sssd-tools-1.16.0-19.el7$>ɐOd3N ͺH>8?d   A  J^{WW W @W W sW W(WW!!W##(C$4C+ C(+8+93`:G WH|WIWXY\W],W^b8deflt Wu|WvwWx\Wy Csssd-tools1.16.019.el7Userspace tools for use with the SSSDProvides userspace tools for manipulating users, groups, and nested groups in SSSD when using id_provider = local in /etc/sssd/sssd.conf. Also provides several other administrative tools: * sss_debuglevel to change the debug level on the fly * sss_seed which pre-creates a user entry for use in kickstarts * sss_obfuscate for generating an obfuscated LDAP password * sssctl -- an sssd status and control utilityZϸ"x86-01.bsys.centos.org ĤCentOSGPLv3+CentOS BuildSystem Applications/Systemhttps://pagure.io/SSSD/sssd/linuxx86_64qޘX ` c P X@KDV~bwL(Jn=EDgta4[}O `_PA +x& < LI sA큤ZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸY ZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸZϸ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-1.16.0-19.el7.src.rpmsssd-toolssssd-tools(x86-64)@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@   @ /bin/sh/usr/bin/pythonlibbasicobjects.so.0()(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.3)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.4)(64bit)libc.so.6(GLIBC_2.7)(64bit)libcollection.so.2()(64bit)libdbus-1.so.3()(64bit)libdbus-1.so.3(LIBDBUS_1_3)(64bit)libdhash.so.1()(64bit)libdhash.so.1(DHASH_0.4.3)(64bit)libdl.so.2()(64bit)libdl.so.2(GLIBC_2.2.5)(64bit)libglib-2.0.so.0()(64bit)libini_config.so.3()(64bit)libini_config.so.3(INI_CONFIG_1.3.0)(64bit)liblber-2.4.so.2()(64bit)libldap-2.4.so.2()(64bit)libldb.so.1()(64bit)libldb.so.1(LDB_0.9.10)(64bit)libnspr4.so()(64bit)libnss3.so()(64bit)libnssutil3.so()(64bit)libpam.so.0()(64bit)libpam.so.0(LIBPAM_1.0)(64bit)libpam_misc.so.0()(64bit)libpam_misc.so.0(LIBPAM_MISC_1.0)(64bit)libpcre.so.1()(64bit)libplc4.so()(64bit)libplds4.so()(64bit)libpopt.so.0()(64bit)libpopt.so.0(LIBPOPT_0)(64bit)libpthread.so.0()(64bit)libpthread.so.0(GLIBC_2.2.5)(64bit)libref_array.so.1()(64bit)libref_array.so.1(REF_ARRAY_0.1.1)(64bit)librt.so.1()(64bit)libselinux.so.1()(64bit)libsemanage.so.1()(64bit)libsmime3.so()(64bit)libssl3.so()(64bit)libsss_cert.so()(64bit)libsss_certmap.so.0()(64bit)libsss_child.so()(64bit)libsss_crypt.so()(64bit)libsss_debug.so()(64bit)libsss_semanage.so()(64bit)libsss_simpleifp.so.0()(64bit)libsss_simpleifp.so.0(SSS_SIMPLEIFP_0.0)(64bit)libsss_simpleifp.so.0(SSS_SIMPLEIFP_0.1)(64bit)libsss_util.so()(64bit)libsystemd.so.0()(64bit)libtalloc.so.2()(64bit)libtalloc.so.2(TALLOC_2.0.2)(64bit)libtdb.so.1()(64bit)libtevent.so.0()(64bit)python-ssspython-sssdconfigrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rtld(GNU_HASH)sssd-commonrpmlib(PayloadIsXz)1.16.0-19.el71.16.0-19.el73.0.4-14.6.0-14.0-11.16.0-19.el75.2-14.11.3Z_@Z_@Z@ZyZhu@Z3@Z2gZ.s@Z*~Z'Z!D@ZZ@Z Z @Z7ZNYZ@Y@YYJ_YJ_YC@YBvYBvY9<@Y9<@Y5GY5GY5GY5GY0Y0Y(Y(Y%uY%uY$$@Y$$@Y"Y;@YR@YR@Y Y @Y @YtYtYtYtYtYXXh@XXX@X@X@XsX@X@X@XۡXۡXXӸX,XCX@XX*X lX lX lW$WW;W;W;W֘W֘W@W^@WiWiWiW/@W/@W/@W/@WWWWQWQWQW@W@W@WhW@W@Wt@WE@WE@W@W@W@W@WW~W-@W-@W-@WW@WWu WgWDB@WDB@WDB@WBW;W;W@VbV͛@VTQ@VCV @V @V @V V@VBVBVBVBVBUUUU@UXU@U@U@UUUUUUUUL@UL@UU@U@U@UnU@U(U@U@UUmUmU@UJ@UU7@U7@U7@U @U@U@TE@TE@TE@Tи@Tr@Tr@Tr@Tr@T}T}T}T}T}T7T7TTC@TTZ@TZ@TT@Tp@Tp@T@T{T*@T*@TTT~@T~@TuTuTto@Tto@Tto@Tto@Tto@Tto@TmTmTmTmTl@Tl@Tl@Tl@TcKTa@T\@TZ@TZ@TR(@TG@TG@TG@TG@TG@TD@T6xTTT SS@S|@Sr @Sr @Sr @Sr @S;S;S2@S2@S,)S!S L@SSS@S@S@S@S@S @S @S @S @S @S @S @S @SSSRb@Rb@Rb@R@R@R@R@RURURUR߲RRRx@Rx@Rx@RΏ@RΏ@RΏ@R=R=RkRRRR@R@R@R@R@Rv@Rv@Rv@Rv@Rv@Rv@Rv@Rv@Rv@RpREs@REs@R7Q@Q@Q@Q@Q@QQLQکQQQo@Q)@Q@QQ@Q@QbQyQV@Q'@QQQnQZ@Q0@QQQ@Q@QQ @QQh@PP@P@P@Pz@Pz@PqnPl(PaPaPS@PH@PDPM>M2@MMzMx@Mj - 1.16.0-19Fabiano Fidêncio - 1.16.0-18Fabiano Fidêncio - 1.16.0-17Fabiano Fidêncio - 1.16.0-16Fabiano Fidêncio - 1.16.0-15Fabiano Fidêncio - 1.16.0-14Fabiano Fidêncio - 1.16.0-13Fabiano Fidêncio - 1.16.0-12Fabiano Fidêncio - 1.16.0-11Fabiano Fidêncio - 1.16.0-10Fabiano Fidêncio - 1.16.0-9Fabiano Fidêncio - 1.16.0-8Fabiano Fidêncio - 1.16.0-7Fabiano Fidêncio - 1.16.0-6Fabiano Fidêncio - 1.16.0-5Fabiano Fidêncio - 1.16.0-4Fabiano Fidêncio - 1.16.0-3Fabiano Fidêncio - 1.16.0-2Fabiano Fidêncio - 1.16.0-1Jakub Hrozek - 1.15.2-51Jakub Hrozek - 1.15.2-50Jakub Hrozek - 1.15.2-49Jakub Hrozek - 1.15.2-48Jakub Hrozek - 1.15.2-47Jakub Hrozek - 1.15.2-46Jakub Hrozek - 1.15.2-45Jakub Hrozek - 1.15.2-44Jakub Hrozek - 1.15.2-43Jakub Hrozek - 1.15.2-42Jakub Hrozek - 1.15.2-41Jakub Hrozek - 1.15.2-40Jakub Hrozek - 1.15.2-39Jakub Hrozek - 1.15.2-38Jakub Hrozek - 1.15.2-37Jakub Hrozek - 1.15.2-36Jakub Hrozek - 1.15.2-35Jakub Hrozek - 1.15.2-34Jakub Hrozek - 1.15.2-33Jakub Hrozek - 1.15.2-32Jakub Hrozek - 1.15.2-31Sumit Bose - 1.15.2-30Jakub Hrozek - 1.15.2-29Jakub Hrozek - 1.15.2-28Jakub Hrozek - 1.15.2-25Jakub Hrozek - 1.15.2-24Lukas Slebodnik - 1.15.2-23Jakub Hrozek - 1.15.2-22Jakub Hrozek - 1.15.2-21Jakub Hrozek - 1.15.2-20Jakub Hrozek - 1.15.2-19Jakub Hrozek - 1.15.2-18Jakub Hrozek - 1.15.2-17Jakub Hrozek - 1.15.2-16Jakub Hrozek - 1.15.2-15Jakub Hrozek - 1.15.2-14Jakub Hrozek - 1.15.2-13Jakub Hrozek - 1.15.2-12Jakub Hrozek - 1.15.2-11Jakub Hrozek - 1.15.2-10Jakub Hrozek - 1.15.2-9Jakub Hrozek - 1.15.2-8Jakub Hrozek - 1.15.2-7Jakub Hrozek - 1.15.2-6Jakub Hrozek - 1.15.2-5Jakub Hrozek - 1.15.2-4Jakub Hrozek - 1.15.2-3Jakub Hrozek - 1.15.2-2Jakub Hrozek - 1.15.2-1Fabiano Fidêncio - 1.15.1-2Jakub Hrozek - 1.15.1-1Jakub Hrozek - 1.15.0-2Jakub Hrozek - 1.15.0-1Jakub Hrozek - 1.14.0-46Jakub Hrozek - 1.14.0-45Jakub Hrozek - 1.14.0-44Jakub Hrozek - 1.14.0-43Jakub Hrozek - 1.14.0-42Jakub Hrozek - 1.14.0-41Jakub Hrozek - 1.14.0-40Jakub Hrozek - 1.14.0-39Jakub Hrozek - 1.14.0-38Jakub Hrozek - 1.14.0-37Jakub Hrozek - 1.14.0-36Jakub Hrozek - 1.14.0-35Jakub Hrozek - 1.14.0-34Jakub Hrozek - 1.14.0-33Jakub Hrozek - 1.14.0-32Jakub Hrozek - 1.14.0-31Jakub Hrozek - 1.14.0-30Jakub Hrozek - 1.14.0-29Jakub Hrozek - 1.14.0-28Jakub Hrozek - 1.14.0-27Jakub Hrozek - 1.14.0-26Jakub Hrozek - 1.14.0-25Jakub Hrozek - 1.14.0-24Jakub Hrozek - 1.14.0-23Jakub Hrozek - 1.14.0-22Jakub Hrozek - 1.14.0-21Jakub Hrozek - 1.14.0-20Jakub Hrozek - 1.14.0-19Jakub Hrozek - 1.14.0-18Jakub Hrozek - 1.14.0-17Jakub Hrozek - 1.14.0-16Jakub Hrozek - 1.14.0-15Jakub Hrozek - 1.14.0-14Jakub Hrozek - 1.14.0-13Jakub Hrozek - 1.14.0-12Jakub Hrozek - 1.14.0-11Jakub Hrozek - 1.14.0-10Jakub Hrozek - 1.14.0-9Jakub Hrozek - 1.14.0-8Jakub Hrozek - 1.14.0-7Jakub Hrozek - 1.14.0-6Jakub Hrozek - 1.14.0-5Jakub Hrozek - 1.14.0-4Jakub Hrozek - 1.14.0-3Jakub Hrozek - 1.14.0-2Jakub Hrozek - 1.14.0-1Jakub Hrozek - 1.14.0beta1-2Jakub Hrozek - 1.14.0alpha-1Jakub Hrozek - 1.13.0-50Jakub Hrozek - 1.13.0-49Jakub Hrozek - 1.13.0-48Jakub Hrozek - 1.13.0-47Jakub Hrozek - 1.13.0-46Jakub Hrozek - 1.13.0-45Jakub Hrozek - 1.13.0-44Jakub Hrozek - 1.13.0-43Jakub Hrozek - 1.13.0-42Jakub Hrozek - 1.13.0-41Jakub Hrozek - 1.13.0-40Jakub Hrozek - 1.13.0-39Jakub Hrozek - 1.13.0-38Jakub Hrozek - 1.13.0-37Jakub Hrozek - 1.13.0-36Jakub Hrozek - 1.13.0-35Jakub Hrozek - 1.13.0-34Jakub Hrozek - 1.13.0-33Jakub Hrozek - 1.13.0-32Jakub Hrozek - 1.13.0-31Jakub Hrozek - 1.13.0-30Jakub Hrozek - 1.13.0-29Jakub Hrozek - 1.13.0-28Jakub Hrozek - 1.13.0-27Jakub Hrozek - 1.13.0-26Martin Kosek - 1.13.0-25Jakub Hrozek - 1.13.0-24Jakub Hrozek - 1.13.0-23Jakub Hrozek - 1.13.0-22Jakub Hrozek - 1.13.0-21Jakub Hrozek - 1.13.0-20Jakub Hrozek - 1.13.0-19Jakub Hrozek - 1.13.0-18Jakub Hrozek - 1.13.0-17Jakub Hrozek - 1.13.0-16Jakub Hrozek - 1.13.0-15Jakub Hrozek - 1.13.0-14Lukas Slebodnik - 1.13.0-13Jakub Hrozek - 1.13.0-12Jakub Hrozek - 1.13.0-11Jakub Hrozek - 1.13.0-10Jakub Hrozek - 1.13.0-9Jakub Hrozek - 1.13.0-8Jakub Hrozek - 1.13.0-7Jakub Hrozek - 1.13.0-6Jakub Hrozek - 1.13.0-5Jakub Hrozek - 1.13.0-4Jakub Hrozek - 1.13.0-3Jakub Hrozek - 1.13.0-2Jakub Hrozek - 1.13.0-1Jakub Hrozek - 1.13.0.3alphaJakub Hrozek - 1.13.0.2alphaJakub Hrozek - 1.13.0.1alphaJakub Hrozek - 1.12.2-61Jakub Hrozek - 1.12.2-60Jakub Hrozek - 1.12.2-59Jakub Hrozek - 1.12.2-58.6Jakub Hrozek - 1.12.2-58.5Jakub Hrozek - 1.12.2-58.4Jakub Hrozek - 1.12.2-58.3Jakub Hrozek - 1.12.2-58.2Jakub Hrozek - 1.12.2-58.1Jakub Hrozek - 1.12.2-57Jakub Hrozek - 1.12.2-56Jakub Hrozek - 1.12.2-55Jakub Hrozek - 1.12.2-54Jakub Hrozek - 1.12.2-53Jakub Hrozek - 1.12.2-52Jakub Hrozek - 1.12.2-51Jakub Hrozek - 1.12.2-50Jakub Hrozek - 1.12.2-49Jakub Hrozek - 1.12.2-48Jakub Hrozek - 1.12.2-47Jakub Hrozek - 1.12.2-46Jakub Hrozek - 1.12.2-45Jakub Hrozek - 1.12.2-44Jakub Hrozek - 1.12.2-43Jakub Hrozek - 1.12.2-42Jakub Hrozek - 1.12.2-41Jakub Hrozek - 1.12.2-40Sumit Bose - 1.12.2-39Sumit Bose - 1.12.2-38Sumit Bose - 1.12.2-37Jakub Hrozek - 1.12.2-35Jakub Hrozek - 1.12.2-35Jakub Hrozek - 1.12.2-34Jakub Hrozek - 1.12.2-33Jakub Hrozek - 1.12.2-32Jakub Hrozek - 1.12.2-31Jakub Hrozek - 1.12.2-30Jakub Hrozek - 1.12.2-29Jakub Hrozek - 1.12.2-28Jakub Hrozek - 1.12.2-27Jakub Hrozek - 1.12.2-26Jakub Hrozek - 1.12.2-25Jakub Hrozek - 1.12.2-24Jakub Hrozek - 1.12.2-23Jakub Hrozek - 1.12.2-22Jakub Hrozek - 1.12.2-21Jakub Hrozek - 1.12.2-20Jakub Hrozek - 1.12.2-19Jakub Hrozek - 1.12.2-18Jakub Hrozek - 1.12.2-17Jakub Hrozek - 1.12.2-16Jakub Hrozek - 1.12.2-15Jakub Hrozek - 1.12.2-14Jakub Hrozek - 1.12.2-13Jakub Hrozek - 1.12.2-12Jakub Hrozek - 1.12.2-11Jakub Hrozek - 1.12.2-10Jakub Hrozek - 1.12.2-9Jakub Hrozek - 1.12.2-8Jakub Hrozek - 1.12.2-7Jakub Hrozek - 1.12.2-6Jakub Hrozek - 1.12.2-5Jakub Hrozek - 1.12.2-4Jakub Hrozek - 1.12.2-3Jakub Hrozek - 1.12.2-2Jakub Hrozek - 1.12.2-1Jakub Hrozek - 1.12.1-2Jakub Hrozek - 1.12.1-1Jakub Hrozek - 1.12.1-1Jakub Hrozek - 1.12.0-3Jakub Hrozek - 1.12.0-2Jakub Hrozek - 1.12.0-1Jakub Hrozek - 1.11.2-70Jakub Hrozek - 1.11.2-69Jakub Hrozek - 1.11.2-68Jakub Hrozek - 1.11.2-67Jakub Hrozek - 1.11.2-66Jakub Hrozek - 1.11.2-65Jakub Hrozek - 1.11.2-64Sumit Bose - 1.11.2-63Sumit Bose - 1.11.2-62Jakub Hrozek - 1.11.2-61Jakub Hrozek - 1.11.2-60Jakub Hrozek - 1.11.2-59Jakub Hrozek - 1.11.2-58Jakub Hrozek - 1.11.2-57Jakub Hrozek - 1.11.2-56Jakub Hrozek - 1.11.2-55Jakub Hrozek - 1.11.2-54Jakub Hrozek - 1.11.2-53Jakub Hrozek - 1.11.2-52Jakub Hrozek - 1.11.2-51Jakub Hrozek - 1.11.2-50Jakub Hrozek - 1.11.2-49Jakub Hrozek - 1.11.2-48Jakub Hrozek - 1.11.2-47Jakub Hrozek - 1.11.2-46Jakub Hrozek - 1.11.2-45Jakub Hrozek - 1.11.2-44Jakub Hrozek - 1.11.2-43Jakub Hrozek - 1.11.2-42Jakub Hrozek - 1.11.2-41Jakub Hrozek - 1.11.2-40Jakub Hrozek - 1.11.2-39Jakub Hrozek - 1.11.2-38Jakub Hrozek - 1.11.2-37Jakub Hrozek - 1.11.2-36Jakub Hrozek - 1.11.2-35Jakub Hrozek - 1.11.2-34Daniel Mach - 1.11.2-33Jakub Hrozek - 1.11.2-32Jakub Hrozek - 1.11.2-31Jakub Hrozek - 1.11.2-30Jakub Hrozek - 1.11.2-29Jakub Hrozek - 1.11.2-28Jakub Hrozek - 1.11.2-27Jakub Hrozek - 1.11.2-26Jakub Hrozek - 1.11.2-25Jakub Hrozek - 1.11.2-24Jakub Hrozek - 1.11.2-23Jakub Hrozek - 1.11.2-22Jakub Hrozek - 1.11.2-21Jakub Hrozek - 1.11.2-20Daniel Mach - 1.11.2-19Jakub Hrozek - 1.11.2-18Jakub Hrozek - 1.11.2-17Jakub Hrozek - 1.11.2-16Jakub Hrozek - 1.11.2-15Jakub Hrozek - 1.11.2-14Jakub Hrozek - 1.11.2-13Jakub Hrozek - 1.11.2-12Jakub Hrozek - 1.11.2-11Jakub Hrozek - 1.11.2-10Jakub Hrozek - 1.11.2-9Jakub Hrozek - 1.11.2-8Jakub Hrozek - 1.11.2-7Jakub Hrozek - 1.11.2-6Jakub Hrozek - 1.11.2-5Jakub Hrozek - 1.11.2-4Jakub Hrozek - 1.11.2-3Jakub Hrozek - 1.11.2-2Jakub Hrozek - 1.11.2-1Jakub Hrozek - 1.11.1-2Jakub Hrozek - 1.11.1-1Jakub Hrozek - 1.11.0-1Jakub Hrozek - 1.11.0.1beta2Jakub Hrozek - 1.10.1-5Jakub Hrozek - 1.10.1-4Jakub Hrozek - 1.10.1-3Jakub Hrozek - 1.10.1-2Jakub Hrozek - 1.10.1-1Jakub Hrozek - 1.10.0-18Jakub Hrozek - 1.10.0-17Stephen Gallagher - 1.10.0-16Stephen Gallagher - 1.10.0-15Stephen Gallagher - 1.10.0-14Jakub Hrozek - 1.10.0-13Dan Horák - 1.10.0-12.beta2Jakub Hrozek - 1.10.0-11.beta2Jakub Hrozek - 1.10.0-10.beta2Jakub Hrozek - 1.10.0-9.beta2Jakub Hrozek - 1.10.0-8.beta2Jakub Hrozek - 1.10.0-7.beta1Jakub Hrozek - 1.10.0-6.beta1Jakub Hrozek - 1.10.0-5.beta1Jakub Hrozek - 1.10.0-4.beta1Jakub Hrozek - 1.10.0-3.beta1Jakub Hrozek - 1.10.0-2.alpha1Jakub Hrozek - 1.10.0-1.alpha1Stephen Gallagher - 1.9.4-9Jakub Hrozek - 1.9.4-8Jakub Hrozek - 1.9.4-7Jakub Hrozek - 1.9.4-6Jakub Hrozek - 1.9.4-5Jakub Hrozek - 1.9.4-4Jakub Hrozek - 1.9.4-3Jakub Hrozek - 1.9.4-2Jakub Hrozek - 1.9.4-1Jakub Hrozek - 1.9.3-1Jakub Hrozek - 1.9.2-5Jakub Hrozek - 1.9.2-4Jakub Hrozek - 1.9.2-3Jakub Hrozek - 1.9.2-2Jakub Hrozek - 1.9.2-1Jakub Hrozek - 1.9.1-1Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-23Jakub Hrozek - 1.9.0-22.rc1Jakub Hrozek - 1.9.0-21.beta7Jakub Hrozek - 1.9.0-20.beta6Jakub Hrozek - 1.9.0-19.beta6Jakub Hrozek - 1.9.0-18.beta6Jakub Hrozek - 1.9.0-17.beta6Jakub Hrozek - 1.9.0-16.beta6Jakub Hrozek - 1.9.0-14.beta6Jakub Hrozek - 1.9.0-13.beta6Fedora Release Engineering - 1.9.0-13.beta5Jakub Hrozek - 1.9.0-12.beta5Stephen Gallagher - 1.9.0-11.beta4Jakub Hrozek - 1.9.0-10.beta4Jakub Hrozek - 1.9.0-9.beta4Stephen Gallagher - 1.9.0-8.beta3Stephen Gallagher - 1.9.0-7.beta2Stephen Gallagher - 1.9.0-6.beta2Stephen Gallagher - 1.9.0-5.beta2Stephen Gallagher - 1.9.0-4.beta1Stephen Gallagher - 1.9.0-3.beta1Stephen Gallagher - 1.9.0-2.beta1Stephen Gallagher - 1.9.0-1.beta1Stephen Gallagher - 1.8.3-11Stephen Gallagher - 1.8.2-10Stephen Gallagher - 1.8.1-9Stephen Gallagher - 1.8.1-8Stephen Gallagher - 1.8.1-7Stephen Gallagher - 1.8.0-6Stephen Gallagher - 1.8.0-5.beta3Stephen Gallagher - 1.8.0-4.beta3Petr Pisar - 1.8.0-3.beta2Stephen Gallagher - 1.8.0-1.beta2Stephen Gallagher - 1.8.0-1.beta1Stephen Gallagher - 1.7.0-5Stephen Gallagher - 1.7.0-4Stephen Gallagher - 1.7.0-3Fedora Release Engineering - 1.7.0-2Stephen Gallagher - 1.7.0-1Stephen Gallagher - 1.6.4-1Stephen Gallagher - 1.6.3-5Stephen Gallagher - 1.6.3-4Jakub Hrozek - 1.6.3-3Stephen Gallagher - 1.6.3-2Stephen Gallagher - 1.6.3-1Fedora Release Engineering - 1.6.2-5Stephen Gallagher - 1.6.2-4Stephen Gallagher - 1.6.2-3Stephen Gallagher - 1.6.2-2Stephen Gallagher - 1.6.2-1Stephen Gallagher - 1.6.1-1Stephen Gallagher - 1.6.0-2Stephen Gallagher - 1.6.0-1Stephen Gallagher - 1.5.11-2Stephen Gallagher - 1.5.10-1Stephen Gallagher - 1.5.9-1Stephen Gallagher - 1.5.8-1Stephen Gallagher - 1.5.7-3Stephen Gallagher - 1.5.7-2Stephen Gallagher - 1.5.7-1Stephen Gallagher - 1.5.6.1-1Stephen Gallagher - 1.5.6-1Stephen Gallagher - 1.5.5-5Stephen Gallagher - 1.5.5-4Stephen Gallagher - 1.5.5-3Stephen Gallagher - 1.5.5-2Stephen Gallagher - 1.5.5-1Stephen Gallagher - 1.5.4-1Stephen Gallagher - 1.5.3-2Stephen Gallagher - 1.5.3-1Stephen Gallagher - 1.5.2-1Simo Sorce - 1.5.1-9Stephen Gallagher - 1.5.1-8Stephen Gallagher - 1.5.1-7Stephen Gallagher - 1.5.1-6Stephen Gallagher - 1.5.1-5Fedora Release Engineering - 1.5.1-4Stephen Gallagher - 1.5.1-3Stephen Gallagher - 1.5.1-2Stephen Gallagher - 1.5.1-1Stephen Gallagher - 1.5.0-2Stephen Gallagher - 1.5.0-1Stephen Gallagher - 1.4.1-3Stephen Gallagher - 1.4.1-2Stephen Gallagher - 1.4.1-1Stephen Gallagher - 1.4.0-2Stephen Gallagher - 1.4.0-1Stephen Gallagher - 1.3.0-35Stephen Gallagher - 1.3.0-34Stephen Gallagher - 1.3.0-33Stephen Gallagher - 1.3.0-32Stephen Gallagher - 1.3.0-31Stephen Gallagher - 1.3.0-30David Malcolm - 1.2.91-21Stephen Gallagher - 1.2.91-20Stephen Gallagher - 1.2.1-15Stephen Gallagher - 1.2.0-12Stephen Gallagher - 1.1.92-11Stephen Gallagher - 1.1.91-10Simo Sorce - 1.1.1-3Stephen Gallagher - 1.1.1-1Stephen Gallagher - 1.1.0-2Stephen Gallagher - 1.1.0-1.pre20100317git0ea7f19Stephen Gallagehr - 1.0.5-2Stephen Gallagher - 1.0.5-1Stephen Gallagher - 1.0.4-1Stephen Gallagher - 1.0.3-1Stephen Gallagher - 1.0.2-1Stephen Gallagher - 1.0.1-1Stephen Gallagher - 1.0.0-2Stephen Gallagher - 1.0.0-1Stephen Gallagher - 0.99.1-1Stephen Gallagher - 0.99.0-1Stephen Gallagher - 0.7.1-1Stephen Gallagher - 0.7.0-2Stephen Gallagher - 0.7.0-1Stephen Gallagher - 0.6.1-2Stephen Gallagher - 0.6.1-1Stephen Gallagher - 0.6.0-1Sumit Bose - 0.6.0-0Simo Sorce - 0.5.0-0Jakub Hrozek - 0.4.1-4Fedora Release Engineering - 0.4.1-3Simo Sorce - 0.4.1-2Simo Sorce - 0.4.1-1Simo Sorce - 0.4.1-0Simo Sorce - 0.3.2-2Jakub Hrozek - 0.3.2-1Simo Sorce - 0.3.1-2Simo Sorce - 0.3.1-1Simo Sorce - 0.3.0-2Simo Sorce - 0.3.0-1Simo Sorce - 0.2.1-1Simo Sorce - 0.2.0-1Jakub Hrozek - 0.1.0-5.20090309git691c9b3Jakub Hrozek - 0.1.0-4Sumit Bose - 0.1.0-3Jakub Hrozek - 0.1.0-2Stephen Gallagher - 0.1.0-1- Related: rhbzrhbz#1544943 - sssd goes offline when renewing expired ticket- Resolves: rhbz#1543348 - sssd_be consumes more memory on RHEL 7.4 systems. - Resolves: rhbz#1544943 - sssd goes offline when renewing expired ticket- Resolves: rhbz#1523282 - sssd used wrong search base with wrong AD server- Resolves: rhbz#1538643 - SSSD crashes when retrieving a Desktop Profile with no specific host/hostgroup set - Related: rhbz#1441908 - SELINUX: Use getseuserbyname to get IPA seuser - Related: rhbz#1327705 - [RFE] Automatic creation of user private groups on RHEL clients joined to AD via sssd [RHEL 7]- Resolves: rhbz#1517971 - AD Domain goes offline immediately during subdomain initialization - IPA AD Trust - Related: rhbz#1482555 - sysdb index improvements - missing ghost attribute indexing, unneeded objectclass index etc.. - Related: rhbz#1327705 - [RFE] Automatic creation of user private groups on RHEL clients joined to AD via sssd [RHEL 7] - Resolves: rhbz#1527149 - AD provider - AD BUILTIN groups are cached with gidNumber = 0 - Related: rhbz#1461899 - Loading enterprise principals doesn't work with a primed cache - Related: rhbz#1473571 - ipa-extdom-extop plugin can exhaust DS worker threads- Resolves: rhbz#1525644 - dbus-send unable to find user by CAC cert- Resolves: rhbz#1523010 - IPA user able to authenticate with revoked cert on smart card- Resolves: rhbz#1512027 - NSS by-id requests are not checked against max_id/min_id ranges before triggering the backend- Related: rhbz#1507614 - Improve Smartcard integration if multiple certificates or multiple mapped identities are available - Resolves: rhbz#1523010 - IPA user able to authenticate with revoked cert on smart card - Resolves: rhbz#1520984 - getent output is not showing home directory for IPA AD trusted user - Related: rhbz#1473571 - ipa-extdom-extop plugin can exhaust DS worker threads- Resolves: rhbz#1421194 - SSSD doesn't use AD global catalog for gidnumber lookup, resulting in unacceptable delay for large forests- Resolves: rhbz#1482231 - sssd_nss consumes more memory until restarted or machine swaps - Resolves: rhbz#1512508 - SSSD fails to fetch group information after switching IPA client to a non-default view- Resolves: rhbz#1490120 - SSSD complaining about corrupted mmap cache and logging error in /var/log/messages and /var/log/sssd/sssd_nss.log- Resolves: rhbz#1272214 - [RFE] Create a local per system report about who can access that IDM client (attestation) - Resolves: rhbz#1482555 - sysdb index improvements - missing ghost attribute indexing, unneeded objectclass index etc.. - Resolves: rhbz#888739 - Enumerating large number of users makes sssd_be hog the cpu for a long time. - Resolves: rhbz#1373547 - SSSD performance issue with malloc and brk calls - Resolves: rhbz#1472255 - Improve SSSD performance in the 7.5 release- Related: rhbz#1460724 - SYSLOG_IDENTIFIER is different - Related: rhbz#1432010 - SSSD ships a drop-in configuration snippet in /etc/systemd/system - Related: rhbz#1507614 - Improve Smartcard integration if multiple certificates or multiple mapped identities are available- Resolves: rhbz#1507614 - Improve Smartcard integration if multiple certificates or multiple mapped identities are available - Related: rhbz#1499659 - CVE-2017-12173 sssd: unsanitized input when searching in local cache database [rhel-7.5] - Resolves: rhbz#1408294 - SSSD authentication fails when two IPA accounts share an email address without a clear way to debug the problem - Resolves: rhbz#1502686 - crash - /usr/libexec/sssd/sssd_nss in nss_setnetgrent_timeout- Related: rhbz#1460724 - SYSLOG_IDENTIFIER is different - Related: rhbz#1459609 - When sssd is configured with id_provider proxy and auth_provider ldap, login fails if the LDAP server is not allowing anonymous binds.- Resolves: rhbz#1473571 - ipa-extdom-extop plugin can exhaust DS worker threads- Resolves: rhbz#1484376 - [RFE] Add a configuration option to SSSD to disable the memory cache - Resolves: rhbz#1327705 - Automatic creation of user private groups on RHEL clients joined to AD via sssd [RHEL 7] - Resolves: rhbz#1505277 - Race condition between refreshing the cr_domain list and a request that is using the list can cause a segfault is sssd_nss - Resolves: rhbz#1462343 - document information on why SSSD does not use host-based security filtering when processing AD GPOs - Resolves: rhbz#1498734 - sssd_be stuck in an infinite loop after completing full refresh of sudo rules - Resolves: rhbz#1400614 - [RFE] sssd should remember DNS sites from first search - Resolves: rhbz#1460724 - SYSLOG_IDENTIFIER is different - Resolves: rhbz#1459609 - When sssd is configured with id_provider proxy and auth_provider ldap, login fails if the LDAP server is not allowing anonymous binds.- Resolves: rhbz#1469791 - Rebase SSSD to version 1.16+ - Resolves: rhbz#1132264 - Allow sssd to retrieve sudo rules of local users whose sudo rules stored in ldap server - Resolves: rhbz#1301740 - sssd can be marked offline if a trusted domain is not reachable - Resolves: rhbz#1399262 - Use TCP for kerberos with AD by default - Resolves: rhbz#1416150 - RFE: Log to syslog when sssd cannot contact servers, goes offline - Resolves: rhbz#1441908 - SELINUX: Use getseuserbyname to get IPA seuser - Resolves: rhbz#1454559 - python-sssdconfig doesn't parse hexadecimal debug _level, resulting in set_option(): /usr/lib/python2.7/site-packages/SSSDConfig/__init__.py killed by TypeError - Resolves: rhbz#1456968 - MAN: document that attribute 'provider' is not allowed in section 'secrets' - Resolves: rhbz#1460689 - KCM/secrets: Storing many secrets in a rapid succession segfaults the secrets responder - Resolves: rhbz#1464049 - Idle nss file descriptors should be closed - Resolves: rhbz#1468610 - sssd_be is utilizing more CPU during sudo rules refresh - Resolves: rhbz#1474711 - Querying the AD domain for external domain's ID can mark the AD domain offline - Resolves: rhbz#1479398 - samba shares with sssd authentication broken on 7.4 - Resolves: rhbz#1479983 - id root triggers an LDAP lookup - Resolves: rhbz#1489895 - Issues with certificate mapping rules - Resolves: rhbz#1490501 - sssd incorrectly checks 'try_inotify' thinking it is the wrong section - Resolves: rhbz#1490913 - MAN: Document that full_name_format must be set if the output of trusted domains user resolution should be shortnames only - Resolves: rhbz#1499659 - CVE-2017-12173 sssd: unsanitized input when searching in local cache database [rhel-7.5] - Resolves: rhbz#1461899 - Loading enterprise principals doesn't work with a primed cache - Resolves: rhbz#1482674 - SUDO doesn't work for IPA users on IPA clients after applying ID Views for them in IPA server - Resolves: rhbz#1486053 - Accessing IdM kerberos ticket fails while id mapping is applied - Resolves: rhbz#1486786 - sssd going in offline mode due to sudo search filter. - Resolves: rhbz#1500087 - SSSD creates bad override search filter due to AD Trust object with parenthesis - Resolves: rhbz#1502713 - SSSD can crash due to ABI changes in libldb >= 1.2.0 (1.1.30) - Resolves: rhbz#1461462 - sssd_client: add mutex protected call to the PAC responder - Resolves: rhbz#1489666 - Combination sssd-ad and postfix recieve incorrect mail with asterisks or spaces - Resolves: rhbz#1525052 - sssd_krb5_localauth_plugin fails to fallback to otheri localname rules- Require the 7.5 libldb version which broke ABI - Related: rhbz#1469791 - Rebase SSSD to version 1.16+- Resolves: rhbz#1457926 - Wrong search base used when SSSD is directly connected to AD child domain- Resolves: rhbz#1450107 - SSSD doesn't handle conflicts between users from trusted domains with the same name when shortname user resolution is enabled- Resolves: rhbz#1459846 - krb5: properly handle 'password expired' information retured by the KDC during PKINIT/Smartcard authentication- Resolves: rhbz#1430415 - ldap_purge_cache_timeout in RHEL7.3 invalidate most of the entries once the cleanup task kicks in- Resolves: rhbz#1455254 - Make domain available as user attribute- Resolves: rhbz#1449731 - IPA client cannot change AD Trusted User password- Resolves: rhbz#1457927 - getent failed to fetch netgroup information after changing default_domain_suffix to ADdomin in /etc/sssd/sssd.conf- Resolves: rhbz#1440132 - fiter_users and filter_groups stop working properly in v 1.15- Resolves: rhbz#1449728 - LDAP to IPA migration doesn't work in master- Resolves: rhbz#1445445 - Smart card login fails if same cert mapped to IdM user and AD user- Resolves: rhbz#1449729 - org.freedesktop.sssd.infopipe.GetUserGroups does not resolve groups into names with AD- Resolves: rhbz#1450094 - Properly support IPA's promptusername config option- Resolves: rhbz#1457644 - Segfault in access_provider = krb5 is set in sssd.conf due to an off-by-one error when constructing the child send buffer - Resolves: rhbz#1456531 - Option name typos are not detected with validator function of sssctl config-check command in domain sections- Resolves: rhbz#1428906 - sssd intermittently failing to resolve groups for an AD user in IPA-AD trust environment.- Resolves: rhbz#1389796 - Smartcard authentication with UPN as logon name might fail - Fix Coverity issues in patches for rhbz#1445445- Resolves: rhbz#1445445 - Smart card login fails if same cert mapped to IdM user and AD user- Resolves: rhbz#1446302 - crash in sssd-kcm due to a race-condition between two concurrent requests- Resolves: rhbz#1389796 - Smartcard authentication with UPN as logon name might fail- Resolves: rhbz#1306707 - Need better debug message when krb5_child returns an unhandled error, leading to a System Error PAM code- Resolves: rhbz#1446535 - Group resolution does not work in subdomain without ad_server option- Resolves: rhbz#1449726 - sss_nss_getlistbycert() does not return results from multiple domains - Resolves: rhbz#1447098 - sssd unable to search dbus for ipa user by certificate - Additional patch for rhbz#1440132- Reapply patch by Lukas Slebodnik to fix upgrade issues with libwbclient - Resolves: rhbz#1439457 - SSSD does not start after upgrade from 7.3 to 7.4 - Resolves: rhbz#1449107 - error: %pre(sssd-common-1.15.2-26.el7.x86_64) scriptlet failed, exit status 3- Resolves: rhbz#1440132 - fiter_users and filter_groups stop working properly in v 1.15 - Also apply an additional patch for rhbz#1441545- Resolves: rhbz#1445445 - Smart card login fails if same cert mapped to IdM user and AD user- Resolves: rhbz#1434992 - Wrong pam return code for user from subdomain with ad_access_filter- Resolves: rhbz#1430494 - expect sss_ssh_authorizedkeys and sss_ssh_knownhostsproxy manuals to be packaged into sssd-common package- Resolves: rhbz#1427749 - SSSD in server mode iterates over all domains for group-by-GID requests, causing unnecessary searches- Resolves: rhbz#1446139 - Infopipe method ListByCertificate does not return the users with overrides- Resolves: rhbz#1441545 - With multiple subdomain sections id command output for user is not displayed for both domains- Resolves: rhbz#1428866 - Using ad_enabled_domains configuration option in sssd.conf causes nameservice lookups to fail.- Remove an unused variable from the sssd-secrets responder - Related: rhbz#1398701 - [sssd-secrets] https proxy talks plain http - Improve two DEBUG messages in the client trust code to aid troubleshooting - Fix standalone application domains - Related: rhbz#1425891 - Support delivering non-POSIX users and groups through the IFP and PAM interfaces- Allow completely server-side unqualified name resolution if the domain order is set, do not require any client-side changes - Related: rhbz#1330196 - [RFE] Short name input format with SSSD for users from all domains when domain autodiscovery is used or when IPA client resolves trusted AD domain users- Resolves: rhbz#1402532 - D-Bus interface of sssd is giving inappropriate group information for trusted AD users- Resolves: rhbz#1431858 - Wrong principal found with ad provider and long host name- Resolves: rhbz#1415167 - pam_acct_mgmt with pam_sss.so fails in unprivileged container unless selinux_provider = none is used- Resolves: rhbz#1438388 - [abrt] [faf] sssd: unknown function(): /usr/libexec/sssd/sssd_pam killed by 6- Resolves: rhbz#1432112 - sssctl config-check does not give any error when default configuration file is not present- Resolves: rhbz#1438374 - [abrt] [faf] sssd: vfprintf(): /usr/libexec/sssd/sssd_be killed by 11- Resolves: rhbz#1427195 - sssd_nss consumes more memory until restarted or machine swaps- Resolves: rhbz#1414023 - Create troubleshooting tool to determine if a failure is in SSSD or not when using layered products like RH-SSO/CFME etc- Resolves: rhbz#1398701 - [sssd-secrets] https proxy talks plain http- Fix off-by-one error in the KCM responder - Related: rhbz#1396012 - [RFE] KCM ccache daemon in SSSD- Resolves: rhbz#1425891 - Support delivering non-POSIX users and groups through the IFP and PAM interfaces- Resolves: rhbz#1434991 - Issue processing ssh keys from certificates in ssh respoder- Resolves: rhbz#1330196 - [RFE] Short name input format with SSSD for users from all domains when domain autodiscovery is used or when IPA client resolves trusted AD domain users - Also backport some buildtime fixes for the KCM responder - Related: rhbz#1396012 - [RFE] KCM ccache daemon in SSSD- Resolves: rhbz#1396012 - [RFE] KCM ccache daemon in SSSD- Resolves: rhbz#1340711 - [RFE] Use one smartcard and certificate for authentication to distinct logon accounts- Update to upstream 1.15.2 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_2.html - Resolves: rhbz#1418728 - IPA - sudo does not handle associated conflict entries - Resolves: rhbz#1386748 - sssd doesn't update PTR records if A/PTR zones are configured as non-secure and secure - Resolves: rhbz#1214491 - [RFE] Make it possible to configure AD subdomain in the SSSD server mode- Drop "NOUPSTREAM: Bundle http-parser" patch Related: rhbz#1393819 - New package: http-parser- Update to upstream 1.15.1 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_1.html - Resolves: rhbz#1327085 - Don't prompt for password if there is already one on the stack - Resolves: rhbz#1378722 - [RFE] Make GETSIDBYNAME and GETORIGBYNAME request aware of UPNs and aliases - Resolves: rhbz#1405075 - [RFE] Add PKINIT support to SSSD Kerberos provider - Resolves: rhbz#1416526 - Need correction in sssd-krb5 man page - Resolves: rhbz#1418752 - pam_sss crashes in do_pam_conversation if no conversation function is provided by the client app - Resolves: rhbz#1419356 - Fails to accept any sudo rules if there are two user entries in an ldap role with the same sudo user - Resolves: rhbz#1421622 - SSSD - Users/Groups are cached as mixed-case resulting in users unable to sign in- Fix several packaging issues, notably the p11_child is no longer setuid and the libwbclient used a wrong version number in the symlink- Update to upstream 1.15.0 - Resolves: rhbz#1393824 - Rebase SSSD to version 1.15 - Resolves: rhbz#1407960 - wbcLookupSid() fails in pdomain is NULL - Resolves: rhbz#1406437 - sssctl netgroup-show Cannot allocate memory - Resolves: rhbz#1400422 - Use-after free in resolver in case the fd is writeable and readable at the same time - Resolves: rhbz#1393085 - bz - ldap group names don't resolve after upgrading sssd to 1.14.0 if ldap_nesting_level is set to 0 - Resolves: rhbz#1392444 - sssd_be keeps crashing - Resolves: rhbz#1392441 - sssd fails to start after upgrading to RHEL 7.3 - Resolves: rhbz#1382602 - autofs map resolution doesn't work offline - Resolves: rhbz#1380436 - sudo: ignore case on case insensitive domains - Resolves: rhbz#1378251 - Typo In SSSD-AD Man Page - Resolves: rhbz#1373427 - Clock skew makes SSSD return System Error - Resolves: rhbz#1306707 - Need better handling of "Server not found in Kerberos database" - Resolves: rhbz#1297462 - Don't include 'enable_only=sssd' in the localauth plugin config- Resolves: rhbz#1382598 - IPA: Uninitialized variable during subdomain check- Resolves: rhbz#1378911 - No supplementary groups are resolved for users in nested OUs when domain stanza differs from AD domain- Resolves: rhbz#1372075 - AD provider: SSSD does not retrieve a domain-local group with the AD provider when following AGGUDLP group structure across domains- Resolves: rhbz#1376831 - sssd-common is missing dependency on sssd-sudo- Resolves: rhbz#1371631 - login using gdm calls for gdm-smartcard when smartcard authentication is not enabled- Resolves: rhbz#1373420 - sss_override fails to export- Resolves: rhbz#1375299 - sss_groupshow fails with error "No such group in local domain. Printing groups only allowed in local domain"- Resolves: rhbz#1375182 - SSSD goes offline when the LDAP server returns sizelimit exceeded- Resolves: rhbz#1372753 - Access denied for user when access_provider = krb5 is set in sssd.conf- Resolves: rhbz#1373444 - unable to create group in sssd cache - Resolves: rhbz#1373577 - unable to add local user in sssd to a group in sssd- Resolves: rhbz#1369118 - Don't enable the default shadowtils domain in RHEL- Fix permissions for the private pipe directory - Resolves: rhbz#1362716 - selinux avc denial for vsftp login as ipa user- Resolves: rhbz#1371977 - resolving IPA nested user groups is broken in 1.14- Resolves: rhbz#1368496 - sssd is not able to authenticate with alias- Resolves: rhbz#1371152 - SSSD qualifies principal twice in IPA-AD trust if the principal attribute doesn't exist on the AD side- Apply forgotten patch - Resolves: rhbz#1368496 - sssd is not able to authenticate with alias - Resolves: rhbz#1366470 - sssd: throw away the timestamp cache if re-initializing the persistent cache - Fix deleting non-existent secret - Related: rhbz#1311056 - Add a Secrets as a Service component- Resolves: rhbz#1362716 - selinux avc denial for vsftp login as ipa user- Resolves: rhbz#1368496 - sssd is not able to authenticate with alias- Resolves: rhbz#1364033 - sssd exits if clock is adjusted backwards after boot- Resolves: rhbz#1362023 - SSSD fails to start when ldap_user_extra_attrs contains mail- Resolves: rhbz#1368324 - libsss_autofs.so is packaged in two packages sssd-common and libsss_autofs- Fix RPM scriptlet plumbing for the sssd-secrets responder - Related: rhbz#1311056 - Add a Secrets as a Service component- Add socket-activation plumbing for the sssd-secrets responder - Related: rhbz#1311056 - Add a Secrets as a Service component- Own the secrets directory - Related: rhbz#1311056 - Add a Secrets as a Service component- Resolves: rhbz#1268874 - Add an option to disable checking for trusted domains in the subdomains provider- Resolves: rhbz#1271280 - sssd stores and returns incorrect information about empty netgroup (ldap-server: 389-ds)- Resolves: rhbz#1290500 - [feat] command to manually list fo_add_server_to_list information- Add several small fixes related to the config API - Related: rhbz#1072458 - [RFE] SSSD configuration file test tool (sssd_check)- Resolves: rhbz#1349900 - gpo search errors out and gpo_cache file is never created- Fix regressions in the simple access provider - Resolves: rhbz#1360806 - sssd does not start if sub-domain user is used with simple access provider - Apply a number of specfile patches to better match the upstream spefile - Related: rhbz#1290381 - Rebase SSSD to 1.14.x in RHEL-7.3- Cherry-pick patches from upstream that fix several regressions - Avoid checking local users in all cases - Resolves: rhbz#1353951 - sssd_pam leaks file descriptors- Resolves: rhbz#1364118 - [abrt] [faf] sssd: unknown function(): /usr/libexec/sssd/sssd_nss killed by 11 - Resolves: rhbz#1361563 - Wrong pam error code returned for password change in offline mode- Resolves: rhbz#1309745 - Support multiple principals for IPA users- Resolves: rhbz#1304992 - Handle overriden name of members in the memberUid attribute- handle unresolvable sites more gracefully - Resolves: rhbz#1346011 - sssd is looking at a server in the GC of a subdomain, not the root domain. - fix compilation warnings in unit tests- fix capaths output - Resolves: rhbz#1344940 - GSSAPI error causes failures for child domain user logins across IPA - AD trust - also fix Coverity issues in the secrets responder and suppress noisy debug messages when setting the timestamp cache- Resolves: rhbz#1356577 - sssctl: Time stamps without time zone information- Resolves: rhbz#1354414 - New or modified ID-View User overrides are not visible unless rm -f /var/lib/sss/db/*cache*- Resolves: rhbz#1211631 - [RFE] Support of UPN for IdM trusted domains- Resolves: rhbz#1350520 - [abrt] sssd-common: ipa_dyndns_update_send(): sssd_be killed by SIGSEGV- Resolves: rhbz#1349882 - sssd does not work under non-root user - Also cherry-pick a few patches from upstream to fix config schema - Related: rhbz#1072458 - [RFE] SSSD configuration file test tool (sssd_check)- Sync a few minor patches from upstream - Fix sssctl manpage - Fix nss-tests unit test on big-endian machines - Fix several issues in the config schema - Related: rhbz#1072458 - [RFE] SSSD configuration file test tool (sssd_check)- Bundle http-parser - Resolves: rhbz#1311056 - Add a Secrets as a Service component- Sync a few minor patches from upstream - Fix a failover issue - Resolves: rhbz#1334749 - sssd fails to mark a connection as bad on searches that time out- Explicitly BuildRequire newer ding-libs - Resolves: rhbz#1072458 - [RFE] SSSD configuration file test tool (sssd_check)- New upstream release 1.14.0 - Resolves: rhbz#1290381 - Rebase SSSD to 1.14.x in RHEL-7.3 - Resolves: rhbz#835492 - [RFE] SSSD admin tool request - force reload - Resolves: rhbz#1072458 - [RFE] SSSD configuration file test tool (sssd_check) - Resolves: rhbz#1278691 - Please fix rfc2307 autofs schema defaults - Resolves: rhbz#1287209 - default_domain_suffix Appended to User Name - Resolves: rhbz#1300663 - Improve sudo protocol to support configurations with default_domain_suffix - Resolves: rhbz#1312275 - Support authentication indicators from IPA- Resolves: rhbz#1290381 - Rebase SSSD to 1.14.x in RHEL-7.3 - Resolves: rhbz#790113 - [RFE] "include" directive in sssd.conf - Resolves: rhbz#874985 - [RFE] AD provider support for automount lookups - Resolves: rhbz#879333 - [RFE] SSSD admin tool request - status overview - Resolves: rhbz#1140022 - [RFE]Allow sssd to add a new option that would specify which server to update DNS with - Resolves: rhbz#1290380 - RFE: Improve SSSD performance in large environments - Resolves: rhbz#883886 - sssd: incorrect checks on length values during packet decoding - Resolves: rhbz#988207 - sssd does not detail which line in configuration is invalid - Resolves: rhbz#1007969 - sssd_cache does not remove have an option to remove the sssd database - Resolves: rhbz#1103249 - PAC responder needs much time to process large group lists - Resolves: rhbz#1118257 - Users in ipa groups, added to netgroups are not resovable - Resolves: rhbz#1269018 - Too much logging from sssd_be - Resolves: rhbz#1293695 - sssd mixup nested group from AD trusted domains - Resolves: rhbz#1308935 - After removing certificate from user in IPA and even after sss_cache, FindByCertificate still finds the user - Resolves: rhbz#1315766 - SSSD PAM module does not support multiple password prompts (e.g. Password + Token) with sudo - Resolves: rhbz#1316164 - SSSD fails to process GPO from Active Directory - Resolves: rhbz#1322458 - sssd_be[11010]: segfault at 0 ip 00007ff889ff61bb sp 00007ffc7d66a3b0 error 4 in libsss_ipa.so[7ff889fcf000+5d000]- Resolves: rhbz#1290381 - Rebase SSSD to 1.14.x in RHEL-7.3 - The rebase includes fixes for the following bugzillas: - Resolves: rhbz#789477 - [RFE] SUDO: Support the IPA schema - Resolves: rhbz#1059972 - RFE: SSSD: Automatically assign new slices for any AD domain - Resolves: rhbz#1233200 - man sssd.conf should clarify details about subdomain_inherit option. - Resolves: rhbz#1238144 - Need better libhbac debuging added to sssd - Resolves: rhbz#1265366 - sss_override segfaults when accidentally adding --help flag to some commands - Resolves: rhbz#1269512 - sss_override: memory violation - Resolves: rhbz#1278566 - crash in sssd when non-Englsh locale is used and pam_strerror prints non-ASCII characters - Resolves: rhbz#1283686 - groups get deleted from the cache - Resolves: rhbz#1290378 - Smart Cards: Certificate in the ID View - Resolves: rhbz#1292238 - extreme memory usage in libnfsidmap sss.so plug-in when resolving groups with many members - Resolves: rhbz#1292456 - sssd_be AD segfaults on missing A record - Resolves: rhbz#1294670 - Local users with local sudo rules causes LDAP queries - Resolves: rhbz#1296618 - Properly remove OriginalMemberOf attribute in SSSD cache if user has no secondary groups anymore - Resolves: rhbz#1299553 - Cannot retrieve users after upgrade from 1.12 to 1.13 - Resolves: rhbz#1302821 - Cannot start sssd after switching to non-root - Resolves: rhbz#1310877 - [RFE] Support Automatic Renewing of Kerberos Host Keytabs - Resolves: rhbz#1313014 - sssd is not closing sockets properly - Resolves: rhbz#1318996 - SSSD does not fail over to next GC - Resolves: rhbz#1327270 - local overrides: issues with sub-domain users and mixed case names - Resolves: rhbz#1342547 - sssd-libwbclient: wbcSidsToUnixIds should not fail on lookup errors- Build the PAC plugin with krb5-1.14 - Related: rhbz#1336688 - sssd tries to resolve global catalog servers from AD forest sub-domains in AD-IPA trust setup- Resolves: rhbz#1336688 - sssd tries to resolve global catalog servers from AD forest sub-domains in AD-IPA trust setup- Resolves: rhbz#1290853 - [sssd] Trusted (AD) user's info stays in sssd cache for much more than expected.- Resolves: rhbz#1336706 - sssd_nss memory usage keeps growing when trying to retrieve non-existing netgroups- Resolves: rhbz#1296902 - In IPA-AD trust environment access is granted to AD user even if the user is disabled on AD.- Resolves: rhbz#1334159 - IPA provider crashes if a netgroup from a trusted domain is requested- Resolves: rhbz#1308913 - sssd be memory leak in sssd's memberof plugin - More patches from upstream related to the memory leak- Resolves: rhbz#1308913 - sssd be memory leak in sssd's memberof plugin- Resolves: rhbz#1300740 - [RFE] IPA: resolve external group memberships of IPA groups during getgrnam and getgrgid- Resolves: rhbz#1284814 - sssd: [sysdb_add_user] (0x0400): Error: 17- Resolves: rhbz#1270827 - local overrides: don't contact server with overridden name/id- Resolves: rhbz#1267837 - sssd_be crashed in ipa_srv_ad_acct_lookup_step- Resolves: rhbz#1267176 - Memory leak / possible DoS with krb auth.- Resolves: rhbz#1267836 - PAM responder crashed if user was not set- Resolves: rhbz#1266107 - AD: Conditional jump or move depends on uninitialised value- Resolves: rhbz#1250135 - Detect re-established trusts in the IPA subdomain code- Fix a Coverity warning in dyndns code - Resolves: rhbz#1261155 - nsupdate exits on first GSSAPI error instead of processing other commands- Resolves: rhbz#1261155 - nsupdate exits on first GSSAPI error instead of processing other commands- Resolves: rhbz#1263735 - Could not resolve AD user from root domain- Remove -d from sss_override manpage - Related: rhbz#1259512 - sss_override : The local override user is not found- Patches required for better handling of failover with one-way trusts - Related: rhbz#1250135 - Detect re-established trusts in the IPA subdomain code- Resolves: rhbz#1263587 - sss_override --name doesn't work with RFC2307 and ghost users- Resolves: rhbz#1259512 - sss_override : The local override user is not found- Resolves: rhbz#1260027 - sssd_be memory leak with sssd-ad in GPO code- Resolves: rhbz#1256398 - sssd cannot resolve user names containing backslash with ldap provider- Resolves: rhbz#1254189 - sss_override contains an extra parameter --debug but is not listed in the man page or in the arguments help- Resolves: rhbz#1254518 - Fix crash in nss responder- Support import/export for local overrides - Support FQDNs for local overrides - Resolves: rhbz#1254184 - sss_override does not work correctly when 'use_fully_qualified_names = True'- Resolves: rhbz#1244950 - Add index for 'objectSIDString' and maybe to other cache attributes- Resolves: rhbz#1250415 - sssd: p11_child hardening- Related: rhbz#1250135 - Detect re-established trusts in the IPA subdomain code- Resolves: rhbz#1202724 - [RFE] Add a way to lookup users based on CAC identity certificates- Resolves: rhbz#1232950 - [IPA/IdM] sudoOrder not honored as expected- Fix wildcard_limit=0 - Resolves: rhbz#1206571 - [RFE] Expose D-BUS interface- Fix race condition in invalidating the memory cache - Related: rhbz#1206575 - [RFE] The fast memory cache should cache initgroups- Resolves: rhbz#1249015 - KDC proxy not working with SSSD krb5_use_kdcinfo enabled- Bump release number - Related: rhbz#1246489 - sss_obfuscate fails with "ImportError: No module named pysss"- Fix missing dependency of sssd-tools - Resolves: rhbz#1246489 - sss_obfuscate fails with "ImportError: No module named pysss"- More memory cache related fixes - Related: rhbz#1206575 - [RFE] The fast memory cache should cache initgroups- Remove binary blob from SC patches as patch(1) can't handle those - Related: rhbz#854396 - [RFE] Support for smart cards- Resolves: rhbz#1244949 - getgrgid for user's UID on a trust client prevents getpw*- Fix memory cache integration tests - Resolves: rhbz#1206575 - [RFE] The fast memory cache should cache initgroups - Resolves: rhbz#854396 - [RFE] Support for smart cards- Remove OTP from PAM stack correctly - Related: rhbz#1200873 - [RFE] Allow smart multi step prompting when user logs in with password and token code from IPA - Handle sssd-owned keytabs when sssd runs as root - Related: rhbz#1205144 - RFE: Support one-way trusts for IPA- Resolves: rhbz#1183747 - [FEAT] UID and GID mapping on individual clients- Resolves: rhbz#1206565 - [RFE] Add dualstack and multihomed support - Resolves: rhbz#1187146 - If v4 address exists, will not create nonexistant v6 in ipa domain- Resolves: rhbz#1242942 - well-known SID check is broken for NetBIOS prefixes- Resolves: rhbz#1234722 - sssd ad provider fails to start in rhel7.2- Add support for InfoPipe wildcard requests - Resolves: rhbz#1206571 - [RFE] Expose D-BUS interface- Also package the initgr memcache - Related: rhbz#1205554 - Rebase SSSD to 1.13.x- Rebase to 1.13.0 upstream - Related: rhbz#1205554 - Rebase SSSD to 1.13.x - Resolves: rhbz#910187 - [RFE] authenticate against cache in SSSD - Resolves: rhbz#1206575 - [RFE] The fast memory cache should cache initgroups- Don't default to SSSD user - Related: rhbz#1205554 - Rebase SSSD to 1.13.x- Related: rhbz#1205554 - Rebase SSSD to 1.13.x - GPO default should be permissve- Resolves: rhbz#1205554 - Rebase SSSD to 1.13.x - Relax the libldb requirement - Resolves: rhbz#1221992 - sssd_be segfault at 0 ip sp error 6 in libtevent.so.0.9.21 - Resolves: rhbz#1221839 - SSSD group enumeration inconsistent due to binary SIDs - Resolves: rhbz#1219285 - Unable to resolve group memberships for AD users when using sssd-1.12.2-58.el7_1.6.x86_64 client in combination with ipa-server-3.0.0-42.el6.x86_64 with AD Trust - Resolves: rhbz#1217559 - [RFE] Support GPOs from different domain controllers - Resolves: rhbz#1217350 - ignore_group_members doesn't work for subdomains - Resolves: rhbz#1217127 - Override for IPA users with login does not list user all groups - Resolves: rhbz#1216285 - autofs provider fails when default_domain_suffix and use_fully_qualified_names set - Resolves: rhbz#1214719 - Group resolution is inconsistent with group overrides - Resolves: rhbz#1214718 - Overridde with --login fails trusted adusers group membership resolution - Resolves: rhbz#1214716 - idoverridegroup for ipa group with --group-name does not work - Resolves: rhbz#1214337 - Overrides with --login work in second attempt - Resolves: rhbz#1212489 - Disable the cleanup task by default - Resolves: rhbz#1211830 - external users do not resolve with "default_domain_suffix" set in IPA server sssd.conf - Resolves: rhbz#1210854 - Only set the selinux context if the context differs from the local one - Resolves: rhbz#1209483 - When using id_provider=proxy with auth_provider=ldap, it does not work as expected - Resolves: rhbz#1209374 - Man sssd-ad(5) lists Group Policy Management Editor naming for some policies but not for all - Resolves: rhbz#1208507 - sysdb sudo search doesn't escape special characters - Resolves: rhbz#1206571 - [RFE] Expose D-BUS interface - Resolves: rhbz#1206566 - SSSD does not update Dynamic DNS records if the IPA domain differs from machine hostname's domain - Resolves: rhbz#1206189 - [bug] sssd always appends default_domain_suffix when checking for host keys - Resolves: rhbz#1204203 - sssd crashes intermittently - Resolves: rhbz#1203945 - [FJ7.0 Bug]: getgrent returns error because sss is written in nsswitch.conf as default - Resolves: rhbz#1203642 - GPO access control looks for computer object in user's domain only - Resolves: rhbz#1202245 - SSSD's HBAC processing is not permissive enough with broken replication entries - Resolves: rhbz#1201271 - sssd_nss segfaults if initgroups request is by UPN and doesn't find anything - Resolves: rhbz#1200873 - [RFE] Allow smart multi step prompting when user logs in with password and token code from IPA - Resolves: rhbz#1199541 - Read and use the TTL value when resolving a SRV query - Resolves: rhbz#1199533 - [RFE] Implement background refresh for users, groups or other cache objects - Resolves: rhbz#1199445 - Does sssd-ad use the most suitable attribute for group name? - Resolves: rhbz#1198477 - ccname_file_dummy is not unlinked on error - Resolves: rhbz#1187103 - [RFE] User's home directories are not taken from AD when there is an IPA trust with AD - Resolves: rhbz#1185536 - In ipa-ad trust, with 'default_domain_suffix' set to AD domain, IPA user are not able to log unless use_fully_qualified_names is set - Resolves: rhbz#1175760 - [RFE] Have OpenLDAP lock out ssh keys when account naturally expires - Resolves: rhbz#1163806 - [RFE]ad provider dns_discovery_domain option: kerberos discovery is not using this option - Resolves: rhbz#1205160 - Complain loudly if backend doesn't start due to missing or invalid keytab- Resolves: rhbz#1226119 - Properly handle AD's binary objectGUID- Filter out domain-local groups during AD initgroups operation - Related: rhbz#1201840 - SSSD downloads too much information when fetching information about groups- Resolves: rhbz#1201840 - SSSD downloads too much information when fetching information about groups- Initialize variable in the views code in one success and one failure path - Resolves: rhbz#1202170 - sssd_be segfault on IPA(when auth with AD trusted domain) client at src/providers/ipa/ipa_s2n_exop.c:1605- Resolves: rhbz#1202170 - sssd_be segfault on IPA(when auth with AD trusted domain) client at src/providers/ipa/ipa_s2n_exop.c:1605- Handle case where there is no default and no rules - Resolves: rhbz#1192314 - With empty ipaselinuxusermapdefault security context on client is staff_u- Set a pointer in ldap_child to NULL to avoid warnings - Related: rhbz#1198759 - ccname_file_dummy is not unlinked on error- Resolves: rhbz#1199143 - With empty ipaselinuxusermapdefault security context on client is staff_u- Resolves: rhbz#1198759 - ccname_file_dummy is not unlinked on error- Run the restart in sssd-common posttrans - Explicitly require libwbclient - Resolves: rhbz#1187113 - sssd deamon was not running after RHEL 7.1 upgrade- Resolves: rhbz#1187113 - sssd deamon was not running after RHEL 7.1 upgrade- Fix endianess bug in fill_id() - Related: rhbz#1109331 - [RFE] Allow SSSD to be used with smbd shares- Resolves: rhbz#1168904 - gid is overridden by uid in default trust view- Resolves: rhbz#1187192 - IPA initgroups don't work correctly in non-default view- Resolves: rhbz#1184982 - Need to set different umask in selinux_child- Bump the release number - Related: rhbz#1184140 - Users saved throug extop don't have the originalMemberOf attribute- Add a patch dependency - Related: rhbz#1184140 - Users saved throug extop don't have the originalMemberOf attribute- Process ghost members only once - Fix processing of universal groups with members from different domains - Related: rhbz#1168904 - gid is overridden by uid in default trust view- Related: rhbz#1184140 - Users saved throug extop don't have the originalMemberOf attribute- Resolves: rhbz#1185188 - Uncached SIDs cannot be resolved- Handle GID override in MPG domains - Handle views with mixed-case domains - Related: rhbz#1168904 - gid is overridden by uid in default trust view- Open socket to the PAC responder in krb5_child before dropping root - Related: rhbz#1184140 - Users saved throug extop don't have the originalMemberOf attribute- Resolves: rhbz#1184140 - Users saved throug extop don't have the originalMemberOf attribute- Resolves: rhbz#1182183 - pam_sss(sshd:auth): authentication failure with user from AD- Resolves: rhbz#889206 - On clock skew sssd returns system error- Related: rhbz#1168904 - gid is overridden by uid in default trust view- Resolves: rhbz#1177140 - gpo_child fails if "log level" is enabled in smb.conf - Related: rhbz#1168904 - gid is overridden by uid in default trust view- Resolves: rhbz#1175408 - SSSD should not fail authentication when only allow rules are used - Resolves: rhbz#1175705 - sssd-libwbclient conflicts with Samba's and causes crash in wbinfo - in addition to the patch libwbclient.so is filtered out of the Provides list of the package- Resolves: rhbz#1171215 - Crash in function get_object_from_cache - Resolves: rhbz#1171383 - getent fails for posix group with AD users after login - Resolves: rhbz#1171382 - getent of AD universal group fails after group users login - Resolves: rhbz#1170300 - Access is not rejected for disabled domain - Resolves: rhbz#1162486 - Error processing external groups with getgrnam/getgrgid in the server mode - Resolves: rhbz#1168904 - gid is overridden by uid in default trust view- Resolves: rhbz#1169459 - sssd-ad: The man page description to enable GPO HBAC Policies are unclear - Related: rhbz#1113783 - sssd should run under unprivileged user- Rebuild to add several forgotten Patch entries - Resolves: rhbz#1173482 - MAN: Document that only user names are checked for pam_trusted_users - Resolves: rhbz#1167324 - pam_sss domains option: User auth should fail when domains=- Remove Coverity warnings in krb5_child code - Related: rhbz#1113783 - sssd should run under unprivileged user- Resolves: rhbz#1173482 - MAN: Document that only user names are checked for pam_trusted_users - Resolves: rhbz#1167324 - pam_sss domains option: User auth should fail when domains=- Don't error out on chpass with OTPs - Related: rhbz#1109756 - Rebase SSSD to 1.12- Resolves: rhbz#1124320 - [FJ7.0 Bug]: getgrent returns error because sss is written in nsswitch.conf as default.- Resolves: rhbz#1169739 - selinuxusermap rule does not apply to trusted AD users - Enable running unit tests without cmocka - Related: rhbz#1113783 - sssd should run under unprivileged user- krb5_child and ldap_child do not call Kerberos calls as root - Related: rhbz#1113783 - sssd should run under unprivileged user- Resolves: rhbz#1168735 - The Kerberos provider is not properly views-aware- Fix typo in libwbclient-devel alternatives invocation - Related: rhbz#1109331 - [RFE] Allow SSSD to be used with smbd shares- Resolves: rhbz#1166727 - pam_sss domains option: Untrusted users from the same domain are allowed to auth.- Handle migrating clients between views - Related: rhbz#891984 - [RFE] ID Views: Support migration from the sync solution to the trust solution- Use alternatives for libwbclient - Related: rhbz#1109331 - [RFE] Allow SSSD to be used with smbd shares- Resolves: rhbz#1165794 - sssd does not work with custom value of option re_expression- Add an option that describes where to put generated krb5 files to - Related: rhbz#1135043 - [RFE] Implement localauth plugin for MIT krb5 1.12- Handle IPA group names returned from the extop plugin - Related: rhbz#891984 - [RFE] ID Views: Support migration from the sync solution to the trust solution- Resolves: rhbz#1165792 - automount segfaults in sss_nss_check_header- Resolves: rhbz#1163742 - "debug_timestamps = false" and "debug_microseconds = true" do not work after enabling journald with sssd.- Resolves: rhbz#1153593 - Manpage description of case_sensitive=preserving is incomplete- Support views for IPA users - Related: rhbz#891984 - [RFE] ID Views: Support migration from the sync solution to the trust solution- Update man page to clarify TGs should be disabled with a custom search base - Related: rhbz#1161741 - TokenGroups for LDAP provider breaks in corner cases- Use upstreamed patches for the rootless sssd - Related: rhbz#1113783 - sssd should run under unprivileged user- Resolves: rhbz#1153603 - Proxy Provider: Fails to lookup case sensitive users and groups with case_sensitive=preserving- Resolves: rhbz#1161741 - TokenGroups for LDAP provider breaks in corner cases- Resolves: rhbz#1162480 - dereferencing failure against openldap server- Move adding the user from pretrans to pre, copy adding the user to sssd-krb5-common and sssd-ipa as well in order to work around yum ordering issue - Related: rhbz#1113783 - sssd should run under unprivileged user- Resolves: rhbz#1113783 - sssd should run under unprivileged user- Fix two regressions in the new selinux_child process - Related: rhbz#1113783 - sssd should run under unprivileged user - Resolves: rhbz#1132365 - Remove password from the PAM stack if OTP is used- Include the ldap_child and selinux_child patches for rootless sssd - Related: rhbz#1113783 - sssd should run under unprivileged user- Support overriding SSH public keys with views - Support extended attributes via the extop plugin - Related: rhbz#1109756 - Rebase SSSD to 1.12 - Resolves: rhbz#1137010 - disable midpoint refresh for netgroups if ptask refresh is enabled- Resolves: rhbz#1153518 - service lookups returned in lowercase with case_sensitive=preserving - Resolves: rhbz#1158809 - Enumeration shows only a single group multiple times- Include the responder and packaging patches for rootless sssd - Related: rhbz#1113783 - sssd should run under unprivileged user- Amend the sssd-ldap man page with info about lockout setup - Related: rhbz#1109756 - Rebase SSSD to 1.12 - Resolves: rhbz#1137014 - Shell fallback mechanism in SSSD - Resolves: rhbz#790854 - 4 functions with reference leaks within sssd (src/python/pyhbac.c)- Fix regressions caused by views patches when SSSD is connected to a pre-4.0 IPA server - Related: rhbz#1109756 - Rebase SSSD to 1.12- Add the low-level server changes for running as unprivileged user - Package the libsss_semange library needed for SELinux label changes - Related: rhbz#1113783 - sssd should run under unprivileged user - Resolves: rhbz#1113784 - sssd should audit selinux user map changes- Use libsemanage for SELinux label changes - Resolves: rhbz#1113784 - sssd should audit selinux user map changes- Rebase SSSD to 1.12.2 - Related: rhbz#1109756 - Rebase SSSD to 1.12- Sync with upstream - Related: rhbz#1109756 - Rebase SSSD to 1.12- Rebuild against ding-libs with fixed SONAME - Related: rhbz#1109756 - Rebase SSSD to 1.12- Rebase SSSD to 1.12.1 - Related: rhbz#1109756 - Rebase SSSD to 1.12- Require ldb 2.1.17 - Related: rhbz#1133914 - Rebase libldb to version 1.1.17 or newer- Fix fully qualified IFP lookups - Related: rhbz#1109756 - Rebase SSSD to 1.12- Rebase SSSD to 1.12.0 - Related: rhbz#1109756 - Rebase SSSD to 1.12- Squash in upstream review comments about the PAC patch - Related: rhbz#1097286 - Expanding home directory fails when the request comes from the PAC responder- Backport a patch to allow krb5-utils-test to run as root - Related: rhbz#1097286 - Expanding home directory fails when the request comes from the PAC responder- Resolves: rhbz#1097286 - Expanding home directory fails when the request comes from the PAC responder- Fix a DEBUG message, backport two related fixes - Related: rhbz#1090653 - segfault in sssd_be when second domain tree users are queried while joined to child domain- Resolves: rhbz#1090653 - segfault in sssd_be when second domain tree users are queried while joined to child domain- Resolves: rhbz#1082191 - RHEL7 IPA selinuxusermap hbac rule not always matching- Resolves: rhbz#1077328 - other subdomains are unavailable when joined to a subdomain in the ad forest- Resolves: rhbz#1078877 - Valgrind: Invalid read of int while processing netgroup- Resolves: rhbz#1075092 - Password change w/ OTP generates error on success- Resolves: rhbz#1078840 - Error during password change- Resolves: rhbz#1075663 - SSSD should create the SELinux mapping file with format expected by pam_selinux- Related: rhbz#1075621 - Add another Kerberos error code to trigger IPA password migration- Related: rhbz#1073635 - IPA SELinux code looks for the host in the wrong sysdb subdir when a trusted user logs in- Related: rhbz#1066096 - not retrieving homedirs of AD users with posix attributes- Related: rhbz#1072995 - AD group inconsistency when using AD provider in sssd-1.11-40- Resolves: rhbz#1073631 - sssd fails to handle expired passwords when OTP is used- Resolves: rhbz#1072067 - SSSD Does not cache SELinux map from FreeIPA correctly- Resolves: rhbz#1071903 - ipa-server-mode: Use lower-case user name component in home dir path- Resolves: rhbz#1068725 - Evaluate usage of sudo LDAP provider together with the AD provider- Fix idmap documentation - Bump idmap version info - Related: rhbz#1067361 - Check IPA idranges before saving them to the cache- Pull some follow up man page fixes from upstream - Related: rhbz#1060389 - Document that `sssd` cache needs to be cleared manually, if ID mapping configuration changes - Related: rhbz#1064908 - MAN: Remove misleading memberof example from ldap_access_filter example- Resolves: rhbz#1060389 - Document that `sssd` cache needs to be cleared manually, if ID mapping configuration changes- Resolves: rhbz#1064908 - MAN: Remove misleading memberof example from ldap_access_filter example- Resolves: rhbz#1068723 - Setting int option to 0 yields the default value- Resolves: rhbz#1067361 - Check IPA idranges before saving them to the cache- Resolves: rhbz#1067476 - SSSD pam module accepts usernames with leading spaces- Resolves: rhbz#1033069 - Configuring two different provider types might start two parallel enumeration tasks- Resolves: rhbz#1068640 - 'IPA: Don't call tevent_req_post outside _send' should be added to RHEL7- Resolves: rhbz#1063977 - SSSD needs to enable FAST by default- Resolves: rhbz#1064582 - sss_cache does not reset the SYSDB_INITGR_EXPIRE attribute when expiring users- Resolves: rhbz#1033081 - Implement heuristics to detect if POSIX attributes have been replicated to the Global Catalog or not- Resolves: rhbz#872177 - [RFE] subdomain homedir template should be configurable/use flatname by default- Resolves: rhbz#1059753 - Warn with a user-friendly error message when permissions on sssd.conf are incorrect- Resolves: rhbz#1037653 - Enabling ldap_id_mapping doesn't exclude uidNumber in filter- Resolves: rhbz#1059253 - Man page states default_shell option supersedes other shell options but in fact override_shell does. - Use the right domain for AD site resolution - Related: rhbz#743503 - [RFE] sssd should support DNS sites- Resolves: rhbz#1028039 - AD Enumeration reads data from LDAP while regular lookups connect to GC- Resolves: rhbz#877438 - sudoNotBefore/sudoNotAfter not supported by sssd sudoers plugin- Mass rebuild 2014-01-24- Resolves: rhbz#1054639 - sssd_be aborts a request if it doesn't match any configured idmap domain- Resolves: rhbz#1054899 - explicitly suggest krb5_auth_timeout in a loud DEBUG message in case Kerberos authentication times out- Resolves: rhbz#1037653 - Enabling ldap_id_mapping doesn't exclude uidNumber in filter- Resolves: rhbz#1051360 - [FJ7.0 Bug]: [REG] sssd_be crashes when ldap_search_base cannot be parsed. - Fix a typo in the man page - Related: rhbz#1034920 - RHEL7 sssd not setting IPA AD trusted user homedir- Resolves: rhbz#1054639 - sssd_be aborts a request if it doesn't match any configured idmap domain - Fix return value when searching for AD domain flat names - Resolves: rhbz#1048102 - Access denied for users from gc domain when using format DOMAIN\user- Resolves: rhbz#1034920 - RHEL7 sssd not setting IPA AD trusted user homedir- Resolves: rhbz#1048102 - Access denied for users from gc domain when using format DOMAIN\user- Resolves: rhbz#1053106 - sssd ad trusted sub domain do not inherit fallbacks and overrides settings- Resolves: rhbz#1051016 - FAST does not work in SSSD 1.11.2 in Fedora 20- Resolves: rhbz#1033133 - "System Error" when invalid ad_access_filter is used- Resolves: rhbz#1032983 - sssd_be crashes when ad_access_filter uses FOREST keyword. - Fix two memory leaks in the PAC responder (Related: rhbz#991065)- Resolves: rhbz#1048184 - Group lookup does not return member with multiple names after user lookup- Resolves: rhbz#1049533 - Group membership lookup issue- Mass rebuild 2013-12-27- Resolves: rhbz#894068 - sss_cache doesn't support subdomains- Re-initialize subdomains after provider startup - Related: rhbz#1038637 - If SSSD starts offline, subdomains list is never read- The AD provider is able to resolve group memberships for groups with Global and Universal scope - Related: rhbz#1033096 - tokenGroups do not work reliable with Global Catalog- Resolves: rhbz#1033096 - tokenGroups do not work reliable with Global Catalog - Resolves: rhbz#1030483 - Individual group search returned multiple results in GC lookups- Resolves: rhbz#1040969 - sssd_nss grows memory footprint when netgroups are requested- Resolves: rhbz#1023409 - Valgrind sssd "Syscall param socketcall.sendto(msg) points to uninitialised byte(s)"- Resolves: rhbz#1037936 - sssd_be crashes occasionally- Resolves: rhbz#1038637 - If SSSD starts offline, subdomains list is never read- Resolves: rhbz#1029631 - sssd_be crashes on manually adding a cleartext password to ldap_default_authtok- Resolves: rhbz#1036758 - SSSD: Allow for custom attributes in RDN when using id_provider = proxy- Resolves: rhbz#1034050 - Errors in domain log when saving user to sysdb- Resolves: rhbz#1036157 - sssd can't retrieve auto.master when using the "default_domain_suffix" option in- Resolves: rhbz#1028057 - Improve detection of the right domain when processing group with members from several domains- Resolves: rhbz#1033084 - sssd_be segfaults if empty grop is resolved using ad_matching_rule- Resolves: rhbz#1031562 - Incorrect mention of access_filter in sssd-ad manpage- Resolves: rhbz#991549 - sssd fails to retrieve netgroups with multiple CN attributes- Skip netgroups that don't provide well-formed triplets - Related: rhbz#991549 - sssd fails to retrieve netgroups with multiple CN attributes- New upstream release 1.11.2 - Remove upstreamed patches - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.2 - Resolves: rhbz#991065- Resolves: rhbz#1019882 - RHEL7 ipa ad trusted user lookups failed with sssd_be crash - Resolves: rhbz#1002597 - ad: unable to resolve membership when user is from different domain than group- New upstream release 1.11.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.1 - Resolves: rhbz#991065 - Rebase SSSD to 1.11.0- New upstream release 1.11.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0 - Resolves: rhbz#991065- New upstream release 1.11 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0beta2 - Related: rhbz#991065- Resolves: #906427 - Do not use %{_lib} in specfile for the nss and pam libraries- Resolves: #983587 - sss_debuglevel did not increase verbosity in sssd_pac.log- Resolves: #983580 - Netgroups should ignore the 'use_fully_qualified_names' setting- Apply several important fixes from upstream 1.10 branch - Related: #966757 - SSSD failover doesn't work if the first DNS server in resolv.conf is unavailable- New upstream release 1.10.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.1- Remove libcmocka dependency- sssd-tools should require sssd-common, not sssd- Move sssd_pac to the sssd-ipa and sssd-ad subpackages - Trim out RHEL5-specific macros since we don't build on RHEL 5 - Trim out macros for Fedora older than F18 - Update libldb requirement to 1.1.16 - Trim RPM changelog down to the last year- Move sssd_pac to the sssd-krb5 subpackage- Fix Obsoletes: to account for dist tag - Convert post and pre scripts to run on the sssd-common subpackage - Remove old conversion from SYSV- New upstream release 1.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0- the cmocka toolkit exists only on selected arches- Apply a number of patches from upstream to fix issues found post-beta, in particular: -- segfault with a high DEBUG level -- Fix IPA password migration (upstream #1873) -- Fix fail over when retrying SRV resolution (upstream #1886)- Only BuildRequire libcmocka on Fedora- Fix typo in Requires that prevented an upgrade (#973916) - Use a hardcoded version in Conflicts, not less-than-current- New upstream release 1.10 beta2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta2 - BuildRequire libcmocka-devel in order to run all upstream tests during build - BuildRequire libnl3 instead of libnl1 - No longer BuildRequire initscripts, we no longer use /sbin/service - Remove explicit krb5-libs >= 1.10 requires; this platform doensn't carry any older krb5-libs version- Enable hardened build for RHEL7- Apply a couple of patches from upstream git that resolve crashes when ID mapping object was not initialized properly but needed later- Resolves: rhbz#961357 - Missing dyndns_update entry in sssd.conf during realm join - Resolves: rhbz#961278 - Login failure: Enterprise Principal enabled by default for AD Provider - Resolves: rhbz#961251 - sssd does not create user's krb5 ccache dir/file parent directory when logging in- Explicitly Require libini_config >= 1.0.0.1 to work around a SONAME bug in ding-libs - Fix SSH integration with fully-qualified domains - Add the ability to dynamically discover the NetBIOS name- New upstream release 1.10 beta1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta1- Add a patch to fix krb5 ccache creation issue with krb5 1.11- New upstream release 1.10 alpha1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0alpha1- Split internal helper libraries into a shared object - Significantly reduce disk-space usage- Fix the Kerberos password expiration warning (#912223)- Do not write out dots in the domain-realm mapping file (#905650)- Include upstream patch to build with krb5-1.11- Rebuild against new libldb- Fix build with new automake versions- Recreate Kerberos ccache directory if it's missing - Resolves: rhbz#853558 - [sssd[krb5_child[PID]]]: Credential cache directory /run/user/UID/ccdir does not exist- Fix changelog dates to make F19 rpmbuild happy- New upstream release 1.9.4- New upstream release 1.9.3- Resolve groups from AD correctly- Check the validity of naming context- Move the sss_cache tool to the main package- Include the 1.9.2 tarball- New upstream release 1.9.2- New upstream release 1.9.1- require the latest libldb- Use mcpath insted of mcachepath macro to be consistent with upsteam spec file- New upstream release 1.9.0- New upstream release 1.9.0 rc1- New upstream release 1.9.0 beta7 - obsoletes patches #1-#3- Rebuild against libldb 1.12- Rebuild against libldb 1.11- Change the default ccache location to DIR:/run/user/${UID}/krb5cc and patch man page accordingly - Resolves: rhbz#851304- Rebuild against libldb 1.10- Only create the SELinux login file if there are SELinux mappings on the IPA server- Don't discard HBAC rule processing result if SELinux is on Resolves: rhbz#846792 (CVE-2012-3462)- New upstream release 1.9.0 beta 6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta6 - A new option, override_shell was added. If this option is set, all users managed by SSSD will have their shell set to its value. - Fixes for the support for setting default SELinux user context from FreeIPA. - Fixed a regression introduced in beta 5 that broke LDAP SASL binds - The SSSD supports the concept of a Primary Server and a Back Up Server in failover - A new command-line tool sss_seed is available to help prime the cache with a user record when deploying a new machine - SSSD is now able to discover and save the domain-realm mappings between an IPA server and a trusted Active Directory server. - Packaging changes to fix ldconfig usage in subpackages (#843995) - Rebuild against libldb 1.1.9- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- New upstream release 1.9.0 beta 5 - Obsoletes the patch for missing DP_OPTION_TERMINATOR in AD provider options - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta5 - Many fixes for the support for setting default SELinux user context from FreeIPA, most notably fixed the specificity evaluation - Fixed an incorrect default in the krb5_canonicalize option of the AD provider which was preventing password change operation - The shadowLastChange attribute value is now correctly updated with the number of days since the Epoch, not seconds- Fix broken ARM build - Add missing DP_OPTION_TERMINATOR in AD provider options- Own several directories create during make install (#839782)- New upstream release 1.9.0 beta 4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta4 - Add a new AD provider to improve integration with Active Directory 2008 R2 or later servers - SUDO integration was completely rewritten. The new implementation works with multiple domains and uses an improved refresh mechanism to download only the necessary rules - The IPA authentication provider now supports subdomains - Fixed regression for setups that were setting default_tkt_enctypes manually by reverting a previous workaround.- New upstream release 1.9.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta3 - Add a new PAC responder for dealing with cross-realm Kerberos trusts - Terminate idle connections to the NSS and PAM responders- Switch unicode library from libunistring to Glib - Drop unnecessary explicit Requires on keyutils - Guarantee that versioned Requires include the correct architecture- Fix accidental disabling of the DIR cache support- New upstream release 1.9.0 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta2 - Add support for the Kerberos DIR cache for storing multiple TGTs automatically - Major performance enhancement when storing large groups in the cache - Major performance enhancement when performing initgroups() against Active Directory - SSSDConfig data file default locations can now be set during configure for easier packaging- Fix regression in endianness patch- Rebuild SSSD against ding-libs 0.3.0beta1 - Fix endianness bug in service map protocol- Fix several regressions since 1.5.x - Ensure that the RPM creates the /var/lib/sss/mc directory - Add support for Netscape password warning expiration control - Rebuild against libldb 1.1.6- New upstream release 1.9.0 beta 1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta1 - Add native support for autofs to the IPA provider - Support for ID-mapping when connecting to Active Directory - Support for handling very large (> 1500 users) groups in Active Directory - Support for sub-domains (will be used for dealing with trust relationships) - Add a new fast in-memory cache to speed up lookups of cached data on repeated requests- New upstream release 1.8.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.3 - Numerous manpage and translation updates - LDAP: Handle situations where the RootDSE isn't available anonymously - LDAP: Fix regression for users using non-standard LDAP attributes for user information- New upstream release 1.8.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.2 - Several fixes to case-insensitive domain functions - Fix for GSSAPI binds when the keytab contains unrelated principals - Fixed several segfaults - Workarounds added for LDAP servers with unreadable RootDSE - SSH knownhostproxy will no longer enter an infinite loop preventing login - The provided SYSV init script now starts SSSD earlier at startup and stops it later during shutdown - Assorted minor fixes for issues discovered by static analysis tools- Don't duplicate libsss_autofs.so in two packages - Set explicit package contents instead of globbing- Fix uninitialized value bug causing crashes throughout the code - Resolves: rhbz#804783 - [abrt] Segfault during LDAP 'services' lookup- New upstream release 1.8.1 - Resolve issue where we could enter an infinite loop trying to connect to an auth server - Fix serious issue with complex (3+ levels) nested groups - Fix netgroup support for case-insensitivity and aliases - Fix serious issue with lookup bundling resulting in requests never completing - IPA provider will now check the value of nsAccountLock during pam_acct_mgmt in addition to pam_authenticate - Fix several regressions in the proxy provider - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#799031 - --debug option for sss_debuglevel doesn't work- New upstream release 1.8.0 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental) - Include the IPA AutoFS provider - Fixed several memory-corruption bugs - Fixed a regression in group enumeration since 1.7.0 - Fixed a regression in the proxy provider - Resolves: rhbz#741981 - Separate Cache Timeouts for SSSD - Resolves: rhbz#797968 - sssd_be: The requested tar get is not configured is logged at each login - Resolves: rhbz#754114 - [abrt] sssd-1.6.3-1.fc16: ping_check: Process /usr/sbin/sssd was killed by signal 11 (SIGSEGV) - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - Resolves: rhbz#786957 - sssd and kerberos should change the default location for create the Credential Cashes to /run/usr/USERNAME/krb5cc- Change default kerberos credential cache location to /run/user/- New upstream release 1.8.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta3 - Fixed a regression in group enumeration since 1.7.0 - Fixed several memory-corruption bugs - Finalized the ABI for the autofs support - Fixed a regression in the proxy provider- Rebuild against PCRE 8.30- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta2 - Fix two minor manpage bugs - Include the IPA AutoFS provider- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta1 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental)- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - fix netgroups and sudo as well- Fixes a serious memory hierarchy bug causing unpredictable behavior in the LDAP provider.- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- New upstream release 1.7.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.7.0 - Support for case-insensitive domains - Support for multiple search bases in the LDAP provider - Support for the native FreeIPA netgroup implementation - Reliability improvements to the process monitor - New DEBUG facility with more consistent log levels - New tool to change debug log levels without restarting SSSD - SSSD will now disconnect from LDAP server when idle - FreeIPA HBAC rules can choose to ignore srchost options for significant performance gains - Assorted performance improvements in the LDAP provider- New upstream release 1.6.4 - Rolls up previous patches applied to the 1.6.3 tarball - Fixes a rare issue causing crashes in the failover logic - Fixes an issue where SSSD would return the wrong PAM error code for users that it does not recognize.- Rebuild against libldb 1.1.4- Resolves: rhbz#753639 - sssd_nss crashes when passed invalid UTF-8 for the username in getpwnam() - Resolves: rhbz#758425 - LDAP failover not working if server refuses connections- Rebuild for libldb 1.1.3- Resolves: rhbz#752495 - Crash when apply settings- New upstream release 1.6.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.3 - Fixes a major cache performance issue introduced in 1.6.2 - Fixes a potential infinite-loop with certain LDAP layouts- Rebuilt for glibc bug#747377- Change selinux policy requirement to Conflicts: with the old version, rather than Requires: the supported version.- Add explicit requirement on selinux-policy version to address new SBUS symlinks.- Remove %files reference to sss_debuglevel copied from wrong upstreeam spec file.- Improved handling of users and groups with multi-valued name attributes (aliases) - Performance enhancements Initgroups on RFC2307bis/FreeIPA HBAC rule processing - Improved process-hang detection and restarting - Enabled the midpoint cache refresh by default (fewer cache misses on commonly-used entries) - Cleaned up the example configuration - New tool to change debug level on the fly- New upstream release 1.6.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.1 - Fixes a serious issue with LDAP connections when the communication is dropped (e.g. VPN disconnection, waking from sleep) - SSSD is now less strict when dealing with users/groups with multiple names when a definitive primary name cannot be determined - The LDAP provider will no longer attempt to canonicalize by default when using SASL. An option to re-enable this has been provided. - Fixes for non-standard LDAP attribute names (e.g. those used by Active Directory) - Three HBAC regressions have been fixed. - Fix for an infinite loop in the deref code- Build with _hardened_build macro- New upstream release 1.6.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.0 - Add host access control support for LDAP (similar to pam_host_attr) - Finer-grained control on principals used with Kerberos (such as for FAST or - validation) - Added a new tool sss_cache to allow selective expiring of cached entries - Added support for LDAP DEREF and ASQ controls - Added access control features for Novell Directory Server - FreeIPA dynamic DNS update now checks first to see if an update is needed - Complete rewrite of the HBAC library - New libraries: libipa_hbac and libipa_hbac-python- New upstream release 1.5.11 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.11 - Fix a serious regression that prevented SSSD from working with ldaps:// URIs - IPA Provider: Fix a bug with dynamic DNS that resulted in the wrong IPv6 - address being saved to the AAAA record- New upstream release 1.5.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.10 - Fixed a regression introduced in 1.5.9 that could result in blocking calls - to LDAP- New upstream release 1.5.9 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.9 - Support for overriding home directory, shell and primary GID locally - Properly honor TTL values from SRV record lookups - Support non-POSIX groups in nested group chains (for RFC2307bis LDAP - servers) - Properly escape IPv6 addresses in the failover code - Do not crash if inotify fails (e.g. resource exhaustion) - Don't add multiple TGT renewal callbacks (too many log messages)- New upstream release 1.5.8 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.8 - Support for the LDAP paging control - Support for multiple DNS servers for name resolution - Fixes for several group membership bugs - Fixes for rare crash bugs- Resolves: rhbz#706740 - Orphaned links on rc0.d-rc6.d - Make sure to properly convert to systemd if upgrading from newer - updates for Fedora 14- Fix segfault in TGT renewal- Resolves: rhbz#700891 - CVE-2011-1758 sssd: automatic TGT renewal overwrites - cached password with predicatable filename- Re-add manpage translations- New upstream release 1.5.6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.6 - Fixed a serious memory leak in the memberOf plugin - Fixed a regression with the negative cache that caused it to be essentially - nonfunctional - Fixed an issue where the user's full name would sometimes be removed from - the cache - Fixed an issue with password changes in the kerberos provider not working - with kpasswd- Resolves: rhbz#697057 - kpasswd fails when using sssd and - kadmin server != kdc server - Upgrades from SysV should now maintain enabled/disabled status- Fix %postun- Fix systemd conversion. Upgrades from SysV to systemd weren't properly - enabling the systemd service. - Fix a serious memory leak in the memberOf plugin - Fix an issue where the user's full name would sometimes be removed - from the cache- Install systemd unit file instead of sysv init script- New upstream release 1.5.5 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.5 - Fixes for several crash bugs - LDAP group lookups will no longer abort if there is a zero-length member - attribute - Add automatic fallback to 'cn' if the 'gecos' attribute does not exist- New upstream release 1.5.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.4 - Fixes for Active Directory when not all users and groups have POSIX attributes - Fixes for handling users and groups that have name aliases (aliases are ignored) - Fix group memberships after initgroups in the IPA provider- Resolves: rhbz#683267 - sssd 1.5.1-9 breaks AD authentication- New upstream release 1.5.3 - Support for libldb >= 1.0.0- New upstream release 1.5.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.2 - Fixes for support of FreeIPA v2 - Fixes for failover if DNS entries change - Improved sss_obfuscate tool with better interactive mode - Fix several crash bugs - Don't attempt to use START_TLS over SSL. Some LDAP servers can't handle this - Delete users from the local cache if initgroups calls return 'no such user' - (previously only worked for getpwnam/getpwuid) - Use new Transifex.net translations - Better support for automatic TGT renewal (now survives restart) - Netgroup fixes- Rebuild sssd against libldb 1.0.2 so the memberof module loads again. - Related: rhbz#677425- Resolves: rhbz#677768 - name service caches names, so id command shows - recently deleted users- Ensure that SSSD builds against libldb-1.0.0 on F15 and later - Remove .la for memberOf- Fix memberOf install path- Add support for libldb 1.0.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Fix nested group member filter sanitization for RFC2307bis - Put translated tool manpages into the sssd-tools subpackage- Restore Requires: cyrus-sasl-gssapi as it is not auto-detected during - rpmbuild- New upstream release 1.5.1 - Addresses CVE-2010-4341 - DoS in sssd PAM responder can prevent logins - Vast performance improvements when enumerate = true - All PAM actions will now perform a forced initgroups lookup instead of just - a user information lookup - This guarantees that all group information is available to other - providers, such as the simple provider. - For backwards-compatibility, DNS lookups will also fall back to trying the - SSSD domain name as a DNS discovery domain. - Support for more password expiration policies in LDAP - 389 Directory Server - FreeIPA - ActiveDirectory - Support for ldap_tls_{cert,key,cipher_suite} config options -Assorted bugfixes- CVE-2010-4341 - DoS in sssd PAM responder can prevent logins- New upstream release 1.5.0 - Fixed issues with LDAP search filters that needed to be escaped - Add Kerberos FAST support on platforms that support it - Reduced verbosity of PAM_TEXT_INFO messages for cached credentials - Added a Kerberos access provider to honor .k5login - Addressed several thread-safety issues in the sss_client code - Improved support for delayed online Kerberos auth - Significantly reduced time between connecting to the network/VPN and - acquiring a TGT - Added feature for automatic Kerberos ticket renewal - Provides the kerberos ticket for long-lived processes or cron jobs - even when the user logs out - Added several new features to the LDAP access provider - Support for 'shadow' access control - Support for authorizedService access control - Ability to mix-and-match LDAP access control features - Added an option for a separate password-change LDAP server for those - platforms where LDAP referrals are not supported - Added support for manpage translations- Solve a shutdown race-condition that sometimes left processes running - Resolves: rhbz#606887 - SSSD stops on upgrade- Log startup errors to the syslog - Allow cache cleanup to be disabled in sssd.conf- New upstream release 1.4.1 - Add support for netgroups to the proxy provider - Fixes a minor bug with UIDs/GIDs >= 2^31 - Fixes a segfault in the kerberos provider - Fixes a segfault in the NSS responder if a data provider crashes - Correctly use sdap_netgroup_search_base- Fix incorrect tarball URL- New upstream release 1.4.0 - Added support for netgroups to the LDAP provider - Performance improvements made to group processing of RFC2307 LDAP servers - Fixed nested group issues with RFC2307bis LDAP servers without a memberOf plugin - Build-system improvements to support Gentoo - Split out several libraries into the ding-libs tarball - Manpage reviewed and updated- Fix pre and post script requirements- Resolves: rhbz#606887 - sssd stops on upgrade- Resolves: rhbz#626205 - Unable to unlock screen- Resolves: rhbz#637955 - libini_config-devel needs libcollection-devel but - doesn't require it- Resolves: rhbz#632615 - the krb5 locator plugin isn't packaged for multilib- Resolves: CVE-2010-2940 - sssd allows null password entry to authenticate - against LDAP- Rebuilt for https://fedoraproject.org/wiki/Features/Python_2.7/MassRebuild- New upstream version 1.2.91 (1.3.0rc1) - Improved LDAP failover - Synchronous sysdb API (provides performance enhancements) - Better online reconnection detection- New stable upstream version 1.2.1 - Resolves: rhbz#595529 - spec file should eschew %define in favor of - %global - Resolves: rhbz#593644 - Empty list of simple_allow_users causes sssd service - to fail while restart. - Resolves: rhbz#599026 - Makefile typo causes SSSD not to use the kernel - keyring - Resolves: rhbz#599724 - sssd is broken on Rawhide- New stable upstream version 1.2.0 - Support ServiceGroups for FreeIPA v2 HBAC rules - Fix long-standing issue with auth_provider = proxy - Better logging for TLS issues in LDAP- New LDAP access provider allows for filtering user access by LDAP attribute - Reduced default timeout for detecting offline status with LDAP - GSSAPI ticket lifetime made configurable - Better offline->online transition support in Kerberos- Release new upstream version 1.1.91 - Enhancements when using SSSD with FreeIPA v2 - Support for deferred kinit - Support for DNS SRV records for failover- Bump up release number to avoid library sub-packages version issues with previous releases.- New upstream release 1.1.1 - Fixed the IPA provider (which was segfaulting at start) - Fixed a bug in the SSSDConfig API causing some options to revert to - their defaults - This impacted the Authconfig UI - Ensure that SASL binds to LDAP auto-retry when interrupted by a signal- Release SSSD 1.1.0 final - Fix two potential segfaults - Fix memory leak in monitor - Better error message for unusable confdb- Release candidate for SSSD 1.1 - Add simple access provider - Create subpackages for libcollection, libini_config, libdhash and librefarray - Support IPv6 - Support LDAP referrals - Fix cache issues - Better feedback from PAM when offline- Rebuild against new libtevent- Fix licenses in sources and on RPMs- Fix regression on 64-bit platforms- Fixes link error on platforms that do not do implicit linking - Fixes double-free segfault in PAM - Fixes double-free error in async resolver - Fixes support for TCP-based DNS lookups in async resolver - Fixes memory alignment issues on ARM processors - Manpage fixes- Fixes a bug in the failover code that prevented the SSSD from detecting when it went back online - Fixes a bug causing long (sometimes multiple-minute) waits for NSS requests - Several segfault bugfixes- Fix CVE-2010-0014- Patch SSSDConfig API to address - https://bugzilla.redhat.com/show_bug.cgi?id=549482- New upstream stable release 1.0.0- New upstream bugfix release 0.99.1- New upstream release 0.99.0- Fix segfault in sssd_pam when cache_credentials was enabled - Update the sample configuration - Fix upgrade issues caused by data provider service removal- Fix upgrade issues from old (pre-0.5.0) releases of SSSD- New upstream release 0.7.0- Fix missing file permissions for sssd-clients- Add SSSDConfig API - Update polish translation for 0.6.0 - Fix long timeout on ldap operation - Make dp requests more robust- Ensure that the configuration upgrade script always writes the config file with 0600 permissions - Eliminate an infinite loop in group enumerations- New upstream release 0.6.0- New upstream release 0.5.0- Fix for CVE-2009-2410 - Native SSSD users with no password set could log in without a password. (Patch by Stephen Gallagher)- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- Fix a couple of segfaults that may happen on reload- add missing configure check that broke stopping the daemon - also fix default config to add a missing required option- latest upstream release. - also add a patch that fixes debugging output (potential segfault)- release out of the official 0.3.2 tarball- bugfix release 0.3.2 - includes previous release patches - change permissions of the /etc/sssd/sssd.conf to 0600- Add last minute bug fixes, found in testing the package- Version 0.3.1 - includes previous release patches- Try to fix build adding automake as an explicit BuildRequire - Add also a couple of last minute patches from upstream- Version 0.3.0 - Provides file based configuration and lots of improvements- Version 0.2.1- Version 0.2.0- package git snapshot- fixed items found during review - added initscript- added sss_client- Small cleanup and fixes in the spec file- Initial release (based on version 0.1.0 upstream code)  !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWcacacacacacacacacacacsdededededededededeesesesesesesesesesfrfrfrfrfrfrfrfrfrjajajajajajajajanlptptukukukukukukukukukukukuk1.16.0-19.el71.16.0-19.el7 sss_debuglevelsss_groupaddsss_groupdelsss_groupmodsss_groupshowsss_obfuscatesss_overridesss_seedsss_useraddsss_userdelsss_usermodsssctlsssd-tools-1.16.0COPYINGsss_rpcidmapd.5.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsss_groupdel.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsss_debuglevel.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_override.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsssctl.8.gzsss_groupmod.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_rpcidmapd.5.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_override.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsssctl.8.gz/usr/sbin//usr/share/licenses//usr/share/licenses/sssd-tools-1.16.0//usr/share/man/ca/man5//usr/share/man/ca/man8//usr/share/man/cs/man8//usr/share/man/de/man8//usr/share/man/es/man8//usr/share/man/fr/man8//usr/share/man/ja/man8//usr/share/man/man8//usr/share/man/nl/man8//usr/share/man/pt/man8//usr/share/man/uk/man5//usr/share/man/uk/man8/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -m64 -mtune=genericdrpmxz2x86_64-redhat-linux-gnu POSIX shell script, ASCII text executableELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=a464ae17272ac2383160717e91046d3ba34e55b2, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=ca7f1fdd7e34afd869011e6395b4f8ee5e8d8c35, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=2818d9761d0a347875bfb3d9206ad32876f23c8b, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=00a197850f675138f6ee07b4cd904c9299546f03, strippedPython script, ASCII text executableELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=3e0a0b4534f9260989f11484d00a4f97ee415c35, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=f4877d36e4a0c27aa8aac989272caf97fc4241fc, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=94c3c7707aede91b5a231d6ead009c2b135e598c, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=76cf3f37385e9af1ce04e5aaa5ee025492962c75, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=1501c3e3d225331f40345bc5077f2f9220d74321, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=cbafe1c60b952a640f0cf693e597a237a8efa9bb, strippeddirectoryASCII texttroff or preprocessor input, UTF-8 Unicode text (gzip compressed data, from Unix, max compression)troff or preprocessor input, UTF-8 Unicode text, with very long lines (gzip compressed data, from Unix, max compression)troff or preprocessor input, ASCII text (gzip compressed data, from Unix, max compression)troff or preprocessor input, ASCII text, with very long lines (gzip compressed data, from Unix, max compression),W1_++++++-.-7RR"RRRRRR8R$R5R'R!RR RRRR%R RRR(R9RR.R,R/R-R+R*RRR RRR#R0R:R7R R6RRR@R"RRRRRR8R$R5R'R!RR RRRR%R RRR(R9RR.R,R/R-R+R*RRR RRR#R0R:R7R R6RRR@R"RRRRRR8R$R5R'R!RR RRRR%R RRR(R9RR.R,R/R-R+R*RRR RRR#R0R:R7R R6RRR@R"RR8R$RRRRR5R'R!RR RRRR%R RRR(R9RR.R,R/R-R+R*RRR RRR#R0R:R7R R6RRR@RR"RRRRRR8R$R5R'R!RR RRRR%R RRR(R9RR.R,R/R-R+R*RRR RRR#R0R:R7R R6RRR@R"RR8R$RRRRR5R'R!RR RRRR%R RRR(R9RR.R,R/R-R+R*RRR RRR#R0R:R7R R6RRR@R"RRRRRR8R$R5R'R!RR RRRR%R RRR(R9RR.R,R/R-R+R*RRR RRR#R0R:R R1R7R6R)RRR@R"RRRRRR R8R$R5R'R!RR RRRR%R RRR(R9RR.R,R/R-R+R*RRR RRR#R0R:R R1R7R6R)RRR@R"RRRRRR8R$R5R'R!RR RRRR%R RRR(R9RR.R,R/R-R+R*RRR RRR#R0R:R R1R7R6R)RRR@RR&RRR"R RRR8R$R4R3RRRRRR5R'R!RRRRR%R RRR(R9RR.R,R/R-R+R*RRR RRR#R0R:R7R6RRR2R R RRR@?7zXZ !#,oH]"k%P}:w{:^O`FaF4R#[zrH:Sڻӥ|V:AFU obnkl` dZ`GuSXϪe `=j^OʞC}YwK/ ԼncLO]eW"^<+VI2:|rOq 36Oȁ~W.^Cp Vc9 ED=D-yN?- Ei&|Qaz?L_pz3wjY-UBI;_k-C#`.~=m˳>Ʋ@l?6?ivdU_ùb:FR?Ԑpղ`j8vP~K5uS\zL\PDlK]*SW=RƳ˞sSv %[#K? ɘVior8OӚ" 9fv+ 1Y3ĶрBrZ^"}،/dzR`rF}0.3ak Δz$UQ_ z\Ȝ(}993M."G^F*\%a^.)Me?C(&ߕU6EkzPZgley HGŭa<"ҕ6fn)xv& cOCF!uK0<D{zFb)~cû ZQqg2L ';/m:dJ{\e!8X4뗕`!%xC6 J[R8@"_ϏL? ډ0d]p3X1Ѽ6ÌF~1 T!{ wEV9x#h!aU&9p*[c,R3 l ˋ=>ZJ+qwaXU΄Cx_GYGʞ^b-P+Gqۄb^oٝKxw/(>DdcqO !u7-dkVX7ڹ?!h[lŷ](53!Q>^d۩kw6u \{Usƚ4~½W/:˸yuX&8<^YX3rn!O6-;Ӕ6plE^/~wI5E,97lQRG]4CAZ}S? .J2 `Az\'2ό9@峫-A1.=9rEtdG70dĶPth ⛯ E .S#5sp}TX뿋hO[Q<*ob Lpu,g jwB 4v(jhkhRe8* PJ(@|vZlp_ yCJjxa;`[_zF>H ]X~w26-9PM2xn}jn]jj GD߾J i?*G@z^!S :y ]'7&0@1tùy7㔖0 2&XtiGߣl]=r[mh֢㬽'5j {2R/TI2pݱkLaN;wkӅlo;yU䈻 ر~#_iۺ,v%$s㼎JAg$xݑPo~q9~*P^J G1Qp˂̈NȘnY.Qx,Yj~Wb m~' WX۝p8R#j }d"X? )>nX8Ws4M\T.SuGa3Rog ˳H3Eg~ydhbbsOL<7 Ht :}ńbVy)coJi h}ldbK6H[YP@ 5#JĈ_i]2KZ!Hiɛ5*^vD7}<ө!B0sAvv,_CcJ mA% {l -o lyO[&J-kieb)&[#rA6<~[${@;qyy2ZNdgz" ьfD]?-% ;yA'L9~'-P"] w cip(V Jz^AsI+c"W-K_Aްg3@~n/]!g֞R5 QޝFˣ4/.U墁Y!KT[|{e+R$K>-7/ d @3o%)/Q-gʶD븴V[,~gh2@iy^ggu.4U(>n^ڰLDfy<U` Gk V&.rrpRzml WkZtzX˚D~]nl8XɌ-  S*M~ h!p(,cx( Y:qFfʹ+!T͵ܛDlJ]JUztWii]gdJ}xĦ[zXyzRi3)3kT]}a*RU%rYipL{0Y1`} DjBB4h I5JF$HO6xУc$$7/ݐ ghK_1t}|2H3PZd2x1^D% Bm[A@Ɣ 8RZnyJ9Y7 ܯ\ޥp<V;{ulNpchƬJ}i}nq2PE7{u]V67 cRN,M<6f.v>]zK4-i]RxtP:)0t{I,.{**h;{Dk/)i{[Ĵm9҇.t1\lR +)d ZwQj RZgn\[exOtlDژ1R|h~:SH]xjvOGF os2P0LpU_9o̳Yr14VF#_p1If}5zl >dOD=I6g{Vے@%xOTryKn;ޡ_MS{ZvelJ67I0^,K%ܧZDȝ U>Y+$ty14 E}zǷWBji.E\woR uK$'aO;A6:Lx\ ϣp_=|FAT;W;rt, %ZZ-ԏ7@ԎZ6`2}췼CGR&W'xHۄN_ 2͝GΓ&mQsqEco耚Vn3Ot/Qo)@0a5.]K]6G11 q;2|p *m!&VRӤ/= K:}Vx喹X|Dd>BEi.L@W6y"ztOkUkOr97@[j\`Y!k$nۓW$ʀlA  9&Ww4z̙R W\:S L'5MUH`k|DXFNK GԤW"A$=& Jw.#[֮ѨDXWl9q6U,o GHx:DTzx= rqgd=2trٟ,L2:wưg!?_υdr`AON+Ĭ1bY*4t9O^/DXL?l,K>]DЀCn/:TVCBMNU礪7@p0תr;u0x 5#J]eG㗝:6)R(kZ@\!/ su&rJ!bIag{O& ÷coZS&UZ ɸ(G1!z|S3ȕSGhϟ&|D:J_E<|]bD0w׃=S&wƜ*OY|BP,73cNw6,GyHzBkܣp{pQCp*]kNNN(6~MYQ;e}M a͓!Zܴ [攒F?L#/7#ͱITȓ7_ÍgRsm)ƴ4=׫"vey -bYո _1bBqc: y.{чwb1$q1;]uDt\L3'lvUI`aN6wA H?| `x?@׵W/]HqT5v~I .&‚q&Ψ_Ʉj|IKz~\WDjn#?lQ 9i%P$qNЌ4E$*NF퓩M T5yY#,t[+ɖ+TZ״7 IV0nY|⪑t]O7SX轝Pw-|uLO(2b,؄wq> @#VϑlZRSdQ>k[νYQs a`V<מSo3R$0o+mx@V{-@G^^zJa4}(|IAB<8{:}@x 7I h*V<҃oϪo1ShF2thy^OF|ί -q꺹\E3i-B=]rgFU=*8%tS{>nc Or<1`ZJ G#]=$ JVXg419V0&@(a˫tMf|nFZ+%D`hr}--{.w ^JMr=;RKZRu.D:p{.U6x/ׇڔaU% P]=#k0qDjY).ɺ&e9bNŢgm elZg'%Z8ɞwTZU#rJ(uMm}NJ!Zi„==&^CQ< i[)40F"ŶPt"{[ ~U;[a]ԂEp&!D!:].oᮺkk "zДq v؅Eob*!>p27N1Vfobw3G(c '^Zn9>o)j>֡"9LXdx78&i3Drg!YiZҠL9qaV੝<G?1lH%RgxPR|tZ_D7AgռQvßRMh+WL'X~ Ż5u'R_Chֺ)vӯSs_siL1'3.l\kcv?p(CX6̠JdSa^4"{L8'qe&`[ 1|dE'cK2BcӸ@Uq XہD/mU~WG=7*=PZ50͇Nk+QTX2GN9rJ3_]{RC/v|[{އ}!U a<o1E&3 IJ_Ju\kX"aȪw6 "{(jMOr65Aq=>ySu>gް$}?E"Zi8h| `Lg9 3NxFǝp@Efv2vX oC^QTH Q%n)o I-i.{//tE\`un;f S@Ѻ c-<)Ɩ:q#p5w԰w:˒4*PiC֝]ߘ##qE؉xoEF|5z=0KvEzɌ[.B_Ԭɧ0Նo a'PeW:U[T'nwCnE22p1?AxWA|U.x(L6`㕑K<$7/yXj|]_uLJXfAóz1cw|2&2L?A-zj~G'I]* Ĵ.w/)8J/D 쒪eSص~ޖ C3@ج*=\g8![ NgzM7B|_-ϥ˙?b`P\ni)i1 bkl?]mm.oB2>AEСف,Q2r]3.omOz;Ǩ_QƼ#Tk v@JD tWK[mX'tMGyD;sx_6u|9P|w0کƈkeة.b@LSd,K9Ä" cof ^_3} }= 6C)o`ps8w+boJF%^nr>Y(R{*C;)KkEUPߣyVe @*Lk/-gOXكG335hyV,C-4AB+.pYBgA\9! Nw~Mhp+DR!r*僜GI w޺Z!'W۫OC)vV|R-®(}AZQF?4d X4m`u\o+ΊG2JBw{O^EG?խ9㚽n$ FW-)~g?7WοÙ$9} X$e>Ғ:KA5[˃Ty|; ֛̚9$)}+@볒 yǔiUBPMnpsBrtL.Ο _S|iL.bl]SN:BﳁQ>WJ2*Y4fKhfghU6|+,n=?LΖ 5 Ԣ!4NqN44wVύ단7m y/6^`4(.]I"|Atnݬ)"HyeaLFҭNz;M7uC8YQ5)m샋@Q(P`3xRlsTS 3zDZ/Y.aB_tLIc>wIt]J'r?T2GU,>2-u?g)qK%U7&9&9}IP.|z%2?Hνj1𢎙%.E:*o-E*&sp3Q`ȏb,$HnP)BVGӣk^-߂0f_ýܘ)hFMN ř_c+Gw ]D &5G7Bha9]:)M '= \N0Y;-;xk$~eT[[1HO$D)%c5;XնWa'-&VE Iei^֭o#g'*?tW>D)5`:OZE7^ bzAKґN&xE2;rb@( `P^L*!İX|w "]FyX*+_1= kہǤ|`DWFV2)YB,g 7{wnRv<5aa9)uI]ŋ h3.vұr}% J["uS:y.h@s)yU W'ϩc.Q}cL.RMOL{8V/vW6FM9 &тLMr ,DA]j#sw.H8RjK [̼Cr/ }7NuLW!Nod]58cț 6V? 6 ~ Q| N:gN{J+4DDptV9_eƇ'F}BB^+FqJn[Eo&efIy`qs=+q$l7 mpAOHIߘ 4 B.§琒iV]lͨ@%5 O-~ N4;S$)Q16k nTL5_gbcl$jˢs-z*׋ =!kfwu6acN "Y1]ap&9) QI䢌A'w՚A/et,%څh_@1\y-?hbT-E~wɸQZ4G]L՚+PsY4G@%Rd5NKskxKu$~ЛD &5C ^w6g~/a_=ܡÀ`c_gs'h'+r[R~>6`% N`;ID?DOplJ 7u"% \ІK9^Q'IP2 筥دٸoS̘jvSB}.ibE%VyRYn|mT{he֣ k 0r z >QRg[Y8 Xtyv(5?W?U4rX~p : SuiP(8'O>sU0P D1Z (-qU#x\uq-[:-%ƞ }~t K:}q JlG40,`5C[IM/ .ʂY]<>_mz9˻.Ү %Qj5`&a] yteuX)-D$7$|r%8Eԃ˙#S9 C>z* τQ4fBZj8в`CpQ:lq. \,7qE:`cmCͭT|֣; >ㆭ'B#T]ZjjՓ.~7JBJ2P B)h_bL,q(F!)eH+b~ u qm5ewGQ(@? cËޔ^AتbU;TU@pi`g[I[De?~PPqmLPup:Kc'ep`$x9vZ Ɲj7/fC?LR ͝b=©^6@Sp*N?I~I \hfOj]'$Q(Yu.ja,  7,AܴeگG#aUV.r4N Ru:œȑK!2upLom- qZt\|cr9/Q6p2HfNzX6bQ=ZO %|}boC% xCН@䎬 }reE's @WyE?Vrh<]U >twTvYcp elYl[xǰEC512/PFe'yآ(R\s5Qc7C((v -z^g`ITbHczYfӫ횏:)ʐ .bK;,°N+;@v^YɷP>aN]{Hq{=FϣW e 3kYJW[ڎ{#UL;+CB `%ߑTC`LsrHKfeבSIs~,[hxohȍ[A0­X:! a|>Sܞ \99up2@@ʼny=;zn$ա|OMS wk>nF߷ g5ɭ_f;.ESq ~\Y}̢P/8Wy:Y=mlZVsd|)uG > * BqhsߦgYIUm6\[U:1_0Q/ M/60y? z"h,J/%n(^8ڴ{kTfL͞ABxte|sqRb (~6GX]XZ0NyL%G4-ڵ-UA`O-O9wĖ=T;Jum恘( ~QU!B4k \!7qHy &vX\%թ6[=!3[@(Jݱ\ӄ{o.3|Ljm'M:ޚlijշD"FC㙋$׶p NC**#m7i,r%q{3^12 I|m3{2Ǻ'v&ه61[o9c=ZM㱥J@x!,BPuCY[n5#S'KPἄA ?2792̽YOU E_ޢo\j'6dR5,ƍK{ "‘\%p_0U#tN9^>l޷:±ZI 5!g&+(Y'?BZ@ܸdbRv(ySˬh/a& ;o? &6SᕪθHd|>cjN j(1ް^(af9a|yu"ˣ'ۅ: SהGxqxdӈ.jB4~\d ʝ'PoכDU;eNd%f 3L_7uTvupO;*!;?_M̘~"KU%Sr,̨>3@i0ۄ<'ҍFMَ!\ҕ! +TFX0ihkD`m$~ UPsAB|,\W6دx$P7\?gf^rStBqTŢ|ʪp\W7@%P*Wl^]\]$pP/PiIXt\~ǴKNy<(ԅM*E4`+ ]Ax1$?e fu:qţ K\^ ws2mw=R8\4[bU:nSAy JfrUq:ON]`+!hWQ)(䐶 |<;/bqg+ٗw$]y=vcSm\`"6]>ab;0,NT1] 2ª+٩%oTns$^uIy%g#cwj8zA@sW i G8vJlTxٓ#l2tEpAg`C$8Z_`N_"kԪ__]1$ZDҏo*[|@fŵy(Zm$4̱XkNoACX~ ŋ{i9 h< ϱE@2&S\z)OؗRyn1utJ f\T`A"j\>Ȝ7CJqճ$]ؿ%)Tۓ<ƁJ[XRoq#7h2=9<{> `7T\_5l`NvX9X?-qے\3c|x=#*S4r+/ŸQExĤ:6T>M0d`$+CD$[Mwn@U/拶Xٲ3ۖ9>rP3*iLbR64fjùE,?N4a9weC")T>7Zd:cܠm9/˄ȥF:E$+2o?==&MCxP'Ec畦د ~}LR%apV$::CC\!+L6Q"Pٻo/8"Nu1'f%.K5jlxhN8$GNFtbdQtj0T>Ҡڝ[kp;^ {)wLI#$f1Ƃ Z&cܜh)ܽԪ_GkXUeu885k'PPYZ.tpeȆ9)R$b~>B8`d2st2 7|R4gx~VR[wvu(w [p iJ^Zbݳ)|: Z*ZpuNkLv~y!6flϒUXsBByI韫Fp6ShA )#,g*+Fm5w^Xb8`Oiq+㢋Nş*ޫ\/3`%܇ !NueOVK['$6VTs8s0y{^f7f=pXszײ6zIC9J_ RÜDyfj!o;XDx.Tq;zIk$w*-QF$[[N$²[lDK7+{)!''->`wqO3vS ,|c"б[!'x'dΩ!%9U4?Uv,H 6Y"5#L"R9뿞a0}k]o.b2 "#xJ5+lR!׺sHiA(Avտ*gG՗T  =vrPJ<ꢔٺzgGުVAZ08*EX^T]Ab ݀"A2^E^ 7sN7#Ht8s/ biۆ3v&P$0ͯIV?IGohr  _4fWuJG10 `$ͻkc+t%;L69UM@'d-K)[][͇J§@P}C팿|}+-:|I=% 2u` QBt2!G 3׵n& 1&!!PzDI4DD <q)scb<0r/ _;JN-tf^kgRcwDMi4P %bɌ;Bz-A a%/@\OR2-MA2IevxPJ^r߰N@ilG[QER7O@SS2oH˭PS8rAp<[#2!hAY%<%Gy!%ބ$1U<8bn[2kp!Ey ~x~dV^/Y>x56n9CA32k%`(NkMAN2!_a5ހh$W1_;|aʠCS˻`?90-i @\Io}h?C4g- uxMz&/k+r4Tbв+xL*^3];a V}6U.A(s2 sBF94]EJU(uA0 `b3HI+T?[`^[l/}"ޝ<'lRZ] -&:r'?x!EtFX@1\D2 -&RT̂Ǖ,ZKG АӤu~&{2``䙕Z22TK*˯u]+Oz-?h5b?gN'oQw7MLcP+ 01B7 a9 ?YͣKtgD95VE@ysDU} s@Ѷ;_`0tFUfHyuK&Q(}Bs]f~MQl~EBV IĶ#'!@4'Gkry+<B/RB}8V,3*w4 71!9jÇ.d)38:kJNxLFyKw1J@J,;Lg%-z~T;D(ɚc6 7t p{ȗF3"7'^pr^nVy$.ht ej> ^c@>p?eaamjj3XvhPT彴Оk_Z&(:9Κ˹Hğtsv 6 4cFth֝@շ\y;+Y1>[6|] ]˿^c1&Mz޺Ʋ6>S]D@qu+Dq(ჽF'5Ӛ@{eICA_"ĺ*MXd+&`qB>ي1W{cYRԟa*֛טb_PI31egV]:j=WD*RqᑉE }Sd?|?6 3n_iɉ !KH=`ht^B`L_+\No-ĂIt f1$jQtʘ i rjX"9ɸlp\| 7|'"`'zx* >KdbSxiYd^""w"}N/ZT+ 7:Yfbg L+@rp43g)H!PXhew>"@tedܨ1m%-j1͌f@wM }L/GEqBLL #JNMgkpم (I m[7E>=zs\'jH]qWH]D+m߾j1y 3J_fʝ~3Ql# `t>}*GW+ ؎5l߿LWE;е.?79!X((Rsf m̛ZX J@odRՕ%x<`{!&.nD,$킗7`$rtɼ '.`ժSEaGɼ'>k.Op#QJpnmKk$ .ҍ}-Fj}Ь$Vݻᅛ%7󃛜"b9%q0sy}[= Ѵ=n9=nW`@ءLgS$\c/T'%ON>r:.J-wHdh KUXzvDnl-(x,>ƛϡ;b࠲+@%{15@&N-:oz6'|8^5oR@OI7"IՈ41kZS fN{!(D2BTJ(VP\]6CM0cVPF*`YڊO\{L!j@V'bgZfGɲR9 2Nu'ϵq@|"U+QVOAzʖEO٥ t\emY^MJYTJX> OQq@=4gyC>H׋={wOاY?z I(nW@0+UTB@럄C`޸fZ3*w!o?\G}1Lgh@~P:>k(%..ʾ Qf;Z 31VMX׌V|)dx:RyM٭w{ d,'B/@T.El",%Pw^bQb[S8G^e2dnّ0dV=;WmaEʺRf瘑m\I߳5Y+\Pf(47Sdu82(r#֯FtT!RkJteIk2XW/`Gl"2x}v/ǣ[Y&`@L0iƓ_cdHiE^CCf6,SSzؓBrT'L|h,">”3)Q$Q@B).Ԑݦ=gXs)m(=V)` ZR763+5jburxYDKGA=ȢS֑?jhv`|-w6 0*iT(MVs?ĵ.QUǟHƪ.V$v3p_>c:)kE6-:ɭ>Ȭ} wd#(8Q̎%>Gu-*#&ӑ;ZlQ ^?lA42r777MOOd)N}U` d @0Abhphr NW{Gb2+W[ 4J8wl:N oKvz'3p!#pgD~}~fA?ž uE _!:R3*H٦ Ё˅XY3QjVd}DH=Lo\g)d23 LaCwscwd-4Z6& 2y24V_+\윕h@~rBj@6D*<}Xs Biut/=>^$ќL^ɭUitMn. V^WR]PEZ;{W9v_ٽ S_72UK$de H:J$H#1LHDTJ6 pF^ͅX=NŮy}s}0p@m sV/̆R<-M$Yڜ 9tY+m$~AX9S+؍~8_G&QhޯIZ̲蠳#eH'-2e.nvr7-jfV!Ruv<;Ţ=lڰ݁-U_:W˺ĭ=߉Yd<-6$ 2 P] S@.GGySwQ22azdžꆦP=X!>^Y]c]]hŽ.Zꉂ QRv!88qˋ@`f]Wi|(traS*^#.b ,62) is-H h+U/[Zho<EOVۓ#lskesg_R6W /85VY$6jgcL" \u#&)ƟЗz7B~%<'] "@D=IuS˄ȫ M /貀(P)&ڪHO{EA,1_N6@KJjdƗpCIe]̭_;O"X ?wyu^EXL&ܯ> V Ğ% Lc|q|c/ŋ[Mb ok5`ᯫ̡5*ɟ_1UqƏiה{.gmXGt!0E{RJ+% ZWT%dй%,4 27ewVUF9띁HFa$MnEJ:4p6"Ȑ6UE aRT:,] H#}V rkD\?!/MeĒBCdp [tA#+Pk \QN ##-du`v/[;= ?h|87# qk4)InIEt7ؖ3ˮ "A%-L/3}qߓ~RɫߤJe '[Eikt k}wSMݫş޸]7nn4 Kco5ejRc67#@2?ߏ+ڥD낕YS_|52Hy~nkp*%m:aum2 x3Yy]px^K=|ޗѼL,L;pU 5k{ހײ֎k fLR1-dJZd"݆ {s#t]{SE\|ʡ]{XO ;xHlG"V[$xc~Jy=egD@D3 y|A8Yd6CФVLyӣԦIuc4ZA Čx=p[ ESnZE~J4yOʋOwX%wޝdH/д]8BcM|Guhv \`X ۜؑ,LLUkvJGIR9zCOo(Pta`F wġ 9 !ڧ?d"LS/) ܫnष]{K娔ʘN!ƕOzK٘=̒RsCV?\e$9vKyxbԂTlPZX\`#&MR;\9Z55{4H ͕$RO U0`L޽dB2yXPoO*7ԌKp4# su_ %X<h+KM#ʠ B6pXGMHޥ=7H/ yXRJ ro/6a-4"_NzoT<c=JgL4E7 Uo\M&zD%eL`ooqxt-_0x]qDmt{ԘB  n(J݆N^_Zfyo[R'\,Z;FJ >YSRnƗs)Lp f%I\-z?VmIdJ!"F!q%a5.Q*ߎ9A dIE6 JKi5},& ߙ&Gx1u?Bf:z2 F7EH ;4J`=6It= x&EHD(%n`KiٓBG-, '4S3]"I7LPcoa}O>2yBnWw-`oX[d!:$Zd;pI?nB25΅hۮ.YML%tFe.aGn(0q5!MfB~cd'-V RjsڼͽثTUB#N%TFLXYa@b84bU2dC a,(dR?EHÏ#9q5òpQU>j;Ր!& ?IM cD㔙F3qS/R,*?܄ eޝ&N,PQRĖ `!%5R'FY NMy@B+Ss.?=ÏUtL5&<9*:!u Fw_0- ym6PJb904Zn{g֞k:#CU#\b^bHcrNNBN+h0<8}54ڃ*󖠿<4Kt5G0V0D,\1o9$KFB9aQɁ m+lF[F Tb5ŲІCXV@uS!υ1ULޑ anrB ɽ4>hZAϟ;5>OWHab紥n!t.c#xXַIi*bF1!y8[T8##_ϖEKn9,:f,TT"s͔x-=B=2'I} } ~<  " R a]Ụpe%sHF"MdžSnoUA)^K#.p1 Dh}B,ߞu' T7i+f累Q`H$܄kAs Kh'b))ax {l{a-D: uzm}S)]{:XpiUPl4=R-ݛjg;ɾR+.Dh7;:f³lRs*,YǮ֘xNg!$ ]U '(噡dO8>$p9- OȼZNV,Nk 9R{w,QH#t:ןX40֢IM1j)Œilv&`r]ֲyAaLTBbu"F-gV,3AՂG?ϠrEEh9ñy%Ux n*xRi L;? O;n6 N PBg0?^rv! |2sfPТ: ׇF8tL`xidI"f=wjojUJ2{#Or & f4 f9Uj%¢QUH_@[.~ @*)O*o\k;=]|IGh H;ӘG֒6>@i27iQ]+C [f ;+GϭHtDz}2qlNAH/alI7 kkhBNG{csy4]#=UJF(s|Kz/ge J9FGz:KW82x%R>-Ao.ÁrQ/^ v}xIU ^$=Hf_/UDI>.|-snLrue"@h].W"?2 ֭Ma0QGG[(}rt$1(4ɈDdb d.JW&AC &~yJmTb5ǃD`eRCn}4|tP~x*ϫ֋)Hw^yD2Y`_ klP'q:o8oz41ز*xUa>0b!$7qrcߵGksha4%9%ȉ=m"ᯰ8C"Z.v˙I5&Բ5n5|i4ܠဌo%&Ɖ "rhr֜c|EJRh뀧Op0LDqwR9OlP}90cmNpK<Rrp<[ƏH5>9f2 ^ z;QX(Pψ=]ӳj]~XJNk,wy59:C!Oz ]9/c암 ޙW=}ę3⡫<k3xˏ&WrZ47‘Tʵg`7.sP;ä]CD$N0 ?GIDu0x+嵐iKgLx}]n*sic\{huDP\ ݛʒ5$q9 b柅Zb|h){G[9eFej[7P._8EPM|ŧB# lt-.v1[m5Dy7]^ +C/MW6; ۧҗ𦮚kˋ>|n][SMޖ4qr̀9 Ʃ/d$ 4n4ăm5o`KFsfE«L "a];ֱ25wzG+raF*c93屙! o]R^kXi0*aϻkgZ ҿ]y jaM*VLqfZV% kxFMJ`-:Q?Z0/x@^|N55 R[ڋswtqԕab.(( դG\rx]bGǹ3]Ԧdi p&u~)f/9(>Kk-ˆsЛ\iW_dZOby0NE:Z {&7YYtڎe] [3Vgdrd8 sIj`>|#LOCGGN2,"@nhE)?ִO$;9w@{w~,9οrsT`@DÈQ0#h1"ןr'rM]:D&چ3 (ZzI[b2ɩBj XZ]g1Ut=8Ko$.S`R02HwB@A s{Kͳ<,7QR[Wt6=B,a-$%E5!ٜ3'0dDr{)@r ନw0'0lZU'e t\~3)IXSbJj=7.W?iz-#闉tPQ|>oKx8dZb)U)WR*:Myʂ""AY*3DnN`TV퓑] ߷F3up2T}k3.oϵGS%B {z_fK%Tݥ8+{ǥ0+HmdyFU&3'ZG̷B|ǫ(sp8e҆I-.Fv$Vj>biOv؇-{,V*5#|.rd=u1| q $)BfOsU&Ep:z"00mSܦ䪋u3}JKo/BZҖ'Ȥb'+L#pxf53aCj X \|5E* GVI`$O\O۷8u%-`Ӳn]¶'slvU\e償> BpH?c9P)O_tͷG[Obŏ:]+A=ýCc04U[n"TZ(!ۥ=Ba֫0J"dM^=B x4:|^G5I)~UF8NzӬoFD^]LEM69 lxve(w-uѸj?vp;| rTC kj1s8S,H o6c Wβ2JymF ѨĔP-zksyZQ͝v% C },}L-}4?`۔w̉'Kd;\ŒUH8taذhZ?Yd燨#`uʇY-YP wLf|A^uHfopdF6.b ,҇"ekzR+VjgO sۊ_j<5|9!WmvNl(fF9 Nj?٥YE&"}VZ6)g\aـ%)A"PGw7lU3~C_H`Rk.Q,i8w>y17m cI'ȫND)) tb%禄P=w_ y7[~Q3HTAM,ՅQ>nȲ_^":yy}!U%[[X(lŔ?5Kԭ-U4e2Ov% hۃ \5Mشo/08Y2Wq/t&>aYD,3{ ,Kq~ da[(ͧd`t/(rb$t';t*h[ I޹V٘iv[F@Ld^aLϷx1MQ\9`_3 hlaYX{lJC1?+ 4O WY;BsxJ53әQkֶKA"..]gU#c7ճZitpoə;L}6=#頉pϚ;Y_>w/2f5ՠ'Be^I&Wwe-g#hާ!|$GQ nJ+.JQ#wO噭xnv+ln6z)LU8D|0Ll1V=$pPBĖ.d_gB>sP8M ҡ%.OtB)ZE 2[_H6O,.S8S})K5y?FS\y8/߇G' u UHJ]Q]s/'(9H:zVu#ש?ȟ/9ŴO$cR 57=J1 '{J7BBsFD?q*dǨec̑YcD:kFVIF$#v {OQ~ k/Aln~}5|5)ɶp6?;'frAsvrH`FguFoNUc8,/Xa@aiD/dT1?,HW&Fa@@C1.Tm]'28 '?29(3c̻\ڎgF?a`M=wUg(ؔ1^M1`nEjf_LR{X4TswhA#|EA'1{h" x)CMXɄ'vzSCk uϻZ1?g쿢c%'<ȳToUCq?݋1Vg:mE M^n}̮|R>(kg+HtI]~k,w3lz&$["+@H.Z.wO[g8KZ6?"bK/m prҴ-wn]~ DՌG90|]3ZD+Z@ܠl~gN-/c$Zk _⚂X vQ4Ѷ6%wj Ӛo3+@2 鑬A–7~u~g;~wI<)Ҕ`~1YɥܔfNq`擋V_F\hT1n sx&\*J?WUb (Yu uka#G}yנ儱 jB17u+Z?[e?30MGZD˰X̯֥Y3-&C$RC?Klq<+Jn]y4T>61vXb,{GN+9eB?liH՛;pD Jb$ Ttz^iF^gbcc=jy]sh8r $FWm#JxY !Rl9S74dV_zOR}uY]Ex߾|WD^r7Z0X&@ a0H^kt(Q6\+~ы/^kjvϟ3fghv,ʱpڽ^"x g'F@ gkK 3S~Z:A8Z3-WJVu!Fʕar_!?OAB\ݻ̧ rJ8M81GcQJҶqn̅Tq3 ]GD|q?s89LTNj{MKrА cNjLdgliBػpX` rxEYPjWiK9%Aѳodc<C;NN:ʹ`HFVN6yqxpXЗ+@Y/F_O|0K8j>a^-׻;~1bF ق)2`WnJ#aUd@w1O G_!Mv["OI 5h@wn\? Π[D]ނfy}}J/bm韗i }bH#=W.{c!1U% ׭^lJk`ً*YiܛLq d܊㌝nE{B6*+r{C9A54g,Ocun&f^-X~j΄mٵ5g ox c vyQ</er]-5Ҩ쟛up ɲ=ܸ'05"1"%c[FoH .-JKj)3ʤ|c"!dvWB>{/oZN߶jr͂9#?.~N/d_~7}"&q+'1(5BftaJBU<6p0rG80]pI*]iy{y"I nv5wП>[3s BLoNM(v(?vJO|k]w{tI`u{bZ!mfAǙHKc7.5\5Mے8RuW0گ([ ]o3CvüvmO7tbU PZ(]RӤ?D=$`+Ј} GLZ!7_?|*5{uZ>6/Mpa!ɉ&X!m-yWfaE()<5ې"&aȓh Kٌ8lW|hLn)Lpu*JH2". hy^`h^yyD::S- nqIG#~&6+Y+G?)Ox5ztS2Zu89%pk͟;9599@k_-|>DGXA3@ 1@(O|/Hqw,I4Tvֶx, ,Ȧң+c@ Rl~o>=J.WM#ɹ`w p,D4Y fr ŏĊtlw!ȱ\ !SD`ҌTG>WMVd:;8]f(Na#㖱f cY5%g{5Y'X4ݛ]YcT$מ@єN׾q™0NVqiI=*O(,U T4gG^v9HT n^0Qۈ}cdL[% cce[T j@#weYvOOZ9F o eN1,aul9 I|p}=dDXO"!sZ`]S6{ߓ}[9iGeGCR;w> voUX!~';[|9P:h (wTگZTBLht N&!׸{`"gvd(.ӵEOvmP*{wX;x&9ƜhHVff }Rq$ZඔN&rA\ݼ~c0* n++~T&Vпs_$HyK C׭9ږ#Q+74< uqA]ˁJfm.ЫvcnV)%8@Sfݻb!Z;GU Y?s?ZIW>`X Жq.[C:P (w=edi+CҚsw g]6i .Ny2g6a ,\3 6$Օ~LXE{]k~ |חLʼnup WuF7q-w\ ̋tRl\M@G6g5I`YVNWbD2.Q\cXyHhvhD3uˬh}xKcE |[E\> J{<^z@_: :F>N?^Aj4I/cQJO_I獱rIL(%3Tq'6iy-L9trHF Y :Urz7:l%T`g]1.IexD9q>ŹaݾXxhIsB_~u+d6Ԣ?:Őx W%bsB_9}yhԒs27 位pz9?  :5ya \q2SkA=ެ/K4n_?[ ^`& Hn23.~Tf`|NeoK6p5 U "-l=Ok oOgː 'Zꗁ( ^mׄ* 9.\듞#hx$[?5ǘD@zMCvɏu|u HL+'W9&qoVf "ˬB4z ܟ24>zI_ GVcJ WqhUяLAjlq۴[k19XPb~JKM}d%WùVxs5pm=F N35H/c[^ʙ~8$6m\r\+0#-cR~k?e`r P1J 1:aᖤV1TkW: 1RYEmjвW]4L]KLAjȽ*a!嫦)̼=EuLܧx%E`i?\.daЧࠐ@01qf{y:CPTOIS#Efu.8NKeJ~_л(WLJ^!oן~<ۆz}xck|BM=9 ǢMHB] 4"MڠFGLۑ9ڀvZ|[Opgb16[|}!(|S׾jD@ 8MKtӕY ~}3{?RPr?,5?h .R/w WQ0}lWf\{)`/M\"<{s:Ih->KSmfȳƞbenX{nzEj4a4>؝oQO _ܓ,hEg c/5L_A}T/<{>ɐ)h'dPBqb: ;u9n̹%`?mD.ЅA9D &٣f~^5Wx0`L`+d]PD§Q %>!@e U7Io[mݞ8 >ta. ů%m_>a-S Bn7V}7ITo7VNeMIFMo J^{ Q5{mDхq^6/ #^Ni=<#=JR7)SlR-l05)x$G=ǣBGk2Z! ΂َd@6U66o1|4Вf\JYпPi/,6'FܮU<ӎze|% ^BR23)19̔{qtQp}3.oo]珣S4ueʷk#G֨Uxs`kѮcK[$7]oDkRwB4~B=oS˯~7 :E@qX !A/ 6pXNa{6CrR!搊e "Xg@U7˴~*4٣1kUJ%Ae9P`$koE{S31j'0bdn `Eg/͑L7Ly١[` JŊqٙ8C^cRQ"$Lń6Y3'愂Ps[Z֫_R [kx2ͲrĬU-gE%}*Veȵw1 %HLBS]0vPk{ݭq1 t0Zfl:0䮙!3ySh yp 0b([9kF QZ zKՈ`4ǓKN: q*P;;FJɯFC.&$MQQ?Br;>5nj|[DW9`~ȗ2`|ĀwYΓOjӁ2yj$Β~ {\3 nmMOI@oiO$> dlnr47_55gwi?'I։ouןBƜw!O8#¦ubsf>o=4sʥ'%]a[< FuR 6si58U={]⮳`Z ۝AuHxp{VII Y(9~5v2+ܑ_*7G 3m̵&~#* v*? ̸D[a"rr%Pi:(}%Q81YvVy^<}`ӝU8xBVQ'j-Nee]&xafJKN"/7Hq;җ/K!J0*"JC UW  J+ͩ:j5B6YcVj_Y\7CX0MN\Մ[*)+,u9_\DC4@'g0@2ZnW04#mgw5[ٹ"F"dH{4/?hڵvweVTپ0DL"2LG`dd Sb-mX UM?p^lMuMm-YUjRo ) aB9nMQ$k'SFԺ6wJ5cR5Jg(,X.$;CuTsʢB+|kdxs\2l;t=pϑXsNB0$3l q A0iNC?ϯ!K6B@EVw^g62܉YbRq?ercW;BV䙳|?~Kq׿t S$'nP$[$?tb;9 &lhPrU &hhNe|J_w ϛNj`HNpjmsҼ7Qj҈q \dARlMLK,+'_R"cKf5Rx^drl<^h`!Cy@:{Ǿ1X ; ۖbT?T Ix@[f}8[P|IMcD*fTCϛ&Y Ǘ!:>P:YÍ!1%톇̆ԑĹYiYter{++7| gġ U_ڠ1G=Øޓ*&Pb_m)َ/2;1Baʻ^Ь\1wсlAɒӵҖRA"lFX`A8Ϙ/VϤq"IojVOuER8_0ifpϮ3Ҁg 4f)*(RQlF&{$-DGJ.p є^uEM;`&ux|'ݒPϑF4u\o٬( 7{kȪ[m,9߿yE +@ZF=Pj^L$yqDߝ(*_]j#MǮ媼'jmMW|% Dù!-{Z$\=FH89~ذ0(3uoϤB[ʜjךFH%b V6$ Vh̲sJ/nckozk{LT`ߝy])<9jzl[^&F2:S8x17pv Z~ódT[D%Ũ`^E0buHM4,-']Y߿+}/]u \ ,1hqFU[ཛྷfY8H9&-Q'zwb"?3ͲG/NVʒ VfJی  W@\#=V 9-0(,ˀ,/bU iVd΅CSÏHр`w_-OIf2O4ǿzPDI}]ĥ{9o?ͱNkP`TZ½GI >akСM5܅jvd(tC$&@%$uVά VdrVWAx]{EܽROԮQI!*X3yU%7ؼln]_IC聾 X?͎ܤmmitXh[˯?6j1f<N$pᣅTa_u7ĚQr0ՊOݥʍV,H~6,'(SI/ùAbTb6B4QƷڂcY"EVg9.Qrabb Z!`GjǮQٌ͟{L:"}#Sif?f)=j/ S"#SdiIcZ l+J#U"j?Sq@Zi'z ƣ+kv~ {[,_0 ??́UrS!WmZLd㠘MŞw4T_$R;#wJkA1x%[50-QE-a7 棿 Q@ؘoYx~3q4MNR3-ožߢk?WEVX:hEĕYdׁggxx½*@# (LLHZ;չdHi/R6sfY 4ʐh#`{+z䞦w`T2ɓJ [NqwsV]\{uN-$ޛ 7c7y()>Cuߦ>eCjB弚c}L8)Dƿn8\(_x$t>]P*0Z"Ǯjj4Qhgg4P/rL]zBnxRtҦ#SQ e aPFAna%6_<!%Ia]U >sj1miU`1bK͗4@.]bK*xGk9f 訔#qXK(˽P[2<;?;?OO dϩ̚Z1>>Ubb>AŮWq$pli?fV͠G/Gǖ JRH5]cd%Խ5,i'DZZam aa/s[oUh2M h7rQsء'qp7 ʌGA>MtCe /w( 6*<{5.nϗ|r;Vy25fؒxHk܀ yZoc W'ߡÚU^2VCu0KW ?6EOsa[}Fa*ω'12KB2

 %Kb*sq.+>?pztNԵbõ>|5ߢ+0 GEDLi>d ;}(h"*s}C ~%e&S&SR@!z4R\5_NҜ.W{2˭d^Bo|I$f[ j^'-k<#!e&>7X|ﶺ! ;(u薌c9o{ `DʟЇa5gDhUjߖ56GA[ F5oEn^JE.t@2~[.V8P]/:~ 3\+gyгgI\E!%#p&^MBS gG4*u8=DVM^|őaU*`z5]m*Uu(衅z/$*"qgƏ0#N,QOΡLPrH[a 3 x&Z('ҀX!eW930JuLV'Q7N ZB~̕dQ«MtGҨ@s U;'ir+^ hmެCHuOޭ_?g /)s")7Uu!a'z6'D̩DCr@Da4p|Xui^ s'lC'l¶je>1[]kdP,ħֵcJl \b /?LX^ЕA wD2ۼ.FeD(zn{wRQI3CD 7VS,H)Α_ |+ {8:<vڅ؟`c,ъfbE,J/&i2 b){R[>~%!]'MYp!5fJ=2C\D. v-IjXM`)̊a}wR{;mΟЅoM5Z c*RtLoMq Ŀ[gS&I)$b71=v4F{T:(={PƗ]8O:R)]љH*3φ6yutuSV8 {&WNd'nE+4 䛭qY χ7 mvzsZ B묪ɫWV w㞔ic%G4cRؼ"&߷n ̿HģjF qAܨ|ꊑqH"Gr58{ _[_[?d$eA PaX@Хx(5zT(D5̉>h*O4QAU·V8(zA&hJd#2Z}vLRGШ}PHovM8C?5_W-Wk7XBI+8Q붬BoeLBMk ET3?K1﷔w?c$, z?UsK7G-mI)WA}Ҟ$Lb1jK2@ XR.@?G2$<2hKGsB*SNv0A8wOqd?F 5aa+ yv2lPܽ@ l+"e9w $rɼn9MRkP{\7/ur_h,Us #@؅pPjTGR |$t"Ȝ-!`/,9Fmx}#VTKW7k^keXcC uB5- WB{ޥU`̓nw5 zphaQrm M64(oVVĪYz%hE1 {%w~t'/vс3kQDWJ N հ^@>o$Y4&n zHB"RR\V[R`f=״$}we6leɚvXL۽ōZ7=K@R9m@ ZȟtT݃BSMG;saДԕ#w3z(T`+hD"=Oq,Z$Q 0Y5e(UM<ސJZ&6q p6>7tDGUJnӜխTL_T%ZL,-< 9 2?8ʰ\B7D 64>үhϖvHOw:,Sڠe>ɟݯwc2uo)3hT|V 'Nmˬn_}>۳bDl<4gMa9Ld[ ^&K'^SFP,ik7I.8kZG5q)u=Z YPцobm vֽ8#Of'qC"r( P^.[·Ɋ跜 y<2rcTmʩ-S}r: |1*@I yKr+MځM\1 y,``ROY"{JvEBq Zބw̠4Su7Fb]^SQ&S }Te{>ra0yqچ%!@afnEiDrѐCn >]ōyX4M!nZOp8 Q*ka ¥D+59S<3b'oII쌁Lo?p̾20pFF|o"3k^t}ѨV]+הv" TwsP֠q0>uXLwyMy52T OkOD@6iOiFk8쯹4{˶t]IZ_r\qAscdoU4QމՊɎ"X(kxS XI3ͯc /vN@ G. ܥ4LƆ 2+p>iD<^~vTv[$^Ae2Sc_c3vʶ(0u6 t[| _? D T:-m*)iXf[uWBMG cCUv>=be؏V̴c1+)bi6^C5vSWT VL]rdUBxÝYX>/{V ~#W%Xq2m}ч/[Մі>?reE ,n_MEY^076V卣rDb13(gCL0a[#g[\@X)'ԁL)~-o9eڪ=db#ȧ+_4u, J&Ng?-١DPzCofU,&d?ZTrxxe/Md_*uKݥ/!&}`kRX&A< 3`oD$K;]e UTm+Rt6PP XZ<xTPs|¤B< u8eӴ<+zȓB`jaM,*͡!X!A-r**o:P2xRrp'"tՎґ¬h'W<,"byĶ'A'RU{We-$kK/1l^1Hg޶]&6-pHfh4 X8ҐB?|G|_D!>/ozãhBѴd=ZHONnM-f@\k3 @Q? 8nke–Xr\ϛZ*mI5(R' )C.-`VI^^-s W;kTǞ(=<&C DGHsu4JOAPQQ}+{쯂>&lӛ8+EMՒq?di'yޖs>S/&{~BNS85@1ԙ 8;=5_Wa|U4]-h#)/aS 7|~΋r {]ɧc w>٦ӫVEl7 _G({Zp.'9m9G qW _Fem,/ݼsw7K*7YFUmw]5#V& "gaX[Hr$QdjǶ\Oſ9$bLD`Z@&?a'aFߓcmvtlYL0F*PFHbuΑiqU_`ЄNy5 ^>h9[d2P&%KC=B&֒G ^Mo2u^q]$ݔccSWYHX'O{*j+9e#h"73#+$*u=pVVUkL꾆FqAv|l:U\fmU9tj/%՜Dkt7|{og.$9L u:,Ki -)QR͆ǧ[c!z'T+vtch=+ZHe8yk{7%[BNe!xWdEʩg i> lm7 dH2v~NUW@EQxLc}tjJK5T?Z>1HyuX=ڈm-tkDgWS;O}@MR]/!̡ K:A4¬(؞D@%]4=h"pҌ`|I5p|oQo2[)Ƒھe5y 8PX^존 ͧ83x4x5{q4gJCd#ny^,azL7,o&Hc:O{o0tGC`oI5YBY 1G٤vXKBN¤ػl{U9xGؖn*Cyۉ%.cʀ(S+ ۊkQ]h_4Gi&cEPmd-KjF#9zs(8O y蒌oAN_&;u)p/#hKj7A5os6~Z ƒvNZqi-: \YCyV\-)ȼs#Qᕥ0_l{q ;SA +I־;"8Cj`=&Vi\4 ) %f0/o^r~ԜLP7y& 9$j̨Aq#FD.Do?ZyZ@XJ*2H0&qö.LqPL*yG$2CBDN/OVww!Q1O~IiT٦&-ZNZܠϸʹֲZ^'u ?l-ScenoϢ"HQxnZc_xVȉmFfU DUw0oRV8m#~hE~RǛ#o,6S͔'[@PÖ;%:@K ! [3,J|`tݸEr6kKD= 9d~kGaL q/G0JUM|gB^]F=INJvnsq[ðP- 5 0 C9?S̫AGua5<+M'D@7K{ i] n4bv6xZ?j1Lg][*ja/KUd5@!j`30&}Z \I[^핮Ҳ`Lu{vo NUeJ,WgdMG'p:)qpĥ;9LORR񢟊)j!8Z\$luiɍɖo#6 1Q['q#fYzZf}8Ȇ𔴸>ǭ4u\bJ>HsQb8pȧNSU5d$qj0%$3LYf0('omc,K`6Jdq>m]*wk`)+R߱fCt̒Hp=ƁP^p<3ɀPmi"C!g-2]?6t*9K}zZèRW żCh^C =%!7.be .f̄TǐQ}Z)i4Vّe~4tNԞGŇ1XEջ{Q_k>Nꂿ 0O5M`5俇%uWE+|C$'t]1q2%ń孮N&qEfC_3{H_R4grfټ,=AxU /(SЖ'l> <13-̅uɕUd!0sq1VN>~ ,E ڊ}--v%rK{kIR y3!ĴŸg?C:[lqČi7~=xO*2OA2yd" 0kt9mޘҠl6Xwp{l k;t`YAZ۴U {,~Fcy(8V6V%t^F % Ai#Y MY 5FqAk% Ƥc" QHGB!@ZBs L#f7'"0)DDSzYa_YNQkEA1M֏fRUE&]뉜/J`U S΀ſF"l@eh Sq@d-H}NN' h3 ̧ߑit;`EFo.1;|ec .aԕ{.jǜIQV(JÌC3.;ݑ¯c,rY ҺF*ŷ*N}xQl@ nCVz"ק>3u ([= ESbku"*xL6`w}9Iids4y5T l)~V\: ,whYz]wuqׅay4vԯm }G!󅒩W=~518,xʘɿRr[$Q̉l{9eϘ.¾XW}Dav5JLB`FN6CAeX\+c ʔako2Jnd6REǝ ߦ%gHL 3t8oukA+&lm(DwųřS0$ϱ2?$睥O*X47v- :#RduuIyGycIcl6iU&o\~%$^t` %#R9sY蜦 !3gc16͓H/rPƐܝSz]zRm,ڀ2E`eN s=gNS]3E EL+>+~`Wkc)Ӣ1kl-V/KuIrD␍ %$LW_>jPENKeXd>g_|Wi`DbS$)Ѡt%!vAU d *%N Ë}*8!b t@XQ{loD-h 3fqdINwn۝^A(]3 e۷RkV}لqc4Ph,);De}Dua5>Sl1Jy<Lq̞m&TW 5F;Imj&*!bY|.=ay FfK gAȋ_P ~Aۆ*̽0Zڟxu L3ja+H,Idqsxjxť=#:û$.KAvށ t{Ug~FǀԷN񬞵&ZP\ Yov,0[.=h1,Jv=L2Y̌lp3CpS\ƌP~*^&M)H3;01Q Ph7Fbm|Y+*^zHef™񢙧P]> z-:´F)w0jMPp/(ÊnX/6j@JCm 'X[m3ÙQwIΝWMR^fw,S53 EeET=8j=; )ߤ= =ڂyȍ1tT.%snդzgsj_˭"e: 4?j AS{'N(J/"K:'zjx'|r<_<fsCS'g\yLN•NYep{_ݔo_{ ܴ%{!^+փU^>B5ܾ /FG`D#lnqݧ.\Z9PDXgzJ1 BGCn MM$3#A<W c"b-,!P'We2RJb`ϥP"'{/͐J<»+܆'N)$?n˫5 pU%:qp gEm?J:1԰,XXKԫ KX} 0){\´nRm/sH,OOFlܮPU,{0&+kGJ7Ip>SjԐ1GgaCb N@~4$Oag5_Y(+a&G",?ueҙ\ V:TuL-Hw "'qEcuk#:@z2'*-P/bF^.^zn.^ڍom >C{6iXDzYXVgK>M}\ M3[%>/MOe8Q1fo4[+{?㊳ڤdc7GeOK"4w/V{2-6粻SUV/6:((q:Ts%bkvo؁8#>đePz[?JDD ,}$93ND:reQZt/YU"G ?T2IȜ-GוI*B]gUGX8Lx.y=,30W1X^ eU禃xZ`dϹ:lZ(^Dz6.?yp ~t I{i8O~ح儼v*⣚(7֧JFuWw7T =>D Ǡ Λ;W!'e,v‘`R,R /TҬ{&%ЖC k˲3:1Z%m"=O]Q#TH5efi݌A@hExGp;_,0o6f*/RjaE@D,^h* .>.:F=.y=ʉt]}K$YٔPE {{Y9B=. d pzb }D1]'5_A9ɡDA[sy} I.Rw,uVm 5Ҿwt Z.Dn@QUQ5i%%J ȸ>.lg-p۰ K|52hzg)S5ڒ%ӣ,SC~Bi[34Gd_A])/%YYqHw(5rQO(!+ 4Nom1ѯ1/kFu@ZV% IoEnzE!֝}e+;@"o[;ZF@?{r^OE__;Zm%׺~&WEmh)d:fł} "sN JNQ@~ZoKs&ZB9iPY/KOUVT)#JUo̡IdVTIXg=mz$Js nV0#Ol~Wc 3&H#y0O93UIޓp@_YVU#?x{)5iԀ؜"Kd^it6עKk.'?F&q6/3L.  yh̒9>Iv4')/Wp ixD {$[pR3[(*齽}x~P=-0xsMl^#_((O'L}H|l>u?h葊wuZ?NeSnE[V$%l P!MJ .!@Sߤ̻(E?1\+D&VRI$GlҞ'qWs{+?e_arG1 )@XD?i/PHL'n,YNrE_xL'C]AZ#^feIw"8AǾ!H78M7_cݢ]Y쿯IHЈ ~MXc) U~g~"FsS3^^/J 1F&r957ۦ?}Ognf3ۤ\NLֲBǀb{eg} ukp$//ͪ+y% Qn2*;;r\RF94_M])5& .0i5 OpWzCC`hXB9wRUuaG6fe uۃOh% OGo;Wq)*.Τ8NlHr vJ.gj78>x̝A㦀JH:Ռ\iΥm䄬^&HsZ&gDlX\E kZ'Gfs} XX Pҙ+!\->;scELZ7C{#p@/o:2w~/)s-;*Wq !29B7dZƭQ`gMJ^pP/b9:.Cgn>VEބ*dԹH|;BH#98'}!9gI'X?:Տh+uBh0+LucKubiݠK]o??(3B,*~U8Bzo&/4rE1眎v:*+ŭc5P"$^Ѝ.>zlI't6'cf s$la덦6KSndBEB(\k7Ñ][M㭙sZell\Ւſ!Z 8Ucȭ G0Iͣ8 5w4+ٷ#h6pֱRi\V- _h{};38NΆi8Y-uP]9"x̴YL.!1L~x~iP9H 7N_LjIN,O6.1 yx mzwʐ9r,+lc>4G/zlvUo#juJN ~*iy9bS5 A#_yU`s(Ru%W}wΚ5X\4!䠝R7 vS:fzեtrZ9se*ou+bsbk=a.pu6))#=Nz(z00ƪrius ;DIGU( ?_m\>~`Ubn~4%I o6_}at5b~ ccٕhI ."x:.5XKv2Z 0ܛU~'(ZmhC\y&cudQt$ML @_ sczQD.`hV3G4sBvl*q~XEf5[wHbFۃ+L69܁= [0«v3;O]J Oy PY^uG>!av0=_cg]Ddy'gjfz==^>JO&G@P>jU[FZ׬4fŬkVC #jL!L!|)ų=#|=amj ($J3G˛yS"$yC ߑ"@-'zޟ\ZcSTE5jPc [woG7_,wSƲI@s)Lht1\baJ$P#ɣZ!\Q/MUr$Q mj׶GҨJJ$/Oۇ_?RדTJe prKnٕu"“Fakԍdv90wg%!$ '],52"^kweW6fCQ')لhe'0ؔF4Ҵ,]tw.5;e%a|0G?D9օ$@nת[dr}ɬqJ ~!NKj.8F-vHĎ|"8)H59rB~i-->qSʊ fP=(u4@Ht {SEunAk!#i'U&--kٺ3X|}7\t0}ᝠ.s;9/鿢؇KutMwC*1@ 1hqCvRBOV Z]0k S~D4]s)ilcxr{![xYZ_>%i*$qh(?}*l1vgV^Hvv0Z{Xbwa|YqHȦ6ψS7EZ83圫s^?8; GP_L8A)=JeZd~}$[wrWCk,"D'GQ9CRe6cs*=Y\:o7luS1+ ~f,_m[܃X [ c7QGXFtk"3ZhjcaR iA`l>/{ LչW7+^ZN+n_W+m2kf\Qe7/3wgBwƑ)}VŢCVЮ~]WCJ 1N7T7u`:<Ҷ$R-6}PaN,5 @.CijXll<_""gJ>?MC^$ Ɋ'o~u rv3-57*չvZN9yk-zɿ`׃ =p'&хixsڬ@fӹN3("އ7en}(/4 鬚Φ[X |>fv ztK?bquz5˧aP b;N*Q8!+fn8ܝ.~]#Х!g)M!Χx䎽?e &rKI!j:\ J .0,"вkda2E;/O@%K."RD0Hk hbK!Qv :nDͮ74n5嚕K'PD,)gJR9|9 0KAFG @j>q R[|} tVQz2l> ;avwa=6W6YZgڪ`;cWfסNЄOwx@?ӷRЈT:1}=&IEzĠʔpفJ>tA'bTZutb! ijԬrV/![afAwnDoIt0g^ZV0c4Ur\m1GA6ͣ! < 0.=$ȔJa |\jlmAi)=H{*0:g&qE*Ít`O戧Rh.ey$#z8fiLF3)tF?j gOrtaR΋' ׶AN7@2&܇/G"f2< <~7T~n 7XԂ{p5wxU I,ҝ>q;! |]t kD:a"8ۃ0F5ʹ"#dD>blsq_0pۜq -iҩɝdě`NZ;oעǭĿ& j؁t 9(j1*GrXn!z!jfEI+4J͟񍡥bnԡ]E!Է =ϹiӸ=((B8ĿVG\kg7]4u1n.m eXS<}Q:]gM>](*m&dҿBw^ M{IjR'E.Iuݣ4KҮvcH-Q?>| qLQ?ˎ[xVeþ#|VY/-2$aω` i][ o)B_]~G ڟ\a&O3xIx~͚O0?b^,ɼT㦇{_MDڐwd,>8rR EwtCmB.~Rot.#Gl !Zn7AͻI`Rmw;&4ͺVplPhZ, |_ˉwf}8"a@њ&6xRK>dhyepfQ WUylt~UʯfdN ]u'D)[-iL,{`e<_Vxw+LS:*$//2O3*m勰b7yٳŸ-C="(s)=q%6E1lh20=P{u<*~18![OJSmO;?Zih)݁0u BDodq܄2y B&q`T++CAk#!aѩ3=mBT0tjIUUz'(QiM-15II*$K`/2GZެoԟP_ Ak&55H/w@/tKi'(Kx%kЗ$D HTs`[c8OoHlێ,g嬪d:ds-N3fy>f*vqt|r!A_k@pE<]~\ gRv %5Bkp=G{Ri 7>GTnIT OSIqS Gn-}0w~"i̟Yqd~fYi)CxџzF-"ZJhV k{P닋XJ Eq0 Fʍ t2cBHi~{PCeu鱷Wdu r 1cV&_ly4mE҇ڥ&9x{#ghQ}"T8g>A۶2B0Zeq (Hj} G"F;k{ϤOTh !ǯ=*{U Jg Sn7h&i>5 ,*Cm8pB<-)JeKosFµ.o܅h)[pGߪ% NilCN<iZK&imYi< 4eLj`qsi37<uI*0J#7K89c7UHvg"4KjQ4>l0qP]r832u,7f_;EΈϒ򍀒Nef ?azU(> G7&lՅdZ׺Se;z#?dk+K 9 zPq+sd^BL9lB09J>yG5W!;UxH`xgZ\6J3v)Fjd`?͈(jDǤG/9^>^2/^@Äa}5Y 1m/|^` 5va^p~zSrpg7&76"U P$2TI{%Ͼ[5ІT(WA }j}$ ߅ǫ8>7]H8!E.,VP>|\ x'o⎄ V7+0$RO}WĈR׎bW_l,WY78&+ĉh1~⹇;eW¸H&ł*FAs@F/w@w@ ӃϪK1 ɟo<{ot3P'm6;P_yQWTpS?9nbv☪tzhUoZKHq k/:T54#v>@jHp'FE;&;Q ~e,,aՁ6PiFܦեh*\8r-HNjg[GW&IyQ_g$[.%5HӁUպczCqC’sO y`wE c"y+9==xs yiiX>MaWv հi@zj*'=>4ʼ̱F[% (@TWdJp\:(J@ :+ h c?Tn>2wwuM1>CpS*QmrBn)ƭ :rƂn3v~v1f$:AG;h湙ubz"PV!]+G}mP؝fmyQ_Yf.TKFECxSQJdZ|l"Tdf;1-r KQoG@xHMNf(k'6]B3R̸uql0!2ֵnll$caN1Keɒf%sϿ$VFS/JY/P=ERԿ[U\ykv䧂30:9CI4Ncj :hcS I؉#:rK`@{9(zXgҸ`BB9W92(5~]|k-a>6)!<*D|x|SP˸MrBgRdOAaQ&#۵dbtU3=ĢDT9x7@-F,q3Fnpbl?5'VЄ #l[+z!?3P.dz{? (XЇ^7tڂK}I8z.5D h܅+(еF":Rt—4@k4^I vdÏHۦ<۪+ƏM3]e^/2ѱL8t:dh]jcW@$~+ܷ7 km<^.1ߩǗv轜C9,{c3gD1΀ErSxrFwPc8GY\ؖk oPV2 fŊ'M7&G>j%0bTIΟmĀ ud)m v?$ C][=>wNhLt5xϐy3V3ӛXծ!h咕Λv찈1%X`u bTyԨq MZ )$MS[R>@0Ц&s Q\پQ(bLL * CMTC(Bq )(1 &w+M-WMtciWg!J1e]l%{*KB[5yPa՟ ,g`.9߂e\hm70^Ob6˫N܄i~pYهK+m 3dN t_Dg뽷pK#WR5$%r FU"-l;$^a7n)9IfXGIlt&#~穝YDceuʈzd` @ek_ 򏬳4VҌי3M$ND$c+@'-0rc"6)=3frMOW# ֣Pnp3An瓠,:2]n^AiT?`B]QPpV[ Xn@ w'K;kuܲӌp".y+iެT 9qGjzSO}hsBfLFpS[c6 Y"&٪:|:biʭ̎-P?rM̨$S߮柯̧5ʠZnj,@ I^ s; SRJRڃNIՐ eܸɩ>HI_BCqJ>"iPb7oAP+.%z0"\BPD!)<X0>+']H4m~o\Ttib_|D'c-YM}e[ aF{m'p,I| Rd\Z:ءMwCܛU3*p.K@<1~}L+?e1zz^G.njZUOB8 OCD`,iKu.3CO Q«uN댸UOQ([i 9`Nzr]D28# ;:_ɛ-ܬѾ~jv$$ y_-8`LOiIn4`SPVX@›` m4I̩yZoV^4% Org94o?]LXI1CDO~=|f\HGeH?A&LJ;,k,> JntI^ul#3/@͉:f\Pw[χXXlqs_KJIM_9IBlQzU -]DT[RwEbؘ9 ^g%u.ap"xtF)^X/ub'rE8b@%x\PlUnܦD:Tgym.1w,Ù0ߨ^5*57 .XvkY*J|-)*):{ ~B_(DK77,Mb^Y~YH(<;,1!ﲖZHj"JvE|2XvjE/qb-amݡt(hzmkW+$M9tw]sei8Z 噭L<%k<(ӢƢ*uT!؋O\/V׎6'guپȊKKc@iW+}d 2x/vExpSE8i/;p|1z"*= 0N`Ms܄6$ gflLgԚQgd6'wofdvh[_SZTKzYjƝ*U 6kcDanw; bA2,ǩ ra[pi]$OxA 8u9mM9_\;XNFB5Y&I{ѳ0+:ՃMn/..xifQP%T: O` tWiqr m\vÃb[Y^aJBB=:O:>lt"-T,)@.i*+3\ÿ9SHsҽ L<yʓИvx%+⿩2LF/{KlpPx0U3lzn~XTwXvL9 rw"o񧔔~Z/}HrzM ޒr2,R ߌjhOLt*d Č جtQ',{H^PPmU֟;lf[(`X1vЙ-hZh&;hVS="BG0. QK#" H:+%rlZhXp{VS +=B@5J'az{t% P(7z8b0@k5C0G`:28SːkU0O"f>PеvGqAIAR79=[(zQ"\(ePQrgѢW!WɅ[X;81ljװ^rq@'t29X|7Ol Evԯo'3Hѵ#  V`EB5MN_׻#Xl 4lc{0mSKGlm B^&}ٓo# ĉ6CWIԞ[Qtķ "4 FU3xUY{5n{@B 7]a;Ca:q}#@ )~+Fz܏NcS*&tg͎wJ|W:/%_`:d0iC_5h[b_5, 5DraCRC Ek-jEn6}qg*[uP-j:{}.t _f̼#֦MCQ :l?6XWPe4 <"%k%ùlK긳Gc}L %G_r(Ґ gu n>LOG%qk]JhJk sw"GE-]q>$v@t,§9xS^V2uO`|SRywUo0/0GvTȳ:>\p w Zq>= ðG 07zbzh~KB/c?)X,4/mq4\%*QrAхoK/FhTÌ ԬKv9˼%/ v[cμ)amV0X$ЅiiG6NI69ѫ81Y> ~s6},z}wff`#/t&yʰTu G+‰< ǐ\3v- cݹ+iB8e=%ȴ"¤"(?7X"]jȖ~![Jx_Q}'X?2Pdބl!1_Ðg]6a, }Q=Z\~N 4 E2 =p/N,ЦܻN$y[Lot&Naͤ,0 |.i5wHӢGb8+:"ugSdž4B̶VWkݏbTrw&z d7$NJ?L?_Q2O6}B"h+CJO\o$o^є<2A@~~.ŕTc+sHL%_#Py ^c/R1ްrx~k> vۚ?l!5VB!2 u4Gr0AMgGEkzKqWM4$ 7H-J8Mť4G#u Otdg,jێ] ᛛnvXfP'D|–g_jSȀMƠ.=xM Jct?y4`erkؙ]&'=9 nhVR~$ æ)OBgVw< }={[z2uNrT5,yvbYځ~UR32&oySp:SE˹zz(@#߰t:ۊR35=Ն"/Q7pytLŊ~Td(aj$U$U'xqŜҋ|+%%e~m+}Y@Ze8ac>)[7vRwӈDX)Toezt&UK7RGTC*+*v8N& 4X2stY;v?J~VE3+}N$I7 DI",]~5i;4k;3z ay}dZ?0xbzdYH.]|g  >p+h*g؛#UsDF07NՄMveDBSwG,'o<-RIR@%]$~e. Z|2mʾULvOLb&~bl@(B 2sKht_W$.mɌǚ]x=f,]T)q.7/,dƢ}ޜ'rM{m/7$x';*( PZ]l KQBt+,jǫhؚ-ڂvMI-9 ͮךS7ygN64pW68!m%*Jm2ŵیgt[5PHH]@ vn`3̲Z)}/h/r @ +_sD)&ڰ|I|: Ci2cG\gh[d\t=b'v5]?ہ!tY3O}zwuE(NA)E.σmMv x68i۠sX a5ՀR##+j!\a/tCp}yq ( )Ai hstJ#z^s"91w%H=&?=A\Fw,L<[wKC5,PLnL^=x8\=yoqC 1FAKr {0*~ U/jrE m*LxUՊj]*7axJFE6]BZFf[vv>{5^ ð.;Fq=-ó:SXILbZ[*rY0`M.SJ$HfI'ekO|t؟JZ/koԹڵZ6,> iKA=Q$DJ m~dwcs[>m%|How=9Ld6ۯj[RRm䭳U|:=ʽ>j uLל,Hy ҬBcƩJ&cSe{jbq1gVIno .m,=~/<"=}ps y˾hYDRr9kb7*+f b{ #GMw4_/-ѿN&GVfKh/|El Ia\d:({P:q,={h|?K'_V;" ah]o[?vZһI* 4Q?ʩkeDF괟voOM=%П-qiͮZ=e\U O(#&RE0X2Y0c_Qሡ`WOP^܉nrWtĹk?֘?&*a1)?wZ eczٰ03!j *Tڑ0{`vn,8~;]l}u\>5 Xg_֠[|_6讫[ve40f]5)tI sb3Rwt%if@K AvE+%"=ۦP\cj)IqzNVg:~G6˔O5mΫEMBL0W%Dx(9NBavqeytS{+38={&{AFB'^x$ CT|4gwW_MhYM.6@h0G $-3~`9vFt,h$M-{`g:0o0ybϹ&s]1Kі_,PFMtҺ7ufF1cԵ2Ywaozr׻cBwaISȇxk򰺋d LMj7ˤIx\Pm > o[E7/E9MPQ95Pp+?4b Uxs .}zι;b V`Azak^*Q+97BhZk0ӐB XI(]\;MR"I|42lHA6=Vm5 8"o;}wAcNʎ5fN?=%t WDXvJ+-ƹ--ZvI6<3at ?Zؕ}:vgdIZZ‚*4ّGGd:"@`S_='!!U)2,wD'˯fcA9o('WbQ@ M Y!Buǣ!{>JoW$xN#W9!U$ ʐ߃ѾmsA$OdaZl`lV3=lb vkM2R a[ZFʽ6ڄĞ2l]a 7n ,"OHs-^.B&%”.T N}xP4~'g9g+Ld[f DYc ׹x|! eE 1)'0iԿӵ(  q𬔴C Mgvd1lM^>m`9Xf9 s3Zqne*:q"v -t:6H74YW0K/SIU,첿fT\'#b_[oԼ@@{Tnh9ߋ/^eBM-wJ8&XQzS]GtvZy?^Q.vN܉sRjǷ j5mUOsL\\ q1Fneڥ򇥒 $ km Ep>(1ᢲu^yqR5_g᨝%]l@H`[F9,.al*0.B?boGfM Jt[O8]N`5 ]/r[-g7tߔB\yt5wk0Dև"w7?^h S&*@gPSLPg_ zV;L5%J0T&EBƕxr3³C {L;HKSqVࢩVӜԗI6;/,4_@Lrt\-qDbS7G[~u[=C87̱@wr!KZ+n=1Zwm'Xev9edY؀5'cJ5?L 6Bb|q1ӴEOh}/4Da{uGp3.bei!!.8@ѕi>D$CS$U1MUTpX)%*HfG[p+ DwʉN{^\2n#7/4K5JgS kW tY㠗#S:R&}4oM&uQo㮥@^h[쯲8 f/ !򸳸 w߶o}h)XIu`O-7OtʥO17PBEéoy,K[5UxS~L0Sw-0*Y:zU5}ԍF[>mCG1AQ|Kf@~Y K2&9Mu{l1;j (~! Y/+&Wm+42/@eïwkIF3/[?ޓ:wLn,]^9 `]Jx, L-;2 -*feFnR 5-295;[I86PxR ۽ɓp>sT;!n@s c d|o 0~h2'x>\q1pYAqV&A&F_y%!v { tCt /Mʛ [ü(`.Gy%'s!}e R(T{KH~{Nczр S;֠NWTw^}Q HO 'U < !QGCxEm48- CUH 'qL"s.5w/ ;t˷޲w @_V qV!FX x'} A`u[V\7gL^ef';TjL+6E56s J̝Ug'$y=6t+s$RԳt᥊F7sQ_])8=,K3vGRB[XUh`7vb`aY-_QW;R-],Ӳ-c}C24S"4 9uhD0vlBFE 7eFV !wsωOn jOAOM&׭lCIٍQd'=.Z7R<מD|0U$unmJڣE fsʦzAW%cmR,:ͻMotC@@LƢ\#g$((" ;X4 k7dp7bv/#xTf7kLo-+6Fg5ȣD9M}wJR:kIS_:IO Q3܌DɃβf8 #K$fnQ Pv{ xoUZ-LЖҽړݱ`Bc. ǗY~ml:A88Ssᇱ4z*ؘ}wWJud4QƮHٻpV>n}(x/$vd􍓎` h #aUZj|]^:n0 iz_{tJP))až/7S]5R/[ :?[fgS}'e0݋ wFq q*^,'?,؁:S ZUF*D{YLSxx6pRŝ^psBM xxعf%*4Jqq,@1DTGebtX^$vIkjPRaJl$9I)qBmh=ӋJ*hšKE@/)'Dh~=uJyM{BxA!u@TlXrlS;wAɔ>w9q/ &l';6WƷ{1B~O֖* -CkxF𰓇(nʋDD]FaZod=R KXONz 2u{niO2 6VimE3=q+ڻ4<]!{bv*A;F_m ׹wLYH6SrvKvz&L!X-&-jxO5@,#hI ܣʼG+!;fWz1bG+k 5fi*}B }40wgf;j0E*i.rj}-!]\(t9tu(9 RvBUձR+ Nw CN.]XOjP&>%!v"i`H1e#*A|AOR=nK꺥_Cbs%JG'|N W= AD/P~/)y57 <=KE Ff 2 r;[$n6 _LA4wɷ)' G1HĜ_÷3$7Yr%I'*D4;g5gKrU/. VtI=q҉U{2o' Bg7-B6W9zqgH[oI _z:wŤ $+vWHM(d>Do99>TqFv^ ؝1È8~[$ɵ(ƫDf8 l^RtUT B8p}<3qnx}WyG.ՇW/4(jL)giDG%y䳢^]ugq@QͶD0вɢE5c\DrdH鿪 )Ϧÿ=!ˬ4 oqpZ3*Y'߶#fQؗ;g&︧FثNZ|7hm?Pv@Z|L}K{ V .Ox[7le馼DE!poLOFBT껯}}^+_Xȏoy2q惂Vz> 3@ui["H6+̰90NуNˮr ;SΉCq>l D 25jvኟ^Eqկ"J}1y,*qJBYuGA#/A_d[Sgf\[#4خtzk=T-+mG+u)!$p[` PXmt}P'kM:1iD &QG1ufkXLhKlrfk>= ՠ>i+Ow]7v@cQgbB)xG!]8-Ah2vf&ڪb/,7ġCxX~\UD*2j4FU %)wTȾQζFTbC@_xC bc1w+mw#x} #c;m8Lha>r7yr$ʊ"n ݄(v;Fq%xpg*+Oz!k;6s.PDӌTUiWf٬:;*..68Kɂh bcȆN?oW*R|[IwR3/3S㡏jA6X])p(GH}{Ǯ%4"&%S\w7xTجJg7N%4h c_})vBCgP$sz1#[g59'=O3*n|)ź[:@DFU! qR|]j.BxJM$߭IJf*2A{&^ң6\*Q-z3LeX4jO]OJo΃L܏u Lr]z8ECK]O>bNCl)gU%ϽUyH+%ul6W[_ OMݬ9x헷ub)IJDYYG<|R<)>"+];+f9ۭS92 nM}o'E-WP]H5Bm߫Bטn*nu N5xlIbeniN >CCTWv=g|][##4^٢*7" 6~,4fx^p8/ùp =-VClx%`:JH`.vZ+iYzM+?A%Up x8b400J3񳅸!exHcRFaQ@C̈́ʶredږl;@0m:ϱI}U2>] -F@T^{9gf$}p橖nnQ'Bqe9]h `JsMoV=߫ӓ}:KjA`RhQBPnQ//p#&EqYϣHYSC ey!q&WF# Ku3pxQGYBȏ'P 8`|:cmd4Bly(Ѐm:@V̩{d=}ꛏcf \E]Fgһ֤m}޽:^2@pyMqaWWV2/"1w!ŀ gn0Z-9i]j  t :dVG?*=hzb8Lgcn.t48kKJx.j軖=/Ab9'g sxr60P⽇1 |`2fÞ$Fd~ou͐] eɐoc"Xis؂+Yڴ:mJ7>ƊOfRz'IOFSK9B#l$<̾Q#Ea|m~H,HSqܘ7^*Bx:)Cwڵ6H:K 'bM<_2a%4ȝnR+"o~70ޙ(z.WTuqc 7N[x~&9+ORO&1ؗz1 z~Zl)r dpR;])ЩA,qBv[ ?G'b(9Fܠq"XBEy 7\xH|( (Nj@@IjM4_Cw/GRQ:~b 8c没gx1E8{JDDL4Yʀ*­d6.sP{iMϞAĒѩՀX =HMG*bt`-E㍠>qa&> H (4`&5lO)[2=fQ} 2m,'屙H`MZ]Lhu[NBu DŽc 'V$5A@?g5P$&m '9YHn&&r _,.`RQ* '7jIл1aޑN. K=,$v&9KnjkD [.63n,)g>LAcc/ '9ec@މZy S sXfk,jF80~*gT Pͷ.$!7PDJ­0?׳ */* PM{5k73VPG[{z1ojg|iy:wn#e#ܟ4[5EdɾطėQXW OK&,8wSI+! IeZb2>3v=m_&u3EQ{d1xulI pt.!˘M͛\0LcwJFAF¼U[K[\#WM %q2-q5 [ߛMtWE k[ TK?8Ej},%BU.!| IĩŅ Y7=lĬ-|vC``5yg8+svb ?$s \CN^P`)X_ [WQ*4*o;LdOʺ M1VB5)U;M|o< NWw*] . ){"a6zb'l k8ᛌԱ؜7vGlXf)EwɊJu'G086q,ilX4*(;ؚ<2|Pʾ(4ɍWߚ~X@7&0MQgsRg!(Yƞ  ≦z߅Τ y\:4eҲc^kW 0\/]]}ߢ/ zPJL.+I7d ^Q0%]:;Z:mszt9ntڄbB[ǰ!(4^4U-<AJ@WU3UP S sHҢ^TPxh =TAL™|ǻEʶ–sƺUTTKNAJP㾦*cגOnO%F%U7|tz%։jέ:5're9B qׅ܉*ߋu?] MQqrz[퓧_V9{֐M_Ti闌齹LEDwgc˶ W]r>q8H}Mt,4Uz?pC7 Z(apZnYt)Dn#[t*ס:gEzM5d;X'4 ѥLzD g`DN(ɒI?_5t*7gl܈d 8(_k!:uIp){cOmo *K=ww,kKtP+ dN?SCsQX>ԘP9ŗD!ϐi&KG"8)tw̌ -dtj-$BNs?7ˆ]k̜HV7s&D>AL1B1'd0vt;+j?G2%Á]uSG-7jyGs{#NTmi xp ^%1D8s=#u^W0zu~1d" 5Hp[gQu0ҩE/JFToQjr}at_wR[v7Kͱ`ͅ @Aҽ{iP +Az<>uj~Zڢ&cEۄw]iYik(4ʙ,C]z!~.5DŤ0~Sr:G+#BԁbA&R0::r.b(e$$!" V]Ϯ t 2|iAvv@QKrUwKBQcsHԢ8g}M A+&o%rxυZsz`C8E&^~AQ< LTf.l`qQ6l267{YS; P2!1݇_X :˔@ 'R#-_vKoC_.V=w V2jm36Qc*$Wy;'_~XY`“Qp>(@W[߱g4 Mܻfao4GRޓҶaୀLQ}( |rmO>}Up/:/{ gewtK%6={LAoC3/99o{.P[ӟIZv"=Ǵ}I!dUҏcV(sڊ :a~DYj1΁C@/yw e䅟9[kê xFyMo|"`O j%h5x"wllfHq]IV;N昏n&&}jjjI(@+թUr2ėtTi*H2*$$QcU"d(g5qFB v~}b KzΘqM#'\lĭ9t 43/F#op\utIŲK|HT@ΉUH>_/´Aʋnn(t^e^g9C0ĵ{k.(ܹ/||gƻ*ebY\S_֤xmf6 K<=E}VSw1Q\._ הDoikV;Po ̣sE~ڿl,SobDmC߽k&|~y#iقOf9j"~Y[02[ %@d. :fEie(KK'߸ ʑ'eJ|[C(z,U [8Q'l~ ^a?5Ց^ 9S^߲Pvd?c~6`QC0 gw?3ṹ-ƒV\ƴbv 8ztlO.)QKQʨ2YDFts:=ULXh v XAWihCV rryN#@;j)η l:Vxx KJ-?&f*%=> -#|ŦeCa`UJKx) 65$I ӿ{*" d(zVa jd7OO2!01DͶy q6$S\ؓϪHyF9ơV3+ Rqꦽ5t.MFQ* gFo#L!oyJ,r־5ZpvCO4&Y0tJfq]HIR5 Syvr2)k&r)o3- J]KmF2PUޡ5cUϤZ,q}>poՅY+[ j(HK҈2HR1̷ߗ>p>-ܵDEBC*ߪw V5z3,0j JgV#׶ymRm F`!Wd{}⏊%M֨4~GPJ;zs9qfvOO(?$;DSAFpk^#upx͙Y$-mhn2qc n(>o$DD9Хsh'4 |s uŲw`փ`qN|=HqYtM m7]W ^?^2N7ZGOX} ^S] RIm;i:֍cS*'F/I [QʦQgx_,|xHcs<A1hz E(*^w t+sJ XE7g՗_69ޒ[n%FS7$iFhxtii=sHmDR)~Y<,vтf4W}k l^QKbƗPP5f(g!0ԍ'L"ub*~(aӔ o6?M:'FSm}~ l+ -( [Li7y.*Rz߁>>7KtB/fSx?MD_yLjmQHN"`d?9 *90s.~.HSg@3蜀t22dmyNbYe&Yƺb._Dt*ծ{?8_SE\{z]8[#7r]. ɿ=ؠʣ_v4."IзY6c7!ug+p`@&X ,G;,krTFFYhy?91, 0-OuF<KZ֏u,F0GWE-sA@k*޷gW"oNG5ojt6;yqWcܠrwzd'8OՠսrVߍˉ_NsǓ*-3ZI3g>04x){jR򱮈Y>2&u󺾥 b#V(ZF!aޮ6QLMlF! fz>f|'ox)Z*"+VtɎޣ-Acˎi2w퓵(o^%$`:`U.=Vc_p4jt G3J\ B2%rO3Sx&W;C/mʵU,0vV0RI%5NKy^et%\վ|{804֖M2ƃqd_AиH?S4Ͽ`ΏktCZ4nT B+~s mܑ βy2=ŸhXu Ͳ -D4`͛ ݵ<>22-%DQФLJ'ԘW d)WV'=G.L {dP1"2֮"YdubJ@ĆL.-7Hk#xA- h{5Op]C"P=/rk~"6f"J9b]Fe7$L}.ȗ pVl4\Q59VvUϘ XM%:Y%q{4[#֞+oՎe.SI}O (A Dz<n Pԫ.o32DB^ǡiVvPǭ\ ]^we)" /^sȸd# _sv*VB;Jw\5}<YXI>TSy;,Q"U-It^|Pdk o}ٗHeň_+V9i: :Ǡ5dBDJ#Bmm~#?buCC2Mt#bf3I ;9g[~k#sSS (ݿR/Faݚ?Dgȋ_@ "!bGR,$Gd:jRœje).@]X9Si27 f jj +(ÊJjv\q)0찯}$ȗ<_ASoenr5pT }-Amm݄m-*.=h%zHdgKJ^En0 (+uCVVsR[mP3Dq+T%^*̻HTmzZHI=-NdC[~$eVk@(D)ҎAj lD[/ALh`=O{{M#BɥZ~?ل-9Ff}:gQ4 -0[uSAem4j5)DžgI_$T|KO;%K/?vTJEɹ{kkc' `~f";+q/h4LA@覉=zbTkqhE V#4\j\Ui?!%g$_힑X]W a6`"$E^jf1jI|QJ>n:û4Ж$TTBiş9S'X]XfE3 2}u qSU$YRu}q^>*gg˓M׌x2 IPeMMdKG1LY }rv)y8_(ffE\p wcK.+fDYy 2!fX af(lA)wN/)N:DXBm"ItN7 =d7y±J"Ù@*=aK|;I5S$l#'-7vM{cބR|U88;S=-=^JI|)^}2QhGRg =){5-,r6ٟjsї)5]LZ5kZR@o3"C;=Ud8 1rmE%lvC|`':o/hCOzP?E'uEV$,P=s;h?͸B'>)]B_j<I@w x6 9NwSвDgJ Bѭ?mD"a&nz 7s~k+M7Rm26\=K9Dbi$.F[:S ]} b\VOX[F2lTkI bJ('Aif?$Q}MWs$s|Cɦ4G6(9c<)*|Ig9i$&0ؽH[g1-t7GFwfAqUa0pv tу< S!㾩MQH ( >*r_)c~ TfɷT4Kw_#`yl6t]vge a,W:;˖`%KNͥ\񳠦:]ihڟ,BY"_ɸk겋!X_xx+cAnTݸc"s 祱0Mft䤼4tR"cޣ<8/]u3Inmm!wt2!7][NJbBvbxv)d|+ 8<2Ã#k66pew>|1L¯S(M;X^TC&?S? !e+Ө 0%y%I ۻcY} ծ#tFϊ!ZYAQ|ӺPKYW˩Sž~;\Q\w*{6x! $U:PmbXԺ&i$ J%<=~?JaN$X27~ijTocka{1Bt.Hg`6\?U z`1KG!8$jLK <F_̀4I"vl kS|c5HN$ԃ[WGßɻJ^*ѭɹ_FNn)t;h0),@WK#V<}OvSjLKˠ>8F->;,rU:ĚMb8r@)zٯlqHD?=!}ijt pW_yK}9|E|$da$I"Կ+YBھ(8);oXaR]Y"w;5z r1b$|q@PA|sCE7绝 2HjY.ʌs#7οwGN4 as/so5dh>)S[#?2ƫ-½".TqjB_xIHH֜2 #2Փ}=eP[2U$6$y /HMLUI1i(! cDM↩NE"J~WpҞ$v+9Q3WC=CUyOPIEa^͝~BTee:bSC 2wIM#x`MͮT% cϦp,j3tGyNjN=%l;3#gʌw3x\H=;WhZ}@8ot_H8dݒU9$ЦϊƞGE.-S7ۊ,=> !Fԝ.<:&M39HwO@r,"7o!Kq6ҹSnB#~J0tLg?Fgzۻ]AӛM0A" =zR  >kx-CmDC~YaIUPfP*\ @cΐ4/G+Iᩩ`ߗZ\+JWzȔCZ lCakv7Q!&nn*]|1SX֡4γ\J&җjFjJ>b^ YK93$Ѐx[qpq`I֖bk9`e;v.7iU/阦*pbUx_d_$됼|tk8~Y Me:ܚ.>Iڑ? ׸ ^[(QY'Os%MXKpШ;;zsc\[B|bwߺ+ ;3.hPe :~l:F2Jv:{y .Iz4nQ#`Xw FQvz(s-H{vyQ"l<G*B:ܺΆ q<)x}; ^A Rk^FnxCj`L6lk^0+ c7g/qb'E2' yz]4. 3)&Oz"9 H;Zo=QE/v>"HgӲm2{v,ğDj;JnS͸.$/jiU+.IM .q߆z!!P|ν|Mu<¢LPf omUcyl2[Q:lTk4XrPwXVe+W5%$Mo"BYi.hG+nfڶ -{8Î_6}&:(p'o R"=M& KpMjKqW~:S5XpXIȎa>d% fd o~? [J l 04tSe5lQڲ>H$sO.PU| P2Z&)2&9ٴ fG'U+)a @^g2gS@AWAU2f|Εb>a$R_1q{u`o_:区>Vi6߅|t42nPJv IŸu-lתmVGVEF^"^ 'CQ'`i::* Pj +/&ՂsX &-uz^'A9hAJ&x@u g1H4߽Π{:= I$[,AN29EђIgc*|d;W~;iTNPQr4PEyGAI73|,(A5)px"D}%ws`Gu,ז~˹ǫu2IJw2_ i+)i yo)R9_bEΌ~y̽瘞䍗(N ki `>SȖ a )JO_9O;ڊ(f RuJr/M~H^3("zxrZjcbWj<|϶ a }LJ!F~y[?* R8.eH:L[ 0kE?ZG|&YlNOt~dp^wѬŵZJ͓DsCNߐu')X/霄yI>`8|1 _/ZywB ^0.gXz{G爆 -/{洂vuLy*#*p6'k!LU4J~)ڸgɲ靮k)V+S$+,Z˽8Ōa_\_?9N{kvTr[7Cx3C KsM97)zR*9wb! |}>缧g4Ƚm4b$W_ܥ߮36*r°H>)|o"4$g夳ڵMA ;N!aZMxHcAW.:p*S> C|6$e{]-syq:>޿Ĩߊ旊U.6~N=PW_`w *S `Ҙ^ካ?YFOD!k⵲fvDl/1XTbuܑحjv|4| 4EVZr+lf#A(NgCVg, O: |7ղڦ]6u`,cVHT6J93"]gPHU1p`z?W ShdE$]3Yy(o3M7,L(=L Gtފ(͉k=xw{:/IcGT!=?m V)Kzp+)ّJRTr:쎆RŠ;b5q" o̺~Gw$ 1M1V,evLK6a{cQ|2/}MKip0a#YR !,w $0@^-9]6[}6{JUnu %nitns{QǁZ҄XU78F.[]'*#4ORuُUTICqN"0d6LG022ڸ.vlnNgYTMc;."rXb;u 1vj-IBL2uB֡/τܲߙg*Uc~:QsEYT'*Wƿ?IXO t#Pg ׸Sb'hk]o?E,4'OϱI (sјĽ 2]ZE&qr@&󧩀zh+[yDۚT)@6:2E G(9yDc&DzA8[J]zq(9f3rBnܖt `b]!r䟤yS/p7V)zz*>="Ό9<?#RrǷ?Gt1ttm-cPX1D܊:r iMhҊGڕ2QqN!ka$7~alGo+!g+`kuf^ 3^/;>5` QI1#^gzN1Dq G;+U Ē߫WW}{G)]lWErBP<rZ#>ܰ)s"ntS-mUChYQew!鸍Ic,Q- |Nj&%4׉T^2c~OP&:!d6g OƊ^&4t oΪc$vR/w8&;iX>rɖxԥ2KMPءp2icGq{UHACо_=Wf<2uoы)E&֊'H܁b u|408DIa3 !dtS0FPOmQF=dl!Pb}ɿPCceUoٴMSW|b3< MD 2 \+nl9͢b 0;Q3}-lNdKM:ns-9Zx Wn$˞v͏!VkV1D nf.KC}A&E޼&&h>ƈM{ uʴdq$eC4JYE.bvJM(O{F grR&oYǴ y8n}W$8}DŽ$6n&\ǔ@Ew$[]]γj_m2 Q~26;Dy &A5dɛyk5zkx9rIE^|kƇ}BZf:ٙHP,Ųv2'eUXX&+63^sVmN=ڡ ihۆU[l,ƋcIYz7wceMTK1*(=#so)3>!dfJ."}I̹cQE) q<  (QY8-:Ά[(- 8TrDSOWS8V֝ ~Usw{E='`JS3xFBY75R58Ӛ^Hl6H ;iWPPwb7V/2wB*3 h-!fg )|Bƌַ5,efi qA } $3~6LƾC:7>G\wEƪ?J=YnU}Ay@‡dnŖ%>08x+o 5D*j=nޙ)1r2 NGUoh2 H: ]$ίO{*6ywׁȠՖr߷%*vBڶO ר(Oc#X}0ELJGUXUt b@YXE ¶\&랕-@TD JG%ttޕY;$)axPgdl%]ӅoF%A9m1񥩂 ӿl LbN9J9 Ų ƛ4egҢwRTeOA5%)VL/ N(Rsøy]ḘzάdĹ'Y>VI {Q㙄w: $]7 BFT C{S0ԥp9{ &&Tjl̢ ވYT}GPx/W/uk\W:|@TFY[ PB IOYwTΗ S`5?*4xlJ++,=чӽ R,`f!ˏ{y'BzBc.$pG;^.Ԙ|* }ˋP!S[tHYՂ*Rv;&TlǰGh #ϙA4/_o=eINS^OaKPq^bO\:D2+"Whj&+>>b_\>:Q\IYALzrRh٘;DKuq@Ḧ́! V5C"גcH.'/@7<2[2-11\ݣ'}3) "h`q:u3_ 9;Z|^>ɖ/p:V7?Q%}ERT(io/Үi,CijPY~> 0콸Sn([**ouư{}COw+fkَ4O q%`cL6)H9+a>ӰyvgbFd=7fpԑl?M.7"Z8Ky'1;zfSnRaCt{[p;9Kݰҙf׋d*Dfq Twr"iϯ{  6zT~n~WF' Mәm*p$!j`HQjߞZ mIhf:%hC`Iة lϔܠT8/Rŭk,A(b ٨6WH w@O.M/1s8rk KܷS< @g3N.F9z~Z mR{4T %tgZ ZrRkhMZ9a9Vpc{if4ʿnm8y.*2\ L 9Й4{2>>Qm-y2:{8O ^/d-N$EۃA9^UѢyz/ We<2^ozF,[;?z&Ry[ Roo%gHj"nx[EJ|J,:Wi#3gMXӴj39 Sr9]T dQ%mf`aW_7.T0Tsce1{C,7r'DDS(X~prPS:j>Gl.u㶙n5` FqWŰ]>Q (v,[g[?[6A+.pJ|I9UӪHdVN;9%?/|W?v7"*ȄW\N3\ۚվ';NK.·2x<Ԯn侓p/(JY9r=#;L2+oZciX' fcYkߊnm12^Ϊ%@٩k'iOhE"4uKgሂQ}0gATaet{TkLu|֗DH5o;C`7B>_{$yQO lPݿ 7h*BtpToMg.%Nr|s|~UYΘ9Zo 2r^Ac \B\TcWQ\9iĠ887 1{0VSp/"#$ S$7VXjd՚F\imQ R9mkGNO&n+XZ&AzdV`YwƎVa>`p }GRIz,u!J8'Ѹ$_(ρ Lz%F.b-._|ߔ'Z׌e!`[.m@p͑G<;[ɯS8FpӁ̿2uznN,[T]Bg/P%x$;{q9ڔn- #z!AnE#$_=( !t3( =&8_*fCzLWBFw-WU Huy~H_ڞË`)L8k'"_/aE!.bETL8TMu'zGM,'~Y : pwr:{'].gy]vf$]! #Iqc ]Ko3u8԰~-/-lU;(mqd[P98dF/)?51ri^2g(>3åUL0 R :A m=?(ۗ,mRTd$rZR!v:br͵3 kv~@{ӼreubԹʮkBߗ;Z0KWɮM+ :)jtDWE[,;RN vHNlA_SO +,;ˏ?OG񥨳Lfj_[ C ]ǀPSES>P;/UaO"h:gՉt$\T {.IrJ2^Ɯp TⲩhJeS:8&A=^ٹTG\`5u*}~mPk/ʩ0$L?R40`9brљ̤H%ϣ2kV<,?|X>=wue]U֕MnӶ+ڂ|˰?<[[$cZюoz`R{2ρOtԇ{yoak֟0'+ Xh2 X~e}jh,s`5Ӏ2مĉK_[SV>>]Fr $kUPwWM_^1@S }ERy c5?R.׭B0.*̆P9kSOܙ HA` kwG rQ6-L"xU d>?L ɏJ2Q "h,~6C41-/ 0 a_(9MlXؾ<ɬM`-=SZȍxf#8\W%̿\z"~DTqWuyGg kOG$s UxkKxI|YCt Q бʁ]+L}ִ&$.u{12^V@-Ю\.Ȅn/&/{8uLFؒտM IM oatJe2TMKɜzGɇ-ty֍kS[m"R4C))N鲶%)e/$зǽq旙:S&:nZRKTpLn „CQiO)_h\d4ک|ef5Io.TȧCM2.ob:?Ja"]>*hP92'4RioDTDi2> D: Azk?H#1JqNZM-#~Ϸ?3 FWC2;k_|Dˡ[6XЏ%SPbN`oL5G LoQ΢trYUao^Mh)!)NpbeN 9D} *o'RaÈ~6vfau0{[[&+·>A~GWYj@hAҀ#Xw|j~>ךxX}b)0"7PORH|%ME|Lh*^Ca v_LKwa`v05\V*h9Je0,!]JȔqξ'҂ԷU%bdKi"k]/$j`r(^Tj mK$ȋnV&0Y2.TO+2Fk@eyL]-d,)|{57n.nbb@Obk"YԔSgdKdIJqU%/Σ *l#g"؜% ?*9rۣVMBGZD` Tv5+u0H[8HDq9)BV({  2I16q+m.JˠػFx,ׇ;ͳw5kwK?s{B523Vq^ڪ>+_z *?WMk̈IKkZ5t+|Ĉ=0FG:NEY?ҕx@tD}e)LM t( /S-"i7t2x) 8M<+ ǹ{0SKsS nݟ]ܫV.uB!`e z#bN gwq.)Μe5F`ș P/*hhnA&t)Qf^1X{06^ZI\*h!~~u{;gVigIeX9he4XPة|OpT" P0'#@Ee.i˯@H1yrF]\IuXM>ϺOAEy)=Os>6'4$s_"sCY8u5n7H֢^\zFH wK)z GB9Mwi6u[0C&ǚj]uܒ= v6DNTQ$\ův:HwpEL|Ho^],۵bT_:L=|뒝d"ئP` nP2+|0WZ"`/~_ym.xF4撍9T77JULiBD[Ln%Y073#]˱wQFX=. Ƨ\=p[B`z_P!}ps@L vwL" ) (]9jGņHBV2Ħ9-|fbWz2#\3,B6$b$֙Kvʥ>e_+Milw"w[ Tqi].):J+.ޘWVKdQ묷~ÿ|Qkz>Rug8sĂ,St/ X߂VBZ~,gLQ(Dfj\N ox oͪS^~vk/6$- ;pxbf *j}Vrp+pB齳b RNsux캹a Ay];JE4fsϵ!7hi] ?$t/ļG^626G^gIf-@S)z6_ϭnKj,hîG֣S?1D{G;Up+ !:^3.i^ȟlUC4A Ʋf P!wh::;#'_>abr/*;6j:n3\bƍ4uԓ$y;΁8#e g6Up쒞 &H)&l,7k->-ȞCMmրgxe<%}.Q*"+U0FKn/A/8 $6O3KVuN{g_:ɌFWlY0_A_ܠQ >1@* ȓ>)p>v>gn&'9e+{籵37h8 'V[tК+1?-+ şپ5><[dF yE+~~/jJ8EO[.}1pB\\U*ej30B/Oyox)qI'E3&$&d! PdgG<4k_._b޿`:l8cɞ"{Dvv0:l0즷I(wpLVϵgŎ[%(@ ># ńI""Úr~L/F!.njj2U .e$0V(eNDSnM,rOIл+ !P\cuYYmВ⩫ؼw@#IeP4+0\G+&{M&rXy&z_(Ϭ|>;F$4rP44LCiM}/*q_@:{+I:|Yi![i4,ŎH~FƮ8{D #yCz4Ygx$ WYȄ@E_$r/g8GmZhXpս-8|tZajc~1iG{"UwuAJ9zL9!I(lW +kgtu10aѰTӭ $xh*4ѿCMFVo y+]8Bu2@ 1Q՗X4ٹ|4 mOg?0$>4-{;)! J!y(oW7wVN+C't*"׬vX2iF_(ҼT̕@E +|C)]78ħgHu4 2p" wBʜ s_Q_6{jz}ž$A MG?CaɍOL{9췻q(ke!#Rj3 7usLF_bcidP/ysZ(if98)gz9vb`=!}m rCh|ziM6jrD9iE^5rrS;K6xim5`7l^gK(R G6Rb[曲J uNm5f[ n B,&BXy^5EX-9Igʪ.ҙZ%uef BL)=̈́Qcjy' M@&6$(&lFźOsbeo9[a @ylM}.-(Tٽ߯VJg@ލYhr?茱[]s?Nm`  ܱj[4gS c)آ Uw7j4fͺV ʄVK(^N=p`𕤵bvp(Y |LgEaasl&H)P6e!LPhc}V oSQ;b606"SP[gE L ~+R~Me0j BL=)1o~ %Jߴ}f)tS-lN\NcU5MGI%#ԓg{=NܗW깫ۿL jI)=yF`rSL\#/+ o{ŕ\M3Ci+>9:ϱh#QgDsmyO59u`dU 41SP(-lw'Ve9=mUoL6R蚹 }!bmJƄA1Nx(ΘqޤKԲI")>q0cGC 3ڐu;(ޫڕ͓qNAƑo@P xW';iynjr|?EUĮ1E9 `oZ0TC#5%f:t[@1_<sjr!i7ˇl)6A~"jYf|ou#8Uq#:z2qt%ϱ&NJ #N`, tXF\`*p !n`HmڜP:F@X#ZG ,I)3yU-#o;"QLN鄋 ?IC ω#T/jPv?ٴ<1ձ]MsSv!H_o'D0.iQ"gJ-{ވ]ŝF|j/p.c&Ӆ^2MYEՌN|ڀ-/U22MV2 *[z .8@银*YR_YTzHv;u=VvhVu;FnO64*@[HМT~{\x TieZg25=Vہx3ln`[KND,BoOD,[$g,czb8Xͷ7 ϯ5շ6%9~Z+/FA? Y]tr.'O6ܿ!Wa3c<*S{Ld,EثOB2YxfT(Ef( 8Ӂqᓯ*[ڣyuQ:\!NɁn!oj꧲_x}h\ݫ;"O _|ghW^܃$^GH^‡SE!,ͥ # ³-,6'p 6Jfۓ=ɻHcޞ%-&qOgN}\G-_Xzs[g b2deunV7n~T#Ǿ80t Exʋ&Q`Lg}1vb`mu<17a#65ehSMj +ahI]/VbOEPҮI4T б%eE7r5%e]kȥC9!pR,ѿiżzMM.h8u0;d)ZegEc|6aJ<dDN9sn9vR/+:zϥUPVS -l.t*ʷ8T63FGtdqH"lG Y6zVHSjBNLfeE<,t_ezyhsZuY@`6n+(gs1 o&m J?f]3#({DU>*Ka }曃W~roϷ?@1mP*ۃq3J+J%˳U^˶uv?pq>![OKDp ʀ !-\-b$(!gmҭ Y|j*ֶ2Gp.y2ųLsq.M/4O|z4)q{s\yڕ8t9C(ڱLۮ*|Luf}tӔBFȸ.C])WqeI~2'*ۛAU/2 $6hi򚽢k@#vAWcd sΉU,@sI=뵝dUw|뭥?7 )j_>{b&@"D;Xhwb_Zg BuzSU3ДJzq MFMײO=DFR| ;@{64lۗWt$<2Y +Fe3sY6],T.P>1EMj`Fd7ю~Ʈ׈7uաb Z!g%ڶBɴi˃ԫ ZM%cmP^Ru+&顨8KuB)ZodC!-ٓX34ٕ>׽8)jegqB&VL`[{3BĶk6ڨ+g ~1)LEH?;~D\KL$jY0u<,w.8ADN(!ٗau&aWWuqЈf? aÃ:qmXRM94kKIr0#cֹr)_ۄ (Q'hZrpiCO\1<0J\2r+)`Pی6]e79MOD+$Ui$q1/?H4eNΤ]7Ϥ"4xH][%ʆ̜r <gnF\嶊' ɠp4ܖf՚o$m&_``ͷ-&<bYrIrb!TgG^P&b! x-OiD85r' K vcr6qKN9Qw8)0RUY\~X FI$ [`!o{aK*"7% E.tfkqc`ARq< rsd ;m$Af5m cm.ʵMJIM 5a: }y S _2k}C>z)!%ɛ 0%Qv[ \Ź:]Z_\;NXB7uQYQ6>KNPo> %- -?}PIs?HgGֹA)]uc%M}vx멭**SFuZLX= L$>uciQu"@#s<YvƯINzq( 0-u[YoZ. =DGfSBa@:.lG^;=5-z U(B Wpɠm@6l4Ev>bi|PBo/6Aό,PH}5:uNמVϬpeRxƃe\9mjƉ"0sv8PӲ$#/K*u7A/~֋;qs/IU$j/Lp|9۟@(Ŋеtע/ƭק`/LYU4>xow"y7],\\W+ӊ^q;76Gqb(K.~;Vmm4B6Y ]Tܺ0 A6?fj?hUa d$s~+#J喪@, [3d8@7$4sNxʼn&|g5wR*/w鿰WN[&/N[Xgt.*.t~!/ l$-5|񔒇 ΨGAi\t<3,aTDfb~T9#YPN_ iclhpٻy.Mz AASR;9H&:IR=杶E+0従C6$fp[?)>xno%ҟrсǺ%( U"{QO;4ާأuN\neQ^%WhaX$Zjmx*~A]Вj2 g3 EZCg JEGWTC?q=N=͡&5@OmyCȷBɅ@#-?x;5; أ$WY0$YKyT< Ӫ khu6qgy6sH6  3HZQys:=)NFPєqHI-F.›b=DŽJr$Q]Gsk?O/ 0( ',+gaO:^ G[%HКs~q?u5*\_Wgq- SN꞊QᩲbYu]?cN%H|3xah wr}+ħKYLcwsR:ckj[c`Ȁ8{ВVAu[n~{ 1hrsrOqna%o~O2vEeպfg$\DHl ':Kj2~j>Xt&hKSޔjTNyeAF&@mQDnC0w(} H3׆C}Rذ8VS{[TC8F<4<@bqr|%!nͽa!Dɲn!Kw\u[2[,ˆhESHN|Dɐk 31YT;-h$W"gdzB.l!NjN$:"{vҥƻB^8,}6ʍ5haiw i3쵝2 /P+pl Sp@=kۈ/m <>h!ɣ 5$T},X9.*F뗛c vU%E&M2 EW~E ~sيa֪F-"7OPsU4)DeَT#xqN=OFbl+R)Ĉs56:%\97 r Ma'g Ӱqy[dWl6w%܅P>wuq ȏ$cgfVL.ax,) }%G"Ihe# 6Hg. 6<8L%#0 w 'R[;dڎ!>n}wa,|9H s~ws3]3uk@˗ cX-VXuKNcC#Ɩ=: (ЍMP[pRncWi)ͅ7b=uSxAMe(K--<Q_{|,H)Gk}:Νxj}OVP(Ns] Hgc/󇮩fMxc:݉nOhd`Aۑ@&(I/ݯ;FC"j?=M$tmR~=E$@utX+ZH^á9O+/[fi2^VWEyTi#h׎ʎ⁢>\X*jH(XYL*Ho!>%w` R:#"aB $F&iE1mzؒݕ}ZgBʼnS<>ՙW^L|٬ʩ6ꚛ̍s_0HB/֯ {cmnT3 Ņ#7c/,pOͷW:F [ɥ` rd}lzuL ;8Ws {)h_vi׻f%yvX/~غ_EH:lK WL0=얺ɂ%Y\I" {ɭļCx=}}UoKA/&KE aDD' ˬñˉ;*t&"2E ~ Ot8mtgsԣ݇Ǧ(+]о3pwgFޔ8L9IcմvL3\tuCo i k$ %j՜XjCb%&X A$i #+\Ez Lݲ։sH덯p/6"ykkLoW6'N^z ѱ>P2)-F n(Cn(Nb)#gdNG̸%W8ȯ=p&&v/k'Kỹ xM;`Qg φ.G4I%PZT*հyv|ϖ,hW]EZm1Gf=,Li/['z҅6 }B pUlZMd1bLTveJM,YX-BWWkl'-IPQ!)x\*sz X7j&+o>vŨW/JgAY~5T;;/o.i'tܜ]{C}HĝfVS$`q\_KL*WEU+ni8} $zYic9 BH.z| @Q ʼnaN_VcE~LQp8?M߄1R΋ݏtΈLjU"J=!I4 rn;xfq^ۈSnƞOfPֺ(Z&< HĺwE0Ff!rWxHŜjh\ !lbt 2͙HMÅBGޝigݕsR|+\7KyOQ*a"ur}REFXB|gVƥ,g#95s _6Ml64ZU1xݖ;3R_ĎYWc%+^%aT& /NT-+e+}؆c̙>-FCqH,m:/|W U}9a0CBuFkc|Js{(-IPv5HI p-pb>h䭯 -}K>u ‘!̠=% k\6vdrv[J@*B< Vu556N}ؒW=ҭ:.^iLylRp4ttOw. Do08$Lz÷"%M kC ESTJKmXϩ)6U5N/Š~C#0/a{iW!/g3\v؀q2!I ̢'Ta&P C#$)3ۛXp:dH iƙ-q7w^'IrE/`2d>ƅ(iq&+Bo 7Pe86(V&ursH[ns΁0Ӗ^\֙40Z2A>1y@~X%ⷓ[{ԑ6sASC1ǃ$MMݓ3d\#dLiA;ZޟQ]"r髑 L>+2֓k}ֻ֓MtbT]&Z@9Pt&,.Yt%/dYc(qyq&sYwj]}iwV S"87qذ8ܤ,671Lpwv|z2Kt>缬/ơʄ1t6-ه0uޥә>um( 1lA6M\ 2oR>CkF^KwK' ?֠n\VZvnKመ"j ͟ Wn-<6TNh!ο*Fo\=E7hN݉WÏ츶rW}GX8;1f^Pph _9RZ]X7V'CQբxomA~d1ᢷ;+c~o87ECO2Z3y{-S^Ok0̼_H:XYOBMHO 'yR ^K&Z-k[Ԛh _"MkZu_VCŪ@M_bM6!Yb"c^fE#2zo wI{C1ǽ//m* & z=_O$̕&$ t_ݧf^].Gʩ1uz۬Qg)yWlf`Pc,CHPMU\N (R *޾rKTzjêb{ IIuQ񴫯wu3S[-&luXbFt L.rk:aI%91:B\+Iǘ;8ccޑM jH[G6D셫!L B#Jf6̧'Pj0(Ww}(͓ڌ\ /*} Z9w ;S <aF2 +:Oyvh+Qҝ hTQ:a^MXvTw-bV/aV8cҾߤпuA@exMB5Tw[Hml"R=ʼnq˰U6gS67 zT+/ɏv#G]ӻ.ڄkQYZ_cZ^yRmCt# zcb2Q:He8:c R'6"[;SmZ >z#KpɅjȾ"'ŻVxO6Cݮ%~ Nɡ]?ki+"q|'ժp0pH,w馎Y􈪛DNRk`tqТa (4&=9Cu/snׁf{qܰ7v_RoP.l 7V.+QER/N"j'5߰"b E.D!x)mLKFz(U -@a9`)f| %{HBjF kO{D} ivJV;CUuJ%&c}Uh};P_V`P3y9ԋ]T / -ѻyx&sԫa}T-=$}ic&m D&It%_D,+˔nhޟّZ D2-Am;LR6H8ceRflȪ9!>?x%V ahyq)GH&m\P|~m* `Ë$g:8؄E%),YKd1 jAnD}ESEAom[N9vCq[:e]Ј|6DwI.k Y.rH'TgZyR\O4LЌH4,QMR.k[ :筦@XJsb1=/Iwv0aQat `/򆔚=Gv"q,Et`xhc]`7B"+Z%L/pgZd_!Ȃ9u&b{2k3;#"29VQ׻8 ҿ lY^ѱ PmZN;ZWK]o<p#(:jwS%;w p8@¾ 0Ih R1G6F ' ׈ 9mT'~eJ& d$p*T;a; ӁrM|0'5`QMlUٖ.οiv%(~4dX>?=rׅ6"嶂[ uv!a80 ?! ZT2Kl)3~}Y =o1iSo1\'noեj.:A1T2 Qe!|N%w'ktvKQ PuKY !&W^{c!K|u"臨DHs=;^+] f‡c/чl ޛ2V@ f ̽&7H 4bi<o*,mC4:dpŽ+kAv=s 'K ݯFS%2y%{m^9hK7 tyFK\O=ю(T )Sb&G@0 pu/툝T~^dTq[ L֙(ꘜN/R6QQ:)%+l O{.0NԖsD *<~Yl#g)wf}sCsI;Tt9q'<F\h2 v8C*g!@Q+JLrG ؁[s3PV#ʞN V;6 \micQ&)`hf4OO< c*g1 )uQ уQ‚= L͟-sgYj"ü~`s߶{QqQe#few0DI1TIUc>q٭:u8/@TXa/g8u0ZԿ1/g ~Ǫ*kSd8Yg"# U$}qXͱDn'F21焔f(/]bs8U(FGnr8Ľ=__$RMYEw6aNA$rBJy-&&Mϊ?FOŝ#~j2zkNM-9r Y5v)uQrFp2{ǍZI(Q|yk/^M6s#NQI 2F1Z'7 U$N׼U8 Ր[H<O {:/9\W*3Z<5J{)@}1>`-zds#]om h ͭPJB#3·x'Cٟu1t%Ik<R}\`rby|t<bxYyώI>M͜of дI%g ,mwSsv{P:K!&o~3u3f0QsCF߬R͙`-ct{?:>ꖬ|^ޑ3l$|"yqwK&7#h1h ^Б2$*OLb3 FpJG ZN+by >rl=slRaA'cEx/fy[$pW~?"%K|mxCB :q-`WsǼq652[{ɔSOfq]9㔔/HhRWaq ^arWPi'sR⦗?An3t; }wZPD"Bp+̒a[њiJx'S 8x Ԯ@8Z ѽdsI`R;%*䳒ݎA6CB&h'%>orSBZ5{QŕxoإNB 0CzcS0*4Yû#y,M7%Bӝ44c u󱘚R:f!̹_ 5D}"N[*ɪH*^-2z bd, ~G<~8ww*,ٶQVu[פbԙksg ˟|.-(~GWEk"\٣@fcw r]$H"O!^'@.Gcrgdup3^ nfs}$RI"ә=쏇?TZF3)DlHx>}jz\o"[_:)6Aja> %7~CG1ypMԻ(9kZah?vӽPdk:&`QCmCu[(5<&3*Ђ*wj.ϢMU7x6Lmread 27 (f8ȱ萅B_]mӸ{?ér~hT)`ˢVȹoTKFg%5ܔ-| t_,<[3A:bzTG\Wt'2Pp뙋aSr': ' AeiW'wX$V7 F) z]t9胡-)h)h74sODdY 28x !aoi,֩ia;;LepOXVrGbit ¼݁AAx^dn(0'j* e L|640F}$W9]qpY!EL ܫEGBn]?+;3~X]rLVjZ!1gGF#Ԉ9lQn`MSpoltF 2 8^[#)HRw0۪}߻ɰ& iKM I4 zJU3˻vY/;Vн'4~^ַJ:):48hh9@.sNjEE 4 ᪁o)@`)m?UcbBv7L%+ԄqPlb% F?x(9őx; .l$Aǘ>*ڲ&ij6.sʟw\[ݩ:zLY0 >>I:Ka>8 H@~;djȩ^:kQ+D0llýRgXxO`^07ߟ-I T:4.V鋿?Od>=y3hR/&0u|fSH"}t*SBc F&+ 襎_cdY*Z^՞4Fy}WvG*Hf%07X7`1ͅpZoKX=cEl!;Hiz!UR|pZ+$ xÈ<$'<ͣ76ApO%EyFdtV&Յ畖D dK܅+㶵I%" ;+f0簺#b@,EiD2JoRX3tFYhY4|9?g>P(q9L\C@'.C!qݓʙ sI7ūY=0(:~ayj.Y'Т^I(gP{\^̰y`gZ=&Dw%/?+x@< l O DܥsT[?~+ u'1Iҩ s% =ҳm[7Ue@uui?.op io#o[L pVcd ~C%*h!8?Bf-T npNťI`l46(A1+cmߝ`hN5ͷc8F6& su&(Oujٗ(,BV=97s#ևnIʦ𔚎\ Cm;4< YMtSo{jN@G2c'TC H+DuD,(2G:_tzZ(;z-үŕwۃp[B%%wr.Iy\}g$#P3BNF ݞw2H y#Bq0".hy>+QQDyTTu{T*VXnЎ(Dmm1l-}Alۮ#dT E7 JrfZo"mQ0Z/`ґܔEQwo5(KT鯍dG62n`5_EcI񮙐mF$bjxzO)w0TM<ez'j#iv w5)0]3^#pE[pu'F< '"Pj{ޏ4QPŚn'5W/KƆT%xS~Ǣ+ 1"5e)ۓmwUۂڨ%鴍!( `l%Z\ +NT4R[6d.ц)ewPK(ĪGtxR`0 =ͬOGֽVEJdlFK9P1lK1F,/˘9q,_\27:2D^֫ 0FM#JV* P]LN$})A.1Mk4 q-WMZXom<^?|WHSN6? v}Lj"t%1ХD=lJ. Sb^ٓCfUR $-Q^_ZRix0y{0$j ToMz=xXN[ɇ;͘?rSa(gfx1V ]>Dp߿xc#[an&f_ 1LdN^`{yBlyزSZAաJa##(Ƹ'FPjR8j/mڋe3'TՑ@PFD~氪anLazu w;딢\hd;\U=`?y p< $!+1dkyu5{yZ1G;LF!`[7UPÐgE]Os֍B 0'/@e>^/ϰϝ3WKh-'w/DZ=gk0S-bA>~ H@4<>4]FHNv{F#:{R9i F r |(%:ۚl ȭ"~`?ko}?7GIf >p1_}1W<ǤLhM~l^s'vGl:Vfd 4)cH*)͌˜Ͱ 0Z (yizڀ>|KXJrKq? .mL}aW|l?lpө(v5rڔVK'2CyiYK-A3&Hu*|+t+ oa81Hn &)oqVabrq˞e >-t:4kgjP5yDNE;f*QJ=8y<׊[Έ>{*CoU^6"SVzeJC)AxGF7HKVQ|{ˠlZI%.cڡw{8׆@RCqeR`$9B1=z mlҢ ѧ! &1C$IT)el rS#^4r{ѺCT;iJD-Mt&d">jSx\.g.1LE\͟$r+3y0@m= vtV˲m^D\ ԓ[TET(8:Q/h}C;CӇ(}c  vo8A&]x3J]Gk lnVBO7'ЖI 7E&ŀj{JEHRo=x+΄FszBA$פǬ"q{:9dduaT02t&SݤDå|p&xC'Mg{Ͽ#Cw+⌇L&Wn YO<}8_ڰ3`xMq-.aˎ:#:QJBd9qPy!qwAY#Az4t#1zK 4 1obg;qw#a)NJ,ٽoE#mB3*'L7Ba-Bqzp u=~ް[1)^%n 2}Dp_'E=;g8-LIy f!nzύG^YX5?puS^ -D6B!v\ݦCX8p'S]@^xfXXIPS |@n+i셢n~m2= !52(֣tM<{"K%@vNTDcӞ0k)ȄS_F0-^P/}Qkq"kFtT ae(^f.:٦ḍugtؿた(JϟrԸLK:a|;=fGR춭b`Xmih$07axa& ~ʻmԗw[5rktxvsSl<)4+>mI*$;|\ @BY>k'Ju3ձxOoܳ` OŬ|VM|*c#89mvyʫy])!̫x#^Bd6YG.i#~{GqUРpc[MEM:=t) 0 Rp k$٧21&УmԋQ>o#2uL㒈W\联Mvg {2 9+֡Ľv-.mLS.cJ0u{wVX#b '#PN6L"*g009u(&^7l-甋ǐX?a?{1QY'PCq1@4khF_D ٪t]*=rj4ᾚaܰWIWd?+#͹6ݡ"TY&FFRD y|q|6~n5MQgusc*'PUbĹSDyozDLsnzO0r^K*_~Īߝ'}KXq;ڔRk|0L22DW2 /'oQf%H3)^)(>$ۖ}X'so;v'_΋2]?Vx5[.$]P4fnꠑؓL'@DIE-p/ "*Bhi~{T}Y 19WZRe~-<@qRi4{껆63GPC|{r46>I#w/ৢ,F B?Uv6($THjTAdx\pFUwn0g)~wMI=K>Ssjz5UFKm5|Jtj:Ǎώgc9'^H$;&l" ,BV)izj4Fx^Sc[H\pPsPCf!uyua@ %,8:pw4w9q\ܯXM^2Zt^+hLأ&qKZH㖥1zpM-0I1[Ii>C!A2ey}ˢ!p38vtHQ37hr3O<;yS]ZdLl@}F:3 5Zu<(v姇 lLopeɴu~_A؟_tcl(Yv[q{+pӚ{"r|N/V_+^ f^گŽqj(l>"v PN \{Rr FgKM|,+)bݿOhvJaR5VmI=O n\CaCc8e:HoM[ARE`tiO<'KfP^\c;aX/ `4iw3 Z[ĥޛHjg|Ժ@4S4p$\݉shx|r g-YL5V({tbys&|c+䐎jڢZ ` IxG:&WOy&i zSG, FY Mx]c; .%fֻ4(K:H7JDG8o]B8 [ ;WAo`)!ثiSnyj6b+.ŘgӫY۱gL|ǕflC|56[z_&r/iL\s!`KrYjuhksn{|nabɓf<_;d_PaM XVNH7+ťqDe;èLig~bk*lhh?^ 8b[y)ӟ9rLt.`YmjO鎶-e㊐k{D-ѩ;1ܠnjV2CD}x5-\b~³Rq&nY7m-U`9K>r |0\Uy0?Ad9,ǜy X)藵Wvw84z+? ji[DQ\oo sPa cw!"^q)8ii!m!QAf2(tRw$XaX%o=j =d7aEdjFze!F8ac2;|Q?s1:rYCl'O/IC3 ̒~G!iUV~t!|7DA}Zk^Kݳo thqZ.wP( H ݬE+$v9C ]($vFVu0 s\UD3wYp0E8R/V.uT 21}o(Zȑ)=G":;]r+@y* w&W,qN v5 Yj0u&Jh;^H:S^FnM`KknGnV :d.袪nCpr*59p"_xݛ;nV/7Q@;)ZW)]}RVmMRhCr1 NQ{xh8hg|(/qP XL' C;wk]Yo\Uc>UH_;#  fU^@Bc;Mf@ 1iJcLcuzί SҾk(Z]Gr%>Bɀ4ehR MgHZ̾ɃL:2˫&Z!F~c.k1w)޳^rvSCfۭA{i%䜅 (tƱ?fSZ YUof׽-y3ZBnW.]Th\=!9 [@ci1JnXy*/`ꪄf7;ynߺlQ]B烕hq6>k{,c2JO3@ gKT~:\妀ֳEzO\ g<$p֧ \XQ]asEm% "?31(hp2+ S`1ڥEO s/P+ `W"o4A!|/Sƹ?K"YN3"'o/=.CUA+rBP^~St*{Ako>% t9IaNvr둵VBRZʚ *i}%lKq_>gy')Z_9ze?'j.oVt6iSlV/F;VD Kh7\(m!ܦ牗F&0n$!{hݨINkztס3=& lOo׫b6Q>f}jrcQF3gfL6۲wiNPssxZ?m툓zfx;[hchYL J$d,6^pfM7U`>>NՉ`kA{sz.pcTV+X(>MzI#%9t™a,!*WY8g4hcLB T2៊$FpOaj`SMBRgx{f/&7;JV7q95 `Nte-d7/i!ҕ-Of5;Yݙl,SP+p6~Q>j$֙oPV7tS55/A3"I~ G>Q Ȋ?mi^is3fKSd}Kh4${zIaJၸd "_t *U";Rl0Ry\fI yU=K3ZYQ 1e~5UIkv? |)b\^czL1 ;`9N7?o*= w``6vwԆRJϒq5 *pz®*5P{YTv_&uYR(.(ead5G~>[NR5]-"S;j"QlڅrqA0"gXɥvpH+O=t»v6]eZ>nR*(:Mx,<4qó4pvn0'؃*\יb%Ժm?Ҵ\ "H܀X^L,SnQ,5zEIlơx\atiCkfDؾo?9]cbѵBd:Ļg2z\X]D;R +p%1QX}eƐ~5G}y~gxS A͏c`yhp+`}*~rlc3K\w* x>L_*=a7tP,j;cNsL1)@'H dC@=*}H b}YA pXmPʲvʧwdUgt ZmΐXUEZFo cA*t nmT^iZr3ۯA~Z)=z] mR:1^y"ECynnѽY2tN)(gLQgjʲZ=bÚթ/MĞZT7?d'-E.xaEZ'!HI)+c:c<(d\up_cy[9p+?GٿL!7|t0>j^C(R A@ݺmIY+IO\ VaGb:r2cR?߈qf.^MJmkP{3XbG 8vaL/öxfETUB1JT(c6ٱ$i-6䳓$΢A3: M"0(9gTyOZ6@)<+KT./7>Aڻe(ʵqMVL!W^OmenߦNܷ*vI*}ݔ+&c%L jl垱~'XLx={|S˖isESe/2վEճH  ,`;;P0K>4qr񓢴uEA~FoCK:a;Hg67j;MEAgïn\J5r_8*1$T$$9# W w gh{GY#ZU)&V9[ zS\ }t81-Q=Mm.!^_e*N.zFJtyT-ֱJ_ԭ'vDNO4KzDogUE9J.,fQ,ˀ9㋸c+P\Y8OR?Bp{ A$R9୘[1b^S3un K~uJne9K&~a劼lG&($ӷ>[ z~}6G-6!O6L J4y񆹄dƌ$xzQbZa ,RS'[KFsWUBşFD8:yB16@gևfyý2jSG4fB8%k?zKUQq~:biV5(YyMΒj hȴ%@>&z51)a2LA`\s[֢CQ,k摱*۽`6rHJ@cN|vן]zu.KQB. R2u{nhp7s?P9%뷩3PHu!7 ԙ~Y QM0N:'l(8TeF `嘾u/6llػ-:."{47|CVS&pahlǥEinu0eדB V-C{E$Ar/on]̻DdyO?46Zr _ݩcm&ri%֏C~9|׏#OX牉E  yҲv1z~[H8qn3FQ6,BX bԧ]gQfEI}nӽC̗|0lh\ XtIVgUN'Mf] rU1`D3ȣ5),揈Gbn}2h'ib#}=ag$,oڏeyJ¶"8m3@8]bcYA錊0I"v(jQi6y[Fί3n6ns9TT Ɉ<{ѸӾcu(ĆM-츬ӗr8+\U--gB r+,C¼Ie訐e,OAZaoq-1Qo?3xL odXÎT> NѶS,{gy'؍Na#wu@!Nw\ wPm$z)c `vSmdt(YRO mE Gc;k msվ|v}yFfzHEBw{V x<w'_T\$Ȇe.;\w }{1?wz :f@+&j 4˹[n0AX 1h$ h=bywd qel ji_S]^lJ(j8;}RU'W2"HКbUP9$+[E!hXFeuFI ZI9Ǝ=-cw1OȖp8*^|6χ,7‚N5x%1#JugB/-Ⱥֹڨt]޺S1Uꁄ-YxRp]MF =s\mC[~:SM-V7ͫ-mO/y-G7)yGY@ض^(#~L&ScjQԼKصLu᭘Em*2rD}7K5T6۠(%Cb$˾^1r0Xq5H8ȩ.˴ DYQTnAY'ӑZO7xݯ :4>w P8&6IFL&JP@]40;t粄I5et'ח6i Ҽmv*%cfZw[K"wOy ܧ y[7cuOC|5,Kv+}sL!<-skLC9Cγ۴9 8-T$1MRm*$& YYG>z=[55"kr}SoT=|s@M)>^%؆gX ]WzP'z1lk"d;r#c,z2rSQzk)K;W:\s3COeM<]좺&ۄ |k'hMOS?Y.(/b6?8#T\oJC|p'~K*Ƭ3 n Vq5hBӂkf 0f d&uQPR?iJ$ yeXb$ '13LU!2^0.4zZ+Wpt^!ʍI{Y] s+~u bBIrӷU]!TLMֺzj񀍝pŮ\px8ń.t+t8ƳeO-LC,/{V\ܐȰ#v %7V_2mA-y]jS'56 7tu?Q\ڤѝ/*Aw 7֚tckV<^Vdp bY}ŰҀar9E002P}hO_->h: HZ0ߥH\,$6)c?\DY?@+ϖ wO H-9Q|9C{3qV<,MH[>l"vL^G}<#gBykM$eßrҝ5$l'R:8jgfacJQV> td^A ĭ@KA H+|9MI3QN/b1ƍyuٛ@X 4:Srv #NN=VJH8 v즱D0HHCV&ܜasZm%I Sne$ #޷> H`^!0G xaT+k.W IّDA%O 'Y]hcx*m@w7퍸Kr-yUɡ_x3Vm@&"Fa$ e`mmtG 5+#~Ȍŗ نfH!a+-)bS+~!Nyg* 9tq6RS)UľL0m(.!/!#V|L92u [.?OSCoGY}mQy7WXYQ` ao}-$^ҙ L4bm bB:ͷ2B\Zn` Oٽz54ﺨ ä09J,T.>+o5K+Edd2owO~=qid%0 5$pKnKHw1`#fft__Hx=|]>5l43+S(0;Ѭ vOiNx`ޚ~H'ѧ~Ɵ82D7#Pv:km[3pt!8tH+>b/jMu5Xl!pofl5S1éF>i/{;,%ݦ7tCe.J'- |歜O9s{ S=Ԡ4Fl?Rz`Ľ,:;GfzH(gUz9MKri})ЌSm!]ɶH+Lys%I0yyr<)) Dz>?WmȖIzd 4XIMQ^AsNJ֣D&{Hee/$Vhk~D]UE|avj6ﳆKRu?aYJ I)9wg!U+7hHG3-Dem6BQˏvgʇDA Pzų]ɡ/gdM OR8f'<@i)hEj7~~Dž٘5SvOAą(f} p=7:V]I;Չ>cP\%q d=4AFX91FŶ^ 捠gB0codE<9m"gF/3ܐ:S#9pSM_v &פ0-Rl f90n@!>ISg~1}rꕭBL_]s.5c2>ԡ[QlZ uf :gЖ8 eFlq@NGMdVܲ6Aj}}P4_ר#}WvfuzvΐcbjV3OU!B*$6pfE0*HcY bR8. a6advL藗Su>6',}%@כLݗq0^/RȢa9@Yѿ*??PPWD/}㦹^ÕJ[c\.wW꽅!Q7xA wK ("'.CK9CjY M >2A;1Ǣ8 b`< f_hȍe3*=\L_Z@z}B!^)NR] fq 9Z2duM{6{'ύ!5ɓyv}ΫUoᑵ/ hMjf= Y926VU7De p^iVMhHk6OλiiBRεQZ YL-X`m!UGfպbU7F=S ғ߂tU?OdO$ -f*?X;p2@='–rS70"UGўz{vPNf4x,BR]`pB_Rڹ̮2җMדKNw?+1gVvH^ݚT%M5 lwpG֗.rS"a딏* Auq}Qsn!gA9~Μ׶3% h?7 r^b7% aJLWӻxs\X3!q+f2e Vl1JN;Xwk3U o;@STd[!fwc~{YN'/4 11mB8ZUYE, RDe;X{?*trGi0ZuCRΖzw[Fz) %1L# Deb $pG8586Cnv:[I/)K֋~YQ{CދMy 2F â'=mZbCY T Q%գ~EOǡgﻨ}F7CGqi΋!һ!j `= V!Ea;=b뢽`ʫ|HZ|u&S' [;RaǼٚy+~ΊڒxĵEFy v~Kv7QD(ڔޙ1 +뢃aJ}yGM.;W,28gN'K|- mG;\ Z붱 oQ- TyVo{zgUvBIP!߮TŲ./)VTǫN9zښqT{bCQie~Aq Iy,7BPv8 %|7KϾ2aD3RPstU XBm=]k <b`U _"-4`E ٨`&Q ƶKw¾*i$ɭD>L>OH?lҰiW:k~&cAl}L!)W*P!y5J5^p"U0堄U! D߉j56; 7Kp`+5gEqMWCn>h$,'S[:#sدh3֪)wP=7T,kTgLS ro7d9Jl\rҮ4  ૊ҁ$i-IkkoW"h!̈G~b`|8D9$I ۗY 9Yn3roR5'*퉕0PmFJů1}\,$x5Q7GRnL`,K\7InAvZ@@9Tw]8wgDuz:ƞêV!Y˿7!9 % yb$e@'0~q/ӜGi[#w'~HZͥq&~UZ;o0E.AT_0: lmc3B#^ n!pi V׭{%Bb;Y.tEKC4ݍu=4~:,'w~҂] 9-ԝZo+hSO)N{Gl Zo~5l9WPeQe>`,8փD]R9dU/taSlߥE1x,bF8HI>m0%sxQ{0–v0s:|ʺ'( , bùcm6m]`w0gj#xÅ/Z`У{gx>LScm+cy8w[xJ0PxfChYw͙^AJ *XTΡ2hPh.p\ց1=Ll0!Lͥ2s@̡N m;no8% ĭd <- %ZXHţyUks:n& w+rcܗB͖xxƅ */ HoH_LrG\±- 3-Aؑ`:}4~|e 5͟Hwޚ2Tm| _b4 =pW ބڤZK5R׮WY~vkYX c$ufmntJa,~È` `328R0*˾f[ɔn~Oy)8Š<]I EZ-l=E=lޗ:ɏݘm{¸I.Ĉ0ZوGn%zW[Yj{tvNja/\Vq3VvK@ | 3Ka(u6Bp%.t5cB޶0sI u\S.~_ jd1-.}!A;G`Q v9*-?RvZzz%Ι##99Q,~ID1ec]̥u@#yqLެ-1(]29AMk#;>.,Y ~k FRRKW-Td5OXd$؄3RI`g0Ju嶺-tQ{?,QlZ!Cا!AC_'djc94;W=:"tL0wqXt^S#nusQiy=7^ JlBmZoK .'0k TqXq|k1spWhca<7U AO0dL*"yMZtH{tERUjy1׉hK~^n=Q_dt*`eÇa q}Fb.*IOJy(` ׅ)[tbiGRDž$JWfGzQ 5jc7e^.ՙPxklQ.5/lb>j`rG!!UQDDbAmn \S~ 'FB&:&]&׷^v5A[u{aQJ} DzRCL*UA1ȏc35nyٜ~J$959tWiXnʺp++z>>C~*(*p'ԍWh.09dg^+{D"Or]Pb @FbL'nZ픂VSR?30ٱ0kmfuw:jּA'aHJQ40K$+Dv&oǼ&rʗguH+Rc{e'_ -|">f56"5qB$}Řno.(+gv XW*&c18›85AikL(ud$ɀڣOAĊ}ԧ?9pTH3Bũ?}w=㠜-)DHVQMwޔƩW$a zo>on~eGCE pyrw`@{-eS(9X> 'V-hB4񟙝4rYO}2ŔmzSG1>,PuIkɠtː~G3W;6 5 =-؜˺ 4U{Eh 4*H4E,L]wm]+0qn#~M)U4?C&Ix%W FC:p&Ǽ(ƿW)h*.)Љ6~:?mvG:M]_~F|l$cfgY/u͂]nˇ#l K3ΪhV8ʀv@.-8+ ,yWո*]JԵQ`*QTⅺ:,ƢmWJ:zx$L_/퇭kR-[7 ڇZztEu̿rR Sju;= 櫈&C^Tv73f4iCS}#ZnWѥZBxzX9sH[iĒY=0'tUo |mpEbyRtS=hٮoOX6Ah1ȂRlÒ<:iR>8hYQG_'>O7,/3 ))j8ۄ (Q bz1<Õ?S1ꥀm \M:I*/;(pO'<у/ϭҵ:֎VJ1УCArV3.h!oUa߱O$=ψ14a,bZFTg(Yںv$&Dۦ\e:8#]Ҽ# P4!SK0{wqwJXM_]v:J1bo3%a"X3B}М ۲b6?|>K-@-kEv]Tz~>yNG[5&K6$)֢tGIU RD)CHFng2w)]xQX]>]ѭхx,a=9cdaA Z^Ōpxh`s!IWf<,u|vޅx ?h`#Y*w4qВ, H_`+6+X\ζ)қYg,n;}"QD<`E}翑@y"1Lm%qo D=FOWt7mOZF{a>LS\gzT@aQ@C">bR8B j$7 f@&Oߘz o@rsvrC@jK7 \й~m\ BɄs__ߵ۲0n0%PdDA 9:d%?A=\L03cM1 F"x{Sޓjo-ňCqv_՝kfD[GL *`pÍqd[~7XӀf_VRuz}SێaxКe.3Z3G] " mq:X`#{`C6־VHs_Ȱj‰ݶgslsA~siԵTPƁVEk- GnWpCh W]#d|fN/΀^YmR$-!dw?I r4AmG Łтr_W*]a}@30zxkה*{Z,Z[|HΌ^aXj- x!>0pVNLHa`#~U +_f\,};4c4ߣ-Yz!w,Tbtjk)NvVnAPSV06[S<}wnK3kfdTiEP9~[go+DԉTAT?ESxuJſxϜ^:ϐ-!]d#<E @ꖡVWtDh,^DTkQH/)#,Xﴅ d(vyڈ$Sj\ stJ?ZCDŎo4w,ErJ~aKq %詗z` ԱҲsu28hM&mO?Ia࡟ -hFn/trz7c: ^r{F@wZʠ|\zk7`yH^m%hTG^J .4ޙd'>Bۈӗ9vO;+mal/Y hHS"- -TrC6MsF-M$U7K3svR.h3 lTL5jh}qurk}Lgw5g 폼ymP]zI"jAtr 27"o_ɲxˠ~>8%xed;39DWAHw!!7eX(NaWsgA*)\S#_ ` D`B:N|9941@I2ԱK?0^żÚz', 8: =!4%yfW,o__nH%ѤTzc:A;\reD ڔI7`zP-I7 tɦLY28C`rlZM=+އY-Nwv:_{/ tBW3$Y==;HOuiq*HEkgɍ;ZCkZXKC" -}#Y_00,-=MqT`7"Jb6-t? [:ko _;3EmSr0xvm.v3(M O֍1'1*Z9|h p^I,%q>5ms5Zw%_ҲhOEuZ-R B;W,W# Ekֺ=؁Tbf4P{(qBD"*GFD~>)dY}5VT@6YS Ϫ5qΘhipG;j-VH}PEm n-^UH`â>vqyl#)8i9=yáO ?jCW[, hy 13,ġ=y2ըOtA1P1/C|Y\d!ÌEI?wx=Rؗq.*=ث&mENGRD)FK򦕍@tR+5{'p@߀ _a%P8(">,K<^fdzϓ,.*͡:Nto( &[ !Cx#('N *`)pFĂY!buQD_ Ci߱7_Vau$2 o eTzǁ%=(`!+xAM`q M==f+\0gOt>Q/Pxc V[1~L h'V#UvFG,b%u4VXqQ:XUs \BS~T-[I q:ye1E{K[w!gZ?~M8J=nemμn ^56w7ZX Gab*\6rYh[?^Y $2 S^_|=$B.8Ts{ {(mv5L;aI)߈ x;8':-.lg>^jƎ{oKZ]lYYC:EC,+8-_#j,{bQ_jڴхh)6LoRԲQzT%M{n(WikvN]10~QH87@t%*,}°rwUaZ|^S.IUˤoQEЏԳ]D)DxٿMӥaZ?cVB&NYLNųA*ra ℣WOP,Y U.yZ j3;wdlz̥. Oٮ0qu!ǎBU'v (or=`Ue vpSt=)WIKCNX[UϢ!.1760H\/V5kC97ldhHS杇k+T[ $ٶ5FgsFꬴ"xͱυx,fji0JUşV Hh}F1񣘕v[$Ã`ܙ-H Q *S#BC]D%=%H<z!qCzj .C?WW{IDg/ԷS'a`Wߖ@ *.Nu ~t=R2k֌LC2꠰2v/>m,廎,ZtjT[+Kdɧ|e>l}1S+0sda#&c9$0UxwV.BjoDf?1ug`V =VQ9+Vݚb;]&D>l.6q+hnb}=|,hRB~W )vuGBDa3M^ +b6iZfdţ{%ӻO tʒ;/_SZ=cJ4Bkv.c6?@*JHLKeޠ`W,0Jϼgx {262c[mR.WԒ-.V osj,d:)P/d&7]^kPrTV0+&O!FyvHי\q:\]94cIX8iD |(P5H(VZ;z m:\m1 4kovD!v7z0';ntko"D``"]F)rpWaSc_>'85fj;(EWPi~ 4)"Th>Wi< N%E_!z`>:uE, 8A~HBw C_Uy|\r9Pup• vkx2gew9KYVb7mԿB&\hu|*CV :mM>`7(#Yc;v1#!AẢcFUT"_3sϫ2æ7ctWMLS-|yxW9!3yBW_u2WG`Ep1{r͜{8ɀ;:u |Ο=rd]xc#َH4LTo YuȞ+SQF*Y'O3sX%n ؄OܢhC'6y!XA1O BODAtfȭ]2twnh[[8MeΦw? Y~Jj!n:V _~ݳMeHrzѤ 6# |O7s.mk,}^`a8sI?!BsORHU91,$r|ul~2j*6qZf' V[S7+ /ʧZ_͝.zRL5$6۳< ,dLa̗S\M /i|GDHK_go l Z۟̚8= )g) [] ݔPA7d|# JI*3 IK}4s#2~\eޟTd-b&V+X-g":/~x{A?Hnd3X׽Tv.R!Zm,o4|ۙJFk^X`jHzm;AOiJ] /]-RAq(KWj/0hg_+bZ5D'rkIB6_W״@{qH:ցp{^M~ Ȝ˻ier 1NSܱ UxEӕ>eǼ/3 8ӭKr3_|m.@ CϾwpڃ{TCjh]l E y {k]z%{1u|qÎ~#J]4B턒Rx 9#_b(&jgP[%q'UTm詽yWkFq0>'jm8AA>ȹ495 OI'ɣgb~v6v&2Ylrt%mdC/;ӎmKKTH3vzIۤf7 p HW]By^Of R)oʕ3adSz!`h:vHt 52^!XAA-|k 0jR~.ـ9\* 7xi,˜U/ } 4ߡ俘Jl$ΕWgY OT6f6lx0Hn3zTȉl5X'b3q/jL\c|ś8[ Q\?y~Ƨ\1ƴ~}J Ĉ!oܝmt/J(RFBkj -G|2^r_,qFW}X$ jg5j'UV1/qyWS6Uf/@ .śˎBיn.vw+Mt٩<ШH$r$ b5T#I}B  l@3}Cg^.e0p%i.*4^s HPnZ +%yyoO# URS<@U(U+>*H[Ą?H `igqsdzGfa`xjTIh,mӌJ_辝GA=AtzH0 uRT<:|[`L 7_.X,| "Ĝny\l4`XtG[KbrO ۢj@_>ZRٝV)K#eڣ}pw`)mZE_,+Ji fw'Ԓti v6dL^[ 7$)k%dVoyc &Y.hŜǖsP)`#BP(2ۡ>4TZΆ*9`G:)]*7$xj?sKxzd!'q^Q J;s\d3N}Y]n{T0G/EΛGR ]&KzEZ|f ja>2)DMJ8XPvL_0u8 Bܾ̈g C[BN/ ̝h11Kl$ZqQ^.PWiJ>s6Tw!3„M?nڞMAYW̺6fxqY358@%68 [ YvH3~2˕W{@$X](Fuk r}itcS ;LeNVUmE3ieOgEM{5Yf%{T谝`hڋBSl/XN {E]:æ=P^yup,+;x|ԾON]cd,#c8yHGHK8-TofҧiN{_.]xNʁ$eL`T.X2S96}epnA0_tgj[0Fؿgv U8LoRwFbmrz1fWT (_ΛUyeDևc-C.1Ga\盏uy5}6 \5:(k_&Jme =3IhTo۟i;7-CCa:>WJGyqY;$*Nt{bu`L\;xnn=,dSt415Ƶao*"f z!-1.C. їv@NуO\ TrHk9])QG$7:/ v"hx!KEixkR0Bm}Ի$QV-_@W޸;;+]uz|RaC ^mF%2l*(]0L7tQfخaiKE/7alI`zD @E\'d/\* @JOz^͡$)=o2gdtr#@!> eNŠIlU,\a6u /J ЛUm>F7PFF;o|:*{:%AɔfМ3 جM ^7GSˍUV~X ^c!!zoK]}#&@ Qs\L22j~GYv 9_%YSJuxA%q#ya/t\A:BbeE<tK}$LȊ]P]/5~ 6\bgi-?2` ,RU8}o'$iPI͈yW5zũ1t2+8Q6'm3TʂSYN v) 4+ћ@qel)8yhQz^6::7YxHmU-󆢒 F2 VȦȓؔ*ߊ T+x#G\ 1s|Gڇ==JZZzbfʟUXک{cyG=AJۊ@6&8&:]0u E 4'X3֣ sD6@0bFkRpSE 3Qee₮uvڅ3\ 64wMMЀ%-K ߉]1f[9^M0roYW lݫnx~yY:#cUT1!`kAtDjb(?UԌoۅQޞ~%ɜ  PtgӋܠD??}:+1ˆ&V0 !ɱq$YXs,`L<^_Dw$r,6^kYuBkAD?NКPT0=6⾣bae(\6,?;@7LF@Cƅؠk*Ĕ7*à DdnB3tg}r{PrʩVЅMq*|qU q I+Y}2:sӟ<5ȷ)T!D.>4=9AYO\h QtKpVzrp]5ǣGzƧ1S9^}E-֫ Y%թV&, L[MHBa:kc+ԾX$b&7dB"4hCQ濺Z3EhayJ)EL\tM`}S1RC1LH1* YIHt6[/A 6^f\ɘ;s]d} ͯ, ]Iue 󌆜¥sxjHCfG e1fRfĔVo\rIdYq=ܳ=B)kiuz;̓,}e^u? @pަp ʁΙmܙ8L.Wn3B.CD,`n.q|@y|1tnyzJyƦ "os+&y4]6M.HSwbEZG, Aa|: ѱc@ss39E+J_>J; .:lQm̭!q( /|\P<.%mztH{t?of%YQq{ůq5[OOS;q IpK'ωIfZ6B @!OY jo}?~Pz q !0M Mt_%~s<:Z!!E]rS5Ia?%eJw~r[E Ӎ{$jZC'īy9 耀vZR  Mحp6jJŝ-%eρF՛yk BoMQUCṷ8p| kh ]c2 -[Fl6lf*d+f( "zOAQPCf] )bP+gne=௳o*jke-r`^SA77. 8d"zd=hz{4ݔB//ktz_̜(z1Adɲ]NТV ϕ-κIǗە2DAi(44gb輻%.BjeȢPHA:OlY0uglRev<HEbj)af *(,Z18gR I-`2J/_`O!p-f! Kؿʏ"{;]4XsdY1TFl5bà^l%MqyMfESm#ˣ5lI%)g\Y \2/R겙m6ykkoڷg[Q.+ъ#($ȧKl(f+a3Mt{0OJPd V*嗳KriLӴ8xSTRWi" 7V֫؂7*(ܱx>YT;fI0LS_92۳@֔ݜh&TrI`: OeϭK >S-]bRO*DDiϕD$]wJrJ6fo6 y}3(x\ˣQ4:ɨOC~@K AFpAGK I,@gg3QT2Z>RM윔RF1 ;M @k Ol6U oXwRr'HMmՠ~<SNnX7ø4!u7Ndm;ۣ㔀(_.SVPeSRD_TA$#~/ې({O n0 ̿s2pċPSj!DYJ5WOčϠ'E34JnGKh 9j?B\ژRf;~I?Ȑs}'Q^Yuۍ|bsʘ`nu C]Ot$Nnk8Pq` y|ot/x [ߪ%Z%5dB\B?'ү]E!1 {,4X ;w' Y[r %-iÜyn<ӾH0~*Y-:PKK#t>AA9b30078]&d9jO!"~Js[F/;c9lךnw8I1O{e,gМ4] s" s3௽|rCr4y|v\jAyGB;l ~i*NOʼI(@pbIQ9~ø[Za6ӡ镳,>ɱi!ia>6Ɉ$]i.I{-7^GNuroXsXjҭxk")W}XmJMGc`ʁ/k^RIVGel{jyW3:ߎ͠\BXO_@2D05/bl Q7&Gx 㝋M-bGyӈ?gqк}&6mrxx$QW[NXʏhvI<)R6tE.ș?;¢tN-*ŷ&*F?Ƣ)?@iQS ޱkZ,;D)kz)G.߁7@Dm-L$19]FHҭiʗt=*1; /LZΩ1J))J:CЖWa!\fJW;-F~ߊU* Z0L. uj5a3*?A.Hyj0'O7;UD#lqN:2 f7h;Z}vU"S%R]!I~O縀I89BUL v4`R%ąζ(dt4?`dGռK%׍ئJNVt̻h>t@#$dHi WygG nec*1M]?#a9FP']Z܈Hw4|TMꤨ׎vT #ں=7X/uhp?NWwE3zJ`d$|ֽn+渕b/p`r^iYbB-+ꋅ#X S+A@7UA a.saȸ9)GG+Q8S;dTx'(1P;\g݌!)Zcm7;M~2dyVLQ2f>}dt.B Y{ !q!~<ɼra2 m8P(.'K99Ӈ<~?Ǣ䂡\ؙr!J8-K#'I8|G?D*~D)a=>~$H9 zQ)‡8^>w-,aၶ~$eaɔ%}%mQ;l/&?2[NSրIPX56]xM3;]?z RG &Z6#-&vl~zW+Hsss?[5o GLe2E/~npQ#;A+Ա Y˫k3>ƴh*XN 0)G:l@MZ*~ӡjǿrE}caJ"JZ"t$x^Z*&~@;|+9|g6 0RMpM3KV;#Id4|VHpy=ucI4/ Gp#=gQ $-hMCAPuYM!F Lh])6f;Y'dy_!>@$tFE׈d%9"ډDEUs܋UϐʔSTa\UP=c"]w7S&i4s"L:,4]PlTFYj aB*CfN7'*h"=#ߧɷ8!3ԣ< w>'zl?*޻*8=QaAsS52>k_Qӛrso`3:n _zT2:m9~|M*؋}cʍJ_w=Z[L-ͤB*&X "CPcH3e %"J\/qb ]suy tД°#' 4WZP ʩ58(od@x3s.$Χ)r+h p}rĢ;`l;%5U?zq1~9>hi5Àm(eQ[h GZoBl C`X#bhuw ڳ.k̄74H˯VBu ;f L\frZ|0*m\O'hԛ֨ˁ*([gYެ"yOx`'(&ٚO }jˍ|dÆcĴqb3#tO$Uy M?9S}Uc8g[*Y=w< qFX2lgziqGHCc,\ \L}6GD 84]xCfȂsyȟneFp_p]ͤ".ɳI>A WeJ#g=LSDƸ grFk\ыX.@ٯT.Bאp[j$ݓkseB@//u">ڈ+iH*T%ԂQzaRfE:fʹBZQ*'2wnR㋻Ovnhᮆ]OȮ6&(b.L@f}/VvZ̘g7ȿ2UPBLN>98֛mǑ:KovA>yN~Q:"[)*JqwF4U`jڞfeƬ@BMz,M֎:*:VǓba $g Pn~5IfEV 86cZ]||`lڃ0FfSv[p҉TfOȌעC`kW:Z#,hH>%?J{9W` L" |~3~ICJ3S+7XRĬ:}c#2hyӪ1+e7Tv\J̈4t*h Ĺ?> 2**QХGezT}Ehj3g|h$մч:YT&ƞWizy'z5 lJ:TI@se3;zr&ïTb$* %rNAVb^'Ql֕7xQ6wR6r%v[,꼽x-Fxl.k$8&}ž_N"÷9I%8LdNgNX._?s"TQA,Pq'YhƋGAfcWNUa1p6)8VWקv% R"#VJAx?ILmhPJ"t#$OBH(ݫ'_=GT51, (ߌ} I\`V[%lodG~jJpK&Bp4`Z!(zʈ3qs <$'wz+21,JɖY)P?E6y $o6N^ Έ39@g٣JEGOӢ(a-]=8%)l&5Iv^R$ND;`@a|8Jeж@&^6^qg0Sj'ߝ_Pxn&A|0k㚋.v{[;jHD%x{? nauL/,hDfvjF?¼Ax3zގ *]p*Bm?vHYJJz[V#cl$`T[=dZykyYZs_| ]:(l] _uep% "Q3v KH@Nb$-%ZO<6 }Ik]#oPP0R˅(?]8_ xcn%v7ߏW IܤuytAFH`/| yd7Fy~ӯ%>5nƗЬ*˛8`Mm΅| SG%zu;TD5']-Zp _eHI$zl ,sԎٞ=^Ex<@E $G:j ='HJ cӛv2'#..3DMF,EUTA+g\Р 3ay#8Be! a߹t52ϗ~uOY#0_D.A еעm8ɿdn]?4H`9ymݿ0+SGp6Oa hBצ݋@4VҋRUS{Zđkfp$m1#Sa 6B< |.+jU5¼]XʰލAּTW~E(]"B6\943/&zs˯ɘ$t=^&9 Bl$rr΋y:jm7f:KжNJ/-˦gJ $9'ȋvm݁ $ W@b43=/*k?0}C62Atla}[g@ R[>j%rPu|'T<̮O^24!m:0pS32gi?XFRW 6q:ɬ`14^ D&xɚ#})0ki1C_3>",ҞO3ఆ~iK]~q)BDnMb.LwȻO O^o30Q?ex<̌O*JLXN7k6kQhR06IgR~JA$Zuނ{cc3YQW$\]MfH(CgKK1D> ͓\.O7bqt"O ]ϗ%۽2r`/ Q|ląz@4$"I*x3;"ba|vpyB.Ꮝ7 0ECLh*k?k_Ѡe4㲗 ٢ ,yC }Q1]+3#ި0 \ZI&~ɣ{'Wa{Y|*ۡ$ZpNᓼqFj?(G24b]s˖q^ tޢYOR)^$q3w mv.y0k0tQwXTevoqvg`þшqUlf*7B8WMآ_rq\rj)KؙݨAwK a#CG5AioFYcZ! b-)S"@b-!LK|-~j66dK2[)NxSN,Ǔ+qy+&%vRgM6QbΚwmp(3NSGAbx|ˁ6v` jyVօ+̮YC`Gq'v}Oa.t0װӑ.NF=G3oNa 'ag:2:}j}°$88㏬ UMAkgMZXUԩTfE~zA1YHgؽ/Bh>yRȳEnG+w4Zj .C7s ]K@ q(hcdIs0Q@1$'̐0iW}un<p0W֣o/>®$lڈ |z9X>jIؖG] AyNZ|&G (ԶxgoH yz6Hg/WnmRJ8!-1tOKlj5#3.?"3ʁ [|#ߺ-c~'uk_{L=s('#ҙm9?_߻}7!ލ&9bh*+W+X˸?\rek{<)dڎ0: M[7rw2%SFAo"$6E&, b# kayDrR[+( ~ifܾCk@ :xf-Wk$juQ5Wz%ijIH|# Xb@XzHiPOۍc~2j1@JՒ̰o-&V}& Ő7ZJD"q<ԹYg.;۩!2E< 3LMjk~yc/hp g'(`UQ>jN$=4zWΧ<K'#t^/_& ?q/x@מeɸP`63A]C qK -ޕ: +1y2upUw'nunDGycw\N@ xfԡqt˰QV |<:Pŋ r-zTa{BDdrAL+G} hI)fYϨΜ ̰v2"$2ް_yޱ#rX LիP!ɊvѪ[_(9{$70E0Ȗg-7ܧ|_t'k/%AQ>bޣ B*]@5fQQn^!UP)3TyzH⬧:( S$OvU#͵< >\oނ߁[ A՗÷Xq9<ֵ>g tھ VZ15s(퉀ln#/ks/ q|=6Uop\ UJYz];$@D^RcQ+L0{ǔ^>dO $-QN?ԹW7Xd +겝kjD!`MitDŽsjh*x_[m($&W_ZlV],i0|)ft=pf﹚^-qfLu/v'C :^nf ݮe`;Qf!]_ME 02W +LnDH+{Pِn`ڇL2eW''J #ߪE?wό%)g5ESo a{ہVuWTρW8`.<7;GyK-5"ݧIwoeXtd ϾsNT*c\ 0ɓNcCZ0:nn&(/Cށֲ?Zg '#~K>*Mkj E.3GESSI;dc4}\m(Td5#eCrՐβI3/fqLꚷ<.b9/OΛp ܒoy#ՌIkZqT`+}DY˕6R,a/#;4:&1\gE_Y}8{K=!#!7洠!Œ1_[XjB/zĶ~_R af+d5,/?hm KNHn7#U_o-EF=Hoi{> oQ< ĸQqHgxaՠ ">14m Q̈́CExc,]]j_'jK"CxaHr;: F4 +Qi3;.0' ghnp$L"vҀhy;,ţ ?n'*hٻи @&/rnXbGo K00*f=!nE|X}dq계_ޮ` F-n= ԧ;•ӡQFKh>ہHDwmGda KYm,5Nf JxSG/I)TinI??D>ckUՅLC*3Ǻwr%y3.ӿIpZ_ɇP}1|7mwO%{Ŕr={2 NF:F ߰RQ9N (XRxHڹiWAሁWV“!)HR|D{:hlĸ2"Am,PKECKo*XtѶ4԰W"]/kWz7+I#X$lD>A4g!" zV8!|KMڀ'p`o%  =L `U,QI? #u&#~ Տe/<6>LlInM"hd?pF4c)@4 dyl~^$s^OX>M٤D&45z/cI ٦Ǟ="(TH6^F^2Wx?F5e/+>F[f!`_UH\Dsq\t|~x2ldX익jiGhg/HVCI-]f1SݹB=8|:ۯVaŏT?P.vfm9ᗼ`&W5m]M<p0%-U]3ijJ3 _-O2`thixu0,!['!skzObz]xCX!T vVn1M pt p?eݏ>;'n486D E/,rWPMZ_DE~_CrH8QZۨ!؝f:h^qH-GlYnfqɀ z+ 枃uʌ')ys9Xl%\{}%F[N{}뱤'ƼU9~vFܗG lم`]O#:W[;;5opQ)O-ͼɋ'tاD#NWgn(f"Nl;鏼K{YpkCQ9֜=ף嬸#0Vםa(:m,6NpVM4@2~m*zA6`M`\Kw6fq+ԑ?]6x9,Dsӄ: ,;QAvlϚ  HY<(G p +QɊJ͇.Vhq%pHd? j37C0_/x%pA˔K}3$] 0rj0ʏ uhP\ ?{qpXK+v펙跌A6DҍJH,ݫF hMC*pZiJ C01.G#sι熯Z ΄f f&W[0U%8}|Sk|6]7},zkRm,m2ezHQ黧)ygH `E+z'9sksզbf`g̐|Gɓm.ťU_(LávA^z5|xG.Ēwvmߒ1,~GG /`}U\r[^8M OAe=>EiEh i ipR?.Qvoon\_yaUr2ʇA>gLTgLӕ,.*[%(k^m]emBa=qB8Y#'Z\`Aȭߟ#Kq6ՠ><*f6z{~>1'[`Xo*<IMa;%_*?YVb}G.ը#o_Zӻ[q%Žnnj[QK r9$]ksQڇ1PQ$o ;ƴ!|o3(j~Z߅}0&.f}ԏL?F@Ů:p>r%=l ݠBcYMoN->W7̀Ġ3~/n7S|kتLج- NдsȤkLXAEA 5EL _Jc$"Q$yY\60)\֧C<:O>N7cI)'hˤ0= O8.Gʟ D~VhA⸑.YVNfaRT}餣}hO,-{>5ս R&OȊ<s%[FL1N%䚒L{s20c)Yi*bt##X@lz~@q舽Z{\1n0ҕlAkb)枺y[N59O !  rԞL@'3UZnMwPl“~Jb{ hNUdaoDGt?wDfgQ#WIv,HĞ r4#"$HpAWtHMW ڠT q0#VkÃ" 06?UIKDCA >$zfwfCQ`1FLE$;AQ@98=zƐ}ehm>781;^q6#xd<6vRB2ZY D.6q_dz rwahl$jۥrc/ՠgɾhZc =PTrboSF'KyFֈB*c"U@ |Vz]c &m3aqHU/[DrB7̡tNE E:Smu^prTRWRBWĎ+&aR÷,Bh#7PK0KI ެ:"M-Lfq8βz`T\;*x{+}~).|A\tӬ`l`(%Bw˫@}cL˺_GÇߪ'N| u+ C[m4bO 2=x%yˤqLdut jQ3g mtpZHعOmM^͆C|o#zbӃv5%~ $, +_ψmzρ=B"- [o@od22߃ ukEi+?Tog.TNbȝs <@RA{ D *.h[hŲ{1~"~PۤW,jI^_PaMbmWƿ%laG $5\o *tԭxi ]W{xC,9[84J*oh{ސ`;lA$9mG' |qFgʮ&NG3 BtQeSf #W z*B2,: 0,1;xyd-gdl#[ ƿz6 XjB1k'I.[2x $0)l,q7FUVv˭;L#d^_1Zu -`]g~i.')0O`sэ'^:7̄jds%$#5?sj_}[VH;?f8{`_-WWk@;$< VABTqE*cS| b迄9YeQ>6L۞CȹjK@qjbgU"9Ii ^;{L8nk~Ap T%[(`aAs rdS\y@N J9)F̣P`Z[ Uvx5Ύb8CI17 k ZF_xs&!erBѰAv-D aw6L8O-۬$vSj8idʵ͇xJNP>6OD~Y (V oCqD_ {i%훮!콂vB Xx;kk,F,/~n"w[ Nh.N«a^(26\)䦇ZYQ*W3\`qsSXP.dpu[!2OIBo Eo'b  74n,ZTѡr!(wީpZ^޼ 'mkO k0ݷCTj}.RZ2,Sh2򾾽A3TǗmzb'mt%e iOPS[:mnnl:"unogusl 7 B=Ϲ__jP=SjM+.˥= JX a$:,nw2E#vߒO+)6J>M'6-ax$iAUЛmFi1F#ęzp=3+\b,!ޕl& :@$ObX3K( ^}eΙK҉Ԇi/o A> DTcgzmb YXʨa2<9`i<svxwha"?$z]#V0 GṐM_MQlx^e <6pNuS4aS*H{GZ- Pɉ"k(J (xe+?ع_5Bҍ9Q*u+m#!ku$1?30ߺPG/9PO"7CfzPH!F+ z3w?GK&CQd%r8+k7>kn)O ?_Ao:?Ng[,ΞUH.(lJ5Jt{_Q󷱍5>ߑn߄O{ o@O#bx’#7ڃ)nsޭ//}@rNᛉ-e=3:{l\#Ӈcuzi[c=ѽ+4uC}16| #X($Cñ2'.)nI[DKίiJo0%&v^~E:gw\A.m ^s&0XE@ P?G1C"^ 4x:e-VlN9>0 ֶd4#V>.kq?9B$%͟KM{6NKPhwj0XY/D@Z_65\r)8(ai@W¯*;Щ@{yRgj5r}ĚH⽳JDJhNW{hׁ&zv\WV90",% 3_H!he*#v︩a ٟF! |v}joC+%u$s$&7o׍"sA y^@ 6]iwJ0fk,_ QKHp,<iR f{Vv&ThOOt**̫ f`VCzWK.˱ fǃI6xh><r\o>4ULΛo,B2T$>tc"q]sAEV4R S |vКY K-Ц ɇ -V!([/8]o] xx궜!UzAR2=&ydϰ*oM#u7SW¯:Aޑ䞢!wsk!{@91Cl}/꤆^nl]'vғlue>M-QD1"hyVx=FuwR]t-oa?"H. CD |kl<),‘ҡ%`w)PV붐P=m*wo54/(l.&qL>!kb~&,UaIeueT+GQ:=DL2 'RLX "䂝A'`AlY? L-FFD "'s7 h_:7͊n(4r(i+"5#KG\ai\7ZkW³Κȭ`êq:͒]Z'4-Hiȝ]5&=jh75M|I]IL?3t,McGɠdkM4r$& &9[0nQ]x=e1^|`rOѼ RnHB#t[ā+c_=1)Z>\:*2> kOa ؈:Rh,+/}F;3TjQEKDp/ s.&:ł7ד.A_߯b'`68C&'nʇW /Bj>H)c8SPh醂^{iiۦ27&b@^aWe1fPh4g)0fKN~lX~9VCJ\nfa֘Z<}l;rkz)YԸO9?Lu)z$NAEz3x bg7  {>ҮaV񻘘 WO;OF8MɿkƟBV ThǁӽZ=貢nLީ ]JܿZEV!4W} ?e.٩rBpJg=bM v}6VAq^hR5Y h_/J0p׻7O{}(o3d0<|_nͤlm/&+9n茕;΃==GK*0yࡼN7Bn=QĔdJjz #=;'e!R.lr@=nf EN KA a&& Gtq\rRP~S 3>R=l[V%2T^KV-3oD S*-VłI R  h<At"ʤ#iqq ={;q085q^DVqS4<؃1~ flkEդ]_VƐ:;P?G rڗE̅];ɪ5vpMptC-JUk#Pzq.'HôNىԉCvR}5dɺn[ {O:*3n9+B(>\iM%l/#:Ǿ1+lA!_PX Π_$q PLUFo}cL,f{m5;>]m5g#YS|:hn `hɈ\ؑ y3fG*ypiSB`Ihg^/w#HVlpP%j"] 9g-)b,5=CIiOb E递l~J~ NȨ J3DžAY"ex\,9a2Z~!d\*=_e 4SHO77=n{Xjw/(!8\T#&QMJ(r beb~1i.Er`7EYzb@q_y WAT3\T82̴p__^ +,iQl";7|d<7l]\XPo>-~ɲQbɯcyEԆؼur^,O{ʤ )"LB-LX gm톒n3Ysnz'Cg*!A1SP_xeV7&JجX-uF]RQHEᝎj~֠UX7qYRЉ?͡7 M|-tɇ|hR4Q: *a㾁bJ_YfuW.,Eޘ76_lz٭U@l1Kv8D3{[nh_f:Q{Y&dKaX:aV(̗phYֽ*82m7",  yAh٥$a%K<ǘɨ:lyX#*7eUhPZ5 N 6ԿQx, "gxU#u' h'd_ [>f[HYv:߹]wP_AU]<±PGIu{^[L^GGd(W%;6W! pT vO{Q*ETqZgf 7dXR~Iޫ㗥#Ń?\68Zqt ImC.swyo6Ї#~(̬k 4d|ۚFJ/KQhЄ@6&~5U;Nph^BR&^֜U!V@) e7 ~ļ HpXʵʲWMt2'%1) *J.L,sm)Xp1^X20?{ed8}$P2'?-=tw84:,RiU ZOn37$.{HM [)Kt.j{m5gZ3n(bUfQƗ6풬a|'H"7rx`tA1۹кbMzsE@lUӌG{p;.ep'yMp1vvHh3orNB8w5ӟ§'3`l`ip{ wdDR u7ͦAR|Ul̑0B/Q?$ϲS3.މ Y?^~ ?*T3bI'd}[NJ2ˣ5#o2>~2-fTL Cqk*V)(r.Z)_X] |O?-2FTYcghP @bҾ+v>@jW(eǠl':+[V#7*r8]/}.ʦ7&Yy3A- ^A ȪfamMCma`ߑ3}N$tlc53' El_;El6ڝJpWQS};C%Kme\` a* ,yo^OUohlcɯwj[p] %Ri' lьDfU;5T`z2_=y/htfУ(R!:B+͟"V@sZ2C oS~W1jjNbmZ q^Ptkm5Z; no/%;#/JhNQ÷=mH}JVV4IVCpwIs- 2<#1Br۱yҊ2'Ln(fk,'5N5Γb[!RBW<SH `g4S(@tɩeAGPWP4xW6.v³ nD=uHF՜,"WeיZluI,h=Slxԥ'dǼ@wlT#§h\Zћёe?^JI,S\V uv然w%Vz=)+wE{ѪI0XbvЃtZ1@C MSh7V'P#ն $Cg4^+bM_enPHʭ"xq>3k}Qً*Y$ \i){׋acm^ϔaD;F2ԁ1op?[{==NV=U, 7@T ӻe~ݠ% gzz[5ԆN|,&H7$&WM"ʚpCj^lYUvӷu P 1=N˱qd,KB_eDn4wW8qQI Q&i%}]c.#ޟi-8p!-"pV[WV\`PN*C:_R.E{>VʱE(c?7gj!μG*GgW / ":mdfE`xT} -)*~z-h.cAF9p'Qx:ܴ͸(*Xj\B?{=_8- Clޓ"~+kةJ~~$u&%?qI 1/bEdTN/QgGuҞ mMR(aAeαӠLӥ8.nBִنQk`4":dLqG^H+MGI Ѳj;PY!Z7m[ڔ׸B!/`.wjl>B0_̡`& RF.!G*1tEƖC\S%>@~m0a4!ŀ#\#ҜgDl͎pRFDK!֪2;P?EBA?d41.3`z{aB'~4@I&}c0Z!X+˂} }v7D ^ :ĥ]<.'F  NPnx爬E4G UÔ!Oē~9:Ҡ'^g%BO$G ӯ 4Th?.wNFZQC[8$lNՑl|c}*J KBOA}"[-E-#&qDN}E5 y}MGdUju"D7kcᮽQ U}%?yҞ@y |eLZQoU, ᇙpe!!:`==\CQy0^$L[TZ3-l㸐'QMn=32z s˝i%=vwȭ*jʥ㔻1fq$4 Sq \:Wx#j/)+)(9Bna2@ gM-C%x^(?im),޺@]<-opo-K3EYtnwF`X;VӾ0 YvmH =fгyY&IcNpLhefrjlo΍YP̸+aqރ] m[Ki P23[ ZWd+ϼKq{a16{F\5@d$; WgQV^n9LPml(M~gLI>~2ꕎ^.K*_e($fB?:,Zڜԏ蠴#uW//0F${2amoy3\A"X /ôDjp|ΨHQkXeT(# [k.;b*g wD%ߌQ7"&^ؔx>>몂Q75kn抽I6%6| u)y4+uU~N$x/aAtq,_~8'LETǟ(i L?UU.j4_[h}oY,Wmw0)[)AbQaނh h eTʨIu =5@SGg t(Z@[>#,h@9Myoȸ"7:Qd@ɕ֍ y?S&f໽}8>` SCE VW(8D0 Ϭ1bE]bȧLi% )Rw#(D8m@FɶK96QԜsCRi&d6+w*|U<"iĥ<XX2^Vid}7 &\8ٔtsLiÃ#GnG-R K xN;9W X^vQ6CqWLG`*U^~9.mޗ^g0.:MUn(sGfo>*(KZOhOMv?D]+Rጞ h}YX vfB5SW/f?GLK΍b/cP^#W{ED({6爎Ў;.G+CH>v?p6E`5 R6PW3|>f#k?A@D|I)'I6+,ՇW7k܍Gb,$ Aoo)$>[O1cypWbĸ6_,ep.$=s#(萈nHq|LFy*r=sJW{m BP_"[)9b.^L??>%bb""GpP4ChU^UsCWwPgsbn{ĸZl !nyQ?ZW9hʪ7x%aTGL &r İo}-Y9P9֘vdR'w|1/;X 00iS ތď;8ꩩRj 㘎&;"m'nOl?}zsi Roe6 HP~2'dLW$V> I!k*rGd,{Ej~H 8l콟VaowcM=;"Tr-ACx1Rx$Cfjk3 J EMT }>dhwL8zq.hgh;u0216drO[*]a30[mqZ(Wg} Op9º(M\(Z9W6gp('|]6:Yg=0eks$A_PV .VvhCp]/Mcʴ?;"{ᰊ: PeW\AyxՕ|ơDǾN'%G'nͭwIln`utX!bXRNٴ寿qФ`pUE1<HHa1aP˱p#a@ٛ8MX= $ه0n- J"#s֦ȝSHSKx̤Sxl&KD+uA~ꊡ#peWkR5K lUy85ʯއy/kȟo 9wAw؇UQf<>GFc(?V ݮF𧘺+NP*zrkb| 񛕕i_$-CX^IO^ [ln#9  VNc]X~oq#XwQS S4A|BÓy2 \m(Aחн:+>N[Κcߟh[a ^YAQ2 ѧ86|m/|bI9TwcI٘mE}Ag׫/\IebS~S'q S2[i|#Ic(լgkL*O1Nעe6ք* ?2=(K$MDO1N}i)cM,]O{ceH4} Ns 4|9S۷M@xY]#vqqdbyXş$7>B8Vo4S9f%* n0DL+R ;2Ar)p-VvBB?W8JPOwB>!OhWvLc.*_O{µc"'+A}rV=eAH*ճ0$%US~rdҕU=(,IlBp  Abxn,eOpИH7dg'׋`󾰅߿e:+3|<=ekj1gJmyDc BU2Ww鍕2M{:v#iYO+9\˴ 2\:Rd$ v9qmd {c"ш"cQ1jvViNփѭ.W(%[sѝcq *'+E˦ F1z3$cݡq3_=YxI{HRs|E0Yk}\+E So`e<<2V>vMb4FyRCm>yһ5eV%sJ_1SqKmF,&̹N6Ite'-a&Ct CdKq5;d@P7}21j$H=S=} iV2λqKkݦvFBc$D\Mmr>7޲wwcdMy&zq{`!Ęk?f=:i7xrl#tV`Vo~|Sg]Br߻9;⍳'<ϐ Ar7 .ُsʼyٜM=x'?oAT*󽚵dGM+]4n8A0u;7bFΑue0v|uRzN([6, v:SR|>I"+`;*5:|EْňH(n_uKT -ΧIU[mEND:D%l|Zܬ~),˦8hWJH?*q@קB[aX^}id$NsH}&܈ K>Ll'R tM F.QpG 7Pmb=$Y2!K`}kʇ d-\i6' Jv^Gī6r2yAi7©*65Beg7z*c_LM\D>M]B.oF7+د*)A7H5霠ܕQ<~K*/o| e2ToC&uѵT aiMESdCy( e60(9d ŅXU'Ǽ R%-"yQ4@ FZ:/X}8۰ 􎔲Z?$"ޠ QW'hݧi>)~ETem0|9lʙ9`(TZ{ q"D鉈@&</s)*[=}1\?n^'Ս;S ]R1ևԊOVޖ.uf8%I#KH*Bӿ&j0YZ|AeS@g,i"嫫hv'ք%v]`nR PEl"crx`q߻Bޭ^"'ꫤ\cw4SCʑR7*lvg 54f/o?_iq 2u=M( UL.{9>>F/^bQ%q?`POآuJSFuOJ<)@_\0}^d " K %Vg5WhV17~G">僊_-6|}Qxb)p9%!PZE>Ahojɩlެrvb9 tlxb6hpld6Rn&Kٽp.2^t~>^6FA5ITpJ;߷ʹ/6g&ƫ)Zp_8H.36Ֆs^WV;U^[ ,W_NcZʩu9PWCTXuBƱ rb*џ)5VBnuneb &gW5!RyuyW,gƸ^ .rc8~hIZ22ab%tEC'F]ۺ8%a~OQJ73sZ{,WTbqY7f' Ŏu@(1L>]ʇOI=+ݖ![׳:Q.̐EӬ9DؙkYpd∅5a5Mp7|3iϱěk(f:.%ne`;KCK߶Rq KC8] /&0= H']6\ óZ1BD/4ry~hwZTrpiVoroG TAv0EP *eX1>3g,)h/7#m_44m7Rd^|nVtդ K gD>ZQ_¬ u^yy-V0@7 Vϱ n\̕C^[GW=Sd7ٮ?a{8j>~IYA}x#$ZN~ yEֱ{n9/,)g[x2]^j,Pa\;t=** hb^UU[\&?P~lVKy3jfGf.n E {҈+#abOr[RW l*Bш+\N@4Rw-3<<{WwZ!\YȨ|$!O?AF d*l$yΖ)v %I4_ c + Mo(C';\lnG&q'¨>Bڄte1xaǃC$R" !iѢR'}hBn.uuYKPUgYs#aٓ8IJjh MGP9+MlR ӄFUT\\ytA%4<:L-&MѹH+bHW^d6 Vz=}ky#~a㼁Ve74c[YB"=]"0%gVDym{ Nt,d-4mԧ~pf,9RDz$^Xr#X%I3hȅWd"PY`/zZB= n3NԂ8ek\Xm$*2d|40D95!MFXCb8 ޑX 5d_ϝy\YU\E4|u ͧi%R`Q˺Gvi:-4pH8gL,'/WMzDvrv[* ߕ+0oYᵁս{o~NHwlD:{<%@@|NԾe {:}h&8:f.hܲń (ZQzb rWmr@ qeZ,E y\V2eɔȴO'mk J~JeE0HGl.ciŜM$Vn 67~ʋę{X֥@ |R% IRv+cߺ-rTaZg$C(-{cH *R=hbA lP |j0Atn9v-C7 !F֑OMqR((>Gƅq'Ÿ:mp>!Fq2G}X])F?F`#^ШNBj._чn&hq{ #g^ЩSj!=lξ*=ǃƄX .x9M:@/'&76İsgS/]7GЃFPOoE{IAlo  r8n(ru-q-l%^*T?$mֺJn *}2oJ Oy#RX%1lpKuɨg0ᮩygei 8 riC@oA/YV1R' ELH*OUU7FD(j3p3aR$X ~CwHu̪_Se!+Ĥ(]vbۑ[i ߘ֦uodu`˟?/ h0[|/9<8ʟ3ys)*b!xV0l7^{}|'.gIOT_~3vߑBqtTiNDړ]}G,9 jpʮW!B]绖#nna_Ĝa'%ĝAV1LBcc /LNmq5L]F P냓l!`}f~ ~OKoLWpj(ۗ,;ףJU;`Qj/J6\=WP]2+!zX/^q&;0d+jRȃ.=L4i@=_V6D;J0k bުI aN[ۚ茨,Q@'=6p`h!o]`C'KnetY̹򏖗Y3ʘ`fmlX>"׆(] L>S'@zЎ5- <;(,%`m x=D7`h&D|kyh 4+).־ @$C-nsppc1%BWD8pkNI~mYXKe2輔r3_sflOA-5[G{O;=pc-]|l.zccGvtE6Epܻzd<4z9=,VFrEtZbt#LM^?}UܠĎbQf9FQKbErze3(74n< jf\` L{[2;3P v'J!d: J.j b̐/ f̰05dǭ\)NJ( AB3Sa *}C#+"m` j :*Կęd<YhKrEqf66a3jǫAgaE6RC3i&[U Oyވ/),uf1 #9Kc|*n  x_5 ˏ.GI)%c4[FW:k^l5Z'}^Z-FB8GT+ijy9,,0' h?$6ao§6ԓ>y[%T2NZֆS[iH0ٔ %K Sbd!=3n2vVqWս8=ux!.$hgvWrS ~J((i Oy]}x Jw€WО8a )*ۿQ ] LW/1ͮ~;O`>^&^̰ 00.Df\i3ӗ‡aBݬUbMqU,JweFn?_VkHXN Ts3CcKe꾶ZXpƞlh!ʬyt-h۽%أB18fH,}t! YwkrC~R5[L/ԙʚVIUJ`ώ-HX$J1&gN)M(¦I@3RB3^0IK NٛjWw#0([Yg~OH-i?juWf+HԌA Tj[/5όU:J~5b(]>|S;>Ny"۽Y/:a[}X6;|zdH#~b #hgh]oio #mᇯ峭V 4OH><+䆓홴I w_X:זWhَσt+P4 82W#p^ nv1VL(`!NA_@6,blO3qY&11&6zy*@ceʸv61[Zq 2'szp 1+W7Su W0S{4hMs\&6Kd Oa7M yļDEa8a-d+9B`B*'b'e LGW0+/$7OŭQ/Oi\5h nYwD񷥍o .fp ‹!'q?J#3Qa޼hxxӔ{h(ߖDqcg"#D5}kR` [] XxGV%ɧ1]SBlj+➙>A!O?SyR# !s) -򏥺iA= h5eWFgs7ʳA#44DC(F n>zMR|ޤdӸ& /"\-fndVQ_b swO@ewۤH#Ja$0LSv`gkuJ2;' ZG\"ڼ /R0Fk)%W9sl #*ph "b0MLݮ[J)wMs$]^O6^Q޳r0`G6ﲔ ){rV+bz̩h[SH/1*&WOA.Acz6>xT-3Յ-<DO 89o Jl6d!$VA1gOrpHSy' T;`=c>Lnwvk#(419?HW#:K™4nPlu+9;$:tt8^pGe p1_!UC~I5=20OBי0k`\}c!κq$ݙOPJ O–r@wZzͩXׄGPvJ.TFҹJ:I~Ny͞Ls8'9sa_XyKyp-Q!@,قP9m?h@ӟZ0vB*µVgp|}sJmkj>8 '"iyRƹ&-Kfn|]af6^ YLcDt+ CĩP5;>lH/_(fI uoJӥeH]'KO|Z;NF[B,(Pn!=L4OӘ.7k=-L0 &g*N;4SIb  HV@i]C_cU!4d.e;YaX?ڞaCr&cJVVٶ߾`0;sKݖ ul-6!Gw]_쿅:bwjoZPMef0CDG},6$Vd K1B#FHI~W nM^r ˆ}Gg;]xy޾Umn5(CzqO x`L :*dEрf.;vmcJ` H":,ă1*BQ 8z02ܳ ,$5@?IͽWԲx/+Buz?cߠ =׃+i$G1k RϦn4R4n2ܸI; G6(?Sń2C$>L"8B% )_U~@+,껐wnmiv-?Bw|((@8#`Xwb3ڿPLFԽc<07CBA)_( yu =ަH1bc\-O ^M< w^i_t&r4;3{xh2Upfj(>P^ BJn؁onLZ`aH"-gƐ>df>D{cӳ1*bGLoEjz&d%"X N om |gv^zH0Z)dZ:Tz߷iԧ<9s<|}*\C2*X<0փ[KDF1qcG;TԳ=t㤟 ӥn/[Ml1[/\SJ5#/NM׳kƧ ^L *WֆmWH2Rl_V^>K8G\ڈ5f1jt/K@3sy l^ L]ٛP(9AFj'KV&MOK)»6ٝBҲ()xR"h-mhwj)EEm`\j$RQK%h >?ss\Hpy?ljoJ&\- w*}*)̲eb ~Ve`* VwQ()$̘EH _oK㑛mq>B"ϰPh,=YjAW OYa<΋2z)o(1 /쇆D0{=/08JR(Rn+m@l˛'$aܧя+ڮwCLtJKZvGzH4nu= Ρ`UPFN;;K!"ݗ /,7gt [8)n 5׍({O:hp^Qc䘜DfFQIV^7&@IT@_ &t"Cas 9q>ohuŽMzGoU[Q|φiun oMC*tߍ!qzH` N7l?j2p |/2eϤYO+ >'S: `RT110#wz]"\K # QgMS-y[;GM#! N Ѝ=x}͇y/.?!Q-%ߵOoug݋hRxxQ2\ϖHhR1[%M(Jw[ /`'yDW$*zɆRKu\*8V/5OT6a};kpjۡkP3q{zػ9|ݢ!ig9)[uVMطwzÜ㾝]ڀc*ZNv/i{h wL,jt.M!$vۡg޻%8QKm}<׭xFPDbGs9Z'X *Nn3SmR7ċsE*03B6ĭ?c_+ؑn"ܩhRWP9Txu`L1r-Ӹ1_<$wDbRf{BI.bQؙ4@pD7ݷ2ѐ]N7nt)=JayC\KshS6`XV6{\ߩa6N1,-Ta} _cu/ D{5vq^rޣHwEuwtg*;+gc qczHKSG(S+^N璕sIxlCE^ՅR>%q_.D}{۾(Gz פέ槞@[j@UeRge"0ŷ uI8y}11N+S."y.Zk8<`5S%ۭ &.ovgyxұ8?'Pm]t#adHB(~mNK/Hn tlf`zNT'!qQbNW,*J}Nz%A-<ؙM_{h!6\o -yf|o~R_vptZJz cIv=r|;0ۓF K)g'V62֘ۋV&= K%aXWxNu?igxGL2h[\UV<21}-Z  yW9>O-9AYx:(̪OI=*Al6i]Ӏ΍lT|xW&s7܄e8װ$4wQ}AZǾtӬ?Py6iǮ)-5Å>*7LpȂŊ+Y;sm-aBhLqlÁgR-`* )4^gJ!JuB>{VU ,qUƙM[g%w=Dt`>n*DﴐW %inܨRe` s-HozZ4"f.D%O@?J-0N$ߖT0&&I ,mTʪ0+݈}=ݜLW 0FY a|(88&|9eC gt$% P&4d]O{cհu'+%:G&*W7(6gz#41#yË-.~U XJ됫b.*R9bShbP5ix?nWUN(pmh(b:gwM$3Q{[[ y+;J\D=-ڹ{֨j6,ޭ%ЦK;x] 4bAE{-B0*]|wb6qq>{JBJܔ 9)Ȳ.NaUd'Cpg͚4H|'b_Hd(gnbebh&lVX80'dkO/_'۴.aUT붶&€v ݢN]a`c.]GA'qT44|qjŗ^ [V{4̈VAJ:So؃kֺe'> ]Hʠ. OZjxxI EMMyisZMrcNWZ[]>djJA% M;Lһ~S(Ņ5a /6Y{@bϸ md0j+eCٹsF<Ӡ3/Hý[,ni_<0vdS՘s\2]8-ނ=MfFQ]ݥ_xѬKZ~q3˞Li-aBt/pqۿ#c5w{a3l&K 8"J>kzwVxwmY; f ܍}~ӢCQ&6qH& ٺzp&bC%&w@@e)M=|8m/~V}Ɂ=϶;0dd789 뫯ZLAҊwFDE^9 S6io£I8Co:_D;3ZT9kNuCm=3? P>@}U0qT>;0md"+Į}=O #tvsgx{>ɛD^Z HТn]Y B4DaSc}EvxctM77[ShEcY_675^!Ŧ20sߍ"h )S802zeh!~4Ygn?x23Wg[1R[9GSҜ+Hmn[ }f޻h6%? 1r JUE7XVʕ3{'1e75 x%f-ܞk lޙ^Fǥ("ܠ+Sz_pmZoeޤoXh҆e>ȥvp%w̌$s^mc~8Y{KQ|ΠށU#iN O[!KUs"OAf5-FiXUeW8GHQe W*-9 zzw Z?D̳jvUi,0wW樧Ӥݺ2WEi}նfˡ`.D8`Sͥ^ھ!,kkwIcRLS#/ڼ[WcͿd?}\!9Uh4IHkb |wh '_)XeE)Ʃ-T7gU\97zr'ya,ڒHWK淆 4FJ'Cˏ_Yz+sX'\bo҃7 <&c`aUfxOp\ok{LK85~VGe'0 g()FRɑ(k1Utg6oy|'w埈#*5[(C~T;(VC}xmaW`}-1Qf1RE9AcVWrHXOO{ D_7 xCVrc^y͙ p+ {zP"@ߍe-ZQSdCёTkAƗlDRX_v~3^0m/$A6FJдIVbxFUju7r $u)死~9{?TjzژXX_ f4v8fq- 10 HS6ӦxbaHogyw0ii0vi(ϊup(^mc$/RYD1dj<0#sLP^' "b+xǨ<&74"GlVd=5 "cߥ$W>Y rYT ?-F%)Z;2]~jvK]=8(Ppr^'-zv}Hf>,=7Ǎ8 W6!e7-0?>H?Ϻ\tz23m&8C9xUOl0IP&ש {1EFPOo2hBҿ|6:TG*T7իK&PEhUcuEXLy&ptw H~KɬdCqxSI E)J5h $(󜨦2E֘}hZ>7,O ǼpulE<Tu Չ-|W02Su~Eo",~-ͳN!L^TH-eiXNaLY߼q|N h0*a&Nv |5%W#䬬-[",p&y[ )łI|*V>{QJ[@g[k)tKJ7ױ z = =`K҈"!>wLd3ޞDJm='#/|YYR+KQpw }n5 ᶫa3!u@4Qo4lԧ ch}R (2`Zŭ^>oPx[Q}ZѦl) ߤNɖ ..cVfPGkZsm뇅"E d0ݩ[LZEPˣ >" O:hCNO>%븹cU$->%jQJ /5胞phB ouTN !%GԳ3I%$<ߏ7Sy!l#淚6L5+1Rql):gĂM/4 ׁde/eg-~l`y `4hA_֠{4Oa\JLNtӑk#R$^@IQkaj*"o :2ɳ XRG_:?LLҩ"뉇{cK:tC-W$[|Dnj~Lb44 4gc{-,޹)M8LITm~<t0E)*[抰ם\ ;$ۑ~QQ%b J::6^C^4_pc= < b5.WUVnaAz?M5]LOW4@10|0oZ`W093$TW7&V9 y/ɥN.@{]:J)@lA|pT)v^S'LpdqQW/(}M!YPgP*#i9"& {Lz7f'Ld᷐}/W:=U@t?gS&e{2*g`BWq^%BL|'B`~4_sq3, t c^İ}f{ʗlAb\2/3kOdm;Klad[xV}j$3y1{ րjjH"koP;_Ⲅ=}0 'Sw@qwۭ+W>/4MA*M=S=rjq3KA%9Rx?Q;- L豒÷#ffEr8$| ft]WNƑ*V1UnvT+|Gpsb={ pQ&[ H}$-/K-+u!w~ \&nq[<[cٓQx~F)QኡE;jX60A(nE ԓȱC0S\tӏ*qp(ǔ/MFtσvL@Xȷ*_IJIKtW#BjP bP\kO\vbrkZe~ ~')qL2}+y @8as_:-${ {4q˷alvL8 ݑ娖JW܏RJ׸.SF/tdr-MK -g6f0ML}Aw MY<3KҴm|)hrgVBLz^DՎcy]#ն3sk>ˁ:Om̶_>@]-7Lv?+L[`/3v*_@^l;E9x%>d ::ŕw1<f!1JbdVVAP^y^2uKn'0kgGNt{E^)s'.8vuA~.6rzμ"&v79f 8h_e{ia4$ *: [5w0-{S`qE zd޽9h ZXA J*hh 7~ ?xCĺ\ yy']D#g&# $4IKeU!eD%֜;P2l]R g:͵aIUL=$ԙ0߃'傫7GM箈-xF$huuzJtvo~3p,ӥ{/siFcL"Տ9nSPhg񾟔l,wEg'@S=;] ebFpNEQ}b-?lK U93iлr_vhu; `^\Ð@C gEby>g 2- ]Ƞ#Wdz`Eȿ^a+^w< w=K:;!ayQ㨷JMQ{ADz``*샵ed9FbknP%#EkycLAs3f!T#V;vE6B6"胂'c=Q̭X*ǝ:}앟î_Eʵ.Ӈf@$iu1bR2uQ *`&ʷ`+}Yf/p9ov[0k:U︁[ )XX}\G)JŚP0}+3'Cq'Y7]/O~ܵW/| vojae%zٌږ>S]l='.Y?b<@KH})#I?sF}-sg(-6V {nwP*@-ެWb͕=qtiDSWk L(a >K<]-sᐱc|ظҚ~.8Ӭ5׆>6S̨˪u/]G[zAE=ڃ+>(%p*;.+dNKϣnyD{eMU>s3ըM M 8\PۏKt${ker=w4lU#EP~zˑ {!yDuG"",en Dr0?wcE66jxSx@Lc$0S_@&\qE01#`}dŧKqsJUL|Z,Fbs9'KI Q>#坬 :B:\_H8U&vP5HʆCrThC8XU+#k(D]U~MDƦ]Eh,JJh20&뉍q# DPmp4QQ#|҉i5PQ38Ƶ#;C:JXWhпp:T,uVn.z`贡``NWV'/ rn{LCz14A<Lw)!Ehul@V͉WyAx?(ҽyZ9o8L\|Z.ɢL( Sdss,6,x=}+L'%+}s'IϠ@ 4fGɹȑp@>T"Үƺ[芘>,J'HmCfL_Em,E`Ъr'۳d'mwbxiX?QMvkC; W@7ӟ,f:PkW֋:k @1z!`R{ A|0.6mxBRSx./ٝ^,XfM 3݉ZShzIM,n* ,!Oh/~2A$.j2znd>F6 F^2)HBzqu%G&RY@^^df(M JH`?7V(m.AjcYJ~?dQh NVI )1o:kjXk v(.􊳢8OTԀȐFV@GudtAg6MF&O (y^hQs[9!Eˉf*D?ír%Dܚaoq+]S0|Pbփ){6L'+OY  Ge+wO"aߦo@Ra,X9VjdDNIp1Oǘ]eλzEY{''Q=KqZYK >HZ/STb t8YTOع*#0ntFќBIVPt}_/vduqK} iM;vlUbGWAٕE!=e׾ l0|,}D8/+b*,We(uL8Yb * СU]'@7\_uJMb0&zU%l-=~mFO'08F_Y« 2s޵MnYi> "ʹA/^f۝3S+N1Υq&*g@6, $A9E}@_О>>>θPst$5Њ?'_ ҉ȑVI7J` TQe/ (TBֶZH>uc'|^ERUê!?úyXXeb$Y_}/z[,F|!hmN *j i&3 @C!(~^j4)XI`IB;^(YAzv_yd>6gBCA#u4_fZy=7+a"}}$f-tP褝 w#f:u25!76!M*ku6^@;6?u2x ցpǀE%r%e\IJ[q9\<.>*.%f FÁF Wp ,Wd T t2;zĘr7-e.wE1O\# {hgFf"%W.>թ+O<]N&;DhQ;MR7pK) Ecr1[\#J_5q`ڊ\Gw EtE ys6!wڇuCY0}؝A@22z=~ՀczՒ#RN{}iNeMroZO5g#=T"  B_Θ`9=ۭךgy9%CW;]w) wK'BPѨP"-' S* Fq dP갦\ z ex[/tOIm\͟.H)wPJF1RbCU Hf\xؾVe=#nk"*91N99]m-wu8<>ƳJh&B Fݽ8$VnCJN>^MJŲ4 #W1͝SEQ p?)m0ʝZ|t,oʰGX#UC -\DDUȆD/j| yP<:bO鴹>GZKܙFU)< ~BS& (^++mGA. J{cmińWiFd0V:AWz_<#1}/ea5-L2SD )}~ۉ}OqCW-qsU2s A K%hi oZWsU#!3uH0nM#@RJKbH:%n3RRaXu)5[ s[NVeH]HOKic"'жIs(j_Gj(I}&*$HAULBf|sM.YVOF. )iķ0 H̪{EG$Q#"BI4+uAaQ0_}+Mn[E\g\]ŢQB|cw`Qo!K5S-  ' zצ`PD-0]w[kp1AZ~j H,Kg4E-;&[ZK}ѓ>꒰Sb޳>=Hs61S^0LRAKMݻdJ}L\*|'C:ΙvWS}#멏ewq Y"ò'HIz[ Bd+ vr}6PNPvةq&ȗaGkx7 T愁 J%*!jf[5Xlc3i¦$6#wU̍XӐCEK(:RU6sJPi.Q^ю@$#C)BWsdyV qW[h? >G,+w֡V#ZWUMP9"6I-.;@E+{} L«knUIH * bBLpͱ0JY^'At[?bg)HX:-9:FE"χ?4 >xBe*utȏ$h"E)C|2L421"tb+BP) Mm]_5fc4tz>0zڃh: Lix2ٺ\N@-ї2 c!T2~TJ򇚊ݍV_8@-G^a*oŮYr:[DKL 2ec )ZC ,L.63Gc`݂sOFK&*SP'O!‘NS8Ql&O_D,L\--\\w\B]/*D`Z:-2⺃nmXjvz2w+R) ak Ō7$&wHS O%\=φaa̙GALb%W5 Ö^mS8TvΡigbAA*(BaNm=׊>sѐ1bC_9Lܻ,⸢=niWoETi\~w^=B$A[IVG L~Kg%VJɄ6AFJ& @,;3o| $}jS&FoPql<Nb2aܻM=U#;[Yk{xic %C7ؕU.h22cyW{\`%Cn}֤{0y s- !TugԱp;icI:LJu< %Yh:/WFxdk, ĀU#r[_uq;%,Yo <*K\T bÃKVEs) XX#A;`Wv_ i !b{m>FDSڑj6Q{ ؀`˼)}F^ՅD|YXaxEcCSPt&reNׯfwV'mhG FVm4`Ob%h|dݰk+̒N+Wwp v^t?M]ȘZ3ϲq̅AN5^uulz(y!7P`x`f[+k$F}|/^-ٽ&A\S :/W!%~l\h0Xd[jZ~RmL/qJtWsE )Gdקdd 'n|V帜 {Zƪ0 5xZ(z׶FhǕ4V#@owA2"{}!DHzE}TBkDoҌ^+@u? dj`YsD;ûvgJ=:= 7JyB*acɻttYUA͞ows}"w\`)4'R\K huvHw NyΜoU+hk ׇ\fj$o)D g$y;OiS<12YkAz{A !0h%y ߠdE}U CZ遷\aZchd?t O)!KǤGID c ` }*(ڻ‰cm{ 9[UjRէz.X@nq%*0BP[JbLQ՘Ę?Ld" 1|=6:) .'CdgUo @B&A.l3oJ5uj O*sw i;6O_CyceOEVkj"l2^?uEH\Ѩwy؆TIlYs@s"҄ {ta\2/=}~j_` {~ g~KI}v.S槝rGD_) ݦ }Z IeX@,*$֪?_~.jZmt'm@݁wO -;@u"}԰ɟᶙz$r<ԸWw1C@ܔ3zoo0kKoվ?(ݾ0NOҏPSV(-}=E* Ѝlvl:OT8޵wk>7I8ZeOGr&X7GE.pQV{_[BK-88eܸ\_Sj'ˋ]vyhytň8(a$h#][*ܢVGĝwZ-YQU _BNw3;ך?"o#ƾ]_Z'_I>HI 6FAR+=I}a̰W}K>ZB/bRƊZKk ^v 1 mHHЂ m~YG A!yzMIMX_Svqot0!4$"*'Sj~ykWE܇N QPpܻa9&dˊ͓HmSU$, =~Rz dUsr9FpL5.3'"k&x4re?b1"Rrx#]si¡xy+DE"s \632ӂf+n?o>Wˣmɶ[- 9Jr8+jX%q-t zvLT~h[b;P֙ڧlVAep ]9_hwWaWi*F!JV29?wP~ƹ&md5 UW7yMfd9$ɊDƩ嗜A"qw͇H%qoNQnqLQpG{]dZ,6IVLFjb,AOԂpmf)JWb/9,Vwz/o?J`QRems ?M3s[8/z>Ջ:ryTt @uSR"J׮YJ黂%ѰrErFMS 2HN]vȥuUj- >O_<{a&57a^ꃹ)|/%4$_J*%-ViW:;l(ҿ\̠g[x9c=sr_6h&1ynjO !BzpP!yq ăр\&o5fYt=*QbC_׋(aK(S TTpE<9߭:'ٷ`ancߖi/xT+ Z~ʜR^&eFJ!@r*1C`]Ri Ro?uydR)k0wS)Tn`""j2ÒvD"xD_t(f8vg~"ŠggP)tDsdeBC_M34(KN2u52!6Ŷ3M{vǨWM*V4Dym ЫxbzI݈ K`0#6gY lniV:-f 9B `%6$!y5/rY;DNu<]ȽyA0,)(ђ|' 1z?\NB !Y֖KABޥS 7ţZ4E=#sshYȎǦQGlq6G|CNhm Qj)U  [ﯭu'q7.NRuxY)|X;h,2.Q;n`N9LQg֧mZS̔׎uM=jn[RO?'!`qb ?m{/ Ah-L~ׄc>Ѣ/w m'j:I|Tu2H{Uq N!F}S jӘ+HN`!\yQхHTtç/_&JYw}|t]. mI/~z݂hWA5.*jMwȳNA"kr5 T% (,m{bV&Pt+ # #iQ?q=XZvڙ%Yw J +ͪ`{Džm] xM"'*nޤN ~avV[|uU̷yb#Us]xG5z2>1T?I'1(E%[!y(2>8!73\g\Xߖۀޞ4}\1;/1Ao:=4₥wRHV4ON~~ .ĬLno>-E>e p|7vĥ#Q9ߍ$|wL8F;ªq->WM;w宀[ݯH[?j^#j =rx׍?gʚ9cWaNOE3S$WBT(@l.J56>71@iiaiAFt7Ɗ0;0To+m?-j{jhS7LEz w-2G4ًgG=},ݖ7:SsJF_QL#jEX@V|)EIgzSv^VZ_)jBC=^$޶A;_Esl1 yWYN;IB(hĩfbn$^kfƠ $;1J#{hZ@$"=AeQ|FME7eKf qTܧ W姄&op_4ـF, K<Rߖ%gBR 69mt?oT)Vu8MwKQhIg'%md/9d+01܂GVNC)&3Lu=<OO )VP/|l,`fD~qft( v߽7Zr? +L@)07|]=Cl5;$n5gcSx*r`׉wEh%$%HS(25ZZk{j8¶twD% s~g{)Όă%? j-WTP~*Ó /4/-͋JHrc?]>{-|( 6]\fY001t~`ƁvF;ϸ%Y6}jth+yu7;K¢fb3iOИE M( ="5\9ڈmY!3NA*/;+oM\ٜ6EY/Q;Y4U>7u{U6I5$Cܲ@O&Wt,)'\š.` a5Z@JD9ݠzXDo >b F}a ԏYZk *|Nt.K|E/X#S nހONݔq(?2=GM3$q6ukK^DN>:LĆEN/i9l\=|,mge9hM{ `0H4T`<2x;hf优!EaޮU/Sy0q\V2w9RAxbt #'$=Wb՞kZ1 @Ĺr}"@/Piީ/2 u=o#?;PNm,n{g\j2|܊~uzgůvh"1uwwtmHhX"ܼ*F';"zSTj|$δ\` X!O4WJb?Me^J"+[L| m_jt/=mjWjmU{ )q,q=bs_8}] }5jd*HZ0DnM<~k0d#~ }T0ZxI̒j}GAд@;`uy9񀞸8ǚ~/8i02eRA-{%F~\aɕ۫C^w/0wpmQeըݟ8F`eնph LKD"|NA_S<ôGMB^D1j6h?OÔ_'Qp=ʐ(cFw`K!蛴9T8&3 4#L)zUR_UVBl*L2cN?8#ݚqsbc=~]$aK!"3 jjVcqfsWMaZTG~;VwKJljYL}efۣFG**6+|_ɣ Rd,a<.ˁB8[3 ULL@&ιI [v{ +>!\@3סw y V ̴cEH;8BZAg`{0e01$7;:BYs,ù9w"R-qE'Hi9LjLy+A?_Su8ʝ"ZYi<ˀ>],pz؆#yKI ) ={ lnxi> }{tt>tAt`R[p?t1~urpRjh^VA=ʀ>%ֿXru|FxK3N9<$IP*m zK@Xu_*R AgvwP:Z8Dnef3S\̏ Nwy Niq őOtR7ȝmJ.؛(ڻ -jUt7GTv:.6d7뇞h׸ɉM\7cSJ+n>IWphоUHF`Ĉ*d/ y)nl<0(bѼQUZh!qnOmA64!3Y}tWb!;+'PC"ykG Z8ɯkOt!' ]jR1PtVCr-˰*8NݧhU6E0USS;٩WL]ZѴ{ՆqzԱn}) >Y^a(#3Yfy$$dd<\H(sztTn׈̝F\ aT6$<;GH<c gMEIh4`,vQIn< E4|Luk>fdg;1Q1dtSLEefHav,CuO.g4×0b6Gb.woc{my,ˆ5ٰѻ^6;ؐx@EqLs]f#pP)y{""vԌo Op7V|Oc82nw>d4YP=jTQ}3{j~"xO4x Ԗ6k f0vtm(q}jEK>y"fgQp QyИFYo\};BL 2,ׇáɪ~Tm$€:Z/-tV%"y~nU#.Э.nCRpߌ^٦9m.OP WżptKT!5q555b"ңbSؗ^1d$b=3);cԿw%M 8=oTXR&?< $&eAj.4RxF@;l(yeAm?C1_I|NeF/[XyU uJĘlG1!PKEv$ėsnZWg&UV [=poBOWmj0