sssd-tools-1.13.3-60.el6>t  DH`p[*= FJ[PP+yhj͊OE%#$AM`1z3NplF?Z Z?9K?>RX\ԷRR|MJlc#q&`պO%_'P ʼ4d;fQ%?(7KK՘)( rX`2\F׸rD69sTKv/QYލϩ!&Wɶfw !.ziZ\GXm LI]&Bs@ St/BZ8ȗgʽQP&t[<{H`_F՟||ryM}T .x>2?d   A *HNXbb b hb b b b!|b#fb%P%lb&'6'6-6(-8-94:`GbHLbIbXY\b]xb^hb:dIJeķfĺlļCsssd-tools1.13.360.el6Userspace tools for use with the SSSDProvides userspace tools for manipulating users, groups, and nested groups in SSSD when using id_provider = local in /etc/sssd/sssd.conf. Also provides several other administrative tools: * sss_debuglevel to change the debug level on the fly * sss_seed which pre-creates a user entry for use in kickstarts * sss_obfuscate for generating an obfuscated LDAP password[)&/x86-01.bsys.centos.org sCentOSGPLv3+CentOS BuildSystem Applications/Systemhttp://fedorahosted.org/sssd/linuxx86_64P02H0KSA |5r#1FR :bo3^ 10m:+}MHOt ?tH dC A큤[)&[)&[)&[)&[)&[)%[)&[)&[)&[)&[)&[)&Vpn[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%[)%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-1.13.3-60.el6.src.rpmsssd-toolssssd-tools(x86-64)   @@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@ sssd-commonpython-ssspython-sssdconfigrpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(CompressedFileNames)libbasicobjects.so.0()(64bit)libcollection.so.4()(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.3)(64bit)libc.so.6(GLIBC_2.4)(64bit)libc.so.6(GLIBC_2.6)(64bit)libdbus-1.so.3()(64bit)libdhash.so.1()(64bit)libdhash.so.1(DHASH_0.4.3)(64bit)libdl.so.2()(64bit)libglib-2.0.so.0()(64bit)libini_config.so.5()(64bit)liblber-2.4.so.2()(64bit)libldap-2.4.so.2()(64bit)libldb.so.1()(64bit)libldb.so.1(LDB_0.9.10)(64bit)libnspr4.so()(64bit)libnss3.so()(64bit)libnssutil3.so()(64bit)libpcre.so.0()(64bit)libplc4.so()(64bit)libplds4.so()(64bit)libpopt.so.0()(64bit)libpopt.so.0(LIBPOPT_0)(64bit)libpthread.so.0()(64bit)libpthread.so.0(GLIBC_2.12)(64bit)libpthread.so.0(GLIBC_2.2.5)(64bit)libref_array.so.1()(64bit)librt.so.1()(64bit)libselinux.so.1()(64bit)libsemanage.so.1()(64bit)libsmime3.so()(64bit)libssl3.so()(64bit)libsss_cert.so()(64bit)libsss_child.so()(64bit)libsss_crypt.so()(64bit)libsss_debug.so()(64bit)libsss_semanage.so()(64bit)libsss_util.so()(64bit)libtalloc.so.2()(64bit)libtalloc.so.2(TALLOC_2.0.2)(64bit)libtdb.so.1()(64bit)libtevent.so.0()(64bit)rtld(GNU_HASH)/usr/bin/pythonrpmlib(PayloadIsXz)1.13.3-60.el61.13.3-60.el61.13.3-60.el64.6.0-14.0-13.0.4-15.2-14.8.0ZH@ZH@Z2gYyX6@X6@XS@XOXJXGXF@X@X6@X6@X-X!@X!@X&X X X WWWW@W@W_@W_@WWW@W@W@W@Wi,@WYZ@WPWPV@VJVJVV@VՄ@VՄ@V@V&@V=@V=@V@V@V@VvV%@V%@V%@VVVVVpVii@V\:@VXEVV@VV@VV@VMV2 @Vf@Vf@Vf@UAUUuUn@UmUjUcUcUUUUUJ@UB@UB@U@U?v@U>$U8U.RU.RU-@U-@U-@U-@UF@UF@UUUUUU U U U@U@U@U@T9TTTTTTT@T@T~T~Tk4Tk4T$TTT@SvSvSvS%@S0S<@S<@S<@SSSSSSS/S/S;@SFS@S@S@S@S@S@Si@S@SSS!@SsZSpSNpS 4@S 4@RRRRRRfhRD!R1R%@R @R @RR|R|R|R|R|RRRRRRRRRRRRR@R@R@R@R@R@R@R@R@R@Q@Q@QQ*@Q?@QQvwQkQIQ5@Q0@Q']Q @PPPP@P@P@P-P@P@P@PDPDPDPDP[PPPPP@P@P@P@PPPPPPPP @P @P @P @P @P @Pf@PPPPP @P @P @P @P@P@P@PPPPPPPP@P@P@PpPpPpP@P@P@P@P@P@P@PP@PP@P@P@P@P@PPXPP{P{P{Pz@PqnPl(PaP`K@P#@Oĺ@O"O"OOO@OO~O@OOO@O@Ou@Ou@Oc+@O]@OYOOdON@OLOLOLOLOLO;@O5O1@ObN@NNNN@NNNj@NN$@N$@NN@N@Nx@Nm@Ng\N[@NTN?N:N:N:NNN|@M{@M{@Mߒ@M@M۝M۝M@MM@M@M3@MM>M>M@MM@M@Mx@MM=M=MwkMwkMv@MtMtMc@Mc@MbSM_MQ0@MJMGMA^@MA^@MA^@M.@M9L!L@L@L@L@LNLNL@L@LA@L@Lk@LYV@LRLI@L7@L(L_LLGKj@KK@KK@KK[K@KK~}@K]KY@KO@KKK/c@K+nK"4@KJJ@JJJkJJ@JJp9JlE@J?r@J0J,@IcIcIzI)@I)@I)@IV@IV@I@I@III@Fabiano Fidêncio - 1.13.3-60Fabiano Fidêncio - 1.13.3-59Fabiano Fidêncio - 1.13.3-58Jakub Hrozek - 1.13.3-57Lukas Slebodnik - 1.13.3-56Lukas Slebodnik - 1.13.3-55Jakub Hrozek - 1.13.3-54Jakub Hrozek - 1.13.3-53Jakub Hrozek - 1.13.3-52Jakub Hrozek - 1.13.3-51Jakub Hrozek - 1.13.3-50Jakub Hrozek - 1.13.3-49Jakub Hrozek - 1.13.3-48Jakub Hrozek - 1.13.3-47Jakub Hrozek - 1.13.3-46Jakub Hrozek - 1.13.3-45Jakub Hrozek - 1.13.3-44Jakub Hrozek - 1.13.3-43Jakub Hrozek - 1.13.3-42Jakub Hrozek - 1.13.3-41Jakub Hrozek - 1.13.3-40Jakub Hrozek - 1.13.3-39Jakub Hrozek - 1.13.3-38Jakub Hrozek - 1.13.3-37Jakub Hrozek - 1.13.3-36Jakub Hrozek - 1.13.3-35Jakub Hrozek - 1.13.3-34Jakub Hrozek - 1.13.3-33Jakub Hrozek - 1.13.3-32Jakub Hrozek - 1.13.3-31Jakub Hrozek - 1.13.3-30Jakub Hrozek - 1.13.3-29Jakub Hrozek - 1.13.3-28Jakub Hrozek - 1.13.3-27Jakub Hrozek - 1.13.3-26Jakub Hrozek - 1.13.3-25Jakub Hrozek - 1.13.3-24Jakub Hrozek - 1.13.3-23Jakub Hrozek - 1.13.3-22Jakub Hrozek - 1.13.3-21Jakub Hrozek - 1.13.3-20Jakub Hrozek - 1.13.3-19Jakub Hrozek - 1.13.3-18Jakub Hrozek - 1.13.3-17Jakub Hrozek - 1.13.3-16Jakub Hrozek - 1.13.3-15Jakub Hrozek - 1.13.3-14Jakub Hrozek - 1.13.3-14Jakub Hrozek - 1.13.3-13Jakub Hrozek - 1.13.3-12Jakub Hrozek - 1.13.3-11Jakub Hrozek - 1.13.3-10Jakub Hrozek - 1.13.3-9Jakub Hrozek - 1.13.3-8Jakub Hrozek - 1.13.3-7Jakub Hrozek - 1.13.3-6Jakub Hrozek - 1.13.3-5Jakub Hrozek - 1.13.3-4Jakub Hrozek - 1.13.3-3Jakub Hrozek - 1.13.3-2Jakub Hrozek - 1.13.3-1Jakub Hrozek - 1.13.2-7Jakub Hrozek - 1.13.2-6Jakub Hrozek - 1.13.2-5Jakub Hrozek - 1.13.2-4Jakub Hrozek - 1.13.2-3Jakub Hrozek - 1.13.2-2Jakub Hrozek - 1.13.2-1Jakub Hrozek - 1.13.1-1Jakub Hrozek - 1.12.4-51Jakub Hrozek - 1.12.4-50Jakub Hrozek - 1.12.4-49Jakub Hrozek - 1.12.4-48Jakub Hrozek - 1.12.4-47Jakub Hrozek - 1.12.4-46Jakub Hrozek - 1.12.4-45Jakub Hrozek - 1.12.4-44Jakub Hrozek - 1.12.4-43Jakub Hrozek - 1.12.4-42Jakub Hrozek - 1.12.4-41Jakub Hrozek - 1.12.4-40Jakub Hrozek - 1.12.4-39Jakub Hrozek - 1.12.4-38Jakub Hrozek - 1.12.4-37Jakub Hrozek - 1.12.4-36Jakub Hrozek - 1.12.4-35Jakub Hrozek - 1.12.4-34Jakub Hrozek - 1.12.4-33Jakub Hrozek - 1.12.4-32Jakub Hrozek - 1.12.4-31Jakub Hrozek - 1.12.4-30Jakub Hrozek - 1.12.4-29Jakub Hrozek - 1.12.4-28Jakub Hrozek - 1.12.4-27Jakub Hrozek - 1.12.4-26Jakub Hrozek - 1.12.4-25Jakub Hrozek - 1.12.4-24Jakub Hrozek - 1.12.4-23Jakub Hrozek - 1.12.4-22Jakub Hrozek - 1.12.4-21Jakub Hrozek - 1.12.4-20Jakub Hrozek - 1.12.4-19Jakub Hrozek - 1.12.4-18Jakub Hrozek - 1.12.4-17Jakub Hrozek - 1.12.4-16Jakub Hrozek - 1.12.4-15Jakub Hrozek - 1.12.4-14Jakub Hrozek - 1.12.4-13Jakub Hrozek - 1.12.4-12Jakub Hrozek - 1.12.4-11Jakub Hrozek - 1.12.4-10Jakub Hrozek - 1.12.4-9Jakub Hrozek - 1.12.4-8Jakub Hrozek - 1.12.4-7Jakub Hrozek - 1.12.4-6Jakub Hrozek - 1.12.4-5Jakub Hrozek - 1.12.4-4Jakub Hrozek - 1.12.4-3Jakub Hrozek - 1.12.4-2Jakub Hrozek - 1.12.4-1Jakub Hrozek - 1.11.6-33Jakub Hrozek - 1.11.6-32Jakub Hrozek - 1.11.6-31Jakub Hrozek - 1.11.6-30Jakub Hrozek - 1.11.6-29Jakub Hrozek - 1.11.6-28Jakub Hrozek - 1.11.6-27Jakub Hrozek - 1.11.6-26Jakub Hrozek - 1.11.6-25Jakub Hrozek - 1.11.6-24Jakub Hrozek - 1.11.6-23Jakub Hrozek - 1.11.6-22Jakub Hrozek - 1.11.6-21Jakub Hrozek - 1.11.6-20Jakub Hrozek - 1.11.6-19Jakub Hrozek - 1.11.6-18Jakub Hrozek - 1.11.6-17Jakub Hrozek - 1.11.6-16Jakub Hrozek - 1.11.6-15Jakub Hrozek - 1.11.6-14Jakub Hrozek - 1.11.6-13Jakub Hrozek - 1.11.6-12Jakub Hrozek - 1.11.6-11Jakub Hrozek - 1.11.6-10Jakub Hrozek - 1.11.6-9Jakub Hrozek - 1.11.6-8Jakub Hrozek - 1.11.6-7Jakub Hrozek - 1.11.6-6Jakub Hrozek - 1.11.6-5Jakub Hrozek - 1.11.6-4Jakub Hrozek - 1.11.6-3Jakub Hrozek - 1.11.6-2Jakub Hrozek - 1.11.6-1Jakub Hrozek - 1.11.5.1-4Jakub Hrozek - 1.11.5.1-3Jakub Hrozek - 1.11.5.1-2Jakub Hrozek - 1.11.5.1-1Jakub Hrozek - 1.9.2-134Jakub Hrozek - 1.9.2-133Jakub Hrozek - 1.9.2-132Jakub Hrozek - 1.9.2-131Jakub Hrozek - 1.9.2-130Jakub Hrozek - 1.9.2-129Jakub Hrozek - 1.9.2-128Jakub Hrozek - 1.9.2-127Jakub Hrozek - 1.9.2-126Jakub Hrozek - 1.9.2-125Jakub Hrozek - 1.9.2-124Jakub Hrozek - 1.9.2-123Jakub Hrozek - 1.9.2-122Jakub Hrozek - 1.9.2-121Jakub Hrozek - 1.9.2-120Jakub Hrozek - 1.9.2-119Jakub Hrozek - 1.9.2-118Jakub Hrozek - 1.9.2-117Jakub Hrozek - 1.9.2-116Jakub Hrozek - 1.9.2-115Jakub Hrozek - 1.9.2-114Jakub Hrozek - 1.9.2-113Jakub Hrozek - 1.9.2-112Jakub Hrozek - 1.9.2-111Jakub Hrozek - 1.9.2-110Jakub Hrozek - 1.9.2-109Jakub Hrozek - 1.9.2-108Jakub Hrozek - 1.9.2-107Jakub Hrozek - 1.9.2-106Jakub Hrozek - 1.9.2-105Jakub Hrozek - 1.9.2-104Jakub Hrozek - 1.9.2-103Jakub Hrozek - 1.9.2-102Jakub Hrozek - 1.9.2-101Jakub Hrozek - 1.9.2-100Jakub Hrozek - 1.9.2-99Jakub Hrozek - 1.9.2-98Jakub Hrozek - 1.9.2-97Jakub Hrozek - 1.9.2-96Jakub Hrozek - 1.9.2-95Jakub Hrozek - 1.9.2-94Jakub Hrozek - 1.9.2-93Jakub Hrozek - 1.9.2-92Jakub Hrozek - 1.9.2-91Jakub Hrozek - 1.9.2-90Jakub Hrozek - 1.9.2-89Jakub Hrozek - 1.9.2-88Jakub Hrozek - 1.9.2-87Jakub Hrozek - 1.9.2-86Jakub Hrozek - 1.9.2-85Jakub Hrozek - 1.9.2-84Jakub Hrozek - 1.9.2-83Jakub Hrozek - 1.9.2-82Jakub Hrozek - 1.9.2-81Jakub Hrozek - 1.9.2-80Jakub Hrozek - 1.9.2-79Jakub Hrozek - 1.9.2-78Jakub Hrozek - 1.9.2-77Jakub Hrozek - 1.9.2-76Jakub Hrozek - 1.9.2-75Jakub Hrozek - 1.9.2-74Jakub Hrozek - 1.9.2-73Jakub Hrozek - 1.9.2-72Jakub Hrozek - 1.9.2-71Jakub Hrozek - 1.9.2-70Jakub Hrozek - 1.9.2-69Jakub Hrozek - 1.9.2-68Jakub Hrozek - 1.9.2-67Jakub Hrozek - 1.9.2-66Jakub Hrozek - 1.9.2-65Jakub Hrozek - 1.9.2-64Jakub Hrozek - 1.9.2-63Jakub Hrozek - 1.9.2-62Jakub Hrozek - 1.9.2-61Jakub Hrozek - 1.9.2-60Jakub Hrozek - 1.9.2-59Jakub Hrozek - 1.9.2-58Jakub Hrozek - 1.9.2-57Jakub Hrozek - 1.9.2-56Jakub Hrozek - 1.9.2-55Jakub Hrozek - 1.9.2-54Jakub Hrozek - 1.9.2-53Jakub Hrozek - 1.9.2-52Jakub Hrozek - 1.9.2-51Jakub Hrozek - 1.9.2-50Jakub Hrozek - 1.9.2-49Jakub Hrozek - 1.9.2-48Jakub Hrozek - 1.9.2-47Jakub Hrozek - 1.9.2-46Jakub Hrozek - 1.9.2-45Jakub Hrozek - 1.9.2-44Jakub Hrozek - 1.9.2-43Jakub Hrozek - 1.9.2-42Jakub Hrozek - 1.9.2-41Jakub Hrozek - 1.9.2-40Jakub Hrozek - 1.9.2-39Jakub Hrozek - 1.9.2-38Jakub Hrozek - 1.9.2-37Jakub Hrozek - 1.9.2-36Jakub Hrozek - 1.9.2-35Jakub Hrozek - 1.9.2-34Jakub Hrozek - 1.9.2-33Jakub Hrozek - 1.9.2-32Jakub Hrozek - 1.9.2-31Jakub Hrozek - 1.9.2-30Jakub Hrozek - 1.9.2-29Jakub Hrozek - 1.9.2-28Jakub Hrozek - 1.9.2-27Jakub Hrozek - 1.9.2-26Jakub Hrozek - 1.9.2-25Jakub Hrozek - 1.9.2-24Jakub Hrozek - 1.9.2-23Jakub Hrozek - 1.9.2-22Jakub Hrozek - 1.9.2-21Jakub Hrozek - 1.9.2-20Jakub Hrozek - 1.9.2-20Jakub Hrozek - 1.9.2-19Jakub Hrozek - 1.9.2-18Jakub Hrozek - 1.9.2-17Jakub Hrozek - 1.9.2-16Jakub Hrozek - 1.9.2-15Jakub Hrozek - 1.9.2-14Jakub Hrozek - 1.9.2-13Jakub Hrozek - 1.9.2-12Jakub Hrozek - 1.9.2-11Jakub Hrozek - 1.9.2-10Jakub Hrozek - 1.9.2-9Jakub Hrozek - 1.9.2-8Jakub Hrozek - 1.9.2-7Jakub Hrozek - 1.9.2-6Jakub Hrozek - 1.9.2-5Jakub Hrozek - 1.9.2-4Jakub Hrozek - 1.9.2-3Jakub Hrozek - 1.9.2-2Jakub Hrozek - 1.9.2-1Jakub Hrozek - 1.9.1-1Jakub Hrozek - 1.9.0-3Jakub Hrozek - 1.9.0-2Jakub Hrozek - 1.9.0-1.rc1Jakub Hrozek - 1.8.0-33Stephen Gallagher - 1.8.0-32Stephen Gallagher - 1.8.0-31Stephen Gallagher - 1.8.0-30Stephen Gallagher - 1.8.0-29Stephen Gallagher - 1.8.0-28Stephen Gallagher - 1.8.0-27Stephen Gallagher - 1.8.0-26Stephen Gallagher - 1.8.0-25Stephen Gallagher - 1.8.0-24Stephen Gallagher - 1.8.0-23Stephen Gallagher - 1.8.0-22Stephen Gallagher - 1.8.0-21Stephen Gallagher - 1.8.0-20Stephen Gallagher - 1.8.0-18Stephen Gallagher - 1.8.0-17Stephen Gallagher - 1.8.0-15Stephen Gallagher - 1.8.0-12Stephen Gallagher - 1.8.0-11Stephen Gallagher - 1.8.0-10Stephen Gallagher - 1.8.0-9Stephen Gallagher - 1.8.0-8Stephen Gallagher - 1.8.0-7Stephen Gallagher - 1.8.0-6Stephen Gallagher - 1.8.0-5Stephen Gallagher - 1.8.0-4.beta3Stephen Gallagher - 1.8.0-3.beta2Stephen Gallagher - 1.8.0-2.beta2Stephen Gallagher - 1.5.1-68Stephen Gallagher - 1.5.1-67Stephen Gallagher - 1.5.1-66Stephen Gallagher - 1.5.1-65Stephen Gallagher - 1.5.1-64Stephen Gallagher - 1.5.1-63Stephen Gallagher - 1.5.1-62Stephen Gallagher - 1.5.1-61Stephen Gallagher - 1.5.1-60Stephen Gallagher - 1.5.1-59Stephen Gallagher - 1.5.1-58Stephen Gallagher - 1.5.1-57Stephen Gallagher - 1.5.1-56Stephen Gallagher - 1.5.1-55Stephen Gallagher - 1.5.1-53Stephen Gallagher - 1.5.1-52Stephen Gallagher - 1.5.1-51Stephen Gallagher - 1.5.1-50Stephen Gallagher - 1.5.1-49Stephen Gallagher - 1.5.1-48Stephen Gallagher - 1.5.1-47Stephen Gallagher - 1.5.1-46Stephen Gallagher - 1.5.1-45Stephen Gallagher - 1.5.1-44Stephen Gallagher - 1.5.1-43Stephen Gallagher - 1.5.1-42Stephen Gallagher - 1.5.1-41Stephen Gallagher - 1.5.1-40Stephen Gallagher - 1.5.1-39Stephen Gallagher - 1.5.1-38Stephen Gallagher - 1.5.1-37Stephen Gallagher - 1.5.1-36Stephen Gallagher - 1.5.1-35Stephen Gallagher - 1.5.1-34Stephen Gallagher - 1.5.1-33Stephen Gallagher - 1.5.1-32Stephen Gallagher - 1.5.1-31Stephen Gallagher - 1.5.1-30Stephen Gallagher - 1.5.1-29Stephen Gallagher - 1.5.1-28Stephen Gallagher - 1.5.1-27Stephen Gallagher - 1.5.1-26Stephen Gallagher - 1.5.1-25Stephen Gallagher - 1.5.1-24Stephen Gallagher - 1.5.1-23Stephen Gallagher - 1.5.1-21Stephen Gallagher - 1.5.1-20Stephen Gallagher - 1.5.1-17Stephen Gallagher - 1.5.1-16Stephen Gallagher - 1.5.1-15Stephen Gallagher - 1.5.1-14Stephen Gallagher - 1.5.1-13Stephen Gallagher - 1.5.1-12Stephen Gallagher - 1.5.1-11Stephen Gallagher - 1.5.1-10Stephen Gallagher - 1.5.1-9Stephen Gallagher - 1.5.1-8Stephen Gallagher - 1.5.1-7Stephen Gallagher - 1.5.1-6Stephen Gallagher - 1.5.1-5Stephen Gallagher - 1.5.1-4Stephen Gallagher - 1.5.1-3Stephen Gallagher - 1.5.1-2Stephen Gallagher - 1.5.1-1Stephen Gallagher - 1.5.0-2Stephen Gallagher - 1.5.0-1Stephen Gallagher - 1.2.1-28.4Stephen Gallagher - 1.2.1-36Stephen Gallagher - 1.2.1-35Stephen Gallagher - 1.2.1-28.3Stephen Gallagher - 1.2.1-34Stephen Gallagher - 1.2.1-28.2Stephen Gallagher - 1.2.1-33Stephen Gallagher - 1.2.1-28.1Stephen Gallagher - 1.2.1-32Stephen Gallagher - 1.2.1-29Stephen Gallagher - 1.2.1-28Stephen Gallagher - 1.2.1-27Stephen Gallagher - 1.2.1-26Stephen Gallagher - 1.2.1-23Stephen Gallagher - 1.2.1-21Stephen Gallagher - 1.2.1-20Stephen Gallagher - 1.2.1-19Stephen Gallagher - 1.2.1-15Stephen Gallagher - 1.2.0-14Stephen Gallagher - 1.2.0-13Stephen Gallagher - 1.2.0-12Stephen Gallagher - 1.1.92-11.1Stephen Gallagher - 1.1.92-11Stephen Gallagher - 1.1.91-10Simo Sorce - 1.1.1-3Stephen Gallagher - 1.1.1-1Stephen Gallagher - 1.1.0-2Stephen Gallagher - 1.1.0-1.pre20100317git0ea7f19Stephen Gallagehr - 1.0.5-2Stephen Gallagher - 1.0.5-1Stephen Gallagher - 1.0.4-1Stephen Gallagher - 1.0.3-1Stephen Gallagher - 1.0.2-1Stephen Gallagher - 1.0.1-1Stephen Gallagher - 1.0.0-2Stephen Gallagher - 1.0.0-1Stephen Gallagher - 0.99.1-1Stephen Gallagher - 0.99.0-1Stephen Gallagher - 0.7.1-1Stephen Gallagher - 0.7.0-2Stephen Gallagher - 0.7.0-1Stephen Gallagher - 0.6.1-2Stephen Gallagher - 0.6.1-1Stephen Gallagher - 0.6.0-1Sumit Bose - 0.6.0-0Simo Sorce - 0.5.0-0Jakub Hrozek - 0.4.1-4Fedora Release Engineering - 0.4.1-3Simo Sorce - 0.4.1-2Simo Sorce - 0.4.1-1Simo Sorce - 0.4.1-0Simo Sorce - 0.3.2-2Jakub Hrozek - 0.3.2-1Simo Sorce - 0.3.1-2Simo Sorce - 0.3.1-1Simo Sorce - 0.3.0-2Simo Sorce - 0.3.0-1Simo Sorce - 0.2.1-1Simo Sorce - 0.2.0-1Jakub Hrozek - 0.1.0-5.20090309git691c9b3Jakub Hrozek - 0.1.0-4Sumit Bose - 0.1.0-3Jakub Hrozek - 0.1.0-2Stephen Gallagher - 0.1.0-1- Related: rhbz#1442703 - Smart Cards: Certificate in the ID View - Related: rhbz# 1401546 - Please back-port fast failover from sssd 1.14 on RHEL 7 into sssd 1.13 on RHEL 6- Resolves: rhbz#1326007 - Memory cache corruption when rsync and/or tar to copy owner and group info from LDAP - Resolves: rhbz#1442703 - Smart Cards: Certificate in the ID View - Resolves: rhbz#1507435 - CVE-2017-12173 sssd: unsanitized input when searching in local cache database [rhel-6.10] - Resolves: rhbz#1487040 - sssd does not evaluate AD UPN suffixes which results in failed user logins- Resolves: rhbz#1421057 - pam_sss crashes in do_pam_conversation if no conversation function is provided by the client app - Resolves: rhbz#1487040 - sssd does not evaluate AD UPN suffixes which results ini failed user logins - Resolves: rhbz#1487944 - ABRT crash - /usr/libexec/sssd/sssd_nss - Resolves: rhbz#1489485 - sssd is not pulling groups in a trusted domain, with the Global scope- Resolves: rhbz#1438360 - The originalMemberOf attribute disappears from the cache, causing intermittent HBAC issues- Resolves: rhbz#1404697 - SSSD does not skip GPO if no gpcFunctionalityVersion present - Resolves: rhbz#1374813 - SSSD fails to process GPO from Active Directory- Resolves: rhbz#1415785 - ldap_child does not remove temporary files when it's killed with SIGTERM- Apply several more smartcard-related patches. - Related: rhbz#1300421 - Screen locks and smart card is removed - must show a message to insert the correct smartcard- Resolves: rhbz#1400643 - sssd prevents sudo from getting data from LDAP- Resolves: rhbz#1393592 - SSH-CERT: always initialize cert_verify_opts- Revert the ding-libs requirement - Related: rhbz#1374813 - SSSD fails to process GPO from Active Directory.- Related: rhbz#1369921 - Members of nested netgroups configured in IdM cannot be seen by getent on clients- Require the matching version of ding-libs - Related: rhbz#1374813 - SSSD fails to process GPO from Active Directory.- Fix a coverity warning - Related: rhbz#1382395 - sudo: ignore case on case insensitive domains- Resolves: rhbz#1382395 - sudo: ignore case on case insensitive domains- Resolves: rhbz#1369921 - Members of nested netgroups configured in IdM cannot be seen by getent on clients- Resolves: rhbz#1324428 - [RFE] Discover forest's root SID even if subdomains_provider = none- Resolves: rhbz#1367802 - using overides causes segfault in libldb- Resolves: rhbz#1329378 - pam_sss set KRB5CCNAME with sudo logins- Resolves: rhbz#1382603 - autofs map resolution doesn't work offline- Resolves: rhbz#1339986 - [sssd-ldap] man page needs attention- Resolves: rhbz#1321884 - IPA sudo: support the externalUser attribute- Resolves: rhbz#1299994 - ssh client checks only the first certificate on a smartcard when the card has multiple certs - Resolves: rhbz#1300421 - Screen locks and smart card is removed - must show a message to insert the correct smartcard - Resolves: rhbz#1372681 - ssh with Smartcards - skip invalid certificates- Resolves: rhbz#1329648 - Protocol error with IPA on RHEL-6 - Resolves: rhbz#1329647 - IPA view: view name not stored properly with default FreeIPA installation- Resolves: rhbz#1339986 - [sssd-ldap] man page needs attention- Resolves: rhbz#1327272 - local overrides: issues with sub-domain users and mixed case names- Resolves: rhbz#1293168 - Inconsistent user synching between IPA and AD- Resolves: rhbz#1374813 - SSSD fails to process GPO from Active Directory.- Resolves: rhbz#1377782 - sssd is looking at a server in the GC of a subdomain, not the root domain.- Resolves: rhbz#1365218 - SSSD does not fail over to next GC- Resolves: rhbz#1367435 - Intermittent sssd auth failures- Resolves: rhbz#1369079 - sssd runs out of available child slots and starts queuing requests in proxy mode- Resolves: rhbz#1338619 - segmentation fault in sssd after upgrade to sssd-1.13.3-22.el6.x86_64 when upgrading cache- Resolves: rhbz#1324107 - GPO: Access denied after blocking connection to AD.- Resolves: rhbz#1293168 - Inconsistent user synching between IPA and AD- Resolves: rhbz#1340927 - sssd-common requires libnfsidmap- Resolves: rhbz#1340176 - The AD keytab renewal task leaks a file descriptor- Resolves: rhbz#1335400 - In IPA-AD trust environment access is granted to AD user even if the user is disabled on AD.- Resolves: rhbz#1336453 - sssd_be doesn't terminate forked child process if adcli is not installed- Resolves: rhbz#1312062 - sssd does not pass LDAP rules to sudo- Resolves: rhbz#1313940 - SSSD PAM module does not support multiple password prompts (e.g. Password + Token) with sudo- Actually apply patches from previous build - Resolves: rhbz#1313940 - sudorule not working with ipa sudo_provider- Resolves: rhbz#1313940 - sudorule not working with ipa sudo_provider- Resolves: rhbz#1209600 - Getting ERROR (getpwnam() failed): Broken pipe with 1.11.6- Backport of a more minimal dependency patch to avoid changes to AD provider behaviour - Related: rhbz#1264705 - Allow SSSD to notify user of denial due to AD account lockout- Resolves: rhbz#1308939 - After removing certificate from user in IPA and even after sss_cache, FindByCertificate still finds the user- Require a newer selinux-policy to avoid issues when prompting for SC PIN - Related: rhbz#1299066 - smartcard login does not prompt for pin when ocsp checking is enabled (default config)- Resolves: rhbz#1264705 - Allow SSSD to notify user of denial due to AD account lockout- Resolves: rhbz#1259687 - sssd_nss memory usage keeps growing on sssd-1.12.4-47.el6.x86_64 (RHEL6.7) when trying to retrieve non-existing netgroups- Update sssd-ldap man page for the recent ID mapping changes - Related: rhbz#1268902 - SSSD doesn't set the ID mapping range automatically- Resolves: rhbz#1295883 - refresh_expired_interval stops sss_cache from working- Resolves: rhbz#1268902 - SSSD doesn't set the ID mapping range automatically- Resolves: rhbz#1298253 - Screen lock prompts for smartcard user password and not smartcard pin when logged in using smartcard pin- Resolves: rhbz#1292458 - sssd_be AD segfaults on missing A record- Resolves: rhbz#1262981 - sssd dereference processing failed : Input/output error- Resolves: rhbz#1290761 - [RFE] Support Automatic Renewing of Kerberos Host Keytabs- Resolves: rhbz#1244957 - [RFE] SUDO: Support the IPA schema- Resolves: rhbz#1298634 - Cannot retrieve users after upgrade from 1.12 to 1.13- Resolves: rhbz#1287807 - SRV lookup for KDC servers doesn't work- Resolves: rhbz#1273802 - ad_site parameter does not work- Fix memory leak in the NFS plugin - Related: rhbz#1269820 - Rebase SSSD to 1.13.x in RHEL-6.8 - Resolves: rhbz#1296620 - Properly remove OriginalMemberOf attribute in SSSD cache if user has no secondary groups anymore - Resolves: rhbz#1283898 - MAN: Clarify that subdomains always use service discovery- Rebase to 1.13.3 - Remove setuid bit from proxy_child, RHEL-6 doesn't support running SSSD as a non-privileged user - Resolves: rhbz#1269820 - Rebase SSSD to 1.13.x in RHEL-6.8- Don't own files as the SSSD user - Resolves: rhbz#1289482 - warning: user sssd does not exist - using root- Resolves: rhbz#1279971 - groups get deleted from the cache- The p11_child doesn't have to run privileged anymore, remove the setuid bit - Related: rhbz#1270027 - [RFE] Support for smart cards- Resolves: rhbz#1266108 - Check next certificate on smart card if first is not valid - Also enable OCSP checks- Resolves: rhbz#1285852 - sssd: [sysdb_add_user] (0x0400): Error: 17 (File exists)- Silence compilation warnings and Coverity issues - Related: rhbz#1269820 - Rebase SSSD to 1.13.x in RHEL-6.8- Resolves: rhbz#1269820 - Rebase SSSD to 1.13.x in RHEL-6.8 - Squash in packaging review changes by lslebodn@redhat.com- Resolves: rhbz#1269820 - Rebase SSSD to 1.13.x in RHEL-6.8 - The rebase also resolves the following bugzillas: - Resolves: rhbz#1270029 - [RFE] Add a way to lookup users based on CAC identity certificates - Resolves: rhbz#1270027 - [RFE] Support for smart cards - Resolves: rhbz#1269422 - [FEAT] UID and GID mapping on individual clients - Resolves: rhbz#1269421 - [RFE] The fast memory cache should cache initgroups - Resolves: rhbz#1265429 - If the site discovery fails, ad-site option is not taken into account. - Resolves: rhbz#1254193 - Fix for cyclic dependencies between sssd-{krb5,}-common - Resolves: rhbz#1247997 - [IPA/IdM] sudoOrder not honored as expected - Resolves: rhbz#1237142 - [RFE] authenticate against cache in SSSD - Resolves: rhbz#1232632 - Kerberos-based providers other than krb5 do not queue requests - Resolves: rhbz#1227804 - Group members are not turned into ghost entries when the user is purged from the SSSD cache - Resolves: rhbz#1227685 - sssd with ldap backend throws error domain log - Resolves: rhbz#1221365 - [RFE] Support GPOs from different domain controllers - Resolves: rhbz#1215195 - Override for IPA users with login does not list user all groups - Resolves: rhbz#1196204 - sssd cache holding gid values for nss, but not the alpha group name representation - Resolves: rhbz#1194039 - [RFE] User's home directories are not taken from AD when there is an IPA trust with AD- Resolves: rhbz#1266404 - Memory leak / possible DoS with krb auth.- Resolves: rhbz#1264524 - SSSD POSIX attribute check is too strict- Resolves: rhbz#1255285 - cleanup_groups should sanitize dn of groups- Resolves: rhbz#1251349 - sysdb sudo search doesn't escape special characters- Resolves: rhbz#1232738 - Cache is not updated after user is deleted from ldap server- Resolves: rhbz#1227860 - Provide a way to disable the cleanup task - Resolves: rhbz#1227863 - ignore_group_members doesn't work for subdomains- Resolves: rhbz#1226834 - id lookup for non-root domain users doesn't return all groups on first attempt- Resolves: rhbz#1225614 - IPA enumeration provider crashes- Resolves: rhbz#1212610 - sssd ad groups work intermittently- Resolves: rhbz#1215765 - sssd nss responder gets wrong number of secondary groups- Resolves: rhbz#1221358 - SSSD doesn't work with ID mapping and disabled subdomains- Resolves: rhbz#1219844 - Unable to resolve group memberships for AD users when using sssd-1.12.2-58.el7_1.6.x86_64 client in combination with ipa-server-3.0.0-42.el6.x86_64 with AD Trust- Resolves: rhbz#1216094 - /usr/libexec/sssd/selinux_child crashes and gets avc denial when ssh- Include several upstream fixes related to ID views - Resolves: rhbz#1215195 - Override for IPA users with login does not list user all groups - Resolves: rhbz#1213947 - Group resolution is inconsistent with group overrides - Resolves: rhbz#1213822 - Overrides with --login work in second attempt- Resolves: rhbz#1217328 - autofs provider fails when default_domain_suffix and use_fully_qualified_names set- Resolves: rhbz#1212387 - sssd_be segfault id_provider = ad src/providers/ad/ad_gpo.c:843- Resolves: rhbz#1213940 - Overridde with --login fails trusted adusers group membership resolution- Resolves: rhbz#1170910 - SSSD should not fail authentication when only allow rules are used- Resolves: rhbz#1213716 - idoverridegroup for ipa group with --group-name does not work - Resolves: rhbz#1213822 - Overrides with --login work in second attempt- Resolves: rhbz#1212017 - Sudo responder does not respect filter_users and filter_groups- Resolves: rhbz#1203642 - GPO access control looks for computer object in user's domain only- Related: rhbz#1211728 - Only set the selinux context if the context differs from the local one- Package the localauth plugin - Related: rhbz#1168357 - [RFE] Implement localauth plugin for MIT krb5 1.12- Resolves: rhbz#1207720 - id lookup resolves "Domain Local" group and errors appear in domain log- BuildRequire the proper libkrb5 version for correct localauth plugin build - Related: rhbz#1168357 - [RFE] Implement localauth plugin for MIT krb5 1.12- Resolves: rhbz#1194367 - sssd_be dumping core- Resolves: rhbz#1206121 - ldap_access_order=ppolicy: Explicitly mention in manpage that unsupported time specification will lead to sssd denying access- Resolves: rhbz#1205382 - Properly handle AD's binary objectGUID- Resolves: rhbz#1205716 - Installing sssd-common-1.12.4-18.el6 might install with wrong user account (root)- Fix a typo in DEBUG message - Related: rhbz#1173198 - [RFE] Have OpenLDAP lock out ssh keys when account naturally expires- Handle TTL=0 in SRV queries correctly - Resolves: rhbz#1171378 - Read and use the TTL value when resolving a SRV query- Cherry-pick unit test changes from upstream to allow cherry-picking sssd-1-12 patches - Remove unused LDAP provider code to avoid static analyser warnings - Related: rhbz#1168347 - Rebase sssd to 1.12.x- Resolves: rhbz#1206092 - sssd crashes intermittently in GPO code- Resolves: rhbz#1202728 - sssd-ad requires samba3, but ipa-server-trust-ad requires samba4- Resolves: rhbz#1203630 - SSSD doesn't own the GPO cache directory- Fix warning in SELinux code - Handle setups with empty default and no SELinux maps - Related: rhbz#1194302 - With empty ipaselinuxusermapdefault security context on client is staff_u - Resolves: rhbz#1202305 - sssd_be segfault on IPA(when auth with AD trusted domain) client at src/providers/ipa/ipa_s2n_exop.c:1605 - Resolves: rhbz#1201847 - SSSD downloads too much information when fetching information about groups- Fix PAM responder initgroups cache for subdomain users - Log extop failures better - Related: rhbz#1168344 - [RFE] ID Views: Support migration from the sync solution to the trust solution- Fix internal error codes broken when fixing rhbz#1036745 - Related: rhbz#1036745 - [RFE] Allow SSSD to issue shadow expiration warning even if alternate authentication method is used- Resolves: rhbz#1200093 - sssd_nss segfaults if initgroups request is by UPN and doesn't find anything- Fix Coverity warning in ldap_child - Add better debugging - Related: rhbz#1198478 - ccname_file_dummy is not unlinked on error- Resolves: rhbz#1098147 - [RFE] Implement background refresh for users, groups or other cache objects- Resolves: rhbz#1173198 - [RFE] Have OpenLDAP lock out ssh keys when account naturally expires- Initialize a pointer in ldap_child to NULL - Resolves: rhbz#1198478 - ccname_file_dummy is not unlinked on error- Relax the ldb requirement - Related: rhbz#1168347 - Rebase sssd to 1.12.x- Resolves: rhbz#1194302 - With empty ipaselinuxusermapdefault security context on client is staff_u- Resolves: rhbz#1198478 - ccname_file_dummy is not unlinked on error- Resolves: rhbz#1171378 - Read and use the TTL value when resolving a SRV query- Resolves: rhbz#1171378 - Read and use the TTL value when resolving a SRV query - Rebuild against latest krb5, add a versioned BuildRequires - Resolves: rhbz#1168357 - [RFE] Implement localauth plugin for MIT krb5 1.12- Related: rhbz#1036745 - [RFE] Allow SSSD to issue shadow expiration warning even if alternate authentication method is used- Do not mark the selinux_child helper as setuid, we don't support rootless SSSD in 6.7 - Related: rhbz#1168347 - Rebase sssd to 1.12.x- Resolves: rhbz#1168347 - Rebase sssd to 1.12.x - The rebase resolves the following RHEL bugzillas - Resolves: rhbz#1172865 - sssd.conf(5) man page gives bad advice about domains parameter - Resolves: rhbz#1172494 - PAC: krb5_pac_verify failures should not be fatal (backport fix from upstream) - Resolves: rhbz#1171782 - [RFE]: SSSD should preserve case for user uid field - Resolves: rhbz#1170910 - SSSD should not fail authentication when only allow rules are used - Resolves: rhbz#1168377 - [RFE] User's home directories and shells are not taken from AD when there is an IPA trust with AD - Resolves: rhbz#1168363 - [RFE] Add domains= option to pam_sss - Resolves: rhbz#1168344 - [RFE] ID Views: Support migration from the sync solution to the trust solution - Resolves: rhbz#1161564 - [RFE]ad provider dns_discovery_domain option: kerberos discovery is not using this option - Resolves: rhbz#1148582 - inconsistent group information when multiple ad domain sections are configured in sssd - Resolves: rhbz#1140909 - sssd.conf man page missing subdomains_provider ad support - Resolves: rhbz#1139878 - SSSD connection terminated after failing anonymous bind to IBM Tivoli Directory Server - Resolves: rhbz#1135838 - Man sssd-ldap shows parameter ldap_purge_cache_timeout with "Default: 10800 (12 hours)" - Resolves: rhbz#1135432 - Dereference code errors out when dereferencing entries protected by ACIs - Resolves: rhbz#1134942 - sssd does not recognize Windows server 2012 R2's LDAP as AD - Resolves: rhbz#1123291 - automount segfaults in sss_nss_check_header - Resolves: rhbz#1088402 - [RFE] Allow login through SSSD using multiple attributes- Resolves: rhbz#1154042 - RHEL6.6 sssd (1.11) doesn't return all group memberships against an IPA server- Resolves: rhbz#1160713 - TokenGroups for LDAP provider breaks in corner cases- Resolves: rhbz#1141814 - Password expiration policies are not being enforced by SSSD- Resolves: rhbz#1139044 - RHEL6.6 ipa user private group not found- Resolves: rhbz#1103487 - CVE-2014-0249 - sssd: incorrect expansion of group membership when encountering a non-POSIX group- Resolves: rhbz#1125187 - simple_allow_groups does not lookup groups from other AD domains- Resolves: rhbz#1127270 - sssd connect to ipa-server is long- Resolves: rhbz#1130017 - Saving group membership fails if provider is AD, POSIX attributes are used and primary group contains the user as a member- Resolves: rhbz#1111528 - Expired shadow policy user(shadowLastChange=0) is not prompted for password change- Resolves: rhbz#1132361 - use-after-free in dyndns code- Resolves: rhbz#1099290: RFE: Be able to configure sssd to honor openldap account lock to restrict access via ssh key- Use the correct sudo iterator - Related: rhbz#1118336 - sudo: invalid sudoHost filter with asterisk- Add notes about offline mode to sssd.conf - Related: rhbz#1110226 - Requests queued during transition from offline to online mode- Resolves: rhbz#1127278 - Auth fails when space in username is replaced with character set by override_default_whitespace- Resolves: rhbz#1127757 - sssd can't retrieve sudo rules when using the "default_domain_suffix" option- Resolves: rhbz#1127265 - Problems with tokengroups and ldap_group_search_base- Resolves: rhbz#1126636 - RHEL6.6 sssd not running after upgrade- Resolves: rhbz#1128612 - IFP: FQDN lookups are broken- Resolves: rhbz#1118336 - sudo: invalid sudoHost filter with asterisk- Resolves: rhbz#1110226 - Requests queued during transition from offline to online mode- Resolves: rhbz#1122873 - Failover does not always happen from SRV to hostname resolution(via /etc/hosts) - Remove spurious systemctl call on %postun- Resolves: rhbz#1111317 - [RFE] Add option for sssd to replace space with specified character in LDAP group- Resolves: rhbz#1109188 - dereferencing control failure against openldap server- Resolves: rhbz#1084532 - sssd_sudo process segfaults- Resolves: rhbz#1122158 - ad: group membership is empty when id mapping is off and tokengroups are enabled- Resolves: rhbz#1118541 - Floating point exception using ldap- Resolves: rhbz#1042922 - [RFE] Add fallback to sudoRunAs when sudoRunAsUser is not defined and no ldap_sudorule_runasuser mapping has been defined in SSSD- Resolves: rhbz#1120508 - tokengroups do not work with id_provider=ldap- Fix potential NULL dereference in IFP code - Related: rhbz#1110369 - sssd is started before messagebus, making sssd-ifp fail- BuildRequire the latest libini_config - Related: #1051164 - Rebase SSSD to 1.11+ in RHEL6- Resolves: rhbz#1110369 - sssd is started before messagebus, making sssd-ifp fail- Resolves: rhbz#1104145 - public key validator is too strict and does not allow newlines anywhere in the public key string, not even at the end- Rebase to 1.11.6 - Resolves: #1051164 - Rebase SSSD to 1.11+ in RHEL6- Rebuild against new ding-libs - Related: #1051164 - Rebase SSSD to 1.11+ in RHEL6- Backport the InfoPipe patches needed for Sat6 integration - Related: #1051164 - Rebase SSSD to 1.11+ in RHEL6- Resolves: #1085412 - SSSD Crashes when storage experiences high latency- Resolves: #1051164 - Rebase SSSD to 1.11+ in RHEL6Resolves: #1036168 - sssd can't retrieve auto.master when using the "default_domain_suffix"- Resolves: #1065534 - SSSD pam module accepts usernames with leading spaces- Resolves: #1038098 - sssd_nss grows memory footprint when netgroups are requested- Allow combination of proxy id backend and LDAP auth backend - Resolves: #1025813 - SSSD: Allow for custom attributes in RDN when using id_provider = proxy- Inherit UID limits for subdomains - Resolves: #1020905 - Creating system accounts on a IdM client takes up to 10 minutes when AD trust is configured in the IdM.- Do not crash when LDAP disconnects while a search is still in progress - Resolves: #1019979 - sssd_be segfault when authenticating against active directory- More upstream fixes to prevent memcache crashes - Related: #997406 - sssd_nss core dumps under load- Resolves: #1002929 - sssd_be segfaults if IPA dynamic DNS update times out- Make IPA SELinux provider aware of subdomain users - A better version of already committed patch - Resolves: #954342 - In IPA AD trust setup, the sssd logs throws 'sysdb_search_user_by_name failed' error when AD user tries to login via ipa client.- Resolves: #997406 - sssd_nss core dumps under load - Resolves: #984814 - sssd_nss terminated with segmentation fault- Resolves: #1002161 - large number of sudo rules results in error - Unable to create response: Invalid argument- Silence restorecon on clean install - Resolves: #987456 - RHEL6 sssd upgrade restorecon workaround for /var/lib/sss/mc context- Make IPA SELinux provider aware of subdomain users - Resolves: #954342 - In IPA AD trust setup, the sssd logs throws 'sysdb_search_user_by_name failed' error when AD user tries to login via ipa client.- Print password complexity hint when password change fails with constraint violation - Related: #983028 - passwd returns "Authentication token manipulation error" when entering wrong current password- Resolves: #983028 - passwd returns "Authentication token manipulation error" when entering wrong current password- Resolves: #948830 - sssd do too many disk writes causing delay in "getent netgroup allmachines-netgroup" nested netgroups.- Resolves: #984814 - sssd_nss terminated with segmentation fault- Resolves: #966757 - SSSD failover doesn't work if the first DNS server in resolv.conf is unavailable- Resolves: #963235 - sssd_be crashing with nested ldap groups- Apply a forgotten dependency for patch #254 - Related: #916997 - getgrnam / getgrgid for large user groups is too slow due to range retrieval functionality - Add two fixes for better handling of faulty SRV processing - Related: #954275 - sssd fails connect to IPA server during boot when spanning tree is enabled in network router. - Remove enumerate=true from example in man page - Related: #988381 - clarify the disadvantages of enumeration in sssd.conf- Resolves: #914433 - sssd pam write_selinux_login_file creating the temp file for SELinux data failed- Resolves: #916997 - getgrnam / getgrgid for large user groups is too slow due to range retrieval functionality- Resolves: #918394 - sssd etas 99% CPU and runs out of file descriptors when clearing cache- Resolves: #924113 - man sssd-sudo has wrong title- Resolves: #924397 - document what does access_provider=ad do- Use permissive control when adding ghost users - Resolves: #928797 - cyclic group memberships may not work depending on order of operations- Set correct state of SRV servers on resolving error - Resolves: #954275 - sssd fails connect to IPA server during boot when spanning tree is enabled in network router.- Resolves: #954323 - SSSD doesn't display warning for last grace login.- Format patch to configure sysv script differently - RHEL-6 patch(1) apparently doesn't like the output of git format-patch -M -C and doesn't properly copy files on renames - Resolves: #971435 - Enhance sssd init script so that it would source a configuration.- Resolves: #973345 - SSSD service randomly dies- Resolves: #971435 - Enhance sssd init script so that it would source a configuration- Resolves: #961356 - SUDO is not working for users from trusted AD domain- Resolves: #970519 - [RFE] Add support for suppressing group members- Resolves: #976273 - [RFE] Add a new override_homedir expansion for the "original value"- Resolves: #978966 - sudoHost mismatch response is incorrect sometimes- Clarify the min_id/max_id limits further - Resolves: #978994 - SSSD filter out ldap user/group if uid/gid is zero- Resolves: #979046 - sssd_be goes to 99% CPU and causes significant login delays when client is under load- Resolves: #986379 - sss_cache -N/-n should invalidate the hash table in sssd_nss- Resolves: #988525 - sssd fails instead of skipping when a sudo ldap filter returns entries with multiple CNs- Mention that enumeration should be discouraged - Resolves: #988381 - clarify the disadvantages of enumeration in sssd.conf- Call restorecon on memcache files to force the right context on upgrades - Resolves: #987456 - RHEL6 sssd upgrade restorecon workaround for /var/lib/sss/mc context- Resolves: #987479 - libsss_sudo should depend on sudo package with sssd support- Resolves: #951086 - sssd_pam segfaults if sssd_be is stuck- Resolves: #967636 - SSSD frequently fails to return automount maps from LDAP- Resolves: #953165 - Enabling enumeration causes sssd_be process to utilize 100% of the CPU- Resolves: #906398 - sssd_be crashes sometimes- Resolves: #950874: Simple access control always denies uppercased users in case insensitive domain- Resolves: #921454: Resolve local group members in LDAP groups- Resolves: rhbz#911299 - sssd: simple access provider flaw prevents intended ACL use when client to an AD provider- Fix pwd_expiration_warning=0 - Resolves: rhbz#911329 - pwd_expiration_warning has wrong default for Kerberos- Resolves: rhbz#911329 - pwd_expiration_warning has wrong default for Kerberos- Resolves: rhbz#872827 - Serious performance regression in sssd- Resolves: rhbz#888614 - Failure in memberof can lead to failed database update- Resolves: rhbz#903078 - TOCTOU race conditions by copying and removing directory trees- Resolves: rhbz#903078 - Out-of-bounds read flaws in autofs and ssh services responders- Resolves: rhbz#902716 - Rule mismatch isn't noticed before smart refresh on ppc64 and s390x- Resolves: rhbz#896476 - SSSD should warn when pam_pwd_expiration_warning value is higher than passwordWarning LDAP attribute.- Resolves: rhbz#902436 - possible segfault when backend callback is removed- Resolves: rhbz#895132 - Modifications using sss_usermod tool are not reflected in memory cache- Resolves: rhbz#894302 - sssd fails to update to changes on autofs maps- Resolves: rhbz894381 - memory cache is not updated after user is deleted from ldb cache- Resolves: rhbz895615 - ipa-client-automount: autofs failed in s390x and ppc64 platform- Resolves: rhbz#894997 - sssd_be crashes looking up members with groups outside the nesting limit- Resolves: rhbz#895132 - Modifications using sss_usermod tool are not reflected in memory cache- Resolves: rhbz#894428 - wrong filter for autofs maps in sss_cache- Resolves: rhbz#894738 - Failover to ldap_chpass_backup_uri doesn't work- Resolves: rhbz#887961 - AD provider: getgrgid removes nested group memberships- Resolves: rhbz#878583 - IPA Trust does not show secondary groups for AD Users for commands like id and getent- Resolves: rhbz#874579 - sssd caching not working as expected for selinux usermap contexts- Resolves: rhbz#892197 - Incorrect principal searched for in keytab- Resolves: rhbz#891356 - Smart refresh doesn't notice "defaults" addition with OpenLDAP- Resolves: rhbz#878419 - sss_userdel doesn't remove entries from in-memory cache- Resolves: rhbz#886848 - user id lookup fails for case sensitive users using proxy provider- Resolves: rhbz#890520 - Failover to krb5_backup_kpasswd doesn't work- Resolves: rhbz#874618 - sss_cache: fqdn not accepted- Resolves: rhbz#889182 - crash in memory cache- Resolves: rhbz#889168 - krb5 ticket renewal does not read the renewable tickets from cache- Resolves: rhbz#886091 - Disallow root SSH public key authentication - Add default section to switch statement (Related: rhbz#884666)- Resolves: rhbz#886038 - sssd components seem to mishandle sighup- Resolves: rhbz#888800 - Memory leak in new memcache initgr cleanup function- Resolves: rhbz#888614 - Failure in memberof can lead to failed database update- Resolves: rhbz#885078 - sssd_nss crashes during enumeration if the enumeration is taking too long- Related: rhbz#875851 - sysdb upgrade failed converting db to 0.11 - Include more debugging during the sysdb upgrade- Resolves: rhbz#877972 - ldap_sasl_authid no longer accepts full principal- Resolves: rhbz#870045 - always reread the master map from LDAP - Resolves: rhbz#876531 - sss_cache does not work for automount maps- Resolves: rhbz#884666 - sudo: if first full refresh fails, schedule another first full refresh- Resolves: rhbz#880956 - Primary server status is not always reset after failover to backup server happened - Silence a compilation warning in the memberof plugin (Related: rhbz#877974) - Do not steal resolv result on error (Related: rhbz#882076)- Resolves: rhbz#882923 - Negative cache timeout is not working for proxy provider- Resolves: rhbz#884600 - ldap_chpass_uri failover fails on using same hostname- Resolves: rhbz#858345 - pam_sss(crond:account): Request to sssd failed. Timer expired- Resolves: rhbz#878419 - sss_userdel doesn't remove entries from in-memory cache- Resolves: rhbz#880176 - memberUid required for primary groups to match sudo rule- Resolves: rhbz#885105 - sudo denies access with disabled ldap_sudo_use_host_filter- Resolves: rhbz#883408 - Option ldap_sudo_include_regexp named incorrectly- Resolves: rhbz#880546 - krb5_kpasswd failover doesn't work - Fix the error handler in sss_mc_create_file (Related: #789507)- Resolves: rhbz#882221 - Offline sudo denies access with expired entry_cache_timeout - Fix several bugs found by Coverity and clang: - Check the return value of diff_gid_lists (Related: #869071) - Move misplaced sysdb assignment (Related: #827606) - Remove dead assignment (Related: #827606) - Fix copy-n-paste error in the memberof plugin (Related: #877974)- Resolves: rhbz#882923 - Negative cache timeout is not working for proxy provider - Link sss_ssh_authorizedkeys and sss_ssh_knowhostsproxy with the client libraries (Related: #870060) - Move sss_ssh_knownhosts documentation to the correct section (Related: #870060)- Resolves: rhbz#884480 - user is not removed from group membership during initgroups - Fix incorrect synchronization in mmap cache (Related: #789507)- Resolves: rhbz#883336 - sssd crashes during start if id_provider is not mentioned- Resolves: rhbz#882290 - arithmetic bug in the SSSD causes netgroup midpoint refresh to be always set to 10 seconds- Resolves: rhbz#877974 - updating top-level group does not reflect ghost members correctly - Resolves: rhbz#880159 - delete operation is not implemented for ghost users- Resolves: rhbz#881773 - mmap cache needs update after db changes- Resolves: rhbz#875677 - password expiry warning message doesn't appear during auth - Fix potential NULL dereference when skipping built-in AD groups (Related: rhbz#874616) - Add missing parameter to DEBUG message (Related: rhbz#829742)- Resolves: rhbz#882076 - SSSD crashes when c-ares returns success but an empty hostent during the DNS update - Do not version libsss_sudo, it's not supposed to be linked against, but dlopened (Related: rhbz#761573)- Resolves: rhbz#880140 - sssd hangs at startup with broken configurations- Resolves: rhbz#878420 - SIGSEGV in IPA provider when ldap_sasl_authid is not set- Resolves: rhbz#874616 - Silence the DEBUG messages when ID mapping code skips a built-in group- Resolves: rhbz#824244 - sssd does not warn into sssd.log for broken configurations- Resolves: rhbz#874673 - user id lookup fails using proxy provider - Fix a possibly uninitialized variable in the LDAP provider - Related: rhbz#877130- Resolves: rhbz#878262 - ipa password auth failing for user principal name when shorter than IPA Realm name - Resolves: rhbz#871843 - Nested groups are not retrieved appropriately from cache- Resolves: rhbz#870238 - IPA client cannot change AD Trusted User password- Resolves: rhbz#877972 - ldap_sasl_authid no longer accepts full principal- Resolves: rhbz#861075 - SSSD_NSS failure to gracefully restart after sbus failure- Resolves: rhbz#877354 - ldap_connection_expire_timeout doesn't expire ldap connections- Related: rhbz#877126 - Bump the release tag- Resolves: rhbz#877126 - subdomains code does not save the proper user/group name- Resolves: rhbz#877130 - LDAP provider fails to save empty groups - Related: rhbz#869466 - check the return value of waitpid()- Resolves: rhbz#870039 - sss_cache says 'Wrong DB version'- Resolves: rhbz#875740 - "defaults" entry ignored- Resolves: rhbz#875738 - offline authentication failure always returns System Error- Resolves: rhbz#875851 - sysdb upgrade failed converting db to 0.11- Resolves: rhbz#870278 - ipa client setup should configure host properly in a trust is in place- Resolves: rhbz#871160 - sudo failing for ad trusted user in IPA environment- Resolves: rhbz#870278 - ipa client setup should configure host properly in a trust is in place- Resolves: rhbz#869678 - sssd not granting access for AD trusted user in HBAC rule- Resolves: rhbz#872180 - subdomains: Invalid sub-domain request type - Related: rhbz#867933 - invalidating the memcache with sss_cache doesn't work if the sssd is not running- Resolves: rhbz#873988 - Man page issue to list 'force_timeout' as an option for the [sssd] section- Resolves: rhbz#873032 - Move sss_cache to the main subpackage- Resolves: rhbz#873032 - Move sss_cache to the main subpackage - Resolves: rhbz#829740 - Init script reports complete before sssd is actually working - Resolves: rhbz#869466 - SSSD starts multiple processes due to syntax error in ldap_uri - Resolves: rhbz#870505 - sss_cache: Multiple domains not handled properly - Resolves: rhbz#867933 - invalidating the memcache with sss_cache doesn't work if the sssd is not running - Resolves: rhbz#872110 - User appears twice on looking up a nested group- Resolves: rhbz#871576 - sssd does not resolve group names from AD - Resolves: rhbz#872324 - pam: fd leak when writing the selinux login file in the pam responder - Resolves: rhbz#871424 - authconfig chokes on sssd.conf with chpass_provider directive- Do not send SIGKILL to service right after sending SIGTERM - Resolves: #771975 - Fix the initial sudo smart refresh - Resolves: #869013 - Implement password authentication for users from trusted domains - Resolves: #869071 - LDAP child crashed with a wrong keytab - Resolves: #869150 - The sssd_nss process grows the memory consumption over time - Resolves: #869443- BuildRequire selinux-policy so that selinux login support is built in - Resolves: #867932- Do not segfault if namingContexts contain no values or multiple values - Resolves: rhbz#866542- Fix the "ca" translation of the sssd-simple manual page - Related: rhbz#827606 - Rebase SSSD to 1.9 in 6.4- New upstream release 1.9.2- Rebase to 1.9.1- Require the latest libldb- Rebase to 1.9.0 - Resolves: rhbz#827606 - Rebase SSSD to 1.9 in 6.4- Rebase to 1.9.0 RC1 - Resolves: rhbz#827606 - Rebase SSSD to 1.9 in 6.4 - Bump the selinux-policy version number to pull in required fixes- Resolves: rhbz#840089 - Update the shadowLastChange attribute with days since the Epoch, not seconds- Fix protocol break for services map - Related: rhbz#825028 - Service lookups by port number doesn't work on s390x/ppc64 arches- Resolves: rhbz#825028 - Service lookups by port number doesn't work on s390x/ppc64 arches- Resolves: rhbz#824616 - sssd_nss crashes when configured with use_fully_qualified_names = true- Resolves: rhbz#824062 - sssd_be crashed with SIGSEGV in _tevent_schedule_immediate()- Resolves: rhbz#822236 - SSSD netgroups do not honor entry_cache_nowait_percentage- Resolves: rhbz#820759 - AVC denial seen on sssd upgrade during ipa-client upgrade - Resolves: rhbz#821044 - sss_groupadd no longer detects duplicate GID numbers- Resolves: rhbz#818642 - Auth fails for user with non-default attribute names - Resolves: rhbz#819063 - sssd fails to provide partial data till paged search returns "Size Limit Exceeded" - Resolves: rhbz#820585 - Group enumeration fails in proxy provider- Resolves: rhbz#816616 - group members are now lowercased in case insensitive domains- Resolves: rhbz#805431 - NFS files/folders are mapped to nobody user if NFS top level directory is chowned by a SSSD user- Resolves: rhbz#805924 - SSSD should attempt to get the RootDSE after binding - Resolves: rhbz#814237 - sdap_check_aliases must not error when detects the same user - Resolves: rhbz#812281 - autofs client: map name length used as key length - Related: rhbz#784870 - SSSD fails during autodetection of search bases for new LDAP features - Related: rhbz#814269 - sssd-1.5.1-66.el6_2.3.x86_64 freezes- Fix typo in patch for SSH umask - Related: rhbz#808107 - Coverity revealed memory management defects- Resolves: rhbz#808458 - Authconfig crashes when sets krb realm - Resolves: rhbz#808597 - sssd_nss crashes on request when no back end is running - Resolves: rhbz#808107 - Coverity revealed memory management defects- Related: rhbz#805452 - Unable to lookup user, group, netgroup aliases with case_sensitive=false- Resolves: rhbz#804057 - Initial service lookups having name with uppercase alphabets doesn't work - Resolves: rhbz#804065 - Service lookup using case-sensitive protocol names doesn't work when case_sensitive=false - Resolves: rhbz#805281 - sssd: Uses the wrong key when there a multiple realms in a single keytab - Resolves: rhbz#805452 - Unable to lookup user, group, netgroup aliases with case_sensitive=false - Resolves: rhbz#805918 - Wrong resolv_status might cause crash when name resolution times out - Resolves: rhbz#805431 - NFS files/folders are mapped to nobody user if NFS top level directory is chowned by a SSSD user- Related: rhbz#802207 - getent netgroup hangs when "use_fully_qualified_names = TRUE" in sssd - Resolves: rhbz#801719 - "Error looking up public keys" while ssh to replica using IP address - Resolves: rhbz#803659 - Service lookup shows case sensitive names twice with case_sensitive=false - Resolves: rhbz#803842 - Unable to bind to LDAP server when minssf set - Resolves: rhbz#805034 - accessing an undefined variable might cause crash - Resolves: rhbz#805108 - sss_ssh_knownhostproxy infinite loop hangs SSH login- Update translations - Resolves: rhbz#802372 - Pick up latest translation files for SSSD - Resolves: rhbz#802207 - getent netgroup hangs when "use_fully_qualified_names = TRUE" in sssd - Related: rhbz#801451 - Logging in with ssh pub key should consult authentication authority policies- Resolves: rhbz#801407 - sssd_nss gets hung processing identical search requests - Resolves: rhbz#801451 - Logging in with ssh pub key should consult authentication authority policies - Resolves: rhbz#795562 - Infinite loop checking Kerberos credentials - Resolves: rhbz#798317 - sssd crashes when ipa_hbac_support_srchost is set to true - Resolves: rhbz#799039 - --debug option for sss_debuglevel doesn't work - Resolves: rhbz#799915 - Unable to lookup netgroups with case_sensitive=false - Resolves: rhbz#799929 - Raise limits for max num of files sssd_nss/sssd_pam can use - Resolves: rhbz#799971 - sssd_be crashes on shutdown - Resolves: rhbz#801533 - sssd_be crashes when resolving non-trivial nested group structure - Resolves: rhbz#801368 - Group lookups doesn't return members with proxy provider configured - Resolves: rhbz#801377 - getent returns non-existing netgroup name, when sssd is configured as proxy provider- Do not auto-upgrade debug levels - Tool still available for manual use - Reverts: rhbz#753763 - Provide logging configuration compatibility on SSSD 1.5/1.6 upgrade - Resolves: rhbz#798881 - Install-time warnings - Resolves: rhbz#798774 - IPA provider should assume that ipa_domain is also the dns_discovery_domain - Resolves: rhbz#798655 - Password logins failing due to a process with high UID- Fix explicit requires to use openldap instead of openldap-libs - Related: rhbz#797282 - sssd-1.5.1-66.el6.x86_64 needs openldap >= openldap-2.4.23-20.el6.x86_64- Fix multilib-clean issue due to upgrade script - Remove old copy from the spec file - Related: rhbz#753763 - Provide logging configuration compatibility on SSSD 1.5/1.6 upgrade- Fix multilib-clean issue due to upgrade script - Fix typo in the patch - Related: rhbz#753763 - Provide logging configuration compatibility on SSSD 1.5/1.6 upgrade- Fix multilib-clean issue due to upgrade script - Use a patch and install the script to python_sitelib - Related: rhbz#753763 - Provide logging configuration compatibility on SSSD 1.5/1.6 upgrade- Fix multilib-clean issue due to upgrade script - Related: rhbz#753763 - Provide logging configuration compatibility on SSSD 1.5/1.6 upgrade- Resolves: rhbz#753763 - Provide logging configuration compatibility on SSSD 1.5/1.6 upgrade - Resolves: rhbz#785871 - wrong build dependency on nscd - Resolves: rhbz#785873 - IPA host search base cannot be set - Resolves: rhbz#791208 - Entries lacking a POSIX username value break group lookups - Resolves: rhbz#796307 - Simple Paged Search control needs to be used more sparingly - Resolves: rhbz#797282 - sssd-1.5.1-66.el6.x86_64 needs openldap >= openldap-2.4.23-20.el6.x86_64 - Resolves: rhbz#787035 - ipa - sssd slow response with thousands of user entries - Resolves: rhbz#742509 - [RFE] Add SSSD Tool to purge cache - Resolves: rhbz#772297 - Fails to update if all nisNetgroupTriple or memberNisNetgroup entries are deleted from a netgroup - Resolves: rhbz#783138 - Backend occasionally goes offline under heavy load - Resolves: rhbz#797975 - sssd_be: The requested target is not configured is logged at each login - Resolves: rhbz#735422 - Rebase SSSD to 1.8.0 in RHEL 6.3- Resolves: rhbz#761570 - [RFE] support looking up autofs maps via SSSD - Resolves: rhbz#788979 - sssd crashes during initgroups against a user belonging to nested rfc2307bis group- Handle filtering python Provides in a safer way - Related: rhbz#735422 - Rebase SSSD to 1.8.0 in RHEL 6.3- Related: rhbz#735422 - Rebase SSSD to 1.8.0 in RHEL 6.3 - Resolves: rhbz#786553 - sssd on ppc64 doesn't pull cyrus-sasl-gssapi.ppc as a dependancy - Resolves: rhbz#785909 - --debug-timestamps=1 is not passed to providers - Resolves: rhbz#785908 - ldap_*_search_base doesn't fully limit the group and netgroup search base correctly - Resolves: rhbz#785907 - [RFE] Add support to request canonicalization on krb AS requests - Resolves: rhbz#785905 - [RFE] DEBUG timestamps should offer higher precision - Resolves: rhbz#785904 - [RFE] SSSD should have --version option - Resolves: rhbz#785902 - Errors with empty loginShell and proxy provider - Resolves: rhbz#785898 - Enable midway cache refresh by default - Resolves: rhbz#785888 - sssd returns empty netgroup at a second request for a non-existing netgroup - Resolves: rhbz#785884 - Honour TTL when resolving host names - Resolves: rhbz#785883 - check DNS records before updates - Resolves: rhbz#785881 - List the keytab to pick the princiapl to use instead of guessing - Resolves: rhbz#785880 - debug_level in sssd.conf overrides command-line - Resolves: rhbz#785879 - sss_obfuscate/python config parser modifies config file too much - Resolves: rhbz#785877 - on reconnect we need to detect that a ipa/ds server has been reinitialized - Resolves: rhbz#785741 - sssd.api.conf and sssd.api.d should not be in /etc - Resolves: rhbz#773660 - Kerberos errors should go to syslog - Resolves: rhbz#772163 - Iterator loop reuse cases a tight loop in the native IPA netgroups code - Resolves: rhbz#771706 - sssd_be crashes during auth when there exists UTF source host group in an hbacrule - Resolves: rhbz#771702 - sssd_pam crashes during change password operation against a IPA server - Resolves: rhbz#771361 - case_sensitive function not working as intended for ldap - Resolves: rhbz#768935 - Crash when applying settings - Resolves: rhbz#766941 - The full dyndns update message should be logged into debug logs - Resolves: rhbz#766930 - [RFE] Add a new option to override home directory value - Resolves: rhbz#766913 - [RFE] Add option to select validate and FAST keytab principal name - Resolves: rhbz#766907 - Use [...] for IPv6 addresses in kdc info files - Resolves: rhbz#766904 - [RFE] Create a command line tool to change the debug levels on the fly - Resolves: rhbz#766876 - [RFE] Make HBAC srchost processing optional - Resolves: rhbz#766141 - [RFE] SSSD should support FreeIPA's internal netgroup representation - Resolves: rhbz#761582 - [RFE] Add ldap_sasl_minssf option - Resolves: rhbz#759186 - [abrt] sssd-1.6.3-1.fc16: ping_check: Process /usr/sbin/sssd was killed by signal 11 (SIGSEGV) - Resolves: rhbz#755506 - [RFE] Add host-based (pam_host_attr) access control - Resolves: rhbz#753876 - [RFE] Add support for the services map - Resolves: rhbz#746181 - "getgrgid call returned more than one result" after group name change in MSAD - Resolves: rhbz#744197 - [RFE] close LDAP connection to the server when idle for some (configurable) time - Resolves: rhbz#742510 - [RFE] Separate Cache Timeouts for SSSD - Related: rhbz#742509 - [RFE] Add SSSD Tool to purge cache - Resolves: rhbz#742052 - id -G group resolution takes extremely long - Resolves: rhbz#739312 - [RFE] sssd does not set shadowLastChange - Resolves: rhbz#736150 - [RFE] SSSD should support multiple search bases - Resolves: rhbz#735827 - [RFE] Ability to set a domain as case sensitive or insensitive - Resolves: rhbz#735405 - [RFE] Option to disable warnings for unknown users - Resolves: rhbz#728212 - [RFE] sssd does not handle when paging control disabled for openldap - Resolves: rhbz#726467 - SSSD takes 30+ seconds to login - Resolves: rhbz#721289 - Process /usr/libexec/sssd/sssd_be was killed by signal 11 during auth when password for the user is not set- Resolves: rhbz#773655 - Race-condition bug in LDAP auth provider- Resolves: rhbz#753842 - sssd_nss crashes when passed invalid UTF-8 for the username in getpwnam() - Resolves: rhbz#758157 - LDAP failover not working if server refuses connections- Related: rhbz#750359 - Major cached entry performance regression- Resolves: rhbz#750359 - Major cached entry performance regression- Resolves: rhbz#749822 - SSSD may go into infinite loop during RFC2307bis initgroups when groups appear in multiple nesting levels- Resolves: rhbz#749256 - SELinux errors with SSSD Downgrade- Resolves: rhbz#748924 - RHEL6.1/sssd_pam segmentation fault- Resolves: rhbz#748412 - Memory leaks during the initgroups() operation- Related: rhbz#743841 - SSSD can crash due to dbus server removing a UNIX socket- Resolves: rhbz#742288 - RFC2307bis initgroups calls are slow - Resolves: rhbz#746654 - SSSD backend gets killed on slow systems - Related: rhbz#743925 - HBAC processing is very slow when dealing with FreeIPA deployments with large numbers of hosts Fixes a crash introduced by the earlier patch. - Related: rhbz#733382 - SSSD should pick a user/group name when there are multi-valued names Fixes for internationalization- Related: rhbz#742278 - Rework the example config- Resolves: rhbz#743925 - HBAC processing is very slow when dealing with FreeIPA deployments with large numbers of hosts - Resolves: rhbz#745966 - sssd_pam segfaults on sssd restart - Related: rhbz#743841 - SSSD can crash due to dbus server removing a UNIX socket- Resolves: rhbz#742278 - Rework the example config - Resolves: rhbz#746037 - Only access sssd_nss internal hash table if it was initialized - Resolves: rhbz#742526 - SSSD's man pages are missing information - Resolves: rhbz#743841 - SSSD can crash due to dbus server removing a UNIX socket- Resolves: rhbz#738621 - Lookup fails for non-primary usernames with multi-valued uid - Resolves: rhbz#738629 - Group lookups doesn't return it's member for sometime when the member has multi-valued uid - Resolves: rhbz#742295 - Use an explicit base 10 when converting uidNumber to integer - Resolves: rhbz#733382 - SSSD should pick a user/group name when there are multi-valued names- Resolves: rhbz#741751 - HBAC rule evaluation does not properly handle host groups - Resolves: rhbz#740501 - SSSD not functional after "self" reboot - Resolves: rhbz#742539 - HBAC: Hostname comparisons should be case-insensitive- Resolves: rhbz#728343 - SSSD taking 5 minutes to log in - Resolves: rhbz#739850 - Coverity defects newly introduced in rhel 6.2- Resolves: rhbz#737157 - "System error" appears in log during change password operation of a user in openldap server with ppolicy enabled - Resolves: rhbz#737172 - "Unknown (private extension) error(21853), (null)" messages are logged during change password operation of a user in openldap server with ppolicy enabled- Resolves: rhbz#736314 - sssd crashes during auth while there exists multiple external hosts along with managed host - Resolves: rhbz#732974 - [RFE] Have SSSD cache properly with krb5_validate = True and SElinux enabled- Resolves: rhbz#732010 - LDAP+GSSAPI needs explicit Kerberos realm - Resolves: rhbz#733382 - SSSD should pick a user/group name when there are multi-valued names - Resolves: rhbz#733409 - Improve password policy error message - Resolves: rhbz#733663 - Authentication fails when there exists an empty hbacsvcgroup - Resolves: rhbz#732935 - Add LDAP provider option to set LDAP_OPT_X_SASL_NOCANON - Resolves: rhbz#734101 - sssd blocks login of ipa-users- Related: rhbz#728353 - Resolve RPMDiff errors in SSSD- Resolves: rhbz#728961 - Provide a mechanism for vetoing the use of certain shells- Related: rhbz#728267 - When non-posix groups are skipped, initgroups returns random GID- Related: rhbz#726466 - HBAC rule evaluation does not support extended UTF-8 languages - Related: rhbz#718250 - Remove DENY rules from the HBAC access provider - Fixes an issue on big endian platforms- Resolves: rhbz#700828 - Process /usr/libexec/sssd/sssd_be was killed by signal 11 (SIGSEGV) when ldap_uri is misconfigured - Resolves: rhbz#726438 - sssd doesn't honor ldap supportedControls - Resolves: rhbz#726466 - HBAC rule evaluation does not support extended UTF-8 languages - Resolves: rhbz#718250 - Remove DENY rules from the HBAC access provider - Resolves: rhbz#728267 - When non-posix groups are skipped, initgroups returns random GID - Resolves: rhbz#726475 - sssd_pam leaks file descriptors - Resolves: rhbz#725868 - Explicitly ignore groups with gidNumber = 0- Related: rhbz#721052 - sssd does not handle kerberos server IP change - Use ares_search instead of ares_query to honor - search entries in /etc/resolv.conf- Resolves: rhbz#711416 - During the change password operation the ccache is - not replaced by a new one if the old one isn't - active anymore - Resolves: rhbz#715609 - Certificate validation fails with message - "Connection error: TLS: hostname does not match CN - in peer certificate" - Resolves: rhbz#719089 - IPA dynamic DNS update mangles AAAA records - Resolves: rhbz#721052 - sssd does not handle kerberos server IP change - Honor TTL values when resolving hostnames- Resolves: rhbz#713961 - libsss_ldap segfault at login against OpenLDAP - Resolves: rhbz#713438 - sssd shuts down if inotify crashes- Resolves: rhbz#709081 - sssd.$arch should require sssd-client.$arch- Resolves: rhbz#709342 - Typo in negative cache notification for initgroups() - Resolves: rhbz#708009 - "renew_all_tgts" and "renew_handlers" messages are - being logged multiple times when the provider comes - back online - Resolves: rhbz#707997 - The IPA provider does not work with IPv6 - Resolves: rhbz#677327 - [RFE] Support overriding attribute value - Resolves: rhbz#692090 - SSSD is not populating nested groups in - Active Directory- Resolves: rhbz#707627 - Include valid "ldap_uri" formats in sssd-ldap man - page- Resolves: rhbz#707513 - Unable to authenticate users when username - contains "\0"- Resolves: rhbz#698723 - kpasswd fails when using sssd and - kadmin server != kdc server- Resolves: rhbz#707282 - latest sssd fails if ldap_default_authtok_type is - not mentioned - Resolves: rhbz#692404 - rfc2307bis groups are being enumerated even when the - gidNumber is out of the range of min_id,max_id. - Resolves: rhbz#699530 - Users with a local group as their primary GID are - denied access by the simple access provider - Resolves: rhbz#700172 - RFE: SSSD should support paged LDAP lookups - Resolves: rhbz#705434 - IPA provider fails initgroups() if user is not a - member of any group - Resolves: rhbz#703624 - SSSD's async resolver only tries the first - nameserver in /etc/resolv.conf- Resolves: rhbz#701700 - sssd client libraries use select() but should use - poll() instead- Related: rhbz#693818 - Automatic TGT renewal overwrites cached password - Fix segfault in TGT renewal- Related: rhbz#693818 - Automatic TGT renewal overwrites cached password - Fix typo causing build breakage- Resolves: rhbz#693818 - Automatic TGT renewal overwrites cached password- Resolves: rhbz#696972 - Filters not honoured against fully-qualified users- Resolves: rhbz#694146 - SSSD consumes GBs of RAM, possible memory leak- Related: rhbz#691678 - SSSD needs to fall back to 'cn' for GECOS - information- Related: rhbz#694783 - SSSD crashes during getent when anonymous bind is - disabled- Resolves: rhbz#694444 - Unable to resolve SRV record when called with - _srv_, in ldap_uri - Related: rhbz#694783 - SSSD crashes during getent when anonymous bind is - disabled- Resolves: rhbz#694783 - SSSD crashes during getent when anonymous bind is - disabled- Resolves: rhbz#692472 - Process /usr/libexec/sssd/sssd_be was killed by - signal 11 (SIGSEGV) - Fix is to not attempt to resolve nameless servers- Resolves: rhbz#691678 - SSSD needs to fall back to 'cn' for GECOS - information- Resolves: rhbz#690866 - Groups with a zero-length memberuid attribute can - cause SSSD to stop caching and responding to - requests- Resolves: rhbz#690131 - Traceback messages seen while interrupting - sss_obfuscate using ctrl+d - Resolves: rhbz#690421 - [abrt] sssd-1.2.1-28.el6_0.4: _talloc_free: Process - /usr/libexec/sssd/sssd_be was killed by signal 11 - (SIGSEGV)- Related: rhbz#683885 - SSSD should skip over groups with multiple names- Resolves: rhbz#683158 - SSSD breaks on RDNs with a comma in them - Resolves: rhbz#689886 - group memberships are not populated correctly during - IPA provider initgroups - Resolves: rhbz#683885 - SSSD should skip over groups with multiple names- Resolves: rhbz#683860 - Skip users and groups that have incomplete contents - Resolves: rhbz#688491 - authconfig fails when access_provider is set as krb5 - in sssd.conf- Resolves: rhbz#683255 - sudo/ldap lookup via sssd gets stuck for 5min - waiting on netgroup - Resolves: rhbz#683431 - sssd consumes 100% CPU - Related: rhbz#680440 - sssd does not handle kerberos server IP change- Related: rhbz#680440 - sssd does not handle kerberos server IP change - SSSD was staying with the old server if it was still online- Resolves: rhbz#682850 - IPA provider should use realm instead of ipa_domain - for base DN- Resolves: rhbz#682340 - sssd-be segmentation fault - ipa-client on - ipa-server - Resolves: rhbz#680440 - sssd does not handle kerberos server IP change - Resolves: rhbz#680442 - Dynamic DNS update fails if multiple servers are - given in ipa_server config option - Resolves: rhbz#680932 - Do not delete sysdb memberOf if there is no memberOf - attribute on the server - Resolves: rhbz#682807 - sssd_nss core dumps with certain lookups- Related: rhbz#678614 - SSSD needs to look at IPA's compat tree for netgroups - Related: rhbz#679082 - SSSD IPA provider should honor the krb5_realm option- Resolves: rhbz#679082 - SSSD IPA provider should honor the krb5_realm option - Resolves: rhbz#677318 - Does not read renewable ccache at startup- Resolves: rhbz#678593 - User information not updated on login for secondary - domains - Resolves: rhbz#678777 - IPA provider does not update removed group - memberships on initgroups- Resolves: rhbz#677588 - sssd crashes at the next tgt renewals it tries - Resolves: rhbz#678410 - name service caches names, so id command shows - recently deleted users - Resolves: rhbz#678614 - SSSD needs to look at IPA's compat tree for - netgroups- Resolves: rhbz#670511 - SSSD and sftp-only jailed users with pubkey login - Resolves: rhbz#675284 - "no matching rule" message logged on all successful - requests - Resolves: rhbz#676911 - SSSD attempts to use START_TLS over LDAPS for - authentication- Resolves: rhbz#674164 - sss_obfuscate fails if there's no domain named - "default" - Resolves: rhbz#674515 - -p option always uses empty string to obfuscate - password - Resolves: rhbz#674141 - Traceback call messages displayed while - "sss_obfuscate" command is executed as a non-root - user- Resolves: rhbz#674172 - Group members are not sanitized in nested group - processing - Put translated tool manpages into the sssd-tools subpackage- Related: rhbz#670259 - Refresh SSSD in 6.1 to 1.5.1 - Also add the updated ding-libs to the BuildRequires- Related: rhbz#670259 - Refresh SSSD in 6.1 to 1.5.1 - Explicitly require updated ding-libs- Resolves: rhbz#670259 - Refresh SSSD in 6.1 to 1.5.1 - New upstream release 1.5.1 - Addresses CVE-2010-4341 - DoS in sssd PAM responder can prevent logins - Vast performance improvements when enumerate = true - All PAM actions will now perform a forced initgroups lookup instead of just - a user information lookup - This guarantees that all group information is available to other - providers, such as the simple provider. - For backwards-compatibility, DNS lookups will also fall back to trying the - SSSD domain name as a DNS discovery domain. - Support for more password expiration policies in LDAP - 389 Directory Server - FreeIPA - ActiveDirectory - Support for ldap_tls_{cert,key,cipher_suite} config options - Assorted bugfixes- Add noverify to sssd.conf - Resolves: rhbz#627165 - TPS VerifyTest failure- Related: rhbz#644072 - Rebase SSSD to 1.5 - New upstream release 1.5.0 - Fixed issues with LDAP search filters that needed to be escaped - Add Kerberos FAST support on platforms that support it - Reduced verbosity of PAM_TEXT_INFO messages for cached credentials - Added a Kerberos access provider to honor .k5login - Addressed several thread-safety issues in the sss_client code - Improved support for delayed online Kerberos auth - Significantly reduced time between connecting to the network/VPN and - acquiring a TGT - Added feature for automatic Kerberos ticket renewal - Provides the kerberos ticket for long-lived processes or cron jobs - even when the user logs out - Added several new features to the LDAP access provider - Support for 'shadow' access control - Support for authorizedService access control - Ability to mix-and-match LDAP access control features - Added an option for a separate password-change LDAP server for those - platforms where LDAP referrals are not supported - Added support for manpage translations- Resolves: rhbz#660592 - SSSD shutdown sometimes hangs - Resolves: rhbz#660585 - getent passwd ' returns nothing if its - uidNumber gt 2147483647- Resolves: rhbz#659401 - SSSD shutdown sometimes hangs- Resolves: rhbz#645449 - 'getent passwd ' returns nothing if its - uidNumber gt 2147483647- Resolves: rhbz#658374 - sssd stops on upgrade- Resolves: rhbz#658158 - sssd stops on upgrade- Resolves: rhbz#649312 - SSSD will sometimes lose groups from the cache- Resolves: rhbz#649286 - SSSD will sometimes lose groups from the cache- Resolves: rhbz#637070 - the krb5 locator plugin isn't packaged for multilib - Resolves: rhbz#642412 - SSSD initgroups does not behave as expected- Resolves: rhbz#633406 - the krb5 locator plugin isn't packaged for multilib - Resolves: rhbz#633487 - SSSD initgroups does not behave as expected- Resolves: rhbz#633406 - the krb5 locator plugin isn't packaged for multilib- Resolves: rhbz#629949 - sssd stops on upgrade- Resolves: rhbz#625122 - GNOME Lock Screen unocks without a password- Resolves: rhbz#621307 - Password changes are broken on LDAP- Resolves: rhbz#617623 - SSSD suffers from serious performance issues on - initgroups calls- Resolves: rhbz#607233 - SSSD users cannot log in through GDM - - Real issue was that long-running services - - do not reconnect if sssd is restarted- Resolves: rhbz#591715 - sssd should emit warnings if there are problems with - /etc/krb5.keytab file- Resolves: rhbz#606836 - libcollection needs an soname bump before RHEL 6 - final - Resolves: rhbz#608661 - SASL with OpenLDAP server fails - Resolves: rhbz#608688 - SSSD doesn't properly request RootDSE attributes- New upstream bugfix release 1.2.1 - Resolves: rhbz#601770 - SSSD in RHEL 6.0 should ship with zero open Coverity - bugs. - Resolves: rhbz#603041 - Remove unnecessary option krb5_changepw_principal - Resolves: rhbz#604704 - authconfig should provide error with no trace back - if disabling sssd when sssd is not enabled - Resolves: rhbz#591873 - Connecting to the network after an offline kerberos - auth logs continuous error messages to sssd_ldap.log - Resolves: rhbz#596295 - Authentication fails for user from the second domain - when the same user name is filtered out from the - first domain - Related: rhbz#598559 - Update translation files for SSSD before RHEL 6 - final- Resolves: rhbz#593696 - Empty list of simple_allow_users causes sssd service - to fail while restart - Resolves: rhbz#600352 - Wrapping the value for "ldap_access_filter" in - parentheses causes ldap_search_ext to fail - Resolves: rhbz#600468 - Segfault in krb5_child - Related: rhbz#601770 - SSSD in RHEL 6.0 should ship with zero open Coverity - bugs.- Resolves: rhbz#598670 - Ccache file of a user is removed too early - Resolves: rhbz#599057 - Incomplete comparison of a service name in - IPA access provider - Resolves: rhbz#598496 - Failure with IPA access provider - Resolves: rhbz#599027 - Makefile typo causes SSSD not to use the - kernel keyring- New stable upstream version 1.2.0 - Support ServiceGroups for FreeIPA v2 HBAC rules - Fix long-standing issue with auth_provider = proxy - Better logging for TLS issues in LDAP - Resolves: rhbz#584001 - Rebase sssd to 1.2 - Resolves: rhbz#584017 - Unconfiguring sssd leaves KDC locator file - Resolves: rhbz#587384 - authconfig fails if krb5_kpasswd in sssd.conf - Resolves: rhbz#587743 - Need to replicate pam_ldap's pam_filter in sssd.conf - Resolves: rhbz#590134 - sssd: auth_provider = proxy regression - Resolves: rhbz#591131 - Kerberos provider needs to rewrite kdcinfo file when - going online - Resolves: rhbz#591136 - Change SSSD ipa BE to handle new structure of the - HBAC rule- Improve DEBUG logs for STARTTLS failures- New LDAP access provider allows for filtering user access by LDAP attribute - Reduced default timeout for detecting offline status with LDAP - GSSAPI ticket lifetime made configurable - Better offline->online transition support in Kerberos- Release new upstream version 1.1.91 - Enhancements when using SSSD with FreeIPA v2 - Support for deferred kinit - Support for DNS SRV records for failover- Bump up release number to avoid library sub-packages version issues with previous releases.- New upstream release 1.1.1 - Fixed the IPA provider (which was segfaulting at start) - Fixed a bug in the SSSDConfig API causing some options to revert to - their defaults - This impacted the Authconfig UI - Ensure that SASL binds to LDAP auto-retry when interrupted by a signal- Release SSSD 1.1.0 final - Fix two potential segfaults - Fix memory leak in monitor - Better error message for unusable confdb- Release candidate for SSSD 1.1 - Add simple access provider - Create subpackages for libcollection, libini_config, libdhash and librefarray - Support IPv6 - Support LDAP referrals - Fix cache issues - Better feedback from PAM when offline- Rebuild against new libtevent- Fix licenses in sources and on RPMs- Fix regression on 64-bit platforms- Fixes link error on platforms that do not do implicit linking - Fixes double-free segfault in PAM - Fixes double-free error in async resolver - Fixes support for TCP-based DNS lookups in async resolver - Fixes memory alignment issues on ARM processors - Manpage fixes- Fixes a bug in the failover code that prevented the SSSD from detecting when it went back online - Fixes a bug causing long (sometimes multiple-minute) waits for NSS requests - Several segfault bugfixes- Fix CVE-2010-0014- Patch SSSDConfig API to address - https://bugzilla.redhat.com/show_bug.cgi?id=549482- New upstream stable release 1.0.0- New upstream bugfix release 0.99.1- New upstream release 0.99.0- Fix segfault in sssd_pam when cache_credentials was enabled - Update the sample configuration - Fix upgrade issues caused by data provider service removal- Fix upgrade issues from old (pre-0.5.0) releases of SSSD- New upstream release 0.7.0- Fix missing file permissions for sssd-clients- Add SSSDConfig API - Update polish translation for 0.6.0 - Fix long timeout on ldap operation - Make dp requests more robust- Ensure that the configuration upgrade script always writes the config file with 0600 permissions - Eliminate an infinite loop in group enumerations- New upstream release 0.6.0- New upstream release 0.5.0- Fix for CVE-2009-2410 - Native SSSD users with no password set could log in without a password. (Patch by Stephen Gallagher)- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- Fix a couple of segfaults that may happen on reload- add missing configure check that broke stopping the daemon - also fix default config to add a missing required option- latest upstream release. - also add a patch that fixes debugging output (potential segfault)- release out of the official 0.3.2 tarball- bugfix release 0.3.2 - includes previous release patches - change permissions of the /etc/sssd/sssd.conf to 0600- Add last minute bug fixes, found in testing the package- Version 0.3.1 - includes previous release patches- Try to fix build adding automake as an explicit BuildRequire - Add also a couple of last minute patches from upstream- Version 0.3.0 - Provides file based configuration and lots of improvements- Version 0.2.1- Version 0.2.0- package git snapshot- fixed items found during review - added initscript- added sss_client- Small cleanup and fixes in the spec file- Initial release (based on version 0.1.0 upstream code)  !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcacacacacacacacacacacacsdedededededededededededeesesesesesesesesesesesfrfrfrfrfrfrfrfrfrfrfrfrjajajajajajajajajajajanlptptukukukukukukukukukukukukuk1.13.3-60.el61.13.3-60.el6 sss_debuglevelsss_groupaddsss_groupdelsss_groupmodsss_groupshowsss_obfuscatesss_overridesss_seedsss_useraddsss_userdelsss_usermodsssd-tools-1.13.3COPYINGsss_rpcidmapd.5.gzsss_debuglevel.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsss_groupdel.8.gzsss_ssh_authorizedkeys.1.gzsss_ssh_knownhostsproxy.1.gzsss_debuglevel.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsss_ssh_knownhostsproxy.1.gzsss_debuglevel.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsss_ssh_authorizedkeys.1.gzsss_ssh_knownhostsproxy.1.gzsss_debuglevel.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsss_ssh_authorizedkeys.1.gzsss_ssh_knownhostsproxy.1.gzsss_debuglevel.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsss_debuglevel.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_override.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsss_groupmod.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_ssh_authorizedkeys.1.gzsss_ssh_knownhostsproxy.1.gzsss_rpcidmapd.5.gzsss_debuglevel.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gz/usr/sbin//usr/share/doc//usr/share/doc/sssd-tools-1.13.3//usr/share/man/ca/man5//usr/share/man/ca/man8//usr/share/man/cs/man8//usr/share/man/de/man1//usr/share/man/de/man8//usr/share/man/es/man1//usr/share/man/es/man8//usr/share/man/fr/man1//usr/share/man/fr/man8//usr/share/man/ja/man1//usr/share/man/ja/man8//usr/share/man/man8//usr/share/man/nl/man8//usr/share/man/pt/man8//usr/share/man/uk/man1//usr/share/man/uk/man5//usr/share/man/uk/man8/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector --param=ssp-buffer-size=4 -m64 -mtune=genericcpioxz2x86_64-redhat-linux-gnu?7zXZ !PH6] b2u y-iSqal7-l-D7F Nr?QC{Z\o+kjO2 yObq+{ܨFr+ "jr QTlmit hE$'A۹kVׅB7h x49 d^a%E1 ])^-R60B94yy' _LWVTbHǨo4z>Srp;{X (C=&(}W 8I2x4u K/%iHLf|Ȅޖ:ɐpޤ'l?;~4~܎S4i%B~eFME쐾bVSCؿ^Jg/Q,5Gt$ %Wų0y=HFS=C~J~T.[Sfa G5,~ E#Akle„ТA}.n&vlN&}%lۏ^MR^QHU='rLM%#]z䡳d_kT2d ک.aVc Uh-::q78`ZLB*hcy;3ryPPK^Mj09  zJs\94YĦ;<8Ai7>Uzo#3O݈L㯴*i!~3"2E\U!BC!`%d") 4Ty,d4bP0Z ˗IJZF9 TsPA֡fo$|]':y Kʛ4.#5N2'NΔ 6:7(Yp Y<ǘ^Lj?~ f#peoR8?p:b0M ͬɛ%=z}Ax_*{}fEe޷C?[4<Em.9O%Nj^i+/bx=O}alWha/grNBrNa37o7)T fn  bzT{XL1WkD&{qO{Kf+r;mᯙ@6򔡸i 0I2<E9m/N9E-KLͫz8:!@eC_BPϊWhu mV3FsQꀨ0xDӞHQ܋$|GQ?K *Ɨ Xgdv=a}_nmL$s+e^p6;O?)Bf[t~RX{CN$EcN&9{j;Rv*&ߕ) dx U 潒:;$P Q 5/? &+5˝}y}"=,#j1>6QOz$4Zq.Y y*쑐"mGZe75p~lg;ܓ]TXy}f$NWfk_~7CM0f2>t@7ڻ?:V22 iK4jTd '@;6]h"4HnWUuD":eksY1'pX)E7Dz:}~*7UcҵMR~04h ĤԙW}N #i)QbkL UTgNˤ]b[Mf :u]p )'g-U:trJvp|\/tlvu`\w4zb]4a'D'k+a|.4ؤJjd䵱x(4P"A:_T7w\E=:XH?0b}5Mr7i+I:|; K*tJ{%V1V=Hsh0 (\A]Iq2m%dD|o*r~7M#'#Al/e2RxH,e'U342j 4OD?v?7Gͧ˸]7CF!PU^q(G}s*Ύ8o QD .i}BA&֬,SR6a&wI6fG.v!ye0?j/  RHqiL.Y<}xWaz3|Î,A@H钑$ ۙ7JoUw7nI}Ih5ZG:H0bϭr6ۭK`#-,t ;rpdl`ӈ'c9;sJhЌvj=fZ~8}{ճw@Q嬞$Y}|]Hq_jUWE0xa |"}Y?X7s02zI\ks9GWRg[(үXl*ՉL9[3-9d][9ƥT~a118.fnj]~Qa,D]*껆C:sOޱѶGfZw#M| x/ƍt~%$uJ7儈#e8~Z]Ta${}v{*7.|fݺa6Lڳ=1DH4]I׶weNлó Б-zV1 ײ*2ՙi\t,4j Rk9k~[s9^'yoC}chshN4S@c$}]}߶>(hLۃ1Z*|6"Y3«+:tXC1# n#aF˓%>PTY ((L)?sڷ`<78'L? ؽMOd!a h68 D#~"qC\cڭo?tcՂ,I2TW~˶QB @qd$+.X &(3|Y<^(RWngwة }{R *w VRQA4$w1Xm7'ZDYLi /'>}2y[$/XÁY_:6e!̹lZ^v_2zEH!`G5vH1R8t`v 'bg)DYTrV,$g[{g^Lsxd -w4NSthv#{݁'p.$TbKbYc; v_XCnjgRN_7_]]Si#w]m-`K ^Ze㌢]ԴM-!Ħ׌I#A:qLpz$є+K VI?ҟ>IJkΰ)IrF9218xB?NBδ'4Έ+lݯpB'Ӓ1L='=p'z2qn\Op'wQ_@~`|QPi`!P(iV Et>ٔ_nAIߵCQpm EH.@{Xn}7y}TlD*epPoȱVc:TG.Xrbzx+&OSb BAv"˳܅-l'y)X  6S*$`#, P-fopinn1!1=jtltӡy>f|JJ'3wX?U "Una*j@LU8/'0@k#7&iB+cpˎgqxZ UR3ǔE|b 4,ZeշPkQhlj5S}9w k!}J}zqWB?ؽXULsjQ~c՞KyNkPẅs(,t O\o2(|Jkj~xCŤt ؗY!/ @O\T%;.KDQT{WR : %Ƽ﹝u5nk+ ,mju9N zt6>=MuH<=KWűpBŤC W;zA7D р0cB\ejt&W[]BHBqOܱ59\L 0،8MH{d pjNX:;y5n p!bz ͲnƿB܄d=f⢢#muT U#&#{, L1@K@ OL 4^Xz?#ڊ5-3m< ό/Hws0 BLt@ bIUL%Bع^&%\GI1CZx ^+JiTY*?:6wd!C:vO@) XVd6_d#Zyw8#G2J[7L=-n"Aܛh1$^gO3AEkB3ms]mÃwJk Ow6PGp˫y! plNZ=e@ٕd :>{6]%Xn:x}Ec.UPw\%/!7CnlF,-QcRA^ՇTӨ4*aR' A&gö6@ZLӂ=CRﳖ4%/!3?Igө+Ut"O-&C2y!0B?paNox$:Xςv]:L,bmxL2:w (>Dr7xL߫@W T !D0S%D_yRZQ'"&uһ{6TN;2{L[{Va l L3'+,J=;kw{ylpOB` Ri%wqnAs(3Q  @x_ȉ;A7fEl$0Ӱ:Iû T:^֟X7 @,6YhߤQȒ.)/+.s~p͇nu,wz(+q==Ϛ퐜׵O4=w./R)T8lE힍j mj5hC.3ˣ@ha}*<*][Y_ut8&md }P;J dlu_ߊjD 2}~-6<_ у`iqX_~(K"/Ǫ=U#ԨK 2 6WcE^1=.nw_kv! s{i3W ݥn p&|菱p\[3pDdG2ك#Bh텼.ȿ $jT6orRd9T (^_Pp%UP9Xxj# ٢up2hwBPgssZml U\TvnV-Ʉ`=- ogj,'r᜗lX„Y8ndEz+E?Mր Bon d,)Tq,W{ЫЈi G4g  Q 3ҥ;'⌢aqP"u 3$Ki3qE@y* o)Z"dac`wSiazX̙i^JӘD:}y&]X#l|4x?Cl`j<.ߛqkYA;)^K6\O6P/ua _-2b4UΰW@Q? öp4 Ewӻ0 Y2a?QX4 F+<}i;nC(L? Ϝe7w .}o]G~:6(ث*{GO3 m鵋8ͨҝɐ#`7`~]Jf Ǫo5o:dK[u'p5 ks޻yJFt.'?kYXwRXةC'CشqҰUb*1fϲL0qљ4A_aM_`5V ʔ42.zw1ΰMT_2OE:ظ 6fGEj#%Q%*]!T@koFERcݧcDVrj$`E=|jM s^򤷚`:5kK*T.I [Z8'0-bPJyZg)1|(^$bjN ;YdFCKhuJfaɐŸ7xoAWԯC2 in<5 ?L.#:yXVYԵ%y^+* Ntg"a;r&âDp=Ppl݈|agky:^SZ ^SIn#:TħjPcKl$ B(Р[hϙ?x+nD<OtGcI):Wr+\Ӵ?G¯r*IȃfJ:{0n ,3%+%Tٯ o~sd+% 53t98u{raƈ:ŏ6hP1{qǵR9Zuz)3ihi~ٓp+}=oً6kunf;Ӊf嬪n)aw;W NWVeJm;>ZA]P/+z/Ŧ/T@_j -RSnFH2|%)!X\۱F6k2{^\c:ِFG.̫ l ``2Z=)> Op GkV1Ұ6ծz8@d whwI.҃Dč G,4(Ld *Hp,Y{'uG,St$3}X7?Ot*T*>mh5XƑ ],t@bi=͠& T/i^"7y/Si T4+f{h7oA)GJ PјmCb?.6V6ҷ jͬ5%F41J%{^`ZV' ZfCH- {?Z /[cܿFmZ W+q1DkZ/\³3݊pr:d0NB8m(&\:@=*åDk56sCё-TSI] ޯ\Sw%SGR[gܴ#rdQl AkNɾ_iFDjiټuk<%G552NcW>tbiuT6!,ٲQܗLŝKzb?NE_SbjyO-cfu6YPnglv~bN8ȏvySg1mKUpM -f2MDu޲\zk}Mi0MV >iE W#m)ÆH,E:Ӷ p]E03:5#_6~ xIƍy1?>ߞMn> Iqjx 8]Qu5f6hg["a  cڸF_S3M'u-}:GM̀£/d8wjK]gL4KB9*UkSDZ۸Dh@'MXpRxM7U~ѻҠ}UA'm?Uwp(ɤ+pG>fhPtЭ)bKEBhE|b"_=@F>uʬGCG%X?‚gxd*w1*j$N+7vU?ZuJ Qhu̳ v.-V(|_#VqMY_w]xV464E0Mybσ1CmUi1ős OIϑxC4uTv䛮%3[Dt2$i_QLXTS0>V5Ld"c8OOȟ/)wQD.2Y{.Q } p_FA/Y:nHhJsK"1zuuTij[V(%yE)?K LSeujʖ;"p?hLm_׎g;| ZѴe`u_`7h}]rڿ&M']WX[3r3b# ~/t B.٬{TX v6-z;=/9cl$~Uo2p2&zYekSܧtHfrugeVaN8,F6 q:t4č.I9J  np93&[C9]Ml ZЦ1;rRՆ~I.`)Eߓ(h`m90 f)bUZb aR\ *!Ĥ0 l. ~yZhPbEPjߖŔX3-|}T Te=Ε}.Wo>Ij`f0zzsc}˞Z&yx ^0J.x9` d>B$׶X};sIP\ɪTjsn8eVvG5J[ LZwé_#6k( 2/ юԐq &E=6}bEHI8XzPGhշyXTG"׊+7)~a G X{Fb1hK`mr>G 8+6F djpϕVnUKῊHN]iGLT]CL+~bFCP#R}n),[ẛRJL ;4No8 w>U hs5Ĕ^|M-7zO(,/e]x#gLcd6A|yBBaU؅ V9Nʏ/^9Lnm~bӅ+!G (ɰ &مE+AӼE=¬2zY6YŸcH" SghϓܘS5J?wӍ pU5,gsYؙC>)3=Mޜ_~Cu\Ծ 1.Hc,!C-VG@ۏTy[zq? 'pOmZ8X~O\ML @It.yD7=}F.X.P؛dvƯM²Z]* _ Tgc1I,+]!kG-&ЦaYx ;r勇t{TN2"|6^ƙMkiOL>dW}+'D[n=_R{3l_tKĕ͋[J~;l$Yc/k >`=$}yT=kth 5='%t_Q![ xP"R< Φjp=FQfiyCE݆'P֏󍹁znW;Gv k|ishak"E<"grתU.q^M#rRK#&ѝevob-{޲1w{-qOnrޘA\mM S8b$Q]{];̪ZWI6su>idž"n@LR$5B-1)s<9RN{!> 8{3<ՉVڙwHPhqIH46JիkE>m 77ҩ:.TZr-FkaO5*o".ٶXʄBM?4Q =3n [;H-GwrIf*Zċ\XUp U[Ǧċfp%6ۧAEn_~9GaD O  k"|:]$wJ.H0e0KvfseVo$KX TIg3{HVP[=iftE&ݤo@(@#&a#wI gU\IN; 84Dt~;Q8 fMLFr/R%ů? i̤>w2F(RzI&s ,ZxbKX|;*di|#aSkâ/Ia#e#,dj8ܑQ`їy>ƒP'Kv-sQw,ymI'M)LˠX,4IxL[0@,=ɐY!&yibL`~$@Ѿˉ:QJJy~:!VhZS}J}1SGO9jMӣ6jd Cm{_8 Ka(u.1ۻ ,2&7.߱sT#4A:5 }?,-gR_cq|Y܉CU\@cfm0޻}E\ 4lnޤt A-.?!6s½Yc#.].ߠ^iߘ=#44ӊw{sZ_R Ĉdmȵ!uχxIKhF=w9lp&](H \y۽">27[w,-C;}R- - 6Y5Yq^,`|e_h ,9M>ߙ'8̴"I =8w{8PQlz'GJ5cXhn73 la99 l7k t1t&Hn[CVч5;tP+:hA&T3 <i5JU]sDN{\ 8WR zi}?Jl>2BImIȼX_Ey],aM'J5yDɧf &~}NYZDW7QZ&Cus"ZR=<ˤo$ː0cBI[j5~Lֈ%`-|w'ַ={A.?ڗOٴ 6NCC5}'v7 wiHGS^SQs_~i/wY7 NU z^ Vilй@76f tђ&P6eg*;.6+dN4ZFǺ >F0v doRŬ-0A~ֆ}gAmt^1[nVs2"R%_X;!Iݖ0M\ʸP,u`C 톎Z&p&Wqx]fQ<8]ȼ.I% q 7zdc UկKU;mnQ.",Bԣ_@od]X|E&>ep;P iCpZ 6& eMۤһUE]J"$%}n o#|a1ƅ@Aey.oh^#:ͥD5Ƨc֖󴔨Yֱn1M=piLDSSwpjZܬkbX(*os:bfF+;#\HY;,({-R$.LUbbDbsz#`_Jaw=X}!&@E _Z5Y` ֝n{~-SZG8ZQ:k&|hz,AQϓe61s|\wlV?r>lX3zcA_=q`8s>n_ Uu> 3؞Nz]V&^YAJ ԕM} 8p n˵f?W8c8La*>uOOͧU_X;D_q@7S:|Ih|QRCϷ4īGى2jH{/Ťb b~E\5Ja 1t6OI wE5M{TUq ͐xdrXZӋ?EL(.kCr^1>lBޠ<fnˡU.5\ݐmeࢮg+ҭN wM"Ȋ\1SL2^NHQ01'gZYğgVX^_VXftUZ$v<+4#Dz= KIjR:vӗF<{gAJFv"g*o bc8NHmoO ᰬ'W~ܷ 4D6 *GV<m[e,o{Jw`=4!GqVwIhͪ\/?[K abN*HSwH(nwRI;ԈzEb6 9܂Hx*0]3j ҒtIp]lN"" @.L[eRsr_/h $v !cufAEl},[- o02b2Lk5HqUErWcK5DücLf3%t[dPWuf('0]b Ѳ׽X.EMMi}[l̶^PѬAߨ)/!6ſKSYEԁbPٷ,0`M3P8Ų9q4JtoEޣgٹCiXc'Y#̕0ώ@LISn4YS.ZY  @qjوe|w }!XgmG3a늜bKȌkjS}{Pv~[֏8Lo9Pk"`6M!/ ށhw}t2Bv"XZ1%ݑ m%^wr@ ?I.2+ "m9tMrj]׀]=.? c dZw6JFY6*aQT|m2t0{gz(j7,YӇ؞3)ƛjE~NRnͼ%úҠf{:Ym@(9.3"GHG?V˛W堞7 r`EK{5Ps+~EG c`|'ѺȺu()$ nϸG> ]lN_7ydz.5rxj0Nlwz3C!WW{ʊOT <ȳIrg Ӑ.͍"q}Jěn 2Ǖtͦ U K";֘3ON#eDJT9tbmFCg61Le&O@^k )xv4I8V1 X/Bp}g\1ՠE܏/@HW8!WA,bsǢF趪 Uɶf~&%xYNa_$vU0~(8LBF`p.R}lD_Ln 39.h4B!5'+@QJ}[̣=~ܣe@6Sd^XKOqˏJ9]a _܃&/BjYn?tn(d`r C*_6)wY0&R 2mB}8t)ZeO'ʓG ,$%$ڌFWh?kwk.dBˇ[pA.4W")QzOԍ'~WF 59$1x'=̲LN5^eMWc:9 .-lʗO+Y TͿH=S*Zo ;]^cjz̎UBMH%/Yk_C'hHh$ErG xRkպp?ϵɔҶPqdO;d-JQ$tL<@96g\W`̍rL&av]oIAT?AFL7Rs:%PQ(\INO5s)[wi\ӜFoDPs@ yNug]$NYTFvPG!>sSR^t`)C^+^=9d2L4,*GH1 }w8|aCqQ8Dҵ@wE}Z$S߯6lñ9')Έ5&[Յ(IgXT6Z@0L2\hW[x7䘃8g}ִHgOԷnW۶HSx w.Ha:A"R?k5n3$sMЮdq>D `6HLupn"-/)9vUS}'4Q:؉Fdy.C0'sy(>PnN:O_4hc6޵M4ȹ|`O#3SRcX'5TL[%;ҳ,8m*`6n\CF#',qUMV7 ‚ uǗ-c2 kzH׊}eH{hկ26+6 kOEB̧.h6{-%ooQ//-r2'/SB^?ӊ3%JH~oOe\6tkE`]2,zGUUZbySʊ-צDŽˀMˎ:FUqZh^|eX3>%H!u„#q[R>Ek+a&Xpkm Na OhN?y1DҋLr:w Xb !!.}Y8S@tvT‡h8W9M>uj7"x UzE^ـPkͳuHM:xu4`VɖB7(Y,f`Nn=KH%F oߓ0,QWgu@@2Ȏ-aE~^%hH`˲Fsw4O%;ݩ3v[߽;rWɳkNZ䏗:ˣFKodhL'd}f_͖ $h%hTPs2I X$0뿓N,kvyK(${D<ԏg)J[Aͦ)86ބ,h" + ^ZGqUѦfd abt)k^t"ìw j8O])1Ë~y la6y*C3vЮ{.߳ =aKTrAUNgVr*\ѹT ݄@F3ٗf?`&*ܤ,D\7q辄?"ฝ $3)Qt=E@e `zq¤\mP' 4`ɧ?E (4ӖNEYN#yBFP(${.T]AT.idas+l..R2׹`8uysxuCBTcaK `4 Y$] ZS 󫖋w.)RE$w\%0 @mT(bl3PBPіdH~Gmb $Ϊp<TEͽevm}6R`MTb].W玒{zi(STr*hcU!HU{d߭vge8'o3ޡsMYZwav9sS//$K6qEj N)cXIyWKzR=.fm#m*=W5i>(e4*B"<Ƀ$1a?p]Wy&ea/] l]dUØH Z\⼛XӽDay:JH@ٙ*p6@V2M )/!Nw$zdhaHpYl_j,Y ^mĸ{'*c(}.Baw 5k.vѣ5^K]y\[۬Gd`+7OI* 4ħk6j1AKm@ Ţ0~BF/? GބEWEV=p<,V1jS~'!8站 е v>iKW 6hP3DCk+21Q}"E:ԋa3H-_@],(;@ >7BR c&~9=+;F0;3Iɠ\4U~EO|ڔ>^V $'31o!*e pQY4\ҽY8X@gC(.JxlQ7TAtl2?jW0 fD=ۏwlP+:glT[oQ& 7Ďs,YYHt<,hm?y9EV*u l,= 5sY:0j!uÁd M,FKbH $Tsg:P7^M$(Rf 8 !Q/Cf>UKװ*zD;VrF+֙\1S}H{ З6l.4B\͚l4rV[6d9/CW =97m ǘfvm9VtntN!% )?Ak` *;v'Ѫ$^c@ܐ;qlt[Foǖ{>4QGAKOow&$ yrHBf^!ԠRInlj!5o{q]]H7KNPX. ^['/k4Q!dc@;$\JW~(0s$Oъ>Dm ΁ωem ]–P| 8˷1 ^r`0{]XcV>{& _tsc< ͱa԰\0XC舄B!uӘ@6W[Tg[ G3۲O@}WG}xw̮j@:+s= srTGG]ӖGWeASjq/U\%5Q*#?v&+tJK{ܟ7)YNm6:e-xxàS "~GP*rs#u7oF H5V#|E7pr*{:cӜns $'^MMLNGvTx|S*҆}VYҎǹHKǁ^x9&` &NV.!O#Q15vl&9_I"*@FՒz!IZLOXK?}KWco#OuH}umoqz 5Q*k ج}HUI×Z>e5'"5M]wI􆱃yTwF#znlSZc; /`Љ-!`_xv -m Oԭ&W񹢅13]{n6( h+&濿UN On^ӎomk!U}`ftbӼZ(\h- l7t/I/f'Ho$Kp,ma.AR_6TU^񽚼k׺Kۤ-r*e`掕! UmE"ne篅^ܐ%hӰpM")H:f~|׼v|TIWĔf~L[zW#6Lf'DfL׉͵p4~fG2㉂mٜZJWLoEwqzKyr! c]L (_MP>@VA7"- ntfD6+I~uZ$u aZXIZlEkA'/pdqJ)j-AuV*9 ø2X4U!f˥0DQuOz!>:";05Xfel,m ^x(z=.1u*4pBteRvU|`CAg3|?[q=<@KGS+ ;uSXxfgęsHC 0p<T\fTNYb]| mW""xX|u0>\8Gn}8I-Qeud2Q4Ad¿+J>tڊvtm3Ԥ:o:|4Y0!(NX 1|?ķH c9`^KXj7mS;|?f*^_ڧĵS~[=4q8g?Lٔ%Nh 1u*-@N8R+//(8G+RI${暳gPhQ!0c9N)+%7iUO!5fƔQ:5o'D5>G4D.d[;j2 NZdi~ﵺl^YNWE\V-GCqh5TSʶاtv#Rk Biό1Mp20\9'6lj t>gqq2sbv$HAV[q'"D"!nOŨ$Fy5>y2x|~0˛@̿ǦՈaCN-wىWxw/Is_N)%BAA54>S+%"Fp}MrmR7J%݄{y9zN}S#U9."n&"{Y)[\_]S4jFǥ6Pmeژd,}  ߾%KskĂY0IRYXfOW8tA>NѤP@,R徚Nၒ[=UA!Ͼ1IksQW| \n;6Il#Gh/h;"Z\- ,xV ޜI8va{bnϫ)6{I[;}6ӎvL cAx϶q{6yo}KA.'g m6fJepC?Y% ~MݬZت-2a5R Q$cn+vqJ:a-+}!$SI+Kqqq-S̐5I_=lk24W߫q+xLN{`KB`KjI gi;IU5Y7EP^.~?,._E@ow1~/K'6DK䴣BǮEVVt0UNL]L3S !kAYhV8ʞQq; jDx5$uIMNl 5c<Av'eOr"ձXpR~-ڥHC濵_ 'V7آC89YZrm1?g6+bǠxyB>ϧ(nĝ(o*ÇI5m8Or^Kl>o|MC Kj6, hBhqĥtae% ʟ&S1VRJ7OF~ےѼf\{I0n=$p  ]=ģ(qN:+ΚgwXy50$7; IZNuǜ'OŒnBKՀ'iWu 26CU+@Kǐ#qhqqsq\,Vi67Ehk:X)\(U=k/%itetX(<*JkBŜĤߺ]7ГCZк,=뱥W/ BfU|т%t~)HB^Ө n.8boHtE0V!t\9c7+qy\U7_R۱k~b'S }f(onچpKY }ıgBh<$ GVt8=C=KZ_V)n:`wA"רҍ|竦r2nnI7|J`Y_ oIaoVy]IG$2y\ ' gyhEL֐!M}!F&ԕ-:t; &91*: :_idy/@R_?|"(E.40-͗ٴA ޡ[GpMA$ FI@Kkl7Zp,sIE Hn&nMRhO; xWKH,NsQoW;$5k)~}_2^ե*l#uBQR2Xf/0=&ᥧ vҵ{X5ddܚƻ |DiN9e@a Rp/>~B {q}c)L賩ZY2n`q8[$ZWtG%_+>s1V%9W׷\H g*eϱXjXZKf/Z)'U*X+rмXF4Tչ(g%s[w!tNJd62=B.\>[>* 4#dDZ҄i#<ZQPa\plXFSײGƚх ScL3}+}"MKFO%FUQfC4#\ ,lci~v;-_IgeI^։:r@P%ԭ8FW9"0) mz}~čw;5%^-A`+196.^ +к:OAOF7:4$M\B%ek ˆgW3n̆RvT&P,4mnVc`/<1uBx[kG]9lf^X1\縩Uz3D1` ~](aZs- ^/8C `iՓĂ[F{3bJ6RʦGp>GXy(JNHY^`ѵPn\72pe }AºĔٟPJG8|Ͳ-5^/ޱTCea=U? r^ԍa24O̭E 5 s-K2>JCj~ҪN[״Mnte6l%zmmZFݿRzh}gab [˅ёDFCM.'LR 6I5Y&y jPce6k?x@DU" i?Xdv=pJӅqbXEQ]+cpqXTv#)WDCanDU#)K}1FbUpj#s Y*b WNi LLR=NR!P!c#$Pt~o)qc)7ft3BQ)QR7#U=#d374/3di:(G1.T)qPAa2Lғ􂸸D(PZ=SK̸lW9:~4Ձ }sn! V~<^4'2d NpY Dcs&a*S0@C#l ǐ3ip8dBg?s& `<ҒB65V.*ˣbT>-b͐A{Tyʄv(K\ H֐f06!&K_'JtP'pt)# 7ctB c]JeNJ*3>[q$St63;?slZ# .51O:Em-Ktr8"Õ%񜉰 I)_QMZ|%gyrzDM v ~)-TwEkapxAVS~UU{sCQTs! xt9Ë#@wNf>JTFCT#8nΔEgps-{@+0IfV:ֱ"zqp}n[CvvgZhP)ln/'a}XƲ6_ $D}8SdN)pQE{e>8Iʼnfxcx0f(~GgxZlc2%y[.]͖>Ŀ :ƸtecVMqV8:]q8TQ3dK8UsN@:Ӓ9(G&;!$;}(;(z8F9,Q{QpJ`sPaT/±P@Ǐ@?R@h,ӎ=0,l (n2Fi{[i})<) ][GtFx)32`J7fxc>L XȘ?z|$“ BkmeN{|~!RsV/mKJe ")[=C;Nu)rDGQ(_TIC+otmrnBNZKQ/@y~dZ$_g嗢R֝ɴߺ\T"B $lh>بb Aףg9Vg51?Ng*-` LĮ}\Ruga'l+R琨qX)ۘ#^CۍPR&,goD-oAk'9DS &k3X>-Vɪk5 &L_&J5 BEud\`Yp{}59{夦{,լnv˧V"Ǿ\f)?Y1MPOd֧_qq^[_b׳i+`X|pHzB<1R / ^@fS9ȐpctE 6ޞvJܝ5uT ½5Il_廴 k4#;;[J'Zv s,6Vsv >*ރBYF-[TM_eB \y̽ !6gZ?>ꁦ5v`k7Dƞު=YBdUg"/]GDiy˲Ȧwfs|ћ[8xqK n4̡LF\ی3 M1$ at{8I9nCMq< ;B_CEsBb_:) ^詷QpmǪlY*ִ5!*HQi;+sɰsxF* ctNj,˶g\G N Zr*cCJm%IS?~ 5$oWd'sgg={~cʪFI.++. !) *aiBeJ^JoIY7ꐷIN~GU.NZJEg,q=LG3qX;Q]? @rkzQڣx5y=̿T/_- EEuhZ¡ٙn@`$6-VC 0pSK !GS0_o0X֕}4 o'GnLG]XW#D4ablaB$Cw&9ؖa.R .ZvN+Tv1]894Լd#<"ҁG1Gw₂ߝmGniVΦO{5V. ~sgNN(Kxǯn@ʺehHO}l_ǹ|3oq4Vt XMz:X%lCNXV+N<JA'oS9G@nj=".@Jn#VD|vtQ7to)cԶ8QH_3oWҁrZ A2\=.+ԛeM8Z5U&#xS6 wu6=&]EVC |E^f}2 1],M;꩝9<#9PRʝR&pjrA8rMQNoe.#VJ(>Қ:qe.H_Z==O@XFUn"=62&t |׾9J$џTpt%]Gz2Ev0ߤ2yXz[givhˁEWx~&olq$űD-RZgCNbrR̻1ר :-WV, RKLwg뙌p31!]ZOޞ񨈄(bz9ܯ8F?)'0(ѴYHfpDpbvUBO$?-s[,Qbؔ f>6 E$r Cl W]xs_RC.on)2?]eKm%L2tTSrxlWY#[I빵&?{; 6J?W4ofC[޺3R{WStӸvDSaJCFK_&Gi("vslA~E_Mh&=í wQޠ>2V#̶xΗtXSZz!]Ts̘y ";?oF(7A9F1 +69E4ҎźYL=Lޛ;>8f@xS- I4"t 3coRNgFW*6|k=l|c4k}Ƕh8Jp"RP(G\~e(o>qiqVe9hTB j[z2O,b% r=,C&2%ڀtW{"?A ?pȚ5 y MF) {5b@k~Lqz:,d*Fr69Ƃp=k ۺ,e/}\2HoɡIZ)d}wO3b=:,YKoM I꾫}wSB^zߎ^7H. \l鶭G]mEW89%?ٔ@,Bu0dŘJTL#P4yB)3O+dX_ j ͺλmV+w_c`Sl:#S\7:`%ɊR."-_GH(qx t$0xc%~yB+(MtbDN ^dy)tGO:\&bHjp$*/ Qavf"$ޱ⓮9P^cy Nkt3`0sCB<~J#lZ iEFOM5CGG s:D-#OҫqOI]"ܔL3|suPAXas?Z3zvă>ʨp6tlizº" d=:6dLI)(!u$^q?haRtI&sJP_},vOl'AHv׋ɐ"c)l\LS]hd /v| ᨅ|ݟ`ސ>y,y,*HK.EDF%nE"+4q2iҳe4$Zhur w%gAn %PY[z0"%]|j{ECHi*IyBWRx<QҝY-6 E4 7 FG*SVCcijIC6H\LW a 38*U8U6:tFKL9 S)A[yb%vrS`@R?-h.T\[  ?(6sjKze܂ڲe{R{ f=v>{>m2š%|`(fy2ĵ%U~IP:Vsݝ$Xt/S{1bTkZj[rQ/Yþ.Z z+).2U>xg`whrd5gK]rZxCKvaӻrJkVk``>N各ur 2 x_Byy%xHۿg-ho4"L1fd %2i\_;MUϝο$w7N;c0v{v*8 š& $iSl}z#] N;Q&<ȚtjoX'[Ega*1 (VbFFv#t*':~,kl`okFyɎ)H8ch 0E?EzyE椡 ٜbR_A"@^~4=3"vb.O:@YPfs1BnLxTV\KZH]:'l -[?Z]yض%RJQJx~>E~<Ţ[0̀p!&G̝IJ;BVjB19alE>ͱq+V2pE{ 1wH[Gh;kn3ZX_.X&aQQTJKG'a7Z[Kn}(¤kzGxi$LGxH{^a!dj)pnK P <h0+?'W{w _gbk+ doűc?:7 9(ÿNͻ~bq?Q!4IdV$]Yň K׹ĢCQ/;^ KTaN {k}UF.s 8*`ѵiW䑱U2< B:*C̦틀%*^%/A96WH[V/dZf)d4~Br5CO>) ô(PE#EPpU]>"nv3)oOrxG-t;-I{Z`*h?L몫'Ҟ?/\:aŠ  My.w.})PM @=ΙZlܥ΄N\ɔW`ܩ2͎eĕ(fB^jҽ%-*jNzExyX@G|0$I9ɺQ7@sHVz*ZLfPںJ4+,=(#S\y4)O/ePeH`+v=vGOT(g:A.ڲ:}W6@xQF0 &Tׁ戓/3X~p2WOgQV!4t~O-Հ=d!@:bi}|HF͘)WF*R+:c5h3<8JYp/OiV[K>l1Y`8rM;]-VP2.OSW^UtFLid@_d~xg, |/V9=._A!e 9kr []=ad.TA 5حD =rC~9-\M*?'v,ح!<z:]DP>b*:Q'{ Z*ecoNT%e"7:2->|OF؀tyi ՎV 9ח\#kY n&}Q| S_/s 1(Yv(S> I%>3:tJu|xV,7\s!'pZ& b6}™\Tp}i e߿?>ֺyכϠ_R=ɸ PR&F԰eZ Ƽ94BXSi]çZO4H(V*W$֥oZ=.]_|G`99NO9Q |;4"B%Ӣc+ Q!j.|>E-l#Nu~vGWCEXE{#h?s|uEJCxwqr>6J0ߘ8n){b) J%x1e !~z Adm@Dڜ!G3Lr(fCe->\H[h)gc@ LgkbڂێL":OnPT/ôzr ax^ (_pol<3݊`'YɴgLS@4 m&m߀^]Sªqz}׀5837#khpMc`B-)IQfjc-"GN\s{2)/X 'm߾;OއKIC;Q2p8LC8zs +XdFAks4Eǎn1ݙAFE%{ywߢ6A D*t,;D! Xx!(lԤPӝTXLF]YGYwx9)CܭE[3 x|F>j,o;tfD cvha?t9ÿI E[:TvXHoЧ&ÑʠA֥ڼ`CC^!kU * /EsN@4BG OK$ꜟS8F1`QbK.z 榿RaN6.gbAB2bᵅ%6^3!v}RjWֻLRsAS-\Pr2nɎj|^ a[.84]Go"2:(E/XIbWJ~{vGEd;G0wU w_g*|i`H'Ϝ #Z>1X5`9WB9fʂRp? S4sy:G#HH~':E{ƅ1 ݃ozޮbk,d6B1lCkKIĉ/"n\L+KCA@ˇ*zG?!ww2NJJ4RIdބ9V\__Z)p1nzMS줶u*\WR,bCS&/W̰M0+\qYNwCMzs'NكnD'/-(;>sb2vW3nu7HF-%:K s=8/$+d.@̃m2\Ԙ@yU vD^I Y~)pa$ VRsi~| 901l]wW5%_3abGDV8[Yzs~L{w*C:Ӆ?/KʄVwHn_v-r}Oՙ] ˑ j)'goJS_wYVނcԄɷ|7F4!J.t] +˴v,{OMNx)n7[P>@}oW\]Txmīۘ,Z7p)[l_ȴuGp#0e)@M2E^zUq< yҢUy*}ic괪c“p a{-eTJ"HCov~bfHۿG* h 28'~Q2W#dSEq[Jg_U.ym]c7^jeWmv%ʽ*O~ r.[D($5:AFj6]ɕfB,e|w;O#@qnVʜ?o3c2MH. ?5i!05/1&h- LPTJu,JW͋do֌46b k4@r @CFB.'8I5Chʝ9v+ n`c.K^ƧJi:"yN&;-e_mqy|T.=SFfuC,~t- WG_[YtytD1pkξm%/H'F"V gט\FV;>òWۊbk^S8دR IK}oBҴS4q> RCnf.*N57N,C ~nqY%&_]Ql,I]*ڕqX,vK5k${hx5@?.z6\C?՚W!Ǖ( q[Zy'\Sa{/7d$ 2!|x S#bcGuBB^m 3js,&|As 5IcgruDc8yYe%ːI|E'Rnj땞hp+( >fybt0r:jy$zL5䔂!WD,N'-a9r]> usØf VJ8gA$@tj|-<39ko˿J $ՔIsNy/3SFlzd%O Ybs\i-"D, qv[azo(oFOscU#A>D@f;YcRPƜ_+8@j Z,-WID̀}G~K<>}U\òM'0fY^!65V0t.PQ:'1_Rew4TsXahUto<wv$z.K]c4DYu XA%)tlf/2.TgDq|d˛]X=+gt?nϞ47az1J\eaqtӭsj7qM Ayb@BZ^lB(S-?;˃Ŭ0eD+<"HMf83.!ѽ Lw} ]WrHB)ɨk^i"6@#xQ.Ьi~C9BIrGP/1m]+^!zDY$-j=G)B͏f)ow {:orelnvϛra !% 'L^ءu%=qN#Bvi&e;N*(\nd_mN$yl5!StZ%"Iņqp=.VY]F A8/Nd/`c@lY|K 2 v3԰v&,<"`r 6%g]V¡!%H`::Ii'eYabB*aSﹳ,q^*:bg'H=&0J$9l+?濦%x'y;{Z+ջo~G=+KEj9)'t΢Kf&׹6`9"{mCЁw "-| z(W-ءܤ MzRI}5ԗ Si@Y+ $C4]O^8s{I`}}byZnӕF̭· R}Z#-N'+KZP`vly9 FoftK1J" }$/zM/^ ^"ۅWP:ϒ>T`6KEypxXI Ĝ 7!N*dqsp>Y!3<.:mqz{@ߊ=;d)BIRY k,Zݣ@JoԠhgCM;#V_zMla5R$7‚tF!S$"a޸gL_VR Ϊmou\Τ͌]Mju7PDQRvA|Y&rG2q)%޶-{XWiD~>$vx z(>eFBii~k5 h;~oڢOi{miHrgW`A rsu  !Y1a!ԠPIуf{Ά٤$tVE vРb"p d2U[ճ^fW'!n}Oh8}~ИmKׁK/wL4^LN\͟L3@"Pj{3xĢ}8φmʜ19DK{(V砕KUsT U'٬"Rsx^k^D_G#'JBxA)$^YT!ˏ<: qh*`Aq",EpU>|#pXé1+a4Zkbwz)t+|a#*MQ~06,EQp%\BPڦ0_]j(Yt3D?Ŕh"ޑ^*A*0dx?7%~LBݝt kP󣓿=ep>.! 5P u[!fi u3$0߀ yrl` <ɞV{)PZkap{[=pfk~S!ΉMv_ZsL] U+U*^"()h_T zԝp0a\D'P㋆%uJTb{ӿ-fXdB>ەΕ⸂O4'Ed4v+*^vѩO]s. ui_ 9.ǹ3.܆-i曊SUnßơ[κu/?)iw|"B@R"{h2: ǂ38@D]ϊ*i^i#kSۄ4r@oW%4.'=6ie4u-=<& ;Ƴti وB}Ϧ xq9&S>v&=B*]<ZݑT P^CL  ^3 OHeܣѴ6stp@-~+az)ϋM)**{Y?V аwΈ\-1 SAm>#7斨%N"4%;p.eH8V޳2fgcNxǩ`_΂d =U˃y$rLW sqzh a DIyq&nkrFa-,unYv)ezRg(6jH3۳z75y\4hͥddz=ebK1;-xxix Bu8qD)ILyRT iQCa X܋*7ގ|4 eTAuX-c]dѣP0!X#;gVLanbjG8<*0EisynV^K?^;.֫xI*PyAi礫x$,  _f<߁eO4 Io>W03C!}>q,:$_0 ?L3JMѨ p1eڞŵu9=g1ɱ 6I`!7M@K(+D*C", zU'd"?Pd-Aˆ` DE-,rA11DUq5&{.CbuMnaxJ+8[i<1߃ U)Pa<zuH\6D;W0:&qBgj#%VU{S2RC!at48ԧz1-C"2Ű~ pkQ`ab7l?AwXvd3y &H&{e2XsKC']+ҫ rv3 UJ |6C݂||15G,|ǾT|6l?<P*d,O"Z, ?aKf^\F,АL\@ a]`8llY .Bwa g2_&ߵ#gO ۱uNLnRc38Vwb.ԽR]1PߐOK6 r@~g}{eB =޳q1I2{MϻRZty?cJes'h]b eTr] SjN`-"Ef`jp*l}˺syf(6χ3W 1IpW3(e2 2!}]#VF$Vqi~ 3};8*ˈL8P0Α.'7~<?A'cT" ?RZ?2)m[.jUe%*KJ&PgFg#P~}t1J8,LBAkZ]w^ܦoƟwQHNH )BMԵVYr0sğ5ZFyT,R#,Ե7`3]$o* .:/+xgZ3pboR̾ +yٱ-T|b_"<8&2*~Ήf[Nv[!'jZ).? |!+7ـ1)NɇTO.Wt K"zS1tUd[#D1Jl!9l] ©}άw/A]ȁFK> Of!IxdD./KqZYECU kʈmb`ӮG'ؼ\^N,Btb236ldy̭ fd՗ŮqW(옐uNŋ0nUxCU= ={+N"l0`v2gK3}74<4O&k} g?G _OY}t<+_w L*,M*E&BP Ā;%WQaA!ҙ^Ay5-KOפl)瓌WI܉5I%՘υ*$ iw)OsS|`6.$96!g:)Xv1?}zbuBݥ4嚆@3)nQVpP@ Xm-.o"Qg!esѹ/~L \g45"l|^ W'=P1}W] a/GZ8q0M6{Qƿx2vOZ*3Rt0K/\j04* `!$%uNɘ5G5 7}ܘwuj#㧛ѫ[b5ߛ-g=)U67*ۮ- Y $HnpP ^ ` #kˁ‹TB͎)%w;$ZF_X d؈q4#_O呿40; `&{n rHG*<|gE:@̡<)_`!?OE׿ȟ R-'Y%v:Y{Rr_K[ >}/V, 8e$tO(yLn _wvڐ2PŤνezw`v&*^O:S}$lb5 1 MLR9n:UܭJ7~柫v73)0yZi+zdOv!T3mE!nUxR5ؽ)ϹB Uic+ 8<*bgOo zm<6{w+."?P~eHes/~`hH|GbVD* 9C#ĵrq?a͵~)1\򉤼|0 58P D9"ljx2V y4T[Fu0ک$cYb<6FQo [ׅMTQˮ ^B*}_|:@5 *+fQ9Ct]^ul>CpJu+ s3L";a&HԜ6?te6`¥!N\x.q&ZB|y Bo,(ؒg0fN~GJ}NTGi[d0¾ eP4פ{Bv_U׫Et Xu38"iŭ4O^޲>-4xUކ 7zduGSbj&9/lP~yrvuj8MFlFpt':á?1ɁfaJc=E1+ 1ӨilWI(덽Tc4v+\;a5[,s 1!ɫ Z!P˛zf,#ɱ"fSR2T''.~V,4\#?^6yI*,z-k6;Lg a:'ۦÉ> ZtDļ fR-jHA^n$jr)}mmb GYeDMpL`$Wc6LRӥ0x2zᙸf*i_z;ԟë Yp{&aV:@=2? qwG 93zkIOt _Y\(3rI[Ʒ,q͙락* /ρ (:ڡ/mgv@"mdxʿ4q54(˜Tj| A{խsw )(zBkKk^"Bt ڭyÄ& =  zާ.0Bdp?-[U63`8^/!u)ueaUm5ܱOb^f3,g[DˁX`.X=y惑eY!s: e岗ք #O7s3w}Z8f%-p~OFvacN4fcuU((ObZXCgbU٤}2X8vx#{1{|mHY釼ߐa~%*S_0iba/0ÞJc(<Qa|ҹtN7GT31TCTSjFVϨS o(2 (|c68{n/Q)Kq'VXJSnFTD}+7̢`G8=ٛ icBڱh:,'u5z'WVp7̱T_ 1qzG+_wPO!D9*m7=wvƐNBT$4uKH@Sc\6-7vF0^qZ1lVz7l حmX'~BDF&Ja؇Nxb ^cii[_ 9FA7TkQ\veD8{-k÷{\vN/&nBu A͑,H3$TN2FY'{Syъ]gpz/6p*x*{XXٕA>*>htjGcv4ƣ9]#K7`UB1ȟ'n!IWq5ھscجG(;P( ۇi.IAi>L`qi`6ha"mB#omcrU2N~2S>V|@^'+|:Zt*v.gMp84so3ܒHCj;# S 4nEPtqí.QxF/'LUvSDRHi ?J X^jW1, QI-jQni"❁(EqviҼSBUs05:'zaQ庶Ȫ͇J_cfvGI..F($9Q?>/<\T?v!Q#YYj*)7d~OXֽz h \5hzM #Dxgm?A 1;Ce:7Q\(ID{#Ĉ{mx.ا$t9kb:J+in 0$u0dE.4L9jeYFmV՟>Y˩)_P,~-` u1CƱL*4dUm)G)V( ty8_g2R"}sl2־^-B?f,Y='|T,*2G(zoǬ:V[iu`^fD4JTC;wR]F ب QmfaIoHh>?5oPH-7DYs*Wşϵz`oXPoВ E57/b㸋w=Xcq喍̷D !Etyr(l e~SIJJ?a֢i9+RPmJO+wo'֏x<[.=iQ)x^0*<>1@]|jqvRc'4FZ8Wu+7tkard-5`6STo f;:<܁L{;IhnR͇V.{ɖYJ߀LJaUUgjn֨~|Xo1pڤƾ %2 /XJϡX )J} { 8YqX=5'.^3P`J!j(8ɶQ0 nvX|]]Ɇ׍,D2"/ 9MuĤI3M3'5ŢjI"B _U* 76SUk?:!MtE6[2JUI1HbY0۴^JcZN(]`ZcT;]:aڜ$^DsM@,|RdbUΒ'TAj>r]`38d >x2)% A7X!ڸ=́JLkٕG !fF L.9ra(|qJ<Џx ƙ;}VŝU I-V[g7--8U,w${eErU\z{EpLD]Yg*r_ToB1ӏEMy%:ܩ1chIg>r?%~1qIaCcJs&};'LkPbM3{"xy'j1~sB"n<ڡ][~%Rk馠un1>l{uT=5=tp/1"//0&# Tß!# ̮ q SҼ2JK11̹ nHw,4ͥSbq .j_؁cgL#ĥoaHVVh&tQdܐO;hּ$ÎYxdȨ}BP<0DJv^sMEH^! LdF =j |"(kBVY:aΞoiw{W -^{Jd, dto-pȕRL3r̮#o3o[m^U%9#.My+,MQpW۫t^ߖ  -I#sKeW|TW [/F}y%C4Z3Qj#4-`C){cE 8昚K*ƥdn4v"wς0tg}f~iLu\K !%n"/tf+QfgEf= sICUSEkX*yh5IeREsdx|F#;Vu>  ifJ́p#1uuۂ'ZԏYh^1+#s|21}Pp= vm:p $mۜy UxT%! >Cj/S^l*o] pOu4*wV6WNxiP o#3$<"⍨/ANsh.Ac ,2Ȃڴ9w`%"ú*)Om>2Q^..ӿD5]o ҉tMi:G95%j'0(%+{9s52B4o\hv~|)9;&]Mg~TF' kOzX`kxë x?\]%Xr];!Y} _UŏC%q)mI~)~qLMGUv˅'hn"o7DU Zl@jlpqɲsķF{lkjX9V؂@5pz:g/œ"Eo瀑wɷ^KY:xܥ2ϾZME.]< *v %H%#+M߶A+xe%78 |XQ5 '7DLA bH;+}]u;(z<LD,u71V:Q |V@MU&oyWj8K0 aNm K'c[Xqf1DtF.< Ëʹe V5RPnJC۶j>1)Ro9}SSc`4D+Y bHU/U^TՊI5gJ7r("*nr}[\v_ۅfTdv=UۃARFNUltjzvP\4#s36 mQ6abRovS˵BQD0Zl|?i(Qѝ{'(\]YSy:9 f0֡:(j/DypWdV)yoaܔi~ VJ 6h rd|ɜvk$fE"֢SfCDlE0!J!1]Qi;V.=9tj:љDqS:.𛹽V#0eaPܧ'dMKϑ Y{>\[ЈW] WVg%f?J1\jhଧ+g@HVJ}mlz]{qWUm|\-(C%4MayC\w# UPm^ 0&7 n7g{c'g,??)V(YO[b qV#F6oo76`& :+d%p|h1s A-%1-_(6QCבiMJƒW =M7/K9.,)q-R~ $i4Skao~s yRkE\i/DĄ#| !v 3l$F*(crLT2ڰevg T1g2&ᆗ6 Fo?&2; rMN]d=o і9fiGVWvsRC ?׈wn& E+'vq}nic aSU V#_0rx?Uv{[Ywm< L`i?v#Kzl>w,&LWD_0\FLø ̔2,?Z1[oL fB)-FQ1[ ;-epI[GUZ on[pXΤ;NQ@v +h%u:|6>,h Vs$~vEgBK8Qg_r'nxF0W踵k`d#1*p_|I5Iχ0c/niM9ݰV-+$x@-W͌enZ@CD6 P~Fv:8XJEQ;jsmBGu!؈G5U/I/MLp-)dkG0\j#bD'%# x SO:V`%g?<"=kt__$c(i/%Z|{7phn&siZX wufE9w_hWJJ%N;( Ǣ($_a[,5ĜLl̬ Ӌ^ b(}oȜ8:VLdc e$4Zv|CEr0ҿt#So?C%d>YF&'6}ٯ y蝗N7=" u%#OKSqNI)o*)jaFwN>}!؂pf_o;ڑ@\m%y fSg\m3}v6UX67I)}pY75E&{ׂ̟ܩ]yi6? 2/OMQ{S S&*n/`oDZLq˜\$+J&#uPXk#hG&+svT6ۭ4:4798fub/W3b_F{63IR4W/]oD tu 8,?4MhV([ a6yEC P{3(ڋڴpw{k`KzW:´#UG/W-h8vlSY>?d5{r~I 4,W2KoˈC^T|6@RĪ2K(hQTyaUDߓ)+K )Z!\sc:s 3qΐsJBV@esIS, jpMXPm:DYBGFl>|11O{Il-4|&E$_ ;"^wX{k l|aoꈜFe}≗]wT>e /}$Vɂ-$wʩS>.ȘBo#Kfnq8E3Fp1bZ;l}!Y5`V+)=77od">4ʙ*HFLp5_h$xݔ,H;rcO'ARqGw{m|o(̱SA4$J9d鰼2ctᢏr̠w (ҡiDxc ?Y)%O@;,x@tP|/n_O'j9vKӫT9ա9 x(=06<]KM$BGd3}so4K 6zYKEn~8-H*p1$^Vi^F[q?M^ n5sT5g <M_rhEAmudʏHirDzwQe^jL;B7>3?O shz05Ӊ#:FE b4X<"*wr: LjXT ډO.#XmrkK(PbsP+<{ N>%YȶKwφcz@^ý>,pK\o)h',9>m]ˑA)JڀkNz[=TMSbxVj_@v9̵KVMṮBή謖j~T>Jc?LJMK(hna[MI}x Kk3Y0&jMӥ@{S%aqՌ rX&~@:JW]+QzaviW2yy zFaҫ9*#.:!(rpшf-648u.ۿcH'?:6vu"龶7F>mX2&3{ J>ڀ 蔟z@(1 g2qk-: "q( &Mr>K0#Zo +Nf߲/._#}T#dӽ."[ ST"VOg]KtYmNcqvG>gNk_nD&#/SevB5R+%ڳ0r]ӷa%@D8Jz1TZkYm<=ge)m,[Z'G`8?Ǻ|KgXͅrG(qm-zr]!L*L<@:0b|HAR󷤳Wه ;kA8-]ڢǣ~?>Zش,tfc"W=~R?qCdApS ~7"Wa*v 3w꼉nq#{Tt3Q-u"^Yj"b*!ǪXle0NLĄlQˆhpbHdCe-򡃞$da;ʦ lxNlB*0{6e1w=f_:`Iz-.aFrw[+3i"ү3LNc^P`ޚ9n>]{pJ& F.Z!L2Q.P*NnԅY)8Xc%kSknPV慓֝Wy`UO|ML]lũP P:y0!'$K Lq1"MomwQe,:Y_ȣ;#vƗ+Cxu~"&_Q{ϡ.X[Ai]UJ@iH BڍpWBGc *b}e[WaenDk~$.Z%ڍvK x_;J>)d0N;c5_7Fςi}օY#ZşZ} ',TƊ_ŚMUAQBBh.I|O>cc=2 +=iw@9+Pl*rN !,TȚsab@x 꺡0`5E@l(Z[wvULH? ey)KRiRnU1S޷a_NeaQC$򓌐懘n :iD@n=uhLkVٛZH 1y2Ъ4! Dqß.} Hb.-| < 14 \h 6cTʩasO[y'vho_5`٠ /@pFՊ4;Ȟi=Xл elsȃg0+S7Xt_)Ò)6-'.?!ZG4&,ytQ^9&k? !_ n.C<5PS{oTw4nLQ& 7/ Np^wqQS|2ӨS4[GR54MMjx(PSk)tV0S37V/8))NxlK⤓{UFʐ rJm}1~iB ~qiA9fc26S{5A>R{8
    J7D(+}\ɰ}M/+oQ$ |fN1UrDȶ,>Zv"U *ׅgf.$w9e:f5teht^c9z;nKF?Y jSLA[7;)`q457!Qs-*(emqfVÉDc't@D aP5 ؄؎SFg.Bk>G/ s}x3 wҵs@W>KU^\~[h1v!lgYTsb9>&" ocV//̦,/;xfd?6jfLq$1'f\KLžyB6 fu7}0s=/Yp4q(eGd%sB-q/KSC.qեKpF/81ljm" Ie5Ck>|d )znJٔ'$A-`2mk1{-]ý;"CP9_<o6")0v%w>Ɯ>MnkKCoT]v0h'(pH5sB$ o{/QǮSHᙬٚhnLP*=0z+;1M&c495$AP__|F $N7n/l+Xۓb5!4n n c8͊H> F \HU0P$bgPoٶ@QxtZ!D}* 9A)X"(ĮT JSsב*- \0I@޷igV)ejb33~p68;Z*7u2>f"ɤvV3 ?{Y7#;I4CMp Ls5'$/]ֻhYnF 468Z2̋pW(*/1_lB=d5 yҜ{ҋrK`JӲ~lL2f@ d{)}sj7Cu&my699Tڿc"j*.Aif5R2yp$5FT=UIs)3/IWbdtFdW %Uu2Fvi(_aͦGʽ,V߸#yR,$=f^=aQwS(wZY2)~p9!2=mS ל 9X#eFm*T!N=*`oJ;•0ɫ  d{i𽍊,DZ+z-&<WE% 5@ l4wRc[D*n,(5<:- %P<߳ػC }d]MNرQCeZ ňhاc\KΗhd&c-[ę 1d4?fOB9K !@{v*߸Sȸvzl>YR܎tHg^bb9NZ$աNk.Ū]U<\C(MB.=!sm9,}7pO=]p;q˼@rG(}Yec~x>~5r_hrW: L(r ֠_~<ѤRnpNesȀ:3  nlLC~L=5QE 7f rm 7&}7#Ȓ+F`j<:mQfΊx\ercx"x0sKm3y7&!*g)\~1k@MxhA~)*ג=i[uMn+?f獃Ģ}}kS5c5\خ-N/йlCbAADC@SwtÅL)&]$I:R6Tr6 aA:zpG nw† H~oK--r8RA.r8ZNy;*ZTV7* ߆`_߄t| |+f3 *D)$f; z782Rؚc9\ K%{cK)-&_`Dk{NhsB T^t1^WH:,&GzvE{Lݺu >IHʥ"R,aԚ2w>qPe0J(y p#ME^L! D1|þRX=n$i7&]e%&_tyA㓏b:XjhˎA٩N2GP<I2p.~06'F90p]\%N*3ү@H }iM;ri&RsERpK9f:)= -lCޕ%`XM1r~75%s[,'bm[.BX ÃyǐY5NgE#;^#)dQ3w]oKn3hZ;_-Z#dCT:5á#~&վPy1MlpǼ* (yue e2*tps&U~$k RoV㽔r=7M1t|J&ƥ*AZoaͩ08O; BN+ >檎SmfB0L Ksp7d(2k[Wy~{׀ɧe=%KH,, Ga 3T2_޲k371 'ZMw QAL]32WlO$_9I 06b>~=B,v7e˚ͻxn/ќ78 2yw B C-%"]0w+$ˏv O{otkv*}U[kB8=4pAxZvGK Nb:w/ [E "LCtw,x45?$6jk6#%uoW Cyu<5"\om. g JŊ{8vsF@y0*фQj9bxtB˺Ɵ+%-DaDcmH_ bQR 03/6[C;Db,/,&|=^JYvwÈGjC]'#BX2IBKUu/9y T!Wr4'MjaqU{FUyY^zJp7y@$)݌<"^ q_.;MkwnaFܗy Zz %ZU GpdQQ0mHK5Ȁ[/u˿G5&ǖ.gW w788[ݽۏG\E`#) M ~'EYtPXW}ztqgP3p4j k4|Y=Ŧ'=;k~EylϠ)-4!v0/u1<0}%ď_Tj<"Unvcgu3iE0C/j 3zB[*?VX@ˣU/ 3`Hh6鳻vA6lڹqѦaݒsKcwlofGӊJG-C=],}ʹBB^af\.2]_&1l2{6}(!]' QXS~F*G M$]?@D˼TbCb?Gi>6iXoƵZWv$Kd%-oلocmLS $ӞIpev} c5oQ\F+N_g3 n |r R.})O;,?L ޴xFaqٹ FD㮫e=&I>\e¦a߀H;C)!8i6Y,.(c63:.yXQʒxx?0L nMylAfXOxX7FK)(ҴhR378@j?.%ϝ5XćDq)Br駞ud8G7P3Y@5W ;̷߾?,u_A۳@fŴ( &C{n X-TB y{ɶ=(,!+MϮ>}HOJd;3VvGpf(;BwSLX116%?$u3,/fm%3aXxhn6f ;Yv%.hdmRl؆◌6͞`w|M#^ ~)KC-R~.XNJ p/Xc]$.m }z{`) 8Zo|&@|þ觶ںcOL 9ʊMԋŞG}WQ-;̭ᰝU'ޞ^BwFxUw 7DGޓMcϏ>xpx'[kf%Y ׶u[hY`^iUZFL":I|OEl)L`.1l | m*_R u ֯4X,.k ;gME1)Pga-E W "a]8 O˞}=$:;˟g'"޼sis^ا:JI4|f_fyNB%r]_UU̲#%TgB& O/8fHΧߥݭGf 'So (O+u!G+D ^J.*XFSz!^vRߴOqv̦ˬ;>0vBV8dRk2cGHL3B\GCv%ԖEFdIŃ'^U5Ag>)?0Y̪U*nfm7gGsj56wޯI'H " ]h. %Z*zXߑX]2e,;e dhe^LDqHrHˡߤ`ʐ?otUSƓcY~^77+R,RPȿޤ#nX]rQ]=0! K̐`![x 9fzX@Xs`',_a@]Xgpп ,S[6c#rX Ryz<y-# %^2)%=*&qN0 :okj]NBCϙ? NR@ } d棎8 l ]-,.knS+71h3&:/3}"XP=x[Z+le'uY&>= 3?+8h+n(Ba;D+m9Pqo;C[pҴ݉i'Lfz3\ k~c18E bFhjo'+}jT6\2, `׻(ށ)3)$k`||̧_fH2~ĥK$x392TJߊp~FN8Tmgb!s蔝5pBc '`H^b] .sPzQ 甥pv;',a?" $E|ɵR)-HV.v]so)Sz^~1W-QU-2a2B8q@;A?hxZrlv~)̀[[%鐴(C_D,I5 Lq}pb~2C`WjSV~O7& ÜJ!s/_vK;qP`d^,Ӫ,SL(;Ԕ+0fLN:,Z4Q 5Pr=W|"yNWB{JE:'AR.;LČVq\~RNj>D3%;tg=2 16fnl*dJ1X[v.j!49lZġZml?xu*j 8Vv( 9س@fݥi-IC,E eyawD\D>mS=ZeYZ V,r _ /tsW2/P$ 8Q`%*O&06.G褠0SG%(˜QzR^=8P?Ec 6' ~TiHuqy,ױ jb;JD+lO0n~ZNJi"6#$z_ u݉`8m/{T?-~R$:X K)\!krBm0nVLq3K,GKĩ#TWK".'/0g3|qC*v']. $&tunu,C!|VVX:WRO|&#1قt-= +2uCX*h]]ֈ.ݟF>SBK* ,a.ٗ!\' d"ۮ?m.2~ҋϙ> r x'K`fV!?mڲv|<|gk_^8Alv U}NC(~= TK(hMh'jBZ.l++o}$,3z᜶͒je$܅!TE긺Չ\^K0 4moȄ}}{]sMӀ Vs f橶 K]K ?8N dX8kvJIZI)uFk*㴑 y$ߌvAl֘Q*_4 s%)3&A>?V:'g΄g\|. 4s(?&܎e1VA![BQ ǻJŲC'> <š/摛 xgWd=E4#W XM~Y Q< Ђ6-N 7wǰ4 ٲ4H)gjdԇb^ F3Hxm:JUqLKRF-ȅX 458S|fqH6қ IӨ0̞,ȍf ELju09:BzSz5S_g '~(=j0' wj˘CoE{R/'ˎpJR<5ƒr<^%f^QVrJCtJm5eti0SS+T( \~\1SJ]nkZ;EʑLJg9?3NIbge1W$u%UqⒹqUD1""U٫lͫRvWMzUlFx߆;s~S0r EGv]J\jo}NvrԵ}ݞ@vd_ 2  يLPoNa9XI!8].k5ycdCHv9wW=+j*^~Jɤ{US00Nh-Wou=js09h39={aUoySWPuPB5w)9"n ,?|ڝCp䛕3a[XP,f Sgޛ9'MeO*ocȓh#dTeno6b_ ob:E{\clB@uގ33+&!r\$vXF, {Nv/e=]V0yFK2ku3xɗ)H( Wt„rG nIΠUMJ '$H~H!y OJ$B{zM3M&*fI Ա]Dʿ>cT{X2Kx0  G/ JAUev}lI]NXrcp ֕xOfRJd8y w<4[L[#B$`1W{ ۤTwhAXx,^s9$rM:i{_SiU!"3\o'>N`z=yҘ+_T0r~ds/`tx0.A `Y iY9U}XުsmbbK[Arl"? ,˟iM@Q [lĉt~ ['WLUnM׵W_؄hyǚG:ܼvyW8/%e\ݰWLfHpG\>V4>2}OA ߘ7 APù=k FbK!'LrŖSas 8Ae%^bwf:xWcd~ŗa9m4RĕխDv:-ά8`Pa,rĬ` ٯ;I(y1BoFLG!o!Gy3T;BW#-#Ըo@cȺ˝* E%&j@sáH:?ܪzW=|M i#jxH nx2|I\v.w_WZub͆-/&Lk7C;Y40t^7KgsynVD!7f)Q2^mvlnXz7s%8KoVvLu_c#HMCukǮ$`x=!voEl^ƨbxeyiv!h aDlaŸ6QyXv,|ir^<ݙΣ&9o*/y7tX=$nFjARDeJݱ1VT}luX*f!.T6?hÊ,))K5{s&rBN9PNmVk7ʻpG!^0|;ZS f=Gp$6r^1gZ;l@ӝJjZI8v& VxE|x?$OBsR-+Ұ _{vHSٙF +\dkᝠP&nl[pxOUsqdJj.30ip]jgH!~$ 5HQN茧YF2-Ck3:ћ@8c2ژcY1AibW II"D]PoceϵяbX۰s&GԵuNMޕ9m,E%Nl.k<_﫤&sw?yJ%uh{q<^w4_<+/8B5 =7.s]$\aHԔԏ7|VvLں6 52|^Z40ToҰRlaEc.ݧ^6OotilJ.ݩk ry>2wKM;9c&_r iDeCκbw2LvMB輼݌]?ZtAElౄi^YҰIlL7L6+WFrNUQMa$qr}$?v5~;rnvVfr|j\wm -yD 2CcALz$Ӭl'2ۺ]T轮# U1ܚM`A*:Շr< f>06YA0m80퇼42+_S]tu{2ZqQg,~'8O B',#!w/rMંhzkGtȩE#mr7ߪ uP,O , M7ڶw1o;6ս?S:RcѠ6HbMy0{U}ૹBp5{䢨 D-`Ԝ)ӈ!*Ml]nF%ڜ|{êrLum&])Ok? 6f@m9 9]YQHo80'J6K`#KC }%J/tVb8vq ׏$l 힒z3 _5)ڽ-V~.O#PrzQ}с-Q n;$) F>RZG,3I| +aRnctu0_ǺnPWZ^ph̚zfS=QvL)V}AXh-Ttel#{CAD. )stb\sk%6 Z̢,@J@y4G+e{:oxf ou>灕WB|k@6hnﳟc ,e|4Wٶ:Vfo#=;(̢ 紉#Mlijt b!@m1 ItQ6+i0?FHD]vwmo ߹r!Ŗ4 N ݪ–: L$14<~Qn#.S_[11 7mrj ۑ+"MDcgv0Tņ2ZQ !2?;vO\PetkɈc4(e=UT$N4bxx4)sToRk s8C2oG{ Bi l=ĩq97-`_w%󨯅r9Ge Uehh𲩅\(@%ad\Iݶ$"k_hIem8f7Fku0d} +/w%ͭjZi"";07+䍋EVS~cs8SH#ɽľ_HV|Pt`Ywа5WYf&b,W} 8['C囃t^݀Y`~_-tR}+F "VlO}9Nt0R"+=?ِBAAd3D9sFaS4VƸiͧMP;?d[LK[h\_ 29}Ivp hpclڠfoeU3U6Ul cKZ=*!`ĶtK BF(ϑ A~8J&l YwDl=;b͜?;#AQzݦ⚀GoMVݻy\Fy\WRjjHMuVYgqN uܒS3fO#xAO6;V+-aꦓ 9iP%W i -">MVwߙ_T 9v4^#EZ䔏l|}aRr+!9ԊiBS ZS}x1p`)(hEӝx aWU#UI"45Q ʹ'3&meo4-'O#ӂ}^% kv=*FoD/BH;_oHZ9s@? Zg0\uWMnVC"8iomڀ` RMQ )mE|&v!+ը|$Ebת"ѮZHqg"ۙ17~`qX &5lҌ:.хQAz`pk+J,lOq;͇*I=UEɞ;ਅ+Dk a5Iw^lҹY-<Ӏ)/?UhaHJ_iioh f7ZmV{_|P~ޟy%y{>j5P \7LZv=TXmbO~K. cl}#UkYW XQC#Ej\/]q[c>O;!qьWthMJVJ+hш/,Wؠ,ߘ!)fG '~-EJ~`X@eSBt'G|sxZDA&Γ>.ƣ\uL+-97w1PdIcQ gl3"iT@.b?Zz+W2oDH>yfR;"gh~jRK~HQTK +pǫj9N~˦DbJꀘ=%}]p%JPT},4>NroA%$@cprɠfk Պw)]n$?~*~B: *0R$ܤ13NO`]$9bGoDy}Z׶6#51炔.RR^eG!myɏT).|_ɐvX Jɒ{/~1PW{v돪&4K:kg(dŭfMGnmjK=BUsy8)cE4Ci^`CTf`txe_ޮ'3DS&~Vs kdx僊5V sV3C~s}ܳ&d~Ґȶjj-zdeKB,֥FԶd);(2|vϋRA~.mr$ؐr"oź5d{'5;Ţ a|){!=2+qo|ou&?+A,im؊b:QDzL;}RچK61) ݬgЎ\"K+*:6FYXK/itCYQ D|K_.wv]I~yDw*^.W2}˾)5EtoIwj|!3c^ќyd Cތ]3}YQv)n*w ( z&>yᯢMOjAl r&Ri'p Z% H= ?k!&ؘyHv3pxhqYh-Jpw< qBOׁ:,[0K2Rw\=G40Xr2bzDBp=G^Ke 1p<ƉBz;ւЈqh ;Dk\]=Mb\~@YCc1:HvOb/oSI ]b򼷮wWUt?9fW+x`q[Qm>bO)o krٰw8}B0`r._sˢFB/ȬOE,D Wn..u.2 ۲άk2t[ˢVr6=e̯&o񙦤{>k¿5NE,N d?@DJ,{UZ(qUsKcV(ͶcV wXn}L_݁wtrp&CɅq ̈ ZcΝ@d-CO~ xkRDPء[z~ :B/~ͭn![:3.&خXL:Bjŗ*7BQEi,Ķ`hq.|Ԃ7Ae!|㪇Wj .X5Q#7}֤?4.WC. -0dY~UqD0 gO,kCc&96Qv8o3Qr.lJ,_;pN7#D/j+Juy ˸BE?0|[l@uD߱+`^Vq ZPI#KqE`T.Yo:KLO=6`"c}yƇ dIJ;8$ _=A3XTy#_Q^~xg¦zyz;IOnA+Q|y )Z5""?7\*p$ a[e5Fo%/f| 6G*#YK9D5K:$?#s!YOC!)DnwaV{<#~GPfX4m DOe%Lrx:S)(3Z( j'ХC>+;,|P'p]c%IfQ0J<+7sQDd-7;l:13UEC6Wxxk-VɃ44͜w|BSvP!p]û?f/xFۑ]IbDY<=p/ݔ0Qb7ğN t#$#FciQM 8aʽo9WWѕ+Grm@Ğl7NS]52ϒu:<.NEeg ۣdrpDAviCH qVK 6w: T@YXt~@ؔ݀PËCeiݮ<&67_qΙeVZ=R9r5uk H`̐ת!}ތ囿9)sɼ+6ዾOlz1l?,j4qݶ0A\[Hq K. (4'Y&_a괔|q+d3v%~s*za^'x~yBƹ{=(P.R\QIgYS$]g-`H5`myy'r}Wb?CS=@ ;'z,>S"X a+=@oY0%hiG2$M"ί   {WԂDX8^&-GÚjxiAŸrgC#WEMV۰P<Vwm;o=(9o@a)EVEv`E3Q)$*`yp ϫl,kSp suՀ^]sa+lٸJ?P`إm8D̀Qf+1ΚA]!aoQmUs*WZ&XN%;|/L}؉FܝI'|1)z5F 8vG N؅czHdXvU(4 uyոe+r7X@XZtJwtc`rGH o|8j6/#g9[v1"N# Lg(T` z'(ւUnl⟺x; U[0u_>_Z{k>uAG{Ј+5 VIC>> RSQZ18H3_s0+bc篔rz1~;#|MlHT7aWxFiFQL7IVFDʜ3WoU!wN$j g>!w0j2]u/֧\}-`jY2Ev+!L0"C v:,e+S(OpFktbzY^XW#*ҽ,N}9nB=M_-iiʾv>jxeJIهnc3qܗO3!ol*i̢,Nв\mJ4c7;YdL p]xg$dm*&3@{S"r#uf@5"l(ʗr ]gJwg75INSs$f; }>(Sy_q-tIpTL_72ܦ# D@C=S/*؀h;{;[{酫tP =2{_HLWx>4ɍv5^dhۅ$6$w.@OpWV!U$k)j`!nƋ%T-[T 0.rR4dE5ذC,)R uԵm]X3biBjSI^l͏/xbO=vռ7᎟>qюqHqFa^0 Bx|Rc*ˬIݛ\|[@QpU8MP Z-Mtw3:Unn8ucќ6)R533:_pۇbZf(wD5{Zt͖nxiz9u)R78L;MY׀HeA{yi9VЩX kz/H4LL挲(P*7PiEv+:!4 ( paj—kyw n7 ]?h#wQY{t_]&%| FO?kւЉOQ^$죢pe;[y(AI|Y(5jj /&Pj@nms}"}["րZmnV%!4N.A=z )r(A]ə4Çz-PDjoY/d:r[W†(Rd[8E*D_%}WN ?Ba e|{-0@VڪH̞EXc\C=)\Q)07Cy*]]U/n.dVQLҒ>e"H0*P=/"qt .⺃L_󩨓!X6Zs;O]?uv 0;ڶޚ$9r~fZwB~+qŮ`e̋.uq'!@sI'Կ=C gMB>, ],VН\/(bٔkDmH!ἁ5Pt% lF+<!@h?8 IdrOZ#[ꢰZff~{->X_Œ(  .ürDI^Wcq&J7K| #U p:U)Y՚;ʹ Vg= ^Q^B\ppʔ{@e_-[[MKl?9ቪ7)UN̍'ZH#|3G$ y'B{^0yWbQXWJ)dhS8ekS2ڄXFݿA  !t [ TJPNT|ǿG/2.nt.r_YxBXS:;F#Ay5Vo<F3K]'{F]TkTK {NV [-CBu5axcO?t_wЅ8Mˉje;r/0&v\ٞ`c@  'IZ22jY@ǁkL*Jv6+oQ_mPG#YT4}:%t4Mr16^g?bXLtCn.w#4[jx&OYQ{"Hċ}*@T5X䖺 V;UXk5U梕=rWxJXЙ?}D|ˋEBzaFta[(>!DײsRZInZ[}׮ %&s5vπ/2Q mt@Q9%"5S@o4T.o@,%R51BVq+gꔟA-.BxK)*Έ$%pobքHI> >btT{C#.THۋnF{[=x7p1/ZE[-u>\JF[]4p1b9c+cM ANcؑBG0g70_ʒ@$vkT 3V:@l rM^.MS{ĺJOoo^o_ۅG=Z3ekJw&NRt 뽃4N}v\ٷԁ7քnYo^p xYpbN6Yn/!rR[f9; Fހ\[RIRhh͉ |&>OhU 8x!qZOnL Ʈ_Xc)<Ŭc)rTP.Wz;y˻EGw@)DA>oyS2CKtp/6Y)yeM䵝Pnc-"֤%TED Pz2 ^ܗԡx'?KwBi,(UG _ wXbzq9X[GKveN&t5Q?_H Sn18,l`6vXa]|=\2IN{8q+ BeeޓleG{i_}ƽnØ K_- 4T)gt)* O  26:2&6Lg P4LGNTաߌu_d vLaQe#x4y@~:H뮽v킂ǫx7OG$< Zt~[V06c_f^jtHikĜL\F 2cXܣ|Q.\>Btee\炉̯U%Vބ,/7LٯXUq8L$3z>XArB5K݆Ndvbrs6޻,ͭ*J!gZ<9G*Gku}"="i|0.T*E8r,($_GN{35)>5b0e:qJװPI0ݛZEsF_67r V)A+"=(_2^D[(Wӹ?e=\r򷌍(ԁo2LkqSҢt0Cvv93r7ҠbjRcm7ώYw-XmU/iDK+m7>")Y>m Flc^If\\{miXD=u| 0rkX$GFf[Ύ\+?| tKniKJzQɍBVa6? sU7"y!8Ň9觿MJU5]dmZ$"^:+Cn0+L0ҟ)BNZk&|LɁu2.(C]>֚Zexwa ~\[vOWPKxa$@iWdኡM8 P2Z7ofjH 2CyIA)楥fX|Sg?]5!5#iѠq Xn\~8Za$ ˉ|K:Jr0%/ M4,6#yj|YCQQƿ4٦[ꃫ:֨c/Z=@jcx>pw~aM1?*4kF;Xʟ;Ŕ{# Z:[d_P6 6~ԓmHUM֦i%1PF :XzN$JP WOX޼Tv^ 7zw; 9B~c|@ddO kڸGyK}K"Ba )vkK4-W 8[,suc2<"c]:ȃ[6.hQl5J$!ȺfdUq&htgm@:qx  Lqsn> w% #u ` }*7}W|@P/ Pgsb|Jl~t{ȿGyNEC1t!fi¼6$M?l ʹ/+sP5x.j1GKEzW `X>5ԥTZ u/;L%OwJ-FGUiҮľ%{ݏ^;9?ߣLOF;Ȝ" 흖+|sS2ՙ'9o r0: 7:uAʾ^`.2 ~ NtיCGKB\+Mښ`) KL]xmvkLHT0>.Y{V\*G]B}qmqH*4/,=rloԸP2rQi 8k7KYǐNLʘD(D ;kZJ>g0MY4G>&՟xJ!)rDd\0jp?zbAN'Bh/誎]:L`]AMj/x >eԺvf}Ǜ$dxOݕZ Aeg}^jE4XE7P?mT[TXoUK<5hʝ~K<¾z;QWAղjLio ™q$&l{<.hbʢ@A+8teJ n弱o7i[R{@ fL렿Еko( -_chYmt)e+xEb;c惭MSHw7״3w{OrMp+MA0V_@+Sc-i<.ZC޻E܍:x.:'d`hd:cggbȅH/^FrON}z&0*iW=[g o9"G3%99}(Ɩ~MA Kw/ګu 2 (<|L|~ˌ !8\!S2DT4)1Tq͍&kްCSY^ N&졖H {= =_x9v WAU~{ĔZkcKH!÷^`UHe{x/ZfPvS/Q08aLe- 9ÜWdbN/.U|{Hk? /708Xk6\h)Rz8pz^MGzaZ2KI}|;5$,^I#ܸX۞ lv&!@+JV$]T pW HNǞ5E(j!LV(RC[IQxf-̣<m0ӡϪ`PF-5E2Z ]v<`"K4GRQ/v$N ]۶x0?(- 2 6Ԥ_[滔ϧ&%_3pz[m?slL !rCf̓Ua,euPӨ\/!"( nG qzH[v$4?u]i;Gzi-܄\3b|,x5 @>Kmˤ+Z4~)AIv]JZZtcWU0Z!2WUgſ犘W4kHAo2HkV*Z';FpY]^A Rt|دfy(p]-lQ 5WKllƪG'6_Ŀ}e4ҐL턶S*p#W>L6Qp;+΍ T¸(iMI2r6F9EċOw\i݅=.'W}Ū*i1 F(ꂧ{Fԙ}8p(5Bwم^MYJ`%=䢪83Gvw ]v+f}_/LRިH߹MNjX%un2l}еbQgz<(>|.Ӵ{KTzLKl W_`\s\9=puT^']i$\+9uVJ>m4"V*FV`2BR13K \~2Y|; }>vBVۛ4sIF7Ei,f'Bn C!Rt_k$XH+Ĝ&TANv{CXsݩOsڗjκ>j0>%W#!bj/hYTTPѭp ?%o097u+d1SwJ+³:E'q5Lpm9(q0ÒVђgE=řNS0&6;D]ae*Hq^VNָzn:[?;' JLkZJ! (ܫZds&=UkŬpYIyjﱖf?e]M3Iec_޿Q{2-1zlHHצ $۸rS)g[wh)= $L$Oml?η5Ý__(#*1ߡEN/&P(@2 U VU q*RcL})aA+\}t%[2 ^5zTɤN ص188,O,Mlj8M XiFs@g+ɡbWy&UXxI t| 0d"ݓu]CK_mLћ Kd O,I}Ql=o$P~Gǚ0\rEkJR]7D+b-OC?t,vZfmT8qTRgc)Pb@5n&- 3t$ftgF&o9m}Ej~]=ǣzAg˦"'kMx?9%T|̈́ҠIĒPŀpd. UD-wVNh>ssIΔw9rXqc9>*gƙ-K9`1ڸoS=ᤙ&I9k +hn*Ƨ+x{\b4+A+6I֒MCf$¼?aŽPpcF:% J BIO=觾rRRgAC6Ec61Ю38x/6z^qeL@ez%^QoN/w1w@Vnubq܌е1/n;?U qVpMqkmGhu1"mK8o&?vW떚SX.̅9B#gy2eӐm wsզyTNe@hA2]j΄{[/7+s4&'4g Dk3 eߥ2M&kuiҷy8+krA79Z߻.`ml(:$Nb&ka?M>r!#O2O3i`E?I2@K`eU9w }E A[O\Vŷ# ;{’EF &虼ԋ%{.%O^(DIP9L~P;Pzk 88ɷ[ bZQPI?ZF/N'yP>3)(hVo*T]cy^׽=J%}Pt[QC:]w: Α^mA4AըeZ7/].L(tsfGcw[* L41*` f&LN\x@D488JWw%#)#՛t<~Z5eRi+:[u+0̅5̏ELϾp0"*oH֍%p/8 FADZǙXœjRx/V}vRɊܶ){<[h%~h.v; Kؿ:Hc\dr.9/ݾs[5뒢np(C|lYUЯ @XH}_G; U8| z vl7`>m^Z-~8#r @FŰ0C8rj{aD 8gJEa]vdK$ZkbɰpDs1k+Q CaT%XapedH#6XKF5V#'kO7#ֵV]pr2pcdQEu{It$b80P=rW6I‚IVrm vzM Ĥ ݧC6w"\ܟ{e aSNkzY5 `ѐ6x2F6]߯B)[JxjvK6g(89*vF0<86sx槻jBO9d΅i4%K{{e9*XZ z@Z+ N|ǧ#v/9xW>Zoto?<%8oxNx CbXN^|Be'(_1xr XI@Uؕ)aN8!oENXp |a0&Y|iC]+FL1EG%L]jFLXI'bK ;^A)}>5Vv;xc8>ܑ[Q&6p-hB$i;&pX ۆT2TCUʩ7:/3t脍Z" >$ʆ5oR "xگ,ydr 8O^kP"7 /MN 8޳_/g0#Ǫ3yڰ8YAd?TffM0(6ZbXhtb"g43zOZ&.y[S+?S,TGYD`o Ev 5sVonޘk# s pl1ֿtt2V&Ā@Eb"eO؅y)6Yq'dݧ(03iX<&/UۥI_"zCH7'@g zBx\!.2]R%I;F>47]IHCTڝ?R]V^ p%A&YUW0򻴩(y`Q?xc~(rB/Q_h֏!MPդjTnGsBѦ,vO>d d^diZqG}ɐ~x6U=i Tϣ2R`*MSâjG9 R<{r"MM}_52k"A!OR*/o* 7{o"u&)a[U&&޶@8}S *VsC$oo_g=bqdS j@߭,0C![-'f {2MYL*bc`we>1Pͽw:u5XDT)\ 1/ 99g &3-2h=k=, ݬUo1VZ3>3*w)o/ʟ5ϑyoӾg P pW\?_i@Ӟu=#œj!'Mxi] .a!VྞE"E j]}5eDij%!C\X" v?r>0^uJ>1W.?ay0@5xmCYG(4lG* ZG==ݥH9פ~SnK%Y|ztnGF6f~i:ͅGj뢗ͤb#D5UAh=3ͮRq)RO6}f q߃8[`90(GV{, iƼmZ?7 ˺I 98VOC! C'WIT6&,)b`) V¦yAqFKXyoX/@ƕ!ixsN })(J٘~5WFk:Zu|d+H/ONVM1 ,ɰ+ ԥu`*cRKH9CGtBəktE=VAwLqe_Kw?whD1_]*ܹ[ &u 1nd32!z#W=oRJ5SۭF 蓐eҜ$s97!Şyq:nMg_WC-\jS1|,Z~,(~}f߹P,_nÈu/IPwViq.[5GRgLK8^Z9F&S&3o̢/YWzR%HRe}3a7d^6@:UAO$P|qC0j.FscjD\k/{ I9|QܢIzv_F8-D"4lޔ|*qԛ _×[wBia^q.j'fȩds96CwPAXi>Pobb$wLohd!ڏU V(Ib-o@'PWI %<270xq@ׅeNs28~V @ R fm? wJ?q,M>)C_S&, g_%݆xr'fh!AIo06'?O;t4A͘{ԫ!gg.X2]=oP:=‚SVjKz*5=WV1u 1VFMg;32o]mRa\?R9Y4?yAE./tڎ)J:u:rPR]H hmR] `G:,hyAKd j]w5>4K JIls)qZuɴm+.W;&%I(zRK7[Cbrj_ޯGi4R*ӘcNI3i6bioKEӯ$c53X]QT6ǯwD {Ƨq/lr!i$PP"e%YFQfՁx hu7ɭ t" džW%7#bHwNѻzSaT9Q#ΪQ 61RCD踾k܀6LR7E q-j.4͞CAQUVl~b -+)Y*֘Dn|ifne% =B;~P=0'3";;6 < S+V'l|\gPj4"Kk|vLk~?7c@PJ^)rY ՎCӲ$nFp뀀!x}}8'GΠZf ڄ3pQO\jò!tnRcgls1=Y*Ѱ';41ن}΋2\Pt~oHB[XS x"DAF'zܵ8%X Z=?VYoπQ,}D Xe-PyG|6}N( ge_9ۙՌKs{QHu8 ;Q-+ t 0fZ*| CIݕ| RZ,K!%i~RkMy'ȱا>JWj,dUGeL8ƫqg?j Z%LkP틐0ҌI܏.cTթ-B\m 洞'*VTv|̋ςCa}?H T'TmeƐZ"&I w٬[q|b&Ƀ/'؍fTz1v9v76E"yڄٸehcG'(Won aX) g4TEz2k3Lv !|[F _$C\\J\ Hֱ Zx:;8+ Qg:#?D60R]kȗh;xIiwǰb 8ul20#`Vf@xNijۗ+ y vLԫOʅ8CvU~nK*,T)L20y-us${BSa &@ͳn31$4]~f5EE_vOScjWj?šT6_>.AIWS.S<(`/z{(HlT *^w~(V?aWr/,ʼneq |QZfۚl|YFlDs#o?^m+hMIYg!8}|ߔjke!~so /_fr@;k4Jl(5WXM-s9JG?#L#a˞V<4M@'`]-tr!!!@uo 70;sR m[Ζu].t#& UxXf/XݑxW~{B:ȇ~G&)q;jeւ,T<zPXF-g?-5%I{5-lsQj2i﷍1Mm\hUz,ưqf(8x 1 A/ 判#^ 6FBOX:!&VetBԄ?R3J,hc IP;Y}Eү=? 0^敫7'A +P:DzòQwɎ B X8ɌfgK{?ͪxu3h/j\|.rGsdU+t&'ٍ0hYd?Ca r ϔP|Ja Eo wtm̤3fP'λz^`Fk BC= ʉ PM!vv4\W';y#쩃!E¬7ge;6b~>yy|5,f=DyR%UY.;i.QԘ lCB}QǔK,2yE:rzz [Zt[z2DqVƿ87MhGu EiL#l0{ɯeXDB%@Br{UC%ev%Z@hة,M,Ä4]rLմ])H7'6+#'G5Qo&jojI9i#9BSte2N\3t\50Ԯ,6zc;6 lկ}۝4fyb pU/]`C3$pg6q|2dr?&z`!v2:SHcKݲ1Uez:Pj^Z5|v Ҧ7gHlDx?`HްOj=q^C붹ɺqtY@({:uVhmgR ;0?P7R#NȧFRaFV{=ҋJNv_|YM[ҟQX ک =k*RĞOohrd${l N5dNʱ_9UkL:qX>4ܯ+_W88J|)^CFLnR;Vge_@NI}^|gS}nȯeG5-7z%RDO1ʌfv{PY\@pVb(F Y{#A6ofQ2'$֣ǶƦh3\WpF9ӧ(4@;o>!z @T\\HtK=6 VA{r{ȑƮ ewK&cF?a[e_[2hi7,Y~}i27nY: .6|D$詃- \ot*%GvUE-Ԃ120` KРTK웥$wn`.<:-T׬ZA` Ok>+h-7<n:L'w.I1ؐV@t V/4;=qI28SՕ:$HK1k|I6'w%a՗ړ3N&MSIm0/Jw<[yǤH_7mJȽ;m[4%\םF!-+z:x6aNHrI#=ßAaZWL}Lʎg[ו^4mm2{_Z駴,Q@U}U>c3vD ~FlQ[ydjEe8S \eNc~T3vnd]goz[T%5t]?:+r/EO5n F^o-{t.1z6uP>VmÉԫ[FɍbW>wXL$s8{Z}"+pL;-hVC HJӼ#lLlQtXva]O~1;[ ¬ؔ1IfӡY(tB4~V,$IU}nBH]T";!70y\GU}q2pd w).)@*C\d蠕a;밵%6ނ1Y GߦW߯U iEK@J]I(,̯V0ׁyߣҋh}WLoŰ$PX~ES<N#g?9L"ё{$H[hSQ^tN׽,h% N GyL#*+Z0Cr, p+z@H wxf! wTv$}.k y@Qsvd/ ئ|yh%BwL\10Aɇ+rP! p()0-l8Rbzf?-'"Y) Va/B?גF0Q0GLEA}Щv1cĆJͽ1yjea~mo[0Ƽjj*h9dh )ES2 pzfcnH&٘!4a(3AnxC1fqv^/_*'e.!̺R88Tai_G.xVly)(Q-=1 H`kej?s,EMKg-/"ZPY6!?/Q O{OnAsWhOFx|ҸiBI> YJUC{Ir*jTw_4-+qh vFI%򏃑31;}ZCF&cKu@IW)$K;hSyBF1&RC=eeœz=0KinT99u~LPm'=9yC\g+j+[1?O\  r8 < 쌼eZE4On(R(D,V!>nX}:{[*"|h?>_*5uhxڠ}G(,ڌh]Vdދڂ>d;*KQ;Yj}c.BuNQ5#}@Y,"=78}D$.ڮoa&5wq`1iZ3$4l-(<Sh*t9 m@C`ٞ øͱ5L]e ~Z? *^G%Ŀ͞4'Z$͡|ɺTudUif!B.fҹd3(gQAWKq;6IRns ; `ktA/,86rfS>JBˣU:Y: :AS|].g08??_92e-^vX v+llc .R}9&&u!/}[Q(CxyȫHK /$i ۮT,,@X~)e)oM;S\R T#<{gI!2?%C TDп4-U^0OWFIDӼK2{(w?EݿLG+q:3TTqm8҂iǙSsk&L=/zή}-:5JއKqf#o"[)lH%0r`83Q TyhD3*j ]a5Ai|x/'_|DN ڊbO{s vE?r|̳H`6ּ&K8;oډq3B#Ռlξyc\Ɉ,Aδ}jb+礘Y a_ E [(ٶ2;z?BP9ǘlP@/w3>F_,gԍFfއX HDc 4;aAxkrnj,!s "Ukgk'uR+=H:u]U>*cXMyJ,]TH\ZYY># 9umh{ O=i/Pm"n7RCۗ#_k/305$WߌG!G&+jgS jٲϋFF}6r@5VD,_+*k=fL=^{dE8"/[?AѷYlӪWg~^wJ= G"#8 S@~e+6nmkOqwp[7I78@%)_K9(fg`.hnv|n?!!`Y U.Æ3K-Eh= ĔbR쉴Ol0=2}Psp@]~(qA; Vս@G_j5V@:RQQ>EWt0 kX!w%Sٔ[hMMka@X]4Lu &t<0emAg9ՉiIe05\7B1fwJl Ź|N196N߼օ6oi6̞>;[X J1ep~V6v8 wñX^awrmiIGorr cjq $2ܠhL'6pxt:z۲k329n`y" Iե:3''VJ@hkk!:;=Utw%z]2U ǪAt@` m8p cۧ0˨D\980 +]|$a>K$C2A+=4"/2QJć4R?8iNm24d >)aZNӉw{ʺֻNz85;'δ!c{R>[ *P/K1 ֫Ќr05r ԡr(2<01ɴw'0J/ݻ% $]{m?\[o(2lR;+[hX~M?y/ yځ0Qg`j7\V,[>@8\㓊xC#Ⱦ!Ϣ3rԝOd!}2YZ. \E.K qd,H"&"5'S=il S_fNq̆S\SnɦE+;1;Ga3 ƕ.%zN }&DPl"HRJ8|LԱ}+PǂIZ,`P6goן}{{m`i7 >Pp ܣEq2Khӱ~%[i@^Ɇi֏bا,B{O^ީ)1T-,B/A q#%܄;[^Ltq.4mrY[J26nZ UԺ>[OT;7%3iu8j^:zQ>Fӄ~U*ȶ>r85sH''`.i (:BL<|$4L֍M)PFZ+93n!oufL%? uLMM晖;Q_|2 M| [x}Vxr|]ATπd"nkTWL)l`U/P}YRґsӒ;Sz8d虎q~M\)N oְ*C/\2ر4 i{Y6d}V gH5?Dͪ]6P<}Q'3_Geϰ+V*Y۳0Lzd)؟@u͑X[2|$ )=E'&mؿ*]poH7 )G/nEй@DQBRS=xnͰ>m`1t9vW:L^ NziT5`_,!T}Ahgˏ]ç҆>YEWjess=,q;jAJ+cQE xһ/Zk?Y %oR!|aZ(6`өGrblnjmՇncqBiL]V;>w6z6]ˮ{IsjM 5ct)dz~E1U{Mۿ,oё0$:XI VCGVrk*&Pgd쭏q Ntj`a1Ŵ^DA^90Id11)|:LvؓT>? V%=g'3B|c_{EN N0[x=%񒺔b6.#h.X!8a΂xӭP)+sP:3#E`VnQQrۂvi-D ?J?,@g\pC#5bt^:*ɴ)D.{ *~hTywC\N| @Šv58Sj#OO~j%HԆ9C9@  #m<&/m}>N<МC`V 6m \o7I5THo/d4suxGi(&>S64!:ZڠH'ƽ90c;T(P=d)Jh|Ky򌍋H[@wWe0̈=U/"/ ^3 HdwA?%y}$$8)PZ3?W<Qh~䩷祷9VA8{ϕ9zq!MCR!2Fj.N% zxcW8j69Lݓ6n(Yc9)衉1AfP6ܽ&WY0v"@QD98ϵ~ⴁGæy2%UDKA=hsBf}'!#.+*w VX"=M- H4&y="[5BoۦM z( L^!׼Qrnmf{$$.&byi6$lKXXܾZo}5#;ճzS/ؑ\blЇi5o1v}ǘ>tF(CbK:JVۓ[֮FFwb _0yWS#t+oGT/%M|DІhW8nASTm*d-'SZC)&i=gP7&ߏ?po wun.! i"jbf)ɐR-s;ث" Yu-%۩œ$v'Oj8@E r #,Va47,.. >Idf}&XC{WNFY Nѵznm${ v+V-:'#N@'Rދ?:OKX~U1ʻ'N*u-HqiZU,?L?ǎxv߁.~l`wŹ33P Y2LmK\6$sJvG# 2{>ZԀ5&Vb|NZ:#F-!zs JDdP~6Ng JbK纄fJNԀ>lk {֒Tpg$L~vrc>.aJf?C%F%xsZHK򊱎ڽ! fпe}H%bQ yGw~|?ߝ9<ڻ}Sv9Eq4_W~TD[wݩlaRk =mja02"\2@B`o_ݮ-#_$di9Ȝl/BKxsJ).Pp̽B6U~3-\ޑW&]u YX=%\Uh;d%N59ė}vy# M <͔_-!YY>^ꅩ ]oY3"/)$4)SWܸ:+eƗmX,zp(x S/jB+f{V}0D~uiD;QW w*Mֽ#^h !gnKelI'g!/ {2l60\kEKPwj|EE(=q9qJGF=mXq’9v5}KDMOXa^&ѫ2mH;wMI|:Hc9\Q p/Y7{:"? 1XC~Y{uD>3tِhvL"OLhsgJÓ?RVƏRtnsBn111W@vbi81ӌR̰-8OխCdvf46F"Β<3p7Gqx4ڄϨ^'hC:܂lkMyR L*ݡh9h[$Z̐W%fM6oXv;u4ZMsner鹴~Y6&[ܒ_nzgcq N0AW_BQN]6f/%t}yK,J/)BoG_nm Drzʼn20qy$vK^"$~eqjqۺHs hV y!yCQm[!‰ C]t,)' 4u8?1hl-C{ TF19(S[FnXҀb1=af/21 p#AL)L(ÑhHʰ4da9Ta!=;rT> MU8EŒ0$ȭr@J"1Y?_Zmƛ@Un'I!vsMe ai6+ LF{j} 0p8ɋOd9x&wb\ NZ+oE]Qq|YihiǼ ӛP޼wX_w ?xBVDEp쑴;%Gh˽ֶ)\[ zt`]XVlg%e0Pd؈c~e'Yحg#S`*ztk?ufOt5k%L5M@D7*3DVDwF&zY䘕!& W ^G4 ̾/kR>EPCWr8ұͅE[O{6nU2B_x#lq^>*5P8*?N"'~B8Δ5q&6u,%ΰC;$A /43C|Œ]ݫ~pRj:\% " ȗH_ lp:n[ 4MnHHQu3Fnb~&F#*{yiy9@ZXVs60jBn[;3sH Y=w_(PǢ W(wWfuS Y0M\C k4/fKv\r -bIe&+A /x=.@g4hU(g1zZ0IBy Jm{:W9,UWx_O;*\p k;M\ MeƦ/I!&GvWv[U%3'q0 $!ϰ=+_ꂢNCfWf1NXmW*<+z_:3jP8mqqjE>$a3[pnzvcj2𛙽uis)0\? `3d|羪 8Q J+,@Tޛ!#Ң|:M1:TE(:DAGۍݮˋ?gt# ) 3;iZRU-:TZ͓BkF%l7t|(f 0& nBv0k<5ML3 >8~U0IOcbRt܃=5+~YOL*DY#p|, (o+JgWnF,1Q0M- Z^fT"p# M1Ѡ62 d6jlvnlu|? +m -5V^lVE>D:\zW\HBw*~@}[}l{Q'lN!xϮ6 Y۳$!Oc0۝$n]?*2,IZ mg#ZH\7z!c2i]~^LʵSkNd`{ꮭH6J rr4r0TUAfyX+>|Ð =)vi^#y|J4MW3)P}u3*wԔU~W48ba]%0Ec1TRR# G+S[DRaQ& 4Zm5s #ugy,w7 oژ420HfƟఒ|GQ4jYuFB™S M!;}rt&Q"ƾ^tֺGÑqY~sL | tar'#DVdPH[J]:/ۮzDW/F:FC<->aoJ/[#~DJVTJpՒM:.AzMsuR{YdNMM"Vpa%;AVϤ}rɺD9SN\>\~u=9H4mZBܫʐGdІ# _|%ˏBGӰ9j5w9ZCfs(?b@$WC)Oɿ33/G4Km}QGD4iG'QUpgﻎh_+jdhKG;M|J |;U0<)ĝz!7i }{ꀊ &ۦU9@@]-µɨLua+:Z $N؂8_<=BQ's ::$pyC >|&hw'hYpi]NO +UP\]uޝÒ4B1(LnWV,{_CS˕EBhVTA+$iN)*nU;@DG S ZcV20Uy?֮Q,k7@OUKh)$2~ {vbʨY&锔5c<2e> Ϩe]hpIG?<KK_q\Pj56* @]Ǫ} hHhɊ&>AR.Q CZ˫AZOcn1e)=Ȟs5 UDQySz)$=mʌ4=%Q6:D(QBmWS՜ M[9dtmQVC7sZc1"y) TJTj.us0 Mn?EbgzH,X_]SSI,ld8.6+x6'ީCgLBuϑC_ECD<>bрZrol>fu |nˢ(Nl'T+},-$Hɩ#HA' dTZƷ;y1`f—9OKLܩ lB[p(|Q -ĩ(;ฦ)w J>*'m;3 6 )/XC Fa8za|6AVY.`>Va,[4yDe G_c8=)q?9KKeOuwS694~;.yAyͩH'laGE֐K$tyφI,-fA}xt0Ý)tؕs6q7LiJNUE9zd/H%ʙlh臟UZary2@8d;X23쉯ҎL ^H䭜HXk(E^c}[dIX72S3'Dt1W4^Jv/l^it}E E/0;ӑF/I/^1)~zh.2E,d NK( J׃(5ժ W'rcxqIBcB܍> suƥPq08h`-dV',D6rTkYTq4EPhohgOo\s8hhH3. } Al3rm;Ms.9Vl+$Բ!6+D=v4f@'Om1g̶@TdI$'If"VgDdYձ ,k&)zl:E>9۞@ן>F>޽Z](Z~# Ը"TF3c V ~sd\s>C#q`?U>H\a^TWu+FʶQ=}[zqŽJ3f žqQ~f)aZ/T0Vءv >#h h7UWO3tmcb1((Sr0%|iNoJ>y N{O٤Ą= .VW갰Qo|6-O:)M&Ga*S edz'@>U7P&[OXy@t3]`qo,ɿH\m΂Hb9G#kmi.y9 ::g(R/k-6~$DSw(!,a*$2ohG5C1f7K)v?vS<,jc:`Dڲ SًKx !k7nI`[#>S} fܒ "3C? ab]I۰?yِ~Kt^1TjX^I_URdJ<^H~:/r  Љ:ӭ>$:eܨ*t=t%A}#iHqpɉU4*( Z2Am㚱.Ͼv9 suŗ6^qn{qqXds`$:+3'4'*; ?in-9g Cnigȕjk=Ϝu`hdKJXP1Npۂˣ|I`sUPnC3Ỷs?,Kv0.W(CØ9**k0vDOBd&L2*KQܵjHd # ^`œbpg:1C?2KOfo y$bD*":v}`P;:')R< _< @Ǣd{csIAR9(eE)C&wVOGSk|JA,DR! Ϸ;Ɠ rSedZн6ዖE Xf@o &p<~ Tbp9^@HᯚD׾@>r Am~V[2j4! $z|mt߅Vtj*oZ) 2{;S*NDžn|9{tbAƵebEJV/LdrHyxY!ƈ-2cj}}uxy -㒇NSV\m\D&fa`؞I!Z)!|4q:Iy 9y&1!Oɪǟez)7J/W7$3ig=닐-ųe `BڶZ(.m. buP+XT^C.pWKU)9./,߹ Rf1M55cj~>OR{Ne,כWIʭ/ѩ11y0w6id2ˮ#' LWϋ7QZGONaH\tG)!_ K.jpWW 84hAbZhʀfvr5\ .2MF:@7HaBՠSܕ0kE: {=Cϙhg 2N(}䷃0LjxN䥮U4C@H, 6RIz:o&OSg=GP$д3zS'(IaK㠒( $RNh7 2BОRؠ&0BE$ '%dzyq +YwTm-qbCU=v]SbDs{S>&uH)P L ?蒾Pn(N 0ˁ#iáaPT q ԙ$[&s^ctz_$%h11Ϻ8gYo)qϑFM-msENB zTeؼ{$6=so2gvj`˷hkh5,8=NTCd;2"7PS!S|ľ ljy@3-QsK]vy?߫0\l.anԮ~ 1y^Ԣbk^ftbM-\IbcB6rB@k |2Xcd!SS`wJ,lR%c8c;Q.Oj[F$' ! o9XES[>'xŸcq8I]=KCYMz~')=tovG2wwidF)fCp9Cyd&qz-m ZM%߉T5!&6z9,=AƒT b CBf 36eĝKڐ{̖aIV8P}QeUln[)A')NV01J]ڋ|Q53/[c.ġڬ+uUɒkUNWQ7%MP&*,|~״Ქ_hO='/v(8 E $<8%m@1q"rhFPr[ُ oUh*j;>W8bݫݳ6Wl#FCl }vst?giXpOsYG$*1axz>M$̬9rdhJoj\$O0gx!UzX1l2!J'~nh:p<3Ԭ8'ӛZ|vu(A1^.ʠvܲ Ưm-!0ʊq˲Ö:* KNbM-$ Aq&)mg e"/c:3(([smni\;]pJB*S { /F130*鏤Sveհ ۅ>=6,=Cɴ 2ztpiM9o17NjrH# 4lB&"am iTN?ry_#2P `.2="1"7g ˦Sj5_k[{`TH,[Z幛 $o\܅ U}w*'͊X!Mg{3|\n?X8}8Cqe Mb@fp 5J) Ĝг9B}]{@G|_|)wuG=녵/reڼL6kx? v\X=w6XyA7rZƺ!D.ur{LL8\ǜo)J0E"|!;#ɿV NqwC$ҨύђRlg\سø`#ˤL6c˽kU؀&i8xLjs$f~1X :XKdXnsV)5\ј!5Y{ *]8y&~>K;IGb @rO>#M32q21 avd@HO z{>ߢ`c((m Pn(f.ǔ[%D#銓QPp1#XȌ솊H/MP] *e<>0&^_{)soP(19ٝ%$S q+mkSq\|`=[,j2.a:-icaZL=Yl0!r O$N|k%4@jXP"D~ $Bstb:qmV)n@RHw@lg<3-R^of5rvpJ ~KUs9_ D. 0ܥNqHAeOF8XH}X p=QG+墷MF$":Mצʁ_$dQ|`L8l:yE)'ը)EPz<ǫ[K=M1x~ASo=U&puATF(D`\Ԁ7RkVe[ς/\P2с*' Yɿ3 sTVU$*TbI0l-aѹk~DžN Tᆴ׏!~/r6Zn9$|F'w0 p25?~.#  bQarn?^̲k'K0nGqvѕVk쟭%4"8攺}ҽLG](%J6|YgʁSJs-{X oL,I葧SL=h*M!a ƗZ0ڄlʂ_;+.7woh)wگԙ5 SG"U'oT^]TNN4[x^W3]$ϣ*4eN5YQOy<*u~/&̅>6 4bAmMt-~yܣC@_\M\e|1W* ,l_Φq5xM[%&}^GynlC@0Ng'` VY fn!&w_jãXG];;⋅{4PXD}7MF>'7k&bY(޶ƻJ wbٟl*<8B9 pq @F?4iߜtiZΙϧK*?hYM[9zD_Щ<%aGZ/ܻ"wejiZegmP6JH0JX  ~KukX $%L e\^k5pKUK< UeQc\mbt+ !u2=aV>}d4] 9o\$#lc/-9*#C&kge hM%)M!49L}NR"vﹴP`?Q SP!3>Jϔ$8P-Yl~w$AdIp15tFőD&/Qb]W+r8Eh⯠ B1rҷr V2-)3}n=tfr9|a8 jӇg.\FSp[" n*qLmS&'{FD҈i9ZYmxwteWo~ ];_A,tK)ܲb@`+s^햲b ) ?W}ֈdiخ7U(O1"dnrA2פ CEwKFMW*ad]Ġb䈳6eyOU頄 πnm7|Gf\ * fc!Y7;l~XUY\{κP3iнlk/U()VaBfšpPMNPAf὇f#֫{,]&y1nLaE7IdɨfGP NTO(g]S`Á2ۯ[?4! ʏx3nK|N;DO=+F|.A1;/I|BaXe4`A\޲I< B@ UF5jDyO-Rh̀FfNϩ3TN5"26& W~PŦ>`(`D_c5he.scqt7t !bǕetCŒ9 o ƼĨah)Ύ53xFӇ^ B.IOK*R`1mw@@ $L"ux5KbR|ިXϼgIE95E…|(*V+V^BFM;F+@O#;)9hEM69шRKFcҳ'c2 r郹Ɉ {3.оm.y?`l$0rjv_u/R67t" Ld"޺yԀ\>"\g'NfӣnNn0({!п je^+g *޴]_ $xty 1Ux klŶj>]ƌ-,1THD?hyEi_B-)# `IK Sլe:ctkaKs`dc YY/oG95^%QL]w%X,ϖg]%CIOˋܛK{ \JV%2zLuƂ%_听ޭź&cFP*.D,EgRC$ݹ ߎܢD } #0/+g 5,mr1X&^Ę> `{UF*k-чHKcJ0# [XxRY8 ` ^cçU ebK 9iˢeTVK$t^Cfx&Ozړi:)Dnv0DzqU0VgXbel^z4Yۥ#@3פGmi]>B#kv4ӽ"?%^e#LPFo,ZLB1b;Ǔ&BRXC"GþOKq\ϴ񒈸?V6e;%:{$e|̴yK ? wyZ#Q%Jޗ>] v/Y'nd*XoUҽ9\*2.3@QiM3(XE"HD}2U~1%F*9ǞDI bF=ݳ=X_:zzـb|$HpoPٽh8,Rl3*YsᢆZcJhNFt8KC uAtY #v%%0۾'ȊD@z]$ FA**-ȩ H ݢ;Iu0-.]KzӒij~dSn-(߾hoi/۪6yU ̍ɑmt5dC  f1Uq'>X[Mg!rfaV.]c"vꗇW}#7hB=kgA-!9Fthc6LOwy}fx#w_&){?$'~lvC3:+V 5/">ÂXr-2u!8A&V()]; :rZK88pؑk'݅ǿkƛL"( v9]4{lRdĘlY7l"V ;袷AX2⩷D^zOwvxv,=t݂&˷T[v) tFAR>pZ{?-゘Q-0h]He:'B N1qFn*eo46x TFx:Zo}7H{EHy@{Wyދ^?̟f©h^"P9߶O(A<ʀ`jRBͽM*Py7}><@NaeWRY^\R# ($KapFaOFEN bǨ*5+x <}T RWF|!+QHguiEh&)&Nf^vCs=u3b~H͆ۃG ft7kXw;(8+pg-(S4ƀ[4+'$*E] 缈4=q70BD,7WU_vG.TdbCAvjƒ϶o@42JC 6[3(xUeψa;# U' SWDNvf'_`H$_zjkF(R[cpM`e`]qi߿f5ٹ7C^sX[&ρ0u&s3xVhy0(涅a1c2abHR5cvʟ%ȷGl婾#~}MEA3Ou Į!@MJŔ%ۍ?1$đ5qLN Obn>'`iH3K't 4/voAZ#`U/Ss/9> Cǯ0zNT]bQP"eGu(}CIf Ot߫J5ד*w"eu @0 EYٝ92Ҋ Wjwi$ŝJbRO%/~*Sw9~M{J[h,Nk?ǂ$Ϣ9fP~_ fL(TxTPE(ͻO,H! )V Q:hLґ=w73+k͞稪*[XF>4֣DfyGN.[5r;ix 41 `ddPF/[egM_'CP١U|f3ԕR|^tU-e$6K-)g\)*P<YZj:NkC˸nQg!-U%EC(׊zD 4nywv)CKCZH'EX j~t"…/o1dfY) $J k3_LBmjfsgvaIx]c7} EWMٞaj Evs  oX`( ȸ3.@KETmm*j?f0oOLru׳;pXZ41:i c#,r70z9AGiY+PK`Ud8BrH6ok(N#u(wZF;M jo%qPpq & 7L7śRߘ Z07`|?v頑D"(Jѐ*Pi]7UI2| ] Z"̢&uj6|ʛhawAD| ުF̯ :̄T 4N(Ggg89 U6 "fN M0B+4CX JE2T~AvRʇ)ԬY'1SoRgP&aQqd8_zM3iG#:/YKXOIUtwRzc졝F\=“(hʉvX]6~qp{L݀E˔=$"$71[.2$+uQqt^~(KW>ų֫+([&t/E+0JεWcX 5MsvUo-`]Xpa]Obr3F3hW-sjfJr`+hyJF70@l6dی B0kaU:T8Juי@& w_a@2qE'_$لݣ,dyi+mވ&bcʎmKJ\]m7pr?퉑e/24vvLqe FRֹ΋BiYЋDhOℨa`\c_=] 6bkbQEV.6[ĴPƼf6Vu80LM{?@aB;2n-RLR<--|9r2('=Z!8c0|ʷL5Êw[ۀaTo;\;M\ 7Jm3N8YA/kԠ wTlI'.'ۖl°fLaKd'{Sr9noD m_tPL ⼛E+hl9^A}_ɠ}4c@*˲Ku 9Rwo>e1?l@8jiU2@0lyx*G+RmKҟ{ skǨ.0( CüٖT|Cp{*&e$8Y$>O%r k:Lqm ۖúer,bMێА3=?bT70JAE/m+޸7Y}j$xid_ C>}M[h6K#A(0sHakOOcV'\9.eZ;˛^N`ЉSd <,óukpqut"ɳϨ˟; οɆҔ$b+{-𕾺, ۉ6 rĮ(3~1;(U-dBR*4kOoHбy,QTڀzpTb (Xq;_M?nFKY^`UͪG'-&_(_;Rd˲-ASFMYiۭi*G+}۹TEyQkltf.s(Dq݄UUCTSD(Px,б8euz ˹Xq#  V.V\ -5GNyuP%0 2FM2쎔2O=3=?Za^7c.f0T<שs $"d嗛=UMbe"uv^M)gzdY9UoX~:p{!wca|<DI,7b>" %: F"kݞc9F C<3EjRQҠq *T1VuY7:X̂^PmxNa6g *0zk39SPDrAީ MvY)a=~yCTV`_6pM Îݮr=.YL"E"$S*dѹGl쌴RE]7pjCȊ 2|UvJ2̯]jMWiBIq[(87Ƃ*G=Iqu%GkkD hQUm,f.yݢ-cdͨ^9ovܦ/]-O|ϬcI #lQ5( { pQESbZѾsy8xSznS~̍ڕ ~KG!T0fH`1:wVb-2@tRW CF6lAf.b qMMΝiF-|}쯬J9՘Q {Un-La`Brm0|RiyQvq$'s|rʑ7{;A*ŞE@i[G_~U}W=Hf}F㗚]hS\&'>NI|vi"5/侚?^żq衶[`UofBwjԡzL}}`#Hcv'CVB)u3 6ƥM b! єӪvZVm2n+=s@?u6(^3~ARϕN*n p дˊ6!g;" %J nzR,W{FLq'Fc:RO%T/M ϷN N"Z{{/TLr%kvTY\y|y[x6_/Sdhz)80ZJP#tMv+7H{1(T{By!*#]R5Wg ;V]_LQjtр,O4P5אx DKqml|dG!p|,E޷wN thK֐@0;eݿA `f"'S_'?02n$h1m.!c!|o`]$}y=Z!z8eZDjC)~Al $%QL !u|0%#eH&툇/J$Lf,jY ݰynωWr=`2N w8 66芗K3RzJ3waYȦ8KmJzawHg&ۄ$1%~j{R6N0iQ8\gkGJ̿IWSm;>"p d䁝 7ItT\~{;Acø?O\F(R^O 4 '?/h8%i+܉`G2Q$$9OxNXt02Ţ`r(Y4C[f2ѳ L{>ŠA# '̌;?^uy-OL:7g#f;6i>qD)G҇bW@Xu}T51}ՅV! +z(k+֪>pm7]q߇ [9T{=r Dc豸AT(GY& Z~ߊ_KR?BHLĽ8qOw$̃5jdA)[:"w[>~\ev:5o:jT酷7)ˍ @H.۲,4ʉ&XbѠy@ɶpyWפs9II|1)|>_G܍pөy %6Ƹ sfK.i%ixNb1AXDOXzVtk,3 pkRl{FTXv"lcuJ(_FK Qڍw0u5iۗ\# QQ&&F|:u|6IZ?0wy]'r!INn8؞ǸavrFcqt%g?Kmfy =~`\PaqMKί_O<`\SuùhmB3 c[9`+s25VȜ>df@AnV%AfENjcAnn`߹M5 7i?CJ;ǹ1@J 8pk"2g Z!(a,L'^W E?=:tO~>Q2hRV'쫁.~}?H s v4#=tRvA9 ~)Z跍A. mC;XYp9=G 3\LX)tf7-&U~PE70qB gN_li"*R$4Enn{wy+RIYE19DQL+@`w`PM7]ArfOnDnBz(@ D4 ?TEvx,Z3nJf -+f"ߞ&NmU#ĩ?a7RNd(wL5GH?20]mmh RDU]H ˪ (|RgI\` a~ntMZ_i,PсeT f55|SEj,%Ұl Щ(j) Up/4з Cձ- 4Z+O-4'<ʇxl翅GT5QaLPܡ4PfF[M~26g7 >7q lIš@ BU*!8JYDZd ^!Xvfh℥nf*p atݮ ?>=um8~LZ NrT' jBp*\  X #6%0(#}dkL %jq "H[1Mf}U"_@K[&](MAl)4Qs/#KAg;*;ng?6 $i&eb"tEM K AIf6]}[\EQ_i3SotRkx(\ESfW[q<b/4^lυ ڡx@(@577}dΉUWjĎ uEaIYs_1iB,/e10m$N) Z!hv}7-F#lJJݙMs3 '{σZX֎k \Dݞڕ$|--â'nw*.â\Ŧ~3FJJlEI-OńMl7E+Ӌ)‡(_Gω2JyrHm% Tv#T硻-rB%?ѯbąI,Y/3w! Rwy4 B`s=NQFuFץF nhC+)1ЯA" Wb G t#XOVM{YA?dLr:u!k}uƋ[(#ޫ8R%f6gH{{cbA8ǁ8FK|ebš!dų@|!cUlOS{n'3߁o6< cS(x §R/sn%w`QFgWȐ Yk:R?'V]"&+@ý [u,Εd }҄7L'UχYb:uQV~C ͣ ئyP]3#fE˾ 1U7Bq8t*A?$ÀNZPl퍀?AFnnULg'@ EwA` 3&@קbuU8"@ǸbqzdvDEdE-׼N9B I'nwoNlly(g I̞Уn!)ʭJ[^)*'+}X*Bg șHǤID [DQS]>2և6,AĊ|}ڱi|jp+ԫVj"$##&q8:&1߭m\ew٨j/f/70u)J_H{Mv;4]0bC"TDQ[<(&;wGqK0@C3rqTK+z˫줿Q*iA귖tVhym.LPR=i!HfiKZ 4)A$t,BnRfw`qft5Sݱ>j*SyE٪,!ɂ=UV▼V.,}]=D$S-:_y}<J(#"ĘK*Ve*0gnJ&Ƴo4s!2:loxZ G]-~ ЊR o'Gȕtd͒0^y3TG䘱7K0i_34:-h>,̹v`CU *5gFbs.E4 UݭhnT]'KX3n-~Kྦ)[.ho@W !z4z׉H7@@1P!]0S5ښ>E2Ab"eJs(MkՅra+t}46qu$MUNUqE[azP$(q5r#NE|neNZ{[A:w?l+cr\M 9U@H'#>ljnxYX ɃtjBkB0L=f,5nwH>@jԁ4d'[/ϱ: fkIvy첝UGR4liCV6NbJrN[nCե_m(+vMجg`NLiYCvz4cUx!90{ XUISfMddHZ\ 5J׈T۶ c9nˍr8AՇKa;hx3StOYT3wɷO|`DAmai8|7mW&#Fƺ*"H64q#;Œ 5$rr)@HFAK3FV:<)}`9Wpm+ާ)cś |.[ZJbdSͰT) |wtiSBSEtJ959ZmlՉΦt_JثX)m9fCb|)֋ΞE"7]-LfW&#PxW:aW,C9 бpWEft_";TȨ}=bedI.6Ғ@W*G-3dn>$xc{8ĝ׹wzK**q33C3goKKQX,Y4\8m9J[**QsHMQ3Z>#}82+קrWnM>C"];>5 "ƽݾf$@4W5U0\nI9PiVI3dA_#>DЏronT^w ^|Ld 7SRDm5t N%~G6d3^[\+ckC^˖^JIw60>(u,͛&@9uo~m{x;;{&H}.;7GE.LЪ[aއiBA|Jv;h./{묬0UmR[Ѓ=":6'_U:4nrrNgmY[dPC;34q'=Vn/R.CG@|ŞH neZ:9lup9tNk.`hl90Bb_AFB/Ėo2}G[tk9D+\S-PzI#J6R/7͚/4zs)YatvނvG@!0=_mt.fҔ_(9jxܱy IŠ#Nzw26  O"DXVn@0'=.9&fjj6Z(y7w{K8Yl]1nh=`Z.$$^[O|[RSl} SS~3'9CF%r4U&N- ǔdo21?W,Wٟ{ER )s`nͲjٹQim `'p"w(%Q吡 /T%{Nen24Ҿ)> %CT o{nkjl(;o%c&='1,sV49(XFw&5{l8I axm4}l _.P;ۥG2fDҰQe]Im Ϲ b&wtѷf_!  quVewWI!=4{pRP. B^ľM=v U&F{Scҳ28fER

    % @O,>'`Rb/a*vx|ڡSv寈~O1ncZ5hWiag^.\D!2֝XBloEruz&Mb`([!&9fb,^\VAk]+<;҅82ԻbiG|ٟOmZ"Y"͇6昛W5bu.NNr\ZD)ʘE %xe'* ߣIn7nzw4n y^lpHجΚ2d2aV۫3ᆉ>|<\)?,ԁ_\~[`/=bGNYI!X;mM F߅C=cI@sYxΏ:v psE͔MT?>^BcOI`KnLx RāqIa*f+*;IǕdrP:ӷ[H=QVH#+;abJ=,HLh#Nza+06/ v3߉7M2~j_QJIx%zE\t `=No@)Ma50E>\r4'8k۲~ H~Lm а=V>bqP>9!b n@\,ு'儴ƆDFp^v8v14Bb6|yW.Qz_6"4'ז&9*PT6&n12NJFZڣ(jfw7nRr]$hpNOC&$S gSAJ̍U\~Meq=ȈH;)[K/=wLMΐd_&s .ũAO/aD!l.,bd޺QKPr8F*Lf/E0넋|jRiIz]e\.4H[6趓',h24IqH9 X`}"}K+*BD51N<roش[mmV4|hͱ0 !3aJJh-icXu87,?i DDkWbc (wpcy|^Sa$ީ}3p:NoF[8cQ2H Oo/YtJ$6Ol] AŐ̲/ד- w%횅Y%|! SP>]OYZO]Jt&b=9 %TV1qvWY#UbGY LwL]v R)җ9H̻)go1}Pk|gÙnG}bk̷~8al{}Y5(=U)rzmi5RmBnmx,5AD7O]w]\!`25Ne (f05F|b[$J,5Mc`Ƴ .~⛠DEigXBb~LH˂u‡CbOP՛fS;Tr%DR sj4FOET69oҟ^KƋ6^<2Zx4E%-'q7eΛzp D !x!w.<.)bhȤ@~TUy9}ӛc|{Cg}_ꓴǏZ (p'(dV2h d ~]_v# 2(-P ׳vdn`E2X~jWr"$X1B=M=ABћp "A8)lb^9\52ӹ-Co縗idD̜Du, *Qy$̉05N!D}]عf%rTk]zp^XDN4BЊ9RB{޼@4^sIz&BbP|4n1 5 7@@Ү/Wɬ{*վa^b1 2h%5]R`7I_n|%T N,.v;Ժ[dl;c'[YE(p5D,W5vU93j%g$u_HYjGKUUG홺 [>B+ NfPȆeى6#kNw#!~Ikj~=H?\B1.KhdOzkɎ!evK:'k,'(x$Z|{Zh`z1ԠMѸǶwq+6UWdL IQȢ0.'?X}0Qhca90zMls@ 6U0. e8W0W%P$H©d]Wjj[31-+oo8F!G]jzA+r6Rb/\k vwݧ7̥ENH͟[ .X6ׅ53{8y-'A(rwtA²</g_(ﶁ9΃o= ȋ@At3{nt' 喲#aN̦Y 0T~_qchihG*D>d c|t:o'Ӷ(Z$&[;} ㉐3Ӓ.,.Ga:6) & A3PHRO|xzA {;܆Ld0Zo }b&Dhӕ6v ϯgV_*%_6/C/,|~; 5kp2S+ι>7v~ŋvGsmk[דMSnNA zB{*."`Mж< ocx3F'N k5T6\;lR/~mNNyώ8>l~6W1T?⊴iIQBpj&Vةa8(.)쩿ꃭ5j> 孳xvb:h!iM zdYGJ0l%z1ʬSmoƹ AWvC,k0 O!3V^$OdЧ؋p|{?zLJoݣqR,A~ם(g1p84t"-a$Vn:DTAbQeD3p5#xH\ b?lA)|KƯڶ0R_| aX{;Qͪ9A_eM*O4_XWė23}C^i2nާwx>~t8ʂRN#J^[Pih3tASoy6UFD`}uZp.Fd|Gmuy`A\;!8G_\9T!(T=PL$TNd0?jF'k B 2YB&tۂ $`+]PhO{aJ[vϹ#tO~js uY'aDRZ9AL}PNMiW#},~ htm\e&ߩlX攏ץ0L6"k},ʬ1Q 2Q/ٹ>> lb<$Daxfhy_iӁ.uL:&t:MzI o izs7@ʬ6=a5O:, VYp:[e=!:*ʲs(٘cyҊI3 Qb՞P'=d盧 0?ƸTȀ!m6ч̓`jaj뉮*t S7GbN֏'VL׈|H~5m8#'{4ͲY+YWl;CDm[ w&|{360z@ .z]/jʎT66{HsYW';+XklVe-0& {~.tm8!bC;ޟWU4s%uhVZI8G8(ߢ4u:6*p>FGt7>u;ct,j؇͢ OKD"ؠ`B t2>?߮;ľ^`,dǃ`IXҰ>Shsw~qס7J(!ۦr&jDћvJ Q^vzs_\ZFʔ83yKT1+9E݌X*$ꃉ vyA|TC5.·'>ͧ،WwNaW;Cs x# Uv5ةJ~߰)plDsRn8`'37O8Ǣ|S5U6\D,m75?./ˑfP7Dtk]I@g,_oy !8䯗nJ4̦y-3W9do'wN#%·+2I|Mt"vS!ŎGZ&2<.*o9@RRD>rCn L;2Gy'Vhj26Yh[>| TZe73rBeaR5V52%iEG3[9?^#)I{B5\5WEd-SS2967R[ ++jt qHj=Ĭ#xQSiSsuy:qƀ$ü{ t ?piMVPvË# h4*Zޯ`UY^d_,qǘ7Sou=aEWcؾ(Vw)1d|Pb\h7Ro#\ \ZR;??艡YB][k8_U#K{ WK bp VфK wWE`xݥ eavk 1ԇd1]k tJ:_=GI4?l,, Ɓ^{$$&Yt;(U֊z&mUqc* Zڃ7*Tzø,tu&\^Q.ecD&4T{nt#嵍kf@I%}8I"x^p5W\vHkRеIZF6Zarm^=ݸq"Ѱ]l)`7N!~*7Gu$ڛ_yY z-2AD1Bq9\5tq#cvm- .¸Y$UNg< =E<R=.˯m+4ɒ*J 8riy46Fd19]/nT^Qb7l[Bx?f-Բu'aNCF% SveCӥ0z&ji&wiF"x *M+s"S#N cVLTx=` iwY6B&lEdcr2o.^tB8U*Ȃ3`zˣq&{*硄]t\۩\!C.~.9Cƶ z- cŻ,΋#K' Wv+'UPɥ-bAV63@LV</]Z,,%voR0޿{rΑFޤ-tz.Pn$B QSL8pCe3 G zfݵ]WIG'aI/BC.m`;^S)43O*9+Kj,gI7kZ]Q΍`^ֹܺ]zV"wg:9_"61lyzxcaQ\Jnu c*;z= gnvO z.NrU*9n%^4`]GOb$<76{k'KX7kG[ɡ QVcoG`6+V>3 ګrP`O|U)"G:@͊Z+JzU(}Is ʳxy"8d?kQv<7zN1mjBi"e%3&kViN2Hi=#VYQk 5#Iu=d]Q vO/uh^}T`5 |cv_U8zZ!㠺@Wg tȱ@j 7ψ !FHH7c(( dqRoɲEs~[\E߶3N8ϺG Zf$ D%mA%xru; )/wwYlaYzu߆a*V<[ wa_T57uIj1˿NU=bxuEV7?'\#M#x%/ʙf~LYR DυB93Z*Mhw]Xo|ϐ{8_Wy8$"seI6b{<)6g+6M9| vrpҜ'I-uml #8D!pEZR!ݏ:1:jNM!1hL!(פSbJE5[]S`i''ӊ9B3s[0l0 ښl\ڕΟ tn-a0؋pD>1gv;<u )I>-ԟ/->ϽbT!x(ʜAF0r5`! K}uݹj`bR߫]7!yIk>,I^,Rz=J/곐3@,l㳥W†<67X9ޣsBa-n1Oִ{߸IhI~K82!m.?: K (`O1;Vwq^{7Y.S魌Ymqhʽ1-wܑπlB<S2OE\Q\:=**^傥*82} PRsIES(e[ې g*%'|K|dK,8HGJjB'L?W/K||-l1Q&k6 ;Y7 !^|`S}\2_|5!f-cO}.Mh]qj^۰@,#0z UU (d { f2)[/;/8IpNs '+H 1P$Lˬ~=[YݓU:qJeD^ n6ih3rY/}bq>Lċu|H$ΙTw6 FZ<0VGNnVw{UHvlKhqzh6>K&hmP ;ʰʄ̇+ ˼d!JEUI;`r^M/ElP_:&)Uᮒ+b2 Zcߜ \u(@ϵg%4HӪOe'dff.|)nw6:c+z+C`,"N2mwYfIU^fEo>5I @*jeӻdV&TN` | r9AڥZ˛l.EEU:m#حPMxkn|4ypF ޯVj^͸U_Xnı`2(:ڸ&eFdka 0Dd!gTW ͷ'. PXsHh]s e&<7ْ&l„;DX#76C {[88?3|m[}>F(PSNCr."yN2IxAy`>iU:)iXF[}/1*íW2$TV.h)`hb, mNR{p\>?mSko|.+12kM.mOϔhΐk=yeEI* Sq*2~u%xUU@mEQ*}e+z>sڸH"w ڊ BNߙxs[395v }CdxeoMǵ/vlR$\ 5r&v!/`Nϋ254tE=:Nˉ]P\E`[Mo, l1ϔs'%7wKD#st̀8!aQUj{;H+B^m;%ԵN2΀Jh.DN 񛧖9P`zahPD(ѤޜqӀ0N>8)S aQm]}fTQ0ȂCY&+:]}a3$#=9W?xq.) h//)$AL_`!qlA0ETF'W~lځD|=erq>-4`3E;^-=V(m J5TX HQw! ʸ9X5 xwZ9_MTr ko8xǯ/=*2JZ>z]Uq$ƚ zՃEڲ@mL`+}j(])p(zNY6 rȕE=grglWeb^G[ z6-U._c@Y6o;PM).:vC-AЯr QQ%8~F"5k`磖 bztn00H(ݸ -W#Q"e .{?^@,+0?z#4|8A6>Mӷ!x؟k2ͺw@D$- ;DM岟{(qzBsR.D'8y_WTXGQdt6 z'XZNX։/p^t]ydPZr426z>SD9Ս hyXW*c%RXh2%0H(d/@4"1~D*X+c.v0DK8`ֿdvHOAA~T"G6KL⿓,LBY'mu>~H-ʅb";4g67aIS +d|QRwyX̶opy7 @/f5&>J94y~ "<{X82Of2C@ ՔKW9PF]{{.֚>W>J$ Yu ј(RJ#wg@( zʅJޢ^^/'B-0[_J Mޘ?Nፌ5Fo>حa_n?F{w< !pHjs`/A=:.*4DI:0*g6i# ~N /U_k"/[1۹M%U/:1iI|9]F{n5T7Z𣢟[~ )o?} 7҇_LZƩAx *>T./( dom<d[H4oeM;G]ރ:ğw'gSW1hV7̔d׭;0#~# BMd=4VqJ[ېliz|})؂%~_/M1K(ˌ)ݶ7e6)h웊//Tp"=K/U67S,-NR5yb;@sBV3yn<3#ELÅsE4g'MDઔ:aL^*YD1] <&WI ĜPSN N: ,t5uk !sVAuHDK^>)AVCdJ&h j,U<^հ"XvJ`i:cU`{'dW=!w<'w;ՌV]9\rҔ~d<1S!o8S@ -2bYVDs ԡsPvX4ȺROI uBɋC?zَSj8Xnl|h!nRUˣgVJuG2ΰδ1I+(Xng1koѲ˾ճzPn@pH.bT.s*Den^CL{zJ R%9/y ġ76[] S:gU8:LCv>ΐCn)&:/!N.j*/j\\h}>P7!ӼF4J%NhhfI\CK &t3w%½nPqX`ɬg9A0/^xڦ!eUOzwQ@N7^YNZ<$Bޔ4]j+TI +$ԘMELvv0z$۽pծ?뾬_SY %j:ˉ*&3`diWזּWG5Q6QA9|3ϳ6Qf_vr$0TkW哵Q;1d< H ypx i0j\"nwx$A˜6 {nCZȆ@#G7>玫^!~8!F_Nair4wV 5sl,W*XN;9ZWcYfhx P?{jtf~nM7%-ZWZ9 )Mf:,$A=1}4IYO%)/BhUт"0*?MOnq .%@KKjeFh?|E I{"E?O:uB D'%fCfO}Zq[ĮӝB H70Fq|?FċCˬ쏚ipt)Bg\"Tys0Lih/Psxo=Iɲ'g1޶GxSY1a52U™-1] YK_0!J1/K MKl?b/ܒAzn&/iyϭN,.N%Jso)44!y܂ xKo1X6=OؔGhZ";XFqhFP1Հ'B)8 W?#w߅OR= ['xO#;y e۱i[fȥ㯪5QY!Co0ՑmY/\s]צCp0DLID;$dAWvyO5}2g@hꑭCD@<09.uǾf诸|uMr6!5w{yR3L:Y6P烹YZz>a6d`glviXmtsL2{Vg0%t:fi'nЗy'bGxR uO:~V?=T202Tř{M8c c ~ .;b'ud5~ɎFY f^e/7> P%ݞς&X%BUxAK_QIwqUU?b#T>1(-k 8> nkY*01d:GwsVGdZ,d(cɕrNz5ˢ]IEOP>mK# )(5Jxv8/jXᎴ"80Q<;X)^Sl}š6O_φ!V ȸό*bzL!Skwn#sf L;2y.9qJ*k{+< (CS 2ۏ-^=#ҒUFme~TrQHL^dŷ^g~$4((`d <+ , 7k̀# EWv{36iDa󸠞bf}R9P~v-/EIipy3vCy^ˀHa:;s,*m R:_&b1EB~^Z.K*.~uň͋}0K,4⸾S\H5 %(˔&"mN , } 1SΖ2*s+Yu|@}2k| c[YrH) {mx3+^ hR\2ߦh~ %d::[U1 xr#˺C߬} T(J &@Ppkql2MJ3:w)ȅ.[u|Kx3B^Sp{kУ0CFT{PQμ>HL<]!Tv8p׷fɰ-o{4m{( KCճ`9ׯ]3 WGyoSFUk>cfU63nOHU `R򟑌D BA(fxÐ.V $YxDc BDe|`~CT8^Ya k :Ip4lp%(P`W cFЁR;&Wνl>kJ0>y6.]ćX藔aa T"=qN:|֢"dHRs0cv{LVy4cla!rƾnǝ:,?J2S 27'auj%mN)0:Ɔޓ6Y=5\{Lk9+R>x̽E5@N熍 ^//>~"S Q2)L&M8\6P?,kq sCaFSqJžkW@vp[s7C04x:Pn^B.mWllVܯ6 F hF`F[xMz| ?B4-W.$D'#ގ) 5$U]7͙&#27vTԐi iQӸE=rPpNF3/]巬#YEWލ?xQF:TLW{4҃Vٰ˂eǟ;?j۔àg^`D}?3vNt0 G]i>(j%6j.5] |k4V/4 s ^垼*y55CbGqHXlB&Қ7VM/y-[&S!c+:^9\)6{L`},|snM/&yw; Gur*9!hRt80zIԢQᔗݍHf-S5E4Qi}ۀ `1p+7]›!Ig-OkQ4:>k5J.i_4玩ϧ6DG[FRː(x|iIq>AXJU5E* c`LW8la՝zvr埽sF$L%R R{mP7rBoeChɷ7 nѫ|H֖ ͨC(l{rLe:"A?p(fl5T eswn}m`>["@6=%IZ ^<ԛ7klTsPsr'T.C 4H/ @wXoʽ9F0¹PߺPVؾŁwTȇLKʚ|x޴t[ j4zaX__ "DQ2BbR3ϻJtEg_\ ͅ%Pڽ0 N#+'iߕywi]k<|" oR|@ ߯Ţ5d,82+M/U2.6{E$ DШM3Mĵ6 ;]w,Q{M_gq~sХ}lB^ř,,Aqas6YI=m㠋pM`,pS:'+ i@6#&`p;K&-AZJ f\7 7 ČW{G ~P̙l 2~2kхq7`\,(9vh>O ^s๤ГC2TI$:'n1g,<{r>W{'Dnn>n4{hBBs $0C][$|Bh ٷy`MVJV΅h [yyth\AeGp_pyrDn.,$c DECDV#ќBaa&ZqԎ`[qd-\$L;h;:'nyD! %#7$9j-?7N',*&TF5[iv?7B'@w[cCܩApem+5DnX4G;o{IS[+Mej8vap儧\v0Ti(Ça\ V~mi JFu%W -v"JQA 7̇.QWA#kcqa>o}^nMYVv_M #<B'РPYG KA?ov'9x*~ 3eI4)3 o(mqG]Q9/4n*]l$ٴ-u5v&on.8@ vH8;,T=1봬赝Ph<)/tx<~) f(mHz9J| ї #{7kn@.Q$~j™{hs[1*MOa5ؾ0`k),P fʰ ,osQQhYd,OŨ>7}fm)zK! 17_ΒC:0&W񢕴S5bd)oq%nŬMd] J' H`tepXB-֞b)3hXKIzEP5[Щ-dʟt|Nf8>1kf߮ٙ°4AxP 7B4* L w5Qd/5?VxBNRWm]௄I|+]Rb=ih#Ы>y=XI̦~ 6g? h.ZJ8u'Yqo4rۿ .0ijnʿem':޲qHF/+2n'T--e* )i| <Υ/$9%-T h(ߞ<҅ d@vjR5e*ygMs*~:\vIǚ]SzE^56XTTge.<M*.<چգT3Vq:+h6q9Ϧ{^AdjnjaGУgt=Ld1T'gD?z1J;S=ebvw|D/,BTǏl ^5"@~#g0wGQ"?o:/sԼ'W],%-\خȰZnвd |6 zW /7W]I0{~JIlTDvQed%DItqǣ^$f9|hdH/)T-"B,nOSR@+ (XN<q/`K 5O*;)dϭ;cylV =XԀhfwF$?"ƠG-]ILK7;4mހhD9 8QSh2[ԎϢ#׆\~F l|g_9[owM{Ec4u#Թ.t$C{%SN!\LPܴ& ;'>5tW w.%ʥ_t:$n~Be~YWWc%^!rel2'd6}ea*bő"6:Y-9(FʚI? Y&@]zΩHۗ ESOI)tyg#12hŌOfQJɲ&yyE!RZ{`gӉ]S:ص^^t:(.5Y}zH~';] tg eOJ_.o,~XDv˿3o~I6w8vj@*haor*KoCEWN,jz{cznH se>VrbpsHw)neGb/C?6T!#+ ~Qsە6jOJwL區:o(9ZVb4 F0sGٷׯ$#]L >.gӦ3 *V!}O6"5U0$LH"UTO 6*+RBÂ̳!ıJ3.~# ssр)OѲR~ \\L^O&%b&1x! >>q8=dn6D@>M8xcd U{B<ޕg%˝RCj}Vߩ*`fS5HƢ^^sՈ@YЅ{~=dJRlD9Qk/BݨN_`T|.1Ќ3fceF״7R vS{+A~HAǙXFޣ4#n0e|d#m1@H[.CzCCE]c藆9NtII4Ox7P̸L64ws#P^YGu!M;8k,D,~A1K}ԕ1;- o7\Q#"$@pl5SDsw!M{ uCJ ]^妻SUAۂz.&{VŦ7 ÆM(p}Iˏ7_yXýơ hŤPCȾdߧV5tbS=wH  HI}X!x C[=UOW:V2y-ԉ|q{W;bADRXzюM:H CK(Zu omL7ihТl@;C=6p7f1AYz`+wB;wy;T60tu>Q`Vs k>jY5Hv;ŹbTWӖ?: L~¿$R݀Nh]2&RA:IOdO{8y•u&4;-C/_r߹V#q~}4=:K% yKǃ ϣ⎶1m23  @Wl2vkHc46vIJ4=1LJ0#8 Lw=_,lbep+5 ĔULaKasAyɋ'oCT~NѶG!j]ՓJ%lV&_aG I1mEc:Up)(Hm5-Gqt d{HN-t"ʄkKn>ޓ`̓ͰI*6v/,4/LFjgwJ??ċMQ -q6!#gHߓ{^k t$vԉ\՗ 14 n_{^5s0 nDEm+\3DBN~0r8@JE= j}oQ GOAO&(QKl vګ3 ƩRͰcg&M!&-OWKkf6iPCXo#AHi>Ƅ! ,d[vBCFgL騃}!&)Q$2ß=a “.־ŷbf5-R{m.b+>Pc\_Z횂keMC5Gl:w7hUe ӅP.#J6Aicl Sq1~g]Bら`4Vc2Pz÷릶MxL&PRHŹpKWk/rۺB|l饷^fJMRѮ'4 P8|X/JʲӦLZ|ږyoԴp9 C6ڿM9XS只 :cvQ')KCj ƞ32'E-/~ ,q!;Rdݠ橸E{S{YQl;:*obWq-_r--/:‡tGR"ZN` P暲Bi(w]1:'oS_5et&89>Uo[D6?NLj`[,Lfi=hf-];}4[\D9.S:*Q7&(lRǡC'@z#سႍ钱WP康 YbO塨"IKc?Dgt jEG-D9*Q`o&(Oi8E&?^M*N.?e|Y',UrY_NaQd "RQsO04?xjAGcjDLƺ=sjY]]QM/~E@8 ׎|fJ^72hfŽҡv--1++@Q)Q>"wL#e䴮 ė.5}E±hUa$+H)^I@i"apjk -XQK/g'6UfVxϮ$|m_nM#z%ѹ-cLFۑI~!< XB UV8OV{ң1RWb;r38nu}z5`<2~ TW ^۳ZT|?_0,ʺ99?< /xMH/ۣ}j(al<`nɘhk+RW|-\L؝f- ^\n8zE;p"I ) wT%o~|o)5y veUtU|J|+4jțGFёy%-?_; v7 XsbP&lj%xG%)"c,E}$槡, ”Nwh7fa^2[ >i~sŔcI51فCa BUjVEsT>$O}ǨOb_lGɑ'E>xOe Y͐j֤jb+mu쯲 omΧHeݑKL9} $rTSoF_m5_8Us{EH(!Fk* Q`[=SIyP͓)>l2,0eXJ](d lż(viI+d;djL+PXzvw>jn 8"H&ĢFvEiJ5TJŔ\ze&7 ߻5ϱr[SSq/]DvVÆ'OI:llg [[Ct]L^Jt t t\>:+ 70fNL*:,8iDG5ˉ:䇱_#P0G*6ftMoZޞ9VڬNe&Kѡo< G[xǾ9jkF=擉zTXw?#-6Rw 5&P͛%}xzWGYK-ɇ)W[$`wa6_oF|`|7^-nJG? 3-@sX:c 4ow7w !lT߿%X$ Ƀ0QYGJKAqz kp=•NŹukovt)Y&5>Tt7^$H]S~Av_fϴjIJyiHuw jp ;. ]P Ec BA.(y=`y>``iLg֖%%Mҍ(/dyׯcY(5@z؀5@v|]4M-sz:T*|zG)$$ xl{urF:?<, QJV Xs#"FˎI |5u5N.`QCg] 64`Ȕ $F/O z6O=)1Qԋl*k,c~Zh{7Xj積e 5T9"e.I5*)i@E=)a=uvٱ>V }[ytM Ѩ*e62P 0 hf-e)ÍpFbEG{J ~`I`^&m4oT =0 oq30}xJܭWFyco&?;+`b9C\;SLdvU /`wx,)J)ԅa C*jěϨgg q,.  PVabW; VءȗZ9N^REezn%$ogzV5~E0\l?kK߲yqpn.+X"8w w9Yp#d ,X@JQwm.ƺOA DEgL[PӄfV#qӲuYTQ0KU;ޝQ_EYd떡]!Ykf|§}ysD sJ;%|o-mΦMi&wgڮυ'.'g 7Sg#H:I6" 'd /6zcBq*>Weo‚A߁jR5@q;dT ׫ ЕumЫ-4J?+D'!:Z,:6 8BzŖ>%ǐd;%ȻH]B'ߵ9o]B|A\ZOtIwX=coѭZ/rH-3k7k{|;c`QWS|\S`1@?]}ρkERŘ3ǧd&NYeu YI&{B޲GSv8L#ç95BFAD\-/Pȷ_MK3U0%;kB(ÄGRbVQHJ|Eb"}dfqAOIejn+~#ux>j4{$vnwW'6YЫ$Bt[OGnX7!W~>u _ncy,Z:ZiR;vt!I`W(zg9/OV9Yw 3b?BLZ"zhD/ݕ{TC  R$"r6%_H XKO8LՊDNF0vzmybYp oO8bV/ ziZsV!.(U`Ԛ ˟gPw^򚺞mmƫKh1Vr7&#m.\sVbP=c÷8KUc7=EOWZNeUV7 ~~zIrA 9An㺷T^PPv\k {ʔ @_{.M=nh#^rx/LV&=scw.UvW) 1 J&td#Kc6ݞU4ZNCp-<\U[0_7ɜoc'U srJƘXVm+SHAaA JQ)͜u<yz67`i~Tn3S{PKt lbv( 2KR,A1Q`|rj/o>0% 87C7RKx|Pw;6l?Qnh~Y }4y ySF+`CxFc{$~Zr[TӆgP"2h c#̑K6Ƈ VYust2 <~a .%#fzҫsJ߉szZlUWǷG^MBqA}_:CP0 /`Vj}菍r p8oa);8OKC0@0]d b##-e~?O Iވ(s$/MgB^A+aHN1tBsw(f=Z4*nD׼E41 \$dQI ĻORψf'%E'm{JUA;T"lEh=i}Rw(X|rXxctZ(mM3LuHHg;ksJ-ܓ{_|1{yOPP$@\cIct= 'yv'MM7 Sr* mTj3,DO5g'1}͚w8ngt{ Q8x:Z #QjrW EԊHDISfkgmj{+Gë6 #xR=O.gÝ16+$)sh^ra >U{>Nc|:p"81]8 t~m_ya=+)_g,`sLҀՁڤl +.ݯyRJG#Pϖ7Aus >ؙI,hUM"XuVilCBz2^.sy~+ Zqrۥ̪-}}aѤZEwPF*ndlUHPEv01ZKP3<|olZ?j@LGsyzO=+6wUB uEN)Iv'} [=?6+av"uI;ɒZ'ũ a;W:@gC!hi2" ;e4l? QD/G ;r9dLGb$>:%"zm pK}Qmz{E 0Z5ɜ~@Hm:h,\ci5⚘Kn3sU(-^1Qq$s/;,~HUZ1]m>?Я(„A.ĸй'^z䁣1.ꅔ;8L٨:f‡vh % %Vv8f'B+(.pY(!oǁjr51&6JE\>J[Qy\{8Zk\3$ՄfoI_sCcxQ㰇NSiƼ],H?-ƨSyb(f S" PO*U1&zFhIz'ct3(eI2Q(v1ofEd{1c۬^=N3W[EIVK}Lаb^ǛJ}iH(.X Ɔ㘾0ߪr76$PT`0rrȭPws>$?bFlBש>~H׮soh\nx@+!iUf֚y'AO:$MU1Т ͭ!18NT/HTDgϊ{G%)dϬes;X'&i>\S좕t)ut5_ívPH|G)8kdp0XOӵElk7tɵȟ"`6+۔Fӑ18`"Wy2p/?@ 8cp>/]Qb"GzZsϩKl(Ag,$&?6 5kfs?-F-S4Us{c)thMkr8o) Hy-Ow.Ϟ̿W:)xOitxx7z97c.FU<$[Λ:TÙc& e=8E&p6Êq*$"eftQF s3)gHKtcdZdڵս"]kA\0jSi'^'K;Qo!](Zw_5=9(~kȃ"Qɻ2U)t d.F~}g©ysW~A٤|"H]nRanhcc> O|}Q.G=3K6'qF|:Φ%pD/ .`Oƾ^Fhb0K*݌M9/K(rc7OYҕv>PI)\#g q *.>OA^g8] eڷ<~2,uWCy;eLo{?_l~H& M3+*#Nէ`d· Ҳ1s=hv o;yWovP&xRwm.v(bru52"{OGlkK]~p4V OzFs.}EhvޑT\=hGZW59}1 !(BQB7N^A±Zʴ3z3D0"%Pzs"+6_xJcR2\DId7o!O-'nY*,NL̓H  P5[XQ~*>Tt_n<(,KuW4t^$e ռ$r6o>+\%_@RLj)]٬Bt}O"k8aO7N[Ĉ#.e8i$|d>|h_V~%%@e*yk5wSWlYX ](Yp(޵!5o{0љG(A'k= 2͒Pc*,g.7SeVX4f ݡ8Sxo$ 9%N'Р/p<uf@*}3mzXKA,%N!<Q^]M@?èe%({lr{W[ӌ?YƉ2@7BpDggUp\jnRhQ+J=y+}CARA1Q`VbJdIIw IW۷M0LpŎ {ˏp^0oQjW?~Fr"\$\5~Al7% oFE!d S<4X}Oէ} +7\ {*".MB:A!yHRő3hi ԰bUA盇0#ޜ(=c;燪ч0v|\zôlN=uqS#4nvcIl= J#K݉3A5s1/ 7ذr y:]PkTRww"[{6(ڌy;\e NK'XD처 ^enj1})pK>xaH  `.O]cAuqlɔTJuJh!CDE$/p5exAz5pI,,k4uk)h:ȄЀ%c7DإaT`\Za GU]nZ]ӱ~ffX'Q}hIJ29, |9m5AoD &ۘG-য়?B#1]KqPH)pJL% $sFF  >ۗui'o>Cn;oO)4h?ܳa#B{ɐCfY AvDfԨ$X|*OLj+"5U1HSJ|+B^0-Kw}i-sv1%DR9{ڜ5mx>_t+qRjEwvt/!2p䁊Yn-JW=PUZ!QVX 9Yj+w{I{ "4mgƎGQѓfd} lGXVsPڟ[7."]6VM7GLWhք$5_Ps$ Wd :aܔYtDTHh_e떹_8j,[FfV.#kW~1-_ǬU˪%o˷Gjy$5CCJJփ\c6ŚsX 2*X?y: &dr}Jc)e]7[ɰJPu?94%) s{\"7[PZא<|?OvDaxs@BFy5椸Pw<*}`Hq@p|T9_>9W6`\6U~ ァ|jɩD񒧳 J< S,d߆u-yh?/մ-  )PWY@Ҹk^`~r jeFE#{]G,BtULyp݉ui>8KI+ݮjl8Qmz si?I3HgOΩ*D\]q#wߊqD73P ]l}pvTDN=N;S!.ؠ\BFw&Mhb;;m7~"FoF2L#g PXu?*,@/#;4fApB+f^@:jJ'D.+Lda`zA~ *ͦ $KR9.uvo-$'`gJ4CiK;<< TDe(Dfe0++-Tz?𯴊 ! xExP/H'wz^@GG-`.<_ C(V>7~\}1h<Πh0=xu\W`t۵?1B[)6|}x#K_S^@(&?\aXu+}!=5'H#\o``hIom[h@Q󡈜X1!9f$)aH 1!UV{R`s]6ji.dywRܰS晁rUI0 y*KZwlCY"Q 90TbU,3Rep>k1ϛ^JTzݛpn(e 2ώ_ǏK{W{m.hCAqtisܡm{ݎ}%R,عxJ@HuF$왎TiruLӕsj̏IdذD2v3̟7w'njSB"M1P^V@x*0`r;V+ӱqP?M!cVݛ)1 V NxlU:HqMj*Q8()%A[xV\Sa6'ȩrZ]̥e4З]~,%HegX!Dq4YdxÓiKU"ypr᜴I8M+i>+36z/d!|]QŐmܩv#W%E[!q`]-T4Dq\zusUktKNa"6sN*\}*GZ&*0+=ib9rk? V»QW a}C×l#>umOd2>B;y9 c&I_ izئi*;&׼]x:N*8|΂Mj<9]uW~]?a{\b5>xL#||[4i."Ӝ)mKൡc=m*jy0!m^+ gD4Tt j'}\ [\Y兺 !Yap.;3T o ň l>(웲+k)cW-ŀU_&J%bXҌ@{{TSv`dy{l`fvU+w_`j Vڬ?ܜ yx0weo—!R؛h`TI?f\Js(PeJKH PfӚOrh0WH9tH iT!uUHqݖgkF;[WZT~꺔iڮ99Kʜ/>=Ēw)vMxAu~}J9P76է.&2Ye|f0+ Q9zة6sl H%.BףzjG_ ţBDv~̠ r8n\L=t=Z: ΑVޭܭ $&&8v ^de܎'<qqCcBR#t~=yf(3JMy#orWD--C鞮9Ac>BF[H.eg&}VuB$DeYKnPo{~}v=ǙnuB±GKHs`B7 F[Ru92ȁG,MDC{|]L%>pƛtέڷJg}X%43}v_E'Ml.GXΏ3_AX2UԺ.zCMo iTI8C5A4Bz!/N\}|V.'#F5U*A0@463I1jq[t74^sqyVE0-^ xu jvDrvyciHzXSHLN&NE_"GJ@~)+ )3o51<%O`ǵ_d$m*qΈj郁:l`ǚ=IOHIX:A>7{)P6s6U4M#ZJBaܜ$Z*b4ŭ}rQ[0"rLGG`pfQVpc;]JLSTm53[ҖED.CxKB\8zĖf͖D-nm5iظ>-7ϲsHSޜwvg褆>H<`[ILD;("0 Z}x|a$)_N6̟4I%ә bY_Ed Do`A6 }^kxـ$5ԽRxhC=NRhgAgSPχ@t&;ѹN Cz沪 zw8,-Rf*,'U1nD)ɒKN :KwTp'ѽ6Qf\_>mpmdQE'o"BK r9emT+ p" Tdz/0=JU.u`. t81j>_;Iw$LkԯлU֗xd̸A@3`ܵ@H#n؛.q'gC,ŵ/ ];=JWuuELN@:ǷXd <DXITT+.R> ~9#0Y|/#pٚ[ðJz`5at;[)$yYpKadIE;7W_Y導3G9}omfw>!!~takX`᱘HRT%?[Sc{ޝ6Hg1\0¼ Yۇ(7#Ig`G`0i>FY}pC 8\m Lȼ>>-̫Kzy(Y;iٙgP4(e̟~q ,%}{g߻dzvQBC[W-NY,wsGJFN@Cto A"6T?>r!yoV޲P~m(AAo WE"Nifēُ-5i]3m|7/~?^W`5Vo1=.;Y~u#˝\vJ-ҲNLİ_^v]`.|hr@ D܉D9{KXgTCѸ?F &[}Ic]u_\0B6K|dP(=mnyVQ'f]| İ?*ROhk&I=Y 2N$DgZ S̘xh\eI{+Su! 쇽gu8Ɵ<Q 9TI=PhiZ{ƟSu& <>If$F`RzNb7c M,(l㸏e`7e& 9_~.c92m1'04*"zS¾xMՈ嵤"O &{a1xֳIeJD0)u>P~0F(T 5e){nLL6%Ԏ\LxIC6tCwDg[K3wc j`#ƋP*8f;n Y)}3pwBG!X#MRa^Vɛ4r?E}>dÊt\T 3(+=TWSg[RfIόO'-W ƮI*U*7t l.=-m*"i#ToF_RS! {µE](@8V k}%E^BTXi꒾O,Z'7Ttq/Z<Twc0r5% ,ё'u\FIKO2n|}4of(NYX@͑jx^j](/‘%'$i6_-݆ G>εp>Nb,caA|ҶN%ys"6xe- X3JMCՒvS&jRpU;&W_z1Ğӱ+ʝ3[JK#D`IT~8Ti揠 t~Ya$%i\O*鷿{.#L#_*(=(0ߟ٬ Eq B vDm5$Ne 5gRBm"HK2F_qGs]zU?$-PhY;GmY&rd s2doTH|])q,1RphU|}160e͈^u=sbZRãrWw:ȔFQY*nK|#|9ʱb2 pʓ=,$W_J R 粅e!UTĐ/w%`xrJ5lRI9چ B㏉\ze0(DZCs1qN +=Ybv`Bp jۦ"zF~7^iun 7Vྶ1=R}+ॽ!9Lnp>-5@Ok1nr?EU0a7̩݃Cw 1'vު8ۋƏ0]b&nӞ'"QNR|?5`[}.Pʌ5yoWT!crXn"tsyg wGzס%p+򋣣Cꍖ Vj{S'2"udE4?aNZi,1YU+3)9ލL%%d*vNəxfs_dX(f# uy:tפ-3{hUzJI8"Yo3(D|AXZ|_#| Dt;l2 7:cudųs=D~!XV [eJ M a=o tiK2AM!Ãr)7tqȻY3Y~ V-ذgEbGǁ_tD q?oШ{Իr 18@->gJ,-v{#4TkmeY 4UА&CãOkFi+ =xҭ6^*﵍ 9> q3{j7!}x!J 6br.ꯥSȶxJ=b  zI0w}j",I}etV큛RRg4o&G|: oZ# 9KB޺^9FU}C^dKѱ? e3/d91[.>ST~s>Q.+aQXT%ոas8|(Gֈ `;W[}Ae0(Eu5hME3B#FU1hg<߶0(%YI;'KC3X(cn މ*S6wɄ/ty؂/ pN.1ez2\M=yt/W7[;ݥ*Ʊ4+.Zʸ*< &VATmQz81d{`IJ6(zB2g#z~}VXrx+$TP:ˇa[tƎN; |B)lHeݚ;(gφ]II?sD96X;Sb=N0M7 a :3j-JJDp&=WR,.OSq?e?z'b*x ^97(<URoRVkT#E\!4@#3GW/1Zs p$㒙IXL| J>KXѕGeQo&Mь׏)1ԅ2Lfl|uXQea{ytՂ^h1SL]BCS.j7(#!$Dx"~Ku~J.zRX Eآ{6ySRfJ2}l뫟]8ks?prH) |jR @PEѯ$ ]fY 0c%dsp gO(7vh $5ʜ9RgҀ\5 F:ӂSx/Žn57&^GӍev" \q#iՆ9ГcJ)[tX+Dn^"4녢_ Skyx;\ȃ2}06Zvh&<֠6+N9*Zk*i6W-5}+46/%>~ecv"%`G#Nr$T@_B):3ύ,Ǿ"&?S4]gZ߇ӢhOF/V>Q5ߐ?\Bj t꣄C)µ>? =3= 09^H %ᴈmQzY5rcb۵khg+}ڎpop~f{=6iuhT۱`~uwA7Ȑە"-/AF1vjڎ>ꕸbҲD~|חz=?qÒZr;M-27YgF)>YO%g$|iNISi,F1&H'$(eI^>\o',ĻDBc{<- C80Gk\ b H뙣({.A$7b / :T1ZI _HMCRrۑd4HӲE VJ h5%謜䏗Vx`.1\ >R@7/qOK"%z 9t̏AtZjO vh|}:£@~>mV!V4d2 >E!;]C_ud8U݊?LB"[Su:d !k!8v7{+L+ޱL]34-uCsQ  3sg?=ГcPp=D7,f$x-O}BA&?XB3VWӨ}IFV|LK)O.֍ܸ겞h5:^7 S!:<ER\9-]0.'dgp~T G<" 󬃃*/څR̓kMh_FBb֨.`- /5{0BMHpN:8+߯raMFE IEE{ K6 L;bl-L[ՋC*ZTd*t,\9hh8/5x j>zEY~ C?/*j b"c>j ;$ævhJ/6\f 7׃%v:>7 ܵ !jg0e>r@nMeŮ# r?"?2qN)O(E_EK.E0sه̪t/8-G[lQ> Wzc|; _),yV́:M#<v2$Abk9N|Vs}ۨ/OJBkD&Loȴ،&Ra<=N:v[/ՋaK/Y4^TbBYT8*#^aAM(ٛ? ̧&o\6WXKuسHQȇV8ڜ:5"#'z[:0yri= wh T_~W8trxGuy+a}=آ*b@3"@ͭ_ԛ 6S*:p(O 9VBΜ+#X YpL< [p3xSY#>K4M;LʡWy2_Zb9zPYE\/!Z_Sz9[f*zG5?K 6(:G\HuGXt1kD,e E1͡HhVCXbզ/zE)Di/ ~B~9:9_|-^s=1&^ av7ĦS#L%CGELWdw.0VY p,&r41>;Qۥ1㱌z-0FbAD,|P4#ǎx<= j~6SHz|_]LemD RPs%ʘVK^|WFUXۙ榩NKzwp"v 9|vJ:]9WaB2MCϥkB.B8ed:>!^r;8BEh&f 0?Bxޟnb5tlT x:46"P]d<~͢KdBG|֮W1vN.UNZf*kpH«slFDU YF!_`ucouk})sBKv"iq_rZ@/fx/J.6u>|T@HUirbk<^ߒGZz3^g _s 122J{sʧ8yo<<7.ogIFG{]L7WJ߷h{6h8>U/y. h]VEu0ԙL 5>׆$\a-_fp[]cY?jiy6!~1[y^I`]mfk? oapa` hVm6h_vk_vra\؈,^>_xE)Ĵ,^EVOkJd#d*Q2S_SN\8 oWM*P}̣ٜ -woԻЎ^ ~&') oCbi2)pɀR4HF*s5M?VƸ&Y^u`S}$O 8^+P "x rd,Xl_@g?pRk6T>t@x vg|̽ tI0 fA PӦy-lNxֶNeD"j:k۰vȦ ̴1@O&C_?;.Z]qۄn}&2Tg@%ܐx`$B oDϓbN*f^nʽhc0py"J:Ne-<\kb(AU2 Gx]Mb`tgYB4T^$flIb dUCErt4Qz Vd= 8^K߿ŹAFl`"m*$skD&H)i;LY?=Lᙻ/5 ^ 1N-MFQUuĭ68P3-Lj_@ԠR5b`,^g|.EYFE֖e HIn%W;s7T B[uajZa1m/~8e=#"]A%j~傑* y0?<iahݖwf|ݎxDXs=}`b ۰3eȜ0G4.O17 `j*~|,cǵV:!C£mv&K{ky N@OMz5Ǣ$sM3~ѩGT4`@e*U $'٦:X}t@$Zy# o?:lLx\F%"pe8mvn<3DV6RRC!Xłn2{Ztdxy$`uUmp=׵QdP uyJ2#\nkDt)hHǼ%^Y7țӭelf{58%#:+)5`۾h@1~_sg _yZdf2te2lHy"J߁C4viu$blC0W ^I%SuH)D۳&qlss p]&O}j.j t'*0~i63Mvҷmb&jض+bOnϕ+O/{Rdj{GR ձ' 6rV*]%"am#lm2NM[<H~i` T|G_\BgZqP%v96AφXYkvqTf GZ1N!2v6["dYsGjB_BB)sT,c#{x A ӎhy3D0%q-E%nXngC/{]*eLCA: nO+aޞ-ÃXD:ֻiUGd\2E,55c$z Hǣ>C7vM݆/.]W;HVchbFWEh(D{ϒWK/&C9C΃1O(v+ܫd1,g 4On ΰg0[Tvࡘ^SIgCb2 Do̝: k!Mol fðg8^Kϡ (%pAVNP 1hC3R/8sdiu!'X^G&ۭpkP7?ez+*Dw*:p`: ?,bh_F4fHv+&cIi5H 47tNSM(Ңv ͩ_x6:.UfT=́{Є1,]!~˦ݢCO ܬ13dX _$[&SAޝx#C/%0O%فCIȪ|ϠG~s݋ϣf ZGۈ5w5^Wku2uo]3lgK]xӲkȊgk,p˾er|2e{@&"2m bɎmH A'eG\kLFV㦮%Fmtm ]H* R7zLЗ^}⨩؎yQO0Dɓ6X?c cɳPSچK;|w?v&8F0箸4FGLu6۶3r yD4E5w8,AVL#!X-5c ʒ~<%*$ a0j58e`ˁa?}\e\1);-59?H`!+Y$:&5Xȼz)抖++4aF=A%V!T_Kp@ DFjRg:l87cR&JdK!\X8=KkLj{9J:.!qdO3UZ5CІ4C&u>vVʢ!\dticDt}я3X.q# 8/ Nژ*a^N{(s9y^F]J TJ\, ,J͛+ֹ9} SzB.ǁ@7u%EߦQtP ޴mCB['1p-9x\@ m> '  rgM]q1(Kú_YB7Nyxځ$W>Lg(e D861@4qAu=ۇZ\Y6+!͉gzjO)jl )X-8;fo鍵fRVOIdlbV=bѬ2 &e((%AUh"OE ",19g"!z[RTVN+~̟hAUB`+A̪Pz&cq xG9rt5Nwڄv+ xo8;((S#ud}.[b QiP0/-k|‚5f!R}H]7(0#pFl" H3FW'ps;oΩ/3oL1YXåIt&lH-oA7Rr\H M#{XEӖ5TdcCQB*[-p^n,ׄ)AgЪdIPseher"v5b$ix\&l}%ur͕ `׆ Ź?',at@ ?blJk8-ڡW p}TE6gyBX(O"25' }c)>J>mah@B)"6H]tdz5i> r0ya(P_~5܅Qr:]P| 0 NZrbp1egmEhi_ո5*nMWa)GsOܞt"A{x\^[O;6BЖ"[iȐzq8y8= Ǧ8Jݧյ2;ӓ7qN5c^Dz('>iR^zHTP4"q R6(Xqť=`wXPH qn8:XKDܔD& )$鎈^6`|U=G틤~, EIiWR%\IL[d-9nkb#c2Hzge ;@POM]/gr{CT;:{rr j+{=IBxwKq|+WʞU~Ȏm?[>H^IC#%% NЋhEK73^oenPѰ @T,%zW/vGpArD dH^z ݖJ 嚺9xHGR3k]FHUzۧшLd ,~ˊTl#EOnR<1o}UG0K4ʹyXGaJYFFtk^U=S)"O^ m }TR[x7Ԥ11/M䵦@ *[-3&5Pj/ ?w"tcN,=.vQk4eB, fg$YVX~t:DqM@y*z4n`^.4miL;;\mwjcXQ^|BDT<9-Sv,0kB4. g$VjL_EVY5k 'EZz^~| *qײAbc,qu05"bѐܧwS 1˯O*axO; -sPaKioiߔcO&xBRlՔmgfj/rHy7 A/ }o퐵ҹW;}ȲAa,Y)k/a-?HV@9J4)9hspNn؝g.K@D9'mh* \Gs|v0X3qw#JGl-~F 9|i\z~STLY#w˫zM)*~˧x2dydO,Ky̮w3ίQ_".ͭGJݎG M)š(ىE})b'J7הJ{ G UZ3`KS0t`o]`ppH@k52q>gExpf `>tc `C){DMGYgl_cT]>H) ]2oqd/ ig\G%)_#"FULdo+G,5Vrs͌2,kS) T-D=yEoRX ٳ'ēyee J[iNu.xqD[[cSb^!')96kG&ĕqvko~eeD||I=%^/έp p 7ةG5ߖ(m\"g2H~D4>ha$t .bGV8Wvɉd:QY:s{yu;YG7Bv_$^1%-Y1x&v`:BkQ@OshcX GfCXҪX:gdYAe3Aۏ<}f T¥@`r-iKA}(/p\;;Wf!fpvm3s[z9h})?`IGI6T"c EOKt8K;+"Nk5-둰IfP6$I2oEȄYڝ]Ql&T7l^nҙd C=LJi3 43f(tb{bh,~wF6TFpb)V( ǣ̱1KCfz/ @-(Oڬc%9F/`5l%`Yļt[#- N=3_J-\Z`MXƸl)čؽf5ab8,Lr{y9,;v} Z2H8C3j[:jbEM"J!!Tq=[Bp*<_ kwU 3gqG􈲡7_ef2l(fGƯ&.:'gN?e- ˷irw\fy%-? #X)jdig׭ds\荲Z%SZBd5C){w; _TNDuq[9B 5ØA n1t\'DiZS w@wwbL.CxѦ:R#Ŧ@+f6- +h%Hji%nmps\:t;qKʚ> oV)?Efȴ3z|`/ AZC+MW !GoyKrw+g,;r\/PV#\wH^J9q 7e38!KLN$6"JZy%"ʈpTH32}S %{ebkGM/&لvdN,BIJuk.Uv*4a,M C @F>z R=^S<>4s<3sX1gmnD@(c<ݸ<[Wv),~7Z:ۤ]u\`ĽexGk J%j"y[Vtv6Sujuw3鯇Q rf%X(l6g!4o[.rӏ8 =K/=O~-ZP4. d` Շ #ر6?݄&M* Lf^{}M: `ffjTr@g3 z檊{ZT1Qm5OKZതo:1TI\bVL VH]CS4*ZR#.[z/v@CYucͽt{ɱeR1XZIvM 16wuXwz0*a+X d#n B$n ?Zp@:KX=}fk=+aj21qO5!VҊ U1L0 gHAHH60@O!KAOjڭ4/M{\t, '{ebW%5 :Ih; a $1*d@;. i BQx{sy&,Ү)$_SZ=k46Ã1E1#Xt Xf1scg}cZ3$Ah!P7iL3SkH0JѿcLS]Cno6 ˇ_, 3B \,eJMD$61%J*vm,%Z Ji1]{ 7@5@/#f4x \Zٻ-mnKoT,,{9vUDΆfYM"* u]*Ȝ3 +lZ50gQ[ ^ /)R|mmz,W "ԐlbU"\GMhi&><V]3Qf210> ^-lL-m9(ƕe@6jqL_@.O@}( DZ:JuS" |dr}Hm㜠a6_ۋÑk+Ve }~TR&PD;S)Y,K&L+QPxc7M" .R+/hQ#N^miE\Fl "ǝIYu/Nކrx*_Vwnُ8 x,nkKs4dvv˯g%>:jhnK*HJ#[7܏tieS *=˩H17סm48( xL*JW*8c[0:0\~ ^$raQBB*EoʙX,o@Y<9vDT뇓B恥YHb6̰B[ݹ۱^oң]s8(OuQкuusNyյxؔRNzS<\+{f`Edr-DrZH!P1 PskzIyIM!;#)k,BJЍ2mVp;l뿯3(ō2kĂHAhZ~]ZTw}دµ.% s iF݆'5 xL f$HLȢ$LRd[Џa뽈K0ʦ]nh0`3O b#D_OØB4.ba$+ 5Cr3l' lh,So(e!oȮ7c~ ƄQE׾)ԽOO25O4*+|~UTػZ1x#_ol~Z]z+P(gu$ڛEOkoqE,ﲩAUb&d1Rl[AB!Zkw0V[Sքn3vC솉;Y^63MunBқ{#ylPEK9ٖʺf]9?K;)3  F}'9<%) ĉ̟LRDboM5/l3_^^12,6v;Cso(fTa3\S'#ŒM#Kz:Rb\ꦭE h5QY" X\-Q:#r6`Eu M:85ުhRG8PTUB{5/Mѝ,xDTOiUks~?]fy6N+:|'KK%ؕjAڔBm&S]nUb;R ;=/$4$ 2GF2~uvۇ/χX>v0ML70P(|ijz]+|de> :aq8Ndf<֤?5hqpL]s>q_uF7R݆L;uQipL"'1cKQ7*i@gfA7J}~uaEƜ<"@e̻.6+taOdǑftTyel$ĝs"b뙋aPnB0X4=E;rUD6,WG|Dw _L;Ȣ_˗ZJ׳!^š7tNn"n͍=1 D.0b)P8 }#mhe83^s'~ע**{|[S5=&/^un$ĕY,Pw8bw,G%n}կDi6S$AGsku!w!ϮDk {ďrpv6Μ u7/sXLu-DCw!%^:jlK>8Idn+ydkis&Sk} FhQd%kGUM%}xVn`kP H/!njKYI{܋|Fo-b ,Γy+k_Sƃ0X>2,M۔1Č$jNrxhe T<qrͱAJO#Ȗ[uT%ʻ.:sV]ad|gSUP [( bsavU8,^>(i+vYԡ&B ~PN/P'w( xn v/^ :]wJNug\z6GFTYթh'Iüކ?&> K\3oNYMFJϙ{)a(0{iVtW+kZܹ&BC7%2y^_NU-o|͵>F gNvtյT,y{M_gyP.ކX}a qcJC0!вM,"cJBh5H$yfF}+gvR !gsaXve ߩexIy9 `(V;0x:+66m\Ab61Fi]#fO&޺&՗P,0q:MMMjwKqK+EwuM{uB!r%?#60~81MKl86 ;:[&4.J` ʋa:;o1qYTՄ {wK^\2wlmÛJrwJ&/:/m9GI}5,GvjU^$if~8 l6rov#u@Cc=h226=zRǞLxNyĚt 8[UeRwVc7#ZQ'$`<3pm|LuZF 'GmƋ 3#WP斜J C 4`4\T"c0O[_Ȕi[T}H9)N }çj#};qRv?AT>2AUs`:J+qL84`]I wyUD:" {U0E`ˊ vY1'ӨcTzO5 8hXV/[Π=MKFZ&A~tOϿz&HVVwD qqGZGSM3ښӁ8c]dTueS|"%2}- Q`؎>IZoo"OrFG@?"QBkv ܍HvB5βG<~a` ÷ )X%w, "4%G Qn=iIkD)4tqsT?+_#5yUH-D$r%2FTnqP֚ xGiI;# 3qܟ/&+8O#G09KĄh0ϼҫh%/愈\[N.hGMN! uuNM.ig5W9#.'JJ_oOY_6y(&?"<*ӊrA t>q>8T>`Ps DqBQG)J[ f^%x.?!+SZwJXc={HwFf6`{嗿`9C+>A#ߜUF}tf*lFSn9C@'-[QMfxKʙGToDn҇?[y؊BJzg'V \ kcx'̦jMW58sy"b1:oh,_ i=ܞ*7({:]ER ~#P^Tw9n}ƚsdϛ59Q14<2E9H~9'Q wHX71U˜#|Vw|s>=d5聖wߑȖ4 {s=Pʁ/2Ć h sc O!O2Ё$y<%W=1w=p灅/Ҳ)_:k (6 >jח{BDb:V~=]YA ".̾bOJ"c|}V2h>wSmbJN`%̜A͘>>o/*Zg-ya!# j?a}f`e:u{6\KZύ9<3gd#i|'2( :/*5OVXú \ vן$gS1G9v7rhkcA"ԎHU"$bjb\>3+;lRxQ#ź (]1P4kt[K)јR(eEG-nP_Yȼ 1-JN msDW?Y9 0nK}˱$3‰Ewo%hkB [b xo\W( MњCQxv4 INmXӴ,c%Ow3H#@cp:T5ƒ<5<48O˂gm 5KU  fRQTu0ɨn@u&UyuӨdI-Rŀi鿟*2ߕo7jp  ЋkUaѹP,cLnx+xضM\L>9INm0ƶ{Zz!I ڱJBP1mVͿeBWs~70J rY7 e'0]c:XM ~wlC"(9DQ7Ș/i\~yk6Q]* 5 ^"g;?m)1Hs+ӯ%T?A$ +lI7g)W.zI#noX* 0T?-eI!y G^&tbA') h9vwE |>}x@Sgݛ]IRL:- >pZJBCū C^RнgGOή,X*̫C#9@o~>z';8[З6;!Z&@_嘅XsEb vS5+Dʶ |kՎRwTfq.H[|oL=Zw8#l2̿1ի+ xlG2#'M(6dx"+1\־z9As5YPyC BoG"F5ey(5wA,9ycaAݳAkx2x%" ,Õ j gK{KYt%h*l,^Qd"` f郏9TmZؑLD=pLoHYIs%0quH | z7I=Y&&Yȳ.Ho +~sBo5Im4 6pRV]x1xcPni?T NekIdjW%ah]s=LW}^Ѵyb]Qmˇp* o&sFo-nV9I)I}UEM1ϥo070#z}>V7 L>:ya9v#U$ZĭQ$bn!5M͘s?_ 2H1`CZjq-S⩤c(try•5A&^PzfG f;d8r3 4+*T4o!,;'cy|,{ n2{:4z1/_. 3%@RR{Wx/qei3Q`Z5G}]R11dz< bDvc5JADv~sp*Ҕ%wᵍЕL /ȉ/A|y`0$D\eAj-۹v?y>An)Egm5eshWVkhV6j9D ͬ/6NL%U r˷I_|H%@xnܙz<gvjR\UJsdEvAJQ:`8rփ]v{.d" " Ve?4hQA_b.ߔX!\/~RK_/3ߤ\E.{2/$y:FHA"RHPU/[f8L TG ]̂WsAsg#Kr*RIoʷ#$8FH9\ɱ3G`d&4Qt5PŃ[xꦰ"" Jı xgi:#*Ί|pN葌T{?8ZAABUwUCvO #2(]EjwP܁|/+Th~ 1[4UĖ);)Dӧ;QF|bT㳁.~'kR_B˖%%o\6;aXo}NYEI.a@Oam]fC&SN* ҅TuQ5X?L=!o,+u&.87'8XOHN w~?+M2fj<_w~ܯ}OJNgL[czr#T#'h_Ki:n ))7'R ]Af\M퀍^Qb/Yseˆm-JVD1eac0P5bJ!ˣ=@@Z> N^f^ =7܂74xT R61/{ʙ- !DRDfQc-Y*q,ѬxCib}ܟng? (:8t5e06,KDHi^߯p7/ep|>Dɓ qn殨wL􊯞5D h-YNk)7WlNga{;.7G^bZc8LIJbS_tCLғ[>pM|M.M8<ͫ&_Qk^{lķϬbGDշӣUc تҍY:`hg v&L/ؤQS`Fܦ3ި%h<*׵hA犆dELtpYѕ"9<XZB Gloc/qxMSŮ[E>9==x?>DC4i5)-cx-weC0dѣ`vo?Cϝ/8D$)quiʡ~ZS=§41Д/c~$A-mxN(6T TDJ%!GˑdGA%@nNxCF^'KY MR9?~LDWɪ]d[VH@Mz N )hP#ʹx~M*0SA:q?h=@jmoy03.n*G3vlȱ=j13kX/~,PN6;dmK!j~ɷ\Jj%Ie_v \J8"iSp!ܩD*q!XlY}G3BWx=Bmj[b^! 'Ta}|? ME;FN66 Ռ̵M Djc l3'(\׷V{A=}<7U( & F`;{ .UHuk]b T:V~34bB5vR=$Qix-G3_5pCI28MG9Jp6{+r7,^S9xw g<;]M׉۪qdr1Z_YC@nfO©(dmQQk:WNLNрXEr=M?{(#LmaԌV45OFF_Tss葹껯4%`d gK^> h}!obWH'ݔNqۊimH90$֞6?-^X_(e!Q$j6Vp1L<76o=-]qݓYb mAȿq ?  5 [ gXCW VzQ=l Y< Q!Ʈ% UJR;籷7D8q i$a>PnR=jZ-$wz' 8{9nh& stٚ գX ]dTl?>:S:[p] bdXhʢᏤtGF\¥8(HTc:AkI{jQr-~wr[~O0fQh£wqZ3v1mJ(t5&}H!DxDա%QE^- }d;r xaKR7A7zGm!~}v|\UĦt)S/ñ[B(4e*u9FfYލ /ϻdCѓ#e&qi${ ӣ%T0 #W1C+L 8D~ D"K(X`5q# ЂWs_̭/*),jӏ 2-P^ !Oft $yZ΁7E/B 8\l*rlI;{cʑ[Lw{A;7_2\\d |`{YWd9q?]("夐 ihjW?L03E\}ř=(0 -t;t5C0t@S ? [ 㙪380}kev0X*+|"P&< gYCD',JE֟']!T \' ]6Yf Q >@5IRp&͏c9 S9^7x3wT0VrZ"JS{ ċHMSUb.%|I1%\bI_jDv4 %mS$r}i%7:j cGS cɁ`4&Qj#JkM,cNsqq'I|T a*NU.UD/-LnVBZL~eC*XniQO?`:^@.D?Vy?1w}QE9VjF>".8#3 ѤpROq28AT,PW7QV@.TL50n2b[$L!`r't VZmx)v[TN!yEex~j"O< ㇍ xDzx'.}lr/Ì0O6/"=@u>fR =zX3P[xZ"ۈ{^H k9|zx(`7SE^]3#>U U_1]d+a!ü}4yuQ*y`Zۡƪ: ;AgE@=[vv ߀ e*pRmT]EjWe)t@wF:iMzH۴#7U?qztNA1)/^ c+/őTGTq0 i"sBtv2?pe*DKmup:P1"\宀$H>BUO3<-]} ]JZK{W8_X6@VcQ쭃E`%>OBla)9Ԙw%*`W!}w '3x8vn%6f]J3*'H)d>I0]Nn"F_jrY+.eג2,Ny+'gZx? #Seb0'wcA'eJ&z>w ,:MF]'3t0r?tͦ"[y3" efq愶~f(1Vx0ױT "\߄~#bڐnBcB7eqS[L6v^=N1mpO^hEBm_ 3=,k_q~ gS5Q\Tkc ~Kz=\Sm^uQh4!ڀq]42 `1}OeU%e/4nyV ܺRM] SRh uY{dwݣ7--iAx"F֭;P VNȕ^Y<(b]K5JR!￷vY_"{z~#ʭs˙vTF/ b7mibaxcK۶kQwڼT|䈿+/Ot`?z4p10oDr#(nx^'=A_3`o~..">plت_hqY T˳xj=ݷ)'ww >pT_ʒrv PC|]RB ɗNHE wi+Jvtgm&:ʵZ?:gϑ.ư/~Nn4DGOAX.[>Li@W1]o3'R^rjJ8 !DQI_aώhF3Cp{0SONB%gKσoMWnLThd$ wDrh @'~*i3+@^iu7ԮrRV0t |݁sC!='Oڤ f*hf\}XOb0³]k|ۢ`}5zd >"$3*88`ԉju3&]lD:29%Nn]@VeUfT=55:=Ol9>Q KZnR L ۍ2+CJ#COa5+B4l8L8Y HAsAzN zTT <Ց5 fILyQRǫĎF2̢`ו5n JT\IV7Ɣ]Ox>t7 ǢROI;\` vRƬ,akތDD\p n5f^!y'΂]Ne7}א}Ի `/$`HiJw^&+ 8~[vhIٖ29Л^wysVCQʇ \5"%y{wXsqIGuHA/ĘAƓ)IvcsJQh*.FT]&VC3Z򌇱>$fḀ'r4i,7n<4\^&YT?GP!BlƕsgzE ,\e÷j9