selinux-policy-targeted-3.13.1-102.el7_3.15$>h^gp.i:%z>B (? d! . K| " \$ 1 > X + ( X - (%8,91L:(=t>tBtGtHIHXYZ[(\H]t^b Ed Ee Ef El Et Eu _v z$ w {x y  Cselinux-policy-targeted3.13.1102.el7_3.15SELinux targeted base policySELinux Reference policy targeted base module.X~c1bm.rdu2.centos.orgCentOSGPLv2+CentOS BuildSystem System Environment/Basehttp://oss.tresys.com/repos/refpolicy/linuxnoarch if [ $1 -ne 1 ] && [ -s /etc/selinux/config ]; then . /etc/selinux/config; FILE_CONTEXT=/etc/selinux/targeted/contexts/files/file_contexts; if [ "${SELINUXTYPE}" = targeted -a -f ${FILE_CONTEXT} ]; then [ -f ${FILE_CONTEXT}.pre ] || cp -f ${FILE_CONTEXT} ${FILE_CONTEXT}.pre; fi; touch /etc/selinux/targeted/.rebuild; if [ -e /etc/selinux/targeted/.policy.sha512 ]; then POLICY_FILE=`ls /etc/selinux/targeted/policy/policy.* | sort | head -1` sha512=`sha512sum $POLICY_FILE | cut -d ' ' -f 1`; checksha512=`cat /etc/selinux/targeted/.policy.sha512`; if [ "$sha512" == "$checksha512" ] ; then rm /etc/selinux/targeted/.rebuild; fi; fi; fi;if [ -e /etc/selinux/targeted/modules/active/base.pp ]; then DONT_REBUILD=1 /usr/libexec/selinux/selinux-policy-migrate-local-changes.sh targeted touch /etc/selinux/targeted/.rebuild systemctl daemon-reexec fi . /etc/selinux/config; #TODO: (cd /etc/selinux/targeted/modules/active/modules; rm -f vbetool.pp l2tpd.pp shutdown.pp amavis.pp clamav.pp gnomeclock.pp nsplugin.pp matahari.pp xfs.pp kudzu.pp kerneloops.pp execmem.pp openoffice.pp ada.pp tzdata.pp hal.pp hotplug.pp howl.pp java.pp mono.pp moilscanner.pp gamin.pp audio_entropy.pp audioentropy.pp iscsid.pp polkit_auth.pp polkit.pp rtkit_daemon.pp ModemManager.pp telepathysofiasip.pp ethereal.pp passanger.pp qemu.pp qpidd.pp pyzor.pp razor.pp pki-selinux.pp phpfpm.pp consoletype.pp ctdbd.pp fcoemon.pp isnsd.pp rgmanager.pp corosync.pp aisexec.pp pacemaker.pp pkcsslotd.pp smstools.pp ) if [ -e /etc/selinux/targeted/.rebuild ]; then rm /etc/selinux/targeted/.rebuild; /usr/sbin/semodule -B -n -s targeted; fi; [ "${SELINUXTYPE}" == "targeted" ] && selinuxenabled && load_policy; if [ $1 -eq 1 ]; then /sbin/restorecon -R /root /var/log /run /etc/passwd* /etc/group* /etc/*shadow* 2> /dev/null; else . /etc/selinux/config; FILE_CONTEXT=/etc/selinux/targeted/contexts/files/file_contexts; /usr/sbin/selinuxenabled; if [ $? = 0 -a "${SELINUXTYPE}" = targeted -a -f ${FILE_CONTEXT}.pre ]; then /sbin/fixfiles -C ${FILE_CONTEXT}.pre restore 2> /dev/null; rm -f ${FILE_CONTEXT}.pre; fi; if /sbin/restorecon -e /run/media -R /root /var/log /var/run /etc/passwd* /etc/group* /etc/*shadow* 2> /dev/null;then continue; fi; fi; exit 0 l.0)>p)")!) q)H)F# )v ) x'~)"r) A'))f,).#)8a)k,H).)()!) (r)3L)#v)E>) (+)@$?)$)0)))..)B$)'){$)0)S._)-))#"~)#)M") !)!&)!2)#f)$): d) q)/)!2)#)M)7!})>1)a$E)/)C!) ) )z2)K c) +) ,r) ') &)2 )5F) ()S.)x!) ')!)} V))&I) &)>) *1) %) '0)!)-))1O) @'I)%:)#)<)$)E )).0&)2 ) ) J&)$)9a)_4)*$) ')2 )9-) r&)~) ')S#a) &9)$A),@)!)#K))0)6f)/@)) #'j)c$l)A$u) &)/) z'i)/?) q+})38)p )"N)$g)2))$B)q)) ()!4)1)Fx)$))) *) s):) ,) (%9) )$))pK) r')u)l ))-)r$) h'v)0)r)[-)#f)C#1)@ ) ) *%) Y&)1)1)#e)K") %)O ))0)")Y!)/;):2r) )u)k+)") )v9) )).#)) )!.)q x)) %)P!)x~)))u)m) ))!$)2)>$g) ,)x$x) [)&:P) EH) ') ,p)n%=)3B)=q)0&)!) x@)) ' )) ')7)O H)+/) ') 8(k)O#) q)&") &s))+c) -%))#l) j))> X))1R>K))55) >$) (') ) h)"=)#)h#),)% )"oB)))0)L })4)#)##).)")F#$)})?) 9)#)/).)-)>"c) |')9!)"a)|t)C)0) 3))c,)%) )?)$k) s,) )) ) *)L^)/i)^#/)>)"<) S*%)%oIT)Q03) &)q) ()Z6))-))#)./)b$)!pA3) H*)") C'h) ')gC)!)-M)#):)#) +)) H)t)6!.) 8)i$_)$D)3I))t {) )))Q)X37)F#)\ )"$) 'm) %)"2)"s) )j) ()$)]1)")i7=)lV)/)$J)-)S)")%')-#)s#)!)")w\)$x)m7)!])"C) ) ))-) 1%)&#)G!L)P!) ')H#) ))"i)R+) ')!F)%")%)#)"FF))Dy)9%*)1))~:)<#6)b>~)#) '))"O)!)a"d)GNoa) =&[)+):))r$)X")!-)* =),) s&<) ') ()1/)+S)F9wg)0) )[) y%) ()8je ?lI"3qM!J59#kBa3>G h8_j0 \_fs xHA큤AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA큤A큤A큤AA큤A큤X >X -X =X >X =X =X -X >X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X 6X 6X 0X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X -X >X =X =X -X -X -XXXXXX >XX >X >X -X -X -X -XXXXX -XXXXXXXXXXXXXXXX -X`X >X >XXX -X >X >XZXZXX >X >X >X >e8438f11eafab26e67296805b44996f46abe12e9dee0cd53ca793435b16a16c9bab5ee4df3e95905a9287de62ed921465a107f2571992a977afc70ecd135ac390dece17fc9beeb88d02b2c4f4debf7d894933307fd348809e90402ea14bc5854ee5384ad487470a91938f9bb8b08e8bee95e44950349152c022ad35450bdc4fe1b0b305469730b10edd77545d9502f0aee28d6864a1f246e10edb1176d4c7b8ef46350f6f4e12a03cace2f9129667a875f84951857929195a6f52b74b9eaa8e5d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eb5d58751456a495f31852f81a2ac5d58dede6d346b7c8ea637eeb82612e8e043e2f4beaf42df13b172a59e357fad0fcd9450e19b1fb50d6fffa000b75bd507e3d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e195fef40607cb0c98cb835d83d18ca5889671f071e13e3f45e9dd5334f3be500d83ba76da8386e21dd40dcad56f059afc5cd07e2fdd1143adda46bdd93640161d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e4269f788a2a52d9af9ecc5219457bb07b93162a577305504b9d30c0515ceb20fc2e631a4b21a32869d462617ae2731032308bdff8568b55f39bc034cdf7fb601d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ec64722eb8fd6c66baf6758ab273b4cc30c9701a411168ce0a53e15e3958adec99368d3373ee609a77eee057a6f92cac7c3f1a39ff04a75e77debd860f34f7e75d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e90ec4ff2a25949240971c1cec92a7ca4db93b190518f73380b2a3a5da7beeaf4fff4b584eb739440dbaa139da191e75ecea0d7fa2fc377cc48b434f9560e5b01d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e8e8bf66fa216d7e10424e0b12542e30c6c5d2b8f4b80eed9475bca5d7c00df6c5b74bc461de344e7d4df17228352060702f20da062342d5822558fb2fa71a2ced53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e8d725307aa5fed3b8d6fd3afa1c851e89f77ccf42104a826b3cd42821dacc0414143370deb0d7d668fadc1488f867ec63b7cd46d4af682e23ba5bf64e826600dd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ebef749a58012b18dca1bf8ac8f2e753209635d346ecc9a9fb8dbe6f6ddacbe7e5842d1ce591ddee177ce52b2d20e0dedbd19e47c7a90b723d53e5d0b016d8454d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eea78809195da4edbf021b91a2b3b2cc0c7b46668e56cf74e67c717245608444dd9575492f3a0d2788a2637bca103f7141aa53bdac80775c2b9b2a776976d5e26d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ea078a81fc9d084595fb7096b94a14ac028969f19366eef3eb02b8492037e1db856087b40c4609e2e350472ec506ad064ea67d2ad7f3eb91efefa0a98bb741a7cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e3a1319358c34d6bfb6b6e143664103bd414edbcdff7357985cb8f38aca063d033dca61d92192428909660a7802a5647dd49714318199a1a9fce0b0536d9f25fad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ebbc87619966afee4f8e7aea3f8556564018da380020f0e10f318d241b6f5e06f214f50f118a801d2bec354954d059c75a839500a58a4076f6eb23a1166bc57e9d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e78ecddc1ec0240eaf55f67c3d2ea6d17d63a534a3028697d32fd6dd29349c32b7a478d0aa369c7ca81a53b684899578d4825bcff5c5d88c5c9eedb731b19b14bd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e814dadfb0b3c4ab5991ddfa0f01c49fb4ae2be6568690800e9f368dc8443ce2919c8e71a091001d7b6ac8f667aace1d738dabe8f56e0a75bc962214e3790fb0ad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ec484dda3e23c8013c01e5730e940248efa9b0a6ca22370bec7fd3d8c3cd3668e4fd9ce584cdb010d2ad53fb74b46a7f3a68863eca31fadaa0aab5d68399baa77d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eeff95ba93dbd6713201bd50f47939c0725cdef09a116637e8f4ce3ec388ff7c661bbe18c365a93fc82db21ab6e7f40cff99f5284235bfdff2b8e849ee7add686d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34efad9ef59fac94908d0870da8b222452f10826ac0942f2648d48a52a65b1304263052ab1b379ca2268e89146cc614d17fbc72d2ab762690d423d778c34cc10f5ad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e13b6220b31b65666cef78dd078a3da439093cd1bc21651ef7f71732db17b7729552acc8e3e02ce5ea942c6ff968aea1877f4e97407143d066966218552be7a07d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ea4218fd85f2e984df7768f5cd78fea20e3961bf8b358bda9b20206ad4218f2ecbd206cd9d6e1ba71a989a30d223dc8d2bf629c258754d4c559b5e4f265ac9796d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e43ff3da4826fe038b4b0fa35053339f09e055873399e1c612f5e848b34cf59d13d2b57b752f6b046350fa71a20110cf4187461feefe0be26e425e972862243b6d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ebef46ed82d82c8b423d3b8c1ac6a46d2ef7c957bd74bdede22d30cff04056f86f4ecf5edb8c07cbb9e0a9aa9f598ec143a4c514417e396ccb294df8ba7844ff5d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ef6cec2a85ac3eb4ef513a5d9390d7d9895c4351e0d2c578c940cd1ead34aa63787b3b76f779f21e27fae00608767d1f1a34f69c3cbc81691470e39c01dccfebed53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e0bbc8d6267657a49fae495fdf0737c012bd15bb56c628f5bc2dceec91ef780f49decf3c74b47ac2c6123f74646aa77e4a7b508a35b99ed019d6a9d4b2188cf3cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34edeae0c2430ec656e8996782695b09f87a3f72f1beb4fe901bdc82001c075f1061630be7c1f3b75973cb7c2e632047478ce02f2a228756a4ad01cc11e6b0a0408d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e22aa4c146fedae85cf5ce0f6f279630622b8e5ad1c330c6805f48836b624644fb42d428137dbd7a1b37b6d286254c0f333208d874a690a5901ccca226dc82a56d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e7d3db2b3749e2a64035391cfb48a66277786809227b4055ab083b0a58c8274aff3a4b78b89ab6a20a116eb2c41a9dbb5f7aab0059996798a89ce20c76073a0c9d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ee7af367fcb6cb5465ae74fd6550343da9dc14dc2632ad2a44579f1ce13308a6fe30e9ec7c53fe05be5d02ead1cd6d188414e8a528f0ea76ae6703f3f22ef351ed53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eddf316cec39e430b5bca3a0219a692ba1dadb1badd90a4395c3321204d728d4e860b81cb98eb564df84fa713a827db81e03625a4776f10de704431feb8abc713d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e6ee76095908828c7dc7d8d30484ed06618ca64732b3ac21a31c0152018d4f2bb5dec3b27e66ef6dd2ef5290c0639a56aebcc6b2ad23fe4325a2f4a3138a5c6d6d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e55717ed5218b4ad3a4a91073e84cacc98c442a44bf6cfd61bd2d916d303251fb26fbbdda9282a3ebd72e9bb194f28ef3b3a1e6401154f1f5cf447202f144097ed53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e9d4829bd6896ca4848b4064f46ded097eb2bf77fb43d016da47e1343668b00240818ebbb972d0e64d61fa4218f40430f1c1f3820c43591f745acbc270c722253d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e1f10262994f14852b10dbfe64295728344ed39408794a84256cd32d939fe735424d6a8ec9ad6b66e6e1e45d92e63c8803967ab6d0251e2f6e5ad75b1cc2126e9d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ea7d37e4a0df6c71ac51dec09dde2c9582d31f53e00401c5bc1c3a0b45b7eff98df14a307142e24b655c625d1b445ce6c9697329669617c8e95adb3b7bb3f37b1d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eedcf08da2f4259b9d37cf39719ad097466c3e118225e10efe8cd822976eb63c59acddeab74ceff37c9c0f86729eb30ac1c456641a3e534e2d866302b44eabc7bd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e1e54934fbe1eb24ccd95fd403fb7f792b6037d9cd1acffccef079fbea97883854f181f8c648b91a8ed0c2f046168d9b8d7bb0c9605a5c4902c4372be6fb09bdfd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e78d5792dda8c4bd1b2f508fbbb3b6e17a61efc7ed9651c4e90bb6dc4bb7642d1495e32d901e4af5d419f37323195f0b5b60b1d0f0dce97c815d1c6e79b6d3e51d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e14bb3c920eb0bb00aa47d0ad9bd5a403e6f02219435698ab991c5af2b0fa6ce1ab7df6b4fb1af770856e77637aefcaafe1cc728d0552aec7515daa7068296e76d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e8d6e82412c7aaabe7cc094f5dc04199852db95b82c86ba96dcef0fd4720337533c11a72585a6aea67db17ae363c73f20a9fd95c446b5ee741eb0cb4344d30e32d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e5d0c41dd4f62be323370f64412f24cc07a39cfa7350cbd0d0aab0f9238487360bc9bfda4242e9120be32e18e87c6df9be481d688e7768fc8bcc721eeee4011e3d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ef1f7549b11f5ef6eeb83fc6dd377424262caeed5aedb5891674c76f62f281d4637f43bc05280747da9d4155568cdb159d4afd9f8f0820483ffb325338ff06ed2d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e66dc814eb54a7cce7b8c802d11d258c4b65406197ddfb13789c6c1a17b022971721683fde08c4a48ced40c26d34a3d383a1e7a05c256739faf65d6b9a59d0e71d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34edc776e852f28dc48ddfb52709a618c9320a2f5c506e9c37c618354574dcc47586e8d59df91948164c2da04aad83de932ab7682d6bb0f0de1577f06287973e531d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ea2da080b10da1f35bbca33b53f44d40fe0f8d7987f40e67ac5c6e6fe68c533bfc006f6acf66871fe1aa2be16e663763caf177600d7db9a8fb786b526165a1a9fd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eb177a77ff576f80ba13de1f39893be2201fa8e1df4d2362ec0022f086d2b053888b6558aa7ff80d2e592f9392fb261b544ea043df0353b04aec360ec88313e5cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e6e37ecfa23354a567b35e99c4757647145f5d63fd74c87d9e2dcd85fa065ba37180f2697aa843d162520b28896e55b9335bd5bfccc7f6913ce3bc672756cbf6ed53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e536377a066c8e4ef18967e4b59e7f4e69937d7c5c861348b984009d3b9953c3d00f7e7c46731fcf9a5bd7d05a194aece43d055cad77a3d0b18294f88d3199a38d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e6281e169965784d85378eee5567f89a37d17c3e3851342c77ad4d66affcadf19cdcd066e94af74c60ae61af71def4aeb5bdb2ecb8a623ebd9e2fa2f059388e77d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e33d641896089c53ba5139ab9ef59d580a7b2a01a9c8b7bd1c2e93bac611b8306af5d8fe5d00b82ca50d6215cb6f49b6f85aa063d3e37c773bee7217a451378fad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e467db6072e0a851f0fadd3161b4016f1468b46a853e7559347068963d8494a7d30e4e5bdf9dff5a2720a91fe0f73007229d0ae2a92d531b6831f0a485758ab3fd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e64e2e958d5eb6c1e45d069782f45bfdb6b67523f1971348672fa05db1d3887400becb3e6c46aea480540ad73df3516693b43273c17d079851b7f77f653fdb19bd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e675f5ad7287d433eb7f68b12a082ba2ee8f7e2a4526c8d81670c8f79ab032eb56ede9899bf8b8e49200f10f225333441be5bbc4964c724c413675ab66ba89cffd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e12dcb56c294afa64d16849d6a630716ae4c53bae7e0a0b3dffd150f11a0c1d6a1004ef6a5649aef5f2170d7bab96b18a3bca56776a68669fec555a3f93670363d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ea3b3f202142291503e7f4595ead68d635b1a18b1e4f6dee4a8127d071de4b1a076a44f5de8b13ad512e64bdf6690bd75d01321747530543c5744de35b5278957d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e13d54402f0fef0f1c2ba0d24d22177cd121151729b0975005a022cf6837a0492bbfde55fdacb6889fd304ad5e4e778a09f1539ba77911d964811def07a3aa0dad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e68908d6726077db657b8192338afb0d5e714f1ee7ae54883137fe153859f37613f469507016b4a8e97c5d9e70c59d648ceeba6845c515467846f76a01a93173cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ee5ec6819363ebb7b471418d8b04141b6c9a8a7391788f7ba0f5323d30ad27e49100f3b5bdd870fae636b096e37a69e698e93c0e2ad1d7a32ea852907c545d470d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ece2499d97e39cb433003ab71dd3f613f36234388684b751fb3dd00ec57d4a6f067a8be3e9ef1be8081c8b33803c77897bedc5c5f04e975023753706742d519e6d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e6dd507be1cef84993b04a428f70b4456ac9ad0d2a315a7b9a3f1ff4ce16329524a8c52e73a321a0dccf5ac209b90bd8a17551c2f5904fc16d6df42b6fff17dc9d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ec348e9ce337c3580d73230fb8e1453d168811159e0bb8269e7983a2f97834408d1189aa67274232cc87085b12f6a2dd14690bdb1eed351eac312c14d17d7d344d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e9d98d7ac82b2a056a51c1887414151eb31e9fdcee269f4e78edb21b60fde35bce5f8a7a74748e0ba635aeb0603ec5f4d82bf6b41ee5e2666af5dd3d8e3bc8198d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e1592214c718e0b40d0b8a7ac39e0aceee4643919621bbbbfbcce45a617596df3d6546665e5841b454d7f1c7090614c6ea0e9b0c6dcb9c7eff8f91441b3d60258d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eadd9a0cd0032599fecf4542f2c7257b65322929807dce7e2f3f9f41a8991046022280f25e8d9834239cf345ebfdb12fb161f582d63e4ab44c82b8ad21373c01cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e6db38f64910c6ea638706ef35dc2188ce8771359553fa20a4168d44f1f7d618449a868a6e825f8306c6fa6409db59011353cc66be6c8e18895816f7e70f63c39d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eaa2a13ab52c08371a6f8ee2e48a767f50536d889ee2d66ef0c7d67f902f0eabc39b5e94e8b7566114c548979d2ab450d9cc22ccca7537c6b2e01aca4ecd6f624d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e636c92473a62784ceed879dbf92060a1595c36a33d6b556b2cefcc703f30b99adeff3709a65fdaf6e01cc8ffc2e6419b12a48918943aff6d00263c4d579fa53cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e071286ae15a6e3da1a87f618c9fb72cec75feb948a04905f377ff2175c42e69c830e2b5cd62443880d1be355cf3e72f52e07cf37df9ee8f6677bbdaf4341e1cdd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e03e65d4202f9f5e8860a8e014fab508c0b30156847f65f1dde03cbba9c4080d49212435eaa6d4ce1315e1f7a62cf9556385491fefb6dfbfbb611c5d42dd2967cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ea2973d382e60cd6de49a43c94dda7bd96a31ee50701528191e75aafd1db31a5a6c6e88ebc082e4b2ee37396e4be5b99721c4b5b942b4a0d8067b79320ebe1281d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34efe828e33e5d73dde4916f1464a7895ef6946a0f9aa504f492eaa4e4d6027fd56b009af85f5ca22adef973ad6c17b9c6d10ee42c477fe03d95d5d0fe3a9ab4fc9d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ef390ddf696c96b64b51cf6ed229bbab6d080690748d0c1b616d8b6e1d084515c897ad59345db054429200cd1a645b59a139b46f1ab2c4de5c0960a8d2f4335e2d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eeff68ec10b4c99877d5de184a9af3f4250d68104cd9000491bc740be1e379c32568632db03ffed14b328fb2407537fb79548812e69a1f5b7189613ab36073d69d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e1fdc36f31a4f975b88b6e692038ac6bec6fc48e9ce251df5528fe321aa3a642079b8ce201bb7a7572e9ff4f537b593fa359f07598d6baa3a21b58c3ea5dc558bd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e9ed573bcc4a0efc1775242ff756d4a3e7c80f797d5513c755764eb5caa0a87d82d5271ba21a51c15ff2898201ca132f4732109db1b5f213a4b1ca256c008aab4d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e42baead3ca049946e10607c7aa8e1ea840050e0527df4e94c73369e0f8b07fa427659a35a6f9abfcbfa1e25312f6fa0ab92a714838a76dec1cc915cf82eed82dd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eeada2c4e202c7c9743dc124ac086bb99531906aa9eba84d5a261ec9d6c9e363b6343feaf3908ab8bb162e935946698d9f86228f8e8e84a7fae6ee0d0ad591ab0d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e88791718ed775ecf5a71f5f63c1cf585092729db0f61622c68fd1d659af6f9a0892e6651ac4bd110dd687786d44ff48a1a48e0d2490c691bb04f474d737c9311d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ecc9083e15e8a08e2216921cbd41b7260bf706bfb28a491c4f113926cf0cc9a19765a62a400fafcab96837d57df00297767a16031db94a43f2291c81b25a46e2fd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e93e7b3b5e99cb9cd8832c7e7ffe79514f8cd903e440fa5a1ecfce18f9146ca6396bb2b99d204ce02179071f2adbcabfc40f0b1b5f3893a757fe1eb34888258b5d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e95f367c37cb0e6760f43eaa35ac80337b7b474e5d5bea6841cdb87e0e99bf0f09a84ac04eebe48d4424edba48b3987df3ff744053008c13d5aa13fd524009be6d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e071b0b921021aa2fada5120ff438127a4b4795bc41dfe859399916af8c31cea4b578f76a3f38b8e8d3a080901a820499cbd71ba63082973a7cc9bc86f6f29d56d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e862338fee28482de998516c68dbd282dde544b5461967f5aed95282acbd735744aca81aab10272cb1bb88cd05aa395188ac899b973c18cd43ac86d0ea4b6b8c9d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e41c725f62a96248e52553dcc369101e2a440bb9d315f84f25b602f0a9d2864cacd2d4cca99069178fd5a2d62085574848f31eda913760a35d45e044514c1b9ddd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e68755f1e1342b23d2f9ec45c513f68cec9325d10b93a2276644ff810064ddb1e15f27b6645dcd5a18a9b3c8b6c37de63c417d84938e4f0e6caef498c8c1401dbd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e87a0a8464ba3fab30e24d12ac48cb32856c283782c40f06722e178575ba346d7594d2d6244c797ebb22c8e9f8f0e2314536b24ba311c642fe0aa924dfb878914d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e3ce37aae1476a84f5f7a4c4906db3303109e20a4b9b2fde3bab0cf13d6709fb90026bb7467600c9a76321c55e554ffbb119119c182acb196f2edca1ae12c99b0d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e23e28283b4dcbb9d947f4bdc53210738317613ab18b69fe811011e9aa48f1aec674e748c1c9ecb24265dcc9e2f72d796c82c67fcb78dcc7652b5634ccfceadc2d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e34c61c5f63e82e3bfa80494b0262bcbf89d69a79446ec9605ff3953925083581eaf6c12a3b0a7e97e0702262da338dc8f1f2206b32de507ca1f16c6c2ca2c6bbd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eeb381b5a6440acad848bd4cd457930ca683c633eb7aab9de01bc02a0aabb0258d0b21fb4b332a3242af761efe93411f9b6104dba2c6071bd72dbe84575afee09d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e0e688cc5ce4bc986ee674eb99838c78693b69a663dc5d5793644d5dcedc4377d2cae567dde02d3bda759152ec984cf1b1d523a84ff6b04033380870e9314f410d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e926d5c3075433aa328ff9121a7721769b469d194b0cc468535e660f0883786f1fd66fe8347cad6a85fb1a780ad7de26f0717e7e5242e614ee493e2ca31bd6d47d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e9f0c45bc6f9f2c21c0f1960efbbf6438005c06abee38895567d39bebe58010eabd6a8d2233acfabcfb1828fd3e2e55bb16eb55ebe71d998f19a1e8f6e85d5a64d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ed4f9585f6096c37e3bcb98ae0e55b8f8a96674ae05f04fdb988ee1bc3b80ea0c465e232ad043e6ef49890588c5e40c8bd25ea2d7af2051f9b99f14f9cb8308fad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ec57278f370121802ebd24a191ca18c1f36f4fe0d36358fa94c91772382db292cecd8d3d82f3567064b3e883219fa25fccaa43cc763624ba97f40573310b2f910d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e30ac9e891458cac43cc9b7a4134a0e1a1ef6db437cff97655da65507815c3c4533a4d9a29c2fdfc19363bde9a3a508fe5440dc0ffbec6c914b8393f56cc57f1dd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e0a788bde11d3cf8a88c9de3ff14295543c937bf6954b3bdb0d631b22d5f03a0bd097d53db2721b722899ad648069a3c583ba2aba4eacd69106164b900dd3141fd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34edabcd3e70decc72301ada63a77df94f24824b4608a65cf6860674e22a1872a0d7e6fc0f49df2bb411b3373744bc64e0ef3aa3c90120b25a2f8bcb151f637b2c3d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e4f4edd84a6686f009392c4b299259b4e426564772edd4a345213df82d1386e766ebfc597e242c2d080ddb382fcc0c76582d66c642742992ca7ac4a55679055ead53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ede98db67cac8fb643a22d141e6b262fd515bc7b0af3c32bbb8c42dd78ebeb82cb2e01a33ca597482d3d8c586e46809cf4f01ba7a6f7b2ae63d9b71cfa3ba8e2ed53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ec52667bb86a97acc8c6e50250a6aa4f7fcf5dea4c8620a3016d28c98ca3c24828ce75f1ab6e018e08ee1b1b43c17678781f2d08b94ef1125c96e5d956c0b52b4d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eff31ad5e0951eeaebbde1e6afd853954bac4f27a07750c43be5379a2f1eec35135451a0d5c8e2cc3a748e102842f6aeb2ac5b49e93a58cc7b70589d646f1ae6dd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e739629540a7af1036f891a5688d9ed2e9328f4d48d69fe5cf7057111b12c7531825dc5a6468e1a89535ab4cd0113ac20f5c291e1eca6e58faabfe4822db3e5b8d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e26dbcbf89bfa1d00d70aed8a8c30d2ab839a77ed1e578237f4477a61fceff721d6dc79e316a783f20155584ca0ea34a5a3de5de8b4e240cc7569340b874b186cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e7f2e41c2104f89029a093f557c0aa4667a746e4d4d6ee45a599f62da439642835770d5bda7e977d5d19793518dcf174a9154450d88eceaa83955237caa168b2dd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eb730d6be083335a9268ad423d726e9d901d5d4770e9ac17e8d3155b4f577cc939515659697c505acd5bba4b7a78bfe3d6d006a032db059914a600562e9936acad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ec4eb8c324095feae58b4e84cec1cb3382a7b25508c4010406f78c2405b7692103155f069ae309c2d56f836cfb9c00ffe18387f2ae2f7d02117c07b4ac4fff5cfd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e932ed615fd9414d316ac2fcf40a77d9d8ff7ef360ca627a3f0bc60880e1f7934e1a751c08555d967a7a750c0d807ff185064cc61affe79b3953ecd31e7d7a0ead53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e6e6d685576f50032ef8c25e27971710c235794af26982f9e8403b1cb4ec67804f53f0c8a759721dc191b6048ac07b371864beed8f15052ab093217b6c28bce16d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e695c70b604fe47f7b2e51b9a27163bffbf0c98449ab2cb554ea4270418345b160248e37ba7e09a7e01179a9214d02f52bd5b2222fea1fb78086b41ff4f31c75cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e770345eb0865f4b52131c0e6bb86b825288281a69974f1ad7bad10de9c112f616571f2a3b1e2c2e8dbaa048cc18b9759790ed5a168d48ebabcf969cee8cf3789d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ef9db627bb25e3742adea13f4a05302a6d62c287e015199213264373db5e2b969e3f4f64afce9c08f61c9ce5fff28ca2a6259b292288930d09ba442e10f073ac4d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e3c273ee12e173ef9a7ad2263ddf809ac821be2b9637004728722b993d98a34b2fee2d6fc2a09b92679e4e7bf005a74dd0873385695b3585690ff1970c9a9be9cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e85297b46d517864c64bd39ca3344eab5ed15333129eba1c97f6b78af51f66184756d323968ccc863da557ef368000ea643d07faa41bc4c40bfd38eea076f17a1d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34edea706ae86e66ba4058c6c1a5fcc220aafa73d2a869084c7d594a7b0b34c7309f1ee8a9c2732647260820356a815331f001d2974a700af37d13f219035103436d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e742b86b10c9b3aaaeac7540f693839e99d9fe79c1eec6525b9dc3d11417a66c6877203a8bcc3f67e67484b198229841de53a8152d654cf619c830ca025751321d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e77844c4ba0a60a89e26c5bb9ffe4d4bbe68ba1368ad6616813ea17f130c60353f700bb69e9da1650f605e663a83631155cb41130422941d1d2a4bb7b4eef59cbd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34efebcdeecc0f11c7d6ee9695d9fa408743eb71123e3a0321a783f3b5d5a7d85da589d0c8bff7ba547934f3748421e9e61aa806a25c685b45a3a73bf3abda17bd7d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eea9818f1abd96d4f4701b1e2d3be0ff0955050692d7a999ceb39d6d12453b036bfcb8b1a225f986e70c7a55f4feb34f5c22a67099d775820af08af19f1fcab12d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e2699c0984ee78831391016ba0e1c4b0605916dde3b9f4697c5bd8955b08268fce07fb54a0d3b42105c674a4e0edba3df887c6cc04e1b4561b66457af3ff6ddf2d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ebac54024cbd89b0bde54f849e0d9379563c0bc6fbbd301b17017fbc4606fae85a2af5e7ad92ba373086860d06e4da273cbb0b4b9dacb8e8fe6f3940ac6cb6a0dd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e215a67d9751a6b15521e4284afc869efa380ac971ff94586f046a63c76adbfb0a75285c7be7579e16fa23ace063a0d0b2f2e128593f0852447c7d44a251e48bad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e089fb6a3352c6b30dac672e2c6bb98291ae6f777185ae4a093226a89aba0e08f1b99882198db94d7444a26d3570ff4c44f582204bd0c9df1fee1b466e78158e8d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e80835a5dda38d2a7aa2bee0075c3c09dc8391d5c8fa206ee9ea995bcf4704d59b72cf3140ee0bacbba50ed3d0b1a7981a86028c25f0ece6196cb058a40df241cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ee016105a3c322f317c3272e0166c45d7f0d84be1fdc8d3508c3890b31f0eeb5b98bf8a88c87afc0440d43a34113ab98ba94cb455c01034bd39f7603d11ef6e21d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e8c2399f4c366e1614be9c556ad1d938658bfb5580a0017f48addc5055ee2dbb6aeb6ecca8932deab4d5d09c4982374858e54f18e4b408dc3fb84719bc308d391d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e7e553265bcb6988a0bfd91e8d982f17a2a3d2dc1b95d4e7dbedac4994c94e19b624f1e922c7c4f09d09a42a56b4622376ddd9e3ddb74bc36097459fbeab86ac4d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e6d054e2a442e717da5ab0bc9e73e1b1ac0b6c56cf0918fa78a2d486d6a1d7aecc376ebfe445defac449b4a65f4f8d063a1a629aa5e98e78ae9f9b9e6e853b386d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e7f4303fe034eb9e299ee27074c6a15c1074b309103468fe17fa89c28a4f8a536a049e7082dcc2facecc1c6aa15f1e6589a3c21834635b54c0726304a89969282d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e9636ce62475abbef1fe18c0bd5e67dd99724cb4826e63dfc29cfd58a74f93f6b5b4c8212521a69f7238160a58aead27979d29333d42e3284063cbbbc865536f8d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e1d6614363c90f86a92c9f7720e9dd4f7a4de5fc24434443511ca2ba0ce3f4652f545181083f0922f15f8b50086e61bd1c1ddfe1b690b42ce7bf49a19166fdc1ed53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ea48b7828b505a5bd37a9f706b296ac75c1efbc1cbadbbff3568f1d1d4725e2452cb3abbed55c9c137814127af987151da2b5a43e3e5af4a3ba756d3da098744fd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ec3f6471ff796aba09c346fff7154f90c59f76111fc7a3441b034bd344fb5c58395996711a6ead04bd4508a095ff2424a470c9d0a2b41a628e312300368569a4ed53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ef1c77fc4097dcd5bec5f3a8dc845b56429680fd87b23bd086a85ca4ae741446d10470097dae28f989137a726d6b20571777052f9fd704269d6c54d02d2a66f1cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e773725a4450a837c65ceb55bbadacc819b5a216e32e7658753789dcc47313eb64cd7eb6e41b1a748701e6502d4aa62220bcb4d5a653fee344e52c91708b10535d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ebff72dc28f9de879e4d71a94c8e5f32cbf3b2e64499bf52dd6c073b5b0ec6c20606d6030003b92b0f29955756ba34d7fad91c5db9326548266e704433c0577c3d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eb0277ab471790b1584acbb16057e90699f94cb0c49de06ff8b20afa00d33ac9237290c5e3bf20d3ee0dc819fca2e22b5571f4d8158c90836f8920774be973b92d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e37d7f55d535dfe7db28a25538345e18a2daa4ddab7e8915354371940ca585e0e32e168fb7c6f75ff49a52b94c8428bf9dd87275a92dc43fda32477e8efe00eb1d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e4e454e24e33f5e053766ebd4a5003ac495e5f12db7624e526b3eaac6008de2abb6057572278272e49c42523f4aca992445008d0d1704a8aaebccb25d427f977bd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e38193e62c0f4ba6dd78f6e728bfed0c21ff76136d6fefb7670444a790f81d508769299365b1beb2a2070e8907802c4fbd1f2139bf9b5acc8bf3fe2e4f40eed95d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e553ef4ccae053225140ed6ccbe894ca76ded084a4faef3afa8080c79b91022373d238058277cf9937ed1c4754417513969d40e87489970ffeaefe9bc3c197f18d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e1d455028a8fea0270682fedf9695dce6f3f46c56127f14e50e79b73e4a0d8491b7562e11b2d217e5829a1502a1c0343f3a94526574e67420084f4624bc34e962d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ed085d83394bb1d2342a12b8d6c2d17bbb6f281028018886f2ff51b3967acef39854e732943e10d19c5a9f7495698a2e455d57320cccf5f40bb4700ef1a2928a2d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ef07a3a38dfb7db2ef0c12d79cdef5099b3164a5a94e3e4ff5877dd86b03efbb8437c794ad86b4a31411bff0e0966c2e191901f527767a003233225449b07fc97d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e0c7741d5ba5728323b53e7826997496bb945581d7e0689f532b15dc002f4c41c12595ed3591997ec5608761c4553d879ba4641e347ccaa505b86ec14e20a809cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34edf778a052f09d7309fa12c34f58affcb1cc845b1078302266382a2bdc8486bdb38ff5ce6cabc2ed1121d30436ca9c88fc68ae9eb0121a46905dba27c12c3764cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e4a1affb4845212381a4d481332c34e748ba704687896e140ec18aed3f4bde3cdfd86cc6c44b8288de8838bafccb177d2628712392cbf739974b62e06b117402fd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e450e096dd179b7cc23211546f46131c966636d8bfadf12a36c12a8b16bd19465920ffcd9539e96095b97b11f2f8d922b4ccb4b0bfb1056af3b2299cb38322246d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eac2b524166a389fbfaf7d29f53365556991d251cf0526f786a98b388203f18fbcb8c259c4752a9afc0ad4d158a8595d06802d75f6f5df29c56add46b220cd36cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ebf0647e395e46090f8ca952f4711ec5958fa04ce2d1b30f53ec2f614e19764d19ffd8f8df3dcc438d5b6b712d61a816e0f2a740f45cb8efc81bc35fa316a3a61d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e888ac2cfe413b7a39ed28944efd1782adaf683d290a4004786150226cf8485298cd3bbe009cea994c056d265d411911ea78bc0f767372f5f54006364a23737f3d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ef161dfbf684fc00097d89c11d931c84666f9621d4404f1a1a488c3222b4248f6f39c88abb4073bad5da84d7f3cbaa65f8e5ccaa975513f984f338ba71164ca5ed53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34efc5ef1bfae52a98d07ac0dfba37d2139727f4bba0aa85e7506af7fe325033e946d9e423ded3d1bc4a13790a00f25e4843fb2be39ccfee2b3e1113b471fe27b51d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e275d22dd44c5ffa5627c3124b728ae05c15b548ea7df74238f958b10134391077c4802fcba1cb9c1bba24151a88b5ac994d7b0747f1cfe094073bdeec30e568bd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ee0cb19f9ff68ea644012350079e655a1b50a074a65d345394196d3db4b6903de25a626aa1b3afec6d5aa34e6f2a97b64f881f45f26e0f1f3489bd8c851c39734d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eef6c2973c372d52e7742be5a50974aab5d5dbb83358c6ec0d1fab4b58da7a95f4e94f8f2ff5e896880b97de937f4d4be305a807d63231abdf0db99a9ee98b858d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e466781a95719fb466dea88d64bc7d814afe0c5d794e85ac2583b44d108357dfd1bde01d31c1bc362b929bbbd9166265c4bb1af27d785e3115e14f6ac8a8cfc11d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eabedeccc3cbc39988b2809bd3062edf7779929ec907977111c079b133c66e4b3a3b06d3e7146f20671575a3a04124ae6be65450f69c19f6c8e788afacd5cc6b4d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e87b1aa5b3a35c247bb9df81e88da9b34f5f4e59acf472134cf188ef913a02c2ee9bf918a1a796a58468962a7d370b8f128ccb42ca7b067490c6a7d263336e308d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e868348453badb3e24b4c18e71e581876f7deb9b8226fdea99eaf97d4bdc32c473372245a0889016cb9df8f6b972508637bd872ee27f36aa162d78161fc030718d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e20e2b49aa10931962c4f4d65fc48265f58625068cbb6dee4e817eba229d13a53f0dd0956119d841deebb2212afda41835410d24727bcd0363def3a42f154667ad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e7805d75c9521333c25132a5e312029c82fb7f34a1212ec7bb2b86f43c48907310f7e5747a3fa444d7cf6b6af0c2e495f75070664291bbaf7a1251983be65d1b4d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e5be43da3b2b8e9db0fb1394969a6acee3b9fc306ef6f886f81f7d8a9caa519ed27f0d7406464cf69113b3c4b11733ad2966a79daceeb85716e2142d45ec1b800d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e97ba0346046170fd0d8db5a725fdf6ec2848a1b2aed0cfc64b79650963ebab09cd4bceacf6e0a7104f7b22f8e35feabe1d960066e6097f06b760cf736b0ae197d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e381ab93aaa49ac00a6a8d7f7018a26dc99ff2510b527ee56c96c1b49dab245d7c36c8fda8d8c968054d32d183bcbb515b66489c06c5e9c653aea69c6cd0e13bad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e918f29a71ac5b4b9c932fea4a3859374170e9a9a1b5433efc3174ac1261280c46a8f82d7c23a961da695a704aaacb8d5ca8e05e2702fe664fb8e5024415d0700d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e05ffb2e5b26251545a1a2841f9894f738219c5419f546cc9eb8a66bad07532d87a389029ad8caf15fe549d47eb3f48c4b724f4ff3acaaa80b5e2cd18154a96ddd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e11733007d9bad4cc6ade36d400d4664eb547eb82cba9113526f2fe6cab8bcb8b5fadf23714c1d45a61a506de1b3971b8f444a0780efde874449c3b14a001a32fd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e3268746d35f6b4f3d3444bbae21d2a711b74086727ab3156afac5ac11411e9099e4a1c532c7133cf762130724560522e94959169564e24177caaf831df9cd153d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eb9c604bc6b2c6de364630f489390ee37ff7c2a050d258144e8780e38bb65bd1bdee47005d01f1b8fbeaae1d7fd0a589a22692913883ff6714f1abeb00ecfb960d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e37c104a29ad03e697f09e8b6437c985eb5213f176560b07139c392470cee64ae6f17294e06da8799e60230631e22fa744c46638b7496b4c06784876d610addb8d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e340a36aa053baa3f143e900cc9402ba658495b9311e0e6e7daa05c5be8223a37ea12ab0935f85ca514e6fd68b7cc8cb6d782a225dda99249a48287923e023a24d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e6695330575db56bb8e74e517ddfce10df90a005f616090f58a23d868166e0d5a42dde5d243a6e726d118b0c19bebfe0ff9c33ad0fa18416d23128f4034b915bad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e32b03b620d16ae18c586f6a19653785c9300c5e50e6f91a67dd128e033c829123ecaeec22232d21e92a50ee101702e0521617e48a959595ea78ba633968ef928d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e8b96cf80b378cacd8e4b9845b227d1364e5d172884aa78374876659e1bafe2b2494fbbc1e183f96ec16f397291ad21f09d79c3e0ff8ce8b86ff1ab5a7eb543abd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eed3cbacd4867c6b97cc6aa6b94cb9e21964da01e813c9cc61a82f5d3e1340819036d39a5b38af718f277f9895f5039a74a8ef75a3ee7c226766c45c99be10ef9d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e28f383c5ae8fc7eced1620a51125123e47ca505d2d5602af75b228b1b518323acfa7b6380b79d9db36a3435ff3ed7bffbb54a0466ff585081550e5601cc75411d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e91994d7b2cf0ab6590c9a12ed69d55b2406cfda4d77dbba89c8892e3d06803c028c0320f715d341027deeddac7da6006fa1e737643b336468e60ce7bd930b464d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eeb36503bc33ba374507c2177ff8bd86102cc02ec3b773453a528fec581e4d40ef91d87afd0d9f5f707493e914f52bffd8f9549d3f074ba2ae1edb8fcc0989e9ad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e60c9bf34ce30162d9e4a209ffb8e9cae60391a6ed65bf241ee4d583113c1d2a31bfe9d550bbd581b7c6588b3fa05e8e8e1460b9307f9d76d4728f602c4929c10d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eb0f192e33ce3f9763cac03252b03aed65e1473929562a5b79c218ac5616f406be65b7f8b82b51d9581d432db1d6eb179e08c8d20d22f865b40ec57d187318d31d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ede6dfe5f788bf6b40a9f3fb87096bc32513ca52ae523e54f6b33d01a86cbe452462b571b03061e5a765938e4bc59ff044544cd2142c1c74ab4cf5976ab7bb219d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e1f476958a8dd38e8d9366147eb1bb2c6f1c216d136e4c37ca9989baa6d69798e80a1b59b87b7776e0d0dc76d55a696c2ead5528094edab80f2522729f10de6f3d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e4c655d140104aacc4f9b14d26e01cf14fc1538e2b5ef7b6499c13473f146be5572bc89ceab6a89f3aae438534fdc161c66aa4fa6bf362ad33806ac2a93e4ad21d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e70aee74ae8c9ee6722bb0f3b563eb1378e51f95105a54a0494e612fa47681ddd105df8ab83c523026a818d6e5b7232b5193163bd3636a51bc187e9a42dc68869d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e2c30db595d08d11946056ac9df82c99ab649a52368f9be8ed48ee4f75a721f543cf41b7af7da10e739a854cb21260f721473ed7ecea629a63ff6be4898415daed53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ed79c3122ab5adced0aba128ff7cb5ec72145ace4a1abb9f7198bff8a60d3175670950631109d33e1b1917f2982a1da549856bee54fa91740fb2aba854eec6f9ed53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e1bec64defb304c7fc866e57c032ce02ef06fc190f41803febaf8101488747b7611c020a5584c8aabcbf423643ac3faf1ab4924a7ae1ff1472d371a29250759f8d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eb79d1ca7d51c3d1ef2cdedf85a91cbe70b5d17e4b3723a5bfecff3f6ef5a1a77995d1faff143222971107d670c5c30a631341fbe9e8092226df06ea6af01d15ed53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e9671f1020109e643f246e5a0dacedad7ab7868ddf48a33a504888bdbc65135799948d3a224877fd49d83ae6960f219d775b31e0aa4d3b60d6b00a917b839ccedd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e744d491d627f9a3f4fba20c19a8eadb0881c3c06d07018d6a91bcd90b84759255936431cf0ddb2857170139214ff7b0047a0a7df79a3222cc1625b38d37faac7d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e50b8c49455815612ca6cd3f8872f2615c3ad3b9663a3d13ce8bf6547ccd88133061c3c6970dfcd82b274794b9696df7dce7f2f71c3c0ea8ba6e4773c7e614b69d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e84d102ee3ee1a73a44a86527bc5ad306713f92e56834c6c0d98f7e66602f6290513e34572d9c61a449d4bbcbf79d5a7eda55ea7ad270f37fc100c73283410d28d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e4e0c1da87c3c65b18ff676fb4b508b790ba2ac23e0ef6c816281f16b471b0df6fbb290396aa7720524614965c94efab61ba7cf4f546144d580e791139445cb04d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e79ab1c35b73716181ba0f60542786f9ffc4af6d8b54c24f409e0b6d4a10a752de069263c17c8b647c190e2354c84a496d8cb7263af0a5717f459064d631a6e7bd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e3c44fdeb281c728322bd526def7b040af587eaa84cd2581d02a585bf66991aef566649e4c68a6b0be984ed8203effba662615f278bc8d13ed3f4ec43712db9acd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e95c2f08b697d78f4ac09a8e1c3d11f1350902ddc8ce73724eb3e2dd7e22b10c66f3927ddb4d0e8d191db6b3f6d7145c278d884d200cbd739eb12679b11462985d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e67335b13a5f37843b0cd9c1cb6b57fac28b44f4f52591a9b14c8a907ea6f30cb539dc5e2fc4511bcb5b738d6c946ee9a80e56650ee5c5637c6c92f2fe92dc0cad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e33f2d2f364fb1c6657101851abd8fcf882ca412403c50dcc3f7718a1df532d198fad503b080cdc745a2d3ba95cf626cddf6c0fb88fe789f1815aaa4593b9c8a7d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ec162653d0fa5985e84cf5fc8257ea215df3c3c774716b6ac8d951b25373c56d865a67926b25dafb12d24993c2433a6980f6a552a2012835eaa56b7a762cddff2d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e12830f68ab590f0f6bcc336bcb23f5873017418fe5c47bbfa6c3bfe72ef7c9048bffa270f779a73c930d94bce90d46d0671b5cadaddcc5409f1e6e319a5cc2e2d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e38f6342e61f5fc6076a5f9a47f1f53a903963e35de00342086f89065c20fbecd0fe664e1abf6ed1232bfd1bb5c1087883a577535da4e072f03801e21e7aea3e5d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e8aa04fd086c9a767bf522aa5b02f629eecf9900c94f9658b4fd3e1c64f0af287a50bd7acfc323d64e86db082d1443cad642357539d33d5b06bbfed45c49a58abd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e4cdca8d8694746a17dabd0ad46ca0e53ace5f45809c781d6971278413b9c21da802c086bcfa9e22d03a726d12df9cf45dd51891870f58894ef50302b28ca0bc3d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34efdec00dc5db99e725f644cdcc3860059811fafac6a3efee4af138aba23f1f87975efac073e9682c4ecd047bf891222748f06852317f0498fe43e7fbf182e3301d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ebb3e53343ec679f93cc115f93a90e9660fc096fe832a7cad50e316c6dbd20c66d1c3aabdc89fb747ef4a410f4d01d8e6f2922106ce4e9ffeec531c637992ed81d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e8bcbb4f390545bf4f5c1956d61707dd45a2cad782b86c49b6b53f44d180faf8591a742ec2382636064c8f519b0e0bcf8ed06cf0d27d701dda47b0b888136665ad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e4dcfd6b35e431010d5f80b33377c708c9a14e3b9c8554ff0e53a3cad9997d893474dcf0419ce62f437a3b8518d1c204217bc5de82345bdc10e33c277a08b2d7dd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34efac8ac892e97949a53447bab4cbf6f0cb20261041909154b17534aba955aaedc94c8a26786b256993275b85dcef9f6a4d01b77b43e9a51f0a12ed533cf3854e2d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34efa40f3338a7f0bc78f77320a5dacaf927a1d7af8fee090342c623e5e9b4aaca34ff85d9eeb61c8cf1b9d764ad7219149f8a161c441b4022bdd260c64ae670d76d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ebe36f5513b29d8fd215a40f272dda05e90a1ddecbde53caee501035e0fd0dfeca2d111f5008349e5da4d4219940fb02e6e96c07976b3990384a1931d09f181a5d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e6794c3b37f56db5f3f276c632e10e149ed67bbcb8afd9e4642aaa7eff917589e29a0b95286d9390dfec6f79c95b570a15889b3d17749b0b0607cb4ed5b7021c3d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eda6e4ead653066d32c1d6223c0197f71abbd1f103dbd957d8a37b7d1eb654c5fd377bf4561e11cc685f209b299e42b6b5e41a9e0c34c1adf5f0e174a489cd1c5d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e6c2652a629cb6b22cd9d5e69c34324b794e8c03608b706e1c5a2fd723da34d9d73428e32ab4711efa83aee99b0c718025c70d7d54089b47f5a06994cfa2b77c7d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e27d4d2c318b418b861cc50ea6d3e5cb2512c0c80e63ea75c163cf5bb08391716f32b1760ef1d20a11aa947ceccb1a6606045d43009b4fc26a7b5f130ff7ee87ad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e40ad3c505971ad6e481d047c1abfb074b9b2d133cdace7d66884f6cef0e8e1ac63e811639e6beea5f6153eb3343bf0db1b37f683b234fbed9c0ba4a52d3e8ad8d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ea8bd367dce12f9b4bddadbb4fe2433b963c9cf5ad7f706a696429af50f60b435551ff2a440d15ecbd578b05a2077423b38df8e01ca4424f8376eb57a962ea3a8d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e40e0a68197c4ca5d55aaafec17e58b203fdf111ea787ae5380b97e87fcf9d89702abaaeb0deb97fd5e45d57bda2de51f01f507fe21fec2d07cfc514762a4c532d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e8265763237f83134b63669eb984b739676b845adb1ab0d4b837f85ef93e5cf96c40f216c66d038f28733fb941c550b73da3772b1cce7edb946af01455fa7c81fd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e0d2466e72a9233cd3f7a5354136020ca637a0ec52e5b5de44f0e99370bffd0d5fc4f458ba50404a049cf77c7499b8cbf79270b02987325441ad2538a548b27f3d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e919a378f37a540e82b346508ecb95f65a53e3cd740444eb2b03fe58074c6438c9427896f69b73f0dc838165c75e502b4e65df22babd26937517e98f701b92892d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eb29ff5686c3b3278cce3f2880387b30cca3e42cde7d165223bba8c1640b476d164e2caca3eda63253753d138c79a84771ec064a54a8299c22c3d0cebade0e925d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ed39cbd166da699f1df8d8f9c6b2ee192ad6fc48b00a5677cd45cd41c630dbc5a2d2f8ee6805856b08e20130c7fa1a497e308121d766ccfcbfcd041cfa76a1fbdd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ee6b75825c9c5c02c6f98b2fd02e7f6e5c185d9e22bed25b2660cd2a990444fe2991fbb4abbc453bd72cbdc13d6735d40db697323077f03f26fbd5f618c87b8ccd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ee4b5fd85595cf13a0f8e1bdc373f0f9b95aba3c63f071552638273df07d155c7d8fa5f2233b78e51db37fb38ec5768f36c47c4de190f386460d36ad169edefffd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34efbcdfa39fa3a35c56d37b399fb62ee49659ecff4735d1f2972c9fb37d1614999d1ff70e143740a53e7f2e6c54942a5f95b2b53f7d507420bdae195b9cdb8d0b2d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ebe6a9185b0e89f82428de7f51aa4e889b9c9c7898e03d91ee40357e2e2aa2cf6f4186f69a0b0b068e4b5918bfe98dda5be04dafbb763eb056600a2ee7b16d84dd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eeb899c5069f73332efdc39b3ceebba056d20a1c08c521efb443b5853aa2ffbe98011b3a1e95b2b3ef695196dc2e751fe66a6560d14ff1c3966e32e360c5c8ebfd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ede93badd20ffb667feb4e686fb52676a08a6b338aa9fc7f97e9263b467fcee8041644009a0bb87d23357be382973ab244badc3f89f811e8663f3b8b3d42da341d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ef42ddc21862b5e93d3208261d9334ba31e95a3b11a95543efd7e74be40233c4fd1effc691d75754ca94ca2388e93c76b364d6b16c383c445e36b4c86aded4e06d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e191048566325c85d4278ef5b767dac2cb9bc91b003c03c5240a9a3d78c9a77520702695fa452bcb371bff5726180fe69635b61042601d5d6fb53f62b278a81d3d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ea81aee94b5f1b335121f2f05b4c5023b6c849488af856a1270bc927976fbe062cf5e84360fc2b4564b5ccf986e35a955f987fe38bf46a856c7c8a6ea34fb6512d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e5ab5689777bc1f82670d704ed83cf4079c1eefba071914f5b3e313f9dee5a84e36a546728687ce020e494b52787f5a17c611a73a40638203263c0e6607e8a404d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eae8d9bc1265e3461cff2e84eab2b154f5207926de5e13435172c9c8346c0f65f9ce5c08ed13a8b9d1c73604bf7ef1305733498e6939f965d70b71cf29a4feb66d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e5546d860ee91c5aa41d6d8fe5e8dcdd25f308d4bdefb8f7389e12cf725c0b74a8bad2b0ec2c18525aa87708968cd48e652534896d2b6710d79381df0afef7d3bd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ea4a507dc166a0a90ee2d00b24b363d32a4c168f4ee2ad9460ea2a522f2874b4c4b4bcdb95746bb231313d88b8bd54e2be5bb0eb0432f29e7e8e5daf6e6f4b5d1d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e564b2e163f333cc0835fcab6c1291d10808014fd56e7585791e099548a6c18021eb0f53e27b30ddb05419e0854e80675f6e613b5e733a10deaa5ed6c2051e250d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e1de5efc97dbfeb109cfec61d41896f5c06d7bb9694e1bcf8253e8aed09246750f2f129d545225b5b36f3ca210bee74566e1cb725ea8e4150530adb7042f988f8d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e9664f20a8596a7403732c48012c2f8d889358aaac03196b5c77d74a6fc54b1b2283bb5b0a1bc2a0ea4b5d9d633b1c708b304371a1a057e2f6b1a41703c7b0ba1d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e22a5f4744bf8ae6799643726979f3f8ec9571f8c8cf9f14b3d9509927fa8ff0d5ba96512d77de87a9d859b9916009321cbfef3069919594c21e3c5761219f4f6d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e0d021e0425fadf2857a00f74e05c5b7e3aab25ee92a720055245b921d845b5ce9ea11bcd58a651dbc57095b18647e42638998d0795d36db568f287fd6d08cf35d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ee8eac6bfff32de5dfda60de6881fc8f870bdf4e9d2b44cb069b9de17cd2e82ad972b2351cd45b5044530379e702b1d3e3a5795450e6aa18422971bb7beb11bc9d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e1cbf93846e0b30ac26c9238058f89a5813be3022a73b30b63ea2030f317074ee7f1ded358910fa6755c12967fd63d573fce9d1e6271aa753040b6399e625be55d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ec74d1706d39ba89de44b87d4699622418151ca45c7042fe03813b98fc1fd2fd07dc38aebf7553391aef9a9adecf1a0256675a2c7a5a8dcd7a5e8ad08e5cdf36bd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ef7837d16bab8eac3fdcc5b1384cd09124c13309746863e0e1a7691c527837c899a2e646ef933bedfa63503f7c2484674daf9d41f7e6822983b919e5e952f83cfd7b90057247a6932c03aaf8aa8dbb52be0f49de305504bf3d0674dad65c679d53d08d6ab847f3093db2fe827dc71380efd67f02af0984e21a66d408d32cebdffd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e64ff453b827d6fa46ff2822f8862adeda945bf806e1cb214dd2a60fc80387e21084605b791aab3c8d8e572b9434f410170cde259bade4281e88d0b109252ca95d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e30d96984b699f709b762ec01ced94ee76332d6126e359da41682dd88a5e96dc6dfd960cd7cc12d162f886537ab36d7b5c091064d1da3a0e2d78386ebceedf2e3d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ee7d7f5c66bd0480c26b1eba3f4dbde36e40f21061060068efaf74dfa72759b9a90f9250306411a54ab1e20fc5cb856db8ead1d6043090434744e786378f99757d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ece7245389f71d0350321db03889a40e6a4d16e287fe9f0dcc008fbcc9f50098321d638d4a63f2cfbc4c66c7b4bd3fe9e993562288ca84fff6a77c735491d816ed53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e348579d54eeda793c2d8738f3372afc90ee00a760942d5cb57ce0d0dadf32920dfb0f34c9eff0060a1bfcaf6013dc85fb466eca048a03850f6c87a11166feac3d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e639605acd20097797ad8f05ccc9fa2a2fcd47f32c422971bf0908bb4c7dcf63f9b8319cb28463ef420250af1e17ab5db396044371f4954df1ed564eb5b4220b1d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e8d7fcbb3500023f57e9a7a2d104ad36f029d06040c0612c835e4236abfd6aeb5b80f9f015a7ae7cb63390f642c4f1363cc6d2c03d62f0c52708291a9af85e86bd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34efff29040e10a19a11de993a7e7bf9994ab05d2b99b2035e136ef2d599ff59941629968dfc0e106f6c485819c26401ea0c3cbc5db50bd92c10fd1c112d8b714afd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e956f1ce6bf99dd2ab04e0cba426b0a9f597a74d818c2d141b6f74d3cc9ca59e001f5f56c28d655debdb4e9c0634781ae3a0fba26a9f3dc6a8848cacf77a4d288d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ef5aae7389df54c0456e6a28a76cdb7bcaf3808a346acc4a5e6e21cbdfca6138628abbe5081f5864087d09d21f46d02fceb9ce37e1b08b21167c3313c8ee6032cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ed3a16b1af6e1b587737c6871ad58d621773688cb7522be11f4d2c81cf270133a3c12834b3667d987ef83a0c8218cd521935c03ee2ad4212844ed01afcaf7381ed53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e0e17ec7d0a252fd556b02498660a6005cd0b1be4be6ed986e0df7f9cf5e7ed7766c9d14602dfa8b742500718af104b36f7b0018e96903165eb15b3e3b32a8e2ad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e77263f3e56288a3dd1173aa4559f39162f2b5d8638167fca520f385aacb1a5245d9cea5dc2447795206e53fa5d5e2480ffbb4812cdc6f9338a2c15d8d82d9122d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e9784db8200e39245eba215271a09d473c13487eeef774720969fef7662cd5e73c2096011d931b89c8f0d3ff2272789e915569258d65ddec4eb57fa20df0ee7ead53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e059eebfcc0d1ee85c861f14550d77c4ef1defebc643820ea31a5bb87c87eddb7b91355daf9bdb32bdc63c49c13105502c2c08db48dcb8d1befeb0f31aed8f35ad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e28a7c25606c8417abc4e0ba47f7e68847cd36bd2f90e73c5b5b44a721c776d9ae23f571a612cb32e9e952acdec2e8361ff7ad1ddbbd9846a64ccb71868f1ba47d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ee914996c1295c9465512d8dbd1d0bcc912ac220c0c39af4e50ed25e57909fce487f9288d7a33b6a9f82bf1abe79c3c60ed182fbee6dfd562bc15cf099aadac5fd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e1f702f473612c44648daf98377e99b7dad947ab81532ce67a3224bc793ba3d6be650e5dcf175f7e200e55debf3ffa3fcecfb210c16c2fb3178e65b4c16e52df7d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ebce4cd47937fc8ad537bd33a4593e621d263487ad68a4301f9cbc2656514a72366a852da1d7f02c9aabdce1bdef271e5f232215a38239ccff03e6e48422ff996d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e69ad586dd06cfd6ed855129f9f2f014d4f56a1c6e5d2f7cee26b01843058690b82128f52e23dbc1ec9ab117f9886dc316a542edb821e246d857b9b8e26118351d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e7a48487f6fa3c9b8e3cca4e63e0c4dbabde4be1d81ac10e74f2659ea78049ac654fa5a205e4687c950108210c1efa6c9b74d14204a20bdd24e3c3d6d3704df02d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e4f4a0982447d0505f4f52cb2c3ea74e5d381a1ab8be251d89fa7bbebd4f3f9eb025a9b1cce08c88bac870c905217a932fcca93b1ac336c7f633ab8f42f83af60d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e3dfe1590566d472ebce3ae1822a1fcf8b202fa39bed1cfd76aad44c3c9a62d561961fc192dae2c500a32bc41d92584e9334de60df3b8ce27753494097bafc7d8d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e1f2552950da6adf79bc45242f7280fb971644edc8254229a645141c2117c07a1878c2fcd28753e3c87daf6995bdd7a83e42e0e90f77e8aea2ebea1569a1c1738d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e41f304f4dde01f87a2558be27836df65d57fddaa1f57eeccd6721829c4ca6893877d75483edf698c10966974e82f9ce1c8199c6af0e4619c730e6ad6e870fe2cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e380d701fc7e7c5cd83f45b4ec6880b0681099a2622cdabe893524a972d94fcdb20d57e7357556a8fb78da6f7bc52a1eda1878a6cbabcea8292c64c10a137932cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e0d97013ed8c420bed70deef7131f132a05dbe8883cb65587451cf7f0db4c6c266c2b01e218f74a6d245c0ec8313bd3b9ff517b1a2e8d284472f8157b5f25d7e7d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eaa3b7a1cda83b161c044aac219543430aca558958d99f71593851cc2df5e4e5ec062f476e7584b4df069a5de95f8f77ba4c09cdf105897fc198f2c135342a107d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e6f6ae86f281ee596571aa7c88a8c97094cc535b2d5ab329ef384de64e5ea07aa3aa040be005d0e9ee56261999b49fa1694c883cf04b9154fa29938a667d34389d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ee7abbe2a4e94a8c06efc1b94b05c64536da385793c35ef186b13861d6b5819ca7d367f877eba0d18e15f2a6856fd356eafcc64a51949ad617967f2d740ef29e3d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e17392e11e61955f601ebddf8d5509b1802017a87143f2f12e98529809db4043c2edb98b69e2bf715cae8f4127fdd9b1f0d287903dcdd459269536e62dcbfa731d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e9dd02ca5ca91dea10fd468be92fcb10e6a583cf85161dcae77eac4f7fac24126c7bb255f2a275ccc41228b4a8bdfa4da6eef522f14dcb9338a04549fbccd3188d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ed0f6d36a246f251c9ed3e018404dec525154ef86170a99be243f7081548c74309e2125ae4404fcfc30185587f0ca1c5ffe21eefb19c8090b876b45f49003188cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e08f4efdd2625c2593237e483bd5826a6a1faf321a553b78de3394a16945dad91c5124f9305c11c2ee3cae6ce26b366186a6198a10e482d740cbb72f1c5220125d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e634f6b3efd2c8ad6d591d7149cdc03783631a58a7e8504906c821ba903347b958c44f00f381db3ed547911626a243d1d6e87938802323e2e665602dd39046d66d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eb94667ef08338feaac3634ac25c0f2031490e9ef058ecfb9677256286bb3e0da7e9b615934d8f0732f9568e18b3bbf3c051650cbf3a3868b35aaf26599c695aed53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e002a36ce4eabf8c067c0af11872ec48cf4ced7e1948d917f7ce1a1cd95013b2a21c148aeff14b994da2e59234e0b69374947ca4834ab3807dfd3ffc0824c1dead53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34effb2bdf146b8864d811773cc89315930c638ac91e460c53a419166a087bcc4cda90b6945d684d764e0c258c2c601502875970200d0d9120b53011f96273a018bd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e1e9b089eb76cae4b7eb6ed1cdd20ee8c4a986de9f8fb50ab77d4c1d9cf1f6e74161754135eeb46a563f2365a864ac7e88012decc5d00d5e15e41c61dd7070986d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eed1da83692d4b6dbacdba8fbaaec3a3134cad5edd1bae58138ab60bbf1210633a3fccf9286ac08514112d0cc214ed4f131a66bea72a9a88ad8e879588c3d61f2d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ee4b6022fd019f64a2f82ed730b83d4bae35216b2426cac06f8a3f4f268e4a737442eaa7b345ae92ddc9783f9850083d0b9a734da11d735ee674ecc56cca025ecd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ed4788ef63933b53910185e0870d3338a21003cade5efeb978851135a487119d00ceed276b0c4c82460991cae65f777c5374d879608878ff1486fad9639bce4c5d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eb19e3af4078b5ad9b594b3d59fff5d9d4d7e419b60a3e0baf028f7fac26127ad6e7865177ffabe1cf3b3636c9b1e561ae5b64ea2187841dce45ddea63a5c29f4d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eebfafe452207d462126dd613654cd7a976474e3d784f538b758f102bd9c9611159d844697675814cdc87c061d804005849e66ff350cfb4cf1c216898f5350843d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e72bcc775af53776357dd98ada69364d1eee38c2d41dda4e8d5f939eaa638c8b8dde859760cedb1de54700571ed8760e3ecd65a060b8dc5badcad2568904ddcfcd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e956031f3b222d6dc59b5274bbeb3ae272d63d893e8ab4c9ab23f8816201e9b2055e67c3a4427a373a00a5655f8d6199f9209a0f7f6a2ad9b2d0f146efa91dbb6d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e7d867059280398c391ec945b37785f0894da3952f3026e6b7f73c31b182d43b266a4d858843c433934c3dbdd9f57ecb4c2aa138bafd5e728e3c9526daa97a6cbd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e0129835b86e30db30a5fd99ff970425fcad9e2c52186b144717897a9d7114a252c8b56961263abfc880a4053b326393c63be06efe593a0ae3bb9a1c92053d377d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ed59a2991a916c79c0ec46c7e4e1ba5daf5a120206e261a7b6e2c692c512b742f1ec76b764444b798f238f303132a22480d13b4c171b5fd874b6bb10e536d8c1bd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e564bce97f439a2cc9e1823ac59f2699a9a1a432e17b6b46b292112b09fd79d57ec98808231d255f929220785bfb3d959da4a064a253e90e4f448687f3a677bdcd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e25fce8a009a0031fb3c306d8c2d718a8b99d60e38a4155a11f2acc638ddc2f0efb2fe7b1dcbe9879269b1878a83d3a97b807ec85e05e14e731e98c84ea84b09bd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e20212386af7416ae740ce7a020f101e4a52044fa81c3adb4e6bfe23f3aa1ae34f4c84ad2cc8b84efe0d02d873f34c6d0353ef70a945c2d2076ce3be826399321d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ef05f4e781c40d692b992719d2c47bb8c396957fc28719e2032b1c4616c064f437827bbc90e26f3398cfaf3dc473f04e476dc2ad4396852f04f9b2ac3c0a2e34ad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e8ca248eb1e4bf779a0693e24338930784c76dedc7b04d72c67df6b9834d91a4853cf7b4dcfd4d8cb26a3407a6e224599e760e1fa5815b5f946aa232d7b7a4601d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ef6fd4e2e8688a3f8ba3d54fec088a5d62c621a759a46b8e4ea40d106c56446d6bfb4aa39cf0e85c2983d784772fbbfcac00ba4ff2a51409df43cb3e38e7601a5d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ee4cde82b08aaa75f4b9be75bc47a0ced2fdb4f0a3264c70d46ff35a2c9d2805fff501ff20b092b1199dfc4b78346109850edb2a0bd3f0f5200bb903079437b33d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eeb89f18dde276a576ba02443cb759733f7e8688d159574279bf89f8abd6d2133a2559e651bcc2ee4e6e3790e41d70387cd31a61b27f23ce5fd51f48499419fddd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e5bfb6c226a6dcc16885ad86b3bea8edea31a1aa79a9cf1c1c431812b12f9a3ad50d8eb44067498be1ccb1a9e6885355a0a78951dbbb7452d23ac976a750a8423d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e464226a41cd32c9ab5a32f13985ebefc8b37b3dae965fa862f8217ddfc65787526631a72124577138c3086dec4f64d633bd2559a7c9357b51dd241309ad46227d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eb060ace4bd14402c84a0150c9503a30fa21097fb814beef735a8a8bb2c42c99e75e2fa88fcb8aaaf613d4de37f2c260c2364a4a0f5b875669c9632dcddfd2c2ad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e4d63b544fa5fa055f5e131d379ff8472139cfbf4ba9eed2e91b0ee15b666e8652cc3716499f77e032807ce23bdac71ebb6347f957fbf497b544b57e4f3c979fdd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e7c7770bc3a591377d66e75276c1498311f887c72b90f08a33065afc3eea95bde8aa3be3277d204b07d2fb07bbeb32c505b4d5e457274b237ba01db360b57c358d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e8bc4de2a7d2c0e74ada41190ea2d9bdf5e83795f0c798dd713ce2f195b409128ea49740ae242463dad9eeb250d230929d3857a9b3b29b8d7b03b6f4dcb776d5dd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e95de7fa5133770999b80cd8d78fb2a7feea8a592374db20ac7c45fbed5eb8a455907cd7f2a02c1463a70c6a99a159b2960d82799e9a005ef7c2a220b7d15c2f1d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e56469c6462a3996d760f7e8ad67168c8329b3d318a1f3bde97904079c780643108110390611a0c5ebb8670ab86d68d17e7d074ead5c34c840f3e5f140f4b633cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eb1ef16ccbbd491c176022a704f3202b3d5357d4628738b01a092046ffa6c692d4cd7c886fb9ee3442a7539a5058bbd59790699ad5834aed037e6732cfed96a83d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eed8d3ebb0778c7b80dd352e1e0e35442a6db84d1ea70aef1e927f60ed60df0d24a6d7ae5ef2cbce4576ac5ea491d7c1ecbaa6efa895974144cf72d3cbd984c3bd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ee23995a15ecbc2067da9ff561bb32c9ea63808d5ec10514b1a378acf303845bff3a930e2fb95ecbbc46c277eaa69cd9446478b8358fd6ac842c09486e7fcdfb5d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ed4c6ace960a527f7f136bf83b663e61d8ccfc917f8f742ff5846c6d8288d7fe370ad9f6d6881d0eed39c1c6194014c7f859ac69d46e8e94fe9bf54b73dc2f2c7d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e9501bcbdaecbae7fe1f52ce45524112dab4cb8d9181c524f43194cc52322dc89b10f6a4c28cf4d4fb7f3bd225e9aa1002deac5eedd2bd6731c2017e9b550414ed53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ef12de9e57e680bc25cb772e47b1b40dbbf73c5b2b74cba8c861b2ec3049c77411a464d94eb86d4f6c460ab24fc0b1c6805fd92a7ba6250a26878b5a42c3b1e59d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e3044494fb987fd27826cca42d5ccaa652fda21030530f4fdabaa7bffaf04556826d5399700254c75cf686fb6a7a0c1ca8bb4cbda083406691343a37b86403242d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ec9e96019e54b04deb50cfd94a7686c9c2d178e46413966960b4c75756fd102de1d76215ea0b5ac3e52b766c0c01a101783abba5504f5466aaa88755028704292d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e2ace542bea638bccf60ef0412370e77bff1d2e46dc52635b6d33df45ec2ad872538fd75fe596d3641312071782a4dbcbfa9a08fd89af10db777cb878aa483c6fd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e5fc1b3d50be69f4d920c8fb204b8c29c06901730f108b5fa60579b8f18f684348102d1d7868a73d3e98ac9282d1995d40e1b4f106f1fb59eb7ecf99a7dff2935d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ec7d310df99c51c52f553913649aea1b517affdde27f0788f8c208542863811ad068e88260f2c00776bbaf5f2fc668ceca25fa83835cbb2f2e5e730a1423379ebd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e986432ba76124fc251800200157c9cac80f6590454df97bbe9fdbcd117277e9e8549e0f5c61f59f9109e41e8656192ae03acf99f91f675f8e636d853aab360dbd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e24853e1c7c8b1504c40dc5f1cd2a06d214bd9d1a1b946f229e34766658ab966953efa1dbfbfc6b49a20b995ed795f68e58e178bca028e56868b68ff4c7025e84d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e886febb2ff014b5e644017447ace03198f1eaf2f08fb60cf11b97b41c7093ec91d4c076ef26c07d7f824d076ea309247247d7f3b6e30a1f508d1963e159ef9b9d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ef74b84eeec842dd83987c1621f9887e9e5dc110855c20de45b85dc2ed7665a4d6ffd9c840f2a5ca8019177b52a210d0525323866847cd1967539d1ddeff5e552d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e0d220690e8f0598002f7b58b5a6edd545cee8a9d5635ac724674f070a0cb1620629e7d214115bf171851eb1d98407943f5c08c21714c358c20953b04ccbb0a5ed53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e2e766d94c0dac5f85ec6e2fc7a5a5ed18d08571342ee709ab6e3c11a80daf402ee91158b2754236fab4f665d9e0c654979d74caea41e3a465b8cdcf38d03e8edd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e35518154e6844aeffe01f54cb9847ee74ef3da524bd2ade0fdcde98b57d3b0385e66aa0fbdaaebb3d67c00a568d137921c4a41f38b5f06595d8f305bd752eb60d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e229079e686ca9a73837486c0b7ddc2b82579ade43b3303787fabb41391e33a19cd65f69107fac389f4ec450ccd4ff84670af76eb41c4bc7c889168cb3919dcd0d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eaefa997eb21d6c9474987069a4ae889e245ed8cea820702a6147849fe63a842d08e1e253f2b3ccf6bc5693beb4b00b23273f1ed05f583ab4ea3ed838571837b8d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ebf7f3fb24475a284a6042d6c14ebb56fe1e77e3f1431db4c5d2bb75611b5fc95a874cc0c030fb18520d3356c6fcade06d5cd44d41cde3b15ce4807360f2c694cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e23628d48f730e094393a722c365403fa6e1c7963f0162d23a88dc96e4b2621b0be0a87ee0e1d953306b0e71ee16b8a5ac56ad22d43c7300960074ec5f98310bfd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e7344e6ec1d4ec42b5a8e2983c13d908260e4da0e1859348039790854d48cba64b31e9cb537b70dd455fe1d2c76b4e870752fcfdde23befab2c2d860c84209735d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e87bc8396ea9e6a857b78ef128f0a290716c98b5e878b764938d2d01bc502a50f281de9263c1324c9d2a9e409dbda43df2887c46647be6f29d7ffcd6e673f2c22d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eed0a4c7839e654b919523c85592aeba74e0acf9982c8775e415847774e6c00a8fad412930f0a21e0dc5ec1ce4e61b2a2270456cccc847d90a29ed9c863d603cdd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e25d2d3d40a4648ef884154bfefbda452a0871f228d8aec3e4f30dc65f87db424de14754d18924c9ef13366090d7e806598d3873ba047f89f51eb74982a88623cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ed57d1c633a2889315d083d8868a6160d712db8279da6aece1183cae1db7d7e66c99b624c377f8b12f9586a9847dead8d5dbc55210cbf9e28dde70a01514f9537d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e9e2129a3d79bcc8001957f21502b512b39a0a24c0b4128b78d517c76bf8377ad828c967fe2cf318e70a224944b31ed884068cb184163d1dca21420edf8a2207dd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e215a5e08e1a14a263d38ba77eec7d802d059b4184135b5370141553e4fbfd5a63096fa8f024a6e97804fb5a24e96f9279a8f80291629a6c9ae46723fc0922d66d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34edf667470d809250e220752f7b1443699a57d653335f0923bb5c94d0ecfb5525eee0f22f79808ec00f313b805f25ee6ba2ca0473507a8cf1586bf74a686f8964bd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eb622addc202d3ba5289e46b991ba9c941a5b9f58aee40ff3e71fc4a23318045c1e5802f7a3a6611838fc6ef3c87f3866c06ca7555c4462fbd8db710b0a4d970ad53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e360af5c1afeb01f2b49b6f49335372f23fb9982269c8c343812755e80e59c544ba9a45e6b1e0c46f795f84f6b7b3aed104bb5c72c45ffd645e236629000254a3d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ef5e6beb8fa0c2599956249a8ddab29876978804680f1d257c3824752f14239a1188ca091dfc63f1c70cd58eae64876bddb2a83ef9bd3d3a8a46007c435a1912cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e7ca6fdcb1adaae3b542196bd4d687a649bf3e59a570aa3704fef601d19fcad91db9494ef43cea50e8c9dade85a11676b0d95c999a551a0f2f9300479b68b8ef0d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e054e00e19ea9729bc1e77e2decb52da355e92824fec1dbe22e18bfcca45fd51cc59e0d35ad09a4812adc2a62fa188b2cd1c11ff62e30af63d39008b088569423d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e0231350c8a11bc3360080e1d5585e5c2a93a8cb3f49782a615ba6ea55a4c88fc2157fe2b88512a02a0cd5a8f7bda0b2922b06839bd916c10fac9cd2eb80aacd5d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e495e3d897f1a8c8166e280aeb6d2a78336994c75c400864ce6974e15e0ecacad9365d68ce76f42fa37331aaebec157434380497ea7ff4d2f031b4875c344977dd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e24ebab75e9e874d0f8a806d178e0f0ae8b46677b9d88fca047f22764fa6434417ea9523c488354585e4538cc8bfdd611b7d608e494aa0c056a1c2d448708ca21d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e5cfb2a8fc1c111a99137326485e767411161b7ee2217840abcf631f546b9520e3c981a47f04c6278a9b7f534bfcfb943bd7e39a1c133d16380fe1ffb5ee563ebd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eb116f862c187a3e6f25142944d39b0759aa4fd865cab60c7e25a20ae14bbebcc4fb29b92b0a5b72a10df477811b2efb794d5571e83b55f1c73ea48647a6138f8d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e68f17ccdc7d30452aed5d109259b4d1b433c251da6a0df782d2c981d74c0078243880f599b27694ccab9955a0debdb9a45b3b2a0da6fa3121d7a7fbf6c68ddf4d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ef4c090b605eaaa7fda57885e09a64daf4b3a166e0b936c54736d9e241204fc5f5c454c6e6ce295c0016773ae2f86e37eeff56e0dd35b259840cd650ee0ae6071d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eb8820bcb0ee5f8d37bf38f4ae95266e78b3b7a3688f10e2df1e3ba179d0451ebb2a6a9a2b32d7be2d48a3a224e0c5f7b09e939051055668441baa3ad9bb8f45bd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e3a0bf9856967e75533188662d7cccaae153655382d2989494f2f27acd69fc264b90d62dbecca99cef109693b00df0561ce39e1e6ccded0265deeedbf8c04ae78d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e1fcf7ebd8f9ea15e8cdd7649a3b3057c1b3e792e9f31f303c13b32980fe36394014210eb4568a33aacde95a01759f69f976d936705a539d03acc1d534ee65e8ed53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e19abab59d4fa2123fd861e7505bc8c5837f819f0042980ee7e029758b8ed3c0a33a496da612324e74bf49417192141c4780f6b33fc8eb6d3f1b0053c2475f425d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ea713a9fadefda0e0b40970f51b5242e0c408bed2d592d0d0692441c4a1cb0a29992943219bfa33114761154749e4d15b30864163b45e1a0d917baafd27722fa1d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e653623e6238f9b54e0bb30ef27e3f88ca0864c0c9b133b95df73646d6513f30430fefda5e7bd59101fe7ad56395836335037f7cd78f1bd2cbebc997bbc178552d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e7ed7cf9483c89dd13382aa2a34e276e0bb9ae5a06cd1a2292cc81f6d535cd130bc75849d84b3f2ef7c11ed4bd328da56cf8ab90da4ab27ad505f8d39ea162ab5d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e8e511a87fba95ae155e138d54527092f956fdb246de433edc7a4f8c407da24c0e9e7be97dd1504acc7d57e0630e8414c05332d6dfa7127b7e26b1586bff8c02cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e85feed268f8b65410ff87ba9da55275dd09eea5faf46a99d75d8081934668c1ddc65f08beff6e9b90632ee27f70a77a6bbb332a4445c7ea5c2ccb4c152815cd3d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ea8f65f2f42755b1504588d9062ec5a6399febcbf501d8c9ee6a9a7ac793c123b7a7ae94406edefc64d91cc94e0975d5a536569bb67ec2c88c88ed64d58c66124d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e392b45cba2628bc764f62a048a770e6f10c0ada341156580a6992370fe48447f57d8525c51668ab2bfddde146e965e6ff33cfa7c5a33918fe826e2aafc8af289d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e03b76021e7fb18c514726b6c816a52206e02176c93e1b82d0afe00c47f9d357d30c1fca12dbf1abb5d40acce6139f7bae14b28408214f33862c1cfb37700f50dd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ec0c64a61f71f750263195f43832b942d67149a72c7cf4980401b2bbe68ca8e36fa97b47e0bf42a8225144eef7c34d43bfb24e82e200ed21915ef1145ab520f09d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eaf777e2ba40fd02a112f9dbbf727030cdbdbb59ae4ff42bfcb9a4e003b860db99497a61d7fb48ac471280427f06f0bd58deeff6b28a597a6f728376b2d41a360d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e27275ed1c559e116615c1a5436256cdd614015b91e2956e26f541c731ff7e1f9fbf451d1cca238348162bcdfbb1c7a68a685c37487a78fda7775ed453a039bb9d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e884c557ad1402e480445c80e4b6e384bcdf9a1761c571d90314a03d37082dc419817362f76c05d49a3e686c16135278b0cb51052b90ae9f87809976ec3890f18d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ebb0da4f4c6723cba0abaf596aa79bf9f852ace44e0999d3c4654f49c716bee96c9e1955879ebcb453b946c1ffa67d7781fb214e504cc26609d10b44fd0b665e3d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e1a374cdf24e896ff1d84e879b4cdd4759227a80defc7865e581c776f4eb3c1d57ac6236c1f210d1ffd535257901f6f9d68e3026317c99d02d69d06bbc559549dd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ef397d8eb52a2d0063bfdc8a250b4fc47f08ffc286965e0ab3ee53e5b139e674728701be76c04caf0aeddfed1f7c7311d8af1be81117aa4c903e729d15419f2c4d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ebd79df23fbf3bfed09ee2fd9779cb964cf19183723d1dbf38cbf3263d882acd62c3984452cc8cbfda5640f3ee77202e9354d92a51124a95924f413be38a5b782d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34efb1a44a9e0b15d3aac91498eff778b97fa66c0df83abd6151651a1b9df5ffb6fca2fb49d88474c5aae2d5c2ef40f6b5b062f045cc607e30bf833608433fcde06d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e7c3937f7d3f10f40c885b6754e18883e12a8a5fc9736218d6da67700ce680dc7a389403f5694f9e8238909785319d4190ac9e0c8dda3c872d8ea05b068ee0405d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e3d41ebc76988c6af86ba184156de16d6a9ffdc18e38d5b2606ba5a51a0f1a1ade99c684be001190b94c8fff04a0ec0b47f6420cea629d4f8ab65933315f81284d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e8efd60853b2540c17d023a3562d937f08f2406bea449a98378fa5d99be90b2d3aa0481902b29a2d9066c3391e8475adeee7b3d62425914b0ec222148ee3c9900d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e89b7ede5c1fa202376fe45ebfb3a320ce78b5ca2921474f73f6e4d7cc93cbd7b3fab4672c208de28dfb6d6da63a5d4274092d84573ea59e21e3f17143ede9fbdd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e0ea818d1fad94619eceed7ebe66d44f7dc5920b87bf0ac773fef27d1943bfb79d35048761de2afeb8450715870aec96faae6411626c3d845bc16893638169e9bd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e6ab443d0523214cc394b5295133d1c193c9509dbc074ec45c5d44f6c55cd710753ed285bfbcd350f16807ee7fec048cce381499c1f33ef9c48d5aaedc0597696d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ed5fa07a748f42e90d286c713b1f1643963c1eb608eecd7a1f55227b73689dd0a24bbc16d2796f54cc1312b213512b4f6fb09cec31f9904227737b596cf4a2f89d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e5d566fd2f53195c5e5c7c872d50a48d27e1ea80be4297e21fa071fe02b7348a21b81cba812cd9fa7838a6b956b26610cda353d161e2fd5b99ae654556fd331f6d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e4a3d060cf92043d8825f50b60630a2290d857cda2f160fbd1ad402d51fff6245720ec2bde4ab3bd01989285d2f4a22eb8744ca6134e8c9d170b99c41199d30bfd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ef8fc4666ce734b23fa1cd500f411e28c0125c898a37f7c92e16b8a2835050d0b5e0fd37cf46ee24f62b0815bd228a6ef4a26ca410121820c07bf8e004939056fd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e219b0892db9d16683855a398495bc98c6b719d53ca9d590a26c755efc26361081c3014680e7eff14421cc3fddbebbe23a1eafd3800912eaf99f6878efd9d8fa6d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ed31e6d1701e5e394689aab3aa383047b6df1100af41cffac8d300d5745385d5143bd74147d97355d40ae74757d310374b4874ff0002b9dc38ee9c72979f7ea92d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e1c34e8beaa004335443659cf1e04f1afa17036b6c276438b5e7f696af5483fe695442d4e02948e08ca559abf4a039e5702d2fe9178088fd0bded408df454caacd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e98aab56f27c3bb5c198d60a5292d12aa3118a1a85525693050182d90bb98c9b7e04c268f9479a6e25abdb6639e76fea47b19a15a1e3fcff37f6fbb5000661938d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e8567574e184b09b75ad462c2d2c55ca247d2ed18fabcbfe814373576f6f2669bddf7d8028f9a5fe2885cc3d53fc6f4e39430786ad7a1df190ecaa837a3d28a10d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eedd9b7b772d8a27807ae2fb38d4df8f9258be698d8461f6abde8744943e54809aba5ff329d711e443145524904bdf257f47013a802d7c173601ba7f38a3cffcbd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eff03330d09bf997d62e4159c22159dce8b85e7b784224b7bbb8aa0ad1fc39daeb91873485b532125953c4ce4193ed53563c52b7c5a60ac2d9c9c7f352ac24096d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e44335396957de41ceab0cf684ca69dfd5ba93b2ea73c0a2d7e1208ab79eb15573300ed4323f4bb7796dee05b37677780f41b7ee80886a7e865cd57e0d134ca99d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e69d69d2df5a4ba79f2f7324ee4bd5d7778f70a5c77ee55f473c4be80cd488ba4c045f578545ef7d325512219bbd990fa0d529519d3c4c05b8e95b1b52de8db61d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e0d039bccf9ac9cd6a73429488ce08c9b202dde64711b35009da68b3631c950dca9341fc6a0a8d0f556796a697eaaab04d001e9db9067cc54923dc16a06500b15d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34edf0c8d55d7836e108409cf055ec47161a5afd35f7295637176f2ece2dab998d881530ad3410fff3df5920b7cc5f741b5448fddea0dcf15ab63502baee1d59d8cd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eda9f53c988e468508aab64a14418bbc0efdb09b5766241fedebb9c05b94a8a032fa45ad17fb7858ae7bd955e80e9e01256555c8407c00e6a5b36ef253f0b1599d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e0abef6c8648e20085cd60cbc6776f8f560e24d1f6e32799ab19bb8f5d5056412dc6653b1e909321f8d60c47f54734d3e923c0b065b79df7248e3ec67a928eb79d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34edfcdca40db31accc9c58aa08f6b802d14a66bc1d68d82648c65be649c755f634571472618cc88fe245cfad573f9e3bf7f0e85b79af523db70482e835a0ffb285d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34ec2355569d194cff10a7dd2de5f997347b9b8952e49aafa119ae53b960a6e600da72854096033ff37e696b7cfa883e917a535d6d29443a8d6b097171573eaf63fd53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e1c2e0833dd301199b9fb6decd84bc463e491862d5ba7d0c1ec4887b20b8e0915090fedfe248476ae78317aa494af32702a2550c2f0814759ce08e2d5c0831836d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e230c1755ba71f9c63bf56de69637daffc95b3bcc817a390cd73504e3213b3281fb1706460a9c08349f0e88a82dbe605d433067dece2d0e6aa94d25d1109a8212d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e45d6ca66a711a61c8fe8ab522a5a34fd825ea18f926f1713b9b1e994001c7cae09721c668d90356ff24e6f36a174dab66fcfbbf466493518a9e75582707d6d07d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eef49fee74816c3316744eb618b0ba629b966ac1ee488a6f169ea164922fc860a52d6524e79a6967089917f2ee3166eeacd140f041f565b5efd6d7788d98eb3b0d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34e06b2a19c4a8a0ffd7adb60b6c8791c660c095f32fa9beb69673752dc23a78e91208a651843e25d4f3aed1d5421758c707be86e50adb4e5dc2c53b64ed15d00d8d53315bea08cec50d2591fcaf3b32dc5d289cdc6c16b7e8bed8c8e3f7ceaa34eb565f944dc3336ca459a29d8ae3b887da2f8927f04f0b9f2ab28e035d925ea899148f2f9217ad674792bba2829821f4c588b94286ee51aa2478af714e0f237257336e4cf97adf5f0114759176842596133e86e735d249d5151f04b5fc35b289cda1fcf0bde6f255c2853bbd173a17b1b25d62771e3b7e3d90661b6d4b7e534f0db85a973259a48f811edf199b81341d353d89b2aefb08a309125ee481ed4311c33115c8ae83b6d571d45099e1758b571209e2808eed26389ffc50c1d5409cb372193bbeb31675d218652e2563042f424ba7c9512412552c594429ce1e9464e9ba3758b5ae9519ea9ff5be8f2061eb25a61aa5486d91be5f81f951b52dff12a8150e3c030d2451b2871ca4084e1cb1da2fc20e1cc0d1ff717d9a86ab8c9224bf80dece17fc9beeb88d02b2c4f4debf7d894933307fd348809e90402ea14bc58545b36c2a023040485a97d1aa34e8eb905badad903fd1f0025e8afdc8d7db11c9e8da3f2bc8647894c8d5a567fb89bb3b81a8513f8b013ed9b794536953d2d098056b1659051c71a6c4ca30c5a3eaee318158735ce8e90db19fd6705f832799026e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855a66ae6451d1f6328fc9b7c28541d5411455ff46b8e6ff94bbd41ba25ebce75f408062b1ce71faab6f7a21a62b6cb71a88b275e7f36fad087d29fd7e0f121d13d8564f22331cfac1d241b73064f15e1a5ffae1133f81f6592187d6d9cf673f27776afe622fa2ab9e66f67ff50f9e3d9af768587fc9a04f367e370450e8faae0f9e1fa3269417ef83475c62ed5fd9477da3a3f0518b699b35ad6edfb8044ef4f46dd0f14d1f02077d066f0f4b332fa4ed4ba352c560a62a6f628cb82df4de4a345c4a79bf016230fdb72a4ee61be011c3e63471c1978071f20cff3d78c36bd98546669d66bfcc2aaa964253460196d90e17244d1ca474a7e46ffb3ce986afc3efeb76cc49f30816e6ec08a4bf3f48cab11f3c0c159624e8c3abe52b52f5e6816f0c16d8b425ec6ad79e708bcf6403ab125bb66bf8c951dd1a64b4267081ef9d51e00a9188c690e3c9929aeab0807e528087cc248936f24619ed4662991a24680b3efe7b851134b5bfc25890013d9045f0ba69ae7b123e56cb85165aa0f26eb760ae3bc9be806fc9b738ebacd0313d1d166277c8b307ff1b72ecd4984496a1a96a2277e93ce396e993e4d66627ef503a55a3e12ad1cc4fe67dee67eb838e46200fb241a8881c02be0510da0bb52b897aefdc61b2bb23b272b81e67a51d446e764022a09046f4ae89c3fccc514a1d749d62bcf4d50a27067c77175dcd20e1274fd19db7a42138adbfc8d02f049e9b76055ff2b53e777253d5c13eecc746d0182a8e68e7fb0018bd239d06926a009de845619163e8f8111596cfae0157d914ec1c10d2d74091c97b82bdc91d50b5ccde9ce59eb6565dc9a63d3bb9a2049ed72843d094762fa117dfad29fd5fbd5e51c562e237f9538204ffd1cc717e77c14e5dd6a28b565f944dc3336ca459a29d8ae3b887da2f8927f04f0b9f2ab28e035d925ea89e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855ef53c74ff844d0b66411cecfbb3fe6e301c8a819f78864c126cdf95a15d165fe9148f2f9217ad674792bba2829821f4c588b94286ee51aa2478af714e0f2372502deec1f66de343d85ef80a325125f0e0f1dad2e55b81f82062f18e6ab487205d3b5b5abcc35fac160a308f824566b7279724c50c959bc10d1991e759667c23cf83702c1f209391f7b40d18c10083bffffd9ddcc55d8f27b146d87a5c55bc14e8e523b6647d9f268a2d741f419c712732b2f7d347c52cb9e3ed7277a8d9332fa74e79bf37353dbb5098835cdc1e2b552ca22c19903499657bbd8271b193d432bfdd25fbdc0758071f3e53d069ca16e01422a3364e43a2dd26ee479c1f6495968../selinux-policy-migrate-local-changes@.service@@@@rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootselinux-policy-3.13.1-102.el7_3.15.src.rpmconfig(selinux-policy-targeted)selinux-policy-baseselinux-policy-targeted@     /bin/bash/bin/sh/bin/shconfig(selinux-policy-targeted)coreutilspolicycoreutilsrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)selinux-policyselinux-policyrpmlib(PayloadIsXz)3.13.1-102.el7_3.152.53.0.4-14.6.0-14.0-13.13.1-102.el7_3.153.13.1-102.el7_3.155.2-1 audispd-pluginsseedit389-ds-base389-adminpki-selinuxfreeipa-server-selinux1.7.7-11.2.71.1.1210.0.0-0.45.b13.2.2-14.11.3XXv@Xs{@XlXWXRXOXEVX)@X#X#X`@W%WSW_@W_@Wv@W;W@WίWW:WQW@WW@W@WW~W@WW~D@W{@Ws@WrfWj}WbW^@WYZ@WYZ@WUeWM|WBW9@W9@W1@W(W V@V@V@V޾V2V@V_VVCV@VZV @VqV }@V }@VBUUU@U@UpUUUUoUoU5@UUȒ@UĝUUWUU@UUK@UUU'Ua@U~@UzUv@UT@U@Tr@T@T@T7TTTC@T@TTT}Tto@TsTk4T`T[bTWn@T?@T>aT6xT6xT@S@SSDSg}@SB@S>S;S:@S9XS5d@S4S2@S0@S,)S*@S)S)S&S&S"@S!S L@SSS@SSc@SSnS @S SK@RRR@RRJ@Ra@RRR&R&RRR=RʚRR@R@R@Rv@Rv@R@RR@R R@R@R|@Rz/@Rz/@RsRpRnQRi RfhR_@R_@R[R[RSRNRNRL RIgRB@RB@R:@R1R-@R-@R(r@R' R%@R7RRNRR@Q@QQdQQ@QQޞ@Q@QکQکQ@QzQQ4Q@@Q@QKQQ@Q@Q@Q@QQ@QQQQ@Q@QQQ@Qzl@Qw@QvwQo@Qo@QnQm=@QkQfQb@Q`@Q^QZ@QQQIQGQ@j@Q9Q8@Q4Q0@Q-@Q& @Q$QQ@QQ@Q @Qh@QsPP@P@PP@P[PP!@P8@PO@P @Pf@PPqP @PP7@P@PPPYP@P@PPPM@PPd@P@PoP{@P{@P@PP5@P@P~P}L@Px@PvPvPuc@Puc@Pr@Pmz@Pmz@Pmz@Pj@Pd?Pd?Pb@PaPaP[@PXb@PWPS@PQPO'PM@PIP@@P>@P8@P7lP2&P2&P,P,P*=P(@P#@P#@P!@P!@P@PkPw@Pw@PP

@NNU@NNl@N@N@NåN@NNNN@NNN@N@NGNGNGN@N@NNS@NS@N^N^N @N @NNj@Nj@NN$@NN@N/N@N@NFNFN@NNN@N@N@N]Ni@Ni@Ni@N|tNyNx@Ns:@NoENoENiNf @N^"@N\N[@NTNS@NS@NC@NBrN:N98@N7N6@N2N.@N*N)f@N(N%qN$ @N@N7@N e@NpNpM@M@Md@Md@MM{@M@M۝M@M@M‘@M@M@M@My@My@M3@M@M@MMM@MMMMTMx@Mx@Mv@MlMbSM[@MRMQ0@MQ0@MJMGMGMA^@M>@M9u@M6@M5M4/@M4/@M0:M,F@M$]@M@M9MMMMM\@M M M@L!L!L@LL@L@L@LOLOL[@L@L@Lr@L L,@L,@Lډ@L7LLLNL@LΫLeL|L@LB@LB@LB@L@LMLL@LdLL{L*@L@L5LLA@LLLL@LcL@L@L@LzL)@L|L|L|L{@LvW@LvW@Ls@Ls@LrbLrbLmLk@LjyLe3Lc@La?@LZLYV@LXLN@LN@LMxLMxLI@LH2LF@LEL=L=L=L;L7@L LT@L@LL@L@L0LLGL@K^K^KKKj@K$@KKK@K@KK@K]K޺K@KtK#@KKՀ@K:@KK͗@KŮ@K\K\K @KKKKK9@KK@KK@K@KKKKrKK~@K,K,K,K@KK8@KKK@KK@KqKqK}+K{@K{@KuBKs@KqN@KjKie@Kf@Ka|@K`*K]KXAKTM@KPXKEKEKEKD{@KC)KA@K;@K2@K0K/c@K+nK*@K(K"4@KK>K>K>JJęJH@JH@JJJ_@J@JjJjJ@Jv@Jv@Jv@Jv@J$J@JJ0@J@J@JG@JG@J@JJ@J@J@JJJ#J@JJJ@J:J@JJQJ@J J J|@JzJyt@Jyt@Jx"JrJrJq@Jn@Jn@JmJhPJeJ\s@JW-@JT@JS8JKOJI@JCfJCfJB@J@J@J?r@J<@J;}J:,@J7@J67J2C@J0J/@J,@J%@JJB@JJMJ J dJ@J@JJ@J*@J*@II@IIA@IIII@I@IIIX@IX@IX@II@I@IcIIo@Io@IzI)@I@IܑI@@II@I@I@IԨIд@I̿In@I3I3I@II@I@IV@IIaIIm@I@I'@II2III@IIIIIIII@III@I1I@III~@I}Iy@Ix_Iw@IuItk@Itk@Io%@Ik0IeIcGIa@I`IVIO@IJ;@IHIAI>]I= @I7@I6tI3I-I@III9@I9@II IP@I@IIg@Ig@HHH@HrH~@H,H@HCHHH @H @Hf@Hf@H@H+H@H׈H׈H7@HBH@HǶH@HH|@HHH@H{@H)HHL@H@H@H@HnH}H|@Ht@HsVHr@Hl@HkmHgy@HcH`H_@H^>HRa@HQHQHO@HFHFH$@DX@DU@DN@DN@DLDH@DGwDGwDDD@@D?D?D;@D;@D:HD:HD2_D1@D1@D-D+@D+@D'D!<@D!<@D!<@DDD@D@D@DDDDDD@D@D@D@D uD $@D D @D @DDDFC@C@C@C@CCCCCR@CCCCC@Ci@CC@C@CtC@C@CC:@CECCC @C @CعCعCعCعCC@C-C-C-C@C@CCǖ@C@CáCáCP@CP@C[C @C @CCg@Cg@CCC!@C~@C,C@CCCCC@CC@C@C@CZCZC @C @CCCf@Cf@Cf@CC@CqCqC @C @C @CCC}@C7@C7@C7@CBCBCYC@C@CC}@CqCqLukas Vrabec - 3.13.1-102.15Lukas Vrabec - 3.13.1-102.14Lukas Vrabec - 3.13.1-102.13Lukas Vrabec - 3.13.1-102.12Lukas Vrabec - 3.13.1-102.11Lukas Vrabec - 3.13.1-102.10Lukas Vrabec - 3.13.1-102.9Lukas Vrabec - 3.13.1-102.8Lukas Vrabec - 3.13.1-102.7Lukas Vrabec - 3.13.1-102.6Lukas Vrabec - 3.13.1-102.5Miroslav Grepl - 3.13.1-102.4Petr Lautrbach - 3.13.1-102.3Lukas Vrabec - 3.13.1-102.1Dan Walsh - 3.13.1-102Lukas Vrabec - 3.13.1-101Lukas Vrabec - 3.13.1-100Lukas Vrabec - 3.13.1-99Lukas Vrabec - 3.13.1-98Lukas Vrabec - 3.13.1-97Lukas Vrabec - 3.13.1-96Lukas Vrabec - 3.13.1-95Lukas Vrabec - 3.13.1-94Lukas Vrabec - 3.13.1-93Lukas Vrabec - 3.13.1-92Lukas Vrabec - 3.13.1-91Lukas Vrabec - 3.13.1-90Lukas Vrabec - 3.13.1-89Lukas Vrabec - 3.13.1-88Lukas Vrabec - 3.13.1-87Lukas Vrabec - 3.13.1-86Lukas Vrabec - 3.13.1-85Lukas Vrabec - 3.13.1-84Lukas Vrabec - 3.13.1-83Lukas Vrabec - 3.13.1-82Lukas Vrabec - 3.13.1-81Lukas Vrabec - 3.13.1-80Petr Lautrbach - 3.13.1-79Lukas Vrabec - 3.13.1-78Lukas Vrabec - 3.13.1-77Lukas Vrabec - 3.13.1-76Lukas Vrabec - 3.13.1-75Lukas Vrabec - 3.13.1-74Lukas Vrabec - 3.13.1-73Lukas Vrabec - 3.13.1-72Lukas Vrabec - 3.13.1-71Lukas Vrabec - 3.13.1-70Lukas Vrabec - 3.13.1-69Lukas Vrabec - 3.13.1-68Lukas Vrabec - 3.13.1-67Petr Lautrbach - 3.13.1-66Lukas Vrabec 3.13.1-65Lukas Vrabec 3.13.1-64Lukas Vrabec 3.13.1-63Lukas Vrabec 3.13.1-62Lukas Vrabec 3.13.1-61Miroslav Grepl 3.13.1-60Miroslav Grepl 3.13.1-59Lukas Vrabec 3.13.1-58Lukas Vrabec 3.13.1-57Miroslav Grepl 3.13.1-56Lukas Vrabec 3.13.1-55Lukas Vrabec 3.13.1-54Lukas Vrabec 3.13.1-53Lukas Vrabec 3.13.1-52Miroslav Grepl 3.13.1-51Lukas Vrabec 3.13.1-50Lukas Vrabec 3.13.1-49Lukas Vrabec 3.13.1-48Lukas Vrabec 3.13.1-47Lukas Vrabec 3.13.1-46Lukas Vrabec 3.13.1-45Lukas Vrabec 3.13.1-44Lukas Vrabec 3.13.1-43Lukas Vrabec 3.13.1-42Lukas Vrabec 3.13.1-41Lukas Vrabec 3.13.1-40Miroslav Grepl 3.13.1-39Lukas Vrabec 3.13.1-38Lukas Vrabec 3.13.1-37Lukas Vrabec 3.13.1-36Lukas Vrabec 3.13.1-35Lukas Vrabec 3.13.1-34Lukas Vrabec 3.13.1-33Lukas Vrabec 3.13.1-32Miroslav Grepl 3.13.1-31Miroslav Grepl 3.13.1-30Miroslav Grepl 3.13.1-29Miroslav Grepl 3.13.1-28Miroslav Grepl 3.13.1-27Miroslav Grepl 3.13.1-26Miroslav Grepl 3.13.1-25Miroslav Grepl 3.13.1-24Miroslav Grepl 3.13.1-23Miroslav Grepl 3.13.1-22Miroslav Grepl 3.13.1-21Miroslav Grepl 3.13.1-20Miroslav Grepl 3.13.1-19Miroslav Grepl 3.13.1-18Miroslav Grepl 3.13.1-17Miroslav Grepl 3.13.1-16Miroslav Grepl 3.13.1-15Miroslav Grepl 3.13.1-14Miroslav Grepl 3.13.1-13Miroslav Grepl 3.13.1-12Miroslav Grepl 3.13.1-11Miroslav Grepl 3.13.1-10Miroslav Grepl 3.13.1-9Miroslav Grepl 3.13.1-8Miroslav Grepl 3.13.1-7Miroslav Grepl 3.13.1-6Miroslav Grepl 3.13.1-5Miroslav Grepl 3.13.1-4Miroslav Grepl 3.13.1-3Miroslav Grepl 3.13.1-2Miroslav Grepl 3.13.1-1Miroslav Grepl 3.12.1-156Miroslav Grepl 3.12.1-155Miroslav Grepl 3.12.1-154Miroslav Grepl 3.12.1-153Miroslav Grepl 3.12.1-152Miroslav Grepl 3.12.1-151Miroslav Grepl 3.12.1-149Miroslav Grepl 3.12.1-149Miroslav Grepl 3.12.1-148Miroslav Grepl 3.12.1-147Miroslav Grepl 3.12.1-146Miroslav Grepl 3.12.1-145Miroslav Grepl 3.12.1-144Lukas Vrabec 3.12.1-143Miroslav Grepl 3.12.1-142Miroslav Grepl 3.12.1-141Miroslav Grepl 3.12.1-140Miroslav Grepl 3.12.1-139Lukas Vrabec 3.12.1-138Miroslav Grepl 3.12.1-137Miroslav Grepl 3.12.1-136Miroslav Grepl 3.12.1-135Miroslav Grepl 3.12.1-134Miroslav Grepl 3.12.1-133Miroslav Grepl 3.12.1-132Miroslav Grepl 3.12.1-131Miroslav Grepl 3.12.1-130Miroslav Grepl 3.12.1-129Miroslav Grepl 3.12.1-128Miroslav Grepl 3.12.1-127Miroslav Grepl 3.12.1-126Miroslav Grepl 3.12.1-125Miroslav Grepl 3.12.1-124Miroslav Grepl 3.12.1-123Miroslav Grepl 3.12.1-122Miroslav Grepl 3.12.1-121Miroslav Grepl 3.12.1-120Miroslav Grepl 3.12.1-119Miroslav Grepl 3.12.1-118Miroslav Grepl 3.12.1-117Miroslav Grepl 3.12.1-116Miroslav Grepl 3.12.1-115Miroslav Grepl 3.12.1-114Miroslav Grepl 3.12.1-113Miroslav Grepl 3.12.1-112Miroslav Grepl 3.12.1-111Miroslav Grepl 3.12.1-110Miroslav Grepl 3.12.1-109Miroslav Grepl 3.12.1-108Miroslav Grepl 3.12.1-107Dan Walsh 3.12.1-106Miroslav Grepl 3.12.1-105Miroslav Grepl 3.12.1-104Miroslav Grepl 3.12.1-103Miroslav Grepl 3.12.1-102Miroslav Grepl 3.12.1-101Miroslav Grepl 3.12.1-100Miroslav Grepl 3.12.1-99Miroslav Grepl 3.12.1-98Miroslav Grepl 3.12.1-97Miroslav Grepl 3.12.1-96Miroslav Grepl 3.12.1-95Miroslav Grepl 3.12.1-94Miroslav Grepl 3.12.1-94Miroslav Grepl 3.12.1-93Miroslav Grepl 3.12.1-92Miroslav Grepl 3.12.1-91Miroslav Grepl 3.12.1-90Miroslav Grepl 3.12.1-89Miroslav Grepl 3.12.1-88Miroslav Grepl 3.12.1-87Miroslav Grepl 3.12.1-86Miroslav Grepl 3.12.1-85Miroslav Grepl 3.12.1-84Miroslav Grepl 3.12.1-83Miroslav Grepl 3.12.1-82Miroslav Grepl 3.12.1-81Miroslav Grepl 3.12.1-80Miroslav Grepl 3.12.1-79Miroslav Grepl 3.12.1-78Miroslav Grepl 3.12.1-77Miroslav Grepl 3.12.1-76Miroslav Grepl 3.12.1-75Miroslav Grepl 3.12.1-74Miroslav Grepl 3.12.1-73Miroslav Grepl 3.12.1-72Miroslav Grepl 3.12.1-71Miroslav Grepl 3.12.1-70Miroslav Grepl 3.12.1-69Miroslav Grepl 3.12.1-68Miroslav Grepl 3.12.1-67Miroslav Grepl 3.12.1-66Miroslav Grepl 3.12.1-65Miroslav Grepl 3.12.1-64Miroslav Grepl 3.12.1-63Miroslav Grepl 3.12.1-62Miroslav Grepl 3.12.1-61Miroslav Grepl 3.12.1-60Miroslav Grepl 3.12.1-59Miroslav Grepl 3.12.1-58Miroslav Grepl 3.12.1-57Miroslav Grepl 3.12.1-56Miroslav Grepl 3.12.1-55Miroslav Grepl 3.12.1-54Miroslav Grepl 3.12.1-53Miroslav Grepl 3.12.1-52Miroslav Grepl 3.12.1-51Miroslav Grepl 3.12.1-50Miroslav Grepl 3.12.1-49Miroslav Grepl 3.12.1-48Miroslav Grepl 3.12.1-47Miroslav Grepl 3.12.1-46Miroslav Grepl 3.12.1-45Miroslav Grepl 3.12.1-44Miroslav Grepl 3.12.1-43Miroslav Grepl 3.12.1-42Miroslav Grepl 3.12.1-41Miroslav Grepl 3.12.1-40Miroslav Grepl 3.12.1-39Miroslav Grepl 3.12.1-38Miroslav Grepl 3.12.1-37Miroslav Grepl 3.12.1-36Miroslav Grepl 3.12.1-35Miroslav Grepl 3.12.1-34Miroslav Grepl 3.12.1-33Miroslav Grepl 3.12.1-32Miroslav Grepl 3.12.1-31Miroslav Grepl 3.12.1-30Miroslav Grepl 3.12.1-29Dan Walsh 3.12.1-28Dan Walsh 3.12.1-27Miroslav Grepl 3.12.1-26Miroslav Grepl 3.12.1-25Miroslav Grepl 3.12.1-24Miroslav Grepl 3.12.1-23Miroslav Grepl 3.12.1-22Miroslav Grepl 3.12.1-21Miroslav Grepl 3.12.1-20Miroslav Grepl 3.12.1-19Miroslav Grepl 3.12.1-18Miroslav Grepl 3.12.1-17Miroslav Grepl 3.12.1-16Miroslav Grepl 3.12.1-15Miroslav Grepl 3.12.1-14Miroslav Grepl 3.12.1-13Miroslav Grepl 3.12.1-12Miroslav Grepl 3.12.1-11Miroslav Grepl 3.12.1-10Miroslav Grepl 3.12.1-9Miroslav Grepl 3.12.1-8Miroslav Grepl 3.12.1-7Miroslav Grepl 3.12.1-6Miroslav Grepl 3.12.1-5Miroslav Grepl 3.12.1-4Miroslav Grepl 3.12.1-3Miroslav Grepl 3.12.1-2Miroslav Grepl 3.12.1-1Dan Walsh 3.11.1-69.1Miroslav Grepl 3.11.1-69Miroslav Grepl 3.11.1-68Miroslav Grepl 3.11.1-67Miroslav Grepl 3.11.1-66Miroslav Grepl 3.11.1-65Miroslav Grepl 3.11.1-64Miroslav Grepl 3.11.1-63Miroslav Grepl 3.11.1-62Miroslav Grepl 3.11.1-61Miroslav Grepl 3.11.1-60Miroslav Grepl 3.11.1-59Miroslav Grepl 3.11.1-58Miroslav Grepl 3.11.1-57Miroslav Grepl 3.11.1-56Miroslav Grepl 3.11.1-55Miroslav Grepl 3.11.1-54Miroslav Grepl 3.11.1-53Miroslav Grepl 3.11.1-52Miroslav Grepl 3.11.1-51Miroslav Grepl 3.11.1-50Miroslav Grepl 3.11.1-49Miroslav Grepl 3.11.1-48Miroslav Grepl 3.11.1-47Miroslav Grepl 3.11.1-46Miroslav Grepl 3.11.1-45Miroslav Grepl 3.11.1-44Miroslav Grepl 3.11.1-43Miroslav Grepl 3.11.1-42Miroslav Grepl 3.11.1-41Miroslav Grepl 3.11.1-40Miroslav Grepl 3.11.1-39Miroslav Grepl 3.11.1-38Miroslav Grepl 3.11.1-37Miroslav Grepl 3.11.1-36Miroslav Grepl 3.11.1-35Miroslav Grepl 3.11.1-34Miroslav Grepl 3.11.1-33Miroslav Grepl 3.11.1-32Miroslav Grepl 3.11.1-31Miroslav Grepl 3.11.1-30Miroslav Grepl 3.11.1-29Miroslav Grepl 3.11.1-28Miroslav Grepl 3.11.1-27Miroslav Grepl 3.11.1-26Miroslav Grepl 3.11.1-25Miroslav Grepl 3.11.1-24Miroslav Grepl 3.11.1-23Miroslav Grepl 3.11.1-22Miroslav Grepl 3.11.1-21Miroslav Grepl 3.11.1-20Miroslav Grepl 3.11.1-19Miroslav Grepl 3.11.1-18Miroslav Grepl 3.11.1-17Miroslav Grepl 3.11.1-16Dan Walsh 3.11.1-15Miroslav Grepl 3.11.1-14Dan Walsh 3.11.1-13Miroslav Grepl 3.11.1-12Miroslav Grepl 3.11.1-11Miroslav Grepl 3.11.1-10Dan Walsh 3.11.1-9Dan Walsh 3.11.1-8Dan Walsh 3.11.1-7Dan Walsh 3.11.1-6Miroslav Grepl 3.11.1-5Miroslav Grepl 3.11.1-4Miroslav Grepl 3.11.1-3Miroslav Grepl 3.11.1-2Miroslav Grepl 3.11.1-1Miroslav Grepl 3.11.1-0Miroslav Grepl 3.11.0-15Miroslav Grepl 3.11.0-14Miroslav Grepl 3.11.0-13Miroslav Grepl 3.11.0-12Fedora Release Engineering - 3.11.0-11Miroslav Grepl 3.11.0-10Miroslav Grepl 3.11.0-9Miroslav Grepl 3.11.0-8Miroslav Grepl 3.11.0-7Miroslav Grepl 3.11.0-6Miroslav Grepl 3.11.0-5Miroslav Grepl 3.11.0-4Miroslav Grepl 3.11.0-3Miroslav Grepl 3.11.0-2Miroslav Grepl 3.11.0-1Miroslav Grepl 3.10.0-128Miroslav Grepl 3.10.0-127Miroslav Grepl 3.10.0-126Miroslav Grepl 3.10.0-125Miroslav Grepl 3.10.0-124Miroslav Grepl 3.10.0-123Miroslav Grepl 3.10.0-122Miroslav Grepl 3.10.0-121Miroslav Grepl 3.10.0-120Miroslav Grepl 3.10.0-119Miroslav Grepl 3.10.0-118Miroslav Grepl 3.10.0-117Miroslav Grepl 3.10.0-116Miroslav Grepl 3.10.0-115Miroslav Grepl 3.10.0-114Miroslav Grepl 3.10.0-113Miroslav Grepl 3.10.0-112Miroslav Grepl 3.10.0-111Miroslav Grepl 3.10.0-110Miroslav Grepl 3.10.0-109Miroslav Grepl 3.10.0-108Miroslav Grepl 3.10.0-107Miroslav Grepl 3.10.0-106Miroslav Grepl 3.10.0-105Miroslav Grepl 3.10.0-104Miroslav Grepl 3.10.0-103Miroslav Grepl 3.10.0-102Miroslav Grepl 3.10.0-101Miroslav Grepl 3.10.0-100Miroslav Grepl 3.10.0-99Miroslav Grepl 3.10.0-98Miroslav Grepl 3.10.0-97Miroslav Grepl 3.10.0-96Miroslav Grepl 3.10.0-95Miroslav Grepl 3.10.0-94Miroslav Grepl 3.10.0-93Miroslav Grepl 3.10.0-92Miroslav Grepl 3.10.0-91Miroslav Grepl 3.10.0-90Miroslav Grepl 3.10.0-89Miroslav Grepl 3.10.0-88Miroslav Grepl 3.10.0-87Miroslav Grepl 3.10.0-86Miroslav Grepl 3.10.0-85Miroslav Grepl 3.10.0-84Miroslav Grepl 3.10.0-83Miroslav Grepl 3.10.0-82Dan Walsh 3.10.0-81.2Miroslav Grepl 3.10.0-81Miroslav Grepl 3.10.0-80Miroslav Grepl 3.10.0-79Miroslav Grepl 3.10.0-78Miroslav Grepl 3.10.0-77Miroslav Grepl 3.10.0-76Miroslav Grepl 3.10.0-75Dan Walsh 3.10.0-74.2Miroslav Grepl 3.10.0-74Miroslav Grepl 3.10.0-73Miroslav Grepl 3.10.0-72Miroslav Grepl 3.10.0-71Miroslav Grepl 3.10.0-70Miroslav Grepl 3.10.0-69Miroslav Grepl 3.10.0-68Miroslav Grepl 3.10.0-67Miroslav Grepl 3.10.0-66Miroslav Grepl 3.10.0-65Miroslav Grepl 3.10.0-64Miroslav Grepl 3.10.0-63Miroslav Grepl 3.10.0-59Miroslav Grepl 3.10.0-58Dan Walsh 3.10.0-57Dan Walsh 3.10.0-56Dan Walsh 3.10.0-55.2Dan Walsh 3.10.0-55.1Miroslav Grepl 3.10.0-55Dan Walsh 3.10.0-54.1Miroslav Grepl 3.10.0-54Dan Walsh 3.10.0-53.1Miroslav Grepl 3.10.0-53Miroslav Grepl 3.10.0-52Miroslav Grepl 3.10.0-51Dan Walsh 3.10.0-50.2Dan Walsh 3.10.0-50.1Miroslav Grepl 3.10.0-50Miroslav Grepl 3.10.0-49Miroslav Grepl 3.10.0-48Miroslav Grepl 3.10.0-47Dan Walsh 3.10.0-46.1Miroslav Grepl 3.10.0-46Dan Walsh 3.10.0-45.1Miroslav Grepl 3.10.0-45Miroslav Grepl 3.10.0-43Miroslav Grepl 3.10.0-42Miroslav Grepl 3.10.0-41Dan Walsh 3.10.0-40.2Miroslav Grepl 3.10.0-40Dan Walsh 3.10.0-39.3Dan Walsh 3.10.0-39.2Dan Walsh 3.10.0-39.1Miroslav Grepl 3.10.0-39Dan Walsh 3.10.0-38.1Miroslav Grepl 3.10.0-38Miroslav Grepl 3.10.0-37Dan Walsh 3.10.0-36.1Miroslav Grepl 3.10.0-36Dan Walsh 3.10.0-35Dan Walsh 3.10.0-34.7Dan Walsh 3.10.0-34.6Dan Walsh 3.10.0-34.4Miroslav Grepl 3.10.0-34.3Dan Walsh 3.10.0-34.2Dan Walsh 3.10.0-34.1Miroslav Grepl 3.10.0-34Miroslav Grepl 3.10.0-33Dan Walsh 3.10.0-31.1Miroslav Grepl 3.10.0-31Miroslav Grepl 3.10.0-29Miroslav Grepl 3.10.0-28Miroslav Grepl 3.10.0-27Miroslav Grepl 3.10.0-26Miroslav Grepl 3.10.0-25Miroslav Grepl 3.10.0-24Miroslav Grepl 3.10.0-23Miroslav Grepl 3.10.0-22Miroslav Grepl 3.10.0-21Dan Walsh 3.10.0-20Miroslav Grepl 3.10.0-19Miroslav Grepl 3.10.0-18Miroslav Grepl 3.10.0-17Miroslav Grepl 3.10.0-16Miroslav Grepl 3.10.0-14Miroslav Grepl 3.10.0-13Miroslav Grepl 3.10.0-12Miroslav Grepl 3.10.0-11Miroslav Grepl 3.10.0-10Miroslav Grepl 3.10.0-9Miroslav Grepl 3.10.0-8Miroslav Grepl 3.10.0-7Miroslav Grepl 3.10.0-6Miroslav Grepl 3.10.0-5Miroslav Grepl 3.10.0-4Miroslav Grepl 3.10.0-3Miroslav Grepl 3.10.0-2Miroslav Grepl 3.10.0-1Miroslav Grepl 3.9.16-30Dan Walsh 3.9.16-29.1Miroslav Grepl 3.9.16-29Dan Walsh 3.9.16-28.1Miroslav Grepl 3.9.16-27Miroslav Grepl 3.9.16-26Miroslav Grepl 3.9.16-25Miroslav Grepl 3.9.16-24Miroslav Grepl 3.9.16-23Miroslav Grepl 3.9.16-22Miroslav Grepl 3.9.16-21Miroslav Grepl 3.9.16-20Miroslav Grepl 3.9.16-19Miroslav Grepl 3.9.16-18Miroslav Grepl 3.9.16-17Dan Walsh 3.9.16-16.1Miroslav Grepl 3.9.16-16Miroslav Grepl 3.9.16-15Miroslav Grepl 3.9.16-14Miroslav Grepl 3.9.16-13Miroslav Grepl 3.9.16-12Miroslav Grepl 3.9.16-11Miroslav Grepl 3.9.16-10Miroslav Grepl 3.9.16-7Miroslav Grepl 3.9.16-6Miroslav Grepl 3.9.16-5Miroslav Grepl 3.9.16-4Miroslav Grepl 3.9.16-3Miroslav Grepl 3.9.16-2Miroslav Grepl 3.9.16-1Miroslav Grepl 3.9.15-5Miroslav Grepl 3.9.15-2Miroslav Grepl 3.9.15-1Fedora Release Engineering - 3.9.14-2Dan Walsh 3.9.14-1Miroslav Grepl 3.9.13-10Miroslav Grepl 3.9.13-9Dan Walsh 3.9.13-8Miroslav Grepl 3.9.13-7Miroslav Grepl 3.9.13-6Miroslav Grepl 3.9.13-5Miroslav Grepl 3.9.13-4Miroslav Grepl 3.9.13-3Miroslav Grepl 3.9.13-2Miroslav Grepl 3.9.13-1Miroslav Grepl 3.9.12-8Miroslav Grepl 3.9.12-7Miroslav Grepl 3.9.12-6Miroslav Grepl 3.9.12-5Dan Walsh 3.9.12-4Dan Walsh 3.9.12-3Dan Walsh 3.9.12-2Miroslav Grepl 3.9.12-1Dan Walsh 3.9.11-2Miroslav Grepl 3.9.11-1Miroslav Grepl 3.9.10-13Dan Walsh 3.9.10-12Miroslav Grepl 3.9.10-11Miroslav Grepl 3.9.10-10Miroslav Grepl 3.9.10-9Miroslav Grepl 3.9.10-8Miroslav Grepl 3.9.10-7Miroslav Grepl 3.9.10-6Miroslav Grepl 3.9.10-5Dan Walsh 3.9.10-4Miroslav Grepl 3.9.10-3Miroslav Grepl 3.9.10-2Miroslav Grepl 3.9.10-1Miroslav Grepl 3.9.9-4Dan Walsh 3.9.9-3Miroslav Grepl 3.9.9-2Miroslav Grepl 3.9.9-1Miroslav Grepl 3.9.8-7Dan Walsh 3.9.8-6Miroslav Grepl 3.9.8-5Miroslav Grepl 3.9.8-4Dan Walsh 3.9.8-3Dan Walsh 3.9.8-2Dan Walsh 3.9.8-1Dan Walsh 3.9.7-10Dan Walsh 3.9.7-9Dan Walsh 3.9.7-8Dan Walsh 3.9.7-7Dan Walsh 3.9.7-6Dan Walsh 3.9.7-5Dan Walsh 3.9.7-4Dan Walsh 3.9.7-3Dan Walsh 3.9.7-2Dan Walsh 3.9.7-1Dan Walsh 3.9.6-3Dan Walsh 3.9.6-2Dan Walsh 3.9.6-1Dan Walsh 3.9.5-11Dan Walsh 3.9.5-10Dan Walsh 3.9.5-9Dan Walsh 3.9.5-8Dan Walsh 3.9.5-7Dan Walsh 3.9.5-6Dan Walsh 3.9.5-5Dan Walsh 3.9.5-4Dan Walsh 3.9.5-3Dan Walsh 3.9.5-2Dan Walsh 3.9.5-1Dan Walsh 3.9.4-3Dan Walsh 3.9.4-2Dan Walsh 3.9.4-1Dan Walsh 3.9.3-4Dan Walsh 3.9.3-3Dan Walsh 3.9.3-2Dan Walsh 3.9.3-1Dan Walsh 3.9.2-1Dan Walsh 3.9.1-3Dan Walsh 3.9.1-2Dan Walsh 3.9.1-1Dan Walsh 3.9.0-2Dan Walsh 3.9.0-1Dan Walsh 3.8.8-21Dan Walsh 3.8.8-20Dan Walsh 3.8.8-19Dan Walsh 3.8.8-18Dan Walsh 3.8.8-17Dan Walsh 3.8.8-16Dan Walsh 3.8.8-15Dan Walsh 3.8.8-14Dan Walsh 3.8.8-13Dan Walsh 3.8.8-12Dan Walsh 3.8.8-11Dan Walsh 3.8.8-10Dan Walsh 3.8.8-9Dan Walsh 3.8.8-8Dan Walsh 3.8.8-7Dan Walsh 3.8.8-6Dan Walsh 3.8.8-5Dan Walsh 3.8.8-4Dan Walsh 3.8.8-3Dan Walsh 3.8.8-2Dan Walsh 3.8.8-1Dan Walsh 3.8.7-3Dan Walsh 3.8.7-2Dan Walsh 3.8.7-1Dan Walsh 3.8.6-3Miroslav Grepl 3.8.6-2Dan Walsh 3.8.6-1Dan Walsh 3.8.5-1Dan Walsh 3.8.4-1Dan Walsh 3.8.3-4Dan Walsh 3.8.3-3Dan Walsh 3.8.3-2Dan Walsh 3.8.3-1Dan Walsh 3.8.2-1Dan Walsh 3.8.1-5Dan Walsh 3.8.1-4Dan Walsh 3.8.1-3Dan Walsh 3.8.1-2Dan Walsh 3.8.1-1Dan Walsh 3.7.19-22Dan Walsh 3.7.19-21Dan Walsh 3.7.19-20Dan Walsh 3.7.19-19Dan Walsh 3.7.19-17Dan Walsh 3.7.19-16Dan Walsh 3.7.19-15Dan Walsh 3.7.19-14Dan Walsh 3.7.19-13Dan Walsh 3.7.19-12Dan Walsh 3.7.19-11Dan Walsh 3.7.19-10Dan Walsh 3.7.19-9Dan Walsh 3.7.19-8Dan Walsh 3.7.19-7Dan Walsh 3.7.19-6Dan Walsh 3.7.19-5Dan Walsh 3.7.19-4Dan Walsh 3.7.19-3Dan Walsh 3.7.19-2Dan Walsh 3.7.19-1Dan Walsh 3.7.18-3Dan Walsh 3.7.18-2Dan Walsh 3.7.18-1Dan Walsh 3.7.17-6Dan Walsh 3.7.17-5Dan Walsh 3.7.17-4Dan Walsh 3.7.17-3Dan Walsh 3.7.17-2Dan Walsh 3.7.17-1Dan Walsh 3.7.16-2Dan Walsh 3.7.16-1Dan Walsh 3.7.15-4Dan Walsh 3.7.15-3Dan Walsh 3.7.15-2Dan Walsh 3.7.15-1Dan Walsh 3.7.14-5Dan Walsh 3.7.14-4Dan Walsh 3.7.14-3Dan Walsh 3.7.14-2Dan Walsh 3.7.14-1Dan Walsh 3.7.13-4Dan Walsh 3.7.13-3Dan Walsh 3.7.13-2Dan Walsh 3.7.13-1Dan Walsh 3.7.12-1Dan Walsh 3.7.11-1Dan Walsh 3.7.10-5Dan Walsh 3.7.10-4Dan Walsh 3.7.10-3Dan Walsh 3.7.10-2Dan Walsh 3.7.10-1Dan Walsh 3.7.9-4Dan Walsh 3.7.9-3Dan Walsh 3.7.9-2Dan Walsh 3.7.9-1Dan Walsh 3.7.8-11Dan Walsh 3.7.8-9Dan Walsh 3.7.8-8Dan Walsh 3.7.8-7Dan Walsh 3.7.8-6Dan Walsh 3.7.8-5Dan Walsh 3.7.8-4Dan Walsh 3.7.8-3Dan Walsh 3.7.8-2Dan Walsh 3.7.8-1Dan Walsh 3.7.7-3Dan Walsh 3.7.7-2Dan Walsh 3.7.7-1Dan Walsh 3.7.6-1Dan Walsh 3.7.5-8Dan Walsh 3.7.5-7Dan Walsh 3.7.5-6Dan Walsh 3.7.5-5Dan Walsh 3.7.5-4Dan Walsh 3.7.5-3Dan Walsh 3.7.5-2Dan Walsh 3.7.5-1Dan Walsh 3.7.4-4Dan Walsh 3.7.4-3Dan Walsh 3.7.4-2Dan Walsh 3.7.4-1Dan Walsh 3.7.3-1Dan Walsh 3.7.1-1Dan Walsh 3.6.33-2Dan Walsh 3.6.33-1Dan Walsh 3.6.32-17Dan Walsh 3.6.32-16Dan Walsh 3.6.32-15Dan Walsh 3.6.32-13Dan Walsh 3.6.32-12Dan Walsh 3.6.32-11Dan Walsh 3.6.32-10Dan Walsh 3.6.32-9Dan Walsh 3.6.32-8Dan Walsh 3.6.32-7Dan Walsh 3.6.32-6Dan Walsh 3.6.32-5Dan Walsh 3.6.32-4Dan Walsh 3.6.32-3Dan Walsh 3.6.32-2Dan Walsh 3.6.32-1Dan Walsh 3.6.31-5Dan Walsh 3.6.31-4Dan Walsh 3.6.31-3Dan Walsh 3.6.31-2Dan Walsh 3.6.30-6Dan Walsh 3.6.30-5Dan Walsh 3.6.30-4Dan Walsh 3.6.30-3Dan Walsh 3.6.30-2Dan Walsh 3.6.30-1Dan Walsh 3.6.29-2Dan Walsh 3.6.29-1Dan Walsh 3.6.28-9Dan Walsh 3.6.28-8Dan Walsh 3.6.28-7Dan Walsh 3.6.28-6Dan Walsh 3.6.28-5Dan Walsh 3.6.28-4Dan Walsh 3.6.28-3Dan Walsh 3.6.28-2Dan Walsh 3.6.28-1Dan Walsh 3.6.27-1Dan Walsh 3.6.26-11Dan Walsh 3.6.26-10Dan Walsh 3.6.26-9Bill Nottingham 3.6.26-8Dan Walsh 3.6.26-7Dan Walsh 3.6.26-6Dan Walsh 3.6.26-5Dan Walsh 3.6.26-4Dan Walsh 3.6.26-3Dan Walsh 3.6.26-2Dan Walsh 3.6.26-1Dan Walsh 3.6.25-1Dan Walsh 3.6.24-1Dan Walsh 3.6.23-2Dan Walsh 3.6.23-1Dan Walsh 3.6.22-3Dan Walsh 3.6.22-1Dan Walsh 3.6.21-4Dan Walsh 3.6.21-3Tom "spot" Callaway 3.6.21-2Dan Walsh 3.6.21-1Dan Walsh 3.6.20-2Dan Walsh 3.6.20-1Dan Walsh 3.6.19-5Dan Walsh 3.6.19-4Dan Walsh 3.6.19-3Dan Walsh 3.6.19-2Dan Walsh 3.6.19-1Dan Walsh 3.6.18-1Dan Walsh 3.6.17-1Dan Walsh 3.6.16-4Dan Walsh 3.6.16-3Dan Walsh 3.6.16-2Dan Walsh 3.6.16-1Dan Walsh 3.6.14-3Dan Walsh 3.6.14-2Dan Walsh 3.6.14-1Dan Walsh 3.6.13-3Dan Walsh 3.6.13-2Dan Walsh 3.6.13-1Dan Walsh 3.6.12-39Dan Walsh 3.6.12-38Dan Walsh 3.6.12-37Dan Walsh 3.6.12-36Dan Walsh 3.6.12-35Dan Walsh 3.6.12-34Dan Walsh 3.6.12-33Dan Walsh 3.6.12-31Dan Walsh 3.6.12-30Dan Walsh 3.6.12-29Dan Walsh 3.6.12-28Dan Walsh 3.6.12-27Dan Walsh 3.6.12-26Dan Walsh 3.6.12-25Dan Walsh 3.6.12-24Dan Walsh 3.6.12-23Dan Walsh 3.6.12-22Dan Walsh 3.6.12-21Dan Walsh 3.6.12-20Dan Walsh 3.6.12-19Dan Walsh 3.6.12-16Dan Walsh 3.6.12-15Dan Walsh 3.6.12-14Dan Walsh 3.6.12-13Dan Walsh 3.6.12-12Dan Walsh 3.6.12-11Dan Walsh 3.6.12-10Dan Walsh 3.6.12-9Dan Walsh 3.6.12-8Dan Walsh 3.6.12-7Dan Walsh 3.6.12-6Dan Walsh 3.6.12-5Dan Walsh 3.6.12-4Dan Walsh 3.6.12-3Dan Walsh 3.6.12-2Dan Walsh 3.6.12-1Dan Walsh 3.6.11-1Dan Walsh 3.6.10-9Dan Walsh 3.6.10-8Dan Walsh 3.6.10-7Dan Walsh 3.6.10-6Dan Walsh 3.6.10-5Dan Walsh 3.6.10-4Dan Walsh 3.6.10-3Dan Walsh 3.6.10-2Dan Walsh 3.6.10-1Dan Walsh 3.6.9-4Dan Walsh 3.6.9-3Dan Walsh 3.6.9-2Dan Walsh 3.6.9-1Dan Walsh 3.6.8-4Dan Walsh 3.6.8-3Dan Walsh 3.6.8-2Dan Walsh 3.6.8-1Dan Walsh 3.6.7-2Dan Walsh 3.6.7-1Dan Walsh 3.6.6-9Dan Walsh 3.6.6-8Fedora Release Engineering - 3.6.6-7Dan Walsh 3.6.6-6Dan Walsh 3.6.6-5Dan Walsh 3.6.6-4Dan Walsh 3.6.6-3Dan Walsh 3.6.6-2Dan Walsh 3.6.6-1Dan Walsh 3.6.5-3Dan Walsh 3.6.5-1Dan Walsh 3.6.4-6Dan Walsh 3.6.4-5Dan Walsh 3.6.4-4Dan Walsh 3.6.4-3Dan Walsh 3.6.4-2Dan Walsh 3.6.4-1Dan Walsh 3.6.3-13Dan Walsh 3.6.3-12Dan Walsh 3.6.3-11Dan Walsh 3.6.3-10Dan Walsh 3.6.3-9Dan Walsh 3.6.3-8Dan Walsh 3.6.3-7Dan Walsh 3.6.3-6Dan Walsh 3.6.3-3Dan Walsh 3.6.3-2Dan Walsh 3.6.3-1Dan Walsh 3.6.2-5Dan Walsh 3.6.2-4Dan Walsh 3.6.2-3Dan Walsh 3.6.2-2Dan Walsh 3.6.2-1Dan Walsh 3.6.1-15Dan Walsh 3.6.1-14Dan Walsh 3.6.1-13Dan Walsh 3.6.1-12Dan Walsh 3.6.1-11Dan Walsh 3.6.1-10Dan Walsh 3.6.1-9Dan Walsh 3.6.1-8Dan Walsh 3.6.1-7Dan Walsh 3.6.1-4Ignacio Vazquez-Abrams - 3.6.1-2Dan Walsh 3.5.13-19Dan Walsh 3.5.13-18Dan Walsh 3.5.13-17Dan Walsh 3.5.13-16Dan Walsh 3.5.13-15Dan Walsh 3.5.13-14Dan Walsh 3.5.13-13Dan Walsh 3.5.13-12Dan Walsh 3.5.13-11Dan Walsh 3.5.13-9Dan Walsh 3.5.13-8Dan Walsh 3.5.13-7Dan Walsh 3.5.13-6Dan Walsh 3.5.13-5Dan Walsh 3.5.13-4Dan Walsh 3.5.13-3Dan Walsh 3.5.13-2Dan Walsh 3.5.13-1Dan Walsh 3.5.12-3Dan Walsh 3.5.12-2Dan Walsh 3.5.12-1Dan Walsh 3.5.11-1Dan Walsh 3.5.10-3Dan Walsh 3.5.10-2Dan Walsh 3.5.10-1Dan Walsh 3.5.9-4Dan Walsh 3.5.9-3Dan Walsh 3.5.9-2Dan Walsh 3.5.9-1Dan Walsh 3.5.8-7Dan Walsh 3.5.8-6Dan Walsh 3.5.8-5Dan Walsh 3.5.8-4Dan Walsh 3.5.8-3Dan Walsh 3.5.8-1Dan Walsh 3.5.7-2Dan Walsh 3.5.7-1Dan Walsh 3.5.6-2Dan Walsh 3.5.6-1Dan Walsh 3.5.5-4Dan Walsh 3.5.5-3Dan Walsh 3.5.5-2Dan Walsh 3.5.4-2Dan Walsh 3.5.4-1Dan Walsh 3.5.3-1Dan Walsh 3.5.2-2Dan Walsh 3.5.1-5Dan Walsh 3.5.1-4Dan Walsh 3.5.1-3Dan Walsh 3.5.1-2Dan Walsh 3.5.1-1Dan Walsh 3.5.0-1Dan Walsh 3.4.2-14Dan Walsh 3.4.2-13Dan Walsh 3.4.2-12Dan Walsh 3.4.2-11Dan Walsh 3.4.2-10Dan Walsh 3.4.2-9Dan Walsh 3.4.2-8Dan Walsh 3.4.2-7Dan Walsh 3.4.2-6Dan Walsh 3.4.2-5Dan Walsh 3.4.2-4Dan Walsh 3.4.2-3Dan Walsh 3.4.2-2Dan Walsh 3.4.2-1Dan Walsh 3.4.1-5Dan Walsh 3.4.1-3Dan Walsh 3.4.1-2Dan Walsh 3.4.1-1Dan Walsh 3.3.1-48Dan Walsh 3.3.1-47Dan Walsh 3.3.1-46Dan Walsh 3.3.1-45Dan Walsh 3.3.1-44Dan Walsh 3.3.1-43Dan Walsh 3.3.1-42Dan Walsh 3.3.1-41Dan Walsh 3.3.1-39Dan Walsh 3.3.1-37Dan Walsh 3.3.1-36Dan Walsh 3.3.1-33Dan Walsh 3.3.1-32Dan Walsh 3.3.1-31Dan Walsh 3.3.1-30Dan Walsh 3.3.1-29Dan Walsh 3.3.1-28Dan Walsh 3.3.1-27Dan Walsh 3.3.1-26Dan Walsh 3.3.1-25Dan Walsh 3.3.1-24Dan Walsh 3.3.1-23Dan Walsh 3.3.1-22Dan Walsh 3.3.1-21Dan Walsh 3.3.1-20Dan Walsh 3.3.1-19Dan Walsh 3.3.1-18Dan Walsh 3.3.1-17Dan Walsh 3.3.1-16Dan Walsh 3.3.1-15Bill Nottingham 3.3.1-14Dan Walsh 3.3.1-13Dan Walsh 3.3.1-12Dan Walsh 3.3.1-11Dan Walsh 3.3.1-10Dan Walsh 3.3.1-9Dan Walsh 3.3.1-8Dan Walsh 3.3.1-6Dan Walsh 3.3.1-5Dan Walsh 3.3.1-4Dan Walsh 3.3.1-2Dan Walsh 3.3.1-1Dan Walsh 3.3.0-2Dan Walsh 3.3.0-1Dan Walsh 3.2.9-2Dan Walsh 3.2.9-1Dan Walsh 3.2.8-2Dan Walsh 3.2.8-1Dan Walsh 3.2.7-6Dan Walsh 3.2.7-5Dan Walsh 3.2.7-3Dan Walsh 3.2.7-2Dan Walsh 3.2.7-1Dan Walsh 3.2.6-7Dan Walsh 3.2.6-6Dan Walsh 3.2.6-5Dan Walsh 3.2.6-4Dan Walsh 3.2.6-3Dan Walsh 3.2.6-2Dan Walsh 3.2.6-1Dan Walsh 3.2.5-25Dan Walsh 3.2.5-24Dan Walsh 3.2.5-22Dan Walsh 3.2.5-21Dan Walsh 3.2.5-20Dan Walsh 3.2.5-19Dan Walsh 3.2.5-18Dan Walsh 3.2.5-17Dan Walsh 3.2.5-16Dan Walsh 3.2.5-15Dan Walsh 3.2.5-14Dan Walsh 3.2.5-13Dan Walsh 3.2.5-12Dan Walsh 3.2.5-11Dan Walsh 3.2.5-10Dan Walsh 3.2.5-9Dan Walsh 3.2.5-8Dan Walsh 3.2.5-7Dan Walsh 3.2.5-6Dan Walsh 3.2.5-5Dan Walsh 3.2.5-4Dan Walsh 3.2.5-3Dan Walsh 3.2.5-2Dan Walsh 3.2.5-1Dan Walsh 3.2.4-5Dan Walsh 3.2.4-4Dan Walsh 3.2.4-3Dan Walsh 3.2.4-1Dan Walsh 3.2.4-1Dan Walsh 3.2.3-2Dan Walsh 3.2.3-1Dan Walsh 3.2.2-1Dan Walsh 3.2.1-3Dan Walsh 3.2.1-1Dan Walsh 3.1.2-2Dan Walsh 3.1.2-1Dan Walsh 3.1.1-1Dan Walsh 3.1.0-1Dan Walsh 3.0.8-30Dan Walsh 3.0.8-28Dan Walsh 3.0.8-27Dan Walsh 3.0.8-26Dan Walsh 3.0.8-25Dan Walsh 3.0.8-24Dan Walsh 3.0.8-23Dan Walsh 3.0.8-22Dan Walsh 3.0.8-21Dan Walsh 3.0.8-20Dan Walsh 3.0.8-19Dan Walsh 3.0.8-18Dan Walsh 3.0.8-17Dan Walsh 3.0.8-16Dan Walsh 3.0.8-15Dan Walsh 3.0.8-14Dan Walsh 3.0.8-13Dan Walsh 3.0.8-12Dan Walsh 3.0.8-11Dan Walsh 3.0.8-10Dan Walsh 3.0.8-9Dan Walsh 3.0.8-8Dan Walsh 3.0.8-7Dan Walsh 3.0.8-5Dan Walsh 3.0.8-4Dan Walsh 3.0.8-3Dan Walsh 3.0.8-2Dan Walsh 3.0.8-1Dan Walsh 3.0.7-10Dan Walsh 3.0.7-9Dan Walsh 3.0.7-8Dan Walsh 3.0.7-7Dan Walsh 3.0.7-6Dan Walsh 3.0.7-5Dan Walsh 3.0.7-4Dan Walsh 3.0.7-3Dan Walsh 3.0.7-2Dan Walsh 3.0.7-1Dan Walsh 3.0.6-3Dan Walsh 3.0.6-2Dan Walsh 3.0.6-1Dan Walsh 3.0.5-11Dan Walsh 3.0.5-10Dan Walsh 3.0.5-9Dan Walsh 3.0.5-8Dan Walsh 3.0.5-7Dan Walsh 3.0.5-6Dan Walsh 3.0.5-5Dan Walsh 3.0.5-4Dan Walsh 3.0.5-3Dan Walsh 3.0.5-2Dan Walsh 3.0.5-1Dan Walsh 3.0.4-6Dan Walsh 3.0.4-5Dan Walsh 3.0.4-4Dan Walsh 3.0.4-3Dan Walsh 3.0.4-2Dan Walsh 3.0.4-1Dan Walsh 3.0.3-6Dan Walsh 3.0.3-5Dan Walsh 3.0.3-4Dan Walsh 3.0.3-3Dan Walsh 3.0.3-2Dan Walsh 3.0.3-1Dan Walsh 3.0.2-9Dan Walsh 3.0.2-8Dan Walsh 3.0.2-7Dan Walsh 3.0.2-5Dan Walsh 3.0.2-4Dan Walsh 3.0.2-3Dan Walsh 3.0.2-2Dan Walsh 3.0.1-5Dan Walsh 3.0.1-4Dan Walsh 3.0.1-3Dan Walsh 3.0.1-2Dan Walsh 3.0.1-1Dan Walsh 2.6.5-3Dan Walsh 2.6.5-2Dan Walsh 2.6.4-7Dan Walsh 2.6.4-6Dan Walsh 2.6.4-5Dan Walsh 2.6.4-2Dan Walsh 2.6.4-1Dan Walsh 2.6.3-1Dan Walsh 2.6.2-1Dan Walsh 2.6.1-4Dan Walsh 2.6.1-2Dan Walsh 2.6.1-1Dan Walsh 2.5.12-12Dan Walsh 2.5.12-11Dan Walsh 2.5.12-10Dan Walsh 2.5.12-8Dan Walsh 2.5.12-5Dan Walsh 2.5.12-4Dan Walsh 2.5.12-3Dan Walsh 2.5.12-2Dan Walsh 2.5.12-1Dan Walsh 2.5.11-8Dan Walsh 2.5.11-7Dan Walsh 2.5.11-6Dan Walsh 2.5.11-5Dan Walsh 2.5.11-4Dan Walsh 2.5.11-3Dan Walsh 2.5.11-2Dan Walsh 2.5.11-1Dan Walsh 2.5.10-2Dan Walsh 2.5.10-1Dan Walsh 2.5.9-6Dan Walsh 2.5.9-5Dan Walsh 2.5.9-4Dan Walsh 2.5.9-3Dan Walsh 2.5.9-2Dan Walsh 2.5.8-8Dan Walsh 2.5.8-7Dan Walsh 2.5.8-6Dan Walsh 2.5.8-5Dan Walsh 2.5.8-4Dan Walsh 2.5.8-3Dan Walsh 2.5.8-2Dan Walsh 2.5.8-1Dan Walsh 2.5.7-1Dan Walsh 2.5.6-1Dan Walsh 2.5.5-2Dan Walsh 2.5.5-1Dan Walsh 2.5.4-2Dan Walsh 2.5.4-1Dan Walsh 2.5.3-3Dan Walsh 2.5.3-2Dan Walsh 2.5.3-1Dan Walsh 2.5.2-6Dan Walsh 2.5.2-5Dan Walsh 2.5.2-4Dan Walsh 2.5.2-3Dan Walsh 2.5.2-2Dan Walsh 2.5.2-1Dan Walsh 2.5.1-5Dan Walsh 2.5.1-4Dan Walsh 2.5.1-2Dan Walsh 2.5.1-1Dan Walsh 2.4.6-20Dan Walsh 2.4.6-19Dan Walsh 2.4.6-18Dan Walsh 2.4.6-17Dan Walsh 2.4.6-16Dan Walsh 2.4.6-15Dan Walsh 2.4.6-14Dan Walsh 2.4.6-13Dan Walsh 2.4.6-12Dan Walsh 2.4.6-11Dan Walsh 2.4.6-10Dan Walsh 2.4.6-9Dan Walsh 2.4.6-8Dan Walsh 2.4.6-7Dan Walsh 2.4.6-6Dan Walsh 2.4.6-5Dan Walsh 2.4.6-4Dan Walsh 2.4.6-3Dan Walsh 2.4.6-1Dan Walsh 2.4.5-4Dan Walsh 2.4.5-3Dan Walsh 2.4.5-2Dan Walsh 2.4.5-1Dan Walsh 2.4.4-2Dan Walsh 2.4.4-2Dan Walsh 2.4.4-1Dan Walsh 2.4.3-13Dan Walsh 2.4.3-12Dan Walsh 2.4.3-11Dan Walsh 2.4.3-10Dan Walsh 2.4.3-9Dan Walsh 2.4.3-8Dan Walsh 2.4.3-7Dan Walsh 2.4.3-6Dan Walsh 2.4.3-5Dan Walsh 2.4.3-4Dan Walsh 2.4.3-3Dan Walsh 2.4.3-2Dan Walsh 2.4.3-1Dan Walsh 2.4.2-8Dan Walsh 2.4.2-7James Antill 2.4.2-6Dan Walsh 2.4.2-5Dan Walsh 2.4.2-4Dan Walsh 2.4.2-3Dan Walsh 2.4.2-2Dan Walsh 2.4.2-1Dan Walsh 2.4.1-5Dan Walsh 2.4.1-4Dan Walsh 2.4.1-3Dan Walsh 2.4.1-2Dan Walsh 2.4-4Dan Walsh 2.4-3Dan Walsh 2.4-2Dan Walsh 2.4-1Dan Walsh 2.3.19-4Dan Walsh 2.3.19-3Dan Walsh 2.3.19-2Dan Walsh 2.3.19-1James Antill 2.3.18-10James Antill 2.3.18-9Dan Walsh 2.3.18-8Dan Walsh 2.3.18-7Dan Walsh 2.3.18-6Dan Walsh 2.3.18-5Dan Walsh 2.3.18-4Dan Walsh 2.3.18-3Dan Walsh 2.3.18-2Dan Walsh 2.3.18-1Dan Walsh 2.3.17-2Dan Walsh 2.3.17-1Dan Walsh 2.3.16-9Dan Walsh 2.3.16-8Dan Walsh 2.3.16-7Dan Walsh 2.3.16-6Dan Walsh 2.3.16-5Dan Walsh 2.3.16-4Dan Walsh 2.3.16-2Dan Walsh 2.3.16-1Dan Walsh 2.3.15-2Dan Walsh 2.3.15-1Dan Walsh 2.3.14-8Dan Walsh 2.3.14-7Dan Walsh 2.3.14-6Dan Walsh 2.3.14-4Dan Walsh 2.3.14-3Dan Walsh 2.3.14-2Dan Walsh 2.3.14-1Dan Walsh 2.3.13-6Dan Walsh 2.3.13-5Dan Walsh 2.3.13-4Dan Walsh 2.3.13-3Dan Walsh 2.3.13-2Dan Walsh 2.3.13-1Dan Walsh 2.3.12-2Dan Walsh 2.3.12-1Dan Walsh 2.3.11-1Dan Walsh 2.3.10-7Dan Walsh 2.3.10-6Dan Walsh 2.3.10-3Dan Walsh 2.3.10-1Dan Walsh 2.3.9-6Dan Walsh 2.3.9-5Dan Walsh 2.3.9-4Dan Walsh 2.3.9-3Dan Walsh 2.3.9-2Dan Walsh 2.3.9-1Dan Walsh 2.3.8-2Dan Walsh 2.3.7-1Dan Walsh 2.3.6-4Dan Walsh 2.3.6-3Dan Walsh 2.3.6-2Dan Walsh 2.3.6-1Dan Walsh 2.3.5-1Dan Walsh 2.3.4-1Dan Walsh 2.3.3-20Dan Walsh 2.3.3-19Dan Walsh 2.3.3-18Dan Walsh 2.3.3-17Dan Walsh 2.3.3-16Dan Walsh 2.3.3-15Dan Walsh 2.3.3-14Dan Walsh 2.3.3-13Dan Walsh 2.3.3-12Dan Walsh 2.3.3-11Dan Walsh 2.3.3-10Dan Walsh 2.3.3-9Dan Walsh 2.3.3-8Dan Walsh 2.3.3-7Dan Walsh 2.3.3-6Dan Walsh 2.3.3-5Dan Walsh 2.3.3-4Dan Walsh 2.3.3-3Dan Walsh 2.3.3-2Dan Walsh 2.3.3-1Dan Walsh 2.3.2-4Dan Walsh 2.3.2-3Dan Walsh 2.3.2-2Dan Walsh 2.3.2-1Dan Walsh 2.3.1-1Dan Walsh 2.2.49-1Dan Walsh 2.2.48-1Dan Walsh 2.2.47-5Dan Walsh 2.2.47-4Dan Walsh 2.2.47-3Dan Walsh 2.2.47-1Dan Walsh 2.2.46-2Dan Walsh 2.2.46-1Dan Walsh 2.2.45-3Dan Walsh 2.2.45-2Dan Walsh 2.2.45-1Dan Walsh 2.2.44-1Dan Walsh 2.2.43-4Dan Walsh 2.2.43-3Dan Walsh 2.2.43-2Dan Walsh 2.2.43-1Dan Walsh 2.2.42-4Dan Walsh 2.2.42-3Dan Walsh 2.2.42-2Dan Walsh 2.2.42-1Dan Walsh 2.2.41-1Dan Walsh 2.2.40-2Dan Walsh 2.2.40-1Dan Walsh 2.2.39-2Dan Walsh 2.2.39-1Dan Walsh 2.2.38-6Dan Walsh 2.2.38-5Dan Walsh 2.2.38-4Dan Walsh 2.2.38-3Dan Walsh 2.2.38-2Dan Walsh 2.2.38-1Dan Walsh 2.2.37-1Dan Walsh 2.2.36-2Dan Walsh 2.2.36-1James Antill 2.2.35-2Dan Walsh 2.2.35-1Dan Walsh 2.2.34-3Dan Walsh 2.2.34-2Dan Walsh 2.2.34-1Dan Walsh 2.2.33-1Dan Walsh 2.2.32-2Dan Walsh 2.2.32-1Dan Walsh 2.2.31-1Dan Walsh 2.2.30-2Dan Walsh 2.2.30-1Dan Walsh 2.2.29-6Russell Coker 2.2.29-5Dan Walsh 2.2.29-4Dan Walsh 2.2.29-3Dan Walsh 2.2.29-2Dan Walsh 2.2.29-1Dan Walsh 2.2.28-3Dan Walsh 2.2.28-2Dan Walsh 2.2.28-1Dan Walsh 2.2.27-1Dan Walsh 2.2.25-3Dan Walsh 2.2.25-2Dan Walsh 2.2.24-1Dan Walsh 2.2.23-19Dan Walsh 2.2.23-18Dan Walsh 2.2.23-17Karsten Hopp 2.2.23-16Dan Walsh 2.2.23-15Dan Walsh 2.2.23-14Dan Walsh 2.2.23-13Dan Walsh 2.2.23-12Jeremy Katz - 2.2.23-11Jeremy Katz - 2.2.23-10Dan Walsh 2.2.23-9Dan Walsh 2.2.23-8Dan Walsh 2.2.23-7Dan Walsh 2.2.23-5Dan Walsh 2.2.23-4Dan Walsh 2.2.23-3Dan Walsh 2.2.23-2Dan Walsh 2.2.23-1Dan Walsh 2.2.22-2Dan Walsh 2.2.22-1Dan Walsh 2.2.21-9Dan Walsh 2.2.21-8Dan Walsh 2.2.21-7Dan Walsh 2.2.21-6Dan Walsh 2.2.21-5Dan Walsh 2.2.21-4Dan Walsh 2.2.21-3Dan Walsh 2.2.21-2Dan Walsh 2.2.21-1Dan Walsh 2.2.20-1Dan Walsh 2.2.19-2Dan Walsh 2.2.19-1Dan Walsh 2.2.18-2Dan Walsh 2.2.18-1Dan Walsh 2.2.17-2Dan Walsh 2.2.16-1Dan Walsh 2.2.15-4Dan Walsh 2.2.15-3Dan Walsh 2.2.15-1Dan Walsh 2.2.14-2Dan Walsh 2.2.14-1Dan Walsh 2.2.13-1Dan Walsh 2.2.12-1Dan Walsh 2.2.11-2Dan Walsh 2.2.11-1Dan Walsh 2.2.10-1Dan Walsh 2.2.9-2Dan Walsh 2.2.9-1Dan Walsh 2.2.8-2Dan Walsh 2.2.7-1Dan Walsh 2.2.6-3Dan Walsh 2.2.6-2Dan Walsh 2.2.6-1Dan Walsh 2.2.5-1Dan Walsh 2.2.4-1Dan Walsh 2.2.3-1Dan Walsh 2.2.2-1Dan Walsh 2.2.1-1Dan Walsh 2.1.13-1Dan Walsh 2.1.12-3Dan Walsh 2.1.11-1Dan Walsh 2.1.10-1Jeremy Katz - 2.1.9-2Dan Walsh 2.1.9-1Dan Walsh 2.1.8-3Dan Walsh 2.1.8-2Dan Walsh 2.1.8-1Dan Walsh 2.1.7-4Dan Walsh 2.1.7-3Dan Walsh 2.1.7-2Dan Walsh 2.1.7-1Dan Walsh 2.1.6-24Dan Walsh 2.1.6-23Dan Walsh 2.1.6-22Dan Walsh 2.1.6-21Dan Walsh 2.1.6-20Dan Walsh 2.1.6-18Dan Walsh 2.1.6-17Dan Walsh 2.1.6-16Dan Walsh 2.1.6-15Dan Walsh 2.1.6-14Dan Walsh 2.1.6-13Dan Walsh 2.1.6-11Dan Walsh 2.1.6-10Dan Walsh 2.1.6-9Dan Walsh 2.1.6-8Dan Walsh 2.1.6-5Dan Walsh 2.1.6-4Dan Walsh 2.1.6-3Dan Walsh 2.1.6-2Dan Walsh 2.1.6-1Dan Walsh 2.1.4-2Dan Walsh 2.1.4-1Dan Walsh 2.1.3-1Jeremy Katz - 2.1.2-3Dan Walsh 2.1.2-2Dan Walsh 2.1.2-1Dan Walsh 2.1.1-3Dan Walsh 2.1.1-2Dan Walsh 2.1.1-1Dan Walsh 2.1.0-3Dan Walsh 2.1.0-2.Dan Walsh 2.1.0-1.Dan Walsh 2.0.11-2.Dan Walsh 2.0.11-1.Dan Walsh 2.0.9-1.Dan Walsh 2.0.8-1.Dan Walsh 2.0.7-3Dan Walsh 2.0.7-2Dan Walsh 2.0.6-2Dan Walsh 2.0.5-4Dan Walsh 2.0.5-1Dan Walsh 2.0.4-1Dan Walsh 2.0.2-2Dan Walsh 2.0.2-1Dan Walsh 2.0.1-2Dan Walsh 2.0.1-1- Allow sssd_t domain setpgid Resolves:rhbz#1419836- Upgrade fails %post: Re-declaration of type pkcsslotd_t Resolves: rhbz#1411660- Allow systemd container to read/write usermodehelperstate Resolves: rhbz#1408126 - Allow glusterd_t to bind on glusterd_port_t udp ports. Resolves: rhbz#1408128- Allow glusterd_t to bind on glusterd_port_t udp ports. Resolves: rhbz#1408128 - Allow glusterd_t send signals to userdomain. Label new glusterd binaries as glusterd_exec_t Resolves: rhbz#1408128 - Fixes for containers - Allow containers to attempt to write to unix_sysctls. - Allow cotainers to use the FD's leaked to them from parent processes. Resolves: rhbz#1408126 - Allow systemd to stop glusterd_t domains. Resolves: rhbz#1408125- Update ctdbd_t policy to reflect all changes. Resolves: rhbz#1403266- Allow ctdbd_t domain transition to rpcd_t Resolves:rhbz#1403266- Make working CTDB:NFS: CTDB failover from selinux-policy POV Resolves: rhbz#1403266- Allow puppetagent_t to access timedated dbus. Use the systemd_dbus_chat_timedated interface to allow puppetagent_t the access. Resolves: rhbz#1400505- Update systemd on RHEL-7.2 box to version from RHEL-7.3 and then as a separate yum command update the selinux policy systemd will start generating USER_AVC denials and will start returning "Access Denied" errors to DBus clients. Resolves: rhbz#1394715- Allow cluster_t communicate to fprintd_t via dbus Resolves: rhbz#1349798- Fix error message during update from RHEL-7.2 to RHEL-7.3, when /usr/sbin/semanage command is not installed and selinux-policy-migrate-local-changes.sh script is executed in %post install phase of selinux-policy package Resolves: rhbz#1393045- Allow GlusterFS with RDMA transport to be started correctly. It requires ipc_lock capability together with rw permission on rdma_cm device. Resolves:#1386620 - Allow glusterd to get attributes on /sys/kernel/config directory. Resolves:#1386621- Use selinux-policy-migrate-local-changes.sh instead of migrateStore* macros Resolves: rhbz#1383450 - Add selinux-policy-migrate-local-changes service Resolves: rhbz#1383450- Allow sssd_selinux_manager_t to manage also dir class. Resolves: rhbz#1380687 - Add interface seutil_manage_default_contexts_dirs() Resolves: rhbz#1380687- Add virt_sandbox_use_nfs -> virt_use_nfs boolean substitution. Resolves: rhbz#1355783- Allow pcp_pmcd_t domain transition to lvm_t Add capability kill and sys_ptrace to pcp_pmlogger_t Resolves: rhbz#1309883- Allow ftp daemon to manage apache_user_content Resolves: rhbz#1097775 - Label /etc/sysconfig/oracleasm as oracleasm_conf_t Resolves: rhbz#1331383 - Allow oracleasm to rw inherited fixed disk device Resolves: rhbz#1331383 - Allow collectd to connect on unix_stream_socket Resolves: rhbz#1377259- Allow iscsid create netlink iscsid sockets. Resolves: rhbz#1358266 - Improve regexp for power_unit_file_t files. To catch just systemd power unit files. Resolves: rhbz#1375462- Update oracleasm SELinux module that can manage oracleasmfs_t blk files. Add dac_override cap to oracleasm_t domain. Resolves: rhbz#1331383 - Add few rules to pcp SELinux module to make ti able to start pcp_pmlogger service Resolves: rhbz#1206525- Add oracleasm_conf_t type and allow oracleasm_t to create /dev/oracleasm Resolves: rhbz#1331383 - Label /usr/share/pcp/lib/pmie as pmie_exec_t and /usr/share/pcp/lib/pmlogger as pmlogger_exec_t Resolves: rhbz#1206525 - Allow mdadm_t to getattr all device nodes Resolves: rhbz#1365171 - Add interface dbus_dontaudit_stream_connect_system_dbusd() Resolves:rhbz#1052880 - Add virt_stub_* interfaces for docker policy which is no longer a part of our base policy. Resolves: rhbz#1372705 - Allow guest-set-user-passwd to set users password. Resolves: rhbz#1369693 - Allow samdbox domains to use msg class Resolves: rhbz#1372677 - Allow domains using kerberos to read also kerberos config dirs Resolves: rhbz#1368492 - Allow svirt_sandbox_domains to r/w onload sockets Resolves: rhbz#1342930 - Add interface fs_manage_oracleasm() Resolves: rhbz#1331383 - Label /dev/kfd as hsa_device_t Resolves: rhbz#1373488 - Update seutil_manage_file_contexts() interface that caller domain can also manage file_context_t dirs Resolves: rhbz#1368097 - Add interface to write to nsfs inodes Resolves: rhbz#1372705 - Allow systemd services to use PrivateNetwork feature Resolves: rhbz#1372705 - Add a type and genfscon for nsfs. Resolves: rhbz#1372705 - Allow run sulogin_t in range mls_systemlow-mls_systemhigh. Resolves: rhbz#1290400- Allow arpwatch to create netlink netfilter sockets. Resolves: rhbz#1358261 - Fix file context for /etc/pki/pki-tomcat/ca/ - new interface oddjob_mkhomedir_entrypoint() - Move label for /var/lib/docker/vfs/ to proper SELinux module - Allow mdadm to get attributes from all devices. - Label /etc/puppetlabs as puppet_etc_t. - Allow systemd-machined to communicate to lxc container using dbus - Allow systemd_resolved to send dbus msgs to userdomains Resolves: rhbz#1236579 - Allow systemd-resolved to read network sysctls Resolves: rhbz#1236579 - Allow systemd_resolved to connect on system bus. Resolves: rhbz#1236579 - Make entrypoint oddjob_mkhomedir_exec_t for unconfined_t - Label all files in /dev/oracleasmfs/ as oracleasmfs_t Resolves: rhbz#1331383- Label /etc/pki/pki-tomcat/ca/ as pki_tomcat_cert_t Resolves:rhbz#1366915 - Allow certmonger to manage all systemd unit files Resolves:rhbz#1366915 - Grant certmonger "chown" capability Resolves:rhbz#1366915 - Allow ipa_helper_t stream connect to dirsrv_t domain Resolves: rhbz#1368418 - Update oracleasm SELinux module Resolves: rhbz#1331383 - label /var/lib/kubelet as svirt_sandbox_file_t Resolves: rhbz#1369159 - Add few interfaces to cloudform.if file Resolves: rhbz#1367834 - Label /var/run/corosync-qnetd and /var/run/corosync-qdevice as cluster_var_run_t. Note: corosync policy is now par of rhcs module Resolves: rhbz#1347514 - Allow krb5kdc_t to read krb4kdc_conf_t dirs. Resolves: rhbz#1368492 - Update networkmanager_filetrans_named_content() interface to allow source domain to create also temad dir in /var/run. Resolves: rhbz#1365653 - Allow teamd running as NetworkManager_t to access netlink_generic_socket to allow multiple network interfaces to be teamed together. Resolves: rhbz#1365653 - Label /dev/oracleasmfs as oracleasmfs_t. Add few interfaces related to oracleasmfs_t type Resolves: rhbz#1331383 - A new version of cloud-init that supports the effort to provision RHEL Atomic on Microsoft Azure requires some a new rules that allows dhclient/dhclient hooks to call cloud-init. Resolves: rhbz#1367834 - Allow iptables to creating netlink generic sockets. Resolves: rhbz#1364359- Allow ipmievd domain to create lock files in /var/lock/subsys/ Resolves:rhbz#1349058 - Update policy for ipmievd daemon. Resolves:rhbz#1349058 - Dontaudit hyperkvp to getattr on non security files. Resolves: rhbz#1349356 - Label /run/corosync-qdevice and /run/corosync-qnetd as corosync_var_run_t Resolves: rhbz#1347514 - Fixed lsm SELinux module - Add sys_admin capability to sbd domain Resolves: rhbz#1322725 - Allow vdagent to comunnicate with systemd-logind via dbus Resolves: rhbz#1366731 - Allow lsmd_plugin_t domain to create fixed_disk device. Resolves: rhbz#1238066 - Allow opendnssec domain to create and manage own tmp dirs/files Resolves: rhbz#1366649 - Allow opendnssec domain to read system state Resolves: rhbz#1366649 - Update opendnssec_manage_config() interface to allow caller domain also manage opendnssec_conf_t dirs Resolves: rhbz#1366649 - Allow rasdaemon to mount/unmount tracefs filesystem. Resolves: rhbz#1364380 - Label /usr/libexec/iptables/iptables.init as iptables_exec_t Allow iptables creating lock file in /var/lock/subsys/ Resolves: rhbz#1367520 - Modify interface den_read_nvme() to allow also read nvme_device_t block files. Resolves: rhbz#1362564 - Label /var/run/storaged as lvm_var_run_t. Resolves: rhbz#1264390 - Allow unconfineduser to run ipa_helper_t. Resolves: rhbz#1361636- Dontaudit mock to write to generic certs. Resolves: rhbz#1271209 - Add labeling for corosync-qdevice and corosync-qnetd daemons, to run as cluster_t Resolves: rhbz#1347514 - Revert "Label corosync-qnetd and corosync-qdevice as corosync_t domain" - Allow modemmanager to write to systemd inhibit pipes Resolves: rhbz#1365214 - Label corosync-qnetd and corosync-qdevice as corosync_t domain Resolves: rhbz#1347514 - Allow ipa_helper to read network state Resolves: rhbz#1361636 - Label oddjob_reqiest as oddjob_exec_t Resolves: rhbz#1361636 - Add interface oddjob_run() Resolves: rhbz#1361636 - Allow modemmanager chat with systemd_logind via dbus Resolves: rhbz#1362273 - Allow NetworkManager chat with puppetagent via dbus Resolves: rhbz#1363989 - Allow NetworkManager chat with kdumpctl via dbus Resolves: rhbz#1363977 - Allow sbd send msgs to syslog Allow sbd create dgram sockets. Allow sbd to communicate with kernel via dgram socket Allow sbd r/w kernel sysctls. Resolves: rhbz#1322725 - Allow ipmievd_t domain to re-create ipmi devices Label /usr/libexec/openipmi-helper as ipmievd_exec_t Resolves: rhbz#1349058 - Allow rasdaemon to use tracefs filesystem. Resolves: rhbz#1364380 - Fix typo bug in dirsrv policy - Some logrotate scripts run su and then su runs unix_chkpwd. Allow logrotate_t domain to check passwd. Resolves: rhbz#1283134 - Add ipc_lock capability to sssd domain. Allow sssd connect to http_cache_t Resolves: rhbz#1362688 - Allow dirsrv to read dirsrv_share_t content Resolves: rhbz#1363662 - Allow virtlogd_t to append svirt_image_t files. Resolves: rhbz#1358140 - Allow hypervkvp domain to read hugetlbfs dir/files. Resolves: rhbz#1349356 - Allow mdadm daemon to read nvme_device_t blk files Resolves: rhbz#1362564 - Allow selinuxusers and unconfineduser to run oddjob_request Resolves: rhbz#1361636 - Allow sshd server to acces to Crypto Express 4 (CEX4) devices. Resolves: rhbz#1362539 - Fix labeling issue in init.fc file. Path /usr/lib/systemd/fedora-* changed to /usr/lib/systemd/rhel-*. Resolves: rhbz#1363769 - Fix typo in device interfaces Resolves: rhbz#1349058 - Add interfaces for managing ipmi devices Resolves: rhbz#1349058 - Add interfaces to allow mounting/umounting tracefs filesystem Resolves: rhbz#1364380 - Add interfaces to allow rw tracefs filesystem Resolves: rhbz#1364380 - Add interface dev_read_nvme() to allow reading Non-Volatile Memory Host Controller devices. Resolves: rhbz#1362564 - Label /sys/kernel/debug/tracing filesystem Resolves: rhbz#1364380 - Allow sshd setcap capability. This is needed due to latest changes in sshd Resolves: rhbz#1357857- Dontaudit mock_build_t can list all ptys. Resolves: rhbz#1271209 - Allow ftpd_t to mamange userhome data without any boolean. Resolves: rhbz#1097775 - Add logrotate permissions for creating netlink selinux sockets. Resolves: rhbz#1283134 - Allow lsmd_plugin_t to exec ldconfig. Resolves: rhbz#1238066 - Allow vnstatd domain to read /sys/class/net/ files Resolves: rhbz#1358243 - Remove duplicate allow rules in spamassassin SELinux module Resolves:rhbz#1358175 - Allow spamc_t and spamd_t domains create .spamassassin file in user homedirs Resolves:rhbz#1358175 - Allow sshd setcap capability. This is needed due to latest changes in sshd Resolves: rhbz#1357857 - Add new MLS attribute to allow relabeling objects higher than system low. This exception is needed for package managers when processing sensitive data. Resolves: rhbz#1330464 - Allow gnome-keyring also manage user_tmp_t sockets. Resolves: rhbz#1257057 - corecmd: Remove fcontext for /etc/sysconfig/libvirtd Resolves:rhbz#1351382- Allow ipa_dnskey domain to search cache dirs Resolves: rhbz#1350957- Allow ipa-dnskey read system state. Reasolves: rhbz#1350957 - Allow dogtag-ipa-ca-renew-agent-submit labeled as certmonger_t to create /var/log/ipa/renew.log file Resolves: rhbz#1350957- Allow firewalld to manage net_conf_t files. Resolves:rhbz#1304723 - Allow logrotate read logs inside containers. Resolves: rhbz#1303514 - Allow sssd to getattr on fs_t Resolves: rhbz#1356082 - Allow opendnssec domain to manage bind chace files Resolves: rhbz#1350957 - Fix typo in rhsmcertd policy module Resolves: rhbz#1329475 - Allow systemd to get status of systemd-logind daemon Resolves: rhbz#1356141 - Label more ndctl devices not just ndctl0 Resolves: rhbz#1355809- Allow rhsmcertd to copy certs into /etc/docker/cert.d - Add interface docker_rw_config() Resolves: rhbz#1344500 - Fix logrotate fc file to label also /var/lib/logrotate/ dir as logrotate_var_lib_t Resolves: rhbz#1355632 - Allow rhsmcertd to read network sysctls Resolves: rhbz#1329475 - Label /var/log/graphite-web dir as httpd_log_t Resolves: rhbz#1310898 - Allow mock to use generic ptys Resolves: rhbz#1271209 - Allow adcli running as sssd_t to write krb5.keytab file. Resolves: rhbz#1356082 - Allow openvswitch connect to openvswitch_port_t type. Resolves: rhbz#1335024 - Add SELinux policy for opendnssec service. Resolves: rhbz#1350957 - Create new SELinux type for /usr/libexec/ipa/ipa-dnskeysyncd Resolves: rhbz#1350957 - label /dev/ndctl0 device as nvram_device_t Resolves: rhbz#1355809- Allow lttng tools to block suspending Resolves: rhbz#1256374 - Allow creation of vpnaas in openstack Resolves: rhbz#1352710 - virt: add strict policy for virtlogd daemon Resolves:rhbz#1311606 - Update makefile to support snapperd_contexts file Resolves: rhbz#1352681- Allow udev to manage systemd-hwdb files - Add interface systemd_hwdb_manage_config() Resolves: rhbz#1350756 - Fix paths to infiniband devices. This allows use more then two infiniband interfaces. Resolves: rhbz#1210263- Allow virtual machines to rw infiniband devices. Resolves: rhbz#1210263 - Allow opensm daemon to rw infiniband_mgmt_device_t Resolves: rhbz#1210263 - Allow systemd_hwdb_t to relabel /etc/udev/hwdb.bin file. Resolves: rhbz#1350756 - Make label for new infiniband_mgmt deivices Resolves: rhbz#1210263- Fix typo in brltty SELinux module - Add new SELinux module sbd Resolves: rhbz#1322725 - Allow pcp dmcache metrics collection Resolves: rhbz#1309883 - Allow pkcs_slotd_t to create dir in /var/lock Add label pkcs_slotd_log_t Resolves: rhbz#1350782 - Allow openvpn to create sock files labeled as openvpn_var_run_t Resolves: rhbz#1328246 - Allow hypervkvp daemon to getattr on all filesystem types. Resolves: rhbz#1349356 - Allow firewalld to create net_conf_t files Resolves: rhbz#1304723 - Allow mock to use lvm Resolves: rhbz#1271209 - Allow keepalived to create netlink generic sockets. Resolves: rhbz#1349809 - Allow mirromanager creating log files in /tmp Resolves:rhbz#1328818 - Rename few modules to make it consistent with source files Resolves: rhbz#1351445 - Allow vmtools_t to transition to rpm_script domain Resolves: rhbz#1342119 - Allow nsd daemon to manage nsd_conf_t dirs and files Resolves: rhbz#1349791 - Allow cluster to create dirs in /var/run labeled as cluster_var_run_t Resolves: rhbz#1346900 - Allow sssd read also sssd_conf_t dirs Resolves: rhbz#1350535 - Dontaudit su_role_template interface to getattr /proc/kcore Dontaudit su_role_template interface to getattr /dev/initctl Resolves: rhbz#1086240 - Add interface lvm_getattr_exec_files() Resolves: rhbz#1271209 - Fix typo Compliling vs. Compiling Resolves: rhbz#1351445- Allow krb5kdc_t to communicate with sssd Resolves: rhbz#1319933 - Allow prosody to bind on prosody ports Resolves: rhbz#1304664 - Add dac_override caps for fail2ban-client Resolves: rhbz#1316678 - dontaudit read access for svirt_t on the file /var/db/nscd/group Resolves: rhbz#1301637 - Allow inetd child process to communicate via dbus with systemd-logind Resolves: rhbz#1333726 - Add label for brltty log file Resolves: rhbz#1328818 - Allow dspam to read the passwd file Resolves: rhbz#1286020 - Allow snort_t to communicate with sssd Resolves: rhbz#1284908 - svirt_sandbox_domains need to be able to execmod for badly built libraries. Resolves: rhbz#1206339 - Add policy for lttng-tools package. Resolves: rhbz#1256374 - Make mirrormanager as application domain. Resolves: rhbz#1328234 - Add support for the default lttng-sessiond port - tcp/5345. This port is used by LTTng 2.x central tracing registry session daemon. - Add prosody ports Resolves: rhbz#1304664 - Allow sssd read also sssd_conf_t dirs Resolves: rhbz#1350535- Label /var/lib/softhsm as named_cache_t. Allow named_t to manage named_cache_t dirs. Resolves:rhbz#1331315 - Label named-pkcs11 binary as named_exec_t. Resolves: rhbz#1331315 - Allow glusterd daemon to get systemd status Resolves: rhbz#1321785 - Allow logrotate dbus-chat with system_logind daemon Resolves: rhbz#1283134 - Allow pcp_pmlogger to read kernel network state Allow pcp_pmcd to read cron pid files Resolves: rhbz#1336211 - Add interface cron_read_pid_files() Resolves: rhbz#1336211 - Allow pcp_pmlogger to create unix dgram sockets Resolves: rhbz#1336211 - Add hwloc-dump-hwdata SELinux policy Resolves: rhbz#1344054 - Remove non-existing jabberd_spool_t() interface and add new jabbertd_var_spool_t. Resolves: rhbz#1121171 - Remove non-existing interface salk_resetd_systemctl() and replace it with sanlock_systemctl_sanlk_resetd() Resolves: rhbz#1259764 - Create label for openhpid log files. esolves: rhbz#1259764 - Label /var/lib/ganglia as httpd_var_lib_t Resolves: rhbz#1260536 - Allow firewalld_t to create entries in net_conf_t dirs. Resolves: rhbz#1304723 - Allow journalctl to read syslogd_var_run_t files. This allows to staff_t and sysadm_t to read journals Resolves: rhbz#1288255 - Include patch from distgit repo: policy-RHEL-7.1-flask.patch. Resolves: rhbz#1329560 - Update refpolicy to handle hwloc Resolves: rhbz#1344054 - Label /etc/dhcp/scripts dir as bin_t - Allow sysadm_role to run journalctl_t domain. This allows sysadm user to read journals. Resolves: rhbz#1288255- Allow firewalld_t to create entries in net_conf_t dirs. Resolves: rhbz#1304723 - Allow journalctl to read syslogd_var_run_t files. This allows to staff_t and sysadm_t to read journals Resolves: rhbz#1288255 - Allow mongod log to syslog. Resolves: rhbz#1306995 - Allow rhsmcertd connect to port tcp 9090 Resolves: rhbz#1337319 - Label for /bin/mail(x) was removed but /usr/bin/mail(x) not. This path is also needed to remove. Resolves: rhbz#1262483 Resolves: rhbz#1277506 - Label /usr/libexec/mimedefang-wrapper as spamd_exec_t. Resolves: rhbz#1301516 - Add new boolean spamd_update_can_network. Resolves: rhbz#1305469 - Allow rhsmcertd connect to tcp netport_port_t Resolves: rhbz#1329475 - Fix SELinux context for /usr/share/mirrormanager/server/mirrormanager to Label all binaries under dir as mirrormanager_exec_t. Resolves: rhbz#1328234 - Allow prosody to bind to fac_restore tcp port. Resolves: rhbz#1321787 - Allow ninfod to read raw packets Resolves: rhbz#1317964 - Allow pegasus get attributes from qemu binary files. Resolves: rhbz#1260835 - Allow pegasus get attributes from qemu binary files. Resolves: rhbz#1271159 - Allow tuned to use policykit. This change is required by cockpit. Resolves: rhbz#1346464 - Allow conman_t to read dir with conman_unconfined_script_t binary files. Resolves: rhbz#1297323 - Allow pegasus to read /proc/sysinfo. Resolves: rhbz#1265883 - Allow sysadm_role to run journalctl_t domain. This allows sysadm user to read journals. Resolves: rhbz#1288255 - Label tcp ports:16379, 26379 as redis_port_t Resolves: rhbz#1348471 - Allow systemd to relabel /var and /var/lib directories during boot. - Add files_relabel_var_dirs() and files_relabel_var_dirs() interfaces. - Add files_relabelto_var_lib_dirs() interface. - Label tcp port 2004 as mailbox_port_t. Resolves: rhbz#1332843 - Label tcp and udp port 5582 as fac_restore_port_t Resolves: rhbz#1321787 - Allow sysadm_t user to run postgresql-setup. Resolves: rhbz#1282543 - Allow sysadm_t user to dbus chat with oddjob_t. This allows confined admin run oddjob mkhomedirfor script. Resolves: rhbz#1297480 - Update netlink socket classes.- Allow conman to kill conman_unconfined_script. Resolves: rhbz#1297323 - Make conman_unconfined_script_t as init_system_domain. Resolves:rhbz#1297323 - Allow init dbus chat with apmd. Resolves:rhbz#995898 - Patch /var/lib/rpm is symlink to /usr/share/rpm on Atomic, due to this change we need to label also /usr/share/rpm as rpm_var_lib_t. Resolves: rhbz#1233252 - Dontaudit xguest_gkeyringd_t stream connect to system_dbusd_t Resolves: rhbz#1052880 - Add mediawiki rules to proper scope Resolves: rhbz#1301186 - Dontaudit xguest_gkeyringd_t stream connect to system_dbusd_t Resolves: rhbz#1052880 - Allow mysqld_safe to inherit rlimit information from mysqld Resolves: rhbz#1323673 - Allow collectd_t to stream connect to postgresql. Resolves: rhbz#1344056 - Allow mediawiki-script to read /etc/passwd file. Resolves: rhbz#1301186 - Add filetrans rule that NetworkManager_t can create net_conf_t files in /etc. Resolves: rhbz#1344505 - Add labels for mediawiki123 Resolves: rhbz#1293872 - Fix label for all fence_scsi_check scripts - Allow ip netns to mounton root fs and unmount proc_t fs. Resolves: rhbz#1343776 Resolves: rhbz#1286851 - Allow sysadm_t to run newaliases command. Resolves: rhbz#1344828 - Add interface sysnet_filetrans_named_net_conf() Resolves: rhbz#1344505- Fix several issues related to the SELinux Userspace changes- Allow glusterd domain read krb5_keytab_t files. Resolves: rhbz#1343929 - Fix typo in files_setattr_non_security_dirs. Resolves: rhbz#1115987- Allow tmpreaper_t to read/setattr all non_security_file_type dirs Resolves: rhbz#1115987 - Allow firewalld to create firewalld_var_run_t directory. Resolves: rhbz#1304723 - Add interface firewalld_read_pid_files() Resolves: rhbz#1304723 - Label /usr/libexec/rpm-ostreed as rpm_exec_t. Resolves: rhbz#1340542 - Allow sanlock service to read/write cephfs_t files. Resolves: rhbz#1315332 - Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) - Added missing docker interfaces: - docker_typebounds - docker_entrypoint Resolves: rhbz#1236580 - Add interface files_setattr_non_security_dirs() Resolves: rhbz#1115987 - Add support for onloadfs - Allow iptables to read firewalld pid files. Resolves: rhbz#1304723 - Add SELinux support for ceph filesystem. Resolves: rhbz#1315332 - Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) Resolves: rhbz#1236580- Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) - Added missing docker interfaces: - docker_typebounds - docker_entrypoint Resolves: rhbz#1236580 - New interfaces needed for systemd-machinectl Resolves: rhbz#1236580 - New interfaces needed by systemd-machine Resolves: rhbz#1236580 - Add interface allowing sending and receiving messages from virt over dbus. Resolves: rhbz#1236580 - Backport docker policy from Fedora. Related: #1303123 Resolves: #1341257 - Allow NetworkManager_t and policykit_t read access to systemd-machined pid files. Resolves: rhbz#1236580 - Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) - Added interfaces needed by new docker policy. Related: rhbz#1303123 - Add support for systemd-machined daemon Resolves: rhbz#1236580 - Allow rpm-ostree domain transition to install_t domain from init_t. Resolves: rhbz#1340542- dnsmasq: allow NetworkManager to control dnsmasq via D-Bus Resolves: rhbz#1336722 - Directory Server (389-ds-base) has been updated to use systemd-ask-password. In order to function correctly we need the following added to dirsrv.te Resolves: rhbz#1333198 - sftpd_* booleans are functionless these days. Resolves: rhbz#1335656 - Label /var/log/ganesha.log as gluster_log_t Allow glusterd_t domain to create glusterd_log_t files. Label /var/run/ganesha.pid as gluster_var_run_t. Resolves: rhbz#1335828 - Allow ganesha-ha.sh script running under unconfined_t domain communicate with glusterd_t domains via dbus. Resolves: rhbz#1336760 - Allow ganesha daemon labeled as glusterd_t create /var/lib/nfs/ganesha dir labeled as var_lib_nfs_t. Resolves: rhbz#1336737 - Label /usr/libexec/storaged/storaged as lvm_exec_t to run storaged daemon in lvm_t SELinux domain. Resolves: rhbz#1264390 - Allow systemd_hostanmed_t to read /proc/sysinfo labeled as sysctl_t. Resolves: rhbz#1337061 - Revert "Allow all domains some process flags." Resolves: rhbz#1303644 - Revert "Remove setrlimit to all domains." Resolves: rhbz#1303644 - Label /usr/sbin/xrdp* files as bin_t Resolves: rhbz#1276777 - Add mls support for some db classes Resolves: rhbz#1303651 - Allow systemd_resolved_t to check if ipv6 is disabled. Resolves: rhbz#1236579 - Allow systemd_resolved to read systemd_networkd run files. Resolves: rhbz#1236579- Allow ganesha-ha.sh script running under unconfined_t domain communicate with glusterd_t domains via dbus. Resolves: rhbz#1336760 - Allow ganesha daemon labeled as glusterd_t create /var/lib/nfs/ganesha dir labeled as var_lib_nfs_t. Resolves: rhbz#1336737- Allow logwatch to domtrans to postqueue Resolves: rhbz#1331542 - Label /var/log/ganesha.log as gluster_log_t - Allow glusterd_t domain to create glusterd_log_t files. - Label /var/run/ganesha.pid as gluster_var_run_t. Resolves: rhbz#1335828 - Allow zabbix to connect to postgresql port Resolves: rhbz#1330479 - Add userdom_destroy_unpriv_user_shared_mem() interface. Related: rhbz#1306403 - systemd-logind remove all IPC objects owned by a user on a logout. This covers also SysV memory. This change allows to destroy unpriviledged user SysV shared memory segments. Resolves: rhbz#1306403- We need to restore contexts on /etc/passwd*,/etc/group*,/etc/*shadow* during install phase to get proper labeling for these files until selinux-policy pkgs are installed. Resolves: rhbz#1333952- Add interface glusterd_dontaudit_read_lib_dirs() Resolves: rhbz#1295680 - Dontaudit Occasionally observing AVC's while running geo-rep automation Resolves: rhbz#1295680 - Allow glusterd to manage socket files labeled as glusterd_brick_t. Resolves: rhbz#1331561 - Create new apache content template for files stored in user homedir. This change is needed to make working booleans: - httpd_enable_homedirs - httpd_read_user_content Resolves: rhbz#1246522 - Allow stunnel create log files. Resolves: rhbz#1296851 - Label tcp port 8181 as intermapper_port_t. Resolves: rhbz#1334783 - Label tcp/udp port 2024 as xinuexpansion4_port_t Resolves: rhbz#1334783 - Label tcp port 7002 as afs_pt_port_t Label tcp/udp port 2023 as xinuexpansion3_port_t Resolves: rhbz#1334783 - Dontaudit ldconfig read gluster lib files. Resolves: rhbz#1295680 - Add interface auth_use_nsswitch() to systemd_domain_template. Resolves: rhbz#1236579- Label /usr/bin/ganesha.nfsd as glusterd_exec_t to run ganesha as glusterd_t. Allow glusterd_t stream connect to rpbind_t. Allow cluster_t to create symlink /var/lib/nfs labeled as var_lib_nfs_t. Add interface rpc_filetrans_var_lib_nfs_content() Add new boolean: rpcd_use_fusefs to allow rpcd daemon use fusefs. Resolves: rhbz#1312809 Resolves: rhbz#1323947 - Allow dbus chat between httpd_t and oddjob_t. Resolves: rhbz#1324144 - Label /usr/libexec/ipa/oddjob/org.freeipa.server.conncheck as ipa_helper_exec_t. Resolves: rhbz#1324144 - Label /var/log/ipareplica-conncheck.log file as ipa_log_t Allow ipa_helper_t domain to manage logs labeledas ipa_log_t Allow ipa_helper_t to connect on http and kerberos_passwd ports. Resolves: rhbz#1324144 - Allow prosody to listen on port 5000 for mod_proxy65. Resolves: rhbz#1316918 - Allow pcp_pmcd_t domain to manage docker lib files. This rule is needed to allow pcp to collect container information when SELinux is enabled. Resolves: rhbz#1309454- Allow runnig php7 in fpm mode. From selinux-policy side, we need to allow httpd to read/write hugetlbfs. Resolves: rhbz#1319442 - Allow openvswitch daemons to run under openvswitch Linux user instead of root. This change needs allow set capabilities: chwon, setgid, setuid, setpcap. Resolves: rhbz#1296640 - Remove ftpd_home_dir() boolean from distro policy. Reason is that we cannot make this working due to m4 macro language limits. Resolves: rhbz#1097775 - /bin/mailx is labeled sendmail_exec_t, and enters the sendmail_t domain on execution. If /usr/sbin/sendmail does not have its own domain to transition to, and is not one of several products whose behavior is allowed by the sendmail_t policy, execution will fail. In this case we need to label /bin/mailx as bin_t. Resolves: rhbz#1262483 - Allow nsd daemon to create log file in /var/log as nsd_log_t Resolves: rhbz#1293140 - Sanlock policy update. - New sub-domain for sanlk-reset daemon Resolves: rhbz#1212324 - Label all run tgtd files, not just socket files Resolves: rhbz#1280280 - Label all run tgtd files, not just socket files. Resolves: rhbz#1280280 - Allow prosody to stream connect to sasl. This will allow using cyrus authentication in prosody. Resolves: rhbz#1321049 - unbound wants to use ephemeral ports as a default configuration. Allow to use also udp sockets. Resolves: rhbz#1318224 - Allow prosody to listen on port 5000 for mod_proxy65. Resolves: rhbz#1316918 - Allow targetd to read/write to /dev/mapper/control device. Resolves: rhbz#1063714 - Allow KDM to get status about power services. This change allow kdm to be able do shutdown. Resolves: rhbz#1316724 - Allow systemd-resolved daemon creating netlink_route sockets. Resolves:rhbz#1236579 - Allow systemd_resolved_t to read /etc/passwd file. Allow systemd_resolved_t to write to kmsg_device_t when 'systemd.log_target=kmsg' option is used Resolves: rhbz#1065362 - Label /etc/selinux/(minimum|mls|targeted)/active/ as semanage_store_t Resolves: rhbz#1321943 - Label all nvidia binaries as xserver_exec_t Resolves: rhbz#1322283- Create new permissivedomains CIL module and make it active. Resolves: rhbz#1320451 - Add support for new mock location - /usr/libexec/mock/mock. Resolves: rhbz#1271209 - Allow bitlee to create bitlee_var_t dirs. Resolves: rhbz#1268651 - Allow CIM provider to read sssd public files. Resolves: rhbz#1263339 - Fix some broken interfaces in distro policy. Resolves: rhbz#1121171 - Allow power button to shutdown the laptop. Resolves: rhbz#995898 - Allow lsm plugins to create named fixed disks. Resolves: rhbz#1238066 - Add default labeling for /etc/Pegasus/cimserver_current.conf. It is a correct patch instead of the current /etc/Pegasus/pegasus_current.confResolves: rhbz#1278777 - Allow hyperv domains to rw hyperv devices. Resolves: rhbz#1309361 - Label /var/www/html(/.*)?/wp_backups(/.*)? as httpd_sys_rw_content_t.Resolves: rhbz#1246780 - Create conman_unconfined_script_t type for conman script stored in /use/share/conman/exec/ Resolves: rhbz#1297323 - Fix rule definitions for httpd_can_sendmail boolean. We need to distinguish between base and contrib. - Add support for /dev/mptctl device used to check RAID status. Resolves: rhbz#1258029 - Create hyperv* devices and create rw interfaces for this devices. Resolves: rhbz#1309361 - Add fixes for selinux userspace moving the policy store to /var/lib/selinux. - Remove optional else block for dhcp ping- Allow rsync_export_all_ro boolean to read also non_auth_dirs/files/symlinks. Resolves: rhbz#1263770 - Fix context of "/usr/share/nginx/html". Resolves: rhbz#1261857 - Allow pmdaapache labeled as pcp_pmcd_t access to port 80 for apache diagnostics Resolves: rhbz#1270344 - Allow pmlogger to create pmlogger.primary.socket link file. Resolves: rhbz#1270344 - Label nagios scripts as httpd_sys_script_exec_t. Resolves: rhbz#1260306 - Add dontaudit interface for kdumpctl_tmp_t Resolves: rhbz#1156442 - Allow mdadm read files in EFI partition. Resolves: rhbz#1291801 - Allow nsd_t to bind on nsf_control tcp port. Allow nsd_crond_t to read nsd pid. Resolves: rhbz#1293140 - Label some new nsd binaries as nsd_exec_t Allow nsd domain net_admin cap. Create label nsd_tmp_t for nsd tmp files/dirs Resolves: rhbz#1293140 - Add filename transition that /etc/princap will be created with cupsd_rw_etc_t label in cups_filetrans_named_content() interface. Resolves: rhbz#1265102 - Add missing labeling for /usr/libexec/abrt-hook-ccpp. Resolves: rhbz#1213409 - Allow pcp_pmie and pcp_pmlogger to read all domains state. Resolves: rhbz#1206525 - Label /etc/redis-sentinel.conf as redis_conf_t. Allow redis_t write to redis_conf_t. Allow redis_t to connect on redis tcp port. Resolves: rhbz#1275246 - cockpit has grown content in /var/run directory Resolves: rhbz#1279429 - Allow collectd setgid capability Resolves:#1310898 - Remove declaration of empty booleans in virt policy. Resolves: rhbz#1103153 - Fix typo in drbd policy - Add new drbd file type: drbd_var_run_t. Allow drbd_t to manage drbd_var_run_t files/dirs. Allow drbd_t create drbd_tmp_t files in /tmp. Resolves: rhbz#1134883 - Label /etc/ctdb/events.d/* as ctdb_exec_t. Allow ctdbd_t to setattr on ctdbd_exec_t files. Resolves: rhbz#1293788 - Allow abrt-hook-ccpp to get attributes of all processes because of core_pattern. Resolves: rhbz#1254188 - Allow abrt_t to read sysctl_net_t files. Resolves: rhbz#1254188 - The ABRT coredump handler has code to emulate default core file creation The handler runs in a separate process with abrt_dump_oops_t SELinux process type. abrt-hook-ccpp also saves the core dump file in the very same way as kernel does and a user can specify CWD location for a coredump. abrt-hook-ccpp has been made as a SELinux aware apps to create this coredumps with correct labeling and with this commit the policy rules have been updated to allow access all non security files on a system. - Allow abrt-hook-ccpp to getattr on all executables. - Allow setuid/setgid capabilities for abrt-hook-ccpp. Resolves: rhbz#1254188 - abrt-hook-ccpp needs to have setfscreate access because it is SELinux aware and compute a target labeling. Resolves: rhbz#1254188 - Allow abrt-hook-ccpp to change SELinux user identity for created objects. Resolves: rhbz#1254188 - Dontaudit write access to inherited kdumpctl tmp files. Resolves: rbhz#1156442 - Add interface to allow reading files in efivarfs - contains Linux Kernel configuration options for UEFI systems (UEFI Runtime Variables) Resolves: rhbz#1291801 - Label 8952 tcp port as nsd_control. Resolves: rhbz#1293140 - Allow ipsec to use pam. Resolves: rhbz#1315700 - Allow to log out to gdm after screen was resized in session via vdagent. Resolves: rhbz#1249020 - Allow setrans daemon to read /proc/meminfo. Resolves: rhbz#1316804 - Allow systemd_networkd_t to write kmsg, when kernel was started with following params: systemd.debug systemd.log_level=debug systemd.log_target=kmsg Resolves: rhbz#1298151 - Label tcp port 5355 as llmnr-> Link-Local Multicast Name Resolution Resolves: rhbz#1236579 - Add new selinux policy for systemd-resolved dawmon. Resolves: rhbz#1236579 - Add interface ssh_getattr_server_keys() interface. Resolves: rhbz#1306197 - Allow run sshd-keygen on second boot if first boot fails after some reason and content is not syncedon the disk. These changes are reflecting this commit in sshd. http://pkgs.fedoraproject.org/cgit/rpms/openssh.git/commit/?id=af94f46861844cbd6ba4162115039bebcc8f78ba rhbz#1299106 Resolves: rhbz#1306197 - Allow systemd_notify_t to write to kmsg_device_t when 'systemd.log_target=kmsg' option is used. Resolves: rhbz#1309417 - Remove bin_t label for /etc/ctdb/events.d/. We need to label this scripts as ctdb_exec_t. Resolves: rhbz#1293788- Prepare selinux-policy package for userspace release 2016-02-23. Resolves: rhbz#1305982- Allow sending dbus msgs between firewalld and system_cronjob domains. Resolves: rhbz#1284902 - Allow zabbix-agentd to connect to following tcp sockets. One of zabbix-agentd functions is get service status of ftp,http,innd,pop,smtp protocols. Resolves: rhbz#1242506 - Add new boolean tmpreaper_use_cifs() to allow tmpreaper to run on local directories being shared with Samba. Resolves: rhbz#1284972 - Add support for systemd-hwdb daemon. Resolves: rhbz#1257940 - Add interface fs_setattr_cifs_dirs(). Resolves: rhbz#1284972- Add new SELinux policy fo targetd daemon. Resolves: rhbz#1063714 - Add new SELinux policy fo ipmievd daemon. Resolves: rhbz#1083031 - Add new SELinux policy fo hsqldb daemon. Resolves: rhbz#1083171 - Add new SELinux policy for blkmapd daemon. Resolves: rhbz#1072997 - Allow p11-child to connect to apache ports. - Label /usr/sbin/lvmlockd binary file as lvm_exec_t. Resolves: rhbz#1278028 - Add interface "lvm_manage_lock" to lvm policy. Resolves: rhbz#1063714- Allow openvswitch domain capability sys_rawio. Resolves: rhbz#1278495- Allow openvswitch to manage hugetlfs files and dirs. Resolves: rhbz#1278495 - Add fs_manage_hugetlbfs_files() interface. Resolves: rhbz#1278495- Allow smbcontrol domain to send sigchld to ctdbd domain. Resolves: #1293784 - Allow openvswitch read/write hugetlb filesystem. Resolves: #1278495Allow hypervvssd to list all mountpoints to have VSS live backup working correctly. Resolves:#1247880- Revert Add missing labeling for /usr/libexec/abrt-hook-ccpp patch Resolves: #1254188- Allow search dirs in sysfs types in kernel_read_security_state. Resolves: #1254188 - Fix kernel_read_security_state interface that source domain of this interface can search sysctl_fs_t dirs. Resolves: #1254188- Add missing labeling for /usr/libexec/abrt-hook-ccpp as a part of #1245477 and #1242467 bugs Resolves: #1254188 - We need allow connect to xserver for all sandbox_x domain because we have one type for all sandbox processes. Resolves:#1261938- Remove labeling for modules_dep_t file contexts to have labeled them as modules_object_t. - Update files_read_kernel_modules() to contain modutils_read_module_deps_files() calling because module deps labeling could remain and it allows to avoid regressions. Resolves:#1266928- We need to require sandbox_web_type attribute in sandbox_x_domain_template(). Resolves: #1261938 - ipsec: The NM helper needs to read the SAs Resolves: #1259786 - ipsec: Allow ipsec management to create ptys Resolves: #1259786- Add temporary fixes for sandbox related to #1103622. It allows to run everything under one sandbox type. Resolves:#1261938 - Allow abrt_t domain to write to kernel msg device. Resolves: #1257828 - Allow rpcbind_t domain to change file owner and group Resolves: #1265266- Allow smbcontrol to create a socket in /var/samba which uses for a communication with smbd, nmbd and winbind. Resolves: #1256459- Allow dirsrv-admin script to read passwd file. Allow dirsrv-admin script to read httpd pid files. Label dirsrv-admin unit file and allow dirsrv-admin domains to use it. Resolves: #1230300 - Allow qpid daemon to connect on amqp tcp port. Resolves: #1261805- Label /etc/ipa/nssdb dir as cert_t Resolves:#1262718 - Do not provide docker policy files which is shipped by docker-selinux.rpm Resolves:#1262812- Add labels for afs binaries: dafileserver, davolserver, salvageserver, dasalvager Resolves: #1192338 - Add lsmd_plugin_t sys_admin capability, Allow lsmd_plugin_t getattr from sysfs filesystem. Resolves: #1238079 - Allow rhsmcertd_t send signull to unconfined_service_t domains. Resolves: #1176078 - Remove file transition from snmp_manage_var_lib_dirs() interface which created snmp_var_lib_t dirs in var_lib_t. - Allow openhpid_t daemon to manage snmp files and dirs. Resolves: #1243902 - Allow mdadm_t domain read/write to general ptys and unallocated ttys. Resolves: #1073314 - Add interface unconfined_server_signull() to allow domains send signull to unconfined_service_t Resolves: #1176078- Allow systemd-udevd to access netlink_route_socket to change names for network interfaces without unconfined.pp module. It affects also MLS. Resolves:#1250456- Fix labeling for fence_scsi_check script Resolves: #1255020 - Allow openhpid to read system state Allow openhpid to connect to tcp http port. Resolves: #1244248 - Allow openhpid to read snmp var lib files. Resolves: #1243902 - Allow openvswitch_t domains read kernel dependencies due to openvswitch run modprobe - Allow unconfined_t domains to create /var/run/xtables.lock with iptables_var_run_t Resolves: #1243403 - Remove bin_t label for /usr/share/cluster/fence_scsi_check\.pl Resolves: #1255020- Fix regexp in chronyd.fc file Resolves: #1243764 - Allow passenger to getattr filesystem xattr Resolves: #1196555 - Label mdadm.conf.anackbak as mdadm_conf_t file. Resolves: #1088904 - Revert "Allow pegasus_openlmi_storage_t create mdadm.conf.anacbak file in /etc." - Allow watchdog execute fenced python script. Resolves: #1255020 - Added inferface watchdog_unconfined_exec_read_lnk_files() - Remove labeling for /var/db/.*\.db as etc_t to label db files as system_db_t. Resolves: #1230877- Allow watchdog execute fenced python script. Resolves: #1255020 - Added inferface watchdog_unconfined_exec_read_lnk_files() - Label /var/run/chrony-helper dir as chronyd_var_run_t. Resolves: #1243764 - Allow dhcpc_t domain transition to chronyd_t Resolves: #1243764- Fix postfix_spool_maildrop_t,postfix_spool_flush_t contexts in postfix.fc file. Resolves: #1252442- Allow exec pidof under hypervkvp domain. Resolves: #1254870 - Allow hypervkvp daemon create connection to the system DBUS Resolves: #1254870- Allow openhpid_t to read system state. Resolves: #1244248 - Added labels for files provided by rh-nginx18 collection Resolves: #1249945 - Dontaudit block_suspend capability for ipa_helper_t, this is kernel bug. Allow ipa_helper_t capability net_admin. Allow ipa_helper_t to list /tmp. Allow ipa_helper_t to read rpm db. Resolves: #1252968 - Allow rhsmcertd exec rhsmcertd_var_run_t files and rhsmcerd_tmp_t files. This rules are in hide_broken_sympthons until we find better solution. Resolves: #1243431 - Allow abrt_dump_oops_t to read proc_security_t files. - Allow abrt_dump_oops to signull all domains Allow abrt_dump_oops to read all domains state Allow abrt_dump_oops to ptrace all domains - Add interface abrt_dump_oops_domtrans() - Add mountpoint dontaudit access check in rhsmcertd policy. Resolves: #1243431 - Allow samba_net_t to manage samba_var_t sock files. Resolves: #1252937 - Allow chrome setcap to itself. Resolves: #1251996 - Allow httpd daemon to manage httpd_var_lib_t lnk_files. Resolves: #1253706 - Allow chronyd exec systemctl Resolves: #1243764 - Add inteface chronyd_signal Allow timemaster_t send generic signals to chronyd_t. Resolves: #1243764 - Added interface fs_dontaudit_write_configfs_dirs - Add label for kernel module dep files in /usr/lib/modules Resolves:#916635 - Allow kernel_t domtrans to abrt_dump_oops_t - Added to files_dontaudit_write_all_mountpoints intefface new dontaudit rule, that domain included this interface dontaudit capability dac_override. - Allow systemd-networkd to send logs to systemd-journald. Resolves: #1236616- Fix label on /var/tmp/kiprop_0 Resolves:#1220763 - Allow lldpad_t to getattr tmpfs_t. Resolves: #1246220 - Label /dev/shm/lldpad.* as lldapd_tmpfs_t Resolves: #1246220 - Allow audisp client to read system state.- Allow pcp_domain to manage pcp_var_lib_t lnk_files. Resolves: #1252341 - Label /var/run/xtables.* as iptables_var_run_t Resolves: #1243403- Add interface to read/write watchdog device - Add labels for /dev/memory_bandwith and /dev/vhci. Thanks ssekidde Resolves:#1210237 - Allow apcupsd_t to read /sys/devices Resolves:#1189185 - Allow logrotate to reload services. Resolves: #1242453 - Allow openhpid use libwatchdog plugin. (Allow openhpid_t rw watchdog device) Resolves: #1244260 - Allow openhpid liboa_soap plugin to read generic certs. Resolves: #1244248 - Allow openhpid liboa_soap plugin to read resolv.conf file. Resolves: #1244248 - Label /usr/libexec/chrony-helper as chronyd_exec_t - Allow chronyd_t to read dhcpc state. - Allow chronyd to execute mkdir command.- Allow mdadm to access /dev/random and add support to create own files/dirs as mdadm_tmpfs_t. Resolves:#1073314 - Allow udev, lvm and fsadm to access systemd-cat in /var/tmp/dracut if 'dracut -fv' is executed in MLS. - Allow admin SELinu users to communicate with kernel_t. It is needed to access /run/systemd/journal/stdout if 'dracut -vf' is executed. We allow it for other SELinux users. - Allow sysadm to execute systemd-sysctl in the sysadm_t domain. It is needed for ifup command in MLS mode. - Add fstools_filetrans_named_content_fsadm() and call it for named_filetrans_domain domains. We need to be sure that /run/blkid is created with correct labeling. Resolves:#1183503 - Add support for /etc/sanlock which is writable by sanlock daemon. Resolves:#1231377 - Allow useradd add homedir located in /var/lib/kdcproxy in ipa-server RPM scriplet. Resolves:#1243775 - Allow snapperd to pass data (one way only) via pipe negotiated over dbus Resolves:#1250550 - Allow lsmd also setuid capability. Some commands need to executed under root privs. Other commands are executed under unprivileged user.- Allow openhpid to use libsnmp_bc plugin (allow read snmp lib files). Resolves: #1243902 - Allow lsm_plugin_t to read sysfs, read hwdata, rw to scsi_generic_device Resolves: #1238079 - Allow lsm_plugin_t to rw raw_fixed_disk. Resolves:#1238079 - Allow rhsmcertd to send signull to unconfined_service.- Allow httpd_suexec_t to read and write Apache stream sockets Resolves: #1243569 - Allow qpid to create lnk_files in qpid_var_lib_t Resolves: #1247279- Allow drbd to get attributes from filesystems. - Allow redis to read kernel parameters. Resolves: #1209518 - Allow virt_qemu_ga_t domtrans to passwd_t - Allow audisp_remote_t to start power unit files domain to allow halt system. Resolves: #1186780 - Allow audisp_remote_t to read/write user domain pty. Resolves: #1186780 - Label /usr/sbin/chpasswd as passwd_exec_t. - Allow sysadm to administrate ldap environment and allow to bind ldap port to allow to setup an LDAP server (389ds). Resolves:#1221121- gnome_dontaudit_search_config() needs to be a part of optinal_policy in pegasus.te - Allow pcp_pmcd daemon to read postfix config files. - Allow pcp_pmcd daemon to search postfix spool dirs. Resolves: #1213740 - Added Booleans: pcp_read_generic_logs. Resolves: #1213740 - Allow drbd to read configuration options used when loading modules. Resolves: #1134883 - Allow glusterd to manage nfsd and rpcd services. - Allow glusterd to communicate with cluster domains over stream socket. - glusterd call pcs utility which calls find for cib.* files and runs pstree under glusterd. Dontaudit access to security files and update gluster boolean to reflect these changes.- Allow glusterd to manage nfsd and rpcd services. - Allow networkmanager to communicate via dbus with systemd_hostanmed. Resolves: #1234954 - Allow stream connect logrotate to prosody. - Add prosody_stream_connect() interface. - httpd should be able to send signal/signull to httpd_suexec_t, instead of httpd_suexec_exec_t. - Allow prosody to create own tmp files/dirs. Resolves:#1212498- Allow networkmanager read rfcomm port. Resolves:#1212498 - Remove non exists label. - Fix *_admin intefaces where body is not consistent with header. - Label /usr/afs/ as afs_files_t, Allow afs_bosserver_t create afs_config_t and afs_dbdir_t dirs under afs_files_t, Allow afs_bosserver_t read kerberos config - Remove non exits nfsd_ro_t label. - Make all interfaces related to openshift_cache_t as deprecated. - Add rpm_var_run_t label to rpm_admin header - Add jabberd_lock_t label to jabberd_admin header. - Add samba_unconfined_script_exec_t to samba_admin header. - inn daemon should create innd_log_t objects in var_log_t instead of innd_var_run_t - Fix ctdb policy - Add samba_signull_winbind() - Add samba_signull_unconfined_net() - Allow ctdbd_t send signull to samba_unconfined_net_t. - Allow openshift_initrc_t to communicate with firewalld over dbus Resolves:#1221326- Allow gluster to connect to all ports. It is required by random services executed by gluster. - Add interfaces winbind_signull(), samba_unconfined_net_signull(). - Dontaudit smbd_t block_suspend capability. This is kernel bug. - Allow ctdbd sending signull to process winbind, samba_unconfined_net, to checking if processes exists. - Add tmpreaper booleans to use nfs_t and samba_share_t. - Fix path from /usr/sbin/redis-server to /usr/bin/redis-server - Allow connect ypserv to portmap_port_t - Fix paths in inn policy, Allow innd read innd_log_t dirs, Allow innd execute innd_etc_t files - Add support for openstack-nova-* packages - Allow NetworkManager_t send signull to dnssec_trigger_t. - Allow glusterd to execute showmount in the showmount domain. - Label swift-container-reconciler binary as swift_t. - Allow dnssec_trigger_t relabelfrom dnssec_trigger_var_run_t files. - Add cobbler_var_lib_t to "/var/lib/tftpboot/boot(/.*)?" Resolves:#1213540 - Merge all nova_* labels under one nova_t.- Add logging_syslogd_run_nagios_plugins boolean for rsyslog to allow transition to nagios unconfined plugins Resolves:#1233550 - Allow dnssec_trigger_t create dnssec_trigger_tmp_t files in /var/tmp/ - Add support for oddjob based helper in FreeIPA. - Add new boolean - httpd_run_ipa to allow httpd process to run IPA helper and dbus chat with oddjob. - Add nagios_domtrans_unconfined_plugins() interface. - Update mta_filetrans_named_content() interface to cover more db files. Resolves:#1167468 - Add back ftpd_use_passive_mode boolean with fixed description. - Allow pmcd daemon stream connect to mysqld. - Allow pcp domains to connect to own process using unix_stream_socket. Resolves:#1213709 - Allow abrt-upload-watch service to dbus chat with ABRT daemon and fsetid capability to allow run reporter-upload correctly. - Add new boolean - httpd_run_ipa to allow httpd process to run IPA helper and dbus chat with oddjob. - Add support for oddjob based helper in FreeIPA. - Allow dnssec_trigger_t create dnssec_trigger_tmp_t files in /var/tmp/- Allow iptables to read ctdbd lib files. Resolves:#1224879 - Add systemd_networkd_t to nsswitch domains. - Allow drbd_t write to fixed_disk_device. Reason: drbdmeta needs write to fixed_disk_device during initialization. Resolves:#1130675 - Allow NetworkManager write to sysfs. - Fix cron_system_cronjob_use_shares boolean to call fs interfaces which contain only entrypoint permission. - Add cron_system_cronjob_use_shares boolean to allow system cronjob to be executed from shares - NFS, CIFS, FUSE. It requires "entrypoint" permissios on nfs_t, cifs_t and fusefs_t SELinux types. - Allow NetworkManager write to sysfs. - Allow ctdb_t sending signull to smbd_t, for checking if smbd process exists. - Dontaudit apache to manage snmpd_var_lib_t files/dirs. - Add interface snmp_dontaudit_manage_snmp_var_lib_files(). - Dontaudit mozilla_plugin_t cap. sys_ptrace. - Rename xodbc-connect port to xodbc_connect - Allow ovsdb-server to connect on xodbc-connect and ovsdb tcp ports. - Allow iscsid write to fifo file kdumpctl_tmp_t. Appears when kdump generates the initramfs during the kernel boot. - Dontaudit chrome to read passwd file. - nrpe needs kill capability to make gluster moniterd nodes working. Resolves:#1235587- We allow can_exec() on ssh_keygen on gluster. But there is a transition defined by init_initrc_domain() because we need to allow execute unconfined services by glusterd. So ssh-keygen ends up with ssh_keygen_t and we need to allow to manage /var/lib/glusterd/geo-replication/secret.pem. - Allow sshd to execute gnome-keyring if there is configured pam_gnome_keyring.so. - Allow gnome-keyring executed by passwd to access /run/user/UID/keyring to change a password. - Label gluster python hooks also as bin_t. - Allow glusterd to interact with gluster tools running in a user domain - Add glusterd_manage_lib_files() interface. - ntop reads /var/lib/ntop/macPrefix.db and it needs dac_override. It has setuid/setgid. - Allow samba_t net_admin capability to make CIFS mount working. - S30samba-start gluster hooks wants to search audit logs. Dontaudit it. Resolves:#1224879- Allow glusterd to send generic signals to systemd_passwd_agent processes. - Allow glusterd to access init scripts/units without defined policy - Allow glusterd to run init scripts. - Allow glusterd to execute /usr/sbin/xfs_dbin glusterd_t domain. Resolves:#1224879- Calling cron_system_entry() in pcp_domain_template needs to be a part of optional_policy block. - Allow samba-net to access /var/lib/ctdbd dirs/files. - Allow glusterd to send a signal to smbd. - Make ctdbd as home manager to access also FUSE. - Allow glusterd to use geo-replication gluster tool. - Allow glusterd to execute ssh-keygen. - Allow glusterd to interact with cluster services. - Allow glusterd to connect to the system DBUS for service (acquire_svc). - Label /dev/log correctly. Resolves:#1230932- Back port the latest F22 changes to RHEL7. It should fix most of RHEL7.2 bugs - Add cgdcbxd policy Resolves:#1072493 - Fix ftp_homedir boolean Resolve:#1097775 - Dontaudit ifconfig writing inhertited /var/log/pluto.log. - Allow cluster domain to dbus chat with systemd-logind. Resolves:#1145215 - Dontaudit write access to inherited kdumpctl tmp files Resolves:#1156442 - Allow isnsd_t to communicate with sssd Resolves:#1167702 - Allow rwho_t to communicate with sssd Resolves:#1167718 - Allow sblim_gatherd_t to communicate with sssd Resolves:#1167732 - Allow pkcs_slotd_t to communicate with sssd Resolves:#1167737 - Allow openvswitch_t to communicate with sssd Resolves:#1167816 - Allow mysqld_safe_t to communicate with sssd Resolves:#1167832 - Allow sshd_keygen_t to communicate with sssd Resolves:#1167840 - Add support for iprdbg logging files in /var/log. Resolves:#1174363 - Allow tmpreaper_t to manage ntp log content Resolves:#1176965 - Allow gssd_t to manage ssh keyring Resolves:#1184791 - Allow httpd_sys_script_t to send system log messages Resolves:#1185231 - Allow apcupsd_t to read /sys/devices Resolves:#1189185 - Allow dovecot_t sys_resource capability Resolves:#1191143 - Add support for mongod/mongos systemd unit files. Resolves:#1197038 - Add bacula fixes - Added label mysqld_etc_t for /etc/my.cnf.d/ dir. Resolves:#1203991- Label /usr/libexec/postgresql-ctl as postgresql_exec_t. - Add more restriction on entrypoint for unconfined domains. - Only allow semanage_t to be able to setenforce 0, no all domains that use selinux_semanage interface - Allow all domains to read /dev/urandom. It is needed by all apps/services linked to libgcrypt. There is no harm to allow it by default. - Update policy/mls for sockets related to access perm. Rules were contradictory. - Add nagios_run_pnp4nagios and nagios_run_sudo booleans to allow r un sudo from NRPE utils scripts and allow run nagios in conjunction w ith PNP4Nagios. Resolves:#1201054 - Don't use deprecated userdom_manage_tmpfs_role() interface calliing and use userdom_manage_tmp_role() instead. - Update virt_read_pid_files() interface to allow read also symlinks with virt_var_run_t type - Label /var/lib/tftpboot/aarch64(/.*)? and /var/lib/tftpboot/images2(/.*)? - Add support for iprdbg logging files in /var/log. - Add fixes to rhsmcertd_t - Allow puppetagent_t to transfer firewalld messages over dbus - Add support for /usr/libexec/mongodb-scl-helper RHSCL helper script. - Added label mysqld_etc_t for /etc/my.cnf.d/ dir. - Add support for mongod/mongos systemd unit files. - cloudinit and rhsmcertd need to communicate with dbus - Allow dovecot_t sys_resource capability- ALlow mongod execmem by default. - Update policy/mls for sockets. Rules were contradictory. Resolves:#1207133 - Allow a user to login with different security level via ssh.- Update seutil_manage_config() interface. Resolves:#1185962 - Allow pki-tomcat relabel pki_tomcat_etc_rw_t. - Turn on docker_transition_unconfined by default- Allow virtd to list all mountpoints. Resolves:#1180713- pkcsslotd_lock_t should be an alias for pkcs_slotd_lock_t. - Allow fowner capability for sssd because of selinux_child handling. - ALlow bind to read/write inherited ipsec pipes - Allow hypervkvp to read /dev/urandom and read addition states/config files. - Allow gluster rpm scripletto create glusterd socket with correct labeling. This is a workaround until we get fix in glusterd. - Add glusterd_filetrans_named_pid() interface - Allow radiusd to connect to radsec ports. - Allow setuid/setgid for selinux_child - Allow lsmd plugin to connect to tcp/5988 by default. - Allow lsmd plugin to connect to tcp/5989 by default. - Update ipsec_manage_pid() interface. Resolves:#1184978- Update ipsec_manage_pid() interface. Resolves:#1184978- Allow ntlm_auth running in winbind_helper_t to access /dev/urandom.- Add auditing support for ipsec. Resolves:#1182524 - Label /ostree/deploy/rhel-atomic-host/deploy directory as system_conf_t - Allow netutils chown capability to make tcpdump working with -w- Allow ipsec to execute _updown.netkey script to run unbound-control. - Allow neutron to read rpm DB. - Add additional fixes for hyperkvp * creates new ifcfg-{name} file * Runs hv_set_ifconfig.sh, which does the following * Copies ifcfg-{name} to /etc/sysconfig/network-scripts - Allow svirt to read symbolic links in /sys/fs/cgroups labeled as tmpfs_t - Add labeling for pacemaker.log. - Allow radius to connect/bind radsec ports. - Allow pm-suspend running as virt_qemu_ga to read /var/log/pm-suspend.log - Allow virt_qemu_ga to dbus chat with rpm. - Update virt_read_content() interface to allow read also char devices. - Allow glance-registry to connect to keystone port. Resolves:#1181818- Allow sssd to send dbus all user domains. Resolves:#1172291 - Allow lsm plugin to read certificates. - Fix labeling for keystone CGI scripts. - Make snapperd back as unconfined domain.- Fix bugs in interfaces discovered by sepolicy. - Allow slapd to read /usr/share/cracklib/pw_dict.hwm. - Allow lsm plugins to connect to tcp/18700 by default. - Allow brltty mknod capability to allow create /var/run/brltty/vcsa. - Fix pcp_domain_template() interface. - Fix conman.te. - Allow mon_fsstatd to read /proc/sys/fs/binfmt_misc - Allow glance-scrubber to connect tcp/9191. - Add missing setuid capability for sblim-sfcbd. - Allow pegasus ioctl() on providers. - Add conman_can_network. - Allow chronyd to read chrony conf files located in /run/timemaster/. - Allow radius to bind on tcp/1813 port. - dontaudit block suspend access for openvpn_t - Allow conman to create files/dirs in /tmp. - Update xserver_rw_xdm_keys() interface to have 'setattr'. Resolves:#1172291 - Allow sulogin to read /dev/urandom and /dev/random. - Update radius port definition to have also tcp/18121 - Label prandom as random_device_t. - Allow charon to manage files in /etc/strongimcv labeled as ipsec_conf_t.- Allow virt_qemu_ga_t to execute kmod. - Add missing files_dontaudit_list_security_dirs() for smbd_t in samba_export_all_ro boolean. - Add additionnal MLS attribute for oddjob_mkhomedir to create homedirs. Resolves:#1113725 - Enable OpenStack cinder policy - Add support for /usr/share/vdsm/daemonAdapter - Add support for /var/run/gluster- Remove old pkcsslotd.pp from minimum package - Allow rlogind to use also rlogin ports. - Add support for /usr/libexec/ntpdate-wrapper. Label it as ntpdate_exec_t. - Allow bacula to connect also to postgresql. - Label /usr/libexec/tomcat/server as tomcat_exec_t - Add support for /usr/sbin/ctdbd_wrapper - Add support for /usr/libexec/ppc64-diag/rtas_errd - Allow rpm_script_roles to access system_mail_t - Allow brltty to create /var/run/brltty - Allow lsmd plugin to access netlink_route_socket - Allow smbcontrol to read passwd - Add support for /usr/libexec/sssd/selinux_child and create sssd_selinux_manager_t domain for it Resolves:#1140106 - Allow osad to execute rhn_check - Allow load_policy to rw inherited sssd pipes because of selinux_child - Allow admin SELinux users mounting / as private within a new mount namespace as root in MLS - Add additional fixes for su_restricted_domain_template to make moving to sysadm_r and trying to su working correctly - Add additional booleans substitions- Add seutil_dontaudit_access_check_semanage_module_store() interface Resolves:#1140106 - Update to have all _systemctl() interface also init_reload_services(). - Dontaudit access check on SELinux module store for sssd. - Add labeling for /sbin/iw. - Allow named_filetrans_domain to create ibus directory with correct labeling.- Allow radius to bind tcp/1812 radius port. - Dontaudit list user_tmp files for system_mail_t. - Label virt-who as virtd_exec_t. - Allow rhsmcertd to send a null signal to virt-who running as virtd_t. - Add missing alias for _content_rw_t. Resolves:#1089177 - Allow spamd to access razor-agent.log. - Add fixes for sfcb from libvirt-cim TestOnly bug. - Allow NetworkManager stream connect on openvpn. - Make /usr/bin/vncserver running as unconfined_service_t. - getty_t should be ranged in MLS. Then also local_login_t runs as ranged domain. - Label /etc/docker/certs.d as cert_t.- Label /etc/strongimcv as ipsec_conf_file_t. - Add support for /usr/bin/start-puppet-ca helper script Resolves:#1160727 - Allow rpm scripts to enable/disable transient systemd units. Resolves:#1154613 - Make kpropdas nsswitch domain Resolves:#1153561 - Make all glance domain as nsswitch domains Resolves:#1113281 - Allow selinux_child running as sssd access check on /etc/selinux/targeted/modules/active - Allow access checks on setfiles/load_policy/semanage_lock for selinux_child running as sssd_t Resolves:#1140106- Dontaudit access check on setfiles/load_policy for sssd_t. Resolves:#1140106 - Add kdump_rw_inherited_kdumpctl_tmp_pipes() Resolves:#1156442 - Make linuxptp services as unconfined. - Added new policy linuxptp. Resolves:#1149693 - Label keystone cgi files as keystone_cgi_script_exec_t. Resolves:#1138424 - Make tuned as unconfined domain- Allow guest to connect to libvirt using unix_stream_socket. - Allow all bus client domains to dbus chat with unconfined_service_t. - Allow inetd service without own policy to run in inetd_child_t which is unconfined domain. - Make opensm as nsswitch domain to make it working with sssd. - Allow brctl to read meminfo. - Allow winbind-helper to execute ntlm_auth in the caller domain. Resolves:#1160339 - Make plymouthd as nsswitch domain to make it working with sssd. Resolves:#1160196 - Make drbd as nsswitch domain to make it working with sssd. - Make conman as nsswitch domain to make ipmitool.exp runing as conman_t working. - Add support for /var/lib/sntp directory. - Add fixes to allow docker to create more content in tmpfs ,and donaudit reading /proc - Allow winbind to read usermodehelper - Allow telepathy domains to execute shells and bin_t - Allow gpgdomains to create netlink_kobject_uevent_sockets - Allow mongodb to bind to the mongo port and mongos to run as mongod_t - Allow abrt to read software raid state. - Allow nslcd to execute netstat. - Allow dovecot to create user's home directory when they log into IMAP. - Allow login domains to create kernel keyring with different level.- Allow modemmanger to connectto itself Resolves:#1120152 - Allow pki_tomcat to create link files in /var/lib/pki-ca. Resolves:#1121744 - varnishd needs to have fsetid capability Resolves:#1125165 - Allow snapperd to dbus chat with system cron jobs. Resolves:#1152447 - Allow dovecot to create user's home directory when they log into IMAP Resolves:#1152773 - Add labeling for /usr/sbin/haproxy-systemd-wrapper wrapper to make haproxy running haproxy_t. - ALlow listen and accept on tcp socket for init_t in MLS. Previously it was for xinetd_t. - Allow nslcd to execute netstat. - Add suppor for keepalived unconfined scripts and allow keepalived to read all domain state and kill capability. - Allow nslcd to read /dev/urandom.- Add back kill permisiion for system class Resolves:#1150011- Add back kill permisiion for service class Resolves:#1150011 - Make rhsmcertd_t also as dbus domain. - Allow named to create DNS_25 with correct labeling. - Add cloudform_dontaudit_write_cloud_log() - Call auth_use_nsswitch to apache to read/write cloud-init keys. - Allow cloud-init to dbus chat with certmonger. - Fix path to mon_statd_initrc_t script. - Allow all RHCS services to read system state. - Allow dnssec_trigger_t to execute unbound-control in own domain. - kernel_read_system_state needs to be called with type. Moved it to antivirus.if. - Added policy for mon_statd and mon_procd services. BZ (1077821) - Allow opensm_t to read/write /dev/infiniband/umad1. - Allow mongodb to manage own log files. - Allow neutron connections to system dbus. - Add support for /var/lib/swiftdirectory. - Allow nova-scheduler to read certs. - Allow openvpn to access /sys/fs/cgroup dir. - Allow openvpn to execute systemd-passwd-agent in systemd_passwd_agent_t to make openvpn working with systemd. - Fix samba_export_all_ro/samba_export_all_rw booleans to dontaudit search/read security files. - Add auth_use_nsswitch for portreserve to make it working with sssd. - automount policy is non-base module so it needs to be called in optional block. - ALlow sensord to getattr on sysfs. - Label /usr/share/corosync/corosync as cluster_exec_t. - Allow lmsd_plugin to read passwd file. BZ(1093733) - Allow read antivirus domain all kernel sysctls. - Allow mandb to getattr on file systems - Allow nova-console to connect to mem_cache port. - Make sosreport as unconfined domain. - Allow mondogdb to 'accept' accesses on the tcp_socket port. - ALlow sanlock to send a signal to virtd_t.- Build also MLS policy Resolves:#1138424- Add back kill permisiion for system class - Allow iptables read fail2ban logs. - Fix radius labeled ports - Add userdom_manage_user_tmpfs_files interface - Allow libreswan to connect to VPN via NM-libreswan. - Label 4101 tcp port as brlp port - fix dev_getattr_generic_usb_dev interface - Allow all domains to read fonts - Make sure /run/systemd/generator and system is labeled correctly on creation. - Dontaudit aicuu to search home config dir. - Make keystone_cgi_script_t domain. Resolves:#1138424 - Fix bug in drbd policy, - Added support for cpuplug. - ALlow sanlock_t to read sysfs_t. - Added sendmail_domtrans_unconfined interface - Fix broken interfaces - radiusd wants to write own log files. - Label /usr/libexec/rhsmd as rhsmcertd_exec_t - Allow rhsmcertd send signull to setroubleshoot. - Allow rhsmcertd manage rpm db. - Added policy for blrtty. - Fix keepalived policy - Allow rhev-agentd dbus chat with systemd-logind. - Allow keepalived manage snmp var lib sock files. - Add support for /var/lib/graphite-web - Allow NetworkManager to create Bluetooth SDP sockets - It's going to do the the discovery for DUN service for modems with Bluez 5. - Allow swift to connect to all ephemeral ports by default. - Allow sssd to read selinux config to add SELinux user mapping. - Allow lsmd to search own plguins. - Allow abrt to read /dev/memto generate an unique machine_id and uses sosuploader's algorithm based off dmidecode[1] fields. - ALlow zebra for user/group look-ups. - Allow nova domains to getattr on all filesystems. - Allow collectd sys_ptrace and dac_override caps because of reading of /proc/%i/io for several processes. - Allow pppd to connect to /run/sstpc/sstpc-nm-sstp-service-28025 over unix stream socket. - Allow rhnsd_t to manage also rhnsd config symlinks. - ALlow user mail domains to create dead.letter. - Allow rabbitmq_t read rabbitmq_var_lib_t lnk files. - Allow pki-tomcat to change SELinux object identity. - Allow radious to connect to apache ports to do OCSP check - Allow git cgi scripts to create content in /tmp - Allow cockpit-session to do GSSAPI logins. - Allow sensord read in /proc - Additional access required by usbmuxd- Allow locate to look at files/directories without labels, and chr_file and blk_file on non dev file systems - Label /usr/lib/erlang/erts.*/bin files as bin_t - Add files_dontaudit_access_check_home_dir() inteface. - Allow udev_t mounton udev_var_run_t dirs #(1128618) - Add systemd_networkd_var_run_t labeling for /var/run/systemd/netif and allow systemd-networkd to manage it. - Add init_dontaudit_read_state() interface. - Add label for ~/.local/share/fonts - Allow unconfined_r to access unconfined_service_t. - Allow init to read all config files - Add new interface to allow creation of file with lib_t type - Assign rabbitmq port. - Allow unconfined_service_t to dbus chat with all dbus domains - Add new interfaces to access users keys. - Allow domains to are allowed to mounton proc to mount on files as well as dirs - Fix labeling for HOME_DIR/tmp and HOME_DIR/.tmp directories. - Add a port definition for shellinaboxd - Label ~/tmp and ~/.tmp directories in user tmp dirs as user_tmp_t - Allow userdomains to stream connect to pcscd for smart cards - Allow programs to use pam to search through user_tmp_t dires (/tmp/.X11-unix) - Update to rawhide-contrib changes Resolves:#1123844- Rebase to 3.13.1 which we have in Fedora21 Resolves:#1128284- Back port fixes from Fedora. Mainly OpenStack and Docker fixes- Add policy-rhel-7.1-{base,contrib} patches- Add support for us_cli ports - Fix labeling for /var/run/user//gvfs - add support for tcp/9697 - Additional rules required by openstack, needs backport to F20 and RHEL7 - Additional access required by docker - ALlow motion to use tcp/8082 port - Allow init_t to setattr/relabelfrom dhcp state files - Dontaudit antivirus domains read access on all security files by default - Add missing alias for old amavis_etc_t type - Allow block_suspend cap for haproxy - Additional fixes for instack overcloud - Allow OpenStack to read mysqld_db links and connect to MySQL - Remove dup filename rules in gnome.te - Allow sys_chroot cap for httpd_t and setattr on httpd_log_t - Allow iscsid to handle own unit files - Add iscsi_systemctl() - Allow mongod to create also sock_files in /run with correct labeling - Allow httpd to send signull to apache script domains and don't audit leaks - Allow rabbitmq_beam to connect to httpd port - Allow aiccu stream connect to pcscd - Allow dmesg to read hwdata and memory dev - Allow all freeipmi domains to read/write ipmi devices - Allow sblim_sfcbd to use also pegasus-https port - Allow rabbitmq_epmd to manage rabbit_var_log_t files - Allow chronyd to read /sys/class/hwmon/hwmon1/device/temp2_input - Allow docker to status any unit file and allow it to start generic unit files- Change hsperfdata_root to have as user_tmp_t Resolves:#1076523- Fix Multiple same specifications for /var/named/chroot/dev/zero - Add labels for /var/named/chroot_sdb/dev devices - Add support for strongimcv - Use kerberos_keytab_domains in auth_use_nsswitch - Update auth_use_nsswitch to make all these types as kerberos_keytab_domain to - Allow net_raw cap for neutron_t and send sigkill to dnsmasq - Fix ntp_filetrans_named_content for sntp-kod file - Add httpd_dbus_sssd boolean - Dontaudit exec insmod in boinc policy - Rename kerberos_keytab_domain to kerberos_keytab_domains - Add kerberos_keytab_domain() - Fix kerberos_keytab_template() - Make all domains which use kerberos as kerberos_keytab_domain Resolves:#1083670 - Allow kill capability to winbind_t- varnishd wants chown capability - update ntp_filetrans_named_content() interface - Add additional fixes for neutron_t. #1083335 - Dontaudit getattr on proc_kcore_t - Allow pki_tomcat_t to read ipa lib files - Allow named_filetrans_domain to create /var/cache/ibus with correct labelign - Allow init_t run /sbin/augenrules - Add dev_unmount_sysfs_fs and sysnet_manage_ifconfig_run interfaces - Allow unpriv SELinux user to use sandbox - Add default label for /tmp/hsperfdata_root- Add file subs also for /var/home- Allow xauth_t to read user_home_dir_t lnk_file - Add labeling for lightdm-data - Allow certmonger to manage ipa lib files - Add support for /var/lib/ipa - Allow pegasus to getattr virt_content - Added some new rules to pcp policy - Allow chrome_sandbox to execute config_home_t - Add support for ABRT FAF- Allow kdm to send signull to remote_login_t process - Add gear policy - Turn on gear_port_t - Allow cgit to read gitosis lib files by default - Allow vdagent to read xdm state - Allow NM and fcoeadm to talk together over unix_dgram_socket- Back port fixes for pegasus_openlmi_admin_t from rawhide Resolves:#1080973 - Add labels for ostree - Add SELinux awareness for NM - Label /usr/sbin/pwhistory_helper as updpwd_exec_t- add gnome_append_home_config() - Allow thumb to append GNOME config home files - Allow rasdaemon to rw /dev/cpu//msr - fix /var/log/pki file spec - make bacula_t as auth_nsswitch domain - Identify pki_tomcat_cert_t as a cert_type - Define speech-dispater_exec_t as an application executable - Add a new file context for /var/named/chroot/run directory - update storage_filetrans_all_named_dev for sg* devices - Allow auditctl_t to getattr on all removeable devices - Allow nsswitch_domains to stream connect to nmbd - Allow unprivusers to connect to memcached - label /var/lib/dirsrv/scripts-INSTANCE as bin_t- Allow also unpriv user to run vmtools - Allow secadm to read /dev/urandom and meminfo Resolves:#1079250 - Add booleans to allow docker processes to use nfs and samba - Add mdadm_tmpfs support - Dontaudit net_amdin for /usr/lib/jvm/java-1.7.0-openjdk-1.7.0.51-2.4.5.1.el7.x86_64/jre-abrt/bin/java running as pki_tomcat_t - Allow vmware-user-sui to use user ttys - Allow talk 2 users logged via console too - Allow ftp services to manage xferlog_t - Make all pcp domanis as unconfined for RHEL7.0 beucause of new policies - allow anaconda to dbus chat with systemd-localed- allow anaconda to dbus chat with systemd-localed - Add fixes for haproxy based on bperkins@redhat.com - Allow cmirrord to make dmsetup working - Allow NM to execute arping - Allow users to send messages through talk - Add userdom_tmp_role for secadm_t- Add additional fixes for rtas_errd - Fix transitions for tmp/tmpfs in rtas.te - Allow rtas_errd to readl all sysctls- Add support for /var/spool/rhsm/debug - Make virt_sandbox_use_audit as True by default - Allow svirt_sandbox_domains to ptrace themselves- Allow docker containers to manage /var/lib/docker content- Allow docker to read tmpfs_t symlinks - Allow sandbox svirt_lxc_net_t to talk to syslog and to sssd over stream sockets- Allow collectd to talk to libvirt - Allow chrome_sandbox to use leaked unix_stream_sockets - Dontaudit leaks of sockets into chrome_sandbox_t - If you create a cups directory in /var/cache then it should be labeled cups_rw_etc_t - Run vmtools as unconfined domains - Allow snort to manage its log files - Allow systemd_cronjob_t to be entered via bin_t - Allow procman to list doveconf_etc_t - allow keyring daemon to create content in tmpfs directories - Add proper labelling for icedtea-web - vpnc is creating content in networkmanager var run directory - Label sddm as xdm_exec_t to make KDE working again - Allow postgresql to read network state - Allow java running as pki_tomcat to read network sysctls - Fix cgroup.te to allow cgred to read cgconfig_etc_t - Allow beam.smp to use ephemeral ports - Allow winbind to use the nis to authenticate passwords- Make rtas_errd_t as unconfined domain for F20.It needs additional fixes. It runs rpm at least. - Allow net_admin cap for fence_virtd running as fenced_t - Make abrt-java-connector working - Make cimtest script 03_defineVS.py of ComputerSystem group working - Fix git_system_enable_homedirs boolean - Allow munin mail plugins to read network systcl- Allow vmtools_helper_t to execute bin_t - Add support for /usr/share/joomla - /var/lib/containers should be labeled as openshift content for now - Allow docker domains to talk to the login programs, to allow a process to login into the container - Allow install_t do dbus chat with NM - Fix interface names in anaconda.if - Add install_t for anaconda. A new type is a part of anaconda policy - sshd to read network sysctls- Allow zabbix to send system log msgs - Allow init_t to stream connect to ipsec Resolves:#1060775- Add docker_connect_any boolean- Allow unpriv SELinux users to dbus chat with firewalld - Add lvm_write_metadata() - Label /etc/yum.reposd dir as system_conf_t. Should be safe because system_conf_t is base_ro_file_type - Allow pegasus_openlmi_storage_t to write lvm metadata - Add hide_broken_symptoms for kdumpgui because of systemd bug - Make kdumpgui_t as unconfined domain Resolves:#1044299 - Allow docker to connect to tcp/5000- Allow numad to write scan_sleep_millisecs - Turn on entropyd_use_audio boolean by default - Allow cgred to read /etc/cgconfig.conf because it contains templates used together with rules from /etc/cgrules.conf. - Allow lscpu running as rhsmcertd_t to read /proc/sysinfo - Fix label on irclogs in the homedir - Allow kerberos_keytab_domain domains to manage keys until we get sssd fix - Allow postgresql to use ldap - Add missing syslog-conn port - Add support for /dev/vmcp and /dev/sclp Resolves:#1069310- Modify xdm_write_home to allow create files/links in /root with xdm_home_ - Allow virt domains to read network state Resolves:#1072019- Added pcp rules - dontaudit openshift_cron_t searching random directories, should be back ported to RHEL6 - clean up ctdb.te - Allow ctdbd to connect own ports - Fix samba_export_all_rw booleanto cover also non security dirs - Allow swift to exec rpm in swift_t and allow to create tmp files/dirs - Allow neutron to create /run/netns with correct labeling - Allow certmonger to list home dirs- Change userdom_use_user_inherited_ttys to userdom_use_user_ttys for systemd-tty-ask - Add sysnet_filetrans_named_content_ifconfig() interface - Allow ctdbd to connect own ports - Fix samba_export_all_rw booleanto cover also non security dirs - Allow swift to exec rpm in swift_t and allow to create tmp files/dirs - Allow neutron to create /run/netns with correct labeling - Allow kerberos keytab domains to manage sssd/userdomain keys" - Allow to run ip cmd in neutron_t domain- Allow block_suspend cap2 for systemd-logind and rw dri device - Add labeling for /usr/libexec/nm-libreswan-service - Allow locallogin to rw xdm key to make Virtual Terminal login providing smartcard pin working - Add xserver_rw_xdm_keys() - Allow rpm_script_t to dbus chat also with systemd-located - Fix ipa_stream_connect_otpd() - update lpd_manage_spool() interface - Allow krb5kdc to stream connect to ipa-otpd - Add ipa_stream_connect_otpd() interface - Allow vpnc to unlink NM pids - Add networkmanager_delete_pid_files() - Allow munin plugins to access unconfined plugins - update abrt_filetrans_named_content to cover /var/spool/debug - Label /var/spool/debug as abrt_var_cache_t - Allow rhsmcertd to connect to squid port - Make docker_transition_unconfined as optional boolean - Allow certmonger to list home dirs- Make snapperd as unconfined domain and add additional fixes for it - Remove nsplugin.pp module on upgrade- Add snapperd_home_t for HOME_DIR/.snapshots directory - Make sosreport as unconfined domain - Allow sosreport to execute grub2-probe - Allow NM to manage hostname config file - Allow systemd_timedated_t to dbus chat with rpm_script_t - Allow lsmd plugins to connect to http/ssh/http_cache ports by default - Add lsmd_plugin_connect_any boolean - Allow mozilla_plugin to attempt to set capabilities - Allow lsdm_plugins to use tcp_socket - Dontaudit mozilla plugin from getattr on /proc or /sys - Dontaudit use of the keyring by the services in a sandbox - Dontaudit attempts to sys_ptrace caused by running ps for mysqld_safe_t - Allow rabbitmq_beam to connect to jabber_interserver_port - Allow logwatch_mail_t to transition to qmail_inject and queueu - Added new rules to pcp policy - Allow vmtools_helper_t to change role to system_r - Allow NM to dbus chat with vmtools - Fix couchdb_manage_files() to allow manage couchdb conf files - Add support for /var/run/redis.sock - dontaudit gpg trying to use audit - Allow consolekit to create log directories and files - Fix vmtools policy to allow user roles to access vmtools_helper_t - Allow block_suspend cap2 for ipa-otpd - Allow pkcsslotd to read users state - Add ioctl to init_dontaudit_rw_stream_socket - Add systemd_hostnamed_manage_config() interface - Remove transition for temp dirs created by init_t - gdm-simple-slave uses use setsockopt - sddm-greater is a xdm type program- Add lvm_read_metadata() - Allow auditadm to search /var/log/audit dir - Add lvm_read_metadata() interface - Allow confined users to run vmtools helpers - Fix userdom_common_user_template() - Generic systemd unit scripts do write check on / - Allow init_t to create init_tmp_t in /tmp.This is for temporary content created by generic unit files - Add additional fixes needed for init_t and setup script running in generic unit files - Allow general users to create packet_sockets - added connlcli port - Add init_manage_transient_unit() interface - Allow init_t (generic unit files) to manage rpc state date as we had it for initrc_t - Fix userdomain.te to require passwd class - devicekit_power sends out a signal to all processes on the message bus when power is going down - Dontaudit rendom domains listing /proc and hittping system_map_t - Dontauit leaks of var_t into ifconfig_t - Allow domains that transition to ssh_t to manipulate its keyring - Define oracleasm_t as a device node - Change to handle /root as a symbolic link for os-tree - Allow sysadm_t to create packet_socket, also move some rules to attributes - Add label for openvswitch port - Remove general transition for files/dirs created in /etc/mail which got etc_aliases_t label. - Allow postfix_local to read .forward in pcp lib files - Allow pegasus_openlmi_storage_t to read lvm metadata - Add additional fixes for pegasus_openlmi_storage_t - Allow bumblebee to manage debugfs - Make bumblebee as unconfined domain - Allow snmp to read etc_aliases_t - Allow lscpu running in pegasus_openlmi_storage_t to read /dev/mem - Allow pegasus_openlmi_storage_t to read /proc/1/environ - Dontaudit read gconf files for cupsd_config_t - make vmtools as unconfined domain - Add vmtools_helper_t for helper scripts. Allow vmtools shutdonw a host and run ifconfig. - Allow collectd_t to use a mysql database - Allow ipa-otpd to perform DNS name resolution - Added new policy for keepalived - Allow openlmi-service provider to manage transitient units and allow stream connect to sssd - Add additional fixes new pscs-lite+polkit support - Add labeling for /run/krb5kdc - Change w3c_validator_tmp_t to httpd_w3c_validator_tmp_t in F20 - Allow pcscd to read users proc info - Dontaudit smbd_t sending out random signuls - Add boolean to allow openshift domains to use nfs - Allow w3c_validator to create content in /tmp - zabbix_agent uses nsswitch - Allow procmail and dovecot to work together to deliver mail - Allow spamd to execute files in homedir if boolean turned on - Allow openvswitch to listen on port 6634 - Add net_admin capability in collectd policy - Fixed snapperd policy - Fixed bugsfor pcp policy - Allow dbus_system_domains to be started by init - Fixed some interfaces - Add kerberos_keytab_domain attribute - Fix snapperd_conf_t def- Addopt corenet rules for unbound-anchor to rpm_script_t - Allow runuser to send send audit messages. - Allow postfix-local to search .forward in munin lib dirs - Allow udisks to connect to D-Bus - Allow spamd to connect to spamd port - Fix syntax error in snapper.te - Dontaudit osad to search gconf home files - Allow rhsmcertd to manage /etc/sysconf/rhn director - Fix pcp labeling to accept /usr/bin for all daemon binaries - Fix mcelog_read_log() interface - Allow iscsid to manage iscsi lib files - Allow snapper domtrans to lvm_t. Add support for /etc/snapper and allow snapperd to manage it. - Make tuned_t as unconfined domain for RHEL7.0 - Allow ABRT to read puppet certs - Add sys_time capability for virt-ga - Allow gemu-ga to domtrans to hwclock_t - Allow additional access for virt_qemu_ga_t processes to read system clock and send audit messages - Fix some AVCs in pcp policy - Add to bacula capability setgid and setuid and allow to bind to bacula ports - Changed label from rhnsd_rw_conf_t to rhnsd_conf_t - Add access rhnsd and osad to /etc/sysconfig/rhn - drbdadm executes drbdmeta - Fixes needed for docker - Allow epmd to manage /var/log/rabbitmq/startup_err file - Allow beam.smp connect to amqp port - Modify xdm_write_home to allow create also links as xdm_home_t if the boolean is on true - Allow init_t to manage pluto.ctl because of init_t instead of initrc_t - Allow systemd_tmpfiles_t to manage all non security files on the system - Added labels for bacula ports - Fix label on /dev/vfio/vfio - Add kernel_mounton_messages() interface - init wants to manage lock files for iscsi- Added osad policy - Allow postfix to deliver to procmail - Allow bumblebee to seng kill signal to xserver - Allow vmtools to execute /usr/bin/lsb_release - Allow docker to write system net ctrls - Add support for rhnsd unit file - Add dbus_chat_session_bus() interface - Add dbus_stream_connect_session_bus() interface - Fix pcp.te - Fix logrotate_use_nfs boolean - Add lot of pcp fixes found in RHEL7 - fix labeling for pmie for pcp pkg - Change thumb_t to be allowed to chat/connect with session bus type - Allow call renice in mlocate - Add logrotate_use_nfs boolean - Allow setroubleshootd to read rpc sysctl- Turn on bacula, rhnsd policy - Add support for rhnsd unit file - Add dbus_chat_session_bus() interface - Add dbus_stream_connect_session_bus() interface - Fix logrotate_use_nfs boolean - Add lot of pcp fixes found in RHEL7 - fix labeling for pmie for pcp pkg - Change thumb_t to be allowed to chat/connect with session bus type - Allow call renice in mlocate - Add logrotate_use_nfs boolean - Allow setroubleshootd to read rpc sysctl - Fixes for *_admin interfaces - Add pegasus_openlmi_storage_var_run_t type def - Add support for /var/run/openlmi-storage - Allow tuned to create syslog.conf with correct labeling - Add httpd_dontaudit_search_dirs boolean - Add support for winbind.service - ALlow also fail2ban-client to read apache logs - Allow vmtools to getattr on all fs - Add support for dey_sapi port - Add logging_filetrans_named_conf() - Allow passwd_t to use ipc_lock, so that it can change the password in gnome-keyring- Update snapper policy - Allow domains to append rkhunter lib files - Allow snapperd to getattr on all fs - Allow xdm to create /var/gdm with correct labeling - Add label for snapper.log - Allow fail2ban-client to read apache log files - Allow thumb_t to execute dbus-daemon in thumb_t- Allow gdm to create /var/gdm with correct labeling - Allow domains to append rkhunterl lib files. #1057982 - Allow systemd_tmpfiles_t net_admin to communicate with journald - Add interface to getattr on an isid_type for any type of file - Update libs_filetrans_named_content() to have support for /usr/lib/debug directory - Allow initrc_t domtrans to authconfig if unconfined is enabled - Allow docker and mount on devpts chr_file - Allow docker to transition to unconfined_t if boolean set - init calling needs to be optional in domain.te - Allow uncofined domain types to handle transient unit files - Fix labeling for vfio devices - Allow net_admin capability and send system log msgs - Allow lldpad send dgram to NM - Add networkmanager_dgram_send() - rkhunter_var_lib_t is correct type - Back port pcp policy from rawhide - Allow openlmi-storage to read removable devices - Allow system cron jobs to manage rkhunter lib files - Add rkhunter_manage_lib_files() - Fix ftpd_use_fusefs boolean to allow manage also symlinks - Allow smbcontrob block_suspend cap2 - Allow slpd to read network and system state info - Allow NM domtrans to iscsid_t if iscsiadm is executed - Allow slapd to send a signal itself - Allow sslget running as pki_ra_t to contact port 8443, the secure port of the CA. - Fix plymouthd_create_log() interface - Add rkhunter policy with files type definition for /var/lib/rkhunter until it is fixed in rkhunter package - Add mozilla_plugin_exec_t for /usr/lib/firefox/plugin-container - Allow postfix and cyrus-imapd to work out of box - Allow fcoemon to talk with unpriv user domain using unix_stream_socket - Dontaudit domains that are calling into journald to net_admin - Add rules to allow vmtools to do what it does - snapperd is D-Bus service - Allow OpenLMI PowerManagement to call 'systemctl --force reboot' - Add haproxy_connect_any boolean - Allow haproxy also to use http cache port by default Resolves:#1058248- Allow apache to write to the owncloud data directory in /var/www/html... - Allow consolekit to create log dir - Add support for icinga CGI scripts - Add support for icinga - Allow kdumpctl_t to create kdump lock file Resolves:#1055634 - Allow kdump to create lnk lock file - Allow nscd_t block_suspen capability - Allow unconfined domain types to manage own transient unit file - Allow systemd domains to handle transient init unit files - Add interfaces to handle transient- Add cron unconfined role support for uncofined SELinux user - Call corenet_udp_bind_all_ports() in milter.te - Allow fence_virtd to connect to zented port - Fix header for mirrormanager_admin() - Allow dkim-milter to bind udp ports - Allow milter domains to send signull itself - Allow block_suspend for yum running as mock_t - Allow beam.smp to manage couchdb files - Add couchdb_manage_files() - Add labeling for /var/log/php_errors.log - Allow bumblebee to stream connect to xserver - Allow bumblebee to send a signal to xserver - gnome-thumbnail to stream connect to bumblebee - Allow xkbcomp running as bumblebee_t to execute bin_t - Allow logrotate to read squid.conf - Additional rules to get docker and lxc to play well with SELinux - Allow bumbleed to connect to xserver port - Allow pegasus_openlmi_storage_t to read hwdata- Allow init_t to work on transitient and snapshot unit files - Add logging_manage_syslog_config() - Update sysnet_dns_name_resolve() to allow connect to dnssec por - Allow pegasus_openlmi_storage_t to read hwdata Resolves:#1031721 - Fix rhcs_rw_cluster_tmpfs() - Allow fenced_t to bind on zented udp port - Added policy for vmtools - Fix mirrormanager_read_lib_files() - Allow mirromanager scripts running as httpd_t to manage mirrormanager pid files - Allow ctdb to create sock files in /var/run/ctdb - Add sblim_filetrans_named_content() interface - Allow rpm scritplets to create /run/gather with correct labeling - Allow gnome keyring domains to create gnome config dirs - Dontaudit read/write to init stream socket for lsmd_plugin_t - Allow automount to read nfs link files - Allow lsm plugins to read/write lsmd stream socket - Allow certmonger to connect ldap port to make IPA CA certificate renewal working. - Add also labeling for /var/run/ctdb - Add missing labeling for /var/lib/ctdb - ALlow tuned to manage syslog.conf. Should be fixed in tuned. #1030446 - Dontaudit hypervkvp to search homedirs - Dontaudit hypervkvp to search admin homedirs - Allow hypervkvp to execute bin_t and ifconfig in the caller domain - Dontaudit xguest_t to read ABRT conf files - Add abrt_dontaudit_read_config() - Allow namespace-init to getattr on fs - Add thumb_role() also for xguest - Add filename transitions to create .spamassassin with correct labeling - Allow apache domain to read mirrormanager pid files - Allow domains to read/write shm and sem owned by mozilla_plugin_t - Allow alsactl to send a generic signal to kernel_t- Add back rpm_run() for unconfined user- Add missing files_create_var_lib_dirs() - Fix typo in ipsec.te - Allow passwd to create directory in /var/lib - Add filename trans also for event21 - Allow iptables command to read /dev/rand - Add sigkill capabilityfor ipsec_t - Add filename transitions for bcache devices - Add additional rules to create /var/log/cron by syslogd_t with correct labeling - Add give everyone full access to all key rings - Add default lvm_var_run_t label for /var/run/multipathd - Fix log labeling to have correct default label for them after logrotate - Labeled ~/.nv/GLCache as being gstreamer output - Allow nagios_system_plugin to read mrtg lib files - Add mrtg_read_lib_files() - Call rhcs_rw_cluster_tmpfs for dlm_controld - Make authconfing as named_filetrans domain - Allow virsh to connect to user process using stream socket - Allow rtas_errd to read rand/urand devices and add chown capability - Fix labeling from /var/run/net-snmpd to correct /var/run/net-snmp Resolves:#1051497 - Add also chown cap for abrt_upload_watch_t. It already has dac_override - Allow sosreport to manage rhsmcertd pid files - Add rhsmcertd_manage_pid_files() - Allow also setgid cap for rpc.gssd - Dontaudit access check for abrt on cert_t - Allow pegasus_openlmi_system providers to dbus chat with systemd-logind- Fix semanage import handling in spec file- Add default lvm_var_run_t label for /var/run/multipathd Resolves:#1051430 - Fix log labeling to have correct default label for them after logrotate - Add files_write_root_dirs - Add new openflow port label for 6653/tcp and 6633/tcp - Add xserver_manage_xkb_libs() - Label tcp/8891 as milter por - Allow gnome_manage_generic_cache_files also create cache_home_t files - Fix aide.log labeling - Fix log labeling to have correct default label for them after logrotate - Allow mysqld-safe write access on /root to make mysqld working - Allow sosreport domtrans to prelikn - Allow OpenvSwitch to connec to openflow ports - Allow NM send dgram to lldpad - Allow hyperv domains to execute shell - Allow lsmd plugins stream connect to lsmd/init - Allow sblim domains to create /run/gather with correct labeling - Allow httpd to read ldap certs - Allow cupsd to send dbus msgs to process with different MLS level - Allow bumblebee to stream connect to apmd - Allow bumblebee to run xkbcomp - Additional allow rules to get libvirt-lxc containers working with docker - Additional allow rules to get libvirt-lxc containers working with docker - Allow docker to getattr on itself - Additional rules needed for sandbox apps - Allow mozilla_plugin to set attributes on usb device if use_spice boolean enabled - httpd should be able to send signal/signull to httpd_suexec_t - Add more fixes for neturon. Domtrans to dnsmasq, iptables. Make neutron as filenamtrans domain.- Add neutron fixes- Allow sshd to write to all process levels in order to change passwd when running at a level - Allow updpwd_t to downgrade /etc/passwd file to s0, if it is not running with this range - Allow apcuspd_t to status and start the power unit file - Allow udev to manage kdump unit file - Added new interface modutils_dontaudit_exec_insmod - Allow cobbler to search dhcp_etc_t directory - systemd_systemctl needs sys_admin capability - Allow sytemd_tmpfiles_t to delete all directories - passwd to create gnome-keyring passwd socket - Add missing zabbix_var_lib_t type - Fix filename trans for zabbixsrv in zabbix.te - Allow fprintd_t to send syslog messages - Add zabbix_var_lib_t for /var/lib/zabbixsrv, also allow zabix to connect to smtp port - Allow mozilla plugin to chat with policykit, needed for spice - Allow gssprozy to change user and gid, as well as read user keyrings - Label upgrades directory under /var/www as httpd_sys_rw_content_t, add other filetrans rules to label content correctly - Allow polipo to connect to http_cache_ports - Allow cron jobs to manage apache var lib content - Allow yppassword to manage the passwd_file_t - Allow showall_t to send itself signals - Allow cobbler to restart dhcpc, dnsmasq and bind services - Allow certmonger to manage home cert files - Add userdom filename trans for user mail domains - Allow apcuspd_t to status and start the power unit file - Allow cgroupdrulesengd to create content in cgoups directories - Allow smbd_t to signull cluster - Allow gluster daemon to create fifo files in glusterd_brick_t and sock_file in glusterd_var_lib_t - Add label for /var/spool/cron.aquota.user - Allow sandbox_x domains to use work with the mozilla plugin semaphore - Added new policy for speech-dispatcher - Added dontaudit rule for insmod_exec_t in rasdaemon policy - Updated rasdaemon policy - Allow system_mail_t to transition to postfix_postdrop_t - Clean up mirrormanager policy - Allow virt_domains to read cert files, needs backport to RHEL7 - Allow sssd to read systemd_login_var_run_t - Allow irc_t to execute shell and bin-t files: - Add new access for mythtv - Allow rsync_t to manage all non auth files - allow modemmanger to read /dev/urand - Allow sandbox apps to attempt to set and get capabilties- Add labeling for /var/lib/servicelog/servicelog.db-journal - Add support for freeipmi port - Add sysadm_u_default_contexts - Make new type to texlive files in homedir - Allow subscription-manager running as sosreport_t to manage rhsmcertd - Additional fixes for docker.te - Remove ability to do mount/sys_admin by default in virt_sandbox domains - New rules required to run docker images within libivrt - Add label for ~/.cvsignore - Change mirrormanager to be run by cron - Add mirrormanager policy - Fixed bumblebee_admin() and mip6d_admin() - Add log support for sensord - Fix typo in docker.te - Allow amanda to do backups over UDP - Allow bumblebee to read /etc/group and clean up bumblebee.te - type transitions with a filename not allowed inside conditionals - Don't allow virt-sandbox tools to use netlink out of the box, needs back port to RHEL7 - Make new type to texlive files in homedir- Allow freeipmi_ipmidetectd_t to use freeipmi port - Update freeipmi_domain_template() - Allow journalctl running as ABRT to read /run/log/journal - Allow NM to read dispatcher.d directory - Update freeipmi policy - Type transitions with a filename not allowed inside conditionals - Allow tor to bind to hplip port - Make new type to texlive files in homedir - Allow zabbix_agent to transition to dmidecode - Add rules for docker - Allow sosreport to send signull to unconfined_t - Add virt_noatsecure and virt_rlimitinh interfaces - Fix labeling in thumb.fc to add support for /usr/lib64/tumbler-1/tumblerddd support for freeipmi port - Add sysadm_u_default_contexts - Add logging_read_syslog_pid() - Fix userdom_manage_home_texlive() interface - Make new type to texlive files in homedir - Add filename transitions for /run and /lock links - Allow virtd to inherit rlimit information Resolves:#975358- Change labeling for /usr/libexec/nm-dispatcher.action to NetworkManager_exec_t Resolves:#1039879 - Add labeling for /usr/lib/systemd/system/mariadb.service - Allow hyperv_domain to read sysfs - Fix ldap_read_certs() interface to allow acess also link files - Add support for /usr/libexec/pegasus/cmpiLMI_Journald-cimprovagt - Allow tuned to run modprobe - Allow portreserve to search /var/lib/sss dir - Add SELinux support for the teamd package contains team network device control daemon. - Dontaudit access check on /proc for bumblebee - Bumblebee wants to load nvidia modules - Fix rpm_named_filetrans_log_files and wine.te - Add conman policy for rawhide - DRM master and input event devices are used by the TakeDevice API - Clean up bumblebee policy - Update pegasus_openlmi_storage_t policy - Add freeipmi_stream_connect() interface - Allow logwatch read madm.conf to support RAID setup - Add raid_read_conf_files() interface - Allow up2date running as rpm_t create up2date log file with rpm_log_t labeling - add rpm_named_filetrans_log_files() interface - Allow dkim-milter to create files/dirs in /tmp - update freeipmi policy - Add policy for freeipmi services - Added rdisc_admin and rdisc_systemctl interfaces - opensm policy clean up - openwsman policy clean up - ninfod policy clean up - Added new policy for ninfod - Added new policy for openwsman - Added rdisc_admin and rdisc_systemctl interfaces - Fix kernel_dontaudit_access_check_proc() - Add support for /dev/uhid - Allow sulogin to get the attributes of initctl and sys_admin cap - Add kernel_dontaudit_access_check_proc() - Fix dev_rw_ipmi_dev() - Fix new interface in devices.if - DRM master and input event devices are used by the TakeDevice API - add dev_rw_inherited_dri() and dev_rw_inherited_input_dev() - Added support for default conman port - Add interfaces for ipmi devices- Allow sosreport to send a signal to ABRT - Add proper aliases for pegasus_openlmi_service_exec_t and pegasus_openlmi_service_t - Label /usr/sbin/htcacheclean as httpd_exec_t Resolves:#1037529 - Added support for rdisc unit file - Add antivirus_db_t labeling for /var/lib/clamav-unofficial-sigs - Allow runuser running as logrotate connections to system DBUS - Label bcache devices as fixed_disk_device_t - Allow systemctl running in ipsec_mgmt_t to access /usr/lib/systemd/system/ipsec.service - Label /usr/lib/systemd/system/ipsec.service as ipsec_mgmt_unit_file_t- Add back setpgid/setsched for sosreport_t- Added fix for clout_init to transition to rpm_script_t (dwalsh@redhat.com)- Dontaudit openshift domains trying to use rawip_sockets, this is caused by a bad check in the kernel. - Allow git_system_t to read git_user_content if the git_system_enable_homedirs boolean is turned on - Add lsmd_plugin_t for lsm plugins - Allow dovecot-deliver to search mountpoints - Add labeling for /etc/mdadm.conf - Allow opelmi admin providers to dbus chat with init_t - Allow sblim domain to read /dev/urandom and /dev/random - Allow apmd to request the kernel load modules - Add glusterd_brick_t type - label mate-keyring-daemon with gkeyringd_exec_t - Add plymouthd_create_log() - Dontaudit leaks from openshift domains into mail domains, needs back port to RHEL6 - Allow sssd to request the kernel loads modules - Allow gpg_agent to use ssh-add - Allow gpg_agent to use ssh-add - Dontaudit access check on /root for myslqd_safe_t - Allow ctdb to getattr on al filesystems - Allow abrt to stream connect to syslog - Allow dnsmasq to list dnsmasq.d directory - Watchdog opens the raw socket - Allow watchdog to read network state info - Dontaudit access check on lvm lock dir - Allow sosreport to send signull to setroubleshootd - Add setroubleshoot_signull() interface - Fix ldap_read_certs() interface - Allow sosreport all signal perms - Allow sosreport to run systemctl - Allow sosreport to dbus chat with rpm - Add glusterd_brick_t files type - Allow zabbix_agentd to read all domain state - Clean up rtas.if - Allow smoltclient to execute ldconfig - Allow sosreport to request the kernel to load a module - Fix userdom_confined_admin_template() - Add back exec_content boolean for secadm, logadm, auditadm - Fix files_filetrans_system_db_named_files() interface - Allow sulogin to getattr on /proc/kcore - Add filename transition also for servicelog.db-journal - Add files_dontaudit_access_check_root() - Add lvm_dontaudit_access_check_lock() interface- Allow watchdog to read /etc/passwd - Allow browser plugins to connect to bumblebee - New policy for bumblebee and freqset - Add new policy for mip6d daemon - Add new policy for opensm daemon - Allow condor domains to read/write condor_master udp_socket - Allow openshift_cron_t to append to openshift log files, label /var/log/openshift - Add back file_pid_filetrans for /var/run/dlm_controld - Allow smbd_t to use inherited tmpfs content - Allow mcelog to use the /dev/cpu device - sosreport runs rpcinfo - sosreport runs subscription-manager - Allow staff_t to run frequency command - Allow systemd_tmpfiles to relabel log directories - Allow staff_t to read xserver_log file - Label hsperfdata_root as tmp_t- More sosreport fixes to make ABRT working- Fix files_dontaudit_unmount_all_mountpoints() - Add support for 2608-2609 tcp/udp ports - Should allow domains to lock the terminal device - More fixes for user config files to make crond_t running in userdomain - Add back disable/reload/enable permissions for system class - Fix manage_service_perms macro - We need to require passwd rootok - Fix zebra.fc - Fix dnsmasq_filetrans_named_content() interface - Allow all sandbox domains create content in svirt_home_t - Allow zebra domains also create zebra_tmp_t files in /tmp - Add support for new zebra services:isisd,babeld. Add systemd support for zebra services. - Fix labeling on neutron and remove transition to iconfig_t - abrt needs to read mcelog log file - Fix labeling on dnsmasq content - Fix labeling on /etc/dnsmasq.d - Allow glusterd to relabel own lib files - Allow sandbox domains to use pam_rootok, and dontaudit attempts to unmount file systems, this is caused by a bug in systemd - Allow ipc_lock for abrt to run journalctl- Fix config.tgz- Fix passenger_stream_connect interface - setroubleshoot_fixit wants to read network state - Allow procmail_t to connect to dovecot stream sockets - Allow cimprovagt service providers to read network states - Add labeling for /var/run/mariadb - pwauth uses lastlog() to update system's lastlog - Allow account provider to read login records - Add support for texlive2013 - More fixes for user config files to make crond_t running in userdomain - Add back disable/reload/enable permissions for system class - Fix manage_service_perms macro - Allow passwd_t to connect to gnome keyring to change password - Update mls config files to have cronjobs in the user domains - Remove access checks that systemd does not actually do- Add support for yubikey in homedir - Add support for upd/3052 port - Allow apcupsd to use PowerChute Network Shutdown - Allow lsmd to execute various lsmplugins - Add labeling also for /etc/watchdog\.d where are watchdog scripts located too - Update gluster_export_all_rw boolean to allow relabel all base file types - Allow x86_energy_perf tool to modify the MSR - Fix /var/lib/dspam/data labeling- Add files_relabel_base_file_types() interface - Allow netlabel-config to read passwd - update gluster_export_all_rw boolean to allow relabel all base file types caused by lsetxattr() - Allow x86_energy_perf tool to modify the MSR - Fix /var/lib/dspam/data labeling - Allow pegasus to domtrans to mount_t - Add labeling for unconfined scripts in /usr/libexec/watchdog/scripts - Add support for unconfined watchdog scripts - Allow watchdog to manage own log files- Add label only for redhat.repo instead of /etc/yum.repos.d. But probably we will need to switch for the directory. - Label /etc/yum.repos.d as system_conf_t - Use sysnet_filetrans_named_content in udev.te instead of generic transition for net_conf_t - Allow dac_override for sysadm_screen_t - Allow init_t to read ipsec_conf_t as we had it for initrc_t. Needed by ipsec unit file. - Allow netlabel-config to read meminfo - Add interface to allow docker to mounton file_t - Add new interface to exec unlabeled files - Allow lvm to use docker semaphores - Setup transitons for .xsessions-errors.old - Change labels of files in /var/lib/*/.ssh to transition properly - Allow staff_t and user_t to look at logs using journalctl - pluto wants to manage own log file - Allow pluto running as ipsec_t to create pluto.log - Fix alias decl in corenetwork.te.in - Add support for fuse.glusterfs - Allow dmidecode to read/write /run/lock/subsys/rhsmcertd - Allow rhsmcertd to manage redhat.repo which is now labeled as system.conf. Allow rhsmcertd to manage all log files. - Additional access for docker - Added more rules to sblim policy - Fix kdumpgui_run_bootloader boolean - Allow dspam to connect to lmtp port - Included sfcbd service into sblim policy - rhsmcertd wants to manaage /etc/pki/consumer dir - Add kdumpgui_run_bootloader boolean - Add support for /var/cache/watchdog - Remove virt_domain attribute for virt_qemu_ga_unconfined_t - Fixes for handling libvirt containes - Dontaudit attempts by mysql_safe to write content into / - Dontaudit attempts by system_mail to modify network config - Allow dspam to bind to lmtp ports - Add new policy to allow staff_t and user_t to look at logs using journalctl - Allow apache cgi scripts to list sysfs - Dontaudit attempts to write/delete user_tmp_t files - Allow all antivirus domains to manage also own log dirs - Allow pegasus_openlmi_services_t to stream connect to sssd_t- Add missing permission checks for nscd- Fix alias decl in corenetwork.te.in - Add support for fuse.glusterfs - Add file transition rules for content created by f5link - Rename quantum_port information to neutron - Allow all antivirus domains to manage also own log dirs - Rename quantum_port information to neutron - Allow pegasus_openlmi_services_t to stream connect to sssd_t- Allow sysadm_t to read login information - Allow systemd_tmpfiles to setattr on var_log_t directories - Udpdate Makefile to include systemd_contexts - Add systemd_contexts - Add fs_exec_hugetlbfs_files() interface - Add daemons_enable_cluster_mode boolean - Fix rsync_filetrans_named_content() - Add rhcs_read_cluster_pid_files() interface - Update rhcs.if with additional interfaces from RHEL6 - Fix rhcs_domain_template() to not create run dirs with cluster_var_run_t - Allow glusterd_t to mounton glusterd_tmp_t - Allow glusterd to unmout al filesystems - Allow xenstored to read virt config - Add label for swift_server.lock and make add filetrans_named_content to make sure content gets created with the correct label - Allow mozilla_plugin_t to mmap hugepages as an executable- Add back userdom_security_admin_template() interface and use it for sysadm_t if sysadm_secadm.pp- Allow sshd_t to read openshift content, needs backport to RHEL6.5 - Label /usr/lib64/sasl2/libsasldb.so.3.0.0 as textrel_shlib_t - Make sur kdump lock is created with correct label if kdumpctl is executed - gnome interface calls should always be made within an optional_block - Allow syslogd_t to connect to the syslog_tls port - Add labeling for /var/run/charon.ctl socket - Add kdump_filetrans_named_content() - Allo setpgid for fenced_t - Allow setpgid and r/w cluster tmpfs for fenced_t - gnome calls should always be within optional blocks - wicd.pid should be labeled as networkmanager_var_run_t - Allow sys_resource for lldpad- Add rtas policy- Allow mailserver_domains to manage and transition to mailman data - Dontaudit attempts by mozilla plugin to relabel content, caused by using mv and cp commands - Allow mailserver_domains to manage and transition to mailman data - Allow svirt_domains to read sysctl_net_t - Allow thumb_t to use tmpfs inherited from the user - Allow mozilla_plugin to bind to the vnc port if running with spice - Add new attribute to discover confined_admins and assign confined admin to it - Fix zabbix to handle attributes in interfaces - Fix zabbix to read system states for all zabbix domains - Fix piranha_domain_template() - Allow ctdbd to create udp_socket. Allow ndmbd to access ctdbd var files. - Allow lldpad sys_rouserce cap due to #986870 - Allow dovecot-auth to read nologin - Allow openlmi-networking to read /proc/net/dev - Allow smsd_t to execute scripts created on the fly labeled as smsd_spool_t - Add zabbix_domain attribute for zabbix domains to treat them together - Add labels for zabbix-poxy-* (#1018221) - Update openlmi-storage policy to reflect #1015067 - Back port piranha tmpfs fixes from RHEL6 - Update httpd_can_sendmail boolean to allow read/write postfix spool maildrop - Add postfix_rw_spool_maildrop_files interface - Call new userdom_admin_user_templat() also for sysadm_secadm.pp - Fix typo in userdom_admin_user_template() - Allow SELinux users to create coolkeypk11sE-Gate in /var/cache/coolkey - Add new attribute to discover confined_admins - Fix labeling for /etc/strongswan/ipsec.d - systemd_logind seems to pass fd to anyone who dbus communicates with it - Dontaudit leaked write descriptor to dmesg- Activate motion policy- Fix gnome_read_generic_data_home_files() - allow openshift_cgroup_t to read/write inherited openshift file types - Remove httpd_cobbler_content * from cobbler_admin interface - Allow svirt sandbox domains to setattr on chr_file and blk_file svirt_sandbox_file_t, so sshd will work within a container - Allow httpd_t to read also git sys content symlinks - Allow init_t to read gnome home data - Dontaudit setroubleshoot_fixit_t execmem, since it does not seem to really need it. - Allow virsh to execute systemctl - Fix for nagios_services plugins - add type defintion for ctdbd_var_t - Add support for /var/ctdb. Allow ctdb block_suspend and read /etc/passwd file - Allow net_admin/netlink_socket all hyperv_domain domains - Add labeling for zarafa-search.log and zarafa-search.pid - Fix hypervkvp.te - Fix nscd_shm_use() - Add initial policy for /usr/sbin/hypervvssd in hypervkvp policy which should be renamed to hyperv. Also add hyperv_domain attribute to treat these HyperV services. - Add hypervkvp_unit_file_t type - Fix logging policy - Allow syslog to bind to tls ports - Update labeling for /dev/cdc-wdm - Allow to su_domain to read init states - Allow init_t to read gnome home data - Make sure if systemd_logind creates nologin file with the correct label - Clean up ipsec.te- Add auth_exec_chkpwd interface - Fix port definition for ctdb ports - Allow systemd domains to read /dev/urand - Dontaudit attempts for mozilla_plugin to append to /dev/random - Add label for /var/run/charon.* - Add labeling for /usr/lib/systemd/system/lvm2.*dd policy for motion service - Fix for nagios_services plugins - Fix some bugs in zoneminder policy - add type defintion for ctdbd_var_t - Add support for /var/ctdb. Allow ctdb block_suspend and read /etc/passwd file - Allow net_admin/netlink_socket all hyperv_domain domains - Add labeling for zarafa-search.log and zarafa-search.pid - glusterd binds to random unreserved ports - Additional allow rules found by testing glusterfs - apcupsd needs to send a message to all users on the system so needs to look them up - Fix the label on ~/.juniper_networks - Dontaudit attempts for mozilla_plugin to append to /dev/random - Allow polipo_daemon to connect to flash ports - Allow gssproxy_t to create replay caches - Fix nscd_shm_use() - Add initial policy for /usr/sbin/hypervvssd in hypervkvp policy which should be renamed to hyperv. Also add hyperv_domain attribute to treat these HyperV services. - Add hypervkvp_unit_file_t type- init reload from systemd_localed_t - Allow domains that communicate with systemd_logind_sessions to use systemd_logind_t fd - Allow systemd_localed_t to ask systemd to reload the locale. - Add systemd_runtime_unit_file_t type for unit files that systemd creates in memory - Allow readahead to read /dev/urand - Fix lots of avcs about tuned - Any file names xenstored in /var/log should be treated as xenstored_var_log_t - Allow tuned to inderact with hugepages - Allow condor domains to list etc rw dirs- Fix nscd_shm_use() - Add initial policy for /usr/sbin/hypervvssd in hypervkvp policy which should be renamed to hyperv. Also add hyperv_domain attribute to treat these HyperV services. - Add hypervkvp_unit_file_t type - Add additional fixes forpegasus_openlmi_account_t - Allow mdadm to read /dev/urand - Allow pegasus_openlmi_storage_t to create mdadm.conf and write it - Add label/rules for /etc/mdadm.conf - Allow pegasus_openlmi_storage_t to transition to fsadm_t - Fixes for interface definition problems - Dontaudit dovecot-deliver to gettatr on all fs dirs - Allow domains to search data_home_t directories - Allow cobblerd to connect to mysql - Allow mdadm to r/w kdump lock files - Add support for kdump lock files - Label zarafa-search as zarafa-indexer - Openshift cgroup wants to read /etc/passwd - Add new sandbox domains for kvm - Allow mpd to interact with pulseaudio if mpd_enable_homedirs is turned on - Fix labeling for /usr/lib/systemd/system/lvm2.* - Add labeling for /usr/lib/systemd/system/lvm2.* - Fix typos to get a new build. We should not cover filename trans rules to prevent duplicate rules - Add sshd_keygen_t policy for sshd-keygen - Fix alsa_home_filetrans interface name and definition - Allow chown for ssh_keygen_t - Add fs_dontaudit_getattr_all_dirs() - Allow init_t to manage etc_aliases_t and read xserver_var_lib_t and chrony keys - Fix up patch to allow systemd to manage home content - Allow domains to send/recv unlabeled traffic if unlabelednet.pp is enabled - Allow getty to exec hostname to get info - Add systemd_home_t for ~/.local/share/systemd directory- Fix lxc labels in config.tgz- Fix labeling for /usr/libexec/kde4/kcmdatetimehelper - Allow tuned to search all file system directories - Allow alsa_t to sys_nice, to get top performance for sound management - Add support for MySQL/PostgreSQL for amavis - Allow openvpn_t to manage openvpn_var_log_t files. - Allow dirsrv_t to create tmpfs_t directories - Allow dirsrv to create dirs in /dev/shm with dirsrv_tmpfs label - Dontaudit leaked unix_stream_sockets into gnome keyring - Allow telepathy domains to inhibit pipes on telepathy domains - Allow cloud-init to domtrans to rpm - Allow abrt daemon to manage abrt-watch tmp files - Allow abrt-upload-watcher to search /var/spool directory - Allow nsswitch domains to manage own process key - Fix labeling for mgetty.* logs - Allow systemd to dbus chat with upower - Allow ipsec to send signull to itself - Allow setgid cap for ipsec_t - Match upstream labeling- Do not build sanbox pkg on MLS- wine_tmp is no longer needed - Allow setroubleshoot to look at /proc - Allow telepathy domains to dbus with systemd logind - Fix handling of fifo files of rpm - Allow mozilla_plugin to transition to itself - Allow certwatch to write to cert_t directories - New abrt application - Allow NetworkManager to set the kernel scheduler - Make wine_domain shared by all wine domains - Allow mdadm_t to read images labeled svirt_image_t - Allow amanda to read /dev/urand - ALlow my_print_default to read /dev/urand - Allow mdadm to write to kdumpctl fifo files - Allow nslcd to send signull to itself - Allow yppasswd to read /dev/urandom - Fix zarafa_setrlimit - Add support for /var/lib/php/wsdlcache - Add zarafa_setrlimit boolean - Allow fetchmail to send mails - Add additional alias for user_tmp_t because wine_tmp_t is no longer used - More handling of ther kernel keyring required by kerberos - New privs needed for init_t when running without transition to initrc_t over bin_t, and without unconfined domain installed- Dontaudit attempts by sosreport to read shadow_t - Allow browser sandbox plugins to connect to cups to print - Add new label mpd_home_t - Label /srv/www/logs as httpd_log_t - Add support for /var/lib/php/wsdlcache - Add zarafa_setrlimit boolean - Allow fetchmail to send mails - Add labels for apache logs under miq package - Allow irc_t to use tcp sockets - fix labels in puppet.if - Allow tcsd to read utmp file - Allow openshift_cron_t to run ssh-keygen in ssh_keygen_t to access host keys - Define svirt_socket_t as a domain_type - Take away transition from init_t to initrc_t when executing bin_t, allow init_t to run chk_passwd_t - Fix label on pam_krb5 helper apps- Allow ldconfig to write to kdumpctl fifo files - allow neutron to connect to amqp ports - Allow kdump_manage_crash to list the kdump_crash_t directory - Allow glance-api to connect to amqp port - Allow virt_qemu_ga_t to read meminfo - Add antivirus_home_t type for antivirus date in HOMEDIRS - Allow mpd setcap which is needed by pulseaudio - Allow smbcontrol to create content in /var/lib/samba - Allow mozilla_exec_t to be used as a entrypoint to mozilla_domtrans_spec - Add additional labeling for qemu-ga/fsfreeze-hook.d scripts - amanda_exec_t needs to be executable file - Allow block_suspend cap for samba-net - Allow apps that read ipsec_mgmt_var_run_t to search ipsec_var_run_t - Allow init_t to run crash utility - Treat usr_t just like bin_t for transitions and executions - Add port definition of pka_ca to port 829 for openshift - Allow selinux_store to use symlinks- Allow block_suspend cap for samba-net - Allow t-mission-control to manage gabble cache files - Allow nslcd to read /sys/devices/system/cpu - Allow selinux_store to use symlinks- Allow xdm_t to transition to itself - Call neutron interfaces instead of quantum - Allow init to change targed role to make uncofined services (xrdp which now has own systemd unit file) working. We want them to have in unconfined_t - Make sure directories in /run get created with the correct label - Make sure /root/.pki gets created with the right label - try to remove labeling for motion from zoneminder_exec_t to bin_t - Allow inetd_t to execute shell scripts - Allow cloud-init to read all domainstate - Fix to use quantum port - Add interface netowrkmanager_initrc_domtrans - Fix boinc_execmem - Allow t-mission-control to read gabble cache home - Add labeling for ~/.cache/telepathy/avatars/gabble - Allow memcache to read sysfs data - Cleanup antivirus policy and add additional fixes - Add boolean boinc_enable_execstack - Add support for couchdb in rabbitmq policy - Add interface couchdb_search_pid_dirs - Allow firewalld to read NM state - Allow systemd running as git_systemd to bind git port - Fix mozilla_plugin_rw_tmpfs_files()- Split out rlogin ports from inetd - Treat files labeld as usr_t like bin_t when it comes to transitions - Allow staff_t to read login config - Allow ipsec_t to read .google authenticator data - Allow systemd running as git_systemd to bind git port - Fix mozilla_plugin_rw_tmpfs_files() - Call the correct interface - corenet_udp_bind_ktalkd_port() - Allow all domains that can read gnome_config to read kde config - Allow sandbox domain to read/write mozilla_plugin_tmpfs_t so pulseaudio will work - Allow mdadm to getattr any file system - Allow a confined domain to executes mozilla_exec_t via dbus - Allow cupsd_lpd_t to bind to the printer port - Dontaudit attempts to bind to ports < 1024 when nis is turned on - Allow apache domain to connect to gssproxy socket - Allow rlogind to bind to the rlogin_port - Allow telnetd to bind to the telnetd_port - Allow ktalkd to bind to the ktalkd_port - Allow cvs to bind to the cvs_port- Cleanup related to init_domain()+inetd_domain fixes - Use just init_domain instead of init_daemon_domain in inetd_core_service_domain - svirt domains neeed to create kobject_uevint_sockets - Lots of new access required for sosreport - Allow tgtd_t to connect to isns ports - Allow init_t to transition to all inetd domains: - openct needs to be able to create netlink_object_uevent_sockets - Dontaudit leaks into ldconfig_t - Dontaudit su domains getattr on /dev devices, move su domains to attribute based calls - Move kernel_stream_connect into all Xwindow using users - Dontaudit inherited lock files in ifconfig o dhcpc_t- Also sock_file trans rule is needed in lsm - Fix labeling for fetchmail pid files/dirs - Add additional fixes for abrt-upload-watch - Fix polipo.te - Fix transition rules in asterisk policy - Add fowner capability to networkmanager policy - Allow polipo to connect to tor ports - Cleanup lsmd.if - Cleanup openhpid policy - Fix kdump_read_crash() interface - Make more domains as init domain - Fix cupsd.te - Fix requires in rpm_rw_script_inherited_pipes - Fix interfaces in lsm.if - Allow munin service plugins to manage own tmpfs files/dirs - Allow virtd_t also relabel unix stream sockets for virt_image_type - Make ktalk as init domain - Fix to define ktalkd_unit_file_t correctly - Fix ktalk.fc - Add systemd support for talk-server - Allow glusterd to create sock_file in /run - Allow xdm_t to delete gkeyringd_tmp_t files on logout - Add fixes for hypervkvp policy - Add logwatch_can_sendmail boolean - Allow mysqld_safe_t to handle also symlinks in /var/log/mariadb - Allow xdm_t to delete gkeyringd_tmp_t files on logout- Add selinux-policy-sandbox pkg0 - Allow rhsmcertd to read init state - Allow fsetid for pkcsslotd - Fix labeling for /usr/lib/systemd/system/pkcsslotd.service - Allow fetchmail to create own pid with correct labeling - Fix rhcs_domain_template() - Allow roles which can run mock to read mock lib files to view results - Allow rpcbind to use nsswitch - Fix lsm.if summary - Fix collectd_t can read /etc/passwd file - Label systemd unit files under dracut correctly - Add support for pam_mount to mount user's encrypted home When a user logs in and logs out using ssh - Add support for .Xauthority-n - Label umount.crypt as lvm_exec_t - Allow syslogd to search psad lib files - Allow ssh_t to use /dev/ptmx - Make sure /run/pluto dir is created with correct labeling - Allow syslog to run shell and bin_t commands - Allow ip to relabel tun_sockets - Allow mount to create directories in files under /run - Allow processes to use inherited fifo files- Add policy for lsmd - Add support for /var/log/mariadb dir and allow mysqld_safe to list this directory - Update condor_master rules to allow read system state info and allow logging - Add labeling for /etc/condor and allow condor domain to write it (bug) - Allow condor domains to manage own logs - Allow glusterd to read domains state - Fix initial hypervkvp policy - Add policy for hypervkvpd - Fix redis.if summary- Allow boinc to connect to @/tmp/.X11-unix/X0 - Allow beam.smp to connect to tcp/5984 - Allow named to manage own log files - Add label for /usr/libexec/dcc/start-dccifd and domtrans to dccifd_t - Add virt_transition_userdomain boolean decl - Allow httpd_t to sendto unix_dgram sockets on its children - Allow nova domains to execute ifconfig - bluetooth wants to create fifo_files in /tmp - exim needs to be able to manage mailman data - Allow sysstat to getattr on all file systems - Looks like bluetoothd has moved - Allow collectd to send ping packets - Allow svirt_lxc domains to getpgid - Remove virt-sandbox-service labeling as virsh_exec_t, since it no longer does virsh_t stuff - Allow frpintd_t to read /dev/urandom - Allow asterisk_t to create sock_file in /var/run - Allow usbmuxd to use netlink_kobject - sosreport needs to getattr on lots of devices, and needs access to netlink_kobject_uevent_socket - More cleanup of svirt_lxc policy - virtd_lxc_t now talks to dbus - Dontaudit leaked ptmx_t - Allow processes to use inherited fifo files - Allow openvpn_t to connect to squid ports - Allow prelink_cron_system_t to ask systemd to reloaddd miscfiles_dontaudit_access_check_cert() - Allow ssh_t to use /dev/ptmx - Make sure /run/pluto dir is created with correct labeling - Allow syslog to run shell and bin_t commands - Allow ip to relabel tun_sockets - Allow mount to create directories in files under /run - Allow processes to use inherited fifo files - Allow user roles to connect to the journal socket- selinux_set_enforce_mode needs to be used with type - Add append to the dontaudit for unix_stream_socket of xdm_t leak - Allow xdm_t to create symlinks in log direcotries - Allow login programs to read afs config - Label 10933 as a pop port, for dovecot - New policy to allow selinux_server.py to run as semanage_t as a dbus service - Add fixes to make netlabelctl working on MLS - AVCs required for running sepolicy gui as staff_t - Dontaudit attempts to read symlinks, sepolicy gui is likely to cause this type of AVC - New dbus server to be used with new gui - After modifying some files in /etc/mail, I saw this needed on the next boot - Loading a vm from /usr/tmp with virt-manager - Clean up oracleasm policy for Fedora - Add oracleasm policy written by rlopez@redhat.com - Make postfix_postdrop_t as mta_agent to allow domtrans to system mail if it is executed by apache - Add label for /var/crash - Allow fenced to domtrans to sanclok_t - Allow nagios to manage nagios spool files - Make tfptd as home_manager - Allow kdump to read kcore on MLS system - Allow mysqld-safe sys_nice/sys_resource caps - Allow apache to search automount tmp dirs if http_use_nfs is enabled - Allow crond to transition to named_t, for use with unbound - Allow crond to look at named_conf_t, for unbound - Allow mozilla_plugin_t to transition its home content - Allow dovecot_domain to read all system and network state - Allow httpd_user_script_t to call getpw - Allow semanage to read pid files - Dontaudit leaked file descriptors from user domain into thumb - Make PAM authentication working if it is enabled in ejabberd - Add fixes for rabbit to fix ##992920,#992931 - Allow glusterd to mount filesystems - Loading a vm from /usr/tmp with virt-manager - Trying to load a VM I got an AVC from devicekit_disk for loopcontrol device - Add fix for pand service - shorewall touches own log - Allow nrpe to list /var - Mozilla_plugin_roles can not be passed into lpd_run_lpr - Allow afs domains to read afs_config files - Allow login programs to read afs config - Allow virt_domain to read virt_var_run_t symlinks - Allow smokeping to send its process signals - Allow fetchmail to setuid - Add kdump_manage_crash() interface - Allow abrt domain to write abrt.socket- Add more aliases in pegasus.te - Add more fixes for *_admin interfaces - Add interface fixes - Allow nscd to stream connect to nmbd - Allow gnupg apps to write to pcscd socket - Add more fixes for openlmi provides. Fix naming and support for additionals - Allow fetchmail to resolve host names - Allow firewalld to interact also with lnk files labeled as firewalld_etc_rw_t - Add labeling for cmpiLMI_Fan-cimprovagt - Allow net_admin for glusterd - Allow telepathy domain to create dconf with correct labeling in /home/userX/.cache/ - Add pegasus_openlmi_system_t - Fix puppet_domtrans_master() to make all puppet calling working in passenger.te - Fix corecmd_exec_chroot() - Fix logging_relabel_syslog_pid_socket interface - Fix typo in unconfineduser.te - Allow system_r to access unconfined_dbusd_t to run hp_chec- Allow xdm_t to act as a dbus client to itsel - Allow fetchmail to resolve host names - Allow gnupg apps to write to pcscd socket - Add labeling for cmpiLMI_Fan-cimprovagt - Allow net_admin for glusterd - Allow telepathy domain to create dconf with correct labeling in /home/userX/.cache/ - Add pegasus_openlmi_system_t - Fix puppet_domtrans_master() to make all puppet calling working in passenger.te -httpd_t does access_check on certs- Add support for cmpiLMI_Service-cimprovagt - Allow pegasus domtrans to rpm_t to make pycmpiLMI_Software-cimprovagt running as rpm_t - Label pycmpiLMI_Software-cimprovagt as rpm_exec_t - Add support for pycmpiLMI_Storage-cimprovagt - Add support for cmpiLMI_Networking-cimprovagt - Allow system_cronjob_t to create user_tmpfs_t to make pulseaudio working - Allow virtual machines and containers to run as user doains, needed for virt-sandbox - Allow buglist.cgi to read cpu info- Allow systemd-tmpfile to handle tmp content in print spool dir - Allow systemd-sysctl to send system log messages - Add support for RTP media ports and fmpro-internal - Make auditd working if audit is configured to perform SINGLE action on disk error - Add interfaces to handle systemd units - Make systemd-notify working if pcsd is used - Add support for netlabel and label /usr/sbin/netlabelctl as iptables_exec_t - Instead of having all unconfined domains get all of the named transition rules, - Only allow unconfined_t, init_t, initrc_t and rpm_script_t by default. - Add definition for the salt ports - Allow xdm_t to create link files in xdm_var_run_t - Dontaudit reads of blk files or chr files leaked into ldconfig_t - Allow sys_chroot for useradd_t - Allow net_raw cap for ipsec_t - Allow sysadm_t to reload services - Add additional fixes to make strongswan working with a simple conf - Allow sysadm_t to enable/disable init_t services - Add additional glusterd perms - Allow apache to read lnk files in the /mnt directory - Allow glusterd to ask the kernel to load a module - Fix description of ftpd_use_fusefs boolean - Allow svirt_lxc_net_t to sys_chroot, modify policy to tighten up svirt_lxc_domain capabilties and process controls, but add them to svirt_lxc_net_t - Allow glusterds to request load a kernel module - Allow boinc to stream connect to xserver_t - Allow sblim domains to read /etc/passwd - Allow mdadm to read usb devices - Allow collectd to use ping plugin - Make foghorn working with SNMP - Allow sssd to read ldap certs - Allow haproxy to connect to RTP media ports - Add additional trans rules for aide_db - Add labeling for /usr/lib/pcsd/pcsd - Add labeling for /var/log/pcsd - Add support for pcs which is a corosync and pacemaker configuration tool- Label /var/lib/ipa/pki-ca/publish as pki_tomcat_cert_t - Add labeling for /usr/libexec/kde4/polkit-kde-authentication-agent-1 - Allow all domains that can domtrans to shutdown, to start the power services script to shutdown - consolekit needs to be able to shut down system - Move around interfaces - Remove nfsd_rw_t and nfsd_ro_t, they don't do anything - Add additional fixes for rabbitmq_beam to allow getattr on mountpoints - Allow gconf-defaults-m to read /etc/passwd - Fix pki_rw_tomcat_cert() interface to support lnk_files- Add support for gluster ports - Make sure that all keys located in /etc/ssh/ are labeled correctly - Make sure apcuspd lock files get created with the correct label - Use getcap in gluster.te - Fix gluster policy - add additional fixes to allow beam.smp to interact with couchdb files - Additional fix for #974149 - Allow gluster to user gluster ports - Allow glusterd to transition to rpcd_t and add additional fixes for #980683 - Allow tgtd working when accessing to the passthrough device - Fix labeling for mdadm unit files- Add mdadm fixes- Fix definition of sandbox.disabled to sandbox.pp.disabled- Allow mdamd to execute systemctl - Allow mdadm to read /dev/kvm - Allow ipsec_mgmt_t to read l2tpd pid content- Allow nsd_t to read /dev/urand - Allow mdadm_t to read framebuffer - Allow rabbitmq_beam_t to read process info on rabbitmq_epmd_t - Allow mozilla_plugin_config_t to create tmp files - Cleanup openvswitch policy - Allow mozilla plugin to getattr on all executables - Allow l2tpd_t to create fifo_files in /var/run - Allow samba to touch/manage fifo_files or sock_files in a samba_share_t directory - Allow mdadm to connecto its own unix_stream_socket - FIXME: nagios changed locations to /log/nagios which is wrong. But we need to have this workaround for now. - Allow apache to access smokeping pid files - Allow rabbitmq_beam_t to getattr on all filesystems - Add systemd support for iodined - Allow nup_upsdrvctl_t to execute its entrypoint - Allow fail2ban_client to write to fail2ban_var_run_t, Also allow it to use nsswitch - add labeling for ~/.cache/libvirt-sandbox - Add interface to allow domains transitioned to by confined users to send sigchld to screen program - Allow sysadm_t to check the system status of files labeled etc_t, /etc/fstab - Allow systemd_localed to start /usr/lib/systemd/system/systemd-vconsole-setup.service - Allow an domain that has an entrypoint from a type to be allowed to execute the entrypoint without a transition, I can see no case where this is a bad thing, and elminiates a whole class of AVCs. - Allow staff to getsched all domains, required to run htop - Add port definition for redis port - fix selinuxuser_use_ssh_chroot boolean- Add prosody policy written by Michael Scherer - Allow nagios plugins to read /sys info - ntpd needs to manage own log files - Add support for HOME_DIR/.IBMERS - Allow iptables commands to read firewalld config - Allow consolekit_t to read utmp - Fix filename transitions on .razor directory - Add additional fixes to make DSPAM with LDA working - Allow snort to read /etc/passwd - Allow fail2ban to communicate with firewalld over dbus - Dontaudit openshift_cgreoup_file_t read/write leaked dev - Allow nfsd to use mountd port - Call th proper interface - Allow openvswitch to read sys and execute plymouth - Allow tmpwatch to read /var/spool/cups/tmp - Add support for /usr/libexec/telepathy-rakia - Add systemd support for zoneminder - Allow mysql to create files/directories under /var/log/mysql - Allow zoneminder apache scripts to rw zoneminder tmpfs - Allow httpd to manage zoneminder lib files - Add zoneminder_run_sudo boolean to allow to start zoneminder - Allow zoneminder to send mails - gssproxy_t sock_file can be under /var/lib - Allow web domains to connect to whois port. - Allow sandbox_web_type to connect to the same ports as mozilla_plugin_t. - We really need to add an interface to corenet to define what a web_client_domain is and - then define chrome_sandbox_t, mozilla_plugin_t and sandbox_web_type to that domain. - Add labeling for cmpiLMI_LogicalFile-cimprovagt - Also make pegasus_openlmi_logicalfile_t as unconfined to have unconfined_domain attribute for filename trans rules - Update policy rules for pegasus_openlmi_logicalfile_t - Add initial types for logicalfile/unconfined OpenLMI providers - mailmanctl needs to read own log - Allow logwatch manage own lock files - Allow nrpe to read meminfo - Allow httpd to read certs located in pki-ca - Add pki_read_tomcat_cert() interface - Add support for nagios openshift plugins - Add port definition for redis port - fix selinuxuser_use_ssh_chroot boolean- Shrink the size of policy by moving to attributes, also add dridomain so that mozilla_plugin can follow selinuxuse_dri boolean. - Allow bootloader to manage generic log files - Allow ftp to bind to port 989 - Fix label of new gear directory - Add support for new directory /var/lib/openshift/gears/ - Add openshift_manage_lib_dirs() - allow virtd domains to manage setrans_var_run_t - Allow useradd to manage all openshift content - Add support so that mozilla_plugin_t can use dri devices - Allow chronyd to change the scheduler - Allow apmd to shut downthe system - Devicekit_disk_t needs to manage /etc/fstab- Make DSPAM to act as a LDA working - Allow ntop to create netlink socket - Allow policykit to send a signal to policykit-auth - Allow stapserver to dbus chat with avahi/systemd-logind - Fix labeling on haproxy unit file - Clean up haproxy policy - A new policy for haproxy and placed it to rhcs.te - Add support for ldirectord and treat it with cluster_t - Make sure anaconda log dir is created with var_log_t- Allow lvm_t to create default targets for filesystem handling - Fix labeling for razor-lightdm binaries - Allow insmod_t to read any file labeled var_lib_t - Add policy for pesign - Activate policy for cmpiLMI_Account-cimprovagt - Allow isnsd syscall=listen - /usr/libexec/pegasus/cimprovagt needs setsched caused by sched_setscheduler - Allow ctdbd to use udp/4379 - gatherd wants sys_nice and setsched - Add support for texlive2012 - Allow NM to read file_t (usb stick with no labels used to transfer keys for example) - Allow cobbler to execute apache with domain transition- condor_collector uses tcp/9000 - Label /usr/sbin/virtlockd as virtd_exec_t for now - Allow cobbler to execute ldconfig - Allow NM to execute ssh - Allow mdadm to read /dev/crash - Allow antivirus domains to connect to snmp port - Make amavisd-snmp working correctly - Allow nfsd_t to mounton nfsd_fs_t - Add initial snapper policy - We still need to have consolekit policy - Dontaudit firefox attempting to connect to the xserver_port_t if run within sandbox_web_t - Dontaudit sandbox apps attempting to open user_devpts_t - Allow dirsrv to read network state - Fix pki_read_tomcat_lib_files - Add labeling for /usr/libexec/nm-ssh-service - Add label cert_t for /var/lib/ipa/pki-ca/publish - Lets label /sys/fs/cgroup as cgroup_t for now, to keep labels consistant - Allow nfsd_t to mounton nfsd_fs_t - Dontaudit sandbox apps attempting to open user_devpts_t - Allow passwd_t to change role to system_r from unconfined_r- Don't audit access checks by sandbox xserver on xdb var_lib - Allow ntop to read usbmon devices - Add labeling for new polcykit authorizor - Dontaudit access checks from fail2ban_client - Don't audit access checks by sandbox xserver on xdb var_lib - Allow apps that connect to xdm stream to conenct to xdm_dbusd_t stream - Fix labeling for all /usr/bim/razor-lightdm-* binaries - Add filename trans for /dev/md126p1- Make vdagent able to request loading kernel module - Add support for cloud-init make it as unconfined domain - Allow snmpd to run smartctl in fsadm_t domain - remove duplicate openshift_search_lib() interface - Allow mysqld to search openshift lib files - Allow openshift cgroup to interact with passedin file descriptors - Allow colord to list directories inthe users homedir - aide executes prelink to check files - Make sure cupsd_t creates content in /etc/cups with the correct label - Lest dontaudit apache read all domains, so passenger will not cause this avc - Allow gssd to connect to gssproxy - systemd-tmpfiles needs to be able to raise the level to fix labeling on /run/setrans in MLS - Allow systemd-tmpfiles to relabel also lock files - Allow useradd to add homdir in /var/lib/openshift - Allow setfiles and semanage to write output to /run/files- Add labeling for /dev/tgt - Dontaudit leak fd from firewalld for modprobe - Allow runuser running as rpm_script_t to create netlink_audit socket - Allow mdadm to read BIOS non-volatile RAM- accountservice watches when accounts come and go in wtmp - /usr/java/jre1.7.0_21/bin/java needs to create netlink socket - Add httpd_use_sasl boolean - Allow net_admin for tuned_t - iscsid needs sys_module to auto-load kernel modules - Allow blueman to read bluetooth conf - Add nova_manage_lib_files() interface - Fix mplayer_filetrans_home_content() - Add mplayer_filetrans_home_content() - mozilla_plugin_config_roles need to be able to access mozilla_plugin_config_t - Revert "Allow thumb_t to append inherited xdm stream socket" - Add iscsi_filetrans_named_content() interface - Allow to create .mplayer with the correct labeling for unconfined - Allow iscsiadmin to create lock file with the correct labeling- Allow wine to manage wine home content - Make amanda working with socket actiovation - Add labeling for /usr/sbin/iscsiadm - Add support for /var/run/gssproxy.sock - dnsmasq_t needs to read sysctl_net_t- Fix courier_domain_template() interface - Allow blueman to write ip_forward - Allow mongodb to connect to mongodb port - Allow mongodb to connect to mongodb port - Allow java to bind jobss_debug port - Fixes for *_admin interfaces - Allow iscsid auto-load kernel modules needed for proper iSCSI functionality - Need to assign attribute for courier_domain to all courier_domains - Fail2ban reads /etc/passwd - postfix_virtual will create new files in postfix_spool_t - abrt triggers sys_ptrace by running pidof - Label ~/abc as mozilla_home_t, since java apps as plugin want to create it - Add passenger fixes needed by foreman - Remove dup interfaces - Add additional interfaces for quantum - Add new interfaces for dnsmasq - Allow passenger to read localization and send signull to itself - Allow dnsmasq to stream connect to quantum - Add quantum_stream_connect() - Make sure that mcollective starts the service with the correct labeling - Add labels for ~/.manpath - Dontaudit attempts by svirt_t to getpw* calls - sandbox domains are trying to look at parent process data - Allow courior auth to create its pid file in /var/spool/courier subdir - Add fixes for beam to have it working with couchdb - Add labeling for /run/nm-xl2tpd.con - Allow apache to stream connect to thin - Add systemd support for amand - Make public types usable for fs mount points - Call correct mandb interface in domain.te - Allow iptables to r/w quantum inherited pipes and send sigchld - Allow ifconfig domtrans to iptables and execute ldconfig - Add labels for ~/.manpath - Allow systemd to read iscsi lib files - seunshare is trying to look at parent process data- Fix openshift_search_lib - Add support for abrt-uefioops-oops - Allow colord to getattr any file system - Allow chrome processes to look at each other - Allow sys_ptrace for abrt_t - Add new policy for gssproxy - Dontaudit leaked file descriptor writes from firewalld - openshift_net_type is interface not template - Dontaudit pppd to search gnome config - Update openshift_search_lib() interface - Add fs_list_pstorefs() - Fix label on libbcm_host.so since it is built incorrectly on raspberry pi, needs back port to F18 - Better labels for raspberry pi devices - Allow init to create devpts_t directory - Temporarily label rasbery pi devices as memory_device_t, needs back port to f18 - Allow sysadm_t to build kernels - Make sure mount creates /var/run/blkid with the correct label, needs back port to F18 - Allow userdomains to stream connect to gssproxy - Dontaudit leaked file descriptor writes from firewalld - Allow xserver to read /dev/urandom - Add additional fixes for ipsec-mgmt - Make SSHing into an Openshift Enterprise Node working- Add transition rules to unconfined domains and to sysadm_t to create /etc/adjtime - with the proper label. - Update files_filetrans_named_content() interface to get right labeling for pam.d conf files - Allow systemd-timedated to create adjtime - Add clock_create_adjtime() - Additional fix ifconfing for #966106 - Allow kernel_t to create boot.log with correct labeling - Remove unconfined_mplayer for which we don't have rules - Rename interfaces - Add userdom_manage_user_home_files/dirs interfaces - Fix files_dontaudit_read_all_non_security_files - Fix ipsec_manage_key_file() - Fix ipsec_filetrans_key_file() - Label /usr/bin/razor-lightdm-greeter as xdm_exec_t instead of spamc_exec_t - Fix labeling for ipse.secrets - Add interfaces for ipsec and labeling for ipsec.info and ipsec_setup.pid - Add files_dontaudit_read_all_non_security_files() interface - /var/log/syslog-ng should be labeled var_log_t - Make ifconfig_var_run_t a mountpoint - Add transition from ifconfig to dnsmasq - Allow ifconfig to execute bin_t/shell_exec_t - We want to have hwdb.bin labeled as etc_t - update logging_filetrans_named_content() interface - Allow systemd_timedate_t to manage /etc/adjtime - Allow NM to send signals to l2tpd - Update antivirus_can_scan_system boolean - Allow devicekit_disk_t to sys_config_tty - Run abrt-harvest programs as abrt_t, and allow abrt_t to list all filesystem directories - Make printing from vmware working - Allow php-cgi from php54 collection to access /var/lib/net-snmp/mib_indexes - Add virt_qemu_ga_data_t for qemu-ga - Make chrome and mozilla able to connect to same ports, add jboss_management_port_t to both - Fix typo in virt.te - Add virt_qemu_ga_unconfined_t for hook scripts - Make sure NetworkManager files get created with the correct label - Add mozilla_plugin_use_gps boolean - Fix cyrus to have support for net-snmp - Additional fixes for dnsmasq and quantum for #966106 - Add plymouthd_create_log() - remove httpd_use_oddjob for which we don't have rules - Add missing rules for httpd_can_network_connect_cobbler - Add missing cluster_use_execmem boolean - Call userdom_manage_all_user_home_type_files/dirs - Additional fix for ftp_home_dir - Fix ftp_home_dir boolean - Allow squit to recv/send client squid packet - Fix nut.te to have nut_domain attribute - Add support for ejabberd; TODO: revisit jabberd and rabbit policy - Fix amanda policy - Add more fixes for domains which use libusb - Make domains which use libusb working correctly - Allow l2tpd to create ipsec key files with correct labeling and manage them - Fix cobbler_manage_lib_files/cobbler_read_lib_files to cover also lnk files - Allow rabbitmq-beam to bind generic node - Allow l2tpd to read ipse-mgmt pid files - more fixes for l2tpd, NM and pppd from #967072- Dontaudit to getattr on dirs for dovecot-deliver - Allow raiudusd server connect to postgresql socket - Add kerberos support for radiusd - Allow saslauthd to connect to ldap port - Allow postfix to manage postfix_private_t files - Add chronyd support for #965457 - Fix labeling for HOME_DIR/\.icedtea - CHange squid and snmpd to be allowed also write own logs - Fix labeling for /usr/libexec/qemu-ga - Allow virtd_t to use virt_lock_t - Allow also sealert to read the policy from the kernel - qemu-ga needs to execute scripts in /usr/libexec/qemu-ga and to use /tmp content - Dontaudit listing of users homedir by sendmail Seems like a leak - Allow passenger to transition to puppet master - Allow apache to connect to mythtv - Add definition for mythtv ports- Add additional fixes for #948073 bug - Allow sge_execd_t to also connect to sge ports - Allow openshift_cron_t to manage openshift_var_lib_t sym links - Allow openshift_cron_t to manage openshift_var_lib_t sym links - Allow sge_execd to bind sge ports. Allow kill capability and reads cgroup files - Remove pulseaudio filetrans pulseaudio_manage_home_dirs which is a part of pulseaudio_manage_home_files - Add networkmanager_stream_connect() - Make gnome-abrt wokring with staff_t - Fix openshift_manage_lib_files() interface - mdadm runs ps command which seems to getattr on random log files - Allow mozilla_plugin_t to create pulseaudit_home_t directories - Allow qemu-ga to shutdown virtual hosts - Add labelling for cupsd-browsed - Add web browser plugins to connect to aol ports - Allow nm-dhcp-helper to stream connect to NM - Add port definition for sge ports- Make sure users and unconfined domains create .hushlogin with the correct label - Allow pegaus to chat with realmd over DBus - Allow cobblerd to read network state - Allow boicn-client to stat on /dev/input/mice - Allow certwatch to read net_config_t when it executes apache - Allow readahead to create /run/systemd and then create its own directory with the correct label- Transition directories and files when in a user_tmp_t directory - Change certwatch to domtrans to apache instead of just execute - Allow virsh_t to read xen lib files - update policy rules for pegasus_openlmi_account_t - Add support for svnserve_tmp_t - Activate account openlmi policy - pegasus_openlmi_domain_template needs also require pegasus_t - One more fix for policykit.te - Call fs_list_cgroups_dirs() in policykit.te - Allow nagios service plugin to read mysql config files - Add labeling for /var/svn - Fix chrome.te - Fix pegasus_openlmi_domain_template() interfaces - Fix dev_rw_vfio_dev definiton, allow virtd_t to read tmpfs_t symlinks - Fix location of google-chrome data - Add support for chome_sandbox to store content in the homedir - Allow policykit to watch for changes in cgroups file system - Add boolean to allow mozilla_plugin_t to use spice - Allow collectd to bind to udp port - Allow collected_t to read all of /proc - Should use netlink socket_perms - Should use netlink socket_perms - Allow glance domains to connect to apache ports - Allow apcupsd_t to manage its log files - Allow chrome objects to rw_inherited unix_stream_socket from callers - Allow staff_t to execute virtd_exec_t for running vms - nfsd_t needs to bind mountd port to make nfs-mountd.service working - Allow unbound net_admin capability because of setsockopt syscall - Fix fs_list_cgroup_dirs() - Label /usr/lib/nagios/plugins/utils.pm as bin_t - Remove uplicate definition of fs_read_cgroup_files() - Remove duplicate definition of fs_read_cgroup_files() - Add files_mountpoint_filetrans interface to be used by quotadb_t and snapperd - Additional interfaces needed to list and read cgroups config - Add port definition for collectd port - Add labels for /dev/ptp* - Allow staff_t to execute virtd_exec_t for running vms- Allow samba-net to also read realmd tmp files - Allow NUT to use serial ports - realmd can be started by systemctl now- Remove userdom_home_manager for xdm_t and move all rules to xserver.te directly - Add new xdm_write_home boolean to allow xdm_t to create files in HOME dirs with xdm_home_t - Allow postfix-showq to read/write unix.showq in /var/spool/postfix/pid - Allow virsh to read xen lock file - Allow qemu-ga to create files in /run with proper labeling - Allow glusterd to connect to own socket in /tmp - Allow glance-api to connect to http port to make glance image-create working - Allow keystonte_t to execute rpm- Fix realmd cache interfaces- Allow tcpd to execute leafnode - Allow samba-net to read realmd cache files - Dontaudit sys_tty_config for alsactl - Fix allow rules for postfix_var_run - Allow cobblerd to read /etc/passwd - Allow pegasus to read exports - Allow systemd-timedate to read xdm state - Allow mout to stream connect to rpcbind - Add labeling just for /usr/share/pki/ca-trust-source instead of /usr/share/pki- Allow thumbnails to share memory with apps which run thumbnails - Allow postfix-postqueue block_suspend - Add lib interfaces for smsd - Add support for nginx - Allow s2s running as jabberd_t to connect to jabber_interserver_port_t - Allow pki apache domain to create own tmp files and execute httpd_suexec - Allow procmail to manger user tmp files/dirs/lnk_files - Add virt_stream_connect_svirt() interface - Allow dovecot-auth to execute bin_t - Allow iscsid to request that kernel load a kernel module - Add labeling support for /var/lib/mod_security - Allow iw running as tuned_t to create netlink socket - Dontaudit sys_tty_config for thumb_t - Add labeling for nm-l2tp-service - Allow httpd running as certwatch_t to open tcp socket - Allow useradd to manager smsd lib files - Allow useradd_t to add homedirs in /var/lib - Fix typo in userdomain.te - Cleanup userdom_read_home_certs - Implement userdom_home_reader_certs_type to allow read certs also on encrypt /home with ecryptfs_t - Allow staff to stream connect to svirt_t to make gnome-boxes working- Allow lvm to create its own unit files - Label /var/lib/sepolgen as selinux_config_t - Add filetrans rules for tw devices - Add transition from cupsd_config_t to cupsd_t- Add filetrans rules for tw devices - Cleanup bad transition lines- Fix lockdev_manage_files() - Allow setroubleshootd to read var_lib_t to make email_alert working - Add lockdev_manage_files() - Call proper interface in virt.te - Allow gkeyring_domain to create /var/run/UID/config/dbus file - system dbus seems to be blocking suspend - Dontaudit attemps to sys_ptrace, which I believe gpsd does not need - When you enter a container from root, you generate avcs with a leaked file descriptor - Allow mpd getattr on file system directories - Make sure realmd creates content with the correct label - Allow systemd-tty-ask to write kmsg - Allow mgetty to use lockdev library for device locking - Fix selinuxuser_user_share_music boolean name to selinuxuser_share_music - When you enter a container from root, you generate avcs with a leaked file descriptor - Make sure init.fc files are labeled correctly at creation - File name trans vconsole.conf - Fix labeling for nagios plugins - label shared libraries in /opt/google/chrome as testrel_shlib_t- Allow certmonger to dbus communicate with realmd - Make realmd working- Fix mozilla specification of homedir content - Allow certmonger to read network state - Allow tmpwatch to read tmp in /var/spool/{cups,lpd} - Label all nagios plugin as unconfined by default - Add httpd_serve_cobbler_files() - Allow mdadm to read /dev/sr0 and create tmp files - Allow certwatch to send mails - Fix labeling for nagios plugins - label shared libraries in /opt/google/chrome as testrel_shlib_t- Allow realmd to run ipa, really needs to be an unconfined_domain - Allow sandbox domains to use inherted terminals - Allow pscd to use devices labeled svirt_image_t in order to use cat cards. - Add label for new alsa pid - Alsa now uses a pid file and needs to setsched - Fix oracleasmfs_t definition - Add support for sshd_unit_file_t - Add oracleasmfs_t - Allow unlabeled_t files to be stored on unlabeled_t filesystems- Fix description of deny_ptrace boolean - Remove allow for execmod lib_t for now - Allow quantum to connect to keystone port - Allow nova-console to talk with mysql over unix stream socket - Allow dirsrv to stream connect to uuidd - thumb_t needs to be able to create ~/.cache if it does not exist - virtd needs to be able to sys_ptrace when starting and stoping containers- Allow alsa_t signal_perms, we probaly should search for any app that can execute something without transition and give it signal_perms... - Add dontaudit for mozilla_plugin_t looking at the xdm_t sockets - Fix deny_ptrace boolean, certain ptrace leaked into the system - Allow winbind to manage kerberos_rcache_host - Allow spamd to create spamd_var_lib_t directories - Remove transition to mozilla_tmp_t by mozilla_t, to allow it to manage the users tmp dirs - Add mising nslcd_dontaudit_write_sock_file() interface - one more fix - Fix pki_read_tomcat_lib_files() interface - Allow certmonger to read pki-tomcat lib files - Allow certwatch to execute bin_t - Allow snmp to manage /var/lib/net-snmp files - Call snmp_manage_var_lib_files(fogorn_t) instead of snmp_manage_var_dirs - Fix vmware_role() interface - Fix cobbler_manage_lib_files() interface - Allow nagios check disk plugins to execute bin_t - Allow quantum to transition to openvswitch_t - Allow postdrop to stream connect to postfix-master - Allow quantum to stream connect to openvswitch - Add xserver_dontaudit_xdm_rw_stream_sockets() interface - Allow daemon to send dgrams to initrc_t - Allow kdm to start the power service to initiate a reboot or poweroff- Add mising nslcd_dontaudit_write_sock_file() interface - one more fix - Fix pki_read_tomcat_lib_files() interface - Allow certmonger to read pki-tomcat lib files - Allow certwatch to execute bin_t - Allow snmp to manage /var/lib/net-snmp files - Don't audit attempts to write to stream socket of nscld by thumbnailers - Allow git_system_t to read network state - Allow pegasas to execute mount command - Fix desc for drdb_admin - Fix condor_amin() - Interface fixes for uptime, vdagent, vnstatd - Fix labeling for moodle in /var/www/moodle/data - Add interface fixes - Allow bugzilla to read certs - /var/www/moodle needs to be writable by apache - Add interface to dontaudit attempts to send dbus messages to systemd domains, for xguest - Fix namespace_init_t to create content with proper labels, and allow it to manage all user content - Allow httpd_t to connect to osapi_compute port using httpd_use_openstack bolean - Fixes for dlm_controld - Fix apache_read_sys_content_rw_dirs() interface - Allow logrotate to read /var/log/z-push dir - Fix sys_nice for cups_domain - Allow postfix_postdrop to acces postfix_public socket - Allow sched_setscheduler for cupsd_t - Add missing context for /usr/sbin/snmpd - Kernel_t needs mac_admin in order to support labeled NFS - Fix systemd_dontaudit_dbus_chat() interface - Add interface to dontaudit attempts to send dbus messages to systemd domains, for xguest - Allow consolehelper domain to write Xauth files in /root - Add port definition for osapi_compute port - Allow unconfined to create /etc/hostname with correct labeling - Add systemd_filetrans_named_hostname() interface- Allow httpd_t to connect to osapi_compute port using httpd_use_openstack bolean - Fixes for dlm_controld - Fix apache_read_sys_content_rw_dirs() interface - Allow logrotate to read /var/log/z-push dir - Allow postfix_postdrop to acces postfix_public socket - Allow sched_setscheduler for cupsd_t - Add missing context for /usr/sbin/snmpd - Allow consolehelper more access discovered by Tom London - Allow fsdaemon to send signull to all domain - Add port definition for osapi_compute port - Allow unconfined to create /etc/hostname with correct labeling - Add systemd_filetrans_named_hostname() interface- Fix file_contexts.subs to label /run/lock correctly- Try to label on controlC devices up to 30 correctly - Add mount_rw_pid_files() interface - Add additional mount/umount interfaces needed by mock - fsadm_t sends audit messages in reads kernel_ipc_info when doing livecd-iso-to-disk - Fix tabs - Allow initrc_domain to search rgmanager lib files - Add more fixes which make mock working together with confined users * Allow mock_t to manage rpm files * Allow mock_t to read rpm log files * Allow mock to setattr on tmpfs, devpts * Allow mount/umount filesystems - Add rpm_read_log() interface - yum-cron runs rpm from within it. - Allow tuned to transition to dmidecode - Allow firewalld to do net_admin - Allow mock to unmont tmpfs_t - Fix virt_sigkill() interface - Add additional fixes for mock. Mainly caused by mount running in mock_t - Allow mock to write sysfs_t and mount pid files - Add mailman_domain to mailman_template() - Allow openvswitch to execute shell - Allow qpidd to use kerberos - Allow mailman to use fusefs, needs back port to RHEL6 - Allow apache and its scripts to use anon_inodefs - Add alias for git_user_content_t and git_sys_content_t so that RHEL6 will update to RHEL7 - Realmd needs to connect to samba ports, needs back port to F18 also - Allow colord to read /run/initial-setup- - Allow sanlock-helper to send sigkill to virtd which is registred to sanlock - Add virt_kill() interface - Add rgmanager_search_lib() interface - Allow wdmd to getattr on all filesystems. Back ported from RHEL6- Allow realmd to create tmp files - FIx ircssi_home_t type to irssi_home_t - Allow adcli running as realmd_t to connect to ldap port - Allow NetworkManager to transition to ipsec_t, for running strongswan - Make openshift_initrc_t an lxc_domain - Allow gssd to manage user_tmp_t files - Fix handling of irclogs in users homedir - Fix labeling for drupal an wp-content in subdirs of /var/www/html - Allow abrt to read utmp_t file - Fix openshift policy to transition lnk_file, sock-file an fifo_file when created in a tmpfs_t, needs back port to RHEL6 - fix labeling for (oo|rhc)-restorer-wrapper.sh - firewalld needs to be able to write to network sysctls - Fix mozilla_plugin_dontaudit_rw_sem() interface - Dontaudit generic ipc read/write to a mozilla_plugin for sandbox_x domains - Add mozilla_plugin_dontaudit_rw_sem() interface - Allow svirt_lxc_t to transition to openshift domains - Allow condor domains block_suspend and dac_override caps - Allow condor_master to read passd - Allow condor_master to read system state - Allow NetworkManager to transition to ipsec_t, for running strongswan - Lots of access required by lvm_t to created encrypted usb device - Allow xdm_t to dbus communicate with systemd_localed_t - Label strongswan content as ipsec_exec_mgmt_t for now - Allow users to dbus chat with systemd_localed - Fix handling of .xsession-errors in xserver.if, so kde will work - Might be a bug but we are seeing avc's about people status on init_t:service - Make sure we label content under /var/run/lock as <> - Allow daemon and systemprocesses to search init_var_run_t directory - Add boolean to allow xdm to write xauth data to the home directory - Allow mount to write keys for the unconfined domain - Add unconfined_write_keys() interface- Add labeling for /usr/share/pki - Allow programs that read var_run_t symlinks also read var_t symlinks - Add additional ports as mongod_port_t for 27018, 27019, 28017, 28018 and 28019 ports - Fix labeling for /etc/dhcp directory - add missing systemd_stub_unit_file() interface - Add files_stub_var() interface - Add lables for cert_t directories - Make localectl set-x11-keymap working at all - Allow abrt to manage mock build environments to catch build problems. - Allow virt_domains to setsched for running gdb on itself - Allow thumb_t to execute user home content - Allow pulseaudio running as mozilla_plugin_t to read /run/systemd/users/1000 - Allow certwatch to execut /usr/bin/httpd - Allow cgred to send signal perms to itself, needs back port to RHEL6 - Allow openshift_cron_t to look at quota - Allow cups_t to read inhered tmpfs_t from the kernel - Allow yppasswdd to use NIS - Tuned wants sys_rawio capability - Add ftpd_use_fusefs boolean - Allow dirsrvadmin_t to signal itself- Allow localectl to read /etc/X11/xorg.conf.d directory - Revert "Revert "Fix filetrans rules for kdm creates .xsession-errors"" - Allow mount to transition to systemd_passwd_agent - Make sure abrt directories are labeled correctly - Allow commands that are going to read mount pid files to search mount_var_run_t - label /usr/bin/repoquery as rpm_exec_t - Allow automount to block suspend - Add abrt_filetrans_named_content so that abrt directories get labeled correctly - Allow virt domains to setrlimit and read file_context- Allow nagios to manage nagios spool files - /var/spool/snmptt is a directory which snmdp needs to write to, needs back port to RHEL6 - Add swift_alias.* policy files which contain typealiases for swift types - Add support for /run/lock/opencryptoki - Allow pkcsslotd chown capability - Allow pkcsslotd to read passwd - Add rsync_stub() interface - Allow systemd_timedate also manage gnome config homedirs - Label /usr/lib64/security/pam_krb5/pam_krb5_cchelper as bin_t - Fix filetrans rules for kdm creates .xsession-errors - Allow sytemd_tmpfiles to create wtmp file - Really should not label content under /var/lock, since it could have labels on it different from var_lock_t - Allow systemd to list all file system directories - Add some basic stub interfaces which will be used in PRODUCT policies- Fix log transition rule for cluster domains - Start to group all cluster log together - Dont use filename transition for POkemon Advanced Adventure until a new checkpolicy update - cups uses usbtty_device_t devices - These fixes were all required to build a MLS virtual Machine with single level desktops - Allow domains to transiton using httpd_exec_t - Allow svirt domains to manage kernel key rings - Allow setroubleshoot to execute ldconfig - Allow firewalld to read generate gnome data - Allow bluetooth to read machine-info - Allow boinc domain to send signal to itself - Fix gnome_filetrans_home_content() interface - Allow mozilla_plugins to list apache modules, for use with gxine - Fix labels for POkemon in the users homedir - Allow xguest to read mdstat - Dontaudit virt_domains getattr on /dev/* - These fixes were all required to build a MLS virtual Machine with single level desktops - Need to back port this to RHEL6 for openshift - Add tcp/8891 as milter port - Allow nsswitch domains to read sssd_var_lib_t files - Allow ping to read network state. - Fix typo - Add labels to /etc/X11/xorg.d and allow systemd-timestampd_t to manage them- Adopt swift changes from lhh@redhat.com - Add rhcs_manage_cluster_pid_files() interface - Allow screen domains to configure tty and setup sock_file in ~/.screen directory - ALlow setroubleshoot to read default_context_t, needed to backport to F18 - Label /etc/owncloud as being an apache writable directory - Allow sshd to stream connect to an lxc domain- Allow postgresql to manage rgmanager pid files - Allow postgresql to read ccs data - Allow systemd_domain to send dbus messages to policykit - Add labels for /etc/hostname and /etc/machine-info and allow systemd-hostnamed to create them - All systemd domains that create content are reading the file_context file and setfscreate - Systemd domains need to search through init_var_run_t - Allow sshd to communicate with libvirt to set containers labels - Add interface to manage pid files - Allow NetworkManger_t to read /etc/hostname - Dontaudit leaked locked files into openshift_domains - Add fixes for oo-cgroup-read - it nows creates tmp files - Allow gluster to manage all directories as well as files - Dontaudit chrome_sandbox_nacl_t using user terminals - Allow sysstat to manage its own log files - Allow virtual machines to setrlimit and send itself signals. - Add labeling for /var/run/hplip- Fix POSTIN scriptlet- Merge rgmanger, corosync,pacemaker,aisexec policies to cluster_t in rhcs.pp- Fix authconfig.py labeling - Make any domains that write homedir content do it correctly - Allow glusterd to read/write anyhwere on the file system by default - Be a little more liberal with the rsync log files - Fix iscsi_admin interface - Allow iscsid_t to read /dev/urand - Fix up iscsi domain for use with unit files - Add filename transition support for spamassassin policy - Allow web plugins to use badly formated libraries - Allow nmbd_t to create samba_var_t directories - Add filename transition support for spamassassin policy - Add filename transition support for tvtime - Fix alsa_home_filetrans_alsa_home() interface - Move all userdom_filetrans_home_content() calling out of booleans - Allow logrotote to getattr on all file sytems - Remove duplicate userdom_filetrans_home_content() calling - Allow kadmind to read /etc/passwd - Dontaudit append .xsession-errors file on ecryptfs for policykit-auth - Allow antivirus domain to manage antivirus db links - Allow logrotate to read /sys - Allow mandb to setattr on man dirs - Remove mozilla_plugin_enable_homedirs boolean - Fix ftp_home_dir boolean - homedir mozilla filetrans has been moved to userdom_home_manager - homedir telepathy filetrans has been moved to userdom_home_manager - Remove gnome_home_dir_filetrans() from gnome_role_gkeyringd() - Might want to eventually write a daemon on fusefsd. - Add policy fixes for sshd [net] child from plautrba@redhat.com - Tor uses a new port - Remove bin_t for authconfig.py - Fix so only one call to userdom_home_file_trans - Allow home_manager_types to create content with the correctl label - Fix all domains that write data into the homedir to do it with the correct label - Change the postgresql to use proper boolean names, which is causing httpd_t to - not get access to postgresql_var_run_t - Hostname needs to send syslog messages - Localectl needs to be able to send dbus signals to users - Make sure userdom_filetrans_type will create files/dirs with user_home_t labeling by default - Allow user_home_manger domains to create spam* homedir content with correct labeling - Allow user_home_manger domains to create HOMEDIR/.tvtime with correct labeling - Add missing miscfiles_setattr_man_pages() interface and for now comment some rules for userdom_filetrans_type to make build process working - Declare userdom_filetrans_type attribute - userdom_manage_home_role() needs to be called withoout usertype attribute because of userdom_filetrans_type attribute - fusefsd is mounding a fuse file system on /run/user/UID/gvfs- Man pages are now generated in the build process - Allow cgred to list inotifyfs filesystem- Allow gluster to get attrs on all fs - New access required for virt-sandbox - Allow dnsmasq to execute bin_t - Allow dnsmasq to create content in /var/run/NetworkManager - Fix openshift_initrc_signal() interface - Dontaudit openshift domains doing getattr on other domains - Allow consolehelper domain to communicate with session bus - Mock should not be transitioning to any other domains, we should keep mock_t as mock_t - Update virt_qemu_ga_t policy - Allow authconfig running from realmd to restart oddjob service - Add systemd support for oddjob - Add initial policy for realmd_consolehelper_t which if for authconfig executed by realmd - Add labeling for gnashpluginrc - Allow chrome_nacl to execute /dev/zero - Allow condor domains to read /proc - mozilla_plugin_t will getattr on /core if firefox crashes - Allow condor domains to read /etc/passwd - Allow dnsmasq to execute shell scripts, openstack requires this access - Fix glusterd labeling - Allow virtd_t to interact with the socket type - Allow nmbd_t to override dac if you turned on sharing all files - Allow tuned to created kobject_uevent socket - Allow guest user to run fusermount - Allow openshift to read /proc and locale - Allow realmd to dbus chat with rpm - Add new interface for virt - Remove depracated interfaces - Allow systemd_domains read access on etc, etc_runtime and usr files, also allow them to connect stream to syslog socket - /usr/share/munin/plugins/plugin.sh should be labeled as bin_t - Remove some more unconfined_t process transitions, that I don't believe are necessary - Stop transitioning uncofnined_t to checkpc - dmraid creates /var/lock/dmraid - Allow systemd_localed to creatre unix_dgram_sockets - Allow systemd_localed to write kernel messages. - Also cleanup systemd definition a little. - Fix userdom_restricted_xwindows_user_template() interface - Label any block devices or char devices under /dev/infiniband as fixed_disk_device_t - User accounts need to dbus chat with accountsd daemon - Gnome requires all users to be able to read /proc/1/- virsh now does a setexeccon call - Additional rules required by openshift domains - Allow svirt_lxc_domains to use inherited terminals, needed to make virt-sandbox-service execute work - Allow spamd_update_t to search spamc_home_t - Avcs discovered by mounting an isci device under /mnt - Allow lspci running as logrotate to read pci.ids - Additional fix for networkmanager_read_pid_files() - Fix networkmanager_read_pid_files() interface - Allow all svirt domains to connect to svirt_socket_t - Allow virsh to set SELinux context for a process. - Allow tuned to create netlink_kobject_uevent_socket - Allow systemd-timestamp to set SELinux context - Add support for /var/lib/systemd/linger - Fix ssh_sysadm_login to be working on MLS as expected- Rename files_rw_inherited_tmp_files to files_rw_inherited_tmp_file - Add missing files_rw_inherited_tmp_files interface - Add additional interface for ecryptfs - ALlow nova-cert to connect to postgresql - Allow keystone to connect to postgresql - Allow all cups domains to getattr on filesystems - Allow pppd to send signull - Allow tuned to execute ldconfig - Allow gpg to read fips_enabled - Add additional fixes for ecryptfs - Allow httpd to work with posgresql - Allow keystone getsched and setsched- Allow gpg to read fips_enabled - Add support for /var/cache/realmd - Add support for /usr/sbin/blazer_usb and systemd support for nut - Add labeling for fenced_sanlock and allow sanclok transition to fenced_t - bitlbee wants to read own log file - Allow glance domain to send a signal itself - Allow xend_t to request that the kernel load a kernel module - Allow pacemaker to execute heartbeat lib files - cleanup new swift policy- Fix smartmontools - Fix userdom_restricted_xwindows_user_template() interface - Add xserver_xdm_ioctl_log() interface - Allow Xusers to ioctl lxdm.log to make lxdm working - Add MLS fixes to make MLS boot/log-in working - Add mls_socket_write_all_levels() also for syslogd - fsck.xfs needs to read passwd - Fix ntp_filetrans_named_content calling in init.te - Allow postgresql to create pg_log dir - Allow sshd to read rsync_data_t to make rsync working - Change ntp.conf to be labeled net_conf_t - Allow useradd to create homedirs in /run. ircd-ratbox does this and we should just allow it - Allow xdm_t to execute gstreamer home content - Allod initrc_t and unconfined domains, and sysadm_t to manage ntp - New policy for openstack swift domains - More access required for openshift_cron_t - Use cupsd_log_t instead of cupsd_var_log_t - rpm_script_roles should be used in rpm_run - Fix rpm_run() interface - Fix openshift_initrc_run() - Fix sssd_dontaudit_stream_connect() interface - Fix sssd_dontaudit_stream_connect() interface - Allow LDA's job to deliver mail to the mailbox - dontaudit block_suspend for mozilla_plugin_t - Allow l2tpd_t to all signal perms - Allow uuidgen to read /dev/random - Allow mozilla-plugin-config to read power_supply info - Implement cups_domain attribute for cups domains - We now need access to user terminals since we start by executing a command outside the tty - We now need access to user terminals since we start by executing a command outside the tty - svirt lxc containers want to execute userhelper apps, need these changes to allow this to happen - Add containment of openshift cron jobs - Allow system cron jobs to create tmp directories - Make userhelp_conf_t a config file - Change rpm to use rpm_script_roles - More fixes for rsync to make rsync wokring - Allow logwatch to domtrans to mdadm - Allow pacemaker to domtrans to ifconfig - Allow pacemaker to setattr on corosync.log - Add pacemaker_use_execmem for memcheck-amd64 command - Allow block_suspend capability - Allow create fifo_file in /tmp with pacemaker_tmp_t - Allow systat to getattr on fixed disk - Relabel /etc/ntp.conf to be net_conf_t - ntp_admin should create files in /etc with the correct label - Add interface to create ntp_conf_t files in /etc - Add additional labeling for quantum - Allow quantum to execute dnsmasq with transition- boinc_cliean wants also execmem as boinc projecs have - Allow sa-update to search admin home for /root/.spamassassin - Allow sa-update to search admin home for /root/.spamassassin - Allow antivirus domain to read net sysctl - Dontaudit attempts from thumb_t to connect to ssd - Dontaudit attempts by readahead to read sock_files - Dontaudit attempts by readahead to read sock_files - Create tmpfs file while running as wine as user_tmpfs_t - Dontaudit attempts by readahead to read sock_files - libmpg ships badly created librarie- Change ssh_use_pts to use macro and only inherited sshd_devpts_t - Allow confined users to read systemd_logind seat information - libmpg ships badly created libraries - Add support for strongswan.service - Add labeling for strongswan - Allow l2tpd_t to read network manager content in /run directory - Allow rsync to getattr any file in rsync_data_t - Add labeling and filename transition for .grl-podcasts- mount.glusterfs executes glusterfsd binary - Allow systemd_hostnamed_t to stream connect to systemd - Dontaudit any user doing a access check - Allow obex-data-server to request the kernel to load a module - Allow gpg-agent to manage gnome content (~/.cache/gpg-agent-info) - Allow gpg-agent to read /proc/sys/crypto/fips_enabled - Add new types for antivirus.pp policy module - Allow gnomesystemmm_t caps because of ioprio_set - Make sure if mozilla_plugin creates files while in permissive mode, they get created with the correct label, user_home_t - Allow gnomesystemmm_t caps because of ioprio_set - Allow NM rawip socket - files_relabel_non_security_files can not be used with boolean - Add interface to thumb_t dbus_chat to allow it to read remote process state - ALlow logrotate to domtrans to mdadm_t - kde gnomeclock wants to write content to /tmp- kde gnomeclock wants to write content to /tmp - /usr/libexec/kde4/kcmdatetimehelper attempts to create /root/.kde - Allow blueman_t to rwx zero_device_t, for some kind of jre - Allow mozilla_plugin_t to rwx zero_device_t, for some kind of jre - Ftp full access should be allowed to create directories as well as files - Add boolean to allow rsync_full_acces, so that an rsync server can write all - over the local machine - logrotate needs to rotate logs in openshift directories, needs back port to RHEL6 - Add missing vpnc_roles type line - Allow stapserver to write content in /tmp - Allow gnome keyring to create keyrings dir in ~/.local/share - Dontaudit thumb drives trying to bind to udp sockets if nis_enabled is turned on - Add interface to colord_t dbus_chat to allow it to read remote process state - Allow colord_t to read cupsd_t state - Add mate-thumbnail-font as thumnailer - Allow sectoolm to sys_ptrace since it is looking at other proceses /proc data. - Allow qpidd to list /tmp. Needed by ssl - Only allow init_t to transition to rsync_t domain, not initrc_t. This should be back ported to F17, F18 - - Added systemd support for ksmtuned - Added booleans ksmtuned_use_nfs ksmtuned_use_cifs - firewalld seems to be creating mmap files which it needs to execute in /run /tmp and /dev/shm. Would like to clean this up but for now we will allow - Looks like qpidd_t needs to read /dev/random - Lots of probing avc's caused by execugting gpg from staff_t - Dontaudit senmail triggering a net_admin avc - Change thumb_role to use thumb_run, not sure why we have a thumb_role, needs back port - Logwatch does access check on mdadm binary - Add raid_access_check_mdadm() iterface- Fix systemd_manage_unit_symlinks() interface - Call systemd_manage_unit_symlinks(() which is correct interface - Add filename transition for opasswd - Switch gnomeclock_dbus_chat to systemd_dbus_chat_timedated since we have switched the name of gnomeclock - Allow sytstemd-timedated to get status of init_t - Add new systemd policies for hostnamed and rename gnomeclock_t to systemd_timedate_t - colord needs to communicate with systemd and systemd_logind, also remove duplicate rules - Switch gnomeclock_dbus_chat to systemd_dbus_chat_timedated since we have switched the name of gnomeclock - Allow gpg_t to manage all gnome files - Stop using pcscd_read_pub_files - New rules for xguest, dontaudit attempts to dbus chat - Allow firewalld to create its mmap files in tmpfs and tmp directories - Allow firewalld to create its mmap files in tmpfs and tmp directories - run unbound-chkconf as named_t, so it can read dnssec - Colord is reading xdm process state, probably reads state of any apps that sends dbus message - Allow mdadm_t to change the kernel scheduler - mythtv policy - Update mandb_admin() interface - Allow dsspam to listen on own tpc_socket - seutil_filetrans_named_content needs to be optional - Allow sysadm_t to execute content in his homedir - Add attach_queue to tun_socket, new patch from Paul Moore - Change most of selinux configuration types to security_file_type. - Add filename transition rules for selinux configuration - ssh into a box with -X -Y requires ssh_use_ptys - Dontaudit thumb drives trying to bind to udp sockets if nis_enabled is turned on - Allow all unpriv userdomains to send dbus messages to hostnamed and timedated - New allow rules found by Tom London for systemd_hostnamed- Allow systemd-tmpfiles to relabel lpd spool files - Ad labeling for texlive bash scripts - Add xserver_filetrans_fonts_cache_home_content() interface - Remove duplicate rules from *.te - Add support for /var/lock/man-db.lock - Add support for /var/tmp/abrt(/.*)? - Add additional labeling for munin cgi scripts - Allow httpd_t to read munin conf files - Allow certwatch to read meminfo - Fix nscd_dontaudit_write_sock_file() interfac - Fix gnome_filetrans_home_content() to include also "fontconfig" dir as cache_home_t - llow mozilla_plugin_t to create HOMEDIR/.fontconfig with the proper labeling- Allow gnomeclock to talk to puppet over dbus - Allow numad access discovered by Dominic - Add support for HOME_DIR/.maildir - Fix attribute_role for mozilla_plugin_t domain to allow staff_r to access this domain - Allow udev to relabel udev_var_run_t lnk_files - New bin_t file in mcelog- Remove all mcs overrides and replace with t1 != mcs_constrained_types - Add attribute_role for iptables - mcs_process_set_categories needs to be called for type - Implement additional role_attribute statements - Sodo domain is attempting to get the additributes of proc_kcore_t - Unbound uses port 8953 - Allow svirt_t images to compromise_kernel when using pci-passthrough - Add label for dns lib files - Bluetooth aquires a dbus name - Remove redundant files_read_usr_file calling - Remove redundant files_read_etc_file calling - Fix mozilla_run_plugin() - Add role_attribute support for more domains- Mass merge with upstream- Bump the policy version to 28 to match selinux userspace - Rebuild versus latest libsepol- Add systemd_status_all_unit_files() interface - Add support for nshadow - Allow sysadm_t to administrate the postfix domains - Add interface to setattr on isid directories for use by tmpreaper - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - Add systemd_status_all_unit_files() interface - Add support for nshadow - Allow sysadm_t to administrate the postfix domains - Add interface to setattr on isid directories for use by tmpreaper - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - Allow sshd_t sys_admin for use with afs logins - Add labeling for /var/named/chroot/etc/localtim- Allow setroubleshoot_fixit to execute rpm - zoneminder needs to connect to httpd ports where remote cameras are listening - Allow firewalld to execute content created in /run directory - Allow svirt_t to read generic certs - Dontaudit leaked ps content to mozilla plugin - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - init scripts are creating systemd_unit_file_t directories- systemd_logind_t is looking at all files under /run/user/apache - Allow systemd to manage all user tmp files - Add labeling for /var/named/chroot/etc/localtime - Allow netlabel_peer_t type to flow over netif_t and node_t, and only be hindered by MLS, need back port to RHEL6 - Keystone is now using a differnt port - Allow xdm_t to use usbmuxd daemon to control sound - Allow passwd daemon to execute gnome_exec_keyringd - Fix chrome_sandbox policy - Add labeling for /var/run/checkquorum-timer - More fixes for the dspam domain, needs back port to RHEL6 - More fixes for the dspam domain, needs back port to RHEL6 - sssd needs to connect to kerberos password port if a user changes his password - Lots of fixes from RHEL testing of dspam web - Allow chrome and mozilla_plugin to create msgq and semaphores - Fixes for dspam cgi scripts - Fixes for dspam cgi scripts - Allow confine users to ptrace screen - Backport virt_qemu_ga_t changes from RHEL - Fix labeling for dspam.cgi needed for RHEL6 - We need to back port this policy to RHEL6, for lxc domains - Dontaudit attempts to set sys_resource of logrotate - Allow corosync to read/write wdmd's tmpfs files - I see a ptrace of mozilla_plugin_t by staff_t, will allow without deny_ptrace being set - Allow cron jobs to read bind config for unbound - libvirt needs to inhibit systemd - kdumpctl needs to delete boot_t files - Fix duplicate gnome_config_filetrans - virtd_lxc_t is using /dev/fuse - Passenger needs to create a directory in /var/log, needs a backport to RHEL6 for openshift - apcupsd can be setup to listen to snmp trafic - Allow transition from kdumpgui to kdumpctl - Add fixes for munin CGI scripts - Allow deltacloud to connect to openstack at the keystone port - Allow domains that transition to svirt domains to be able to signal them - Fix file context of gstreamer in .cache directory - libvirt is communicating with logind - NetworkManager writes to the systemd inhibit pipe- Allow munin disk plugins to get attributes of all directories - Allow munin disk plugins to get attributes of all directorie - Allow logwatch to get attributes of all directories - Fix networkmanager_manage_lib() interface - Fix gnome_manage_config() to allow to manage sock_file - Fix virtual_domain_context - Add support for dynamic DNS for DHCPv6- Allow svirt to use netlink_route_socket which was a part of auth_use_nsswitch - Add additional labeling for /var/www/openshift/broker - Fix rhev policy - Allow openshift_initrc domain to dbus chat with systemd_logind - Allow httpd to getattr passenger log file if run_stickshift - Allow consolehelper-gtk to connect to xserver - Add labeling for the tmp-inst directory defined in pam_namespace.conf - Add lvm_metadata_t labeling for /etc/multipath- consoletype is no longer used- Add label for efivarfs - Allow certmonger to send signal to itself - Allow plugin-config to read own process status - Add more fixes for pacemaker - apache/drupal can run clamscan on uploaded content - Allow chrome_sandbox_nacl_t to read pid 1 content- Fix MCS Constraints to control ingres and egres controls on the network. - Change name of svirt_nokvm_t to svirt_tcg_t - Allow tuned to request the kernel to load kernel modules- Label /var/lib/pgsql/.ssh as ssh_home_t - Add labeling for /usr/bin/pg_ctl - Allow systemd-logind to manage keyring user tmp dirs - Add support for 7389/tcp port - gems seems to be placed in lots of places - Since xdm is running a full session, it seems to be trying to execute lots of executables via dbus - Add back tcp/8123 port as http_cache port - Add ovirt-guest-agent\.pid labeling - Allow xend to run scsi_id - Allow rhsmcertd-worker to read "physical_package_id" - Allow pki_tomcat to connect to ldap port - Allow lpr to read /usr/share/fonts - Allow open file from CD/DVD drive on domU - Allow munin services plugins to talk to SSSD - Allow all samba domains to create samba directory in var_t directories - Take away svirt_t ability to use nsswitch - Dontaudit attempts by openshift to read apache logs - Allow apache to create as well as append _ra_content_t - Dontaudit sendmail_t reading a leaked file descriptor - Add interface to have admin transition /etc/prelink.cache to the proper label - Add sntp support to ntp policy - Allow firewalld to dbus chat with devicekit_power - Allow tuned to call lsblk - Allow tor to read /proc/sys/kernel/random/uuid - Add tor_can_network_relay boolean- Add openshift_initrc_signal() interface - Fix typos - dspam port is treat as spamd_port_t - Allow setroubleshoot to getattr on all executables - Allow tuned to execute profiles scripts in /etc/tuned - Allow apache to create directories to store its log files - Allow all directories/files in /var/log starting with passenger to be labeled passenger_log_t - Looks like apache is sending sinal to openshift_initrc_t now,needs back port to RHEL6 - Allow Postfix to be configured to listen on TCP port 10026 for email from DSPAM - Add filename transition for /etc/tuned/active_profile - Allow condor_master to send mails - Allow condor_master to read submit.cf - Allow condor_master to create /tmp files/dirs - Allow condor_mater to send sigkill to other condor domains - Allow condor_procd sigkill capability - tuned-adm wants to talk with tuned daemon - Allow kadmind and krb5kdc to also list sssd_public_t - Allow accountsd to dbus chat with init - Fix git_read_generic_system_content_files() interface - pppd wants sys_nice by nmcli because of "syscall=sched_setscheduler" - Fix mozilla_plugin_can_network_connect to allow to connect to all ports - Label all munin plugins which are not covered by munin plugins policy as unconfined_munin_plugin_exec_t - dspam wants to search /var/spool for opendkim data - Revert "Add support for tcp/10026 port as dspam_port_t" - Turning on labeled networking requires additional access for netlabel_peer_t; these allow rules need to be back ported to RHEL6 - Allow all application domains to use fifo_files passed in from userdomains, also allow them to write to tmp_files inherited from userdomain - Allow systemd_tmpfiles_t to setattr on mandb_cache_t- consolekit.pp was not removed from the postinstall script- Add back consolekit policy - Silence bootloader trying to use inherited tty - Silence xdm_dbusd_t trying to execute telepathy apps - Fix shutdown avcs when machine has unconfined.pp disabled - The host and a virtual machine can share the same printer on a usb device - Change oddjob to transition to a ranged openshift_initr_exec_t when run from oddjob - Allow abrt_watch_log_t to execute bin_t - Allow chrome sandbox to write content in ~/.config/chromium - Dontaudit setattr on fontconfig dir for thumb_t - Allow lircd to request the kernel to load module - Make rsync as userdom_home_manager - Allow rsync to search automount filesystem - Add fixes for pacemaker- Add support for 4567/tcp port - Random fixes from Tuomo Soini - xdm wants to get init status - Allow programs to run in fips_mode - Add interface to allow the reading of all blk device nodes - Allow init to relabel rpcbind sock_file - Fix labeling for lastlog and faillog related to logrotate - ALlow aeolus_configserver to use TRAM port - Add fixes for aeolus_configserver - Allow snmpd to connect to snmp port - Allow spamd_update to create spamd_var_lib_t directories - Allow domains that can read sssd_public_t files to also list the directory - Remove miscfiles_read_localization, this is defined for all domains- Allow syslogd to request the kernel to load a module - Allow syslogd_t to read the network state information - Allow xdm_dbusd_t connect to the system DBUS - Add support for 7389/tcp port - Allow domains to read/write all inherited sockets - Allow staff_t to read kmsg - Add awstats_purge_apache_log boolean - Allow ksysguardproces to read /.config/Trolltech.conf - Allow passenger to create and append puppet log files - Add puppet_append_log and puppet_create_log interfaces - Add puppet_manage_log() interface - Allow tomcat domain to search tomcat_var_lib_t - Allow pki_tomcat_t to connect to pki_ca ports - Allow pegasus_t to have net_admin capability - Allow pegasus_t to write /sys/class/net//flags - Allow mailserver_delivery to manage mail_home_rw_t lnk_files - Allow fetchmail to create log files - Allow gnomeclock to manage home config in .kde - Allow bittlebee to read kernel sysctls - Allow logrotate to list /root- Fix userhelper_console_role_template() - Allow enabling Network Access Point service using blueman - Make vmware_host_t as unconfined domain - Allow authenticate users in webaccess via squid, using mysql as backend - Allow gathers to get various metrics on mounted file systems - Allow firewalld to read /etc/hosts - Fix cron_admin_role() to make sysadm cronjobs running in the sysadm_t instead of cronjob_t - Allow kdumpgui to read/write to zipl.conf - Commands needed to get mock to build from staff_t in enforcing mode - Allow mdadm_t to manage cgroup files - Allow all daemons and systemprocesses to use inherited initrc_tmp_t files - dontaudit ifconfig_t looking at fifo_files that are leaked to it - Add lableing for Quest Authentication System- Fix filetrans interface definitions - Dontaudit xdm_t to getattr on BOINC lib files - Add systemd_reload_all_services() interface - Dontaudit write access on /var/lib/net-snmp/mib_indexes - Only stop mcsuntrustedproc from relableing files - Allow accountsd to dbus chat with gdm - Allow realmd to getattr on all fs - Allow logrotate to reload all services - Add systemd unit file for radiusd - Allow winbind to create samba pid dir - Add labeling for /var/nmbd/unexpected - Allow chrome and mozilla plugin to connect to msnp ports- Fix storage_rw_inherited_fixed_disk_dev() to cover also blk_file - Dontaudit setfiles reading /dev/random - On initial boot gnomeclock is going to need to be set buy gdm - Fix tftp_read_content() interface - Random apps looking at kernel file systems - Testing virt with lxc requiers additional access for virsh_t - New allow rules requied for latest libvirt, libvirt talks directly to journald,lxc setup tool needs compromize_kernel,and we need ipc_lock in the container - Allow MPD to read /dev/radnom - Allow sandbox_web_type to read logind files which needs to read pulseaudio - Allow mozilla plugins to read /dev/hpet - Add labeling for /var/lib/zarafa-webap - Allow BOINC client to use an HTTP proxy for all connections - Allow rhsmertd to domain transition to dmidecod - Allow setroubleshootd to send D-Bus msg to ABRT- Define usbtty_device_t as a term_tty - Allow svnserve to accept a connection - Allow xend manage default virt_image_t type - Allow prelink_cron_system_t to overide user componant when executing cp - Add labeling for z-push - Gnomeclock sets the realtime clock - Openshift seems to be storing apache logs in /var/lib/openshift/.log/httpd - Allow lxc domains to use /dev/random and /dev/urandom- Add port defintion for tcp/9000 - Fix labeling for /usr/share/cluster/checkquorum to label also checkquorum.wdmd - Add rules and labeling for $HOME/cache/\.gstreamer-.* directory - Add support for CIM provider openlmi-networking which uses NetworkManager dbus API - Allow shorewall_t to create netlink_socket - Allow krb5admind to block suspend - Fix labels on /var/run/dlm_controld /var/log/dlm_controld - Allow krb5kdc to block suspend - gnomessytemmm_t needs to read /etc/passwd - Allow cgred to read all sysctls- Allow all domains to read /proc/sys/vm/overcommit_memory - Make proc_numa_t an MLS Trusted Object - Add /proc/numactl support for confined users - Allow ssh_t to connect to any port > 1023 - Add openvswitch domain - Pulseaudio tries to create directories in gnome_home_t directories - New ypbind pkg wants to search /var/run which is caused by sd_notify - Allow NM to read certs on NFS/CIFS using use_nfs_*, use_samba_* booleans - Allow sanlock to read /dev/random - Treat php-fpm with httpd_t - Allow domains that can read named_conf_t to be able to list the directories - Allow winbind to create sock files in /var/run/samba- Add smsd policy - Add support for OpenShift sbin labelin - Add boolean to allow virt to use rawip - Allow mozilla_plugin to read all file systems with noxattrs support - Allow kerberos to write on anon_inodefs fs - Additional access required by fenced - Add filename transitions for passwd.lock/group.lock - UPdate man pages - Create coolkey directory in /var/cache with the correct label- Fix label on /etc/group.lock - Allow gnomeclock to create lnk_file in /etc - label /root/.pki as a home_cert_t - Add interface to make sure rpcbind.sock is created with the correct label - Add definition for new directory /var/lib/os-probe and bootloader wants to read udev rules - opendkim should be a part of milter - Allow libvirt to set the kernel sched algorythm - Allow mongod to read sysfs_t - Add authconfig policy - Remove calls to miscfiles_read_localization all domains get this - Allow virsh_t to read /root/.pki/ content - Add label for log directory under /var/www/stickshift- Allow getty to setattr on usb ttys - Allow sshd to search all directories for sshd_home_t content - Allow staff domains to send dbus messages to kdumpgui - Fix labels on /etc/.pwd.lock and friends to be passwd_file_t - Dontaudit setfiles reading urand - Add files_dontaudit_list_tmp() for domains to which we added sys_nice/setsched - Allow staff_gkeyringd_t to read /home/$USER/.local/share/keyrings dir - Allow systemd-timedated to read /dev/urandom - Allow entropyd_t to read proc_t (meminfo) - Add unconfined munin plugin - Fix networkmanager_read_conf() interface - Allow blueman to list /tmp which is needed by sys_nic/setsched - Fix label of /etc/mail/aliasesdb-stamp - numad is searching cgroups - realmd is communicating with networkmanager using dbus - Lots of fixes to try to get kdump to work- Allow loging programs to dbus chat with realmd - Make apache_content_template calling as optional - realmd is using policy kit- Add new selinuxuser_use_ssh_chroot boolean - dbus needs to be able to read/write inherited fixed disk device_t passed through it - Cleanup netutils process allow rule - Dontaudit leaked fifo files from openshift to ping - sanlock needs to read mnt_t lnk files - Fail2ban needs to setsched and sys_nice- Change default label of all files in /var/run/rpcbind - Allow sandbox domains (java) to read hugetlbfs_t - Allow awstats cgi content to create tmp files and read apache log files - Allow setuid/setgid for cupsd-config - Allow setsched/sys_nice pro cupsd-config - Fix /etc/localtime sym link to be labeled locale_t - Allow sshd to search postgresql db t since this is a homedir - Allow xwindows users to chat with realmd - Allow unconfined domains to configure all files and null_device_t service- Adopt pki-selinux policy- pki is leaking which we dontaudit until a pki code fix - Allow setcap for arping - Update man pages - Add labeling for /usr/sbin/mcollectived - pki fixes - Allow smokeping to execute fping in the netutils_t domain- Allow mount to relabelfrom unlabeled file systems - systemd_logind wants to send and receive messages from devicekit disk over dbus to make connected mouse working - Add label to get bin files under libreoffice labeled correctly - Fix interface to allow executing of base_ro_file_type - Add fixes for realmd - Update pki policy - Add tftp_homedir boolean - Allow blueman sched_setscheduler - openshift user domains wants to r/w ssh tcp sockets- Additional requirements for disable unconfined module when booting - Fix label of systemd script files - semanage can use -F /dev/stdin to get input - syslog now uses kerberos keytabs - Allow xserver to compromise_kernel access - Allow nfsd to write to mount_var_run_t when running the mount command - Add filename transition rule for bin_t directories - Allow files to read usr_t lnk_files - dhcpc wants chown - Add support for new openshift labeling - Clean up for tunable+optional statements - Add labeling for /usr/sbin/mkhomedir_helper - Allow antivirus domain to managa amavis spool files - Allow rpcbind_t to read passwd - Allow pyzor running as spamc to manage amavis spool- Add interfaces to read kernel_t proc info - Missed this version of exec_all - Allow anyone who can load a kernel module to compromise kernel - Add oddjob_dbus_chat to openshift apache policy - Allow chrome_sandbox_nacl_t to send signals to itself - Add unit file support to usbmuxd_t - Allow all openshift domains to read sysfs info - Allow openshift domains to getattr on all domains- MLS fixes from Dan - Fix name of capability2 secure_firmware->compromise_kerne- Allow xdm to search all file systems - Add interface to allow the config of all files - Add rngd policy - Remove kgpg as a gpg_exec_t type - Allow plymouthd to block suspend - Allow systemd_dbus to config any file - Allow system_dbus_t to configure all services - Allow freshclam_t to read usr_files - varnishd requires execmem to load modules- Allow semanage to verify types - Allow sudo domain to execute user home files - Allow session_bus_type to transition to user_tmpfs_t - Add dontaudit caused by yum updates - Implement pki policy but not activated- tuned wants to getattr on all filesystems - tuned needs also setsched. The build is needed for test day- Add policy for qemu-qa - Allow razor to write own config files - Add an initial antivirus policy to collect all antivirus program - Allow qdisk to read usr_t - Add additional caps for vmware_host - Allow tmpfiles_t to setattr on mandb_cache_t - Dontaudit leaked files into mozilla_plugin_config_t - Allow wdmd to getattr on tmpfs - Allow realmd to use /dev/random - allow containers to send audit messages - Allow root mount any file via loop device with enforcing mls policy - Allow tmpfiles_t to setattr on mandb_cache_t - Allow tmpfiles_t to setattr on mandb_cache_t - Make userdom_dontaudit_write_all_ not allow open - Allow init scripts to read all unit files - Add support for saphostctrl ports- Add kernel_read_system_state to sandbox_client_t - Add some of the missing access to kdumpgui - Allow systemd_dbusd_t to status the init system - Allow vmnet-natd to request the kernel to load a module - Allow gsf-office-thum to append .cache/gdm/session.log - realmd wants to read .config/dconf/user - Firewalld wants sys_nice/setsched - Allow tmpreaper to delete mandb cache files - Firewalld wants sys_nice/setsched - Allow firewalld to perform a DNS name resolution - Allown winbind to read /usr/share/samba/codepages/lowcase.dat - Add support for HTTPProxy* in /etc/freshclam.conf - Fix authlogin_yubike boolean - Extend smbd_selinux man page to include samba booleans - Allow dhcpc to execute consoletype - Allow ping to use inherited tmp files created in init scripts - On full relabel with unconfined domain disabled, initrc was running some chcon's - Allow people who delete man pages to delete mandb cache files- Add missing permissive domains- Add new mandb policy - ALlow systemd-tmpfiles_t to relabel mandb_cache_t - Allow logrotate to start all unit files- Add fixes for ctbd - Allow nmbd to stream connect to ctbd - Make cglear_t as nsswitch_domain - Fix bogus in interfaces - Allow openshift to read/write postfix public pipe - Add postfix_manage_spool_maildrop_files() interface - stickshift paths have been renamed to openshift - gnome-settings-daemon wants to write to /run/systemd/inhibit/ pipes - Update man pages, adding ENTRYPOINTS- Add mei_device_t - Make sure gpg content in homedir created with correct label - Allow dmesg to write to abrt cache files - automount wants to search virtual memory sysctls - Add support for hplip logs stored in /var/log/hp/tmp - Add labeling for /etc/owncloud/config.php - Allow setroubleshoot to send analysys to syslogd-journal - Allow virsh_t to interact with new fenced daemon - Allow gpg to write to /etc/mail/spamassassiin directories - Make dovecot_deliver_t a mail server delivery type - Add label for /var/tmp/DNS25- Fixes for tomcat_domain template interface- Remove init_systemd and init_upstart boolean, Move init_daemon_domain and init_system_domain to use attributes - Add attribute to all base os types. Allow all domains to read all ro base OS types- Additional unit files to be defined as power unit files - Fix more boolean names- Fix boolean name so subs will continue to work- dbus needs to start getty unit files - Add interface to allow system_dbusd_t to start the poweroff service - xdm wants to exec telepathy apps - Allow users to send messages to systemdlogind - Additional rules needed for systemd and other boot apps - systemd wants to list /home and /boot - Allow gkeyringd to write dbus/conf file - realmd needs to read /dev/urand - Allow readahead to delete /.readahead if labeled root_t, might get created before policy is loaded- Fixes to safe more rules - Re-write tomcat_domain_template() - Fix passenger labeling - Allow all domains to read man pages - Add ephemeral_port_t to the 'generic' port interfaces - Fix the names of postgresql booleans- Stop using attributes form netlabel_peer and syslog, auth_use_nsswitch setsup netlabel_peer - Move netlable_peer check out of booleans - Remove call to recvfrom_netlabel for kerberos call - Remove use of attributes when calling syslog call - Move -miscfiles_read_localization to domain.te to save hundreds of allow rules - Allow all domains to read locale files. This eliminates around 1500 allow rules- Cleanup nis_use_ypbind_uncond interface - Allow rndc to block suspend - tuned needs to modify the schedule of the kernel - Allow svirt_t domains to read alsa configuration files - ighten security on irc domains and make sure they label content in homedir correctly - Add filetrans_home_content for irc files - Dontaudit all getattr access for devices and filesystems for sandbox domains - Allow stapserver to search cgroups directories - Allow all postfix domains to talk to spamd- Add interfaces to ignore setattr until kernel fixes this to be checked after the DAC check - Change pam_t to pam_timestamp_t - Add dovecot_domain attribute and allow this attribute block_suspend capability2 - Add sanlock_use_fusefs boolean - numad wants send/recieve msg - Allow rhnsd to send syslog msgs - Make piranha-pulse as initrc domain - Update openshift instances to dontaudit setattr until the kernel is fixed.- Fix auth_login_pgm_domain() interface to allow domains also managed user tmp dirs because of #856880 related to pam_systemd - Remove pam_selinux.8 which conflicts with man page owned by the pam package - Allow glance-api to talk to mysql - ABRT wants to read Xorg.0.log if if it detects problem with Xorg - Fix gstreamer filename trans. interface- Man page fixes by Dan Walsh- Allow postalias to read postfix config files - Allow man2html to read man pages - Allow rhev-agentd to search all mountpoints - Allow rhsmcertd to read /dev/random - Add tgtd_stream_connect() interface - Add cyrus_write_data() interface - Dontaudit attempts by sandboxX clients connectiing to the xserver_port_t - Add port definition for tcp/81 as http_port_t - Fix /dev/twa labeling - Allow systemd to read modules config- Merge openshift policy - Allow xauth to read /dev/urandom - systemd needs to relabel content in /run/systemd directories - Files unconfined should be able to perform all services on all files - Puppet tmp file can be leaked to all domains - Dontaudit rhsmcertd-worker to search /root/.local - Allow chown capability for zarafa domains - Allow system cronjobs to runcon into openshift domains - Allow virt_bridgehelper_t to manage content in the svirt_home_t labeled directories- nmbd wants to create /var/nmbd - Stop transitioning out of anaconda and firstboot, just causes AVC messages - Allow clamscan to read /etc files - Allow bcfg2 to bind cyphesis port - heartbeat should be run as rgmanager_t instead of corosync_t - Add labeling for /etc/openldap/certs - Add labeling for /opt/sartest directory - Make crontab_t as userdom home reader - Allow tmpreaper to list admin_home dir - Add defition for imap_0 replay cache file - Add support for gitolite3 - Allow virsh_t to send syslog messages - allow domains that can read samba content to be able to list the directories also - Add realmd_dbus_chat to allow all apps that use nsswitch to talk to realmd - Separate out sandbox from sandboxX policy so we can disable it by default - Run dmeventd as lvm_t - Mounting on any directory requires setattr and write permissions - Fix use_nfs_home_dirs() boolean - New labels for pam_krb5 - Allow init and initrc domains to sys_ptrace since this is needed to look at processes not owned by uid 0 - Add realmd_dbus_chat to allow all apps that use nsswitch to talk to realmd- Separate sandbox policy into sandbox and sandboxX, and disable sandbox by default on fresh installs - Allow domains that can read etc_t to read etc_runtime_t - Allow all domains to use inherited tmpfiles- Allow realmd to read resolv.conf - Add pegasus_cache_t type - Label /usr/sbin/fence_virtd as virsh_exec_t - Add policy for pkcsslotd - Add support for cpglockd - Allow polkit-agent-helper to read system-auth-ac - telepathy-idle wants to read gschemas.compiled - Allow plymouthd to getattr on fs_t - Add slpd policy - Allow ksysguardproces to read/write config_usr_t- Fix labeling substitution so rpm will label /lib/systemd content correctly- Add file name transitions for ttyACM0 - spice-vdagent(d)'s are going to log over to syslog - Add sensord policy - Add more fixes for passenger policy related to puppet - Allow wdmd to create wdmd_tmpfs_t - Fix labeling for /var/run/cachefilesd\.pid - Add thumb_tmpfs_t files type- Allow svirt domains to manage the network since this is containerized - Allow svirt_lxc_net_t to send audit messages- Make "snmpwalk -mREDHAT-CLUSTER-MIB ...." working - Allow dlm_controld to execute dlm_stonith labeled as bin_t - Allow GFS2 working on F17 - Abrt needs to execute dmesg - Allow jockey to list the contents of modeprobe.d - Add policy for lightsquid as squid_cron_t - Mailscanner is creating files and directories in /tmp - dmesg is now reading /dev/kmsg - Allow xserver to communicate with secure_firmware - Allow fsadm tools (fsck) to read /run/mount contnet - Allow sysadm types to read /dev/kmsg -- Allow postfix, sssd, rpcd to block_suspend - udev seems to need secure_firmware capability - Allow virtd to send dbus messages to firewalld so it can configure the firewall- Fix labeling of content in /run created by virsh_t - Allow condor domains to read kernel sysctls - Allow condor_master to connect to amqp - Allow thumb drives to create shared memory and semaphores - Allow abrt to read mozilla_plugin config files - Add labels for lightsquid - Default files in /opt and /usr that end in .cgi as httpd_sys_script_t, allow - dovecot_auth_t uses ldap for user auth - Allow domains that can read dhcp_etc_t to read lnk_files - Add more then one watchdog device - Allow useradd_t to manage etc_t files so it can rename it and edit them - Fix invalid class dir should be fifo_file - Move /run/blkid to fsadm and make sure labeling is correct- Fix bogus regex found by eparis - Fix manage run interface since lvm needs more access - syslogd is searching cgroups directory - Fixes to allow virt-sandbox-service to manage lxc var run content- Fix Boolean settings - Add new libjavascriptcoregtk as textrel_shlib_t - Allow xdm_t to create xdm_home_t directories - Additional access required for systemd - Dontaudit mozilla_plugin attempts to ipc_lock - Allow tmpreaper to delete unlabeled files - Eliminate screen_tmp_t and allow it to manage user_tmp_t - Dontaudit mozilla_plugin_config_t to append to leaked file descriptors - Allow web plugins to connect to the asterisk ports - Condor will recreate the lock directory if it does not exist - Oddjob mkhomedir needs to connectto user processes - Make oddjob_mkhomedir_t a userdom home manager- Put placeholder back in place for proper numbering of capabilities - Systemd also configures init scripts- Fix ecryptfs interfaces - Bootloader seems to be trolling around /dev/shm and /dev - init wants to create /etc/systemd/system-update.target.wants - Fix systemd_filetrans call to move it out of tunable - Fix up policy to work with systemd userspace manager - Add secure_firmware capability and remove bogus epolwakeup - Call seutil_*_login_config interfaces where should be needed - Allow rhsmcertd to send signal to itself - Allow thin domains to send signal to itself - Allow Chrome_ChildIO to read dosfs_t- Add role rules for realmd, sambagui- Add new type selinux_login_config_t for /etc/selinux//logins/ - Additional fixes for seutil_manage_module_store() - dbus_system_domain() should be used with optional_policy - Fix svirt to be allowed to use fusefs file system - Allow login programs to read /run/ data created by systemd_login - sssd wants to write /etc/selinux//logins/ for SELinux PAM module - Fix svirt to be allowed to use fusefs file system - Allow piranha domain to use nsswitch - Sanlock needs to send Kill Signals to non root processes - Pulseaudio wants to execute /run/user/PID/.orc- Fix saslauthd when it tries to read /etc/shadow - Label gnome-boxes as a virt homedir - Need to allow svirt_t ability to getattr on nfs_t file systems - Update sanlock policy to solve all AVC's - Change confined users can optionally manage virt content - Handle new directories under ~/.cache - Add block suspend to appropriate domains - More rules required for containers - Allow login programs to read /run/ data created by systemd_logind - Allow staff users to run svirt_t processes- Update to upstream- More fixes for systemd to make rawhide booting from Dan Walsh- Add systemd fixes to make rawhide booting- Add systemd_logind_inhibit_var_run_t attribute - Remove corenet_all_recvfrom_unlabeled() for non-contrib policies because we moved it to domain.if for all domain_type - Add interface for mysqld to dontaudit signull to all processes - Label new /var/run/journal directory correctly - Allow users to inhibit suspend via systemd - Add new type for the /var/run/inhibit directory - Add interface to send signull to systemd_login so avahi can send them - Allow systemd_passwd to send syslog messages - Remove corenet_all_recvfrom_unlabeled() calling fro policy files - Allow editparams.cgi running as httpd_bugzilla_script_t to read /etc/group - Allow smbd to read cluster config - Add additional labeling for passenger - Allow dbus to inhibit suspend via systemd - Allow avahi to send signull to systemd_login- Add interface to dontaudit getattr access on sysctls - Allow sshd to execute /bin/login - Looks like xdm is recreating the xdm directory in ~/.cache/ on login - Allow syslog to use the leaked kernel_t unix_dgram_socket from system-jounald - Fix semanage to work with unconfined domain disabled on F18 - Dontaudit attempts by mozilla plugins to getattr on all kernel sysctls - Virt seems to be using lock files - Dovecot seems to be searching directories of every mountpoint - Allow jockey to read random/urandom, execute shell and install third-party drivers - Add aditional params to allow cachedfiles to manage its content - gpg agent needs to read /dev/random - The kernel hands an svirt domains /SYSxxxxx which is a tmpfs that httpd wants to read and write - Add a bunch of dontaudit rules to quiet svirt_lxc domains - Additional perms needed to run svirt_lxc domains - Allow cgclear to read cgconfig - Allow sys_ptrace capability for snmp - Allow freshclam to read /proc - Allow procmail to manage /home/user/Maildir content - Allow NM to execute wpa_cli - Allow amavis to read clamd system state - Regenerate man pages- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- Add realmd and stapserver policies - Allow useradd to manage stap-server lib files - Tighten up capabilities for confined users - Label /etc/security/opasswd as shadow_t - Add label for /dev/ecryptfs - Allow condor_startd_t to start sshd with the ranged - Allow lpstat.cups to read fips_enabled file - Allow pyzor running as spamc_t to create /root/.pyzor directory - Add labelinf for amavisd-snmp init script - Add support for amavisd-snmp - Allow fprintd sigkill self - Allow xend (w/o libvirt) to start virtual machines - Allow aiccu to read /etc/passwd - Allow condor_startd to Make specified domain MCS trusted for setting any category set for the processes it executes - Add condor_startd_ranged_domtrans_to() interface - Add ssd_conf_t for /etc/sssd - accountsd needs to fchown some files/directories - Add ICACLient and zibrauserdata as mozilla_filetrans_home_content - SELinux reports afs_t needs dac_override to read /etc/mtab, even though everything works, adding dontaudit - Allow xend_t to read the /etc/passwd file- Until we figure out how to fix systemd issues, allow all apps that send syslog messages to send them to kernel_t - Add init_access_check() interface - Fix label on /usr/bin/pingus to not be labeled as ping_exec_t - Allow tcpdump to create a netlink_socket - Label newusers like useradd - Change xdm log files to be labeled xdm_log_t - Allow sshd_t with privsep to work in MLS - Allow freshclam to update databases thru HTTP proxy - Allow s-m-config to access check on systemd - Allow abrt to read public files by default - Fix amavis_create_pid_files() interface - Add labeling and filename transition for dbomatic.log - Allow system_dbusd_t to stream connect to bluetooth, and use its socket - Allow amavisd to execute fsav - Allow tuned to use sys_admin and sys_nice capabilities - Add php-fpm policy from Bryan - Add labeling for aeolus-configserver-thinwrapper - Allow thin domains to execute shell - Fix gnome_role_gkeyringd() interface description - Lot of interface fixes - Allow OpenMPI job running as condor_startd_ssh_t to manage condor lib files - Allow OpenMPI job to use kerberos - Make deltacloudd_t as nsswitch_domain - Allow xend_t to run lsscsi - Allow qemu-dm running as xend_t to create tun_socket - Add labeling for /opt/brother/Printers(.*/)?inf - Allow jockey-backend to read pyconfig-64.h labeled as usr_t - Fix clamscan_can_scan_system boolean - Allow lpr to connectto to /run/user/$USER/keyring-22uREb/pkcs11- initrc is calling exportfs which is not confined so it attempts to read nfsd_files - Fixes for passenger running within openshift. - Add labeling for all tomcat6 dirs - Add support for tomcat6 - Allow cobblerd to read /etc/passwd - Allow jockey to read sysfs and and execute binaries with bin_t - Allow thum to use user terminals - Allow cgclear to read cgconfig config files - Fix bcf2g.fc - Remove sysnet_dns_name_resolve() from policies where auth_use_nsswitch() is used for other domains - Allow dbomatic to execute ruby - abrt_watch_log should be abrt_domain - Allow mozilla_plugin to connect to gatekeeper port- add ptrace_child access to process - remove files_read_etc_files() calling from all policies which have auth_use_nsswith() - Allow boinc domains to manage boinc_lib_t lnk_files - Add support for boinc-client.service unit file - Add support for boinc.log - Allow mozilla_plugin execmod on mozilla home files if allow_ex - Allow dovecot_deliver_t to read dovecot_var_run_t - Allow ldconfig and insmod to manage kdumpctl tmp files - Move thin policy out from cloudform.pp and add a new thin poli - pacemaker needs to communicate with corosync streams - abrt is now started on demand by dbus - Allow certmonger to talk directly to Dogtag servers - Change labeling for /var/lib/cobbler/webui_sessions to httpd_c - Allow mozila_plugin to execute gstreamer home files - Allow useradd to delete all file types stored in the users hom - rhsmcertd reads the rpm database - Add support for lightdm- Add tomcat policy - Remove pyzor/razor policy - rhsmcertd reads the rpm database - Dontaudit thumb to setattr on xdm_tmp dir - Allow wicd to execute ldconfig in the networkmanager_t domain - Add /var/run/cherokee\.pid labeling - Allow mozilla_plugin to create mozilla_plugin_tmp_t lnk files too - Allow postfix-master to r/w pipes other postfix domains - Allow snort to create netlink_socket - Add kdumpctl policy - Allow firstboot to create tmp_t files/directories - /usr/bin/paster should not be labeled as piranha_exec_t - remove initrc_domain from tomcat - Allow ddclient to read /etc/passwd - Allow useradd to delete all file types stored in the users homedir - Allow ldconfig and insmod to manage kdumpctl tmp files - Firstboot should be just creating tmp_t dirs and xauth should be allowed to write to those - Transition xauth files within firstboot_tmp_t - Fix labeling of /run/media to match /media - Label all lxdm.log as xserver_log_t - Add port definition for mxi port - Allow local_login_t to execute tmux- apcupsd needs to read /etc/passwd - Sanlock allso sends sigkill - Allow glance_registry to connect to the mysqld port - Dontaudit mozilla_plugin trying to getattr on /dev/gpmctl - Allow firefox plugins/flash to connect to port 1234 - Allow mozilla plugins to delete user_tmp_t files - Add transition name rule for printers.conf.O - Allow virt_lxc_t to read urand - Allow systemd_loigind to list gstreamer_home_dirs - Fix labeling for /usr/bin - Fixes for cloudform services * support FIPS - Allow polipo to work as web caching - Allow chfn to execute tmux- Add support for ecryptfs * ecryptfs does not support xattr * we need labeling for HOMEDIR - Add policy for (u)mount.ecryptfs* - Fix labeling of kerbero host cache files, allow rpc.svcgssd to manage host cache - Allow dovecot to manage Maildir content, fix transitions to Maildir - Allow postfix_local to transition to dovecot_deliver - Dontaudit attempts to setattr on xdm_tmp_t, looks like bogus code - Cleanup interface definitions - Allow apmd to change with the logind daemon - Changes required for sanlock in rhel6 - Label /run/user/apache as httpd_tmp_t - Allow thumb to use lib_t as execmod if boolean turned on - Allow squid to create the squid directory in /var with the correct labe - Add a new policy for glusterd from Bryan Bickford (bbickfor@redhat.com) - Allow virtd to exec xend_exec_t without transition - Allow virtd_lxc_t to unmount all file systems- PolicyKit path has changed - Allow httpd connect to dirsrv socket - Allow tuned to write generic kernel sysctls - Dontaudit logwatch to gettr on /dev/dm-2 - Allow policykit-auth to manage kerberos files - Make condor_startd and rgmanager as initrc domain - Allow virsh to read /etc/passwd - Allow mount to mount on user_tmp_t for /run/user/dwalsh/gvfs - xdm now needs to execute xsession_exec_t - Need labels for /var/lib/gdm - Fix files_filetrans_named_content() interface - Add new attribute - initrc_domain - Allow systemd_logind_t to signal, signull, sigkill all processes - Add filetrans rules for etc_runtime files- Rename boolean names to remove allow_- Mass merge with upstream * new policy topology to include contrib policy modules * we have now two base policy patches- Fix description of authlogin_nsswitch_use_ldap - Fix transition rule for rhsmcertd_t needed for RHEL7 - Allow useradd to list nfs state data - Allow openvpn to manage its log file and directory - We want vdsm to transition to mount_t when executing mount command to make sure /etc/mtab remains labeled correctly - Allow thumb to use nvidia devices - Allow local_login to create user_tmp_t files for kerberos - Pulseaudio needs to read systemd_login /var/run content - virt should only transition named system_conf_t config files - Allow munin to execute its plugins - Allow nagios system plugin to read /etc/passwd - Allow plugin to connect to soundd port - Fix httpd_passwd to be able to ask passwords - Radius servers can use ldap for backing store - Seems to need to mount on /var/lib for xguest polyinstatiation to work. - Allow systemd_logind to list the contents of gnome keyring - VirtualGL need xdm to be able to manage content in /etc/opt/VirtualGL - Add policy for isns-utils- Add policy for subversion daemon - Allow boinc to read passwd - Allow pads to read kernel network state - Fix man2html interface for sepolgen-ifgen - Remove extra /usr/lib/systemd/system/smb - Remove all /lib/systemd and replace with /usr/lib/systemd - Add policy for man2html - Fix the label of kerberos_home_t to krb5_home_t - Allow mozilla plugins to use Citrix - Allow tuned to read /proc/sys/kernel/nmi_watchdog - Allow tune /sys options via systemd's tmpfiles.d "w" type- Dontaudit lpr_t to read/write leaked mozilla tmp files - Add file name transition for .grl-podcasts directory - Allow corosync to read user tmp files - Allow fenced to create snmp lib dirs/files - More fixes for sge policy - Allow mozilla_plugin_t to execute any application - Allow dbus to read/write any open file descriptors to any non security file on the system that it inherits to that it can pass them to another domain - Allow mongod to read system state information - Fix wrong type, we should dontaudit sys_admin for xdm_t not xserver_t - Allow polipo to manage polipo_cache dirs - Add jabbar_client port to mozilla_plugin_t - Cleanup procmail policy - system bus will pass around open file descriptors on files that do not have labels on them - Allow l2tpd_t to read system state - Allow tuned to run ls /dev - Allow sudo domains to read usr_t files - Add label to machine-id - Fix corecmd_read_bin_symlinks cut and paste error- Fix pulseaudio port definition - Add labeling for condor_starter - Allow chfn_t to creat user_tmp_files - Allow chfn_t to execute bin_t - Allow prelink_cron_system_t to getpw calls - Allow sudo domains to manage kerberos rcache files - Allow user_mail_domains to work with courie - Port definitions necessary for running jboss apps within openshift - Add support for openstack-nova-metadata-api - Add support for nova-console* - Add support for openstack-nova-xvpvncproxy - Fixes to make privsep+SELinux working if we try to use chage to change passwd - Fix auth_role() interface - Allow numad to read sysfs - Allow matahari-rpcd to execute shell - Add label for ~/.spicec - xdm is executing lspci as root which is requesting a sys_admin priv but seems to succeed without it - Devicekit_disk wants to read the logind sessions file when writing a cd - Add fixes for condor to make condor jobs working correctly - Change label of /var/log/rpmpkgs to cron_log_t - Access requires to allow systemd-tmpfiles --create to work. - Fix obex to be a user application started by the session bus. - Add additional filename trans rules for kerberos - Fix /var/run/heartbeat labeling - Allow apps that are managing rcache to file trans correctly - Allow openvpn to authenticate against ldap server - Containers need to listen to network starting and stopping events- Make systemd unit files less specific- Fix zarafa labeling - Allow guest_t to fix labeling - corenet_tcp_bind_all_unreserved_ports(ssh_t) should be called with the user_tcp_server boolean - add lxc_contexts - Allow accountsd to read /proc - Allow restorecond to getattr on all file sytems - tmpwatch now calls getpw - Allow apache daemon to transition to pwauth domain - Label content under /var/run/user/NAME/keyring* as gkeyringd_tmp_t - The obex socket seems to be a stream socket - dd label for /var/run/nologin- Allow jetty running as httpd_t to read hugetlbfs files - Allow sys_nice and setsched for rhsmcertd - Dontaudit attempts by mozilla_plugin_t to bind to ssdp ports - Allow setfiles to append to xdm_tmp_t - Add labeling for /export as a usr_t directory - Add labels for .grl files created by gstreamer- Add labeling for /usr/share/jetty/bin/jetty.sh - Add jetty policy which contains file type definitios - Allow jockey to use its own fifo_file and make this the default for all domains - Allow mozilla_plugins to use spice (vnc_port/couchdb) - asterisk wants to read the network state - Blueman now uses /var/lib/blueman- Add label for nodejs_debug - Allow mozilla_plugin_t to create ~/.pki directory and content- Add clamscan_can_scan_system boolean - Allow mysqld to read kernel network state - Allow sshd to read/write condor lib files - Allow sshd to read/write condor-startd tcp socket - Fix description on httpd_graceful_shutdown - Allow glance_registry to communicate with mysql - dbus_system_domain is using systemd to lauch applications - add interfaces to allow domains to send kill signals to user mail agents - Remove unnessary access for svirt_lxc domains, add privs for virtd_lxc_t - Lots of new access required for secure containers - Corosync needs sys_admin capability - ALlow colord to create shm - .orc should be allowed to be created by any app that can create gstream home content, thumb_t to be specific - Add boolean to control whether or not mozilla plugins can create random content in the users homedir - Add new interface to allow domains to list msyql_db directories, needed for libra - shutdown has to be allowed to delete etc_runtime_t - Fail2ban needs to read /etc/passwd - Allow ldconfig to create /var/cache/ldconfig - Allow tgtd to read hardware state information - Allow collectd to create packet socket - Allow chronyd to send signal to itself - Allow collectd to read /dev/random - Allow collectd to send signal to itself - firewalld needs to execute restorecon - Allow restorecon and other login domains to execute restorecon- Allow logrotate to getattr on systemd unit files - Add support for tor systemd unit file - Allow apmd to create /var/run/pm-utils with the correct label - Allow l2tpd to send sigkill to pppd - Allow pppd to stream connect to l2tpd - Add label for scripts in /etc/gdm/ - Allow systemd_logind_t to ignore mcs constraints on sigkill - Fix files_filetrans_system_conf_named_files() interface - Add labels for /usr/share/wordpress/wp-includes/*.php - Allow cobbler to get SELinux mode and booleans- Add unconfined_execmem_exec_t as an alias to bin_t - Allow fenced to read snmp var lib files, also allow it to read usr_t - ontaudit access checks on all executables from mozilla_plugin - Allow all user domains to setexec, so that sshd will work properly if it call setexec(NULL) while running withing a user mode - Allow systemd_tmpfiles_t to getattr all pipes and sockets - Allow glance-registry to send system log messages - semanage needs to manage mock lib files/dirs- Add policy for abrt-watch-log - Add definitions for jboss_messaging ports - Allow systemd_tmpfiles to manage printer devices - Allow oddjob to use nsswitch - Fix labeling of log files for postgresql - Allow mozilla_plugin_t to execmem and execstack by default - Allow firewalld to execute shell - Fix /etc/wicd content files to get created with the correct label - Allow mcelog to exec shell - Add ~/.orc as a gstreamer_home_t - /var/spool/postfix/lib64 should be labeled lib_t - mpreaper should be able to list all file system labeled directories - Add support for apache to use openstack - Add labeling for /etc/zipl.conf and zipl binary - Turn on allow_execstack and turn off telepathy transition for final release- More access required for virt_qmf_t - Additional assess required for systemd-logind to support multi-seat - Allow mozilla_plugin to setrlimit - Revert changes to fuse file system to stop deadlock- Allow condor domains to connect to ephemeral ports - More fixes for condor policy - Allow keystone to stream connect to mysqld - Allow mozilla_plugin_t to read generic USB device to support GPS devices - Allow thum to file name transition gstreamer home content - Allow thum to read all non security files - Allow glance_api_t to connect to ephemeral ports - Allow nagios plugins to read /dev/urandom - Allow syslogd to search postfix spool to support postfix chroot env - Fix labeling for /var/spool/postfix/dev - Allow wdmd chown - Label .esd_auth as pulseaudio_home_t - Have no idea why keyring tries to write to /run/user/dwalsh/dconf/user, but we can dontaudit for now- Add support for clamd+systemd - Allow fresclam to execute systemctl to handle clamd - Change labeling for /usr/sbin/rpc.ypasswd.env - Allow yppaswd_t to execute yppaswd_exec_t - Allow yppaswd_t to read /etc/passwd - Gnomekeyring socket has been moved to /run/user/USER/ - Allow samba-net to connect to ldap port - Allow signal for vhostmd - allow mozilla_plugin_t to read user_home_t socket - New access required for secure Linux Containers - zfs now supports xattrs - Allow quantum to execute sudo and list sysfs - Allow init to dbus chat with the firewalld - Allow zebra to read /etc/passwd- Allow svirt_t to create content in the users homedir under ~/.libvirt - Fix label on /var/lib/heartbeat - Allow systemd_logind_t to send kill signals to all processes started by a user - Fuse now supports Xattr Support- upowered needs to setsched on the kernel - Allow mpd_t to manage log files - Allow xdm_t to create /var/run/systemd/multi-session-x - Add rules for missedfont.log to be used by thumb.fc - Additional access required for virt_qmf_t - Allow dhclient to dbus chat with the firewalld - Add label for lvmetad - Allow systemd_logind_t to remove userdomain sock_files - Allow cups to execute usr_t files - Fix labeling on nvidia shared libraries - wdmd_t needs access to sssd and /etc/passwd - Add boolean to allow ftp servers to run in passive mode - Allow namepspace_init_t to relabelto/from a different user system_u from the user the namespace_init running with - Fix using httpd_use_fusefs - Allow chrome_sandbox_nacl to write inherited user tmp files as we allow it for chrome_sandbox- Rename rdate port to time port, and allow gnomeclock to connect to it - We no longer need to transition to ldconfig from rpm, rpm_script, or anaconda - /etc/auto.* should be labeled bin_t - Add httpd_use_fusefs boolean - Add fixes for heartbeat - Allow sshd_t to signal processes that it transitions to - Add condor policy - Allow svirt to create monitors in ~/.libvirt - Allow dovecot to domtrans sendmail to handle sieve scripts - Lot of fixes for cfengine- /var/run/postmaster.* labeling is no longer needed - Alllow drbdadmin to read /dev/urandom - l2tpd_t seems to use ptmx - group+ and passwd+ should be labeled as /etc/passwd - Zarafa-indexer is a socket- Ensure lastlog is labeled correctly - Allow accountsd to read /proc data about gdm - Add fixes for tuned - Add bcfg2 fixes which were discovered during RHEL6 testing - More fixes for gnome-keyring socket being moved - Run semanage as a unconfined domain, and allow initrc_t to create tmpfs_t sym links on shutdown - Fix description for files_dontaudit_read_security_files() interface- Add new policy and man page for bcfg2 - cgconfig needs to use getpw calls - Allow domains that communicate with the keyring to use cache_home_t instead of gkeyringd_tmpt - gnome-keyring wants to create a directory in cache_home_t - sanlock calls getpw- Add numad policy and numad man page - Add fixes for interface bugs discovered by SEWatch - Add /tmp support for squid - Add fix for #799102 * change default labeling for /var/run/slapd.* sockets - Make thumb_t as userdom_home_reader - label /var/lib/sss/mc same as pubconf, so getpw domains can read it - Allow smbspool running as cups_t to stream connect to nmbd - accounts needs to be able to execute passwd on behalf of users - Allow systemd_tmpfiles_t to delete boot flags - Allow dnssec_trigger to connect to apache ports - Allow gnome keyring to create sock_files in ~/.cache - google_authenticator is using .google_authenticator - sandbox running from within firefox is exposing more leaks - Dontaudit thumb to read/write /dev/card0 - Dontaudit getattr on init_exec_t for gnomeclock_t - Allow certmonger to do a transition to certmonger_unconfined_t - Allow dhcpc setsched which is caused by nmcli - Add rpm_exec_t for /usr/sbin/bcfg2 - system cronjobs are sending dbus messages to systemd_logind - Thumnailers read /dev/urand- Allow auditctl getcap - Allow vdagent to use libsystemd-login - Allow abrt-dump-oops to search /etc/abrt - Got these avc's while trying to print a boarding pass from firefox - Devicekit is now putting the media directory under /run/media - Allow thumbnailers to create content in ~/.thumbails directory - Add support for proL2TPd by Dominick Grift - Allow all domains to call getcap - wdmd seems to get a random chown capability check that it does not need - Allow vhostmd to read kernel sysctls- Allow chronyd to read unix - Allow hpfax to read /etc/passwd - Add support matahari vios-proxy-* apps and add virtd_exec_t label for them - Allow rpcd to read quota_db_t - Update to man pages to match latest policy - Fix bug in jockey interface for sepolgen-ifgen - Add initial svirt_prot_exec_t policy- More fixes for systemd from Dan Walsh- Add a new type for /etc/firewalld and allow firewalld to write to this directory - Add definition for ~/Maildir, and allow mail deliver domains to write there - Allow polipo to run from a cron job - Allow rtkit to schedule wine processes - Allow mozilla_plugin_t to acquire a bug, and allow it to transition gnome content in the home dir to the proper label - Allow users domains to send signals to consolehelper domains- More fixes for boinc policy - Allow polipo domain to create its own cache dir and pid file - Add systemctl support to httpd domain - Add systemctl support to polipo, allow NetworkManager to manage the service - Add policy for jockey-backend - Add support for motion daemon which is now covered by zoneminder policy - Allow colord to read/write motion tmpfs - Allow vnstat to search through var_lib_t directories - Stop transitioning to quota_t, from init an sysadm_t- Add svirt_lxc_file_t as a customizable type- Add additional fixes for icmp nagios plugin - Allow cron jobs to open fifo_files from cron, since service script opens /dev/stdin - Add certmonger_unconfined_exec_t - Make sure tap22 device is created with the correct label - Allow staff users to read systemd unit files - Merge in previously built policy - Arpwatch needs to be able to start netlink sockets in order to start - Allow cgred_t to sys_ptrace to look at other DAC Processes- Back port some of the access that was allowed in nsplugin_t - Add definitiona for couchdb ports - Allow nagios to use inherited users ttys - Add git support for mock - Allow inetd to use rdate port - Add own type for rdate port - Allow samba to act as a portmapper - Dontaudit chrome_sandbox attempts to getattr on chr_files in /dev - New fixes needed for samba4 - Allow apps that use lib_t to read lib_t symlinks- Add policy for nove-cert - Add labeling for nova-openstack systemd unit files - Add policy for keystoke- Fix man pages fro domains - Add man pages for SELinux users and roles - Add storage_dev_filetrans_named_fixed_disk() and use it for smartmon - Add policy for matahari-rpcd - nfsd executes mount command on restart - Matahari domains execute renice and setsched - Dontaudit leaked tty in mozilla_plugin_config - mailman is changing to a per instance naming - Add 7600 and 4447 as jboss_management ports - Add fixes for nagios event handlers - Label httpd.event as httpd_exec_t, it is an apache daemon- Add labeling for /var/spool/postfix/dev/log - NM reads sysctl.conf - Iscsi log file context specification fix - Allow mozilla plugins to send dbus messages to user domains that transition to it - Allow mysql to read the passwd file - Allow mozilla_plugin_t to create mozilla home dirs in user homedir - Allow deltacloud to read kernel sysctl - Allow postgresql_t to connectto itselfAllow postgresql_t to connectto itself - Allow postgresql_t to connectto itself - Add login_userdomain attribute for users which can log in using terminal- Allow sysadm_u to reach system_r by default #784011 - Allow nagios plugins to use inherited user terminals - Razor labeling is not used no longer - Add systemd support for matahari - Add port_types to man page, move booleans to the top, fix some english - Add support for matahari-sysconfig-console - Clean up matahari.fc - Fix matahari_admin() interfac - Add labels for/etc/ssh/ssh_host_*.pub keys- Allow ksysguardproces to send system log msgs - Allow boinc setpgid and signull - Allow xdm_t to sys_ptrace to run pidof command - Allow smtpd_t to manage spool files/directories and symbolic links - Add labeling for jetty - Needed changes to get unbound/dnssec to work with openswan- Add user_fonts_t alias xfs_tmp_t - Since depmod now runs as insmod_t we need to write to kernel_object_t - Allow firewalld to dbus chat with networkmanager - Allow qpidd to connect to matahari ports - policykit needs to read /proc for uses not owned by it - Allow systemctl apps to connecto the init stream- Turn on deny_ptrace boolean- Remove pam_selinux.8 man page. There was a conflict.- Add proxy class and read access for gssd_proxy - Separate out the sharing public content booleans - Allow certmonger to execute a script and send signals to apache and dirsrv to reload the certificate - Add label transition for gstream-0.10 and 12 - Add booleans to allow rsync to share nfs and cifs file sytems - chrome_sandbox wants to read the /proc/PID/exe file of the program that executed it - Fix filename transitions for cups files - Allow denyhosts to read "unix" - Add file name transition for locale.conf.new - Allow boinc projects to gconf config files - sssd needs to be able to increase the socket limit under certain loads - sge_execd needs to read /etc/passwd - Allow denyhost to check network state - NetworkManager needs to read sessions data - Allow denyhost to check network state - Allow xen to search virt images directories - Add label for /dev/megaraid_sas_ioctl_node - Add autogenerated man pages- Allow boinc project to getattr on fs - Allow init to execute initrc_state_t - rhev-agent package was rename to ovirt-guest-agent - If initrc_t creates /etc/local.conf then we need to make sure it is labeled correctly - sytemd writes content to /run/initramfs and executes it on shutdown - kdump_t needs to read /etc/mtab, should be back ported to F16 - udev needs to load kernel modules in early system boot- Need to add sys_ptrace back in since reading any content in /proc can cause these accesses - Add additional systemd interfaces which are needed fro *_admin interfaces - Fix bind_admin() interface- Allow firewalld to read urand - Alias java, execmem_mono to bin_t to allow third parties - Add label for kmod - /etc/redhat-lsb contains binaries - Add boolean to allow gitosis to send mail - Add filename transition also for "event20" - Allow systemd_tmpfiles_t to delete all file types - Allow collectd to ipc_lock- make consoletype_exec optional, so we can remove consoletype policy - remove unconfined_permisive.patch - Allow openvpn_t to inherit user home content and tmp content - Fix dnssec-trigger labeling - Turn on obex policy for staff_t - Pem files should not be secret - Add lots of rules to fix AVC's when playing with containers - Fix policy for dnssec - Label ask-passwd directories correctly for systemd- sshd fixes seem to be causing unconfined domains to dyntrans to themselves - fuse file system is now being mounted in /run/user - systemd_logind is sending signals to processes that are dbus messaging with it - Add support for winshadow port and allow iscsid to connect to this port - httpd should be allowed to bind to the http_port_t udp socket - zarafa_var_lib_t can be a lnk_file - A couple of new .xsession-errors files - Seems like user space and login programs need to read logind_sessions_files - Devicekit disk seems to be being launched by systemd - Cleanup handling of setfiles so most of rules in te file - Correct port number for dnssec - logcheck has the home dir set to its cache- Add policy for grindengine MPI jobs- Add new sysadm_secadm.pp module * contains secadm definition for sysadm_t - Move user_mail_domain access out of the interface into the te file - Allow httpd_t to create httpd_var_lib_t directories as well as files - Allow snmpd to connect to the ricci_modcluster stream - Allow firewalld to read /etc/passwd - Add auth_use_nsswitch for colord - Allow smartd to read network state - smartdnotify needs to read /etc/group- Allow gpg and gpg_agent to store sock_file in gpg_secret_t directory - lxdm startup scripts should be labeled bin_t, so confined users will work - mcstransd now creates a pid, needs back port to F16 - qpidd should be allowed to connect to the amqp port - Label devices 010-029 as usb devices - ypserv packager says ypserv does not use tmp_t so removing selinux policy types - Remove all ptrace commands that I believe are caused by the kernel/ps avcs - Add initial Obex policy - Add logging_syslogd_use_tty boolean - Add polipo_connect_all_unreserved bolean - Allow zabbix to connect to ftp port - Allow systemd-logind to be able to switch VTs - Allow apache to communicate with memcached through a sock_file- Fix file_context.subs_dist for now to work with pre usrmove- More /usr move fixes- Add zabbix_can_network boolean - Add httpd_can_connect_zabbix boolean - Prepare file context labeling for usrmove functions - Allow system cronjobs to read kernel network state - Add support for selinux_avcstat munin plugin - Treat hearbeat with corosync policy - Allow corosync to read and write to qpidd shared mem - mozilla_plugin is trying to run pulseaudio - Fixes for new sshd patch for running priv sep domains as the users context - Turn off dontaudit rules when turning on allow_ypbind - udev now reads /etc/modules.d directory- Turn on deny_ptrace boolean for the Rawhide run, so we can test this out - Cups exchanges dbus messages with init - udisk2 needs to send syslog messages - certwatch needs to read /etc/passwd- Add labeling for udisks2 - Allow fsadmin to communicate with the systemd process- Treat Bip with bitlbee policy * Bip is an IRC proxy - Add port definition for interwise port - Add support for ipa_memcached socket - systemd_jounald needs to getattr on all processes - mdadmin fixes * uses getpw - amavisd calls getpwnam() - denyhosts calls getpwall()- Setup labeling of /var/rsa and /var/lib/rsa to allow login programs to write there - bluetooth says they do not use /tmp and want to remove the type - Allow init to transition to colord - Mongod needs to read /proc/sys/vm/zone_reclaim_mode - Allow postfix_smtpd_t to connect to spamd - Add boolean to allow ftp to connect to all ports > 1023 - Allow sendmain to write to inherited dovecot tmp files - setroubleshoot needs to be able to execute rpm to see what version of packages- Merge systemd patch - systemd-tmpfiles wants to relabel /sys/devices/system/cpu/online - Allow deltacloudd dac_override, setuid, setgid caps - Allow aisexec to execute shell - Add use_nfs_home_dirs boolean for ssh-keygen- Fixes to make rawhide boot in enforcing mode with latest systemd changes- Add labeling for /var/run/systemd/journal/syslog - libvirt sends signals to ifconfig - Allow domains that read logind session files to list them- Fixed destined form libvirt-sandbox - Allow apps that list sysfs to also read sympolicy links in this filesystem - Add ubac_constrained rules for chrome_sandbox - Need interface to allow domains to use tmpfs_t files created by the kernel, used by libra - Allow postgresql to be executed by the caller - Standardize interfaces of daemons - Add new labeling for mm-handler - Allow all matahari domains to read network state and etc_runtime_t files- New fix for seunshare, requires seunshare_domains to be able to mounton / - Allow systemctl running as logrotate_t to connect to private systemd socket - Allow tmpwatch to read meminfo - Allow rpc.svcgssd to read supported_krb5_enctype - Allow zarafa domains to read /dev/random and /dev/urandom - Allow snmpd to read dev_snmp6 - Allow procmail to talk with cyrus - Add fixes for check_disk and check_nagios plugins- default trans rules for Rawhide policy - Make sure sound_devices controlC* are labeled correctly on creation - sssd now needs sys_admin - Allow snmp to read all proc_type - Allow to setup users homedir with quota.group- Add httpd_can_connect_ldap() interface - apcupsd_t needs to use seriel ports connected to usb devices - Kde puts procmail mail directory under ~/.local/share - nfsd_t can trigger sys_rawio on tests that involve too many mountpoints, dontaudit for now - Add labeling for /sbin/iscsiuio- Add label for /var/lib/iscan/interpreter - Dont audit writes to leaked file descriptors or redirected output for nacl - NetworkManager needs to write to /sys/class/net/ib*/mode- Allow abrt to request the kernel to load a module - Make sure mozilla content is labeled correctly - Allow tgtd to read system state - More fixes for boinc * allow to resolve dns name * re-write boinc policy to use boinc_domain attribute - Allow munin services plugins to use NSCD services- Allow mozilla_plugin_t to manage mozilla_home_t - Allow ssh derived domain to execute ssh-keygen in the ssh_keygen_t domain - Add label for tumblerd- Fixes for xguest package- Fixes related to /bin, /sbin - Allow abrt to getattr on blk files - Add type for rhev-agent log file - Fix labeling for /dev/dmfm - Dontaudit wicd leaking - Allow systemd_logind_t to look at process info of apps that exchange dbus messages with it - Label /etc/locale.conf correctly - Allow user_mail_t to read /dev/random - Allow postfix-smtpd to read MIMEDefang - Add label for /var/log/suphp.log - Allow swat_t to connect and read/write nmbd_t sock_file - Allow systemd-tmpfiles to setattr for /run/user/gdm/dconf - Allow systemd-tmpfiles to change user identity in object contexts - More fixes for rhev_agentd_t consolehelper policy- Use fs_use_xattr for squashf - Fix procs_type interface - Dovecot has a new fifo_file /var/run/dovecot/stats-mail - Dovecot has a new fifo_file /var/run/stats-mail - Colord does not need to connect to network - Allow system_cronjob to dbus chat with NetworkManager - Puppet manages content, want to make sure it labels everything correctly- Change port 9050 to tor_socks_port_t and then allow openvpn to connect to it - Allow all postfix domains to use the fifo_file - Allow sshd_t to getattr on all file systems in order to generate avc on nfs_t - Allow apmd_t to read grub.cfg - Let firewallgui read the selinux config - Allow systemd-tmpfiles to delete content in /root that has been moved to /tmp - Fix devicekit_manage_pid_files() interface - Allow squid to check the network state - Dontaudit colord getattr on file systems - Allow ping domains to read zabbix_tmp_t files- Allow mcelog_t to create dir and file in /var/run and label it correctly - Allow dbus to manage fusefs - Mount needs to read process state when mounting gluster file systems - Allow collectd-web to read collectd lib files - Allow daemons and system processes started by init to read/write the unix_stream_socket passed in from as stdin/stdout/stderr - Allow colord to get the attributes of tmpfs filesystem - Add sanlock_use_nfs and sanlock_use_samba booleans - Add bin_t label for /usr/lib/virtualbox/VBoxManage- Add ssh_dontaudit_search_home_dir - Changes to allow namespace_init_t to work - Add interface to allow exec of mongod, add port definition for mongod port, 27017 - Label .kde/share/apps/networkmanagement/certificates/ as home_cert_t - Allow spamd and clamd to steam connect to each other - Add policy label for passwd.OLD - More fixes for postfix and postfix maildro - Add ftp support for mozilla plugins - Useradd now needs to manage policy since it calls libsemanage - Fix devicekit_manage_log_files() interface - Allow colord to execute ifconfig - Allow accountsd to read /sys - Allow mysqld-safe to execute shell - Allow openct to stream connect to pcscd - Add label for /var/run/nm-dns-dnsmasq\.conf - Allow networkmanager to chat with virtd_t- Pulseaudio changes - Merge patches- Merge patches back into git repository.- Remove allow_execmem boolean and replace with deny_execmem boolean- Turn back on allow_execmem boolean- Add more MCS fixes to make sandbox working - Make faillog MLS trusted to make sudo_$1_t working - Allow sandbox_web_client_t to read passwd_file_t - Add .mailrc file context - Remove execheap from openoffice domain - Allow chrome_sandbox_nacl_t to read cpu_info - Allow virtd to relabel generic usb which is need if USB device - Fixes for virt.if interfaces to consider chr_file as image file type- Remove Open Office policy - Remove execmem policy- MCS fixes - quota fixes- Remove transitions to consoletype- Make nvidia* to be labeled correctly - Fix abrt_manage_cache() interface - Make filetrans rules optional so base policy will build - Dontaudit chkpwd_t access to inherited TTYS - Make sure postfix content gets created with the correct label - Allow gnomeclock to read cgroup - Fixes for cloudform policy- Check in fixed for Chrome nacl support- Begin removing qemu_t domain, we really no longer need this domain. - systemd_passwd needs dac_overide to communicate with users TTY's - Allow svirt_lxc domains to send kill signals within their container- Remove qemu.pp again without causing a crash- Remove qemu.pp, everything should use svirt_t or stay in its current domain- Allow policykit to talk to the systemd via dbus - Move chrome_sandbox_nacl_t to permissive domains - Additional rules for chrome_sandbox_nacl- Change bootstrap name to nacl - Chrome still needs execmem - Missing role for chrome_sandbox_bootstrap - Add boolean to remove execmem and execstack from virtual machines - Dontaudit xdm_t doing an access_check on etc_t directories- Allow named to connect to dirsrv by default - add ldapmap1_0 as a krb5_host_rcache_t file - Google chrome developers asked me to add bootstrap policy for nacl stuff - Allow rhev_agentd_t to getattr on mountpoints - Postfix_smtpd_t needs access to milters and cleanup seems to read/write postfix_smtpd_t unix_stream_sockets- Fixes for cloudform policies which need to connect to random ports - Make sure if an admin creates modules content it creates them with the correct label - Add port 8953 as a dns port used by unbound - Fix file name transition for alsa and confined users- Turn on mock_t and thumb_t for unconfined domains- Policy update should not modify local contexts- Remove ada policy- Remove tzdata policy - Add labeling for udev - Add cloudform policy - Fixes for bootloader policy- Add policies for nova openstack- Add fixes for nova-stack policy- Allow svirt_lxc_domain to chr_file and blk_file devices if they are in the domain - Allow init process to setrlimit on itself - Take away transition rules for users executing ssh-keygen - Allow setroubleshoot_fixit_t to read /dev/urand - Allow sshd to relbale tunnel sockets - Allow fail2ban domtrans to shorewall in the same way as with iptables - Add support for lnk files in the /var/lib/sssd directory - Allow system mail to connect to courier-authdaemon over an unix stream socket- Add passwd_file_t for /etc/ptmptmp- Dontaudit access checks for all executables, gnome-shell is doing access(EXEC, X_OK) - Make corosync to be able to relabelto cluster lib fies - Allow samba domains to search /var/run/nmbd - Allow dirsrv to use pam - Allow thumb to call getuid - chrome less likely to get mmap_zero bug so removing dontaudit - gimp help-browser has built in javascript - Best guess is that devices named /dev/bsr4096 should be labeled as cpu_device_t - Re-write glance policy- Move dontaudit sys_ptrace line from permissive.te to domain.te - Remove policy for hal, it no longer exists- Don't check md5 size or mtime on certain config files- Remove allow_ptrace and replace it with deny_ptrace, which will remove all ptrace from the system - Remove 2000 dontaudit rules between confined domains on transition and replace with single dontaudit domain domain:process { noatsecure siginh rlimitinh } ;- Fixes for bootloader policy - $1_gkeyringd_t needs to read $HOME/%USER/.local/share/keystore - Allow nsplugin to read /usr/share/config - Allow sa-update to update rules - Add use_fusefs_home_dirs for chroot ssh option - Fixes for grub2 - Update systemd_exec_systemctl() interface - Allow gpg to read the mail spool - More fixes for sa-update running out of cron job - Allow ipsec_mgmt_t to read hardware state information - Allow pptp_t to connect to unreserved_port_t - Dontaudit getattr on initctl in /dev from chfn - Dontaudit getattr on kernel_core from chfn - Add systemd_list_unit_dirs to systemd_exec_systemctl call - Fixes for collectd policy - CHange sysadm_t to create content as user_tmp_t under /tmp- Shrink size of policy through use of attributes for userdomain and apache- Allow virsh to read xenstored pid file - Backport corenetwork fixes from upstream - Do not audit attempts by thumb to search config_home_t dirs (~/.config) - label ~/.cache/telepathy/logger telepathy_logger_cache_home_t - allow thumb to read generic data home files (mime.type)- Allow nmbd to manage sock file in /var/run/nmbd - ricci_modservice send syslog msgs - Stop transitioning from unconfined_t to ldconfig_t, but make sure /etc/ld.so.cache is labeled correctly - Allow systemd_logind_t to manage /run/USER/dconf/user- Fix missing patch from F16- Allow logrotate setuid and setgid since logrotate is supposed to do it - Fixes for thumb policy by grift - Add new nfsd ports - Added fix to allow confined apps to execmod on chrome - Add labeling for additional vdsm directories - Allow Exim and Dovecot SASL - Add label for /var/run/nmbd - Add fixes to make virsh and xen working together - Colord executes ls - /var/spool/cron is now labeled as user_cron_spool_t- Stop complaining about leaked file descriptors during install- Remove java and mono module and merge into execmem- Fixes for thumb policy and passwd_file_t- Fixes caused by the labeling of /etc/passwd - Add thumb.patch to transition unconfined_t to thumb_t for Rawhide- Add support for Clustered Samba commands - Allow ricci_modrpm_t to send log msgs - move permissive virt_qmf_t from virt.te to permissivedomains.te - Allow ssh_t to use kernel keyrings - Add policy for libvirt-qmf and more fixes for linux containers - Initial Polipo - Sanlock needs to run ranged in order to kill svirt processes - Allow smbcontrol to stream connect to ctdbd- Add label for /etc/passwd- Change unconfined_domains to permissive for Rawhide - Add definition for the ephemeral_ports- Make mta_role() active - Allow asterisk to connect to jabber client port - Allow procmail to read utmp - Add NIS support for systemd_logind_t - Allow systemd_logind_t to manage /run/user/$USER/dconf dir which is labeled as config_home_t - Fix systemd_manage_unit_dirs() interface - Allow ssh_t to manage directories passed into it - init needs to be able to create and delete unit file directories - Fix typo in apache_exec_sys_script - Add ability for logrotate to transition to awstat domain- Change screen to use screen_domain attribute and allow screen_domains to read all process domain state - Add SELinux support for ssh pre-auth net process in F17 - Add logging_syslogd_can_sendmail boolean- Add definition for ephemeral ports - Define user_tty_device_t as a customizable_type- Needs to require a new version of checkpolicy - Interface fixes- Allow sanlock to manage virt lib files - Add virt_use_sanlock booelan - ksmtuned is trying to resolve uids - Make sure .gvfs is labeled user_home_t in the users home directory - Sanlock sends kill signals and needs the kill capability - Allow mockbuild to work on nfs homedirs - Fix kerberos_manage_host_rcache() interface - Allow exim to read system state- Allow systemd-tmpfiles to set the correct labels on /var/run, /tmp and other files - We want any file type that is created in /tmp by a process running as initrc_t to be labeled initrc_tmp_t- Allow collectd to read hardware state information - Add loop_control_device_t - Allow mdadm to request kernel to load module - Allow domains that start other domains via systemctl to search unit dir - systemd_tmpfilses, needs to list any file systems mounted on /tmp - No one can explain why radius is listing the contents of /tmp, so we will dontaudit - If I can manage etc_runtime files, I should be able to read the links - Dontaudit hostname writing to mock library chr_files - Have gdm_t setup labeling correctly in users home dir - Label content unde /var/run/user/NAME/dconf as config_home_t - Allow sa-update to execute shell - Make ssh-keygen working with fips_enabled - Make mock work for staff_t user - Tighten security on mock_t- removing unconfined_notrans_t no longer necessary - Clean up handling of secure_mode_insmod and secure_mode_policyload - Remove unconfined_mount_t- Add exim_exec_t label for /usr/sbin/exim_tidydb - Call init_dontaudit_rw_stream_socket() interface in mta policy - sssd need to search /var/cache/krb5rcache directory - Allow corosync to relabel own tmp files - Allow zarafa domains to send system log messages - Allow ssh to do tunneling - Allow initrc scripts to sendto init_t unix_stream_socket - Changes to make sure dmsmasq and virt directories are labeled correctly - Changes needed to allow sysadm_t to manage systemd unit files - init is passing file descriptors to dbus and on to system daemons - Allow sulogin additional access Reported by dgrift and Jeremy Miller - Steve Grubb believes that wireshark does not need this access - Fix /var/run/initramfs to stop restorecon from looking at - pki needs another port - Add more labels for cluster scripts - Allow apps that manage cgroup_files to manage cgroup link files - Fix label on nfs-utils scripts directories - Allow gatherd to read /dev/rand and /dev/urand- pki needs another port - Add more labels for cluster scripts - Fix label on nfs-utils scripts directories - Fixes for cluster - Allow gatherd to read /dev/rand and /dev/urand - abrt leaks fifo files- Add glance policy - Allow mdadm setsched - /var/run/initramfs should not be relabeled with a restorecon run - memcache can be setup to override sys_resource - Allow httpd_t to read tetex data - Allow systemd_tmpfiles to delete kernel modules left in /tmp directory.- Allow Postfix to deliver to Dovecot LMTP socket - Ignore bogus sys_module for lldpad - Allow chrony and gpsd to send dgrams, gpsd needs to write to the real time clock - systemd_logind_t sets the attributes on usb devices - Allow hddtemp_t to read etc_t files - Add permissivedomains module - Move all permissive domains calls to permissivedomain.te - Allow pegasis to send kill signals to other UIDs- Allow insmod_t to use fds leaked from devicekit - dontaudit getattr between insmod_t and init_t unix_stream_sockets - Change sysctl unit file interfaces to use systemctl - Add support for chronyd unit file - Allow mozilla_plugin to read gnome_usr_config - Add policy for new gpsd - Allow cups to create kerberos rhost cache files - Add authlogin_filetrans_named_content, to unconfined_t to make sure shadow and other log files get labeled correctly- Make users_extra and seusers.final into config(noreplace) so semanage users and login does not get overwritten- Add policy for sa-update being run out of cron jobs - Add create perms to postgresql_manage_db - ntpd using a gps has to be able to read/write generic tty_device_t - If you disable unconfined and unconfineduser, rpm needs more privs to manage /dev - fix spec file - Remove qemu_domtrans_unconfined() interface - Make passenger working together with puppet - Add init_dontaudit_rw_stream_socket interface - Fixes for wordpress- Turn on allow_domain_fd_use boolean on F16 - Allow syslog to manage all log files - Add use_fusefs_home_dirs boolean for chrome - Make vdagent working with confined users - Add abrt_handle_event_t domain for ABRT event scripts - Labeled /usr/sbin/rhnreg_ks as rpm_exec_t and added changes related to this change - Allow httpd_git_script_t to read passwd data - Allow openvpn to set its process priority when the nice parameter is used- livecd fixes - spec file fixes- fetchmail can use kerberos - ksmtuned reads in shell programs - gnome_systemctl_t reads the process state of ntp - dnsmasq_t asks the kernel to load multiple kernel modules - Add rules for domains executing systemctl - Bogus text within fc file- Add cfengine policy- Add abrt_domain attribute - Allow corosync to manage cluster lib files - Allow corosync to connect to the system DBUS- Add sblim, uuidd policies - Allow kernel_t dyntrasition to init_t- init_t need setexec - More fixes of rules which cause an explosion in rules by Dan Walsh- Allow rcsmcertd to perform DNS name resolution - Add dirsrvadmin_unconfined_script_t domain type for 389-ds admin scripts - Allow tmux to run as screen - New policy for collectd - Allow gkeyring_t to interact with all user apps - Add rules to allow firstboot to run on machines with the unconfined.pp module removed- Allow systemd_logind to send dbus messages with users - allow accountsd to read wtmp file - Allow dhcpd to get and set capabilities- Fix oracledb_port definition - Allow mount to mounton the selinux file system - Allow users to list /var directories- systemd fixes- Add initial policy for abrt_dump_oops_t - xtables-multi wants to getattr of the proc fs - Smoltclient is connecting to abrt - Dontaudit leaked file descriptors to postdrop - Allow abrt_dump_oops to look at kernel sysctls - Abrt_dump_oops_t reads kernel ring buffer - Allow mysqld to request the kernel to load modules - systemd-login needs fowner - Allow postfix_cleanup_t to searh maildrop- Initial systemd_logind policy - Add policy for systemd_logger and additional proivs for systemd_logind - More fixes for systemd policies- Allow setsched for virsh - Systemd needs to impersonate cups, which means it needs to create tcp_sockets in cups_t domain, as well as manage spool directories - iptables: the various /sbin/ip6?tables.* are now symlinks for /sbin/xtables-multi- A lot of users are running yum -y update while in /root which is causing ldconfig to list the contents, adding dontaudit - Allow colord to interact with the users through the tmpfs file system - Since we changed the label on deferred, we need to allow postfix_qmgr_t to be able to create maildrop_t files - Add label for /var/log/mcelog - Allow asterisk to read /dev/random if it uses TLS - Allow colord to read ini files which are labeled as bin_t - Allow dirsrvadmin sys_resource and setrlimit to use ulimit - Systemd needs to be able to create sock_files for every label in /var/run directory, cupsd being the first. - Also lists /var and /var/spool directories - Add openl2tpd to l2tpd policy - qpidd is reading the sysfs file- Change usbmuxd_t to dontaudit attempts to read chr_file - Add mysld_safe_exec_t for libra domains to be able to start private mysql domains - Allow pppd to search /var/lock dir - Add rhsmcertd policy- Update to upstream- More fixes * http://git.fedorahosted.org/git/?p=selinux-policy.git- Fix spec file to not report Verify errors- Add dspam policy - Add lldpad policy - dovecot auth wants to search statfs #713555 - Allow systemd passwd apps to read init fifo_file - Allow prelink to use inherited terminals - Run cherokee in the httpd_t domain - Allow mcs constraints on node connections - Implement pyicqt policy - Fixes for zarafa policy - Allow cobblerd to send syslog messages- Add policy.26 to the payload - Remove olpc stuff - Remove policygentool- Fixes for zabbix - init script needs to be able to manage sanlock_var_run_... - Allow sandlock and wdmd to create /var/run directories... - mixclip.so has been compiled correctly - Fix passenger policy module name- Add mailscanner policy from dgrift - Allow chrome to optionally be transitioned to - Zabbix needs these rules when starting the zabbix_server_mysql - Implement a type for freedesktop openicc standard (~/.local/share/icc) - Allow system_dbusd_t to read inherited icc_data_home_t files. - Allow colord_t to read icc_data_home_t content. #706975 - Label stuff under /usr/lib/debug as if it was labeled under /- Fixes for sanlock policy - Fixes for colord policy - Other fixes * http://git.fedorahosted.org/git/?p=selinux-policy.git;a=log- Add rhev policy module to modules-targeted.conf- Lot of fixes * http://git.fedorahosted.org/git/?p=selinux-policy.git;a=log- Allow logrotate to execute systemctl - Allow nsplugin_t to getattr on gpmctl - Fix dev_getattr_all_chr_files() interface - Allow shorewall to use inherited terms - Allow userhelper to getattr all chr_file devices - sandbox domains should be able to getattr and dontaudit search of sysctl_kernel_t - Fix labeling for ABRT Retrace Server- Dontaudit sys_module for ifconfig - Make telepathy and gkeyringd daemon working with confined users - colord wants to read files in users homedir - Remote login should be creating user_tmp_t not its own tmp files- Fix label for /usr/share/munin/plugins/munin_* plugins - Add support for zarafa-indexer - Fix boolean description - Allow colord to getattr on /proc/scsi/scsi - Add label for /lib/upstart/init - Colord needs to list /mnt- Forard port changes from F15 for telepathy - NetworkManager should be allowed to use /dev/rfkill - Fix dontaudit messages to say Domain to not audit - Allow telepathy domains to read/write gnome_cache files - Allow telepathy domains to call getpw - Fixes for colord and vnstatd policy- Allow init_t getcap and setcap - Allow namespace_init_t to use nsswitch - aisexec will execute corosync - colord tries to read files off noxattr file systems - Allow init_t getcap and setcap- Add support for ABRT retrace server - Allow user_t and staff_t access to generic scsi to handle locally plugged in scanners - Allow telepath_msn_t to read /proc/PARENT/cmdline - ftpd needs kill capability - Allow telepath_msn_t to connect to sip port - keyring daemon does not work on nfs homedirs - Allow $1_sudo_t to read default SELinux context - Add label for tgtd sock file in /var/run/ - Add apache_exec_rotatelogs interface - allow all zaraha domains to signal themselves, server writes to /tmp - Allow syslog to read the process state - Add label for /usr/lib/chromium-browser/chrome - Remove the telepathy transition from unconfined_t - Dontaudit sandbox domains trying to mounton sandbox_file_t, this is caused by fuse mounts - Allow initrc_t domain to manage abrt pid files - Add support for AEOLUS project - Virt_admin should be allowed to manage images and processes - Allow plymountd to send signals to init - Change labeling of fping6- Add filename transitions- Fixes for zarafa policy - Add support for AEOLUS project - Change labeling of fping6 - Allow plymountd to send signals to init - Allow initrc_t domain to manage abrt pid files - Virt_admin should be allowed to manage images and processes- xdm_t needs getsession for switch user - Every app that used to exec init is now execing systemdctl - Allow squid to manage krb5_host_rcache_t files - Allow foghorn to connect to agentx port - Fixes for colord policy- Add Dan's patch to remove 64 bit variants - Allow colord to use unix_dgram_socket - Allow apps that search pids to read /var/run if it is a lnk_file - iscsid_t creates its own directory - Allow init to list var_lock_t dir - apm needs to verify user accounts auth_use_nsswitch - Add labeling for systemd unit files - Allow gnomeclok to enable ntpd service using systemctl - systemd_systemctl_t domain was added - Add label for matahari-broker.pid file - We want to remove untrustedmcsprocess from ability to read /proc/pid - Fixes for matahari policy - Allow system_tmpfiles_t to delete user_home_t files in the /tmp dir - Allow sshd to transition to sysadm_t if ssh_sysadm_login is turned on- Fix typo- Add /var/run/lock /var/lock definition to file_contexts.subs - nslcd_t is looking for kerberos cc files - SSH_USE_STRONG_RNG is 1 which requires /dev/random - Fix auth_rw_faillog definition - Allow sysadm_t to set attributes on fixed disks - allow user domains to execute lsof and look at application sockets - prelink_cron job calls telinit -u if init is rewritten - Fixes to run qemu_t from staff_t- Fix label for /var/run/udev to udev_var_run_t - Mock needs to be able to read network state- Add file_contexts.subs to handle /run and /run/lock - Add other fixes relating to /run changes from F15 policy- Allow $1_sudo_t and $1_su_t open access to user terminals - Allow initrc_t to use generic terminals - Make Makefile/Rules.modular run sepolgen-ifgen during build to check if files for bugs -systemd is going to be useing /run and /run/lock for early bootup files. - Fix some comments in rlogin.if - Add policy for KDE backlighthelper - sssd needs to read ~/.k5login in nfs, cifs or fusefs file systems - sssd wants to read .k5login file in users homedir - setroubleshoot reads executables to see if they have TEXTREL - Add /var/spool/audit support for new version of audit - Remove kerberos_connect_524() interface calling - Combine kerberos_master_port_t and kerberos_port_t - systemd has setup /dev/kmsg as stderr for apps it executes - Need these access so that init can impersonate sockets on unix_dgram_socket- Remove some unconfined domains - Remove permissive domains - Add policy-term.patch from Dan- Fix multiple specification for boot.log - devicekit leaks file descriptors to setfiles_t - Change all all_nodes to generic_node and all_if to generic_if - Should not use deprecated interface - Switch from using all_nodes to generic_node and from all_if to generic_if - Add support for xfce4-notifyd - Fix file context to show several labels as SystemHigh - seunshare needs to be able to mounton nfs/cifs/fusefs homedirs - Add etc_runtime_t label for /etc/securetty - Fixes to allow xdm_t to start gkeyringd_USERTYPE_t directly - login.krb needs to be able to write user_tmp_t - dirsrv needs to bind to port 7390 for dogtag - Fix a bug in gpg policy - gpg sends audit messages - Allow qpid to manage matahari files- Initial policy for matahari - Add dev_read_watchdog - Allow clamd to connect clamd port - Add support for kcmdatetimehelper - Allow shutdown to setrlimit and sys_nice - Allow systemd_passwd to talk to /dev/log before udev or syslog is running - Purge chr_file and blk files on /tmp - Fixes for pads - Fixes for piranha-pulse - gpg_t needs to be able to encyprt anything owned by the user- mozilla_plugin_tmp_t needs to be treated as user tmp files - More dontaudits of writes from readahead - Dontaudit readahead_t file_type:dir write, to cover up kernel bug - systemd_tmpfiles needs to relabel faillog directory as well as the file - Allow hostname and consoletype to r/w inherited initrc_tmp_t files handline hostname >> /tmp/myhost- Add policykit fixes from Tim Waugh - dontaudit sandbox domains sandbox_file_t:dir mounton - Add new dontaudit rules for sysadm_dbusd_t - Change label for /var/run/faillock * other fixes which relate with this change- Update to upstream - Fixes for telepathy - Add port defition for ssdp port - add policy for /bin/systemd-notify from Dan - Mount command requires users read mount_var_run_t - colord needs to read konject_uevent_socket - User domains connect to the gkeyring socket - Add colord policy and allow user_t and staff_t to dbus chat with it - Add lvm_exec_t label for kpartx - Dontaudit reading the mail_spool_t link from sandbox -X - systemd is creating sockets in avahi_var_run and system_dbusd_var_run- gpg_t needs to talk to gnome-keyring - nscd wants to read /usr/tmp->/var/tmp to generate randomziation in unixchkpwd - enforce MCS labeling on nodes - Allow arpwatch to read meminfo - Allow gnomeclock to send itself signals - init relabels /dev/.udev files on boot - gkeyringd has to transition back to staff_t when it runs commands in bin_t or shell_exec_t - nautilus checks access on /media directory before mounting usb sticks, dontaudit access_check on mnt_t - dnsmasq can run as a dbus service, needs acquire service - mysql_admin should be allowed to connect to mysql service - virt creates monitor sockets in the users home dir- Allow usbhid-ups to read hardware state information - systemd-tmpfiles has moved - Allo cgroup to sys_tty_config - For some reason prelink is attempting to read gconf settings - Add allow_daemons_use_tcp_wrapper boolean - Add label for ~/.cache/wocky to make telepathy work in enforcing mode - Add label for char devices /dev/dasd* - Fix for apache_role - Allow amavis to talk to nslcd - allow all sandbox to read selinux poilcy config files - Allow cluster domains to use the system bus and send each other dbus messages- Update to upstream- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Update to ref policy - cgred needs chown capability - Add /dev/crash crash_dev_t - systemd-readahead wants to use fanotify which means readahead_t needs sys_admin capability- New labeling for postfmulti #675654 - dontaudit xdm_t listing noxattr file systems - dovecot-auth needs to be able to connect to mysqld via the network as well as locally - shutdown is passed stdout to a xdm_log_t file - smartd creates a fixed disk device - dovecot_etc_t contains a lnk_file that domains need to read - mount needs to be able to read etc_runtim_t:lnk_file since in rawhide this is a link created at boot- syslog_t needs syslog capability - dirsrv needs to be able to create /var/lib/snmp - Fix labeling for dirsrv - Fix for dirsrv policy missing manage_dirs_pattern - corosync needs to delete clvm_tmpfs_t files - qdiskd needs to list hugetlbfs - Move setsched to sandbox_x_domain, so firefox can run without network access - Allow hddtemp to read removable devices - Adding syslog and read_policy permissions to policy * syslog Allow unconfined, sysadm_t, secadm_t, logadm_t * read_policy allow unconfined, sysadm_t, secadm_t, staff_t on Targeted allow sysadm_t (optionally), secadm_t on MLS - mdadm application will write into /sys/.../uevent whenever arrays are assembled or disassembled.- Add tcsd policy- ricci_modclusterd_t needs to bind to rpc ports 500-1023 - Allow dbus to use setrlimit to increase resoueces - Mozilla_plugin is leaking to sandbox - Allow confined users to connect to lircd over unix domain stream socket which allow to use remote control - Allow awstats to read squid logs - seunshare needs to manage tmp_t - apcupsd cgi scripts have a new directory- Fix xserver_dontaudit_read_xdm_pid - Change oracle_port_t to oracledb_port_t to prevent conflict with satellite - Allow dovecot_deliver_t to read/write postfix_master_t:fifo_file. * These fifo_file is passed from postfix_master_t to postfix_local_t to dovecot_deliver_t - Allow readahead to manage readahead pid dirs - Allow readahead to read all mcs levels - Allow mozilla_plugin_t to use nfs or samba homedirs- Allow nagios plugin to read /proc/meminfo - Fix for mozilla_plugin - Allow samba_net_t to create /etc/keytab - pppd_t setting up vpns needs to run unix_chkpwd, setsched its process and write wtmp_t - nslcd can read user credentials - Allow nsplugin to delete mozilla_plugin_tmpfs_t - abrt tries to create dir in rpm_var_lib_t - virt relabels fifo_files - sshd needs to manage content in fusefs homedir - mock manages link files in cache dir- nslcd needs setsched and to read /usr/tmp - Invalid call in likewise policy ends up creating a bogus role - Cannon puts content into /var/lib/bjlib that cups needs to be able to write - Allow screen to create screen_home_t in /root - dirsrv sends syslog messages - pinentry reads stuff in .kde directory - Add labels for .kde directory in homedir - Treat irpinit, iprupdate, iprdump services with raid policy- NetworkManager wants to read consolekit_var_run_t - Allow readahead to create /dev/.systemd/readahead - Remove permissive domains - Allow newrole to run namespace_init- Add sepgsql_contexts file- Update to upstream- Add oracle ports and allow apache to connect to them if the connect_db boolean is turned on - Add puppetmaster_use_db boolean - Fixes for zarafa policy - Fixes for gnomeclock poliy - Fix systemd-tmpfiles to use auth_use_nsswitch- gnomeclock executes a shell - Update for screen policy to handle pipe in homedir - Fixes for polyinstatiated homedir - Fixes for namespace policy and other fixes related to polyinstantiation - Add namespace policy - Allow dovecot-deliver transition to sendmail which is needed by sieve scripts - Fixes for init, psad policy which relate with confined users - Do not audit bootloader attempts to read devicekit pid files - Allow nagios service plugins to read /proc- Add firewalld policy - Allow vmware_host to read samba config - Kernel wants to read /proc Fix duplicate grub def in cobbler - Chrony sends mail, executes shell, uses fifo_file and reads /proc - devicekitdisk getattr all file systems - sambd daemon writes wtmp file - libvirt transitions to dmidecode- Add initial policy for system-setup-keyboard which is now daemon - Label /var/lock/subsys/shorewall as shorewall_lock_t - Allow users to communicate with the gpg_agent_t - Dontaudit mozilla_plugin_t using the inherited terminal - Allow sambagui to read files in /usr - webalizer manages squid log files - Allow unconfined domains to bind ports to raw_ip_sockets - Allow abrt to manage rpm logs when running yum - Need labels for /var/run/bittlebee - Label .ssh under amanda - Remove unused genrequires for virt_domain_template - Allow virt_domain to use fd inherited from virtd_t - Allow iptables to read shorewall config- Gnome apps list config_home_t - mpd creates lnk files in homedir - apache leaks write to mail apps on tmp files - /var/stockmaniac/templates_cache contains log files - Abrt list the connects of mount_tmp_t dirs - passwd agent reads files under /dev and reads utmp file - squid apache script connects to the squid port - fix name of plymouth log file - teamviewer is a wine app - allow dmesg to read system state - Stop labeling files under /var/lib/mock so restorecon will not go into this - nsplugin needs to read network state for google talk- Allow xdm and syslog to use /var/log/boot.log - Allow users to communicate with mozilla_plugin and kill it - Add labeling for ipv6 and dhcp- New labels for ghc http content - nsplugin_config needs to read urand, lvm now calls setfscreate to create dev - pm-suspend now creates log file for append access so we remove devicekit_wri - Change authlogin_use_sssd to authlogin_nsswitch_use_ldap - Fixes for greylist_milter policy- Update to upstream - Fixes for systemd policy - Fixes for passenger policy - Allow staff users to run mysqld in the staff_t domain, akonadi needs this - Add bin_t label for /usr/share/kde4/apps/kajongg/kajongg.py - auth_use_nsswitch does not need avahi to read passwords,needed for resolving data - Dontaudit (xdm_t) gok attempting to list contents of /var/account - Telepathy domains need to read urand - Need interface to getattr all file classes in a mock library for setroubleshoot- Update selinux policy to handle new /usr/share/sandbox/start script- Update to upstream - Fix version of policy in spec file- Allow sandbox to run on nfs partitions, fixes for systemd_tmpfs - remove per sandbox domains devpts types - Allow dkim-milter sending signal to itself- Allow domains that transition to ping or traceroute, kill them - Allow user_t to conditionally transition to ping_t and traceroute_t - Add fixes to systemd- tools, including new labeling for systemd-fsck, systemd-cryptsetup- Turn on systemd policy - mozilla_plugin needs to read certs in the homedir. - Dontaudit leaked file descriptors from devicekit - Fix ircssi to use auth_use_nsswitch - Change to use interface without param in corenet to disable unlabelednet packets - Allow init to relabel sockets and fifo files in /dev - certmonger needs dac* capabilities to manage cert files not owned by root - dovecot needs fsetid to change group membership on mail - plymouthd removes /var/log/boot.log - systemd is creating symlinks in /dev - Change label on /etc/httpd/alias to be all cert_t- Fixes for clamscan and boinc policy - Add boinc_project_t setpgid - Allow alsa to create tmp files in /tmp- Push fixes to allow disabling of unlabeled_t packet access - Enable unlabelednet policy- Fixes for lvm to work with systemd- Fix the label for wicd log - plymouthd creates force-display-on-active-vt file - Allow avahi to request the kernel to load a module - Dontaudit hal leaks - Fix gnome_manage_data interface - Add new interface corenet_packet to define a type as being an packet_type. - Removed general access to packet_type from icecast and squid. - Allow mpd to read alsa config - Fix the label for wicd log - Add systemd policy- Fix gnome_manage_data interface - Dontaudit sys_ptrace capability for iscsid - Fixes for nagios plugin policy- Fix cron to run ranged when started by init - Fix devicekit to use log files - Dontaudit use of devicekit_var_run_t for fstools - Allow init to setattr on logfile directories - Allow hald to manage files in /var/run/pm-utils/ dir which is now labeled as devicekit_var_run_t- Fix up handling of dnsmasq_t creating /var/run/libvirt/network - Turn on sshd_forward_ports boolean by default - Allow sysadmin to dbus chat with rpm - Add interface for rw_tpm_dev - Allow cron to execute bin - fsadm needs to write sysfs - Dontaudit consoletype reading /var/run/pm-utils - Lots of new privs fro mozilla_plugin_t running java app, make mozilla_plugin - certmonger needs to manage dirsrv data - /var/run/pm-utils should be labeled as devicekit_var_run_t- fixes to allow /var/run and /var/lock as tmpfs - Allow chrome sandbox to connect to web ports - Allow dovecot to listem on lmtp and sieve ports - Allov ddclient to search sysctl_net_t - Transition back to original domain if you execute the shell- Remove duplicate declaration- Update to upstream - Cleanup for sandbox - Add attribute to be able to select sandbox types- Allow ddclient to fix file mode bits of ddclient conf file - init leaks file descriptors to daemons - Add labels for /etc/lirc/ and - Allow amavis_t to exec shell - Add label for gssd_tmp_t for /var/tmp/nfs_0- Put back in lircd_etc_t so policy will install- Turn on allow_postfix_local_write_mail_spool - Allow initrc_t to transition to shutdown_t - Allow logwatch and cron to mls_read_to_clearance for MLS boxes - Allow wm to send signull to all applications and receive them from users - lircd patch from field - Login programs have to read /etc/samba - New programs under /lib/systemd - Abrt needs to read config files- Update to upstream - Dontaudit leaked sockets from userdomains to user domains - Fixes for mcelog to handle scripts - Apply patch from Ruben Kerkhof - Allow syslog to search spool dirs- Allow nagios plugins to read usr files - Allow mysqld-safe to send system log messages - Fixes fpr ddclient policy - Fix sasl_admin interface - Allow apache to search zarafa config - Allow munin plugins to search /var/lib directory - Allow gpsd to read sysfs_t - Fix labels on /etc/mcelog/triggers to bin_t- Remove saslauthd_tmp_t and transition tmp files to krb5_host_rcache_t - Allow saslauthd_t to create krb5_host_rcache_t files in /tmp - Fix xserver interface - Fix definition of /var/run/lxdm- Turn on mediawiki policy - kdump leaks kdump_etc_t to ifconfig, add dontaudit - uux needs to transition to uucpd_t - More init fixes relabels man,faillog - Remove maxima defs in libraries.fc - insmod needs to be able to create tmpfs_t files - ping needs setcap- Allow groupd transition to fenced domain when executes fence_node - Fixes for rchs policy - Allow mpd to be able to read samba/nfs files- Fix up corecommands.fc to match upstream - Make sure /lib/systemd/* is labeled init_exec_t - mount wants to setattr on all mountpoints - dovecot auth wants to read dovecot etc files - nscd daemon looks at the exe file of the comunicating daemon - openvpn wants to read utmp file - postfix apps now set sys_nice and lower limits - remote_login (telnetd/login) wants to use telnetd_devpts_t and user_devpts_t to work correctly - Also resolves nsswitch - Fix labels on /etc/hosts.* - Cleanup to make upsteam patch work - allow abrt to read etc_runtime_t- Add conflicts for dirsrv package- Update to upstream - Add vlock policy- Fix sandbox to work on nfs homedirs - Allow cdrecord to setrlimit - Allow mozilla_plugin to read xauth - Change label on systemd-logger to syslogd_exec_t - Install dirsrv policy from dirsrv package- Add virt_home_t, allow init to setattr on xserver_tmp_t and relabel it - Udev needs to stream connect to init and kernel - Add xdm_exec_bootloader boolean, which allows xdm to execute /sbin/grub and read files in /boot directory- Allow NetworkManager to read openvpn_etc_t - Dontaudit hplip to write of /usr dirs - Allow system_mail_t to create /root/dead.letter as mail_home_t - Add vdagent policy for spice agent daemon- Dontaudit sandbox sending sigkill to all user domains - Add policy for rssh_chroot_helper - Add missing flask definitions - Allow udev to relabelto removable_t - Fix label on /var/log/wicd.log - Transition to initrc_t from init when executing bin_t - Add audit_access permissions to file - Make removable_t a device_node - Fix label on /lib/systemd/*- Fixes for systemd to manage /var/run - Dontaudit leaks by firstboot- Allow chome to create netlink_route_socket - Add additional MATHLAB file context - Define nsplugin as an application_domain - Dontaudit sending signals from sandboxed domains to other domains - systemd requires init to build /tmp /var/auth and /var/lock dirs - mount wants to read devicekit_power /proc/ entries - mpd wants to connect to soundd port - Openoffice causes a setattr on a lib_t file for normal users, add dontaudit - Treat lib_t and textrel_shlib_t directories the same - Allow mount read access on virtual images- Allow sandbox_x_domains to work with nfs/cifs/fusefs home dirs. - Allow devicekit_power to domtrans to mount - Allow dhcp to bind to udp ports > 1024 to do named stuff - Allow ssh_t to exec ssh_exec_t - Remove telepathy_butterfly_rw_tmp_files(), dev_read_printk() interfaces which are nolonger used - Fix clamav_append_log() intefaces - Fix 'psad_rw_fifo_file' interface- Allow cobblerd to list cobler appache content- Fixup for the latest version of upowed - Dontaudit sandbox sending SIGNULL to desktop apps- Update to upstream-Mount command from a confined user generates setattr on /etc/mtab file, need to dontaudit this access - dovecot-auth_t needs ipc_lock - gpm needs to use the user terminal - Allow system_mail_t to append ~/dead.letter - Allow NetworkManager to edit /etc/NetworkManager/NetworkManager.conf - Add pid file to vnstatd - Allow mount to communicate with gfs_controld - Dontaudit hal leaks in setfiles- Lots of fixes for systemd - systemd now executes readahead and tmpwatch type scripts - Needs to manage random seed- Allow smbd to use sys_admin - Remove duplicate file context for tcfmgr - Update to upstream- Fix fusefs handling - Do not allow sandbox to manage nsplugin_rw_t - Allow mozilla_plugin_t to connecto its parent - Allow init_t to connect to plymouthd running as kernel_t - Add mediawiki policy - dontaudit sandbox sending signals to itself. This can happen when they are running at different mcs. - Disable transition from dbus_session_domain to telepathy for F14 - Allow boinc_project to use shm - Allow certmonger to search through directories that contain certs - Allow fail2ban the DAC Override so it can read log files owned by non root users- Start adding support for use_fusefs_home_dirs - Add /var/lib/syslog directory file context - Add /etc/localtime as locale file context- Turn off default transition to mozilla_plugin and telepathy domains from unconfined user - Turn off iptables from unconfined user - Allow sudo to send signals to any domains the user could have transitioned to. - Passwd in single user mode needs to talk to console_device_t - Mozilla_plugin_t needs to connect to web ports, needs to write to video device, and read alsa_home_t alsa setsup pulseaudio - locate tried to read a symbolic link, will dontaudit - New labels for telepathy-sunshine content in homedir - Google is storing other binaries under /opt/google/talkplugin - bluetooth/kernel is creating unlabeled_t socket that I will allow it to use until kernel fixes bug - Add boolean for unconfined_t transition to mozilla_plugin_t and telepathy domains, turned off in F14 on in F15 - modemmanger and bluetooth send dbus messages to devicekit_power - Samba needs to getquota on filesystems labeld samba_share_t- Dontaudit attempts by xdm_t to write to bin_t for kdm - Allow initrc_t to manage system_conf_t- Fixes to allow mozilla_plugin_t to create nsplugin_home_t directory. - Allow mozilla_plugin_t to create tcp/udp/netlink_route sockets - Allow confined users to read xdm_etc_t files - Allow xdm_t to transition to xauth_t for lxdm program- Rearrange firewallgui policy to be more easily updated to upstream, dontaudit search of /home - Allow clamd to send signals to itself - Allow mozilla_plugin_t to read user home content. And unlink pulseaudio shm. - Allow haze to connect to yahoo chat and messenger port tcp:5050. Bz #637339 - Allow guest to run ps command on its processes by allowing it to read /proc - Allow firewallgui to sys_rawio which seems to be required to setup masqerading - Allow all domains to search through default_t directories, in order to find differnet labels. For example people serring up /foo/bar to be share via samba. - Add label for /var/log/slim.log- Pull in cleanups from dgrift - Allow mozilla_plugin_t to execute mozilla_home_t - Allow rpc.quota to do quotamod- Cleanup policy via dgrift - Allow dovecot_deliver to append to inherited log files - Lots of fixes for consolehelper- Fix up Xguest policy- Add vnstat policy - allow libvirt to send audit messages - Allow chrome-sandbox to search nfs_t- Update to upstream- Add the ability to send audit messages to confined admin policies - Remove permissive domain from cmirrord and dontaudit sys_tty_config - Split out unconfined_domain() calls from other unconfined_ calls so we can d - virt needs to be able to read processes to clearance for MLS- Allow all domains that can use cgroups to search tmpfs_t directory - Allow init to send audit messages- Update to upstream- Allow mdadm_t to create files and sock files in /dev/md/- Add policy for ajaxterm- Handle /var/db/sudo - Allow pulseaudio to read alsa config - Allow init to send initrc_t dbus messagesAllow iptables to read shorewall tmp files Change chfn and passwd to use auth_use_pam so they can send dbus messages to fpr intd label vlc as an execmem_exec_t Lots of fixes for mozilla_plugin to run google vidio chat Allow telepath_msn to execute ldconfig and its own tmp files Fix labels on hugepages Allow mdadm to read files on /dev Remove permissive domains and change back to unconfined Allow freshclam to execute shell and bin_t Allow devicekit_power to transition to dhcpc Add boolean to allow icecast to connect to any port- Merge upstream fix of mmap_zero - Allow mount to write files in debugfs_t - Allow corosync to communicate with clvmd via tmpfs - Allow certmaster to read usr_t files - Allow dbus system services to search cgroup_t - Define rlogind_t as a login pgm- Allow mdadm_t to read/write hugetlbfs- Dominic Grift Cleanup - Miroslav Grepl policy for jabberd - Various fixes for mount/livecd and prelink- Merge with upstream- More access needed for devicekit - Add dbadm policy- Merge with upstream- Allow seunshare to fowner- Allow cron to look at user_cron_spool links - Lots of fixes for mozilla_plugin_t - Add sysv file system - Turn unconfined domains to permissive to find additional avcs- Update policy for mozilla_plugin_t- Allow clamscan to read proc_t - Allow mount_t to write to debufs_t dir - Dontaudit mount_t trying to write to security_t dir- Allow clamscan_t execmem if clamd_use_jit set - Add policy for firefox plugin-container- Fix /root/.forward definition- label dead.letter as mail_home_t- Allow login programs to search /cgroups- Fix cert handling- Fix devicekit_power bug - Allow policykit_auth_t more access.- Fix nis calls to allow bind to ports 512-1024 - Fix smartmon- Allow pcscd to read sysfs - systemd fixes - Fix wine_mmap_zero_ignore boolean- Apply Miroslav munin patch - Turn back on allow_execmem and allow_execmod booleans- Merge in fixes from dgrift repository- Update boinc policy - Fix sysstat policy to allow sys_admin - Change failsafe_context to unconfined_r:unconfined_t:s0- New paths for upstart- New permissions for syslog - New labels for /lib/upstart- Add mojomojo policy- Allow systemd to setsockcon on sockets to immitate other services- Remove debugfs label- Update to latest policy- Fix eclipse labeling from IBMSupportAssasstant packageing- Make boot with systemd in enforcing mode- Update to upstream- Add boolean to turn off port forwarding in sshd.- Add support for ebtables - Fixes for rhcs and corosync policy-Update to upstream-Update to upstream-Update to upstream- Add Zarafa policy- Cleanup of aiccu policy - initial mock policy- Lots of random fixes- Update to upstream- Update to upstream - Allow prelink script to signal itself - Cobbler fixes- Add xdm_var_run_t to xserver_stream_connect_xdm - Add cmorrord and mpd policy from Miroslav Grepl- Fix sshd creation of krb cc files for users to be user_tmp_t- Fixes for accountsdialog - Fixes for boinc- Fix label on /var/lib/dokwiki - Change permissive domains to enforcing - Fix libvirt policy to allow it to run on mls- Update to upstream- Allow procmail to execute scripts in the users home dir that are labeled home_bin_t - Fix /var/run/abrtd.lock label- Allow login programs to read krb5_home_t Resolves: 594833 - Add obsoletes for cachefilesfd-selinux package Resolves: #575084- Allow mount to r/w abrt fifo file - Allow svirt_t to getattr on hugetlbfs - Allow abrt to create a directory under /var/spool- Add labels for /sys - Allow sshd to getattr on shutdown - Fixes for munin - Allow sssd to use the kernel key ring - Allow tor to send syslog messages - Allow iptabels to read usr files - allow policykit to read all domains state- Fix path for /var/spool/abrt - Allow nfs_t as an entrypoint for http_sys_script_t - Add policy for piranha - Lots of fixes for sosreport- Allow xm_t to read network state and get and set capabilities - Allow policykit to getattr all processes - Allow denyhosts to connect to tcp port 9911 - Allow pyranha to use raw ip sockets and ptrace itself - Allow unconfined_execmem_t and gconfsd mechanism to dbus - Allow staff to kill ping process - Add additional MLS rules- Allow gdm to edit ~/.gconf dir Resolves: #590677 - Allow dovecot to create directories in /var/lib/dovecot Partially resolves 590224 - Allow avahi to dbus chat with NetworkManager - Fix cobbler labels - Dontaudit iceauth_t leaks - fix /var/lib/lxdm file context - Allow aiccu to use tun tap devices - Dontaudit shutdown using xserver.log- Fixes for sandbox_x_net_t to match access for sandbox_web_t ++ - Add xdm_etc_t for /etc/gdm directory, allow accountsd to manage this directory - Add dontaudit interface for bluetooth dbus - Add chronyd_read_keys, append_keys for initrc_t - Add log support for ksmtuned Resolves: #586663- Allow boinc to send mail- Allow initrc_t to remove dhcpc_state_t - Fix label on sa-update.cron - Allow dhcpc to restart chrony initrc - Don't allow sandbox to send signals to its parent processes - Fix transition from unconfined_t -> unconfined_mount_t -> rpcd_t Resolves: #589136- Fix location of oddjob_mkhomedir Resolves: #587385 - fix labeling on /root/.shosts and ~/.shosts - Allow ipsec_mgmt_t to manage net_conf_t Resolves: #586760- Dontaudit sandbox trying to connect to netlink sockets Resolves: #587609 - Add policy for piranha- Fixups for xguest policy - Fixes for running sandbox firefox- Allow ksmtuned to use terminals Resolves: #586663 - Allow lircd to write to generic usb devices- Allow sandbox_xserver to connectto unconfined stream Resolves: #585171- Allow initrc_t to read slapd_db_t Resolves: #585476 - Allow ipsec_mgmt to use unallocated devpts and to create /etc/resolv.conf Resolves: #585963- Allow rlogind_t to search /root for .rhosts Resolves: #582760 - Fix path for cached_var_t - Fix prelink paths /var/lib/prelink - Allow confined users to direct_dri - Allow mls lvm/cryptosetup to work- Allow virtd_t to manage firewall/iptables config Resolves: #573585- Fix label on /root/.rhosts Resolves: #582760 - Add labels for Picasa - Allow openvpn to read home certs - Allow plymouthd_t to use tty_device_t - Run ncftool as iptables_t - Allow mount to unmount unlabeled_t - Dontaudit hal leaks- Allow livecd to transition to mount- Update to upstream - Allow abrt to delete sosreport Resolves: #579998 - Allow snmp to setuid and gid Resolves: #582155 - Allow smartd to use generic scsi devices Resolves: #582145- Allow ipsec_t to create /etc/resolv.conf with the correct label - Fix reserved port destination - Allow autofs to transition to showmount - Stop crashing tuned- Add telepathysofiasip policy- Update to upstream - Fix label for /opt/google/chrome/chrome-sandbox - Allow modemmanager to dbus with policykit- Fix allow_httpd_mod_auth_pam to use auth_use_pam(httpd_t) - Allow accountsd to read shadow file - Allow apache to send audit messages when using pam - Allow asterisk to bind and connect to sip tcp ports - Fixes for dovecot 2.0 - Allow initrc_t to setattr on milter directories - Add procmail_home_t for .procmailrc file- Fixes for labels during install from livecd- Fix /cgroup file context - Fix broken afs use of unlabled_t - Allow getty to use the console for s390- Fix cgroup handling adding policy for /cgroup - Allow confined users to write to generic usb devices, if user_rw_noexattrfile boolean set- Merge patches from dgrift- Update upstream - Allow abrt to write to the /proc under any process- Fix ~/.fontconfig label - Add /root/.cert label - Allow reading of the fixed_file_disk_t:lnk_file if you can read file - Allow qemu_exec_t as an entrypoint to svirt_t- Update to upstream - Allow tmpreaper to delete sandbox sock files - Allow chrome-sandbox_t to use /dev/zero, and dontaudit getattr file systems - Fixes for gitosis - No transition on livecd to passwd or chfn - Fixes for denyhosts- Add label for /var/lib/upower - Allow logrotate to run sssd - dontaudit readahead on tmpfs blk files - Allow tmpreaper to setattr on sandbox files - Allow confined users to execute dos files - Allow sysadm_t to kill processes running within its clearance - Add accountsd policy - Fixes for corosync policy - Fixes from crontab policy - Allow svirt to manage svirt_image_t chr files - Fixes for qdisk policy - Fixes for sssd policy - Fixes for newrole policy- make libvirt work on an MLS platform- Add qpidd policy- Update to upstream- Allow boinc to read kernel sysctl - Fix snmp port definitions - Allow apache to read anon_inodefs- Allow shutdown dac_override- Add device_t as a file system - Fix sysfs association- Dontaudit ipsec_mgmt sys_ptrace - Allow at to mail its spool files - Allow nsplugin to search in .pulse directory- Update to upstream- Allow users to dbus chat with xdm - Allow users to r/w wireless_device_t - Dontaudit reading of process states by ipsec_mgmt- Fix openoffice from unconfined_t- Add shutdown policy so consolekit can shutdown system- Update to upstream- Update to upstream- Update to upstream - These are merges of my patches - Remove 389 labeling conflicts - Add MLS fixes found in RHEL6 testing - Allow pulseaudio to run as a service - Add label for mssql and allow apache to connect to this database port if boolean set - Dontaudit searches of debugfs mount point - Allow policykit_auth to send signals to itself - Allow modcluster to call getpwnam - Allow swat to signal winbind - Allow usbmux to run as a system role - Allow svirt to create and use devpts- Add MLS fixes found in RHEL6 testing - Allow domains to append to rpm_tmp_t - Add cachefilesfd policy - Dontaudit leaks when transitioning- Change allow_execstack and allow_execmem booleans to on - dontaudit acct using console - Add label for fping - Allow tmpreaper to delete sandbox_file_t - Fix wine dontaudit mmap_zero - Allow abrt to read var_t symlinks- Additional policy for rgmanager- Allow sshd to setattr on pseudo terms- Update to upstream- Allow policykit to send itself signals- Fix duplicate cobbler definition- Fix file context of /var/lib/avahi-autoipd- Merge with upstream- Allow sandbox to work with MLS- Make Chrome work with staff user- Add icecast policy - Cleanup spec file- Add mcelog policy- Lots of fixes found in F12- Fix rpm_dontaudit_leaks- Add getsched to hald_t - Add file context for Fedora/Redhat Directory Server- Allow abrt_helper to getattr on all filesystems - Add label for /opt/real/RealPlayer/plugins/oggfformat\.so- Add gstreamer_home_t for ~/.gstreamer- Update to upstream- Fix git- Turn on puppet policy - Update to dgrift git policy- Move users file to selection by spec file. - Allow vncserver to run as unconfined_u:unconfined_r:unconfined_t- Update to upstream- Remove most of the permissive domains from F12.- Add cobbler policy from dgrift- add usbmon device - Add allow rulse for devicekit_disk- Lots of fixes found in F12, fixes from Tom London- Cleanups from dgrift- Add back xserver_manage_home_fonts- Dontaudit sandbox trying to read nscd and sssd- Update to upstream- Rename udisks-daemon back to devicekit_disk_t policy- Fixes for abrt calls- Add tgtd policy- Update to upstream release- Add asterisk policy back in - Update to upstream release 2.20091117- Update to upstream release 2.20091117- Fixup nut policy- Update to upstream- Allow vpnc request the kernel to load modules- Fix minimum policy installs - Allow udev and rpcbind to request the kernel to load modules- Add plymouth policy - Allow local_login to sys_admin- Allow cupsd_config to read user tmp - Allow snmpd_t to signal itself - Allow sysstat_t to makedir in sysstat_log_t- Update rhcs policy- Allow users to exec restorecond- Allow sendmail to request kernel modules load- Fix all kernel_request_load_module domains- Fix all kernel_request_load_module domains- Remove allow_exec* booleans for confined users. Only available for unconfined_t- More fixes for sandbox_web_t- Allow sshd to create .ssh directory and content- Fix request_module line to module_request- Fix sandbox policy to allow it to run under firefox. - Dont audit leaks.- Fixes for sandbox- Update to upstream - Dontaudit nsplugin search /root - Dontaudit nsplugin sys_nice- Fix label on /usr/bin/notepad, /usr/sbin/vboxadd-service - Remove policycoreutils-python requirement except for minimum- Fix devicekit_disk_t to getattr on all domains sockets and fifo_files - Conflicts seedit (You can not use selinux-policy-targeted and seedit at the same time.)- Add wordpress/wp-content/uploads label - Fixes for sandbox when run from staff_t- Update to upstream - Fixes for devicekit_disk- More fixes- Lots of fixes for initrc and other unconfined domains- Allow xserver to use netlink_kobject_uevent_socket- Fixes for sandbox- Dontaudit setroubleshootfix looking at /root directory- Update to upsteam- Allow gssd to send signals to users - Fix duplicate label for apache content- Update to upstream- Remove polkit_auth on upgrades- Add back in unconfined.pp and unconfineduser.pp - Add Sandbox unshare- Fixes for cdrecord, mdadm, and others- Add capability setting to dhcpc and gpm- Allow cronjobs to read exim_spool_t- Add ABRT policy- Fix system-config-services policy- Allow libvirt to change user componant of virt_domain- Allow cupsd_config_t to be started by dbus - Add smoltclient policy- Add policycoreutils-python to pre install- Make all unconfined_domains permissive so we can see what AVC's happen- Add pt_chown policy- Add kdump policy for Miroslav Grepl - Turn off execstack boolean- Turn on execstack on a temporary basis (#512845)- Allow nsplugin to connecto the session bus - Allow samba_net to write to coolkey data- Allow devicekit_disk to list inotify- Allow svirt images to create sock_file in svirt_var_run_t- Allow exim to getattr on mountpoints - Fixes for pulseaudio- Allow svirt_t to stream_connect to virtd_t- Allod hald_dccm_t to create sock_files in /tmp- More fixes from upstream- Fix polkit label - Remove hidebrokensymptoms for nss_ldap fix - Add modemmanager policy - Lots of merges from upstream - Begin removing textrel_shlib_t labels, from fixed libraries- Update to upstream- Allow certmaster to override dac permissions- Update to upstream- Fix context for VirtualBox- Update to upstream- Allow clamscan read amavis spool files- Fixes for xguest- fix multiple directory ownership of mandirs- Update to upstream- Add rules for rtkit-daemon- Update to upstream - Fix nlscd_stream_connect- Add rtkit policy- Allow rpcd_t to stream connect to rpcbind- Allow kpropd to create tmp files- Fix last duplicate /var/log/rpmpkgs- Update to upstream * add sssd- Update to upstream * cleanup- Update to upstream - Additional mail ports - Add virt_use_usb boolean for svirt- Fix mcs rules to include chr_file and blk_file- Add label for udev-acl- Additional rules for consolekit/udev, privoxy and various other fixes- New version for upstream- Allow NetworkManager to read inotifyfs- Allow setroubleshoot to run mlocate- Update to upstream- Add fish as a shell - Allow fprintd to list usbfs_t - Allow consolekit to search mountpoints - Add proper labeling for shorewall- New log file for vmware - Allow xdm to setattr on user_tmp_t- Upgrade to upstream- Allow fprintd to access sys_ptrace - Add sandbox policy- Add varnishd policy- Fixes for kpropd- Allow brctl to r/w tun_tap_device_t- Add /usr/share/selinux/packages- Allow rpcd_t to send signals to kernel threads- Fix upgrade for F10 to F11- Add policy for /var/lib/fprint-Remove duplicate line- Allow svirt to manage pci and other sysfs device data- Fix package selection handling- Fix /sbin/ip6tables-save context - Allod udev to transition to mount - Fix loading of mls policy file- Add shorewall policy- Additional rules for fprintd and sssd- Allow nsplugin to unix_read unix_write sem for unconfined_java- Fix uml files to be owned by users- Fix Upgrade path to install unconfineduser.pp when unocnfined package is 3.0.0 or less- Allow confined users to manage virt_content_t, since this is home dir content - Allow all domains to read rpm_script_tmp_t which is what shell creates on redirection- Fix labeling on /var/lib/misc/prelink* - Allow xserver to rw_shm_perms with all x_clients - Allow prelink to execute files in the users home directory- Allow initrc_t to delete dev_null - Allow readahead to configure auditing - Fix milter policy - Add /var/lib/readahead- Update to latest milter code from Paul Howarth- Additional perms for readahead- Allow pulseaudio to acquire_svc on session bus - Fix readahead labeling- Allow sysadm_t to run rpm directly - libvirt needs fowner- Allow sshd to read var_lib symlinks for freenx- Allow nsplugin unix_read and write on users shm and sem - Allow sysadm_t to execute su- Dontaudit attempts to getattr user_tmpfs_t by lvm - Allow nfs to share removable media- Add ability to run postdrop from confined users- Fixes for podsleuth- Turn off nsplugin transition - Remove Konsole leaked file descriptors for release- Allow cupsd_t to create link files in print_spool_t - Fix iscsi_stream_connect typo - Fix labeling on /etc/acpi/actions - Don't reinstall unconfine and unconfineuser on upgrade if they are not installed- Allow audioentroy to read etc files- Add fail2ban_var_lib_t - Fixes for devicekit_power_t- Separate out the ucnonfined user from the unconfined.pp package- Make sure unconfined_java_t and unconfined_mono_t create user_tmpfs_t.- Upgrade to latest upstream - Allow devicekit_disk sys_rawio- Dontaudit binds to ports < 1024 for named - Upgrade to latest upstream- Allow podsleuth to use tmpfs files- Add customizable_types for svirt- Allow setroubelshoot exec* privs to prevent crash from bad libraries - add cpufreqselector- Dontaudit listing of /root directory for cron system jobs- Fix missing ld.so.cache label- Add label for ~/.forward and /root/.forward- Fixes for svirt- Fixes to allow svirt read iso files in homedir- Add xenner and wine fixes from mgrepl- Allow mdadm to read/write mls override- Change to svirt to only access svirt_image_t- Fix libvirt policy- Upgrade to latest upstream- Fixes for iscsid and sssd - More cleanups for upgrade from F10 to Rawhide.- Add pulseaudio, sssd policy - Allow networkmanager to exec udevadm- Add pulseaudio context- Upgrade to latest patches- Fixes for libvirt- Update to Latest upstream- Fix setrans.conf to show SystemLow for s0- Further confinement of qemu images via svirt- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild- Allow NetworkManager to manage /etc/NetworkManager/system-connections- add virtual_image_context and virtual_domain_context files- Allow rpcd_t to send signal to mount_t - Allow libvirtd to run ranged- Fix sysnet/net_conf_t- Fix squidGuard labeling- Re-add corenet_in_generic_if(unlabeled_t)* Tue Feb 10 2009 Dan Walsh 3.6.5-2 - Add git web policy- Add setrans contains from upstream- Do transitions outside of the booleans- Allow xdm to create user_tmp_t sockets for switch user to work- Fix staff_t domain- Grab remainder of network_peer_controls patch- More fixes for devicekit- Upgrade to latest upstream- Add boolean to disallow unconfined_t login- Add back transition from xguest to mozilla- Add virt_content_ro_t and labeling for isos directory- Fixes for wicd daemon- More mls/rpm fixes- Add policy to make dbus/nm-applet work- Remove polgen-ifgen from post and add trigger to policycoreutils-python- Add wm policy - Make mls work in graphics mode- Fixed for DeviceKit- Add devicekit policy- Update to upstream- Define openoffice as an x_domain- Fixes for reading xserver_tmp_t- Allow cups_pdf_t write to nfs_t- Remove audio_entropy policy- Update to upstream- Allow hal_acl_t to getattr/setattr fixed_disk- Change userdom_read_all_users_state to include reading symbolic links in /proc- Fix dbus reading /proc information- Add missing alias for home directory content- Fixes for IBM java location- Allow unconfined_r unconfined_java_t- Add cron_role back to user domains- Fix sudo setting of user keys- Allow iptables to talk to terminals - Fixes for policy kit - lots of fixes for booting.- Cleanup policy- Rebuild for Python 2.6- Fix labeling on /var/spool/rsyslog- Allow postgresl to bind to udp nodes- Allow lvm to dbus chat with hal - Allow rlogind to read nfs_t- Fix cyphesis file context- Allow hal/pm-utils to look at /var/run/video.rom - Add ulogd policy- Additional fixes for cyphesis - Fix certmaster file context - Add policy for system-config-samba - Allow hal to read /var/run/video.rom- Allow dhcpc to restart ypbind - Fixup labeling in /var/run- Add certmaster policy- Fix confined users - Allow xguest to read/write xguest_dbusd_t- Allow openoffice execstack/execmem privs- Allow mozilla to run with unconfined_execmem_t- Dontaudit domains trying to write to .xsession-errors- Allow nsplugin to look at autofs_t directory- Allow kerneloops to create tmp files- More alias for fastcgi- Remove mod_fcgid-selinux package- Fix dovecot access- Policy cleanup- Remove Multiple spec - Add include - Fix makefile to not call per_role_expansion- Fix labeling of libGL- Update to upstream- Update to upstream policy- Fixes for confined xwindows and xdm_t- Allow confined users and xdm to exec wm - Allow nsplugin to talk to fifo files on nfs- Allow NetworkManager to transition to avahi and iptables - Allow domains to search other domains keys, coverup kernel bug- Fix labeling for oracle- Allow nsplugin to comminicate with xdm_tmp_t sock_file- Change all user tmpfs_t files to be labeled user_tmpfs_t - Allow radiusd to create sock_files- Upgrade to upstream- Allow confined users to login with dbus- Fix transition to nsplugin- Add file context for /dev/mspblk.*- Fix transition to nsplugin '- Fix labeling on new pm*log - Allow ssh to bind to all nodes- Merge upstream changes - Add Xavier Toth patches- Add qemu_cache_t for /var/cache/libvirt- Remove gamin policy- Add tinyxs-max file system support- Update to upstream - New handling of init scripts- Allow pcsd to dbus - Add memcache policy- Allow audit dispatcher to kill his children- Update to upstream - Fix crontab use by unconfined user- Allow ifconfig_t to read dhcpc_state_t- Update to upstream- Update to upstream- Allow system-config-selinux to work with policykit- Fix novel labeling- Consolodate pyzor,spamassassin, razor into one security domain - Fix xdm requiring additional perms.- Fixes for logrotate, alsa- Eliminate vbetool duplicate entry- Fix xguest -> xguest_mozilla_t -> xguest_openiffice_t - Change dhclient to be able to red networkmanager_var_run- Update to latest refpolicy - Fix libsemanage initial install bug- Add inotify support to nscd- Allow unconfined_t to setfcap- Allow amanda to read tape - Allow prewikka cgi to use syslog, allow audisp_t to signal cgi - Add support for netware file systems- Allow ypbind apps to net_bind_service- Allow all system domains and application domains to append to any log file- Allow gdm to read rpm database - Allow nsplugin to read mplayer config files- Allow vpnc to run ifconfig- Allow confined users to use postgres - Allow system_mail_t to exec other mail clients - Label mogrel_rails as an apache server- Apply unconfined_execmem_exec_t to haskell programs- Fix prelude file context- allow hplip to talk dbus - Fix context on ~/.local dir- Prevent applications from reading x_device- Add /var/lib/selinux context- Update to upstream- Add livecd policy- Dontaudit search of admin_home for init_system_domain - Rewrite of xace interfaces - Lots of new fs_list_inotify - Allow livecd to transition to setfiles_mac- Begin XAce integration- Merge Upstream- Allow amanada to create data files- Fix initial install, semanage setup- Allow system_r for httpd_unconfined_script_t- Remove dmesg boolean - Allow user domains to read/write game data- Change unconfined_t to transition to unconfined_mono_t when running mono - Change XXX_mono_t to transition to XXX_t when executing bin_t files, so gnome-do will work- Remove old booleans from targeted-booleans.conf file- Add boolean to mmap_zero - allow tor setgid - Allow gnomeclock to set clock- Don't run crontab from unconfined_t- Change etc files to config files to allow users to read them- Lots of fixes for confined domains on NFS_t homedir- dontaudit mrtg reading /proc - Allow iscsi to signal itself - Allow gnomeclock sys_ptrace- Allow dhcpd to read kernel network state- Label /var/run/gdm correctly - Fix unconfined_u user creation- Allow transition from initrc_t to getty_t- Allow passwd to communicate with user sockets to change gnome-keyring- Fix initial install- Allow radvd to use fifo_file - dontaudit setfiles reading links - allow semanage sys_resource - add allow_httpd_mod_auth_ntlm_winbind boolean - Allow privhome apps including dovecot read on nfs and cifs home dirs if the boolean is set- Allow nsplugin to read /etc/mozpluggerrc, user_fonts - Allow syslog to manage innd logs. - Allow procmail to ioctl spamd_exec_t- Allow initrc_t to dbus chat with consolekit.- Additional access for nsplugin - Allow xdm setcap/getcap until pulseaudio is fixed- Allow mount to mkdir on tmpfs - Allow ifconfig to search debugfs- Fix file context for MATLAB - Fixes for xace- Allow stunnel to transition to inetd children domains - Make unconfined_dbusd_t an unconfined domain- Fixes for qemu/virtd- Fix bug in mozilla policy to allow xguest transition - This will fix the libsemanage.dbase_llist_query: could not find record value libsemanage.dbase_llist_query: could not query record value (No such file or directory) bug in xguest- Allow nsplugin to run acroread- Add cups_pdf policy - Add openoffice policy to run in xguest- prewika needs to contact mysql - Allow syslog to read system_map files- Change init_t to an unconfined_domain- Allow init to transition to initrc_t on shell exec. - Fix init to be able to sendto init_t. - Allow syslog to connect to mysql - Allow lvm to manage its own fifo_files - Allow bugzilla to use ldap - More mls fixes- fixes for init policy (#436988) - fix build- Additional changes for MLS policy- Fix initrc_context generation for MLS- Fixes for libvirt- Allow bitlebee to read locale_t- More xselinux rules- Change httpd_$1_script_r*_t to httpd_$1_content_r*_t- Prepare policy for beta release - Change some of the system domains back to unconfined - Turn on some of the booleans- Allow nsplugin_config execstack/execmem - Allow nsplugin_t to read alsa config - Change apache to use user content- Add cyphesis policy- Fix Makefile.devel to build mls modules - Fix qemu to be more specific on labeling- Update to upstream fixes- Allow staff to mounton user_home_t- Add xace support- Add fusectl file system- Fixes from yum-cron - Update to latest upstream- Fix userdom_list_user_files- Merge with upstream- Allow udev to send audit messages- Add additional login users interfaces - userdom_admin_login_user_template(staff)- More fixes for polkit- Eliminate transition from unconfined_t to qemu by default - Fixes for gpg- Update to upstream- Fixes for staff_t- Add policy for kerneloops - Add policy for gnomeclock- Fixes for libvirt- Fixes for nsplugin- More fixes for qemu- Additional ports for vnc and allow qemu and libvirt to search all directories- Update to upstream - Add libvirt policy - add qemu policy- Allow fail2ban to create a socket in /var/run- Allow allow_httpd_mod_auth_pam to work- Add audisp policy and prelude- Allow all user roles to executae samba net command- Allow usertypes to read/write noxattr file systems- Fix nsplugin to allow flashplugin to work in enforcing mode- Allow pam_selinux_permit to kill all processes- Allow ptrace or user processes by users of same type - Add boolean for transition to nsplugin- Allow nsplugin sys_nice, getsched, setsched- Allow login programs to talk dbus to oddjob- Add procmail_log support - Lots of fixes for munin- Allow setroubleshoot to read policy config and send audit messages- Allow users to execute all files in homedir, if boolean set - Allow mount to read samba config- Fixes for xguest to run java plugin- dontaudit pam_t and dbusd writing to user_home_t- Update gpg to allow reading of inotify- Change user and staff roles to work correctly with varied perms- Fix munin log, - Eliminate duplicate mozilla file context - fix wpa_supplicant spec- Fix role transition from unconfined_r to system_r when running rpm - Allow unconfined_domains to communicate with user dbus instances- Fixes for xguest- Let all uncofined domains communicate with dbus unconfined- Run rpm in system_r- Zero out customizable types- Fix definiton of admin_home_t- Fix munin file context- Allow cron to run unconfined apps- Modify default login to unconfined_u- Dontaudit dbus user client search of /root- Update to upstream- Fixes for polkit - Allow xserver to ptrace- Add polkit policy - Symplify userdom context, remove automatic per_role changes- Update to upstream - Allow httpd_sys_script_t to search users homedirs- Allow rpm_script to transition to unconfined_execmem_t- Remove user based home directory separation- Remove user specific crond_t- Merge with upstream - Allow xsever to read hwdata_t - Allow login programs to setkeycreate- Update to upstream- Update to upstream- Allow XServer to read /proc/self/cmdline - Fix unconfined cron jobs - Allow fetchmail to transition to procmail - Fixes for hald_mac - Allow system_mail to transition to exim - Allow tftpd to upload files - Allow xdm to manage unconfined_tmp - Allow udef to read alsa config - Fix xguest to be able to connect to sound port- Fixes for hald_mac - Treat unconfined_home_dir_t as a home dir - dontaudit rhgb writes to fonts and root- Fix dnsmasq - Allow rshd full login privs- Allow rshd to connect to ports > 1023- Fix vpn to bind to port 4500 - Allow ssh to create shm - Add Kismet policy- Allow rpm to chat with networkmanager- Fixes for ipsec and exim mail - Change default to unconfined user- Pass the UNK_PERMS param to makefile - Fix gdm location- Make alsa work- Fixes for consolekit and startx sessions- Dontaudit consoletype talking to unconfined_t- Remove homedir_template- Check asound.state- Fix exim policy- Allow tmpreadper to read man_t - Allow racoon to bind to all nodes - Fixes for finger print reader- Allow xdm to talk to input device (fingerprint reader) - Allow octave to run as java- Allow login programs to set ioctl on /proc- Allow nsswitch apps to read samba_var_t- Fix maxima- Eliminate rpm_t:fifo_file avcs - Fix dbus path for helper app- Fix service start stop terminal avc's- Allow also to search var_lib - New context for dbus launcher- Allow cupsd_config_t to read/write usb_device_t - Support for finger print reader, - Many fixes for clvmd - dbus starting networkmanager- Fix java and mono to run in xguest account- Fix to add xguest account when inititial install - Allow mono, java, wine to run in userdomains- Allow xserver to search devpts_t - Dontaudit ldconfig output to homedir- Remove hplip_etc_t change back to etc_t.- Allow cron to search nfs and samba homedirs- Allow NetworkManager to dbus chat with yum-updated- Allow xfs to bind to port 7100- Allow newalias/sendmail dac_override - Allow bind to bind to all udp ports- Turn off direct transition- Allow wine to run in system role- Fix java labeling- Define user_home_type as home_type- Allow sendmail to create etc_aliases_t- Allow login programs to read symlinks on homedirs- Update an readd modules- Cleanup spec file- Allow xserver to be started by unconfined process and talk to tty- Upgrade to upstream to grab postgressql changes- Add setransd for mls policy- Add ldconfig_cache_t- Allow sshd to write to proc_t for afs login- Allow xserver access to urand- allow dovecot to search mountpoints- Fix Makefile for building policy modules- Fix dhcpc startup of service- Fix dbus chat to not happen for xguest and guest users- Fix nagios cgi - allow squid to communicate with winbind- Fixes for ldconfig- Update from upstream- Add nasd support- Fix new usb devices and dmfm- Eliminate mount_ntfs_t policy, merge into mount_t- Allow xserver to write to ramfs mounted by rhgb- Add context for dbus machine id- Update with latest changes from upstream- Fix prelink to handle execmod- Add ntpd_key_t to handle secret data- Add anon_inodefs - Allow unpriv user exec pam_exec_t - Fix trigger- Allow cups to use generic usb - fix inetd to be able to run random apps (git)- Add proper contexts for rsyslogd- Fixes for xguest policy- Allow execution of gconf- Fix moilscanner update problem- Begin adding policy to separate setsebool from semanage - Fix xserver.if definition to not break sepolgen.if- Add new devices- Add brctl policy- Fix root login to include system_r- Allow prelink to read kernel sysctls- Default to user_u:system_r:unconfined_t- fix squid - Fix rpm running as uid- Fix syslog declaration- Allow avahi to access inotify - Remove a lot of bogus security_t:filesystem avcs- Remove ifdef strict policy from upstream- Remove ifdef strict to allow user_u to login- Fix for amands - Allow semanage to read pp files - Allow rhgb to read xdm_xserver_tmp- Allow kerberos servers to use ldap for backing store- allow alsactl to read kernel state- More fixes for alsactl - Transition from hal and modutils - Fixes for suspend resume. - insmod domtrans to alsactl - insmod writes to hal log- Allow unconfined_t to transition to NetworkManager_t - Fix netlabel policy- Update to latest from upstream- Update to latest from upstream- Update to latest from upstream- Allow pcscd_t to send itself signals- Fixes for unix_update - Fix logwatch to be able to search all dirs- Upstream bumped the version- Allow consolekit to syslog - Allow ntfs to work with hal- Allow iptables to read etc_runtime_t- MLS Fixes- Fix path of /etc/lvm/cache directory - Fixes for alsactl and pppd_t - Fixes for consolekit- Allow insmod_t to mount kvmfs_t filesystems- Rwho policy - Fixes for consolekit- fixes for fusefs- Fix samba_net to allow it to view samba_var_t- Update to upstream- Fix Sonypic backlight - Allow snmp to look at squid_conf_t- Fixes for pyzor, cyrus, consoletype on everything installs- Fix hald_acl_t to be able to getattr/setattr on usb devices - Dontaudit write to unconfined_pipes for load_policy- Allow bluetooth to read inotifyfs- Fixes for samba domain controller. - Allow ConsoleKit to look at ttys- Fix interface call- Allow syslog-ng to read /var - Allow locate to getattr on all filesystems - nscd needs setcap- Update to upstream- Allow samba to run groupadd- Update to upstream- Allow mdadm to access generic scsi devices- Fix labeling on udev.tbl dirs- Fixes for logwatch- Add fusermount and mount_ntfs policy- Update to upstream - Allow saslauthd to use kerberos keytabs- Fixes for samba_var_t- Allow networkmanager to setpgid - Fixes for hal_acl_t- Remove disable_trans booleans - hald_acl_t needs to talk to nscd- Fix prelink to be able to manage usr dirs.- Allow insmod to launch init scripts- Remove setsebool policy- Fix handling of unlabled_t packets- More of my patches from upstream- Update to latest from upstream - Add fail2ban policy- Update to remove security_t:filesystem getattr problems- Policy for consolekit- Update to latest from upstream- Revert Nemiver change - Set sudo as a corecmd so prelink will work, remove sudoedit mapping, since this will not work, it does not transition. - Allow samba to execute useradd- Upgrade to the latest from upstream- Add sepolgen support - Add bugzilla policy- Fix file context for nemiver- Remove include sym link- Allow mozilla, evolution and thunderbird to read dev_random. Resolves: #227002 - Allow spamd to connect to smtp port Resolves: #227184 - Fixes to make ypxfr work Resolves: #227237- Fix ssh_agent to be marked as an executable - Allow Hal to rw sound device- Fix spamassisin so crond can update spam files - Fixes to allow kpasswd to work - Fixes for bluetooth- Remove some targeted diffs in file context file- Fix squid cachemgr labeling- Add ability to generate webadm_t policy - Lots of new interfaces for httpd - Allow sshd to login as unconfined_t- Continue fixing, additional user domains- Begin adding user confinement to targeted policy- Fixes for prelink, ktalkd, netlabel- Allow prelink when run from rpm to create tmp files Resolves: #221865 - Remove file_context for exportfs Resolves: #221181 - Allow spamassassin to create ~/.spamassissin Resolves: #203290 - Allow ssh access to the krb tickets - Allow sshd to change passwd - Stop newrole -l from working on non securetty Resolves: #200110 - Fixes to run prelink in MLS machine Resolves: #221233 - Allow spamassassin to read var_lib_t dir Resolves: #219234- fix mplayer to work under strict policy - Allow iptables to use nscd Resolves: #220794- Add gconf policy and make it work with strict- Many fixes for strict policy and by extension mls.- Fix to allow ftp to bind to ports > 1024 Resolves: #219349- Allow semanage to exec it self. Label genhomedircon as semanage_exec_t Resolves: #219421 - Allow sysadm_lpr_t to manage other print spool jobs Resolves: #220080- allow automount to setgid Resolves: #219999- Allow cron to polyinstatiate - Fix creation of boot flags Resolves: #207433- Fixes for irqbalance Resolves: #219606- Fix vixie-cron to work on mls Resolves: #207433Resolves: #218978- Allow initrc to create files in /var directories Resolves: #219227- More fixes for MLS Resolves: #181566- More Fixes polyinstatiation Resolves: #216184- More Fixes polyinstatiation - Fix handling of keyrings Resolves: #216184- Fix polyinstatiation - Fix pcscd handling of terminal Resolves: #218149 Resolves: #218350- More fixes for quota Resolves: #212957- ncsd needs to use avahi sockets Resolves: #217640 Resolves: #218014- Allow login programs to polyinstatiate homedirs Resolves: #216184 - Allow quotacheck to create database files Resolves: #212957- Dontaudit appending hal_var_lib files Resolves: #217452 Resolves: #217571 Resolves: #217611 Resolves: #217640 Resolves: #217725- Fix context for helix players file_context #216942- Fix load_policy to be able to mls_write_down so it can talk to the terminal- Fixes for hwclock, clamav, ftp- Move to upstream version which accepted my patches- Fixes for nvidia driver- Allow semanage to signal mcstrans- Update to upstream- Allow modstorage to edit /etc/fstab file- Fix for qemu, /dev/- Fix path to realplayer.bin- Allow xen to connect to xen port- Allow cups to search samba_etc_t directory - Allow xend_t to list auto_mountpoints- Allow xen to search automount- Fix spec of jre files- Fix unconfined access to shadow file- Allow xend to create files in xen_image_t directories- Fixes for /var/lib/hal- Remove ability for sysadm_t to look at audit.log- Fix rpc_port_types - Add aide policy for mls- Merge with upstream- Lots of fixes for ricci- Allow xen to read/write fixed devices with a boolean - Allow apache to search /var/log- Fix policygentool specfile problem. - Allow apache to send signals to it's logging helpers. - Resolves: rhbz#212731- Add perms for swat- Add perms for swat- Allow daemons to dump core files to /- Fixes for ricci- Allow mount.nfs to work- Allow ricci-modstorage to look at lvm_etc_t- Fixes for ricci using saslauthd- Allow mountpoint on home_dir_t and home_t- Update xen to read nfs files- Allow noxattrfs to associate with other noxattrfs- Allow hal to use power_device_t- Allow procemail to look at autofs_t - Allow xen_image_t to work as a fixed device- Refupdate from upstream- Add lots of fixes for mls cups- Lots of fixes for ricci- Fix number of cats- Update to upstream- More iSCSI changes for #209854- Test ISCSI fixes for #209854- allow semodule to rmdir selinux_config_t dir- Fix boot_runtime_t problem on ppc. Should not be creating these files.- Fix context mounts on reboot - Fix ccs creation of directory in /var/log- Update for tallylog- Allow xend to rewrite dhcp conf files - Allow mgetty sys_admin capability- Make xentapctrl work- Don't transition unconfined_t to bootloader_t - Fix label in /dev/xen/blktap- Patch for labeled networking- Fix crond handling for mls- Update to upstream- Remove bluetooth-helper transition - Add selinux_validate for semanage - Require new version of libsemanage- Fix prelink- Fix rhgb- Fix setrans handling on MLS and useradd- Support for fuse - fix vigr- Fix dovecot, amanda - Fix mls- Allow java execheap for itanium- Update with upstream- mls fixes- Update from upstream- More fixes for mls - Revert change on automount transition to mount- Fix cron jobs to run under the correct context- Fixes to make pppd work- Multiple policy fixes - Change max categories to 1023- Fix transition on mcstransd- Add /dev/em8300 defs- Upgrade to upstream- Fix ppp connections from network manager- Add tty access to all domains boolean - Fix gnome-pty-helper context for ia64- Fixed typealias of firstboot_rw_t- Fix location of xel log files - Fix handling of sysadm_r -> rpm_exec_t- Fixes for autofs, lp- Update from upstream- Fixup for test6- Update to upstream- Update to upstream- Fix suspend to disk problems- Lots of fixes for restarting daemons at the console.- Fix audit line - Fix requires line- Upgrade to upstream- Fix install problems- Allow setroubleshoot to getattr on all dirs to gather RPM data- Set /usr/lib/ia32el/ia32x_loader to unconfined_execmem_exec_t for ia32 platform - Fix spec for /dev/adsp- Fix xen tty devices- Fixes for setroubleshoot- Update to upstream- Fixes for stunnel and postgresql - Update from upstream- Update from upstream - More java fixes- Change allow_execstack to default to on, for RHEL5 Beta. This is required because of a Java compiler problem. Hope to turn off for next beta- Misc fixes- More fixes for strict policy- Quiet down anaconda audit messages- Fix setroubleshootd- Update to the latest from upstream- More fixes for xen- Fix anaconda transitions- yet more xen rules- more xen rules- Fixes for Samba- Fixes for xen- Allow setroubleshootd to send mail- Add nagios policy- fixes for setroubleshoot- Added Paul Howarth patch to only load policy packages shipped with this package - Allow pidof from initrc to ptrace higher level domains - Allow firstboot to communicate with hal via dbus- Add policy for /var/run/ldapi- Fix setroubleshoot policy- Fixes for mls use of ssh - named has a new conf file- Fixes to make setroubleshoot work- Cups needs to be able to read domain state off of printer client- add boolean to allow zebra to write config files- setroubleshootd fixes- Allow prelink to read bin_t symlink - allow xfs to read random devices - Change gfs to support xattr- Remove spamassassin_can_network boolean- Update to upstream - Fix lpr domain for mls- Add setroubleshoot policy- Turn off auditallow on setting booleans- Multiple fixes- Update to upstream- Update to upstream - Add new class for kernel key ring- Update to upstream- Update to upstream- Break out selinux-devel package- Add ibmasmfs- Fix policygentool gen_requires- Update from Upstream- Fix spec of realplay- Update to upstream- Fix semanage- Allow useradd to create_home_dir in MLS environment- Update from upstream- Update from upstream- Add oprofilefs- Fix for hplip and Picasus- Update to upstream- Update to upstream- fixes for spamd- fixes for java, openldap and webalizer- Xen fixes- Upgrade to upstream- allow hal to read boot_t files - Upgrade to upstream- allow hal to read boot_t files- Update from upstream- Fixes for amavis- Update from upstream- Allow auditctl to search all directories- Add acquire service for mono.- Turn off allow_execmem boolean - Allow ftp dac_override when allowed to access users homedirs- Clean up spec file - Transition from unconfined_t to prelink_t- Allow execution of cvs command- Update to upstream- Update to upstream- Fix libjvm spec- Update to upstream- Add xm policy - Fix policygentool- Update to upstream - Fix postun to only disable selinux on full removal of the packages- Allow mono to chat with unconfined- Allow procmail to sendmail - Allow nfs to share dosfs- Update to latest from upstream - Allow selinux-policy to be removed and kernel not to crash- Update to latest from upstream - Add James Antill patch for xen - Many fixes for pegasus- Add unconfined_mount_t - Allow privoxy to connect to httpd_cache - fix cups labeleing on /var/cache/cups- Update to latest from upstream- Update to latest from upstream - Allow mono and unconfined to talk to initrc_t dbus objects- Change libraries.fc to stop shlib_t form overriding texrel_shlib_t- Fix samba creating dirs in homedir - Fix NFS so its booleans would work- Allow secadm_t ability to relabel all files - Allow ftp to search xferlog_t directories - Allow mysql to communicate with ldap - Allow rsync to bind to rsync_port_t- Fixed mailman with Postfix #183928 - Allowed semanage to create file_context files. - Allowed amanda_t to access inetd_t TCP sockets and allowed amanda_recover_t to bind to reserved ports. #149030 - Don't allow devpts_t to be associated with tmp_t. - Allow hald_t to stat all mountpoints. - Added boolean samba_share_nfs to allow smbd_t full access to NFS mounts. - Make mount run in mount_t domain from unconfined_t to prevent mislabeling of /etc/mtab. - Changed the file_contexts to not have a regex before the first ^/[a-z]/ whenever possible, makes restorecon slightly faster. - Correct the label of /etc/named.caching-nameserver.conf - Now label /usr/src/kernels/.+/lib(/.*)? as usr_t instead of /usr/src(/.*)?/lib(/.*)? - I don't think we need anything else under /usr/src hit by this. - Granted xen access to /boot, allowed mounting on xend_var_lib_t, and allowed xenstored_t rw access to the xen device node.- More textrel_shlib_t file path fixes - Add ada support- Get auditctl working in MLS policy- Add mono dbus support - Lots of file_context fixes for textrel_shlib_t in FC5 - Turn off execmem auditallow since they are filling log files- Update to upstream- Allow automount and dbus to read cert files- Fix ftp policy - Fix secadm running of auditctl- Update to upstream- Update to upstream- Fix policyhelp- Fix pam_console handling of usb_device - dontaudit logwatch reading /mnt dir- Update to upstream- Get transition rules to create policy.20 at SystemHigh- Allow secadmin to shutdown system - Allow sendmail to exec newalias- MLS Fixes dmidecode needs mls_file_read_up - add ypxfr_t - run init needs access to nscd - udev needs setuid - another xen log file - Dontaudit mount getattr proc_kcore_t- fix buildroot usage (#185391)- Get rid of mount/fsdisk scan of /dev messages - Additional fixes for suspend/resume- Fake make to rebuild enableaudit.pp- Get xen networking running.- Fixes for Xen - enableaudit should not be the same as base.pp - Allow ps to work for all process- more xen policy fixups- more xen fixage (#184393)- Fix blkid specification - Allow postfix to execute mailman_que- Blkid changes - Allow udev access to usb_device_t - Fix post script to create targeted policy config file- Allow lvm tools to create drevice dir- Add Xen support- Fixes for cups - Make cryptosetup work with hal- Load Policy needs translock- Fix cups html interface- Add hal changes suggested by Jeremy - add policyhelp to point at policy html pages- Additional fixes for nvidia and cups- Update to upstream - Merged my latest fixes - Fix cups policy to handle unix domain sockets- NSCD socket is in nscd_var_run_t needs to be able to search dir- Fixes Apache interface file- Fixes for new version of cups- Turn off polyinstatiate util after FC5- Fix problem with privoxy talking to Tor- Turn on polyinstatiation- Don't transition from unconfined_t to fsadm_t- Fix policy update model.- Update to upstream- Fix load_policy to work on MLS - Fix cron_rw_system_pipes for postfix_postdrop_t - Allow audotmount to run showmount- Fix swapon - allow httpd_sys_script_t to be entered via a shell - Allow httpd_sys_script_t to read eventpolfs- Update from upstream- allow cron to read apache files- Fix vpnc policy to work from NetworkManager- Update to upstream - Fix semoudle polcy- Update to upstream - fix sysconfig/selinux link- Add router port for zebra - Add imaze port for spamd - Fixes for amanda and java- Fix bluetooth handling of usb devices - Fix spamd reading of ~/ - fix nvidia spec- Update to upsteam- Add users_extra files- Update to upstream- Add semodule policy- Update from upstream- Fix for spamd to use razor port- Fixes for mcs - Turn on mount and fsadm for unconfined_t- Fixes for the -devel package- Fix for spamd to use ldap- Update to upstream- Update to upstream - Fix rhgb, and other Xorg startups- Update to upstream- Separate out role of secadm for mls- Add inotifyfs handling- Update to upstream - Put back in changes for pup/zen- Many changes for MLS - Turn on strict policy- Update to upstream- Update to upstream - Fixes for booting and logging in on MLS machine- Update to upstream - Turn off execheap execstack for unconfined users - Add mono/wine policy to allow execheap and execstack for them - Add execheap for Xdm policy- Update to upstream - Fixes to fetchmail,- Update to upstream- Fix for procmail/spamassasin - Update to upstream - Add rules to allow rpcd to work with unlabeled_networks.- Update to upstream - Fix ftp Man page- Update to upstream- fix pup transitions (#177262) - fix xen disks (#177599)- Update to upstream- More Fixes for hal and readahead- Fixes for hal and readahead- Update to upstream - Apply- Add wine and fix hal problems- Handle new location of hal scripts- Allow su to read /etc/mtab- Update to upstream- Fix "libsemanage.parse_module_headers: Data did not represent a module." problem- Allow load_policy to read /etc/mtab- Fix dovecot to allow dovecot_auth to look at /tmp- Allow restorecon to read unlabeled_t directories in order to fix labeling.- Add Logwatch policy- Fix /dev/ub[a-z] file context- Fix library specification - Give kudzu execmem privs- Fix hostname in targeted policy- Fix passwd command on mls- Lots of fixes to make mls policy work- Add dri libs to textrel_shlib_t - Add system_r role for java - Add unconfined_exec_t for vncserver - Allow slapd to use kerberos- Add man pages- Add enableaudit.pp- Fix mls policy- Update mls file from old version- Add sids back in - Rebuild with update checkpolicy- Fixes to allow automount to use portmap - Fixes to start kernel in s0-s15:c0.c255- Add java unconfined/execmem policy- Add file context for /var/cvs - Dontaudit webalizer search of homedir- Update from upstream- Clean up spec - range_transition crond to SystemHigh- Fixes for hal - Update to upstream- Turn back on execmem since we need it for java, firefox, ooffice - Allow gpm to stream socket to itself- fix requirements to be on the actual packages so that policy can get created properly at install time- Allow unconfined_t to execmod texrel_shlib_t- Update to upstream - Turn off allow_execmem and allow_execmod booleans - Add tcpd and automount policies- Add two new httpd booleans, turned off by default * httpd_can_network_relay * httpd_can_network_connect_db- Add ghost for policy.20- Update to upstream - Turn off boolean allow_execstack- Change setrans-mls to use new libsetrans - Add default_context rule for xdm- Change Requires to PreReg for requiring of policycoreutils on install- New upstream releaseAdd xdm policyUpdate from upstreamUpdate from upstreamUpdate from upstream- Also trigger to rebuild policy for versions up to 2.0.7.- No longer installing policy.20 file, anaconda handles the building of the app.- Fixes for dovecot and saslauthd- Cleanup pegasus and named - Fix spec file - Fix up passwd changing applications-Update to latest from upstream- Add rules for pegasus and avahi- Start building MLS Policy- Update to upstream- Turn on bash- Initial version/bin/sh/bin/shselinux-policy-targeted-sourcesmod_fcgid-selinuxcachefilesd-selinux  !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~3.13.1-102.el7_3.153.13.1-102.el7_3.153.13.1-102.el7_3.15 23.13.1-102.el7_3.150.10-1      !!!"""###$$$%%%&&&'''((()))***+++,,,---...///000111222333444555666777888999:::;;;<<<===>>>???@@@AAABBBCCCDDDEEEFFFGGGHHHIIIJJJKKKLLLMMMNNNOOOPPPQQQRRRSSSTTTUUUVVVWWWXXXYYYZZZ[[[\\\]]]^^^___```aaabbbcccdddeeefffggghhhiiijjjkkklllmmmnnnooopppqqqrrrssstttuuuvvvwwwxxxyyyzzz{{{|||}}}~~~                  !!!"""###$$$%%%&&&'''((()))***+++,,,---...///000111222333444555666777888999:::;;;<<<===>>>???@@@AAABBBCCCDDDEEEFFFGGGHHHIIIJJJKKKLLLMMMNNNOOOPPPQQQRRRSSSTTTUUUVVVWWWXXXYYYZZZ[[[\\\]]]^^^___```aaabbbcccdddeeefffggghhhiiijjjkkklllmmmnnnooopppqqqrrrssstttuuuvvvwwwxxxyyyzzz{{{|||}}}~~~targeted.policy.sha512activecommit_numfile_contextshomedir_templatemodules100abrtcilhlllang_extaccountsdcilhlllang_extacctcilhlllang_extafscilhlllang_extaiccucilhlllang_extaidecilhlllang_extajaxtermcilhlllang_extalsacilhlllang_extamandacilhlllang_extamtucilhlllang_extanacondacilhlllang_extantiviruscilhlllang_extapachecilhlllang_extapcupsdcilhlllang_extapmcilhlllang_extapplicationcilhlllang_extarpwatchcilhlllang_extasteriskcilhlllang_extauditadmcilhlllang_extauthconfigcilhlllang_extauthlogincilhlllang_extautomountcilhlllang_extavahicilhlllang_extawstatscilhlllang_extbaculacilhlllang_extbasecilhlllang_extbcfg2cilhlllang_extbindcilhlllang_extbitlbeecilhlllang_extblkmapdcilhlllang_extbluemancilhlllang_extbluetoothcilhlllang_extboinccilhlllang_extbootloadercilhlllang_extbrctlcilhlllang_extbrlttycilhlllang_extbugzillacilhlllang_extbumblebeecilhlllang_extcachefilesdcilhlllang_extcalamariscilhlllang_extcallweavercilhlllang_extcannacilhlllang_extccscilhlllang_extcdrecordcilhlllang_extcertmastercilhlllang_extcertmongercilhlllang_extcertwatchcilhlllang_extcfenginecilhlllang_extcgdcbxdcilhlllang_extcgroupcilhlllang_extchromecilhlllang_extchronydcilhlllang_extcindercilhlllang_extcipecilhlllang_extclockcilhlllang_extclogdcilhlllang_extcloudformcilhlllang_extcmirrordcilhlllang_extcobblercilhlllang_extcockpitcilhlllang_extcollectdcilhlllang_extcolordcilhlllang_extcomsatcilhlllang_extcondorcilhlllang_extconmancilhlllang_extconsolekitcilhlllang_extcouchdbcilhlllang_extcouriercilhlllang_extcpucontrolcilhlllang_extcpufreqselectorcilhlllang_extcpuplugcilhlllang_extcroncilhlllang_extctdbcilhlllang_extcupscilhlllang_extcvscilhlllang_extcyphesiscilhlllang_extcyruscilhlllang_extdaemontoolscilhlllang_extdbadmcilhlllang_extdbskkcilhlllang_extdbuscilhlllang_extdcccilhlllang_extddclientcilhlllang_extdenyhostscilhlllang_extdevicekitcilhlllang_extdhcpcilhlllang_extdictdcilhlllang_extdirsrvdirsrv-admincilhlllang_extcilhlllang_extdmesgcilhlllang_extdmidecodecilhlllang_extdnsmasqcilhlllang_extdnsseccilhlllang_extdockercilhlllang_extdovecotcilhlllang_extdrbdcilhlllang_extdspamcilhlllang_extentropydcilhlllang_exteximcilhlllang_extfail2bancilhlllang_extfcoecilhlllang_extfetchmailcilhlllang_extfingercilhlllang_extfirewalldcilhlllang_extfirewallguicilhlllang_extfirstbootcilhlllang_extfprintdcilhlllang_extfreeipmicilhlllang_extfreqsetcilhlllang_extfstoolscilhlllang_extftpcilhlllang_extgamescilhlllang_extgdomapcilhlllang_extgearcilhlllang_extgeocluecilhlllang_extgettycilhlllang_extgitcilhlllang_extgitosiscilhlllang_extglancecilhlllang_extglusterdcilhlllang_extgnomecilhlllang_extgpgcilhlllang_extgpmcilhlllang_extgpsdcilhlllang_extgssproxycilhlllang_extguestcilhlllang_exthddtempcilhlllang_exthostnamecilhlllang_exthsqldbcilhlllang_exthwloccilhlllang_exthypervkvpcilhlllang_exticecastcilhlllang_extinetdcilhlllang_extinitcilhlllang_extinncilhlllang_extiodinecilhlllang_extiotopcilhlllang_extipacilhlllang_extipmievdcilhlllang_extipseccilhlllang_extiptablescilhlllang_extirccilhlllang_extirqbalancecilhlllang_extiscsicilhlllang_extisnscilhlllang_extjabbercilhlllang_extjettycilhlllang_extjockeycilhlllang_extjournalctlcilhlllang_extkdumpcilhlllang_extkdumpguicilhlllang_extkeepalivedcilhlllang_extkerberoscilhlllang_extkeyboarddcilhlllang_extkeystonecilhlllang_extkismetcilhlllang_extkmsconcilhlllang_extksmtunedcilhlllang_extktalkcilhlllang_extl2tpcilhlllang_extldapcilhlllang_extlibrariescilhlllang_extlikewisecilhlllang_extlinuxptpcilhlllang_extlircdcilhlllang_extlivecdcilhlllang_extlldpadcilhlllang_extloadkeyscilhlllang_extlocallogincilhlllang_extlockdevcilhlllang_extlogadmcilhlllang_extloggingcilhlllang_extlogrotatecilhlllang_extlogwatchcilhlllang_extlpdcilhlllang_extlsmcilhlllang_extlttng-toolscilhlllang_extlvmcilhlllang_extmailmancilhlllang_extmailscannercilhlllang_extman2htmlcilhlllang_extmandbcilhlllang_extmcelogcilhlllang_extmediawikicilhlllang_extmemcachedcilhlllang_extmiltercilhlllang_extminidlnacilhlllang_extminissdpdcilhlllang_extmip6dcilhlllang_extmirrormanagercilhlllang_extmiscfilescilhlllang_extmockcilhlllang_extmodemmanagercilhlllang_extmodutilscilhlllang_extmojomojocilhlllang_extmon_statdcilhlllang_extmongodbcilhlllang_extmotioncilhlllang_extmountcilhlllang_extmozillacilhlllang_extmpdcilhlllang_extmplayercilhlllang_extmrtgcilhlllang_extmtacilhlllang_extmunincilhlllang_extmysqlcilhlllang_extmythtvcilhlllang_extnagioscilhlllang_extnamespacecilhlllang_extncftoolcilhlllang_extnetlabelcilhlllang_extnetutilscilhlllang_extnetworkmanagercilhlllang_extninfodcilhlllang_extniscilhlllang_extnovacilhlllang_extnscdcilhlllang_extnsdcilhlllang_extnslcdcilhlllang_extntopcilhlllang_extntpcilhlllang_extnumadcilhlllang_extnutcilhlllang_extnxcilhlllang_extobexcilhlllang_extoddjobcilhlllang_extopenctcilhlllang_extopendnsseccilhlllang_extopenhpidcilhlllang_extopenshiftopenshift-origincilhlllang_extcilhlllang_extopensmcilhlllang_extopenvpncilhlllang_extopenvswitchcilhlllang_extopenwsmancilhlllang_extoracleasmcilhlllang_extosadcilhlllang_extpadscilhlllang_extpassengercilhlllang_extpcmciacilhlllang_extpcpcilhlllang_extpcscdcilhlllang_extpegasuscilhlllang_extpermissivedomainscillang_extpesigncilhlllang_extpingdcilhlllang_extpiranhacilhlllang_extpkcscilhlllang_extpkicilhlllang_extplymouthdcilhlllang_extpodsleuthcilhlllang_extpolicykitcilhlllang_extpolipocilhlllang_extportmapcilhlllang_extportreservecilhlllang_extpostfixcilhlllang_extpostgresqlcilhlllang_extpostgreycilhlllang_extpppcilhlllang_extprelinkcilhlllang_extpreludecilhlllang_extprivoxycilhlllang_extprocmailcilhlllang_extprosodycilhlllang_extpsadcilhlllang_extptchowncilhlllang_extpublicfilecilhlllang_extpulseaudiocilhlllang_extpuppetcilhlllang_extpwauthcilhlllang_extqmailcilhlllang_extqpidcilhlllang_extquantumcilhlllang_extquotacilhlllang_extrabbitmqcilhlllang_extradiuscilhlllang_extradvdcilhlllang_extraidcilhlllang_extrasdaemoncilhlllang_extrdisccilhlllang_extreadaheadcilhlllang_extrealmdcilhlllang_extrediscilhlllang_extremotelogincilhlllang_extrhcscilhlllang_extrhevcilhlllang_extrhgbcilhlllang_extrhnsdcilhlllang_extrhsmcertdcilhlllang_extriccicilhlllang_extrkhuntercilhlllang_extrlogincilhlllang_extrngdcilhlllang_extroundupcilhlllang_extrpccilhlllang_extrpcbindcilhlllang_extrpmcilhlllang_extrshdcilhlllang_extrsshcilhlllang_extrsynccilhlllang_extrtascilhlllang_extrtkitcilhlllang_extrwhocilhlllang_extsambacilhlllang_extsambaguicilhlllang_extsandboxXcilhlllang_extsanlockcilhlllang_extsaslcilhlllang_extsbdcilhlllang_extsblimcilhlllang_extscreencilhlllang_extsecadmcilhlllang_extsectoolmcilhlllang_extselinuxutilcilhlllang_extsendmailcilhlllang_extsensordcilhlllang_extsetranscilhlllang_extsetroubleshootcilhlllang_extseunsharecilhlllang_extsgecilhlllang_extshorewallcilhlllang_extslocatecilhlllang_extslpdcilhlllang_extsmartmoncilhlllang_extsmokepingcilhlllang_extsmoltclientcilhlllang_extsmsdcilhlllang_extsnappercilhlllang_extsnmpcilhlllang_extsnortcilhlllang_extsosreportcilhlllang_extsoundservercilhlllang_extspamassassincilhlllang_extspeech-dispatchercilhlllang_extsquidcilhlllang_extsshcilhlllang_extsssdcilhlllang_extstaffcilhlllang_extstapservercilhlllang_extstunnelcilhlllang_extsucilhlllang_extsudocilhlllang_extsvnservecilhlllang_extswiftcilhlllang_extsysadmcilhlllang_extsysadm_secadmcilhlllang_extsysnetworkcilhlllang_extsysstatcilhlllang_extsystemdcilhlllang_exttargetdcilhlllang_exttcpdcilhlllang_exttcsdcilhlllang_exttelepathycilhlllang_exttelnetcilhlllang_exttftpcilhlllang_exttgtdcilhlllang_extthincilhlllang_extthumbcilhlllang_exttmpreapercilhlllang_exttomcatcilhlllang_exttorcilhlllang_exttunedcilhlllang_exttvtimecilhlllang_extudevcilhlllang_extulogdcilhlllang_extumlcilhlllang_extunconfinedcilhlllang_extunconfinedusercilhlllang_extunlabelednetcilhlllang_extunprivusercilhlllang_extupdfstabcilhlllang_extusbmodulescilhlllang_extusbmuxdcilhlllang_extuserdomaincilhlllang_extuserhelpercilhlllang_extusermanagecilhlllang_extusernetctlcilhlllang_extuucpcilhlllang_extuuiddcilhlllang_extvarnishdcilhlllang_extvdagentcilhlllang_extvhostmdcilhlllang_extvirtcilhlllang_extvlockcilhlllang_extvmtoolscilhlllang_extvmwarecilhlllang_extvnstatdcilhlllang_extvpncilhlllang_extw3ccilhlllang_extwatchdogcilhlllang_extwdmdcilhlllang_extwebadmcilhlllang_extwebalizercilhlllang_extwinecilhlllang_extwiresharkcilhlllang_extxencilhlllang_extxguestcilhlllang_extxservercilhlllang_extzabbixcilhlllang_extzarafacilhlllang_extzebracilhlllang_extzonemindercilhlllang_extzosremotecilhlllang_extdisabledpolicy.kernseusersusers_extrabooleans.subs_distcontextscustomizable_typesdbus_contextsdefault_contextsdefault_typefailsafe_contextfilesfile_contextsfile_contexts.binfile_contexts.homedirsfile_contexts.homedirs.binfile_contexts.localfile_contexts.local.binfile_contexts.subsfile_contexts.subs_distmediainitrc_contextlxc_contextsremovable_contextsecuretty_typessepgsql_contextssnapperd_contextssystemd_contextsuserhelper_contextusersguest_urootstaff_usysadm_uunconfined_uuser_uxguest_uvirtual_domain_contextvirtual_image_contextx_contextsloginsdocker.pppolicypolicy.30semanage.read.LOCKsemanage.trans.LOCKsetrans.confseusersselinux-policy-migrate-local-changes@targeted.serviceselinux-policy-migrate-local-changes@.serviceselinux-policy-migrate-local-changes.shtargetedbase.lstmodules-base.lstmodules-contrib.lstnonbasemodules.lst/etc/selinux//etc/selinux/targeted//etc/selinux/targeted/active//etc/selinux/targeted/active/modules//etc/selinux/targeted/active/modules/100//etc/selinux/targeted/active/modules/100/abrt//etc/selinux/targeted/active/modules/100/accountsd//etc/selinux/targeted/active/modules/100/acct//etc/selinux/targeted/active/modules/100/afs//etc/selinux/targeted/active/modules/100/aiccu//etc/selinux/targeted/active/modules/100/aide//etc/selinux/targeted/active/modules/100/ajaxterm//etc/selinux/targeted/active/modules/100/alsa//etc/selinux/targeted/active/modules/100/amanda//etc/selinux/targeted/active/modules/100/amtu//etc/selinux/targeted/active/modules/100/anaconda//etc/selinux/targeted/active/modules/100/antivirus//etc/selinux/targeted/active/modules/100/apache//etc/selinux/targeted/active/modules/100/apcupsd//etc/selinux/targeted/active/modules/100/apm//etc/selinux/targeted/active/modules/100/application//etc/selinux/targeted/active/modules/100/arpwatch//etc/selinux/targeted/active/modules/100/asterisk//etc/selinux/targeted/active/modules/100/auditadm//etc/selinux/targeted/active/modules/100/authconfig//etc/selinux/targeted/active/modules/100/authlogin//etc/selinux/targeted/active/modules/100/automount//etc/selinux/targeted/active/modules/100/avahi//etc/selinux/targeted/active/modules/100/awstats//etc/selinux/targeted/active/modules/100/bacula//etc/selinux/targeted/active/modules/100/base//etc/selinux/targeted/active/modules/100/bcfg2//etc/selinux/targeted/active/modules/100/bind//etc/selinux/targeted/active/modules/100/bitlbee//etc/selinux/targeted/active/modules/100/blkmapd//etc/selinux/targeted/active/modules/100/blueman//etc/selinux/targeted/active/modules/100/bluetooth//etc/selinux/targeted/active/modules/100/boinc//etc/selinux/targeted/active/modules/100/bootloader//etc/selinux/targeted/active/modules/100/brctl//etc/selinux/targeted/active/modules/100/brltty//etc/selinux/targeted/active/modules/100/bugzilla//etc/selinux/targeted/active/modules/100/bumblebee//etc/selinux/targeted/active/modules/100/cachefilesd//etc/selinux/targeted/active/modules/100/calamaris//etc/selinux/targeted/active/modules/100/callweaver//etc/selinux/targeted/active/modules/100/canna//etc/selinux/targeted/active/modules/100/ccs//etc/selinux/targeted/active/modules/100/cdrecord//etc/selinux/targeted/active/modules/100/certmaster//etc/selinux/targeted/active/modules/100/certmonger//etc/selinux/targeted/active/modules/100/certwatch//etc/selinux/targeted/active/modules/100/cfengine//etc/selinux/targeted/active/modules/100/cgdcbxd//etc/selinux/targeted/active/modules/100/cgroup//etc/selinux/targeted/active/modules/100/chrome//etc/selinux/targeted/active/modules/100/chronyd//etc/selinux/targeted/active/modules/100/cinder//etc/selinux/targeted/active/modules/100/cipe//etc/selinux/targeted/active/modules/100/clock//etc/selinux/targeted/active/modules/100/clogd//etc/selinux/targeted/active/modules/100/cloudform//etc/selinux/targeted/active/modules/100/cmirrord//etc/selinux/targeted/active/modules/100/cobbler//etc/selinux/targeted/active/modules/100/cockpit//etc/selinux/targeted/active/modules/100/collectd//etc/selinux/targeted/active/modules/100/colord//etc/selinux/targeted/active/modules/100/comsat//etc/selinux/targeted/active/modules/100/condor//etc/selinux/targeted/active/modules/100/conman//etc/selinux/targeted/active/modules/100/consolekit//etc/selinux/targeted/active/modules/100/couchdb//etc/selinux/targeted/active/modules/100/courier//etc/selinux/targeted/active/modules/100/cpucontrol//etc/selinux/targeted/active/modules/100/cpufreqselector//etc/selinux/targeted/active/modules/100/cpuplug//etc/selinux/targeted/active/modules/100/cron//etc/selinux/targeted/active/modules/100/ctdb//etc/selinux/targeted/active/modules/100/cups//etc/selinux/targeted/active/modules/100/cvs//etc/selinux/targeted/active/modules/100/cyphesis//etc/selinux/targeted/active/modules/100/cyrus//etc/selinux/targeted/active/modules/100/daemontools//etc/selinux/targeted/active/modules/100/dbadm//etc/selinux/targeted/active/modules/100/dbskk//etc/selinux/targeted/active/modules/100/dbus//etc/selinux/targeted/active/modules/100/dcc//etc/selinux/targeted/active/modules/100/ddclient//etc/selinux/targeted/active/modules/100/denyhosts//etc/selinux/targeted/active/modules/100/devicekit//etc/selinux/targeted/active/modules/100/dhcp//etc/selinux/targeted/active/modules/100/dictd//etc/selinux/targeted/active/modules/100/dirsrv-admin//etc/selinux/targeted/active/modules/100/dirsrv//etc/selinux/targeted/active/modules/100/dmesg//etc/selinux/targeted/active/modules/100/dmidecode//etc/selinux/targeted/active/modules/100/dnsmasq//etc/selinux/targeted/active/modules/100/dnssec//etc/selinux/targeted/active/modules/100/docker//etc/selinux/targeted/active/modules/100/dovecot//etc/selinux/targeted/active/modules/100/drbd//etc/selinux/targeted/active/modules/100/dspam//etc/selinux/targeted/active/modules/100/entropyd//etc/selinux/targeted/active/modules/100/exim//etc/selinux/targeted/active/modules/100/fail2ban//etc/selinux/targeted/active/modules/100/fcoe//etc/selinux/targeted/active/modules/100/fetchmail//etc/selinux/targeted/active/modules/100/finger//etc/selinux/targeted/active/modules/100/firewalld//etc/selinux/targeted/active/modules/100/firewallgui//etc/selinux/targeted/active/modules/100/firstboot//etc/selinux/targeted/active/modules/100/fprintd//etc/selinux/targeted/active/modules/100/freeipmi//etc/selinux/targeted/active/modules/100/freqset//etc/selinux/targeted/active/modules/100/fstools//etc/selinux/targeted/active/modules/100/ftp//etc/selinux/targeted/active/modules/100/games//etc/selinux/targeted/active/modules/100/gdomap//etc/selinux/targeted/active/modules/100/gear//etc/selinux/targeted/active/modules/100/geoclue//etc/selinux/targeted/active/modules/100/getty//etc/selinux/targeted/active/modules/100/git//etc/selinux/targeted/active/modules/100/gitosis//etc/selinux/targeted/active/modules/100/glance//etc/selinux/targeted/active/modules/100/glusterd//etc/selinux/targeted/active/modules/100/gnome//etc/selinux/targeted/active/modules/100/gpg//etc/selinux/targeted/active/modules/100/gpm//etc/selinux/targeted/active/modules/100/gpsd//etc/selinux/targeted/active/modules/100/gssproxy//etc/selinux/targeted/active/modules/100/guest//etc/selinux/targeted/active/modules/100/hddtemp//etc/selinux/targeted/active/modules/100/hostname//etc/selinux/targeted/active/modules/100/hsqldb//etc/selinux/targeted/active/modules/100/hwloc//etc/selinux/targeted/active/modules/100/hypervkvp//etc/selinux/targeted/active/modules/100/icecast//etc/selinux/targeted/active/modules/100/inetd//etc/selinux/targeted/active/modules/100/init//etc/selinux/targeted/active/modules/100/inn//etc/selinux/targeted/active/modules/100/iodine//etc/selinux/targeted/active/modules/100/iotop//etc/selinux/targeted/active/modules/100/ipa//etc/selinux/targeted/active/modules/100/ipmievd//etc/selinux/targeted/active/modules/100/ipsec//etc/selinux/targeted/active/modules/100/iptables//etc/selinux/targeted/active/modules/100/irc//etc/selinux/targeted/active/modules/100/irqbalance//etc/selinux/targeted/active/modules/100/iscsi//etc/selinux/targeted/active/modules/100/isns//etc/selinux/targeted/active/modules/100/jabber//etc/selinux/targeted/active/modules/100/jetty//etc/selinux/targeted/active/modules/100/jockey//etc/selinux/targeted/active/modules/100/journalctl//etc/selinux/targeted/active/modules/100/kdump//etc/selinux/targeted/active/modules/100/kdumpgui//etc/selinux/targeted/active/modules/100/keepalived//etc/selinux/targeted/active/modules/100/kerberos//etc/selinux/targeted/active/modules/100/keyboardd//etc/selinux/targeted/active/modules/100/keystone//etc/selinux/targeted/active/modules/100/kismet//etc/selinux/targeted/active/modules/100/kmscon//etc/selinux/targeted/active/modules/100/ksmtuned//etc/selinux/targeted/active/modules/100/ktalk//etc/selinux/targeted/active/modules/100/l2tp//etc/selinux/targeted/active/modules/100/ldap//etc/selinux/targeted/active/modules/100/libraries//etc/selinux/targeted/active/modules/100/likewise//etc/selinux/targeted/active/modules/100/linuxptp//etc/selinux/targeted/active/modules/100/lircd//etc/selinux/targeted/active/modules/100/livecd//etc/selinux/targeted/active/modules/100/lldpad//etc/selinux/targeted/active/modules/100/loadkeys//etc/selinux/targeted/active/modules/100/locallogin//etc/selinux/targeted/active/modules/100/lockdev//etc/selinux/targeted/active/modules/100/logadm//etc/selinux/targeted/active/modules/100/logging//etc/selinux/targeted/active/modules/100/logrotate//etc/selinux/targeted/active/modules/100/logwatch//etc/selinux/targeted/active/modules/100/lpd//etc/selinux/targeted/active/modules/100/lsm//etc/selinux/targeted/active/modules/100/lttng-tools//etc/selinux/targeted/active/modules/100/lvm//etc/selinux/targeted/active/modules/100/mailman//etc/selinux/targeted/active/modules/100/mailscanner//etc/selinux/targeted/active/modules/100/man2html//etc/selinux/targeted/active/modules/100/mandb//etc/selinux/targeted/active/modules/100/mcelog//etc/selinux/targeted/active/modules/100/mediawiki//etc/selinux/targeted/active/modules/100/memcached//etc/selinux/targeted/active/modules/100/milter//etc/selinux/targeted/active/modules/100/minidlna//etc/selinux/targeted/active/modules/100/minissdpd//etc/selinux/targeted/active/modules/100/mip6d//etc/selinux/targeted/active/modules/100/mirrormanager//etc/selinux/targeted/active/modules/100/miscfiles//etc/selinux/targeted/active/modules/100/mock//etc/selinux/targeted/active/modules/100/modemmanager//etc/selinux/targeted/active/modules/100/modutils//etc/selinux/targeted/active/modules/100/mojomojo//etc/selinux/targeted/active/modules/100/mon_statd//etc/selinux/targeted/active/modules/100/mongodb//etc/selinux/targeted/active/modules/100/motion//etc/selinux/targeted/active/modules/100/mount//etc/selinux/targeted/active/modules/100/mozilla//etc/selinux/targeted/active/modules/100/mpd//etc/selinux/targeted/active/modules/100/mplayer//etc/selinux/targeted/active/modules/100/mrtg//etc/selinux/targeted/active/modules/100/mta//etc/selinux/targeted/active/modules/100/munin//etc/selinux/targeted/active/modules/100/mysql//etc/selinux/targeted/active/modules/100/mythtv//etc/selinux/targeted/active/modules/100/nagios//etc/selinux/targeted/active/modules/100/namespace//etc/selinux/targeted/active/modules/100/ncftool//etc/selinux/targeted/active/modules/100/netlabel//etc/selinux/targeted/active/modules/100/netutils//etc/selinux/targeted/active/modules/100/networkmanager//etc/selinux/targeted/active/modules/100/ninfod//etc/selinux/targeted/active/modules/100/nis//etc/selinux/targeted/active/modules/100/nova//etc/selinux/targeted/active/modules/100/nscd//etc/selinux/targeted/active/modules/100/nsd//etc/selinux/targeted/active/modules/100/nslcd//etc/selinux/targeted/active/modules/100/ntop//etc/selinux/targeted/active/modules/100/ntp//etc/selinux/targeted/active/modules/100/numad//etc/selinux/targeted/active/modules/100/nut//etc/selinux/targeted/active/modules/100/nx//etc/selinux/targeted/active/modules/100/obex//etc/selinux/targeted/active/modules/100/oddjob//etc/selinux/targeted/active/modules/100/openct//etc/selinux/targeted/active/modules/100/opendnssec//etc/selinux/targeted/active/modules/100/openhpid//etc/selinux/targeted/active/modules/100/openshift-origin//etc/selinux/targeted/active/modules/100/openshift//etc/selinux/targeted/active/modules/100/opensm//etc/selinux/targeted/active/modules/100/openvpn//etc/selinux/targeted/active/modules/100/openvswitch//etc/selinux/targeted/active/modules/100/openwsman//etc/selinux/targeted/active/modules/100/oracleasm//etc/selinux/targeted/active/modules/100/osad//etc/selinux/targeted/active/modules/100/pads//etc/selinux/targeted/active/modules/100/passenger//etc/selinux/targeted/active/modules/100/pcmcia//etc/selinux/targeted/active/modules/100/pcp//etc/selinux/targeted/active/modules/100/pcscd//etc/selinux/targeted/active/modules/100/pegasus//etc/selinux/targeted/active/modules/100/permissivedomains//etc/selinux/targeted/active/modules/100/pesign//etc/selinux/targeted/active/modules/100/pingd//etc/selinux/targeted/active/modules/100/piranha//etc/selinux/targeted/active/modules/100/pkcs//etc/selinux/targeted/active/modules/100/pki//etc/selinux/targeted/active/modules/100/plymouthd//etc/selinux/targeted/active/modules/100/podsleuth//etc/selinux/targeted/active/modules/100/policykit//etc/selinux/targeted/active/modules/100/polipo//etc/selinux/targeted/active/modules/100/portmap//etc/selinux/targeted/active/modules/100/portreserve//etc/selinux/targeted/active/modules/100/postfix//etc/selinux/targeted/active/modules/100/postgresql//etc/selinux/targeted/active/modules/100/postgrey//etc/selinux/targeted/active/modules/100/ppp//etc/selinux/targeted/active/modules/100/prelink//etc/selinux/targeted/active/modules/100/prelude//etc/selinux/targeted/active/modules/100/privoxy//etc/selinux/targeted/active/modules/100/procmail//etc/selinux/targeted/active/modules/100/prosody//etc/selinux/targeted/active/modules/100/psad//etc/selinux/targeted/active/modules/100/ptchown//etc/selinux/targeted/active/modules/100/publicfile//etc/selinux/targeted/active/modules/100/pulseaudio//etc/selinux/targeted/active/modules/100/puppet//etc/selinux/targeted/active/modules/100/pwauth//etc/selinux/targeted/active/modules/100/qmail//etc/selinux/targeted/active/modules/100/qpid//etc/selinux/targeted/active/modules/100/quantum//etc/selinux/targeted/active/modules/100/quota//etc/selinux/targeted/active/modules/100/rabbitmq//etc/selinux/targeted/active/modules/100/radius//etc/selinux/targeted/active/modules/100/radvd//etc/selinux/targeted/active/modules/100/raid//etc/selinux/targeted/active/modules/100/rasdaemon//etc/selinux/targeted/active/modules/100/rdisc//etc/selinux/targeted/active/modules/100/readahead//etc/selinux/targeted/active/modules/100/realmd//etc/selinux/targeted/active/modules/100/redis//etc/selinux/targeted/active/modules/100/remotelogin//etc/selinux/targeted/active/modules/100/rhcs//etc/selinux/targeted/active/modules/100/rhev//etc/selinux/targeted/active/modules/100/rhgb//etc/selinux/targeted/active/modules/100/rhnsd//etc/selinux/targeted/active/modules/100/rhsmcertd//etc/selinux/targeted/active/modules/100/ricci//etc/selinux/targeted/active/modules/100/rkhunter//etc/selinux/targeted/active/modules/100/rlogin//etc/selinux/targeted/active/modules/100/rngd//etc/selinux/targeted/active/modules/100/roundup//etc/selinux/targeted/active/modules/100/rpc//etc/selinux/targeted/active/modules/100/rpcbind//etc/selinux/targeted/active/modules/100/rpm//etc/selinux/targeted/active/modules/100/rshd//etc/selinux/targeted/active/modules/100/rssh//etc/selinux/targeted/active/modules/100/rsync//etc/selinux/targeted/active/modules/100/rtas//etc/selinux/targeted/active/modules/100/rtkit//etc/selinux/targeted/active/modules/100/rwho//etc/selinux/targeted/active/modules/100/samba//etc/selinux/targeted/active/modules/100/sambagui//etc/selinux/targeted/active/modules/100/sandboxX//etc/selinux/targeted/active/modules/100/sanlock//etc/selinux/targeted/active/modules/100/sasl//etc/selinux/targeted/active/modules/100/sbd//etc/selinux/targeted/active/modules/100/sblim//etc/selinux/targeted/active/modules/100/screen//etc/selinux/targeted/active/modules/100/secadm//etc/selinux/targeted/active/modules/100/sectoolm//etc/selinux/targeted/active/modules/100/selinuxutil//etc/selinux/targeted/active/modules/100/sendmail//etc/selinux/targeted/active/modules/100/sensord//etc/selinux/targeted/active/modules/100/setrans//etc/selinux/targeted/active/modules/100/setroubleshoot//etc/selinux/targeted/active/modules/100/seunshare//etc/selinux/targeted/active/modules/100/sge//etc/selinux/targeted/active/modules/100/shorewall//etc/selinux/targeted/active/modules/100/slocate//etc/selinux/targeted/active/modules/100/slpd//etc/selinux/targeted/active/modules/100/smartmon//etc/selinux/targeted/active/modules/100/smokeping//etc/selinux/targeted/active/modules/100/smoltclient//etc/selinux/targeted/active/modules/100/smsd//etc/selinux/targeted/active/modules/100/snapper//etc/selinux/targeted/active/modules/100/snmp//etc/selinux/targeted/active/modules/100/snort//etc/selinux/targeted/active/modules/100/sosreport//etc/selinux/targeted/active/modules/100/soundserver//etc/selinux/targeted/active/modules/100/spamassassin//etc/selinux/targeted/active/modules/100/speech-dispatcher//etc/selinux/targeted/active/modules/100/squid//etc/selinux/targeted/active/modules/100/ssh//etc/selinux/targeted/active/modules/100/sssd//etc/selinux/targeted/active/modules/100/staff//etc/selinux/targeted/active/modules/100/stapserver//etc/selinux/targeted/active/modules/100/stunnel//etc/selinux/targeted/active/modules/100/su//etc/selinux/targeted/active/modules/100/sudo//etc/selinux/targeted/active/modules/100/svnserve//etc/selinux/targeted/active/modules/100/swift//etc/selinux/targeted/active/modules/100/sysadm//etc/selinux/targeted/active/modules/100/sysadm_secadm//etc/selinux/targeted/active/modules/100/sysnetwork//etc/selinux/targeted/active/modules/100/sysstat//etc/selinux/targeted/active/modules/100/systemd//etc/selinux/targeted/active/modules/100/targetd//etc/selinux/targeted/active/modules/100/tcpd//etc/selinux/targeted/active/modules/100/tcsd//etc/selinux/targeted/active/modules/100/telepathy//etc/selinux/targeted/active/modules/100/telnet//etc/selinux/targeted/active/modules/100/tftp//etc/selinux/targeted/active/modules/100/tgtd//etc/selinux/targeted/active/modules/100/thin//etc/selinux/targeted/active/modules/100/thumb//etc/selinux/targeted/active/modules/100/tmpreaper//etc/selinux/targeted/active/modules/100/tomcat//etc/selinux/targeted/active/modules/100/tor//etc/selinux/targeted/active/modules/100/tuned//etc/selinux/targeted/active/modules/100/tvtime//etc/selinux/targeted/active/modules/100/udev//etc/selinux/targeted/active/modules/100/ulogd//etc/selinux/targeted/active/modules/100/uml//etc/selinux/targeted/active/modules/100/unconfined//etc/selinux/targeted/active/modules/100/unconfineduser//etc/selinux/targeted/active/modules/100/unlabelednet//etc/selinux/targeted/active/modules/100/unprivuser//etc/selinux/targeted/active/modules/100/updfstab//etc/selinux/targeted/active/modules/100/usbmodules//etc/selinux/targeted/active/modules/100/usbmuxd//etc/selinux/targeted/active/modules/100/userdomain//etc/selinux/targeted/active/modules/100/userhelper//etc/selinux/targeted/active/modules/100/usermanage//etc/selinux/targeted/active/modules/100/usernetctl//etc/selinux/targeted/active/modules/100/uucp//etc/selinux/targeted/active/modules/100/uuidd//etc/selinux/targeted/active/modules/100/varnishd//etc/selinux/targeted/active/modules/100/vdagent//etc/selinux/targeted/active/modules/100/vhostmd//etc/selinux/targeted/active/modules/100/virt//etc/selinux/targeted/active/modules/100/vlock//etc/selinux/targeted/active/modules/100/vmtools//etc/selinux/targeted/active/modules/100/vmware//etc/selinux/targeted/active/modules/100/vnstatd//etc/selinux/targeted/active/modules/100/vpn//etc/selinux/targeted/active/modules/100/w3c//etc/selinux/targeted/active/modules/100/watchdog//etc/selinux/targeted/active/modules/100/wdmd//etc/selinux/targeted/active/modules/100/webadm//etc/selinux/targeted/active/modules/100/webalizer//etc/selinux/targeted/active/modules/100/wine//etc/selinux/targeted/active/modules/100/wireshark//etc/selinux/targeted/active/modules/100/xen//etc/selinux/targeted/active/modules/100/xguest//etc/selinux/targeted/active/modules/100/xserver//etc/selinux/targeted/active/modules/100/zabbix//etc/selinux/targeted/active/modules/100/zarafa//etc/selinux/targeted/active/modules/100/zebra//etc/selinux/targeted/active/modules/100/zoneminder//etc/selinux/targeted/active/modules/100/zosremote//etc/selinux/targeted/contexts//etc/selinux/targeted/contexts/files//etc/selinux/targeted/contexts/users//etc/selinux/targeted/modules/active/modules//etc/selinux/targeted/policy//usr/lib/systemd/system/basic.target.wants//usr/lib/systemd/system//usr/libexec/selinux//usr/share/selinux//usr/share/selinux/targeted/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches -m64 -mtune=genericdrpmxz2noarch-redhat-linux-gnu   directoryASCII textASCII text, with very long lines (bzip2 compressed data, block size = 500k)ASCII text, with no line terminatorsASCII text (bzip2 compressed data, block size = 500k)exported SGML document, ASCII textemptyHTML document, ASCII textcannot open (No such file or directory)Bourne-Again shell script, ASCII text executableASCII text, with very long lines, with no line terminatorsR?7zXZ !PH6]"k%Qkhux wߵب⇍IظzZSnF;KwΗbSEK$]bS>@a=ؠ&lL-%|k1-¨->8FXV^V8^4 浖c\9kZ`Zf6*&7kgG=e6ن׋?M6AP!Agxg!MmۄPw"i@H]a;豁ؕFJ@wG'hwNi>G:H6c+}w;l YƬf8_P͟_LNӏə$<'#? x!*/Rj GH|dUym rA,) )J {3+oiґow|iH0aǚ';Iw_?r F YB+!r7@7Y=ښsvDj$L CL'iOKZϣ皮suB?Kz /7;{(X^ȿ p<u%k=sd//z 21]k`%lG~V Ag}lsiQg Ot}CS.J<]eE~EJkiyYǚRQ-*sɶG'05@0e _)ΝFq9݄d6oS:]6d ط_4KBjw]pFO*]M󡃩qaxGEqwsnj!ֳ)7VR,>)xꯓA+ҁzt9:\jl K/>Z+^ݩ{vGQi398^Ok7}ED2Wy aL'T=VAlY2؏ j7-eg<q RzG0 (Y4ōt\$0:&݆j7Z`UفO)uj}J&܌4׳N3Bƚ|~0W2Jݴ>J'/h]=M:./$ ATw/$syHCyKJ಍,fs<{кHԴ#d Gx ĨtO"e=j@`~"ܓvQ]+D׼ WB΍ޔSZiU=a *tAh7/w?"s3"EOp¡&{FM{UڏCZ܅/nZQ;~hb:yܩV5y_z㴀cF!M՘V {t[og@yǺc9Ld %0Ng|wkp+l_nuxq=F~Rs*q2ǨgXؠ%G G?;60{fL-¤xY/d Í?8w(##7l~s SSbt{^w mfuk2(bM]cH='p6i UQUs۸‡\@2@ ćj( ʘ6?ݛWo XXI5]^ ފ~ 1Qq]gxо ?OE #|Q )x.T9;/:8GԯUD{d\J8yu1vUq<=Ú*fiʞyr[ CڂJZ4wal/܄6pa]mgu,+<myf+)3|k( <2e'9]a Ľwwyu_`8_ \H"GM6ɸt[{]10ΒZ':߼#beO'YD,3ry:eԂȓW%*P];L|4)#=o3|f) EM)3/M枀Ai;z, uD  X?2JϷY !ȬJ"5#hv*_Ā(x}FIC1rJG 3zg +jR;QK "w f`Tm&:׿=S=ySEt`&$0L݇HSS قcb߁KoM!g/q(YXזyƲ?A/qnR",@ ,f_"mct(mZؤ*>ocJV*4(l~;&Jy C[m"2_- #Ze{7.dxHəՌa"ًZK6 FCTZnLn'[׼%5sD|i=ܞDd7Ji='B0 J" '9N3ͯҫ?0?vBFGU˺6:6$* /nN7=0 |CZ2#V4c:iA׷v+Y7T+›iڮrHI}},8mms,YJB^(-_hڳnV;+ B`*V>om 35>.ZOHn6uV_߶fT!56R˚nu/t‡.*nWga_=_dpw"F>MMf>P|UOH'*5UԋieZvye8U!Tr=b?Ek:/ #<`L$Km*0˙%~ S V$_XЂɍ琝yl6 s~~tscMOd:e2]^5?M,&ѿ懀VOZ;s:&T1Rµ<L%? Xi)μ$ vX{cAz|75 Ek4mk5 Υں17}Y R''U532=2=dY'"AхAQEU·!r?og#-?:@n5SlΫiYOW @D9z1+6gm Z: ]dK?ŁvEh6SoLs_mJy.g+4 <9ȡ#^a?QM08Rutמ:cCȂ+O";2"Z(e lH‡hw{g:95Á2}p A洩-s|MH܁/!3@88')%ی|ElD4/tP.1ɡIT i<5/j _k1bT qմ"+3^#^>yHڶl4t#rE,vEQaZ ?U8&*[*f8yCY .${ u{pޅ9Ŀ|se$BlFz.ҔYcǭ*30R=!{6##Sx'jȍyG4;ғ!W[{@4dbn[rvB:3_K(G7l{15aDC+nD0"oTN,Q7@BC5M{P4@mьÛLZO߯G]YߒմrvؔSZ-b,&%E7{mW@bM: a(iXؤ =|jwIBjC:~y!y: Ux7 >K9CE=OwuĢMU[m8hTngEŕ]8lssU:.x)~,=-tx彙h^=*b3A1yfk@=@S>>yhn6IV;5p`zIVr8e8Bu!@qK0tBꝀ$@<}XCg("[N 3 4\zL?M[WͣKAS3WXZ:89* ėq8Ok˓F|<,@W9`/WPn6YMдN53#;h칶P}%)Z;vG@}h Lu@AUe% k[SaXk^Ww=gGֲxzVnc5,*R8U=T4{ aDc,LEk86ڣ(nWrZ̉7G^Fb Ez_j~dMҞE/>53orf{v?Iݯ_XeOo棖m֟TT.vPb[j-f+zszco~_ I[a-S:Ws7&9R4xu٤|K4p]yON!"f۞lbqv Ԩ"M\@.vmKw34䕨^ЈRbQ,KD?6T:w%҈p~n;oNmzaTNq fOB46ONx2ؠNܩazGTz8UKًijNv;z&ʗt 2kSjjT8{2*wPW/dȉ(@p{34I</:cfv<䪤Hsai!Mc{>Y@X{fSOلbFO{p 25+e7 Jll1 ;xQA4Lc{&s?j,gD&HN]G9(! EWCnt0_ p,D0WӼWwb󢼺 ċkV[܀Ϯ T*ק?e\ |S8s"}FLMO@v`LXӲF xZf{ p 0~KC'ʖx9ԁQPU+,g5]_"Dr[Oρ +1NO˅m'oJLo{\n|$=\9Ӹ{W1ףR-ES*+yx/$߮Y3_E- (TuB.I{[cG$5՘l&ER9 7' NeeL[6\rOōO")]&}wMpyzYRq^yF*6K״=$"w8&0@&S/mۉ9=RHs_r@Eؒ-6ʁ)<(6sI~cHPC3!#wEBAU;;t-QC˟ՇWY ڊ0R|ՆUxI?Q`L`@@\ ˍKQ9vu ʚ4wp|1uvtC?ѝ!{V 1x-e:'L}C՜ׁ!\GsR%|El{#Qg,d5R$|F˭1X( VTέ4]hŇ Y5̀1?R}G!#J])أLOYs@N+ݫTS]װ<2`}9IJqKOpQcL4{QXb~`e 'ΎٹCCh󫉘>񼮰N[1^1O~eASz2wk}h4br NqF5>Â?Kc"OT;51=IY05,%(V=/-EU_:xBS_EC P45>ƚ(RF׋p}"9ѫ)i=GZclaՂnu=~IȖ"w\.jkhگV^KQRu^S74qtB yJvH$ef!k"ci""534ts]!x#g5<ɔg^:,3F3nLbt;ʍ/ޕ9 Zjᕍ0kDӑ% ˻ҢK84GF؇|WޞEI#TFMuQI񘜍ƾFaw;m^"7 6/,9>+2[cKK 6 #vj Bm&PAz=Ê{->p|[ fF /tˡBf5{!h'zE%mrF odRAͶrT[iƈ KD F ezXç&dmf+|)`$@;sf}*ʶ#90z ))+|V  ǒnA,B47iٶqoT-6:pH@D  *讦-)TfpY=W,@S9;:.^sj(/25B?m'3jh6U7xF7,mXX0ƽ!ޕW ¨6H#A"c_K Ti#MLD0[bϗY%{2<`2˜':\} V\_7F~F{^|q9%lYkkHb`(^5ɇXĽZS:!v?'Pb9g[Jh׍\"1o3@=?"Dž  zpT)x: M1 vr`$ .yQ8_@0{G42A!>n| 2_nr?P(3oD9muWK 4I5Mfb+V%z.Pd` xP{`Le{ZsQVᐏL}PEU=0(ZMYƤκq7_&7fmdӏ*M3C˾#Ctop:]E/T@UggᲂHQSUj]C"$"ϿaG?c=z )NRD6,6[}4|6]AިbO$YXw9#j$cCf""A %0U ,wn32*j%C;dLmb\*&7ftP`o3;,C lEpj_55dI,EK@P}'7I@VsVu'aG R&ü LF'թ&`dG*O !G |%ܨ^4!n"J#hIP,Pӥ.H/{}I-tLq \$ t@]D x"eOnU|MZdkH,nƝsd| AGC-nm>4x co f'4:Cު9JoЅ]lʘD$ A%j}nX6 fA%uFIK&B_Y6cƧvf”:l:@Ɛ3OՕ|EڬSdE5ۙt'WYw!0- Rjղj<Cox#Dl(6c>M*]IXRsmX+jNԠ{3kyW W GKۋL }'ķ)X@K#A.0Kȵm?*,VzF&?&W8y] (X=Ւ[ 2v?̄`3Rd &Sʈ`_IcĒ)MF'YU@~}V9H3Шle<:GBZ~7janď Qȅ#hObukD#";+,e%~ 0 8䘣Z:B+ҁh]$ ǧ DeǿTaSfjGa\HloIJ(Or ec},wdIҙ. *3 90ol?W"/n `# Pn.'ϔ8ܽ'?Iuɪ dҪvg@(U5BAs~:7غ\MhR{s89E~l0g]ySf nz$A.SKt>/ˈNRG;{;K#tNf(A0\FFʞ408\ <0ĢhT th1tA,ԂMf:&p|ˇU/xg0}xdhglcꂈe1»e& 6q<9ܚVUc)n`g:M G ˁk::iO6_Mh?osr4bBPpa~KrIyR#~_' ÓتW ^ ͆2)V.>v^ rFJ*DJpmH2V^?t\K<4]?)k!:PrIS`r‰貲}Fz E`[˧Xn=[v}]x#-(_~6b[##&ӁS]a{jIBx]$iݕ3B0Q5gZHpK򅾘ɧGѪ1@Kgs8ƓaT/5M^u y<5}A.>>뛢Ŕ)n+,Qrv1uR 'rEy>sHNwmǩҵR[hg78rxWŌTY%TE@>+a42ԅsGp$^]e( pmanZa<5][1 k A 츢BStgXi ss,} )A yp6HԽ۳ohbܨW;&FˬeKFcZ9{g9&&A01`F0ѓE_QEXR.KQ䛦^3FO]-T|fM)FJLIHS['+) 8M\zxx?aT.v/l6t(`m_A 8r+@#}9viq"ԥ|?A'L7 P}gѮ}i^G +դ {bρ ĵBSNE/IQ5w@?(+2sՊO9Ks!KԠ]P!a8oCc]5D >M2^ЙD #;zNĻ˅2LR;.bֱP渀ٱ/  EC}ԃ_mA,B]5 wyH8"[C4|<j=5wFY]c28Q.E Pۖ-o\{EJK@ A/~p]tPodV+ID:㖵wu" T o &2bPsLֈ#{#Cq^݉aIWs:``W3;[?5ޓX@U-1UI5d:MEI#ݚU`MVɜzm/ 脩OllUv+{ҽ;Cw rơޘZ= gl/@>6L,=0Wf:=ds  zHb+M] +d吣r,ʟgQu}ݪoNA1MtN1[m!o< 5Xf>C[$Ifu!4(mnDQsEv:՘i93n[(2 Di?Fqm/g>*wC|w2Ϲ_w@ZTb3rgDmO;U$yd%gýڰ^^ R 0i%VŘ=F`^?YˉRc :{&R nuڬN`U:ԪvY>i= f(E|Tś]T);uq}R.@>H 험˄'_" m]>$zήFn= ~?!/"s1CBCŊZ&̈QiLsCƭJzT_~%3o+LpZbWeKk9%|9лtKۢ F;BrJjdiY#@WGXXx&`M. ./ROa $mhK%'OB;FYbpj7obVqz8ysKeѬg]un-art`7;"Ѥ 9@u^":$̃]z3|+:w7HFtnٮK7ƞFG2/ u^ a}i0V"pzE],Yw@D vɺZ!2z(gvD7Pm|ջRr3T'Epa2[>>K] aj*\ E?9+MFϥ6g{\wya~?U}>yKw!wB NW ͩ qϵ`9M{ ,^9-%#Ǭ@9OO^ìtn 2rMBi;ҷ#b_y+* 0._׍w1W%*}hΎ!K٪/+%Å@# ^a>V[],7u(A "*"3Q:$:>pk}×51.VOn̬M<Ͽ+he x3nxשvd Oౄx7=r/o SnF+a&iIB:`ZRccel/ry#?OYs o󚔾w_\ S\v y[\鲣c)mEPv8Rl 2hk_̸? 1cY}"!T(#*xf򤌭1 <ץ𰱝Ě!RlnyN [.]j3`5wfim>J IZncp7|OcҩGҷ>\`=rhyySqbʜH&?J6OC:܌ yy|xP/%¨5ڍU.BLb9fEqdVfH9Mrd`R >W-b4(Rʿl*Ÿ;:0ίܿ(Hocj8}H?3Crb/\ky2ijJ;YC Cg6ޯ8}O̡"p)yEj'uǣQ|$AC#MGD4rt=?s]XGE"rF]lp`J%&b_ޫ=k#@a/*Cj_&9IIWH "M|Ht^cm/ÝU E+:FO?(.f 9|EL ГˢRli-3EC9O>لZcab豀جtZd%s[/q|sZ5~'WcXf#`.rCnvr -ah!Fiޭ4GD40[ 21կ:}eP% ,hRsA4vKDA+Gt{onۊuQä8oww$'Of1901(mX:#>*si bs+"G-<'P xQ.y B) W,ֱO_τrU&M d:|A+pχԪwzJ`rрUP8)dFBK#~!NtA3*UBC;k`nӐ%/<4K40C]װ;$"ě/"VS~Py::q;&?H6mA*ڈ-~Ǣ^(pᏁBUh6t{-e/J5oe@蘊j%%x:5#/ 1#$ሒF)QjRs D/nJgE9jҺhTXcQBqZ6R4P|w`$h ք# eqKn23 74TghTz4F%n/H|HtJdb+p%lWcO;ɕboZvjn]c>|%#)wBo{ŜknYf-%ĊF%cz9;_>z 9C 6R+Rpu;EO:8*kCpܜo]L=ꆻ{ -2fecR0ˀޖؓ:x2.vQe9"xa V5 avSiX|-& 셩B2 euEb#{#녝 .xc"|qE bd8Zᩃ< ,\H_$,;>Opǧ|kDdN* ꑛ6,# .0C&@[wvg?]C,1OZ( O@ݲ պ;^z]]8Mn3)颭 -⎧(c; i"u$jEGMiIYBg(lE_5sWQEphgjSir[Ql wp/x gI{vY/j +*#fGU~XY!`$dAdL85e%K^W v^9;nC\*!L1Py5_S۶5 sjW/,Qqoɐצ97)펓sdf/nu`qo_^1/eynbWyV:X_\I|m8fIX x"RgTWp14>8¾T!l '$T;Y-`{jJ7H\8_bٗ\"U\\=xܵ30`6LwM/i;.[Δ-l̏=hAHDŽOKٖ.'KU蕶9YoR}GruN7u&KQ-S5,⏞eP6  y4$oCH%Ic#\x%nlkxE̘ MahTLRfG.xG PY*W*7Ktb u2QZ~ ]}0&Nk~ 7t`*ܼz2ÁQPܜa+zM5] U}dSzZ0E\y/ ,![d^{G-KL:MSkd&# G+?mvH\ ü$2k} 9,>8Ve..? :Ơ~ξLmu@v"E:dʯh1.R ?Ưv82là [!Tb cO5Jb ÊL-0hNII;l,AX`W1΂"7@ iD÷uY`miuu}&ҼHdM ? ;/j<+@ [ =[HdhJ|Yid- o1~o֮j2D.$x3 E\u4_F -ۃIS-Uñu=HQSv,|t9b]QM").AǙ2FB`\[nUfw&(UrRN.@ƕctÐD+Ɛwof&mW/-vQDZ<1+: @Z0VbN ZIE(I<::I54Z"LKzGKdmY1\moݹuEҊh$UUM%#mj_w^!'Jڵ%(OnރX{U?>2F]eCIߨe)fŠ{Q!\HV(F{:1tXH3/f<; :K[b[{F!57j',l0oy jD0=τ\SpzBE1i20(Έ,5z'1rs]??s '喀HK2/7GgƉ/WF,Mɸ`L'9fY |pQ-2iᔉ_a&jN:0ռ '.!K0EX OʑI o[r~_XS1V{W&f|0+ؒ+o![@T /w)ߴ6e< ,gw ۊ)9g$=[H:o S !C.ضލ)qAơv=ID˽v$驙\m9ײwt] ʠ6^:8H䅻`]f w4Dϑ5KJW ~7zpiF: XDi$H^E%AVS=yFSLE$v4KLE (p jZy*lp!i`u@VP1%Hwx +E= iyA>/Х^hM_:")e6+Z8F9DbT|::Ӊ[Φ<`L(0JX&OUh;4D1ZM ? LN8:q@GANT|y3^hrpUEǽКwl^ 3aFF*A&a2j6J~'<%aMG)K#c~_l=8\4mtHAn&&P(H>ܴ'唇i!s. DbB:APԶo) 6 PJb6I\b,/pM|T )* (xjy8bj/NKSwɟ 3kP,`-hMG&Br0 ,NQ ӡTb){ US3FE4;9$a--_*/ %T ŪO^c>xSzOmlՕ7I{KG§VlY!&|{,BUrLhZ <\ չ],8 ٹKFEEb"?|+Y^IT\sy٬Z+"f05fЯEi& P4x"wkۅo{.6Jz0S+6Ю#vp>/%w:y `¥sNS]b $$@+&V Flc,W({z- O2Lh_8{eA>h41N^uƧ?⇖+iu~\\3c1Oժca` b qd]a3)NM/[:l폨"p.#ypy '>ERTlj<:/٪Su@ &jYϚ˪nU^ ŭԶ?˗e?kBk46mi|E.2=M}\ƂWiARE.G_g)_QO@N1d0"&/l4gmk-&UdAN[D M. OQ/zK3-k}3olGVd5WI60É'c)_eZT/ܣK>S$h.Y[s71A!>`F~͎@W nC5ŇV Lw)W9Y W=%ibek5"Fr,쐇JBK@<.1>̖7h;sݩ|KFg$0MI+Ri->(T"Oa9̢-S$ #Xx7SB}G4+=s`!hO ;ꭶ ?2!LCX,n~)09+4Fg˺W݃ё_ &a>4ޘ@St 3:t8wNלMq4^*_/'drbWN! |`Xг?)>4 jHrID/^t&VӜ!. $!jMiBaa/3'[TV;ِ-jF;'/WŠcO"9mFݩC$4s;a)\dH )z!L7|@B*>aJfAph Z>lY;Al2VgHluStC&bINT SJ45rxKE0&K.#./KT+92v/*;,OF|눜PNl2pu_9gǂ\䤹܌) 2>Xgg6 G"{'?NRѮ(BP"N:7X2C $T%.wڻBxΑjD;%<0+UuUM**9!@h%VgpiۇmuG1oE,`q rTvv)Iw|3JgNKwgWOW3ѽt<:ANnXUY@Oru&ᢶөIrEVٮ 2+i!1YE7GysR~ƍwLkV,dZ+)+KY64[iáOf}H|x_l֗!B}ԡ d P" dJrS4"fQ'3cgąRR0rbaQpfo1|&>!6Vc]k#lCgk[ipYHѬI'@ͦ/ ޹. XXYq=öLu& *)ρѫ:N\!۳b/.|<hY&}cHa#sEJ=Po;ؒDV|39#b*> 잭MQYSXNX#_!@n+?aZAʄ\B)PT3\4G@L>oHry:v;XtփɭJBp@r6<1O:=#0O F&ӑDL' ~V5JNmV]N̓u@/&@礔ڒe.>SZqE/qq=u?X;J csZlm|~]4R J=~Gps>$/z|@.In scR XU @66p }e)7ʹ 3(`u:]xAQᩫ`%@@a $M&9sL?Ճyf\Z?^+PW yf~9:] CۤFFdY]zVP3ykeXOM֪>7yw]E-}M,ҌiCގp,zA/ W{&e?mD}!ZOПIunKg855``jmIؑubH<-ԲteG{sՎ[ ˊU}Ñuz45gț;CyW?\sR,N\*تfi!]H*sr#2{X] Q%]Sq`RU5VksƋ&);KyH3$΢f(@-jZ!0`"54mD~,cOZ^@UQ,y婃:ң'8{iaHC6˟K}a*ж_.5]`&~K+gq]zXu)G ]8ռޏ ^4a!g'0QKm?n7#{Ϭ<&H;/4pJtQu'Fo/nwjV{+u%C#1JDJxEuȸ$4d_?kW o/PQyKEE qx($oɔ[N$R1/O Cԯ IlJd䇁m1-&e`R&yb"$|qSVG6Fŀ@ gHokL;~>;%@s8 ojܻ֎}"x$ !9s :J.6o1qWrskHRW/% -)A5ZH{?3{ Bm S-!p^(׬0lŵ(ܮ]`|lc\ط؁Tݹ6.f[̶<ͨr+0Sv繬S΁[+h;̳%;0H.ir.CȾlt`$T.8{iFn&6_͇O뫬:{]\P'FJBN8#-U3ws uնlֆiKQ,03RwD'k"f3&aW]H_t7җd`x{78*Ȟ:_FE }qAildG9Zh6f.$Ⱦ BG*yHSAx$=[J0*gm6ljtB ?T:Veh&=_ ko5B~?^0\a'{}VC7n#L>f c].XXz&s|xɟf[~"9,";Gi50jc }g48k<C/Yk J;Yգ u'0GcYCB\>j]ͼ9XJo*@,s ӈ7ohRTQ%6BdfOv|A#` RŨIۿan&A3_[0N^IÜ~mclN$@E@k'(UMD6.<3/16];q֦M'C -K [r!N!VQaHvW]+Sx̏GBrBzC5D:vȝj$" o1 Cɡhtߌ 5+Sj@aaO+m@BpPաCed}˞[BtȩwF]Tas!L_ μJi /4*.7oT2=fUb]osnǃ~mkMC/*,-wI\C /hǁwq̕[hS>#NԆJ gvowTl}ʣn&I~Ws_je葓g=9RDzh{`=~L*nM$ ,qL/(8hlcȪjQ~x9(Nэ&P{~U/yg3钲){_SnCЇG1CFj|yVښ_A3Id,8APz7+0I,T/(NӒrrIGnD j$CRJ߬gA>:[<)^-QŘ !]-M,B0#IUl5w[ H ؚHW:9Bi>CDguNnv?> ݿ:WPĶG]ؠ|Nɕ z5zJcZub&e,S>{H‹t_a5|qQŶ"eLץu7K F+*K"lu\ cXg|\yWG4(S LSR * eGb_v*BBn7JYшE.B/='`_%6 3Ii)jMshRi؍ǿ]})/v$kg0Sʮ_t{x)nO MyCBיbuO.WU=q։N)e'`>&*QnIFK}07dx>g+ uʄ_Fyj'Y_Cv}H|lb؃h1YS.mȩ&X)ݡs6]BsN:b3FwYV!'5LZ:&"G'˄ez흢-fPE;zsNL \ya52"IwT;x_{@|ǩ+F7 e3׵j zlp:|LY7M[2oFl8sR 'suá͕vYzJȯ8_#*bG S+QHg=E ֢6O>OtT]Z>bc:LA/|= ȄSa) 8 ]CDWF`rKM}'A`'qe$ݟid áȭ{|pEƟ-y!& %!lj +NQ:8XΑ" Ԍ| [C39d? 'ti&뎏jUsbA ХgŐ\w K#']V!wy ]%Ԙ2>`T% X'F vk s4 -[G!=ygC:ӫZYZ6*#{3}J '5?:$F>co.}l@~AntB$#ЍPjÚ}`Nq_tBAzZ{|{qbYQX\=Ɵ]կ|-ģS7Z8;I uuf@ 8}ꉁrb$e /\mL `Zˀ/ZY=oeӫ:WD~S&O#9Sbg%lOqzDz/8CTRCy/dߙ[$d9D/v#??7rWVfŴ 'P,ppZT0ڌ뉧Xl \7LlgqJjG#dOX.ejXiDԗkm)Ƨ. ewuL'U^9پp6hV'MaX1r](#S8l=ӄ̴Fly@xT!? YՌԴ~I6,^{N7 &umnH8HH4˅aETZxfK67ٌPJ2)5=V*/ ۠6M%w:N'ZvٴH"^:g~(ۈ&j(N),$u_se{~:qSOeRØ |O_ONV슂FG" S5Kظ Ov :'NlJ\Wlcxrs%*AV+hyY.L8xBpɖ -bF"fǪ;rg()32>0;_P~4S8dJRCȄ5GƬLƇ*wt_KTw9yE;rTt l! #<,t9 q#:CW%-"~4_kWV7'1)n@ c<1l{|q1/v:%)Ng켚Nz$j?hkI$.E/]f-FYdRSE)rG_uswQiSBK eJ{nuR9TY[) z$E\wdwZf~dyû$}Q/nCU Yn8V`x+'YBtک)z!#rQhXa L['_f0}&BW(RC|hFK͛ 3h3}.wp1* 'skx91Ge=x ~ȍDc~3,nZz2w7r9r-ޚpCCKYG ~2cs; KZo&.5X,5EfG6֥@#u .g,̻jʾ^P12|?3J ~gKRz c! =M}_Pw ;eƅ&ُ=@\۞>.DB!P%jc6W}Z xV^KP&J+߁m&<77)KEL0[Po&K "]PCMM,CLq$7/!uqpyʺuw_tk\"Ζ9|@FdL2†T^Eț$-}MzmPdSn2*.q*"Gaaد͊4l2uM87Ѽ G.//A5FP:BfNTL>3p? ünwG\gfE> rLU0w&%{:g1+)d"{oB0L7FEatrn]].wAay):tɩ4ny[S]Ty&{Y+zxR60{gaSG%Oƙ%p XxoJ]٬@u&I1'ʊRyj!(s<̂.:??:#& VXyfnj?.[| >.k{3X*~b!D?\pQNw@´ӢxzEO;_XZu6U~&<0!Iw4P mѕܔ[m9|a`rT]QBI>{/ ͡!璎uۅS1~JUuxsUL)%]ZJ]m?gb)rPG26¿"uSze\z7Va%ئ 08{MOm +Y@ lr;RWK/زsز"}0MD |@_ & h- =/K_(=4xFYd<ФfuJ4R#3ŶWZ.D>+;]y~mw'QgnrW Ah9O*sj뾷ȏ, KA9s\ܧC|@09ѝ v _e3szIwgqt_L>gHɐ IpU(C뜍BtcSe羅XKbN#"hcN|[j#IʸCj>Sq4З"lM9S޼D8s1ɉ~>'-%iȔ\:UX1v}:Ͼek? 5OIa}XPn9ʐᠺKx,\coa4W \sQN6TeeM^0 KƻICW[C䖀a QCB'4+pa;7^k 4~W!v'` [ye.J:‘o:$K@BJ_Os#hOBA +0^>k8!$; JjHoA[P=p̓I+Mz `)A4 [q?!J/:*bܶ?JcdFM+z Yw?C^3"b9DǺ@RzWOѕ,ʷ^ Slq.Nv|R?ImK Ebw%zM4p RgAB!xˊ )E!^Z*hB4%"u}sO(5J(lF=AzA@'wGiG =(׎`=2]loިBBw($:~}63~}fȔf߰RIFqUimԭ3}m@0vL&}V)g'wցbEPуh:c2UT| B004xp[ndKԠU<h衺eq-Vh,_2uhTC++{Xn-oQUm T0kq?sҝmTc:{CHBP\%l=deʃTe1&fFA9c_{'n຋Z LPK4~vh&Mv# ^?>/#S4/ܕ&.W͍kw"+p \f9Dm]ٹ|JSh;{91(.U+[~BĪ$۸߂,PM$}U;1*ߔ?)rm7ɳc5Yh?+nhRkO=ӄA^ƵP8˗ww%/F~+8^NI|4_ P[B? cX+'?|+so%XCOFB&^`ԮcQEK~8E6&B;qM3vn-BqVʱ=Xy|0.oJD5ϯ#VYﶹl<ހj8%r}y^t*P,q=]RÇ8avM6Y6khF2v=xJ )BЀ5H%߲59MM0C4m 0qՓ ܫ&ԣ9[ ANLש)[4))dl&i kkǾv۩LtXX dcd5D5k91n Zr>kOtLejȷMJyؽj#h\ `d._䒎؆@ ڍwd+'wy-x@w*Ύˎ Ǭ: ϏXQ NyͮȞPMe!x_g {r)"WYc9d<,ĻLN8"aW m;1迍xTGD`BzjI:b׮6 >qHM ZԼO?a=nx8AxGcӳyY ^FtaH-9CYJӷ\76[: ˯dtZ'ˉO mvp1eCTC>e}eXni+(Q ?|X#![Y xpQ#i~edz# ?4<Ocv@lhfÚ>}v|aJ$G|9T{#AFVLU[ +ZuX;BU](3Wh3.ߌwVd9W ܱ ; x6T–U8P)atmXWYp嶗J+sn #X҂[uTv%{0 6f, csI7ew4PK l2gPie)כ]% )KHm^/9U6OFmi͋o}/+xٯ#%Вmݸ.a{B 6?J,)} zdMo˥a{0]IF9ZNιUgfCLIJͿL>W+SGbuL{mڈo 6Q#~ZQ_!UCN1D h}p)@sQMK.Vl*Hwg?wF;9<@5N=0 z5zWy&'y`ksKQj`Ф%+A9'8i7$i `*'FusFU|gu'M?+b!z vl+XCX6U;Iz%Oy;8Af R טُt"(k*Rc<<^ [p"pL"pCD wstͮx!ZɉMc롢v]639KPzj<X{NS0iPUQhGYxĉ+5ubNƃ~;6!)C2Jk3nU h K*a*AH;n6a9^Iʊe$7ΈZB/ {C|\ Q{Bc^ Vn=ktw2N&EK p|%B-@21\nҙpCW S1])#I^ɲ[=ܯ-BW&Hj}Ԣ!μY$mw=;2:udBF!ڧf ٮ+][Az]^!П9"޶Y_þlf fu!꼜g?2m'i0Et6s,cڍh;; ېRj›O_vzRg\[ CuwWl7ԋ&2?uv=ÛnӔuv)"-OCa`C3uÚ%9{Oܕ0Y@Xg-+zEл gבyZW6hM }´vSK!QE?nÏ]f^ Νa/q5 rV]Qb Wi*ݚ)fL\xG]HvDz7fJ,'N'|?[u,tuJ ^:r)P)gO&M:i Y~׈7\M)S3.< F 4ܦ`%U:" KAñ"uCOg:0T RZ -۱<)T oR0[7(yͼJ(h^[>OGi{TkZP=MGʹ h'YV!ҘE(= q-."!!Kڮu{m8_E=< u AbB5˧">5PD~_$d(͉_YF}_5{q,VV'CԵDŽpϟ`ЏU{C2rbƖ\ /Q&/YvE9՟ }-##͵_~2VXX[JN- JC!'ٹ?h7|ⅻq_ 6b{>/^{MjmcX.!X=;#~̙i4 uI1|qEFK-8gs'I>J[Y{9C^z _ä=t>3bZ<bH)͸KmV/ d<Ĝ\`O#i맍Gl;xA˱ Q_V|ttuEDw{[3#+yrr tL&T;~7ݞR暆VikR){Kl.:u-DpVۣc?|_i?ED`"wҊ0jXNI1ćBI"{;ELU/y[6i.z>T7Y54nr[WVN"@ F@[Jo+˾>M@GiMEɝa^CpF!\+N埅Q-uegBoQ<a˗x\q 1ص#CB_ W&%0ЖӸOBƾκ֬pÝ>j-C:oЯ-NZp\D!:ixs5 -ö`.(jQ5ք[{EV% (.Ԣv ^"*{.D4%<Y%{:SΕ8Qi?WdQ·&9*C6 ڠ8vkNΐѤ2d }?Co[eʇ[+rqڨgYt["w1ƿ,_ĢuFAɍ 4q"h=Tn *WZPH7DV;KseJ\XBO(Fg;AG@PXDK(`k9Udt6eMq(j6c~я%]Lazy BcsZ&ya~ B( &GWNLJ ߍ0OgmtW1Uo+Ϭ8|*FÔrz&sEj'>!5̘ubjsfDeQbԨw. rj|prlDS5()AA >*(,TH =Tbrzv6BD<&5;°~ޢpnyR6j> ['04p앣7 I V Q9 3!ծYtLՁ>?\ ME UIYCp7[Qnb69Fʧ.jdy6<(pE5 J3F2gN XV?$r]Y.E@WƑnƌ{&qٕ yw~ &ls%y$2ލFa,2w~bBQdU8cf>baɠS@ГE:xFMoRC.FD%8^ni@^L {"dXǰ^l&ݞY!s]aˆpz^{vx;&\L=6n"MVc_WͰ5)K|] T4d\Pjѩ=H?J5OTeR#~!Z7N+"* FBK.8U|5쭦NVZ2Hĭ꟪-ihuhp\Xvai$X+bL6U 1|W[ ٽ΄D ¯cg3O0ehnƺ5 bSe W<"R4SC _uV%YqLj'Ͻ`֨` 's&U!{Qu}%& ޷AD~ zТ4 hn祢)P5u~ݾI~GLm&*ڐx L76LcP 2@3RGą``r Em>/?d+E'iz \d klK҇Hl\}.q񾡮u+ )C; (ؑ{L 3vv*&߻ ܌,F `uUVCN{c(Pa]2"3׶bzR؞R8S S& R@AT}p7k/SUf(/B4B\hŝPicqۋpWY#%إw'idž_{ؑFAzr  Pɀ,ZK6[B\A s `mSJB/0| JaCH;l|鹬wS8l$* oVYA&db~x A".aC+))Lʷ=h5$1$G9_[f6o ٌ\1JW:JڋD+uL" A5k癊ص#Njv' uжGyԄ d挲i޵l/-A< ڜcnzؾ%)Lq]U9B"W:(LcA@W4_0BA]˯ NI#1 dm錂=]zP2[L5бA0H/ye}|bp=m(ؒ O akkqnVed.VՉ*](YkP6ۺ~nâ`ߢ7=Y_Je\ALkŽ[-01}LrGqg]#Ip 8z֡8qncf -fj=VH킴siU aCw{O:Pfkd ~0TbJ |E 4.~b\NTĞ im$⭇>h]jg0.jM/>6b'%qH}"dj^!sdVm{uө<6zu?ik_n>B#HG-Kݝ4F- זMA?'$G ؠɓs0{qb) $/ִ(h ś=+%yP(xe?ĀQkm'6Gz5C<֬ 3nIH -;BrH XU)hŪ7K]K]ڭv#Hdl-OӸ͘ypS&ZM9s{֮`!/Z@W@[*;>""CFX3fYF =[]3@DJ9M4cJT<NFʼn/핤Qs.$ .dg!PΫUo-: ̆f%P@֏J~*7ߎq!sYҊ.%;:TY8ie&`/h.?Wb 'מ 'Ąr'yf3(0M(c#ih4W5F|Y+: =7gP@sr~[kuQG#b!V,<ȩI7oܿ-Ncv-=b|=tBLfYnԈ$c-]`ߩ LOk OoFCaF"Pk*Z;;|}#umk\UgKWkcK~3)F׊74K)6샠v*&+Ʃﵱr󈰰6 bj׹bwHBΟ72`s[уM{+!nI]'|";u`_R߶.SP C~NJ^ش>O y.tl @; P\Շ2,Ynq+!7M~#@502wK)rbȎ͛$`_̀uh>>;2 W8c 35NJuec9*\?9(#B!"qdEujE&Twd{wJ"D,QyܟoW8Krjn $:I8^S2V$$W<(Yƞo ]2seR3϶ƌNϵzVn>p*Q/̓豱( !" )!WN_"z"dHVF@nR~6֮+x%_89M@A@ rpny`ъLGL9+(gjMbW^;.5v`!gZxQOC9֦I[gfA՗ е2'?%(&JCߢ}xGfO >b[~l}NukZym`PyVíWCVp.f?)u3`|R͘~UQ' /΃;sYgLv%"#/]jFZ K?#س]awwFLֿ?Ģ'.xG0wV k4oǻ3hMf!>ÌLa4*趬e_g@ՙ|;t} GT0_҅Ob I7u l1L+ɨ3p 36#96ˋC J{MmJS!iw>\3%QTuRk. 2Jy;ǶvvVk ?r7E}( N`]Bm1rrw Q䁨#2 yt~~41ÍM@pcF\E_HRjod븰P(7Ԟ谌%}6DrNۋ #Kh&m#Pajng.+A'`ѝ/OljEcpT@ܚw-&}4V/BG3q㾆= nfV)2N7CpuLedGZ|ꦃZ遨jjϰyP]@TX&>mFxS.0DQdS4T1~tzLRؔ pK;4ͪ’ dkid<5ۺJ .oy_QKFw>̵sȺ?$LC ]!bYaSdC ZwI\WSgs5ʥy%ebR+#aږ y)3>;M` bt;#k^֓/\d 7OI=,WM6gLPpS^zQ:[d8h~׫eqIf)ز<#˸^E/@ԝ|iu҄Y>gN/kSu~d+Z{t<5)ooF2brdXJu- XS$5~rބ _o,D.7^9Dh?"\ed)5`$^h 0B8$DDLbw L ˍNnPǢZ.,UMuׂR XS 䳳rIikGVq >,g~F09:;wl䍖Q?Fv3}gbt,K k)NEꅍfIzZ|T*SQdz_ %;<1}{|AO5*BCSjlqj#v{3hl|5T~oSNBX΄GnakPK%7qpQ)ޏW+x볽(d&Oag X< 2\VxIyOuZt>28Ӵ; p34@a(aN0J~K=#@LWڛOz!  !K OL`Tot%-ɗaIdM@߃lz?+tj_L ' Ra&0L֬QS@4ʷ5'ɴ@hefScu3_٧``wNc>TN\`~>x\FGi '8'~ ,;u|rH76[%$rlyRXk0ߧrEE/]@:apŨR'H9/C 9=tSe/:/v!ϋCF7BXӂx\9[;BIF~b ~Щy!5 M99@~lq@c^"@B, =:m7|A/3t1\*24O'6l~DΗ[1ZbRG"nF\PsU¹`}?UuMQ"\ˍ%ߊWtlr6"؈NtMj@^X?ȒL47О㵾t B0=Ԑ H{(R M@OO@\<șnݴח)5upTYo/8×ۅ [bf?]4W6]7Lz= G EIUDBs1Ʌ#Y'ԧ\v9V;vL` R ,O ?|R1C?. }7(`Y,4;wjA zm=IV?pN+k$ӚPtFg\pSږ7"Ct ݜKEiTicųrlaT`Nu//@ғrU$,0kdh GT3RNFpo/VoK#-%-oY[$څ6gLv);ضw)J]ez{\C1hII*29<4w8Rݰb{:<<$ !طb^|Vyfy$VʢS[:rWH~-;;@Z]ib]{= {Bi5*F#ę.N2M 0FPlU^tU մ/x P%",t qȁgQQ벪2]ɱ'Je fߜ`~ xׯ֞| bNX#Č/0[co!` <ۘf?P5Q ;g!0˧uE2( _2(JfQnZѽIY22N9R睩혚I!0֊"~Ģ Uyjτ(})]*9U w"Rng܅Qx_i`a zH߂ӼŽRx6 7;gC D `ή[^9݊o v嶃ay /. %fìx@6^ 7Q2[ bt6-&=ܿ!(B. C QlY}Z_Z`I!Bk[yZ:4ጔ SJzHwQ`!<%`W9{)H:Ut5IkΛaM3eLQe۬-@}&ĘSs='#ō'|]Kr["碝 ̜Px?X-u nM\&ئG1Ԓ"q2Dxi SM:Fu4ʲҔhxw5\[%!VƯ$IPݙTZ 6@˒aP K9e"С`hFԺB:p$b,ĊRW513[„:۴u ܵ.|4ݾ亹_Ъ.o<Zo.صiEll N+bAr3y{ܫe.}1 -!JV]ɞR2YGyBOmeIKA6 ZhEa⢦E^TIyB y68Mvv02Al6}M&[P\te )vt =1:Rf|گve_dd7RK N{y _ׄh/"9 ^ak4!U}{*?(B\|&+2mq֍'.@ SXҼ~kʠ g\A/g'bM7z\݊lSόugKKxf&׺~ \F[i3FXfc&pV*@ r ױJ5Z/eiw[Cn9Fpxq|؏q_4[Ox&AŒ?Ս cM̳16.t0vxcc,Dߪ/cG&one(- :3嵽k>+"y:'ˡn.F`eGÃwUo]]iz-as`I?\-1Yh' "ؿ'^:@_WŸ<ymfS\&m8KɂY#Es0 r\+E }28VJ|rml#ǺӺsV`O_,(PCp#ijCB,1q[7"s-iFgC-.tsnGKiv` 6_|mwm續A)/=HIrT1<$b+ϯTċ^/i~?4>66|Hs^X$SNEFr.a/xW_w+CwuqZڟp/Fp[[SXxbJ9~᧥Dž;.InFy5hꍭ])NUvy-Q0]eADcF(`~ t..&od*c"S=HC SɰRf'XnTVc7lErx_s,PVѤesb re]ߎ}7%I”%cԍ2|ExEo>v 8|m es.3 eOrCd@%E.Dہ`h64BrOV%9> v=sЧqI_#`~dXM]!>a$ ZSHS3J'SZ%{ǝLB pFps&Zp-RЛ)Lah]ëA]3Sw2dkWП߮xdkC9T䆠ƶPk~XK[{zV)/4ψf5:GHC@ ?cь^hf9wGn*iuोpzp9]-*>3䣂ntԻClm?g1wFíbZHyrZ[^o/ _@J{/Q̌&jb8lPZ`#0Q\I@g! ns#'PF?QCʕ )zPW@lm?oXR6^Ot\UUa}C~}yH8pWJ7a6o0^eRbÚOK$Q+gnۿg2UԊ #OԠ/6ړ:S!= e#rsB<'aXߑrgG6\pcCFZ7ԓőKX}\g|0@Pi̤/OcܤƿYW3{phnJq@BoXfPvd5!02C%1 "#z?έIvKGEB 2Le77ZoƙO.K\&D lF,P!;"OCS]벚|,z[&&R9 V9)YT,||Sq R^-dII1tȂ*߷kRJ6R~2ʴ@KA`ȳ~+dCy$͗Hhbwrd^Fv-54T2u1=2_y_RyX9Kc럲 ;ˤk%d0P ݄ sG~bCNjJ/%ewJqթ`>PMx\8+G}|Ӽaf)׹)?oJщ*-g|-팔~Ԏ݆Rl5 ~\4$>U۠2vj;I 3*G[5:-rӮÞ>KLuGGCr#UL$3CLث*񅍹/TOhϻqVzCChMX({3Z^B+'v5g-牬[иGyK@N1 Y!ueMm~.jPՅHsۇ a\&i KL%n(}x1$+btNѻ2ԛD^KP6mOU(q6)r5%503VᅇIoS\z%&G=A5ksb,o?OA:v*q^Nڴ}RWu1>ª #uXwd?.ͷJj+ zo3wlTD5J5L'-nMmʡ-N97]Zq4&iP]4knˆȷ> .Y&&y9(U`^v&OBl'yI^^ }y>K0ьS':#۸ÊeNas?|HsI6=|`tVJEE#dC,zI9CV wɽ`G[Rw0C0)Hoca$->XZ]7,cڌjR7%Ϥ=mUjoQ%йb1Gz'kzJ{2%E`s+z'sDvQ쫧@c67Cc>2 LʹbQT*Q&q1{., ωp? bUG%YgX$PЂZVZ1ENy4a;MZg^',6M1zc[0.V7^JS% -5LO4@";299&Lr%FHt)"/;r~jR՞s5=01*6Mȯ&2P2\5Z}ww!h)mkDf0Y[L,%{o2(+x3:*Q[c;۞X!̅uO Yx@sQqjHiК'?̠@xk}EО**k!!qFP~!>F:rq*b[6"DE.j^=Ctѓ,O/'8&D 2Pzi6L9ڬR!"0Ә{pK4"Ht0brz?`<$95#gQ| yi.OKˌdi; JiElfÅQ46*Ψ~@vߝT.%>_W6*,3Ɲ! 2-]F/W4𰰋mк&!׈e>\/KЍ|j s7aC&~a*nu*^W\[5&z~1I!GdAҬu?@%o,OB|M _ v%ҜEZhDn5;hE3l"'G[/=3^DY~-ej 7W]~3۫6gKevDb2vg3UPFaGxIyͯ$4 =)Y+y 5Р?vQtSD=N:sŅ\1Lu*M|@!ɭ+/)faʪDaڛ.:n=z~Ѓ:⤄F?hl-`ֈzIbjH!;U Aq-ҭ>?kll,_za}V61P@LX[c$L)>/s}V~,-z(MP!hWgd"l@3D]xc N- mCU?12St,h+:{'#%H>Ϭ޶+w׏:b>aN#e>-W ^+)2Diaj2ngư,D KtAE<{XFN^m׋!nKeѷN-zb˒+IqfE &_uқ<5")H)TEէf?-nZ,cq2Da뚂oX;Ǻ3hF0l"ل׋0]NW_pϰx WyrIt({jV?Y`  0~:(J=M9.4^Jg3y>8?v5TeWݩ0llg e /_X0S';g8=IQ3"tgi4ko"gwp/X]ktsY 9D`w@ĺxT*p#4z buO/ˇnTi3"d%+b6iY1NֶT6a[/<ތ!բ #|\~L)J av"?{$ ־2dY)O^[OΥ٫}9x?= (lߥ Ijj{5%TE[Ipڿsך{c߶'l=ȂN;l<9oWV~|2+,;ݳ(r'F/49%h(Ϣ0)wIh-dQQbr<v囇 B2s?OnŠ^L%لAlF-tY˧!=RnſΪg=E]G'*z󠲛;fj>A˰,o.|#щˌ-qR  A"Q&^ZF2?Śu 2%΢$5=;٥!K1]AލbCKme>"\oPC0F{'-oGjOc6|u5ԫCЈ@}3BDU 7|<-~E(e3&9aEmbʓssȷp-ОZ*Zrw0b7)JE*'Zt﹙ZI.AY3bg_&b7IMVZbA&#68R6`BMڏ8h |pq" (*NTo#3*\̯x\}O6V]7:oK"=_dh7$nOk8BwqIQ(^1 }8غERT"_33mP`кeAIs`O(U8iT|dg+L7&]$FLdcWcƘ Ǣm߉PhdX&>ԆGU_cNPly#Xc=HгIt[Y2#v@_iYX$B~WU:LCA?gH+kʵPY+L1mAhaՆ=ͽ?uOpX@p QJEg+Dqe@$<0#N_* ,Kp^*L@\O \6.+ܜR=^\睪A˺PM_15a2RnÃ'>{`Me.ľGC*?OTMi9| 69$vUi(U.&\Q' =fms4˜L%,AAYC/D&!=^E`Nhxëӟ@{t^u"'S2vrP. bm]lc3G&A:MayџlcOڿ# /^h-+OY_ הf\F~էA)&[))JW<ێuqᙦXd9l~ 溪/2&hIܸdw+H̻C%Ճt!X|!E)tW Pƀ3ՠd}p_4GD8TeL#F06/bskΖ+…%p/jxRø&teR/C&;쾵cpf,? W67S*QX-& ;.rZ̧o*nc K"ºa{Z-tJpࡐbe38b2Dв^`TM> %;喭@(ufǺ<mL./`|:OC${TŮMT7F20cbW(fҒ+I=diț#O7,\0'vPxlzjUy߯F.>(J\lj ii96ycq[~9Ycu =yiV n[[O-P=q;Z[$Wf{Jy@Uz@\Ck3? ϟۺψ^$K7ݖ+/4uLKQֲ1hVNw6k!%WHb58їJk왑$6u,"h25DI$"pQDEJeN׈?[ܡUӘ:Kjq$v#kmf兼5|U[i'*eC2r2:@ B3IX %qӺ^{ 6l7F>riLD#|&+g xFB- %p?k(^bqONTTqE{ GUGn{%.\@TuDްi9DF]b/:d̓/ラad#8L;q†}o{Le-ۈ ꬅv5kBd6J^#V  [IFB|NTꝽkqբ_TA떯!#b͛ ܃zɗiO t{! 3[W-Gmޯ Rp]˗/v̵j1Oj4(C8|S[c K$9LRAHY꜔ YܢN|heY*j<9<) .& g[[0G  #Iq`Kf-fzf7[zݪQ?"]P(oPz=fWVnH!L\YGB4H9ߴ幼F ҽ\{OfdPљW !b h5ڔ߉GO;L}4iOBϼQ1TžF:|KpɎdX %vȉQ/3Js.K䌗Ym.k`CSZoFJgr"z"˧ o)tHabPMIxi->)chV9Y/5c"lTj#Z^-BI,k{º2S)\p8Xm˜ހ^dPS-1 Jo›56B'k k]*v}Hfbiv21D780Oeqؓ1Zu";iQ,Fl`3[DF}ff<#lG+ShSˮr5IVkkTB^( oeo+$\OeE5N:Xܱ (SQ((3i =2zZdNc~ U'+VմR=&ȭTz/;ٕp(KGؖX.K:^~T\T\1O"VoE[.M@O _$!(^v%pZFr¤ M 7 !8 @dPKYLs"@+z>4rO_f E sJƘ2s(ߜro-r/@w\-9<~c!V)}%V"("5'&}\NtK%]Gڗ{uAYes4K סH0{'1Y49Nd{+pтPΆC:1V[D:OХ,sBdubyG~5;F-ަe$Ъ >lYۧx%!/>M&;W a-7 uCo$rpj=aḟ>5 M1~#~M-OH y4G P?X4,l|NEWΑ*{!i*y 5 ev B>B 춝|Rd@4Z=К+"V1G}J=fbO{59#YOEaL\m6~ z w=:]?''gzDoj)>$, y >Y47eϪUKcD.ޟhЬM}<>(WoDSvL̖*b%,1J3LN}H?$n{ZF!>00ST%6dml HѰf cY[]s޼d=$DD֮ehtY`ͥ_қ%d> =b`r;`~i)_KJ:[BŅIB6T/D+riHVFڋǼb˜F81ŷN}];A9+Y_6 Q_e66 6I*QjAbi!b+)sx.ݾȔ m:sv~ꟀGO=C\ 5~Z"#'!u0ƝvWgiq"t,L8l|6xTw⟊@+MK򼎠ǩaUx¼gg~^0#P;XvKdP ~&63vN}J ۂ߅|ܷCyK\r,N)JR}z4̓1G)دB6"NHWJDMI%j@St V"?g/l|aQHE՚9n%SOg'!8I̡ g9#aaaH(EARiY~ N&$KW\O?<ދA_7p{[?7> 8Fܜa?az^ӭ‚3G̓S|ԝ{|@MYzU{V !x/GXd4ceO;{חc1,JDФv0ƌ00/x_g/DG#<*'휵yHQ>$o,`ڻZ(`g&ٗ?@wZgY8 x>*w_iNhD _ڴ ƽ=x0 j"G#Fk.JUߛ3G*I1ٲY|*ݩ|s޶t'v&ӒT:zb8͟oX)]Z <'MZ'! AYPŝx021MV<^-A@ʜK .iwv4^EI;oiXRM|'vcʃK][YFv KG ^溝 ` )[UHP}M$tM2- x*Ex@C 7CVJy!~b<@9SKA.tW7O>{29AПms}.) O.g4+R51s!W2Cvse%Lw)n')@[ $a0'8ݜUKVi*~N7ʞVbgD*lƑ$ zr>1B ?)2, =4(32U|gCVU,ZM]ȁQO4:J5XxxH t 5=|^;i3,YK>Ü]3'/Q̐IQqeeuCc=(*kF,AT&(待 !KHR]պR%4[*Ou,'YW0hm0Lu!k&^:pi1VWW*"eXJoBd:3.U&,o/-y?ihaQi)m.2\b_n {'^'Y`XŊAju0Dfι 2={=7s }1aWfS ) n {|%ԞN[]]|FC:P ֲ*cQZeq%QHj0/MiXbr*FIq{?-RY'J N6Hϋ=$75[JXJ`]4~wcֽr̈M\c5AGj&tZt_R $ VZ@JVLg!z<ٍ6r%E͒uPId&/;3^#e/<@ߦ'USx7{XFz`>yl_zk w`ֿP?`GGʾ S4poZ\^ftdM>ۣJI1*๓ :bka\|T(!r7# P^{@ʂXOטN*Wlxqv߿xcٚX2Ud}532A> 1ȑ.'rɑdpF7}?dSz4n,c&K[jXaC>,P*+"pi3WTa}3.q-$m-Eԁ/-~s>~ O1LmBq蹃×AǏZ(Kh\eU?2A jXX3J}FB"^h-Qa;Mi;UܕMJɘ5ʮ":GgE<$[ߦy?UKlβ7nh l*Ix'75@oKh8d^okgB)808Z(2G,,u.h#bDnK!_}][xY@PhEYX գEn)K9eVvGIx/L+'qC]-竷zkО)3ϔDѡP`fDW9ݙ~3`Xjp~M.]0ib%iX3al)um~j bf~/'5n4M-\x'f+N+* /|`r/8c4Hq,iƽF+ϫ4 KfKgV@Z\IDAPVGx pH%-C,ժIZղ6B@jȭBbnDaɥ&m|{ۜsw0jVdG?0p|5e:l~b7iF!j(5&$1`PȬ>N Z+-\.wmؓ¿/0t2´2H] Ȃidd\K8N0H/Rغ]@Nr)7cOuo͸ 2l3P S:GaU/r񍥈gWwVx].YֲObR7 ?zkk? ܛm _|7aF6VSKrnD N eOZ &^Hno#R$  A F˲XK_D(bMޣ0ma}?&Z\) Q8ɇ{?c-#} hOd/^ 'F6 n ŦRE2M'=H@ʚ&T\[]f9oc{ ZBtMG\D=fqn#^q}&*aDwĔ@d ggL 3z O00]eWOJj0[\yTb=b-xO{8?X3p)fѲs~WWQ谓} u{\/XPSjɿ)wHcʰ3]jsoCc9p2U{Wl%jTgEz\%Q&4w\F|^ghM/pC*aGbOD)4IF hE0tlלFш \4chLɨqn <@NA|&SJ) $Ԝ2Eai#ie-ֺd}fDbF(Zok 68ew3O(އu9 &OJj(C^ܼKK4|lQ5V1c5ic{e-Do!')m̯ɖsȅe7v+y߀ Ńt[t*<=?P3:̀* {)'vHEVf=Z4E d4ί6jhn?^#̺BULc lXIVˌl T{St7 i_׬k/<+i~ر4= b\bz) TIQKԊ1色e?KZScx 74rJcdiTOõ.Š{7W1~uQS rys+P冴_(if7 If\#[{' H0(L_d2{0/H˴_D]ͻ_..#GN ڐlQŇ%8+#Ԃ eRv >}a8bZ>mU=ٹȄzhlHNh(jj.Ņ%EWUў5 NB ^ ❒wy~TGn\>j=!Ek)v[1l1C4l=VI0Zg)SyҗG?>8Lj'(:[Z7m5I?MRb^%Z\"mηSdʐ{GSH|=YO͡]GńbI5Fe1.}}hrRނmfߕ?unq:{qysH#6 O2m Ow5c_Pmsh͔2D;dVB*ogV, 0U< mae-QՉIY!' ;0 Iw,فRJ f< 2-R~`:*>EyUU 6Vtv w ?qZkiԙV |x7̡vHv-*=\]'*Kk͸nJT f;Na#d)댗FjxZZx]M![~a4Y Yn{}PF]J_z!̅NFqgWLQf2Ni#~\&UTҬ{;ӭ?d(By TjktxY>?Foc}j~E4Ja;], AȧF?)ic}AT^)fdwu Stg5 a16utf<؄ SԤ^(.7!葭(zLnDuq|U;-vlvG *v"=Oӂϐ`E5S MS{Vĺ= dgFX4I1-'4Dgj 0vƙ97dX[l: 3z)Rd܍OL  }%G`@U[a\v|ceYc=<[{ty-/&NCqE{&OS/D.D1igB 51>V¡hxgna7FZxvvA|S5ad×6[.wUvw!63Yx,IHgIjcX h׺>JJϤ__DԨ`$yFcDZd8a6ӆQ,[d2],ވB1` ҒL"v{{vj$u ,v~A&[>/+žkrL^x)O7~?b!N`N5d\3:1rF*^ٯ\0f{о,ga켺 (z) #m69(uz$wETr'C0PT\C Cix( S{j֎rgV NUꃀbeI6OPTT^zZ.u:P)qԌ,.u8]Vk`uɭ o՝-boX((|"L)~Hkx >T{Yj1NPPT]lvsཷ!.?M'6Qz>r9%c=8Yk}Ttzpb'G{pd%Tї}[1SQ*0|q#M#ť7l_߇NLv(B[zq5NJ!)fxn#J(t/͘39'\w0j2<օc_ZƧ1ܙq5P-.Ws)o_Gg|u'`  Qqnưr[s[٫?P. FL W-&<RڻqQ0n/H&pjN 7} mhv۩ -Wi8/ky=wFyϯao1hW?0g$dE< |E4N@w Ý>iB=q £4@Kxr[aEeT,ݗęSNbµsHfgȎHMb mA \|6#Xe#c_U]c}~$-c\Q4U}^INfϥA(LF4x]: B8Є7~KVtK(+^A8^+!OFMD j~0'>\msH2w؍VW#J& )4f4_O!e 6OkŘg.? mI56Au1&hݽ@tc:r\*13NՎ:F&2(TPl,eG iPCJ;r++< i!v_AIP*tTbeNSpfߐRC=LWkYU8a` Hjk}w5̊Lo6 lZdd8\u$4 tz]_vPSAhf/}H{O.- L }6\y`SŨf9Ud|9 H7K.=U;_=,AJ΂gU 4L"c Icԗsr*r|y1M s4CpwF Y#7{?2fҤZmnF6we]7d5[۟ex% vh~W>Y5#YH E"&{c3r#JৄU`͡NUall &lC!Juy +_+V \qV gp/y'<&}\Q|ήSl^0,,Әr_,rRk{e\b7E}GQ,VawE>$C[϶N~b|N_'$9HFlGOU/ӨM/_ee>€al]DDC@CK0g\TQxVҀfNZ]S.ٔ8ʯiTusf ه/ 6lqηzgT><廊E><>j9${xS9ʪ$Ճ-⥤ɦx䒁hAlyvLAx ~U^+dOuqFqJP 2`z;j`~FbN04wVxVn3:PJ!V!6'+{DS-gBYdgAX_M@6]>0jj0v!DEѵ+yɼ? )[׺Bhe|xrq ujUo(2E:f:e&!E81+E~A1i2Q'+M?Kv XⲯP)7U, z&ˌHAZej4#I k%@z/cwֆV0'*3̛&\v2_tŚ!_(n$h:Lv_$k?ChmשTCn9"."`U$@ق@M圹ŷA h;?54l}bMo&^OVD^o3 eo"S5w"ꀨC a897BmJ7KS7c}qlGn6o2wԇlFFF)Ȋ-v$V䏕Nx? mr^8kH&-ӻ76. B\5Np"c G"ov&;=[J>gHW}\QnW|~>5wUۯ-Sf@M[ڳ<5,I?Bg񫊧{ &wiZ<3K5"$絘A:!tWH{[;!^2}Wi=G&l`ݬQ[?1A++OsX>]'h6G}Bjҩv0gsw6Yvtt vJT}u&q~z=H:5G"'u( `fםpt:1gsm<#! ! OLOIaCY"/ D1Fx= #ݼwsjE0x^%zx*Wwx;_dcݲI\7*0g EVۏt} UNݑ>kFЌ}tx %Q*8+U; H^xKɴMh-,re!FI)őeSpEs`s$,Kd)-qAdDIC)s(sEUy4Q/l /1%x:sEֳD~5dH\6TxVnmg6L㛆j*1©0ОkĭzKn5TtEg"&:lU ,{mc2г6 @`@B%^ԱދvB2K{+ s>qntgˡ[V-{MHK4XNJg` #NT1dL ʍ]ifboo ?W;]߿BZߨ\FGETw 'A=YO2v#\Ry^kp9:Er(Md*W]PX?݋ <7eqJKIgZ:>%,(u >C'k+))+-}~BJe6ۚi9 s$ԯjl 'kgmء>.RKQ΄=^ Xf+ @yHF:\QZGه 1kdmE,rߎ>1䁇OGREv%Fi<<|8;ϸ8b>͈݃đ-ۛX%p.dz6+rq"NmBZylh9sJ3zO"qdY9)Zh0R7`1)%=Pݿl&A[YHʗGTgDW%ȝIm2챼Jp}K ^|N|h.XTQ㽗H3v{-L;WcYH]150 սL2\2T']K`?\ \PXp. Z㬦B]wQrΞcD  %\<@Q@w["㦤R2.>@vl 0+@PRZc٢H%xs`{-2К3ΣDQ[n@^T:̔#j8V/%/hnrRI8 [\tcpǹIO γYŚf{= *gh!fcmnQ79&W) 3.J]&$?{b0 ց'@"}sB yt- ^Skڃk#.6VNӂ#10 =_,Q\#aߔ+3MWy$?lWo5+LJiI<إ/wܚ[ƇP܃~Xq7Dڊ8t.^ 7h՝b@5P oAw#,^ڜܖz[U-Y.oP"mrtzh'n۞9ʞeZ-$"!AK^` Ve$UqHxw2w$Dv% n$(>Q>]P;T 4题?pᮇ-^KFaG NSp)R5ؑABFpE+4cN9j9\!OYi [9J_ LQSt>G>%hVev5SAN3p\]pe6aaDӂY!T!*.=WrV9HLUhRt2é%e~X獧=etI: h^)=3d5m"Q Lf{eߦGT ATr:5yVm/0w˻*y3!k NFu,ǃS3X>?j)0&}HHLwF׉޲Ow ߳Ic}Anh~Q!upx맹Eg׸u@%ChNF SG5QХ:7_fmei0TL.X&[=tPK|J @Z>za .#eW4HQ-} %w}Ts0-ͣ+c[sEQpL` 1X4@2W*m:_W8͟nK1R'I}'x{$??tyMܿD`^W*̻DBRYwf֬&Ul[pBaah2ruɽ J$5hސLOQ=Xezu_RǎneH }14H ̹ dmC>X!ތZwFf!P8xb\j? h[E.$z&6\Ȩ eB!B(⌙oցeiTi{شn >2³IxZx4]28d^\D/j\qCmr^55(Ȭuኡ+)eny!eN: /EZʙ͙=CN Ze0sOR|wϘ6LCN ԀG5s|']h)gRRѹ}@8:IW { !6gb#^]Ի X=AO'~.̈aXR›X1J l M 7NZ 蓫v=ROw.gUB$"R [(ۚΣŵB3kFܴ*0%^ {3wvo"?ç8lADMze%4ˉJOs~srj#U}XHr\`G2dPl઻m{_B duVuJ]r#<L&:}gN,K{ÔIS9Ԗ&Wtsx!8"6ܠIĄGYC3j//W#ȗ=,`^Ņ=H@lQjל"k.qWkq iKlaQǣG35Avw/!{es3HGhNұY|tPds2ޙR)`)yZQe80i'ۏ>.0ו?O\DAQ܂JX ڨV)xxU* <榞nG|<'U*ML&t>#Z h<o>lvx3=UеSf i%Tg}P-bzB!2SV`KhsG4_"<>ݥNF*WյMi~H!FkeEXܫ5݈ڡx6I$m]$zt}:]0Ffy \{<ؾ it&eP\qȍ﾿fE?`ҎgU#E~5#_Oh^ݰhdJЇZ3ոFtw|#Ca}Il83(kvΆ$R(c"@>Nϵ}y7჻T,8Xb!_?wqk*a;W\f׮5W/:ÁngOֳE0q/ZpZwdJ$5]`f Wcr`{%"Lliº+b܂xܮ7Y">[\b!_ j0IZ|E 5w`n%幨ʫ vxgW*[*'6kR{SK.^y6C0vQlHV{6 H' œ]jimsq eI}OaN5p##t~ztAzvkYcWCz e$a^ԛ^TRv&DӶi|D.bG=y,n^OT9- -~2cMB#U,ltL싏D7m 9~EaIz;Dh(T:hܘx5Rzi°"J*Sq8^Y' Ys m柫>$iiXrcOcyDs!}"Yk:c:m @c߹䰂FߵH9X&?u2+ ~a,iV6-Vr[/roL+:(ڟ1U a\AռY3})e'_~xG֙+h$rkKh`?ױgp~*ƫK<^9h^@q%q^mG[6ތR>@_\]g8:3Bx$zw[uVwRkb }+ u3._ j  9/y7ϞOEus+"pzozK'ᙪq}1l< }1DGA+I]~Ćs:?8:w-VeĦ-Yz玭1=-jM=^ac6(ޤ~/A%.F KB>] Wdя˪v/{e9x!#w% ʽ.pmm4ظoъ'AӴ.oKxmRy*4cWEgBW\>}p)Y=חt(WP  -uiGd(w)vF n 7C}2׳Q[Z`ƙK $=Os*,Fψ"]>íM"ܞxPͰRz2` GvSl<&R@ eD S0gxwwiF\PFִr}W}&߫'Z֯p A ɚ@>P,L4qD+}_B*W Q i#5~*\%E7=hQAPsl#|;5/cdeϏsg2%.3Mު'h,s0Yv،VrS\h# ۈQㆯ( R`5^8 VfL p17ȟ < ^Ut)r ܓD<pr_<uy!&!U3+=8a1rG^ d5֤H`*{K¡q_%6'՝~^XPˆ_BiLXth ӑ j( m_;p'5F{A["X88y,DfEph%`åϟ|AT[YG6c$Q 8h9s9W%(<"g:=K/CMe#+$o;, r|ċ/iQatp\InJ pЉ9}d7֐|"%ZsGuG?l긍;mqqd'xYK?iB%ZswܡXoˆ buFvۿa\4@iyׯY}fe0<}UgseN@yL҉-rMqUx0(bi\?Pyu9C#fǧ )PYqdCpGԉTb}W%ԙ?2L;#J.`YΕQ`C''=UJkb}bn N&,H-EX = ENcy&7O W´T KerO￟$C)5c nx#Iuԣ#m_󠀂zVn?*4ͧN!/Zj|ϔF[;~)_3PҔDs-F1KdH }?;  #]O;弞 .3神Qd+͕g*4k+(QmDӮwHH8n臕%ݣ3 KU!?hm 9}(YNȧMxDS~1Z\..1a^ێؓS'cѪWL<Ϧs]xd_ka°i9 Q{HYosq #qbgNǥ3gWMtu!@qL|DxC;0y6_u݁Ê録Q[p^Epo腶B/Fߑy `Y<|bI#fg }dQz  Yn{rp#$;OIڡjE;tveTH>Eyk| ruذe9秩Uӱ&%F$PE3>I'l`X'#).?'P]KV+'WvŦMsU/\ QC+Κ]U@l8nrb'79%FF;#7'֚]Z}t kG'<^L$Iɞ4ohDצN-JQ%h̻(aaEYM$y.LeZCDN!@ighx*Ux8-WJ6%N/~*Bޘ.|-ga`(#IX8W,/gN Y%'Ă!r_~C[ktf=GӕQJJ_]^l) n䤹q~2Hskk+7xvA <58?_̹'6} p5~emy=J#KRԔQ> U0-5rb̡,\Ng1$Ty|J{(|x 9 /c@ݫweX׍f>q #:?eom]"+_>Yr O9u L-pKɁ cl:Y T83k_RG5ęP_kK;$S HVg+H#4[Wط`h&D!PS67^+@]s d=b,`tsT8 %WdWy RuƨXvz&C5qDnEqrǍVA?Fp*?/a :$G7z4I{Sbl"`Dݗ:Z_b~gۓ ]è 9 (&hT{"MY>etXk[Ƹ 03n`^g,'i4^ƏԲ9oLvh /[kNpu)/$GbRS  +?}ն4寭[9Y=!V) lϱSȜvڑG0ۅBR&1L]PWs>rir@_% &MW`eʙJZ.1o|8ZMҗvY^hD!sM;'5)%[74+I-YBgLc{̙&T > nX)kȚ.+vUg_ @q LҖj>QRNis;(H~>6pHJ_YP%aNcMxAûH~Wsjz?OM/dv5G輬}T8󬘱Jl$nV(aPsSOZRzp3詣"i7~1%2EW6lqh̑8kDA %=kU `C{h0JI>cUeH7z9*iO[e38rW_I;wwS0fa?֜ȝ~no, vv'&{$. -<ѾViZįX_ҽR >| :gΕqN'(+̖HMznI'rzUjF#X𥈑 G~7Ai ,ˈQ:a +ñn]͔`l]*r>%7w&()AW r |^<R®/ɠ=ꂵ$b䛾~#N]-|PC/sOpǙiXpǔ1XPV=#-h)r/Cpx@f99jE:" ^~QKGe:,;.XH`GW=_CXM>i=z؝}zNmMUkKD|n \TEǶ1+OQL $IU\y^ z80F\#!T`ǟkCvgu|[哉hGv` =ř?MφBrh]Ղצ>a`]?R7ݍMm8BEYC*#XѭO^zEڟ!0j_Wv}|d*JDFT; IkIytnC:?Jh[ A\ܩ( Y'#]lyLUid hT[kZ\&U *akЍAԌy A/Qp7Rr&ZpE6_[W GӐ\j Gԙ$c8OPEHNŞ/=cuF Dn@ ?Yd!5`Ł't !zUV&N|+,N')-Pdsr͏$9m6e$wU%E_7xj($YHOyu=Xd8M-ou꺻@Cl\Cw Vv #AsyQ"23ORn`^1R4{hqZ+_1/ydz,- Uc)΍3]X2cgWf\ a,.%s[+36MrBvn?1bB$R~`㉰@/PSRD|'@h;VTDbՖ!0=uЕJ%f˧s,l/vBs1o3ŔAbMFv3xW,b~jk3 0OԬ}#V d6l^!xfڷI"sˑN(O(b<~ ^TF[Pn]eX+PI61}Dji۰BS ݋?mN+oI2٫|sWА~4w>qĎ 1Ďz_w1Ⱥn謹Xa7dr%ٻ3WunwDMM wҤ'%4T*8@^?:|bnlINU;~ЊcffCm>:3;57_PM'6SQ͈7B'a4m0 iu4x0=}p#\XXU%;,Ee˜fp-ּKd4 4Ӆ 6h4EB*۷e_@pX`nU2Ɇ)VV5ͫZO!b ?]U>NUGB SؚO rX1؝X-q'v :p|ؗ}1d3d6eM ; y7!\pXdmrhH)W ^0.-\T> z %$|g&x_"p^ALl ꣠U7.A=zW*,bq@?럶V K 8Xt}'$"R!+Ɂb rskOojm:JC{y0[*Յ^4ixTobه2)`d4UahG 2vg zW`ͧoII+ .}rh>R"5|S2D`U@X"7'%+R5;]dPͩ}iL(mhMUzg {OWHv=#h:giFdnjJz~r߆/dNm\0bpc?P3PSx-Ljϥ̂ě=09hs'Bف; !C2@8"\"-ͭi[~#3#A=ݻ=;e2BUg:ӑY,jqDT?N.cBNԭ+⴮mۏ"17:hYX7+Bå=˓WKq5Au'{GGD(;SWLU"j(XRmO^G `P99'S!A^rp*Y $ƻvyl!audkqXMV5kVLZ\|M*>H?D$a6+ΧS\63G1/ug@N {tjy^3# n{+0gNna*D} wMJ]/U\.1ۜԫT+Ԋl`RHE6x3̲׈Xl}* dԨ!$7<[r/{7d6)u% Mwa6G~c2DK\;6(8QM6nF_fIt3B1?h5 ii{`:|k谷P앓\5] nj0jpL+LmnG]pܾAJaiݞĈux`Zxʫ`ݦ}&, Nzmi8@gɱj]Ԅ' 7{ 1٩kxq0'dԣ~$pIRvJx7 *W3N_| 'j\#L <7WwƇ9u%)d@uj),Kl\SK3>,G4, {2*جW>sK w*#jwJDS9Ϙk؎3='zb-$\(yȺ@ !vZ!.>U Ce8ީܡ#]SH'qw,_3>8} y`tfl1R_ˠs;9DԭLxUs_m NYd LSi듞QbXۺUW +H߹կ^s~dD:.*k(Έˊp1 .L@9Xzw,!.kL>sy0h:?g^r7&&ĥi~uvjPnl_AzWB3@%-:\e:h(@&LbuV>.}d& ;t=YV>LVTyf^?[gY׀m\#,lڒQA BY-W8 ,vF3&cfyi;>08R۲c`u$zQΝly}'+}+qM<~ MmRn %_={r1j.ߋ!7Ob x0NDG~RDg'F|v|f_H_Q=%&(ojiJ> p:qw깷JNԓl Qt}ck6)[u18+Pd2PsШ)uxk&=F6D._jŵʷ+*"Dq*s[%t/ݧx9zGՖZJ)SiG4BޢUd6.f 8(?_.'a& *[ݢ23 ,zyb/z%A,n(mt4 pԡqt?hV2,g 5%)wv0![g !lY>Rع93JE嵇uWb:Fb0jldWiaA'M %M\rl$)![qOzb-Qk熯ȻPӼ,|ie Ø""aƤ J,nL/_Py;$`1X%`x#^ { Bś9nG壡M\C>r,M1#SJ<QM ^W;Ul }Ư40Dȡc7-Aom3h )D+!5)1+ t. fBbye`3ىi䆲K;4vEvkՌYn\Uu[ ̾A+ +WFD[0g ֢џŲJIˤJ1ڗk xNvM=wHwa:q#KbT[$|Cy.X+?C9T1xq4F}ɯ XumsݩYmvJ=kg+ߏ)%` DU}:ֱ (@EDC5`5%PPv 'bisZx\ {'FHu`H'3:ɶª9u p;wÀN<$ʪˣd?5L#e`!AN wX|⥃5Tgf:Ģ%K- 8n*^!Fo;7F`7ҘOLߕc"LvQٙ$Huy.rjf1aNm7C"1O˄a Q?]2 b~< DHN#ޜ dtKwE-H 7*'/+}Vhk€sߓ/3HnDkU%/X nB[ǐ'!8d |1[qzڪìR=}x78+V,X_"47% o9 NCu} )qg(3:Tа$cū7uMBfE B9kѼ'b fF0F 2; 3D*L/{CBTr.׆(6,\K&t*A蛩L_Dg=,') RICGA y=|[%ڜ6ϙ@>~]Q]ySha}{R>+ϐOqBI+gR]f vRTLkzCpCjHdk|XBԁd^ָS|/ϯg"x@ ?pH68۬#8ҊRsA84ӎw{U 1RH$wfvveNjHHQH35領N(Q@qhQz }ݐK1e3ɶHN/9wEYo(9BrhGn *a>+@B:?^cP7 )%@{JNT)>LC3 \z!o4: Y[1yt`'ykRu1+ g728>5.? b$L3J?Hv=_Mz.F=Rʼn7 7$/^9vT2*Gk4 Ӆ^m`0=)~PyRzj>y2?:!G BsWXJ 6y+)jU_(Iufl/9̷q*T[WX*YDZ1$XPWK_RQf>`^X5,vG. 3u( a߭r yխcf%h @1kx,v,N0j/%w=޳:!d\AhG<*1a5taA+ `d$)!@{F2&1-E͍%oW:=DRp1QHF9e_;)|{pQYhM6h.*b|-TNŦgPSͭn%*a\$ota~wWjQ|SגϮtUQ'S}.̦IF$`zR `!2+#0pe N#h ޵z.NXIz@򃹓F{ұ4 Rr"CP)~J˖t-ZXg˳$?O2WJ[Y"KbcNK%x,sxԋz]$Y%,Ϡ獚;R"]W}y~.Y{YA xNG à.`$i ΉhxQz$@p69#n!MHE5FAu11* %TE&Biy53~?S{WSD58BinoX5Y>}apYG,^ؖ[Qkr6EG5 XnVt-}PN6 8/^sR&vD&5I;ՆqJLq4'qVTH;rs&o!F̋C8y(N+"8 Φ57+/XYw8`a5C|Og;iYp'yJ@h* SKT'Ɔ1}d+>J4aFG/`#gqIĀNalD $?~.ߑ8&>i C+s,`؉r [폞K*\/ ?-y'^FzA%7rJ2sKve v+I |3١ǥFc([ ]J ׀M'^<]6 w`GI"jc,Hyn1/8<#k~DC\d{t H;udahTLьBz$l! ?&}O٤n>j|kR?8f(ElQ .$ENӹ^h#WLfϳH9pޞq0݁D7\(SCwwR"04TN ]&g?E.7%ެ\P)tTmQz$g%)! z)I6dyDNk>9DzӋ対Zeh*YhuMk Rɥ> YRbmKXBDΊ:8t\gVLs%Oebt"uT=MoY%vLAmh 0eш! cgvD|:Pw|ݎixgVl\"XG5e@߅aSX6Cl>wݶ<\I[QtxW鞏"l5r Wy89W-$U;lh f4i wFJҎb7v6n<*E^z5XʣD(j{5/"/ؽXRo)nr}MQyHDQk{Xz] riҏع(Fnm.P3Ik* G&r>Vp"|?jA .>AGA UvNP̼sNFIܤ{="TXh*!\kc?uW,1׵٠h#l#Jw] KƐ0x%sl"]%BD J/\d[qL#\zQmqTI6]Nсl<$5{]ΛGhKPGPS;fȵ7p_p]-9* ;;HtIu\$3|X_}.*G$>"2^dX*Ck~'IX_3q3rE(({}ZHV%Z=&rr-F}Ѥ}&FgIu~ ү$uO*=nj% ]Sw^ʨHji7X~KQd1QDsSdhû'RTa;fϨ1c6ٱUO{ egDY8?ɗ*Iɽ材fSC"zGS}$y7 6ef>!R=׬YO:$>B#n@ϝNhUFx蟡,V\)~jd ] yA9- z]PF`(&yy[Ib3fwN=3>8AB_s?FM Vti$iF~j W}7N5#2ߺ6Q"?TIuHy516+@v+Ћ%Ȟҕ mbًfp*1\D^wTOjy vEq11=RlIݾ.gUɐVZќ}`.mm'*s-\3΃b;+}[H8\21ȈLĊi sJkCm^MCD&\ġ RNv7z*Yhd>f]8yE&}H 0\1OpT&3h[P̹]z3rs:(xsA J>q*}FTيAZ3$ȣ,%#t.̄vlIӶ.0 9F>pihp׎;$ 9NN[j?0u:镗\pC;3>RK[vm>~W,L@o>O5ba_W5R..}7ʚ0t,Fa,%N0@HiUФmbV20n 6BݮҋCzLvZ7N!u3UDar7 E=4й[^ZQ~ hx !En#m;E$ Fb`KMq}A[]>{lT>l.kjIZPWR|H y͖m(.\vyEnǍ8 &bSdt,Qs'b;n @+s&WSC<-80x,*AC&E)3UlZ4D/<,1(m&qЎr2Ҥ]nR+r4BUS8Ǭ#H>Yϯ 8(CP%ۦ?'An'M,"*9fN+&5ZFNnCgxi~t= GAЪp[Y끿㫮P*FćvyװP5 $cmWb]kRݖAq!dv*9 mPuՂyc0zv-c!?3 Y/j$`vu&)[ vR&Z1]QVs=Lt::f}ᴦ}q"m^+"X*)a,2ezmfwG_9Mw;l7ݓFZչ /| rKXQ˱{Y57El@9J_ު+cSI ~Oʡ[i0"y!tF 1 ǤFD^(<` pR[)Z:!&ر[=l1XY:fZ >Y_RMs!5G@T8Q `/'s'a=FeA2o߷$g>epYE PN㺏s H Yoc=͂*F<#9dh;^S=`WDlǟ]Q˼f[kqf MD|`2ƌOfD4q=^gf}9h5Xlq:.żbӻF`h[/u}c՜u-'*qo ďHeez+{ NnISq˾SG$1-L Q3|;$9P2a4!zM*;2#0Dٰn ܸ0 P!Y_mU^׌?(HG\V \Oo5PZd\K* 3oN y|3p 1*Su=sudޘ2 iH}OS|][>3tX0%k j ,XC*&e~T r+Xb&M 76)$̛ |oK1џHFCYhJ2qH񃧔_A__j&<rHKVv.e g~|6wi)T\8&9)w3otp_CZ.rQg/PHYA M+Ͽ3ܡ`׭+$O#J/d1|l!tTzb Pt O-&U iG>yМ笸x"mo!ػR'yϣ#z0hC?˘˪+= r;VJWAXd*hR7R #:IN`ck@e VUgH* Dc@@'z{KOyFttj~OLQo|'tK?p&?.ݷAOp"4$k9Iکfs"^Bb Dןd>V+vN$Up83+xR bgV" 3C.$h2|"R]{*A3R) gZƫ (F(KrLś6\S&%J4 e.Z.p?:(X "%{rl㇭g9\N?G= /5ë́&:qMq/IelHC#f)Me5qz "؇ 'PfE)ַnAzNW1\~'G t>GB w=c}h6S"4 1y͈Х7#&LLؘh{6$L'Bě#" & EM6%tO#gGY.E[}+(=Y/'Ò E|ccyb&," F7zkv7Y\]BU(Z)UgOMp̝'ʣ܋AFJë&~Z],uxOͭP%(~ô0G%B;IqRa#YQE\t 5F'=I bxG W(jFQ!`lnB)|O0դ4Idz aE*< cj%N5xIh^+ӻѯ@4 袡`kP+j5BkY[3ڴ%1 \^!5$V][]niZ-ڦ1. A1^c;|w0볻h\)UfA>PCձwb PR}nS. rW$/,:R:)G㘽r5WoA5q RI2a0& $ɺ(`k=nh_&U'#V i$ݣ2+4`}['Y'3}|^ ?QU@3:EF`®u}Q3g+T>1vzBnB׾C_¹Ǎق AQp@ΦWB& W^eh@n)7 zAF48黰F`1"$eSgbkD"d@-Q>!(fYs8չ~_TP pG&FC9b#F TAs=aLw꩓ytjV>AZ>ry "d"D):"'a3OJTk!qغ>I{Nn- /aH6FAd=C!ޚVlr55S F?Mɝ (p4`-P&{K-6+A٣`1M#xFch7&]7t,5p3tvýiV7g&?bӎ>TQv9s%O8nrδM3 "Y8Aĩt&MG=ig,iдp"! 3~QW۱`S, Kj+j%'0qFcw ~;=$k^qZͳ5p!%|z?´p{:Q\L$IԝknBF3-@5Y6Hp$1X!_:P ^gi6ɛL3L!WuZʓL]|G$/F>%w߶)'KRΙ<}b2 j^m ҩ9OMpL }bsp"%E޸V7 QM5 5&+Ɵ>((UIb>dȣg6C2 #ܢ Bw+ Ӽo2;3-J Z4@ dN6M%k֥sa>kI]9 4FD*W<btygMZ}Q2* չGWĸڃC>%aۧ=);P0qKV yĔwU`n' *!Th8nGs:Y\u-rT;FZ A~n$C78l"͙5^м& F}_ݡc> DjcXW *y 89s=g ڵ6)vva@gG&M3o*8%yloʓUv[d.|u]ۣx'Q?]@5L`}?(aY}Va)ȁ_Emnwe*R RebV/I.Oftu -VIt~h<@N*aFf|0vXlcVY $mt3v쉴owe;R*?:q$un]b949/6Q ;ul' ˤ{(F.&c5$xnì *a+P%.3kE^}6"fTt3tG-f>Mb<-FO;ã>CIYBR,^-P>l,!K):Xmk>|9ZM1dʋ,+$w,# $,ca[nސ@7kK"80,\4~Jhѝ:JًxV#DXK?`sKs%`!aXˏ r?` "tp'+tq3ŭ#YZu(;o?i`|JѼZdDyA6 Vf<*0% )(R!񜹼,/_M /,d,FχxKb{fđ͢ FaaN>"DҺSM!< ! :7!J71ݟhyS/x nbnI vQzwBՑ4aEV훀p4Xa(of:x:VZ%ǖP]gpHBɠ<Yr"UЉmGk;dPC 7~5\4d?nEO'\`*5Rs|m'V'\% $r?GUi{`T>seH|O$M$KM<⽇I`L"|=<]a&܍˲<Ȭ\o{Xp{xzŪW#Dr{K춁1im#xFY!S:S "J c!O-QM&9g+鬱yJ P߉Td#CPxWYn/ [ъ@~=J:vO fE='gD4:*OgJuPj .>(m ZP4~Ӫ ɶɹ_?t"#~̴BSCgcx,A'tW\dGCWua$,o,N7ų13} ֕f]·"^ ~ q]>%&9Xc6 b(e_Z7naa8>K@ m9Ya.{џuPB)ۈ`1Rerw@ U8/isX|)8C K D؟Zp83,'ru'ά^ObeJݘF3|ٳS)yT~VIX.+= *߰bE~ɴP}F2)mXbҨVoG[Z%t3c5&|SUӬ9-ڹTK#Ù w`GOƓ_'5x?+AT\xJH>r+}cz6vC1~.λKGQP)' 0>>+0vI(@ٝOWSQN+pLQVe"[8If97پ2Cu;SHt9Nd{moB,芷\!.⁻1HyhؒزcK_ 8iOMNZ~,#KihIXgxdu;qRӠ*Hw$/81,\@rfa4BiV;«<g,Z\7oq|PGtaȘݖM-L)W_{4ۍ̾1uô<Υÿc8n<2>we1LKX Þl{I5~6f2 ?$Od%<+ASd:oJ/ ?}Q|X@wLKi'+HNЁ(}0U;eW?1R4F8z@#1tnJ%o2sr$ F &[n#8RqNGs&(mAfiGjWCޔ_gѱhJL*{KS e礞BbL#`yN,7*$0S#8K:<4Fi(M7!׽F%ģi#:V),iEQX^s[]:<{ٰ$Pyy辉=s.aHJ 8lR\ 5\~%,9~?m:ĩMiDn+ϨXAxsH݌/vmqQ]o/bSN$#z96|wB?07wPQ?glhh +|tc%o\m|vU~q.$!YBwx֏Իg.̭'V`;'k[z+ev<,+ysCKl"/$H.e :Id ?o78U#!\[ 0Iͽ+mMS&xU`{DFM]/#[jh+2sOzbNjHy90Uk{ tW8ܕg'jtMyJ\VY gnˮolaMHܡzxo2ƞ[IYncR dtwR+LSa7kDgPYlN]E ҁZ˵9ܹ}]Fv,efN/HNF#pNv0z.w~lUا3Url{F1G/T(!eՊ_Uc|\'$'m10^DF:JF4UVi&ΊMivAXk|YUkƽ=37;ڝQ$O&A t)tsğ U)}DNҗMηnڍ,%ƝY{*D]u >3P{JqZ WkrcmBϽ`[少[A""tI.I]ld-Z<(5\l%99 ymuT)A8GuGIļt'Q눝f(+Fo6Ή[GtNgNҧF{ۿ VAsX-7̟vRpD u m7@܋=S?B䵊=8%5_8t-YaQ iK̻$r*`u+aLiFZF';!\͋Gq584C+R\=J /%aO{-W`Xg/}»JLu]ܾlJљ`JつYa{V<..唲-ɛ x( \9?J.MKq-_~0"-x~/XZH leq8_ h捨O=ugH}?&B~DB;u fW6 ce{\O:ӿWF?[ .iql#{x]%Z~J!R#pAܩXe YIȥtV<f봒<a5ى '9I1@.cLasC,KGN+k=r1&1(*d0u}RA(ggjw8";}[A1.)(䔸YThxOE _x>ύOc Q$ܮz٨%X36f:88|BnCs)Ĥ^D?ClLI4{9Olkv$5 ;/QB_u^1I#C0n!0jмElkyJpН. ZlQ΄gK 4!(.W_Dֆ@rjs` u$/a;"{=q=*\>bZuk}{tiEy;"NHR!y8T*5.txIF%#)2';+L\i 82p;I\4b)DIOf3q0$g UEOxb% bUܭ[ѵĐR'BQ\~j\*NgQ+G%ܹXsspy[օrpJ} @fMYR=oj~dѰ" $,?1_Cii7K0pchIyH}4W7En%`ևDӤA}Qjc~y j=Qb9;1gA َJ\Ҷ?yL~sl^5M:f"'^- |w\Az6D[ c,pf! rZnѰ C!;U`: ݃$ D[kHX`w/wl2YKd X'24eJ)1".]z7]8:|/wd+ V~  bd/>7*&i$7Kru MP73(_P˿ =9Т팀Cī6n@Զh#rGl Z9~vՂ1'#Cz0g>:Kv^:B$YH8JP+F64qx2h+K 0[qb\/-]n/<(ÀrI}_•qI:ȅOcEV.N@3w5O/݂}AtI!ۭ~ˑwG;5.%(Ict]7D&&0y}|,bAm`Kzۨe&,/Xd2}'ضGYZK ,*ߕޢ] ۪dz(&,o<[)I71@vXp͵@CNQT*)4gBIrCnF6y1m1\=PTv^ Or9A:.O(N\RBΠP e mSvm>6f]&wZ^DDDc]ݗt"+ULWRYXm ~\!:CX?Q)M}<9  xn:h YnC,s:{v25&J2;3Z7(cԚ<5BW^|zH:uT#پ'I%;)`1{ |^ 9~tJV&Tl&f6:z=O1M5$:   9$uTdu Kbp?>Ll%$ *%dX 'yOCVBMwТdYpG-]m/(eA߱}WBJ.R[4%gzf8bZY%cW>rdYSseBɅmQ/oMAدC*j٣:V laҬQHѐ)"L v crmמ>ģ1F%h.yOLCă!G*ϸnTdo(58DŽ;HB"\Qx BA{^{jQh) TzY(S- 3Zɤ)$B~6Uh oYt6* ڋ|NF_-16mH6(ݨwLwFx? ^M3 ܂mD ?A&K ΃Uwa uU`s Xls-juJ'#Mgxv\Wip Id|"X* ^{ٯ^&ߋuScr,iLpBFIl@ 6I8w$1~EgI3 $w!(dRӡxwpS3(+nٵ{[8@66}sS1I١"1JW/P} ŢJ5Vui10n.As,:pP=R w2/fSeh W,~wZ}ui&"?Cw@{N/Cp#(Rf][@˄͐b/;qq"L27΁2B}ч>/CԿNݕI,&p])nxOjjXwqGir'6J>c ^I$ HfhrDc+xUNK(8z]⪈9S;C'Qθ@bXWUf,, Xwoc7ld'xt )oNh}H*gfLF:51rxtl3m0C |!1;U] #,{bmFvvWZm=1 WmQqfӐcwQJ3Kn"p f򧟥vwS3#qO0bf -u;'vrj aåA "%ݾN=˝&s W%onИfa kp'!+(fѣw@|m4>٢@Tj{ӯ::ʅ[ȮGۊIOo尌Y'\'/92eBBnYL ӲxbԺh+(=uLI:o?L3RO "j\d-\ly%eۯgMJ6f 09{{xƓݱřr@ d 0okr(|DBtNoVȃ8fg{N 5 e d1Iӥ؁taOh>:]Fz ^_{֦( BE8Kx $1ҡ\״2A2E@0O3yjӰ"!tP̰Ũw^1亢FE7MBH/N7kbl|_=\]?{dSlnYݡd L.1IN\-F.˫"'Q[hMFHmP2ppKrùLmd g};l,ub&%:Bxe1G6ɹ;;7Psf~7t ׉>N}}TsԒCܗ\sn*PL~{;"@Re(379ERa?]!ѦO]h]CN`u!CBMiGg̏ЯXrW _b7Fnt/ nKF/-W1׮B**dǟ떦ЃvKp˹N؈/cn;H[=F(@e}_tnP r>FfYX)L>T|[(=O"j4e<ם5TU baP?% ]F81wc .gc} c!! !FBFBYjl:r&6Ɣľ҂v?\AinrUn`v-׌0h{I^7vJb%ӬMJ4tqfʆ]^/]u{GЏTn[G F(}'uNli$d#s_'%b?TQB7N&1@Yrh7zjTc&F6{y{n1 "+S.nI{5Ʉiju)Jp,nNSp]!\lsW"Mǃ)@;qz/.j|dgN! fs LTXEg-A~_Mrǚ㪽YN֪lm$QG/c ;t"fx3 ǡ+ ǗtlG!IG.\H"Q(k"2.TTj{wdlYk_c.X[a=*eսvHJ̞WeP%Nx妲BOF)~qўyf= sh\co6#GLDlYT<\ j-wR~1Fʆ[݆FG΁XP"-[Y0gO鎿 zu=NzQp &Y^䄢'hn&#+vEI7`Z³ȧO"zFw .Wcf6嫠Z @?$>Rg90{MyX-S[vW6*O릷@ɓZԄBTIڬ`nP@)tfFItJap|3#+8UBF$_U٦q0G"md;ql-ʃCo8L.?!QN,`*UԠՇ~j5 /WDIi5?nHھHPRh5̣ Pv5G;N‘1ߔK|FGmnq< :q=e f/?L-;_z)f*sWF˴M`Q*GZWxPv-Vw&rp7i <"{1(OYu@eC_ԃ׋@#䗾kh I1ylDKˆ)Ҽ WY+9vgu7ƕib 2%BI*)s,xs)xU,s` VhK7۰#XKnwu BeD2jVjn|FƐCl?˓1v nZ-2Ł+B^4-A\=jf=*F?,Q"T?0J:ABU$f6"/ԋ[AA3$#>eľhkV8Ҽ8Nq d2& _#K76\~4B|nt.vPkIq(bLv3wM+*w=cϾ~lBZkJ͆ bȐCXN8ׅ(R,ިK `>qGaLń<I +)y<"GF{q$\eE`⌙O]EWdA˼t:0~Dmcm(,O7b%9Fuq+sIMLEkq$m𾬅\xzum֒ #KkWMaZxpS_~ .4}\we?!Z}nMu i'%cěL'Bxr.Md%~9̛~N剉a>[Xs!]b.۫p,o]+嫙38ݻ?Beѱimwhy*D<"HVb S{iMh\b=V#Awe%eQ(^'>P2?Erytw_L?"RܐihQKȢ\G:$l R/ZCs+3- jr9X*w EETe{ԜR`->oaH]P?aY]*'M[Am˪U@r*-4D-Ǜ:x=> gxH(:&6veo'$#GåꆬW~xחGERrpOS *DtYv#|,Tt96QJ[$? 1VKpi2)AF?>W]4׎ L/381:MAzVO).F#D5iF:`, M}f974@l[.?p0a[k୭Pm_JĤ܉N"߄UTu.ƦLedD/*?RP,!XVO`7hYW[uEc@w\M n83]|^< xn3fǛvF/Tp5hHu!(oacmUpKj 7&[ur6 R!WWX|6{Q\ɿoF2ynpip*):mCMu7gZ"r(6 B! ,j kz@w ZJNS.-z۵#z/V i)Ia774 */GD`yz2`4TT_1E yۭœf/rS,.Y[X@8^ [.XyYqGdX8SYRQcY8faem2b۸ ~58ozÄ+.x-$&Cd+#7*3Ćڥ˕Sc^\l'DZ9)l$b310t1ͷz`xq>RcJ ֳ7?T>_Ugc[4*җt2zֺ{n8N"u9ո=I$d].dY5 0EB x<&w (>̂ K`Ya'=u((;LpwΖ>1H_ɕyTR,rV'[!]50LvGz5%}ǶՀh,G ,]پґ҆#f Ss\<߭tN B^/a0%&Qz  dITV PW"?a^#IVZ;)NLM]Md3F /P5螌?ZaRCȿr֚zAXDX$a\ Zey#0tm}[( ։R˛Jꆙ5TdKљ&W2F+Ź%e$$n>_:i5T/mP$ :sۯTGd'C| _rZ;<Z/p&^ $ρ7YRz9׼q:4R7WFJ¢±y]u3&BQm\ð78I. L$D7SJ["~&8ij=;S3@ԐτUD~nޚ_eV4{NGqMbs+-R74@E?~TFro{ZJ˙S?V)"q`^[kKֺX>SJvn@u h1IϦ:#b񽶐,9` bs[pT"./Ysls IEI#TzC 0gWySG>cZS%5&k>X0}2[Bm3ZI`5|]yd3˩ӜDLLƠu;1Q &[mƨ.oks%(BT#^'3`Y>x  kl(%zv(ӏw֊U6nJF#ɔo[?hAhDZ쇅b7!rtA>5 |w X"XB/ʱo}T,̚:R: G!Q!&ǃˈ w$vt8n +7@RQ;j] @ָQ^XQi8>toU䋁;ds CXs|.PP8t3mM^_qFFy(JtҢXGlʝ"74yV`l}NZs6UPsO PCr*Ngց[_֣I3۞{$[B3Q ;MihN\i˔`%)?n3a~:,|^<KF vui}P0 sK+LG,P|p&flYn`Q`ʘdIkDEtNohK\Zx>N#)ߑomn_&;vF1ُlǂ4O@<4nٗi/:L Aԩ{ķ.;0J<JLn\pZz@Oí:}HwΔx[|KTQ{5ͣ{.JCaJɡxfIZLXl zZ n.:Ju7`U 82Xl "It-A3$\]4=Bo1w<=A+#,3l1QT.q:7gE.іn1qۜH8vz~ s{LKTUG*Z҆/UnS@5BgVdԜ 4^3ʀ*COWDvc שRS~O!I{/SINS|xB0uX,Q?,.AŝNPw` F:NdL&/\pK ܁4&#JRF|403L}?me& ;ȭܻ*)+{5roʌޣB"Y_ K1R4J&Hi'uɬj[w7YJYg2Tۥ"!0D+lH:4jEF8u(uy^s UiA59X>vveVSKG/m yHjDeRj ~ƽ89 xM-Daq!U{c #JQ2 If5/Z3q|SlXԯ;JK5~{'9BTpDJUxhk.8NlJz4o4]__"98_/b u؝,d)j|PB'NהBd poޒ;YGELV(W'^U85ܐ7Yst$73q7 ʬ}#sO&D jT5?F8)! ~Zr~_>٢ [0z4VM (2/%hS|VtA3b,0v8,W環}{t&"mU藮T1Nge5;^"/eUz n6.](=Q0Ja璥#=H w8fR 2vBL)#U$D?eq%.&]u̸"4X}-0X]i.2ƸϽC"dvdlyPE4 bBV LOKӓ%'9cdO wC~c 4'{&΅my޺lM_W SNF_QK{>Y.ҸÌ]r$iuiy@L ?\om݉N 6z>$~-B9$ рuހ fawgWʐaS5@#[G  ֠uDИuY=(l\yZ׸$Y,A岚'}32$7$fZ*Hc*';HF{?S/)} )NםTr49bR]|,9?H*gQEJƖx;8ǎfp$ʦv oMZi-PwSke)݊~7vDKN;_ Y6t-،U@o|b7ߘ:a"VuVw >D"W WЂy?-EOU#ete,8E|Q)dS h= eLD픣ᖅEtS*(Mm7ɵZ9a6ɭvv!i@jYycaE"E0[YP:PݏOCUST/ǖ["58uؗ<*GPRЫA0pDtP_y/C;Z׼A>R«_,;Y+ K'vGD~ZeU '"#%+J;[KbxzKFrvlwI޸rbFu93p5cU.ʪvf.oG^`\͚;Eqרr1]$-#9Wzq<.U[! 8,:X \U=޺EG}V3yRf?ݸZwx:8cpKG´'mb*+?F~Ht]Qsq2ΙuI`xi퉮DSA&Y{E]RV>\:(5:Ƣav{I+ Y/n;CߣqBGw^f6 +Ƿ2k&3)ӦXzT-|et/Ŏov q>Of:G U~m-w ̺-YګQqL!_16ZnHo6 j.74,Xjvcv[i%WM$`F8mJ0;U&=F%`h)ru,*ʰ*O[?}6sT\e1!+ /k5g|uiw#gzM?J:"b%Q֩U0^&M"~qT<*mЖ)WfT9?;Ҫ>q<'̆\\Os~Qr`3l4-(蚵Y8vp P%+襤4mKXI3ub. R`JՂ.ߌ? %>7]FS6Yvl¤f?$7{TCYt/' 1}MLQ+We Cu{lu܋̛E!70*Ǥv""/&vDyI?bZ~kf=Q#dWuM:;HptWjղg~~nqOn7ZW4 @Ze'P4[d  L`Za~~s{Y6L>.]b?ty$}mlb0K'=8p0,DCPjcv WJ*6)wg(m,{'oyUӷaq?Ұ&9>>toGXCaOI;Kau2=jQ ֏+YW:ŕEd/<-r~]նl)uuYdħ@4//=I{VE]Lr< 67AUx$zɁ$K̬S:>L۷<-`= WWxaUjWṌ>wb})oj(A>_RF''vv]ZĻ Y@0PbDycRI,3Z0Jb5 xGPbw)#v,x|"M^M eodm˕DѦN]sVǵ[2ySGOd'4QGvL9[H=T/qەQD8 NͅzL>P*ϱI) f2gY 'C-\$ZL8RƏJ*w=%Z!+ޝ]t8v}d5%Zͯۺnx3,.8A1>XuZ?z[~g6u}Gw 厀] !/>r@vVFrU%+H Y YNYu:sg_VpT2W6ޜ#0:9ϯqhCM) ![a2qH SyF7Pxe`M@y3A3"nO~ ̳xm4ΗIh4z`00 d1ٲx).v (m?fjޡId/K_7dDyhBk%]K֧7~QN)Wc#ca_ 0ؠc6ob_NcostOf{\yv!r#p&0Ӻl 7i"x_GY/ 0H{CF,Rأ4FY~V 05w0kgH ;Y{fCm]o.3yĝ@J=ܢZ>4KY6RNIٮoD0+KCj@Tr7tmy}aJ˦' O:T,XV\DR k³ԛ}ot)^(zF#}gJ& g^;RLz{|^Mc;f|{*s/MuGx;K4 T=0:@^Ž=Sv[U`ךw򘄼%i2`vpf8(T/{ؤ)}OI@Q_{xȖ48Sp 22-X扸0o>.S0.Mz|tWCdE c⌗)ի_srDJ럥,og] LFk=8h2,]ufY}XT<`^-\ ,6@3xM^W&2=y Y^$\dM_sR7Kz%ݠ10Wl?ךC^hA2cUT[Xkycrnx@DDViyΨ)@2pt?WNa*[1h` 8pFΨOv-mjidc':F6| duİa=9{E*٤)orDw|ymZoVuC_rZwFY 9"uSm3eݬ~8:1/r6>35038}`5w) $v)Y.%1Zh z8P!;FkA&w $oU8zq`iHq;B\HYӅ-78nF[9|5ZZҔ4A7ʰȊd@GeR{jqXwܶ|?TPxRޣ ,m`@mVXVG9_ki['O#_O Ap|ikªQYq^6[@b&xl+F K|ܒMۿ2.%T6&YB+OL(;T{0 []Ջ۔ u|^ ~P{B5XK?(ΗE6Q;RN ey&1A5SʐnbEf7;ɼ E\ p|Z SO7da_<1Cok&/rAץO<O`Pf`e`/GFlPvqTd,9Lva< JCr;wi\dXY09IOx)58],ޖXL9ԋ9lA~~WX@phڑ91sb]ct+xs3zҕ6J>rcN<*D˙*Rj?&iXz9»{Ug}O{خ;T7"|&w@zG9x~Iyb-djI^ҀCܢG- ;8~ZT 5xYNzG$v2O9JESAo d˃ڗ x$x#>$7-sWqH2^%KSMj:of𝂨j(Ar)M]BzdT;.Zyfg{:KNa, F49!3 ǎG!kq+NPza%5_xm_bbUMl@~llb>rbgaTDn"sp53#uB إi'3ݩ;#T +aGuHZk]KH ܗ/0C .5-CI=Da1}ҡu@J|_,rfp/ xYl/C :'roHnEX> }ӼvgP kp 91C"`[64:>Ȑ2ܒ BgXNܗmC1fLD>Y)԰}+E:wП{1>1Ҫej O#L*m`]/Ӂ5IfJ Rxq\'i/&$SZhs@{_~9V6W(|ϛ1*7/֬R[r9̈́ |$.K*MB+QSdj,+ceC+K143xNJ"EuߏD_k,}˱ioD9!a"y//!e~FF[cM"5¢D[{e_D:QNA( q/y\J @[15ܣ7av6bT^%%ij v%֫&\h8s&Fǘ!pNhQK-i?Y-k6(d!40j d|aBn#,!qP=U98%F׏6sZW7IcNr:^ȅ+[(L=R .[M"H {,nL9ؘ6/~hq%O}_3 ;Od &E n>V Jb!>s/Z:m՚ţHJQܩۦ$uyt|a 7|ԯ$36QzZ9Qv/0f d) ?N3w,,ҔeDQ |4p8x C!";VޕI.HjxeJ`(ʈ#*y,2=:W,E 8AoEo]:aV:cs.j:o{`pHmQpB匉8wH#O/<;JPdӴ$ <#'AV =X 8_t\; Jԇv*vav]NÖB9VD8)o[;G~Uա%WB3URQF_%]P}HZXKmL87[;r!lsL[!'EAR"FNBoJ ݚ eúp1-O)CkGG) (ъ78#_+v;%4I[vq&8Շ`D#X bM«.պU*g>[HlePza{ٹfV_ɈΈD54qab8λŦS˷̏ߝp+@>rI%YYr)=;ava M>1(+:$%WfaM=+Yk;vkk82l9|vdP" ğ*7,"B%6`fGhR4 `킏7_@ސMK@akI 3G#z[-$x'6oܟB63__ZӜ#nGz"f%n%NEi^4ӈ@ CXtN ~9ݑ?_NXN{nC"oP\ 7o[!C>LD3ԍpN}U@ui$I}}}H?שgWRYCJ7TIuU #[{ݭ\Uxl?j)/2&ͰIS3B =l0(dz5Y>lik|-na7W+~0bK6~Dߊ :ftw+Eu5;ܒvmg5-w_& &wVAaxe {k/t>Z),~ |#U8*\TvNO^\!e.Z,6j-8cxzs揓;X>>|tqdRH`K QurEPKz"e1,vѵ͊^9*o] ܎k)45O(=-O8io LYtV-8\5ű?_,eY)"unM $NR ,0z^o C&-Ϫo,֓9O=s7!yJ1j 8r]ІNN6W.Eq"&QYFDhV'3{gJr<%r K}#2*H KliQlOt292WuYCm pF4 pޫ'ʛ gN%L9%G^nkP>;wb)S!EM+yTZdjFnf&*x*ơ*Z{*gRx9h:JabzbhPy#E^X虛X{ڷe\y;9CHlfDGxEo2ՔO1%aO+"ڴ`Dӭ be3mq1ڒeE.@U0&cQn^p"NhŔN\s7ueeh0 Mph\_pY"P `9t{x ~;FWQ UZ͹d |}aqC0D o9>(y4KynB\K u9rFɀ^+C h PD Mu /17PEA8`XϞP)vVw8F |OvM)RYKGPY0* *b|c$s4.xgo-簦Cu+Jz,yt X@D[_9 1=dV6+8i6ʳ$C1ɐ$uf|? \PeߙíJ2v pMHU,B!G`/P=KK$g K;das$1!yMT:jn1OMmfkhx6hI@09\nʓ[|6===H(M_^o c.hgqO8/Sw3u UטH5ݲG;Xl9>\M^bdJle7?VTph--䑡 8jz~jKF뚍ž y%Ijt>0VhM4Xg2P=}Te a24 \jZt e8Ɨ:D\.uM䠘N#یwdU#=~?>mJF N X\FbޡhYt\ԒV>s*' x+ w DeOHo<1̖SDLEU4ba>0/gJ /\4T,&9+O9p+#R`X:mvk!2T)u|1n}3z`Ȣ;0,\=-!# L̥I Q\BMXީpu}Ľ/ )j# ZY~&*sB=e<J@0: dMn o=Iv\pCZ{g`gLWa[ߛkFz.:q輸}ꉐ{k?؂Y^1R=$bzrlWxRƇ3  bXQCRSA^$kg:#zZ}57M'`K?E>U";Y8Lgn!Px d#꫃^x 6Ab^FcSj$uöZQm] 7dM5#DOrO /rfv鿯|oɬg.C:0 I$TQ-ōJk֐v)aiݔ_"b~3o}[S4/^b@a:7&;5N~gG=v[r q\輺Z&̬N^'z|n,)\B #]e@I~^~lj<E^%Rg9Y;cۯ7&ZhL3z11rz4}Qt"UFK(R}m,Pѕh $?zߞX͔י5Z" ]ý9@Wo)7:Q:(0TW۰ˋю&%^?qIzj%w/pن',@ģ5`ʂ״Y/cx9MǙL\P]̵Vy$+0t+ 99Lea!B[!M0%TqYU$F>裥vy3@ p! e>% [X>7oyܺd{%yhtk~Ejk@Ƨ6(TDW%mŎx"XTޔ;YIԑNG)99׌[ةH݃9Wan#;h iPtA隍B,?lznv X߸P{07q8MX)A(QӞ gH2DZZ\ۮn, g]"HgįÅUҰ-z EhVtn'_\03G3KHJi`#Brihž2UdWJo7F[&mۙrVO;ȏ٦ECa hBFmc<o1PGz$b#Z  sMCcq[RY8#z)b*Hϒ iS-m$!wJ&[,6X +PP f@V ȗI8EѺ;;@0KU YgL\VG 0^@!ifLT࿷?8Ic݅ժ1'sDoIDi#LrC(LD@;' \rRjY1䅻iaJu1ܤ&翄gmF^o8 ("ë ׁ>i6 bK $<p0~w `+0VL^(5;3Knokɋ|4_@25lځI (!k&Sɏ7Y+ 1KEYf5αj ݮީd#0KZM]1U)q%%Ue" 'v!*@;O~}Z 9Bm aVYS+"k7 ! /@ 2 ~#&N#9DlesS?Wp_Fh?2}!(dϕgPΓ:ZR` QtUA] mi/˵[ p^ȝjQ{s6%s)CloG69[%m:[ R8y]!\ncެLjai6~Weq!{M<8ͺ4lZ/(uWm ֕qcpG%,?Vp7sv$Z3-'eɅ:?zRXb%_>|V7O(EQi c`||(X5\NaXu^\tJ$,g2-/VVMr(՟w<\cVR#ї ~iL+#w7%n=⯜06qY]@:jtܥ@7IpVТ@ ŀ;F>(2i}oBS)wCYJ.Ad#=iL)# p.=W-Q-qm ;!IrCDkf3'hyO~vU(+8VeR ).6OLN94L2M> ȋRsmUFRQkbR)oa )ǀhIBbH2E0{7 2@rli;[!qve727_GՊOeڜTMjy*iU PJm#w 9f,sLDhbakl.{E|gՊ~U=Y4tכJ߮j8\Dɦ0YB$˲ ꭤ?}-'M7:SKBU$Q>ϧ@O(:IyF]g7R%|Tl$*qފ7|XĐ9]~tF;98=&6H*ԍ~aFDWG7U,Ld'Wf9J=2L};2Lfus3t<kQ}!P}-]:P5tp' 08goZ3Mh"M__ɸhY~[fi)8I)mNB]9Ӓ1 $z]kh @Em"LG)Λ#ɯoL"5]4bi5MFLQk r^"lr},wvggl"Gyh[L=n u \8;n+;Cd l5.x&^6):BǺW{%ᅊ҅H[!?SfaH2FvC3W!ցKN|{pǚy^&)Ƭ́IJrPki,mф+OO VmGk=TDI.߳`|}Lڼt(7A7(DZ*{I @Ǭ_|5a0~-#]~~U:_N>/u2̸Qk!vKLaz>`krmrP}cmN=9ռT?oW^ѷE{jxԎkॏls[CfOנ 3A iy[~Z>Tb]X; 簼 '?_~6h2[lT0+X0Mi?љ.\GDzHt9yf>*J*l5+IpU3pi£7ƍĒfJ`lKD^,]@~~D&SLT}t͖|29ɲ! O: sd~Gu Nxe$0L9b8#3(iLPWp`cRj^s1xl^ֹaZ4[${oFYJڤ;jP:FSFi0XLTXdlfÎ!FT37 ذ/b n"名QRs@uH)dqEܟ4"d1pb_˛6h2@9Fb*zfS9}|&&c.\d_hsxØt I} v[z)E@dw13R>M($XR$$;Tá| ͋pZ: <_!] _R] -t6:lg+\Àؼ_٠&$_ oZ:Z;\D H7AaHH/oSKZP)!&M>ur܈Cmӱitf\qy0fV<_sJ%dgFR_Z_57 \;f4;JjX̡pub16K «=lm;c&; VS71eEck@d>aQ*wB+`ĐG+~}iʚ峌QG1rj#ٵZ LJįaYw;}cłTE}&vZ]1"Tt30Y'kM-M}aHo55U[fi:Ѽey~_ʑG5E2q᱉#66ӿչ(B%F̈8ӌ50<%Rq-Ŧĩ2RϢIEM.Um8e]ЩNgEp.֪BC]t3%&VP4j58 $p!ˇjS}#9J{P6*CVphzWڦzl61!|LmXm ATW~o[?Y=(Fڮ1B(I6l"3X,Cv'ݕ<7->wE,JȪF?>j1 UQ~*h:T A2* `:튌 w&K,َ`[{A-i0*oi11.=TnHg:v+P=Ey׼[ءWW6dGskVgj5f=ݚw.j7gQZUǼtKΕJѺりbS/87qz+D*kEdB‚zC?RlX۽H Vϕ!% xûA=ƤC^WO'O` pJa *1؛(H z P[09hnb6n (߷\]HFbnQƎӺ4༰n#WzFK͂S@d`!P+xm Z3)l?3@ӷ' y45jq0hFAOE$X#AQ#~KL Z˜Տo|~jW'=ݣ 4?ȅAtf>;H! 6!.)iNJ_Ѯ($Ҽ5ymb\t\NHmDrn 7 u| )? W ݪ%O8H-WkJ[K^mW iQ;qqb 8_cf=HPyC ^@҈0B9#8M=fYJPk  Kd n 8q7 vFn@ {&$Œ*,xl!lt&]#wT`dEk4|'bQ"{2#H{OV!d|HV?!C·2rF v }RutGaVj3$|O冠پbĸVE=Al褦m M9o^D:45YG8^v\l&XxI&yGqLi s4刿J5.:Jpg_MCgC+֤ΟDAV8bW`ǬvVsxFBLy7y s:q hBEb9\GxDw曆Oz}'+S~O 9 2V=~[K@ZK*ЁdUX}/4k+j?# -"(XI: "Q[ ~_U͵ ZO=[ #,l+܋|Hˊt3^DϹ”0;%y&P SZvŶbNR۞hߒj%Y1+}rffT7`O$r1,n-hģ-eH?·ckuT=V wO벑+Q0;<]Ş!.:ThRCa!P;T gEK5pDZy1^:WrH":B#z\%(Y"jŷǫGMF_8eHHW4IK|a_gvsޫ5sca 7H84*7(lPC`$A Jz)v [}d`('-F.}h-HA%ɮv*jB!q*ϑ%F#Suc ~֭m s C1`1Y(sz:b]\YCj7%2+> *y7vJ] ss>EYLS/oFA+(龭R0jz;=rbTuj\X^mW[mU.:kȾꅶ@m[Fc`cK^NP-x^ g%•☽{;ECf,-+/NTAv+\xb;"ل%x_A%L) ' tFG)j H0j_mѰ'a(*[z {(8['yWG0Dď[-vKŸbR*ompYzpZ'EAÒ^Z 5_ƪ#|WXa7]5GŘZ_vps0* y%jOB{7B3f$?|k{ n+)irpݛX){uD~)?[t3t{BL2<7G`[Y>]I(X1*(>8zzXq( F YyMLmUgV9Yxk d-LÕ^k'rak!JzBvո,yO~1.O)-׷hGv:\`#O 3n{q!>,u2jwAv.J0s6u5Ġ?rI޾zG'>n [$ (hn}u6x 4:qhl_]eBc`e, @wp"ϸ%_? %l\?DYɏ@s4v2+c M&'zDN2j1.;2EOWO|Vb,Ty) ((} M-}NxRx;n TC2ׄЋ'?]Ǩ646oK #'ݯiP70愋]AI2nI:ٽKX!Tb:o#L1a : 9Ji?8f*ID lI,fVJXP ˀ.2ajI+WV۝tZCG$C0/:jtmHͻe@T{=}.`$824"ϓZ8ge|B%n wʅZ:,qxo![[=ǛyJ&CԿaSEIo4lGC;ӨX F\΁<z~L4(sx$1dw)ƃob  !w#  %M-qe9 }ouGEomw%$,lfQ!d짽zg ]E=WI:[ok=X)xe9gE+sdKrg1[Tq׬ȕ-4Y8Ҝ# ']x\ly xI KӖ8HMck[':ޔ=ԐC)Il?z+\#@Ranf"3s"i{8gg]6@qlو[eQDMSeHuUuuɳ,$P3R5򾃰K+.\7i|JL +15E()wJ9F\tЂ;[{FԉuXBX4`J;z7kuGՖLQ[ 8Ѝ#$@Ro/Ѡt숱:cPZB Q3'Ugpjn !A@&]6'*Y^77t%{k*s.7jmFl)Ǐ=ud՜ރV 1~9PfAb\UQ]vƳIk09P8KwF.e?pt`vIIF^Aak̺^aq8gDa-,^F5KkYP̟?-3Zo.YL&@ @רO-BovUݽzˈ*(4-,r%}KM p7 M-Pt ΙNgS ru͢A1Ą3]]&؆Y#~2A:Z =dWKC8ofj@$Xe̍ %AXkv!8?""e3a?,Zė8U T+3<ήc7lE.PXf9ڳhߣz3۾={U38Kɂ@Ƴ RPEQW&a| ꀵKSv<9 ^f6(PS(7r"{]2[n٤Xk&g$E: ̦)<ꢸh |@8޺a] k'/ e@h 놥#;mA Isn[U~)P8I: ?K?($ -JE?,A(B›>i7Mpc"%y Ef&RWfMATyV3UgmC鮫5"$c)v<,fձw."uL:푇 WMr&,#l&Jq$[[*Ȱ<9ʌB% X$ 1?@O \ZyYx 2cE^!@gO8u mHnN=8GmgލZ3*P4B*h-Ð0R\ 1g}[NL@t8#׬@8zO~h<*9F"z#=Q> s[NVk `G; <}*0R/!d\X"ɰn+\E/ښJ4"kL ,^4@GKKlŗg~%4<="K++`nv~*1%ʭ)e9ݓ;`UL ڝNiqpVvQ6~@.U)uNsIQ;?0|T@*:P ~c|&߃DI,GL+ш{up40mՂFGPΗhO% WQDek\bἺ):տ|SyiJo ~sԬrQ>g)kvJqvSQW@[ι|>›KrĢ~i{fin}`.J՘E/=|50:^;1`DzhS/۟Qm ?ohHST'R7\K,0`.C}zxnSt⹚N. #.&Km|#r62j l%LwosD A#%Qn?{")$ tȡO&D[h;,0νȰ/Ym:D OH'|I eykV ?d9wa`ox&<<$Iғ&\;\76ĐbVSG&_40<26%i;tUjqs*|dGkfuAP?M9B+P q Bv۠"@ gp(O IIA򰊐*YDo53d 5ܵ)vȬhߔ?(㇒Vl1sy=/39^ ϴi{V S 9nu F $CS8?061/ֈ\ajߓ%ٻDi ̘C: ;.7mvT" a lE񟀸ր=gd^na[eSt  *tYqy>d{;q􄱆g҇⑏EUm{Gf[IXܙ¡ͯ '@ݞҺ!9݌GubDb #_mTW50VR^m.Dd.̹KU[ijyojQ a:C9#4מ=.'F#NOG@g3,>Ik_! tdKd{EN!soBe-,N\;%Li(ֵW:"ZH'J}s y,9l\u5I x?sJ.fDZm0ڙRY,~vS &@B=(XaÌo†ֺ'ecPp[lXPiR_;H|zb$. 7`nJDh j57x!|z)d;VwUKo@?|x;PӼwi79s|/^OU5/4teÎyz łwsJQVE[lPfrho0e`l<8A3wH@ۂ^$*"b] O XNm0H0.ۼX9`Sk75:fG?!Y-~ 'o /b7͉]ع5C?~* ږ`ѹd|?$.>%mkjy  oCt󃴐϶(rJ-*a#A.kN\e<;YUYqxņ\z|"r1^8]7LX.N Ѭ ǝꓪ%v&򜼲pJ @O;#EEh3y٦8@mn}r?VIaQs$u =@`a_פť>8>‚pϩ Z#+ޫ<яP. pmfLpム)Nad 놜}AVGUl:a4;HJ>/v '&|Q\Yc\"Fu$Ӵ)սE~t 4H={ .;^c't=2cѪMYkP(VO2WšYkVɒݜALgnt+:LߑcZۋRˍk8^IfCE,Cz$;MC73~-1Je}}pz S9rLqJrF?mnd*}ڸV9C_ђءV>#/L/؟{3p,S=mΠYhE6nDS)Z}~7G:?7irl[vmF٧'~l%fwG[aIK+KO.Hw|s'Fdu4҅=$&;^=99A!qxW#&Meߔ+_5[ ޽,/G]) -ti!0>}1#*Eݫ/\l o5 ""znۊGx.׻etY |h< IPhr4^7ˏj _{m%Xb#kRN/ڐ3U3|.pPCuhц/ :i=5icmO]!7Jbb7M_ %h^}S*K1q`o(cma%(&tai$cpM_vEjF:jg5x6`&ELf0HoI± H*G sP=EU˃ޱ8nAbh\J4PX ~jkEz-)K$qG¼&R:"hRc}3"JP6ItDa- Jz4b?&r5-5B_O^XOvJ(#kTVD&]Sׇ|4@zi"mUuK|H$~u%bod0wiUU>\ƾMi[e !, ^g?k ÿ^ yvGzL0|N~/zAψVVG6i 5(\nAX0+d3ӒnSkS\WC`Bo nÛ`"knz'PQ'Np#9E*Vn̐s_GN4IY@"iz6 P `n흧\?<2KzcLg3bH=af!| G;w|E`xݾ/Ϝ>eP xTAT(H:S;U6$ìahHwWWSGd>s{:Ye?LC` 1UE|4 $HgƃTBqdcF?,;@LV)Gs>عWH=~p[ΩǼ+.k_ B s6=5-5S1~~"rUqĔp_g{9Te (>! laH섵!ZVx-u2/V%,7kLgtN BB]n>Y*ޭ7 fT.l( .cb  i~pK'~*D8;>bVc֋Zz<>g~yl ."( JiyF ّ5&0ә@}faBS; ˶(Gop80!lϔ4_YőQvXŖǕ2猺9QBWou T؈>X9~K9B7{;|QQ)(5?)u7|ZSFcRW C0+qC_ss@f@W~7j˃~%tKzn/l2&erJna[`'('.a6?-:mO0i${߁ymܝ.v0Ϲ<ߡauIG)W),DzɱЁ";ʫP6(͈KeMYUaAէa} ]E@ QY^ 7A=--@KZ4 $Ϫ-_Kp};;<{]dϕ 5'Ձ D[|3t#/s:j]bg7wF1aT` _ro Y`lvy`kA #2*3سJwdW; u=?IXu dA!`Δ &,R~+icUdh$qUGb~ݧ2lBt7D8L'%8tx\W's0n8ߺ 4^uPs YP;=wq'儛wIR<2hȥaot+G ˒01*E"tb+A>`;^g/@/E=ԩtB qES0T m,<1GKD@غ_m0ÿ͒/* Lat&L"ᮙoNF&adSV9@*hqGQS1]i@݌DO D$Vk 3 Hi@GJ|~sW$DѴtm#V:9ㆠ}C9!LS{PR]KKl>YԱ[ҰaNl1}jMXխ Zf6JDX| ޾%FDDKA@j#dbk@J91k'Tm zp9eS=]DZ0Uݨpv)/UbK7m\Q{ϡӥB3*Rm}ہeU8·ù4g5bL>hG3c`y|X R*QCiI: gM [g?ϯp:?ږ$߾Z [XG 4?*?2 y}"̦VCBq!䃭4MݠW_4O 1*S.G߭>-WQ^>~ψCo)v*ύ5﷡搬mTMXJS:6haE]wͅBQ94p 2E[h*1LHL: 9 -oop-Y_^Z{4Vp$%O Mw$Qxհ=[(;>eANs&"'>wućf|U$[ ]Ԛ$ *p2 G=fr|j8q'#? c5KMK \ThU]yN )`M힂WyS3S>䲎Q:1y1SzTs hCa6 -]w :cR T&ίcFƮ;V[ D0+ Dj4/0k02L 8Xb[1;hiP$r̓~7AfXr8(B( Pju<gk ^Z7CۯO8T@No֖5.sA` )$^XnAĮܣG PjsTNyQc}m3F=^dM8— Ԥ^0 }jB֯K.f;=OnPj!d}ĝ^𩊡Qy$TR{&ܪg3g8T )a&Ԋ~v ʱi[]oxL(ymQ"t";~my.>÷XMq}h'Iat QShi1Eld;v}@ƨ:n>H]-WI>^El)d$a5Ṏu '@OkÂ1毗W_(AGh57 NpޜiH딥m~x|ml2i(qܧa?7qwߌp፸nh/rd[Nc \˜L}8"|;ǷfƼ"$ mYa:![,FFWOR=$F)E3' YD_pZh"VSkZAeg@MVk r.c?+]zedt>%V\6;c"WKL^P{jMňׇNE׺USLZ3!o;p*gݽmkS ϭidP fD_(;mELT@G`R*]Ⱦ kOyEr)1\X"p䚟,ÐGg8n9OkK?q8Ȓ+KnŃ 7 VF)gL̎7PcV-&2]ŪqI`v%ufaEY8׶mT.fߑda7p1YkkbwGV[GU:I,dlpB7a&K¡ml~4 PoPd%$+}$T% ;Ȁy5W}WrBn&UFߵ9j_MPPL՗m4g_ Ё`?֫5vʝ*2=f@̑bY&P3zP _;_KZb¼\Be_3fZ|߂3eo[[h?mͦUT бT 0\=-É%{ kɚ骎5a;MAMRP1PI&q@d0Lf9> ;Lo }RwuՔq紛uW@O@J8ج:"me̥Zvi^%yݸ} ˁ'7uaDcR-t?d*eH`yF˛H#O*"5E#Pd!LA_d{BDh?7XBȕ@_,..ACKe=fZZ^ۛpPD*id/CP /0 hhMeK@)t ^K5"Y~n:{~4 ΪBx'O:s4+Yy3q6I֠+X1y3#@J7U&k+ǞEcJhfYOiizeB*PJ _y'TƊ 6~>3,,qƸ\җdO6 ؾx.n 8*R=ƚY)f 4Ԏ1fבG"܃\4D blƚJxʸ<\ضzxHq bo jM?޻afXaJF1vK2-6z4i҄cb#;;yr r{pIC+^*c t *X[Hj>b #j ,SƮÍWLs mS[h((2揊2CRA9Y2j ~K|@blҐ"7ffD7!.;3~f0͠4 !,kx˽[DhrKQ8M `BT1]nXzOyH٫{,!Qz促KJdF{LClaYɣҪOqEvd2)A r$P&RQ6p`4rޏ2S9o@opۦ=A{8T_%WѣUGUDcUĒPmT ˱3B`t5I} ""Kwʸ=1F  pNRIdB<{7ӧA4Gz$je@ Ʉy'5kOcR+{C_zq MT5\7h{J\co`!uC`V}昵4|50+ӑ^,uܬo!&tmNmptp%劯9HؒLdW\\c?RvYc2ղ& {jmz[ $MGR*_?/{=0 $f6/\a0Ie}`2q4~\dU?&%x?~hd,\c+cLSzB$oγfdB?x'$7E7cۯ.;gjWtoX%"eCJ1FF[$"-D) ⧬5h5ZBwYJدs^d2G >l\#e`^.s[Xwt_A^(RxkNDbU=gqM|IL˻&6B,΃r4"w(501y$" [7@  !w\)\xI%w;]XLjsDȒ2ީ_:%;Ze=1-DSg_2l$9\L S;Cݒa&h] !V [< $uU(%)@E&poWP.D/#.1~Xx:8'm8AO[Y==6st%: yΫR m*43?er{hbSڲEgu@XJVHʮv` 45sBSDd1;$ &5|X4QʥB,Pt6fg݊GtW#5pZr{WZGUf g|;]XIR+L(Z.;m:An`>c@@Z[۪Ӕ,+3+?{=P}_N۱jr5B>htV<mrk }!BH@J%=G0$TXCpKSjDah֓AOet7'*GR?OXՁ1ڔ_ĶvE'G:f#*p^ */cWخH3ڟz62dm@EeA}.zZS?ƤvH0Oi$ Ǩx(gɍ)GqE+ aCkP!djOV"?%rSt_\ TJ9chGjpno e۴aLJ:]Ncs\ʹU2[4U5|u22GΎKOi)% )1VKgf-'{&kU;^՞5f389y^FwQ0)w5¡Aj.O48@\&ь}bNZn?@e. c("qFQrtt<(o4ֻUTP$4'A+6brrП`c$eb^vۗ܌? TeǪ5`K]HV 5vzͻÁnGJGxt|_SkVi,5zebX8+fHIY۾:nCSv[5ic՞uꧣFNU=nu}_FK<6 :گkTl(ImQ3Ҙ`ŧRA쨙6q>هz7ߚdTۀPNgw u`dNX?~޾G3?k=4Tt@ j7jGLuT=F,=MDoMTiT9Ly俟If>֦XH|ẆNʳtS-p+fKQxG/bL a%G8j&;FδGO]\T>8,9=8TrI5"wU(o}t+J(@b/h*>.4OeNjs]H 虁1DjgW ѿ絨wB&77YbMG(ˢgo^Xe`@btw7#K\隡ic.Z3%nNЇ6Ԡ ӣ֡d& z UNnɋJp_UcOB<әB 2 LmTHkޱ`maniۣK#Z/fwm$jhb''y \z?u.+4->)EXz`jƶbue_p.Z{yc%+%JTP}a PB4: ZS&=^o;K#Szb( Tu|(Ucv6&JV2>Oi<*MjkVYo" Efqm'6%xn*l3׉+Ex  9tB'tud\`dY|dO 뮤۸⊂bf1ޯm7ʋ}V޸J&:{9 5꺞a܃*dE\B?euoȘ*_f_s3g (DdD@Jb}hBGn%]72G~!E\-xw ALjk)xbGf^D!Gl2;VDeRRf[HAyV8>/d4oXx`B{TsEրS(tg'(fV4->%}VH\Zbt>::.SA`;5" X Kϭ뛎>+L;QP9Ӟ} <(gJIu+D+@G/՜)PDX- %BkO:{XXV{=2N5JZE@X)K\ s?Q/1N >}i~i'g Ebn0{,L)W˞Dw FiG!k6,j,(%Ut!xZ곦cӠPw7X!*\d">Gi[+>_)'t%oDA,6Rb, I߃ӆ>p+F@u3ո|V<: ~}elRB$Ys@dNc9vZWH{p'._^˙2y-XV9@ы)x0o') k#{Nmҏ9f$$("S*u&TݴtEnG7l/tl?d$ : SB,Ews4>v"7(Ds-A;Aqu2Jq7b4];nyRkSeUv.z"K!+ 1c> У:0w1ںvE"{Cfȋ_9;b)Uuhlshx+A\©}WJ v|7'`-K ;?>!87$v Ge@65m0 n̴I.NSd7Y pa,,$L i|hQH3PzݩڄyXtyD?e3P˙+ > TaEBbrcZy\}6RU=s,6x*ƠR;%iX)JY]J,#֛eu&∢!j"j~@!uZ iXƒ=A)gguS Å?*1΃1040M$OS16j?(FG/!'+\7Me ~dZel˨-k*6"tὡkɘ́m݀srǂ?efw/~X^5oB~+Х``j24zEv<@}<䳂졛FO,9̃4?$J}4ۤ$#TBAKLh޺Ƴ{^KZ*E,sPy&[oУ 1 6ƚ؎gdߴB]@&XIK"F^H4['Qt˲=|2+?*d+ZfbLDYa)L]_\Ltks wվia6Al%,ۿ f ' #-ӀjS8Ʈn6R^tlV4&K8s%\Vu9\UFwJum ACk=pLa%65fȚU/+,՝1_u+#V\/Ioʳm5I3)&߄+FJ(`4+f ]PF8V( z`Α59fq30&:ަ2_yu(-΄|vp٭bAtj}8߱~VlDTyTg1 XA=b}Z#s73r j!2p{ <O͓#Ƽ;wּM=ʬNH9?/bۂEsnԿ0KTreE+,IvQR<wY]8m#TB :sKCOmYAՙ^߬ǨWw^hmPU()ػw OYif yDUq͌ w|s9x5r/~Sbcm]PGe$M}ԛ &΃:.\N9‚9_zzpr쨚[!׉~TVgg]6 iߊ_;/fJ&]V-K)zV"f>>VcS21eMdF{G" C>dtgU뱵q&lqXC=mc|gY! >iw^㝟%Ͻ傖fgWApA*&!:&}7"ֈj}hd mq[:\dpKQRRFxSo}yZ8FcxӖ0XuAþS8E>*z\4DP>ofZs7{0Q},riKm@bƂBo&, "yp 0//s ł.+C!:)qYq0]L]wQ O)$~kBRf )-[[PҐsy^UJ[s-eN"/ZAxFr"as[0-j *yɂ0@V$ƱYi" 'RiEm2Wu* 7/Q-D{UJLr@uI?A]qR |ZpB6C+ aV%Y- i&H.4KqIOMFMR HcǸjŌ{Sӊ3g𾈟ۍU/ DH-"r\ D٨.g*i<W>-JECo 4P2D6oO-.""61z̦>{)6cՕ U/T3HN>JdR-2c4uE#FH|bd ˈt7,G: f{bU #́ -ww:0Ϋ$JV\&KʬnmVxWTgZHz~oBF#{ʑ}m'ЂOllx;>pl a{!Y\Fy󝧘\pk=rl1&lV$^b!t5j[v f+a‚bjk gұ. *_^aX !v{k's@kMg@kqr#Ypy֡SEϯYo7MF4nazS||m :\D=WMh5"44tHLzj)4TyUIڙQtC1y+=(INN{ Qh _Ao`%InpPT”bNJ vo^7Ҫ@=>w39OHnU]]xbף:,°0,zkU\[Pj~Q z+i7aqcIomp5*Pť .caM2&[N ԧJ]xBNt9WSIxw䙱ە7m#qu(3%ǒ 2Jc1W|],)ᲅں\jot}zaumö%l!aKZLw<vE@~x 'Z}^ O]$+ tWU2IFn3]^$ޓ}f_ @,}>'LbDT-Ѧ&rci!ԙBMeΚ=?aG;J5Ě  Web$Rk1mN(xqQ֧گZJa<  V27:QؾR^hP"oo?woރ兎YASG2SkATule| ;Km{4%!AeT_? #\P\ұÉW*0rG92=}M;2y4Ӱ;۰Ɲ>uU>)Třy[ZČyv\"iL4:v~&7>{l&J:DX^D.`z!F­c#0)Y fHO;)!.lT#L&oNVXִn lDULlG]j-Tge<{q7D} 7ni_ǻY!8{3?m&Lf8(^Z/|4R 9ڱى J7Ш2· 3θ{opTYprAT~YnPnSOU-,&ʡu!H79* ̪G2~J(K]*(Ύ7,OXp<'$oaV0 hяݼ#œe$-s ZQ=µ|sUhuG#bC#ņqnҒ]Yio~5|^'i!d9v u!~W@$ v#:hsז EևgɖL;]KzOΉh,ٖ%ōqnY8d.@yն֖B%8yU]DLX!2҃M~?g|%D1T$q8=O{=ҮM>HY$ĕ# ùpmZШ hWc6V˩Vsjp2s3&4QpD$N4rxq+,4`(xA:$Y vǁSjPE .g |:fDC*In:]5;܌^ K[ e)E\rhBj5:$0 3``' G2Ōaam{x9xu&"…/8R 4-gS7P?:7nyul<D*5j~㩡f4g RHFږ*3Zw<"%Wp-W%MJkH cOD]E~LEͦpQ]qi ]I SwK?u#vN!OQoSnǏdl"sQϚkw5'Qs"c%kcFp>y-bs =\i˄Sb(k,G(ZEc Nqv̈́VWm<(5kI~TzN1qnY&ͳU؝Ņ,9 }"3S=n^q@lŊZpN:] D+PFЈMd;^x1~$~©0ׄ;\$c1!8INJ86R"._|Ziu 7X`]|@uq\39|a E UY7wm,v r}%٬u47>'9sǡakuƉhVFw+>f`5]e ěrY]PM>vxNIL}  _)s~ Jt5ߞ3RFb (XNv"PD 3ӂ ˢlÍq4^@ַf8`=?YT \|#- Tl|BMgU8ڀyG2gX 7}N2eo:u`uΥf:iqS<{U8cFq29,r)'V팜k7[Txo*|ljQ'SH=!q2ܠ״t|^Hvi_>#01=W%1&@//9 K 7x=Wj{Knipfa-&]]҉M4Ƹ}pF{M;3xz82ɜF+@H7'LT[XQjO;8A<@:[6K`{bxvqc@X;L.k nᲗٗ+ql:/3 kL 9 Uג+-DdZuQgKǫym3hѥ|49z#aT^F%ԧ&K+# - Qޮ jn;s2(鼿DW CEb{G Hz&7e63+('UAݦ־:E;!9R筇\ Vk`d|X#pl%sd:(1mL}*c48p t, /\װmRF+nzGz..֑ ?jLv 9/7Rql;* 8IN_+'3`_0ʛؑDHr5J%T36IU'8UFνmx۴ڇ!b_]l3RCyy[mGʦ_!'fp;-05*׉JJ^P{o$~¶H\/}0ͭ((B:;/.(%a|OBYTj36/Ơf ڂw0#XNga3댭\c}!T:$[g qj1xU 4pٞ\Uuvj,t TkbaۢP3gOǼߧA^Bv)(.0/xvS !eG*bpv@ A4Lsm^/O>&ljWuAr)CtbmEG)S&1;g ߍ2v$MaY&9 )|;-֚JJ+gg"?"} w[:BJ je^ Yɜg}V#%P] Vnu9OoI(~S2& $ 2ɳ ѾL9*b!:aԸ1oomw ec D*XԠ T@LlU/AcnPfDX2vⳈYb@7{ 24lY_N&B -m*X"`qH FEJ4}]VЁKNb`M$y"EcS"7뜝 SG/R3I7LN \7$9E-7T/hִzgClbO MKzC)nmgx$#aA t:3|\bFM3~%2[vZ 久TDpiXd`HK& 8=$R<=`] k}z0O Bd l&,3+!¸r9^a,˄VR>tRe">eA5>]gtSas2qb'M%#s`mN׼@(F#Ota}1sCCa!NAu8wlkŽ-&8꨽u L!\v4s@I0/xQH>d SӟV^P0[I 5 7u1}O(Y,ZqT+8m:2Tt!gZ?m|3 Zd`vWe8`ƍ;ĕA ;M^`s E4]IjOe̚+r{P[uT2<.3#"Xdӫ psCv< ;%N "r:R^ PD0)]o 稞L; heu{Zyg/#Zdw^𞏶"uK'--q$ز`5i4KSA(5 tG AH`P]Њ &^-'9貣 zk '\iKEn *Ҹծa_i LWy櫐4=qhUE"y$dG`,`lU5O   *;ZIa)pٟ ϼA4 ݙƉ~%4]J6bO?JVծFgq p!m?TԥH1̵c-9іeXm!+tjb5XeH? YiN63S8YtLxB$#%)WA"F4ͅP Դ>ha(yOиg6%mT}xS*'(f6O:#B~ 9HhK͔M768lLC+C6w $H|ؓ)*9f0I\'t0O']X.%"7bl_ŃzX5B-X@X(jhʟͨǘjbiRr_RҶ[l0FCnq@"= 6$QL<wDcUoyˋ s[BrɅI~_"Oc@2\{mY xq&ֆD$7("ósvY7|r˜Zw7Nᓂd} A!m|H n8?}^qt28N qND .ңn-8&L3d8Oi'h' m4j޾ԱvpAͪ45>3+}0%4ۗ }ݥ%bH69gȃʰP\=&Li/F C"rlXsmL EѤ1M:k_ԾUif܆\liG/=4}›"qSt"Vyξ1|Tc[){Q < 2FyѲ??8@4` Fn:ha/-+RS0{zKp$F8++e[g0Kq1ug-)BtRIqׄlqa:8h*#r?Пb9(K6թ7|T:6A zcMzt& @jQn(hugR8ys~U?Iηl3aQkl7<`dAOf3eN)0u\YH֪$=o WjODŽ6a[5-$snMq6jK>y4; ˵ vpY=%(`4Bfw-H/%|"'?ǨM1:+!{q[ǛXJ}x!Z^jOَ#FT͊M$&MxNSۭobzdsY_Y'egt xiOvL̈́4+ Bzj$h^Cf{% 7^Wb-Q1jHf|=ƣQSgj|VZΊ{aa oH4Q3tG%ހT7P2:Es" M}]x7KNhƼu'u9, )H{ zg&|{s k"DGh7mk +"E?/mCXab]tiIeI|\ iu/q 3Gp*l;Eg4@@IW.pX3gE<+h/Ѓ.=3ʝ7Un62C1S.WAk?ͤ (r厃MU+q[ָt967. q?'KSmoC6ukZEX-o[V)kZR๴gk$t%#`S$zvdbO!DG'-*n#rS?B70Mxr_wrc~2K_`G0X]; {!;f+Uh 8 J 5 %䊶!/Fs$S=Ds,=E.> Nsnl;.Dl:Qi޼6{2ȇE0b6Y$jX2:x:b%:OI=ֽ Z6 {e-q$͕$ _@PJ1[ݙ!qǸGݹTAmOI Bvܐ?J `{1c)U5J> !|gD9|ȟI4?X8UhM 8E:hL{OKζyNHτ=̦Ddj\{(r[׀=ۆ} U ?]>=u89Pr5ml`MoW߼d<`'7SyJ6ra÷WsCS>̵v5 7Oƕ6*P׿@=/t?᫑ڊPS,Q x/;3l.D=e>1azBX_\hU&LqgEbKR4G*C> S}cC6*$!N"j*6JNq\Bg K܋T#Q> #Ю&qOz(EaTݬ]c#IƉc)_yQR"v+4WLie:_!{I C\uZs!muPNoҘΞ\~0]'>M\,>wVT!A w S#-$|ӫfρ՝ WP˲˺R^j:Ʈp䟬t[Ԕ@CduLhɖWquR|qRu@:m?iA㖏eF3ˢ6 q3T `)\g2[RKRh tBSj,5捧9~Bolt9q9ֹ1^k|oV xW?D_r!E'bbP,R/7Ă䁛mh堲ǟI[\6qZ9*gkx vdۢ㞕++vm^ޚT>o*:V `W05_T,<\UFͅg?BO Mw+_Y[ }~YA[jysh> UW'DhB$\1ku|c%Feid~Wbx'oQ+jpn~ɛAKMN-Oe 9@2ojX9TOٹOy4Z25GQ[x KYZ1^&^S;@7Ji6+B8(% 6mC 30$7ߏ$1 Ĺ3X~g^T7(8/__iQiO22kQz|է.J $. `gqT1bdyQE.!e__S{F1OǍIt}$ ErЎ`B~ɚ9$7 [w]ŊU8d$[fqQ&󐐢8%ƟIO7k bK#2;؆@Q1" p4Oi)' >خ,HiE)͎acVV2:7ZZ `@drL~!mϜNt@\:wF#G yLI&R&x [*qɮ Q**iuQcyfwRvcLі*xXE.LT|,A㖮7ڝH;չFZ!wE-~=߯>O[P={8wC~9 {x؍r @ } *`k{ɺvCźtSrB}V"k yJz8em90+Mʧ1/ʮ Xͨv~eH}ʏlmd |ViDىGg\8UO29(B6;3c>D`t!9]8v\ϊ#M #ۊ!z$nnZqcjkOw"^Jͺ.tOӍ!$]El7~Y;dBTJ&!LIu(6Y`斩 rt`߬ 4_Z9@oiӣYK1׃TI1K{Bs`_zLu}xAḉ>KkʹQ2C+qWD!GY5+s ȕ:/slxR]J2'G:ijX~D†ߚd~ qnYfbHTtNI#~`j3θtW0zXzR?D0ĺX__nӄˈmgnEɋf$$SLl)m0y74~י4"c+# IpYNp㻳g榗_%h P$[mX1&|7= vC1/%lN[Q( ORNYoD8\^S<}`x 8jMݵ-%76~2 N:d]C8fB] YFv㊈Ņ܅么,V*>5v|muc7w!spP3٧q9߶ǡ=V|i F_nWy~qAr֔5>R$D-漪͟F\=mkvQDXCF/?RiEOѺ!~/=ҭ7BXw\'QEUT\oW^:^u6as-苘\j.쐙ؐFruhCW2{+:[cl&iOVw5+Πmcke!֋Y{w4;I!qIHZW'7M'2 pw` sd1ldaiZ] =5pwSe#G&Iu<# 4hBMP=Ljql .:6t-tOc*9D{@ +tWh\G/f'_IO+vC%Lzݚܠ?[ m^!oSMuҎIU#Գr;Ma%>E a@;7hse* @(K7M"*kV?p-LJ;m Erm[b yB{)m-f6 G>LWq\6gGOME`Y T"77Fh"dc;pJsDhٟs߈;|#o›y,Wa >C\rbÊsj[jjflQRYB%k [{G,E6+T|  csd⪧AZ ԁơqp44_qˎt= \S+o7I hwSޑ2I2~*"a-=pg \&qQTGSM.e }396*W W2uh_Z0T:$ܖ'"#B5D#0y5)5D6˫H2i b_h#zr?f1iD\ Ƴ7,+āA׬jqeucğT)yyBo|үL $^IZzUgG]0mxq*Wʋ[8z2%}o|N(Lh,RcH7t1y)ɰ0g-)$-~{7O+bWuȆ5Y d^@'EXxP ?5)2ƌ6MSe;f$^x5oTn /T7҉HYZB<U_Jz3)Xd#rD5|Ue&U}D%Xxhu, )ȏѢ~,9 Po45"Qj/Z| {ߕWAX3C4ncmƔ\AQ2J kx9$G%Zڝ\GqյJzmCn2IR!lR]VO)^gJеSj 7|ZJ0Җ-N*lgVyZ]P鿭.:,k9cq&45 $;ӄ٧^.{݀pqB~K@-4sxJJh?"[+v22zf5kjw#?Q.kʃSg`' k8%y7#DM= h:)Q %!r'<;4 v% &~"n)Y%弉xp717#eJ$ Muӭ3"E~-XPrCC=ʁI/׵4A Fdoz(xxS+<-pڪP&ў<7Zʖcy2#|6NppAD:#)5X$rmu1 ӼS9/; o0!ɦ BJVh[Nl_Pte3?֋9 T$>(OU~]vϐx2"|yZvƩ6a8(G;'ohʥhߊU_4LB_2~?IЍnmnQURN*R˶( A_S'|h xأW|V5)HBJ(LCX) R[e]4{pKiL <<W(%dxճYҾÒ 22 ָ!_UDiDו!P YIl%Ml!%[Wf#ұio\' BsIbЇ0#?Nf8g|1:h/[?`脉~8SLrԤV}]Q#e\ xdb;WP2JJR8C勜 9lh{UTZB!qٝ{ߎ^)yX2sEQٲ<+6vl5[+:#Fgς:)0 Qc9h-g-/t髐ZgH5K7j̓j1n*R="!,zt&MS[ϴQ+tnVG? 0Ajl~.CVaM0L{D ib%0~xqnœ"NM:ַYn#xI/>[wВgX43nJO3Rv}24P|I 6 ۶C,L~ף—WϚ6 $J /v1.[s3i6/<Crˡ =$myFS剄7eICf gCR;=MͲYе(T M@U(FK04bɣ>L47/׏` %{bӕj}Od-L땢L^AB!  L1hBX/r۶odsvJI$p['|( y{F/l[SRfP|H]ݾ@zv.ƣjm/IgtGǘFXXBw{k>˫ߜWW]U r} Y3 qEXjmSyb!HK}M]Ϭ_ VѾi͏a7dW_v1~ uF[`Na9ʢh s@$#B -ئ >ȭnɣ-t_]:ͥZ2 -J_:"ga!Ag=@zA4Ză ++XPJʏv=^6= 5ŭ GgUA,Mc¨ส`ׯӾ1c&5/c˨ LGpBa2tƦV!3ǥtDC6띰U({btym2Br~wBt'*g#r(6+J$ dWrx+ЁuJҒˉF)V |K_} ]Ь9 wGmaL̚~UP: CtK-mU=7nILJPwpfSt֟ 4spC7Qq…r[qp(Vy]yY(/-=@J2ɼ,cs~7sFlF j9A&TJu>s;vS1zLiפNժ.BY|L[Ԓ MaѸܣkTWe8bD9O5:<{̖ Ku%eϬ`vUWURd1qr&eߕ QBaϫh8]w8PXv7VΌaBXoWZԄ! TT-mBP? ǾuiU}"p0wgMVW]n艆eq¸s8k[к~Ā(;Ȃ沷nt3Z]$Z䭈C\J|`}_g[*>o)|F=Ċz`,T+Yz8d(\)7g;.',}F );~Hvn ]9>s9$EǢ:bD\FoI o\f$(Aa B(Yn١. M7e㮃WVm< `#B𭗨Q$NQ&"Ѝ6d AK,l:qy-2JO'E2Gٰ/mBsdAӳ#Rjr^Ozڢ'FF٣EJQ| --=1%|na~EvXKgm[)tkۦ;qb}rh]_Gf׌sMA$ehX0jJJv&}W$-TRcmͱX}_QG=N(xN"i8:X%9yWsRTeN;{?mE#bb xۘ"XؑE\*\JfN >Ζ vDѠi+Ջ5JMB[ ,vbkvScunւ!5)PlIKk1 ?͋زRcڿtgi;`|bgh˝J:QъRܶ9=f`FƂ[xz]qXbPtzYnN׿%3r8vro\ڡ΋-2YN\"lgw-0 ρ*"h;KTE ̋'ƜgGjLsMZh&lQkח jW]eVI (*?. O-[r %ŢvU2QnV9"P~". =ۯi0^YYVrrpTgTwZV c@y|;o [I7O@S\8(󲸗]\M~}g?ܖ[KL;K;)%KG yj_6pc(#y&a)I>-a[w<(jaI{ l's\Md6c@I 7 + y _Yl3떺1PŽG}L~yuƉœB>1?e+W[di TqXaG';#fz h/gLm E CXtHįT \uk|ؒ~F{4}cHr5W"j3n7?}Mb~m?@ۦn"L4eAK,&Bbh{PE²rۜp=[Nw`T-f N!?]ǕC#極mk7Y4*-EϤSJ 8Frt8A IbZ)|Wn¢LYv\~1ь3w I|ILKrX7с-rݐV4(!0L0-uHE2,&^c˝&Q %oMOn}@>ړV%?k6IO#]^^J}v90}),!5L@|3A-&~O;R9 YU1XT/Op/xm@ a ]wt!j IҷHyOqt')L#u%C׃_mf$nbB@2S7Vdm?#dsKM_0;ʕy?Pa&I iB^iv&/{6[  UZFvHHgXjw~Ӱ+;ZjX9:`sL7Wb0QYv/rWaُ6:u5Ig-\S| к2 -'k|=þsՙy Ufl l65.Vpd^LUVJ@ :UœKv~l%SPf}|) һm[1h->uLe"P2 w%U{vOj yk`W~. 8KYﶺ{Om7Ư?@\6+h "oA+cOK%Vocd5VQQC-Rވ4Y@Ex2u88eJ)f@iίڱJp}d|뫚gZBG2tЗWdBeɸD(GHaiH,$jMw<2|hJg{S^Φ]r֦ pa_$1.iyپȚWꜤӷ[yh\녙/g/HE|TD[K,234\;<~`@4;n^k^v-6;>Ԅ_j+^ ҳ&Zg9i'۰iŒۯ۾ T<~vҟ9'ʫJ>5"9kF"ן| ct{VhEJv%/lP;Ɩp JϽ/p4]+8e_^ 2OJ;QRC8I*iEtONҍr#ߢQJ]!Y;q,XE=ɶ_Y21 NMwub8ݬ'McX|0*k@~: 688ɆmUز@k/3v #i#OV"; rcxkEl6K7r(9q's,6ypJ&M򆬞[g;CW7@gKLe'KCHETH@*UO.(*{)b-( ~Pg@A s , b 5YőiiVT6v)'-"7JX]$EAe4 ƚLN0<7zA q4ā?QϛRiEp}Bn)_wp+̅!b.H8ZnW0suntʻful6 U>zcbJUDzǟlxv0\DB3KU[OiQg "`EhwMMekbEJ(peDݾzų2'I18lotw|r%٘n6jdmwqvLY@4ߦ!CQYBܖ Q5YwEȠPyc]f$BmMg5\i#d^2:dZo#لE{#D3|@IUz€֝h H px[$HZ6N0\}6H%PlM<7 JcwBC}b'֓S*a"6 j]YoL!0h6%|> r+굡?˕܈KOC˷K¨p Go:9~HD$Twę6=SHfcx-3C'/g"G=/M5WtYs&1J ~{%2Ӯp1?a~S:`]ϜT8_NtU_<% 2!_i|YX>8q/_QV T Ĝڵ> Uy)U_/lϋGE$p/9$quH *1 C-۲3 /ï:2=I(&ŕdmuEYDK1,meKAF=9u&tTJK aBCrblK.f|JC T yA{h;:;(zs2\VDh̄xaf LQ%ǽ~hRv)fLVb@wb?*霼A>}V\~D>V5iTb/{#E㋶XOF)ƽݒ6MoIlIu,B̞e8 EF{J?1nO,=Mcz8<(o;El|y-fZᎢkcvsO!k3Lj~CU٥^ZԘr@gAdz63OW A_aDIr XK{_ݑ7R^$RWuI36&N+6u.W7JÊu?4^@eV}#ݾ<n k7h#!OyDL}BG>pŠ- ,u8%εf,o? Ug+\4ׇ)c0,fkFmv hI`ruFj^5EbLWXzx{N0)KP/<>H";aSWCYvWA5=IG9|HE|9ALg xVxVnmL\cGy B7غp3|#0ө"~3~PYԐ"ZyfBt'nWJxulB%u(Nu Cң(^Hs68H#0 n/K H?+pa;o*?sfh%v=|T%GA0m&xСQ8؂&,9YFF,N)KA$M=,DA7\gl _/E]BWL6 ȑj4Qe?_EFm664YLWv%g}!L`|LZs+y B!5@taaq7Wa_FZ qX0tH-c51V.^%Q8X0ƊΪ+F&<1YUѠOoOßO$j`p;'7 冷ʴɂh}/*Q* Xw߁ԙ#"/;zYjܦzG*t$ kl5gvS0.H#A$7o\+>՛vv,i@O噧,s/0$u4z;E 8/5Έdyi4qkkPCb~_^+$b5vΧV`8)v'jWKkGQbFBP3K`gٵiV/RXJD,2_vafjufRť{kg]to!yeK*Rsc9rv8hzy Z=#H4%$hws|JwxHD!fKs)8AL饵?an>ayYSlc=1ER:ꬅ uB:"]#wHk\@+%̗0$q7-wtAcg3Xs [?PC#uu]a\Ѝmd*lw վ>NVz]qWU1R?#=[TNҹcnCh{SJ0$E%7ۗ2Fِ` KbȪ|Y}5kďLI4}wͦ NdY PS;Z|O"uw׭ZB˻<X~j8|ud=g3Jn+Cp\[[989ڈNYDL5xyK-:}):8j*1 G-:zXɆkvp7zOϼ Na܇_??0ϋa'{I{d;.񅱀\u Hw{P:l,ľ 5 o2ֿg|SōVr{VdFdyH~q1`GH$H@2욠PdYg2 /~ȕs+i  peچ1rX&R>G7>(Z(D-E뜟NnI_5ouPUZ.S6OPʐ(g8szOADp.v-~{v>U2Etˡr6$_mzObKQBIꗺ4UDOp v&L-IR'锺}hIp{\/ut>)Xv ޕu#povN( L67WN- ZZ} FYWSi2n Ƭ|ʐftyd- )·†7.H ! -;mhps{Д:)-rnKep!WmvS@@:u݂fG)A-l}( [ozqx",…e17ZIԑ}$x*qخ"Cg%:~*&;Xθ: Qcj*H;ǡ\G6uaIKͫt`g ]2T:U-MA١7-XsMwlTr _K^pzCTf U+b*пPd۰". Mߩ%P|g7&/riSuHNLDA%LMa^H}Q8" f0IV%}TdZ=6mF9 ~g\ptR#}YpE!Ny;qHx2_XI\xfێjb[i%i(Nϖ˶!/w$qO~`_*jUh;=@ҕj, b8HryXi/DCLO._pӁD(dQn3{e`.~5ِ c@淭'K@wke(bQcj;FŤ#);펢 +%*X8=Gh]\`2XJ"<'n)#EvWG0Y鋰}F^wGAvLuqG1$7dj! ?O@hE%Al Ӿ%f,pKHL&\u"$!@la=j}T΂g> P)#` C~H^q}T2x6<<̨u[d@ک;d&ٹb|Xړx,|q2ۺ#D:k,6&uG[<G ΟֲkJNÁ*.kxb~h z$AD;]7] F1eL Ùnd.LIcE~=`-R9%W\>&71(jp-tjMܰN4'Kӧ-Cjȼߠ^ݰ'pBIDm؍|z񛩯"I p_ ?ȮZIw0LVH"ОV)IJ@7CvV$ەGOackOo7DNY)L 0AZv4vz.x+beE+ c(H{dB td6~< '4{/`g,՗ Zt60 7' zF߶3ak!u:K@A$ >3UraKq?ҝb`r c4A.$ߘH^\ as<+BTgu02Mk*w<B,y a "ҕ%|Ģ]-s#dW&EiIA#KW{ݘھ쎸Ճ4vx *5I]o򑢐X#P2ѝ5(n)*<g6{ƍ # % WdoF $YY[)72+օ+">T:0\.v:E9qu ,ղxu]B6.,/Pp͛PT nߝDq0W#P3q˵l:V3JN ROk.K4}BO¯O| խFHWKELy#`rzFef \/hføLosl1Y.ي'ŏЌ7+7 ~f캸ppj6 /,֧~TR`<˜1X [?į,\W"#kMu竝# i|i.t(Dh"jeY귊:>L0[mq{V,Zꥴ/)pnJ@?ˮ>Y  ) KA³ /^IS&H3l82OV>0|+A~TnRhiw7ׂ+zGb8躂h;"龳}MvpP.(:P&DapMQ8Gdm2I߇/[ H.ot7܂@.`R q7\f"Fk[rW7[C3#NFX͉avFtrGzv8b\U}"ّhƞ- *d3fRy+6v#J/,NDwekK~,*gHԋ=SKlV*MS_xCVk~N9^f!8;VW; KEMeCghSU@|b^e9dX 1a׊v@7~uۧoqM.D:Ziߠ0u'=/YLyr҃⊗'/B$J&a._堂 ;rO.0A#Ϟ[ўo:,-a|d`9r%6[/}̕;(ڟSqWީ;aGzגA f<Iҭ+lUo}3-sVQ_Ӽ_e|;T*rlm?9&j UzW!Z-Nu.~:·p~ݫaΊȻwP$sAk5ZA Q=k |o[|1?7L6znѠZ; pV j%1:KAҬ%59\bv0(CyeE_-G`a`3&];XoBl F~|"qcBW ;ňmr[Y58)OI} $"}ELx]DM?P:JmGa% V0ێ%{Bz7{ &m:Dk臚~ۭ7hap]9C; =J6l8Ni ԿHO!ǟRehrٟގ{8PYd31z`mbJ by0;\"HbYaA>io/,f1)Se蔷VϮ\ 0x>j'\N|n06?MLsK9_n[Ed+SaxP\N } ,:8m o ܷo&+*&k7'dJxn^O><yO)SIy8'*Qc5ڼ;z~ؤD?7kЩPds#'wx;V0i1L쮔q%WL1&QSX\'1*|)ROKy4keD+ip泽ᄂ_Ϊx.q4Sq!ul/|#U&+K6*)0\ 1#5htvd`vI46H4E/-<=_亦Id Sa/cVYQ#78#|*-Z :֫9&N&iu&7ݺX?jѧp54v~#ڀa~S07{ӂJ޿R ם럫} jcz7DUc{'N1Nhk}dJ|;b97}~h4QPZVq D^w #(;i[M} a˹Z`X$:r*VY ;b~:]+') Ms#6};*w!q?tF';YgOi0iD"KܳCQ;hL $ YZ="!.!0HhQy{Dj/Nmn;sPQJ9$ֱq h\-n*@ED䃗o"FXz +- 'Ԅ@`ѸN̤P0Gpg60=Rfsؒ!CԩEؗ')~BhߺBk>0PK| I޷r`LL/~Ls$8a'״@8,S9E\~%Ӡ3o9^r)[6=z3#SKX.I+-ТnwT}:^%=`ϣ7RGBlyG|)DO_U,f?|GW :LqEɿp0O?'k|@*O@N;sܦV>j,;+R8m"}ihE jC+c))gUssʉΆN[1h "(A-O~{7x(Jڍ=Fyн`Rz&i{Ѱaq~6P_: G1Jζ&o-ݚX`Q(i\h!+ZTU=ci$) OH퀝SU[lCηțԒ!}DJAÞgӤ7L:wjԡaV"Jc:<^R^=fj7tya>Їc]{Ѳ˃]BJC{l1[8j3,^1~@/%S2A^BD롃*ϑx#MEp'OVM/Ph)3B$YT}s){i TMzQ!bA?@>yуiV2Ls,?JҬՌ1rCe K8G& O/I N]D7ο´q4hHtKw|W$C+zmB1h>3|3>x1o4[O?(e1 ֪ ͿҾ)I*5c&q=`}c 9OîZ~+=(͸[©lg4.8bt,dx4yH~{1cxz>&T͸rTEdHF1eX#7^7_lGfDH +J~A[q|b+ڤƴ9 p3X-ں8K0S~5{Bw18$ޡDљ:!>l/%s-ozo3r"FҪn-LR +)ZH,h'9/r%islSw 0Har֡\cQl}{?0]ɎOxQ&]v^+9޸qyA_eF)h9~Ȱ)uWzy&W,?U9B%uhбk_XFS@5s~#wN[Q|xeY9 h< C? &rl,N5)Ð5@t]_d,v FC( -5׍'N#lO@"/75^ (3wQ,w$nz6K3|L6_;7@nz]/v6Nn֣aJi!Tn,_74} ]kj.(OG/=3Oѕx1nmz99ňwa%){ŤQG MJ Uz-δ{)PRKT*օE? 47B{[+w*D!^l]߄( O7 졎ERS=e\r Ʋ' 0P ȧ7xCe\%tx'pH-,4L7߯2Hk[TKqo{WAk)-wA?<F:'lrq8YMӣ_MPGU7qE#,cs:Eߥ%,UJ #"XsIJKIBK3:l}zQ0"Ťm!/vNBO($?qeWJiOJq踖黆ȱ4Ueiv;&ڠS4x v"YbtUmɃxȟ| 6E5rg!kYJ(灒:zkhCءDԾȋJ] zyUU"8Q@tbhk)Xe)kvuWtyӝBj{mPzEZ~r8n_ZyOlɑP uqU讀au},Ӏ"]XD&3/$H*0'7b!i^F(Z$9xo}ö粗 (o3oýxӎ Bdfz 1 XjL-c?v$GvT\ s-c:b@)䊀K? ucl[!K98R~aYڃAfEq@e<:>+fTMGa R#>V(XK{\#xIES;lA)gкE{YWmB{TQDa\OFč|C jÌ;P^b 8m_7 <1|Bc70y%2χ{Wd)Űb\!<.m}EJOVgxԾίx;>Po+_ljj @w?:%fP4Զ$zF̒5HsKI[\B3r;q/!<_ρЬ>̩A >ވX^?XOn]<5B ks:pmYvC&OT\\T5@ʈ,mI}c9)Fjq.\q]JRQ c:8?_s>G>8z_7|J7x/y5m-<fUOT''kvXe:=?<PIncePoE2Ԓ  / Cϸ\(>7>>3+ kf&i8U&tYM<|虄Z pP(7dS2jִ2#ywO Nu-9H6WM^,7&YRģd4ar2ͺMY`;re&fl,D9Pݺb!,Ș0$mВﲇblM[ל;ԛ¼\K3/%s veqp]'ݞîpN;Sd訔}m%^$@D-V׵ԊUjϵwxkIfwKqZ:k!YE&,RTP.Y%dDi1h2> C 'xj}8^[t?5Or0Pm|^I\{:`~-dL<7PNg#,mPj计-B+*dVnDDM#:%L_ -k F,*=\EriWQOQHW: Ja8{VkNPcɁ\[3,|.5Q|%>"wK i8yq[oogZ a~雪I{ۢzÌY'x 3?&=̀#y@+K_%$. .#[ToF Avy B`b٭QIO+fsaC'̮\jg6Z9d& | ıQ-ݬV5Olp dN@} ^ݨd%pҡ oݵBn;ٻu˿r{Ե5nө5hJdgr$sMʾ ο*N> ;0jYXv595L >s!Nm_7zUկ62 ~xE w,K1 "CK2rfr_Cz xt!y|(ۅF^A[״|X-? ΁ʯ;!ާQ1B{4Sol)tdN>s"!Tq˜o`qUWP,PYH׍Ͱ};we2eSPc~=rhJ }]&`3wyD4Ȭ"2J`ԃDZ8O+{V) <X=/x6,Ф )E􅖞zn <gJ> Sϡm}88ix(K}>ș|'U皿8\aڟcOKQ5~ΕFF}+J3K6(}b3%2ʅ"|7:\Q( ÆffJurq4qp5UdZ2 тFXͥ`J(Jg!iDtWkge.}"׊>fTr?DMRH!͌ z)~19|Κ y~w]CM7٭x!ϧ*S /۽[ڪV=i4+h,UU:snG!G >le Am| JE*ܣ|򮝝7/ ˊpckb\EfQB; ȏn:y/;ؒ1y/Vnjo%lj- "t-%I34RCTy\>p{S<=ܨA!NYR6/ lx xOHb8bQ?i,u" xYʏ!>p8E"xoX`ׅQ6[ȝ"Eht3y1(̑7-Č{pB)w'ޗ܂XN1A#_6P=ǙEnҤ գn$*4.ݧ}HiT5FJ7sB-@ M̙7I{yB})/ڪlf(/GmJ+RJ > &!T*M+<?M$Ub,; :ɘ1A\ʿ {?xwMK:!)VOg_:~wý{'wN.::[y`f۾!GEr)U#a!+/'rsMks 򐲃dnFhf$qf\k;޵9 7l"JLCwv3buCtQ}*҈Įsr^zZf_ODSs}?N8*=# o $1(Kh r8c; ʖL~eZ6g^|yzD솨߭T>\:L ډrЅp1m{<߃L{o/w'?:WY,๰Wi.wPceIKg]t2/"N!K0gjhnt(̇VMYaBgob wؗV W,G[}'LTJL%DA()jZQOX-j5Hݭy[s2+oj=9.ۙ4'?(eJ>SvU}o*)_:CL:1Rj" UMmeTj+€=Q4ODރO\6 57K E H?e-(D2>J`T@7 h;?=s@84~Ip 4^&\$#V++snUNUx݅'(d&WwklYA! yd+ALeRIIO$6u_VvqI̵Y^!Ɂ( |Yڹީ^E*F$G(Xҍ̐`SjO ,|v/Oͅ}0êV(4T(ؘdVePU呅gzkəmhG9L;z=`tK.@b$ڰ 2F:Y]Uԫa"ڏ6E[u3fD{q+S+wPkg1L3Йqtvot& =´?]<j[9 mx;$ {'-AsEYHBzd^σݍY6v|נE|ѹf~g  ڨBWc 7^g57bt%CN-DE7̹BdQʐ{P|mγ0HߚEc=p6hEy QuB 9;u3p@ ) zޡxA ]%cWeJi9ӿTU \:'!M@(RsJTxJ lHX m#IKE> q.'$6|=8wl`h6V.ÈfOJ-zDw@]QǯML9/(!% T5=05z)ݐ(|`MIX EtU M6ga"7wU' xk/Lrߒ2j MЗ|7bpc=d@dZUҵh@ܪSc+s1eHP tW Nd:.1@`1y94*jjpF0_Q!0?"\|?Ff(!ZZ-/=ʓv0[|U8i%̊t[vSB sdq=Gv)ZB^6K`NK 굩9])Nd.; u _˹ DG&ʘfP]+-3^&R$b Xb+p.|4+ZbKe8sq=kǾT8pX,Nq~^U+0[MĊk-3k6;:B Xt>nVi}yEQ(UF<ŽUG] Q`ĕ|kjlzHWd_Y wCZ; L#(-9p75Qx;&Y⃐9Jn׌!E%r{Dq*d1[t2d<\]}iq:u6aa`ݐ^vCai˲p;[M8 e>YYn g\fxZT`<:N̝x{WaӀYyTln\[lgNIlb>A8 p9 ̦l`f4WOI_ (!{lVEzBSo>\1J0,-jQu~scG_EpЪTn< SG{uJZWsެ7.(mTt Y!-4$ҭNx&U} ? 4f*A< lp",9J;1[7Kٿùd >[cWljT|%Qgi²I+^B*~\6qrIjY*LmvhSꌧTT33DRNEl-&~ĨvCƟv '(j;ñR0=⊕n :f-~}B\;>]$Z픊Sш装KDz#wk7>_BG֎DƜ-\e"iw[->l\ٱ?{눃A1fF-WLNn^Rv%3u`ļ }Mx%TI(f 0&Y肭[dPa(\0&JDz^gf7?%)@ar|W"qi$ Ы0ȿuCg+;$~ j;}XQS1" 8 sqÔphp#I:*%܌1m u̷zvoea_SJn| a7VWm᳤AKKE.۝/Qx%H)&f~SzlMSGWIM`tIlc5ƻA=&byWk20+)L)~%d.?8rnc"rJO6l?0*Ct^-rPSq0L\ jUx,`.2\ Wh 4ye ~~nbbǺ-VA{AD -EV\psb!wK]L\٘ By*KI( -U䖅F1֛>jX(Sv ;+KfJ[3C6#!erNjδ7i,y[%F'f==@qaf )"):[% !LhG'ɸЃ2]/wCU˷&=q tI 8y(?DGFM}Lʫ߄D"cոb5StvJn#)GTcpRՆ? >+7 y6 W?N_[R*xOPU^u;|eqJHUGIqC#cKg b!}Bl $qGl5>chLo6J`Ձ4w{9 RSD"H#C*Ԣ^jmav ^ng5&3}!\*}Kw9n5Onb๥+OG\:PlMj# f`PRvn0w}†C%WZ|+vqGv "8U;u})ߨ5odo]X\M􊝴a ۟wgrWɵ?j2&CFm)xVOJ+(|9,r­[EjB콝콍1WnPO[U ;1l^(2A|gKbB! EPWUtTּ.{L|2Cd"s఻7Wz3j*_ dɍ SwZ,D?p,\nC s ֖o0yf{wr Ft0Ņl#b%M%3V'{qw\TaTf^j#laٓMѸH(RƏlܸuO;Ĭd014 $EGg@EÏRE5uP- Α[`8q]QT^XCz.uMU tLNu*V0ǙE՗Th"r_:RϏQ}"  t pRKoW3MB.ـc,ۉ}nq"(3 I!Ci{tޑPi:A7<{t|T y 6ܳKoLU@4M >\hf!LʧJ Bxzi~)DuqWTRZղ$WqL:Ô ٚs˻şΆGn'TQ7\`dx&(WVOw]sWoh8=6@2:nkrMUz}d AU<7 npSjѤ H :ӿ^+\jlsTrdWMe+i y|ն-X5q}O41ERs-z"I-淂t^+E wF/#s]1C !xub66/f/"R>À>s+ĒeΩMbo)?mg2'7xTuَ4MlGW;#| F#AL6^1Vd_H2֡7rqn Z*Ä\xQgeR4:Wst_L,Z$k y^SՓᐷh'6TXI9a4bLzwc巰a2mz> 8qM5TU#64hoU$(I ;Ivy%,ZX"#ziJKYO%mْQ@~ÕxxA|KyD+ip"LyOBUZ5x^.OǁE@&iZ_ZeH\`qV3)^^yU.&cl_U(ka$*2-U!%17KvW vه:!]g#IH;_6M|WQ5һY hpj037>8GrY~ЏO#d֣P:OCmG/<7q*~۠K|tA$BIƙe4;dV z $tưc|qDhS@({49S!OA%% XU^/oP؊?I<סw<b}ۓ2b ]%UfiUW4}ETeكH,]ißbFAZx  .Π];=W*q"x1j|Rl!9o%hT>{싁4`-KB5ccA%:1 (t+mI~0jl8R, Gj1I>Rr!>T+ :|* Okr 9 ߴkhF.+hxϟ7Ѐ& :k/ˇţo[Xٷ_:u&L?# S_,{#21=F=kth'\N)Jw4-h|-+ГXKGL-*Y3=sJԇY#t,O +j9S+떹[$Q\Z-2d5 3(#ɥ/7XγK r&kM]Rlidg7J SZVe5- ~d応~DݵEϞTER2EOKXmQZV2Y|嚟s;lÈ{`EMru(eQ^pD^ԷLn8o(bDFq64Q@(xޱ'kKNύwK$-Y5HxW=5 腰=Hjm_˯o}JՏD {ck熕A- C05l1 {PNYȣ]/S~:4#Y/VI'mjBDOB͵hA. B%L` rX Gs'׺MA00ُUΰ*Ήb>h/TnӢcB#JovNQM;eqA$͘hy}?b !/)Xxҩ1:߄ˢYT=G,v_y, ȁZ;&=,s47<21h~*: Srf;vVZ}hGNWxk*fC(9h]x6eK: ).MR܇%=TiVDžiqQH6S9$͞_M5a1i`Ѩm8"p!/ mb>y#NO6+b4ь(G,jcWvWѱE%R"h|!W)\nCd(:qz-(l,Z]xQg$5M ,ً@@8>1DEY m/U.T&/);1Hٴjצ@)ލ&3 {E]5N7iҁVV:ԁ[WE[*04t?ka^P*#9.%;~qAڴ%x_*2KQʲ~8xH9}{ @i)>@Q(^DA]o v &b?o5BfY=_J]}w3z-UʟT ;j3|x!TS(\3Af'oʗʼ6i;mA5cnx3 ;#Km<Ϋ FjmetܾyE~]0H2(?>)l STgB&9&`y<csFqpdE^vҗ{ΐV /B $+$bN.L.|yqbA\ԈLXb6AߒL^oV}ӄFtbaw+j@\j6vұjb}G|CpAOű AU}ZWG̺w\V7:<4d*_Y{2Ih 0CgdR庿A=JÝ\D>)lbb):.!xPn6lIm\m/RCg[v ^Y blr4`DQ/ϧ4n\s߂+:J͘ãX\AGy(;tEu%k Vf%h6U6G8*Pi#ÔɪRTMҢ6zѪr|;cٽHo-iXdzˀ'KK=Uh܄,ۙ4eDΖZ~qs ;#]gX79TE%aŃ8_jIY'vnH/;39{c=Z.* V{-|+ؖ;DI~gB}pѻGiU> a kI~zX*#4?׆ސ2pG4+ F%n8\xOkٟ#^0sP+"9FN},jlGS$2]Zic l x'00y˰}i%O@~3 ,PfQmRߘ yBkՑ^9[IQ">>ۥ QzE [pdJ#<![Bl倐kWQb "O܀ tcgŐ?ڈOyԱM\[)޻RW0@y,H F'm}rFao@w ~`m2=ShnV+3Q;]xS;XbՃ, ,8RrMz5 4䖄8Y IŒ׭gifSH_F G?DBs0)m4m$s\5i(Д`nUX0d>]{{D&0Μ)\7{  Tc:jjTJ󝍂2l2:Q$ *r wuf.2($?2x+ [fK6Ge`W7ȋ^[3osv <=VwRف<ß]5NoA;5nf"mįIXMVß)p'rO$*)f 7W}ǩ vpjuUC͠Uěl_1a#avn?rtB}w;a @8@\ MynI7g%rbL{(!YPb}W5V\컦YC*$D2*W=oB4Njx>2PYemqi!Hb=K3 ?]R9ގ iQf{mmVh :PzV{0y+<-N]8-76D@oUм.6ֶǴQs]~<-}sXNW_~܆I7)3RQl 0 5uFLY" #+sϼ腙24VaO}*)bx[gKT$Kɳyqt1Frݒ5fkN+y;p^' t'ŀåb#ޡHEɄՠVaΏZh@1cX /_fIV CCׇpCcaxKQ?U# NkűeG%7:v7=. ] 4KfӲZp/\T%F0*5 .Ō頦d&Σ 5@ڸHGCٗm8SʝzC|@^ Su4OeT30LZTae@7r>W~Bc/>l?缽5fX ?'ql8$X#gB5caDL(ZhyeY,3 ?Z}6LgQhud0J޷i{I!"s21nE*c|12v¶OC8bBPrZCBA8yZ%ke܀oX22u+)RҡdVf -ݲ,@sD]x9v׎ޡ{L7k,&agTԎ+0BWBД3O,E-y*YB_b PB4`uQqmmŘZYn|7FLWg8}NsтPH?bKS %C&gy1Vdya8_XA8 uE0_ =v![ꨠiz &+VA|p) 0\ &QQOQ"%FvUtN_(F_Oπ5;2_SZ鼖JjDAePeZyf1Su)閿 oPsS=E+xj†6JF5E^885-ʿa:ʨ`a > m)yjO%S XSf )j2fqJL5U4W'FnYBhn)XgJ[&ݕz E:gPTP,Fyt7{Mz:7'¢L8s +޶X-/VL\Q1igZ>(Ǡ>ȶJGI:p?f3E_-ՐA2aTNBM/K;\'܃dvV Wb? q,+#dXa/Q$yJ9۴rznpM=Ǹ8҇7uO}Cx}B-}{{cnpˌ/zi0( ({ }+MR6B^1W|FGLƊdyxҒ~@ҫ{ȢtO gh5h==㼴nf(:83[@d#fcŻ]T@zdmbn? n=%6Yo[y/=~97'zzBuhE"S+_Z}FYE`0=,'mB!u!\łW?jrD+Ȑn9̲KQ,ס,iv몷`|}mlXڃ.cY{凪+'[Pjإ'ťl}m2=hxSl.V+ZJ=,K*S!ņ7]yU rtK Mji}I%E+mD`o`褺{[͑ ?#3웴,dث7~4DzƷ @wv8!\4q-EOY32=3Jbq8U=On۹y6vG*T1xc;Tz԰Cu)Dϻ#%>A#. A=y>G  J ƔW]g+t~ G¤rxXW/<D4>de|IpDRܱFHs6:9; Dv,2g| i:vQUGi[ې;Uy1@pMɎ8x0]JM %6Fr`BT@‘m^B]ֺ\Ajl$;B(r+..aȟ`G&pF*z+Aw裎[y?&z(m+ K|Np4T c =}Kp7=z8u,"`skjG|]&ȾmMοą f.^bqHI_\6d,fU\+seiklo/qO83W /ziz/A輧2PglSG +a ^`WG#.2wqk*0ȴӣl;S0(Ki2Uj!`Qp;+kr՞9@RF6ȿ2Q4J;xMV:!+jJP\bXA6ZA E&Xߓiӌ,KNp/,\e uo;-h6299sۢ(!c/4E"E^zꙃGf ġjm֤,s6|fv I nR)2PR _`m-4hF,ɖ4& CGN}#}1CB Xz~:H;pR>cC׌K u QFo=/Y2jY'G,Pap-i*g?c Q{\ʧfajN5),@;ٚ5dqcdo`r~. 7yC*4}#!z#͍>˸XI򘕁/buRws1yԘCOVя,1!-ZhPy#֊Cg{8Ř]u#u'4^z/+g1gj@w_ ƩΨ6 Z${^7 lbB聍ګc|daLDxB)f)5دrpҳ楫Qv{KoFhO5*p[s=VHuױ`b0yH,*d>U]cWݓijB3;MW9uDRB}`D )+Ye/9ZgeGdoky^7.5n heʧZHk@Pui"wŠLd~)Yw=V7E/hy%匎\vng- t:w>9vƶGu`ާ{䖇2i ťkyzIUMh´Jc7+2^<)D,P)YdNJ${_ Őz(a*iv!+^to"Q.dT ݽc$+K^Dlg"3h 25ЍMr;W_Bb땩ɶݗyUn׳i3:hZ#)V.˔Oϓ( aR0-w.v0"Eb38HYMU5{!٬֍ n/3RV#Ҳ9(j~EIh'3=uS8+E/0U B#5'r-11H'ŞSR̴uY,Xuxto-GAAHq3g(8(14t,%Wn]3pl ylH趖Fi%P3 T*hǵ6>P/21>w7/7=c;8s|5RR=ނr9aeRRn+Jչ\ĐPh1 GuH({!(DKm6(v7cR)-p`-idsl)n/stqؼ8oW>Y X!a~UFi1bh4|49Uw\)Rܙw>6E_,9iw۟`4O9D]0T}Ջ-ug(iZio8O;ȻW. <$wZa/<{bԹ]KI,_3o( ^hqэ8:SEߤ|\1xe`< SUdgo;N X>TLaD*I98/ s%Ϫ$9G{PN:$uu#9 Sv@uGKQ%TlexfaO6SG0XH(--u4ēX.muN"Ķ3 1k>3 3CMa F+z׆zm}v'LTwc}IwEƜ8n=9UYe? pt9GU8.R_ؘm!,:?Z5*;G¼>=rduO+}d8֣̂}H+>$&<2ZDDž#5qw OS`HF\f-Z'F|^E|mqpT^xcSZ}Su^~t&H[P穸^}B3ѥLX&tT*C77(UҼ[,%;?QZx)ZWAδv'&l0-/]3H{~|JūqBm=[uoe~R7U[ȼ.2ohB5;ϱiu\Wi;YLt-I;hb B/>AUVlѪ9"a?+-ɾLz䑄?)W\01~>Tx~jL6>DIB`#t X]L a[FM|jhZvlMKӝzrR[A>w^ɢ왔epk #s:\qcL[!uvOPɢ5#T/9ҽqI2.cy[.RnjHB^3e}@B3^\L!>9 v)ho$񨚘U@(7*bTN()|87Ջ,Ll AO ( X$#])鏑ru-+8>qΘ8rvpYZNaj>є|s$i1k8XvxLN,MN(HI .ƪG==O^Nu[x5{ZEnm5)@rl;.mU蔉 O7Bj1̀-оB5ldR4+8iqlB*r(bi>V3s]S_JSIh gXARt gI ۺf=dk$z>аQ٘d}- qa yZ~dSRX-DRvX& Î"NcJΡHcܳ e{'"sܐ'`m2$5XZM[^Ix>ge[MԼN5 6UxP9 Q֌ܱ.0m`l;/qۈ~q4ؽ{?b\EML0FOjYK m^83Lu+3g)99fF~%*֌A/NAnZQ-hhDj,l8d 8(UQ1~_$a{|a.^Vk<N2m~X!M.iɊ$x.{R$י}#Nd$ڑM<3;Zey&6%T6+lRAu&_%V`-';@Y_^ De=V^*".S[_{ȜIX;zr`H&/SSqȦ&k㐿67Qi`O" Q qn”-ht f\\}2,N2@$H@"Fs b"oyW i%~nk!^63GCos\VoK40q: ӯwF-SYHr[ C9[N5oCu?ym^Tٖ1e[:Ν9d*K0O;# 8 ]xDnKC(o?: qN@b{i#k7i}ԣ Q̗('<s5ꢁۙf^$HanSګrf"ݡJ:#;bʋW С&L;M"R/dAWX?}ק*PWaGY}3 *dR@! Z9Xjէg %OՍ ]FEϱb HA^DZ4oX@#tȔNlB^@6[u/hu( D"4Cvd**7"xqIB׈RAnqѻvgs/|iYbaTw}oTc}(o6a ۍFڎ򐨀:ZrQ_;A3 ft,4E)Jx#ȻՁôӂ۵A$>6ɒH_ gom;5NZG9F蜋[ڻ*k%FV.}Nz NHRpZ03dv*"L + zI|9t-Za* !#EM *F /@(⴦כּbKxD۬:EK)}OM^35Qq(ݠtնYY?+^yA-/Fo+JYP{|r5A_RRJFofxc+|LbC~/m|=7,"=Sj_ ?QM*9IYǠ~}%3 [ 3%r yCQGVxO;yhz勣~@16u v U2#U R5wol"6 ڱ%AjXz>Yq I8 ʆW]e8y2͏@jYRIPsS 7g9gn&/iOi#x#YP=lo_CLlז(UJ7Vu}lvmFs0ԗcqLk/m^+μj;d#-ecR+ '3 k՗%Y]= Y{8( Q \Xڼ`ac}(`,=J,is3E_!E⾇,˷S9mW-1pgf\,4ϑZ3T: 3']OtwHEIt%Cz^ Mɞ#Pj51*,vBs𴽴-/S1Y howuiN^D예._yϕ)zRnȃv8Ћ_~SMb6I[<ds&/kDCCmo$[Կ<싨G(vP,6cֵޥ/fʥ`PaRLLKj4 \wf4wfC"|\H^#)!~G^Y1@rRis79 F"F]sEH&}[ъOc[k ڧ .{cWQKƱsQ>;Jh}FYV >h zH~5ɶ(kuu4&D,sX)]?Ӄnn1-V h YϵǷcJ5{VA2Y7VH ,^=11KȋD[\cNGt nצ_/C%jA;ne£K¥('EQL]w7sFfaﴬ+6mm"")Q._w5iGqt)zZX4u .wn< /ݕޓ<#=qWj9 "fr.34K;QuOk mg6.΅C]ڣ>f-"!l[i6:0~_ Zn#V/;f,T*GjFQ}qL̑+9SVQRTCԛTP#NgkkM9ӡ!q+ Ti+&+C!?g%8@ BgڐNâދ-غ+ZPׅ)e0g(At}a_$#!굳Z]n{"&Ms3ݪdr/y5=@tC+Rci^PqߐV[NKRV<? x#5P&Df̵뭅)%vOx{)A|U1nUfOv)PU! (pA3kqjT2>S V")t$S ᙸ b&ߵChfk*Y0q;@Ex׹Z.RI,|Ts^oi+ ^ /ć:qGIvO[Gg4) pTLWg^r۟{ -Ql}dޮ)xt7n#oww$,8&ۍX8/؟tҝ58;u*2z:]\߷@kK%V]HxUz&hlJ9(9sW8.{Z(MOfhd@5Nԟ:px-FhBM; qЈs^K=rc(#yq dRC񭷨:]Yن!fZ{"].PA7Ī5nQ6xr P ö]:[o/A;b1Yk>qx|!mrC#mUy 9)uuvL!֢#]ڿ(Vݭ:@ ;4bHЌ=#G"e_?ORw^* ̝oc{(: 3,O <ċ!LՄϏ-r+;R0n{+z9=a:m 6%0D{wZZ%udD-3K|hgF5cf_nf?w{*8D*]ʿ#xeKAƒcbd6.:3=x fR7AU?ǖhufu:x-D:IP0߿,vxߨ#昤n>4YS66*u,&P2:o7(/j#m!H[+w"&-7vWTwinFz>p)טOvLx;(cT@DMo%W6f$dަˁ.yr&|4ݎbs9K|y1>N}sX;%Ԩ=&,\!Z#EpfȈawIme6Ө~(S܈ucfL9Ek3\x-icr(⧘RLqx2M p}23jrbӔW$Q)lX0.9=1hj=" ]p[cappD 6&\AFrL=]X铡vv9ۉFUoZt z(.XCkUXdƆfΪP yy MJ_Y*,, c&&/F/ cf'k?<)JBZFCMVP  9AWv& ,tC9V!,41csrD0w'mYR=Y4FRL+==EЩhcx8VB/(O?9%JHKy=6-/nnnAf™oJ^܁y6ݿ V] /X&P ,Ux1u5Z5Zc{;84E3xqFid='.n]XUUʭD&) Ǧ:n7͔&M4h5ScRJɫKEO3كm(U\kee|#{u)(C ޯƇ=:yԯM^(E 2k:*.k9&UJ\aP$j^@{ᦲ56daHdVN(-%+{U)n+_50^O֙Ca<=8ms -i$Z[8i'Zkm(Gk996Eor,ۿV%"VyDε[C) g \6drKg$/UŸ+~9<@rzg5zhޝjCUr[Dkz9o$G)Q|ڤҤ\C^\8 )C{>4IU."J\NE l8g݇E?ʴ?* ߿Z[* w;Z9_8'IsSeV謃>nlB51qMp1u'OO[&`A0reU7<җXl(o]|pul-:X|ܑpެ놱ϥG50DNFEIsļ"gJsQ(\$VJD{:W>O/DEś @#?gL%lw]Ҫ~lnߨ הwll;F1FTfm{|NgTuhy=*)ZD̎hK\> 26 DЋe;H?-NBmgsP^wdG? d7e2×AmmlBQ:!Kn %5Es;i267HGnc՚+jB98zڥui_AQ@,f_/tvy/\;Pۥ0Z&V2@VKɤbVq0:g5M|/pqfZHX_K噒xfA}%*p YiQ[2{bMEk/h>m6#R5r&k)Ta) %wދ,9ゥ3j]LͿ~ņk>O?W$NfCBwI{]88RedOHAC菸Eh${Jj,m 9uanWʋB8Tcٹ,TU6nȴ]/ES6yn!Wew#:Uxrl?϶kR(H_b~ќ~)aC/htU+Y)rj'JAǤ%'OYӜ(e7-6FDR~' #t6DU-<ؽl8$;ՕQΆ~ F}-XO %Y}0mtbP*JUV߹(n& 8?R;2\)GRp;'Xcl6"z)C+w)V(S]%S-3r1P`iSʇ VPMϖOkW䰿fS"ղ)e$v~K0jgomLkCNʍ܅t%fo^%"cz"L:Wr0G"Z;A9{ղ%vB XJc8 01rT5~8먿$M).C\/g:jr¬Õ4~~V]@S֭ Cb*~iQd+6$Gb€0P쁆ps.׺coZۤf':VFƗCΕr}ȽE{@nhض^ :*pcwJnc­lqk#ϓ/33r"[85UlX>eV6< ׌V8,UiiKL30CR x,\aIoVpOP"b-7X u0^*_[-~9<-dLq`:cP#A }O._eQ#T(2:@~6k{ZR9W{jn@E:". u%EGP^r$O%JyR! b% +P!GסJ}OXgɁ]-As8|)u5Dne h iH N~B },m~<$\ol9: c)aʟn5{ / O93Ѥ/swC=%uP;;`j_K8'Biހ*U/Hq!C2GOJe4yMtpX]/c-Rqةg4O "Z. c<&F*H2K(J!M&-lM‡D2& shm|fW!ăULvG Ҩ[>u9-@Ckh?6S#c5aԩ(j`d|(ښ+a&"߂><$_0ij9pr^Mk}t7FXkr82I45hh4I5q Ccb\ Q( UU,`Nfش1eB/R\҂ŜRY>">?jidJ#ʼnlE2!gfY/I֭1$1wz{If.^gp y@.<"9%ZFVwI[ҧk0I ] $JB}AuZ &1Vߏ =Xv)%9Shws&b3xW QF ˌ +5%<*4]3k@ծ6.: %,78msEEہ5 0\|$9?Lzgg,}=j ;ut!T(/Ҹ%$RCz9>$ W\F& QD4wKpf5Û^c- 7C]Z)Pg~O ЅVl ]\/lL UP% O}C:?Q,uXWsKQb ѩ'H6s+lXQ9ppay -03Okuec%#mMccE" srr Pj6 zorC=Kn?Wp%7|;/PGa Bw蔪߭ KI}bf5򧌌Һs-4UIa+Ex=IS%`Gq*!qc{ /GGtx0\IhQiĨB$ BNvBRH<{@TA7t|M͸Rcn;}ᡃIQj5ruG cHs`8A :^zVB)ya :'{IBч),O(Z;$Oտ ϿwM1.q?5jЖH!8%iQlkg"k)%{H僑Wꉁ]$/gHQH<mSp sK7|dq$Rg af=+VJ=+ʥVF#+8PX*tv%y@ MI Z擃6:tAM@:3BP^S u銨Tx=GB8*: E(1> $*M=/>ɽtBp2d4䬘m٠/fx GY1jg b4;%@Z*#\f(R n}[Ε"jl6L`Q(/<؄Kc9])1 e^zX"%#x~^8@h?B]D5Q$#`WM.&1zV_W9o6)EKzlX]QON/ 6Wg!;rg&UlK03ОG { w3͙r.n'ҐECߴgc֖ڛfB^ގ㋽K8ncoG2jXy/<( baÿo8Beqa0E/BJxD K `l,AݬU̶{25r-'=0 8DpW}LYWґ 4i1D3GȚC*md 韰A}x\!AD>䀶YXבQtںT 's&!/45Y|쥧j[{`_Mft($3j|`IC lyӶ;}m}v%_]8U?JTs~Viu8l@;$)ZISx%żmZ`#zNf*`Go!+X8,H*!2?i.t#^{M_Dp [W i+1M @i\ A1 kIv 3 /L-Xl~7A=^0Cwy~EG]@\{,h{2,"Hӊ͎P:y/nӍ.=_#ٹ@8x}~L@`/M/GGl16S5uOs,_8N!J֣IcaD--;V<03w.j46;-4'gŠC拵,o{M@ Ip%)|_YxϾ%Z浹Pq֫Y"DmLRl<*SQtkn]Ir+?NgFgM@(_oISmKZ|@!ma]Rqu (Df߮]M 'k!Mx؝<疫Mji)\aފbd?]eBG-N?%= >D%MY^F"EX];O"N@Cװoۭi D9ʋLpϤ];OiwL!"Q3aeRj6'}#+R]a߽mU8ij#݁ա=U]B.5a$S9Anlb}s.;Tb< ?C~n 8t?/.F ƁX궆g3<(4.d>~,9úv %h6s؏xV=PWnKFsyZ1 <4mTcC^}5}e]`ݴ(Iqzn9EE@`QCAtuVšy9\.GcKZuf1hөw[q"dyh76LuJ&3:l!懵H]{J58){qG <30vo ӤRԊ(N@ )gf'(:;<#O@\!r&M2܋AJkշ.![O-X\,*zMi3.Ӽ}Y1O G(QA Jtod^_ DOnż-X%"Z8=CoHavP2b7!}|BZc&at@xۭτ@}+Xؐ.o8FH4v/Ra U^b'bG*S (2مi つn氩):4CqzF|TV@S4(`|a?[M"R⋅`ĝ!\S6>-Ak3zh "h7XwZB$:b1x{lg$Iwoo]52 D$:c2le`ii}P-fAj#H<;)5Lk:@M噱+Z\A'?NӪOΒKJ]lmS,‚32{B&4 E0޴y Y!aSjm%c޶ ځQIx@4;JqVYJh8+q:36WT@.D) &::sp57g] a}ɓdҙ9ٯ!ȿ+~GqzL8[^JWI6UM.o4+IbN)i֍U/63ʚHFZcG  Dy'_[=8(nMLelX+}%A c pә{ ЍDx(]p԰H?ǃ#c&k"AHǻi# =wlHXUz l*xy;H+Gt{pq<ynv~+rшjߨiBmsUƎt}%r.ˆO2/SX#uίJQ*Z [xW6oB|AASeb&$zBm ME.9:>cA<%zܣ! UqޏT U^|<7[][Rt2ːg ƭ#qCE#9gl){x@DB-~CV&Aߑ1u?eU+5믫~̀9*9,@f{3 .s]A% 1Z-٥]# ˁuP,\ʃH0kFR&^r%^!yi!xo{vŅ)u<I%(nՉt~6o|oݶ0J.'RfMM({uPl[<%< ?/E[d퇻?!DpAm)^*~;c2?;$:cDͯ?P4_J3] A\:- u9rMC 'Cj,yCC J:^ʹA{!M G0yQhz$]jֹ^#]t+`:>tk櫤uQ]S'Sw:rYI^u?7:)uٯFu0'w**MIGv44tHV((~бGWëhs,x9&sHe(BD1j]C72:%fD gX7Ԩp&b(MA8@bJ+m-̰H`c&Q|eZYEw[\e aH3XMoLZmexc&acL~sz=y&IaߍG {u=o@A+m{¸u_ a:]^,P"2qhoרNݜ D> q !xFܕ=[>?TjJ;]iyCW2'3gCMm؄<R0 G6v%@~M#߸[}<Vgc*|!S.H}8]n >*(%x9&cЀ}ΫG\1psh3MhT(H[!f8Sd3{Z:ߚx](g W&7N cRޜ7vNJ$Z5?*JΟ!,;Mpw=8j$PZ@-)ȍ.+\l `ytfpb%w>.ʆJ{&aR.N]"wN9hV;;G@~>[QiG/5aR 4^5AbO? 𬓙M+;dD| f˛) !rD6'1G\"9:ҥ/䈠5|Vm:\ec9l`gig{Pq$JK8 D@ZhO}WJ]TA&c:6P1{P.X>T5a]\j2؛v"$8nk↰3vLesq9(|e!KwPvoC4)!R7hY,Ơa|Qr5jnDBHGAc4_#B.}c9ke#JJڳK hT8d雕x3Vrud' `{zy3& 53/kgƴFY~ZïLޘmО<{dDaqqyTq75 NXbذȍ yUռ7a}W?S_ne Vj!)28 /K1t?"o[l\#@AޏIቲA:2<[mH;hOI/ys̉FS-BT-$\H^o[sɛ * _t% ^W>tAlߨB#;<HME5mݥ|6z>FR,߹YImWt7ar xF_Pgr#'G~bm]Y2V$YQ]w`6#;af fxT'SF#L9ߙ8cp}! nSC$%d;v_-"^1m8δӽQ.ir_4;gDu˰-m%v6-8ԘyGh L4TO-_SpOu^h[x &Pr͕VA䢂6#(4A!j"d e/՝_Ƚڷb Hne $Y0f!芇ek3O ?0}+x$Θ-zy)jv?.b{sAZB% \J!;&zm@m) &wRS6ɚ4s;,1fIهݟ.:q #7g+r 1XIvh֑E}/mib)qMGʢM;yGr=f! odnM.笛R&*!f'iEEep9Uui)]T*ja~;#I?}]ѧƟh}tZg#f[W@n A9a Pia*P$)xW/ W %h t2 I e;)wƜ |{I.JMSz3w8ٝP BJ?򬇍?G@Ic=bc(i#3SwMQ1d FXڑa"J}Ȼ5Z1gl}dʠ8oJ_vò䫩 t%}Ӟ$묐Am|[s>[0z:C/#6Q)e16m\ݮHuCiBW&Vg>vQ, ߞ^.Iϐe~2~0 aJW`8$z[QS,n B6JDY}6$`t@x>Y9.7&cgYk! Y k _esU?I6 (aGre/k 1n\+*BH/:uB;6llݪu?2~ nP2[HUY+y~z4oۼQ Y:#T0(oΤRl҇;.`+tzJArӫu%'x~e~d&dKO"7N&F$E̓u 9ȉڴ*okPђ"R5dE텨Q B~5' #NCeK*5}~ᅡ4/hgrYn݈h fYըV͉OOڹ E0*jk퐠#uYl)rZaog4=_/Zb4+-7,FXv0ү;d^~ӂ\i}: ma/C2'12'EoKvjHy/D$8B'$F* s0=鮘f 2݋=kt@gzta~P} Ezqd|e+;k|TTu'mcr ("c>QEm2Ԙy ц|C^ߋHTV+%@uG`dj."!׽WO Rx1D~JT=l]1вꒊ4T% ~٥0&2x;D_\OG9UM|~EW=?<фCT٩z7&w঻Z"K_R]O}"c9 T}U߯`"lӰWWQ-!LCM@Em`*pqH^հ4ϝ;|ĂI(%G]B *q:ތW@==1bASԗf4R?׉Q1#xK}˻ž?WHj/#c40sЀ tr-KށA3"2+1S?q1f[ -Nʓ\G~\׭L cmcmYyF ۺ J5BWIjD.Q$ Tpg` tOOV Y ٷ)f <ߤ`sv:\{*?u9U@kF1OIY'"zi㾮jSTrG6uqW0^z<$c;-bGyl>OH` [ |~0x*tfS {3PV'|6yͼCj$$Y_ZJ_˭VQʒ?xlٱ\CLE:j&!*cw;MG0zD{Ge,Iv/raRvڈ.J1 Tѕb'>W)4.|"lZMh=JbJ0&[>Yc4Fw]WE-i>ܦrfCߣ{־3B6m6#& 'k5i@509Xז9]fO#PCM."#t񆼭O8B(~8O}%$KgO &|nρlJyJB@Q˗!hf\`f( nޕA+RՉ:ГU77}V(큅\ q`$;AԐvGkҫ;@Ao%t(_AG l4o2;9r!(hMڥ҃uӾԟzjK8޳Rg&g,ʒ)l]J98P.KBҞ׉z`qp0aA&%,H~NH_{[sQ5?XV" kۮ dbXS{]VDў2#D3 <`x YGv<)eЮkGڔ4@f$CQڇa3ґH YfUJ<~;_+ Kł]~e=#$Sss}* '(5\|2Ȳ,kISEڻ:]L$% oH76'z+ 2rX a7MnB{PoS܉7ҍ9Bԉ=Xm'Ka 12De[ H*pYމ0}4Oz8058᫞%=|4 E K[!sӱk;S]nnѱ68ޏބi){S}' 7/mJp`Ī BU axq+FuX_wNib$E׀a~kemN1&rWxOE7z8?\̦NC#@ǭ9NopIS\]xF>j1]eLH]TQl<|2\ԮVlDވ/Uɭi]0LPυ[yU9ن֯ɐPiAM(U.LVLE)7/] =%L\swEe ɷ?O`ixn5uVב,eD yqR',}J9K$q*ԯR4 kX:U1B.\o-<,L7&(yUW]y`.lnon^ ]:V EkZ++g@p~v]06Xta,5[]FPW*evhBy3rB{߃G@#.9oX GvJ #}&jyxVSO9HKD,c-,3oT=R'NAe7|75^񰞻:Nk 'nyFF@ ~+%Wu5+b>+#e"K /+y8_f+{CQT~ (B{Ԭ- "ĸI4}n 5(;pub/_8@Rpfٿ&Id?"Df7|'l}0* bkJbQ= z<SG*WKA@]U8@UI*Bzk⛄7ii)nN1^4%"d 7wԁzA:UPLr12Ƀ{arqrֽQ:G+1>wM= TaERH<8߫4&DgS_ w~s&UޕXn&{ U)3O$>UbqUM:CKL%Aܭ.TïSuУjjpQ843+\lYp4^_sNv( !{>كL V&Wٍ^-;x],6Y&#~ⱷYf{K93g;@chs8jq>\! >1]M)nSÂ^YVafc pFk3 ^I-iv{{b̟]Ή*_ +YMS1H,u" 'iri2t%H4si:4Kpi5Yll៼3'!&sGG=Rdn4cY&C y)&,1פ qY^FY┘u"jw #ې U{FኊF)]j~f lUwH|ȴ uz<C0)Dq^(Mh6d{lLФlr W5#k7ȢAc$~ =Y k+y@eƪOy>೫Cy(r6g(5Dq'+o{-}u2])ĿEX;&>X1vCTD=x1c2jii_"C-Q8br ٭hZM+0']#awj't*]!,/gʻlj%<_;} 3sm&_w喺Oں@禋Ф MbK)Ig{ _nm xI]([DU*gbsؙt3ɜ%zQR{fB e:F]D/j [k6#mi1ȥTFjѫ[tgÖ(jn끯]y\BO)ݼM<BXc}ʚUC a.~I_I~*_&nZr=np1+ʋAri4rYM&JjﴏeóY`?L{ ht)WUXa18S7Ȟ,(hC4cp'+W.F٦[8O/^98"~guqIcWqT W1[jUti"'F{ =EtJdܶyJySu5^zy@ xwxǏs[$L+틲R9޺"^UyZ~JMGAθ'd;͗($/vhx\rq ΖLL. Ww7cf;-Nf[ߣ׀0rЩJ2A_7'Tq$^G5d.k[NԳn#C5q ;)x5}d0cC5iJ9s}cnox\_KKtxEp )<Ԡn!z:9Nb^׽XS#B*xo&xf:A66(Sܶa0/ ũ k3|/Pv2B$ K${YSӯ*dWYS#mA6w$>!9[/\yIZ3nLcjPvm ϶+Z4GWDEGe<~4 ۪ᩂ:}=KpLM ݫoeƚ:D>BdF\+T֡OPj`Dk )*G -_:/ SGm[-/}'e3ݢ,sPzޠ|76L1σFA` z %Mi4i2NR+b6&GN}"Lܬ MȆ׾ݐeQgRBs 63KL֤D( 1\qosi-AՂ ?SQeWi?9,lA]Ĺc#-=pqcw*0opؔe$*)P{T"Vco̝[,S:ʓ⥔-)-D"'MS7i1q02)Z/Nس䱃AW79PKc؃ClI܊Q8gs )M'xtdߊmhт{LjV˕mϺD-7`~A^5yGuO̫/1[(eudcYtGhѲAxH36iּ/8z"eٜЍYN7FW3D\ʘJcN1㴂b03>A$[L-)IX&ì+-d(}N0w`+Pېfiw8dĝ=Tj@i(sE8O:z˰$RaTw#6RO8+e[[VХM.c`g bp3P{ \aٰ]՟HZȠ{5Wcΰ\ԕwҦ?KE%qf'251;GU)_b!T}կHWҶ*>']Щ?ܶ8ъa!PylSH0`!oWm~98wE*NKX Ű1yȃg$i+BW$:Fa-OG#M!}X%'řzy az42Jy G󺇇J7gvӚeC }C aFEVh7!agzv'$DSvYtzeh8!]MQ%tћD롂*[1hTq0"k>jj-RG>?"-@[{VcY_|_oa<7' 2x[LkIǣ[cN[{> o-Mg"AdLQ߾f nIok*fl2YЗdI|tq@jKϓT oba8uD4W[CWsi+gEpɜ;wɌ`ds[Fo_=`8*?'L=վi^lJw—:DׄVy~k9Z[/Y\WVmBUķ\zgD^X-RW󛛿%:PctҌUqcwyî>QeH&ǹEU7I882."ՙ09vRp| KHj&vl4o"B?ĭ<ޅ\p zƟ;KO+\C Y3w}GB\HS΄Ʌrxǔ:ue&#,x<_R-#e|k*VjqAY 2Ĉ+|8ـLܔyD`esOE\b F*0Ci/E[|R-G0h3QF^`KuTEIb ^/fn8x ȳIIaHz%̗&@IQ+k#q _*A.Dꝣ}= ly[_sjCX<ӥr(<Tb}䛫/10q03V?dnI3ӍEt$"W7( >dŊ=Is^G?WB 2*ܕJqf䍏 LL׍y)AW6z ǎf̔7$jU`s"yV;ź&*Y0 l;|WQmgD}N]tOМ!߂kmjq9x7ZO#,Ւ-J4kjy]-s,!HS‹C̞8J1D _*j.FHeOa :șqz̑kLmt\a^ U"Rb8dW8ihwL'%ԛsy ;eVƥFʙ2;l;mnA9]؝j)_J5}yU2#n껦{]%|bPFuRtB^2Yޑڶ_-t$J߽OAyQ{ ]X?l~J#k*hоvvt%W͢Ñ,b(ט4>LP}}s>9ZdB8ZRx;]#0%+z\N$r8LN!_%VT+qL(x/CJ$82FNRze7JWCe׌p~DHV DjEN3!yP7XVǏD7Mr00 tjU} _HG'fAsD,L Xj3jmx=i^+`;#<`b%@M3aSmν! Wf3==YYX^nƴ>WHU݆^*WfY-|m%}) X5Ϛ4q!.Fo Br_@/kHk5xv"r=i:>,D:H@9`ıd98d=f>2<|uyއysP#["[C;-tľc,5Ǐ!$GĔNIg3[>t0Q)$U%8.8sSA$ 1)uTڎDxq=/6Ď ~5Bu1҆i͍lE 8u?'DIM\jx H3ɢ16#2i \Fczׇm#f#5sS 争 ܉nXHz1Ir=?)rF4|0U31h$PTZ 'hYye:ðgKKb9Nr"MxH ;DoD}z;'b&ULťlcgx$sXoglFAAnp\yZKqZ'a>5qSQ,:aZ[ǖ447MH$2Ww /gÝy5v)R.vv|9ʷ9i@hwPǽ);zە͟)^8M6 dBNJh%>K )z ? {$53&"L *usۑ,*S5 J;o囱pM _YY8D{үPG2T@Ś.Wh݌V@_5۰X[z)Snpa@/ SnΗH+aכ,<^<~(^b{}ε|f,{?o6puE|_੾W:)O_&[QĀU[Myz Yhw}wPR[ ޒyl|Q6F aFӫ7Ĵ8.(38`I--W l$=ODJ!Mwެ4ˣlNjDnԟ#$.K X5KA x>R;v YB?57L/Z3V[D4s3VAc7b@ DfK7S w_ipeF傢%+xu1v"KڭBr)ݟzd\,W s4I2S80I3fl鹱5:㯥̭QZhOoz$9u-|-cW.L]ټ;IAsmz՟So:wivE jJ:Zߒ ux{i raT ֦TLn.H$|4*6ؾjeRp}U>tw 3?=`o9LeOJX#Cb$ieJ5^Tp;+-T"݇Fiγa'0ɷ\ ð)ɖ8|B;S4K=G8 !ߣxt gB[£ lQ񘼿hbSpㅜRm&q$rN [0őQ|X#X22`e5J[3No$:lCcIE֠ "(dtęXƝ_r O:'t|e*Br fpPURJfF͵_ {mÛf7IԶq(YNJ|g0 z'=g!W]*V#MBj*;d4!lɤiMw3J>c2{<2hi7٫brR}WXΗ)8]@vጌf:=vO^6MOdS{PWtmA}jϿ{  WMLj+8c[6a8zЌKKcEUUt@J{ T#֭j-2 XfTC2'3!ĜUAږ:߶k,FNElbdtV. !`|>bw&*=T]9|DJ-1NgռF(DI1i3z-M,Nb`X:Ex`  al#,Ҍk.OE p d4F߇!9f#@s v56;P~W@Oi CAꙿI<+q K"KCCS_R#΍ K6847Rr2 0;r8is~ɩN0"]V|}b<j9T%UWe$}$AHJstEFjx04k.sb)J~J\&t԰֒Ż!56ӓ+lV7e\lAABCxygN(,RH?oa 3pNH,4 &s*hscbt ӭh6_.Xn%QI}/| z5,DO o)XS4(79*HdVgwBBԥR]ݲOES hͱ"4mkhn;1M cQlOѺs&.S+pс"LhƼV3Ɗ-HUu%,լ2'- Xܹ)5&l;CBa RIF-o;rZ蠿j 祓,uDk^)wŧ.ήa4PE_ g0 Qm6KdL 6 gH Ua{["l쾴7KSwXO[Sw{5l$;`I)wZq,OC/<!">F@T_Ƥ0I&,o|ܷ`z&SW* Tn*9,OKGS=Y1]l1ޜ]y kqj.bmQ>OqrNWVzky§Ur˫!ѠeaVQc$yml[ʾe&U쏠(R1 >ĵ$Qq<;T..)?#X^ ͨ8s5ob;=i`6"iaVD:*~PX!v#:ͽ8M]'wO]{rcԄPm6A9 X} (9NĚD885ݜ%;4$FWsFχ3*W#⾱M,LH"t3Id3@K 9⧈-+1/\cKEÔC+߁ l-NWP<0[>icUwQf;4$|teîaB wDPw ~-[6ցfl [4)`<,ڸZ!bn//`ݾ+Cb} m1gO;3fo9\5$a_R:AHkLX))c0J"y0T#PŠSay *2}y^I^NԱҕl5ΞhhSLF` Ҹ E^6O0Ps #5wYGA>{!m._"L r).$U>e&*0x/*Zy>E3m#a_n} ^(u*ksl^߫yڝh%Un?ЈFo!,7G"GQWSG/1tD[䦕V!!ȤQJ W๟LRL;5ѼP@+ORWocvYXX:)vlgHq9p/{E5rRZ\^'/UVQbp3Ƒ4eaMݹ O1? r-xj=4͡1O)ɨD !ܺRk;J#͎oaS$dA*wkϧ?!^I*%-Eؙq9tʢi삍V{Lv S"7*ʯ;},L@#=wA[d4_n&ƅ4c >?7:xMlV7Q؟eN.0;K= s+U>e4KY:76a#R0N$O~wx4Ke\JtTȣ^>\,a ֎L{V3 ǽ4 ȦvSb_۔DlbQˬ(E`dzOc @M'̢d+T[/e8`zƑJƂSE3stx"g-^7FbOsqgz})"P9#T2{|i (?w.`ز]Iמٖhbli?; CGGGQNzb]˪vKV 3V{IZ&)# x9k) 6oMt3vgfU6kk=,RVŀEGrU& _K}̑cJSp,,+m.rDh;i|B{by E@f2Qy2QǝR7'uLu\qeUDƇeяPP&Q`b-_:!{*_,鷌S{8J(z>Q9b6ͿpD#7Z)/0Az7BB2i'%/jNq?ZZLQ.2z\F2%߅U!wVS1D5|D#2ΗqQ~NEčr3v9)I} >v*[m;hoQ#l0q hw@t= (JWצj+SN4na]S ܁q``O=$&\(6 vbdqi)|!+VJbվxI%eǿ / jeh'Ji07 kltnƋ%*'jY G4{bq# \VsN+98Q,bN>H6{$35۶Nv0u-/xf+ K]iWyvߢʎh4>f5!&hB;~^AzgC@4A\q ]{bz/:W|h~$@HYqxnHx.t3 i[yKerߠ앿Bzn(\BI؋m#u -{bwi@zx%FY zBR}Bw򞃽b|?cᰧF0 NئR2Ta١w%!|pϥBeZ;xZL3w1< xX} G+E JHPM_%I1,3dؤzWq:X[:/ q^t˲ˤcTY_ʣoyE`| nm«Ad{V!}x󳷊c9BOW̦ӻ2n1헋Ư]<6NրP7n*` A2zg}l-F]]9Tq*x~TK8oS13!k\ڤa$LSҤJ5 c*`B_8.LٞC$Llt[)wiQfT; *ȠI\NekcVLOɴ='ȷvZ!oXvL߂R|]6p:P >ݜ/2uS`̀'Q_{s%+/Ky 3fI~Q+SVV͎V9[K0S]Ll=S8wWJp˪rC EuWx Ly؊ eδhVQ[aѣ;B!@DMWy(VURIDRuVmxٮJ`aU'l7bGM/ejnߙ&9/YVH Pwrb$b;[E E OQi4Ȳ `NTPT2^A}OCz xqX%϶qM}4J;ON 96 vfЏ ZP?S,-gm蘜DA(,xF%\Qs?kjCy <2۸75jj2Bv 0>ד4?_UƳxrJ rϚRs?֝3`84 veCY?!E@[N 56IEoRޡnjfF=EA'}q!K\& O7 b%#0]M>=#CX`8pF+*+%%fO)m: 5\i&&} @Wc] ል $޷2y=Ֆָ Ȫ{=mt@'+,{g*}yCRlNJ)3E49C:xW~Yi㨺Y%p*vAHN(C\p}(+{10`v-P9E_ #J+4`&4k/S&E܄ؐݧ%,[N,~`E楥8-QWn*4uT$5fM/2\[<ܙx4E.h̆|!v g1򴝫VA,qEа)fXݓ8ˡ:9;D;Xӈs0 J[`mp7WrmOAXd+/G}2јc-J;UkYM$+5_j8qQuGsgL}H 58EZ:")X}pQ_R)A? J0am$>d^ mfrC# ⫲k6] `^`w`կl]QE@Q;mm&z\k^8-+1 PVy/X+T/[ox.\pb:/LMW@0/jhګlhA 9|B9ߣpeÆ OamJ85.ڣBDZ; wIVcj˅+?-p1'^2:e3ZqO_nGMZd/Y|;I.8:2]$Ւ=mCԓt> f*PY)m̑3E2=Z0h+4 ?sY[I¾kfZ'iiMoAZt8rTz^OeV t $ B쳜s%+J>6l2]V8)ZHEcY >yS} w\(`Z~og6m:+B7C;;/gw?f~cE$R988W"nέ2h ˣQ)Zǘ$:D_;:H%I'Ҫfܐ dAϵ#t =G6yi7NDGN] Z˻޻%||}wF) U?P<ic9~a q[ѩ#tݎ|UϑvlB),?L҉bqaH3'JfAO3I1`!gu5vLǮXh\':O HG2ic?'5oD2ۢrgFZ+瞵LFK:¥Ke& AF1de%Y (l-Z}?"M#/6nuspycߴ l\=7HsZDJTYM 1SZdꨤ&G$w1Z{mu0|&lUri%>go UiNNf{2~YB4ġ2LG5njq7t,`Eyep%8tSam_>9woR:yaei3$:Y-yeHOSe/eZ,ǂ́և:SE_[u  5%\T@;[caҟ@VRP8Oq]< ?Np8a>dFw  B#Zʹ9F=_wwBZz Rw Ňh.Vd'-UoHs]8G`@R>H!&O 0у͕>^\Y5󝧈_k~k8ѭFy2#`#tM#GuaIsaqY1%H޲Iͻ~6 46jr+9si*ceWy׃pЗ cx "TbVQg'm%+عFYmaOzGO-0Uc2(<۽ ٜpkȞQ]50^rHِ=wKj̉ x3}5FhYPTx}FP?B6[en}%O oBvLu>ɋt\ID"xێ4U˓V!a LRa ۥu.WqE|?j&G@rnl8w0ZB , *}U)د;y j>:ٕ*+8- -a8-ClRu9CX+U!FNZXS@ C9 dN"7 d/td* tCعط ;uOQ/hfZ{ $'NR1{X_;+_CbGGBU -+')I}66Y1*>3MʦOQ|hXrRU Tx '| AKjKH8uwRp `v/څپm2XYЯp"c WTdK|,Է=ދTnuq_qj<:Vws.5Fcq/(?%ܽC r}ODlrɩCC b3ԟ]Ԣ\8ؠELx2Df(B5h?|8`QJ.~{Df:btCsozv@hם{BTWlꥯ Qu<d6DGس {dkMߊw-M ElּAP[YI/oXm"DoMrfE:K:7=\#{{Rz,gkđbd˖nƀQX-_o<ށz)\fٌ @ahƆj(fSNF&`XC&-Mʻf>7ɱAWz%9s}c_ `Hjjԥ!dGUI {ϏפJOJK&Aҹ Hg1v xJ$z7~kf6:֡%ᘜb ()PqaEmIV5TCe\!.2 *<Y4Rxmnq<%}2b969fV7ܢA>OW"@T΁-b׳f Ǝ7wcTh" uKDj1UWmHFJTܘRbb]!EȗL";Iհ8(yT Q2}Iq3>mØs`e%q%7;5Ȯ0{OsK$q^e%P~TWDf\$ M0c hwJg⑭M=G؉Q,emH|u0VJAإPo 53Le_[t$1XIEИx7kYk9cOONoj_ྡྷuO[hlU#/SDѥ$3p<6,^ߧ9q ѻ2l 8rZ_8kPfN4wPE~mGe:6iL};Y1?R.Ks\(C3]n)Iq "*WHyPV4Ҕ|bKbʄCe ^ oj*7}` HԩSoR$CMVsRgTyćm:kǠXpe'_weB,yDy E(堺lH8@_v{2VB-!M$M!a!B54?ڀ,f(oí d>R{>t|XK{\4A0Pڿ RmeoetbJ +g&PL 'Goxh$>wUN7Sj, 43w^Fi1Um*ǷQo ;7!8cH:V9^ 0>;4"ڕA.WJmPif Vs>B=9V' p|Qy&%7ooc8,C6{!?e`*Q m@V t766KZmw1 ɰ/Ζҏ-[Rq<֑նոA[6*պvZ ҩdey ۊ6nwO*?L&AeJW>^LAN#BR*C({>Y{6۾-/1 *Di{EF0c;w|#0$K̰[~W\cN:%6ߒy35#V0_ռĬR뙬\LU>(i{KuK3?`u=-(ލS5LjQ+>=~Q878R)Tpht )7j͘K 'nnրD1sOrN( 뫶C3g4|+!8$7P U+-3{Λ Ov !/LWhv0C&@KC!m>װIAf&{mĊFY[[OU. {\H Zvc6!CV텊1imd[|A"F Rk 1"+aE# XgVkyx)AhXQk*SՊ Z-Կn~M19U_wYކV@82$Fjtg֔fMO%uT«`wnQR.!x /Gcx!B8M >:ԑW)vݩb (Y/-YU2b,D*6Ik.imyjU@rV1*w$=أTEfCNP&Ɂ~v y/5Ȝޘ?BQ5YWkV~*yKjrlTE4{8EG+ '!yElNt2-*6Vc[?Ml #^w 6dM)Eiw(SE(iOaiE&ƈYhs]eĪ %*9?'BB#GEa^yP>[/_bS4LexGd 9}'!xX޸ Q]/,&5N*EαIHڣ[(EkZI D? *xu!>һfo> e`Ӹ="e[Lʕq}8mbjs뼞q Ӡ($ޚ )"şHhM]+}`SG.(@\Yɺί@cqf^Roc*`+"#u<| g-*%>f3*^j ֬])@)1>9=/a@ \/؁̅yQ KrX|BmO644,3TΠ'pװ%rZر=m>rm.G=qL.hTLG UH| Xٻ4Kd_D\I? %;%U+sT'dEn{ͬreQQ~og=(Ed"(8z3т/С [[װA8Tl߰eW_sW]x6Ŧ$ɳu!Z'_t[#l+ô 4PpoD;v;+O7k]705cFU,Qu3IK%%%v[0/I1 hxGzlu#@/;еsv7ؘZAΔN]ꝊȖcYZPeL 8z97[eYBWh6A$=Xx|#΂+%ziO ;S{@^䚭w!sd5>n1:W7pFX&^q֩e!)cSj-x=2iXW=am bV[zKx|9$a5kFruұ("55 iR 0g~ c疮@sMFÖJZ @I_ҍ<:vlsa1\I ׻IaiH'كM[,]*^![t[_2wvG:l^،{ߌA3Ӟ{<nG kHʹhӍawhNi"މg]<CwJ~#=:|ͼQꠓ;9;t]^mNR0H H'0 )!;^g-g=dDf`u_t\XHRWZ4:m(qHUwPz%2yR(L簑ew[ FĒ+2L(]H1hy ynwTm `ho=2y ;yo){QDz,"];ɈjJsguTR6q~Qb؎8ձ:K?btLhyq|]f,f)5dD:X ]|w{MPk& Qɀv9 'ӑZՍkh%ӯJ!Dv}E`@KbRxvT| /.s06PHV g%ti=}GRLmaGL?rgxb޸bX<Sv\1 nɋ c)&_bkE8VT0;g*y6%WR- DqPHL¤Na{'*`煮&~Pǻ'-Hf]DկU%8?߁h !scWԤ2cr6c E)w(8HV}3E1@hfoil}ER.Z_}&-NV-1Ε(8ڶ C WӮ4'}.(h>tm>YF,^V#;~/`v: Wj+Dij1 pt{KaoQp:dR]GRyJBwG ڳsMs Fn RL5ӆ|P ݘYIڼ-{g6Pk|i+C fU ԚKޯio1HI]|蹋Dc^ "Fw +@hI^C(W/,ΛGwcQd~`` FeRˁv*gM|>(eRVc)>)>3`rtKD-DGCmHO8NȄ0 1w o=. 0#QIJ$1*Xq*|@w]ڂ^Ն;-9Z4_}vvg(h9fM4txdK7DGjeAlEbt PzsVGL,/@ &lP>3 )q= 6A5RdOsxT`;m0\˲ΥTay=X*)*f/XW|a)y F4~Gy+]}yeoͧ8o"#Ԯv^/]@L=!wE&3R'2YaH 4?`A$3Nc7Eײsldz0E[uSRR p\3U ^I*^e"~Mx7<|,p\A"@wϽKjHysdrrދWL7eHZ1} XXW'wMק ߁|I5Sb:swMB:; wy> YRV~V9HZS 1N1FudX/odd)}-KʒK_i?b,ANnU鿤x e1\/ʿqY6_T \b\q9@r|s f!uy7/# _`{Ynbff3d&$X .ŪEЯGXlE *=cndOӯYI[Xz{YBO!g6GFH8Ɔ!$&t4]J]sG!l'LKwBy=e1h7#2?z=YeǞN7]&(xkJm@۽p `%}vX{yRw`?6u[ZR%㹀~ r]_']9L@33ٓ$Ģj~M=uZZ};m-CL,Rڦ #V4Zef(dV ++OۛF^Ƌa8&W`@5Jl1qO] (ISQ`_ -A߱k-Hl#SԄTZRn1]Fv׸ƀ>b!;q_EUƔ AŃ 0͞ ܈m,;Ϻ68B5LV:`),d}T6B)_ Odb]Wg'%2.d.Ȟ@2?Κ+(L?s#hvJ[%Œ`dL/ܙ"OLU Pt]jLxaEjQS^2 1şdZG9Mѣ:$}={~ ]Jo;Y$^I@ 5MYOXLR;J}5CXc&`{d<`ߣU}ЍG1Vz_.Ń,\nDd>mʫ65]^2GuA$U!Uy8s=@:@!ozlod-?m/+[ʕpI5x:޺9 .$76bd2s (4;5#_s@6G`8È,=+kilEQLYFtf2\ 1׉ Nkz@ˊ[0Ji5h™:=q_꠵G-d>㶷"ȰV4TqxаǴY']亾alfŰ" KCQѱ?Gm0pF|t~x7=ދd3j铁 H!@m:@Ǩ]?23-EzFf\k}$1R;&.e HY But1p7z63K6hq+s 1 l8/Q^ȻD΃)24K]kdH$q<Aꎖ-5k5CeMU6c8Rpr@lM|;ЌWŭDDA*X?Q0JsnvyI-^9%U:"v`$_y|b>R<ǯڜ-UdA3#1l'?"{}O3eR$0T(dZ%O6`2i?Kb! Kj&8qĤ S&dC#HUל ߿'M@'6+v)3%z*5@9E1P!W=v97W_KԷ8ex4Mmڸjŷo@=,:>?j WF@5VrK^me_W6OyCZ7$ܿl6s"u3 I lnWN8sgiz|/ ;ϚT2qssf;@Tdd.ґk扅yq3jƌ0QefIq񨟣=KUXu Ҡ\eQL?"K~iH_Ȥ쿷.-{h]XG ' RJiPECحʫaP [tR=.mߡ|7u"$9xg&[e!"/ctvإFԳ8XaAGFl`{.*kǎuTb}Xr' iqRnܤhobv[W!~^T>k>MÓ!fm\ ֧u1s*.lMzv{A[X{?`%{sNktF_1§yTt4lW~c[1RsxI`3*}'U]UdR_Hu󘎃;Mc^M -Ԧ!G]mLZeN4/p48#w]Kt 6PۖyY[d!_p2qrAY 0A\$AQp["^!y36iXmOH%l>Fi4≤} 7D@jebƊ4a)ЂpO3z>JTqVrUj{#+*+妻/^>mE%˺}q~Olb2Į6111T ~@܌s蟓CO]==.`LL{5sEw;⻿UMa*3gwUS$jz:o"/SPܑRQ? ]yUbe]@+l884.&Iz9i;OS jJg:vxP{ >+xMs cZaqɰߺi M#@A@9>}*n~c[Y%OŚV]9wmmýdr`+C$v-u^ o/= `M͎uBYԴyקp~eyi[KN4c?b.693/_wI]n?Y? QTǽD?q?,Qd ouN6U!9LmbJ',6 2h {v%rhF^*eKNT+cw)NHZ_hd>(%6Jad1~_?\e6džwFM3p !u~,-$NTT)yMfKgT Rvd rbrbc&$McUT&H#ؤ~w~nxt?SU#=,9!"Ѯ(.~p!8#f4+e0uóg:l=Mbp/ TqQDaQ2}VylDm ˆAvфDʴh/U#(SwtVd6Eɓ`Z< ii"TUZo/t=Qcze H[ߨX6 Yb%(@r~`@W~vc p?y[|%y iq:;kIHYh1HCy tLHAǹ~bW*݂sYận `ső&MS ֋f`[as'J7 xw UEG]ۿs)VՅS uz,7ʱ@N pDWco7 AP6BjE\xX'If2} ʯ !@ݞ^R>Úڽ7%zby爣~03 OQH1qƢ"li9.Mm`X}u?hI?RQt:/rRZ"M#+@25(s Ŋ*Cc} 7 Y~o$B.0w} g03̎m] y;GJU[r  6{\oM;P2/LDģ{RgZY~osm1>Е\ېl(b7AkOQSMAFAHs<y͍0h}Fh 4]H 4{F^w@B]06#7;P`cn-?4 @5/)BX@ O$~Rb1Zh6/$E٫_f{ϕD $HFT ~ՖMe!ѝv;W,*Zi9K%֯T_kcu?|izz91(Ud< Χ5Deb&jhKhwDqbɨ<XE%iiW?`'pJ$G3; =]²S>r3OFeU6ґAwZW"hɼ:oaHe}]%U7&pqiD8(Zhn0PG -ph?noa9,ˀ8̅:faS) v/OO%GhZe>ZCIZβ/ &lK=ЙRL2dI8 ~_ t{'Dk:#Z0 vpʡ4b3A.\AqOh@ih0,B^-/n4[aTuꨖ2u 2r[f+͓WjIZBQx!w )6m,Tbj67cSjH>TdI XU HqϫޯYuEܹ4‚;~+C3T" /]H~ -<)[h)wz?ћS=SwωJ8`{#Uq/2QUDq=I $\EJ圠M SvY\mRkg, D0'TCPAFlwi\&gBeyv6G,a'MpZ(ϝ)$ؓY[U |[g[ W*Oq|+-qm6`_ fi݂A!)ڞ=Y]aZ&l=mug &ew{{ѯ"nI¼'AI2IHg9䧲v4W?p+P]t X@IHz0nhlq}hv\8Zxl*xeuw;ƹ$_ -g*& vqH></l[7 KNi%VsOlNq#%D,W"\뤱Yꓨ]HvCP޳XaXz׵:A378x՜za֘aOObuW6A2skZ mņ lUc]W ^ :o#'x2` 鮢i=c0i=K"SU{hA\=I^>b 9ks8BGVRVgKOa#7Mߖ;$#VwJoTgҋ']!L;"@y!@5u)r [K0 ]KѪTA6)wűc # bZAU5s]L}iCs *ayS8O )KT[-YHޫ{e;^]r/|=J+4➸}>"TL=W4"g [NM> ;WY|Y͏$I|"CBlf ԾK_0k,` vrNg'P<q,gk#g}38{3bEiT+da{@){'>S)}x\ujBO+ !qTy_:Y#Q]UbQ~r7^ȡ@~Uj Zz"ۄfK^eY࠸f[ vX¸'̼Ol|`jiMo6_.Iض}cmYX=gevp^c.R)my}eOd9XǥZ~͜Eڵ#NǚVȂi~`,8m-U.ljЯ#aрB΃]IzM)o`j䩠 pV-97)#$\g!zD0vOݙm7CM&?^P1+N"snV'*sMPx'0Տ!Z;q{K8 D?5~ryKB0ŤN"QAI?M+ ,Cҥf̩&Ot9~w!XYQ %4[iy]?1zIVKQTE0F͔-% {2ŽBLv9ȖO0F|˿4j 쇹w8OPoIiU9vzV卮^\5lI\o)3Fer*U"1TкZ8W%6AHp֪Bsw xCHSZ&GF)7GpЈYГEIkǟ?dIF 0bLADD?gJѭݨW= w!gKnu!Jm4OhY LzBq!Q XE B;Q2 h]e5h["K$$5 BRm*F#g &YurhngeO-) L4''V[T]AWR{V;•pt`y}-FNYK>ne֊dD 9nx]b 0?+=mxK sYL>mgVA N1tȴ!ǝeGC)?V-aj'Ե窽 ' 0UDswrNKӑDmyTZ.)fzNE)Fkߎthʙ.FWQǕ^5*$L2U2 89.w\3>'=IThJ#zwăSL }.t6T%"KP~xh sYՔ=y+4Ĕwl201R"|CtD@~Dc0E\nR&~4JшW6(=G,b23g#{jY}#F=k#WOuKZ }rB\ݜDbSԊ V#U#R]aU98db?`ݼ[voN /]iB?Ht9{9&i6L Pm'"g '&\tH(2螼>ch4awOrj$t2Ylͼ.bt$K^GgbfZp!tN1}˅]@|Sq^}mǪY-IR%7 AMI$`{0H([jD{ܽ;L| I'0 >s\S.%Jxkǹ2>I(9#\1pEc KC\/8jc}h2VDźI ?Fgs ,z{ܶׄөlˎ+WQ=`; Hmp]e᪠B?f_jMIbM)T%6'{7ð |UtэfN sEDS 6eƱ_z.rj8b< FȢ $kj.Y~@jTF. rÁЅ3CqMFR];fU,Ńht &Sa)I])jq:[\Aª4 LjRвeӸe:Tc}WCOSѠ a ml^5 ^6Ԇ4bq]Umn$ˋ[HO}a_2(q"x؊HWʖ货GzKo^XÉx![j&A )~ <V57.D /?aIJ:..E *չ˶%22rdJWFN%9evljE+pB/A^Ҳ& Q |9 .tF{5Q7e"XܐamJLʉ*`U)@= Ճ=L;Cь)Z\=ˀ2]"ن$'`uf/A>}\r;5k|AUh?~ 5-QVH'>K,hX1~7DѮsa/^. Rlu5k@UllvZFRY`9ېp@HjZ{51Ɖx\wFKqG0JBh^Vl[dp@vZ! Y A)RLuk,yFmp" + 巈L@wtBV;,*j{]4d͋{6z8ր{.Mj}|7KA*:)ZӠW95T8,Hy; pLgJiC<r~B56oFK=ؽQ(eSfll`$C*FK/w[M{`5θ>5UѪĶлL?suk2:X]7bJc.-LY$pE`J0Q8meqYȽzfiVOMy 3h}F|k-qH)QXK/:r0>w,Hz$}_UOY>Utc9kΡ?-#ˮP(bfxմd+Okte>e&n\853|kxHEEX?d5]!)I ĭHli nA@JAP G!sWU l B/rd\PꐀyQ8Şhiz0Y^ Ct8xz{qܾ>%8Be)|/PQqNt0tpxJ:9\10/[?(}P`6tlf|hnuXʸX˙^gh9h Fr6ePhB&C^B:c6F><}\Yyw}f+mjJEчCm^'[ 9n4qNjH1D{kI9M/n E%o##*f5Q+ͦ,?;QnxxЩg 7','0LgR+ه#P>(TC}]?#k8M]S:^Z_~ǧłQ(Y^.e`zངt}2گ{E  ~T2IP1npbY vjrx􀒏07'͊#Zi I< VjJ_1! &=~fJcY!cfTK$0|IπnҢGU ËR1A(Mqe{ͼ2Ph3!m) U9B5u]DGPLjX}n$'-T)\? X<+2TjhȫVIxvL5 r"k;-;wYT{hVBucѲtX BƼDZEtDTד!9+Zް/WMW]w*1(-9qn^AX6׵Q^Дӆ5d`{pg.1n3ԞiG 6;i0pq5/FxHq:_A[ܙ ϝE~!pK{j̳;.gfq 7#ʳ3=/<ZcϾCߓՈl[Ys$Qߏ#{cxaҚ1QQ9`;ތ̈g=of.5hҞ>.ؘAC.I~RshoiF#o.}AD@*Z%'>3h!HAqk~U xkgYynh]j~Oѯ L?Rg2۝ݤADZH*] s(͏yě>:OR;[?5vR>f>8E|2L?֘x! ӯ!G@Z.N5mr![9:e?1;%I0-b妧0N (cjВ+ۍvo@"χMr@5:$šjPR-S?tD!,}&QGm;X%/rV[ll @T~qUZ ў&`kO2Nb$,$^VZ^Yόj"U`W?Ɖ{i3g^%HDҜrAb͠ž&^7EOҿ 7ǙD½kSaT egBڱHGHpR&Pm2˔Zɞv=SX~N̙TbX.f_t(WxXcA!Z Rq,1i LWdJ3y9/QjĚH`gOi2ÛPꔘtJ5m-շ2 ǍakrSB Wls`v7NY+IR6Yh c[s-{ɟp!V}I*Ikڎ="U6tP>{;pyLE{{64pP (CΨY}ed׌I@B7bF#ktn`c@"Zƭ:6Ge[t cg Js^%IKh:ZQ͖\:j0Ӟ";ͻ,r"=)UƳP3Y|sH:I1n`ڂ@DyІlrP tֱ¢8 A_ԷYMSAu*%ML'=5u'*%R4o2>iy7>STQUy f_d٠O9!qHMd_8eD/\F@_o71 *RO8_R]N;.8=kG@@aћrЭPf*vMO7J,peWAߡ\a0-Sa?VuEw9I 8\qk>۪˻ e'G)r0bv*``I93 [ATo u(W̦hofkL_\c_( c5<[A=9].]N'esB S4Y,AϿ.,opY4@y|y5B*mAӱ?7IZ!8s{ƁߎUF"0ȭWj;F={{݆.vd&ўp0HEG4JӪVqJ2|4JCwAj8 +;Ft Tv*:,3lNdUL[Pךf5Ihwa0|(acLLb?֡!-V3oriY j,]M5dmXhƏ9wt߼\Ϲr 3e֔o` /uqEgD7Ge7Y'8:\w V-75#2v y}o/n{CFiO%,A4fʠybW:74)O2HH,^]&f9ʕc6x 3f'[YEVࡒf]Ezf]`[oqؿʎݾ' l3&AERhhPv=L24˶ݦ]P ~lf}SX;~6 I&ls71vwj)H攤1pޚ5fԊtT&oP~_ؖˉc=p Rdƚ`*TicTY1"Ka6|5`mvɃ%k-f2D͚" 84\:N?v:߸#FщyLhцu?)us^3^ HKh+-wfOGS`D ;">*QQT޾"C*Cv,V/ӜiKuAҿ/=w[rKúc.N&6'#A!\Y-~iqP  *" wZ уA=+ S+n-E .!%)NpfZ8 R]nS_3]ˡ dF;`"ayZh(Wcwg#u[-̒brh'L]&d>W6eOq!Sn0$8c4ciMb~ 5qϷi7i v,PUҐ~D>`2rwG9vMɉ\Fgs9щW qbBpx/o!i΁Z.L+2&RCxkSY~ehs5ee͕v?$m мx[%Ͷ\#S)b+2:1[ }9銩"nc"5R}&CG Zgԟ|Mz>P{`^KA!`p Q2n{t a:晌SF2ѮuΓK>VD,VphS"lf>)LhvgޞzRP#td$3+Jw_Av?@~rvGb(_'.)s^&YD[j&B}/@\q?3iql΋+s8za)VŒE+mbIғ`:fˌZ6s, hZE|ɣ|า%~' mT COfK @݆a ip9XiMg24 .8E1@E|t 9.4֗Y! PDPw=ݨy!q=t%x,{Gȷ `4mr8хA& [DǜK[\IcDƻjlΙ&[ Dry(C >JiՑ˜(TCΰp(A1 J 9=uL/b@;VasL{!6caj;@UY9ӖAYטg~:HwW6\;2oMtVkpeod\aDt Ң9g1UxʓuB5 hez :I/:m$`Q^z!VoO]"k&WmB z8Np\B3ѵLO'Gb{/qTlg AR0/˹Ɩs Y<,1~%p@0CX5r ]ҪRKZFP1c!°V!!R4kn;/-˃Q̊ͻd膈jC/IVp W)E6y㯹 \Q.}*diC?Hf'L'2td'B($E52@sqkCg,SEf{g7(OqAv߾6 *@NH5HT6LQ$A.޸6Szr2zX{ ix4lGkn|ةf<<[[ztdd&w-]HֹN*ȊLtӼ`TG^X !`0&mɋ!l ||f(Ũ|Ə@@_Øէ-o)DV G`}!k1qōpx}⪪XW/^9p,hB+hJmATPD.孭:ZRi aȑIK1?ޙӂyF/,cK7ʛZI.\ pSpeP/mN@ɷkC_=g0Ѫ%uÐbVNn7>*BM"D#wQE)[AV8c+qkUg[ر$Ji[ldyeHQu&&4N@( c-wAЇ"5@Cd?"4o.Tsj5)iR^,T2$t2l.zI6Fۚ;/u2kdtÜ-Ǭ;=z 9Sx67T; z(D:uE֊7. 8'8p'PusQ d Ehaʟqqޮ-;v-bme-)M,zX~[m?g,psY]My ?v+).d6?FS!@ěˊ:-{kQJU\ XEXGD*Rq{; o [8i^ikvsڙ,qqq:y[tBԲ42ݭ +"7+^J\$TA[@&4SYUr$Y .=#v=QHQưf}NVtɁ?ԄHc"P}}6ϻ~fε-U$޽ %AMJf1OP.(Rzƨ ͯ/),0Eɮ#.XkT:wsټu"?mJN,ýeŝ@+? Lq/'#}+{?97lm f%YB=ƻ;e })z+VwF3uśT`(*59!pMiLgggfAURC, {`u bp&X7YZgw'ɜâkY"ʛz7.Ƃڰ@VnD* aeOi-MkhwD;C+odƑ+ʋt#*#ch;(BP3;V,Zi2YzUGz8Z o@k!M1~՟s˜\EPl_&VaҿPj.ֿs 9Mq]8cldXa7t~B$GL3ω y 7HGFyXF.aك'W)uT佳|aE~Gkܣz6 QcY! ? 0FQ7>E.ǎYGTƍ>Q[BTw_6γ`Ɖb%r1CR)0/>;Æc6CuO2 oqj(q-!zgh'#XQTO#GOǺZCgUz̼ N6c=blmLөpwؔ왈h^D:Er- <Z2*UW3KMzbPŏNajvOng`2W)IՑ[NO%I.:߁CuB^4G+)q(ӱ>Poa D *<^ kQT3ޫ;F`|v2 T^ ob/ym}V[)/q8Z3'pW9>iL8}!.ʄ*P\OuGrxON^#`:J6R<;&E^$o 8u<~~#,hC0&k^R=Jb"҂Y6ڗ 46 )a B@M\\q "m{3Z.Va<]YE鄵hľYw. XnjG HAѴs~r6~ TjJ^9Z&aixx2ݓ$1Ȩ#לQIT> Lh]0-Ĕ{7>)?C&|vi"3oߛҜ`tfoP1z4\Ѥ.Z 3YEE/F7pV|,v؊e TvC~$.o.'gYXE`<,\}2۟btQs~ջWDKd֩mJ!rҀ@aU\+M,\9fh~z%rZQ`t{^}P+]闄^ 5>9}J'`04(|h׼%0{ iOaN+ ]ceo[,ݱ#ecTϞIX[/UⰕ,p|NxHPri q^Efd VWuΰT* <Du7Ч;-[!5׉ L-{o )_|XT#nG7YW6] f^DpS#x(FPEchXx"?3ZS ~#9^q^#݄2yB x)!脬l/ . Xy. @Y|sXCqAO_v=YSʴVaniGӦ~)8%F#6¿rfSv=S ZSX #etB3l .i ˃Hftv0.BRLd+S 1O` Lz\A[q)Qѹ$djckeA@ތ[C":?Oj̡ㄒ_R.nl3U,q__f&G>4s|comfd:KmW6'K9U3Pf}<EV-!a%f.C.oFuu_L%1^4_r|$AC"/f#K%UM'5</B@uw|07a)V7NR<^Ai4"*+E-eW%SV:!\*)74R],ӶhTs '%; ݈d%Ԃ.0*wzk1z,'L5t6!&kSۅ"))҅x${0.ʱ?0Nn$4vEWӞ]W*ۦH#^@P74#dm\AZZHcC L؞V3B!Q3Ծ:_x4p*4|t]bYn!WRJ.>FQˌI&z].M6T1 |O:5ʧBBycȇJ?Xu(c@i0-Ӥ$,qopkHj[$x1 Nb noŬSZQEUYfD8@ x^\zLD]G9=7qkJ9(=]UoM Ĭjǿln-|L/D܃oS @܃>7$R9vP5W5P;DB,N{m9<7F0 APSiTh sw7%6fCֻ2yB5+?& X`)*;n>$el<>;ҌǃM;D~']9̯j~ Y|Ag$x!}rpF5h⠁+df=x#F0p=ZzyD'3"RYR8!4V:)&>fCϙ(>:+.e=\?/@cj/WN ~@@Wp=KZۢ5 U:p:dU9^W:a7@fpbnA&@p>šֱ!Kux{ާ_Gd|KY.%I-hޕ/LOJNuWCm)vbtNJq|%PvgC#iXT2A/ĴP:Cԛ*6k,n0`G?t7!O _TRO}a"դXݤ]!{$D#7#I "R*'W?b_nc {JHo]3KqaU1o-a24K\{mz[99O=S[|}E-9*f88VVk93f\uUwS쇰e>1^7aᣳE#mJs bB!BSE~f0~MF| btD"FI -% *16mPdJ1 k qͮR/7:MU Ⱦc_nOyb&Ftg0ѯs_!S}OvaZyhD|zڿ޵]1Y!a© ;RG*;mӨ⊘(g5.{Zr@Q8>[*(a]֖ϝLvx ߿e4`a=wktWM]z8& *Viݞ~;UVY$sV3_hSx`Z|C֭gLFM~..h ҄GoF @\JaUБU<#jy rmsJf4 Bxmt6 D< I5uj\s*"?ѡpEZ: m}W])׿E\+ղ{عiPj8d4Фt2(Sb~)_P7]ɘx6tZCĬ@vW fIŊ|f67%fK%[L⾋5KG.{Al'˷O5ҝy io ޺9@Z<U?_T>aԮ"LL+h'LY@M y4[0.1 7(rqR {,3Nj 퓸^pךQSH@9&R?RTNfC991 O8z 2h(U~57dSB.jM&XXD&Oh]ܸ[upZ@D%Lw Qesp?̉@y${2I9{>5li8jPAI;e%DN g\#6wU;Fw jNQt;b1틫9| 'UgAlJoig&\@G;dO&PO>JA $~fs:-NN41^XP\E-%;|R9މv~1\g?s?o4 ɳѳ#n4 \ gOgxg1YDA_)ϺOip\Wvb@ox w:+G2zJ@v3V[Z% .0ŧa5إq֝4}bCll4"5;_Rt)+@՚@ jٷQA( ɶSs?`T =mi8%_[7%,fԱ6Dj9Pfk_i"kqZ<נT}py_'L]꣕hiocENfw-xtd,qrx>R}uv1ey?3%CK+|>E͹m@Y @L%Oscw[9A{Q#OD_fr#E(bcgԔFdVFcR<&Ao4sk])84L 4vo'KJma_YG pW [Тi8{ԒwiE7JRwA}GF01md9O>qB5|SŔ͡Fj}.4c@VCr%CȈs0~ g$ы(tZ,qFNnQaAm^Ƕ!RѪ߼d<@Оu @, :L ;:oMQ#) $HLZhlkx?{L<"rǤ[ORUY@\ 6x%:UP]I/x[yLCƣqT{yNa̳ #S#g=|w2iwZv+!GRVDcWY1h 醜"){%31u8 UY7/op%p(7"_,YW.'Mi/¹(@D=OgktpE$ H6a0Ztbv&K ]W5L9aAoB1P!ܶ5<9h$Kp/{2d1\Ȃ TTaD@jST8#١bxBң^1*ۙ/X`"|c=YM2l8ƋnBWK#yêVщSw iU!+{) x--Z)#p&aRKA^1rte+ǎ]يAo0k)/4aVr*j]hnq߼r&'P2`(AhRA7Gc"al v-^.[,|M+gH*f y#c& >jC% +M^$ze0RݲI]J&TD9t*vMaQS> 1Qs9#$f̕u8\_;*) xp=pDj|XTʋϮ%  drp.ͯZQp4,gWQY 1.?q@=rtp~&"*^x_ՠa!V a\csxn H{@ָݬ$C.viYkE %IQ' i1Н'N-#ʹCwYdr(UYR:6.]]wؐeFl$W_A|1n|Ok+kb)Q ɥxDo5#sk7=%WwReMB0+|NZU7f÷8an CWK[X9L&Zn>䶊p2$uKVaB-2z"kr eOVP:O tG-Fb[-^gEeLbBLܠnc}5Iy5as&;xZym7Rk(| [1=o0,ڴK잴 _=* < \кgizL=4EgOϨsۅ`^IĉN#\~v"ŃuWJ0WF7sW `ҍPQNKU؏v<֛^xrCD1["&]ĭ~,ިbUC3[˸.tlu+eyB(x/39A,|kr!T/ *kކ99RNjm^ڝsjKRc_^tjW/!gv{J1P)zlS T>FB[]Po:o6",ǛH'g]~a熦ZB(&Kȍb\C+e#H^(6 9XJ4(tW,JE 6e~|S2SBzl':?'gM j ]镓Pg d4k!,$ ҟzdsBg)׃9xa3LzXSJ.Y.My'j{}?ɛA<}]gO~X&&w@Zf~j"U3e.]?pL#Q(6i|6@r>b_82l";8X]2*0P4v`m 'PnǻR/m0Eq0?e3BKUg^a OD[/0&<ǹ]B uV0݄q8i|j17J-#aRƓς+NFq`8D~_c?).Zb{:yJ `K*)T[\`x<$6ֹ9حA56+g,K)CIw߱r@Iv6Ծ%DM7@jsReBb ?/vQ]L޽o/V@̍Xl-мMJrRaAډ_"2WLDTYYM/{q޹ CꩢS\űThK0s(DCLcInT cG*~'thNV[=bFbؓ eJQG+TS W8! $HDQwܭAUW~nA55>+>n?rw֝:n`9`D-yPx>Y\ Ű8l$R^Φ߯YxxWc\; LH:@g )Ovlhΐ 3 4 y#齀o{O6Y @\ Ldu .UvIb΃  W]OU'Ndj9c%<:>c#^0հDvqg1F;! ,,#>Ζ!U{]HPh8yLQg<7[Yw 1N;ݹ: 4*+Gl|9-  @N;opϹ@D@o^Ev%7|dq+?Ŝ5yqxD"Jin;\ *HK S %]CbwIk8dA(DQj @$e#uI3{%60xS\kl&Ff]u\@7"-IF[HÔ̷Y|ꯗqَ> ai4e'_탘{#Jز|p6ͱU܃1ZxA`sV$Wq>phׅpbda/0.vH<.؞T8]~WvkRYsfc1˜1)NRE''u?QimPA-X_HOૅo?_d.xoLKҟ!Op4fjWҦr҈nv`錾!]fDԩ[ӳ{u M%L\k'2{_Y]%sJn}8c$Sj T(Z\w`ZL %^ݰD঻,x[bnjðlQ|:-?cƚ$H0K-r^o)o\[zZ.˻'EךjLүd"?-qӍXfgP/f½&J%ĿxbMRJ<2-Sjxshd<%O!TͶ'AGI}3HГ 1eRw$5WQƔL:XbvsY'vde$>S^;e>T#JYT%Fԛq ]I4kp0A#aBk jGa>Yʹnzf򽃹^ZAeJtv5vDe pSբ ;ֽ?qHsZtcKHJ|҉5F4Y3ǰw>Y}5=hb\='Z""])!-E ;;f+*n}|*kn<ҁ̂3@R-?ymu,fN((Q%%F_;kRj=^DPʒ":_{ʕ4zeY9CzRODfM㨊rp9COuoɔEr8u9b%'H@tuj؃^жؼνh:oozp^zo`h NCaNvlE|!Y\eyK1Rv9M*nd/ 6hU)8y\7[Ϸ ?@ `Fng `T ,GWz moẳqW)!?BIXF7N"LRSsTR U1Aφ ^ȍ,4_(J,3u]蔘xEEeXA9ezI y+[zzZPP}X2asa(RU&@ūlX+ ž(k&Vk>hjTnLy4s"⡺>%J&;)(e't-M0@-b-Ŋ9)gz^—n^< :]Kf Y*\< \:|0E:D_>oTԑ6VKr8 럨(j\] -6ľp L/]a!Bk z،YCK|K?B,g?ywn)Z3^Kfvvzr>[ã,@BĐ=Y}eamf噟ޓ.;Pm+qjoKNs`WL~ٿðt7ʘLhTG)6Eqσ"F& iE̅_ vgY\̬V#?d{2'fvLAŒ5DJ;_m՘e '-vgh}r)`7䮎+ ~_&`85\4!jb[%>=0(yp ^\?FTcpt86d+Z57z]slnW׹BN5"x p}홰+035{"|&qlS 񇡓;Tvכr1޺+*ŋܙEom",!EL9xfلkH0}Vsy ]vu7=/j|r7ii'n dz\c  NL?d8`h w] qjb۹}ҀA1ު50 f),Vʮ&`k:GJ$~,qΌ,‰% j8ʶ 26ʄy;7I+ywx`Z?x?n>iZ_a{8]sRg q&|g"ȒOev9UT\Eⅳh**T5k?+gL1,`P&fCsz!wq~BK-+JĺC-ۉ7w9ĸܐETJş+ߋ<9~6='D,~ņMA հ0f2/  ؂6+/(|kKt Paf3#:]lhN$4:eh,Zۑe4}YX&G;k7C~DQnx1;܇[d#di,M`vUOK4 #յA@Jb+ nKmU LA2M-k/Sn@v5 2/T0dV3>Fm dܭe6.jyΘSiFF,W/HpuøX փ_SASr:xȓsH0&#ߢ/eBA4M IԲj78eivr[ yNeШYJ#R'̄9Êա\j7S g l¹'=aV/ ડ[%7хĘ"fn7!r=pK&i G ';3*kil߽%}pgnQZ{A4L:9+2~0DJ_SV$3IDu6?l.Uh.n!z`ԝo*FyB@ƴ^A<dH=^zXỹ2ᅡ.[pq k^*=&WHO}VKu{.Y(:6YӾ `wMa[0|Q%Е k*?<˩]4є}lk$.:aMndI]"sMVQXߨ(HUEL- (jTKp"V/BADcywq]UO)F9`UO.n$Q瞧ГU;]Nc?ۈ4M3l:k8SI|T,+ô[}$ 3=z} 3Cqk eQ!<#:;˳_r?*oh;k@ {# uD@-pgmbs;4eKj(>̰@cg ñ>m"|S)M"*{ BΛ}Ko' J1xL\3=l+m"1\s\%`zA{ z eU[yC\UWaȵ3+3z QEg )|φ0?19ܿ*Y;/E/zd`fȌUNɠWfI x]]W{¼t_Ӆxu|X6R_ZfJ)jҝD$JT=8϶dKt2)3ܟqUX;*_HYu "[Vc(2`Nlⵜut+R?%Φ&Јi?~vH>D"ooE ?*O:.2Xy(FZŃ%g?E,"mSdG#K; E%_$և]Qj+VaU7;kڵɔ֏24\[TN,&J-g= b?6|k~F:-H ĂC90=ݖ7뎙h2ub*Nj@-t;Xq44*h] YǮGX.\q$7r?B D mxeb@9 # &fk&1ɜ6z[3 Y;V3]k@_x~cf~MA~?tN]eS!E^qQs{'e=K[عQcsh~FB$#Ccf2[=9a5; m O[&٢Qs<&- f8֏#4)#؎"`o͜ +[#CoOo( '4EƋtS 9cu8$mB"՚&zv .-YSldӡmh${OҰ9&CDuf8N:-^ԉɢV[JD8J4&X-658'It ߪx+ `';<߉¯2}הjGOb ˍ|? gf;;PDtYjht+(A{IV mDg~;Z2bYJ Az%XYiz#'%]kа|sd£Kb4P]WqF=I6*"[˾LY䃼foȒ2n|V@\4ﮒ5l&b9zjt֤4|a7[hd_1Veb0HpUjN73:8@LXba&K˯ۗzQFI\uԣK9Dq]&B\L7 l40$ӝ`]ƄxK]B^W{ dܙqL ; `MS ztܹ_!ewҤ}.^Iө(^#Dx[Q1Pd n&!2k1_n3LxOAZw|"9Ӻb۾*#QMj҅p׀.-`)y=vyl !j?7ysA?s:clǷ91|syU۴ Sfa-&gAx`(bz@z0[6dkOд4H&5c2A&IK@6o{у GXmOS{4Ȝqh6E(p48htvţ4`kĸz@psWR7kQ熭ߠ(SrH73dQt*#;cw6]#+7_d쭆crPE^l?(;~c`ډ~Qp^ԭ$JgFvb_J[[?UrcH_:I{4.o ;l_hS8pzP1ˊJWWx!BD M9 Va4G$9j H <*tD`.9Kt4Kc8He9?h$uEẗˀ~]dxx#ZV^+^ټG(%*$J1P,TLU IAp@d̪P7jgNaq3dRCC{Sz)u#j}2V ulpG|?q\rwݠJP/ǀNq Pe#{Z6)(Z+.I~_ă\x_lg%foBL&-K,Y(FLQLF+&&O +/أ44qW\fSFCя+!-j6َ1S9E2ĸą@Yǰ5"8/üB[QCvW~v J,C"V$'فVsQZߪYZTZjxUWNW^Z~{j턱&!{6YeOF _#20~@0=* I0yzVvN_ai巖ҡ֐*/u93Bl_fB-){0881ffjva+{jBށ'/=:x9BT񤹫>84vɏ< -Ȥ.Uɘ|f;޺+cADn>Gdu #-Q 7/F܀Fs\)]G>Bu>G*v-hv%WY,Z{^?@27§()Sb]rm%H-/W|ZS|Lڒ籙YTrYr,^&с(#,J7m|+"M%Y0MH0%BƗKn{#Ciz^kk{vI1eK xV< X ʜ)x^ )'F?Lxx)aŜN~_(i.ďSU=i~DQLυ\)C]5Jȵt/J҅y6@Y?fJ )~MP1@w'\&*7䍒Xqg]܏ t UXZ=|!ğ.Պ? 0GnKV_Y) w7T$SEфR7 #/6LyMv]Cμ4q;"s lf'<;v`(;=VL ,mI"Z B;[zXja̭r+^fT@?m&hYbvγ 9ڇCkS,]'&HI2:R9_E. ).GԛD]PpVk]&Ww $(!} ;(A?Ysp΋#~g=2H7r(.gA +|c:Z// |yNp .#mU}*kPPȪ@+ߩ"1Rgxk)?g=ž3kz A`h貦=D.gFxm@к ;]MQIP9.o^wj%!?[Z1Y4TF#S၄Q;PJqB9t5@@gExƩ-r\[3!sgf>xlw%I=م.5qk5KVME(x8>ygn);2 Fa؏7dEp9CzIkb/0pwzwCLaHdRDAM/PX<29! 2]osG\a9:4n* 'yS;,K[ `F  ~[ytKd. <?YY_Ț=49* rc܄6OatT1_KT5 zj4mY,u f ma*+Is{мOr#H v  I+\^B9C<pf'L|0A䠯B&|mWa_[YQۥz"],eo}7#EG֟ȗMdCȶi̐&ː9&hx`„3g@@ZDH2S?˛&*:!3*URv8&~[̂90Q|Wj@rGw.s՜xwꍾx`;eY ˡYkߤoJEl$wLB K6$Kz#;_q9ӏDW7*9{S'%W;ϡnG䮈^]Gs +t=ʽ/ viьHCL/>!BSL` 4=lˏzX˷K`Q+W T(B,HouSٵj!\,qF 9vQF|?BNI(vB>B-`-DR*ưюB"@Ak/=lpbj»F9wg4T&=F{٩?eOyPquČ4#,}~Ք0 Cs '_bb AAɧM_oy{}ovE.>8faߡJ~B18@#QFF}X*sCJg%Hi%{Y/ ٲҋ"¦v\}zs!Bq9E rY7 ˉtwܛ~0[DvL9#+*E.e]RYeYKsT1{q89BHB&K,# P _h7>9%pk>dC2J fOtjG3@eV#8mҏN]Ll~A1t~_/+Sw 6P)D?_=j< jk8xԽ>V>#Ӎh;Yw%hwYslZw>+_|9]5eE9A C(¢;ˢ zh1Ս V& e͵ïxjVHB,+t(lIS30Մ-5-Oj[^y}mOgԨJyQdӕBջ\)oj;Ia-*Udc?←L=ԕk䕞 ky^8~vkKmSLA٥zf_r8+`ۻa>&nYBy8NìC\;.}:\ʪg!r{PΥYxɈ.Uobg'mh.t۫6Ԣ3AкƑPJ EH/r/b>1$П$-H&q _ Z׮*G 07ye-d|K6 3QXKXxLh{izxǫТˉו-!ޣi kQ;PܨPOϲke0r@x$\MZgjm:D*Q$ckE&.~.Edȶ )?}E M_?3[ #=x]ׇ{״CeJLu B8kA1ӘS 2s|CQW%3;S6~KSΉPUoR"je@H!攌,GiKWѭbKڞIL/q;kj}Q}p@Ҡ2ڤ#|lXx2aen;Wڗ`Fߚo]g3s%b?At $r#ogjkaݕG I{ *Cale⸶(1 2vr.Aa񙥤cBذSɱ "4?9=wYFEbSK6m0w߱8}_sZ?c4*J~+7K,bv? rmְzhn! ]Kn CJ $f;T-4*$)ByQO{`O`t 6}xT ,Qb$Q,(Z˜|##bcH>9]Ovuf6$6PKIz @6p#%݁p,F9 =`, ɀRfIlZ2A|vfCGk\6[,X(=-S3"bk5ȕ^d~a#aN7 ܳgn3 M㪀CX@kd"}4gLJ@Bjv첲 w*ˏ;b9Oz봯i"-ÒqU9}Ft@ӢFdS! ̅gr*U !NsS_j0(v^ \̸F[ՙ\| e5^&TVsUr! ՞h xfP7 )Aݖ"C=͋# F'$V<ۃ ȃxXy `cÓD\}Jְzi VL˜Azay (Ϗ=+J7z 󕣮owhy}{T7FY1;MN*?Mq7ZlxH 7bvy1AM2Piu+p"QY `VlpSWAYC~jIbvYF$V 8;k |F;f} Ϳ]2 ̔p9^90UsaaĵQwNڹ6~f8i>~,?Kel'v:OPM^f_%ӥj\Sެ`~,AQ_gPlo;0Dp8}/=p%7N; Ň.p=:b@ssȁ:oǹrPp}* 8N)}1n э>C)z`3VVƦs"|cF6@,SHjb$ğ^\ӁxWf()q )`xdN%,ei /y5XEU؈X<+~93^3،f4mn ]Ph֚VUd}BOAޱVY@fIW#(XAWBuaiYtߦzx6 0tjWt顭D > Wwb#_v˼K `O Ca'_zOTcɴrVPǝ0cU01u{eVBѠO6'kJ`hl;AE&bl6j}D &a#h""i;EܭCFߙ^Ń,啊ƶ}aϚ݅.).3=-qm].-B=j2pEn? 䯌 m|ZP%uDt|0gmyVѨf:v7ّ h|6Dzn:\J^[EwL}|ʘ_q^kf*';srEtגEI_϶f#8^bZW;}[/q$a#5HuoI-80qcnRt"|}lcJKL\Y 7'9e)P6?E^r@6AK#a=^P[El+ΣE=A֓="nŎd?OSU}Ճ@kf- 'W"G+6QI9Y;HL?$q1ruo6;BQCx>)#V}-b -bk6X'si哿s:?(g٤1,XO=W~;iBҌC \Kz󰜤G}V|t$$r\i TYĴ0I 4n7m? )bg^rIZV-a_r_E&ܬrC;<a;nTcS0lj:E84B԰ 1m09_ zx zkU`.ҽ /U$4VJ)Atچv~cǯטz'xj,D ԛW<~3se$m.fRw~Ԛ)ngZFkDӟn_Js7~7sFlgj9^Y&V^OFYctG)~Ţ1r0ʷ]#<.aU4M̐H-U .JAE59C~~d-xSi-U9qs#V؎c3lhkO:E}C(TRaizZSʁYEm䍘{#L=8c0F2,:k`6lw?ToAܾ.pR{0|TP 듘bHWGYю]meUJC"'uJ$.̪.0' c5IʍN3ZA)\C$ͳHk)@t}B+c0s_8B&8jظZPdC("o paERcA˄TvPc\&;UZgLpAMC/#U"馗0e(8 & Wʾ.qVOr~)˹_EnݾA>}6!l|zCtۘ ^𨣰h4+"OI^\DƉФh=I9D\mS*gN>7$ӎB`լ&VE$NxD=N[OCNJ*- bʧif׎қ]YЪ=}(bؿ4q8*%Ml&-+r V }a9n%-~b뒶_8d,x~:@ HVkz)O#|B۾t/yNo @𼅝WLwF*Q)e.p| EM$Î3QCRu7QI!*Fr٫dd%RDܩ R Sg?U/)`G>@<[k$vLJ[~| zs ǧq'z$-0rTik|*F{1jj#_N#u䄉|k'ӵBK+sS}7\bihkXiy7q#ܿ\^.C`θ5<^-}u vQt\kc^O&9p?%QW/6sIθK`y:i$z |JS$+xsVn$S]a۹8u[VzϞ>{F_M¾(˭dFY)Ro#yۑ;idy_`4&KH|dTߩIiD72vmG ³)mæ{<sۄ!Mf}׻s,Q ihDl=Wf9Mҿ6q Oig#Zh#1E9.5E}GrwݿVB),ѹb5+L;o+RP55Bý]Dd/I&$1<448)gڊź݇+0J!$jv{b2FcaIT&p`PJ9s)0w q%ӥvWf/EGS~b qhHDyf9jdH 3̡\OzBV^ v`uokx Pp|{YH^7/34$+{ƌ C-3qBЙ6e'}3{50E1$@[+JdGNкEOnJ0pJ[#Bx$6%Mr,ER *uOĵC2%p Țb7K-u!ZFX6MטTELQ{2vW83u -[a) 9TON $ȎD+nv%1!~[,^gLK>7Tޡ(wE}Md|Vna(~H=](vvH9f u ևę Zf04eDv7Y71]ŗfOy|'ἳ᧲)U7^FHHZ쨍 ΘD#W6X@.zc h7_ocÊmޫc8rgzvqD8NruAgSrAI+FkS`r*S*!J%4,$g/'ML] q*2: aSܟ*'>hugXfÑۜET2y@s58eNѓ֠/k"(~'ex+99!.W+|ۡB `l~EҬ+J-=kk#@=Y". n,_%T!8ȏZW+:ZAcSPZ!PkL`Elu<~>Ul3f#W=RchMгoPۘlҧ3䦖BpmeR Y%7+N/6߫UfZ__uG's?= Ыz{!Hr&{ ɋ|YZz2x~4YFXQ Eok|)ǝVW !IWKi~?˺H.#Y)oZcD2?gwTOy4gY"p: [?]n?L +_sn[Տ&SQВ\8mZqV 48bxuDP)qswXQ&=!TvϚ^σhauݵ-v.䷊ҳ˂Ul;@YkbA!U؋k@)╌ώ?7Ε˝UTB\`/\qFGvXLpd| gOGU)ubPtQX4ze E\kz$bL)^nֱ1X449 a?]FsKI.>0Kƒݺiis@Q0[+$5ʛbAeC߾,a;Zw.x!KbZDDV=6(O[i 2](M[=<O@B(_}Iczpr&dǘA6%Xd"gt~ 5@ 5q&Ob ;#7RyŌ+œ>l G/'819yukW)hNYyӶGRJ%lN|]9nAdF|T<6[ry\ Wj'x7ڡd}1=|\A-蔇{YKa 7SK$SBYGf_ge |kA,anmpɶh͎7_k _I@9sCRBe 4?è+ W:l jEgr}z0z xtyc@aeӀW!CVBdz V# чԘL} V␟'O95VV[Zse݉OPI={Y`1JL7x7 lTc+˥F_';ۿ9R*C)eR8M]iEE{JimdVë#}Z )70SiS7vo2G0Ͽ<3܊ g gc[XAIJ,XEpf»Bob ۙ% >Ǿgn^S>ǰdCoo* (G3Az']5pQ/+LH~}ʱ!iq1HQ0*P+=5{WhoۃF4vαq]9Ƀr3 G_q4k\ˏkK K")3ǛaSKm+- 7?^,uH^#ژX32TK!}/>f2sx[^E[,zuS֘6̌m[W9AeCm+y9ta-| EDiP~mۜ._юmo(ʁiٮVwwc]Z#r#|'b.xK(ق # iq?ΐ5Qhg-4qτ4;@xϫh~!}fY2_l-lDCZ>tr}ԙdl p:Q O &}o/*Z[ G @ $3E}b0)B\L'EÀ v4'^F:9RYK|z@CjA5>.z/>Up_qZX U(TI\QBP~1 |9}i5vՙ*M.w +ܼ"#i҇-f.[?a,or"#ЀeNH~1sFw4s7Cg"ϸK‚,+}:tM]N#j bw4B2 iG8]6{ϿSNkhS ہʊZ]3?%:n2t%+е Ͽ'B;xޜ uU:[246.63FՌwpt2̨jg鈴>Úe##^VLpZ2mhmA.J:g=t}i瓲-ihUIg@\Uzp%_tmԬE+ 6jm‡97V~W# !9"#] SVf[ض'I< ;ے.rXG'>R'@k}DG ,@6P!(^7{CsB¤K$|@cΓ zE:} k)K1fwOr|{tЩq7V0}hZy6jjIjקVF:?gIPx$2f60ԋHJJST4fnPm3qY^Y 3KjΒO_LeMɭk+C/t 6iIƶ6YJ<x<ڙGǶ٤XeCӕ9P;ԧ( ySGWo輵*ѩ J:wi-;k@x'zv[~H˩&X4e8p5r~z7u6S 0;q9܌Ybuer9MhFPjZȇI Y2+ }j\.j}]P 9u N>پ̚BUG߭:&P0T%fzJ-z+a!ځ,kceڂ4ߴ Pz$nG l上v57XaqȰX7[Τ^cT#)YszOdR3vB ŀ0mbڶ)8 #e;8ݝ|Iש2atv8UKINںL"W萞zb L 7D D 8Y2mXoc=ŜPnm<rΙO i1J33־Jt˂)#C9U'$n,n9.c1 U58a1Fʖ x A^<+##KSOrifp(~dvVf$ H*AP>'~Ȃ:i 2 vdq Io>hբ|](,M*1ѼA$rW6HA* ryݬ>YW*L$|m;; lTW0@ӀlZvaו|b1nizai"J8)߶[`75QlF=JHwIzK?;ZȕSs/%u4h#jbhGo8]{I7\bOd}!{*@rIȵ)?5:%(ʁ-Śwrmש ӥCvt5J.VU8/vV%WwkVC؎K禛x=t'r¬⑤ e3BłaR7A,o#o ۹z2 a#cVl[E> vVULioظoɻy,,ƾ\Ėϣ ?wG lѢxShR ?@`ח]r'^PG~],'L2:Hz  7 J jL$a;%Uчư5O VI6d3g!dCCev Wd! mZcƚah\'7y3Fi*=R>Uݦ#{kمiɏ܉ ๦re4[KtfM'T6cq:&.7(w2`F@M)$W9ٮE6@KگD")9mc)[tre[8VW/cT175HBpgizlku9Rpee EIӆb3# }Z?ʛB FCMA6ypg"s=#km95-td su9B4&L"ׯ3 z+f%eMp{u%y]O,@TLIш3^}kUN! 3$6?VCA$jg.QBɵG r2Ҧ=yT}{:uB*Y MvCسo1TdV#N6^pAA5qh>wN'‰bP'HCsvEaG|$!Tj=)V %!e﫟~rUbJWP#0uƐY/ ˘+bVj5d]D7P}=lm*4 ,YYh7N)C({&lGљus}~g[ؾQ)QKqcXTiQ6G(nOat1r0i#E>?" zЯI^?o![ :/t`=UUS:{::(LR.t\Ѫv jP4w@n"Gv-^P(IUU #SEG YcrZٶ؄Ho,Oǹ2GsU(=goqWXw:F`R:zpI0IYWy@9[J@SwϯKLNN5w>V 4#]OZNʙk~};zLA`xכUZ4BAdcEɀFč& [5Khwܚv YvO;Vz'.Tp5(anE' Ƙ(UXy9zZ|0Fz3!$aEG2Jh{F3r 6@̱.6}u<$FGtPnzS^CmT& ReՍ9ʉгApygQG|:\SR?#XQ:LXc[ δВtGT4k.AX Ji,'J>6ō=b4>pӃT%B2]_#'gɹ~2!1ݤ2Mfk+CdNu,inPq*w%wy5uz6 F,3,PȇД}-1F'HfjZd˩Ww2V\2I\=2#@ŽGo G4Z1ަRl-LK|SҐY+1 XuDGƤ;p_=< H9V*Q #e$/HM r]uLXAH%<-*$|yw"us6u}cʱ9/ @ 5 d;5jEPHGNtPĥ3fKD-@*Gg5~Zev\2,M44 uZ!ƚ\wey<=M3&#J3=ηPBUŝ౦{H}9Yn'mADQku ! }ɐ )RKY*֬pFG~狯*^>xiHe$;8 LXR-l SD1"eKԦ~Jw:[Ӫ[V]qK5o'?Uel.d6B)c-`V{$EA ?[`p,v7oIV^>*KpD\?|>Y'<^4|tBXQ"p|.Yw4ChVe0NB[-&\8'fcItâ cʯ 8 {b5@ %cQz&3mbbIu9%v&P>KJʔYN>F79;H{39dF)$S&+pLdg@= #qm#=?NC՗Ҟp/.Zd7:}|`Z65"]sL,gf, 8P `OuЂ4|9R`[O%4Mpkq3ASv 1 C&-[\oLi`ouj[޵Բ5e&fr$B-a9˭PG0'VK"҉f1b'+Yۊ'f$?$ɱuAG,J6'GE;RHY~&`ЈI-nZ&*4"CT@[\r7[倽4ʘEf3+M3r\q_g6Ku)MYl1;C'zwЖUx3XW/NEr28Vs']^Z/45-kcqGKBŁ;rCr m WG61oM2UV$\Goe+y«f:ЃD]1Z50&Ν6GDծOUP, d0T_7]?{j7PlևȦXO&F1L('6EXhta3*s5_=?3CdJ 2 3)]߅f6!j&ËQ6olJNe ɯc7v%+u3y/@r ^Qs3G'SVs=Jʗ4GQ\TT/a-P?BBx&zcaWiY:;ܚ JO>"{0; ?ױ;7APoQʦ߼ ԠKom=Ex-{Ev*-kulNIku+j2[p 4 /\VM=)K ǝpN:E=&WydG2 n EFء*yiy@-F3hK־{ON5`eK.Ј!'5N GĵagKtQeve\tTNTp DdfTgd1U 6ƩFȺQJ\o=ܹ1/߄{K+!p7fE@-9*PIN,yll(h {o߃$jNϏ!ĻGo/kTpK01&_e/ھ1Xn =#1LH\\}JZ5MHXfoa@ybq¢/-%sL%TA!aNE/WCƅzDq"<}[lK\A24D)H`EL\fjN`U!gOO4~7_ֶf"5\50@qAq'4O +|K_)LH2`dhRPU$ؠb#[]u`rN*TV׏ѩpJf;V1J8" 5N) _/nF"5Sw9|-Erfgov]JC(a^ kۭyׄLGuRBuF[+W+jA؀j ~Υ@QNԦŅ{B--{BjxA->Tb3[s85+센~AJ{J#mV.8;`zv'<u$&i,/"}|*:ZȽt1# ʹ7gFykWb>'46Bfxhq.@6ykdN,=v_y| ߰-(zsa%2ʈq.p\kn㞖us%CAyނdFJwvB,7xbUM5{W.U H(~cVwЩņK40 ( 蘉ϲ0N DFHSl}3 C'Y1Lq^Lv\w 8Wjkg1#Y](X/z:Hx=W>eMƞ^22юyB! ]\$k&wq{pPU^ǖbUMVmw{6\?i'%t+.ѻqqfabg< *!mu]S梀BԪ@lG I_aE=Wԙ΅C!< l+*?mg{kGR Zj Boh /'t+xT.6/@񖵣J_V R`]? rv"}7ZXLW\rXg$e ኽ~[JtXu-܆Y0'KaS]m2i⛍MlH4H$X'Q~bæ,-)Q@˙< 6aS| L0;:H,ҬvTZBھJ.>jɎV2bBh,?|Vg>oaRT/Ao71Ӿ8xl<[FmFiԒf)"jHހ{4G-R F"$q]\ ~MW X*Kuj4H`- (L#q7۬u_ a9z'\C+,Ր%΂ܿӑ] u!B e Q]&O\6ap6OrAКɼ{K B'&b.@G,Uuh>(Ͼ8 ؑRšZ_+z6Q==.VRh~~frk)_j,F-*Nrl*-V2PJY.[_K#45e@fPw1(?2cīZNpO3'.(DrgBH-:1s}/;)pRF6SȫE巧La G<^vЧVZ;`R;n{P+3a&mXt͗[46NTj4R,ٔu 면CbyW?ΛY}K8͞!}A&,ϓކq)Dە'r̟~GQūndE/E&5@=L+{;uz ]0:z-en V+ˠ܈&``Q 51hluh}Hn^ӻ M;1a<ɻ %01j\3!uie]VJ ux6Kb==Ƶ%{>byq0aU_ZaƴdlP廆T[?#VDhS^4}M@TA(Tœ#\MD,>] CwiIH-ݓ{pzuʭ!@J)oFz$,6]Xv` > i+ß) &!~zHp yZ%]#4nnTP\8+`c"l":Ĥ6`bDu]Cކ&R"Oen^?'y%J0i6+2aP zal|w'̘JYOHp_0[N{ ސhv\ͻH9ÏPţx?9QOǛ`v- @HjLW 37!V+.aeZo >e,["6b4Ԅ1* w |],#)ʏuȂ=k:i2үI|0$9585Y3jl e)r7\w}bw^}Yx!!y˓M |"Xf@pn`Ua 9߸^qAa$$EPǒ)7ejcp2\Δ"A~3 xBR. ӠYv#eU?sڻ;ӓH-} 5{N ͊lwYuI0kc# U| ®~vq?$'>[qϢ@3vxaMmhU4m{kP)ђ\h^ÿ}nrb2HACC'OfFw PKJd(J8MC Ky/z!Bo%ؗ<ڡkSǴз ×uҏql250wy!C߃3V Zۉr z)UӌO:i+^2mt;~ӈ{rE,b_t(zQ 8]+P^w JL~RI>'^cHRw ke'K˹_+dw!]x,4Xŋ}JL{g ghuXR_;4)=f.<ͮи- ֺy1AC~ o2{ճZNq/XaJz% Lr rꑅj0q; JP݀ /|n[k/;| M=ӏw a$|zVoAGx!؄7)ǃ^4^Ռ]U}RcovXq;<Xv{v1@QyGɑ<'X&]+\=yͱآN ՞DWo|?;J*Do6S."G1OS|b`CLS/T>h6 x@})'niJR REWdFƄkP˪FHklf9` EnZ:W$5};a:_Flvg-A At-fP ^Oi ܳ5C Xrܕ >MN,>SD/isqh 5*Xp# $nGN>n+ܒF jWU88Q"qCLRb؄]WX’eKI@+ts07?7?D|:Fq?o%Rڄ9"#p|" (\M/w_Hf7M*S9eCu{8mD3_3=!Qќ^1"Qq袵SV,(ߋvӭKsWe^>4 7oKIVoA BF6vibo()LjUBkE=wq`krvjd!_Pqa>:6^8662lUj%d9,%F&$4O%LG'靪30>e.Dҝ\sfv!V!|?5hʍtĊb*T vE-B*{P~tGOBm2r( #IHR/M* M QϢ6fk06iJ(r)oFvzwz =Ӳ)&>bY)8}]e&$Kþ!^'( LbK."Oq Yql>4tr:TdP(koq-2̢P~ԼHkItT@=߳ 66,W ^TtgĞGwV UKޝwԀ M'-PA~2xC~XZwU=ybpFQQq0g;J8Akk.o:e~ӎ`\<&Žx!qNQm8-[50`@T_ +rOCNB9-dxʙ 1;Kv9-(g`=QDqdzBطký|9Q=[Mfc,]n4qpg1w&HPG^h\-3+k @} sw_x)P4zYBژY~L^QLdጿf1z z 0ʤb}8#tf_z GsQmKWt[M_J]Yт|'(bD+}]T<87=S141iΜkW{-J)e1Fh́ݑyE57MD 6hvp ;q噠QmרA KX1Nv4;x{(\#=@4?˸OL*RL_X(]9 U̴gS[-q dBb2^_͹S?vQ9#T97s%A=:Vr }&5 e|'`[{ɯ=z'Yrzԇ9h*e` nkJՠYgZ/>@t Suu2Xs $yOo5񀄓;*8Vf ^Cl2nG`s~zeWY^yՈhz4SJN"U}-\vy*?WPݵŠ~BpfP<#1h}i #"%4G % ? wl\8K6"sXU<!yȨjzZ"7'3/^n$ĕ958(G9ZWAł36#^?y u"}ER,yhu&@*tpbm*g+g_G[*u/`|#f%y^'ڿtCnRq^Ax{&Tg7 i'Pu!0H ?/3PK>׆dB~fT;¡V_|ȂNbƒgF8$֖Y}D$‰P:iWXo&[ 8; 3uMk^)+mr{(奥y,=`I<2ԓ拱TVUQ!yz,QtO}.~}]>}G A 'E7rn9|(]) AqZ *W[1dz_%͖Ҩ& PV{%>5&ƭfا bM @Y!7ZcE"ؿI,vx(}o㡲UM׼i@򋪥ˤP]n6X`6)QJ @\F:uTSMr Uy-ieF'(|a llZn^JtR [yy> 7qz>qޯA fsJT;h!_y9l/NX4ԃo9Mn>BO60/ǏfNNVaV2A%eb{7]BogjyًbԈ-6JD66Ԙ%"JN8I@^m@ a*׹NVOז"p_+%#(]SY $$}y̠^ɿ]8`-38f&]Q%x6ȏIgF{x"z,.Vߌr~WI1gF3|K9 lب]jcV @~$\vBl,idY6/s1O9]i7D#Q֣0_+!gQUUir`&-SD[^൓]Wzyije'O֜OjӗѓXZsZjkV.X+h)b5i4U.dN4N. qG?X5b:\CݞOp&epDpǬ0)&?t`Je]/])8*JPw:aYn"c7En/vd>Jp[jeeY&?mYI9z&wu~ br$<{/YX`TkƢI:!K2o?f^zZC.*ZON|=E9LȉI[e}P=@{C}`'[x\wQ$bIu0R)P#2BXL"1xEPF9~,K=h(bHV3d)0Zܰ%ڸEkKZRRwUʝeL v7g~ ) hO\; wီ$#lkRߜ},Śs鹉=Q9QS7$ AZ }W&A橠66&D0H x,lkI9acV : 0ɿ*k]r1DJ[[lG,%;Z\4y$PM&" m{_ 7/H&KJreשY, %F:QevKUK ]=N:.dK|&@ TƒFe|f̅&-ϥb0J?˓ESŊ~RDTLDY"#Gd_ ѧ=Mԝ$ovG*57!Ϧs>n-?ܴkĠߥ?zpJ]~1w'ErM:6h{$tKeSⱢ-Iu E<@3k]D6~!d ?i_6k?|δ.&+н;ca>B]U=kѻA:!/gѿnDIW .Q"jx3t/L0DNdRMG)= DrĻJ6@wCuZWIWPg:VqEufmSe$|>l?,D$Vg\?id`~QE0eNe(tswL6]H0iޱGChѬ۝yS/ 6\(xo^uvzVeGP"ͬ# i"EoH|ы*`e $.g_6UTDQ̨=}!?‚?HI H`a˂61DueӋYXwàr"?&h˭~hK v@(sH׼gJ Q1WvX]bftaIoE[̌ S%-JUd"vm I; 1pfw( AٜwPMwyP\uQEn8Yi~zhA_)U Wuc;1"پ6z[Tl\= 'GoL:]7!ztZo:9_/!1^-e-u PΒ:FF}/GI;ǖVH$S;j eזΣy¼k9[竉MtwvrAl52Xq,O0q?bPR{Z~ /jį0j]Ԕ?C`Tx;yNFJTT[rN!Aܺb#zLDȓ@=8q4x;k`T^VV-UM޽ ֠{9b7#_\_- e`*ܣяQ1%粱iVnk (f$tm"MzD'(LG;UK9hk`9.zd5t" {S 9Z4 dKu%=G=E*Kdr]M!,PFbN^tZ;JѺ^?159MxPr0kxšcmX@]2"Cel?uC s)9M)),gT<_;hr0bű| 0?^'SzB"NFr3{{=ׄHIgCDEL<؀x|jcwnT!/[u6HtG{Vpv5"xbxZly0Ӹ vn,4ٷ]D%U m` ڄ}D- ڌ=`Onb;UjW$[}u&E.j!65U!Bm!Q#sXtL=A8dHC)܎Ӄ$y+ wtqwmΩsɕdg$es0%6L. IDI#q +/.<'3{9+FԪ7Ce~U ':`:gvչu,^Y}K3aLIsQ}Gcw$p|$B^M~˂X&,O_˷umPFљqB5c}b/ZȊ$ 񏑺*ӍI\.)ys!{Pf,+KE\?1,gkϣdQXkA1͇q,g?Im(ˬXn~huN +Ll Rä$)")yǤ'S@zВݜݐ33<2]x#BQ!-sϦ7gk*"NQ 6CiC[Ծ܃%hNC %^KG|%Y&l-b$+3/nYoHmW4*d:q5|!d((gs(Uvϥ1xvլY9(tZZdA2kuSNWIHJC -@pTu|)WҪ.3IܱV*`)Z|1Z% X _=guc-c":$ } V+s>J!υ4 ^W4 PWBë?&pw/vxa$]0qʼn6ڠyZzj$-Rp,T,% i3GgjŭRD}}>8PG &Bჽl &bk݌f,%/!`]F9oɌWk/?gkPzX%&j&, n?PjRT+7Fxe8A_!A7l`%s?(m:r˻c\O>ܪUV4$Zی9~Gр)a5UP]LP (V{LFsVZЕK:i{PxEc;OÆ& n5+kI"L5L4ͺM Jb?2yl#wxNZ 9q+OGq &za?U笇ĔP_WS JmʧCޡf9vhz h܂$}%2y~,o }y3b:(cc\ t/X  ;>ǤSuXf%KmN\JI?A:њ {Xط՝)S̄пp}Y" ->x3)A?A`{bX BS~N.}3}oj xj"GD8Msӭ`H(07{ ͍j9X9iyhZD(4R_87Oe/85-'F~E~קI<&]W#[(DG gC@C>gÝj+]lLRjrɪ5q.3Dܥ0UyW\)]S}Ԓ{91ʫ5K&8/E_r@;daJJb!98#׾=E͛ueoP+<!c-ttmy(# ; W"6$*0X͜L2*lОJ)q!YdxYA7-'w_q:X$z@ ^j&O_ x.puIl)t7MdۨqYT֘H\9*3UqeϙXF~Ft+Z/xuCuht(=2 .?$-JIE uNٵoxRuiv œZ]\ Orޒ@[ |>1+(_=Q}g6[zCpU)]wNob+y]QRGdZȳ!3(op%EwM_团eIn۬^\x+y;f1T{V%AJa^[Y ͳr\gҸ-5Kd0H}=V[:{Űh'k*ۀkiwM6LH?r҉q:!V8q1%O\7;gMsV:v_uh КBsx &uYxz]8>/i%WUBCl~ObŰQft h:^6[ z)Oq kd{[ 4CJy ѭbwSJ+cKI a/i6k[D@#NhiU { &mw&H VD t@e-1Ǻ#4 z Tk42!ؚǷN! gihCRj5و+U^l[WkHy=gZܞfoF)g]*k`Ae=X'KQ SljdV9 USo9PvÞ Ĺ@ʰ];BWr[8CuAtR3xrCob ܰh y<CTuI3ػDMO,jMAu۝] +|E,oWJ] Y WEfWF, dNt"V[2aI\5G]~IYp5'W|4Cj]z?Ppb0~74? n\Gny6}ٟOwE} {{Px<$yg{Z # b)s,K@:TbhR0^:w(øzw=DJxu>+W|;Mԓ#BǕE-)1\?qAMo`'H;:/M`>7ahU)~X@E]p #9 Rg<Ҥ0Jkir1K-36ߵw<[G(p:Ĥj**!\wGz*-uJ[_. aCOpv rdV4K&%o|O/H۶>PuVDZ@6!9\jӋQlX-Ha~QqJ!^5݊mY# 6&d?oRfoF|-1b = z_×N]YgXe%Fw~%&hr RfԦ5kԍyBҝJ^Ù3U#yHeLF8dW2_/yRO]"2mXnܸlr.kSL'rAKt jkKzϧf,h6r#3]=֭LIqgx9y򉝐,|5ƛ{G4Hmt?Zsa%h-G% MLfV"GB8BQ0n8?u+Ң0]6GnG_i{(GۉˋG_b~NOq ;RcND@ [s,T {ҽl.2j߻h\OV /\<D(9q2QhYץ-2B-=>yzs0vWw }-x՟&S-kA6DqVҪ$$$ ⊃5j P)[" EysfɋYcNZ>YScG⾮5Pf*`4RëT.,ğtKV#j`ADs9_A4gFh17CN(f)gS)րW,!F)^7:+F+h\z;(3sYubjAyaøI`D٩V-u! tnAC,ol1XvEG4THs&_a BR\e _~HqLF[}⟻d.Rz{c"6!*.05O^W wI``~-a*yTIɍm,eskL]P(RDt?Ɯ ӈTvykp?}$lgFw,i嚬M`EXVBYD?_~յoZ0 n }%PTuH=ito_e]N9G t4&W5^~#W'Sw9ɌYŘj;_7lGsg v|Sc\_ĩTňZm2|&$U"ݦ/w u;l"dGƉѥevb`B1O{@Tv)t]g`REf$\2 Sr A&jV y9T=F6=Y-o<hVdw ͨ1)30;J=7!?>ҪS\hZ 㔆k].[ vaAs^yE8;Lp/exn<$T@ؓQX*2Lq%'׍⢉KGSqbf=?m;KUglEU7D,QVP"~7%Μ#ݼOuU*ƕPM `sv}mjnyV42Hf`F r%E dh0T |m,qb0*:zS8XkVeA)EYϒxٮW[3ǫy@Yw*!q[I~gv,c]u:?YX´.ܾ7>=yT&]8M/ 9kFW2Ÿݩd_K3 eeZKhL)gS%Q* Pp"K"0Iqf&UvOgOHSv=PfNYCRf!,9&uIVc3J*9;1T";|L@Ⱥj2W8  XL\ ,.)D('L9e"@edkXEyll U7JAO湲DD1Y\/$xBSIN4a_b.YvZ9' O>O)o[ayvw5}JndQ[|b|ԉomJ9/`%լQ;L`Kq@ɿvp|Zfe]=>GAghpbz{䇋̓(lS:wr}1;KgG[A*e8liEut\VrL!oUCIRD/q+-1@ IebEW6ބhU"3Ii5e%b%i*c&_H!8}m!H f/)u}"F3ZLռ>*f-oaUL#o9W։;3y׸W/&_ټ~!tkZm1XiqzF8k@!щM\!U{:m!b%wV_yU6NjK@eŁ>1FyeK|E;Hfx,S}h>,igZq 4Olkʂ*yٻmG:=Xd tqO@Gyy¸a_c|[*J1>%4){"TuGaӌfhpsS  /',פHz/3ܞPniWLŃ0/MVnVi4@^Eп_k$*71 r;KlUT_3S} vobTG25-EyD\)0bF*6NG`5VY\H2kXxiФV s_oq _{.=S6S/\@q#epo?QkX\-?o%=; !_:>0틊@$HvJ6R(C"x{!\:N[_".,|ܵK lZAh, KT4SH+ԏPEhvR4MG4TnFba7Ap즗j.wRbCKx ⢀iZqxYth7CiYcKxV:M>WҘkd|۲?5hy, ASw?K!^SjF}s0=Қ7SD2nz 6&VLe1 m8uKrL?o=FΒvL28XӭZˣfӹ]%)*'H`W7#]ᤤ ?<x\*!^cBL6@ƊN{/ۨAY };GV>W| CN(ˀj ߻ hMrL#n7,lqBŸ]C(kP8KlpC6Z9.8:*ɂr7V#p[toIx'O= .yseКBu2(̩\Q(HUO,_l#ۂ o .Sʥ/]مp7s=#L'К>Ho7m΂K Lqm!C"&P +@>²S'7FB<YȒ:d?9ųzJ'ڒ eBb,k,8NTöe(mG$/Jc5~BE!te68Ϛ?V禟>9*3N_nO .\}UBFA"7cɳt*ʃ.y.w ūs1Gq(3vX?s+7I60CJϨ.? #ȳzki2,Dri"ZMrFڷF}loVhEy48 +#s4ݟ X9D4 =J%TqWt28 jgr@Y#xjDõS{+sxϴ l!"MKgT`ߋ+'N<;t~o{ˣiU sO<éuJ)uXU2pzVz(nmL,Ÿ'^~j",o,sَ .ibQIO(N@h_ҫPM\+ C7oC#k[[u0n 䓍5QL4=u0%<6lE( @c(3p[0Q*gK/}&I\S,`FhcɄp",ctd"9Ѐ*4Ď|TŠ~peHN7vM_DmA N~AHFk/Y󸕝l@~jtTu1c{2Pu_ͱM,GpI O铧`_Q]Bz bͬ[ULȦ?KNrBބ#Y5QЎ5C{ uiؕ@jdFo $\'Q(鐻tH0?^6H Rp'&'W 0-P6KP{%0 w'8#ߣd%FCsԿHl4@ɟ5P+f[ q jg6EnLY)ᙅUNЖhQdY+Fw%y!d7pgo7#k4 0ϋ{PwHOS$R`'r?+KĝhԼuƚq9߆E/iP3N9:sEUOޙ\XmS 3jܼI)X{<Bu]:<ņ_b`Wo^,14oIѼu]:ߔ$T %J*=FsEZm囦 Mc>TRikXzg^Ȫ+sؕlJ8<=Rmmy&f), y#" 8<_v)xX6#1)J0ߧ8꩛a߫ё(QwNyRAGCas+k2D+XAW]JLJN>ğ@ sTFoF#e\)"i.[rgު;0]6זN0r`j?rҔn{J.0BqOPE#Uw=\SQK>'5sn6ꕩpբۏ޿ RX1rڠod9su *+K>f)#~%Ƈ!^4/"i`BzM N0Δj\ t@*e0 Wdi#ʚ0տiWK@ VtT% Pi 2e}-~Ĥ}:RGmQObbg9V6Nej-˾D 0**^!X>5L7#NVw)V)RjM"gi?|I) ,N'7WE ~[!MZ9x/dv0d7O0ߝ34S 4j/fǐ^ S"K^JufKp|ќTQJWH b|3t<3k+ʒT.S{P*xe<f",krZ Nƭ~W8=+ ZJαiqrs} mBpnViX!6}1\ό@ 7kOFC:&>u{[3gL;pæ<%}+F쫩R meٚzfPj,WPfHAYU 1;@צE qIRaX㨑AǺ88;wus7FS%UR9&e,⚫af//B)}w{W XRmj*T9d>yM_߱Xd X62&%LwOe,FA1ym־RLjɍy'aoowEVZ- ` PIC;f?>d[y+ L5_tSa[nO mt+G؛Κk6Rd`3U]xX,t1 Ð*>q[;8da)zJ#g ɹa;7,o~u|KwWxy41!;W1,Ix-OkMgbxiѹwG$ golS]y fws<%`lHhKOR"m_L1m;ZM&D/Z#pBGƧ@Ga+AD.G?A[*I([ƃo4yKjSŭ̇/ SZ7Ӂ+E`-ϝWD_ Ɖ~٬ _4Nrj9>Uz@C.ߩ;'q^A_nZ}ndv`gQ\ L*VoDYRtҲjٗ6.jUe}GEYfnZHIݥB샢Y]ႳK5+ʿndģ~km) vVUdXB}*i5DŽ,'D|6 'Ll7z`1֘jL5԰\w5~#}3V8 DgL$2=}& bmk|ۿNq齽(XvcR&eu+8m^b#R&fiE;"@kMJe̘ \%;W^)I5B6r?9ͅQPi8o^V^IR >=Z6" s"}#J$I<{{kq XRw(SWf+6D rWLw)X Z1qj ʌdY\vA~XG`Y zr Bп5ZDGQQؼUtP4ЗXd"&M7 bu/v~j7@Az)tX3a^M9?fHq:ıpZ: ( ( nqy7&$eɳJl(18Afy1ҡ? g){j8CR܋tQ,kzv93 `w;n]P'' OM=VT` 5*T49Al县8`/5-ou=; ԗ{o:R:`NK6Bszgo?2;ǶyGx'CY>1%}ҐF )ǥmf։`ƾ Xƴ{+ Bpjz2+_mE(#mOÚ9oYk<-km͗%3e#b-P&"s_~$#-DVuEE,.rkmҶXq=ZH(EmS2Y&hڎG;kR Y"T1+"W(HaMzP& eO>*yj}*mn̯`eeO-m !>b[WW1vWH.f`BR~R+Ʒ-K2ngU84obp V9X63u+NAL Xq-ܚ>Qid ]E3nQ2}!WAswS PuPEѣ&h.H׵F8'xK&  G2KK[j0[ț4ˬ3,H@Z oMu~x̢'"qY qSwv9[cBrΛinD{۲ :@Rs,őFjԍ[bQ;fV ( p8;uptMV?!daj9.敀]m'hq`͈LY;[$JJh&Wv=w{^V-aFZ!D9I5kthxs/I{m=8cp y 3=KT{XYKG.IEuY~͆ (ݩ{xȁͥn IupiT^/0DӣG$~9>`j%IQ˦>؁!J"ۀE^j+ySL]ʜ'oO;968a{p>_z&&z{ZF~a6>Vm|\8㧊֍Tn$W{r0XUAtLKaJ~0*^'EXO"%W9TK k(K~R1Ju.AnО+\h$n iv'Wju m. J1rTE.>.YmŴcjzljd!Շ[æ9T¹qUVrkNQ 7IhѤ\^sp$Bd`úAp(yz5g>I2K]ZAB4K0M (PLoS"nsG}W910Gh]iȋ6OO!L_ͯ6y+1I?˭cir\;T | Z;V'9&/vB{GA%,("1%7AΏ% adl|ºKho96TvRڴXubHv_M^'>^>_*ypa蚸ȜH;VeHKKn'ggu^Zu,ϧ^A\wh8(ئ5JDW݄QVew*T!;ѡ-o:A"2Q7民3u`2WMUEP<_/*L²]'U{J`â10ܟ}X }B"5:S|s짱Ϡn [RK"Yzґ^hŰSmQ=)Kܼ;&57Pg>pW &V~∀yåf~];9M[´&ZsCO]^Ndžq/H2%E%I –s=pa^0 N No&ݤCvر=A= CeCMz<#s@6ئYtgP{J{NchVm{Cm%}M_tf_|jW[!a-O<@枉yZftxc<n%woy ahGDzlc5{M4LF+(7Ls%_#@vē%Adf7v]$ϭ#5{4?LPٛő< yzqs\g2cq]32 %sPmB(0=J>؅S^*_ La=Ro;oyM!dQaY${ PO")#ܹQ-lk%ټ΃ۧQPp!@Fr%LЏ!{ir^0TQIr!!vFVM eev~{kkv`Jiս^%dwbf^@-\B _4,Zg4Y> 7& 4xd;ouo;;.5|;s®٫"i݃}n/ STgf :%nQ^/B F rBlxOC?, Mޢ6ʌVux #Z{Gg6ow%C$%3Όo?o)wTwptx1mթRٲ@p~{ nEol}}n 'ݚⲅTY K)k$Vd.֎~z 。DBmHOs?u5\i.X{ k: RbR)sN(F }EI!K>D fT〪O%aE)("b~էpIچbaqԱWE +31Vpo]:cH/REgMUB8Kχ#wևv>\`y u0wh . OmFt1q>!XVLֈL=e,-ߗ@uDZ˹#au8͉Ǎd?}(P0)vJd_- ֋MMv3!fꀼ,Gd~bPWYޟ}7L3.$0} ا^G+6'M.uT|_Ǒ[@aI/gy|_(Np[`{pÞ5) UO6(ׇ/ V bܹktgӇ-@6n6k``l U+!*Nj$4Τ7% t tPX+N"LVve|yI-ѽA Dy;3Vjo*_G\apSW+-l BQS]xOP1վLa `ŧTe>3En %!.ٻH5p6`QjBM2;yWf+cj!b/aLT 4B|O( 30LUCM{%"v7);lDJmpW1y=3]*:8\|l#$FG.~v IT!(CH\pHPHqNKH fHaC^y/KS@7?b\s+9 1O(Eq>n2R}6D0(|v60y`[$ccn1.` ݴ [6 ޒae7w75go4S UE=@lg-{.c%eKCQ8OK{T,guHVMqɝZf {+ΓPŤ7Bt{h mn z%r}Efۍ򙈤0SٓX-D-H3W|9[4 _=@#%ȏ & ˮ}la\gIu՞{\0#</;9(Lf)P1㔁ܞڭ{1 Y }Lb !/G,9= 1gH2cцtUxew(xN&ˌ}<{((T iUx"3>LÔ{TQ{weC(+(bzvXej-Yas[Oմ?2!Hxiͥ5~\ȺH7w|Sl Ӓ8S v"RqЫ.a϶;N[ /cnE3 48&/ N͸V eI- 1;_ࡨ*3nmzjN\x=-ߪҪX1i"0@0G9}-9j;pcm} yhH-\X!k@ˮ?0I\ɖZ W+Ru|8eA7}fQ6)|6\0Hn`Ax%Qg @߈?W=*CLxԣ; "]?t i {3`h=: D0o۞44B0Eͳ WD*OC4,S0GR{R!CX=3xNadClpʹ2ԹG#w4{N[;eom1:xCIp!u6.3N4Qiqf)z <8'1 lFd?;YϧSwN/! 9G2yXȣ}E&E]lVR7*}W0g-N&`Dx-Ŭ0]l6xWRozT jU d#J4[z?D͍Τ9nEr@aTHV; ͚8X,FyCCtآ jT?W Zn-el$nIMSP2ej]Ҟa ID2ʐZw0;V/C-c5:2otpx\> 1[?z-2 &BChm&6k'q緇CI3W ѧH.ܣ{8v}1VF: '>hʆlcZ^︃ik4ǹS_?O]b? _=]U睙TL8 mʜu-T࣑6iAقXID^@tzr~綾gǤ'cݏbn1 Z r[,rq$nUPJ0Ǘ) L4oi/m=$jBmngŻ2Gt4f~oݓ0\S޿F4d3?@]!.W ;#!(XƺB99+NϯKM1Kxm?5#(+ӴXs0w>=RHϘɩ PSx<(A鶘W]!Ngп)sf/=! %U0Y%y\mƒuo*[n%ZMOxQ,m1.ZG* -w0TjQ^N'\`4껿l:tl؉%&SY5ݫnYA\?d /ɔyк7x1WQ*r*v~oc.Q7sO "S' fc#$-߈~f͢&f8aϏ⃞ U|þ?ve7a1k{)gGIvL Pqe6EXx\*7?qz%gEct%lj^jKx\Nltc*YT:B8Uc:Q)|;<99\7Ra;*9S*^<!QBljwwqI>)pWzQ(SEd!Òm{01pǿ >IKGڏB XxͼBٗK9m2}v!S-zӤ 7R. <3e^ʼwyeETj)pa%̷@S={l&ŖDvf=u |*$X_1iHN`޻|jT{I9SLpusU0UtK4&1oSŜQGq6KjvN/_"u~c(weȮ!x .n)xS[Cr OW3eEǚg/#WIkI ::* #VK`A,Tl?;>7#z,*~ә }?8BSJ$mmGl%7a}1=ɚs/ssYtvXVbGUhIrIBhhTV)jшPŢXoh/y]vhU321.RKrkkK<8fVѥMR&: ^ˎKY'Չcc זЕ:\\oEm`'| {(4{ ΐcV#RrTzv%. %CQR!/ .ĠR* ܈DTZh_JMM̶os!R4@IcS'v#t{r+Nakt'!d7#F?V~ jCo/ ~G~tUFT-鸴F7ypgz 0Ò 0VP UY1Ic-XWҕĮfOXoq_uj1%S]42xVVZsNXGD <~Oc9sZsE|v'k^uwC0M(> Ѝ\ņAXfV,#`͎=ΈZY#[[WY#~N Ή׀tDBnYVT;foلsf$Ӛs@K}mh}3cJpXbfC>dwVh\9:JR2 [9 u]"HN>աi7pRPVHsؖPh&H E2q{KBXuSޞtRqTQl jKM" 6t4;珲CuNE{\birIih?A2b Vk, 14H>ot)蹍L'8;F̶p =S7hx.XNWx6bT'`(i#OlBcq_S w5C8ɴ+nWP`baC%HEsyV_tQ5n)mAWv7:Or]K7wpXBSt4U; ٷv#F+LZnZю2|.aQ%b3, W|Jm}XFW,Z;p.>ZyemM8I/χ{w4 z2hYнY~,'/ZkC QlH𢁌oK 𛎡#p"L:VMM Q0D)c[ xǨM abx`.slwb[)M"(F9W!^#99G_ f+4Pdʖj iȜQT5 .nN)bm]>Ɛhx3?m\l;b;J˅@!A'Kxg8%t0'8loS$8諸)"7Ӻ>{~0 {7eN&|*{;i%Z.]ʦK|(LXPQİ:eRB Wly]px#^i*d(;94W1 >#V4{$vF rW:ݪm[ŭk͟kM@@Pe.*X'X13[q0UbF7sP#q:R 2FKZU$;s:Sti`*kJv M_n*/lGo%P1ܰL"~S0|XRpHYǢ>d|Ͻ*QD:.Ϟ̩r#] iЃÛ v EO|&=G= ؚ:WM|&ZE*QFAJ"gfۭnLC}c+_v9WjlY-b]~,sW>vun7l@h8RVY~fֻ,;GX|p;kt$5E }y) Xkԩ6km>_899cŎ'?%N_ ]IBQys s֏RXR5GyheEN⃁QOBm?@S,9kU&}?gӪ0| 謍0F LpK̑QVѧ  {b lGO~zRltv1f/?]wYEڽ>S5q sx,tc?S2})ǰKd=m9` Zzz0ֻ8xP[Ӽ{/T3[GV~) փBzſ_Tx l#3$.(B o &a%@ }o)wGyҧX.ϜS ,FW­V`C7woZ2`VN4fשz#Q#'wO2B?w{T)߾.]馦㡆xBH{2_b1eu0lBS/Y?OR*2D 8;bBJo6{`=q!Q+fK1]yuXZvKG%4eͅn}[$U944 fjd*:{GZG Vy>ޫp|Y@I$y0Z@L89- ^ M3Dy16bzi.@=E]>3ԇ h[`u/C·מCypr*=h4%W;.3V}wDkx}nco- A0,j3\Tbo tlGFhQA#EL :bdĹg/1S+zƌIT$dIN JΡG16ugz5wD.h٨.XewmUiodt"ft `wnQ<9)矕(`ILIȅbv}QbA2tRo4 b½?nYiYYtP<yd`JJZS~_s S;xg3peLhlf~~7%o6ϥ<|%M6Uh>=QǵXv;9@޿0+}[2n '5&7~Rjixm<`i;(,R3gmL=@h`GpXYeM6,8[M^ˤ6irbGnoXipuKdד*F"6ҹrS~?ۈk;2XBX;3!?)`/ %MDhP̱@ݢ~&.0>.0&x KA4@MHrQ pVqa0aJvD+iCsu [{3uaIrs%\1ث%&)ͱHN趱v_ؿnTziЃ͉ĞkNJ-hq3*2h/d=trb_O | 6|b T_6` ԎQQ 1pOV fBg͡J23 ץ.[s4a&>\ n vzr?)#yLjGN_NX̯";,;^¡`7?fF|R[qל6ub9I6Ű9-b૩~ܯ) b\u,!'W! #ӚڶS}=RK,B֥ td=CRj0b=DZ^GK{qy6 XPGڶ_xx2ŽXgpiO\{$CG֛73PX$7Y&.iSQB=ȅgQ)ԹO|p%yemz=[f38Bz07ލ'K-LıۢtigO%I-iWTm(YE8` !ZZk9cvfV(uTZ}uNMJe[e¥=aƞ.0۪|eSO‚{Tyߒ.r.[XIR :{cdUM>Ha%d1\ٯL2F8`ʷwlO,\ jࡠ>pAb@/̹H Xe/F^gw]0Db؟Y )jЇYGLcinamLjWf ~`ٕ)3&kQ|OnX %W?0`\%!^@սlg)mukɹk2& woRGߥdėy/Q|Yq>2SnPDVƓMwN%(2 ',eFh۲7ٕ4_%m"0 Ѐ􎺲,.P7+$4YA]L\tV?*׾RZ G?ҿk̈́l:3@+O~^=D]G9PM!\  ֋}7qdr^Dxo;+tJҠe& ïG` LGѼ}H^u$rn*S+s\=F.`0_SbqdA8x#^@ͺ+?t&;hAxLb邑r^k,AWjb)%w&φ \-J=ڇy;SsfG 8DG|nı edV ȵLe4ZUr!90f9=R':9[r>?wZI[}B%:(=BzΟϾ͘'r59>h ]oV'6xLX3íf*̵'VOxDa5()q촜tE^7]bI̱ 9… o⛶ҍJڱF`F ͐(Z m[ғم#'3VG,k:ů g ^[{3?"6c88EGCtiX]=y}흭Svx~jP$K+5LՎ6@hJY`#U;13=sHB)Γ<ЗP } ψԛ U?o6V?X4ձuI%RB˒b.wR+ҞUI2ƥ~I !;FпXP֓dtV2T٥B&J,4N nk_B- e*O0=L4x tSX ,LèV!P>0˅3^EbuHLGwOy^у(0/T)˚x"E+t18?mC+2F1zS̃<`\񔣰\w/y7nBշ=.z/(#"k@i0ӑ6:ZP";r\1U,/yjXQQ~@jVkXT`6|ԕo~(AsIg59эb]з l(*7/fV9XNx|%xLE:Ncr,~FqfN=F_©x0qȽV5 <9?'c'WWG}A=I^ =G:qLZ?޳d~xr+jrč`"%[Rfׅ;hFEk(2*U8?l蕨"r- [66Fѯ%) kCXE n7W68 Ѝr 'JzLAo`3a%ŊҬ_!Tk6UG6*~##X7^Vm#`݆7%]QN͖z(5ĢqdNU\"|fxL> ੏7gkbtQS& h { 05=o+='5n uX&'a1cM끉F%oB(vq_6`֠,PH'V4r[)׳ 9b1)7Kɀg CQedl->ih#OnTnX`01ߩ`po(Ē ,2".^PxfL܃#"?℠#Jb1]2Hňyt'駂R'dcc=fN7 h[|1V6!pᑊZ#N<Υ=.vkj#Q';U5@zFsY#ԙpo 64?xpSiԄ,M4KrmfhF>l@3Էqxq CNQ%64ono%J -叚$R *|="bGV$vt7}jl \Ӄ(3n탊C).1l9UΥc3N|qȣ>m XG *U2&9@s-~1zM/S0jG_ @wM}fKg(f%;72FOހFAy uR^M,C\qz1 XUU'CTUAQRFγ*c9*x%&ƻtg$`_q%Xr˺s,_0V.ģ3*?+WZ7f6G8iَgL FdAde Ji7 Iy~4$3g0j)6Ë-Ujcm q^̶(k}lj04-53(IRQ2Ff7U[r;in$N#cNԔD?43فk6|Y6m0ωYϱ>)&#t{M7uv]v6髟lxEH}<ЖJE'֖c)!dDR֍'fnJ.VRyQY Ic0Y MrYja+ #+Z͕vMx"Jt6$5,0rfm~+14s[=WpTgřhbYuYo)xįr7@[Qy/œ匼0ZZF% C3ǒ_IcT$Tw黹y%]>fci]2 6z4Lme7ZſyM.KvQ$Kۉ?~ wo gge?_,o]]赋=%0r&YO3[+B#/@/ NJ3Pǖ G`n-+fϊ(Ʀ&n}xG9]ʥT@3ktyS9nL pu,V/F(F 4`_-ݏE6i܂: $~}$)ȅǩB07/ki{ꀍBeȏ (N,pA MVf=n*&d!H]rP0.?DN_ƬC?v`ba3.f8pZfs-EO*xٰ:<'Q":pMÀ+Xq8}|zi!=:zg}g/˾ a&Jzd7@}Kdc!SEN#Gq##R uz'zuG;<@tV%1i"@V.X+Y^X.y`9CH4,d\ʥ LT?'llnW㐯^O胄ү9ܡ XUƶ3hdWF_vIҕZҏn-ґ cw )`BE9=+K9 *كX6_TLN {A;-R >4ʼyGƊYlQ_(ةx4-qԐ'Nk ǵr1S5`o ;$V'GJS_۰oϬW2CֻZx!Eرz(8/OIj7"lL<ePW Xhs@j? W`.)mnA=9`ٔYdFi?m-KVސ't'h ) oLJP֭=vcMqa{s/;a½bQXj5m, mݦyK8CZDn-=ܜ\`8}FBΦǐbf(d߅Ӂ_aؼ؃zDZm1ʹ_B2M $;EvkFצ[PumfO[as!DUKwMpIE<3dc.]I3tImfO1!0O%beq 'wj"u]R}r,rȌfQ 㵶\k_bIfdz'Rx2{PhԳVV#ck1?%$-y1RW?QB+\-tY6P`GW+bv舀s>e:0׊I*_8'bExGӲ)jHqlQiK- IWt42lcq2.+zp])hð%>cЎZ*Qej3G @i#}VX(F+ E:F;lc-F{ ,=[ȗd"g;ǃ09()Ģ&@d9:8I’F~m013}Eq\xFg!j Z{,+F:ŲV WOd+$BF tΓw2cPynIɜ͜k1.FJc&e>3(Y"I΂QkrkY[-1ɼ6Bq<&[y~㓲eFLFQ>hSX-ҐdZtp:.4D'3q1*Eqxm5پ#/4Eesd'*{?=bZ$V>$'6W9 0! }r(s._)[&yprcU' 5nvd;Ʊmhߦ&VhRh4FE#^O>x8 e-b<#0s\Vn"8-VmM "Ak pP,өơDsTp ělyȇj-uYQi6;rzľm h6X\Q%gY fxHаؚQwR]f5+zHj"D+!d Qڣd7r_MEoaf~1%ֵw1](cm{&1.Ԟ%j6vG@IWOnGJPJJQ__RBr湶<@F<5\8)c2 |7-/[0֚:Xu H[xbY &))P0>w~D56+/,?vQi4|"Wz* yߐ]5A4A=Ey˥'55R[댕jreL9}Tu(|*U*fWeƺ6_zK ;QtJtTJY%9U%4GINDxDtIL5iXX0l>1PqlkbA~ &p!ka30O :ooeڂ"C:ŌdxK+4?~H "p kZ MsvY!6Wfg,|36"%4#j!=&ۂ$xiUTe0;q[-` 6FȲ/Jg_N)7QR}r+DV拓!Faxw83t"VFVUû!$CBwݝf=pՄNYC@if8Bc$Gܗ$UxXaT&7ĠǶ;&BCW12 {6~A-[$n$SI2z{JMdJv.r"|bdbT<* ($r_3~̞~#/f<|j[.f˨r\a u'I[C_ ikG,jby^UxBuɋp:=̂7b7AOu]k (: KѤHi8%+G HOBSoǓ)Dꣀd,ex5w]~a C/֠N55P x3.}n5I<(=eT;RMYjy.QhO6❴laPD\z]]&Is[٥/.>`:o-]D9g,;Xb,x噰AщtfD8?" sriD(Q++l"dHe1 [|:;M70Bbdnt--K\|%XiFN/-@,;*PtuTe9XԐ)1K$@,,l&Z3k/]]|لqX޷ %E_F/6999-+e;PuP4X̜pIxS鉐P?os:W&`/}=S(;Apc`pLM{h I_7ڼxlP؜OoÔqxdp1b;$5&hh*Dg=h۞ a/Yv- 5Ktv]G64؋kUIh\!Ⱦ:0K$ | g}[(?vd :G Av|C9E4$XK85*g[$ԉFS,hlS\V9Hh+ޖx~f ʒ ;5ߘ1ةWV1x-lM{FFQaK.r FT Z1,GϺ..5",%% y 34bs PeW|._,[=^O&֣.Cnka2ImUJU5 GʠavH<jO]gO&:(DUy]O;?ND;`GD'i^s%xfO2Lc&J t/l-82/@<31pKђS_ r1[d|$2&uwrU@`A¶ȃXU9c^HUsCV@$E2)hCEs2rty -8[.S7P?P^dˬ%Jy&y,Z#/JByjr5$'Z30Ȗ1!ɕyM?-Sl~-Ͷ ۀNI w/, @S)A)sjƋ_ [LJ&:ot)gA%YA); bTޛ4.w>$P7;ѾZ=xiZ$xnydڜ1{?c"y䚑ʫf+,5{[zf?ҏ2 3d[BzXrU]]4i Ebas- =mb1pmn֯{ BӍ$o/'E/Oo]H ,WB޵Vu|Yܻm;-d,/.n!~0v pR՞Uיn{dn[.Q d A]p ?z>.)#?'d9IriC} gF(cBaD2د/E2Su@)+L?a)ڂ'ے"6~1s-) ,,ιWP$!NV!bbيX<g> D'MMMU}Ԙ!hѥ-lGTyVl@__8PuN@mBă&S\гJç1 ~(CjNc҇*5faM>QKjlnZ<~NJ o`4Sѕs^\H`)q?LG4+9Qi#=JK2^oNI}0E,U:OсFv<^ܯ'ы'=5ÕDZl\{Cֳ+ٸ8,MղtD]/7{j]zı=̏79H) J.GEv. ~(g9E8>B " P\* PDVpBB9m@^D;gԞ15Lؿ9'&mobyYH)yRL{\O C! Wʆ@#)Q[c#M{ 4+qdlN h8Q'jI5ȕ;c3C>ׂg) (Fj!U9U_19XŅF0FH%¹+O.>(5+_! `PwHm+)ir)Rdj *he?n |ڴtxKm]|8we5DɴKEvzZ)ANgS2- Pm޴05F8)c!W&.0[Y H|Hc+8_𚽲[æxۦwRSFZfK?6 VW-nw$4Z!\hzs,c~D="ֶɬP(8 |sw8llSb 7;JC]]JtgC” #xҕ0;X6]dB+mRj|D̛Ga?,"(|epT)ƿbeϯ*r<%ތ g5P^CǣVnFY{lkPPuChX@2,U[ 4FI'BD =[w^EDտl J(<>_A\ER,:z0᭒w)ev4L4oH+kWEAYDGTb4ImI nbvȴ"=USŽ"-s,zy53I,wD1{uds՜:n("5VzFd,`WoǢ3ӈo-:~]5"/w;x~pHO"f2&d,+^` >%p?4g5-Kj!;DsN_jH M}:eJxAxn_y<2B1ǥRiYjY> ƟtXM)+`Ko"4? 4ybmà^RϊXmKrB4e^1Xz@^^Z/D.#ӗzxǹ9HVr?aL/M\_:t!cYWӡu.?.ĝEC/p3f!8-C,zrxvX1E@T?scw5.Z'̆l}G\AkQ +#I; mw B$Xj{&miٵ<"PvB%w_HKGWހ -^ 0AOoJGYᕮwMժvo{ j 0b:[xPt#QC+^Zi*V/tC,l !(iKg?/"CjihkYBfY&ZBo7sU+ %aU%Vw;{,_ȚkggY0m,K>{ml~{y[ wRS0xiVGA!6}2Gn4&?r?9jS_N AkatDʮ%I#*eM o𓞓(̂~(,p1uN,D‘Prq%z=7|6j_V{E!rd> ~f*huv| KT(?ho4b_&ko> '2,2%o-3~M3Qީk '/4)u"M;<)vYDMUw 8fLhk#?qD74HF_sLk >4x)]ol'KTȼ81{E|&IʵYB,r@ 77~|؆J`pqR sW wY˶BŒ7}qߍj<5et?qZ Ӆ(c˚ŝT VKSB3r6#?QK6ٝm`+Ś[fۛAJ&!gA\<81텣(ڢ+ .Ep u-M0X7E$z^, Riw( f dbyh2K3Dz8D`Ƨq+ #2:gdFdRc?ٰW)F&9A2XB[ aC$hS#aT,|6!|grod_]pGP"]rȋ޼m\G$̚-^08%C+1̶ 0L'' ꑿ/b\*%ĽpGPgdghCrÇm"˟z|Df_GcB]^ z2=*Ga--x5CR!iN@L'( yE:W?7jKL HT=N2K7F'RE=|X v8AL},Bo_ ngM @QveuaTU˔t?6 O]Vt-?_c, 6#Rv?9W2DGQ7@*FzH`wDx&8KWPJ$ִM}L+L<#Ǯ_^LxT*}gA0R ?yn+ ECn5=7m3o,ۻa$4]X-cyZ(T2g#$l*-pc]u}lIZ7%CDfЫ?FhS̎Lpe-Okyw-)}f%Eo4@ݱW%]k#9ͨ7Så"b`@uUŠMYm<#T)(cJ-'湆?{]sb@b,.0 EKV3-KoP`D\o>'%o*$\,F7#)([Oƨ†#c*2} dzcS{1L*T?%Rwk?4]fifc~ڻ|Gq}m4~x^szxawJchDm0aNkgR-Pb&6pc`J{fEjzF!jN_;fqr5c&KԿGm@ ?I0qP %'g"D^F7ʹ 9\$v?U9eEV"3HpֈTIl"{E6xq:vulO]-@wn$E[́6%7X1teչ,F&EFc.叒M}MH٦9/ZKHl:e97oNKv$n{gs8d;9v~aب{7BΤA8q1ˇ,T B4 a w Ø էp.Aƹ۞TXϧug:0lo|6wn6W; e*|5A,L)7o??b7p֞oehLd7흜`f^]>t $:Mn3 y(llO854"}GF^+s:>wҾ%@S,,}.l" 1ɡo8`b@,i-7׿ų ݫ[Hx ܺh/DO+b˜nk{^*~f|Mgg/Ȑ~fJ+,2se& tZvxg|{dL*S&57/` %&27{xьҚ6fuۥf oD.C2Ay3f|yLSZN ZDׯvV0L[ۆ x* q_\@+D$X+PaéH>: "m*VLbWԮ_d1Y['fQ]h f_h˧"F00^r_v[l_q׋h$h#-'cdXP2}&n//Λay]vV,JF 6|R' :/CɣR#hZwF+޳f 4 "*s#ȈI'l%p_Fۀxl7@^ލNL kvW݌ns^wa)CG8z7,|z{)^E ucG&`.1Xw:y]xȘC__KOYѬtnDw8+] (MR(QDxCWBwĺ-1*OL\ 39&Cz/WMp>Xkp b7+qH儙 [>g_X(85V|opLXw1e{ZMb-͚!3IޚmUIdY4>C-ozߤ &J8C5KzOߏFs7K1j?=->gz`iHI3GC,/1]qmcy]f^54?3ry@F =Z ׍ܼ8^'8ـ#iW詇.梦9Ks̞@6C/>sk_ gp,FՍUBqϘ# d2c NHtS; ͷA\$fk6h3Ìd Hg =l0{rs[ GĹi#BrX: \ (.7DzWbC>>yl~J6u3Cw{b.n qIV8VuPCz\)/á18lSl.):MVI_[k%kU'/yYֺo7QWʆ ? 0nRuB zsjΊd Z tS܆i ӿBU$ $]4)tH$eEyg(WdĘMAZz`F짗w+"_dX^qz!l[ w (4 R XPqnY3(%aV 8j *?(QCԲ%kXeqҋ;>:F*bA_/`oxeuř~"h++72, ~fa%bhRtaiA)  lEqtAqXp˪?I-,[`ºvICbVK|YѺ}lPn7d@ų T rc'( w%)dF+@4 v AE*XoSiƳ&fDS$qaB #&c^gt$XR2W/'kϹ#A+B;nm=P儂.sbH2SJ϶y]Rg1fqZys]҈68ZoׁuxmO˘|c䄲P5(q,XG5e3KMR@A*KG `(67E⛺o'&|O0u@ɫEzW^%U3'?C$5Bˋ05o$\:sR ybĕ;L54xjDxG|5Y5 Qg}UA73`J9j:}hё5TY(('n{i@M`e1N,#E3|͊jy>,8">}j\+ [K$@$+Ζ)C7͑\_.DcԮe|*ɢGHBoe6C9fĚ0\ZRJHԲM*нyo` *\` zFU JgQIx9kWzB}[39YNFצBSV,vz, YI҈II@`tOmۭ2UKˠꀞ;2PCge |~%k@F1G;כf<9̛Ĩ'wsj*1L@Nm\T!= ^TMWc: ^qbjU)'50S=5׻.ea:y p&*KvA?oﱮ2ݹLjvamupHdԞkL^0@NU'pw՗ح'"4؊F=h_ 7P+D~u*~Ŕxo73>:ǍNtIc 9Шk&NƗ(RB}p7r~Z"./T4YEQ@Օ02ç|ghzxc Vemsu5zFlS}: ēNg b&2-X? iQsbWE.,RpɗnT>l@.Kt `ب}<=H2tkJ62!_) ^|;6%ta(G'uHiʶ'7>V/am}O?9ג /HcNﲇJn"|iH?˫hKԱ9dDO6D>֊_8dBvN  ё#MW%0Y$h׸B@uBBJ/QSiX!ÊYp%>Sw-qVyL~T,GLx+܂ǮHJp̓2 JMrrO!+'iBTz{Ac4Svo끲]OUkJa5.l!fBUIzL~o ;)T8|M<9Dn:S!z$(H*t~>UA "[DqV%USd1ݵ@1tղ ҡb[ npJĐK)$ umµHhX - A;3G['X~>IjS0whʞDwlJQ-&ڠ_#O ge37r&u ;I{y"v)8 Ӷٍ!>G˳*v'E EŌʜ/25SkNZFx0[gHfL;$E7[Bļwz_c1ձhPrd~|U}*<լ(sӣEG-p뷟j.?TdIi%+sG xZǶP_?zӿ~^&tUt6D>&q+~KGF5 w%^̑֌Ĉ?Zj "4Ȕ[:(l ^|gLG9yRZn E & b8V'JaG u@ˆ 9c}uq˔Ha9 M(9ׅW\WĢY,mδ2ls0OM:?fg6%ȸISK}1T>`&??M0 pI`,XV#n&!KB^W!b%ݛm0@yGY(2@i,$qCrzBH Cz%nJY%׹g)6·"H#mWUYO1e94/R*7Сt/K${CP;5Mѳ1gy@O@}{}=lCۄxp$ A*DTfJ36Ł,BN7_c: GA^:5fz&L EEGW*o"9dcFC)HL= _zuB놠'WE"osi>TEk,68Mk>9f/) ta +K؝&,'(1$d'T0w0M""ߊ|$uRxc»#L.I4 0a&doF~< t-6(wws Ľi)L_)f6t}gVPiO 6P&- }2 3)7oq# ݩhcVH(AHڹ3P/f6Uq̩&bx^ P$z\- Y8f[ОݫԼ[O>2 ~C(VJhHUq.3Vz:I/'i tQޖ~W٩>sP.4*MH8vHhѢ;\?j~gyؽmNw 9$5[>9ӖH(ƸfmxjKD^ Tm4Xۢt2E춼^{XH\-OjGCW_ _uy6Js6 |vWo=Q3VT, b(h5)5i:./C<-~8&d9S.|9:/}Fvs I23DB g?˷4j L5AOM_1 i1ޮ +L:~y 2{ɰ/aGu=wɩK!y-հI4O6ԬXU0v'_ӡzFh 6[a|sb 1)Vh߇!Q;,;Ӎk~ZE{v =zCQO_kTL0rPz1]V1(E#I5/!DԘ<@S,i4aұ+wjjWC~g6R&f1DGŐͬ4C5^Zw>u-QJ]-h!fC|"e~m^y~:JV8Xi4j!|&(`$ qA)B_`}kǠn{c`S72%K&!FOX.y8:^0 QZAO48{LeFfYF;|F_o`7Z8sQ^jug9hYȪhtHM⿅utb{DžP3u,p^0{^eKOXpjѲ-y^ &X}\&KeR[w5DA4Տ(n̾F-&5eۮ )Wr97Pz y'(ps$,Нȉ1v{`ne{7@&f <=(y D~tށEŐ,-F*q?D܇pAB*N ~yYF s|':j5':FϴMLfF 9ȣ |tץ֓} BheKÀǿbQ*Kq7[q˦I٧G"Yg.4ĞmJT,:n cBce4Uג0n1Ucl 8v5:*:[ڜ*;VHttf%bU}21lʛ4ܙ %xqYg!Scri7M,,f6b*@b_j$FATNq@In{mל sg@?isZ a5X#/zT]eA)5%Fl ~!&v1~@xŒf Vyn2MCg/ŠP;3(Nd%:ߵk!Xp /C[8^:?,Y^!Mto\=ζoTĽT={Aѷ %b_l$͛kWq:G3\{R?̝S",b> 0uLܞi.#Q5&r='y.kyS0i%@ g}>OT?iuʯM `VzEz' 󐤑}>k]A%DJB6eZJ}0L Uf?uu(l)_J;Voh[+Xxd痝:6kj:dc:UH _B  9wI^1b-4VX\\7~=KC SJgT4s'3QFm*{= 86q)xI)%[雝 JEf!ytgcnKM0zZ:˦:i3EqN:昹=wz;sheAə밃EjNϞҨފA>}wg6Y(@kdt?=M6 g`1km8v: ' pIA#>ºR^,Pv>N*ٜI6r ED l- ]o,"2餱Zٗi RSқ%stЮPbZ~6iTT{R&DŽU #ixZUA&?/rﻸ(|),uk*A YXMB,:~svzp$1+jPsMhmfm 90,'f{A2{: 2 .Ȑaq3gv@kPYy#a.M4=/{-BX{y֧Cu<sOm^oKIr .mD#sQ hB 5gܳ뙑QH8vy 4WA{4zFɲ5/|2Ʀ7smҍ@Ax,?N%SMA@ȳ, ,ːVmG @;^D8 'F)+k8""o؇)n%{.4-0P>;dӗilDYr2-Q 1TPex(Š>wZ&?ilI$~;ֶI NAШ*\MlEJ}Z$':R.;74K:^Lg,N"O*^6R&g~[D&i ,C~i/+ rtz?KV"3+Ъ\W3їш3*+ܾt ;4DvJD9~N]ԍyi4{3/n>hF`wUcu}c›u%QHMď hj_Dzn– ի2 яR}LCIN15ژ\`#O%lN5J%Pɣa3YUF̖(wh<8,״?a94(B^m )M&6F|d^uwm( jV`:c ֏4B"/l~>ށ|xR4ų$g[:@Bd|~R>N.uׇ봌 zFF6G[E'BȾp-bx[#/4qVuU^jyyB8\)|{׬fd6v-C&x5L?S2Z^ǿdc\}"DP0/L:\Ke-.[@0=Z-SM}nqc͒ˮf׿k|=M !Rl)ө} 9)"7>Jz[UBM"Q[6#0CV)mfa4,Y?ـб3H2 t7F}-s&O~0E+rxBQiJymkҜ,hU<\xXr[\'!uj|Β!y]`n!DF_ȽX8g ]WIO꺠D.8ɷk[q){ J pk͸L<~#<S "{'VR&bF/{Ĭ0,ŶdJPw 92JsѨn}78}-Sл,˴l]K` WyHj{JQKU7p؃&.8hZ:c9 ~؏Ū wtɊB'iw4)\c˰H)SsNjz!.#<r fиG}ai(hxVO:GŊSgpB5#8ZWڕ$J@T(@QR8R`oF+j ӿ]`E@k>>bIgEga & " _&GU nTlw҅&J6hUn9 KkbX(eS)0NɬF_h|ǖv "kUn`"F5I+rSdN o}sGm5X`´2Q</)?S8^ݓ' $X ]X EvZ4 *Z >skN#!\UPB(cFfB+@lJoړB;!$o in*֤|aB!J ,g1(O/H5 θUEk"ヿ,PG~R:D's{ %|;eijdCI$Z>%z> u[Cv=FKL >Y&va?f`Z,T;S\wEE%E|G=(hs梨 vEO4oj^فy?=idRئ&Pwi| Tt#Bo& =CiUol|58m.'17Fk\S7+V] ,΢7֊A/]8{\aqp6-rh|tHh*g7.nx_ѰN QfjҲ-gjG|;QZУ6{s~23-Q唫S%ۙB,C cd(?EL(=HCKz];Ah6(yxTq|སTPؖcZIV2jxێO (P/pW*WA l*ClR&()u7L;0'MbSҬVGߦ3 `^n.- |@zofɛszŚ;d5a~6GfIj3m':.̳%#|IåFIĔpzӲ}]&3K!k] ))٫^a(3 lFB8c).1M'j.rHfl4[1͇֬ӑ³D%,0 r㥱3˩R$VUl'`PR[8q`Dd5X!dtGfM3 w nW>}QOuu*L-޽gb_ `z .feOt56jZ_?6^1ޘl[ksԅSP(-bdg+KzI^y4PO+vM$Vgno pbL;{o]z6‰juck=)f63jQ&)3^Vuxx?0( ғ0ҙ[ﻬ99 @07)zsR^ ,ʹ] OkT A*l̾;(N)qƣ_p":ljx80)?`N uy[$?tJfJ5eAO=LϟU_uM [D.ЧNHr=F#izKztSdqqM,`Y+u[W=a&D7PJg+%6.ڪ˻ )S^_m Aj7Z;91^ي#QD _G/ನVT|6{6(|@x8&ѷRT)rs)aN5U?Y)VDUҢSfgρqM#4R5@ Ǣd\kFRImS&v*#u3P :OzG~gge ~"~ϕ{^8|^][We iZg =?: F"0Ekop櫧L_bRD/͆SMQ8pEc^Eّ47Qߗ}g2INvzc)~m ÞlұU4x4I$e[ܦ" +8>IY%h?2ˑ0{ ҚO1xŹGec>La=&q0ҨۋDuF=2z=QxTJs5_A^_E^[=܈e;#Pr^S e`.k!*{堼68QuG]Û5v`z.߉x m*h`}bq(`2"d,sWS8vz _MG +X[n^;NmȐyCzK^`. Tb`(f\>niYto>o]́;%kCv6:D)ڬ/jw44  |NЉvEa̮xVOx@V,Oi, ƽ=V\OZ<=#8 x͉gÇ)"J(bv$It6yyԼ1"b'qz\xS^#i&5DNl~ %gΒS?%V}fTs5s`!^Z?ٽ.d~ Qd}8UyMK@0(%ߍ|+D¼[Kw( Q{zu6BuO+l'O̜IgB%ikiW\w,:ӶO:ۨ?q߈,yF}'ٞMdmĵEY޻ׁ*\s\B^jcb9 vr|cEUI{"TRpbВLR  5f1qsEZ6> ."-WkBq@fiWŠ|{qhZC Vk+C5M.N!)rtB:p Jw!q"$L<GΥOęn<6 )\v2-j'HQ+H.IiH;qyMk}Zbu@Frf { GTg]qj&@Ѝץeґ˷ 'D , TN55 ?i^f{ t3@>aQ&R _҆Te5Zū$x`w*I[954cVnk]o*߮L[ xbhw5zMj{:l HVL2o7UCY߬Wڰ\5yt?a* }CP/P1UC/0vNǁ AӹJ~AK&aN| J4c7˱'%1M'N#+lB""ؓ#Io&'-@OڻNwc" Hgd'0֜qNq\(H|hB?GEb譕=Qjq?C奾Q9Em^8!&Ja'p5B$fHPW_:L̨f=Ӛx 6wdV3Ia7Qcr `;z\\DX $[J -K)RjhTn[<]G >霆D{Ǔve#IQE< {b| 7}lb/78jH[gG1Ca4joXNs_0" {PNSڐJʅ04 p834#v ז)꼉wHҹD@rg'1f,wb< Uկ0*ʭ>T*[Ć~]$CgUnFm#Wz!bݸ_OHM.[ř'({`P_*C(I"-p&]a)|/"7'ٻgL3fJpԝlεF Al O%g` Q#kIh>jN(͓S_K3в+!Uu{+/S@9C$VFM7m'P蟪(zVcj0!>#˨QD,!*+\F,b:|z$oݨaĬ$+LJF!I`ϗprߚc:4_iC0&)rN@i?"_'& .Y?YbHLsy+`*/m *`uhz)zy m @bGk5wgH"zkgiQq|~D7옞fdt-gd8w5Q<spbz2|Z4* x?)QZq?5K/Fٌ0^*@)ئ6(.J;-Tsϸu..~.5yX]˅püS/ 6òۿE$gۓa"ڼzɷDUH~xJ"_u6{3cj  Z~&ǵbcv?V:l%txvF,pV!džS8(ƇikϬ3^nץUH6s= _z]+:cS#Ѯ UŖ܋茚;0ۆS~Ĺ0~zyD?sfd_B/KB?xS?*kO|/Q5%Ҷ 1ngq2nM4+ebJBeWr`cW O߼Y-9O'<Kˤ^N3[,JW.Gt ygO!n˔y0 4]K-YFQe2j*րN1sYCiV^&~I{LS0/UC4/X~Zr$6tP .^ݿa&:XQPCѱ%\jIP6S;P+gop,l.LsEG"}%}gt%^g 56T04iv0`Ps'σFQRi JU)gBT(?z)bz\oW@h;H]qz2 co. ͢9Ihhۻ+QbpyG[4AQz$ԥ0CyFX2WN+ZkP+>I #AE( t*PnTܥ+'Sol,ClQW#s4PsE9GON'9C,k)ˎ.I635[i\mZ@}-DuyI\,( ,S0KG6}i㶱P]RІ 2mYui5}RA*Epf:Ȥ7!l$K o}4R sMƍLͅe6Ѭo7yZW^gm"q#Ԇ߄woo-ZcV:S-4;sV!?| FTYy2.5k,M!JLDh7}&HKn _Iu7jR*`yf[4;߇,F-`CߊBam"OŌWʞRF]oxv!BV)n` dk w3nTɤVa|38$AtzĈG=nS-3hz _@l{rh`ϭj唰!]xk02`\a }{M<@!3Vmf[:{ɃoONfL8Usq-dO}xo\Vn>F}|:~3uޯՏ6'QG*em>zkh"9Жd5tHQ X:[b rtcO}o]|3QgZ4Φ$;(a@(ZQDHVq8rs|dwCRI}*{v0P.. SLE$+tlHN:; J[1Lfc qwuH,IDbLp\\Ui5&;pI=|o lE tB*$lmBsWhvS5p퓺Ν_\<9h6qhQ C"j]|4?W/M1+">cLfRx2:&=R*M_l AlV̐naYެL#1+v`j.њ/8w"bzꗘ.[w%?։J{9`%H~թ0XI6RUŧ݂ Oܴ_J]Tf}j6~NjRx&*$8sV3ߣc̶ʱ*Fq2XU~?gFlԊ3ʱ>%p)_>7DSuFmI8R&B+]۔l54]+f✚[f ҕc+{WKş!k8hf2YcÂۿq/B8&(\JbAQ@Vd aLOԱKcK8ٺ~蜓i0d7'rL1%o */s ̬;)6.S*?m-P%5B|Yޤ%{`^Ϋ.`.7K5i'- ]1+=eIM)aq=OOOi^_[Уl PYr8@Ƞ]kLb3ĎB,<kiBUnG7^ޢ=zv㴶TȐWE_?d\A %rew\).Qm)J*7:)\]N@[Hj% ?2vi2г)TBOyF5}J6 ڍZY~ 55oio멑ǧ&HwAikSpߴB ]rKAFujYί aKd:v dR3 Kh?фYms'#_̓YTp$dWNI BV]:N2K<ѦLjqp0|]In٣Aqʻg(nčZo蕡YCEs4'JrCh0((NĔX_-S[)qvI36QDžW DǴZj`zC#^XHMUĶdvK*3j)oSa>LrKUd<~YmM&IAl|]ɭ:q߮ eBN9N]= J`aw[FHybh ae[&~kQ\Q]:Dhhgg{ r,% *DUe }<,]D>\Vt:1* fgʼn,h%vn5a[ܰ;ghZM!sR<U:r/{O"LE\.Ŋ毚Z8Â,陭@eޯl2!X:s54x@c٬lhPwmK񢩏G蜄,AzL!dw}cJʹ;3jFE o̪m/8BwKЭc0OR%̄T aP դtaX/'WJsa-Xj]%3*bE['&H*;sel%>&_oWu"<^MW7Qɍ`b;sqoJUTqvaMOЁn~ROw, A2{+MiA- zmM7%//щfM f5l> m[i,=cy$B7Kl}o Η׮T=<}tXfĭ@ՙ6>m"dy?l#{>Q?黄W;;~i1Nl* %{M j)lZM+jl9 W'QUVUhCD@#mjمY[O0~ gn*MB@j⅍ʼn`K {hUo^00zA!ѥ$jp!OAk~%3&yq>w_~$`2 ņ&MnvI:=^t0GT za=c  >9(s$2of4JEӒ1'1q?Jxqgxm^oB+ǯ!!z (moȵK:eZ,W؏ A;n5lOjO|. rgS)'wb)^m\śE$/,Lwe2fo k),m'+G~ 58aY8%1X W_ FiӏG9:ORsG ^ ޿i4tdZQom0hk!ёt*թ_nrWUs]xgqt֤\^t7s)⵻bCVH2I E]& v(5BD7s1iߐgfN&@S\UVW"Z$Q`< 1ӼU2-iK}w |"*",0y72P;>Egc/\گABPyH%B-ʛ&aj$9]ՔPUMg(7Yj6;jmmSBy=[ I~`?ȁϗ']$wnKl,ie5]=г>'mv[9&-˩v>u bfĨpB5cf2ʵf2Hrsh:(y~8Q8@үAerZ|oy7M@mbUS{O$K<qʽ<@R-BGTX FE6(P-0gf=U˄[h$P$zOUGS/lk}~ҥ;V6$2捏0Gs$ {8ȽC+ۋ7~s$ Pd>6!u2!,a' ۺlf%U]>U͠8E2-pFU4S]MXz+פZ5jL,R$| ۗWn8lfނ1$!(@F,{_.g`ʬy\_5@Ӧqxrn)KM9: ٦eAgPzqm|Rt%% `RvȎ(3W + TB"oq'Pvh)B[*ez7J]v([Ԭ]ۦ T6~B gWkr6o2>} Y]D?UMCe1\~Z#AH`ӺYxߛd>j q~P NBy'z_{pW"PID$<]vJ䇸4p W1ph: SHy+o2՞T-s6")\m&2#(,qƼwd$j|Ȱ&A+&|D8<|"Sl콋#b*1P@,)+Ri9Yq~F xQ&3/6`HYL$><@DYCSlԣLG ?z]|JZlI-Ed)Ls\h>Gܹ|WruY}.IC' *gyd7߁jp),ެ ~q!ޭC\o4 ե}mKkr I9C!I)M BAHF-E:IX iQo"}[A+,+,>ӧ | kk*'N Cb>9ժAhY\R[=4ACEJJmk㝺qѸn#&ȶÑj.YzTfeמ$kxDgp,y~UǑ^i?6c(﹯Ise$3 t-QU9 "=OJ 9=h -^Ld.cxey7%/=UꅠgSp07}Yv!\lՁi#z!LHuW&@<2!;{^}4y|=ƛ(>{lr[34(u@<1R)/GHyd['eK ,4oGS=^%}ck{C-*ww0ߣrbd6\_ s#e5Xʏ6ivYvEdl7)l3D4qmAg7CT"2RD&" vjG.(KU]L*W)7xX e${o2JSI,/g2hY~^O!,Mx3hHD5_A î*)l_%jUh/#31l"sUH:I岬N9oM1t;Um@;ZFid5p'W#¤lJ1ڍM/nOE z\id;p@`f}efvvfm@A{$ {)ໃ֨4o(YMu(Xzí,z(þ^y0YƇ"q%Hvdq97; 7X׭\2w:#K}<&UdgFOý^ K]2ѹd gulV9,Be51r/\x]>zn4;cd37C6K>)ڣ[0]V ˠ(zhW2tMmTh\dU_v?'5)KthP][OSڭ WM;6r9'~aP#x5 5G: #iΐb0q]4ˬlqjYhͨ jKnbs͞(}Sa!_T+ls,K;#i&$kY-1#J.xv  Vڇ5o'}?3o 1Sl);h/qs[{A5ч5c7Sqm g0 VKNEsjȂjVNNdC*6 Pڄo ɍ j {֎Կͤ')O4͐ "_'Y2wHp xr:+rt;̾@vD)9{OEWk.]U7ӧʠ1GPkF xpY7?iw`޴n~]3S]4}K!WIĤXӝ#;RO*L ydwwsFHܵcZ$8Hq0 J5 /Ĝjvx5<)bQ7\u#|Vx!6`_ ⋪N12u =Dimt|.@G{&OH묒Jh6nㄤW.AAD/, ܁8?⥴6y`vh%NQpTDkHP,KaW11o fR ,0\Y.]u J=d9nd!ntĤQd7v잕2(堣`ugvcX;)1.7V4ym57|i} G%3vpm:e jCr ^*Lz"YR8mNh2GVuwgTwkOYS.,*١\1DG294.Mhi.8ߌFC0ZCWeTDlhNiU6[M rgSO.UK<l8l> J29. .ׄaFp }wg*nr](ip> :7ӳ=gWXj'ZÍ#<0Ru'Y12 چ„Í0_3-$1ۛgv us+B ]BkYf})Z" t .iDBv%N \ H8M?4:`%OOs ;Z/̴"FCY+RǬqfڷɻ-<0XMQ# ؈ȵ{:O9#q3ܺ3n6Frʤ<lsޜOS5wlWU}}>!* rķҲxH9Hv4Ks]oQ$=M_|E2aw[EBqD-GB`zc @7f]Bj`6A/k@++\sYPY!3m~WyJBu5wj L><v-8dGKi1o*EPa,|Gğط}@NႻƎ > {p{%qKfMۓ][ôB2-"wB$*~~K${98U5;-n.|+-:=SΜYzlնLX Z_l*\BBL$e{e[\A%]NqLD%e+t_2@, _^]P\Nu7ftdxt0τ]srNE`ts($;A@~BoY|kVOٲ'//T HhibX8eY#el&;TQ.tg^>>)ٷekWL"A?tg;nty"BF gE]m"ewUwLDa=  ڕx&_W S"`\LD"h4Sc}Cq{uD5e.Л")plwڪҥM EbBǗwlt#" >쟄JNMw^]n$rfQs}BhW3N{船L_Hy>%APik;, ZW3bJVwΞ>KA wf*<_> ژfWr&1m1w qӳ̾&0]sd L;:1\~< $l5b+}56&R ܩDE#n2Ű!99Vӌԡ JMJ>E@ QlG''&TzX;oYUIB$iGvCZo&*͠Ӓ+(0q1E7#_ܓn$sHfYwG4 Jm'cܚ7sd5ho&90hhRΞ;f\[D;a @!=Py$+'>kjsW`0,$C%;t%sj#gA %TwG aįeLW7ΑfX#յs9"|?hR?E*@A=qF*Eiyrm+&֚pG7ڕc;QUt׶ro^3? aR+4a=SM*":Ph,.T6K/ 6ڀهnvO݇B&g`D.B%xlwc{+8sXCM24|=5,N25Î3P+󥡉מ hC\`# a#dVR7Lj7?)#ً :Ja Y_? /\8דCOӭ!(_J޺*Dk/(Y=|"uv.%]Ф6̉'kRu7>H L(m#14޽nq(lػ^ Q;LWm"[ XJbTCSM.L./_SA%3cK;M\V Xa)}.qH g?~u0?͐;Z; +ߎO/v+,zL MrX&!V>'>ӂ€L$SF8DCr[kB7 6nc"&uV˹XP)$%FgV=Z\^k*~d|xȵIf7@}2X^v$3ƛmϚa9շRqz[/qD(QP"4Ot2TJ*S?@Eԋm~z{c8E1B^{SF^|+6%3vݶ@." >IlD!PX,;#M_55Y~YgZ2sĽ9>fn ͨuN_XfrS~,1ʲ񙗅; ?a^>rhD{Β kJșC#gK/^V"|٨\4߮Y\XN쁺X(K uN5eh-3EtH6 ' c@He9.\wRj熄F~*LFsLp=$)ɳ{/'GgHCc3zy\C#n>LUIU';t!rpzWs |I h'Ux.VU1=!E4ݹ#1+}IڒIE8㕸 WSnn`YۆG#_*ěg3P=\P 6A@ wFŊWs/n+.4A\O=n.& ?P2Cz_o a "6>b/0/#J ? *VLf/j*Abh>@]{x֢,-qi|˾R>ÐO p񡟨} ?#Я^^hkݪ2+A땅.c(L0i{*؟:Ԓ)'c: krD>h޹IWvLcS% :<)աY%Jl:y7뵢 P; #Sv ;ʈ\QJ4rD lU43/+Od}'( V$WJ1,KmM+Hr؁YIp9lCȒǰlH3P1rn* aO55bW 3LoضI'/s؜ vZK{/cnHzWYkPŕi~) 7. #+U‰!NU=Ϳxw 2{# O[zu$hӯ!]]%̃T=){ 7D?)c#HB馴DbG1ÂKxqWk=k.,$? mF"o_d] k?7lԛqK&6oyWKQӨCj|im6۝gt:Tt˨r SvPm[-ꙋ"x%P bM@c~qӵ`Yؼp@O(1LM?6O)+K4 )GX3apJ(?W_B?H 7 mQL /o{ H0"hہZkߕxE,fmx{8h1oֲ9(:}NJ۳?ÆO-q^6Uuw-.i n& HcWkr\]vIAv@;Fī<ԤIo)W$!S -%@Ȋqp䮥k~)q ӭ1%uqfgthj쩊(MFD=w­hZpYj-=0~5݀H;Zl'ͷ,K>t}}7*gj3+>džv $Ո_)F22-dy\uqk6 X~6(Rs3e:3+ =巌$ӣp0ls%`k#[ $L.!som4~p|ר.P欆B ڶ]y 2(Pí㫆9X}qߗLfTSp ˥ ϣy> 8` O=5Z dDsZY딫{{m:|.cܟ+kPnLXf]_OWUG\R#yD׎gSl[E:%(v. rR @?0}UMs2+JD7lxֳEBJ.y،.M6avD!1'"fk'xHv;Nɭ:Z=WS1˂hW5^uQE(Etxކ W_LX}bփ>&dZaBO =<&B`lsJԃY)`;Qэ!?xu͝8;0ZkDihr:5CĠ2]L%[&`AE2]Ґ-\g5LxI]VTv>t3'O(]D#6XPPi͚EAxB`H}J@h {۔o/AckJiAɓ/ٶ(/Z_nBڡ r)k*f)Q܇ԨCoZ6vp_GZO}GΪ{L3ՓrDBr32-NM':稳:(>"0a8 Q4{CMN%J. 9#]dĻn'8xHd^¬֘d^FVGt+wuk&)5[^)'m0B :ӣ0egXhTYX(*g.J_ }N΢`ޚVF* UKsJDöx| g2E1xêǎc@:Iw-;I<{"yOr ϕC/7R4 (<ؑ`XWbJp2;lOtmM%δۚb52 pggNqR)(7iG-lڜQ:G|Utp#AuQZ~ RrZ]0YW%O@#y~M6u՘XW2}* Voִ]Uk7"ې0gZPHʟlW*"Ta84&Zg[0ը/yN܋ȿ򗴱9o!vM R*Af) 鱒Dx8<ʾ|Pm'RüG E?\>lU'|Qլ; $BAWރ^fx䙇~`~W#.g/%~c>K CᲯ*7-M|xȧ/L.lQce =?upCrbbSvcvτW%nRL[D, Dc*Tg9^KU\ڎ+QqҀ;YCM u YQ JFW0sĘDCCaڥ}8=JdLdW\u@g̨:W -HxӍ)`ܳo)5}|97]޿oRQ=ᙔZU ^~pI二 k%?*,"J3amJ3_IɬFTIa~:yC/ |Gs]hw89Lv﷬n@vh h@6& BvhtH鉨$#"0Jn&i# |؊#/VSPҳo2(zX](շǻ |:%^1Wq,WA2xoJ97{E]]HVՔ:r-G1wnR@YC]+.MM?sOaą*aOW`mEEAum8Fr3f$+ݺU0]eְ׶L}./P!ۖOFՔkqCC[GL_N}R2:aUu(l%ϽZ;5;V0t >u48|Y%)1̒K7./mAȂiݽ_j6 ;%џWQ5eXZIypDrіRQ5[ W,Ĕ.3`݊:<ſ\@(9[i( -[{)āaJ[A‶wG}ױWjíx(? Y/+=A:Y %Qr^_JJKaR%!dh ݜkRPc6}!0aN%U |,* ?{Am6,9dEg n!ƛURq}S^= 0)߇):F8I^1fDOKz}B< 794!^iÝHv#S /@iP XaKM;X#6.WliЖkmÜ KT*.8Y|pB_npPA|aL@j&`y~ $#P8Bm7629!Ls'@~#uNw8$ GqBKAB,X>uSh:GCVɴ&bW~^ ͓`5^}ܨ^*ȱoPV Xc S1Uiʹ@ aHEY㟉,uJ&.&yP,x7x'Ir[xȞz|'? ͢A/HD Z <9z@7@fڐpqUb:1H 7Yl4z=ӝ~ G/D EmR$=`>;>^+L0 _:nlNV֔ @KPl7CŃinj X @@}PgCyTֲ |Sɵ.nCͰ]' o^w&q$Y8>9@ +B~|^ҽɚn)|K}h0u>^h{[nh%7+u Ti5t"[ZrB)(qPm#ygݬos{j-34dzYx^QE*T5{kwӞF{ՃFx^ٜ:=BL./ pC DQK0Ub:#p$g <ҷ^\AQaǟ2y0IҰo$C:ouX;=c)oGY3oUIB΄& rp֓њH޽+u_81n[Ξ'I o8q7P!mMrVSL|զGW,Ћ@^Ru2PP b5] 9dgAMcr9U!AAǖC6 bgD:b>L{55U5=sǏw.>vgRgC]Ov*;NىCG) IW7[e.hRUx 1>+Fzll^(ui fL09ᝥAkիuPC QZ=-4>"eOjQ6nQw**qk2_#&vj͇d=ţM3!~1qIv?M :{!l<5|͢3$9BO^SdwS&Ǧ+>Eћ$R畢i@&?++SZJ5м݁Ggjbt>| ,PFi>: sԘ=;_V /i!Th9>TA DٛJA-Y׽&BM*d wgI@NG[9]*lꔘ9ofRp E"ˌ,NP"ݩ!>?QhCBL[m|$4'V[:ܢB^@ln)q\%e9 _O6U]koBC/y#co||#gx6X._ `gU(h W~a)`B”3xl# _(,h@dޛ1{a xjIy xu|` cern{39Ɛfӈ%TKMxP܋Vj}#Vݞ@p׵q*BM-yA: @; }龤%ci1*NlU8k9Ĭ7̹Rh*fsݐݯm' 7׸ݲ2(̷&m>eHr3+4ٳ-0kr/D4c|\ 2"c ]7`-"^BO|6OTf  IaW pǭY,/^֤5ޫoغLf63EbV3D9+vM{z0zqU\DK-z %DA01,"G#gwUd֛[CitB1x y;twp~>P=goy vH|ÜNC3TѨi\))LS^ԥ]{sش0E=ٕ]~pA^#''!Q"pa@`@ӼSLR'{+~w^|#?A[@ dkLD5@b#I~-dA:Ûuh1B!r{,{yz,lzL 7|+_Xu-9ʃuŒM}i?/d7*Ri_dU7eQ*<: YqWHiE'n3e4'B0{fG_|N_Vтu?'5. &)oduILDi7׿y0VwysF`>\-- y)@-35G~kPQN" w`9l#!KI9?d>jB򃼩uHve|zRzD:9YX5`"0j/SS&rCiP>~% jU!n5}X<6=GWmQ<{Czם(!_#DVq7ҮGT{PtNB AɿD'Bf,n_v"({Vԥ(}7 sZu.Wy9SlUs^g*?AyL# 3>N)U".[ p(xr/ϏQx3N>Niw&-9\ѣmи8XnV< q[3pJ4u\^ m'e>ivf\} KM\[6%㓰V 1Q[<ű|A_ 60NӘBp7GiC3Q, /ʂ.46\yLXb{趌a!+L^Ne{)w ͒7%J :Rh'^F3f<|AB}%\r@|/UF§vU.N=qG@'PT-agɢbYJ/3ʗ2s *ǧ?h3bUAN!`EM+~צN)y@S躊P\&0 jՔ٥u9'_GF&[5rHTaكL*qrdpu/SҮ0Ü|YG d;]ǿK;޵"FW żPz#Ɋsji}C;ވ`(_YgLÌ/f_ifobí д=kSgvyMn@ ,}O*unt^ kK]'*(uv7;:z#$R˅DK(LjY=#Bsʳxl݊djMZ\Hh`kns<='2S9l[SZ):t*Z&;!f%6߹Яa5Q^! HmOWtcs[n`oqm FR(KJtqnWBjbCQNYqIK?&&xi{|`5 @PI7@< vIYBbN\ kOGmx h<払^q{z0ǝ z4<)6h|ۉ"hOs7[ɲ$=&"&TU 1_t;J6-b8r P`D_(ĺΰ/׾fI 1V,SL{*-y8/^-] $^_^4g3G|tyjt˩FHSkڹt*Geۏr>S71_I , ϐ{7R8D( %iEI!i۸RǁcI}W{)Kk7nqn> R,*N+$Cpb?*eCսj<P7(0U-ʵ))jæ5p'еנtџ6>;!:aQB,M[jX&ՋI Z {k=._*.w͂- xza!WY sy9+PH)N.!eA;ln`?CRm&.sbͲI_o%쵩_T9HDC[ ?lłJӵ*#$7 ѥ-מIYUisaצ{$S(ǎAZ#PF$f@ir崨P4Y6'0h桹F+E9#.eMO j7i Bw~9?b.gһ4P>yoz~e͌ :4 g8 ݙ讀ba3OiΞ Lx%ƿû7"pgr$eGAbDTn^VGx3^s0uZZ(Hɸun~wcc9Ǟ69,ņ(.^̾]osB{SR 3ڰ;!ZNofqIkR`3PmirmzKCWXVmZI?Wr]yf+7Vl[ٸ jg8Wxz#ep(?E| ct#HA]78Hר5fTnmHF4FIQ D e,`҅+z=UE&XwڷǿBVgJ|$Ij7wܼ2ȂٌCV\+ެ8/-cMo?g¢UM?0 L2aۨO;ALٶ3) iVSߞ  YIjlA:Ac WXaηߎrn%S4[ m'^|Ws_,Qn0 m[QƁ~e;OweY2I@#ޙnSdt#|9MMRK#'bQֿ177++g)^wm p"06S)T936A^nҴ=&Y;yS c)aS&$f,_g?Z~ZJP6'MjKW:OU'sdgs҉v*% D^"5pёS} ߇e?P7K3ZP%#U 7S/ S@`K%ï^n";t2s5 O!`QU(q˙n@n$"n#pK3eDpX!/PgG־V:T+UzXzPph+H|GLUU18MUQ dU. u9޾j,@ACGܫʟ{h kG HFE muǿbRfל?"x^oꭠkþ1)wL(~,pos`Nj{o"SU|LiҰ['Ӧ<뜭[^79Ymd=G;@OzQ,lTG:YMg=>sebᗡ-+h}،DFaD}q͡*bd\;iij7$G)f/s,#HXd3AΞg!&Z×,kJJ5(a8?bAȌWH^?6@Q ! QTM\jdTAj: 53|fXxiTDm^7B$ak-g2Li)(Lݞo (*pc3duΤcy"ik+m%WiHĔ,1o|miyiv@9Y@tudb___ e.,(v7ʞy \o\?jKF@*J.86wb)p=& 40Ix[raR 髒B`o(3p&gyfzz%p"cѬ! v*/]8,cQ])VȩE4}_CRE]E*"#X*&ud:d&EWE"<;o󔄝D9)yV 0ֻXد[Ǐ/ƥ:\?ST:j\Hކ{:-30 X3=&7+9{ƅ{ҊG>$׼wȚ!&VÇHHBr' '/>7jF{['+Q4%"!0T[zx(7= - Cp:Ԡ)rݕSrR)%7qm833Ob P5!zldҁ *g$?TlQڈ=hI[ ?|PTNbKN+A?O]ЫI.25EDۅ愱NXTh3A'|g!NOgpS$V*СK)pVAQ93#E5N/𝔑;yucvWGtM B)}?AI\ype B~w4Rp< S9Kc{8U |Vă>5o5"r0&JF«|[߿+/)1qd8񂟎osRRޢ8f1^iPg@tosWȇ )HpJr^7O-gdM.< %&~%{@9&U`UuZ7;ԑE>F@:x)dҟ84W'j[~9950ڕ<Ɣ؏jiL2`EMM PA-OǸ $l6sv*&OJ6^ ؟4%tfCu%jE`C?Vbrk|3axZ9{XvS<[>Iq͔ Q%oL5:eܡ̞7+qQ6=n poc`R^_OxſAv*$D,"4Ϲlbm;}I_xQLFՌP{)_uɿ>!\&%jWd[+k16yXY veDD+!;ì*KQ͋lYT= `H登ʴ˿TE%7)pnkx #nՃY$jD5,^Vɱ1ŻBO7۝X# _Z=GlERM7g3e~ .X虱yp Mf_o~4 cUYkSE1tfy;¼ͧ[+~.K,ƴ1vnu"k+TAr {ފ$F^T:Zo%R$eb~_Z5Oѵ C:,ٵ%!8ѰtpP ?OnDKݢx0dS.s8HC,QS- S:ZUuĻ3HNi%0SC4 **K3Q\%tpܫ,-a7ot.;ސӌ3k.]>u`"f jW,ƅz\@A\Ki5#:l~+I2ő8ƈI",m~2Acn|kW3=f&>&Q~6Rʼnik1XYPv 4%QjB $Nh,To̬TV FTdHfon/7G#|V Ag ?T7z_ cNgsQ֮h{_c[L{n5^ ^Yku΋-P)ޡEuE~f Z3ݲy,nb?Q}Ѝ9~cLY1F%Ńug9!ǔ*#AFo%BJeihH5qmދ^C',lXQ憱O/ _09NBoAEޣ~ !f&;v}_aừ{H2P Ȭ*>QfͿ4 4/|P-Ͽ5Tĸl͗@yLh,:fnS-}P{ݰg{gll#8UoNte7Ӽ ~i (`)V OvMWIkbZY^w"isauK  {x RfXzd@C(ڱS1}%؅u`OlIN֑|(\TLؙeq!H7mM8ZP9jGbCgo֥:p(: yA}ѕdxm?"xCm+۹9ʦ˜J49`V:bݶg|$L!n&+6bKc/obk9wEeqw^ rꭖ%AM8ۦКb98y힏ф˥S3dd 2?"G# YaԹYt}wC^BnSKFPYRum{V!Tӿ=ʂv)Vd]qN{N]-Tz=DRU$EJtJ hakn VO7 H bݭJ!'55td2ϚPo$ #~X^-3ЇzyB4L;#%$}a~}y'˩a ~%$.q##FѢ> zk*ۧHXlnTiv8QHG /&RJؒxxp2!PɺVe`p 5'kJe(9:>w{xp;o"XOD-y =ߕJhF*a;I-D(c근|kr3#2nm֮Y_#I uZGMwT9Q lL%kd- BRqŻ<5Di0Vȗq_̞ J|_]̞y VoThi7}JpA Ԙ\ zh*Qnx ;We(ߐ792ʶIdJ!v 1I֦iT&xm\bW0}7̈́,׷!f+_ C盐NuHr<7Gp'E |Uf+&׬J)6Ö/٩u&#JK {vmr(# ceA0#j7,q}=,e3l߂lx1E?h:}(΁v/1xYк2sC[څ% O|]*C"7z*k L M!5q:8l cAşp 0OyRo^e(y=YkB Jsxd#nF>M䁲8A쑞s\7ɲggz^= ΓDVZl!uRO+_F0D*eYBgŃ[4q 8:e}-oq "I; JBw[1msCkyeUXC2/đ:݀I(7G=G)xq| -"fnUXZś)!!)lfh%)kֱJ)䇽)" 6<&C<~w&M! Qq/DZLTaI= 8C  iyyf2M\5eD>:a Пڲ2Mvyfk9(zۨCso]Ƿ˜ʨ(,'N-W/2 /ks{!xtjKh+:Kcq5;~'!oB.Qbb=t~c+lFC5^}*x~XY;YEqWÔ1ufs.MBG.ge/ #9ݣ>Bw<##o YiigJ@ZZ/ó4}/[d3 Y^H&2r~#. QP)ƶٸLl|9 r ZzL%)KX2 {8l褯],-e 7"5W: fAM9HF" ^," ؎9,prFcEgF|1H}@22pJ8xCш.z[R!vN<ˣ8C>dsF=nՅ0ҾR!Hq,zJ+#jy김ʇ ~OL|9\:$8$VT&$Mb:H )a~GC>JU F@)Qm cZQ8ږBʢQ,25!,i}¸Ż7=y>K訑DnPSnj籵c`-(JK Pw'P\\mG0gqzЀd-Tgv[ K蛬aj// c%+^./5\ 'd\׳ (JrꏯEM:bCMГ \N7mc8uxqNrhl?M]ͭsZOH1L[݉س^:OQ%]&i/^LC떘D^&:ؙ|7DCqJޱ' Q- N6[L)p45V '`Z A~g`WrgO`);'H% 5IJ>Խ+Qltp85CZ4;GoބM~2-i>ޯHCcEUOviavvd93:,>O =# R/-pF$%3F!0Lk_i0n$D+i[.+o]iNi@?]./D9䊼UO~+ '^ iB `ϵoLKƴsS fS,r#!媟Jiդ3_T1;v0+ɝ--2̋~ ż >!#!h]R,{&ݚSB$]T_=F) e}d9)?\T|G[23J[;TSvDz%exig2]0̅BS{ pkKHC;poU<SM_tLG\C!_T׏5dTuR).H~ KFE {%ޕ ?8k y*P vB8%Sz!Pw 0+//mCD.T髊 JQʩ@ZA C1:!-fz-xTAwZQ/Cc`c8E)WΘm536'z%.u@#?xKoN? 4Ĵo705G/(#~'®s^x)9r >aeM^qVt" w@2Y6Lg<BnKxƑ,UA>Y]B RV~ZhBgPe5+DAjX dJͷd{yEg \+^|c<ׄK~h1ƒ0ϔWbcONk8>)z%žX,[VV|(,?6eM(EVYwDo& gǧdCþGS?-BoF:9[GjH-SN6TgUHt&8ԚY^/3"b8x]5:[hU<'9g-*D0v)cEp }hP݇ hI"p6gBB<۲T_ wȬph98M㌴?Sr+nwj 5A/(oݺ7J ^_ӏ^VPm'&XԍX_] w?g4X|jt.TX]>=ITe5'[a^ݩ[ UCFH[DUj|kށTZ]QԤnwqgarw"Cnw pv g['/oNm?|ԸUKe= \{:>! OshegTTXm_{P[((O1 !f; yCF,Z`Se虧r>},Qzs{b"^7YCӲ*>~SzFfق߽Ef<1 1\GJT'zۃ~&?rD! [jS'@(!GɭRr3{Td|;y2BmqHЀjN=c=( ҹ@@.v5j^6t)ëpXoZ{Is &Y2 p|{"F.7eL?MaJd^K eMRf$V1[[LE?]aH+7h'TDߘX2aoH; P) lVT/(¢ʥىI{Gy<]Z&iThmTRUR;` 5qʟ҄T.m-qvI AωBQ_d-}bS!] ^ J%o/͢''3;] + Dܼё]e]%.ù<(r{v@`oh~Ⱊ7PEhĉW:F%!(L>گ64G p)X  ?o]#O$X`_[~fBS61/\#i! uyR\BhGWQ\_@sjR8sTt,9\k'!o;kMoFnzFxSvg5"PL~ @vǴo[,FW5ԌPhmIpq5_fG(Kգߛ#q9>s{@$\?)RʷLjϥ~oohb `Y *R[lLdTR0ń1LJω{0=yЕp :볞:j~D..5 Bͱ{+pE Yݛ~btLu\xT-[^ŀK|]p(}(揟~92їz}mzCc/ IDMaJpȦf`t1DA:)o%Zt$+.UP]BD **2TQ96Y 1>di #&]8ٴxW uk=TZx! 2t=ņqz. "m@ÛbH 8Gj|s=QE-oQk+᥹ՙYSu,HD5SՌ6x +ۃ`mDꢻz6ĶoyO/] 5JY*ݚ= IjƔtAn㐜#0%+l4~#i+!:kdZȉ8/O/ +%͞FkkݿD 7_6Q9&_R9S$_@ w5]p?7D,OWl[XCHc ܤAtQJM@V(:ϙx-F`kjGGQv,]B8\઀sPia?O"@s2chqsJ@5&QIwy@ v^Ŵg9Vd '׾fb_!Sei;o`T#ςnhw05ΰgj/%*ڎ-1|T 3g5 }{'7Zжf#aa4ft_oJ X(&ŐtQqVSӃv{^xxBLSeFO< Q>-7gLʨI&PA/i=3ks\4VD۠6ab7L[cMmZ?#>{вr{B#  8ԈkZFHF᳒Vw6@_ؗ]h>,(OY͇:@H6ݎ=~F2$7/S\i~t iOLCmɳ9A*^_L@)P|RWuЕ)&A135&voQ[؂8.i,nOXgĦ[W{+?/zBjڠ5EDz-z@ӏC&Wky6ԟ*^9E:s"'go=@ŐZOOv9W u[h ]n-I碸5X|/ ܾJlW_(-r\ KӠGYv.\Л?{FrU2GL8M(gi$f1 V~vlDJAp:#pɀlm0Oʆh1tx[ͮBc:V7@!W}[G&JZ^'ϩR||.hnȷ}M})fa1]T$(J%v]"XHna\ G=p=<2Frx{P [ㆠ1w-&kWmjc2FrH$]h;|O6[ ,g,!䙘C'/<Ku5ZQR_zlo(Ug#C1[ bS\eŞ0PHeTZ͹fy0tՅS|g02\]Z2imz{{(c yB]kpf+4ʋޘ&UmƊx s19;0 l_μNZUe#7i) Z:w>D]NA(zTdЀT`}!ZL o<|!O6 ֊"=WNrO LWvic$&5t+ WAoʋ1O6I,c( !ppV0d_xs#Z%h [ԆqE"&~ٻz5ORbJӾöx(O7VeDc ߩ1 &$V& KkL]VhV^*w:y15:LqoN9>%݈`:*u+URBaF[D;=)w[1&pwKHNq|j[[jY$  /{]E@n, q|RvҜ&#y":7(JIKYyAvwNj~Ds1Eb\H+j!y f@ 2V!2&BZ:Gh2uWV5; yLFFCr"ˌK>%"wjB_M$ O:+"bSeS 4y*b꒒P'} ^ N+evyjhnXf֏L܇ N>SajP[ =K(~ާFoǸE3wF)0ܺtKhF3/#up"jT>Tb{JPil;ӾUSwd+L|K8I¾RyS<'FL4p$߶h]I탉[/rz{8,RGjDZR'XLzyfE$ }j3@ir[dQPYڀu=1Ub'vaO^LRX~8T%r&+JbW`D_aAf -;BRV\ٳ9PbޭF4N[pG'Jeh֋ey m7Ph#cIZE1wcO1͏~X[챐9$n:WzP55KD%s*MD%'0l `KG_Q#C(^(7Z◝Zw )T(YQ!~].Xu@65qFjũэ%OVcOl$wFlv*$c)pvI24ɑo^( [abbEn&=!u^߼WP8]wgbg2X]iqwڴHDڣ/Zƈ[zdsBc\r`ُgcQu@rEW۝{>>G ?217)\;3yBf oXjh΢TBIZ#lbg.`$!3w˟\ \qձ7J4ޡPoѱ%SmimjdT-LhJ/*;+^lnΉ{aQ.pId_(gb,5],:Co0T49 ij'0QF߰y=TxaӖJsMa|N0"itőh' @:cK@Le_Si5MY2C#&&,'G[>[ԁRx, 7J&hSGh%kK'6Qy:z78DE_4#|О`Cx [~-avA[!qz_IgKwDT~(Gǧa:!=:Uk+?..GB δJިy42 *b:R⵳i`L4 9H@IAzĦyk_ue/~Ѣ Qi L^%.3:뉷'b Ňuj4 w!cY<-L&9#,"QDc8'؛h7U"bh|e?|zܧ'ܮdh1Cd>@ºհT2 .Znfd e1ʰucm:j (=/`@5+9 1!ݜDM!<TPܰ>He!wz샪L G Qզu2((i BSYǻucT}JܹJ`%>5><˗ʲ[+tXj}0C/ӛhS:&a*D+'U/U8P0._% ~:K yzͩdsr9vz;p(K=Y,T$/tf@RTKuY<]3D8ί<.ũHk޷h,ĔxPu\/YZfDD;q?WmoF5,ѺͤK'yxIVY!֣&glx֗-K2ypk;OW%2q ]Զ/UD'}}C1lLqPs_))qɹ{_k VGX"DK .R$v<~3(9~̵$ P`P1VLotI2+?f(48lDE7CTޒ<_ `f{.0ш `I8ڮ YQ6 ?25v w5&0'F۪$nNBN @dsߎЂ6&ǭ_gAiQ`&0(*D$c\C]4gl/qd yF&B>bv1bFg+Z섶4=xMq(ba^yWZN=/6U}XCgaW0vB< (9'*h ڧa[mɂ#ԁuòk ߿ ^/L{C)1d#9NI^% 8@CͫWԀߏ}n!U<k^X@^y2j!8cW^ھQ'J\ژ̏A/yM6 Oyv¤Mkpj8%͉+h}tUT{(g˃vhdGpvuȾ|9!:F-0vwSטs|"wp>vMG?Zb`}i@Zn|M9DTpFPj>xl:4OP{O|HMer!,=SޙߎtI|S*[D -aV,S}*+rIg}F4URD=Cʬ*l'FΙ.3\aܲя\cJүoWgҕ#@lGi4MWJakY<0l!jtV3j]:Pf%嘕q%t vE/(r(; .* ԑw[Ə<) KOPR6J1zͅǏdu`{ߠ܅Z=&?MfwtkJ^4b1M9u `n K)-hZrںp~#>)֐֖3=eE=6=%PBMpg> Xu[{$OP6ZQ 5tܦfu\Q~ػް=}jx9rX )F䏔ж >+)yx.#*IbF0qu 4;Pcm2L- ?8 !Ky3}T!b*O-uC*IDOQ !/ۚxQL-E(c> ń %u}Yж+cvDc&>kOYqZ,\Um()@CBi=(5^SZ?Xӝj0I',.=`29N5J) IV̥0kj2GMWw6%CC@Rnj~|ІTzc)@L^$ڢ=Yy]X!L Kb ةJWMaipw>m3 1/*@ yqg!wŵd"ꎄ{=jDU_YB`&ؿ4"Y ݚ}N]£#8ҧH."DBPEXrlLLiүsk9"dz߆\f@LM7njz}/qTfG>SKuHY v4\Tt,c7{}F#F:\ۭ2@6S"F:U_AbM7~NP>X;qU Pf]"vrpUa=&vHT0U\k*Mw9<5+#(*f} ︧=QQ%=Pc$6P t״ƘQYyv;YZzQş6#s(c܎Pi-;+QĘ&&33ۯ!@{v9Ń*],-`IGԛca:Or> [`ӄ,$ȯ-[1wmKM`>ǣnCH20 >ƥiJLb 0 @W'7ҳR]"E9L"*q0h(C&諶Ѣ+d!n, +u".qi[[;7 )ځŌ$Q6?@d.K_DZ+K1p3!eKߢIԑZ ")f'aǤ^o~0!tB)uk%AUE6 zg(@GQEE!9 !} * he9)]PXh{)R3LZܕ[Dv*PR0"7~ px@L<9 QG>fXb{Q 33O3lUC?7ARJFL%H_'%q.{u.1"4L&oZbF >ʍps-VaGIՃbE{ {Pax|Ja CK0cN]nÐ0vv {<EGo &­^[ XBp)nY)xOEy A F ՠ8vLpR i n5nOg34윇5C-0a*8Q*: H V8RV"𽿂s 'ӳf)Owߐ H0 mƯKt,FcaۂRG+=utG{nXmG<%@eP [Fb @1ɥK0DžK0hMWI C|we\EVWڞQz#KWjV-al{CgؤDE[j=L !O-Q۹ R6my1(PC9RȩPQ*(c@|A*׈ @ְ<&8C&QMy_ԗde9.i9E۽. (mmü'}ju 3 M )`11w_fr b&Ԭ3r<" cC7Z;EOc҉cM⿧Oqb V@sv??~F}nq, * ZF΋X q -^5XX453cD] FĿ8`4ljeL#ڔwC~Gkp6_VU3E y,o~= $Փn<0Cw`Я̋L=QHWLOHqR(O$.y̩eqͱ"MegE'P'T ޛ݁jF^gί(PZjlHe(v<^UX'33S}^+fĔ e[PϵBPP*ev7cjJr;v(m3v}OXN-ГB%*~Crh4! Qe߇o 9q*#]K hCw(RVr ȏ@|r$${3˷vS/R{3pa@cI CN6CUa)rRij 8ֲBb,d:#&k[*Kȫ?n#kFHm$TVda4G7R,4k@*mV࿻BIgݙZjHsx %B |z<[j4HS,οnT I4f q&j 6遶W#n:SwDz0ǯdgZ csXD6q)Gؘx҈;ќ_5&-=2'l~YNisHIѓ o;PiJg"REƴ!lHu [mΝ{_ $[E- yvcM+ǶྶIB#) ,΢6R)y-|z4I'r?Ae`㜘WVS_b1Xur@FߗY(7S.[4`@GBwiDʹ4(E_$ ;n(_o[N)VaCMH3qbyVdf6#SC1?yw]h#T[Amz`5lI$7ćk2}˜AM\U0`4Xb\ߊy`KʧWBq#-jis6@;d }cn iuMk]g%~ur3;mhm ;lWccѣ@FMgI&Υ*ٖljS6΃ƏYuw.(SpٶM& 3uC,.zYS8.Gyc ʺp{9 {OˢYAI ήv*a/o?#FНNb0 YLVz* 5Xį {*@۪Uni $!crUc[FtP\1Y Vz}G,eyL0.=!Oٱ`+J"^۔tdNw7<ͮ&>!D硤KQ^V[%8,nbxdgY +2ӀdҊM\ݫAW/Hbx;bԴ vyM .Ɣ,0z}W!!(ns=) Sp;?H:ѩeK{e caC|{E s}f-|&(rknd BxֶNuGC?{|e<04 O^ԐVG$F`$4\S߉/=W%PpXެQۍ--0%\[1&:mœ! X!87!B帾R L`=s<ȥsL|Őϛ.o+]ǂC)֑G sB[c4<9{n>H;:R |2M 8w$ ζ:^m 6vJ_Ir8:=VKs{oЬY`Cem{X`+nʟsr yN 3. ?+ /R-X\=?>wJ{H; @w2d(7z?f5Κ Oj*k:n ӶYzj_@#zxҀ8""<>4sE0Wy{S])zhfY3gJs]YGFӧɃT7.n!#rrfoîɮVm]q`bO5SKTЭAUlfлc ԰ٌi'^b 1"ݞ+[&0!_P²uJ-Phݠ/l">1{TIy,P%~Lo*Tge3RBϢll$ &>QՏ-)d;Mz2ʊhCسkŲ6]1C? {:49#zPϛ_ʳF"Oȯݒ`0UVgkoŀ <ۥ婕8S<ޤno@QX!~{6vfxa*AV׾a<a4XBXF @ (qɘ`x&,)=k#]UQ>QC0{r㘫) .)4R(y𧳖 ˞Flwrq྇|K g%W(ba$fc"Y oڞ/;(i̊_>&{|-D)h{oA?S9r+53xMNXu:|ªLH(KjIzɕ]LgAеeB[@xaD)2ǣ|Kr|+\IZ4F{|̮°zWd3[ pll/ĶCcXM?97;折[CǒU[%&vLuuOImя rR/OX-EE8uૠU.33_XeNVHד.nΦ1A8U>gӝ'; QQ>`Bd ^ݪgq;.Naoh$b`?g·"tɮa9=t<5&áGʨ- b:,X ~ -w|l]1>[ڹv~q%#:4uܩ KRd9 \}LϬoBaYNѨY8LɃhh9hP IU‡â}mLhK/ikpϛn2'*S1z^JI;TAfZ*0š뵐~dN΄.p=b=Q#7\eڤL? ˓SSɐBJe!DKb);l`~~heag?+25kg ^&AC{ZZj4 sFֆ2xt`:V%ȌtR>rQDj >RYbOW+PdU?wJ3(TYǵ[ndz--(t 9V6&jmX qNuGIcՖn]moC7O,S)-"mw[;.Gت.%I۴\0DATݼ֗&[9SiUJxV z :P3撶5=^E3,ۙai6'MQ6AOX#A/QAM | lmSgmya2=cFHf`Gw萖ڭ׻g2x; -i6bo1O*@{1햅6DbBЖC85]b]sPsŎ .eK. +*'鉺  UQ= g+#yo'P5ykp'$f}L){NX2knHb1ٳ58vmv`xJ~ֻᗂWY~) dMړLm hm^7:1N @av = A4HE8ΌP JjJM`˝<]K" 0^%$ L% _V[M>r 4D\zcήC}MLvl<4OO.*]P9+˗s[m(G9JMMiA`!䈽`u4FgJA1C @?9?#E(ϋ[ۑm5| ӯ IR1:ĩz϶`ndϤ`6Vp]P.pQ#(f/h׀oӗ=lϊٚ!q3ƚ -P Uii*xĦrT7xI#l!KmumL7aT́Ӏ %ȑ|+2t> 5Mc<#Y\xuyǡiJlKHVGO*#|yz H8)Pl5q0Nfbrz:~|HHv߃Ġq~{LeѼh?ͬv~ңΉX㈧/$F|AFZ'4~Dl^ܠr}V x îP1 ;P+-޻ SPc@qCr6 Kt> [[AnʰBqI2RH:Y/1=lS$1с`EڃeɰVBs'k03Sߌvre$$p%HKtu;&{pF uMvY ve2ݬLvޗ6}@Wº;*՚DfylEFy{fi[0 [:\]ZF{I|@xg:4.RB3 `X[UC;̄FDDakcORgshKk[}*ޛf WQ5ImfeWX 8Ka0ւ]ێ_^i$Z\ҵi+䂼WT][mk쏃 G]qV΋7`7u{( ?Bn7}:yH"B|yMVCHO,'Lk#(.}kU.H3in ‚:;O0X 3үo ǖs79Ykdmkx@H(v7O'zѝ72X0\ *l|pU2FcE06!X'/::<^y 9{0[/KKuB9XGY($H@oV"8FXa(kS)!6))Z;HM*9P{U2bFI.P>"uK8,\10jnϯdlS8zfAsU)-rpD{a6 /s7f0MXϬO7"}K+PKek5uNWBn*NfGEZg:b̧OgJOP03Ve X^DE9K1Vw PSYo/멚،ëmث72ItYD=y+>5EcQž9 gaE  $`+Cϰlz%5t 9 EzⲚ` {PnIPV Nk.ϚtJgR+hc0\QVl:lTlҘhn7]Rԙ6n*ܨ*-X iU(wgT{Ҫjrs.A--\luQ p&.j ӄ[+S&V8H\Mk~"pމHܙ7hy=`[BfV MܯrC2+H<]i[VF:oU^h+&۳v/̼2X^\޴aW)1(oHhiCZŀDP3c&LAIߟFڸbcSViqcK]S/D__pΗ3^jbsFv+TRR>c`~D`9%zG0HM$VIx!1 (RDMG>B+am:}5U^v>In bK'jHd^{b$t]aD)iDD<0'|bEq*oLaDV!9,"o<]2r*NvWgIw~! 6mN6z鼐YH sJvuk(V|ϗ(X{t{/9A-.Ox["{ur߇W{3M۹XGܠu}s@ߺ8u'"8.R$@ѹgc=6{Y) ЫuPD@~^G`D,YbGi Y1=Èm8DHz a.igwh\L"?gD@9[`$ٝ.^.nWޡ465":m?71 +? L7vTbiVEi/7cH6K\][jUVZ͏s{!-^,a*To[6J] 3$O%!/pLi~\%fY$f8y yMK3ʧg$ew.H+%@45Mj(TnX#PaU|=g`VɆ*aPkCX71 4vq/ZJY7UQ~emwH#$Yvv\֒&aR㏇{_uԾ~2 n<GX=`z3vOyoH>Aa[|S#[~ z1XQ!>2z&#i:e#s\0 W3KNmFA @E*}2s߾PU>$X =!QpI:.xKylAiaC'|,룐ܐ<~1vhPgXƥNޥ .?k prdrȲ8U }V;V? Q VuU FuM(bL6sZ_%Ck*W2(Lbkb-Geԉ"@@\7"@ 4@5oUH'Z:Jr/p9Fe] H_!!W,bt=΢PU;ԶvUrfJ'_BM̝}YkcPS%#t\vgeլ>Fc+&j7XpA{ 4[:6r`ET^OHMsR-_Z|+ /Ι\(غٴ-r=ȷoұە+3ZEDޯOXc&v$ /P'AGEMGMlǥRR?5*@@yuBežK{o+䄎|ݦ(ӹAFh־Bnl%=ܽ;Ѵ2[ONƜ+7<o4Cm^D;0q L)E+f !,ĺ], $ ESC%V >6`0jYk0&3p%*%T5#s[\uǽfA D#t@\ON'0:p}30O/E6+?,6kNj[BQ 纳11{M%VZ Sg2%U1\ّ1BʥC5Ǣt3hxxJ&b ƫyyZp-yP]D%җm!a4LrN6~z!_uX2L<&y^Hwu j!R!ywbH|}5Z60me;ЯD[W޽mw$$Di;,VDېZk6뱺pLXd1dG~Ĕ|Ifx aGz䋂F4.^,4ڍ͇,Xm%8|Z2L{cue9p76 ]/C@gĴ^6R'$%` b@->^U OWX"ơjS?.(̎&&a/>٤/[׆G*FakE{kp&Do6o3QoX !GUsbp@PYho6Bn OӳQąmj@'@7>PE Nk5m%sHvpp{uXR؀r0<.JZ I7u0[u\;+M#w>P-1u[&1Z,؏\Th9ȎK<[$<"vX9dAcļ{4R5Fk"x݈ohk2\zR X ʔ4enRn5GhI5pT^pc3%9ku`Om9iJ;g2ew>rLEޡ%304Rkw5k5n l8 RӉu)Ԋ/>>{<7$ -@T?Fy֕'X,P{=xh~Q1|{y+Os-(*;HKd]f*K)G+ewoicdA턄'D -$I85dBI/6/*Ul3E{,ݰ4H1~7T;Aw?DuiX0n{ p2p4X6Ù:@Oy(c6/8z?ďTŨjuސqwF򔒴\ WBg}mhDnER0e&J)f-%jڶyMԙ̺: s̷ 3ZdAfGs $ ͊Mzy+2@kb,IVR 6&uS=)x_(A4Tߎ3J``lk ۀ_5:LEkLwE# eϗ%'̈]}r0X^q? Gw׶S{u`NcfD~3&+:V"\) UǪ@-IL$T[IԘLjtC[?s* O!,)q8u(6p9ިA}9jiFp|5'*1­p4d>i[ Ǚs-,oŦH.}O M,*dq'A9RK uHnf$Ӳ|&ݸR3YEBך{WnlO' 9݂X7xO`$oܳKQsKwZQ#[sqnA #jE1c 3R``"^txD;Zk3EYڢ\Rcg&wEM ~o;ݽ o׻;tu W,eyM""Pd=PxuiUKa+RC2iĿ"dnS2#ghh?]5f^f-PEivXGf4@QjP _\ 2uoMt.(eBM_ԥ& g>vG0W5uFKo/BH-8OOli;{&z'Q`ϕ/B/aof!)ZCK ];_naݮp.h76LKYzLƑ2qJk>}d5wFĩU!yr$1'I@pwF.$Ug#]V 8, O&%ؘVFRS|KsCw:} 5'FG:9ű奷WyklҠ `S Ԡ^R-N#`,qHZU* :4ͥV7?uP4w˜FG&cȏ)Ԉd6TuyUt_ ІYX/OC#t%[7\DAp{£糧@cW^;;izY^l`): Z=.W}9LmT]p>Ƣ:r$kfUlxK#  б~h9p}eSC9k>bn;p(a ̖p1vPm@S(srQP %A6Y?aڨ.?)oIei]~qw]Nk#hueYL%BDK C@CE= E{fTh$oAWɼM [_a\xc|bmfh߈Yǖ?e:*|AnW X҆=%V͟e%]Z[aKS@p E{E`U!B6T[K0dFQѯ<:j"k96<o0v߆$ѯWM` e']-jX 2aUC0o?鶦egXۭ}Kyi J> {rϱ0XEh̅*7䧜U d{ NP8+2FI!򆯝FH?47B6WψpMl1 ǏmxU=J)/OaA`c0C`?$Dws>H( mqH^0kXH7oB6W9C5yلvz`5U W[)MWrЋukn7s.@B~^l?a"Lrb(k P75\9K?"rMQ3^cv v[ɑbl^Jn`qz=Bs][y}-&<)}g   plt*jR' d\, di˺:ql=gE hJ7\^mޥ1N[wOx5:d SN*|aEJ)ŘF!m̕˿wٶ51O;ʈ Obr{սw_%gO`n)2ߥRK*L][Bf=ʼnknBgn E!_91"٨sʝBUݲz bjGo#yh7My*6ݰxk$2'<\{Pp鹘0e sQjߑ3E;B9d'fB$R?)=] S5/e:- =4=tn|hCJ{#|?04Ɍ#.νG_;ˉO5 y2~Ec1C;C@/2QhF=UH2KB!;Y@ھuMVC8+,@~w׫$-iډ[x!ŏCID/Rd%qUN!l4W}xiA?7kq@G~2f\PRLP{ohEÍDkZLXV [lEW%b`[@5<"TMʊ`cy=k>^o,ݛ>W-΍}<ة j=́.zZbҶ8}8scd\3j=SjRVwPj;]%WH1G>)K-Bv(NXgQjvhi՞S9ZS\cQ/.1gM>R(`6Tz |Wsk&U?aMx;0;%J;ݽquΓU0vԏR Gl N}2buJ:Eje<Ij8}B.xKDfm&%QMmdTsMY%Y\vi$;?Z5J_ްE|}欓JҭM. m`iҭ^e]Sz &:A(^+e[ 3WKt v/Z% IB(s禟vZVu(/? )+ 5RO㰼KʗIK)yGaKQI7[24[xI.B̉KeA*`,|.1޸Ǽt# 57o_ř}@<ĆOJE>1} ">G5= HB77ZU\>Wie*˟ _,O$k_$&[y&6h7z:߿ і8y}\^T.GXOh€ټ`!o=Mf^%&Lc fXԀ&/>T>0;kmzzKE$uL&qH++ז)@23X[ PNwUf 9VP )7pvA%!ё]' -xץv~WYT,Nd>Cs80^2Dh[kժ?WE@j/\rGTN=ۻ,խFֺ|ԌCc R_'bdRPgFL]r!n"W􏪰(~s?%w;A.s\@A܉:3c{е$hB7886>=1}=nC{!enEKH}%>`n q͛@wbB}V1 fª`ypW0hCD;|#[Je#B*#%QrRM͝ !$ք x Mܩ~ %_{zG`!#h+ĮVQ%#7^mj3nDU+k:Xj;VdJ !d3"Ln?dI9<1sN$ 9 h%x]WFe hQ^Z$3n>io˺Ybc!ԯ(TX|v.`sHYobpM[;CÄl1~&g-V (==";`apg|E݁W)@0s"î;3 [j6(JF|>0G^L,bǹgT\uzR, d$&_LVU1 ҪqsKfkxohG(a6'䳧5Sm3r,-#M?dm+/Ӆe  `d*E T+e0 HdzE w ϔHZ8m{@x:K-u&}A2(h.@g8r#BBf5V&H->Tt<We{7 `奓s|p<^-|oS3_ L*mN(R ¼{Yj fϹkql-H6qZ׉ţrwGE0y.C<3a=y_vb=eA/}4N5Ql;Z^*/ PI35Zdȼl 7I.b2٦ &\*@oyzG&)0?J҉Ϯ2#GY1a1i;%2 b2:u%Daz'Fi8=j cLO%liFI:^~ډ,'_F|'ZoÜFyI5cں̇,3r9?$1 RYebJeGQk$_CBH/zuvMe!g.Hİ@#k)9bHz+o">7sOnVڑn>kfⷦgME\[][h m(;ej)mbxcÓ RkJ+͚>`@qgsW+l|vu$OKѽB"HgHx"ݽ߆SXzPox}!X[ Hap,g~(C1ܹUL&[8#r+/MndUzܟJw]Y׽[i_E f=gX? R[ R rcd-Ҙ1Qy'xr,ƥ7cPr:Ɯ'>'굚ߋ1JIT4d ^]SbUufN4]D>-56{`1 6F"`=!oSAF>W1ySb5:yX'BaV}ۋ]t9Q#{f5RϡR?U_WLԸEI¥=bmA18wWs# 4C2?suEᨙEw VRL5۠(A xAcVCn}rjY-3j X)sC[Yl) RZh%c 5dA鷞N}!eR,C9zv2mΞb RуP<(=(|SHPǰCjC\- Tꐬ 8sxa!Eƭ U@"%Bn)tPNQdߘ{*&ӆi1Y]T;Ԋ*Y}Xbi(".+me1cfiWaweBvUÀoK9$,?/]~wwDM瘶g̱ -j_g僆QUa9 `ȜpBNp̢:{~@Ry+IۭQ2(!k?hgײ@mO:DuYd`#PKRL  ;k̠q``n1IPhQ'zqO'{V4&9xA&rX)YMn O Oc}j&+)驇olc7_*7,'ڜgVjQF ԍWr;9hW)C ,B4Ep 'n[r:˪-N,dk0% d%(4 7dr|-c)+t]rx0+T[/p҈Y(V ѨtAtW)$[ʱ68>g#=^@}Y1D{3xT^HX=zƒ=YJ5U2Ksȕ5o?5!|cH隂.b6|ZzzujuQo>,!Yl!ߙ894D(ٵ}bfʔ8M N_/Cc7=}w~06/i hۍ=+q w4mfGpt-L8M *&s?0h^V]+yczmHD,X~OW91I CIR\ 8YhrWGȲ\#,?nRĠqV[}!@*Vm$26;zI5#O?(`Y%W8TËlӇ}"mhlZBfb1v,LӠXbcF||m L6..nDit'.(bøWF;d塘"h">$|6|qi+"*Y4vZyJ 4Umn?O;G MM hCDJKGS۴ɧjkРCW' ~~KC(U#ÉWl@=/P85q<?M dezA)M>(D7Ǻ%yPc-a|?CYyϔv8^E5(HP'ƚQ34g K |2ӯqʻ|=]ރ Y4ˬCĕd?:x~JSun'd=I&Wen`O]HO:5ַA~:@+%1+^P~Ͻx"G}>X˰: 3)l0s0ǹ8&Mt1f 7/Z7fIVa6 Dm[{?u,ӑ)J j5q|_<,($q=,!ȶU0(L_no>͍vAf ?,t<'u.pB#-e`zb$wפsfJ<t(rA翤Ɠcw~ "]#|͇:$CqPaJ(4: RqzRz+saŸl u #FV= "nY1vt+5XF~ꤕs8Sl\돭Q~+#2M኷Mi=IXDDs ՕlYf9 늊::|D:(ߣ )&4 T|kyU u!Ҏ ðKd9i6,uBÃDv͵ =秲af*( QGS@;FtHW(+.)=Ka&Zv'\h7iwoѾWܘ.]hkaG1Y>/mmH|F{ZoyIX}v'r&.)GqfʻzivCc;" e# 0VNao6Fn݆rߐg3,44İSOX2(&y|_"q!}vlbB2w~,*&G[D+٠o@5Vz#>blZo ]\O7>!vv\a)̾6iYB[>d~璣QxfJh5nV0#Dj՚hn<mwGȌY+WvìSU݇{~WZp,gg/4zKkOT@"{5qob@2tCXq IY"u|+vȮнwӞdT% zMC3,&'R_f6n#B+R F?$iU+Wf qq_[s\U^+)mF fmR/q%YHaNJN|ī~n]βǽj%'իwAe*K6.hAǷQ:/Eaj/ yXC1~S #wqw넞G4ߩ\"Ade> <ȝ[Ƿs_@z7%)ѹ#+֫Qm> 1- 2FP*Db ?U.fiƞN/$jsat,Şgp0Mo P-ȟ{U]WH>BxYϓoQ5@(=.dH]̢ۏbT@`%  I+AM F6x| qAsWʳ짎)z7u";G6Uo"K;h]^LDz0xY75?3;o>7~NȥAztQLf`K9A@[c =36'mDK o"TΥGoKQ2MژZ:jɌub;K7qk%9stYi>#C5,83uJ>ɘ^Ɣ+O^tAH2קG(}l˙KEB$%K}Ue(M8ŷÛUW{MKmGQ'qQ)MR.cy_;<_d!+G W-Z,]f0Is¥z+;xkoДս,m&zГM٣Y%{$ /~pðᯗJ_)7еB'&K> _ -` < bjf|&`*ֿLSW צ;=ёua9p2HSn'NJeE'#E1?Qq|w]Ԋջʄ~4tOzXCNbMPW`kbN,*tC0 چe#֑~j_dZvkT,vOm) ˔:m*0.f$kg)ɧf+U笥 x*X>5KѼ!%`u *WWibNJ`#",oՙJDTW$>6!3ǠyQ?m-[_<˝JIh{MAG' 7l(a* vnUoZ"wdviLQڦi=B#;IG0@d>^ |WY2 wq5W"XH|= ~EI|lk<(0̊R$X F&! v\NBT%۸'}t m @M`fG28fRZd70OXuFC/-s\gùQ#48R!-c%:#а{s<^)4qX[ j3gA#(([U]KIP@u[e3<'Jb$ CpeIo^r酿 5.Ȋ^17ˇi6{O(v:g90*@kFXl0fd kȜqSoIX̯=0)SvzTVin4ŹOǗI̗rh+"@}eQAAppfhSDꝋd1+ Bπؓ =4Py ?'ԍFȱ ˏ#2hc_J .#!dVJC[!޸aV9D«VQ%1kj6ՠ-`Xcݖ:{`hB?9^./E%42dh/"snqj2 +GLɯ]ˆggR;xŝ;\p!$f& HSo%< .cZ'P"^5NDAixͅ&emOWT |fhDf*Ɗ䱃QngEn#zrqrZ4eH;X- ]*lk􄖤zTGv% etߌBٝp.,ny_~7#ttR;ب4Y?8cMYa~Tm`'Jm2EL|)BF5g& hԞ?^j` 2}mIhi?x4ͲvS0l"\`f/t8y_L_`69WIRh78?K1 )~E?:<Ө`1ԟ[3oZo* fMӍeńrL17\LOدUg64 myL(·FPˣ5,? 3fٷ(b5dM.^1Ey!S=fFH2܈@PKIy$vO\Lz<1d}TF^r}hKt/#b2W tEAG$g5LhAqn9+}> ǃ*{` &0k13믝;>"#<^Wa+`PbҸ<#;c{&W~&5~k 5YE54y'M+HBTY#W.<1=Å&(.5n >*(; %?>bq/;^j 5}coyxwb+r¦#0NdFhc;<Ȥ8CRJ4,{ S;t`VGt*/巓]ӧwNzhk(B72t#L] I ә$Rߛ-Ou leEYha݆OWuh ޻iQQ%/PPHK_ HW>/V{AȹRm/<#TeJ*1\R ThjU-@Jh K!XLZSy>},7y))7$ҧ͇2l=<}(TwI1Aﮣ{/""ܭ3s4jP ̴S=ⵚ2At[^"h>%Be} \BpͳgIT~ss8s8Y1#9f9.hgHXӢxu@${baQkx}wW:uJhF0>R}Ik?Clw⣰ct=BV~|A 3*PW|10 \;0osQکٷ*J -PLtV7nf".wd*.~Ȇ}y;n_L@: xF"83ןF{5&wCPIAt7:Cr q:6+h;kI7K.BLiL\-yvO֓Y}3_K⎠vķ#%p/ :a⛇ l/ZF3 D3#ņsRG/e~9+ 8p -I6za@+ D68MnVcsujT׀Wbj&v-eoc;$ 3ƭ/-(+rb[~6kru洝C%G?7B]V n%-8/0.E4(d="m~qrC fVݓS0KYc`Ey%MlةL)mB雟S=LS_T}~c ̑ViҢWnZ 7240B f<ͯqߘ@0p^.ckJ\xRnf./6rӵxOe}x!lO&+Q+sR?UPΘ7BݽJo>g&OSkhHuNO)H"(SX|/ڏV!GdR5({N{Gx)+5s YK [OL̕T_)|Ƙ*/~k:w\Òj(tm!yD`¾ƠuR?Ο.W C"z 1\͏і E8lc,xţ=+1M6J$nY{0կ 8 νWؕlS"5)qH7BeVܵD5Ёid|{~`(q)XTJ@U/<6 U4.cN~:w5<>#3zӐyCv^K<ʆX+||ЃAr Σ;x>Ӛ R PcAS$Ex">8 脍Sь}=AЍsRêOxγ:IG.-|~6,wMF{b3wS4ޯ7Hi}Y86CG@hƓ\f)fUK ɨ؟pFI23*(eI؁5 pGfԷNs+MFjàilQ$H5@k&= ͎ A**%8 r֐+P<ϰT1V]5k%Lewk~(칮11skap$0#7d<4/^Jo uQodzhyw ])r\ᛑ{ דC,ԒU ^KsiY,9քH؆>*7.E"9Y_Ot^gXY,KJZذ+Sf !} z+s)?O2 q%7:)A &P$zrֵxM`jsu-:nEu ) Vt#Ιrb!ڰ$ A&&ԧlk oOQ00<o$fGV65{T޿\XtZi+r=Z/Խ!T(@j]ۍ ciV֦"Dw;Oprqn1|@(>\]% 27"fH{9uo"(9\[5%cNQVdc߹r[<(b u:Byf1=#l~옾Gswk i=v扳۹̇]/>RynS7T@DLЧXQ#h,ť\?Q#_k}"/ZkF+0pi~}:Y1|c_F#ˌ]7O!(֋\FZÆׅ|[PG 7j"̶%4 jUGI[|ݠťXX%Pq1wEkNwn| ݻdSy,p{Zb27dz[~tDt%,)xLiqoym۟3U"M$G;Z0Cr|| Ա=Ս*oJʜ= f% ,CBelUԮW5T@dZ^O͇40>-ia`A˘TEdwkX pfhN7we37ҧ 6rjeBg}gPm9aD X!& Ő|$2),TiU=5V ;Q sXM==zo?UGv*ٳ 9dG8:ft3RcQI%N*a$H?H׽qig~Gb%h?b;=32a"p/9 L<q$bCOKW~DV5Zh0MA*Ut*DuJ&P6կ#;01x 4 zyM\wp/eq0) ad]Vqsj@ !hN<)I#_&k8%=+-7m 8]XĐiy{=˸$(]f&0 8@SmY]2 Z,MBK>{Y2ՙ5ٺv۸Ta4UU"b׷ێAOehotf̔~Q ` 1LHC Li{bhu5*,эhs~SW}^#X7^ă>9+9:"S%ZZ^6xx_TX.0%' څF,~7VT$("d#t.6Q^y0B?@;<>eO#xg{ 1@/I,`xqP\L^ـI鬬R\U. E"unDZ̞(C>AT( c?7<4|.9Nw=@"6ZDvj% q#uTfL8>mlڥPvvw^f(Q0˔nMm1VjqNmtbu;psh;Zc?0Iǒ*}6hjf+{[;QZdM\0u0@'G {f oI=` 揢\Kw§DhQE;)7z(G9gu:^}$(xGڬ^Q,f;}&zMt o) Hr"{BWB w?RyPo&έ؝nGiFmbjs)U 攥n8"vj5&:*g\nfaC"!X-_Zp %3S;~yP ѐKSKgW[ZzɆR*"1>^ކ܋÷%-=īT^f:eGh=4__'uXr6bۺabRtTNp ؉`Xm ]APThl{>ficjg%@Pw_X9v0U`]UᲽ;^S{J&ဩ:hhu2QnfK < >6Q#粿vnn+5vjXQBN8LaL}uՙ_M? <&Sc~M 崍&x3 W7Ny T-cx/!$ȓQD#DVi@/!kw6xL4y;!5ll|W#s>,m6 T]+X1"+3jedWh ʹegB|!"CEtn!,&ɐSHess-&62їY=Pk -ͷ QGFւوg6{HB`Dq9ZRaZ'd[H9w]d H6+&Fj{ݲ[zCˁQ&Z3OS5{MBm۟s2UࢎB Q!]U ]p7̀禎 ,tLL0Z WUG湖]v-t6CB8"!Q aҏ+zEҘn_l/Y٨*WjT- E1f` 2!i⯽'~'vڻ^_`EQ?JGND F(X/翫lU7ʑ ~8ЇlzPV /P\z8fRG XaS)=mf䑑^7"%M% Qetj*MOKtkp1{6x' X]LS~j6daf1pRB [$m?>F#2C@+ǶUv~#/R$z3hےzSκA֧t$5(%lyP\OzJA~9:[< kP4af#n"ީJ;B?Jު+Wn%V 74h4‘@W'QojOp}D0I^j ݯ76NGIf ɞN! ʡKs%qpߵs  ̨R[ s#[N sqCKzqVgn) lmN b{ncMs{o}OV*2^ك >4V Q|^ā> 9d5gHkP[ g!ʹSo +Nzg@\A zrE-3ʰPȤBSn{tK# \ABOSsۘk3e[FL?:71Qs!I 4|Rbyg^Q92+  :e6k;29x;DZ]WsD]n=91IAR,f0P7/Vz< ElQ2<,d3Bi9ҍ9B߲AIR0CFv ksNLot n(! $ƞT*-`Lhmx) #ѳAWWq=*_e_ilonE 2MAX؆KKu#/rH2ҧy?W)ƉCV #)~G t0r(֪A}ƿiN!H\2:)&W.fncJljxo=/!L4σ_Y-aiN?1~RȹORѴ}YSbvl~Q<[gРE:D*̕wD8˴;}CJU4of5tk 6,2 ~T賫hߛjTR7KU;}Be6c(+e-e$aSd$רZ"tI|ϩ(tbIe( Ɍ}6@Qh=нx,f쯺 w4I]g5$!zC]H2W%fԧ|Μcf??9\jZwEտ@6nU$ܶ|+ƻ^J]6I mk`u^*}p)T7`SayOU=g-CBZ6X0bTRt@O%+-}Re1Vxl%9Lpz]c[+ѝe-[QV<4\] g/:4r0-]'ia:Pn!b^'@DL$w'g-xvg)m<9!<{aOďS^Qވ$u{YwX=٭z3srHC#<ݪ[61?Bz¶6n~>tϞ4/6VOPɯ -WRn_$\K?l4[ })cfv"/5g>x-~V j=:qAyzR)P3F:4A))H* &܎G. -C$~tGhస|`I0aɳ9kDbY)ߑ<-Ơvw _`=ؚ@S6¹ $%9Fu>W3b|8mر.[Pj[FO1_Ovq5|Owx4D۹;`\6'4+OT--8fB\/>e \h P6Q@22Q}-Ŗg9 Xwm%P-'+aGƤ;'%[΅wcD =˳3c$FRR)9 չfs5cj_i2PvyHbb.bb$%e1Jٻh쵤"Y~O9Sʄ枵2w!M`f7l3v l$(0L&ǰh,(O5Q$O*#~j-^AN8U3k׸5TJx8 ^vpM`z;lBxYݳgE%j._lF=?:{=8RtfzGI(XgL}vlOJJ%Ib3S$J*䛤}‡LDPnnW2un+fܐFن 'TV+6\qr솢o9e"euno/ ^Вvf?,;SuΧx?wS$-*皇(..h҇[J7g;jTWxOymbUX:ڽl5B:6B*UK&띏F 6;7vml?BA"N6CxӮqF5 .~!T_Fv?Ǻiet%'h+~!@V.Uqk'jN.?mv v2Dd$Uͭ$brq%WJ+Yh- RJGD856!Aу!4 . UAnczz|IQa3pfURX7^ɣ~?cO2Ӛ D[" Tru:"3LIZZ?fvn:Npp}Qkhjʑ[m}8)AUB wfd:pH%+]Tr6F n 4RE9[ ͭ J41(HQMͯԑm|$!05LhU* 3W0HQ @͈JzN*(RRը| <&؁|sI f|-l“IJ~" WDgo2'VggKU;<籝6P7[`Gwc[IFu>u+X'$%!dńA-;~fjƐhޖy+vAPvףǞqVFOmJ j&*ΠJߏny.<_1 Re_ ] #;X&6ZrC$p3o6t@ 717vh<@bܬ s:Jޜө(>A$/{ne5`[JZ=+&g_2?,`F"+IJ@UX,VJ _Ħ =15.pFߖ̪bQ='u|!]JDO Ԥ?肋"bܬPW¿I`0_&5/-uZ[B;b;bfO4UvfOFfUسYjBY HqFۥn4ꕝ0n¶%rͳF~%yM6dlP`b[8O7aJ#d׻:=BV|f)0]hp(@qwmzxD0΋$ĀǞX1HÅf3?Emu)hj-A5aNM(@sk!~{zu'[ʳ;g{Ȱ .^g?XoLXgVSŴ\pFYNB8U3!74̟򇒥}񲙢0*USaUK/X(-w?( 3]4rDsGReoG-{r.)S}lHQEم ڱi0yb=bOmmGhptb*+C!2j$p}Y(A1~J^,(9n-^lIƙr9t6ڡ nRRaDeo,*z#]@'adU`QCg™/SBW.NM,𲲓@Yz$-*3&e7N Bd*vK}ZєGdtZ-!'4V 81RXAmnVrtowrW =B]9' \dKbEb%J,OGkJsaZtG b| xH{ ~6v ` [0Hgzd.B쵍(օ5\~~hy{KsD_? ,S+Ay^I>V 9dadvz'h7_lqv5I Q$ej1Ӻ D ۋ+Lh[/.[5*(R`~VV/U2by\i3MDY]ef/ oqf`$1Gjg-!#lj4sՓR )9?CaP(ʮ@ PS qf"ƮKHvGS=[G9$֑ ޽ß!4*?C3y: c3lAb5/Υ~ =^O IwưsRj̒]~:;Y _<d鸸K 9|gӦFckf O APt'yq_.>2w wM Y}F_9 ؍&=MEU;+~0&DA/qZm8 e (ZvT#5Gmq8H_,ۺ\_Y7^bU@ S+qrznCx2~g{qjva 8^rGo8xM[9)_5~c`5hÃUo )ut@ꀞӍ6mF(owݎaבմMN?''dHN6krm޻C$`Ƌx7sQ`trح7V_Td: bxRV#GXLC#*Ď3z}Gƴw>R-4|f>8LT=b h=Qڤ-Ŋ@eשK2QsYqNi;FyrsF!rRcvrzЏU36XO<9:s WVr J~I,@`ږ pa/X)6)kw/Sk:gC(Kd<, ]zl#҂ӵ[w~?g>dBb bđKI>+Un 4TTؔAٕ~Z&rv@+Wdh&qm׎`"{u'5AKg (55?+utH{%9Ad(JIj_Or~( + I=ôVFߍ8 mIs AiR ^vX8?wWa+T斀YN>4f3թ^;=,IT\\;E7Q1 VT4'!Gܺ!%_QfJ/DIzSDBVMic ypKkr@Fy_N<JQj+q31XWyVfc~)%6WJc?bp@7tTeP?=rkv]q8ZēlW0=.6.6za>+ڬJۓ3p)CeݦkߢJT{]ߓ.RyՎ9x?&7LTC4* "8EHLms}u>M] oY<;)\eC3%EAZ zbl %RtNOKHF9vI=KT/A{)W0<fsYdL⶞vlSʀ~_> οl>ܔIʆrN=x(Ŀ^lRDNO2s.GNdu4C}&0-.kx*gfE;^zdM/)ǶÐ0rkњFB=)R,Iiך*;EpH/*>g\t-&Yq)LzD UR@YPe:[ ]2d9M1܉#%ngq*BTwm5T|3d.eM]Hl|W^VPl3Q+E xW%_`סXgm05KST6;~9(Ce\6g{OQI wz[e^uLx,V HgeӀ$tI&X0ּZmA;Q2ֶͶC ۽ܷCH9`hS^=oW^R2?tb,0/vxZOZҲ|H>0Hh>QyHzr#&P|SKpPNpX,bC`p)=F EnM:7D)'?zy9Dɡ:,-?v$FpNROZ)wu'K+Pb!QA o2z_4),2hS2vrF.Y($s$q_ "]fOQ˄]{$~OmM6c6"UK/o{?_[v0RBjZ3⒩vg9V#= u4*i,Y5F/TѺI>r>uxG]?O-q (|bKf7Kq#zz.\S75Yy^@׎G\pӍ1 "lx&iS/ B\?"eCMG1C}aT2! Yw+Lg7xo9}] |e sϰ/:Nd ֗'T 5(0iWֲ'h#q2E52syp4صuyy;H9su $s~5s]`.军;&++.FxH_)dH{Ck SE̔iLH{,cьOވtxj;['+NLb)u|>H(\mocVw@vg`zJKQJҮ Ύ@1GP\>V?xUˆ:۷Ώ>Y#جo6%0 T\l` 1l"Ը^+e#~Ip)?K>A3EqyLtKe}g}ldH 5|3*((C"7]OJ+>*4Su:?iԭZ&6gJxږ&.B?|źfvhR4Y3AUx|K)]󑩓M@nL7rAEu౿[rF5a AT6'`6 xZ! S?! U|}jnrॾ;TmDH xaua9"q'){ow|1 a'f{Q".tBj4y_qÈtWYf< 1azke$} *ylf,uE.5r-6f@l"7Ia:#B_a#W`:P_I@&C7r۸o\cu sT1U}L#$rS:NrFKV:Y G/z/D;^{1D`nM) 8ad&~s!a5-i g~mv#*q?̧߽+N˓h2.Q:,ӝxwHە S3mJ|aJ6ݳc^0ho[ro99N.R@T4pCі5x6$UR.;B㙟wydM,t@W~Ϛe |govlN~Y{{|#WzߛV$&o¾>,ʽIVSn@x+3(ni:zxdԭܗ|Nq{P/**(vPkN%6JXehɵ,;gW*֦K +J7и0Ъȱ0M [UhJ^P&Z ZA7=pVY?}r߇0\uazNUE|bXw')_<}D(\_b:YEy!iHS+Qb+KqUPC,)=R? @G]^"WU+ gD!ȟ.:h4?hi~I ZҾ잩ƳmZI1uo7msU@}xf*$%:,rn /[G: T;|<*B}_ !w =Fd^"]}jjA˘ckM4ݵ-rXD#}Pg 0`zLG]i>zY8xq&_-Yj0j/ nݝ^8EW`:ܪ"ظA\W m=|xO | ĺ޸9+C hO(bfx[ĩr=r!&:AK(G^duuHԾr\ k*=~ qُ}6Ģ#سn<zzh F#d.x% EvoZ`c|}"q/fПxrGi3Q.J`r @ _C#M8xGO1>{ %aW&C]^E0FK}L h,f9 usnn$  tiub;ZE[ %.2,/׈Hv. `ATj S{qCoT2VEl;/"Zs.WȴFݢEfe} iД1?E꫓!%ԂǝnA+Zu3ڍllwCf<&k ^1*k RxgʫА]YV것PqX;su|M# %P( ,#'߀an"ffi IcD;LUگ-t1[TJCIǼסm^]#jaK-Gecba-QzgI!&)VbKmob̟*J>1a AMLJ! !ܞ+et:j :iAVL>nT&E)g @F#oko7#LܒKi{Zw\{ +Wk?kYӅCN| Q r~^E\ ^E3L_<~Sui.Ցޱo`IWc9w@[ƴ_?^O+ )f1Ħ+16t[\ž:ebNCh29pM̐)}:mBp: \ \==GL[|EgPַisk ZҦlo&DYJFfL;P\B:jWV*oWv~~[cbT b ,̚G%A5-˦.`Buweymj'O SzQ_TEeq<ONx`d:|Gg:@/~吋批n2ޕ݋KnV$3ntn`~3훛O@ $E\5ҽW6L8څGoz2>CMbϴGel; !^*H8##(w(sd魍=P ,@ =(HF?ܐGr & v{=ـFӲGnm]W' DB7H/uRKҖ6LdNx_hv23hpyBQLKa @}ɴ4 /`&!+!؛O wM]=SuNγuB%w-Tz}wOFo2mAR>0V=H P݁aԜLx u[+t:5TYr'4IP󼦪^zL- f|ASv +:6;@>cڜkd,7妈O4Q0D8u @ͧu-pAh|^U ®R1}'cl3 ԃ;2@ydKz+g$@f.PQRG0mXh,dבxj}^+և2?ll=u\x]R@o7mgy) ɮ em(zj~n!˻|_g#GNp q]Qy4c ZZYQCӍ]r=fSm8\<9AY}=qi#;pP$v~Lya}߫aګ q ] nʫ]RaK 5wAzl$Glg34O2AΗ +s(8ݚ09\ }^]S}OBJrm KR#sos+{#So=qF4msU#?oe֔p߱3w$PuKJiܘ4\& ďGI;rG4 #0SK]~hN܍WT?P+L[ïWB$Q2 ZY HWlM5bv!]#Iԑߞ Qrf d6fsUpkt>{иt /aH؝8~ qz)p,r<{>pߵ"򄛧'p O7S첨!x|2>;žxCQ:svm/cZ_ػj`ƐQ7|詃(xVU®![ҵ3xfJ9ʿ Nu0{K ZH*tTp-ה7)p3B*͐I7QLlT:q Yiuk67=u N|AjȪpPE<2[7+ߪ`&QdQ_hW 1_V-;4%dt/.࠮ŧTXjmdxVjn Ḽ$z ZfK.tlOJ㵫g\9iĀAQUWJ=wUdx@p5ib/OdbW]{c:)>5mbz*P,}DT ^yzVǗ n_Ҙ1_~ܞ,\rQH+-vAjIGё1~u'C~o!rsHQWL'\v]S3wLG;C^G?@(()Y4Qn=J¶ԶWKdL:.c;'09j/ze|vCh *cκhAUUuSBpk!cT:&|/Kbm!} %UF䎴(WJGX#h$imbcԨjȇ#A'w}L^a16*ؗ:h;H+FT$4&&: /"^n38<6t(LM>G{XJy!446UF60P(b(; nT|z?l|O) F [ 4ZJԥ3 tr| M쁚l-TY6ӚZN l< ⓓ\.,775:ar*n;jىˍS*`YꧦDrM8wO`'`N_AUՀXf.GCq[~7OzNR$"p]5wɉ+'nRx0Ǝ@7`#Qtb[`9. ɐ\B%mv8߻T׻S趕^XòQƆu]vDZ)eQ?ZC}Ep%33MTh֯6[}p P uSY~Nmj._I9{pX072j˧od:3}eA*ԡ&7//',%?ᅜ&y37Mk| ]oogŵ3{sm4zZ- IY_iB P K3M0u`?q]nW"Ĩ|Y,c1vxbB*2;^A2bN9:*:^۠0Z4m;wcYƠyZp=g hⅲ#yI|SǓhJ>+B=xcU>C"!]-Ƈ6к_i37: 1j*+̏n> ;140w ZW gct(8 [/@nS`mc7&q wf,?X,cBfӱVZ=2kc@m7Yۺ%RD!WN`\rE,Iڽ/H7& ˜ZTB9+~1}&2opvD]o8EY%)o9v9g:E}hD-Vex*28YZ]wwN\zyDž]0;M%K2"O SWu)_~%vBwp" mNZ/뵵v߱oVVDUfL vIdGѫxVt-6By{Jmeɳ^-}[(h4 -Wʍmw Rg8xlߎOH[)wOi;|9ĪD qdt6&_[+KDDprM7ΰ#j.(lS+_x 7(KﳳA& ERw gXhR)%a"~1j* gPʊi)mTp_yvE ›W߀Nx()y>OgZQ|!ɓh wpvypu54 G vkal=qt#4d% h Zl}>6WܶueP!n>ˮv"l6hB4&FȭGU."7`MRbSgJ پtȜUu G|S/ 9j+\} rNt㻎v /tJ B:˯֌%YlFΰ* 6F{򄺐SJ0\&׊YS5Y^].[m8N Ez7BÇe~e U ChuġZ>Gf3CAxI* -)O\ Ԓ$ÎQn 1+Wk>(Y/A \,}}1p_w`"H dB1n*9*gjaΪ Vo uѤ@ݢ]H&igQ+ok]zDtږ̺Vj0)V$I H"R2-@3ǃy.hۡV%q`S}sLS8f|{) `NGFytmX *MN/U {Ǝ8 Ŕizv)٣ =-4EDH1M)qܞ@?PR ;DkW&2X/#CψڴsrfU?:fC]LJZG,ϹC~ʙ{,e_@(Uէ7%4}ACʠs "ml =;vv^pmXk NPhb }mr̟2c7W<{ ʈ%$S2ށQ`fu^KǘIP"!%(8rk˧u f{W>8g> l7GCc ph;1ԕuMU%j:.5:3 † qxl |Yv :7KUVLdn)]"戌cXlgK6|fNJy!Ee򆻳PVK=Ǝf>c軧9\0pP|G2Xu|ༀ_`\XFgxx =?*m[1h!,YAQ67#;ES}`{\X$6l'WO5nd qTDxѩNXFp1KLCSFS( ы?:0vPb%=Sb։I*&;9SθFl.y?>T;?ΩbƧ4iO%  mZŏ+ zH Y%qGCZɕ=Ӓfhᅌ_TU(*,oƳ*KTh9dQ(ԝ$\)Ɣ5@tl!;Ǣ8h53ixԢ~jbX.Vq4b{esG\cKЎdN)Lb욝B3 r% olN"גJD>WM4?}7Y?c~EH=m2T?V3W U]>yPdIf.'3ŝݱ/F O40F9EV(0)j.C;,kͽ#W:LylHs0͙~luW廎MIwHv3@f%R)-hǔ1Iof33MJ]6A7VH'ſh=F5MdgZ_pEͶ"ީ5($'PHM$%ڋ`4brNjM߷dkٔxOժ4>!kBe=d4 mq K̍ԮQ[x;/ݓl4psEeCPޤ*eg/LxzJd~YuTI0*`7o <D-GC+#hͬ?T_,&S9pBja<&ŎOHvjGq累30XwX5Qɯ7 T)c!ik;lr'7tPKbӸP8$JG_$;"+.7GEj4CS']&aiRNs!i,e,7'ȥ(3GRWL(دVm`+PL<m&LGeO$] ԥg!$#)ǼB 01F$Yn >I̸=w2# 1v`T@{s+Rj%JUEiKNŏ>]јM'zSYz>* 9{`ݱvŐ h(%dp<2T1koXzu2[Q̄<*MOa6FrN7nB @O'<&!=r&f~ VF/ϯCkgpoqٷ]? $@|q㸬[V>NHܒ^T먽P?UP>@#WOyE/oeJr͠b\J͗h 1^DFΓ{#{7<*ayމ'xbO@?zI[cwva ];e՘ȹlgBv5&3|iMTlirF xp=jLznЫq{]5q_hn@dT LWK:J=fmp?}7b5@19VƀlQ(aZvW~ "a8i ot߁47৪o 1zjbyգso37A֪Dx0߈t֗2:Y1ZVEsWRqpDZL蓨V jwIڣM_6v3NJϸD*l $]Yc'{m&@sAE_;50(Lzn+i%2p:`fd9ڠ!N겜/FpvgmDxMfo(H6CĎz `ȎVAAgK*ŕo%rkHie-3¨cw\EhS[E<* '+}]|~<,N$ Bgָ y㹧ڒݥ_A\Jг-GN{ŐrhA81D`*u «y7mwX{߷u!"7fȧʖDC?dK[3؅_eJ`c'B 8E$*Qa)U_!#^54;qtahqI(I=^V =L<eV=S!^ͨ) yǁ߈Ïͤ6RkfNfadfmP0Z atI{^ݰ ;X@e1BTwN"]ؚUD$y.paIEWF3h5ڃY6ڵ'"x^ %hψ C6VKUN9vQr(_ %]7utfJ/@{(,OZbWM7|ݜwkɿsEP3הW̿W1n+ ܙ MD;TL|,D E|6 / +_DrҘO&-LX%z]|| n) =zJ&8+.#{_:;uO"G#ܺح,)~">=Y(CaP1 vxzL޵tu,G{ z'eo%ݧ]Rw M¼$)"$e&~~F:_>8^l撸'ntAx{K|?ȚM:@(tO/PVR RLP/Ԅ\ bݥ|P֩+ħw G|Z=V΂_ XO%:db3l4 :D65"QsAD˽ v!)*̔@Ab%Fx,VR.GhV€FZj8Rܰ79~2.ZeUul|'\;oUZސJtŰM+$(WpU3@[Te(6&YvIƗ`p;Us@yܢEa `t n/>44oÔ :{ C~E-*Y!jВ!ŔE&d(/ǂB]fj:4X5dz,Xj,J-g-F}U{TCZ9mBм97Jпʺ$<3)c*4 ,8"Շagz)9Hѷ,q$~e";co%g ^8o2OH]+|m;Q1Ջ[Rf/D]rnVʎ=gb5#Dvç:x &>Mg#euElpZb YBÈ?+]ɌOdaSo&Շ>wTߟS.˒qffd۾%>j-Y }s!"h>e:û7N&8Q!-*rYuq#x9_ + ESlϥIA/R#qɕ7^ep #OlBo6)ZT2*cEsYj8E>!٘X 51}d 7br'zד'3YL.,e/\0.,>" U [ܲ~hkBǐUVUy,<&4!yRz9?oMN0ɛ$+s:V66ZGxhE{~MJD H0YJG Kىl?CrxI Xrbb4nbD/o۠I5˷8O(]xswJ!SbA@i~DT4J*ƛ G&PP]̋C>)^~V)ٍ&|Zz ?DteNi))MH\TɌ \BESg6LUʝ#9MeX$ !.riJ9WƷAVE*n;B0Ξ}TzWv$ vb־)/\y1O}pAm.y^nx֡.W«!ɾz`5O7} kFӚo2.]_`?n1 a!/74 Kɨ3_cLeV ެxg%mw;`_.[sN58hV ܇#{{+'J6VZ-+ЪQzƒ-i4:sSN\D 5Qq &u&R&`,Fs5\5<[_%̥MӇhqxcwBr Thq{uu޳X_PhPy52cDAĩ(X7 q?Q_:ת˃pMzg%~ڲm]Ch(`@#Li ,MPYSzvhy1&c|(Iq }S/9ZQPJryhf/HNq u\De֨Y(³?SZ5ܫolCξ>MaS'usb;Рݫ䨫YH?8LUxq?0+eB  S8]^) naR:ɺwxocY4\µ5-REN-)평ir7fyMU'Ib$LQ(a)K~) q[T6)m*Zy` h =` %y9-]cwkv`v0MsGLz_Y9hF%߭FlMP?2j`ZBک*; !c6o@'`U@]Q$֥TSMw1L(uoxfyGVԟ|Tp{4giK 6,ԿnRs+HS_5sȠhHg)vf._AIGWCzBߣ:-b2eU3lrm`P';&Ot cTONkh;/hk!0e̼v4SInvlZ}f&x[ĸ w|L\Mt=ag>YzRalyB'\;ҷ߼ h$f:}GuT{EbIl|-@`\iPt# ŜtHmlS~RSCQi4g8'k̋ZR, :%}\!eBۆWn^vSC^̦Hca 38eca",k S 0}PTZ~ifEMKp4(7kbSmeJƼv 'IBNjCtv}9Fdgw1EIBٺ@O!v&j֏O*DZ]؂&q>.9=Ϥbn\̛eGOBd>"<]ˤ k+Igtt[MWџWox҉Pq йh ncZ ^B#!xxN3,1r>Hi=`Igt3`9Wj+=dY3UN"anԻ, Hf73%)!dwSP"N;OuVON^VE)  rGhz0BN\EyaQ; 42eм9\c(J@8uͫ_7ƻaǠ%"bE3<QTqpJPOZs~'B/5s蕾g񱴱.'Ua1&籧>،+t)&KZ'n/:s648ɱYduYU7 %L{dY22 <ӭKIl+ҏ>b5rD_q1&RAɁXʳ*i}ivu&A?[Fצ/K%Z<k-!L0D?{UT󎧷AiRF5}EL 0N{.]I$,x1Ac¶ H Ht˔Uťj6 ŏǑy**;+U_b;+5*_N鞅 h{ŇdnDDl_`.0YNZGN"]=ӝ,$pmk>sj`bJ:@:$TpNc\"VbGy*G^iOmz b9wJ@4`JӥTp@$-ɗҖDK"3'#^JקvB] z!c}ʭ Y`Y^ 3lERsAKKg!+Y\>nUmɲ8P'uwPJwunwO7L)nE-VWS@:L䙛Pqt߳*YNrXSI-bvO Եv*ߐ:h4)Y&S&K*Y] SymJ8*Ξ#2YU~P̔11u<[[Ls%|Ӳ#w5ʘ}e,FTb5 Ejf392tcyT6qnhӧ%k3^&8Άwv#q&k >^røY D\brh }?m; X_k>POH˛)2%\/,̒aDh 8w\ȢK_!F]*+iΚdq _-߹KiG&V|EdG{"HTr O3%ujeTOPXe@[:V ļh-AS>啞𪟗wثg#5IAL]^3\;njhANH ֡ՂҴe*IX%vr=Eũ[WSf $kw!y><9. d hhMc ` gII6~$LSwf%5bXŻ-s)ga1d: +`z PYȚ ȒbF9Y/ >dd1*lY ::1ܞ|بJ$/@xbG(SQ5ǘ 77D[m-M7”ˆ,u,ʣY;jiߢ]uF'Pr1 JUP&\%Zjxi?K3 ɿ^ay,667<'Rw^pTZrWC7#;ie e2G)FRC^k2A;–A9K kj%Wk b?#k@6'4U;GY|BkWO9YR'G*3YoҒfq-`h'>#Ong_6qe%!}҆^9i ec~ZקZj]iH!}io'7wG]c8vv7h]i,ǩ-AqdSB#Et\ @86s Ji=; UahqaDxI;ZGGh&LFԴɲ~b#Hq16I&y-/CT~Caz kzs1fZPT"MA:_,  W?NZI /xn߸[z2 X|i w^&ؖ>RN!N*!"+VWlvVeP޴O4kCG? 8{¼p 8ST Jg`\\1,uGrj' \&o5#$Њ5$*¤.E*WW/c17hccZp~d';țf;pi'ĝ.Y<3UZ6^--_CݜZgEnh،,LcJS^oN7m~0qf@}:L =X} JoXIF/n{5W=yr$OZ 8H-KXmmtL(SړI1A1u¿X:l7csWttQ-^kߥ}Ij ;}e<*'8tmLѸ xF=뎓 G'υj l^%N_kuT{*)FӹFòIdiY36bT_&V…sG"Ԓ 8,7J=}b-_]|i;(C Åq*)w~7E%]*3LC ?m=3-8c`O3&MSlA@L=DY]e^'쮛v-M !' '*n@ˆD$&ӧiX|ԭ%J}s g@Tu4Hr6ˏ%~Lԣ ]pÎGr^*06. t}oUVLW"$Wu1 /[71T%V6}A_3/s6]dxw^II%ՋlXwU|W *8 ؾP :>/oT21Yfv#2/MUXzQ6*echG 7QXduLEEȶ`vNŕvMnjԲ6͊ASB֖8I-+<~ugM{8*i"d}!3o^Xˊh=lFHPy 7 M31Ocվ|m 4ά~B<"]Rlf熥$>'I.^I8؊t Tn=0;8_.5eJ$`OnT *D" F s_J?d\$z:`֠y.N=# ?Y/ #u=N򣾃VkDn٧Fuh˷BI=$ I>+QnT"6HbzȺ)~K%SzzC$ =V^,c:KU?xN"Rb_p >w(q^^Zx'\B=bZhxAV[_5!Nl[noO[qbP>2N1E^KƬ:G 'zY%E /F?&Ƭ\c"ì&) ӓa8^Vd~Z0BogV䊪vPPiN9ViC>`a!M?E`cy0՛0dx2zyy%4IoȇJ ;x[Y)Z8h^kh MZ\Dl<=B%CŢW/j([*Õe ZVS.4%"\C |p;$/ܦ#l3QsZƎF!QZava%ɃNHv!oYYj}tXQČe=uJYHU!k3j-wnrpѳ=Y>cX z{=HyȑҀ@YPWbe|4w4^(ž(|r2vU {Rzc6Y[u,%[ʏ׿4y'Xnm6CH:9klX}ʼn9EҦYd5#x_cVKMD}:UO8d 63Qtxmi2 OmZv 9odnF$˚(C}P,= :k:-_dzɏ.HhT〉9wk+ʯqkO˽D jn˨Q7a:&R"|'Ź2yIz lEx@1dZY|WѦū)flrlyx gЗ1{>Ó1x;sӆIývŀ;j%[4tǓH% aR-cydXz%JB9$[kAU^ugGZ)"HITvQ~A$=RxS3+E W ;#2NDٸGOqm n">em2q C*1I(#u0RNu-ɜ#O(Rul(!.h}#a07|wyDj d`k=%Gno*]+hyJO-.U~=X|صb[Dx\ :v~RX4kkQz2 r S\۩df+gc 89lYp编GG{!18bNgTlSJBrE! 9Cv~nk8:9:5a@(GۀJSc7wֳ+i#߿$M? 'Mn󦵸WfgKKLHtt x;V,>tUkX#=TMD BB9G dߣ5 a?M5둪WRWaBTQj&bГ{]Cӹ8vVy:(  "OsrL+Uo .&7!BA@Ra{Iq6 8Gz+YH~V%[I#)"qAUˢ ,u1de ж؃G C<9>)簫l}rcB#yC-6ωh5Bս!,8.ɘЪNBě|hI}yL}'<92p!\uvуeh~(:y[__*dZ]G}Cz_jdZ&Rv5ְТvjG̛ LzP-Ë\bj}#>sg̨x3)U';)"#չVI] Kk56F'H=hj[[+P奛(!tQjPoA 8EDaqjULtB4VKE\ J>O]6̟V3%!enP_mm4g"^ȴa.;rmy(7ݲ2x2R)c"67#ِô"3*"˂L?%|=Goct.Lh'4U? [ӝalGnB17b<+AGGB㔚}W923Baxb6䠗 %knʞ5G_];%d/:|9e] n)~Y2n a+{}=Ja}^:4խG$q\y8;@oх]{ LI8\nE SJ)͜n)n܆y>t ˼sDA@p{4h;yMٟ 2sՙï%z$; ,h{q0iA0kle/[x~UcQ,Qva0Lm>C$ԬӊLףGAJ zS7QSf0ъm$=`I4eN3+>Lnp^֤N9 O ߉mwBqv&geS;m&Xנ%:/%cTu9Yd%%\ȱJ1Xoq= k}{IEv ZNCr%+ijJ"l%o/L&.y gC I3 Bؐ55f'Š $.,@\=esY MC@J *KKmh唦U}*#gx#Q$u?"{+HܽgZʪbT&/Ik?35r${EOvQq_: rUZYKuaDM%[qO^ 2鿉U[Lq^ 6$~ (i+jE)kτթ $?Nvn %pl 'BdAh=W4 0h-_.@mm~سBQ 1'G ?`3Ƀ9KKɴ6cuE@xxFW4s>W2Jj |lsrNGyRxd:xlyMxrQd$I5jĩ^`]ڍ⌬M*YEAU Ǟ85tqc(3#] nچQnx)N,5Hj(ǐceH3db'%n0f0鈆CQ=n7pVCu BXvUCBɵ9- YtrP`U>ˣεQx-pesE!$p!31sˊBou٤((>A\;N,ڷ0D蝏6+Z D+kwmߞTrnK}v:f#fX6}@?96Q[rfTE ܰszSj8Q͆%˯D&2͢!3á9u XQA k04qQ2a,A2g8&S2jeCkfOdCFr) ʪ$I9b|‹?~7 }7^; ܔ>F Nů;H~SL7"mo7t3FS}bCYQ7&NA*m8>QYΏКEE 9нN^.cwFv;ȺHeAAg왶Dډ. . ޚ:Q_ u1&"qݡt7 %#WK`pվ1CJE/2wQǑ.Is'|E |R#+Jp7u4^7>tcIAŦ 7|$JtxQxf H,Hlܸaٜ>ɵzgƍa:Y:)X6 "PB7& u(T ~T_mM'R*!C @з,<:Eu Zy )' "7z7qkXV:ػ*HD F"[F0oI,][kT.O'"zpMx"o!u$[q3R+ʼ eTX eVˍ*#2YNf&J?}R?Ɂ#e_s>Z`Sy_0"b\w!Վ檆۟w#g]|,7_*et,)&1r=v$ ^ %HA 0|ռETV t?crƪ%SdGpwWU1~3vkDͲ/.SCp)8Y'q!Nb+ | i~k,Lbv5C:K9Q(=|لepvvXǻɓvWE.p#HƛO2u.;/3&" 0'?y)j=6Q\,xG)/qaj >`^ra&E![֤R!J]jЙ9RO(AP`#{9?Z~܆AGsi,fu}!S<')$k| 6*rOd-4$m 6VCbk*"ZH@. gF0˫PGg~Gޞ szp]{sb#wzV2+ėdUzw/{G@콡C poraZřQf8>QYO>RURނjɚb]wu #[bGex1~gbؕ ŷ JB GGt 4k,ɶ:: z (&4. Q!EGh{H2`hh7o1X㊰~b\X2SڐNsNP. 45h |jY˜XiXU%#n0fS D5)7@0f|cNV&I 4\mp&Le)KW []^"a"ЃDB j;.Yu(JY-+SFWkJ*e9z!9 `"W>+ b+Q\ 塺G2h>L$^w w-%)0j~)dO˻yzgDꕼwdP8!$򄒈V?^NI5Ѧ1l`j| 1! luWw0{1:N,OdQyn{+&Ph쎞5zc2LQW.;W =]aAz1MaWqS H"zRv _}Yp^$WL6)8r1-(|%*Donef1,2 B(!v/%@HztW?ojwHdqё]=$fabɡ%G;oҎ|]½c*"?H1!wK9;bq:fw`^/P֨1g;vNL)6o` ޘ?)]̻kv u_ɸbKֵKVjˬ@F'!N_ě{,ұ5G>, Mm'.}ZN TW,4(,Mco\%nR(Y)S &U?d }4kFTyxL6!~%gD_!iOS!4Yw}Z?ߦ q42buSOQI鑼~5͎֣tmRP^|V^iKWxČqR͆ јڛU="|Si}] 8^ppe7c> |Jg}~6FAc.?'_3BORy~dGo6{8d=kg#9NԒ^Shݤ IgjPk͉_ٷ_F{LP\DX=N"۔7)"pWs{B5'y/%=! EbE]޶{ 1$bӢe7~=@I+utҚTf~cRg# L ǰ_$;^WWõ/u|<_ a3j@ N.(  wB fN!J ۀEV DKQYбv M~( 3'|>*!:5TF3 -|SHBY4Fn5٠c8%#;RY)O`"6#y'ϯ(0N]HId{+U]>ew>@7c5üh{^?,|PUʽğuCB NoTVMoq-bGhdžV,v`:Z`HwRkq𺚵Q̝p<@'ngF37$EU[vqoGpY/,~N`OC>y%n/ OYlsF>v `hûc.xDCSާV}嬳Ckv\h>2zZ㐐ǏTX ovf#&zn"G!y7zj$m@@ !}l,Di?NLC,NC6N`ΈVdc4xۮҕe"d\L`Kw]5ߠk#Xv~ɛd2hvwgh&cn'&v# I-@)4fl HS;9U4$LYYI&]@^fb/Eut4WntH$ܑ\ ۟6W/1SǣvkMfDɌ j;!ZUk k2թ1`\.a#>g+G֚c] O& &x^h$).РRٕÖ [*} KitiA,-KӸb+B {aG &nI*pymP. ~e,2kT4ͼ|S/u$>*F2Цw ;oKeW n5m~ z_$ .k^-q j`=D6SYǑF^3w1.9x,9wul(kXiferf:?`=NO0FMjvY?R&J.дɋKҥ;ۑ45:>zC(O~5z^$~az‰ɝWm1.бIZI=(a# OOz<[ϣ|WjS[nToF^_-Q匳k;&u>oO9vS5({E6&v1kd>[=VS2l智8Iٿܕb=6*ro.C>wDȣY`3k2_#͵cCN}l;-1_AJ7>A˒zcX@)&͉b6 ĿPXbC-'ctny_0yڙ8sNȻ2k2Ĵ~-4lӫ,ܭ@}dP^ALҶYȞTT}Is˭! j,3Q9On3Pal1U:(0A#W|W0eDgJqbc+Byʾ4E ~ !40^9GJ0伦gBUo1 (nX4peã]);j#sbsW+^LW _TWޒ -Kx++ўeN̑4*vz6iخ%Io)*Wz/JA1FA-dgZA$g, *w򅸓`6I:uܽcG\۴Ҥ%tfsv.~痀Ew A6o DܰPc{ QN\~쁙\N.hۘHˆeH=:@ש`k854C$#v2ߏ+Q)3L*>)c<P˓zL/(su3udEՠ tԘҙ'_-;30aA.AI 1LtKhr;~Ѣ}$C/#uׅ+_PA Xp0j-cT$^)-yG1BދwW B땃A_Wcȶ>x g41T k! 7=oY~qcb&$s>aaw\ RM 4ֈQ_OFUCIt5ud47/hK_0nx95ѬSmRTx!ǩ /џaYmHJMd.ɀCe> bP1ePBd廱 t_j2[ݓҦ]y>k,[!s3u]ɑzQ1½ %N( Ӫ=3gm3d"b+IE#E֢/[y&}HׂjWA.2*t=ӨJ7K9 r, Σ< =e *CaG[;3=YzIU(- &IT%Y_ݑddyly&l\@,`ha{| ;A볅XE] oDŤVff hDM:s&#G.Ӽdžˮ5q;M#N_¥F}5Ud$ ŀAȉ}%HGAcW[],~t0x̓[_/ż݁}8߂FEB|gŶvd45ys.&0`|@N%mc+1{ܗ6yU}9+/QFTj_ \R?"k~*Qye961"7XS 0$k޸[@24xMci Y2j&V_&4odD#~*9DĂi"dKV{1XN| ӇZNpK.B3McO+KOXӍOS =8D۱:Z(yr7H}4vzNcωd] ?z".B?;`gtwU'(YgC/r[jl!|EkׇLFp/k^џs1>ax"9ܼ(`/d=5f3l.Cvp;o h>T kɝfq*2ԘqJ+,G(#\G(ů[ tTgP]1|E

  • QdϦ;{Ile )KkPt80#BDu t5=ڙJ _[۟ftnuP `-*PcáK`˺Z?@ϗˣ/6bk.=gCcсN f^b0"Ё"i67ާb@~+GYFƥ 3: L]pi NZI6_)!xir|~,H@AV*p3ϴo5H0q(H@P};&2\b;P/H5n:8;B\U?t`N8EGX$1~ZodKSdNwgAwG<Yq[ȈgwZE6c {X$2*iNEOtGs([fgAPqۢɢ\L!>cF_4t3!X!q,J7=?` rRE"5RɾC>2e74V@n1j GɕAb4"SȳGA $ 1ˡC粥E4$gLJ۶ nhOs+5 1e]=Z;U6鹁ӶD]s=g1 /cmY@n\ >*Ǐߠod^Z~/ "R%kYJ^8ԡݫ=T9U2gK5l ~ь a( [gcT (:X쩗9̍Ԑ}(Nr7<*zf(P-2a ¹֬}!b][XȓXDa0uVXâ+Fu6 4OFCTV18ł,$Aʘ6x탏l*kZfNf/fg>_48(Z!PQHvq+ޓ]Aq w}BbC.yPf 00D:ž&`dB"Z)n{8CÂome+3?3AFur\d.Api3~n['A7%OǮnDkb\5J&o:Ms!Pt8o|J2n$cp(!3{]ysN.Qpܜq'*zPƨwA_0\fҜV(іms$51;)FeaSJ>H4t ܎s$y VwBߧ⩊'Q LUC]2m2SI+ E2s"0m%?a% elВ~$ݴK  a@wrcXIhkI-нuMϥ" :̓]n^mH@*i:OO>Φy1FyNvKuPO#u8܌ywFMu;A?xb\O^g]u"pErb15M^2\p}sҸP7~u^iH؁63Jz c&uv}_ȋ-Q_vx]ĂfZ˳&x^L[8-ݷ[ĺ`8*w {) hk!kJ>`O?絚//˦xZ& ƻUhʾ`l7VC*'H;*R%.5'[fD_L-B- .AfH)*-:?ʝL?|,Av֠N[^zGyFw5u f:&H=>="D iLJ-}rfpFku6RX)R;θemS~ >O2>h0䭪-wj#%ĹL_PȍcfÇ^ڦUu6kZb(Y'].v̹NVOz(n ʵDʦ䋬fs;8'Mh XqԤNl 'm{m&DM8p/.Nx#5 x)√ )#$!FGlhFlǓ yDh!B|уĊ7FAB,ԃ[I0+.c1P9ci[S;˯?knW>a)ʒ+Fuh8c [c֯s pBw*lYϻv{FT*Lk*b xDdyP*b,WT5ߔ[W4\,o<:#a \mm  Uw&ËQTb#2}g+=K {Fl>9%gka9>]A"zRXպQ2)hSl]ٮ~GsQN*T]@ޘ a:d22]7]vrRzyd2ڎN:)>'pώ7ENڋW &-fzC̀OD;c?Z 00^z@ެQy쳝Ս/ϸk@sMF,bz>BI^ дV{/rz'.G|>ןxJg8UT<7!"2q̓7נ)X3$`1"+vq]:?k:4inΪ}\\\#ݹPfֽETs+1%eȆLD6lPagk4Ƥ8sP/S\[;˲Ftlz->'6"Dҋ<ےG1znȫYfaQGc`7N/qx5zw_8#,2sպ\ow tSZ>- 'kt )ZO``8$R{!F΄FRQ݀& UF%1>bA5:|o%Ota7uX'W#BG̊{Eq +.HѨ28u:Z\?ӝd_Տ _㢓ۋgnH81៓Fpa+es[\z[ϗJ3I)4ԯJ.hz䮤t^,~?lM.`!b 8U rlݿrvO騬KaUS&po5Ô}D;^Q L_wn{AόAiT/O8FD.F"_5&aK@8P61/j^"PU0GKHSYrg)&'_(7XmrSˢ)ׁ@}܀/XK.cyVved0<[_7-ɴYA=uAeeFn@d3ORAi .S Ln/1bkٟZd4$`Q m(bYr$4PۼGs9W@퍏sOvW`mRsZ}0E t/dG3Z~K !$Н{F-Ȉ-y8 5OE1<˔@ca+'-1Ӑul<881(=oɯ XMDיy>f烕,OcI#k%U~V4Y{b$ztP6tܗ3}Y1/'7MPpH8e (rFf[`K(_NME}whUq#9[Nxq盀G =3͏^m}@^2RoR0dGxمo2͗nEo&F ϲahuOYFt^gX84W~~t8%#Q\D *{= !`Ɩ4a۩)bޙhP-HjފJaպkY!B.Uv𶄢ƺS6ZLf ZR{^ օ-bN?Г4ug/ ֙rWYcgcA XJSs75 8xf$ߝK栱9AHy+"ztO&) 7N1ݺD)6E " /Rh )ơ@Bn6ͼP'C!A֬^ i:kOW#DPnq?^di+ӝ?:[4 Dѭ@ʆ~axz'2܎ʨR;tMN5LE'Kpw{@x˩%Nx jKS\Klwnojc.ɀB{uI˜~`J9FaA@Թ Ѳ&U)Fu}9e%`F(VYRGK7I`mqH W{:E+k.%vXIZ8prâ|Yg|ke[ l[˟KdyƕY{u'zEu:P|~@X9t FJS_etwN&\:M::hbG/`ZӘq>ӴfS`NX#ĩ 5sJhY%xd 29ΚOm"rA;^1rLM h)5B%fp lc][B)(Cei.6hNe/GBt;-Pt'bٶHkYE@]:=] 2DK/64 *ZKHpݯ9@U )WgZNM}LߞFB*Ք֚j$k6۬t0-{ {Ù$*ِ-VZdn:ˠK'`_F*M1n'+zu-e|SP;vuBRʗ/e0{(r9ו1ad8IX3n+X6_yCIQzVo+26oǁc1uk3c $v5:C` nYcB$6h{Y@tu)wv>]8`]U0ϭ}]mv  =#$It6qwY@k<P4Yn6%$L*[(O_1[q8TPAɍ@4K&3OKT TC2-"]} >ljzo[P]#Ny[Ԃº|5wKK;69gBv4ζ%͗Iro<:L E<w=r!piQՈ3R'*m#}qIh{FF|>U<"kyͬ3tW}i(YMS% z* "A2H)82I00:n"bEDo pԗRUWo:Q3^88F }֡kS)IJ'æʔw= z?H]O;QF{W wcwdKviq7֫ 23V>v I:(3!Gр l zvu$B(fgkϝ ’yؼ9uC1N!ŭVni{d80VSA#UX}z?}]φ.&Am*p֡׈1_a`g 5F\Woo.ym u\u&k"M915Quv.WPao?诰PUbhs[h~zCݼۊ'n35R _ڽFOư)o+#tN&+"R,JFf&:$3ǎO#IR_P̦LdIo &+\beT IK̢[5hfLv.Ex(Gwƨx=~ 1dC|%1;>u9һ􈺆aI 1 vsh5]]br-+^mU.k>@--!w[и&j%h\o?GJh e3Zܼuڑ:3D!|>8'-+ݗ׬w(Y^V|sN-7g iį8F_ w[h̏tOh:OՖZa,m%sNyP0:)瓲30a%L^0K<E{</LdC$rx!He7gClgCnn;1zېrݣ%7ħw~"46zJk/o9r.n@퐥Z`l:yz*\BM7BzdGZ$^Hq":md\X+Uz}b0uL:-I?ԓY- Lϰ9̔=/T_gVO>Nd46<_ #蔑̣'n N^7ca6 '5pXuhʫdnod{_>fycYoؤl#W^Sjpx)\_}%X@'STā&HmCd+N^/ dTWPB]?a퇥v8 ߮K/s/g>;K20pB[<'yfl5 hjb<⨯/E)ȊMMe :0 '?'[[xX.ADfz0(N"70["Sݡ#с55be=8duF^ȝ)D+o;3fV4PRw٥2:P$Ì{ i+Jl>ӱkAJ i#gك7&J`e(Xt*,HF0Sq<g,V>eo2+)z5Έ)pe~m#ק)(`"SeZdeX"`ó~ { K0Tv$ YG"]y#46m 4gw[C;d/[;fbn )f2=љP J"Uff j"{~e,686//ω19ݬnE"@ v*]*no]I[k) iRaMT?=N jpp9o~L ]EdQ\M pOPDL|3aY25ȔZOiB5UʤXwqXϿf{5&@_>LiUҀ|W!MH.ѷc#]5%/㎥amdҚ'krY*\r2pT&\7^96 YZnWW*Z0^ EBbU #P05Oݴ{gf{\Һ=1*e24Gb#:[ l&{lju庇:Qucf\JgNhǾ>5VOF<48@Z {@ #(ݥހ@b/# #++=֗}oZ7Xގ 7z~7I[?A%!8sdt5 1:%uC:8=1 7tU9,Zfrr!Qk8!&tF%6^V&X-t$u$x81LŸRwqig,oh*POLeԘޤ~ߍ[Tg[,;m&4Ͷ3#~9[{@FDC*7L*5 hV0'r!$73&a=$`{XLjVUl,:$#+n'$-0 B$iN򎋐,grPr紣p4C舦!iG@:5ա2郦UZޮţgUnMm9t5N(A<7h$ &2GBQ]LK},4.f DjR A 9ySd9;U H ^nhQgmIRCG%(/1=(=w^ oya] ?Ŗw:bf/MTA/1Y YTgy$'X^wM93zq?Gٱ7aao왁 gllq)]SYoh6!$F N韧U983ILEy8Xk*$| DLߪXѡj/'9jڶ]up>]uNpN,225uQr\KŋHA+Pp\΅|V}D?ŒogΎs'B꠷"3u\5|&9Fo`w L~!K.Lh1F"V9@FAz#ےAcKmMRϽ5a-xZ0JiN&D.K~[tfBZDzJ7R[I983H[Htߵ/%ߘo`~au)pq#ˡk%@c4fkմ+avٛof's&mcd{h_WP0ݗ?Z\5ݣlM8 KcYeo}gN۲*J.!qjFw/Zg^;c.rz["C6(n] #K_PW!\U/ mֻhWFf*IXU6-#WPdU4UAC^nQCt̹<5PE r "T(C|Kh[[T{?f#(eƱ01lհwμY#Z'2}5\ls0qx&͸tpM!@dоZ(mc̶&NrbJFk|IX_,|L]yeA&<5 -4Q{~^f}XV%}̂,TVU+XF&"e8ed~u#tKSH-e0*/^RZ)J2|tFA׿I(&hk t z:ǢFnf= ‚Q/i4M2cT$aD_Ekbʸ Ƃ]؂oF4phF9b{BxP ѯp!8ZLRwW)Uk<O1ݮtdT_^vD/kY]Y Xi2T) xQ_YH,Ԏ,4.f~h鴂j ґB{ 6-D[^ZQft08j24 \Yq?r*(3v >T_@Y\S{&.]ѻ,B嗮4i)hh&Q5LEc^dR|x ٚG@V$qltWUVmo}F߸^;#/F*t_zq6[%cO,E#r) yǿ,Z\vAOVfSU|C敏$HQK;>N"#VB(jp9Okd6XDdp677 #TUCCMn9[)wﺨؖv[KGX6߀L6l(="=Or i@K&0E:l$՜}&\Cb+,w%ӊf*tbL%7JШw.^9׽h @+[X5NW  5#{1sx}jvl< Eo )J[„EA9B4xR&G?L^ǩ94R!gOlf0_LR{RH(vfJda|Gdl~?FGdi`$4e?*EHz"`K.zkk7ܭMh>EvoW¬]%|22b_9QΊoi\wxMT;Q7}gZ[a— x1u |ۦP ?wPZxPr™Cą\!]W0Čѯogpy\_f|a C&_n;ox \TuHRʡ\ f"?H'֘JQd*"d͇r (8.49V 7iFԜx>OV~ !e5RP헳cHVի$+O[sgiOOGwȖ=WYr}w"b7 R8f~5tM^uO ~!w1h.s& ]"D6!"a~g.4`ժ`Ԝshɸ`i+LNtA1V~ϛa詋Y>B6Ȫ .n}1P`w3Zѯɠb'dT0:܏3P@=qR|<{d-3H M̋w,擑Ԫ}iۙSωKMJS`dv3~zDB,$ҫ jV/q<DŽ!GC _!Qezp#VK6J|xhR.SR?O&2l~cJlcVuRe 7ig]X^>&(k:)\=ëlbP3;OszP9f ް~ќF,[\h\(bqt(B3JC̮ UEYe r'EzBuOfQZ|#I"Mk|Rhٌ3DpV"5O*"'+\eˍ$ yXmZ_+Xbp {.;W@ߣ+((,3Y2[y=c@86oj X_'i?,g^kAy`U5Q@jt m1U~\ ,mGCNPYN"~'?.#LIN^#09v+pvtASȏP$00r6o|lxI!GH~z=hD P0Q#"6,R {:Zp`? (@kܠJKBy`o0 ~ϴ׎]*ЁjG h>e5bm)6<0@7&XGwZOV)ǙS517Q !Uu)3dhsc| w5_0=7>ߦ&t73)6ήz ^w@Pɍ}WwZ4ƽi jrL'a3B*Yrf2 1-/Σe8''m>q( 46ʽ!FMj92>4}D2@-{GU(A0+ga2kBtBq:펝g 浡J'F8]u Տf61u(+UT+M#ɪE{MJtKʝǐ_й|N&ӳg >4ڭu=Ӻbr^-VdE٥cI>Oٻe*Pf?n(EPۛ$˝&8Jmx;9*9CHbd{B,#5.CDZjnzZ #mq! R^|#R`":8yP"lt{_Z;>cp;9˜wZ"`e5 fFV̕S ^&C6H/ Xg -r`NHfGX3AwKRL;õ'KلޝM]>49s&Yc^;!= /`07b6$Vtʻ1"oLIy;[F- ^޲7$;G mrIVhfeٱ=I3\eCJ`S,կe~ƻ4.8 OTu*A3}lZIwlo&T97W+ڥ!K 6'WK]@ _f.p Ő({X9$v#/#Jq-*1 hS7ut*aV;ySJ!).u%S%|qa£:#P CrQٻ|Ƕ++WG$OC"9 GQ浦PߕP>Bi4T#chfnf( В?+Fw+eب5 Γxo;ضg҃M> jL^yD/UFrx9KU_GSDjg0}2;:rUGd} Q}q#:VJ"W'cG,Na# M*;d龄*UGnRʇĚJlP^p/w?E, {_jx##idq2N5`yQC;nd بv +J-`4KEw]ͭW$ElONLZKf bRN)MJg.6Սl rqU4F\(<O>u46ACPB|;:z9JC=RtCf8j{uN('DxQ0Wޝiu*zh[mq|l~,$xUf3%T}FC%ue+^jr.ܧ;oBA76 1x׃*~3l\> >j0 b< KJF־ DᢟeMۧRnRJϿBxO$?`V Z#DO6N&ɑ 8ћoXQ/9Ca)t>fC˲ОI d, ӅyowWյ_n>p_S Ty wbQfanAxJ؎Q!+ƶ7rǖX | Wuc3`ro/T24)(򙟣ѻef]9ZXd eFFQfR}W!y~pbH?<_HL~(F_Oʩ F,]\ky[ ]/O]ր^!@!&ޱX_1҇H4xEUMX 2 /RYv!"O OnCfe0ѵgvKK>/+HY*p`eJ+m=Q3dP.Kp5wA4&aʖwk}Hz!O[Q:/(F||M}f=U!c3 k͐CƼ$.INVᷢ/ѓŢJ ByW;XQ4@m#h4H0yvN5_fbwm"Ljtvv-Q MۿH?|cEʽ8Άgs P}]'\I{at{s[҈]<=Y]4PN)5B;kʔەm/}Y>,gi>jv՜̆=ŕec5w)X*ɣwJeoXfwz[> "y9m1w[o:y`ֽUj>`=(0G뮔=I:lnl,/=IQB&Y5[vAgZ @u_}&Kd s)&-GP]^.kS@Ųh7&w|{Bd 3$2U+zχOD֧QT!$r;ݰ8΂k< yѣ"Qwi Q*3#ZBE|G, n %{ ]]6.pd-yk0[.$(*6Jw2^D'$m59hp^иC+$[˔zr/&7G~Q)!J[!]x+0UʑX.aSh@jhz9nlTD `G@>5.1Z媍;92^K0Nذ@ٱC+ ,4rKnFB%\c0-]XF#tJ9 ]it}o'+3t?[iVg,*án\Lj\fH. ed)EdFkADS`iBc( ^IAFPa;QXѴ"f*x Xňe'D%1}z$f B9~Ay{t># SW߭3( d /U(!7H{ST7n" ˺}Y:Wt:-_f"JvD*~Gk3yL #:J$,i@]g0 }0By@Y;]q˄|̽·LGVWJTv: dS+v;m :BXD&Z=B/ÓPڇIuy1wTg&c`lcEڎ#ˁ'" yYrCtpQQȊ*k1c82<ⷪW\;W=v!-p]Ux|kK̲ݯ(sWB5Yڞ:Ycxe b-&1F:DJ;zr+j('CAu y\)-3x>7O&GnEpw>'rHqLDRijTKyIi.TZq⵸*g0̈́LD,FAlp= !OEP:bI iRW<#Lqi;@=P;aTUz:{._J@1u%dzK`f >UE@-w#w~_>7_{8>{FF]}Z D{DVHɃ}ntv]#~FaScP3P|#h61/%n̄nr00pm;SӦ)E~Vt:T(Ai7SVk.tCHr[Ɠh?IcLZoڕV4_LWpbuM8lf ?k-kf5 Ț{f wxs޹(8M*zՊ(T .qjNCˣldqXKWg-.>vzŢTزh VT:BȘD6[co@zΔ ?=5 ϳ}-XE#ÎF[~dR; &Jq[ /2 )aBš*5ںvdLSg}Sav-?SQ[K͡(u284#?IplCe3x| |E{AOF@5gX)bfgrCAƬo`\U-+nn6ְzLsL |VTN T?Ձ8E[ґvgs]ZTmυOSrt{;΄.r塢6ZP`xޫkח܈g0E/h)7_g!`^k'6v8" tB ʞKpYݲQ+}dk:77 oEӆ $D? Pãm),bv̮CgBj4z2 "מx|Ic|HyPx#Snf:1wk sК˪lmһ&PcU\'턺c_.7yyeJV 3q~L>+y i ܂'FJ_ZZf @S3>[Uu`5q YT)'p<2q-!O4A {}; &TF1A;,hpr ˤa[&O~sش}Oc-m5q?O5IzcD Wb 1kglh& ަoFljB.W P #CSך7Wr ]?8_$A,[ 9/&&'qb><^K[-Tմm\թ))"KƖ؅θ*Y8 `g~{Ƽ<}*I9J ,W*.񣑚IsT`;xwk 6#?ݳ N!v읩nHCQ}Q6wzZV8ZeZS}˜BG"r*ils Vǿ銇d*Xf%oQ2.,1Hoh}@ϗQ^n[IA O񥲯 ,?n[ +W:ᩡJ1b?-C 1SX;s,['1[ =OrJ@M&8{0v}Q,&V}_|bk|J'Ν<z17piJ@h2D[!EDƲN+KuY?QVݳn :n76)_)H'So8^b->3q(&A*"= F摒7i2.jo= {)rȁrMq(.oHkf2{uGZ9eʵ+J^.` =`|1ߴ,Hn zvvFn~vE~}  iL eKΛ+I7?"~WZPU;-O\C6`[ B(dZAV xtF?3GNȀEMR 1Nj ΥL eFhݝI^AcA_t<χm<,SAO]բ~,Qjɣ y؛ٙcj:gkvp%J: pQТтfoo_]/ RH,w~cTBxaԖ\m3JlЉQ| Zy+ie7A%;M-(4Dz=:˵2;X>:pT!2../OgN~7qUtU3$U1]F ݲo Y`Fa %GƝ!x 9hw f1{!O%s|qy>]6|&)0tnqgkTXqqw6ޟ$W0b*QrpC^{Ӛu;S+q1 #Z@lvDAiXm0^f>5G`H!*z\6Zyٞ0#Mg܍~vXec72H^4G͏ ;MEr|Q5SD!X̏uV{Œ'개>u 4i%_t}Nr&YFn' qBH4F.,i4H;Z[Ī^/!*ԛ/_Vų`;=c(Ԉ )w];2ÎT+Ae\  B>C"h 2˧J4GhvL$/&,aE_TLB/K¶),0pd[谲@V'X'!1P n#+#$TCř nu"SvEFw=َ&)tq`Ic7 k(kg\Y67\(}c:Gbn}y H|ȼip.3dSQϯ63遡q9/)@TXOԠp\Q71rXUi$bЋ, a88Cۛ T?7x8m G(, ;ZDvdُIXRPb(1d {t*EHӷl@[ pSwlE`ɄEL7uF|r'^ =Xn\*uvt_5:ל؃ܻbM8?Dؤ6`AxiȞ%q<σY,Q;΂ers2nRI[JNt2ܮij]b% _hx!©ۡ "85kg (/sM|_볙xZ P'7՘"_U&*b+Z.ٰ4^bѺ<p+dW1 4K x5n$q@Je_=,Ծ];ly@dؐvLv6O.T-{Cy,w*`xG!݌tо>V}OQB!T(/^=lQ%L]pY>)1>T MƮ̤gU*;bvY BO5E;Zs˸չ`GYWftZa dsiP'vIn-73cd}# )_7Ӛ(elq&Uv\8mdLK/QfY6?c'\-oGGk>0ԕ.SɆ(*}Z~IDʘ`(A'wqyܥՂj> qRFp[V]*sRT^DZd2xrhsEY[alq: F͕~$;5 Kp41qyt=hMgt!"woޞ$lphg;ѢAI;8EDO7w0w(ocSdŽwy`-S6RrW+Gt cE(WVb9ieXe;2l-"x1ޯ0u'|r"}k'r5cAo7ou6ɓek'uydh忶GΞF 7KV <5ytC!Crt}ʑ+d1bRj7Y}Nݟߙ7˥$)HRJĶok~foAmXHFv~>@\{R'a(*NGV,غ|9ܒfz>_Y`UFxѓ^3tzEO=)tTWy h ^ۚB2/FUDXb/v:%xnbQOo!:3u7NP3 Xxqy| (CA{TlЃ4)|J+ƿJܝ׉e(-ula uT4K7 z7W'kN"F䏛&[AFh5^` [BNL2v֪i̋>{ bl%hF]3O; UBqm`T^>T,*>GΨacb)+&n2#yi6Bꊨ6).(F֔KHG67/V%1&O:fʰŏ0<% Ws~ğhez9TUt.4L)_7bj~E ,%1SWRrZd|9gt@gDY.8P='Q/,0yyQeb,D>ɢ/Z?1򾚪|'C0byHIAhDw>/bi𐳬o߯ٞ\6`/s~г#yku }3c8 8`)* "[ 4.#2h[yțE#GheU=_*<)|ς|]a:}uu.pPOa:"$.w:|Q.1kVLSfB^' U1yG[A(Q3z<ϐaTvLzqўA,ʻ*-9~ΣN~2cӗB 22^]3=]03m*WZEa1/[F9E>k? /J} f6 Fuތ7)- ql]n `$Ԧ !>Qĕz-o ҝ~t]4.U#@S6a]EИXj΄s9$䌇`d.LF]ez/$0A}`h 8.'. v// ҨeŦDZ'Y }^7/(kϹΨْ _erA8~qs_rLWz#_!M<r &j8 Y5oU K G\#>b;2 dJ~Bܡį!Q졬:`&ՙ1z&tTf<Ī3[-&ʓtx 誙Mu.ki#ā2T ii7Zu6MlT%|R}(m+ GF$3f-̉y҈ړ+p j1W|s|tM|ՉDZU]RBuh֐cJ[ňv= 6 wь)k"@U}S s9'׺6ʀCg={3J S6c]nRl7)d,HЅUlsXvXYgX?F76k]\JOj@`JwgV$ZY2 @r<^cJqVzX#oҏت롱`\^/;EfM!meťߕ>԰JI,U7,'k)f6Ȑ^Iǡ'tq(]Ź8hΧp"}T)KVqÉ>^,&շQA:d&¬ Y^Ҕ)0ǖ[TGkDk>F m0ijrM1^QQV ⳦6ouxK:I{;M4֋C؜4% /խ?FejA(7y)eؕ?ý ߄Csp['(B+i| )/:?8oSUSz\XcU#uq"ӻ-Z8.zO@iO\BqIօsCZcմmqWD}+Fsbj mt&;.`kkC#TgHgH> z|[ Z+yh6wd[qVdI|;E̬d&* yO-&4E(S<5gdϟs(O?㺝8%´0iQ(7\C"p߷/1hF1[;[SBbrߐ ch6;ķ,mEl"+6-&2qYiWRݱ{L cW=NЗ`҅Ѫ}4[I2 FƑ\K0%..h1/Xيl@܅:΂Ť9Hx+,IUF5HynՂzHk4q7gf1܈ъ((ҿ-[W z_=1ȓ*^RK*[%MǩX?~P@֨AS5W|r𜣥((^x;g%'ޢ q1wƧk:5I`x|1Bmo:̍#wQ$P@!vo|+%QnKڒu<ߕ YpabZ)ҮiB#]~as??I!3qDX4·A 2'GDzHZM &N:>!a5GGQ,*R[%f%oiB~$*([w%,54K#fJi"p^C+JҮ^fg_/%#I!őiyT[z^`qyR > n-B4*ZM7*ұ[ ݬ-hs2q&M2^26|E{~MX{ɺ oA`LW*BO0ZNUQ/گãV+"I<jo&.DIޣޤVȟ3_Ki* 8:ʮk*ĨtM J9+RP {v&x\ua{sNBm;KC*Lt]8+YF~:/{*rކn yR!!V2W}̥ZE Ö6U\d~²*։pMPZ$ vn∤$%U|ey?@{d+ț^A^"m kRYQx~7yU])4s5^i\<z"Kgx:g5N( zq0Ò8~}?!{!'\w`qzgқjנr&&xL$0%F׿kǛur=96?c@te|\ȊƠq}ێ@ťe Uj:;'&s0 c.=l\"u#bG响e!XYPT1BoOٔGfzݏ9_+ {q9P[ѶQy:(ek wJ-=~J[~4됑G*^?ݦQLQ]Vr#ɗEQVg'i @a.Q]- 42<ݮA0+0g+Ysʑ hkaJTT#e,בγ]U=PHmw1d9<:A^\z!&0aki2iA48؍w8 #Z!PD})r$5 *@6磮;8voql |}FA5XPg+ [M۲tꜰ y|{Br\ 4mmJȊe\kU؞0FF~b85R]h+; [UDқqL81Y*_ܞlDx6i>)n7kpZRPС9 ,o4j2xM:"S1~FQgɾ7~Q4eF |*B 4 s>|PE")n:Y\d`:v11P WL/gR!M)~to?p@R:`&^㜉*z/|&VX&3} )=m4˕d'vG t*j]tU 1:W.1%EvaDǧʝ;Zjب8tv4X_|ෲRjmؒb!{26m鹍MڔhmgyDj<{;+ɕL- <|$x)MǭMy㞣S "QlR:M4~nfHo,ߝMt!Sjgt*h *%3F~G,?}y6JHzކsi3%),Ib!+6d |eZm,i]I=tk45D"Z)㈡{L.d,X X?G8!i;~9 iS<ʓ2"Bb.~ZזxTхl MRwn2ј1 *+p,`ڝD(Zs\aLm;غhBKǻ+CX-K|#yBO= Gku" n ⹖3afmvlS^%EmlOQc ~f|_?H<0T{u79߸PRy_)z~T s'TάI_C֐b~VjlW9Ìi˕5H5'"˝"jw A.VG&ɑCI|{FF꺔:$ȫ0Fۓ6i8A у.xz_ TέHdkM[9A 8X /|7^N<b,(D"nœBbmĮ]AOQe]!ióe %mnnb&(bpݻwO۽ug/ևu7tv}jف^)kFz$q4И .;%]S+s]GyDM0/f Ϳ2{|v 8`Mb{4XLf8!Q=06- LQOAz k#r7bSY~[Ȼ$cWgŭFavb r625Q *ct&-۵R(wt[BToSMoܷQ$~js4!徫;kЪAeg*՝Pw_$A%r2Ziɰm/ZUǞE A=4uN8 p47|"xJX61dDlP#Gf$EZ?QR g+ .(:j4|"]ԧ>8DF RSj]&eC^ބ$69 LDF(ɏ@ 4fѢWdS ?Z[#$LsgJq&{vyv|u=:ڞejV1iM80ڋ=DI;E {VT1( h8 l|@Bd\ ϛU(B^/>ȅHtԊ=cVSs#Qx'ӶЯP6Q=9MoMFk7^ V"`ٲ=\ὢJPaLL@?-=(JO'D`V-sTj[pإجBPnH zz,&ґTp8 e>7 O6`LH?4M}9P::CFc|8gtV&-j G|-%fgOEցBօƃ~>!4rA#k^Rf*Qx0Gl`'wpV$Z3kx6>UqdB.4x4sdWzd}Rڡ_P¾C)XTwд薿d&]Ny*xw؝B_?6iFG^Vaഈ_xm)"udۢ0w@92c9zC8-T=]5_ Sx4E0g| |a~^)gu@~຃ ТF564)@a(=JɄ$ ڒR#܅KDZ'mРy5q qaʖ%pq"8g>#ɈƺGP/U^`j>#:4~i> \!B00A#^_v Eb%.}TC]]dih#R՛b)3hfvYٱ|#;E;YA#x21.y!wEB7kLk1n*lJ n~&#<ш.`c޴Jsvkq[1:oIR`I0"F>sdD ]`>579er}%N搟{-Nޓ5]a<Q! $0Q@(/=AnݩMHdݟa\H0CF؜'ꘝ4Fi!avͺTj|3&}-L貸Ov3Ri/3QzlCG֢ i=^pf?ƚ~MFx !4 ޶l*O8Hcf1H7*@?- 1I S-06Zs)GT@m:z0Z~M24'[Qm~TupI?b*k!MZTQzwp_՘/dunPOϋaaU@G12|BʘUȧ`( P`fVXQxN˃nz*ع-vuu`7R33A:+e?=@v(\M0Y=鷖, hcU<]{rk1q{J5J ?A΢`dNW 1ȵ%,>l\L+1G"Zk@eML1A&Hߠ\ʱHVjHE5u sEo9IZxL,Vxv?'u@W4e{?!]qblwd"\'4zCmۈP #K"BjX_c`Fl,lPMV%@簚>pRuV+i^Ocvz)g0Ŭ 6tcHl0(ZO0 /!vrS-}9EտK'e$wIvwb6nِJ5Z Vx?$5hѠSIX-_?a6-]a*a豪f'ͳcY#}*0T L[>:)l}$G;'AL9&OߗHGĊ KPgq~˟O{dt0Lzi -W34ͫtRӢ"ՉFEAoVŞ#K 4lβN^ 4 }on5Z 'v1~QtMjSl)#Te,qG8&Xĉ] #!--[”QL%Y\\{h\% 5(t{!e'w=z Wp{t<]H*We\dս6k|>1M02% h]̜{tTA|= r.6ߪ*y1(ul\s$Mi/W `.! 7F4f:D lf-,i~KsUpqڞ g>0kvV8o6]u 5;Jwl>p\Jݟlj !_#TL 5Ems06/ƑBa1>_ǰAJ^xp]7U[vClֶYY/wZپ+qfyJ.>Slj x}̸Cń,'Ѝ|ܹޢQ" gxk+6i]ƖMڻ v]J18EHtmvuH+|N?<,|qTVuagj{A:3E\%lY:wJ;NzH4XhUvI<=iu4ھ_ Kem8}n^!yŐMԦi# lW|tKZ}U@VykR0OԎ@otOuCcVٝ$T5,1QW i-²o=sKuS(oӃ~Tz&_%,SdﳤTipKWث23@;{j'0$D"Ҙ ~]xe\8 # VNW{`qpݟ ;o& L+&isbWX5ZqM.o7I}9bŵ!H#vGpMM(4滶4/"5s{]ЙW gW^ȥg|08] ſt{aZO8^o ɪċ`xv>ո@}Ā{rV>fD]½͉jo2׃]Nj| D[LuH}[=r8p)U3ռV A3rtxLC6o?w0\AnR28 0lZ1"X AC݄VSMRώu3d~WqhkiB~3+AT2K=s74ǻVڝCf)DX ߗ;r׺6霠W8u9RfyM'{l2)Ur>FhJ^ 7 !lX쯒A}-4:!UȘرW$8ZLF>~Ez1Dh 9l+pFH@ ux}N qطH>yFLSw͚'1> |<?^ro)7辍i$8{6SAPH9jiA!I9 *޵aJ\ʾ v XV5u]/AHL`π|R룺mNr>]Z-mlve^~'#AX ֽf*ﻷtY.乧I%wtyc >GQ暖 f\NW.kl &oxKx4eK6Sln?FGa`eΏr G^A_2YٙӃv3ottP͔bwge>L. D[{^-uY0Ą<3_d ?E$d}H"TeEqy~RCssA㣐<5 -_ge"^'qj, Ό~+ݧr G:+;NղI g{.X,gLh. &LXȓ[Y l7"R Z{YUf o#'m! N04tޱ "P&ƽ?EGCiNסtJ*MnUoIUԫD/zԩE4FjX#^qu`}ڣ|"`EJ={^ J)X2 u]aw* h3 $i{~ʈŪS"]f'Gw+bitF%+^s+cyEQKT+Ws;^O(ޅ&2Yw0ֳ2# /)Um?ExC([z*AQ>+dTvOصҀOA7Ʃ+-_/my̗gjɳ&}=_r?7 iȓt b79Ց$qG$@꾫^on}̟ߵzFG"&ɑ՝PqBg,9:'Gks]Lx>6z327uTkpo5[&Ӊ0XƇ^uѕ)[ͤ+?<"0 4(yԘaH߿ė} G+ZibӢ h D?I 01UƮ`2k/XHJS&W=Iw\3?oh7FO4xh׷@ݝN>O;w،RqhC{㜠v DBFݲo+(qe."uگ[,\c*e0Kd C6[.3"-Bo}Fi;8@ֱFQm FAd.h1DJ!DM;V}}"{h Q.Cd~mb-fݼ Uj]N1b|e \Rꊖ^7K?j{L!oBn!` xLcPtrOfZ͡iUvYHUw ف?2zbhOyv -i|auU-;YOP"Tja3ڹ `<騂F?AȍѪU&>g=+4,|۞6זOs3MMy*ލNQčgͭlYw|^bš\'*U5~0 },a _Bs"u$,&`lo,KՌJJ&]Xky}zQ V'暀_ʳMW/ӗǦ2qszxn|=`\ R?)m"(\";qW*/UdK,娭.j|VGw{)Sg=̴SȀ jNJ&. 3/un-8k]#nm\7 mH:3NY zCr9嶧"N}&|* SŕԦ{])\Qh6ͯD=+ح {ѫbDH=b'^Zuۦq=znklRf!OöHEB5;s:tj~  ev]辷uRd x݅ e'21p#H @7xC-ԕђL+f ᜍ l~ masV;O7Z_| Su8W ZA㻪B?(lҭDHFHo _g&F3B?ãBD=cʧps=r|`t@;gS`/sr WhUΟfg>cᔮw9; :aaW6p%R%(ק".v ?"]uqF˷v1H9g =XKpH],=Iwbr8I?یUYwYlX$aqtd$hZ ͦ`]l8г;ӥF&ى)gGL%3 ߭8 i9ls# +(̈Oq?tcs{yCe7Fe޹~XM;yt\%Y[wS囑 r3&,g/{} -uBg)E'jZ-]y ofh }m}|:b̅HD1u9I(q0w6N@QIPo|P^tEa.2pзsI]" `/ei1҄()% °woJ >Xb)Q>3*~y4ge +47l(>ŋ n<>a 46_ܖX G=zL1/[Mo:3|*+S钷2SwfQ4] +%\ބSFng7nxy)̙.~Olݶ`E\3žf;m}UT!/"{jŨ'Vhmu:XxeT6\fYo?l"1b)܁EBwP/zOߚ?:~:qZpU5vQ"RNf=K_7?f@UI tLfy2$9Iܦ5lEɭ sޏ@p | ;y2[>yAɴD!F[i3ky1#|rnXЖ5^fd J̊ڲ̽ɺ1%]_Mv,ݑxpzو(Z J(Ƕ ltSoj4ac)>tK <,YyX}G]Fv@:79o{oPljֈk9Lʞ (p6^UӪM?m6X*LTh,i~?5L]{_Ym$jsSZ Ҏ8|o-=+ࣺy IcVJ@JS҆Ϲr qfA4B#2 :Na&OHi & t@^"89Aˏ(-UC*>Z%^ wi~Ji=?uKg,wq}ADG1΋"jH)))je S`=1)@0uas 4D4 Z4wdqdb;GS+GSn!޸rj86X1n Va-o W4_kW ?f@M Vɷ gmNJUُsA\xl!ͧu];],5;hd߀ LU%,qZu iTH{'qZ ~{xm* _RWIaC0Zae& S$xzFG/*gv;۱sRyi/ |YϡriLF>;"ԒyŶA(4/g*]׸Xm)-6It~' ߘU[=9q29yMF ?Սԅ80-etzWy6R~uK1M 5"LXǃ w-/f~&jDrn=zDeh_,5RnU׎& \*'jY,9ZjP? Uom7wK*[_SZd %!& yUrâ/ [ڕZ[VW#:_Hphv̎r3lMIQ|p[9ѐ[@4FFꁩ!Y(u?{"QRAdCU!PxqZn j"O4s|$Y,5)]AcsXt*vH4pr>Vhi?N|QQ+v.9R$B<PtϢI:ROp>(@^0GO(ÝYTb/rΝzU i)Fva" xٰ~.&1CWQn&F(Y5~d8O/~E2ϊ;;fG+=KUw;f Z&"c=slkaōE2!>V]ͬiޔ] Tݗ֋R ; [dRpɻyi5r χܳODI Z+T7{+?-3!UiCoνؿ4Prٯ'!-J-LxfZN>` 9Wފ0܏_ѩN63fl^P_"3.AVo%%zi<ĦNQ\Pu2jr (ޓƢzK8uطGoWI YOQOoQ׼p,p.lP4=+IkY <y׶>N۱f֫ך*엺hWDlj1GN;5+md! d=o'!u%qr8~uUBRn瘘v)'Ieobs/=Q_R`(7wb?pfKP-"_g\agffdA > HrkpLcC|ޥ$2J_,qތ~t^uɹΌKi"Aв+U?YC0i꯷JѾ4E5u,\FPJ7 Y{i4_f <'(yQ FR0D&/mJnt49.4S ӔH]ЁzyF6t}}zn_K %F(ZFE0ÂNg[Nj}9h7Dȕ@5}v7Rocj/?Q͙T)%ZPt zF#yv%65>N/8y&˪(A,\7T _)\Ig9T}H}Z91bGA<}MTTm֍tۇ|?Laxr U~ɣ$7@)C M8|~ GA(`DSͻk5$03s8?ix56!:$&Kp*tg!j,;%ˆM4}KQR,f"xdpzUzBT/6' ^ev)-;AL  (%9ܩcHn2 UPjGu$mH_ڡft/]9X쑚u,Aȧg̓F| &[h^1'9ZlT-箟Hxե# MAdkPu2u[g3j'?j2@[Oh݅}R#'k ͏]8ݚV`#GZ1,)>'FF JiJ \ ut_((ڢ2F$RfFӪ~P/ /Dz@l'lO|F[1u*@twn\KZh%bN.+Y&OEmH s/I Hy"K&OGkvb?<7 ѵ>}DHp_n̄g>Nն*k :뀴2I-}O!I&ںj7q @7y4d=eq:%_PL ۨx9klˢ8,HvE|OM~*đw.mIhQ+0«sVVwٙ i`wI5VǞmHyc=1ξh#pgEr9?~@ DG@ R49Q72\zYrGwKeMpPP_-zN|4z go'6$jd(#>H~VL]<{'orӃZ #ݲ+{Cc@$I8Ŭi/?js>Nx^+3Y7㛠9jչD$ $b.{A>uJW-.AYJp5"Ljgkaά:^л-O8J6"fO$s6Ccfk ?%2U+IqXyt7(  ™r7P%0vCM$a a{,РH@~tA#O31i}C;[p*B֭am[Sz ؽ;ډ񇚋䳖mr5dO).% oj5Q퐿C,d"6+v9Ϳʤ[i.(Uc'XOr C,?QVH H!iZ) )j!s9 XxYWR3h"@T-YOfL՝y_b U X6֒؞`ZGc9{0plos뮭:qՑo_;.\g9@qza!_ҽt-5~٦眂F]"Гr W(@ mn30A1V:,\fqhՂgAdK2$& Cg$iC4GTM#5->Im Bۙ\kBʖ]˼ WF-gGC7E ,QrTŗ@mVxsHޘ4ǁ[U332pQ4RvRΦIX>tǖ}=nGIF:AJ^X>IG3 jzs{>bZZUkqTgL' eA q@7}wISx7CR%u&KM>uNR5P rQpmbˆ mUhou8A ~H!o4`#<KH 1PЊå{cA`翠Kd|D%Ul)l }Vb #V@`L/tvJ.DKҋaJ?΃=F[NCf\JL/j܌OʄSXkXzK97&Nr|RDP" 96^3c[e_餑XcXr?ׇУN@Z"uSq~%(p=Tn8z31]baHdO$\1W@F^ y~c 4RψzfOXa =-XLASQg hwW~Ea{X!$y}?}OVT A=E-=#)\ƪ7koXy7񞿶UbK\RiiJكli l0Nc.03u(Rqzhȵ,zT= xQ%b]^-ʬ!D\ ar0@ #\ʵ'π lkAMh~%θyDX 罫=|dz=:yċEk^>oQ UQXB֦3G|,$Q+8>WL3e:Iy t1 on4 K}Df@x$|V~\/^= dlq%շżJ[.s!zڸ \P#H{ ̹!`[*@8 @Hixs%%m֘#.W _6i]iM$\;%A iL"+⅚8˕:. +5`%.! mya;*cM7X&ى`I!i :&m%i5|Dؓ,s=G"|ar\T&ll$O9/,d0ʒ>0jn::^aB0*lgī} %U=!yE_D 0>mވ%,}Lec]2@@%:_s I4!vʊ>Gq?%w)iwa!v  $rHC[:B{ VfdchpQ;Js= Y>NRMӢɱTn7<+5cXS g-fn(w¨ Ǧ7}u Gz &YBf d,>Ԗk7-ՐU1B[Zᆁff VVxj;#=`T$ʊz{繲x"] }G1ӞU'_cyDrnguzЛ\߇]'i$wS$qc#K!3 zFf6W7t{>ga>/A:bP/d[`"TaSXNm%?D`iM%ts((t-=I`X Ϋ".W78+}s5l{ЋsXN㫙*ކ<G$3-כ1o~j3N4鯌<蜈zv_9cD`)%TIEH>JYfb>O: @X~ijٌ WVѠ#~)~AC@ X*>؈Wt_4"2?Jz Ő~$Gxd}G4Z/FsuNХxS2'$(ndAMUK/J~&Q[1I3J;8㕶{;"oA`ikIt.5yE}aU\2i5+{ :[R<;s4k Mv0ݜ1&BԈ*IiLd12;X9NbF 2Cz)`v u hXch2_Jey>OP^mI>hNL㏣$r0%,﯎Lf&?_WÓ\m7 Ռ7vG:~[sIiFe'j%F/4S N7%j=}1,i2Xݤ2!UN1 '9vq\ vƸTH9c}-p=s"V9a >rhc TRCFd8PKu||OU2HK3H-(\Bgt=TAn\o)Nb5N~,w#?<c?ꥵXǒq l `z`3t>.ֲЩ)#v|*h),p1w"S7I]]xb6"9 ljxAC 2F5GjLvIx)R.~ Y^a16%mQȄŨ[{AS*C`8MV-.%-삐yjU3(w Nur ` 8Zj4n"*"WYŽ4ww9[;nE KujhqSO۶z@A an Kwx-,ZשaZk8^\Ł5k`59dR,)QH:.A&g1Ns娗V_A5W.KI~Rעρ+Fj MeYof4w]C)<LJ>yyՠJP9e7*BU:OI}ZIkl4'K,+H/a|:~I0dؔ7?4: bv 'Wr":b6^k(a{n w0 `t_ OP' PKEc(]uXd}CH\͉kwlg것 \8)& /SjzA(^h $ ~Z;/RBPB9DXT-pl,AX<{qbR*Oi[ L [יV;ZS=*y MWh[Reѻݩz-Ը- |\xtVisF[_Ԯ;xz? b&,c+ޒ@=ώEF%xƋؚ҇Ǣ#@#/AZȾOpʢ&fE'o&͟ph cOac7t<+eMht<77̒1@۷ ed'r&9稗_W!,vte>`p8UY.5Z5=IN^@v46!j˴9~NJ6r>X Cv/\@NL좈-Wp7K*>1 3ITp83fgv`> '=ԦicŌ dpKV[ aQRTw_.ܼ!ȎuJ_Rlqq:̈ZG<!B5r4T6hq7%Qg ue7~ %4=!ڡYS`:*ks`fu&&숧&ћs0s)Io6t ͹ubvYU:wC~m5ug`b5H8c]=ڢJam1 GƲ*puuaX*KoRbI^9l9,gmM6'# [U,Mp]~N,gU+b+pI8DF@m- zQd#%ݩ 櫛O U>|\\oTV.c SQ5Ps@P'ubaXMuq2M`#YymLjX8KckAݟLZ/W̙9>g@}c16 e%Yzƻ,?M(״_Ql@/7@ak-"4)m'7.t࿹&)aWnk3oHe\K.itE|wq(SȮ/Zb.űk(LrX@g.YݾxP%ӵM4)-EL?ѽ30 4플P^!g&[6Kmԙd% Q%w0R5:c+E,ŨFq;)yE: A݂]4[Թ{ۛI vK ^ I;H\E(:dMҊ kB Ut\WFbZNY78#߸ej&]<2h'NP_SZ}1R'eVV;Y/O.#)5 qk|-~'h3#rSK#)R׳OL㟥+=?os2Asz=mMBc- i03O0 `ፃ *S<_諚ԭa #}M+n08wLzW`[}Lzg6D<ʐ&(w6!N^[{D.L!I:&~,1oJOSRKƗseu}*lj_V~38)PYǤ8iC7 O떉A 'J@Ja"ԃ!|EUk=(QG(!V+jlWԿY 4C]?gO/14-ȡ9:Ɓs=(|'eeAchׇ})mLQjAI .1>`"oˡ`Һ)eɝ Sk/ˍkiK<>j?ߺ||MryEʖ"'5# Q"7D6ro&ypL!*h)>ptZs1aVʰvƖ)um Z82RT'ĐKzo_4G10ԝ4hB/6tQP:godOAYjw d g[]k`Rt X9Q7CѭHPzF\gf Q]T8IGI7p5gl̹MzF/ :Qb\gmJ{i'crSKꌝ-_̩_}ߏR^yT𩾴NNw$d`oD* P| 9qUu#NQI)#/'sHm5=p@S]ߡ_k~k KnCۘ;y7 5)I0͡Ԁb op-w&Jo%m-FVexBT! ybtTXbܼ?fUVĦkNs 'x[yǬ4!0:Q՝Lgq qSR!ʐDٟ݊`)@Y)TR1>3nr3sY e*d-)_H̗֐ApD"Q]Ɂy:~Q$\o6h'l$YUt%Ů)v3? y, J"j Ǒytg%Sf¨{ 8w#P`o֌_[ A :o  JZ݉TE` >i##`#/nL"5;k[ړ#n98،#O +YRǍp"8}h)U|K#A-`+di)Ѭ{R*iO Ok2 af 鐴N`[Z?lnvs4 6#L1uݑ&Aw^##8߆|!5ȱUiM)oo9z u䓧\BҮjWǡII׻ [39ҵ„y~fT,/{%DtE;vQˢ_b\iwfuIQ^rXOo7'sG+"ؾfo,ܳ!q dBq#cluBӘdg 2P*sQVaH{-.%RjbG(% R ԉtHNrz>?Qy$WS]n# <K C7P#mZ@-V2~Ix+;[睖 M"6vפHiW;ŠF{9;d~?#I _׺5Jo+ ~1];hft\SQ0&S@6X,,fON>4_ "cr<43O) Hr;"'d-of 9ñ rɢR.rz>ViP=HPG q+M%B6‹S|=yجJ EC>W]:PM`ܝ+m!+lK+,99$O%xϷ.u{kyRؒD9519PvcFL8~cAEoLt* xaHc[L/BYlTvJUza VxT}/ cn_0|Fm4 օP*P=.#+7p[fҮ8_5d>z $qC͌aƳ/HXŜ$4 "[#EJ C`%05O:mdj,z/& Jw%n$^}L3.0ch58< Lҷ< 6 B_G { ;&#OHlzh DP,5"#/[lX2+fH,CM;O%_=-vN[f)`ݡS_#Eac׌cIy?="myt%pPeЕZI_zjd1(}75̀ TbQmHyk1OoBf{fܛh̭ǭFGZ \DvXdIv/n'2a*V!eni)]21*Pa' P o @ v YCH: -ڪC~]b`Xܻ OA%0LgbG}q+%~CvJk?KЏs| cHx:@@:8;V߁|b8;ݞRM~,wnхA? ݛŲMZM9@7^LQḭPZ-yތqfi:mq-7CAtP@i}=kXgP^Wr>GlٯC:pUL\e&qq5#ٖ#@K3#U#1 ?ۏy|Y);TOeXC|Z֟yׅ;`Az,otSZ{:V78i`f_026zdAjbPYu8^^)p-}N^+91! "`27p3c5jge[QR Kz$gӇp2,+ԂCx<'@;jO/C{m&3)$*gCfmOf0kp"L ӹ6nZob&2|z\ЗwF*z\EI–[Lr"$*⭃5"$!𘯒;@`Y@0a=b!ʛd-c CPKŗQ /_dɃ)}L}!Q{LEة~+34 fJu}4yrX PSs!ه0Wo0ʪM/Ե\*f` ;6?7Zy5 Hr.-SR<2rW$ b0#m([%槥LS7>UTv@|UVVBTa8h#))^t 쉥`E;Z28?:.vw8Ma ;:e,7x>lgVֽ^ XoW&E4C#oL[b/o$D_Qx/dUc\cO HvHleȎ TZ'BfY>+)jSWÌ7:#4&/2y1Z5ոspDY-@]~> s].o>;On2'SF.Cv^im^"ٓJ{N spmX5ӡPBd` n+ߢrwvGC5Vic;DaN[~ , m;`֭ueiBYuκX؇Ja5!1iJ(yw`=h9~kpTl%6Ǧ9r=XM(;``:Q`"*1no)n=^oqqhB5N$bſ {1{z] +|Բw EWXQ&f~ȩieKb>P.(w5]`cƵ}ٮ 7c+$ƒtHʂIw\AD5Ah^_P)t2qvnM%@_()}Zg9ASP|q+lz/>*S$>!B: aj詑$SK?Ɉg%7qY"/-B贖/ ܀vYΓ{.%T (0ړ^ب~)E%`"%g#zlu%7j^>U@#=ƀICދoK0|sKtiSd)5SmKƅ׉4kxjx%Pi͢g: KxZ҈6Jz4ijFWs#)bin*2Q曶 ^'78Tem@6CA0 ̉o:ݿ{$(zj֔l~! 6 dz._Y؇sxemAv[P4ӸI<1nw 88Ǵ}bj1LhT|7jsFq i<<"(VF=.:L.$mBC*:j^{0;a)7ѓ~7:?QNR|nÛZ{lRcSS, 38Mx&Kb]TY[ %h07n` Rj[2܌ۿ$9\u2┆bԏƗz;k= MY,@K KdDNm@&D+)Mc9vq6g!{:2f|-$,Ik:=8T/auRQtƥ#HOv4Y[֓{+Gzdt®忉X1ؔۅ|yq۰7౶ O97ݙ8:~ҩofR{X@ 3#Cbp+b}O_}'6`);7Q3OԮ2vԗ@GQg&#+Wu.8Vq&\k,1sR2X ̕g4EohVC[jjΛpWbVL[*#}h@VF6#O22sc^h)@ien9#Iq;c1Wt廻x+43Vvأ&?20L8tƱKv<1j ;NkDž5<_GiPc2oNF1֨+(W8Ez FZd W~I5q|W.>AL9P]\G`cc2 bvGK6 Z6wl]UӘ eGV}J[fUy?VMY)ڹgzó4f֬t? Yd4``B^FI h)0fii3ζ.@{JAaH94SL񤈺5F9Տ'$KtoDNx܈(<6霍 ʗ=QA;O#k6?zCI A-U$рNye n9 }sDeL?GedV"fݩ6P+!VW-l%fcxESgAȎ1H#r \r1?.%rdB3oAA15&;tF"wԂS|ppwDziLmsO!i9xvl9g6J 3w~2`ۆ(GLarH=(P22g2V1BaG3IG6{umVKt}hry1myː<.CƮ bpCKSr=LW8@@霒S|LpM2!:#<"dC z0N ix h:QYKhÊ CE[JYFoZ$FhުpD_'LjЦYs/q]'.6 8*c_u}ʞ̧QbyQ|D]!d_9tVL9~5&bsiFt"B>$=UD&PP; `(SXrD62s$L){hgzݓ3hKmj0|GaQ"$a`?;<x-ROs(՛F!nuu V*  ">lTG]Z; ZRp^OGq2C{=/a:[eHgߤyDg4YȨX1M}>dD4He;9+PZh)2 v-pTW7P`Ye2hrLuQO祑Z~̹#=2dgK׷x4K fj x4%up{7$=%O][kMRyVbt>vgXYo,-B)vT6[gPP@^L~^6&Q).>,^-\w+N^Ox1No.ά2;YۂZUk OҼp:H R r64e5BHyMڃZ@.eJ,EǠRq{-Ϳc;¯KJDE7\/)vP,Ŏڂ(W*'Ne'{1@5w~o@G^o;x7`^xAx̳ނ3zb'&s.e\/Ux7v z RUJד*~z{ oOZYmьc5%?SGm:`S_&M뵙S@KD(]eei{Ji}khp.:U9, އR:(#-ewgtDaϲ/ƕ9EJ`gMuhۈjC1+F/Th6ôl,}M<\[MXڂ| [O]2dk'jak323^🚄?vo 1PѷMGy"c]X*z-m׺zA3%麗`셓?мLh!ҵ!dKIo&j7CUN@ یS1̝Zv ,+&!0>X ʇ֜AQUDw,ldv0'_c&^!J9FqbI9bP"[wEY):aZAYұݵ#]f&d[F#G/e[81)y-IE 8~>J̡UC8:hyRڇо]໧BYϥ[xvt}˗2AX,JAB9ݥ\ pwŞ4H]ytL@Ѯ7P& M8a闒mM0`7'czUےx#.jK) >> ``aiRpz?j:vӎRg$[7~aWhU&OLp>zd*m-L_z:')'9Sv;OK|} Ny L[6RL宏]$T hύ`QdPE>sCUI%zC\C^w}Z <ڙNflj#uLeVt/Jo+u!8]<Έ*Olh3$rq(yG_M»N1ҁ!NX>![ȝ9뮍m:)3*Ɍhe|n5"q\$vi@bG{. @?Mdg.¨8}48jӒ`|'v$]_ BetCf m20sn#AB7-V2*hys'DSvt+BXv2҅qBt6ލL 5"AF VAݵ;QSRg7>T= H%$`ekK#l4&G:o ?jGx#-TR WhE5;qP0>_#"S|unqbMC-?':eagHC766~* Fhǽ2?i7vw<_viH)!虓]U z,u 0D41zٚ^Sl@]g+4t$B! d=N6f݄=Gg_HrH E5bT`y?Y7\& ?,>MetP{)T۽= f&CB?nIA?W|L]ӴӂΙP(|XB5dJEO)ǬlAKxM Yk ӀtwMa8ϡVa0;ۦ5mAMYD58ʾos)KAO<*g")1̨U_@sn۩~jK4ծDcᤉlaf[~_TBf*| g#UFݧmdW TҗKZ OMQ=L8HT8`>*U[f<%MRO Cp,SX. on2K8".x%8ur~~1l XhۯA+G^A@`Kq퓪Yڍ2kMc'ޫ@7>7FBBYX:hbڕl])a=.$wNr^6GE\0 sQ WOOa 旹#B8~6$VF2C0.Jd1/E+A)eOI>1}ב@]+'j~<)Dh)VL vc|d}- 3j#%pS8*\yK#gv R]n |+p*&rN-SΑ+4۹'Ǎ|? J\uN]u (ÈLLb\QP d`CYk噯igeakkעA:KA +f)ǬٲxN0(lu ݒm^:w_1Dv-ݢЅCVJ|FkJbOϹm~4f6%V0>?A}?, 9i \|M='cCky NM5֨,7XPx/QZ °W?lG߻6+VɬR? OH lﶁvN8_u]C?OS| 55퀼?TȜhC:P'V.Us1tJQO&F !w*05t:~!lhK8S{,uw+Sewoe_b+ Zx3mvc/ye,A73fr9+Kj#Hg3hcly 5Nnd-13&I܅hn4;Uʥ$*aE>[a5EhmK!bh ͱ߹L?69\54kAjeAv/0yZAaS#᠀6*dI]vj-v 4ױ ^[$bkޝ| vX# Pq7; Ef+zIɗҢ !&4ŪMq^ ֧b_;h[B g*/TL\]coZB/)r͸\yP&Els103De?-)93k`u?2<'].RWnǻtS9Yح&'XSqݻ &]G 1lB7g>;H,@>9i׭7ClbA48grNB͙aW̜aKhljɊȴ=Ju1,&ݕPS,:z \tⓥ-V P"NcDuAV!. /ҞgOhبi0_ ǽ.\NSS:-;_=/x5vES"; "nmL.oyAohW'>LJyD-!)E*y(V&ܕ#Fz*iߜY.Cxx><ϝ SD,'m H8Lkl*`'|(CJ 昢2{9i^b:(f1>AL zo@VNF^@Qvn(Mmo‹Q%}&Xvx$Q/jf+hb~w1vpr#4"+< 1C CfxH7q9{_/L6BņsTW`*1 o@mج.qQj%uyoB(OVM  F{]9:V}Ęce !%lPS3cN D{p>֚oTH~,lY]inkg2(כJԸj1qݢW8Ite̿~KxkL\%1NYuA|ZIm)ps\ Sߗ2y`8z H:vuȮ j0 T~GY۠B% F w-p+u7ޅjvcW;/s5S϶DGG7G |=!HR“^Ӽ[Eă2c@m4VG2'gEp`n˝[ÐgCٺg<kX{[ D_tEŽϡeSDq42jl4`Ur!.aee 5E}HL`YfX3;!װ%)Һ*>vR ' |ޯN"oFncP)d;_Y%._?ERh+Hjss˭!"sA*ji`R2bh9*#`C|Y@jRu`YDIJtKdT4gZ&47];@"#V n%Do[' >&grD4Ou uެtPbݵcݟ`rs ;zEk??'u\ȺyB~f?T]} +K_I2kv f =B$ #-{0 ]sl6M\AHreG˭@:_c@@Uj]O StUk[_Q K8|FI59 Ёve84V*x:P2#2:5f`K!vIW3$[B['5v$b4:'Im4&~heS:6F/-ڇȅ#@k5tAZOYf _MPܲ3{Ԙkjgc[&㛖[[e'FApE* Ԥ@b<Gjcߙy❝RX޵+2hH)${Bl|0"x21W>Vw9="$ktdVQ-'3AGFDgco: pAe$KتcH E5Dia˺fW$pa'aQ$47ζx͸酰M#JFtA]C]k/7:ٙ' vNI)K. Y{C)Ep LJP^@Ty4hu

    qIOQ4_+HdTQ&Agy6cnMy" J};4Z5! (PYO-^bK1j?X#Na%F1Dc%J'zݠ.E6¶u3;XN'`hWK{Z`v$$m"H 96JkFyz.R@N7fw{2J-thq~O7Hb[Em>ĔinIdFyuԍ2BWplQ2 !A?ODӘ'ۈWߛiK70ڳ ڦ)עp@v >L')޲R0H;aU'#a"$H\ .uW64fak !m:\RMj\bXW)ޅHZW7g5Kk7Aǻ`295O=pn0Ś\4NYQR{etAV}iق"tCB@s(Jd=H?wĮͭ0#6i/\>:ц!oŒUGD$J^6 bJe\17)y{ WgrQjXgI0Z |\+idazGW4VI1'/jGldؤjP <~prKEPQbǒbʛ.qof 1* {2(*#1[b:8AUt)0Fы G9ƷR3F\WM8~.΃mcXT^ƨ2"ؑ n7ZY&b Uqo%;?g- @(Ǚ)F7\@J"@PϨs/*yUyF - vuLx` oU'amtI;KS7/*k[h:|hgoJ_>:ڻ(-2ih =;WxֻrPZi}D{Nj$?ޟva gGx&^wu"({:-<@Pxq)rD/) x/Uu" D׸IB":Am +1׊B 5AԀs[kaQP^z|*/ ,*!8+7c%pZ( m3#CxunIyM9aԅGƞzgɑ Pm!HroʶM@0ED"D}e3U|K;x2U#rU3yA+L9Af=M}-3-=@ VR.~iV|G*¾br?0EScy(Aב[⓮z#Kވ_wBu]QT{HDJRu->Qɽ2Ϣ& !tiACĊc Y&lX B~Ř1(&o73S-4Fr~A gpiʹRStD~L&aY>7GA-Ԍ!uAeOMډBa3acL 3B8׽E%10 EVQyÇ?TP}2d (IR{ ֧+-a Hj:H~\WF!ҵԎ@q}-h0Kw{$l8`: Ekl>8@_t\me W0J~'a}Ą:9SFTpHZ^<PGS,U5xn*1?$i{Jhv ED:d9b I*LLoFK۹cQE0ׯQ @ pڝ~n%`dz(v0yWƘZ$IoSjJ=]ΠW~ٔ9 yT? ugB JR \uJ9baQy ƢO̻ȾEٲip?"S.2m>3b[&9śp %wvty8AǛ_ۧXdwCpw#~&4t Qխ;fB? &tߚU؊Ւ/)42.n ?fqk_QZDW7<ŗ~Ru,R4v'aj @ px;b-OiSK%adʛ0L=3iI-"_;YU,tJU6k8h .z#c:Ӫ!G.f2bkKּIx4.,L87Pmoi?gI;8r^jb.siw@-hu~LȺĹA.h|ԂPk 7 : J:4A9&t}MW- jZIR2]j4JFliT[hk?. 3F]7SΦzJkIࡵ-J.բT_WzU0w2`TV$4Ԛz9謤Pq-L} _'b' 2Uda>]TDMĤ"o+2mMtȿ1, }W/uj:&[Ճ4r*B=5:xo4*>=9& 4 i "|=}nY䔌r)+bS,BZÛ^~1{ۑfB `ptLuБl osR/M79|Rs8 `:g+yBn@Ljd+BV]Bp,6"~b*K1ށsX䤷@J<<|- 鈏+~Y|)tEn_LgQ ǰPyL9F#A/BC#}?&xic ԨY|Iqg%VūV w ~JE)@UZeRҥmsr:kۘ+NsY 8?uރ;\q4tKt>_Mz}CG FòK!Hpբ"SҴQP$E/}'[S!}{j1g tm8I!-*ٯc@vk `'K}VH`,fd;S6%3W/~\y>Yj4(FtymE<[ fx2nuVѪy;'NB>jGwX|VZ $M7CWsI'nȅ਒~ E KL`]{LGx <۱IFX2[gtĖ^WXynYY6Jnώu U>(mݴ(ryv2BFi h+-.cȃ44=(dA17eTh6É'ËS %XisP:!(]JG0<+Db6X?0/;Vv-Qޛ`Eg_4w0 5~ކ5>{n?r~!.O㿚#=̜=3g ̋`/w߅OH&9jQBO_?h Gp1r Z@!tXmr'F/|!TszC//:W t.}B[,/0zG&.@1|3qԟN/vbPE4-&뿮{I=vkYڔH;UK0'?t^FЋ tZ#>?P jTnԇRT-N7@fL;9ce.{x$w/V1brzT_`|T~b{$204{7l® /d\ ;v"p 5 C Ez bQ{e4 LboiBq7]`op?c" ̋T\,r0g +Cۋ١ eI/̓yڤ!X#XqtC2fvR b@8O.rIM:G'ĨLwm!D({Bj YžE+f)sPgKLF^pbfL/L0nRgN+g91j*^I%+|qO3Uɟ,@)G8i0cov2) \C(B; 5p \UbOcj!4u#ySo@-?]X%Q6·p2y~*X]IyL]3BՔOg5p+~c zyGv0C+Lvq5iB;HWZiKF>6`t妑!)zwdPJy6?;~򘓩PJQ%goH3uNβce٨ Pތ7Ǣ] zƇ' shW9Ih2L79*ky4,xuqOB>Ӗطwa@ֹb&=z6*_X ``DIZ`N(?Rr'кpx\I1f>}fkۓRi5krۣ PJȎt-6xZK:&UJ'l_O}xXʹ `eES· )Wз嚃.Aس&o4}qJ)\lqS;S\:CKT?_cltJK{WCC`-\:@F߸g|i+᧹/ *w^\`smxE11|^MP;{zB|O9Gq {տy-.Hm=.WOV3R$_G.cq{gEa``LNL6sNP+g@FnEؿX1%EACF$^ #a[(Gܒ RPEC-W).f1" h ~IǍ. @#r|w]p TajO!Ww+H 6U##]U\ }%bn?̽<*2ucE+גWR}iR MI1b+ ,U )m}v 2_ P3HFcsKu>d$G\#KqK{tLS$ Oe?Ś[\2g 3[ )Q_6՝Wfn|X%q (7:Pᬪoql[qCtǟ^HJӌ\к {V1R/>|:@5E3A+\< L>v]ܾSI -{<lVѭ2(T@ˑ`om6:ڊqW+N[ߊ{4npMݚ9()@v6eMlJϦk-asz4>t[$k#4}cAL1J0V>l |:ɪex560T5Ҩ"rU `N#AI&\ C Ȃ16#^-l p%YX\~gYĪ:}uH^=_΂oB^/lUzod ON+,RNwtǧ+Fz>Lj MiifzF /7f:(8%ǥ "; ꠛah7q# !J 9;:/]^E;AoC$l~!CBV _&)ryp$؁5A*QSxf۷dKiK)G#I[+=}|Vǒ+xYh6tlGy8rj3K̷6h^k(aq.h 2? giln.\e1t}`x1~ ]9fRT6MqKRkz/Lbp9^qiL ?)JMܴxgg9(c#'w/AcHqԞİu8+DuCF!\*b&:qs0OA*%+=SR+3e.Gƞֹg.YޢK]IeIU1 ]1tQ59{ۤ!0ũ$'Q ij+c]ݝWfUv'E"#fcs?C jfn:g4K\ .<9N{8RmVl2₷s< CXQd6tsRD1W f~hm.~U',A`F}U^yw=~ K/Bba`'O,oeS+1`0)@Xl./v?;NK]Dk‡k"2gݢٙ l>xD}-1mn??٤_\.)=at"jzߐeLjQd?;͙E56Gz?4;ș!-BYo ,ڴbJK"{ Ե Fj+S>bw\75H *Egk,Y߀+`~h!evKs^s*T-|1a.0],|s@.NnY\Bb@NʙxzRI[ë,q4NLic->("^,,\c 6tZWRg Liu*o" P'&$ /n&t%\c͵ (-yߨ)[Ujv[pŀwBHݳpD]|DFxdC,l*Tg]D-oQ(7sK]`J_-vD:p"#k0ءP?1 㗝BZ+W^^h|Ѹ~n"cn _|?<$9< rw ef:QWܹ/ QwBV0f1՘0<4EV^J`?qw^\o鶒qÓKcj_W潼oY4D!9Q8&oВ{-&Iys4)qL#eTDD; j6]m"H z'v qsjbZNX 4)qYO +$Fz b? Q9Qb xL<2ɇk#>0ܕ4ਫ਼zö}_{a3f_" TM$\L8G7U ifbCxe:aHZ-@yKGR}ĤO r0?V]5Ǹ¬`*NMTYO}&m6bȸ]XȎK mRls܊I^B-\>;c XEM['[ϬBW•jPSsqJ:H33pfJ2 \_cil p5*pQS6gK\p)7p|VXW I)xF$ZE1=rh)tu5."$2Y9{Wľ]i T덲*nCx3&9:HQ|iC?fʱ/9y}v`QjY'Hj:1~s9vB5MvR 62}2@-2C&)gh*Vxg5Gخb'y}0nIIzK;:KjfS ,dJf#G[ FkQ~xFک+Q10UM :D|#Yd T /`8^"a}/OxQNS6L36:fmYJ`ϭG Nu;x)>5M$>w#?y &`88gz\ŀhB Q7d! -d\h?0IlSչD*zwkf'kxޓKu$k&1M6ۍtRY'X&(iЧ ҽ}`6{!H,D݈(X5b΄naДiO8W~M6ԆMui706cD^z_X_a\J~wfPrx>vT3﹓}j<"&ͻ.N-/XcbZZx tYPER?(p׺ڟG@TX`mb+OHĀ PezLN<Ꙣeޭ *ng\. uPRuJdҩ0!-ˍ$ӤU,"dꝇt klDyo&qq+WE#X8؉teIqx=Ɛ ,oѪUYZD98|\?k9\1,톘–౤l^E+}spdvy'd^;4B8}Gq;D0ta8)3[ַn )_ mZ?,Ԙw 4x'gEiGMS vFor2%i7 xgyr&k$6(>]s1 ; P43)Nw.$ G dc1]/vҀ)-Ԁn@W`i[t$ԇb<`}ᕉWqHzhV25?mX|xRSdahR9 .}A ͬcWp:'1ɘɛ Nʍ4T ?F9ǃp_W/T]G?+p{+WOM{\[RP +ST]. gsc,BԦzmh'/ί ԍhڵdžck lNcr4C3VuRr e>\A&r1{z5j*af>c5nl$ S=V rV5TKgP+NG0T,ܝ*Fq Qؽ'љ]/Ho%@{(܏qCƬ-tvCj'&pLb]Nlx_g;EH'I'A{-obۂdd5%Xl_TQ}~'*΂V dB4li,.؉l%!5pb9LUq4V խ A+'sgYX!' |o_dr%Za/rƄRIQ,*d ޤV%* /(εkbf+^B"=!* <{6zЈ{'d&\$ jlQ?~lPJ>c# i(na9yWKe/?вoiOy9)o 6N@M bM@fG(PtS G$;̵M,ZfMk#&ҟ16*K&(Zxe1>? 6Vr%-i|SZHxȩ0bS\{q'/'++% NxO 7%T@)@#ʌPD@5Jpe%$ h*&^.7AMX.w A*;%,J9zjDW:;MoGzMxtqp3vaV1b}Qf&RRAZ* B+hA'p?UppdCmbxiΎ  :ZH/'<ƛ\8>myN'2]jUJTX ῍J+yv`L!ܾ̳ F\qzrB]{RlvEFͱ*K A"^HTTk^g(1UR;7fEQA-dg+OP-7QI^1ϥ YɌ :).ɴ nܯ#TK{=VWd)B}!Mbǯ*\qE"WՊP3fgҦLsYo =8[dG7 S,#oQ\O (b*ih!5ˢ,TDpr @FR+tn 6*尺 z9AB'b(4H>سb7`d# H%i]Ns?>Eo0,P@N2LޮL7=īIW#Rp&?yY(g/|.ǹLW኿y,ը3IOȉЀL}l.Bs2g6>l#M nMfz )KQ*3ql\1H~`B0})!V9ۤ3AȶHyqQ,b[BAQ^ KGЄc'fc=ݾVh x{KGMOZS &T,Ȑױ*`4 ;8c\Сhֿ 7֑v ,  /"WW#\jA8^c{B6ԯ掅4r,FF^++ʚ z +rU>тgsXy-) >!6@RbvI :%Pz_!V3.EHa|ab C /|CEO>1['ڻ_?MwCT7ggWX7Wз;?&i-=Q:rk0`2q|TspnD?VxYTa Y>)f #dK#8d~?Td8\/_HRWa5dEGc*IweɍꂇMrJVM+/9Mui["|k*L>ZSBKۖήkkDG'VYV9K)_yp۝LxLVq4"KF'B /h:/Ţ|)wA=!ϖ-aKJA ZĠhQI xӍaXBsZioliڛ ] upJaL^#O|IaI#߫ Գ~%њT5+AEht.?P$## A?T@-|EIBhsZ\9elܩ"8L㾻97r9: tИ2M@IߨH;sq0AYe%!_Q$#1'Q@ ճG?j̘VN!D~B}timJG66njv+s qZV_w6Q\M8o{8ڪ=&nK"VzP7eRW;26*_s3By9~n"pp4NwE_9Z^)UsGvoV!MeZGrԽ3`bJ{eT:JB._%?`r$"u[*46w:]=& C#~Pk@gI)6MAѳJQ6X$& Vd|2*"ł}.0y#Cnۻk"i n[65vg@6=vzABtjJ/GLRfq嬑VAjsHi80-n]2}&\9>#>n|`6_X+@i{epK0S̿}h񅟾F5-%ZLeCGF>KH;v|bAyM$`hF5wi+$ŗGkPTmwR}R<|H _B׉Ȟ٦Qt۬m"YS211e2ኌM+!ki.BXtdCTL_C PBEpOPebns#! YM(bWw})sN:m,;\%؎*R=Jvy6Z YX!G6yot>ېGzd+,Z3P"#dK ԦΫ/ %$+Y=dSQ(;kR9DPkpI#45=FʜGʘeu +O),'g[X]΃Hn6*$u<$^8`jwqrgQ`ޭ]l[yWjw [0fէ"GokDMȼJI8sZ!H4F;=nqnk6FZRCd\_U(7MfYĆ@D2sB@w[aEUyF9vU;?bWNw`Ԃ9Kkփc܎"+b~&JE~\JNGfULxP1zQ2]xpi )XMØ(reO!hf"H|J]Ӟl B?^kI-ZL7An7n+@{4PBsu;5EZ.yDYs}蚁{0BHUW܊15{uck*͎iIJWWt6X&{耥h#”eFkT||Y } IW̭ 1 2Æ<IJb,R״ E-Ug'$. Ҥ^ۺKUTV]3) DD<=39$L<.@i\BEG "&LO>F Bt;ïG(w},,%XO()U[( -PS)gp;xG~ʪp*Γ% %S@:FG #NaRuJ+Bk7w;^'OU1w!2E׿݆"]ʐ飊CZN>0nq̟#ej,"e{6|S۫[@z~|<`:!_B ~?|jq^Ce%Mu ^_ U+%Ln8lr۰u9\)tv03$VO U~;g}dO%Z Ѧ@_3Bq<1H9Up==.@ "!'>~4Bဃ"X$e ̝e {ʴBvOsgv%_G5:\bxmHG.JIpԱY6iB;TTnEX`ʝ! dm'DDe^WՒ%UׄXre 8tXlx-|PFUFᴜ u@͐ ^_&祌<$p 6'xQ cK( c9 =uȠݱV5gE-^8 S7Jx.v٨I>.FO BI |R (^?O OVkwj ]#)\[eA@SU I wϼSw٢w vYv[d3mݛNTJ9}S~FDDVLQs!h 7Uo[?.Y&lD=]m xA9%W}'A{$t?؁Xz"Q``ۙxFkME,38⫞ad e]Y1K8Sf525} |!F'7wCgmxO.ΩcϥYiށb'ϴ[mִfL"M,a/{{^-ia>[{Eo'N2-U2P(MjAsȉ :+JUa?+ i94: w.qZK(br> gssuҠD&O 8a1:"h;,5ȑvxyY ) b#ӎ%i>Lʇo1IK>[p*h\Y&B7,UiB,MYO{::9w;mJ.y(ϧZzq \52S)fф i.7fI|[hkMrn]:3"6&FyPEhH2tuHNXr5 0P6@ 8ao<ضIQə2")]GazDgb|KM.[ L؃hvJ5Y#4'7|$l -B5FL矶$GcXQ-a2=wT.U<9?C2葌Zҵ&ktNR ]xdRoDdu,\̸`k"p>!*N7'9%~3F&Q'Hij|Bg=x@_ZK o!.`> WNjK$%&~D@E*bTRĢ@"~HﹻA$ u)FXYգ>xDݑ;Qs@Է-NL͐Y"U8|a %})ҶO3 6`ITO,.o%{Xir8LK3:J UE ZF4{1u" lͺJt ͿQzq~l5/5Q_ƴRJWk'/I}BDhI ɴ`2W_+%RW%>QqsM-L8z}M@>ב? gI4 fyР*#} V$Nvd4%OVWMu2g#DSƌ,g]@S}ؙvĄyo+=@1C:b1Z O{BI'{hr= DuL>Dq qDr=R)_.P?2򘪣Q1V! s̠Z"%-)IM1n~Q?Zq>B0U4 댆ZWJ~]zn09$Cbըk"j_(Ȋ)d$SHx?}^4z}Ok/CݮbhUm^kQCWs0S?ؠ3|}f oiWR'I4Є [䙈GELhtSFv`.r1c:eѬGnr76P\Kk^'yGMXP韟܄)bMYT2?KH(c JϳѷYEJ>^!"Qdi%WRKm/曪\!38G٭G哋1!rӥwK) 9QA$ţ>Hj!6J[n,AurBrA(=,R޾H)*`6Mtvlڛ,.uA'*Y02T1uoƍ8wG=60cSZ:!U96 )Ma,J2k_!hw}Wl,&H-US&TU7 jj͒_vp.#|@q[(zͼ^K{6fO2xz7_>1%1 t`S"W'ܡWߝԓC+.P=xՖrv`qB%8[\Lv1Mz>eСZ׍Z4Ʌ3% ݮZ# ϜVu˻k荒b=$WVBmbySQGA(?`9o:-A|@RI\߁m궧]Jj\7)R=u+MNgoGyW"P{.Xˆ;۲aܨ1cڭŔ1+UJxJ g0$a%YK\JYҐ,R0gr\s$ `ĉ2Gd^o['rU w򑆥I} 4_][lBNr/a:\x 9`RJ5c)mDeQ&:CHCΠ{բt J+u4l W6~M#vg{(,,'^! Ѻ=yLpӺqqE)J0(ˋSm8toH"DWn#Yfi@.OiJ״ťèӋeف$!݌iT*k70"'!o1vbE>ㅯ lh_ː"n,'Ҙ#"RB8W^O؆_Re8ЊdSq'j$[| Mu#95B(VjS> /9GILr r3BFE nl2lGȓ|uaG޲u@m`_CŠE2A1T^2aH'&EaT<1qkYeFDEpYkd^WFtq:5M b&@iۻ'cz=abze7N VAIU%> p3/,fB5h裂LTq*k j#$]ˢ,j}DCYa9x ;Μ$< N'bHL÷u2B*h&*v]U7B&BbF3 Pޒ| 7ue>-uqVN6е8LAb+gΘltv3r)FLݖ!*C.qEF ]Gbo!O0H)0sKb#8Q2M;T n.M˾^ zgTɞdN,B=K=u?orF R_~C,Pm`[qQ֠ K]>["b/^tZndU %oVSQNwtı;>̼ =|+Ea?*d,ા}ǹ|bk׭|=<FjX?aqA^C(HHTϲkyY]'~Y6M[SϦbÎ'g8EN  :*.Jh_dE cܳXAC\F!t]3ޜh!p>J)5w2<@H c~^{9N!D 7'AƐNlj̗7I9^:1" ?O^2Te^EЫw&wv.-jOR*#a`!`"SU8N( UbT{}Rm{âYQ^8Mx04_Yvjh8ʹmh1"98 Q wN͍2l+1טgKPK1+nJeHOd)}5Ws4te%=VK;I9KUbj*zgN pFl J7O<['#-IFǷ%qN 7mogҲRB8(C rUM,qb)u>u%}K]X5MRđKny8=$F<%=_9ߔQ2)1Y&Ei iY"`Qv2rvs !\X/KC|5m=I#rE҇NUDh#Uw.Rf dIS&}J/D,QFx:uX+Y1IS{#dDר9vWA$~oRgG Rsf`Uՙ!}aũĞE@߱i\yBRmK*imNlV4 +Ԅ =4Zӿb`kw8EBks #VVE?_U(y$'MΙ@?ж@g7g`gKTx zRT[΅roE`W eH+a]Ov$4Ӕ_ժwT1hzK R E-@@O2ݱH]%ex>L?Ų1߅^1+\8Qrmpj3zi|yʿ'xhu&֖~ٓjrgps9W\\[׺EM:v]m&ƒ|(=@)ռ:2bf1L SZI'RV[ QI3<}|BؚR*4er;ux"7a:~C !"6K0tz]' $pbA)TJSO:9T C|UARlu60 fπn"?֢F%=RT7Hz?W T}Yti@oE 9xf[4o¤ZƲ;YW-P#N*ncaDYbN+/I.坙V5"/tLX!ꄙw;Tek pZ'ňMw# SF5c!B($,VCj:i\_<_>Wn˗`74mVQwjw> {&:n`KJ6<3f]NˡA[uBɉ bUWJb쐲oC za֓1Jև,La-8!ۛ{t(a, պ9v?- L?>O)v'w)г)WyaC9.:L, \ GKI7MDz!v{k:r7S^NwK}PB@l ArRal>|]!saOŹ#sJ1%e:^h` KC2=x[.hyVdTD7D>Tn="'/]뭛܏nsiKPNƳN@w ܥ3}Js Jrpcdͮ}"6?g|P&/Gڡ|lRBMj Iu?~_1&Ƚ ec,dMä6m,7msp,3CZlDe~m\J*_6/YwE-Juhd׺ݷǟF}j0;MFpLC*l,0fxFXawAc?6 2 :|ޟQ&?K_Yhw78pU#7\5|%l<^֧͆c+ C/6C;<ZWx '<N6G{+Oi,D.vu{SV3.(!z_\ǝ@0u8.ac;!ݐGL cSy43aa#caάm 64|ZrJa4}S,v/[G;a6J^t7W IuRcOIWTXҡ yWSU!BBH6h?x.Jn>`9yH9 AUG{8UBz= ^"t愕a&s䆇񮄪y.2{ Sx1QZTFVhK#"Ek15 y!aMz4"(1 ӁFk^amcs?Yڊ/oEy>`O{%Q_'x V\Y&vem"պX̓$A鄊ElDN!ol N'Qi31Dc(ӷjdlNK pX[U!3Gk `>Mj`vhYtEZa'Q}"|q'tB| ^`p5z>eʜC#= !Snh\RRJ~ݍ߭z `3n_Oݞ%W]?q iT}4](pv~jL 1I3'9%`X2~'; u/`WUtz'O(Iqjif/sD+>j̎{{+sD$j|d =xl\x5&eNdX6[g˕}y29ŭmql_!|= }^ s|SD%=hiǫkFy-hri8Qv&hQ$N.\ؑ}8VF8Aw̑/mwDXrBLuӀ78#"!b?'wuв!-(;|o8xGsS+Wvls V~:R.P{{5) EGTw. 6u!_pAk>78HS=AE2DMKm':_1 *uZ<~ALf,֏$Z}.{|ӚV aN^1SIo<.Q.Zf^(UOla޶?Zx[W~UiBm0)t=ĒoU }Cމ:5aIKZh6uM7ם T%uR ;"5j&]CkMR3ihAtl I3'_5 S(y%iOZ6)Ph {xV?}Pglo)xf'cOR~pܺ= N@>$c,s^Ǝv 9Q!!: '!N[.3ˉFڔ'~JӺE6@@? Ko &l6 G;`F4gnW;q'JB|r1aKftDr7I)]Q<[Fdi0qY8SQj xrY4_~8Y3DQ,~et& =_Egs/H#ݻqTED7,:~~*^奠_.dQ?աj0?Imkӹmձ=}r{%|uhZ~Ih M-\Jo[Ftݤ0CZ$TB*hmbͪ[msRDz:?~z<A}߲RY/Ԏ^ *s`y|tcAC TF RHa\r:'@O*ehK~߳R 2(=`-Nߘ}._\8UqD1𫦶;Iٓ-]#r1;z0@tӿ2fFH[yoM* ID qVH6[4L.0$m~`b:X1pp:G*DŽtf@4F{cQ8jE*Rx̽R !UG!'p(ru; :fekVn߫0(|Ns/@1Y͡mf1czA~am?Z *>> n`‡&̿ [(.Һ[BUO;R !J};uAz$gC<=J}39,U_ISFs.8pRv'~W›$7BfVa!5ݝyCu l JI4 l k}[5Go8A9綡KY4_h))G(Am1g_xp_Yn6bOUAL~*aHİB<)ce,_P{^e&Hh>1"Fe5}Gr$G\YĀNguM9KH nTFt"ZR;䬍$t/rhJ3r6Ȗ4Xoo]con1{$|]y<۸J_9*y e| E۲$l/B&JFxPW#Kod .(_dʹ?~1"'&zZC\с;@hH7I*iVLa0\Kf7L.ovlG)ybs^5 ,:B`zC޴]Lաբbhxh^Zyw5*'F˦o>sv&ަ/ x*2#*6;嵮+YAI)_sz{Ĩu Wi*g=v-tH1,&SQd1M: _7R./^[`tf e@e=rg /(y|XrRa2*:aUv4Zt2B/ x> e$D %Qw>w2 (g'8 . O͚媘U@&PƆegp%PXtHƒ;(r@5@~%ނ?7Eet#Cxi=.vnUpbA`y734шk|U0(I:PYBuIc?-R/bC{w&鏍! ByK "~nZXƘllm:Q{qg&|ǫna mW^b0 E—#tY܌0enͅ2_􎂶"N0mD(&1gIm]ȤzMȆZ:ً{uFR@_YMǰQV86~)XEA5 e](t 2T]d^=R1R$u|*Jq3b3VȷjQ!9DC]%17q+!(uUk"br.ak`4wE$hµG|϶NEA1L>5DPRW&,'?}-EѦ@d~~ÿՋMX>HbuNefEX2w*U#640=„~ʞC"(Z儼1:ʌƋ &X!*)crç񷢥R4q8;aʗ,k!-H] 1A͢[GV5|QP̗>qNt; pe$PMpL1k~Z_7k-/!\vU @\XU[^ D&@9B*&CWpɗ#A TK*k2Aۋ_s3:v@0WVzT Vh t? )CPAtj,Ԛ^Vy LAh&AɌ1BP9cc| Ox[myա ==dc[Vf۸/72)_ :H^23<&I-B+/"_QG.DhDZh뷼țmThkmT@wY3$ (׶[]5q[Ǣv4HUԈ$zx,M/v'Wc\ԧ 8PϮ9m2 ZhO$} Aw+Ug7yQ>yܿ'缔xRÃ-m.J|i  fO62";ؑԏsSzb;J rvoLX3ptd?fnMD{ԠAK,я}  6١1#B=5Y7~M@%PokPQ;`, n}GԌ1+yL6F_g?8; {gkBU:_JuL#&Fd@?sW~]6ޟ= D)їBo^â 4\&]mᅢyO.ĠeMД~U/PY]bQq Hg!7`%bqa_H^^;PS% %mOi DuJAX:>nbYyW $=W11[@[!~dw#7/%[Mʢ4H9/ߚxdFA+J>ꨋ޽%)qiZow"tȏvPYB5wY&gP3i>B)>l5чl@vFD)bDݿ&=`OT;rw4EfG/%'٪;wcXDE#⅊J'-2[Og6SɊe׸FK18## .n={v 澌A^4鰘vEc);~Hq}$ɭ5"q%n:l;s ~g0G6<( ̀we ,Gwe;Dt0YԑK~c5)GҼ򕱸ri!bɯȏCP衑Z;0~(6󲵸M(Vܢ;Ool#SXaF$cj ])̮Yc +OmyRPvq`Њ0as&TqQނ(9 (z=xG_d[ z HVP|L@ׇ:,L87J,7FHqf>PY_M)#܌eȂ>rWp. Tɽx¾GqGzrj!,ϻyW=!)Wdʿd0p/mWbU\[Y{K=*l;XgwuV"koJ4Eݏi+ . 8r0@+s USӒ9Et30qjV& [ boFl;N|}/[nHrD _^n1A}ʥIQ\ ޷\KVV;t|=Xg_ցepRk6P)P?P#nۼy4S:cZV)gA*)N(̴G-NlqN]9؄c% Sie(þP @Ţ M_O-dzp+Gla;C]Ms?a:f#J*W=4ge044.<'ߚT50aRd_LN{<%N|JǠ/"떱:Jz]㍞w %WE[BPL48[ 8pg# nxzz|m z{r!ɺE^dM vD#0{""6tᙫa"qނbKjlk^#&-as^IvY.܆cYZ }c-zKπ| tKIa81OyzuuQ/˯ٝ':3 gȸ ?  ۃdf4zLdΒ2ƥ06uŕvqfц.uA ݻe7AG?}~c`g #&PA)aqrxq&Vf6ݠ,CÇ4%=w(?S.D1܇nv $xsΚx;=^ PSdt.`ℵTf.w i C{<$/Χ'A$pa36x~ 6gqv X '"cc6u:2e {H)sdk$1ڻ>P=VBB$4! |)f$ۘEp6Ҵ;XDx;L9%Z7g얬Ҭ/*^a9V6N=󰓷G--Bh 7~Z<;b޴f`ydo| c]km6M:3If9) g>.u+1ٴͬ%fUvƆjs;ph8j:E͕3e`!e1#N;orf'3Q5p 1"{va;8Hß Vq30(lRۘ@Wؠ2DNv (l֠ -bS11ӯ-mLy+ e_p+V]o߅Y&٪ɔΚcݡn7DqJ3PQ^k̗r!Ht-a_Jw䉕H/ݏ#[>Sy6ww66x22ZTBvo@[}Wd+z/P$(^?nxK^]mzWG$7xɅ8 M7 "& UcB1O^v;K qO5_6żYꄊX 0%E.^c3Gt {|_i6'oWkMщe#0Qsg)zzM]J户>sӀ:,rEKȓv)&R&sK"OsUSvt6W%[BϢ'XЯiAhޜv3.7az:%LdҨ.^bӾM?ijBVڧ4D,|c ~hA&n<"C vBw_̐*m5C˨t xƘiD|sF[k*b͓8\ j%B[P\JtrX|ϋcW{R 5"ZQ %[@|עFkI@^af$7 F!3 .7WE6U(uy8_{88D.H%PPӪ-wz[JC[̅0{_(SonfqY@5sEZf4 M6 ZNDuJV؂}|tӘ_0=98_=`%S2,2kM,b ʚr1x-jU8'56֨hކ.צk~O-xg<%dlM/{IȓQɷ̚mfq|_Cb|?)2F>j'-])A r`2f>n W&(LdN"1_r!J::Q&OԵNpkHMbvBG6{;5 - RY\ v)v=`Βt*5ukkDghU~!L%+ab/Vߵ\AEZ Ϳ-LkAidL8nJN퓆 (*< J~~]vqVwzhCKޑ)=:ST\R!~ʋcs!d;e/;lDASDyc7s|?MTv\^qcFɌVٸpR'EY0Rxry.H f*>]5?zHZ.Ya7a Xeu3fC AP1vݠCGMO7>P+o9匯CbV vZyIjb[Qbӎgb?0abLJxt4?2AM4f^<! St}1[4;2󊀭k7zΨrt߲2\{Jihaa>08l2mZπ0Vvjګ$+ w*˶ {'AڮGg1|R* y(|}4-_] @QxbQ4/66 `:aY2#3!5`$gwM[|j̈[]nb):(?,P@L̷p{qt@hX]GP}2WڇjS]U8;b]eBJ㸬Kޮܤh[|gӕN asA40m LJ`5@E;kF;8k .Y^ T1}M{Bz 9`wbk%zAs fF_qD0Y.0AϘ@LfUUO㧲exCA$Zj.'L_Z+0h4Ov_|YHŷַCM\." 0zZ /1~[Q@%kIR]S` "?$D8b~$/+,j H Ȍw9m=ZK;1 Jpeɭg:aEur8a۳>Cu奮ϕ%9"F%@LEy#%a䉮 @ZZa^{&AL`d<ba2m@R/sToXF)J3k,N5kIUn8G2 sd$UN,DfuE R]lL[ĵ7oaϴӴƿ>$—sO%fdvcd{ SzoIUuHk% *bٞbhY22lJ[䖅IZ\gJ. ^8򚕐f<ݴǠC\MPZ͟iրWBFr:[X`~/'d^gɌ+۹w1+ 5ҹFl]az'͚!5=&E W  z{.E'>McxlILmrREP &c-BLg+Y_+CzKD ̈́$}z4d@wYIl&ҚOT1S;U]L`+{jcO$mz3*5,f2@c)j4Lqu[ W01vӭv͓7O`)p" /9OR2冗o"hKGelbn[/(NS"Bx_w^dpOc!G1+a?j꘴x~M$sf,//#,%)OxO-"~tbO6,d>+$^:乙$6)i |-kؾA*Jl%k4 ʿI%Yz'׉Ł TkI$LdJȓWv +QxTn9i1=tjEKf?lRE}։O֩9]Nd1Qr x+Zadrکjw55 pF[~ h΢1Mvm\hCMΌfc u$v؞t@!C[/JA~ud.H0>]m۹nl~iW^%[wzEKUBp*K]`؇i= vl^>qnWBOGK <S2x"DŀM5):\|~$Q DDTPj F}HD^mo0T+SN\9VCEEk͚ZD81f{X_u2#G1dtVPh}*]<;p(!(m߬1"\>5M:Dd3~y|cؕ>Gfv&.SҎl'-"vV_XHDQѻ _9; Qo[)Fɻ"XZ|#,)I:S] уvs_^bzO3;)~nC tIދ3,쉖VcsT#\wεVLM\pIa^VSm׏ w'o߰jN-"*㺭Um8Bw$1ZIڎ. ֟6T_"bjMLjx&_p `T 7;2MT?1{41%2 J16ƎL0Pu,R1pP%1lYL`i#SBo*l.շo %lrr9e#a^ ӹV؍կ TC2?Ic8sErBć a*$ePeнŊ=0Sͼ3JHHhױPTJϋzZ LNmػj3HB!sUlh0,%^\khIQMnhzmFɰ\ݚ@-e.[2iA<"?d>nXo5J>324*EwO [IY~qqaPׯM%m};7|a BloO꼰%vGgۊIߒ]6R(A {\%ө- j[f#NN -91BZ.iPX5vޒ9[[AryIo4g ;-hfƊ)/״YH{kB`J:83 kTn %e- ""}g=dewHCL әDv{[F-VC6.^" B,,˨ː|qT]ᇾ'r iOV\ 6_Ėue3Lu|Szb+R=., ГiTը߽ 34&R $j-u .57B'JGv09UmLn4|д23v<:8rH`sC<,_k/#3w02ykD&lv#*b!꣐~ v5 Wzsya!U7X; \tVfff;u M^ G|'>d$H/4hZSij~fz ι*Rԁgby4!Solb{-FP(Ii[ߴ<}|@k I|Ϊ)%~%XIȄZOy߳A/Ǣ#_MB=!wdMI -+~ϱg{ƥ],,mBVdֹ?sz:_'e^3 e2RiI4Z&.FZ$Z ŪO )*5wav`* b l“Ennsp\wpś\ `>xPRE*a:&i9 " 7b+23#{mN4h{14HLfXi ]1%hA R 3ejט}C,'Fg*Ziɏ6el@/BNăޑm*Nzy/J>aeLqm=e~bzhecM ܏\tbAgenr$05si @BRbx# &6~y} g Ym9qRkJ|*.*_Vx[JQ-Txqk O'/{iB*~u̹|k`qOs,MH 1Аq;,罇 [cQZ7mq{6KuRggOS+ӹ-Yl%$i}$zZ._E//:&F VCvf?3$84誁%Tp{b=7xܱpqi_aw)S:/Z:˰ǩ:xҖ;!k@ ˩ulyQ:Yy %I%%j9'ۤk:Ņq=egq3xW5N@/f3ZGynGNDaB~k]$fKĤ% Nyް!Hʶב69s`Ɨto Jg/IxCDc{^6#Q#/)p\ V*z: y.8sro½Nxiq!!!Pl, (1Or+b?gEwD^ 1 }Eq@a2.ݺ I-CPUF5`{AۺsDěv9,M!fsLQMu'NJ#=IdGdd~>5Sۈsf]iTDb[%&5HBC#C^s@g jٵ!{L/ј Ёroah+"|\Vt0% }r^@5W'CBK_ƐFNpx? : whvP2 55aA kJmmkON;pM[ԥ)`a<S9;3P0g~lz47"\la/l輱_3?W5=~#MD5fB ×-L T2$JdFhj{hw\@';̞1 ]:Dž_&0U8xjۅL>iJ8wa2 IM:''bF~+v%ߛE?e/%|,$\Jt]=;S=؁`x(L?uKv4L8ga$F‰EO@q α82O8~o"e['UL 9OlO18LF>wleG ϓj \-rGbhwZ@TWfc4[8BGѠw!/eRzquF lGNt7,5. tM6xoc2R?x iD=6ձkOЖ ԋEHc\6hAO2. Vr]P`Wy)U!cɍ]RhF]V {Iz qP^$_'(ذ={xfIl⾮(aIRzIZL.L3Fk SKy;ʬ6d+í; 9XKRUmIō3u!X3hGxOF(9nïRUH4l6"2Q`{fXNp%씂7z eMƂ@ @01& 87q,Jap"TWјچՐ5;'ӾWL(Zwz#-^ E(I>CC Y.O;=PuK+hɥog5R$xɖQPh!1+H yEZ{fSX`YGleMrkߡ&{1rfp?褺Ckfek14$a5hB,v\`(ƀᯜf8IKp8]Mϭ,]/tC ( Q,^rYqd%_O xhÒ/Ex~{ #Q*9{GbwL^$*7&YzL?骾Z C.C%D?Ͽx+bƑ=4\qA tLgxlmN$pyqGZkgKiwMКCIukb8X r|ud'Gѳm,G(CRjՏ:,w-KX{1@=OR [FP~eA=G8m΍X@8/",tupuٿcRsܗM3;S j  ~b]/"8z a#OTzyQ}-O%G yaJPh,qUvBx(Y=xVak#dg>? oZ4s1\ƻFom~6&T r L*5o҉Is)^DI1ZzDžktfmu 童wf`A"@g&&Õ8⬉qRj~| TM;'tW+|D`cI?)0HiZO"x0~wzc#cE0Ǚ05Q[ܨt=io{˜F&%W1rUY3A=XzN[NkTMyD}!R-NgINJfKz/&c 5hy$]{L@|f}68h|4z8oX{WE18ݰFbA[Qd}L?оwp)9Ȯ%7*(4žm`E3|WQ/*߉W8$( 2[Fo P3 9 T"Yu^&1^d]`;(],cbH%؄1hs0cOp#js."0÷KAѬ]j WT8 K ;a}m[(}` tFMPfZxKJFBM@>/t}m@aiOĘ२?!6hka%6AJ/ `y흓"Xd/hFCc:W,N|`dBbWpY/zωg9#m#AHl72t-8^QFc"N  nBq-A'nUH ,ыA#u sj8ѿY4lj&'@\cpӗs= k8chc\ @T=ߑcNozH KQP_C>yz_Xu}Hΰ@|!chJg9͆jxMdr|=EZhB 1Q^:Pe# :BmÃ_™6(W) ycHo%|IE8?xEn1|+A*%r.)Q*(ff5,*gfߥ'jWbL6MqbM&ᖽ]ڀRT/i{F`1k ۥ+~W>^h̀*y}5Q|`Dȸ* %"+&"U.`h1EcE>TW]6Us2^P]CcS,W>1'XsaLpM1HE;> }4@LwK?h ~ o+?=. 5h'߀alJ5.6+"S3Ipn0doEnt!Z,9@I=ͥ])g+@%5i)@o xT<_GXM}nbCaVEdWmˆM,vs(<[9[եgen2%w0UoV:\ cw'@ HA2 _278 j PYͪDb-|2S:R-|+A+H 3窎E0eC$鯱*j `K'M<O첁x@7FkNaJ~I| &&f[y0|7>_QEs 3=}NnF$L>QgQly>K,g#_0b5r C1gH|&;bVv:8`T҉E>ZShZ&lcR^(EܪW 3H؃Q~%Cʘ\(vIL'A54*F + 4tuMcVb\U Z=\1P"oT/T[)h|qLeɽ5sQμKGwJ)[ XU%SHIۘ w$R8tatP@ι;v>H@ =hl _btrON&qsHRYtG6 laz H O5j#3ڄG6.GSq& :A9y,\n"0u'Ep[salv?m0$?#Tf#+7hn!G+B7cJc؇?ZЧqW{·d-}%$dJyMcj4?o<*9׽[cU+J,ˈDmƐӤŜN%ǓjQʖXo>> E9j?Y&- pZh+_ ^x>8Xn{AQs匿>0m{;E+v!*ߕÖq;J@0d8Pxe]7LcJ \K"@b_og\\~Qt4L,&k):}9Zj4WV1-Z)z0,ymAwܰ w9jL 5/ HJ\}m|U(G젮qOnmMV9hU,ނo\Zu:0HfVȚ S`L Ga/E瀚K-b\!"B9Z ~8Lۦ}7ʸH1ΨKHMN<%x;ΗVѰF*#"H,Ϛ0:9f/rgGY8s}o3ibh k=^#Xw2hae\bSq ء)𴫗3(_R^Vn4⭎ڦ;* .فvsv⊎<\(USP`;ȕz~AT-1o$(lۀl9d.3wB;8y0;I~`R_qT݀B8mgc 7Js]XٵKqrgkhL6ͱ3`wh7 jaVBaٸJYtNF:^iO @ㇱ, M*=gz«-S^ڴ9O"!!,NΎOY]^yliD"*ANgoCYlSzCƔtHo{|Qnh'2:5ۈpA=8>)d=}`W Ya}NU/clp A͕t`vV(Z] m:#Eg۠$轪TWY }MPwNazg5oĵ{^G_ּM`t̩K(E$7&f$m ݑXH/D}{bEPrK'rk^{ 4P1ؖw?X6Cpd|R\Llɬ+W]FH8  <)uo= Azz*F]ۅ6Qu<Eta_::`C8n\WKȐBY02kL]ݗ=?YCuDx㫜}[km#r7PT hȞFjNiO`_%yi\(a] ( {LY\ Wyx?[O{Es.򃰈yΛܭ`qgXB>;vPZJvqJ,mP=%CJ!,K!$n[k(;pAD ; Ϋ'$FT3=Ѐ6(Y7\!BMP1@  vhaBoPg_ =HMWכ;C{!h<}T 4>d`+'] . QYW_g)T 辉\ $‹|0Gd/L w3+{}^j4'7ɋv`NƶHܜ;vKsyZ^TXVq#ab@m{l![AF?H_$i{PGHTj&K-e||[]s*bmԀwD)jMYK2uH@H,bm(³!fx4&тw.?Y2p+%͵މ#eJ(;Uoʍ7W{p%$aAO4jܓ|"(r5]JL-$M }~0=#C?Om2'<i@w˄gж+h('44)MӒToSZх$8U`aV![m4$ (,ިgV&2[1bD&$`r(${3F/6))&'2F>4 aМ!@d3Rǒ|c7HWKt\,:-Lq4G)#Hi +&H;je|m rˡ]M&q&2vmʏU ڥ>shEl ‹;< \] ؇n|׏C(9u|!+yuM ;̐ȣ^;ڍXy4Wn?f.(dJ$M Ujb":/^c-EG1 ( ~א&"⛔019^qׅ k;P$J`&@${U(j 2-3f.Oҍ"b؟V' lA|6$0 &ndgG[Qէ3Xp,Z޵ p4%laXvaӯ%ݑg^0 PKPvYȹ-Xk̥ud/!<7t8lOH|)Z{&3$\"k,>2nVdVAk @ uaLG^wu]zOG<.3rcX~G3Vljb\Y#om?2kYtqӴl7T%BC6R,]J3j+K+cpсE ]`2m Wg+'Q"~ X#w;gʱ^ƜDZZyx5gD%y=VmXb3MecΆwC4*'%eIU[rOk+]V(ج|'tD}Rktp5ivZ1`׹ A3L6b-lO`۞x`r%`3};%0R͡(8mS6ʲ3fʺAL9 <*b`8ݬRzzlB# +\ݶ/FƦuv0Cg]3Y5t?X+*syuƘD9·HJi <$>T_> uA$oTAk e tLϤp%5Kk1dӗSg(j փP&rkPDqkjpu3d/tq"U]{yWZb7` rĹ(1XIx 4dFb30t5_t l2~  h^)p|H;wdB+RJ;v|L5Z3YaTjw){fb@ {9 ܘl-Yo?$XQwj~ JGiJO^)'6j%3JQLV@鞃ՑV6qMƹ%gOF"x:W: $xmؐ 7GvM=RY)ZsL+ J'o >\8!&\ckq3 jK QF ½Kag{"?Ү q:}A!ȣ<[Q!UaIK(\SC(KV}{TE,?8XBE:Q!W $z|j@10)g#ı(qm) h#U`R@ L.Ӝb=dTqvԭbm)1!#ߝ2>\F_@#3qSHb3GAW{hӡ_p_`uK=D#G~>w hzOJ .U|CnK~ lDXoan -@'. i"1 ` տZgZ0V4aG_2fBa Rڮ!O>(+ V.VA !0Tq:ϲڴ:0W }W} )GB),<͂DkCg@P bk\ى/:#3Ⱥ`맠Asժ;_~Y ag(H(Q(mc:y¼F+ ۣ};29@#~}cln+t[޳? <r!pۿ*ިG[' $5O?[ic3#Ey,8mp3@2ulB{R )c< '; A;hqLm]VKLZwMc'0,Zȯ&0^#pWDX 5J+i#b֚5tEσ$`򛷔YUSHOV @%/r~h}݄!9¯qFL9' &oI2. G0%/ղn\&K@ɧH gaxbXP*c@EjDF916R3 TPtkN /4`N~(Nc!ܹcRKgD LbN"qAH*x׍"됔2VA[Un' LwFOdݢKQQYcI@2V 2hT@avaNI3Fk%e U v2Up~[S\0XMC7ȽFn*:/M1$DhQȚKQz$P7[XǓ(4s9ujUGwy(1[&4H_ʠx]@tT`|#+b11pUms &W)_QIf3ũ~'ZTD?g@Q{Vr`֫hK6- ϶ M,SiT؋2;7u|;sX &W|҂LvdnDhEEϢږKD[9:;<>hֺwcZIs|Hǔgh0}4DGm`$+=u[h}2楐IcUBrogGC)>ҧϓz@)eܣq4*0Ң`p9^XZ b13.&GiB3PCQ?+Χ̒20uS[q Lt$7SKkv@ Ra4f Xj&91\T@(»o u\>m ʺ&Vam:8xem8? [⿂.װ {z%L ϕ\'wF + Kf/P&0 "?0㦞6beHn^ A: ~[Mګ_O!ߴ׶0q7q2CلmڪSJɖ FKx~sgxj,ڼ#;2DZő ҄ S_a7ta6{/l2 )h]TFT: _&B' fC2cLrE[Zmb[ {Xn,`9(P^GՐ~\)JC>L=}4L-&;9zg 0xE5U-EMC Cn\(?`Frn9&\s_e!~cʍ+n2dX r w̆FU)>iȉǽӝ62NdmOd(<>xw|UHW1M&\`>b%TŇR`3?8K11D+-._38g 112\m=%SO %&ԄO%0:2?[j>R4(K` `^MC[ ~,YPЗ,/X+P.ǵmєU,BQeƉE> s"#:^K|((3&M^̌$Qi /H{ydvX!k}EC^SɅ5~EQn=S6Wi0_7ʨ&4Gy'76fV?v_d6kFn`R^[Kp>Hr;kW>ke@EΏ#Ѻ{\իgoMl X\FfD:'Qg-v^; +dۃ?ؗ,Tu g*UǢ-c@1|\XYNF-Fg1+rU)/j(q!T2-T+c{ئ[86w7vbIq!YYTLl~~&/xZvl^;[94. WvUUo`6=|Ubvd@R:nJ@]"LK[:I/FS{p@,gBO# ɖ$Dp2:/F0,hvmǗZ zVUQ_xɸJdI;tk9. 8#R[7? O>hX (mb*ny[fC>SAz PQ.5iΎJ,m l F\'R7C92?dP:J;+ގՀd\cvmήKc[67ws+nnlեk[=z$Ό|){; {h_']0S0Cn*F{hkqxu7 >k A#?ۆRJ%bXЁkJ֢Ė=v7}sY엎w ,L}y'G8  LjV>C)./CԚmɈYhcd/>8~xqpϞL/$F~Aތ];2B6Qw9HkbW|7] vQbr4N?b%D_gfSJ/0YS{%ŷI3pX4%ϝ>Ũ֭mGMċeT aդZ#]R$8kP"OTOq@8ϔ3 -W6d nZLikͭBH]PWoddxVJwOIM;e;OdRs@ǟq7HF-]ђKW{/kҟ'W׉ +HCP4bôa#ehόSY *q X8|/[B*/!6 Q"7bBE!>9 uy̺WY(}Rn̶Vh&.Ĝkp`G7j]+v~lŠgÍ H$+D{ҫ8ZVcھ>u l (DwP7ǘ*p[uѯ8Зl_hVHFA:IFFmk1$;Im:_ y*o,PϠaKѪb/JXUC7$,>aw dh?]uNuߤW_cۅϩ[c5E'_~Xb{_Gwo(^[fRD* m6F9E1L [#t=jqmw: D$@C<9]M uv͟$%Og\ f3%EB`2#\M&Z{JIds(Gnd|M\ nFzn3Rڛq7=J)xS|*\S-|ߡ{$y|~R+ uuVerEs¥x \EFb`UK믓o Riu)7RςKbTzL"WWg<\ 1f}AAA$OHTfYBkr$S"q'~MrũHu]-e$Q0?-\4myO~ځOJk"N#>zh0vNd-f.l rǢFK`sS>3%ml` dæ.ALJ'2ZYJ&uώ0&+QhHmS/+rda0@HCI٠?(4"~W0C4Z<ԙ?W8Ȧ>`$xM?*65s☏Bj7Bn: cUf]*+G"ۑ >ILR2}1ҿyu0|{S.hSY3C4ٗ!] @m-v&> 0OH.ъ& j|]%r,nQ)Pi"81DgQQ>\H˫7b/A2'3sASם}~5ߧ,1c_Nh͞ mK-n=՞:qO}g{o8N6)d oȩupr[P `QwǦD'+]Xp4(Ѣ6tw2U tv.FR!EPYTGQ3FCIUl'\Ɂ&';HՉ؀|CAsT92ݗILPn4MK GOw#9'yJYq'$Lr,R~jKPv^R(>t>ޡv2 -}{Ri*"+'b5ؼMyppݣ*Z:BChju ֑geG gڢVfAm{QѳD9]f؄Z{m@ Szǀ{PbK,{ pz>U̽1J`O3&>wFR4+MO6=6:;[heɢot ! 5@5eQ߂Gذd&I<VWu2TžIfדr&60SʝoD.ў ;qC'}Ʌ K:X;ME ;\~d=q|vHC&f 6k+r^kPws%fH{*2qN#G˜N7*SL4qt| QhiB2s٩m[u՝DfMpvƵ&I[od!1#*]D'C㩨D9nj:*'I֥{;!@|_'{ nFur8_h{ܹ|QG>1ItBωY);Dp<X'pN7}tzXX(U^K'AkBjdZa!p*]ᑝ35Z*x{;͍=Zl(93/[bgCQ0X휪_w06p&bd +$J,ѕzq(sН?\/FJO퀦t3,ILl!D`Bx$O=@V;Hl+MK;Zʀ`xŊBjۮ_i9OS/GUg!ଭJR FhG f:)q>R@6b]ko4;3yމ<6Rxz8ZQË6恁;w"չw0e0 `oO0 ͕,qTP<9/=yX]kg RNP7*L"ל7@)yj$[uzb"BX,;^$v]?2sg_лk'TCk :Cn;ԣ,cHBr ~yI$=v|Yz)]cmB}[`3< \`wS;;(ͺwԢ} Kƨu$ m(7LN0[Ioq] sYguJiSrBCT\m'f}}݆ dt='?:9c45'62m-/=Ow^r׮G8ɮadDcGjЎr)K, zAr=v]QYw)I.;/Z O4m$HA+YoO4# ~I xOH34EzРw$Z Y2d.BDRl =[uq{$$sNDώF_*놧U=KwUBSKJ!cvu+G k3Ԩ$Ux~1 'O S=M&i,}ʴ+B.cĽי.a:l<}^L$ie] r4'd.)dWKr(0`x0ϸ(ѵ*C"K6v.y#*:csm}[8(/sIr~>ࡐybݥ L9$LcV[ jp Ƈ>K!_E#XW|`PoSZo5Էt2g{j얌-kGX@#ːJ]M? WZ"Ōdj5ȾGgA३]$) hF cQoh54/t)g$ݐyMhw:[^KwFl1IP2jL*jfDIُҦ&x#;k}]  О8Htosb}XB+ ˇ3U^rsBv,A`$ #[u@)EX{l=\0'm%Fͮ=g~`=H>M~=2#8v$Yɖl ƽ)pז&&4?8w\du0\pgJ~ 6mrbq-HжM&z 8Fŕ$Y)Ijf3ޡ)#>,Jy>a3& ?xio#u.|>N*'!u FO5i7] Qʹ%c-tݑhef%!TJ|jPPgj ˞\waڧZcC3^?2ZK3*)kr\{`Ai0cې9GΖi{O|2r0Ԗ !7r)`UMkyneYX.k0b~Qai^ˢ$LD/slν^'[ZNy7j J)}LRUyMWh\\}h9M@B(w$-V>]vu^ My2 [Lv:JÉIom#'bR\^uXR%KtuJ2fᐷG-4(׵W&XɊ%o@Z+3!^X&"䞅a`̹߃; XgG m=J]ZW3[WB`V n~-Fn\) FB7\ְAҍ0,Lډ/ 4biX,˝%$PֺCERuI.c.`zXyPr5CQ53@_$P2Ä/k?UjbxNX8i<,FۛⷫeVyݔ Ap&Ein7:nKwܤ_=Ud(=7sT~˚RՉ)9y~NlMhVVe?٢úQwߴco~'\<6K{͒kܨ$2!) 8-\_K4#`l\wj,:M |:ck8b*.^s f1Ee R+-@˷!()Ta|~(mUwֈluwk&'7ﱷW!>l# \P)xSPY?-V[lŏRcnRBsw/p$A=jFͦ"+8E|Y k)$'EZ ",MG9u 134Ro g!xpT:֣ xsʯWF>X1V>=CcIiv}#5]n=Eymf8gm=LjƓ:އIxЭivf j)y |DǠWN)9 ZZ2[B[V;qH46Cee9x{OgQM~n DA5P]v4kon=EwGy 6]0c.I| [^n'r鎞3`HYNHh!I373d62RdW0*ܤ/T,IHwvqrr хK<+zUt\Թ"{Lfh$7 jgbU<ĕmGSe&u]#H#f Gмw%:ǯdJJ ۿ/62R6!4K[+)Ğ~M~DZu/ݜ67jsF2A6-Grԏ |_0{3QPd^a8vp[pg w2fX 8 'Rf{ vOWB}-ʆ#vuA0ݩe}َ>>"46P$)Vr>~\USjV0z]seIj'X ㎮, ]$$v浟,2 βro(G7F ]Ƹ 9WXKb^~&#Bا#U.]˄n^յrL] U)ܤh^ZPWlAKDxz;{Z1å/]`Af zߗ| LXxmkpqYl(+1-kui*d L?냿TcUQ:hܮݸ63qH ki91ʘQz 後u!vwzw} 霂[:tuL叓+D(I{C|دBQbiCXV *doV@_nNςc9tKƂ`IHmzc&1m)z osWAF=`&cBaBM\uv3rqPF\i'󹋀jPr[Txoc ]M."8;RjC9UV/;M y;4:ޞSR2C j6lZhtej DѠuJ;TiT IOI ԰,ٞG2P bX;k1&#A!$4bi إB>|ΐ(RF2 tT =+r֍CL6Sg+ѭBAqk#0k<L!-of/|DP7CWLkW7biRmI@$w.vOyU(mP`VI`" t*2n4^ [S60xw-4E $Wlל HH:"qۀ4W1YE Q 7`lQb+R52Ej6u<'sif(=dke\tAnrW3iܶjsmD@fLI ЩG(!Ic?*W3]l1hڧ=)Lr4]h^6dvp!q5aS,hGB]k&5%?;|ݷ}eju3n`%|JB ʙ\ݘ cӵzhY;l6]ٽ?/V+n)ݻ'eq8ȓ(Jh@.gp eg Tjˤ,VRBhMWbwʧ ݆PGxWX7sIѓ%Kҳi=@ 1m! v!2)打 E͚oҦ6Dy!V}p:'raP*T Ϣ#>(ړlE\.E@jRw|0 =B?AIu"{pCxIV@w2I@]=KuB|RoW+A"˝tkNri[\{ŸB׷ޠ9o>hR3^'>_Vp97FEPb2-QgZV\V'c zHwY^x) <~1r3ׄ[jWRϼ1*K+}UՑ%d@<|JEn|Nw/jD9^Ua ) Llƛ/F3E_}Z[ϲ=,3|jט@q NloF5iusDSn;q=55Ԍ??*P^H90Z7+J j"|*z}W f%( |H'}M$X¿*")z.1rܙ۟S"&;`|6E  9hM}z"Q?!p.tcaM,c0Ot%)uvc,v-b"i@ĄJu3'YA?J#I;N {~NɠyXE6NpHj +1GE`5t~*I5DSZ/g9-o *M8Mb*@oyduB͠%uQgAoS5̹8=g*"=1!!ԙ8%몯|haXwN 7upfY 1Ǒv᜖ ;ZnU9%뱗YRbmRY4F CBCCh36AZ$4WOq]0m99S5/\"a '^0t ީ>Ъp|݄Ს:rCQrk`ZO`vw3gJzcH;U;NNNAZ$l{w, ڣҡB_|99Jm*!tR`y7xcxpϴѤŒ &ދ98m}[}WW9Ҭ.ǻ;L\34_@ߵSڕIҝVfV*Z4DA؋_KѰ,40#̠ 'Qmg7`D]Lɡ+pCUwq` ^0vz$Yw&XOo?bΜqyV.6-_{ 3}N!=`&vy=N~(DU7N9uG<_oQؾ&ؼjj;]ޠ(%oVشYgx5TȫcyiaI@wxqK;-aZ*]p׀lHrq&G-F^uW6OKn(t"g5 SZJ-cQp~uJ2!Oˇ_B +ٹT(qd3DF'OL(')~ʰ1/xz^kWO׬AˠhT.4.0K*p7 ɑkJ.MB*rd}G=V'x ѸBṃ(+զG2j,f~JzjY(tgMgc6"q 0z-r2~\ٮ}O+\k&> :fmWL Ⱦ5÷Qvx5VƐlk *戋L ӷ;`9G'ɠ^T$Bڜ ݣBޔ0k\tL[Wt*蜢#mw4'aZmXG㑹*`{{ڳu@FaWh>UkR Fʺ&NJ }a% ']n إz֪+x3!ak<;tz(%Q/oZ`zm{ ]_"WW$sh,F[`זCw^;.9Rr[W^صwI{jhjl"tI%L MQio!?H|2\sEp?O\|P~ o\{Ut :r6Ő_B^lhS=P+0ڬh\_k20f~@[#OKQ *݀/ 6ıgO0Aqj[ԇ@ p{' i9k>ʮRF0j+zvփ(%bI!G#j%9 tRz}Jʦm]47jS71< Fߗu!8hpKŗŒTNNh(ݑx U9r.hP]ո˽YC FxC$tfK5 ZZʞ$PLς(KZ5> zڝ< ,t^6Q%dWr"0nd$B dǁ7%ʨSErd\[kzݿ~7k„ ӕSu;+o$k7" pSYu\"2=_EJu]Zg (};^s|L B68 S$3^xQG#KwﭩgM*tK\#Pk=+'7*U;d 6 ݍ7nn9IM{WڡTdONQ9b$z|.{B/4;dwXw*a8v,{ =u.C\wڑGe)Gܧ;y-5~z_>GJ{Nl#t/DQ4 pjy5U|Fil2;zE}F P`9@b|=Z}w Wё Z0NJx"k+lS,#d0e?k{ :ꡜ@7gXXpqR?qL;I31FfW%Yz]~~ H:| K/4@ymm`Edpcg^(xO=>c#ƹEnVBWvZ>a1LVo̽iVQ0d|WqY]$+6F QlLS2:@21>xIv!1876gdҗpnJSt ]9l|7C\u Yg3ay n(?ےg?fsH</͓i*%vu.xgC0Q*}*`z+Vur'6w:z/`_.MbkVZB"L85un*,×ڷ\I pnY#۽!%WKׁ6gbeM%T>j^PwN^'bK9wC$i;5ẑ `eNfG-' 3[>ARzE|J>T1:S&aFFl><|KV+=0>\ƊZkpvv4~ar_]-85 79WI&=(d=#>փ헃4)ǵ("vIgcV(+9?4Q^?9MslKjH)+ϝPShZ-;/>%ъ`6GW |WB J^#n-"_{ti88p;H8GODfYC}50{'"36^k5V&>ұJE}_!FQ?[?)ouP<6-fcrkkY~DtdOOzMIC_RW\_;;%jl7dFGŶ1(Kf~O0HL)ykף-đxc~90LEY1`Mw%;mR>\,Vm؍{A`0ͬv5Gݮ8>!5\/둑V{7ZL^c&k0ie]>_w:d^Vbϐ/%o=3ohY[nytcm RvKX2!)dFO 1bY:IE;SHA ElF٩\ Esb%&휰8Zơier[&Lϙ|2{]Z|#:ܙW<.!j)ޓQ^ ""loņ\Ֆ=!cv,"$a 7՟O>\u>w*/z|Xm$r|;N^g!DŽܽʞ8Pڸ wi \~yKUa^yUGcER+W4sT"G9\$Gށ#Ǟ&/Z:N>H%z(n;:wE ?tVwݤZo0(oLdPw7<2ժ)FD> jS8s&0ZC U*,6JS#ޝ罞%(MbO(% "3D@9rf"e_&LhND!A}J/=m2(v>d:R&@xEMotҿwᅕ`?Lmⳁk^ާofj5R*N7YqCrYAN;~-H )DZѦUȆ3|ۚt%[rG@o+gXNJ=R3;Nb>y> d,a*N BHǟme xO o[e`/*+MT6r)fՔ/!¬yvk$ Їّ.< J!37EzK4AW&[ݘF]O .s,C̏"i5g +WE'M`J{1ocp)"vr$6n3yxL=. ~TUjDCAJ"@$/IlD>y2^m'G>REtX8% 2|E'ѐᒖ1`r!@NHi  T`(6M]7܆N~NBfOW4 -ͻ%!oaE,T:ҩb"\!Wr0όx31$M@$e;~?_Pn ̏0Ļ_ GITMjjjϧ=5m0GQ1aqw0.JsVJ={qϻfuCgm1 ica0FySVBn5Ӽz;5KF+Jvg} wה2w~FN태VW%eKSt+CZv '2r!Jsgv|>;ߒwcBvepAQ Ԟ_D]>>dox/e',+?)#R9 [;$`nժTֿz!eFi@*.zh?x?ӑnty0GO9C%Cl4mru-Zdk%A3y7#$ b3ѿY[ I ޘ= \%>TwT3?7ŝ#٬<:@NV;*V|#xܐp)>z~.J 3O~7x~C^I%5ASJGʠJojS˸vؿf03V@vwDr,5Ba[|F48]P-֟\<.>_FOYkD÷ OjvTϴ!䍒׃{%m/;54k%φSp;3T)Dk%i862DMA(GW\(hkїsƹ6fĩ&d; d?"5|B ɿI:I;>WP^@ϣ WAۛ);j7W UD^%TW)KSɼ/{0\V^(=Tcp[n2H8Q_[}ma&Do+ ƦtbP.bgZ~%*ֺ/ Go?/gwtV^3Rf ; 2nqԱmb(`d8lҏ*y|־ٖe,Ts\Eh5dJp3ZŞ ?bx:9/4{'-EU ?-'Doɚ# 'wo$Bg@1s# 5oe1k?$hR}. iړ{CDy;bB3FHK&[OP[>Ⱥ_e ichz@U:HVm4o<[Cj^eCo&n1-&C(`J Y{@""ZulHG@`s4Kjq3C^D*܁eÍ`!W*el^qAયֈu^GwvU]e2ķZi"~z>\N<s;wR||I K`uf5DJ|(*FF!0l R 8{w&Nx] }`~b=[7-u:z7GZ,FG汤e$GeMR!!2^ /7އA}[ՀDS`_ bx/vl Pm6gf6堸vO~aK$%% .!jfܪX/Q)8E uѓBڒ&/ .зG6dY2p/]`L:jWlXN 4'(H*:+UKM-˺mj6؍cE肐 `PN{bYJ8]h vM*coB]e5\CS[^7{\;&Pa oґB'q/蚵f]E 6bG WKϰJH[ub#P0>, F?M2[l]J4#.SG~*co1AwqZ3٠75ZjJz Ut紧Q(޽uO~# D.x+ZW4>} kEͯ$F\\+1xb}*[Cݣ3Lo+7YawKMr84n.=U!#X~NN[_b_ep@SE9ρ\os> >/֯bJ0:U(g6[$Ԗю) 9U,IύS].y}eOh)G`cgHK=T P\?]1*;פe}Pʖ=uop0( 3EArEq`VzY0$.VҚ[?FFB(.U:__?3q`%Z?YKFw nھBZE1L堖,baH"34`15Wto$MS~zyrfdcJWHP>JI}lZLW5C8,"IߵpZ3[ѵBg, zGfȇzR SՂ~KWjheYc$ޥEeIh;*:e!`aBe\P`:,97FƦko~d7}ӤV FckrI[惍 uH{).iYs0!Pk!&R)\ZD3c#ē#j+-L*:5;y@ղStT'=ϲ,)Mfp'Y? a0{n DlP&R-ndH::co?pĹ߸V\R^ڀ~+d8`'(m#:%85StlFoJKͰjN=Iݨf>>23W4ZCe9l"]$!TU])^ /Bp2DMBwh8y!Dj^ڬ7 -(Uٞy":_oՂЛ ~ѹ{V2%!3sѵJ/vPUI 2v#>|< n.hR UW%o>Kc5A Wj3#b&Y&ߕ^6'~d3b x/Xdݬ}FVN003#WnD?8n~y04Q?bW:#;1Ev -!2AvuLIV<م1cI+\9ͧ~j(@1;rĄg](|0$,¹ˁu!l'VcG@X0Z8ٟ!g}pF;<*JN~em6EKaBz|m-/tA&A !5K?8 :x|Q#E^VCXU G¤mgiE޹{bUzO#jM1"szϬ*b JG{aƻVpȰ>TC+7'^5rw>o* Hn>/ wSMq Vseg^z`/ h[RdNbz5H+ 6K5{ؠA6*GO߳rn, dD75X`g}*V}.;ђcr(?&Rqs|v_\t?O&pu(T#H~ER4+. eV3جeB0#/WvT7(ViCKVbP"(\2[iΝ-̹G:wo#Vɓ )RFYT,Ӡ*=R/@Gmlp\/ng"GrzO=i @"&}q2"fӏI}lꂐ< |T$E[R;c3J蛆{lhsG[,H tS[l`ze>qwIO+-Et^w]\޳!Ǡ6q(ä's?< GJC_יП*d!/hRJϐ1tUc,$ ᅙr[&~^s6wy]J5жB^n$=X[Y~*hdk~7 7 $ՂqUnBP x]#O! eDDI2 Ygi$"+~``|h|#<verV< y^[qTvx6KcC~u`V?aU1.LShO~.v)|-90Um)`56ظJᠳSQL5A%et&_lxN$@X#3^~n*_բg{$ĭT7M ˲,ꛁ¤nZ== sL߫=Mq s;tO@[$*. 0\t|urߏA:c rB8CO.go%4Y*E' AJČ"s'R9m6qcKs1j9UF/:h7>h5GS<9۲*8 tǘ*'i256Ucܘ56@=2*A6*56)/*ld~gI/O c5ȏ@M/-q4eVa7SW~]`u*1IEsF#c=}8nx[6#hlc*+2 ;}.|-PS-pNF]/ǯubNtY9y:Tn)Yv r3@O{ui]k"QfNV_pM3K(OڮĺOU B;,5a J,yM3$'MgDcPRVZkJ#slnRa-uo'/IR+R5.uZ?@Lo=8/^6"Ɲ?>`؁ iN]wxJv\C$О~-i(lbӬg`h:aua<7e'BޖCcgg(@˿DrY?*% vEox.ۚ@\̣Xj @t?` 6iu|0F+e5Tӽ9'y"(\m21tM=4]%0:Bq >$a6`3Rv@0A ^~&en %uɟΔrtBu\$ lv}!蒃ayB)ŕ;ΨRs%*Q $MSvv؄upMKqe-r4k\p朎EbL4jM!JV)ƞD`UW y{mnnH|I3,ʪLz0_3|e?OZɶ* `y&#P!بc$ߧ3aC9Q3lSWƆ}ӌ׽Cտҫ2 ӭBxb ijch;@'Ūnj%ÞNs=v>M$7..HW#K=wd%a&4MgOXuL#WB-λ\}s5A"AL̜zRM5a 6e,vq|@DWpf*eJnJ@|WSuR3Rhg }MFʍ6 F`?ƦoC ķD0h%*؇}6=r 7 yd>E/ @g2Nijh4/UKZxXɗ()Z1(YGR~@?ʏc[{ag 1T>ԦEReSh^6Cj8U^|/~̷ ƼB]oG#|V>$fpo4ap)1 aH,ޢ p;Z4l/p}j:h 42.-&IR=9carM `И-u{KN1 UJLB˞mlGÑ~D8u\X\}+Mːrŷ.#mq6ߋD߹$bLYRPhIzg`fT` *)\g^~]2;By g1q>xC!պM%dWڥ!_AQ}-!!N0 ͣfFKF_Ǿ4:(c tP Ex%m}W,3ܥN*a6G18j_<([o禳Z}O}g $vf?{LG؄J7;m_61FʩjCM1wzT;N >JsGDcAQ2ɟpYKqla@(4҂t 'sg-2׹W?K7D,dz&i#Qa&y2A1If !Ni$| ^2MA(1^+‘9Үx3%3˒=Δd7G'R_Y p'۪oHhn]''s֭{7E-ͼ^hd, @ȍ%v&>뾮S_};T*wԏknݱV*hk𰆒D3]q?*`:e-5ZSfqQ{r]g5 rArԱ$v0cGdڜ1&AՊuۯfm(2 .J۶iX%@E&*JPWܮLg*+Ck'jנ1SΫ]t Y=ڦAUjɑ*STeRZ&E{d.ti2oJ9)/Oo}bq/SF\Dг˺O('rV2E@``X/E~$!il*؝Aΰx:J]$Jf2H l=^.a'&_lVG1HdgGN2fƂN>O?A<_qO1Ct-DR7(-7QU[EfB*5vՎnY,^fj#/K*6ELdnՏv0XWe_b Ly7t}NToQvzzç4GXxu|AS ExECj ise$vPv!4n*q{F}UpiQ+g$H;zIZg4U fHş6?)b+L1G>J0ֵ(qψ&"F9eY+5mtسh.*zR} [NULM*CO QveV+n;$)ߠ?dؿ2ZPOŒ獂&Hڋ yo!63q8@sBkY\+c Ȼ?q9%4eIbN0Qu;\NǼ6ϝ$> CN B1 {<>;`BHgE=bm$aGm]|ݢ ])Gaei^(㙄0=e0Dvy"pDk&ݚ]p74߬m?o+R,'16k-zlzB+kk"wK;4dZY+ȅeo6Pg8Iقǜ2c 5}48!Q `I߲w'}Qzf.iLq{BCpމ`_`3>h׮h"'ڌ3Gk[C~؂9dxִ\2ۉ@Ox` + ^,vP⸫Qar7uoicBQ4 p} ZPHpHۥa}Q}d3S@I76fU%Ee24(+R+'L菊%Գ)alDW1LӇSIFcM^d:Tp3 !O0qAK/Nl;1|hB(9 := b{0!׻LqT%s>:s) җ}Я[`d@||6$@^?BvB@%=-+ [f⦱Y1~C3l 27 U#<Z(1j8N'DjrMe&\"8_] ZVB]d[0KMUߖ,1JIʏ[K;NÒ>'ס*->—2UExt\\Q/iU^?F HLɾxn_?%j1/_C4ül.bu:KL.PFo"+~0)P.dZ [sJnrRQx2'dyw;@&ai;L >!]LMdm^L 3^{؜өT[KZ15W`NC|kH3%c!a,W~_}?o;~8pym*oDyXvT4 A'ptI)pbLW6 F-lcv"R U?SU HQUk ?9`{,C؅{? pgQ-]]AF]u9dU-CQڋAe۶Ɯ,+ћm6ouU@]e- +='b@_ `D'Dʯ<ʲYh09v4sq.򙈀QSy0!7[Ԉ"hC gӄ0tab'EP!ao^]H)Xd:r +2O U4u=O)]@_2,g.xMc` +m[sGpO ?RGv3K,Jn 3*4[Rh[9doyjz=% Lm`[rJ R/GAI0%aGU_[i0+?3S(ݐT}s+[Y 'au_&v&`"\Jb5)8Npa'tI;m9UMl|DAO"5*>~$C̦mQۃdf=SNe= zDj(Kmnѹo/]r/?sIQ#t$dn_.]PMiӞ-&k k("+.UsnQ o;Qcp,O8!j߸;` %췦)Cy&@MӰ"mm0ncl\f7Zi0GVi;ҏ_%>PS_V2EĊcB [dZMOB6D8" |*<#rRke2za\=Ȉͅ2Ėy>8fdYD-faow!-N N:i6)-nvh"PUA>+J7 )݁T<‘9:ړYC\.r.$ RgĮBX2{zȥIܠ]6~\ˠq]? p+{Ȭ#3U2|JD:OM@iooí߱2gwz@ŲUϤVU?F?Ƹk/W8+(ihO`oNwyOٕ#34Y8rvVåk3}nSzW*X"\Qθ\xZڈM}Y3xA_@[C(oag*b_R'+}ڟ3v \v#=b0#ɲ6z- Ez] ܜWA˞HcqUюn֐Τv /xZgYHڛn)6m&-hV`~b7'T~]<7o%3r Mxc ͜N\gW_x"!fs7Ȩ('ܩ~afn=իw7[)O?62c隙LpjyP뽔a!S9y:,krQeݠ(`@L/Ò/rXWB HTT2:Gh*|aZ4E.=aLl·8~jy{.钠au٤ђ^5nIݑ1ٖ dg(%UɐkσdJAb`հyA\ s ]=dv {ΰD{}/٭a/[h?1A0̼QOXIy(`O3|N|~(VR ڠ 'q,qzH.U{s?q# Ё5 mqTog(o8,{PyRȗI|Ț1As9&1ݮ󧏋 *Z{fl/" wzgKu~ϋjD:ASǽUFP[7eҲ2~ \XY ugԏeYk@;M 6 OSќKP}x R| OH=.~P`d|ȞLvqn5&}/ (Md1굝n6p<1Є*;Wx/3U $|xT{g|'%K+ -I"(\$z쬁3XMd|wtW b8h=]pga8 3[Cmh]FC6fA1@B=8D١kKE K Iێ[)$&9M-9Mnz;4"QRˣ6ģW. @Tٳ)y2>LE ׬Y\x.' |W c YK.՟ԉIޚÿ́"Ѫ4B$)RorX #oZFƱ:LpzqL1&xI@gEԧd.y|k \BRk\, q$S̱4= r4Kx`ӑ%wTs]V= ʝ Df2f ՜qTT.tL %OSUE.EoYH C@|Y9YlFqx#9-WTXݤ|?pGlri} t A6e @ z][bv:jmnR<렌%=&,}rrA3{qNNE$Pot%g].㯟%L`wJ9cK6*gT /VwJN,SJWvgXN ݾ? G:" jڙ6m=u!HSYx͚Ďj4RW ɄmbLAc ]8i.I|aQF-rD"5 Np y(G #dG9=}# WbNڂ7 )%t?a1c2LvSP\چvmFe/|x 8ygD?y6:T;^<_sK_c6רaZbQ_R@Y\x<3mk{jxrcv^N=V&8mIOQ.s|]K3$ߢCF`w.3ӻkq2Z{2wSTE#{8?pē ? t֠:;}7`ҍɸ:y)g|@M`"=zs&fe0㊌ G;i">-<ƥ_#NJ}b㞔\}#dnw)`PeCFR l fP- Pae!,:Y4!TRy1PwֺFj?JڴUp^E[PuN (5!̝N3c^R>$ԛ-w _V Iq̰5ef3([:e`|ESLj!O'%#.lQ;Xۃ譌UFsb#&BߟһoH蚐cz_МnĂtMJTCc btJ1J#XZOس$nT4Sw.h_mC }S_hE#:R0;rs'r1#i,DfSAclg[T9xF-h@X3kɛ i,^Uw"t&Q𐤓83,c;ޘyc])np|t{K} iNl^TBLУ;KB=VՓ1alr iʘ-dg(dy‹d{Tpe <͆ MrYoYMP!L{w6 .*Ɩdv((O`\ߕwޝi5v+di5\G7Cr@PE=oM jY+ X$1+NQ WCBE(twF–vHar7l('_C+*"F5b`fG7hc>3KȜd^;iw: d.ZȚ`ZڲXo/Z7o&XDťMҠ,82ǜp`70>\rx0E8UQ_k8SSѪr{I(]] iWxDe! ̒ |ʚ>^,8)că1?z.Q%ؤVxطp9uHNCpyD%_P1W k_ٞCnt=Đ3_4V iaԍ ODTfYb]"ׁg'z Ӂک4Gv0SLKyƐq̛ľ]&VJm}G!Kp Qع4BVNULMW gV%{ 6D0DjaF }]dLHs1Wt=3SIM/|fw곫w 8FӔ)o rY1uz5Bm.d 3V M3|3_׷LT).QUqNÓ`WqC9۔Q8q$U(D{ǀ|Cjj[im+t|pTc>P;f@,״ײqyqj8 JeȏkJ" #|-󦴧(HҌ4*| #2N'DwGd0i ̣Es2iBP]h0qx@vR{8ZZ}Us';)=w"w " B@olY(Yl,[f])M.ɣ\D&"6v9c=_ w'F4SrW=Ean8!ɗitտuܦYt9+e5^q5C9>TRB.R_\Yя Qd  ~Rlg/I]?sEGuTY7v0ȽeMMl,Fؑ4ou|Z{>>X}8҇T VɎOºW5@,hB@HIfE 2?|W11t%OyVV+8ҹ`Ōi I܊4$&ejLwg708r"^=F|T>1VCswC&wb1a,Mh) Qz@ȑ+ܫ{GHg} ԡu]IƱ h7^y"Ú77Ev96яD4‡?ox-a3`;UĐW?re{L:=tCdVTI_H@WMQ88e6b@Ze.)x\vA?hwL9@Ɔ%7aN<1:[{JgZٹbgqSlvI^4!ropX6>H︱!{qzBmvse!UB@ٯ_ѳf\X mI&An{a硙gZ_נ?I#\%3deȚ 9r>bEᱬkC㝢5EDL;Ucl7_}f/KievPQFLj4zu.q~gf"N`8*;F/d c7!1 EtlRe.6PtqA&nS`>jȬňݰu*}EjFA~($Fwj&%..V s\'^[ga_GoQ6!fP|U|$!}W{|sz ̈́ >$ZO.*:2任7j\~JNJBDf"dMI4*$/k8휘#bn3{Ų m멇u`E 7`%K-Ms\/ kS6]kx9)投b^rgq7mO}EĔ? O Z왚25I?Dsā,LZA?0=X?MDlz?SJi }obα^D@7wLmUfd@,(D_wlaTCZOvBԑZfA? mZ/ }9:[c&Ä1^Fz5R ᲣXVV]6j;tX•C(I6Uw3A'@5 Ac$.MSt}@RA{Al&y`Ň`^z+1*$6SS'o#4ev&.AXқP䦆u6P=.Ԏ+wEF92[Іu;u%cUW&@ 9^d(jLuz/ 0*,SA8 ْsG>`V;0ljM)O UUÛN@k觡CBJ>v >"*4cZT·ebʒId!W/,eiˏfR^(1^v7vh[iOv`^1< Ѓ>25,ѝXK :=ljl ʋH(`+f:f,y*L3.bX@d|;vm@mRxshx&D0bcMx =lHW ' (l6 lVC NX0 Q0ʑI- W7zOKxg̟ ˡ=цհmX#o_uF^N&摦alN*y$_1(ۏ@SHپtG0!-3qc9dA-p,QA((k*L$ݢ߲"`}{4rGU[Ҟ6U5R6y_⭚;|vQzrFT}ps$857 p+0PfulBi dE&|,1X9#;i@:rgL7VoÚqߢrfW% ]f-\VkrQE@g`.w0:)+@J{/Jߙ볕 ackmM߽9y5iEbm`wԯ$ Q|Tt`kÆ@/ĮG~¯(4bؾ^%)o](B܌8&CI{W&|am Ҵ$ggdh'-ZdH*,<D6W?Xz.=IڈiNәH\3ѓޅi뗢ȞGveC]tn J)k 0e6/w#֮ MIkBB9e[?"hUV"%6k81,h3#~T/M~#*u ms3xa0$+K|w=Ղ>]4H-$dx%`4Q#y($d,2DA 8;q\9x";50/rgsY Ky /Oz:!4i {v/ZOf mɶNdZ7W1XJdSj"U:/*zWs|P duÖ2ͧL-y{l1lmJ+4EŠ|#=i:f-i:/FO{xE-e@F8M Rf 3jn})&/4nWWvYj죺؝< `g[^RA-ZP{ҬovLZ{g 7U vA2,>y~_RCpW'X9bqov˿ׂ6#Wu=k%c*ne,ML҅A\]cr }y:/F`c0@Ď̡,{0u7^䴑 p ]duFBME~$4I;*kBzS)m_v7]ہDtt8]1ʳae܏CI>ӹg% ZxGaAgPP} Md+ @CfjeUcANd%`ag'c'&(Qݶp 6G[G*4- L/TnQkEس:Y5l^WOU66)S*i.?u U3 SU[RrrYWc_"H QgCתx.lUgG+v-.7.hven….%-|qLݲκ}\TJs4{medKX}ko~`oS AV$PYaW&{=)LX6c@  B̾${K=jvCUCp? tCėȱ.7\oh~HK,%v^9 9k_3#5\N9dڪH]29w|̈́k#G_> :;+A¥b-b?#i.$B hNa_&hԏtF ā.U1TɲQ. g-)b 4/Vnߢk2*ZB|ʚ$|>A()Yض]1teQ:NN_噲zĸv5мU,OmӋd7#:LRji aMx ~|YXJ䯱Y7/vLprHέ̶u?{>5Ojy#B9m:'Zn]r 73 ,9T$y麘3[Z_l&lWӆY lwth<1C){>IF/^s&ռ@/!F+Fh92Uiw \:BP%*j^E}J ؇Rb|'+2Rڳ~!wӛI- 9ҮbD6v¨U=ɔ'u%Ȁ[!<؛j[2oa=_r&kȷ`Kkaq{˕u Be+Vjc.Qg  U > r*dhG?M|IQ,xp$y_SIĻ޴Ϋyx2nꋙ*JS Eewq W<^]4znqMˠ]G1] mM@!("1R]1QlKc1"u<9PIR}.i[ %<5psƞ/IR?Mk6cWHɬu"\eգQfn;yS3~<%F;FZ|d/)ތREIλLw*j2F9n.ڄcy׹-\§íKZI*V5Y~X7pn\Ógq'yB^,X09S7a&D-b—BwAG̝(>;οR"K!t~(iu2֐R k]I[T"ʓ7:8{m%1 /NF{~)^i~ezϴqTm#ff1aY Qiro}Uz^R/L3I/GZCx~áߦ́lj 5.DR*sL12s0> nC/iAʔ2ss6~z^\ ]b [GpسICڣ0TZyĒ D#џ+U(]E6Fl  vfWiZ+&mΩ8տfB8:t;Afg>>ߚAVvj%80 gȦh.ڔj^)Pϻq#UKJ@BݺsvwuyH xuUV |!J ç0!"Tglɀvvħln6_e KfP"2 2JI.>ڑ~`Cj M#028J{03t1~h{Jh c#FE.~O0 mA5j*m?NMJ2v#b<%KL *Ѯ D`e Wi*<;"E $<9G \!/̃7SNF0N%3E̊Jլ9nă+;bo?۸Œ>m|t܌W͍FaެV%M J>8KݬO3.xHADjIod6)JvE(J1u`zJVE}Sx^b!e)i_ܬY3:-k%aMıMO-9G7Z׏wϤ<# cV:=⋗L;jEТI,-6^$!Hcy ޝ,7.m5`&KRu <}}4A-JFg,tw#[ɜzؕHR:WnQEE _c#"!A$+beT Kk٤'C4>1lĈ ϠKj 곢t=>E bgM35".C0euE4oS(w)2Y)(yPx4OO^'6RyRLl˘ȏr=]sV-=*ԎmuSN $rh<>l`l&8(q2HyIS[.'鷂3D:orޯnVj/XyNa]kS?k&nibTcvCGM זiB̑]w]n% s+nZŃ$F>F÷2| l埋Nqv`lӹ屮3 )w'1#[w$l9^"mǃdrw>ESw:Fh(6Tx4 tf|-ژ]Q[t6D#OٮvؘfA{>\%&|Y@cPEBlA6ߧ u89TA}t˳ս4o #x`-0m:J =`/`D2QHicjas`r<\ ,^ fe1?']] P)$Ze:]eR", ka^w#wjqG J1<># ~ٿW{ =ME{>9xV!$by͋ÒXO8㧜)(s 4G8ۗfP\P%/]zg,Y$#M~N2Q }o|^deӽgNA,|ถ91:(2ϹVkl"ӆ >rƙzw# rn/]3%#z3 }{5Չti.szr6Pu̿pYA}z*21U;Z[hLH'<{!u1JU98g ,9+Vg @N3 r5 6Ikid(T *1>W= 9 s F{%TPCqAoK:I:剎fWl?kkZ'[!{[vP?PFBJ 4f繘AG)@LxU%80P6ބ, K3Plh *WUe/'4ucJRX +\G?55W}xxFǻoz|>2}5Kp&r~sք]ݱ/}є욷9{O)ggxu'u>$.`; \U,]+9f̯u 1xĔug^Kh1]J?,\1jo֛S¤i| vk 9 [h8`Б!l^qrY^,VE0,&V{JI6.a0K߷ H3 %K-#jֱUWb-\-UCK$jamNõ  -ҽ։[*|kGęU`r<{6OzzqGAɼmPkgJ]$9OȄ볡ZՋI^#sS/tF,+Z8 }YwXuCFNL198-Me?ej7c/HC=dAUes0\8Bx5i'z!\+(5eS@;h'^}0-"yqh }$_BLk)sDSP*"8\EߗD^B YUO.ᷜoTdAZ0uvX2}K5 m8u(Dr)S]_*|\KUAUb!{[Ehq35P@Ȥy%#Stn"w28"$9D$z4/LIgevT+&ㅹU1n aemO-Ê`N(,o}p9vS)8$hg2%sH+܉ % %ɒB$Wo*W tOw_^}0쓏Tokb $=w=8lx6 6I5&Hylju5pr {c¿nU_ K{@<90dE7&7 H^Xꡢ5??798[U7{Dpy*qˮ9P:/'9<,b-OCRI$1md͹k;P92wPx7{ n&@r]TPk8ez(0ʜ)3'ITN`8 yCL /Wb]t @ WVC^JT^}TᦢT+ӱ*wζ+uo*ç-@S/Ǐ6.i 9%{k$Z;a[Y(a>2,(Z/!{b w򇊊e#:;ݭ9Ň:E e5$ڻU3&jjF};aTp5y,,|u9uO ?<Ή\(&o*X$F.66"N#7!̈́ʱ"yc5Vtgr|Oh]^p,7+.}yT)>J >uI.v.}A /w*7yK 3b#^R9f;2cP\@֌ƮS.c+4ϭٔW#5``>Vkx 7 5!P^0Z;.$ڠ'nZB˽țV I{CT=X $ݍ3lrmt<;x #ZŌ@OQj[x-rS9cd]oUi\@c YRM-`LwDǑĮJO䐗ɫCeS,y^EjCR=m׍;І'aC '߈e/7hvž9Bυ*s-Tp:&i r9!۰b֌߽n5wY*(H`Ք WABlQxq,B ~ KRįQ&wH׸` N'.MEgn {jGŜOMִ֣꯳r8Jj5L"Pv%JH&f$W` +S^ _\cdc~yZ*um7UOPunWnvc' ֍iBe9u'/ɮT< O|*ψ`-W20F[rd 36ںT[I"\KX T&9ʶEljs[Vkk=v?+T6(=bgg%ڗ>ځsAHq@k üIL]X6 )@UEՑ 4k;`^%rä/t[m͡T঒"}w+)9;>$ҋ+CO3uNݜD>Bvk` HʁBRUAWٌxfʿZJ{vxщS3$aw O6GdƐ^׾>h{jhoc`ǐN#{~VA=B Q(>&4Wq{14cFgyn, +3xI $\FUvb2v12ݴ; fѠg)/r^B@VJAyVWH\DL1Q18qɍ$WLGxvG#)ց.Q"Vb H]!OMTK<8zwoK$-}\yS9硣]ym\Q ? Gׄ`PVeA$ z #q) ^F2R qOpI2,rm-Q)"|J,3Tb\l&p`j)꓂\`vu1ZGoee5Q?AkPAhLt& `6),Rx̣ :qfA^yNF:躮K,%Z;Jվooi_Aמ[T+dY>[2g x^lCSO`PXTs d?x#x$/VdEnJxز 厮~=U3QՆ&ZB\bw8iI@# cZ{+$ۺFgAvy/#٧tILR36X~U*8:p *+EN+8 _ Zw}Z/d-BF(OG\׋Mcҵ ;*Teuk5s˲xUL,A#%x 2ID8X轪x g/f Ollc,ۍK"@ݿh2`{w&B=XV]]mKUjȰT:O@gfvƪ@\vk72`mT!r'9dկ5NOXǧ}ݖ(GY*@B mWU^l),r7 ARju fLTc0VoXl!$%eᙿ"ɔYC9@=/G81^#\wfGfBszN}"bD#~%k/~R2[(TL9FCt 2c@X3nTL>MϺϵhef|sH@\@~_ߚ.:O!}H&"Bg6aVW:B> y*[`pHh{޵b)8B9wdt0 AOI{XE2Kz}v& $"={ș3$+ڐ,|.6.GvJ-ĝ*b3.ow=t ڝFRZĢЃRLoGHù|ERbxOq2MCvd-R79Qɟ a,[\r{cRCPE&x-OmȂwMV˃RԻНO# UI!qEj O*+xx[:;bc?я5R MK禮Krת yr8ox#NV ^k|=K$9*O+Z*vHIX?@ O}7G~-*6k‡:䃤Q5RL]iuyO.KMVCp8) jB|g/jV{t&~lv(;!wFQUԊD=@DHYF0Rgn*e7$Ԙ(!|ِOD8k~޶48AwdUhp ʤ<5Ww(s gfp3;ٔ[_=gmּbzHa5ީ,K'v& Y*9}9wZymh~uL#.lE'2GћC9/8Z"| 3ϰϢ\%IS݉A>Q1P#cv'L{c}yXDב50ԣ 5)cH%SL([bI^˜Î:]&b񦖌ՙHmJ_WܞR1"ǘ6NRm%by">iLx2E?i )J"nƂ a}ж<~C{rξҭAեl8K [bpq8qf`,NA6n:Do1^j ډBuVB&/^?!:S}J1rv?.O T aͷE:9JQ<:XK$ȵt< uŤMs`*72;fI4 <˱jMŗ7Ձ:`O-cWB2vӽ-^io?JybsH7Zp>:uv&Gf؟A﨏.\w#doN ;&p |ϽM0$)I8gDz1k[rtt'Qԃ6D)QeuoUo3wgެ? ~VVO34٩Bɍe+˜rY IPzq n j_d-*N+9J('?},6ȡŧ;tRb !:E[O}vjb7"ʗ9wn͂xj5Vu.tvCfXYr>0{ IKee}iHe!)cƏr:6!nA{L@w ׁ}?&ۊs}I7r2SS=E~؃vWc-s覫T^c̓y_)C8:K3/?1@_ٖÏ_nhw>nG#;>#SD X] EL$_vtt,+0\Uٔ`?nӘ=r̷FH6c.cQẗ8FC Jt %,Sf]Yn}nRͳ[%Zf.E𜰂l1׆By&ֹɦLEp,)ᚌEXӅuMVRG>YBnH̷X1C4`L Vf~v𰰇!j^!QR}+n2^o8czB;q(:v>NI 4e5v[dЊkk:k0{rL=̔4XwAƦMx&c3# u 'S:. !V4Y%G"s #i;;14R)IN; Li 1;ÏN%?l2q6[I̦C ޘZQG+  "r_)D`-y^ՃΤ5(S ع4#`AT%r@b3Uz{7k3b!IߒrKvi0RAa9YIG'(Me P|-OC([(LZ!L??E:0B%?3=:>~\,)KtioONFyV\IN7eb%A6.eGyh[. IG8G^sDaXp:KE^`5@ܱ7r5wfezgk۰4|xWƘDzOK]SWrBQKǑ?O/?> ;KR( ? MU7(k24qi$jTu; -I 2Ӓ _Z'TG+   }M  m"ǜ H|~+-Sa!&LM!j \NR;ҟ%;waEի3;,2P{T9,%cA|bSр$@N]^}}As0fFcz91([U6+b bqeiӛ*F(0sFe(O^y:k۰dtB?sm_iH ϟmKFq6n18/ }vv֎<ً1gb$LiX!tyjr&v^{<#BkYgܓs!5AP<)WUuCm,t\lCFt׍e 6^DgUW @E*F2gOQMt=r@sޕRD0:'LjZDWܐ少zFiٮrBb[+T'1#͑RG3*4jޚC$5e! XH%0+{9 $@^T #BC_0;~+f%aZ ʹR^$̂\<¡XL>pvKcݴb 7Iz4[ʐB%K?U >8$9,q_SiG9>p-[#\T84_8A:)"7f:J5=.`Zk31:ּ x 4٦N¥Py5x|1eRq6,Ka1dYaPm|&D1G?,^nmqYJҎjSw+k[j}|M_[JϵU;ꕰhBitg[ Mۺ&/'FӺ cx'>7@ܦOARۼp4XrGY4.:h, JUJzå[덺&#G4],f/tʔofI.Z1(z, pȋ [Vs<1}N %,V>0ГȐN$2nģz 2>[GP6=4-Ą%_\TzOe“ $ݓ~.25ViY$Pa6%Vs'iNiE*dT*FO[H*y;v"yJ"lv#.2n]A&tEޕ>(<`4˵HN M[B}a{Rf,cvqޅ-”aZh워.=8L FGxf?c/V͋=|E֑mp}t}h{$]~cAKc_rK&ЦvGas*xR93E @륆.UE@< iz85Fۿx%+攲aH<;D1)0]ܵO:g7)_~ ){vwC<SPϢKwPT &16UiZL29NXRqPʟ):tXsA! o}dM;|蝑F5إۖjn jǩG >oxVň! q,QjGr_Yc۴I-!n,ܟ51FJfj©:pKx>JF0aE<ЖN;Z @L]ǰ2y=: H‰dewf%EK}$pg)ev$3Q& u> %tɬh mDLBɹ+'q :\&UrjL5oR=ķ1=CW^X'\Q/;,]X"GzA'#ARXMsEYi e}iU:W@g2(r$S&PgeCq\xsӁx2 rMD[ǫw)vĺbQ/L4`U%(!f: Gӑ'_+y* |5F&D ʌh2xb۱8@p Sj[o%xja'Fp }_q_RGD A AdL~(kr7sQJ OcsɝK~bpLjc,U`E#VT*B,Զ}%` +tQijʑ?!-\4QjVqve!rUI TL2/:Vk {cWWQl\yzIĠFPIM#S*u83(=xw)נvi"yebVqV Hcg"\ -(3 A= 0/j*uN3f/:_(e sJ蕩+;f=?]ֺ*AҠD~qhe@I3/qʄNÖy!c,o IShy: T nDqT +͎ꙌGưB[]=vhmAQoIdgEۥX}`Nʫ7甤Kk]0JOfsۋ ǽ ,;Dp*4Ax!4|%X SMkqYE\뽏*;;Èk`"Oߺq^NyH4'qarĔ_o``-AXԉDyv|  g3, WwD0 )Q3Kk:UܪdQmU_HFܠ2T BGJZQ__nA_\\{q$d#sIf }/na'lpQH' ,QyC6} T쪧xzhWʺD =OxARF&|+U;nlus+zP'2:UMZ3 ^At`Z "NsrvB_Wړ0vR'u Mێ[)@:^ǝD!_'m`dFBc38t|DR`NV?okLtvS43WGwXQMtJht=~H\]g k45TҘ/l,~0[, dIKyS&\6JLT5*c~%QC|M)R_族oi{"rɫ۴l^dJ*l.;iV%j ,{ Ӡjwdxx_!K=nR]_ey=lanNbGkc͌9?+>JOLz&xx>m%>^6;Yḻ&8)jv6!'<)DkuⱈŤ'b,^=֐xg<%UqhL6""Sʂӂ[&آ>1dt[gq 쌺5#|^$<@b =Mp`Lٶ^\b>yj'q!6d+9#z\EOk;#嗋 )'M ︱wϿJy-Oy.Wm-OAL|: `a\*C"9ܼأOilU4 -v!ߑI;=-_# iWN1w.ݛ8A[K}Й#"NI(`/0IU .(Ouauz ,AHӮ uM2-/} ǎ8vdQ%{u$V:AS桂6Ȯϕ qS̱ 31n^p{yow( {Nu`fSFIUtL PKs!c޽={]G0=M#WJu9 oM[҄ 4FH2&tMgREGSH0S@`V]Ϯ~⒣D;}ʣK܁tT=OS(? YBgHd~#Tk8n]n{wn 1EV[#[ TyjT,=HTV,nȐ"8|D3<!\A{&r#nOO+ 5ܓO @dbRv8o;Wů;(+AZ!Ub8%&|VnP|Po}t.r_V,ea ZAK=#Z+]5L0V2`&"X!żz$PT_,I@pC2}[ﱤ1 p׫J1拈 Tƹ3Ȱx`xth(OLEKI%=Dy䲚[ +Y-_OWQVFF&s;94e]t'xbexC5As`iE^ۛLߎw<$E#2G:^n~ rYñ)@!ar% ƑK 0eRL\;5&mքwO*RYu#3|AC XzZC(ɭG|;\& {ƭ{`Y \}ǎJNuo58K0z;Qgr³RZ̝/j&ڰAJ.asLz*A0;%%ÐkدD+g!}}8 ?v#|x -wfqˑhΜEtsl9C01}`m{w%b||GHQϘPM1{0UP, ~ Z;lM0gtQ۵Wp.%X`X2S;1w+2)6Aɥ Cl,@b7t2$,E9,*;G椹I:ܦU峄XXYԯ G8p5]Unc7x((Z-}cKt̩4G fJɀ`Ĥ\C֤g,SإmpWsg$ Ir(n҃_l^ލO0>ziƸQ̵s8']< 9u+Fm4B ULY|Ri#^.j0VA d̤>$|EȆ\3+bde_.Ԯ{-'@)QX4i4]/8?PtnY)Wvi„OaA+HaYlImx-cnHUt8B#G'midwol# {!>~\9V1E5pJ&xhZgߠń7 kZ!4xS*@r:CVOyZ2Vt=<vPz%~F޽6-2ZNY #qzB'qd!h\b? @+[Gnңr׬7דzyEV/>FEtBWjTLfuvP${b@2-ŢFN 5{s),P?e 1L/?eIMQKV=.QA-tlSYF;- ^+)ڲrό*%YX}JQ*TLmh4H [ilG]|> צTe٬ 3p kIzB|PSEwޅvQ)Pyխ+E` )Ӯ3(MR-85d:`Nl? =5DDIfs;: !u_ie~&Ub?s7b*k`NLI4VGD&$Fn[p_*T~ϨJ \s!P#Yʌ.qݜa Wv,iQ9MXG[E9pj Yzh*h(Aݚi:a4e$`!1W+ގ}yГ8{|.W(.{6jw|[UzmmJSh?hԔ=k(oT\+ZV̺@$ d So cř!t⩠{ yn X_ST)1Ui+nKCp|M['z}|i.^c)D=]nFtzS.*NyHJ2p^` 6myu˚yT#Pߖt)N=|u\oK*\^`qOr54a7qSVk4pD#hL\xEOlp>F#\i}fjPشiOm}z#^**WT\fx7tPYs<asD24P69\E%!z<"пX+) 2ve2P \?̌Km`";ehv[$v"C +]-0N*?M!`S!(pڒyieoCHPڲZ0@_wwVƞ-[)]~>%./˶\b7,cAq2.wqjsy1sDL۱E톙9t52c:87Gi}p1q [^7Xõ3+L^X-Ա'9Ȭ)&aɲC:яZ'CfM 0exY}s0" wO<&k)ԬXH3˃0|a$>BbT?P8"L#s6r:/_m;jKt0ivzՙ2AL,ގ9х$!Ѱ>e6WrXT"eaĥ%Lpg7U̜?|@T$^s}1>gи <{K1kÅ_ҩTӑ*-N2g:^eY0&|ŀ~F;]bJ1jBǻW8bGˑeA"?8H~]&nQ^+0wȧ3ED"4 Ut&/&Ӳ>@y; ,y |b'o;s58ecJܛ_k#{iY )Τ zYby1ASh/dϧXe5 FLGI ?AY`LG/|~x{lq3ȁ4+^L_ҟP7üx |xͅJ*qU%{*_@:3yv*pңHiՔq\8CCaf{SOﯠmpآB0B&a^I+w?M+ьOES~GG91!wl AK ]a׈;RR j#TD8s&1@HGL>8-HU@|IX.a{n{e+H3'WN=jG ՜JA*SJ$\p2H" #KS飵<À E8<9ra D%eoSĄPTR*1`TD4B)iMġ'dA -l켑ʾ. M-" Af eYL ,P1u$UC?*dyI KnU7P6E $3kq-.&]ek zͶaKѬ\1B2:)!#6%8`rv-@=<ȇX!At:fU9KܟeqHW[U[1u@v􃪵UTn!۷@7~o]4~F+3~T8ŇЧY,{pV%ta89 䟴4 ůMm GE/\,XhKqUtoZKkI)386m<;y&$l^⟃vh"bM,q9?<msy .@eD_mm&tCza?f"692}{("d7sX>kH&x| g*ӐHצ;5[@>2m!ȝJv3ru ?;R}+TfQ{fSF:U_C@os$ !St] ?ey8\o62MFT}vj㾋Eh<4>cjۀʵ?IҲ4J߹:OEn1y\8Κ1rFQd33)#NbCJ `NJ@/i)aX F ot LrDr7PF+ aXnav'3+HĽuH B9uۧ#઴8CTRÇf4J`-K HfTRbnLU _SkɵwʖW!ZT!_ԆO(ڭ).; < Z3ZJ2h ƍ fqScz̷T# &S^D#+` _0_G:&<յjۀ@Q;Xm;)JQӊH .NnH -;{j)_bQ4ot>!vY(0cKo.{ \ؽ|4(@}߰4̨ H =n ,P Ġ\:A>mJr Slb)S;̚*X >Y9Moن̔xer-Dmg^nH(A7k~> $㳷9w]=T}t|zԥGИ;i-e9}z<,x*yRN؉w9{ zG3&L2 91~U,ii6#FbEX?ZLjq/x3k%8痷y=HašwTB;!K>",-[GZ˩( uuw3hLElW, cܫ㟎ԍO(MjHyFC`1Җ:ټgPmelOSnO;\5k Fѥոe{ڍ*D~F+(>K4?cEDgNL_똨ۏ o gd/>hc3W͈kᰦڻXDQ, oO7d0N'Aӣ~T7ģ JlB?ooza%4ԷS=NIۘ,JmsbJgԲg oE5"٥ذ0?ZovYDN67%C38fcjYKZ<nAS_ D>F1@+l%ɣnE_O_yo<5q2i-"WWzcy s"_%^-c[3d&q(=L9 K棻V%La xnw^O8.hn 3 blM%#8Gf xo>&0;v@&ZsHW5]6èL86}^f˺qE _)$1JT ӵ׭ =H,9GX]/oMvXW+;&bPBD~X5DlDfGTT<Chw~.Ayiǔ1X RBtgE{nza<ўQꔝ?KLBF$/  6$T|h mYR~4pN7 UصL|CRU%oP1zOxַ, Rnn¿Qq]TpB 䱂#u΂‘x~OvlamD̻M{*UJ7ƜDw]mBW+Rr98[w8Xh'T(ubCoVܠ Ƞذi~M6%߻PB$OW*[JzV-ޘ$ƶS1a>:C&Zz4}JCce{A>,BLDjHdl [R6p./N4b ($Q77JP#JD7ܗUFpG:$^Ԝ,u{ǚ4uc)UP{p_ cZ׃t, ri+ MwCo kG5ΘtpHix?ckޖh:br`FQXMUkkۦĒbYt9{?l<ióicӻo޻g26P,<PrYO *76DBMŭ>c~dc~cQdn\ gď(Z̦iB_IslQP+dAEfIfl<ƕ TIQ,8 nMPGlDnY2?3áƼ.`[K .U'*x>hv $^s)E WS zI_p-Gj}ɾIA0F#W0r'LuWș L\=mD\P=k{6<tp|S;Oc?^!O$UW ddҨ(7dP6[Sb|^aka `A=0Jooy]f4q$U'^ˇ1ԂBEm?44nn/`8{ VK4Ck-:}B`V'L2Yi75pPm!ѓ?) ي[>nos^焛!ba5"뤨dXs˾Ѹg\E(>5 s jk:0gx)tYXv>NI =9mޮ#*ЄAcЬVݵ 7b5!4Q[D\Yo'`((99|xѪ%EN{^N%aŘd0.R|ݲA"ԙ1G-mvvWw;Idj #Kp@r8m Z}TT[=~TID+k R }fMWzWu=ᚫ]KШ0 c{wЄ^{IjQdϔmM7}t E9m#,t9,+?ula>i-$ Ro^ aӻ/(%GWHgJ@Qw&EІ A<\iSvn{"4NR,cK399O Pi,v NXA.Nږ y?|擹N|/;SVHP\v&ua1ѿTg~hŰ)]?P_ f+ Ib`Y{B YVI+WD> PMd{]1&+3H\БÅln5 ]4miZ2,i3\u>8}͟霜, p e }DnBR_lJ;[[~&-֞vPDt*i+7"xF(Ь#F1E~.~̿YE Ѕ`B;?m աu#H8~*e~ {[!\A8XGxk4i4ޘ2ж?/Pfw*v! Ÿ-=:y^>0#*ii;L{9Mbd$aUiz]3>O7w7y$0f39ۡ+dgR~NbP<8Ñ%1%r#'ٱű̝#SZOMhX1)hB4Vka޿$}~ku=k*O:lX?k^c)7~z '3m3 .hXtG)مPjOĹ"Š{W\F:K 9GhP = &+w#Bs緢p:,q'zxL7GhmvnJ+*! Xԯ= ۪=ē OP'OhQS 肎 K35瑛 8;KyS &8+ln,[%:>>ō%.l&%@F+XH4Lݒp ̟=t (!Vt Zhpf]SAUU[i&1ԛsMQd4z偽f.*Gv Uw'F$Za}+"Ga׉:>_F^5TGlXglVd$'. .}^C|BvHq~a3Jm.a i@M7)Ič۫c|ghZHer_g 8}NSfq8 I"Y`{> 2vIJIX[(3l(.PQhsly特sYAo"wҳ.|f=Z9rA.k/$f3Dz Ota*L29;;Bc:aDVeB6¢*ea-l+rYb QL GwجfR'yE^f3(ǹ 挑/5 F9@)yoP YsCFSGg/ZȨ#$PӯS$ Wq+Ifv4k m 0r؜-b#? 4Cb/X ӥ^| "ʏUүeqz,d QA 2$N ]kH;IDXIU}'rlr^=L+@o PZKh k b# 6#`9ي6 ؙF$ώ yi##(.ȫoT+R_A-5ARO(w?+SmELՅʜ|,#.Gpky\:"Ơ) roy ~I[] ڭ}$GTv&٥),\ڇt4vm^!к7ʝB"49c[o߷_Eڬ 펫t(Hm!޹:`1%i >w|c|\չJsS)̰:ґ"eںf${ >kPm,peB U0 g|j_ن_,}Iw[\AR;ߧMs,z( P\l1#aA^ 5{pJ{NA]BkhVEګ^)t]G O`!sFv =mLU}osAUbnb;(X{ӗ|2b)̇F [L$Kfh{+r[NІ n)|A> O\EmV]Uem((q|'dH_kAeXcKD1ásHAn3QjUmM\40 PNQ/vTG՛Z꺯 5IXQuN߄2\Rql]w. n9@u _ub-YqɖMI?t$*'!͌H9 ʗ&dMH朙X} HV:no']I|~s3Ak9 TIfbnOVRq9^%?Ru^œ[+Z߷Ɛ^' w}Q~V^PK%A -6 }˦?ߖvVH̸*6d6C&dF7 OR- /x3b-zgyB#K2bpܞd/ߛgY0q_τX.SY4*$b)K+VC2q@Lx 8R]Riu4BFR|Scz{b4v%opZ)!©LJZGj=#JL iד%BE.ɗ^VX2R 6T%RT p\iʔC4EEdH$E Z5|ɪx}1 js#0Xj2:xet nFs|;A_?4#cn4+v.ߋƻ=C%Bl,tZ5@ԝMK L -~g⑩T]cL $]zY@&7NI7kv;V'G*s٧ޕRi42>Ysp@4h5vv&*(Wy)dӺ:871(Td`ųgx!^IixQ\[kH$@/_>3I(lϦ #.4W`>Loi8Wm_U07ziFZA&d3.2pq6Z9/wLO) f+]n 83 +pr9~BwCӜe(/+,Qq? 0_=SVI&uN›A#g&~`e0ȎBRQc $!֜3'2\~?x)U:2.Qmof])ßG,rs*dRa%Ȅ=_@QBv@7J[&? .Fjm ^&ѮÅ~wHE6TzOx)JdZ1Ύen\#%K;bUm @˱&oFg,%m%DGZwL2 es%Ģ]P؂s!W1\Fd9ˮoϋ0|m~n-=pIF87Jzeʣ0el|QA3ITdNQwM@;!p#fu $J;CƵ`@ xS2N1 x47Llzz8~8A?Hj$p7y0n37D`\`v:'CaKL=5`̯[n$, pїh؎6!ֺAg2oN0ghL-wq98@(:WCmE?{05;מ# &8@%X'>;%V @gp ^} :;xn{,I?UX |B}M Atcf>ƚ:UN Ln#BgApC۔ץT9B|{7)TJYuZY+NsJPQ7WwB$~eo:س4ٗSM-}ƭq[I`NX5|[7[y(,~N }VJjq JKҝSbĝGg菱N;L`f>Wnl0d_xc$FhNH˛ԌnY*H] $1˾aʲW_#RuVn)riW9 +qtBmVcG|իg"Iak@/-8x۽YɇuRNQaA 7"A7lw[@;;O!&hêᇎn_&*Jj]]|8n5_GUxUpl ʧ^F;٣P[I՜RugaXMLz&p0{m|(5;&y'2L*V #J 4^ /Tf֢7&|#Fy(g0uy-V| .V<Ļa!lЦ%XM [3/Sz( '̔G[!i ͑bEFZ0LdVTswcQ崧lX'nAгE/8/R(H*bֹc4e̐ H4dIv,vx"/K5<溞<,.e7RBH+j$!3≛Ѫٍ[v(U";{^ńXᬯ)҂ϟqdF.eczd":a4C' ayR v/ݥٺƲYGwiM{c~ :/N+?s+dyU=Críʌhz&ly>~Jg0kf~gj:sGg$8Fp ީ>+fX*/9Lŀ_/Fh@V=l E?4~DH轲e=?f2yEeE Y$oFzџ[܄x'LV-[>(;NA݋ǡ&7kq2(q#ZG*lE/TٛVy<%CR.vC7ݍcdd)ۜޔ W-nzl{C6E}ͻ*JKI#ť`aX DŽu6iz7zԋ#v@(@Ks˜EDJ!|L(g >1 +(|KВi!4^SuG?Fn ĕ&i* ߛ5^󔦽m&+ѽ'>?v+gP;Q?պZ}dׇtlb?- 'vߦOatOHǮu;@i9MŌ~-D0zmE +P(#U LX_Ȩ;JG+JUM~^ex@K}A!TFEH)bj8d) Xx|3CWGB:?OO>g*l; "}C'hZ nT3|!cL> dj_ɤC lB9VBc)!|?p!T74:M!xo֞!e]0BEDØ'n0.`k|zsvc! (Np<)eۀgjż͓W*\$ y:N[T=f`6qjʾچ3;1 DeV轩J?ILVב\<'mMɗa;-g!]fO+>O ؙ<[B=Ŝ13G#H:xJm{`uZ4:坽mZU oEJbi/Es@>0El?kUC E0]y-]yoPҝ"YOlCRb1}|6Qe0t-l+f2?}f *+ nAN2J]ȺdK~A%Sa~?ʋh3Roאli5k#V@IzXPE?7*T38zOʾECFbQc"7.4988$;l*Rpj.fQe^w"6r60*ZE' 鬏G"_4=?L?>bv5G˫%=V7k Q: D z62Ecq Q[ zk'L{X(N ā-,`@^?BV"9uȋ Ӝ-WM<%ʆO~|^ocFc& ħs5! xR*)t}*9Вء:?h^Z˱o!F|,](1\FQm5oxb1~9_BwPSD2L5_bf*ns'锒(e@XDbNdH4vՅ]"~.;f[A|`1:F)hz/z!&M /@Tc@0hFH_4n5Ëa t~'XVzqH\{1N6!402Ly/8/#M.VXv֚fW~']5o9\|YlA;rx`l"r3-iTxǓ}^gO l!S4Tu8b |Z;C툤Ղ; w|j":vuT Ds|lw]oBkj3A*tiWi3BeGۿPQW htp|x4bEl֩佯M*}j)>cRJLA&/.2Mxr+w5?H+dVӖcR>~LʒJ;pheA6wI٭{vf5s4bS2;>K|M!ghn^w͵EHTѹ/ Jvƞ>ՠb>oL"2mÉ\[e,԰k`۵cqD ,t |)28Nz9&s?KMw}쫍DFϐ΅3=at=N=H\4SLNL&gZiSO(?vɵn W{K4&uR'k3S$}GNRˆG+R{gf]"BPwG טaq~+,fTל|JXCjLsF/Gm  ˴6lmMĮY3hUlNs6ڨ>B c1|IJtL1A~r'PN@2n{2'[}`CHcX Ko|EG{&UEHȪ~68c8ާɠ]ʫ\^j9A8/_ØҜ0-=,,gB:`׷ߗLiAoZIIv&HD)a!VPN0v?Hipȳ'2<:J0Ax)*o9k].2ƿTԪuѿųiS3]t i0U|cOIBA$6̦2:imQ"OٳpC:0o,j [  )^핹&ߘol &SJ`\8<{nNf  9m!3u{ˤntY>$d5wո.9pUԄL/)*~Ȉ(|3pB-| ^1^R!gWOmIQpu4w08 2X5[)10@PUHA#j θH,6TfVXíG %\PpwVzX.)\e[>iljn¦%&Y9ةG58]K0uVuIiXw/piwXrvhRVLkPrSԜ6݉-ЃB̛I/}(Ɨ&M[* Q^ڣp$/paO$XR<5]ek_*2Ёor#׎Eɲ Nբ bޯ·Gۀݣ EAΛ@," ~?X.4Jz;ߍݧɨg`N-pOaC'y ]M&)4@r<]9s(y4 aG͹ ŸeO)j¡[ঌdʏBIQ$ vwCEU o#urTd[ϒhʳDY|wPt{FF:h?U8eg\H灕]8a Q}Uid03#=Ya:eZ_؞!x|q R_a5M~#u^RʏjXyֆ/xݲ+2tܾ(Jy"Je.]$ybxk zڲ+kA'GQEB[ 1&̀SUC\H]6c9;d81o! j2} DFToQ H!k={7^RxD*ÍYsyR-c[PЁ*${z/$ַ369|Zb?$ ה*~=* "6Tw<.BBŖW#ݍA[AemN,UKoeIJg !pU$u.ClWZ}fC P9yO_LOTtT #X:~='(P9wT3@X&\Fu(M@}% wW$7d%.ZVc ӐCH -®̜Ix1scN?JpmTaⲕd'gHejJGV MŚmWqͱNj3vD>(6#)J&^FpJ#vE_rbE&LHE}ih>eͶcO7XPM\@q=K~IMU3XOတ`Oz pHK([ }nlMJ_`FUX:orZ!A6-_` GqIOBq=\50R~s4Dĭt Uü:slr/2n-sD@&뉔^=XHwQPnZpa^ܴ.lnf>-u5cK*%n 7(ܹf~%WXFI HтSA94D⯅kIp$ۧUR|]| oћz75"k]XE\36L qiѠa'T]fEJ$deƤ/B6J.nsY T(7P3DIM]zS1g59Ļ\!Kza*4Dv3EV|#Je5+@ /al#=i\N7Aȫ\' * A;*^kKPY3"]fVރ,FК}%,`H۷ ܙ]3yQ8]]kژ; Vzn싃QLyG(ucZLݐEW/ϛßY K7ä;;ص}1@\Ȑ~sǯdI0Ql[IWx!2l`ꯒm2զ g}<5u :Ucrsft94~Jאiɋ]{zw%j n[UA- $(D{JV,|ⶊvlI(zOV#7N3&b A ŏ^ReV(bR~\1qbhLV!_+'?,.~[.ʺ(.8]]![Մ #]\wV ~h7,2d_pPU ӁˣVA_U&"Gߦ!^q^`JFZ9n=K$6pc= /;C7S(e ۾`WZoN"qf\q@ ]bDG]4[? gȀЈL+NEN7 uԖ&A%=PA1qL:g8N$c$I$-7bժ7GF"PFˍ%q;)ʻ*/eԉVʕ-hqL,5[j_cu\tmS ^Ku!|(T&։s lr]G6v`u9 _:.&Â殧p-C$R^wh>/iX< & "jEFpp [9AmJ'ssVecby7 ,z_ÁQa8Wa<7qzO^yշ{apqvѠ*D Y nh/y-'`7$n q˧8\58$aؕ SZn(0S.Uݫ5Re qTFM8ߐeO_:kGkoC7`!|,v1M6||~6Y̛)WahnJ` IG1 9=6 {Ϋ9; g'u⥐O*"$xM%>g d0))uf8ݿ@j .E\BFR\Y/MKqhUpWɱ-ꈶOonΑ{]7(n[$d 9B0WAyt%;6{5Hgg/zUARHZ!)lS .C[{s'-ԕa婙y/ NŕKY<za|5_^Zb%ZB\xa=@6\w!ӯ*$օpnW!"kdw?fmLÓI,z?Z.E-eʭ꼀m)Z1b(wqbTNL1g6OL8(# I8EslbvQߐ#ϙ;(DR"%Z :q$,`؅fЍFEXGk8/J=_}(KW1Aw 36(A_R>3C3gnGTXnvmj؊;Z'!/`Y6z[UiGVPNڥ7X h$5>ءn̻1K*j@P:qG1l M;c~$ > \."4L[ԎB.\naB)9'UxO57f\oEX QA 6gA"V%5)xI ȄvңbY3x(#ڷ -֥[ lr=$S c'][E=4HK&9ILOOBd/Mklkaf$?Ԥ(2?۫ߚjub4dWJNq3]M:Tb/*; O>;&15EtinqVw0Ħ=42z6@CD@ڻSo0˔>~U x܁Q4 >W5 V:Qyӵ5kdj=;Ŋ!r!B윺'/D!b=J|}1$<<,=)P]n^oI౱{t.yW AN|uqwN"@9w2/ӛMurRo vX|ya O?{Ucu^F^ |F!M ˯EeNVn8M\[ 2(^ ~ `I6{_5 7?1s#) dT̛{؈],r#VB &pwSKBV1a7%~)Xy{1 Q'd5Ah5ƥ55289IhP6x)6,A{&HISWد4>Lw.Iܿӳ?9o`n*S93Ft5@A8cH_ݩ\9@1,NKTʃ}Y gR t mx5 +sV @X^r { &Ib3ԡqN63Jjq (M26hrZaAEzwNoTDP3$'=ƟSg=i2ZTAN8ʿ/̤?ˎC=-KM^]EA'/뵇0|e 說`j˙/AU驳6,.rdg"h0 `"E{*7ӿ5:L@$eFķA.3,(pЖ9,VA(b)b3ݕ`g&LRW_lC'M=os*Ml«0v[&~"μnZpf4"35Fenwo&TP㧜)qo&\cHc,/(|BJPY UvsF`XAnj_E:Q;Ňi8% 7!c DCWV_eiCuΧ&NWk'>x\*66( 6T7CܘXJK;X,c@_:u0c6@2ԵePYm~ltOtkWʟ~vݘ;Iы@b1ޙk;٫$dOZFRἘJ77Q#bЦE5O= Wz'{} %ؒ@GcTz43$s 9un^5;{oߝG7>Op]"ȸZGgk{7LGn`ZfY@#[Df@-;J2\f]hr{q򨭥 xc\KW6NuO,29>.JHy'gtqͶ}ۨJu=`X@Q9u@)BK@x ?Ȯl FE>zHD{|e=mhdHZ~WT_דGL ZMʂ:ЫLR臆wxدtc[2+=93 lt2X4ʵ]u \5t HrC*[Q pE¾R[S\wAp+nRTbA#Em^~>?$H+-)< k] /x):W e4*7ţv@ɗ7ԑ)H\?2w0/WEUd|}( g5Iehb4rz? ~9e?7 ̲yN՚ˍ-!nom"X~QCPU@vW0fۼ+0 HcHu*Ā~{LHSݞ'$Ej.6hdx Yh9L,NlcWG)FV {dyY̅c^bqRz۾YVR:bH?\{V^Ü(,PߕMQ]vO8k<\Q{ "/Ddf%n{1`wRV1Z R{TSáVn>:V( ʓţ ܣGXA!q܀O/V{tZO4,OI #-Kv{?$"flT]~x<82̪?v%z='`c[tKE%o $-_s̉mP;8C#b34?1dxNSAb>R4 (IIa‚6/mcwՌKDKDMNBD0P'\aβflPP-ծf=ƭђr}0Eg g^b0,9}oHq$-nZFՇVpCom 8g7j(R'꽠6`H(%-/P|\]?j?[U1-8SwM{w[םF[цua?` /KmBcI&`tI1N@Mw[i`r\yS=H.ؑEA= fp+ټ ( 0q75hDӅ^.W{^L!t[~7C0K)q'j@A(ژk%kZWX ~ĮD} Bf#jLvD&^f&skݥ)pİibڜ.s`BHÓߍ.@.?6`hGJZ\Ngy@D(Tӕۀ,4]KJvBUhmX]6mo7euM1}ADW?.  Zcr1g_%׹1Z?mwP9L5uwAA222K+F<jKYKVzz";\-rc &/H@|]*XUT@@zc !qi2<՘`[ƜS'$zϬ5@Us Q}r7oc,58Fs Esr ޮn)"F5L0*{WYH.]/DxPKՓũET+UclFǡC=Uqfj߁ͩE_BGKͩ9w~QMo!nwp9A$Z S/cyh$&nM&"n̳<<$7_~*8aO*J5jJkLJ~"T$-A N¦UD]>)X(rgpnͪmSUvh)hpCŀtR{H|@BD=MDɢxme)/{WSGB<ӓLn 0Vp Fcl\CDQ;,0+ sח,{Rpܯ}L_ hXqb|` wQaAJB[D[+@AySȴ(\53a4)p1f _n0X Zci.kqr\w1f=ju'_ogwʂ;/%P+'C-kZXEcPѷ6->!˹mtYF0z̬ ]BBPTׂ5‘1D 9K|A"נxU&&p)u!PÀaI>TU^JN~52t}9Cj `O)eֱMA<6j!CRgp(fV&HM ~B:GxQXģxHQPRE'd}  1~M}A:$jk \%PkM8<UoFM |L`Ǻ%*.f,^xÀRs sh"ϴ7ɿ >&nUQ x4:="%99 wPN UOEz=WLTK4A{@Y Rz߬?GN[uֹ8!Ǖw@Ce5vB1qݿ9ART*2bkV؃1G|L&C\s$p/\$~, X my-zq)CcWR꠫)WJWUMfIվ Nu \guU1iB9HCf yh/)E% 6 M7k摌N ]pFԿ$b3&vq3iX_ {B_oȠw}cf~/M6619 ~Vjps+?K@|!@2q2b$mG*Ajخz<-9B"!GyX$f( َDAi@{Ëi-2g5 vў]s^bd$(%#o8^k5VZ9^֯C S ݖfbh澣8O\#9\`9y8(ͣHXS^C 1 o3(Iu|~.t(b̐9LM f*C1:=č AYQJ&(PRO$@oF7_oqYY^Rwg*)"> |,MοR۱P+. !{ uq# UO29/6X-[#(4js D |dPT^$if>>0}(ƨ-CWQ_u$OFf / Z _ $LBnN6M*V$97vG8]N|˜n']۾Su/\O5|aDxג.x`]ݞ t>F {*YřN5*H..V׸(?=4/|6`>je8Cg"Wzv'8sn(DE) 'ࠛUY=m+润M4aa : q.M/SbG6cYɂ ]n/E:;npRxu `Z@g[0 rdZIxzU3<My]Y|ev\t[:gRq)VG^Xbxc 3Tf%oCF \ZtIj,&Kc<"Q-Ʊ(.M#KnzI225#md v۶=kij߿2C9LU;B_OTf%!F֊IqPjZ ;C!8[3(`},t6lp>Z?]y>&|V [*jͥ6 b}WtLK]OF)c2o;d[U+n1wʑ 6}jbvBʿ4ZKDfsǷF=P rh>U:pcW"\=)N*b@),SPgq's 2sJU1wK?+˄m톹!T΅M, 3 %BϠМN-;J9ґp}Cb}HBP\g>/ٝ0wUv$݊S+Jb(+[*xa P-hl W"%f2%qٔ4T6:چՑOs$ 5Ɏ6k7tσD'jQ2/P* h&V]Uݐ:Ҧff2)E5VE;]yJO%*P(!|wf@^ "aut3mx>JS"3-pm VO3ȺXؚveₚ“SFҽ¢usr芠 hIZ4+H79Ћ7 L l$>Iς{L`w-dzXZӋb^劆$SY`x,;6piaqLÈہ jSs$ #^f@*dh˜.}2w5쥏50 8!CS -=u\p͆i`:Yo2gZ_/"XQ[1Liѕr~5~hq_PU+Y+*y^*ܟ](D`{{͵`_we?lP{c?k|d;+pɏJyG%¼3#qWcx@oБT)Sg+Nѡ|!oH$pP GFev7mI(- {<9-U;?뭲>N~ N p.l6׭ Sť 4̐۳Ԕ`1d'iA˾,f FIѽWU~(Q-e)[VC󏡰8X^k&w[|߼< "zҙ;Z  ᾿8N=y8:G7v/wyϧފj=h[$]vt=T9?ӣ8\q lLK]/]թ'n[=+Xbž8;  ŭ )AfsT}Ѧ22PM@SEjz"}"YܮoiiB/yqMT 1;ٖp7S;ՔPQ+6?Q0Io?d(ehс9Kqv(Jg3+IFQ,cij=Ȉ-ҋ 8WġA\jmq^+nitA(΄ zON7bex*4{u8pM:Gh\q]PGMn>r[0}pnV\o c%>Gibt1# ~2{? B>"*݌p20s]7،WtXiIƻ"/sxVgMJӁxE/F2JRH[Jl@ps$ >WqR>WOA3*~;"qz6{p2}ͶG B"YgԘӄf "lsakDͦa\@ \h!s錒9^fŤ|)Xsa@L/lJC=摕 ECBf{f"Y~Q*2y ?3XG3̰_Ǝ3vmAU6lل41$Tb-`gǀ'IA+rh2ЬZ#[P mm)^#TFbژ}(,)y*º8.@,ޝ}[Jι4Gi^ O\=wpR&yj.x.&߭KfzCʞ{9M!pȚ3|H͕fЅ\DI`jY927kB[gH"K]>G"@~В6[>R|gfe~S~#zkOnWISi5b`EĮuAGpҹXF@Eu8iGZÒ%ruJ˳\5&&K.huP y򊙇=5p:`7Rk8ЛĭP{Hn4vP>-<ј<+0ǖ"kǬ'Qsb2n]T`ygBl~8 >_7ĜMhcWʑiK/)r fMBjE 8ߖPOy ruHl!LfW͋E@!Qdw$Vc(b TbSeG:=?kbR AE4_r>*: /F|Cpd(/>!ҟ-2]-CXp{1] f!%2>E7[(G'_#U'=zz$HEo8,T kQ%lؓ .=ؽ#"!~uty\!+i=6ST)W1@S/7 (5- مW2닾S5q7|Gr5K.gKsr,}~(DO+{Vn&Y_ wXx(n|?,dOPpBUL~Ҽ4T=r4&jr$Zv_Iu_GpeR1]'f'XԐSJp@B!5 0TUe,KPebaRr~#pJ/AT;N/M9ҺUN-Kq$R:ۋ[R!Dqg Z J?>z`7IlY<RٲL/tʑ! o<& f QeLM%5dȍU,vlC" =˚^8}ShcX J=#,E Viu9S4ȶz4bYwIT݃cH-Ѷ}oJVAB! \;*J@<0%]@e)\\ځYߐ6Y`o\H!W]e ]ݯCwՌGϦЬRiƤ"<)P&12^~\b\-?.<*ZA&m='ױu,/v6} >>\wAl-!k+D*_GҰt<2䖧=kԻYV'D&$zK*2FgCv5>X ”3_`}g_0؀c& _5lBYnWwu- Wq\MD!D3 vgދEtI]9F a2ef %Jn,p;B",; @4HWQSʛm8|RkGM^(\n/K5Ж(YI~ OtCRC[kI"X(l)&[$ImN쪮SiBؕonHϭcgs2UCpb&$&I>ƔSc}:^r jQ V:@1?$\d(!Z4+ޙX8@C9+D7G 9Y+MB=$i&MꇜO\{Szݮ9=9IT*.6J_YxyP":cDV N,z3ISkXLp{VoiF4.wjv+t2ӳmkuh74Η ?V*~VsFBG)啷uD3|zSlm1_mȣt!a9c2v p/U8jaUy>1 a{.4*~QB۪4r>]/5 d0 XQ:k+{[_[P#FLO`Sp+ſO#fn}N cmrlPˀ+?W|27K`??e=H4QC@~Uvt'ʏ@gr0]7dǚ25iB?2 `O8tIG;I4\W'LԺiv|{hFS~o4H~ )1v$HD\T@%0V%d\5s5;'!Lr?̻)gv& Tݼ(BW"x 쥱僣+3_+5 ;+RYR\j9]Za܇3G. GyFsW\&S-)=`@@rxҌ(#riK'a:*!.ߨTacCbTlԭ&y5*,,^cv|'5GR./+[^8U:?9yս=M\7jW~-sQWa8װӿ U3wjN+^h@6 tDk T"ǼǤ!aYhGAK֛ T[ʣV+k+Hהt,@nK7q <쮡K%/xqXI; †ST\ce_~S"\3rD"t + mybfH%z <3JشQ3&^!5f]?M1X3J'dE_C5NUIי9eQ\PgIo4ǜ@xeXnjrwԕ3Dč>:JPOe@!Ju)Q4ٹ/84y_Қ nQr[Zp-rb)%&5>mF@{&Z$WNހPe;Go0F8e.U+,8sl- DH3i?εGDnr Oɖ.E0$8(M(^|jcp59E,䳺s쪗5dl)soym VNhq Gz)  i؃ᱫv@2[F9sjCqe!ҳhvkT,$BaT|( 0C8Q*.5O{B_7(|p87'ehӾJ LP{GBSKF]t.yPL 7Lmɯd[[sa'!@ɭn[g [q#F޿'Wa ?/\J[SzUN9'~6Yo.CP\?3dUb@ {KggiChym}!/%"y{^VbIfD<a2gZWﰺrcƪsɦ1E/-Zu5ɱ#کk|]4Uj5$=U'|v`t☽?}33;mr]q\'7 '6 g !Dc{="$N & NtD Oo8v2z%.\g2ڡU1kA]װSH<N]6rQ@hvʺcX N_!n .5aZFLPK.+y"y[||JBXu y$ bV^BNG}kiu ~h, =GYw}zmc]NUօǧFU[a& Q[fyÙxhl f0EN|#^KKyAO2ԄPݩ%|ڧs#b_)hM:'w? h%5,~,:gg]V!ME'`ޔ#Dd d]&jYw$xIǢq+\-b71p8)NWJVP T!jC!`G)rEԛ~|F-\`2%$ay.ѻ!7.4|(a߷q6 Ox]X*{8EI!SCqO$ԭo_q(Eԕr=X]H 96#S*.G) (?Y-, JlA}cd iFdS6>2K@׺+Bi07Rk,ڈ.P?U AK T2K=+P%oRZk(^90(<DNnDΘP>^Yqt=G;VۤZ,FK炅svćKLD_"ў7QxVf= @Pxv$3{,/B @14u ʛh]3J#S< d&bm]!(!xfLms> AxK7VfҶ}S[HT,h>x+,F#RݝPˊd޻OWƘJF8S6nz6B[8@)PdA q )u _dh.N_tn@77لf흁"#XS)!̻Ə/FK@kI5^B ItY"U03@ÛH'̟ @óEq`!Ngzax&3TT2{jJ8 kEedl7b" &O`5h;-0zۤdćƎSw 0 /dA"Uh#$0y 5>b6{Y)EҦ?3@ kp+"aV*wqmdgac2U^S@K` !#.`~E>\+5=$jN?^+Qf-enŤB1̥lqp Ls_ Tt`yqep/ ug I*-Ěw|耆˻J/ݜ9G&*k.rߜy} nuc Y3%\%jMGw)"}E|ejq =qixy9*P7I$M䔣O9_lفYfiUwi [H@.g|?ah3Bx֟p1;Y/@?>:!jCps@bUC{G x}ҏ+CŸYfӜ# ?[nNjC,!uQ&ߢ}\r6:bNaq(S Bh`Um*vn(8V?e<ЎQWflK }ja VD3c%ʪ!|OfgՎ$pH&;דjځ4!Vs!˫6;r<7\Ds*^U!̷{nvm!N 2~PF,,?Xrޅ21+p0K#L ?-iBw$y? f띸 U6 , M](PGB|"yuz(Ө\l"GUIX>|qkdJ,ՉrpqgӚk7/I9=*ⓧ_%'*n\$=8NÖ*NKv:fogI[8jQ3v:WKt9Hڲ_5~1Mwuʳ[Ȥs7 yΞpeU& $#Cvݑ3&st;H@i$\  x38a;'(ٜ`Eꑆ'BOwlrr3RrVÝXLջ"ee6uX_Oui(5[Q{(hTqf,H6I۽%%B> H2Dl_N2(V/y<0%ߗc D,d]Y@3[?@_K$JLImnt:EqYKFcѭ*?=B<>-nQֽP-흩1 n0"%NbGh0- ~;TD@FG3쪠u0_jU@4*=am:ܧ0Y!hgMRfl6 ]uf~]' _ QW [҄?nZ__äz^.o`Y+&R1M&ގA*}b2VJ4Nץx}:x_΃ $1 gFJVoUJmfyV&_RFm?R.$yL V!࣍N9C1jTRNq ^D 9,&BP1/~( nt0S%Td؏xP+;+(oCW8#c:+4$@p8cut}]}e 33؂:Y ۲C ^fο %qU#}_*((zɪzfWb~ d1f\?ۯ)'6/@(ձGRG"һ.h2naʺMa }o;fhak.gh5%Bxnp@p@U>h"Na,Yke´k6݆ɩyUEg}?nV$y 5GLvlF@G^99?aqѲh5Y w올a~~{31> A;}dPH&}zѢv{nުW:EQ ~6)l쉻Tf<D<-aea 7`0bO2kB{p&kF}ܶ1ʧ+UhN|@ŁT0Àiw6#!l& /:*O'}T|f#h)n.BP3獸SޫH&ViwP3fg(yIC (7MeoM~j~aS͕@Xi'~xI5|di?yտ.DQĞChTA>;.#EE4]0h%jMƯq-`Ӫx%]YqYk/7R*LQHs9^HK'- ^˒`LUtv{n7!gsg[֠qgfLi8kG-U/gDjorSv,e=`GVԧm!V%֋'" ֪/0%@gds NTY|OaβhMDylGwt/392 \q~H5GO9r=;_=*UHoN^JO,i"8}7(j?/Ѱ\.^-T=l&Эu=dTcǖln>o"HKmF*B68HM@R?B6}q8זPAqy{"4`]&\bh]:_̠CG'm2!"A=* <Kأ>HNk ;]|ꜾؔufHVLd5BDR$mD*ƒߙ9̱5>ӍP6 /\`ځK,)hPCC;B]?D/1绡kX Kvg|in1m- S0Vu CJU~l:6Kb46Qo[pkUQ%訵k%GE1;0GB|ˑ(;"=)%EթG"!elg/-^[WnGE aӋijM3 $vhzh㛒9+xxZ P (@Ғˊ@9pF)VIp*œ "-n|I*8Օݶy$6DJp8 r#c(,uRؚgxE0Ko^|,Ato {"`8"Yc®*+D8H[DUU #C%Gkez݊ArXvBl !a ŧe֚a0DI釳`K*cm_)'c~TrIn58j>Jx~Wfp9MS~WHg8*l0IzZGD G}>mD<4t0uV.Kf)D~\UhAL_BXni_i`X%WM |Oo(أKu5?ՎG]zo<T]06 -.?Oc4m;bWm7@C@%ar.ת7?7{W騑<[,huGI$}r+ORP14Bδ55Ƽ:iJ` #!{={ID}v˭*#&G5')f<}&.tLI>iY SZ|dx \);n` ,㠪#5A,D EֻUX+Y7;/|-g%qKk ,ŸVn=/ynvJ1Cلo.9ະ[Jܙo;r`u^xXV3_|bՅ(K!VD5>kc)zz~XcyDY]Yg@gWp"Vڜ]"FMD2OP?\Y D5*K&XI=Ho\AsyxS-Q6*%s64~Ia-wc%) r!d]]"v/ҽ\u)'`(U2?+K8 (d~9fc'VERyYzLӏ כcgh%י@^X&nIT9פ;|q%8qu!7$2|6:`09,jo# >Ҷ؂QtP!wθiH2}Ļqa]Vxr^p}qPbiF7iLpg,Asa b^Y fԾM NTb#5о#8HSܠY!T ?]ZxĺOKu\&?\ eL9j$֕ /#6isJێ1bh K >bK42CjF.7%"=@micj|:S4Nġikim5JȔ9#Oo% 'RŠ]uU^3Y˫+ x3piPX4ho6 QTa\|'<3s_udgc/yGޭTwH ?h׷n9LR,LrK/ο#,C&x9)]E Ryq2mucNZ0jO۝ FFN:CU΃r]U(B !AMUIƕoݐ#lB]Rv#-wn躪v{YwD F몟h}9Qoeu][},M5j}+=vڠN˱C|꺀 EAjŴt0Vԏx´B7AC]Zg4D\>EdwF6E]59*L4.I(L9:%ݖ0i C¹ec%xl}d rb#3`nۘYv9-aYMȑ ;?Nd/ ,7${ߢe=f;q='/V5MsrmM UGD r7z¤gXˇ|P5 KnwAȁ=AQ:_3)ih8Ywd1n#094 vƤx8V{{&^Ֆ[n#k>mՠ]?A;,Q~A[@,Nu{̊n%b@ %OC7p {<)H/sfc%٪k{*+mA>&ECABĠB<|?fI)$w f@Tʓ`;U,K ztR7P:/֓RW'l,ֺZ`˛tŮl3<;^,)jY-q')K4de1, t"8 &z[dj"H6BpnsV0+g=9*7! Wwv9| TX޳dGۈSTWѰ(ӌmJzQ}Ԋ&Wo:[͗~+l[:1*h]me~S6`(_$[11>ږŽ- Ow2K5diA t-U!=R/#ejH\H Ǩ-ftfX"Sq1Йlʏox>զfuR  :>ƕQA]҂áC%Ϸ:S6litwGOKj]t:whZ0E7 {{G @X%cSCP&R_z7̻KBU0OhBdAZ]]btq730r Q0kRfۍldUٺV8zq9}Cf]GK.%0Ãi弃o=S{Hy`~ި" Fu('3jR1IB0ɣx +0xr?^ sE7c0 ^Cb'F |N$2xt;^؟.zAy1{|rA׈K-LXb=V|' Ԑ,gI]%e &xy5nE8 M7 ٜg=9݀ӛb{Ԅ[0rම'% |آfbR@ŁèOuبx& Q:g+_[Ag*tÔL>xQw<4Ҫ<]lrD@rZ\J7&H5k6a'fAUPN?lƖ} Ebv3!F>'4F63SҗL-لmF*׺OֶEna b!LukN0Bټ=Iң6?Y_ݷ;AysK x@f|Qղ xSEfUu }YH?e  ԍF=Q*熚C;{E#H_+&}FNQ'nd}.Uc:torIҏKoTQ CSY=ņt(#3vda`i㯕zzuטѝ#DB%8mZ|XvKa^Y3Y'JJZ}‰Jhǖ[OQ,p:4X$( g+F:{B >܅5RblEl-͓ͤm(شTRռ_b]#א 8/Z}6.mJ:~uA[{8^8x &J6K- :5 :4YR"{_o @-F4zEBITtUu3)Z{R>v9݌ڊ f@ۘp26H O4^w \ٗk()?Y#&!Uvg:jZ6ڜ3YmdYA`cT5[~gpD''n&8TPIs0NQTxKLk7m|KBo5*Gκ&3T :ygVv pse/OcUr/;, k4>xbHbc ~6(-x3JP&bZ$6ۮxdrZ;J?ksۘ o2Vi8 ]QTudkܪ2.m*vMYu mg D'<%)Ɇ5Xpf4b;CC_ṻh"DC͸"<}Q&/Ю=b ƺ0dFK|8+CiN. `/nt9o)'ͣ! JaT} ,S\bX?F$to #L$⤯Fu ~lpN m^g]Z1^5,ne:uT5BGfH%0RIّؒ$91 1I0;0i)4yVɲ8s83=} 'yg!-nWS ʅ)#2df,2&58`0oIi&~)"FMHa^nOr_ʧ8]s^bm/ ivPLy|L~l#{NhpV0qf hb0u$- d]ToJ! J&"S7Uf{k5pesQծ!0Y;P[c([pa =zbk`D\JB־.%m]:YD0xZQˆnQ]>w_,%E]+#9T4=ef$uEت+\y{HX6x[B^Tv!gA 63 }!G2ԠB6pE;2F`'ñk}VR3h'o \T9^ (Ku7{%,xqv| 7%F?sNCmd-v|$?SYwSd6SB#j[6]gmU|&. IKxl`x,ׅd*j$3n)lϞ֠ *.(zC76*LPiUgs$ӈb 'k=͔H yfiz&Z: n8^@ }/nymr~u2ۤcc c^%(hٌT \Jg B_'])vRKW^4 2ܮ [-T2U6`0Wp09J k/,(A=5+$! Aב(,OsFH!QE 2~BTs5' ILbYb5)7Z`Z#N8=YUhq)wݹ9zo0{g6 PgqMP&=7rzX44B1 D'DOLԻC}\:lx9tC Y%?%`dk渘1}Taʡf#]Jjc Bflp9Kb[=MÏC!gYIQ4Kl pŲM~a ?8>C<2-#rw$.$iÏ)6mnGz[MMhL`PGEd|DD œ |.aGSǮyԦ h T1l3jo ^HEV'$ Gز2GRfnx\! /=dD2)<؋f#W㒉/P0!z iK2nW*/hc҉&(Ǫ9G6:Hhl ܣZ{e [.Ǽ49o܄ `Dekv ^J댍MC tڲDg.vYYHbWjjwDDi#ګH[A(i|]gF?SG:HD>i/it'["Q:TF,`Kf` #P !GB}d?d=IaM$k.7xg*hx8lEH՚cc#l I;21rf6vSRpz+`]ެeHvSN'N.nA`K*A5B"|$8H(g'i *u&1{ ^rQ4pI IL':-X6Ԛu뒍oĬl;$ p vAK{t|k)g% ߉]B_YLV6D4^E 'C%fhSILq恦YY\ݩ m1/ (oي>qMOq1Z"DX\j~SKtlE8^@e.S{Vd]]Eo?6\$ǡަ._K`mG\/?`uQ7`58gj0A%#%4*h Fڃ <4V!EÞ鲇TExP M` \~b<~ UYbh6dD7ۿܥK1ҋ곏Ҥ7{LRD-U !C،'@?bx>d92cښ?k%^ח7vZ{4BIޮ`@thL4~O!wn''IYh,~}•twg%3݉hɄf;$O?oF76_bB` 2"ɪNvR$6jgcԉ*(ofcýF) ·RDyi vt>\ĄW1 4:]qe~|aH7KaDxvr!+Z#ՔpʌTs uӯ/'maѳlhXJiW#E&L:'Վ)*^,ŞPOtJd(|hu=xAmsr6Cf7mx:ڬ;F_!?cOt,ZJX#uYM">S?Wa7 q)@:(šQ6Zt{^#Iz<'qF{GlDDHگI$$Y9 6K.M8M;>å({Mt0,6)8o²hMۋ1ZĞcW-3웟3uTR ;QaP^SdužyV<'P [mEMG6 ۜC0@|32߬70y,*1}fB1jb tȟJ3~P=|1C|:ijʎ0K^ I?v4b?w;ڑFXKX.tY-;LBfuOdM<֡'R)IjJ?1,7k'cO7@ZVkو2(wEp;L8n)v`/F?'!IӍÔ==H$-#ΒgX fcb8 'rwb(gB+}X27bFh(7:YYlhI(Mlׇ[/>$k S~QB p n \V,GSӵI(8g >#Nu1~pOQM-z-i_8𞭌Fz> j[> w(k%?!ّ}1rp]IN3 RT3pֲ} RZz[M.6e6EH^Z-RGNVe#&nMͱ3`~cOJgdBOJzJ9H,w5 SVଅ_8V%9ȷAtl?mܐy8 2/z^e~OkO3JE ^aX05ldd]tN$=lXΤVj,c>y uQ_ V}l.:k9շz ?;Icz&1peZxRw{$؀o̭5Z8V3>ה*e/:_ g-f"!\QWD~&:\dhkk;7x{Zf{V)qUrU?.ӿٍ#嚛֩(F_d&UȟVk(hL^Q gb%]鉟. ϦmbV#΢/3w=E{8Σ\}W_{4ub)'٠rȎh1ZS?c`?P˺ق=3_ta=濆 M{y~xvCܩیƆW& VIjXZxzfd:["Bd)ۛog\RQc=87%qL uߍn~>(WBDE֨v7'RuaݫoĐ-F ?GwW. i^,7L X"|˽ KAtH1LO|!{ 똼Rff<Kѻhhak C uc>  G k7ӦUl"%X?ø?pc.Vjei&/$4Ab^KG69/}Ԟ@SCѩD6NUNNqbF30I[_;8 ~ O?aJQ&nϱ2֢ K풕[LA;Aac#}?yc@Di=RBW|pxZbM-.?il=ܚUuJVs(ȳلwhvn(rP>Xz8za[[)$lΨxߚ;RՋ*i;-v >CW-,h8-]xZ2jEFy]I?Ҝz[2 _SA 6*`iD ۿ=Mx'Z}3 =t M4/;u~fjfZstN(M^}9-+wS=%ˁm|0'vaYi.0 p@~92T5Ņ% 3LꪎARwe8x /(v['ܷ:`e*!!ކγK[WSZ'CAgb(e-'VKɌBN]5d@jrv]6'IGG4[c DQ 2M㣂c R~>YB(%ɑ}/b8Bf;+BM/H6u*llJ$0p]Sq?d =3t)DD-T26ٽfJ4@"MPFԈ|:gQIʹvt]>tƙ Ϩ^V t>44`(G`h0Rů-f4i8D 6N=/r ~4>nKLCN^xI]ϐGKHJiܩwZ/ ^l&En t:,sMPZ_8wlR}MoOm84r\.>>$nC<#Mvȱ/ڀDL?LTʍ>-$$%`ݶ51&* 2Ptãw"Co QK o=]QA`<k1JJm0\u $=ţPnCWټg߶$Y 3< +z L]F{Qe Zƴ!R^'ؓUՐMD=teWS)I EqCjMLs^ @q2=: &ӿ%ԫWRFx8~K_[Yn4Ww{󔹜u'@<_L*(`!+Pe%Y?`M&̈dwT"+[ji8ᝊ:B';I٘^v$z;TAAsQ*wj0DœY [TMv|^ %  \lr?bI\Vo =1U:OPaD &@C>}Xo-x_1 O0/c8NRt1O V~4ȡ/%4bgT%63HǂcO2gl W9DPkRV'@e4P'3V%ǕV5Pl#Z}8_E M4GLF Q;V&h>f@sh1,` h!}J'YWj,ڌU12pv4F,%yCkiWNw4ibC  )4љ!%~*xVR/N^{qL.Ƈ_@RɃ؇1f#b͢c ,s-1Iې :SߏoO”O)aC͞YwC\r'@iŹLndY d+8CDFgo6){Q/ AdxmsvUuQEⷦYx9{3?uTc V*T@!NECx`,sϛqRWr6b;1[9f(9V.Һ9mpE]/ҪU&a4f)/-9~ nf B=pO782̷l/܅bĂOJXԕpwa!g:&M0:౛&fDCP6OFYߢ:|f~}VqȖׇrY3~MFZ֮nmҺaL<XהhH'PD>LvgVjOּٸ]Q Q{ X0HuSj؉KQwKgG3?Yayаz+9#Ӷ8?:)zg} .c|7y&\TnNNiO(ɍwW ,adNI3xJ[5~\RR9}n% c< t7m 20 Ӌ3k'"A얁I ++q*u79&MP^պYE#c!W'4!<ĺAl )ǚMc/K2ޥ>mi  mC;-W븆s'.U\V o)[#cLߔ,Цa} Ꭻ^syN[cj `iLp9f;X?LЖoj > YM_/YHkh׍13x Y!<Sz o`]AC9Cӛkdp{ׅ}}js|zgӉvw 5zx':Y~ vk捗3'UXHŜ1}K{k\% vcE]028;Z@{ .:LGה4M\~L^9x,Ѥ4@`nj71z@:hMMGHPWc9~#\ }1 3\~) <׸W$ctgo%qP/̡I ,ܓV.XO"VJ+;'6<WhIL ݯ#S EX& hmSŕ?שMz.[<Q ttG?7R(Τګk‹!-0M&KQ}& L*z٥?|Eܑ|rNKIDB l 9Sً¸$DU0Wv)F2P`să&k=I_4, > a)Twj!xlDW:# IN"B5 =XÏ3?s/^Xib*>?!Lϟ>\N~yPSV,E;UEEwF[^Q:}uF:6BP)JҨCjӟ"U]1IrRI7,@nXH4uW"J_mx ;,ťbS(lwAcD 5)^%x|N|} hKK0)0]a fjHu1 +1MbLق9)6q$,?] BGJ ]mpr6 ?RM)c$YKJ%:+ɱ=*xOK]:kT=k9du#/By v[u) %3CJf,-a -@y=F`w!c+^LS"3~&7S}דP~4#v](uoc=['lATYطFHGtSjXڎe0g,9)d`V,懔b?)sM}k_|hqOh8R񘗬F?[l[z( }u6XCkkoq]c&s`;o"FDq87:J[ OIP/钨>c' t&j{zW6B+p^>J"r8Xp9xsjݮk.1#KYS]T7` # 9s+.[KD!nsq\fKTNh;vūD뜶pgA\'?Ĕ&kJZ>ȁ`#锃.'Qm d-[)/\@p^/Xk*"T>F{E pFcz󇋑]d`2}t*vLh1g=Vv׷NØ R7=YC'[l!E`nd; h a7t|4Dc91TU=" ZkiIIh@A5#2v vc7-k)bElC&6kvG]kT1p ~\)x'pΜ$vf Z[p+𰈖*.f0&ڿ~EsLLȼGXM|θ2+Oe,0BDnc2C I)MII\ F`-k@Bi̶B^T:&)b@!K‘Ѝ(W6SRs.k'6kSGG?Gy`FsZWE1Ѯ;*^aW#k> I"#)(&Bү ]rdI0=I57Ov|&V[µǾ)}.6s6[4+[B]jwBFb'@V>aw.dkR+p":&m[MtGL8[L^~^=$aY a;?fjnsw{R!W 5oxE`A/^ 1_.ĉJg [5zYx=$5dE$֙El@!Hjf[Ѭ p=-0?aS xcpk'V+Eˣ x!ECq$қ+X',~0f98HGF\06y9z5Qí 5rBUE~HQވL`"jʔ,ZE [yG)Ld2BY)!}lG(Z!-]B?%-F})7X9F>)UI e{rm8CvBYY x%gŒ3>Zo(Ycp6Z  KԾI_pP*Sui-e6ɵ Lp}'Bo @5tȂv@ -a/ K:`?AP֚NI=QV[I6 +8h(MD"GIc5=(k}rt8I'p|`s *XTֳ=!^;z +U$^1 Hj:=g$-!TnM{x"Q,5(zm.e~+FѮb2=\f'Q,mrտ2zʜ3dCP1~0iV2;/i8Om^&i0@ L"FT+ҔM'aO$Ey6TVF eɼH $S^:$ LRX+'-9wNF FsCDvrMvw8޳"[;[s@\[QhyY.0GK˝ŝЌD)Bm[!luY}|IΐDjpZ7, ȕd3CC;g%(i"'bllOaKg4Lv, 3m{:!Ԉi5{O>@օ.k~F&F!ȴ3Qshd)y7զظΌҷfN w !L`2q9R'R٢aRqҪxmi^lk c!IP"pµ cĵnNà9vj}4JZ/M %( D0oY3hs&Åi3qt.ϸb"9xn'D>\:c<&ԫJlZe#G⨑,-}Z>0;H> ~̲Y?Zϑ@s1t' Ǭo~ [ 7ƃ8, ҕnzDӹ3eȀ~ИxS4ޥ ZQ! 9!҇kDu.wTX(;@JX/6-YL \՗~,S쁪"j9.ϖY;dt9ZBkj} AK9!ZN{E>Šۙ/}lNF՞ǟ[6;KE7SQ)z9a"H6hJam-::o Pt3;d* |WB>p~Pns=p|$j#\x?uQ8Gj_] }'V ʉhJ7Yjl0m`Dr?5Tis 2sjSo(߈!. BE NK[c˛'igH+ڸV!àRD" ù u}Ofh:91nȪ@HXFA.gf.CC@HnG)2(?M9{M>m_د'`o1qM[ 5<d;(yķ sII(vO, !ݣSjA[ۨ{5~кet@2/v7:ԙբMl s]$~gl4$kh0Kx&Gz_?x=X74b/Ivj,r&溉!7w 6axe MdԡgnRS2h^K.^0]f49Z7  ;VGY#8_z3+Ԡa /[Bx(/QzRwWuj(5ɥ&@m2GZ#ke<Ӎ"C3M7lk&>V& +n/ȣL3 y_(^"ȌÏ6aivZ²%,tΨNV/TW++xU@ybzű5tuS{j'#%c?;!+ )%]pPS%kٌ$A7{WC'cvf5Jѥ##-]U~kaq!xٮw[N?XC"^X'('t5y/vxLR#{C-Xk;d/* #Acr n%4,r]z뿳.?TAV|/d T,|$k, 8 [KLzrPtqqoaL&- GN2ލkFb#gm+"& fkucTdzvEۍF|k`mb{"V}$̑E;wi)e'U 3@>@ SGՠT5gK͙3=OY1frUJ &vUi{7|"@``.ٍ=kYJ"l*$"ae ǒ=Zv|[@ىs쁽zmg$uD8˵j}hîqt(-:'qJw nA+Ri dw붿SP |? K|O@\9:WﲬNChazZww9VhgSŖ&B1C9ՠh䮁撸\pL+6^I׊3g賳߈6cnMbPSwr$Sݕo6 M+H`IZW.iU;e%[~W;ys $NSèDCrRS|2K3Rj웴GCX NPc΁@Ocwq@kr)8OQhpjeCaЯiMە*=-vFyv] VNB5 A.6J3f }w# Oɀ^z^ ͖=-o?g`"D̻[Y\ 2@ Ik< Ŗ-MZC7b1nt5IrAyr&^BPkCv0"]g+Li ⾒5|Иi:n`ބع`]@9A?<89i@S2O>x*y0]+jCnLÁa=ћV*,hE%Ĕv2un@:wO+TcFty~yߏ >Y̡y&<%`&=0's%h/IYQ&0(-п1ZwWwMxB}r&SdvRq=cԟc"d)ܬoh#6R;>-N{4E)31D ~9j`Xn+w%=0 r~:'w6O#3pmƔfuVe0;?<:*'Zq")4$h~-:@^"9vW|W^`Z|n[>ˊ@,PN#)ʮ[~d[GMWf/n,]*Etvfx?E26#Y0TX1%\={Ikb3͡ t96OD ~]c4A^01SGʰR~">BSCꮴ@w9I:}~{@NbRXKrP*ĿARrB8̯8|jш͝A@5qa&JR抋VqX7 P;B\y/ͽb:hhafk7H^6)#wq 2˾dmٹs 1sA }Ftѷ-U Q Sw=Efɚ脜'BTa%{7 '*Al;S93ޙT _p!ƈjd$w!"wDy,8x<Î1F|腆/ȄaR.˰"w4ʫ!!D3.6GV:@S pס9^7#<N!YK ?"i{ B O148fcpc{ad^7G^-&4+f(է!bw @0!ku%ן5Zs>5*P({UY#UZgf iMDzq𶧮GIHN 83֧7Ne{ LsqBtoB͈vf VY["[kGce'栥 '5`ۈEV㝌@# `+,IY_AoS1F3:#,OHE^`#! i`rG#o"u . &b#) !g EE$L)0ÔUL3bvȖ׮AIɜ8;XR?~ͧ3<{:5:s @x!.P?'egli#6:<1~v[]eБcb Au_ܵm_@ǩ@ gR{d7&/S'a_FM;k1&1 PFJ!+(Ɗ* 3˯8$ fgT7{ة&7 $UvйH4+A!Vq w>b:1T$ʨ)34LɃU{A# 8]祚%GŇPlP2]Tr+g찜*6> bĈvKn, V|ӸuoiMz'01& <ɵy&m홨U;Oh`y_Wc;RRmfs|8u5r)RٍҸWA˶p| {.8Jy0+h\+6d\YB=Y>/3ʥ b)(pP!"殜QE 5 Zr#Iv<]0 %WCa ru9|.c.+M)o?k7XU8h@M Njisa#,ֻ^pQhS^)`L  {"'+Ps*[k@,p11H(Oh'ky:coHѮI?E[J巍0F2MTDzxܞ"FA#FՄ [LSlO+d-T]v$B՛*gڑΒw_*µVTW+H8TeH1i,5/1) ,MmXRC矰bu,r]QRCէ}$ cR?S𦖄}dE9fh K/G\G-XՔz2OBVM'n#RM&k=+}Ұv ;ZpgPT6ㅳ&[W8g4{_Yqca;^tAhhi /jؽ bq+q0T>W8sY9 p j# q :JhN ʜrm[)E|Q7t`]ʵҎUvH 6d&YsP,^O~.2.DnXC",(N;ҰO2G"KtQ#}]|-clcx~Lhu3Wێ<=NG pa5_z<)T?pο q2?^ NJdYdTe~]Gfy-> XdS b"d_h!wW\rHtH:SAwYzcok8X,5ssY/ºDu=Ga;mb&|(|n=R,m}~t8e&2ouo!VyX;FJ#"ȹM{= M5>G.}w|-,t0kVYf H9'a dqyՠ%!HU1F N<,#].״I*-;8(NhC $ $ρѪ#N*”,)WgSK*5ń4 'g[:בw&m*=#Klpms8##wG?MV \Y(Pqz-OֳpLj>/<9a˞>oq?szM:?2y$ўu:F5: ;~bC'uudٙ$2G~"++Fj7E"!)cҳo~dǒY'\)}X}v/onnYip|%QI|F|P=HlN*roN/7@mk^w,qȝI{IkL{4,{2&\,daڭc!(l p~zpGh7?mIG49WtB!kg~o>k*}2})\GIoP>s|ͤ=]vC-8J|͖4:z* G2TV]*K @m 7]aGw(Hzv_h HJ"0-ŸE_9Wfvzfhc54ݽ*᧤0,7dϥy}dn|1v>>d[A}~(g0a]E 15ŷ6oam0yH~/= "ZZbe㬤Tnz _jZ7{=)etI>G"8/5S\`E+*0YM$я{`g dHݥxΟS_K3) m+qXR=i\1!&,, JBY "rH/I؈e$T{x^mX1\7/cޡn[0\ز  6pt``灗7u Z^)=I,_{^JC [<3:X X-xVՎ%s)3k0x6[{G+ )rs8I.#my8;)ӏ`|7K ^WȀs~8Ns쪛ŀ/*N5L'1s%R!Jџ#AԠ5f]DvJn'=nTD(﷓ q qfj«P\B`b`9ldRAܬ?OO%z^2 bj3;MqŅ4BQ8lt@-/t= }k)+irtQ?'2S|xT 'orwf2!o |QJDw:*n#aaHuLdU9`@k%qn`RoN+1% PIH)MPşl X.xA֨ ٝ6Ny+ ž$^fA|"9: کHK Ҡn930c|3d)|Ztw)靣̼;?@7_2`j|k-F h^L.up>uPvW7 xvB+vx@zW>:#% EGy[ϩħmܷC6wP>iE?iº`˜9JlM7)}AJ"_*\NVBB;f4ӇqWYB!_6VU๖ѭ8$SF"%b9z:ھMW"@$2k5!_9आ wƓ`-#tcqdPmS5!+N{'j"#0.LSa$oZKuQ W%B vS|4U\Δ!үX;F6E(NAƹW),:5>0On # @nȒyΥVZT{p|4jAh4_*:HYcE=FIڷg&uetJzss$A'%o綕\ T[`,EqrGYiW7*Aw&v1VĉUY2!pjMo ?t3Y  S*ٝ!?˘ 2"Aa3NsCM>eae0(W7LREβ}j/P6a_F.=]UxOA6fGsٹ])<6ԐdS'mtWӷhsL+[\˼|wa5EesR-<^oo*GYF{^K,adsY\uk{` 90eS*y,`2 P8q: *, M5wAP!Ջ6m!:K.aqm *$p,=3:i n=Y>Erŏj+ v+A ~ӄuYt&w5;]:Ch:?}jGtԄG\lTSUce6ͽ7|; F)HuީTP7_,#!O~jXuJ){v&FP ~Q 6-uEmh'#jh1y'~HOI1Q.WOp< /WK!,di-b[ ӓfU0Ѫ;@(?r= d|1NLs^5!Z2^q{]Gdg :IcseDݕYߡ?x~ҜO}0Ux)tV oAwvD1Vv.YwD`KA**^׶" 7k u-rɺVMAW):[0g krdjYQBAxڻŝyc=eQP#A)" '<ݕ b;v-#Bg VK{l~՜;3>ʺ~ʞEÔL=~MjyzSrU_CEylpmY3,O06!ܩ ~pcPC)יrаFe7]'12%K#eg[Lar]\d:%5!V3Ϧĺh Ya$cӢ{ #_UO Tఄ}*񶫻`<碯@foxy}뿰6z[=!uɥ˰t[ww~&9kkTh?h=JOBJ2jڭ&uȤ5GeA2AP֠x8O`ôbz*Pw@p܊wD\C ^cQ_J.]pEm%ɍjE\*FIJrpe-coMz-:|;ej 7T$Tk ]:Mg,x3 fe\ 4,Ԙs"bf$KNH>5ku# Yhܭ&KgE4@"{=XQE5Ljڐ rʤ-$a" v޹ `,Xji'=5mcϳ h-|o[3@7{ k| c}41؆mt4>i'1 YP?{+ĩݵcw,zl>{5krB!r3h^n$'\AZ3=ŌQ eo^Swݩa4ה"i& 6}Z;I~=e7DbQVT@!gl6f=)VlN'P$i7fq,: OK⦕+=P1l/4qZ I)Km TKLSM 6͜ [_qBЙzۤ:*/J z'yF}AxoyZug"-7k<іĜ,{Ediӆg7`?@-H{>zu2i/bvo1U|&Dm4jD0޾YTIɔJ "`2ϵYggCSW|x22<~oBzT^9B!SpJ!EqWzoZ+EY%P4-ZiT`eN|B< & 89Nڌ2;ꄲ"62 !A ;Ecn\0eQѨ1躝"E8z*o$>qUn '슰 DgKe9:ضOԠsdXUd/3v0, tY>ۧӷd>_ѤSL9QY.!EX<[YDsNNhDanw|"l%4JUTz2%$W]:Rc $cqj/TqJ ڑ_'s)Q!$Bes]nŘ/zHh1 L[>6o;ɌDs[}91vד($+MH0m@~#k}}$hʒC-j%!ȣ`rE@)8dVwV& w{l~;lx~1jl[Cا;M= VxDe?/?\/-1=~+ĔM8:ㅲz W{lS[H5:H5vq,0o@;* Ph" -IN4}>r53V?hb2B ^Iy'KMx-K/6񯂂7KvfΣęKg"EmTiTF վg1FI/x!ΒC2^=Bl\eV ǑGIEy蟇WIz 東[ó/[lFg^Q9jґ d8vyUVP] ڭQ.8Qb6gou2_՝DeS NlKq]V~%b<2G Zg1~JmN1E_8PEdI2[MXYXli P;dkF'Xj4Vb- Ga? /UaTP!}(sNyavEl='7^'qo~p3ESx? ^!ɤS`Ʀ3*5!FKF8g~5tEd cxaہK\mc$EHkҜ^ i+VG4E=yhLrm$,/vj<Ll'hf!~)_=f*J"l5HƞLƮjOS*X+hKKZ >yWIT'I7:gz֙=;hݡvM3mQZ `mb'β 5r%b>n~[) hk2mR }mceF%4=Α\0Dgiqkt`Py>#jFЋ-hfL@$hh+afV:E(#i*D,PNgwX etuBÇRdDtPy]&[.Y ?it[c$KXvRTrfI`0|[Et>G:f" O pÇz&~/]tXW tErnnWhCD3[kjWHU_ryf B\lf/)##KTVx.2bU]% sB@?q;V ]_Öq`ƀc2fgET6>!'ˆ0>2:Gԇ91hq[HPV"$()IxZHK׊o 9|l_{[B|&Xcfhm@I@`x ,?Loa3yao{ls Ph0'6P~Vt!A~#Qs57yXOCU^i"Ѝ%F"|]ޖX OMu967ꌶ֒iT[*[Ճ:#eٌ՚îgejE_V"-2' вZl0% *׌, }ZpkQ9i84_[0m*y"n%@a4/d㼳8ݷDV _qO1RJe d^2+=~&1X»5w%3P528k> c p'-5# M}QD, JpG8nN.pS hѸH jWr6$>8-4W Іܲ.=`,̆"l8܏dK23hY+BNJ HIWUq1\b\RRn9m͆Sp`Q&hQX]h(7RК=ZV =v_Ra!D(R3""$Izm lG*|&ΥD]轇˪R5ELolywOEIrB4Gʦؽzn%w؛VV/J_5yX^8@Mu+>MoGuyQ=gc a.u8N֞$5>F$,5:#Z-݊ INݦ CP^[ ?Ag|5fggGYM> [) [53Fyx[Bfn[ǾA~ 2 nh֍*1q&虨Çu:zȬA^Y.^_#jtl 7b0G 3Re2j5!iHM`/K!iDx9g괎" X4/} 24ί ]Ǟ.$Z;F8 Vt )[r:Su whQ<,gE.>:G 5( \/4I1UScFWbE9*[pGؚy(9r;m9t=pꞌg}"W\ty|e +'wuh6(yJhY[gttff1[+8c" fcX7 FBĜԋ}Fd¦&UjX1>DEIOLpB;  g lݧB-x&ӹ#53MJNF# 7ݾ/4ȟ]f[ sW.n4 '*Gbv?>~?T!#I0IMVosohP[ְN>Ic&C+1Bx!v|?+jw @3XuUc[#@t8IqeV\,umQS9=ԺQWp>T:LzMM +F͜ I!b+\Y 2$yZ-(yYamƞ ]q,sn'嶛 aNRkb͔bm;eU.G:J ^i.ZΞ`@ASԎ; )y0K@,3ub*IT vẳ%)о.*qY]em@7qj7IĎbSYǼp-6u;"q/։95IFG%&,I|zH雵r^@[(u,hU'4]cGGQ8,F {tʊrqV4pIwt?'çb ^O6{ $?4qi<^7W=2dI/Sn<f8{ p6QBWߌ_դ*٦wkL8V;H#ѳ͏Kw7/5Z Q/|IdA:Hi PHW!vJocƱHksK"F:qGG4"l5 Sܟnl=Rbc8"= [';+;Bp'=#<[ B*IiWOqTبwt$C²Z%| Ñs}ʸmMjuI Des*iq#dgw>84M.ٺnLDK7Quɰ(yqmI;=).cq#_' 9zX،\Jו#y:4loږ\fLf׏#$X7cnh,F3YtoLPJF|suz г!1*19$l,d]h^6Xedɪ BNjd$ +]J2hmHbRj"aY$<L$і>&|b''v ~1l1O= c8ˊ>^q\2JCm„w>giCA?Єsu5G|5O/jJ^7hD}#H6r)!ۇ]PqDS%,Ɗ9X"ݚpJ 8 cYEL kV\H#.N(qF,lhT՜;un x4C0VېrcaEM_*?3߾u6#H d A֜ť9:#Q4[Y: tc0c)~5پh"}/3Z`YgՔ)K_ˬڥ]VuUz3x1M 4(WZi:y]kUcW18 gx+qE !bݼ6h7(=#Yli|Z c9;UÄs| Rvڙh#rʭ+%SFeɤH]f KDCF-iy:rp.D{Yߟ~lh?%/}}lN܀IgLYp' 9 ͜ٿ'RܖIo6-CK):0byVxk#)\oiZ8Sۄhu5MsW =\y_16,6lxEFSꥁƒ!p%aIجڷwjvBp>TpdQiWȝ2}t 9gqĪHjnkn֐L6TtWc_.n52/9fk9r`6o6|Sc8os2c,yc,LD!ܳ'L[:s&Ɂ  Xt)`S[eMv=g rQx: N#vO*vc&kv]7]ր3$' 0]V|NioÁj`ղ(Q֭nLjR?ֻP;R? EA CH.ztM&DžeWFlIX G}l}I1s1atS LJnDaiVvMVH/#d#-M 9bfds50-.ʧp<:v9airf|zʳ\Ayv"F%)[yp߰ZBV; V?:Bi 1V1Vzc% 6cy,{N]Ȝ+C[\`0Q(*K!B=~Vސb͑n!E-a0ÒS:2.1/wvuuF[I<:PvCն:Ɯ0 $ד6-cWs) r~S܈,փ8i]Dzh$n'a \DP!!ϰ +:6 =g_׸ j}Kȅ(;sj-pu"Mprg{"HҵH=RZb=LC}FѠXk qÎTpE:9^ qo!r3測!)}az{W G^7r7~ ssTO`~XL`qXe :juS.Z̴ ouyr>\uVwltV'F%14Q1lɇI6ki*ĆWj~.Ks2fMvz> I?OY'^C# H\Oj'# ўϺ^y5rԷyY!fp*<u&󌻫OU"i$>Х!Q9zdA4L/S9Y'L ykZMI *DeVR$ 7Q(FOVFGyOQT&<\V\9ù 9'Qǯ;+fpI}U2Kx`--Z^lg"ja02(?9ϿPG?bLip`0ϲ#/E_pEJKCMfW*(Z ;n+0Cy,.@DhlvP⿋;^,۬(9HL$ih^B\{$F AfB2Ndvlع S -y̨9*U_|4piAzWLBh :y2>+dI67)$1zw\4%!\b -ROm|ڙԪ!SV;•t c/Ȃ4V:GwF͋Ub ҥ-,=.O0nm "ze(69ueϸWO7p| P; Hi_媬PNX[g w0( n\rUx.#cBs^)\o!QzR罅XD3och e!s;圑_/wP:ƪ[UL+ (i81e %KMPD9z~ו\ 72:W"G3@REpG΅~.UFJMpHs5z=暎U>:> b 7~tɺ򁈽̷hկ_ O$[Hj s|a&W 11~dX7hAɁvݜ29J] oS^>kpP'-њY-ո,*~Zy?~0KU'J`KAmX x"O8l= 50h UshEnbP=5),3g;+]7]d>v[fo(}(a6qww ݳ܈َDc ?Pw}1ѿA=,b]v$0EEK9z~^{P1_G8FfhtD+c=THua E0H yό*c}Ӊ;'.?1@DM 6gnv>;ád6@2f_=bg+Gֿ1Q{F!/6EΆfgct|'()mȾF" ,wO7[0\OS E^2/F .pz(^u/[l~Kޅ?6cxMTke%WsM|Y;0Nj\2-3i6X@*Hex.SƳ` 6=隩 aҊľ0$>XD ;_&L>8HֿCM[ cDS}X#ECk\#vTbwYU=0raxH\:9/ dha=h~7+",F)X_Wu՛3CNVpHqhAEiA5q FJ2Q?Nv7K7y%^{zS3 xY}cG0a/=%0:?Zս$YlDdwF9@PRg^7?Xsjb5.ak9K/vƖM?:@\zKEl_.OlnŸ{s'('TnBlc7W/$ABҽ}6? &G! _T@]HwxOߺxc ډaT6& XSfw\$GWomkw]C$A\e-=\x9rz;KH-0ҵ5͎bP.՞3{/`[hl"jH7GR5(}~yH;]bN*V\2ZE;dP%Hdxʵ!YEq .t[wea qGVeiIO% X| !GQPJ2`'!/MvdՍGW0M\-\@&ǧzVxO8`S;ԓvH]{֌$ frucKiWsTd/sxZ )b\>}U+ {7fp9({z@E/8PvE9Ut[k W)̫%Cr 3>VZ r\xQ ش JI>j4 %vVQӕ-fF> `3BW' 6?T͙8=~.խq.M [o-ssZCi gչiϹZ?xU NWԤ"8re)lvJ Uޡ2르T gUImx[$G;Sȗ"i=oR^nmә[$kUX?Ve~N3ڞRszX~V tO6,+9 FߒGK_&M؛uޠNZ0wdeeV_!͝0ITHOvtl9g=Ľ ъe2 ÂmA=XBI^%?#B4ľ E_!r`n4NYL S% pcäTEMt``^Zۊ7/,n*/*(@-N~Ϯ)]G='&̈́ },<i@Mk!y ύBݳ!fЄ!6ۗĉ蚴*,62p> T4dApM6y`t ]fV]0p\{!~NR>_t0ﻉWae=k8Nh=4N\1XI1G5z_}RVڶt1+Rh'P[*p{HsLm^kUX74g+~E &BPQ;X lCL&do.!;b!P/)YS ^{B5.s6w96!SfU z>%~ ^ U4 pn/W XNPR{E.j9b[e/0/Y֣㵑W' <<@aP3F5K9=S21 Mc*3ܜУ!4uyJ~}D h6ْ۪ b1'cغ}L+vs8@10> >IHQo Ƌ{貼bTC6/pJlP8I:~O%N 1v+K[ +jhK5b"8 rHWF۹UVC3*~IV!-Ln o4G}-uR yN$hX+qrbtx{˩3>MK<^LjmX|/r!$1hPޒ{Gäa>.ݕ{y[Nw4ޟg#5c!C8ܟ5 Tu#TöV< N?x6:I;&v<" 1z۱䮞p4?$'W yJ.Pm4Lr5Ԓ5OBp_W_hp0 O~ѕurF*S=6 Xn`s d6o GSɣ s/_ EA(a *s E_UCF{7N߱|o`>MV!'-8&KS m$tEV"g߹+.rR HB#p bR{{!FDKmtW80oC77<)Gc4(ybctgTA+sċ-FPKl4 bT㏖:}ޗ7uIAlăؑK,7 i|08}#+ጮosG(5yIK 7gNDDh`9}$0$VJlG2U@_Ţ1{ګaڴhݯ qS^2$ܓ rҶ<13gS]ʓor "봉C,:"l"{  *ժ6;A&;怦vp+l8{?{sO@qWtJvXX J`FȻ3~}\ι?0JE86~7m]@x慅sbsi^: Ĥy2'~Eoyp1>gnya/0MqNɛꖷd3FA3FM;EBt tւ9wBvq-AыiH˨2. ɤ+vW#VB.L)--dJ5? mk1]a*߳'y_:}:{kf>C`SU'I|M܊&("Bg`n`(I17CG}wUk[.ѠQ)NWBe[{h_xϴ6Y͒ڐFo#`.j+:s>{s OucU9>DLr,0l>;PFQ8 kᆱSnYbV'PCT с!!Wyq^DŽH-\b;cVBnB?y70yl2,r*ʧO'g97{B _)fq!ݍ,:g5ĊoY  8) "%WhU$0˴N la8W)Dmxg"0]6;`$D|bYZAeq :x;V^D}-ה(ϗu'뒠Yg =~CRg>D9.r J 'J kik^2xĽ%g>O=VK>3bUxS_e"jwMF̫ [2n&Pl$ࡆN[7W~'#6`gı.u_dLMMl :&\swd؍])VcCcpxrnx;v#"TKsl;Ҿ"|kʃĜ+@4;GR-g]2Ri#0e_dž: Z77])"t?xDS˖&sӓU#^IO58Q'0д3 쀵)mQԓyF $jⲋ\yNliqL)DMoƁX#>u<_b˶z;cX |{Tc9F1z `l&ԵIKn0Gj+J$<Z&(3xm{d[r(.A*o@1[p4?Me(k)YƳst>XPM0b <+I ~nZE<% +( ,P?s\%#m"s"'&^o$sɊB(žrU<2/]U `"^͐|BFuBޛ|`jla򜏌<aRJ6H{r.r}<-e1A)=J;е C7, JZ;^qȃ lP _WzLb6EKWš ҐSX7V(&kM+os%p$UvvtX>G>QQϴ|Y#lCm8e4kk{"0>l24{ŢIh6gJA8J` @~ ee\^Kdr%.>`R?+ҨgL /Srdƹ8eh2WĞ :5( O" k'{ [)ʴ<ĒÀZUc<9%m(o!g$Ou.a4[" ruyo“j37(o)wϋ_SABL@jk52Pូ\9/ƮܪJI[PU@E8z㮏o[Ty-UMM龷eb1].΃rvX؁G`Y5mslk wc5$~2ZX2_6hZE_5I[HD8B^􋐽hy-cT+WJA^5|wMDyy`^3f] U95zl&k0PHsCP_6#KZ.,|gU? x=G`&3xf&1>+]JcZ}bY?1en輔}Bđ[gt ەE }}49?jssWoLRRWc>V8iw!S/V\5O?9'f\*>쾅 Ѕղ{9BTc]|˴IVr=%', q IM: $͡Zv6Y tK!",E-5KrKc[%Kyl]\b# Yo@>q=Y;ʿ .YHBF}k̩fRi 2C(Uv,8Ai(.`fwCV,x/zcgig^JDUx+#T 7&Iwg$ˏ+Sh`*+q1{0HE@(8L" N0ժXcyX eYbv9Eۛ}0_-"jg ׬ P.k^!2"k-;:h9H٦lzV4}1v0R3W3IG?tr)#M&= %mvHWl;*E0Lk: /"Q3l%Edwwʂ"O4ZXUR 3TݼUUqR?2,|Ǩ߱u`B5[\ѮBy&rc(|?%u AIgԺxr*k/Ҫ?,yR-܃6($% v ~-<`G_8m-~A v҇)~G"hepVfk4U"5k'Lr]H4=k S$B/pr,dII Fz-zmܡ{kcu}RpO >\??.%gZGnfw\B|dyuƓnJP7Bt];XH51+n,7n>$i7 /QRz\>|BNZnZ͟(ٛ[YxИdj/}޳RD0Ssvy5>vc,G8'O0ɁлUv~4̀o ;b&lة2 JAkoIUheVlcebt LxDGuWevk,wz&GiĈW䩡𻩂!Ikڤ P=omc(Ĺр!? 1D0 sſ [8Hx>cD>{#'졡obEv+W Tzs{lc 1JaZLCɋ,RK^$H quDF^;PSFbr|WUA :evKspӄ@O+kǗ#ގL`COUtbdD~phf0¦{vRDcx&|L7i;@-/wQ84ΪSicZ ,~( B7IԞvon}I_`䱭QQ]_V/-h7^0o +@et('%@׷o=o%0\#n4wϲz1G}鱹fui6҅3#/V2@^)uUV(穋Nl9.BTRF&=-IE(" |\4=߾j_nrw溜 :>(-.%"S~v)'PbBIˑETj5Os0mCFkf5Yv~jrU@VÉZ%:GRg,x89`GNpk=.էE<ğ+4}yAnqO@5|Tt3C,)jqRPMdn]*"ؑAX#L|t9]́d~VP V_kLm2[)Z8AECIuU}jM`ĄC;b;Րn }d,fҜ-,@_1,v(hѨϴP(9yΛZ~zm4=yFG=m )Oy"~Bbxnj%HDg |ZpPa+Ȍ v%}1Ctce]֮!aI@eSz_Sa 8dkԈBB3⼨'@|&J5^yQ qreÖ+ ]ʾ/Sq:9YwtMfվ1(K3Bgq1卤HYwEVVS bd_m_XnLn+Wfׅzh[Ϗ$\P-*IJZ%4~ aa-p$& *sS]YoJKg}sf@yCkhJ1omn"Z'G~Z-tӼ%I镹׺G03g+>K"ئԛQ= ܯ!))ex@UkPF[K]YgL6<_hXZ%K~Dm z(Dž gY;wdÏCb1>4!vzNV+Rr (Ƈ.Rò~Dr^a'+*L}1;]B{X&M9j] ﴷVן^G'l)-KqwV/6Zx"e"R!D"?4Ig QrPF?l_, N+ȹ3r"hnF&velHml/A&,h{`@`vss$^?u4r&.VnPrlcUǽ{]zеQ^0xߙV|r;[vг~PC>l i ;jukveaݫ/p2Bb76\GO|8aMRj& 3o6Q@-Ùb3cp-@X?J[ ܷk'G>qW7 H?9{!~]#5FǁM_lVlIP_aoa0,ي5E_5lkX\W˥M0#&gg\W0&PP<)DPAz}Jp]٬(eMaXX5fL86O $uBGw@6Y &ߑ#+;de&ːF+[sMTz7l+“1F&J{6:2HT^)ք<Ŗz> 1xR(f2OxP4!m],ǁ0ȠNTj^h\L 1R +\ V K`FȆYR/+ hfv5AEP3g3hH E?_yiQmcf{F)A, 2 x y/TZL  5oV`!:-#O$iXKuo yu߬{\T Ys2mo|1e*֧^M&VO`\'^h oi,#|ʑyҢ%cV{bt?X|ߊ8p4Et:kVwQ^^{"Kau携W0#!-U /tr࣐.[az3=Y:fiq6mrqXpy@Q5&„yQ(ӵ" 6CCCe@4~CƯB@'й;Ȃ;ʫIwx̀2U_V`oI6bVeV*y\n ,jWCŸ^w1k2(`H8x3>/` aIHa@^A r!~Tg*4~9-sT]GƯ[Ze''IE1eêU?BARD&~qlPmD'*%4,}b7%VE FГ a嫀ЙF.il]9󏇦[RKC15Q8AnR:Zx_#˳Nmrʑ2= h` ΣN!jr9Yj9Y |rɇd֫%pq7PP>d7j_KL :@phTCCOi|:EikJKM^`P0]H6n*,2"gRQԹBm# Ȑoxe{$V;qoUP幻 iܛ֘HStoM=&O ]/g^PժʾJ+*}O_Xs sjăo\C&Zɍ Er}.߾R)QOR=xbJx Xg4SWi7[R ؿTs?4'v ,df>\nTwh54sm"^s9U8롡  ٺJZs _:WR 9\x䁦p~p8=h.8\Sme l"{ȯ؜TZ _G)%|0SRVyH9Na26mN{ṟ8% *~)g`h|!mM{akeN,Nݜ`'TBѧZojB&Moz&i]@ .567ȢwV(]%aEf%%24fg@"R]AiȼF/ά$g1B֋tϷ֌-] Ϳ`J&ؽ(w3[t1af0=jVBosZ\3MQu'4|wA9CW?|_FKXu?hq|RȫÏ@Tpk%`>-lU[;;Syff֘Ҹ˜5RAUbe4\į{}a=8lN uY0iPHTKX& M*Eȃ ~="C ?!N)/1d:7eM6@$kIӟq鏂WV]=JvS$v.&IQ2 t0S R%6>Ӭϸ(s3c@@UCuh[ )0ri_pL(t)sI懳\c3R9 ɪ~1 ԿXR'{o[.R‘+#[^ӄVze6p-hZ_#W0尶H$>xÀm_0OC/`Zm Wp&ST hu"}/om @d5Kg1Sϊ'b$hC5([u]0*&vYW{:铖S+0l2v C˚<=%Eȍ3h]!](o2hCRI\O|7 <`Ec4$s@f>x.`u 7sX,P5֐֫z饊1Oڜ&rGb 0TS˥.tBJ84I,0 ↈd}lntNݮ?8\^YP!xZ 3J%<^z}蒺L#)7c&?T7kEcD3gѩl0)eH2{H&& oW:Ql39Mp{P7S|3KSl{`넻4J.pū aQ̐7tzxܦ(h`ǯb~w/Ӳ}`ƫzqGNs\?POi]v8`@V?bw>;r0꽨) gT't )^k6PnG=:r4tc7x[%apS-> U7g9;*t:qϸ{ƂB@-̝mrS (];&o S{8L¥[m^/eGs{ {G2oF0̗¬6{958( #HE. O8~Tp+y%,tU)(8%ڼZ7k\^*+QqB xICI4>{ʥL%4FAF7DF~kV>yukN 'h”JN"u|t3Й'yS#Rh†*K CF$Nd{LO%%4ˇAU뮹3 fc+q]QڳVx+(E|"d}}͏>-ti?wvr*Co|ш?lfWGm^*}N7GӴP~<6Y*7&,3ۃjga;g)9iu:%p vOλ; e eC)"!0rl›TB'? OƆ 9F>][_#tc+.o?Qb[~M7Ӏm c*a w=%=ZGXUÑs1ztj֯5ۜe-<Oi'o, V8 jP%dq V9]zH.SAYGˬ;vXs@+wA=1-^Cs?H$OiPFv1le#B1 B2} m~sl|!q/ Ճw8ynB庭'k9oP-A}yh" L,b B7)LoPO_d Hs&gt~Gܱf1^IZbgi~ ]"##Qx?-(5kT $eM$1)/âqgx_%|>/b8me,*AUA 翅1%JL|z}6dc;}lЮ5 E~d eN0RfhL5SyqISU/*^ǹpa%fZ{fcN\Pd^}$E_y#k__OH'XSTړkMqDEJT>Dq`a mdg, p4, :̪"1,Z>#00yuza Tsq;{71=AsTT -mnAV~D;/C}I7 \<\EeO!eb-('AhWl~:ѕ~Ry ᭌ&wl`tΚOtv?$p af@Q 2~KdY+tz oǕaD^,`)};k{ \HreUy$>@Lk2tHpZHj+κ ̖=#~2.Zg }FP NճPfzV?W4rö jXVCvS9eɹ(9Bx@8V4A(Ж?l`2Zƒ޳!`%WK(#noge=hw(X;o+ϊ]HFtsL)bcVEvT5'\#p~{~S³9ı~$ וa}¡l.򥜝]RPʭ_v vEQN$od~UaASš}gϱ;|V6,Hނb_ !t䌗;3]3z@8}sqw c?X$- D^@VnH޸wĒ;Ssƻ{MlnJ΀⍁s6*CSSv Jv[a8`g\xftu e6y홍Do@X v}P]ï<@&xݩ Z:Mh=,ZXgDkqT;MsxVVɟ[EDѲsz'5ELױAM":f BZ2MJII^m22 PsO j!l2pB`H ?(wPmd#ӻX9}rqZ"R"q1ω.{'}XpSYη!}Fm/+\5+.+V' {0&hEڧiWvli)R/ pM*p8*[525p(<33VF-/4}*`Q'5q4eF%oy`S }mo ~O{h*qU2S ?|gJKԪ 1}?|(jw1y{<7|g^ضnX=J(qF;ŰWI@HxId~[nZW׵:2bRQA;\x 0Al+ @nZ0q?3Tx֬פ|JйlGWDD8QC>T9I O|$)7漒5[hYVq1"=&i5uuc?8O[o13P0$ o`&#_J5ek PαC*'}_QBtqRygL,$š JGyfa޶i!WzUX0/o>'c$br޻p[?A+`P?gv G,S2b8ђt`{(m7⸔` rB4iA \*EoFB1n87er[* =d7˸,ÑoA.ݺ^AUv`mY3U=̧Kҥh^#ŒR*.0ռiB mnɼ{z -s=.']}(,}'1("e(&ѥY 0U_䦒ߑ'R>Z_ADr30%qv ;s}D0<$܎;i?mO9F_$Й(P%'F$&);nPPlƒHg1Rly x>oN@tFBjP&ff{X*V~$mv˼*xZ# 'JL, /VVX9o$U񖉧[d8ZtS4Vo lw'n?n}FAe$ϒ+06ߨ(rR*<@ s+95~T,7O(Z^h^A⼕?̝LlqB>d҈_zy0"g+Q"x(bq(|5&er 2USNPpXnH˓>Sӯn^y1Ю7k'nد2bNexd >nCjKq?B|hM(@Ppt ^ -Ͻc9˒/W|(X̧-\nIHQ7*Buda녇q<M Hl$L8 UQt=fqI>B +Xn ,'L1 "L^ `$Z+M_PǎLQ:?N2w+=)΀Bǎ-oHmxyRcu5"9ֆ1eP?śİ%X]v,#쪚4^~z}pyskuCe3jР: Փg8=>& Bt,N!Lԍ; }!c4n+ZnwP#cEX(@S+in4rFϕKȢvڼSYq|~̢ M|_j b~d8awv0Vo촲~JFÀ/u=o~sRQsiay-p0@ZSjY Un1#]u|oց_FD U lX_pɿ r-`UqE`ޕ%ҌSD^RQzn ra_II! \wlɂX:ؐ=sǺ+ с%h66W2\8s(=4t3Oa,eoA7}4mۀy[ڀ0He\L =1ҵNϯb<,ٯ"mi`00tW}]Ąǐ^jg)t5<"+}u!*h~j QQ "Vsd*Z*X$(ڧ`#^BܙոC؟ &WV"8 aS#_B/E8! }*(PbZj @zhgDyJR}{U۰үr'a(4$;bz8搬$ٺpo) ω fp`it>'N{5TֳHboc>!0%u\"D-NL@2\`4qz0y^.J9=lmqvE`"1-0 OTvan[mo7q/uZmo{e|#-l˒` D(ߪ:Itq{ni1"\,ސqj~EHvtGV(ĩ XflbSљHFBƋ ~]4I/,5Z PÎ\8ъz(a®nw Rgd`;M$'hHhws–WO3"5= 135gbP{;R\ր!P\KG (Q=xmu'xA5yyUߺt-o =w.w 5 p69 *[{$|$SWB҆ 5x4EO^\tx7>q^}q+];mlld(|P:߻gsk'oɪpΚ W7`M)MuOL2o'WtЉDߔ#FmJeEus*9/&Z;zō=|qmUPp-c&egDk,d!/^lMD@)}57l_q1vD+=MSg*'^.g?}2U./ +g-iDINjIiō#j,DTst&nef1Ck+l1Z\:Nѣ\1G^P :HڬqY6nfPubW,G `V6LX렿9 B>TFWe̵zd{FЖ?IXj!xtYz|l{+(Eml(p 3q$kVS vWP5:h(&DN/J!qagp? mT1^!YtzwnHͫ\?*@ ZH;Ik Xu^c n3(ǣ1| ny}Y 6R[#_ok MR =w/"su2d-"-F^AG3%Aj9ׁ/YpsxO<8TFPFݡ_㔻ϯZ,o"tr9RAc:/jp; uT#t:&Բgqb6"k@ cդfE_\p.5RDMm*9׈.5 ~ã+誰brmftچ(c k,>A Iiz 2TBw7ՐJ)ZNlI'.d4DF-$#"I|1kUP b-+#?g5U*0w[.!QDO:jyaLk_/xo:vQ8K~ r`ss^ X3.Rn)K'1WfWui]@aM_QsW? ~$"%Z)-+^<#A#?lHj̪ȗ'g)-= 4EV ޕKgzz>IO+.̧slTj*1zNg!JTīKB\/Te|VNOdf4=Ix-h!ߏ(D-#Vb8kl{MLDq>X%b L* fx j+Ȫeaσ 1?Ocb3ωf` />Ҟ'-kd8ɔ\%TH2@&"L#c5M{kښly/hVB?cD@V:`r/QCٵ2~vVЦ9Ͻ_F,P @)xK͡6S+Z]xPgC}R/Fc׊'rS0zrl92DFFS"^~ܴOك=/4얳ckQB&a7$3%)!yw,`iB1)shܾ h֜JF)GHqZgm-Wu{G0~4";j1l\ץp !Q!~iDŽ$+yH\Mei02 }v0:-|Fe厯 7%?g3 c!^l_ssmL!ݡqmMcxF͖0{c{ďð>^_'DTbߡW c N|_n?W>ߪ` %Pi`pݓ P\|h t V]IP?=!7=*QbIy@ƌhp:R׋c!4tcdht x"+l_B_C7''D↝_P^]mjb͉%Kd<"2 QꤨJ[^LVSs:7 G`4]%LBM,ĩ'Bmm+ܣ;wGa[@jDEw$է-/i4Mvkl?\^Ρ9=m*{|,Gr:@aAWfmO>6mT9a3'Rg2ʹb+",Fàr!ROFt%vhBlcB͓f`p=+>S吏k~er隧v5fI3BߣaB̞Jѥ0W~4 x c]Õ]@ ^|Fy5phNf|@"6 * SuǼNjf]z_F>!H\DdKqtb :8C1Q]Pm/ z=1T'J)N;TS4TNI z8YE4`*'}DS%:#jIVYUtyxz(OoDr kc >M1֖Jl="R_bA7{sGc {v.4Ly*I $[0Ȫ:_HЩ,ſԯAe'g!-0rp guup.2xQl PmoQ::BS ͩ?mV1 ؛EYGVn픱g F5(5[$& i0@d47ra±P ~4Wp)6Е#U~luM^u84.u$>b<>?DAEYy VWs'LSd3jwڂW1@Dˮn>nsϿD-qs^9eܚDrZQ nMxU@05i|X)'A&\#7$j_Bz;CvAH> YS}'Ə/Z W}F":뿳U"CE>{¦3ti@R6*UN\x8P'CX9&st#*2''"-ZE,2 e<-{/Ŷhg|N\6Rڇam?k!n\"дwB.I9%P+#3~|ץ>#"GS) esC 3-a߮w0G~ݹs]6 ݖcR(GKq4C/$\ܺ]K2EO%]WFm)B;.y'm^[Q@|GWwr_|7 %rHvf YM1Ǒ*S1{!KQNGX no+v.Jx;me^x^dIogO ;{@i@5D+ļF>PLC!FſU0bK"2&-O=Ex'BlBk}"`[|)a{!BF\ u6t^yE&+yPP$r29|qaAiUjά]=v:28tR`vaĢ'xSEyJj)s1"ݖqTo`Yǖ=UB0ba+f3AEh fcC-=!$ޘR rGũ=B/NK'iK ghx"}{<<]C"bTICZQߛT?&CWJd8}3H//ٚ-<۰d~;\@sz8ݗ]uәPDĈx~gJo/mv5jU%(3ۤahqm7b_)$l5{i 6)WM1,CWȱǔnZt3§ܟyOhPjLzv>8tVW5|x*lyL9זld1[b[8rۂ\. iEg^Rfhe%`ҝ)j[ˆY ޮg<fe(J[1z+ヿ骕AH1ڇ(<`ut2'-IQ_@xe_K.R9B:i.ZV{&,Q n!)fCZHDJfA>Wo'0sP9/a:?;&lutѓRį65܌0B*5(mA']nHutma'VUԖ9e+V?C,?!r 9nʢ :ӵ*Cb@?t{[ZǠ2U>,f]V:آfCCdMH XJ{j;oNX)ЋC)i6)x^A_&֌53] ΤxAΤOA[LGߤ熶}nH9+mfT2Lj3ק*g}t^;J04|^?#/uw%P_a0ϛ+R]V.C#[[R?Cpс$h;Hu^FYK 'nIxl~5^g(7ܟkաa_׉ʨI#\|Ty񂪉ˊ.]"|EUM1e+,OBV[w9zBq ˥_}UcN;**xq_b9QUiiBJr.#3E n4qF 2|h|wɌ 7!_Wi;j3py4_/#/-)?rYI f{g`an]_F%#|{eQʌ CUK5 BVVp{HȪ@;X :n?^t:buV6O:u<0wNKݜ00k.4Q mi{T}5!EgxL2QW ?)y( E\J!q m%"n9J7!ƛ~$Zpl ~{UrTf/r_uwN9J+B(0ǙLl'<[/{YHeP3OjElba8:M9M7T甧7ɘeg2~z3[)j4Jjrʡ:~rc s;hW2اf@ ګJlku!b/c7Aw] E-;TJ8)R.Xj#2wFsҰoAev+L(D^QoU LU:"E/>u^hh2.$$uW9.^o#q[J.'W:`;Y.Kf 5$9dV"Cm=|xEǏ(ǩw)6 o(קLW|`qw:>(4 xvg,,_vh-_r wn'x˼J4$Lδm{dp[A Ob\u_FTXOuClC`1= fbodX(;b78'-:E4?͌ ^@kYӨX&Buft `U#竍^RBFB3qj-%@QT^)]+S{.{rCmX]{?̄~xK <IYf5qATH.4- ފֈg AP #γݙNQQWO}_'ɤŦ@N&z&'^Hum.9ymI L/;:.χ YK[,%92_FAcɊX*q>>y,FBf5FU87A"BJLNl jp#suLFnۖwǨ? ZKZ `C;gE@57z2O2X*n|+ -ZFcKl/tMk@hm9VH:HqQ^.F7m K(ƬDW{6riŤ.FQwj։-q } &/(hk/D_h=3nK.m{S|2άia-`{1N珒 R X=EUZ0͇|"oYW<~\/`KYOXw=:,_c Yf~~/)]"p}kή&ʸ/q(D#)jB@*X'\Wc$yN=Z&-"SDZ5,lh0p z3q%T?d1瞹:;*'ax" E@{Yw+U`I3W8g_1QbGf6 #[.qBzBbТ pN;߬k6 ֵ%=E}Α 7VHiL7>&TkmJاnlQ@B-=RnOV<'Sl rp=/;r\L2J|"~ 2N!T:Z.@o Cw9 fgK:}W2 ˕k8bٛDo,XlUth'v|ypamAdd#FE*O9k5$? wvs2ng|A\uge{'><4Ω[ʈ7jhؒm{O?up|~oSOm̔\k֩(Hŝl8G>G\3,*yyf)XmJKWϭ/aK'??Qӛ>Q(7|9 cџ7ऴ ݺQCp R(l`[¦^ChABaI=ࣽgj? |&]"\:{R\.bLsc24.bczS. 䡚V;W&>_%܎H/J$HʃHf磊W>vp <773> R]j2Wc|r 0:Ο6j6CFI†v(o U"U5#wK'v4;!RŚW&_}K՗fVJkj&%OK .O/dqAL݀JrKbNRUg t(0(r4Uw6~FJIv0HQ8\[:0v\7}%n5yϙr9gi&4 '$kl3{adXR :E/nG(j=&VVXVXY:u1TNIllw,*SHB4#afVUY м'p*I>Q@k;OaA(T>OGaa@P9;`!爒pM)qGYRX/"tр}wn&5۴׍Gҟ[m3(l4Ƭqh^M4 wJ c?^/crPӷ{m\E.1dSgՒFްٞU\ŰFŃ Ŏ'nS٣ZE72؄\U5?&].XqXz7H!gQo{d*VO9hz|(Q)$ܣ>1O^@`,F[Wq\+1x'4xYE*'Uqr<C mŏa!jfqbi+ȘM c U5g}- ߶yeR\mҎ'ɐs>"{XiYxopԑ}d\HW pUŒJ Q.21zoJ59wgl9bb$t*0p7&W%>8H_Ծ) W d2J?z1szX0<ϫ| vdzlrڼ +j> fd.{ĪV,t3t .*J\W͛h!2˹ )C8 kfkIk [OrGnu+LA+Q hڏK^F"쨨bt4h3wvG.aVyö^ޗWw@(5{0aw]VTCV>e=*Yu{?2c>{)6}p}j%N8ó=>ɷ_26Q7(>qP.Op(K0)`3m m1W&k&i>I\I& P*6##ƚfs,{]yRbh [CCi'^* MHv{<[w`qĖ+ݞE۝wЂr.(ZYz+ޡS*sr4LEHTL$]d}}̳CAi{n4v@5y5iWF-jJoebx_VoϭP0:l.50DqPVbnPXt")&diҳFE>:~8QUI\sA/8`Z0Ƒ1<_/҄$hs\%ݢ) 6.̻|d1W)G&-|)xtS-񡖣eUX %9W'mNĔc>LI: .ff]@nC40=v>ߍG#f!rﱓM KڴYk>ܩ"e̻Jұn]r&fs"'ʱ@hM@vk!\0 J'^2?IΟG&:_5Λs%*y(QFl* 4s*1bbR ɰl)O1FBmo(}%3;>^`>@}yjXD|ݼóSf_WlR1ʷ[P3|zҷq+z@L<Ώ L{ ubYاc/J C/Y=%0(*f(IKDCl: d0L7$GR;#UHm1=GޢӘ^IY1AlۋؾqL|xIIZ%gq( ;U5rІ}5NXLKR9ޤd>c2#r >=H$>1KЭBzԟB5M,\wz6g+km%mqbG=S]B:h3!ÿdٕt,NJ/k|wvI*@Le[gtU#d^"ijk[-'lCRy 9eUZHL\Li|w,HFyg<]F%6HѠ;'+u˨:#w$mO%;2gL+{C[^ʤ-VB(&sk/92R`bdꐴ՘ޑ5.ʞDSv.kj)0<'c @41# zRu:\PtDݽV%qvSǭn9"S&zRX3DZ2y~Ć.6 [-B'&"0>ۂ^W`DYcaUpXѳW(?zG+F};CD($ܞ#Ӱ_Re*fF%Y<@c Z9I4`zLϛp3@( xg$Rgv 釚kw3:s515sp~Wh{7-C7GKe:%2f'$*|ϻLK >Tݣ5nIiwTzjRbn?4Pob/Ǫ gwJ# g9`(Ȥhdx;Ȩ@Bmxŧ^ :nL&޽q4oT j3qfuޞ8/ooN穢ҶdnEkg..XM"a%Ԇs#;Зpe_Ă.y!2_⁅Vs~V;2=<î#m{:Z5*#bP8vAjs!xw6UA>ѢaU1UhZ4 AP`-Z0ބZL7|onQs*Լ;(ڥG Dۺ}`f4Ru8/LeT9 7P{$AIcXgWUA)9[P }!=c?J`e}g\hT%gAEdȍ*i&3>[RgR:IC=f> h:σ`+/SgE 1 {) g[ [lUg7@)85d/{s6OZ1EmA*"kz^F5KN*`c: >`MoyaqdT| Cm7g8CC7g/J-h j#{R[=@DqE:+yiMs}2p!<=tpHR)Hs)#삮6IzB::/ۧd^fYfF̧/]7XC~{B1DIcU1ۨ><,#%#ֺU}~tGقMI |XɩZ7Ri7`K!%$\e_5\6QOD5_XQFKf_#ޅ<b`&Ag}Cyh.io^w%ٚeeѥ <FſTʽT> ah$aUHo-[d#Au] qfM9-h"}@'1"׾27Ú9 `;S*5$ԴUb7@ 0ֽβIy!C@y>!~uaz?gR (v5BF[ BM լź6bDY(&H "LNgf-3xF5Y +rs(>:~Q-EΩru:/P~N{*ٵnbooͳZVk>kuϼo>ȲݮR`C#o4VߤL)e "z|¢lSZh Z&=}趀0{,"4!op[zK(xL6c&%i(3E s^h8wKI&ڰZ>T]@e6E[^gQ|XR FM}I|Ϫ SɉfW.;2)]hy>F9F-O}ED2 "C~ԣPBFG׮̿ V24՛g<>A 'um8+w#AHW&:HL%?_,\XsGf+qG,1u̥ JqÒM0p{?|ݿ84N[*Xxvڰ9$NGj苿,~&TpЊ, >!\Md}BzO.`d 2qgPnDq+2Vy֫v :$qÓuۭdAG[kBma%vaTLK5FEJ[&Ӱ֏sl~&հMtӓůl(CCDgckzsS?3>#Nxe 0i %Cl)JɇBpt* fH6|wR ^1wBJEk!Jni.r 1ŻB-e;ǀ;ao勋+ B|ٗv X z@wwLUPUm|2\e@`(-mtSX`jRb5jJW6,IZh搲jXVB hTWu33&nΗ'{A~*d@DEV:'aR+UHf 9LRʞ"7cĢI xzYncrM/΄T.3<4 9 ^ޓLә*]^<EO "*r*'ͨ,%U*uAw'YwO7U4]>~#> Was_R ^΅BMb3. !b1*}-qޤ/f}IJc1ѤJ\'@P862~r{gjT#߫9ys%|}jG@ #[qq.R6K@kLe{_0 CY1o;-Dl(h94e e:R.LblF ;uި~  5AϪm)fu_Mk 6+G/kCqе8B,a/ƦBDlOR5I/Ida(V]Y@?>(][G|0G 2>myՖȤolI/dkx- >px(ȔؑL+9$+ êju^ýz}Ϊ=ƻQ\֨# lCGz-\N^+u rx-'DϤCVf!Kvk-|o,Mo ƞsI¿:? /6uݎ+!˚67!vyXcomB'`c.lt]L'FiYJ$(?dv-PZV-<gV2*HrD"N ܀7[(Fy!7؅PU wޓ Sbb.رa*U"ॲ2z7:ߧdp7tZQ"}:i( aRw*615KqsKj\/nt؋@+`7lQlC zW%rs=84#jE\N]W%2xRi(VMۍ|sT̰RfLs1|/#9~'7kR6q'?d8A[nsHݨFѷUFP U(`WHyW;Ib5)63k~?jI[쁟"aDfөpfGOWhʏ%Oaƛ V^4Hb9W0Jy>/z~n¦^:RxMn]}.? ׮DK;>zTEe dVUa p'(6_ΒYz{y"/U-U`Z]T ÙSF)-jCu …ͳ]:V0vqycZzw`bR&x32+*⛜n#pЩ [ yqwrXGZfPH,;iBPb>ˀQop03]n6 xu`RB|y6l,MVfޕwSuŲv]w֬ Jȇ$=oq5tX+o] ' 委`B1>cuGBԓXКḘvߪIP<~1Ϫv#/,VM.pO@aC^KYbY4"Ibx/W2xgOSW/wDM#ow90[3~%,˫z$Fxc"kD]WZ+Tk;]G?0Pi4 |CGg8" ;ߵ.wP%o(<|ztB͠{w]HL>oj?3Kںw25rG0Tp0P.yW 3wMR`9rf 31 yX(Y 팂*ؠ z}4qeJZX1!!K͌zw @zq%3aͩ7Zc.k")3ŵM'b!>SSů[8piQhr#Vݬdg B5L]Gu51e'5ie]c؃~: JaKtoٰiGM~OЪN2toI8BsP%z ]Nvb ߾onÛ}P6W9SXP[WX<i5;r@#wwFyBKY j"G dz $"Ct|zn'᭱g"}+ڟ q4(H P>4aoTNěDY7uu-EJ'S lm2M2Xש/e3`iY_͍Y^|YnҿH' QjmÔ7˘cM|h@ ~yLfhwD H= tn^W5P$B2pWJ]fŃ\[%? GaFПrYbJ$yC4H3‹sݝeT=P8M0,PzBo3Ot7ΤG'9D?{_BZ<VPQ׮|ΨtUK{,?,gsBF"2*>tN?Z@l#1FEOCF1#0ڣ vCz%$K}Eci+EV \%YA; Y" FVn/mߦRQs<>ë,H"&Upb`$Coo}4٤> @Enj^XE:D%]ѧH^ڣ6~[B@P HWv RO2xXp2|n׀-;c,:[<%{BotliK Awl(G2gzpตVb0v;e|z h?-3 2SMOr{ sP˿7z~ɡ|W4;>ݒ7AH,Vl70SGzK M)HP pU_,+Җ&JU/_7)gT'ظzkSH6]1A%2⪝,Rfvq{ S3A%/e#~Rì՛Fiia뿻#!+);;7=KMe=O:w, d W]D$\t9]4'r s|Jdmtc-=q@)K:ٌbDXY ӗtɇjyl,ŽA|VƗو8E@^9|wjhr07>K{Ѳ72I P\ϒӚޔ<"wC<"1_FBiS E&(~==Ytx'ZI;Kgb}09?=߫QjXY*Q7~p56p|춴 |<~Zwpo h ",/)u' ԝ8iԵ mS0ݛQ2Zd\mZ!Սd@IE}SxͲ0"x? zn]!2G&%⡐\ApBX`()2m`X[K72Tٟ,W4^yq_g YX̣8}/o p=S^e^@ ji o^2@P S,{ǥExH#&<Ҫ~?}<#MH9vfVqL[ .eȆP4^2`u 1*u2W L7~P-f:]}7C"G=nv?`sd xe ZqJp1Uvao8P 2dL$j TmM73TzH=g6pdhs(%F_+ 'pvpٓߢO\TK 9V|1@GT_e!kܗ6 +Cp%-Snv9yw:C}~KE-&D ZH;eY)yu .ڗkA8/Xa*Z`odcaD:zvp9aQ2/ZT@͹yZ=5Q9dBC%Gm][ h0'Z,w˨Oؼ :W H tB _RmLazdvaݰIt[8[m0<(lw-u˱(C ^ϕXr/yCq2&"6& @3f0<I:bI\rḲbz,Uz!y4eIn&2j2ߊCci~}K7ƞD>oL)7#vOUo<bd=w e,V, Pqթ׏XJ[ $a^/8NT SXri4WpAj')lإ[Ʉ B;oOݣҬ .9,֫l)(ShۨNjvn\w %>C2-~{p׌11%3 o$͌HEe#S?TAR\W0kl+皊͕kdRJ-XbG>w+ NR gO7T g {4%):lS@2`Ua:e `&O%~97UhS~{Ou Lr_98>4+z0 aLvS{?Na41/_`룗\ubQ֝t|L^Mu2IC n{PkȌ`qV{XC*72$kœ{4rW^wCVIu%WɊ >Pw^v{iR9mƊ8+0z|3?+%^F{F2l,`C,+LWH`i%+GnV9O}D=4c+5*~l  [BrߔNn328h-RA3TBo!PX-Bz0;?{ Bed?GG֒3mw>3=9; :PEkfPTPΒEpxS1>]9ؖrA~DiJ LWTE2O`X7U2eiA<=<6mDvxwWZE#KpQޭ jH$)! Tp'DQBG!8CVNAu_:nH ƪ߭HrQjʻ~u|M1jZ6>-Ġ"EvB !f$ճ=L`N.%2 TŪG]"^9WF6;LewVy!_$e ŋ8qɴK8"#mz55 0]_|Ρb7Q!^jjدKOWtYR>_ NsBcjxnF=giPJY@tVcҰ[DžbYbEߥH6wl,^{C#"[-G=m 腏qB]]Z{m]w $B];u ָ^i X.j5&+Ҫ&Y Cu?=>IP3iTRx į4Y;Ҍ)JLsRGfa`PwRYBT*9BXWe)7N#Y[xvrcWt _tiᎈ!|.qi o`P Eo;C92%`z^iGhy'κ\6~ )Ca>1-CVcW;_k@II6&GLU#&% }ȧUN81w5}xQ>;mӵ 680]! zc;Oz@qx'8Gb@J@l]N;v79Iz5ӡ!;`ǑdwJp+|^>V]/먢%%̳ӗ7 Wbm|6n8ٝ.N| @+0j\!rJe9q] /&VUommVYSGq![ ūUGkZtEy͏R]*Im!+̧:< akcJ_vTobǓ{ W<^]bn h)T5ON 44WRqؼȦ)Grs[P\4U/^pIѽ*lf/PГfWY]O~n9Lj\Z/;~~U'^$W՞@5Gt\][L|c!rY\(_H mN;0'rjJ4~BK70*NX 늴g;v?incVʎU&Vy ctt*&?Qy|?maD} XW7O{u٢gj: {nE!ԍ=9A}ԻFc6/bc+wV ) .VVsȒtQ-fb8gNx@Ȼp7)ItݩͭL۾Ȅ[ kb O}U6/D+D(/$jBlJ^>n6) D`2RmM/,3~GI pLgMʞ>Xq(7CG#]^?}쯔t+thqzE$QJ>`r1|>6T M/-=1TrsHq\5Ag4V5~ٹ`'8'@З9!=T3JG4F*E=+jJ)qjEOVÔlp`5R34˔)(vaT+ Icj82d$oxѷ.ar𬕅R{om9` 7'2"/143m#&BF3j&a2Qxk#{GH.7\M;u2[BRLJ}8PDӡd7]7~jB^[k2}\JJ` +4#LaQfle]7eQDXRl}Ɛ#oB:S?K{r}dfԞiYteUb 5X?3+tƀ{J8GX5&ܐ645|S FCϔK/~Й*Նd=, ݐ9c PxUtWWCZ_r !#,sP;?h񀩿de2U.Cʱ=?s_^2ZA[޳L-%_:ge.ݿGU7DvЙ_uP.qhXh"7h^t> }RgHnqT?zM ^_*9k#l2 QY}`fhO< y+i_.wtBM82FbVx%(x/ЩmE,8?=vou2MnUZX2s_~ҍJR? : ]ie+4>>,H} Ҭ8{̹kէdW;Us.ߝSC]jc;(@L΀r `%<`*a *>^#ۉt$9Ȕ-)# <=KyFv0ib0ADq&%^zCʡyЕ2s~!7wL+-PC2:ӲWFae~,[  0tSGc @'ĵ?rX=yExP57D#K/sZ)eZ|( KPŶ`:~7\.R$+A@WY&i% `Z;2ߣ)VL{1.nzgK޶)+Z}cm>#vH8QwhCoƤ9T+9Y@Ho L0)衱|+ Vp>JqpW{tBiה9BiD0G_1D64Gn,G i PBvʆ@^j3s}#LzʥP}).2REwr몵7nuG0qKZG{zH6mF])+Q.=u{${=lY<1+8_, AMh\Oͺ;e 㴙'>wQcY yxw0cK1? +4c|1GNr7n7D^dʆ@+; Tid魽x|wgL uQ\U.a:\\z|0`eҘH_0 着(í*7`cQD\c_ܕ(՗ȖAA-jl,FF0&ZlmGyFPN6|qfOߩyΥD}dfd{jsQvGыbRyD܅X9F$l7Pm8!*s,Eͮ35?rf!}t[=I.yzt [ŲfߣQ^l9h!&?؛TΓ"9O! /Ѵ!oqT Ld#aA.Fݪ^<.c0 ~|&{PMG~%5ݯXs("ɸO*լAI̿r5n.2!⸍j`P= Aʋ &b> toj

    vIdl'КS0=E~%ڀ.V1A 6oloeh1L%c/Pʨ,}@;ht*wEtLVPLMP\) ug|[۱1] fEMpj/9;)''7+YW1_*}W}1s(k[;QeN-ms4b%gQ2}(ϕiְi[++$eR!v$d"cwɮŹ>Ê)!G S;CMBϻdҎ=~aP"^*#%M,ǥ}xpD(iBvJ8xL'.N -FzY`Cx2ŋ<ʳ"5&cZo)Ȟ1Z{%(o|%{~)K:,X~UUA'ȅ3Wg-{|'NWR3.* l)rbm=̮؀ ?\_T !;BƃP{ʀhQ8."斮¶9NijD*y77.?CltFb4ܤӳ(OTzMT}2dSߊ#nWp@"4\e!!5-X, }9uU 2qiN rH2r%I*f RiǬT`NЀLBkoYم@cXq^ $8~a4z/Yͧm>y.v /\&q q( jy֪FB-=%D4CA{VG0C)cmVU: WP?4-|ɔ j!wy((y3wUC؉ 3=?[du `F,;o?R>N+)-'طrU- .Ƥc tKcv|p'pB.SAGCJS>~Pr#;&s}tlvǝ^jIђt܏?dc#9c|bP Rѱvh y}M%uYCPtyΨO5jM٣<0J+ȏDߵhV`kSkT2.e43DH›R}k!ǏԺ0xU nuA-Gp_gs^dwa]_DI!E\QGcy {%L$78hrAݡS`{wc=:k;\=_/s2$eܸmm 0PpQV6Mm+5$G ^M)RޮT1U3ցwC /ωt3j*` EkIIysr,zp2ݙpvSRWROcCFgH@n*C8T#|-&x*Qjc]p˞ZWLTbl6 @LhLpVl"(uO08g{*.hW~d |q}7w:A١?⩽ EJDDqrf /t2O4n(Qw k#03qI I0PS䫟Yk;J"ԝa 5Z>]yչwalQD(b# 1~*DN.ʤ@깖%tՒQ"-2ujx&$Pj'YYs'=A =r Mw$D`Иz'oc~΂yqz!#4 E8՜6̏@E c }QnAa_q#yGٝ~mǓ#Xn^;2cib2&qCkQ֘F 4ɳ .+#'D?liCKHsiv) V4'A4'yF2?d`$ !۾N}C"K`"ۖ?by7r&"ڽJA>lEz8@تlRE DD; Ct󪦇; W;]|I;pl\}GȞ~t xݞNb^ƞNEo| MPsMbH"f,W_q%C>\L~An`kETbDZ;lS_a`f|.#92Z|LOG5e 6$0|&5d|!'TebMI~7Ҕ *+(w6 |t|-)X, q)^ E-BBQ6VPkLflWDIFݸ RO ,  f2l?$-⸍NDz;ǃr5T6}troJ٣_SJX:[@gyXkzP6Μ]6: ٤>v)-GQ'ΗQ&BXZҼ ' =ayrQr4" ]3im~xR5p8PX8Ͼm1sC"{5b ZџMAB:]T̉ܜ/},0ѡy2yNhiMjNJ ~]S8^ƒw4bufz d{>zE `lY~9W %NsNj1?{v %cɽ .̞"le2K|i!v"&5$!Zzi1JIy8Ylޏ ZKWDtuDytTBš۱m/ںE[lIͼ#w]^C0'NCY~=A9=WbMoFoj͹,GDc#'E@-JcO!PsR%щGR`a6Db\ }މpځplڸ9l9ZbK>P_}HgE5o4$o,gMi-uLMoـ2Ѽ ^Z3CX8cNrW5+h}5$'D:/G ~mÔ'pKzH䜕ˆ㥔X*_QG[epq2&/0|31B'˄"SjX{rz &.G+8W(ϵn[&szCpd18TԺsh\RXgޛ.NFR7 2\V'Ώwp\-0#}k5M#;A9J@UDq<@ W zC׭$SbNHR(~׻7DvP˦u O+N.oN3MD& sVUxِ&xtR3&#u@" ֵ͒Q7)}xS}XcRw 1e$\]OweL#9EDy` BԼ~YNHi)R%P_+&IJJ]g\c[\S.˓9zC>vtM{w=ZI98ڏߗP\-4z)}HTYIBKZ8FvS&ؔ2 ='/:}CŒܰe[^~.tnKhe6-` p4pۦ4xtv8n?~@ LhYvnUcX̟I:pe42l,C.һBbzzOfRTծ  R#2U_j_}%RLTqEfpsnmJ 8Cjj ""C3jxWmMR+@25m|ĊVmJ櫐+ 12fLe)'3z-}qSh@"+Ns p+Q3=@eukO5x$Wl _,ģ9|:MCL1~ ~4hkHEeM>smQxƢ:_ 1$,|&7!b5bzƝIDR܂- 'Ѥ+8pDD XSZ_HQNE6^vgA[O56' c "J4!iw4&Z2켙3+ˬɞʵY{k/^'& =u7/xݚɁmz*Q!'tPs%Ň% &.RߥD.z=47YԶgRrTU5s?稯D MMzfat`\@nI NrU*)EUc/ka5t[-ؗ%=K[0RBVЇG9O+Hrl[7j)x"'nfq}m3?]v:s'ٹhkU3 rɑ,i.^;'˓DuH/)qrɭW)};q0*-ꀞ3S9b<*9TEhW[0.^Le9C M\mT. &qrnNDj;=CO(ci1zGC,|K 0R1h{]AOhZuE$^"*K_(E0PXQj/UHV&:0nhWp@N&[n٣!s=uWR=[XzE,0`u l*\-H!jNWH7jƶ.Z2{(Y0)6GU_4~S>IB׫#6S1@(~(h`:=Ո18-{8"'qJS#9tLz I] IԮA6̵(N{Y_E[Zc`8Xю. 崂8Mz%`\.VH_4M hм|v!niL7UVvcv̻oIg(P _6,=R_FO#\z)|U*?~Wga^; 59o[RVMr1pKXh9;7{>/(+R} =2Grb[8tw[`J j9sXSve!m YgC(ȚB!䙳2*_=̍Θk=܇~ʉsL{AXC!(^ 56Q2%+D+W6 h&EIK1\sPnQja.3c7Gt5jSGDoK[!{cp#eqE.JrSzqkgN.͐X6byؿv,6ˤiD W*wBrtV0=K]rQ d eH+FzyO/F*&0Yf}46wqJp#1OQ6ƂxGqwRA6" *Eu nD/^ǃ(<U[N5=ȣ肀;>f4ߗ@qiTDO4d g#o#! X #*(|#RW1|୲eq4KYf+EQ" ͼ{"8Aha4>ݰ<&W܂ _.]T&o6L/{l;.Tlu},|K=nU\A ::j]0W閪B"G<<7*D`FYNA.xx2ə.|tmH 24?tkp 22Φ~Uጨ2KFWsYJ|cͨ#A#B-%cTYEЌfFB?{"}5#GEysq2s}=Ewu]%`uyLT"/a s/'}INuP .t :]1sHCbw~ 9;C&MF W܊qXNn 8W}Y7vLG՞@ސ#+s ;8W *Ly*G;Uoz#$^?OK(sQ{g=<:!ttm# ,hHǯ9:8G+ʵ.0rpI#b&/`&wOO#ޏFQ%aS?[<{ Wlm+A*lQJx;_˒>Ew'; <0U.h6jd*eP-3++l-t0 *3/Lh9wI-Ì  tiMm-owCp^hb($>LvKe]N鍺Q,jN24 ُR4~85aa*;(2*^ -bl Yt9wsɫ`5Ch"v/wb_#i%>C`y)t;{Q{Zׁsg׮?x5ݴ/vFq gJ7#1?O͓V^\xՐL2<-P!vG(Q@ݍ- 2)ֳYK/L<;sG45/L5eL.#ju[gA"{g1\cXWiv#A>ɀmptG:]}rRbslг0~fDʟ;74Ɗ\ {q #hVcD |Ш$ fR1&Fif8Qv2rd1PAN6rX1V|Fbs5TN,CV yj,gFiǎ8 hh!5 {7"TՋj-w %c.5aUˆ|T#V\AS~ %swR6S5ܝj)(`UCb.bep:j{ZF^Fi;y3`ît5Gm-d r^:Tytu>"dlrp95mx(+4w"f*gntcx,%nּG܌"g1-cu#3lWɔԕ 5՟8D7mm[o]ތ f,ݐB~e| 69%sJ:v;h` M%0@5[ un(trJ9 uw0SBa!O+(k$VF+5/h R9hÇ4 %жˁG?;eɞ:imM9@U+:D( -]r,ӕ;&]AOp/e nK=CsU>%i_҈?.?.R :д(^0%Oی/^F@swTG&'#hl j!)th+"|MOPVRR|^I3܉n93ךFBqW g`l|HmaZ;Gd 8zDL^"8.q d Dž}'Pjܔ {lFSStw}@LD(`dM1(C׳o7^諯QAHU`_ 4I@jٯRʡ6qrR`ko( &61[!eMe'!dẕDu̅㒉o%#I,5nUິNoj7j\b7FZ}L.Ch>ΕpF&.~۫{l%)[ZbHB M"4k~A{~F/t|ջGm~#r\^3пY foH\ɮjۿlaʦ}G:{I֑}li5 sz#حq6h{"@oDM#bاq,HY[R'DGh^@H($|dacHE;>X1\!lm6O2_jC[xCo H@Kjgq'`Men; #Xh<R=!)X;qÚ rZ8hS)o ʼnE1W^煇^]ްXQ fwEȏ4Ocny];r -ˢwgfGa'\HZj j=C./ј(2_c]Fu#kxe]SeMlW Y;G@[WMi^ٜ"U\Ðбsa *-]T9CVt9S}Nɘ%=YN*_> G~l imU:Ct e!CץOb /2cfp2sϪ+S`b,RitM UJ'Ϧ?@$]S6/#(Lj MluJf/t!:`$8K)V[|' ^ۄOU5K@NE~"^g6Gk,HG|Tnq8$ZE践Ӊ[]>j&f W6F*,2;Y"Fm&}Q%\a)N-DŽS3R [rƅ+mK Аwtqr ~ZcCflx3q2K967GnM-\\/m 3,l 7mVRn}B:֫1Z].oQ |v5Bf8VX pY=i^h8?p?8c=/tBh58qy4 :]  g0Ap~kA8QM#2ykcd"y 悘]XO3J|G0CSi{={n/01 =JSiџ[vRPO 059?$?>N:ХP,k(HW E &MxC3?_'`̹3W[HGᑉaajfn:!Aےj޴c'583cOe>9؆r-y{(}D%J?hK(%3gLb.^3-LGajwqgO 0+1'#9,rX6yT T}&EM*f겕!օG95}5N9fkd[@^)hVdjSSC8< w2lsN.K1w8i )k7I3zޝ*^'d |rvARsY DOٶ3M0tv7\rO,n`=a*-W>Tf㼐Fo7'%K1( 3>[z39م귥}~LdVܳo4?23ԗ^: ?Ej};} cFv^\s+{yQȺ R,qiw8#9ޛ'*[h|nSLL m= 46uˠR'I`ĕ)@yBÜT`꼭}u*g{[O v5STkmjjD_KXmx?1l>}.雬^O wn/ Bؖ潼|,d("j_16C6nr@5{ѡSBtDq9+EܰHKBNA 0eW3/4"q8}(]EVĕZ#|/QLlzD6ׁO)9O֪ɗb/WX)=0?z&zx_BfX;A}c-y>\WYm$1 Y-jڽ%{?\!9F HH%i & \!c+L?&s4fp߂e/d_WK<@݃dM܇^K(*Q[Aܭ溗EpHGP^A"nP>*Y孅 7>׌1C&!ޞ3aK7jf!bu@]mt2d+E4Hk%j5gI艒 eg }QVBEFJ͖l1 -jS+s. $JrXq /Tu+2mAID <1h60jܛr/~yo0H3+C1$/ބQ@oS=4z*_A i$h#NC9k3bK(;s XEnέ!C"?uybkYп@U:iA{2\RϷ2ҝxAdSͣ%aL\D+ `d6\*%6GjFo[_͊;'s0Bb#Q)a߭Gx).>ٝ{,s#ĕ Z"$<5)ւM>`6qC{%t MAۜ_H䗿ОO :4+E.~yBH%f+q3һ F ߜ(+`0/+Ԛh!tyY W4B>T6m BvN5npћSp˙M: !Ҽs`uge"f4% ǩ 1M8CK(HtLm.:fA!D'(dvh-FZsuL9 F,jGKKz>Z[S\OrSع{2ZNlJJZ&=ܥSwA3.y̺&f~Fi@eSV*H&2}eg_Cj$rؽ"1FA4 Ffzs,ڇg}F|61tü!Hf8Ǽ%rV܋$ߌt{ob3*ʊk#^O`8W/]9jFs,s@>S(J]ehxR} \{ pZW,yS*ق0('˪X'OF*9"܂"H]-Ah;|.ƦL<#4!D"N&xq='r$C0@ld hƘ=g8`daXpP<]:rD*vѽ_֑[ڼe ɌxFcu,498!]k8Lu:\SM,TwĴ0*HG<6,絒PtL2峻-0Ek VMFu9ï[E12UCGc#<ٓƳͳlq 2nlcL6igc dJXuuAz5ajwQr\[Gk&P'yʕWoTUIC BJB?ljN8ov ocB46U+%,e DKw[yl.Y^_G &nB$1H=uh$tf Y{׫c=a,?(#l80ۚ4-RNakۗ-%1ٌxDiNa"51z#Q$fc\aɜiWs]+W7C@KKu؉g˙spda7rʢDФ;/kW@9PX︿~G-Z}ē@rhvxԚ1<^UtRكo diЂ^ fH'E10Zm0݇Ύ|!MRdK]\l ]0j ~&mXկ![o2bsOgNYiC-$<`ɲ >DbC+fYG`/QS'㕋xaP(` =.m~Lws=Kxdwv@D<PNq0t8RlZ炖 9W3-5qL z+Z|­i]ש!'"1JvITp!8K )ŕ[BDkJ%mD!kyEY|E2u оPEWw`"E8jOR9F<ĢQ̄LT m1<&|}kWXcek%d!S^t+T,xZ~bKiF,2i@6iߤ$=Щ 2DbGtILlxC_`)3Pvn߂dorh5MIE&#lVhMClhkÑO(/lEY[1#} vn "- mjW]0 U<&nͅ9VZf B9 Wgȧ7Qu@KZK2]eol)bi\?vY( 57DϲӰ9~DU8 aQC'M3zF>~,Ji5s>RȮR;q֛:*oy.-47ѸY]48齌qrBШa\Μ|PTx!,NWudeZ_kF?ɧVsxn/-'cjC&x"$Dێ-R*kksQ%юVޜ"L ػ#սў#_ȴ@մMQF 2F X_6|7rc6m5϶y/]A:ef1BdoX(x~zү$i*dswۉH##CLfǺ0z Ky3WNߊXsjDJ?┩o3(jG|U_VUN**'ءPSFl6fe&ve?RgvWkI9ʼ#B(4ZXݑING}c<~fj?hFmWۆ^gS6w6yǭzuۯ2.VT4f#t^"hKz`ɀR;;K3`w6!_ġie+ lP r+':Ng?YՐZ5ĽhDm PH&F>[E Y ǵ6-b2& :oi6:}b9sYHUڬjܗi9S )"` [#]OIZ`W*UnTL~Ύ$e{J>;Ⱥ5c{GMQd_ݹF[,B 7/dH6M!ǎp^|{E:'??$|;x}o%Ff !5on[e},a%$ ]ᗧ 1^M`C3[B 쬐Cu8v\7w^Z~Tcw"K Q0e/>fD;KyBELr! (͊/G'ʗ%X Cux>*ts')Q îbZH=S9X<1_r4c==>;?ML 6pIEry ƁN m0mAosvbT]OmBӅ;;rѢhds1L{e' t9n.](z%ffe7똹@pΩJJBF9XOP[S2@REFsD=*'\|7z2D pThX*e`?7sydvXKq'$%ʒ׉:`2Ne*zGd5YYH.:2j^9܏/WHg`ajubW/j#ob:HΫT<3fҩid E$ѣ7Ԑp:p)iZϾ[ig,˩1+NNxJcK֚G,yޚOgR-F:{UXEr&óC=CTi_hPYH> x9 &-dCK=)hH`qpSkaE5j1W_Aۆb0 \ID|P`~+]3KQNls˗=ØGZ}~k0mYxjBG0R_&`x$7TXR6FbaLg _Àu8gT o> 0ɫ*@T8Vk ]Ao.QI}azJQ(IRqdEثN=G=o^j -o©ƮX Z.Dh1 /%&>\rdJZ㎛FE;G "mˆ*; / OU*%!PA:ߋ]' " k KZ}só7}^<̶l9H%Zʝr\Bt;Z>Ϛ>"3.l\VR&~dwir+mV} ^ } \6ͫ? ;Fnay'X6Xv#i9-HNPH* S"6c؎֧MH?+}V ڈǠVHg'Qуzap5vv'-khYBszО_c.m6qXr~WZR"4+5[8P_҄1;h@ajСIܢx &*Ph`a!*l`2UaC6\JUk{PHqLBPgdAk! Ω3UzPOVٳE@@)pwXoC9P`rJ"Lmo*'Peռ6#* ?d jjat{!&39|s$ 27Y#OY<: D2g" ?q. =צMU6!'L1,+W3Js9d}Yd/ 6,r-}N ,?me]Ac[aQaڹ݋* ig̔=N-ngI@ؖ%ߑ֠lc'yGZz{`YX)w9Xk<+>=܏q'LQ{M1#k8JR)W"(zw$W&\XTAuqa&axF9b@t8^&yi:i7S_FjRA_v dr #uff[v?l Td.OQV Dme39),{/q%Oٖ ő@T_ x &z'7$ʨPۜdW2LWm ! K䐌;! j/([ToTBJ(⴮-%U"};曭dU2ȕW~ne푒~>U S>- 7u`Բk}2Y"C'x^.Uȼ8TѶyS$@Uhg^+y_# fhhy hIQA1T`C: h?FOo"WZG+ykMNCTķֆ#cl2 ~I;!P@}E@Vm3F~8?瞕` HV)%5˜ & ?bǪJ5O*<Jԗ 1ēKNKT.JYAD8@fH?ROҴRbp56sIaeM_"t(]mq4b> aA-AVC0cq3}1Jk$qk<5)@Bep MRWw:U V S-kHEF߀rk IQB90IvQx`VFQ7*.LH '(*C D r`R-g (þ=i:BL&vK=\" hWJK5jxy}hNC<4Z2[zFT8E\)Uf!l\mppDrt F垌cc J6 ibzN.A-$-vwGvXژ\#>kO < G&?jz,*>i~>]$0ֽ|y,8/QEy^Q ]۝fsm6*#h-!=#mO3 ӱ[T6ajU/T9[9ȍxKq;nScY!wB4/FRAV^[T߂\bpg̡Kqt U7I .{k xcGiIrTxg x?<ԟLjIWMlS{2ր!W?eX VBZ1ub3 H j$aKG&u AwP0G4@N6yfL^8\yTN65mZ͍CXF-.;nS^`8vئVRKGvy{ql~>$o0H `|\Jp5qucDSNk:1'eU̇dFDKj$t@j3-B"}pHRdWbҭVeH6`_iF/cE⛋?CPwQ5}\UN̝y -fMp۫Vb],ݾDTk %?8R%ɟ%'(:EbJE]nado jSH~[plJ!: cV LǁߖK0lrXi QԶ$pozXu 9[u}+qwGS/ U7!-C)> Wz/Dͅ@q'mYgMeȹ\пceS_M2?褱oQʋ 7cA9v1m^)twĭx<V )4 BQPsmW9 |S gwih֒b*ᅵ%+>@T `n4r zOB1Ap(\Z9_`&D!=T>#1keYiE6Ota}\|U(Gρ/ *Ŭ+)|woGʽuYvVhΐ/{ 3. Ϡ8Ban)v6fĸ80\Yj'K $s*q eHgM*6%&Jіu: qCKV* jF{udI{\*7m2>xƐSZK3@u>:#…Ni{Ua~x1^jZyA΂@EZAedq }D`DkW9bu1võ0kDHܪG[I/Uؿd *d.:UW:r8\ }̭RyGFe3NkNχX"$ZyH!.wD*3(=|Rh=X7V I?^t%NN TjoUW9"@||rb]!J~' ۚm ,Z=*nB6&ɜc^A?39,K-S,mTF?ԗMSsVmA2/3qoa"}܏c=0XMN5++ ]) X>s5JA|[v9]ҩ8{yL^37O|]A㲥-JUoBW2[k:D34b+'$AY#>~n:󩈼!9|lx\'mWVϙjFD`|AOqآtܱHS8Il.e #`R%F$45k74Mb.εR+uJX6ץd\b ~c-c5o\G.> ça!2FV":Y awp$Ea|~S'dk%b^O`?抠<|N}2xrUGWѶRJ2WILH#8,QLn.4 sqyG~ګq`eL,gK^/gGM2@Zy4}pטlPmKln_#TMF,sKKk\>3D]IJxL{r/> D%bOcK8-bg0#3a=W]mfEmgaI\p9D(@88" Wɝd]0Fǩ*㍠bV0Tly?^mD1ȊI{c%%w¯;3-1@7BhShZ̥=hN[u˵:ip 0!e&3 WG]I$m}eT'3V0MTȂMfEzbr*k @EhkxT!^v&̅n7XNGP-(GAgR]ϔَFc՗>Z0ӗrQJ9U['suΦOX~\E.ZP0;${rVXw‹Yws\Cٙ`SE9> VHE(Itr6-uԗ._ :mnH?Q"ṷR ,EM̲-.=~@G lmKg5 6/(ݞZ#m0-[n+<~JǚU @XkEqlz1nUqr4R#1_o[Q?xwܨƀ#B2RI6F}t^sTw <o.`^WAQd151Gi w_5{.:ue`mu 8FˁbI@r MCʚJ7 SJi"Ī8'$'g^^$4ݪׯVԙ7HشjLZYn$Rf>S ,,ĴW)! _v3} /5t'rYRl@e)?rq Ƈ$[J!<ϒzҹ S.|! WÐ/UU$ނ(M'`Qrʈ\qkZoi &;.2UOTnކSXx5'n޹'Dc4xeK. s?>#`6$mLW\[,hZbULDy*\:fWb똁_"ڒ-b,Az=$ xwT`!>>0m/b94ۗi-)4^ս r˓+rrB _BMt ;,k]p\9p>Ƶ?QgA쐾v21}HJo^ )d`b01ߵJ)lʙ/-pceOQ*<ս2pІ4䳣2b YpgCgܾk0g{V'n^Ogń-2k3O"yqp/y.X6v_ŵ뀆?(!E*_E#ϸdE'Ě?`sτsפK8 ]un\_X k<9Vcn L|y5.x@Mu ?q@d 岽y|3}HZ>ZmSe ׁ΍5jPCy//m1?Xb+SA%]Us2DŊ:"i`yK5x=#\֤*JD*/ 1|--L8)Z 8 {+oO>V\wpR'aÃ|bE|l7f? %RCk%([1J1tY1k>7Y>}WӢEI'/VkY@$u 8_aa$؆K!fK9- DMίwH9`rtugY. r%+4"lŀ[A0`JM{br$HRV-=F5g1)-iN E#j=MiHr~RG>XHwo ُv8vn#JYYNzNg%"@+l^6dL ?п|wl_Td_>q=~ "h?f>x֢\HԳѦ3.t12Ž ڱȺWh*(:ZƁ0U7 VidCDlKcfR,/OA21!'oX~tm{(~r"HjfOzo̊VF/|3\D|u#i9뿌VͥK5@ԭלB[y%vJ&#jx1@uݽ(X g%YmJTe%:Iൖ0u;r?6Yc8?PkgMuQ86T`[(x5x,]bT$jN ڝV_giAWVTvjh5N9 _4D CHP:\#`;=t˲g_40ʘӝ`]0S慒c$j< dɥu,Ƌ=3mʯFsgv`0 *6cJ1(ɈW/W^T*_xy ]n$ 4J.9;ד6x2ksJ3K~2}] fǿ~L;w?4G%W'7S㲬 n9ۙ,IL 4Hg62et.bMV)S)o5!-Z.UrF8CVG2Q.fBˏ_x4=:j`$3N%ȗCC(~"b4X"e|/cax mIG-Vt@m001-FʘΡڕY~؃܎n@ B֨G5d*8rcDض:jY}S}0n C$y٘o3=&#ha@`Cy ׻i .J1D!"_#F:`@Jq=)le8wF/\̕}xdk}&r&fsK]y)0mՇS{9usቴf_SH d~H","y|_&B'bZoE רm$_6A)VGNX"Vm6ztP 0x§tD%oPմTm:{zr;݉Mv!' A?=b@> ]tOGTmё.$+R44i 0 O:Ș$釥ӿTZ* +tU^Fx%UdP_MwݿDɏwC&[fM@aʭ Lib|\k acqchP"E䯡 zhx%(/֞lܮ%[Hy+hip_D4w`muډqmN]oPԘˠN 0 (ϩJm?30Ι4/8w T; S18ddezkZ!I收+hUd AZXj jTm#d,#akk*xZ<n:FF.1"I $WQj 0 /T$⺈?G#.C\0whd%-78g+Vx9=jgR?*rm󨲍3&{}ph a5MS%5*fP;o~J, )nҨ8s &LZhD9=` ʞNYX:z)dfGB|ٝ\x1_1݅(E,B*_$w2(tSl#TzVe3 0N_QLH @n]qys%q]UFI[ㅤ^q+8*]%4|0ؘO |jfo|mJ#ukRg;k]LB~D9eҐdLjΕR5VIZEQ+< /Kq^q~:KyK} vPAz 6O$Q__@ZR GfAWk*` /Hu@ӾiPeS@\a{:‚l$mg;b#]*<Sj*M"9 % xk/뭗'Q5<3\ IGvf!5 x0,;ʰ꿈1l]^-hJS q6j_l0 enҌeB~P~E ,/zԚ3v< q$8ÒޝJex79UD[tSNzTsu铳94+M7Hdmo#q,lp0u1Lo}'ik2[ AjdW7A\ȏdd򜖬> O2慩2}gTDRQ*T.^V |mM#as&\EʏCKq;nZ=!#XWqBeC^rahKe?ʕYCT'BG2pflLzZPaU&rA>rrmN [ mU89XqgWF-Wǫo׫)5fya)XW֑h-2MhexhL]$^ReOۺ7G "jg](&n .]R_޷>pE'gRr[Xg^VͤD)A[)_YiQ5>9$Ȁ[_U;-bHze.Obm\U$.o>]lm5d`bE:QP/)#"d3PBJG s,$L("$gԂz[ZAތ.dGnE-5?sTO-*)¬gBuVx9N[lvCw[$HRkI zfⲋ݂oͳXݰGi,$-"AFXBg/b1b"1H̱@.WBܭ߃8J5//v3:i#[UفrNHJˆ9FTtv*V'TahCE}._AWN97^▖2I嗞__P[p}-M%&5bk:4:XHaE,yk7Û{)xC=z,C"P?lC) ~zS7L-O04,#ʟXv_Le2HrǶ֑R98gK(֍Ojb>c) tݺ8 hp2ZMFA0!:]l Ulٯ!kZh([9w/Ȳ}=Bn @hW_+U.MUxSYP{m0*\~ 524{LKsl)O6v mA,M:]Ʒ󺭚!@,l\ړx 3QZwVLi%y{2ɝ]gKו=ND}>cBH8< Si3$.KA{^DipR׈ f<,r{Y2vnk`nEە".#4v*ԗZL !8F"6lj*ƙ}K0T*3FR~02X&4o-VbIj$.!kwRV5࢞Fb{HI6t5iC(cVaJ*s3t|:4Cbw[u &euU5M'Ԇ \4G]+ m lҾ舉+X^'h{{5Dd$*ҍm1d'by{L7ܝ MDCuڹЋ/i;-h c D/.VpҊK8먰3o;ñXBgj?V~C.e|lLX=PPidspcfEԎv1H~Wp,4CۦpZTu3. QJ(p4؋{91>hv\盯GRteGB]Lf/)Vks3Mb:ChѣeY&w$۫pLPRGŹa=Ċc.{-:lIS.]Uq9,&*`iZ\[U'5xuPr$GsAlJou/ fl% PZvVʶ.J.uƌv:aP; FD/$i,4l#{B}]05@'ui՚psGؤ6ԋ-6:h?Ƀr;f-/x%VZb&?pR!esb->TJ`Y~"'"2Ҹ=w|Y"*$[[bG1y ΣbIV׀#ULMFtF0|]WA.cFJC}7PqtWr:qgm( k)i〫B@IƣzI{~\IV&:ux߷CcsZp*:!%{&T֨n)ҕThXmQ{6+IX 쩛 %1 |"nb0OUp10E2#s+rlx2<¼&i' d{O4GofޝIsÿܣmwtSJ5T6h>In!l/9[l3:P Ze}CJ!HExp-el/V#LMPT k&?b,̟U-r JV6q✥2{ w94{< %9Sz26N|-ᱻ3IDl DL,Y]leUwE\46O7x4P&+*@*G9^Psy+d3\6TSp{@rMV~gCr `<+AS&w*!6 fȝ epPK,в^g"Qyi{dߌ?Ux_" *$9A4e΃ɦ?<&/SOpI33ZTtP #ܑpOʈa<3,zS=;qZW)M'[ ҀŽՙp/zMϤ8#0 XR ZA+V~vxwàUh!xk(3ؖ=~pt92cpiL#uGZ:Bת`fIK m\~mc*RBN[hV^r&/|7 d5 InMe]9_m\=Gi/tBdo|ޏAy r|¥8\;q'&(̱zX:MH;X˜ܩ#K+K̵*''$LƣW|߉ILLMdwM+'nL%ٶ ~ccaEE%Rzտ\7R/m>*:r†tŸ;͡Lp*8Fʇg36TfEj̏1/MGQ/q;iHFI;\>4#Iw ܰC[XAE=͆0j jAx-¤M*4(N!:e)qOb& R {XE$ OS?UqZ\A?ߓBIu& ëD>bG|~~Db6:"gx1͖Jr4M.J->ʆ9v|tTD7]c*ظzIYk.Du77ܾnEUN lu@v\Y @%ʅ0=a I'6-c3TXiQ߹Y>eGBS sney7E e!yHj $f ^-0ͦSLHՄ)FZ23/v\ҕ=[|۩. c>GlmqbFFUuE+<_@5:2_:~F5Co2)?{Lww|8{ ޖ`nD;U~{HU:iC ?0~Ձw% 7TCOw6Cozc>`vd.58ލ3GIu ,tkFl3){ؘ'e $:|@PM$9 oc)y[Y-*mS݄{@,(M1/|מ?#-=2og!vK >ĘiBaORYevf0/}_byҋ;ؓ=LP FT" m4ws/Iݖ[c 8*H[BI}=f>@Kq ENjI[I#?Mؾ]Ճ^t7mnJPeh1MVh;KL^v諣'ؓ,.a*Y=DlJ+ylq K+V-/CLGAd<4C TOpHb~_ כJj0:;0]8K%qY+i^NܿNCK7>!tQ)7hk qgJ9&tRd]?A #HWJVTC|.T:=X+DHUNB!wHDK"g4va3OˇqrqO| Ş??~"Óx'yb1=£JU̓K53%+™[#WwjW"搂HJe|<+$2h5cv$IQUi{d_٩U"thoF3x4 ncz\MI9^>JwN58=(0Rr%YD}X \ [ @YJ+#QP4}C5By{}z;g9BR˯'C9mQ=`a"2;#cs."٭RUduX Nr+Km: >ZG)A&4#@o4|'y5ia7ElnH%Cgj}eN#T}gy&kl!-e{q&- ۍ)[MKP>F5P{-i3 @XG-5`ž#BET=X B!b̺_o 㿃w=_n)q\P&,ި8n6w5"a]0(@S(x(@ PXkA-Z1$C+ނs'\|WʠR(XV{S!ӅǾZR֟ZApbN6f`eRL(w ՄplT6,&sW=+"ZB*XQ) #3`s fYM`yӊMf"SgupbNHLmS yMبSE%\n^^"G^kr}5T]AlfU5@4Lk潂D{U\>VHgY9ڢM B[ J3Pe&3KHY"2zšg~VL9nN,h7a ) Yf SV n/jAq#A*J^ꈔEAQ@[\bd hdZӽ6ocQ Od\\/1‘MKlhһq{gQP^} j4;"ʾ @HV鼟 Y"1 @^SJV`"WB9GBR튜5=Ya'8SVY@^"v˘G'=C][=5sT&s8hТZ% Pko9%Z<_'IABgXA,-p 3{:m?fd;0i{0) V_zau9Z*pH`"}]aZ~ v䚨*^r`O.EpRhԬoI'i⃔malqzif$ lZS_>AMP> \n9AQ֟nAN:881p3N([m<0RO%[5(%0[an=vH:sۉWmg5]^?9JCĴ+̮f9;Tx$G_6>HCR0<&/A†1^ߨ_H*=ns6B,e0@3㭐z&О o3~23e:lfW͡E(~T.x+2+Хa%HRG ^89jDC Y1 Qs+ʨz-&BX򖠄YO_otrA~aA!'n^%kY?3?x' YIKCP-=A^M'T%`738{:ͮf(~&_A:0b!|PD)2XPy#J/*N"@sOB#pt(_eN:ō;#jq-ckl'W.~gdqMsL]3Sq!κR\"x0BvSV.-) Mf>E>>D  0y/huؿJ ZXj(ٯηZWhɊQ_ ıOuSTLѸM'P=; r&D`9'faZ/Ya#,Ӫ:tA) +*%e?KӰX:e9@$P6yxTʓ5@z/N# oLT`m,rXZb谞u%۪ S&9U֛+)sUv3qJzy5[J㯘i]QRv/ʶ 39u;J55!Q}o*MnDr+ʦOkt5߀g:b2S){\+ROroKu8"cseoan3:9:#saz- "}ep: k7^{{p}YjV)o!@x^Xp!V a kDd=SjNfq~KLgM"^<OQ9a`j"?SIJݑGAIdқ'fKR{ρbxEyQt:[wz_ɟϓ[:g7U9$?jޏb6uG8~rjx i@u fHB@i(іڵ!bBV3TɝkC/I{ n8_:=T־ ]/pA JQzMY%7G <6,rO=$x0x014TA NwML蓅uJMz6QKm."]28Ցl}!0ZZܐ53yėa-XaXbkz ~F%;XtPTk22$.@dȽc:gg#$f[Pd}$V#9ω/!~Y'/|zurqNl{8ytnO7UL{&Zk[7λb 鶩r-ZXy,#H$\nЪymݺv08olL !]dޖ˜%FV—-">{nxsD+՟L (},dCXȬ<ʮGQO]!@hLtey3BAV" g^XT4U7ElC1`Ȅ ѵᄕ}MZ1fy)pa\ӌpZa%$͕hF|*ԣ(., 'Ӷ+3 Q3D6ckE(?Zd?p'mDT f+ylQNuyLBw Dt׀ J'K`x.kD_HxLWVb& Sku((x {T ץlxcqAU\.RZ'UجL?Wp 6@K Q/@2vwvҽۉDy}"Gu9?bOS@m QmusoJ'a2] ukܾ ]LAFaDm& nM,nu%7 ~A{ ơ 3֤;>]#Q/O Im٦:)]cMRΪ>%+Kzx .ZDzh?plT咥>&I"bhKp]A9$ 77ӟ)oR^ۿ_/ŻwwR-ֲ4Ǻ!9Ž~0{'JqG4i9mN3dLm4r%Uk_%WQYJ$<]$VmޜMVku8K]ʌW.ppO-w h(EtF(^xshbrɦK^"sprjee-yS (ap P?CmSܢ=3 E1|6aL€jֲn`v1b.њB{.\BlƔSn&Nlm\>Ɍ5Ǐ Sv\lSȁ0܂D ųe°{?b 0oOsSK2a{XjR#@>a>6q°q.@VV6KqP~E 62g;5gwdDd7g?&NUFRt:;pz1U-(<[R= TSGZ;\[`߈sRj><v/-PBX OÈ-ref6֯ʅn"Hf?=Ijlj>Oó ۉx~7f縆sR逮]NtLZJ'ݙAF[N9{ M /A]Ջp_P>U yf]&yH;ϦwHn@oZQ`EYD:X>e"wjq+! ,ތ!}'kv_G@[J?4c7ٙ" Ln9I6,'r'4wo z &]p&_b4,Ec_J2IQRd1 pCH7 ;^ZlNpl8/wv׹]&sm&8zG+ܻȱ M|3r'R{M6}:<7\_D4a&i뉏;gw(hHQFcD]󺍮ƗSJRIM)cmLj9F&!5l8) %JCU <'q|FQqq@騎ؙt_uLY{MCWj fshqbQ5ɁK9^R2߆P=bdJuEl*GE1!E0+ZV|aI[D/zv{weXOƒCN|8uc\闵 i;ڱƧmΐbi ^՗i(z3ZCԬ< 77<6UςItP*hMxA۰u:^Y7:M)HI cZz8G8J}/PYsȈ1u#݈F4iTUlӀ9Ϸh۟C'{WD<ȃ\<" =ŅКDa-ͷP&y Ẳ3"4,S1}p ^b;d ;Oy^g<2v\MpFjvUC,UI΍72R\1MAz8Ȗ ؈ͥ\=)}k>.(XŤHGBϠ7Z4VV;V{zdEDv,|h5j۫VhPQѫI54cAaNMAu%jxP2@Ʒn_ WI!Rף`mPyyrӵ(XY#;sdpܶ-S-`bۛV J \H RljGtƊ2|qhYF~;4~qB'<QjB B}hGTnj^x%VUf8RpW8%K*BHf?ǰ[Ʒ t0Kveࠤ"U,}Erдo|v#%0jQFetw9K7P9-[<}>WG&rXcjJXL)ϯM1SKqUjU֞0GKB \o62)10dy 5s#q7̏~cJ#Ut:w0}CM r~VGq4ecyYVEe?Wcd*K\b$ʛG>+h"F1~To^fCD_#oފöH"u= )ќT3'uD(4F`t,тvN1&FE_/ & )(a{lŤgJv[YxǷ ^"ZgɄ(#y5#+aj.Z~Ru|Jf\"i/؄,Q|KGhEZe+MQ6AhleG [@"uw}aZ9`W=/ ҦK0U]{GoG.23e/YwfkJY;˖̕c 9]-!_vU"_)h0Nt,Dv,2%*b(Y2ik%2\=iʅi~耵Fh7b.]T/Jt˚{< eڽv xe0P=ڪG걐?U8w?Lm* "+jGc[$M߸%I}R7WG g?~:qͭg.ⅦMՅRRm* )fPH-/.i|H/0)7'~ d- 8 o7WLoc;fA`S0]kϡ(Pyp'ރ(*NH_PsƵAF/'@#Std~YfDa@3:EFfJySLaƽL<.OD~Rc-r$G N!q'B4BSM6.4>KNbϩ5q5$صbC8\I%.|8~`deO=?d$%3a><`D& v2И6\EܖaoZԈ} cE;Q>/Ze'Fsh.T>K A{y ]gDlQ@:Xyj]^bF,<982T/niHוC2mqOf}O5uIWIR!ѩ3̪KpQN״!04cf> ʣLv&ϱ:N8;aRjwGOA:qʾ25J(qJo =oZ `j|u4tl|ZTETBl1m&}=80VG npdHYVZ3 \/N"܉D()lS󆜬/ Z 6< /*\Eg&%.Ƕq!ۄ9 g^gʾE}$eڴgջ $SZ7MLs*U8Y6wsk5F)ܸٔԃS]v[NʧhՓAR 뙞o?-OcP/p:Lg Y.&^AR/܆^zO5pW Mr> >8ͅ lFn,`%~>'UAdzfc)[˦̯xVBTF+=*KWW(\RrC-|áb5 'N::ZO}(1SrFaIb*^ȳx$xלzrVn] P_Z:**) S׻ҩ\B) ]N__3+s}"n>.#^̾+1!pWtnY7 Iɂ{_ƒ+HD~IgFUvsA1kg;%D(GDѧR3j9͖QĐ:{DKZE؉@YZeIv(4Uhyܧ~!m_'繏-}kZz'D4 )6 ׄ[5;U~견v ݪ{Pmq|eWK8՟AA,ԏSfCxDv8H!=, }CAnZ,#XOWPniZ5eOPnY17)aw:*E1ewƞ1^xQxӌ0SYf>F8uH a*~|fP5il'iPgW!$8% zA9ՁᕯL*oz%+~ kZX%^&ݶkr}ܻ &3qe!46-Q\.O%W*4n')>ݖ{%DjAّyZV&Hk&b͸= ڋ\Sprט'#=Go[6$lxl^]~B؎q1*{vK\FPEh^4djv?^ƒRvx%l}iMZ0~g^SW.Fৢ\V YjЗ;ٜDF=oIɿ~%oE!`N'uDUg8&u8x_V=0-$ȯSd=-2࡙_KGt|6GkI;$zw!^00P],,t=Aٗ +}ߺuT#y![TQLՀ1PtN4e%5`K")1ܙfL^7-4kg1 <wD0ɽ,U]hBema-"\HOoCV`x6N9=KWH YB7CUۤhjePTG({`Rbkq-nA(Cn~/vp@΃7ٛB\m8>5iYXF8e~J#mZpPe9?S!^)ab jnWA8Vĸ&<,Mo Wzʠ]QSy 4!FMsaB=B¤!9)&5*#*n!)P2!F1!orG@ȓ(m`\wګd)#16yH^lolbfqFSlj{\i x,ә9>ehDia[~xup~U`HX_kjڬ |dlgäi7?oz)#~_$y>̱BNz>UTjh?}dH̘sle_ Dr [nP}M3_"EXN:\WŶsqԘގT. pH Ϊjh}J'B3+3XJ~ FnDsyKKOC uEx)nUB@)9K8=%, T5OW eOoѾ6BY7 V8˫r `=x fٿՕqH}jꔝVHn5]_DP; ]),1`mZC^Jcgmk5`鶥= Yʹ.b"{|Qb!}K؀G|Az/_U},}. V "[z8ЫDֈLԝJ d!2SZ3z(VK}C^ CƛC ZϋfgA` cWh"bp^^3&Q-9#g!RL|dz sF٠O>bVpjEZCp(Q!I]ɼ)ְT8&B7Xr;El @ZUcE6{ o:U\3j`eh77Z4aƦM_sQkG3s'uEף9u<.,d3X^uL$![ZlCo5A m-lYfSʛcԶ:lHi?"*ɘ_(2w9͖M(?oO&K]@c,K6,2,{,(k8;U:un4FL)OѧB{j/Tw)满}1a>K.N'| |BZt綽Q2uZ C׆C.B?q'pP矵a%dHԆD[eC.Thj]n/~q kZ7*%N5J4~x;: ?[ .+GWap) A-Yʿ4rPx6h5Ƞ;{W?}PTG, ΐL*jˠ\R͢BLޗf 5{ >`/J D +Q@Rk "'%,HLf^8c[`v?)VqDlx$*"s<j4;UMij/3F1-UviaPjYbu jQC *4@.nWKAjHإcNsǀl`9XN"rwdZ'sol_' ȮŮh[r2mP;4 7#Ǵ[c$'u{+E%;|G$ZzB`*@rۥ.H`t|E]J!.J؇Z&|3zUƾݝf-rzVz2~骀5{M^ /Hnh)R bhU E*Gcmr۶\!|Mv;WёvD=q՜{{nirÈ%1:V䆹+X( 1h 5Yh5~tKˮ(.[~"@ 24- ΥWSF į^5e)3WyzZ\$[30& /[IRyۉ~<~ZS^I] 2V+r]J1Pz1ph_2r4wwlG4@$w&bJ w[\gV6CqePq"͈i!b@~(amG#+cMW|F30(Ñq bcˢ8VX̓l9K̞/Wϙ'`gd)t>Kğ5/6ǀuJ{`E>&T1w 7 j2_2=q_6LN) ܆76T.xԚSYMr8̬~8=0V/?YHSz (*G#F1u*l<΢hrQ.z%K:0;m$~Vè%b2Aґ\3$ER/==iu b2YH"^x;ku#X-0nubP5=:!P:m< sGW@3z^Ș@[i i}bC΃L=e'p\S:ƨOr't _>tm4*jZY=A`U,yBN0וϤG04#:(ֲ ŴwE !RF-JI/gJ kЮdTV>D,N_Hvf?@.m8,t4~Q%]$uB)Y\1M4 sQ S8Գ]$@j?C@ujU x7A5Ι5R)驐Blc/zL\yD  6 ڻxLWxUu+BDoY@|,)*cIFZ%KjN||L6`.]?nXܵ'MТ23F3yFfq{LBվPbQܽaF-[<"TQ NK=y5Gy=ↆzQXxnR/cIG2h^MIL%u ,=zR NίHD -4w,`mBs+=*a \c=?N&iR8)#戏xeD]gd[ЊF 8&Yq˫dy%Hpw|kVu7 *o]!cGiXܞ% GUn(&wzEDW9iҠx4 fFd.c6F +x_7WQFoL,_Sm9VS,v:g̱l@pV4IFj|U.Ig3a HyrAM-:kC>:FY#޽=G8hU"4LF!d^.L:n(:<Y VJ34XTRee_!Hhg~ ||M(힦mRt zGy b EUπ#uң!#]y:&ny{غuGl.Tr0{.<bV 6VW3dx2SBε;#m@2i<ǘ\ATbl+T%Gu~ug/tX7eD' ۱ jQ9a2uC"5%HKqF- A+_v.=ܫ V]~n1NKMAUC?c xAK w4-d~NY:AɑwB~7hp֜W8 =zi0J~R ~-# MM,?wAO_j}32(:)čmMRDaaL`j1|GHEqէ쯭vPywF|OHt(Ur p/ܹ9󦢄+}oC*z#>c'q|._,FN`&{y`ޥiR 5'6y]V@S,܉GT|$ /(~.bx(nuvt=ZK7  \F%'υ^" oFCvM#D0Uys|{)X]2 XߧO -q&cf Yڳ=ʛ\y>r 6M3aGg2j\EV-Ԃ^r00M]IGUݐX#{nE@uS3Ztm|C_z$ S4ˉ ܐB!J@cU/1?|5ݮU x' ,к?pV"ՓO.CĚc'A* aqL?DQ P)Npwԅ=sv~ |h.-6V-0E a&klJ .~8t ćF'p&=6N3o߲[  /> z#>XNG>w>P>A7YF2>e8Hbf: 1jFQ_7e7՞WGuyI؂iqſ``ԖX'mهEg--$ vRa7 (/4C.]{+3T1yjO&;kw0r=AP]xov{KS.믌w|8;W=F3' ZTC#E!*W3Zk"TPzYv/9Noh&! :xGѧfr)xތ0yL:D& p7\t16B2`rC@3JG;B& S}s/E?@ZPaz91ε$93:ƃ>e.bU5W_ rD:V\ƕȋn2y3֒L<|pgR&(B *r}GV}*^8A\6E2i Jdtu-w<~Fww@F.O|Zg9W'$46Ӄ`xH{sLvJ:LmieG̥]9fhAVCiUĂŘ0ԯ%TĨ4[Cdb)gfm$H<S)a^q?-_~ %k.>XOs};d86 ~J^`s%HG mߤٖTnU*P+d_\)Yԣ9kܣn9t>=.5C9=L,񬈥=όC_UaF?`fk]ςd[abymӴ v$<Y+@ ,.eyEpY\ vo(hiU85-#qDE*GHi-A_)XR!+:vonR%KFQ+hsm7w?~(V"o\Θߥ01}5Xh\' <4r@B%JLdh`̽I(%߀"~>5dD*=(6/Iz}MUUeEr4صX. ?K3jß:p~9GA #;ẹr_C!HlaKl}7}!q3xwB g5CM-;=MP_0hs,;˜OKlD!5{zkFIc!QJ#b~9_–I2#"*)l(%4cu2. douQGأسܓBy$iE*G "`XnWed7+89{le5>K.- ر]4dÂ"w]`8 =[ehL=t_rST<К}lm%w<5s@XCӹ##DP"Rk${\s}lH$:_,x{{_mCj{-@ozpQ!VM$!0zWh, +l@ߋE>"hYb y6hA=J& zwɫR YYC`s]=@5"+{vV3z)0D.׎rV Oq bnb@dfrة"o`ol ;[uEY,ۃCUׂ9)s3B\4Rݧ8[-go,`< g%ʝYgyMrĘ~ǏS~ٖ  ~36ڛH)89pV63I%ܓ_tFJsMoeCZ"֮=܄u̱-J$z 3!@ $.?-Jg9;?7;B7kef'.Mx9{ H !6˭;{i- ccjSuC% Fdsŭ'"}pe0=vQAg@@.c OhJ\Dj%l?utXm,ǏkZěr6w  t\^(l8ՄTJ))g5S4ڧairnO 9k=y2 3[A>; 湢:5ЙCܴi_xmK46niz4d3*`@!]Σg,Se6EC5C1x), j2îKQ/-FTΒq൪ƙ{e-1F"ЪcQOsƆ^󝧵l:S}:d]N s=؇\Ft_ / Cajؗ>{(!g#_ئ8/BO23/Hܽ 9GNkΚ~%yX%ű~kO?U5 x y4 x*G\Yوt3_D>>-4  Q菌v,R[V%uM,jd{]{Ov|9Ɍu-{έ;8u̽>ml*z꩓mѐO 뇭اt([[ћlԑJC×yNK~ͫ"r,d_+A$/A2F_:)QARȩBZF`Ϟ*M A0j;b K%ziG;ůBxϰ4/#l p>BSׯ tx3يsዦ3XB֚JnDY5s]I BF.@Б ȳkge<]l${ji%IxU3z^wO7H0ZUXlٷ 懥GVDOu r 5=8ҿ? SXT:)]S)Cux]~[d`Zw^(sP/\k[3Öf9t ld!60 Œm⸚ߟ/ 4Pç9W#a&[wG8Ũ䜋K%?Qfb0Yv7 u1)rN|FOEc6= yv;B:4Wg1Hb˴HS3iHޅf[ G!!k&Cu4[DjY\]nESD:Y=@NEeF5)7Eϕ]+^.OlӔ{*IF:Y;_3޼-QChˏ dWv- ']̸ bFn.8'#]9I2̣HJtbfV%7jW9RZdTQ1fy4vZT6wr"HZRM 0'I#0G:ZǠ%qx>10q3J]6.0UݘeA /_L.d:d/̒.zVR⤞\%I6}w1nx@+ʉ >И*Qv|vE?On픈%m܏9;MjzAZ-=ۆC+'?-5ov7!:xO=)& AwjPB0o0c@X1{Ut̊d{[cg y_uL&iď[y U\PK8~FAt8+*LFiC[+]c