sssd-tools-1.11.6-30.el6$>__[ad$>8Q ?Pd   A .LRX4(4 4 4 4 4 4444777(8K9 $K:]KG=4H>\4I?,4X?Y?\?4]@4^D bE0dEeEfElEtE4uF4vGwH4xIt4yJDPCsssd-tools1.11.630.el6Userspace tools for use with the SSSDProvides userspace tools for manipulating users, groups, and nested groups in SSSD when using id_provider = local in /etc/sssd/sssd.conf. Also provides several other administrative tools: * sss_debuglevel to change the debug level on the fly * sss_seed which pre-creates a user entry for use in kickstarts * sss_obfuscate for generating an obfuscated LDAP passwordT?c6b8.bsys.dev.centos.orgKCentOSGPLv3+CentOS BuildSystem Applications/Systemhttp://fedorahosted.org/sssd/linuxi686HllT ,lK!hq' Q:)qA(;Ch5$gA큤T?ǦT?ǦT?ǦT?ǦT?ǦT?ǡT?ǦT?ǦT?ǦT?ǦT?SET?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǞT?ǟT?ǟT?ǟT?ǟT?ǟT?ǟT?ǟT?ǟT?ǟT?ǟT?ǞT?ǞT?Ǟ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-1.11.6-30.el6.src.rpmsssd-toolssssd-tools(x86-32)@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@   @ /usr/bin/pythonlibbasicobjects.so.0libc.so.6libc.so.6(GLIBC_2.0)libc.so.6(GLIBC_2.1)libc.so.6(GLIBC_2.2)libc.so.6(GLIBC_2.3)libc.so.6(GLIBC_2.3.4)libc.so.6(GLIBC_2.4)libc.so.6(GLIBC_2.6)libc.so.6(GLIBC_2.8)libcollection.so.4libdbus-1.so.3libdhash.so.1libdhash.so.1(DHASH_0.4.3)libdl.so.2libglib-2.0.so.0libini_config.so.5liblber-2.4.so.2libldap-2.4.so.2libldb.so.1libldb.so.1(LDB_0.9.10)libnspr4.solibnss3.solibnssutil3.solibpcre.so.0libplc4.solibplds4.solibpopt.so.0libpopt.so.0(LIBPOPT_0)libpthread.so.0libpthread.so.0(GLIBC_2.0)libpthread.so.0(GLIBC_2.12)libpthread.so.0(GLIBC_2.2)libref_array.so.1librt.so.1libselinux.so.1libsemanage.so.1libsemanage.so.1(LIBSEMANAGE_1.0)libsmime3.solibssl3.solibsss_child.solibsss_crypt.solibsss_debug.solibsss_util.solibtalloc.so.2libtalloc.so.2(TALLOC_2.0.2)libtdb.so.1libtevent.so.0rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rtld(GNU_HASH)sssd-commonrpmlib(PayloadIsXz)3.0.4-14.6.0-14.0-11.11.6-30.el65.2-14.8.0TTT@SvSvSvS%@S0S<@S<@S<@SSSSSSS/S/S;@SFS@S@S@S@S@S@Si@S@SSS!@SsZSpSNpS 4@S 4@RRRRRRfhRD!R1R%@R @R @RR|R|R|R|R|RRRRRRRRRRRRR@R@R@R@R@R@R@R@R@R@Q@Q@QQ*@Q?@QQvwQkQIQ5@Q0@Q']Q @PPPP@P@P@P-P@P@P@PDPDPDPDP[PPPPP@P@P@P@PPPPPPPP @P @P @P @P @P @Pf@PPPPP @P @P @P @P@P@P@PPPPPPPP@P@P@PpPpPpP@P@P@P@P@P@P@PP@PP@P@P@P@P@PPXPP{P{P{Pz@PqnPl(PaP`K@P#@Oĺ@O"O"OOO@OO~O@OOO@O@Ou@Ou@Oc+@O]@OYOOdON@OLOLOLOLOLO;@O5O1@ObN@NNNN@NNNj@NN$@N$@NN@N@Nx@Nm@Ng\N[@NTN?N:N:N:NNN|@M{@M{@Mߒ@M@M۝M۝M@MM@M@M3@MM>M>M@MM@M@Mx@MM=M=MwkMwkMv@MtMtMc@Mc@MbSM_MQ0@MJMGMA^@MA^@MA^@M.@M9L!L@L@L@L@LNLNL@L@LA@L@Lk@LYV@LRLI@L7@L(L_LLGKj@KK@KK@KK[K@KK~}@K]KY@KO@KKK/c@K+nK"4@KJJ@JJJkJJ@JJp9JlE@J?r@J0J,@IcIcIzI)@I)@I)@IV@IV@I@I@III@Jakub Hrozek - 1.11.6-30Jakub Hrozek - 1.11.6-29Jakub Hrozek - 1.11.6-28Jakub Hrozek - 1.11.6-27Jakub Hrozek - 1.11.6-26Jakub Hrozek - 1.11.6-25Jakub Hrozek - 1.11.6-24Jakub Hrozek - 1.11.6-23Jakub Hrozek - 1.11.6-22Jakub Hrozek - 1.11.6-21Jakub Hrozek - 1.11.6-20Jakub Hrozek - 1.11.6-19Jakub Hrozek - 1.11.6-18Jakub Hrozek - 1.11.6-17Jakub Hrozek - 1.11.6-16Jakub Hrozek - 1.11.6-15Jakub Hrozek - 1.11.6-14Jakub Hrozek - 1.11.6-13Jakub Hrozek - 1.11.6-12Jakub Hrozek - 1.11.6-11Jakub Hrozek - 1.11.6-10Jakub Hrozek - 1.11.6-9Jakub Hrozek - 1.11.6-8Jakub Hrozek - 1.11.6-7Jakub Hrozek - 1.11.6-6Jakub Hrozek - 1.11.6-5Jakub Hrozek - 1.11.6-4Jakub Hrozek - 1.11.6-3Jakub Hrozek - 1.11.6-2Jakub Hrozek - 1.11.6-1Jakub Hrozek - 1.11.5.1-4Jakub Hrozek - 1.11.5.1-3Jakub Hrozek - 1.11.5.1-2Jakub Hrozek - 1.11.5.1-1Jakub Hrozek - 1.9.2-134Jakub Hrozek - 1.9.2-133Jakub Hrozek - 1.9.2-132Jakub Hrozek - 1.9.2-131Jakub Hrozek - 1.9.2-130Jakub Hrozek - 1.9.2-129Jakub Hrozek - 1.9.2-128Jakub Hrozek - 1.9.2-127Jakub Hrozek - 1.9.2-126Jakub Hrozek - 1.9.2-125Jakub Hrozek - 1.9.2-124Jakub Hrozek - 1.9.2-123Jakub Hrozek - 1.9.2-122Jakub Hrozek - 1.9.2-121Jakub Hrozek - 1.9.2-120Jakub Hrozek - 1.9.2-119Jakub Hrozek - 1.9.2-118Jakub Hrozek - 1.9.2-117Jakub Hrozek - 1.9.2-116Jakub Hrozek - 1.9.2-115Jakub Hrozek - 1.9.2-114Jakub Hrozek - 1.9.2-113Jakub Hrozek - 1.9.2-112Jakub Hrozek - 1.9.2-111Jakub Hrozek - 1.9.2-110Jakub Hrozek - 1.9.2-109Jakub Hrozek - 1.9.2-108Jakub Hrozek - 1.9.2-107Jakub Hrozek - 1.9.2-106Jakub Hrozek - 1.9.2-105Jakub Hrozek - 1.9.2-104Jakub Hrozek - 1.9.2-103Jakub Hrozek - 1.9.2-102Jakub Hrozek - 1.9.2-101Jakub Hrozek - 1.9.2-100Jakub Hrozek - 1.9.2-99Jakub Hrozek - 1.9.2-98Jakub Hrozek - 1.9.2-97Jakub Hrozek - 1.9.2-96Jakub Hrozek - 1.9.2-95Jakub Hrozek - 1.9.2-94Jakub Hrozek - 1.9.2-93Jakub Hrozek - 1.9.2-92Jakub Hrozek - 1.9.2-91Jakub Hrozek - 1.9.2-90Jakub Hrozek - 1.9.2-89Jakub Hrozek - 1.9.2-88Jakub Hrozek - 1.9.2-87Jakub Hrozek - 1.9.2-86Jakub Hrozek - 1.9.2-85Jakub Hrozek - 1.9.2-84Jakub Hrozek - 1.9.2-83Jakub Hrozek - 1.9.2-82Jakub Hrozek - 1.9.2-81Jakub Hrozek - 1.9.2-80Jakub Hrozek - 1.9.2-79Jakub Hrozek - 1.9.2-78Jakub Hrozek - 1.9.2-77Jakub Hrozek - 1.9.2-76Jakub Hrozek - 1.9.2-75Jakub Hrozek - 1.9.2-74Jakub Hrozek - 1.9.2-73Jakub Hrozek - 1.9.2-72Jakub Hrozek - 1.9.2-71Jakub Hrozek - 1.9.2-70Jakub Hrozek - 1.9.2-69Jakub Hrozek - 1.9.2-68Jakub Hrozek - 1.9.2-67Jakub Hrozek - 1.9.2-66Jakub Hrozek - 1.9.2-65Jakub Hrozek - 1.9.2-64Jakub Hrozek - 1.9.2-63Jakub Hrozek - 1.9.2-62Jakub Hrozek - 1.9.2-61Jakub Hrozek - 1.9.2-60Jakub Hrozek - 1.9.2-59Jakub Hrozek - 1.9.2-58Jakub Hrozek - 1.9.2-57Jakub Hrozek - 1.9.2-56Jakub Hrozek - 1.9.2-55Jakub Hrozek - 1.9.2-54Jakub Hrozek - 1.9.2-53Jakub Hrozek - 1.9.2-52Jakub Hrozek - 1.9.2-51Jakub Hrozek - 1.9.2-50Jakub Hrozek - 1.9.2-49Jakub Hrozek - 1.9.2-48Jakub Hrozek - 1.9.2-47Jakub Hrozek - 1.9.2-46Jakub Hrozek - 1.9.2-45Jakub Hrozek - 1.9.2-44Jakub Hrozek - 1.9.2-43Jakub Hrozek - 1.9.2-42Jakub Hrozek - 1.9.2-41Jakub Hrozek - 1.9.2-40Jakub Hrozek - 1.9.2-39Jakub Hrozek - 1.9.2-38Jakub Hrozek - 1.9.2-37Jakub Hrozek - 1.9.2-36Jakub Hrozek - 1.9.2-35Jakub Hrozek - 1.9.2-34Jakub Hrozek - 1.9.2-33Jakub Hrozek - 1.9.2-32Jakub Hrozek - 1.9.2-31Jakub Hrozek - 1.9.2-30Jakub Hrozek - 1.9.2-29Jakub Hrozek - 1.9.2-28Jakub Hrozek - 1.9.2-27Jakub Hrozek - 1.9.2-26Jakub Hrozek - 1.9.2-25Jakub Hrozek - 1.9.2-24Jakub Hrozek - 1.9.2-23Jakub Hrozek - 1.9.2-22Jakub Hrozek - 1.9.2-21Jakub Hrozek - 1.9.2-20Jakub Hrozek - 1.9.2-20Jakub Hrozek - 1.9.2-19Jakub Hrozek - 1.9.2-18Jakub Hrozek - 1.9.2-17Jakub Hrozek - 1.9.2-16Jakub Hrozek - 1.9.2-15Jakub Hrozek - 1.9.2-14Jakub Hrozek - 1.9.2-13Jakub Hrozek - 1.9.2-12Jakub Hrozek - 1.9.2-11Jakub Hrozek - 1.9.2-10Jakub Hrozek - 1.9.2-9Jakub Hrozek - 1.9.2-8Jakub Hrozek - 1.9.2-7Jakub Hrozek - 1.9.2-6Jakub Hrozek - 1.9.2-5Jakub Hrozek - 1.9.2-4Jakub Hrozek - 1.9.2-3Jakub Hrozek - 1.9.2-2Jakub Hrozek - 1.9.2-1Jakub Hrozek - 1.9.1-1Jakub Hrozek - 1.9.0-3Jakub Hrozek - 1.9.0-2Jakub Hrozek - 1.9.0-1.rc1Jakub Hrozek - 1.8.0-33Stephen Gallagher - 1.8.0-32Stephen Gallagher - 1.8.0-31Stephen Gallagher - 1.8.0-30Stephen Gallagher - 1.8.0-29Stephen Gallagher - 1.8.0-28Stephen Gallagher - 1.8.0-27Stephen Gallagher - 1.8.0-26Stephen Gallagher - 1.8.0-25Stephen Gallagher - 1.8.0-24Stephen Gallagher - 1.8.0-23Stephen Gallagher - 1.8.0-22Stephen Gallagher - 1.8.0-21Stephen Gallagher - 1.8.0-20Stephen Gallagher - 1.8.0-18Stephen Gallagher - 1.8.0-17Stephen Gallagher - 1.8.0-15Stephen Gallagher - 1.8.0-12Stephen Gallagher - 1.8.0-11Stephen Gallagher - 1.8.0-10Stephen Gallagher - 1.8.0-9Stephen Gallagher - 1.8.0-8Stephen Gallagher - 1.8.0-7Stephen Gallagher - 1.8.0-6Stephen Gallagher - 1.8.0-5Stephen Gallagher - 1.8.0-4.beta3Stephen Gallagher - 1.8.0-3.beta2Stephen Gallagher - 1.8.0-2.beta2Stephen Gallagher - 1.5.1-68Stephen Gallagher - 1.5.1-67Stephen Gallagher - 1.5.1-66Stephen Gallagher - 1.5.1-65Stephen Gallagher - 1.5.1-64Stephen Gallagher - 1.5.1-63Stephen Gallagher - 1.5.1-62Stephen Gallagher - 1.5.1-61Stephen Gallagher - 1.5.1-60Stephen Gallagher - 1.5.1-59Stephen Gallagher - 1.5.1-58Stephen Gallagher - 1.5.1-57Stephen Gallagher - 1.5.1-56Stephen Gallagher - 1.5.1-55Stephen Gallagher - 1.5.1-53Stephen Gallagher - 1.5.1-52Stephen Gallagher - 1.5.1-51Stephen Gallagher - 1.5.1-50Stephen Gallagher - 1.5.1-49Stephen Gallagher - 1.5.1-48Stephen Gallagher - 1.5.1-47Stephen Gallagher - 1.5.1-46Stephen Gallagher - 1.5.1-45Stephen Gallagher - 1.5.1-44Stephen Gallagher - 1.5.1-43Stephen Gallagher - 1.5.1-42Stephen Gallagher - 1.5.1-41Stephen Gallagher - 1.5.1-40Stephen Gallagher - 1.5.1-39Stephen Gallagher - 1.5.1-38Stephen Gallagher - 1.5.1-37Stephen Gallagher - 1.5.1-36Stephen Gallagher - 1.5.1-35Stephen Gallagher - 1.5.1-34Stephen Gallagher - 1.5.1-33Stephen Gallagher - 1.5.1-32Stephen Gallagher - 1.5.1-31Stephen Gallagher - 1.5.1-30Stephen Gallagher - 1.5.1-29Stephen Gallagher - 1.5.1-28Stephen Gallagher - 1.5.1-27Stephen Gallagher - 1.5.1-26Stephen Gallagher - 1.5.1-25Stephen Gallagher - 1.5.1-24Stephen Gallagher - 1.5.1-23Stephen Gallagher - 1.5.1-21Stephen Gallagher - 1.5.1-20Stephen Gallagher - 1.5.1-17Stephen Gallagher - 1.5.1-16Stephen Gallagher - 1.5.1-15Stephen Gallagher - 1.5.1-14Stephen Gallagher - 1.5.1-13Stephen Gallagher - 1.5.1-12Stephen Gallagher - 1.5.1-11Stephen Gallagher - 1.5.1-10Stephen Gallagher - 1.5.1-9Stephen Gallagher - 1.5.1-8Stephen Gallagher - 1.5.1-7Stephen Gallagher - 1.5.1-6Stephen Gallagher - 1.5.1-5Stephen Gallagher - 1.5.1-4Stephen Gallagher - 1.5.1-3Stephen Gallagher - 1.5.1-2Stephen Gallagher - 1.5.1-1Stephen Gallagher - 1.5.0-2Stephen Gallagher - 1.5.0-1Stephen Gallagher - 1.2.1-28.4Stephen Gallagher - 1.2.1-36Stephen Gallagher - 1.2.1-35Stephen Gallagher - 1.2.1-28.3Stephen Gallagher - 1.2.1-34Stephen Gallagher - 1.2.1-28.2Stephen Gallagher - 1.2.1-33Stephen Gallagher - 1.2.1-28.1Stephen Gallagher - 1.2.1-32Stephen Gallagher - 1.2.1-29Stephen Gallagher - 1.2.1-28Stephen Gallagher - 1.2.1-27Stephen Gallagher - 1.2.1-26Stephen Gallagher - 1.2.1-23Stephen Gallagher - 1.2.1-21Stephen Gallagher - 1.2.1-20Stephen Gallagher - 1.2.1-19Stephen Gallagher - 1.2.1-15Stephen Gallagher - 1.2.0-14Stephen Gallagher - 1.2.0-13Stephen Gallagher - 1.2.0-12Stephen Gallagher - 1.1.92-11.1Stephen Gallagher - 1.1.92-11Stephen Gallagher - 1.1.91-10Simo Sorce - 1.1.1-3Stephen Gallagher - 1.1.1-1Stephen Gallagher - 1.1.0-2Stephen Gallagher - 1.1.0-1.pre20100317git0ea7f19Stephen Gallagehr - 1.0.5-2Stephen Gallagher - 1.0.5-1Stephen Gallagher - 1.0.4-1Stephen Gallagher - 1.0.3-1Stephen Gallagher - 1.0.2-1Stephen Gallagher - 1.0.1-1Stephen Gallagher - 1.0.0-2Stephen Gallagher - 1.0.0-1Stephen Gallagher - 0.99.1-1Stephen Gallagher - 0.99.0-1Stephen Gallagher - 0.7.1-1Stephen Gallagher - 0.7.0-2Stephen Gallagher - 0.7.0-1Stephen Gallagher - 0.6.1-2Stephen Gallagher - 0.6.1-1Stephen Gallagher - 0.6.0-1Sumit Bose - 0.6.0-0Simo Sorce - 0.5.0-0Jakub Hrozek - 0.4.1-4Fedora Release Engineering - 0.4.1-3Simo Sorce - 0.4.1-2Simo Sorce - 0.4.1-1Simo Sorce - 0.4.1-0Simo Sorce - 0.3.2-2Jakub Hrozek - 0.3.2-1Simo Sorce - 0.3.1-2Simo Sorce - 0.3.1-1Simo Sorce - 0.3.0-2Simo Sorce - 0.3.0-1Simo Sorce - 0.2.1-1Simo Sorce - 0.2.0-1Jakub Hrozek - 0.1.0-5.20090309git691c9b3Jakub Hrozek - 0.1.0-4Sumit Bose - 0.1.0-3Jakub Hrozek - 0.1.0-2Stephen Gallagher - 0.1.0-1- Resolves: rhbz#1139044 - RHEL6.6 ipa user private group not found- Resolves: rhbz#1103487 - CVE-2014-0249 - sssd: incorrect expansion of group membership when encountering a non-POSIX group- Resolves: rhbz#1125187 - simple_allow_groups does not lookup groups from other AD domains- Resolves: rhbz#1127270 - sssd connect to ipa-server is long- Resolves: rhbz#1130017 - Saving group membership fails if provider is AD, POSIX attributes are used and primary group contains the user as a member- Resolves: rhbz#1111528 - Expired shadow policy user(shadowLastChange=0) is not prompted for password change- Resolves: rhbz#1132361 - use-after-free in dyndns code- Resolves: rhbz#1099290: RFE: Be able to configure sssd to honor openldap account lock to restrict access via ssh key- Use the correct sudo iterator - Related: rhbz#1118336 - sudo: invalid sudoHost filter with asterisk- Add notes about offline mode to sssd.conf - Related: rhbz#1110226 - Requests queued during transition from offline to online mode- Resolves: rhbz#1127278 - Auth fails when space in username is replaced with character set by override_default_whitespace- Resolves: rhbz#1127757 - sssd can't retrieve sudo rules when using the "default_domain_suffix" option- Resolves: rhbz#1127265 - Problems with tokengroups and ldap_group_search_base- Resolves: rhbz#1126636 - RHEL6.6 sssd not running after upgrade- Resolves: rhbz#1128612 - IFP: FQDN lookups are broken- Resolves: rhbz#1118336 - sudo: invalid sudoHost filter with asterisk- Resolves: rhbz#1110226 - Requests queued during transition from offline to online mode- Resolves: rhbz#1122873 - Failover does not always happen from SRV to hostname resolution(via /etc/hosts) - Remove spurious systemctl call on %postun- Resolves: rhbz#1111317 - [RFE] Add option for sssd to replace space with specified character in LDAP group- Resolves: rhbz#1109188 - dereferencing control failure against openldap server- Resolves: rhbz#1084532 - sssd_sudo process segfaults- Resolves: rhbz#1122158 - ad: group membership is empty when id mapping is off and tokengroups are enabled- Resolves: rhbz#1118541 - Floating point exception using ldap- Resolves: rhbz#1042922 - [RFE] Add fallback to sudoRunAs when sudoRunAsUser is not defined and no ldap_sudorule_runasuser mapping has been defined in SSSD- Resolves: rhbz#1120508 - tokengroups do not work with id_provider=ldap- Fix potential NULL dereference in IFP code - Related: rhbz#1110369 - sssd is started before messagebus, making sssd-ifp fail- BuildRequire the latest libini_config - Related: #1051164 - Rebase SSSD to 1.11+ in RHEL6- Resolves: rhbz#1110369 - sssd is started before messagebus, making sssd-ifp fail- Resolves: rhbz#1104145 - public key validator is too strict and does not allow newlines anywhere in the public key string, not even at the end- Rebase to 1.11.6 - Resolves: #1051164 - Rebase SSSD to 1.11+ in RHEL6- Rebuild against new ding-libs - Related: #1051164 - Rebase SSSD to 1.11+ in RHEL6- Backport the InfoPipe patches needed for Sat6 integration - Related: #1051164 - Rebase SSSD to 1.11+ in RHEL6- Resolves: #1085412 - SSSD Crashes when storage experiences high latency- Resolves: #1051164 - Rebase SSSD to 1.11+ in RHEL6Resolves: #1036168 - sssd can't retrieve auto.master when using the "default_domain_suffix"- Resolves: #1065534 - SSSD pam module accepts usernames with leading spaces- Resolves: #1038098 - sssd_nss grows memory footprint when netgroups are requested- Allow combination of proxy id backend and LDAP auth backend - Resolves: #1025813 - SSSD: Allow for custom attributes in RDN when using id_provider = proxy- Inherit UID limits for subdomains - Resolves: #1020905 - Creating system accounts on a IdM client takes up to 10 minutes when AD trust is configured in the IdM.- Do not crash when LDAP disconnects while a search is still in progress - Resolves: #1019979 - sssd_be segfault when authenticating against active directory- More upstream fixes to prevent memcache crashes - Related: #997406 - sssd_nss core dumps under load- Resolves: #1002929 - sssd_be segfaults if IPA dynamic DNS update times out- Make IPA SELinux provider aware of subdomain users - A better version of already committed patch - Resolves: #954342 - In IPA AD trust setup, the sssd logs throws 'sysdb_search_user_by_name failed' error when AD user tries to login via ipa client.- Resolves: #997406 - sssd_nss core dumps under load - Resolves: #984814 - sssd_nss terminated with segmentation fault- Resolves: #1002161 - large number of sudo rules results in error - Unable to create response: Invalid argument- Silence restorecon on clean install - Resolves: #987456 - RHEL6 sssd upgrade restorecon workaround for /var/lib/sss/mc context- Make IPA SELinux provider aware of subdomain users - Resolves: #954342 - In IPA AD trust setup, the sssd logs throws 'sysdb_search_user_by_name failed' error when AD user tries to login via ipa client.- Print password complexity hint when password change fails with constraint violation - Related: #983028 - passwd returns "Authentication token manipulation error" when entering wrong current password- Resolves: #983028 - passwd returns "Authentication token manipulation error" when entering wrong current password- Resolves: #948830 - sssd do too many disk writes causing delay in "getent netgroup allmachines-netgroup" nested netgroups.- Resolves: #984814 - sssd_nss terminated with segmentation fault- Resolves: #966757 - SSSD failover doesn't work if the first DNS server in resolv.conf is unavailable- Resolves: #963235 - sssd_be crashing with nested ldap groups- Apply a forgotten dependency for patch #254 - Related: #916997 - getgrnam / getgrgid for large user groups is too slow due to range retrieval functionality - Add two fixes for better handling of faulty SRV processing - Related: #954275 - sssd fails connect to IPA server during boot when spanning tree is enabled in network router. - Remove enumerate=true from example in man page - Related: #988381 - clarify the disadvantages of enumeration in sssd.conf- Resolves: #914433 - sssd pam write_selinux_login_file creating the temp file for SELinux data failed- Resolves: #916997 - getgrnam / getgrgid for large user groups is too slow due to range retrieval functionality- Resolves: #918394 - sssd etas 99% CPU and runs out of file descriptors when clearing cache- Resolves: #924113 - man sssd-sudo has wrong title- Resolves: #924397 - document what does access_provider=ad do- Use permissive control when adding ghost users - Resolves: #928797 - cyclic group memberships may not work depending on order of operations- Set correct state of SRV servers on resolving error - Resolves: #954275 - sssd fails connect to IPA server during boot when spanning tree is enabled in network router.- Resolves: #954323 - SSSD doesn't display warning for last grace login.- Format patch to configure sysv script differently - RHEL-6 patch(1) apparently doesn't like the output of git format-patch -M -C and doesn't properly copy files on renames - Resolves: #971435 - Enhance sssd init script so that it would source a configuration.- Resolves: #973345 - SSSD service randomly dies- Resolves: #971435 - Enhance sssd init script so that it would source a configuration- Resolves: #961356 - SUDO is not working for users from trusted AD domain- Resolves: #970519 - [RFE] Add support for suppressing group members- Resolves: #976273 - [RFE] Add a new override_homedir expansion for the "original value"- Resolves: #978966 - sudoHost mismatch response is incorrect sometimes- Clarify the min_id/max_id limits further - Resolves: #978994 - SSSD filter out ldap user/group if uid/gid is zero- Resolves: #979046 - sssd_be goes to 99% CPU and causes significant login delays when client is under load- Resolves: #986379 - sss_cache -N/-n should invalidate the hash table in sssd_nss- Resolves: #988525 - sssd fails instead of skipping when a sudo ldap filter returns entries with multiple CNs- Mention that enumeration should be discouraged - Resolves: #988381 - clarify the disadvantages of enumeration in sssd.conf- Call restorecon on memcache files to force the right context on upgrades - Resolves: #987456 - RHEL6 sssd upgrade restorecon workaround for /var/lib/sss/mc context- Resolves: #987479 - libsss_sudo should depend on sudo package with sssd support- Resolves: #951086 - sssd_pam segfaults if sssd_be is stuck- Resolves: #967636 - SSSD frequently fails to return automount maps from LDAP- Resolves: #953165 - Enabling enumeration causes sssd_be process to utilize 100% of the CPU- Resolves: #906398 - sssd_be crashes sometimes- Resolves: #950874: Simple access control always denies uppercased users in case insensitive domain- Resolves: #921454: Resolve local group members in LDAP groups- Resolves: rhbz#911299 - sssd: simple access provider flaw prevents intended ACL use when client to an AD provider- Fix pwd_expiration_warning=0 - Resolves: rhbz#911329 - pwd_expiration_warning has wrong default for Kerberos- Resolves: rhbz#911329 - pwd_expiration_warning has wrong default for Kerberos- Resolves: rhbz#872827 - Serious performance regression in sssd- Resolves: rhbz#888614 - Failure in memberof can lead to failed database update- Resolves: rhbz#903078 - TOCTOU race conditions by copying and removing directory trees- Resolves: rhbz#903078 - Out-of-bounds read flaws in autofs and ssh services responders- Resolves: rhbz#902716 - Rule mismatch isn't noticed before smart refresh on ppc64 and s390x- Resolves: rhbz#896476 - SSSD should warn when pam_pwd_expiration_warning value is higher than passwordWarning LDAP attribute.- Resolves: rhbz#902436 - possible segfault when backend callback is removed- Resolves: rhbz#895132 - Modifications using sss_usermod tool are not reflected in memory cache- Resolves: rhbz#894302 - sssd fails to update to changes on autofs maps- Resolves: rhbz894381 - memory cache is not updated after user is deleted from ldb cache- Resolves: rhbz895615 - ipa-client-automount: autofs failed in s390x and ppc64 platform- Resolves: rhbz#894997 - sssd_be crashes looking up members with groups outside the nesting limit- Resolves: rhbz#895132 - Modifications using sss_usermod tool are not reflected in memory cache- Resolves: rhbz#894428 - wrong filter for autofs maps in sss_cache- Resolves: rhbz#894738 - Failover to ldap_chpass_backup_uri doesn't work- Resolves: rhbz#887961 - AD provider: getgrgid removes nested group memberships- Resolves: rhbz#878583 - IPA Trust does not show secondary groups for AD Users for commands like id and getent- Resolves: rhbz#874579 - sssd caching not working as expected for selinux usermap contexts- Resolves: rhbz#892197 - Incorrect principal searched for in keytab- Resolves: rhbz#891356 - Smart refresh doesn't notice "defaults" addition with OpenLDAP- Resolves: rhbz#878419 - sss_userdel doesn't remove entries from in-memory cache- Resolves: rhbz#886848 - user id lookup fails for case sensitive users using proxy provider- Resolves: rhbz#890520 - Failover to krb5_backup_kpasswd doesn't work- Resolves: rhbz#874618 - sss_cache: fqdn not accepted- Resolves: rhbz#889182 - crash in memory cache- Resolves: rhbz#889168 - krb5 ticket renewal does not read the renewable tickets from cache- Resolves: rhbz#886091 - Disallow root SSH public key authentication - Add default section to switch statement (Related: rhbz#884666)- Resolves: rhbz#886038 - sssd components seem to mishandle sighup- Resolves: rhbz#888800 - Memory leak in new memcache initgr cleanup function- Resolves: rhbz#888614 - Failure in memberof can lead to failed database update- Resolves: rhbz#885078 - sssd_nss crashes during enumeration if the enumeration is taking too long- Related: rhbz#875851 - sysdb upgrade failed converting db to 0.11 - Include more debugging during the sysdb upgrade- Resolves: rhbz#877972 - ldap_sasl_authid no longer accepts full principal- Resolves: rhbz#870045 - always reread the master map from LDAP - Resolves: rhbz#876531 - sss_cache does not work for automount maps- Resolves: rhbz#884666 - sudo: if first full refresh fails, schedule another first full refresh- Resolves: rhbz#880956 - Primary server status is not always reset after failover to backup server happened - Silence a compilation warning in the memberof plugin (Related: rhbz#877974) - Do not steal resolv result on error (Related: rhbz#882076)- Resolves: rhbz#882923 - Negative cache timeout is not working for proxy provider- Resolves: rhbz#884600 - ldap_chpass_uri failover fails on using same hostname- Resolves: rhbz#858345 - pam_sss(crond:account): Request to sssd failed. Timer expired- Resolves: rhbz#878419 - sss_userdel doesn't remove entries from in-memory cache- Resolves: rhbz#880176 - memberUid required for primary groups to match sudo rule- Resolves: rhbz#885105 - sudo denies access with disabled ldap_sudo_use_host_filter- Resolves: rhbz#883408 - Option ldap_sudo_include_regexp named incorrectly- Resolves: rhbz#880546 - krb5_kpasswd failover doesn't work - Fix the error handler in sss_mc_create_file (Related: #789507)- Resolves: rhbz#882221 - Offline sudo denies access with expired entry_cache_timeout - Fix several bugs found by Coverity and clang: - Check the return value of diff_gid_lists (Related: #869071) - Move misplaced sysdb assignment (Related: #827606) - Remove dead assignment (Related: #827606) - Fix copy-n-paste error in the memberof plugin (Related: #877974)- Resolves: rhbz#882923 - Negative cache timeout is not working for proxy provider - Link sss_ssh_authorizedkeys and sss_ssh_knowhostsproxy with the client libraries (Related: #870060) - Move sss_ssh_knownhosts documentation to the correct section (Related: #870060)- Resolves: rhbz#884480 - user is not removed from group membership during initgroups - Fix incorrect synchronization in mmap cache (Related: #789507)- Resolves: rhbz#883336 - sssd crashes during start if id_provider is not mentioned- Resolves: rhbz#882290 - arithmetic bug in the SSSD causes netgroup midpoint refresh to be always set to 10 seconds- Resolves: rhbz#877974 - updating top-level group does not reflect ghost members correctly - Resolves: rhbz#880159 - delete operation is not implemented for ghost users- Resolves: rhbz#881773 - mmap cache needs update after db changes- Resolves: rhbz#875677 - password expiry warning message doesn't appear during auth - Fix potential NULL dereference when skipping built-in AD groups (Related: rhbz#874616) - Add missing parameter to DEBUG message (Related: rhbz#829742)- Resolves: rhbz#882076 - SSSD crashes when c-ares returns success but an empty hostent during the DNS update - Do not version libsss_sudo, it's not supposed to be linked against, but dlopened (Related: rhbz#761573)- Resolves: rhbz#880140 - sssd hangs at startup with broken configurations- Resolves: rhbz#878420 - SIGSEGV in IPA provider when ldap_sasl_authid is not set- Resolves: rhbz#874616 - Silence the DEBUG messages when ID mapping code skips a built-in group- Resolves: rhbz#824244 - sssd does not warn into sssd.log for broken configurations- Resolves: rhbz#874673 - user id lookup fails using proxy provider - Fix a possibly uninitialized variable in the LDAP provider - Related: rhbz#877130- Resolves: rhbz#878262 - ipa password auth failing for user principal name when shorter than IPA Realm name - Resolves: rhbz#871843 - Nested groups are not retrieved appropriately from cache- Resolves: rhbz#870238 - IPA client cannot change AD Trusted User password- Resolves: rhbz#877972 - ldap_sasl_authid no longer accepts full principal- Resolves: rhbz#861075 - SSSD_NSS failure to gracefully restart after sbus failure- Resolves: rhbz#877354 - ldap_connection_expire_timeout doesn't expire ldap connections- Related: rhbz#877126 - Bump the release tag- Resolves: rhbz#877126 - subdomains code does not save the proper user/group name- Resolves: rhbz#877130 - LDAP provider fails to save empty groups - Related: rhbz#869466 - check the return value of waitpid()- Resolves: rhbz#870039 - sss_cache says 'Wrong DB version'- Resolves: rhbz#875740 - "defaults" entry ignored- Resolves: rhbz#875738 - offline authentication failure always returns System Error- Resolves: rhbz#875851 - sysdb upgrade failed converting db to 0.11- Resolves: rhbz#870278 - ipa client setup should configure host properly in a trust is in place- Resolves: rhbz#871160 - sudo failing for ad trusted user in IPA environment- Resolves: rhbz#870278 - ipa client setup should configure host properly in a trust is in place- Resolves: rhbz#869678 - sssd not granting access for AD trusted user in HBAC rule- Resolves: rhbz#872180 - subdomains: Invalid sub-domain request type - Related: rhbz#867933 - invalidating the memcache with sss_cache doesn't work if the sssd is not running- Resolves: rhbz#873988 - Man page issue to list 'force_timeout' as an option for the [sssd] section- Resolves: rhbz#873032 - Move sss_cache to the main subpackage- Resolves: rhbz#873032 - Move sss_cache to the main subpackage - Resolves: rhbz#829740 - Init script reports complete before sssd is actually working - Resolves: rhbz#869466 - SSSD starts multiple processes due to syntax error in ldap_uri - Resolves: rhbz#870505 - sss_cache: Multiple domains not handled properly - Resolves: rhbz#867933 - invalidating the memcache with sss_cache doesn't work if the sssd is not running - Resolves: rhbz#872110 - User appears twice on looking up a nested group- Resolves: rhbz#871576 - sssd does not resolve group names from AD - Resolves: rhbz#872324 - pam: fd leak when writing the selinux login file in the pam responder - Resolves: rhbz#871424 - authconfig chokes on sssd.conf with chpass_provider directive- Do not send SIGKILL to service right after sending SIGTERM - Resolves: #771975 - Fix the initial sudo smart refresh - Resolves: #869013 - Implement password authentication for users from trusted domains - Resolves: #869071 - LDAP child crashed with a wrong keytab - Resolves: #869150 - The sssd_nss process grows the memory consumption over time - Resolves: #869443- BuildRequire selinux-policy so that selinux login support is built in - Resolves: #867932- Do not segfault if namingContexts contain no values or multiple values - Resolves: rhbz#866542- Fix the "ca" translation of the sssd-simple manual page - Related: rhbz#827606 - Rebase SSSD to 1.9 in 6.4- New upstream release 1.9.2- Rebase to 1.9.1- Require the latest libldb- Rebase to 1.9.0 - Resolves: rhbz#827606 - Rebase SSSD to 1.9 in 6.4- Rebase to 1.9.0 RC1 - Resolves: rhbz#827606 - Rebase SSSD to 1.9 in 6.4 - Bump the selinux-policy version number to pull in required fixes- Resolves: rhbz#840089 - Update the shadowLastChange attribute with days since the Epoch, not seconds- Fix protocol break for services map - Related: rhbz#825028 - Service lookups by port number doesn't work on s390x/ppc64 arches- Resolves: rhbz#825028 - Service lookups by port number doesn't work on s390x/ppc64 arches- Resolves: rhbz#824616 - sssd_nss crashes when configured with use_fully_qualified_names = true- Resolves: rhbz#824062 - sssd_be crashed with SIGSEGV in _tevent_schedule_immediate()- Resolves: rhbz#822236 - SSSD netgroups do not honor entry_cache_nowait_percentage- Resolves: rhbz#820759 - AVC denial seen on sssd upgrade during ipa-client upgrade - Resolves: rhbz#821044 - sss_groupadd no longer detects duplicate GID numbers- Resolves: rhbz#818642 - Auth fails for user with non-default attribute names - Resolves: rhbz#819063 - sssd fails to provide partial data till paged search returns "Size Limit Exceeded" - Resolves: rhbz#820585 - Group enumeration fails in proxy provider- Resolves: rhbz#816616 - group members are now lowercased in case insensitive domains- Resolves: rhbz#805431 - NFS files/folders are mapped to nobody user if NFS top level directory is chowned by a SSSD user- Resolves: rhbz#805924 - SSSD should attempt to get the RootDSE after binding - Resolves: rhbz#814237 - sdap_check_aliases must not error when detects the same user - Resolves: rhbz#812281 - autofs client: map name length used as key length - Related: rhbz#784870 - SSSD fails during autodetection of search bases for new LDAP features - Related: rhbz#814269 - sssd-1.5.1-66.el6_2.3.x86_64 freezes- Fix typo in patch for SSH umask - Related: rhbz#808107 - Coverity revealed memory management defects- Resolves: rhbz#808458 - Authconfig crashes when sets krb realm - Resolves: rhbz#808597 - sssd_nss crashes on request when no back end is running - Resolves: rhbz#808107 - Coverity revealed memory management defects- Related: rhbz#805452 - Unable to lookup user, group, netgroup aliases with case_sensitive=false- Resolves: rhbz#804057 - Initial service lookups having name with uppercase alphabets doesn't work - Resolves: rhbz#804065 - Service lookup using case-sensitive protocol names doesn't work when case_sensitive=false - Resolves: rhbz#805281 - sssd: Uses the wrong key when there a multiple realms in a single keytab - Resolves: rhbz#805452 - Unable to lookup user, group, netgroup aliases with case_sensitive=false - Resolves: rhbz#805918 - Wrong resolv_status might cause crash when name resolution times out - Resolves: rhbz#805431 - NFS files/folders are mapped to nobody user if NFS top level directory is chowned by a SSSD user- Related: rhbz#802207 - getent netgroup hangs when "use_fully_qualified_names = TRUE" in sssd - Resolves: rhbz#801719 - "Error looking up public keys" while ssh to replica using IP address - Resolves: rhbz#803659 - Service lookup shows case sensitive names twice with case_sensitive=false - Resolves: rhbz#803842 - Unable to bind to LDAP server when minssf set - Resolves: rhbz#805034 - accessing an undefined variable might cause crash - Resolves: rhbz#805108 - sss_ssh_knownhostproxy infinite loop hangs SSH login- Update translations - Resolves: rhbz#802372 - Pick up latest translation files for SSSD - Resolves: rhbz#802207 - getent netgroup hangs when "use_fully_qualified_names = TRUE" in sssd - Related: rhbz#801451 - Logging in with ssh pub key should consult authentication authority policies- Resolves: rhbz#801407 - sssd_nss gets hung processing identical search requests - Resolves: rhbz#801451 - Logging in with ssh pub key should consult authentication authority policies - Resolves: rhbz#795562 - Infinite loop checking Kerberos credentials - Resolves: rhbz#798317 - sssd crashes when ipa_hbac_support_srchost is set to true - Resolves: rhbz#799039 - --debug option for sss_debuglevel doesn't work - Resolves: rhbz#799915 - Unable to lookup netgroups with case_sensitive=false - Resolves: rhbz#799929 - Raise limits for max num of files sssd_nss/sssd_pam can use - Resolves: rhbz#799971 - sssd_be crashes on shutdown - Resolves: rhbz#801533 - sssd_be crashes when resolving non-trivial nested group structure - Resolves: rhbz#801368 - Group lookups doesn't return members with proxy provider configured - Resolves: rhbz#801377 - getent returns non-existing netgroup name, when sssd is configured as proxy provider- Do not auto-upgrade debug levels - Tool still available for manual use - Reverts: rhbz#753763 - Provide logging configuration compatibility on SSSD 1.5/1.6 upgrade - Resolves: rhbz#798881 - Install-time warnings - Resolves: rhbz#798774 - IPA provider should assume that ipa_domain is also the dns_discovery_domain - Resolves: rhbz#798655 - Password logins failing due to a process with high UID- Fix explicit requires to use openldap instead of openldap-libs - Related: rhbz#797282 - sssd-1.5.1-66.el6.x86_64 needs openldap >= openldap-2.4.23-20.el6.x86_64- Fix multilib-clean issue due to upgrade script - Remove old copy from the spec file - Related: rhbz#753763 - Provide logging configuration compatibility on SSSD 1.5/1.6 upgrade- Fix multilib-clean issue due to upgrade script - Fix typo in the patch - Related: rhbz#753763 - Provide logging configuration compatibility on SSSD 1.5/1.6 upgrade- Fix multilib-clean issue due to upgrade script - Use a patch and install the script to python_sitelib - Related: rhbz#753763 - Provide logging configuration compatibility on SSSD 1.5/1.6 upgrade- Fix multilib-clean issue due to upgrade script - Related: rhbz#753763 - Provide logging configuration compatibility on SSSD 1.5/1.6 upgrade- Resolves: rhbz#753763 - Provide logging configuration compatibility on SSSD 1.5/1.6 upgrade - Resolves: rhbz#785871 - wrong build dependency on nscd - Resolves: rhbz#785873 - IPA host search base cannot be set - Resolves: rhbz#791208 - Entries lacking a POSIX username value break group lookups - Resolves: rhbz#796307 - Simple Paged Search control needs to be used more sparingly - Resolves: rhbz#797282 - sssd-1.5.1-66.el6.x86_64 needs openldap >= openldap-2.4.23-20.el6.x86_64 - Resolves: rhbz#787035 - ipa - sssd slow response with thousands of user entries - Resolves: rhbz#742509 - [RFE] Add SSSD Tool to purge cache - Resolves: rhbz#772297 - Fails to update if all nisNetgroupTriple or memberNisNetgroup entries are deleted from a netgroup - Resolves: rhbz#783138 - Backend occasionally goes offline under heavy load - Resolves: rhbz#797975 - sssd_be: The requested target is not configured is logged at each login - Resolves: rhbz#735422 - Rebase SSSD to 1.8.0 in RHEL 6.3- Resolves: rhbz#761570 - [RFE] support looking up autofs maps via SSSD - Resolves: rhbz#788979 - sssd crashes during initgroups against a user belonging to nested rfc2307bis group- Handle filtering python Provides in a safer way - Related: rhbz#735422 - Rebase SSSD to 1.8.0 in RHEL 6.3- Related: rhbz#735422 - Rebase SSSD to 1.8.0 in RHEL 6.3 - Resolves: rhbz#786553 - sssd on ppc64 doesn't pull cyrus-sasl-gssapi.ppc as a dependancy - Resolves: rhbz#785909 - --debug-timestamps=1 is not passed to providers - Resolves: rhbz#785908 - ldap_*_search_base doesn't fully limit the group and netgroup search base correctly - Resolves: rhbz#785907 - [RFE] Add support to request canonicalization on krb AS requests - Resolves: rhbz#785905 - [RFE] DEBUG timestamps should offer higher precision - Resolves: rhbz#785904 - [RFE] SSSD should have --version option - Resolves: rhbz#785902 - Errors with empty loginShell and proxy provider - Resolves: rhbz#785898 - Enable midway cache refresh by default - Resolves: rhbz#785888 - sssd returns empty netgroup at a second request for a non-existing netgroup - Resolves: rhbz#785884 - Honour TTL when resolving host names - Resolves: rhbz#785883 - check DNS records before updates - Resolves: rhbz#785881 - List the keytab to pick the princiapl to use instead of guessing - Resolves: rhbz#785880 - debug_level in sssd.conf overrides command-line - Resolves: rhbz#785879 - sss_obfuscate/python config parser modifies config file too much - Resolves: rhbz#785877 - on reconnect we need to detect that a ipa/ds server has been reinitialized - Resolves: rhbz#785741 - sssd.api.conf and sssd.api.d should not be in /etc - Resolves: rhbz#773660 - Kerberos errors should go to syslog - Resolves: rhbz#772163 - Iterator loop reuse cases a tight loop in the native IPA netgroups code - Resolves: rhbz#771706 - sssd_be crashes during auth when there exists UTF source host group in an hbacrule - Resolves: rhbz#771702 - sssd_pam crashes during change password operation against a IPA server - Resolves: rhbz#771361 - case_sensitive function not working as intended for ldap - Resolves: rhbz#768935 - Crash when applying settings - Resolves: rhbz#766941 - The full dyndns update message should be logged into debug logs - Resolves: rhbz#766930 - [RFE] Add a new option to override home directory value - Resolves: rhbz#766913 - [RFE] Add option to select validate and FAST keytab principal name - Resolves: rhbz#766907 - Use [...] for IPv6 addresses in kdc info files - Resolves: rhbz#766904 - [RFE] Create a command line tool to change the debug levels on the fly - Resolves: rhbz#766876 - [RFE] Make HBAC srchost processing optional - Resolves: rhbz#766141 - [RFE] SSSD should support FreeIPA's internal netgroup representation - Resolves: rhbz#761582 - [RFE] Add ldap_sasl_minssf option - Resolves: rhbz#759186 - [abrt] sssd-1.6.3-1.fc16: ping_check: Process /usr/sbin/sssd was killed by signal 11 (SIGSEGV) - Resolves: rhbz#755506 - [RFE] Add host-based (pam_host_attr) access control - Resolves: rhbz#753876 - [RFE] Add support for the services map - Resolves: rhbz#746181 - "getgrgid call returned more than one result" after group name change in MSAD - Resolves: rhbz#744197 - [RFE] close LDAP connection to the server when idle for some (configurable) time - Resolves: rhbz#742510 - [RFE] Separate Cache Timeouts for SSSD - Related: rhbz#742509 - [RFE] Add SSSD Tool to purge cache - Resolves: rhbz#742052 - id -G group resolution takes extremely long - Resolves: rhbz#739312 - [RFE] sssd does not set shadowLastChange - Resolves: rhbz#736150 - [RFE] SSSD should support multiple search bases - Resolves: rhbz#735827 - [RFE] Ability to set a domain as case sensitive or insensitive - Resolves: rhbz#735405 - [RFE] Option to disable warnings for unknown users - Resolves: rhbz#728212 - [RFE] sssd does not handle when paging control disabled for openldap - Resolves: rhbz#726467 - SSSD takes 30+ seconds to login - Resolves: rhbz#721289 - Process /usr/libexec/sssd/sssd_be was killed by signal 11 during auth when password for the user is not set- Resolves: rhbz#773655 - Race-condition bug in LDAP auth provider- Resolves: rhbz#753842 - sssd_nss crashes when passed invalid UTF-8 for the username in getpwnam() - Resolves: rhbz#758157 - LDAP failover not working if server refuses connections- Related: rhbz#750359 - Major cached entry performance regression- Resolves: rhbz#750359 - Major cached entry performance regression- Resolves: rhbz#749822 - SSSD may go into infinite loop during RFC2307bis initgroups when groups appear in multiple nesting levels- Resolves: rhbz#749256 - SELinux errors with SSSD Downgrade- Resolves: rhbz#748924 - RHEL6.1/sssd_pam segmentation fault- Resolves: rhbz#748412 - Memory leaks during the initgroups() operation- Related: rhbz#743841 - SSSD can crash due to dbus server removing a UNIX socket- Resolves: rhbz#742288 - RFC2307bis initgroups calls are slow - Resolves: rhbz#746654 - SSSD backend gets killed on slow systems - Related: rhbz#743925 - HBAC processing is very slow when dealing with FreeIPA deployments with large numbers of hosts Fixes a crash introduced by the earlier patch. - Related: rhbz#733382 - SSSD should pick a user/group name when there are multi-valued names Fixes for internationalization- Related: rhbz#742278 - Rework the example config- Resolves: rhbz#743925 - HBAC processing is very slow when dealing with FreeIPA deployments with large numbers of hosts - Resolves: rhbz#745966 - sssd_pam segfaults on sssd restart - Related: rhbz#743841 - SSSD can crash due to dbus server removing a UNIX socket- Resolves: rhbz#742278 - Rework the example config - Resolves: rhbz#746037 - Only access sssd_nss internal hash table if it was initialized - Resolves: rhbz#742526 - SSSD's man pages are missing information - Resolves: rhbz#743841 - SSSD can crash due to dbus server removing a UNIX socket- Resolves: rhbz#738621 - Lookup fails for non-primary usernames with multi-valued uid - Resolves: rhbz#738629 - Group lookups doesn't return it's member for sometime when the member has multi-valued uid - Resolves: rhbz#742295 - Use an explicit base 10 when converting uidNumber to integer - Resolves: rhbz#733382 - SSSD should pick a user/group name when there are multi-valued names- Resolves: rhbz#741751 - HBAC rule evaluation does not properly handle host groups - Resolves: rhbz#740501 - SSSD not functional after "self" reboot - Resolves: rhbz#742539 - HBAC: Hostname comparisons should be case-insensitive- Resolves: rhbz#728343 - SSSD taking 5 minutes to log in - Resolves: rhbz#739850 - Coverity defects newly introduced in rhel 6.2- Resolves: rhbz#737157 - "System error" appears in log during change password operation of a user in openldap server with ppolicy enabled - Resolves: rhbz#737172 - "Unknown (private extension) error(21853), (null)" messages are logged during change password operation of a user in openldap server with ppolicy enabled- Resolves: rhbz#736314 - sssd crashes during auth while there exists multiple external hosts along with managed host - Resolves: rhbz#732974 - [RFE] Have SSSD cache properly with krb5_validate = True and SElinux enabled- Resolves: rhbz#732010 - LDAP+GSSAPI needs explicit Kerberos realm - Resolves: rhbz#733382 - SSSD should pick a user/group name when there are multi-valued names - Resolves: rhbz#733409 - Improve password policy error message - Resolves: rhbz#733663 - Authentication fails when there exists an empty hbacsvcgroup - Resolves: rhbz#732935 - Add LDAP provider option to set LDAP_OPT_X_SASL_NOCANON - Resolves: rhbz#734101 - sssd blocks login of ipa-users- Related: rhbz#728353 - Resolve RPMDiff errors in SSSD- Resolves: rhbz#728961 - Provide a mechanism for vetoing the use of certain shells- Related: rhbz#728267 - When non-posix groups are skipped, initgroups returns random GID- Related: rhbz#726466 - HBAC rule evaluation does not support extended UTF-8 languages - Related: rhbz#718250 - Remove DENY rules from the HBAC access provider - Fixes an issue on big endian platforms- Resolves: rhbz#700828 - Process /usr/libexec/sssd/sssd_be was killed by signal 11 (SIGSEGV) when ldap_uri is misconfigured - Resolves: rhbz#726438 - sssd doesn't honor ldap supportedControls - Resolves: rhbz#726466 - HBAC rule evaluation does not support extended UTF-8 languages - Resolves: rhbz#718250 - Remove DENY rules from the HBAC access provider - Resolves: rhbz#728267 - When non-posix groups are skipped, initgroups returns random GID - Resolves: rhbz#726475 - sssd_pam leaks file descriptors - Resolves: rhbz#725868 - Explicitly ignore groups with gidNumber = 0- Related: rhbz#721052 - sssd does not handle kerberos server IP change - Use ares_search instead of ares_query to honor - search entries in /etc/resolv.conf- Resolves: rhbz#711416 - During the change password operation the ccache is - not replaced by a new one if the old one isn't - active anymore - Resolves: rhbz#715609 - Certificate validation fails with message - "Connection error: TLS: hostname does not match CN - in peer certificate" - Resolves: rhbz#719089 - IPA dynamic DNS update mangles AAAA records - Resolves: rhbz#721052 - sssd does not handle kerberos server IP change - Honor TTL values when resolving hostnames- Resolves: rhbz#713961 - libsss_ldap segfault at login against OpenLDAP - Resolves: rhbz#713438 - sssd shuts down if inotify crashes- Resolves: rhbz#709081 - sssd.$arch should require sssd-client.$arch- Resolves: rhbz#709342 - Typo in negative cache notification for initgroups() - Resolves: rhbz#708009 - "renew_all_tgts" and "renew_handlers" messages are - being logged multiple times when the provider comes - back online - Resolves: rhbz#707997 - The IPA provider does not work with IPv6 - Resolves: rhbz#677327 - [RFE] Support overriding attribute value - Resolves: rhbz#692090 - SSSD is not populating nested groups in - Active Directory- Resolves: rhbz#707627 - Include valid "ldap_uri" formats in sssd-ldap man - page- Resolves: rhbz#707513 - Unable to authenticate users when username - contains "\0"- Resolves: rhbz#698723 - kpasswd fails when using sssd and - kadmin server != kdc server- Resolves: rhbz#707282 - latest sssd fails if ldap_default_authtok_type is - not mentioned - Resolves: rhbz#692404 - rfc2307bis groups are being enumerated even when the - gidNumber is out of the range of min_id,max_id. - Resolves: rhbz#699530 - Users with a local group as their primary GID are - denied access by the simple access provider - Resolves: rhbz#700172 - RFE: SSSD should support paged LDAP lookups - Resolves: rhbz#705434 - IPA provider fails initgroups() if user is not a - member of any group - Resolves: rhbz#703624 - SSSD's async resolver only tries the first - nameserver in /etc/resolv.conf- Resolves: rhbz#701700 - sssd client libraries use select() but should use - poll() instead- Related: rhbz#693818 - Automatic TGT renewal overwrites cached password - Fix segfault in TGT renewal- Related: rhbz#693818 - Automatic TGT renewal overwrites cached password - Fix typo causing build breakage- Resolves: rhbz#693818 - Automatic TGT renewal overwrites cached password- Resolves: rhbz#696972 - Filters not honoured against fully-qualified users- Resolves: rhbz#694146 - SSSD consumes GBs of RAM, possible memory leak- Related: rhbz#691678 - SSSD needs to fall back to 'cn' for GECOS - information- Related: rhbz#694783 - SSSD crashes during getent when anonymous bind is - disabled- Resolves: rhbz#694444 - Unable to resolve SRV record when called with - _srv_, in ldap_uri - Related: rhbz#694783 - SSSD crashes during getent when anonymous bind is - disabled- Resolves: rhbz#694783 - SSSD crashes during getent when anonymous bind is - disabled- Resolves: rhbz#692472 - Process /usr/libexec/sssd/sssd_be was killed by - signal 11 (SIGSEGV) - Fix is to not attempt to resolve nameless servers- Resolves: rhbz#691678 - SSSD needs to fall back to 'cn' for GECOS - information- Resolves: rhbz#690866 - Groups with a zero-length memberuid attribute can - cause SSSD to stop caching and responding to - requests- Resolves: rhbz#690131 - Traceback messages seen while interrupting - sss_obfuscate using ctrl+d - Resolves: rhbz#690421 - [abrt] sssd-1.2.1-28.el6_0.4: _talloc_free: Process - /usr/libexec/sssd/sssd_be was killed by signal 11 - (SIGSEGV)- Related: rhbz#683885 - SSSD should skip over groups with multiple names- Resolves: rhbz#683158 - SSSD breaks on RDNs with a comma in them - Resolves: rhbz#689886 - group memberships are not populated correctly during - IPA provider initgroups - Resolves: rhbz#683885 - SSSD should skip over groups with multiple names- Resolves: rhbz#683860 - Skip users and groups that have incomplete contents - Resolves: rhbz#688491 - authconfig fails when access_provider is set as krb5 - in sssd.conf- Resolves: rhbz#683255 - sudo/ldap lookup via sssd gets stuck for 5min - waiting on netgroup - Resolves: rhbz#683431 - sssd consumes 100% CPU - Related: rhbz#680440 - sssd does not handle kerberos server IP change- Related: rhbz#680440 - sssd does not handle kerberos server IP change - SSSD was staying with the old server if it was still online- Resolves: rhbz#682850 - IPA provider should use realm instead of ipa_domain - for base DN- Resolves: rhbz#682340 - sssd-be segmentation fault - ipa-client on - ipa-server - Resolves: rhbz#680440 - sssd does not handle kerberos server IP change - Resolves: rhbz#680442 - Dynamic DNS update fails if multiple servers are - given in ipa_server config option - Resolves: rhbz#680932 - Do not delete sysdb memberOf if there is no memberOf - attribute on the server - Resolves: rhbz#682807 - sssd_nss core dumps with certain lookups- Related: rhbz#678614 - SSSD needs to look at IPA's compat tree for netgroups - Related: rhbz#679082 - SSSD IPA provider should honor the krb5_realm option- Resolves: rhbz#679082 - SSSD IPA provider should honor the krb5_realm option - Resolves: rhbz#677318 - Does not read renewable ccache at startup- Resolves: rhbz#678593 - User information not updated on login for secondary - domains - Resolves: rhbz#678777 - IPA provider does not update removed group - memberships on initgroups- Resolves: rhbz#677588 - sssd crashes at the next tgt renewals it tries - Resolves: rhbz#678410 - name service caches names, so id command shows - recently deleted users - Resolves: rhbz#678614 - SSSD needs to look at IPA's compat tree for - netgroups- Resolves: rhbz#670511 - SSSD and sftp-only jailed users with pubkey login - Resolves: rhbz#675284 - "no matching rule" message logged on all successful - requests - Resolves: rhbz#676911 - SSSD attempts to use START_TLS over LDAPS for - authentication- Resolves: rhbz#674164 - sss_obfuscate fails if there's no domain named - "default" - Resolves: rhbz#674515 - -p option always uses empty string to obfuscate - password - Resolves: rhbz#674141 - Traceback call messages displayed while - "sss_obfuscate" command is executed as a non-root - user- Resolves: rhbz#674172 - Group members are not sanitized in nested group - processing - Put translated tool manpages into the sssd-tools subpackage- Related: rhbz#670259 - Refresh SSSD in 6.1 to 1.5.1 - Also add the updated ding-libs to the BuildRequires- Related: rhbz#670259 - Refresh SSSD in 6.1 to 1.5.1 - Explicitly require updated ding-libs- Resolves: rhbz#670259 - Refresh SSSD in 6.1 to 1.5.1 - New upstream release 1.5.1 - Addresses CVE-2010-4341 - DoS in sssd PAM responder can prevent logins - Vast performance improvements when enumerate = true - All PAM actions will now perform a forced initgroups lookup instead of just - a user information lookup - This guarantees that all group information is available to other - providers, such as the simple provider. - For backwards-compatibility, DNS lookups will also fall back to trying the - SSSD domain name as a DNS discovery domain. - Support for more password expiration policies in LDAP - 389 Directory Server - FreeIPA - ActiveDirectory - Support for ldap_tls_{cert,key,cipher_suite} config options - Assorted bugfixes- Add noverify to sssd.conf - Resolves: rhbz#627165 - TPS VerifyTest failure- Related: rhbz#644072 - Rebase SSSD to 1.5 - New upstream release 1.5.0 - Fixed issues with LDAP search filters that needed to be escaped - Add Kerberos FAST support on platforms that support it - Reduced verbosity of PAM_TEXT_INFO messages for cached credentials - Added a Kerberos access provider to honor .k5login - Addressed several thread-safety issues in the sss_client code - Improved support for delayed online Kerberos auth - Significantly reduced time between connecting to the network/VPN and - acquiring a TGT - Added feature for automatic Kerberos ticket renewal - Provides the kerberos ticket for long-lived processes or cron jobs - even when the user logs out - Added several new features to the LDAP access provider - Support for 'shadow' access control - Support for authorizedService access control - Ability to mix-and-match LDAP access control features - Added an option for a separate password-change LDAP server for those - platforms where LDAP referrals are not supported - Added support for manpage translations- Resolves: rhbz#660592 - SSSD shutdown sometimes hangs - Resolves: rhbz#660585 - getent passwd ' returns nothing if its - uidNumber gt 2147483647- Resolves: rhbz#659401 - SSSD shutdown sometimes hangs- Resolves: rhbz#645449 - 'getent passwd ' returns nothing if its - uidNumber gt 2147483647- Resolves: rhbz#658374 - sssd stops on upgrade- Resolves: rhbz#658158 - sssd stops on upgrade- Resolves: rhbz#649312 - SSSD will sometimes lose groups from the cache- Resolves: rhbz#649286 - SSSD will sometimes lose groups from the cache- Resolves: rhbz#637070 - the krb5 locator plugin isn't packaged for multilib - Resolves: rhbz#642412 - SSSD initgroups does not behave as expected- Resolves: rhbz#633406 - the krb5 locator plugin isn't packaged for multilib - Resolves: rhbz#633487 - SSSD initgroups does not behave as expected- Resolves: rhbz#633406 - the krb5 locator plugin isn't packaged for multilib- Resolves: rhbz#629949 - sssd stops on upgrade- Resolves: rhbz#625122 - GNOME Lock Screen unocks without a password- Resolves: rhbz#621307 - Password changes are broken on LDAP- Resolves: rhbz#617623 - SSSD suffers from serious performance issues on - initgroups calls- Resolves: rhbz#607233 - SSSD users cannot log in through GDM - - Real issue was that long-running services - - do not reconnect if sssd is restarted- Resolves: rhbz#591715 - sssd should emit warnings if there are problems with - /etc/krb5.keytab file- Resolves: rhbz#606836 - libcollection needs an soname bump before RHEL 6 - final - Resolves: rhbz#608661 - SASL with OpenLDAP server fails - Resolves: rhbz#608688 - SSSD doesn't properly request RootDSE attributes- New upstream bugfix release 1.2.1 - Resolves: rhbz#601770 - SSSD in RHEL 6.0 should ship with zero open Coverity - bugs. - Resolves: rhbz#603041 - Remove unnecessary option krb5_changepw_principal - Resolves: rhbz#604704 - authconfig should provide error with no trace back - if disabling sssd when sssd is not enabled - Resolves: rhbz#591873 - Connecting to the network after an offline kerberos - auth logs continuous error messages to sssd_ldap.log - Resolves: rhbz#596295 - Authentication fails for user from the second domain - when the same user name is filtered out from the - first domain - Related: rhbz#598559 - Update translation files for SSSD before RHEL 6 - final- Resolves: rhbz#593696 - Empty list of simple_allow_users causes sssd service - to fail while restart - Resolves: rhbz#600352 - Wrapping the value for "ldap_access_filter" in - parentheses causes ldap_search_ext to fail - Resolves: rhbz#600468 - Segfault in krb5_child - Related: rhbz#601770 - SSSD in RHEL 6.0 should ship with zero open Coverity - bugs.- Resolves: rhbz#598670 - Ccache file of a user is removed too early - Resolves: rhbz#599057 - Incomplete comparison of a service name in - IPA access provider - Resolves: rhbz#598496 - Failure with IPA access provider - Resolves: rhbz#599027 - Makefile typo causes SSSD not to use the - kernel keyring- New stable upstream version 1.2.0 - Support ServiceGroups for FreeIPA v2 HBAC rules - Fix long-standing issue with auth_provider = proxy - Better logging for TLS issues in LDAP - Resolves: rhbz#584001 - Rebase sssd to 1.2 - Resolves: rhbz#584017 - Unconfiguring sssd leaves KDC locator file - Resolves: rhbz#587384 - authconfig fails if krb5_kpasswd in sssd.conf - Resolves: rhbz#587743 - Need to replicate pam_ldap's pam_filter in sssd.conf - Resolves: rhbz#590134 - sssd: auth_provider = proxy regression - Resolves: rhbz#591131 - Kerberos provider needs to rewrite kdcinfo file when - going online - Resolves: rhbz#591136 - Change SSSD ipa BE to handle new structure of the - HBAC rule- Improve DEBUG logs for STARTTLS failures- New LDAP access provider allows for filtering user access by LDAP attribute - Reduced default timeout for detecting offline status with LDAP - GSSAPI ticket lifetime made configurable - Better offline->online transition support in Kerberos- Release new upstream version 1.1.91 - Enhancements when using SSSD with FreeIPA v2 - Support for deferred kinit - Support for DNS SRV records for failover- Bump up release number to avoid library sub-packages version issues with previous releases.- New upstream release 1.1.1 - Fixed the IPA provider (which was segfaulting at start) - Fixed a bug in the SSSDConfig API causing some options to revert to - their defaults - This impacted the Authconfig UI - Ensure that SASL binds to LDAP auto-retry when interrupted by a signal- Release SSSD 1.1.0 final - Fix two potential segfaults - Fix memory leak in monitor - Better error message for unusable confdb- Release candidate for SSSD 1.1 - Add simple access provider - Create subpackages for libcollection, libini_config, libdhash and librefarray - Support IPv6 - Support LDAP referrals - Fix cache issues - Better feedback from PAM when offline- Rebuild against new libtevent- Fix licenses in sources and on RPMs- Fix regression on 64-bit platforms- Fixes link error on platforms that do not do implicit linking - Fixes double-free segfault in PAM - Fixes double-free error in async resolver - Fixes support for TCP-based DNS lookups in async resolver - Fixes memory alignment issues on ARM processors - Manpage fixes- Fixes a bug in the failover code that prevented the SSSD from detecting when it went back online - Fixes a bug causing long (sometimes multiple-minute) waits for NSS requests - Several segfault bugfixes- Fix CVE-2010-0014- Patch SSSDConfig API to address - https://bugzilla.redhat.com/show_bug.cgi?id=549482- New upstream stable release 1.0.0- New upstream bugfix release 0.99.1- New upstream release 0.99.0- Fix segfault in sssd_pam when cache_credentials was enabled - Update the sample configuration - Fix upgrade issues caused by data provider service removal- Fix upgrade issues from old (pre-0.5.0) releases of SSSD- New upstream release 0.7.0- Fix missing file permissions for sssd-clients- Add SSSDConfig API - Update polish translation for 0.6.0 - Fix long timeout on ldap operation - Make dp requests more robust- Ensure that the configuration upgrade script always writes the config file with 0600 permissions - Eliminate an infinite loop in group enumerations- New upstream release 0.6.0- New upstream release 0.5.0- Fix for CVE-2009-2410 - Native SSSD users with no password set could log in without a password. (Patch by Stephen Gallagher)- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- Fix a couple of segfaults that may happen on reload- add missing configure check that broke stopping the daemon - also fix default config to add a missing required option- latest upstream release. - also add a patch that fixes debugging output (potential segfault)- release out of the official 0.3.2 tarball- bugfix release 0.3.2 - includes previous release patches - change permissions of the /etc/sssd/sssd.conf to 0600- Add last minute bug fixes, found in testing the package- Version 0.3.1 - includes previous release patches- Try to fix build adding automake as an explicit BuildRequire - Add also a couple of last minute patches from upstream- Version 0.3.0 - Provides file based configuration and lots of improvements- Version 0.2.1- Version 0.2.0- package git snapshot- fixed items found during review - added initscript- added sss_client- Small cleanup and fixes in the spec file- Initial release (based on version 0.1.0 upstream code)  !"#$%&'()*+,-./01234cacacacsesesesesesesesesesesesesjajajajajajajajajajajanlptpt1.11.6-30.el61.11.6-30.el6 sss_debuglevelsss_groupaddsss_groupdelsss_groupmodsss_groupshowsss_obfuscatesss_seedsss_useraddsss_userdelsss_usermodsssd-tools-1.11.6COPYINGsss_groupmod.8.gzsss_obfuscate.8.gzsss_useradd.8.gzsss_groupdel.8.gzsss_ssh_authorizedkeys.1.gzsss_ssh_knownhostsproxy.1.gzsss_debuglevel.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsss_ssh_authorizedkeys.1.gzsss_ssh_knownhostsproxy.1.gzsss_debuglevel.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsss_debuglevel.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsss_groupmod.8.gzsss_groupdel.8.gzsss_groupmod.8.gz/usr/sbin//usr/share/doc//usr/share/doc/sssd-tools-1.11.6//usr/share/man/ca/man8//usr/share/man/cs/man8//usr/share/man/es/man1//usr/share/man/es/man8//usr/share/man/ja/man1//usr/share/man/ja/man8//usr/share/man/man8//usr/share/man/nl/man8//usr/share/man/pt/man8/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector --param=ssp-buffer-size=4 -m32 -march=i686 -mtune=atom -fasynchronous-unwind-tablesdrpmxz2i686-redhat-linux-gnuASCII textELF 32-bit LSB executable, Intel 80386, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.18, strippeda /usr/bin/python script text executabledirectorytroff or preprocessor input text (gzip compressed data, from Unix, max compression)/^L}//00///10RRRRRRRRR R R R R RRRRRRRRRRRRRRRRRR!R"R#R$R%R&R'R(R)R*R+R,R-R.R/R0R4RRRRRRRRR R R R R RRRRRRRRRRRRRRRRRR!R"R#R$R%R&R'R(R)R*R+R,R-R.R/R0R4RRRRRRRRR R R R R RRRRRRRRRRRRRRRRRR R!R"R#R$R%R&R'R(R)R*R+R,R-R.R/R0R4RRRRRRRRR R R R R RRRRRRRRRRRRRRRRRR R!R"R#R$R%R&R'R(R)R*R+R,R-R.R/R0R4RRRRRRRRR R R R R RRRRRRRRRRRRRRRRRR!R"R#R$R%R&R'R(R)R*R+R,R-R.R/R0R4RRRRRRRRRR R R R R RRRRRRRRRRRRRRRRRR!R"R#R$R%R&R'R(R)R*R+R,R-R.R/R0R4RRRRRRRRR R R R R RRRRRRRRRRRRRRRRRR!R"R#R$R%R&R'R(R)R*R+R,R-R.R/R0R4RRRRRRRRR R R R R RRRRRRRRRRRRRRRRRRR R!R"R#R$R%R&R'R(R)R*R+R,R-R.R/R0R4RRRRRRRRR R R R R RRRRRRRRRRRRRRRRRR R!R"R#R$R%R&R'R(R)R*R+R,R-R.R/R0R4?7zXZ !PH6 ]"k%}:wm ,W,sš.VYD7&\C84>w 7=('~-Y?6}Haʌm[obQJUiߕm:`úGhS%X6Glp7S^jچJZ5ƾŬeGޅbl4F-p>6xq$+89eC/޳#ʺ}6xb xaF2W1]Xpýc684Tg2N@ IE mDjJ+ƷLC@%^{}z 9|_O~'A^ec|'Ι3+`Z ΍^VsnU.z)fXoG:Vmfnb"0 ɞ:77 Z{T'.07tPKG= 4'\,9M{/z¥rMZ/kTZf}b zTg3х  |Ҝ\{1K8/4ape QI/Z2Bal M;aWNZM)zFf\i3|w4!6|:|j.e69-x5H֬.QisLH}p`Q\QͧHf(Ht&03w"LiVb{X cS/>(̖g+:Eó μ$?{$),QJHuޘ}8*m8,@|[.#e\E<n@vڕ%}DX[ q~/]@DD=&m߫7e˽7Ck a q ps)Qej`X# p,3vZȨ2[f"L^;%sQaGi0N-.yd,a\p3*b9iu.FÜWJlk ́<.7O9zlL5.*ma؁ܩM``ח^t!o ^ '՜1\c,)wTz7E'B|=sVןދ2wׁ+#T)Qk7RBMzi̸'(d@ qfX-.G2?d& ˵ -Y{%ʰ$=f?Yn?y]Dr71b^ D7G_^ }/܇K1/YPdGMWWzǝ< N?qntQI~']W.vWN Djnv.RUSEDϽ.͉ !K @{ RFq@:e R{$WNJ2q k?q:"`}"?p*-2/b65vZMeTC 2#ܭ[PZĭOdgf8X&[b (w[v~Qe>e ;eF)Pc{6,`oWr>kRG#V04U_(^t) TBGgԢ\_Fs֧7*/{R}ݥN)Q_2Dz8R8 n|1՘l"s_ U oԢ2nVlUսE5i(] ]Q7w0&G$IOvs)GMaHcB/I)5W[ (N)_&MQɥvH._cḑvҧw4GH͡QQ}t e v>[HS5(,I[>K(unsKDq0:"Pe v`T 9}C~7l5+i`Ni8~{_c6Mr((E3|C<]7R RGWahL# aV"_ v#+7&,q3 ƿHur/ٛ<AÛ3UI.F.\e/_} \ZUveo PyKK>jTQP,|c{f{LڿN+'qh lIڽn2[qc +-XSys/tgOHw :z>ϴ#hCh2Uyi5zZF9)6dV.# ͅr2 L5#gy1FIbp쯇Fo1ZA!;yOr*2ZA!dOb?7^ T?Um3lJ':GL$, B JzȴSp(gw>UomU/GLMQW&tKMgh3s>rS+Rmzb"ʠ #>9J9FԺ VrZPhv;19S=ts5Wː{ӥevoJbx,?ˡCߓ[9d諏?r|ӶT:uZ~/` Cۦ@oa4󗜜BV\z\S9#]#Q_}e6lB=j~h]}oܖ*/ωE;t:ʍP/B;Rt~ZN\),vs[ ZdGqE0xb=7>s9R<0$_Esa2,/+ 0!RL5!Ƽ &f%eI1])wFv 50w1j5*n\I4`%lPҁQ O6s.wK}^d`?_Ȯ -so^xBaۯ4MtVgzbJ{ ,Pop`^²|2VE] q ^e HggbI C;=DW3{Qߙ T E YqDh̳47nN/Nh7תҨ.<Ϸa*kV&̲]#鎾=,-Sե*vq_|޷gPB=s >Ew\bV(|GyDH*1HLqq孒TUvތ:vJfS]etlI>sЬ/,.Yr{nFb/[qM%kZ1F} Y_gRnGV!sT)t=Ei4^bhg1bulmVҏAb8^DrUje$n&E< GivV{h=1="Xf,c]ۈdP#_gO yz߲PQP­nɯD-% ,:ÞNw)(?b>0L3בT3n1qmLfɃw{ ÝHؼ]tLƐjhҙqQ }GV%hHO6X3J/~"A[ F)Ya CIhWJط/ir#=xZTNS,O:_iXYShnrF޲T GdI 2G%T &T (`^NX+Hn,$EJYNH~̣O43 I еq&(s+~8dt|E/IS͉Mc P&eV"Krߤ|PRۇF,O1bn*B"`̲UnW36 a55L=*X_lݧg姻ѫ#>ijo vVm疱‚<Xەlj"}wv~>6SU^usEQ:W !j;e*pco_C.P5XōQj5 4M@^S*DjhLz7 'Bߛsn0 O6eKOױ^+NzvFRhÔd=E,EgEquSɷRDr)*VrVꍈO;h6M=MY6\/Y$Qɪސݸ's5kN*W$"$ dͮ<4 }=;{yW7)Z8[Z\.{e3Rb}jc+K'\1ia/8}gx ǝc6M) kJ @iUe&/#TTS RYYYIF_~ل9'X)~zaH^\0S:5:BԱp(&ub Wc))%zp6=7 ]OYS|SR/Jo7(M~KQ4^Re㓳 TCkU(kO:!Es#,{tD]%EQ=)Í'~M~:f@ APwW)ϫw uCt;ͷQpE'**ÊÎ ]| \-4.ܯ'BjBI l#9bo[C C,ζ18RC'|>]xgv=.YO~;+&$,3P>ƾ &ӥEr ȰoC D/!`MLʘVbG{m9(D/?e^V3B¨SGRE5,#*Z(+C\yjxW&5z'0*&AP|Z{$b%.t9,d@HapWxx,V2m[%ok `{4 I T=0$az2&ʨ6I:7 _dB]fu9FҴAty4O~AE|\rd 0]Q.ꁇ_=7Fz'l̉>fcٷj;/'f5%z7€*ۭ0IXq..{7}yXg0\#+k0H!N2Ps$Gj/A;>RPs^h2i#gC2Nx^-tM1D@憆f\3X jƅC|f!D+&O%_ LXS6yXx-,KϑEH({Դ&(Xԓg KDOKS$Y$AHojַ,% LGyIׁ^]NqQ|jR5^{xV2븶KxoqAj1z?ׁ1?T=.9o\ԇaYreI2sV8+Ē(IOkFI'lmJ"bbx+Q8?_^fzߚ$Gksxcf܉]{%ISD\D~ۃ+/YQ.VSTԠI- 4ڕ@S ^.ߢ̯oȨњH-N=oH:?kԇdwALq/5äҧQ4-3˛ MpE15&asb-N$!~()rtٳ4>0).^XC.k7LxpM\,Gڿ]#|E0D"d=O+?-AMA>TMm2єyif=`Xج̻Frl~ul11j7^D#O-8(OUt?#œ}Ciƭ2ьݟO|ƩXN I P 5>ၪas%?0Jg`=O4f]>0Mم`7;Ll rekŪ'liczYqxtAI/1^.yk#4KAZ"wOZ~;B&*}yh!7R)sFr=\< 4C՚\^5@B"c@]u t>~y6RZC㜱bY 'ʸȟh#ΣK(k7"p0fD QPoC.eE=FmpĘTadcbV270"pn-痋WX+3a:eArp- S/c+KiaU 斊v @ü1 o0MsR3@ށ=RQ*bĆ}vHT!2njCς3Nlɯړ'& g2XHwր2<66H(.@> .JU3AQ:'<C@GLr=GwC7b>`=>:_]);i;&2WqK{VVM!"1['n3%m bNޝ҈ 9QQ:JK@Pv'V[^:;G +r<":a;9ޅf` @TٮW/EaP۬΃U3lt3+ _: d|ݻB)gzt?)/FOv5z}80t PҴq`n%ǤT9,S+i>W:|3J'wQʣ4V-mQ}V_țxVYB_"?.zSX.$zDoMΌ__BG `f/lHsþEJl}%a!D{Mi슬9<+X`eMa;I,3i|rBf%;>* _s~_A!66$iwԾs$l\>Oa<xuL-E2]% WY}Yyn+LRbCV~3DJHNfideeE0 [u*f=J 2YdݴZ*o_Vr a} 0OxH|)5m##$L3C1rZ=[c8R?OafP6q| V3[͖+DBNz:snԡAȝ_*AF+K+?Z7q@mYfJ+ckM]WBNN0 *4]"p߱'\N3qŬtĞQffym` F N-niaeaY 9,qлl\ F'U)y[L2_DP}G/]P7Iu6|URΓJ$XK4;x ۍ;mO Hk exg yg vRN.?h4WL 1{EK[ M&}Z5' ?i7PhQEyu9]ʽ ,Tͦ[M}yG7\{%W, %x:-@D ±qT?Jzk-FEb$)p4uӺs:{(3?.%V@jT`!@ #o)(۟w?yf"k 5.> хFɎQ?q Z8!{fړv˧sQK6`o-j%o@gm Qqg| ǫ쩣P@3ˡ4^V709p|U͜JP>o Q(O׻~=!A݊tMCP*PLo~,vG\-Ԯ߇HhJ?Y*OJڦavXΡ$iJ{N3<./c{*\6=|?"8"iL/jjuK QeSy"?fԮ'u~=jE,Ϯuޘ7׮>Cص詷^U?'-;#h1j08wOR 9?y ΂%Q1nl<~N[8vU&tJt;F9$G{@|_^KO@`HqАO[ 9/:IxKv="MRg¦&ژ1A;)P z~-о-ënls8nR{:h-+H̞grF1=}Z"GMkLDuIɁrE*+Qi<r:H -fxjbSp OF9~BR7&.v sC .WVWPEQ՜'ѦDGJ$3$eׁ Py`nA!+UKZޛw=Ygu|TeabH~g([6d;ʃ n.Ш}|r%ta?%K9zVV >uCAƥb߂E3E `+带resRL=i{!K쵁Ŏ{M 8eG+Fc^dPcEBrPhDx0&Hfl7JѨJ5kP0v}]8k-6Dmk`5*u Y_ -{y^Gk~-b:KWޢ^^E|˓Z.[`OfUBg[Z^/ $hRL R(MoǪSU+Xd;T͛")>eXFcDx40y 9|#j|+,TGa! ŪP8CɄLRC:w_}҈J:Rh*Vt? .2JuHx}ŞE8eo`d]Μ>d7R>1NB]Ue ` *PG[BU;ޞs^wWDZx}\` H})+Dr*Ŷ+<4`EBqH;4BO])n7cI!A0"Tt،"۽z^(Rp-.}6dw$@bRvk[XqkRmP&^`D9{߽ C ![5+KHrۻ'$eI'c+Ǝ^WJ ' Ffq"”LAғ?㰄H  7+g r^S qh? j[f*Ą' n0IM es[{ sQPI?$SzgLS&Ugd-ηAŖީe~SvMLޥ?n#+I>etBZd"x {gB:4. KGFQ_=x8<36M$h+:ےȉL:c !¨.XDM(~s=%xВ'^t)ݬlse e0a)$&1TC۷(/~雬OEK% !.2$ tƒ<4'/e?!pyb~HC:Iw@κ,!ζy?uvZ =NʏbK{j_{y e`,nĆXpg"jpK~ʥWi'ǘ\"/xQ}YRuQۖЬ"w>AEe ]'Crτ Fڤ(zRڲ218Rxސrj6'샯]j=*N:i:&X^@#c5AP=/<;eaj'=H7Y6%IbRkl} PJ!jݸ8{ԇ=5kw+ҚCLIzԑ(`oi$] 0rly6˟:8~Og[u񚗊YĘ^| mzG! ,򋖛 w'-S\1Tej=E {B1jE+v"WXO?KYbp<ـzA}`?:#3VeX'; Ȉ,fZJ8M8jAI(etWJ.b j۟1VXxVI}v ¹ãՄA&+;u 3#tL7+ vtY"=`~t PŜ&VR̜-0Bsy 9Ô_,3϶ѻYBln >&}Nf]Qu"pq8=)6@yPQ&y| |]>P]^ԣ. ./д)`^ar%&PA'wc`d< st4X4=yۜ,hʢ s.@)~SCfT̰=~RxVTv_:¤~j9w(PoReʼ8HOA{78[w$ ݰR 'ԐMW{;LHCѷ&k`E^y_%Gz7dh̳rU~U}N 1ۯ 2`ȼl~5쀠%35{<'BR:Ƕ_!T& c^ (¬4-em0oS+o9s|Fp}lѵ72c_XUXƷM>0U󮦭7𪠸-8Oz]"ß]C.6.{/9y[(8mDDMo./x1v8\ipM Oeamz]0e5_}p^s8ƘGūwԼk9)*6p'޽Zu`Ho~T%m_a6]FTdCB_S#YmZ@Q*`GzO=p^`kE3L$1N-DpFWc}[^IYfן=ؘ8hL;CR5hHweiVjQG}$J02Aβ}٢\m>M`%h?[Tl?E/$Hzյ*4wAu ^Eǥ+ve-тUHCzlQL5!h܍Ԥ i$NveZ>ybbc #3(p6oET>uqeP.W#Ucafa0q6|%7<8!h_:aB"МM#%ͅ`NlBl@{"A~B}^&,VJRimZC7Jic$LBOݛ>4XN@d-;/]6nHhU{O^8&6;Najj$8BK| sI. LҸӧ26\m~,,!4جofq_2'zʄU'T.y+v=JZ5/*]^2',ùnazz"9 Wِ 6fV$Q?n}n<5BifiiGB(SL{JoU1`DPJO *w(OL\̢`Bk=Cax?mH$@OjV?OuENA- ø j{)8>@+e9i &sQb0eoT2ϲ[`E %Ro{mn+WUL3nU/f׻E9Q2@ZD֨ QMOv嶙.k;&f5 m92v{ ێNN$J cÈOH@ p6U\CAg@ZtďK=ҽMmlhoxCA'<#yNW"g\X{'JZ,?i%f@v r9tT[/ ԪLM}̺pH%+rJ-'K> *qb.I1Pd&gGgiG3Zib!tDv@;4,*<&iy¥C7^K~ǟIcCɧd| *+Zӎofhޖ߯i$pC-j0:筶8ۮi;(OAyç)3SI40AC}PayLH8Sһ1ad` ̿mC7ONˈ @ZM>K3&aWimf hGgޡ67A+Qȭ%C% 7[f/GNG4Ɣ!;}lVIB*韰V}JDYѦ!t"aCR d ?٭S#eb6՞Ēwp=7@>e=wD{hnMs[=>^Lϸu /ȑ0áaRQ`3E+%qU "_ DR?0/>-sȜIZω݉e;5QsB3]G^`FR;AwT_W9gpؑF[]#x9}1N"vDNh؋! KFZYЕo $ڍu{g|:E{:} CVi MԚj4^Ab(Q{3j/JCT⨊9@ @db:/${La=ōa! K4!{&'lE B6>^5eqDB ߱}:[u.8]Ar4Pz W!p|6sPnj۠pss}J4ٍm ҎN6Ǘ'>t**21A "Bl9{@J);Qs'ciQa0iw+SܼIO P7 sS;A+O&y~apnXu!a i;[}:'dV SLKȔy~\06+el!*JsB’2'|;ux2 p\g͹B#2Ȯw7X Dփ_qZsq+\bfbX@Z\z;51 BF_I㏟ƜD=1:MIʊcr=,{ +C83kz(]`L;RBcJ|b=A45]1Nj' &"8l+-HLn cy L76sh`PG໷mՍ JE]'1$ҁG Q(m`D!Mq gjoZYZ)g0)!\t3:)^H3umzpO(?VIm7z-6(8ozvjĽnl?Р\|V)l9"~D(6=/lUYr5x8tIo% `zYŇ-IuoG}:"dm<-vGmxֺ{ݶݜCt""Kz lR8@ TE/9sP]!wėru ͺ[1L0κ TvYjRC$бW;qQ'/&er҄6 *lNMh=W ~E(s)1, /TY[˷~tBlFQ76 ۑ$= hz[qᤏh䄬ږl,wsZ'!elQؑ4ۭ3 +EhtӗА\Q^ DpA-۶ߜ X+VU@We*G4U(vb"w7ix 2I^ЗzGG~>%~@(Ы&q0l:"W꛽ϞM"+$L4Pl2Zg"F>o A'g)RAPhm2yr6w $Z\VR {Lj"t|bNNj.ta,`Ss;VuGSe_ΦdwW'$L,f+;}@r nONxA2Zb*E56dq;]+)m,cr5?%lw~)!ۡzz\dux$IfB1&b/~o&@OX=$5K,{ȹXQ%ȏ3)Ʀ߀_{PK@͒mN~|%V[`hy?Ο!3aȼ=W<[ # I gVf+;H_[cI'Вa+\RE )@wDzm@@ h AS<{(Ced[@ ^ԺsG ̮nnF:/<ÔC丳Ӽh{̶IɲNUTR0s~!h%<]}FJjiG5$,w.;qE {K .6J+e[Fsgs9*IiYY^oDHPp yf?\+%ji9j9y?56$ê0( Zs{?(rС9I@iw%fZocҫQjB A.GĊ~lpI_DroD(4'bB1䖎:"`~Pq͒.=p9:UyX'GW ׭S8#0 SI~hU8PET}>0J|ק81xiE-cզQ:8KNͷy< q:5*Y 7wʕKż$Nv:Aٲ`ϼAbe)\Rlj$6t l/r/1h^K4}Tעt4 ",y!/XE 91XdžmTQͽ(W6LUa˚W+_kb[ I}V^ eU4Ϗw\/7Twܽ ݗ[.MN$ﰦt+ e%ɇGUu/Agvf*cw2)rwAejh ya}7s[r摄 oyeY ebȍ-j)ԕDu+O#bR3BIol?~ <I4 uUfd";Xf9LJb;_1# Twbͺ` P;FDOG畅343r>?RIH1IeYj<"cWڐ f){k2ϷUٌtx[mwqͫqBPr 74OQa!٬a*DJ6/ٚz=j"hZ7a/m1o6CO.,R |wFJpo CSp(]b lBu7G|K'?qkhgPfzD&u[R&kcAg'.m2Vݠ,9QqJ O:ԌMrVu~Tt2"]ڻ||`s5y$ v.۽ 4f];mva%C-EȠ~ꇉ0CZȬ+rF\\US,qu8iwU`4#+kCEw sJ+Ƈ0 _>BTzTp'C%HOsr qlj|2E8'1 uH7ZJb_n2t<`1FO oj*n̬5InTDDgRX$h(3GYo8< j氃Bа^ Zr'kfZ ™*3!f fRMKJUNo2!3Lei;եvx$8RXA@}7ǂ3PX.֋}zfq{@p{]S ZY8;۬+n-.dZ]M S{A&6}wVPy_$&norBdIīC (IIbGjB]TA!;[F ODBrgŌ\u)\jz.ׇge+^)#fJ}Gk.6b,zIcx^/^-GN^c &=i_!aC\Dy:+HյԬBFT>ar ")’f(tȏS@Н' ^Ly2_u۱35"3oJi<(?2'.#B?L[Ar$<'np3_*;$ 6;ixd)5ZDlPl>Y̲ȳ;]4bX!P΂}bZ_DcZyyʹpSP{_<WTmdU"&];]vrH^ ^@EAaG0\c¥veҖqA\@H<\nx# >ؠwA BA q"YER/(wǵS<ʸVeiECe\ f f ۔krQ~rD17|E4v^׎ib#}QrvLܖ#$wpj{bR?^86q{Qۜ,`L 4^tj $p0a~*]v0yʰ g;wf#"t^Eq)͉;O^SaYC!X?5*E{ʡVVgQ w )J,qYC1ߝ§xGbǜI`rårK^Bvq'eկX`-bkMԛ zLxljyՋJVTt͍Yej&َ]8@;/4_hZL~-I?_ ۮ" #uD#R!t*_oEγw!zAX!%lQGs9&|/N} Ow1 ϢRg;РqbJXrdR(߽3rm)Lu1t'ntBkDe/lbkiZY=} mdOXG1Qݡo ܮ7Q1Ӵ5TBKT+IΗMp6Ķ{B_x\&Ƀ1-OTxyA hW,h."7Ԍ8AKS}vAn~ IRUPu_艋AN5:i>mܞ}/aJaVSzXyhL#8EplEU ۟ =Pɰ=yXivg*xi5mft|?{iy{]#6R*q@5}X:e^%vMTRр/dKe3? zXDwcUĠ<&PFn$HˋLa鹷O47L_? (uϥ5l8(jFbZ %Y~ Ds c 8 ]>'4+r*1> n Z,eDLmu w=xWUxc=>6`~i~&eq.5_rTnQ܆ϩ`lno^gOreOlx CVM VG02}uq&nn11Av8\/'Nus>ob6`3$MO'i`91Vd3flj k'{wAD6ԅw?Eo6&8E=IN\FaGavD~ƖLUʢq2~&.i+p=Y׮iQV-=or3 H#nrƧ8`],MjUUlVia%9ok<ӷ{L> IG>z0cw6w3R]zֹف2XÛK:h[~'?QnB?4Nՠ ?;x 9+c>t4{9KR@!\US:HѨ<\ %hu3 g(DRؠ"UELx>*yq!5Y ޗJvYE3%ׇ O竚aP 8LKbH LԮ0.'1,܃cHy@Ǧ`sgj?2%f5-1$}  )>FCLLwlT$q4kW dPq@^&j{ߗ_]| am8GNv߄].@^#h!N;W|cloZДR("y \."uwʳE$s`bE&h1gLf,AB6?s/tg5w'z26+=O JIY/^?;0`NΠ]# S&Ƹ uH>+BL:%HF?XjHIף{-l/zF'Xy$;z2-CF 4?m^ٚ< ,\tf,]]=l UI&` !GGmXU4s/u41}$5G>D"Ww#JhncqOnUtJkƕؔ`S}&RSWa:^ة԰X11Ctup͙֐?acl:ZZl1ԟ.Ɯn3u>L@ǀ[c8g6sS+N/00%3&ʄc摄'ZVr=N"@4 S\]pog&JIٖҨ@&7'p9r%nQ~HMJ ?ip#0b~Tp[ׂlDP~dhW$׺:r8tZ^c96B!ΐstdM<[qXX%*<G*+@fWLZ[DCC\a["D^g HJ"_OQz{iTCs#YBA9"1٨4d[X)@EjEk+hײI4I<n`u1[K Yn|Ά =)1kZ5fHs>GzS5)2"k[hb''R/3pmC_ ؝|.Ҧ7&!ACOg@#AMWr-ŘgM.х-Tp]+t&qEZftlbo {7gף6n`F^\By.T׊'lSaD^,R 'R&or}6I n⫶I{*.n,Je!.9#߰FgЇ25駢#9O,EDػ>y b# ~D$tItÈ Yf::斎,jkLߒfÂv[zX N3l&k鷿/ᯘߔk@#c.=O0YFI`/"ʧf<(r{\uP Pb,:gl8 Š bǁC[ Fڱ'U PlXp@a"Z%<`׵$,zqy1lȤ+_{A"e.j(fQ,ʊcؼˁ(M3 p,:oMyJ3fr2zlBcЙϧf794vPDӂEhiqfAם4H)"3=O&Q/JzuÉNL{`Qױ"6J F13rY2]8o%]a@L]i0 xFjm,7CcPy|s᷐x]T,FLcr\U Be81MQ)$cNO9";m` Ks庨qB:nE:ʼnfpbT ǔ֯| ~Y! 4Uv5'-o@2G{ns2Jԍ >1ѽyAQ1%{+I*ĦnOȮHa7!C L =UDTKGg 1,cf5-0&ᐋjԖJI a9901)Tc-^͒a̿[&*aB6AmGȓZxYN4d3n jޭ2r]ʂ#h{Wg{E"dU 2x-.)+Nȡ$$oF 9IS}o鵗05M *e~~5Oi&U͡c9,j"4C([WhR(k\lsA7YǞS5Mh|X "PlS3 a;0'A Ts8 C .CﰚCGʙ1JĽWbZhU_(Sa>pߵ]8ЯЎ(jWYsS|W'|>P5Su:Gω3v<( O4tXC]qG@;-x;ZXy0 &&b|,A!* )2=2` 2g&KfCn9 T"l[UpTmd8ƻWԔ{ހ˃_*6n]^ ھPpՃctۑfOc,ǯYpsv?[>>5(%ڨp*꣠\Z޼2\Ar7)Em*G8b"A[K4ߩ4,yau<#X eY;eAo+v@px\\ dxXsqcmڮ7NR̙8jgprb&^}Q"Gmy}(2Xc(ڠo =i$,H).8s"X[ /'&RX^(Z~&$3 iiߑ̕v.n^Df M/ehf3X4Nz'I&~_}b"W ZO)u፿"C<L|[{K=etcX˖zLэBZf\RP-_U3 ZޥvTռ{ v(iׁOi ԩ"2_f>v~c欓²^5Z9gY2IZ 1ɫ]4>-2߼ 5zX^X4HńF#8lx s4A3>WeR@|k-Bt%::-lM^7E-ƽ? =K5 $1gtj9gB֔9n^ƺC3m,g`S߻Vᅢң.HrZE#O)|NLEiC&ЇN!҃?1KWB@ʐO0ɼVvu5xǼbjRޟ WU~=K{0 λ/~YN!2Zբ-B} c-l2dž(e jBNZ(fr'b;CE Ԭ * 1/'{K)*5lvI% 4C:/{$d1)U-v d>JZX 9?8 `Q?'f?h7QؑݐuFI~@'zZ-.,1 0oJ]ݳCJkVKx/P,_)m0/eoxNL1Q&0 ! KI]<ƞ A _Q~}[A]B`QQP&䍞}k̾ J_!d\X'QZ5M#X E(-Kܭfr|FHdLb)2@Ǭ),ZL4*,wuv (?LoLsKN*DJz0 49@ `v[v]dpC=Z3f0i(j[k4/7R+᩟ȱ"t*Q]D~ԁ@H1t) rGȴ٬q#iߣ NE]\&+(5ef '3I.!g.L˦o1>ZHLFD]kmlV-MYhz ,H-4*[Nt?Q_^tN5 ӷ~ le9ϼh@ T5 g<ɜ\~#ѬY2-]y?׹k.DOCp rz(# j'L`Qyr0E %>k=;X6{lțiKbs# TZ0^0'<h3'!k\5EDۙKԨP/Rt+>(%8=SDƖ[@C6oLm@uF9-_V`܉㡎ʜ>[?fn w4XU,ꨪzf#fDI f0lKd]v(%.1]O*0shhgt /x7sw+ g1 8QMȒa6e9': Up犟ʁO]kw vBQ#UKV.3ww7wi\ܪF[;[SL#?Ou}]/ p^+g-Nm}lj9U.B.|$ik$y~9"%<?8oZr yR5NIdbX] E `] o4_+D*&;\d^e|\ qR')Ofg !q00}Yn;tnEcc:M?0NZ5$lCa݌8K(sުUl :c0Bp0(*7xrP)tG$+`&?lZhVbkB"ڑ)2e\GWgB'4?ݑ^l*P6>=K2A˜E.jM/҈Bꂇ\yF9%E6J'+7o%;>{4Ot[qo]r@|NIB]YZEHqQ^; B=Q19N5XdX.J}o'υ}wѐ@)x)~a,Vpke*o{Ɍa`PZ$UM1%UůP0(j;R Y-2$ߍ7mFFg/=b H!lDiTf2-ꞲDFa2xtk>cq: ` y&`y8U ")̔"{pF UƢX*MgHF#fV$2լdM%vⰊ7G7 mO*/5j2n&m5b f>_7=ډ ]U1ݩ%4"L:' ~m5h-6H9oV!yŢMWBOPE/CD$T1B_]}ӳ"kXpnJDSΦR,&P|}ur瞩 5)#m?i\RՔ@l`2vJ C쓱fr οq4 ђƌ +̉Bvқپ,LÂ"j;VKFѰ[Fi7x/݃HۄQ=yjnNz= |ҾYWȯ\y-$R [yxJK3(R&5sq5Z~\mVu0>}etԵ5o($ pvvƒŖWzu\C wUl3 Zuƃ| ~-cxw\ߡ2/Hb iY5fRTlc9:A{o梨 ģi^vh+H:sS7lgX^?(zOͣ/h[H)of.taץ:_]Y&P2OmaO=h܆7 !%̧K 4V=]J8e'Ku13n[NO^P# 27v5a]̘mxCJSDY "LHsi+{J@WF=\)c.uCqpecf0Rkdnl}vC9X88.؊lWMރBВ<}ڮ ї]G0S\B9py0y糺*𔾟 ad4m>$̟G+ٔ }6wb:W8lvL)¨J Qd8ΫGQ+P;IGN-jW!Ψ%o3S%<6ƗmSQiq8G*YA:$du^Kw-A`00/a1]EHFVͩ+"bsƱ|Y9>|[=RS :+ A:O3~"ϧ'z!Bz)=8oM֮6edHޟ %(!h]|L;LG(5u !slpHCEQy+|@i2)a %H_o: =q*a w&̬hI{әNV2UWB|XhDlyxW#uIo5v8՜baϰbZU]AtGeQ#:%yhU{ n(G^$⩟6HX?zYumsH_Vŵp#)Vxfkg^&glMP6,!W⩰`G'Z k>Hܕ/o}|gRz[b+$G q\'~xr*6D/סn=Q+vW_%4$rO]|'k͔Ag(wKY'*Ybds~f _CdfՁ-no&}"g{\X$SAXEo""#]3&?ؿe0J TU'x}YF4T;L7iwe-LC>z+!ffhW` f3@@^b;Ahr,+_7_S6b@WՓ^ #R 槳([Τ}Pźs=ьgю{܃*hz~)WUUqJq㸈H ]겜rIg>NcˏDUl~svGv4&d+JmT#7 +ƻuK! ĕU aP`"fcO۾"wgmJla VEVkX>#1L|&] qB찁7`#ei)n&NycmW[~6,G{Fpd2,PTez s=P>P֑+ 1cId$)1O垇LQ(Th5պ:/D sVlnD>dא Ӄ6Y~mS;.uv\xw@s*a\J@C\=)%[E˦O1s67&bWN:foPPKk&&_?,)yݧ4AwPclg;3} {:[tPK7th|M Rw;⇗YY^Z:Cb?vHVHaR@& !8L| cV"v5ҁKC*Eӑ@2`*f'7M*W"ΪNUij6Dߦ:2hRdJ[U;2^eҫrݵ~ +LT5ȌU2ZxS1KaU5 ʶ %5,KQ-$/Pqo{$VhQ 4R*uQnt{EZģ~gob꧝mONL2F,s_/f6:2K\⦝ec¸%V@c%I=gnƄ[7FRuOg'S^`2Ѵ5eq >&h8?:K/TEb5]?ΧelqZ78H1߹g_l.%C T%h_ћc 6VG]PmcRi"'F',dՑUw,fS9cfE YV9PA-vn8 !(NzcWt ?SxتWI1}O?Rp~jiqWũ@!O(|\{4} \a,d%-2XXesYV'h_>h-NZGN&~Y)`ﺾRu0HuONpdǀG_FD+euD@[b2*Ӫcɏ:-ұ)~F:4\fOyTjd#z=|Y{p *>d>p8Q-*z57Brh>ab$d#*R$')DLFy5v}ﯾ碩jpV++y7@ς?'3 Po' jd7VzdNsXR`5jX~Q;|`$E$C(z+}9N)NdSמ_N?򲢖vU<:n{fd p FBB;5'o˹Lg,CۭK-Rd%8~(?pLx( ›Gf =3ot;_\iB$9Y.rs &G &` >֛I_=Vwkzn| h(Z^ ȎJ 8$&XQ@W 2X56* 5Jzʱ !(=˫}) c}E ðW.Qg:I4@A7! 6YXnZX7mlŊ u ğ&D# Fv(Q-0i_Cic gkf=ٙFFM6+[H3Sd4ʺ%8.;D|Y*Q-TxHFK~ID p5, D'q_?RSe(YX*㿆ܮ:xVUncWiSz54^S,YrIH¦[F*M_^rqoAcRHȢz~ҩbYbI :._ed;_riZKv كl&Z30^ӸSYHѺ> 5®)N170~I3k_~D:ͽ~{ڟ v\\Nw.zOmR&DaeyjdugBq lg$\tDL2;KP Sb[馠.6] :9?)fU`)QvzT<q$'Fan}SBZp~JIn&XhmX0W0$ƦppD cBgݜa{BȥcTC"{E4y$$֑{DC8ʢM%JM"ҍ2N/;X ! 6SBJݭBH鴫Rre19i_gseOlzm*tTÌ}$IJuI%oe D|7u$%I&,MGu1'Q ؗ 6 q;v 50dyZ1QRyO)76^uYM0ն )w _Qx%XfPo5dHRMH5 ?ޚ2o@h(; PWu&t. D7 7ЪK{{Rš Z/5TPҫ;7g{vdo*7WD6s[,KPP ej9pqd x$S?2]ҊCozS#&^q]q4gfo|lE6#܂糦)Hw &߇wR7+}F;+Ra)tTʕ!TaBQݗ"crv d_sX(Һs yiGJcƹVyd]_stB}fp xժpOutjE<}08 j"lxh7/;3Vy4p!!Ly]T&7-i\vY]xR~$ J.䵇L4E/FjI"닇P (`P4"S5dih0EO[KbjX3ޙY>@$}Jp(蜫Lktz2([/bF7'<`j;IkqȥM]J}yU!M7$E!Ve8T~[>^ Az9Vdbjŀ8qJ}~k }XVڍWz_5y6Qvmu<- ~9䕧\Dۯ}H'P`Ti^߈U)Mf.`LoYfkmFg<lE} V'*4$Uڮ?9ҳmnyܔ⦰{5Jw=N#wT9Nl@US*ڱjc}͓5SW02ݛ/ܮ*ԅATlJBY\th]'_Me'LMrY2w$i}LzɭaE}6_x:r\) !s' w*n*3-aDy3w^dL{GTRɎ6vTYvy?:+*IS]TEj(ko7dKtƇQbL"߉cf(nL%I W p)FnWE~cKNd (CrRn0*kO/*hP)OTAlz1ɏŒW_MhR|%(ӌrLX)9[?sH÷vUuJhzJ5x/_/ ~k<K"%$lr+hNyr[Gԕ'Ξn=T+-[͵;?G M?R&_mNT;J𠟷SDع^a7nRT/೬o2S&V^ 285 L"i{j T;~iոϜ(@M[*Y]24h{y"LuEvD\ic,C7 ôo2nA.t_w8ȥLB]״dDΜO0J4*)~=L6(U2^Ppف -OxbcZ`WGjCOδY!\s~pI ~8+p+Tr1_|:WapjJ$w[2dI4K^J">l i $ź,%Yn]bʤ-XcKϦ]2_O_}U5Tuh[@#i4⠲6VD.sʟQhՄq2Hlԁ8^b|@CllCQR';VaʮooH jSq4)9 hJO}wA̺\!>-iD|rIf gEBR=xORؼY^nO*d%mWrc(%!@$6%Q2v2hP*tneSc$ze N fUS{@2U\OoR-vu6gơV>V~xTl*pNP?&a 쓒CvոZVpNHG֒ۼWjD/ ajx}qO`y2yer%:3YS^fu&¹~P~n, rsMo75C(8 qMZO%vrsc[/=KDJrS?E n$Q^٤eذ@D}   #V=녑1/m~=*ߓj,`^Ҽ9-;!Ӻ'd'u8#"fj*q]h`IPNK)Y_Pv%r$an#A}ӓ[Xrz ث@yBtHw{lK<&Gm|&^k!HXOUyȮB̑$ۍ[nJ'js9-u3RB#4G /\p,Y?ǩBo]\]Uȑ ԯ5 x.AwPSIa?L2&ܦ7ߑ& ^~mL]zLޫ^x9( }Q~Cd " N[^S.k:РOPAB`(!c(gUCRdl%./кinONwvfaG_bZ@P"aj{|_lSF;j%c*Jcf1\ [D$r!?jsnd&cA/:V9뻀HS:}1w@yE}2=NBc|Q:0ZUHZo%rCGg/7ti5 i%ySkjGv헛=߷ޝ]ǥugRigiQq׎ 0pzLD.33X< ^5cZ`ʧ>jR&]Ẃj{a\5#V*Y&Up(ߖ+mKI=3/ %W>o<'n BˌeD._UQ>b4\3T<9!܀fYnʴа=◾5!V9?hGykp<)Kaq#9-lC$Ƽ闲@p&F/0#%"3aد taWlD'1ࣈ) i;dUn<ҽ{a[ݛW2FKjv)r0;+ʒ那z-Q`"Bõݏ(k"ՉV*SsMK[/I5@eO;]4[j}`4d?oKE@p[y$kst0ryGs\q(znJAT2Itdq]$cNq*Ϗ 1M3h"J([%JK8?Os:xHI֋QuӶ8UٛУ^l?$EVǁ!㶪_oУRЫ, k۷O)i]("ľ9 ^2bgCt Ԙ;{01M$kvuߔXi뮊G|(3>9pLnhrgAKFe:"RNXN;@ܐ%,H;ܢlCڮFPrmL(' `1 *zTi#u1Xyd9+֓HטaI)PWRX@H1;YOH&XkI>0AT uH<0Us) _5wqh[!!C{ؿ<(dPDYѳ[Qu_u`$@)*~ .EC2Kf&(Uq-_ƣ\qwARnc)ͯad6z^6KY*,I|ȩ8 r=_Uu-s[*$$wk`p j HNeVdgH[l=~AÚH]ٻO ^~yl@6,V505S?u(шv,0C uA?h(.""ksNPF8\s2e!&4}?A>-XDQ Asw蚽\d>/_eVͯ┵0x=d3o꾳N'w3Zs5[_)N<}~8[6n=L^M8 B!'Z@%9=TDے\nF.-q"U&X'Nj5\2ͦ ~22xzZ q16qXB 81-6 6 UW @myE4AEKA-NsT)Hy̟͓Q&5ZT]>Sß 6N~!nɻcE-qO}ָ&+JIPID{?¼!~2w|Wh#D~vlNbh.&Ka$:䤽,3=>lkVb !~ק&b֬ g3=csegKrira,ET)ay|M<1 @#BEVhK&V4s3fF$B9E$%?tsy}DNLlzzflyG$  'PL*I59/)"!irK-* F筗0\Ly("kxe8#'1NEգ;XXXAn;H}:ʶ؎J"`O@Ӳ`gå)Ubk+p7 9"FݣXc:cOs ~JQP 7 I|'-$ R)XaB7v p`}:' ~,RF ݵk쭵Ai]jCUAfK,J| ~ ?{#-@0ύc z6B6gTLU<4*m$ ?yfUXŠ߲f,Wҕ 9@D-#˯KBo;AAp)xE\ߗ`ݻ(I,N4]|O<1cL~K66hVPmr? UueDX޿aj+p{21$C D{,e&+x|\ Ӑ4Lۥ+Ąnd*u"C8._ k\SB($9!Wf]2nܞqFO,&>;vYU#Y_\_3q|ud%% TG{>GPo %mQQ@.q޺0I43*l$gZ˷5SA 'q?M]OQ]h!qĺCPV`(D;^y(tCLNS+ C}+$qb7@}oiesw"݃Ԑ25&yM4D"f.I'+9f|՗/_~V瘝z} P Ss㋷$3J4m#:lN`X*ZzWG!eI+Qqd m;#FE4RAAF縁-hĀr)4Na~6';=a?n\:qYcFw".!҅_y}eQ+)@"B1:,|\W/4, X[}J(5NcbR8?z)IWhާ3|u;IY1ZHDs0oTŌ7UG{Vͮ^t{ހg NC$}lbXΔuLgA [0}+8GGy5UlrwN?4hp[b J<Ad็WJ5DbQh@=2$ג6~D:D,ü-G#3sj0/'06b|KMY[Uoz01#$Ģ|l{>zɈqN62o+H-yk4#FWj֌*4ĒO Cw 2=QoF4 :5O[Wx??ƨzPkGw"Oha`crS?fƲf)GFpU+!l^bok83HK :pɽ&'+dDC͑,yY =^M|tЙ1I)ϷpGȎLsPdmr,CεP&q_)pWR<賆舝 [Q-"oCL yJM`5 $GG/ {EA±xFϣ rCfSxRHTG[kW%ƘˆEZ4qXocUnUK7/O8@ėr1-2axkc:H4 ô饣 rӲ+d%k~ԉAsRlIbSR^lDovhYߺH\>Jܗp!|bзQCcW"߯&{>2ݞnW%xmIr7O>0ԩ20@LlJ]\'L.S8]sY2y+< /rΜ_Fv Mn1R1)"7n=U)B*tKw,AqbNN?_Ϗ)vs4 ydy7σ'L(?X0Clj< m!O%?}a#XZELA{FL@dK2g;Cy'j Iϔ([܇-7Mi1>)[̎r:uj7fp4bIf =_fC3vs!Lݒd3dzrEWlq]K >6ODZpcwu$:Q$OYi jbStKXmjJ?f2`.k0ՀCbY*?)zxhWYJI(_ןTB9[ UqM#_,`\%:'л{j `6i%\#p7RZ4+jB[a}f}5 f8KE0OWWkrgd~i]M|{ 8kWA g &Vأ_Ꮸd,Ô^}qV2橻4bt;GyD5q%a S]\ Ck-f}%ECzެ4C&Ƅ3,#.a#1ٯ/5M{tq㿈^叫8|*nMH38w Jg5H#)sd}өಆ-BEao,3BYZE$)yK:1-'6ޯu!@%b߾ MƤ`@4F)뙓V?O_4HϳdLXoWp1t߸Y-[A`ԴGio3}j̲FS] gr\a*T_Mpvc0/ti]ZNV1 qwGly1|{ TN% u/v7vV.lӴJ@C4ҿ6'5. 6UN"`)m{=;ѐSaܒ@=NbU@VzQ[\HIZGg.Xs?xcng-x2A#ERT/azp79Vnft]6?X])uL7ZrvI_}N>;`p}.cRl[] X(5]tUI"JAPN}EK%2ߺ$n< '/u<H2(Lǹ L*Tyh<`Qȫa?U7z~»N' tޗL"J 7>zS}?_Cq]ds7!3z&9Ķvs}m<ᛦQ@0[ Nm`X ??jV%nUc耟Ɵ5VΚ\\EO EA3,EW.z쐭vGM~)TH1Yl +&T2\]l]RG1kT DhThw^ 5_vh /PȄoO*54dW%fVwR@~yX= oEa)-\ޝxFH6!ĺ@ӳS5O{b]@i3_3ˆyqieaF4T2\ƿBpV e؉wU"8X?4PF{mXһxaw sok !WX!Gedzp$wm:& >:p;P o_fw@6ȊI~oet`D%fZBT]?/.7Żc|Z! g{T1q+&Ɓ) J;_.pЧQ3 a&=4N؋!Kكvl/# 2S~aymg<z'4)[4e п3:x)*(/բ$vsV/= ܿߚ4.nT5r]S@y37&%"iЈY~yteݐ./HU@EΘp=r(ӂ>c "W(l8TDWC8Z IxPByi4{Fs|ST/R3'pIh&OPsQ0^0Y c՗]Y}̖*n2+.tcbE0KP①lbRkKNgȊZ'T 'P%^qwt!}{[D`Ѫۋ#:OlLȿt[C0*2\ؘ:h*kƢH, Crԃi q-A+ׇ]Y*[T8 $u=OM3l?;S;3 l,gۥW0) f'ui>m(c3q2)UCF\BM13o?ŝk^0"loK~Zn?X>p eo~<°EW1l{ۨ~ofI¹p/nMfV[ک7ZZ۸Zi7#*%9w@IᥪV *1-sP=!4Bh{FD( yx:'-GOs!\X(,623wLPqE/o\@KdDxoHH̕H`|Ӵ0w1cu#)'d{@I _s*:.W1Ƣhnۯǚ i5~*&Cp>#V"8:*єŃ/w^hPYbD(o"0啷С"BEG8x5㩑{oGwM|C> lJK?/<ΙE.vjnK8g_dSˍ:W.EǤRjYFd2 .!,ᓳ铻ڝu:vȔ\{fn홮䝻\ws7V9D~ea4s`͠Zfֶ(&*nHk[)wKD68,SfU;hW>CMꩅ KJ5{ 0n5N"MvT/e9+t㒰YdDM_̼d~X㄃l5|2xnCs#|c{ edI,7)? ]bK8Yxt(3mi@c?: Pyf ncKِS@O._ga&Uտw.6Y>r!o Oih0ͬj(a q.x(W[9ϮJ ; N^~V '~JXc*Ç,\yRZ(|IgwJ$9INW<̯7aP'|}(Rc'}s6G.Jg7$|.)WAol8o1q.QQAZJAĭ@wQx.ۆЉ8 "{~)X5I(W>Wtzj'}'(Rs$(I$)3|[FD9S?(=>đ Y}L_ҹ&|7ڻRkD`1zArd5nuBX̽8Ka qΨc>ڃ>g< Laj͛hWݯYjLdmdsg/Уse Xb h>im\ZyʵA C@U#a߹I$s.nX:?-o.|xFS^l}`qIULjb-6Tm."*Kԓ^l<_L6r\9n~bmFO2LAAeh}i7x ~wLniD,NcV*BMk5fh֫C_m^17j;̣6C2WKl8ڛȑ54yEH ^woMB<1t>/o*[Dw"hT?b'O$& y_чUN+fӠJ'ur5MGGҵLRuDl 0}CҎ5-Ȉ c%ͷ2IZ@9%C 74v_KkD:3 \iww44c\3wKH* o4ySN}^jrOX \7>T8V*/#[Q Ϙf[dlܗT&@;r\UDAUqYeNOH@FMpf:c0udӼ@Bd!ւЍL[/+_bGԡo$#ּЫX'7]ǚVl8pK :q8  9/reiy˧4Y!ߞ@WNld6R$AtTx>u쌭emazq\bn0wX/+'Wb)\kH?әEgOy‘2@)x|WJrF̪~5#Ė8HϏDʒ*ޭKb<\O.C+MǗ'֛^"lɗ6 Xk˗keBAyPP7A-D޾V:D@: n9M,W_JY"ʸmɢD>텣Hs6c#nBЌ/)\Ճ?OÚ舰u>4s$0'vfpg5y\WPS6J|?^zҩݬ< !KbdV91"6%8 Eʍ 3%@s_vEL#םzM(.>;i=f'˯f3'c¸]:DA"Qkɫ-O.1k{L'vK6ϱ)?X8Q=S3uiRHDei+АWGS_kWցIy<"F$yYUҕoyf~GELt'pV4{4#Z ;Qa+Mm )x|6F@{.*ŘRV"T}|*ȶ!\O54obZZyT59F\B"]:UhfՂ/yIQ-q(zW:lauk:DbJ m@.-Cw~ auS̜ Mc~_2$ ;a%C/Ĉ'wٰ4{ܰ|kcZOL0W:ܻ?+FXNZJ5MBba1g3$q Rdɳi|ٯ6 R""h&ӆR w$P_}FY)H 0!py9ګ8 z=dZ[l,*6S6NZx}<>QߤD+SOp 9mX8~+o9‚em_}K"'F:HIa2Yfa@=4uKa>ZU j>/M z_,A+?o5ghYӗEImV)4s\-U="%OU7ϒ\~?pET1ڬ|>;p^/pa?ʘ@<ށ;ȨK^ڧ©cyx6V9-Jʫ5_1l匵PsTo-?&VMpj91^٧i5V6jFdDꌞ;v< ]Aex71cqX>g1(G;Q(^8!A2 bӘ,?D __w[C^2'1\#/)^Tl=9'un$b稍r'^uؙ?RvCs*)y: `Lx$5s#PFXPH8C,7CCJ>bйƾ p 6}R5e ([i5Iy ݡP(lXGߖ35J.6j޸msc.= ۿSިY8l$$5}Ck)P?*>ǃʋnglޭvC#=BB0=v, )$Q֒/#_ƟpS=)ʊ]!f}[+Z~{4&y7:N_ߊBAoLlW"Yo sY%g v:[HGpFᖑ DQU+3 JEm7K 9ZJNWJ/&-≫C`6C< ~KX70T2l >OFb>N\ؘy7.Q6Lj +5"I;Tej 1UcήGsoE2mg0!sz7&ܥ+ĕJ?JCStЇ P%uhWi!R {E꬧pE!3[v`Ǣ}]`ҷ+Q`&qs}a~;y|Ȇ\]չϐ08'{ǖ{ÅY JMtȓJRx͘Nq ޵@r*nCli5*ͩ~W݃wZ-N9", >\Zë`%AR RyƹOCe5}r_QD)qHs>e|G›?.QהlDss3'"Vlhw:Pl5K'a~m  k ~eG_Q2j HJx8Zx/6aЫ~sh"|X"K"ۂأ5JBVW9͚mLm``Ynq0P9 LpyFG(=d=~ʷ H,S\ܢ7џ=ZI&*aDh[6Z~JPo~E%J?ciZ6_:yS>qc'TKSȋ;rC 5y%8%q m'(̏ -X5H-&ޟvrj k/B -,_Q8GJgKtu>S„470" :2o/cBr`qKG:s-N:D6q<1wPAa>ި]0M;6㛷ZB^+b){7zbvlĢAW6]Q-n2ad9~;.hzⅬ*ޙ7*V>;ڒL 8rWԄ ,؍58} 1ΩT O>ۉ{b0;&{={=h5gr=+5c]Mz-#R`޺D dtInA1Eԡn +i~\CcP#kiZ:x:Ӽ{s%UYTq9^Hğh Q6%QΑaCP fo|1`字7^<{EBf^2p K@#&'CYIׅ|t~օ-EV+M"ԡod×ϫp EqWA'Il+ypNI_vVn-[F;ydpz% gEܫ 4u>=aa7+e=|-4r.˰fv"oo@MmX"†m@H_ ꜒aϢȰ_[)OϬkoAyOd 8lemgC7QH"(Mcb+txʗQ-JU<]qg..7z>C{޳ 3LV1B'L 1P. |  AÂ"4H6K83Y--￈%1B\B!|]ᅢ!NO'ke[q|jBxi&}6_<àNOn.O`rŹT鑱+Su|DYuKDԻSP'#Ld7AJ`goPpNGEIJÜ`w%tsޔ: hq)'1'1%=FO gh/"B تHC *b: **|g௚dbXxۈ]'@E0'&ܹ$D8i5Hm/5$hr-J%Iƚ3&6iwl7\ɏ !e?PojБ"h dZBmY ps!>~âi K;e(F^$RI@CYC_F*'R #:SDɯEOjn7;4M SYpX1ZMr`إ6( /g7Q^ ΉDUc^© t. ̈GeedE8H  0@gx:E?IK94d]%USNb-tb8VBK!L* 6 #ez&o F 26VXph#$iyNڙ&/ =A@,&u\i?9!\avRB` uo*C]rR,\1`AbirOyοҜ1؂ڗ Ʌ2~cuٲ;;Ѓy|quųQk{hdFI U}A\>*z8&B&uh*WeBw!ez_6&h9g}p_šz4W 6D`}哴4[0AZA(k@''wT#jDŅ4@f4Z_AM^K9]î9s{"Y<{*v:İe7qn_ a)jP@tJY$Ơ&GStLٙs_J+_[1fp6߁ZXߍ(LebSX?[I=O!3iR)sn8;Ί;$*J}d.U/>itq@)[9aj6(glrx[ϸ6,,Xv3sel4d@6*KRj ,<2kaΓo=2M c4"&A]׸ *rs*Eu#0&LwuhG}D #@oqo#4μ|p˜^rS:&0NraB1D cQ*}DuT@A^X%utԾz-l"{/n\t"lJ@I|+|۷i暨-7|7ͯ7{fߪ+^Y8&[8K"\e6"lQgT+sZ-,T!gnôVۑ~ۭA4nEk&\]x d* L/7$6}X(w[EXLÁ 5ěQ6C=%@ o\"zbtfP{~(o/lj3_-3ϰR Y1Hs/][48Ǥ=˟r B sQŸZH;!F|C?i3L+A&ӿ1@@@zu[6s7ۼX?|Y%C"NJӟ+"(Yyw}/}ⅨSq7\OV8Sz&vڎhh+58r%? .\ޑ9M Đny?j{Q6"M-X҄@3rZ@+z?n*qeUIIfgcU1ϽԋSM餐&4Yd;lmz&tϳk^Cb):&25vchB b]}?LJiTA=Ϗφ՚p;#D| T6ie0N2'5L3q'ۥ6\UKV_%J8n*gwxt1^sH"Y:$pn6mQ6SKEe(/ Ɣ; Ȉ'0WsJŇ*W6vBI!_+jZXO(>76r&FU9ׇLQ""G~B촕.\׶N䬜mTZ.=ot&Fh ɖD`8}3⪙wh<|1Dgػ / Ke >LHtT U^bP醳{MMm|c-xrJ6'_IU!xjA5iD*j{np˷%j +5߅{VpDDcZӫiCnahឩUpnb֧\'=9|*f#?~twZ^XO#SO~HVpvEVMS#7e$>b ^ bqKy#o<JC18gz:L,x8&/5)kyUj#,#~%´nʞw5I>2 t_R:dH̎Gi&d~US3TWye[)zNݐj 8]c+&kDž}Q(%c/fB˶)\sM^R'ןbwV}4H]-'m:4y<ɨq"7;wt9dgDa.yDs.jbc@M}b~w$= C%Kÿl;"gMg` !s ӫ1^d9tcrs"GQa6t'q*B1*9tۯ}_.ojk$ ϽMi/piJTFLBTؒ~LSO] û'ÆFI]P cx_+h"F=R ) L8_fڼƤ:W7 <9rkYԞrVT1~MbdQg&Vꈄ™M"5&K!cP=6u)tVIފ8^$Xx5eN{6s9qL(;-1?nqcw=S{dxmxdNx:tGɘJǒDžN|L^:=^`{$t6gH'5GK"-hX[= %|B,p{~?MY8T0NK2> ೽PE1F ۂ^c G@ YW]sƊb]7H6HBl_9WQ=d2pϰ hcn`9S*1迄Swv=_ټiVBhHCX6= ճF9#^q~to} ͞8qHgwM XOzHl%ћ!JIviةZ\ό;?HYδw>ݓRLHA?qo:8vן hJL pf(.٤aϰC9v7v]^"hۥAS1=U: &ߎa-l/cSOS_":DPT*vC~h5?I;2bӂ` %rъR!SCAiUP6xl\28eYSesx]ʥ*X= IQ >pnlƟ QDhYAG$!.xBZ|kjľez+"^,|IxzYs ף@٣zxy))NlR*H&ߕ^{E) uyGؗjtLK-3]{ʑۊM8@ yc%a~2y? ޘVQ]UGZIL8g؃\.Eա0e6 ig/f^LpbJ# @T,لh ciOaJmU _ut4Rt=߁,;db:{HVYKWTKocW+UcOue}ֵFaXг@F%9n߸d! = 1.X+ C{BS_U B3U4z3=qQ&ʊJz3H \ٹ\ B(2+kuq"ԉ3&v:23׵ hxBѺ͎BL}JlXb()sk {qŚl57#5@,q/&9:lOc9<.)C8*ZLf;ݓ+YalFȝ Oj̀6R+b|jӄY檟!N6e׭4n?E MS'ڜvU`?FWݙS#e,WsN㠟Or1Mߨ*(ԼaZS輴Z pUqV$iRed#%ÀP" WU:L/&xLw]sHhRiK.N%^nj. _pw7ÚFo q7IAo4Hs|]j\c4nY@L rBA_x,vY_.sB6yu˰kG WO1EoAkryw#BjpU]=O_E3;dLV`rzDvVcNO !IP8Z;tx> 7>ucP.نYg s6I"+Oz570ߪ ˭ڋbd̸ Fqe,WȅKN陞Cm+[ax!tӼLsMr7SG  ajWOir@ł&ЊC]ɖ~L|Eb{KØeP)ӻlCd+JڪOX?3x=0E<4@~%7xr۵@2!$ 4[ZVH3Ee_>muq+"Z+bt}w'&{ |_/&H FDo#PXStҙ1!j]6N),t$PCZPαKK%E\S1$EN:v65n F99 V6I^CbXˬ0FZ?5SŲP<<-/C~);@e:$gEXS;^u2K&wkt/~(tꁟ0ah.u*ŀ>8J٢5o*߻@eaF:=/Y n8C0$5(N6q^ =RdЅoC%trpz,v({-ʇ9{#`'89n+~z=#RO}%:{T R6fuQJ9>B#9lM!wNpLu%fHy'U tVǰmvm5- HnN14VA6Mרhv9lh'|gV-u TRGzzÐcrfpۊ@el/NVH@ycg\.+ /,Zz,YMT4ܶ%\"^ ei9M2؉t6Ćb[1سc T/r1nzsDҾssh&vC.pQP qGE ؚ]٣->s8 *9;ߗxU>ocP"` zI^~,=5KυtS淮 $g",ЬzQ^q3  ?d]B`h/`sqg 3s7ږ\vP/V:n 8H m;X.z@.ھM!6h8 ddc pܦx Qt'@?#6pp6[ KVY2q~9|m\P)ϭ"a*XJUO+R Y6K mEaGr]ht2ZO B#. QI R},(+]kͥʏibQ!E]0]⋀^2:+P.>$Wx xAD!4$!gQ++c &@tGը2q?9BN վXoKDX-h }8r+"GpEإM "FfdT d:$Mw9ILG9*iy 5rn,cz\2i=@˥h"YY@ɶIHrc~ 614H;N屿[I0ɠ4 YǮ_v8 o?İB\Ћӛt9,/cLٍ#N'(Sz߬tV,aL$E2Ϭj[L< y> .n*EKgŁ5W-ϔ>$fQ;{qIC j +[5@˭S#DV3,7nQ/H6D:&T|JaT7F졬+ ))EzkYaƏ7\nD۩f&R9eX]ktƂ)*^4cX"t >g]DDXqfFHC7q 7@&Akf_.;́ޫa)Ub_J''0E@XcR#jp<>ڡIS3tJX6#SryKQn^k41Ǖխ9hA#BC + OK|P~N^ 7>~}<-ՋtԬTȚYįurbEXP%s.q2'DKR^56U/i6\<~w46qr9,-F_M_WC%߃QD'hQ0JH;76 П~p8&z:ϔl#>sa4hc$_VFh'$/y_cptFWmؗ(p FОϲ[@ MU XBp;ۤ ̛(7Ў>c^*d+DWën8疛[ 6 `ҧ1a hWUW2ޝnA+0ա }-r`)P3*yy&?sIbi6Gƞ߄Jfi,$lx.yG ]2`qxj978\c{ drՉxO>@ ,DyCk=mV?p=XքL'g=w0ǎGݡ~q 's#[ͺGFe 弎 K?~^ֻ$P.iʎ~|2חIL*HC'zj*L]?M5i՞yB;ȳHbYMo?YV A}f;&rC=Q6^q(.B2Lhx6c}ziP}E*(u=)Q).Kz'H7Kz+IM}AO{UH5fgh**v&_^dVM˲aSLK4D!N$=uN|2,04j\AZ}5pP @Aʕ>Gա|ݲP!tG/-_+PdQ=YI+@YE&LrХX=d#X:H)]vtQ[^ @i3PJ`mC)v@6 X] š@Amb#rd%|ämN˲DG)@J&)a}ӱBՉGn3WPY0Ɯ_\sxv!G `_(r ՁK4dwk'lQW`ժ=B"cĸU!iߩ GB]Il Tz]M" [q^#]~kyͱuFW8;\j10&at8 P_p*,[*dA>}UϽ&.cl_S?|Iʠj[bq@#@E))W-kjRL.;K-nb@fb?xt]V?ZI~% 4$!T[zA|=P 5bTUس?NRHB @< d,3?$ n.pv{QhryH@@sD T$8LÔ؛"~5 {GuұZ+BFu$0*k>ρ׽; ,kqgz  ǡ\M/`{~RwcjSs[]w4]Hmڐ.{pZ3)<28G|U Mr( P[2 !\J!RZ;[w.\Ѩ> -vu#fgDmd/`Hv'b9a5%fDqj79ҥ)qȍk>G JFIq'r % P^uR#T҂`{fQ}סO~7HÊ zE'd@@EYV6 [fǭe=TVͱBgng Ep *<9ή -U88Lo)Èf6&ӄdsƢxM$o1BXI4[AfDC?Ȟ^ 8f>OfFC" =JD AܕnswR_ ".{[Kimx/3t'm/:=QDn;+n\ٵIFfLN꒥dq"t֩L.Hh> $t?)DT(~bkld B[Ʃzp;f"Ex9Xg{E `Q%'kBN^JT0 E= GʘB;;դ ;w|Ȩ2/9y0B2#M0ᙫ% VlBzGP02X% +KQz`ӠA]u>/@+sMqTHd!0O 58&p5qT[-iJsEYcQÓ ܾ79˵' \9@9[RSro2艕#s&8Y:$As۹i Cf d<$8"YYnzNVlҤ=)8lq\e!+X'is7SPֱ{1s7Ed~FsTV4#7Y.Vo@  f9+SN(3*9O}F Ujaf2v.t@g ]ugkv'ϗ=c:םީ,E!2ކų:JPva-lxĭ뽼tU^`D6 y,`cþPdWqEϊ{2`x>]q4e]kg 8jjt"6'J:z#\w V)@wRե/'3c"s,^D +5qX(A2Wr^p]Ci+s*'uuɠ8D G`0ב$ 4,d/f ZC҅7~gl/w ~:wvy]â|h?v-~u=O#ؾ°Xljb ϻ39a(L|pLDYmq&Nt A.nBzƘvm[YR1wYd~|'lI#5i3 hodXWhb@f+ouez`g/,2~-v"v 1-RM^شx]~Z~2r&W ]| k,C6(Y4]JYy!h+zƀ]7acBB}/%޹萤+ʾ߈՟A+=|{쥤g㳪sIjuDW(?U_-4c\i2vb׫U(x:0\2F/OL2*CEM/G+ҋqEWg 8a/%2i*}JZw L|laq,Tv}XMalM#a漓wJ7"9t%u%+}npjt4Z;k|H*%e2Qe3FC]b,B嘶u3DѢۣ@XaXgQxk {})b9smH4*,d(?mB,Ņ-)2J6GO|SNA r-ul>\nfP.Gإ݆Ksv i_y/:(>})c5K[e]yq^9Il#dw* aBCy\%D:Sh̭lisMKSdziϝh CMQҿ sk.F`k{䳥)} hy>3*Z, 1H?,4y ͔v~.!rC{ԟrP(xqxb`O".SWnGrF4fg ^Ia AjJ%JɪcgtG47"X6K ˮZj'xX򿝦T>QHT"Lf~.*N־ FvoG n@1k:ZSDֳ$eh Hracd:5GFG[t[8P|\rZ γ wCk8`E!W_*;q: ^%8`^L6г=j?CF2>txU0$?xFM9hc&w2li2.Ū橗fl 7^Bx7sȹܵ3I3:8?C? pxZrC}7"М8S?RD 4.1ic=R7<#ӴӹdFjdz=Iᨪô٩As Xqw3[cp+*&Pe򹺤 I+>r.i0 4p/k+DгY0*%<7Ke04Ʒ:[X QΙ!EUA8bb4N Rvy:< ܊E6CɮoawPR P\,s0\v9ԍ*mftTy_I.7dW,PyAt{R]6V#;[%gA J6!vC[k3(Մp- 4$c ԵqpErF;'% ^^m0h3h!{&P:?i qnyRoގeՙcȣͳxwe3Ѫ3Z"zEX hͽ"XjΜєM1Zԅe0@)E.scR6gh&o5>[S>/4ǎEŦ5iK[~6* Ptl]OpP4Vrُర &=@?_ШoU4Y1<蓠VXm^韑p,8*\z _ؚFES8qgF5σ3xgԷsq%U=ꝇ7ۯ0%}@dTmAȒ~@TíWY'NC fOWk-5]\ֈZc` ǜG t1{N!c}Arݥ#Fvb55T )CByT&%NVӟ%*u6fo ݶ0HÑvFdmQR(#)NOV9Y8+P~X Ѐ%r$?ONfls~^[#!n}a#,<;1[x_98+)Pkizl/=+yak 9%9ӛ텛|ErѤOr%^*uuKvT3ߍ|s:a۽-P1 ILp+ $9SCB|8@HbKғ]"-.rP_ogF+o5-#ֺTgQ|+i\z %ɻMJk>KNP(Rm[~c7+AP@~-t$s2b1% ̯BorY'm%3y0h,{|VѥխMĮD, UƑqi&Wo*"޸w"ꪚqx(}2B &H1 (ohϭE} r 1#3»̩UoِF`-W}iYC3x1DQ4 +/uP ,Acvs@?M+Z'v-N5rzvsϤMi|uນN:}(N.XEU5wL->]Wwl8Jb 8fS2(]'B縫z Y%YO44 ߲EU\/ R[<+ < b~cΠ!ʌ`Kg^273Fkj3ퟃE ,Ͱ+%syBϰl.S!q/%5hgY1UFԯ7iV]1lœ 1S z7Y`zc%DWڙD8x>YdAl&ӞwpɖUQqsL>D09SBVdX4w.Q rih䣥i$ċcabu$: oD^UN^W?+Efu;IQcf Ȉ3xZ;b!rB(O2 LktsDP1V4N<DZQA@:DNύ5}OˆvXl=s%·p c뀧=B)" \YL~ZʢQOTF yhw ƽxYupXqKw siAHĆTM9^_"mG_Na#:8ݛF=!T_,7 6ڜ2:M,ӈfHl%9ȏ5LmI!gңd6A;<Ƅ04#b* upt08K )TE/\ytPs6f?uw;N= K@-'qFOSVTZWĚ-_t9=~(|YTYV2BH b78 =y5$^k>% czQ%N:aTb l?kS/ħDQs BH<&[swzKpW1S $4 15:ȎjdIəpa> a>Hqp#`:s^LJOFA9 ؏tLX.ǸӼ>}[4G4NRWR_ԇy4ceT<&۽U^׬BjKyV)NF6t;( @՘Q]p[䪑%0N4n2Hy[~2)2-tt^c''*vE:7~p%B@4HdU:3_ZWn}]htfg:pj\]y9*}6LѬauN] 8|=[xk= z@I}-^>6EK|V0+ A1C% e*<4mlȔC?dG?g㚔jګk<`m 8?HX2v~; zDUT@&~`ml#RT!7.#0b!am1/5#N}]Q8ДuYYaI[RcݐejWUOUĻx=HIzϻ i3:H o1>Ț7]lPXV?jO a@N#}LXX-2ǁjc]Ǣmb*f X I4&DH=}cʿnh70"ѝYH3-4iI~OQ}S^0MuԮyW#j.2#{ վHB7TSS-i63z*fZR60\qx}|+| &;wU&W5q)yE0p jȋxiZ/ (E½1Ld Piߑ v Pt?n_;=Ǘa7sl&!.YI>K`z SN %!#ՆIoDx6dv1@dJZvPwayzߔ& 6 6_cIq'氒+X:  +(\y[l<|f!|FW`@%7LwT$2MW7:(a:3Ps *Cղq ACh ~6K9ƥGS1o[MSiwPD䝔d VBfOt U+\g~ݐ6Jw>:=jU0RDS4Vۙl'+SA%W%̳qGX ZxR}4i+~ 4x\=a0~vo-F&qpf3,- ~•dP!5٬m."WӒP[G5Bv]G;ؼDlOU!`dwLEsJ:Vlxg@:o2)hyGIb#ȷ“ꓜ #T߼(?=V{BRKb>"fس}cxchI?r\'A`8̍)mBX%[یL2rۼҿ]dUsF /vG:ᇈ9C2p.*/rnq_C>ihfTZ):Tka]Z}CG#h(~pjءW喊R5euk+`v[/fܡ>$L;\m lrS+Fiâ MF𕁿g].H"`GU?<kt@`w_'㿍TU=yRyk@I&2,?lŐup#5odI"6PZ+`"0.v,kJYa}hcOW|c.1ÜZMTH-/9Ln!gb&5(0Tݜh6cWQ˿=l]{eOvq`½(wjLWJTD>A`ey>! (܍C-lw`C%\ƱSU|{tᒍhH9sbz)e#t"Ԟ?s1fKY 11<=,xMV-a T=Mf@W^~sx_45^"^WS$iȹ79 őLi WGa-7:UrQǾ(-j(Ejt\q(E0=L61(,px^@Ks0ZvQX~}t(X&|bEc$Ӛw:?k*iK39/@ ͨ0nbY_9:)vw`_l9P8Cn+PfȻv*g\qNځOI_GMLLX7?xCcލ/fUO`ΡDmǥdBќU=3jI!CˣؗCJBt+zrX̬RuP4 LsY*M$w82Ӈl {V}캔@@S[04xφ39ޢ%#G`mlV;T,= alv\P!@% 7ɴz3\}4УAm נD(U"<׳}΍\/$d%s6jA( o^.>q~ !Gg3ī} hoO UNf#PS(~WZt|B7J~C ܀s'ʴX Y ˍH]Իk"ۂM2<7)xpM -9 e W'k\Mڔ\1m "[tP}m4FdF_q]1G̓Ke`nRWfegoUQnL lvC9W`K-\O/Mי,Û !߳c cϏ>*66ͩy2KY@)H_$dV b_uH dbՁ0@c26 &X/xuוD!0t6A٘gl|f!j\u{ҧB W8x"9fCyD+\[_f5358[゛ K|%m8<d@)+N/2Wqt2X\B}r -_#~O;3`&>{SS.25wv6v\0C[~μ0v2)u*e':V.ܦ o4pU,8QP>ZwEQ.U!ZxvAg1a\p؟ ꯻_ȯRnݗ9c^M|VEħ F3Kܷ A8h b_r4":Lړ%ǬJS/r{@ ۍ]0o[*P4><8vx3cԅ _=[g%1 {uV vL>0&B:=ɼEwa̒maC\cc1jLU/]ګSo,;}ƠjRQJ9ơ|)V cNZ|^z:<]\p婤!Y8*qPS9 Us#JG*{:į9Q]]RXot+cw|*Y5A;Z?$*>Ye bz=_} H<~jCT8dTa5X; :~6? 'E %ΰ=h[>v)Q[Bmޯ V.#Ѕ41}!֪iJa{9vM+doRM(Ys# G>b^;Z/|W" ~Y[)dQcHSyj#lOe\7*͍`ˊq7~R.&Ⱥ`a.9FNؼ OM9W b@ /D=`J U%>\9FT#v PЇp\S DŽy8|'yIX}Z)@VbYFB&g j'k5~l؈$ݶ/ylk'SFة08cRMQ#S_ Xǧq́ AvH9\}歵x碦;YL9~r9:VT 4/:*+FEsc:`O*FWoBNI8ZbH(bsY1*ieI4UļVbJJK'Ei 9YꡐFpr޿x[c=e=FN]Է\+m?3ñǺ܎>8S*1~Ntzpܲ2Ԅiǣ>A!Em6Xfľ9)cA tv'>ޗɣ\-,M{y P7$j{Өv9A(*=u-#֦F"`a+[pP ㌮%?`"z6[tmfCJjFٰo7矽2 v^JqϚx T\x<)7ף62uL {mJ[AtO)Mmyrtst_A A0n@QM/ό ɏVFTӷ?4qJk_h?>rY uXb鲿BG >WZ0j]Q3kC>q(X? Nv$@p-&}-4eH 2HiZ8֌ág򒡕qѕQZ^b/&ȥ](vG!R/ V߸TUIə~8"Qh;v65z$$oqU,/gJx#Pg*7TPcȐ4pk7Wr~~s;fkR[-va oV:պ=():DAOV1 w8gi+VvH/v`aD##2 <r"kAh)JY:k~\덂 f eC0ʾ93Gds#]kZAz-y 6y.4^拓+6O8Ecv!I$tQƻ)W%īj0v?b rQ / cԗz;*Xv6̜D y7vE&@%0J䊉і; @H=$$ I[<o}d`.;)[BsŶZ8<!7)r/0Wu&9^Ö}, Ij4otW\{H+@Qg(q }(pySj9drk5h!C|>^._ӾF~YT D%4QCv+4_p(+hI(Xr/+)Ue/jd(l-wҧ=nVpj ,Z[VƷۑ* b\ (Xkco׍na|֤m+u*>c9tjo3A+m [-sҢwIYm:,?&N8p9|Ky@ aIMɁ A7Fs>d%+I"I]CsJ\(n'՞1QtP]x4 ytt#^\p|Aȑ`ҿ@X[к9ۤYj&̅2zui iނ2\^*go~[ZszC,t"040yŌ]2kbĕ;ULŴjl|GC1 !<4(A_BE*Q6E4gKTІp/*PכK6zYB' #b$s^pI3%sVyEW9/n@2I ]WT(ɧĹ4ܢY|?T5- EogmSG *7FIUh]@&,6w)gdzr4˺U4*yt:,ƍSKB d<]ː$Y4+w|QO7:m auPukAˈa F,%$yXоz-1 @ FgO,c}iJFe?(O\gq('HM9zhy@'qZMt3 2яɍ*\xg<}N6{{̙T*1]{\ 2⨃Iw(!F+ꮴvӞyc{iP$(XR(c? j^ RFSpΦbm֯WE&8#JBd<Ȯ1 < cTn Ee~cl`QZ 4ַHyD}XDRxVA[5^}; [^x'D_wrFN:)xKUkJf]ZR!_2()<; L=u:.]Sgj7UuИ>O^S(͟gTʕu!he tD>ֳ= laɚyg=jK47(lj`)̦xP!דdʣqZƇ#ZyPGb*Ƀ.fx @YZD j\B]T7J7eyTf~2ɚo3aVJ_Ô-J[UBVM6n?SB1H:^_L ՝*T8\{{7SbfTp6qq/a?%']O_t? >Qfʱ2n-kYĸuOHNǣS.V&JHxٿZg:FWXO]Qۍ܉ n*: ?CBdsKa#3lґDucPzvܥg"5f׫=.kݰӃ~3vZh-pנ`%T^+`㝮/owWBfTr6pZ6dŴȿhh*"p?j,3`hFgWRk/? mS7Y:9=-5Nt,7T+OՃ*έs$[pqCZ"b:Ѣb=')麓Lcs<4E^MjKV1$$]תqiZ?%Px6vw2ěWlr>2;.!-r'K_,6`V$"R\ԖC ֟'tQWx`9'iH{/z;ͪ˜RYVHCa#1ZlY>Ot2H쓥vvNnbcEIY~hD%;ky͎o ;j,UKFXU (M v4[M;eq/ ^V72SUS\ d;2̾h#\wN sXX]pU܃kS4_b;WM㗹s5@些!)Y2/^M6O^5n3:ۛn=:7LF0H)%_3@>y\;Ts\3OB_B }n.m̅X}yՔ =5W7 +ȣą@^yӨ.# pUgQ'??l+/:]ԙMY&?I͏3.Ӱ@9>IC224&a|;$WLoў\9ObulI'F(+"Gw)|R׿Ż0+_M Bd *)00Up+BUpˢ->lo'c tlg+4mPXѳ?Q$}]oG7vf/a5`z.Pք]D.5!5_;=̶K=Xڙ3Z W/5LEDn{:N.);0m>SEL J Hg  #ĥ89i&I;]p~|*S^(ւNZEBL#+%362]Dre^\[^Yg퉻eiL&P ? Є@ajqt g}3!ң@uDFӤZ߅ Z< c}h/B84cY ɑ6>pPfOmʀ'{cObfK]{S_i+LKJ >avųn]^ gW"o07t{|sy :vdYʙ:[ 8vK&Ә? wZWb*AtV')5/>>%,wtATvv9 BQnӗ<9 Ͽ(9]s^H.)^y~6I'7晭]SSw2:)φ hMjRRȗ-Pt&z s'>S_pNYc%,~~?G i$v*;V*׫[L Q^8YX ́^qb"5+hU[F&^}Yk6u6Euc=Id=nǰe"OkPjW/`BOE55 !Ax4Sov]Eھ9:*&p:AgcF$2r# &H`8u)ڡCXv p&Q6w_-z^l]9Lې$|pg8|E~diUnb K-j$!2S}K9H$w%i>^,Qb :FQW (H@osLgU!~L$%n؏fl":sqh./SZD|{3c"ܽ+U,Bӧ:Ze5 XD Q"}>䂦Q;.0@eg&J dV,n mgUnj:}%wÍLU|_4 \.$Q qhu1vH6 u_"nbeib ,7Y\+z1s.B_nW9`773)/!G-2Nfl.o46AyÙMenGv2·qd\@_ % 24\ Qzv|Disg 2;JkK p~5C.ū&`[2)9D^b9cu?C,-YO.mۋnqDݍ[@,4l |pS DS+i.=( ŰUlJS5WS 8EN8< 뉢O_ _" Ry'bIx?_juH%%BmX"ND$AS;7Qifwy]MI07v1ECQY ɵW߫r깗gR P%QT\ |I/X_Ȫ/=eBO`,w# DqK!gPq A˧'`B7ЎG4a: .e?fA۸[I7o-7s& ~ BKS.nZ_ ߶HyG'hZv(1f\L{TAoۮ2}бC2dٽrJ"Z}0p/h](؏䞇eռeDU3h)7[enL( w Dh:[1^>.?! oXͻ?3Y۴E;njCj˔/3q$X\L %R؈jkPbzRi1aVg!ddj 3_8a8ϵ*n,a6Nz.`x[zWrD3jg;Qz\G ڸʹzbTV46=(.O؛;QV}ZЙ줆x]Xyܪֶ P!/kD+@(N 4G"izyMf/j/`%^~q&*ez-e;y=>:MnE{U#vu=˹MyDN6g#/P,O9lۃ`^jkKMJ7][>D]$u=*GלHQ2E,KBosp=GT9Q2o :[Dg̿rBRZʺ/yn.,Ol^ ꚢ;29&K3OyzT~ QN~NN2FB :kb<.4bz3FGfuy6RВ#oGydWuٞ ݫ@CN-&&| O 앮\-w7|((`Cqxxk4dd9k/3?9逅[P3>01ȣWZ_Gӽu_K1{aayFwP:I]SH6̚wM)Y]?KQu$d<Y_IP.ߔczSUm cܷ'Qtyg8a@`Fu#u5S^TmL!lEfzAǪkȽf-[ڶ2hY:HC0# BO3,`Ki.{ɀMX~^?l*9#T83n nM֐L,mJ)9(93|K$ώuKޅDFzjh|>7k5VCS nʑͽ*mM.,|84Va0` R=C Qܦo= W Զ>?Xv8 } ە 7:Q-<7ʠҴ+|M[ZMoabc:NO쿸@U c$|O?l.RY,h55gRC,<2 WU{2 p6,*--f 嶭!P"tM$L!-#SM*˂EWG =7q:cf u*vp> ~|=(S)(  TxlLũFUGgku@\cfXu6-_CiȪ9LO%U1v!ׁ#C~(ݍ8QkZ1(GTdPٟN]U)+H #!nj, +o4o+,mM(Jc X89h%nCΠϛxHSp6#ݰ|~R9'ukxQnyu)::l#H7y,;el52}4DMh HCq͎qyPEd&tl$ק .b% &>GR2ʙJ:H+d1|MwZ:]dnk -Q|9q|βo hC-ˌ)@iە];-l α/.NU}$&h4Y=E-L !T2OVo"]dKr,ݪr0g6[ˀo+ZfPnΌzn_0^io{*%i}gqSDri[4Lcv:u2]V×FFcA`T)0~沷0sv{-Pms12OL*dq! 8H&!דϽc7^vܴe8Rj'v'Log l Vy'O=~'g> ,32*p#;hXJ# ;8Y!ox~Ŝ b/,LbjiSy|fMY]R॑Q}6אo2GfPQ&G{x/HPO,w>]HI IXmM6ИPtNDkAod_Zg-U-oM[7lEđ7H *.Ud㜆l4zֶ1 fB<I8"’@ZT TdyzfD-Q-4e n&ii͋T.A|E% "udbhپkLSɹKne{g:-׬5T+Q$ZV | }{n;Nt~&D6X/fZ4۹:]0-Ydqtg[o',:n ;Ǽ;Lϓg)b 62 C>_ } 켴XlHs7)5}/yD9D?ideX{4DB[hx Ŗ %mE:JՓP-I/8tpCi:^՜I;K3UDm۹l[7}$f"u/u*TF71I_C&wd]hƱ>׵;Wq+wMyIc"g'9;IK[]}/ 2Rt^`Y$o|U'gyxH7=etBeo~C3T U:UߩcFuk, םbJ2nCl#Ư'f|>=Z`WJETp$w!2\ς 2®t{.mF+*(SxݧVR"d U⋅&kߍwܐPEm!-{QTVy(>C%yĞW`9/a 6qc{PbjL8V+=e+Î0 *mF ȷGW\?eeչ  -n=. Z1b2$5}t??J,Z5"!5))Va=AF';]-1# 7 +*&㔮 *`RސE=&2@(vqGs0ͲeBx~@vWJ*r˻]kx).;5mTtU2_X~3GR/܊JЪeKu ݎ~>dWDV{D:cSۃX=e!kjцUӢa ֣^@;&$K-gë?ct#).H*A M9{k*@U8 +PM=!ԑak:lmYК!50"+OaAԯo"jIO Y~*E a~]w*C-Zvw x=2aMV|zEңuRpar"L\ 8]dKZi֯dpb$̖)sb@m>?ݾCzJ̇j܋ !d4 ۼ_Z|G(%Ή|A!!˺> #o΄"{Xbu9 ]ľ^T GeOWȷwXL#TH<{۬jGY נPɝ7b T:udodwr>uÚ1/Ty"UB9YO |K&_3ƞ6JA ^"v9qh/.T0HmvCbQBwl2iRW?}!,7 g 1!\/B} ;@%}}j5R8Ժ$)h,.ԶiVHpF1 H!D6fygd_)<-/ TɃ8~.CUL p?[V,̕? \VَHߙ^X8]}z@7X:WɯY~]#_X[B~W` AVq`IoaPMdኴ;P92tnRWv<0BmO{0/%:7ore0Q@(lxG8e+Fic+@ʇ[98<׃1cB]WkUh45>cVChQ <41KDU|g5I^ 9H8# ܜnj[s ?~YPO4,h̘FcG0[MC7CCӊ/V+ g󺻌c7;U[v^}4Α(7H=h/q\p3儘Vc/k'| Mj[8 ,t5x-jDR[kׯ fw.B6\ ﭐO9;g E%f7"|<܈:Kx̌ulY9a7-K&.jY7l|+ĝqPA:|s1@nwͥ]Vij%͕!C3 s5B]61,?͡0ͻU3\vL}'ƓYC1qVaGjnÙiF \K.7_k?ߋ1O7S[Pzy6hZ$_T  }ߟ=lqWD8xߏ+ Ϥ*l6>p*e¾4 d+#KYV(TA%p~Lf.g9Y4>(Mo#^VҼL?l{mW~ZU|@TRV=5zy'Y""|s@+n{7Uo+SK j ,0vB`|oD虒!2كRXъ0h&- gnР5]J 4بߘ[l$;+iB1`rh9xU6O Q1Aia 8b12}/vn1T"A!sS>43 \{߮RzT mFʈA% h3 ]4m^#y)@P~'/2J%fBQ|$bBc%w V3X .Jdx&2ƺgsg%SQ671n>`ЪHݵǘuO7n&@* jf!:5CM;4N0 _2 Y`4֔s=WnKI]5 Ēũ}Ǟnx&20C!9{p5.+ȱy@9 bA*)way R X-UBL(1n^PF2t)("8מ"{&v"آAb֥X-%cɂL ,#<!(`/;0??qHS!uBZ}UE I JsvX_^ 10>MՈ*?hk ?(!}Ųyg{h{ L$#$-Qآ5!r7HrBIO!,7j9'wmϚX30?C!ņ:!ݶDv3D$~p~M3r-K+Opnߏƞ9|E- kL hLyEEC ȗ4v*jMD"!0`[ck]' '|:SI{^PF/:l,c R>LؾOm3Ԁ!X鐌]&wJ%+_$L~4Ao<[ZD=BS;̋|3gY&^7D]?cVkxObCLV{D̗AF4hed?zªkp6TmȲU-Aak7}kBy0f+BA<XW΢9ru!s#,Tp6Qf۸m]>I48:|~hu&کdhZQ0_؁4WID=sFGc~Ƀ\QJXt&8>Eto--up M#vѹ(ªxd:{ x,THU8ԳG̱I^g4h!_xubAy/l{ IAmx(ݖ!0C 끸|+ac' GA"uƪ $-Diځek9)WBbl|Ʀ~!_m է#̀5atu|L%)rP$ TmF`ZAxd Dz&"Pڧ.!NZ~@|*=Hn Z<=ޮ9<QW}+f"xOS0Q1/żo?oO JԸGzo{OY8*wtW}V<풐5q,B~pvIoY*ȷ 0:4Sd+&9WQ CN:iqzEb$ݯj^Fwϯdc+K;b&X\6q򬧗-[?u>.tޯŽe+tS }Raqk35 pɟµ`F>:\,ALU|?ٰi B7|=Z .C߀[*󫷘svm߲2@WptZsu{& |Yhޞ7(M/5ޘ1o;[Ŭ@eppf L8nc}^@)ޜZ($.L'A㧪4n3G a m|>Sх/. K`G@[U%SfTzSd+{ɪIHG ~qaW3iHiċg/WZ!:k+-P6=z0S:̨-8ڄ_vcRl4ZIIH}FɩJm^'BeLh d 3{;Rf0!LВzlkrJњ&ۮ:%B=F]:"/·x3rfd,Xe_7FdIaUݿА;:lͨDr )Ixw 0e] Ըb(oM2v5:M++ PZSp\2e++r)t ĭK SEG ϕAWұ\4d>,t:p܂0)j%F4ELZΒvITbJۨ &C\ȲۗGv ꧔Ý d.Py(e~ W 凤VP,{ko8B@ ah{H8Nn-js8b`ͦRwc+0痒m *Wi!Y:w%]Yp7Yݰ4PE5ml5ҟE^C }g(I }Ga+zf-}#di+UvWyI /7\xa`Nʙ@65/_09o&4=Tr21ݾTX|?mBұ(u;y N,N "=ݒCQ@,%a&i`o_Bϼx_ʯ:_5zpƄrM:Z>I<蚶3ŨnAޟ~s&"Wf5Ȝ "\,M8jUG[fv{PY (G#:W%Dt;^[ [=g_Z/*FGoEHద ɩ]Jkdm{%'Qf$~ohC{RXS~kwdvb0RCy+khNe[] kgo7e5qa4Ne:oWݳ1ϓr],Pk2[{q> O!$n%2n41iHF}%}iSMA9Mo;UA/Ӱ_&YZ۟?q_3p'6C3W~&{%aHʄrT,Wtm+rޟxnzsi.]#Am +Rҿup!(tk;=GkK /â ml${j1,pa:+Q^.>)7k^/ryjor)' "K*%㯉[ 2z3o͊0̧IkCk0r9N{'\̷x}kpA(wE%.;azbsC?|&"HktJ#*s׾s$>5̢ qA{0ԓG[@ bk%MxEuZĢ#1p(UBM̶5ۇ\Rv*"U[ g%h:/a1ČKZsxe+.7"wq-Z=9Zݦb(җgW֣pF❣QELdFv>YIqkPɬI>Bsڒl'BnK_9ڧk5'm'pYVB1ހ\?_TiśM.SxI"6lh"G&:IJJe E ~S {H|`3eԿj}'2o/C ~?%mnI˜eWw+NY0VPa}`ښT.Q]SżR~ٸA7Wot.ۜ2뇳B(߁8suLVFUw߯^$bщccؚi O/ÿ%@jfֆw^_g?3g7R}BPL1w'}-0 sL0s7ޠ$!zO2 ȵ t2TM@3q#<O2[ofeԵbpK}i~N7{I[ۜ?Nre\#;tZ|"z@LI۹rC{!יʓLR%K|2xKx}=lL 4+5q B:} \-^LUs!̙G\eqgvM.1Iǣ])TAڒhTZFj%lmQ qacjb̬:TSku"gTS(S> (ڙ!n\ ]0>Wϴpd߀phJQ~q^~Joi~t )+#0PR % `9|K߄Ya?Dk:4p?zkzoT}3q5׵FBҫ̦}n[;KcfU7^<-*\zu F&eA?VJ L-;cL_A-xO/wkZ{ sD{\ҙuS%OkUq0U:@.%ԲFCf m#Ic`;#UbB|nT~P&#%]Kms{zXKW1Ԇ:ҵt@9q|\ŗ1RX"Zïdʎ;Pl#Y+I'uo҄OZ>=GN|a/&p0 {$7|vL?uڀ /.L͓3 ˷RJ wL@V˂}ZGg-hw; N RF5eM%V+hoIBƩb@mʙOQuVG,"s a CUdbu|a;'pS4DHz_ ד7{ B1 Q*yz^D0yZJÜ`,. g(NuyrJHVI8dACGbmpn(P_?tvR4GOv3=f}$J-7 &F`ԩޡž$Y{/2}<[ 6X+taff^9fciojo38 yX#mQΝ[J\[^? w/͊t3|ne^-tJ"Mf7u O'4 |nt?I7)jdcfvj%Z=-ނ9o&SŬn]"!&+ppy8_9*Ϻ s@x.┥^zv:\;YU?ɅCI,QğAo57=sS Bv<86e S ftD  X)- ?<$ q$-@7 +})6nf[%xtw"jIoNN\3COsVTj>̀M+5Z*P\|MXp S)g΀^Jtq|0afwY&w-2݆8bļtqי)qkFmN~I|,_6H׿n 5QhYye!ERP)AC41g;>wJSsx3?H@}j^x]4{V`A|cC&8|4ū ^z `:q46>ʋg: EE&#C-(Za~@@< 3!ޥGnK HJJDg@=h'#Nݧ#G !eݣCE4K^M>-r|Lő\})^)$Pqx39to/tNi v$FAH$qLԐ2Gzs&G%,h>X\Z`{Տ=EJ¥iBSn$ #~zүUxA-#.T^ӌ_(fr8:9 h:c6a 5#M!ZP~FVݻ283G +K!Z\WN5iEZ'(B2n@ee<T=6x]B=>ӇG?X/[0iT82 rÆt5|mp;r@d|1_v[%}3@Kv7Rk擀h,:2H@rȓqY}u}KW >L<ן#wMN0'@]݆Cy&Lj#} ])b,;k0| uRb}#OM-;мN,ztY7`A 5 E kƓa2.xdU/ TGm2,YCmǓJ(.eA0VH}Q+oǠ+_eYC>DΥ2z xA<1Qq,trp4B! >Nф l/ܗj7I<4A״Ԡ2U_w*%19Sܦ$8V<#J~ \T{S/z4)y٩tC6 %ifS$3_BA7f>t?u.鼧{ClRK|Y+KK(ñ]hh2%<]9[$ RqQ}.Y.>bxsb'o~G4G4lqAKDU+"HI.e`*Kh{edyP0X),6-Ew)OFHGkWVR"<*F RkڥR)ߨpIU%M5ɃYW:7@l?!P:/4'=b|qK{ط`ٲ*B J^CDeQIϬ%iP#C9o5xh.ت;G^Ti(hn3%g`}XEFiǨnF`bȖS!. U%`+TWRġ63m7VC\ӫ%kfAf*c VFqxQH-UsFkyO$0.bl|:%WapI_a}2qF˷HRaPz jFYl#U^(h*lJnYhYոEsIX-M:)N= d/'kɅo+ɹ7e'M T񭗭PCT`c:8BOvY ҃0M]RXɸx5SKH86L{9[cȺO3\qws"Q??U/.{Ny$r*B8y %b{Ysp+A/ed}h)QVO),\#4:LG3u͞&}7mZ`Hd7ҥG>"݆0 9pYXĊ&^+_U "82NT,BB } a7d~lį( |m8ᦆc6%PEöwoPyW' }tq1Q,I()a<->2C6qĩULm2$`il^`{v 顓6 Xտ!<R*- PP3(n؄&|XzQ?n ^Oi<{-ee-.O0*h\] &R@qF҂2?"Pc=ycxxcsf5fȁ{ S\5M^% ,[FPȈ+L\I ֡ӪπDm'fuUb. #gqa"4 | -&k/8:4&M22{>+Gǽw vlXJ!8^'er%?#?B>Mŭ5uMxE|Oٸn@lR@X^g~qt8X!]$|149;DDd BHg.'ʪtKa,YϧPV3Ig!qngQm Q+FU.$bRu6 ;]Ϸ6t o ոQ+|J?$|a0eVdMGI6p|mdOPѼ2 0:=lpQ?rS36,ETٻ9YhVAG1WG]~pTEYQ5E9>fv%<mGiݢFfr?6?X&*X|T("QE#w?BgeY vS&~<ȟ'PѓsΠk[kQ ЮrKw{* :hZak`z |j335$9:@ՇJ%JpvV`&R"ZZLu"YCMy]ϖ{r &e;S̔."zj,׈0]{!3eS ](RFƘ߆Z@H4; k9o8˄YHCʴ)犗"=-ht(;XA!ȠS Oc89UK '&VXpGؿt]"gD]Ȧޒk=+25 hƽ#v::CԱp::B4b!DaIcAMkTk_Z8xPٝ9.y5veu{1h`+gbltV̎r~$]j>識z-BX y-Y v2YodawIME/3]xȨYsð# mRcs@fʝe狵ǁVwrH`L71Չs!ba]-P4{Gš52rh" \wZG!&e^ +c/h`gldSLHQX^r:tl&@JE9^ $t9D:.q+"^~Af7tX"gUq=~o2aG&Ad];M_gayA7\?IنƋp^~JLd`GMg>[xpTӊh7B>6> w>;Vr&r6%U?*HdOX;`~bi|JU(lrȠOԺY :sl 1x;&(Cg+H)>80"$Vh[n^q &; '2D#*ِ[# ,fG5KPW.S`7g^;iq)AR݉KgH)yed8f3:05)Jց"wbdoLX*p`Iu9Tvy>fmA!rgvQ ?zqޟ b60& MZӖ <ņJj@=}y?gBrU38!!{xy@%6zP~ v[eZWf a.c:xy^QO(6J6BL+3ߍF4j߻ON"NcEl*u_-2.N&l386E;(W;O҇0' 2<6|+{ށFODd 9lXts j=,K1p[ؿZRdv=WmRh2c@Ss$b Hd*/Ӗ,@'[ EPc)垇{ykH^6 ۸怌M0]yYGQg&d3*Za%@8FEV;Y<XJn#tB9SQQ W |J˥ߌ+Z~?+$&@gakB-qZmq,!^&bK4?^iY[> K#~לNP`= SO8Dzf,I<"۳vn<Fkz r J(fG[y@CgyX9;K<1$^bN h[(x*h<5`| c ԟ$D\T,2jk죙XɈ!$zcY^L~IW6vDEhgE9.ɒc2["ﶢ`Xl7Eo)K:e?گRSQeLmznU&2Ŧ&0@͗ 1!cB+|*W-,p\"[ Y趩v9~w2,+]G8vz8,2/E "ag߿P's")mgQv3 L|֐b./(Ϡţ kfY Mftf5hݣdf6y#W-7$wUb_ ̃5d7 j!-ХY('En&e)+/rMy` ߠDls 4z+)|amvFMlqr /FhCf3F]}JhT_39\uR添(_iZM>[3ER-ӪZ ?m,4` +Ʊ['H0VQyT\ыxӉ0y8u18]pN$n_uX?w)fHUUZH}CCcki:C&[M3ȋp+դ:ʼn3`j=Ø|=-Tc.`YIW*ƤZyYD|96h|37a?Z!Q1VzaUYTLY pƥC7+Tg@(^5¾rS6e;4P&1d&k`x 3C*ntM[ٰfɈ0WFG?}ûT`1-p\"@)!.>qN60rl @#?r/5u0 .`@Ihs4Dvz3*ȷ/_3@!:QAj\ s>Kjl ǻkǶlP.`(ЈCd"&hgNT,myZPDXe(Q}_twO r?wʸt6휱d*,AQC2*IS[Y Dm@}-.iY=TYƆ]!X**ߔ"!ɬzN5f;[܏>'I痿lPA:HAnڲ;GNCwu7 Wa>8t OB"+G< }( Yx0F3 *SUY[ y2 v0M2ދe(a\35/^%v2{(%yQgθE(4FAmŀGO(V:A8_^u8/$w70õ?P6:!fU0xEh;?d`.l];;!F/&o 3p[3a~-v*Rk&2&WF":OI;$L~3 = 6![A@:q/bҔCHMx_ؠ,|3W$_F6(I l' J ˜,joKM`FwTP05ٕ w>2IӋ){3?p$֔}?l٫T" C?Ф_$LP.Ȳ$*]c2IyAkR,aVQ'>nA[ApBRIrS 1Kr(1,}ݿ`vĹ+ҠE?+qucOʻNi8b6ٳn]I8vb8Y8o<5w PB4qv6#5 y؉O7y(W6KJ ʧFKNt6צbQGGEoOq\-!geWWڏ+P䓒t퉺*>˽bO"l#mNR>q(NbW'rK&lQo./7mPgz9YNmy?K?.՘Us XZoV,;Fs@m4P؆ ߓ"k#S}~MlCN|zў>mxsL [V /TEh&iܿ F`ې[jcx׏l$* 1w*A &4Sș`Ǒ2 :oyz2 S Dw9ĺdL sݺGQPqEfd_ʼ*>bDn_ `fl!g]It+CvyLރ/aEI׈HQzu{jm{i`ЫF_Wͯ\Vi -8Rg}-%h{V8,[+u3F,=$D^BBKiUeA]{B/Ɓwa5KjDg#4%ϒο8iW8SH#ce6ɐxS|+ܛ|HVD:5|iZ y;JaV6#jpRz_ҩHi4P$fn1[=ooJ&?@[iݾ̿sgmCPR7ya0`T$-ϐ\\uD؏Az.kTə:9Rtq؆9,68U}<R벅N?BFRl^Ppv7ul ;k YlxL=mx9 ZYkÂؘdZdaF2S!0wV3:jׯMQ|*I|mo?}w:veϕ'f@ngj60Z U{rc왻;3(("w @ORtP…itj~T-N Q{iJ03 J-̈Rh 8`'5-ş'Iˬ! 7k uv9wL7R#B'x'"XYcJĘ}Цؤz|FW,b 3_c?76"l/L,ZJi4`EJ| ?+({fv2xoFgx5t3]`]Dh,VL>mGqd]X'-=`4ԃR)Ms*%Cn Gs%p.I\`G"K"{SA&޳{x̓na@Sפ#>pծ0o!}ԥNv3XPc_.CJg{B>bE= pYhb7oӹF[hE{D#JfI]%֔ʸuŨޔ};o]޻>j$LڥWU3֗>)b@B }F#Ǝ<;‚Q{ Mgq8xR$e{ KK䓭ۘ^E77@ 3PHUTxl|1Wzn{6:QFM̭+mpѡrnGwCbD@Z0Cl +Y [ItZz'70?8ܯou'*r.o?Ȣbi[s٬-gq%x0Nb3EeRbJ,f9jㅰ^{d/%ḱY^Z ʐm]'i]6[B߁Ylуzyxѣs/8W=w ˚.hl(c%疪G?~7N7Qʴ;%q%]]F4Iԯ x_:dM6_taSgs+R!ꪘP<:OTmq ȁH5_MYB=`Ssb.zHD O$nfj'p[-;}N9q~^70Nʣc^İ=.Vb\Oߵ rl,Y!M,6Ў^f0(\ΨkbGg\\(j9$zh5-E]@hm*$3[YANf?u-+Q- RUOyl1Vz閯C|x3}d/ CB1}G=mM_#SʴZ`tKjgyNC6-y2eK;5?G"M~4B[LiHPD}< =խk+=bF5fR˱ցߣ@4J`aoi&Y寉 6.dwҏ0.cҏ:_qZ- ZA ŰW# ,`A2#q$& k\j41}> iיhZsAGFKn$z1Z28iv:ç*"]6Sӷ  @7pyqm;fL5-dac}/y7lc\<'7wܡDXЎ[`Ch;fܷp ԙk.wa'_`: [Ky>KhMiau 6R!,3)YmG' e3FL_ z˷F\UI|#B.Q! *WQ^ (yq]XTu^X7SOdⴼÛROT'*a/Q˜r',N\`#zYgq]*o_ܜT$2T~vci29U/+w^.[ ][v]w`u,G~3.dk&h`)l :Swnem23Yf&+aU 5V2^I^Oqr3BQ)'<P>ښ9b~9V<^#XTO uA;H'Ç@~{*Gl D7k(Kx`hZx/J(|:%xA#6[@ug0:ʗ_ oxG]Zr^ӘC}eCpeb`L!T21$hL"t^Guhb/[TbGtjyp{n` 'G-V"E`sV* ;M^d ؙqһ2菦]!:lWOh*b ưk_{w/뱋9V`h7LP$kM(~_b_4>6;,Ax~K`XB},̦lR8xIhoBS^sҁ8Qt -Od"?sqwY} 7wͪL@AН.E$Os Z%u:6gpo?Oݥy!^HYXw&12C8XRBUoHMP?`_p# r$f; goÏLL?]kή%h4)ĄKw z(=|eY<Fsv/C_NGOqHIHѸyziO(H&,0,ORRO`E0@Y,^=S?,l}cJlFW>#\DwH2#G *W#Gʉ yNZ qDH0/}CO\lAE`_!Af+຅e( 2LI_E}7=gWʠV%W+y Y\~^}vo2MS8̻Lp֘?\AN0|?eaV*A&&UBAc:KYY{T'l&k?νe^"^5SVҌyVJ+܆YQW5[beEzz4PdVOW ַab x顬KG`jWCłu1}9W{F2qT‘J:䭹8ڷ:yh'<`7/(ÿ1 rKS(0]\T~j&c3yrntlR]]ix8@,ƒrkwVlbݦ/M /:rf/ |^$A6d,y8j#ci3` -,d*$M( fq(D" !&Y6h,r૝(r7Q٪ 5%/ؐ` Bn<;X)KQRꇍdԒr EG2pEL(q|Jli< "qpf$ՒǼoáwW5p3BD{P/p~+0&DR!!gxf/ O!8nUߎ2fk6k=5_ĥJVr IڣĆԸaPenvxjRAk ܚrd!ZJ OU@V·3R ZO1ߋ\o9V-L=.<3 @N.l\ueez1΃;L® eҷ s znjō 9>g)fELV*7 %bd$EךCg95%H/d[hWO XEPk@̓''-[9frS D7[H Z&? t쥼IfCS8Ŷ]=?uY b}&V }5J} c-Ba _&xd.C$G_Q /X4;*Rg4x;SƕM-Y9 ehi }-ehoռ!)i@Ny!jɰP<9!=> ۇ'PWqf%mf=fxbӲZx,ZEϝI׈>/3J+JKc|񇈢N0ҊY쥅'h_UK棢Hnk;24CJh@v#۵^ckRw=SF+W`E+j£㫸>V bzڴ_Պ~^8ՇVwX!mD>4#fGOrȶjYZ; fڮAFnl/]~T@{xr4:x ^KU? v$jtse&gVO+u~ZG7ߢ_;EEp LΈݾ>jySrǴ+j|  ߔC53^0F7 xT,6緟Hsf_Et3ZEn1,I1B΄ n up:/ YZ