of file_context fixes for textrel_shlib_t in FC5 - Turn off execmem auditallow since they are filling log files- Update to upstream- Allow automount and dbus to read cert files- Fix ftp policy - Fix secadm running of auditctl- Update to upstream- Update to upstream- Fix policyhelp- Fix pam_console handling of usb_device - dontaudit logwatch reading /mnt dir- Update to upstream- Get transition rules to create policy.20 at SystemHigh- Allow secadmin to shutdown system - Allow sendmail to exec newalias- MLS Fixes dmidecode needs mls_file_read_up - add ypxfr_t - run init needs access to nscd - udev needs setuid - another xen log file - Dontaudit mount getattr proc_kcore_t- fix buildroot usage (#185391)- Get rid of mount/fsdisk scan of /dev messages - Additional fixes for suspend/resume- Fake make to rebuild enableaudit.pp- Get xen networking running.- Fixes for Xen - enableaudit should not be the same as base.pp - Allow ps to work for all process- more xen policy fixups- more xen fixage (#184393)- Fix blkid specification - Allow postfix to execute mailman_que- Blkid changes - Allow udev access to usb_device_t - Fix post script to create targeted policy config file- Allow lvm tools to create drevice dir- Add Xen support- Fixes for cups - Make cryptosetup work with hal- Load Policy needs translock- Fix cups html interface- Add hal changes suggested by Jeremy - add policyhelp to point at policy html pages- Additional fixes for nvidia and cups- Update to upstream - Merged my latest fixes - Fix cups policy to handle unix domain sockets- NSCD socket is in nscd_var_run_t needs to be able to search dir- Fixes Apache interface file- Fixes for new version of cups- Turn off polyinstatiate util after FC5- Fix problem with privoxy talking to Tor- Turn on polyinstatiation- Don't transition from unconfined_t to fsadm_t- Fix policy update model.- Update to upstream- Fix load_policy to work on MLS - Fix cron_rw_system_pipes for postfix_postdrop_t - Allow audotmount to run showmount- Fix swapon - allow httpd_sys_script_t to be entered via a shell - Allow httpd_sys_script_t to read eventpolfs- Update from upstream- allow cron to read apache files- Fix vpnc policy to work from NetworkManager- Update to upstream - Fix semoudle polcy- Update to upstream - fix sysconfig/selinux link- Add router port for zebra - Add imaze port for spamd - Fixes for amanda and java- Fix bluetooth handling of usb devices - Fix spamd reading of ~/ - fix nvidia spec- Update to upsteam- Add users_extra files- Update to upstream- Add semodule policy- Update from upstream- Fix for spamd to use razor port- Fixes for mcs - Turn on mount and fsadm for unconfined_t- Fixes for the -devel package- Fix for spamd to use ldap- Update to upstream- Update to upstream - Fix rhgb, and other Xorg startups- Update to upstream- Separate out role of secadm for mls- Add inotifyfs handling- Update to upstream - Put back in changes for pup/zen- Many changes for MLS - Turn on strict policy- Update to upstream- Update to upstream - Fixes for booting and logging in on MLS machine- Update to upstream - Turn off execheap execstack for unconfined users - Add mono/wine policy to allow execheap and execstack for them - Add execheap for Xdm policy- Update to upstream - Fixes to fetchmail,- Update to upstream- Fix for procmail/spamassasin - Update to upstream - Add rules to allow rpcd to work with unlabeled_networks.- Update to upstream - Fix ftp Man page- Update to upstream- fix pup transitions (#177262) - fix xen disks (#177599)- Update to upstream- More Fixes for hal and readahead- Fixes for hal and readahead- Update to upstream - Apply- Add wine and fix hal problems- Handle new location of hal scripts- Allow su to read /etc/mtab- Update to upstream- Fix "libsemanage.parse_module_headers: Data did not represent a module." problem- Allow load_policy to read /etc/mtab- Fix dovecot to allow dovecot_auth to look at /tmp- Allow restorecon to read unlabeled_t directories in order to fix labeling.- Add Logwatch policy- Fix /dev/ub[a-z] file context- Fix library specification - Give kudzu execmem privs- Fix hostname in targeted policy- Fix passwd command on mls- Lots of fixes to make mls policy work- Add dri libs to textrel_shlib_t - Add system_r role for java - Add unconfined_exec_t for vncserver - Allow slapd to use kerberos- Add man pages- Add enableaudit.pp- Fix mls policy- Update mls file from old version- Add sids back in - Rebuild with update checkpolicy- Fixes to allow automount to use portmap - Fixes to start kernel in s0-s15:c0.c255- Add java unconfined/execmem policy- Add file context for /var/cvs - Dontaudit webalizer search of homedir- Update from upstream- Clean up spec - range_transition crond to SystemHigh- Fixes for hal - Update to upstream- Turn back on execmem since we need it for java, firefox, ooffice - Allow gpm to stream socket to itself- fix requirements to be on the actual packages so that policy can get created properly at install time- Allow unconfined_t to execmod texrel_shlib_t- Update to upstream - Turn off allow_execmem and allow_execmod booleans - Add tcpd and automount policies- Add two new httpd booleans, turned off by default * httpd_can_network_relay * httpd_can_network_connect_db- Add ghost for policy.20- Update to upstream - Turn off boolean allow_execstack- Change setrans-mls to use new libsetrans - Add default_context rule for xdm- Change Requires to PreReg for requiring of policycoreutils on install- New upstream releaseAdd xdm policyUpdate from upstreamUpdate from upstreamUpdate from upstream- Also trigger to rebuild policy for versions up to 2.0.7.- No longer installing policy.20 file, anaconda handles the building of the app.- Fixes for dovecot and saslauthd- Cleanup pegasus and named - Fix spec file - Fix up passwd changing applications-Update to latest from upstream- Add rules for pegasus and avahi- Start building MLS Policy- Update to upstream- Turn on bash- Initial version/bin/sh/bin/sh/bin/sh  !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~3.13.1-102.el7_3.163.13.1-102.el7_3.163.13.1-102.el7_3.16      !!!"""###$$$%%%&&&'''((()))***+++,,,---...///000111222333444555666777888999:::;;;<<<===>>>???@@@AAABBBCCCDDDEEEFFFGGGHHHIIIJJJKKKLLLMMMNNNOOOPPPQQQRRRSSSTTTUUUVVVWWWXXXYYYZZZ[[[\\\]]]^^^___```aaabbbcccdddeeefffggghhhiiijjjkkklllmmmnnnooopppqqqrrrssstttuuuvvvwwwxxxyyyzzz{{{|||}}}~~~                  !!!"""###$$$%%%&&&'''((()))***+++,,,---...///000111222333444555666777888999:::;;;<<<===>>>???@@@AAABBBCCCDDDEEEFFFGGGHHHIIIJJJKKKLLLMMMNNNOOOPPPQQQRRRSSSTTTUUUVVVWWWXXXYYYZZZ[[[\\\]]]^^^___```aaabbbcccdddeeefffggghhhiiijjjkkklllmmmnnnooopppqqqrrrssstttuuuvvvwwwxxxyyyzzz{{{|||}}}~~~minimum.policy.sha512activecommit_numfile_contextshomedir_templatemodules100abrtcilhlllang_extaccountsdcilhlllang_extacctcilhlllang_extafscilhlllang_extaiccucilhlllang_extaidecilhlllang_extajaxtermcilhlllang_extalsacilhlllang_extamandacilhlllang_extamtucilhlllang_extanacondacilhlllang_extantiviruscilhlllang_extapachecilhlllang_extapcupsdcilhlllang_extapmcilhlllang_extapplicationcilhlllang_extarpwatchcilhlllang_extasteriskcilhlllang_extauditadmcilhlllang_extauthconfigcilhlllang_extauthlogincilhlllang_extautomountcilhlllang_extavahicilhlllang_extawstatscilhlllang_extbaculacilhlllang_extbasecilhlllang_extbcfg2cilhlllang_extbindcilhlllang_extbitlbeecilhlllang_extblkmapdcilhlllang_extbluemancilhlllang_extbluetoothcilhlllang_extboinccilhlllang_extbootloadercilhlllang_extbrctlcilhlllang_extbrlttycilhlllang_extbugzillacilhlllang_extbumblebeecilhlllang_extcachefilesdcilhlllang_extcalamariscilhlllang_extcallweavercilhlllang_extcannacilhlllang_extccscilhlllang_extcdrecordcilhlllang_extcertmastercilhlllang_extcertmongercilhlllang_extcertwatchcilhlllang_extcfenginecilhlllang_extcgdcbxdcilhlllang_extcgroupcilhlllang_extchromecilhlllang_extchronydcilhlllang_extcindercilhlllang_extcipecilhlllang_extclockcilhlllang_extclogdcilhlllang_extcloudformcilhlllang_extcmirrordcilhlllang_extcobblercilhlllang_extcockpitcilhlllang_extcollectdcilhlllang_extcolordcilhlllang_extcomsatcilhlllang_extcondorcilhlllang_extconmancilhlllang_extconsolekitcilhlllang_extcouchdbcilhlllang_extcouriercilhlllang_extcpucontrolcilhlllang_extcpufreqselectorcilhlllang_extcpuplugcilhlllang_extcroncilhlllang_extctdbcilhlllang_extcupscilhlllang_extcvscilhlllang_extcyphesiscilhlllang_extcyruscilhlllang_extdaemontoolscilhlllang_extdbadmcilhlllang_extdbskkcilhlllang_extdbuscilhlllang_extdcccilhlllang_extddclientcilhlllang_extdenyhostscilhlllang_extdevicekitcilhlllang_extdhcpcilhlllang_extdictdcilhlllang_extdirsrvdirsrv-admincilhlllang_extcilhlllang_extdmesgcilhlllang_extdmidecodecilhlllang_extdnsmasqcilhlllang_extdnsseccilhlllang_extdockercilhlllang_extdovecotcilhlllang_extdrbdcilhlllang_extdspamcilhlllang_extentropydcilhlllang_exteximcilhlllang_extfail2bancilhlllang_extfcoecilhlllang_extfetchmailcilhlllang_extfingercilhlllang_extfirewalldcilhlllang_extfirewallguicilhlllang_extfirstbootcilhlllang_extfprintdcilhlllang_extfreeipmicilhlllang_extfreqsetcilhlllang_extfstoolscilhlllang_extftpcilhlllang_extgamescilhlllang_extgdomapcilhlllang_extgearcilhlllang_extgeocluecilhlllang_extgettycilhlllang_extgitcilhlllang_extgitosiscilhlllang_extglancecilhlllang_extglusterdcilhlllang_extgnomecilhlllang_extgpgcilhlllang_extgpmcilhlllang_extgpsdcilhlllang_extgssproxycilhlllang_extguestcilhlllang_exthddtempcilhlllang_exthostnamecilhlllang_exthsqldbcilhlllang_exthwloccilhlllang_exthypervkvpcilhlllang_exticecastcilhlllang_extinetdcilhlllang_extinitcilhlllang_extinncilhlllang_extiodinecilhlllang_extiotopcilhlllang_extipacilhlllang_extipmievdcilhlllang_extipseccilhlllang_extiptablescilhlllang_extirccilhlllang_extirqbalancecilhlllang_extiscsicilhlllang_extisnscilhlllang_extjabbercilhlllang_extjettycilhlllang_extjockeycilhlllang_extjournalctlcilhlllang_extkdumpcilhlllang_extkdumpguicilhlllang_extkeepalivedcilhlllang_extkerberoscilhlllang_extkeyboarddcilhlllang_extkeystonecilhlllang_extkismetcilhlllang_extkmsconcilhlllang_extksmtunedcilhlllang_extktalkcilhlllang_extl2tpcilhlllang_extldapcilhlllang_extlibrariescilhlllang_extlikewisecilhlllang_extlinuxptpcilhlllang_extlircdcilhlllang_extlivecdcilhlllang_extlldpadcilhlllang_extloadkeyscilhlllang_extlocallogincilhlllang_extlockdevcilhlllang_extlogadmcilhlllang_extloggingcilhlllang_extlogrotatecilhlllang_extlogwatchcilhlllang_extlpdcilhlllang_extlsmcilhlllang_extlttng-toolscilhlllang_extlvmcilhlllang_extmailmancilhlllang_extmailscannercilhlllang_extman2htmlcilhlllang_extmandbcilhlllang_extmcelogcilhlllang_extmediawikicilhlllang_extmemcachedcilhlllang_extmiltercilhlllang_extminidlnacilhlllang_extminissdpdcilhlllang_extmip6dcilhlllang_extmirrormanagercilhlllang_extmiscfilescilhlllang_extmockcilhlllang_extmodemmanagercilhlllang_extmodutilscilhlllang_extmojomojocilhlllang_extmon_statdcilhlllang_extmongodbcilhlllang_extmotioncilhlllang_extmountcilhlllang_extmozillacilhlllang_extmpdcilhlllang_extmplayercilhlllang_extmrtgcilhlllang_extmtacilhlllang_extmunincilhlllang_extmysqlcilhlllang_extmythtvcilhlllang_extnagioscilhlllang_extnamespacecilhlllang_extncftoolcilhlllang_extnetlabelcilhlllang_extnetutilscilhlllang_extnetworkmanagercilhlllang_extninfodcilhlllang_extniscilhlllang_extnovacilhlllang_extnscdcilhlllang_extnsdcilhlllang_extnslcdcilhlllang_extntopcilhlllang_extntpcilhlllang_extnumadcilhlllang_extnutcilhlllang_extnxcilhlllang_extobexcilhlllang_extoddjobcilhlllang_extopenctcilhlllang_extopendnsseccilhlllang_extopenhpidcilhlllang_extopenshiftopenshift-origincilhlllang_extcilhlllang_extopensmcilhlllang_extopenvpncilhlllang_extopenvswitchcilhlllang_extopenwsmancilhlllang_extoracleasmcilhlllang_extosadcilhlllang_extpadscilhlllang_extpassengercilhlllang_extpcmciacilhlllang_extpcpcilhlllang_extpcscdcilhlllang_extpegasuscilhlllang_extpesigncilhlllang_extpingdcilhlllang_extpiranhacilhlllang_extpkcscilhlllang_extpkicilhlllang_extplymouthdcilhlllang_extpodsleuthcilhlllang_extpolicykitcilhlllang_extpolipocilhlllang_extportmapcilhlllang_extportreservecilhlllang_extpostfixcilhlllang_extpostgresqlcilhlllang_extpostgreycilhlllang_extpppcilhlllang_extprelinkcilhlllang_extpreludecilhlllang_extprivoxycilhlllang_extprocmailcilhlllang_extprosodycilhlllang_extpsadcilhlllang_extptchowncilhlllang_extpublicfilecilhlllang_extpulseaudiocilhlllang_extpuppetcilhlllang_extpwauthcilhlllang_extqmailcilhlllang_extqpidcilhlllang_extquantumcilhlllang_extquotacilhlllang_extrabbitmqcilhlllang_extradiuscilhlllang_extradvdcilhlllang_extraidcilhlllang_extrasdaemoncilhlllang_extrdisccilhlllang_extreadaheadcilhlllang_extrealmdcilhlllang_extrediscilhlllang_extremotelogincilhlllang_extrhcscilhlllang_extrhevcilhlllang_extrhgbcilhlllang_extrhnsdcilhlllang_extrhsmcertdcilhlllang_extriccicilhlllang_extrkhuntercilhlllang_extrlogincilhlllang_extrngdcilhlllang_extroundupcilhlllang_extrpccilhlllang_extrpcbindcilhlllang_extrpmcilhlllang_extrshdcilhlllang_extrsshcilhlllang_extrsynccilhlllang_extrtascilhlllang_extrtkitcilhlllang_extrwhocilhlllang_extsambacilhlllang_extsambaguicilhlllang_extsandboxXcilhlllang_extsanlockcilhlllang_extsaslcilhlllang_extsbdcilhlllang_extsblimcilhlllang_extscreencilhlllang_extsecadmcilhlllang_extsectoolmcilhlllang_extselinuxutilcilhlllang_extsendmailcilhlllang_extsensordcilhlllang_extsetranscilhlllang_extsetroubleshootcilhlllang_extseunsharecilhlllang_extsgecilhlllang_extshorewallcilhlllang_extslocatecilhlllang_extslpdcilhlllang_extsmartmoncilhlllang_extsmokepingcilhlllang_extsmoltclientcilhlllang_extsmsdcilhlllang_extsnappercilhlllang_extsnmpcilhlllang_extsnortcilhlllang_extsosreportcilhlllang_extsoundservercilhlllang_extspamassassincilhlllang_extspeech-dispatchercilhlllang_extsquidcilhlllang_extsshcilhlllang_extsssdcilhlllang_extstaffcilhlllang_extstapservercilhlllang_extstunnelcilhlllang_extsucilhlllang_extsudocilhlllang_extsvnservecilhlllang_extswiftcilhlllang_extsysadmcilhlllang_extsysadm_secadmcilhlllang_extsysnetworkcilhlllang_extsysstatcilhlllang_extsystemdcilhlllang_exttargetdcilhlllang_exttcpdcilhlllang_exttcsdcilhlllang_exttelepathycilhlllang_exttelnetcilhlllang_exttftpcilhlllang_exttgtdcilhlllang_extthincilhlllang_extthumbcilhlllang_exttmpreapercilhlllang_exttomcatcilhlllang_exttorcilhlllang_exttunedcilhlllang_exttvtimecilhlllang_extudevcilhlllang_extulogdcilhlllang_extumlcilhlllang_extunconfinedcilhlllang_extunconfinedusercilhlllang_extunlabelednetcilhlllang_extunprivusercilhlllang_extupdfstabcilhlllang_extusbmodulescilhlllang_extusbmuxdcilhlllang_extuserdomaincilhlllang_extuserhelpercilhlllang_extusermanagecilhlllang_extusernetctlcilhlllang_extuucpcilhlllang_extuuiddcilhlllang_extvarnishdcilhlllang_extvdagentcilhlllang_extvhostmdcilhlllang_extvirtcilhlllang_extvlockcilhlllang_extvmtoolscilhlllang_extvmwarecilhlllang_extvnstatdcilhlllang_extvpncilhlllang_extw3ccilhlllang_extwatchdogcilhlllang_extwdmdcilhlllang_extwebadmcilhlllang_extwebalizercilhlllang_extwinecilhlllang_extwiresharkcilhlllang_extxencilhlllang_extxguestcilhlllang_extxservercilhlllang_extzabbixcilhlllang_extzarafacilhlllang_extzebracilhlllang_extzonemindercilhlllang_extzosremotecilhlllang_extdisabledpolicy.kernseusersusers_extrabooleans.subs_distcontextscustomizable_typesdbus_contextsdefault_contextsdefault_typefailsafe_contextfilesfile_contextsfile_contexts.binfile_contexts.homedirsfile_contexts.homedirs.binfile_contexts.localfile_contexts.local.binfile_contexts.subsfile_contexts.subs_distmediainitrc_contextlxc_contextsremovable_contextsecuretty_typessepgsql_contextssnapperd_contextssystemd_contextsuserhelper_contextusersguest_urootstaff_usysadm_uunconfined_uuser_uxguest_uvirtual_domain_contextvirtual_image_contextx_contextsloginsdocker.pppolicypolicy.30semanage.read.LOCKsemanage.trans.LOCKsetrans.confseusersselinux-policy-migrate-local-changes@minimum.serviceselinux-policy-migrate-local-changes@.serviceselinux-policy-migrate-local-changes.shminimumbase.lstmodules-base.lstmodules-contrib.lstnonbasemodules.lst/etc/selinux//etc/selinux/minimum//etc/selinux/minimum/active//etc/selinux/minimum/active/modules//etc/selinux/minimum/active/modules/100//etc/selinux/minimum/active/modules/100/abrt//etc/selinux/minimum/active/modules/100/accountsd//etc/selinux/minimum/active/modules/100/acct//etc/selinux/minimum/active/modules/100/afs//etc/selinux/minimum/active/modules/100/aiccu//etc/selinux/minimum/active/modules/100/aide//etc/selinux/minimum/active/modules/100/ajaxterm//etc/selinux/minimum/active/modules/100/alsa//etc/selinux/minimum/active/modules/100/amanda//etc/selinux/minimum/active/modules/100/amtu//etc/selinux/minimum/active/modules/100/anaconda//etc/selinux/minimum/active/modules/100/antivirus//etc/selinux/minimum/active/modules/100/apache//etc/selinux/minimum/active/modules/100/apcupsd//etc/selinux/minimum/active/modules/100/apm//etc/selinux/minimum/active/modules/100/application//etc/selinux/minimum/active/modules/100/arpwatch//etc/selinux/minimum/active/modules/100/asterisk//etc/selinux/minimum/active/modules/100/auditadm//etc/selinux/minimum/active/modules/100/authconfig//etc/selinux/minimum/active/modules/100/authlogin//etc/selinux/minimum/active/modules/100/automount//etc/selinux/minimum/active/modules/100/avahi//etc/selinux/minimum/active/modules/100/awstats//etc/selinux/minimum/active/modules/100/bacula//etc/selinux/minimum/active/modules/100/base//etc/selinux/minimum/active/modules/100/bcfg2//etc/selinux/minimum/active/modules/100/bind//etc/selinux/minimum/active/modules/100/bitlbee//etc/selinux/minimum/active/modules/100/blkmapd//etc/selinux/minimum/active/modules/100/blueman//etc/selinux/minimum/active/modules/100/bluetooth//etc/selinux/minimum/active/modules/100/boinc//etc/selinux/minimum/active/modules/100/bootloader//etc/selinux/minimum/active/modules/100/brctl//etc/selinux/minimum/active/modules/100/brltty//etc/selinux/minimum/active/modules/100/bugzilla//etc/selinux/minimum/active/modules/100/bumblebee//etc/selinux/minimum/active/modules/100/cachefilesd//etc/selinux/minimum/active/modules/100/calamaris//etc/selinux/minimum/active/modules/100/callweaver//etc/selinux/minimum/active/modules/100/canna//etc/selinux/minimum/active/modules/100/ccs//etc/selinux/minimum/active/modules/100/cdrecord//etc/selinux/minimum/active/modules/100/certmaster//etc/selinux/minimum/active/modules/100/certmonger//etc/selinux/minimum/active/modules/100/certwatch//etc/selinux/minimum/active/modules/100/cfengine//etc/selinux/minimum/active/modules/100/cgdcbxd//etc/selinux/minimum/active/modules/100/cgroup//etc/selinux/minimum/active/modules/100/chrome//etc/selinux/minimum/active/modules/100/chronyd//etc/selinux/minimum/active/modules/100/cinder//etc/selinux/minimum/active/modules/100/cipe//etc/selinux/minimum/active/modules/100/clock//etc/selinux/minimum/active/modules/100/clogd//etc/selinux/minimum/active/modules/100/cloudform//etc/selinux/minimum/active/modules/100/cmirrord//etc/selinux/minimum/active/modules/100/cobbler//etc/selinux/minimum/active/modules/100/cockpit//etc/selinux/minimum/active/modules/100/collectd//etc/selinux/minimum/active/modules/100/colord//etc/selinux/minimum/active/modules/100/comsat//etc/selinux/minimum/active/modules/100/condor//etc/selinux/minimum/active/modules/100/conman//etc/selinux/minimum/active/modules/100/consolekit//etc/selinux/minimum/active/modules/100/couchdb//etc/selinux/minimum/active/modules/100/courier//etc/selinux/minimum/active/modules/100/cpucontrol//etc/selinux/minimum/active/modules/100/cpufreqselector//etc/selinux/minimum/active/modules/100/cpuplug//etc/selinux/minimum/active/modules/100/cron//etc/selinux/minimum/active/modules/100/ctdb//etc/selinux/minimum/active/modules/100/cups//etc/selinux/minimum/active/modules/100/cvs//etc/selinux/minimum/active/modules/100/cyphesis//etc/selinux/minimum/active/modules/100/cyrus//etc/selinux/minimum/active/modules/100/daemontools//etc/selinux/minimum/active/modules/100/dbadm//etc/selinux/minimum/active/modules/100/dbskk//etc/selinux/minimum/active/modules/100/dbus//etc/selinux/minimum/active/modules/100/dcc//etc/selinux/minimum/active/modules/100/ddclient//etc/selinux/minimum/active/modules/100/denyhosts//etc/selinux/minimum/active/modules/100/devicekit//etc/selinux/minimum/active/modules/100/dhcp//etc/selinux/minimum/active/modules/100/dictd//etc/selinux/minimum/active/modules/100/dirsrv-admin//etc/selinux/minimum/active/modules/100/dirsrv//etc/selinux/minimum/active/modules/100/dmesg//etc/selinux/minimum/active/modules/100/dmidecode//etc/selinux/minimum/active/modules/100/dnsmasq//etc/selinux/minimum/active/modules/100/dnssec//etc/selinux/minimum/active/modules/100/docker//etc/selinux/minimum/active/modules/100/dovecot//etc/selinux/minimum/active/modules/100/drbd//etc/selinux/minimum/active/modules/100/dspam//etc/selinux/minimum/active/modules/100/entropyd//etc/selinux/minimum/active/modules/100/exim//etc/selinux/minimum/active/modules/100/fail2ban//etc/selinux/minimum/active/modules/100/fcoe//etc/selinux/minimum/active/modules/100/fetchmail//etc/selinux/minimum/active/modules/100/finger//etc/selinux/minimum/active/modules/100/firewalld//etc/selinux/minimum/active/modules/100/firewallgui//etc/selinux/minimum/active/modules/100/firstboot//etc/selinux/minimum/active/modules/100/fprintd//etc/selinux/minimum/active/modules/100/freeipmi//etc/selinux/minimum/active/modules/100/freqset//etc/selinux/minimum/active/modules/100/fstools//etc/selinux/minimum/active/modules/100/ftp//etc/selinux/minimum/active/modules/100/games//etc/selinux/minimum/active/modules/100/gdomap//etc/selinux/minimum/active/modules/100/gear//etc/selinux/minimum/active/modules/100/geoclue//etc/selinux/minimum/active/modules/100/getty//etc/selinux/minimum/active/modules/100/git//etc/selinux/minimum/active/modules/100/gitosis//etc/selinux/minimum/active/modules/100/glance//etc/selinux/minimum/active/modules/100/glusterd//etc/selinux/minimum/active/modules/100/gnome//etc/selinux/minimum/active/modules/100/gpg//etc/selinux/minimum/active/modules/100/gpm//etc/selinux/minimum/active/modules/100/gpsd//etc/selinux/minimum/active/modules/100/gssproxy//etc/selinux/minimum/active/modules/100/guest//etc/selinux/minimum/active/modules/100/hddtemp//etc/selinux/minimum/active/modules/100/hostname//etc/selinux/minimum/active/modules/100/hsqldb//etc/selinux/minimum/active/modules/100/hwloc//etc/selinux/minimum/active/modules/100/hypervkvp//etc/selinux/minimum/active/modules/100/icecast//etc/selinux/minimum/active/modules/100/inetd//etc/selinux/minimum/active/modules/100/init//etc/selinux/minimum/active/modules/100/inn//etc/selinux/minimum/active/modules/100/iodine//etc/selinux/minimum/active/modules/100/iotop//etc/selinux/minimum/active/modules/100/ipa//etc/selinux/minimum/active/modules/100/ipmievd//etc/selinux/minimum/active/modules/100/ipsec//etc/selinux/minimum/active/modules/100/iptables//etc/selinux/minimum/active/modules/100/irc//etc/selinux/minimum/active/modules/100/irqbalance//etc/selinux/minimum/active/modules/100/iscsi//etc/selinux/minimum/active/modules/100/isns//etc/selinux/minimum/active/modules/100/jabber//etc/selinux/minimum/active/modules/100/jetty//etc/selinux/minimum/active/modules/100/jockey//etc/selinux/minimum/active/modules/100/journalctl//etc/selinux/minimum/active/modules/100/kdump//etc/selinux/minimum/active/modules/100/kdumpgui//etc/selinux/minimum/active/modules/100/keepalived//etc/selinux/minimum/active/modules/100/kerberos//etc/selinux/minimum/active/modules/100/keyboardd//etc/selinux/minimum/active/modules/100/keystone//etc/selinux/minimum/active/modules/100/kismet//etc/selinux/minimum/active/modules/100/kmscon//etc/selinux/minimum/active/modules/100/ksmtuned//etc/selinux/minimum/active/modules/100/ktalk//etc/selinux/minimum/active/modules/100/l2tp//etc/selinux/minimum/active/modules/100/ldap//etc/selinux/minimum/active/modules/100/libraries//etc/selinux/minimum/active/modules/100/likewise//etc/selinux/minimum/active/modules/100/linuxptp//etc/selinux/minimum/active/modules/100/lircd//etc/selinux/minimum/active/modules/100/livecd//etc/selinux/minimum/active/modules/100/lldpad//etc/selinux/minimum/active/modules/100/loadkeys//etc/selinux/minimum/active/modules/100/locallogin//etc/selinux/minimum/active/modules/100/lockdev//etc/selinux/minimum/active/modules/100/logadm//etc/selinux/minimum/active/modules/100/logging//etc/selinux/minimum/active/modules/100/logrotate//etc/selinux/minimum/active/modules/100/logwatch//etc/selinux/minimum/active/modules/100/lpd//etc/selinux/minimum/active/modules/100/lsm//etc/selinux/minimum/active/modules/100/lttng-tools//etc/selinux/minimum/active/modules/100/lvm//etc/selinux/minimum/active/modules/100/mailman//etc/selinux/minimum/active/modules/100/mailscanner//etc/selinux/minimum/active/modules/100/man2html//etc/selinux/minimum/active/modules/100/mandb//etc/selinux/minimum/active/modules/100/mcelog//etc/selinux/minimum/active/modules/100/mediawiki//etc/selinux/minimum/active/modules/100/memcached//etc/selinux/minimum/active/modules/100/milter//etc/selinux/minimum/active/modules/100/minidlna//etc/selinux/minimum/active/modules/100/minissdpd//etc/selinux/minimum/active/modules/100/mip6d//etc/selinux/minimum/active/modules/100/mirrormanager//etc/selinux/minimum/active/modules/100/miscfiles//etc/selinux/minimum/active/modules/100/mock//etc/selinux/minimum/active/modules/100/modemmanager//etc/selinux/minimum/active/modules/100/modutils//etc/selinux/minimum/active/modules/100/mojomojo//etc/selinux/minimum/active/modules/100/mon_statd//etc/selinux/minimum/active/modules/100/mongodb//etc/selinux/minimum/active/modules/100/motion//etc/selinux/minimum/active/modules/100/mount//etc/selinux/minimum/active/modules/100/mozilla//etc/selinux/minimum/active/modules/100/mpd//etc/selinux/minimum/active/modules/100/mplayer//etc/selinux/minimum/active/modules/100/mrtg//etc/selinux/minimum/active/modules/100/mta//etc/selinux/minimum/active/modules/100/munin//etc/selinux/minimum/active/modules/100/mysql//etc/selinux/minimum/active/modules/100/mythtv//etc/selinux/minimum/active/modules/100/nagios//etc/selinux/minimum/active/modules/100/namespace//etc/selinux/minimum/active/modules/100/ncftool//etc/selinux/minimum/active/modules/100/netlabel//etc/selinux/minimum/active/modules/100/netutils//etc/selinux/minimum/active/modules/100/networkmanager//etc/selinux/minimum/active/modules/100/ninfod//etc/selinux/minimum/active/modules/100/nis//etc/selinux/minimum/active/modules/100/nova//etc/selinux/minimum/active/modules/100/nscd//etc/selinux/minimum/active/modules/100/nsd//etc/selinux/minimum/active/modules/100/nslcd//etc/selinux/minimum/active/modules/100/ntop//etc/selinux/minimum/active/modules/100/ntp//etc/selinux/minimum/active/modules/100/numad//etc/selinux/minimum/active/modules/100/nut//etc/selinux/minimum/active/modules/100/nx//etc/selinux/minimum/active/modules/100/obex//etc/selinux/minimum/active/modules/100/oddjob//etc/selinux/minimum/active/modules/100/openct//etc/selinux/minimum/active/modules/100/opendnssec//etc/selinux/minimum/active/modules/100/openhpid//etc/selinux/minimum/active/modules/100/openshift-origin//etc/selinux/minimum/active/modules/100/openshift//etc/selinux/minimum/active/modules/100/opensm//etc/selinux/minimum/active/modules/100/openvpn//etc/selinux/minimum/active/modules/100/openvswitch//etc/selinux/minimum/active/modules/100/openwsman//etc/selinux/minimum/active/modules/100/oracleasm//etc/selinux/minimum/active/modules/100/osad//etc/selinux/minimum/active/modules/100/pads//etc/selinux/minimum/active/modules/100/passenger//etc/selinux/minimum/active/modules/100/pcmcia//etc/selinux/minimum/active/modules/100/pcp//etc/selinux/minimum/active/modules/100/pcscd//etc/selinux/minimum/active/modules/100/pegasus//etc/selinux/minimum/active/modules/100/pesign//etc/selinux/minimum/active/modules/100/pingd//etc/selinux/minimum/active/modules/100/piranha//etc/selinux/minimum/active/modules/100/pkcs//etc/selinux/minimum/active/modules/100/pki//etc/selinux/minimum/active/modules/100/plymouthd//etc/selinux/minimum/active/modules/100/podsleuth//etc/selinux/minimum/active/modules/100/policykit//etc/selinux/minimum/active/modules/100/polipo//etc/selinux/minimum/active/modules/100/portmap//etc/selinux/minimum/active/modules/100/portreserve//etc/selinux/minimum/active/modules/100/postfix//etc/selinux/minimum/active/modules/100/postgresql//etc/selinux/minimum/active/modules/100/postgrey//etc/selinux/minimum/active/modules/100/ppp//etc/selinux/minimum/active/modules/100/prelink//etc/selinux/minimum/active/modules/100/prelude//etc/selinux/minimum/active/modules/100/privoxy//etc/selinux/minimum/active/modules/100/procmail//etc/selinux/minimum/active/modules/100/prosody//etc/selinux/minimum/active/modules/100/psad//etc/selinux/minimum/active/modules/100/ptchown//etc/selinux/minimum/active/modules/100/publicfile//etc/selinux/minimum/active/modules/100/pulseaudio//etc/selinux/minimum/active/modules/100/puppet//etc/selinux/minimum/active/modules/100/pwauth//etc/selinux/minimum/active/modules/100/qmail//etc/selinux/minimum/active/modules/100/qpid//etc/selinux/minimum/active/modules/100/quantum//etc/selinux/minimum/active/modules/100/quota//etc/selinux/minimum/active/modules/100/rabbitmq//etc/selinux/minimum/active/modules/100/radius//etc/selinux/minimum/active/modules/100/radvd//etc/selinux/minimum/active/modules/100/raid//etc/selinux/minimum/active/modules/100/rasdaemon//etc/selinux/minimum/active/modules/100/rdisc//etc/selinux/minimum/active/modules/100/readahead//etc/selinux/minimum/active/modules/100/realmd//etc/selinux/minimum/active/modules/100/redis//etc/selinux/minimum/active/modules/100/remotelogin//etc/selinux/minimum/active/modules/100/rhcs//etc/selinux/minimum/active/modules/100/rhev//etc/selinux/minimum/active/modules/100/rhgb//etc/selinux/minimum/active/modules/100/rhnsd//etc/selinux/minimum/active/modules/100/rhsmcertd//etc/selinux/minimum/active/modules/100/ricci//etc/selinux/minimum/active/modules/100/rkhunter//etc/selinux/minimum/active/modules/100/rlogin//etc/selinux/minimum/active/modules/100/rngd//etc/selinux/minimum/active/modules/100/roundup//etc/selinux/minimum/active/modules/100/rpc//etc/selinux/minimum/active/modules/100/rpcbind//etc/selinux/minimum/active/modules/100/rpm//etc/selinux/minimum/active/modules/100/rshd//etc/selinux/minimum/active/modules/100/rssh//etc/selinux/minimum/active/modules/100/rsync//etc/selinux/minimum/active/modules/100/rtas//etc/selinux/minimum/active/modules/100/rtkit//etc/selinux/minimum/active/modules/100/rwho//etc/selinux/minimum/active/modules/100/samba//etc/selinux/minimum/active/modules/100/sambagui//etc/selinux/minimum/active/modules/100/sandboxX//etc/selinux/minimum/active/modules/100/sanlock//etc/selinux/minimum/active/modules/100/sasl//etc/selinux/minimum/active/modules/100/sbd//etc/selinux/minimum/active/modules/100/sblim//etc/selinux/minimum/active/modules/100/screen//etc/selinux/minimum/active/modules/100/secadm//etc/selinux/minimum/active/modules/100/sectoolm//etc/selinux/minimum/active/modules/100/selinuxutil//etc/selinux/minimum/active/modules/100/sendmail//etc/selinux/minimum/active/modules/100/sensord//etc/selinux/minimum/active/modules/100/setrans//etc/selinux/minimum/active/modules/100/setroubleshoot//etc/selinux/minimum/active/modules/100/seunshare//etc/selinux/minimum/active/modules/100/sge//etc/selinux/minimum/active/modules/100/shorewall//etc/selinux/minimum/active/modules/100/slocate//etc/selinux/minimum/active/modules/100/slpd//etc/selinux/minimum/active/modules/100/smartmon//etc/selinux/minimum/active/modules/100/smokeping//etc/selinux/minimum/active/modules/100/smoltclient//etc/selinux/minimum/active/modules/100/smsd//etc/selinux/minimum/active/modules/100/snapper//etc/selinux/minimum/active/modules/100/snmp//etc/selinux/minimum/active/modules/100/snort//etc/selinux/minimum/active/modules/100/sosreport//etc/selinux/minimum/active/modules/100/soundserver//etc/selinux/minimum/active/modules/100/spamassassin//etc/selinux/minimum/active/modules/100/speech-dispatcher//etc/selinux/minimum/active/modules/100/squid//etc/selinux/minimum/active/modules/100/ssh//etc/selinux/minimum/active/modules/100/sssd//etc/selinux/minimum/active/modules/100/staff//etc/selinux/minimum/active/modules/100/stapserver//etc/selinux/minimum/active/modules/100/stunnel//etc/selinux/minimum/active/modules/100/su//etc/selinux/minimum/active/modules/100/sudo//etc/selinux/minimum/active/modules/100/svnserve//etc/selinux/minimum/active/modules/100/swift//etc/selinux/minimum/active/modules/100/sysadm//etc/selinux/minimum/active/modules/100/sysadm_secadm//etc/selinux/minimum/active/modules/100/sysnetwork//etc/selinux/minimum/active/modules/100/sysstat//etc/selinux/minimum/active/modules/100/systemd//etc/selinux/minimum/active/modules/100/targetd//etc/selinux/minimum/active/modules/100/tcpd//etc/selinux/minimum/active/modules/100/tcsd//etc/selinux/minimum/active/modules/100/telepathy//etc/selinux/minimum/active/modules/100/telnet//etc/selinux/minimum/active/modules/100/tftp//etc/selinux/minimum/active/modules/100/tgtd//etc/selinux/minimum/active/modules/100/thin//etc/selinux/minimum/active/modules/100/thumb//etc/selinux/minimum/active/modules/100/tmpreaper//etc/selinux/minimum/active/modules/100/tomcat//etc/selinux/minimum/active/modules/100/tor//etc/selinux/minimum/active/modules/100/tuned//etc/selinux/minimum/active/modules/100/tvtime//etc/selinux/minimum/active/modules/100/udev//etc/selinux/minimum/active/modules/100/ulogd//etc/selinux/minimum/active/modules/100/uml//etc/selinux/minimum/active/modules/100/unconfined//etc/selinux/minimum/active/modules/100/unconfineduser//etc/selinux/minimum/active/modules/100/unlabelednet//etc/selinux/minimum/active/modules/100/unprivuser//etc/selinux/minimum/active/modules/100/updfstab//etc/selinux/minimum/active/modules/100/usbmodules//etc/selinux/minimum/active/modules/100/usbmuxd//etc/selinux/minimum/active/modules/100/userdomain//etc/selinux/minimum/active/modules/100/userhelper//etc/selinux/minimum/active/modules/100/usermanage//etc/selinux/minimum/active/modules/100/usernetctl//etc/selinux/minimum/active/modules/100/uucp//etc/selinux/minimum/active/modules/100/uuidd//etc/selinux/minimum/active/modules/100/varnishd//etc/selinux/minimum/active/modules/100/vdagent//etc/selinux/minimum/active/modules/100/vhostmd//etc/selinux/minimum/active/modules/100/virt//etc/selinux/minimum/active/modules/100/vlock//etc/selinux/minimum/active/modules/100/vmtools//etc/selinux/minimum/active/modules/100/vmware//etc/selinux/minimum/active/modules/100/vnstatd//etc/selinux/minimum/active/modules/100/vpn//etc/selinux/minimum/active/modules/100/w3c//etc/selinux/minimum/active/modules/100/watchdog//etc/selinux/minimum/active/modules/100/wdmd//etc/selinux/minimum/active/modules/100/webadm//etc/selinux/minimum/active/modules/100/webalizer//etc/selinux/minimum/active/modules/100/wine//etc/selinux/minimum/active/modules/100/wireshark//etc/selinux/minimum/active/modules/100/xen//etc/selinux/minimum/active/modules/100/xguest//etc/selinux/minimum/active/modules/100/xserver//etc/selinux/minimum/active/modules/100/zabbix//etc/selinux/minimum/active/modules/100/zarafa//etc/selinux/minimum/active/modules/100/zebra//etc/selinux/minimum/active/modules/100/zoneminder//etc/selinux/minimum/active/modules/100/zosremote//etc/selinux/minimum/contexts//etc/selinux/minimum/contexts/files//etc/selinux/minimum/contexts/users//etc/selinux/minimum/modules/active/modules//etc/selinux/minimum/policy//usr/lib/systemd/system/basic.target.wants//usr/lib/systemd/system//usr/libexec/selinux//usr/share/selinux//usr/share/selinux/minimum/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches -m64 -mtune=genericdrpmxz2noarch-redhat-linux-gnu   directoryASCII textASCII text, with very long lines (bzip2 compressed data, block size = 500k)ASCII text, with no line terminatorsASCII text (bzip2 compressed data, block size = 500k)exported SGML document, ASCII textemptyHTML document, ASCII textcannot open (No such file or directory)Bourne-Again shell script, ASCII text executableASCII text, with very long lines, with no line terminatorsR?7zXZ !PH6L]"k%_khuev4 ãFNp5oH._,xz2p}DQVLq-a~A8imKhg^0#Z$<' P4h˶e/#x/STۚank@,i7nDĽb(X7;-;;X0^a ŧrT!yUp!?< wS-t *ket:f-.-?!?_xeU\Ǜ5hxp%63W1 nY#1Zi7s QZWb);\zl r]3>q#Y_ J75r^xX0yFS)A~hb\M&66KQlExb-"B `x:XAO|OnP٠3O#"on#wd}˾8=ۻ ҰM!_.~t2+Ylnby0τ|k63m/yYf^PnkeAIW.  ,^*-\J6 0/,; I4+i1.蓱)b yI2f PA3goRzvi~;#0+/֎޷-ŔT7^KAiAYI̥MJ=:I[_mQҷ̎DIkDsKML-e^zֻ^A+qU / :>NX52Q9x3!Ԛ'׊̿>*GF.XpkX9`.9v٢cS.R&o)F$.B;a=JqbTZO w9In jV!- # j'AEӟM~Ki1xn=o`4/$OxWфvt hURƅ-+! t'0siUk?ܳ6F&KJ:WCK-mQfzе;F.k nvB`?p1o >YO5~ʭ4~f|yU\dnl:uI{P@o;fz ޜ8h& +2uGg4wqpxf KLKؙ-앜k{vs0$2J-Wzd v Ov>d9E2>}yUlz:xHp}=)MbBST7s% kYA'Q<"΋iO;Dy)Y<-m$8kD}k(p D(㋂bĒG7rIҊa^Xf#=|5%R `yb o5?NA_[U ]#B69-"(ݖ?kXuN oTR"e`3@uPܮ9z8(QvvEy1e.ʲ(^ﺵG$233`KYu9v9tpLJ Nu"~9G> ~1m y}eϒn"-Y^ h~XClj?fV0L^ gԦ]zj)=$9CX=;xtJҹcP/GRP|#l]m䚴dhЉaj[zp1LӾpdjZc.0-m2}D,G:Ve0Q pzӲ]=nVg GJcw`QG3h)fr'[)Cv*(M-,?d v%z3)% V7c^Ci>?qu).)@)Jy۷MǓO߻tmAwF7 7GEzɎōqoGlۆtO[AyEgZFRq]6זV $-Rv`_$\?zj$su d2pH|rT|L-ϬCsPD4xNMS+1_.)1qxdrj7i\Y9-IYX!1jZmrOvᶏc&αclT=/Q)ذZOq? fmc^0kP+ UJbZ>' i(` 6ĬJk+oP2}1Q|9-7o5yãԋU|MQ:NȬ=.iKNW(FۋY^Xgmdy@ ץRklw@;l7+{ 蘦j9}z vNcMϝN"fX'Js^ȧv輱mY|k挌la~D%HipʹX.޸pV(Tu+%VV%#*6<3GM) /tj8Dj=GQz2V<ށ2 dIh'R*KNtC6FAQ{ \ddZԺT)+maG=œp0Kw Uw ]L(`AoҰԇ&&wdUT+i}r5>.P2x=E$?Wqc\y|] jb'A2ipNI 6ƒdQU<}ИPiWJ>Jސ+=ۖ cT`~MW=Z\?c7?f6Wx # Q[/-ۉ&zakX]aQ(T]C-6i-u{ m:QzZjd³4qVӦ$9XD'Qi ψ[UgEU#K"b2Dh `q6*o 6)OOyQ1hP'1tЊ^俞eV;d=/;cJƒ'w _w"qvd}E~BU,kFU?씜d?RfSr67Y'([]y-upJ ȡ0~xUM؃jH9Mx1ǁeheb `c;5}ZiNć$-)7?x H?O}ѪAm*Zund}1[Lziߩ换G׀ V2f 8{"7IIӼg40%~6zjM&.Dz#1F3˓Uy*#k(;7 cN K l4ur P\ 9UnRu"P7:bjf`vR L=IՒn#`ݤʷMj9RA^4 {ߌ)>*s9T6PV2Ue` !w* B ܬT 愊80Ễ e5Ե1eQ3.>7q#@R)!jCG0l?E`39.HypjQ/&%'`TD04fymU?oz|X5ú=k۪eK\-`^oJ{!~'RʄN=H#x2-.Nن1[ҩu`V4'@O'  y,EI."xGע:#(s` ? ;/z_Jvagi8m䱽2lX}.ϡ_~֐^({ R#K۫ o^(v>efd7ݴ{%{[P<*8jJݤFpG`KWRPU_ }h lHAϩ˫$o4L/s.Nh{o+tu7BGfGx+u`؆H65W)*aBkA.P3.` K1C#%jW-0xhrXO"p+n{OK"3~yrnh;Ep &O@-P_HN&4>'<& "}YV$& BK΍%ԇ#Pr%NJwJ) ! {uO _s*o?zb}7&z[ k埃 8O[*TC1A[/ٚa˩rymtkIߔT1(nK7i:J m-qO5{QsC@k.վ^QMڡ`~/ rLyTHa/WBo/RJ˻Qe%7'<$r蔯RU4p/^B;8Va2tGM#Gqgy}f^EWGWWa:]56Yx~[mY+>c7P/pұn$˂2mP)eҝ^o܂Ѳj窞@f7=aހd|[b I犉2^Nls ate5jj4MO,1bAO[ :1n7 áD=8B3ůXlR { z_(!h ,#Yh5*;7õg7nrS3v^an>YEuIb4Z(။ZB,A0b=/U%-01:ߋcPTЍ|RHߜԉD@=FliPZ$qbv'̅+ȲW6xl``rd(M3:+OzsH7IM"QǧtӶ45d9X;*q/&?!PXSc&- kХg4@"**|9F٠fgb`_ 1e:jx(4|E[{>`GarFdTD]Cd"{e%9mP$a -j.V:X i#rmL)XEаŵ99=(%`iAPfMY%!ReP,5G.Vu{MÆXoWv &\}u>a+ɾcFMICb=o4&8jta5qC& . L"}1j΀, 5- TG| }QNMC!3%˽lGP}QA= D k^Blv`ؖ7"(PglCR DF!y.C#"IV;bV,xn`c$dDZ;WpZ~aF '(<5ሖ8L=v ˲Y!dvsLٶH+В}_c ƴB\^볠֊RM7P!|݀]|\: 罈呗 >bjn~鬙 V;@v_, Oa5*߸RuН 3ު[ /tW2 v +x#~3+K41J@K&R-0‡i{;C~0!<_)ޠ Ȗt *j ɏMkR^Pc Cak X*q].Vr-W:¸$7+EK,:MGo_4e겊}|:.@>ByРk-Wl"= ڢ->SH^Q2s 7֓i#c˿itProX}ѩePډ,}w*O6 w$zw;nڈz{e*uWFd &=R>cTu57N1x/恴 Ѿ乊M}436ΪLģ.s'kV 0^sޟ(z 0*1i P-d:Ks`߬&RƔ܀!!d>`PPF<`co#T,(d\XEݓ$gʜ>hrYI= Wͣ&{|]p_ ~JDAq emTBТz5@h=LьڮrI'!MtgF836\)IkHX E5-ZUB j?#}1#5" {o#mHv,-l.=2>cz-9KaD}1exzЯh8_-Bٜ8CIW1C)-:;8 q)K5d^#BNPa6/St/<:uYqp; ԹT?JM&__jԚbRM+ޱ1u#|Iǜ$w5;$1,n켄HOg,-q^Atmcs/5-|TDW앤LL|w CMߪD/e$ "OD~)*kS瑖9B+ /%JQVԚa~A[jUxIh60k`ASfa*1о#tbK[VZ >X =b>Yz|%b*VXyUFF`?JHP,s1Ro>a6OF4>]ߦ/5S\m>xf.++tE(Wr LLݝ@m0?pw]w` p~iC>Q.@A0\0o 2atD9UNUﵫ9Tp Ӽ43(ec0n3_^I9RUXC9CgGTBbf'FW^I#BZ8W(.0d_'dy!gau֩eFu3&\LufY}V22݄@|ˀ7NPV=if:KM dpS'CLc= "U,vtN&{K>6gK>[ ƕ5'7 H71=sMY*ר8ǧqvfcl #`9Un/@n?-{vO70n0TXSamap> J@SpZ,o1r7n! `qShD)ҕ4pKola"S@6wWXƵZ;tFJdxx YHv|(ڋY֎`ʗO*8payWf6Y!|M a$iEEҞq3۷لV eɱmWA҂oǪD=lA2Cՙg flOL{J96ݭ7Bd E,zޞ,+`4sY:k#_yE;b'H][r)&B~f.7tr1wG嶂_^H:&*Ѕ\(hjZq%\܎~R^Nm.C}5}甚40+>0WIrMY1#?uκqGOv2CewS Ӄ([ vG/Ȳq P6>1Qe!IJ^dQ3Ǟq!cc@{=D5H)5L]ߐFKK7OE$lגjT[dQ|~Q!I0jcr%g&DJ3 Gf-._;U6)4VuڍtiNHAZKf%!荥s[* [H&TrFΗN"g0x>5VtU m܀-MQQ,ǫj>^s_|ƺ૕KŗĐ>2]E#$w>/Er+ ƧBo"gv>~)J} q3*kDeB8@^ueHJO' !x74F(u4'mYuӈu ]L"x~(<ֳIb ` nAΔVA7vQ4`Y#i9؈5`Zh0ӟk}|{Lʛ% Ni)U7 ԓ47'Hl2ŋh{ dCUɬ#|<&xD#Tug]J.CwW%B̜AmPywғJ hoF!n8kq\5bj5✙--/޻1i5l7 !]C5bG(^gY+ nRU}p D1pq ro]EW@1gle]Ðty\LKVD_R^ɌH(WqӣwdKc#Fw"ܵw8\%nr}onK!5Eb3 }Pk,py _HjL7g2y(Ji X)x| x$cEd5JGy6}^V܊3C(>ʓoc fq:xx!f?0Z^ 8*'Wz rzt,Z%PTNfT6C>ssF'Pmu<}s+Vᵷr";s0mѲmR}:wήXa%l)h8Nv"՟MI*ZPbvm>{vD';iͅ#E> b3MwSd% R'n@Jg&!Vܩ< :IOμq?{k y8 9A>`Sj\uPVdgʊs]vNc˚RSxTa^I> &xMNxx&3gI>R0wG J[艃SO?mۦ:cl-[D%s.#\:oe;)י T "z8X2,es).FAb*[6DI>p)sӵftW: dKo2],GZlԄ!AJ)6>&<՟cma!_1{-J?mžN݂2˱tdK~AZQ ̯zxӔ_K1𢱢PlG?-, d6!.H[ɢ\Iu?]^ywfQmr}ӆ:t%. Rpw W΍` CW~m $'6댪 IL6{YyQ8PR8X 4Z! ^=SŪ-ށ&aI"B Ѭ@*;i6:$~#7F<>Cf P<1U$Axpr1Jү Vll.0?$aU-npP?es73(NCzFF70GX' - )\}fwɣC°x?Ĺsnks(]ήoBJ8HR8pK]vwy ȧv<$; dk@˄YىE}leewXg @y&"`DK'i1g1 YIf~QاQl0dq vPʱĬ 鿆w嫴kƾe#8 ]ߵȊ?rQ4Hfl2DyxM )EZu ׋v f̏JyݓߘCxͩ@OAz)a{P#KK=M_~ {qMZ̡&"x{ By>@#/ O߁՟S6a^ /3_" =u 2=(9j.s>xx@Vv7Aj Us^%4ex[UԂ:3r8I? 36~e=t&4 =֏̚D0/|B+v`"w.7Q ɪRLN~_}Y+Y݅:'A,a!&כ'zq%eJ#F߹ϭիK{AA0Noia|/ЍY]0M6c<Ѯ"զ b23' fn0˧+W}Iؤ{>("&+\_{!vmbDJ2DiNO,5e7)=8$NJX_\[Ϡw\`6mQMQWxv'Q7F!Z-T99)xQU.N1 A1:êw|8Pmֽ]Br+xNee1 'Ze0[%uB3e!=(Yl<N{e!ٔe^TV,l/Zaʊ!QXvv(xi`0{0+M{AodFp1)`/QM^ɏunْb[v] e%Ѥ mJdq7[JfuyGʳvh?[ҏI<W@^}\v:R {iws"}A\Z3> "'$3aF/K7Uu&}mCQvTg]GjC7#+Ϛ􉰂7aq&p緅W.@VmaCG3%m)6^>] CymbiC&aD?F$_BD׻P&cy\}YI dm\Ew(@#@Sgz~_jA#ŗXuPO/St[@V8‰[8Y&Śۦ ȠGdId6ݼtF%jPb!IW緶 ڊ@xπY)u*roAԖKd'F_iA>^zr.vRLB)%ɑ -(\|yc)Fũ;C{~>%QL}IZ!i$Ȅ`jRd-F̆Y1 #TBWx;j(-H:*їW\py ߗ 믦YI%@3 V uY%254njkUR9fA%2C;kl_ƄW`^)DNYp/ɚP, ŀUYN{^ݖU6MUp斷I%0_K tʄoꃨ1{9]Ho60N # 2C= _߇_CU7(|G:ʄ_7&No7 >I_ՕfֳsAd-6JR,*1! 6'X~P߰NNoK4搱uhap$+1M;h7&(5ybznK<Õg)V"IK^?K!㐶Pd=8e]9Öy-3"!K9#7+7 =hCw-!fl|U zm8,p s$B.mG_7Hro򜑒6q?P`{f ZFwnMnU毀UNiw7-YGFM6lgw>9!<]?x2?TGRaGoS'IiPh`cGvF\OjUo`MYxXLb!|"<'TYuMS{~jk qM_4*fVx u@Mw9AP_r2b s (+04E[Fzn Y=x;~+6 [ig+ AehzjEUɽP UU.w'Ide>'W(rn c98H/6K] Y—|"@T_{~.XE}LȠx^!?Sr} k[K rP6@Rb1Bų't::3 Kb{#=ۓ'e&ſM"fƎp$vY&^LZ`O'kɢ8s=9` o"BB*{,g%a:oҊ6:|SUyN=pl3Ы-_AF7Nh5䯖xCz>1폇E=\t&NlVF:=ָ`\KubhS,`T^4NeDh `ƿx -ۈXƟGPt)XԒI7Vg3C·; 0xɗrP6cY"O(:+A4\u`ט-%Yvc |qub;u*-Y{_Hٵ>y ' G!+q!!t;;pB[]HjD_⧎`R 3Biŭ䵻*{ QO2n/O/"+@Ñ2sLQ*zDS]Wav]74iO_9IiZJʉr Is:-Օ hFM~V.CA3㽝Ιe7g7>L! ߮*N=BY?B ٿ*쑪X n:_ئDn^9 뎽/ׁF0a"24sk‹$ucyHMfFHd𲐛qz7~~m0O?9pp{5|_QWd.\%3^yĢoI;$gܺuV~]:)`?3i5D$/z'AC+]9\ &))9M/!vd[; KU74%PZ\=tv)%|IAͼlh[P\F 98^zn2Qzp)ͶhC3' O.0Q@'sԒ`vM$dpgdv9q]--UMwt~ yd,_D_*4@,p''L̴Qp>k]R~%]K3|\-1>gZ3ݓI4zar#ZjSUaGNo{>t{{|ryL\4Y aȦނ;0XBh=~o:{#46+Z.{nܪt$DO޶dtd=+ I?$92Y_l׮paYcayוfL! 3h:&u}^en`w" ΎWک5h#wRda⃫VX?Ġv6gQ}Hm!s)*)|HЁ|$ 5} J[=ӌgO,yѴQj_Uqjn}NHT :Ս"mEWܣi_Zc$BC'rE71 Mk0B8) #,-O([7qaT>sf2JI}]?ܘ!r;L$Yn,O}MʛTQHi xL+WT6F#hU'^|K}e]gAV[_p9=ZPd|H+XrTB/a`68IuqfVn}jžO1K]cpE $z-GG]MwyXaN4`yF љ`Iٱg}?Ojz^dctCvd(~{I>xh>8xFYCطFc6d=H3!F֊F;zZtZ>IBcq[{@ mxwҝX0]BDb &+gI9RGwׂYu>5(U[.0ka^6;,A|mn5{؞DCH}y2Ryݿ= g#8 HD?}'do09or>zz6aڋ yF~ ̯wZSк#*Fo­X.׊|p,P4j)jywwøwLVq?F:UR(O)pVّ6#docnSة/ύ-ŝ.FޖڛYN˫C띬Nt7CT^h~5y?wކ{ 5=oe`"q1rMao,C.b,LNQ @/N $5l}87JiV֩8$r$:Zf9 ,VWߩiH+; oK0[e1rHo:=E"{i.m6=3/Ot[R ?4TC\l5&xf'kh\sWg3St%SlPQ(WφBIDCj"5g#ToS Ykpk0[vSkX#RJJaHy+4 c(z҆L#@hNY` 9@K,) Ia0AP*2*R2kn]b|KUJ$fc(f~vQwA,iԺ?kTNDf; f_0<}B ^ʯ[<2pkOd(><)ZbU~ p5נU'?A?"-w4: E':v̩EƇ\>u٪Eyo;d޽(zvX brM}1~Fq%z"@g\9r?g-!% KMQD$[nfHEls|Re iWBwM"L8o&Tw}EO%eў9o_ d}ҙ";|%z43w3K k~6i"kzu󂻳~%4MM(hP6a|LH aǢn2{RX cp.i8Hjߗ'.a,${Y҇\ ǖ`Qvf4SQb) l$ ԩqۈq'=EZfmz jvطKrXM*t7rL<6k'>^NٲBZ~1 5q}{yQ3u&O_2[qq߻)F8cpq^J˭|J*xUfH7ysPy[{`Utt-=O:J>ƼFĐO 8 g{LҵC9⚭hv@vQ r>ރ7ړQq En$yi~>ѿ-2IS&b_ Vau /?v<)pz4}sqg  &@{D7EY('gL"SBs;p;EH F,-5]L㭓yM8ChS^X֘3 b(-IVgAd쫈HȘ7fr; S(24GagF&Q3_)#fx*`IjxPJ%?T_"նt6ӄr6\0s.%.wO^se} $O^$?VG Z4$C *Pͫ$ke(-AQ~6PTdG|U4yRrSfݪvMmeYwNÍ>/Oa Fl^`\XzD)S)iǪˣ>FYAþh6=sK_ٷ$G~/i"C*RU= I3b/j¢'*19,w<==R6/u ' 6H%-t|KRo_J׽N~Zz㲻|*OD% nFDWMṫP,.<>m;298ME0m!Zi@"0gyiUnW+ lLAl'ӰK7A)s_#O;쎕9]ihY;x6"v9ʯ;'-XeP1_u("fͭ&nB)Z|`f\xt :K'/HiFII,Vwz, g#xr,Et򽎧GkXkfg<=z@dKPm*P\'EV)>\=CkmSJ!]r $.䡭{!Β(Vdn#B' Se.%"+n{%T?L-b7 ?z䡄'b߁$lpyx4rջ(^2E}:a'Hԥsb[7va5xyֲֆklR#)vg#8%xn9nfoⱨ^R~/e>Sɓۿѕ]KOqk.0 }8t|cZi}،UBI` xX4^ȥ&7v)+sղٛqu⯇ i/ʓ'߅ {5eFC]ɭXSB?msHn]6Qz'?QIi~񇈽 ܩw\jF;i$FmFf̜q;SBv ջGil{`É>SSsgdꮪ\ʴ3We &X)?0|u3̠y "%IY eb~ 9N ,gyGP[#ͦa@ +G =]o( 7'>}9fr!ɞ"Z/X&Z՞e)hLno@ YXUm]K3mKN}Ƈѕ$(:_$LS:ق#|l }!O|g-净MA dT8oiNRבaڊk|תJSx/ wLfcj{NrU(k?g _9_O|0UO'Po]JC7cNCޟTxK<3 Y6*J LсTKT5tq$M&7pE-|ԕU5αE˜ TV} s3)y!LwFA[+9[L[?~ f;U*Y}QTQҵ=jGQP1K'}ZԬ»%%􏠚 Il.d9,_^xQ`5 _8 ?=I%^4qB.'+& BqPg[l+J6,0vcֹZ6A#-}(6 TYp?H,!@ v lyZ{ Ӣlx Ex8jSVz?1~hl\c+. K&r; $l:س`PSIJ^`*NaqlpLմމ1'ŗ8-}HE ?&V&ͯZj!&Bk+:%^4G<*^> ߬P1w3[ )>C)93Ϫilկ{#z(U%um`Y:~$3a]KF$;RT訶-fXuNcNhgE|mO keoCMO8khH 7F"2#?ѻ伕6vqzaI#6 k5 Bٌd%F3UO8m|>~{(Y*^-]j2k٫7zPS@*?0%83<,X)IZ¿y]㷸Z꥖IY4 ƛA:}bė-\#,}g`rNj3w=OQv iޥ O$ͧ+$ƪ8@RO+hKT+َ>A!oS^tX]q1v-(6)$X(F&V 6>!_*Z:o4bO˿%HBTF|$0mbrІPֈ7P.YߚJ^*{S]gص$qQhod>sz+0要v'j8Ve:]( 2$tN_ ~(8{( lKG*]&]E/ﶀ!&A@oe~J(/JںyOoG([okB}?`D / (jW~/SLlUC%Ʃ|Zk9c#f|n(M}'%^G WКC2QcJ q ͫN1fJZbld˟0g~!؁k)Rvg:dwi< .4kPU.!ѥ@m!zZ{7 >Vmj:؛hkM Vѯgرa;ed2 p֣ԡcwIk^vHX4('6,';XBt>yhH'C).$|7BJf`:Jx-,(`3|F>N.xcBDT!!92qeU9<|ZVLGÕ+ﱹq7_@A=?m8Krjy:Yͱ|Q@6K͊Y-UeZTqdJ؅P;Zuu4Wbsm-$9|Fmp6y}Py}J7}2hB롟암=x?G¦ӱI5mQeC(^MvaoLz2,"YrG@<+krޞ9 w;ύs*k/oK}YnWqCLed6 -ЗΝ.i2 wSW9f3y~:)Bh S(A9~JEX}c;u[o;UvLCtx\38DU mfu T*n=\Nƽ%h▴ۡzye}ϧ ~q>9,y=JKN%)zԍAk<ĆY `̩ AvZQ _R+!aô!p}[ڭ+^z+]ū-̺%p1j}gq~*ytdGȺ@0B&^{:%Aji$U:Ԛ_z(]jyx1鿓cz;L.>]=yZ`F ѥg!3CԹm[@J'\VK?Q2 W,,o[4d0{i+a;]S>pUFuwY|]d$QtK2芡+wdFaSODwbv&+ky|c;hp0{hb1w8$y5DbQF^F><'!brȠq_Bޠ{aIoWTiP}ۧ8`}T,3$|Cm҅ udu{RZ[L+nIUǪI؟{/d\tအFNcVG—-זIzL;J:C8AHg<oRo܁GhK)d,VHrŨ vQ%{2ǦX7=g$M1RHk_ס,dƮe1vu_OXyڨםc :rVJ$[ʽ/ '؆3ϤѧBCg4gwwC3EXj.P9_9gk}n2P/Μ,Kq;*p7o7D=1]U 1+ygty-,FMI"~SN4])1Tڔ.Qinry-h1QMy{IɆEJW̙u24`rO3_s܏[W2AٗxxR5}!#5,XmAvXV,t)=д/ J=ݪі\аrQeFÅgbYORRZwCH/ތHC2iO]jYxY _i6p KK_]E _자 m`ֹZ U?qG&!fXy ?+-Qwv_Q>s^4S%%J%ZNk(^-ds gR[[F^_ri8 tW^CH?*qPrl4cp}{"Iy3mifkW@̭;4?L@+[eD|okXxk7xk'5#Xr<d蕪d8JϛKV:ANPSUXQP/Z-JOϘhkz:6?QIǕǓ)_C# pAgK:+͍m,9FdUsHRQCQ2b{oA|@7L.D+ 3 M7EQ yts:;g^#I d;Aeu8p>.i.{ d.1ҮEL|'?:sZ˖6j6EOlű7XVKP_|‚$guYEn7S|`404o`:e05w&`6;Q Wđh?) . ^ȭb6؏Qo:ЦhaÖo<E&Ni>:b@Vacd~$ZH lU+UMf~x"5L~Y5ܖ؃RHE1}psq uhgaCyl@O|z/^Y uV(~gbWV > {LZkMϐzgl`'/H 283Ұۦy7F:бRdU3f8*&c qV\6&s&/&*zW5؄NLXoܖALY.(}dQ:'0Ma.Yڰ|@f|K$aA>1PR%w?qG, fkFpj}pQge 0DUmuf6TPI}C[T艵յ-.T4%- d@7FԆUg/5$% ׅc戌O3]>=RzꓸW[QbYLf+fx8`-2ji壠#I_8xgQ6$RPfxUmځ:R|G8$4I`U."wW`J+ag@j% !o\9/ǾmTe\ثVEg=LˊQ\Ns6mT#JWh~\Z ]R_6F4a[/S쀏7ùDi~]A`KBKO Jv.^Gڅǵ B^@㗸z̑ b}lFhQy]lyKo\Ԅwת+,K4K)<8=^U^%b:+*Laګw>q4O9i}@d+I7iMj [ba\XKX|70`{46ճUH* ,G sVSػ D0< fNwh-ƪ?Ӗ40N_K5v DJOE;n=Ҷ5Q ;h*z9|8[ܯ<\k&n=ЧD!!dp#x.HӀwr4v&wVb, wӄٚ* 1(Sޞ? ,1TN+<و⨸ZR`pIn!-$ K+p;uPyV5C{t8/Hq% f$wў*h.A/`5$/ 2῜SkD׈ m#q-8rlz.0M }e:xgTyœ'Ys:1a4x2ڝ݀<151~Dm򆅪y2mgBZf$5Wm U-ߝ[{]vfעƏ}+6:I|eB'(AE P[V@hL)u saȄl[L|/80O44QVat5xI-!]zUqܲQLI,C`w?Z"~$z: *^_KrdV(SXƪlsVG~;зv뼺 4z|Nѓ(["u4nU /kO{~H_~]uWs2"K.L9:Fޜa}b^"aD9ޝ!O|&2ASLw A<)pfE+$ǒ%`i0toAxFe=$.J '8?2j~^޾\c]^/Y(U'gr&XJT-6)q3|IL-(OPF,x|! T#K)hj8TwWya? Z?c4(N~"ΘәED]|nImb0|n.FV5XTY'|vn2th'A co8F75ccWZ'(P! 14GGtƔ/d9?5p;?.>KsY2Xhsf.XVPxܙcDM̄Y1Ѻp* )ԧ$A}4nFW\5Qi8h_)Q|( g=&,gY`̃}726. 'zV%HG"EkB<7b+@ R65ݑExim;ySc}s gRk|0!>ўdyJY'7BGϡٞM 癏0Xs|D1Q{Ƴ[wJ=tGt2bgr?)$*QǑ p~4MM7PnpYWut* MP( CAEvj? @a֑M}`:j"[UvV;_>Aӊ}Y?R64|{Gd7GwH_ht︪,=6L4;RE_HܳHxH]=5Me`zyۇ)CK $?Mk. !A9(1dj]̋#'xi=]6Xx쵚R3f:!Ϣ4s zapN{}mt  Ƨ1 sj8ց._fj06҆䮪b jm=Ƀ=AM<$^]I ޠF HQ;˂9jKEtu$'vFuu Ϯ&TXh1j4:I So ) ?Ȇה8C$ann`sY2{ZBB(Juz >IH,8i]0~.h~6"?L`둩t: DyxPTH|u mFv t=/QḠ)Џ퉺!jSƩHAu9DeşʯK\F : 3Lfr)ju9_diMA dz`"hCǮڀ_5#E3sx'ef 0/xt!zL*+:s(7" ZJDΚōXu@Uw^Pۃ!vH7ydž`OuWn5(05sˁHHc#hзNTY$=1lsITI"T'L$OL1᥎B\fʻA <^\fu2@Uv?qr=4VD~揿df+-ٱYLnDv7{"7)=GP{zIT9C=~O΁=z|wD#7 j-Ϡ: 4^a;bƝRi]r)u "蝉TW['qDRNxPm#ۥԧcSt~0!Cӎ@?%cyc A 7u-2*>Uv`!Q;n6nM.; fLr(O]Tb́/!ԼԵ`~Ӯ$ (gr$nGFc`򌽃՝?U-ej,P gm^PfeAb&Z]DPX+6],-dre-͊bGrˤ5ģK5LpYdd1ѹW`:=TI^+:)U|'|i =ae:#f?c3g73FoLՒ :j@uk Ù1Ƈx"5}Z8e9cOH# h=! v"2F6t͑\vF)=z;Ub3GI*+^SvpҎ,M#F. k'׿a(i f "=T.4T}LuUԓo/L$ϴ[pl>$ʄ$VF.5;sD:VZ˥,=Y‼k7>`\9Ni5#ڪ0&HyczY-ow W}o:њ.Pr #U2s,j)U 6oRs6aa3 .4۪j4N/k,YEE=,OFN{r2t)3܄Rbm3n-4 eoտe>%-?x͞u ژ D)K%4eIfq(F\qd(.hxCؤ~>&}pD=8׋6Q] {xK Mf,8ᴓ E?.s" ч4]'[:CA4 Kԅy#'3 :OP϶Gf5NK3DŽs@0ֵ^\% Tz^,J]CNFbe<fz[1W=))hs8Y2P?\iJ<[K!ra֭z#ɅŌܻi%3Wa1ip, #,z}.yc,k$y]P<8Lųzfpi*|]%eD5x!^^ڢH>`, ѓDwRL b!#HBe$ew=Ђ?p/pLFNrmu]K#ldƱ9KObx͖0az p!6_xR#~>ػ:A,748Q֩:ێV5&n7v;WZj}8z$'-?t^Ŋ+#hE0Qy5ћTVҏSa|ZOĉCwVR_.p:S/|_tL\~I}77*t{ f}0F>b:Ñ?p &>ədt;bOGnT5*Jl$pS枒;E~Ltў,f<)>GUSXt 19g^Vr-E\X ]aKzd<bc:zvQ8:O&ϗzͭt=9FmoBad%oexn nܰm%RgTIåO2Co|tN+2~6 1\sS MgBp1GDڡ֟ZI6 !lunpsp\R<@IUgK_l<bQmnhʐVZ biEVdbiǧWsx1Xn5Ŧo(!}vB_CS7.#|1D)B}o.ϊ@{-jT]Woto+@Tg /t: XW6rrBnad@Z7F1`Q%$vsO@;PE-ޏ-Q|nfeSpoǚq$t˭2QQΒD-p}Gy%-;}0)%u%e+{W=[1?_½敨Dj 6AHy՟% I趩&6Nٺ*qOx)6RC~Yj@gVT"OkPޕxn;^ӸV* >૘˜eqPR*3'g0c0 PRW% ס`l 0/hٞ 9* #L{a*R={HW}$못H()`ٴLv|^ѹ?3-!`s9>g=;f< "Jq kRYAJT^yp*U`%~1 H^A&M>͟k;X{hFrZ%DvV0q.$VO}_sqf`TE!41 _jrJL~Cҝp٨{8(s?]dYu>u5!>Ȼ蕝{6ݜ oC+W|0OA6ݨ&x=8se՜F,-. +${H)NaUP bs4_Fq~iѠ\[5ji$;7d B 2D# 2&ޢI.(ʶ*N_࿀5lFeu >"7{H4l\;rMxζXYabRe^ 4^އ}!lJ%=ar7d]=Ap;%gRo^*Q,#RЂ[ pg;1+\lTMDcǛ+CGIm|H\NKa^-Ԍ~\Zc?/;ᙯZ}v/{4G_w1`ƹ-qiLNzOwSzS\d3 *Pl瑚j``ʻ֭zVZeW5t z$>aviȂm-K_Ihu|z]L1U[ZRz<9f`92)mtPh?C[K|:eՐKrmP_v(8|/ 9 &:ݓP,+ykNS#Vnh*)yYTbCt"IVgcT$\I;`'/ug8i3%gQ֗؍($Ҏ]L:Q]"d*@nDvS17`J2Rٓѷ(b.kCRDu?4i" 97 i eV讖ą tB( Gi 6¢},.P+)ktD&TlgO%0੥w3kL ġB~saST䰳Jٱ kݎgkb6ո6}UluN̐Z?rgIOar1eGO~K]m!;mv x%)5saW;bDIG *AcgX6eQrԙJQa]$?o"%&ʤ ꭦ g`1DlTtz?Knx+ &S_1$ؖP1]%cTSb A${6iƊk}"01p$ Hʫ~}DYٓtg@#V~Òe0a2 c~A\^FmPx˕.* ֍R*^E Hʻ[Dy0>:X̘{Y<ϑk& qbHEP(0ϕ'Qֺ-\\QxwKeA(=ytS$]Π(bu#捑:-?p}`KX).JAtȎ"﷬q}qb!j?:ιroگӯ. +7:hgLorEv(zOhAؼ4a@K] dh#4j ]ꃲubLUQ1̭=<VsՒeڞ6ta^A"5bF֦H%~774_qs4/mT/< XdD )}gI6\wipޚ xH6<{ےԟM,qk7b"}/9Ɯz5$5KuIĂPfmU8,p:]\\13>w^Ln4ҎѾE(p{.:;FړOyX p ;L;5U2#$aZr}NxL%*I8j3iìQ韘[1 3-LGkԍiVFLg `43'Epֽ<HgA@ hYSO҅=Jz=+^ٰDJn6G NȢm~9|Qrwc,_~ahKϦo|m c*Z\8XUcMjf)GeX&uSą8de5%Vͽ'P wݽ ī+eyTG3kยMoج7Gv;=g=ijzTknW" ţa.v,u(EP5:T:ZyLIz 1u9u266ȴ(d`AH:P坲KN2P>׿UG5"Hz3TYl)=?ñ4}AQ % }QsY7/dه#w F>݋!/8cNDޟ3!-_RIh,@zb 7#"sab8"|NHp=!_˗;kY ]:Q3KfN=Vx8)HXǧĖ)8DnUl0~< нsЮ#4K%/Z8U\#%)5̾U5c|lb ;.IWIRʚΚů~lx>uf-t]KVni^7P+&QFVj<1Em~[8fq J@NXlGґ.JM`6 x9EJ|^D&ϱ 9t9$[L*ly$$Di)|\ñJwo\aG:],g+s䁸AsNI!yg8p'Nz75;rRd˂qo6A)qWÅ2DMj0 V<ʸ+DˤR79A>=5Zl0.ޓbZ 2y0HH/r.wpQ-8?C'ӵۣJ@*J6إOھ@~ŏW}JyMfme%9AYnaɱRTߦ7P-v% 1TnԚްl)h<#lO3*$i|Yr\C78!5|9`j! EzH;HD*nF]we[IQLxS7mUd,WEcrw{oL6gI;Lধ1j^_mw 3AY=ze&87F \XN&X>a؁;#J6 \M[ҴH?IDҬ5SPtZC][qYIӮlDkĭ"zc]5y4\2а_k%b wm0L` R[I530I:]j~ bDC6Ƭ&ʽW링 xExqq=À2n|<`SNR`Wk8Z*aE{~x|AP/JC6MjyZq^@yv=Z|k>h/-zW܊y3 4yo*<"I3&uCד⦸v?AKgԩh=+ӽm$ qN& D ܌M> d(Xܘ{lXJV2Eۀ\ WrT#⻊Ė%.{yuTr!ˆ˾E7\w[4I _jI*Xo@vB|/<-# /0]RF4.pU8jʮ&H3&pa7X^h ;]ND8uv )䏄b7vX:Su'X:\kOLz_9 ut!26Y 4I\vYDg/PUrY$tf0X9YΥB|ì ?SVepoECX/Twb˳]8 mAJ8 TvV|f2\[nif9W*2d~Xo>  nWgvٛY6(QgI6dUqSp~A j4X+QՋ'$R$*tj!-j 9_ ?.:}SkjPJՍ|t6%L;ePDn`\>ʩhE6&oO7§ z-wv~=5-cc)`WMuP8Zג V]c"q?^6۲}YϡdvŷC+/a2HF F8o{ 鮆/+`ot/q?H)T&Eqe}C`i3"0WgU.І!9#R@#L+qՉg_.aAO\O.Jӹ I ~H)kG3H:dӺsޙA]3]v6NXt4sxEP`W9o\(M529TٗFf^!dM?hD㽘CKtUB(aT|T.|j hN,/!uaI04o L\&uȴj“}HaJ( xg 1sBˣpPd vOۃ-Ka kb9 רۭ/}sNp+zZn嬉_e /,w\'tT;K%9]ؑR/;e>)صᳰX*z_4I~~1,pZ0X{fanQ4W:Ǥ*NA[/jG/b|0*<'=Z&xSFĹ/>'wd\Jc_>ab6QRBNXg,=-kMvcP^mɻoEs~B޷{9~z+{)S^o3\>5X]Uy߶:\qucG6fzX~ovoڇ.7Q>Gk.EUFr#zFHqZ Kɭj0?0VP)-dp2mޓ d\]sB\5d4+ѣYN*MR1FK{K ?eg襵B ǵ([A )zL&Y~ջyxԶUٽV.dU%|{v>!jQw>E+\P%d;M%xB.x\B*;A}YN`Y֣q !x /1(j|&$m{BvnbؚWH ("mo3. q: 4edLqږj2=7V݃8?.X[z'S kFHĺ_ \0-R?P LٰU8#z p(R}"`vxwAf0{oqOۼ_$KaƨJilNǃ;nuS矫:ϞP~D`}C}|wT5Ҽ"Nu9k[\0ڜ L2c5%Eg_,E+0s%-~ y׈g q3++9H(ͳޜK!듽æSH7:0:̎sZ||7_su"]M4n¨1CA b}o3 QoS斨vy! mU] AW};g#+JEcKD`R 7Rwp32p~`Á kŀޘY Q@z~?%g+ic< l]PÌDZebj6dom6y+vI8u5\?+tvym2]^/[ySG<^],!hqH\%sw pwnj8P,e@QωH+OY©C7ڑj5qэ|{MaELq̗q0{ہkO?͸N nh3HagۆMbbY-Sr+hoָ:𘁬ttgn[Sf(C]5+qu%)58sW+$O޻LVOAd}nܱQ[ PNJSFtTFwuG(4󟭅 AB7ρ}fF3 śX31C 9(W xY:a .h@DDw41_NToҤs͟:%>+ X!?^YWDoXyK8d,*GK@F>c5( VN9`oE|^Bl! I/_xY~WђB o#|) jʌR5ëmzTlT''ޢlf cLkr\{~*0}V:۷Vb7rRu¶B0欙v[]>F=M-Z\ƞk=M  2 *-҇_Y_ywWSj]z3N( ]vWpp0v0BmZ5rbb P}ikQ`BE`~ 0\qg,i};[$ئv;9[! s=e(#φykA/2j =L)sj3*n\D*"މv,FnU&Iq mqsY@1/Qg _ E|yIu\1K( +IN6^T =(eh*IVxMS; kK.-!̓zYR%?m].3FԭuZCT~0u44leS,]ȚU'JrS8g%kuH1|n>m;X va7V!G? ]gMUҖ`dX-z3Vwâ'ElIWfG''e)<xS,!Qg.n!X qDs'I`tT㊋aa'€hGO>d^#'Xb$.X!I;h#Oy;>f*"H$g"|3/:mύⰼ-h;"H3ՉLdps W8jwLԐ3@9Ui?vi?^ ;>σK;ZO_AUM !w`p-e{+7R(LAȺ9DqheUιΟK: W#+Q6̶!ЌG]yRiyEͶ9V\j4Am>lXQ̾\PRe{nOa6o7γ;Q'MdܟՉP}*i9Ɓ$Bwm\sEԒ^Zab%-jquEu\89VM K SAO/`0RϐxMlJ.͢ 1:ukDHH I'!;"h (+5%z@&NxZ6Ij||ei1}D'LJ0{⛿@2 +,D+H'i({5?;ӊXG<2Q" |2B(Ot{Z`dTgyfc(?V1&1$#$- YoH|9EeSNe:h#?V7 ȽåZqt ~\uc*AlW4FzCڶ ?, 1PM+e滷|k~ 0f@%a!RCs+>s7Z4%x/ ě^}aWTڱ vb3%ͨAq_aG,`l`6]I 86xg["Uڋ/Sc^q $a灙S'zL6ο r%V ^(ԀV,køWRAQ!R"zdЕ9G~VGw_ 0ʨ@,TQsGdՂqX=}۫'!"i ]1HRQnE5R1aO-]/TDfSHJLkzVp#bRVXQî)"܆vG0Ϥlmu8A%('_+\P e>7M LbO wt1?DYzs s(zi~Og׶ULgpgܑD+|1JGbJfQw,uf-O)C#[$ .*uZ(κOxMv_O|jҢVI YxEՙ!,BnԷx߉Wlx6lCt@aްdjPNƴ>D:3;vO9p$xGH#(w٥;>q9B u_:K2:1*7Z8^OOXǂ_>G8(O?qUM#Sb{9Nᨊ xۻt͎( k?\Os0'DR_*B|$XH4џ 2鄒gemq5DCz{fiL=ó"ǟ>$)@j$%c%| IVחV)c"CogsZG񏦺7Qdž3"72pe@NIi_lGgLUL0T=ՓS[W^"bws7Эqg-Η<ޑTtpA_;Ђ$-E^.MXP#+%tPz95EaBuWHӳ͉{Z+I1X߳y21ސz_Ǣv wOm֐ʃ]SQEj9y-PѠ-:uww&VU.!eq3OYJJ]`FHܨ{ GX/F6svVnϋ&=*dR|7Uм e fΠS)tzZH~9TU_~.)טF<sTZC:le#ט:R ?a#'à;J?arXm0HRՑ?{]"NĵE5D0v{Vo)#rAVPJYaP9$c(%%%g6Wt7i&M 29TfƳhν-^#ƻw؅GYHN7EY[J-L &j3gKe*}:3.#6A l8G쉐*Xmsq.Abv"<>zN"[4Z 6LJj0t6p:HusǫNAȝ2pnGrdgRC]hDsϤY~ySIMu[ڽ@R8xVyGۯPz["ø`5t) _|tWU,UxةM<$_'1`Σ VL(dtC| B!鱌*f4% j24-MLq߿z W\{Cz i.M`@=( m|[)7z\..ܖ.nz8I|`h|0||xi-lK: V|{#s늚OdijC3q u!JK(JzD+Tԡ6,:aY\o5hs=k_& ~nV*'%@-纶szcb#=x^[+@r{ysWAI><%Vܬ;tOAYvལ&>5An(VR-5`R3en#ΡgmG1-MWZCzHW$]'U2ctj -d5>]tz*+Pg ={_Zjl $&>jEL'/t)'JX8qv?cF?|G⭞)Ղ~}F',vT9X8>`!$Pp aIAq@a5-s L0EZD> ~+؍+寡^;H[.s'/5RD )#="0Zrì jaQ%_.lX%~8 RN϶sr{p[r~&gKF#hӨplg{D>u /xm*ZS}-&#JVUɮ W.Di&, B#+@vDҘT]]s ^0NH3.ǗK YҌ|R-+ ; 0εjgvXBkrfk ŁU@I((ǃ NR,eA;5mIjqhH2_,wS8R2yFa' /t y8]m6{7)Q~߿G݇pݳ'NDs&E!F8j|V臶&VC  xKSK͟,$f8c9}X#ݐj _gyX- i#:$W/#L]i<<RzR"%3v6SH9*~ßYN*nc%ଧI,۪%9V2yjeql%HqzVl{z?9s_} w3=@!(b>qI f&;sК(} ^/Q0=.Q7ݖ5CQ+[WdA{˶ӛu`-wrP:u+ne^ {:Hm f, -2KЁ)wM`*8Sf{@-h/'CS>pd{QȹŨ~Gے3.رU_PPkAم|#YX/IL~ BMXt觠jR֪ḿF6l̪s}9Q?|"Xuew;2{s*r˚N믋ʣ\' )&b8"jE@'}anx̞A.9vN7`(jW3Ft!/ԘCHRuh5s~]ᨧ!kudɺi[܎ ƒT, v%SU cSLbɑSJKZb)aķYnOClgj7kYfфoz\DE|i,A5X"2DpL>!h =0 Ȱgi(a2R'hR6 vX+ brXU\&z8aRϙ;F/8tfvP$LHz=_P9:vWo4iٺHq9o 5Iաu`)3b~D _:.:0+ 9QC7Cry$*: 2N9\6Ox^>d#u]T/7){Lȉ| 6A*!JxϿ[tU@#ZFTF 2*C t%Ch H'Fh{ 1Xu8<<1VL׾K-p"*Vvc0]Cx=`0j11rl@!{ zUY+ ?dmޝ oQ 0p#?F>d% UB y~س,kBݽW++Ya 䒣E ,;s# )pyXg }#.|W  ;&@AO s4uęwdgySnP&=kzwcB1.4^,ӱ\.9!S+:yP,]:fNZ #vR(z4LR1*[("8J 56X@2V/H!EF[/ʏdJ$T_YsY+5@L͡sbs [ARyMq$ FeùEtft LWælݸLxK;z?H2@9kHўyG[w +q H.s-3n[ΝqVL$`YFIpE+Ӧ/*0l Q*c1`*ݹogBNҹɟz@-B4aPe2%tQ?jn; [0T-1j~ֹDx'02P<[_Rn{U/w'yv)F#5 +&x<<}dOI'=K(?ltbAfS'3/NnkʖG$-G`+L@3vd%[',AO{)(I_^qd|na70g~PS3} ِ(餠ͷ?"$CXK5fAJN'^B5ܻFN'dxZ>R$ۂ`q56@[$Q [kS i+uqUw-{ۍZ攜KoO!ѥMHɫd N5?b ;T^v4u6u.炞<C/^`PU-9ZMkDꉁ-I:˪نT_R w,(pJ iI[|oeNޢ(Ggl?`=]Efu,ϔl% 8dbK9-4>žCrL"x;OvO!W4|Cy&y~9 Y]c_-Le223s:=Sw"3Jl8"> h) %^YhwCvZIgKE`̳}Gń{_] 5,[mN-.COnMKH.SЕ|Z+>Gm~N#]13Ug{)4zM]"\SA甊AxHQn n VPP[AUk<ʢ! bly@ ihS iZ"nw_:^@]AĐ3im  \L>z0ݥܲ42: 4#VdߦB_ȳ>$:AJ+!6]/w89NvTv ';̆"O-ݤ32cČ`Ϗq6bpkqI64k(Єy.D eIv-vmm7Õ`IU&,nl^<*2W/6GrCM\`:>͔JPmq)n}qP8ce)2ms̆#9hz L +0mt9+& ~$eZ:Ft>Mzu:x-foI K8(Rՠ}u ٨H//@O-| _x &ƖR}4_E{yDL%/<^6RIHo!m8&3<V &O);X0IHYtYbōF|ʯX+iFNpj]3rS ـxۧܰ4;BRmQ943 S{a'M g{pPEnnj;}Woae ]#ZijSHb0x8X)Dž{Fk}q# z)掋k 2ӵQ"jJ<#~aeQ[eB9~Ǟ'l.d4 /Q]1HcQvAh7fGG,$xV#ZٓsUH(E/7r`lԡvJJ Y2 XJN:DRp)g#GnM1Td'R(4>)Sh&tJD4"'\V` ?4o5X=m>Q_B,&}Wwϓ;̄fMkQzJ҇+Kl0O;zͯJYƢNA@@ˁD5TDAn#>u"+E >6F/Ho:Бq=@:z@8 %ned8UpKdbyy@uڴ( X;>"xRLLM>Ń]Nݯ.EL=aUPL(u3mE=Z6kBtт~MfQeM9 XsvBC #\mӍ~ޚcF9% 3_cIc1ws [b lX>ɗ/@ylE;+&3R3rji2G垛/å!$wAZvR$͚$F]*~NE" ݗng/GjEY'lurgNٳrx[SjWkLȞaō#:V`xE FX!`U{W|OqGOzWv4(}q4}|7 k ]'˔9 /L klR(Q0#l}?P7}E<BX/_w$|}˦tOo(Go!Wi{ /hncl#t(Į OĒY *Q( ][w`R@,gXz,!!1/f$e1b&,u9j"õk0\n#_Dzu7$8 >Le`B:$eWh-\PT4 ̎.+\.\Ih p/SYmuFԓ `P6cČe7ٍJTe!!Rf&k$g>R鄮9l[aKg}OW"эrpӔ=ݼ\ow<㑙B:Kz3йZ$i mZ;iY=8x"ÑH G "ۯ0y<+?'To+zU*qO֛D ¢qA)R/ }KaYy?0i4)B RIJIF]<_(MdO/o.^;2k⏓E)g7iDPVM\7 HE.,V;f{IH(ۆS? V}nHt&h E,Y C_ oI/`c:d5ۋN_cC~D_{;(U.~X$FIR@ѐe.?C1oCADkZl2 ϸߛ[5sT `>i:% XÿMb'_ H>ʴ,b #5~@o""'+#x5÷ɆVl}euSN-, ]f.F O.tg:31J]m%or3KC_5Lx =$34*_>Tu6Xi25ZACT1X:D/;D{_[{J_q ʵs.ő\iIAv# )ϙVx(?HW'7{au*̹|dGdڏ /IUv? }dcAhP*Հl@c75Δ0RnFfl؂ik0W_&In}Xd:c9Z~vb܅`kUnXSm؆ 8^[} 7Ѹ+Ź4YR[k5Μiq<$ yWdR 6r4R϶4q9-pN)BDln)z>ROl]f1R󒫯i'ԑQW+YP75 Ǣ{'ff5`TbCxb*5;hwa_du߀WA0GDEnJO+v2 tKZ @ ͳBW@V2V(g c'VǶwZَ=X_D'T|έuajJQMdFO :YI vu(d]swc ۀ߹hȆC_mYI2ko0-.`>ȁ§jߣ{~6JŊD=>+ĊcTb/=bNF畇&e\ߟIQsx}eGOCB`|R5%޶m@J\I*ʟn"/ȱ6ц\G5b$@^9ptJ&&f+Lf 1r-)99ɎU{uZf)m`٥n#Q S;c93CSfP<ŹC_Y3yO>Eƛhw^R43 ;{C2@%Fv˼P 726Bi;͙`EKjOw6vHñBq,&'͙Sk!ﯕYPr7iX`t߶!^Yv 6 %eobqw4B*I0 naј> ?4 qd7VpBK)?T,TPGfφpuHX& IA.)^`Exb>q<yPV K_!  Ŕr$@5*`X iRh?##nFKPuN%|90uXQЋr"Fp4D;Rꠑ)Gdd L 9;o:8XF;+YMӨ(&C)lJǍ4..N+>>NL7^?9o؅Ͷ"I%t/Xme( yuoA#rnsoA^e zp:ma&Xri)R壩DcXt"hʞ68)o+CfZגqd0ƺވ3YrIV49(;lS]3+7^$E]Id._Y 9/EP._fak?ܒDQO{ov~}ނ76-/vqh:U'lG ;D!nao54&]f~֠ ,Į )$+jb!*y`h~ycQy꒡eJ}ổڙNX9^uFL AuZ3K4]q ]v$05\t-PN {a2$aB⻙(_s3vʤ;Τt _#m@kӽjz4t~yfvhRo,s&ۃH5Ÿp4h@YҲ),YN?I+>a$GYC_Sv]!kMfMZ&Px@˅'.n 1EY0NKRA450z.^ڊ][3*~auYx5V}UbgK \hf| csvyfPՑwgM6`2]r6RZ"`3@_0xnQcjxI=G|Vd])CPPǓ*;J+/p[ u+`<+?;a0Mכ#cM0=!Sif%<ׁ#`mF_: Kj ]nwz~^:|VUQ隥dƊl j#/cIuؽpCm_2')Ļ|;%Xwrr? 3rH:iK "TDb1x#t٠~Yƴ(i`6W,tÏogxT.v ׯpt`IM%]nVI #H[y1IAV|GH$tCn94!P  fNU"F oA R~_tɸk5K DݛȞv,[z/ʰ1gnnq{ Whla[2FTIIF)7@R-.4t q e= rZU80e,7 vNVxw$s4-ߚsRɓF+h6uSpCoӵ@τҒ[? z7d S^sZLwXy|W_-cgŵ Rok U hF%SO8 -vQcKUzv^7\9Bd+"wv.UT"q|8$Oa?7h_>yFsZƄ.Sx"$o$x^T+BCz)0ĐDMTl'D(X1vgJ)$ӠnN{oRiX!{*.ZM -1:j֙O%@=iN-8W.aelL˚&^`Skl4Z J*iF5{Xd8,LxKôܩJ/4o-0*(E+ j\gb](+k&MgklJ7ȹ cH fޱ/ +vqJn\v,jt hi{7^ROQ; %atH'`o‡$4]0Zc_İ"݄ IҠLcҼ (p͂!ˣDgq.>XQz8֝.~fBkی⫘V`<Қ^s`H1#R*PJ+6B ;GG1Đx-ʓ`r[ EMCb +}GjmUbtrKbU"hw6`e4q7/FQ,GWV8#٥cCKŻD0 #@CncF2!=sߦ\zr {.#4 ue$.Aʅ78ɰ[vllzBj}%R74ׁi?Q9lCtfF,Ud1h:Ey$}3jlF^ۊ0wKmZCf&]eh f*\P ] 5'cC S/Dž s>T*,&D&gv0+jb ef-[Jm|/xgNl\y>r9!OC.eȗ?+)o-t(ш0xT嚊MP\1 -iREBj5.yZb?==R\V n.?VZLAr`G,m")d+`HoJN EyT|m!R>a# j 脰jvp`9Oܓ)~TA2nAg_-䁀1d^B4Nk,%FpxC0+i۝aPO\&ԆoSgCqe m0!'AMZF w|a/)APi2BRѝ+w86d7=frP_Z/@@fpƂ5՜S`N_Uj3\y1SSqDy+Npis\F%OWjp.-5m Jr?䡓mJB IEdj╵ [K` 9ϲq⸤Q \ʞ3Z&Ǐ8I*ޤzf8o?lY:qe\Rh_o璢Dӈ' v|Ow"i\EMçZcg*lB]PXHJ_,GHL|{ =Z 4'N,o?!Ӭp!`CM ےɵbk~ܾݟ1b)AlV'#(uN|IM-3 d˽\"b3̓H4y-Dki6mbvz"Ŵh ?fUJqt85 OIS1sK{'oNjzb&9xWbOqda O Z`=Z(OumB9d bA54qRނ=F؟6 U/!Ci낯5\WiR7D6 QۈrH0jqk'OΝzdvّp桓xEFr(u1jD$H0a7M@dThY ʄ C7J ^Y\28_ul1$LC1.?ŷ}@R:skjCd8䍹 p\[>0|lυ )O6ԇRkڭo"^wpDJ){2( $+m >:kb~Jr:1˜ae^Qn]ƸRhV5'Tts C GQL)487WՐ n!H 52e5ȞùkͳiL2a.y!rz֒2R?A)6KᎱ!kwSj0Ci!eJ3EfԬ#ԾnBfN{rJ.bdJ8 k糆N^Ɉ2lOM64w_nOvHN™6FϘHc21i7-$>/Ҟm$~S}1ح6+>+S1Fg攜pVWJQZ"TnZcvIgPX`aU&0-PEK/ʱd^ q+ h s(Xb[oAZ8-Ԡɰ )ƆXPx}2a$SӆeaІ a=dmtRͼ;š$˘( va3M#ۘ,7kK ^YZ ޸H / e+(L4QCZ6 kWEYr|"|H@W,YxhW2%TaOc>Xf`c3Vv%&\?Yb Ge5ل⇭H;֡pwQutomPy4ݘl"}uM$ɉ^[J|"tTr'e]TbE<bjF/EOk4"CiH,Z< Fzd~R)T,:.IwOqGJ5/w?^I s8q|U6~ͻִ_l&)v]TFDN9G |/m_:> Wz }J|aAd?ӮO^m&6வN2R"s`MqM|lF*+ޜ*DkVKY`4' X?7ĺ}!6LyW>We|P4"[o-۳le\%s(8X|fFR*龥Lϝ8p +25{XFngq`0rVo_5xT&:!U-%Ya,VsH[#BHbGwZ!%$ ;!Uym#vCR{ݷr"bP/8il- w 6Liדgt_H{\Bt&0"<gB8/Aԓ^+TQ;FK1oFW ^tpp*ڽhiZB%zf\u u!![6k?\ml4ۑ&7:9ֻZ1=.v⩓I־zq7" /'+7DBi1AuEVL}u (LĖ$3"FE_v~(p C:KS$`.MS{Lg?5(T+VrY8-`aw,<ހw:ʛ? )_&WFnhLBV:gNW;Aը-)+Ԯ' '}Wf 2!9 xmBt9M-. u;&ɕ :69A]@.p0sXO _4}#鱋pAa yL?M2fT+n*l6T܌^g8*:J]>~BU1x% 4qtkޤZ*݆~#[ϻ w9=$WwIk81@Ծfui3}bK}PLJIPҰNY24KДߐ+~e_jR(y"fզ!>rc.NP=t9sjTvA|nVG6%)*uM\Xt*ڐ֡ hnXWV@^E>aʒ|y/pㄶ TB`pj(Zt|_"l)^Faur cA8T8QUuRԆuEym\bp ^X|x%^~Zds~fW9@nY'FA"vPPmr5j-9,} jH4oG* )R Aރ-_=M}pѵE]T -ƶDsZb:'-4bTUH9"yVcZ B0zs*,j&>qbb >HS?l>?E,䡮K̓ )Lr  '0R@,˼D8l XO{k)ziAL :w aA6i0yU$q1]ՁZƪevdA0`Oe/nȭH٘?wn -kO5< ɽn*/WShm&%"c)3\' "d' n!$k[ nP ǦM<=of/$uo"J[-x+\뿽x[0[VEEJpd2VVh0c"QAcH Z1ݦfbwpKQz tJ ?&lu1W_ ۤI~gx+aDlzsVg򞍇WKUU-=N@;Vu|f)8rSL~zS8,*Nnz[{nľti T\PVH~2&-.:ySvG圭wa]@>;_,sx'.Xo ץ&KG)Rښf!c fφfK[<)els3=#OE*1360`);D9y\y 9=XK8t ïaޒLK%(3s-3 u׿}AMaK=ZDRS'oD^l⻤huP;%`MCVO$%IR R܉ȏxrKCM?yGK{c^FYڴXn=>E9kp@II^|Sސost՚_Fg0}:7O+"urKXڊ tƌoލR釐QȺ8彸жS>_m5do6U>v"-V/f񈬤FeF|V6?-„ۣf,3&;@uA;oC~)޺?:J}86_F_1Hݺ7D8V7o,z-CʯE'Cا_BR:I]w;wXO`6ڻ |5m]ʝWJ2ZH%;!7I߅C/yG("JWc!ńbUyX7!/[8x0uqBKn0Q'~Rej)w32H_v6n ѻqbMPII3Zq:˸-)h՜~H/P3)X+6T nzLc!SJt¢$&abDR0y? ~)b}yfg>|T*4[[VTq  oʫ+j:4+MFSij)M; cIFSn/ k $",#bAFa;+~LCH<0é25GSf׀9 iH̏Ukv)<]K>zܤcN":ٶ[Ԥ[;eiKz g3&WBGVsHE&gV=z8N :ARmcKIZzU$`;ȥ$Jz$M|@7:VH`vt6z/d*(l]s;=QT>K+U0)~etbhW8z԰6CuZQ4>k?bn٥xLÿdٻ6mWW0Ctg@. $4^ `} W ͜g!npbWc\k[a\13[\9 Ms!5K=Fcwo< =o$-,.dR*-XNVo 3ְEq&|Zʛl/mp bf>&[I!)MDKΕm=F#s" ),yמչzzdY6*SZOm*v;+i<5`+bO=+1X5atײcѽ<=qV?7!R8/Mmpڲ3\|XքsDKG ɛ zTS!"" H)l4?r ׽CY^h+[3D \FGm2P؞,Qqf!) ,ݧbJ$$_U8D!eaYRX@32 ^p '] ڬ:5ax D֩IMB>:]F$!\dMa.x ,5P GI>EЇZCQ-VLkm ;64L٠Nd. /3/4zm3H4SF?\jUvc|b,Nf"mZD"~R쁁^' NyATC) ?ڣYCmy`sAG.(9qd8@R 8J 68oKj_yS`g/ )ʂkɬ0cwgתDrN5VΕY|2 ?Z4doM~mkte:L|kOԭr=efx kn1.V4Ω0my6U=K!Wާ_:Fj gWgĜVB#W ?JtJ@tj1 AJrcE\ݶqE7PL2P q` dGqiqIi%nP{xۍ'pA o3#{puDUitznJIˤOOYĘŎ5PwW& [A6Qx$zs}z=V(~2eV#>MWt哒Owq8)=%*I[QW{sw|pu4#w:j.y_`T?ɯ;[Wg遊^?(bۨk+]~0 ]>F&/+CMI8۩J7ǻH t:Ѡ \17+}רK詤Uzt  k8R^%\qygj(- yB-G!:iSJ(7&6>vtJ;G/Xd3Jz4M.}\ `6T7.3-N}?rٯB-G7ⶳ}A`nԶ0 H9mب_*4 GSߤΤlnX+x1VJuGHq PTx#qD؇ w>#שHb Pv'ƺs=h&f.Y z7ߞ5Ov@+# k(JmL5WL8I/G'gy˨}8 V@.) 68BJZ4î"dX{ini6;H85#Cї<0zVDhb0A4.L4JP>"EJ#E@ ؘv@9&ϓ)YsvpR] j8Z.z#_9uMBC6~W@}ݗu%z3uq$dtZ"~TV5 N0-.K*KzEY0heB62DXǿ䂬 irRSbnba |3~DZ Ue1-Jy-~ZiҖE2 @e4 +-`1.І6.ȩ먗<@jtȆb׆s֠"t #{;,cKl:[հA+Pb5ou:w)<ƠD3dC@6E( ?0m?%γC@ď~vst#gz/W"s-i#^/<3[(kӬtd%hZQMzӧsTp+@Yj/=' f;@-ɓ!Me3? ׃@!JjT/, * %>t9kA47Y!*6QUMA/Y0ve !rQ%*?b و"[(ȥ!5LnaKmIkDV6ӆQG4DrN8 TQ٬:3#;0F+IZ]Ekpc&@pYKO80R9ƦҎa*[D7)摜bNĎQVMhiPfeP߬rP&wv v8d2~k%?Bǭe`1Ұ&,mȽ4ҔSАc GޜWxoqr\$QK9wgFr&n#),yCT8(i+[}m"۬Pb:ʨ 9wC7`ڮ[™yD%3 >sK/Rc |Gs6C"v%x"^cpO2RP% d,Y AI((5i6׿NT ZPk;KdU 2L gUz,)͟D\ylGd#Tk m۶gZ/= uj6B||F.@,S:$1xQ ;oRa"q~OXzV›_Jbض@͢SeN/<Ĺ3#ul;S*-Dz'bvc< K2i_4JR\=Wq&W8yI˹;ӗPP&7M{1k,*gxDQqKȬsvp \C?dV /HenPH~I>1FF7&l>oox=#^)ƋXg]hB]U/14-J%Cdu|ay{,ʙP wgrPfeYdG+HX-XW5\Ycg4>:ж^\o7VUضl1Z~*jr7ddM椇ƈ]aߏKNxB?Xc@]1IpUI\^֢+7̅X?f_k-Ⱥ < !H`H `C;T[jntH:Wǝ=h?d"!*GֶqdՍ<`>ֻVqXO[p:t;ufA:;KR(k砩voZeUw@I"[`ˡ/~ڨ?Ѩ̕ݙHeC[u` 0!j*J5rט8 4tE8 r_VKWa]EO"qD9l9Z4}A,Ր@h9?rZR,G+lA(HזX2h?}ו(fF5G6ԏ>Y%4Nxxy|rQYJJ`& ߚX ?nL0*~.C Xў.ӸJ|$#8wN2 /NwWKCGߊ:}rFjǵr1;o%.l6Yڷao?[d߅;'?PkHRӒK X<)PS8Y iaڜ{>wNEJ[ǟ񉍾w5y[ᏢJUjH:{|s L& r(ÿ^bEvd a9sɄrX Y&hhW1zqq+\AD\f^5h UkO~VAE8g}(qJ­G;oP3]crI{Ftq>Ć SvEhݣs$Y&#okg<ͱCH/ gR!yE ) /ed>XY+NA8I ٴVD!HmCn*<1YOi\iJ=`}h<',cl%<=K:JS\Ds&D,!Hw0 BeO1 eHkGXiDT@5L1 _(RNU @ <&hr C%Vd ;!^+ hlSҋ5嫅߿*ۧvgLgF@xTHjP 膈KQTPYWCL>;x"66)7aodLוDYz!Wہ5.&X52/p}Y 0w?(AMcR6r9c[ :&PX:ٞ-tPIRTPOlU ӛ:c˵gEXAl`G$c,&|tvտ{EA11#ُ;kQ1'Z3-\%e0:K rͼ;€BPUi! ၖ(j2R?iS*\oTub'P7sahi\k3J2Pj῎+/3'6-Wִfz8qTʾhs,UFvym e!30͸ݼ}e((4ĦV/F%jn 4DcUiCvpH #Z|W c\b Mމh`ː,;;n?:a@Qpr#N)7Od}9WG׸՛Cgӱf= e2{k#{r)WHLejrh,&8=DYvA tGXEx=rAt? Oݻ9-k6v).׷VWA1"<>w#UeͿ'(jYp_ +@ 96.^Wx<<TVuͶ}j{-j,b/D/Iϳ[ ;%/ R?/-akE{>d38p;Py⫘y6Pf{UPC碩`Bntd8!!w=~hΊ]ƭHR.1'B_Bt,YY/Vvq60_ri8s]ը`n|7}_EX^QĜN(pq9>y+7R;tlutmL@gHܥ?SɟtMNWY2Xua/T .Уp !*%{ \w%qM}JS.br U\zRnY,.0CZ`5k!A~2"@}FT X%E8)=b- ;^4 +~rC;5+ x&1{,=X~e*{*;jdUa5wޠ#|D*7\T]1Z 3evaaOSEڽy@MV/$?é;~x}:aPmuum~,&B g_:I?s}_c ԏ\^>gOG hpӫ-jFiyZP6tp_^ʮ`jcg,U)%YuD2sa43jqOhn#2WБqcekyt=gwN~ )ωG'h E DKiexVH'm[|YXJBJBϚ`9upP/lEa^96fTiTLN0suFBIxn7F\Bp`P:tQ~=$j;<6K+>jˀŏK۷iBUnGB^HX5bBbh٥'Ѐ>PJQĉ7oMIgq٫Hzp0rq~s2l.2y.sD[MDˑs 8!{E})_jZu4͉U~HfXOz vQwYb_nu2|+W#8>u[b\ke]"LPsCTCRw_i<0dRÎ٣7I9*Ǥ:PQ$p>)\?;,L .-s.X)1}jƲz_eaN]W_E*YD Xtp]5 13S䷭l CzQ9"6;ymYzco_S`8"MُlD^Y*(pYX UB!DtrDm;ܚp!xQ(א 8PϷQL|kAt{dhfClw0eҩ7.{ȿ"t^W oϞR' zwyk R;g-dԞrqi4K[|W}qR}E丢7?Z}U eFb~@^Ffog3Qn.gMT*!PՎd%Cz?}R ITZ "(#*(#(VWPVmn 5>wf;r%8.Lkf5zNr#VU4mh2#{%cZʔ47a"p, "f % w** -Zy0ڦ+~ɥY lsP|DA2vYL*+_۹b)!^7*#PmT6)OAݕb>mt AQb![=\.Ϯ9`?fO_mƓBT#ďF '~6_Iwfy3:#^3Dwd+[!hyF 4VxojeA|`EBtF~t$gp?'oY5-QC%ɏ.1CoZk[sˎ+C&miFۛ}9'(5KQa:jL/\]*d(O7؉|˼$h6{>^674 2b-M[AX5oҸZ9,Ϟ|o2oI7]&b2cM:L8(U»*$׸\׷[s/ȕx( EVJ_ 8BWF3"f%cteJT{O=Lu *XHӞu<,8vp~FAԴ6@R:,]Cuhfq} ,[kHς-)D`9ޑ8-jz7Y'  =oO<&7@_7{g=% T?2kxxn%v[p 1?.MLsi''ᒉˁC?) # T+3Ņ>]w>t՘׳ ?9]6 K(mJL! (a mE&);{YG_\@$1HH^k" rYMY #{"\ܼF:+lq9]qϮۓ9ΚH0.RnQ^!NRDlB,&IU-.[^=c9~(}#LTC/; {ln_g݌q06 tOdP{Rq>BO=`ű Y3]x~&{?F{*lx3 ]:Ȕi PL/ʍeL*}s(Eź'1=C.5WK42Hю"sPgJO35-w(6ɜU|{edC.2bpuZD_*H5*z UspØ - S3oҮ}H"@U436[&< =8((n+-+32dP6;v %4Ԕ9sq vS0PՃ7GaoZ>/! . q @Q9~zT[Y`1.?tA.QA%nay0.JSύ4'+5(~$g q&ƌ>V#ߓ?whxq҃0ˍID !kkZ/a%z*V0BS^-2q9Iu45k3فJ}2"ENisvq-9 rF^MFݽ"T7U/H=rWReȫ޾T[8(.dskHF(I,kr ҹKW%ß>ժBeyufxgkX %ryIWk #6 YQh^n5 KTnZ؈+&Qc9}c SQ T B 14U`hȻdhT iJ8Љ&b^m S8ϠaWSt$N9m8r)E4m-zJOI<e[̀љ ԏ/)>z02f̵sA2i\8*D2~nl6N]3t^mc+Xn,<ԈQaDfj;F׊mYp%Q +҅h Hw?@D:9z/>2FBsvif%3L,z%"+HlO3,"6i(wv>+ 2˘kfa@|A^)K䲥V Q3& e<}`a>͚3&s`'tߝKᅰRCVmk ׃y޴$ݰ<Ȥ01p8V8d?2Dբ.{$ͻj)>B0ZGp#"[ϜV!;.Yjq; c*3I(%"@l> 3g/Ţ@O"Uyh_"$}Z0ST^Ƀ> >Aoa3NVz>V6RqwRX"\%Sc];"9皴֙8V~hZ~vN1|ţ][w7V>&%hJv亳{$1a#xpRŬ0pP7SJde a>vͭA zv1f-M)u W.  V{օ*So^:oJYR؝΋,IZ.e)fYqJ47iM\M//maI夆DWٙ>ݨςU7|a pZHdr-Й;/0 rn$Y"K@eÄTsD Y|cq"=Uo@꠾B߬Gћv>O7;qjK@chj.5küjQW-:N@mu@`afN/:'.ՑHI,F-]c; ?NlSs%XPD?T 2؝n|Ak9PBֹ 4T<@.d䦕cMq(A]ె^l 13d`1%&h$n$@cEej@ף>ݨ mE+ ZLS_˟W[7?p~ 0-}wfѵogpJYeJ[F(JMK>+?e9y :c5P iI*r@PUZu> ٠;uv;DΣT%`)satn ͌a-?8,2˘պ-h îʀO]3:dTr >26sN>ُ`"N&_tĬw#Wz$(jgDva(mĐ ,da`4i-f}٨^0O t7`fs牥ɵ꧑t+YlUW/WOV@ "墼z>\Qi!"hXFk"1 zCv#{i ɰ@ Uǁc7oj.弘B IP,eLwה:)lqObtbS E~3vC)RkZrYJ4w+hvnpaL:eHm%{OCV0Z+*IOCXʗAyt^W J<C$.{eK3H:]I(Ŷ+ qQkM7.~47=$_Х癴4;ʩ[yVFga BZf욬)YL/uxfcr>8 4]C{s i#[<~:-fcN4c6譌7C_5Y~_%Y8tv϶R00k06ڻ?aQ! e^U5 1XY 7a-* jM+}$fP }Dυ}>?9Q.0#mBLCTOq vddvzh4 Rp.C1== 2> MpW}?Hʪ .Nɻ t\X&8W$BRMF\[u:3/(E I\W>Q͊{0w޴@2a uqGަ6lH.UȜcy5 .)[`ϩp"[!ʖV4_GִP܁Ȫy+YQ;}ݽ?IѪʭKCmT\4(@-$9 6<~C/aZ$88m4Wv3ut;CͰܦ!1.c̿f%j|`zHM; b$_2_N8W.8ouMe)_R>1|rGbE2I [RG^+>hqp6Mu ZRތS@#'Qwkׄ/+^eOJEd oz53m:1 )4/*W 2)sßW.w8Z~W fX)\ `djJՊtyr~sjxRzD K, j hHdz)୻eU޷+ȼ~j.-H(JJ/Wֽн4|ĹvKi|R$D-C -7^=W:?d>¦jEm--ߗy/soH\w4luȟk;>6VJxղF@/y< hȵ3boMw! 5[:ۊXV]X>eygeſ2g hWRmI:5c]zVٵwBy .XvlRB׽ n[-ǖ>nwsܞ HEwphc3490ْ3;T#n/~g"¶>E >TW}[=H|ȢL+Th?CV.2Qcjpevg`j߸C#TV̊—XKoϼXm> iIgElǘҞ4eHdX30pym\M@+/]sbM{6 [_~/YwP} 5bso-?;͞ loaF/D~p/EZ8U0 nZҺse<*k?xسԎ\IjpڍwkBB='NY5AOQ!v(p#-8OL܏ҚE󖾌v21;UIq*. u!H:[r&ͻDԖ) %ts:QN44{`tJ:\1܇$Ґ n&-11ޣj` ‡,Q\0}kdۉ94;+QY snM8L<^WR8lFczزW=؟N{WvK|QtW6 RjC!Z3}6id"=\+BM*ius}kmH4q&I{?| foE4p3fcWGeȨ>uԛ'IYI,E/P J30 4: D:ImI3Z(@YP& ,\7;!]$rxdi__>C–?Fl I[NEC  P]yH(A[A6-KH4͑Ι@R$g? EgM$v2X8^}8`\5?6+n-^ x_h5膙~Tt8u躸O1Sy,U1JfĒ4ٔ[ڠMӤcY)H=&2r@mfy(BSG xɺo#ͤO{JHTZ >vR؝@Koo/OKICdn+Y(CNur24"fr~$;Q1"Jx}ȂqK&-H>iԓ(|N 8zSkoЧDZ[ Ug} i؊ l4=&[[.:8HUfh-UB26vg_RBB|yB%ZHinMz%=mK?e}[Egs[oFc1 nw.hƸ~5+mX&`yY`$ϑ'RZPW%?:ֵQ G1{}kO(@\#L:^L?YIy}Τ`l<']W5^67ih{?95(Cq wd;0nBYVʗD6}!8X$|2M=z-VO&jVvrkO 7j<7#(ǹt7LtHPiVm Dx~sAd#RE  $Pxg 7,5-e}!kǬ,[5gR@%*iR0R%sZ?k7!S*2٪)Ɩ,yWO\ooŕ=C$p\=}"ہD.[x3Xf}M+&vv)8⿈?|m!_ս#GhSȤa ֈؕ~O=Z9ݩ.S~T]vks?L/A7:d[g#)z? bsDKKTz0K;"}o"Rxк&*PFRE4֌x| (FM[yEǧٵf`'!n429X<62]gaӟor5q床'T+ go0uXOdM:nd;O9q!l%nITTZnDb1E!d/2xIM&PG_-s1бu$ZgS %<(g OLD573?̎TAQ+Yh?:TSй,(p7D:^>76\ڎ_ q-݆I?l,\Q*rxfdnNޕ [ΫLC_B'tTYc\AYZW{&8LjLamޟaPQ޲FՈ_mptlLZ "71җW_Wj@ 5.g Gs:Ts ZmCPCwX9OSYUɺwJ',ِIU|Bb"Z9^Y(9JfHH *sV쳹-e  2&QքnbPQ;1 |v6exe>*¿RdG5'rD4_kY ѷCF?Pq&\j*E5vW} me;I9 Pۮb| ?$k\yAYi@gzk<͗K2ٽ3Hƞ_jbu|Sj~m4Zym)VfIH拪Z3&0ԬvOtYt$1|gxF z:E(X 'L*?{ۛ#|B O5X, KClvvgd +eGQRs ;ʧ^0h}.^AeLAgj$Õw_W&LݳM+IRϡ轱H*å܌=HGx4򘠿Ysu8sh*12f0V.{s1e Y6-A.<vdŮ }iam&4Mzz %a'CbZ{u)lxE0)='8))H%r=Â,xtB#kªj!Pzw.5*3H$.X گ#2Pw1Yk}&x=(&PĒ;K_+B9h=? Al8EEGE!)ɄE&4GQ(`nf'wIS:ftΣ,:61pyh:v':3)I`> gc۾lݞbq@Gp("QU5ӄ25a &3Dod7D﯃yqA6 +?Ag* f(4Ӳ eSm|nZzTb 1H!4BKt=$iVenK i)HV}:~[>D4zV64Oi [L_EDETYDp[oi`"ZH!ϲ%jmQ,MP%&akGƦ({D<V鴑>i;|h@6Tڵƚ:21BX|?[jڱȷ$՚ە"`Dk1och,X[k7Y F^W#-l|QPv&jbF.+í?&{mT2g*?ΉR0#%8y9^GxG}gdiG¬=P'PL1-WyLQ'ZY{t3y)ӋQ t>qyOc[Ғ8Q~,O(nRE9z}pn!קefeix)F}+:^IYO;.;5pʑiBGZn&Gfv$$ JTDVDb,.]z~p39k.AY11ZIe5pȹ?h5dH9oC b}5|ja Sؓ{YW?L##y9qn ~;4"Q,"zlBtˁ϶D\ \wt@n\4ds<' nQ"oq!bA$B5\_/BP@)J0SJz\KCGȪXK~m:z81tEwbY,43RU)^/ I_̴C zث5_pq3d< \`ZĐ5!PZA[ QǼFc7͜7t\NFw5bG8C4[E h{No Z]#XxɨCY|k~v8 7Q 4;2-kzp.\(; ]P/s~\LoW9P)U+'KH,ZYlˇ-wេ /wejd}XhXK y~y`PzXTz!_Ы]tz˻8 Sl*9Ũ.Ibx8LC= ¯G 7G//4K%B8L`*K=O^s- CPi9aK)܃Gga <5xN՜?R2Û\x U ֳi9MrrFbݐ,|רp칿%J,bf7a썳698uY}<3(Oyg΢}QA3CQY' Ұa-Tz(`p '|σA;Œ^t˖ ]TعWseY$":X8"UEVIGFɺ ~..ƧJKzhDf䡼o5$Pm:ܓo^305Ev>6捐YM$ʷZT["CV^>7:P~}(,Z`_ |#8hX clَP/C ]kx(u4pU&%7PA)G2hi MdNNb[X j]C@ ym 8@4j|OXͣo|"&̴J+ _մN"#܉[}4{,6V`pe>nb1cx0_UuGWEWÞ}X@' ^_lT1#,>N%aɾ8?.97F}tWj5&C5 w+wVk40`#1W$ R W>L:)?%D4HvH&kJCrr$Okme\΄rj/WO{2 Za57M2Bm(c oww؆ߢ& =y x@NZ$|g[t Y4@(Tlzcfۇi .2CJ2YCNz&nWDd'`)%"O CO⮀+k L4QBPzCQNw`XO *<*lc&T2Κ~.mԨ NR Ck@`/}^=s %<@ vh'J=HSkt{*F6Ğ8p[%|F=KZݭKE9ߊےmmklNc)Zث~k.@AB{({cL mJ3|H@|% LrVpDec)}oA:9 Pd%CT׮qunZe>t&!g}Ϫtzrrc +nA;fJL/-'GbJ+ X{OBYViW{YXD3 =nfVVz7ˎcFuE}*|i.< qKkr(R *T|Ƹ?"}{6޴`J{8Z[WCcG9{ aFN@0eLk))ZC3 Ny0,I*PpL 6bwFM9rnlj~+v##$^:+輼\IڹB׹Zyp<4\p;qlJbXF^fΟ>tZhCuщ3l!XZþ<(hPתjO-¿5x]U3g\yiQZ5k缕[K\Ϗ,٬5%"-U_n99h1f16j?1S Ai}uB0))&nL:g[ HdDPYv~XXM޴uE;c/1{\E3R%йD3Fk m[ ]0i@( Bs#(sjJɡ -9~ c mpxxu D`::vqQuwrdr1tvaD+D99/-: .PlC}}նm5xA@6h$9Xeѿ?,49J86>HX_ :Wo ¦'mJ z|`:k¯I\&D^T;sd0SI/x6K+.AV Qqh*B+d37h0FTb/@4 gya>f6hfҩ[?@sj 3kt>tۣZDzЕpZI"Fմv6PkcS]Pɭ YyX+\nt+LتCM,V`Wu|+q?կA:ڷ? ssA2Q~; ݞLcFk뻮ATJV(HLO%Mg !lʤ/d_yN`4>J0R!5.Qwhݮjx_MGPFT^<6*5X7q'44V&va+5ۭ Mhk2h0}uljւShSUhX}s^#BaK-AbQ/_at\ae|M[y-Iҩ|T^h:?b}pT3-[(!C5TQںӠ5,|hK'm/?gxoo_"A(4T~B8_/$Y'H}}!b2RzdNq)i0HWYOB ngg AߗC~OmЬ/Ky DP-bdoGD%.U?%oFm̈́US"^_]P)v=f<>?'+fmQo< {"Կb&[^W>Dr#C(PG8B @\-Nh,ao.&Wt"Gдk'w !i'CK-ڡ\$[U!0ƞױN_GOKzS#9C.seؘ*LT{e7P*)vKhfva0-)GH(qKt `Zw]wSѝ|m;;,$qF/sy;E>V!"W@c8O*3NvGܻ]Vq6 k-CR"MIz h&Q^_ߞ[`/7\?M7ʻUit=N$pH.cG[VښODx#HၜaW1 _+UPgs0Ff3bV;"!D:Qæf?33]D.пԫj_I KrhX@ROh]`P8م*$I=d;ḋZOlϥyyޟ Mm^f}dk-L%C~HзJB~\h;!Bɢ)&vs+OCpCCRP-[ d/L惰b\]Gb/=u[" SsY9TS;֕_IdY &/i˗ (Uj| =ܵQ!XJb{|H)LB S1^)EMSh7?LkW-u 4'ak|[,?ΞIt+)u VG+9CWM"zb\- %(}K)ӊ?]۫s 'ώL=ᆹQEWOcIz~en/.R=-u=Xs+toC;2uħLo[R|V! GKkBYI('iyNqDfśM0 `lpW!Sp X CJ –9a|o16a>xnemCY_ ~k~2+Qlj@.Ug!+nu8]h<5>#pgy * J_ũ?#y] )xHCcs۝4qgZ*f4.9/Gpo)ۼ S∥~XKkJ,oX& j 8DڿiA, icρ/ݿaC ]ZBMwƒX d2 e4߀jkJ^@OuOV,,vdz֭ܢ9M^UdTe UѶb3jk׼d g,FA#f~NՍjW3'|<:pĕ/0G]K"3tFIve&~ K JB7:%:Ͻ>J$)@#k'ԿUQO!?CV83,F+Wi2Qq>w@I嫅ܐ;}"GU©n.7bQfF\H-#hMujo(:8:Od7a*}NuԊiW3N:' s(04I/߿LoOh8,yFq%@Q2+Hm5c.pd8U7)$9yxI>Sz9#Svn&jΌPo%wûkCHzl1Ј}>$GA2EK )Z~fI%췞8@;v@ȴ"7qgCQ4čANyTB7lK:d]v9FW6W8f/'YVP@eo37v%/XOa %?Z7<6k׈+sb,UJ/u5U_x5{.+}]3`G`_\}7ͷ収J?zl^ m(G68 NչhiТnfɤSSWy)ߊJN"`RäD|l.죽8ّb{U*v1|;ʃ3 ZCǪ5ރ5.BG^҅>cF0λӵx_>R,ҿFi5/1?]N.8襙&@+H? s l Bsa3D R#17+pkB~SM`ڂ.Mg73p+i=Qb`,ѽ' {ZS(!=*cΑYjF,^tiÁ5JNJ<7qFpn_wZȏhKwUTGH/"Ґ"] =[sA.?iBV,Mt`9{N~]3׏S(O&x_ms G\A5?XAޱ3E gx= '+QL0ʩhXO^< 7ߡyiTOW cq]QcVm6{gq[ ovf@"S@ܱFj(is#&fۛj2_S샖Ha%t}MGIOa C̣7 8߆{0#{LZ#֗@fc!^yHX0M7l \vW+AL6PpMUޛ ̼PPfm b*.#'Ɨ_&U%ET =@((|odQ\EX&Wڑ.(JN_+0"IPI!%[ӐQH7!\y ,BkxR5> h u.aQEn Oi|2&.O:e`Û1I<D`ꨘxJB.ʿI/%Qcl`(Rq3Ww9BuA.;3@ Η?hф^:%e jֱX݅ADbg)B65bd.KHuP 8^A1t!"[TЃ|>dgg\8[.,xS? QG"W""5rO7VZK9YkSևWw MJ^\Lp+ r0e'UM BjԮx" jl_$ʗ%nMl錄g#N*XcF;7Jwoυak=_EL-@eV60-/<B9pu ]%?.{W i>ihYYзz\`&hλ7T 8N @7|+c9r]!"z ]bp[CdSg5Z2RXb*E9(vz}l'1ݗ7Н`:9WY[p=$6ؾ@M. etxم~0R)cbnFdvGE0D)r7ÑL+V8E/S2 @r7@U)U-.䲴6Wӎ9뮁5͊pwS˕2'j93BADUd6QJ[H~F;Fùd8GY7U1}B'ܷ"p(ԉ4D ֈ`U8v ZjZo'b~LJFIT#&呔",ף%A~ -]g\ /O fϧ~yESa.Y:Tϩl<&Ȣ8l;aIULԕ2 0 W! V++Dyğ > aKQ 2)O$W5`Zㄊ!FT}Ҡ;=3ir؈,Z4dO1p ⬤[]³J0 3. ǤC"Zk+DLjYC[.w7k`6Snzm5#+aR^HևZ,Ú!c$ڥ) 6qbpN8͸|a9GgL-2HH#~4hQLox&`42ޅDvyn)gݹ3(KCK&XDoLh%íe$l Pi|e&0"Ev㏑;Wz;ndSOYA-W d\U'g0҂<1 ۋ:,NM]E+@$.F^s@A9rr8Avv=`9YTԓLT%փ xz(FoAwBGbsf85qe ص!`c9'pd.?VfWM1!B?ǝ\t ^;!1 seY;)\,X=] @ٛqer/"DPg݄zx:o Ga-ЪO kAW#=̷rD IY^EqJ)7#+=VxXkgKʷ}ׇCͽ% Ũym1:bAA;îP( se 9_9x-H?t;Qp;wVnháeDf~U)[ԝr{eծ!Y9L&{rW Z#rKV53I|ieh$+Ԍ[|;ckfRU4PMMWH B|\C pjS7FIHDܾ},T.,{?)EkMC]ߔRGʤ~Ta8Bv~6Q=Ĵ{8q< (n˚;YRH.tUZH3Ą^7Y )VrQvo8y9};g~T>@n %E?9fP?ڮ#yDfu+`'2+FBّ}q]m+܊r MeW\Lԉ+h`d MCA1噤HlSP#S/$jV,K JOܮg<`Օ/` ߞʉgz‰Õ9:k%y18)ג8je!(:)b!sb9QeJ+6xUkO"X2i>*԰Ҝ"o:32o|589uJ`"QÞM_ji~>FLVDZNp]6ym\6(U:dzP(߁TR4UҳSV.z8N/UPx05_ssC_+] OslLa~܏ ȧE{N[ pd@m݇zmߘF/w(off:IRMkV$?aY v.nvt^n:"lqw)I"87*Ľ5dߋBhm⨁@&zQ<^!#[Mߧ6*VVIeNU5iY*̸ t DxT.ZLʧQpO[|O$s?džw-?b'WXMu*=!} B9TYFΟųvW2NGwVۈZR7ֿ$k@$he +#r^jA2Yx{9[H攧{՛)S &7xWL=Ņ-_ [<9a44F`6,niFc?gȤEJ>l Y#]_q m1Ja:UKCF8z\W%w VtTP:6AЄ3'DR]++6#'k/~Jᡎ%a_PJ;CY᷀u3Y3=qS)S쥠26QmYWx24tOu37XytSi%Ր {`x^b1ʭUk IڸmӖ_D!TEϖѺ(f<ɐ9cw_C#68sq`g^[6HXc7Ͽ_ }Z; #[쫱 +ܳ\#Zح zq#ei?/=*َ[Ot]Tт.xQ73M3v$u[˟cv_WAs{-Oʀ۱=A*3 dq|=@s+~)~H+uq3她=VLPa/Mܳ,ɨ #츲;2#) 6i Kд]puJGP͍M)3Y.gϥpCx,r9v W&ǒꪰ&IP[a}@gY%U7R>;g%>]3y4y> Df ['ETLGSdhxK-ajEq:M QF<"i+.tuNXwV_6- &yx\iE`ϓBdyn s+,J󬞻c|;Ts ^ȳNBL!*Ep[e18T$?{XdeG6Q*X=:J2me2e.`3fj-]<3@7~~WڣQ&mzTϼnfslYNJ1||fܼg(T8`8uE-ԹrlY.#v"wzm|ZoTez˿%?@9eI[ͦݼBNy}[~.{)Wb/o꘢*y37?6au܁ylJvr/iPڇSfx`9|KB#BA1:jP; Nתx܁D`z7K94hv! ([G: vn#R8k|%"RGBV9~9Κ <τMg7"ߞ11bI?QC3pza[tߜ%gJ k_4$3jCcܫyL˴ S>bP AU*tk&>kiW M.PKD,.;EbӉ&lKؒQNQuUb@7I"E0.=虨i nK/w}C%74YخI)/5Nu}S]s&3Na\ =A=BH6ff ՟mkE8\}zح"%V!QU8HwJ(:좻WGi>TςȂ_yoaH n α3-Þ)v vcWMf$  A 8(M ⬹bL қ;SN洿7"n$*^7D6ѵi)'Q1DjMt%d^b*mV*&nʁqSSOnac" gſPRQDj%'~,.a?h;yA&^NWǏ˖,A"K_>]-h&*!FF@w֡4oanQ *\t|YwK 5OVo_#eXMGݬŌXCk+-h⺉09 q9|"Q =8wݳYCTbGvE>QLOp~+`il=5.Ni$ᄶl=嚡I߃-X- >&z)WIy)r8g] ;Ŗ7 W,qM`_f_0#IR/͊KGXigXeFJ#W-s*hla~3m5(LMN:GN/ ȭubMp^% T _8ITA'Y6ĞXe|KI߫<WNE&A3l=ЉΘZ? ^ma Xzw;;vec "u;h6A @ao-EF, OP$y\z|K@\J53yJQ%A&30?O_[$,5bF͎bC>9˙&zNf\|7[a{SR!+ZN'g#t`yڣ>!g!ʏБC}LXܨ okgY6΢]/saei/!n\R\,7KN ZI ".OʹOY `R€$Iȡ"C.TpۚɜE_$jؾˡs%JI5^l+auٓeۯ=>-#IzX~Sh)S*y/g#q"$_YR{ -#P(w:p>}"]WXY R|coKit$ʂf>n[!\H,K[tK2ۼ tyKԢV zgBb-HHQ3S=X"Uj>ɈRHnZdN|{Wd=<_M~y / h`Q˞YaضoH*5B,I6qY!>ƹ&#%J0S;c|Z32DJĊA 2&#+Ejbc,χ춷â[\e=fv\]l)y!|weJA .sREy+F k6 $,$7 1b Sկ3*Mw}e?2쒔w<ຩ޺N*.eK)9^LWǒG4rA/,];3UD|5's_jEp9Z:92%~i55Ro'{/!þ&yCvq <Cb=+@뵓"ƵTÁ8d® j#},B sSyE$`MĤȓN睔*_\6LdrNbXM5ҡm CJvךZeSBBkd}H-PtǠ:#zLS"B4W^pw>q9ެq}VNU%炎>r!30`<%>"2Kc;J+~JcdGxhU{IH"fLӫiǔҪ?+N 3 VӧT!)BUB2[#9f&6VaUIHˎ·,aԋ<Ӗk$# f8O' 8sc QT~1%lqə[f;6͍ e:uA,6& /N8o"YϢs*utTԯãU7f#1`6ZrHOݙ:?HN/4ayHWCͼJ+ ZHn|# K1$C 8.]H\/~ž'ΛAj~~~8!}?SK!/ ۇy%&qؿ P/7Bflcn0"o`GnR׏E ET1Z7hn6OZ/D?cۖrl\/0d CGCO«vfQC,=)]Ʌ|RW$p p#ڪ)auc&az]+W{XTv֍[e% 1In^X M#966ʁ !1րQ:شۢM : Y{ xjX+f;q5T^dH5INO6dк~ )kPM)JNWrܭ͋P ֑&a*ցH$P/KN ,(2vʂG9p$I.؄!H$?Ha߅$RջL2u2`%={.L+Ѝhm:-WoΛcS3H+c|d @cʔ!sҮ[^`T@mc2h}"@N!@_ߒ=eNÁZ큦S3S^/^-%D6e.䔉WtEr&?\[8W+1=w7 hY-_qjdSQ]sз:6LLN.֨{C9VX x̛^d(@ɀTkt<yLQ|ShOؘ-01Xvc2zߚC}Y()W\)"rZ8.3@MOfVaSoRsU? &pR ?!Ԩ]_.,(P1!R=ǫ,GO?i#Six-qipR>8šo.L L'CڒhPD9%| @UG6Q{e_`eˢu9<ߧ,n!5?Y@FªsYքM#Ђ=e@S<{_«+3cD"8p{y iMzO6K$?{#4`x^H3<B .Kݢ_/"S>U)$kNQlU}6cQE0zb.T>qx*Fz*1cr \o>t/㞝HB5rssbz#/ ݿDF9K<>Ck*U'O]2 ʟh01 ʖ@ j"P;_6|)Du_|M-*͠Tdm$!ev{¦Z }j(BF #oDuȯ&A5 hfW:y.V)e-- @W(w{Ar@c5TK ;}5o܍amֽfV= iY 6\wt4oɃ&*tR@?>>BzQĉ62Y=hy7E'W J2zhU;|NT?<.t⡼ȋ*3CDL)N1I!ũ `X pr09W<+"{.'۝),tpF q+0 Hᤝ68q:5IR :wudp@+$"^ l \pW|+:i}ZJD%P yvg}"U% >[Ż 2o~MXc2ژ!FwJ5-5*2 éܾ0 ?~*tY|işH`[]nn?&mӄ#P1tO^xᔭ\X66\Pj NĬnTgeTx-OmȠDjc3k8ny"ڡ4$CTy,dG$yes"̍kxnSpwBՈ>Lb*npۆ2B3}\r)@DgĚ!hgLB{?lSDwG(,Z"f+?*fvތ<ʶa̗@>+x|,깮>? M<#(>)]Y<80gxvuEFty)vT[/9*C_EQOQWtl9B oӭ9fdo4hb9QWKeuFk v$rB|^"mq)>b[;[Ӯ¥:M+>00\EÓ,vs “,xy!w]nMB62~mZ1, 4 .- ^G¢$aU fU3^M}O0kh(ixoITZDZXTeb\:D>l]gZyoOuG(\9NA ^y_Ip-`ja,ئ(X4 q~y<ϑ_=z{ɜꐏ9nQ9CP9ji_@<ԛ³1' *̕ו'ٹdaNȌY#d2eŧla\[)TL7I*K\~"Dtieu:: Qz(ep͊whMWy>Lu =QJ?ׅ!%Q 9fwerU!;1R)C> k_6B\Vtmu jϳ $B.w` S,!+ҤqsWSuf {MM+Tl~嚙.pxg&>&ɭ3*FXs "QJh7છ۪ +K_:%^,EMm:s]g:34gM=*j1{RtKP#B+6bm"Eh{>ǍO$%4L|t07dzw9XQ{جd^젗  $l (FȉE+9gLztB1|\.JvL @C X_"RSp]37X=5X9ߗ$yQk1AX?jkHgfm"Ct껻0[J}^NkUb r5 /@WCߋ6"3O KB^3rUMgOx,~E[_3f5?-nhB_WC.)"x%ǫǿ΢ #7 P d{a?$8쟃bV!ٰa|6X׎'Sg^x{o0A6u* .ҁG]+ƨ0@PcE+!>S1H2ioo: vצ9kKM )M;±z*呗 *I4)^*zN- ll7dRZӢhctb#,QJXNδkeQgW74MwdHF:4Dg=)cO-?aNY-FOݱ(.SӝX!Z~EL:3e /3PTm },F?t[Qk2\:ۍu=c}\0cE?1{#B|xy8<,e`K5 9۞&7w+faCt|b{/އ(]:h޷ZiFE .X-ʋa)ce,肎\z\<^lRƃ|l2`Jf }J5lӷI:"6/t2~VڲE\sW0_BӦdK;fuKl+n]W0ٓn;jٓ U"yA,?'F8O[7KC qqKįt&z>:+7衿ݤMJ)_5mkfbJ@2aCqLS)zy`:yJVDT^'_\zE -a'WޫǢZft&Li0mkQ-1AOSKaf'eK_& {{2QP-a6W I L~{`vUPmk@&r 88V!<ZooPw]*Icupl^sC wO+4b%m%J݌K<¼>g31FRb2"_wp1.d"fXs^eNojŃI$G|*rJHg,+gfi#+%#vۉ߸ls("LjOi#"}B;gƃh˕}V|^y{P?v pä9֊3{+x"(sDX\yݜަwaS?oo9NGJEO:ȓnqVq.^' 7 s~L 1-=]x" *7hO}F?{ژ݉ooRy p(u{5X??k`Rh2A2PO!@ K42V< 嶺ˬDO cpxݠ囄~OKn9-XjnL ٌӁ߮-l frS{;xSRB]_qam <4S"z0|p?!jfDtTNUQKåDW[0e WP‹)UuMj7yO=uC}rn\lGPkRa:OZ{=tJA 賽wkdF8Qm)$F'G,9H/o$$XNAhRpF"4jH::..RY4}>7T6 ujfN[95ssYK^CKT턗pZ%lxOPy埒ȹiå&^`^OH@ymhrúm^Wa(C/){XG0k)^+öh v2mxk=ks}gAW(gP&($\WDɬ(LR2E詸t. nUg/Vo*W)LP0V TRr-H1[؛A&]~#/HqoI[*X9BD~p͂OK*6@1Be>.oAЀTp>2;iAVL۪DY@Ӳ9A>k=w!!|jm8M@l GBC],|m=."͊0Ih~rXLi2"T s1)LjA3ZP3 IQ؁5ᒨ  rM?e;UQ>PZfkit=4tE&c* <~jvT~ PP r-(-tw <1WNac^v'[eES&:oj-BLn~%2ObJ6Ak\!*7$;/u[2 r .Z<6,#eҕI*@6::T\7fytm^WaR^2"d'[B3hg4h4B@q@"k-6E6JA%#\ש/TT;72`8't2+/6{9Z;5ak_>_9xmSYˎ:ayy{{xY}C=/뼱?Xf\-;/vMC b(@44Uoeq{bbgd>|4М;-5fpZڞEhM wz{sVT&݌<ҙ62cB2Hxs3]k'Z$AyG'K=𷴠gUUB`JRxk=U7=~`,#U*f/(\*{p C>~W3j$ х>]P" ;{{+$P_Z`aCq&8`,o^2ɵ<H@n&,ʪ|Kti&CPq ==y #;?G=\Nꗘ5a$㖠~r:_IDN,*/͋땮GNA,ph|nD{'E =-/NEsE=H  52[)c*Xד7̠#i{j~+?ՁXWX5lQkā$"( ̺vE.246〷_C\u00<  i9!S+4ķ&2 ݄ i1`w1?bo^$2ɟptmZ\t$<++LT#!aT]dxS9D-'s,_hya.m>hP@NQ/ $,C̨"Vc z?O=VVҍlu "!Wӡc,X`Hot/rg|$`v6.&Ҡ1Y$>ob)|}%PB$I<" DCH^>IADC&ehmp%h?4\֯rA_2o6V7ghu [ӥpG>"I1>W'G7|8@.i%=%ˮSMGJ Zv֓N%ղ| W@ƀn8tG#kZmYb"m]תAed]:;*QmAu6}RbsLHq(G#la+E(Rul0k^뫪#6TM3i[uOyb$$[)=FpPp JȦb֘L.kۦohO촐.yc:seXCvbacϦYIhҩwm֙v[NW=,`S EJ",Хn۞Zp2ĕQ䮾Xff-LUV81zd$tGRRhwLK˃@c]:螣oFIW+ !-W֥uGNt V !ht,ܥbW.Ylm/y>Zݟ$ LT8n~~As"ZY E{YjU-tqdwЂcD\u1Dt4x !X5 @WՅVX(j&ayrDY4@^w GG҂ ˨lx@  $d .DvZS4rIu!N_d ܿ_Y\*c~C-GUaK.́+9VsշG]00O( UOO;?cgzK4 VȿFmWu6>$]ib !Z2d`wȃLn-Z**iq\ k_>' pj_U^[jN%(#)m7 Uܻ[A`Al{v '1OUxb>2*/Gv-~ _v/@U=tg v6s`tg?6O<ΏZ+¨m'*qY` MSzR#y!符3XgPBQr/T?ElOWo Oy ]hJ=<媰T YWJTܶQ+$ EuUn:HMJͽEuJ%1IwD1e2566Y;N BH6kY=}ӌ)W줝yYb7^B`0?YTI$-` BnwJk*`(x }S*ր>v󎾴rFOn{)|⎍m3 z1 d {sH:%EefԈ *Tc3@hCDW^ qt+FLD5,:3ΈV*zY jL TpWuq#cND3+ F6ug|̃Rf (0W,R ar:qx݌owcz G5A?1kg^ĕal\ i <ɝ9fHe5Ot2b6C̿mieCȉpunΈ7ﻸL$q92 =BsqX5:5<gQ[Kڪ]|PorI,h3r[jbG?k-/^建yEG$*RTηa)8$CzPCD= (n f2Cp1v=:]ؙ(X밞c93@X OD瘐ڇurΧ[Rs(iB %$gWY[?aI纼v/:Z! CC}H1"U䵓7S5/#(I:x`"c'-14$ڊ3bM fF.MΕ]ZE߿M0`~5clv &=!sE.0,wv廒X}F`ֿɁ#ٕp*^(&j蟛A|2}w)t=BҮ[c CL4]&٘`b[$H>Ա++SOzyK2es&!k st᫚ϫ2b ˨ 㮬fꊴi4.׀1< 4^M ~;a.3[("gA^n&[=揷Z/f-@7Bh~Y Ps]Oy%;19YaLqMdkh1J IEYSA^=&#֟ɲV8VJͬ9G*-AIA<iN{zF4mbp^=5$sb%/xw n]-JP<+еt Hf1 ֤񣯒N1$p}Ay{O#޻B`ЧONbHAr&sEn̼쇭e'JعsmЯ-dJiya5G70 wO_濧2YNC p%BoZfK^[U|.~5(d=N?Fw֟r8@i]04hpeBg$  ?Y֬[3+>4bڊPTWꨚZK]>^? }op-mZ8[ewD(ߟ{#3I> `( 12T6| % s9Coʄ|MX03ɀXԄa1RܪRRJe:v0,tp MI]&U(&KPrZ8hlpff_V ¥82ܡ@ź1>6 t@P#8ڦ # = vd3ݟ(^Mt~ZkCZYGC$_ƴVC;mM: L硱8frGrtR#vo=Xل9K"{}2 ^f9|mZw@Fҋv9)xZp?Ir'Z[ jݎM}6O/އ2V$pcDm\0!@pd727G2~:1_'|x8eRLJ\i0+=Eȃ B aď_1 x<&|^FdDN\',z҄4$c+C0>\ j;>.ZJ%,=ԓ:"i+2xzPP7c ))dlySjfm8slPL4G&֞qrɇQ~FE5h\oT;ZQSzj9xXucT=q[=WaH3]iE۲ OEhCD8rx1 X%/=B=I}][zw1{6Mժq$ {QGM9'-(+F %\ff1#}»VpQD0VƤ &nPgKR޻@c&mCqQ$6dָ7 tڞIT=ˮ=@=)z ${a@)[,uk̂-~% ,Y9D;}B"^KFk8>=x" t7X;[[#V}V;ω,J˯BctI1X{eɶ4& x<7RJrQtl@Y Ᏼ2X|*^qønd^enym#[M»@M m OIk]^KpI(ASvdXha9dO-XYwL՟aũxI6Vc ?Ϗ%U\w } x??pl`fdž3saKXkq0탍֥629jak`>"t}k c0V@_ǹ[׸ߡ!֌:6R;u:{L#+:,Y¼TU^ɅP! L.u\ij>Rh!Q+#ۯY_Qҁ]D ihw}7 Lg:K,Ru"VswPp36 Pb(*~mHa2bpNն1G @C)X[MOWg|U/̲v i!YiюHNm 3M"*˩wi~VZ[kˏA]CK!+!5CIR8(Uh/ >w}ȷ'{Y381;b;fمXR2@9k._C0cuIp7HUd3X|5zTgipڡakPH "hi30j`ۗSG{ݶ5nl}0(?>1l0X>5og_K9\Up r w`rz๚fO >p`NϝAl<wlnצ|DNy[LSn&wQ"[bj;(ѭ|uԿQl.JK3 % & O4pިмrDX)@`d\`80MV~[,Hi`u geą`* k i?)}8Fg6Mc (K=rj!ii%Yq➏ΰeU} W9M7sn_6<2׍55$~5^xc)^0gkf4&_Rӟ? AV^$dmUZsϟc&·.x?~ij-kKkK-1[dhU,}xt`P#]^ VHV"O&{˲d0揥@>injʟ2\N dz/~U0oܪxUuqY|_ҘJԸQ48+@>64ev3&%,WOC)FVq\Qe}C402ԩ "gfEDRvx1l;v.HD5 +t! ס`_9ڤXwiꄪ) p܋j*rU4]c>1)f8QPW7'RLAJ=$'L~.S^> IF[i6腡tXDڥ{+,Fµ9@ =v_.OI"m_^姞jgfgJ3uPV*Z\1 oJ7bqd~-3հk{- *)ڰ{m(DW~,.p#&y:Oʊ(c[X,/kj jj1@F/( 9ޥP‹RY qIsJwVDهEkg&{0$wÍfzJA]i`bކVW[1leB00``{@&qY< urWt7 "|1@A-tZwtb`d\E9]9)PH|v0zzӟttzdmx(|eY ɾxѱg`=hJz< H{2ގvKo4% u>zgKqZ7xҭ8A6S]żsY.<%iP pMBb*58ɼͮ9moy) Xְ >9JKyǼɪ񧿂۶İph @C*2zY ؎z?OwҼU9׷vNmM^qVT$ЧG˭KÈsgB sZ#Za`!Lz*^ "lMw3= (h|P[ԒLo=`Q2S#(7k8Mփ=FBXl1jU^k+z!C Kp$ld\oNMmzzyqS6pl?!lf +auwQip?GSh .GeȽ=WϘO0Ud,*YOLA .M﵍6j㹒sz}=y^U`ԧKG5 +\qrB4J7RsR:}#(lqZnΪ*`s<Iŵ*k*.dKS/<2L98DeO5w7[a&@ `e.DAI[uhFb*D\4XG5~ɹ{LeV,}1 C)6(B%Yfq긑}gPH^D)3+P*QMXE._]"lgSJ$5V`܎/>u^yh!P׹$ԺR hʊŀcs*64Vp6Kǭ}y7z([xOK=?}؂w2(cR=QU=XZ!h>ialƚ0y3+Y{GhGDh>#^bdɦ swzFC?t&_]#y%ncN83x4(=ӘuL2RCX@s_dwwrg" D#gc$ {卶۱Py ThRȞG>,QFߒyVZ'xniyW//$Ny E|^:#xdJ# DTL,xwVscNj+~Z33"4ͮ u9 Pc㳺?ɒMp7@JۙJրxڠH-DƎK^>BBo e -blF.Pm@VIIHhz,M.oݩzBRB6#^|gw7g|Xm>:.6˲dzT7qUl\|]9 9'\NHL{ptfTd춢G)9yBƽ< rl\J!j/0O.gU`#|,8]:7kd cox>[B9#pttװ67|}pe]& ^jKB2'Fm;l)J!<9waXiX$?&?Y9nM>Ft L,'YlIE݈z\W FQJ4Du_F@z,P94p|oP{R_1LӴѲ,3Kc $4?'j!CVgODgX)T)e}t#=ǻPg>; x[ JwKW0&WbI7ϵD-&Luo{(p2$39t U +B12бzp]#wz]MD9ʕ,_,BD!]\9[OJ'[*#fk.VrF-h#)'0 @M t|u$]F9QN"W ճDڣ6sd1r{;|h6QqM}Y )uGS20/8wH 3iQPoTUKL}} xev_|~F^߶~8$>@n]g)91GX*\p=ZCCrzU:M5=R/I >1٢-a'Z `HL< ҬHemJT#{uu5E, |,_<_39fF8s 63 V |:HEOoCDxeX) _e qoZgb< cd.JB9~ry'jL.b YI@^; H Cvc8y"Gk l*3l9j|kqC&?O4<2IWL" T#iM?25FFr~]]zM\bDs`{ī߯6N=p*_7*[ FT/ *r_iOȳLif761J*|EVl׬;)>l!z#3$#! Pp%[[#6bkhHzbԦho?z:_wicl}wqIov0`?taŮZ4" v|SlY:q״#pZ߳ttZ&7_6McBks83m)\{y죖^BwAV K>!EѸ8XY)WfN'ݧNGq4~TtFx'eӄ[tBBo ir Ps#oy|t'J%MjԜ\}4|uJE: ڦ@%~RӮ )A>~alAO]5z5lCNAOW5æPt! }mh[Y4P}*fԥ.#hܔؼhQo ȞU2?$Mֻyfe+-BW3٘1}*A!A7IIznt4gBWT܈aCn(4-Oĩ/$q:qmgBCC(g&>>FCFTpEpe3'c8 m2\3CBǑ";{g Oc }f|;c/~k] W=:05RO] rGmLz coU8]z!R`ՅTbOb`D^R2 xb-?W4{w7[]L c\9y/Z[pA`YTڞfcBq&Gda-L ȰȞZpӅ!^Et}Jm$]k]yf mo&~Al#Ga!4WmnP<iQyy:ݶA$1r-y!/>ˠK=n (qume2md.]Xos !/ۨ AfxqK& =[ü+*oV535|w91(Re7dY0`kÈ{E9<3 4iI@= &7a=eIvK4t2xG.`ӱTf0Ny.qӈ="V0|=.h'("&&Kf<KGlijT}0S|AeGilUb{dDil,bt^))MHBR ?z푢xZȷ0HŔ'= nu #0h : H߭j0 i|߅ MM*Ìޒr8ҍ/M ebܸ7)T?19bDgD-փ@~w*P˦&/O7%vz8v?~#GGNr!5]1]pMkf>OWi#~86}w i')} TR`o4w`6d;8@27Lƹl^£c)TH9LefTR&dK, :ꔅsAK,J&(i[ .qQ䈟F,8v-Ϫ omY$V y^r .l̠&WifН~OH++!qҽ+ ې/WqtmќlKP F>ų.q%)fLTk5)},1V#jջtRmc 4*(gC?]OL9!6Z\yKxH-~~ҩ^P13S.GUpڢIѐHCOÖ]XO||g?!gçCU J/ e^"ppkHbww(!U1o=$Զ-/߉ n1dY;爍2TE BC%ֺ\2*>.J7^yFuB%SQ?ĢCҹJ kHU#4@9sQ&,֬juM2EWeɋ;Z~Bw/am=w( w)X1[,?1ƋZ16]]xZ6:lN*eYB)c菒>=˒@cm=vr/W_/;@f݃v)! q7Hx3 M1ҿ(A~wŊ"B=ӷ{'Ԣ*_&s۴V+0Ff˜rNt!Tkp I8V!na{:eNTUeېk .QOuN0#rNC39.s$15[㯐/AJ4gq\5Sp 7z#<*Ze#;wѨc?PfR}42@NFbAh:Bcr7D8: arM Dr>64Cf>nd:tF6gufLj6v$S1@sTc5WP6UxcK̦ /n<}=vuĠoTyF|}(84'wl$?$:WHfઃf8q&.5EK \8y81t֝ʲ7.YGdǝW)4 P: '+Vl= tY<=Iם!o ر7LiZO|ϑ<3\H 5-8h+ڕ!+2ƽkM1e HHN%}8gʇCzNj>Xm >ڄfԭ&3Rvh ~cВVjuP h~N_uuo%@0C;QÐC3eF="v5ǨNWzbg3E'p"S E\;0|P<(ɹr,M U`BURD&0qN\߱ r2mk5CfNo ^3N\}ú:ĭ8ę|Esͭ<0(xK<\zRa âL~V6ոwmQߊκ?-#U<^nqoJVK:_/| H YF{7*Qh/^MA*v1X:’鳙 'SOΪC0Edf PlUPX,Mԉf$3bs>$ntw#6%(yA!1),[)7OE)5(t XsV1* B7%{0 _4ye}MK!Br.B *šjJh7}+PtH" 5{2h"?ft2n7$)da%ezpNvr2 lo8^#Bv(0Xrk^d2 ʢ3ޮ `O8iUo{52n=;-_W .+$ ()^RNχhejגJY`4ܺ+Ȭ*Ԏ7 tmO-L^+aD;H:Bךݩw##nWg;x?||م9yJb~4TXg{cŚ/UM_j&/'2#^$RհsBOJ)Zgbp>ޱ|j7N.]v GC!@%hAf] T. ac>`{D.lu`>D߽.5JB1ZBxZ~ G3Q"an:ɟ&U!3=}P"q2G_%z}M*dzW7(mH`߰v|I9r RgbXWP*ԪXGгkw ZOHZ34;L|,2޻'[DQr1ˣ[FU>*D!a3Bɫ?+oh?1&6eH*\ux= j,׽[zZ4'3J! b+VN ,\W&}Ӓ V Ry4̇9_yͽ Ȓ@F~C|=bJJwWh6ctw9!񫙩ްk(t2TRfu}fwuJ`ڢ#tsK _J=Ȉ MD-ܾ-DRa鄻9h }#+!2t)#2݆.CD,~ۗom=q{=ONϡ854&T`0V*e}F;X&^&HOβ73O6ZlI'e Yqx6zܟ S@+2k3aR %7Jxwt$ؓ&ۅI nЀ$7'A槨op ԏB۝Z~%@3Z kS BF_뫒5CsfteCz_ ]u'<s&o\\2(s^@C(}/Τ "'? ^i1:XSw;~dq_ȣi JvT>֣+̧:b Huj ,|- +mrCle_QgkjF*|ϫE!iNȥMW(K_ђl]إ섈`uIs;}^`eVP @o1*BpPF6<(~~x:c_F;X y<'8TB7|c&Z|H̶u5=1@%6ڶ_3#3@n2.TXa;Fw]ƇwKY+FQ%TQyRkF'P|mxkgkbP+ɲY35J|=놕GhS‘QyIN˸²ҸȐoEbܴ>N$?>Q r 8 (l Cع,A23# nUU(jga_Ĥ Y<޹g˦[ͷډ`]:\Ġ9iQ\nS0` ܢ[9A^B(AWB,Q:Ęኚ=3cRb H\p:@8Ӵҩr\iy1/A`BED8m5lR4Q@=2E@ ʦҗoN]4^kEcDM},_Qb YK[ \EfMc2T*B[N0FQD,579dU(FM_!7\`\UuUOo$$O#7%kVKRyEWRZ)4#ɕ򆸈 &Ε=Y3Dю2p. ?%6mrҿ>󭈚{Lrj6_D}@,S.6:Bfdbb3ZQ1foE.n)B7I.ʕ? "_-Ҩ 80'} v0]·ie!#Cl./ߍyC]7)AEfTisgK >jKjda%wXaې/ ' D=%[c\/Ecg"U \bjF^)jz[WWzb8ՅF~KzD0RV}hg}ȣX %=XPsHsmbۉzsDλ lotֆ㩟T9u12\Қ=]\J+ (r/z-6PhR)"Dfn]{e8OÖ|# n,A޲p@Hw^#}~'SZX0&`Vʲ?_O-Ng$4Gqpnh(VF5ț9'e#/J(r7N6}&MP=nY>lYY@X?[׬l*Hd}Lz,ʮ2ʩymՕheiq7xcɥFRe%D)_{4l1w @3oeXiϻy=jή) %-[O_İn2$"0اIGH-]- [)dH Uu1VGZhڙ.=gy ʝfP̌/c &/ҩ.dK+&h`ۅCKxg_y3Z8#9ٜzS ۈ"?,j&~׽B*)|玵.7َ`b*9}P1yi=Ɣ$:3&^PQ @ ;w㗆lX"&DMI'e4%THBS3Fy/V#CT@vQq*_6AˑLYOy:r} \ps5 +XpZ?sTb%(7N.o$8PPS$G- c'Ⱦ D"u Bc:|*BfUӂ7MU'OR~A92ȍ}#=/įQMkTEfJ $DwcX7{nt]͵Anbd=%H>0'2vӧIx"ɑ2+[2Ar0r{9] |C9nD] 07f-m{*Y@ϟcy>tMQj^e4KR&h-ıgϘbAWej8ZӪЀ߈RYa,] y5 x@<@j b'q<F  }!xc[Ɓ&ܰ=Ȟ!zt]]cbE*MEp31C^,)J@zBkpQ0 )j)HIx.hPXȃ^v!E {.z`TGMi!jc}"G.&Bh`efdxS-/k>ԹMJ"ԓ[($Rlh݃^wVJy9 !oyۢJ}fL ׎G^pi@R)}.1%z;E jfj$UWɐږ_" + 7午#0 -.-ƤC`} _WM+ZCMVtI NxY[>s&̲AZM4i(QCǟIU @Cp[ |ϥ O*<-a T%U-Zj]/T{].([ hqO | "*_Hk:7ܗPQkf8TbRI/́w`?3Xc38# J(yFcW$CAfҴLYI-/y֕Þp1fnsuP#Fк4=cy~^"%1\+"Wm} yHةZV omT12ޜí}-e(0ir 顑Bql>n"t~`)_%e^2O 6z*joNKRvB+[[Shп>U{Hӕf@AZgqؠJ J]K,iR# =(=rk{F1>mJlh0/O!qKS_0.R s!m#"j3wߟ֥pȔ歡!0`k\Z]8^3JstRTgB[aSKhw&^ڡ%EVm旫$mRWq`ki1 Ss` Ku.~zM-owQiA`9&~T}& ۥHcM5ɚWVA |&+7g:w-tY!QaO Jjmk y"φ-AiMl\-cLÍѿ4']奝Κ(*|bPC(]c9#gu˥Y(D*~>UVR% ! + VGqXtWj+dF_ۣJ%zMD#ds U#o05&~üCx~?= XQRF׫c8R;MTZƱ)?Ac葱B>+ۜLԹS*jԇUyp\!zx?035#[WAI` 4Tz &,JJd* Qѹs;Ԯ\E&AHqg`׷JA3PÜ].-A)dZ3:i2ސuX@kW̋+ B`P"^~DI$VD.qr+lsF"ĥNrb_94b%?̠bv&(\BVoAc>CqqLgo:|3#b]~= O)ħb0i9EJTD;LɄ'x~U_Y|PY=^s )|YYz[F\(30Qh'w$MSs싃xBm~=AAjԡE1J)SdBGᬥ>e_Bo0ᮏt:L)bJK"y &)p|f!ܸ/!2iEuzl9bh$ԳE,9;DH(AchGs'9^?`aj,*>+eUVH{L*'^/Ԯ5,8i:Klt{P=er({V@f'b4W_P(t·"yʥiDd era/ҏy ^* Eu7WαJ ,b+wA 1HrD-M:HsQw|^f (NzFuV Q]ڿkF"mKz2K÷Ҥ4= 2RnUÝr] NqD!J{:EFp1K1ڠzf=5bٵ#rvFrkgz@bz_fL˞ʶ 6PӞa 3_/fY~bph2Y4ȩc٫*M}6͌\<= \5M鸭D CzrYe.˾C˨'v~ta$/&dKq_q?QMܚI1ORL]Dwk1:+[ǎɳ96Z u9VDgcܙ/<"/B8߃&I5ʔP#F9gЦL(| #-j/F聳ȔOŊE3+aQYD_$fgA9%yC)rmz Ҩeαw;t9}->պ:DE2^C]w[!æG;A=lP4Ye_0D'J14GSW=d*selH6zk}ym7yy^4@U,5vpٷF)."LWʛ։~vp50&fzkA;&&QBr8<+ns廜e*46ESǛX߯~* r! a|h0#=IeLsnGX׌Ɵ `M#~jɻ`aŲAy Trw+_ÄqAA GI5~6#FAI$[}>B=> v4R/pM  lJno+.ѾPezIQ `Z4'ikL˄uA<@;!t@ܖCoe dR"JyG[B}c^Q寛f[%Nr ї`>xOuhuVi˫sQ*'PV<>|m}ܱ k66y;W I [*ӿ ;5mK#v >N[WzoU%ʼFd l B$>c+m=go޸rUn/X 'lP?sՎ~QfwL$rwy T!0Jq5lC,-ϧ_i@^ei,_Jzt!s/*Ns]\ȰIkTh|2H>anp:he!+{k^%AC[1Ξ=0NSQ%#40]F7YJ:LV3۴E,lB=iP d'd7e4|ضU YV+ѩtQXU t:SN{'1R"Q24AjXA9=9gzU~DIfMhqW58P!%f8+ 馁Q# -: }ݱ18͔,3-E1/l;=mM:LJ|A\lxD׳2KR`:[Vvm~MZ3kFqwtժHJaHSo1݅#X?tzbt赹4ޣ)݈{z~Z1Y fI c32UՎE⽓QxRerYT^~ D&lgTzƍ'")f5D-HlȋW,& ͈yb?)LdS :;I&+Hg&@ ?h3gw 09i2EG13ƺ4:5<tY_iMuT@/~4" 8{HH,kg$EmegV%SNŸc{RZ&X=f ݓ$e3QhSY/>:\y.,`CEo]7R%/`&4B{ȍ֏SddXQN͐@Ӽr" 0.H('vfq%įc_[h'~ YT]ЩUìo̢W>_bh;q-M\o4~"Y.*JF@Ru;W8`^%eKnsU(d,y>툈jvTft9 `0HDXl$6;yx^ب=Ez')"$Ev2!п[+u!{w0fk*"1jaU2ʝXe•yj\8_Dh#iuJÔC*jufT~g"x̚Va )k uzDsL4>Bu BP]}mrȑQ tdmhX`` #02DRR31za0~I)Dux:lYбokO{jm_@ @4|\v /uXSyY~{>Q~Ԫ p'9% u&qƒ!ؠ4B3+(D~>?$Jۺ HD7٫$++⎇=*:*p q$/8AgytG[f!`*i?A8"4LƄqCj̈sEWZbJLK/IO DzMP ,4ՁM')GIx"5+OJGEL YRFv5p)~,f[u@ܬٙ?!_Lnt¼OWø둨/>Ft9Q.5<5c4b.Kqt:k؞afM#UFū_=[2Ek鋯'NQ*gURycMAf\+v#IǮ vuXîD,йU2Bؼ.$;$ s^R0AM`õh2WH|C ($0\sbAt=0r0sn BQ#+!> Lhi# ~gRUV|Ch]_y B24(5mK6GoTנL ֐70< ,7O;GStk,@ {_eC1Y#;DmLx«)19 l~HM$pS!A ;]BI#8ƕղ5Ik2Ee 2=N13 jou>8^kS6{;H97(@6įmb>rf8euB:zHNd-4AD{lYr.b`U*Ig/U$vpp&B`s.,&=E#r-H2]tkע'>%LZ܇BZJK!FۈX\Vyp-v^:KjC,.?T-E2LbL|UzEp*D&(e( E+X0xSw 9ƒe`'X߫kۉs\u2Ɇ{'xX"ߘ̀҉m#lvhlnqlcE;1N㮴bay Ȕӂҿ%RWnƚn V5B}w#azZ},@ 2Uƭ?Z3#'m\{)@T"Wnzg&sľLPI L`Dp:qYUA|:2s3JOOeqp6qr+XGTpݴ9Xvfw͹9_ٔ8C,x+r>P+1Irp дوw +<~4מ?* }smj(6W ܫ\$APw+T$2S:lWBD*QЄV@Q(6[ԄM`Fޗ= 5pN0[5:TBu1ՖJ Wao˖y %Te6h"q FʉPPcwC.Cn+ %Mszd5k1h'@^">H }T7n(nj2zXՃb0 SOՙKLR߂A\^|(G* |0drl4wur{GDŽY`1Y>_FZ)uN- m}. '-k^kT>c 9V#@F ^cW925]xG<^nD%P(2BB`ocҷ q7<,0t"cP(pB' }?P&;}ʁ+ba|+Ȅ[K#8}z=m1G2;"f,Hn9pũY <߷*is50 Z o>U553;bf/gcy+,Ź?]1wlYK%G3.S=-6$z:`|>?`ZOc5k LF3~h['<4$xt!Gb"cetZPL ?Ybo3;8@ vB<7n'Rr1^s6Q,UǔE:ZE*̓ L߄߃oX̠'r K.{0ʋ&bwP>kb4òN} H7{e3XAoN'm5S5u xF1g>lS#(\QwV&P8*Akzӎ*'睶&-k_ݬ^<^ ^'e:nbVTbuĤp^nvꘟ'_i;kL>j $"I2ZG~X}E? VOaO_Bɚ^ݮS`ĐGrFH.)| Q!o*X0,qShooҀm; l%VꖻK fs~8/w{ټj(~g1 a [?McsA !_m sK1w)ӏ >O8'S螀c0y8@wQc7j#Aw:569o~#;z|ܬs&Dc:& hDyL.Cwt?n%+vn{Fo.5rNgybxåÂFAcQ\%AYI &qd&QR{: 5%,N.<ҒSg53GԀ A7 $XS[ui+Ԧ$,{6!I@8q=(ax>i!p'E% 5yR2nC:'N#>bg¡.;|;*A-c889ſQMK|LP d``yюAː9B.`#lg s+'!ڗ!gToޖ%a#2t1ѿ,_8i"þ 捤u U|FvH:R֏ {;Z] 2 fq6]XYE_跅֥T9K\ܝQhkdWhjZ4%5!,QN”w'{ń@ Y,e6&-oQ Uص"^b8 w} /6x˾ X͡ Ѕ??"dTjj 2O+F$ -|tHt~6:x.`A(y4v *Okl>v[E`Y9F'pN-5Q{}SBeTK`wBE1LMhm=ϾxAP|5O38|WdG0I?5S/*A3IWMWA=1mOb`z"Xݹ[ԏx;+ZH$"Ll&2 j̰/NI MRDhu-_]3!exswAAfM;}DU~.[:e{}r?1 Aud]<4g5cld8[3ڔEĔ݉aBkU447X,h Ѧ/ b9D.4jԑ)_ť\fPq|.NRu b4 yg&>|X(qCz+ HCzaDcJIn ¥p5:0Ԥ൵3q71$ϲ~iE$5&!S}Y*6j vet"^a+7ЇU1ۧ o2yH.u دӋu(f%]a]JfxOˡ҅OFU3yzLy C}aUr#7kRj LGn迏#~]wgi3` 87/S{'|WZ-?DW̕8Agv%5fm`M `MlYRuWCj<C}v0POF$>S$iה0-zMvX%QWjllj'2PWuՉu-~!wfFnc]aOH8xVKWSAƘ[9KKus| qWϗϚzWG2>CWKsgHXӏ?+<*L箶1_kzzG, OyIE14]۞[Wr9tIH'}9 H;hz r/I(vZpB(vԧm(0&(@4RNFR|ꚿi~q 1!a3K jKoKRcN>/zc_x849/gr:scM, xT K&-v3i,u)F\f|'I:/aB&CsjNbli6!!(oDHwxOjjQh͝bQe5z^H!S pĎRSS#8ųB/ *+Z&@2X5dm7_w;ȯ0΁{ e>iOEHWj&iOvW TlMض7D8iV543Ê Sl:hx00 Tn|ŅFBmˍ0Ɯ| #b{2$3‘菡}‘h78yJ43UBLOD,ˆWbAPါr"ai ;T fdmi41K]vvEo")&[뾼񴁡,<23q ΢b^VP{dt!@SrenϢ,r޴AchZrZ N8yc[Xw8>߱"$]`nH(*#h*5}n|>Lnf-" DtIB^aͨ3j OZ- xUj1ж#.rGY>Oc: +< vܱ请MU:Q(IHUm&S*MD<~+plRZE֋nm,̝~|t/V_X6*_\xӎ$^#ou#.7桇f3sנq1l1QۙNc?EYP,z5?(o]류WuJLw7 ٹw&#qXء{8$6 .ˋ#3!ʚAxW+vGVքEClih%/ðUCO!-t3Yx h,:*F9)KJA^BsU7ɻ50]MK:vk)Ԑ ?6q{!74PU!V'XɊqj6?v `mǯ -vB鶾D8v!zr9Ó3T 3P?]OLNBAzAn_*dp ߦgte  1t9̝~a!@[Nj//,8 /oUߕ6Z+:LMw"03Ƞ78JZXdU@Ζ-&]\ܸn*TX6nif!(5&N Ofkښ/>b!E 㮣;A4z1 +9 'Wi;+q@pjdDL6+JTżJOTi;2rL5lB(Ȭ;e[*!]WW{ZͳvPG5 u3Q_] lԃ\s8h. T٣(1mE۟ҽl"׊&م%(~7Eaem ŧ[j/8Ouol H[Oh{nVOO#ܮV&١ 񕜝{R?@U{+2JVmMXEЀ܇W+i %qU5@݋M( >lAd`@+ F|-=u}ܠ'S$Jb5L_&ybߧLT%Z.Kbf}@|O-ڝ|V<034^#*&VJ5<%[i+fNWkc ET^@|돛zjukṰXxSaoK VVEB4m2Y<ܤaI!d 00Z 0[uN$sڊOF^+?q;1Kr؝v0X9Tgpײ\v*9 Urݬ3lAh5"b2JS+ CJgӒˈ*_ÅE'?奲zDgDR@ÀJ ~;+vc+M&,鱔8:/,As_<XWjbɫ?dLW<^*?q(6Mt5hj5+ޚT70Gg[)5~oѮ @%!BEXS݆0-hDKI[7;VQJg\W7h=K ĉaAJ2g ҍOrd,U(}ut F4׸H*@%Ji|x Z1k[VDIw}MFJR=I!G'J3%#KNhAK-UH# fV ߩ<=Q70+`|ܖ?λ5jgBڣ8TtD졩F!~N !oa4Vgw˜PCX_eN32Jlka_V岛Rt,\ . [*] /3jSbghVFd[ :șDm%>Wmtl$tΘ,rP-8w-4QiBzi^®h<Hӈ$"Zd g3KII]7U Ox&\〙[@˞=z21E>д卆dyD7VM*], {e ,ar g˷9du~` FwܰBdL,6NJ;d-DIK]GzW2R4#T]ꦘCK):ߦsF'|f.Me.zl$Y֯l[ԘQ@xA"Zwͮ*{ziGvnNC?lثK]ѽ.;! ThBM'm3ېK,RgG2cbqQv\Ȼ2ZN5V~@_ hK@m^ȫNuMvj(~"7Sk9#>h1G!7|(2nD9Z|EbDOljN]?q?0ܯ+S~ ,ܩ5mDN54#ȰdZ em/D!/Fe<6Aᥛ8}!|rw={_rF\i:3݅TDa5JR=ФRÔ D*"@ILhMK <8Y'M qk4Aݙ ` ?~,4:'ު\60] ,\n?@\\piIcL6.270`jSOExoJ\0I'z>ZޱKxor.F1w] )fƵl6] 94+&3W4ɬóܙm,n iX䧇_ (]'\l"%iG: `3| O5n"IWa~4qTSU_Ainb\Buy% l:4)UtS65Okp}9@ 29W(e(zDNDon?0]V Im&rr<۰ 0Gj J8tBbgP% g5<]VTk hr:|  l=ꂨtÀr3iz֠tdlhlq;%u-38ڹ7@/>qNKҺbzL$rRl $o`U@)6&0 t#H.%h캢,]ınOi$b@euӸN~irէX ~[YUDa;Q`-gJ)e'*Veim2ȂxQ]Lt(hɄJg|W̯,>so_Kȋ. =ko7#R6n.NR6C7=Rz6AOҔwH@O@ Udxk0LyIфD}ng0Tkx %=SkQƁOcXvAхiG X0sƖ'!N }j<"GsY;"&NgK#4AٶH! 34yA6@x/}Ԃױ[uC̬9+=KqX& pc_9-VCpu>C׉bUuKa7!Jkrz`zG @jy`il \a}RaM$2\z i)?KԼmd⒬-Ll~TԫPŰDow` SnD"DCT+б`\ `k@FuS), H JCO"P,>Q/`9̧?qF(ڒk&Wo@w%޳cJ&48txevg5s}g7u+Ww{puМq^ˎxeO[{>ʶǩƽN., '^'ߝ@7Tʎmx/T3"}#M4'HGn 2I3Im&DUԒ@!XGֹW,P4}%4|?Yk5MsQ ^&R>' KZdIDl*gnojÁxGρYd4uB*UHﱎGAEt!Ѩ\:3.`/?JF&%$T 6@zoSg4fv e i>_A3K胿F/sqbdς ߄:t< 90gp( >▲4P1q`m.Gh͛{KQؽO C*#J4HMTNJZq]Kg*vUquIgHN;'G* |K9)4&ow액blhBQspRTh L"9ɤ{h10&2nX) "WxAIǘڴe aRѕnR17r[O>/`ٵ5C@1ˆ0jϜX?m4u9tx Ojeq#ES7X AS8m@ƈTfv;E4j +n*vC}/?(!zUKGCN;IM&PX0%D)[e>(H2?⿻1;s[z H4[YlO*-hOap!٭Db (Pei|b%{f) X^+J$945d*_\S#-Q 9㻳(\UtAo߸3~yTOpRDBWqSRe>9Jk+9"u>&j'bd8-^-L %w~$):.qAP)G@w߽/%}}M_Vm#}<<6զ $|uRοY F텴tO(ʲlYՠ !EfHay4+}KΟTmfCE|G-H4βv/vJ.?]úVp]h@ ]S9!Nz/Sy _܄KAש `r}hȠY"z{w ;3ٽ$ m4L ďߝަmH:oH'F?g8߷̅Mjz/s{?J]y7PJK?> If\6$KmKQП*V,_,$VScN܋ #O\oF:p"?Lu\ݿ,a~? + +u/ mtp3fxkN(aJP>I m9b^Q}? ߀j+"}s cƚԲXEf]F:bQsGW X2f?-}(yycEg^{ɖ/#4T*7̫99TZ^-LNl= M e#oдA2q75fsXR U )isVx&98l!!YwݿwU4Aހ6 e^4zL $*T7:*jlB͵4F'cnw2\Rccex|쪜- GNej:-֑*mޚ;@sdpuN}5]Qu{xF݃`@ Ji,+Pܧ rW5LKWhmP_E,mxfUhS?79leU2Z+9\A2|3Q9j5 A{׮=@kIF:8w]!MB0B7a_r<PJ3x'-@ipvbhk2+W l4* ih7ƥE(T|0*~V<>ͷ.Br]'!#(RI//vw}PVB J4v[X ỷH D˭mkK‚d Bg2! qi#5PQaՈx!{7/ ^ p\obP]Wv\&56͌/]mWEJLFjXfJXanE ?z7}!Q壧 +3# Ep Ti#<^:gɈ0?>K\몠9}.qz0%XFCHvaz]֎#t9z7ey_;6BE̦ 5^Ȣ_)ì1*ՑۢukhQT';ژghش щ8 Ͷ6eg%@a!Fp~V+pذH|äly AhYb{ 7{K {ޞcZ *vSR=Q隿7p5]aa1bDsݝx`n 6Y ʇ5P]<ެS:Xg1Zg^?`+ʏWd9$}*AEKDnYɿo K@uėQ7bZ-mňǶV{r>_0#?RjEݵyi;QV݊'E*cn0ym!^.chnWzfߤA\cBV?ߓa0*a͋)^hɩ.@(cխ-_ BcG}N1w-=^شR̛G۸g  eEv!u?h|@Q*[NTe9a^ِX v?@apȈ"1։W[|.B/V.UqoFA'ʞ/\A{-a̴߆@ ~guv=X͐5XINH})y "4m}B*F}D3e[`잩C:ǒJiSfpE_z2%EkGmB~R J4( 3- jҭ]5dpeBE-Ο('[ىy|D̀όο14wK4u:6, vPq'G %r?d9ۍX-EPཌྷyEBfDUrDZ@ÕĹ"SDUFɚPTn^p:1A2BI' tӮZ1k&2EMp5ƞi'k--њSٛ%m%^(:0g?LeYj X}$1e {7 Dx?v!Șo1_σ0=f=K_6Ͷ=)[Ѽb$cú׵ME{yO_C6d%h]0 l3~5 p>e]|nNk7C k k̐.oñ Ѓu4М/ANy JZ=ԧ)1HQǮ-UT7F?2uUl 75DL幀l]D>}6x|@|1EJC:XfFz_!|B 􈓅.Z&dS)&|2bRsV0Qv+K_B#NIBe<|%QDY)`\LC9/; I:nt@ &z џe$j+ i4=Z`QN^8u!ܱ> 6 V΋$,y=E@{=FVug &3;/:4W83ZC,Ȣ=qzT IXds*!kH$%RYUAQxgs}'$mnDDžXߒij.ŽLjlȦ$K{hq|4wx=ŽyxGXR 0X|єvy6exDVu5#$ٝ­XTb>I:P\^FϺ?i<836 J\Q'l\T)g4š'^[cY:octq ;n iˑs0'qpEr~ DV oH=M$0Rjf{`:j Q2C;AҸX]kh flrD^ /[D-rw"D q.,rc'\XU,1#ߒΔw)1uмz~;Wb,;z{Mla@eTL tT/#/mA50B&C/.sS,#E:6R{~;x"Ugc@PF6/sA\$ Pps,=vLL.[_Q9VylΎ6TJ5>Գ[q8%Ez#}\ݱ_amD̋n)B(APZ6{GQV8{D˃ݥU*T'uQz \Xdb |`=g ǛUB2݉Iq̟s`\16|*R);"]DtVFL?ѐNlQXe{^xCq>_2ے; CjԞ^l!1Xr?F Qx)U!5|!䂦 -ws:B`` $p6QsFXG.1[i2H{$UEU4ŢG `A/Yt&Oĩ5<Ȯft>@)H%oksZ:LHk˭ Rx DGdpqzCX>C/=6{!v<[9+La7K曌,Q;r86ԉ^VXPywxM|+wP+r=}=b2pPJ)z(O0Dw托FRa>.U+}/圴 c{!SZ9t6VjdtC)x3-1~K=B36&gYc"r/%" y+eDѯ|6Zs SH$ĔNcѕkJ,n# % J`-F+Ґm%08S3Dv$Ŝ1ݠƒ+>$f c`&3aW+'I{UBzXe=GTXV#]ks9^-Q(\q.vVH01;iN\4%+k2nq0vz~ /dB,xQ^̘o@7M+oa>/Hw95Wf\Y@#d3@[=E=U ioA }f"g,=O.HLirN >8pjEeő7 7_g|g:6yv|N{A*~lA!cX(Φr*K+3re'3bF!R.yy ;FB2o7ec"}R)lir;©Mִ9\fͮ!ש/7/d]v pe|"# :٪ȨXH@MouMTE~SjIˮk)B\HwQ>T4䥇nб"rozɧ>w-h$61t:ea}~htϩNHuѬ\8lk/V&/XJb ^+H.i8<2y Iǰ#kGwzůlӋ86D4k%JCK&Xi5=-;,JΣ^O=ηqG|az`(Mҕ'a%!vMk+Cb|2A'D6a#fAYCקw&HaPs[m[璖jE/ bT>@[2r/# -[L8Ofؠ2_qk4 w}.I 9$!p/l࿡@]è (_]*;m/" Aow7%q& M=lh&y Rа<ϚĸeV}d I2NIς"a.;Yq),șżSP\7%`n8&,X $7U+6 :.n͛bv im );^LwF`hd_3i]tճ e[L< 8|~'=պ}"Ria >f{.F]霝DImߣgURWG~qV(YY2^]:Nz%^4r. ,q,X-b~е:$f*ilAe7ׯ"!dr9'h.SF_Gۆ>q+z+h:D٨TwLŜLDm /эnÍKޞpq jmR(zLψ oҼ6l2)0APG4#s-HQ؆ZB_(VW-O<:p)E1?7}hG:Z=#^$X=/_ֈJ$Kȥ+=':A"G aKvt)niKhօf5nFX}0%yGZ#@[r~)`) 2tQR.繰ICf2e 7ZSzMxnGyyp=Q;`BG\f ]RxBR#L =m+)mQH ={Lj%Od:LX3غ~RK 7ѓgd 4DcHN6 zj־yYZ TLA&5:嗜_M31^cz#'#F.D圁mȆؘv? 7ťF3+yǐ {JNN$-,n|hHai@ wHq5EnJg.K=)I J?]\;Z 3F'Vn=e(AE/(}x-s'ZgC6x`vPcS"xISdb{HP<Eצjc i0=~ 7 J$Q#K'Ԍ\YvYJHK3 HoL[s:B?` j@Q< ,V@b AZj|/KYj[,-yD+Tohhɑh 7Nt6Vڌ>!%s!F)&rP+DI4^=KҪBE_ $-ܕM^:& bŻW Rq^ 91r S_R™$>+@xA&k/ŨMh!GHqէylA AGVchFrk=A`dHɁʇ|!)༱G#H. I. 8#RԹgnI}B ĜhؾL0E4_LsM"PK_C2ڨw}%ʜ2o#6ySSG1!־l"='K(e~-I)]ڙFh2LS^h5cX~7݄W%  $h.fnTQYE ܷXD ][jF1pD&+x҈X HUDWBuZ*)r.xJ&C}E50`0ܘ|$~;c>&M[6+FދCNs!E4'!8Gm:bQȰI.Z7yuH&LV=_%cb#S(?'j^W)J`mDQR%H~Tb= #+ZbO5}|MsLQ`9,Fŋ 2Qa9| [NO?v0tr2^^'w5H%H*આDQ tAљv(9VΠEB& ajCZk!NHR 0M/T%|k S4>WƯ(L2xӗPc1'9MU?M}3fK s /а X!5~nFP߿vTaB8-L-}z,9 ^N1Ko ;p\eӔZ[Nd EXpJ} i47o6ޅRS9$GFǤUxMmƛq+Cʂ1x=<ߣ-ǨF%눕Ճ!W: Q4EjXVWPU qnJV JF~^y1ežcmcx 0khy񾹳% " QUYN8a,z*vxCDbWmuvzhl7Ubf.Y&6R̅*c4 F@|EO@ *piNnprc~#>"&k1.Nl=rt[}kiE* xHp8\:: f5Y@ѱ#бGdL (M5?(J/HZW(npL=]5>Ӝp#]V`L0]jڱڦrx/gE 'Z=l*8N`XW Z)Y\[@o)x4.q'LWz LsxIIJ'(=;;elO(h8G;R=<OmR p`3Q͞3R(0(oХ4xWiGSF!%2Q軏VY5Y\8M@zZH @{ϪQ3 Q{֙MߢO&ZVwg>ǚPibEvHu6I& .7Egj7.O$³,G~؋{K1rM7Gg:yyvW m++vߩUdġsC hn@&w!a g­0=YuVQ2a?a>Upԙ>ZFl:OR{ӃbOrKjSo y3ZO:@6xh2Ohe[ *veV08(PŮ˵ru[Ib.ܑR%altzvʫ>H16@_y2q':];̈́˟o|'2֮'zhp9j[㵃P)'3 Rg.UvRnkNC3uyl&ڂ}[ Tr+U,(C{%_Պ${Qo7 o%mӕOGmQ A< ?bSPMbܺ$DNIW2ŗ*U5z".[*-? w9,"@qgοC%zV蚢cT t6G'yn;{8-7sc&^DDe>cPۖ%HI~10&NNBib'%9`yqOOr\n;\!=>֭D$eè{*|iY'Јǔ43/{rzO)<dpvA`C2*ƸՈp8}%:qg%&>KV$ f `RRa0Die9V1/6wzlCzژI5jU:OϡwP:F`"R ,&|eiboMćh-0D0O6 ]+s'ɹ*C$P8G vO> $ ʫ!XU&W_)K:WTox_S8/nL-pNrOkJ0-?Y(Ա]~`ڔ/6W4bʇq5p%ql[49"~')KH8Erq=O4")^n6hkH*M-/пΣYNӸ/7A4LXZvná'i %ζh{A.dC$߻m|Y0-+pEchV:"˙ 3TΡ|ɲk5Sc5|r C^ Ӯp/&E7f}g 4Al'zlnڭ15{DF%H1n83@63 bNWǓ!2 qLƖKe1v?|O,fr3~K6 g-;#q:L>Zv͊2V'£u_nȽغu`˷Qz&!Ou!Xi7v8~Nf@33mg|Gy^i!9эGf.- ɮf XO;X xTTa:H};5_] tc繯j謮} JbH(~xa|5p7sEs+FS ϥg>~EwVzN1DL .q*}e3QFe>!nd4|!@P?oVٞz7l@!iVeXay";( /3,%7~z!7?^!,YfAYp%æጄ?1cQF)P38#Gwm" ֹRr|N*iT)t'ݔUtP /`ٵd`\ځ ]h?P@kݶR@3Ļ&@6UԡЭ}h5hh~lGE I]n{8Vd> ^DjP~Njp*zeo*qc>Pl}44kА[oVj0vIHױ;q4p&M'OnwzVDMTpG*Muu26%bC2NO8%&@">Ye SPd3a;-  hf}U;/tmQrbwt@8 4HbyjόM}}(E/|Gg-! f\@h=ҐblYEfNJ+b|C 8Sw9bҽ 5$eC|#pR؎58"7˷za~{iĺI!ވd}zkWmyVnڞX[D*nkFux3+'B+-<},j2l Cw0()>VJ8RD0)-;TK# / ^w-{aY {>P;=YʐL ech:IE6""E~?2)=ljq\(۽4cl(&>(O⌺MG?( -[ įZ@falJϩ>I{z]9& 5Xș"?:+䣥'5 #*4"FAf?khVS2(4>]dkQ퉒ƴnF.iYF!NC(^J:mvnecieap=q\nuOBY5&>͒쨳c 5E Cb$K{o srQ;gt0 \ -ܐNpȽ au7 ! 5h0?g<]03brwn!=sz lq q &b,9x%V?@Vy%jO hg}ˆ^qa sE{]4XNe6N*1-{(=`.e~wl_ 嗞mu~TH3țjQhrna ڈPo+P$TX[e!S2٤ŋ{&ódJIx[UcsNb)~vkN ,LV74@: tuvM0BP=9G~b4N"ݻ; }1ifciHՓ9aO,{yǜ̚g.bºrB #FJu%52cIRzmF*G~m6x낟ixe>^36oqB 8|}+z\5DKGLvk;f%~-!eJH,)|)'҂ l uJ؆N>?zNn%E=} j6bJL$H ~ibgg!6v+SJ/XO64bqL\ҁA ,M:&6Pj P"¬?Dm!*XN#(R)] ^+d:Y)e7w0Ѳdň8 C7 <~`lK G-3)z@6۰)ߥ%a"7#cN7gs yp#y(YR{+r@q{B[elA?qQ/t/x(zQ-Qe 53%wľhD4Y&dD66p7?Nj2GI\r$.H/!*B,q3P蝐f1!p:F [\6 &/͑VoNWg ѵF5s"5j;U}UݞQ>RT-*S<1_ KadCIJ}9L[Vp&z7mmqVko)?3D[&o$k>S޻n kb'XHR\uMMU1kФ[b ?ML33xyt$C(bs,wv kk5_ߙo"I+#otlM}xjmN3VU>Ԁ֝<):+YDmrR58Zj{x,q ކ-ͰLC?,8zEGÜ/{*pO,kG4%mjV~Ët@g}`eWW ( 鿒/iǎ U%Z[&MZVJeηp=E?A947s!u;j (99s/Ϥm (eli}^wR 7*iqO0T_-(_ y_h@&`2٬1K+lĥG`u@4^:ϊXp) RF6y.``w zy<8 ثpB]vk49ksalK  &}Mn]"m$v` R >%f)6h p{၆E;L41k,ou#.ƠaMfL8`<]^@(?Z@ZBpjN{kA@=f U9&f2..HIp/a EG0uV Qp{.Hݡw-[qҏ)'V෰gq =Fs?+hz M| -@G ;aLWLYG0WV: :Ku5bk);,Jdעc-Ӿo`ru]=(z$Z\zNc^.(!?s锪; c-$1Mo7^z&qs/LbA%ps*L2Ф%sч+haxU%?5M%=;ѝ `8 MOݨ/`ߓZJr`@Epq /%ި>.3e;]z[?__ :pX/UxgO "Mܵ}3`\2!7h UBK|EysJhf̬KUZ1!f/$9x#!s[chG!'(Dv6'6^C`C%Ԑ\tӽXG]ޝKs r.#F1Uz،M8x#~I} \~x@GRS|{:W8JgU]V d*AV^f{'75?qO51Uz\(qN;*58&*(X&NDLNAyiq\*|)ζB/}u$f9ws-juwH~XuP,6м) 9 kG}JVAyożW *n̬/u&%R./#S|}Ƅ3a'}IĦ+,t9nU }l׼6O: <\>R)'+M]N$<$$W7Ά$-25m!{_kzU'/uFO5iT8YU|HNya3c~spE0SPPzUAq \hM-w^@J۬otd#2VR٨3ySfבJ\ $iw[!=~l؁V4!Fw"0'iׄAFLXѽU-=lrq mapp@ {`0"-edV6fǖhfoir$ ŋ47<=Q]}Ɩ' Kni=<V*f~;] \p$ԇ0GuUFa }Tr"ByR$#eӣ˨_4ùnEv=WVS9lG !YJwJLkCa0hTI4pyl5oK˃'Sq lJ;?zQ@Iw-~N9 r03=5#nHk~ʍtY/zUd xc.kX" yv@/*}z8ӧ`#|tp~eSt[TTXkJeˊ:}˩1hb"aqOI:1Kj3;+Ė@ gol[:cҊ7[_PqFk7bPaҶk"#z(jnOR~~cl;X΅EmW8xz'^Զja$f8(XXxKǒM%uOWظ]"7L/ڍRt6 W.侱򿝦Pڅ;o,ӈ=ޑa3h0p gN0o0@ R[wv 7; ÔL#9ƈoe<]|z 6VP(WKsA8,)T1<|Ug`䑅qs̩ϠrdCPџv\ !8#'[whàG5P2e y19Wٺ*7g|DuBG2tdΜ( Z N!O(o{7zlW ]yS9 P8T4z4 m/Ef;(Ѡ>!*lѿj_)A2JȪq5}%V@y%=6>nw9@:<6D-;m>V_KzBGs|CпzBms5? h6ذ{zdh43@BG\B 6U.m %jo:#䆲#Qߕِ'hp,lzĭ 78U;NpHRPOûH4$\5zKC@2Jd#1 07;!Z @1l)LӡWIDVto{B#RJLowilZ #p1qȥݛ\]RqU\lR:+J*8t5R~1[Zc7]ezNr;ep9!n_9 2pP ƖdqݬM8¾ԼMu|Da߄Dsf}ռkc$]u Eq@ Q|-0W 7i_Õ~W[(P~ K/,& ?rgL%<|0Nj/O51]*JHNoW*o+V/B:(MI U=1DCk|Z/j%?$׋( x:(z݉K2+vz.xM0,Mhw+ ژf,҃})Ȼ^W}j'v"N&ϗ1݄.Lo`k51 $ͳs>ի#I>>̊y#~j/TP'/s#00 HF(WW9[r-ds"ϔRG\Ɉ7sOpZsqP7I= d:_^Íˣcڒo{FAV )C5=cw:}j .ob$~E-_ ;X0a<9?r8We|%e}N-ETC5fߗ+wE*op3 mRƓJyk@6>tn/{;24T.3DI"44k9y!}e~$_AdB&k;/,Jo୯$99DGOwq9tY5Wq #dw.RCIbãKGF,Ƌ$@` #bRBl=sbfsp,S?h ˆ/c"HhL|JO ƄCBPS%vqei'v[>8W.sc Цq.bAoJp #%>`_ 7Rv/d_4ߴsGY >'Yi C艚gwf2:`K(HMSaB,3faj#^7d Vޤ3X:H'"6;ƒdɎɷW8?+m Eto a?|LJ'Ⱦ90 ||'nih.&IFНԠݯ)5B:\Ure\Ҳ5G?B.xo14-JHE`Lh-5 FrjzPlOHNALiڽ2#RC^ wOA9as|w g2pW%۞/-Б4NJE`x9Ӟ ֗\ۣЎP&3Ҏ8bxZJ*PIAcdͿù[&PmmPqB5g$;z#LbN~F๿&(mZ&uS ˫eh8]/*fZ3j=XDànLDJ1tMH('uLKj}F{p/xS|knL,#A@h03=2Q5! 'Ђ K0wPN=.D6썔\' yʔjŢ`G: "xVGE6iROowp<{=R+#.;t[Lp|1t65.6Թc}?8 [}ߤTJFNa,Mj ź'x9^R_?hUz#!Nbm0U2O~PPSCDȞ8sqKAFEZ/Bzs$[ 1OFO%(kt5B~טP?vZUy_mܳ_F%9/&JmF, iIزVK&VESEj3*?x $'8UIXOĉ 8p'*ePQ#Sb@}˾󹲡 ?i(+h3!# Ԇ,RgK ,\f . S8Rɷ)t w'tzPnݮBr1+6W}$n??O; ǘbEt֘MPh5"ȕhL\'!?7H r-y9A$vՠc܎JZ0:nV(ϳ[աa&Sm]ׄIuj6Yx /eԡP1nuvZMiQ[$57fom_rsHz@NۘGQa{Xö+3]#lFiۋ|Z8:! LIpWZ,TPO`GDTe$A6G7d{+cZB#Q.5x\E\6R \6wA\ %W.y49.1Chv\ X:i KNlj|T7uJ@-ׇ eU]*^Ϣ67oJW~`d 럏s_q-)@HJr>n_`@z#莒%AK[x)tX鲴dr.:iaW^c8AT\LY)(2.`wzq ^B24?ϒ Au3$A^vx`8pbShsV,I T3HZv̌eZ!<IJOfasҲ{j%~BwbElѓ\UzhCc*UcMsZk?f:AQ] <|ezZhE@t683NZ٘FEjAH XzqiuDǎR\QJ_ 1`{ڛ )fHt+b(ӿfkGM2@DBDJoJx2c-t[:Û=H3W U%3ㆸݺn Ixr0>TqP{cZ`ƒ'᝞9Tsմg+뿏w рeX>|ck,o' Wۥ#(]ج"To2"bc"K_+J"I#>}4VG8[̓%NhaH =/Ի5Vb.Qd>ꄦBĀ3UmcyISƦf!sț_aW2ZwB?UX񭨓>࡟Oqc|δ?`h4.R4Cq Πϯ)@_ޯ:tpAz~z0vbdg'+9 mzT8qfGQ?bUB2lHvXBJ*4l@98lA1Y̻Fŏ-/wx!ֵ*:Mb nHQߓ8S$M'b&AX;U.J7Kh )9V;(-[d 1c4⏧ҌEZu COEAx=1zv)nzd2 ڞM8e)w6!ؿŢ9(#Ƒ{r%3ruHճSno d2":` ~iLbB,RmWP& vSZk^=:„p .دgCUWhت0%>u_[dx&k4dc8fln C_X4;1 Rktu/&0BN'MʜxpʚٲI(<ϰ=VO̯OF{D+Тc00S G̸ 5; @/eRY͠qKFƒ;X{7n$H(D`vLɞ?^gO)CS S}-hKA_Kg(X3>^#oZAׁ}V۠U 5_[ ; m'ޤHGW9TgaJa(T>2v?t9ӍLyi rGK~jSnA]Xy3l|>)4ڋo8"i<>[gIHVȟ/@ĉ@q7_M/t V}D3b2F%w;w1 9$4C}^jB\C- d NLq$y~}1hu)> pm]/]3>kpQK?T0@ϰGgQPMĵWM ޸׍!j5ejXA_[RӭɌrX-| Z]ʀ 86G V6F +И0D*:n181" zM7)9}'M\!HpԠN0~^=1{ϥs KBMEFӐQG^J.u8vz([}(c{'՚(Gr-H 8cŻZo?_*JsnQ:1ga1S᨟JZ "ӺOTg uPÞK\.ccgTxnlNE;%6v\odP)_QMVj*)s<|9z-| ZUQs6u(mԏ[[n2C)nGm2Ym=+(cdP)ӻD,:,#A2#li:W; Vja^jnKI+ KwQѩ k$gתNv^YIW)߼6e8 9ϝ$5c)@{ru^r݁hPW>5+ G#8S<'?oXF-ZUW)ȟ&f֤H(Qas tEpf ʴ+3$<ky}½Y6_P6j+ŬeƿPasdΣ[V'W@~o^@„#Ih|wc N|6'ep;Iд ΐ H(ڭS2u861՟X.5 h!r~UIŹ"\J)lv{٘\,h/Μ K =%1Qz}v'y3IHDޯNGT +eJfIzغ r=4w~d T-|Kݯ7 {.:0egF\5(V=  ( yΞyo&* 6lXU+p9:βw JgBo,KXљ3Qy"d1RPiG4?f8Æ8^qX$%OvI3WtS؉ ^>|Ը)oD{#zPQhS;24qyYŠd#;kA~W&3/Q?}Eʆ` 2q-[CQXszy562G"al}#+9߈UA5/KdEX<퀥X$ߢwSBc9& m[}L< 3(;ꅫR M" 5p^ Q?BR5!Æ'j՞~B/ZC.' N-ɾsp*ӎŒ$ar]P4X^kϟw=y6_[Q;Q2NN]<h]N>"Դ=ڝڜ"ބq\ͅ;-z9IД! tfAMuqZ0 E(a#G a%mrQ{r8 D81d;CZ]xlk aEE}ꏏW&8 ? <%=Pp4Q r֪C`U;\Z/MuFzά ;aHf* bׁ>zM: jS#cԈȣ'+tN-AEns˄:f"hKc!3kTZfK 蓪϶Wi2bl f,ŚZem$ t7>emDpu hC$0mT ,oGψ$tKiބ)g%KAٝ܀娿́&2GPr[pPR|ngбkOEш2q0Lp43ak< L$o8F. c~6X_jַgɳuXT z>69߀R!4(#/|Q桵~mwhsaQXKV\$h$\%v훮pÕ>KH;%_t9ru;ѾInCa;=U¡6֐ TE2 36(w,b4tdl1h@U^e,Ʒ#[2 18_gbwaYA L b"dwg13m,n(jG=-AjryoBM/eSxҍ#,Go+@#VNv`;? lsd_7]R?x=9{ r֊T*P|ڐ_lDjGjb5p&jC)kn@ x遰 U3ǥ*8rԽ[b_afǧYdØpէ`{?k ; qܝgR?vܚe|_vh1/ gw;Cxoׅa5-Dhr}$R!Ԙam8qd&7{FӨWa_(LzAi01zᲪ[u|,&67Gl6=hφ+kl ;Ձ` ܇UˠZ8-fyQ7yݷTOnlIKݦ{h.$%M_QlbnZU" ֎:>!fEt;b'VC>%ٳ4 Y$,J˽@Y۰ ɾ fp:sBEj~>Wј,?eE|E:tKն6.}G ݄[,+ymSTx S0WbPdeWЎ;hr=Zxr.h=dH^QrzTw FSϥ(+dp;9vQti+jjH(#~4J<' ?_q4^H{s5 Aƅܳo*D^4dv;`hP:L"1ܒ"Z2B环?-/3xFD!huhgR tWmU⾱[ϥbE!ɤQ[EoA^+12J o~ $ќ> Z `B!(S4s…#j\¹s<ǒ H,U㪧k*ϳ,I'v3m/*+ {騚-$VI x P"~{zf^ fU[V:(ǚQ<0vw#,,0R'<.FҖG`RLGD,F4sH&$vпLi>2i[DG3r+ͺg7H+E|{7Px8)?S᧪x\(뼹P7 F\2>\.Ԑ.e-ghƿ;R!'5 r\ :eozk9s6HMJ,O9YJu3:Mc"}>$T+R(xrWÅߤUDD`UCfh~ўfEG@̚B:t"PL#zH\9҅swhc!>p4CW [Yf+^t/N7aprl>kUčQ3>0,Rs5$ᇚnHDczVZq2\uhȄXTyŮ3Eנ ui5"A])"+ '4KVzMqhDjt~+\X6LrI= @?}z*r<;k t|xY3[6Z}? So8T ?r9!)Clfye2ze̮\2ڸ㸼-3ooV|H? Nq.!wx]8dHӮ; PBZB҆iMeBݑ#Ys$Cty=Y'7rWLSla2p/frng}c] IH/#Q&4}kCIH7=%r|>!b_#]K`YˣKTE銪ѥ˃ݭr2sK602Ҙ85pZ}8@>O%) cb:zEcluUbx})е]NUDv*;lղ6 ̶d׵hL\N>g? >G\#i^#ҸT tvr1!gB6Zee9iumx[Q|9)s럠m"DG4zM+x IL 2j>pG@tmi!-@)]R!e7/氃ƒ[&çlWtR(h nL#8|k xcOG+-M/yc= .,2#FlP`zKa ru!^;vͬqT\DBO4W o;셁pbӝ˯#l꾨8єBz+l&+;^#EJ#&g]WiCCR0P@0>v4:ؿeTLWPj*D\Ob>΋Zs#=@Wer2 )3눼̩ĩ?1Fqoƥ,LX"|4N02׼]vUnۣV:Zu|D2q{2O%H5%ô+ yD6th1}ʤiʤ_՝#(Je v(m9WS<p4 )c]wm˻?;|\ϗ@ZqBM x\l^M^`g-$ePeA(NxMLx >%~_(|/jO :I>trfytrט:$_9Q -u{G"XCh,PG !PdZcasDp.s5(C>B,I$TF$zsҬD`,O.XioGs2a v$/3|!(:eפ/"fe7Wg : )Qym)n+j䠞#ԔA&A0\b i ~MVTtO^mU,~+$k6ㆮ<\m{FaX# (6NWڊ5GmڇnkL.ؾ\o.I16cODU%׬#~>M{e}OV xr{bK3HkkM&~]R]0C5`l.?Yw0]B!Ez ;~ۙmU[" x!2Q@$=Z:ɫAFE<# cRI#WGfwntjg*ƉQ'^⬛bH?-,d{xO絬BPyw*F85v4 h̜zAn'%x?x*,9yM; Ģ?2iVQ ߄l Q|ym y ۅ-p%?04ϔO_1}riٮdP0;p1z!lH 7@%}8D; s%|{gr,M+O aú=9?0F,LJ&+hiI r-hz>j']msvYК;C=Cc\ ӎR5KT/؝6.b Z7e 85>q8(cji&X LPvCt5i3@;%k02D``Q&"/)k:}պh&[f NF-c pٻԈĺ X1lTA P8n5Ij!y_К۪vO%^=cWYk|񊚳Q#J:9cC [ eQ7ߚv "NhȎE_x׾E\6ka6enh=(V CxS7p^BuHraϠLU๱*M8Q'=UjoK56(П%-Yih#EDv!ݺf `-+%N=*جH:7(>SבLNv=*+?puYdQ->q[[?Pl4,q|bZQ#_pA2IN:z[:@jnkٚ-.LUF8!|Y^eﴀ"ETRm{Q!:3ԛ|5W0H/V۰͍eRV4B~cX3zM_ G FkcQL.OڮxS.c2HiuK:JyzcX>}p';u~nJeJC,Z{ǰ.@Zm=t3sD;\f.uBWF/di뺘@=`?^߁h9`qi#f$e1E24r{r?,B&ڌrBEh4̰WHaūFDnGagmr*/'{5mxt s$y*0h8[ =&k|@pw$VogbO;zM%z&ά\ZrrGh_+)vvi]k}\>PҹkH=˜]LpW$8&.I% I"oȮ;F!/ mppT1 -"ޅىU+yB1#pMYF lHƍ@L$@k4{jk3e(`H$b9u,|vt1~YLჁr骶bBe~{tJ-U| &'!g_n@tU5ЇbWgWNHNÄyv| v~;ϳg"s5!VM/ '1SL~p/܄ĸKO`VsP' ig^_.62fs=&-ҡԻQ|} wUB]퓳ٗRłLiHU8_+&ǃ}Mg{X95&Tr\խ~R`k;2Pl!w*u&`M6-{BFq=tnR(,h50{ke j9R2ogoYJU=_w8W@*䫡MyTd^*-LeU}M}A#@s FG]]Ѯ#C LaǠ%t at{`bӡѦOݼ+mS$| uLD2v hnM [9n$5^N.(4k.T2J& 5}5t)ܮbP01EÌCA^v}Gb3(2>m̀T?l '9qlgCdN(sDI$gBi|'2Ө2J.]UَD9FR:h^huTދN0pYCQ^tu Ni zu(-1N?=%.5̐'g6x'Rk]I$D&Wd^Dn=\Q9WN+*{D0-+ÞpM>cʲ}FVxϾp <\|T&$dx\v38BY&Is4e<йEӆ?]"] ,[╭y,џH6ǚN꽌HM6.>g mj]1l+[+[<@/Ȩ[28;ܮo?.pO fє}so "@C$Bt(lS25 P/ c7>FfiX_F9$<4$}*&6xI射X< 5?^ZH1l~n#M~T|2$D7&MPs\8h!(<,^ٍZ[#*->ǽ+Fo&dZ%ӚtUѻ+C8x?gW c۰ZIuOeA'/փ:%0ͧ6,* >`u4NeV <3 ,j=DEN49f~5`aOM*]_\+R#D tgޞAK/_\^Rvs?Wbo=rW߻e(QV֯>Uw'"5I"(g}LZcc i qޫ2Yr׷|d|_p0Z|%^|-5>j< |q{'pz+P`Gеø.mˣ*L/z5wo{Cc(.Յ:L}60 0k؟FXѠGM MHR7L5s5d صvJ~ެ1Z6XN2HݐHW!Wy&^."\鐗 Z_b"εeZtKoK× K]:?皬rzZu~!,!cVͳhKU(hz>_j\j=?Gʱyz+-[T(BvI ]+?qVE8J.ֳ_vTI2+Rܤ ըP:CޖKmJෙU 8X J2jc Y⫉1`4RrgSw8}^J7$zRY-fYߵ /1TwN;o!b$4×k<?H(3Yao߃S]"" %,6ygV1/פyKuBO%w ,b%:*"y^iā3FxM-/tÚSܶz Q\Z 'x(``K^}5EaM]Q;}㈵:gY.(W#5ύ'q{ɭBZXpW m$};. ջ$tPhJLHJV"¶Ol5MzMt]7im蘥;h_ g75D,Z)8[ݑfi%bW%4u/EJy2CQ^RWA}<]O= rRI%?5o6^F+ i8Ҙ#*T Z,BǛv)~ct̨w<(.DȅH̩}[|pOz*viG.3fZ{uo\Yz'S{hN1HRʝ Nțr`uب0dYPx,mPUtQN@;R5"y(sʟTk&`]VDEW&Q#G`gU(L|kkIZ+|)܈Or5 :\kr,>TJї9|QWo )p6 Yh3W/C)XI D#cb)Չשu'uHnsyD!CO &~JY!l3e5^ݘ+17¸#QypRIvzraYPnKҍ3hڼ}sc B˿Pr-V#x|wN _e3:)oV8ǩSwnG@t\Zqߦg^ "2f#I=vB9>g +aRz[UB}J*(Is'8u>ZXś+D)n뷿GG4w&*׊:ͬAȇs"6њ*.9 .9Bl˭ PO|Ic;4}篗!"zy$&ՑCbзQ|Cy;iiq)~>915CUV78E,2A9zcQ^Y(;v +aJ1]cOb9=srG!',#Y;` ,l]oWuD<zbc&.j 0 1ApZ_?%m}v"x@hؘ*sPhRy^YH8 l1#>jӤBr.؉=${dT頜zp'P sdLc슛)HܔSe|P8# ?b#a;+zb µҫG'/1EꝚoq'[E8@.KzX2PsUt=}Vfmݴqd# O$r/25>R#E@\&dȵL\}9>xU$"a \% cSQotVDpY̏~!n T6ۋv7]Y$žb五WP][H;}2gWϢ'˻j߿KP_Ow|?ƕ4So?NEGf: !Y]B}Li9dNW$핧XzRZ(;'V>]1YG]mzVDo阞-O-\Lb~NfYЩOc/;&ovc|Ĕw#XȌ(h2A'p_VP??m6-eT 6!FM0תK4Ĥ1!"Ejq\.7Q5= *,4|:l `hFKG4XtM&̎[ aGyߓ=̑P>kv臇7TY趮)pjVT4!4wB0ƁkzΊ,wNAbV,\j"iO4zC?)FCe5[`",u=o؋dN'L#&ϰM1kY]_pC 27bVߝ0 MSa#Xk:L8;RVM(eb]y0n[yĿig*;50ܕ%rs.[E;{}0aj`Nme3pbׯzFZYit`P^%E )o:Sg'Ci ==VrmB?NtFN=n^rOLِ%=ojӢ}鍘eo‡nkW"&-.͙M EBt[##dwDF|`e:3tb=KBM5 ^2/eW?ftT*ҳ|!mo%h-_+b[vy(^V"Ѕ\vO2t[xʍv**r Mn_BgoK<u2M*~Fkzm 8doு5?ů5 ;!l?ÉDFNLE=/7q-@]u CCZ}KLEi/}H:8fPd&'%Uo`~A6eng9aݡt;n"De*sYA5 V#PJͨhl{|Mʭ us:.9Q=% HݺĶ']&otQ&[y<Ǐ#87-$2'SP2r5:Wq5),$L(f\{Pj&򳕝nt=⑒a+J aPc؞Dv 'dy`Xc-<,g D-FW2`U:A-09{^MK[(Z/lnP).c3{cʂ7 .@6诹!o<$ YV[q=PdV؀wk˧^aDybNҝ)pѸg_h{C/ )gK0 bOtY,\DSϱPwDx|Wk3y"=Vc& >N,ێ##E?$(Y u0EY)Nw+7Ԙ!YŅrH-Gۓۀ^ j}|7YiioHi{i3$+?&U@"(l Zy ]SqJ=`t@a|ӏƳ3v}'~jaURsZAtfg}5 {"E$4`ɸfZ6ݻ$:s9OHgav1mw0Tq~9=J ԕx Ϯ<ި@&DK{^u<2xl]I?Itb+\0}gS}ũblwb"zOLh(/ܿ7@׽_ %,`fQsc1Чn@"h_V?\Q ~TբF$l{"|Iv f [WjB ̙ʺird0^k:ZH=nWnw#aPM[)╉[N&Hi8̓5-l F[A젞 $F:F~2DCxÀws#}.)q]!?usVIi pڍaWpLcFʋtGUBo/f~d S5xn<Pײl%z'~WCܴ(m1^c2c$7go7{KK/m]od'+b"m'{NaG?TQ+ugZn\< <N&KBWQݛ N p(Ht Zy D@h0f8(ʔd67.;!Cir8=N.m=iՃx}ޏWXBE`@GEC47"_MNd=D]iCI((ܯ8HQ _Z>A y3U-!sjA8D`q` (F Y3w͈q6 ~Ԕ|~j1ňVEfFϪ؏9PZ@>mnԫR5 Oq8MܟK>X|^@8%읂P:wE % v # 0ҩx0G=Ttjj.&F6=XX xن {:۶/wqUcKй@ȍ`*pڙubnWMI`0_!D&VjY뚁$"xufl-sLJT"\Сb D"^Sx)Į3%1vNf8w˗5nC_yz H̏(sf 0g!zO]{J:Zy ڭ+asgS+"W2ߗrrd7?fڧ-4G5 sy7/Y& We.tg[,8ax!gS}& '*lW:w睝nߑ !bP}H^` yNq/bE֦-9A^7e?%̲x"ZBFI} tǝ_~( :$$i=Hv_X)*/s8:w r4ͰDCҧn*(ex_jس/hbAkPmۭ ?!0QFqz<p74y {#+W71tRh<4u@MZl~F q>E??qoj|c&G,/Y$J5ܡ #;.%b ն[e2IfEԬ o=[ u>BOVBܽygwR+0'5 0GK5`rTŐH-y`91#tdzFRiQ*0dQ%Um؞GD P8^}C:l|nJF)ϴ`B2o\-ט pWꉒ0{ԕ,/q|У;0k2qV),0,q4sU (fac֬sܕRIDwNF||z] 48FCv 3Oҟ3d^\ɷÉ8H],>#գ t-[3P< V ;QZR96OFٟL__Mqe.HLWnҲXk{>y.Et.˾9$ڵN"VN/YٸEwֳOyFZ D3diMKCzw&n d<LqSUI0]} %i}+AaS?;i ~ h8M[tAw2-0$'hVV᧊BrPT-1ϷQB9$ha#Mh*o!DNpLp9ђ"nkF&|6)kgsЛ-|v@[BSeN#V60X`3FYg@Ph2uZ<R_mM" ;Q9O`%w~G3.,R)fHDljRyJ>WȹK^밋 mLtO:m Hw@8ddRen Q4TXZ!6ڞM)m1cWA_\TJMG8yh؇f S)q{/ӓ!+ ̩!B1yB5 4 XVEjJШkʔpW~WJϏc֜lp%ЫDt:թoȕ}@a &ؖ5/͝rSgKj\voVFYkKy}l WQMyyWqR3Rp`dϷ잩zX8!{#JX g){|Ȉl,۷SAsifΊCU_^aiYJuTXzd?`>1wՒO%]ֈ-C=_Q~P=X9˥P@0/ :62]>̏mŪjݐRQh;lfΈi\oo]-[?:bU H P-ƹ7W Xr=ndڼckROD2W>,1! `ľ<Vxs'm@P?i:܌5qOlZvPP6^<,I$΅q^| F_!7v_kVY˻\l$^5kV>K>~iy#76VE=U E8ΙYgn %htXJ_DĮ!"<:*Ms?8B)}-=<$`[n%DATl\ruX-tX+-0H{TA=Ǵz'#4̵~K.bdw%IU]nec12oӽ.ƂO0\iή@ /.ETcvgEɝՆ=$M|v{]zy.^1 5a1Ek}+7~ӞQBR-:CD/?2 ZE% qzȘS+AtSӒ,t7 ]b_+z7S{WaF疐|.Eb="3؊:-gTEō1_g9t)14VOf&< 활1'ǐ2fe2ϘjL ӉR]fM#_0@2]D8p vq@'ggD@Oϴm̟;GCmK "!4>e[V."ˀk#njL=Gv{Wp6SFhG)sL7 +&:CebՒ $3^-qXg\A|eTA8ߪA[g&PԣuJ7~Z/pl|/0TW^5ЙѮa/ze2 0;ّ[c.z]nhM[hKv 6YC'%M$`ӖDD5MC +4Ve0([|1LX{2i#,I-,wL}?RP,I;?ߺ!ͯኢ'.#%ez|~EԲX>4_K?Wo3_B-Ok4| ye^ >6@[ S8GyPcw[" p@ cP#6,7(xq9{Zp3•5J+*s{P* ٛ{XZ/#ئ΅IMrBɔWJ: 猤k'-=k4hSol[Q6*>DL}Wm eO+Am;z_A$XFH u07#Q&r~/kQ +5%d-` lS wKE9Uݑ->SCβV.ѸT%Mfz.6W ߸:dwG/z9Qi%[7 =%6m'Y;v[ ~Qa`SAhno7f@`Fix Aag՚o}L6fۍtc>1'$ j'OiPg7DŽ"eqn9pvzLjaTI4#{3#u"jϘ xsڼhԃf)Byh/$eM0 ,v EE/7&TSB~NoW۩5%&syو[oEԧ =ոc!!;f@ڄ5=/Wy L&|*tXšg 8u~jdYb"T.{X,.1 v7^,c?Ơx`GvmHA=TB r4{h~"+\?[%L[Vb-|g۽1~Q6Sz b-U)yGv10~z蹗}cKIo}r)\`$ySH8 iFcSi DE) z AaJLI÷ٶ%[XIs3O*U)Rdo YN1TgUGC8ݏHk KbgbyF&4,7LnJzOzPׇE cH~Ȕn捒qf nොt'DLWѸ; |F ׎_eqs6$QF2TW:MخYD>D,]BƠH}+QhfDMf9G“.Q[ JyTRs3rߖ*B,-*ry~ѐbY4ͬN#tM!x8N. 8USjɩab:ٿx[̈́p ځTEn`: uE8nE|iZQ= {)u(ȴj.Ws3 w,J!Mz*ɿ2 *0aBo7bᱭ|2RCգ6+K}􁦪tt78D,j>l}ܔIP-pڳyJFU &pіnE^Ŗ/KT? yIJ 9G>@ؚR|B6&AFZAkiAU j+\#A2m[4:zp] yI2hRLg{~x@۔lR%RQjAO?}ԁ'AJݘ CR\Фlt}kx^{F+~YtȨX*BgTuG(Hk݁ u<-lCDnz=+S/P,lN.YwN nɢ! #0ә[ߨV3(JTeGIP!Uu%ՊKid[fE$B,HRgxTwS0FL+79`~J< tBrp@, |{oWKd,\U5(/Ɛ7اģwlC3nV}/Ib8͘6\rܞ\NVBQzT$0 9C-.m~瘬ߠ@/z8kibPepe,nxĔzIc%O{$["ހZXް5$P4|H5{ şOZ[5Ө`@~jH #tȽ;t|dH*5Ռ-fOqJl`#–sI2C#w% ^tl,Kf0@Np&h3u!E9Ov 9|@YKը{Bcsr ~N=LZ&gW3(M;k8$p!fVҎg0;CK&Tߞ+8jۃze|vxD3 |RYw٨k\ͲU.ѓňzqFLE :cevs987i'i5K c;HDu0naMt1~~#wOd}qzAh,:I/?r0  }bQl*ZYmځ>a dé*f_jjb7}u4c:'f۔e$U,R% {sq +R>ٷSfp6.(aGG ?̝ZX$:@[b%fPf:Ju(Am_ 2[%^ϜFa0:O)Ճ`EB ڶQSi6Smfa=|N=h?5rbFFS!{4U-bJS؄Bյ7oyD^z< g7`#ѡn p)J )} 5QEH)f=H*ޕ!V\ 2&p 95?A/ ?2hJx\:@PFW}$!01)0 H)꣔–D1B  LJ0J2 Vo$zfáѦ|%^D| Qۮ0»Aq)I{ -}B@gFAz:~PlVsBJ;_1{ %O|gǘ= p= ޺L=1%U:gJ%%k6bT͂%\( a2GJ1C+OQY']JMaSt g&Y8S|Ź +Γ?-z+UrJ-m./@LTcHo2qgY,!:o+/|ć}WLfxi%W ڽu{UX; M-Dy#vpEzD8 Қ :nUnz~ D8/čQdi5T nXc$:߿xHV x}R=AXs#"U6γP)mOɂWΡ!Y"⃒/s1 ug6",AfY 1C<.dҤpN^{)v 9/Q$b!gSDXJ/C XMS>pV"Mw(_/r[)_78ud~U\f]-LRؕgōd;@ۧз ogWX0l)` 2ot;v$&v1%L4&^*7#E>7abcq_10oa r]F gH]ÀV?5.__R~Y.zٍ'R'Ay(tL2} 4^b·5&I -XI ~57$QZ7ۡ\q;+fuT[MM(VA%PaAB^ű[bx2Zx۩ ~-bw~;C|1[87]pqΰmWHƤibU EBC'-ŜDLJ/#̓]YEz5ypdF=qZca^7\'aϪ#O_Dh'nx0sS -*9lTƄ#M䢋:R huse]2$+q#{a 1m49bAFćl,vp)!'m[>7UQS x!ҢIiR67%픧XЬѩz'o`&۔⸾s~&f0+uE+lsRƈ)O!HЊQ*q c[g7kFI`lg!|Жxdkqk]dn[U&%*\J4; ?A@?XŞ4w't\ k$IkW^0J\yr 2)A5q6; ݚdS̋=+-mPPEx좚KRK?Ĉ,5@2yti  Wjc|O4"S8kTYKI= 6j>{1Oðs\KAɿq| dqqĶ7[$>lE?XGZ7fB'a`+ ]prz㑂|hj5 5H<)_eKC/&T!kPT/ s@I#%lVfb>͢%nǓx&-gw_6W{ DXp˰893 ( FkCqs;.i}Vel%hFHnHy5n \}\OM2Vh)'>WI%BeS ^hTɋV,ޝw'n9xlDy_;bﲡySGi @|,ꇵqiS@%bď :Fq"҆wL@0v2M64 WQpdhPUR4ØwhbK̔8 GPU;_&<.ڳ "%vlZ2ۏ>'([}jȸeu4>QRN 4 PLhܒ(H|w1/kgK`iX '0e,`#_pvqMxOG>Tm'"BÚ<[m?"Vop~%Νi4DjbyLs |u鍇7'4|Hz V\Ak^Wsq~7Ik1VaS 13 zxȱsfKQf܄䌷!o$ETKt_y꡸L%`XHC6W.s˖=x~ Y5mI-$dӠl]Kݭ@^ kE]R^#2s|[d6ͮGL.{,vɻέgpujnʏh}@cͿyM1UX܃{v$I1֥d +ުq{\"ZJ~o'>y_u݅X/%:믠ȒBf<|cl +Ojv:7\CvzʆޛibK!C7.( '@jAҵ4F6VYv ;H$4IZ DUU6lu"vt[<.uދڣnQ#3*Wl/PJni:_ c[o|vnN 3U2_1W}pD(dTb 3c#$!tvqdWRg3Pι\q{73GNuАkMtqFWZ$BKjqk v~ݎmbmy '^]@Kim U4+%_$/*%,@eJy:zMø+c,[OD.4A 3%fXwlzEʫe%9@LJBv cG Wap|n"ƒ+V-1+N9`Dǎn7UvamfRd9H5=? ? Gy|1VL D$€7@!D1ڱxxiU0t@8,<\-kD-?2٭Aa4.?V 7z9IĊϑtN1ԥ7Tvz?zWDPjDIO!(nO$^A' FTprP8Yr=fExOPFX8J+s53,Pn86"j$GS계iZڃe<[\ Xcj]bMdSV5J{f砤h702Y|,aoaL:* c]*G܌3GOebyN<ڍ^%.?9) |3uڪx?~Q :|NXp9Vx5fiS*߸Z;*e ;*n< ymG{Z{rU4Wwk"μe$"j"URbUxC{:=Aɟ,BY}7d|򚃅IH-aA?4'4]-E8!AI3U'c-h5Oϸ*Z50V3ϽR Xfvs`ګ5l*cz4e :&g~ld5*M g˲g#=$Q"+C6V \Ҷ!2"esٱletLEI޶վ)f0“]1XX`(lb2f*k RiL8AooJ3'X7`p|-76quzDנzp+PD->! C3phÐ޸_O<F*(E!,qHF*ZLe>[q#3c~^^_^fkF-lW2|@.|Z> _%a03WzuEi'sC\F;# vMGc[5p1yiRY0iU<t5h%;@46VBvLX(ytEF< v@n*J.i8tOȴM69(>3G&)BF'I N{)CM۲5= miroHf6IP+Sz+44X6_ TI@CGcnEO! vuU, h.bJkz>uZ]JqckB@ y[eAkvC}i^lg,>ؾmeۦaq#ns6N4l~vޅY`Lf.v-[葙_YRg,[cduP\(/ C@pū:3Hm䬦y63YK<wrz4K-p/ŴHc\G'^.*m\q !ODb MRgl@JP x1nvB>ّIt3_-.H OcNxi IDhk M`(W|8وm꣟ݯT?fόF Fޱf1a_lQ&=$ (Y]C.pMͧ0,NJeS3KzųlWcyUv.T'kK&aӨanokxH\LliHV t&qhܝ# $ܴ%[Eƿ0F*-oAYLc WKrt޹hT!MCi/i&Ї1RHo$e+4'[E,PZ)Rl RyblҒIbY xG"߶o޿aA ~o{g3/xX] lŎ弇MYʌ(_1{}އ|_jjiGgB/F g%b\USAsNhTGmK4RH5+ SUg#h;FsTFUre?Q$97*AY,ReJRuxZ0]܀:^_zDQ)A5HA\FjWx{gF?MxnHY X)d)(-'⢲hL4npRoy\8 o5!)4Sdi#9\gCn 9 XLW?sԬ{MݣNWY]hr^fjTk'c3FŹۚ7iߤl:#IR )BEr_cī{zR1)i=dZJ &O `Vԑd6#N=iI:{HՏ"Fgw3=@8l 3" H \{;C @JVg3L=:(B180|P "z>#ޓM5D}AQ HFDN Jk:iiZ%+ke] 8{pf#z-Qƪx"Ύuϴ4Q"Jhv%`}cbpEnQYk`=$Τ8v~r.$16?NztI{јPZXX7EX!?|艘Fe}e m.QQ6Ja4Ȇ%@-tTDE)Rm1xg[FaƈYup5NrʹQĽzR#q:faU'j끲xT.i57j"*exWwca [4 -/˥38Z';r^yUzb|Y D(,d@u" {cTV-;E0=_ץXi[׊u^P%Un,ΊP8%)ɚ=l.Z*p(WΆ"6lm[-$gb"'U̢f8WMS#˖vf]@l[l?tA0>"|x؎RH׉tW_b>\q*i\_EbXd| ?-bB`th$Y^܋ɽٹYQTnuO3H@_6!kY'->_%+0KˊvS$rV+ o䙺⭳9Y#lW|<) LQ :ͤqU:cn2xuLeۢ\ ⌫JE4X?܈a!F̪M1`(9 . 4_y& K:3Zaw9E<4Y, /2tC}Jl޽N %E³7;ڋ',^'0E gyWa58h-Y@-b/ZÙ WC N_QWD#c:ˮM" ܏,sMRU_NՋw{z[(?8b@Y#ƙKbL D#{d xt-ՇDJʁXss(5g g["}x~ *#\#=[!H#f~\M[m>ʫ&:>|e48CN<%"C*o)oѪB%eѫRr"0?&e ٔB"0X.@/O:8 mWxыT cUzTegJXR Q7_țUw*6t32{1}S}kPqs,^>ypj_4 &ͣ+(ݩ})y_ 1yF/]:7y{T(OM@7#=cC7?T!iVց34J)Mhrk@uK+OZˮlpޥX5.ߎz[4 5j6 vd0ɰ7(㲧nJ k[4BnpK<7^3'1=_1syqFaLuY$AlV6I9O$ &ϿW@G9$En(jɼ:1U+6x߶ɩD=g_Ĥ,^1Uuᓒ.M2X%ڂ`15mkMK_G >ڊ3EN=o.z}x_r<]rdq7߶lVD316 qX<$!\vK@@;XDbOMW?, ,Mw0 \t}XqʏĐɠi(Ԧ1T 4qcjGI quQ8ހya[NT57YӒG?徯-mw׊ oB `0?O,SFPيG⒘N2cE?(,at.[TH#pqwKViVY=5LaWMMǨ@4AͣTBF,)/dV+'ڣ;w}13? r!χQ̃.آ; ]6tuUZo=LFI A: FSܳ́vkZNd!DY0U|}bM 28,i`CGM͔O4یq6AiG{97c/b!8{)BܷMj㼶@6ęs9A+QIk8Y27qTRyA}j@N>AJr*[DzƏƌK M<=K1bj'em&hnKƔ@fP*简%Ѥǡ]ZT/xq$w(9h7`#A4ַ!5-WI-9/TfyQ"=FʻqixQ I&f* NX t|52{(V:f$.W &gm~rbyxo&e弓0m}riH> U'Xs]!_RTE[)RTOG/v&Q!صe8#V_ϙ]^8 ;fǙrM/@'ɬ7?TQ/[M*ȓ4o}a1V )s<. A|U:_9^΍-I>N81<}$Jr7%+!hmnFAF.)5 gGοWC x6!jKBt̕N*P[SepY j6@n{7B`prx h}ZK(FofN7g4b W2=ƀ/l4g.]Z+KTf_4M)w\KQ6Sv594A{UQ'֗΄%.*f8q><[/k{8]e!FUّ8S6Q6q^3~WhP݇sDw!$Z3ơ(v<hK85Ng7 @uNx \}]Ӗn= z NmDV*p8ٟm)n#N 2AcY)F R@S]Jx(Ӷs^sհĝ7A!C42-= /U3D9 OʑOZ/-nꕄRYL7GIMS݂1/eU|~}l;`6iF !eZbK._yہAJ±nq`r-x)ctŇ<=*]xɹ$E">@QwbF6M?d>;gOetXw"5lkC] Ϳax^~z3gp{:nj#[7-!v& "p?u Э2*IW@Q?DzW$*8u50GG V@u f lh){(x.M'4^xG#{tZݑ D0?-c4@Hih.z *3z=gMW&TF_ Q01m/u++l-xub"uv/*`!"%䌘jT쯺ࡂ<ҋ2@7]Pu|T{7ά3Y_kz` x{o/n(8-@۬?n XT#3 TQG?:=l> F0R.|PdRu>7YBmi,DF_a4kW~0%ٗ`Oal%*{SWMZ"AO0ݶC*c yi@L\CbkF0H|@Q!WolRc&߁PVҔSlUy|x.Z=(M(اy0Sr3f̹ 7(,YUUŨ I)ef %1M=F;j:&}&/Yu$TyV!SWZrtSHͷa@u,qf>+CvBvnTӵFBZvU2g*xޡ"4OfaTFTŽ4x"ttYeG X.¥sr(28U+$IMrSLu鞪#7 1$TyČ%*}#}h ؎uB>ie7cD)U4:?,jXf"y anV4;;%(4K͡c5,6hǥ)T2~Z5?^]"{2!ddDpPޡU!v dJN"ިjo5X9Cg3Za-L$)kE{0gD:Qb6S`ᵝ֧|x K˘uu9[/ X'5"5Tͮ8d2R/ nK!1YHbgD&[ BJFt (oҗpu,oU\]OzW,$7bN;Omk@qbln%Q x>%&bjf9ݣ¼Q!teCڹ><әB`[,Ҧ%StFJPД w|SM+98J _OZKGny.O gq?#@ <1OXZ0UhwRFFq #tZO㛕'~UZ5oI|Pce`3o d"5E ;=G12%oMY;^  eZY֚'* 2{(VCdy>I$L )|U9蘴tΠI foJdl*ScY I@!k%*g'42Sz LkC ]ZOYωG|  L-gxXw3ÊwޞD)k?5vjѺ@l0?ՎCi\ycJ#B 4xyH=,MH J m>"o+L_hR%\8F+=̝J¥&UBz-m[JUޥhDl(nK*>qj /ӺOJ k(^Nή6vuV"n+'ė6O %XB m mqfqnP(A_'2ءGRDrA&KcD@_J/`| 9(ac*6G6Yb^agATǝ} QDIgtWB.( 4 =ナ"0ABZ-41*%r. \}1F|x.vUA)/.U2d*!̘SK曵nۮsUk.U|mM-5CYۯ+BB%v{҃2I 6Qsq.ȋoLoԣd;*>I4J>rj&qmivg|>k[rӁm#~2jw1g +p._ŵmYevBiwXk0q5sU*3fq[ r#!TX+a b=R$)LuK3:/G[T2&6UU>\\8a B&3ֈ*-L]wAGHB<]тFAel mlļvgُ$0 =yM$mܭZEi,unTl/1cdAڈg-jDD $-ҏkk(`0}B$ht8xgVWn+3IVRրWp7NǕf7|޽O_%!k%D,퟈P,-8!5rM@g_,  -7oީuU XLqfHթӗ9Va)~Y(1 ,C]lwS*m"F*){By٫% Jh"@GX>r[H. -~Jy&qTs"iDQx';0DAxPD'a kl چᵮs*RؑU4$P 1KbEȚLa [lYn^lMcmV_?m@" kf(E8Ƶ>%ЁV@,À({h\PLadO W&ޥ%Q?Kő03 'BſᲦoŽ5jg] ?Gm"i/ܩrTߞP/4>v/ /*DFU=q C1vm$R&8˓HKEmSe6L˸9j mrN6{* 490>. #n_Dx.h [;v<͛64wݸ7]aa( cEU )J$9wxhOIQp!#@T=S}wc-8#:AֆD7& ?́GI+)FB,"& CBDOctdn=Pdz[s]o&޻CIL&i ED&1-qp)یV*y)~~>>h{x`|Vb8+.;C?^~_-ߏ|ݼw݅5`M"bߖ΅:ՅCh䱋ZSAcybV&ZӸ8ۂ 6s&5_Um/]2}// &,Ez2&W}ᢉ'0|Nu$1 mp]q_%PBJw_ 81,âYuuWSiܘP7@gq=D/S e;r?Vٝ&4HhO&+U \[]q8ʃ?ݛ$΅QG=GND3JGl*AO|s(R(mg!S| `,Gj1ԣ YGu1ofwy` u,:)?@(LKDO]͉*| CV!S<8sYp[vٰ;I܇_j Sד tRFl_2FJ^^B[1w;"MiS=)_!-҅-W1cRq"لt7Hk4N|anؼy7 *_jL8)60`i٠i2jva*PUDbvN zC;ֿ֢>AvnYs_8:/}aU~0NU:oRe'AKs=E x ]5^XԐ{iۺPS)8_ W(Т=H/UߞQ ,$LVQ'qQs\7BZ#ƽQf9%pL>dux;zk\?^iĆQQ@zs6Y keR!v[u߬\pt;#Ɓ~ΐDPʩrN䕶#| kw)-3U&}gtws( m\˾ak5m]v-\13׿|;tPsk Zzl,Hq BV3q^8C|zȈ&>܇2@rNHwy\_'r԰".ҁ cI2`Z=öj}{"mOo=8<{v:'^z>YDJ>)JqFsa=ڰ*_`X<:Jӂoo7hWC@փU~׈ %6>ܱj&yI$DsFn$|/ VDP[ẓDJeB2 '݀p:\&v@HZ8<0oӦ5Ԫ-$9}̇.}y*9J(XiCN.Ceф\qM1Qu$].(PH:*/I t]}k &kAQрN]@i s卵fJ";5;"~4$Mӣ"6~=7JZ}Z/Q˝I$[cJի7k5ivm{@{.z,=P&O.Ҙo,`|q.T}ۇ8X8 ;&fWPłB݋lBܮkgIQ .0RvB\Q|CۙмaEÍnxDM]wrNsL 2ۍ%R˟r5tOK\>RS>$03BLAg_*"~͋ [  A 0Dj\SzQ,GA$,*1Rܢy#TG51R<}݌Z;b^'zvSEV-\Ɛ)[bԍ҇uek%*pDQqu0 sٖ.ט LX3V vBmQ[YSa#0ʯTŷ[mz-Bɒ{ɔ"!iq(VܫW ޲*g%`qҵ7$iHq? h!cuCj,?AQmv8Jp jZ FJVmJb 1ʯm՝y $o5+uԇCYz*]u:} r"ZĹV`itp]{PI=na1 \6S4"I>Ta`=KD>.:P/y[ $'L{,$ڡD bW؏; * F!ugՔ7JC^V`j9l\]gm:X܅Rg!LmϮVϵ i>GڸHt~^ _>ǡ cKՏ٠jRZUڹEmbkK$+{zlP(a)QF@^u)Kalck vˎvXPOWe]Acgœ8):CNYfc X/ǜ~v*f3^\Nb%~{+.f\(rκs&m1| R+HY~0+i!c.DI0*P7]܈k)J*+YU/эck[3cyA)ST(H~iOf k>tk*rL2DL'e]!q^[J}pU\F؍}5]F PR؞ˌ6 nZ&2X@&C$eGШDv(uVjIK!_Աۃ3'vsŻȳ96:f/M#c՘8rg"j cEOŦ.Gv/Ғ~LshP׃z@ra4)Ι0X2tVHCC[aXo%(ۆ,i0P]QP̜)Ӑ[}R;f:fLu0%2NiI,&NHh2pk)C5fh]3Oܠsfnh^LbWB`D 38)q9:f 9+y{083;I򉃯 cc0BKiQq kYa:$q;N=Kpք).$i6ǽQL=B{6(*Nok *{+"/؜?٫mt9+al&߷;LF(0O->6{ÿ8GHaKRƞ$&j?89h ikv[_7Q PY>j!ca ІSܿ|jATT-`*9*2z\Vܩoƪa,ײ7*o@c_JuЀ7 t (yu1 o!߫h:YZԜ M% 5)7rZP4#ŖQ'KNԑaBXoQZo2`1Y!S^+j"l_,&Ջa 8HiP?]lcw6mQ[V V(2OWF2gr̢/Se1>pn4c]+0G9}'0QsȒ{|g;T┓vZ2GY\8|UW*6ye|`N{EN> 7Ԍx~*skˁ,\8FƄi7m􅶝{Τ8 ]ՆvCLWJf&uxE勝 'Z=w{`[{S<C_Cf™ 6z oi:'hG2* l"(:E 2 AL+SqW烵Tا|TJvCf.gU1k0ᘂҡ8{sVx/maz!Bz81 !ͦpCLpɛ;ޜ|ziڲt>MIi(/%+/n=NT21)kz?j4ד YoL5ۢ4XH =JTJ"*] ~N|ހy7E"p~IP=>*hο8g̿^AД^PÆ jk{^¢NCSSJ@|l6m&oI*թ|SL\~k4 P +e\5g= pkCҚf. : *&+ 5)xQUU @hZ_a2+P!\z !K+~ 7K8wy,p;)ݗP+?~2 HBV.%-o5,CôK,M *Hg>ywbT LdvS5i:ouR_M8rR3&ԔR,i0"熄FzW>…I.i֢yES1 {xTH#:Ph- @>eg[X> P{$`X'Ri:[2wgrSօ]o_Hji]PsÁD+9z`f ;s|x IKT3bb$·=z!pZ"a֗1M?Ox3q&mq'Q.`sm£ESx&Kݹ M-[XQ7P o-~AFb^fksQʏdTSmxs~.65x`#<w c^me4crϗ򴚝Pp qԣ Wm])|^ yRz%ɶ%}8dq|իJ@N md'K&a`!eBuynh*{v >gkChQ"c$s0L݇ W"}tG] ALk5(}Ck<9[ -`Q) pMu\YQ#&Ggށ(E%Sn\YISXdK`GY=F2|xWNwn) N8cWn M#oR/`F~␠C?J92*ccE~Vu؍;P/`P沞& u?j'ny_`]Z~=27>R]i?AN[2_^?{ބ$C+^M:-"kj}DUlmx䦌FMV+mU_Pc'gjUCpaI]1cSuvRЏN{>u]Un.s6uC=ݗdc&.Pi-dį΄d݅ 6>lt[7pK#$c|61JZVoFݽJWi }J)$CMqM*R!buW py몒NOaV߄ Kg@Eگo ʇϹdb ^Q_JMio=JL]P<_儳;uS=nynZbۺ>Mi,!a :7 U`bI̢=m^Ly=p>Օ)tCPJ*U%-_-քN *[Ϣ/q򼜂:+e79 sNjjRJ_TY">V |~bg>`$aX6b b:N]d?-4#2C A|vC!6J$)-Fҟ , _X37fR?ul{@w5yo>] jF!܁ylA\k+jj 5 {8#ZiQBS+:~2FS`o{ 1/lX7`Ԛ:M6W__IҳZ Mñ/ /j/?X@ އ,!R\CհLqc/]@ b.Vq>M Pe+J &Kt[2Ռ4*?H?|w}ȯ$n6s +VG%3a!856DPU?Lnj5\kUeKEYgE{6Z2kDٮQME^oZYBqX;^3-~ćDG|1-jâPr}nj޸2I1#zyc"Eܞn{"VW/ ..ضʴ<^ҳkvOI5Ⱥ\b]6Y2Ov ,ؕ ].lWP>qT. .̪Xˌj/asEj %KM#,T~%u0wIcN*oKPɳɿeJ5/|Dz*b/WuSZ1O +x~apմ~>1ј]]_굺#D`(&Ŵ(va0n4DJߨi˂bzBfwֿ7js0Dh\M34bJWcz]Gl -(rQ6Lg E`Lߌn,^ W@kB//{MX<ǎnܒG@[*.$߄){wn (R?M]bGFp.WS6"%CP$T5s!r. "Z5uHqhEPw+&;pzL5,rBRK^W%8J8 ,)s gyՀc^5qx_/I~$4̃]:9g!N}PQ-@^Ӱ9l)`ywQߠr'„˜ye/?21(UӸ]AZ}kIŖBA) B"FU]9yg?n%kcfDK_|Tr p V:":ſ4WkS lP K:SQf`^[81G(W94A!a)X,玃7*O ;btPl1e02ZHFk9cEv.y ;f8erL_D $DRvQn&1uvt,mQtʂD[)N3P؇!d=?sBv(=S|N-xV- yd<@ 2IP)OH\N"  aXWӰpB"8c%_fp*~Vl+[]1E9 j qUww[k=H#(ϓɔoQPyuFM,r{8oS EvquW'r^[SdF:;Ϧ3&{3Pr4AQ|vn^%e ڭ'x*Js=vƈ$K9vJ:W '?"mUa9_!گ|]%ߺE='V\G#3Xͳ20j` l!Lp;*"#wU7ф9iD8 `lFȱFXp< md R~F]AiJ:bml4&FmGhJT]ǰH ?}c% uTUwULH韏'dG{t`2];vضhױwm$;,zazH |~„2/ Aa^d׆,pu 7M5 Vh#UPrXƩDS8lgfz5oxbFFh쫠R$WCV4/؎%zZP- s09F2zˀwFHk̡Ъdj+`l:y/Xh+Ʀ@I %Sl ڮ]v&j@TG>HwNaKjM6h{\=nZH4['|mzTx-S EY?Ԥl_Z*~D4Рw)Vz3 4 }_߳Ψ[Z-OQ2ᜮ829RI*Kha2EEOoZhq:,].*滱DLؠCw/|S:\ezRʰ*a^.8xC"NʡX$%t AbN@k*W'( 3غ7%zŭoN-:.6o"riti؞VQ,uyUEͪ4ks}h8S&ZoPEoP٥JT<=~ŴF|H6\Wub=>uZ |Sw۵>U9TU _A66MJYWfs2oѹiϠ,e=zc3MTgU9*Qjalj^/v[zt~k :͵be՞4#uj\QX׳ᇭ W֧ޓW93bhIJlq{)0GfdķòMqx}`T@7n(uL<[%4=!@8Y_,d< !94fшSD lU`qUZz`F5t*}1Z^hӓ5e#/^Ϳ2mri,c'!fӸ6G&PIKy]O ¸t5_UCC˩ZĒ]rpalcv\"oH^C{pyǯ z㈎{4JAb/T@b{Gb@lץ7ʡ/aA>TB7)SҦOqt1Pcvu?;enU\*{ǼbĻQ}];NM}m.>nʅBꍞ<'1)?J>Y6/Q8\9vO2j'?9)^MD2Lm"z1peh)RS`|4V /oa8h ?eNDo5}5E;AllG$sY {(b6;:lzA^r{^rSWU IL=Q_<[GR\. en _hkr=y\C5Dտ֏>;]hr(!_]8l dۆ$wvۓ6eޖq%6'H(hۉO:*hZkB1o n~߃5sirZV4^lv ~d4e:ȷL.9bM;?˾x^Jiͮ$RϦL-$'(3}V0²'I=$h07_)ÖCuF<\BBVz^WC-RoJɠH:<[C_nq(Y̬E t6%P EFKBEZL 7 _}"[-9h|U q: NkSnE-@]1 g*O'`9Vrs3֟;W( ؼ`Z1W=1( t  s?G ZŴ<'هql =swqV%|dZQ99E4hpv^]?3G1~אjy`sY~Ke(0 Be  ǥ,/ >KJC$*CF%ѯ4KcoEVnOm@މr1<ͼAr?%:G/4trjs0?uj7ds@T&f4g˝ꢾp>*fo[~Km9Q50+G_ &ƒneO|baV܇DK-AaBm}5 iaL7 |] mr?TMm\$oǏ/x]iS p*#?9а*1yk&e(cA<. 锊@#<$qٽ bR5᚝q߹$L|߫x,qQX!,DGn ɝ'U|3,-g`~~nucOB(`ܗhOyȴѸyErœQ'p] 8bū֨VTtq-4OK)3sAvђ周X 튯v3@HRZ&)ax*%~'ZխM3Gbw005Q2YzqH-~LASlwǔ;)ُ/"o~jQ-bh s_.="y4_;Ԡ3Q(?PE9xIBAߋ0ag6ˁ!y˥'ɖdy\'RM&t ڛ)nE#yRjՐ {5ȃ 2YljmsEH&Xޱe̠ w6Nmc0]8զ̬BWa"1 ό `#|0P9KDkݓF3锍Sscdklc|tI`X+W=/ru ~(VO8o[I2iLt?Z-@I BfI@7>aLG ٬3tsÎS/&jş k x{"Dy ِ az+HnſEpAI!7y%kc9] ?: _iu2qAxIΐ@ AtB]جtc%!N{J5?'s}Թ9>)+β0y3~1ƕz\}hE@N@xA6*5M ^TqeXi-ŝ:oRzgjjϋM_%Є vʞf"9D=%B` v ;Կ^ld<эZ9Q]΂9֞~*m[pʟ ׂ]̓Kq{7NnC>i#(V|}2CeD|(`8-0o%}Bdž`fRʼF4_V`?$c5ZJnB7cxao[/y(fw <Cꀦd=a3ԥg2-0jI5\C;S{ lR:ⶻV(#5isu>=_ݼC%;i+?$k X!2k V i<`EjXÙew:RG=o/aʋ p9Z'1s Tfl[ 7La2 9-QI쇀ڢڮ|i{>muK-5/ !;&,E籁FYfy s}rUPN=*L]SEy6` ʟ# !1՛DBn fјU\Bqu 4xᨊ>}c 1w"i_$,vg;SNى鞀-3* O9^(ڱq -:n YZu+OZ* sUogE_vI@1~:ǂT3ȴy$2A≚ʅ ug1[2w !"|zʤKegJ$ESNT]OwCY# 5} X='7a X#\ JlpMp&,,$|9`] FX7a엥?c.E.pSa[sKzсXsCM'9~L0vty `7cO2kLUVlA- sܡI5RlP,ngo{X`H$rQo6(>OY07ƭ+x+\>-$ :Z݈Gz lOș~;i8zt/gTuS\wZ4S3" ϤGX--vFkJ,eFeꇹIk6\'7`V3pltѓ\~*m`096MrV#H܂mP{ΉxdbLv @V(=34/o lJ'ɲN]7# B J73iU}ՙ h!h4t+ ZryU| 8O,`|Nm '|Q9wմ5leHj>뺶'P=(?2JM^],_aMC f/BwG'1%ʳ<4]iݫ%+;~S:B>5M3.\kdGU_dɐ|T@䬔 [@ $787cյ4<1ʖ?g֝ q#NO)5 ˅Vģ_TyR % QZ*vAo#3*oΒLrưKޖ|1W΁Z)yq̒}_ݜܶ%&2uo%u%፡[&ڜ4niQcXoY< Q:@^GQǮ7>M-\-}d\ܽ3A풑NxX!4KcoGq}Ry=Pf nv$^4X4'p&Ot/AcڿP=֭?܉[Pby7(7eY‘DG%?hqԘ,^ѥPD^^~gY"s_`aQ -.qz\L1.{_|f3EЛ K3k$!H"ZG ]0xϥ 1CZUaB1&} W 2M-X9эZT\&"yهCR&-ÈnJ常;8BdA/*r%ކ/;s^@r0"Dwa4@gjO2^ԤVmzv*5G7PI7]s/0qt?GReAKgkfa}"n{ ӫbOwχ+|Wv{(z&&GtU?`̋rTMJ'eD0n@ YfཤҌP$lWjH_Ii_BMuz"!Er#sq[Y@Hw?e_ Zam}PN[,9"^Bsͭ!Q8Yh`ɳƟ.G.nnihDCc)NoEvpbCT*m~pӳ`Pc™!~khQbKۇA!o}A(f+Dž,g~w|2pN0ȋƄ\^ѨdѮQaX`[]>z(H&!zMw~ 4dHD*#ܫ=~Ot+]!5qY H!"Zͷz }(^SH[VkddC3؝c9%aâ 9pNy*f tmO)ߨ{Đk"$1W{6Hשnq]syt&b q<4^[6`Mҏ9"yL/w$rɫUW f:MRU[B˨㌫!-3?O|NvюYcw@yRǓ)(a[?~nAO>Lư#_d -Cn2O*&!5X 80JWöUL3Дh^bWp"5dejB\5?=2uy "ٯ/f`.6LtjJ@J FD᪟^bͷ/ƶL}-=&О81") ׽;=UA7 +h;0 Cgľ]n^GK-n)wۆ+AV!jǮWP]&d3<'7IW-sX3X-DI/_KU#I[t%%w:oݖBmg*I<Yt+)%xUOJ4]>懵lC.gg|W݃R{A*5J|1'v 5 Lնwdk$o8>.zSAÜOxe@pӟCz[aCvH[!_>;EP~q~j*Lt;t߹mVDA])bP"&: (BZ|9ڮL"{Fÿxy@9T{g_>m6@1~UN |[`2gu:ΙOq :ʜ*y[HR明5dl#ugGDTډ5M9!Eii5y̢B &E$]^6Q8 5px<տ^T F;fӾaFBZ(A0r;' bǵW*ЉS'$-aw"A&nerYޢ}bI .~^LsPuOž5=+Ö1(a J u8˳K?YEtey2T~qkdxM&묄W У;LiL19/Db|(o83-aWIm`COqq_f~m%*:m{@'FŘ~cOս-CX3CLW/c ZBs;cVܥ&ƭʝ !lbtRi;Ȟ s4MI7Utֹ 3Mr܃ǃV X}[EZM, bx|3VUq pF!nsk\ [@i.P7!j ~އ*& \gDAB4gw_]jϘ$JΊ5=iIMt2*ҺQ Zld.;6eF ֿ"e@׽n*ֈKkO''rNW,l*̧r4lS?=W?f?ASnN&am'ei@Un0:",hSsI5N UHGlNpjAI*vϑc> gqф䄼B3txL uB[{E*j=S 5W08n"+zn63ڬ{L(m;\nX\JtE#kZ֣2  g̍Mc֫ŝz:8uTh.2+OsbEw\aK=q}ߪO@73"ˑM1]թ : ~ֹGWȼ 2XwSn;(f(p6Tupk|?2g֌͸ESҥPh؎1䏎NjxQq)G .g]_ZkݚWTÎav ~v@GYj TqwVIj]֝/fH`k+c_U˄b3<9gl(R3wS<]V6ȼ Grj޳5]%dY|p )pNM2zr$DS^Aɕi*"X֜.euUΒ*SR1臑թ17BxBŊP [V DtJV~=ә<~53 := 6PHn.-U1-#NZ2LagD׉)+݌oBϋuI}PLQD * mOK nYA2ዀȤ~^+HT;hZp+G~nжև~=Aj6(|U=E4MB:YuqU>GKϫ1ImLٯ,p ;>d'#S p A3kqmdܔz0xַC@PhbqLkDSX75;~۵#/d@,Be&-Ɂ┱ LtK,tC(X 3SN>:TyoaC N$qA/ aԡǸ;dqѼP-evaB@åp64Doyq0CUs pGU\e^/=X}uAgeO#jtlTr \Hb-itB+%5I,E b~7Y@dv'vs(D~Ff"ʜlOH;v}-۪DsW>uՓLn1kkk2 Gy5ZבJ71_\85v*ښlNk\Dh[(nU(,[/'pgO7wm{, ll) :xY_鑇-kYPU|#7?g8aq% ~g#{*jSIiNרfB#ahlLY5iL'ι*PWw`@ha4+WoAzˇWbX7t%zKAK]|ᚢXhu"xҔ;0 )p޿4")lĜ6~M⪓ ǬBF ~F??2.z_4=:f8Q z*{'Вz'62W8B[W8QKVHǝWdMUvg"qtu`r#PVdiQ?D}EG)CYU2 ^gb0]sGy>*M ukCjY\wNhiS! Xɽz$ /+?lIư݃ⅧKf>DY2RW&^F;}U~EيHm;2%I~m!)E>$t>f2c؝q.1C1~48}HA*u籁&{*hz|R=}]T"7"}"`='_H) mU?CfY^t \`gjX'"Q7v0I-;6HSGiM:* ɨ~88Ǐςk /ϒ_E1,/[wXu@HAm5;줅#Xҭ&/ _Ni *e謃RK s"tPƂ.<+!.q0(`]>'Fw0n| nIRV`QGR_;߷Pj3T-JyN/%2ᬍ n vVL#nA4 84k)g=sqҘk W+ԏtvRęb=zJ~ql'=j p+6?xfc[&/ˊs:HA?H:Ǘq6`0ffU12a Mv)0xW,5s[A7*:qW O{m9=39 훹O *=§߄HHyY^< RPr^:7DGW?3ҭ't܅P~1N?~=Q6QQ-O++-#jT"q'q*.%amԺu)k}+'Go"4cjETV,̞b+}e8'*3GTM^= ߇XG+u,^T\p?h <"qGMx]I; q#}"a"[m,O/py՗խ"%9߇zND9*"1-g-hH"'yqE{OPQᄭ:S6ZIsa˻16 e3J#D%J =ďբ\w~w{ԿQ4nGbNwXzDŋw2C@UiGas mM#ړ)]~F˖?@J4ێpPKN娾&~%q꼂YŸoƸHlڋq&?1j^3>81+PS )/%&tE>3-O=P<E/cщYoZJ0RrQ%IɓWZbC7@2$0 j#R#Y@D8 M~:1A:93_:$))EJ~1 \I4aK⵽B)=ß+yN&}lV{t_3UvV]cP3dgǵG]; Jҭ귣ޤMp $Kt&" &J@2DL8ASM1;Z~;9l+jiL9yUaۥ|rǞϬIc4.ա )?0b#NQG{Mb#9:Ii\9oejfESIюN;$=rwq+5PЃM#h[⌄(6 LPkk?JThk-ŗձ%*\Y4Mc# /(%P'[݌ubu[0Q׭2% ;&9Mze]3(A%hk-r܀,1J+oЏ`ښI2M}\^6[sX!hƋgs@P}c{2" 'ʆ4&l83&h]6wŷm3zj;"MfB) ?P$GzT#BVٛ1^5V;b_>ܵY5Xv rc/UIW(n$_ {DH+ߣ+^RkE8] v;X-Ŭ:|kqw2/ R%( tx-w!G =" \lj/DLxU#*&G#ըy$3#)$NUfX9g s[CewfPFY簞~Mԃ3A:P*=˰N-k%J?t/|C̨{<4R~6-3;.ۗxxy>7l{o=o_|, l:-΂"QXkZz4_<gYdj yHohOe@PksW 2āAN>˛:F 2 k 5<%Qg%i/j}Wn9`&X#$ܙH9 &_IP|<M "l?]=GǾI/]d+&äu/>.odCSY$Ċ,(_tFvY3ր_Kf:Q+iqo{h_N*YjQʷ6~,O?%Dc/"IVj{X?i؅à\ጦ*dFÏ2 jS-!Ce<Y)i.' ]ӎL(ƺ_llRp18r%.0蛔 ˰H3FJJ (NJy `qDc t?< x͋?%6ioU%fu-rK6XfD'&} $d/?UCpx_lm̍{pR8sr z# Eg5D}jpM?͂ Y_X$x/{=86p̿$Q=A{/;LrZ&pr ̧pQ:lxosOqd`iNG^=DG}'?jKq׃LTba<) z1VClЀfnmnml.`YBmzF ,"{F.\y~r;\ ,7T_YH@賭/xr/ ԼRhf-VQF/M7ۉO>/w"Qtε,D_,nLٝ~(%ۈO1dK`Tow¦? t ɳv)7Ws0c(&}5K U"w*~DRǟ jiq9*f6Vbv6ŢNm>4Z(A9RXPQM`l;>-1٫*.D@hHpR*X,kĽ! Y|hV,D ~`pbujHLWոbh(τ7 KPu_8 ᩼D>N*#z|z^8Nvr>1 89H- Y/ I$2QH< prcOǢCg_BwUT&m8Eh W8k)ȔKC;ʨz5>9E{0ڳ|V3o (1PA snZUu)=:vԕG$h8 p/~œ{dƍ: 5&5gBu_8Dz)F/$^BOs ٶv 2<֖4}%f-/̔;u8?]̜ ;0R{,~om'_8( ;"PEլ9pޛq-Ոe[0tc&e NiςÁCCއGwG ,Dz[FȦ=r-f/SHk8ܯ*Wq'O)t$'4̃:%nBQڍx:k+}d|yLׂ2\b?Ť|tauyBV0RO6"Bht?:AO{}o n=zŮrᔵ{iӏxQá5]>vf?Do7 3c+kT`0 _RpY(`dVb |1VnUnMPx{RC6*Cm! #v<(JXOfr窺ȼխYNdh&tLV uL_RԻ]_ Kr]j]hD/WېdU<vd`g q㌃ʞ,J=lRh?O!gmνB VG@B4h7bGa˫_q0y;J<8ecScj17VHzc| tpW#4~~L<˘S'h[26-o86M %}oospDc_,gjiZ՝=;5å- s}jjB] {O]0*;]c ҪQX\9xԞ="Y՛w|a+mm 9-i_e> ϣGaĬxk:bG&2;'1p\s] *IL΢ST}VʴHml43sht``cDŽ q9\R6<RyΖu ]AWܫ) g؉ ׮j X1K׺~+Yg(>+sog RkJvYkuysό(mdL~LҠkTQYPI4c*8-&"kgiEFȣ۵DMn؉cQ_d#A0`UF<\߰,JuЧXC؄O+X8r Tb 팣+foPdK+gAةE ;UTI$-pybC>}'2~f50.Br [fJ8נBwbL >MSn>o~ai.QsTp\9D^)$*܍Ƽd{a{GcBK.Vk4!-JZ&FN*lq3'%9k5=r5=֣s H֕D*i.%@۸ UD ֶkS8ޔ3k_|T^D+5a1RD꛹`fE3#gW^:gF$Ң7lmc `oj |WI9/ h#s'jɚykUDT 600&-V[y:aʅ6ZQQ 臮2$|pPyCb~huZylޘCmEjOTgu#ؗ+k $YvbّN΄CC'e d&VZ^<4.څEƹƅ4"2@^^zP:eW%4WX0aOb xK':|я;}ƜrE/PZeB)'TuTEb¤pv/u꜇#깔3zz3 yؑFKct/4;Zk㜻~TgOk$b*"H &jm%#>=-<79(:Q+B1)n>x r`\Hy$ %1X+(ʞ4Zꏌ8oT x,Jqf+`w3]cFҌ/m fUn;vA>XBxeJ[ebFut9z.jŢsK˽>=J*UlF_¡GzpYx58J{UI/6.d*暨M8/{E@kogY۲E+ $(mYMrBIGn*L j!.9[`VO4% OIso" Mw:kI_@26 '4샓{6]D`oCeA՗ QI&Ē e,v LpQuOӔjgv8i9S bL&5Ad ]mݙiKA'Ea~ f Rl H bh(QW96Sf_yg@t5fJH~K҅ReQFLWPǠ$daq;-)* KJ"YLuZhZ=~'DɁݢk0usǃ^mӍ! @yKCJP%bsyuf}۸0}6'`w>.q0%( cmX/J_.:;S_>\ X _.4_?n < W;A:;/X^ c !IRh6 aBט]0~}NWxtFoX?:aAY#gXU૞]FIh-1(m|Z㑅 3j2@?˻K5^an{Cڐ' <:h}ı F;*G2zʶ8 WI0Ige:< e)U#$܀9=vRʡUrэk!W'^U<؅t@GJMH 2=kV{^_K?l5Z˟lJpeVh`uV>?N̢q]uY2OFp-Bǵhz1_Z^fi!}UF9|T\!z:ZeUHdB)&%k)->Dдxz&<駄9q]Nj 8DSh5ӝHYȂP62Qу&ƙk%4^)UL6 :81/×Ul-{lm_Y'dʚ})|w1M*LX={̥$Շ_rZDʪ|*0Fetvx(u~zu5iFr{2r$6[Y)|TR6, <&AՏS%#HZ_E !٨G>W R "\9>=~,"< R/A"mfJ̚rESM)Bw/ Pχ$zv1v3Y#=X-u0?%Вx 5j6^_X0ju-M0[3$g1B 4\wFk*&`2w-}g 80Kԫ[ht*=F);WZW VjjvA.h D_& F4)7z"D8q((0fr3uޞP*9tUmWt: Tz7:%ۊcܻXOuC?\ڡ^HuAxxXE]g0QaݤSRJJ2&^$ꞔ9iǴOpp(T7r<*G2NwR9(}w Gsy"#_ I ٚoC`]f2g}MEVe0G u`9k$nGĩ za2ez vK@nd`x/OηO×N-`kxQ[ts,~xKvFC*;,vXk\+yjB>Ưyo:hukmO1DfÇI[SF#93Ck:l7p*2[,Bv{p,_PЄl]%2"[+)Rd<^4[ŚA`mkcZzm=͍olB?F?GP6Kz3̕g9})Zzq%vT({ WxȁmMl `Aɉ,f., 5`gћƒiX~\ )!h@(̟)qƌY$P< Tœ3S0|YӴ#@׌D?I B+jq']OZʶH=lBlWS \\C q*6Bۋ§-?0}3,5~z怶۲;6lZ~xh,R4d V?R6DɕOI; Ab"|\nO'9`,@٬ٯdf|>S7mE>;}4}- cep 04mw UfC^xZ,% eпN,ս;恜Wgijy9s2їgTE@&8t3\sZ҃D;O8bc$֢UN,f 7,Q1g#GJxs/Gʚ @(?Jt HQl|]m&+qU)"C[KK%6C[oFP'7HU:^.AC8vQڹ(™Toќm&>?!R?.vM}pTGkP MxHJ;2VfMS7ηN! OЫ~9F?Y_O}+liP~Vo؋itdү 8SU-嶭(yg!~.(Q@X7}Iխ3W>Z/!E<.@#S*y+Hr幇N?g[5f levP4( . os,6 ;/`Kc0"?-+*k**T[K89G"YB}߿!P0'cԟxnVe'v`&`ˏwA[vNWe5D.5(>k\ Ou (֫97]Bτv)Q&SAMH' YN@#G$mg:%nL!n_bk Y6QZ ^pS(T_}`қfɣb,uVl~zXruHg  +͚ .QסE 8KKV\ )8r$c݉S_, Eϳ/FenC/OU$,h$F\6wT]@Ib<[DoI䇌Byk>Uo*  n0 /8[|oJ_JߊJ;~ Ki(mfpH5Eo;hO%MDT[I'[F% 3>%c1-&T?mB9DV?!Ho)i6*4;Xv 7 AiH~єtSJ 1@*YFƢk8!PQ*m^ j }FV/-J~+SWd( A.+3SqQvelS)F9+>ҤV/@xsʲ%uyQ׽ס2o$>C@b0FV0gP{&'XD慴#jJ؛B)N~(6JZ_mM7vb!^TqhߋDW/;G1v$7Yv P2X~5ؑѧNqk~N'Pufsco4ݜh'B&sP"*feMO;ISM%f] d\Dj)9FGBG{e ya\2" ;d2zRU7Kh`#a #6]Vɳi75 5 ]!^śƞ( nlDY,Dc+r֐Ny1-E}hZB< O i8EdrT"<"1?eQ*b%9i:϶n,V$]GB*\Όh<ߑ|Oft-wL.zo_4uҟ(=AI)NoL9 |/)Ŝy+\ ]mR38gBD;ۼ2}αRwuC8bJHtW/3Kř0.˞ZN \DU}i \o?:X5.dOzPsPu~QbߝI3, L - ښ Į2i14T홶t5afU*kʪoN֥a1 }TEPNöHAT~H0EV*l yO"u@E}uf+Ā3A'5R+X `S^:TFo O: KⱀsF vzW |GEՌZMgWk[p2,PeUin{n&g<97cؕ:6l)8z_a. NV^i.tKyhHDD}#R/f;m21E2HT=:"eKdf#50go]M c[ ixLv2<6(W'׉M^Q|lTqЛ7b$MQ8r1Ͳ =ryY$vR$K.nൻiG+b*F'Zjr{VB+*9@Y@?1t>`y~\l'cPޅg| JKbIgS^oF{Oޟ{J&A8] uSO;h;8R&RV+GƤ=UAOGx{:=ҏkXVhӎJWrqo8%qp PBE!] "*ħ8VvIEnFTkӟ[`^i 3$?SaO4>3ȥHn;{(=!%Xuuqyg,//؅Ae3 7NiL E)I}{M{1:-_JC^5536l;ê-z-cCMF|:{Xoq5%ZֱIė|Ycڗ4MWRD/iqdRe4Ou7&Y߳^0w8+>Gد(|wfOrH#4hk[,}Cqo&#|هEjqb;CiJ<"O.gq0pm.2A=V=Lv_/`2uNƈӭ 7uyOs.9DH vRi g٘kifIta\Kxp忮4 gqH 2N1:]PkJqQc.1:6W~3;x#8UW=-Lnn7m<&+94q{saRMb\R˘-:-;-b:}yQb 4wk;"ܲ }w!Z8vJez}?vqEoqe! ;Pv /OIZ:!})a0$*3b&JXܦZz8"VDюoK8fxmC4VPb8H& v;dPbku]Y98L6 z*@Q3H44J=m ^8Brj%% peyJԮkP#l++/OnXI%]p^@rA$b qG{e"lV2(q[!8ZT}VMze -?jO7o~τ<}k=E}vy70 n&t RB8=݈6S(zZl}|чR j7 YKy԰UmPlrq c fنq!z:W XD^W7/ܟozt `_ap5rw}!4ܼje* 6YW5_`!<-@ NEs*G^Ũ~Zrq_Ќ{ bYiCZ,VĔ(Rl1Q|΍:^CP)?H'.}4-*o#Jgs7޴H)1o4 6ƾΣRBGV_C5)WRasBnƔi LbQzN1g.E* H4zσBu흻*pe˩2d̺DUUwz(^2Jq\;Mf~ ~Mȭ%CqNk]AL&pȘ\+VE]GUrv9ԨK5z9wj2CנqN*U܎"̿BGR ^ ?walNXD5LtrW$^̃M+Weߡ IxuN՝MѤ8 s߬C??,u[Y֋1P[u'\iemFweRP @ƹ{@uu;x6/қ8sgÖ\kŮ1qo(예G jW7EDu|n-U]n5m%R 4XN(P%b.QhݥgP EdTNƻH lnǛԿB'a zEH.sT? osvw> Cpi@w4HEn6Ź*'ﯲnC$|Y1)ӘUwI+*4] c=YgPw}XPV3:}{t0&f'"eZ)K7 "SEU*ACjGOa&66xR^Zdz(R+ m'xKbX\ M4V7;?H]0~sI"|U"_O\'A.Q=\φ# Hw1U/dx: p(c [a#1O&G6>H vo <$Qb*;*o_OfmS¶{FgIj!<"nG33,p\"Nל㜏Wޥٻsd%L:vr%897MfRsNK'sx{;aJӚch]_%kp$s? 9rwGg=MQ,*t `U!7^1L ENc#\],tG'B61s_tRV&ש5fX 0 {{Az?Ǥ%ѻF3U8HĒ̗ncH6!&Y: WKFJg&Ga3K\h\XœV@U 6t$o ,԰&u\$03` D9A|(ޣcSͳVHhc[e:'͹w7ĉ }bҽg'Z?x .u.JMjZhBk*ժl^'O 6.QAXOA0Y?%x%$=MSteaga2] ok"c^ű~Ǜe CfmGnyϭ_{-mJ$P hMyﴡxؓg80tD'G<W&P<cw"~J& 80b!# cx吴Ct%DubYdC {>ڿw[ʧcu=IU,EㇴyҊT"h!`%hT978s7!.q2|sGT:9I%6:)_~e@&k}Ň*z4Y@i/ NAY c@j50/S|>oh^wK .zpZwԺʽvbH-}|6\X8,ΎIC/fZEex+\wF3$ޘbW1<WڃNaǴI|k[#?[Rx&ҲHF ]\m3{tfvʜ3 Nyb߹Fnp (K SW\ː+X=. V>;$ :ZstfV8P]+mca,0K%Hyh@R]W ΋t*N"$c ok:#Yă[IFw>Gp䁿,T ;.Nb8s}/7 cIʳ5yG-J 6bc^T-%`dI ;zaKE:L0G1+s#څF]Y,ZCvY2J6C-6iReem8̫>5qwpOia`,w+ H6M漽7W5b܆$mlyZA`,OW*6ic R~mo9]1yAm-~A.`BP\QQ=^E1fHcD@BMAދMސxa|οBZo*S}6T٢gݪܤZn`zZ8D!DC]`qIIGװ<{1'm"V~"V=k!bvbh 4yO286mbnDC)d̝94Ő߲ P4=s6'W^EuRlOWXR4طa \`PHVDj%46 >T…6WCzk$|_&@. :ϫM'x [MH0B(h>&qQVӔIFó R/ f}aA K|I!>)Mw#ޓ5ߖj/>]U̠yެ%K n@q0;浃<^)S:F0`?'0mm7(c N9Dרo5TꢘبxҸW>@!ZLe6h#c"jG~7WC)}Aך^{r\ Vr5mil8%ΎQD믣X+u`Jw,)^>^$s㬭sm?oۈWoSlbY qr. 3ɬ^툹k*ldmy0 *aZJJ|+9ܼ*j[8^MF')1Ψ.b(eLO/@}6s( ՂW`FYʊIZk'YoB ]i%wns|I}] q(? f.\;zD^J@:'6nb ͸ĬTRD%~J3IʛZ~5ED71X=* ֵw` +U (UZ@۫=j5h!|$t@H!;t֓Hza!̳{ͧii9%!hk a" ! O;y iViD(F< Saز,|4[ئ'JMi] *;\^zӰa"7;?H$#*QI݆x3Iz#}5 .=,SCq,}iƃX@ !++Su;2Du0NX(ٷ6̙;GzB&F̛C@e [I"q F,TbEQ 1 TM;`qǝz*L5fۮ@3 'p}膨ZTV+>ZΙhUs5I1x:$?v>;9Iݨˠ%ޛbX& < [."nknPx|Ω5Hcb㊬5p;x;f >Yƭ(PR,6`VT1 tY6Bpi)<5qcĝ&nE>[{ 877ay2CԖ$rRj|Tv ?m8mW7(tZs[畞y&^˲ݭSڱDhE}9dc~'1Z9Qe8ycj :YwKC/%dx-,IAEס5g8g64_W.^l*bEl~ HfjW$K"Ux v9B&)EX=#"Ay݋&^eBJ>=(DgfSvۦѵ|EUuOa&,@5}ZbkA$xqjfֻ-ɐgɿOONѢuLx#X8>k#OU*_FsŽ=)nz᫫'ht_hDM|R'P@s>U6 P a0`֠H*'TMG݃mמjJR ʦ=:O.~SIhXe^ dGoe}A UNl氏Vmʯ P w| Ŝ郊uɰ`}cN&WꋸL&e(ӜҪc5b*0+V'/B 6oVV_bv@zۅUeF*A뾎ѡÖR\K{VleGAthHؖuQ^aBe<3EӚEo5qt udFX _v#q< L_믪5Uiz ʸK]~MQ+\DnƣmQc粼`n)3 pD*tx`נWLRdJy :BZSǸHk@HY[էeG_:t//cS;Y N7/4:a:-fkCu8B'BB:w[m?,8Y!i-'xvokz1$֯6' %7, &|m(ޯuYf@ca/qLrٖhlڦjI*;Cnxd@3A|}:$E?¨hɿ6A6{jO$ "r0E27E﫶~au&rw$uF\/]S IdXP^A~[Zză/aD5N+5;r\i}N>*M8l"]<7!D@=3K+2]6 ?BvqMlu E !9x,t=yzԺhq)}VA$0Yw=nɦyJ/Ƃ{je7aQLC}U:[4phTfYk{n.,BfnsJHJ N>d1b Ejbwo %(L|I_ oz8/IT|";SG?VY_;YS. ,l`C!غC,|LIobʝLef^R˗?"VqЈ DS*S5 AeŻ8#AXFAmhHH;J}ͦWr46֏uB';WGǶW Dgkr=G^lxW#(DZ\HV'RLi⨜̃ Ӄ,S:0N9=]a/J^WʓE"]:ɟmHWR'9 R%7!`{ݩyN$7|F"[\ U{qHJ!Қmy_~-F/Pn:"a|?*|)]x~|G06ܢƥP;*M9 X*%[!̏0-tE 8%d6)9aCdϯAHbEJбcԝ\V lw{\92!Ħ1O\I@mE !.g`-%\8:P][QҜ/^&Ziu秽 k/,[*bZT}AlKޚ!Yـ6&% Xo5qf pV>,92W=u#6#B.gr_`'oA.PţHAV!-DgF=8#s1WĬ(ۃD9Nm'd!X[7}z"`04&OEii]qŦqU%I?Q2)hcM Us@MR6>E>[Xv հ$ vw"!>"D$!tOͮqe]1(ԧi~Hh z,Y鬑(>Լ׸q4UYlR,JRD#s3"{Pz`RQ ne ?-M"!OȹI;q+2Yo&>LeaiAjfgUݎ,9([z; Fo<-,Bz6+YZvmzs`UуV=HO3QSԂxΗDĶdvPxZ4GR8JEr2D{3`8(/΅P ê嬈qCILy5uG*2NK1V= <0:oOh7T豓ʋ.b[h!@2M6e|6YlGvEPd76cEUEkw#j}XNT*y„N]Xbt`( 0ae9{ swۋd_]K uurW"MQب?NmޢfMA/uBzxb¬Z#tvj[ 9Y ' a˱ Y-י64 F"pJ!y&$|3lM?A엲EF1I|6~8n<"Jf2]*׉aWWP-릎ϑ3=HRwW<'nN,άU-h)`^z@ϯkb0? vp&e՘b$eI~}OpvwQegwJv-XYu3`GF~22-32E~ʕJW~fO}, ",)5sҙ¿Q ߠAi3Hֹ=`q,:#LpE}D`Z \EFA~ 7؅TuѸKx1PGHI,5 ]ã#x4w˖BڨۺنO(!ЉҦJ GwxHtrRI`%h%R[BJϷFו0ޣtiX3u}J"/Sa(,Y+s;9LQ֠ ܟ^vb_'f0<-ޕ` ,3-YLeAlOcTAPXIcBd/4f@zBcSSXIL9GȲ&!rɴ\&+,Emw=G0[1 ?qpb*4=ͤ{Fsfp>wX*IJpz'=4Nٜ~`[Cˆє P:{C'1p;rVu?N'ؘetbp+}m!N8;?1x8Pbc60~{]Xr;nj<ʘOn10,wy.]:Jnsh .6zм5\c-jq>\ CLdk;Rp;~Iڲo0}Fr۷ A|J ^,vUN[񼡞vilT2Q}rK&[8oj~ʛdŘ󝭕=sf1aV^圇IG VǰnXqJw#(gvJa1،3֬u ~dj*X%[̤mˆa 4o\}")y )n~n0a3nUB$܈p dQE[)| R4xgHvPȞ;-njoփJ:jK``L-FtӂL`L%مN˺v{[9vKƣ-Uh9KMK'>+w5HUf fIH(+Z"]e/9,$`"]<5{=Yg'~=/ό]I%4F60[Nǔ[ 7n=\2_XQJW^y˹pTwEgf \$7!c,7W[#S9(MQ] ;)a*;݈H]ړ,*l3Φ +ڴ8vS -|ؖey/5 ߕ覚@<]e-AP #oV_M~#0X.-8 ( wU9tF4Z+NGEcruih~\]x^Z+v@7epe }) ~x-:Tgi d;h8&Q+ZW{`/Jfcgm#TdslΝwEI;"l 4* ȷP'Z%"{CYg &f5͛Dz#7wt66@q'B~m|L*W3O:!A;x9'،59z) [0MWYX\oG"KDiA)H!&Hd4CC =fJ߫Q]CiBu ǧZKD;(Rbq@ӊjsV6&kfS*hn-)#G)F}63ls"' S.UAFgMWqQ'[Q%qgC$o:SYcw˭79kU5̑S$v`eSK 1Gj- e'ݛ_4}eysx4g8ZLF}?06ɶ7o-Z j % H<mmBQP+UOQFb3>s4~cS%ˏ;c8*BYr Vo! N!;1?wtBޞw'}V 6sY=oSjY&]A7DJvNT)ƀBoUQDcfKH:'Xs3soճVwE) S)%(|EmDd]-T.Hu@sqXajKt4cqTN>%"\yij k?iB9k3%)l1fGqUD;bUT۪&0\~)>@w(`xB֑6}5t}d1&l9 yא> BpwCAjALfwmRՏW1YRcs"L"G% Z1]hRm콭#2%DH)u*bfX,Q9-=^'qr;0҂`͉R:+$9w=@IZTTŁuguRg-+Pa?V~I$+} hHZVr&H$=6)Qa!q}c Sps/C#wQ-.d @= ,(aA Lh+eٌ ~:T@գ[/_×^CǞS/kc*s߂N_tDU[1Ũ7.:ܔdO$޽pIٞ-Q|H{(nb*2ME~ &nQ0o@恹@G]ĴVr0uj}yU0ZDⅆ Q`lY 09^*@l^1q"عV/׹oF\щ}t6ۮdnzR!&. v7%~u#BȤg:3sVr2KM!cŋǁ~?Щpw} bl P[&^Sk+^ZX IMc:~V4rz^k9ܦ]qHUg_-TŠ칁 9RuhJ0Q gj۝UL9]ʙ|y-Ȫƛ#ط5 !pOb2g"y$մOֹwhWZ/|2ݭHيjx{:By' ڸW ^#l+_s9|sW,=0Z]=Ǧͫzqgv` O-lͺo^㽽D~= )'<"Xށvu.|kTGr;Bk ^Яk=rJZߧՕfazM!Es/֯s/عʋ"WrX!6ȡfz9kQˢS:8ȩ'ɕ-p 6β:1򋫲dڵ\!M8)H׻2y 5I`^Ŧ3uDi{3r+a31Wɀo0;q&vi3ٜV<NʚH?"y& V nh$x#S?>h#kc/p5t6V `ZB uY<-ݍrW1)9~ ~fTU %kQ9|'gݲ9B1 Av@'s ,ݯA8:_ʾta8PpݍA؉!(k*2FNilSC;$)LPN%鯃Ǩjh;) r''o¸9 IT0U:atжbaԪtT~k 8T%4a]-:tfqH-vu vѤ z\6YpW#߮vDxpkD17m5;,ҏa d蜭[:Vatz|.R$u1C)^NJGnm)CZ8/KSɀQvO/XDžQB&o|\z!%%],,\ޥbbMĨd-XHH(t˟#NX9s,c/NTdM&"Zv1=Dgk4"Ϥs瀥RKbrܵ"{Z8,ΰa.c1]&*FddV66# Ȃlǐܤ-FޑO"FI P(U.BcVH2̽gX)$m'խ W{_ }jUTk G.tbu:aR `ș&`,)/UgO8{ nA6yHBM8d10؆>^YaQ;Vs3/&̦ab k5~{#QF45+\ʋ܇b3֜c$PK<_=⁃Tmv%V_*}A'̆:]cA MB4Kux4I)j=$hG8tuu6Y ȗ>KL Ā~{`^z*}bݓp~]Zw9Đ>B픠Uu+X6c 3W H=' ƗmXĂAoP } <=!yee$o$OW (Ro@9?@m`CSIlΏ[+sZg`]O 4"Uch=BWp4Ji֪}:zj;Ǹvk?HKr5+r Nl\ё#ѷ?yHZhkb]>e*T\Dpxhy7b>qc*edoUC.` S?q@y/)׸8+>՝5ELspNgڪx~cѴ!P"E-8fZ".]&@Ĥ)XZ8 #}q߼'` gغ`*1ImIYZo7!= "11`t*Ѷ6ODo,y=(\IቯL(C39b# V{fz $JCqEQl :g~@bÇ@ hWZ2@6 xR2RA+G\s .\kBs7}F<3.&tf2ٲ\EҨkƍILzYpN*&tK,nPBxpiBt@ %.tSCgv+8s>6|x f6= 0,67vvJ~sf 3_ nQTU@k!"YksboĢ׍7`ɖ=׶ ZgL/а<<ϊ )2$KYȑlMŸ;W+t_iyE4(m]B?6L_RV6D+Sg紭Õ"쬅ֱ3F0?GO&QY~Q@X˦iujFQ]b y2vqA=.Nxob>15!jfK^A&rUgeXػU@VCV6e¢ͺbQs1$6ͧ$ڻ]uy~rpqM;nK #616V 1 Ja*f`O1\yUN2L*Z*Ԣ)%>. =.A̖ BRոR)|2dK5msڔРq,? JmNGv#h&^%fh/1 !  ^>S(WTR]_HQ^S>ly{ psmO (_zJ cT,J"%&Y]hn- h" 9Nq!Q Bj䡮$,Uoj`7Jpp$aͷ%ik`8ȕU@; 'WrP)⍫vb5kM x;@FDlBgeA4Xu j]ه`?z64-a<oPj^}j-Mx/!]< *!F^,SrJK .*8YS$kO_H|QM)9!cϹzոÕNǫ8)CEҖw QA">{ew} t =qL|C2B9 TpXȤ w%EF~ۯad21Q+i 0KҲnĽ{ n (+$Hο^LJ gpf|0|Fs+slׁ[>{ݶfۺB؃jLh! uu&Aas+]o\Ծ6 CɖګeD5حFxƜa2U7}P$M#ֹMi$1f%fjBV2p;*>-˄8i؅I [>dԮ?Wib[?p_ #xݏEu?{&~J8jHqq|SGk@_Lw~qP5԰5_0 ,y[Uz359O | 4;?QwX@~00&`iP-MI˃fnyR\5J_Pc.}~\Ŝo|jȆn͚rQ;A'@3hg!_n3r4*0%hz=6UO=v K; $?Z 'AQ 7->AmBma`o[2Q$bC2y"מW[_5H~wso7 dGm6Fr[ z!E5D˱| &']];џ5 r~3i|L46XhǼe;ҳuKX~5K!,$eRu7Et5:r*7s#$5wTm [׊>$@ɱ2"$:>?&t,wcf$Bsjtt9<~.?9wșb1'6.й[x(y{8kQ=B, tpTLb4³p պ"֭~ɨPe7 ElQ.*(/:< H+8ˠ(SEÌЈT .c 5yPrBR!3kt] /D~U; ٚZu~;~=?2J XYb,&*(6N5$Ϟ{fjq9k¥=h8l]`QJ]Q/S?YY6(S](lSѓ־p(2+fS^R Y km;/N TPpKj߹J5:(eM`Nm;}h1Cl/Yrjm\7Ng@jTo0wA!*k 큽217x 5w]`-QʤȞQHa Gz!h$m-8 /VW _>U-YF벗> %ÎDs'qm^ɦ:B^d͗w,/f1z+y&DtȪѥ Eyf0&w :m50㩌_՜U޸0 |ML(N||=Hg<#e1;mC]zPNeaDw)snVNON)n֗yM!DwKpYrXL4#2 STc_ 'k҆_"H {j좑Oe@4O.3 ;Wo YԴtw}[*ֻ]:`6릢L6`< :$ Z;Z4wu {;3˛ylIb&1 )W"Qo_~celIC2ϹF|n$p!"M|.=|rl37`LzaH~~fbZQ%(az qW&q޽ԝ,_Eo#̜EbtG.i'a".L9-&9b1aΠQ$8yX QQ˜uނp#N–k. phNaO ݠtGFFO'^qJh "%ˌ/8gWU64zN0yU(h%(cUW.:^60g=eƪv>Cfy}qA+G '0~_?eE/GYo'mFgS=3DۼVZQְ *x)&HavpmQ[ʉ9.PJAbvuYN۝0^&bpp=PUBZ1 \Ŧ xףtohhuU_,+ JQ¡#Ps󓣙 OrFJWD2(SlƆf(52F/(vR~F837VG ~(bSk qЃv\9 i319CJXo|Wμw8^>pf 顮O@YR1f>*GkeRk (;?8Z6=U(e2͐:[SjP *vLQ,n13$ dXQ1Kë0 F*bNٽxgKLӳ/){p(K+{mn_!~vOe aQ( \>ʺ-kvoCB[Eק |xp yyWQM/ 'sۆ{[!L/h|Ni꘹hLuV U8t Q xgBI2,K3Q2NPinC:8#6HjUu.ύtÖ5-/"7yf%:aD}4O;{0kp_I|^V3ً $k`40ϔ#l[Em_{;cEU ē 4c7w{(B~t*fGkIRū&ew_5 OMφ5̸͗hPKiU-W>yBۑ-mKWgu-ӼlZ]i1dmo!eF:R ٯ~jRKJ:H|o<^uv]ӄ7䏬̙^i^. qڧ5 /y7p(eI'{?@[)n"%oCi[j)_ܒ__pz=u'3|ʁ "|3G׺U`)rD5|B$$n}`sbrԐ#*L*订̰d²jzJF:cEWkqRi6p4God[=h6+Ens# ]u N4X@[ H $:vDTasϚR-Cj 0הu#!gF>K&@}sptpƫEe! vv#hfu2J]1a&Χv8wuQ5 LD# Z).ůL4>5y ͠उdOBHZ[Y*%'=͘c}* wtq^^&,i3d~lu2->_b'a=C]@QxA&Sn9x ^DpfP݌cW;1B y{%:I[v\\ )l%ģnh3Ǫ 6IY2iwтE:_ 9@D` 5cRЃcVYGFH c!(E=mEH7I:@rȒɆh6{BVxf 3xkW?~F`=>o;&-XƄ5oB#R%0<_@Ʊ 2JzA,TJw!@ nUX#И* {(yV ܑZvEZǷnlo|):7l`94) `F'*_M@[*CuI);in~ON˄U~`2,W–DԣyBJg3ee({mvK®U/YQ2OFSTxbYqzpaƄ!ow9cK{'=w0݈Ӻ0>zB}S1/JpjQ3h#utp c:ƒI)9c۵ZmgrQ,5:fO("ȝ;"n;1:gupF`9P.[H8 ؾ>* :DBB<2t ?\T] }n`^@"2a7k׻ff,K =I"tI9{P zZaxF NF@о觮PhpqaH; dfv(NJo>H!6C3%X+< ;qvG|EJ&rK!eKF|0{O)m-p=mغZC4ڞO+dzKAgYXȽ4ßN51cajt97=-9/OGTe@C-;အ2ܰy6 Ǔmc(@Fȿ~k2<לTk ,18?TQGJm6CMO(DЇfcxOb ^TH{k#_,;nXBAF -rUl[FUqjD݃TmLDC4q`bA@:Q7G|uGbId]ًXΌWz=8& tLPf>Sᡦ{Bw^JivuH`jSelp.IrWm?L2@'YC:=l; 51LnWvo[E#iI:̲4+ڡ%bK^!H}h-Y.7L9x[TF5 >)L9zy)F9y?ޖ0=>Yt@xt9V!c?XN>]a]2"Ž'?;e38%yMXq y/vW!TBẑ #,|54%9loVPͮ.lqyYXMD\PT0Rn4/6 1cET[kAMg-ƹ6]XŝC ȂIV6Meڅ~-/6O ka 7xXưt(՘hP[%ot4Ľ2wv9ne~I! ӷ3DњmV^'j|䳝GzWLmדh v+Ǻ^<"К/²qݯDL'"F9X<:yss 8 T[ Aidy()AR3nOm`gC~ݞ\i,Y l7 gdƽA:|6G0¬W]'?}3xF.8^Fh7]$Ɋ`]i'޽DsTq&\vP!t_m͹~RBJ+uZejLa8=.7icf ֬x:ItGk/:LB{ \f1z)GuaqvPz :oub6!]_ÝC%.H5txWVHU|f]!c |- 2C}Η*Mxu@Hՙp*Ja$"S_A"bt)n%:"xۃA&rj2C:9b%+NgX]oDU9K5kY?e$m/pO'O=3 @-cSWv׿gL~ܐ4tx5 *DV&M_ #_]50 Cyt-!s1~Jv*A!] "8Eڷ"o0 XZ{_ >.'An4A5h7R[k4,=J:UXi6>G&?f JI7D 5%M,d%>>a[yiv`M _\.UHO29/SjɉֹH.IxV@7 bjnBy袃·][lv%jq&yV;D)b^]cr{ ZTDstdDGtvq.}a&z 5#G.͔v|WLnA觹[DTADaqc:K׬ .ƽfKgkq1DDgh&>5\>t EABJj) i|óJcx$\ 2^k/:$3(+׻pz&=bCڮ )~g lOwVȳM>%C`ĉL1Q&@"Lq#eJ09xŭ2*h lMß.;&.FQnĻ(&8dOES]7zrP-e~@4T #"w@H-yn ^P'cow,+,v%7%4=C:FXkF30n `e$/x',ƯD%= ò7HHS:ª"KZj$ %>j r{V<@:~5(\Ml%A&(~yVI) $NzWx^R\~)(ʟ`pQTSq*ĺXJm)WdÿbOJmZ 7hꠔzn)PzO*2n8 R⎛ ö"n]|+G$ >/u*ƻgqj9?PϚs>+#˚&Ѱ>`NCZ$)#w^m˨1]_!yf o5X*"5sK>Qɣ?&$afA@׻,zyF:vD<kG)Pb:X6 F]GgaF-ҟvJS Ӧj_# Nʈ,_S ( <$}P ",8 o~|:Hm };De`HEvJh ,[l<ۅ5S)S:}Ĕ~bL]^-!tzÿ< D^9= @ +.$U ēeNK?T'WݘYf uUu GVktn=m])Qm2ms"!MMNj(< ,u}~Ε$H-< SE Ioఖ(d!T=H0 6epF~O@&z\,p~_b"꧄G] oejݵldȥ1S67gz':N8;&qѵ5:_ґnP"O%y:YxL$ub>.T3_?Yş mu\Km!q{Vzdr/a7:Yr_E&V< s h268$\ BKu 0PBTa!S7Fz&H672T pnjnb|tyZIm=467jow ,"gAa84{ 4򁢊ɖ_5U1)r.q=?/Vhg<&* nI@V(jȡvK)vbw}@^Cl&Htsgޢf+Tᅔ0*dzn)l㤓$| b Za3 >g=FN3_EwXǟTZ!iN!˅,qa rB/᥾_ώ<ػG{ųl:4i$g\A!/x~S14 n)4X 9G$tXN{y~BE+"Pr%yӋ7{:L4#1y A؉ESڰ5 t|oiD% 9 ) / Fh'Vf\Wn\ƆM*ؗ)*EӜPAOǖ|~}!UPJvܷrvKkZ̉ތw3H5:Re঍=rj(zFU-7Kz| J dDo_,KfIMiA2R9dkQA~ F pR:d1P _fd؈oSK⮽udI& +Aĵ}N0]bY77yan?0(] BC /QN^xCU6㥤iK#hq#Fd1wsix^bZc83A߯.QToIGz2l-~oUiS f(<ܫ[EwamOӯm8Z,d maR\Ȍ.hfJ@@sC 9ņȢszdNm$ $^FL>@+<ѯcKftqV$cE+#l Q#$e uSEBS:ɆO[ &/%>WPvjoS~֠CoDii:FUvY󆪐~AQ-D;#Rnt(=e'hr ϱ&1mYGr+sHW@%:a ^eFU#́]>ADZ{f 7W EH0| 1{xSiQMF?}jhꉢx6ڸQO$;H0Vb,dTF"RY1^pKeۤ>q 4P a,Hlk*wQ)%7qٶ̕t, {z*~82;&|uJV'?Eb)<#bX@I~}Oa k/ˊ:ѻ`05\DsM41v4ZOo`v2mcx0#7HM.o BVQ̟R _MX,!CJ֩%m:q`:~/vt9Z$5:hPE#t[ !0WGdx :45H'$[iXhk@?*0lF*Uko$Rː)r/=+']/5f_ze&֜~M?2X vfhaW}8y,"Ú=v~dD1nX [~d'9Z\_ Wu^mдG,7)]9x}֎-4Sfk8Ӹ3+jYϰQǿɕ WFVMEڀ]WA%qy\~]A" rZɍ鎑@kJ&۾,9kϰYVRncHst#?W_fn_N_thM"wҦ">F&'(Ş6ːle #^FY0E1(MaօxR';b(_XJ3j9'Ћ0ƻq1XEaG'8\ /0t[=ЌLLﶁ ;I'!7(w1c♎ـSj '@8Ur<7]Hb_(Ez^?;ԗtEYLuSl(rvEH^d͎^9.7'K0케"!DdH>^U?ZՕ듄̗vC9U1m̙DŽ*c^Xeq Y=,o+y?5ƿNQ7|fk{%]фM\H:BØ3gHH_?:%<U"Gιӑ#c7GM$D_I`4C&& 7HT ;}7?Vn+_?̹QLA Wɑ|omKԠ , $@_Ԇ`;IGxܒ.^>n.kXz<ȡW;_]ԩU@;%sw3 Q h?r!%bz9ô["#FkMB8Gu)˷.3C}j&Y>;n!6: `nRQ~U1S]0~銆ڏls/iJlyB' 6Ճ~ ;YFE0d'}Gz0(d7=n/YfgdLͣLؤd衤ͤ|[\ m?-Kaw#-szP j۷F=\FΟBգzoWxhςz Ny fJ.(t;j< NrO;:~Z0 ?"0L4.7I[v^Zm۔ЎӔ面n˳NL;B !mOBv~*1(DW~rK^Fp\WĽy%ȰNK G[EPLU;adBtb[p?q@YAjȴYww1IN#θL<+Yr[JLK ˭fe1k(bE"(N`VA*6jziԱR/ \oJ(V&@W0!TxVy5־9Rxlj=+50g-jD\> 0TvP:2KE@cn 7q4,V&*dK 6W&>+0q^tzzȻ_ތ ~_Uv`;m9nf-$m>R&O1/@1JItڻ!(+Y^*_!2VjO(=( +TD^V-%OVF + 8Vi89 'V,Of B+8I>eQ»qbm;~Rg,+7]=bcrJ+$xQjDJX d~dpCnD`M2|ʦ`Lan<:nG|@6~ Y-` 2Ȝ<ΉW\FCFizdz bFOR:.0`6w]u%=VhOe[xY1+Ef SҴӈ@Lz8Vٶ 8>'a(ٯdh!b Z(\ z`xК^V^\R :ǮajiDS P@dv@9d0TTT}Or- uqrB j)l}|9{aEFS~* =}ttTpa+ ]MpPR3^u$o% )2gF3$OCN C:{˺^I[/Cq9FY:!9ݰz-\7K\!cK2?&k0nܱ*_B<YcH2VXڦ.o8JߵZ4ѢHJjy؟֑"۵ 2R+;]>Aa*Xn}auB' >I;{9/(@>sC4|YW+[4_xU: P8vjgRٺ@TS”2'Jpk )ir]~<E4$ "}$Ϻ0P B@T`vF|31.^"8"/eZ%ŏ{.xcc- ~9o|9v9B"!1FM;WWZVP68ݙַ/b\]f* w\W$<1SjN<~pT+pW;(6sm ڿwQ*&i@zZ]/(d!EoINRVQPVzES]X^VLcW&qsӸ<iUK4L}ַ*Wc8 pODN0dÌbE WJ} sx/Jzv>NPk4-XACo*.YyJv e L}$5yplht4߯߄_5Dp!S 3*wSGa"J^Y "S!) |!FifiikJQ?…F)KEiH7l K_yN*MesC6ɳnE+62 MEӴmMJo9V]-z$Z+^VNv2=Fb};%}cMRr-+~2_3_c륂f LFA^/(nxFJ) oK)5ugz2<h)Rw<6GK}|֠S3q҆s!uҎ gbnf}Rdic.J ] kJ<F 5q'&Z U0 3&^zt?-`D-߁Gӊ$I=I4Np][VL';Gsk9n Oǵh肸%馔HCTg Iu ]m.N[O,$V߱>cB[pC+LD)~@n)F v>ftˉ1F6/ᬝѱC dTn=將hZވR#_6{틀!8j]S7/hJXqkqYWbdl^m@<.QrQPw+kMeD\/&% s 6ɸ1+yb|~/!~!W~  J|æ)a?4mH%ώ(S4 *㣺YWN럵LjsLu  iegY+hڀTyxݨJS]LVj]?WXKe 4QW^7?DX;$kJkdZjiMY @P3 A`%=K'ʉٹ&}ե=O_; ۵H'l k9> 80 &EL"1}q 4, ,*r;)ʗUyQOu\ \5YFM OJ] 2VبO҂Ȗ,V܃ jyFU]Oo$W Lގ.(r񆾢P:XﶍHnsIfr{g(WufU,ۖƎk\$EdtpE2 `u#oq-3ɶCD8Xꒃi;Waq?hā A0(6SGč8.aƟێQ"zbbRya}:I2DH9>=o窭hÀv eIX}v*[{[HrޗEy4MG }c*uȇo 6ZO!Hdq}?pY"?U?~rO':'$pYX~r,Sf(%D-rohz %q4E<~K" NMjm@yBX dx=je{DU]PXtC_\= osh¹1'=͍vXOd͋.[Xa%3\F6fbͨB氬M"@.,949|+"Lj=˼,1S߼H5Qiwz#nV(k/u|n=5/5*F(*$wR{\ v^#>A0M̋FouE&+Rt1Cܦ #m^,U'EXIݬכy6!@{Ffi-Վtg"6_"q/ʹZI\9drf$KY9⚋ 6_n=x$Ӹ\EM2/[sƑz$:(f**?QƬ#C-ګQ ,YY\iQPv=y×qCp3U:rz֠'TՄ u)l&r5Nx#haϽH懱 L?g?WBɗU膭idy^Vhkׁt6f7'Jx-Y0R+A0 ZM-!?dnt*"Cht Qh]W-Ӭq$:ad⃃ ʽhs酛?Lj&Kahǰ!H:CsmOś5Eo*zk~4bSHf iMz3 /p˔s:E'P'/8=yz0weg'FkŴa n> %eϽ϶m%j#T՛LgHz5#[l6c`JK<0cY-tsMHީǫӈق!÷n"4ų*.VC>T:peܶ~%ߟut֭[Knsa"=- =ի -?p(̜K{jn& /tB]8"|l۸&ho $<G*ZR7CZcuK8t,w)n;izs:6 4H]=~KCQynv44{s2ol8i z_q|ܐ]P:MK1q^^Leq8`g۫\>lĸeb\LD9e5رfE Հ #YB U$;hݸSJ1puEKU7z-5N^Pp(QRB=&3'=JD- Zu'3L<ԚWQJA:pൢ'YgT YYa$ǮQ$9QEXy5z181.ǢCJ"4{ۑ0#lI~S$ҨB#E\@C٣jM{Qq @oj*.+٧p2Y!cۛ:~jzv< I[k_ B,{ne4X)Ă;b5,Jd:$D빊1k+MS`e;lÒQL^D ^oQ dK{K;DE1qhJVH6W":0>mmBVFJw$+{~05t_A A˱ɘS$?aEkw{X0~Ec,ʧOm^T?6n^i`pH{,Khʄ|c$zM9 .^ayn]VyuP}zXoy.( B{Bcpuq]4fm,qfCFڹmkqE%CKU@u]Uwƺ#]xpHl p$x䰱}(J_w+6$hBK;-0RcE>*1Cx2R||NLT׿l?bW:|[+XP:ŤG4LQ^Ch6/I~Os!z-cw<AɆmy L}HENe{B\.񒔣oH6kvʓ7d?Y}ľZE!ܰ0n129kzxXQPξ7~(} 8`Q2K55kuϸ#|ɍBuJ(l>&&U/a?v\3{-bW+W0TwY+s2qWE4!rE躍!G>LÙMT0KkxSX@*Z0H{1էVͅv$d,*o! e81_yϗ;#sD6ChHu\`B%w7xj״'&80{#"qNُQ}&ڵh8/l}"G`/-Jc6[ޒJ1Iky+wD*1@|k g׶7 $ cS`7WٍX.V4Po̩Z0`j y+aƱoAe6RrŁ=%93zxkta SzYra_uIWGiGPtl1(`h_e!Y2o;>`UaiM%TMp⨁Jo̦P8cTh3̫ԁ2o4Ryߐ(LN ֭6{*hxqejӸC쎐yʈiUFH3Zr&JwQSd9p*ʑTY^˅r4;$&=wZ[ūWe-+nN"~A2:)aG?5Һ(Zc]Cw!? OTB(-SI`w}ic'ޚwƘWn~.CW p~^X4삿KhFA ѹ;;1Bp=]xuS>17QEu dRCy)8E"%g9r%.a ޷ˑW?*9Aʚx]ƼӠWMZh<^G 8VwH3:mE?ک\/]SGxnQ( ZPH:Po_M黌mؕGz4aĸ )8Y퐨Z\ 0F\uHXT Zޣ9vcYs,"mvsV@rf-7a|>s;Ybb \8e$c؈uYFTt&#ۘ Z@AM"Fso\#ãDgK|*!Zyu5i! %ʹᰚLU}~ ߭ndDAyJJ:jo`~ߑ9F(| Mɢ(!Q! cY>`›y)vk:j@*߬ߊnVTF6QT+!c/ݩ"ۧ8p<[#L<,I݀,FNؖ3 NPǝ9;'|Jمv[yxtE(d5nd sM;D)s5z?#);&3Q1E?0ۜszm@9.5JzzߥG +CELOjwJ7ÙUYnz#G6m0j:P+"VӀ\^9Ǹ5ܢH Aa@i)ywͷ "c^Bcv9@¸P<Psgc4Ȍ 8ywf_²w HeP>JNI2.IB*/rtP, a2*{aY9Ŋ?QOc)T#_qfIXaQ]R쮮!fG Fl(zl)@Y ^RTӅFԦ B.lo~_INkLMV#kt$?6ay]c0M$TLs!_%mr翵Cdުҽ~Ǹ#ֵ$RV}7\-x$ "gggD>1hФVrA~PB14)=A‹̦&e G2p v=.~=1I"ΛydԶ!Jl m“U؜)SG>0 ;Kd߭(#OprgcS[rdէr }r^l M;ȡWt]8bڐObo KeY #,LͶͮB F.+%4!8'Ah90`*md p"1lN)~^E1oЧ9?eRsp5XEaʘt9Qj ^$gӝΆP퐰?mZ~ kld8}[й7`wL+SBμn6{_KN? <#^ނGZs?Yj) Sh:@}ރ Dfznqa] m~Z2 zm20 9aВ`y[T)C];r+|TuhLP9lnEh6^r(ӚY _soL{0j!{Y$-pFօz5y\hv0Z;>;|s^jOO' x{V"%àGs3۶Ԃe47!bB5~p<}O@A\TH<(.oj~q8Ejl09OGi]"@om1O"SٿЕX rxA&*=J7r}]=)i*l3šoչ]!0V3R`y?s PTI)X8h^#La74~,RWyJxNb"u6HGUs0$@wY3Rbk4 gnC|zzUM09^7R'uVxwju Pt,Rr5'b<Ӛz8݃%-2N  ;d'[]l1*;_jd$F2=Z,E-{FX=H$]mUS&0`V=UE %d6Soq,uSQMfGxL|~3'A ܎Uu~OVȸswo@]R`Wޛat[/do|nDtIdVU,n0=6ǦrW2r\wy}kslǾ?h1bֿE[$دD^*o*S7|jnFtz d@s̢WL|=j3z*aO*""H==V3O:`A]pEsPb}vFSC&]EIk=0_xvwG Ƚ9_"z:}P{gJ'N[Fyv ğ ?|]6m*N}Jk8D"ɨ>͞n ƆdR.Ցn(Hn"VksnJ PR<0ܱf{tk!cDWH%ш>b2qBHb ! s̞B'ЖaJn|0|T@XI^^X?9(_>9>WozI?owSJHqW$BbRdMDD'-U%=NF7~OczAow Q ?_ ꃃ*1>\}d tCNS- IƂ;]"366j_U`βM J9]V\[U)EoTyS"ƥngu ;-jVv^dՂSD jB÷,2Xƒ%.rիJFv#~[ t2h;$/CO`b  t̰|jb=2- !zy5[C \4RsE!e{Ǯ8FQOq*Y|Ffw0Bidnt#AvHߨ0@&\e /--sc/V'56e `>d0oȢ%M5B8@nh|8~XDzA[7 0964gmUL)#dƿ v#3HU.<:o˸WfFzEҿvf;m.ZZ#K/[D*.r~È𬮃R+Vh"{va1#n u]Wugş~ sLqͭiׂvs}8=%Б#(36{Klq z '}0eM#}_o?O3WcZa^RnW(/` råpd4SȆ.=)22Ts(ZKt:J6G]z#vd J7RtdRdsS=g8u d&$X\j$k,cKr1>7C>|A X> w'וov8eLF]J[LZxWa;EMP*}uVUԪTK'B=$xr߼g']l*?l^LP+Q0)GwA҃"|Knυ͹ oHsqDeDz<$,H:I<.R/?㢤wp`ǿEco{d 8@,R <)؎bFϐ1:03CX,ӝLO [HCߣA=w -\K @ܳMfsI$d)6@c2]=ʠewpbKV1`r2Fhqk5:AChp^M5,M{vM @ Ui9 d0}1@<<'/%x2y}Y>5 a:\<@Á25ZP}njt%y]TSN 8&n%x9$n /wbrMvUO`PE+"d5Y F)D7\5~deGhdیj^3O {zF}1t;AǑa=TڨKL}" [₹(Vh^-/}Ρ2s)]|S/)a$NM;u Bk¼[-Qhɨ⿻:z1O/uLj6}Pk͎3^s{P0Kn5[բwrhZg\>N$Z`0ŨbdGyi:YIR/!Ȓ%ݜ䱍எyJ?fU2&~%]U}2@FO3Q$zf֏Ҋ-pǫRmd&aSg<!|hWR}7|&}-LB>k[L+«PHzXO=B/. I ΄}te V@зs- M[z/pb71-|ilAyE/E6aJn^TTƥ*kk}~׶,_rYj#or\-iRԄR/nȤ؁,$#+fNAos8= < LRmcZ!$+uDPjᤌU{28f#xXXa iR8t= Thl~{4$|-Kx5Ȅu+%[n5ŔfF,/Uey8`31l3[!f]+WsRa,wvjP\^P~,S_m7yMı^Nv['c 丞Cǣ۠W銳 Jˁ݉Ɨ̏^@=K8kȻ`ȯ*tT"7fpscT˙4cӥ ūOR҂~ɱz]wځ/+C5 Qe.a]cpIv,H J$ޕ왉M.+f-(VĔ?Qۢ_t`ɖZsaR f91[̸ -h8PsM[iTV=4b= W,q|,yh6Τ* &6 P׭A6Y_3g> zКI )\/ 6iFWlI]h3=K,9{2,\Z']߄aU ?sizj1H(%PV"MYq*dLxAY'$|َ~ߒ.P>t g}RG{O>+B"{w V` 7z jl(X^V#&md>06NY%UBb+r,g}ͮ"^kMb[f"?z&W:0#h~nce=@%ɤcf S)W'{门 :Dȗ HMCUI{e2 ORp)mNE8jzUbh#MUr4K=rE,h <6dV whd#eRX;ESޤD⩒sGO[v_KOKV%#/<{J{N<wz<&}WxkuANZ aIpu==*5U}uOAJL0.ᯜ:@B/n$JbU]aA~i-8ׄAUhRg1X$"躮4T&h_4)Y qtY^8 :&2&A[孡9Q#+LskHBYPEBD {8{MT' 5w``?sVžGBx SDDgk_xZ N`[*NR\](?75 !*FWUFmLO"8s +uV;;g#.:R,lkff.kBl??O r&A\NQ(>yUo[^VyiIWgy%`RK΁Ѕz?0i{sUQrfhCP, JxdE+06\4F AP5z TT ,_q$Te0yGSu̬_n!J*roq2fd gӅ}.-Cæ&x)OD-E4hQD\Y+gTy{uNO{OI L~Wt&H4Џ]MVkvxQ-:urnm CjBQkGpG$Yw]^z|{_[AX#_Կ JDg@w#KZͭG )c@$mOт4DOڴneGq4Q__I/".8EP͇Gh(Eݨ9CG>'|‰gt(.B"Rr)gMU0=" zJGG7(sF+|"ʎH`BM% rwHM1_ŽF+{8p7@t׌xC«MkF:*xUܯeTA8&V 0ξzڈ޷TM%/x')6om%;s" _\L|7Q0ryH+#ܚ%Vھ.-W1c aCfLS_`Y/pSoIGJ]qG$ӫ}CϪ^,ۘ[TLY@GX_ rb>\^ r֏c/68WVv~iYɘRGsJ3DG>V<(6sJާo3/]طd{m̨$\KI6_}kJȋK\+`!pbF&'[FAI#,\Z+5 , Y0'(BN`0OCJuWVR">~-zFfXϨ//:I8 vn-xZھYZ<$~qpaAAݛC?v7S#زiJ"!rN0ңGs=}fUR 8d[]h̫qcٸ {IqHo+oй?{r5WXI:Qux_~UӒ5 _)9oUƳaĢѶ()_N)֙N@پA; D餆ohiYl1|1!,ICsc"sd't-kd\l/ˆ #]`iOod71 Tm4ߋ_m]<Mҷ/Q;dkFW6J#R s_\9SQJe˶ K}*@f-<}AZMBԏ(pF8 +\sxVF!c Qy\렎f<7 E}1,@LSC1Bg!Ð9 } Lo8,lqnl*k, C-߼ 1P\u˘_V 1n~:N:]=h9h";&ӷp:Esw= k@ '<Î٠?Dc'wx00xG+lf ݇oBAPXn;?B\rP`U6.*^R?pS4$aGr^MS1T}lX }/MO22[ᱝ$:CO=bs"4j/iJn?Iv"Ul8j>Ӎts2u其+QlA]I0m!:;V]ec1ԏy Wܒ%b@SINx3$gU kL|cNP3#pxZ,+(h{r8lM%'S{(wp Sf~|V/2_ȣgt3`x$*PK_C,CVG?oZo\Gu'+nMGʭUG,9<{ʙ~̅!֞#T qwA&ҵ᷑P0C#˗iZ݆&0 E\xqÊrveAΨoi:8Y/ar7\sԙO}lorAcDt%8yXV.j&_vk;$)~͈9cĂjT,eouߡ~+>MBC/߿׿%UV Z;G .ݹ,,W+ͨВGbvQ!퉟e5 yа*25Jީ FGĈ\^"/-T$ TJ!k01a=j ?D[B8[EEGe0 K]OOE/j%C?H{l`L{Dr7Kmv <^ jޕL$(q+JL77NL>U8h3eT$PT8GrB/;Ӧ6ʹŀ\^@H#75Bt RLj]}-OZ&H MoN*z){:xFVTT`,&b~j'Z Sn20~`eUaѨ.Y81%@bp<.(R,=7AX]ʹ: 1rP fGyD74[?=6+7K@NNWR{Q4nfYX:/ )ȹQ8E'Y13xkO"4I֩ȻVU:se%_B_kh6IlWC8eF Tޥ_;>Do+mH~C~rtHu6! oԣ[͉O׹>R`#\ֹͪGM=0ciSI^..U41/:y[&Z ( 11^tl\mV3eɜX; h0SKU#˶Z (lNEkL;"l6m;O 3J,_WXHuM_2Ƴ"kxg"\_V~bM&m| 3Xd@08>W;9j3a_ JzLEyg({WIw'\MDϣgpgJd*k*7pȷ6i&&L$akrIk?͋IZKB2x6JRW0׬](!ouvP!MfVcE{E"O\EBFNd$djZw+Y("~a[ρQ.Ɏ嵞Blilk[q/dBT.YVү'l 1>]qRɒ\#p<VfS6{"l$j |e$ޣ$S)Dk|8-uBh-ỖQAk{}|<fdTs'-{")LRK%.r#b;yr?$)53bv("JfߋݒEO[*9>C/ˈ_mNXA}"D*~P7,n1 nyd5+m )h3*(s|+~sت6B%ui)1bũGYf}XmX_~46ĸݻ[XE 'BlA{ZpIgq{w) U{5 L$E&NzO(YHN#2Di v>)MFxqɱ6bM7{HG3I81 "ǣE~w an1!䯸oڬ |q5e8)?ƞZ]ir\joxޜD-(68i^0( .x\t.5w"+4wV_zO4V~!Q-v@S^ǃbND~ x, k/1CkXh EJt>/5@Dka͵ONgBI9zf!{ Py F]  G7tmYp,⥘N:Vj3􇈇!)j+ڸ0-U M.<rQQg*h;rK ,pFԘ9SMW~[E?C# fY;5Txh.]&̌&O,DG>7,dz`aa 휮V1r#3N!o _OcY0]v2V㳑8Q$J*p#x>Jl%gqػp}Iݪ@ P2C 2k~"\s 9B >j\և&wAqtS I+$JIc"^A[Kj:8:lQ>p\F)U!Ɗٗ{GR:`4E6[*?lM')% 3H# nOM`RB@cL #, Yv<WMnď8vFtf2L6םy#SQ6X%1 @)A>dݍ¥0<1 TOa4:ZcHrBZ9nu捞VuK(QK-mͶW;>K#COonI-R&7B,^^[/\W/1M뫅4D2tYb18:5+{aJ+Ůp6iu\wêt!̝ qpXYt(gLߒ.b]' 8L4C< ߍprUdq@txXy LïDx{0R갭hc2ݤ3a|YUSC sڕtdžM=*)sV~$Mni"{ _h _:'7uڨSp1<[,s(QHsqAзLlR-[K`v4i& >⹵)1/G6?C+-f"]joD}HA],]AM?ԯpꎮHr?aC~wR6/25?*TWrD Ŵ]l(e<|@jR(._X<_l]BX"iw _H[S엇"-7+qCs9?@21 l[vlJ>_o~a@EHM<Ԙ U+,<:R c޺)L<ߗ-#~̤Τ$|*,7듟w]7/ +/սֈH,]F3H'ef"Z lK(|6f722&ˊ/POWg>hW' 6lduHn3WOti'uPIp7}HnC jB ;M(Q&z O07i66)=I4G9MHFbd$ef<[ .:@?au, |:vFl!*ʋ]5k5[0sworީSS hˤzOn:3B1%]4%i@ՏjË 6˷!c,V2Uˀ 1_2 c&GR"zeXr2HRSs,j/=[lZ#Ld^ɶCXhՃ9q3l H_V%TmNG-1R~ w}YQDšcuН}s%3L`+@ǁ̟4^/z ʑ?hY]B~i:sDKf~hPR2:;Gw$^y3@a< 3b|_`eTJʹ؜>4BPd31(s_tNقhT zpRN#ގfZzL8]o :[J ^\PM5T!bUN49tYڠdY Ap0VM-,RPy^/K^&O$1MBl a~vl)jW#t[gfL0.XN sˉKq-RQO{ApO8 KQŬG0GUV$ &8mű\^d4%X],8OzxigBӆ2J!k zA7;k !n0<[ozgM DBGD)6wWfC C'iMpP)N~<?8@3C@h*75fnG}ҳ/;S4v6DF5u}0[8x[JOO"2RhK:]W`ee@*As5 +1p+FTs.[~SYi6teLNJw +VWIZ6xE쑚TjcQQ͖Q]efY/wqIw7๲wһ[4Mr㚀MK{-#Mg\U vMZyrx?q!r0|y=r%%OKd{>,r^> d[߻e%kʜ!wBc&C 3;|2'˫E&horf.hp7(9UO` ].*bxJqc:*uoPZqOfzsq|Km OEhF25 &-.c';-JUƿ$9Ig s>>MfMrn(LRҲhщ ˽KE XP8s7ٿF YWU΋L@ttxqwFE;GkrajfgX.90=LbkZ YWSNyWf>Q,6e9,\q dny[WWg.pu\K8!LЛ{)R%Y[`j&$|I2y+?|'-hbqW&{s{\ ݇ u-A ʋ'$=7RcR:mN'x9 oD#C[ͯH&(@[xjH+c`Hlsdk,P 4FrXpE kxZCd\[&f_4A5`\oQY;RĽλgPH%]ߴz^ fKQ_#S:Mf {ikheɺc<_q˸ȏ`) J;(l>Xad߄ L8z~ 'sk|-{c,QZ";E'8qqZ.d2hw2ukx8\k)UT{R3a(TAE%Ɯ鸥y.V˿N|Ic]k4Lf/t+=B;^V ŇXZ`~ʛPR:D2]jP;=h XX ilv1Ŧ*a @LRU|].hvľpaIӮi{_ȿx4\HBZiyVo/1ē?9Vnx9?o\\>% ++f2/5r7[~w=[La\.B+ #8."_1]F[o\MI3ׁ%js s}/$|sc=umHJ)"HKe FIw.#pBٮ"%;DClHvaN]wQYS !$"k]J>".QܔA fUCWK_ϡwm಩)8E¨{wv$8-FyL`kM7]>4* ) c<Bµxvڸp`Yx'8ґ5 lSBESy%}lYh s5̋`k0PXwBntOK&'n j\a*l'xS⨉w0MN\5޲D5ȌE*%nXmߓuv"Ȝc+Ӥ ,|b5#&)GȯUkmnUnFix;I632p<A lWȬ!FDn|WgPgߏ'6hu8Pw_c6TXc":|ky_0# _ƪK#-9MS*Zy3u'EL9IT"qḬPdn{N!"*P68F"w^ n6U[1qZ+:D$3ro S3fߗsmqRi)xAIQM.mlm?oT eW~Rg6&'Lf|ʪ2u*@@ܻ25AoۄER'!w`]QϤ0շ~TpoìVb&+:'Ȱ\@x?"Q0K&N9I. v'[rd˹aT߶;,^A"k&V>Zu2:BNJe׫,d0Et㿱KpA02X5N^`dIWyGz"*=@NaBQ@ c'rj% E(nXZn0$KV*L Zd{:@|^)͟^$Z&/g5Z,4VWܟdӮw~99."o_'8@#K@E`ri|lVȮK/PUg\F BΙ#d nK~;uo=Dَql~$zE ms?J"1* LUr s'k:Jmn:nz'~X`Mh$\gojDrLD Y; yñ(s0 'cT#+: @܌, ЄTFsbM) 8t6  ,\L=+軄l12]镏iy_˭,xRlP&k9{P]%l FPa2房.)PTύê `(y2$%>,A Wax} {N ,KซF u)Cj 'F gЬ1U܍Aegg^r rT U!?Ϡf](H>?4`3<&EgQ[ Q^:EWDbPpc{%hRU{>gW3{#BLl{$ҟs)^NMŶ7{"FtH"fت8ja޲`]z8,b-IS0yd3vCeL`[qq$z6S/W=ߍd߅'Dhw:(sHs 0 5xd|Dݞ/RpωXj-vݹQ443@4+LkGh4iX7uz^E6[e7ʒ;:q_ް\?C5 =S5T`0 oC)Y!9_b+Ez<]txV`Y {?h ̴MkNgo1P&TC.XP(J땠5Z '$ߤD&_BJ+4E(rFomz2 P3_jm"熷$PPzMw3$/h7ЏAMch<̲0Ov8tU_w\} DښXf7EKJ030dԞYB0ez H4Bړ?%Nw%|$B7(N5nRIKc1_1d5a Fwb995Nl1P*z\ L=^~% ag [o<.'msj^`0m@xoCI+WK <5h#ph-{@l%*V2R&9KHh׳NbUJ6 ɃDj;)"|㣪ɗ-KA3FF[QX1r['o^!ѱcᒁ_LNwoans"=:-HnT԰jA{S+-=|r6w#ڽ+VS{/=mK#=eFb뫭l*0ImDg WթcA g|z C fڱwuǂ<nc21Cw4EGNudIc~(6"8P fhz3ӊj_ 6)ԹT-MF޴M(b\P.O6!Jqd8>OmuKsb-ЗJQZšX>γ82q.Lb=9=r2;F>#JE %U`]Ԧ؋L<@$hKlFymGMAzqVnp;OoޜVPϩ`#Cf8=6քv)KBhf`/,6`xq)K/*c‰f/*MC@ޜɠ},@18]U(aѓ5Vg^]-+R+Fw4 ʁ:9x= 'z3`$: y/ϧ)<^͔Z@G@'g[O> Μ_{ ~p. Xw>Aq8ze mՁw!|mRa1`ОyQP/4$bKW:2k ͩ/`lz> z oy$Q\8[%{nt;^]>^- d qn}( "m:>p0-sa^2q9=>a-OWd2Aو|iW-Իo_ 9RN&`n0D{}r)Ѩkݝhly7ٽj&0uj3_Ffd? iѮW!ewH$yFXnht^/}lyĈJ7Q5ԶF3aN䋡GVU֫s\DC'<U&'0_eT)ܬ2vC,ټA_,@sA`SDDn^*KX TQ+Wԓ1 +aɢ^]HQ5TV9,fǫbrHoodS 0?|6EXZ A&'jL=zf+2z>4qFS֖V&J*W+?aw8J&yiI<ܢۗ ol7CɜLd@yW0BH2,{8F=z1'42Iهg{d8j䉮00ƎDuKv CpY 4fj1jL_IvL)ч*%d3T3Q59 TMDWEni,XȡF:|645(y8_ +H]^٢7]H ! $pk.-WՃTۣIӝY^HMG,z?( -UJտ >6@e7P+f8 aϹ$֥g4Wzٿ|AD鎣Ѻ`{/\J<,ɾVx %/Xk`vJ RӴ/@Vq8VGK}>!;&rh2ָN"{ {n1qWy=O~i ?_ь7}emwDJ9ILSW,b꼨ɎӄrUg$,uٜHVbp'w_j}s dAR֢ɀ4d{7ae P3\]tW$ZDٸ-L^: l?3 'cc&IԐz ;GȆՃ8ѢQnxbp ioF4,͑E?bR}鐱g󻛡?8>ݡ9V{$)^EFA$ӟ-=3ܶpq9'H)uU?[Ay>ۣc'`W,зϒ{Eo۵#Csy2]0ĵs(j>eiI<ʼ|ЦD; Nų+ckWPw.P|V/D4iBZ2b%t`R 3x ҵQBt bhPɿi"!"#ϗ Snqb0+ +25$]t*"/=_Bാ3vt3Š1lnF&p "zHO1HDÌBH] QOg,m̩߅[UM5^Ze?i8I%W7B߄Fh~ےju)_9]DDUWZz #WҒ%ʢ W^EC] '/hMTlU{3f»ph$;sdrۂ^TޚA6Nz~SY)+x\n"RaP~,@&y̾9`t~S qfc`jS f ?4p ĸGd@[T[:/jMǒi6 ƃ$s+egBlAjk(h&- 1=(&AlYMqgkj6gEQ"i.u=bj J(B ω,?i kGN7Se[#L.Ki}=@4QWbr"/2 ZұGZ+*punlR{Et8Pq+{QNB9_3B{_m4v*@v6fVZc.{q67L`G |!Ѡ|jՒnRϧ ZaL)2@ yF#  X.X/|7mNga;=a uwR$oZVe4N NE`Vr6l0OE, eiu$ *!L9KgwvH 4'vw1'Fw(qݶȌh "sudx<qyIGɁrY8*ո%ҒLy*mUG:&D.KC)4Aԣ!'.cQon2b{mIBAE)Syopf8"qǨ7v%OGkr&J@Q:R!  ͂,z)SNz{}6Z0ͩ`- 7<à3J?{CaQ^*ٔNCIGp^u`Bd1{uey&lFY,lڡC=8,F*qmA %*-dH j9~c&Q.b: ro5x1csVNmB.'I (ԃS!6{[ܠ7{L0:0Љڟ/Kϴk 钗AFT뮖0Y.)IILAJ [3$ ~;ihάlA{Ix*VeJ>6ݕx '4ބe  0O0o߀m:ZɴׄG5Dh+պbL&"u=]p(vbsBh, c,>m~1*.!DlJClJy$O )\ҧKK!.GkKkJ' N_C.c}f`7ҤIL=:+GD O U@hsWE6Bf:!],BuoSȢlMԊ,ܡ8s9/!CdԅaʊmA=*CT4(ӬDۋXߡlW>EN "/I6jP=U ; %JWؘ%eh )6b_l~ 85e2\Q0+~H~RnN`)/%"k8mHW,_< M2)aᝩ]Qr8q0['ȋrVbd^XVSS!mX pZ]6W{&a(m%p ?^A^BOX>$hHi߄ϵu(V5˒hŚu?ӯs"󛿳20wFXMf7R:$ M/Ӆg`sOLo_=4]mWx6A`RdLHRQq6Ƹ=]cex6cdoj2f>{p*?LwY =Si=_Ui-_vl]Cqsɑrc7_Q.hu,Bbձk&#2bQT VD>ཙw]C_lzn&b"ީUK928p#hZ.DD_Pj10] <#-^mo+zy>4:\?(7uT(Uq)X;#SaMꔢ_ '1l$pZ/Mz) 7,_UwݴLG#BDPՙՊu-j]p^+Gŭi2%R-:Eߏ2U=,qIoџO9]LG:N^qmI|ؔ _5ujr ϴˆ _r%v>7kzSY_9atЌrnj: :Lj$7v5"dO”9k~Ѹs:m~)h+{{H#e?Zx]~smyR6Kj5&I[8.@3kF\]c CUҭoG r~0Һb;,ꌠ@Mn 28ʙ~5pD9?DUX$hZS}hzLBtw#F}#D k tjn7M>m6-}\6Ä<|ieٻ}k5z*ѩɸ(X=)ZZ #:Mյ,x!ز@Ј] i*Kq;eGʮMƨ|f崰 Aև^A cY} )4&3,4k rl3+#$>ZoU.)m]Sc ߓX0)b/!&bN$O- ܌]˽Įyʫ/>>6Y>a8UWpUwgsUD"l3NHL,m8ޭ|L gȷĔׯ`Qn/'B 5{ ++d%Rqd1zrQ ?GC0M2$#D>8waS9  m-d Tc!+o78`y(v`>0slA T]cw-*6 +kT3]fG$+LoIz_ >UԂ^uA-^D]xD_,4&ԅ {gZ/BU* YLĊS(N [V*GI@TOO);M|ٟ<#6|a;Yu ń׭'lHzGi34zZc2pҨĕo'MYF ŵBn`U~>?9V.g+]٨ GfOK s>BggTMzAQ K]8D*N:HmWw(H  -yÛ֐]?-Rٽu. 4>F9h܋DM_D=VES%2en:`{eM-^C[YDߗ`lvdX0w߻ad/Ko'u0.W2FN. #o^i } /;TjOZpʯ `(Q}iiW՚=N7u[vm:kXb SQ%F~0*[/4MGOȖ5ŷF)p{>',&&Y l$tү}R,?yK iЍ2Ԝ V_Q>lalS"NṔ--/uhV ߳d3E ~K)7ctM{Wyif ӦoCg'cRiW-&z0L/r}>YO |$kJdt-CjZ*X)J s\;ZEQ&a/a>0麯 =6Hcsaq/12jq^b)q~**7U 7BѬ@F5~`|~dlQBG!J0\۞f_#ėVkV6A 9(}0Z!X^׺Vì~ŭ#O]ۗb޾塹]5(>iMS$0ʘ:J uQ( vX\X҉ Ynʞ3nȵjH"ӺpIѳ+e-WXpYlzoݣQMn~G#< TC'fVuHzba"vޘFTHPݎ{"2Ǎ*jrYEяP+,vHYK2 {c3ݙ֤owmQ|-ٹ,E1!d;SҪrS_5Z,jy.^η=[۵}Bt-Zr޳%ҥ{G9?;IPũD EwU +@{kˠ1靍r`4*|z Y@D!={F/+CgOf HǾOynj|~/L;~`ܪζ] 7QMt VTV2.#~~2GkCQe`A:/#DAT!IZZ[.DR,-1dk-THL1 .߾:"K,a8s&l);u*? c&^n6}b!, {f쐘ï"='73q.zFux|[5Ǧ_J`DLߊ)js% rxV;%2.U) g 0Tfgqf924z֥選s7z2]:?@;Ӆ^2Ten 5gw0~{϶ihf#P},6ApAbp05f5y=(TMgj% n,_ U; іJ2U}V |qol-ȔIZ:'=5-T-SHQ,~i)I%L0Jgݱ.3|ÙSڨCm%d;[ Y3U* \o UȘE Ԙ0L͉t!brV36(Ӹ®OǭZNK7*uJ%e@"y8my2/~08֐v W*J;ٌ8KS@hŇ4{Piܱک.B(qƬ ez/N]OquIƞKuֈU쓆knӷh3J*|l@mB1GNǙsowl5`ltѿT$+A`gnշ>6emHx U\kY(!69ha2Nos'Id+a ue=YO] ,k㰵JE/qsPP*5&+8d>7/R5f*Em LێMܵf%J6#(oju,ԁ8p f(TUUNZMl>j@xFN0#<[~xb R'By rl4fCIf,S֖Xd[>':AV^pcKD =b:4M)tPqp&seSC(!?͂nRjۉm>J܄ͷ:Cp*R>*Xpbߏ}?E-BWr8R :O lbctw@xOmy:H0 bex,-@ 󀴭K%L4+K{ ڵگ* YU^ߜrГrl!2Vb/!d(3D{/:ǻ͚qI(Ȗkm 䥈 G[7)o!@p=\!Vթgi\Ӝ8!QZ HN&HwpOHEo:Yp|9gN8ه9rϊPbOKIc!R_܁]K]zE!/Fza%#E5$V?nSiDdRZN: l@P ~"%ZRon_W.BzuiLIxfՑnI -D8|l ƹZݳRm\µaǗk|ٰ"'<(Nun JAmx<Ńv]SWFeB{U~3th؊hPRwx2ӆ&md939;ZAyN.usy)yVx*GgCǠ v,bwVqx~Ɓ}!fiF( 2Uc^!7^3\@H1~g;\#vp+4ܓ-lK͈ꁯuLPmE _h9r;ˀu ټyvY=ieo̷lgЬ$7qHuKS#*ua[E ٓ/L%@Hz|Wj ߒL)--RF"m -K(ڼ~a'ֳ:osb@ ErÒihffxԘo9)*nzlr'ma-Q7,H ;ޔF%@O8H6m4[Ŀvs"UÞٱ!Ofc[c?ZP fZW$F5>K{YdRsx`1 Y- 6|x-"9px֨<VYֳNhyw/.zFgW΀0S¡,D x >FwL֧'s"H^ACI/Dxi7 /sj̋\W csɖKmu;9gzXLV=)zz{Amt793|dzPl+s-VlZ:!3猫+BUJ,7I㲕n5! M=`3TXS~~tS!:C;gi%-` ;f[\NS`>|oY1߹}W' (KYֻ[I|R4G#3.'/HNFfIp>bj0ZF5wҒgMNDc>-@APv] cQ+9Czx[h퇞Ȣ@o5 P:Oh7h2s7,HQ19`w.I_j`sjaO;fYl`tݬkbaZ'$5PfC$znS4S+4v!؏xn,'r#@XO,q޽|9dB ǓܖDYz<& Eė^}nC*D+ΆvUe<֭g@ Ai\=8JMb^]ii~@t!36+F*vICq$WvINgz* ArWj*A؛(i`m6Hktr>KLOt׬eE/h-`|jXZn5Ztj8yzlkf _BӞtBeBEY:v3Pj0L"ehv$H Zذw:\-^P"uSY4"u0Vqo8eZ^f(Mh-fxap& >?s=TX(_Jrס)%ۣ :u7L"`)je(~űwvZlhNc޳ ŧ ee,er悏GL [CkLcs"f'ϹK}pycW[_<ML՟ M"ߵ9ZB a> Zs1:q&SE?<}NҙEc22n ;PM 353Q|2 <C2\YϤ ~k Z-Ue@*aԁ420B;VSPfwlᾶ'b9ЪfOߠeS#m(%z%;""YݭH:{-yN/NxA8kj+=_ɩd ? n<,X"!jR&WE-IHLldڋǹ@ ):DYC)CqMi9y@2ٳW xeϺK=8vJO ~U.c>tێveDy89B(>#h|4(1ފ]C~>7A]dC1%ehKKpb=*qxhpNU#$Zo4Fr.yg Hz)[֣$*i[. ~^2U/ƻ 3o0G"JrXYGiOIR$U`<[jH'—FeiDNϷiE)X|v6H}6åQi 턿 ͫD d9dJ匨nD/>s*҈oժ #vָp^Ko`.j:b}xxHhЌ@43lf)Җ 2vL{H q鷘}.?>R+,kZhki~UU"x&u)",ߋsckeLGTvd8KS){Lh"'N&ElbD"+]"' ئ8mhs~Oqh?1H^r&@(i՞j8\C`s,lf!y%uQC&y$F+HW8RZ/.]=g5u'ӛIgﲃ#ܸ Iѩ* Tv|Y)\n-(v"<Σż:CL5x`o3*2Ȥ6,I)D~[rㄸ߲9FQ4^_DgPәǸg$,]m!uW$6f-8qiAg+pZCÜkџC]!rb8k:JK%dvxqjs#*\0 jLKC+@ >MUr%k\yuR{N;"Tx]\ݸRsr91oDZ|Q5V-f< 3GMQŴelAj5#͙QgBZ=Y"6}1O9Ox| G7" N !Q1*D&aLҜkε ^$8\L30ꪊ߫"Zf}vS] oYBt|z#sߣs̒m7^ @M'Q4v(8d# PΧ[4:VSyAY _^''YD<'TS R'{Wp5z ћ0[_x2ya$7>Mfy)X.bw3Ck- =2w>ȲIWpřV~( Ze6f t?n_ا slqfg0~'eg81?wT)Q*;Ã|} 0vd\|Ŵ]n>qYN/Pp)dd U0/}ҖSOɽ_IT SĈz@bnukP s.`bFٮ+gAG*lAU8ƕ%[IΡ$.7\-R8h*t :; [m{5>[]>C_Xp_[EK菲BuNNy4K5q#z]ÅN__Q 7`}>; Ze\[.ZH~úe6AP40M=p#hz# dr!,^_֭m#v)*$4YNiQT6EyǂIO?"!Z%?d]J7yܬGpV`缜P~_NevT6 +y ~s)d4M* |G{D ?'wNǘV@U"G\,wˬrxaB38Sn}V|INggl.ڴ컣ޫ~ 1NsܥA,, v /G/ 2cbˊOxλGJ +/V]4jJʠȺopt|x%հ 6gtj|󂷡͛V=L" Eq>zp;"4@( ,k$Q} d5Q8.$ M`ߧLr5`|P.n&D@LF ʋ{T9䔷1N ?(&\LVPilv3s]q48Dt̂8Mż3N{^jUVV3F"gJ+~@Q:iLk̺K8 WϏ꿰bLךUÒ!+U u=j_0v.+W6 Ƨ,J!%朳%{׌jW ˑ) *KB@kz"\0h[SFNp ?~zw`O pXhg]ݷ^63ԜeD&D=d<׋sץ&{~Hܷݖ8oг3iXG>$34f+[= ;- !riIؿ"o]^X'BBE&Rנ;VRs ў ^(U]}/<^; .Da[vLTIIʵԂ=R$syikDl20o"V0t ,mNg+no^"qv ,v[:٣hNF;iD$j˅ĉ4HOϸp䊲m&ƃ&{iDe@jCuVOո־}s 79uO03{ө[h C7oAXE (mS/,d;n0Kk?DV}Jظ0oYX^_rAŠWq%eZ׊8SDI="{:~|qm3SKjauj*uLYf :(U6opGso7upϺ0rr#bٖc{V0;Ĥ/|JZLƘRV_ӚxŸn v@蹳2$2j6,&J@dTf4rBp#vs6M}J 8٩6- Y_*t=>y6jq.Bz*<9ƹNMq+[JthITIz'BSQHRlL ߍE,Mt#Dž\ y>k ნƼ#Y:gIů`FS_*nEIީ31:>C0;,HjA`Ow]<<ѠS8uFuu)yo%|?u@K{]. :ls_ ,n#zxDr.:&yah*Ȅ~.%=qޱe6NQY'( `tWN;|bjaf( "ӡfb/s`)6| UX:M3(3+rӅjž5J v0[])OIϖlㅬ xe6Y6`)Y1ʻ >I!-J#A'R}`XMJu'/ϝu Bd97qIy| #tKNm>pZ"7yzm3ְNSrOS^?q`=R'@aXٹK'3[ `[CgS4bh^Heefn+0״c>X!,[ըmꝛ ᒌ;MN7^FkHajTel|&ܒw PIRj1z, ,v &6DLCNa4_7ElehPg"}?QSA(os Z&ȿRJWxGùHXw$d7 }=締 xeqyn?h'k&@ΎF8XAJҮHf8/S! I|k)~vgڕ;;\Zդ3OĮ"b-fΑ/7o@SVk|2+eyr_%ikH8%\Q /59^-I-G=WAAM%t,+rL0A4* .:Kux ;Ő %(Ƅ/8E.=v%L|rNpBDÔ3]Eu R-RܘSaЍ甈 &DFl=$B&Ym\4w .#P:شo_9z AÄ$HZQ&e,%#XG;)> 7Y4;tT 2Y=E|. z̽Iwr <^C>hE~aQ(\Kl2 #o<5Q9(kӯO)k($ 3p3sX=Vej,1=vOy@V^øViաQt1ӒKA*}ҵu!X͎h!Q+|cDY+%OA)cp.K揉\ze(t J_HzJaxIۓ!f6,Us KSo:jnDyE9[<`A ~8dV7^)Nd,#i9zltq`l:K#2Ŵ"bbpfR`w( K@^.4ڪxaQ4,H^YX=2YN-ѴQHU}ά"* ڪ^mnCo|ַs)ځԹ\6"WGbpTPx6q0T֥cv8=}؞gn@&xs<"<3wU57dJ7L';SCf 9}̢hIvsCE{(I0/CÛLVv`Kګ|UkJ'1XW=KUIyBչјU*0gib:;kg*^TR"őϝY_HTӶBH̓x-ȢDu٥ n;fmER3;EF|DjBs<2d_V^VQ7udN7z)_qwo1G j3!CGPT5O]?ǴlAr褅ڌ^ tSXOaK"fY}\ND!Ns F_Zz8FX ㆷtWZFoqUe$KsI'qZa/4#t8~2 pq92؋OS 0YduX6qҩ}a203рi0}d3.~P]%`V}ܨr-MڄJXj+[˨d` /)=Pw'KMN 1o}w1 i.3&w@You`@ twA7!;x.G^m7׆/L6 #Sfh@.#y\睊"G>F'gAwzzRDc9C8Wr`Y.Z~qR (o7 ڋ%%;LvDwѸ 9T0#wS&N" jC"cJy<3(?Ç83A^%;vQV? Q7 ?}U2P)2@1wPm #2Q8ʆbj:g،0O`%+u:csm'xx _HWMʚgE<p^2|Ȋm6NV<|띺:l"¾f+2NGE [j3&b>%Zi5:89`Qw+G<%jr##EZ_AQjҭy 4Ğ:֔ҫ1܎)ѡ=&EH7:}b@2p}⁸KxD)u*C ƵXK͸s88l+f t,TyK843cl9^l`q$:0(fqC uͿ7BTaw9طeȽH ͥ8]e/1\P8+Á|"HJYqֳZsТ} dW$3Y>2*5Ϲ ?+AdyVA[lVUW\"".;홡Y7VF( m1KKX)`os7@ZhP~d-b.8 l/6~~3zFH6Z¥fK!ld Sfٞ{bAŻuú\Op,փZӑ7;ٹh(ԡL:Yoe> D|{ G z7yéP܃:HhKP\:6 L`VEw#HQT녉×/V ^Y },guz[-8&$l1UaUd;Ho%eh & #Z*\(=okRT1p $Gk^efAZ*Z7A*ǗDIv鬀H7˚:`BdHc 9~a虱ŪGwxhz^̌Y\f`5RFnv eEB.eŅ\03 BhaT`Ɩ~> ns*F2 U*od䩖ވqCMgD+ Zuv5vzBDXf{:D%3r0~b\ pՍΜ8>fI~TN7;M/SMq2r~`u2.uTik|v8ỽ0hhՉ QT\ DO/C$y񼲕S "v;+6%$UwϘr:o0qվktHd kOBA@)[BVz)`ussa}$w/~apx^C><(a0D2h$eB>t}Iwj[F"]_~ɂ7 NMgs) -k͐ q&(@68pCN?Y= MSl;m*FXu`i^ƽeHJ38Zq T˅ᰣ27*݅TFקh]GEN8rn$cЌq?%^$;87Z VZ(UL볌kb) ;ϩ |ln 7㛘%o=B+p6B`hflA'y퍫ubfחI0G%Kw$ci̋D,n'vͿ@}|Pcb!1 [Ҷ2=108rx^"Oda&6,jscQD]hQ1(ݯ)u]MyAhHn 1 Ql.CZ_o[v(CeA"2Pi;GH{xB}6Pnzv\[BW!]GaS-|\LtO`+'vSq3[l. ^ܓB)g([LopA,4ȉ+1emi}yɃ+3o1b'& 0j[Z0o gm=|FkGcrY`[x떶Ōۏ"EUߴB7ܠL؄ƿp0{+޾ؓ) UM蹾عg~vRzԼ?/{`J@>pޭΓB}d_LAB0u,$cȒ!P\eh֛߂@%QV%-k3q78>@7hxOGC/ef\"5nl{\|1k{e!e,3rЗB$;0-hO7*vԁ aLK)\q7ov^?'.L/ 684ʼn7HV/Yg>[`WM#*'/:,UXi8fڒy#mIN߃ {g+ Vhct@?g; _0s _ԁuX ϼ|tGF yQpz,>1(u%b=igV W8%jr͑<=k2Om" ք2Q:{qY]c6z%0q) ,UZk=Ω~kj.h.wbF)UJqK6 GkbPg44@sF1]wPbT?kHglW[|iguPl@_P^|ϧy nMyjውj2ͩIuhַ D;ZݸN_Q74v*ʼ''bgFU4 $1\C!V:P߁%֑*$cV $a63 xi X.c#ݏ(y-EL&?_&$[of_5oK _lAaQ`Lwz"0QQ!306PGm _*M:uVr<  M 2u' s{Q׈HS2 >Ԟ?6*F>RkQsbU}=>z .lsz/ma8i g+(7ªI H 'ٷjnT~C:7񕣔u^p1"P6>{9ɿQEAy7^Y0"+5KDX(GZYJ !4>7l4)fT@zT~#(a}x\ 23CxJ*S?Э!(R5';1!$-0wA ξy;`\-S/ueY<]+ XUGDŽˠ]_m5(<Ʃܵ7bMV7M)ԳVE/@;x0uEVxy:q).z-2D40yDtS 1B d8>+:o6M We-M)%e9\]`9mի' ~wKw(]>(^6 X6O8AzT7Cע!?&s[pUk(2FnvhX I3 %.)2+B :5MN.ݯ\M8Y$7M@'tq{Sd)!Pb~vG3s7H @ a GH,. E]y |fi1[$W|ol):p49)R&-mv˽0Z#S.civ=bn15wCA,M~(ɹ Y6H bJk "F\ I.6|Bok֖%Q+~ϲb `)2M!&8>Zݠ rS!ėL̀NV> އ%uPHC\qѵMʽŔwoz'#!GIh6HP< LhCZ|,F\~BZ) lm̷kUV 6 iNV+Mx~F0zw LD0,d)1O'V81{4;Z^"ddD2Xh,tK+@7{\&dVT.ژ}K]+ x^/ykׇ~)lY.^]lOuSPoIS[)nt(~R$˟xɷ+K9mIhD8B.+}3#B޾ J_9ƔAb W Sa嵨~i\D]$iUr~Ѥח&S FG;vh}Wh7Ϙ!ςXC[N nn,9ddƲ}=MM8*t!UXjYF͟jRv ^|DK]YB_(Ge#;xs\T8 wl3 I鴵 ݝi6rR.U=š81 u^;K(eL}9g}™Va{<߳|ٍaxt̘ȐPJbJh#'E%U=5Ju #`푒qe%Cbk/}̇^t Kzy~ OYq6g"׭KA;6'B*ܶ@H^A 3^ gxLq*63;Ti'|̶;!66ٛ2v< zZTU o)LlILĨ?妫l/Or^궥lXҙO$0muL~H8r*!%$I>[8Y/,,ikOGuZDMSCrMU;ae\]Am }=73"Dwb>BNj'o>?5l0/Ug`1`K9+RkgI!+hz@Y ;V?Q|NNŝ`jݟFd9*CF]WŢMPI]T%9-: ɥLI:/o(:@^yK.țPLt{@`vl;+hVm—n"nvĤ~i(S Fmq}SLӳ9DrZɪ/ W=CXk*ˈ?ܡ<)X-WXv5i޺5KBS5&~$Eʆܷ@iƶGEVI!jBzʝ{-WDܨ..j PL&614j ݸ_@|%Js&ojGbF=B`̇>xAq˞| B`R[rsZvMV n9&M甙A,Eȝ"LV`a]5~`ΫWeYiXK\\=g?cx.@(iF-j< ^$ 9w_>Q2(X&0YTؒ3L'gqGJ5%@D:Oۭg_0.6dTZO))θ=q g7'l]K4Z˕㌙/Gp>C';eItĈ]ΐxX1-*4jPjcVW«5Յ,-ԬLQL\1M}/vv\8-Ip/.9 ^1 H /Рze,PLTox7;j8@xq=פ qՌb%N`yL+0K;% M6L%uzUi!$`ov FMcL؅i6t2sG3J/.^ܹqBQS W]-VUjUbt4 ! s0uWn4awޯdП9hV#9lK @g7q!!m (ݸiL=!Xh8#p0r 0G> dЦ ֿR%u/Z0)DK⫘ɕo:{@lo_)E_ B fO5G4HMpl#,[EtY;}ͷ+5 ! |xJZñ y,;G* qɲRH6z-\NfflL.g/qȺ;|\H g"G~怋ahq} b sGK7Ctl+- õ^.t,N)rז,!ՃO/JH ϶ 9J׊ DH[PqTu#$@*vQfD t?C߻ak{hPa\Q"W_Kq*'aⷀĭ$h8 px 'ݬ%g ec`tC9m+ +H;%x⭔#ISWN-ar=[S )HcwgV6m7bU$nSxbS#[t/ U;v*6յ8lj4]lERqzPJE,P]$%Oomx>qˆ}Y dbEq, x\olg:%U9@ xrQCJrبq.|R?̔&G`M+ʷ{Q> Hvȯy |hpqPP<:NUn2<bԩ_D ]yt]`ghAX=XcA!pD(4=G-*nd5+}oL`cVSM.Ti#O+AXG}H0H"wCcΟZC|lTínq;7wEEga% ҒZ0ݝSKp2= g'GCݞJ+9MR [`CVDaG*"ɛFeMkACq~{"uzϳUAi&ΛOdP_KfD(%1t Uklḩq(S.oLyWl㍰20D:ngC6 x!%}R=^innF4W]9=A.,AoH1 +:vw4:ƒߥ>#AOlC ~H$fdzuf!^2/Vݣ/poʯI!%eMF o}$Ԣ,a?*d) cF|;S]fR)@,{n+ly)m#bxRk0f0z9WO(AʅzΠG$hcgq ~p;=v3]Pŕ$jĔF1; $)+LdMoVpjl#+ V:mZb%N_DV *@(]01RiP0c+I Vm%UfU?s`< iᮗ1neW7xa|Q#Gg=k VHg_+"KFA!ӏ19>H _"!AV_YuAdoGgf4%%Lܵ4_I;^S.zEQXvy50xaKG{>L^"qC 581ϩ=U42Ҝk?j&ZZ `ZI$q2 X6vFo\-4cz-M7HHBWwQJ -|} AJ91r㮋c&$V3e;3hX[E{E?.Hь 6.n.A#Keb[jV^s9RG1A=#`Nm{&xU^{t&ZF..Nj ¨FF[uE]=\rB}"!$ѿèoT{Owb) q ]"~\ #S^6Džb5/6u1$`Q3шB &?u H$ʓ`IpUp[); {}//-J<Jk6[a8rS̛3SQPRUCwYh*1: _D9ǽUM=dA y^v^-7<2jЯIr0n!P94mRE&c &v퇄}jm(p$/!{gKKr~â3xBoȍ[C/nl;jgL i 3vJ.^Ajef1qOx0=t\Fc@޷tU/;!{rwwpNJrҜ ZT |XxbԲǣ8!YTneο"'xhgYĂE(FF8 6{wf%ʙ!zk oʬ{M௰(r&[XL  _lҥ>#k?N'2j߹wqzaCC ħNokֵMED^*U3#+XJ޹TQz U컨WJNuj ]PnJ3ÛDiڟ]*pԱ&.MQRn6J5Hvi?0B-Z1z曥B䕛;1Bu ڑ댠 En Gz=09Ny|Kϕf¿d3xB,@1 $I6z*O CÂ|1ο@GSptSK)8 uhʱ8nAK"g$&0ua6@p~Ỏh(I*8V+/q鍳82&W= <.kUU >|XKpl/-: K@D=vLkl *wm6PZY\>f!v$pda<_9b;F 8H$c!ў'zB_)rZd }^}+U; Yx0"zFDq57NR.O]bBC:# Ex6kk^Iֻy'Mh`he@z,AQ7М0Ck8 I/voMtC2 dU][dIMo+D~^u'6N8,L+) ]/0<=w%dX ;Fmumo߉-(8qn&=Еf &8Տ*$ XӴ;@?HG D}bf$+xt&r/ Gc6!JعW'#t-+.‚ˈ Oݚ?=KzXuɰV{zoP89*\Lzjqs/8vA哽:oxz{iSRvakwc|mfGƁ8z&lmN JrHHF' uw5|ɚkV 2'Fq2chsr>wHQ^joS tCS}A6ƫ¥ݪ`6?C}gGv1u_ttRBx8RNk{aIMV`Es jVm?,/8%@uJ3 Y Ia?(wfwϾ0,P]*{5}W:usTκ_ iڪLRٚ'l(=^%Xy,' /E**D7T 6T堟tN:2eJ)4oUb?ŚZz/ɹ0|e\3XO+90wo2:3yʷET+3XQu>:xO\n͙1o9MFqBx#GmL1!^ Ue8e 8, 1.mP *6UԖfls{sPd+,3Ө?@G#V ۩4*o8pr3 Ja:ud;P/<pcaycgڈJ'^SY4g&OP8@_?o_ÎޒyTI./sㇺM|POoSvfV1{#'DOcQ%E]ݭ@>A>3nJ4Jlw-$:fJ-ls/?wg3Ն~ҏl$`,D?,VX|?+5,q( HleA:"DGA5s޼] iJ,\6i2@YW 1yx*~ (p@RZсGU7.pZAFŠ-ݝnz`߬]qULvYZQHnZhsi,9N:_ܰ Q.@,[""t gW"OOw;bIRDKM3~($'a gPoEQ)FLu Ȧ൭>T X˛5"^Տ3q!$yҤ\#%5U}1.눛(:td"li g=VVp@^"U䋏EC'Y5oD 5T:U9۾L9.MՂUe^u3- yɷ (&ȿ1A7kK?yBbP^;?A9ghc W3F1kd7O`#(Sd1.Gk,L sK 2Džf΍Otv ]Th­\@ n2 ē>9ŸQfK=S̗RL aю&(Y(LdQ70>\֯O9,{)Ko [KO;I`;`4i@ юrաg"ҥP Uvpv xofc>]]H>*aTЂlvlum[9qU~c$y]MG-Op <lߐFriN]d6e%Akd -)/JI`ڨlų3ir)j-:hMQ)r@„8 VT%]^$Q-tOoW2% NJK{u;F un]őOQ?[9Fӄd}(vxϟ3Jú?n7<@Yq$BuAΔ@RL 996hOrzL \+v}j2eOS3 ,GS,:HOi`[w.ɽd`r#I'F(Sž ; ߙ~~}qy3ޠc_)Be u\EBHi Z.ܻGhqd<&&o ѷ^EGF ̼Jfv(x"&$'"uxSr?x5?qpԵf60 ¹IPcjU4 ioDz\]c~ೳC;?3@)+f% L{Q p롩t55#`:5"Q7MQ`%SfLWTL] Ak&^^`V8*'aFe(“oXV!z̫|(Tc|oI-  U}0afӼȣv>5X~ p[ P9 z=ȵhT,d=KDkU۱ ͼPvȻBاVV!4KyuY|nl*%0w :o|lwvhФ-Hg1J\ɐX|1uZ%Ӭ>/E@UVi[{xQww3:,|ќ=xJ8U71PYhL[vm,=>[^5 Ȍ$\u5/fTbKчv,c pj!zEYĬf)y;3WK⇴n+̩7hh stub}FXo$0LilgtIU$o-4{^GI۴X?ttQjxK-PmWgr(ɛ'nt=0oxB  yohv8>yNƐt:L EΑa7*nVoyN,5L9>23 ED5;fH YɜSspLH<`ǥ85 ŒScSM~*;Io#jܛ\aN'Ҧ 8o-f|b8H@\$(u)w mM;V~[[LtT^ BwC]KP |S낇n`-ޣ׉kG8.z_C׭sj>^i=b{C|N YR`L,MaYPJmk쪋vjQ¦yҤ?f.KK8v)H9|L2߮d1\@ )+eF%Tu[HɮU}Wݞ鵐~"]^S"#Ǽq2<_ֶ3?*](z4*.P*00$O&Dǻ Xdj;Rrmw}q=oO5 Tb(7o؍ n5-XmXD@yW: 'İÓshB\"gY +ʁ՘[k[DKM>n3hV !5}^Td \H?|d'0A 8gԷh"R_gmD sm 8T΀ᙉʒޔof9Ǖ:veϿ:$6l}^ro*kvB1{FSʹGmri SƹW60wA@ pH @$$ 9:k]yw>! /C2q'G&)#NK%SǤw/ G7utH|N!È6T2acXWcWTQ7ѹIK4)2<g׺y13c / L O "?[u{0Ԩ8=),@s"I'܎PnE\"Ag@2'ó&@ʺEqӧCXE4F2滎/Ydun8Z*v(X7Xwh<_l~zV֝{›q2`=n@#[ytNQەA(EoVcIg6= kqǚ}rA]/jR[-fw?6dfWO $2\g5pD6!J)Ї9fI@ Z=ݻalKWd@\.wg'/[?rj!K#BY)(pR*?z!ژhlP&?¾56$J1imG" B㺅fo^E4 %B`* EjxL8xFmp2F{ l;0Y dtf!ҍknޙ*뛓(Xvϋ;q~J7(42wЅap{agU59|u4JD=,gGB?0zLFֆhN}XަUeZUi6쬎@&hg!&IH4AN#%cŷ pmGq2egֿ08w؅ !_Ftv 95,ldW\^*&gd蝀rAe`2Hϛ!%< (l]P s!'ŝg6a+>íjƒJ9|%=rݲWR6u(щ,dI$(񷼫4ggx3.}hL ϩKYk#f%^cJ!5~6O\O 9T3;meEZ"!lv;ϝ=PE_dZym s8NOx RiW?*w%:UUԎ{@} NDœ͙ vdm&,F{%I"X94 om/t_1uD{hnrh``6|3tO"h hKIQ͒ (.hS: *QI)pWzi./ s'@pJC ΃Z┖Ċ\dƞ|{WrurV7G&e;6yw»J $`q+$Z_MZ/ch+zŌ`G*$㆏ч;.6~k ZgRt)܃=gymD2 W>g6 * ^%7Bcm"jfVkpNRpJBh}>v\*e3XJhw@VA=/Obv!0| 2ϨTJ *>bىE Eum]D5! *?ML"b.615$yH|tZ{c8I32$2W._ 1I>kx'qnN8PQ@UҚc~uTLC 8]M3?TJnM!mȇ9!d 9"Ow]?S{c)ɊZYÐ3j$5Gw5ҴhEn!uuo4+RnI7vq[7Yړ/~Q\CS&ƃÜRڿ>֯PTFK&ΤE(Լwm:O4 s|qR#&rdn,Tum>tdLa?u X tb[.ԞU2ȴ<ⰙǥF t18h# Ƞx'\([ p7ax87 |er]K~rwAQBg,Pn^LؤFai/'Eq%0.8DfQ@,ҵX%g#J~ݱGyEa^LA1X3[1 %FdV#2oy 6!X}CO_pR~KDiuqK-tS? Ms"VHs}\D"iJU<Τa%>YΛFU.8o>$Gήq)*mw/T\ɹ~1']'Z'cyǴEi'h]2BVX/'*l+,Wuaj^Y)젉{L5u?kc)Ig~!*R3P4,oC ] ,$}Y3ߎ} #2APPq/.X$iʔ +#SgMЛ"v1ζ41{vK X<0^d"PO4Z3olۆ!3LGlKmoFlZůִN^-$6 'MuT·%(ɍbk96(E A-L\e/Dux_sq oKwU:*2{ajo&9>P^aLt׫hÝiaWsAnH^3 \3Ն #A1_EUKw`sML2F$@1̫<+~1,`l0PN%Zbc`/ !"tZ#DZ fW$l)N0.ى509Jt%3_-]paՈzǏb1Hd'V7[=ks#\o ?NzqmC2k e ҍEp3A6% gSE/Qp@T5CO%tg~|FJ&ۭ0/>׳>.%@+f :܇Og? $\YӏG {iET {6~U|COI ϟ`zԪ}5st,O6=Y ,*+4;ґpv(+bcCi8~)zmֲvb]Lr Y I2 ]t)"mpe6h7.azCm9ٟ6!8.JCShh1̊đ[#Tm:U_gȆ](LSi=>4#߭hF;Q듮:V[bdUXͷK}:f2Kt.AٹAeC"/^=xK>:N>vK<Tӗ>՗E 2yݍ˙gp\Q11Y(n1wgF <ξ69_]zqn,m4%UϨjU@K@ ;Ǫ"}.o^=ސ ]vYatI*L^q㖃Q.S ˼: P$/]kqnb[2ivM4zʨu=2n;)z -$x!o ?٭K-6Q4("ܔ\ɭMe [3C_ax9tv²% 0ArQ'aXg^ajnD7-" bɽ8~e]ȼqb}-`^򦠢!UWƣ'Vf &.Bu8^:aOv&y oIE,KTeuN:Jgg u:O.=jkKDmJxHɅ("{)c욍]kֈp3f& +xӭFX*gd:C~UbyJyV_x~w- {ސsU;kԹ~H]q&`ldذeH_MKϫzv`<$hFiڻ߉ o y"knS(+D3ꐐqfه92Or ~w ׅUXs¬?DBQ124צk8i݇UYc!4Ah.-&O'\Q:_myKR38+i`Z`-nhu؂-)\aRI3Ȓzdz\US~81vD?*rm-FU"(Od{,;a]F!~Νl.,~jj<<=K⺂s zyIfΖHN cf?ٲ~҇@jQ`hխ)If+{MT_ !&S>DlN K*n9f@VcY ,WȀz׍&4)MwFc[ot#e:{qm|ftB:wx\4yL4޽JE ˝G+|'BFn]3ms{JA]:qL!jܙY:"J`M(K@uTrEs0. FE6Jޗp5P6mE(8 NpCu=bm ȸb\6xd\]2BX;H˲Cx@V lF=?i[pakN~༸3Rۓg?S%a8vZНg3$/7ZGV''µ;kW}/Ȗ3p= qfnVjBe?c;UT"M~\IH:[*euY/nq6+&K0A&xiVBKh|=dO%٠_ J尴Ka˛>H9H̩>Rt%SGXGmHZAx.t۵4}~/״xON"y_g"=TCG/v6*kf$)H&rA߆ T*żW#JhY1+ c0V*ߒrh'N܅ZOqTW-X~œ KʨI/!;m+:GWuF[9Hx9φC+-=]Xk˩g`i鯪C pz`L4gO)p9I+O!k'"=ۢ=K齒zS PZjcb8Ɨb1VDp#)eahBCH;sAgǣܫ_[؊,4".PdxП.JQ iSBё̻6).?|ajCfL?5.C&Dž[{IdH!̧qT~5]eN' Eҹ87^C/ЀD(KvzƁ)DQٶPX Tk|aQQAaPMB+$zD?cYɦV1k4vx`8Zᰔ{3[#Uy,+F&@{ؚO9]y=9> ҀCf7riГZRX|_F䪞=7Q2 3đqsq@zA$)| IT0nmMƕ>VbphaF x>;zhG3ʬRBFmԌ{dG鑝wp[yۜ Wަ*Gw8nX-r@tE'q/v Wm[hTx$}Zk^|ةqdGmNԴ`H9 }M dpte>~QĞKWuvG;: @{j=]F"p95YÕG*e >@"wK(*RP)p?{ ZOO^ƻLfVs36do=.J8@ymԷPk,}rl,r@6. <[?4̞o3`ٗLZ_"nɜ_(s( <7t&c fk4n|vq [#ֿQ߳9pZ(sjˢjj &XjGx\nѲb9_=؍e`BІ1t>$u ]ڸ{`lZ@>-[M2C]: 3pOh^w2y`,W~@~.7 "p\8%q8b0 /oԋ(3 Kبx禝a[wASM쏻6$DJء'py{?jXW1 lZq$vR,/XOG{g$^@5rE:qɃF[-ތkSE{cMH6~LsX82u5bTg~ͰGg}g(i?Y~oż[Pj?ctN TT 5WC^9fKTa gRNTrg3Sīz@:z3B!SFq+н$,vN?V߻yL םEyZaQ܍7ZIâZxu"jUBٰA )Oe=.p'r^5Dk1߁ldZ¾#GsWd qc^v=q( ~S yVKO|1W֭YNI\擑9'U'(1peD?8,!2Ʈ0̂C*eEиABݲ(wV{Kw#Ɲj\#}DC8{;;Т܏[Dh?}X#RVu%`"3F)v+Dg94WLp3p{b !͈ӟβ+9s;UjJCwy|wor 0\;9۬dT> ZL8%zތmRKiJI?fNsa :BO*]!@2sxu nRFAzdI'Dl3`LU\d~hY{x''<|| GeۓPfչ9c'H3 2O6Ka{raioiޓO#LߍY _L)'-j8j2=q&2\q RR-yel))eZ)QiMʘ` &)>sE-Y 2HY1-mϞ-%)߬oҀY869>Jขf&Ս 2~qQl/1{NnL3m4ʬӅ0,ZfeEѾlPƛZSTYeN߭wq+b)ɻ+Ǘʰ? Y%Mh NBb'0?B6t[G rk3;ᬏޝ8ϣ/lr՚1uXu0CedOL<"F\@y^>^0pOSvʓ5̴P6x DaE' nhG ~Ct^FckNEKdR瀝'BJgN]  lV Y)n9;>EP0uĖ1C-OBB}+YkۚM2cdgIukhy^SၡѼ<^7#ywh הLusq"tA*R/+ <՗ӽYѺ ]Y)٧Q*Ï8Kބje,zFR5@fKU~z C&*!U TWl瓵#U7#@~a-o;|E(錂TIQYBmNm`u Rz2ͬ$ c82f)8DO[ 9X$$~_Dh|Oߩ] VA{$oMx?wvS1eqng: PPl8l֛h hV<09C(@ۺd]el5胤S7*L؉ˍ Z6~0@`DkY ˝mERzpmK&ْK\X+dWx)0Uۖ@dkě_{ Gb +D|)Eєs!𭕂l. fseD:ѡɰ'BIP*f\*Ţ"QP-b5 H6Yk=@ޜF;sQ?Z.P5?drp9E8~ڲp3LTk.!X =%IS/3ch'5\7Ӵ &6ä!8}ӈ:kHSL[aYSU'ZIu2$ۣUgdi5F}ʛޯr"o0ߚ*AEJݎ9(f ѣ.Jzl5WG"-pű?4ߤ2ʽR#UÍ-) ؆nhqm8ZR%c}PpX8:mk@ܭAK4a@ Wm ͘N}dHSaPw 'pw)8g0n ZNj4BýW hPv rԫ.1҇UkXJt79pAk|>y6my(6QxjOݬ#ϋ:L =`a H]Ȣ{'Z]-\&r(]xKzTSy~@᎞.h{{bsL@'օ1\՗B۠ia 2v6CƖOR aBI31z}ʢ tobȝ-&+3?LnT^ӤsRe@$d}N0cL>Iyڳwv^?޾h>c-D;/0a jOt#YUkOsC3ۊ 씚ˇďWGk{WPm체Mr4Ɇ7/;͚ 8iUF!gۨVT(u-?*Se1ERFuD|9a/!mRIvuvkdƗԈ!.6XF.#\(aJI D@K U>h|leMKxsD EVBu&8{N%/q26ܭ^ve ..+pq*yŢgm)\XM-ǸDfy Ã$gj-[S2,"]<.a2RzDwPU>_uo{9b4>}sP8B{ <-`0ޘu*Xx66)?s8 rxOu`Eld .x7isCP(J37PBݹPPnt9be~)4}M ;M_/|Ms!-$PZɂQ"LAfX4LJ[uSICQ!(ɦ~vw{P콏KYNDv;?t q۲b7h6`P^[ ` n:&yh{Z|ϠXP";``7թa7[3 xB!BfA˂n^š1feEPc`,2F7UET2B3 w3Oi dr3zm /ѹkQnV[ބfap9r0-%6_Z&Xk}M4Dhu+\6 KzO} N3%GD7(i0$]Q^bŷHM%'G|ϡ޾Xm|V`xZ'bȲsB3PUD7yYoFO=PSHA2hGlwrveC`4I@Djs`cVPT__5zOG[{ٖ5 ^>E3_@x:fI2kq`6pg*"˕(7U˚b'y2=hyLjHIvn}$Cbfu¤DԾR~74 %| 7OY〤9q+Ȗtû#AA)Qm"%\Iy8mhgd'AofG~q\ 4&BhyJɧT TR1R,ߞ#2@te6E~e;^>fc$WvWrItz&1#(vB[>wabUãu/Bc$$s?5[ahyƜ3=jM  ~"2b]U{hDikfVG> KoA!}~9T`^k96&JzA@b5 CS;:KM1_iDQ8O8^r|)To)s-  D +ʴr # }JYFSj*l%k†נI7<% |/lXݢ,}hl˕sR{lIs5#btU$b wlaJ̏<3lIތ#@|3K\y C}x`aACw+Ht"|.DR;5Kz0tnQ<DNf\+UG7.%X]Hݽ=fswT/#ZIzuޒs66 ܬ79*fۄ޹%+mIv@ V"pP>wi:2⫻*r>cb!=)^w m48H53S[WW }zU[_E@e`WX"$]gzv^ u ౸*ъ`gKΫ[D4W*~W#3 *Ms%h|&oMR,TFhEW&3<> IUbB >qtIFuK[s+ kUc3N?[U}6EB0N#,kI"$CvWIb 2`w]F@#W{kYB."5a: E[j]OfhKÚpTw.И^x.qN-<1uq?*puxU#es"c:Zw E>C)SVB)ѯ׃}v< G:T?HxOiaM }L\10y=qxgF084LlڿE. ?⥍X/S%F ʐn?v$&`bEVA1kW/9`^%ͪtuW_RznbWGȒW(O0z~ak&[ C91(+zDmNFf4 1>SMJ{P1X0nV`v!o_`:9wA+8dGлWHH\ntZU^!jcB]ȳj>\Em .C+P0NU/gwq ҟhTOƦ+ X쌜z6R%Dd7|"`R|$K8K ]!Oo |KjX$Y+㓀!kDR}t  ٱ?)A`HխNdcפP_ Hػ-M:|ɇ8;E/TE%hG""?*;ѡ1[|&Ar`Y6ȉU,ɫ7O48f^~~Ss$ +eP\v[!iS&O$UpqHx/xr9h=?}SeYFbȗѰjϤ hUd`SمIƾ-WAԠf"AjŶ~#uF#Qd**j:o/ Ɨzl|;sՒ. P^[ejd}M8{s+r0"c!wϝ|(_yB !`B&1U-}5Hv ? )F&.h_ܒ+*F?S>wrw<(ZԎG[myEU<4꾱te:tʅd $16ܓJTǏ%iU-j;e:f#0 MbtAd1a2d(K6]{r`{;uBg.ʹP *-Bqj;7ӳfMx|T(>sG8x[J@MM{hp0ltA0R/޼JuS&| 4Itڤˌ|A@,yD<;g_L"{(OEv "o>'XŻ)%a tǫ.F9[/h.|; }fd3xۊ1{n%Խ[qf=CIdnqsvs\Nnnc6Ϝѹ[En'_޹q*ŵqe[űVk1x2ΩUF {1$ iO%4~(WU  XezmbCfKm.Us3mFOɾP5YVQq tM btxTc8O#n fzJ b` ,Ańk+Ydݜ6!65'1 y_g #`>OkZа^:{ڍ\)aQ&2,cjE=kX&g/=!=#{j"\S,?!NXy`//goOSoPCÿc T)H# BFq 'З1[0E߽IIrP<h3Pb6Н2tK,q?.ZM*g^"b7ڦ䆻&lI_M*,]rd58tLCHwpyJtpyŽ{p o:+C{ckRdXɑeg78<4q( 2V r$Ư 6}ϜeO ,ٙԛ>)9-<|[ ,! 5rZnM(˳kBM0)j+9 0X= 2܏ϔCNs겂 Yb d5 r,Tқ EwXQ\[8T}ɰ.ѓ斦f^6XIw];2:,wy;_FeL@1Sy< .4d/22 '> ԧikڠ~[{D9Vy(T*o6KF8Q_ G\v*b86:Dë:~Xmijb ŲT}-~v&e|M-i]ᗯϖq{`g8'32gy>g ?$0OteIlHlT5ә9z Li[@΄@@P1әtQ%H^yԺoj _T|X*DTuo[M xjX4Bg<e.}YZ0FΨJzUj|46z^.X:'_J8£o^fHwz agk._hGE0C]d˸*XMR14mJաC  @Y'z7p4sOײI(/gvReo8 qcK5H;d!RY~ٹKTu|?Ըx}O=fC`mٔ57%H2QrX{xva'HuD(˹55%RdDZ1 eY:lK@vj*Kf}&Di1uD1=Ëfؒfi;FRgC+9j 9a&'eE~dV$BynSʌXvC0"ԫ8NP Rad^Mhi u+hb1${/fa_V;O 7%7xEk[4= ˛~؋fٵkCwA ٖ1[_.r|H|YOk}Dԋ^݇/;b.%T?#КZ!:0Tnwt:رF_tFǓ(Qh~ X6KUǑW+o}7N~x-]z4idg fMrJ5G00< v}H2Mrn@Q7獇8 Yd^x4<5\7sGs¼kJDl>u<"FUS5S]y e,8>_ٖyE.:Kf)n*,DxaCzLGİ CGUW5l ͷ IX> S>s([]S#!H@R,t7-R'o'tG-Js48N}=!Z7<~D`2dښDe&,“Ҍ+ #-N X5?_^gh~ұ m# I/Aw 'Φҭ8ߧÍeNII <&4^ Ղ~R=4 :;J VU ~Q'갬=}1gU<;мܤUܝ^UUٝH]!+2rh\ oK?F:A+e¯Ԇk :I>dzBF6%}Z1@>꧝^G>T z EM@xtw^hd#y,tXC`w[K$lɯ0T4$CQӰ$~pŴ&W|BQ]VCޟe1^4 2_skq'9/Ek83餠R g~ċKޟ ='y5";Mѝl<F+wQ79nK5˅/,Eh<,>QFB,Ppk!1VS3yw>"ƗTR5 }ck*4*cbb5O.'lVo\~R0tKOcb mڻcܯna1klg=8}K2^ ^mLh ]7!2&Ir5O~^RfA .6ʼnܿMc=j]Q^szVU4d;}{,*V{ڨmEd(vS 3[h8zͥʼ;ђ]ςp:0d$U2tHiEK dVAsf&h 4ǂ:XD2w~rfkĎKi!jF/Rܺ=zj8_Ҁ@AFb.$wz;:IwTSP00ky~^@LM\+1"jE`FsN =7sNKʟs?4Jp/Sck /k*&tz!E#sI5{svm, Q6{` &"PwBT+-p82at9ptIv ^ ҞӡXb)+]*pGj~FQvfhJ|f.o\644Xڑĺ]d{~:I aʗdB@b; }uྜ׶ DC5ڿ8Cea:8%U.B#IAbߢi{~#ϓO/1Z,3DR4Lx3p3~Y=ol0iWckֳ`[nMȔm BS]voOҀ\;9/lxl ٥*`**`fudZY@ݓNJgsqiuo \qa.3ȅI_]QQ, p uBq(Do(I6 p֟X֦0u(~S){$Cqؘ#"[OND},hзO U:LkfMW3J~e {8õRdiR7߾cCDwJ}w- #fQ(j9ZHW+vVaa9 %DUM+r&'m`+yG=-Vivͺ~tp %{HCF=/7ayJ|5dT< ^?aުcmnFJ2u_O C=PZ_v#i'`-B([5?ؽ؝;EV ѡ!Ut/+$4AI٬z)"9!E<7w4Y[_G. * I%]L4фko .}by_W\۳S{šè)mY2 }Ɇ Nޞ'%LO.ͲJڄ`Z`z~Ֆp9sd?Dw 4ՏNN]ĊfNcP]b`ޭN9ʻR_\b]sBu^SQ+]"aXRE9e[\C{=ugjhkhOI3hX|`r xI]-f;% MM"+0ә.G$W) ӆG!_^YI|8uN`muӅQ) c崷KV-tvxPA3GL588fS1XO-,L/n+xaϗ %G#hH!#rJm=bm,zvbEqU8NiVdBK´9-&bU%J85ի,t9]o^J̀EvQ iqiRDjs ]:MvW1FA{(/c[BD>LHW>Ei-⢕"7AHuHN}s\w˳2Q7e*u4ET,1%G4ꓠ m鉓rIHv,;BWhЈ4CY) AVtm9_&bP CHaVUL]q-bƦ( TtS˼Xm"'mD :捻I~q`辰uçtUL0uSK CcoѦAѢ*M@ zM_-G>M'+.7I z7)nKm#dmS|-+]Usq q#H9ωgT8OK&3WaƵ>k!"+%C|,qD.李ԅt 1vJDRHL_@W1t kF>7O`}CBnQݪ gT?!g7 y/v7BYQ1NQT,X` 6 T`9]lhێCy|aeF@dbC%DW3;@K}xLC,59E]g ݖ'<Iu6^wInnC|A]> JCdg ^21j!=9SpurE cN1X#B廚HJ=Ȇeob` H/ibY/Г>pe"2zCS/=LI:OHjWVl'ކ8135II7tA˳Մ}nɖ-y^6:؎3b>T Fa9dmi^%fѕ m?{aJxYЄ51 6"T8a qGg'i7i!kKjwQ@un&M,˞'qN0n`spغxd/=VRFH nD \r#%g_U$sYDSi0y  "!D(K\ƨaUGcV4*ï=MENZj,z1Xy,ی$(q0Zylnрg0`/k$-/98i@Z `"#R X~P-f \C:@C7?4z=̙5hxQ~.W';v >]9HI`Um/GSBgAM"BhᛈȒ8_1 -[k\<H ' [ cPLK*Rػ*z>čn}@Z. *a87άSMv; "Kf{=4J+DD5SKpW-]6 6Ð]_ER ILáU}oM.XMټi9JϪؽieݵȭu[iaڈ4?*([  ΐ=4nփj75v֣S]{IE،oٯԛR.DȤ~Avr5ٝ#g<XπaoJ$ګj"O{<&]Wt*OWt6kN9' Kl2/?@ݠ'z狼=3v/Zpɒ?Gj?K.p"PNT <;cΕ!/eịb,Dq.Kә0 Z 9 Ə}%dY% uiJ5CwvW_旰9r 0ł[q'6E>ZE:p&ߧ< :ِ-niƖauE4͗g.#(Fr?tsj/nM@k3Ƃ90&KFevU{ZszNimM({B^~'O l22E!yNAW/QI$%;>6390VS;cOXLʉc=DzLkjQԢP؜L] qC te1@MjZ9Y2`i+.y?"@O=s]ЕO;|xRPT3zg9EVh=!ۧLL>bxO$!zNoRC9ׁŁ2l<?fKٲ')v{*tgG$Ճ;*yv8Vo&j7ԸB?U\xΧXⵚTg^yWIgj)a96uzH69&S:@󧭉 )]W8,(,nʘ&i)c0)uD}im3+b*rB/~pn(b\k oǞEaPS)% \W:כ؎=)%C|8G#y[lP^JjWKZ(@(DDOVۊ F]dZ;l2Ҟ \Oefd(WTcÅa'amx`-5䅕U)E&8$5d3kqӖm8M,c1!=:۝,oɏ ZnZx͢e6[=p媱y\ByCW56l;(yW1\atO7O:W =JFv]\:>Ϻ`km0N= 'ޱi )^0brVEFLփTZ{pǝb>FLJ0=1Z=psT7%zhNl] veY$8vG-D} ͌I!PN!}w\{;N!{ ~9\Jc]ufY0N L?9e( xc\DJAVԐKc0YpB!z1> ՂJ LeڽE#N2 ed 6AEM3G˖ v@PEƻ7gi`3SCw(ًkP<+\ ol37Mkr4vx/w偩+c)s[.uBE_tEOߖiA.}z{S#G}@_1J@p,ks+>΁8:e6(+:`T+&BÍ%=Z ЙE׿:Ø XoY QWk= q-iXc#oQmnSmj3<0G:G2kjI;TCGx Fu}b|Lr0uޝJeTCʈ[]t>(dk1f;9Rļ{s$"g(x: iE $DF|>vM:S w 74Ys)tF\{W>wJ)8?>(nN+x>j*iRs.+&ns$ #E!=Wn|""ϖ!@N~8O6 -nUcJY7ĹTYKXU'qq e(ܸ,Cz\$չ0d[HJn{M9@-4t1Al()'rR0֚#^ыp2\J]A' LÂեdD!.0튓*8Yo .%S8ƈ]"u+tAgm왆1wP;Sd0Y^ l:LG^< 8vư48SDRDEp/Yo/qq# tp**Su/Y gG $qtY2"c1c HH1nUV9w:rEv:_kI^blg-;Hd9|6ov2y#U*Òl {nG'3炊't_IqÈX@mE*7\ #Gv a9>;Ýĩ#eJ? +\$qbErW'ߵ WeOz1QCg;MNUIׯU !-6h=Lҷ_ ?vO -aתˉy LWU6s_4Q?+:H!뭃LPfh A@vjKr!`=ꋁtvvỮNAr_4!PUex`Wrց J4MrPԡ!j#+s8h0@C:Oҵc%rl'_r8 HLO^8z&ss1cDD h$pQMrL<ǡߣ=:5C6 5#DrR)u%r6O!QRp, 2s=3N9};kpiI幩._6~ԉ`zsBe( "<6O}2v߰$ ,k~*dۡ;W4ۘ1"ӞMo&='JsH͘}E"4 eλi$7%/Ӆٷ*ÊL-3skG6w-G+@ #J8xkQm3Itl֐- X+;,d!}7N0OB[EHЄD҆{u$vQYǗm ;ҿ'mՙ8 @*84j)Ը>N1e rntUޝ& S2SA#M8#(j)iWTJQ# kD&)J睶 ~ 4O($}ID9vڶdTw,o]7SҀ+M_?v9Uuꤚe_n?%|hӳ*jVh3Zw\Fbb'KÓV( 5M EbMᲛԇBή`s.RO='i/h4ֽsF"5-)C]L LS0*''ӆʳ#PC@(:Ԧ/HɹiA^'\+,ïHɧ ز޿}ҫ ;5lp.(Wnr8 #M.wS+Z4XǞ"ep5$MYEJ*d{t@ dMcMb?mnz7jN.f${}#Ұbo! Kk\#K؈y" LLI8B#Y\4TF6)r?**DfD֭_iC{LZ]R;!Sz(gz+û| { u[ /hlLvU*`YeNkD(ǖ/+ Y Hx߶F9`. 3hT<4K9a%FF/LaGܽzË8Ln$ z! ,5%2=*㧛"88LP;liEz 瀲~Q^;8pΔJr#owӽ|l17@na@ ߕ1閌9, D: Jݏ/~C94CaVfs\*[f.vhLݡLhق"j'gicNӮ%σ1f50ZuTMvk e'~a^rTf.q ! `&+Z<] IpNocVi;Nx mD/GffPXs6S?ChSum!T>Ö9aGCuM[gDP M[)<T,Uc8~'m&*$Xwuo}~qr9 I[=X|u͢AQCݞ#v7z,gVBb)s!nv,#n{ȥ9eɨM\uSpxKwuz˶:VWI SI97ذG3Y%i@T >WΫn)1AP h{^,5/7p6LqZԋWtդ: }%^Y4T98OH!9*t'I.ALͭ[d >dWsf"2 nՌݼ\zV6ЎfAjlP͜a"Ğ yg> \~*dǠ85v]#|ڟv\fH s;ri|1ahԣX>Ofk!vp=pOеߔ!w$BaTp&бP##T1xמG |gr&]ߢ?CK*3zxʹXH JS e,@7b:yI͈w,yZ@Vd?GFz 7Vb ⯔mk5`# R?h`ӟԉ=t<<qsB}5np !c[T->/f"WN_AvhqjUߛOb8zB eN!A}sq`̳zi~} 56K.wT4_2!9SqďZF>ҶP X }uTsMKu?Q/Ŀ!o!M;<['܇KF4/-t/^;ue{fLF3Z8pXS2XhCHv(\kg\6>}ش0RqHGdKseWY7&,rx>X4{b: Q:USXpze}GqK]Jۍ'춱1 4MH3-#6k&5# )$0s-i7Ȏx]b3{\RFmd!I4f^J1dK8+$+9_άO^P{4q&6 C vD[I xXRt!~H(fO7PrNA002WE4@K" |yH7sE.4*iق=GJEȈnhNzVo`ٳlex{5rsڋtD4dy< {#cf0aY0\fDQnFIL&Xc#9jbtN%T(|pǟKv ï6%qd1Yɺ\oD  JHٯ`vs #X$NU[`n՟Դ o?-an\975`֒[Dw2ַVYAK j* ڶF;N U7Ne7<$MJ##ݛY0۞?*R$Wn9j|C:=ƃ'^HvD{9E. 2Lq;+1f2{b-;'uɻ ǵ#PK~![7 0_t / Sf2g.YҥnpDw{VC|M :4 q K 5pcw9^)#̳xC>Ӹ{P_ʒ_R '{)G:,57X X(#(%p;}C { Fհ6O5إUqdfRlx__6xgB^ɕ`͛ϊF$)ʹHvZ.6*y RF;"d~V⥛bt?Q&}z"r/(q\M`޻t)}LVFw;b^}Cl Ӛ3VUӥv‹*Lk$e1Q7/dx$?qkB ac-/f3&7v.+|+ 2i)vtM #,M,fShr5ǧ @*|X=(# !nƲ5$X3mu=||J(&_r 89Mۍ *dZ^fD {>Lq[ӺDT菔ky-Q`WqRc1P~(e͆Vςdf(L s) K'۰B#x4}3B-|)ʫzeÿ!ɕϔʚV#nSx 0íۭ}I2 eS.{1QyǪC?ȇKH37bYȀ'YX{j0. 5.qx )1B4vb ]{n ԖȔgu$Gx*_lK3-lh2v,CfYdL,UYEYfzxՔdD%3\&QYbO9Q2 ,HGes5GDڎ;Ɍ,6eQd8멛2&G>p+TX3W;w7JҺRʱ;f :s 5I:G/@wS) BYᥔt%Nkr+&B'gtW C8'xiF5B]j./ka 3ַ4U#UO,l찒Я` נekZv u#Lr2Cā{Ӻ %1KܤW_'03T]c!EG0s4*ͮ cT..\qMvœCOpcUԒG, 0I)mo'0Cxe[<\4;g+ar*vG֏(C/WC`t]7ݝ\,=}PI)4x ZsrAnC[S_\J@gY0@˃B6%&/A ͺ4<88/ZUӯuiQY]ߒ0YhS{ =8żDQf-6`̙+X3Gl}Ħ=`TNq򮇬إ(`qLv~9D"<i qfW: קjْ. CcGe*oX7pma'7:-6w,4)Rٰ!Y%\hls5m ףGXys[<NX>Obj$ Ì?%5!W1پ;QjM`4n>V+s)5(*n.,O5=KmUۖz{U>nD{6$iU@{Ob|LUJJQ1ʖ{/MbJ!uoa:CEҮٽhV(}+er jdI KmerBOupWJ}ЯgqbI))jƨu2>_2bܧWcΪobejkI1VzsMȖNkUh:1yC9 DGɋM^i>P7bHQHE)S*bqK!I˾^W|oQQ&yTo]v^?I\sl"dHQ/9 JpFC,a#.1԰LTIgiAɹ<Mp K>hHd52yxk2$'&}ki?ʚt]DWRsBi69R(c0NH+~z&0pMÑEȵ&f2oO sv$Uѻ^\?N,Hh~;yU*c#T27GM$Ҙ'9Idɣ6to*_gB1Rîc\$qɖG₵4)_&)>;.I[T X V=@c[th:At"8t^̖Qザ@쒗߼SvLƊL @-YaL˙a[f|+=nI[v,$=-ECqCEpFjD]11?ZeH>b6E$DeuI6{stnhJ, Q!=E^P! Jej YU@0j]Q[<_LX:,N,F!10nUcn~X>1Yc©8BjL],/c++$ߒR}(>m&L6 d h6ΕPG]Iuÿ燐ɫhk\8& AN>~5sE F%3$FG6]d;-.=&cX-7ҫ&!`U5+kmk^xc5N{Hv<ʸB_E䷪e@+?k B fS2oQKxdBq+Ѱ̼W&yL+åMY tc/,56;.6 .U UD @WS;pK,H&~ 2$dڍ,5닃И#؜ Frq5O ylȵ罀83Z8@ =RQP ,^`1ۈ,T$薛h[200@9I2h|dy>xFYSc315Fٶ?vo]Z3x#`rb'I./vbK0-2Hm2t(?LJpI*jCn^g9IErKf:aJJYRw)_Ǥ+ia75\-L+f4؉5Z p* HA851HF8gZXCZi*UG X>"IM*-,'О:izĕvNaF H ) aNt+GXKSd\r'xg9PJk+Gƅ1,y6u`nqB>o [|`a]Y8u!*4yf 48J׊pe܂[^f hJ^/bѾo v O=eG2m| VfNHBC;&RB [č"Q̤/ijkfjޯ@Xܞpl#J4Mܐ/.-?šypaC`yBq|>&e[[%Lu`yP18xy jZ%p!>Pc%횹D|(8Ziaܭa" C_P*"{,\}tSV,:mҕ8: r"\}>o'75T&i%lO_ŷBU0 v)ڳig,=.8=[e@v[zhR]PYk 6f@/HRa&AN3x28˜a@8_ <> M fTb6ۭZǂͧӖZMf'VU0^%{Dh3i UZ#':<EI5Bϳb,n''0'Xu^/&RT=.Ǐ˗kjGy}j8:)TȫQ {VQѢ k}PuoAm}KUɺ`=a(_"v$SǪ#ndR@-pTP;װ4Ą2}Hʖ?ڋkBd6 m溷|iٹT9R5I9c 3կޥ?fݙlO+xeAbQ*saZwbe{0oGG7*I#օqo7:TnOŰεK&SOiRBs$Js ݝPZ_uIy{Y, !7<:Rsiƕ{7odv6l PKE,l) S)o~9}⬞syzaGJg=uΓ~|sDhߢͺ%EKȳډ¦"0B\=fNYYɐ 2DBk1 '/z7vz MpEWhGSyo6>QQU Ό TlUvOU+Dv./q~\z-M3v2=N& G)=9PDhnȣb {خCZJ~ě>nzN2~_rr3Y~/*a k;qD}-dJUWT!RVR} ˝ghj:dE"1iu9FXZ@ޘI6ޱ: “J,KEl^p=Ǩ Z=P)D-޳ӌI#_P?PUgS52ӯ.}oTi=`'Z[lH87YK"[e5ܔ_X jbՌ{5smI ХC NP't_ KUcnBYb23!je>2 z pӐ*D+^`|5Fj 5ܐ'* %'#樳\m^ y[g^E  ʈ&;E&p°< Obj~WFP74\_H@_d9qXu{1.{hˇuhE2Bu8K jCp/,(Iuel|痔1qkz}0dw=;Ivͪe5vdE^ϡErF!W ZQ&$i T8͉%bAPZA6s9hbZK Pw)g/4%U'm\"!Z/>ź. }̅kefVAwN=p. E0ti%L7{xלܤk̤EȒjanv`nSDw40{=PцpdkׄOsJ{a~ڕzD8"|!ר @`?ԕO7Z_^ݐ]hAO S'\@Uc\I볪J% 2޿̀O`4ʳY<˹e#:@ERb/Re@_Dz`ᶔ;cu/zN+$gnl]|V;'c.JBH#_sԚ g:Nu!eKQ΋  dj_٘U6#C _vlk?Y3\uQynkоiAɨ%f5!hΨ!P75H*}NqV Tv>Pq y& t:O9yj 8 )yvGڌIS_NҼ^xj bo|i%]/, hϮx:ʀ1mwt6 BY{y6ccjжGhq3{TG'Fw|[8$|~6,]?Y,| f4- 1 *cn{%5=@E~jlJ;f26ϙ_B]T> n;#DUIxv~`fy\;v&$Э1Oך?f->ˣzcMf+(I%i>4)&*!B>Q4イ}B/fw\,`܌֣LP_”6K۱%Em%Zx|ݲzk|VNk |I?b뗢OR)!z|9#TG&PY {,]cm=o7EU0Ƶ '] J_o8iL z"!I0ȁ%I~3tJjSqب`:Ђ%$ϠDf%L*@:Q˒{Lvf8eIvj( 7db$:ъUViMT&,kr* 8זV"м̅ Hv&8R_@H qFW~;9/ogIS#ý Q{ѥ^*we ,qa[}-("gR#i|c/+%C|`qe+yۛ7L6nl}~_h7MhB܏ V @ lP^S4 uv'n7ck\5JXI/3kf,KzԛKij௱&b`A,HSdJWK)Lg[`N`k.8}LfB™\uryx~e}ڄnI{$NwdmdЅU240H8\< K ѻ,:jd˞iZ:iI9ҧW\ys%=/eVc ։N0'4֒=Y ݵΉS`I.$8D>aTUDC.- Z,N%Pj(%Ŝi"ˏ`P;cgmg?? 0KLdZa:7*8.+`5Fe*L t3:|.}"0N7J+K}lM/ʹItT7|͐nTҾ%_ -ne3^<*{BYcp۪uG%g21h8*~1oS֐<$͘& ʼHK8-rA$n~ȿRJ6ɵz*/ բ 2H1v*6$Mk-[f1*.{bE[Me^7sP.?{9Ꮚx;ldFjON{|on?W AM3=ƽeFizv P_# ]5fWXe/&)JhЁWBCO;+?/fo7+zYn]9Yq4 $ F xsmޑ1M/yֹqs}ROI:$@""|^Zm;Rv}P%r|k^nՓ(j7C=F ȆUYO.ܢ@|L|E2FNkR; (jrRJ6V-TL:qΉֱ0 nq6,{Q|&"IWS`JF!^F' |@!<#H =Z\{"TSh>.?(t[ r=X<՟iB|+noK&4Uiۼ v܄>;#ڼɾ! W`79\/ xk'$NGƓ%kLhcH3Z;?11M/ֆ>%g#iM:Vwߖƫ`:/_s̟PH3 -2rΝ5_: z,.pI_A73zpRlQ(t)76E-;RX<ߠd_&o|fQ{M)qΛ.fcEX/Mҭ?bk8d0c}:9*^F-eQļ4cZB-̛o熉QĠeVIuߜ67Y ,'Ij!rj\(35sw'\rj N+_R%W.ɉˁj픴73~9|aktUvi@u,knWc&Z/wnkagъ)\{A3WqcJ1 !Bb+ ¡dP~QtYǺeBk]^p fd_jm5dM!S%/7zVamWl~cb]Te--ó^//u<'wֶ`+!Yis4.>x$Rqxs4'~4/Y<̊S &ߋ #/DWGf[^Lj}6쵛"cq9Y NKvqj0NflM7.tOn4XqB^'OֈEcyٓY?jŒn՝(.}ﰮY6Bc"$mIA3#i8Ԓu Z[P#${t.ϙ%̔=Fє?cSH :HMɷ 2&(L?>*ِAϥٝ?XJ޶p5WR\]Y~pjyz-֙ή7OYI/Sp AalDOW?Z GiG? .SJmwzKayg}_#: GYqY2D[~X~?KV)aiq6 1!0G_՟uM"2[pvԨɫXs=Gl>hqU`ϕꬣhO ;(s=T=>,|KMoޱ=?1u{0iŔ2oP{#9&{GoE^(a =xB ;-sYyV~;u3ΟCI} d0|QQ0ㆬ>q7 ˶f6 n:A%Y:}À{|_&κ60]պcy( hUk<(NU~R__&3?ToAp]7"N5jɎxҳÉ-`53"P9M:^`Wo&i'8&o?܅Te0UR눜X.5r.yY! \j9x lnyAe_Do8Q4Ia$k=~ q](%/IYR$-"jN^m]);uK)/3+>@HtV+O 5u]7A*9e3EJUj?7d׫4x;ع{DVv#V?y #646ۼ+ɝ눲KBoŠOq༤%AݝHhZVë_(`e$\*>&B'<zpu !Aꈝ),G #) aWeo` ̸0BXoټOM(gmPSB \=,,;E>580_cKt7cq@a ,f05EZ<{{"=yɾ ɦ&v?b7WR[Х~,z&1]m pB5k!{^z0?ym-Vwe M0&Pc^u)] ذ e@7Xx%7#ѡ:` 5X`[BM> 1K`|($y{ r2ZR!Dԧ,".URa4*+BL&xB%9\$ݢ!JTyƍ9B$tj{vUUAdJVtԈhdl@{pxWhGLf6f:!hc# k6OgH%aJDŠ }F[H}z{y?Qe}ޘզe02wKq z JvsK%_;N{ >56myB]ְ#=׋y`LPxBn8uɻA0n>6nv;\޸Gʷ34L,ݞ;${}CiISfQFJNPc2}]礌 󺌀'Z`?[fZEY^ոQN;Dnt,uBb5 A/2NCBSixÀK2ݡpㄠ?jT@%P5tRƃR-S':rMMz2/PL]R:fGI;w79*im"n%Vwr^2Z,IdfaiP^ɎLܾӅ~Ar"An 3z,ku.~D')V`ڔ+&ػPƤeu[5̭OqCq)P>X t&]ҜI'L(c  mx`e>7^GH\H*{7.W & VPy\e''`17Ԁk"Z_c.KM(j,2!Tk\# ytӲމkr7>T R []K5 3Rkjk f+0F--ѓ u{%4}(-Uw KBOgOhaQ0c5Q㸋OIgLK'T(1`!QrBlC` -VoQnkG48 O bcg~Ni3FzzvXv,9jQYrۏԖKLQi* BDj U q)w@U,ļ$h,IgM!F^S(@-? nN9b1~v\!5d`m"ӦM# 0o B9٩`VqbfW[b%.Hci\D3l"c0o~ViK\uoӻKm3l 1,rM(oA*a Nl|N ,/ykzB笠TZU$i8k8ôiIPٔ ؏p$`BE$X6)•ܒz|GwHp\b%V5h꫾I,( =7i L)AUHF|q 9p1CܜӐePfZ;s{_I?.@ׁj|sLnH-_؁QS]Mݬ9lYdϛ>M.z\'b:HUɧb$HYk)S?BVN5}1 x1h=:VJƙaNƻPsیVRsΏ͟Rb"Pg)6 ת6dP5O8 -H}J^ْkmH<|V.绿!Xn"Wd!:fФ!0>Ȭ1p  Z+2dWpڛeJYe,P˜-wd|[klƎN:v_myoK\S=߀?Njfg촁6M엍ӀPCĥYF7_*Dc/tAȐҰ>Y:}Y{r%.[ ; Y_/ҷt\A,G)V%O `%8`W pZldCUGJ̥[grCh~hTNY#>Y[~;}@o$2BT aS7F2?IV)H7J'1'qBiIbOǸqߦiroo:4t*gge@g`Q"9m;h(QbvO}vzyvWfbwnk^'K1 kO ʲ&?n"LtO1e)_{KL1cx8KN .VB]b戾Vo]!?8Ŵ=Rz0hW$NL k[Xjմhr:)=3 m2$xqŏ y~yDÎ3-4e}]H6> h. \\h0SN m֔¡9]8 "RftcY}̏ "£J~?x&Y1 oH9f eg~ :0e G9pw&t'8ƪ`kK' 鱢A"܇}<ϜʺNh1GS&L+]tZ#(˗gc_F1#R$QlFq Q^"Rm K:"~ruЖTAú'0ǯZ?͕ś&Qk&%  2z@.s> Y+T/*v>7hdzUBZn>G>䆇;+}o )s4gwB+_Rstћn\\T8~׶z|W;SqOB0{^  |ą<СdV03Ѹ"N=( e{B~dE2@ W z/n||uxUکF kIl//\c=&,C8YcڢDITj"q$]D| ۘT"=uXlJ=<Ͳx]ွ14oCA8UI֌(M knuXܙG.$RF<xM[XႹϭ)Q5qucNd oEbm.fSOz!;%TyP"6cm "py/yȏ)JuLmӠH I: {S]Qn+'Ԋ])O*8+k *%g%u0x3Rՠ#ט96{98O)2Љ\kLIu}iUedwlJ+Τ'Tl.|[k:<.')SdTikfà:,̲^BȷQ" \&2DˊQ I.#ll#Z% lm`aCqqmzިHRa€Нnwb3+JvzUHsFht(rt`[C0im_q:сRiI#L/j<1*GuJq*5+:9?k`u޺!L8N,:{NTQ" PLgD#9 %mQM7OI%C 'o6EV#^ a,`5Uy,ONQ'{_d݊X?`j0[5.#NAFSt`F/*t1u ?~itI8gcfߧCeU"%E>*VR86US?ЇǗo9"a}ؖ2\${&Sm˺-"E]}T!9=S"@{Z"]=joG#'uiXDρ`U6g ij@$ۻ&7nH:F,ϲ!{ՕLw H#pwXjeh;{#_c:H}uƺ07Diy+:5 %ɛvc8=L׸uaHY7 ca=wB]^J :<{$ݰiF0 &oJS~Z0OIͰ&UEݱ kEDPڀ2=>Ɂ{qblz}C| 3Uԃ`ķytk[bFu-ZjFvĚQGVu*Q]7\IB扖%5jCJ!gU7߮W7yv{^[cvSSAYL4 ӰB'2dϓ&Pc}|$mtl$r-NЛ{ &-솚èa("|kWp*bSYi4wy֧YnmqBbWew?>nY ܽ>$"C>Xd|64pڇ4D=*wl:9(UA CX[<زDu镚*¼5ˋ^7'#-0lN$;_/K~ c7bOl? !oC}2tu準,V:`n4!7VYpJhzkAia asK{7v|8fZH׋pG+q<ֿBk0Q,+}j5 g8Lj[Gs2Q1QhzҘkyΧ.KeWXP3zw $U/5l%l @wBPxig3=wz&y4ŦF[7 8pܡo3[ $"6olj3O18T #dT2 տxK RDT(]}悆U>!'yWnH*{tSf=nqCⶩ 9rpJvr"L/u;,;^}`3eJ>,c-w~ԋrN7erP .軡&qrq/']4ͽ;H#Є~@laΌ*I+x qv) g9ih O1՞G]V"0O޳Vd§֓xs>6h7 BN\h ZѫT,S6GU 9]=6rzd`iuS{s,+n3a, {a@!y1 Bb{C}EM]$]aMyՁɡ0twq=i&2Rs^Ƨr}A o6ƫ}{nT!-{ueE-5XLQ9fdON E,Du6W*4(ݓr{bci=w.YIl0%QuTb粠" yG7IP_`&51ٖUS8фPهG{ 1" ;n05[O Cm9{Wؕsl;s\7CфM={{14Ӷ';&.`Fl5Pދm*0&Æ{F=3B݄҅'¦7x- Ѩ@+p,bZ/ȭF lN'LqekOu46_% s=護Gsz"Q\9yCQ| |7 .g҄8unjKj"hifA o&BuX0n UWlDG98ZIX7i;kA4GQZ4b3lHW4o.Cj ϸ7 Q\f/JN~,Y F_eɊo@0Ѫ-LBgpWPq[j GjGpri((=-r?E~ڶh\r zM@isu5` ?G*[5r(6*3$` iZ=J54O.#bVzYi#لx^3$/dTŘ5(p2᷌e''⒊7rf ׻}A]tv,YYyʌȷE-W |}8˹-܃H^CcFMK:~:3vgHf6k oL30VjY cS)B sXq%ޯ=Oc"9G{=cר}3th +9N1s>\e_A7g8Rʘv kX#VPjʙ֒-ĀsN6W4QcmSRB J_SUjTY~?)< 1LBՁdYwڐXƑ0#u;[{aJ<1J-<4*f1vNT~=Mp'Pf&(?r)LzJ?ʶu c&л@jN]leGS'Jj1|JfPۨMKITYrUr^H o|yjB0)~pY;=t1PĚyJ1F^J#/m(!M,%`lAAM9YT'%JC¥1ks֡ mNYK%(KZ?_ 쯆q@~k+B cNlZhԀS7f=p)+wlռc36])ZT?(Z7ب/ؒHŕ]XVlHNPϏcߊ__976Ej+c} _ݼWULOo)7Ȅ^>S{VЃ( &u=э}&ʶRtT?СIyb>I:%{ 7SFqf/[ qm^K'$y,rk%|]r~Ө$t-!)HUaINjb~<=ţc吁У6#럑6`p0wN=mrUgys^ݜ( [ߘ8c`4.:;FT1HώY3a/L7jVgZUkWS {7W3bZW{9sʥJ65ZtoќE=ClE[ d[7-Vmj rk@QT[*ݾ&)On09um\z+*Fa|uy_K4mNkظ=˂JBѦ'չf76a"N}ʸE&w!t|F '%XaR?,Od,1[fo4߶i!U(Nb[\>vѡ6d Kmϸ['-ֿ5=,~Ϧ 77^q9 D p)"EdjP@ OWI6PD摈Md(b}#~9 vҼ}"j+2Dj_r|;;54N6x4ma3+W{o!߇aP_tY4'xnQOA{ǎPt_F&-& ϊP845 :%~퇕3E evxf!"]'΄Q)F95ٯs|YoLƗmW~]XD dyC$ M!v+0I]D)Zzx_ F ŷOqF37"2:>!_E0\CDU$qx>,VcqrPϵ y2{dAWÏ0 a|Μ>!kq01\E&Ls,*O`@6Nt`ʸMp@'&ΰe3 WtuЄ ۭ&aQIA䄑-2WaZrS44هl<hPVV#:J\3(_tUy̪r]G}8@.:BM#l=}a0X`{5P~os I^@oG)k*ؘIR0WSYf'mD!F.dNn&;3,j,#."N(-l5lʝ8Kס]0=^|،mMzBY[cܓ^=">(ΣêmAV*5O.|]#Ѝ#=N2Fz}(j dT77TtK䎆x9^p"-ޛEOL;2#/9 ٣y @j_gBQq rEi |)A ZiEπL; .'ș\F~UNz_j YM*r3:G Y6-a7/uX"Tۆ]C^UgH ÏR7A0c(^ruaW ye`%wC:nuڴRmxsZXPVFMmK5>]g͈xa!CSe8MRȝύ}FtQr-$JF~]`?ޮLYl<9Cڤ-z R=x*^î]euNp/ڳZ=SBF2棔:ڡqRV>x6&œs*蛾"a~8;y".p!N 6 }lZczZتq7%Z0KBКr`EHӣ_~Q,4Cǚ' gz[|xlvl`'W溒D5/^m"dȰu1@.\^6S3iFh2Pnc2v2y >W4 K~ L|WU0֬SF12TF%EB@@5vwJ)0W,S !+pɽfLxMOl(+8j)|D >X 詓5K,v5JMCe]oM6/,x5wۍtr<=xL/$g/IFvvrK3ϻq?Y6b;84itzSQ (m=hք@!5ԝ훾WS/= 蘑 'J' iG5dAA9D1dCLd2 =8IYG/Er*)3kO(cbUXaN@ %!/YMc{" ֗p?axcXr|Il~F28K?Qv q'9>@]}W^&1LutjeSBs Cf0LX7%Z2}30Eskh1>!ra?txiMع 7h) *C CGӴ|a&h 9 dZ,˧ &K|}MfP w,-1'YT$ane& {9x]ɬT8Gޞ}tӶ+ (Z}|YgR5Bqx/;i@LVlf;kQa 7S3} `KՋP0UvHf[LCzka=-p3,LjOWj ] k/]mx*^|/G qDO>6OŬS!HkԾh1M^kO^>F«Nj}tvZ0yO|mF(TC#q5?R]7~⧭NMgh BRZp:}W]Kjɯw('D[V:m~O iKoF;ZCdNxElZ8}#7e`@< r?%qN#5*.,M+#v1L LABA&B4Q i(rk(7m,'mq~Ӓ$@sBt{®uøjT~UXeyMZ!SR8M$F]Mb!$cl6N@[@XQi]1ma SLH$՛g1$h|ЊDŽ ,%yB=v \#JK݀!pIUr* |*#r*b8L#Q־^=מ}vK-rO=]HTN"}WsT`zK^UiLJ~竼؁5@F!geɸ4UWX*T&P sǻPS+ũoVDZsjZ71,/o` ,W1p;L PG1ight~ ?R*P_anK;]fe…p^#fw>%#SU -䆯33IY+AOc'W1t󒔊vßV1 :tz rFGY }bYרqCo!"Q!C̶SȖ 6g7,37}A3* =I%.0e{@y2rFu4WPYbi 8@38YlPR< ~/lH#i&XLB4yd 29ĽckN*b9M ]Y^wy<Qpfb[kkvkoapk+W4V(dRQ64R5wVjx(MPG]ڌ1 Ƨ9zr1pgL4nZ{H<>nлU;šY +֒NόK_%L 땜Djgt"=A8R5-}E)<}@z7\P{Srk]6 y3.I@bЭMLb$/4Nt_nϴ o mkhŸ6cEdeB,h8<谞my)jcV d}PYQƔ^XuX#}lg+PBy.ݬv4KoRԂw}sRc72*/oҬjD!y= Xz(;/rnUv%cC{/Ҋ?o 4pdšT9hMc2tGxfm{lŽD^4ʒWBtʖ4^Tq:{;1UaqD~o*G*:{'L$L`~ #8>}y&cs$X 5|#(x&|mlz$A&;Ƚ q]zj3Ly(Bqj9 (M M8;Y§i ;sԵ24uw{ǐ2VmePۭ]Z"lD~0"_qL( GX\ cC#t>|x<㔡+UNAk.4'ke/cP |XHU>b<3큽Rt=N7ᛷmiFi_/ՔVC.E}tQe< ̜̺koQf@\Sz@,UXٙgK[gh)JA[VQc Q )Ɍ똛Z]!rUfDh) K?R._$ ^[ G e,|HJ JoRx:Rހ۳ $:oU\[p\7DԅLɣh~%Oձ]Pr7@Pؠ(^xo6kV4{4 ,|ٓ|$%KvGib0nZGW@Rc$$.p_9H;-դ~8*\%zrn]{-95r^rFyܝU1 d†*lϱaA/G3Ҝ J0{U@TN[֑526F.̃ H?P'' R{%Zyc+脩aAHi Ȩ3yL >X~maCǀU$E0xY :.ek ][U^\UzJ ͪKteT's' U UNW 5.ӓhv&yR,sfh>C6%N16Z,ŐK___`#nd%oIodisPO;Ӥ_)ݵ|f^4ojZpJs6`'CR}&og1EDFVb}{<0~O%' U6K̓tjDNTo}"m7Qt$ʇs'LxdŒm".lUԉȒ)zJ@A\!&AL)v@zѹITg V,D~ ZhmuÚj='КȂ/bA̍|vPL%sL#0~ޯzNuvj' M*t`sos_(DIVy_@`~vfۧTs>C3Y铤w!bȄ. +q5U/v2n("&Ab݈dy^u)i hAޥh55UZ }5v!ɱՈ{ާȏ̠_PmMN<5 , VݟD{=beB.&&k@wQ#sxtXF!pdcE+&h2R^ M+,iHQgfy33JJ$z3h?wޮSW@x=lwB^rcj'^Q=ii7{IWv'H+("LceA!Q|apd;p,n c- QekAñiHq ѫjq f[|WNt;x9+d_Ͽ퇙ݫ+5I(b͎]t҃X0Vo Kb¶l нB/l^ k=90d[&R1Y8 l3H&I\=e^]dZ}nC 3Be |a9uraİxt1O[y'|:BH B?Y<%7 ;T~2g ߰Fx~$y4y`Hf+U'mg)9q. t@\ü]ꞮAFwL3D%7+qNr5,DSKrAܲ(gq4Ќ4YqR qz}۵uz,Ħ!q=0Z8@y>mh<3 5) `%i:Z,\!ǝv)NwQNԔ>i/n5 Ύ hW>Ѭ vB$K?+T_W +?ŲڂCq_q)9QJfX!*/D_w8;"8aʐg%7 {5#{3US~"^Qay,`^',gx{į9jpw7&XXe9Tco@(H! xyGzn\9d&S(ꪜp>)W J6*c@J [] ߍd/i9h\+)|PJv<8_Q8臣/3܌YqLtiqY3!cM?_˞}<1Uu׊ 9 ?&N X DARÆ6eƄFZc)?ou k?"QDODcG{sEgyJ]VR];NXl䜟˜Hn8zD4@k((-&,qUI@ұk9]v}Ɠ쟫opU6P nRР$sG.e$h\C^>Ns2>ցn:սo,iPx~>[іjv<.iYR^) HI @jPjit!}g' =yHg>Ih`C2Gc YCG.i:Q<^ Dc/*HgkP ŰB2i(oEUVcAo_sik .) m k]Uj?#`ћ%! a7daŒ9͓U3˼wq̋-y2˭^P*0ŠfHX哫 S޶K@uG@6^luBQ/=P"/dʎ&X -4T xH;dRM G3 ߌY `k>BD?ʁu˄Ֆ)5Qj c4lR0* ˝dzVP|d Fn4Q64Su6~d{*rq6 Qn0:Gw 8>1u$ M](^Ѐ%K@`Rt9+J0"i*yg6X^Rz)+ʃŰ;&X^^ցM^6k#'@'T_ixq#*}ޯ|ON93ag* b7y,a{:`&{]zίW$s[L,~?)-.c}&+M2ef'nao9 ( Y6xV ٘}B`٠l}:U% P%+[$/Q\:!Ze(C׃\4I ]lIp_7Wp+2W';S m`|+k+s[ɴMEנB߬3xɶ?8r6?!$K^QZ㧨*Ԏ~uӼXKڃu]ue;E< *!j\7}%8M@1N+=in uRiˌ4?E|z!H.2}W%L'D!0Iɺw)$C끑hS[[=J"/ 'Rm%Pq1_S-qC>.9 sω_ 4*lau^a>d/8Y4;RA%k rꛨ i楌 X$PD&iX5⪭8qT EObپטQဟy}~R&gm_cO L[4.m &?_؂M7IqzF.Grlr-$viڏpܥН;v(tbeV,|X-ĐnkMp7֩DvXy dUb3Wx61>+~}}e\a̋/gg{q񏘆`hjŧJ'Rh@&w?ǚr9Xi$γb /~3z$r@4ME, z:6#3u~alq5BB$*ؼ9g^pF3tt]9Xɱeަq0F0#}+_ʼdMCi1w(`2S]o5(h) &"Ћkf9eKqbgK R&\"7BP`Ϧ * b1*H"2Fa5,b-0secouR-lJع>jV&*˖xT+L~P:s 2mp?*J :yg 5pe @ia/8-;~#"d'z ZWt=bhF'2Gv=Xth!fE NwJ?|C)p')5 afYcdW.iCzUgwnmkFMr.iUMP&k'"^ kJHf)S: Hd(陫( R; ŶY;@:l囫¦@xja[@&(W~RJ!+T r,dڲbw]h=)+f-h1" xM ,@$2èEOX]M-_ % ;RRYM]!|9JOLz.XV9{Tԣ>59ġjvss~v]s yAبҼ 4ub|g8i`u (a҆8/p(ߕ=olsRGdpoRe",V5?[LK ]6aӘgּ\/~ˑzԪZঊ0Ş?wk  >~Rl6ӊr{4)(x^,n*pq(axhifmh6l$eL؏($&/!,|v/̲.q~YiZV*oUM'k`mvnd}sdVu!<$lTe}I4 z}xyr"j›oM!&"k } 3k@1zm~^:(Eu8yo% E#2Ji6JMOtн3F+0C˶;V} Y2o!~{A10d^N苤T OnRi*˔fϳ[]&,Tx ǽp7 j6Kqw"ƚ^vE1@v.lT|-ӆ^%cqW^QqzE+$XYfRtU7ϪܱYkȀs!;oܭUF Q?œT ӡ> 0o?bOjΦ޾HdEEwS Y%7Gp6s ,_MZhwU\LJp⌷:EiH/J LRcݜ@pF K7:~ 4r96hAMcHLI;T }^_ +kRfxՒP9kMɛY64Nsd\P@zxĀ7ۻ172nW\/ JF"{4>lH*TՁgs|1t BWh*,o`걚,V](⽌^ÞJ@Bd/ A,Y:5Il^rPï X!> |onItW:0٨,BIS8Zc/qS ^@+l.5Rt L͌PDn) 糝yC ]3Le6SUZCM+z Ɉ..,3ĸk"?햬SZR[A#_}Fu2TB@؍6wҡ8cU,Vu.=D\ȩ`0mUG W%_xS^8;;;)E.~ cQ߉s"V~3)pU`hY8IrR`Fҭ-ޜ:L V3a6~7葈;D c Z>9nn/?%.ϘRwjB^(w|b CkyWlhlzeT|x(lUƉݨ{3i%c. CLa_Né4o3B2k`Lc^4A8M@p^_?2ٱg-.E€VcW7yG7YR)z@gX昃.B  :qۗt;*N8\xDnxc۠8u+!e+(a_$yBK.[J $f^@5@PLNFŇ1R@av`R305tAJ+D=& *9#A&a[ȼX<{u5DK)!]ȫ6,@s~+7s8yTEAL^N 'Isb!q5ǶUI0 +ޜ`VઁSz=\1mXBLcqo2G4knu=P‰%Ǔ⤃;ٜ[PQ76)W#$-ųõ=<'S?@Ed][I0azʁjwt+I',Eq52Yk7+$ &6 U]Z[s6n YG_D=)sٷIvD1Ib5nl˝md#+78J8ޡBIw2(ݥv Hx H33 /L$Z>jFנeb%Bϐ>,~} d{5mZ?Yo4TqAB݆X'j'F)OUuC,,&SlH{Y歷Qxc-V')B)(ދՊb[[hGE\nۥttÒRZ>w--[.ėavHW*o'M}Ni*0'MM-7Mg-ed IW] kMVN.b3d c %"o-lӼCCY%誹_~F7i39 Y_ ^Cu? ymSG* [+!ӿ"C#"lf~5ą"-˜4LhDtlt8uZyY0ˌ|Buns4Rfu pXAhW=PV+BG.=cGϞi\R\iQϬ$+f0d3lGE4͚YܑKHܽVf16u-%6[U4Od}IilQe!Yp  }C0\:0_򵒆YzNnC_]_k0mdNJeNfZmQF^=dFDA/T/gFtRғ/]9*S?Q3V-`r|÷5qTkZk0¤5_]1/c~322>S")F+9gU: Ś0[mu*hXcd@?295hcndFj63s8[B c$jxHnԜ)ĞsJE̢F|q:yc5BF=bIߣÓm{M%tBK"3#|Tž.$K AxK0.U@#tʷ>!Dtptv(׺6!Os,4۔6yϘن}w=d8hM_R L-]a'_:cA}fZe&p[&n]AQ7Fm\Z;] L0ÉdөeT1 ~EKbGIu{J F.kP qXMIlF˯>5ȘD^gvN=/TZ k,Hp"q#*x)@2D (m *{fQ9VK.PgN\,>7bHVsk0n#:F2v^OF^liAV=O-1tIӏIw`8ۢ_xWTNE{-I&aM&c鿿;9AA~˲@["1> oh,r=yM +ySIqH99 *b*tc:dasd7llQ^ZgPSa^"^Lي3B{if3Q__$}"`Ltb̂4ʀk햊˷UĂk CJT{Cs|>?VKC*MD|[|>-a~C}I/3BYpq>?}H'-gOM}۝d'H܆TjS|ٱiv{jPН]!Y*u7KgdNpPwXԁZ'm:jq;#$Y>Q]'S [}vwM&lhH]Db<7W,OOv ؍A{$1tel`sୢL*F,EI5jU[E+h>VrrD%f*e+" 9?1L| d2M|`vƀXx$w0/b8D  6 2 0/jmМ4ɻO86z8sRCqW-Qњ;CדQ'j' ޷ @ (rlPыVwh2 ߢ_Hp'keRbb*]8nYr5,,J1nIhXQ(_GY9zܿ29(?{Α<`fHk`r|x]L(*KLbŶތ3`e:c r:q_t@8ߗuBt;`JE:ņ^(4?emKϊ~*Hw`-r~0{!oV}t\8Yd`M޴gFK$^3af1`νz+???z";gs/f%yC1T۳w!Qj7fo ޿Yuѿ`y_uĥg$~G"0{m+OrM"BnPαaHyS_i;kIKH5yjOrgX s;dtw.qߥ;"Ƥ`\|3!`"zemo}䳵y9nGkIGJ&{\ϋSy9e"0/g3h9.~Hny[RJFmlˤt%xakݳ͵K~Rc #roM~P 5l7w7=L_Ye>x`E&Ed$ֱsW?nڋo̦-|Kʌq  >R(MsNWNZxG<_/=UhݒLWvͫz!|<[0/E߻XM\T| YZ^@Ϟ ƹ&KMBF *@Pn`q9}`TD>O[ zwI0aM0Mo@4F&1\LxFO=l$fi5/\<>o83kS hW7g9tHDs y2Vj[=+QԾٻr9z 45Dg*cxD%ZIFMKh4TKD~@ xN iDSYvIS=vw'(RI} ))b Bdd+T/8eHhOuU fbe^-$ !. 85~# !E?nM7qAK( *O +?nP\ν=߶YЈ27y [y$n 3,iZkTrCR5;B2P.z1g4M7Ms!jvE<xrrp !4DDz@Tx}e~,HH\ eqF>ҽ][+316 2mn JuM}{RmݒHIثJ7\PD-"8Pv<6c>"05=/A4ɜ3p)20P߻,-CTa٧0 KZK },͎3߆e~.q۸!gO0>H_R"&[=!A7Z %i%" %Ɨ[=51,IP!"],#^YDe N;)=Ryqu0pi,OuBf~]: 9a4ogz=\_.fO"v:{IgLzkDV?rLu٫ys!ZEhdž㺆c2ׅ.ȫjX*vC M M-s E&MCLjqYnRp*>U\Ymr )LYZS/Zm8fѶb"$dq}ʕi ?;Lޞ 7er, EuU?+r'[j>1s0ن;bSh~Kř .F9'l^͛`i+3/=Yi M.y҇>M )@eSE<3uW/߶JS`o>4< BKE`$imz|zr8{GC zojSВ|Q l&,hbu%4@Nn-N, qa4Ƽ]Y\tUrmBYnXsU-4XA+[Ud4V|5loG*( Gq0vzH6-0r`Ps6\9J|}y-hY sctXb}Ͱskhj3a(0?ygv3r@hwWހ:yX- Y2Ə01x/z^UWqAo1& 0XCD'_ qSeOXj5 :C0`H]F^`>Mt' 4$o*;]4z͒0 mZvɹc  w0_}5OpfpIt-jϾ$f^sLt=ODYG4;|ߎ6'rdV< t Zf[Y[KѤJˎP-K_/k+79>s(k !蕆ɕ|Lv2 ")=lNP ?vj[]qKe*>Z vFq]x{ 'reR B8]Yl.ܳȚeR+hP?1|[(z6k^šE[""8V:w #͜Ak9YM"Jx).y\ޓŭ7me"Kj-K{ۥeȕq%197"#]f D;XW^ 5ʟ[rNmQ&Ps3ҀsS-tYfR:ћd@{2 ^貔y|&y3+a`FL6>ͫ sqa@徝z/|dE WYeK/\*B_cV@'TqA<:n 6?Ti`ƬTI$K>kZ0=|-g;8uؠ s, ;UyNUvQZ~gg;-;)>5⬛igbzNFk"A r* srw)t.c3o >fTAVֳDyT饕=r][g&Q*!#K,WuOk* /tv-{kȃgC_8-@ѿp 3%˳qbyY J 6LU WQ$%/=bEɉ{*PAh#7QY˜`S_S;G_g X 禜d"3eK<(˞X>O n@VmK5In;\ = DFٱMF] Tf۟цnAwOq^&G]'"{MKՑn@ a4Yt)>Ao4f'@Z2Q EUǧU{i`]kz è.`.- 2hRGR], UԺ ׋jIdQf7^62͟g6lqEmVj`Ca$,V?oRٖ"S=5#&zG켶ʉ?=o7aIG틋rdT7-={qcRXg5+F51|=D*˛gcfDMJƖPo^G7ނ3^w=DY//*p?FFОڽBwR#uL##k_V- |ԭ@J̌g ;a.`ɿ&٩ʽHaEqK\V ;+[_'9{]c4u4ڒд~%]SY{Fo&~29FYPhoa#PXX/iG9k|SR\B7Rt薢£y7&QI(cAm#3v%>^H+Lmt$z6v {nIl,(sB#֓xeWwB&(]PY-]I$դD;lPYD}9iI5B~#ӨO*0qnlRl ]25xѹL:v{*F vԡ5B >zy*Ps>J&#d~_4$x2pst<}ppgJDSC|s:TRk  &4o'f͡vBğܸe`p^<## QD(OIN]- se^4Uvc9[R/tV剽e;Nh,Kıt}gy]͑^BCAU\ܦdD8m1U '2uvyZzd\cwP;hd8A}@ƤR떬Y}=&ͥ;NI1LT}ϒs’2!a( eDpCzXOxfcG2KRzj σmU'2*6)ESZC ?BJ onELԇPՎvs|A!Q y)L unV:2B;!;۞w2qW2Bvɬh@ZN pUN?^ 'gݥHQĔ_AM7] q>mn,]ېT6Ώ۞M2"Aeґ<;~Q/S#܄?`v7|_B>Ypbt\0ΰTAݹ.J[  \ "0yyKT2P(|څ[P{AP2ڶ,VJhr~1[—42A`ݾt92OEKM܂KTno1C-L+vMC;%뫺+BvI6_!&KUr AVYO27;12B%DU@W`dUmi(څCM~4=u 3sܤ [z=|te:wmoDs,F-4,exfRwN_WV-ߪx`'maŋ_ 9ךOs"iBJ*wulcl(/o,GPbYFTOƉQ{mZ5rϏ /Ryp.!&KJfBH ^^ |Q<,ZFFiiW;(os¬嵻VZ1ݴd76U|>q%W3 }C7PQa[ U,:>cT scHU|A&ooDnѶؙyA%_`plZ-{Zhn(D O!FȐw}ɨc]3H߼**o喇AǍ\r< %kD K=0D_ K6Ɓi`<_qrv*aU}QbUNx v|:|hxyڞLsY:[h‡d\D#&&dS@JK Lz1a:}ra9O)nXSH逋 ;Z!y$a71f'eǞ_uP~ U?X蔅c+kMܝ/#1tS;|Oz!Uψ ȼZ<wKw.lGG0F&\Q;>0@ǎ4ii|9CI[|YS^#9VѺ gɟn#YƑ5ׄ4ѭq b{3>?-ki*[Q_\ 㐨$t2 x(#A3ZjUadt9vڰ cWST$rf<qJ~'4f=Ԭ$^*,lJ8 aCp_(hCzvts8+Mg9-ulK|܇WF!YW.VrWBN߶V5eiz C@TyGX F eoX5)xA =E4fB- `fӴ~- 3( '\RPCCycjRu,_&n vwuBVBT5wQb9cB.E@_ O'JQfYr4747 D9qNfh妼Xi E ;4u1Q&ϝ2~ ,D6ьҥRf*U-Ԁ6K A]3c8>hj:-3_=Q;0 ژߜH"*wr& 6M"k=%B Yqt"D[-@[zweoW1RrDb,Kn'Uo9][E9|.nN{$uj ;р_ɭ95kr ՖG_;)Lؒ}BnPk~mT?іItAQے leV1덧0 nyBfeD]Ҋ焂'2QýcDbȍ[. sm?!x<,+iWC/{tEwu W- ^17U Rv=IQ%z 0 S":fMÑ:5֩shl6YK.9zskULY/_##|x¦ƶ,ϔbqnD+RΊL;=4dG p5ĀU׃ܾ[a6r;cPL-} FqZHc4r6QpN@'ޟ/;0ћ߃0 A%1e. VSs |{Z'R\CmcOzQ\b*݃ޞss8|/4A˪)5:_C3-Н|}E6>yA{&JJR]a[* q0{_,C4ǁUȗ|b`}fhe"bsAH4dUjH\V O3Z :h.Otʓ"?t{PrO+iz)2,nT , _}YK59rx辄I #.u8 ˆ;z*rM4Y"-sHESf_Q6p"^f_ڬ[ ?!fvdϢul.W*t5)9ƃY  S^T2`" 1sZOi/;snYd!jtJa*J̼. a;_qMPw4 F^-H8Lyژ+Nئh'nՑ\2z} ?cnݸ>_2hSrQ(=xt|(=3U dNB"kiwtihܾ/s"^mO2%_]3&p+SwI/r€DHyAvAK1eH| >nF65Os)vCE V}_ٞaMx39Rj9;L.edeUt7b) 4FH#ӛ(m%?\;RP lĀ͗`5b# q|blH~B|7%Mv>.r2~7.c^!c8Mi -i_ja1OUˣKl*&o†yn;$c υRAL04븳wo/#%FS[NlՕT`3Z#XdNy[L ɴ;vuB5-򊶁Sc*6dWbi<ß{gUy0q E𽬒He}͓c4$J®8};Pp'W>'Ыi~!,H-Pں)<"/;Q i0ɣ՟R7&IIWlʤO&:gc<} VNSܵzo1OJ@o~aKlg\ګz7tӨЦ=46t}V3 ܏U(_)4/L ]DqzN U7b#&gOg%{_zIyB0X!Mmd6,sa(l_6̷UI*FL(^5\5w2~F-Ck!gP98  'AVw3" lYYm98|Ry:!"Oax$1CR_ 2 a`be3Br$b/'&ǡ5͛<mc:՘):&jMM;PnȡzOcs%)@5O=3%TpR3Nj4p&+{,\o%(ľ=/p̃qx!}aR,S$+p5U4 65M{uֿpB#K0%<=ؓ?^C1;M_`k^N)3F=cꁂFISב U6*}b%F 3Zv}k̍3;jUrsl8jލ=)g8Vm@Os@{N,IԺ7Gto^bTԘ`eMmȧd@hZ+‘0s@z~`YolDODS[sCldyvumHd7 ڈ2כoT W8@Nh2kpLL&JwahyږUs&񥖒Hbqɉ$+L="bHBvf޲)ܫ(GP3OiA9~chmGm$:9pf_&؅/ `6MՁVv沵qVKbV(1 .MMQ;L %x40j_񬴛)wo4A 蚯q{NI>},Y)jf4913{I$īq5aYrP4{^ 9 .FXcvNcrvFI2yXʩL!r@[j naqsYhdl};#+`H_jyzzDҼDzdA)O"}<ݏiOLk^Mf1G'`߳,k׹K@ z=q%%gaÏ"{y3*eW@tO'5=,QpΧmrMHPיJPS.wnWit꺫qf0sLu,#q2 =F&SzQ?i!!J6M\cbVR2)HT9aUOn*Dm^zPݍe]NjjhBWPxʐU#:(jmkOK<š`虡Tuf >-K?d5Q|y^q>fÚ0~s&s}^1͂mcspпScq;\Cq4OWy͇?@RO.F8A{.ЙD *s>P m?oqh[8yCp3Q\C\z)`~~Gl; f+cYz̻Poj˝{MlBN#c\c56gb# &Rv+"qEBu~t q)&: ACj͐G (Y3_)&2p"%zP1p7(xM:wOM\9ߣoIܯ})>>|-q!爑p؁syaי@*% >0D(.Ư8W)^ܖ/qrL% Tf]qof #u]tt\Kk^vq(Ұg,Tq+\!ɯK-K5hT},*"hYB3FV8:r0변]RoD82_q>7܁Exs;3hqmPُbqq=j-OhNQR*d|'P)mSA]ʗ# ?2)}@Nr18d3x TU1)6ڒSkZo* 5cQވZTMS)XgitzF4%BT8‘Ƒ~rE>v|gejL 0uuu݃ RIiL,"Qq(euo*Dw/ loοZwq-m"]iVM4+' 즥PF3 SEf[89MJ$栃Az^Mstqij&Q1}kzF~0Y/_Üw+}aaSjaǴߑڶ Cǡ=Ĭ6K 'Mc;7$~8Y_uF 3.qQ.0ozȹyN@&ajj$u1&n@Ǯ@FuDrt,Ϙ·Z ?b0R}!厉7Cv9옓!Ǭsg O,_sj*ݰ3$Z.Q́]osڃB.2rϋ PrdQ2&'*0eMOR{t؄p+Dʸ//cw]s1 ނ$Fb Xƅ?YԉX߄Ru7 M9W֒nSF{"dv6i xbjֶG+䪄ip_X-:#mS聣$tgٯ0 ~QHQ]|?O g=56HdP8(Z%VsQJX45!T23ΡW:l:?(bԷՁaѕa6Q?(i G d xJJ6UtAʺ Puې0)gi8O@ƸjlolLP&"w0ȁċImy+LVM hBq6`򭫊A4]4VKYl}lB* ӣ*+Z=yd<>j6p$N3oz|`Es{rҤ3*fKjWTb\1d Tn#;w3W ̌Ì@@&ҡ 7 2&yxl"'!@B&h@3D@{39@OcmK 7e̞I]%>?\Ta,wxzɈ;cg':2S7$:0@=(M/J (1,+db4U%nepE 쉮Bm^dö(:1Vi$i>3*њAf:A"gqX)a;\_J6jlID4O_^ؼJBa/!Bfkp@7T~FO$_58cXKbѯ`q`<'*trQQKݧМ;3/NLv=Vou2u0x'} '6wejx1tK\_ >|qZ ,H2, <[ŵ }#lHbxF[x\?Y?ܢ쀆v]R[QP1[z*"IO$=!-p>˿q*M͖uDZr௓ }3_ٮJb b..S$ s ׂ?9JjZɊ^N(Kj,*Gsln~)om*̴R53RpҔhOℹ7)4O߶*\?$]Yeh̙Ps|f*< 9GC;SVqHҸ2N5GLMEL BՊl$T͠+ AAkƁ>Pk2!]$gE'/hf 'ܥܝN>cԥ ͓M5^^T+=)5{Bup:4ZO&pqx@E1)D{8SڰCUw*׻e05)5xP)\3FӬ;(PO IP1z mXw :zëșl7mߥId5v1+C4d.v:`,L~ݜ^{; A]$[\Ъ$u19wyctLpʭ;-y5JnӜ9댔@D3 h>G1ey/|4cXn~VQl3.'zkxErLØ>7O۪Ęja-ccusX`(#i ̛{YBylcì0Tl1h\ˉ I&w2.Bе o+9>R:6{//(@jAtUMǂRo3qZͣ M{`f{p>X 6PXCmM+ v<)K~ }#IHbcۉOJ8ېm._3k|y%^;]Wʎ] Vr t%K9XWR[j;xJc#Rf\_-I蓁b|>pwoIj峄<'o+[»s`3q5kK4 %9M\||ոG]VZ>Qk&>Ȳ\\* 15`hjedzл0ǃc+یr#6x04Dj Fe&?GI,甅PQ>LX3QtOEm/s |eI4<*>mkQXLv'XтIPݖI#صƵtd^*G+c̔c/]( BWn!ap9YQS8{gZԞjt M^ V?ƮSuXC;9kwVγfe'@hEиh jTi՚R˟* U 690BȿYi[rWK=*P?_?c:Y؂L& ·@a|E+{}KrIi,7m8R k3? |K|c֌3|}zlY8+^ 'b4vʹ-lPS/n66gR_dNSy,~pռ BY/څr)l"DWPfVx!Ý  !2޼bQ+Uӹ Vc}ʫ,vt-nq?D~U>wܻ qfa]M3 j>u6, IX <ђN|dIwNtCn|^L!ctdg`k!׵aZGp3Qg\Dt܎3!j bik3u'V3>O TWњDҔp7o#DD[{ c뛏'{h= '=YuIi<kN],/W/A(]D%{fR 4cj7{>Nou+*˲k}t1$lE:}"DHs~:qy}{[A w^-wh3"T-{j]fDM%K=a8nqj+Sab u9B݀Ϳ@L-=RP# d.+qd4 3< U޴=9p_E*M'7Cjj[71mቮzhgv3QFv mzk>!pEg0HĦ#1Pydg.,ċ6i:*B,'x( )iaEʣYQ, lUurν@#fwkXqmc"?c͎ndMCLo i:BV0D⮥ G$ā(CIQ20&?($"Z A8 SjE'VLM =vyYF9:+/(|7/D.=*$mGH{MxLqCÔPG^OCc8J0I`G[AA)Q~if鯬27`)愐UE3 [ ѝ:INB2B#` u9d5TlM/Yf'Zu[J|rTvu~&D#_&i NߘR1n%ŕ0_7Ku%(RIhORK*# 7TֽXT닁Sj>HRc>QRvl7756X@]1N6ܖ 5*>07rNz+". ;(_`yUoL<%79 ODĪ/tHd 8I8RrY v]u`J 1"-ꪔP[stQk;8!]{]]Z9dRa@{Ċk*Tܑg6Q;NL!잽hqLpTw0f7wu-@BYeqʊ9񍌙kUeJ &eRѪ0QmDQ;A_<<4 3Kj/@fhkYA i 5vzR1YwעXZm gD4 yIr'pgCP{3()S!Jivؘzs!H[~ VyNN.cqR~I ;UNȸg- GFU׎kSEtS0[[\ϩՅB\Bۃ>6?p5Y}CS2I6tSZ;#S-(O5Lwg*aY VNPM H? E{F` 'jz}k|="LMc:Mk+v);:ʪA,AIA (bf$uFr{a|.g`k~~>5&f][QNb+%] =X]ta5mH6\h|s@T _]Q=`bXnSdC"1BXo|]Ѡ8ClPKƀs?<3ȶ<+JDmVXzHv=_Ć& m8xrXGanAe;@ *b<f1/qޒ!޲syJ* I =oArd LD١3bTe] L1j8=x5D{PS!V VW~QT(C⁴\+ ]eG I,)&uCanN/| hdt'O4A=#>TZL UΓQ_ԕ" /L8Somv$ NsX}AO:6{j4)Wh5}3 UoYt;#n<CGh8:(ػF⬺ 9AVCt[{ u 8q$g$ᶸ-[橷|heA۪>:._K1Ȼwf)hLtQ_9dx|UfK+(+vMna5W* MlOt*j4.]4ǨTC,G:vgRnjRlMn_ ZC3Ni)y[lȴ]Q@弫 2&1\}˙~ෞ2YW# _~3n8dT\cTDdJ4 KfĮ0Rd(+_a;kK)Zz:t&B.d'10/fC_!G`%:Ң/t "3ui.&sEhwYZߔ=~ %۬ vذS@gib3tSUL)=*3,$yf/wHvΆ"K[+xm{ksyQ'N $"_c/ k ‘B DbO@na ']n0`rދC QYx4])*\WHU:6 ( nb: ȼ>z*A:-ɣU6J+ ܫUԄr%_ֽ)"XW~ӢVBuz jan4Y3<7)m3E6yodH#\dj#9]Ds;FF0 F#NN0bpֈt)fBt;'Xҹ)RߔLTv&6G$6Ԍ@m\jt`2K</I2AХP O1q@/|'jSnתdt;?TV3 mX5b;(zb3ۭF7fV$14IS#yި]n7'TK(ж_QQN(pӬ%r|;B .qVC]N: ' 9 {dgw~0'\piX :.RWf5J~? ZfG2P;}GȨU:g[[ȅ;hDS#Mc$M)e- 2S]r5El2GKV{yDHzk90s:;) uJZx9U0Co0(;gvh)&s813KB[#@E3ިdv|S}!ۣEFG8S۴a4%=YnvlEpiqɞ$dILLώ|a~.R9U(:<9*.Y ZaR  ,5FOe^Z7d&ܿ{!MO v:h f-TP#ktLH> ׮U|v|> 2ܷ'tXRZ"%4u%0fi#'Bo\/rIFgS_m""^ `~/@㲹3Er7>,~[]w*K.gG-0R UtLIŢUg8Hoe(C)W>Q0t}ۺOS-?p9xh/4%bG]@΁qFwZMtH7 ȰEc3T3΁>"PC\oRǢPsObτ.ar%;62H&݊8ݣ|+Z݉/JnJ,Aڡs+}1} /2]*OWEExC`uBC aj{ N9R-Eh~ E{-͢h(\y/: 1M `n҇x#]k(Qj1Nm 6̯OKIAqh |f0'm0oENO蘵ӳDMشK \\\S|&̏B߸TGoǣ &(<,?G:@3#ۄh}lb`CVP5ƓGR3qy6/6&C <?DAv3$|0ZLK>xz@~*%P+(URWr'S>]_4fBg(oMC=wڵV,K-DeQpr1cJsB^_"ͅ0>>hfRWwV,ݱ7b\qs ? zB\-{"]2{;'F69>ޛSbqQ-DjVFlV|ޢM4sռ%xr¬U`j9'wQ?FP\!0 n oyl,)~oʮV.ٞ]CߋzeN4kWGܥ`D&@ 2h[=7.@/_ЀRt/@L(͏=c4i_2ĜȔ^źHBx%~勅EDQ%r[1%܅7GHLUYJ;IeŅ']!5:Q8(WgR=:.pBk[,G5x 'ŧ51CY~\f  Lf*Ed%=}1écK 9g<$eC':D挵 XPr]I<.J~'"Ožfp~8_%OcE-{B%H]UYTT YBCkT2b Y= ;nf$Ox {ɝձ"Lf#J*r%^cw>"fM(-Fm=da x7~/mt1] wdzKaE,"Ki~!>pMYpxEG.FJQ`( @9)O{00ʙLX1r?K5~,6\.hB 1X^-G] ԱF/ [цOaLIҘ =W@I>Y*k] #e{xrNMֿKF?A&M͆T^%^9]+a]"^Ȕ0ЁuZHe=/b>Ш駄xe5/"VIloV[^XEҧhYy߼,Pj7+]يNAd8ndmV&g'ڎ/ݶ&$;ȰfZ=/v+!CN<..e=%8rlC.ic?EsRiO74h1K`UЭt](]׷rmjǮզ>1&Q ԎOW\c&5-Wk!'մ:HŚ-*y|v7tNim'2w_a~}9$`Nda%^t!+pbu/D3i &JAPWI^;J] Yp]#8K}ʛr>^bG2 &Hn (e鄞 q5{N~w`V0p9 2n,V!?hYbC+oN *޾A˞"{Iܨ <8{/ɵE#L&@Vm 7R{&ZI鷡m"&3]ːZ{uc6eJ-Y^4ȱ.~utV`qܑXcKGU¸r>!GU 71|h}ZX\,`⾴cE94Z -Vp̛R[I3&^\%%{T$\f؂moO'\`Hƻ{~OK=8;8eXK%`{UZ`6Fs mvgLH6d>îֵhx?cy>]$~\/ ^?U_-9q =;:.i"QP|iK Wek> y(&cF0){8<Bm6q$7N`XA&6@@XO r@@]$u$PY|Zv\j ?q^fo%T f 76_BOP E<_~J}uE(Gzp#U `v@+ ,"o?SNp1Nϴ9b:`#y[)"k*otVh lFi8j|TH_+?Z{ clD?hQ-$ӉΝcQm#~EEG_T(G?" v<0N0Wm"X)2@fΡ.βx}ߕ0SeryDwvR:Rdq$''ewMdi8ո$%9;Ct _ג%|YPgI"距0{׽]U4uuFsRWcmrܝaE7 .h)Ajmis>h&1dǺ6]8C,lƔ;.$ ƛ8~xGSm33{:ÿkDW wD漳K \1 zXRZ6 <[J-RuҠV׬KN ogv7MjӬ]H14YRAg 5ɎTJ1N*??

hS|-{iUVdC2Y\EdwPKJT }Eo0Gʥ TJL%Lf"]YyASψv0\zxA!O,w]רo7c39!,p)8'g ߄(tP)QtW;+#!ed"HNx"4SJ:U.|>M(6v9'95L>=f0ŲRѲKa?@D|L6r/ eMoZWĄڙC 8vTEzpjSЎMR\o&c1:W葒u|ŪZY.nFj殾O.ݲڿT\ww@ $5`lBth>EVR5,Bk?t"kp`B+g,M9I>/pbw@ŷ`Zݼ7jL1b) b]˿{[ *g$JN~o;{{'R9gqrx |gR⮣0c0P׺Q@h?5ب pc 8╹$8.`crc|9 !Pn 핼z0N;S B_s:O=}_n8zPx4S(./=>9'[&Ł&aZ3I Zjăzx:)W5-5LY~a,G7Xm:jY:F!3~ĵUgpJ};!.P?'‡'K! Q.cI(-f`FO|JV:qOZpIkIӃ֚$zmҦ(fzb\/{jȊoxleq^EbƠ؂*2wT̲x27AƉKꔲn '/Uso{$(85I6bs2A\繯CAWp<)~ӹ\,۷ENFzS4E{^9z' B6ڞdLƐ,cl5KĀmtO>ܰx*+pR80q/:# יۖbd A\N 3(]pKc$Oɯ̵'q̯%"~Թ@/biܗr̥uO9l2g~m6I_3cTQwԓƩr`F82w.) DO_wR460Ho9bEyMe0d㠗6"\5@5|qU{r!B׻ rԛCg'a ;iPgM+5J)1Y]4q=vS˃,!5zʷe_)(#1bm \k8qi@ 賓Dw+H7/ u:)3\֦S! hK~WhjA Kŏ~٢4 h4{Rbq$ pTJ6ͷf,`ָ!mn㮓} |v\z|v5&/#?aXq7ǵA*ERLtBɷc:*ʾ e!;UG#cPHRUMYO<^Z9E@ͬ_I\Tힻm\mTPV 1zݵnkǞ ʒ; J"O]הH@˵v]>jj 7ÑJW#Okh'z$E4?/``[a^VӈW _*RZRj)ln1hC7XOBtAJmodEgxalSUbp tXY:03sGT4ǎ2C87frh 9hlwfnM7B.oy.SZ*Nm=BAv0P[ w#W)xR+wsTqtb. jxYew Lt2\ƈ/m!YKZlw3ГHа5g24˫1iRvK ~’i=K?K?SAE 3GtUK"-gFo v?)=vɠnmoi\G~R%~fb1Z;BMD;/w+39o .z}-$ F[ix,A*XNfwz't1T֧TQܟ*plϬp#طrcӮO1b J`"ޖkn7N^_CǪ~MFef];X4MA*"q)Ah]MYoOhTi$pcKak湩hkFOꑚWYBu~,A^n@߃j<獿㏠xxkH&bdijmΟ-1kϚ3.4_:+QBXHKka)XQ˭^ߩ(rBW[IKW3RUbNC aP=Az'N:;]X ^@mx{SNpT:DI%/,x& # rFEVK 0ɬ'%!*ua eWXOl-GHLX rI҆h-d;d#yU||'7 SaZ>KecܦGXpp!үaQjp rq( B4נfxXK/b>`lЊJ!5P1C[z D)vu&M´004B̢DMM  z;pbIt4[H >*`(b3rF'kH!Osr.eդ b(hfq.yχ.*QHW ڋe!naك.;IЮ/TQL9C_匸i 1m{`r:TiK?PsHDbh3@&? \D'51FMqj587ͳ]pUzxh`L[>2wq21PJV˺a}$8my! :b]7ӀQ۳)ms {a8g~W8x!kRvC^8V04L P^h8ԖSx`ӝe}ު%ZrWu&H핽ewjHl^-KL (heOl)FF)d<]DAAdJ=)6 _&N#o$ލFʥ!K*FO-IvV" !%_+kF8K)eDlRGTܓy AHVQ#Li3- Dr6lXo,<|(á0=L\Ef:R jp]9#N yA,)LNi֕[81<1̺)ڽK"kj(UNe/aRl(L"Zs:jK M˾C i[՛0T"npI-Džvo(_OS1D_j`z{1mEwb koI-(p sj011Bp93ǧJym^!v!M;f,sμZ߬U 2T 0 {oQy^^Q]A0 “w|j+ϩ>2\!0Q>NV-BlM~؎h:Bˋq &V7$`B,iJ\nr3:jZ#-eA0UX$sv\坟81^ wJ%18FRß!#")!OEu_DN=Z rNfI@ejqyX;FzͲ=zwqrXfpTҡef~'n!KIo*|r}Nӫ% [rm=D 3uϨzC&ՠNI?]Ymm"&Mç(? fLPZ4˭FVς-!aqƀ?#[ a #MaT;h?\߲$ \Sw M>є4E ?߀D\i޼hg z>նG9Qh #,nMw'FC:gPҡ֛ugZ˲vESJ*aKI -`D3#1@7,z8<krv4pނK- Չ/T~+>7:KO,k6So!28YR S4eכa@êNzX5>i$nnB;x*S_ a|j:ԆPUoaRt~ZTRd '8zX rj@X#^ ~|CRp蓕n6J"uPnR[dK'6Y~nZ$<Jq<81% DH\P^xJcc.7P,}&];y(]+kKo_~J7źG,7PsW M>>1ц9K֖O><֮Տ d`}X+VL>;יa h]*>2 ŘmƆڿTo3*!AFg,)]cA4!ڈ'y7J.RY=>ΡLZhR9ŗ0Q,^ʁ4_rq`ΞOR!!@YzDO(@}LDOR-+4%SC+|gڀ',b6Sen]3f{P}Xa7ßҍ (&; %MYHLʰ-Ar- 4rX˜aS"r[x"t d.O J Y6TfRzT]8L4s+QNIw v>-Gʩu͙W_ _Ojួ7q[! #itS\qQ+o(x9O31o:թQVNǚh$Eq~ aM gId1W@ϗ~#Zuw>Q[ UrHB"&TLLCy{p,q򰴀^7B ]Awee` ]Z^t<*_zWnߝN͕7uQj2;] *ԭz4]^Tػ2k\ꏞ"30j}Ki?7 iU*ӆ^3aza_N,Yj 9S2:oLI<`JC`D!q㯘6Q__|L3|#-1R% [jV3o|=}'Y$$-YQ̮@d T0kkh$߬⵶gWwԓQHcbV^:@6BQ}EB|6c N5KbCIՈ# % 1Ab?T*zIaF' pg!94v|hJVXTƹPgXЫ9I9Ci$b )Dyl苇wpdeG:oǏop׏\*:VrWT]ݗW)w¸(U}Xb`: EgN a!oݒߢH~GޅM6#xKҡ^VR]`ƉuL rڶ-e\3k&-keڵͭ|12bt>amZt#Js͵ %=Iq oM6HוC:ܣhm7eaWҎS]',z'l|M*YUPSޤrM(ґ?[D9Q+ǬAi3˟{^sjWjZvC=Wʿr[QchǮ ɝ*޴3c&!gc+Y؛K REW6UւBّZ}DhN8o7!!< Inrn zO޿qhDsWk4VTlh2M\?eksVe`S$1qJO93ةN9w{FteD8uEK]y!!=00~~M၀*DQ8`F4/6$*K;a[f/ORJD9*w{=GNq>)QKJ%1ys 5bpmࣿ5.RAz `@K <+PyI>Ԉ@ "A/CLj3>WI0 edzׂuȗbKqÍ|ݝRKiFwk3{(jfofgɉ*]o k6l7t4rCljԩ{2aHlhJMyyTJ%%2QNHHC#P%iE0.DipŜPPo 6<;{EEҙ>J9H[P ZJTvgŧ0zH0i<沌Bso" a5J|Nԁ-Wsc hYcVO#R؋?@9c lӕ1nCt*AT䰵& 9MVbYmm@'o!wyqh9Ѽ}6:H6OcX+I|'~M>Y Ԥv~~Z~Ęp Rug+6]-Et"[et,T¦"'Agy{ܰf%jE{0_]ۚ& DStm=*ȳ1rj%#zQMnI 837vȚ~R4)S6&=GQKð:k]xxKekD?˖@ȓhL! +brM>`>|SUz 6a,h--웑$@heKX(ӽbVw]G)&vήߴ,|Y [~mW\\T}JiP9-8*Ig{Ԙ~)A\_ )Uf#l78TqZåsMo+Ȥ=,TIwf@U옑\_3Ó^'-wP2 g-S%L 9L74N>L9 :ms!c8 f S/&l}?[ͳF7ɳjarvQQ_`^T^ PeJig펉 G?;NW C7$O|{[ԠB}NDbfChBب!/ ~x+(8LQ5W+0ua4;y/{Ꜣ3d6"rQHFSf"=g+RO ꛒ5s㋼¯h`>.ưUx`x͠ʎ\ˋbpLrxnJؤ~o,.L{ovڌGyhY/F>JBaəo"K>ۇK/N _T&ibqzjxН!d l3rV0ja[>|-4+6rEIf׉㪐9؞l-Q 8/x"$ s9fقJ'K6l2͂$85tf R >9mۼP۫5'qyPS";(^[VpG9hMm_QuXu9/OQoL?_A?pZQ9@{F.0=#aMi8B@Edq(mXђ_dAɟe:o( D="Llt/ {XgCy3d z$ʥ5\?;Idpΰ篛uuS{meevo,*y)1N;jq+C|&pC)xAzKuE8?~cU"a3ބ Hj~_4+Vנ,sG2J؃2 4ŏV1aepg۲c+S Xqj{ocFk#l/غſ]Ӻ~e(ORM7!!^[ޝ g(K^Zd}HǨw }onyL ɉS@*K#3ECW&X{EnXk$<8?:)R~uվl梈 \} H2</P멗v[ N<v'9I;zhr??;+F/yE.=,\w@+r.4Ďsi1kZgW^W,CܴDaQݫO\ǡD7h/t(jb{OM )Sd+Wom4{P7yR3i$fBÜɝl| t$qyK ں>)Y' D $Y].ћwUJ5);νj^: 5A#GTdM5x1d-(hᔊO3tq_d)S06=fcTd3wqmh8vrJYZjRI eaapdnO5q(:d,Yn?RUQcApO\esKbȂsI%n Uu$Q3C+Sz, am؝/{vs!;=xB=*FÍ撐qmJj6f(uFB$6wdEfہb$3Chתbb{1wYcs?n`-(N1'g0@KRLX)h:51ko?>razDm܎UPQef j23* ,J8T)iUkx?-P'"/x^.{ǎrX& @7r(R_#̄uG0\P w*$wQEn;"V\cG 2՝|]JfHӤ<8Ht4\e Z%.P},ŮAZGe'Zw'PbJҜy1d8isΖ?ڧ_^qFJCxzD? N1࡬>! X ,liOKx&~m&8a[(u$adr1%f6& d"&ۻ`bv^{mie[a(3J&|W =zZin o5ZSʏKKPRS {= 6si*{pw'%vuLQ;P|gyB"O9z+fp9(]+| m?LwYKQN[C;ңb?'z%i!t5DQ;`}F t*θeigУdǀVKw̪wHPOeo2ҹO!㫴1\e!9;|Sz(@yWi\M+Hc d&6~C-1 AAkpNoTD):|p*MKY-Z^)>r0 )(-rASx"s3^먯‰d$7c k W}ʓ&M;JQx\(qm/ ƛ^4sylazQ̲1h)>+dC\z19!P9ʣzhQ+ >}Xc`Kܰ<.»3~r ϖ 3߃d"P xwbƟ@MR.9}*NIW8VS2gJ'Q t6! Iダ0);h\K`I9|p;M女4bQ`xH-CO}~ "Dl9<#,utO<`X *hqk-]~-MJiR BޓZAz3%)Fā(%x׻jb})zxӌє-u'}n-ƊlJkq쑰@s4*k+[)$ˤSftöof2{ d)Q&XJ 8 m?3TXv=*󅩨 Iv!+cQkI]7js';H^&N(L$@p,hbϦ:;>`^ 2r k2B|7ꩵd^IHezT_(䵃]8 MqHSN *}> GhԬ ecu{0IUu&Hr*7Y[G@`7)=@ VKb ($1r?CuFֽ!LͿm`>%%zoqoP-~sUU/`@GT~omj&DCFNkٱ]ֆT}F& 3(Eː>hOʟ]=l\ctȆXpK喦 [;c4 UOe }pЗ=.Y[rvAvؚpujp`2:FOIcJvEb fG&Cop+խp2XӿL_ p;ZT ީ&ݬ^! ?҄,sw:@/ӟ&E! kTӳL#`D}! F 2Mu!y:!놨 9:" ;IB LY1-n\D@y<+qfWԐ6qKեl@u)>HWjA`ĸPɬK1SH6rv_/|ړ=.GlnfY?{=9FWlfUCE?F<5}\D%7KY%&3/* Vy"w4Pt~>ޜLDzLD{TqO 3 C-^CZ.VVB㳒*|#Y8tL>ސ e*gjuWjIE hVr/Q&:ob˦; OpQ;>W3Q9VG M~Xπ@KܥvO)qxS SH}PkSF%Q4?9yo3!3-h ϶R?=NQU$\0Ui^HtAQOU՘ЌXfR $I%lBC~LW߷m8͇[\@0koEl Xđ7k qHϗ̏Oq#yM(@zxyFQg GVAAzFQMRFN %>Ũ8q=2s8ekeVcLKB]˅ ? 9/.E?ڔ"X˂yv=?q w)4D= )-ڒ2S`{FΒb]}6Ї r4C(³*s^%ۊҍtnQuSs>AyJm!H;u)}컙B/],vqZPn[w˽"kh]S-&x*kP|Cuv[ PHQQ\JMKUFkk6<;l"s*DI#h +1[DP<:< 3+c=Q4NڷB(XFs5ib霻 ,8gϤdmgt][ٝ>$Ei01ėW>?xee[Ad^"[~=5dSW2lc%~vdDP i!:Ҏ3Eأ:596_bpV662}E(! ) _ _<]lfݏ$J4'j92dr}]:#m$ ٗ}_J#աcyL}0cB"+^R@I*kv-&[0 8 @1{<鼮kWҊ{{{* s3X斢T7U6P@< Ɓ^_kk)F { Jfr%#]JEwG/K+!a N(ƕDT,LCr LD2,6[ * јĩD q^Yrb4~x*(GmIUW*3UNrV@g5-79h,G[HPYOa.&}޽"}^$hѸSDj.>DgZ}XxXGiej?gJj$Wb,zTuD]]81" OG.]5<ҠvlLAMmONęz֖h[Q 7xj;rwhi_O6^HO$]?m!*_s<,O/!"ZM3Do"oYK$#$:7=6e97I3((kO${YH\)Eq=5´戚&f/ k֢|̒{D[JLEDk9xv\Rf&2z0z6am2%u0baZ Spv?&)̓jRꗂMnHu`ݭsז;JL$O < d݈⾷;|}CX,y@&{msN(s +*9kDiMu߶OwDZKO"(mq 'kesmfTy] 2jτbNۏH/`;xY>/c^D:U{y0/WIH87Hְp'm<(3IAqL; Z, q2 ϶2WX_h>FBIG[^0PL*%L7;.ɘxiMƑ NM3,U+}v!եk[6ЕBK3|6.N#ѭ}C{ɖ-4`ȗ: ѿXmKa rR5C꒖;si&&+ zsiW--x?KMK6_@Qy[Fn+e_&gEt\Bk:/dM1{lRw9[|=\q6gb'ƬW;~Zv3oZFs×傛xtxC'oB\LYt @>m ̴1p.`u  3^95 btTAvH+W̖G5IH*duGk$̫7H$JJu$$mEAC9-C;\}~}>6~h$8J&uIlGьPGЇ$eb$Ec"*>)l1~YŴ؆R6>] 2B190`l$C }Ф_r `{sElf0vzE,BAﱕod@QPIby/) !,zOl='ЗN؍=S=QѪie-E =&Ɏ`(y뒾~/Ėmơ$H̬1vx~$vØ\56PtCGo /BZ>+ ,[?*U |&D]/ J셬ta#?h+avj)ĴXz n8䗡2ob,^]c+T> ²}Gto:4Q9T q=6Ai>@v*}'YapqXk+ml{ŶtN8#P>Pi &1^6CztQ.ow-&?F fE<įrT{\&&zGM=>^rDx)BжD$o'.'w LadhCS=ƥ`hV KʠcҡK>1\pfzbnPq6HZ-@tMzt/_[!MðLJ贴?4wEÎa L46X?+:3l'gSC2?Zno'O&ܔfM?e0J'X3S.݂C7l.L5XCIY/q]eu U\3Xupvo[+J}?9 Y{?"=6ĜXM. |#SEb 9(\Y 7A(d 5TG{56{N_8 u/gbnu' `9CHօ]7я7nEͲؐJ']@;S Q=xeoJBŇ-ڟ:ښ/z#IWuesQW !Q MOy䌲 AxGQos_Ex.:aBKP8DIYQHJ!Qp(D"@um2!^SGƘa(_u M^:ߥ-ۼP"*jm9P]p:z0q6O˞^Rk-l4fn1^H`yǶdCQ҆ӈp܂0\opAlz;#Iؤy9x{3z+qŢ$ۗK|*+ѫHl'P.]k8H^3^/ŃqY(sȄcBixgLU] 5VӷBZӢmkt+]N=*TʳQV,;m ByH1>]Z$CAz66mà q6`b3='s?sԘB#I$8.θiTZ(Vks{${_QHe)1Kdӆ '\puWoOP!^_GSpzzD}YkKo&B5d"OIߍH L{ZNS|NDzzOkJ>}P|{ b]ntzt5-Nih]W \(x:,ed9/X]w=/>"vh48v^ L1ūNk ǂ\S\b#i޺JI<}wz=TLgbi: =-r7[$6ĵ[O͑f?pt¥K$J o %EOlfݖ|n./|6Ԉz7z3b*(ri+Q{ؔ;=YG(jHgv8F&auOO T)5uAO![a/'w},j|x9Sp"ZkgP-~(iet! S͘;! .GlZa`oGwF;5/]D' j{PRIr U&\~tuW=[_rP˞gUe 쌈(w^X;m[)M6/YA9vKnd-L׎xo1HyV̧LEIi4 \ۨ_zX\mx'6,9jY슍Yvsؿ6(VgѼV>aDGzf)p6u2Y%r2U% #f :xO*To97b%Va}=]S|fAxB9{^0T+=?X_E뇮ТOqVK,z 9/Γڕ2>QcLfR+|p[)j͑%z`? ?sDׅ9^G!mgIV "G ^"$p:Oj7сͲմD< B =:}>|N5qk|_iG8ODLm6nў\ 3(<0U %WG4EFm'Vwɼ:En>\-%q aZY~7NSk$S_hkclky^@P45&8Fj l;3 'ESDj+ ݸrz[<_]XJ6JѲ agxH4fdVes2valG `n(I{#uPLp(u׭W9bv=!w8&7q~wv"Hb3% xY'&j] -&c$4߁@X,5꼣{vc=!\8[{Zi&rӨ\d @%(Bƿ55\i.&V{SXu"gҟ@9|XĎAi÷RcLkKN{ cf|J3GN[]_DrUq< Dև{BxGH $FXۮWW,ڽ\iRe ܤ?9@A:ZEvWZF}vcV/`/ C )wm1!ęvm s}~ +`Zhە ;yA0YubO=V M.}BuWʻO>נq08F0PB uoZvݯ3wƬP+J bhTH 1?zH&_Y\:{*PRWA%9J OdVY>GGJQU^yArfo1cWlbK:wD VpG;iF:llE5?!3:&^C J%q&# p/b}nZˣg$J3G"+I22O Գ֞ʣ^HUnXS $TK3RKȃ oqɗKX* ],T;8.d!jnb-DvYgRRq){W_~z5}~aE!@rhqn@@MEC8l?,&=Ohժs]jS2P` x=.2RӞr! ;ſT?M2CNW?=.m8Cd=n 3¸1C|;R)o[cV8u@-HZ:+8F7,Aynk/. RNc\C _EX6P܋XQbփ&TKbr҉'wt%–1`Ԍ2kR.SSwr7iw'~*Μ`P(k˭'c̪Qn\ڪ<+1DYD!9 1| g˽fA\qNcFU~6`X:Xp$vW`NԁcAGfHD 6ܶoQ"OӮ^z'", Co Rkgݡ^#:`z^#Op3@+xs_䤴g8/^j˩ ,$Ƨ'{gQ@tIU ް6A~? :-&"=c[[`E"xWע`0\B4B!$5*TZsJ0W0bFd1=ұd> S?-dT8/a&ZP!тsݛe'B.R(4A.Ol.G #fX%H{[CLc$C)]|4¸%\h\vfdtMu Nb|hc&T;$qE捺Qt!EVXMCDX{X7ug蓵`aaEd/quRXbowU` d ճ=GfQBuJby/ǘ-QG.wARɠ_"SL&1) O] l{ ?c"SsK<ܖ_~@p^H|XfXѯ?I2pTzKP嚳~ sT/GXvnFl#M>(J9=%;O@2>6*g9NAHdUu9zή6]q- +X< pcp9* f#`s!y fsNHA;euzXITo”0C WbJf=;I6U# rg#? ]GsZHPc΢&jKg%"=8ό'a/V3=' G_pSa gJDIq!D'򛏣c@˃,ͫ!ۅgZSU+ aC77~䭔SZ.% e0[D~-QΎ=eiig/ M5N;_8AK@t,Yk6[+d|e5$^FFuD/z.W}u~ РQM^J$ & A[ z+ h27Mn2;kK֜N6>vhO(#M 5/{5Vz1@t§<;(\zM"`4'nhu]YNޝ-n}Iz+FV]7W-A`9$؎D И^b:hj/NSAiGtb<#\$|1?fK5H-P$olokWD"`ppPz`"vF^Li=,BeBfqzv=ҍ@h#nQ"W ;Ycj*^ǀ*pe0'^v-7[#  != oaԿsH 9-Ŏ4rC3T0}a!`7`q) !"2#]rNtŮ@f!r^fptkh0lyvY!a2z ሦ\5_*Kڇʜ4o>9̙E U+Hxq&p4sɶTOLлwV({&Ù)3sT$ $!Aq{QJ rPC8*٪Q7Cf2 z=%B<||YG#<-t(v4?*Qlj@ci]"OC##x?C9cpcL(ցӔ2[Kc"-:_ To 2 W Xқr"8CanĥaepC\ ѶLSEn'|ohV Բ\-!e~0 ,L`(f d:6y6^Q&4V4đ'sEd 5+"nK6+kNiExGWœuԗGW0z(#vDŽ~_.Fpd?}@H..-Kk+^8\9Ï4ptGֱ4fr56AğKpd5,ZYa-m >"[+7zlZ-*(R$ u}U9*FDY/@7eet g%B;~ߓLˡ.='84,҇Oqd ҵM÷aq>Bl^s|^áA HXzBnJ5"b!(LcճRVres}'nƍ)ЧQwjA9|VW MZ%XiۍR@丛htxYoӧ%oJR(s<.pw: Y"Oe4W=ӚGIX?m:@^qjߘ 7Q\'Y; @bpЉW@agCߧATXX^/g:z΀IM^)|XmCvStKe P{@p)-,U[gS$,dg{VP{ġ>p{Dpg*8={|B}u(ß#%D gh;e4i(jdr; ǯ{QǛƶ1|p[{៧×oJ]Q4 ɕE>~ҷInȅTlՒn.2 .WpՅT һ)'n`޲xم}B;U50rYׁq~RBb%|~wcLO}14 cF-OD$YɂrReNd(xaKu$2l*Ka5嗴 6M' T"pm2UYo=zߖj5N;>o2f%@*\tM2"UUT6AhO/&A7UeYSLij;>(x CVlq[j#:SJl꽃2 vƊ?_N : cHJCL$uWuOdfANB6 ~mQ[fgЖLm^'-/ 6@SD:T{\>a4\E 4nK0kuHblڶkZCЬP.z,K\y >#TnF~1ǔ'qdKJo8Amd@[|Mf^D'xȀ~ -+w3Nf@,4Zk,+ChV-%TFCzyi6} {rQ}`^Ҙ?]&ޗ=~EfC+Z@CDs<c2A62k]SD'o 2Ѣ4B }(Ν*zpESRz>e\dY3Dέ2vpynL|$M[2O:~m Z,܋O%-=W%s%Kv[;ЌjqF D!fi~] H=dz.n2d6bj?t\TEYjY/Ze h0fbӟ+O!yYΏ}ʩ?Ju.9g Э/K'y#^[M泚_|pS𱵎z=18'}#B5O"P)' _3$ 5RuDQh z v%|a\~U"4g,pZm^A=ul"+'=fd{rα9(( *dl9(wK725a?2U{fوODf&͵2~g _6K#kႵȍiDW하>40S-z2jWldB+s +gE@vꎏB\HfJh{}z-)KA*Y#[gx$>mb=5.o$C>𓳳8p.7MBdu/<LVL&X8g5EC#aIї|uc𛀙R,2҉1\'z9*}o!)'_)#b%> o=gذ* 4JxQD`SK U>Ts>m-ǓZU1z-Mrufb!elK}[#]%FS\ȱv3g]X\/xg `-2g@3rck0R^{ӵE0v1|s8lAO) g wT^g1 xP,4no<|k} n(3R]ڲkFIC;1S ČS!@LAƓ .]gp; pyٲEgXLلx"G9>tq)X,.0݉YWFgŹ+{㈌(a84;dE <^J}ia] d&hǰh`6v#s(PG ou0KG hH-z(n]%Nw<3_[;fdY!Ow!C]QKTi+{2*`0"F JqufgA?yc2B"&ap0i$@sbVUKgR:f@/{_vddgҢ}_T>yMŖR42qnMvyVAӁpw>yYiu>k(/j:+[ocqe |b:WZ}X.fa5[:WcU(OɎc ecjAC@OO__BBU]EĴ4Y\|;bI8G>da:vVƏOjY5 uwvy>aW -T( r k3HGia-ޟw]6:ufTήWi AYAeJp_CPY>Q34ȁ:h,eq5x&i=s~ZhV{nwtf뺞(QW1&vv-p7@}˄ #['/c_4%e+-;F6(B|,(ރ۠U+^! eߵ{)z&]lV݉}N4꼝g>BWHkyر͆JF[pcr:v,=sgox~IWidc+㛞#9aܛc3^ 3D:{{=ڸf-s{GSXKs2^Ea!c9MKل2d#:꘧+2"$@eYk6dWb ;*]YnTy!ɕ`f|F6|x? HxQ_XGxɋS;3<.|rPLQd|2xhge4Ȁs^5R 0)h0RD%/1^j)'gN> Mi՜0ٖf<$,%t'4?ʺ16kՏ;B>wqz*|$V^ @9 rL$< ƭ$.1lؾ`j]vC', L). {C υ+цdJԎEG` B;{i_㕊ڠk-__L[ -kJZctu"GFP1vicnh/& gzks;raKN$;]mO.>.reFch9 WiFj 3k: 'nbGajⶹQ8e|"%TI_j;SvOΞ"6DY sJ5.WESήk%]8B8Ѡ$g91M?;8ȡ)> 5ϐ=6O`R:qde] bFю+s _OTsZaS̴M`TT:6Eل|(~UR\ it-% 5 m) Tr|.V 'ZlL9AӚݽR#1aD7ޔSru-ߩ% ]r΋qV1ҍ}sVFrs5oj)ӹQzA d璩ğH`7by 6bS|+B;NmXhxqόjy]3$KV>]z&#Mz{ -wIJv' h˷K3-ɥwj:pfb>ٶ(I/|΍tX>b,|v}|[G 0jJzv9uQcD<>5[:jF5>n4qEqx6>@3 ӫdiĥANy Pn_C'0P-FɌ-9h&G?(@pwQ' #=qT;/5 ^PJ0nM1'sIH_{u~G"ogy1M:pKj +ܩ^ mK]⁩LUe0N6I,qK%/65ք| ˃enh0*g_ڌST&6ѣ'YNZ֧(l=<{H,f kG^#{rp'C zd3C7#U86dԠW{,!r5RY02`mpQi 8҇q4m"RZ lDLKzq7&;,a=';!Rf4^vd.B -mIm Y]PXϖDx4Xv [䘓#KīFЮۡT۶zҟPW߫ #Mҗe} #xyOrQ +M8gÇf83қ U &aHC~;#NK^g 0,ZFDV7 GlG2wY,Kdik`&,ޭ/3Z`=eA{üoddRlmuzƧr$r)@=+\'1LU*@ߺtN nW܌+`EΐϳZ3e/#lǼ ]fPc?6 D^YXfƞ*)PM J=DJ7sr6?HC{Vk`΃3PcW4|r%dy%;D R dsr+ӊ;@thY/˥Pd66m\nD~YTki45 eވy `:MO {͇d~vC"k&4xkP78=1g2x@P~~.gd@菝Yu.?U%c6vYy #yߗL!D(Sq6}x S )Ȗ \p9اQG+yABWf4?w )maO,[,'x3Qbq[qx@P 0Ys|̑e3oS$7ԛ&%noO K;X~<Ũ3tk6tKFJ:ұRx:ob6a6#S iKd\Z&!]usf 6g}phD)ׁ-`ϟYt ٶ[茟$<ՓzVӪ/I`ڷE.F1pEoUx?  : x@2zYX|Ч [f!va\\AARʯg"c+CVQ(AJ6K}D6=0PFk}/B'aS(nIĸEaD\NŢ̴G!o^~nRikJ LߋR^U!8~:F ހEvIkȔaۑ{mD y֭A7A{37L[Vי*Io\Mg=TZAU } lHcRNx կ}y؉3wYW݀I.0W$o>\ H@{rfK-ds wfrRMLDSo0QZ]@ߠ:{z1w&$,9Cjt e`.hCY2{V+I"#TzFoLY%/h1xКUȼQC7;'pϸc}?GYb: !&hBl 2Wzr*8"G|4G=1O߉fpJ)*fdU#7PߟF'61/[ A0*U8YyEN@I3sޭF@>L&TE\s?!{N˕(-A@H mɻ !)mb7Z5}ٿuf=vB@>@WӼy<րb 67ZpA#Z 0fF`:tfqLP25a iGP}mzKWd1(o@ b`EJ'i^`&[wrzkHK\^ ]F@|w[:,Zeƞ.N S9nȀRl )6ɰ/!eU5cT+@/*8%|={2 -2"[2;7QCkFd,ocE19~śc3`sؿm-7Į6-ϱAv2"lg쵪΍35.'abZ;Oæ"3+,&ӌ} Vԁhu5\T|$A/Qs7Ad3!v! X SKl#)r eqC^1z|^TNߧ[f-Bwj =rYX {D=mJxM <pгp׫ JeE"how6&xh\xo)kd$qw W'a kJJd:@J+xnjrb'Qi:nhԫ 6 G_c\+YxYUlu8М-*Z_nƐ[_3T!;355곢ɤq/L~bx=jyE|rԀM[TZPE̻V9 w u]TQ|N 0^ UU+c W;`RYonzK,Ujf3.=JYNQ(6hOQi4Gޗ }f*VsBU#*KN= {qX8UcDz&'ۿH2kq4 P%Չ T1ъ]3j]cҵ4AUQ(F+m^jjrM\%;$4%i$J05Osr5.pJS'6%7O δx֫D-Iz8ᘘYٜ8o~Ԋ" _XP)_FA/\%=0nn"2@;t9c"kbp%OsAtt4Nd$yB]Ƃ[[}ƭoT Fn lNIRE@?ga@UqKRߌF& 8;Ag{^`*'Q_yvR.5laC韢̉$Z&|Eߢ.5 Z|6۵"" =I"h{b^)CjU"9",=4vbWVy6hoPDBdb{`3%D玓̰ӵ$uq2~lLVZ}/z56R݈h!J@hYBX?NF;8c.[zoaﵼWgCQ}&]PuAKW<$b>V^I 0Pnz(ʗuhx⾒ٳ61@ a;!x3i$R9 iiJA9Wjj^!wpxI=;xѸʴ?3hFg(0{[ZuOt=ZE'|o0)0xcҋᎊ4 ۥۇ"uwSAp#UINGyKnƕQ5jfp\}A(.h[E!%"ՆTt9.~Nj~LD{tĢچioW+A:ni7m]ڻ dl`ƣy! 2 prHR ێ#փ!zvHmSRg]uhE4c`F,ܺ%ޚ^=f_p L ›J'YT&(#N'&⾢GFN=Ʋ1@ɺ_Nkrܟ׋4 rH&6^:5GxzDN>}#&yH!'qehQpm`?YQtI+cXf%{dՇ׬ɌSEbI>{ue&oN  2!D&It]H:D{܉:<[rԈ#ڹlo|%Kn4SBs14_hxP1 ZaYdE+UNdœ!JeŽRega~yrBLqs *Q/s&w &[1:t~kfR$i@#>IJ@Wu-A"34K:PIxםj4c!lC4eS77%JrJb3e!,PRd&x~r}F1JxMi iݹږU!orIk:HY~CuaFf67ֲ Pnl]~S3pZ_;ˉ--et2<#AH3UlFY[v虱!,S %݊#W܁ϞrR&SkxP+XQF/>Aa]KV z]; 5wb/`7%o>wl3/]q͆.tͣ2V&'C !Y!ȳ~_` 5Zk}J "g<{Zk̅쩫*5HzôD9D,&_SsjC:u .B]NDM t`MY0/Ƨ`NvW!9^mbEMzw[Tzn<}>ԭ()Hp"q\71[@A[šh֒Jn6v0 2&9?z:6>`~4(|,"m35bFR$ &zL u ޳#wf3;As>qVDh/hG@۹jn1QJc\C.3&~_gǟXqkgoɓ-0$5%KrDxhh@P 1&: (z-mb_݇%e@:Յv'ŠG~,&%sZ,e3f$=l`zEfR0WGIHr7/2]$%y$Aj43.}r C8=!ˋQ!!މ_<(-\gS2=K43u&82lA j l>մV/. AWǮ̊ԑ%KӺ~<ǹ yG:,mC֏8 @|Eor1)tؓ(s#YYh"|;j0plstO$,k\#9w @"DgI/=, +d1V: fItklXXC+Fj_DEɡӰb d"Z *h jC??Oi亃Yu%-5t,fd> )eyOakM/Ⱦu٠ޖ,2U|{հ31\. #ΌjdF7kaoNA___ؖ r(7j AܞXLm*\|ʂr*'gҲ;@v7Qt?'CkC MzoDV*}b>9MpH,Y+ijr]捺|iɞXf4'\Y=tlcz>8u/Y|ͨȡ y:\}EiqX&Nmşq, p*I .n`ow,\՞&bPfwO`)ˠ肼@2PrW#lSs#5TpOê?0j~כQ3] |\Hg=kIR2F& JR.rO}aVUë%MFM~q6a^]sSL]NEskN7h5|=gA򂅤+'-H+l?r}"Ɓﳮ^̈aEי8Ywwwq8˳P[i@=ِG)k6uprb %8 ֛̕|s&-@/hӕ-Mtz`ߐe1yZKgtf8H"JV/] L'Vdo$A}gZ;7 ˼E~kxMaI$T_ Ci;q]a}P'gKNiu$-]Si2g 4=& Eǯtu`cߙ&ܮ!wڭ'Pƀ1NJdY}.rnK13i'0ɷQGw.=RΖe{ DQf/eǧg"JMr%FIbSSeckvERw(h*eDR@ E!ƕN4:1=nF8&'3Ćr8eId9^)}eULQퟆ_HG&2d~/ KgG7(Mmk`吅8897< 3N{nK|!(v}5:'(PfEp<4ْF ̀՟ \$C3 ɢ=£!yQFXSmKk{u5u'dx픥p+h!Ϫ+ 5K/Ƙ-xI-ok_A;eеIR[hҚ$e#V|m⵭HJzj5lMpoW "sƇv:&eݸd߱§(@ 7uJf:N73PQG&ˊ4 5, 'F:/zǨQgb-R+$<ʼnpxKI6sԖ>B-¯AyDn(q͡(qVl)@bh2% |浮 m?VJ 0\CE: ZQca5z5!_ԅ?t[K[J^pP<9QSeoR ,L9ԕ&)oUg@FUӪO3‘cU۾#y_Ƹ[wЍhoAؚ nAxlmjS3+xN Li۩ZkS s}dԊ^# T[U*La'~;a6:^[zD$d]!Wr`oY-]H73Qw T}%g0r7C۝D2盙Gt}vwDղ]|XDkީ= ,m"(]hw:i6=K {h:,~CaFfC=#(!dvJt%5Z+nELlrAE)bB _%gS fs f-FgAfPǴ uâ^,tW\ң -%]l >Ge8yH!vx y{4eu/ 3FW=9>ZsA򪹍By^IUu•xvfztP+)Vڊ R=hrao,&MĂ=ZxY}oKB_ѧv>>[Gw, i?68_dc5os+/Udg/QqciĒW͊M4= Lg/=mvz szHI#hfbGu$lk8dhmhW>DfG]܇o2ƾx&&J)op9 ||.բ;QsXǶ5`%9j:W^TpE[X:/|-.|wrr}B,Eex;ȏC1SCE\?Go! am%Y 0Òž d Ƞ>s"dc*_ *\qVtn~da^F_&ZӦ~p)%d^!albJK1S$g k>drb QZ!" uKR6!& < /}XP <8{Wa{f/ {?'zE=A%bTRڿߕFz/(&k3hTXfyJD2q|aWk2*4Z2֗0oFCq.#"=zf:T*~X p @Dj +Uˏ1Gj 82 zĐp"0)xw|6酡(x@?S +&y{M'=]LU x ?>4/.$lҪR})V2,%-_.Atu)":Hy~&;) 8|:})'έ~ ӏv'ĎY,m"Nt@WbL$c[~<-COˊ2dG۪[>u 4$&dĽGlOxƪ׆nm.TZ#IsGG]S{%ӂёoO+؃ʏLc)7*2/u6EscvM3>$Eg9!u= ox36߮z++!7%zP 8<@VshmF/ \.YO1>bW ۋȱ SIۢDdap V"/"y4_KQ=Cq4zQE DIb.b Jqn!'&A '\y_͊X997)ꭻ9Ůч1sFPȉ:RG?_d"S$)9ĿPSxZ;I9 c\}=2'n;V  #W 8K;H,2g5RoF~k(?Kl_A 0p#S^nx*!YBO`5/E׏ڔB퉺=m|4o7M"b?w\Vˡ-gKQZ0[(4CTu҄3h/\9]i뿜I:lMaEKu7[M NoGd fM\8'חe&ΰ?qKyE}`~z1/I^%ײ8-glG%荸bL( }}$§VSCUE~~ n|?}j1xi`ϓqIsj BK[O+%1NLMnm8xo|{=̧XEkF}OPU%%H5Ө|^j{P"٫#ΎӼ0n4a?QaفL;M^M"-i/Og3碡* {boHYo_U?>&E/ӳ:66$#^hkxUIJpqL`98L#Wrp_ (a\(@;IYH(րZC*w(P1=Uϑ*s1(ݴ < `Cvx<њt)<5-dK >$ wA35tL8$99:Cގn"MP$3DyA3$WSs?ޅNฟMve`lv}Ӥ]B]TH(!.><ܒ; n o7IxSa\krv&4 ,;hM"VkAY(\laLi=I Ϋt*Ro]HA +鶌9a?YFXz2iTFMW׽fڪ1C&U7RS~7.TM V6-P8[|ݸfXGuS(H(X.5̀ psNS&#F&:`*VBed_o&y yAFnp+mREg\"k0@b,8펅;O웂خEF/Ԕg:j:٧/,Q Dc-tq,:-3 ;GIFL/E[iBS ܡ.³&qÆw%*۞ژ+:89`fWL"R Mʆ1lK؁q Gp3qP*}w)`D9yX8cP F L6ĈŮi4m66׉_-zz3YyTg}Lh}&j)lŃrȿ1ب52R䌷8o:ݑ{j96VYVrBIn;h-Aq:8I3hkf0ZC(Ц8*i;<Z33&s"g8*~U˘x%h(N~ o_ɍ:a# QH4&L |{)Zk \\q#kSo\6#v}f |%iҚ'!,+.hdeao]1q挷q$@Ioۛh6#uD4@oesr%-·NSOe}N eȿ3 +Ӽ͝!aW$QI0{KٛZl}咻}g _;`(ѽLQM.%/͕3r7,30q }dIR"+U51kSJ|l cvV,E;{[ԸihhXdہΦ?a ޚXAo:OKFYDv_7x^3#~ԨLR^),vB3kNN+L8%nK{K@ cWhň|V\@k*.!aUaN+ҹe"է;B /7lZmCm>"厵2q[,23v74Qe.?,bb7Rڨ})ttR'Wdx\_7Qil8,3:o|2=-~ ,{B!QΊԱ{T IzqBKҷG_l-3` o>zGeHJ8{VnеpxY6_O2+\ܒ\7-c 5zm)?سsUrUNS٣( k֖woSc]R9DtjHh.x!u55'DgFGz!QhNx@ԕM` Ó]zVW9ʕKrWPڢ9{JmV .TW,iZ7Kc5Ѷn/IAHPsCqYJ(efc!Pkע5s8sGz(?xM<5֜yͲAXxhBeT11Zmͱ>lHi<.;ۑ ] vW?ddT;[i :z]9Y'j&jv.p3dqiH'ɭvajn`-﯂q5̏ݸ g x3s{UXkɴm ʓ \P3uBPYFӂzc(iB+B!>Uh:}>YQs,ݴS|u,{L̵?) -)͋hlqi%KM+U=oD[~)5SЋ %4NP\ZpA1 J)Aڽu^Gc bYٟWmꔳWςJ5Y "@{ lL}x\e o]"\&)6D~ӄIH.}YS*Q̺BĚb1h`T'm{ r%PM}"$$`՗:S]LvmRcJmQn=F0^9(eG$8LW]_zG3yLy~G76Zccv0Ie +Z{q޸uU gsǁXwq[/׳e5iV7%%`Lyo7YK#ckۙjbx}D[ Hdty'0W!0ir2#rvJO! 0v8鬬SM9Π`BQDǿ PQi|L$4j߫]g1%)׵d DihRPvFB`Gk"rKpZ*""8>)}AQ/]ēWV+|E tOP̾e5h53Ƀ'\">e-#CPOCRxҩлk /̒!Q5XXADQ1a"=|/feź5=v?`3Ŏ-8TxXRuu瓃ӝX[~D3ps 5;Sod*, uYFz)1Z@>_#]϶jȑFFP (v\~29L0\rag-? 94J8ab9U1lds_}Ŧ4Ϻby!w`5_GubA4pNy ,1x'pDw% '[PkpP"8Sy xcoQ0b5D3f(VC8t a")2V~m|bsٝ_8c]un#3Љ>t"rh4U/uWڍ!Rik- /J ⍼KR5%[?{ )cJLHQm_h̎_&s)?2/s'?}MweLT-BOɨ.pCT-\DxD`">U,F ӤKBN/ !J^­,nBA;s딒C&r0r\ u%B!d#3yސm(4vL B/}V|#IL= 6 aTq $w鼰wT䊇rmmH9>b_'SEr1B &wdqN~snm3OND#.|鲍2T"^ WJ|1Nܼ$BD4j|oN{sB,AƧrV,2 _>W72(ak#q' Cu9UU,Na8D'!s樂|ko8.<,ӗ m{|1)?Q U$ W0)w׎N eT Uc? dkhT }9@[jY5{RO.tx]Y2d]&|\]m9qa:6l]qPZ;P^Вl|g̗EQZ|j /]x#tO(Cwulkҗ`g;OEρO@R210nc"j'Z AY VKZ> O_IځC9@p=A7\*Q; ͲSٱQiJ6p}1rWoyܰ; ZQœAWFˈv#~= W :"ILjX;73hs:/?0 #'{4CWfꛧv#t.ۥ&#=YsS^~b' wiJgq4Ϡb ΂oeO"O,c ڻC1:fM)O ħ߇Tk>@ч/3:T\6UR{ݵ j$5稦9mXPxvPKCX ίE/HY_Z1Uq P Px铥vӢÞ- S8%T?:a$Q{M;qfLLd^x q %#t9/jr]LJrgOL9Yli'VP[hNq!Q#<{D nOgwj6UK}kPE\f'BHyh싹G{hn ȳUfV 4LL~020*A.}X?%ӻJ %OE# u Y') cq-[͖]ݣCYpXCToH{wl> Н*M |=9bl<Ɏin"xS|[Jf |%a %m bO\Gu* ͵[ BA6tk'tQ5"XJjB t"UCk{uF980Ns\w9Bq|€?_h/&:ËInƕ_k>26ޏfSZ)2r5\JN ó°/u\7 9oza#olxDj c*{pccM&FC=u &/ntsKxj{^DCM=Z?a,*E`O 4aK lZY 3635.SE /.3BŁʵ&43YBqw$"o=gfDwC*Ƴ)9roTCUy795k=)9TXa&ZN/>&xWD=+7I>^aY τyky.3U ڐɷGuIH Dn4qәq/͛RvM7rWz{/`ch",?^T`!~zX㠰,S*/ϭ{qSHe 0Uc`& bz8>VD3'!uo@DuL *b1Z&P(2-N5b5Ath`HG P୳ KGэ4QoWTo4ZrKHWDmL y4s;1C3"_iM[ b0!H.ڱO~^# CΗw'2ӿz(h$t1J %}|p+2DHYB7 5?G'2Fg#z!~1,IiXIVIo2xT/|fu5"B'IKr)t\g(7vrIJ"w|J=hZ27| ­P iN?`,=P ިzEj6-nd(`P<1'cnFb,ܷX]TN󒔖Z 1}w$hƁׇ&ֶ!ez\k4P@H3 $V STERs=c|$8 ե}XUhk´oJrC7GQPƿh":L__T`ЕIK5`!Q~  t/ϑDvlj8P&%Yi~ Wzdc6IA [@!u02Uo]U*8K9.›uZ[d"V:JoH)6=^GjϗT ۼ|}0JQT*N^/ $BkvH҇ӳgUe% :*/P8feBa1^eRe#R0Heb:I I&Je=U sQKIIEdygߺ2lutt%QzH%oEuj_v \ ~Qm@̩p(}iY#-5viDqXlC_ y+AҲ_k.h ڡM}5EeY")˒wWQTȏ~e"]܊p ەSgc&%O _K2g_~괙lF|\4S;)`HYj{9O_j+[{/q?~.3.>)?oE'lōjЁ55ޞtzeg FL|RUՊJ  (5B.6ER֪Kla|M%Xkv~47=0c^NW: 0 6^WQfau]k׍soUb.AF P{GӼ+ϥumT)/ 3/CffDr6tpCjme>SF4q'9p }Fu/$bF&b)4h$|7tURڄ1&2㡥;($fPC}nŠ*46nmݗ.8ak\Ú<+ Y"Xր5ǟbPd7&kZ^Xd]#ា[7xHSj߅ yaW <@D 2(g´iz=N`k_e H1۟CHU_+p+viѴ^c.˺WcPwDL[lBF}RO s>ӶPھ lub0I DzorMl@>h"f FPx1VnJT=ta;SݪNvi84a3W"`3X8Yͣx#1Bѯ38 qz)İ +՞;PiJeh*(Ud_|PaҕS n&E:1!<\7[<]) 'ՐN*Pw,9~2t\Vˮ0V׀õu4'9x N/~^I7?zJ=IJ{@-QI~ 2'}1F_Hg^дVh' O*} Ib+,z'#sHL:}~Pyyʤ=i_Xz%x!)2+k+ 6n.-e-$^y^D-E: zv_5p7?tߩ@fVFRmKZ:>Z(Zlx%mP^aܞ%sx_Vr ,T5~B=b#q}SzB~H@3\fh<0O,0ZS+_n0j 26)|IUzecBA?r?WLYGe5 kәt? ϊة09KQg+]@0A,eE׋<>3,xY8J6bQ:WokkA1Bxo]2hiu6Ž90(a<ە;mzW/9:RWC\/sRŕ{2 +ǎ6QviqZb=r3^h4X"@ |5=##m~Ś?~ II5$XGv5 th5 NE^[|2t yPc]C8?F|]_EM'./rwXLΪ;xo!ŗ/ABx\4AUM!-RUN!,{#94Cd>mٟ 0lj2}zf^<C:l}^`OElUc߽@Vs_zn"z Q86-a. Wpe`97"syx=x%r򤚆;f8槭,aS6n4&6 ??"CMZW2bi #Gz e~sz&ٰ + F2JY{l3VS6)'rϵ]h[ ֚{TFf3%`{ o$(}۱?e{a&o`.V AdM|nqTTb a2Yu'[%h}!ڛE"q v5]0G+%W~9t>t֋)z;rVG[ 5{t~Q[JS#FmS`NG~+hY@m3!Ym)>gӫ/R\,Pϩ74%={zB%\9 Ptܢԯ͇Nsqu&UЁ4Oa)3-Db&m7mpuNb˱DZ =/ )%2D=0OzEHPO9|.\d%_>dkU@0jvQ:,r 2UU" -!MEen&llչ_Ks81Hs&ڸawrWZ`cpRNIcO,1kBS4&HjV'Ej]؄ жnߋm[:ԃ_!DvGEeGtkΣn^K(m?ز~܂SG~X!PAi~b [B=ʬTPE5 U-'Zg0d/x!>iWP 5v`$5H,r@ O!溯륔r'}$>;`2q01hf'K%EĮt2A[1E; F7^̡ɯS*5d]UFhw<*ԒIM O ٧ /[4rJ6ipR/S)̌AsDa~ H#Jb;q>,IT<dmʥ\ rN?WJHauѮU@u.Fp1$Y+ը7yWc )[gVŕzSJW4FwG ?s7:)V#%`U_ףi9,mZȬEta7[cml2\+ 7f,[uw\qDzyU)6d" ."MԆsg9"l b[7S@fU s8b99?liaZ% )iLݐEOr@QҲIqZZe- Wn@LA ~Ļ[P`ߎfC^(iS`M)ķ!Pb4ՅߐԿkXܵHQNRVM,d1/T)5Q a!}|?mFje)ĠDkĠV:1/u'BR$y;'U;eKW(A/ Z 57|tRv{*-k\`ђ6u+q+M)1\+.sy;_%`emTcp#6>uF:6.a4,tm5dɵ#rzZU\ RUmuKܬB])"{3 Jz%##=5էu֌3EhcJ#ɮvf6pc]JmQ& 3JX,di%a$Fnhy 4'/_:2:$6=~&ꂔ3Fѭxl9]I9h2ż.zo@t&֌HPFĪǓNx"I0mRW]jgBMܸviCS٫b"|}֙WPWPc@>Yif` iE[AhW0 u?5!W8[ p#9|:9|讫]2W%Z6 6[_z7*+EB<,̶_3xÓ|Gsd`_x4pfǴ8 UA-L}@tfvƗT@aCfI4.n 귗UekN"32Q0*J6(%ڼD{?ۃz_6@=͐\r^ׁ0B9wړat܍jV+pfIw0rRmv8!Վns#,&)'ȣ4pI 4㉊4Bq1 X&t1~0'&N3R @8ؗ2-{('[N^dL!Nܻ@j"IM?dG uD,ޠunkbyPuah:7Bi)7 imEAP265,8xJ!Lp':F/U,J[dz H8^P ,1  y|0:"OWK 2x{Gƍ3T=hz*/]("0&|x}՗-~\D{]]|#EGy;)XN#,Wۖ>yMDZ\ `&^7D^ ؛\LG~=%s]#P+!JuP6Qތ<(,p MAxEB8g+Imw o,jg:<MDЋ pϭZj1!wS ߺxoO|ϼsvF@: m(e,B3soώ"6$X1(0UYfjaQ%_d"k*i\ ފ2=sg=`'pjJ:)!:PvOԞ9,2ɪT=ɺ#Dž9Ֆ"g(0`eʗ`4xti?L7\n6Ev2#5 £i;@mdʊX<u q$⽳2OuAQǵL.I e&] ]e0Yh`9xw9;a~/׵ UHקay#:aXϬ UC[>(㚾xÏo *nۯ2l6l.6PJ!{}gC r,,D"re%暻92Nci/ hҬI"}1 ^85NJuf`Z/ΪN{{!6iM1%Ba-)%T)FBl+>>ߟ\8L=xUձѶ#Zb:Wbr=TcmI%06)ۖE(3ߙJZkJ:l%$ķ[ޒ tԅQ%ȌUΉoB@;bGddYE՞!kѿzg f]ﭤmUvkr)\v V)b=7xϸJ5dh`ܱ6L\?úD`g10 HW9ɘJq9 cz䐄V9nh 7 y?&;*iȚL&:M)?a{ƢkeѠ.+W͌lХm$}ASF0|$iK'+H/R6/8|k?@jVƽ5g\i9' z{t2{V~.u={,KF,pHcDU[XCm@ɦP:Gc# J߿d6hC!(,YǛw~v%3 %Sׄ.xcfrpQ(qL /A\vWnMD܊ϖmCGWʡǠl73vCi^tPeM`ho-R‡r [QFoEb$4h_9 \*d%4& lN݌TpG\9e}l|wkW6\Ϲ3Δ 󚮩wRB+o)c>bf:`o* (d7$7"ckcZd+oak9Ȣf!( &P12e%LsvW?J$ 7Pֺm"92< #scYE:I[bpE[%wSӪa ;HiNm~EI'@ZX:4퀼Λؤ k 5ߢ!K%A.(7*m̋3m}ni߉Vf D2V6? :{Y.tD\<5z=11{(Sr5lJ1Ƿ)\e $$`%qLu*ظWnA4|I" .ϮTp7:`dxq{T7 9909C ڊ\"g#AxR< 6_ gܞ97 vAa6衳[ߛv3Cf9z'.zt?aEcS& & YtUU}c*/(9B=t]Ii-'JU^TSΎ߷LzUiVF#$dA&@]aH']3O|}V5RQ !68v,Aj驠)bg% 0*/Q#r~?b*%3,Y:iZA 65s,K/Ci^tee <\4)۞+߼,HʫBlQQ6c?v (I}T5FU `Gs":hd/)ֆe\MxX02NM$0F~!xhͧdj%1nF/Q1vi8~0^E5.H#~7;/յ&o8Q@=} =As>Tj[kĜoyv Y9JRJ(f<c< .fSɚ4@H3zfs>cO_=fX7D]6go@1߇F1LJtMd 7sƴx(NLz\ԖGr;=W[oIzW1ҏm%[Z]B:QFXWUtv^LOʘrT*Ghd  W*GCDLWS,ɩx\&hqy +=FMI7|vi=B^q )̓?Fٻ;s?*\z{G Bʠ֑mf Kޛ^Qz1JX[ "-7he.͜3}Y#H̱N|TJM|?LFt4hXi,zmife73r@Aˠﷺ"Y ]'@@i;oYQkEAH&˹Ί^$GKDea譞p!yv*- Ƙ8q+ cW;B?P~\?ղml1X;13i*aKS# ݜSÛ֌,)75\03:oggD&#nd@mzcy\[(WРZGrtZd,;D؃{/K"NU[ r.,3 i*ܟD*cE> [ P@o62]C $*ٿmb5"arDM<+)e(=$]8p'`+]jұ ܥJ0w{?b8KW IKM|V* XD9qjt& -/lcFy<fwhJ)HYjc]h{2c/A:o˷i#֪ՌSRGܭ~-owՀmlx&6wh^~؃;"\$u(_LE+?Z+BDy~SXb؉`쾃/ѣ:|hS6 c0C\f-.G?ssdۅfė>dѼ47X"r"ޠ?st^ \j^UsPB4PS|K };hQG"a_3 TFeXaW9`a>K{-{Y|SkU 9?7ꡖaHImc$=tz]Y=C]ipPU+ Hn }7LWfu!Aݑ흧Y wIcC8 v>g i.^2yldF6VuBݝ4t{y J>MH)?O{Ҍf+aUIэT6?P `0'ԱJ!A*Mj!AE" kZ*$<-h/{̓]y jPL>HfDoBN ̔^]o-`~tCVӦΐ':SRYa*RV5FjΛ׌_sdQC] 2>=vᅩ>k.F.Hp"M\2bniwEoI8HGSz~0,p~|%!`cbgC& jlJG-|rWtLs>灥NmLfDNIGtR^o}|)2W@)?t2?fP{ߨ!$+qU*땉vYG!aiFCb^fe>KNcLW!:x@6B>dSknƦo;\2N*$rL®xQ4!J>_.4eLLE @l<J8x{=]T&U\.xX㊋頽>8ڑYp8JOpGGx{o9RfQ"ƇyAG.Cl&J@/rmc_X<(1'o*=iw U7wXbpIL@[uXݪ]%v8]O2?s紒+*䐨͞fs{/Z@TK+9Y6% '^P7xގWrCsP{2%;N :G13½Jfa%ZɫHcćgtF]H*q["TX< %P,q 3ʝaOܠ#ґ)p>Dα"M' ͻ|=kS=cF50evi'=`po=KӂEz@[51XRe kQ"*bkGXI{ xwc4d.@Q?#qŴ8af+Mޓ-+AuqwKuyi%l p7ȭ`uW:N=$$wS?q{_8g \C|]PӆlΏ*aGDߓSy"ؕjR}%SNO)\=ߩ Yy26ǚF)rE&4VWc;kQc :GrQ&U<Z 2vZ7%+.yg 3WG2;װ{(^Z`W9j9}+/?!i)Z?"rRI}z?4tvaMoՒuB=CXMIL X1׈x`>Fz09nZ ~E`36x0ԙ<@}jU3g2j.GP+N{QfGdž>ŎDt)jg bƢGy#{g\۵Z-ǀ-WI%6(ù4 'CbÍ/7>@_:a†BG/|yixo]XDA5e7}̪lMQj+ Y4E4%H@z HYjp*ԖJas|M1{ ͙Hc2 ~>Gʧ%{3Awom-9.tcKohS*8n)D o ÿ:Fy7#ED [ۑah߾FݶwTjbot_V{ڥOGY 6.JLx!7iM/WL j'q|b`4? k*XYA+wVU 3ECBIUtמ^q\a997xؒ1K^#&d*En63Rjq#Z iv饠a PEX!BUF}21MƦ˱8ռ`{ ]S>v#-* YI6ٺ ? h6!$@;[d,O ɲMtSN;/䷖-~6xT$90w1 }hfECmN5B'Th:☖KsYF`}5s_5:Fޡ= BH%O=faUp u!9bIs}E\(K땁}׵ Pdl݃}cv`?&vP.aNd@dݱZo~D,󕞖k*}#&,Dhi9`Ez Q;> `Z'sّ\vi5ݡ,"bj0͓Ms\`e*҃0aD-qn&fYWtt2+*uS2!<0 d!e(h.-Frb#VjdN- =d1SbX:!enW:DrnvmC|w}>RCةc<єu;yĿ>:XG4g\ ֧HZ3_ \zN#EXBG0iȐr7X2xm>/W@h/*"Hh+JoOBi&ZQL)FlW%G(a/!t;'1OSwn{Эdu1ܩ75 ҃nkfH M:+A"d}&S u$^e_dQ@M(*R;ޏnHIk, UM5cKe>5o疘KJK [9610ykpxxg#ڼ7b ˚ó. l5@5BvT/ X[\B.7`"e(e.a,7ND|@hN@)wDC,Sړ) 3%pw*3V .\)/v:Q2jfSX 2r Dyr)q ٿU^H`4]U?P ߢD2z.jEћ3*3QPG=\b@]/ѠW.F=E@n }]VsSx0I -RO$n*~AR·Y4R&\sw&[氹e§,\tKKV}@~zc4^/Ba*Ck7EpLM@=xqry i.MweA- W9r&~d$.)kcz z0BP9\9";n5j@VN~eyO/nrVOnR0uuo0OG>9V]z ,d&:wM *9H ݋=T_>'Ԍ-';(Й3 tds|AEuLnËx2qiIsafJTgӥ@ia+~B&!5E7tOۑ]KեJ%l prO#nAN37>D(6%=s slD:iiLpxl(,1Țm4e6RS`7c1Qn h; ƾIAUu}j TS٦jRA($? oU"x"K+m=t?$]D{qXC G,_}7LY ͝8K8]˱6;)2k MV+/~Dʔ!9 S$J3ƌl0ȳ}z>F2P vheX!8oõcIq}w7% .4BU?Xle~dJVr4U&^r*V:ʰh# L\^_H4e)mX.Ie+ [WM#tL:?G@9tT4*a8{Mԙq2Kzò82-5aԕ4!FSӂLا8%֐2NdLmX z}9e4z/׉7~Am-*OP^[Fr`+w6~ v%dS \QF(4H [ώ7 Gaʹk2c'<%T,}kg3$ ?*偦Z2YfY<"a n'bȾVK9dW["}X>a1 4<H#v)ZE@+uB|I(DZZ @}#86)uF(!)F2]j)7C2J;U`헂XysB)WZ{ld;#W Ixg-GtcM67Ыݒ7IF8?B|Wȭ1d=L̓=X9C7y :nDS'S38-Rw^ brvIhGt7_485BP4B#NRÚLz|ڦG:P'7qn8:ycS,w&WP^b&ZPć$^5M)Í d<Ů92sx$-y Lv4H"k= c(9o.Jf`TgaT5 f 1FӽM-kK{v!0uPGxĂ^אrX^)󌫚`EX%?Ƈ򆛒*$@<еhƯIA֜}#L##H;Y212T8,: :&|%y35 0M(ONAu|riuh75sM|`*[Ҷ> Qŧjfk figh`(F9y@ B+R)/bݡqCBva4, KWOhgQFh!ng̪{ξV%[[#|DkvƹM+ ?ǚAɨ郖XTϘaYɗf`c4ƅ$ t?[2dNK& 5(CDr0w`f⮋WSS/bVs_;y #vMAe%%1&'0'Xk{@`@iJ,(UA-12'd҈)GDѰ>O9Ua;e|e=Z(:9A64GvY$" EKT4A]YpdRtef 2+6ή# j2K?4PdS]!E/Vr%Ke4auC1v'u^Zn+TbځP+ԟs})/x}V0;g_|<7X<B?tR,h rlPԡzwjY^l gJ\a.,;a \h5P&Q-_YT-> ЁByFǓwB_B>Xrn ʶ'Aoa?X/ WnՋ.5~M/3PmJCݐ ͳٹ5z?? Q3tg/YQ㥕Sc V^Cd(o#uF׵x< p)& Y!)'ܥHN0o 881R\j0 W~O=.9,N8a;Q.<<%kz c !ֵg pfK 0Q'DLxogubܲWzXJߠ!V!IH'H}p<.&(_W5AaQqG5X`Η7$Ї[+n^ёYj0YLF~>y0;$R[#[dSbG.,.ݕ`Haۮ'}iЂNⴜkGeo7jj#:qP4GԳ K  Z3|; ( lRm2cN*Qqc8=sDxr 22]³<, er IGF24q(:z5KN:lK)XꦘؠԞ#:(Uz V:Q'c2f4\Ig4Y0K6Yy%' k^( ~ ޕCIJXmI&@^ XxwgV_|I+7ո<_MGچ4\t9|FCSM@VVYK%\HuCt+fr6ý\򙑅6 AE] l@ ]SS/&/H8eݔ"QLPQuW/%'pi|/×<ijQ dpơd,ȂQ\:Zcn<J*vy#`!ϲIcW>R@u[b`QI(;h3g[X"b}z,Y;q'2@i dGu D^ Tib=\yWp=(ms4PݜOvJ> \ DF''|(!%<zш^)SSj4dQS`.=d:R֩8xdJ<^l5b%ZjQ@%qJȞmt5j(BM}oՍꚶ(W#:qylVуfA:%Q'?C v|z/ILIֈ;0x(cb ;FQ΀ h$9!俐 j܊؃ʙ:Wż ڨ?#pe&A{ ]xSF)#~a4S)mQǒr]d9=yD`wg=]yfruiU=!ʹ\ QuśzIVNrY[$2/Wz @C%?%BF4[@W/|[+wd2ja'n7CDZqz<@f$ykNK@S,}2! KD1~hpCM `lL?#C5b>;u(Q3tp5VqB'e̾2b؞ 3p&c}4D<]t=-hP*n!wO$JK܃XJ'\>]iS 48c U?-׿,wwe3WX6@>Ck ł>M6j,hmLRY9vir ʥchW<^"&/wddbc=c-/29۵],Umm;Ww j;6)wRYrs.Vxn?!;c;⥦njߺ'ҹh*l]w |쏴(⊩~`Lr+ڃtp "OyM]:=\eڑ2F q oA /!wQL#Π:gZ[QslM%'F$0!F=$젒JS`w{40k#/uSEo&,̳۵\Y@o8Fn2@hV 7Jml@e>ޓHBw;3vk8' OCE{Ryh0!xEq=˹{OO~*T >&iREK<դ4 A9hk dCޜՄ+_L$Pжxuh"qvKdJd0isZYΔ6<^VSʄ6N|y<>] jz-~*O9ͷ}Ϸ:kR btY{$nuIHEɨѱ|徧d4(T[) PXZ/ LYAT?T<,li2~. `#?cO"Ǘ~_ ~ǡgUexXy%@.-tz۝Tˉ\C2p {(>Z$,ʞY2D8 E)xFE~$p&%m|am{jѾQ |;!c$˫^h~v #[2: Zro: ˤlG,{G?LGB䘡o䆦W)Y?l`1 /[/߫G. DC ֎3fk4S =<|+nbÿ!џWH&Mةπ/õ?oSҐH}HOQTa^R+q\jQR)vPȲ\x `,Z2g;|}B\ G8XKݒL[۸y*>up]8Dx{R8`@7!gXYȸiutYjlEI<{d(vNaݦ$|?,HK!ղR-=wLda\c+ k3CQq`VWa赇]Nջn:G?"b1@.6fS h-:OGڳPx]Aݦf9"~'ހ$_y&(UEsGs Ԃ:OUuŠG:f`s'Aۿ:gwj7j(jj? v`W|*781 @>s*9Jޥ2ڲ+K\(E>m:8#~U+9;АBkSxe#ɜN,0 ژMd:+N9f|ZZnzbB9ܯ2}Ewr.`Ki_eHP pιr< ƙ>ldِQ+rbN, ݋(++I1&XW ImR+CD_B"3^cbU! +=8ӵ Ո3mvĨx]ƕ8JEbӰ-B1b$D ]We|'ham#؟NZoK?*2|d|NEx=Kߧno'[? !9_Ag^SBS }5TJ_/soE)?NtE O jr:'cbhśϹ&4@D i;E|b r&~ 9/~i"ݷE s0_sWBur QqJm_Z=mk`0mQA@1 xJ6%`&1 @ *<1֩L%GּHbO/VO½ྷS7nL:"xw7&zHE}K>MԀSZp3j":!/R]72NaA+CΦ+To&h (0[2c5Y9I 7Y^W^ʷ aK;T1*3PI7t'*DF0vْ:!O1~LLbp98r A-(msZRM:ЂOKM_8갯.: HU)b<(yN?1!cQU qΑGg=CyRZ< W?Q'cˆܼ&`nCӧ{#ws(;Kc [wķ0Nd/YbMXqq@f51d~;lP cCyA*ڴY}<3BrMc:VPPs>KJ)2&/;OP=$bi^fR$Ԕ.QCB=WEGECfC Qenl2q(3V |6JMX6s(gu=5,^~N#6 + KiQyl729 h@L3LQ0wtq\n$w4mXc'UIG[o'⥋WK!JUhP^|<}GfoiG)H%g%,oIJ!Ov5ԏ5@G+,I\>UthW1]jO h[,KTVq2Ӟ+")]OZ3 ̎2+b5 _\9Z&ffLzrjd~k4ƓK B T2de@Ji/׿wi"c7V(V#3 */]ܵ[CjϣoJ`a8#dTV%ja3Il9"0^ScC3NkFکGhiVS(drufv|-aߌ9ROPLD9Y)q^*="UuN,jc0&P،Y2OrfNeV*Q=Ŀ"#}I{F#37[D# JV*Q-ɶqwr>aZd=SKU'1]zWnֻ,5YkĠƃu^uIYc;m^c@0S){ǗP㇝*㳁f\׊= bR̩\j V_wi):lE "H3WR/ 訑3zN"]d7]0iUu+?T!,X9t^X+iŔ}?2Zֵ/[*L= RTץo?14 hSdn"|",K]R5NV t8ke~)R\5/`~yu}Is-*)ՏW]UvIujsRg莞;؛'AKwgeЎVJaPc$,1}M-޼m|"o<~qXwoi W@>8[s!nIW µ5eR:>6PG:#Gby 5O[$Rjy҃psOˍӚ xjf ]9JƁeGxHn 0vM$S܀ 2LxTٳ&[jp;,hGx+20)[> 85Mq0DNY1qpva@Ca! 1Ƕ 4geAM;:H?DCaPÉ.{C:cfIfC<9X\8kHja]!iii+K&pE*se1؆-0K?eK$ x1Y҇8h{:\Gc 5> T|&㏮CV6VbG:_}s1q{n+݉EQHgx!P OYU(l?܅^3ئr6̩G.f픠,t )e5{)v+GȰZiQcm]x6IUÎ]@8jɪSj+}wtGYw4'ֶĝP"5*czRQ!;O=w9* (rhgGs-f0U5ui,:EޫʁM;|Yw+鳌8܍-g*~3Ɩc |r(3^l5yc 'HŒ?■QbXB  j@| D8ڠ\~CONJΦ{>1߶h|^=D>[Jlo {6їX9EOK7iό_zY))B4Lrg({&'dxB>fFlI(: yDQl j UZᗇo{_Ƃ"۔KO3P'ǚTж_ AȲ]dŹ=@xnbªn#lhNP_* y~z643=>*BrpYy1u^KH%tqg͑:9t=*1/Zý(e vԀQY0%JZ ~dQސ]|pXBD% BnՑkK;m|ǖƋ2l漮ytT_|#NΚ鬠c -0 _֠$G0èiҹ:S+3R[AA!>z9yi)4BEMe1w}7&Z`h#f.RdBųCXBm}-H([MRrJ_h[zNuQ5c v;Ou8"FbYfxj/LưpŤ7f ${Eİ? V}<'TJZiqg`xSv&H Ts h'O6ʁA8I.p<%뛲`W.tE-=:2K}1 oark;jU^{Bey`u- W+O|_볌 9r+LdB)H V/y4ʇYn;q`ڻ$YHE\l~wP2Bx7/EJaA;?u7_kaW-a)@}1o17)Fa+3%Q-GA@~)@voPm;hU|K᥹kXd!J"R<6(tzukbpLI-'aX %avdx1g=>cA"=,=S1lk*ѥN\ Q{)Šn^$4asnz:\B-3ClR_m=kvҫ_N?x&A=䜺83݌أ( Q.yj`GYoUte(B΄!\~慔Lm !sZ) 80僓/uG>`3J1Y7+\H4HH+@v}injsM 1 Ȥ)H8Wew3`0vw2RY3|l-lV#Cܘy2D;vs[6xDRݚFOæ sMpL H^Kkxv_ҏ;iy"y6)kNt$Mٍ-+\9CQ|^zj`ZIirP\)V Гa;Ґ݂X- R|d)ݗbW1+: {#cDc;G9[5,들F_b^?߆'#Kp;bA=0R~$R&[rCE 2xb)3j]KFlx֟(6ya \UzIᩄ[uj\œgRٻ &`e7"4R7S+eHMq:f4<PU:9m ?P-șD{8cJ ߈kB31HUPUN!Ӑ hPY׼cJh uS:E>U\#=kŭ!w';-q;~я<N''!&/f M..?5ecJ?Qgr:|vBٍ Ϫ27 Ta\@̾1wOnqƒejKYFxx7DNG tP=J&T)'4DLCYD֮낑"5K{oN6V2`{fMki9cl]4)SV[yu]BH)`,Q Ir%4^=P2%vL`D'X¨GPk|+U?ROzgUsѤ*zrR. iHwt?Z!!h1m{iB; 幧]c6H_ZES|y{SR(n { Y}Q|c}3;:s6j'3N?X}"6sZǿOLK"WY%v%,K#'(߈IJ/5^$jO EpઊoCEلI$Hﰜv50fbnjz) ̔) V~:9g( 8f5iG"^a4p)XmV9Kd# [W5úuUp_wG^UM#qDf%P/vhLi+,۳jUs&%TZ9-~p>XkM0By%" 964`|__5S)_ mOK,qrZ/9IaYRiƒ%q|]Va\s$^u9{'={Z?y=ÀC+.C|4sIYo'e0a/?euזڛs/yc`2Yd~=-.lrJLRk\F>7ںރݟfZԆE,N P # S(OGA\7KTLXW>7%lm>muǪ"\q16%D ~4u dU_JV1<V#'&3͙>:3U[Z?1HќXQq&}<vBm,a9ۢ?j_ ل&h'GPDT=pb{4{t{W\hSBlrD+fwP"lIJ /"^+F R=Pk=R,\}V#+DK>"i|P|(]ɪ:#ׄh6+Pp#2@ƹ"%{EWsLV8D "SUGCR wEwmY'AwkJtSd @Ej 6}I[!HУC*hA|Ԩm}dKU]D.2=LTYePڕ4d[&~ @ܾbsHҩjhs"`aVJC`-5w?oANj,h~+ 䪹!eUx|5#%?%-iQ)X*rH\,1Z`4!>A|=uGَayˌ&rꀑ_6=w 8 gN-.$&VUYBKVrSn@ܰ8-C40[8ì>PΈlRkV0Bg90cW|F & uPdF ;3,N4{7CBێVNWxodzIC=X}ۼ1~Uԝ%)w=`)p?r"qU:MtVh \p#ytP{e5pn>hW(HZW"1+i#(j qBJnt=/,dLM.\5$s߇*# @Qk)<0-L.DjE{!CkOiMjXc>&%"W_1v1 V]^t͕Ho|k7Zbs2s~K1|k; p m9/A 7y<4^#yZa}ڬt'4x\Cf$P#۳䦧Fsb?WvE,1ڻ0Nnu{d=G9%,n{ᥣ췭ڰ%"0Vx(iBų嫶û4= ! )xtv{&Y#ͫ r//+_"0$Qm~j հM&Ns:+ 0#MH|'2OsR?𵛉_7r"W ;pq+"Fd&ua 49R !2^OՀO2jp;U-/wiXg 66}L(_LKzj&D|xکNP FO[S1۸@*$L}UolAB>_8LC,zAgy*kfI]Q qx2 sLK:E^77QPd6g4T2UyB "+brušɪ$ǔ&Blq,VK ~ec?Ro;JphCME)SH-I6'<c]Sn `-i8\iyi|>|ZSZi2->_~0_$;ƴk'^MG4}ﭒL6Չ3g'; B@5ѽ-CUp( Mev`[8w`٠[䔟/ܪ*5՗AJ3y83 I~C: / \z0tUBi+'_^[5Ibp=/Qc/@L7 zsdES$OЯqe'Wf:8)M/|Q'ZkqPs. Z:ܾ=G3 bqShJWLjSHUծ|OsA|̯4wLظ0rȫO-CLrUPj# o@k&4>9X#u-yqʣr{f~SuD4Y#8:6xl?"A_LahP vNF[0#P_^gBFsYAU԰$WoPu^(y=KnOExm0 rK \Gdmus+4=AW3cE3߫)2y,𿫔GI7!؇b C/WD7JZ6XTuIkRk0zq̃%ɼ~ɫ#{wt}}Vir O?HI=YR^fD=1+r4 j֋9XbX`w?28";8Rrtר\T?a# 6[N˺Dʃ>Ly{)}#3?cIdNdBf-rd= סyt^ G E&}SPV3̲(V.W:|E5e9艼 V?,Ĩҍ\2V"2AX̥]мjS|_gvԗdDӨwC#q ,uDX#H>)>(V/&on\𘸒a'LߊGmMC0K;|7:W mjNF dD{YZ\VI-È&;2|sh,MՉ-{eï^18#~&F~ Ylc$ɉcCvM%?ӯ毄f4f"=+̈t,ʎJcP4$5"0݈5ݬ"`;0T器(G)oa6.C޲7ơ3c/U&ԀʩI\M 361)̙9~^e <q:kz#duXp@4Fjv6W ҇mFd&6,<~iVT! \OHRJ-.FX$,\e<$j4^1+`ewN{&/2jO/Po(($2掘Yw䣯zq/;cnLo;VTϻek=ʠl62Ua;Ol3njm V/qڿ)y9dۇUl{q%E!FNIf~_Q%FAciy S xGQ RGb贺,T%f5ćRJBkvX1tZq6:(F`{]L4x N8EhI N{Fnk)Ǽq|(sxzQh+VP]ȗO29O\M<;IX&H0rSq7{M%f]X6WJ<sRʂU65k)}|׌M gʲR-DT ~[m[W7!i:5 (vamkxdT- ܶFouyʀ@WR<_d"6GnxmsW3`A9aڝ}1 ʹp{Lþ7'Kݿ ڛT؏q_v_}ښN.o7աF +C)>%"lx!y[NוzstZN`|u~V.Ć: ;mhM( GeI,^1|R#G(5v䊮 ^6Mx]ὠPmòjR2AI>ql )kD<(!%>uS8r,\w5;1Iz 6ש Ӹn5R tۮO?S²)6GEI(B` թ%+3I%^\mm|t  f|>62-lM;m[e$jWpd S`n C.ʲYvߩwQǠnʋ 8t-!(u%ه gtB d@s V#6w83]DQ;ʙ<$O9ҟ 1SEW%sBڜ HpZI3@q@5CI{ψ%jػcofCZ fh'p6= |#4)X!Ik˛GYV#p[xU zw-T ?Îa2vvzb vwEDKSqk&O2aNř4pږz?΀LkVC ] /6-}j]~R疾2|̆V7f&HL>_| kg$tG[bPŴl ƚ9ݐ5hW8aT -*?,~odw$;UwKP{lzN9Kùy/;`2HMOz.Aߕ%{%yEqW&./40F}`/Dq&Ba2w:ݬvN ; % Hu@$^[XF"Vw#_u-%(};f,|u޹A*O/Ie’a;,3F%~՛STHi?s:ErcQ֪ )&T![p <0$HQ8,5.ڌ!u^Pv`{:~P~II%7#<Ǧˣ3so7CjPTw k8tĐdzEA.w[h l GwY4ɔ)q-&> <6O"XJ-#:tq떌V\)fCTYT%_h/13×rS;q6Ս!PG钩c{)Tq yIҲ1kڣ 4|f)ʣ̇REw>wǽYTrBv͏=WO68ձKAoAx up{ ٛϵ/|#~@iEſ KGǀXmB)=glz%ۚcPG~NÒ%dF2xn '/sO1ts%bLdjr!ɓe Ydž4jD↕HEP9bI&״wD o1KoOn8"K#^Pu.k;ʚ\p*Oކ|QTA媬 +u('9*Hp݈9HaUg )nMy<qS9a# F#KUm8d: DZD>%Ny}ـuEb^~KTS ;-{rQܵhυ2Ts$R,} ğ+PE=5}L^)Q2-{hvQZL fFGD0N>4hB, ,E&9{>Ѫ8xc'oA#9IdWs#2/O?jtUME]%_UD׽tk7 i6O?kLlC"Eq|@V3/J%SOС.2jӛ>0X#[%f47w:/aA&~8&I?M$ҍ^L{ T. /4P|jvz@@rlU]FAtoh|#uI^oݳ:BmJ\nQ:+ 7Y1|tڬ[/fG26J7^h;[ӭxjʯ?V`偬t犽(t uJomLXBrNa`8MCakE$YL[mytn.;՝/ypb8&YA111+,6^ :n~S_lGJJTsQFcf^[pȐ'Fܗ{_e.1<͸#2+PpOu~F7MZR'i[/<چGuep-AjgzJ%}}h *io1gkDPl-o#?a.Nc9e=~N:X<9 =K ?T9Za 3Tm)KҡmLV iI(Žw45`u{9Yٍ'tu'AeNЦ9B'9!rt ܉[/ vi".k(WSRZjYDK`&GSx2SkɊm"ObHpM Hx n&4C7>>`{GVh܃E{#mNo(u+*9'ܑM֯iݔs+$hLT8?]P <5_ fUGj`}>ғ9qHP b~+8b ldYUȨɵ __C=+ܲ*LQuQJ6n?w[$=䪠kBܑDuBW2}m8ͬ5U!++|֝vR܏O9WYDXA8<s/Z:u-ayD/ٯ?{M-h>q׽PN!5 V<*F23-\vp[d_6g?lN Y[C1PYKM7<i`݄[H޶aee/׸ M$USqipt"T[*P^'K8 g֩=QuL\ {s6OzSpe;}/{&5&ydtC˜1\sv('lN·RN-쏴:[Ǒ@[co]M"DBZQ w'C012#'qR2^pGF=Ѣl*d/.# pΝHw$_ "m!# el-5}o)ƟE̷FqVzQRI\׿L{"reG`vU96[bU(J5|nMVFfwzZFZWSaH)] :JӴ6am [p[!T9|ό"7HQEv/cu[dW UϘ0Fxȸm.X;?+qv x j4_[FiZ)j85P!1j<K>1Xȣ=-V^>CYj|@f=&> ۴mmd\*/ 0IBQX~/:dSp6ag IO}\},XZX *-lāי.ј3k -kPnrLHvV9.xlEMj:Ud9#Y[:LLZ[G64QXJnEzm\,J؆8֍%/l4"i,5,x7Ƕ<ƀ\"?ξxObxrm3<ߐS ۽O"ÕkC7 ci< ; ],3؝&AEiox* * Ԓ8-pP@nI!q#_A aIe\(PO`n֭_vy2"h2xyo°ė2&3/ed9cP=sE,*˖u2I uhrz?6y"cO)Qgގm MW$g WєV/XA}|ﲰmLW䂠C 9%}nV/#X Y'Z~ )e 9EhpǦ[9㋃gJtDTO2 *bʴ 3؋VD{Vw _G 3^qdgM8PG>حlu1ah`yYsig5$-t9 C TG Fˬ(zd5NKh!X:컝_)||[x$#Tַ&)>g +y.;fϕ>w76^PJmjĸh~$B$VrHf> ~8̸5If)e& 3 2-rm#|ǫ$6Xt7>#/hp|g]S86PJAH{%m4f{ O#XfTAט7(ָh(Eۦ 2&Ԅ6IeqIo#y![\j"MwxQ|8v!3Jy19Mymdv]%7Heit ('VGx4]LM2E.Tkڧ̨TY,T9Gǰ$qD74ìH`<`nY ;hCsՊ[ߨPhm"hh2~f5޹h tEr6cv FV8-IuyqtJmԨ剻s)>'2?:!Ս6emxٻvwzaM7jl An8g NVxGiϑ. 䗅nymɄ"0axcBAW.4PGY6*Sf!""g-W:`W48sUΓhl7kTݭp{Ee! T*]`1?LeYё也qY5R}hk433 5 I} Fbvrְ<.. $1 B7@.HU), ޣsWlHqQTFy`0  ^a!9LJsvvpaRYRp _oopP_$[@)LJDr}ï\z{cf3da:F>4@pp0eR̈Q^,5n2l@iݰ\;CVv9|wx5wc@Ew9%q8Opӫzh!U#5 4yTD kߜ6` 2i@gE湴dxOCNڄz[NN7wIw4IDa^-᱈즻AW,n+ڏpb>G-DZt@NOwfޖn5k<(ԅ\'rv|쵽;rqAf^Db/F}h8U~ɈHo.>>Rֆp ?_-3V ea6ZrFUboδfܶn ԟ1py@& Scψ>ŒZ(7ͪzKWwDp/4 a5$;a\.tZqCUviqvHssi 1ۨ~8ӔDoyzZ C_I"]h5p"14b4`R'1y½>s' NjG#ty +MEt3n7e^RR޼'Jh;,Z/z޾ZOd40"e5|?!n anȆڶP֠()\˱|`y@3'3&sDOhcMpu!b2čb}XIVڄ5&Iei?,Aơj3Î/5V6JwP[Kmҗ._=F5\ĪE+*4#N\eA/]_eXO#ϔ@x3.vO!jH0bh"TOmC(8 TWhj HQ]^<~8kuS&Z]qPP9ElUH{ll-*atפ`hEs8*E8ĸg: ռZׇѠL tH='ׇ# 5)I 2#P PƯ[Qk[`s Yw~€iA2{BK?>7 RLx.ԵE8a3;L4; X"ǘ:p-ryf^-s֑KeٓBCsQg7GLk(Q[I7teBgB#}SEF-4i&\׾vskWH* !*~#njGb$Oy%󏩦I 6v)`t*ջꙉ>*-jGS )N,+avLp5W<*f t-Fz( گO/!M %+#J8ܪ 7iѥj𾲴0ƪ|uzީ@M!<3Eiaz~wV먤.w,qP]݆ ^bQ8ۙy"0z+!oMyR}i*aa 0"qTg %x\~1uqPJiU(ˌl&$ba|1^WrJSD\[:drWDYT6k{%JI$]d&"(CJ])իtK|M_cq$UC\C.,i.akR5tÀD2ɣΩֻIiȾ˝4)$ GeQ{cDN[/|W(錽tW/aHթw_-\D:'TJU<^H %ߦ)#&'w:w|v8OI' EgaKZݍиl`I]pv1|ժ^:y DgTlX Wx8bLDQR@244M>(ԇ0`SBaA(brR?tRҢ :m,g)+5pv,NTFg]w| єnX%iACuGFjt[:jm[ф!Px<^B\:EwӔ} 3|p 9`?s~]LkX=>Or,i$:?wpԫ! %1A JX; 0H!*LhnM\_6~8N)rHv -tόјpGRO}Nj qC+Np ygU5G&RjC* )0Y ~f[0uS\sjNѿzchHc`,3"?x?񖄃 s¶[$Xw8g'#S8Llp1a;D'*DvMÈɨ1q1@LT7L jVr&Ktԧ&jGc7r ̿e0ʨĤ~s#-ԣXj W38iH֞ eS BCe?IG̓tcWU,Z` A}(!JVt< bIa힌  s١ ~J]&A-ٿm cr>ዡWi_ʪxMesκ{]A7ptLm=YaEZ+Bn5X{I^` 8L:)P;< `?yj"xYNZ {ү]ꭦ$cl953Ի&Jah2\/ʮ6j(HdqP\#!rcӇ]33 gUs8~}*0CUsuu@?XaߌaVvz4*eZO.T4]CIW5^0&l>NiUVJ=C ?;,Ҿ KmēFXZ[4R*4༮+G" Lb,D'f!X%SnGνPGݑ636Rvsеݫ¸I$8?j5z5iS1biޡ8B({PڤZ)1u.@_3/MҡwsM^'=֭qFd0<FG"mEP[n5\MW@"-F%+P^Ov]-[AQ06AxKsp J r=ETڿQb&L!'Ol ܬ/s~OfvI0q8QZf[;2dk &'l%AЩ Ec]FE5sZgBKt:^z%37hB>2Q`Ђ+:ܫ,P݄q:n'[Q`7fM%7Pc,[m|ᚭ{#h2%H_37i$@c%vߋD%fK*\Δ?i +FUbc,R A vq=fFQ1[K ]`v[.̓YZph8mm=#3w *Thx/Pu cwC^+UXԁ TX{"/-g@Ve S]%Q?|MwPiHpA, PHOe [̚)^Jivhc zYG!;1V i5M U1"1+^lJXؐ;2J{@+g%ޖA48ui>naa@;)ZH8D:ʔyjh4Q2OF7 a,dZbZod n)H4!s8^$.bx.gYfazBW ҀJJFέAi{|PJ9ee^aeja;f : htOyDHpCcg "GexEfgb٣{o7EyuS S;h R+WgkK KbbM7IAGWh6 ?vi5?(^`0l@ǖlxtM5˚P\Jotz1158Ҁ֫;( &:A꣮bO `"ǧ9u7(I }k"l)YA[+UOӮUh3#N;03Lp!0pW&/Ma@, 0Y~kTKUE(5Cv%|8ր'HH{Fa|S)?QBT,.uf[l|0sf[3NMhbS9:0v+(lsCC.#Ce+yc6Т }4[Z qW+1PiZHS >;LYT1fyufZEhi<7P2.ieZ[Tʒ!YҨwiUlFczۥ-Ę8JHCsE8,kz̞2 Lyl/[*fq^BJn O{Ca~[EZ0,_{bx8V$28Aߟj~Ng'R.wYD.q QcnL>z¶D&MgsYGG}wm^>!VhVʠ{؊]G "8;4m ҀJ0l V ;bKn<8U#d IM=a0IlώvSjƹ[p?%- Xu)t: BVWSyZ% &j w9tv%8aJ~[" HXħcS h44(bo>M"2+u@u5'J>KH_T>;~(,IAo<X%N/PӯH$b0gd;>_Rm0]Pp=HS+#I|#uVt*4{MSTo[6x5^W޳au\&S_Y|P-[VE9:\:HY`Aq35D*D ^)T$;ܰ>w0LKۊV)HHv0Ӟ?i=7D`ia/,k`ռ O2CIK\ mZÜ,0<}n-@~ 壂>$;k&hv\"+PiL,uM-?Fa6!Ϻ޽H7LHTMS1Ʃm\(J@WX8StCs69㠭Rr ̧H6Bt5B)|h>e+4f 㪆(PՔ{a0;uEmZ嵀Lke,_n*m5^`D 7h6gob?^˳vt ):jġ+5)`;Ko=Xϧb ?eh0)Lkk;L ?&vj)VD@tW{F鲆)gFt !%ǁ {iYXJKR 'h(n,ckKxrCBiɹkYMuo ҭnW"mx!x/nq' N!a |V:.n[Р8ː_6i]1<^zruZG9OlZpRgڂTdždn0_I3P~1 6٘+W7>təjpaM|wMM+gE6\yz?ÔɩF>jRWYt-zacVq4&F8c@>}'XFBOr7Wx_`GsL%Up@}v8`[ " }= %,Un[#{Ӵp u%s@X͚H G~Uu{N/2ElVU{sK< <5y ].d㖳`xJ׌ HNEs+j\% m9;̪.wHf:4!\E\R pmCW*>[(Fk,Z$1r8 9y ҿ" nZ3qښs~޹X>\95b@Kr i[>Ϟ`ketxI?N9lGhiR;g9@ۭGfYۙ{cC2*6/~Yd+ݥbM|t"%Ft#"Yہ̃Y[zk6&G:3_ŎAusCEXs *T>MY:?)weP6E;E7qtiBqMs 'IG{{DU+~CJ~DT M7b,fN uY_f3%e7n OwMA\"*Ը|PXk0a]( p =,lSw+SgB0z! mUriQrQ1 cDA] ^Uxڀy\ M Og\psW3Ƚ}u *d9N1vIo躃Uzp/Lw?x6Zv,Tfx`suH@.܍J<.s<ܭ*#@ C3=%6愁Dij%^DK[; l8s3H_zKYwћϼ݄:%#j?uqoҷ& D!lUOa|=uKcz͛ʴ:!Sr_Y"<7;OM{}o]o]Av */%q)W)*b'n!)/x iB;"Ms+C%-]/ R\/zDyt ̢gd?,E8ebaeAm#ջGgdw9Kv_$0 CQNJb-IS"}}ƧuPůM^ О@ݰEҲ&9d=CVifn .7'Xig:H!^s,ӡW؋v3hB k.mV4|'tS$tT^)#OF>eى-e[fE2R'?wd#<;p4ӛJ?pN:G004Ξ=]xy#6%CYҀ^&1i^s!H1sxHp4=tgAT>p|ޅ,0Xbs- 51E`eͨ^u ֮7 +D$kPM~hjvrO(;11C8:YW{km>fUCn';#g|h2EzگNQU+IWir_ & i3,/{g[={]R\ шJ]UL5?޺Y "4,{D?rnrF26!`O9 TXwSy\eȈ׈Dtg?;Z9gTlBz7WGȑux Cz_vbqL):u.S:K18P]|d5/!ȉx>ڣ.6IMk|2 l/襯OH(#} _f~w[ou]jE@H6NHZi iӡm |OY*|*_'L./2* a08`v"JF'٤4mGMR:1`s8uQ h!QFƃ#_RФc<`MnE1RELqLia7׭ϤD3rmT0[KtK"J6\úX C=ʼ·`}J(&qkV~>h=PL{f[)2=n0X7ѴIz귍LT;KE*: ~~'HGN)C{ t# eV͸uq3/Ǘ-~ɶ#.w zt.Pz3  z&:jr0HMhגu:gìo_ŸZe]Qgms,|6ø+HlZ8L(0"Ӧ8g?.ngϮ AQxXuxىijNxȇ-d \xViOn¨%~#fU KO_c[ SZa _mliQY۽mfsssbDeS zɮ0C=YtLMFDOtˣ_#(wAMWĪ w#Ht]7)PO)7G4:nh%lߏ}QGqe #v/OIP/3AuAŐgZ'0<Q}t(5ue)M1knyyG~zc4 Y;39[+ɡQiڽs3TQWv͝q8@/s B>l+zx>D5Sn}VMRuzٿ.*p=&мd@ J_SەQ2JU$Q[ g $tNuNJWCZuEt dZ r݊nx79F\| 3-ߏҾ> `q K6Xv ?v(U*٘%8+ҕ۴irK$!ŞS}q>?6a!qZ1%ib9G~Atc*&/G?Q')g{%\#j:s5h=|@FƯ@==c[e< =bEh@<2T0S&coYpD'B<άCgFWrzu` Zsڶ 9D*vjZk&L\CN&"'TXGePUǶFV8ao8mQ-`OIq- iŦV.l-~rޠUrk~&fI*NI>P;#sTcnw,wL2Ua(ÐxP^=0O iD޵|DY`݄;noG6P]-uDYg)1,Q b]7V{]CVl%1g'ᗬpRV(N I9.is!$uc.pަ7L{nai*Lm|׿XN`dG'խk'Jl$ )m+k*w@zԴ [L|THUGޠf2Q[Ab@S*r \dMS#AHGbSK*ť)'dט_Je HL}]$Brpf(n}ޮl:lo;+g4R7:E}c-K.Q!UFG%<̮(\ O[dEԔ)( ʚ״ySAtpu@$'E44S^Nm+}v-hm Ֆ{VE[`vZ%(quziD zP 39'}  ҝe~.w8vs;?ptHAiy̴=D 6Τ5s6OZ ~e9ŽhxtIĎ! jp}\?|k`ABuO% 'ד?pr ET#ƕ8J,4DEVQgILS ghK/Cq4!A9>骿yVKuOa$f9ZbG4_9&SzVGu>uG9le#zF(!i8#3vܑLǃ'}**|ԃDYZM~+YyTFcXx ymic9[ 8$@HC4C4ք8Ħ[k|D/qSoALhm*G"v. j8Y݃vG#1z VWbt [8}M\T4^mgj1)dUd8 idtFWoW:YvL=A0d2^-R^|,/V|ܐb JxJvW6YoZW~O=+E3kY[cZOAn P% d _6H ۈ﶑,cX4IM16Czî1. q`2M}HU<;žI$0,Y}LNb 37%h[mwZ/LL7' g݅:}I,p}>S|I#Nh[iԆee^m` ɒz% D@EWbFB`]j\tu '}Ziuabdp'h5%Ew!YnL3(lA&1y`/9==OܭxN͟>W\ofS)(yQu@*zG~ۣh6ٳTS4*vKVM „}[1akO)qqtO}t^oGiAz>t^tu-p=aqE~'t"{:-og t,TʳtcGk({B*V&pLFu{ok,_c^N%EBgœbjm.h."*zbC:Kdm&2fBZԞ,f|UP5q+`xcϻ&Cu[gLrAƍtt,~؊ Hbdɠq>9k:!$2{у;K ,q97\#Tj~l-iУ *DORm~6!?bZyBpPfdigaづE 뒴֝p-APTbg.KgǼWe &ھ&Ǜze+R#LkɰtTPDKD%=ZMزb?M[i@] ֵoH(&!ѪejFEu k2 ~`VE|7!hV-l:RyO0 oN;C *w^0VҘOow0*}Т[q͎֌wWwy%O'.X*YTZ\?30oh t$cR'L{'ʥ Z!HJȅ7~eݪ!VDä!jb6jGM2ɽ ϨpMo"t.R5*zTEd٢n Q4 s쐳Ef @e-6͠<͌΀E'Rvxv[TgK=)/YfȚNe?4rJ|tj'j%6b̩|*钕`ICu:lSNg-?Ϥ^@;6ov`ˑ;Q2nbYsqܶ!+?unǻ 8MI SOFO>AŢ# ޽S5 ?i3xtt-X,m%QlcQ\~50`[ϭROoTRVw؀r8LHYL!nNTё~k\&Lx$b|Ճ<|>K ]NuXEv;*ч"xK.'Z|L4/0S<"h,Q0KȀԉ9J69BU+\! hoyZXxӽߏX;4ϫ)|#1X.(zMU (9NZ Ay0ҿ9?4*. G,\CNނרlt尝N8`pKT"cZIiᕘf4E%1#uc~#.kګ,^[͗u@ڟA3fb7S1J+P 5z9OB({Gh"e*3Эoat"ἨTOY6{fyG'xP1PoQ-\ ^kCN굎uӯc71 TT%CݬEm>³E6'[mqF[<؟)=ַzxQLf$9Vh.ŞO>VwXlIaSP*Pj>vIWMyД@\YHl.T%@ de uCB`^jYL@i9s2Ţa Lu=S@PA%8 ݆Ў3 ׆7iqߙ[hd6̚qGETʹ4hTỶ!7gjP'?O)#/V~p /%J2Vؤ`fpl-$kza$K}c2kz$oh]2^<if+VmJFenćN--: z20m.wKD ~-#:m߶ɵ[Ôp*#z {}|!XO-*RB<4r @zQ, }Fs7"1E+ghl~]e%2dLJۺX+ԐyCX>"?άBi-DHSO,B vDJJ'o}[*#`B^J;ߠa W)LSlzbEV١UR&:W/K)&m%acl}ǗJYົMʴ BEݝ W^rE9XB>am֡Ýq$ FtKH#! *?Ă))8M=:U'}B, %'a("o1 R^I1 g-d HoQ69a㈢⩠ܵaFO!mdgel69&KAf/.+I G񻷹㇡-!`O67Bp5Q-JDw ţJ]kIN0ތW UF" WRk[U_3L-4Q3/VXTIVjL$B+uժh#\蚅,~2 pq:'0tH6Ermc^!3 k v[ s:'/Vm0߳YlHe[=jik\ -0mg?0PSDu  nqSSrrt hNO:1!9؝G5L(DcdŎ] 3(+ M/%zk)×'oAl2י:a$R)eg.͇XkWI!!Fԛ28d0弆%դHY4&gAhek/q9՘zY'N/# Wa_E@,gq3d4+Y5[폘-Vx >RuܿOt EikQ*إ>'1P;rXdM*¡,hjLi?b5.pss{­M#03`Ë  / ij\`*l'u]~}CLˈ&4 r1tJ5IXM$pumv9;HJ/mqX,#CO!P>vkGdʨCīc??p736\>[r$>i~ 4iw}s̔[BB0rkDcƁL HWNru*F3,}r.d;]]}ucT\? Ja,$#U,Q?IA ~}̨NJ_[pkaVT>SQ"jY6k#q~dRnEqQ!_/ Udq1΄XvƛT}J8qHDž $I,H=r'XfcyWcw9<ݽzz`݀qbWJzPOl&U]ۘ x2 @ɠzlc!C13c{fv"?pء=C\%1a!yMI=TUt:s,#V_3aܗ[K);|,Tdl{,"IkEߚaGL Pզ/$-T= թLq(sR^98U'$܀%֩*# 봤[SAz)un1%(!v|7_FUW"|HmUUxLJ݌GgSCOuw*'m'9_2l2<?ehYA G1:83U}oA bu_[I;'Uv% sXtMxhPi*!5^Ck)}/&1T'~Į4p*/'\Bșg1@ 5]zL6]~V8yjteI *BP̮c8n m-7H5n(Ik/˧.@_61U\_y@f=*8E dv}H+;Q yf6 ef8gcY^/Ĩd }Ug!?KIKFaAsQ;o'aRFl}&EG)npK;2.o)uS60ӗHPEhC%}Wh7 B]5HޫG0,~IʧFF3?i],gYv9?em޸Yh,\Cd2SD{셚B%-`؂B.U{rk4ՈU BuZ4bߑi3.a"p,au:S^%;3t`+j̵N3_M6)YkƼ`[`Dy){^Afb{${Ғ„ z/:jw ]B<$d~5J _q=;]Q\;Rc-wjuIhx-ZbC9*1}>%pszI6<4w˜G/=wCCZ'&;RWZUHƭМ[Naq"X$׫I[kBE/~##*q:]AD†t$q[iL0H jFUOY%MNk,}QӲDnA< -7QDɀ O%=:xϭ^05RRk>jFwW иѥ`<0-K`|RV8;<`l(mSHњ" GS'V~$TΘSٌΆ`QsO\^sPg@Xݙeuڄ$H-@k\vM֚2Vلso)zEx8g3.'o?KL}b"pNta]i#p %n//|TB: \l\A e1FVjӄmDVM|@.7WC׽;J5 N-#j~kibvC*+XW +9ZxNppfMty hx_$HUbؐm h%F(\&dmMLpfH,HA|HMKl'rr+A!r/& dU0g?WZϗ\A^L,ԎO+m+ԗZAꂩB͌-nC-cXV 5{aj 0~u>"#S1 0~Fz)aۭࢗV&"YIťh1qDyZw<"4+wo}ׅbf(y IP]upa=b1ܴKm5'<3`~[p!e܋9nLn^#؍.j`#a[wS"MX҃5wdZ&9m Obn';}J/C[K@|թüUPr: &vU Ʃp<,h‰Js(/8=}6s|cPbhîO0zcC@v31^l[}[IgC4vvξdY¹湺+.يl6-;Rnq#]jəu o0,LA Hks#ǙUZ-Q—SБ{:`m͇Mz'BI7=23i!5N%L'_{b<>+ddv2vqQ  m R3m|%qO JQ-ecv}:"X# [KI8=eT;Fm!k:6eSXM1TZw9|%JVmwi(,fub9}&9 ,U[2Hj`d&@fCͩAٹE/d;,O"D蝄qΠ_]]vqFSIfU$A ނܒu& )Oo]f72\f_G-BukCBO@cxnT1p[K$[VʎnIgѷЎZYbsshG>pԹԽ,C`yn=&n#5v껅.YUY?h\<dςC3J7)*0ٝ}Ci^5q 4EFg!W}n뇹~Yohax\>& (*+  xPU@j2󱎼!=eB䌶cQ6K7.P_oc8d Bƪuv]x7Z @ݏMνH"7a :#Vfoc~N͆fdp?5+)2t82=s{K # ȧ```5ZB`a"8+oJγDp+Wަ[Z|K-Ff FZ2xt7U>=dpb1변sv{kTI!GvD"Yl5X毳&+ %>V#P,64k~R`+t02Oi0"(+3?6`9tp Rc~o\r]bEԳFOsXfquW.X? ɼAlΙh[GG\Ӗ^/h޵r32CЕxn }@(Tu`<˾rd$qz=^Lԧl 8D纳C r9jq5Vb|{tRe' $+E*Zd(tarK>ƈ&Y $Q{oy 40jxv0~`#Qcv ߗ 2XGWt xuSzvT{,XDyR vI^쾠MܲhNk=RD̆lqc^ui=鈖JRt kE 7"IcR;±S&J@h(gFEsʛ/Re[7%?_rϋԲ`¦:,C>2R[ a9/OtFSE+fՉnrG nQm%\n(x96Ѣft@Q#={+65^PC_>E8!/h?vkoML Mz2ޭ>p^V!w!$- i5HY9Bz["UXp xVUtNڝ ('tL+·ì鼉uqCۆn~'%WP^MQ3"^hF**1F֛#<G/8wbG(8CJBe->'HԪ!{5HlSԛYs|bFL8ϥGj-UIA{haSh/tWGku3{jJp2T9PGU!4hl^0"9WhIDHQaowEيeom􏸱t3# (r$H*φŭ):&&d4d6$PSO(2Es  jсccPa|\=GaYjzѯ;58ܵ[ !=qpz.g O͡{`r1B4&_"I|9n-[\+?mJij cMBfL;R9S%VY4=4pz }y_ߨF(16 zQ4fE쓿g%b|}aᆇF:x;G'E 1x\1 U8`|phΞ]nz;QMehZ#pk VH2a[likgD.Raf H|6..غPdia\k #W>'P7 4onR7kom wxUp>Y[[,/Km X %;mQG?`ڲYcU\d,Q^BL)Ui|%]ϊ3\p.R,av%D]mk=HTl8aOc< OmY:SWn3#XРTD8\6vT.nX"'r86WDL nĞ|ڞIc}))N~(pt}ѣRj{%4U0|5%^T_D(/Hztt[U<'Sc h*)gOȊB;(Ԁ}2Kmmԧa|I f,I"RICz9'|+ňr .x ~:gC:_v0sy8QAf:A0iflmϷ0IND)dv &w*Sׄ[L E /w%:53 JΈ<,9zg[78V,-y$9xcq #kU|cKEzkW]t6SGEBXpS4[V,[Ƞb5 ⼨y,+}A$!j]C\/ sF֡*1af{m| ®$(%>tՍed80d})G{ N*P=IتKr&3i7q8aZϷg^SqA%pHWŻUs1Z܅Ȧ| 3lO2EJ 8g~OoƐCpZ{~"؍٤>gԸ}iryw5Z饾Ԉ'85y"u?G'hx\jCiZ]h - &s Sd2*AϤ3%Ǻ4{ܶ#U '>kfFo d!얐pm."[Ĺ4,|} D HIMωb/eriC;ю샋~M3Yfh0#</A.*[,M ?*r^0a>h v kF0s.Љc&GrbW+M~ɳBp 3 oQ]<^]J_}r{)bVZ*7u?0=VsP+RU}JOW ߧk˷kK+ m 8pqo 8C5lf׷v\S<9WUL~-Z\ /bg Q7i0\g$ΜPE'E*ï{jZE8bIHZ4o%(ydf, ^[?iJ=2 %gPxɚl. ;aJ(ԭh:(NqPZ|>u\NT\;j+ 9͒MwGiR,2K#^oDzklk8G%oM Z1 $$~FK~RwW*`TZV>QΒ$(nV^CaFνBSH^YK5v^ ,zЃ oc;-垰x ac q8n8>pj*6Zӿ%w,bO{ 0i>Bc%ruDr`3ڷp>*}[f\3&gM ]Ozc՛ǁ- Pi)$5E5pl bSP2cn]{hS[)r5q4~$[&SXzoĨ"uD}iIQq?wl:A6{kT5_~}/}Qn/)얌s9[\}Fa6;M[9JcQpݒ{@]䤵5ͭep/Wܫ C3ˉɃznإwZ[ݕޥԭZK =}ȈZQB. =A/d˄x1*IIyf RYqRrS"Wr;%F]ǶFu u ˆLa@U8J,7(pAdwuSپ<jǼlnMUT+4w@a<4Oҝ/#cbmT ilY:e% Lں: _]{Γ^WTݸ` GdA_$qH3u֒#co2^ϔSQK*3Orp:aS e)h NyUfSDŽcoPXdE=Pؓ J%#lDJ7OSox1r&$1쩨yL*i#vVPC7gzj3nhS~Ekrpo  (M=)L[ vyq,Վ2O;̏= z*l%H>n;N.8¥(1-6:ҷώи`w `T؆nKakd$J8 hxz/Qn۬!@Z6^ 7vFZTe 5m怤>_0J_3_|BB?$r#_ar;$E!"tu_4:i\ҢkC&(oҳRJ;4Q`zB\@xHL: [(lDH3{XţbE5%ĺ+uGg^66  AB<:{JT{vq̰j2uApc&3AX2ߵ@7"2NY%[:doWy_A0mB{]z?[^Qd>J!0H|rQX[dBTJ-'RUBͿ0} 9EAAbQuoՑh!b6#07UqcW63fԛGDoK[A^3poFM.ڗCf΃-l,02DWn9Ad5f;$GЦhX+o1[Cf]c=b V %bwj:.KNoD5DOf$m0SwDe` mǾwTRVcRRzGf^3|ezpɡ܃j5AwI(YZғ-$0 T#^e[7w4؊;6M ?%%szd ,N"%nJcy?o1m- HN҆3R^zbIqv/P i$;c5vd8.-ezU'ҧ'B]`lnVgMx\Y餝ʀPaeGI;U0_@VrV 4KD AKe$XUEwȈ75u$3Ӝb핱⦡nl!p`_F=kQ=e<;ׁE+'~Z Ǯi94[=HRMrmqoݾ1r6n<)Ân3_1l29AE*汽ya?ioEMaMC3 \' _&;b'YRܴ?rͯ9 52]>ڳ7ŋ|eǭv"lqL͕Ng@.woOR% HpIPk0Nj_֙a@5Hm<((kMƮ;N)-pK^?i"YlG `Fs=1=fQWMKLR UN'yoV81v& R~NI,y]LG<&Zۥ˩^ն bD)L?Y6ܿ؈ cy||učЄ~2mKeDAD^fVJ}|RyWXJD'BξHL_~э?~ErL bteT񖖀E Vt+N JHyɘ6"1gJ!]Sw [*0ZdX䉷C#Uj;VBD &CM4SFKl>?l+.i֐-ad֡#N{npV @TCeIQ`T"oEOU_D*"c X4H[z l+d`(`7@2f [R5|iT)"M~pGZ-^?vE |ư=]{9G@j\m“ѿ85=h{vM"oS I3g7fPNv^˹Pк|++XƎo+EAN6Rh+;#IW\79 fq$Vues`~B\3{6N~㉤|3c24FCyݙH-d!X ё-H,LzC 0Ysh9B[ooӁ6)UV?2Xa? 6e  `@>.NV B:([ foQ%(v vNMztW, EUƩRzQ^rQ}LPrN ſ*$,x_1#c*k{#_p<.2oԫ; # )B+[TQ[e$q=lk~<1FzO34E20n)?oGN:~:6dCu=z9u9Lz3ukS{I%jA7ed1bع/z{gյ؛l49˥q.?+5@}0wҟ֐]?_a*l2{[B ?lq!-V9>TfWmn̾N~ ՞R`]{hi~{b5lOxs]J39h-[zӒqtC&l\\C%6Y8 k4vE ".͇Ynܒ3Pct^@%.mEҲQw[9 ;cjhePp/˸G@_G,ɫ)9jTZB@XX*8b1|VlAC.>C Л" ,M6G+$e V+uVE3 :p~ דvaٹ2Ϯ\g#[`u(c@PiYξm1(R30ी9D/F3 = Sg!.pNb#8zS'4ϱqj}a,}3l̞e;f q]>xj+IXۥax9H;} K{ ,S{[w;n3͂>qy?o+W&A?q<6>udp TDx2o{n J,RB)kpa6XK{"U {:`˸dbglA_x\o")j_/we*^00Y u]tc!+&^q+wtXf!E=vsk<H;f7w_WpE>hUj\BW\,vQCr3ޅ;Dqi3 BEqes}dA8vU#ʿA;am}YEI`u2u\.c؂Ofz!)ax `YVh"_B wbe NOx{e8=Aj)B_t|G a u[V!lnO >]Չ9Fiu .` ;iuJ~{`=8kD_mn|5eqZ[h7{"x(f%q4Hc-;.ʛϼkg"x^Rz͔]4dLJ^Os&yH|uZys&!@ jP>sM-P wە=ݗfyL@@1[Fl/JQ웈Gus\ۘ];FFuf1!!yz_^Ph^mf;VE@'p}e,h嵭rr}:cx]Ly+*0ݴ$,g - xYǴ3GViQ^sф긶ۑ*A. ,kG5&6Z S!ݴ Ȓ#!|rˮL0.9-2ಣ][_*/Ey#8v\ %x%` u QZgjbMӓ"0=<c_qK*3ﯸ&i2FJ5uӲ\?+_ 0̘+/ NвYjCKG'س[jHA4`Ϙ| n]H#9oIP3QKR=MzZ01G; }iݹB1 vYa`,IDxͫ/QW̑1OKV5uhOp-|HkH;&:BdqġZ~o ч|R(1KY!L 0e 'q<1iIT{Kbh\`!҅83c:;LPV  Iz֖#3LW*~".r<;vi1Qj =ٽT齺}\h<WEt3 H@½C _*gA1d/~mL1X)IOǁq΁,]@: Iv2ؠ: c.^CAπ$(5KrRBvQ_V{P|^SK-H72W9_#LKτ_fg.'.2S񧊿GZ>H_~ƫ꛲]&TӌKU\NJ.WvXzdeϥqz̓_}|mͺmOpx}}rF0k-B^r)w<ZY!/G#mvjLF>?^1 T5 &kԞC$fUʥP|WcC/eО\ZW$=G %0;Y u(:NtRM2·E\cX&Es@2QRHL/Ϥ'W̌?x^mD~*vc}yzJFQAC Ǣp⺑v44E2M4CA]7f52SBt\n+V V)պ\]^Xu:s{M.8zAu[t#iZN=@v䰧?" N?j1s nUbfڿP(ZYrN0 18+QOمQgNqŅY鱿J0&jz%rW!CIuucmMMںQKk PnfM X'-@.H}mZ,H3[ʽS|K[n>avJB0drOvE簭ֿ^}3>XaZ?I4B}0_A{#;(qVz>* il'6G%rko`r6 ėס!5=RmGaiz"J_k8 ϐ[NJ:Y2\ "CEA{ /TKXK!${s4[|)O,1!JhKX;kw_"T4 ero^rz h$DJ\a{tM 2ܟs.0~/rS8IU&հ:l7Z::(UDÅ7nxCJA%xnXҪ~9Xd!tr%gi%?o6s&yoZeh4z\R*ÐV}!Ml4kՈxp3$VMgxL;`7sŪMy3j#(sj7[qWbhև3M`;vbaiNyxGϦFDp5\)@Ղ2az|n+q6Y8*чхl5'Ou^t*uըim5^ۧI@E'W$Q JXn~b*BV y`% sя@*|b j|>G xib`{nFYv9\ ?5*B&q= 48󀣸Ů1`'pc&t99,]N1i*@GưIоR*rgQGn@qYɨ"G2 <Bl&G]zWK'e̢ADҠK"h[.,Uq2Da{ P].ӝV;@&)"覓w]׻1^8(yaVLtVR'r2 msšbsLE7ǬuG5nHNm۴{ou/Ӵ#t5u!:9n(F2| oxlU~S->! Vl-|^QRAQЂh66$I+T#NК*[n^Ju=jsŨa Qe7 b`Pʆ- :ӋCyVw-v4 fROlJe~&5!88^;uJ|g&~=wc|k2j?=)&v2B*״uqѳ04 ʰ z.&=39B*ralnbuU`i~۟PtKDL>߂=,zΐ^f*'$Pe?:%D3_q{kW%Rݢy8tX}Z\nN3C<1̮.v(Gߏ2EIޙ\IuC;s(DK;YQux26h7Jv[66嘧Ux}Vli[# GghdjS *xՀk~L%rmaM\\@r^zvNe5=~CU$`D}"% }OOc`[*H@yO\M:~G8@"UM Szh)CdF0(EF= d|id@bu]$tOf`Cw{#Q!}L`d,`35UmAYHU[I $$TNTiu˦Uښ毧UC^Nz-W ׁqmD SzRwQCCNP?\wǘv zj/xMcwQ 7NJatS'e˜v*=ݜ:'y`3ǔKNp!]7xЄzjw/ 0p4pEڳޗVƬnD3uYF獪_nMv._Zr gﮣB8580ec&OYxZGĺՀvg{%ͥIo'[>,WawJ4bMelȇ!)T@9]rb  YNukk@,\ĠAصd*bd@. #%- hs)ڝB2kWR,z&hեe|[( >Nv v MvyPG˳mS:@~AW[$tt@ف25:SL̉ȫ{/[1ilHbmRr.`Q14}d)Xjb~H&Q4o+T|y e.c@k+Ay9,XʛELm<+4T.Oыh=l[WngB .ʧRv.Պ]}rnn3+ >aHgiHi:gb-φEmJ p;6oCvtzշ#V^hغ5: $ P/}w?\wuy> -VPbd~,RM钓9GQS@ܪ7Ym*֟LȔ%d_ :"@ܮJ'3g Q>z %^VHEwT8R6Dzj~;&9&4z1FyۊYKm 8jJ}/7u CqxwcHT}䪃 r.jG1?$?rἑF=Ϲl.:i$jTk͇N_C.u\!U5(z4㠊RVq-*j@ Eޅ LWTUz%cbU޷Y 6]7߿L 20t g ?Z/虌QJ$LoWNZELG׸_[pyң"01r'܄昩Y"l :F +]@m '΢KQ-3b]A qP:Mtr d vEH#cr}Ӕ@7 νim,)o?LbP| ԀhϦ0!y=K- vbGb86\a4kKmb{K* `28疙TUM}K8w$>܊y@|&rt1R'F'c%"d_W7'MEbEȰaǞ_Ҩء޸*)w.~hL2Qs 2O.xHlSOkvy]ekׇ,e-Oq0^,1?W4 " f =]:5ZU0[e<҅rkwf5;F+BD,7?bw7 C1:Fk}˚TYР Jn>YZV1}epd m8y`dMG@VY% tL=Zv.=tp;jJɞ*Pks\A&&<1H>̋YR3z%S UNYlĈ^{L]5K5E%n[V m;85-p@+m}uhG &)p۷Z`>֨?vd+gH{]O3m(h_%A"q;jZ Argn`'k˜EY1jk2a(z*t[kVΆMC&ODlP jC^[- FUMY-jA)\mŒJ N%@D5ZS~$t]p/^qtVӼE]8%&6ڵlM1 64K?NDs{(),^sWM#)sǦkjY{)>9w8ZclZ =N:7QnՄ<8dVkS\p =O<=:DI ~zO=?x+擟1/DmȻ9[uuBTI{I Q'u1:="M~mTZק*9g0L̖Đ/v6`͌T߀/c%|xc=@|C4~^cC´ rmNI֠E5XG[8yDWDk!ti0ekn^jPO ~i9R'6)]Y\>tU jv;RltP;{ PT>2$;vaK'U@"JY(t9yw{pҔ7ن/HFntTic'Dq9K>xg}DۄǩOG_Ѐ -07.}/-tDyt(Xs@/9yǗ",S-Zi48iysFL?utSnCܤy8;Cz3I$ѧ Vʫ KtqY-0}^oDzA,]SF-s|Tl߃wC -foȉW_#mƉ0 R;7KbX#9/9nn",E+##T6b3N[^ 1wNjBr>5 l-7<<.nQoP컟6-PtaWz>.74O]TSGI;[@H>#+IVɾRݏ!B1c/RυJV$ Siϣ?L8[+V&JDQ%+1r?1fW\߱-l(g3a* ."k/^/` ?^0TT#px"fN}^4#/G>_LRMtN>(2iNbU%Jl۷oLёqa!,X VM3l#I$(DM$jyK҈ά>Ib)'* 0Fud7fzc'^: O&dC9!+^#̓FTJKs wO&qɉ= VDc fHd+e߼{h{9cYI ŭy  ^>>MȠ\$9#Bd[65{2av{=Ƅ3pb%r1{\˽+TJ"z%dQxD_8+s{ynY^6{< 1k/i e_.Kux>'SUYA({V{x[t,k]c|X3{?0* k̒]uiՊ>~!^)ʱˁW|ܐh&#xkY)V(VE4j{O[`=9Iyx 0Y=e lܳ.iY8r6ԱWbWA7jA8e&3ο!%-IUOA6*gh7Q66 7X+mw> Ba ĈtRѣr-i7˽;'JbP d#s/аP0B%@=H J-_YȒ_F#ms g!oDyÇjl%Mzy~,K4jF&c Qfegm뫡##- VrvL `3ZSBӼ^!yj4Zޥ3" = HQh%~RU}70)ŇoPs8½|(0ic FxCw3k;6W>-N;f-p PhBQuiǽDI5GKf ={%~ڹCVEI0g-~p j /]wp+}m'sX:_q#lR-[ǯeZa0zgb~c!\bR!'8b=:'u2ahrK7QFU jnuUPQ[Vs|sG~?XxMoarFQPxą}} #1lS!+|ެ dLkїeYghdG^̗ ڕ}c #NRlcE-*~|b]cH7håjs68ՇB 6"[bbS;? x xrluWp ۮDzg.R|ֲt3C=D0;؋غm h4tj ӜKR蛽VӚ[}ޯh!* t(EP3NA?xFVB;Q\v'tK^ָm/4J\+:®]3?>VqEK8^4k R7 䎟l~\֒̋JN |` "Ȭ\}5χᐁӏ0 dņ}%ڨt0GiR[#p%?="H%|`wkA-s zڱ&t9?pXV "mF4'>*畧\7N1<џCls  Ívڔ4l(4gGTqTJ1Ƶ9l7 fY1G1+L}XKO1xmOD{!F8d{WS7NB|JDn:%KOG:7m߄"pIևT[akrp=1GZH5Y4ăBNL:k]<'ƇmrEW|HqTQ؛ 4G_$@s6gA,i[ jtTr)/ط*\p7e 9&׿u4pGflMw4c qGV rxSEʤ 2RU;N?'D@' 0w[D1 >/ TT.BaC̀Ө?̏fkvQuۢ2[AcXA⑙kMхS$p;No5>XvD~axJuv%8aE唇Њ6z7h^쫏V7d 6\AF#Goii4;Awh\.gYؐ<]T(iɁHrRV|GC|9=voJctoAza_ aSvDWe,SN>*DPd`DcXFpÉ4'/zbȚ/M?X p(N/ W= (F 9M˪M̕)WHzGN1 +E/{Jy,fA/ӯ>w)\J$*dg`V庀6yZU^L#׌Jd2%.Vc#yO~<&OŻ1dM7`"SJw_ =2hKEkt9˺?6y| uf) kgvi $.]A#ZM-SL3R4dTmv1 P?__ʎE7ŭA(}-e;MS*D[xrX!u18 È@x%7]k?Hpxx{SĐ#SC_9oasڕJr-m>g#Xl9vybR/UZ89" Pb06$]Mi#M^U]'O똢 +OZ ˋUD#U>d$H3G75mm驖FxhݨYն0Mʯ=`Β~uk9e3 1 ; ::XQs10:윊hP& wҮ$'#܋F^XTi-Ǔ\Z56 HT&|ڐ {ՁN+S8jV[gNH׉<s@=NGGBx,S?[[%bm2"<9T]F#s99`ȔKтqա-ˋ}"~Z_ZG)TڗCE QM4pi)ƝCOi^Era/1˖[}6wΆIhI"=BNR-cM!oyxЉTJy/-_` i%&~?.L-pk%zPCmwı Pv}C/Q ,Cl%,40PWdbibkG|9qm|9<6va8Չ$;@ΙjGq0tGd퓾JC(Ţ¿J4kmL0WǬWn#Z~+Ui6Uڌ y:lpZ~[Gu?I3Qݸ jX[R9K]\OiFesR)L,UacCzs=<ث ';,L:PE,`toiN рBVrU._XjBFuF 9Bkf~ ޿dX:QD7Y"!:?Xt>mDL׻L?ƪL+$0?(8Kox֯v] YaEۘ "֨r\ogWAX|ThĒ)9-{ M&#}z"A γ%<>%U3yWVN-=#‚'<đ>8ghkaQ/:Z" W`3:9cvdQ`]a*U{Я vڐ2£Ue@~UčWkHh%ҬSh@e[BHvHasμ>W'n4\70b$D)_`_QVYPgM(}(iԽxV/AC,WdE/{t|%F ;%_j{%P*7\ 4ub䣮RjSVogw݊w"Uŝ0#!QSޞB|4^Ep m^ ӆH+Qb; Y ~I1#Ҵ`dOi(Jk ]?PQq)[WIuqRn6d!dm6ucFbiu L||ʒ;[L/uڳ4H"_ZX]ek:<(k@`i_49j(55|\Wm:2]dۛrs"N솱!*U“xz3n2G*ب["qFE&oҟ.17sŕbuϘ:/"/DĂ~estM/{'V-eKBAm;%'EHST~ӒqhẌ́B%םz+ L:A\e7@jǢÍRvu!b4n"گ,"s+oP_ A5U`$MFlځ;5GA5E8z S=f n1$VjuLEPuv! Y/+MeDTfb,'ꍏd Üz^ԭъn #E,?yp}w(Mzv[fK̜4L4lu)i tkn22]vT?؂TDQH(X[%2 Y+z#3eyA= *FWO,MRP]-By2biTHM۰ֲp4R/Zÿ4<X֜c"x|n%0/ Pst)j^>MfҵG(/tԔ?)%)z;M>7WlqºaQSU?ˍVLÝYOnv[AðsNP/;I$q!H;^5b{/ rU]_{% Hqrg?ɂ15V|`Of2/-v[y$`3P..f)&͇7s3wvf58Io/GۄY__ݬZ !>븺>Y= ӫO!0UkgPhM"ٞqt,0ڴ<ju鷳"j35q <.L0Vt˕vwv?j-D$ q"u1Ym|k:u1m,ʑԫ^,,qB9Y;2`IfN;^ʆ_yNd 6QYy2.S5{qX1}i<-6Jv_8EB$9^rT#en!:ʹ#wGà_VHspmϯ3vj**z|ysA^|%] )9[`52"R9ALi#ۄ/VЋ-]> r&.-P.t^4Z'`0~>W(,:%yLk#Á#d6^CnKh #EfMN[^րz/P's (UW6I" XBXiPJ]:g"$`%45QKDqj9/@U(uƧxNx?ȭSC^rw~:YmOWĨb, X,n&Z~4jx2S+03qPUXK6bΪ2 CfLD )#mXT¥)ue1/lP)(#SNiDq䔇 (xl4+lAX }nz܏ۼu_9>ϧmFȻNJ"{r)FL+1+Ek"C˛3>-tuXt wؖ:5c )jent`SsC'C[s03s 7uU 9h߁{jx %miqg*mAsmD1/nl?ޜ}-P+'9ts)^MV86MlRm8YYŅ6rTb3&1  2>fyh;.v(F-\ 5ōDz5@-;-mQv077B LB2$;3P yDȟ$ʅBDHGF:ԑ:]$N@B9=6E8ɔb3hqpihvc,C|8VtdmA,Jzfg 086CjA|'2 6ˆM(|V *\kt`Ẃh>MԸ^)??m$Ǹ+#8NE&b :k瓙9 sR.`#Ùs=/ MN/<2-deJߔ&Ϩk%v uwAv].l 2G˜S(Gu<3 %lN|>}`w,tׇPگSiZS8>DI74gIV٢rb[0QqɇV8Nl KτO@jr.C?'dH8m#^m~SiasjptՅݼG) u~(s%s!m&-]&# ;R9O4c&cI 5ɟ[R#Uqq&Yl"rFTM {%4RVȗю4+V^^HBE7:Qucbqb~!E#;ʮ# j)t)J-]f#n׭tIc?KގܱmPඪj(OrV YV>aÕnk1 E)1A?DǓ\IxlVZ, `kʦ/ZvR'#O39;֜Mؗ%/+L"䜆;N7>f#kb_Fb+zx }IΏsk7@q kVU"T$Yd,KDz'.{uKO$sk4^29.PasRv*i*`tMDNʗ]oP3yz;)gGob5,'hV]J$ an܃m3iMbe\]3@+r0%nERFZ`2YycB%6+:H\#{D'x%OɮF/qf`8OLG+H{18otB]~GjrIQj8>oZjg6Ch.k,@샤^ht`fkvtsETsTgA=uv6#83mQ/vD:G@oKdEԤYAYh?u YJZYߔסHIܧ9 Bת (x}" FlC_>E8`O(ԼQj?΂wAp[wkݩT"l6cd1"?Ht_Z e]ousjfz (I`mNUU ~<4>p#iKJcG";uǦ_|G">~DyPh0;źyC*ANlH+hVOߑ8U$ouہBb~]lRjS9q22KV5*Z$@3'sjW:#axbd/I򕼠н4du ~3Pԍ#W9:U7n 0r#t i?N96LI7| Ky8Ddp khCol^xrdg+rtK6+ir^ib0՗;Dd+z>Ɩv"6\ŞUٶ HQ=!u$ΰJ[$u:dqqޙ`jUXtEs|"#!k:,bn[N"2T3UI$P점!\RSP8cLmǻT3uU(wV7&g=lzyhȼpo?E :č*Kt5$gCYs Ƕ <1^c0FZN gg?,baΣ{Sn@ i#]cÃߞ` '[wE4h*_zqtB$չO}"6ܰ b,YC+F4c6Ls2:ubm[Z[}gqƥ8AFEpO x1 ӿorLE.̲y o`~buTqxHb`碨lƳ@r"oW#4uh[,u#<c <颙>f[X/r*&HJO "y-K࢞@7BaIٮ=C>W x>Dx}$J]q8wW L JȐ]\]w M&5 vrzJ-$}y] KY6(-Ӄ~h+O>s,N!; 7ޯڜk#bJ6MTh s*nH/gҨC/t3t#pc6C(ĔpG]sm1̑qv@~61CaƓ&J:6$rB['Ps]ơ(mNIR^!)i~!8M=ŌBۧB je1гPW/ݸZe]?HAЪ # #.8) MUx7w^sŪ*^Q5Ge S F{QT}| ƫ/Gq=>lZ9}XrJ/L VQEUGv-94:9g?< 1rf*!Ldput]+6ٛr\qڬĻk51kWXdK'{0G!-ouǏCE?V4pO;`|W0.QI kNx8ZJ#Fl,7>#Yc]Z!KdKwn>|T@ϟA%~ 2A 2{^v$Lu6gR^ds0cZt>O3&iN-A7tahw,~^өN{,:lޥu2T^EFj_ ͫ3.}D=N1J/{bKN_RY>n$dш~h"cИӑ|i{ Is#k][N[ɉ{pjwq9):`3_~ͨyKn~$i1PtvD7WL$NNu(HQI E2Z|_( R~ 6],/ },KALj7ܧb25T!Dg _mʄ| n 3/E6B.39ʔF7'T,:1Ś%7%'{u$䪖 %_\ߡF-T<`v_䦊٬y`)K $*a 7*}LPYz>n7LCYs%-x\ȗX|Sѿ_Lt΄3 p/_Ҟ~]Alי*I4R{Ĝљt{Ue5TL̚$ s'j׏҇X);O?Trͯ!3M-Z WP&#sU#Z`(ju ^Лk@Cd ϖ̎w|GE&gߪiolp1ywuUCb|^}`< I966Zvn-25Ls8 6ﲿNlgiթDtx1ֵ'<!C}1p`'R:bTލ/ vꬄeQV{'KLn:Um9!}3J{y}Jls] KBX{A9<îL%0ѳ{uFdlr?2TpxݢC^ o-bi[0qO_+R\w k؈KxP/*ov׬q Zi#L(aY 5,Cڽ+L G\,lo5e:sONZm@x%Z'D*CEќӲz~ .=1Jχ?Dw%x]u'!utZ ."mWb"ͣ9KO!7Tשteqxxy[0.fbW,r@pShw6QL|(RJomc2 +ͩj*pK8DGO{MAyi:Ej#9^~Ӣ5eΊ%'dHM«G,):rC5C.s(7shNqx!14L3LJ|PB#`fX(6-%S.=# d~Y6 ϤݮvC]uX#R$b^۬bsZO䔣h+{g$"4NSB%6'QIŽg v2b "sC:S }ls#WZVN茘XR3r0Vw lWӥCzlԿCvX'5l~Civz劲=~}0^AX+=]we&/.XNr\CrD?k=l|T`{JMek5W6(0*xCcֈGYC:IIhh22JqXE0QF1iM .DF᠋\qr @gՌ,gvVVաF+!Q~Ϲ/dk vVAnWT%"}ֻzmyrGlH!0H$R-KYuf.f5Ah7TdugЈ>אX0f\_SAZs[yߕe RnBG_.Mt/ط4]7HzIZ2S:%NLc&Ғ 0TӪKJz)b4|@'A V$2B`tq3ɪ™&Nֱ *ԯ'wPk8 \'N\%z"(ϴ#?3\cbhٯ>peeM<ѣGc笉Q/z tBmh`@H sIUis)‡ ,oQ,h,'7JW~N]za*! D o|s31:o{RņxBD1DZfę01K`%2ksCr,d{TdWzvn4ar|:}/hcP:=lp%3 y6_ ]EL,VD *t3g:4bT&ː! BXΙc+Ƕ!ثQ< R,͵8M9N?LdAlJ^ ً#ͫ/M\(4:fߥ׮~2AMސ/i̞.Ⱦi|Fpw植fɻHj'9by|2>E,,=뻻vIZnoޣfa/rwmCM B[":Z="hzJG޼0s ͛c&wx&뇰 1l E߄ѐ_ R0wT &%Pʋ ^mJb 3*+֗ P8ֻߑ+#k#vpaۍN7?0ybR) ІTB* *VB` !i+/#eAN\f$ZkU3um J鮲ŠYȷW|$d0kue!.1PbfUEe o{֎Ҿx"x4DrD;K2n۴! d4!(WXaHm<ė5qaT:#5k@,?X4+"3%b+eYRxrdylD^l7/"bF5Nju5{byՋ6&C/NTfn!d)'*{N[kOrQOnEH`tr)$ -1mFn1XPH]bp*RHd艛/s%HUs0CEo@聆rhmg{_acia99 ID(Ƈ7 5+pf D >VEM[ט\د۟IC# !HkTOK 60cШ2U Ǟ٪3=@ol(a#(NΉ}4 9޸E>-c$Cɇ;^I6t9O~nɮ#p_4^bQ)Zȓrsߐ9$s Ŝw7O׌<2 "`(#`=6xLsExO'qGEg !:9Ps>d_:Qi,' !G=%e qneیf I(,eG6%jXUšnG7qh< dipqKc<(B0#^[Wlcv= f.͢D 3~9T FA!=~`$걉(#f<U ;5UICЯ W0'DR+5:gaSg? su(DyV?U[&|p<2alYPQ!โ/VKժ 3}K* !:A{ܽɎOZ3'`' OPUʋQЙ-+z~˜6b0*zxw]rQ"uqݵHba|y E2aFዶ.H)< i,c#~ 2'JcsZGu-H!VAA.!ؽwoo۵FL]QɒWd+lJBDŎ1Tn !&l3)LUę-/|8bN\S:2D"U_{5.Zڡs3j2[ϪMӴJ)YFOKMGu\;wO3sboj01D hxNs,?9`Tol/>MZ|,,!v['ߔ-9'2)ƍ@JQ~ BZdY++Ҳ4H&xCVC wcT0X0\L5!Ƀ}f.eXZf0]ebµw(tٜe\{-LD#bθjU&;צt~^IP\gBH!0LM{PBx1;WVDn'@IJw^ˈTb MjѡqءZ.AT,/t@r.I}1.I sEс.l)5q3,Gfme  r^UϵԻ墩^Mb]])ɚˆY/8t]b iG>)rlյ2 -2?X.i9c)LiRSҍ/" 4 $<$af^B8.4ǕD0-GD;Upoy#dQxpZi/fP0x:Zię~i. xLBBH1PZ#o҄*|,z6%4O' 2@?V+Q7l ڬ9VɗE)a({=E{+o1FIyc#/&fu)ԝ`r'&ݡ>ɟU`Aǻj']9_4xлUe%gΫE9ݝ eδ7|vZc"\N@xRHA.X7kVXZvj0Ǚou_܄Ȑd9ŊĔ¹QH]kZxI4Et[G K>V.}L|D@DDŽW¨V$_9 9RGٴR:MT&SƤV]_CltG=*nScmђG/]кhwS嗔&!镶jb LWL%iԸE E%x lմd;_Ar4>~~C:^NWJy_d{5MA3|hNtsU )Ss{(zC*)+ݺT6*4yPωj+6ě x5:$qwS ^] D9[;i9 %fD2?T23uJ/)XFRFy]|:tdZJ \a.}I[0߳CKe:Qۚs=D~(J&P覫x xGl<]0kVH)YY-֔B자<.E|D|@׺&#Zx 0{0MZdا8-}oU E5ykbYbNT:DT\z(2ܘQϏIF]9b/ߵQyO@ߓ〷Ze!\DwQb8{q`5BLU|Zu:STTOIFX&i~xǺ]3q39 NkIFzs#)~b*xLp- 0)y7żj,AqR@ƭ ] ߡh`3]LƏ~rTw?>/b`Hu# [/0!RRKUsC+Ulg&S9y|nx[pC%H4xO$FIt`Z0It)5Z3Pat1Y4/6ŠKVd.|,/9UdkՊ/q1?jMSߠ:v'ac:, ꣪X'G'ߣ,@+c˱gՠكrm8R̺|)o,^kXz:K{''7g1E`F?jJAZxAVҨB LɅ ԳLo2I@豾xmDj.nh Qd*Kr jSp<A heʾv5 |1]u 5|#<2_<p B2y APB-5I9ݩf8ZPE3gcWgǪMެZZl%5!˿إ~1nt `? 3I1y>/n_1sDb˫"Axuw-R}k\vZW.(J-ٖ}/ K@{f/j}Gn ?N48\A5o xlX՚*w#4|T0u,QUǛI>|F^gl !o$d6j\!z4X6LL ]rڔ\=>D}F!9 8a䂐L!mȲ 0v9CDo E/bc'6? /l*an`Z5$J#K%+H_fz*x#I۩sP0?fd˥jUD0B7Y[i&!E29ojeyCܪn(&T3#ӮG9{`' @WO_90ZqZzQܰ/QpA= l3;.*/;)e8Q}/xjpMlůOɲ/wt̼߫G (Z&ZѡapR!_?X*u֍… LDw Utut `${GZn(l,,(>{|LD_Co q]CLݳ-=JVoc4 :Ip]$RLc[6tD]$fP,nAA)Jaտ\Gr +izgTS߄X@*Է9e|T)7ؒa:_qCF(93fmh_l~sMY=~.Vjaw(cvU8$wU ad'PnWEDX8/1U}+.,aGrU:P2&g^.hb ^OacjOG9(Fh9p2{['^͔)SՖ÷i8#4lǬ}%kcNv'<|fB2//1`,,]3($ZUEIyI9zr{ ts(fhZ8 45Fٟ4Iשw9n]h%<?eA^ Zߏq dpKJ0}R}f >(}}Fc2A4 \ K f ^$rһ$҅Ռ}EL9 z Hⅷ " Pu}u 5.o͝!i$bg!TDPRV#|j94_ZEDq3ˣ{S̑=5>Ķ bv py>͒^d$:2'='f;%VJf&@Rģٚ/˅"qcİfi@np?1kmbYηB}%9QyyH4bt%5~gcƊerPE;! %o%:^?Qg;J v| % #'puLߖUocxW/_Q,%a`HĄOI' %OK"0S3HƋI_Ceri %e4p:Uʨf ©Wc;w $ y1'b?֏H:7|i59ſ!hIgH !$xgMN𞵾E? ڕ욃RT:WmIfE҃[h@?]е̐d;9ϲ{e3}hKrR'INƑdP0[4:YX}+D)L63G0}+z|wQƠa+&Bڗ Mj/)IʌljOť9_M!6*MT WU!zw+M~m'"1H`=}=iSŕW3CwVIm+-qӄ )k|,??b 0F#]G֍>_CD; e)#YK=1*v{@^<@.-f1#ZJl+yk,^J=ׅT8Lm,VjAe 6ń}aw߃Y⿟2${1@}i q="W 1#m5]b/7"@3G{]Ԍk  ZgYoA`v{?9*$K'֤ boDTFT&eU{F]CSCJ:6_ 'vQҁ0}"OO;7];9J ~׸.AN"Q,yb`rz/ި^!lGn9#Kr[`@KY,Ԓop1~M&NP 僪4s4$w7g`3M/&*t`j#TKPr7`|E q3<Ͱ>g|i۝_3llU#U=zmޅj?[/i4DH_v8*t9dY8+IߣCڙ䅂o0 hTqi+,o (=7H&z >ȰD[y>Z/@/M-0lSRag`md:gLON6eki68zF~xr< f[T8{IM6].DG[-ߙ앶_2 ,du+Уvb(!8$i y#M!O>Cv܂A(_k)5{ 7~w0vȩ]g^b۲ ʼSkZAT=wEʰAY+|<'lפ_>ܣxNI<̜+1ˇ :GWXĐ.E-^wVާߧpy@}`_4tO@nA "ĻǼ=]i#IW:ľ2 o;GZS-/kEfE7]&/7 Ҍn6zjr衚u*D[085_)!5FR/!UMH%:C(p8-V H幇Ş&pAF8R;WE+F--ۊF!:OIE L˵XdUEP⁰cMޣsDꛂPGiA:dTle|7/#qʹǶ3^2?^Q1S(IKr=Fpí>*n%bG$Vh~+b.ov~xs#"Ak:pKX/X 1 QVˎz~&+_hw6,|UӥDm:<6Bc&0qEYGE> s'Bx8Gga˟ 8( A;:rJKB~ J5C7_S1U?o9­$U%.W."C#M>RrJiise:oa}λ=p=Lå =v |ҥXĥ(RN>dUg/X!#^$v=6q[>q1̒͜~ HFCUF}9p)!R֟#bN:q A]^ۚ,dC^Kv<=xl;DXsL4]r5,%0F)ﯾ(08E9bͦMJ$q)VJXF(IGf_ 6jƽD;p-"e_Z;!dX|OYJ.rmPE2 lnݕcBS UE@4  {[#/tUc@6ҩwϓʚ=w6ЀQ!e$N'>cW-PUۙ)cC*@\jv"5~QB*慥. JI5.zw*F0UX5XW\Q&gCګ  @V3sʝ jD)hl%|y &S)®'i#ZÓ"V( Y xaBÛyP>ħEʔle.uHtFk} ڼ^BGw|A7C0-f))o:j."5 bE8:I T_ʌ36ԧn Rz xioM^m0u\FA$ќ>?PϏ)mXE D/'R(JS3$CZ3E@V!Ķ^!U91 Uԯq+{Kph/IJF;#%WX͏!.x\ݦ6*\(b-3/IM-Pڈ?V)=ĹķP1Nɰ1 aA(3fjH/ x6bY\Uwq* 5'w ^ ( ~)8d͂2/8=_ #ߓψ+$`<$G"ًnӎkJ$em]'3O5ڹvy#Bz8S s){w;1KRO;=hӶq9oJw^UmʇD^9Bg I0S5X>+Pxؙ54k(NRJ!t9V@LXzlKw8jP]?JdA<;{E#^`q6n(Ivr[ ;wY- ɤ˹TE.$CC>Lhm*L<*l2{8{fɁF+dtc0L;$L•=q}9 l{sR0b 쥟7 $=+H = 3uGA< 8SVI8{ŀgy~r2Q6ƃk\SҰ^ hmCe%#X,# 49b]Kw$oW<R_Cˊs["գH7Zf{իHF޹ Pn;[띸^Tv.J_^HOcoU6Wʼn#QU%"a(-֖-NA |pe#o?*x6L*1hւXj[` #U\GD&hvw8?̧~ht0YN=;{n1 ?Pm4h^7^1j[Ѻ# Nؽs$6v`dB{Њcr˺MB@?+0HBDғ4;%f(بb:km*NE ()[ fuSR J#_bW# Zn)ujn)Nr拷 B>gut@=OS;z3jc4" \$@Iŕo;?*lQ/D̩At沩Fa?Lk>;wC0IŒDnddtKզFtۍmX. tM~WzӅ]aY976B(_WI3=%RZ4IxWr +{7"A2IrA! j,$:a+ө`_|R d{yy5oLL9Msl׾ͩa8(52tJI(iòj27cSUr!3C >?YoQCs $~K^1˘5:R5A ?<$% EK}̖ݤ浌$qtb^~/OdM?'#ҩ|R@d)D7)}߫v׮ 4=?.FiMZ7UE-5C4LQsFIAWU"3YROk#{C#UoxcAZ;f kz#N"g[MG-wcLbN]aD65ɟ%3d9jb0- rn~lkOVz;P(\ػWu2wz)T/wDqgqWSaȶ%ܱA 6n#qm| |Ow$-Yi:Pl1(YLMmQ8 ,trcj]qCcW-Ϻc* gY4ҟz|)ճGf02?+N=ˉu:8iOJ-MVt2yFV ڤ]o2 B5{'K$Z$B w#Lv~06q!N 7;#s%[\~ >mLSO@ύ dGz^Lf`6>ft]uS⳩΂9r?6Ay?<{[U}PꋔRqOogqvSnZPOLeS?2⧴KtAvu/h$;>DL28PLu^.See(gD1nWأ6T_ A.X%MFi?CGҾBu-4h+9SC:RTz"8_Gb iJW1jgOA.\|޻RjSHø:pmz_C(E4~*<ز`pvЉr~' Ss^?,y=;)?t׺> zŅ͓DӣEs%ah&SYd Y|(;QDOĘ!z#mQA=k"*@?;n۫XU-q+ lG(ZR:-nZEpY5\7g!ㄈ*R7|qK" :9+0zBaB0SH&UE<(v$צaxeP+_?y ītwi#bg A6 5GUcTcJ-Ua[u/b㤄LNf J7r,KL*\m'H) t$\TLI] s~P 8.Ð]x QH3w3)c6-ad@Ng3\e= 0S%>6鮛fϡDwi6>[B:iX`R|C]W*< P浥r[dHQ9ɠ0dӶ@D|*4Lt ]7\eb(B}BwܻU{ȏ'|?9E?w7j!S>PɫB^얍2!'"ir C6,pNAg uXo*}"lC@n[KI `%&&Od&0e~>U<QWBuظP,̘п.a5x[D[#< 2S-ķq^y>M#e 8?AKES4ӿh pl=B'T) `B.Z-1=Q[5Giwpg0'8bA4ןGE *'mpJ=)LIt*Tg<IBOp 8fGD@uAk,9/':XvYPqujV6Ànl?8!­ 6LP*GjėḜGD~>{/hաpl\M*YcA:rȖ2uam%WOoi?t.T n}r(.ȒʱkL !@4]enPFO.Jq|<%4x>%(c=6 <>?MmiI 0(d3_nM}0;l*. eUl^:3\g !K`T9C ݐVHu`Њx8!gE֟|̍p@ Y){6wGz[B/Жxdzkm)ڀBKXoH2og<@f$MwQ7š\eq)WZ*T8aZЍ6BT0l8OTQS8|˘K\r8>Nv9|x~tKB}sa6ԐhTN_/u9L/ 6WaQgxRrѥ,PrzJ䝖x[ի߶֓201բ&u]H&y(8BT7L6~СGӌ7ci pV9r#}66&B(F|Z!,'ndcI]@GBVD 2z\:p9P# AHӫ( -Ҽ2H:;kb(oF`9Ε@RW<]7@L Q/Q~Gh?K`$Q)0)6 pf`@bMr!lR7Us2JE8vɷDĕ {?Vz7.KC#ZHxlz0(`sm.TD%(YR~8h͐NӼT*O vGp9 u56y_i?ot ȩzL:Qr(*f%a=zŽ}FC0H-Y5 һ۶T ܰ^9{.* [zܷi[+/V(I G@%OmD-x`< e4LR>8di^OQi$kЗZr!r |7z|ъ x|+&S> [l8afNeI:5{&nӺ?P7mʺёdɚT"R/.;щ-b#3<Ht̂Nd7b%vzR]bW7A1`4YAO&BFZsUNH:c&oO0-~H''zMc7:<3DjᎰ48Ors$gݽ]"Kŀ{7۔W PZk; R˷rM/3t}#I7y|Eu(&gw^g9chPl?ۑ0OG-Iq*s)?w#mv\#HlD"6>e`';0h ZVp eM(Aj~ʋ>Cqi-ʅY)~V558z5&+:9,v0\m寋Ŷu)*,O +n~lj rY1i?QK3oG jp{dkODAإ ajdw z7dŷUVԁb? k6B`%xZǛypmS-zktK̷*f)tbJn͟*Ze|hލQr,-`y)l:S tk%NisdFJ;o 3*1]8X):z=S/!vd(SSAy'+*ޙ6!jOd(.T^X~;rJ5^(_B[fgAv E\1oR8J sɃ]U =8A^KjQ89e2u\ Lv2QnU<ƙbmP V@Gl#vٕ"<Dܟh~̵o*yvnV`$i82y>%Ṧi/؀d1@&§8&MҀלxS4.Æ>.O+ˆb%̀Y\0DOh?0EVAQQে%#kI9 E*AS1J8è:O\j`(3WCZiq_ix "E3[D=Wdj|ͧk\j+vOcr|XU|}i ږ]k~ÙqqE}]5]Ƹgs5Lk)vazepm4ܭU;;jvqmG"{ ψ(LP@Xl@nθb ~b=`b\y2аeB;EBbw*6X^w-q6ڹ'Dl7 G87 Lc]Wgj_ VA0ol"*v(,ͧbk_;UN0='Lq0锟]Fg ?$;]G 9o\xM,T dބ]-Ɲ? 9ki}CEv(qxy $t41!ReF(.RhBX-D ar,.lźaFč~ x=- D {hNfy(ut+X2b~88 i_C"п*VW+7'Zm.CJB(4INuv-/{xFREEI^*+ Fwtu;ۢ 3xqYY,O"48Xb"B/IvdXȾ y,| EE&i p[QfV7*{-9j'=]@] HgֳU5TXZMG}4LNy\%] 1L> XR^X__eVhKGB(#n9ps5;MҦGkf+uۯBAxf<}{]=s3N'1Td>wv"QFi"b/DqZxE lͶȾ\~ d=|kїum09t&az*\k8lTk{%$*λ{aTq/ϡt0.-zQ88فa|YڪZ >дf#zgʩbl 0EFpAx Q&KZFxy{ԥo>~{ N\<4Hk}"NV ]lۙz9:I l9II$֔" 8'HW<j =譊9#2x<'9 Cc.Ν.V4 cG9j/ˢ3B1>uҸHjL]\45fO; 9]f`q~SB/(}ϜRٞcm!_)Fp?DrPc.Qg> Dtq;ǑE=٬(y>{ʯ jGQnhr. dqH{*.!zT,W_jV?GI䉠n-]^D WLt !0wSV<,s \.i S +k<%t>:ɩQc=/)ohj66$r^"R6ӄ%4F'GɊ:*xcf 5@$9]$:JD#@,y @,9'aX@>lj`8;qEM'ܺw^qU:̓i:Պ r XĤ rrslZ68vT7z0˓ p6bi i78t5,匹 N~mq3:VwdN:T'Q"js5 ֜XwكBn〉yFY@u^Bйd*R)F50R7xi=66\wRȀl a! ҂+y}D$QG(ȝ#8"o;8-;9 m%0I]I O\LK!" 5_bJ݆Ր n+aeQ"n΃ roy^IK\ɝ忂 .[;tw'8٥f+یR^R ˎq5@5ԫV,mC ||EɈV_1R03?bXHɚ឵`Pg߬ ɋm*hG<gl[>VQYF>C9NfA kzm|)0 6yİ:j # 2J)5,`:.yūXt^ל&JkY+b8!k\f}ow:zvu z2%m'kdͺۋ 9%{>7"U+ .3Em6)Ȝfg3a9騻֎J՚F2GAo6qpXY^aes]"y&ӕ- mO顂J*j}?L(-bpp4'Wf(Z&\y?5K,ecf:0^lk4_އܚ?+U8G8wYIvZK{ǝJr!FlMqs66YBP&=2}ve`VV7n^Lf hGRbk)*}ih E \5?h8tI#?ai_~fi`cN&fըą)$QyHw΍m܈aU;.w}X~duڧcΣDٟ7ngLnI<ߘĪ>^-h_KԚgrt}?\F;AIqλK\M&6d0*N/z,dkq˨:漜M (M-,[ruAt[cl;&?Ҵ?B}ڹ jL1ns9GD) _vg0.D Vt8(z9]1~i!;= `|.(/px _ZVU)uS1`6bhc.QArPj_5b,Q#,EO`Ac(mb[m=pJ6 {.WZ[T%EڔrS`ŭ?'2xf6(Xe9U +z*~"8s+^4IJuq</n6]G+,UBS\3EeI0:bz9cn9ȄG^_۽PysC@jӭb/XmҬ}8F52;A6y4SVD6LνU3*ѝG> 8 ۉTarǻyM Xݛz«}&0نvW|{h%ZjTfĩ<3`p&ǝڸco, [E4<K0Tcb_Љ#JgĹ|ahXzRNp RQin.*!k'ȽoY[)]l h4ϫ/҄2A4q(d1W`iqO:$Z<^tH#78_aUizB}乵s.ˆsWfw·zgLMKlQ% =62TXM b;%Eu͓`@ړ xo F;ާ `"1?F N^70չ!X XMRaˈKA6>xय़\`Kk>,?#ʞ-Ą]7uy- T_wl;٘}>4pN0q_vv.~U(C[ Yy[ \@OB^<<ҧ8^-)\0(쁸eOZNDDXwML-,fb{@9jW>@ؘ k5 |k,;L 0# KĢ,/ҲRꆑG> JU?`:Ռpa+GtJvf*ʲQ<2RCz5ͯVsZa;E֓5XpϏCi- Q)/ߗ4/p\6Lܡ8B##uTc}̄91)L'O IGiS +PfK:<*U* qο鏫J=Wlձ9Q>ݵ17Y{4Tݠu XK.d҉ߘZxiܔYؙߡoTPtpWAȶGPlCؤ+6:qIT-\YmAE)f|8MӶV) $sn{A+ e]e LW&jgM-as0bXbahj)a_mrdĨ2߶Jti9PBH_`8 ksvl?1Cu9n~xBUG XNbDEx*Z1nݕp*[BK oj% <3zbj_0yAaꬸhɓ)Kd;`b87>xP|rw+S-y A(O½MU*~"/}vH˱.U9]L3MY)`"E޲`FHs-()Zf9 YMA9DN[ -FV ](Tzt<=(jeD$2m!Qՠ4-0Exx,QB5#lƊkxUf1t#uG%Oc:huž)@o;&Zs m\n];ElO$V#i]^Rl1]T9q}zY!LIُDR:RH<}>|n*Y|47v&\ߣnwgʦC WKrs|>X0fsMc??y>Qb G8 ILU,.>L:zǕ7UjcHv R뫣>jBy/gQ, 1oȧ )R}c )z>ZD M-9J]f Pae:+EJjmU^ٸ9JHMtr.QaQaЙR4h{%\ .饀^AU{E9fkJ%\I=DlU~&~rf)5Đ.3T9n>jͺ`v'7Ik5su^q#Fk#.IWӓl74) Xꗊ_@y7ဝAF3m7tqcwyc@8j(Izr2l*z?ܝ4LXA X&S Qh>9 0c½"W?g%Nd"ӎ>'YzT:e6„7$昵}rYz WfI)HBram*v"=GfnS^o`6b~$ZZ?zS,P >f\i$Y>>}Vn#TP b(h #&fR}m2G<o}h%p-GBf:N1.ERFaN/ %!>D<\XQs\:(dV4!cX#QHBZKS45;ª @{ #WME٪w3"\*[vg w#k$4۹sOYz@X;PѥL~T4budMx0fPnY+h"X~,sg9$ 7&n4bɺO8~r>= -I $7W&KaWt,YǦ|4>u(>y$̵ XNowtUV<6\]+чZvOr2t0շQXU6c JwBa|9C^'Pw  OlA,E<|q|KnpL>z5GL lwR9QN-LuZI .\~2+dw\ Ip{cHׯ8NC'Rȗ)5K 4<#+F_R {^54N~nث\@ 2ɯ} 6֒5XQbGnOJ۫˪[+G/NTM0sZɵ|ykaτ̲ %/<tͦlƼ>`аr`vׇ(,3|DhKn[k?Mh-^+xO@B Ah)G=a߫p3O nJa )=:88Cܰ# $T3C["C]_>}L8;wnE49YfUlyp6 #?(@rγ %#ߚBGgyh;<"IZ9Ɉ󬓜jfMD["j443(wq^ܫ4 7GsT<3+Tt2ZnZwY]KIa]W۽~HTW IAT"ه֠:^Fi\yD6m ($:XHej TLK%iG2y5ٞlMZܞJP͔RIo { UƂ֌0ɀf  bv3$!C"N2S:hZT?c"JfuIA5=eŹ́Ta2Yq&ۊ D66[Oy&4'=7RBsF !k_Hk5!1 IG&O>fnp헦8fI=zET\F @x & ׸(SCUR0\0?w ""5kɱ<6_evw&Z9==sJJ^I8a'@5ۙdwgΐ䳍(Us t*jzWNgekS M_I_Un:F^vaЇ`#t#<-ٽ:zAMF gN$#,g\@fd!!oȏ̧9K 6|M-IfKs2Ccu b7_`Iyr0I6E&_!92+όRS>.~RSU?'` n;8ڶ. >`=HQ3G%Ěg}L)%ʏm3\i`X]9d,L_Pw&]W: %rM6ƘM=LT{iߊ,nS]M>6 82EmYy}N@Ȓ|A.ށk$lX'`Vɩ zCn6D[RORjxrBR?Z8\~Vko{*Fw :XAɒ3G|OXxhm]+k8)YC@U$;@:XξZd [^czͫNjoPDt mOwpPbqgE~f.MdOA(j#c3z3Y![d+5dSE#v ߣ|b^}[@+.~7go9a&ç^Ո]a&6|Y&LU 4Ew"l],z#j}e&Vf})!toΗ&Zb }Uu4ږq)Jܔfj䁟G-oҮ#¤X P(ww= Ue6p0,[ɮQ`f,X.Kʟn1Fєq-&9{%Ȱ!׾Y bJ[U@_f Gz@ \"k=f ψt^6ޑU)qfy3IA͎r>}J AQƱߓ#dG1u5ydXs(Z:66һwx1MMP<`iy_?yk11Nb3^<>t,im7|}Sv^<,t]=칁~Ҧ@^j+5bpB;Y[Ǝ %tNMM0&>D. /dzW&GQ-}=DP SJ=ga%o`ѭo)(8d>PU aFc!E(aCulAћ+C-"8k+3^<gR)52QS҃ !5VQj$lKSE9l].ȶ>7_x'ynO,*{惺{iX_mf1]IL4hNZ *ӕ4Е˼x"&1Pq&WU~C E2NP0EK}b, e6R3-za46c t! ^Sݷqh 9c9U*Aq`?,[#{rn϶ %#6%sM,.X@뽑m'1 h: M _r婨oE4:86H3'xDԗq ?y1,|<;'$X #}ǷdFТK( l>B۴d@#̷Ї HzqOUaQ7s^ܣs^˖+g;¸ \U+!,98" '=>R'S57E9uIL["oZ* NBN πrv cQ?_Z9#Bn+Mu:a8k蠅|+b}ҙK9+vE 5q!ؚVi}z])}f@l`[ND[6pd$H!2 ][,h O6D{;"eCJK$~9y1H[2,F̪ Ԉn4r3v<3^`RA(2`GxF cTf6Y f0Sv,rȨPr[F`Y8(j0kP?"n m}Ho}6b ;fBͦT޴?'QzOm{(eęBV1.kL[֙+>l` v>]֙@i.j_H6z^Dz&Aa_}0O&"\=dggvBy ۀmihהG:)%cԲ{R +Sv#3l>%71Wst64P:v"Z}qI@[,Q_9A|Q"<0wƂHr-`nVgyWJ]8;j糚7Q g[-%e9Yjde\8dXGM ?߷n.0dJd?RLwOE2k(' 2ৡ0e.rk~sTJ/eT7JwޔCd:oBl)='Z#Kuinكpۿm H- @CܬA#C/8#v*rCXzYUjuY O >B+?aX~Nk28VyQO)ə9n1(w̪m* ;/;Y@sQGYs簋( {7}зt-.i8hAQҙj`9"!c$+[yiGfs>)ʋ)b5VބK*::J0N|tKF8Wa؂b Rx7u泅95S$O067d@yf)ϞQ|)(3ECy96җ57.%U_lЈXŗs #zW& 6g}J =`پÌrB*ݩ @:xNzʾ6HHBZ+n.-Kwr40iJ+Y gDf{Yqf-ҹEmvӅS"̐Sdn%H5͔͂%S0hZJkǬO/d'U ԉZ Aqb7l&,AKX^k$@Swe y(gI(|s)Pl? Vۈqg0`xJv@ɬT-9{%BO´h3p{TVK?)PLS2H,D î_N|7NX̖ɧG'#Ko_}iBpnrHg (%Z{s> CFlljvA$ Cɒ?"tQ,"m #-ȁCC1ĢHBvb循bŤ¡ԯ'֡&>q jeow q`VnKM#iS+u¼ m\^59S0g/B\&Wߚ/8щm  i=Io~C\b<: F”T<|2C3[YU/!F$)QSO{!^&^g"j pz[T|F" LTR>ZZ +nZoT9''lN Q %v)mݝ3Եؤ=` ˞ uRwNyG괝XpJ,Ԅ{W=z5F A'ep2~PdƸFؓ#+Z;ħdڹk!ҽcVXϝiSacM_Q5,~޽/'DfN>z13OH䂊(- 0*Ԗ Ndc $Kı iu\, EӘwp;zk+T,{%!~J4E%Ѡged& {<\`B[;22%u%ﳍavkO/_4#]XBZL|voQnaxX0;J= &ə.HBGZ,a 5}moF"2/PfNA']%0+J1´+lќQ晌4Z>5 -! O4f.Mf-"'hrѐȣ m(@>H 1DZq _m0:TI k69y KhM] v_}RCjωzM?B g&g3BAh"¶o\Numv"FmbY)XJPWe" K_46a&!ğY%=K_tE +s"$ͩ7:,zDbm.p$[a#^g!(V%q %<шwf-c6^ب]C4Nz6CpUd7rrsf!{Jv̂F\ .Vt-VKoL+/ mm(Uk)m Q&  7,;lh;'ayqMI9+ ؼgmNV 5ާ"` ׍'z$i:BbE1 fLl.]چ5M:Ƥ9<J<\!Vu(+@S- H_p޶]ᩊDW3s)7Q )UNsM7SEM=`OҨ!K^A=p˃ר/zNu֯L8, LG-WчYl%F ] "V >h<6)m:~DEGԛ)'of%N`)9AF,(~*@3mJwXUQ O^.>A#:p%y4? *4F1`gs#Q .{Xn6 Kbvu8G pހI9E^&kb[+o\%ϰ({hztY>mP?5OqL; qpd~{Ioʎ`稇 ͵H=j'j:6b V8{3,+&;MXP{qc~u~L]C5n M\t{fpa~u;+y巊^0z?|5Y;]c#IvDv"tsW-R﷎,,<]$ VشCbAU-opFAjQK|A*^\)4RpT(]%巡JЍRfKٺ?uUilF/Yv ZL- ~Į?zD3iWqk{pf]3D1ƧX4 sy4ӓh|[e Fva)'v$]YzH9Ro3(clE󆤅Fޣ}k:!p'goS]r&A&BF.lTzR4ݐs7W.e,R>=/\(~+:`{w^cO }\ IBAňup &vXyk\wq'/B;7^ )ŠH)'xjl_,s>w}XyZs4 l) %R _|@ۦ ;iHsj?&*O<9;ᴴI  EsɊ.V̈F)Ѡ6+ORwL?#ex͟,DtD~ F#%ً9ĦQ]lʰbZd܇J~#^AqLۅC+רT95Ķ.Oz^dFjP6ay4  >*MwFofkK|,x.jU RvpHޖ% L/c{q%c0h˻7G& 6 C8r5Zmgpd]8,UZa!z- #Ԩh TD+,x~D}#tGiWvgMjL6[oX s$phLJ+A0VN.a2zjn>'Aq9U,Ot5>U)U‰QՍ(dw`K~&#="K_6'Pa}ܕ*BjK&COB/儅`h{鬼cuCޭ|m^7M`>LC$['H ֌#OGt(?(kR)Yx4 xWp 7W)%JTK֙ nRr| `((u'Dn"g3zƂI=ac, /ńDi?ѣtۈBBd. ̳8ĪlM/6 j.y,UXl sn%q82Q;JҦh3veFD6h c! -B&oRC!u}VnOݎĺg)`nj}˰S}ɐ*IR5lG<_Cu_|oZ`v\=/(*va\ffuhL@S!T#?W !'v6ZF8Ax; K9.'aq8jBSȞhguA@j qjC bca +ْ,'5E(^Zd0[εiGіu|؁&EQB;Cq:n*H{ܩذ܍Ude`zdU4h,iwӄf2[dsZOE(geYՃit0kI>"iEQTUqfi >KH7?"ŷ\tM ٟ4L^%'HÅWqP`jPD.*r_luNPs?S8dZ10.ԼEw,铻zZ>p!TO _Bؔ9ڨƖH1!2*?O׿+*2\#M嗤P MI1LoZU]?g>6k;^u0̏iPA%O̞m+ſH~aVz6.Bh;"4Vh滶(POc_vUtuE܍a$fDbe`~ !p$11.QQ#3r0swc bb_ W,fBN_䷕rUf6H)M k_ˆb-,sǁ&kۑ)CsM$k5' tAwBM|ӄdKu.0ԭIx\I_^hΉb^"TOAV^uյz`}q9Dx1J_q#mJO%ԓdGubBCȧdXxS$/G/Ӣ_()/@0;O ,y3'q9t-JFݱ|6xU&t9S+PK=MF7x,"h59J.7}..۬91'tmnZpU|:5Yű ,<-SckHߘ&$lpKh|4Hۃ^<ںi,fQyA8]`_70F˵T:52A11 :& a^@ 3HD1gSDѩ|E s/}*:=ABs_VL~Cy[IN&8>xz)*hS_#嚬t6u67F;I䟀-?9y%X5]#v.!f-Z. 0}"hHYφ@MT{yYjhX+ uXr4aì;eX*ׁԮ̪l^Al9P[[M ɗe~p|͇r(= HTG,TtVM #6~5C2H 4 1yr!}q Pd` zjxqpƯGEN1'tD].Y#ְNE<ѥFaKr$rW s3ϑ;@ۅ Kqh%4CJg1$\A;©d4CQsP iEToޘX·<ǩ5 l\P5zs6}^}Ӥ7ȍGgM_7PҨ }"˳+ 9«JD4Đ+]#dF!aI(6h;A9$H-EI]J7B~V`)ԒX$ꇈi^Eҗe$HI9 Z [lxgUu3lsGxdKVm,M)2Z,|ݼ`>/HRd:{H#+=o[\瓩|rN tMYL;{(Yw^]Q5(L?7f,9,:c{鉨+9>dß6r2$*FrZf8?-1wyN%׵=A_IyD`g~=Cz ᮘQ%{n8ǀFIx5mN_ ʧ8NdJĉoVhDhLď,Aʭ7? 8OEyݸ(Z];i1:CFX {X8Z+ 22} d52dֳ<ݴ_CE!y'.F%3 [^cqZFmŇ XejqDlyεkO-S=,,Oݨ#I@xe%_X.&V>m۹*0~蝸.:g*d ( ǎ/۫32K>$kpЪ,c-DM'zPn{~$5㓅&h)AϔS7>)C?bXTSH\L/;NddZd8d 4b jDH`{f=݋Q>FVu'@E%J-nC(30 Թ!!wB;Huc}lriCbn0  7,EI/pR+O$Bk&m%>j}?9]8. 3X[X%xx'2{΁tBj]f>韕\S/Yb,C}4)gϡxOE!D2 ޹e34:Ww"fe6iVsu̶87-}C+i9bݤ{>3 5^˛Pόi3E,-̷j6D5 PEW*K{ؖ&$`yFD0NZ3| :7;<#h7 0i?~n !tjw+P:/bubTSom-rmQ̄ lr>XZܬoBM,+ r{Lר㥎o5VAbX]`Q;T:j!dn:P5UՐ^,;jdR%E6N~d P}z`ЧEկnw ~Ow5g5)l9R1m3/0v۽8 V'/%;~ vs'Ӌ9+jEqw͉]v>"Rn祩Lᕉ=iXbt?$ẉI k):n\Y HAu3(&R:o5j,A@_n@0VxVC*`TH7*3*} Ww/cNV*| E&DѧDlSd9[Nm8IδWz@\n ުā!; d 4=Һt!D~R/:=$;Re=+6tvL/wKYD+r5dssf,AOJ2Rp3bZɇrE@tDҤ4q4Jm&c@cҢ}gy^ھwϢrb%<Ŵb1Yk0$B|v:n@(zNKUa W.򶱒0 s]ۻ!?d V%El%Ws3&gSsj1) >,TnK=1ݹZ #o(DA ^52 g =DU!$7rRn`V]ӘMr}@IuB\fK $2svXzXw\4G½tDFI?F<:fCbћ/%>0{`/ÏY KcbV]tD搻*ʽRĻ+8xq#U@-v 0P;dW]!vF.Ȅ-L %RY6Qk(%Ï7qju&km S{!j8 M a22b*?h+{M*PAnaő'dVy R>ŗNeסQy !^?Nk%%]B )hK-Hn?6:(YSҷ:{J. F |JJy5Kd!Va%ˈF`$>2*7i#eDG7 {~6a21noܙ#͆Ƞs*ʺZ>kѺpEf+`-[4rjiKW/Rܪ(E:_B7L81a@Nv )eecuRv"䩔$d+N 3OHcO3Ս߽Y]/^ LgA)o>y'7/r\AI恰3}k='VO5 \|ޙO3=ܶ*DQM}RX]grGZgqƾ1.!ż#c=daxJ yЄC63YY`6ę+;QHTK#bvc͚*p{*iL6 F#w) %'B` )Xu9=owŗ4Yp,19f`z_jE3_D!UL^/hW }>ϙG-ÒJ)3/l0[DC.1s1`*M ^+S2.f < ,W3:aW_5VP+F1Ƭل-Z1F1(U&}Ntīп3> Fp)=T>kS{ |8D>A Zo~&c@vܶƩ-YMx+Q%|ƙD(\+('%_-XB٠y) mK{f KZdtM>{t)I <_dSΪTU7eg:*_xhncX1#TYg{/kKQ~}yğG8ug\=~?j)9rg(eXNn{$?Y\Y$52`.UKy:]jі{vW ~ t ͥ[Ѯ7#)պbC$zɰuZzFjx'F/;Hs=x| GB}m6Bz*^522ARN4p@Г"lNc؟U@x V%i~~ |, mNERR*nӔj$|gzT "։7$<%'K2a_SkKz@uW庰8CCcK@H~nT *sXьqbZE)XiѶ!ѶV&x$HW" ,Mhb@dH4xН.P6mEK@>yܸ}2;ڨI m˄eW&nzQ#{pO @r/-SH2t)s!dK,

~32;?4}KNu>_7VNsӕri jX"̺VS)Y / bD[7 'IdU>t38c>Pnɫ>vjCA"pו}FD ;YP6cznnƷ~^]!_XCΦQ݌ɾ vn P3jRql}]}WqTSumiݛo~4;u|?bH<4(?7.B.gZYRyneՅ-}n$+B~0=6r }b Ԁ{M~+U=BzkF7W9(}_[mW4]M(j"9ݙÔNId6ڦ-P+)wx/2fh_aL}ٔ}5i! S9NӪu2nW H.PMD01Y7j r^sIk`]"CN HdNV)TVtes߼RL7ۛSe\˷43ȝdG"wgr XRȗ"㋫T]uD닌2GK;'Tl52SqDjڴ~E:*ݰ6YH!j)e~LH[KT?EeRSijPܼoBIە ZB ){*@O|{9ˆSEd,{vB@$<;]|^(Qop}#יS-}+cŤ3R8V_2J&':N]!wp[l&Ѓp'zwُ3yʕz?xrD%35Z[;[PA=Ml22$6"-i`͏ZQ׻@ƹ"o,W{rm|F/͛98 Zb"].vN<Ƞ)2Wf-e+ Ȳ'"rn ۰uQjW&tIHS.– /tmI`@[J F|;᧺?r|UkqpUںߗ\JDa(G +ȆB( ?2T)hQdJIOgEX7U :EDdUdC2&dD5hVQW &<_'>"B)[E>/u ϨBt&eUkɪuI2&hNѺu3P;ROɂ6qI[;]'PjF4.pm'@V)J3—hFz R g/"~/Myr~"4a/[ߪ~/os[}m#G J=O&v%PdpU62`n3g' YPp9ڤ$,aleVG:4#]&54 YnLD"{=5"p#LUw3-UzJGC+{W6K8*2K̯83oғJO[oo&w41xLP0^gR4H\V:USKA!yi&κ gy #(t>݋G0:KdYh]s?I,r8e5o˺cfhb FTC!{̊0!R?O:= &^=+On iwzͱ] "ÃCKia|(啫^4tWyn8+*S$lBKz &O]T2g 1ݵ Y4@Ƒ`s/ % GQrz3̄@aIK136WhÃ@hÍEcMXq/Ov4֑a̱#\gq+;3.T2bGLB,Anfp^d6@**J' 2azHx; eJܕ1_9FbTpQ s;RP3ܙKnIG!e dö40 GJI=Ic_Cx*ΔY#-NT%&2@" DUi,eB~L$( c>:RjF+/fRsT7 Xa%DU g!s=|Լ3)Jc'dQIK3o_˽FQ#궱!Esz%/ۺl+|4;\ 0#% y$ISBJ:3<vD\{+~꾲bFMX#ox1&FFNxYb΅yτ:jK$^W=ew`s LGFcmo8DqmbNHh3ϡ)Fl5^De1SђNC+ . S糁t%gndz'Yooބ 51!Ъb$=#p!0#lBJg:J#_ZY]%XCPL/SO&/D($16<y3YCGƏ"Tc zC&?>\<) f:($0R9*҅G \N`O2^}- >/xE,~*&#$UBx9 IA c`Ce._/GiCz 4\ ^=;sęg&.GFBGв>(NtS5Gr XS D4.B7ow{h!Y "l)2'KyT0ໞBE8vm)k?{yb|c@I,9eL{ZIn:4spSē`KtJ\`FT/?F1EpvAK@{ [}2J9wT:/K?!%-tԁسd¦ ;)9$p[8tW a?$3ôG36Etl3܈#;lQ)/Qp5_ c+M,qubΘTċBO𕭸G|'պ&)Ej=H7O',~_Tl(%H엳' &fNs?E{_RXor/VA6_mFPI!Ȁ/;_M뮀WJ(o<^t*i?%uȜ@p-~!sjkMpkX'o fyo%J~hy\~cz=5HQc: M=:ˮrJB4 rW$ֳ/[Kѯ8`rBFbA_%epevxU9팏~V|޹`DS=5D}:쨊I2&rIڂ9rPbVPpYbMzɵINqZa8y5q6n7cx66N9ͷA,d]clMf_1}3]. ^+Fca {_2${[e M>/G.$gQ0K'^rrՌtl//ٸAdCJ#LXafZH/?" )e08k/P_I6d!dƼ&+):N{K0P֪luin iK,}IP  .@eOxvPT1+Zүϸz0dݠ3h{T{BYpSZ^=t*{v^ŋ@XGyGsbyL[Z2Ed,F)t^^SҋSqÎ8p2x8F\K< =ŌxY1z&Ԋ[|/DSYR@|N Nv~klft=RQw 7>,o @pAtN[[ez- d h9!7>+e򬴻;qFbӒjN!Ĉ"& 5F"v'Pwvϰൽ m/T P&Y sσƝ<));ӭrJMqjN˦ L\1Cޟxְt{$N\ l٬J*ߛ=Y,ԡgkv9,̭}MTuImPVa8Bb)q@[țLwѽoS撚f-Z!*e> HBg&j|9~Bxj$!V$k(΁9JÉSOUO5~II=3{bȾHƵ|=nژ[ {֑߭^_?t h2dA9N?w派W)D԰Ga}xJIU7>ydK┱;eܵw9?3M k2EZ)ÓIgG=ՠ޸ Df=Ph'RNG øQj@9d0|;&*B`?^G/|9 {b`2I~ !]1ץQJ IP3kA@8!ZTʕ4-H'p=P`cvmb! .C5p).BTc7=TE@W]|D֦u% c{/"_%ن.;ogxݶ:b`Wנ3?p>餄j. f {T e%:Z\>nB$.cĸoʶX̚RYb޿{1 5X~flsaT ,CEKb<N^cIlx%!JcUZڋ6kH؊|ě9Ch({F񤾘/H`J\~$YrQ /X~hd:,a/XZQ)aV%rWm2Ry()Q̏uWX6>.sN2tR2E^ 'N[qٹpWԲl`CTͩocP %dF{eۜZ#\$ qTxxϘ'P;| Fei6iyr /$9~ztA O<\)Ø@E OgC>̹/c\\Dc#fO#8߲PR$j}5i?Wnfy0n"IcFor]P4#/ <_?3md!riy%"Kg$Ǽ!uj͑P-h6'Os"+P-(ivVrE,rr5T|Ή/ u mX ;>8]\IV}j3rfפA_(_.=iJhzHʘEO_zQm/ǻ#Zr~caE||tp^T,t/p={Fvx•eԍ{6_2E#tyJQDVJ]tPM23$%SF1!9Fr?x_|:IE!ZaiH؂2Z_5$`gTژgTgC'P͢}g+]Gm9NG# ŝ5.`*_ @rݎD* t]OtLT2pՀ_=5柆̩} 8Je XՖ76i`c'(,;^VUV$u"|Q] ZK"gcX]26;|j )Ci䟡g"g'_]twcYB zQWEL*WB$fvZKHb7PTS} L#s2n,8$z Xٛ_"M9ns!" m^o'ɲ]?O݀a=3}϶ gOJO^*{/:z!dWuV_%fs\I4^\4)e\jN{@t\>O0xzi]›#UEvKgC ۥ!Uy^Xǚ!|B,gtG4{fDoR0. }ޛcmFZ8t7ķt+w${Rm` 2gOdp0N HJ <9oV:g?*6LmєN[-=c>Z1L:4110bLqԌ2I%bJOe LiL*к44ÞibI}P`#JQx5ijPeEvlb~0/zjߠGd ApKX-Rg) cwFn4!/ZOEM eNC6Nab{ۋN&"nnS|iߒΘ}?5⃅K)l: }+J TPqT<ͱ'WRB\U ܁)3yŒ0R@Rqn3YLE*%O1K<Ryu@)+FTx~hmO'41_L w4:^eNNG gmPzI2'H}' IVq{jkTN?'d[k'2 =>agm'5Jk|+"=O"v*9n)&"˜%Q#HLefgv/U^.q3@܎NIsBSHdO:_[!tM&pi&xڴ}e"pw5Y5)m JUbB/nW)Ciʭcp-kw'jqiS?hcͼp=lΏA(pWB n}6&.YC\?4H At%Γ}`a,EZ.;*Mz1͹ر5:߼ԏYAVpeI+DQx 4epڪ3iO Z+#T:x2'b=5jhʰh06) Mvʽϊ"%w }è7vw{6BjҖJ0k=Iy򛧱ҮuËӘo4L_:F׀PqZs,vUa$Ә >"l@Ӻ>+m&eH` JtJxi02i9z$R{S'x)CbTG%$ UǕ&`vgx#PL+"zAF64CJ/j\ۀ dc V23?v@ g.X{-NYl!0>S*6E5kM:2 qu;B0rhӇ}y7]'c)G`4ywme}GVhQ tz٨# 'w{g&R)X8+MBB)E2-d}&LyO~7ɊLvA&jVYqR1E^)`Q/+O0_bD;^-yN4Uv2([ /"#9n/WIr4LˤX%lU / #} %6lUgyaoh [N>;+!hp  ;fvhGtZym߁pJz[c5><+$~'UdWL n^ Du\,3n(^/-+a RULf^^{GhD#u~#Av04 `Dcy^KVS*D&xU-pa.-ѲF O͹Zjm<y\N1{k Csew҄\!-xq)V(\}"]*BjVt,onp/yب>ѹa|h*"/)礡 `Bj7V9o 7b{W#C/[)XX >=$XddamRc dҧh ׅt؉pݧhںM\0s.и#2J#F,iM-FkVy}g9c\ͯ (sm!YSyF:;Z6_ zvjjnGauNT CحbLk' ZѦ:=n%{ p=9+Cg4%%W|!|@j-7yD"R+QK*iIctDnܣjG #y>5wFhR\300^p76|rgY Qh0t3(%1s+w8-y\XRaO~_}> "eW>bc^T*4n%'0J&AdDJZėJ ߭ @S?B[HhGG QohAW]FU6j?>%[]U6\+@jMzZ{%IU'E4e_nq TSGS K:Xf𮠣ץyQNijAU^T;~F`jܒϹ"HFP]Њ>x\|뭢o7Գ<-ƾDn hD{n iih1~SNWhfIˆr (p]/.=JgB ;$}׺@OLQѼ)^$x0J # Vf s7 L|E1ZpX|RT .% F " }!ܒac-\!(dXUDã{`R.rm|_+8.#78XU.㜯A?埯D5M׸5lZz;wcAD[2) CtP(Ձ̬S]{ymK;\a ye\k `L~Gh57Z]Ure!'Zp&Lֹl,*+UP?) gH}4\gRMD^oda`F-2B!e>+Ki*hFqG1fr$ aLctV1o)[$}f(-n`B/,!{_T ( 9SPhK f=LQm-}" 1y `59O4KIP\:@ YN-tm8U\Ihyr#.kg+C~D}~g5uD+prXҌ_\=_a韅 ǵ:PG*;U4O'~h~p@||حp1K<$%E` 2ph[P8Z`xF c8m v}=QPuHHM#OM1 ix`gxZ% ͒8ZDjP;8 Zo]D}n?aǞKap~YsM(#9khȃA~j3& <Fnh{6YokHe2H8<ݱUB “LW4RN #WSU{]:x;zȰ2];v)Q؈)\O[br[ó幨V; G[O]>7#ey`7dfsOxjJQZގn\B?m@=[I^i]֢%+ }:spfTZ+è['(AyA2e ~?? X@r73oO)%$Seb-y@/u^&`Suk@m̟V\QMK?ʎ^%%=[?(2jL!191aR7|K!Dnud7D0ַAZ")| b)4UIj8w-BcuyM46/:U215d}l6uw3 IAyUx ~/4 0ǁO;37YrwY-P߳oG0ԥLlAOQSa2e.868mWk IbPC>]}ÑGC4ӅIRI%kTp|8B2;!8t\7ˏz=V~F̴s';: o4>1V2!0@KtH \gUE c3~\tlgO1К}\ļ# A=8Eia8̪;bc=j)|_}{~/ q4%91JS?Di/yN+[)r梨˛z}? CK 7'iww>t`%)q`Ue cㇺ;$A+=wU}'4ɉPƜyZ'ݲ5_US7VDOp3ga';rI&eaaLA7/hG>Q[lg=g|$Ƥz ycS27o5 fqi`Ԣ&11;9<jP"HssԄ;fϵ8w4P|>*+唘 W0rNSb(Q%{jL&Ѣ7?~& 0TP'b.ہIbRNS{;@L] (*J }SeAt?CݣPחx̱!`G[^&;͝++xٷdnT(ҳd@ X&J;&dZd9~& VW.AuKGUM5HyGPkM4-_P[XDpjAo;$VbsVEQ#R3l0f]`|k"+;OτMi [٩oMpdh:hW0OnW<*Ff6ZngDW}µTzSH{'^mK=ޢp8x(Zܩi]h99ddM<%E-G>g@{Y6?)XMsySjZ\c@^\Pl_<Ũ'76u/ 2}FS% TZYǦ#1]g+-Ra}B*pcoZV 0eAL />6F=Te'iC*.y_dd]9ɤ~5gGfXVQģzܭ ¯J]GvA"^ZG6d/Rt{7y8&}"UPm}.yK.7t]:=,GW!lu_ ¼ꐋݻ<k),xEB׸Xn#=0[k1m/f@{orAvx1:ėK*0iQ"u~ |犯I'QבE1/_\1j쏠"*(mM4H:g)2ގCK莲&WMM#ׇEBUt@]SjbeȄLNvԟ@M/0/t3Ν cηBmhw5'7}*Ն\f2BG"s<,lNnIN@<"Iࡡ<}N+fxkF^9oZUpd؆ |$|FJv]"f[`@] {FBlơs1lAR>ʧMNd+BM䌛b<&E\p ptxE-ZYl7|_RcM\9-I`v֮Lf>n!cW^'X oI3!KvPXۏV#`cl_܍nvM̌3cS׋%-n6hn|=UJUS3&AJ[,?t`d4#c\ٻ'R_3hQdU $`6.СC̰,45KLM{W]jKg~YK 3D,=RL(gp۶%"|TJBxz,%8zf|_w(i?!.krP3{fp,ܠ?Xxˊv\a\A@R``\@OT5MuĊY.]}Zŵ9I=I5%X(LzC/|Azͨ@Xs`>; (T+&/?Du.* z}r) T'K@xFx1/SRBJ%M]\lU6<p I$7NBsg wBlz2A'F_yx⸻ ؋vJG,Lɶi&-UY‰Y!LEUG0ա[rm3IU\NqJ ;<6V6ʛIM[8 p0mp0 Tb} ޸TW˯ۗ9]6yƹGQV|EA*jPŊ!{־ȶ5`W}Emn*lj ƻܳRrKtO:ܾxqz3=ا.EdJJF{i0>t&I5}7:@ͲgZU뻶s=\уEUu`%kc}UZ C];`ԗj/w>=EWn_`ۯx{|HW-f%)0-yr"J%[l82wgu%^IF,/v3y^qCd`٤E\FozFr Zn~]HzT+Qre0u0Ӕ";I3Ң]'VUdw*L(pݒ&Ԥ݃Um,5߆G v-O- wɽ̋=1 R3X4j/N!." 7VѴFp&4͞{\zڏ[ZJ%k7_.2VTFfK bfA[1fGf+%xHbNbɪ纬f?%M7uL@)~@{Nvt Rr'_X_VBBm ,]. n:"FmaºAKPcYqx֔NL[ֿnWDDzj#6a"FHdOGYlMӗHuJobyݦQ\[ Q'"59E9ll[#W f^.R5!i3 4!ĸ'lOu bi3(po -lGXs%X;5Y^"mg+J\t& zb%kne&nF~Tͤr/CMXy0B%y?`iaxiWxm{Qop k!L|Ax=YPQ[Mm,3O%+Ȏ>Tj KVe[A)o:geqb u~V绁!0XzsĪo5U Vb"p]Mk'r9,(:8[`` ̞EW}ȚO@J y \p` 7Vo~o. 9J{x6xE c]1zPIihDZ K%.Sb&!v(&P)D=HVo7l~<? ƔjՆقUOWE]="1OI(.6Bg4LORr/7ݡ)ZkfyYgQIV@'#?zb/ml?4$+ [Ӝ3%.+~V'Wg:d΋ٗ-l ̎ +p6p=%@el>NӐ&p)qQGҗaz5y}_^C$1C^ng0Z4B *x>_C-Z2jBnYA7f 1:9xYWm\6o҉Y74JI] Mj~铵Oݥ'6as}n @dSGĤ0=C9W-Ôӧ cD-oG#aMW=dGruᅧhPhZ'u\?~(QѕH%}^nʓesPoެF5#lxUGHs~/!=gtf63φ'3X3+p k1ZZܡS"\(׃dU ZaO$ݜlWэGς.|JEbR@-O#\<3m|&scY}:Z'E>K菐X0K_݊CX `5̑jާ`\x@ c+fQe-ȟ|es"2 ߝD>6a%El2J, w2zO5 HT`XSv`]f ܨ h݁30`hyqN $csOw&5HuDgx\?ꟼ"D& )tk19hz\w㡆?33*` y|R{J}'Ru+D&bG;_vızuU-+${̳^xdQaNF\B3kUD?~ִlsSKdJf^-Oc@8-cФ٧a2T ;46H?c0.*?~ 7no -5] ^YYtLp8U}F+@ s&F5piv]i`ϝ:t R8)r]$Jy̺&+걛.Gu?E88"> 5S)ڵ`iS^AP ~d]$ `YhWg|`㤏#=ԝ" rQ Rӟ|ʅ10iEqTԱZ.$#sNc.yY4xM.)0tmQCPp dp@_*)}pvh_455pFZ87LۆljH$q'!A\!_k%.^۶ڬA3chHP0_0vt!!&[7-eY3\맊g-ljYX_Y8H X4VC蜮I<*<֎L6H$` nU9J'g3!ĉ}?Y:Ū)l4Soy!R :ݧz{ivq ??~UG[.a qQ#-NG ?]>6ߪp,;UYԴ۷W;4?;SOu=Z iVZx_a흢=\-bMlK&|@.< `P -K.77A^#3>a8wlKl]tGTh#8+^lQ>3 I\Q_wYc%XZo+:/RΕ&q]DV?FkĈ MnxV&޿6^ !JFJ/[bLj+759D6\jul2*6]?'؄(6ig&'A~鮴p/e[ c4`"NO+j6ۭGB/,7jo *p?Pa'/[$D4 jݷ"Qz= [DfkH$Zn?YQͫr*Q{ԝaGwa{=f1>SOp ~>iYīzc|φJ2+D"532vg+l Y{oScX,%WVw +雂(L׏5~m +w,k_6FӺ*r \(1MXs+{;E_@!<6 GV|Uy3^@lWGGPYcn!.:5U IYE(eB2bt}?L8 sx*G鶐1U.3kbƳ ɇ>ThAbV*hn$U`s8y&,3Rѭzm{avU|:G8i/(wo$P{Hmh[Hv'˝86sa7jPKL캳]@5&]FD2>@*zDk nο\ ĤGm7!|LjEt2Z)zPHvR:8X(IJޱ֜7?S GEfKbKj?^7] KJ1dl=.naT''T2>~K%S48rDu󋿣Čї-Eri(y IcCs^d\ M1,2foo:fA%Jctg9lOjM[@čys .0wo@QS*XؓQ8b< CYsPtx0SwPM[),tpmrD=)~ח|^ۯul_MH1Dc`*;Mqu '}̰"]cq- o*9ȦQ%rZD0aiPD/yғLGX.ڽyBYnu$`f:zER/,%('LN$>[tKX:d2^c(нr@N8T 6av`x7څ<1xBjNvBq4 g~wE@?`lbs 8I>(ǁ[5ݛ:֌5 .mzI^mB70 u*r5w5\WE}W:Дr]7ꁀ1#,\}(D(?+6]_eyP?UNbu=j+uƵep ۢLQɂ ɾOq''{ w5z@K[s]'hߔ-9fL3=ǘ{>I>E}o.Qf:MRU1|JJ>T%l=mvcGo +XhF/aN%Mgn+\SeNE0Q^=-Cc';(QﰓJQSDDzWN|\.x".Z.Sg"i6e{/p? CFJ@yׄkLq[ݷ-pTJy yا/<:; '@Fn=%/ 4Twg7l e$ܘ$﹨Obpܦ⠻lOM7rnPKGn+nZq>={vHdbl&N/K/$GtF}Otqlwa$ u$`Wa0Ad?bu2s$܈xM5E̷yJ}Bu3sy >`'ZA`(`f5~_Hl5O|tS﮿ {ܚ\瓟?*rEA knk96jP- {1Uο>ݗSsݖ@]D"Rs>99{T p/tf¤QlQ2f?A/R4V* QW|3zV'hV,fwXrFړǤ .;R呎9Aΰ O1Z}(/\GƵB0yJSҀA@s20UQ?CFMUe`058C.۠2V[Ot0UjRMx  ~TpU%5H*w~qRŽP{O Dtd_5JIӣb'Yv5]VsgFQ;V.mݛD0 R?Rڸ0Y_7HiimY>E 1o\pm<}BZDZoH&L8Kgz$V5Y;.@UШ#B=%Cst"^ BL%uF$Zww901%Hƽ`}ED"[/K`w^GmBc,ՒS[ы=~9YJ} $FlAFPFDg@;5pv6xO?DG'SyHuHGbР۰5Cy(gb #e$9@Vd>mc!oJ3 SϻyV\ʫ޷vJ2jl/Nʄb5ltCB-1=,?me,k} 6GRD ?ny'J6Ya/?U&QST$b ;$ TRuUĩELUhQ܁1Jfw[H]uWhr^*s9δ01/pGF|F! JaxjPh_'vaEY$I ٘ߺ~2'Xmz\xr UՙLD/عf蟴g= eRh!/,H뗸#c4FxCoJȩ&FnDС΂ݱ~uZB1G5O hqT4w'π[>&ը)ٵ|"u0QOeNal62fY0IĎ]PJ3IxGXo z SQ>m 2_7,{ohq=dtT/EvF37B#n}1ALPg栤QrRY4ЖU7DSvO="{ߗw!7ub+v{s ʖ>1͈͘pTŞbw_aIʂj.!KY} 8=JOD΋\~ΌW3=>e3C'4GHTcnBB~bDe@sF6F-Q$gI…!G4"q>{O %VfPh7WkœM1MŲ5Wk[4bB z!i> =ex_=(MևQ k҈>XWBJ9['$qp׀GE ܩlY+48:IXF126Q(pgd*}Cb̶hݫƕl9~2"^+BJ'!=D>O dP*ЇZ[A;$`钛61tI\6h |I]5joS^Q6j)m^b11Y8Aybݽ%lwSBJ4k#v}Q\ܼR˯*ҟWPzԠ@qcHo5C3=0يUߌSf0rE9=צ65?UR8Ĵ\`fl#GN(&SyN7_v"H}[ѕi@  4sZz!N]>|uWON-Χ=Rm1'Jz+]FJ3+T4m!k wI1#V!tsbMMoٽp:w(+P ň#VNηk}T>5~Q=faf2V~ "sITa~^*8f֗o#u̴>2Mq"x-5FKrLDX)AL艑O2eU:#d\VtbZSœ;<:=_> bOrj1YSvXDk\Pݙ 'Ma1&adR~ ariL9-n>&K>5!qr}d Pd>-d7jʄ™S( CIK%Y` Ek鷉1q>f=FEK[ *@RώDo׽p@!w utTBh!_SI~:y#MQ` xФjFى>Iߌ"[i1fF*ngN[mJ-T so 9ǫ26Eka-e;y5dTVJC15n128Fcۚ};a~ĺQ wM/"=DMtjJIGH9]3VƧ6rWπ&CKsJEbՄ_+߭>ɐnb2pYS4q&CL* 6&)0Y[H]@:DA&Z= aoZs 7 A]t}[+6AOan2X9W ԉ- ;31M70F啉wX>/kY:yb/ot~ Ǟ|ᶪ&i=bDdQ6nUq1stb6]2jW_>MKl``ZbMD@[c 83!(KƷyw7Tv3x@9F |'e娷~ ǃQ%]\Fxj3lhD[ YˢH @="T<|-TgL6@5؂CP-mLX6=/= j|kD7䨴]hM[}c'\.MTb:U}utY4i9X+Hljgf|VB y yy`5w#O~4d$XT5bH袁i)͇"ONdWtnOhX1.^egPr'$vո@-mc#6$,z+؞Fueɼq#Z  j=LdJ A>{!4nNkPWDE8"u oa\Rd Гy"^'>B$p]N;qH=ѱQT 9lB7>ygiY 6|"\4rwE+;\%"@UH mA`Yv ]]#@XaV#LL+B^03,2讚pRiz1vY3/}mSq"s!~[a:d/5 =Q$NC<4ޏj-M['k=1^d`q֥0AÅv+%X Estp߁+Rs_W4Ym^\zB}EE.Y &3“7f3$ߐ"ar{0^"SG"Ո+);p΄Op-٨ryi'T 40%×Rq9$̷H+ c9gJn,3G_FOcbRn4v֤ɛ,[w }%bFҠQ`$vTkR=g&aٓ솘C8%|]{qr1%`d$~A_De4c!ޥ}%XtT:W)/d~O:# ]E҅6 ~ O;ɬ䙋܆Xcԟwnj` Sg>?.5Nt[6oŧܥetnQ \OUU5n$PLײ\;59۲kK]$ο 7]|ϝ VA&BS*V@`$UЮ\`Ts nIݿ[_v7^ejR-a&:b0(X~u_ͳЀ. lgR$'(ꚻ<)KgC{[qUR.g\ȅը\Xuf.,uL+#Qj"zp=wU<_8-* 9]W+N0y=$8 ԥaZx~zB}|nzKK8!|(K&3<%`mc?&=dbx]%G3MZU jYHfo$PrWbk`F c`BƼPĎ -vwS9ef)n1fn>Bۇ$xS@暕-;Vf]ቑuĩ[e0˩9 .(H!P 8ֵX}󕸚೿ۏӯxRJnhUA һ\ej52t~ܗF$I^YT̘:HS(<ڶ| T֡[wZ4]EoL*]< Mh$d @E9%RkoHzgQ껰S倔Cu:c]CԪec7I%P"L տ}!~Yeo|qU0{|hH:L{g)1)C :GKmsZDz]$ݵS41X-L:Y횬gK-p=*Gs.>|4Abr32sDG wx[-;9%^e kg_Q+lYL!Yʹ:Mtp5 eb^y_E n"2 #&Ju}vR~B`SRX6LZ;AUJmAڨt|LQ9`H1̂|ͱRBFzt܍bpR8B Q8.4e!.3>NP[W$^׸CF}ir m-xWYbsk/ lVXEsr*sI<+:G$dZ!!&wVD򜞒 D6{HhOW2-;{,|DOp~Klzm \S}|lS{ Υ_0WO3D()e-YEjҙ+)vk|ZU q?пf:<*j}-&1d}̞siIW$00-0ArQޚ#71JW45&l}l1;, TPk.aUE7T#5&5]d&Cc-zKBH<ӿIMhk|TQT ֤$\#S%R> 2|Is MV!heiOEq XFVm]`͟޿P_NYu~Gvk)n~#[SXP2ToyiYejMyRf.|WGI` G0LS~B[Cy%=B4cvZNb~f59YF2+p|TޫC{13Um@/=㍢_:!Dc<^!\7ӧKŃY"(#gÞ4wibU$sxE:(BV:2AP\6Ss i|61=rˬTV>|8Z&—  }D_3?_.uM״SŐ;ΨmZŚsxu'A~ȩqDF5wKHY^H LU`-^tؐ#tr5G4/;6?K-_RA9eW8 Um4pr)Z#>kJMV(D+f>̠sSw21,2߹s_v9@T)?KMѨG* 6}N__(,D"0٢-nIN径MIx }bէxϧ  ).:zV6~mVy\ x"&rنQc Ym26;hB\+xXѫӐt2tֲ@A$ ORoFqJ{u{6%Z%>"d]@Iq 1_rPPl4#1$C7X02bgh#zcK ªnْӽliSv Čd 7#rPg@ю$NeMf뢡u4qc!49* @[xwhApOec#&~G >M۫gb C fuj2WY$49HUDd 7?R{V[}76{.{DhWk5TjCZ=U)%M2Cl?vPQGPZ!B @ Zj9[ @<l?&(CBg)p%ܶRث?f+@bzNfޝ>AKTZCH:X-%ܔUz$#p7ډ"./n4?(T_t0TZߣ5SE ?Rϡ/}ɑX{U~EU2v㎦6J.9M[vjn.~qu,PˑKZߓcq_k%JXa |W[(tvHoDJvaI/^c~"w~ [6,^VYKS@ǚV.L$.碌!:TLܰ|8Θ ,o6ƴ@wRJs .P׮Lp rnZGۨzy' Kg E %]_4-羽QC;oJyvד x. `VNs  #, 'Z@T:> 롕&'j %&S79xPP8K{cj+/@YI>I=aA[MWck$L^NFnPA~JDbl6w `!y ga>KE&%#{V<5Y67 J>s6]w&C.T Y@= BpR1{× zȄ[FxscWhC T }560 CMQIu_xp']9˙\&d7_ߵ. h+usNGV|%ߨkX[&E5B^`3VQTx:5-I5N J @AȌ jYWkى-'i{("wi3f&J<(juм t=b@t>dlupwev/sȵ}Om[ԗU:]ԆLJAdVT DL־nf9V#xļuKqے@Rk:<˹-s 9wbKsۼxP5ٔ7 Ʀ-Vxswn bШcaH7K$܉Iy{k~3*}QT3E{x3>+/oix܋^T&&<\GmTJ!21t۲Qvo@uj~5_V[S GO-]Hrn qNÝEUG#~ۣW~Ҟ(TNTF9M#Kɡ:|!5飻JYj>(f=d@1 <ØU$uw`oRgY6qա &k|ܠI}i=v9E4{C 4R`o #M!8L7h ̉Uv)'JR{c+4VCg} :N2y"|A4T*kF;NVˍ FQ&ާEjo!g;+wro3䃄 uHsX՛!,]XGSa AJoKo‘wq?:DsN7?2 TЯ0yfy)9-쉽l:&Ki9L)v;$0hhxXʌ ΦГyqP0{q$J;a ϥ"!U_!1SPC29sԄ/H'q ɻF8 j9>*T4gbc۪*="46%;CѹD&4EPZqB<u9@C fumAbr~<8k»לwP+>[+ QnC_GG|$AƏ8n+~GhY?U޻[Xxԓ=ϩBrC /(+PYO}c7v!]La<-vK~sd9OsZ7B8?V] CuWgZr8D?Neg?hؒi6l"#xWg^Rdžl Nh~U~|~d ÛE'[E ֯:[#p1o3vuPmTa AfDLIf[ɜ\3i1㈇PT5#5|߈P0Y^75g{9|A1{o1Z15LZ}g125"cC 9y"%WC5[ώ :-`ಯQQ nڧRjPڿ1*+UaUlu9#s'kt4kT<ʔA_Ot9_2([,)f`^3mݭg|Gh4LϘ?6bAZ&cؿp4.&Nx`k6j?Q"oE-+׆3B"S+Ӎ,Q> z0<Ȳ}yV =~q#'k~.g|g7 E|gμ u-Ժ5|k .e6D2ɼ$euljFʩ\n' OyزC-ܨB"h%5:$3R)\Lm+33#&m+ $dE/AP'Kt;k޲BYcT\ڽYZ 0~4:3Pwn͔s 'H\_D&!c9'lIl\ĂaG/e\i/#.;tL{ d؝䳫enضO俦lic~j3xco&=_O^Ν(*3:*0 1Ez^ g dyנIχbX_BmH Icy_ihv1l=nEy# TD]ϔ=y*mq] NV]r#D`A;9> R}lZ!~׬AϚX lt6z}^2eJF=e@-ύ% a!jx8,\T76戞Kҟy51){km]O& !ޢc8Zvtrܖ+V=l+seи]pQv""+wHkMd&*ZEZav'u/l) PEou0bVn/3 qd["Vdfa[e|E[z 9w>Y^:\J@{,^Yn A&[>B$أ?i4vor$^vGSdlieopO4\tF;\ҟ@݋HJ9vh]x n \oP(b{ -ܸ[=$E`[~6'A04ܜkhG{)š{8[qxR]ExtTfa2Ѽ4Ag{TD2 % \2euwH9C`@ID6'4Ix7I4hPP]M~ zy|x)1tmfP _:uw;g(7y] o=}4f/T2m}=&icht/OqTЮoոV`T{CQrO2DFgfqAy+zWucX69L^&:֠P-#H*8UQ8oh\Ih9pg4&sc= :lxuRwXbn'[:ukYw:1"7u=Ml ]'K#ޗ>wEzt;G>Ҙ~_ojW8ZZ"X@Km$8$%8|&7ewq-DdhDRoF.̡/&hYS f,ߍ;™a[dO;ۻJ8FT'*ߚh,.:Y(fN'%|vfE`3Y:+6$m?bU !v&DkzvY~p%nF-}^LP|*, CTm/V>d;%?y$u/} *$2YwENxQ>V\Pw8.ʐa:nZ\;h|cZj;v]7 a;(6K!NK ǸW0΄~<.j~&^D3f?7 8 ݛY:we|yCm JȶG8i̟NSzt~eYz *LIP6RWK8%X \aP6-#'; ƞfށn3)_uxV&5hfl@?fTY\[ ?) gvde(HG]}{sˆ` (_J52R[2JG$y<(9ҍc 43 ­cwl9"XU.pX6ˆX#S9 W` J d[-AqSn.(|7#ngaQ|gYŲG0(;29VPȦ$pųE6GS_k)L@Kw)ôF N U$!M$\!#D @, t2ER(\h!61Jzåy|Sv=OlbɌ[blKCh01fl&rQ_Up@½8ПaVT@%*0:R18s&r:vkOP44n@8c^'_W̳[:P}+A8Jւ*v߆R=% [Ő+Vt+ji1,X%)M(b[< N`Ccjm9P!Ba_1@ola~"7`]aQvW]qZr\(9HNKB6]i[B8sd}Mf;>nV=WĐ@wOycJ`wւ9$\oC-V:K}U6ђ;Q,}LƤt]MÅhaQՐC}8- GČ{[k?ka~9+QMN7B-Ά+ cq)v;+!/`_;}}^J  $ڢasE*%Yh9\K@IWS5ps+q[z.wF*k.SD˭$Qp_ﻒ` 1ΔpU\),3C0xxEFQh׭'Ur3oh*E r颷\v`$J5/^evN+l2΢?ޮ z$#5 IJBzM$cp1٨D1'It5aPHN,B#?9-v#ׯ!k=m? x#ec$Y5uyKnqiEjSHdcbQWʪ0$b 2mƧ.ɐڎ]3@j&s5u`S I?) 7*d7}̚BsjU u]Aj-[![sC;|SҝT(2$"lPm;M`oEZR,\,]Sݖ;!{ 5C1P.޷IC ȁ-Gr(x͙Q†5]b6Qj4?Ҷ&)`F4]rk5ǀ2p=拍 ^/&ݳ/yWB@)T'E:BѬ?vx CтCs|(*.mv <^CuKae;242[ T؜"}6Pt^ei=N\@[vn:@;ƓwlX4FQp 0o(_"ۆMunNMjl^y8 Pp͒DSwV 2Ph+{=],i_bJm}}B@{L%xz*<[*[t0z$llFNA=$l`OXC8ÜbH%ii8(pK<ܖlqFй- (Z3p\j |X}Rqz eϊn*{teoIm,3ɡ$pڢ`\mKG>|$yfY=!0ToAK~:>N~"݇EARgJ *)t$3f{Fm9a~#_63(rtG] [y)lLPJc&TZst^亻uʅJ.0"5'N0GdL Ү!c/;`aǮlYVz\gFQE@N8'-VK3 ղa9TM6Y%3w[VL?jb`Rۭ[VS@Z1ю`8˟x!৛gXCAj%mVFt==ڤ_d JEq0WQa<>S(g{g#To _:yp ZVر /aTRpiuIڼvd"D#xfo<Ӭ>즪Wcn=,~$FS滯Rj:ɦK EgT0DmdM`KOT<12C.aCt^c{ 7#,΁ װq^B{?ژzYڪBܖ[P8bXRkBAuN)ٷvp᷒w\,Uh q vINmhGՎ+?_'03'^ tuFe9 $9ٷ|W9 զz?O>\W01t8`6=b9/J%a^cJDs6꟏WBtyiw؇9l%xW\ {^:%o8LH5qNuG=YOC#Njk=fVDvGQ[oO+O1rTn+N= aa V5*e̿ T,wiU?,p`pӂt|Ī  ly] VYPkNj% L $tᛮ8w^`UxeW6gpŒl((;[R^擲#Q}.[skz~FeckԽQNB6503)F*2; ˷IyuB;A("1!eIē+ )#ijr7ڷ8u>$p%t3I.}o?a=f [EZ@ sci'NRbL+JHU գ^N^ɧ&M@2@\G*\<%X?+mѭ6e6X#Jk}#H mqQ~ }9hXRW1@K2ۅ^EZ+8nXLCv1mT,;v"ўrxFCe!"uow"17mXTY\x)POy,KSaSo^t~)j0)KO'9p`^#3#9kqnDGN!eD(.wC 7Cq(ېrf?`_ba ߁Kn7 w MvD9]JWH?%Kk_Usi; ,ޣ6z.\.-GUmCҿ |!=} Q#S@'R,b,0;6 vhSN*lv*oW8D~\hk`u 9O| C[N;T$=ГnrAF7]Meગw|2Q ֣GZET-Hb|† ~᷊^*9w_)t-y񆺛ogw kr_|^C:3|"Z!ᮌ+*5B@/E[O"a"/ C=>oeo&JITr ?f~+=wj۸ݲ*楊5/f*vaUcRz _hS8Jp}*?E˝}|vkdZlg\uX$Ki`&񘇪.t2*Bcjl2޺<:% ly2-$_ J|BוQ30k˻!`ڂҘ-a>q:|M~ZRte9u祱F8b|aH 1V:o-bd}/pk-7ΐ%*AgZMb]oh;]z"/`l`V A%fMpev$IWZ@}"CvZ&mMqj X/ɕ# 1-7{HD oBOMi?*1ayɬ^`|+q'| 5!28f&U0A'|ZQ"B dhh&;K !p`̰8EoNr(db=mPi~Lu# /^hӧU4?!ꍖ͆y0B 59O]ge\㪍|Z0? S/^digݪOEhhDzILCmimhs5sXe<.oKG*>)(:U4b4'\"C2}bcT9|-9ka5$oz/Zzh{q&Bru!ed,F_5;cް]ju%`[N氨HnݧC.xg^0yr|u jltZ̚af%(7^}^{ `j )٫j7;"ʲH223s;+5 v5#l2쐻צRŐ-~ڃIe3RzˬJ;1mxZ9f)vrE&-!k V'Z(rԌ4bK;D  $h(CEvt30o(""GhGc:=MQ4u&[fW( ;yG#G x٢JF_Do3ItH5?oT8qfͰDȝ?_ ln,vu3z7wּ/\4BS#>n+c4-aPhzjg~ۓuF(U toVǎԱ/5km$%p|K@nPZL ?i&~@9*Z8 n  X{Mp鋀Ehi裵|My.Hϲ豝]b!"aL:/xh,%O+;I>&;WԞ[ԬHjgXqpaK|p׫uI#e'OD竳w+.Lv}f\vKs0$TO do dFA-*;dd)=!TNeQ5lJ/Ե9WleO&`;,ͷ ?buTMW$jU@e>g܉&rw ( {H ,L=Du܌6J:Kq⠹S1ec 32҇?=2c}^D`ね}q]sl~0f\4ehh{ZcŕJUvG5~oVd~\BG8JtYM`Ι#bZ^YWGTSN~_W굓1%v؃*gp+!k!ʧ"+KW?KY(PhZku`Gh̫:~]! ֕u>\v+\7Z\? S儼Jn)ַ} r62xZV9޾ 6I61 bgqǡF(1^+A}eoOhlﳧh4;;=kD.?m4pě0!W%'W#Cq`MG0U©o>-da~JcTGMr㷉Js6J%6cnc>3^PnΖl+>j'dx`:NMCE$[:3 }eKY9:9M2g5a=v 3ry]P$^~{,>OL! Q,{"sQ k%tӛ%Q4>]TqwX:%WnBJ7 s}!nxe+pt0Y|ڴ9{|1\2fkA3PJQ|qMP%ܖo#`P:d`O-rM>ej8tiQE@-<\7I7J\.ZvypeGo jAAQ3r+aY-d%bb1NX[ >3Ʋ-_yXG eJMuF35^4y!q5<%.rʲHB[e^afzk &E_?Vۙ5v-&xCE=wbG ;mÉ=shT҃2m2$ Z7n1"ne8w+E`TΙVWDh>g;<$AJAFtċr |')WEoկWC?Imlޜ'i9#c`a) hչZ*Txɘ(0?mv-7RIJs j_,#N iq 9f9$1EֻúХq]j3vD=Clxua HN>;qxNej{m*u8-d?H%YgM~c' C ,Dcm`g0wi,݇HDD[4eo凢薐qKg \=H =^(^_!!:,?C?Ng4p 'zgi-)(  I [x W4$O~*Mhy&z|†،)5#,IP֓O6ȋ1EEx嫔D5+|(`>‘rx𹕵zzOU!8YoL&HzJʣ .?o|=EgEqR ʤfp:ѭJ?wu!w75 tR D`[c+Awy'&Pk=e+?2dh W@Q<#RHёۏfuޫ]i .z$lN&"="#b6h/NЎsBS9ٝz P;w(DagAsm!nuQ_ t۱*?!G`y\})*xFe9R?\\% DQF\ϽW*D<=4%i+y5>@m  +*Pto#cSh]T-w7:U;Z_~-«rs9e\y3'1L8A왷8VbF~p {FO#>mZyUw8oR"Wz ;R!%uŹ{i b",7R˟^qp+ u;6xr`F| SZR;%=a |t03\ǯ*=Mi}h*g\D,T?=eK`./͌sQ`,;K50، `-=eQciTX]L-qVv &P7c8u␼WDADb [Qe=&{d &1-w%b'$uԽQ<\ͺyՅ]Ӓd2)O콓 Pݺ5kdeqt&qT ђ~Ώ@^+Xyy|58\s~ qݖQvRwp 6( 73taEσWTp#$^ *b:L/öz#m12Z"'8A=bZ&:ݵ\I{>vD4“ ԕ0~6|+A3yᐕVfr6oQaaKz/zx1X5m0{XO EGs4A77'Sʜ,.O4UZG4`VFTa* s^>{Tx9P%#9d{<)ԀuKՑS,ٺhEP4zΒYMe8UBc1`b4uP= .Pf-xkK:)<7AZS`:2T!Z!ڍbE9nڰGv[c\JKPB3Qorgn(#ʓw]MI?+V^xCHcC2EK g(i:Cr/1\*[h!f#0V$*c\EOH͖2w4h>zw6,s X~_;)B1e&T1B.&_]WP/K:1N ]V̘M5.2hLRοUe +H-pB3jDYϜ c}ّXTO [opgQmkTH+l}`9e| VvYi$?fC~P^C6c;ڏ"CDYvUEɉ4v05)+'HFnpCE_\ӵ:&T@b MIQ|ovY Q!Vxt9G/v\Md*A[caq1uU GwEL^_=vy貔X7A+^'ћ3aβ,!pk)8w`E:`6Q2ak+`v_űߟnq.4͙ h"|K` ;cQ~ VR>9mZFoIթȀ nL !+HES) b0f%z0I#[v&I2fB9 =3-!nT{NEC-ۋ3 P1g'(kz \ JfG!l ]ݥ|P_ca0?|P?rƱl,#ڟmKBfnDDW=SNPZxv.apOdw^@f{O-?ND%g7(c>TA{A{3p[II]=T $K_HѮ硲Pb~X_~NHi:d,QʊwӏILOskļk<>@d" aQcܞǺJ)TtBډH> UmWoMr}_,4 žpAfieZW>%//~ָYn.D^sxi-/Llm@IU|Xp!bI%!Q W!"+(ZOv6"_p/>ikC,Цl*V ƉfaSC_@yDNYȌÏ f^ȫњaf,N'$}O;4MCM1bEhdH#/> E4 m.eψQF^PiI8AN@{g,!9#|(u1t\!Ww5(gtOG8-"\yrD Z83^HVIiVf+22߉̍jjo#  _;V՗a. Y0HhP<.b_X3`We렞Qu )q\ɜTC>s{\xqmy\^x-yyNe C}[v֭6xTa U5/L]wǏTW] .+\nZ_i߰N$@JD椻ծ"XS9TĒzJUffZ>V9oADe^bV42y#niga1^@ٚ t ۰ytCm7BBKc DQĹQD63+Ө]{-3}^˛Զs/I"1ݷ2^^/ UCt cq|$͓^D3/p,gdr|8 eQ4p0V?C)@Emn(G Zן]E/Sĉ+ máZ5d6NJoqH)Y64Ÿ)x@v"fɔ<@X)?np}k}~| Zl$ }HiP{wEJ~f#Xh 6bP K\ܨYN M 3J*qr-KEȟ`6X*.s0};z;<WoqǢT-ǵ-'ȥv=b#w7>:P;CrX*+bktnml2iNo `9~ΦՉ _}2rzpH(w1v; +_@(̯d"Gd1`c<ʬYpurslE֠ ZT-޷[-2jo(@Sڍ Xy֫[b] J%tgI^i%(i_[倜:4'!HJMsiwyHUbaO8ܮm|l>`ؘ.}.-,[]Dޱ{'&6+,m68}HڧKN9ߴp4ڥH2y'tgIc&ǍBrqR%]Kүm8qpbk]e._gil5󛢎}K-CA?$Ϳ/; qѢ_Y6bGG>i:4;iN[UBnLlVw9e[]Eø./➎-Ǜ7r͆;U.QH{<+ z+_].J4Frv=&U,pWFWG~g՜8tVatXrHm$)]Iii:O"y'_CuʚlR{ jSVSUʺ4RcY żZ ;z[N~$X/JcJM)lG%7E߿U=#^D&N_l$HWf}zC;+{^xwb`4+#rGpؗỌPPr4.ȹMvı/ڡ0~QNQC&ysqE8u+`YkLĝj2yptoUJxGzfHf B?7:gBY%_+v_iGvyNwI>$T?VVidzv;KA¤qT[g&6x}$1\I:.삘l DF93!UWs$nzԿGi˺Ѫ5v q-TWZ fО9 PCdM,Ŵc.zFk@f{yyGMjk?k}NwI*A%ݶf vz>lZRz<47#ہo4.3F`gh/m</ysz$@lXeOдZuc  rWFe]_JQ!9gE̄',t}lfz2Hg\[ctiG(35p9 N5Du^uPXrqSɉiɌ0ZHt;+?lEɠ8UDXb`6qB-578߰4eu("ʀU/@Y8'פv #M&b+Β_<"D[p.-%3GO K,wvD+ Ȑb&Rb[Z&U~ZV쇟,U{PP{+hlz IԾR[Ӿs^ScpUD4x"<W |\>xY%sPihRxumzwh20Kbo "'?mpU->ߣnpB.gns"c_1{ u) ˂#9ˈ(D"ѳL@L-DfI2N@niTЀAKpP8̄EO [52t^ܒ@:D&4?1+`B׿]pNF;KfGLQo'fbtc atԎ~~M78i.ז\PӌH/[О̩<>?:7ȃ3i&?wNH63ZM`= `:xa ܩmQcW:%&ge};齩}Uk۴ Ocm*(gpa*N=]jQ%KRJ%{*Loc&C ُ $;ذ.h9^9C~!`_!SE[kq:gvߙV3(2F/{/ ;.P}i@ؾk+؂AY 3U'f$;1SOphBuCF5("5(xB6 rPʘ۾9G"b?n5D`u~FJGYl%l$-(r記d rE#KDx&8E-  ?m^#pPǽ̀ 1<| (Aňkl9BB:X`\H=AeڅՏxhT'{ 8kqtA>.4h'&%U~PI~= [,cm)D8Ia% ZRy k OtJώtD oy lF @ȑS#OjE\0&{QO.GZ/VfNNy1ltǑSGn炊ErvbtNE9b+KGP}k7uT:j )hrTZFhS}WqjYBYdF;XUuݱsv4 'n[2i"pH skLywz"+~KhUEbo?gC|\{iuAnd*".cW>ʪ7.Jv4Y1@(BEv&*r>|Te֍>Ѩj_P_TU:G#oqsY-i.֌~xYiKBd {|~4*<~<T=2sripZ[cˆ'v @a'D,`';TѹT^`SXeSǾM4[MXѲq5 :Gv%Xа1s"v8g-uקi!𴨓;۪nG؁|Ҭ3w&“cU97ͮ$RCGAq/|B*P<wORgCMX,}ۜrs~tRTkZ-^ YHR:y*-7`siRJpy./ׯ#npje;5&N8 Ϸ b$ICd,@:PN&Pv ҴsOv_r\ iѸFxX*S˞a#d\*kSh:8o"ѸI~xya#?.2>ϩ=raee/̮RU@89.VV0٦U[vHz`ZT c?)$zMV`{%"{)xiqT,)B;19{;C@ûZ8er*E 'p Cf!BOM` 6C(9.>+y*WH_Ӣz*bh:MX(/XBM"J?CrԵanB tE,豐#o,RHڌCb}֚3WgVPOBW 2 ZJn8>UsTN~v[B\ f 2sph(c Ñظ63\5%ÜFqۜD {5Xbѿk`.'_~6/JӤd mʁwO׬MUoږMlWv@ L쐂i4rᾕ²M1fbbUX?5D/vU |E}5qW/;طn@r Z+ڄq};AȣNMw54mmNaVݚ+8/RSøj@l{~@sQc6ƚu}#2eI4,/-CV$Y ؍\dR<伒5m3EpY鬟{Rݛ<KB筶R-%ƀJj [n̞T;'ԁ|d&IbYH9Fu_߮Qz˲\+<|o{WI$~}xʱFWiۼ(n CsgHrv<_?Ywx@T~&Pq ףJ TayADR^Hb_-؁_dao@'IGj1f/ӷ}Qˀl)oJiޣJm Aлsx&K=Q^J B dw8hFA`(~pX0(sO4Sh^+GNADr-4 f]Muy `F{v|{ƪ:fӇT,9 ⢎9],o6i*>*% D,l(n0!AK Z7<%ZW9e]ps;WxF0'㧈bf6ՆK^}Q!N,߸Wc8/, 穝¯K5+BJ "6ұ,֤7RqNv1}5a+I4hDȣ}c& Ls uXB vDw_HAnӉ: +CF8; *t6M* iwfh-] Xp1ٸ&,W>]X}/Fͱ#r\,շQ XVFkk."(`5@gj7-ٗCcV_t_i>}wU0!ކ2@lU[boU-$[O/y0IQH2̚­pF:o7|^LPMt W/~Iz %*|Afet\+ڗ>$tUï/PN <M=`<<̎q>kdJسȞo[:~1HPLw|+JMr\JQ3ذa|}dbd vxvp6# 4:K`lc^c+<ޗ_/1(Vۦa?8ZHC~+N},(mvAbm< ѣk d#dC@~lKȂd&A-p菭BS}ځ_1axtWxvsM\c]NnץBQ 2EF#NO2a]F ohDl d6a+dTԾotd+dp@.*m6rntJ] XZaQj7 ޅ:%iU4UhڲR*래1GR}O$]@\TM#_Chh5JTPK{=Xiȡ!KW^oͧPˁ+|5+Mȥ|L*Rwo߈קF BJS]'gL#崯E-LiJu%u:ʼnrLJ8A6$7;1}ɐI+|/@ Rv =MujV-dJ*v|R~ݕ=ˁnQmEi MM\{d b#"iQDx't)m7!- kc-eiޠܿUՑN<˫W鞇mx t}S>,d@ӛit^vwh)G <2]2Nfj}r`BO@DWwT`K'q l^F(]rM|py< CkWnxzC8`RV6[5gud;WOD]z6=Tҙ25;E6:Գқг9 E)B^jRs`5Nh=u8/'DW2ɻK!Tv.͚hG W0;'(㮒%>BO]Y}Xm N|وi.~#Fb{rxC1u{ OaP>t VϺ>K).A?](뤖QDla)~Q6dj(\FQ̏jR~I{^8쏖5ǥk=bCnl*7Z4BjuMw_"dbs Tn}ŭ7qSf:`{fm?oC j ]9gqBt\87N IuͬpsęYBFW-x SY]Dҗ բÆ)̌xkLۢ{8HU;–V^a- 'lTxB'BL 4(3/0*ZvM%)4ARVPu(H1_"=o`O)ٷTu&Ky-B.K4(ym{e73]Ѩ?d C> :'[:ƃuQnh,dm"dP;&r`(617ֺ_F D6}Qߓl#lk.{g äÜrC0t ?+{4e8bFP"[]0l^MLq_W`@ZJlra #HS 8Md:X2= 髎C Ĕ~^UvsxPΚu5`lS$KDE13|;,LX>3 m`h)),@{{9y9R4+k, ݣ1l4+|W4Kw /|9g jg@BNvR~>1âUđgzTro-r )clD+piPR*y|_+s˒hm֔l06jI,y.z) ()' p(C?M̛vaֆweÝc2Zqd1Oe t\8f7N'XVDzˆ v?Js[F?R=[qZʥ(f3hY>5Ftf\av C%UYbnS&8NV3H1%L׍&O)֡?e!Q U$>A)z|D$9+~˟\􄥟)cb2Uot,@8 r"%s|ý.8óD%M=RO[Xc>~=T»XG8a6A_A ΘD :7ل״Kqdx5_i hmC}.PA~pQ];֖ou~۹^<dZáO Enq|K9Agc #1njsЛB,Ǡ;tD:8[ΦsR+SF^ANDrr".muiFveEf,Ҍ*W$WkoƱ)uAzfRGe%%oAr Sp7+&t@6F.(\{a_aUebwA5$r|\LcUˌAGM{5@~SLBͱ3tCMCT$rrf ? ?5@!JeZbG7~YD2N l[Q9E饨HCl?ʻȌ2k n@Z־>o8EWQ 520ܕ/wF9}mֲ>u2Z[ڔ,L -T@= cc';.81y*@CN*G8C@a֬ޠ@!+PƑX؊5',rtq$7ypN.b%? E}!Dp7()~-Mk;yU&҉یH(m"O6!0G2/)aInCWףh"!^>S@hv: o# MA7ӐMp{vM1VFr,T[M"LT_:v{(; @ODKt^Fm,HnWJ 85ocWUD~A} 7?*:_t2a@PܟqLbYZI"qk1PxΥ Zn*}ۗ,tퟲybtiPclmwl1&}TB(\>2^\str,]cY`k: e3J xd~THGo =m{5Ŗ(=.=l|Tx*^3C M&ZI ̭ 30b}!~}$зX>u} \tP~¶qLYW{z*g5c4芙'\8FC]cDb / 12`G }"ݗ2H} /gDd˟{:ZW)EW5"׶A*sv0zF'9~$ߺ0-HudRA0̗"ܛ\ilq'~'\m f7?Eҏ_:(6R͌`pp[ZI8]B}1f݊=^¿2ѹzGzx~ii)ا6{n T6Qfdf!ܰTL Xձl+K׿|9_]4 ]ԯˤc4>isJ<*ڜskΚS  R]gN8I}ak P|IX6}HD& C7y1.86,z~E `<)楾;]⎈!P%IiAG:DB.V)^m۪jT$P}~_KəՁP*Mp4okc+A͂ڂՔiWnfu0'~:buy?䶀s+\ϑ:j|/;ksЎ r1nf2Q S@634&8{є=.ʷڷ}!3@ ip bmAW}d6ѭP_B t li~7_~8岈STe*R[UU#O.r\R> a@@\Et Ss_'xFiẏvOv@]r$0n{p 7+>T'%|)A ь[oP<޹sf;Iʬ7|9!zMIe2;[ Zh@H罯9$zH!ofpA_5;P yPpsw agPVeAt6/϶,fnÃN>ľl5ИHW^@` ujvOBKCZpV-^$,=A[R"R9xkZ6Kq|'#7iZ (gAk&0X'zfX,^ lfˉZ _U&"K vZ1&ujC\E.,8~0fZٓۖd~t=9#\\|M5#=P(>NY')ؼ* !AvEF8C\sAsuD50d-i&Q A6,GE&[,>Wvdbf`5:H= ~3%{5MRUc-UB mC_mR<|_/@VQ/@)`]/IDe8|Y}  s'؟؟*6M(0!LI GRSs0"DU(;mpe]0IzR\!ߦ2>?G˨Ua YO𕧮_սl]Ix04yI;)R+^[o!?ӭzP@慙=J)mؾ=sjUvYN*F/9Ê$.NSuH37,c [Og7qbszgF,is\e`9 '[q;L* YxB(-#@oR)CEs..tU$<PIM8lFn3Ȕ^Z~-a(Ӣ[@Yc2裏)U%8c'[HvHM~&Ia0b2%>z7"EVGGķD{Z Y*pЁ{ cSyG` 2  C R5оšA?P^'^B_%F@B< !4=fV,~5tR9ȏ/cC˦G~ uKi،Ѕ{%OQC"dCPPL쯘}QSP>\i#X[2 ]Ke"Z"x7dr$&>تǯ[!ҩ [klᶌab2wt'ԭO(8c2lN9ϧnxW NkMoN#i4ӰNҜoug#MM@2XD~0yS5smEKl¿'zlpG=m0EcޱOc6yxXKC/?ţCd cssjDݪJ4|@wqFJ4 ݛ}pte,"Y"zh{s-Vmiqfq+ǣbw[u!5Tnxj< y,*#uoH%ucu4,^NퟷZ8=9Υ?$]BH.@[Xe8Z\6RoD $6܆pm(7jVUVwt-yec0+1l^%6!Aq,vMkaĴM 94 X@T{kKLbf(c¦9c=/7g/uwS cq!&JjCX7,p8>Yt-S e |&";v`"RN__̢ /RU! \r%CZe|\RbuM&!x -D_~_܆0r+ P>UQݍ0!ϷaܴFK0y3fy:;V^ @ GHn;o#}Ifv㸬/ax<~ &ZB]\Sm>V mW]<a$Blj@a : r# /q^3)k7s!&`Mva} y)Ϥ3[uz~;*h3"X˕OT^{}KV0FI/l 4{E -yb qtmc\Sj% _k"踜_)RE$3LQIH?8~O=`3.>ߓʡZgm0JmìA:o8|z?e!Rt#*`6ߣVO?{Oǻ,͔T¹=js '))DqFf&{KE >+x*zyWP@{w^AlcLOTh2g9ou_&{8 e 8/exHMMI!vg\r~ sXIhYG P^StmaDBQ7D ^^R$uB#L@#ajQUm c uD܁' X2RP6ɦPٓ62&Tg4:.e1vftO:'}ꋤ*OJFFj{9+WmkL"#W3Oj̍NU1GrQ~|%Ci8DMhƇF?diՄ])~9CV䰺jzsoY&Q 5ə6"ÇYҫlo}l yu7?o3pP|#_aDl5Ȏ,D Ldx5g H]qׁژTxMSn#L8;AĥڟA^Q|#&sEO%BR[VՎAU!IYbzvcwD1+E S.N:YƧ80k2^èغpgJ7＀P !TҭS`ƙcthVOaV= 4 TZ?\q-b 9)_mu_Z4YdS/FO,C ˄\v(1/ꬋvj,H`SF$DDH1eS7" r{ri3,^w 65,VρmQG}4 Ik^rWӽ.tLf֞<|f(F<ϐCtX;µK=3jx[ʐO'7ʘm/uTC4D%(ꍠ6mؠ2u@fS>Zh΃# ^QD{&=Ge TĘ84o̯i<;:(Pl; jȴUڡ339q`D+!a^=\*ӘdMU J:(Kfx8oRj]' F]Zs)K]5ѧiacJ"f5g'#X+Hޟ"OČSߥcTe$,:;1c/$7I>_YyF 6P4 Z8B^#' &×&W9H'cɛAtt ~ T|cT(z_?W6eqRM_ g&O]b8J?`ko ^Z 0Q2<'}U/q@L"K@&*٬MAePd^t0VSeƀb) ̛\V<to^5ʂ2MKax'楀GquN|ICs>t~[2p RI߫Q3ã@SY$)z"3R~ʒ^mj|`QEۚ9+ARwBV,VaKiuӀ@HNs)w/'oRwm\iԻ_=9%iv]zխ[Ρ|0?7& VoiWpBtdW7x=T wKyDfxK.νF{.٧AR_eCBzM 9K˴|3m g[=VYηݯ+*{GM:y]L[}Xf5PcRi.1?w4a+Ygz|/Wԟds_:-B%sN~LɿH:ڦD~8/(e0HP:9v\k3V0 46%{T|4.p^Ulz?hFcdإPi/W_5@I8i*_^M|fYl?v [ )/tj e7]mzi"۞=*[_rD15UxSD?K5PwKhQ8oqzЋ{ƒB7@b]*B-pt<K#4) nŚ`}wfSft $eOrJ|L8YQst0)ά\NZ'Vb<ȇ R6SPO R>fo|S^TybWxj~WcOf6`68Ppd E1sѢS*[( ;dQ__+;~PfAbzCV2/ΈtT? 7Al۷-ƩQG]4B5 PZ ,_ByzAOc콋=u Z2CSٴ`P\U Km(֝HFU:Xq>Y_Іv&}]rXζ=TﵢP4*gʗѓY8]G~gvΤcZ'MP_ۨ8!0V(1Թp ~ RۄPS__ev=w]V}|5ai=BdnjljghE^"(y$\ f X'[pyɪX KMYO>;?jX(޻z7+F橅BIfn2QYg<\G00!L߻GpEπM;8lE};N5N) _@McE.M.?UY-*W;A-J،YD%@j1 :Gl~Q5bSfK*Tx>ܿpd8(gީ_Ic!sEb_MYvNݨtd^u_0Hv'Bmi]F`!'8Y]/qQ❾Jq*{U_VSa ӧ1@!kKsJvF=~&45r"G$'Aη\ůn%78v_Ճ]1\P] $vQ}SAOtIag`^NW%=_ IuaYhpL@C)D Aq +scѾ1Kl_@BJQ*ӀX!AF{P8 {9Z@vswTSԵ!rOrhvd%98/n{&y$N%o^gpЮ^䌥oQY&,R6I'X]Ur.pfD"!}Y=H8$V>pbrOěb+`leȐm:"/H8fMҭ<Eܺj4i1#Z͘oΊ Q +Fsz<$x \:q *B=~E[zi *d8Q//Zq{9ryc$c;7ݥ:S֘4W"a{娿'jHuE;7sЍ4vdEIQ\vR~I]6qޡMr{rd,2A)xb O1J8[&Bc<#Ls5l\XMqYBi >YJmY-ZKe3 /}r20鴪J5R _K~֘GLz^3fޚkNn򝹚8e)lTK1ufy30nvk. x3\K rOFN\p-s6@Sm\0fGo΅V;Z_:"*S r'V(!PX6ĕLagh6ޑăA=S]R)wD Q%ր>u='nM s q6՞w7e:ʟ0_<_<#8 c- /taRu=51߻Wmxz ̼ ʮ'6Σ#:yQ(Y )S z@=H4#3{w!'6ge7Y["^̙.MΕ'j6-Y,JzSPQJN l ciZ&BrZ1Q(@x3 0)OQ1{&_GV\o*POomyUXAJܹ ,̹K ӷbrUvZ۵IVеIi BQl6coR|i+qIo}cg G8V?hûϜM@6ÕK "*8M_:'  2YMhע`- FXoz׃2wVv]t[ׄC w eH?݈zpyz9Eb_u(2Sl+*@a1;qW2{^O!İGP|n-Ck<[2)jܶPr$?1^j5kaUo׀ċ1E,`{>N'}X Hl{ѓ9۹E/tRP¢e5WO4eA툷l38T$%)itw^,LJw0f<RvbFOʺX:OѓP50KW]%7P nxgCrYER1Cn[ hpn T?H,X.Y"],-eCИ0q/EÉmƢ8NmR3-9]*S"PJr/ң)21k2s'ib9־&bs rߵdu2T;W-T>Z4E9VcZBt+f P6/g&Fe2:lƠ \&lN">xw/ RGӢalkYk2 B)ڰiu\띁f %P%&GM'_rv|ðX tI^ӗE`B]5(XւCTƛRz2z"zo_ShQ-wP= 7M-bx+'¥+iV]^?NQ=vbE1 m,Im_S##L|:|QOs9Qs7GQZ`u, љ/#y\Dt}%"o4q3-4'NLd᝶:k %5N: NqXf_< s=I+PƦz .[`V ȩ(Ka2E}ʎ(>N+̐j?6){"2G8MgQZ|nb\IW3?rneh phJ\O.H 7_)d kCĩA`WU~Ch7nqU@@b\jԄcZy3ܫ5 HE^L؂oЦZ PA ?D*J2%jz5 :X'逛C;}y7!8ugHY%-# K̃U`Z@ڃ<%u\LW 'hA~-Ȭ[N+4u/g 9v4%kQIW}"="keBW+/r W#HI@BBN 9o+56 &t:7ڙ B%g[HY([Y𩢭k\ʟ|?.\g$vj00/Ccvi:_Fl^dXR>2]ٛ7ze+yqd{Yp(l=5]ec4'3[xpJt^|6W¿riOyW n(W+*ZpB^_v R3NEaHa XFn|oEF?dH{ޗ=/55@۴ba)1c(M@C| |*~ nկPIb̆-`03˱ !IڟRgc*TyuD"[ĕl-8hAml+.NG G&(ϼ0>/Zq\h`rk{UP0Zx݇_ 0`ϝ$MDV"'-#0BAy^!W 2O+xH$j[+0{08w]jwxٴwKnr)k1wW;!_ô[KL59 jqtR]CMi7L%ۓf-WR2 4/E_*cZ5laQJe-nzol jT5ʇ#P7 <ѐ1D^7@`;"TF=5Ogu jpCq 1lA],h&]_ .]ˢt _aR) lvQHҀ g{HjUnVp;$'ҡTbC§@/@+"010t` w2% /wwE]h]sdh}̞(4oVyX'-Ԛ\};DP<[43{lP$OwVwQ进\hs"ѥp ˒E)",bdUv!]qi7YmIϑ޾#\Msv+Wv:ܪc2~q>|y2NDPckpgt13sYgZLNDKyPe;:9Q2.6H詭'S(M+aYFS1Qn`%W¥9rv`3x[]d88$y='|)s-F+6 mh5#riqYx!cZjip"c?q|W ?kޅ̿7vHj3|PCqPd0@'Vt8QY7w/ ??7w/I*V_ׯA›!V*0a|ᲄ3EDN PHg9G\_qQF,vWP+1w0H]SITP|t^ȵRQzM4l ۹=A~+iBmW2e 9]!fts_띭W&@Xwr3RcT Mm{7 wԊe-B#F v1b])5*F![LЮs \Gꂋ@@{_)=cl%C5qWg w'Z;`AQ7D~J!:@#VaS?knHj3(8"Vى Z%':q[;k$GEZ6ښ'o|P}w7zٮ>+fY:J > Ṟ*6׸uîI,+&ޱ}|E-h}+G쪃I6>`Ư k9ty]}y2\ǘ|tc z[d" {KVP7l|X`+Qޝ[/\ml n*I+t |4)]N0|hr\}4/ /ap)a39I;(u j9ŖfA92;O])V _"g rS-U@ao 6ҷۏo o?jf ڕ"4czAm RX^ mD$ U[ f(Mh}$f?U-{ի6+lܾ5M}6CpPy°!眲_?[$s˭bCm\.[*:YI t]Kk-OqIJ^Q1$yjX[>ꛟ0*^uͧe~Wԗ3^=*nQ[ЀA~<xq[H,<݄H d0@ݗb4[R XH/\/K"pogWKfMg1zTC(~C߉p/Tx?|;tB" ]3=&ut.lV)t&[%ֵ7Ӵkd3Ԉ :i0YiWvbnMC0 I*^Y`85ӥ[GQ/gfJ8 %D^O\w"x"T 8MG Vg7:a$ƟZi>m+%`.ݟH{%>ClYeлTE2he4j16x7/ppe]*,)c"#B0;NhA(b)%0{H [i|05(A|Mʼnm[wԁY ېy>XyF!ȏ6u{pID I$m5ۢ9 Hsy:ƃ^GkM?ɥ,IҊTBVz=ӝtk0C_iTl uz4.ԏ3[u/l. U_emBe骻xs|gIف26I* ֥PBK.b!v(;9؂8DF wzځCG!ǫ_Avi]֋CuLB煠0sh+]>p("n:Ůd UBC dl`b) J|^gwYQReI z|Ѹi">ds%ӱB(H4lT^^3Ɛ<73"!) tAa$nmEi.npp8o}L"C羦jYܿ@M.r=D[dIʻ'}Ds%g?iK VZl>nGod`("F=ˬ6u&AF Iaxq' ؅u T>ڡ5ɟv 5:2r"Mkӆ."Pu;F]q2g&gy ?7X!=ݔ|ɚh'5BcZ$P,Բ=-B;H`diHHAr`p:%|SwM9N RՐMn0'_ƃDIX-Cyʔ\ gHug QmN_ꥇOm6i`͘B6vPA6C(9ɍk_O h1F R22EF:+Դ>Y(ʲVskzO Ո\+v}ҽ.>.۔C ,LZ!;iW?lV2mb\ 6?ȼ`?S)Sаn&C8t4ϟ8n{n=p?n%c$Yr'%! .;ggPS j PFRf~Cҭm'v|i1>J<)6i! BX2Zhi$o-S^[p~ssEorK#= z|Zܓg;^rJYT#aPr}wa3u=eD^v9X6"SJN:GLF[W -;'29+U 3Sboׇ cQcf^|"BZE%W52͵ LwZ"9-TM]T6VG@TU\إ,+ ·smk5>r;w8;i¸Mz\?0g\t˘/ IKt?B#qOtd^HUFsU cװ>\6';9.mvI ]MFyx(/G`_e}9:n 3Nϡ%*Xp9e!vd]9ͰmFQ9&s^]U!]YaL+gx͋rpb!!J+-xY @yAy $Fz=a2PQ 5'߹`lŚWL yJIYxt9"goc97x~e=:@(͠W%ص[y=ˢm2 R&z8]1OIvfJud C2"nvVRr07;myw M^d}}r: \\iReJM+ N}#ҘvC-{a]##3[dҹ1g/z.~sUʭDm$µh=k+g?bʇ\!nRoRg̒1d#;"܎sWrի{2|s/G."3v#i4 ŭkEqqKHލn@Yo~t'˼ )&͍^0i-Lo8ڷc1pd3{XQߣ] Ss-}j.#~aPB5d>;G7y!ÊbdxX\s&jRJ1 vNmp|u1n'g}. ʳ oXnO\Nc >$i/!lNT0B0^ ngiCVWlW|IUXU ~L6cWrqZӈlBbbtԀ4Eg*?O}]##ckS\ כbB 좀ZzE|%RrjBҼgIYtF?VBL%%7BUL(ZUVyb/ 섺,V۝4}Ved~G)29EɻVk~:7b׵ Ln\z0LKrn {_M(1^KЦT,^ZeBZ#1|%l!+ ¾l(꺇[$vźƼ(s1C.ogDEsZ`fǚ_bQTU+[1_n bm*8EDݵS_XEcd,*y_5}:3÷,2ϝ9ЧV#glW -;mBh~"m?jtm AZ$1H Յ "/)pR|}uf /|uxSIyEZwi}9h~rC`;otX*&Lwyv-YY8laQvķtք&CmϽ8~-B\Zk5TsLsRwR?+Lx pv Tp{걋3ȥMIenk}>Q5y3rB*=;ZjLd$RtqCqϨYSLc*ΆRbVEj#S*M%07eY-Z:+Z 4ٯyf  jj״ƶR_I5`&^G񵵭 R`#97WWe2iM8i"$"!B?+15H:.!l lDW'fmRh ;F3G=讀T (k^[0"x”QrCI҂4ongX7gΰLH$#˃(~ {9ꎡZL)%gngUWڽP|hvt% ,Ĥ…V})(XӁimrww=7AG%KYȍ«2~ {K)Qi黬3m % 2(C9UZ,urQI\lmE> £0-LIIYD}ǖF0YT^`vUt!'W3U8D| !-~!ޚ(ޫݛu|. Gәim[!BCѷGb6ߊǍ[X7;P/oU׿7߯ϸ,i},?2r)bij3yOܥ_\`Fpj/88ۆ+2Caħ=ƶ|Э hcv )g.%N4ZPU j RVe>zaG2ɗ q!q7tB=SNaL+?C 2 nb?w,:W1WlV5sץReۯʪ^SEX[03%lt̺1bj(aGB篜hoU3a H%a7N |[Ve xQPo* ]k`w?#R#4oGF-F|#4ąBP$˴ 靌6# 93$-) Aj)a*%QoQ}kJ#mϝC{8Gp(5lFPŲQY~be$@JGs% PX&RA>lRj8ZZ8ҷ@QdKю5]WxS Aۼíe* ~])SyK~4z=^OѢ -Jq&Ŵ0Ŭ!Eӫ2. (M49P?:Ad^gTھuL-/pARfz0T,ͺo8ê]n:D64{3aXS-W{M(IijF44AL-y X|G͚ s1*?6.s)#b^"&ͮu߱qVaBR oHqzhCkWkv zǦ ?*nSPf+1蚼oFK LuZה+6 N#+]KQ z^tS72Z|#Z)z-HG|3;Qj}`VB Wŏ}@`Z66W$j&.jCw,U\,ʳ_9= n{d@NzZi@y5?|(M;YB4U-v5BaSY&۪uy~>3=|-d2_y`0Cpˀ 'f{ 0}X5K}oHXxMVCf f % CWsV8rbX' 'ؗӑ?w-?S($Apu?ܥb8\<1) xBCM=3q2\WxH5JV"T]3bHIt} o@u,9xK[[O1}mRkI\3aI!<A׊ 1@ 4 6rrKصajUnML1GazTtj.fKG7J}ұ*k3 vSyXunRcѠz@rci٤xWmTC6a,4)|-s<*I7%ݨGiJ>a~rOl2"WZKS+޳ 0 كBg(&i3SiUA gʨjz Nk g8P.-Y&KynÂ8nA?a"\Zs8$joS,}IP:tb \MjqմHڿ $,HEsi/Y$G }^}K*x̢3cjRyWU m# *k>Grʍ([]AA!\6p£.Ȓl&}g['$0*St:.V |zhY41^uU2n^ żR\޷@Aͫܠj2 )-¦ڞM~ D#*t{X̷̰STKVO ' VvXL DR .v}rT6',VwC[SN4GKiAM؆xvygF.І ^.ATDhh1/>ǪPZdF4fwS_gDct ü$&lH Ѷ1?[{62}Ƙ *Y a*rG x9ffpaU 4U1ۉ|7,:T.TN%[Puy+m#5+V-$yno qgC6}Sm@PJFt;q&xpu1+gnۖvnPyoVa~W my ғLˇ -lr[M kL<; /-˯ GX%&j/EaYF? \o5xv/pL#V1pȂ+ҿFU@~Rlp?D6N+W^c34v?!E<3D R܆2u6) ]UwMbqȘ;Z|-mLu*a|(#V^>)K-a!M:cFVՋmylΠѻ}XB8#t"Ǐ}&5<-8Xႝ|Iw ~ٔ;_Si6{30 ^Oç0$ (27 lD1^#_ck&qHԹ}R8DpZڧ%zHaT$ۓzh=uo4 .oĸVSc{V}0½oVMNMb i,ˎl吤B#F\% fAYz$$u!~a>$o}}n7!^,!!*PYxr[lG`.6{py݁?K]Wթ!0hX,aw# eʡhjs@0En]o)4Э _))\DѩQWSdJ53鏵b=/xPa zhb}rw c$xl"+dnEl Drgk ! wOC9pYEGOؚ`{Ll5 8%O{O: Eti8L:v'9{|H u]4|3O)'M19R\gPY54Mt)c3fh^MQ$:-能 EL 4T^P֚:Fu/}(yԴ ]$Cp`Ebg47 G `D&ޅ>_No'a/lʹVl!Mh3; ֟k%o<'$PF_ҔKDSf/qp % j@[Ҟ';,) WhLf׭Mvz1q#b>S,?̾c<8Zt %֍NGMM/nd +c( (k=; No`}~{8N@%1g')Sl9R Tyxb,LE$Oс9ټl ʰ3~$lg1IF__zÑ$($1AW}8[djnBU&+l䀯# p@v$%H#Onbg&XmN.:Y0ʖvy9hx>c2U[MZ*Jײgv |Rm40h8+e>. b2] Y+jdvwW\H 1*⠻k9 & f"PiPFVbg6iԋõ+F<89ww0.-,PJ.r1%y,G;ortV3fcPw$OʮH5L+u (Y:d5I.y7D$!h5Qkg%1o;P-մgKKL4{92~Rn ҽa=M+}k}u 卿cJ:gU&J/k&Zq3E P<\Z_PҘG-+K7bzf,[gdka^~ / ɤvSZ&fD˳[δ7Ҵ}n',XT`@+mܾ29tqM}G{LB<,lĠ./nylb7Bx8T1^87'jGЮo$*OkHA媆̱ WO),lE[ s T QY[WNR#̢\aϾ܃q+%S'T7&A /\l# \B54)WaژX*ay%ʱ>f*ăբ,t`\8צr-{v滏2c/,%0Ti_o2;"6 9ˤB)BU3`x: BVw]8;.fX[Gg\yc| '-me`e*[S-H]M2:vm)Ӄ_aTNkcޞOD9u9S2uhy U;'6_]R}[}7>;S7&ڗ4۳vZUOOɚٞ%O\?w3| p;K_lF"0/(" F W$WHęG.y1 u=MfsZyx-F ]5^=Xh Z#4 &v^ɭ|/*:H2"XiYRSke#( V^5 A}u MWY}1́PYB&%G?v_KS2=}xT]%z9gN#mw|91s92 (r< Vm:fC'Ӵ[=d,/FC+vܨ iw<->X a6ۉDc\|2l Os0M $ ; >/ wbr$j8y  Yx5|G94DVJ WRu f֮G==a-}3xOe.V潞%eN'cTǖW`!L2޻Cs<x'WȅxR;| #Ru+Eaawk8?!+=˱ò*>i"M.,YSaB8./ 4/ޓcn*Hu'>/h?G+}P 3'Ph$}f`V5g_;΃. Fe\аizvhѽ+*NdfKw^Qܤ^=Ɉeʎd"ts9o zI+cQ{`R,(r_ϰMQe+v9bnuڹ%7s=7%?Y\m(90r*ZxjkpeB: k=gٽHY5rh5`L0i@:^SOb1^qLɏb@(mgY=m`oDZ~4{w ׋ ]S9E\O: Ub'C"9Iy.6Ҟӌ#~}`3cr-Qהs@gW}/߸_0d+D^:и1 ->'+nx CMvVwPHbDM'D[@aB BX?C^AGJt|[0uacgjw;:+3[ ŋKz ) 3[D,aeOlfYX8mnK`f\I [4/51Xu眡 }pR 3Pz̍aBǃ<Ʃx'+2XEU+baЏ9h(l#HTvbj3Kp!Uzi:V42\9(ŞvBF>mZÌr  ++|#m1^_EN`ZU\*KaÈN(KחڽVu~֘]?#v=FjΟ W'Q$ƧdK(Qpsu IM'ML|k3=e #g3b™kglj#IL]sa'S@wLi6auYbW/ j`^;6[T K?QH晷a{,~KZ OZKhNb 3"9?^Uu 0se'DQ;2k@ ;:T,8jK *DqCy@ڬ ;X;m@ SBUpAw<ˈUL1m[\V۹rbCܡ~V L,6AlUHULXcV^`49l H 7oq!Ђ^X7`9/*TPf[4\ͅ5p5=x1)v`jgB a 3Pwn[߃F ;N(_ .TM \牃zȺ Y!f6Tm`$:rDOoVnlXy ݂OFbx g&bdՓ p&ewY2FMBM&/49l6 wpG߽ ED^N^zY]#zlx[dM}QNToa5V"Xj:e6*E;.NGCN|OJ…ż56KL5&mTf>|pUF/:|@5mKV-Spr]<N#i^)qR#͡ơKu4;AδC-lioF¯7Lt7G*htbxq/ᶰI:ڰ2|1j3=-K<\0E^2mo۠msK SKz2< ҔKe翫aRͼR !u? :.DUOKyx,~2]w abx؅uG%AX1B*1k%*[E1~I"u7mu e5kC)%(`+i]=a&R QB? aHDزsބYڰlxa}<{&}r]5!NwN=W=v+#p^E.(rZ%c| .΅mruc4U)c BFOƗ# ~ׇё콩{u!9Ҳ~>f.S/cNaZD3SQ.Sm?%ȽCj!||s S ký umgPQҷE꽭Ȱg- K0DwX`?Ʉ  J1}oc6j@Pks E&OkRR-w\4sh'V>4|zȫu=E`Iu2{.%r<⺁DK"0 ˊj.0Y޸N Dq!ZfxpH,¾d b\a2z Xf,> [=lwK0#t>rN.V[ڵ.>!' ]yx4p)0Fϳgag$yAVʿ4 $!Zlm7ә/@oZ/!_X%^#*wPҼdo"`FDa]lqA K`|Uܫiq?۸=\0UN6%}ekgx[BrўK&9E `4Ie8qo/̑ i6Lm>r@kWQsҫSdǴ&U~Rl䦗!.u֏jڥu0qF=E.EȪfTkKk &N u!<- MnJ[g" 3 JyKv*A PYhEo{ߏ\oqM`[aI\SfUnz&JA! #0$Um +\w~83s 1mMpFh@4?1>1R aFJTջYJ^g4gESs"(&}t,Ez.v|8&RÊNgٻW{!^XGR sg{(9 \x^55] W= ⩿ՐZ㽚=f6n.{Bv\ n$JWu_׳#{ס~)j `i'8rA3$`L kkcE +~ud>(h uűfgl& &9z3t sE[]U4͟fa!˫iig|uɲf)B㷨OkȔ3~#Y{TqĭL\d:g-`W~MFx|+&/|1Q&#N}YQ;crMv>eNp7o^u]63"'c7Cg3c UKq+rxN-F. dtO|YYva FG6";8s%ef=@0&6B(?뷂O°1TG5-7}i1|[N*%&(+[IijUHmmL<*XOA_~Umd0'Xd#M";3Nsw. ,-is} _N+`Sxqϲ]@nc3o3yYjw9+pyoXv7;c.!k{a--Dj*醇z[K͙f/x}hP-0 t6K=M0C]k_1.?@T z$HE"U$ vruڴAl/|E(j,;H;( ZJ{{5T^Nc 5xSO5z^ s62IiצR/ rsm\\d2t늋 VHr1kZIo,hu?uM \ Ju:ˈ_X tr0dZ7aW4 3 @ XC1x=)QFگ=<E lЊ]XI8c#^LEƧ7s/tЄYeG=s]O@URPZQX{dl t ׈t>kT4qqNY"2mB9_h(Y6}S"(<6r`zݎ\H/siM1tS@K ǻp+6A(S-1 ^4mLW&)09XV^`u:EBYSnҙ${P.mg9>xT]ipn =ݣHnw/( &1):#)=6ҫ&J 0ϕo13=̉%nĔagϯ4m=ؔH%> 2«0JF1%ڡ@$SMk<804_;y#c1{YS &T,C"iRCwcX m)n 7 bjBC#JC<9:}LwK=zeOեɋ%RfCM`wk6|Z:0L&˕"_S=!9R9tMCxnR :26#g^o -(YØf4A%-B:A;J6PXt[`:]KKi^Ό%j9Ilm8zc@$nx2:с ^E4ε2Ӡs=?H̆u[3UٲCJ C <ObbJ \Z0ίT} A@A_sW!MޤԯmXqܗ0հe]~t3Td! 48Nf ZPʒ ѽN]?AѠxX]٢IH-[K޴񤶌kT7SԵ̲W֌a(/>x)L93#)B.`OFAS^5Vqà-ۋFD4^~InJp  c؃/ɝ6kZ7ir? | ]un0I I`65dzAސ"U,7Ic:0IT=Bptu;2aO9uԎ(0f S-C xDѰdE%Koʔ_/A%ATo݇jfA'RzǪBB Gy|@k)lH/ڱ[Ds{9|y?YNfBB:-sfa^&3ώJGo/'OeC2>+ʤ`i43 Z<и~t_^WG[ׯ*RvR 􂩅n%,\% in  =*ΧLs.g)^: #JGݔO9|zQksTM_~j=IލY - ON9s*4_H~Q݀^"KG$ԽqB_)#2 1̎̄h6,+(Z3,jMZrxg+WZZ8!t/ݎF=E@i*PI=zrX ?GbhC3{Ą{ז|Zt`42jwuUP?N\LĘyyG0CSǂɷxUWd~ f-kQg ̓abq<ߟɫ'^7ƥ&b6; &T0gJ^:Z Ѐ2 %1KmlɡCYa(ʾg PDxxBw"Ϋ "0{KGp~`7;^ ЧVC_Λod-fW?{k{ڗwSn+WDt@( g &'W,Ekif[tX]^^,9+o]tk")n(fCq(,I:R8"D[FȰXDe Ri*͞$מ ;PtU\uLVz[Libu}(^B',-̠tA6pyd>%mQfAm!̲';3G d="_|#"a&,2W$əEolWcUKEg6n>ۉwѷ{mx0/vHTy*ff.t>vTV&vэF>F]M3/ 64rT 0Of?//o;NpPj6AIY=] .30+Yum{#j0ʒc19kzf -0[u?h2_@ň{T%}D$L3H-ux`~Ě9f4  {$9Ђi)-ĒɌp _bN]=—WSR^x`T\~{>{Qah e L!UPp]e2*-o{3o%镐]˳@^5\6KK&9ƍf=< CoeVAΔѮQ@m~rG "{!*Rt>51n&r)NR_O(R>oh1I0emY";!2n&sxkQ!OٔoB`i kvY9qGh3Mi W4At0(dM~_\zgʐrUHN,2"s ?RPЧKGhHRW*$mQc D ;O>xﺦgߙN [PD^nvcwNf|̟&8qw_^dvVŦ -P+[0G}P|qf} 36BQgۻޫ%qf}NĻv/FJ‘z9#晈$rlLf UI=_%f rލM<,iDc'.(>9>z#[ؼGO__?|F4®.Da#u|Sdz u]X Mp`7h5 ^{|s8ʗ;Vb*AG^&cK`X}YvPόvFZb|DL.-OIN}|k/e{D+{BYY{rqFt:lT%)Nf-p/땉$H#:_5'uh/ [(o {Vd1b=Yep_k.G.x|'(F oݨQk̳gC63Iw90_ BCUXpkV~›1$p/ m} Ff=v'@ANXE퀋?4#7"[)2,[[؀r/h?|pV_egR߁[\}CuD P\ryR,F+ƻnaӲz+WP ɺRc>cxkT|BMo"; k2sф}SV5f< P>MB+juiy_C"p 7U,s쑅򟲙q rX К8 ^Z wl'7dCцRJ·3w,+;pE?$X]"E+tA)zY:CV 7WH_; CZ(Mv2$-~+ĿE3f0P p/~5`1yǽm:9tp[EKsJ' F"̂#oZ$hxy0 ni30y.S\h $)ߞ"M~l@Ѽ}Qs*zNJphtv0ExUHEo0)_,bD08dc|RQ]ąW)עGq=fU6g~[{f@T# nZim?7m)v“M͚uvL=56?Glggx[Hx(/:a@@S̚ycK L贻0ȎX0+^82r8P(I\(ndZP=MLW(FIsrR+vbg| JC.#f]72`ʙxǍ{Hl\&zCx%+&q1T+*IV84>(G%IeGmЁU9el VPL@/* GΔ)QQ'w Gy PO!W(1e[?,_?B-6O?|c_hWUčJֆ]˶?lx"k^;\ %AQW<;9ޙh0 W@4hpHuiiǰ^`_? A}_U`!PHU}RԠXgRGw-4G&Fe0-$*eNuBͷg:nIqz|KхW;TxMÏ@/ DxҬ~ip+^Cݠl װʐAf2yf ZkϬv R珴hiI6p^\D #X~ȌA$9S}$dL.Ϯ)1r:]d5: =aK#Ray9$i[%VVZa}':U3lxkuP9|7"kt r-Ӽa9%Z[~|ҥa(:oIy Rzf$"ez.1yW&Beَˑ2+$wVv79?o'E {VL|k &J/KtCEKlW/+ F4-9Fג$z{El/z<̪ڭ)>My {%"w-w'+'ڝu)UىQh庒;L!7pctcQ/eagl[0O5f AkloU'cZlL.*XN*B2ooaȭz^X/SArm#j`*Xճl SVI;0\ [WINQĜv KxMRT+ )IY{V$rۇ|I}yZ6 ͟xkkY-mSavLKV: ߄MHXUw Mn8{+(j\E3Fmȯsb(m'ۃ#,G.bTbU2ZS(pG?6#Z[ն vJ5=bμbޓJf5bYtX t0,d)|H1]-E~Q4N9}LF/-$n:m'6p~'F+3Q,n a K4_q;&: ]kwiBأ*J=º W5ǬNʨj,&IDomR#UklZlswF*Px %՘fsPL O&=[I}Gў/K1'7ùHظXѬVu'!/ 4hhߢ'<.9o(">di) &#ATXa+:\Kb#f-|k)#N׵Uw:Uo}cӭGkhɑe‚lC%kk"6B\Y˼f 8mm/Zi5 Ofͥ=7$ BifIqWORݓ1sVڴ)}A" CW+t؆ZoI-HB8n~oѿ@;MxM텥(bPy,q@qX,U  E|>tAsƀW4uy-A(.Mz .L9$r|MY;)U9 QF:s:7DGC4M;}GiBP9cR"qHe Ao=Ȟ lr]UuggmgzKߓRiGp0yP/ gCՅ3i:eɴLhtg'ȩ% ʟ7~>oww[]\>)7H^gu >rUJ e3;*=FOųX'KF<)8r`L1nCfRTggubb"n{p4Ƨ`p>3>Fd!Q(.P-ɢ^ݎ4Tdk ;N]@41c/W)C)"iuv_nQ ;JJ`/[iL1RFEUdJ _8{r+B/Ǯyڄ(v}|w׵|ؐ\' \z>ԭ+s9SAof J+ipnf3, vWYD+R_8(.s %Gy ĺH[r%Et䯪7^lFy0dw-0/'2a8Rںd1ev_i'йIUO q5[%jv[r*Ķ%qy$(f+Qϭ@{qUpZ[ :k])u|[Ƿ]u'ߊ{qh`_;`cm@ɳłQɐ>qb^.;g @{]6D@6ox$ӵ̵2zi]D9G'9٨j<zIR!,7]Ma .n$a>Mmm2Kӽ_KL J806 pDto=T` 4]:g2| r!ߖɴUxdL̝o|%2ii<=^&6pp~)!5Ker2k6k_J4jߞ ]TbHl\/ȋEk+9zyCs{ǯ'vݐ(Yb,E5uWL v)|yj4R"4J6p2-:nx`4]wqPB(c!:Q`? (U$<(s;&rvQ6;6< --^2Ƌ!K1aq$ul^NE쪁(R3:3`Q5L"DQPwEs{h7~W:&xa>yU+=%x,>ʳԾg#/+J:"mrMltg~/|c'tf`4AOrrn{$ʾDjc@7rNe ]W0=:!$5vH.}AX|oR*D)MVIs-jI6b[ N",/u7% +&L*}YXobp䋑م|BG^y! &P'rQ}s- @LOO1y3 ye\%ѱ (~FG!L{Dz7]/6~Sfi,p ձ8 },VS/8Qjsd}"liQ& ( LR 9]# C3*ojKAf@%Z#&t/Ix$]wwwx72(%\|tb 85׸嶌1 oFs3Ȇ#Zp΄) CV: 1AmKA['d4֩D27+SXoG) ׇ3a ^";{ F©:ۓNZ|O.EZ# RhEdIb64Nܠ> iSh M w>Z7c{͖Tj'?!|lio448| 5ǩ?T ҰcG6;:8sև.}򒭙1@ZNf"xf9{R>aڑe I:s b̝9]+eQ<ظR)[pUw6ı G`!͖q58;iadg9HuBm |櫆A&O*[!?sH~9N? l=^(9dc1:􁪄aa)͊fdRм*)Xuu;$=kiaq6#ݐVx̫(^cR2i5@Jv+zцUF\*wq#4°%gܖvo*:%N7T_SBGP9\ӢqT _`!dy_+r@ hWusr,>&MM0S#1zvhez{: ;=<`+5X d[IRx+^5R=ًJJQ T:s}8Aǫ\z]d z@`l_Ǐ|baRnn.}?kx*z]Qk;2) 5DI܀ɂQlH%plTd'{`"YI`k+,;[u }Y%nz/ 6dt` a؈YǍC72ri/\x;@SKmy~ Rװ})cv(^~_Ai|LJ:Yh,|qMvȗ*!KźYғ3Y`癟)@dɌ_6C# AOAOvNF5K8(_c6Q[ ;ظϞ~5Po[Sz.+,/U!ږ^[5j$`%T"icϽHdirM5+@u0 >o;R=/#mDI#$PҋdB"oua[95>= [* ?9F,`2CQ ejHk3o0Y3y jM۠MA_j W:pDa^Ⱥ DVs9GIF~TM=GxK e<wV^k%Ø]0g1pr| #5S5њ" O58^v$1qvllm7lPpzu~y|-#th0-KhM]V]BG8Y _#{'Y.5ؚHPn(U"(ϘX%|abǑVE*Cs¢Yǚius>4_-_rBJ ~ ,Ev|'3[IGmbxOuSA')h7Ჽ YI#=.n=tHs %N)Iw^Wwy\B|U ~W>pZ#n{|uN*MNLɮ q`n82[}-vIdY71<7#_B9 *? hR?=tU-;!g?io%Vk;g"'eV=M8uąrIn+{TqqQ5%Gu-A~oh Tԗ?ڢ7Z s~Ge͑PdBp +^yw  thHC^\z,~ޖ^#:`<;v5@ֹM)Z-WFf=+e;@-Awid&/X3Tf >(IO1Ⱦb:a4S.kiL-yN#%$,nӧݭzy! $?ش\&jAHi𱑑z: [0ʨM%"ǔa,!jDwdO'C9f FI\9@7g@n!N%9wnQខA%[Gmc^6c/*IdtQ1%2Z-ÂK@M)d=~}m 'ɂla(~XBq>t!Zb>}i!P#"&@g*Yh(h`1ѬZ)Y#GwCìb.GXc+6 j_''"0qUb/ ?ՒQlp24hICyaCo [eZJsp$wy+ؐQh5Sij!(}7T}PyA2e_[\%xG+ ;eAʶgr?cG:"4G(UlЦ(O#:* Yz;705~~Jd/ Q<1a+ޥ^ɨ=4 {<9Tuyv Fq5.< )L_%۲7|b{0cO=R1g渏ZT"K.=.V?&6` 3QN|;t^\g&x$^ȕ`聚5A짿,Z[Ra.3>9҆bT EFhEG?fav.hax#;XA^|/fꉭc 8w})TiW|=Eo,C vBRt;,>겳쟅P #[cGh XyG#_\S}o?0G%JvM=1~9LILTݦ=TC0"+J 0v)U/RX3Za^n/UJ|۹ٚD HwvS(49"ooҸd[r6bw я+L"A>8U3Jj0CyKv43 689wik5߶,iuvG:S~Cn2,&e? mdN RauF4hCx.}U^,B#k2:Zo #8>50U+-c)xQj |L|fq)_ji-U) !48BѐUൖ!0<sjRd-lwAԷzpd@w~pUu.͐_O{Ԍ,{ 1&S]nbxRECKoiQ3b DF0;WM'qiC êl@={Z;Gc/oO FqzaIK\-(:eqFls]Ḧ́iH`ɨc1]+{54O)Pѭt(2soWEO"&Gtvl4JzPb{&PJcݕ+6NUIlA ro(@>f^dq%8FR+ɋ&NANZ"6}7L43JE$8̮{ 5Y2,=n=d(7-΁ Jg7 ;>^11>"ON5(yI{RV9/#3̼3p6b*?6[/($_L=,Fˎz|ie`n]S<5!.7ZV̢k%U$WcR13~|֩/%AiXj?,kmNWv@w~xDPw`?KNxyQ>wl'Wޅ8N7{0b#.ƆC)g͟*#XhJ)Hxr+6pO'Ddme|sh,R~6.6LatJՔk>E`if;d5 Wlvp`;6SKV=|+2!ul~xgJ枈YPôvJ3yʴ dWk膘{X>l)̏mp6 y+W@txXph ex% %,9ZM QH90- jmށElX=="Uv+A%hq]2ym26d2 exӝV!sX"w-ݩᇛ1zp*Cѝ1`K) A;hRL|}0]pO$iXPxl >9+N:X)(*wM ei Vϼ_Vs&Zצ 6a6#|ўuOxoYܾ-ùKgזAY ġ\xnnx͖nKOw X^ y}G8@AdL/8ntP|3S8s'.{0r&y\T!.TDGԻzA:0MT3TV;׮&/q@Ob0EAtbj,h3X(N|6.y?)G[YPaIHO<c.*Cbg)e.rJ)Ncه糿kʽ>"[p)EݎhM|CI #86kqLOЯRB# (yO+9MS-pa`W$r^ lA;y4}!_q?wsA% 9iםV-gK5Tbz?Zg緾P(-u风)FN >]&#B̐/Va߯w=C,׽M]4)|1BREޛ]rk^aΩ]wOˆ >>O[p6 [K̥"VѪy}kcRs w->jU6ͬ&#`iO|fzlOcKbG^cU?xXgᱬBj2Brڳ;#lorVIađш#,9^Oa8_øև?xw8{'RMʓEh^d;t^{yCgHhNl4D X#,H> G- 4bD!H'quT7")ZtSXI.C3 +?rig|VwՌko 4i*k$MXCnu3(pNijL$$kcρŲ;AjZ+2К [BN'(/|WwO%l,#-OZ]C\>{]/"ᡝ2umgBHFp*-H hnM>> ,˜@ :[=~#^锓I/ aeFanLa69 > \TO)x[p S%FnoE OmtqAڇ[j.Zͳ6V;@if_kVG_*g:~r,tm3%bYHv] Xm Nݮ|8 [ ukmTSz;1 Z_^ -,,}[2SȵaՄB^:"_0n%3'_%0}ydxR-q&J{0@3>bP"`$< +p!gHSx`*r׍{In\bL #>0T `SZF^y.'mDU вx8podx(/ JY:s2c$K jBMd!q_abZe53By9""bʜPoq]^97:ƎgjnX?Rz-A [IW[qw4vNp"0eHݻ66F =PrU`;xTA# p_2YBآqK2[Q[v5ݳn7%%_P@WUlX^J@ u%SB0M)Ot1?$v2pZѼs%vlӫ,2T_kLOei~!Z5 )ԭtfk10f;ol ρj5>iO%<vKd"1ޕYA S[ŏw۴$I!K\ʹX 6K9l(.roNl8 YCNo~3y } z|9wWpƽb2a 8Vz|Z[fUf{v\!t&2 iGYg?jY; Ξwf ', pjNbOa?.Ztj65S3 FnE6ͩ  q x3E@*7NJMzV5S!1|IPE W;/؞19!}I6*H_)[G%[_G]މrəq"p:%*#|pU8n(Z mK2>oq\,mJ6 _sW&]bh,9\$nL-w\?cr lǑacKIUw'Uq<1+&7c2yȖ08 R9b#H™dN{^%nF!P/LUdqpԟ7Y]U=i&e#ˮ ;Jł-y)ݮ13o(T)@Sw((Q~%H]y1M ?l8'a8~ ^/O1f\qU`a@6hҧs>89rᵑQ%)T^=H(M Hc>[&'l;G!iչ >-^zNJc̖JBtgA#HmNQLa=%t_!COa[0VoZ_Pzg42kQ"| (Dĥf[/SBPPXVUZKѿ .fut"?)0bkGIpAd.CCE8nYa~ Qn;iXȱ9bPnh/zL=<8 p3tm@-$@ n4O00Nsv)s'n*Ǟ/J&Tg~PЧ)CFI]ESԩh;m  Հ_qf AD73iCqhzp$1[d%GU{׼=X2UpN |yS+  {!FWMRƊ eœLEDv #ۧ63;f?FWR6t[b7"/6>}`nFdDg> ݥM]3/}\\(ڱ^+à2.ᝊJ7[s<ɗ+j Y;nulj1׮$X\`K~:X+/-<},:"q\ ]NJC/)ۉ ܷ>!@;Uj@$,_nuRŋOErE? 6ѴĠ9}kKi ^.7<4¯s#Bۤ4Jw# Ш e?$1U̘șbpl&/C!_u)^a$n47yxVH ?(}Jq\jqAC3\O+=U2:WFLGcb%DvKꞵ1.P6Sn$)I9\PI]~`g\}пI Fxaatr jO_GO.R:~T1}fc'DDp#Ztm%-uW3/C6j ztGUCg# lǙPeaFA. ƺ<vL.|O<eig_񕮦n ;u?-.CGV֙Pdɋ{/S/)w !g4-Y"I0Iu#RiFycL֎cn3µ _9@\" n[&"\BOG@Džչ| ab9&YW0bCݧ=L O;[2{Cn`{ s// bii@gHӻ帡DGQ˝`}t. s6aigBf0+ 5c~>p/\#,t[Ϝ۴WD#뇘M1}`^#*ļd/s90^ 60wte.=ZKT#K(Cf_Ş$VHj8'9Lo Cʆ̞xaZ.qֳ;̡ R!! =Y#;mG32ԕ@ g'@pjaj(W3Y]/-i =`hףF9 |)+ ‡lY&nu`lw\+@/l?ìq KccV E(*t WztOgV% ՗EХ;|H(E:QN\Q%q ʷf$) .& #4 @4("d $rx^in*g;m5^&Oa 2nṷa `atqNokf^dxWO7{g-tYD.OmF#~skL2hۑSߴNi!(F @ad#T` "Yd޾lJcN b0 2/S'%8$4فcr9T CRHmZ?aePرr3`}4 <ח;vDV=_~y fQcFM>m]826Րli0{E]bSKijL(IMu!Z[a+N158'xHSr¸ZIH/d1smDDn!*x~y2DPFgQqT=@!@`_8-UK| a ܔ]A^[uTňd9wkk،jlJ ρA'Dr"}60#'B2^[P|6Ȫ5x1EԄK@Ԉ/ڕP/QoNMOLWdqt`.,TUI]˓%X^L$l(eej2=p&n(OʢWGl18E3C) 3eQypU.JXGg~ah H=hh1p]+&L# 8H= >&f&S0FsPkG>[g;Lwv بةgV׃**:KZx,"p# l= d|Z?vJ#l{7#Y?ڷ v, eQ ً+᠅~jqG;s0|!|QY0? ĞBݖsûXbVAqM@,dN0VًDlFG!; ޓq_`,J,޵B8՜挕CQeKA#'ͷJN YNoZz/NWhדjeN_;y9җZk QE712v[zރhWe/7!<}G&z $c=zV/1 ϝZƱs)qCt Ohޓs1[?xqՅO3;Q`p*ܘj+~*v.ʓPVdLJӁwdAA}cE3!Nai H:pS7;z_+'wZ ƍ+QjF0 ޓM,'2T*h8{v{d٥(k^Ny67Rpgj#lHxʶW.l~ȳߤ X^@+%g?`;];\VYF3aRkGُ͆Qz~U94Ί" ǬR޳̆UKQ0Km~['9:K(tXLOt<OX~,fT3ЀVBҖ;^p,70gst2J9˭ؓ.ʤtHXl9t 1BW}/2ʔIJB0I}vBd)I0!?k%K3=Y݉wqԇRAƻƲsCKz*WSwdnmHt)9or;U(Uw\FRl0r9h¸g`}C)y~ه9x9 EVH/nf|>t#, 0OyuOGkr3X̂ sٟSauT~iʡ8k [( :,a:2=0黢^I@_STEs 5guvX%Ua :$W֖]C9X^\M|9_ym%crU`DI6wG>xwCדG*'b&hj X!X9+Px?*jmb>.DXSx}B4rf?Y8`"B@@I%cOd)>%x4joKv+稵dX E@ڐ2݅lki&Ͻ;DI4OX0rO (Fm q_`Tvw$Ȕ!%匳yZ.dig5M>0=6uo)lYf7dy?"솩eόZգ&MऽIVx\+p&-I ̋j1`$7Fg*%bwL 3*{Qj7q;qCp%._LkY7t쑯nfGIDb1Fԁ)S[ޡG( \hfl"9X>|J^qZKc Kː:i~؞jVmhvjLׁ"$2`]fQ8RV]C f~l|P; !c`ZnJ($;e-+(hRV/2ԠzJo\ȭׯύWdOew=vt]+uPW@vIz9 Viud|_wfx=IlÑN6Z38ҏی%_^+.m؈]Th!nA@ER59.C̸N/adj>z6ft% épFWb՞9dK9+#XXQSZ / σ$ 5p$lnNf 94szS`F^)Pp|=w 3v;@C֡  >pw5T.YWeRdt~b>vFGD[9d05q5D ١)YD^, $sMwvH?Ѕ^ID' mKNd{l_1'xjX;YݑLl3]K JY8\mquhX bK'8#>Է#B6Ddo8 m3:Uާb%D(^Vn>zЗ"զ!.o%RĢnNӣ J2خ _#`q_%Dq An7ij ʈd3d.pTADޛl9 SN@,&=ZֿC9#bQJ$H_%f7_Tm%728&RFyVS7AE: I䀡KVGJѐQy: 7H{]Sl|ӛ"Kt%(&;]Ϙ75ӉS򫆲\Մj+@ħڕma+opsAç@=m4-I{Ǵ*Ysyq^7+g)ՂtJ\vPd]U;Xj֖F XhBńK4urF]Sj@5YOu>mASG47=p 3&c¸08(i?0lkA\T`9(D+w<|T6AlX*xv;X~4u~GJ/1OV-vO!ANK;[ʌ8χ'F[q[.YXQ.~{/2dGOiXz37z-FP=:nF E=ҥ=>|`kRˇ5kHv646wZt\RgkXr?`P1aC 1l #W뵼_n?LW,i8[a)gVy])-|7đ*8,gF8DeL\uq@?:RgB^ܪY7Zꎙ)̣̽dNL^F>W _MU,QS-.xR-kw(4Zh;SˣSI$u啂A0^jT[jhV#c6N{oj xie߮dkJcgEYj4}( &X l&'IO_aI' cLguyQeq]kµO3`:]VlI) 2@2Fİכ!2$bU4J<__G(2QIJtSqU>բX!Žt|b>=r \u!9No[MvCxK%uӡR֮WS1+^3_z8+TM 癏A>c߂n +p3'uQ,Qxzl{TuM$xt7*QC 1emxL`W`6Lo*7pS2J`|ݒO㦧/jjcL _+/E Sx<ܤei%2 'Ug=.l^>^7'ɬA̻F8~:_2%Wu+uBΙXmzC5*}rb2-=$U?zXwZ a0LZ(eYI T--"9c>|`t$˻3.{zžJk?FT #7ԍad0YXV2LY0iSG-0#C%M e>AO.C\gj}^vkפFV3G/4=IOof<{I*9[ah.!jQG=x kL`hUxKttlP J07> 0yI<\CЏLJ!t?#+G_kkdynk b3nRԶ<֋yV1\=ۃP9: m˧y ?ZX/y;Ry )#׼LW?т,B;'VKp!8,51T@I,Gѽ+e?jBZn◉{n- Crٸh;2}(SMgxcF=Bׁͦ2&830}XH3Ҏ抗JuG쯸ny"[N@XΟ:&xDz|\,&$֡l.؏{!J g-w6"v`qŢts6 :VP穀:8@댋dڸc#07dl9u''0X-AGKdˉq7fb Zba V6F\%Y$v^]Pw _Top.0I,hT m"dMj| ³hr^8_vj:o%6zkinweB O/ĵB>#D +Z E1A[m}Qpc)-mi) S({'G*N*|V8.>c-. gb3xr&ƥ֯ŖJ\50T턕gbWƟV";s i]M>6U/uR hwvO$ EMQN̶u٩>4l&f-9rBǶ84 $a7gzd)7cs㷚x8O^t9zgYɊa',Z[|҃hMrf9}`A\㹩iw 8>yB=|6m"ઊrs@31WTjR['τ/.#ދU(9#Kvh&D}ˇga0*O[,J!kS{ s]YuaX"nmrxwW8M&~̭Xn})V`N$~GCnHݤH%h#Ϝ C)T'-:3A׍?c4$J0ntl„; h-A 7fɻxR_,p 1z> [V`͛YRc\D˫N"r 2לQT'JlO١̟ Cwիҳ\܎/:,Y^x/`? kk`5*=\__QVY5|CɓOK2=r$<{20R&Jbw>k?űsL<l`~,iGxc@K]MLBr6 ߺ%\m3[-Cg<#{5\>4fJpRm"N|kY(dB K\hKƸ>F>k#wO `Q۫W$)gIW]Z1wXy/_esm@lG[2-qbVWeh(?o%pOkJj4.Y?`KLϫX{M͵ƊjdYFXI[6sG_@bO7Հd txM*E'.G,ރXsnXa;,l(*Pj, o ;HG6+Sޱ7 G 僜MC8GlA4e'V=D&XZ uCbNᶤ5;㜥E#DN(BV-"NLq{ⲷC s֧X3sG} GtzI- :MvM0!`"'ezZ*?cz@K$:, 鳍˳ykKq|rh+JSR=9*Nr q=y.^!@}aP__~{*z䫲Iep AM9};-VIzQC%ʖ&8?s֍kc~q0fe&& èH"c":Q 5ѷGR7qUj'G}(p@ I"lr`7* ȣTФ)Z Ub g UxҴ%Y b\6is;g[ _06qsV1@@ ',fqE!5MgT4b8l9pLjwG{(Վ 7'gDN /u1x[q/o,rߗ|fb`134B]ex3 g!%covr4LDId $W>sLdc.) " ?P4%&L7q/rZ4~ݐgu&xR5!Ԗ6u%AE@WR s};W~:fyk_jeX9>8y"\C+8Ib?)bZ\W' -CXЇܫāҍRpVVrܱ(j%1џ^35uP1i"_L U̲]̙ )ƪ0q}Q9%닫#o Ġ`qH*aKHtVN^]_ gG|Yf؄/ =;w^4f0z ǪrX6ī>k4Pijz}_QVz3]3-+ݹ:ɷ!|1R )&R=X$hBqAEh>RGÐbureL{#@cEV;v7G<ԑ3"9$Ms! ԧ))AH{R t,vУIyL,+&aHOeQbА {T+5/ {d9:8 ^_, X_$L?H q#ƂmM8qy# Rs뭰YM'uỈdlk_ˉ~:懴 "V1h?\54/c9K ٷg@{Aw'e FRK`:D^wxAOvATLdE־PHU/VoF>3;b#9Q1g6t5l|kϜr ƒ 5D Hp{M،X7yJX$; Z7(٢{Ԩ ծ)&[O20=*$:מvP#Zq&I]BKL?eVNl}E@qZ ԡ T^>Fx旱%Ty7fXP$A Bt|oc|QN{29lY:!uUrgz6 Ly]tҍBj SxSumf.iU3\{rkyIm=$B H_@v^Gqw)ցZtI":H vьWxfmBO54:5$+gD&:"BFFƀA]fP-$3n ۷_Rq'}>?ٸfKFnSLB%# {69Pٴ Ct4d )v$A5l^f R.!;'%Rta Ao![}A2qJ5;'3S/u3*~S ShYl`#.mL}T1m@ tRs e֔SnPz&/8th6k'p34^,;:J56eTMR"ˑ9{,w")?x< b ?udTuā,&0MaL)t^]$KBNwKQm}DKS/>ɾ8խʽNG0cۏoBvz{ \|v bjh;)*W-h@?z eʝiUʎaI >8 .5"]g6[H)i7 x/yJLg7k}2d>O蟧->)rv +ğ[Jۉc'7њ5U9?Nw3旁+}Ͳp% '/5e;gN5Br #+WCQӘ@,¡['!5Qn] #Nnoq3T]4Hc08 T$"wԄ(甲1OA öFTfrY^TX)ػIK3?7#o8qDx唛x:Bŧ׸8>^ `t%NT f(OsV=\QoQ+`} ޣw|3z$W߸O&+ƒڗ?eA6|2i45+ Pp52^ NcN;"806M) 8Gzڧ]}s*%z`]yclJc.8W7DX+bd'>*աRFM3JI3L-tc%"Fr3D{ֶwN*-Ħ.â2]lH]*G D]pH4oFtp, Z TqK*R**i9.Aaӥ5-O݁򬴴cB&hV;isi6l؇4:mlŌ,uV wP^;0D n#J /&=E@*=y3At!oN-#]su[{@؜5soRixk0d3Fr% 4heP".I!ImKI~Xz:>GSx!u挎plޖo=,,;(wָ bT&?kvQEL h  y#d;La[>ze9Ѯ*z@ -fhO6| m ΰ MסX Mh(@t`[Pj&S:\XH4IC#t0r XqwU.79*X(wAۤI Ñ݊T@}hɱY5Zk#ns^6_u ^YYpj0Yl٣JDDz,;2g/e do86XF:?.tPP v5MkZxqަIEIG˥)L D0ac PjԠli".gtӑ7nwany EVIX\;\< uL2aEK<{Z.֥}q!~/ӋcA/v6:AP,I!5`8l*b8tt1|, O7Ŵ/{?bN[8^gay>H5&ߒ[r!Q-~x.80pĖ1°mcD-{`YPw6ٺr0j̨fQ`GQM޼?fX|v1=hh^Mg}˧4CN"#rN&K8:xek!~8V{צ:e_&rvM(\ZyZڔ\IF={'YPK`J|yB;jTu0P>qGb%Ki Lc<7AcJ,v;wRT[a5S{^ԮE>;wXS-$s|w*rAV_?x_taϱP*|θQBC|i46#S(yܱPCCݓwj#†F766<@"Rw]u` ֛S]/4WA]سe" Yᨠ;/0?JhJAJ_$VEXp+yL0iˍo2?7ijZY/ГCq;v} 6N}Y3&E'|mSPr) nVt݋ݜzL}OTx9>nA A"\ 5Kzk8)'ψMsA,FX?gh.*7eƷ 3kKͰ+ 1!G.ܘ-~qÂd5+;gӚa"8}+yv5ǧUJS6祓Đ59+P!o)魕_u#Hfţr/NmH(fJx8$KW/<4_A{e%(e zo/GHj80$= ?um(L݅кdCxD<"}[Cj?^LG3^K"HD}q‰\џn\s(&`jjȨB-ٜQ:`n[,(H.'b2+1's2S#kޚ(Ǻ9DX)] <ŽBW:gw $>1=R%"YK|l;2uzN#WxY56Ly:\(UXis u[N,{_5r} jF;h? 9Lߦ+2G_/GrMy]D3NG#;@J0b W L¶]%lťEڜ씫\~$;*<97RQ8HSS.6*Kg&Л ^)NJn$h\˘5T٨PtgӂFoUK IW%:k̹$#QvKH{ szU.B̎ˇ%I`G 5Rem%kϙdSAo5,O^P2:ÑH(*Wõ,.^';04}v4EM*aKxGKe^˩ݦk(Sk=d<6bWczpP!h(ߋPxػ+X#0=`~i;zbё wDQ̟9>!/T"?.cqSK>[6C^l!37^mK'fX SAb!]іwJo5/ ŰQHxj;?MvF -[^}΍]z@t"&)֕BRþ%6dAE IiYqTIT>3GžPGd ?Lߐ 77&p>nA 0wń>ʨlzG0KٓPǤ0b18FBDq A}59dBuǡS8?* A9:d+ Di颙c?ʘ(:@R]`$iR8sP5;hivmk'p*_DI~#\rx.q6'Rg^yhoRqb@ Ljok$R);+?\t\ ,M>5N\]jJ-^< 0iL-LY@tqybvN .ή/&fK{EA θ*G]&"[Ϥ^PC$)W:e,)yF.^D [l(`o[8*veP]Pm'*Ēmj?nWVӅAgD ! Nr!?j8" ڏav|-Cpy HRyG#hIv| LoO^ˡ74_r^7wp0AMpy R!Upi7k ŭy"N8Z#eTȢ\AW$2ے%M.'u=P0$}HIqX qDmdOֹbG4Yّx,}@m'O\s5D t+NԓCWjwtBV)}s޶[˻?3xAx9SR00tyGޞKnm4J}TO9~ y,-LaѨHJh`?,=O13<?aHP3ۂ!Wt@q3(v1|UJIR\e#';uDױyiI8ryM7`㢃vr}jI}X/VXMFQ3 0s(1=PCst2gv-Q(ʣltb{_()OH4jPctT4,: CnE[Nvh*}I؍}d YoB_P;NBW&=b{Q PI#BNɉ֮6 FY eqC޳:m>ΔkݫV7t8^RsDlP4/eJ L-h ;I ({4;mGtdNRS~^(|tP:ߥ(4<`^cIʜ8P)#sEg͈^`C$.ڿcoN{4s$fT>nwZGﻷ')0 C(%Gْ+Pʗ EAC Gղ.Q(eТ[0;hJ:WНn!&KN(*Ӧt)=Nf.?sXjrl&AH2,șakͲD5G>_m<ݘ2u%E1kBFUPIAdcNFŶRЦ$7'^'?h=$^Q8$n S685vٓ wd Q,гA@qrP`&S›%eE\?pq~|rYwJў"H9 'd| ґ& :"qe5yӚN'l]t5 7Ŕ 9~=9tfHۣh[7uHLT%ME2Z0m6bsbӟ RTgVpUK:"5 v$SF|%ٵqHaқ*zngӄaOfKM2*7$0-͏f_fl7'4c6~A$>}l*,KMs/fQXӉ5h+f(W*:19'v-}6aH:\OHF5vrpQ22֗#Q5UT/܄E;ua՘c.|,.`U7:ƹj`ִ xn?Π'q?Ȥ7Svw.nR0tKOTƘȒQS"޴@qxRˏ=|i.Fn{.1ۻ ̅UNV<(o&]VrpeZâ-Fۼ? _ҶBf%a<C=w Vԫim5 ctt%mVOa UeIֈrsR˹Фc{3]ȃV]S4Ad? n\X$ >~xmgz%&9B6_Z牘+|J)=KI;P0=Ko]Wf^B6V:8TbԩnJݏV~NQ〟`^5X՗,!8bT9fLUnh꭪+몹%\G=1fWift119i\t"E{U@JiHU+ wuR;R0vqdqE|oϖ+߮? *x GRZK*w$2w78 RKx(r^ݖ-T9|Aol!]uI %QLMMpl|uAxw8q9W61: S@\poo"OxT$||>[.')eZhPe!s OUFmFBjVcu)ce\h[g!NR;kvμ]JX zRv5kaE~m+OCιTwrGe{77̟Mt靹B g@u-A0'\ uؖ~%)XjJ xiQ2Ɲ琞) l Lx'^q4X>ϟkfzv3c`%UNf,K~?@=1Лތ [TlI{<5h4Gj}%p  .eX_=i)Bn:im̻,{#/ÝrcIJdwOa1kU^uZ:l[]deKbjJd]XTНsDF܁}ёQ" ӷ4"jrPYS~U$' O+[c`.t')vPlN7J4 o&?sX=܃*9TH2"_T$PI(n(E=%.0ժ?\ӏBْ7*Cb/bŢG$vo]\ԥkF\XhIiZ {qd`Dp$$2J VbS~$ ޼Aɵxȧ#1%͆7՟OCxĬnc@QR'isOj5! Bul7rC:ZGx@h u.vƨN#15"ai&xD1Mqg/C_CY !XCHԍ]6+> X!:'v Y 6$,cn\,y:!wp$U/t/gB@=E$f=؎ZCE%zӯ>RH20x̗$n˔>68sjA}|iy|Op/[,r ۘ7Q[`3gb+BE.'#Z Ee6GFwdٌsG+ؾ2 z8MvV~јJ\}% tޟ_3/ ouP77a =ѳ*\B@e kXYMgmPJ콌^*Gw3ӛͤx8ꦩD9=yrvC>k/C^-Dm!gmX2:BvRQr[^8=!6'.72:rZ GD\obyjdńP:w-4MO<[hEx{Q~Jȃ4L5 tC{y]hJ.~fEqWI,Ȇ~ Xxžc]z&&G(n?X6a5s// 'bTw@x e"ޒ~eʹ+O۰| [ r,H޺-^DC`MZ|ۙ/7?t.;!a?{m6iYQAwpndMcQa?QIe9F +@¿b=,\z#=IFXg+Ngt؞o(q%ɢgB͎W!~G!~ŸÊI H[OώzDߓ#N`^uCG;3.~#Y%V}OvCW͜+y Zj-fX=,Rj5Z:|tVW‚ffIv#dfHDcHD Ϫ tEl-]2F$ieּΦ )S͉xGh]Rk1V}SP6[_ OG9ٖgM~I"׷K)ZJJŽcj y_7fS츖 DRQ)3Mڒ>ImG{kޘ5VRT_oHq. 4cu8ʸ̋GaURh~0hK%4pUQTDvϲesx7[6)}tY4ߞ*נBj}-q`S U3pT#%P;=WP"OWOHƼtĕӌ_P jXUWe,s}#—tiJ;nd؅W6zLkۃGSw2{R;y b_:Dڶp[ c}S6_ >UGPPۊEա#FڳbNSŧTlWZq_xshF@р,SF1Pc }6 C{.*:hf#h2Ke3^ tWR6˙A(y׍ prt= r!?} ^\Aj665_jaoi[+FH/D%xD$|°dyنID {9%_ #3 R ꖬ7|wH74z) nOٵ63l*PH( : v>4YlZ60F}Dp,M0M0c+=+5_8T2E|[;D8Z 1gD90\_cϤ!,g IZ"r磣ty\uF] F01KY_e6AcٸXdIIF%<'j5= vrE$as ->%X8\'Ji d_T9^>sP[+fMgԐyY/r)9ť#&kF鞒36Nj#NZt[`R#/GeGg,1P}ykMQ GbEe#Ԩmk+H*ꔚP2]cTQR!թD:_NO#L''.Lu'3{{I]# >m}5`]C>0O]s&qRbKD5ՓCiprqHg۴˿6Wфلƛ/H^6و/,%GyZsuv^&j^C& +W^Sg&C؊eqspK,.(1TV\;{ !5zef]M->=2Ƣ}%P|d;Wxv[G ܭ-c) V`exA`v{d6OSc:="EOF%Pe] 3m u,BiQn=sȊxAKwCunv7Ӿ76x:>'7dfL{Y:̵@h*2i_vo)ߨYlnP5#,(8\=iz#49cB7Np_rS "b3X=S 8](0]h__z]D-!+4= Jue@tZnk$"O\7668m aaf#F8 'V 9M6G `ڋmRw[dY"<3q_\-So[iÃhRWHpIm%S}4eUL&< An+n890+qEd PAm?ώxWUᔢ|Ok0)næ{@TWUV~{?W:wTBX6j!ߙ/PcJ͂Ab ,@-7w+Ad>^X;xD'_/M38ں;vN5AX?+/U^ca_1}Y@MS̙.*0kpETV8(~ru| _G ZtL6r*%lZnVv*?W=5ʮEUop"r@{?SqV|AT*O+#3~dK-WWCA0(tUvARWAKVKvKs;7=B'.l@6/iϱD)'s6gz%o·%QMvU=c&8߷v!9К2 |rFMwv/OCJ&bts_Ec%}d*#Fh1SZdFрS|*.F' 4*] O8]Av͹jSV6P3DTM3YGL +:U u'ZcE59+L+E>?O{SWJ]"ݩ!S?)57%\Zi%${yfgUYϺhY38r%v&`m6~72+V&ĎqG\94Jsg#*`'xAc7Aٵ0{I) ӇeQ )S-Pͱ*/hg ׬ tcA}9zltSm-ֻRf2tpR1o.p@J'ђ.CBJ+;[B~NĽ;v>ɦWSn^Hѽ%Gl8^4wb>G}^rl؋}u7;VK r#KS[ F1ˢek"|!y0)j>d#e1Rϩ3mvߵ mѮ3:̡ 14ExgEK07AֱQ XW>V;/̖?,}ԵT]˗5<(a* $P I$ugsn\ mBu_\ؗ͘JL$i®;rSăN`rĺ9C v/d`֨fR"3ё4Fkwe}' 遬 7 k5H5OB4PwV"F{(ǘYٔ7Eu˥|֙lI NG}b7&p.V&0֠:1 ֘2TIv&DhBdq#F^HH9B]8'b/U\ 5GS47BQHaئۏ7 8 Җ"fÀ5PC 0*ajJaKveqZx8_zk}UZ|[1A(ƴdKX7Uz#.vIj~)X#d\InE)oZW-Pn,6g(Dϓw'w2H4^Ic 8 !v_CM,}]a=jnS%c!ӷa#qRTD^XEsm2%+Q$~9S'<qޭJs&.ekZD$|K 4R9pDvQ>Z ]&r6fZo zc) ,v}Vh~8]-.9JE2'OLΔY6D`oĉ7 s)L"pp>\wL[%I1MbгN ^W0%EX~[2's--,`6z0+OFc^@HJ[pH1Z*pC \yvYԀ貣.V6~,%f(mm`_~L3u]/{'JM֓5ȌTmO7֯e6WI^݋0T2{8m&o<O;,[tjCFGĦ|}ﺞ7o[`J-G.&l#\ld222@Vz QWVKͺ$ll` fĞH#hS!uiȱNya}$"׹qAB_F25='c-6o.L}KdV+~nр!df16bXf=RRU!#2DJ޺9LlN1^xD\@(O$S$7yB3HP+Z^شmn%>)᭄ǰp␻K$ヌ'X)D44N&4T^jH{DžKdXd{@7%Hm\H O3/~jXG`1c1a̿J8(SFtk_[oy[{S>x0^iױsBGIbIQT8IsKx\6ڕAyt;-)D6zц<߄eS S&yy%E3yzf^TzH;3ֶ Vr>L89~̶3b^ 0m߿F˧_.\=n%/ :5YwAqd(vu+հnD4DXZ14㝆Ƨ.nxMOBHr{t{%4]Dτb[vR{)Đ7v=&wgQ{p<6|eSOLQre J%%?py>)Lu.M~hp^Njf4p]G:R}3̢@D(p!Jj7 R+D]4О}KC ,̈SIN0(VJxRnjsTM2kF2Ti0sL?t˹½}'A4<칁F,z'6Tjէ#?첻6]pm]ek$l3aqW)N庢\]iQ'r#Ve6s}L.zhL2 db}/MˢIBPݵ>Q|.tw/R,)C'>M)Kbc/tt֐y^,ma^} RaY?ɋ:}$ވ/16^U6K~*i%R%6 |ݯAM;t!L1YKRD/j<ur겤5J1Z7u6OA!߻?,y̎.G3D? M3M3EC`4RkK~p-VH < d t,Y0mJlI <`tзpu'4.3 .t(Nosr\nfnq6:{ijF LT%Q 6gS(R-bZw]nթ9ΛHDǔ+g]qPR8&h{۱?7\%" a/k%\.kw[R 6xkmo(R<&%F~A4l꜉! /1VuC<4EYGcW_wtgP^Fk2$p|,s!kNG=,?R5jaVT Zl) R׻+yFswi[U8#z)Y2nL",Wgax9]Y4‹@e ~dYzfl&U]MhPc͙* #_nC/~jnm=pاۭ>OOD+GeQ&KNzQʟ Fq>ݥ_ ʅ6R +pV/|~F}{Kd]&rx'J`#ZWZy؋<\Rcx:6cY}E!j¸Sm[[ Z3!~ʡyȼ,35Rk@( 늏# ڨTuGL令K2!3tPt/;NBa~H >ma~2u@YI;־a-6L J1EWMf;4Uǚ`Y?j_4RR]%&@.ZϸR%2Z0r#.dHХ6.W(BR,4〝 <=^e=\اNV*pmVa7Zgj(} ,) IR/lr =YZ+c.Q!\Eѿb:X{*wv5ŭǥB[1WttRG%-fpRȩ[Wf]=k~) lY".~m„@ ۞ыo O/ RЩھcRd;~ ^ 8Ip/Z[{)N*n;d9@"l͏3$vgvWg?]M=<{m5IiC vG gpqoaD}. R,4.qۤ'_>5рM#צM^vs7bCiE# uJvTL=Nt1u$SxC-&yFk87i2_c+2KF#^Vd"z5[4~v /x*?9>?[is_x^2uOːLFX)Bm"Bl4]:yS]eZ K_y{#.D=?BS>S$ f1:gY4LzFBILf&to6G40s@0qV{/ L̇8˱us|ѵ{^od6ڜǰkls*I`( 0ՁwnF?9RsWr}u 0@G0MO'zEgogѩ!Ui5(0l:v%W;ZrQ+.i0wQK2ʓ!N ~7I}b[ݕ٣/6_#-3=Z\WuwUv;pě+#0#F9 M΍yP.*I.1)w & !k|'dzshuDS_^y)`4|r0>ElϬAⳡ;xQ}է^ʠU&^%+S84<cFH;f`7ۋ$Y$H%evcC4"MtX落3iSx!ߠ;|M~b #1/ՍRSkm>~?#[Ti K HzƧ,$) ,Þ7mB&E}߅81~@P4X ^ Q6 u<|b2V(EܷÎP'不Vxc+8E?6jXŕԵ\btGe+Cq{Ɏthٱ 8' A#aq _y wy7oaD#XJ(ߴ& 6x?Ɛwx4>k(HQd _ rͿ-kckw0ҷ/#xv+/jQPfJvØ:2a`K)<7͵E] f)A(+O6ӠNg厛]rPdiDXkбQ ?luAqpHjBiDwLiԨsxk-ʌ&{U.XTj;d4M㼣L (4: +^@& s??F"@ف$ J~nIsDJ|% R #3vM.,H@WtDf*WYQe"@!/RDK͍4ehYT*ۆp`YqjfI4V pAc1nHLs IZ꓇*Ydzp]@/ V4Pgn /ͬ(m$t.t!`|-Z,=W8!C4"q|R{^{|M;м:èf]%u9]-OQyiiG"ZWʄ\}r@ÖJ eZOP -PqHQU6ڏ) }zU[;2NKaP`BbNa-~Y%tw|4>7)/G@6!t(f C*Y1<@bgDHY*|хvߧNJN( UzW"A~S9OB\CdB-06(,h&}Po4e۹Z"ͨBֆֽzv~.V-sJXYLgz#{ZG3yQgEfaK`L(jZL~5Z@ÑN2@B@E?B`zCdEwslM+OJF (3]9]pZկTݶ/k2lJ&fҮoFw\hQO*_N-f^c$V@ll^pAWB%aLp"^ 5'),j9 z{ݝ#lxk 6π{(Z(,_FfhG3\mu ۄhv:p[@b {^Ks+(n+QJ%k!B/y$k3 g3d(0?N̰' @9%EOgc$wHj[?50"ѕ\*T?Mg>C_?g>;5DrD`?+tv> 7VohW6JݪZe 4$)(kw;| )/;2A构/BGWe0 7&}놎^~h, rkΛRʁjپ\2Luk^xi'8mQWB~#K!CAIx=hIW?P(^2n=t68/⪰Uo+%7,1 )9KCBhbgqXd1!0ǀW+^06Λ%B\%aaս(`05ܤLjx4'WwYpйZ=KֽJhyAiw+{W \U!F2mM'\q 0ڠ)x.mO^8Q`$ϱk *"IE.t0CZ|JN4xYY Q/Xl5.\wO@]{D6Vr:bHv KClW7/KMAF[;lCzdGTZKEwL*&@1Iq`b?Ξ S*]>0iI7g5$l>Ew)Ը1BM@(ڬē"赯mDyҷA'~h%6?6/1 6r盢Pm'iA Տ`^ >cj2i4)dd38 Msu!oAcv޶5Uf#LsipQ'BmVlK-X!\T~Kie3vEφ31o[xxE5 /dT_@yIvf:r$;cOck u7Ě%Ci eF|25XZ~<ѕ?,7k*^ dm֋_`N^PE'jkK>1# vK mUxq@o k춡(;,䌖4ȞvnG:aG޷ʑ (qΠkn"Gk 81 8WbGEW lEΈ1J!*T,i; QJM)-lgKf0t%1?5j~'*VmG U{biL%ED!BB:ޘ\P*o8a)|٘ubo"uRIH͆)e@>z@׸IrFLlq|Ms^NLW| w5 eԑ_(Ludtr ^>OC^7܃Q";a;{n!dU| 1MJ+&wY3F{`6&d!ra|3+XU4us| R&YvX'1A)Eԃq*!s義ݍc! *ys\-P6+ܽ=O\OÆ!`.7 #Jtٯe9!qπA'a ‡2v|TA8x/L2u?tK sVz.1E'.[)kdiRBzW\鮛e=] =m߉z;.ug*]ү5ywc'jm!m¨U| 3de/qkon8h` }J>6.8d#] Q(0N킥k?sWc8|'"H}@,uf{xD_/ 7wUEi{xoݴ\Mi9 C5LKEifӺ-oǣ3$4dሥFEw:砏32*A%-9',_dEw,j4{Q"8 8oōˀ(b/c>~Z5~g8>SRNu>M^@|P6!a\v,c/J3+FNa(d\*Cz: 2Inxa)}vp)(W/ 4vژ '$ TGq70DdDx{EB-zk GR,C~y,op <ߌ X]0/n(6!="Csj:':3j#<󧎻·>'S9ܑ <-0 xH+{=!F[|nqǁg>>Eo:ڡKv#. pk"WF [-~ycAGmpR둟m,}BH9s-#*;vkp$P 7o`Ɋ2 iz+$0feڛYB:S`}13EcE58ݓ8ih__>^v#_VoB_|SWiJBVmY|qp)φqh,4:k&`$_bi22łK4nIg*b]е.vp.(Ze!ICw~-g6M?.f,^mkӕ4 ub6|sU{ `W_֥7ZwgƩAFrei}´0: _n*A21S) Hg+]m?6V _EBն<֦C ۵-t6f$̓?FM8 nMi°MJvOx4B#M狮aTb-ƿU7rÕNzCڑ갆?gаƀ*`ř&&5H0wת&Ipifa#T1o}x&=cj=ÉэF+reXub/ؔBUyBc};8{ "恺Ik?lu^!HGn·͞+uffv3 M62 NtoK;S>"<*>eN_9~"=E&@ߙ;5j-h^zӍL4CoM԰{0ǐ`evv!ޓX쓐o%HSPOvUMG1^nto✈ MmT4^{LbHt.<1*9ukt2PۛX`!7-̺s Ɩ&ڇ]Z!AB~B16sjع^Qab&ψϽ9 Mb۾wvPQ!ЫC}jC?G J km!\]{@dW'ejE⒩5ޜB5X;H`*6A]dwg=oL۴fqH/[thq9R,wH)316lUn,ݭQyNroфVPԜr L&V:n\Li?f]3MFpϢ!SB7L*{n!N-5m k---C)N<)*кNS90%kAWX#i5'8.y!;:lKn#(󔠹+LYt+G+uu3d.b U㽭*qÈX=yktCX9VA1c1PN2AA9Zi2@Mf{BϬ,I/Paŋx4"VH`d\)̜}GX@86n/L@%HIlH%ьH9čYbDY"JK'BEHEtT me7dj]O`ocfuީ7FbrE>UVZO>l,8!)/hMZ >i.(5_ s%f\ńuP=u!z˪^s(5sP(%%ʩbր"i(cL#)5K~ƴB2ЩQ(BΟmMBa"6^iZz1&V`uU[n "XVfRt(q\nb{ʕhַ~az5E}NxCdܜl_Ϯw|s)3azu= 鍑m\&Gz{>?TxT=@&U1l͔ A9| /Enܚ^,돟CL0 .!W3&=<~!"fZBC_&82Ciۖx T+?m2IS' ÿlۨ!OD3mwYUPh 74t7M(?⤋*h5~͸hQ7e'şJªXe.ɑ9ruӴ!*Hݿq2IO:'"%GuMfR/@yiz+ +JY#7^RE8xx5z| 7 c&lޔYg-X`.pg.yJ0}b]1ljn33vOIGjGT/v8L9&DVVAZɩ/L(M%Ϟ?{8cFF}䊺{)ܸ7w[<7PH o߲(o%[ ҰgPᰞHAƬ fIe*bo„u&}j&|x..SP4oXz:hew/IŬq" -^EEՊDKPV=n֛x?`Z$ S v\Yg'-3_=RM\j][k0au?f ˮ CDbֽ۱hz- jF[Ԛx?{c{v$;/O-=8K!(giiRaIY85?ӓR&UdL tQi@-Eeu5ccox &Ć 6ٚuiڴIȩw; zbhƾ νEyzAەue+D6q fP!g4`&ZOX7bHk0NL]>srJ{$~i}e`Y]RiGӊ?Ū 'Sn|lv> _ ߡ;Km`l~*vC,d@Qux֕is:a^,◕ې846z P\5jxGcMIhؚB;ґ5Eղ>Vm0tR'5?xF>mi^@T(.f âE)|/{LΌ#.EeJ/(me4j#Nvل>USK;Op|hvDU/#f]T ѰZ߹֘~:wP1NnzWQjb) bR24BD=>gj] |d*&kT̒FU(Y-P`dA^Onzh{} 0aF3, ڇ +@"l55U07T}cvq!W?C 2"9l(+m7=Y&0J<2 o*wXM˨&>8Cϡv-åkQ)'-u V6ʨx $?W^·ˠ. 6yj[~/# ljϜ&u#:ފbt^7,V@$Qrtk)|,@~c(s&+Xw'zZSOX5)7Ǻ⅐Ѻ4knAϰJW&ykZӷvטꨝ$d[+w=`RNDW$,k_7jf>̭l4?ਭIPl%q%Sul!߹jWb۔V+Tyc/o&3!K'hأg"v c\՝\)fT\'sKo:f/x?$&<bn=`jBKs OHrKd!`۬ݚuq[*^$}-W w/<>o`MA3{w8RGAmy4~ׅYY) c `4c"W8U/]v0b+ҝ ɜ 6]e@oWGylDo7C SJetCjk׷)!iaX J@jvjFFMRh!mg%q*ftȰoz*8ҿN&1}=t75u}=8=-t&^AXX'ZNvcN߼d:#6-6@Q =|e_^"9tx1&&uU8Onf4=r'rE zg8nICۡ7Hc y bhT٫A}4;j`OߣL{X)"wHhzrSaSu5 FUOdk:>oNіzr$~5˧?ajgm.'@THanj.ʉ:Xk3ÞZfliHqM 1p'=ᕛGE™+Nr1'R-( {=lƭq~ XBaa_Q*bشgN,;~ʸrkvV1p& *bm!oƪس5|Ƈ2CPf0Bec7*ZߧDCL_BGV* (5thb%I8 Ҁh0SpD%?I]I2GѶeDU:k%sƥLbvMZ榟7&:_5:~ *>WEKRoR{/[6N0[i:6)V\&" #ЯSLkI});ױcσ#JS egQŒ̄/ ..> c?P|HyɼF ~]}ĩ"Ve^M Nf=b=&uәsSۼpY̦t=:C=⽵?3OO1$a02us 6Agjz/'xVY3ը2-wkI]eKpr:n[%NWDH>B$A]Ȓ<(ǭWUd&:uvlLxvwsB{[(GV~<-͋]NRh͉ tH jz\Dipy,-tXJaB+~_Y5Mݷbp8"YSҗc )OZyP* &KR&J:!*@m``k^?YUۘɡmJB~" kf+)w#4x01k%`$B5asZW@FJ\{6fKH]Ns#ÉS/f2[,:߹{õtGQ鎱BPltx.s?%_\' \" t};+-ir,%[[E''K$d[ӨޏB-r'݀I/I.u3ݺ1Jʣ1gkΘQM Z![^{"QRkɘ 1O ҀTD^Ԏw3h>l(PjIU,^1? ƮnXҠ uu((!/2(<9;h'K,̆SPI.5Fۻ9dnj.NNW QuVko <(ݠSM9=ϒN+Ǘu+v#R1:Ű&s2;p*CL^ZeBrUKw 蟼m0sP>/q2>SUdײgpV,iR'}\k@PeujB;!_mgJ$#*g4/4e{(SihiG@eނzob93񨣜(ri벱*1$hKz =|mu0,$5:i *`Pk-uXS8^CN8?ޯzzlݩ*p D'"T^Z wO2Fݡr߽אx( 5^k0PE+N"%1.ꢄ">Ix.8&3Cѩ8ݍ¿2!t 0%.17HS܋4A-5avU(T@c{? 0-h :{CB8\H̶4*MxPfɥn=)P's^5pK!v`]6؛1 &QZ2nFam( @d hK۴"wojd6U e'p*1 &@jQ8<̌NԞJFK{,'#95HG-WsGn|;8Ûp9F2,T[x)  pa):qU?zzΠ);)tj_ 6_;$&"L=+vӅK G&a~Qܗap!|][ `qE:'*p:10u׊jE oܱH#'uqjNg_fഃdЉ;)eK-&ֿ"=pkh`5K9}+ГĖhh槷Bnv 50p*ʾ>GU28 $\F p1 xPWwB;~"2N/ ka|u ^p4U`FԡkW l X*N=gͦmz=KV. 3\</غ`un`!h|R##\*Z 7@puKc6\r&&MN rٻ}`W]YE/ӓ;xqw(Sqm$ˮjşĉG2ٰbn(Nc8E۩w?xXax#batĘ}ҡYV0"|8|ʉA9Ы%1ɋ9ɾN=gGOp* VzP%$XK#qvQčܩ!ߢpe""j^3T6#tV\tZM(fT{VťaY"ߘ|͈&xy1YI$5\Gpa&}_$^)i870WGXb;b#y xTԙH職LH7넜=2c㗉=x/6;l]Y>bZRX}'rX[B+g-G}e W &yKf8|scv?.4l{TA ק`WC̎nE!~V9UuA\$^*_9ߜͯHwm` @$uB-`0XIv29!69"I$KQʃ.GqS؁0dVxu_-^".Y^3[@DQr:#uBx!ck M)ɂ58{Zcݱ[6aS cB) r4MV/YzIW,WZ/4o3d*~],4st& SY ps]ndQvӑ.9yN++DV?)WM5Nn#ymQU{6>](o # UBMHƆ|_K.&<@]T:mF[~|]`Ty/ʲ`rAƭ*bzN1L~qgjC{R+KxheK۞kLhopcTZ=_|R F†t,kdq>X%FX5^p/nHowcI~&U1W*|_*:0Tx#yz0Oaq򺧐mr*[у 'T NH2Dp ͤO_H-*6=#Wg`G[^%;E0}/\H}z` ꘙX5:ŭf#mN ;!TM7r^;,an4R S)2Wq6w&spw4x;R[p[Cr[2] 5bK̔0^Y& jmd wz1MnC4E㖶EaƧ/C:TMs6R<пƍ7ī dlw\O*KP$KϪjY?)KVR8huy1r7w8?*%A:V>gBTV7 ͓u{9hBC^?m?~$.5YXRqꗁ]3*zY=B{czvy>K`(պ +lۊ\1Ayi5A,[{I@!9-112-.Eɹڀ?cK;>=wY:or&l1mkv։oPVpya4JᄖЭp ozSS^NqX)8dNF]*mvCVVH=#0~j{  lsR"PЋ*‰_~ߞ?7*xr SRQ@u3BOW> x-S8,W#)B`cJ7y> '8n>,R(lB/hə3tMQq>q"{+r1Ph*Νv|.ѩ :>c˯{L>,YQ.N0>p*6PrIuuyQqat^FS j*ڌt)eloYώ-ڸzB#AM݉ TRSƩ´K@g<#Uq}8&u QVK%9Ї؍*,]yLZRt:ĕ17uѴnto}'Z 뙛9vS *F#BAiaN3,Ek!9`ͱikj}V/Z%POׅK;b03]~!HgP{W Npgi0i`ވU;-UkyوU"s~7'('JB:%t`qKHpDt Ol& x[B׉`m7| .].piTN5qd@1c@0Y t(x OqRr-LAbäOeokR7 2dy DY=(9"K%/vEϿ$}1m[8K#Awh1I5+zob ,tζRnyU PKBDdk06KC\C֣%ldM.f?*EjpRM|؝fn9Ѳ=I?Ŧ6Da'9*[ ܫc p&5 %`f$CnFJG3t ¾W9mW_s!vvC?Hp*=K F/O#$_%yOst3]^l3̲bn?YғCC6 FS.CnL8))V[QlzqX]mu0tkݤ;>-+dUEKjɄ::Zvw'i~N?R.&9#0t$jj5p_PK )Z[/N۷'BQ03g0`bbXXʍ;6=LCfOɳ1i !,9ELKpž BzEEoW`h=W) *4`x,oZz*4'*$Ztw󃎂il{ yU]#농bsaџS0|I7o0C144ha;*AR1j<_>5=ힽ;?Q!H`#3p؇[X1/5Ws3 ?#7b֘|)$WLP<_ً|+sz$؍2βYzodurAp*_1$;')ˎ&XmCJ PSNJ)7\П5q[jel=O%xBz<^]j![^{=2ZQ!&yÀwJ-8h~[Yl#Ӷ<" IbP?T)yB i$$*լ UyT+|WI_7Z^. `dVN5Z+)S/ы fTxfvtLPtq杖^X^bNJE8^#R޿/&'!@L#FܛW7Ehgz|ޏHRO} ݗ[3[Bw0W>Fa kD=p*\7iÆ* ӽO߮I!B.i<[㢹-R4E1] 7xO=@NMrZ^ |>jqVR_un E~FL}qG&H3Btm; Hp8:1J;jtML8@5jL8/fXӤQ甤Ϭl`͢ ZoLI^w$ y[*bONPYb"\!ڴS*h*`.qS; >+rk(<8rH>zee g*Twnj8BvͪKXR62@ ? ѕ+\4gdoLPwނ{ '}RԵЗ14M;vXʃ-FS(4SHR0D`vbb"]FHÞz4OxNVԇC}'iBT+$<YaInYH'uNu"LifqA\g֤ i߶TR7Bx'g,\^poZPɢEKav*/.XPrk8Z{93-"4p`QaU ݖ[M<qd0bʲTV0˿ITi{lMkzQ&lYu"jy%,/g0"h{ =wL"lg&A0AYd`#.ЬU1f^°sI~El]]V9] vTu۵yLNfC=:*-ha&({úV|ۉCFV hyXfĈ: + ֋?/=]> }SLwWg̘, S6ZE ϟaK0ҿJiu\.m~M㲡S6ꮆz &'ʴaڇ ;s몐E`>#6'G3l$Zj"pQɋj4b-$ .KgMȉ:V9Cx+GoߤIuqj cns>B~Rlp!^Dvu7·In7.dD5Lpk}M=V@?J &6G`h#@ raSlnC@5Mvw?ay5Xi-C̝v?y_ٌ'/dnÌ=St*-ͻLhȟMN6 XIk;F{_5֜/(onvs&2=Yjڮԧf&dSƲ`WbF!3xd&6Ǜ$787`AWa*b}" YK֋ha+A"6łTP!]SKedfJ%yF:Y42jfVfPtۤ't&{4X)R6k qYzР}Œt$EJLfWIJBMzN0ת"imTK4 w0á(}"e&!-.pq;r'ׇxRoF!R{㿙9-FІ\}PI={}\Q XLcjQRM0\ީ]ҳ&JȥzןG']8PZ'N!8l)tfm9Mz;-V؀8ǟ2F* R\P9:^LPLc2ш񚼍Z,adGlt-"z=~(;W%q?f 9QmcL DLKBOPAqۭ:&ZKY@G ]e]N1>'#8Z5u Y.=@uN0K`khY\岲a`bwe7+ [ _ |F&'K|1 r닰)Y".ʲm&1xҾK>ɈMg⇒n/jZK{cCzQD.Qrc}t0:w`W0Yb*fgꋏ_?o+aWze߈ znSϜCU(3 *w,U5K4a gu(F%GLīO K]Qͫ Z&+n?FG.cK?1oga 8pI ]sjͧ5n lSgM^d:cd3p[YࠕcL;)t{FhX* /\oZ4k vb6ïOBw2t5[jFwp[OڠL/EAE%˴W?B(^Z3DK1]iaxg cbfR^|G(EˀU-r7p v5'2.*R>t@ hR vZ+J0`n x(zjސ~}_*L YMm쀱Iǎ5ڸ}~sҬQo@KJ^{;> 6Ҭk`"x)EdekdƸLbUfc3y22Tdy!8ug,]y^tM]\&:h  2p16B'A&]싾wuU5[20hi\e-@ilgebA103}PPe??YO>.hzh"ys0 "[{< pISՈfY5m%S K9\)Y+hm0F9cX'@۞/E\NBc.kW Wwqyh/,}$ۓ^C?#ɿ)1[}b/36zDezI\ƨtY{rPa_`0Rs U-]uM>rͤ &: TͪJLF?_ǥ3y~Ktq>󕪋prH~zQkeXD]Q¹Qtu Sѱg/D;ol"x(e9'zPe){bјv3^^ H-QQ5lg8hMUZhB DBIWYEVkQ@,^Rp'?p p,%/`+j"]<4m2>:kW9zLS)0l[xdQ_KG}SD g:Ġ/m.^d DϖbĢ;J) k nsoPu;:,KTU(2ѳt°^kē^3kn:ȞnAcWIqS8e9``#Ɍ4 )%HC[z;u)tQ]1#SzcXN!q:oj}-@WZ3:Jf0L_YYY+)4!s8`;o_k o,Ɠ%ެ% Kl78,a~~+| 'w&1a4kl!uzp8|[lUbj !F_TAgz ;v3(0M*UNC<Bs$='Htw 8O}u G Y>QV_2s{uŞPkVp;}v:I6ŔUQ%C4E2(3ۖ.騡EdM|!/G#FA4AQ._E*T$Rʓe߫ 0]w˳JrW9r/q-4NbL_Ӯ^,ޙ( 6>NH-16q-EoFW?S+P( `vȯdIw~X_NkD,a0!lit$mPi΄{&9 !%{)/I!_+uK=H* Я+I!y!XG)6pڟ(՛3(S8A3e$508rvHǠ VT$j;JΪu(ˣmfqW$hKĖN H (WI=E'<ث-gRw\QAգC4w,* 9)K0xt@dWpү kGgy齣_1n^mS{ W@}b4ڦQεhQjnn3 y*S?9t2,!ejT!mt4${<@ ^oprVYsծsR\i!9//gup~kXbX+ԍN׭CĻ R63H{r" Sav !I*\H}k3{ Yddjm6MU(!,POP1oSwry =2NX=s\;ײ+F <_bމlb^Le.]ǚE|=;Yn[;Jt}O)ֱXگ -F*һ~/d3he~y"Evi"Mrc|\sӵ0DjK)걳خV3C8|FE9lj[Zv>C?BfL8EƾPR>y2\^'w?Qm&(oP8-H 7 ɰM"m58/G~n⇺͚!JF+mpwGQuߵ{d0hp%CG=5;1gC8!ҍY.E):L3hEH]&v2aM-,D#"bsNvJ97nihA_DQ]xuN$$*wVnK~Be(A^& B1)Ksx߳./DHٕ$M5؁-x+&r[1| kj)8,tJ3T0LBisk=M4h$PERTwP]p>V4L2lU: o,v{B!FMYbmj"|w0-"JVq-TLɤb#KbCMgvSa؞))7YMF>EœZXURA}d"\}z^M3xS0a^36Yd?9~Zكr#P1l9ЧU}3hm.1-Vk (6*czogZ&<ʛY@|X>ӝ1?bO[r-$sF}71ҋC9 T<$o$Wxzη̃ꄸJPr01֙+[)-S[%;b[Q: X:yCV1v,Q=e5N=e\rxa!䖼sNd@:'Q"m_iϽ9 5tvmo1-ЍC]w#=;ã9ø";AHΉu/#J;?3V^bGm1 =iBvS/#Up/#VD}5QPTECuo6z"T$D5$*ɗ(k_C&ES?:͑myH-lp7RI4ʕ1y Jd$j$$ 1s} QH,FoRQ$=F7OhYmڎjjxERY{:ؓLb ݎ/[8@i^`־u7gN@ tU?=D00:%Õ}td8vYˎGވŵ!Җ87oUOA*#(B"Q o$ 9רSA/5_;A h"[*"-^v=as e576^Fʮw'Nw񋂭puBɌXw(㙨peJcjXt=h/Dk#sSƥV`hTtN kU;"Ym_DE(qI&/,:qcym!~0zx[ ޶M0u@:h+mi~}icϴo "ZƠ$/D˧4| FF>@"Wx6O3]e 'GUNC%} Ϲ̤NxI{Ef3wԶusXb>`%J'[0T Ogکr<@%كANVHƈ;9F(ஶOCLQ^]D';{:oHb*̄tw!30fk{Y|wV8%p]4%Hq]A܏]G)a >bAs^%ɛ>f^rX~xO#=ϡtB[myL[dQxkҢGUL[rBtuhI*(]L_pIJ\:W`ewNV0!QXɁ%YYa;Z`g٪@GL]b])AK@7 ?{ OGz7axDZҍz=YǭnrE%:`;8G%G=a}b2A:`%_ __@x#>Ԩb:pI(T]kob[&UAqaȼef;Ok_oy+2`Cpy@N<78V׬G:MA bϕ@i j a|rXDڏЂy)U)/vdNo֨N»+Y< RPo27sw;wǥb&s^-ue;ihEEMfƩjɶ$xkBeEv NLԬGei"^`!߇#tjRyS? ;6< QD<u㌟zkmuĘKP'_{|X-{Ulοy[_]@6ps30Ⱥ"g'⹉`BfX/Av0{2D9hG(Më!+&FDk ! WM.OUh0sCL\ACLC)]tW2E&x5eS;2]z'04|)췂 4Z{"9 jq׈`oK:I:pgwh+ }w.ā-E~XAZi Qse$4!`2XxS b1(tv瀮ڥu7{2biUW_,tY8K&]fTB*CM c#\ }2{1E?E?J-]*"1 r>1=\?!M%Fvr4@ԯU3ȒJ?թ[n ݃GkX &.77TX4 AA@&FlW?kƔ}{zUG ಻*56òtI@x#3C!%S 4bז.nD)!tJ8ۼOͽnrwz6c, /8ډ8&CH#O޷~"CE HAm e JоA@@ьݛ)<p  y经KWM@R9bfV[)x> x<|uSr}J״;vAٙƮפ?E _H6 OC;mrpÑ<4kۉ&lZe0PziQ2OB~46rM[|5BV+ObyQ7&XB}:f~2b vG}ַ'.{O{`?Arܬf%Y5'iDz q[Ĭ ~qflݱxh+^G| ;F{=ƿγT$;qIwQàUQH|)LHuKs/`m7v&ɦHR9́[#Vv$|;M<ڪsK؎,@tOM$OFbjj 3;ce0łg ]%2RD$, /d3p'D<0̾-;f.n:}vZtktZ}Ü1;Er>6}'0n-^3Mp1f>O!`-V,Ƴ^X6¾KU%$jmF9 > ԠTPs[1˙dg/q)I`*p Ve-+az?$,ʈ3'KITrź;lg)RV תx@!gJk]#薆 _%GZ"4 [odBRtY9!?PT\~9G+ahҵض Y|؝L)8f*dg;G0%'3꜌'ʩLm *~ٴ12-70"ƀk[#-$, ͺIڀ r_Dx}2(HT"uJ΄u/\M Igd7}m٫f7F@/nٜ]}ق:_wfK d¢ UJ̀($M*=/`d`-rHXBVju;OP J?Y'K s*ފU) mvD3ɠ*waoZJnL\F`,AfaOeo&珐Bк]aa&\z//質Naӿs:'?:y+ZCx^Zy r̗h L~C2M )PbT^mC gǃ؍BS&J]~q[RsWl6 hTQVȶԋ!+x@F22pбQ3v1(^(csʭ}0.Rȍ܏+Z엕kr'\-m"`؁޴?񅔇prbsۣj4z,d;!V|%绉K̊Re!h 4;sB}..U!rYw g0)*l88ve|d#c$& qnWO&goBVj>')o -(3f*uȽ,^n۞&M͢Z7BVNnuń[ޱȅܡK!|Z!ފ?PwP/=ſGs˪dH0YNʁ4`agG?:/CJXyv)ϊJ5-s +(i&Q!7/K` 3[3Pi\ ]f.gz܊VP'RCC%$_qy{ԩSNp0y_W&ƿJ^ɑ"$ˡ,ijv7x}ww =/@І= Cl},$2u}8SQ*Q [^vi1eqC805f]l}A^QiS klSN,+%0l~&xUd2 *%U<#*$+?3z?O݅_ ~x/Yڎ{WhVV7Y,f C~At~:kj1T WE]gKrT$}pehŔN%tl>AG3( R;@@Me$|Pͬ7?#21>&$LB鎏?d /&z4}QݝZvCh;Mvc'暯rĜ$^s//܂ǡѹPԇNBAO V߾}X9;xkgq6փ=i{.e>A˪\ڑ ?_r1H):KkkN03ɨzDQs_dŮ̾,X1l{^|?6ab(T}"h?n6=_NfNs,  ?<ʘ$X0-! (zZB Z@$&nBHm5#Q5cjqGɖ^[紈J#fNwh~ ~ #UСB3OU{L(n9[E .J8:яgi!9%qS &> ő3C$hA\m˽3I7Zs_u/%${e$sƁ/i _6B6G{Sp3s~aچؓ"mtaHu‰ ? |>2yfpCxVEBpP!r]96K| m&KF,(ǶquǫK Bp>G1}96sL i9E֤αB2LAA!w&|O2) ǫ>+a"y0u^8/&O̫1_3Q \N HNE;ЧMt$Vx^*yvbZqU!{W7ɳC4b 2'(Fwg1Q]?(;?RxMlA(4yBJ-~*>&f>m")KU"tȁۼ!t0yjzٕum˓-Y7dYƲE1NJp]|<`p ~=@R0'R\ gg f);-ܺt"Almʭ$t[ JN#Wd/q=p~+]`Elx/:Q4>wp[ !ubsjF7ULRTy)_oI}OS!~$ҏOB8_/N w@$FkB`phjۗZl;u`-㼫$1tm 2q~] N¯v8z7>t{:grw]1G ɑJlMi`6>ϐQŕ6AH{K FgF޿7k]=p=]4abJLW`Fh\|uR[f~=ieXgYt4A<8p1WC6hNUE9>m6ku&!M2qI~9N1΀ \mfxЅlU WnF0oG @FUT2mJa׶ۊ^ܫiѣH'Np-t_^{s! `:ds U})TSغMwS P\BhTjulٟ[4Ojhl’rM&雃Mj972kO ~Tb~ E=aan] osr Yyt%OǙ&" n94h`" x1A xJh^P pnh0N DN0/F9ĎJ3Joʷ2뉐y1! *NKVw^L=_U2{+i"|(!ۨ`Dʌrv$.lVP+L +L!7 Ee%\Q[QN4~IHcu1>bS<,Ʌ`S`; Cmul<ΠBozh!OV%s% O(3ř/e`Mz_[CcwDR}A ,rPR1 )z" 8˺^QWh} )@#4~;6szl* kXNGN ˳^5?-w& 4ww2'=^Ho&nX1h`2PD.yUIZM%-q^Ձ9Yﳯ\ < I+ea6↢݂*%?")l50'kWaA[|dz?嬆j "9i,XSOT>ϋ$|Stt3s:FawGNz5!a2 f`[j4"\ #,}d&y>s)a£u:`VUgKBӰe. "]}XYC::S^>a}ᡘߕfdG=f:KQpK8$Y20 {*/e$ȧ >@,:%r.Թ#Dq {+>w$ ,/OwD^&8[BE qmd&cD0,Om`dلjg Gـ "vTwl`M hY|q|wrdMpy 9qj4@w\KnI޵Y>IwyRʄ.>WX?@S0dgHM<\*p4id v-cT9qQְ@(<RKY[XN~窤ٖ(둜@-. t3`"$7}j 56呦 Աf̬Eu.>R7Z :^TVGwPuA<7gL/j{WvCMC2߬\1k’N 6^DZBiHu1Q@1+ o3VTi{AbZ%f :BTT_Q+nKUgtV#!k_ItnnġH\ T[?` gޫ"kܬF vl<m\H(6a($VeW:,~y4]+3_]&3ͣ7 vtʐu'6SSIA8 S.'^7'mEqѧC? 5 M Lh.>Xsp YSdFR u HZhe6 s e0TrrτŨzQ9V ruEiu]GW|K9ݥ=*+Ârh9[!sht\{֞hrҳ5Nm3y[l}TRLHoE)iFK_ ^"0]g1x!i,N-<+ 0m-eMQF@ǑYG+jj (L 25 MEA<0hJNf#Fm򷇳*!ֿwQMVFтdhq%ix:s&Yw1^$n Rb2Fs`(&'KR53+>h;nx>\N_%5TxR .=TGfVQ®H$Jnb p OB n4'W9n泳"̝u&Pe_I Q$HGv%5dx( Dnc?^mN\=`(>aT^\w|g1J·xl Z] Y߮NG<_ kp@b*VI)B[G8_hy;/8YR3(Wd2fg|&H)ٽqJ9 B}7E]_(hYaLl$*U```AX#rt _D`-[) -u1H]:Z) fg V (8Ht2?Dv#ՕAi/F5/,cӞiӟ;Frt>^:^}LvCFςhQ!\*V#r#k``g ޚ uHd, 4|}> |?]##dsMvN@P}d Z .9]K}QYzx;u+`~)Z m!A!&JLܣ cx ^zǺMBLW߻K_I Z.ɬj㩿sgU:~Yi4zƽWMm!o.:A7JI4\Y8n, U?t& GH+4F[Fa xHL/.u{=-w3MRrfJhQdLcMVpb$ Ta+`w~2U" ՋG3Ϙ_ދ4ue&lF\=P5 a K":ChYXo]e~yssR Ҧ`&ջuLL+i Y-%}YiJmy<=cO[C/tib5/-:JDz#8uBj0%@ CSu i/жS72،1Da 3!ca (-Bsm4ϏZtwdP!Q;Pyt+5,vJ|A0O![V=q87Kڈt߾}ΰ#[<(_˴>N> W@' HDL8=hyl8㤝<8Sk/8wJc#tljf2;RAWhI5mGGوKiDC(۟O?_/τpYSs}t0 8cu!dh&Y\U9ǩ_ ,_;X0J޳ 1ٷ*<|6KiYZ51f3gЧF)~_=& LS|R9j1fSd|\V# L8zA#ktNmٕ 95Zf۰ cw'QfE0.\B6;lP#DiSpG%cM~(^U[Lx*)wDq!xT j9|~] `߃hվ{t`X{ˣwfaYy[a sH-Mנ:Fo*SPL'#h26[la@;sS!LZD$*/I*E |X:2F>7mOr\^m?\QUdKC@y=\%ʐ1V6|ƧaBQ|sҀi"l,i Z`Pb݉,]]djrNUŨr^8i$5q.样-.q׭ W|֊-.ΪAFhK2.e>M34\[01T-̖7emL3 ZWTd YԵ\!obNis(p>lfgk4Ex@)-4kztC;.aş n҄'-P}7l2o|_q+F_ zy,ꁱVTG砊>S_FN]Iw y(M#8'V 94%HXY1Ju7M6Ծ|N pQҦ𸌯w`kW9XYbY,rd)OMX&zG^Oi<">kPvȹ O+ϸV QZQJ+纎!UI1uu֩1}O pRr&Rbdx?3$u(@@!q7]c`$NϘxlFW>UT/K㞷q4aisqM8c0!P_ԩ$ !K\4o2;{nuɿƐҤsw`<X^Ǖ} DMՃӦѫ%u}!?1أMP Ť%ړ7.d9JwӖg4'qjޡJ"5hsj[4u/1F޹/CH4h-*GKB&N5nWRɜC…y@* L nb\AQxL[9sIwJU;(WKGd6zx'0ƶkYyЅ b}Bk j,Ԁ,|[g^ _π槤Ɠ(<EX/Ekq^BU"0A&!:E&t[ S|Fyc$ZEqZ-Sܩ71F3Uo-6xA[r5GN?rC[<1~q" ŧn.PHw ŅEy؉sI鱅ӭ|V\km_]Jzt(@w4zv2; t5yRoOR71b6% 2I@odRB|qOՙg9H8GLf  .]6҆S!I'66Jos=Uj` --/wjJ,xKOTDdFJow0{7]v%cISFpݟE|Bbse)/f'a*cbr Df[F֨!/,jeKhڽ\؄0r7rEk}fY/5꨷y!ȴ@ctrjmQ}l2 !,Ti;Aﶷ:9UFR;ߗ:mT }.d[Y75 S`~DTc 젴q^3٢űBuGܿ j6r4v' 4}G swA{HߎiΔ$![(5(FtܶѣmpGYǏ:vw9ܦ[uAIFۗBd~ram| | cH, $b =ۼx,STbڌ-} {;d~E49֌6&IWܣ"jm`?ڸ)ɗxQ|9D#i w8>o-R> Nhq%- .Y.^Zu~1 \NC\x)Ov5EPk<]ߥ 0w-s<40N7h5oqWڹ_GAKی s-iXWjį!9RZ6տ"UiT4k0tL\`_]@F7M_?hU~ UsGUglGTB& {Yh';˼Tew#%O§+Jp.up:`]"o\pwZ xZqX/0~dVxZNm1e mywC^D]-srf Ry5}Cs{}2k%\ TDe'R2[=mA'u1K;?k&(J2~"5µиu%hq5 byD?yQ`{ iB(@b[՝ iVFA38)yj=se{ K:6E8eN=YPiȒR7 J%6oM lǰ`Uuo05>sFp*N:Ledp07h%RfV(;(hw|wW?{)FGcmÚk ~oԵ3 ]BzUR4Cl-bKd(kGCdKÉ#x% '=npχMKCh|g< "aQI|Fm*xNۻ:O}uFk฀<}rE[ >&q CW`=Ur[ux=E7EV ,r>f)Q{N08ULF{mc\2{+4dw^zrM<}N:faRX$=GצiSu)Z?+hާf&'з%*0hKޓb8wt],o E_ߎg/L)( 3gCNwR\t]?;U"5T@&5#GwJͻOOM6t,wZgJ;QX{ \IT+aD8Ջ+%: }qo6u59Bf#"+;2kiKr LdȨrYؕ[FS'њvHK2K?cB(Ѿ4hAy!U\g'Bs$TI/q'2v#v=%7EVd~}|.3jē.jXA9JsBa8hE²k-L:6eW?}?OkRL9c܇ ckŬq!2AxS3 e~|d䞩X$#u! !;Qff? Y;ijzRl>Nj:Wy ^S56Ӵkߧc*GӊcF_F2VL=[o/c:ѻ]3p `Yj-T;@ϔ|٨Ҡgapx?1Q/;jE"t0:CDͶ?h6)WK Xx[ ^r}}8 !O|E58怷LAI3ȉ1\t5%R[O`w˭ {D, n2d )OxKoKJi"kt=`P›MAcJa렷9(m* 0} FO 3`@&o!֋<8M^>ឱy35j tUHy!Lh)_ '+E=1e%/6w39eS|l$3]Ԕ4 NL 0`"r6C{#r*fd)w} ݖ\27!r$\hPCQdHYi5%jy)hR½ֈ@ eOe&> Z0MDoԘhZAiG"m['5xGb1 356PEX@(&~?= ~:.z\{gr٭p D?< m}.`ВvԱ+p2Qق1`ljJSbKi#2b(aj¼0Tݶ>-V;**AaTs'Dg.w)|42},gu:I2OBp}OsT+MTڤ3mLݬ(%r:R83!AJf ݜw,uꚀ5zW#7/r.`2g1+ygrV8OJn|lP8G/l>eS"h2 BqmrB[dxuWf),;(ox彙kUCgb8L :6`Q?+u/=+c)X' G; *"A4p"5YYa<(xT7;xs`I/ϟn`*ϔk U&GVWb+IۃcT`g)Xm#qN˳!2@9_ ʕrw ԛ'J'7mwkMVf Hq )ArOb˩5\YbxxQ[gl,|ّ>YiT3$XH3)so~_ V?w82#fx"ׅN-n? Y3l4譬B򒀷,]؛LT;X94Z Hhvcw)|* n"P˸<5`%{s]< * | RRFs(CAnGo*Y[f7:į)86F@1O C(T!Vd՘0?pQxj`V5W>;׍U]@!rA2#nZ9~NV5N,PU;],at}uX^R-H{"=RsQhsD:@.>:Kff)11YHK}#Uҗdzҝcm4j9idqt>= Е4Sץ#N2H`lֵ=0zgѣB(]@#Y =wRkgT/WR㍙:=;\KF)hh#zh!;Zg9e튣WGI\3ѸU"}mVxLQy"͊@$*i8wrG)R@/ '~$SD9exI+KЈUELm,b:Gh=>WE"ZҐ+  `f1l%ռ!N7@+fJ(` J^;T~hRzrYXHnҰ Q6lٝuD(N@qy>xPI6bvsK"#أ ^67b<>`7/3ĜpSKPk9ł2LUoVmMM >yrn˛RP$@5`(=UȄBXgZPntB'#'.fƸj Փ'-wb/O޺eIoK` y gR̄?_ HXfwtW[@D9,맣MvK`-ӧıMK_WhIM̦5v[?ytrDV-,ˋ>Εo0^7~'%,SWDq߱Ȣ2R ܝSQkfk$v21$#kMl?9ͭrɆ0(π,EcPJe|z_x(ِ?tS6I:z#q_xb}raioC3!x-ĘP KV6r7VxSv|l!J.N!fq&4#D=Q;u&=AeM횋zMj!05"' zimA-Gc Zz;%>>-O"m *9]%8{Ԫwd$ Eu/ur˜ }6n[R_行j 1 <0Kؽ!GYA~e`q|v4`sytبR|^@@*hӫxDd"(co-/`3n2F"^]ִ5OО= $5Զ,_ɞ}7.)uus;uR]_>n҆(]K.%jټaYIOHghT[-rvA|d: `o9FHS/:^Ay,'_>rV:@KUդ&b 0Eҡ>:&m0ǛN8rl_଑;zJ`"|~ QxJ 0 Ëv.m<qzL,jȼ~8jp &pҰW[Dqw׾K‚b/ڣc&b3GwƋ4!>-t8^[u^OC|l!W6PFE,띊mj8[' Rcٽ95>gq5w± *U _sc" jΪYq2M\C$N.-lU}E ~`=u@L oB)dI2 ց>Q6!eN! (2Vm}ja;8o ]QF4dk p4ߪY$,sŭNS>d ~fLI.HKQUz$>ApJ_&_mbAG#?Fg]-[ *uȽs@ h<yu^:2Fԗ.pgGdFlC$׏No::evT&QV8_Axnsd̘B3"'a 5tlUҹnN8$"hlo^=d4bʶkеH ;UEd2A^z*y򼥀V4n:H~y90hl!KaiBfz]hVQ1#k3o߱zhL*!iOkZw׭ZMdT2 nߪ06/wKۻEHW@Qr SAp/cK>&C̛ބφK.G-  nԋ>cF6a@?C?KL#ft*5NM&Ԅ+X+>9;h70L#jVU!܂%wagqNv?q2[c!{Ei^/R4rdH0VRILz!d$l\%gM7HCD9ٗo]ѱz~`vGtg O irV1gEˁ8)MwD}uwA~ #"%'նk&DϜ3/WxA/D7 B<(l,a'ML"$wGcIe({瞪TՍf_m56>XY2BAnjGBJ1x%'V9F,j6\i" )qC 'l^BsthA g&b(IaUS7 =rAHw/1z4nߘ_AjJȧ4PoFQ) 0` Qi3 (2c%GT͢c{Q(#95z,/`ۑC5x)|n?YQ|r_15})^#lemJj/ԻU,`QnQZcgG-Գ4Yo 8's~+d0J lG~ Pv-hitvmb*~7Z1~̍m[j|vLJ62ҝh @K^Ldomk+psg!b%@&) 2(Tg}TcJ-?Z! ӊ*2~of7u4e& SS7بː7Ʒ lLCtat38_ha+ͪ` V٠ ,Cpf l'b/tia\ D+LGB+SFXalBσ܏ATx1ՍH|w!m4uժeRߖ%ba 7*Nh,3r:R津z`'l yE毊y?/'0 tKDS#NoXSJ%"'npf%x =ǡ;ln 2-So "c,yQ=i3BB9@]U:/Re>B_N dG #K$=׉,VEeJBueLycxh?n}.BcrmT$EX!cW.yЙ5q~=bFL#E:zjnv9t2_ yxAr8,ķ*^6}Z*0KJRO1#|lLe8W(R !ܟe0:-SE7(/xӑv9¤[.F8 lTsϸ:)X:l'dTr̅IE8H2f :6pSuy%6VΪ mYZ"%]Ih *П;7{ 6&%̌ui k U*UGBvGkBR42aRMAo4a!Bv5l7hbnt(#4T=“Lo{+ mSsT UU)6P4Z7UN6;bf8Q^Qנ-=Pa7y7E nquU dN~!aN1˚,c57US0ZGl3K|t ],p3_Rpp-T8۶Ŵ‹VBeuߗձ`aӎ3)MT[?JԀ쪐$Ii}V_ :~rhKliv4[/~r%vSjfBf K8ꉸG4Mi<7#\Y6]:И]_wUWC5΀dk7\܏tl~[8WhCvC:>>n![-U;.yskZ\ݝm-ڂ]sswRg @RNȺb-8M L_D.գe X{7+0vq >e q!ȟb;4긚KSAg6`p/*pR;u [qڍ_I/iDh@V|@ERZְ8HUa"z"ʘj.>)VY( M żp\)iP=+S396gB %Rl i+WQvXF %eY:8rq!L*Pu_YB쯔snL_B9bXm4fBlE"`aGm1!ZKӸgBvX<қ뤉ߝbYi2=w4'5 *c%13~iK)ᚊfd}5ů`0⍐Ongi,ZĪnd ntYͯnX1n DpR~ҳob52qLmLMFnHg}EeW?`\O Z8rs:lh=ޙ5Plq  GzIC뵩a>3ЗDd@Ѓx?r}&TV)|649+5|t:3i.ߑ"a"qeT |E -=K,pڐ-f5<c<\='L&ox2. #C!H~zi( kH,tH[^\b+3_- U:̠8{Q 1@CLو@w?/Nϫi2670.u)>HIsŞro!s"40[,Y6Jp t^X>w@&[^HH>51v9A^w3 m+"ޏ"̓/kuytsWBP̨>Z+|zvU<%ȓY` ZF]H{~ϪwbtLƢjQ?L66>sthBc0v-=`QN-|ldFIeGH8N*lW]6x ,f5JREQA ֚%zE=cPb@VEw>i=kT V`׫DvlLb0bxdՌ\WȰzP8OeJF^e'U]VQsR*K[9|c_E7/wAR.:tMTkҜźTSӮ~^N@zDŽl*<ҭJ gU_#A i0- `xqS6B$ii&mc4? UAe'N.ހܻڃ5b{ ā%!A% fBX;sR_hQΝt821]RLuO2jho!UZCfs#J o̶o@Q/&1 f9n?B]0F m}Sq'l\oT̚ >$T'ࣝ3`8#S5{pEX|Z RDN6/(~ vW&:n Lkkl.bǪ?Ӌ7}cwhL +P Z;I&VXh Y~YcK ,`[{OxoҏȠ4 3%9/Z?_F0 :L"0.*,j 7V% Bn8($gxЀ<;Z;c?ľ -&)Dʷ <jAUCnyzjyQ`-Mȃ,p+ l)Olba,p*c7e5/ :\u[ $v~ N+󬦙P<Ύm)q~e-aAtn*%El])/uh$m 3R!+5{cJIe=|*T,B'-|+gtkNgѡ[_Ƭ9$EPS/I P=H>uWbo(^I+rc@W]ӵ皘C3 W.Qow5{EFĨu} PLJi!z//FDOu>sM"sk;+p1ÄtmUFpR1oHWWILEc̪Kg8-F{+y|-}/1%X!\'_v~h:SgX`N9H>=&4\oB0|sCU),84YP4(;'5x&U1r6<ȯN6.~#{pUϱu<Qq ԦyDu_?%m_C,uD:>ʊȾ+b8R!?Wv49QG7IF(HpqsZ ˼ tfTΉ*ʮѨFxgz$$Ot'Z 3>-'a0 :!mF&ߞ)2~q'ZlCJA{JPhKUF.,8"I_Fr/ 2Oģp8/4Дd $\C J\tkqڵ#7y˹6?m Nr΃i:ܽ1+;#1Tug"YDA$87ϱ9"+=r0^ ]`I'ZSf;Б@^ڐo鵁2:]"69yzRVxC^fp SMnT;,/\tP_E㢍7zm`3`(s}6]sg̻[ So rFxI15erOLJ* c1:O"L\ov58 QbҘ}iՑk6dB69vEaFPwmhBL-aU1ȻZe&..Y:g=L:"l5nPgP'\HJn_&JZ83L;U'OvLbns-} `au.8k#垑L()߷'mvI'$gs/ J{'8W[tC8_ ̟ǎf RFF7Ux(t rGjrr D===99_4m9 ޽ 5gBꃍZvG!SGu)oRo`V-Z1.wZh@HtԐWf1;0;rj˯Xq㳩:r&iICw Xq6,\~G#W&?L!2W, V*`CN?Tl77>? eCz [, <^WIUR=pg4!xO75O8 ę<=~hh,9>ad UVWGlI#0BϷ o!XF/\,k+Ob(Nsgf9qA^KK*,|C8vr U9W7X2?![;3(-WT0̇RM:Ty#- ۉ#LMr;;WW1'w^SO1 cG#8NV?ӥOЦxXۀC.WmofV4a307L1A5>`vGC}JwT;s/^4үl>,AbE?8d97}BSPkE qb77Wy6B3 ]FӦQݭ{05uRBc,4'G-Rs+c!]D2܈X!{4gb YIٚqYMT:!2z4. ,+:K}[K2 ia{ e 9{~EP[awls}^uWLOs#K ϜH{^`ڞ%,Y[6RV.}BXaHW$]>a6޴Ɲc"ئfn. ) ˡj|lxQ]޼dn A> y [wN@GjXfnz9]a,>b+{tðH P&ü :ajx FJ"Da#Ns&.n.ROay_0lid=~)cgxkOڤ@^}] I FWW ɮQFB Mr<DzaUc#qjm!_-fdqJE=D8S9( F85'ZJu]@ĭD`IXʣݍY%axPwµMj‚uH v[I*V0l׳˷ܯo,_kz:&U#8Q7?08~~Oyi7?;y3Mvh ɧ*B^>cb&*)slF LUҠ節~5I7C!3F^Nߖ8N^PX=9-m+w䓝- R80E`䤢d0S~3[L.D3=3Av -%7"}\!F%DR8@/ mAwnu2<_ Du(faq>"%/U&|( 5kʤԩ>@֓ƬTa4HS'CUEes+)7Nc20&8Mqt,_5'M-w+(tО=ɠ3Q#Rw~g Ց /%Hs͝*Ԃ pX3Ad;u5$K7eU,V";+xc%L/ۦgbc lSG%! bjY;#M楎m[0z1(~;y|fe&}RZwjRaV^> [HR Fm$!r^fNPOYܬGpX$ӓUNC/ )' CA鞫8r!+: %l LR|0G]ˣ;) d,dMxFW_yεKK~r:2`/UcXJV+LuiwZA4f  󕞜UL)EOD-z}ob#xdnjm1RïBœ'-x垜@|+J8*k&d6[vshM?^ap]+ {|zX MP&&t?8b'[W*+ΚԱå_-p% KtlLΘ)&M4؆WoV|_u891Ƶa.yQuV 4>皺ؔBcGB|ѣ| K mDƽ[vc;1fWdJ±weL} uDW!,Ą0lk~2V?ȒIsvtv9qO>WU~}e.5AXvxbcr^ _{$^͕PQ - +Č773[b}gp@*YN7(r}W1g#+ehBQP*` mS ŗ H6u=,ΙL^az , ifaI_63lԺ'LT6 OfdMx(_CcAʌ: ׆nId\!'܉(^~_W}'倮`=PXI"EoFf;ۚϹRjZD{4EM1kj(i #]'&69J J?n•WjH]l M=Ϟ3}cE. qfs%np9U/Iwg&;v#RN >)XBX@:QmAcy-ME爧7l l')6tԻi AVLOg=Rhsu?Cyp31M^ hyoVϟ2'_Bk Lu$Ii ]1CNDRyxVNL`nq-""SֻȆtBG,G4a= n;{.A(W=M4XvX}m$"KSW80XFGq[۶כwڔ`N=\"$c߫3Un(d?kjbP!>ƢO~'"B\8EHa^)U#yn+[)'ae"wz}kdٶ;TDS:> };[:6ƒ%.b4Dhj3<RJ^}ڱձ?io\g#zBka|NT4{\/]vINMeֆS+,xa]ZIPw- M'cZO/Ŋ&eyNPcd~<ުD4 *HDĵ 'f6 cJK9E F6@g浻}(c<ʵ m[[&B҃utP"엉 Tr*/ wZDe;XbQP3E[ޛY"v)|JRu -{'({qJt}:3SY5a 1z$TKzS>Z5*ɚ<;l;6|BlĂʩ!Ʈ*) Udƒ;{l 9IOƤ3LtԾ)y ՑDZV}.,Cn L^06;3 +bg +ˡ'vyK]vw Ryf\N|5l4:w¥\ux+˧Tw±Wnb iz}`iM1k ț(sڿ&Z"!V _KF `ϲo1Gjm&[M7 V ? D'm/  =KvR(d$[;blR&NS{=D3FZѦΘuq-%c>UVruh!K{[@@JfiH==1qCҁc] _T' ;.h^f.MvHƝ1Ն60=?e#}pւor ޭX{݇7N:TgW>h8N&k6;y_BE5Z^P.Q1CuW/Ҭ+x_Ҽ*+W t&)W2y}d.#"S DbCTV=PcF:A˲`"SNR@xfL-"V㪲{ 0X_G 䮖 I`MrzW_*8x!I$&mx([{߬L޿BK22`L XK)+8x?xk"2Xw>=ƫQq<*S$A}SlpmS#Zwí n܏B٘s׃5aL$W(ίU쒹lP!\Fd]b( Ya74\G`[VZGNx4d_H/m+Iر,+}ޯQcNTH 7κ6EڵҢ󖆲TwEa gY "[m|v; |PzYS75\xed'HaSs)(zre+bS2Bv)&6 8qZy$̩Gw)$ǿv3\:Y~"qj- +G ҥ)R!#_9p;LK =U VRl}:83JJLHCX{O@5UCm8y_R~sL%<pX7tuטV!jșB¬39)M4c34MBT|q?JШ@ 6$(Ε)C)G&c!C< C7(*ǂO"%E⾻WGmdM1yN_w'^XVf0W$ݻKIvPIn8֖jmG"zՑޒ?.Jv.{vrMx#.Ke'"7ZYn[*X2~MYXw 1sd*նDt02K{l+J`P'=\ϡ?>wyK>$Slxlc 8/Z=k/dgr֧p6Jq5hr.l4-D;'?(a ~UO2cvm8t߼?}x}X0H/GY.M!%SK\L&g媯j1,eYUW%L-\߇NFYd-ZXMnm_59b &X/Y[ Q͝ט%^s^$L.B]b*3/TZ ?lUE.i0ل3 9KGm/yE-oYn<^lO %x|yJnUȰ"Pr]Uoi4K&+lGdtPu ]tN'_)c1#89yF;j@[1r,W,𿮳VPsB"#.iX9'QGˈcse [qS;MP_ e ]hp~ե4'1P5XŌ|u\G@}n֊&ry88h?5xHgʹ&br/6k/k|%a8j[JvNjd"? 6 x%X؍3e~f:C o$emG*}7Dž¢6_WkR]""k<0Zïcauh Ƹ!Z<~7»/5[p}ց-uN)9m0o&\q9鐒Kl}7㥀GMTQMDa{OLۅ)@KN-&o~Q xnk[4p%[3?Z#9Yf8M[Qz/ZM"j.c4aѡ6iux;qՔzV2jW[bd6 { tAW= [1V!F=xJ#[ n},GENC[J" 0/GZθ;Βgk3zPz:ۤ<;ﮩ4?-xD9ӜTkA_o g2D8<±TSmSk}q;?`RӡDr \p^| B8!x6ޢ ȓ3۶d<֎6G>GQC@d:K6D!6yf4&r? <2`&4>W0 تMw1a(XN#[qZȜ&Qy}jE3Di%WT `JtՖD>L RDpp-6Ӏp?mq4 iXZNfGEig#aXMVĐ92Da*7|vC w550 wK8kLGg5C}nOwQoo nDs—:YR-OIjmfn[:ǩGN9cuW4—u=n2̏ajC!Yp77!]E;ԓ0q+߬- ^>`ga"kޞ#r;$OqhIHfPY~x:SEw iz~e)>d x{crPLI49SwduKWjsb0Uc _[<~A:N]<4A. *h ymG}ª)&*sW؈o\xK/6D}W @zשi0xkAP.Uj s# U.F ?gԾCZ, 0l꿵ϝ ?Dv(gGdg(\·3E;#u^Ч^W* xO`զC+z#SVS4W{mUt:7 &J.#;<ڰHv$3;ʸ]Y1 >{2uѬ80Ϧfgi@kIGk0IeJS UAuvO$dtƺXVӔ1&u_-kQ3累I-T' UeEZ*S?(e&!4,@? R!u!2& {3v,r5W̚V#@ȍ9a`܏:e983о=/<NTBeI\%U,] LZհZ4>N WtGJB.Q=]Ʃ}P`,xl m`Z2%HWKjWE" 4#&J8 Y\Gu1s\aM}Feg5 sBvb%܆_$J_Qeژ 50)E,-Z[^ ~G&8^ˀ*F8wH\\C+1u43cqa$|}%D{+D|ř\tq\HRezjGg61Z5<*ngH%&-EF&ȓ$-y.:M1\H4;x ǩ%`l0`CA+Lnp (]N@Yce& & *VnOyO4nV߽=YpE]1gFNsnxZק(LYmM#~3i%vZ-@5L%YOFSPרϮW/L\> E3ph<нl$<`RQZG4K4sTHb>sD6\uz.h+=7tHGm- |%W>I+d~.A$Q'n7 5~3B`#VE4qԙ2r"5 (93f&̆՞ҽ"b[l?1_HbcQScB{V@nY2A3U;'!bM0kG6#R{e|䭛x\7bx+ RNd 㶥R-$UD:E @K{OQB#)"oE曵kn GɭyPo, tԘ4kHnCRandg?Ybp|Y3Lž.RXROZ DBSCHLkg767J Gx)O!'T#ĥD(Ѣ7+74#lJ; eNjb#=Vs(Q2HTx@ fI^`|z%6{ojQ۠47` <û uh].Z#c=XJAA208VfxSx[0Q+fփ*Ys{A˅ċ/V3T)mDI8"CS'AƢL9Щڷcrmƈk(VJAU>N_zw٣ٿ NCMZI6 5)q`2Z/L^U×(ϪEVCOcBQ㴚Mfgu1#~IO7dF){&gVnG7ʱ\呜8D~S>6#PvDjrA;1sI%iDAMe<_i$D4T?r~\}`@ Lkv:ZX>p#^ r_+u' g|wa{NclK+F؄~:Z:!7fLE*ؾ1@T%|!dANMųn0d[81iLZ*mT ugo=e\_>1 |Cl3LE[%F#ub6p cO!&gSղmpI`Kq.O,m\vه:3ĐrQPo#SV.22n?L~(N9ub3[UoP6ͮVY@ɾSwď#ڴ >%hB d'`,*)AaH"Br)Of|Ф hqr{ --v(kedoY}2@֚=jgmY"s"fkݗs?4, wmL}˞+2e|sGww]UX*E H /thAs` ŕ ꊎuBUPef3ݱ+*hL;< xZl K`\hA=O";-J2ru*OFqsi&RQ19 e3 =!); ўu Df+D6t CŹͲP<|{h8Y?MHSEU(zV3RǒxQox#' deSN ޛ.KCjPen 6d!`Y=A,e6G,]fvjx!~]`J^Fe B,s]Go7۞5(}9|p"Nt6F4Q04 "?1E4iEx{>|\( Z(z $w]CCcH30pзKOSo:P WY{hTb/˕ ꄺƠR*R9'X&f9BYPoK+d(@d*=iI gWO#G׏Νs̗zUά|ӟuh SOpV g&!nfQ6Wߘ`(+BڢUJ@ŐOST+'vQ._[Ƹ!} ڶtYzeyu0}- 2h͂xQ:B &2) 絍~uv*4ɛPXJ){AG'R\Iewdԫs޺Ul֊I?((^aMh# ωp8)AgUaqhD h5]kzIvu{x(Mg]fY mavV= _ %6=m}$޵<,q'7a>*`Ni LIլ ƿ8vߥgΥ=gR<K8w/9/Sst[Cq{)lLɲXq:Q뺃YMz7Kj©<.19ͷt׭]1"W u.`vAݐM6߄a2+6d#֡.6MBA?jxGc&Xhi\HS\D]WUث/ș bb5= /w=$c1%@t/+?=-uEUFVy* `nT0KU3!ީ`2"RA ܃R|m)#gYEfx/lk)RpoiZ4Wt- 3YHluexȁ_I-ӁR?1wŷX:ڊWipof怭M2R g"]m 04Yے?^hғmCϺK0>鬿:\Z@Lg-6~zr qdPe/ }"fQzZf7CQTVHDhI^`UٜK?C"N\. 3N`M\1yob,JXX1 7mM</bT̶Z)ʫdWS7y`tPWg7ѪB߻7te޺$V(qpWK~Uc8^ FhVj\>]f3|K,(C4er*۞M|]r-&gYQ"EM7fXgELr~qD9}-"yysG7uُ$b"2Y)*$f3ze~Vt|YÕ!ЬU4@# rHHQJG>ÕhF5+:U ҮLxRi %C(RF|OJ|6ʻ8׈$ˆq|0D0jx & k(݂K6&HoCZv7` HjU\z1rt$N`Ul~Me:re5qM~c3(3nAd2^uYԓ>!`i]'![;/Ģ-!Uj3F3u`k ;8Oıkڠጩu;~jaLm|i_ sc#xh])t&W'CT-1aS)}_@WTthl8qzxj=Rz T)8)ٷo4<<٨F!@U}$ÑBx M Iz,sł3B٫<.'v&Qr"#ME Y4 עpb$k*zi!QOŲ!tTq_h^WN+)wWcrZx(U+#O|!5})Ag&&z=RMV:#tzj<ޣ%W mF==P![$2O!v9"rk{{HUœ%7hZ4fH; C ՅCC%c&F&LjJs[AXr(oXxgZEu>C SO2֥' йŜ(#T0!yψ =Ei?B_L8^i s\=yg&xRQ,2Q/e[,aҴvzSɉ|";BYv~i: fA#ɚו *9N-Q(>ԜH"PtzpädD}\`(ubh˸'y>L0P=x/߽IT_&kUf\ǝ?rX8?UA~DAt{JcF4oLs:QL3}Cw~ӥ}YGIt 0/.ts˸_ҋF9#nUTjUrBV@~`2p+5LCYX&v˂jN(W iz!s{eF&@}o13wVkW$(pB/*rQ'lnfwRX_Kbq/ |U7yOs支 iok٤tRVZF9@Ut "8m}n"C)T}h߰{HN_  CN,d_>Tyla \;ԛ}(IUwH (.螅*Heq=FVߎUvIctKh'D٭hDa^!5s1ج_K0QO`$WA}t14>  e(Os0452t|40 nN6,N]kx!3JUEY3\A W-H|ߵEy= 2H$X`p*L ,ه 7;H-Ȯ՛eΟnOD*%uNVb?.ȋe0Yca '1݋T|HOyϭg"e򇡴T oXmfl8JzV9GXXr񗸲yp:9Svmatwe?%A"ԣQ R)5 FW@j!;Vz\Tw Hpżc TKR`hHX59;-D}j 5A$#c ?~}wE&? X5$ZYqۏNe-!R7ׇhhΣV;RE5jwN}ۊ\|fk-Ϊ(mJ H.Nحkqj p=7Gfn9@TuDk݇9@؜}]A^aSU:E}>ӥ_.㭊Mk#FBض–Hj 6X~d]T3Wr){~ p"^Uf%ה^F A_ju 0% O!ސp @L0*=ǿGRLۦC *@0#Kɘ38sLH59.1fyt{#3{]9:2u3"%J$F !3cϓLfHܸƕBa(M)<hsZ*z(+s*Cb dgɘ@u;7zHp3'!Lƽk@%n7>-p+5סJ=4DPkpx{Tl֪?Q$gT1ͻ_`s\$(&FJYX! GXX7V^Tʯѷ-WrGzɃjR qE? vLΜ7S.bjޮ&}$9`#b6-RVzq%ʾiĬ`w?/U\E7]C]<"jdUttCRgE񹏧@4(.N~>r^B D~-JktD%_j> RE\,?} |vbi ?ǎ4.`eOCʂ~0Ij'wO@ס~$Z6R@Adwks9^^G  D{N.綧: b/efoӭ$x=QvQ>Cդ {=JRPQߎ$۵5?BJxghmegx40myW.h=Iv*נ~dTIv[Γ'ˢ-9zlΊ GƁ*%tFíƗ P^la?'-y1؅ ̻ '3^e"jJ:f&LsP0n}C~ O[8 0'r/wBU8.#S bMC\<| \"B3 Hl ={^0&+(Έ( IO Fbg4>G۔[>#0@mM0r{+K1٥iizg!7@;- zAH{:rۖ#anxh3{?NLA c}lpn%2iCݜcB.@d cϚ:b\ikI%.~+Rb^9`( STgIwB0Un&Eb:B` Ž#K; Y4NKR|EcF`8FmVďLɧfQ'z׀#vQlxͿTfP^=}O$cQį&tOC[XS"dMtEb݁]ږ1k77" y4X񋞷ڞ1i״ҥ+[Z"dVY(s(-zuۢ~UN9o:ᶞ"G@}بJ*-q/6ų<&(!г@6%%v}L,JvuD6y1aM/7BLH_MB w#)l_H O+D".iHԋUNsT\bfoQdO"0mV}BT>#ӣSE@؊)Ivc*Wh]TBEOuj7=XBE~h ,Aiz%|/Bvz?7'i5LwsF+ - p c~ޭ|mW6gD>nb\0),YLFPvUCŽ0~3h) Qݙ)N%Ga6-)TĘ>D}os-F7HgT_ !2 UPmP@*l]{v>7<$. +n[wh %WTW{8):y(0%Yd+(\Cʈ==l q5$1F.#9l7ޛNgtP~-߿M—d'F J!gkc?ųuN1)D03PSG|e0"JzSDxn h`h戉-i.T-)Δ[o+C/|p5Ff"Σ\3t%jC|1x9ç%@A[Mqf]:#in~.d)-LH(k@nf+^W;N,A o2^7U|!<å{pQ:*o$QF1 Xfv^48c6Xk;PՏ>2f%C8HO;L$q YoI7QEp:P,)^bS&O2,xq-N}.k:PrdDgR4T'8v\]V € 6|:D̔cnλ `:K;ZLFaâ횞|&bdҟɶ2(dYۉgT4n;5޳^odGX}K 3~:-9)Z '$> VHXg({[+ac$2Kfè wDe3OIW?76 : 0" Y;DwI?TX-,b=0ZQm'|} ND'Zo_/"\j{58WJ"pdKQe&W=\`{IO`:D*>k`PCMB%:ltP\ ٺy0.!Ӌ?rCMp% |ڎe{ưqp<͉Hu 2u=d\z#?YKBV^v,.>}f٪UAF2 ; ((DW._4CY{URˊ#~?xg܀:P]|/l%ME/IF o5Hg[VWll1;yym-CXȈ,n*VN\!f ΝZL@II/8 Qm%ƍK#1 !Z_c ݡxwF$P1A Ao@q4 %\8=ǐ̞pn7WY- r[.?2CwǍ.uQC[p٠x9<5A~/Gʅݛ'Z+V=,#Xy=d9|Y-:YnI(lQ6L쯏++&,H낝3zú\d$2 70ds$Km !l2o {͊CB4oY=bFҍ>P΍ldܧn}k`-G'S?b:u²pnU_]Gh7 욑qcEpvuzS8@~54:ơN@xq>䗱 4FVԋ<_^Vdȁ.kwPvkd RťGcVG~:-!G@yU1\+@gV߹یd&!#-hԟAMӐ(X5ȟmTj,Yp 7?}PrC)m4>gͧp/8G&gV' ;<8rtBO6J7vXۢΧALxXPY` ٥B]a":2j_5%Xγ6$ EX!9ڤ(wDnϗO~o#,Jz(+i &j]yWwG\es?XuEj8Gax;&se~hĐm,îHOjn枽iiz8RZH2HJgsE۽0}+jm{w֬{rĖLM/x@p+JdӰ0rذ׽kia' |F?~EX;Γեo&.Yp/^|4ڣؾ)a/iGHܗ2f* @4[H]p)3aCp1Ũ<2GcYIi3VMиі2>R=pD zn-}rx'~/66H:PL)zA52z2#yHw̅"*:e(HVF+IRƲTӪ73.C:V6W!D}L)7;^b1)6էByYR"]=3Se98Rŋ 6r!4h S ?!@G{c b/dw˵.=k <j޸mD/ƒ) O Q2 (}ZMX1I) /cwMq,BGTOs~5t-MK>H'>>}I0)M<>İ1OTLӚJÀ 7w._Op ~H'Q2N2yP9VmU'uZ *: uXy|ʐ%DiA7M.ALd_q{֠1 ޝn+qc\ g}s-st=_e(M/"̑`Nt!"{ 7Jnjw|DXtG47څqH`WCE^;֮=+a܋*mxy{ps %70T&.Z+_LH_uhs$_3SyJXJ>gCp]_tFwWNGƤW*ڟ3sb *HEhsؗϣԆa pmQT$=1뵭++a;2a7?SLXJ]º ڜ5d2(:BZ 0 Pʪ6a|ows?}<`ׄ^j=E⎋~|NaHHΔSlv[L$"Mz]O[b Fy)7<<F |& +o-z6 @W>0zfV&蕢DBRE%p̿j `6K*ՅwnJ@b3~mH|̍R#@,>,^+zJ!E'S՛UҷANP'&SGp0:Uv<ޣu9Er/CMgru'.ӎ߯f_ 2͵LUOݻdCŪiCGs`/涬~atRV̕,Guɮ? o*'s^e`YucC|7p592 Zn_΋vnCnDĒ[vي2q?NY |wyNֺ/Xd| tbɣ l Bl[j$ MаHGsF̬/!tVAǂP3QBKtx6z,,`;D%GX Í+_HRS7GrQs5)V9UK^Ď~zf'o[dߌa/ 1( <2`cg+R wWKnvlhc*z#w1l,V:v+H2[Vul]2l8 oX"faN O]+DeұSE[}te5 tS\O޸Y30-E+&VJ.d{f4wA)&Я~k_) q*ZhǃVIA*A>L/C+P߁Q7SRL/^KZ9*ZG؈Dp`.oBM]' !T7gX`K5Vqʛt_;v#_4h,_AkMCXK#Z Մc}־Y ‚&ɭj{j!L\^RigGt4=bE#>h> Bd}}8 T:e񌂃fUHS 7\P' /$%~D''!3TG[o_bF6IZ-Acq0+L+uٸSK a6̷t yx2xzQ`N*U7~]^p˰q{ZPȄkyQ 3RvQ0m?< 9T GB|T֚|:ׂճ׎ )+-id;/ZkZfq:}Yol1tj&])Ob|-t>B^D(b+\huk YHdᆒbKoEy`Wq/,DU?W'yFS 4T_L`P Ag_ E{u M&v´f?9pL.=np?VRDi,%Zu/YEu,-zik);("Nקi2*7c<::s|i/6#P(m266>?,X5p3#eV $n@XD'/I-S b hlDJ54b7FJjG\f"[;Y_c%7^>K("u8;ҟfl;RN!?43 W*I}VI|< z܃/]0P+{[Y@ tSϧ'kQA(Q#נ 8LF"O Ot'd- 6Ci+ ilUV_h!ǭ1*"Pg gn9{SHPHRtWR%"iqid,|X_ bfo(ː<nƫ:<| "c.i֩JVfF|;3nŹlNB/ʆoGDԱu嬔g<>9՛d8.F!lgV6hCwP s|HJRn(^WN%* <"jjLxEr#*~}AzEA*%:YEl \$Sdk;ejܟ[DDم%| yܯ|z|El0[i d!۞4;5'C4 fvZ8`vD;c:?E$W?h1.}I4.#."5nIz%dB[6,F%Dhj0 iEeʇ(ϐڈQկ?}$Bp\4$_ tpCϠɛ;Tz1 S: L ep{{|\N@ז(t!Q-F>Lj\T$1ۺFL7zA#VzÌ?N62ZbXM#3H &sZ˗w>nm]s%ͻB0p7yt A0ߗ@ [ka]R˿a\rHׂw1Dn pkEI.=.52=X~( !k\Adz%ڒ;MJmg jY3mg)(IE tVF+ ib 5rX>SorCe  b) Qݠv/z||NjDgAY+"H#mJ# ~#5-7lH5AC3\wjVJa÷~v;Κ|nY*2xÞ%nܪZQ^;'zV[x)gEZccَW:\3ݪǐP;֨PQ|Q JpJةS{9SBV%ppcL;! , mf<1}VQU?JcZ ƇIY7 mnfA;6Џ8~P삂TOyWn*TcX2 27$pWɞ}4);ҿ*`zX]5l n:ctMSU؅-A}HQ8L̠m۵M(,VV>A$V4jn^P:,Уȍ(P%3TC |Mj=OTSF?]6+pb EZ?l g6ƒ6YP}Y`}T=%@ܓ:+-eUP:1۞\ՂXV7bmGIqz^CFO*]*/*h^_3鈱x# ώ2qD H`KjBm砟qŜG[f61["d%B[H6{Q>bc`ftD3߃5#-xVQGc TD* #Zx9ym8>Ã_h" Vz!5"!EF*ĥ:˶[6d1w^_Aq9@U^7_&HNY fD!yog*WW^iQ27 Պw{ }r7nx_>u mtWme6O]=JY&ʹd[dzٞ2EUW?;\˧#.N1B.vu 4MKǰ4/Vw$~X6#[AOȏBۘכ%;J[juր!8HN.f< tsMJ`"4=>$͟6/rސb\ ud jWKOVbc}8,