389-ds-base-devel-1.2.11.15-97.el6_10>t  DH`p[t) FW4 wd:BS6 *BwɈ:rϬ{`=s}~STykTWg jŲ:D8tY+>!YC~IxJXVyl`3A] ƟA|܍mָx<6|dB6Rg۟l4\1'^];?@w+'bݛjQnOSq^&~Qs3]4X93aMveKsq3 .O E~7Nj_,+e$UM{׌AA /=1Xcl|[y2kJ{Cr~epÏƿ;=bxOxM5d [s*>T?f?IIl+3L`>I%lB]^>„hcdW3Iw {erڝX=ˑ7 q,u D:BoD$)52X?;Ib͇#G a>ib4a21e135ce144432fedb3a354448ab25920384bL[t) FY۬Xo 4";TqU2uR9* ܅ >ӹ1i7`JNDĩSLP ~jm_/m}+(U(3>;nP$HTIl_Ow"Nwt|6vF0N,?ƶQ_]WIiE]htKxes~T)I D;i?'p&:7y<f\1g~OG3> ` d|4qݳĚK*Jۡz_x$}+{y y{F3g^C%}`*pimN oP9["M2Ts?#c=1#/;z:e%q(<ٴ-xz(7bK(GT1W& ,>8M?Md ( W  #;AH t            W  $ X Q (89 :>QGJ HJ8 IJd XJpYJ|\J ]J ^KxbLdLxeL}fLlLtL uL vLwMT xM yMMC389-ds-base-devel1.2.11.1597.el6_10Development libraries for 389 Directory ServerDevelopment Libraries and headers for the 389 Directory Server base package.[tIx86-01.bsys.centos.orgCentOSGPLv2 with exceptionsCentOS BuildSystem Development/Librarieshttp://www.port389.org/linuxx86_64]<&FLA큤A큤[t@[t@[t@[t@[t@[t@[tHPaPaPa[t%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.so.0.0.0rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootroot389-ds-base-1.2.11.15-97.el6_10.src.rpmpkgconfig(dirsrv)389-ds-base-devel389-ds-base-devel(x86-64)@@     /usr/bin/pkg-config389-ds-base-libslibslapd.so.0()(64bit)nspr-develnss-developenldap-develpkgconfigrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(VersionedDependencies)svrcore-develrpmlib(PayloadIsXz)1.2.11.15-97.el6_103.0.4-14.6.0-14.0-13.0.3-15.2-14.8.0[b@[b@[{@X9@XӸXX*X~@Xs{@X lX@W - 1.2.11.15-97Mark Reynolds - 1.2.11.15-96Mark Reynolds - 1.2.11.15-95Mark Reynolds - 1.2.11.15-91Mark Reynolds - 1.2.11.15-90Mark Reynolds - 1.2.11.15-89Noriko Hosoi - 1.2.11.15-88Noriko Hosoi - 1.2.11.15-87Noriko Hosoi - 1.2.11.15-86Noriko Hosoi - 1.2.11.15-85Noriko Hosoi - 1.2.11.15-84Noriko Hosoi - 1.2.11.15-83Noriko Hosoi - 1.2.11.15-82Noriko Hosoi - 1.2.11.15-81Noriko Hosoi - 1.2.11.15-80Noriko Hosoi - 1.2.11.15-79Noriko Hosoi - 1.2.11.15-78Noriko Hosoi - 1.2.11.15-77Noriko Hosoi - 1.2.11.15-76Noriko Hosoi - 1.2.11.15-75Noriko Hosoi - 1.2.11.15-74Noriko Hosoi - 1.2.11.15-73Noriko Hosoi - 1.2.11.15-72Noriko Hosoi - 1.2.11.15-71Noriko Hosoi - 1.2.11.15-70Noriko Hosoi - 1.2.11.15-69Noriko Hosoi - 1.2.11.15-68Noriko Hosoi - 1.2.11.15-67Noriko Hosoi - 1.2.11.15-66Noriko Hosoi - 1.2.11.15-65Noriko Hosoi - 1.2.11.15-64Noriko Hosoi - 1.2.11.15-63Noriko Hosoi - 1.2.11.15-62Noriko Hosoi - 1.2.11.15-61Noriko Hosoi - 1.2.11.15-60Noriko Hosoi - 1.2.11.15-59Noriko Hosoi - 1.2.11.15-58Noriko Hosoi - 1.2.11.15-57Noriko Hosoi - 1.2.11.15-56Noriko Hosoi - 1.2.11.15-55Noriko Hosoi - 1.2.11.15-54Noriko Hosoi - 1.2.11.15-53Noriko Hosoi - 1.2.11.15-52Noriko Hosoi - 1.2.11.15-51Noriko Hosoi - 1.2.11.15-50Noriko Hosoi - 1.2.11.15-49Noriko Hosoi - 1.2.11.15-48Noriko Hosoi - 1.2.11.15-47Nathan Kinder - 1.2.11.15-46Noriko Hosoi - 1.2.11.15-45Noriko Hosoi - 1.2.11.15-44Noriko Hosoi - 1.2.11.15-43Noriko Hosoi - 1.2.11.15-42Noriko Hosoi - 1.2.11.15-41Noriko Hosoi - 1.2.11.15-40Noriko Hosoi - 1.2.11.15-39Noriko Hosoi - 1.2.11.15-38Noriko Hosoi - 1.2.11.15-37Noriko Hosoi - 1.2.11.15-36Noriko Hosoi - 1.2.11.15-35Noriko Hosoi - 1.2.11.15-34Noriko Hosoi - 1.2.11.15-33Noriko Hosoi - 1.2.11.15-32Rich Megginson - 1.2.11.15-31Rich Megginson - 1.2.11.15-30Rich Megginson - 1.2.11.15-29Noriko Hosoi - 1.2.11.15-28Noriko Hosoi - 1.2.11.15-27Noriko Hosoi - 1.2.11.15-26Noriko Hosoi - 1.2.11.15-25Noriko Hosoi - 1.2.11.15-24Noriko Hosoi - 1.2.11.15-23Noriko Hosoi - 1.2.11.15-22Noriko Hosoi - 1.2.11.15-21Mark Reynolds - 1.2.11.15-20Mark Reynolds - 1.2.11.15-19Mark Reynolds - 1.2.11.15-19Mark Reynolds - 1.2.11.15-19Mark Reynolds - 1.2.11.15-18Noriko Hosoi - 1.2.11.15-14Noriko Hosoi - 1.2.11.15-13Noriko Hosoi - 1.2.11.15-12Noriko Hosoi - 1.2.11.15-11Noriko Hosoi - 1.2.11.15-10Noriko Hosoi - 1.2.11.15-9Rich Megginson - 1.2.11.15-8Noriko Hosoi - 1.2.11.15-7Rich Megginson - 1.2.11.15-6Rich Megginson - 1.2.11.15-5Noriko Hosoi - 1.2.11.15-4Rich Megginson - 1.2.11.15-3Noriko Hosoi - 1.2.11.15-2Rich Megginson - 1.2.11.15-1Rich Megginson - 1.2.11.14-1Rich Megginson - 1.2.11.13-1Rich Megginson - 1.2.11.12-1Noriko Hosoi - 1.2.10.2-20Noriko Hosoi - 1.2.10.2-19Noriko Hosoi - 1.2.10.2-18Noriko Hosoi - 1.2.10.2-17Noriko Hosoi - 1.2.10.2-16Rich Megginson - 1.2.10.2-15Rich Megginson - 1.2.10.2-14Rich Megginson - 1.2.10.2-13Noriko Hosoi - 1.2.10.2-12Noriko Hosoi - 1.2.10.2-11Noriko Hosoi - 1.2.10.2-10Rich Megginson - 1.2.10.2-9Rich Megginson - 1.2.10.2-8Rich Megginson - 1.2.10.2-7Rich Megginson - 1.2.10.2-6Rich Megginson - 1.2.10.2-5Rich Megginson - 1.2.10.2-4Rich Megginson - 1.2.10.2-3Rich Megginson - 1.2.10.2-2Rich Megginson - 1.2.10.2-1Rich Megginson - 1.2.10.1-1Rich Megginson - 1.2.10.0-1Rich Megginson - 1.2.10-0.11.rc2Rich Megginson - 1.2.9.16-1Rich Megginson - 1.2.9.15-1Rich Megginson - 1.2.9.14-1Rich Megginson - 1.2.9.13-1Rich Megginson - 1.2.9.12-2Rich Megginson - 1.2.9.12-1Rich Megginson - 1.2.9.11-1Nathan Kinder - 1.2.9.10-1Rich Megginson - 1.2.9.9-1Rich Megginson - 1.2.9.8-1Rich Megginson - 1.2.9.7-1Rich Megginson - 1.2.9.6-1Rich Megginson - 1.2.9.5-1Rich Megginson - 1.2.9.4-1Rich Megginson - 1.2.9.3-1Rich Megginson - 1.2.9.2-1Rich Megginson - 1.2.9.1-2Rich Megginson - 1.2.9.1-1Nathan Kinder - 1.2.8.7-1Rich Megginson - 1.2.8.6-1Rich Megginson - 1.2.8.5-1Rich Megginson - 1.2.8.4-3Rich Megginson - 1.2.8.4-2Rich Megginson - 1.2.8.4-1Rich Megginson - 1.2.8.3-4Rich Megginson - 1.2.8.3-3Rich Megginson - 1.2.8.3-2Rich Megginson - 1.2.8.3-1Rich Megginson - 1.2.8.2-1Rich Megginson - 1.2.8.1-1Rich Megginson - 1.2.8.0-2Rich Megginson - 1.2.8.0-1Rich Megginson - 1.2.8-0.9.rc4Rich Megginson - 1.2.8-0.8.rc2Rich Megginson - 1.2.8-0.7.rc2Rich Megginson - 1.2.8-0.6.rc1Rich Megginson - 1.2.8-0.5.a3Rich Megginson - 1.2.8-0.4.a3Rich Megginson - 1.2.8-0.3.a3Rich Megginson - 1.2.8-0.2.a2Nathan Kinder - 1.2.8-0.1.a1Rich Megginson - 1.2.7.5-1Rich Megginson - 1.2.7.4-1Rich Megginson - 1.2.7.3-1Rich Megginson - 1.2.7.2-1Rich Megginson - 1.2.7.1-1Rich Megginson - 1.2.7-1Rich Megginson - 1.2.7-0.7.a5Kevin Wright - 1.2.7-0.6.a4Rich Megginson - 1.2.7-0.5.a4Rich Megginson - 1.2.7-0.4.a3Rich Megginson - 1.2.7-0.3.a3Rich Megginson - 1.2.7-0.2.a2Rich Megginson - 1.2.7-0.1.a1Rich Megginson - 1.2.6.1-3Rich Megginson - 1.2.6.1-2Rich Megginson - 1.2.6.1-1Rich Megginson - 1.2.6-1Rich Megginson - 1.2.6-0.11.rc7Rich Megginson - 1.2.6-0.10.rc6Rich Megginson - 1.2.6-0.9.rc3Rich Megginson - 1.2.6-0.8.rc3Rich Megginson - 1.2.6-0.7.rc2Nathan Kinder - 1.2.6-0.6.rc1Rich Megginson - 1.2.6-0.5.rc1Marcela Maslanova - 1.2.6-0.4.a4.1Rich Megginson - 1.2.6-0.4.a4Nathan Kinder - 1.2.6-0.4.a3Caolán McNamara - 1.2.6-0.3.a2Rich Megginson - 1.2.6-0.2.a2Nathan Kinder - 1.2.6-0.1.a1Rich Megginson - 1.2.5-1Rich Megginson - 1.2.5-0.5.rc4Rich Megginson - 1.2.5-0.4.rc3Rich Megginson - 1.2.5-0.3.rc2Rich Megginson - 1.2.5-0.2.rc1Rich Megginson - 1.2.5-0.1.a1Rich Megginson - 1.2.4-1Rich Megginson - 1.2.3-1Caolán McNamara - 1.2.2-2Rich Megginson - 1.2.2-1Tomas Mraz - 1.2.1-5Noriko Hosoi - 1.2.1-4Rich Megginson - 1.2.1-3Fedora Release Engineering - 1.2.1-2Rich Megginson - 1.2.1-1Rich Megginson - 1.2.0-4Rich Megginson - 1.2.0-3Rich Megginson - 1.2.0-2Rich Megginson - 1.2.0-1Noriko Hosoi - 1.1.3-7Noriko Hosoi - 1.1.3-6Rich Megginson - 1.1.3-5Rich Megginson - 1.1.3-4Rich Megginson - 1.1.3-3Rich Megginson - 1.1.3-2Rich Megginson - 1.1.3-1Rich Megginson - 1.1.2-1Rich Megginson - 1.1.1-2Rich Megginson - 1.1.1-1Rich Megginson - 1.1.0.1-4Tom "spot" Callaway - 1.1.0.1-3Tom "spot" Callaway - 1.1.0.1-3Rich Megginson - 1.1.0.1-2Rich Megginson - 1.1.0.1-1Fedora Release Engineering - 1.1.0-5Rich Megginson - 1.1.0-4Release Engineering - 1.1.0-3Rich Megginson - 1.1.0-2.0Rich Megginson - 1.1.0-1.2Rich Megginson - 1.1.0-1.1Rich Megginson - 1.1.0-0.3.20070720Nathan Kinder - 1.1.0-0.2.20070320Rich Megginson - 1.1.0-0.1.20070320Rich Megginson - 1.1.0-0.1.20070223Rich Megginson - 1.1.0-0.1.20070213Rich Megginson - 1.1.0-1.el4.20070209Rich Megginson - 1.1.0-1.el4.20070207Rich Megginson - 1.1.0-1.el4.20070129Rich Megginson - 1.1.0-8.el4.20070125Rich Megginson - 1.1.0-7.el4.20070125Rich Megginson - 1.1.0-6.el4.20070125Rich Megginson - 1.1.0-5.el4.20070125Rich Megginson - 1.1.0-4.el4.20070119Rich Megginson - 1.1.0-3.el4.20070119Rich Megginson - 1.1.0-2.el4.20070119Rich Megginson - 1.1.0-1.el4.cvs20070119Rich Megginson - 1.1-0.1.cvs20070115Dennis Gilmore - 1.1-0.1.cvs20070108Rich Megginson - 1.0.99-16Rich Megginson - 1.0.99-15Rich Megginson - 1.0.99-14Rich Megginson - 1.0.99-13Rich Megginson - 1.0.99-12Rich Megginson - 1.0.99-11Rich Megginson - 1.0.99-10Rich Megginson - 1.0.99-9Rich Megginson - 1.0.99-8Rich Megginson - 1.0.99-7Rich Megginson - 1.0.99-6Rich Megginson - 1.0.99-5Rich Megginson - 1.0.99-4Rich Megginson - 1.0.99-3Rich Megginson - 1.0.99-2Rich Megginson - 1.0.99-1- Bump version to 1.2.11.15-97 - Resolves: Bug 1563539 - acl_copyEval_context double free (fix spec file patch)- Bump version to 1.2.11.15-96 - Resolves: Bug 1563539 - acl_copyEval_context double free- Release 1.2.11.15-95 - Resolves: Bug 1562152 - EMBARGOED CVE-2018-1089 389-ds-base: ns-slapd crash via large filter value in ldapsearch - Resolves: Bug 1544415 - CVE-2017-15135 389-ds-base: Authentication bypass due to lack of size check in slapi_ct_memcmp function in ch_malloc.c (fix cherry-pick error) - Resolves: Bug 1543798 - EMBARGOED CVE-2018-1054 389-ds-base: remote Denial of Service (DoS) via search filters in SetUnicodeStringFromUTF_8 in collate.c- Release 1.2.11.15-91 - Resolves: bug 1437776 - EMBARGOED CVE-2017-2668 389-ds-base: Remote crash via crafted LDAP messages- Release 1.2.11.15-90 - Resovles: #1435365 - Unable to dereference unqiemember attribute because it is dn [#UID] not dn syntax- Release 1.2.11.15-89 - Resolves: #1421512 - ns-slapd crashes in ldif_sput due to the output buf size is less than the real size.- Release 1.2.11.15-88 - Resolves: #1413692 - custom schema is registered in small caps after schema reload (DS 47973) - Resolves: #1408976 - dbscan-bin crashing due to a segmentation fault. (DS 49104)- Release 1.2.11.15-87 - Resolves: #1391701 - do not treat missing csn as fatal (DS 49020) - Resolves: #1406835 - memberOf fixup task does not validate args (DS 49072)- Release 1.2.11.15-86 - Resolves: #1380435 - Backport request of ticket 48983 to RHEL6.9 (DS 49049) - Resolves: #1400997 - ldif2db.pl script shows wrong usage for -n as instance, instead of database (DS 49070) - Resolves: #1403754 - ns-slapd crashes during tickets/ticket48665_test.py (DS 48665) - Resolves: #1410645 - The "repl-monitor" web page does not display "year" in date. (DS 48220) - Resolves: #1399600 - ns-slapd segfaults during execution of tickets/ticket47966_test.py (DS 47966, DS 48987) - Resolves: #1402012 - Importing big ldif file with duplicate DNs throwing "unable to flush" error - Resolves: #1406835 - memberOf fixup task does not validate args (DS 49072)- Release 1.2.11.15-85 - Resolves: #1372420 - DES to AES backport issues (DS 47462) - Resolves: #1391324 - ds9 backport 47411 - Replace substring search with plain search in referint plugin (DS 47411)- Release 1.2.11.15-84 - Resolves: #1352109 - Replication stops working only when fips mode is set to true (DS 48909) - Resolves: #1372420 - DES to AES backport issues (DS 47462) - Resolves: #1380435 - Backport request of ticket 48983 to RHEL6.9 (DS 48983) - Resolves: #1382386 - Directory Server accepts a wrong userdn macro ACI (DS 449) - Resolves: #1382519 - 1.2.11 only -- coverity fixes (DS 49004) - Resolves: #1387022 - specific search with sizelimit=1 sometimes returns no entry (DS 47703) - Resolves: #1387772 - trace args debug logging must be more restrictive (DS 49009)- Release 1.2.11.15-83 - Resolves: #1327065 - After updating server, component nss-3.21.0-0.3.el6_7.x86_64, some client applications cannot connect to server (DS 48798) - Resolves: #1266920 - invalid message about write_changelog_and_ruv on consumers (DS 47801) - Resolves: #1330758 - add a nsTLS1.0 on or off new configuration parameter to cn=encryption,cn=config in RHEL 6 389-ds-base (DS 48816) - Resolves: #1369572 - cleanallruv changelog cleaning incorrectly impacts all backends (DS 48964) - Resolves: #1371706 - Server Side Sorting crashes the server. (DS 48970) - Resolves: #1371678 - Disabling CLEAR password storage scheme will crash server when setting a password (DS 48975) - Resolves: #1370145 - cannot reindex retrochangelog (DS 47619)- Release 1.2.11.15-82 - Resolves: #1380435 - Backport request of ticket 48983 to RHEL6.9 (DS 48983)- Release 1.2.11.15-81 - Resolves: #1368209 - Crash in import_wait_for_space_in_fifo(). (DS 48960)- Release 1.2.11.15-80 - Resolves: #1316869 - ns-slapd general protection ip:7f570c56afd5 sp:7f56dc7edce0 error:0 in libc-2.12.so (DS 48944)- Release 1.2.11.15-79 - Resolves: #1358560 - CVE-2016-4992 389-ds-base: Information disclosure via repeated use of LDAP ADD operation - Resolves: #1372420 - Backport AES storage scheme plugin (DS 47462, 48862, 48243, 48777) - Resolves: #1321126 - Replication changelog can incorrectly skip over updates - Resolves: #1373734 - EASY FIX : dereferencing a NULL sr_candidates pointer in ldbm_back_next_search_entry_ext resulted a segfault (DS 47858)- Release 1.2.11.15-78 - Resolves: #1321126 - Replication changelog can incorrectly skip over updates (DS 48954) - Resolves: #1361422 - CVE-2016-5416 389-ds-base: ACI readable by anonymous user (DS 48354) - Resolves: #1360975 - CVE-2016-5405 389-ds-base: Password verification vulnerable to timing attack- Release 1.2.11.15-77 - Resolves: #1157799 - replication delay when server is configured with multiple replication agreements. (DS 48636) fixing a backport error- Release 1.2.11.15-76 - Resolves: #1321126 - Replication changelog can incorrectly skip over updates (DS 48766) - Resolves: #1157799 - replication delay when server is configured with multiple replication agreements. (DS 48636)- Release 1.2.11.15-75 - Resolves: #1331599 - Paged results search returns the blank list of entries (DS 48808) - Resolves: #1332710 - password history is not updated when an admin resets the password (DS 48813) - Resolves: #1150817 - Running db2index with no options breaks replication (DS 48854)- Release 1.2.11.15-74 - Resolves: #1313258 - change severity of some messages related to "keep alive" entries (DS 48420)- Release 1.2.11.15-73 - Resolves: #1294770 - Supplier can skip a failing update, although it should retry (DS 47788) - Resolves: #1298496 - slapd process crashes on entry modification (DS 47964) - Resolves: #1307152 - keep alive entries can break replication (DS 48445)- Release 1.2.11.15-72 - Resolves: #1292649 - allow users to specify to relax the FQDN constraint (DS 48332) - Resolves: #1294770 - Supplier can skip a failing update, although it should retry (DS 47788) - Resolves: #1296694 - ns-slapd crash in ipa context - c_mutex lock memory corruption and self locks (DS 48406, DS 48338 reverted) - Resolves: #1297385 - Interpret IPV6 addresses for ACIs, replication, and chaining (DS 196)- Release 1.2.11.15-71 - Resolves: #1284791 - 389-ds-base: ldclt -e randomauthid Segmentation fault. (DS 48289) - Resolves: #1290243 - SimplePagedResults -- in the search error case, simple paged results slot was not released (DS 48375)- Release 1.2.11.15-70 - Resolves: #1259959 - perl module conditional test is not conditional when checking SELinux policies - fixing a regression (DS 48305) - Resolves: #1282457 - The 'eq' index does not get updated properly when deleting and re-adding attributes in the same ldapmodify operation (DS 48370)- Release 1.2.11.15-69 - Resolves: #1247792 - SimplePagedResults -- abandon could happen between the abandon check and sending results -- Fixing a regression introduced in 1.2.11.15-68 (DS 48338)- Release 1.2.11.15-68 - Resolves: #1278585 - deadlock in mep delete post op (DS 47976) - Resolves: #1247792 - SimplePagedResults -- abandon could happen between the abandon check and sending results (DS 48338)- Release 1.2.11.15-67 - Resolves: #1234431 - Man pages and help for remove-ds.pl doesn't display "-a" option (DS 48245) - Resolves: #1236148 - Slow replication when deleting large quantities of multi-valued attributes (DS 48195) - Resolves: #1236156 - Avoid using regex in ACL if possible (DS 48175) - Resolves: #1236656 - Dynamic nsMatchingRule changes had no effect on the attrinfo thus following reindexing, as well. (DS 48212) - Resolves: #1240451 - Individual abandoned simple paged results request has no chance to be cleaned up (DS 48192) - Resolves: #1244970 - Crash during retro changelog trimming (DS 48206) - Resolves: #1245237 - winsync lastlogon attribute not syncing between DS and AD. (DS 48232) - Resolves: #1246165 - verify_db.pl doesn't verify DB specified by -a option (DS 48215) - Resolves: #1247812 - logconv autobind handling regression caused by 47446 (DS 48231) - Resolves: #1253406 - wrong password check if passwordInHistory is decreased. (DS 48228) - Resolves: #1255290 - db2index creates index entry from deleted records (DS 48252) - Resolves: #1259959 - perl module conditional test is not conditional when checking SELinux policies (DS 48305) - Resolves: #1260622 - ns-slapd - LOGINFO:Unable to remove file (DS 48304) - Resolves: #1265851 - Double free while adding entries (1.2.11 only) (DS 48287) - Resolves: #1273552 - Deadlock between two MODs on the same entry between entry cache and backend lock (DS 47978)- Release 1.2.11.15-66 - Resolves: #1270002 - cleanallruv should completely clean changelog (DS 48208) - Resolves: #1267405 - many attrlist_replace errors in connection with cleanallruv (DS 48283)- Release 1.2.11.15-65 - Resolves: #1259383 - Fractional replication evaluates several times the same CSN (DS 48266)- Release 1.2.11.15-64 - Resolves: #1247792 - ns-slapd crashing frequently cause is unknown (DS 48192) - Resolves: #1267296 - pagedresults - when timed out, search results could have been already freed. (DS 48299)- Release 1.2.11.15-63 - Resolves: #1247792 - ns-slapd crashing frequently cause is unknown (DS 48192) - Resolves: #1259383 - Fractional replication evaluates several times the same CSN (DS 48266 48284)- Release 1.2.11.15-62 - Resolves: #1259546 - regression - COS cache doesn't properly mark vattr cache as invalid when there are multiple suffixes (DS 47981)- Release 1.2.11.15-61 - Resolves: #1251288 - Replication not working for "delete: attr"- Release 1.2.11.15-60 - Resolves: #1228402 - Individual abandoned simple paged results request has no chance to be cleaned up (DS 48192)- Release 1.2.11.15-59 - Resolves: #1211006 - start/stop/restart-dirsrv utilities should ignore admin-serv directory (DS 48148) - Resolves: #1203338 - ns-slapd double free or corruption crash (DS 48149) - Resolves: #1228402 - Individual abandoned simple paged results request has no chance to be cleaned up (DS 48192)- Release 1.2.11.15-58 - Resolves: #1223068 - Regression introduced by the simple paged results fixes. (DS 48146) - Resolves: #1203338 - ns-slapd double free or corruption crash (DS 48149)- Release 1.2.11.15-57 - Resolves: #1223068 - ldapdelete fails with -r option to delete a sub suffix (DS 48146) - Resolves: #1219990 - bind on db chained to AD returns err=32 (DS 48183) - Resolves: #1219208 - cleanAllRUV task limit not being enforced correctly (DS 48158)- Release 1.2.11.15-56 - Resolves: #1219218 - fix coverity issues (DS 48151)- Release 1.2.11.15-55 - Resolves: #1118285 - Lowering the log level of "Configured SSL version range" message (1.2.11 only) (DS 48180) - Resolves: #1211006 - start/stop/restart-dirsrv utilities should ignore admin-serv directory (DS 48148) - Resolves: #1219208 - Remove cleanAllRUV task limit of 4 (DS 48158) - Resolves: #1219218 - Improve CleanAllRUV logging (DS 48151)- Release 1.2.11.15-54 - Resolves: #1207983 - disable writing unhashed#user#password to changelog (DS 561) - Resolves: #1207024 - IPA Replicate creation fails with error "Update failed! Status: [10 Total update abortedLDAP error: Referral]" (DS 47942) - Resolves: #1211077 - nsslapd-ndn-cache-enabled returns 1 or 0 instead of "on" or "off" (DS 408) - Resolves: #1211006 - start/stop/restart-dirsrv utilities should ignore admin-serv directory (DS 48148) - Resolves: #1210996 - Disable SSL v3, by default [389-ds-base-1.2.11 only] (DS 47928) - Resolves: #1214074 - Need a way to abort a cleanallruv abort task (DS 48154) - Resolves: #1212657 - Password is not correctly passed to perl command line tools if it contains shell special characters. (DS 48143) - Resolves: #1218341 - ns-slapd crash related to paged results (DS 48146)- Release 1.2.11.15-53 - Resolves: #1202502 - memory leak in new_passwdPolicy (1.2.11 only) (DS 48135) - Resolves: #1202062 - Non tombstone entry which dn starting with "nsuniqueid=...," cannot be deleted (DS 48133)- Release 1.2.11.15-52 - Resolves: #1193235 - Fix coverity issues and compiler warnings - 2014/12/16, 2014/11/24, 2015/2/18 (DS 47965)- Release 1.2.11.15-51 - Resolves: #1193235 - Fix coverity issues and compiler warnings - 2014/12/16, 2014/11/24, 2015/2/18 (DS 47965) - Resolves: #1171308 - Don't add unhashed password mod if we don't have an unhashed value (DS 47752) - Resolves: #1167976 - memberof skip nested groups breaks the plugin (DS 47963) - Resolves: #1185025 - ldclt needs to support SSL Version range (DS 47996) - Resolves: #1183820 - Windows Sync accidentally cleared raw_entry (DS 47989) - Resolves: #1155569 - nsslapd-db-locks modify not taking into account. (DS 47934) - Resolves: #1145072 - Bad manipulation of passwordhistory (DS 47905) - Resolves: #1144092 - During schema reload sometimes the search returns no results (DS 47973) - Resolves: #1145374 - WinSync - manual replica refresh removes AD-only member values from DS and AD in groups (DS 47884) - Resolves: #1193243 - ldbm_usn_init: Valgrind reports Invalid read / SIGSEGV (DS 47659) - Resolves: #1150368 - provide enabled ciphers as search result (DS 47880) - Resolves: #1153739 - Add SSL/TLS version info to the access log (DS 47945) - Resolves: #1118285 - Disable SSL v3, by default [389-ds-base-1.2.11 only] (DS 47928) - Resolves: #1193241 - logconv.pl -- support parsing/showing/reporting different protocol versions (DS 47949) - Resolves: #1179763 - COS cache doesn't properly mark vattr cache as invalid when there are multiple suffixes (DS 47981) - Resolves: #1175868 - Incorrect assumption in ndn cache (DS 547) - Resolves: #1159124 - perl scripts not returning expected error code (DS 47962) - Resolves: #1115960 - Nested COS definitions can be incorrectly processed (DS 47980) - Resolves: #1175868 - Backport of Normalized DN Cache (DS 408) - Resolves: #1174892 - During delete operation do not refresh cache entry if it is a tombstone (DS 47750) - Resolves: #1174892 - Need to refresh cache entry after called betxn postop plugins (DS 47750) - Resolves: #1193235 - Fix coverity issues (2014/12/16) (DS 47965) - Resolves: #1193235 - Fix coverity issues (2014/11/24) (DS 47965) - Resolves: #1169974 - Account lockout attributes incorrectly updated after failed SASL Bind (DS 47970) - Resolves: #1169975 - Fix coverity issue (DS 47969) - Resolves: #1169975 - COS memory leak when rebuilding the cache (DS 47969) - Resolves: #1170706 - cos_cache_build_definition_list does not stop during server shutdown (DS 47967) - Resolves: #1167976 - skip nested groups breaks memberof fixup task (DS 47963) - Resolves: #1167976 - RFE - memberOf - add option to skip nested group lookups during delete operations (DS 47963) - Resolves: #1171357 - Bind DN tracking unable to write to internalModifiersName without special permissions (DS 47950) - Resolves: #1162704 - Memory leak in password admin if the admin entry does not exist (DS 47958) - Resolves: #1162704 - PasswordAdminDN attribute is not properly returned to client (DS 47952) - Resolves: #1145379 - Fix backport issue to 1.2.11 (DS 47900) - Resolves: #1145379 - Server fails to start if password admin is set (DS 47900) - Resolves: #1145379 - Adding an entry with an invalid password as rootDN is incorrectly rejected (DS 47900) - Resolves: #1141735 - ldclt: assertion failure with -e "add,counteach" -e "object=,rdn=uid:test[A=INCRNNOLOOP(0;24 (DS 47907)- Release 1.2.11.15-50 - Resolves: #1130990 - Problem with single value attribute MMR replication (DS 47915, DS 569)- Release 1.2.11.15-49 - Resolves: #1168150 - CVE-2014-8105: information disclosure through 'cn=changelog' subtree - Resolves: #1130990 - Problem with single value attribute MMR replication (DS 47915) - Resolves: #1136882 - default nsslapd-sasl-max-buffer-size should be 2MB (DS 47457) - Resolves: #1161909 - ACI's are replaced by "ACI_ALL" after editing goup of ACI's including invalid one (DS 47953)- Release 1.2.11.15-48 - Resolves: #1154766 - ns-slapd segfault in libslapd.so.0.0.0 (#47889)- Release 1.2.11.15-47 - Resolves: #1138745 - Memory leak during Reliab15 execution (#47750)- Release 1.2.11.15-46 - Resolves: #1138745 - Memory leak during Reliab15 execution- Release 1.2.11.15-45 - Resolves: #1112702 - Broken dereference control with the FreeIPA 4.0 ACIs (#47885)- Release 1.2.11.15-44 - Resolves: #1079098 - Simultaneous adding a user and binding as the user could fail in the password policy check (DS 47748) - Simple bind hangs after enabling password policy- Release 1.2.11.15-43 - Resolves: #1112702 - Broken dereference control with the FreeIPA 4.0 ACIs (#47885)- Release 1.2.11.15-42 - Resolves: #1129660 - Adding users to user group throws Internal server error.- Release 1.2.11.15-41 - Resolves: #1130252 - dirsrv not running with old openldap (DS 47875)- Release 1.2.11.15-40 - Resolves: #1130252 - dirsrv not running with old openldap (DS 47875) - Resolves: #1103287 - logconv.pl memory continually grows (DS 47446) - Resolves: #1121596 - Deleting attribute present in nsslapd-allowed-to-delete-attrs returns Operations error (DS 443) - Resolves: #1109381 - winsync doesn't sync DN valued attributes if DS DN value doesn't exist (DS 415) - Resolves: #1128759 - Performance degradation with scope ONE after some load (DS 47874) - Resolves: #1127612 - Filter AND with only one clause should be optimized (DS 47872) - Resolves: #1014111 - repl-monitor fails to convert "*" to default values (DS 47862)- Release 1.2.11.15-39 - Resolves: #1123863 EMBARGOED CVE-2014-3562 - unauthenticated information disclosure (Bug 1123477) - Resolves: #1123863 High contention on computed attribute lock (DS 616) - Resolves: #1062763 single valued attribute replicated ADD does not work (DS 47692) - Resolves: #1121596 Deleting attribute present in nsslapd-allowed-to-delete-attrs returns Operations error (DS 443) - Resolves: #1014111 Repl-monitor.pl ignores the provided connection parameters (DS 47862) - Resolves: #1115281 New defects found in 389-ds-base-1.2.11 (DS 47863) - Resolves: #1112729 paged results control is not working in some cases when we have a subsuffix. (DS 47824)- Release 1.2.11.15-38 - Resolves: bug 1080185 - revert - Creating a glue fails if one above level is a conflict or missing (DS 47750;Patch233)- Release 1.2.11.15-37 - Resolves: bug 1113606 - server restart wipes out index config if there is a default index (DS 47831) - Resolves: bug 1112702 - Broken dereference control with the FreeIPA 4.0 ACIs (DS 47821) - Resolves: bug 1080185 - Creating a glue fails if one above level is a conflict or missing (DS 47750)- Release 1.2.11.15-36 - Resolves: bug 1088171 - revert - 7-bit check plugin does not work for userpassword attribute (DS 47423)- Release 1.2.11.15-35 - Resolves: Bug 1111404 - 1.2.11 branch: coverity errors (DS 47820)- Release 1.2.11.15-34 - Resolves: bug 1109952 - memory leak in ldapsearch filter objectclass=* (DS 47780) - Resolves: bug 1109443 - Server hangs in cos_cache when adding a user entry (DS 47649) - Resolves: bug 1109333 - 389 Server crashes if uniqueMember is invalid syntax and memberOf plugin is enabled. (DS 47793) - Resolves: bug 1109335 - Parent numsubordinate count can be incorrectly updated if an error occurs (DS 47782) - Resolves: bug 1109337 - Nested tombstones become orphaned after purge (DS 47767) - Resolves: bug 1109352 - Tombstone purging can crash the server if the backend is stopped/disabled (DS 47766) - Resolves: bug 1109356 - Coverity issue in 1.3.3 (DS 47740) - Resolves: bug 1109358 - A tombstone entry is deleted by ldapdelete (DS 47731) - Resolves: bug 1109361 - rsa_null_sha should not be enabled by default (DS 47637) - Resolves: bug 1109363 - valgrind - value mem leaks, uninit mem usage (DS 47455) - Resolves: bug 1109373 - provide default syntax plugin (DS 47369) - Resolves: bug 1109377 - Environment variables are not passed when DS is started via service (DS 47693) - Resolves: bug 1109379 - changelog iteration should ignore cleaned rids when getting the minCSN (DS 47627) - Resolves: bug 1109381 - winsync doesn't sync DN valued attributes if DS DN value doesn't exist (DS 415) - Resolves: bug 1109384 - logconv.pl man page missing -m,-M,-B,-D (DS 47447) - Resolves: bug 1109387 - IDL-style can become mismatched during partial restoration - Resolves: bug 1028344 - Slow ldapmodify operation time for large quantities of multi-valued attribute values (DS 346) - Resolves: bug 985270 - [RFE] Add Password adminstrators to RHDS 9 as in http://directory.fedoraproject.org/wiki/Password_Administrator (DS 417, 458, 47522) - Resolves: bug 1070720 - rsearch filter error on any search filter (DS 47722) - Resolves: bug 1095847 - CoS cache re-scanning severely impacts performance (DS 47762) - Resolves: bug 1103287 - logconv.pl memory continually grows (DS 47446) - Resolves: bug 1106917 - managed entry plugin fails to update member pointer on modrdn operation (DS 47813) - Resolves: bug 1048987 - memory leak in ldapsearch filter objectclass=* (DS 47780) - Resolves: bug 1077895 - Memory leak with proxy auth control (DS 47743) - Resolves: bug 1079098 - Simultaneous adding a user and binding as the user could fail in the password policy check (DS 47748) - Resolves: bug 1080185 - Creating a glue fails if one above level is a conflict or missing (DS 47750) - Resolves: bug 1083272 - RHEL6.6 389-ds-base slapd segfault during ipa-replica-instal (DS 47448) - Resolves: bug 1086454 - ACI warnings in error log (DS 47670) - Resolves: bug 1086889 - empty modify returns LDAP_INVALID_DN_SYNTAX (DS 47772) - Resolves: bug 1086901 - mem leak in do_bind when there is an error (DS 47773) - Resolves: bug 1086903 - mem leak in do_search - rawbase not freed upon certain error (DS 47774) - Resolves: bug 1086907 - Performing deletes during tombstone purging results in operation errors (DS 47771) - Resolves: bug 1088171 - 7-bit check plugin does not work for userpassword attribute (DS 47423) - Resolves: bug 1090176 - #481 breaks possibility to reassemble memberuid list (DS 47770) - Resolves: bug 1092097 - A replicated MOD fails (Unwilling to perform) if it targets a tombstone (DS 47787) - Resolves: bug 1094277 - IPA Server Slow Performance, high CPU usage of ns-slapd (DS 47426) - Resolves: bug 1097002 - Problem with deletion while replicated (DS 47764) - Resolves: bug 1098653 - db2bak.pl error with changelogdb (DS 47804) - Resolves: bug 1103337 - find a way to remove replication plugin errors messages "changelog iteration code returned a dummy entry with csn %s, skipping ..." (DS 47809) - Resolves: bug 1001037 - WinSync removes User must change password flag on the Window side (DS 47492) - Resolves: bug 1004876 - idlistscanlimit per index/type/value (DS 47504) - Resolves: bug 1008021 - Self entry access ACI not working properly (DS 47331) - Resolves: bug 1009122 - replication stops with excessive clock skew (DS 47516) - Resolves: bug 1012699 - DSUtil.pm needs to check $res variable (DS 422) - Resolves: bug 1013133 - logconv.pl - RFE - track bind info (DS 356) - Resolves: bug 1013134 - Improve memory management in logconv.pl (DS 419) - Resolves: bug 1013135 - logconv.pl tool removes the access logs contents if "-M" is is not correctly used (DS 471) - Resolves: bug 1013138 - logconv.pl should handle microsecond timing (DS 539) - Resolves: bug 1013140 - logconv.pl -m not working for all stats (DS 47336) - Resolves: bug 1013141 - logconv.pl missing stats for starttls, ldapi, and autobind (DS 611) - Resolves: bug 1013142 - logconv.pl -m time calculation is wrong (DS 47341) - Resolves: bug 1013152 - add etimes to per second/minute stats (DS 47348) - Resolves: bug 1013160 - Indexed search are logged with 'notes=U' in the access logs (DS 47354) - Resolves: bug 1013161 - improve logconv.pl performance with large access logs (DS 47387) - Resolves: bug 1013162 - logconv warning - Use of comma-less variable list is deprecated (DS 47461) - Resolves: bug 1013163 - logconv.pl uses /var/tmp for BDB temp files (DS 47501) - Resolves: bug 1013164 - Fix various issues with logconv.pl (DS 47520) - Resolves: bug 1013165 - logconv: some stats do not work across server restarts (DS 47533) - Resolves: bug 1014111 - [RFE - RHDS9] CLI report to monitor replication (DS 47538) - Resolves: bug 1014351 - Coverity fixes - 12023, 12024, and 12025 (DS 47540) - Resolves: bug 1016717 - memory leak in range searches (DS 47517) - Resolves: bug 1022500 - Winsync plugin segfault during incremental backoff (DS 47581) - Resolves: bug 1024337 - Overflow in nsslapd-disk-monitoring-threshold on i686 (DS 47638) - Resolves: bug 1026956 - 1.2.11.29 crash when removing entries from cache (DS 47577) - Resolves: bug 1027496 - Replication Failures related to skipped entries due to cleaned rids (DS 47585) - Resolves: bug 1031222 - hard coded limit of 64 masters in agreement and changelog code (DS 47587) - Resolves: bug 1032315 - attrcrypt fails to find unlocked key (DS 47596) - Resolves: bug 1032317 - entries with empty objectclass attribute value can be hidden (DS 47591) - Resolves: bug 1034265 - 7-bit check plugin not checking MODRDN operation (DS 47641) - Resolves: bug 1044106 - logconv: failed logins: Use of uninitialized value in numeric comparison at logconv.pl line 949 (DS 47550) - Resolves: bug 1044108 - logconv: -V does not produce unindexed search report (DS 47551) - Resolves: bug 1049029 - Windows Sync group issues (DS 47642) - Resolves: bug 1053232 - modify-delete userpassword (DS 47678) - Resolves: bug 1053766 - ldapdelete returns non-leaf entry error while trying to remove a leaf entry (DS 47736) - Resolves: bug 1057805 - Size returned by slapi_entry_size is not accurate (DS 47677) - Resolves: bug 1060385 - Logconv.pl with an empty access log gives lots of errors (DS 47713) - Resolves: bug 1062763 - single valued attribute replicated ADD does not work (DS 47692) - Resolves: bug 1070583 - rhds91 389-ds-base-1.2.11.15-31.el6_5.x86_64 crash in db4 _ (DS 47729) - Resolves: bug 1073530 - Enrolling a host into IdM/IPA always takes two attempts (IPA 3377, DS 47704) - Resolves: bug 1074076 - e_uniqueid fails to set if an entry is a conflict entry (DS 47735) - Resolves: bug 1074305 - Under heavy stress, failure of turning a tombstone into glue (DS 47737)- Release 1.2.11.15-33 - Resolves: bug 1044218 - fix memleak caused by 47347 (DS 47623) - Resolves: bug 1071707 - rhds91 389-ds-base-1.2.11.15-31.el6_5 crash on paged searches followed by simple srch (DS 47707)- Release 1.2.11.15-32 - Resolves: bug 1074848 - EMBARGOED CVE-2014-0132 389-ds-base: 389-ds: flaw in parsing authzid can lead to privilege escalation [rhel-6.6] (Ticket 47739 - directory server is insecurely misinterpreting authzid on a SASL/GSSAPI bind)- Resolves: bug 1033405 - regression in ipa due to patch for ns-slapd stuck in DS_Sleep- Resolves: bug 1024977 CVE-2013-4485 389-ds-base: DoS due to improper handling of ger attr searches- Bump version to 1.2.11.15-29 - Resolves: bug 1008013: DS91: ns-slapd stuck in DS_Sleep- Bump version to 1.2.11.15-28 - Resolves: Bug 1016038 - Users from AD sub OU does not sync to IPA (ticket 47488)- Bump version to 1.2.11.15-27 - Resolves: Bug 1013735 - CLEANALLRUV doesnt run across all replicas (ticket 47509)- Bump version to 1.2.11.15-26 - Resolves: Bug 947583 - ldapdelete returns non-leaf entry error while trying to remove a leaf entry (ticket 47534)- Bump version to 1.2.11.15-25 - Resolves: Bug 1006846 - 2Master replication with SASL/GSSAPI auth broken (ticket 47523) - Resolves: Bug 1007452 - Under specific values of nsDS5ReplicaName, replication may get broken or updates (ticket 47489)- Bump version to 1.2.11.15-24 - Resolves: Bug 982325 - Overflow in nsslapd-disk-monitoring-threshold; Changed CONFIG_INT to CONFIG_LONG for nsslapd-disk-monioring-threshold (ticket 47427)- Bump version to 1.2.11.15-23 - Resolves: Bug 1000632 - CVE-2013-4283 389-ds-base: ns-slapd crash due to bogus DN - Resolves: Bug 1002260 - server fails to start after upgrade(schema error) (ticket 47318)- Bump version to 1.2.11.15-22 - Resolves: Bug 923909 - 389-ds-base cannot handle Kerberos tickets with PAC (ticket 632) - Resolves: Bug 928159 - CVE-2013-1897 389-ds: unintended information exposure when rootdse is enabled - Resolves: Bug 947583 - ldapdelete returns non-leaf entry error while trying to remove a leaf entry (ticket 47367) - Resolves: Bug 951616 - error syncing group if group member user is not synced (ticket 47327) - Resolves: Bug 953052 - DESC should not be empty as per RFC 2252 (ldapv3) (ticket 47376) - Resolves: Bug 957305 - DS instance crashes under a high load (ticket 47349) - Resolves: Bug 957864 - Simple paged results should support async search (ticket 47347) - Resolves: Bug 958522 - loading an entry from the database should use str2entry_fast (ticket 531) - Resolves: Bug 962885 - RHEL 6.2 to 6.4 ipa upgrade selinuxusermap data not replicating (ticket 47362) - Resolves: Bug 963234 - When integrating with Red Hat IDM/DS, an LDAP protocol error is thrown (ticket 47361) - Resolves: Bug 966781 - new ldap connections can block ldaps and ldapi connections (ticket 47359) - Resolves: Bug 968383 - Wrong error code return when using EXTERNAL SASL and untrusted certificate (ticket 580) - Resolves: Bug 968503 - flush_ber error sending back start_tls response will deadlock (ticket 47375) - Resolves: Bug 969210 - make listen backlog size configurable (ticket 47377) - Resolves: Bug 970995 - RHDS not shutting down when disk monitoring threshold is reached to half. (ticket 47385) - Resolves: Bug 971033 - connections attribute in cn=snmp,cn=monitor is counted twice (ticket 47383) - Resolves: Bug 971966 - 389 DS Replication failures due to Fractional updates (ticket 47386) - Resolves: Bug 972976 - ldbm errors when adding/modifying/deleting entries (ticket 47392) - Resolves: Bug 973583 - ns-slapd instance crashed with signal 11 SIGSEGV (ticket 47391) - Resolves: Bug 974361 - Account policy plugin fails to lock user when policy is created for individual users to lock based to createtimestamp. (ticket 47397) - Resolves: Bug 974719 - rhds90 crash on tombstone modrdn (ticket 47396) - Resolves: Bug 974875 - Attributes fail to be encrypted/decrypted properly when replicated (ticket 47393) - Resolves: Bug 975243 - DS9 still observes altStateAttrName as createTimestamp when attribute is removed from the account policy (ticket 47395) - Resolves: Bug 975250 - Changelog deadlock replication failures with DNA (ticket 47410) - Resolves: Bug 976546 - Attribute names are incorrect in search results (ticket 47402) - Resolves: Bug 979169 - allow setting db deadlock rejection policy (ticket 47409) - Resolves: Bug 979435 - Replication problem with add-delete requests on single-value (ticket 47424) - Resolves: Bug 979515 - CVE-2013-2219 Directory Server: ACLs inoperative in some search scenarios - Resolves: Bug 982325 - Overflow in nsslapd-disk-monitoring-threshold (ticket 47427) - Resolves: Bug 983091 - Memory leak in 389-ds-base 1.2.11.15 (ticket 47428) - Resolves: Bug 986131 - Very large entryusn values after enabling the USN plugin and the lastusn value is negative. (ticket 47435) - Resolves: Bug 986424 - fix recent compiler warnings (ticket 47378) - Resolves: Bug 986857 - Disk Monitoring not checking filesystem with logs (ticket 47441) - Resolves: Bug 987703 - memleaks in set_krb5_creds (ticket 47421) - Resolves: Bug 988562 - deadlock after adding and deleting entries (ticket 47449) - Resolves: Bug 989692 - Sorting with attributes in ldapsearch gives incorrect result (ticket 543)This patch is found broken and duplicated. Getting rid of it in 1.2.11.15-22. commit 2b3a50d55707ffa281c922ec188850576b757934 Author: Mark Reynolds Date: Tue Jul 23 10:28:45 2013 -0400 Add patch 0049 for Tickets-47427-47441- Resolves: Bug 984970 - Overflow in nsslapd-disk-monitoring-threshold(part 5 limits not displayed correctly). (ticket 47427)- Resolves: Bug 984970 - Overflow in nsslapd-disk-monitoring-threshold(part 4). (ticket 47427)- Bump version to 1.2.11.15-19 - Resolves: Bug 984970 - Overflow in nsslapd-disk-monitoring-threshold(part 3). (ticket 47427)- Bump version to 1.2.11.15-19 - Resolves: Bug 982325 - Overflow in nsslapd-disk-monitoring-threshold(part 2). (ticket 47427) - Resolves: Bug 986857 - Disk Monitoring not checking filesystem with logs (ticket 47741)- Bump version to 1.2.11.15-18 - Resolves: Bug 970995 - DS not shutting down when disk monitoring threshold is reached to half. (Ticket 47385) - Resolves: Bug 982325 - Overflow in nsslapd-disk-monitoring-threshold. (ticket 47427)- Resolves: Bug 921937 - ns-slapd crashes sporadically with segmentation fault in libslapd.so (ticket 627) - Resolves: Bug 923503 - cleanAllRUV task fails to cleanup config upon completion (ticket 623)bump version to 1.2.11.15-13 - Resolves: Bug 923503 - cleanAllRUV task fails to cleanup config upon completion (ticket 623) - Resolves: Bug 923502 - Coverity issue 13091 - Resolves: Bug 923407 - Deadlock in DNA plug-in (ticket 634) - Resolves: Bug 921937 - ns-slapd crashes sporadically with segmentation fault in libslapd.so (ticket 627) - Resolves: Bug 923504 - crash in aci evaluation (ticket 628) - Resolves: Bug 928159 - unintended information exposure when anonymous access is set to rootdse (ticket 47308)- Resolves: Bug 910581 - dse.ldif is 0 length after server kill or machine kill - Resolves: Bug 908861 - Error messages encountered when using POSIX winsync - Resolves: Bug 907985 - DNA: use event queue for config update only at the start up - Resolves: Bug 830334 - Invalid chaining config triggers a disk full error and shutdown - Resolves: Bug 906583 - DS returns error 20 when replacing values of a multi-valued attribute (only when replication is enabled) - Resolves: Bug 906005 - Valgrind reports memleak in modify_update_last_modified_attr - Resolves: Bug 905825 - PamConfig schema not updated during upgrade - Resolves: Bug 913215 - ns-slapd segfaults while trying to delete a tombstone entry - Resolves: Bug 913229 - unauthenticated denial of service vulnerability in handling of LDAPv3 control data- Resolves: Bug 896256 - updating package touches configuration files- Resolves: Bug 889083 - For modifiersName/internalModifiersName feature, internalModifiersname is not working for DNA plugin- Resolves: Bug 891930 - DNA plugin no longer reports additional info when range is depleted- Resolves: Bug 887855 - RootDN Access Control plugin is missing after upgrade from RHEL63 to RHEL64- Resolves: Bug 830355 - [RFE] improve cleanruv functionality - Resolves: Bug 876650 - Coverity revealed defects - Ticket #20 - [RFE] Allow automember to work on entries that have already been added (Bug 768084) - Resolves: Bug 834074 - [RFE] Disable replication agreements - Resolves: Bug 878111 - ns-slapd segfaults if it cannot rename the logs- Resolves: Bug 880305 - spec file missing dependencies for x86_64 6ComputeNode - use perl-Socket6 on RHEL6- Resolves: Bug 880305 - spec file missing dependencies for x86_64 6ComputeNode- Resolves: Bug 868841 - Newly created users with organizationalPerson objectClass fails to sync from AD to DS with missing attribute error - Resolves: Bug 868853 - Winsync: DS error logs report wrong version of Windows AD when winsync is configured. - Resolves: Bug 875862 - crash in DNA if no dnamagicregen is specified - Resolves: Bug 876694 - RedHat Directory Server crashes (segfaults) when moving ldap entry - Resolves: Bug 876727 - Search with a complex filter including range search is slow - Ticket #495 - internalModifiersname not updated by DNA plugin (Bug 834053)- Resolves: Bug 870158 - slapd entered to infinite loop during new index addition - Resolves: Bug 870162 - Cannot abandon simple paged result search - c970af0 Coverity defects - 1ac087a Fixing compiler warnings in the posix-winsync plugin - 2f960e4 Coverity defects - Ticket #491 - multimaster_extop_cleanruv returns wrong error codes- Resolves: Bug 834063 [RFE] enable attribute that tracks when a password was last set on an entry in the LDAP store; Ticket #478 passwordTrackUpdateTime stops working with subtree password policies - Resolves: Bug 847868 [RFE] support posix schema for user and group sync; Ticket #481 expand nested posix groups - Resolves: Bug 860772 Change on SLAPI_MODRDN_NEWSUPERIOR is not evaluated in acl - Resolves: Bug 863576 Dirsrv deadlock locking up IPA - Resolves: Bug 864594 anonymous limits are being applied to directory manager- Resolves: Bug 856657 dirsrv init script returns 0 even when few or all instances fail to start - Resolves: Bug 858580 389 prevents from adding a posixaccount with userpassword after schema reload- Resolves: Bug 852202 Ipa master system initiated more than a dozen simultaneous replication sessions, shut itself down and wiped out its db - Resolves: Bug 855438 CLEANALLRUV task gets stuck on winsync replication agreement- Resolves: Bug 847868 [RFE] support posix schema for user and group sync - fix upgrade issue with plugin config schema - posix winsync has default plugin precedence of 25- Resolves: Bug 800051 Rebase 389-ds-base to 1.2.11 - Resolves: Bug 742054 SASL/PLAIN binds do not work - Resolves: Bug 742381 MOD operations with chained delete/add get back error 53 on backend config - Resolves: Bug 746642 [RFE] define pam_passthru service per subtree - Resolves: Bug 757836 logconv.pl restarts count on conn=0 instead of conn=1 - Resolves: Bug 768084 [RFE] Allow automember to work on entries that have already been added - Resolves: Bug 782975 krbExtraData is being null modified and replicated on each ssh login - Resolves: Bug 803873 Sync with group attribute containing () fails - Resolves: Bug 818762 winsync should not delete entry that appears to be out of scope - Resolves: Bug 830001 unhashed#user#password visible after changing password [rhel-6.4] - Resolves: Bug 830256 Audit log - clear text password in user changes - Resolves: Bug 830331 ns-slapd exits/crashes if /var fills up - Resolves: Bug 830334 Invalid chaining config triggers a disk full error and shutdown - Resolves: Bug 830335 restore of replica ldif file on second master after deleting two records shows only 1 deletion - Resolves: Bug 830336 db deadlock return should not log error - Resolves: Bug 830337 usn + mmr = deletions are not replicated - Resolves: Bug 830338 Change DS to purge ticket from krb cache in case of authentication error - Resolves: Bug 830340 Make the CLEANALLRUV task one step - Resolves: Bug 830343 managed entry sometimes doesn't delete the managed entry - Resolves: Bug 830344 [RFE] Improve replication agreement status messages - Resolves: Bug 830346 ADD operations not in audit log - Resolves: Bug 830347 389 DS does not support multiple paging controls on a single connection - Resolves: Bug 830348 Slow shutdown when you have 100+ replication agreements - Resolves: Bug 830349 cannot use & in a sasl map search filter - Resolves: Bug 830353 valgrind reported memleaks and mem errors - Resolves: Bug 830355 [RFE] improve cleanruv functionality - Resolves: Bug 830356 coverity 12625-12629 - leaks, dead code, unchecked return - Resolves: Bug 832560 [abrt] 389-ds-base-1.2.10.6-1.fc16: slapi_attr_value_cmp: Process /usr/sbin/ns-slapd was killed by signal 11 (SIGSEGV) - Resolves: Bug 833202 transaction retries need to be cache aware - Resolves: Bug 833218 ldapmodify returns Operations error - Resolves: Bug 833222 memberOf attribute and plugin behaviour between sub-suffixes - Resolves: Bug 834046 [RFE] Add nsTLS1 attribute to schema and objectclass nsEncryptionConfig - Resolves: Bug 834047 Fine Grained Password policy: if passwordHistory is on, deleting the password fails. - Resolves: Bug 834049 [RFE] Add schema for DNA plugin - Resolves: Bug 834052 [RFE] limiting Directory Manager (nsslapd-rootdn) bind access by source host (e.g. 127.0.0.1) - Resolves: Bug 834053 [RFE] Plugins - ability to control behavior of modifyTimestamp/modifiersName - Resolves: Bug 834054 Should only update modifyTimestamp/modifiersName on MODIFY ops - Resolves: Bug 834056 Automembership plugin fails in a MMR setup, if data and config area mixed in the plugin configuration - Resolves: Bug 834057 ldap-agent crashes on start with signal SIGSEGV - Resolves: Bug 834058 [RFE] logconv.pl : use of getopts to parse commandline options - Resolves: Bug 834060 passwordMaxFailure should lockout password one sooner - and should be configurable to avoid regressions - Resolves: Bug 834061 [RFE] RHDS: Implement SO_KEEPALIVE in network calls. - Resolves: Bug 834063 [RFE] enable attribute that tracks when a password was last set on an entry in the LDAP store - Resolves: Bug 834064 dnaNextValue gets incremented even if the user addition fails - Resolves: Bug 834065 Adding Replication agreement should complain if required nsds5ReplicaCredentials not supplied - Resolves: Bug 834074 [RFE] Disable replication agreements - Resolves: Bug 834075 logconv.pl reporting unindexed search with different search base than shown in access logs - Resolves: Bug 835238 Account Usability Control Not Working - Resolves: Bug 836386 slapi_ldap_bind() doesn't check bind results - Resolves: Bug 838706 referint modrdn not working if case is different - Resolves: Bug 840153 Impossible to rename entry (modrdn) with Attribute Uniqueness plugin enabled - Resolves: Bug 841600 Referential integrity plug-in does not work when update interval is not zero - Resolves: Bug 842437 dna memleak reported by valgrind - Resolves: Bug 842438 Report during startup if nsslapd-cachememsize is too small - Resolves: Bug 842440 memberof performance enhancement - Resolves: Bug 842441 "Server is unwilling to perform" when running ldapmodify on nsds5ReplicaStripAttrs - Resolves: Bug 847868 [RFE] support posix schema for user and group sync - Resolves: Bug 850683 nsds5ReplicaEnabled can be set with any invalid values. - Resolves: Bug 852087 [RFE] add attribute nsslapd-readonly so we can reference it in acis - Resolves: Bug 852088 server to server ssl client auth broken with latest openldap - Resolves: Bug 852839 variable dn should not be used in ldbm_back_delete- Resolves: Bug 835238 - Account Usability Control Not Working- Resolves: Bug 834096 - slapi_attr_value_cmp: Process /usr/sbin/ns-slapd was killed by signal 11 (SIGSEGV)- Resolves: Bug 830001 - unhashed#user#password visible after changing password -- patch 0020 disallows users' direct modify on unhashed#user#password- Resolves: Bug 830001 - unhashed#user#password visible after changing password -- patch 0019 fixes deref issue.- Resolves: Bug 830001 - unhashed#user#password visible after changing password - Resolves: Bug 830256 - Audit log - clear text password in user changes- Resolves: Bug 824014 - DS Shuts down intermittently- Resolves: Bug 819643 - Database RUV could mismatch the one in changelog under the stress -- patch 0015 fixes a small memleak in previous patch- Resolves: Bug 822700 - Bad DNs in ACIs can segfault ns-slapd- Resolves: Bug 819643 - Database RUV could mismatch the one in changelog under the stress - Resolves: Bug 821542 - letters in object's cn get converted to lowercase when renaming object- Resolves: Bug 819643 - Database RUV could mismatch the one in changelog under the stress - 1.2.10.2-10 was built from the private branch- Resolves: Bug 819643 - Database RUV could mismatch the one in changelog under the stress- Resolves: Bug 815991 - crash in ldap_initialize with multiple threads - previous fix was still crashing in ldclt- Resolves: Bug 815991 - crash in ldap_initialize with multiple threads- Resolves: Bug 813964 - IPA dirsvr seg-fault during system longevity test- Resolves: Bug 811291 - [abrt] 389-ds-base-1.2.10.4-2.fc16: index_range_read_ext: Process /usr/sbin/ns-slapd was killed by signal 11 (SIGSEGV) - typo in previous patch- Resolves: Bug 811291 - [abrt] 389-ds-base-1.2.10.4-2.fc16: index_range_read_ext: Process /usr/sbin/ns-slapd was killed by signal 11 (SIGSEGV)- Resolves: Bug 803930 - ipa not starting after upgade because of missing data - get rid of posttrans - move update code to post- Resolves: Bug 800215 - Certain CMP operations hang or cause ns-slapd to crash- Resolves: Bug 800215 - Certain CMP operations hang or cause ns-slapd to crash - Resolves: Bug 800217 - fix valgrind reported issues- Resolves: Bug 766989 - Rebase 389-ds-base to 1.2.10 - Resolves: Bug 796770 - crash when replicating orphaned tombstone entry- Resolves: Bug 766989 - Rebase 389-ds-base to 1.2.10 - Resolves: Bug 790491 - 389 DS Segfaults during replica install in FreeIPA- Resolves: Bug 766989 - Rebase 389-ds-base to 1.2.10- Resolves: Bug 766989 - Rebase 389-ds-base to 1.2.10- Bug 759301 - Incorrect entryUSN index under high load in replicated environment - Bug 743979 - Add slapi_rwlock API and use POSIX rwlocks - WARNING - patches 0030 and 0031 remove and add back the file configure - this is necessary because the merge commit to "rebase" RHEL-6 to 1.2.9.6 - seriously messed up configure - so in order to add the patch for 743979 - which also touched configure, the file had to be removed and added back - also note that the commit for the RHEL-6 branch to remove configure does - not work - the way patch works, it has to match every line exactly in - order to remove the file, and because the merge commit messed things - up, it doesn't work - So, DO NOT TOUCH 0030-remove-configure-to-get-rid-of-merge-conflict.patch - BECAUSE IT IS HAND CRAFTED and not generated by git format-patch - if you must regenerate this file, - git format-patch ...args... to generate a file in patch format - remove all of the patch matches (all the lines beginning with -) - get the 1.2.9.6 version of configure from the source tarball - wc -l configure to get the number of lines in the file - sed 's/^/-/' configure >> thefile.patch - edit thefile.patch to have the right number of lines and have the - patch commands in the correct place - PROFIT!!!- Bug 752577 - crash when simple paged fails to send entry to client - Bug 757897 - rhds81 modrn operation and 100% cpu use in replication - Bug 757898 - Fix Coverity (11104) Resource leak: ids_sasl_user_to_entry (slapd/saslbind.c)- Bug 752155 - Use restorecon after creating init script lock file- Bug 742381 - part3 - MOD operations with chained delete/add get - back error 53 on backend config- add the actual patch commands for the new patch files- Bug 742661 - allow resource limits to be set for paged searches - independently of limits for other searches/operations - Bug 742381 - part2 - MOD operations with chained delete/add get - back error 53 on backend config - Bug 742382 - allow nsslapd-idlistscanlimit to be set dynamically and per-user - Bug 742381 - MOD operations with chained delete/add get back - error 53 on backend config - Bug 739959 - Allow separate fractional attrs for incremental and total protocols- Bug 739196 - Consolidate DS and DS replication bits in one package in RHEL 6.2 - There were two patches in ds-replication for RHEL 6.2 that were added post - rebase - the two patches for 722292 - these are now in the 389-ds-base package - and have been cherry-picked to the RHEL-6 internal branch- Bug 736137 - renaming a managed entry does not update mepmanagedby- Bug 735217 - simple paged search + ip/dns based ACI hangs server- Bug 733443 - large targetattr list with syntax errors cause server to crash or hang - Bug 734267 - upgradednformat failed to add RDN value - subtree and user account lockout policies implemented? - Bug 733434 - passwordisglobalpolicy attribute brakes TLS chaining - Bug 733442 - Ignore an error 32 in this case since we're adding a new AutoMember definition - Bug 733440 - RFE: add option to allow server to start with an expired certificate- not released internally- Bug 728510 - Run dirsync after sending updates to AD - Bug 729717 - Fatal error messages when syncing deletes from AD - Bug 729369 - upgrade DB to upgrade from entrydn to entryrdn format is not working. - Bug 729378 - delete user subtree container in AD + modify password in DS == DS crash - Bug 723937 - Slapi_Counter API broken on 32-bit F15 - fixed again - separate tests for atomic ops and atomic bool cas- Bug 727511 - ldclt SSL search requests are failing with "illegal error number -1" error - Fix another coverity NULL deref in previous patch- Bug 727511 - ldclt SSL search requests are failing with "illegal error number -1" error - Fix coverity NULL deref in previous patch- Bug 727511 - ldclt SSL search requests are failing with "illegal error number -1" error - previous patch broke build on el5- Bug 727511 - ldclt SSL search requests are failing with "illegal error number -1" error- Bug 723937 - Slapi_Counter API broken on 32-bit F15 - fixed to use configure test for GCC provided 64-bit atomic functions- Bug 663752 - Cert renewal for attrcrypt and encchangelog - this was "re-fixed" due to a deadlock condition with cl2ldif task cancel - Bug 725953 - Winsync: DS entries fail to sync to AD, if the User's CN entry contains a comma - Bug 725743 - Make memberOf use PRMonitor for it's operation lock - Bug 725542 - Instance upgrade fails when upgrading 389-ds-base package - Bug 723937 - Slapi_Counter API broken on 32-bit F15 - look for separate openldap ldif library - Split automember regex rules into separate entries - writing Inf file shows SchemaFile = ARRAY(0xhexnum) - add support for ldif files with changetype: add - Bug 703703 - setup-ds-admin.pl asks for legal agreement to a non-existant file - Bug 713209 - Update sudo schema - Bug 719069 - clean up compiler warnings in 389-ds-base 1.2.9- Bug 726136 - memberOf plug-in can deadlock when used with other plug-ins - Bug 725912 - Instance upgrade fails when upgrading 389-ds-base package- Bug 720452 - RDN with % can cause crashes or missing entries - Bug 720051 - RSA Authentication Server timeouts when using simple paged results on RHDS 8.2. - Bug 720458 - Directory Server 8.2 logs "Netscape Portable Runtime error -5961 (TCP connection reset by peer.)" to error log whereas Directory Server 8.1 did not - Bug 720459 - Update sudo schema- Bug 718351 - Intensive updates on masters could break the consumer's cache - Bug 714298 - unresponsive LDAP service when deleting vlv on replica- Bug 714298 - unresponsive LDAP service when deleting vlv on replica - memleak in previous patch- Bug 714298 - unresponsive LDAP service when deleting vlv on replica- Bug 706209 - LEGAL: RHEL6.1 License issue for 389-ds-base package - Bug 713317 - Cert renewal for attrcrypt and encchangelog - Bug 711266 - DS can not restart after create a new objectClass has entryusn attribute - Bug 712167 - ns-slapd segfaults using suffix referrals - Bug 709868 - only allow FIPS approved cipher suites in FIPS mode - Bug 711516 - Support upgrade from Red Hat Directory Server - Bug 711241 - memory leak found by reliab12 - Bug 711265 - Cannot disable SSLv3 and use TLS only - Bug 711513 - slapd stops responding- Resolves: Bug 705172 - 389-ds should only be supported and supplied in channels for i386 and x86_64 Server distributions - RHEL 6.1 0day Advisory - use ix86 macro instead of hardcoded i386 etc.- Resolves: Bug 705172 - 389-ds should only be supported and supplied in channels for i386 and x86_64 Server distributions - RHEL 6.1 0day Advisory - cannot use wildcard in ExclusiveArch- Resolves: Bug 705172 - 389-ds should only be supported and supplied in channels for i386 and x86_64 Server distributions - RHEL 6.1 0day Advisory- Resolves: Bug 697663 - memory leak: entryusn value is leaked when an entry is deleted - Resolves: Bug 699458 - windows sync can lose old multi-valued attribute values when a new value is added - Resolves: Bug 700215 - ldclt core dumps - Resolves: Bug 700665 - Linked attributes callbacks access free'd pointers after close - Resolves: Bug 701057 - userpasswd not replicating- 389-ds-base-1.2.8.2 - Bug 696407 - If an entry with a mixed case RDN is turned to be - a tombstone, it fails to assemble DN from entryrdn- 389-ds-base-1.2.8.1 - Bug 693962 - Full replica push loses some entries with multi-valued RDNs- added srcver because the version from the source is now - different than the source in the package- 389-ds-base-1.2.8.0 - Bug 693523 - Unable to change schema online - Bug 693520 - matching rules do not inherit from superior attribute type - Bug 693522 - nsMatchingRule does not work with multiple values - Bug 693519 - cannot use localized matching rules - Bug 693516 - Segfault on index update during full replication push on 1.2.7.5- Bug 668385 - DS pipe log script is executed as many times as the dirsrv service is restarted - bump version to 1.2.8.rc4 - bump ds console version to 1.2.5- Bug 690536 - Double free in dse_add()- 389-ds-base-1.2.8 release candidate 2 - git tag 389-ds-base-1.2.8.rc2 - Bug 689908 - (cov#10610) Fix Coverity NULL pointer dereferences - Bug 689895 - ns-newpwpolicy.pl needs to use the new DN format - Bug 689889 - RFE: allow fine grained password policy duration attributes - in days, hours, minutes, as well - Bug 688730 - Exported tombstone cannot be imported correctly - Bug 684349 - slapd crashing when traffic replayed - Bug 682897 - Allow maxlogsize to be set if logmaxdiskspace is -1 - introduce the concept of the srcprerel - with rc2, we did not rebase - the source, we are still using the .rc1 source tarball, so we use - srcprerel of .rc1 but package pre-release is .rc2- 389-ds-base-1.2.8 release candidate 1 - git tag 389-ds-base-1.2.8.rc1 - Resolves: Bug 680575 - Rebase 389-ds-base to pick the latest features and fixes - Resolves: Bug 681720 - setup-ds-admin.pl - improve hostname validation - Resolves: Bug 681611 - RFE: allow fine grained password policy duration attributes in - days, hours, minutes, as well - Resolves: Bug 681550 - setup-ds-admin.pl --debug does not log to file - Resolves: Bug 681379 - ns-slapd segfaults if I have more than 100 DBs - Resolves: Bug 680290 - setup-ds.pl should set SuiteSpotGroup automatically - Resolves: Bug 681351 - crash in ldap-agent when using OpenLDAP - Resolves: Bug 681332 - modifying attr value crashes the server, which is supposed to - be indexed as substring type, but has octetstring syntax - Resolves: Bug 680305 - ds-logpipe.py script is failing to validate "-s" and - "--serverpid" options with "-t".- Bug 676598 - 389-ds-base multilib: file conflicts - split off libs into a separate -libs package - remove old crufty fedora-ds stuff- do not create /var/run/dirsrv - setup will create it instead - remove the fedora-ds initscript upgrade stuff - we do not support that anymore - convert the remaining lua stuff to plain old shell script- 1.2.8.a3 release - git tag 389-ds-base-1.2.8.a3 - Bug 675320 - empty modify operation with repl on or lastmod off will crash server - Bug 675265 - preventryusn gets added to entries on a failed delete - Bug 677774 - added support for tmpfiles.d - Bug 666076 - dirsrv crash (1.2.7.5) with multiple simple paged result search es - Bug 672468 - Don't use empty path elements in LD_LIBRARY_PATH - Bug 671199 - Don't allow other to write to rundir - Bug 678646 - Ignore tombstone operations in managed entry plug-in - Bug 676053 - export task followed by import task causes cache assertion - Bug 677440 - clean up compiler warnings in 389-ds-base 1.2.8 - Bug 675113 - ns-slapd core dump in windows_tot_run if oneway sync is used - Bug 676689 - crash while adding a new user to be synced to windows - Bug 604881 - admin server log files have incorrect permissions/ownerships - Bug 668385 - DS pipe log script is executed as many times as the dirsrv serv ice is restarted - Bug 675853 - dirsrv crash segfault in need_new_pw()- 1.2.8.a2 release - git tag 389-ds-base-1.2.8.a2 - Errata Patches in patch files - Bug 666076 - dirsrv crash (1.2.7.5) with multiple simple paged result searches - Bug 671199 - Don't allow other to write to rundir - Bug 672468 - Don't use empty path elements in LD_LIBRARY_PATH - bugs fixed in released code - Bug 674430 - Improve error messages for attribute uniqueness - Bug 616213 - insufficient stack size for HP-UX on PA-RISC - Bug 615052 - intrinsics and 64-bit atomics code fails to compile - on PA-RISC - Bug 151705 - Need to update Console Cipher Preferences with new ciphers - Bug 668862 - init scripts return wrong error code - Bug 670616 - Allow SSF to be set for local (ldapi) connections - Bug 667935 - DS pipe log script's logregex.py plugin is not redirecting the - log output to the text file - Bug 668619 - slapd stops responding - Bug 624547 - attrcrypt should query the given slot/token for - supported ciphers - Bug 646381 - Faulty password for nsmultiplexorcredentials does not give any - error message in logs- 1.2.8-0.1.a1 release - many bug fixes- 1.2.7.5 release - git tag 389-ds-base-1.2.7.5 - Bug 663597 - Memory leaks in normalization code- 1.2.7.4 release - git tag 389-ds-base-1.2.7.4 - Bug 661792 - Valid managed entry config rejected- 1.2.7.3 release - git tag 389-ds-base-1.2.7.3 - Bug 658312 - Invalid free in Managed Entry plug-in - Bug 641944 - Don't normalize non-DN RDN values- 1.2.7.2 release - git tag 389-ds-base-1.2.7.2 - Bug 659456 - Incorrect usage of ber_printf() in winsync code - Bug 658309 - Process escaped characters in managed entry mappings - Bug 197886 - Initialize return value for UUID generation code - Bug 658312 - Allow mapped attribute types to be quoted - Bug 197886 - Avoid overflow of UUID generator- 1.2.7.1 release - git tag 389-ds-base-1.2.7.1 - Bug 656515 - Allow Name and Optional UID syntax for grouping attributes - Bug 656392 - Remove calls to ber_err_print() - Bug 625950 - hash nsslapd-rootpw changes in audit log- the 1.2.7 release - remove the ds-replication sub-package - there will be a new package for it - remove the selinux policy - dirsrv policy will be provided by the base OS- create ds-replication sub package- bumped the version to get it to build in brew- 1.2.7.a4 release - git tag 389-ds-base-1.2.7.a4 - Bug 647932 - multiple memberOf configuration adding memberOf where there is no member - Bug 491733 - dbtest crashes - Bug 606545 - core schema should include numSubordinates - Bug 638773 - permissions too loose on pid and lock files - Bug 189985 - Improve attribute uniqueness error message - Bug 619623 - attr-unique-plugin ignores requiredObjectClass on modrdn operat ions - Bug 619633 - Make attribute uniqueness obey requiredObjectClass- 1.2.7.a3 release - a2 was never released - this is a rebuild to pick up - Bug 644608 - RHDS 8.1->8.2 upgrade fails to properly migrate ACIs - Adding the ancestorid fix code to ##upgradednformat.pl.- 1.2.7.a3 release - a2 was never released - Bug 644608 - RHDS 8.1->8.2 upgrade fails to properly migrate ACIs - Bug 629681 - Retro Changelog trimming does not behave as expected - Bug 645061 - Upgrade: 06inetorgperson.ldif and 05rfc4524.ldif - are not upgraded in the server instance schema dir- 1.2.7.a2 release - a1 was the OpenLDAP testday release - git tag 389-ds-base-1.2.7.a2 - added openldap support on platforms that use openldap with moznss - for crypto (F-14 and later) - many bug fixes - Account Policy Plugin (keep track of last login, disable old accounts)- added openldap support- bump rel to rebuild again- bump rel to rebuild- This is the 1.2.6.1 release - git tag 389-ds-base-1.2.6.1 - Bug 634561 - Server crushes when using Windows Sync Agreement - Bug 635987 - Incorrect sub scope search result with ACL containing ldap:///self - Bug 612264 - ACI issue with (targetattr='userPassword') - Bug 606920 - anonymous resource limit- nstimelimit - also applied to "cn=directory manager" - Bug 631862 - crash - delete entries not in cache + referint- This is the final 1.2.6 release- 1.2.6 release candidate 7 - git tag 389-ds-base-1.2.6.rc7 - Bug 621928 - Unable to enable replica (rdn problem?) on 1.2.6 rc6- 1.2.6 release candidate 6 - git tag 389-ds-base-1.2.6.rc6 - Bug 617013 - repl-monitor.pl use cpu upto 90% - Bug 616618 - 389 v1.2.5 accepts 2 identical entries with different DN formats - Bug 547503 - replication broken again, with 389 MMR replication and TCP errors - Bug 613833 - Allow dirsrv_t to bind to rpc ports - Bug 612242 - membership change on DS does not show on AD - Bug 617629 - Missing aliases in new schema files - Bug 619595 - Upgrading sub suffix under non-normalized suffix disappears - Bug 616608 - SIGBUS in RDN index reads on platforms with strict alignments - Bug 617862 - Replication: Unable to delete tombstone errors - Bug 594745 - Get rid of dirsrv_lib_t label- make selinux-devel explicit Require the base package in order - to comply with Fedora Licensing Guidelines- 1.2.6 release candidate 3 - git tag 389-ds-base-1.2.6.rc3 - Bug 603942 - null deref in _ger_parse_control() for subjectdn - 609256 - Selinux: pwdhash fails if called via Admin Server CGI - 578296 - Attribute type entrydn needs to be added when subtree rename switch is on - 605827 - In-place upgrade: upgrade dn format should not run in setup-ds-admin.pl - Bug 604453 - SASL Stress and Server crash: Program quits with the assertion failure in PR_Poll - Bug 604453 - SASL Stress and Server crash: Program quits with the assertion failure in PR_Poll - 606920 - anonymous resource limit - nstimelimit - also applied to "cn=directory manager"- 1.2.6 release candidate 2- install replication session plugin header with devel package- 1.2.6 release candidate 1- Mass rebuild with perl-5.12.0- 1.2.6.a4 release- 1.2.6.a3 release - add managed entries plug-in - many bug fixes - moved selinux subpackage into base package- rebuild for icu 4.4- 1.2.6.a2 release - add support for matching rules - many bug fixes- 1.2.6.a1 release - Added SELinux policy and subpackages- 1.2.5 final release- 1.2.5.rc4 release- 1.2.5.rc3 release- 1.2.5.rc2 release- 1.2.5.rc1 release- 1.2.5.a1 release- 1.2.4 release - resolves bug 221905 - added support for Salted MD5 (SMD5) passwords - primarily for migration - resolves bug 529258 - Make upgrade remove obsolete schema from 99user.ldif- 1.2.3 release - added template-initconfig to %files - %posttrans now runs update to update the server instances - servers are shutdown, then restarted if running before install - scriptlets mostly use lua now to pass data among scriptlet phases- rebuild with new openssl to fix dependencies- backed out - added template-initconfig to %files - this change is for the next major release - bump version to 1.2.2 - fix reopened 509472 db2index all does not reindex all the db backends correctly - fix 518520 - pre hashed salted passwords do not work - see https://bugzilla.redhat.com/show_bug.cgi?id=518519 for the list of - bugs fixed in 1.2.2- rebuilt with new openssl- added template-initconfig to %files- added BuildRequires pcre- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- change name to 389 - change version to 1.2.1 - added initial support for numeric string syntax - added initial support for syntax validation - added initial support for paged results including sorting- final release 1.2.0 - Resolves: bug 475338 - LOG: the intenal type of maxlogsize, maxdiskspace and minfreespace should be 64-bit integer - Resolves: bug 496836 - SNMP ldap-agent on Solaris: Unable to open semaphore for server: 389 - CVS tag: FedoraDirSvr_1_2_0 FedoraDirSvr_1_2_0_20090428- re-enable ppc builds- exclude ppc builds - needs extensive porting work- new release 1.2.0 - Made devel package depend on mozldap-devel - only create run dir if it does not exist - CVS tag: FedoraDirSvr_1_2_0_RC1 FedoraDirSvr_1_2_0_RC1_20090330- added db4-utils to Requires for verify-db.pl- Enabled LDAPI autobind- updated update to patch bug463991-bdb47.patch- updated patch bug463991-bdb47.patch- added patch bug463991-bdb47.patch - make ds work with bdb 4.7- rolled back bogus winsync memory leak fix- winsync api improvements for modify operations- This is the 1.1.2 release. The bugs fixed can be found here - https://bugzilla.redhat.com/showdependencytree.cgi?id=452721 - Added winsync-plugin.h to the devel subpackage- bump rev to rebuild and pick up new version of ICU- 1.1.1 release candidate - several bug fixes- fix bugzilla 439829 - patch to allow working with NSS 3.11.99 and later- add patch to allow server to work with NSS 3.11.99 and later - do NSS_Init after fork but before detaching from console- add Requires for versioned perl (libperl.so)- previous fix for 434403 used the wrong patch - this is the right one- Resolves bug 434403 - GCC 4.3 build fails - Rolled new source tarball which includes Nathan's fix for the struct ucred - NOTE: Change version back to 1.1.1 for next release - this release was pulled from CVS tag FedoraDirSvr110_gcc43- Autorebuild for GCC 4.3- This is the GA release of Fedora DS 1.1 - Removed version numbers for BuildRequires and Requires - Added full URL to source tarball- Rebuild for deps- This is the beta2 release - new file added to package - /etc/sysconfig/dirsrv - for setting - daemon environment as is usual in other linux daemons- fix build breakage due to open() - mock could not find BuildRequires: db4-devel >= 4.2.52 - mock works if >= version is removed - it correctly finds db4.6- Change pathnames to use the pkgname macro which is dirsrv - get rid of cvsdate in source name- Added Requires for perldap, cyrus sasl plugins - Removed template-migrate* files - Added perl module directory - Removed install.inf - setup-ds.pl can now easily generate one- added requires for mozldap-tools- update to latest sources - added migrateTo11 to allow migrating instances from 1.0.x to 1.1 - ldapi support - fixed pam passthru plugin ENTRY method- Renamed package to fedora-ds-base, but keep names of paths/files/services the same - use the shortname macro (fedora-ds) for names of paths, files, and services instead - of name, so that way we can continue to use e.g. /etc/fedora-ds instead of /etc/fedora-ds-base - updated to latest sources- More cleanup suggested by Dennis Gilmore - This is the fedora extras candidate based on cvs tag FedoraDirSvr110a1- latest sources - added init scripts - use /etc as instconfigdir- latest sources - moved all executables to _bindir- latest sources - added /var/tmp/fedora-ds to dirs- added logconv.pl - added slapi-plugin.h to devel package - added explicit dirs for /var/log/fedora-ds et. al.- just move all .so files into the base package from the devel package- Move the plugin *.so files into the main package instead of the devel - package because they are loaded directly by name via dlopen- Move the script-templates directory to datadir/fedora-ds- change mozldap to mozldap6- remove . from cvsdate define- Having a problem building in Brew - may be Release format- Changed version to 1.1.0 and added Release 1.el4.cvs20070119 - merged in changes from Fedora Extras candidate spec file- Bump component versions (nspr, nss, svrcore, mozldap) to their latest - remove unneeded patches- update to a cvs snapshot - fedorafy the spec - create -devel subpackage - apply a patch to use mozldap not mozldap6 - apply a patch to allow --prefix to work correctly- Fixed the problem where the server would crash upon shutdown in dblayer - due to a race condition among the database housekeeping threads - Fix a problem with normalized absolute paths for db directories- Touch all of the ldap/admin/src/scripts/*.in files so that they - will be newer than their corresponding script template files, so - that make will rebuild them.- Chown new schema files when copying during instance creation- Configure will get ldapsdk_bindir from pkg-config, or $libdir/mozldap6- use eval to sed ./configure into ../configure- jump through hoops to be able to run ../configure- Need to make built dir in setup section- The template scripts needed to use @libdir@ instead of hardcoding - /usr/lib - Use make DESTDIR=$RPM_BUILD_ROOT install instead of % makeinstall - do the actual build in a "built" subdirectory, until we remove - the old script templates- Make replication plugin link with libdb- Have make define LIBDIR, BINDIR, etc. for C code to use - especially for create_instance.h- Forgot to checkin new config.h.in for AC_CONFIG_HEADERS- Add perldap as a Requires; update sources- Fix ds_newinst.pl - Remove obsolete #defines- Update sources; rebuild to populate brew yum repo with dirsec-nss- Update sources- initial revision 1.2.11.151.2.11.15-97.el6_101.2.11.15-97.el6_10dirsrvrepl-session-plugin.hslapi-plugin.hwinsync-plugin.hlibslapd.sodirsrv.pc389-ds-base-devel-1.2.11.15EXCEPTIONLICENSELICENSE.GPLv2README.devel/usr/include//usr/include/dirsrv//usr/lib64/dirsrv//usr/lib64/pkgconfig//usr/share/doc//usr/share/doc/389-ds-base-devel-1.2.11.15/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector --param=ssp-buffer-size=4 -m64 -mtune=genericcpioxz2x86_64-redhat-linux-gnuASCII textUTF-8 Unicode textdirectorypkgconfig filesymbolic link to `libslapd.so.0.0.0'RPR?7zXZ !PH6-] b2u jӫ`({bO&,H1)3&xD>E9d2fYUZǧuG8Vv>gF'3{xuUZ#YĜA: ݱ1 x#FEh"G𰓮$(? Yf1ʍGuO) o5`a+{9W-y<[FND E+괐bt~ok˹l\$ κr3늡 |`h tOY'oe\%PYZ_tm5jH5/YN{Z)SZ>TE٘4+Bm-g|aeeqg̭ R`2~2>C|U?scm K*)j$DCIQSfDL { ~э:JA<.A"Rb{ϥgy^7 Z* ϓڲ|.tYeq*3Ra'Nv9̄yOf]S14xtF9= s`Pr©CZ8*?>EvD̢wXDkjbvruKpHQo~uAѹ$b=I1 EQqᨕQxV֦ cR7^qTe>t\Zk؅]9nQpV >9?hB.gǴJLT#ۀJ3饔,L#-_?P6: ؇Yp eO,G 4QL!B4 >LgϿr'xԈXTLlxϐ cS($G0]*8{Y݁HJr퍊|!/}IlCveV/VaT$%-_1MiЈPm58n;y ZҩBR`PTրb'"Wgp]'&6V aȥПe+gn@*k)|{EKŨpPvy&.J^X~(kt{a7ıX?rݝSqD>Ӝ'e?]*fg ϑ*\|9NkR6afqמzn1`M֚~N T0=rӉpQSlk5?%WC.3/<=q4-7~,e[>փ.TharP\nQF-Ha INEĤp՚(7%mEsxKHT>? &ߢ=GTi &!3^Y1sIjr-+!!k4xy9 p~F%)d%QD ?j*$y rPZ/6ǰ+e . -{b;y=sfZ"aFg(e 7х)0ww6o(81a&+E1P~od:;뚔KM7`}4h=1ˆI}qO`H2OP$j\iF6'ڞ`w_NoFQp=I.z/ORvzl13Xҕ,"|;X{7^v J7?ƵZu+7JG ?RfF^l}5u." ?NvO$+ 6l/?!d_a=p>vKCon{W9`9TEdd4Dc[KSNPHF` ߟCϻ1BK-(rSBK:Oi.oCѼWĢzGkTCAeva~ϢǝmU7NG ZqGdyxp|.ދkf/ZdǮbe6ȰFe2S+fPw52PM7 ž4JOT"JUÛ O:B{׆bKtmB5R]ɝG&R&un` эa-hz.)8P?{Ni yZ~n$y`S,]GGӪi]˻T4;v;J@31} qٻ;e*꼹2x4A}Ӥѫ/fw[ho"JGWi#%69kؘ |FN w#" 7u"(-ǘ+]z0԰}gN.9X쑔xCF0cʶ^ t*T fo x7xl^V`zzg59<4 j}J#*(ϋ/P cus&䍤]+n% * 39ۋVx͒;α12q`ܡ8Ih%cV|}hH=Cz )KhOaF;"Ũ^ ލ~T YaSyGܕS[Nn,PŋDf4^L*/Ū$RP+QmzMN\>̷8d-sPQۯ']GxvZ5<>+$^%bsyɐ{CQduP sqwSTy{˒8Gq\f7 u8`TDjYƌ)9׈g %MNLMOMd jl|q"ΐY3k{gሱKŢTVͰVs5fDCUh75+=}`iWkVUM&FetPXK;"/Oˤ@h N\ $#փ$,D5I=s"S" - r1 YOT 2FI%lEb%`dױw\B9ua#z^KATJ/yޱp2ѭ,ԳaTIxU7 d(z +E&G: duzD6<#@oYqw ;Xm@ W,#6zy@7ח!gQR"t?xaZnRnb/ڷA p %@A@w8T9AZ̒l 7_ioJФ$ Ed!bp}ɱEiH녖Jq,F`L E-}m3`p B#л&< 3 BB)o.kvW(IS-3K*ޤ 0jy0/y{#QTiZlTlj$#fc"s%UmHru!,4aomPdu#y =љY,,=aPFJόYzqʔ-ưſC B񄷯ySN47;k2cл(~OǛ.B"fz:Ft?{;.,1{m:1 6[<&%"ذ*]nR~ڱUBa/D!+-1] tL#wO_Nt]&i:؀dY۶8{4M< /dgU;U9˔Iz*6~8+gD O8U5g:Sii_*~.Z}@}Fq3 op }e\ bdrv٪j9wjIKQxYS WCk"V MgTTEKƽM S U(,ڛ@?gNG',nUvӧJk\.$ n0I5́c7:yJ2&{Nݭigƙ,2#4j\LnDD@>C6/'VvR;Bb&עs$T9K 6g4*#zq+;]$ZԲGM SR;We!oEkF^PV|EDuhA͍tm(4_ø΁?3+7,tiw[wĢ"3}C֯/ V*gB}p0^^W'Ӈ{X u*:D*3sj6>=aKYYv[^CADuBU//~q}BSC7 ˔EBxx>S?M#^\G6 BРVp7NGj5N\nAwC{_B`e ZfM33JN Ȟ\oRDZ OzmƠeAȿeGLNI?phTD 2!RVgϢ;n7*] ){:,{_8xTB*[PI0x _n7Z&0AגՖj2nȌB+JW)Cwp,֖.XyeLg8K!Fi0,Ҽc|Fr(,g0RUiJ,eY~L2N D\?*DW?H$ܿ_r1gǍ0=s ) ~]}UT?8];S?Vm"Z¢@b;`ۣw⫵Y%f"뉯+\(T p\` 0`ǰT)sE 47h1on^УWiRfKڻR | )["}fn 67o|FC%@@E9NYmU։\t cE&H FPI)nE ZЀL$q!u<|*X wxVjyQwDNX{ Wf L]azPCv<=?z 2}qT~&`=7u0jjH@0՚a<٘_JLHߝk+àӜqo!Q49IM?IWNKI ֯̉u4rŠfCIMn;`ALldҎ+@~k `M"rݭ"g4f??~_.{n4nDL脥)TN5u -xBEeyX߱bY~g*;jK2Lχa~86t_=BR?"vɉq CH<͞`$(“4*7~j"s,Qp]A5t{7Nt - s\aɲ`2@nKr.,5)Rud \1Z8Ž_BJ+ˆ mbA`z2ҟ&ِs3IN5 m-).7 _\6 r469:UV7"Wn.cW*B7ְS G<.b[DXIe2,[.,m^h]va3NڗNuI,^QhT٩~7>?S3ClYq98JZ'Q +I6a6c 'mqB1-9=<1jjzT|IGIm8,}PG!u&s̲r+vFcC+:@\_N7ʅGB{W?TCP1MyWD> تT6z_FeIs!}e}!!F3^Z;FޞGsy6B2_!bBP? ЌVĮ$ѱ[uDOԧ+o1.㠩24@؟{;΄+]_]}j@]qWBB+c-HpO F1$} Y*hxF@FIә kq.V-9&^r&B2CKQp)6a#U=ѐvRt>q󂋥%"6S> FXiĮfP669@?.jY,BF7"ب*_6/\_]ܦIrvPQpY0 ,_nLʼnGQE3nbț π3}eJ׷W(xo_P4F!&R=֟1IB/\m}aK8FXPBӼk_f$>'Fh#/-6DжcEoNM;֫*#OKG4^Iu٧3/{p#|d>ZT+XgvnEmҹgxsÙ#Ӽ;e"NfL!*&Y.Шd织ek@(?Y-[3'w nLmU-y궄|iyJ4-EW6srBzZ %>[J;q飷>7A58={Bb#4,7k$?HZwղfedM銛^H=4`GyxϷHh`;l">ǎ~7 7yu?s"vR"[;g: vwjIC ]v+ AٌI2Bg]c-53MIiX1~}Ľ|:#[Y̐_)C=&0,eT5H?.?`s*my=-)n/mU>@p$"&X;=en:/şR߼=1{Jgq>O9I>lg.tv ӈI:lIU,cΡnvx֭_akȆTiLF@ߏk竝眰]m6NNSKBiA#%t[mqJ߰ zıS]쫏$&\5_)eMxY[ծ zv d]1f)@}CEU,-GOn/&ۍzv8W$ƀgna<̗v!NQlZGPFWuV9#drF Q\ +m1#GVՠltnx>HP{z&iWT],bJ?Sg-V-@߭\ "Uf_JlrIx(z{WGد ]zSd?+N] c2ƴ\pկc,8!r LqL@z&!V|8]F{|WBWg=*tzM'DCZT#8IKrTgZ7uqdbӣ 1gH*i-.pyVڸykcwdhc@\9dFvˋ"X~>XG2dcz] /]5 'F_rJb6-dvEW/![z6* O729QD{i$;r.M(nu5p4ɟA-8B6>;w.PbBlC[<"ɝDrz~ums ?!1M6?c5s_q>s<3Mz~r$D48#ʕ$kY`qJ)4=͂Ug4e'Vx{vk=Th(-}tŪj*l`5$b]Szt\*e[)`uמpL)FMR[UaTG*[$,;8M;Rݩ,vXb^^3J5=Rx/aTGp۵*Ok-Q(Ɯ2`E { E=0O SlCWQ˷\I+G*1U@hUBL0-̹iwTgF̾H  gO'& ~gu=&鏲zHXv1%>;!2ZCf8p[Î 41.oKU l%'WK=Ai6TŻbrZE?#k [N=چˇBZr(Z@"XZO\uqMyv E6~wMcϠ?0wOn,P8yZ ?9Ȥ 8ƔH *d%6D@JjuDZ;\akڊ֏}щg;lFU7vAeN?F` FilW]fza `08qIRqTzye7"KBs0aH*j[ՖMGGbAA¼,W_]TC%6#r?77_n!&(V  P??Zs&N:\TΒzWMx1gtp'lS=g&_O@鶂hx孈|aAܸVU%wռ(й3) V9TGFt21p'[X!ٸ5w4|'Lt[P&cr~vR3dD-QQ7.Oj^C'4=T'LF1volZVKw 'F ϿڊbEq?;y Ynd FeqD.@")Њ"@awl <@ɿ`|n+I?fR /+3^e~zBitEGiѹko+Sm%PZN^s*&9!Mux H61|+Q\%"M_OVنcS,7_"^@>z˖tNvBɖ`9کh҈οd,c O%b~QпŐi`k R=-e/ k y*}CX@7oب=_āb[r lն0FΊU1W[?:? J5JT5yRparxuI$Y-Wݢ}*S2|;Zgy >{5NV`$ ӽ\ƍTh5jɃHr U7Nm7̨ 53 G]knvs~}Inwb]y~ Lw i/i(o{!s:-RSBU nƳh}0Ӕ=p(]r|ӡ3HH&\Tg6!qzLow=ým{ʞ0XO:B=MM="Tץ^ZcJh*T5R.T<#+"Q8 XbڙQGJ߸-y"?(&Ӄz ýk풑r: ))i!_Å5 >ݥˡ'dn 7m&n^)5ƧБ`#8 }RWqe-BO{ ;",Vګaĵm¶*R@,|sXT`4wN /Tm>B![PPi4@31#h%NoZ}}IcrmSV./)aj}5yGPqL'\(b?_.C},82i;\eTh* ghX*Z湚Z =/Юk9)cP-yɔGyBdTAp :ͩ I]!B=" +5tJ 8:a Gs[+3oh& ?_:h?xiwVRe0vBƻo[o_=v#?ҘGnSR8~bG_̥`HKKHV"o޳:7.zR^ 3 4 ИYQŠ/5-S#@#,G/0eZ mԾc.jgKp$,ۇ6HR=qsV8&DZ(7ˆv^X{V:EDIH#4CcQptzk$FNcpnoSG$ @\Ņ3cNw)0 }PP_>Ѧ])7`Gӂs7TZ9.;I|%Pfc4 )3lAfW!F[+6ih_QP^u=`e]bאvT vt<6+SHw\WҌݭ/ۖM[['.UR m%Vz>Rywr7Ƕxls:" am<&kPy ",܅ks<ٷ30֝z%û%NYi4/_S鼈-~I{4O*P߼tF[i%)Yt`)~&k0V3qJiGgjyE_OPi5*Xv< ,#zxJ1w*R m\G4}cJA9X6,(JGd=>S %md+Y ;oKMtGQ ӥ7HtM-08r ga}5<z MڥBn̚HW OUr_uLMdsu|w{$5 J)xُ\ӎ|_%JnPyJ6nQ1jdE?& Infk],+=\ pTaɨ7>.b'){5 ')l'xE3)2C%FQOg./Z F+QvvWG}HZU]rX4%5}f LQ~R@ J \$j%$6,_bREu{Dg= FR34B="I@F[i2J (ij}Y^`7jz >pX0/ø(I[!1/nqy'rγva Yf,FV@bYGj|(GFjqI,2"180Э^{w1Q[ў$lpnI" --?2_di@w¨\Yڗs&h帍*X\W7bV]PW(.jjgyHP؏"6 bFP! T9ɣٶukVlRy;z'M}Tp)a.-"k|&rW-5xy~Y}|bZg9Vc\87Cdl)K%p@ q!|\=- Եx}:n /fH<;<SYJ >xo<7#oÀ{ \v`A khY$i+iI%P&0È'ȏ(ùG$+WV$ѣ L|Q&;Ƹ[@;䋀K> Jkbhܷ+G{SizUo=?^2$XcCφl%c߉ =ڀyIqdKEƺJ-ފiSQvgsـ}JnX\lVI{$tSC˔,T2-\~4 %ӬQV^η!//3~1B k 91~G!lnzE[|maR IMFk4;ԇĢIJz=Ӝp -(1Ser  ?K<щtoS~9X:Cqtm=؊2e0x@of&a^MݗrW/@l,A3\ u( wpX.MW&KF\Eeeg*B3RvlMAWR(n/k>Uc7 hxՂ12Gxx'&nG/Pg=j5S-Wa-erTMXΗ &`ǔT3H=~N+ÊW?2-Ygecܖ7n4Τ'Yi;cWD>`Y˻k0Pn 䌹MvBϷrЪi}81>u妙o:|(k@$(uPgi6?HL*Q>_nG~G:Ε{ߘkR.xG7p_.h;p'Nw_ti:hWPƒdXN T2RZ˭ŰQz4s݊@?r>=)F9[T_Ji}jѠQF;m\U =QGJ(V֊}Y"'r 2 OzdQsusf]3Yo=VY_As5\I՟P,s膍-*>W&FH vH((F;H' ۹i֦ͧ8& {{DMƷg @W4je-d\jopeL>;#3nW:4;v?*Qc,f_BE0ͷlw)|#_k/V,+TC/)\J<PlF:xbi"F JW'ŵحX޽]/ =V 5!|(ᄘWLц?75Tm33#>h}!/հ8*Yhd?5<9tԠ5ƥ9~s 뻶6bUњy$ܰPIw:&?zi ߌB9Jl6Xgȫ [Iߚj U籈AJ}/W߉oU\ݏ8z1bq"x`m~`.tD+$y}[^pe.n__OJgFVGJEGغ!#!alP-Q^_̈́||/|12Wɟɟ:>_܉}Vsv6ςGWF@ XYW$ 8_&Nm}&2(̩ʃ\{ӅqU0&FG~ pY27tPV})̚k [S04t 6(7^szar$h~\D,t~{FB T^J@Qkbn@A{ :ʷ!!N)K#XӫaFj{~Jd/ɞArޤ [Q0Н'gkk8& np.`4NTVjJo"43a!KƠr3NyGj 3Krxy$J+?U,cq:^yl @6/p! H/M6>w^쳻~-8\7ܷ ٽڊ~%$̢\|dc]8X|̢@f|K2Fˉue~n05 ~^Ĩ2TG^k8ɧy3oC#qȱB2~4/G%M"aF(nJ$,nputQ;Zvj݇v26Cȍ<}--aP8`#} 1f:rw6PŖ,]yv%$ R'B`vl|kƾ ݢ9 -r~=@g\T5W+_ꛜQoM)+5VDl!(cF[)KV<[L `MlHC%UOy/Np3^ ģ>@h_qbuV;)DŸܸ$uKe g[`м"x~p.tn. ''xD"Vk8Y9M[mH װ٦{xiU3a,ztθwlہ0PK7Fzvϻ?0#%>V]-O'FꍁJvC6iV<*:_XBOq\ZK/\lcnǟ/]t"ͦLy"g@%-?S M@- F*CآKYyȳI-bg_ɓ:5oW\q/tYt#$+!:}b vzye ?[^Ly?Dg((-WSs^v=AeHМL6~P6qoa8=Y4@m{ riLxxn~[@w+Q;7[;hf ׼lLcU$;]xbu !ó$:HzqE M澅~yΰyj^d9`T\ 4Z-!Vqhf0U«;yRIÐV(NUsv͆7ڮ\l 1$/ Jhj͆,[-ժ?mz3VÉ'N bioy%):EzL2YH mj⎨h}VƉ4{~,|X+۔hvg%#xO1kM8 FzߘFh6b/ít7`>ڊO[Ș.\`piBd4ی}6lљt(㘧Ũu7 QDz{PC{7iYI``LAT™[醸x>s"d[ZꚘ|hG=/:5K'~YiusiTo0\c{?XzU}r@+ n :!>y,Xzˈdo[[<~#*sfqd/gO x)b,hlȆVvq'6:>2'(>Yf,W<:J/BMrx4$Pǎˡ)ug9ݟ֔"OTԞ`-v֬63Ue'%%I Iu, 5 A^gU%B'Om t "}o.4%1n a3(^cv=WqWE(eLJ$?ɋbA ICj'r0ȮauDbpJetKe V'&jz?- v]%BέlO4n%A2e9}iX;0'~?5xhhgZ]^]GUtO \ )^.OpNXǃzJxI,[Q8ٟ2u}B(y_uΔt(r4rC! wLf؍Պ~prvh0E&EQ\P6maJ s\uS/O ]*} aI0ǶDwap3M9YuI][)4q$z A(qKjGh5Ygzo5`,L FjrWk]S! ^-d|9K]PHGQp/:t:LIϣ,^p0.\rC95tyo @j t97& =v21۞]o;hH ]+E3i4槧NYʖͳz6 XX|lUj_^#  $uU-eRF Fè.s1HCvpPgk uzqQTQk-NWIs$znͳTZwwl}ՓL<3 'NytqI4X2"Vd[fG56)]irYCqS {pțYfqV`( h<\ mP&^6FbXQPKL+lcF,i{$lK!qdT&tw1uρLUJ y=I,C4\M 7IetNL"1^S4gMwysQQ 't]͘@}CJlp(kY>AĻe)c!RjOE[̧/mH W(^xh[ y\KMH}[j,/ <#2L7!?7܉k"g'邦KS׿S/coVxyp?txi7j3J4j"d"ex6r=Fb˶0aV#.'pZJJY{⊊Ħ'2L-Vӡ)mJv)s^m!tcٹ$dv (8yp].YvϜ<z{^˯8Rfz ,d`Yr4Y^P4YvA+8,.%+Okki'c>2Q/%eZt&՘Zׄ[.sY) dcĽz?nǢxk> 43(n f:|0qӻ/d8GXV4F\)_DD*f/0c&שQeUm|e2*T_hZ( =; <Ҩ^y.m| |OadͦH;Ê-@yemZ֒sFwp&NM BGe[s\`6|TךwN2LAX{ӱAJ $j{GmְO0~5) -BaZ WPE$[eNq`Kp"\)n8\j|ώw*ptwV]WK89Wӛ|Evr9Yx ޤ'$02:8JBRMj_'Yr>Bۃ2]o\3vGdJAFSyVGF&:[9y<їF_H;*^'v>`.M[uggӉ]Se$>B-aA obKG݌w=x7? `7-bPu;ƥ؃]Xf+4O_7hQ%jS=Bho"y7) k=Tc#u;7:椘 z4+(AX'-v([eTvf&٥⧋pg_y zӀLI dAˀx{JwXdի4u(N 6#\D,KA>vq(.Wvphk{Dl̃4ILRɫ"daBYǒ;u}LJfJWIܽzz?RoIק8H1BS=AJt0]bͼ2Q] {fBft0傮S +|&6uGlV#n-mm~UZ*N.֮&P关S!s*H2 p^r'@dY!9 -v^T|fjo C';ܭԙlۮB?#q݀_Fi O?@"?r%SIw냸2%L!<wlu|?dj 쫄v`nW_/63kM&wz7W/@uMl /C2Ri/\q v1Wy oE(x|"Jv.oa=^r^)L qCT3'!pQ@̟IaپoB 9Z*(™冷ɸ4_[z}PaQ!N(Yn@ 'Y)ۂkڗtQ%EV/Y 0u5'?~ kBsy"6wm2O^iz#!Q#)*xm-![AZn3n`}1=~b*tnyqfJtdrg[#)Uؖf:," 4E K$O,p hugmmfo_1.3J=kYMW3$qr;=jqp:]]C7Ӏ٣o'pCqc"1VEW, kQ ٧i-&~7m>qo*^ qZp15FنZ$H'Η^@P|8}>3щ~Lkt+c~tIsfO\uCQB퓁t(_tr2~J#ApF d!ag[EyUŐ4q+'+vAϼ&JMnVFP*#: '![>vA򜊌My%Bǿ*F(a}py 5,N XcJN;Hݰ O0w1vy8w* $n+Z}OIgAV$7KjQ@*X^Uq j7ɋԏӰ C);^zv$o3}W)$R3@.Dʥv6]DRW#M.<+D~Q&@Be+J`lEAlD :[Z޳}( I>2/n}_=jx>8B}~qEM6Ө72ؘ@Z}80J!}SV~iMFA־r-" n]R{\9sԐ:8y̼{[כzJn ק4xsm4q̮'FT 9})+Qk-ɣcZ^.n]㺝N*=oj @;S-0Jcކqy{eX! Jčǧ"bz8,C2c%"HBUGХV>ycI#l= kts\%l.A9+1 F՛J96I27Թl i CL!":Z׈:_yz&/#qyIl=*0‚4i sOwI$=;ZK-5_z6跚-Rq݄3ex0W.'|M I՜g͔8lVۙ$?ooަ(.:)bq'9b ֏{ApyEsyu3-0(΂x1&RP( #WUBEnQ#iUC&60ҀcJÎ8p0F%>+jZ=l]U}jP:8༃1=赫9r^҂3BNv{fG%6ruMђJ쌲VJpBM hoK8FWXWx&|sIhd U$:1؛$۩|u%!ZG[|3J#c(}|N KwB(}hl߅r#c4DheL Ly׽<Dh?GPY>aZzQka4=7Jtg@Y>EWW nE:wz X^?=lƽZ~ p(e[JEz3%xZhXģ\x'7?񎂌R}$ VIx1o3uʧE~A ǽo?cv/@i!#K[C>BD`luiB׽&džt 05æf綻52l㭌nJD Z;q\6Q$5F^cKk344NrsMmЗkHoxċSy&{-EV}?U0wO!ܯ;K^mfwS偷0W@jM{KT)G[S }c+ظlfjJ=Qe5T(~5gˉ量"ژ5ڴ9nHb1t ?"0eQ]϶v@VPڐ9o,OJRo V%b зCR։)U&i[&iʬsuKפ T> nvכD;~a$Hv&*^$g+7k|o D%<|Bo5_>o/Y (CEutK5ƖvQZb*&1 {:S pkQ]UA5:sl{ElGEy Շm ,(wگDr4t_L٧bQ;g~fLI/c|=,m }sOz)ޏ:a1;{TLEwnN'),#B7o3-\cNf%XQے6K3Ĭd< NɆX@$企8S)ɢG?UAcf}ѥG_&^awu{Bٞ:ő] 1CfuULk`H}+sȮ>N,!ȳр(x 9RW!ܟ):l5ڦK"ʇw}ǧsݳ |io-K|;G*e7zIU։Nr bL N6V+}/uvMi<ŬFƐ$7VOϬqHAX\Arl3ȓ[~TXW-U;?J7V{ľiG?Cϧ=d4*Pu^/ڥ麖(=[/grJa0QRxT{B=sǔ.4u30Jh!M`6( nD#cx pǍ%3ts8UovR%3-Ŋ]WÓW8~fP<`$蓁4@cFN0^,5e6Dc @G^d0|ۆtADжW4JMJ;S2B'^| Ovߏ^~ahOC@wqϏݫfq(_&֜11*&sX6 =#E~Ęh82E!.{\c}5Ss U4Gcjy{8VVF WS"cة7@6!>?T)]͸!CimHe=S -QuE#tWh70[/ʞg5XA ݑ|{/=bS\Q+pxcAc/kQ2?-)HG}UI9*؞c;_fTQyʐk՚~*8np# >C NRZGyoIyZx^fR}mvխ8W02u|X|v&;X5En,v̨˧C5z5$֧VrE-,Rd\hw mFSIE'y:0L<?fhY UUp8clmSv'Q \sppF O9ZAMGnQGa0-r˩J͙FLM*io&yK}`ƹ)?Ӿiн,tii[l]bHtmhJA>Q_'®>_7(>mnj!%N>-Z#(?,z.%SCC]m(%@Y}6NS' 1z9HÒ脎ǁ]H\'W(,WZZJȺkwNk ˂$vXNH|3@4gaz<A՚Zve>D[En+AMv=[{7?%;m(M @(u3(KxܞցI6 ;ZL*^ :(QyWOGC#mmpg$q:Pa?j>'̹RV>+fA[<(ָ'y]l.#`&v{<`+; r2f1U,8ff5!t#8MaaܗAf(=9/OV&9*= TZm Et53"0ͶQ71i5Aܾ0Tԯ;hʺڵPӿeJ0zq>K:D sN{tjc#|),@/3 7"~ۙ?i6hOȷ2YUZb]K#e0*帏IO:)RkO]?k!jkB2ehzfq:+65&鐉]$bL=įvSϕ@Vkӻ&O?|ǭP01K;ꖚgZR雦 8O:< ckyM0ԝ(S8^/ /Lqiej},Y릆|xE(:8^>reT w30ƻ'a; $? {.{ґG"92!Lx0!.K]t.DGMVB1Rz(*Ѕyv'D|/tqՐ ~O y?'Xˬ#6N޻  d#X6v0%S* ($stn KE D;a7h^B  ` }ٓ[CdB&-k]*AJ0B&GU=$vs1NI:{>ʉ<۪nR+i{3dZ8~2[{Zм l,b7v @oͅ~@yY\S33 }` $ZA[]MjfB#T7iʁ@ a#K$#l{ިGebRH/VREq HfJ[<04 5gqO{u$4[n؄S"((oB5+~Yl=5'"Ґ;Wר~N-9QB|]# C5иXX /ԔSSXV׋Y^2n/bW]#A&.;e+^˹!N2k0"W|͔I !ov1E*)ߓQS=P|D}۔Z]nQo{泎RЇ Fe9= Sӫ'x>*("?G \?3#:dCmJMML`$1yHRx_%N 45$'˹N<>Fމ"uߧ'u:x 321)pOq?*!+d|>D#w^s w~d[Ώ*Z/=kTάƔaZ @O%ګ{p/>~{(zvDwSfKAH<xXHVnM@D~#+ՎAN6,л3LL=cjDc=,"#X틩t n ުh1מwf3HKmR/Ȉf8d [&hs- /Mk7M3c=TROMG;:Zqʵ4aM:kp6-6< gd% V$>TmҨ'Jc|3O! t pi58Jߢ(&R @8|JK g~;p:|כVHO~UEˣjnYۖ[}sMB2UFӷl @?-VM'0Dof1M;[vwں\gIAB8C̼'aC*" bN(o ^kA`LDzU ɡW1X+52t{rjܔYcU-.g/У1L׫YLA[R|N/kJ~P|qjZgI}e']Vr귒ML# }ÎސD#lE_lO!DE@aRG {Nw) g, _k!.5"|7dA/p,Kex&)ZA(Xqx l0&Ae)p_ n1 .K1>T2 ݢx ֦ŁY XB"b\S $YGAw7ߥb|ٟi;< 2Q]h22r]}?D5.-lL%wgb.Qvq2k=mFL)42hoNS%DŽn`DqzV|]tܛ.x$WJ' m:t2u+ Dʞބ VU[#dJ//תidA_Jr6Ŷ~l}h6D! -Ij>o7>ȲT-ʥMkH4-dwu]%#s6T?a@!pAg̿5T.˅8Lۯ.k[ӽTC9v_UЧ{>g}ma?1$iGs*Nqs1&O6X^>:GBd-Ca.A}[ikiH &Lt+G2@Lr:=OI\٠g([=&X%W^dyÖڀ axb:Bn>;NU|LAHѼ=5:Ų _WOs,ܿ,z;όn93Pz"9>-D :FUה ٥]A?E_̸ӎ|롑iF0#MwQK _RfiPc%W`H%<$p*i $ØX#zchxr-jҷ^IJ٣\l0LAu#y)P.f$JeYBʉ<>NkؑG=2}o{jjݫ>a3q=/QҜO[SBi+97 caSC]U%K~`%ڀdZܻ:*Lx6_; E?(m)cP( gSqn;a%DUS`hFgdrGaMZZ^kj8\3ٷ-x֏}tqhWʾcLL:ſ'{~-O՛ʵ?4"]3c[%(ȍ,>rzFr)o8}GjJˬ)Ֆ>F4P<2-ϪUMj] dvhh=T dU2W (MΫ( TʎZuE4Ti*7ǝg}eagtɕYr`2 S utna M+bFc_x> [ F6E<6l6Tm_)J<@܅ d|x)'cB@,kS .$fo-ND!0EP| OVMT%_ `WoUS8ݨԀ[ JjmF`uˇ^ɧ\rv؄dđ;x}WUv(]u< )YEo+Ѽx)};KWeԞܟ3Gaa|v7MkzB ms:s-9*x`RTYd=K]=0iU%RrRHU+Cʰ]MvLU%Ṕc㜟"0~ףP࠴Ĕ T躚}0p)&&t-XLXv#ZNy";s)9U>xB}ףQgSUɲ | $f\o)5<21lHV^w7صH H>e yM~xp4bcJΘԘrER# Q{.9xR+qK N7|n)`LiPjq^J_Y4ˠrK-Zm#h+J .3?qŞ~|d #Ј{je=| 4%% GP@%#qLaQQRJ)dTȢȟ?}YM cux䚎AG(he~k6S_ĕfRץY)3loujڣcyw7@fOoܧ 4[#҈@K/;0n Z'Lnfz'* 4ܸ?͉jCț}6(|P^wSd4~ +;?5[]ï}uNi_ۥ## 4$ߟ)fG=ltB(#/{ ߕ'_p*_!Q5RΑ~1![~r,!|*&v25MJmPݪϺQijUn+(e޽0B +Ī"ޞ$CZIzqh]Hy0=HUkip CtXF hxl/}"~|Fh%}nm!<ٔs5^b}JNP+Xen 8Ԉ?+j2&/^s῿Ph2MYA?$C+`gV]Ҍw8NoBVW@{cm$/:bnhLij1 Lӱ$h}oSW.7^J3Ǽ%U΄d!(nVF66ŠY<+EvHYtm숿'랢ś`,pyCWɮ2w$>[fjDs| ҵ0W8b^VZg[4 )?6[{Ԋ^ku@M`XdqVWXצth$PIid<$g Q%E"; :O52$*, RdI+%nµaׁ~^g")hsq:/.sP$[ށ, CYgwMݫǭ iA% k+iXaH {ͲK+%Fd|ol*LR YHa\&-6ۧHZr#U3ǛXS(g͜/<Φ n7'ٻEwWը]2NF)`uqS{ë;7Ox|)JfN82ٙ7ьJ˩xgwt Iuc$y>RrdqS,odA6NG$tFd^`6\P?j8v[VvhO cR`)cJ+J,n0jK{raE2O*yӜ4ߴ.uR7ru;4FT 9&:?^ eAhWVՍ6!Tv#߹& 8PVAuTaE,n <==D#q?igp^AFx!ލ_Lόb5)Hqq#b"MjRi`R>Ddqӯް݄x~HyQf弁.j{Պ,t 긊 :YY6uz}tf0mtoG7Fs {<:[0-V+-2!ۇa0E+T?Ld4p\ZZ&f)7s͞kBi_:qOT9m <)J6W#K(EuP=2E')Fc:Jd ɉFV8~!݂ը=ǵ4չ3j'yJ(0u,ߊU145ԍDT"Eu#3_ָG#ˬgG3Cl޻us7S`͐S/761i$+Iu'sHqfPUs~ET_W'Ę:e01: ňxV@P}ֈp?~ꛆN$2TMj1pbr57 \KEߡ&*}M<60`! "UTqzxWo(X8JmTlL͛y.q!()はcV0 BgG+|BxxnۏL&K6duHڏso,9ΓWP ︌A0SQA=/J!(2+=L3}˪x;J oj]X:Y|:}. ܴ] L+Oшͅ0Mh*Uhj 5|H=bҒVJc e%qn.I{51Fc?vW.C ,{s:6i)CQP'sm~]EMnN1(s?BRNp+Opuuk!XC6L' ocA|/PAzRYKf&2uԸwR2 _I9$wjlC:}zh膂U$SШ`U˳4(G ͯɃDD^)MpF|Φ43(›9ZYO0o;2XN< ǽDr(üiΟ砸9%lM,Ŋ-UmMPaLQa2c=Կ0B,GotHNWk+R\c9lJ$Ǘ0d.Fm" >}]|͏mVU% + 1$ &yJߛA;fE&H_`EWy޾p8%7s]I5f`Bu4/3C6=Wއu1k0],K=(?+T$z6d0g3$ µ_R+߰4᧘U^FIz*NU& >$U+_pQud(+=p7TKe_U<fZ> n&#!X,uT);(?_3q B!ՋZ:Oa?-15MTE m! ѡUMK!gCe@UE<^Dy&Su1lʅZᐣtE͙۩ 2"ʨc5jg;Y &gI*B {T9(N]#mhbb &B ,Q ;: >rgzphM=_\,V;7=ӯ.U)/";58b?9x2m0JMw8'8xqk V{TTE.ڑtu1 .aiϓWP+c-E7?u(B). UZ j^::⇬BMn7 M3{ jVNe5*YH@`5Q xpWo"`^ C9C_J2_a`)̂)Ώ;pM\3.&35Y<0&$x ΅z(I[Ǻ!/kȃ)_tGXML4x q sg1RU TFs6IwǛ$̵g˨~ yVA;Cel'҇`1w^"xpqBjsj]JY&$ދX!RNC⇨kFEȊT3cG"k3. gg xUrvW\wIUoz,m1=&mEccX${fyy,k9M#!QuRܐ^'O oc!tyRޅ"X~&DXEug?RxޡwMV`ŵpX*U{19Vx_ PF(ĹqRRtu:)"ޙ[3kq"),]k] s{^ouQ x3~20e;LJ}NBD;s_MsJFk̄q(tUjF ן>]YX5jOT"^&F9+ ]wh\T 0UaHU[xŽ%Mu{ Cfmv"jT)W]5U@!woCfYl"n- G+wdQ3K腣9 $C r&p175+«ݺ.?ò SepuN)Ll18)r(Q h^`S 4T(9HcDaZz>?Rl1^J>D?ag |^"axl1S9#r58{bw),V&t¤r$!_y})k/@2u``GĕqF\ 䛗(,g(/q]-?Zd0У{~~!)b=hm7R8tC[<,*׵} )>+VpKE/!0pZ,BHtZχE<Ī`Q_:T=/jQKC8mY~6xTkB8=l AuKl]j8`6dskI|0f!"I>=h@3~ss@' Ew);d~=qC$G_|MyT 0rE &l °+)S~,O$暈C[&L_)L\ bm@2f>?}ll~3:T K῝^jo~PCtF`|cMHjJe~c4T*0h8EK",AZI{ERQv}খ"LxڢWH0]EP$Q)) ' |g!9A{:.4lcYe!%Q~.s"`AtfF^$~(j)tbw,)H"=_m1*hB?{=R|{L}c9ڀU?xٶI:dJmD,L n{%v*T=QcBe:14;6wGN#s`q(;{(:ݗFؚۡF|?ky9#Xxo̼vlHQXP^CY[zJ9Ǻ4p-W% ᷐%!Mq^Xl~Z'wYK۟bN'6<Ѽ, {Ѥ}I/DaY LhGve#hwc3WQ{,~?3P@~7\qssCghɉ?0Ym-1S3g/TX@Wl )3K* ~Gl9h=ymlR|%)L-oQ#/1w7ͱՏA O=^h:I_bn)u;>d\;j Z㵲wGWJe9QhjAh^/Da؁ۮM {ZfDt%Λ3mC ˘qP2ќHQDE*rAz+F⺌vY"_M[_eWvoE^i=߇goW5όozIWRnuԩ]Ts}v͵?Ґ#AMt|q3fou3 'jLk`H+#̢WwQu'jh9omWl=9VYC?=5u1vŽ+"% x]z{1wثA D\uBCm%@|)lJTLϢb™}9ň*Hb: IHSA'f$dk 7}i[LSmW͂SR )zCZuu6?%38|"kDz7f䤫KoR_0/T:• DwMjr\mch&ܝFaz è@kw?bw1̮"9mxVYjHd7'F}]g˿Xf؆: 2#RX_7bhBFVF/ JeFR|+b#uUbX`GAxJ$. 2d3(,f}Ҋ36訟\~D gw*@:&WrvV!-:R ;{&=O)|lX_w]d. `h{DXJ:L'\3c$<尩 4#xw=rƶ»']!yb_).y (AbYgԖ7܇镆{;O^p%tq*?%8"$EK`\COAd=ױtf)u.>bXvݕ:lstr UZͅKyLH Wk@]W9SM>ی*aV$қud7ɹX$d87C=ޔdpk~=߮K 7\Bl"ۦ5*9Ln J.Eׅ_XF}p5JfraԀ}9 OkVB˵tevH҉b`ySQU/`[*9H 6h,Kاuٗ:,({nHhUzqER*_- K0VEe[#IJ], ZB00[s|(Lc$=0J*|\LCkzs }BAH6~ (fϬaπNid_=vn-ޥVy7dozw4A/^3 n8DqZ]Fvڳ&nݓ$}D,qR4D9Jh g^s$I;S#cAzCPEfJ~xhX-ΊU$?|"'t@tN WHORroSGz~e"'2#W d2L KHV+ǽDv+Ɛ]56rRԞ=ϼߊf #ou3қd5f3wէ~[tUv_cޣ_gV8*xjqW*#]'1]DȤ?'?$KUF~~xd|vPl$D2'@?]C&2 9dZh%#Ihi9EdL!."󺏯x )l4UbT9e{[oz慃l'ra?a-H4+W M} Hq;HLP1COcur ^,b1sCa &FVI$H\Ͼ#󺍧eGIA^G>2,BhR1Fr$@ rύu Ve<.F˜%qm-#F0 &F r%=l@5xAz J7xH6&5W.Cӏr~ǥ1EDr5[&_D`\s5kL[Zgdy!PYI~Η?}fWyv ]⇵$ Ð8R4Qwz,r෷peImOz;$22)8[eZV[Mlܜ.`nYK4L&Ê!rK髼˓'ǷF ~\!;{p iW%ʗvo?a|g*3r? }$ 5|pGe࣑%p"^ =%iA#/ۊeXTaPZ $Do As^'M6?[}OLd(| PBxbTkwO\l7>µ0mrq-2SjœaaDXtI#,ofܲvV9JFnxhkdn<&$U j[Bi1ΊX@Ԁm*ҁӁWRBҹk^YF;d†5%b&ؽgjS˘Z5=pqg xmxV×lpC@9A27sq05y| ZsyqdbǞ{^81Iض`&ܽBnϿ 7n7HN!3oԉWS HZS΢S#<!z3s;]hRC{Fyj604쩗st_0fa9Pڮ|#܏w /ŴB'h\s4y0,Y1,|ePw`cΰr3Іo՞~ԋ"S *qha#Hkx.1BύM%۟:Fy0?mm 8 ODrdi#b*CA!%D0>a<؅IԖ3J[7Nn bw Y=0BtgQ`F]&rN5gXX#urNmX[@zFBCBkv577i z'OD6tII@x9V=/fa]7S)$ǤuG p bsiK,g4}_ &~Ç0z+/eE!;QKumHʁr&"ҏzK'X|شdz /4 ]y׼hD!8jd$G6F~HtQ".P)X9bjURaw;hߎ>jfM<+Vs09}T\͟{"i愠X>(^e\) y@hr~=`{;% =[~fiVEVʷ%0e}I,c'@yWw\ĴtϰxaW.ޝ@g"&_]ve*c4+u* p}"h uDh)7di ]= ba3PkIܽټ)dlLa+qȟ~σ*aMHt[A|o%k껿%BHR*/kdW,2? Ok"I R{5!.OǺK|V b纄xPP'nVGY4,2 bػR eju+ٷ1 nxF ׇfFC XUgЌ,TNnY*a">TI[~2\NNw.JA8 [He0~+Jwzq#FdM'<" E%L2@=0x4(2QDCɚ<-. @"F}Q^U m"Oycaw4r; YhP0ϻߚGY(=?ZՎWUBWDcL}-lSR=챠d6 w -h=TEh~R|[rd^_`.^4>]Eye; `W¢E,\()Cf&4V ։M`o/51~tI,!UeBwzJ 0*^?wBm98PtBI63c"/c!s a#`)]w|<3E5d-J: ='Vt$: ]{#ո~ ׷4&qh33b|6ǧ-˗}-dnUnFAaT#C}g*)/6'}9糅$Fǎ ४!R24nHb&V|/&eaMX4*C9ir\Dj:էġɥ6\٢I9ROӫ(gǒ ,G5S@z㨭B `Ͳn=j2>K!>=c YRTI׻`W&F`w# c_u";%% Qǘ?S&A _jyU"_ OqZF wRsG 2`r*>^g;Cu~2“z-CHdө?i*)M:OO;,FvBcƝy2R$h1j*řM ?q q+kрįudǞ  5tiUVE#[X^LrD}.,e>+ B7LݲFg謙N֔\nR8%71>~U {lz:[LdI Pfea?Kz !Zyy@Z7.v#?dY{^فQEGCo~<Kچ-+ 7ԜMCLsp9yLj`.)o\ u+.k1X,[ 4y*t6d 9xٟmG%ekd`8! =95[t{i6RN=L6p^Wz\OҩC9ێh3!"6.\#ˏ0z^4{A]}+b4Jqե^թ|r qZ:K3Q45׮CǷ6ywފ̉;=1=} &Zn{!Mx/ں!),i $&̞312\)DXq#BC 7nz2B>Ҷǁ_P[XL qBaB$`9PFG.=rRPQkX48 QqjQf9^Jh ;\Oɴ.V˷$+E-uNR@uy cC omSM+F0&y&k cd y)}_7>3 |bbV/ՏTypؕ,RJYe04|]78ROGqkʥ$۽Ak1뱺$&}=:R[S\;\ؖQS~95AqdY`W+V4S )'އqUPJ*]-4C$o&f Kw-_*zrmFށnn_y ]M#q) ES3|< gƥq3@5E'-*AGMָqT@&Ǩn}Ʋ& |e8*@COzk0Ĥ;ѧF:sٮDކ\_} xi o# ϰ!Ms{G=Gx6s҄T$EFyϝt8S3)YɫO;Uqv$Zbba:HyM6H)iKN#sE.D^1-#l5(?Wyz/&-oÇMaTQqkR?z5Կލ28 * "GMyϛVj<4繤8՛q/g6fb u t4 E \)2$u m5\ZuB/,֖"&;- :\~|[ΐ[ᅢ j$YlYFՖ-5L`-mҥ51NX9$! LgNNrV%H Mx'Fl2ޏN ,@ eX5`|v m>kPL⋬RTQRfe[lg7WsE~% S洉ƾ1UQ$wYYIb`|/bS1q~W9; Y)cY'i.A p CmVt'.9_rY`LA2tʠ &Q{y.].AaxI[*45ߛHҌ'ǣGb;J3[/)Yo7?3XhQJnSg? M!QԌ6ѫ3ݝ"[ _; T)5ez@ͦ`cL `_[UGx3Y2^qheciI^&jdCchKuKm#f137Mjg.i{Ʉ`mTćS&;l;^[yv}`Q&@oeA0i[  q4;0F=pYA11e`oȩHyƙĐeУ\!^pTdޔ$A瞨Ⱦͼ,S'ZŵiXYb>/wGjy EZlCfJxDDVXZgoACVՑ1 4hGCquy9`AZ;`hӶp]\ DsU`fU9̂ѳVWkDBY$g|ݳd ߖ2s>™Yph̥ L0;T7A'56+( "Twcj(<̌*N:tâP􆠣?k4%Bsa0YyKY:#1)8JmDHՕa;,26*0UM1zd+ տSrQ<3yP C3u5ƪ8(Y.lif}wy[ ;kc碏h`4ui緤3f%I-'bY6#2IG&X+[TMDgaŧ#U\wE vV/ݦ`!x0G mk{z>m/kc;I9\ C~y?1J[7*x}t^;0f"B!ou.0XC .ٯ:GF²,!hhH٦=q~6ˏᱴf6>.MQ&^HOdbxe`A>Q(˾״Ԫ5ɹ-jXKE4O V[O9!J,QF lq3>Mkqi tm!l8)BjdTc0"(-Wʹ,rUM #5! KW[ƎN)Jѫt\N5KE"O8掍F4pi硦Pc,̛PVc* Jt0a_D x 7qDX/J][xlxV&OyԄ v#@ ;MaG(C8kax*T1= =' enPcp&C `nAjݞUw֖Csa9 !rԧa:x?ō0m_<1ĸiZ0u7%>e[b˲Y`[?߹#\4+P޶.vl, ,[69/ٔwKGnc.dv04diSxd GNJ%x? :18d$/Hz>ABgW|C5F 31dpǞ%p}$ M Xsy g&A=b"In_>bx_¬ z ZV;-뛢Yhᣒ'fEXr r\<29Y*`,ɥթ@\M DC>ĢQKY߽TqebÜehuq~D #y2P>!G5 *.ld;[EV`I)@>l6%=р]ЬhKnIhkڒ3aφqTo@^ͭU7u[@ N$S׃Ɵ˙saT p1,zdrQR%|CO6 .\Xi.K.uUraNC'%"™-JޕsO!-燍fZs9 Ы;[c\Iڙ {CJV1.@2۴MPkcfŋM1 3P=ޞGҠxnh)C$7ΆSҍ=oY-@^wg`K !~w|~Chrg WtF:e ,ޡ04Ч%#~W86[*q4n{E`xV ͗&dZ3KAklr9Gb 寉Kjy@)-ɨf2Ucv)k[lKyPٕe$V}nz됼r!1m:Ҁ_q¹x,fqcn &iaV*m+|\O/1kۢgQ_—")Q*^P,*=wG~bJ f|a.HP ,j}4I)#ep.?Q>`mJ [ցO<}ܝ &?㕨&]g++Lw@Zn-5p;ǔ T(QuRMǮ|L*XrnN V ւU5+mr&IE4v0S`q'@ y0*yuZְy nϔ"cR>ʊM]s՟U`LH=Y<0" {|4zj=?nf{m\W](֨0UgS=el('x>Ơ/֐/2LhJV#SP% ]!A2fd-q/i8ifm\\!.pY˦>$Yt *1J=4MGXhb Zɪ2?hk7AdX|bY]k HFс7FA\&0| d \$H4COȋifNn}Ub4U4:T+X+G POΘ_(5@uj4X:gdQ30mDEcٌGJ2WCvuIFA@1Y?)].C |r &r1 4Oʟp1*T\iϿ`KdWn<Ϝ{t9SH+QpzPЩ% \թ !¬R#ZvE#ֳ6j e5yeC@83ؚo Ew U!%GPfz i'CTW9}{/oxcHC͓IHybB_DPjU*5Ngzc{P$t6?PU᝭r6yހtA 5acbtwEb8IE1sr,LfdNOG;G#a@s>HXL8bouVminS\ي:|±ZF> rtC@IAP^6)"JAz|ͬ'r%tabB2B)I5c,Uaj UX,Y-z+p-?**u<$+bD#\nIC.lņ1ҠI R@SgU2 :'~ǝOƧE*y"[aܥp`?w"Ms@ASK 2yEsY7Eh0<@HE%o+#x(rS!jfrֱACUfW<)'ʌS|ŖW+_͹a[4}40Ӹb+ vE]a(Z ( '즗f"y^[e|4" #w> qat: cj1kzn p! <WVv>xVm3LRN\fiBI>KL/r]9߼uQ{ jgb՟@?6dW14MZ GD^#sJ/?̆M-|XߺyXkQ@jpFyoVn%5.. [ 'ͽYڂsAgy{Kν+ qY̒()UKNGixzt8= Ɽ͜42g #PN/iyq.(h3{` Lmafv%=' RZO 'j8‹RUd ?Mxq Qz~`#V >YM@^ŭ‘7#~\<Ү\D1*d|FƱ$[v-'G{Ds( ɒS 36!hyWT4|i(HlUn-MwsGWaW!GϊX(O\$⛲[ *#3Jŝcu|$<^FC_U0O@+xK{Ȝ6y9 A4y+Pq7i}BR: f%Æi~JM[9Z b١&m49-JE5Qb6^Fi If*hTBX>I@lzA'1ż (4 E.V?ܘ`x9poݽL-CYuPk.h~M,S8mdgD>@;+J>Dm4xZt2/`.=v׀2mLcZј$UZ;ﳞJF_kG# "6{RD;u/v-},{= /b9yS/(I3 LSR^+@}1iiD+2ne%]dڍ\J9l-- &͍}:c;iw:?z~ xj؁rpPԯ|[xRE&p)f^NAS uAPۡՄ8Rrѳ;.Qݧ+J֧vM$/uoИ (xJ(+rz AM1vCsp3I5Xjv@Qp>8_%H*NoP<@;`D#-4`l^VPju$^δrMa;iϝmF%G;t\$,V_)]MfT[;eHqced]Ҕ2d@VcȾn!q8d%M{FnC%\7)76OѿHNcϣ]V#˰kz=!WWtX`.>G\N&A`Euu°~qջd<"7:$hh[k`nq)4lp0vWJEܧ_tz%q͍,{p8ݒ9i93_!L~ˊTU6Y8#[&`f{}x'{1M$0W Kago^][$ 1hp z oȣT:Z6C}m@fՓ{٘m_X?4ˁ|aTicrn"bP>;aq뜵EN|Ol'=aJ7؟`!C2|AʁҸ(M&B0 |KXHSf^D;Fcz4Dw!ѷΐMf<-+N/'ŏ-:r"W'wr3s"_ Z-f"!g6AKiEG>b8w[4jF.x *v;8K?޳&Hm.zr6@&#T% L~yW֧#)<\BPd{{F8v^J5*UU>sj&W}+5*mkH0h|QCwQT%ױZ1&Po6cd.kl E֠I)Q˪avŸ+k^i*? ܂!!{]6f*nHɴ|v[;s`9,DYЗ&}pEvKl% 6b (Vh!^b$?"+s416藶:D6#\%CєhY/-Pt|#~"[Ω&r\4!6:@z6UᑽGum$}"@9BC[EPU6k]Z3'%Q!F\ -3XVVBI d.+ud 1b]`PjeѠo^B"1^/#_tƞ7_ۿ[zH^\4|c .ɾɹψ"ihߤV?( 6R l*ep6Wn,5bM.s9"S*I(mfC*)%`WJe-AƔN$1 :}?6卸١DD7Y').0" 6ƣJw >rҜ02S͏H]%-jnFŃwSһ;0'~S!DJwJubVM p ZY_u%5xqA +nФ 03?EO+V+~g!J> .xPMtKvv8 z\5} hArM" ?r~$I T\r3$!5jl'DHqEpU +պGzų&j/J?qY|% jdڗ ϪWx^">mƬo2H:X?>3 ] 䤑{9CYKsPf`SNpΪ}2yENOxfBY;hDWmϳc? z\B曀v0bύZ^ID2ҽ7^u.QH*s;:1h'l^a Br%jԪ^!80Lݧ@!V;Ʊ@3WйFOiЀr5uvVMx4<9%.#&c^Y蹵;P~H(1?v{GujYd>ͼeM+-Gs``𥳐`ۮC xFޒާqYQ!2[k[S;W\>7"L >&WRҨ3)'Lfw,>'UhlʼUmyޫvȏfFz:t]t^K,`2#'ҿ~j4=>u!7PXBi3\@][WGEOgĮolOF-Xcs-s"\\V<p=7sS) k )Ng/+y.#JQq=075{˵?1U Ųf5;{Q(lqvȺͰVF|?t(0~nY ]*1\7@#7-TL%Z#wV8p(d9IMFYBOSp:Sk3fU4dj`:C e:@ ;Wx\h\ B8OI4+듈 d#{^C͖Q\.ޚRY7 V*GOo@>RLrV$˲X{*zlTd9!>בq*|U!I,,ɮ! {8Z>p{qqkN/A+5Дdr t5Za@PE1UFt@`-:(*WNb W Jϝ g9vFu;a2wʺwovl*)몘L ztc}E۩Y"`C!r~g^}R7gEh"2%ZqU'ToM}x;e UK5m.,7:EK~+`XTkɰ8 Z]BE`z;n{Lz3aϽU^2B{ከĮƽ}l 5jQ-ͷ`#\TEGGO0ݭnvlZ2}f= ͆ĝuJiڼhj>0bX2T"gmJRHt΁柞<uU7A^:i8 tNA[S*xVp̷.%V #4Geҷ'D@Ώlnx-`!ܒ9 kj~C١7v}G;i3b{=g[ܐK|g6>XN@ $BXF;nW 2ڻlRW^hЙکN!=< '5/0'$c5b @E;9Іli=I(\+kg?nDr)\V3#c}_ѓpu E-Ja$)WU&oE}88»402II 9a,[z$PDJˊ[-Ea  ߇Yo?FӍ^@: H6Z1y!9} u8^LxL2,;e=U?>G%H\\2 YZ