nss-pkcs11-devel-3.36.0-8.el6>t  DH`p[*=/ F,4BǴ@L\R:P &.Qp>=xfnjqȎG1mXhD_ozK* o8F7(s۲<>npՅfMfsCygFei-"魡YpU&X(ad|P\D]KÇ#\!J@M[5sF}M6oSa.DǐQ|(:V)h-0Gպ;KE)r>gp u z ᤒ=2\ [a4+9ex>'occfJb9KktڱʆwhC!?2D"B%TةM@txj1Gqt-B] x9Jym/ pҤfnTN>, .=x&X@!HbcwΘNQ2[ԫV= ;p(X*)xjN晪9F@Y? ԫqFv)K!fBBHv9ÊHf]ClzzvAwxA/}I_Q?A{U9OAe3|pbAwyArr)o{1-X 7e)aQ:K˨,)JkV/b׌e z.E fF7ѽ3mŃ=EΡ^lsVVT2G]V 7Y]/]8au5NZ)9F@s38 -?o;8>7?d  X OU\         E  T    $ X\(8+9 L+:Cc+Gp H I XY\ ]P ^bdeflt u vwD xx Cnss-pkcs11-devel3.36.08.el6Development libraries for PKCS #11 (Cryptoki) using NSSLibrary files for developing PKCS #11 modules using basic NSS low level services.[):x86-01.bsys.centos.org0CentOSMPLv2.0CentOS BuildSystem Development/Librarieshttp://www.mozilla.org/projects/security/pki/nss/linuxx86_64 n@GCB:nx䁤Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi([)*[)*[)*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-3.36.0-8.el6.src.rpmnss-pkcs11-devel-staticnss-pkcs11-develnss-pkcs11-devel(x86-64)      nss-develnss-softokn-freebl-develrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(VersionedDependencies)rpmlib(PayloadIsXz)3.36.0-8.el63.14.3-223.0.4-14.6.0-14.0-13.0.3-15.2-14.8.0Z3@Z@ZZ2@ZZ@Z`@Z%ZZZ)-@Z%8Y@Y i@X@X @X,Xf@Xs{@XOXF@XAb@X,J@X%X#X!@X@X2@X@W%W@V3V@VJVV͛@V@Vk@VVy;@VMVLh@V'~@U@U|@UzUrU@U2G@U+U) U'@U"u@U@TuTd@T"@SS@S@S׌SSQ@S@S-S@S@S@S!@SSU@SFS2@S2@Rb@R߲RƦ@RR$RR;R].@R].@RR@RQPRNREs@R@-@R:@R:@R9R2@R2@R+@R)R)R R@RR@Q@Q@Qzl@QR@QQQNP@P[PqPM@PM@Pd@P@P@PPx@Px@PvO@O O@Ọ@O Oc+@O`@O_6O_6OTOLOLOLOB5O&@O#@O@NU@NNGNN@N@NNw.N`@N`@N`@N^"@N\NGNENNN*N*M@M@MUMMlMfH@M] M:M4/@LL@LwLvW@LvW@LvW@LvW@L @K[KKKO@KK]KUKRKRKMKMKLd@KD{@KD{@KD{@K4@K,@K*@K@KJ@J1@JSJSJ@Jv@J@JG@JG@JJJ@JRJ J@JiJiJ@J@JJJu@Ju@Ju@Ju@Ju@J#J#J@J@JJJJ/@J:J:JzJjJ?r@J?r@J,@J)J)J@J{IzIzIIIԨIԨIIII2HHH+H@H@HoH@H`HCHG@GQG]@G@G@G~G-@G-@G-@G}G@G_@GSG1G FFFޚ@F@F@FvsFkF` @EE(EEl$E D@E D@D@D@D@D@DvCC@CC@C@CZCZCZCZBϼ@Daiki Ueno - 3.36.0-8Kai Engert - 3.36.0-7Kai Engert - 3.36.0-6Daiki Ueno - 3.36.0-5Daiki Ueno - 3.36.0-4Daiki Ueno - 3.36.0-3Daiki Ueno - 3.36.0-2Daiki Ueno - 3.36.0-1Daiki Ueno - 3.36.0-0.1.betaDaiki Ueno - 3.34.0-3Daiki Ueno - 3.34.0-2Daiki Ueno - 3.34.0-1Daiki Ueno - 3.28.4-3Kai Engert - 3.28.4-2Daiki Ueno - 3.28.4-1Daiki Ueno - 3.28.3-3Daiki Ueno - 3.28.3-2Daiki Ueno - 3.28.3-1Daiki Ueno - 3.27.1-13Daiki Ueno - 3.27.1-12Daiki Ueno - 3.27.1-11Daiki Ueno - 3.27.1-10Daiki Ueno - 3.27.1-9Daiki Ueno - 3.27.1-8Daiki Ueno - 3.27.1-7Kai Engert - 3.27.1-6Kai Engert - 3.27.1-5Kai Engert - 3.27.1-4Kai Engert - 3.27.1-3Daiki Ueno - 3.27.1-2Daiki Ueno - 3.27.1-1Kai Engert - 3.21.0-8Elio Maldonado - 3.21.0-7Elio Maldonado - 3.21.0-6Elio Maldonado - 3.21.0-5Elio Maldonado - 3.21.0-4Elio Maldonado - 3.21.0-3Elio Maldonado - 3.21.0-2Elio Maldonado - 3.21.0-1Elio Maldonado - 3.19.1-9Elio Maldonado - 3.19.1-7Elio Maldonado - 3.19.1-6Elio Maldonado - 3.19.1-5Elio Maldonado - 3.19.1-4Kai Engert - 3.19.1-3Kai Engert - 3.19.1-2Elio Maldonado - 3.19.1-1Kai Engert - 3.18.0-5.3Elio Maldonado - 3.18.0-5Elio Maldonado - 3.18.0-4Elio Maldonado - 3.18.0-3Elio Maldonado - 3.18.0-2Elio Maldonado - 3.18.0-1Elio Maldonado - 3.16.2.3-4Elio Maldonado - 3.16.2.3-3Elio Maldonado - 3.16.2.3-1Elio Maldonado - 3.16.1-14Elio Maldonado - 3.16.1-13Elio Maldonado - 3.16.1-12Elio Maldonado - 3.16.1-11Elio Maldonado - 3.16.1-10Elio Maldonado - 3.16.1-9Elio Maldonado - 3.16.1-8Elio Maldonado - 3.16.1-7Elio Maldonado - 3.16.1-6Elio Maldonado - 3.16.1-5Elio Maldonado - 3.16.1-4Elio Maldonado - 3.16.1-3Elio Maldonado - 3.16.1-2Elio Maldonado - 3.16.1-1Elio Maldonado - 3.15.3-11Elio Maldonado - 3.15.3-10Elio Maldonado - 3.15.3-9Elio Maldonado - 3.15.3-8Elio Maldonado - 3.15.3-7Elio Maldonado - 3.15.3-6Elio Maldonado - 3.15.3-5Elio Maldonado - 3.15.3-4Elio Maldonado - 3.15.3-3Elio Maldonado - 3.15.3-2Elio Maldonado - 3.15.3-1Elio Maldonado - 3.15.1-15Elio Maldonado - 3.15.1-14Elio Maldonado - 3.15.1-13Elio Maldonado - 3.15.1-12Elio Maldonado - 3.15.1-11Elio Maldonado - 3.15.1-10Elio Maldonado - 3.15.1-9Elio Maldonado - 3.15.1-8Kai Engert - 3.15.1-7Elio Maldonado - 3.15.1-6Elio Maldonado - 3.15.1-5Elio Maldonado - 3.15.1-4Elio Maldonado - 3.15.1-3Elio Maldonado - 3.15.1-2Elio Maldonado - 3.15.1-1Elio Maldonado - 3.14.3-37Elio Maldonado - 3.14.3-36Elio Maldonado - 3.14.3-35Elio Maldonado - 3.14.3-34Kai Engert - 3.14.3-33Elio Maldonado - 3.14.3-5Elio Maldonado - 3.14.3-4Elio Maldonado - 3.14.3-3Elio Maldonado - 3.14.3-2Elio Maldonado - 3.14.3-1Elio Maldonado - 3.14.0.0-12Elio Maldonado - 3.14.0.0-11Elio Maldonado - 3.14.0.0-10Elio Maldonado - 3.14.0.0-9Elio Maldonado - 3.14.0.0-8Elio Maldonado - 3.14.0.0-7Elio Maldonado - 3.14.0.0-6Elio Maldonado - 3.14.0.0-5Elio Maldonado - 3.14.0.0-4Kai Engert - 3.14.0.0-3Bob Relyea - 3.14.0.0-2Elio Maldonado - 3.14.0.0-1Elio Maldonado - 3.13.5-3Elio Maldonado - 3.13.5-2Elio Maldonado - 3.13.5-1Elio Maldonado - 3.13.3-7Elio Maldonado - 3.13.3-6Elio Maldonado Batiz - 3.13.3-5Elio Maldonado Batiz - 3.13.3-4Elio Maldonado - 3.13.3-3Elio Maldonado - 3.13.3-2Elio Maldonado - 3.13.3-1Elio Maldonado Batiz - 3.13.1-6Elio Maldonado - 3.13.1-5Elio Maldonado - 3.13.1-4Elio Maldonado - 3.13.1-4Martin Stransky 3.13.1-3Elio Maldonado Batiz - 3.13.1-2Elio Maldonado - 3.13.1-1Elio Maldonado - 3.12.10-17Elio Maldonado - 3.12.10-16Elio Maldonado - 3.12.10-15Elio Maldonado - 3.12.10-14Elio Maldonado - 3.12.10-13Elio Maldonado - 3.12.10-12Elio Maldonado - 3.12.10-11Elio Maldonado - 3.12.10-10Elio Maldonado - 3.12.10-9Elio Maldonado - 3.12.10-8Elio Maldonado - 3.12.10-7Elio Maldonado - 3.12.10-6Elio Maldonado - 3.12.10-5Elio Maldonado - 3.12.10-4Elio Maldonado - 3.12.10-3Elio Maldonado - 3.12.10-2Elio Maldonado - 3.12.10-1Elio Maldonado - 3.12.9-11Elio Maldonado - 3.12.9-10Elio Maldonado Batiz - 3.12.9-9Elio Maldonado - 3.12.9-8Elio Maldonado - 3.12.9-7Elio Maldonado - 3.12.9-6Elio Maldonado - 3.12.9-5Elio Maldonado - 3.12.9-4Elio Maldonado - 3.12.9-3Elio Maldonado - 3.12.9-2Elio Maldonado - 3.12.9-1Elio Maldonado - 3.12.8-2Elio Maldonado - 3.12.8-1Kai Engert - 3.12.7-2Elio Maldonado - 3.12.7-1Elio Maldonado - 3.12.6-6Elio Maldonado - 3.12.6-5Elio Maldonado - 3.12.6-4Elio Maldonado - 3.12.6-3Elio Maldonado - 3.12.6-2Elio Maldonado - 3.12.6-1.2Elio Maldonado - 3.12.6-1.1Elio Maldonado - 3.12.6-1Elio Maldonado - 3.12.5.99-1Elio Maldonado - 3.12.5-8Elio Maldonado - 3.12.5-7.3Elio Maldonado - 3.12.5-7.2Elio Maldonado - 3.12.5-7.1Elio Maldonado - 3.12.5-7Elio Maldonado - 3.12.5-6Elio Maldonado - 3.12.5-2.1Elio Maldonado - 3.12.5-2Elio Maldonado - 3.12.5-1.14Elio Maldonado - 3.12.5-1.12.1Elio Maldonado - 3.12.5-1.11Elio maldonado - 3.12.5-1.10Elio Maldonado - 3.12.5-1.8Elio Maldonado - 3.12.5-2.1Elio Maldonado - 3.12.5-1.2Elio Maldonado - 3.12.4-15Elio Maldonado - 3.12.4-14Elio Maldonado - 3.12.4-12Elio Maldonado - 3.12.4-11Elio Maldonado - 3.12.4-10Elio Maldonado - 3.12.4-8Elio Maldonado - 3.12.4-6Elio Maldonado - 3.12.4-5Elio Maldonado - 3.12.4-4Elio Maldonado - 3.12.4-3Elio Maldonado - 3.12.4-2Elio Maldonado - 3.12.4-1Elio Maldonado - 3.12.3.99.3-30Elio Maldonado - 3.12.3.99.3-29Elio Maldonado - 3.12.3.99.3-28Elio Maldonado - 3.12.3.99.3-27Elio Maldonado - 3.12.3.99.3-26Elio Maldonado - 3.12.3.99.3-25Warren Togami - 3.12.3.99.3-24Elio Maldonado - 3.12.3.99.3-23Elio Maldonado - 3.12.3.99.3-22Elio Maldonado - 3.12.3.99.3-21Elio Maldonado - 3.12.3.99.3-20Elio Maldonado - 3.12.3.99.3-19Elio Maldonado - 3.12.3.99.3-18Elio Maldonado - 3.12.3.99.3-16Dennis Gilmore - 3.12.3.99.3-15Dennis Gilmore - 3.12.3.99.3-14Dennis Gilmore - 3.12.3.99.3-13Dennis Gilmore - 3.12.3.99.3-12Elio Maldonado+emaldona@redhat.com - 3.12.3.99.3-11Elio Maldonado - 3.12.3.99.3-10Dennis Gilmore - 3.12.3.99.3-9Elio Maldonado - 3.12.3.99.3-7.1Fedora Release Engineering - 3.12.3.99.3-7Elio Maldonado - 3.12.3.99.3-6Elio Maldonado - 3.12.3.99.3-5Elio Maldonado - 3.12.3.99.3-4Kai Engert - 3.12.3.99.3-3Kai Engert - 3.12.3.99.3-2Kai Engert - 3.12.3-7Kai Engert - 3.12.3-4Kai Engert - 3.12.3-3Kai Engert - 3.12.3-2Kai Engert - 3.12.2.99.3-7Kai Engert - 3.12.2.99.3-6Kai Engert - 3.12.2.99.3-5Kai Engert - 3.12.2.99.3-4Kai Engert - 3.12.2.99.3-3Kai Engert - 3.12.2.99.3-2Kai Engert - 3.12.2.99.3-1Fedora Release Engineering - 3.12.2.0-4Kai Engert - 3.12.2.0-3Dennis Gilmore - 3.12.1.1-4Kai Engert - 3.12.1.1-3Kai Engert - 3.12.1.1-2Kai Engert - 3.12.1.0-2Kai Engert - 3.12.0.3-7Kai Engert - 3.12.0.3-6Kai Engert - 3.12.0.3-3Kai Engert - 3.12.0.3-2Kai Engert - 3.12.0.1-1Jesse Keating - 3.11.99.5-2Kai Engert - 3.11.99.5-1Kai Engert - 3.11.99.4-1Kai Engert - 3.11.99.3-6Kai Engert - 3.11.99.3-5Kai Engert - 3.11.99.3-4Kai Engert - 3.11.99.3-3Kai Engert - 3.11.99.3-2Kai Engert - 3.11.99.3-1Kai Engert - 3.11.99.2b-3Kai Engert - 3.11.99.2b-2Kai Engert - 3.11.99.2-2Kai Engert - 3.11.99.2-1Kai Engert - 3.11.7-10Rob Crittenden - 3.11.7-9Kai Engert - 3.11.7-8Bob Relyea - 3.11.7-7Kai Engert - 3.11.7-6Kai Engert - 3.11.7-5Kai Engert - 3.11.7-4Kai Engert - 3.11.7-3Kai Engert - 3.11.7-2Kai Engert - 3.11.5-2Kai Engert - 3.11.5-1Bob Relyea - 3.11.4-4Kai Engert - 3.11.4-1Kai Engert - 3.11.3-2Kai Engert - 3.11.3-1Kai Engert - 3.11.2-2Jesse Keating - 3.11.2-1.1Kai Engert - 3.11.2-1Kai Engert - 3.11.1-2Kai Engert - 3.11.1-1Kai Engert - 3.11-4Jesse Keating - 3.11-3.2Jesse Keating - 3.11-3.1Ray Strode 3.11-3Christopher Aillon 3.11-2Christopher Aillon 3.11-1Christopher Aillon 3.11-0.cvs.2Christopher Aillon 3.11-0.cvsKai Engert Rob Crittenden 3.10-1- Restore CERT_LockCertTrust and CERT_UnlockCertTrust back in cert.h- rebuild- Keep legacy code signing trust flags for backwards compatibility- Decrease the iteration count of PKCS#12 for compatibility with Windows - Fix deadlock when a token is re-inserted while a client process is running- Ignore tests which only works with newer nss-softokn- Use the correct tarball of NSS 3.36 release - Ignore EncryptDeriveTest which only works with newer nss-softokn- Don't skip non-FIPS and ECC test cases in ssl.sh- Rebase to NSS 3.36.0- Rebase to NSS 3.36.0 BETA - Remove upstreamed nss-is-token-present-race.patch - Revert the upstream changes that default to sql database- Replace race.patch and nss-3.16-token-init-race.patch with a proper upstream fix- Don't restrict nss_cycles to sharedb- Rebase to NSS 3.34.0- Fix zero-length record treatment for stream ciphers and SSLv2- Include CKBI 2.14 and updated CA constraints from NSS 3.28.5- Rebase to 3.28.4- Fix crash with tstclnt -W - Adjust gtests to run with our old softoken and downstream patches- Avoid cipher suite ordering change, spotted by Hubert Kario- Rebase to 3.28.3 - Remove upstreamed moz-1282627-rh-1294606.patch, moz-1312141-rh-1387811.patch, moz-1315936.patch, and moz-1318561.patch - Remove no longer necessary nss-duplicate-ciphers.patch - Disable X25519 and exclude tests using it - Catch failed ASN1 decoding of RSA keys, by Kamil Dudka (#1427481)- Update expired PayPalEE.cert- Disable unsupported test cases in ssl_gtests- Adjust the sslstress.txt filename so that it matches with the disableSSL2tests patch ported from RHEL 7 - Exclude SHA384 and CHACHA20_POLY1305 ciphersuites from stress tests - Don't add gtests and ssl_gtests to nss_tests, unless gtests are enabled- Add patch to fix SSL CA name leaks, taken from NSS 3.27.2 release - Add patch to fix bash syntax error in tests/ssl.sh - Add patch to remove duplicate ciphersuites entries in sslinfo.c - Add patch to abort selfserv/strsclnt/tstclnt on non-parsable version range - Build with support for SSLKEYLOGFILE- Update fix_multiple_open patch to fix regression in openldap client - Remove pk11_genobj_leak patch, which caused crash with Firefox - Add comment in the policy file to preserve the last empty line - Disable SHA384 ciphersuites when CKM_TLS12_KEY_AND_MAC_DERIVE is not provided by softoken; this superseds check_hash_impl patch- Fix problem in check_hash_impl patch- Add patch to check if hash algorithms are backed by a token - Add patch to disable TLS_ECDHE_{RSA,ECDSA}_WITH_AES_128_CBC_SHA256, which have never enabled in the past- Add upstream patch to fix a crash. Mozilla #1315936- Disable the use of RSA-PSS with SSL/TLS. #1390161- Use updated upstream patch for RH bug 1387811- Added upstream patches to fix RH bugs 1057388, 1294606, 1387811- Enable gtests when requested- Rebase to NSS 3.27.1 - Remove nss-646045.patch, which is not necessary - Remove p-disable-md5-590364-reversed.patch, which is no-op here, because the patched code is removed later in %setup - Remove disable_hw_gcm.patch, which is no-op here, because the patched code is removed later in %setup. Also remove NSS_DISABLE_HW_GCM setting, which was only required for RHEL 5 - Add Bug-1001841-disable-sslv2-libssl.patch and Bug-1001841-disable-sslv2-tests.patch, which completedly disable EXPORT ciphersuites. Ported from RHEL 7 - Remove disable-export-suites-tests.patch, which is covered by Bug-1001841-disable-sslv2-tests.patch - Remove nss-ca-2.6-enable-legacy.patch, as we decided to not allow 1024 legacy CA certificates - Remove ssl-server-min-key-sizes.patch, as we decided to support DH key size greater than 1023 bits - Remove nss-init-ss-sec-certs-null.patch, which appears to be no-op, as it clears memory area allocated with PORT_ZAlloc() - Remove nss-disable-sslv2-libssl.patch, nss-disable-sslv2-tests.patch, sslauth-no-v2.patch, and nss-sslstress-txt-ssl3-lower-value-in-range.patch as SSLv2 is already disabled in upstream - Remove fix-nss-test-filtering.patch, which is fixed in upstream - Add nss-check-policy-file.patch from Fedora - Install policy config in /etc/pki/nss-legacy/nss-rhel6.config- Ensure all ssl.sh tests are executed- Update sslauth patch to run more tests- Fix syntax errors in patch that disables sslv2 tests - Resolves: Bug 1297888 - Rebase RHEL 6.8 to NSS 3.21 for Firefox 45- Resolves: Bug 1304812 - Disable support for SSLv2 completely.- Add patches for ABI compatibility- Disable extended master-secret due to older version of softoken- Enable two additional ciphers and keep another one disabled - Prevent enabling extended masker key derive- Rebase to NSS-3.21- Prevent TLS 1.2 Transcript Collision attacks against MD5 in key exchange protocol - Resolves: Bug 1289890- Package listsuites as part of the unsupported tools set - Resolves: Bug 1283655- Resolves: Bug 1272504 - Enable TLS 1.2 as the default in nss- Rebuild against updated NSPR- Sync up with the rhel-6.6 branch - Resolves: Bug 1224450- Additional NULL initialization.- Updated the patch to keep old cipher suite order - Resolves: Bug 1224450- Rebase to nss-3.19.1 - Resolves: Bug 1224450- On RHEL 6.x keep the TLS version defaults unchanged. - Require softokn build 22 to ensure runtime compatibility. - Relax the requirement from pkcs11-devel to nss-softokn-freebl-devel to allow same or newer. - Update to CKBI 2.4 from NSS 3.18.1 (the only change in NSS 3.18.1)- Update and reeneable nss-646045.patch on account of the rebase - Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL7.1]- Fix shell syntax error in nss/tests/all.sh - Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-6.6]- Restore a patch that had been mistakenly disabled - Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-6.6]- Replace expired PayPal test certificate that breaks the build - Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-6.6]- Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-6.6] - Resolves: Bug 1131311 - rhel65 ns-slapd crash, segfault error 4 in libnss3.so in PK11_DoesMechanism at pk11slot.c:1824 - Temporarily disable some tests until expired PayPalEE.cert is renewed- Keep the same cipher suite order as we had in NSS_3_15_3_RTM - Resolves: Bug 1123092 - openldap-2.4.23-34.el6_5.1.i686 fails after updating nss to nss-3.16.1-4.el6_5.i686- Resolves: Bug 1158160 - Upgrade to NSS 3.16.2.3 for Firefox 31.3 - Remove unused indentation pseudo patch - require nss util 3.16.2.3 - Restore patch for certutil man page - supply missing options descriptions to the man page- Resolves: Bug 1158160 - Upgrade to NSS 3.16.2.3 for Firefox 31.3- Resolves: Bug 1145432 - CVE-2014-1568- Fix pem deadlock caused by previous version of a fix for a race condition - Fixes: Bug 1090681- Add references to bugs filed upstream - Related: Bug 1090681, Bug 1104300- Resolves: Bug 1090681 - RHDS 9.1 389-ds-base-1.2.11.15-31 crash in PK11_DoesMechanism- Replace expired PayPal test certificate that breaks the build - Related: Bug 1099619- Fix defects found by coverity - Resolves: Bug 1104300- Backport nss-3.12.6 upstream fix required by Firefox 31 - Resolves: Bug 1099619- Update nspr-version to 4.10.6- Update pem sources to the same ones used on rhel-7 - Remove no longer needed patches on account of this update - Resolves: Bug 1002205- Move removal of directories to the end of the %prep section - Resolves: Bug 689919 - build without any softoken or util sources in the tree- Remove unused patches rendered obsolete- Fix pem module trashing of private keys on failed login - Resolves: Bug 1002205 - PEM module trashes private keys if login fails- Restore use of indentation patch until another bug is resolved - Resolves: Bug 606022 - nss security tools lack man pages- Update to nss-3.16.1 - Resolves: Bug 1099619 - Rebase nss in RHEL 6.6 to NSS 3.16.1- Resolves: Bug 689919 - build without any softoken or util sources in the tree - Add define-uint32.patch to deal with using older version of nss-softokn - Fix suboptimal test failure detection shell code in the %check section- Prevent users from disabling the internal crypto module - Resolves: Bug 1059176 - nss segfaults with opencryptoki module- Improve support for ECDSA algorithm via pluggable ECC - Document the purpose of the iquote.patch - Resolves: Bug 1057224 - Pluggable ECC in NSS not enabled on RHEL 6 and above- Install man pages for the nss security tools - Resolves: Bug 606022 - nss security tools lack man pages- Fix the numbering and naming of the patches - Resolves: Bug 895339 - [PEM] active FTPS with encrypted client key ends up with SSL_ERROR_TOKEN_INSERTION_REMOVAL- make derEncodingsMatch work with encrypted keys - rename a patch, dropped the experimental moniker from it - Resolves: Bug 895339 - [PEM] active FTPS with encrypted client key ends up with SSL_ERROR_TOKEN_INSERTION_REMOVAL- Resolves: Bug 895339 - [PEM] active FTPS with encrypted client key ends up with SSL_ERROR_TOKEN_INSERTION_REMOVAL- Revoke trust in one mis-issued anssi certificate - Resolves: Bug 1042686 - nss: Mis-issued ANSSI/DCSSI certificate (MFSA 2013-117) [rhel-6.6]- Disable hw gcm on rhel-5 based build environments where OS lacks support - Rollback changes to build nss without softokn until Bug 689919 is approved - Cipher suite was run as part of the nss-softokn build- Build nss without softoken, freebl, or util sources in the build source tree - Resolves: Bug 1032472 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741- Update to NSS_3_15_3_RTM - Resolves: Bug 1032472 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741 - Resolves: Bug 1031238 - deadlock in trust domain lock and object lock- Using export NSS_DISABLE_HW_GCM=1 to deal with some problemmatic build systems - Resolves: rhbz#1016044 - nss.s390: primary link for libnssckbi.so must be /usr/lib64/libnssckbi.so- Add s390x and ia64 to the %define multilib_arches list used for defining alt_ckbi - Resolves: rhbz#1016044 - nss.s390: primary link for libnssckbi.so must be /usr/lib64/libnssckbi.so- Add zero default value to DISABLETEST check and fix the TEST_FAILURES check and reporting - Resolves: rhbz#990631 - file permissions of pkcs11.txt/secmod.db must be kept when modified by NSS - Related: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Add a zero default value to the DISABLETEST and TEST_FAILURES checks - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Fix the test for zero failures in the %check section - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Restore a mistakenly removed patch - Resolves: rhbz#961659 - SQL backend does not reload certificates- Rebuild for the pem module to link with freel from nss-softokn-3.14.3-6.el6 - Related: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0] - Related: rhbz#1010224 - NSS 3.15 breaks SSL in OpenLDAP clients- Don't require nss-softokn-fips - Resolves: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0]- Additional syntax fixes in nss-versus-softoken-test.patch - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Fix all.sh test for which application was last build by updating nss-versus-softoken-test.path - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Disable the cipher suite already run as part of the nss-softokn build - Resolves: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0]- Require nss-softokn-fips - Resolves: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0]- Require nspr-4.10.0 - Related: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Fix relative path in %check section to prevent undetected test failures - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Rebase to NSS_3.15.1_RTM - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x) - Update patches on account of the shallow tree with the rebase to 3.15.1 - Update the pem module sources nss-pem-20130405.tar.bz2 with latest patches applied - Remove patches rendered obsolete by the nss rebase and the updated nss-pem sources - Enable the iquote.patch to access newly introduced types- Do not hold issuer certificate handles in the crl cache - Resolves: rhbz#961659 - SQL backend does not reload certificates- Resolves: rhbz#977341 - nss-tools certutil -H does not list all options- Resolves: rhbz#702083 - dont require unique file basenames- Fix race condition in cert code related to smart cards - Resolves: rhbz#903017 - Firefox hang when CAC/PIV smart card certificates are viewed in the certificate manager- Configure libnssckbi.so to use the alternatives system in order to prepare for a drop in replacement. Please ensure that older packages that don't use the alternatives system for libnssckbi.so have a smaller n-v-r.- Syncup with uptream changes for aes gcm and ecc suiteb - Enable ecc support for suite b - Apply several upstream AES GCM fixes - Use the pristine nss upstream sources with ecc included - Export NSS_ENABLE_ECC=1 in both the build and the check sections - Make failed requests for unsupoprted ssl pkcs 11 bypass non fatal - Resolves: rhbz#882408 - NSS_NO_PKCS11_BYPASS must preserve ABI - Related: rhbz#918950 - rebase nss to 3.14.3- Revert to accepting MD5 on digital signatures by default - Resolves: rhbz#918136 - nss 3.14 - MD5 hash algorithm disabled- Ensure pem uses system freebl as with this update freebl brings in new API's - Resolves: rhbz#918950 - [RFE][RHEL6] Rebase to nss-3.14.3 to fix the lucky-13 issue- Install sechash.h and secmodt.h which are now provided by nss-devel - Resolves: rhbz#918950 - [RFE][RHEL6] Rebase to nss-3.14.3 to fix the lucky-13 issue - Remove unsafe -r option from commands that remove headers already shipped by nss-util and nss-softoken- Update to NSS_3.14.3_RTM - Resolves: rhbz#918950 - [RFE][RHEL6] Rebase to nss-3.14.3 to fix the lucky-13 issue - Update expired test certificates (fixed in upstream bug 852781) - Sync up pem module's rsawrapr.c with softoken's upstream changes for nss-3.14.3 - Reactivate the aia tests- Recreate the distrust patch by backporting the upstream one - Resolves: rhpbz#890914 - Dis-trust TURKTRUST mis-issued *.google.com certificate- Resolves: rhpbz#890914 - Dis-trust TURKTRUST mis-issued *.google.com certificate- Remove a patch that caused a regression - Resolves: rhbz#883620- Fix locking issue causing curl hangs and authenticate to the correct session - Resolves: rhbz#872838- PEM peminit returns CKR_CANT_LOCK when needed to inform caller module isn't thread safe - Resolves: rhbz#555019 - [PEM] invalid writes in multi-threaded libcurl based application- Add dummy sources file to test for and prevent breaking rhpkg commands - Enable testing for 'rhpk upload' and 'rhpk new-sources' breakage such as hangs - Related: rhbz#837089- Update the license to MPLv2.0 - turn off the aia tests - Resolves: rhbz#837089- Resolves: rhbz#702083 - NSS pem module should not require unique base file names- turn on the aia tests - update nss-589636.patch to apply to httpdserv- turn off aia tests for now- turn off ocsp tests for now- Rebase to nss-3.14.0.0-1 - Resolves: rhbz#837089 - Update ssl-cbc-random-iv patch for new sources - Remove patches rendered obsoleted by rebase to 3.14 - Add a patch to enforce no pkcs11 bypass- Resolves: rhbz#830302 - require nspr 4.9.1- Resolves: rhbz#830302 - revert unwanted changes to nss.pc.in- Resolves: rhbz#830302 - Update RHEL 6.x to NSS 3.13.5 and NSPR 4.9.1 for Mozilla 10.0.6- Resolves: rhbz#827351 invalid read and free on invalid cert load failure- Resolves: #rhbz#805232 PEM module may attempt to free uninitialized pointer- Resolves: rhbz#717913 - [PEM] various flaws detected by Coverity - Require nss-util 3.13.3- Resolves: rhbz#772628 nss_Init leaks memory- Resolves: rhbz#746632 - pem_CreateObject mem leak on non existing file name - Use completed patch per code review- Resolves: rhbz#746632 - pem_CreateObject mem leak on non existing file name - Resolves: rhbz#768669 - PEM unregistered callback causes SIGSEGV- Update to 3.13.3 - Resolves: rhbz#798539 - Distrust MITM subCAs issued by TrustWave - Remove builtins-nssckbi_1_88_rtm.patch which the rebase obsoletes- Resolves: rhbz#746632 - Adjust the patch for new sources- Resolves: rhbz#746632 - pem_CreateObject() leaks memory given a non-existing file name- Resolves: 784674 - Protect NSS_Shutdown from clients that fail to initialize nss- Add two needed patches - Resolves: rhbz#783315 - Need nss workaround for freebl bug that causes openswan to drop connections - Resolves: rhbz#747387 - Unable to contact LDAP Server during winsync- Rebuild- Resolves: Bug 784490 - CVE-2011-3389 - Activate a patch that was left out in previous build- Resolves: Bug 744070 - Update to 3.13.1 - Resolves: Bug 784674 - nss should protect against being called before nss_Init - Resolves: Bug 784490 - CVE-2011-3389 HTTPS: block-wise chosen-plaintext attack against SSL/TLS (BEAST)- Resolves: Bug 761086 - Fix nss-735047.patch to not revert the nss-bz689031.patch- Update builtins certs to those from NSSCKBI_1_88_RTM- Bug 747387 - Unable to contact LDAP Server during winsync- Add to the spec file the patch for Bug 671266- More coverity related fixes in the pem module- Coverity related fixes- Add relro support for executables and shared libraries- Add partial RELRO support- Fix the name of the last patch file- Retagging to pick up two missing commits- Update builtins certs to those from NSSCKBI_1_87_RTM- Update builtins certs to those from NSSCKBI_1_86_RTM- Update builtins certs to those from NSSCKBI_1_85_RTM- Fix CMS to verify signed data when SignerInfo indicates signer by subjectKeyID- Fix pem logging to deal with files originally created by root- Retagging for updated patch missing from previous tag- Update to 3.12.10- Resolves: rhbz# 703658 - Fix crmf hard-coded maximum size for wrapped private keys- Resolves: rhbz#688423 - Enable NSS support for pluggable ECC- Add "Conflicts: curl < 7.19.7-26.el6" to fix Bug 694663- Construct private key nickname based on the full pathname of the pem file- Update expired PayPayEE.cert test certificate - Conditionalize some database tests on user not being root- Update to NSS_3.12.9_WITH_CKBI_1_82_RTM- Fix memory leaks caused by SECKEY_ImportDERPublicKey- Short-term fix for ssl test suites hangs on ipv6 type connections- Add requires for pkcs11-devel on nss-softokn-freebl devel - Run the test suites in check section per packaging guidelines- Prefer user database ca cert trust settings system's ones - Swap internal key slot on fips mode switches- Update to 3.12.9 - Fix libnsspem to test for and reject directories- Add suppport for pkcs8 formatted keys in the pem module - Add verify(not md5 size mtime) to configuration files attributes - Prevent nss-sysinit disabling on package upgrade - Create pkcs11.txt with correct permissions regardless of current umask - Add option to setup-nsssysinit.sh to report nss-sysinit status - Update test certificate which had expired- Update to 3.12.8- Increase release version number, no code changes- Update to 3.12.7- Rebuilt- Appying the changes in previous log - Changing some BuildRequires to >= as well - Temporarily disabling all tests for faster builds- Change some = to >= in Requires to enable a rebase next- Fix SIGSEGV within CreateObject (#596783) - Update expired test certificate- Fix nss.pc to not require nss-softokn- rebuilt using nss-util 3.2.6- rebuilt using nspr-devel 4.8.4- Update to 3.12.6- Update to NSS_3_12_6_RC1- Fix curl related regression and general patch code clean up- Resolves: #551784 rebuilt after nss-softokn and nss-util builds - this will generate the coorect nss.spec- rebuilt for RHEL-6 candidate, Resolves: #551784- Updated to 3.12.5 from CVS import from Fedora 12 - Moved blank legacy databases to the lookaside cache - Reenabled the full test suite - Retagging for a RHEL-6-test-build- Retagged- retagging- Fix SIGSEGV on call of NSS_Initialize (#553638)- bump release number and rebuild- Fix nsssysinit to allow root to modify the nss system database (#547860)- Temporarily disabling the ssl tests until Bug 539183 is resolved- Fix an error introduced when adapting the patch for 546211- Remove some left over trace statements from nsssysinit patching- Fix nsssysinit to set the default flags on the crypto module (#545779) - Fix nsssysinit to enable apps to use the system cert store, patch contributed by David Woodhouse (#546221) - Fix segmentation fault when listing keys or certs in the database, patch contributed by Kamil Dudka (#540387) - Sysinit requires coreutils for post install scriplet (#547067) - Remove redundant header from the pem module- Remove unneeded patch- Update to 3.12.5 - CVE-2009-3555 TLS: MITM attacks via session renegotiation- Require nss-softoken of same arch as nss (#527867)- Fix bug where user was prompted for a password when listing keys on an empty system database (#527048) - Fix setup-nsssysinit to handle more general flags formats (#527051)- Fix syntax error in setup-nsssysinit.sh- Fix sysinit to be under mozilla/security/nss/lib- Add nss-sysinit activation/deactivation script- Install blank databases and configuration file for system shared database - nsssysinit queries system for fips mode before relying on environment variable- Restoring nssutil and -rpath-link to nss-config for now - 522477- Add the nss-sysinit subpackage- Installing shared libraries to %{_libdir}- Retagging to pick up new sources- Update pem enabling source tar with latest fixes (509705, 51209)- PEM module implements memory management for internal objects - 509705 - PEM module doesn't crash when processing malformed key files - 512019- Remove symbolic links to shared libraries from devel - 521155 - No rpath-link in nss-softokn-config- Update to 3.12.4- Fix FORTIFY_SOURCE buffer overflows in test suite on ppc and ppc64 - bug 519766 - Fixed requires and buildrequires as per recommendations in spec file review- Restoring patches 2 and 7 as we still compile all sources - Applying the nss-nolocalsql.patch solves nss-tools sqlite dependency problems- restore require sqlite- Don't require sqlite for nss- Ensure versions in the requires match those used when creating nss.pc- Remove nss-prelink.conf as signed all shared libraries moved to nss-softokn - Add a temprary hack to nss.pc.in to unblock builds- caolan's nss.pc patch- Bump the release number for a chained build of nss-util, nss-softokn and nss- Fix nss-config not to include nssutil - Add BuildRequires on nss-softokn and nss-util since build also runs the test suite- disabling all tests while we investigate a buffer overflow bug- disabling some tests while we investigate a buffer overflow bug - 519766- remove patches that are now in nss-softokn and - remove spurious exec-permissions for nss.pc per rpmlint - single requires line in nss.pc.in- Fix BuildRequires: nss-softokn-devel release number- fix nss.pc.in to have one single requires line- cleanups for softokn- remove the softokn subpackages- don install the nss-util pkgconfig bits- remove from -devel the 3 headers that ship in nss-util-devel- kill off the nss-util nss-util-devel subpackages- split off nss-softokn and nss-util as subpackages with their own rpms - first phase of splitting nss-softokn and nss-util as their own packages- must install libnssutil3.since nss-util is untagged at the moment - preserve time stamps when installing various files- dont install libnssutil3.so since its now in nss-util- Fix spec file problems uncovered by Fedora_12_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- removed two patch files which are no longer needed and fixed previous change log number- updated pem module incorporates various patches - fix off-by-one error when computing size to reduce memory leak. (483855) - fix data type to work on x86_64 systems. (429175) - fix various memory leaks and free internal objects on module unload. (501080) - fix to not clone internal objects in collect_objects(). (501118) - fix to not bypass initialization if module arguments are omitted. (501058) - fix numerous gcc warnings. (500815) - fix to support arbitrarily long password while loading a private key. (500180) - fix memory leak in make_key and memory leaks and return values in pem_mdSession_Login (501191)- add patch for bug 502133 upstream bug 496997- rebuild with higher release number for upgrade sanity- updated to NSS_3_12_4_FIPS1_WITH_CKBI_1_75- re-enable test suite - add patch for upstream bug 488646 and add newer paypal certs in order to make the test suite pass- add conflicts info in order to fix bug 499436- ship .chk files instead of running shlibsign at install time - include .chk file in softokn-freebl subpackage - add patch for upstream nss bug 488350- Update to NSS 3.12.3- temporarily disable the test suite because of bug 494266- fix softokn-freebl dependency for multilib (bug 494122)- introduce separate nss-softokn-freebl package- disable execstack when building freebl- add upstream patch to fix bug 483855- build nspr-less freebl library- Update to NSS_3_12_3_BETA4- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild- update to NSS_3_12_2_RC1 - use system zlib- add sparc64 to the list of 64 bit arches- bug 456847, move pkgconfig requirement to devel package- Update to NSS_3_12_1_RC2- NSS 3.12.1 RC1- fix bug bug 429175 in libpem module- bug 456847, add Requires: pkgconfig- nss package should own /etc/prelink.conf.d folder, rhbz#452062 - use upstream patch to fix test suite abort- Update to NSS_3_12_RC4- Update to NSS_3_12_RC2- Zapping old Obsoletes/Provides. No longer needed, causes multilib headache.- Update to NSS_3_12_BETA3- NSS 3.12 Beta 2 - Use /usr/lib{64} as devel libdir, create symbolic links.- Apply upstream patch for bug 417664, enable test suite on pcc.- Support concurrent runs of the test suite on a single build host.- disable test suite on ppc- disable test suite on ppc64- Build against gcc 4.3.0, use workaround for bug 432146 - Run the test suite after the build and abort on failures.* NSS 3.12 Beta 1- move .so files to /lib- NSS 3.12 alpha 2b- upstream patches to avoid calling netstat for random data- NSS 3.12 alpha 2- Add /etc/prelink.conf.d/nss-prelink.conf in order to blacklist our signed libraries and protect them from modification.- Fix off-by-one error in the PEM module- fix a C++ mode compilation error- Add 3.12 ckfw and libnsspem- Updated license tag- Ensure the workaround for mozilla bug 51429 really get's built.- Better approach to ship freebl/softokn based on 3.11.5 - Remove link time dependency on softokn- Fix unowned directories, rhbz#233890- Update to 3.11.7, but freebl/softokn remain at 3.11.5. - Use a workaround to avoid mozilla bug 51429.- Fix rhbz#230545, failure to enable FIPS mode - Fix rhbz#220542, make NSS more tolerant of resets when in the middle of prompting for a user password.- Update to 3.11.5 - This update fixes two security vulnerabilities with SSL 2 - Do not use -rpath link option - Added several unsupported tools to tools package- disable ECC, cleanout dead code- Update to 3.11.4- Revert the attempt to require latest NSPR, as it is not yet available in the build infrastructure.- Update to 3.11.3- Add /etc/pki/nssdb- rebuild- Update to 3.11.2 - Enable executable bit on shared libs, also fixes debug info.- Enable Elliptic Curve Cryptography (ECC)- Update to 3.11.1 - Include upstream patch to limit curves- add --noexecstack when compiling assembler on x86_64- bump again for double-long bug on ppc(64)- rebuilt for new gcc4.1 snapshot and glibc changes- rebuild- Update file list for the devel packages- Update to 3.11- Add patch to allow building on ppc* - Update the pkgconfig file to Require nspr- Initial import into Fedora Core, based on a CVS snapshot of the NSS_3_11_RTM tag - Fix up the pkcs11-devel subpackage to contain the proper headers - Build with RPM_OPT_FLAGS - No need to have rpath of /usr/lib in the pc file- Adressed review comments by Wan-Teh Chang, Bob Relyea, Christopher Aillon.- Initial build 3.36.0-8.el63.36.0-8.el63.36.0-8.el6nssbase.hnssbaset.hnssckepv.hnssckft.hnssckfw.hnssckfwc.hnssckfwt.hnssckg.hnssckmdt.hnssckt.hnssck.apilibnssb.alibnssckfw.a/usr/include/nss3//usr/include/nss3/templates//usr/lib64/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector --param=ssp-buffer-size=4 -m64 -mtune=genericcpioxz2x86_64-redhat-linux-gnuASCII textcurrent ar archivedirectory?7zXZ !PH6] b2u Q{Kpڰr]Lgq 33=~|sq?G\6xw*CpeR_q\x%V2|Êw*6Us%ǦT/, }3^DQ *-D1X5xM()5\j1(Y I36g:WiZQDu7D:Gs9n-yIpAd.SڬB Ys4ӝjżOطtqH5|# |[Ү+Y Jcbg=ڲ[t3m % Ҵ4Jv98(G6EDQES ;ogge쮎 z)jO$6V+f|bb>r~E:FS`ֻ* ^YgVv*' fD^`g^0D$SՐzPGl"ǺPc3۲̊{0_ ZM{뗨 |pġcԛl#*=e*EpUI=vv7nB¥6dإm:<}(4(U͇He6,JioFIDL5@Ϻƫ)ޮTE>2x[x$~ ɑ==y^NR[ٹɼ1z嶧8cهÑh8jY.Nk$#WOI# QZwl{k+vZ:DMP2`SQd)kTMƱRH|2C?=RqG@þ|NcdjakN0lV$P6%->&b6ճp3:26\Q~@V)I,ct,x\|׮}얊 z鮸# F m%Z,?s ;O8r#&\`OԻy{jLA`˨>cO;~Fb/-2xH/zeqą:j],z\S[$1l {8dAc-H-"ۓBN/bz ȯ)u⾸mL7s%_ʀg/=܉pNrf`S mom2'FF%ZU}qDP:~/;ʼn̫fBMNiTE#ĖۖhB R$NAP~.,ZnKEZSJ_neTcZT(wj5"N 73WAHgψHJCT?8AUeS<YB$ޢcU!D#*Gwi^q<׷?ńIUB+dpt֪ͥUzJ `2m(g{G֩r%Bd {XC6_=N/)b=`KnQ DzB޽-3:E+V+~WB0rc^h+?S?z @fwAP*U;8 !a}dP 4C2w,L[#{=|A=q"Biֆ6m?K3JmWLAN,Z++~Aד ?[.({̓k\02>*4&_~Ԋ<L2jMs}3Mcc[X9MZ_HsWp)!V=>b-Zr큚Xآyz~e9rg}ZB>5kLƙρ5ϲD2oxFǹ1+Xg40MbBU;YI7`IzΨC*ֈWƘ p2   B^ҬKtE!OT 1+w,8ޥj:+ v#\ r]Dn&` o 8$T6"R>zIv;rc2!M>ڈNgbR<,. }®)?nt4U >>#\5(⠼*} ԹQ'Âws )UN"A/Rt +uc}ع<ܪ)_¢pp R Sl ?6JG\dYJo8;{h!IC#)Xtr.Gy2!l#F(?ܺzU+y A^Sjg©2͙&jubc /;: oϕB>Lxi?0)Dh1ILokM`8b˷jxpSa,?^zEE"$tF %~ Lׇkfe$# h /%eAjJgҗN)S3{c0M 2mVTz3[K478.uV]c(-~v b$(oڀވS:m1)L`îp$ճ:1ၞ͌b#zB&rh耖kW~W,_(KYĈVbwE%*{V(k}j{la֦R@S\؁qHirbI@dp's:MЫ'#'Yk\gCN 9#YTC5y1uh1bDDB?l@.EL$=w|*g4kigiHM^T:&r{ 3YPy+qJ}RAQ%v 9Qr\NKe`.^7_!K!s:%?.wkL+Ni]hlƴMY- ?͘J~* &C- (v_@:Gv \=`8 ZlS-%cQbvu[0r^Mym/ M\+)B$mٓ/Ip7T#Vf Dj@O#Д]rJڣ[hs7_p VOOYZN#[XUŚNo@;B=Kt;[Tjnjb9̚s/(~ތ準(."yҟu#vw[r DucNno. mgg~F/%4qN{M/2y=Q\?f?Y-)=%F2e;Ns Oe.<Ūݹ\ݣ@K]z&kq52:`|K݉Mw gegnH^ﴏ7c$^)N!ꑎPkvϜr-\?!rad& 1NNwCR aWچ°b}`C)I`j5$ΗRzd.Ƒf4^z~U g-L%40tVx(ug4l5f2ѩ idpsZ-eVֵxGDyt~dLεQ]'muMt%`(lty=`7Oϴwe6 p;WA@\E#MZ<ʀGrkI1ޔtڗr 3}w,݆5#&"j^@ߦo0ݪ8?,4nzh7)^UH8=kH`U#._ѰJ؃ ukXO,a}%@ɡ{i)*(ˢ*eJx%9r@{JbJQOjRqGfgvqi׾]9={y o~wwGIb@0G7~/ 9Ye=c@'@YpS>l.o,{:XDڶmS ChIT\m0т䃒k|_O`e=xSeP9 !kyCtI3ayC~c|kN5~}yNC6F#\y˗mkΌ#noa`qx-'j@.W$fc1֌p*n+A-?ѻ?]"<:8.nW1@B¤cmՈShW'KţgfSؓdضR\ f^E8 27, .lJu{IVU9~(etVXKO)dAݸWX!WQC3?9 @v1D$a{F\7/k /6M ?2ҳ妝,5j"b3TuSc|`3&(.5-$& :h1hS.I=aLBbo"ѼR*rN1yBH찲"ȸtuz:va&Jϒj!5ow/va.PE\aU3@%ygM{ޔ.& A{Fy3dL{BffC<JXʊDD ϩYmyc! :0- V1'_(SO7b5p:fM\bd:O_VT⵸oYn$aPo,0-)PSZ e]sS+p:)7G %,ݗf+!|cbLHKܱm*.G(`7VB;B140 n+d~Mzc+}&^T/喣WM?Dy*u={e8%3Ĥ|gGOE`~~٠x)9Sֳ)Жѷ X)=jPJbP1pNf2:!N2{BpDƭ*ma(QIO"+8@QicȸxuHR㿥}8Nm\ V:LzE˚[5MR4&֭"i, q!|GO0ʊ2bRs{VH>]G~nGUkgitT/"o1U5금j (b 9VnJ)aI0h6 vЛG)T;AEOZ0ߖ="?cAtdaV=\z];Z uIy_ ..db{`eސ'|03a eٛbByiB/W 'žC}U b0:2\/A~1Xţv4 3Vեk[LHV°zkꊃtToEKw R-SR-";;5A>ٞpÁ2-FУ҉/G#ԈQU-&?e-(ئ'h&+6Ȅb}*l D[5ҏC:\XöՓ6*_4j爱Ƚ {Ukwg)o,kqݰbΪ[Mu+5J`k]h,Rk)Ѷ m^u˨wikю抯%ѧNQɸ>xKzLb%Zy@ҹ_Ru4]4L!ȲLjkkyޝ:&>bb`n^50CQLdIԏ P'Wr3?ڎ -u2e/sDoUPltE z-C7Od\ UÕ uwſ5#+@8^ӫ@srfپ+8[ps/l| ?rbo)Z`.L/]Q&aʸ0DX^#ީ@a>\hC1G9{vtr n:){zb,-w(Ϫ'Oq*(!΁:ZbayL-l` u^)Wh0֌C9;EPp7קg=BwSUVvWL څ+& {W0\3.ݿr9;4j'%o0tYSTt윐ė#(ۆω2Tb)xAZݛK)5rY:Ё9Vp,@>'j: ӰHD)WN=ce** G!tz! raMK-is1s'hRH3:Þdz;6^EY!ps"/B-F ^8F]@RZkuCD9 e=ykGe\v#4FM^#q ֦+^%LeCpϙa QD:l%- Mcuaya;`|b¥8CɐSF_OvULCyMdk 5X%@|JYX[r[nl Pt`k?*z ތn4{hu4ڧϭ"An<w Po5$+ts&}MCO8~y WBϜ`~~mB(6G%#A@=-84R$WWX{ cҩfёFkp ;ow)9 %iwrP$6λYc ﴒo$ D֜,4i_!څ@Oɥ*'Bs=~Q[_;?-vGDZ!4,sS'mg&t -ڤPifL9 ψ']E:q-RGgɮmg9om͢IY$'Q;w֐zl0vZx B2A-. Anuސtm Y3rnHn"rͳ4p8ӌscy|:eaOtPUJW¤lf|q>B9wL2֭Ȫ,iS o4_q"()8=iUlB0{;,wd_%b3UǝRGO"az҆/Jڀ޳#'_ꨵIC#]ySs{z,i3yXO 0`] Q{\_w1o?4e!-{D4Ǐ[!0&D"{ļL\~zfHVX$[0,K9L]U aw\Z0[  f$(kСu ȚgTxn66;JEf&&?sry]1KbWfk3ѦW7F&gċnBEgm7HTL2-OW- gLr9%F]:fEﲬPV#-nyUϖS{O IL'∨nj_rmjaL#&El \P9E{+>?Rvs^fcz>}ɇJ!m jxQL 랰]0U\z.!Ye>Ƿ2Qɭ6NT&jNҋ 7N`UWd,En(: OQuplHEJ݃:m6S,:W1кMm7\׮q̫(tHT#mc0^ ?{9 ;EGcp\~v b0≉[|Up5ebZ}#0o|;2c}oKP~KJ@ }oܺxTBy+W:7⦕6`+lB+ c&pYi?E:0 J#/dNի2.F7rD#&A9M?`=D{CDmjf"kjU~7#3]Qd6?0FBVqBf7Hj{Ĉ/NYJnB%*!PRp. 4I:(W!Q~LcdX;lM:HgĊ@wA$6%ﱱgOC ,&ڞc`1l1x/`QMD{$K%$D\FIuة48 99l;iM\[8*#MU`.gVg /yx"@MԷci.iʍ`|&ZU$­I*.o \Fի-t̪Xd*/0g%>|}/Sat>[W;>k|N@U[n mzp7QkwGg6*p nMα~DfjXco$Kc?0A6F<`O 6^!6Sw,sC97Y$+\q\TFҎmH8߇jVs<Ͱ$?\|8\LHSʆZǭH("}~G(fVJM{{R2V$:x s? #qsG ˂BP`̗g!}q d|ÁS5אF/ؾB8.צkmny3RvK,MKjV.0ꡦ =*٫d~q{h0z$]=`B@ԅjde^N٧VV]tF#t9g^| {󒰣K] KiO,sӘd{~;tU0R,šـ<;c>5|(.ć8Qwګ*<'$DynkVZhvc 4'>+ J7~}(a^]-!-%x[G9Δ̈pU1y玺Dޅu*S ]R<-뀵_<)(;╋at0xj uk>0Xӽ%zTZyi^2DV$H>^Z=Qa|Yh^~/;^6\J.7ޝ/l:*9 }&bɄ^}Y!0]CO ¸:n!xwlO0#ҁBeaɫ}XXÈw-r,^d~65NR ʺ?l"/a㔃S)+-1ȣ(̪*Y]r~6y]48<|ꊄeh{.]{pGXظt"!m1Pt{s Tn[%,: U7y@@1 ko3T{BbyǻRȖt% <;M>[00r4TUHz{r"ФZMg?pxc÷`@͢ rݺfR.Geq_8## -T>'H,w@\αؑG/JT>%P46v'Mfuy<+.XY`TІ<^>[>aZ[՛d)[&|n6rtxٌ NO<[F ' :0B- N^)=*,:h?p]nZuAl?4 7y) $9`B.aqЈ”l fs)pf=VG%DSso4($ oOB1e+&J"dɛO,0yUhF^,p١r${qC7UNw_).IfDLZcbdQJ O( q\ogKן Xl‹=ڴff! YXT()UߗjOUQ񦿣*ؿ(l|sדsiđea{uW@j4T׼T( ;"F HN<E&]@6OfY//':44A9u_2UHe+C5>jWzHi"TV17S:X仇,9'M02@ik7yb{ פyNJAUI 1n+P.w ~7}JdhS䳀 u*MMF=Cuf]nf%5_'7EH~m0,H`\];b*9j&G7 {vy 󗛦[e9D;N0aCiISir6{Y9[Yts18ČtHڅ`rwZjԓPqCC ~ser@@gw~DnΌ09r,+iR\4 3ؑ~:A4!濦rgs}+y;4"#mtۣm"f^L`?=\uM/4"@z2;?J<`jYr[SW* MMQH\乗I M2.A!KH;޽Jq$6;qTr<(7JN>&h <3'L2g&94~;E. =u!stb-+ĕw8-P#O+Y\/&ȓWDfp$ >义=No̮ aI♭;+6|>\#7^&^պ$7h'f_c=rz@%Nt}N>tm"?m]Es>Bybb)YbW{!~ 1!-"qSa@a5Hjutu ӌCF&`,#! ,\i&e }L:ŢjSmv 2`W U+ӏZhO Uad(bt'" !WBK2a8b((L.A^ŏNQ 2 ?`Ѕez@k7f 3d>p~qڰ5ι8݂r!G;k~Xԅō" 3/b*_ˉ\m^N@yAI6Kׇ&TrԀhq^c̵+uisFO|6>s/:CL:2_i܆K6{8Uv[= ɺy/3~rZƬ$AsonmuWl7Wl054zCIBÇͱ'?84[Jn5*NIϨIwKY30CNR KMJw;xC<13/6@Dl.u}"/e'!Nqc-39jS")&|3':}bStA ۤsڍ A'LWwVgm5 h\fJH~> :bՀ=T`ZV?SX?J>ä@qҋ^͒*@ћl޾u/5d!iGYKGydMx1CbIpyC|"Sco[W} pq=I#zbw"emTUʪ_{I@djUpz+ȋ'[ c%#vCU}ݛ[Gpg+s;1Ac6Hz:%ks$?@-7Y)/դJ*UUIVP w확] Ȑә)| x&0GL'* fzHw2dH=L*+yrHezs0.,dB1 &W Zvk !j̄}`bZߖ 5(ʞm/sM֭2M#baܔ0Jze4h%c#(T⎙iɹ̶/LQ*{ ϸIڶL*Vtvzng}{;GS|C^sjK#R؁`%c<\7ɼwIn6S^ocd{B#׳e$ω BܒD=M;֤ *&UG+_ulLN=>I29 uC!jҐ?IsW@U$(/ހ UvG) 1ӐH8×30f 0Z7BGd8ҜzuiFxT9ďT*aeX3\ɿL|><~84 80L2}q9 [jYV9O~,~_Dd0D dfHW\[)&dpat^nѠ.b-YIڤ*yJLy $c!!e`\3v޹Ǚ"愈4eU̠a8${ `<RӝB!l\a >Ojn?V:BPf}( y!aU{_lv}bdDٷ$S&(SQ`ëmF@tۤ<&0?TI U,0Nklg?.UIY|sFr߶緾Ws;qz?{X=?2:rHBx#Imt]tj֬>lYxiٷҁ7F4%zثV h#k!&iuRTRi2<1!;GqIl?i.02s.TێVg+Z}ږD$J=*w$q-#q#%.qQV7N&c^ saG\1BJp>NF+xLJh,[.ϼ;iX$tCƖRiGE[*5c/sV &Z!<ρ+9wۡC WcR Ԯ'(} {rզsaa6^1;SnYQ*32_$`%LL˷i17h3E/FEc"ۈu.=4*n&j9c>L]8گ߾aJyYHpD)a^ZOB.wKBLt' 3X{!VY8I z hViר_Y%ޥ?L(G`fsR mP&S>FZ[֯Ϳ;Cw_ĬJt _bhǦ@JU@iV&LH .eY u/5fX$F D/29 ȯP ĸpfCDݿ[;+op4iw# -# _LX^xL3E~B*16PZgĩ\~F(Hfz7|@ &BGz+a-~R9H۹5@2yi7vd-6dFq~|t|c*zh}9m,2J8pv#@pN%i60DLJ! KzTW' @|ݧ./jSkP -^k8w7ʑ=9&hK5k{owk<_L0 i={,2+w^]?5kn#!R yR|o0A*0KKjq_0i TڹL-r>zŰ &w.)WpsيB-9u])k!$!pKɍ< R7/p4$ΙQ`` E4h9ZXzN>ե@;Ƈ[ԟ3hkA3yvgSHQr[r;P ]7peYiOV [jFf)מSY 4Rn3>f$SlJcLir_]LtP ۧc m~z19п&@Zdǽis|-Cdoi3{AZ+ *\&V-b.F\TL3G3pU;2uE梚2| E;@HRB*ʋ΅FW` PQW2m)xY\Lün'CD_u]ot @sO xC ଁ ?8l6h0Ⱦ6?JH4a+@DT(6QAv[]u|=t+4~5/cf^gַa_r+V}IU>,HY]2 l p "*FaPOm,sMA!A۱Z'd8!t}ϥ&S*n c_ #L|9E%]U5T%8/?.yAFEH$ibfj&LTȺ~~pTpjv| m!*W3D,Hu_ [NuLN@#'ۥΗ#X54RP_p+4ŋc>x~ xX`mL.K/Q"T쑦W]F}`*ӍΎ 2<!Z}Xi2g͋- oWo(ό>Qu.d@( |' ~>RjTmFQ3X)5b}톩Q9!$pMG/{3^J'y\1Gey]U^JǬBB|&M4z;Q=Qa&i|tP£Q wӊ@T>8{T;]O-{hk(9FJ̔`HJCApU]ٴ8OMI)1R~#M /֤up-b%FlOyBe<2kgbuz!ãsb. y /?nK%۰S AN BmVguZzc507M # W} opӆ>Z;OMNLSI) > 5TT1'9輜#l?|[7[sNl歋ˁ;{2ƅ_Q5+$8$Tp}g$JCbs3it=\ OGڑC13.'2U;%ny9wl%3_X , Fo(wUt6w4i'RAٜZѥoO ̜<펛*SQBs*lC]klèώ 4q/6Wzkpm_C:|D;i{Pt]>OJ` _n=Elw !mR Uw_Aj1*`v [)"D=,(,__<뷺^綵9Nз BRkښl7 ^D0V<'lM t~6 B Iˋ{M(O,w{yGBhwT[ZuG[@BY!(◞%]6T%(& 8VVMVo݈n+~?n=ǴΌEd eteЂ3 x,1*2UpZ,ޑ%cۚ?ڋjx ]6/Iie ;g+ Jqw 6FQڹFzȲ7E54oVܖ# +*ZÀpO,jܜQ2T:zwF>?"ܯBlI 4V0ʊt?2iR׮@^NMZV{z_BVUqWfب:ǭT, rw՞?p,#IlSKa ,e$,7Vqqe6\Z\lPVR6(l uBf+,j^^H:vYd[)r &qb 5Jx 7B z S@i=-Y}'͞MwIFrרuOr^JE'`ԛB4֍Z$7devLL;3%Q{ ';Sw!uc{בKLTk\m.,m}PsE?S;q "5S);/R U;Y靕$Cm6M/$c9ӬUbvڕ]=TO5A^܈ tuy)\Vtp(:&4Ubma! 2IJwT…0 =2#‰H5 w.O66gIJE=z܁^].L { 3ȑ8\6:*&۳ O$8.Bkqz8f9)`Lch2y:.6T-\8]T$`u &Yh&fCSYߎc48RP"~@;ȩ~4iyƯåAk %G+43 ;o-4E!>u`oHn?2$t4c!e] u̺Mb͂*bۄ^1DVeZ|Hp+ tls֒f@#GvGMPڞOą)ѪyYF8lGګyKMW3)AI8\.{[Lzk>dL4fQUħ~t%InYU!uH WIkDyU,wJ)3 t=adZk[~D:Ŭ:lAf{ !QyL.KH&,3؊t'M"]`_d~ng e &ʱ56/:,SѨ[̰ʘQg,={z6qU:=ϳKp??i&")QcL!WW)gEob/|Z"/`rV V}\ea 哢XcAIڧƹϽr ޠ oig*I2n8&mr&oϥUꖄ:Vqcģ ڀLFgZ#%@oAtq8 5e0jRw^~s|UG"X]0cbOƲ~ 1gT-^3rk D^H,Й|$ ׉Q9DR9=H/3cKbߏ $ ;|_}DJ$R8ԝ#?̜ oDah9H '[gxg0omGܴy+Ή6*A[oqrQ Q*[bF}YY3;-ſN I7|B\")Q^+^1/5xlr"#?x0\1Mxlh`068f-`ؚIj Z˅dMYe|HO#QꆾGW6ػ4 @yp W,Hu-Uuva'+\xI*3 c#5"^cЊrS`t^>)L|QBhI7X33v>o(SJg>qjBd^L ұ zg7AfrgU^a&U.͟v 75d{o\oۦ1;\!P[~Sh#i A-A~[j$ "x^1ء ͂~ ^@xK9]*-x2 x"WĤ9dҬq##H̦DEf#Icء". ik F^rNM#Gϔu: / Ifa#c <-6XuxiɸVQֈ$m5n˷$8$Q<#|t!ƨPXQi(*px8_! '?Q׻$>bJ'7X|ӇˏI.9UXe:Ca}mpў&,%/mR,e  8J3/>f"s nΒV@N#cDpfm:1FMG҇lYP?hY&\swDRyGz#<c' ^EMm! tЧPVιjL]-aCJ(kle:9|sĨY@=xfDnZ\Җ6sr)†k;!Ӝd7lM/dۻv{$?Ie0o,k>޹||%Cά>fM 'mO3(V(K,q>cllc_'"RRS,^ *{h116g=`V7}#w .dȦLBYΏ~[e6y] r<3F-Ѩݩ{QI]s9oP5~0M/0JHYCxǹ d֡7k7Y٪FK&+כ 6UN?jx@1kb`eD}CnU`L[ rR&BqB d",bL{< "+ܑN*|1~];}4_^ 3aL(B)4~ JFؠQkWp ?CrV|z3 bYˋS=m <87WQH{kIqb}~Ax7uaf?g줷wlWT<*E?_T`1HǨ]FrCh 3ba4ǃˉzsJI'َ%}hSQj8S͇=˾c8_C0Aq a aoDsUF],&i40G3t}DXzr=',9Gg)FK80|S,oZSvUVɬe H (ZX*@1PÉ&ӧs,d2fIhSZtGӉ肺}M[R!ϘCf1#N܆QBKSU[-+T* WpT|ܼ/W?DܪE1(S{\r|,pv\V{RMkn9;E##3,[ ZeuJ>e;+Ɠ&fψ 1/ E̢ Զ3)kĐf[^Eк_4-q\Ƣ#Șt+k#b%牖NGAnLʐAYO|9RgN rPqnvqKN2`r O,L HrC ș0ҽ/_'l=GgFUwZtdZ#fĔ[vocKWuG-XmNÐ:Cee$rjl>$P4 _*|h:,:U38q[=dt8o1T聸τ~pagnYcWi E H&X.+ O*m1O/1[%B%,uNbUB Yd)wmJz _Rfhޚ?懲٭~tIZy =9񒐛ΘB(m}~]xһ}g(t@,W%,mukvSFO|-=fq`| )L\pElկZS~)b$VWWЎkR- Qb!9Y&9[P M" tg6[ϪBv*WE)(-NO!۸ɕ ,"',\I E(l.Qp[n=GR]oYP|m0a%[0Jq{"A&Jި,:<ֶ"d_֢ͿW5s{5}SIZ`Xk .G)` &2Er?@so/]KjB5]g ڸڎvgvM)13eKXHBuf̫IS7~# <>χʪP5l1jG<{Jd&@aA\ʙ쫕u=u^湚P3>ЩP7Owm8jmH{?iЩB92lq2H*Nqn__>dB@>i {$̂2 ,?IpF9U5#D4oX滊S"Fi(yy]]Vڂ(E}Ws87=n?Ң[DCَ|9A%ĩ#yd{<"/GM,-0 6fV{mhЌalM*djR {eʬ8d$s꫻ 2,G wtDتeAHygw~nne)e*BqV3؜;[put;jޞKZІhMؗ_-4R퍭]!]d`5hDX(Вq&<T`ࡨ:]bg$YL{>-8ZKvd$#\Exu'5lѨ%| ҳJa7t=^ޜ6mL\&H]'ʔʄ18,\rfN]-3T1JIK9nztޞNO#|YY(RdbRdXRÂQ"p*ch> OtPiF-+V(m>dUӏ `Ltxc.Ÿ,G0 sh-y9:׽W%ftũE"n8HH8Mr`Ӻ図}}:sciMbU1!kXv{ ,d7* dA*5 rNt!s8I_58W|*6ٖ⬜Q^xf"'%^0.DOy!i~ilzA_-ܭ )^.XUwv 9%ukA^ڤ3*٧ EـY~Sj=X6 m+tvL0 GqBE\)ST+ I` ]wHRTB˸aTo slB ^)-ܨ }>ThĿg:L _OءkmL9h!\B q7LM͑ Lx 1Lf9L8R١-Dք+E6 |]uim<)_q+'؟Di)Ue2FQ>>khth>=9jfzEu"{ UQ;|{v) r Nf.;$ ;"K9* 0g-V&t=2jBy+DQ)9VreT:|9*32<5 b4 racWYvoxDWN ]*b~C!yaBgtQvh|f‚>W3nwQ]bj 5cǹC޴U"Q{ )3A)/Ҥ$>0c`ս'URWgSha1"f8,*u\k(T" Q:׆NB.:S>QxsLZ  ,3t -&9.-~t7Cӎs.a#ٌ`@I,D)9 h Kut*Ddu򒢈6/`04BU-HBҖ߂2i/} 2N}>"u;W-,$F¾ׯ}CX>0Y4:7cD,<3^W : 3e|P2X@Lcr+,#ፌ.o8>*{MM*DjSq3-| @t-{PhI2{1iێIS鞔o/vZ:ǧ ysuz h.!TVqi|n^kۦ!*[Yij7یъD1XJ gpQcg.XR}q^BvU9]@󃖼Տ ͜QTϬZeUSCL tPS4cx|nm1HfFҟg2)X(2 %0%iC;.t2ήrSҮKAk̽?!Ԇ >{q(.]4^k0!ټfu=/ZǛ1h4/J?Mwjo!a> >ðOT?-h4$ʃzf=C71[`qpg2%@Eދh9-jogfY򴧢ul?{-oc!~{Mq$ӎHeRt&rYv.96&bLr/Rdǘ^"i[?92ЅNU DMfUgψ@_K |55# E>`:3"ky5N8.>9We1fiA( ӡá.FS/!=qėfR lG2Af$gAaI[˪hu@xrFVQ7B[jDTpkE$;DDZ`ײvMc S E@PvYF?:CC]rNcH͉{M^QW@0&g 扻ؿtao=ЩK|/ݢh6IW쬺Hz5 q Glp<ǣ-w'DTNK[%؊d4 nKWf'8ni469&^#U\'%VF]zߋpsCR>VaMx=P1Z?Tkzf8^rk$1 NHR˒ӳLYP5dj>W=3bʯ_>:[ꏓG a 4{Rb^i! (;XJ,_Cwmj!PZN) i:5b ~/փN'΀Gh~`%!ZEFI󩝀=`4Z0잘Mj?${>m0=*~&J2*͖^4TgХg/VnDzZoȵ3%YհxBُ#BXeHt0Bhe>etG9!Ω͋ gK]=oSaQƁk%Cx^ AsustvRO֍t: _Z#M( kgS u9-K?gS\z0?Fgڝck,/t{u4*[9ֺC1 f7U%OV/] mo\_8Hϖg>)YɟT >۳ߧCA@yNz6?j̔QK4jJ-h6Yؑx}!>O;q*+¾ /m>;{jm;nd:zduOǖ<\,(^x&wFJ}{a!6Xuf}׼sG''yy^7#)Ά1 ]YTg!]qPв 3_ղrmR ]ָTBIRT(NĴCG+#337/4,Kb\O1gz+8 hj@ʵ뭑<Ն2~R+"puY38P>ܲۼ)qgwKTN3<)eϿ`CW@͔}E# =`5nc&,G o$i˙:c8"/ >u lr }`FUxI[#u۝YẢ@}Z*U>>yVt1z`?Zj^b/@1A2 R#Hm,lNH/"D,tuJGcr11>t20ovv^^Z]\ɐW>z!R_3՞ j_2LZh}RkZ#fgS9/^gH?3ESV7;<){=G݊<~&>W}/!&i۞@%e燴-U[%>Ke?O]kC=XMlU-6}Z)j1S88$9y=oT3Or?%{}v 嵛r'l}ehz14If& Ag1'KwWa.b pIR'WH ϢC Ĕ2W2^+ y c2'|X^)=#p`ih`UgX͟p>QgFVџzR <`FUo/$Jm-?Bb5_vTҢg 8;KBj]o6C@< 4a<0HdSޑ[O 3(}.: oQT& 佮;fh1ӥo`vԐzе.\/3M@!h 6G.pc2#Qr~*a`%+zT(S>q΁Ooqz \MXˮs(䱓_)\;Y<7ݡK[z>28ܛ&!׭t@UANcqk~j}*lc(U en-ZloH<0g.!.*yV7,6qOڔN,)g}?EŅhfs L mXq}S<ѵ$eYd0_,Euer*%ː*O?M[[aBlh Ēr q(TVo(]KN *;"˘+8` MX!U#aǧ:@;6clVcW W,HLU+Vv(I㹯a!+r۩RY |y e"YEtjȺ!7}Wy翴tC"<^pJ<5^8=5yYP_iΥA""8t}PƁ w5UV- ΄9CO.zw>GipaKQj{pI.H#gtO8ǎ7SE y2ߏSKRņtq/ ;HnSNޠBu QM[pSQ;BI<"h|U)BF*8X1^$QNSUuyn!hi”`*6:QT;zutiC&A'[aϺ5"v-#&``mi8w`}N-RԘRDO0 ҦHn`HV o,ݥa)N[k}whx?5h=oFa$ߤ/(F8p]`A؉D>]1 H(|nHrW5ln:KaRiR,=u;BR%vqFS(˿gFxB >{R;VH,&4Yi)f նO! K4 o!3˹錆ߩP_Ap="HFvQf8#jĶ*X`*N,c.ɖ|+luMp_GG 1162l(C}"RMo S Mps\>!PLNFy㌥([ruuŴ]tDp502 PH#"5GY$Vc [ k\6ۏ46&ثҰ)~ 7nD?+ o>Q& Kd<6>f]|5KLO}0<^cY)xk4?=S}ˉ^N<6?k3ZpohW-\^5^`j!P֮ܮ]__\]Q~qˆOBIL0TSN⦝"&N[I,`ڧ‚׮$2|@U qӢEM8Mt᥊|][קHm*36jͳX/4PMnE!QWcW<ENAY~ʛ=LÞ>I900b!$W2p*ݴA3,Qca'e.N 71?HdDeb;b͝gR&?fNzuGUSږټmj8'Uh\iXuIZ G #+DVl^o UI=bշ_j|lihI5чR͓_@EY 'G|oiUhmYݗ|rM8mk x54j2/rNYH2zݶj鑼Cӯ$eofW[ZlX =fM/z$6ybZ[#䫺FG:7;!Hʥy]Dk।j.H~qA&&'*-孥kH}kG4&BuqޡYsQcw9mH?fLx$Y/ ؒK;/irWocT tAYmU@2)J>H.71gb=gD~MZHpgjrGc.J^w?!+\c6+B{xX̴~#2ɣU +A;-\ңQPy PTcAYݺ*S-x#AA$7þ_XH+ZA]U=Uk*W x"!XQoY*(k-ȁ1ߚg8R=.νbo$J#]L*M%ʭ>ZvUyx$ UǔP9X:0p}+v9`9ciQĻUWYn.Uγ}En:,  VSSeN16h?/z^LZd߿pJ *p.%M\CΎ>tVGgDDWvj< q¥8ї(̐ 0ϖ=5<;؛^4EoRwwuHnkVڷguh͛f>&aݧlK٥=6_('Nc5iuEێw߀MԿ 5w6ՈI [kQ$5=;pd:Hϳ;W@A'_N`.(I/bN{=:C˜Zxx&5iޜ-,4T8geX1gJseIГ=+Jk.fby2"L07M|BEm\X)]>>!>DcNJƨ&*lS~-u4!Vk֒0븭j'kI%ǽyj*riI8wl0QĿT}aE81#JeMx7y,,7Nz:-E"$TLBbw%Mn\S oBn )&;e (JJdax] '58!q{9E—Km5)UC{DBK,V? Ə5zhef83ƖCZtslwfq7sM?lT3d+"ݐyPCpQU*9 qLhzF1jr ]\P}o/Woa70޶}5']oJ?EVrLO'(++Ñ|pm4ܦEw^~Yt.hPYHTQte4`StacZ! b` v&PvgPQ oCF#姘*F~^Ƹl{O N2zL s!M:E+@+؏g(z9Gn\yI>/0876IPݛ:5#bVd2 pd7 _ w|H7^ԥt2smT[i٩x[Rv|#%i./~5<$Aִ-<41y|Ě|]n;v)_yţK/dqszo(xވ*oA1$x |iQv465D$9.Y]Y*~a 1kBۮ.)urMafi!%.Nd|dq FRb H%&{fP~݅Zhaplk/xG]i~+xL17J 7eS+{x ePySPcĸ4}I^RbEjT}In)''§1J8]s{h|kT&x);d^3RP&`' 3^}~&x"| 77C}&EXR._5AuNsx]|?TҐ<>"~ 3MMz<MQ:$aT m693eu5MpT*P1^;΅(lAtd &ԥ,z`TH*Z3LoƑb) HٸE@P¸'icg:Ճd,&ơKtCdlfw9# 1H}Id^1,4!ބ w8۠n<$:ŀ3س9k'=LۍĈD`Edm jMU/4oףb{p-KlRZGTw͗c\6GkܗŎd$%N~jmYV 2O1v8Bs& 6T&Qѩ`$[ϳ?JvZ?#蚐 4ztϙݯabGȗݵ72T{=;`WH¦e oՈPuÄ ZB%W14,;Jx]G]ypt |rlSqt2pK+:DTg }q L{zcC^}Yh~<\[Vqn8 $$Js ?.<Bd_7 +$)υIBmo /v$5YP-?{! 0SF;W>nJSfCE.UqwSo)Nt|6(:^`Sv({"(Q<–k6d4: 72.m?nc !v+\@JDF9pd-/ʳ\IS hwVq^v5T]q)%k`o趢ލhxX0+;.6mn~E.ÑîT?҂p>*'NRv( -i2jbGύMO],E{Iwr+I Wy=8:(0a54j8(E:]~]=*Zzd'%?΋WrMctKt 8 ^g"BQ.$L0ʭRڏHy4`"Lq:oѸ(G2ySD}4g䤰+S'Hpf.> a N/Jr0hDZS J6*tD)>xfJ~'G5kn k"=ޝHBЍQZ:YG4%׽"GK~Oe H?X$[@i+a?mkw w:|*ʜH7*s=c-WQ,ϻJv,}EyWzKIv k`ӄ&b#I crRv=p$ЀIIHMPazv܊ַ( {@9Er6GY"jN= ޵J4>`,dɥ%X kfב/L02?V![R&⬔ &T>pkzAɖ =ȳA;=kTGxyզWȴxl߶s5ݶd@Ow*Ce$wLo!%6rg?:$9nZ]tA. ^kjg>В[:. \llAnW1Ѻr S(r Ԡ w+2\10 8˱uRgܶ$jF!\^菝9yK h*k]|_G^y!ܙ*`A"_X]-v*hÑxgl Jbmh`T^%bJ2ggMR4<.sמkYRr5 !-CA󳖃mSW.Lo13EEs*JhgRYfj0EG~h#pPV/lKhao1G 2b"up6A*oRuγH`isDƵ4QU]rzëa9ӰGTʑw Ă@0xA! mugڔY៥۶Li IF|G#0Kwh=%X^e]IT@w÷p$;WwzG/?- ]AYi$C"hNվ8.x,,@1W5l duؕvy*H Yr\QB_Foq{w.(v8W4ʲIrM>ImkLI9O&;/Besjb-,a|@Ŕ)R АDY_|ˤ7)8QR@͌fP8<RzYN:s0ǝko]NDo>>4r3U(=:Dr莨[jirH͔iEB0[iM#C%:G #QưKSw`6(/Bc)]Օ< fW@8 lPs?q$8s")epEw2@'0Nk=`Lb~khpj"(Avh5D?/f\W2#K'&|\%kg]KhC/Qo_ao!kj$;OeL/h lv2:sk/7ƒX!X(s)K`Z M|ke(X8z ]ٍ}9^@+Ȃ`DBwxuøJz>/g"#pNGJeA kK;דXg ,0Ş9J`H y7Q1hy>p %!?Η.ƷЦU$V.gV! ,7Vh,prvFar @+&U`#͠;[~ ʋ6)Ǘ7^tD5go% a !_K/'[tȪ7~K0e-rvX<ل].INUr](`-jdOS:<}nrn}]n6ʤA#DAAUwpg<3RHl6 7@a]^5-@Ɲ ޛ7()+Tl߅iX-i ?sk\,j[;c R@؈R1Q¿è fyuv~yz7!c,Qi@Rh{l.^W׵5lϥIGi TC+fwY"Y@9~pdM#=]'(W~.2_.W|ʦW끸b/H`o ?-Ҩg ֵİ|k;A0&+P-ruUFMg tWq$ʧ'!ab]L.)0숾T X'DTp*\HӮ `KdR0X*n7'A*PMowhԶEi(ڿUg)/U-On>|n\)a]җW;S# ]PgYsUTSy$d#!1:iA&Pn?{6KT ӯfGU?51#w0E\]r5 =L hmRea}%QfנKn ?|-:tUل'Hdܛ&`N׭?4NTrN !C1 WޝlS`(Gpn,u,ie(/CnJ'}Y+L>8[~yMI#'CQ(Ti3bLOQڷfha-S1jfy[>>x[Lqzj5ûP  9n(}E u6FLϸP4k/H|h %7[߯\(&Frho5#hpOxZ',vN::ۺ캿%~V6۪<#!Y[5b&Jzy u4'!v4MzNa \/0\Jű4+RЗηnU Xgrޖݑʦ4/45$$}:r?EV6q!;v5UA>}8E9͏Y#Gi+!d)ҏ/P`E IP;!BAM2M^p,X6o5KshiT@~oyEF~]_Uɘkȱ$x3O++bT" 4y-U 76i :w,FBϿP͊WCA,;a[kR_:9`eqyR@GW] yJ#jglwcMٔ(Ҋ窎t>O{Cdvi΍HfKT 8bNd̤HVL+htpcR`8i3#YqdfNDFk^))F#dylVwP[lcIuW`ܦ$r?5C۞g]WX!s`[F+׋{K|~#bNA/!xFèM!hR3z-5%C= Xwݿۈqfe"=dQRP|%"7K"C7 :Nn8jv0sj+t"s^ؤ?FW{lllQn p X?xЉ$>VM!Ce7Vo:3Kd5~UɜDi;Of5нLS=n7Ґ /H1q}q~ntykD|Vv}ha*v^ !"uuUmG`pLlUmx3uIk]tW¤+2AT K.f>)ɸ?/Afd|(WAv¤kFa-_+0`G/ (- myRB NS H.cNX_ʳ-PݨyD}y%_r)>=s1:wvPͪ3"n.ˏW3==}Sh>#jCUa(ːo MN_C-/ ~9*3s&YHMߙe 2qd~,=͌0*>I~^+>n ɪc؅OsCȪж.a#\es>ɩG:.("'̃Qٱ=B+P.aURY μ1ar- AˁXw܊%8_N|LdT[3VS/~oC廗ad0ݠCkZ)\}2s6}{s kHv/+ 85?&?KØG|e";dN#XfEd55`->" 24Z6|@B3$6o4@w3[G6ڜ-o6Y+!5`>2NB _Fn m*{Nb۫a 4 ;Xe땵? F ϥXA\xwhΌؔ9w\3w⇋A }鈓Wӳp*SWݖQ=?VY |*WqoCNS=v1̔6t ۛk 6P -vḤglk&h'j]RV8QBCZ\ dMHർM82{UB_P,gf_Uz=qaL8*ҳCAtRf%_ŚA"ITR/z$h9pa ub?%?IsJ/DCTSﳡ&h΂@kunke #qj"Z^ct_ o5!6WZQ5Z|"π{ }MIL5\" SՁf ݀5y9.pN-~RZ)RYUSX?2{&՜TX 5Fku@<'4S9Gs΂er-ZoHB57" "|MQTJ*(\9:\~JwV4hWE]3.tEh-"氫If6zq{jqI?z:J18*+MߘYqPn+d9UdV Ɇ6'dwL,Vl"׆8˓9 fV̝kU d G#s}6W[lqP~ Γ[<7զZX]ñ, ]5wz;Go*XʔI/^Z{6<ʞq+GRŌ1am0Qhbv0SjwzSUxӷ9+iK@aZ1G zG| ZHّ" .GkFQF"?znV Wa*C0ҀM]V] l[Ad^[[nB @"jOrLP+A&dz2f t0&|k$X̝7O]1j =FōaB؏ID>1_M?& C&/+~:ڽZ7;T3jk[0hSnF UNjnϦje9ve:s!U4\.H en̋=/<|b0OP -6)>ͻ{|pŦfvڶEb؂6*9k4B~u.P|6M{aEUwz+VJhuF)׻+S!O<=roQ|vu|SE]GW} ʄs_^v^D  .wx19As*΍GCd6%>V&Tlq; tP+MOI.̂MX"kbKxnYP<ČֽzA#LC8az>>,+Nl%%V)F,R)[zȺ, &d+t .dM/ r~0EySNE}ϞpR7,#O^OqFv:k=UN+FKݓ6fghp8w˓úʨ(.T7}f[;7v`*P@8RI< bw Mʷx#̽oF* BKy;=ٺ1gl޼Dz5s۵٨򺸦iVEs/x􆍄j.mCZB{&BNP̪mx:ɳkl)]?J 1o:CavROyy趟+G{V)+uDR+;B3αmf/\hh=nPə!j j`AQP?^򟾖Ů> eǞrC1n5q}{On1\doJx$:jx»qC!?/Fp(I$xVlH-  |A M)-S|H({E]J%!V #*]6zT)Df٩wQe+suz澢 x źK8f:&'Hr:#,y s" #-a%:OVdH./4_;ۣiWߗʫn$eʍ+7"ڗVS.9[3 ڿ)HCeZJ׷*I `tm(6ڞ[_V[b%RK66Me818* @ohn65o7"H5gnY׹I!&+} Sj(yp?$xs]>dt׏ i #D:ՖH3R$|NZa_VqD9{æ+2|Ot26]njd@3׻OwAfZi1wCԣ=@V#4=4jusòU `,E P XV79y3"=j%'lv 9m >mt=čԓ'Z_ Rk.!&9RS`L̽Z23('ؿ,NU-χ +DMN7G #Q/0\[:c-9®[Om&Z`Y.7R/5ujYrk/K;ג?9iߊ >c5c[٪M<2F3oS-AЋ6coH-}ک\.q؛P㜇F45/8GprU]Gij<n Ƶgdd4a4rd{} oܯI/ Ū Cwxwpũ1F;#"H# 3 hfLkt|1Cp#4&  \؝5A&޷_̽ Yli;m(Au4čFVuce*JFPm TUwx5"]]ᣲK kd)h vAj SS[9ch;CU^ tvM :K=6,[ #3bn햗͏\=~gCWAc@ `HkOaguXT#|7Hk9(BԈ7-E";rҧ scos_ bEL6MA:m:Q(PRpk@%SZ}kwE;$@1Q,r-PnB[sFNw\\P CE##KABh#]O$ePV1xЧgw;p]QKI'Kr-^p{3S^GBamsX Et0ɀ`Q"ҍ{WN@>tf7(o: d@[P.Lֲo~亙r^39D?աǑ?CPHEV]eWO-7qv79D#g_ԧg@M1`GL)Ry®z݋ Q$(bLziå((2,n]J'-Y<|\斉nF{)[:*<) nsɘ^óaTVI;esW__釽Cy$3'U-}$4!aj-oivG2W~| C9SSdK8\4ؽÑ =VJvY rŒ^F)N̳%*JnYm~n(ڥqv Wjs[u0|ۣ5 q# fj&Oc~,ZDVPhm_\ȌA7 &l[* ᠬD܈mffДX A%eA״sY3 8Vc29~7QtS|Hn)W3).T@JPfY rګ\0$)#\ɐ6qW&zQm![%A+Ί;XPWP!ȌS c>mY.q϶dE/;h~kQ#R@KVѼ*;"KܜMqx'FgiV? V',ūgS6y@b9=?$c ]'!Oȇ#5'.W "X3>(9p0B:ء=s\H;ZxtygHX6*ubXzA㕵hW@N_<<'gp(/Pov+ T^-g4yN PmEw~MP2瞙_Jn-QD/]ӗsV~O:'q < Qyu>77y`a(w r.TZs.)O,Ǖ0oi4ƺuXzlۗUq;VzJ,B=>弿)K@޲UA|+~2d ~?E/XMxٵXuS[ KH&[i,3+fH@Q <*Ou҇3y@FYnyOjhh C%},yOj-9$w\}XRi ?!9JU<ڸCq ΊԳxDRE ^3ry?(SL B"B^q]*t_(c{K`MytUEPb\j.H.5DrU;-r=#s͘nseCU_IL|FNמwbx[gJ_rf&dkX7_A>#Wc-^(~kd/EaH|<}&h)pME8 \3Q ? d؄-\ehIN|S^Gpkr}qm݌QqlW^ pܴV F"­sW`ENFBfmƎ8`S2smo}y<4e$8>۰ezcHߥѵIj7{t0~TH_K>CӇ`- `=35ҭj3(Rc1n#:>]{7II(t 4sمp 9h0i݊G aMvi>5@s0m Pq*MLVzC>_o %7`RrݲXEk*AL85Rvv"oר~v|a @7]^s8Ph1L3J-bA!Ԟ,*M17P]b JKǹ:%OHǜYÔկ:ȍ;[6bXɱ\C?-J[B:).![5Z-uʈ̚"HnnGgMVP}jϽu[ڍv̒'%LŶ5*/)L. Wl0bH!cpoԠÂÁ.vbїx3:(15 -ҥߥd(j%y߼Vg~-_KHAϱڨ&2ϩ{޼n}"Yn@ު E3AZlh&G&Vu̩хgf˅Fl]zdr;,ݢ@eRG46nWs"ު-zǪ Q_Q׊X~7^kPbk8&d:7xy+sNz?҄n5za*F ^w|=uݯ bN:_z;njzcNuK=!X8J֢!A:mpb1>7 SÎ-Z7P;wě̞OU޼M?r֚WDҠ:5/ O_SGĤRzEaz} I^ml%[;6P<>Wv.1C{eM>'LS1<ڲ}r2~!?*Wr ";<F6)Ҩ}+1HLes NJD=y dq{4Mʂ1<1Gl<9dj 2= xA0-By#c ޴ *[ŭ6ʮhw\hp tK9IXPq?| BoZdo{.$e}KPi?aPnk"ZF.[GUͯn86hT BYWd@ka8xE&+88hkz9ԏ9+ \UrSZi\UY)g+|JhC0]S7 {Ã.=U xR&<}xACJꮮFvɱlMwc2\NJ3 &q+ƼeZ6N_*l%ŔcWh첓vGi#ĦVs~ bVOݭ7s@v MNM­#Ub?Ұl-vFOC AtLA 'Rj,#z=gD3fPS6`т'6<^)(y}P}]ӿ Ti*s[Q ̅3ً^K[0yAd7>"4%OaϝP29e[ᗾ9-g'aW!\pb]\NCs/iOG*S35/75PL?H1t?nɃ/n*GL3X,(+]׺2ޢ$"䛇Ta*lejϔs]$!MXe YZ