selinux-policy-devel-3.13.1-192.el7_5.3>t  DH`pZ $ƨ ~<4&1ACaa B.` jɻM - jH**B + 4krgj"c0~I߲3@^GO"~] I(+ ƆzLL[\q""煣R)`D oQ.ֆU #M^{c_ߌX^z~CVzf':;46.U9LT bJۜӛ$ '0#2Q{c4ea3363853e339a643e782ff787420e966da420Z $ƨw6i֠(sAYso+eY_6/7Cb=Н swx^L)BD /wn\L}yu d(wW)Gz ^ '-7xRj9؊ؾږ \VKt#=kW4_[!;Z8 ćcI+L6W"HIi:lE`66 +pxj| ``jbA1?6Y(N 2xPDr9 (? d * ?pt  TIxI ! I +I @I II II%II $  (28<V9V:~V>GIH  II DIX Y \ I] 3I^ }[ b %d e f l t Iu <Iv ` w Ix I Cselinux-policy-devel3.13.1192.el7_5.3SELinux policy develSELinux policy development and man page packageZ$x86-01.bsys.centos.orgiCentOSGPLv2+CentOS BuildSystem System Environment/Basehttp://oss.tresys.com/repos/refpolicy/linuxnoarchselinuxenabled && /usr/bin/sepolgen-ifgen 2>/dev/null exit 0p Q1m!,$#}"3,l2M*Y)H/*6#~! .' >"m2G)!n%ZJG'd([N5<(=%/;%-.2<.86+$E+B&26,"2=LJ/b=J/8V 3$27{)55@23'T&;bP+,-M-1,1,2}%@ ($P#!d?!38w44(,h9CO8B.)F4->(}=+0410z4:#=-_?vB-:;/o(]*c) )%$ (.&R$A 0Hn.p]9d)c?$4:G-+*#)p6`3x6/N436!/;5m4A;16-cc0BE*/'n4:>" Q:5dk*26E?$3105-LGr#-v<}46f<5+G05/4J4"3k>4&P"?R7Q#E/T5'U3!5=2!,v%<5;5MK4*G+;",{'/\6Z5*Q357Bf8R4$2҆%$ ,':O&,%$`7v+Z)5,@w:AiG&5q+0B!x3(.43O8=5-% 46a43*0Q%3-X2s6?y,&*fB$/-,h3=u558+5-/F!t<*J#9DN)LE3)6.W/I=6?(3$O//.(i,L7-%/-78=:&5'9 /c*'MA!-%(0-?<5>+ ^,_-HG8R3v6gFA)gHP.1{%o O1d%%-Y)-K!'#o"U,`2)(E1)l@X0775)7; 17A.;1{5&'\"?2,-934R*-t%w*8S 2+O/?:02w08#([/w/202O///0Qr;G+3*:x0+3s,.413/59X8Bcu$Al%Bi'!O#5($E'8'2**$4(3(*,'])$0-2qQ<H48&E .,.\3U3'4|7i:4K0v,+>06_ 5Q'24!-'G"'4-R04@ 4Fz4/2**9C,602r0AR(,.>K25M+Jb,.4:F-e>u%E#<0=)&%`51-|&/o&1V1!1(91(:0%*,U<6--)</KG$-.-&/D<.,%j&+--(9//+#.6< DM1bJ(A&u'55<[5Y6605&5QX&&;2 J(%/<M1 ZW0].''($#C$-A$47Zf&R" F!A.,),@/7/'A Q'"$#W$-.H3*51E-W+2`-f1t,/,t>234r-04|,6-06=#'4<5p+38D+++,)*<D/~;163 ->Q=)@4>.{.,7"$/<&1I')x'Q() *w''*$#/$AA*"& > -#9/[33"8"r!gL-2'pEL1b5v&9+EA<&]7.v&I,M2OV<~AY#2G5(g5r,2-F1m]'(D/G/.,5E3+433.7363?LW$#9?t d| @ 0U oV 2 H:3 v* ']  O<&K fD M1  x h  Kk  6h|-! Y.N~Pr& -U*pR5a }# @ C!6q ; V*c[ . sGN  l /e*1.; p )  B*p6k N+F4 "jaco d  bN ;+ (t  + ;Q$jY)M N19(f x'" c   ;Y  Y =/+.B#  P' g[= T"\+Z f^\gj  *P  8 !(D+ n Q8&xF ` 3 auV;F C[ $ 8-  1 Q "r PQ: %K EX$& `  *L1 # 8 , EcIn8W " a #e-'<Zĭy;V NMDeYWBbY$5u-\ ҦI 1] Vi-q)II =s + h*/|FjUD'"3^S+ Fq5vA큤A큤A큤A큤A큤A큤A큤A큤A큤A큤A큤Z$yZ#Z#Z#Z#Z$yZ$ Z$ Z$ Z$ Z$ Z$ Z$ Z$!Z$!Z$!Z$!Z$!Z$!Z$!Z$!Z$!Z$!Z$"Z$"Z$"Z$"Z$"Z$"Z$"Z$"Z$"Z$"Z$#Z$#Z$#Z$#Z$#Z$#Z$#Z$#Z$#Z$$Z$wZ$$Z$$Z$$Z$$Z$$Z$$Z$$Z$$Z$%Z$%Z$.Z$.Z$.Z$.Z$.Z$.Z$.Z$/Z$/Z$/Z$/Z$/Z$/Z$/Z$/Z$/Z$0Z$%Z$%Z$%Z$%Z$%Z$%Z$%Z$%Z$&Z$&Z$&Z$&Z$&Z$&Z$&Z$&Z$&Z$'Z$'Z$'Z$'Z$'Z$'Z$'Z$'Z$'Z$'Z$(Z$(Z$(Z$(Z$(Z$(Z$(Z$(Z$(Z$)Z$)Z$)Z$)Z$)Z$)Z$)Z$)Z$*Z$*Z$*Z$*Z$*Z$*Z$*Z$*Z$*Z$+Z$+Z$+Z$+Z$+Z$+Z$+Z$+Z$+Z$,Z$,Z$,Z$,Z$,Z$,Z$,Z$,Z$,Z$,Z$-Z$-Z$-Z$-Z$-Z$-Z$-Z$-Z$.Z$.Z$wZ$0Z$0Z$0Z$0Z$0Z$1Z$1Z$1Z$1Z$1Z$1Z$1Z$1Z$2Z$2Z$2Z$2Z$2Z$2Z$2Z$2Z$2Z$3Z$3Z$3Z$3Z$3Z$3Z$3Z$3Z$3Z$4Z$4Z$4Z$4Z$4Z$0Z$0Z$0Z$0Z$7Z$7Z$8Z$8Z$8Z$8Z$8Z$8Z$8Z$8Z$8Z$9Z$9Z$9Z$9Z$9Z$9Z$9Z$9Z$4Z$4Z$4Z$4Z$5Z$5Z$5Z$5Z$5Z$5Z$5Z$5Z$5Z$5Z$6Z$6Z$6Z$6Z$6Z$6Z$6Z$6Z$6Z$7Z$7Z$7Z$7Z$7Z$7Z$7Z$wZ$Z$>Z$>Z$>Z$>Z$>Z$>Z$>Z$:Z$:Z$:Z$yZ$:Z$:Z$:Z$:Z$:Z$;Z$;Z$;Z$;Z$;Z$;Z$;Z$;Z$;Z$Z$?Z$?Z$?Z$?Z$?Z$?Z$?Z$?Z$?Z$@Z$@Z$@Z$@Z$@Z$@Z$@Z$EZ$EZ$EZ$EZ$EZ$EZ$FZ$FZ$FZ$FZ$xZ$FZ$FZ$FZ$FZ$FZ$GZ$GZ$GZ$GZ$GZ$GZ$GZ$GZ$GZ$AZ$AZ$AZ$AZ$AZ$AZ$AZ$AZ$BZ$BZ$BZ$BZ$BZ$BZ$BZ$BZ$BZ$CZ$CZ$CZ$CZ$CZ$CZ$CZ$CZ$CZ$DZ$DZ$DZ$DZ$DZ$DZ$DZ$DZ$EZ$EZ$EZ$EZ$JZ$JZ$JZ$JZ$JZ$JZ$JZ$KZ$KZ$KZ$KZ$KZ$KZ$KZ$KZ$KZ$LZ$LZ$LZ$LZ$LZ$LZ$LZ$LZ$LZ$MZ$MZ$MZ$MZ$MZ$MZ$MZ$MZ$MZ$NZ$xZ$NZ$HZ$HZ$HZ$HZ$HZ$HZ$HZ$HZ$HZ$IZ$IZ$IZ$IZ$IZ$IZ$IZ$IZ$IZ$JZ$JZ$OZ$PZ$PZ$PZ$PZ$PZ$PZ$PZ$PZ$PZ$QZ$QZ$QZ$QZ$QZ$QZ$QZ$QZ$QZ$RZ$RZ$RZ$RZ$RZ$RZ$RZ$RZ$RZ$SZ$SZ$SZ$SZ$SZ$SZ$SZ$SZ$SZ$TZ$TZ$TZ$TZ$TZ$TZ$TZ$TZ$TZ$UZ$UZ$UZ$UZ$UZ$UZ$UZ$UZ$UZ$UZ$VZ$VZ$VZ$VZ$VZ$VZ$VZ$VZ$WZ$WZ$WZ$WZ$WZ$WZ$WZ$WZ$WZ$XZ$XZ$XZ$XZ$XZ$XZ$XZ$XZ$XZ$XZ$YZ$YZ$NZ$NZ$NZ$NZ$NZ$NZ$NZ$NZ$OZ$OZ$OZ$OZ$OZ$OZ$OZ$OZ$OZ$gZ$gZ$gZ$gZ$gZ$gZ$gZ$gZ$gZ$hZ$hZ$hZ$hZ$hZ$hZ$hZ$hZ$hZ$iZ$iZ$iZ$iZ$iZ$iZ$iZ$iZ$iZ$jZ$jZ$jZ$jZ$jZ$jZ$jZ$jZ$jZ$kZ$kZ$kZ$kZ$YZ$YZ$YZ$YZ$YZ$YZ$YZ$ZZ$ZZ$ZZ$ZZ$ZZ$ZZ$ZZ$ZZ$ZZ$ZZ$[Z$[Z$[Z$[Z$xZ$[Z$[Z$[Z$[Z$[Z$\Z$\Z$\Z$\Z$\Z$\Z$\Z$\Z$\Z$\Z$]Z$]Z$]Z$]Z$]Z$]Z$]Z$]Z$]Z$]Z$^Z$^Z$^Z$^Z$^Z$^Z$^Z$^Z$^Z$_Z$_Z$_Z$_Z$_Z$_Z$_Z$_Z$_Z$`Z$`Z$`Z$`Z$`Z$`Z$`Z$`Z$`Z$aZ$aZ$aZ$aZ$aZ$aZ$xZ$aZ$aZ$aZ$bZ$bZ$bZ$bZ$bZ$bZ$bZ$yZ$bZ$bZ$bZ$cZ$cZ$cZ$cZ$cZ$cZ$cZ$cZ$cZ$xZ$dZ$dZ$dZ$dZ$dZ$dZ$dZ$dZ$dZ$dZ$eZ$eZ$eZ$eZ$eZ$eZ$eZ$eZ$eZ$fZ$fZ$fZ$fZ$fZ$fZ$fZ$fZ$fZ$nZ$nZ$nZ$nZ$nZ$nZ$oZ$oZ$oZ$oZ$oZ$oZ$oZ$oZ$oZ$pZ$pZ$pZ$pZ$pZ$pZ$pZ$pZ$pZ$qZ$kZ$kZ$kZ$kZ$xZ$kZ$lZ$lZ$lZ$lZ$lZ$lZ$lZ$lZ$lZ$lZ$xZ$mZ$mZ$mZ$mZ$mZ$mZ$mZ$mZ$mZ$mZ$nZ$nZ$nZ$rZ$rZ$rZ$rZ$rZ$rZ$rZ$sZ$sZ$sZ$sZ$sZ$sZ$sZ$sZ$sZ$tZ$tZ$tZ$tZ$tZ$qZ$qZ$qZ$qZ$yZ$qZ$qZ$qZ$qZ$rZ$rZ$rZ$uZ$uZ$uZ$uZ$uZ$uZ$yZ$uZ$uZ$vZ$tZ$tZ$tZ$tZ$vZ$vZ$vZ$vZ$vZ$vZ$vZ$vZ$wZ$wZ$wZ$wZ$wZ$wZ#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z${Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z${Z${Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z#Z${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@rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootselinux-policy-3.13.1-192.el7_5.3.src.rpmselinux-policy-devel       /bin/sh/usr/bin/makecheckpolicym4policycoreutils-develrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PartialHardlinkSets)rpmlib(PayloadFilesHavePrefix)selinux-policyrpmlib(PayloadIsXz)2.52.5-183.0.4-14.6.0-14.0.4-14.0-13.13.1-192.el7_5.35.2-14.11.3ZZZI@ZH@Z@ZZz@Zz@ZyZ_:ZWQZV@Z.s@Z)-@Z%8ZZ @ZZNZNYYA@YYW@YW@YYY@Y@Ycl@YP@YJ_YI@YBvY9<@Y6@Y5GY1S@Y0Y.@Y-^Y, @Y, @Y%uYYY@Y@Y@Y.YXQ@XXX@X@X@XXX@XۡXP@XXg@Xg@X~@X@XƉXCXCXX @XXXBXXXs{@XY@XWXRXRXOXJXAb@X@X)@X#X!@XWWSW_@W_@Wv@W;W@WίWW:WQW@WW@W@WW~W@WW~D@W{@Ws@WrfWj}WbW^@WYZ@WYZ@WUeWM|WBW9@W9@W1@W(W V@V@V@V޾V2V@V_VVCV@VZV @VqV }@V }@VBUUU@U@UpUUUUoUoU5@UUȒ@UĝUUWUU@UUK@UUU'Ua@U~@UzUv@UT@U@Tr@T@T@T7TTTC@T@TTT}Tto@TsTk4T`T[bTWn@T?@T>aT6xT6xT@S@SSDSg}@SB@S>S;S:@S9XS5d@S4S2@S0@S,)S*@S)S)S&S&S"@S!S L@SSS@SSc@SSnS @S SK@RRR@RRJ@Ra@RRR&R&RRR=RʚRR@R@R@Rv@Rv@R@RR@R R@R@R|@Rz/@Rz/@RsRpRnQRi RfhR_@R_@R[R[RSRNRNRL RIgRB@RB@R:@R1R-@R-@R(r@R' R%@R7RRNRR@Q@QQdQQ@QQޞ@Q@QکQکQ@QzQQ4Q@@Q@QKQQ@Q@Q@Q@QQ@QQQQ@Q@QQQ@Qzl@Qw@QvwQo@Qo@QnQm=@QkQfQb@Q`@Q^QZ@QQQIQGQ@j@Q9Q8@Q4Q0@Q-@Q& @Q$QQ@QQ@Q @Qh@QsPP@P@PP@P[PP!@P8@PO@P @Pf@PPqP @PP7@P@PPPYP@P@PPPM@PPd@P@PoP{@P{@P@PP5@P@P~P}L@Px@PvPvPuc@Puc@Pr@Pmz@Pmz@Pmz@Pj@Pd?Pd?Pb@PaPaP[@PXb@PWPS@PQPO'PM@PIP@@P>@P8@P7lP2&P2&P,P,P*=P(@P#@P#@P!@P!@P@PkPw@Pw@PP

@NNU@NNl@N@N@NåN@NNNN@NNN@N@NGNGNGN@N@NNS@NS@N^N^N @N @NNj@Nj@NN$@NN@N/N@N@NFNFN@NNN@N@N@N]Ni@Ni@Ni@N|tNyNx@Ns:@NoENoENiNf @N^"@N\N[@NTNS@NS@NC@NBrN:N98@N7N6@N2N.@N*N)f@N(N%qN$ @N@N7@N e@NpNpM@M@Md@Md@MM{@M@M۝M@M@M‘@M@M@M@My@My@M3@M@M@MMM@MMMMTMx@Mx@Mv@MlMbSM[@MRMQ0@MQ0@MJMGMGMA^@M>@M9u@M6@M5M4/@M4/@M0:M,F@M$]@M@M9MMMMM\@M M M@L!L!L@LL@L@L@LOLOL[@L@L@Lr@L L,@L,@Lډ@L7LLLNL@LΫLeL|L@LB@LB@LB@L@LMLL@LdLL{L*@L@L5LLA@LLLL@LcL@L@L@LzL)@L|L|L|L{@LvW@LvW@Ls@Ls@LrbLrbLmLk@LjyLe3Lc@La?@LZLYV@LXLN@LN@LMxLMxLI@LH2LF@LEL=L=L=L;L7@L LT@L@LL@L@L0LLGL@K^K^KKKj@K$@KKK@K@KK@K]K޺K@KtK#@KKՀ@K:@KK͗@KŮ@K\K\K @KKKKK9@KK@KK@K@KKKKrKK~@K,K,K,K@KK8@KKK@KK@KqKqK}+K{@K{@KuBKs@KqN@KjKie@Kf@Ka|@K`*K]KXAKTM@KPXKEKEKEKD{@KC)KA@K;@K2@K0K/c@K+nK*@K(K"4@KK>K>K>JJęJH@JH@JJJ_@J@JjJjJ@Jv@Jv@Jv@Jv@J$J@JJ0@J@J@JG@JG@J@JJ@J@J@JJJ#J@JJJ@J:J@JJQJ@J J J|@JzJyt@Jyt@Jx"JrJrJq@Jn@Jn@JmJhPJeJ\s@JW-@JT@JS8JKOJI@JCfJCfJB@J@J@J?r@J<@J;}J:,@J7@J67J2C@J0J/@J,@J%@JJB@JJMJ J dJ@J@JJ@J*@J*@II@IIA@IIII@I@IIIX@IX@IX@II@I@IcIIo@Io@IzI)@I@IܑI@@II@I@I@IԨIд@I̿In@I3I3I@II@I@IV@IIaIIm@I@I'@II2III@IIIIIIII@III@I1I@III~@I}Iy@Ix_Iw@IuItk@Itk@Io%@Ik0IeIcGIa@I`IVIO@IJ;@IHIAI>]I= @I7@I6tI3I-I@III9@I9@II IP@I@IIg@Ig@HHH@HrH~@H,H@HCHHH @H @Hf@Hf@H@H+H@H׈H׈H7@HBH@HǶH@HH|@HHH@H{@H)HHL@H@H@H@HnH}H|@Ht@HsVHr@Hl@HkmHgy@HcH`H_@H^>HRa@HQHQHO@HFHFH$@DX@DU@DN@DN@DLDH@DGwDGwDDD@@D?D?D;@D;@D:HD:HD2_D1@D1@D-D+@D+@D'D!<@D!<@D!<@DDD@D@D@DDDDDD@D@D@D@D uD $@D D @D @DDDFC@C@C@C@CCCCCR@CCCCC@Ci@CC@C@CtC@C@CC:@CECCC @C @CعCعCعCعCC@C-C-C-C@C@CCǖ@C@CáCáCP@CP@C[C @C @CCg@Cg@CCC!@C~@C,C@CCCCC@CC@C@C@CZCZC @C @CCCf@Cf@Cf@CC@CqCqC @C @C @CCC}@C7@C7@C7@CBCBCYC@C@CC}@CqCqLukas Vrabec - 3.13.1-192.3Lukas Vrabec - 3.13.1-192.2Lukas Vrabec - 3.13.1-192.1Lukas Vrabec - 3.13.1-192Lukas Vrabec - 3.13.1-191Lukas Vrabec - 3.13.1-190Lukas Vrabec - 3.13.1-189Lukas Vrabec - 3.13.1-188Lukas Vrabec - 3.13.1-187Lukas Vrabec - 3.13.1-186Lukas Vrabec - 3.13.1-185Lukas Vrabec - 3.13.1-184Lukas Vrabec - 3.13.1-183Lukas Vrabec - 3.13.1-182Lukas Vrabec - 3.13.1-181Lukas Vrabec - 3.13.1-180Lukas Vrabec - 3.13.1-179Lukas Vrabec - 3.13.1-178Lukas Vrabec - 3.13.1-177Lukas Vrabec - 3.13.1-176Lukas Vrabec - 3.13.1-175Lukas Vrabec - 3.13.1-174Lukas Vrabec - 3.13.1-173Lukas Vrabec - 3.13.1-172Lukas Vrabec - 3.13.1-171Lukas Vrabec - 3.13.1-170Lukas Vrabec - 3.13.1-169Lukas Vrabec - 3.13.1-168Lukas Vrabec - 3.13.1-167Lukas Vrabec - 3.13.1-166Lukas Vrabec - 3.13.1-165Lukas Vrabec - 3.13.1-164Lukas Vrabec - 3.13.1-163Lukas Vrabec - 3.13.1-162Lukas Vrabec - 3.13.1-161Lukas Vrabec - 3.13.1-160Lukas Vrabec - 3.13.1-159Lukas Vrabec - 3.13.1-158Lukas Vrabec - 3.13.1-157Lukas Vrabec - 3.13.1-156Lukas Vrabec - 3.13.1-155Lukas Vrabec - 3.13.1-154Lukas Vrabec - 3.13.1-153Lukas Vrabec - 3.13.1-152Lukas Vrabec - 3.13.1-151Lukas Vrabec - 3.13.1-150Lukas Vrabec - 3.13.1-149Lukas Vrabec - 3.13.1-148Lukas Vrabec - 3.13.1-147Lukas Vrabec - 3.13.1-146Lukas Vrabec - 3.13.1-145Lukas Vrabec - 3.13.1-144Lukas Vrabec - 3.13.1-143Lukas Vrabec - 3.13.1-142Lukas Vrabec - 3.13.1-141Lukas Vrabec - 3.13.1-140Lukas Vrabec - 3.13.1-139Lukas Vrabec - 3.13.1-138Lukas Vrabec - 3.13.1-137Lukas Vrabec - 3.13.1-136Lukas Vrabec - 3.13.1-135Lukas Vrabec - 3.13.1-134Lukas Vrabec - 3.13.1-133Lukas Vrabec - 3.13.1-132Lukas Vrabec - 3.13.1-131Lukas Vrabec - 3.13.1-130Lukas Vrabec - 3.13.1-129Lukas Vrabec - 3.13.1-128Lukas Vrabec - 3.13.1-127Lukas Vrabec - 3.13.1-126Lukas Vrabec - 3.13.1-125Lukas Vrabec - 3.13.1-124Lukas Vrabec - 3.13.1-123Lukas Vrabec - 3.13.1-122Lukas Vrabec - 3.13.1-120Lukas Vrabec - 3.13.1-119Lukas Vrabec - 3.13.1-118Lukas Vrabec - 3.13.1-117Lukas Vrabec - 3.13.1-116Lukas Vrabec - 3.13.1-115Lukas Vrabec - 3.13.1-114Lukas Vrabec - 3.13.1-113Lukas Vrabec - 3.13.1-112Lukas Vrabec - 3.13.1-111Lukas Vrabec - 3.13.1-110Lukas Vrabec - 3.13.1-109Lukas Vrabec - 3.13.1-108Lukas Vrabec - 3.13.1-107Lukas Vrabec - 3.13.1-106Miroslav Grepl - 3.13.1-105Lukas Vrabec - 3.13.1-104Lukas Vrabec - 3.13.1-103Dan Walsh - 3.13.1-102Lukas Vrabec - 3.13.1-101Lukas Vrabec - 3.13.1-100Lukas Vrabec - 3.13.1-99Lukas Vrabec - 3.13.1-98Lukas Vrabec - 3.13.1-97Lukas Vrabec - 3.13.1-96Lukas Vrabec - 3.13.1-95Lukas Vrabec - 3.13.1-94Lukas Vrabec - 3.13.1-93Lukas Vrabec - 3.13.1-92Lukas Vrabec - 3.13.1-91Lukas Vrabec - 3.13.1-90Lukas Vrabec - 3.13.1-89Lukas Vrabec - 3.13.1-88Lukas Vrabec - 3.13.1-87Lukas Vrabec - 3.13.1-86Lukas Vrabec - 3.13.1-85Lukas Vrabec - 3.13.1-84Lukas Vrabec - 3.13.1-83Lukas Vrabec - 3.13.1-82Lukas Vrabec - 3.13.1-81Lukas Vrabec - 3.13.1-80Petr Lautrbach - 3.13.1-79Lukas Vrabec - 3.13.1-78Lukas Vrabec - 3.13.1-77Lukas Vrabec - 3.13.1-76Lukas Vrabec - 3.13.1-75Lukas Vrabec - 3.13.1-74Lukas Vrabec - 3.13.1-73Lukas Vrabec - 3.13.1-72Lukas Vrabec - 3.13.1-71Lukas Vrabec - 3.13.1-70Lukas Vrabec - 3.13.1-69Lukas Vrabec - 3.13.1-68Lukas Vrabec - 3.13.1-67Petr Lautrbach - 3.13.1-66Lukas Vrabec 3.13.1-65Lukas Vrabec 3.13.1-64Lukas Vrabec 3.13.1-63Lukas Vrabec 3.13.1-62Lukas Vrabec 3.13.1-61Miroslav Grepl 3.13.1-60Miroslav Grepl 3.13.1-59Lukas Vrabec 3.13.1-58Lukas Vrabec 3.13.1-57Miroslav Grepl 3.13.1-56Lukas Vrabec 3.13.1-55Lukas Vrabec 3.13.1-54Lukas Vrabec 3.13.1-53Lukas Vrabec 3.13.1-52Miroslav Grepl 3.13.1-51Lukas Vrabec 3.13.1-50Lukas Vrabec 3.13.1-49Lukas Vrabec 3.13.1-48Lukas Vrabec 3.13.1-47Lukas Vrabec 3.13.1-46Lukas Vrabec 3.13.1-45Lukas Vrabec 3.13.1-44Lukas Vrabec 3.13.1-43Lukas Vrabec 3.13.1-42Lukas Vrabec 3.13.1-41Lukas Vrabec 3.13.1-40Miroslav Grepl 3.13.1-39Lukas Vrabec 3.13.1-38Lukas Vrabec 3.13.1-37Lukas Vrabec 3.13.1-36Lukas Vrabec 3.13.1-35Lukas Vrabec 3.13.1-34Lukas Vrabec 3.13.1-33Lukas Vrabec 3.13.1-32Miroslav Grepl 3.13.1-31Miroslav Grepl 3.13.1-30Miroslav Grepl 3.13.1-29Miroslav Grepl 3.13.1-28Miroslav Grepl 3.13.1-27Miroslav Grepl 3.13.1-26Miroslav Grepl 3.13.1-25Miroslav Grepl 3.13.1-24Miroslav Grepl 3.13.1-23Miroslav Grepl 3.13.1-22Miroslav Grepl 3.13.1-21Miroslav Grepl 3.13.1-20Miroslav Grepl 3.13.1-19Miroslav Grepl 3.13.1-18Miroslav Grepl 3.13.1-17Miroslav Grepl 3.13.1-16Miroslav Grepl 3.13.1-15Miroslav Grepl 3.13.1-14Miroslav Grepl 3.13.1-13Miroslav Grepl 3.13.1-12Miroslav Grepl 3.13.1-11Miroslav Grepl 3.13.1-10Miroslav Grepl 3.13.1-9Miroslav Grepl 3.13.1-8Miroslav Grepl 3.13.1-7Miroslav Grepl 3.13.1-6Miroslav Grepl 3.13.1-5Miroslav Grepl 3.13.1-4Miroslav Grepl 3.13.1-3Miroslav Grepl 3.13.1-2Miroslav Grepl 3.13.1-1Miroslav Grepl 3.12.1-156Miroslav Grepl 3.12.1-155Miroslav Grepl 3.12.1-154Miroslav Grepl 3.12.1-153Miroslav Grepl 3.12.1-152Miroslav Grepl 3.12.1-151Miroslav Grepl 3.12.1-149Miroslav Grepl 3.12.1-149Miroslav Grepl 3.12.1-148Miroslav Grepl 3.12.1-147Miroslav Grepl 3.12.1-146Miroslav Grepl 3.12.1-145Miroslav Grepl 3.12.1-144Lukas Vrabec 3.12.1-143Miroslav Grepl 3.12.1-142Miroslav Grepl 3.12.1-141Miroslav Grepl 3.12.1-140Miroslav Grepl 3.12.1-139Lukas Vrabec 3.12.1-138Miroslav Grepl 3.12.1-137Miroslav Grepl 3.12.1-136Miroslav Grepl 3.12.1-135Miroslav Grepl 3.12.1-134Miroslav Grepl 3.12.1-133Miroslav Grepl 3.12.1-132Miroslav Grepl 3.12.1-131Miroslav Grepl 3.12.1-130Miroslav Grepl 3.12.1-129Miroslav Grepl 3.12.1-128Miroslav Grepl 3.12.1-127Miroslav Grepl 3.12.1-126Miroslav Grepl 3.12.1-125Miroslav Grepl 3.12.1-124Miroslav Grepl 3.12.1-123Miroslav Grepl 3.12.1-122Miroslav Grepl 3.12.1-121Miroslav Grepl 3.12.1-120Miroslav Grepl 3.12.1-119Miroslav Grepl 3.12.1-118Miroslav Grepl 3.12.1-117Miroslav Grepl 3.12.1-116Miroslav Grepl 3.12.1-115Miroslav Grepl 3.12.1-114Miroslav Grepl 3.12.1-113Miroslav Grepl 3.12.1-112Miroslav Grepl 3.12.1-111Miroslav Grepl 3.12.1-110Miroslav Grepl 3.12.1-109Miroslav Grepl 3.12.1-108Miroslav Grepl 3.12.1-107Dan Walsh 3.12.1-106Miroslav Grepl 3.12.1-105Miroslav Grepl 3.12.1-104Miroslav Grepl 3.12.1-103Miroslav Grepl 3.12.1-102Miroslav Grepl 3.12.1-101Miroslav Grepl 3.12.1-100Miroslav Grepl 3.12.1-99Miroslav Grepl 3.12.1-98Miroslav Grepl 3.12.1-97Miroslav Grepl 3.12.1-96Miroslav Grepl 3.12.1-95Miroslav Grepl 3.12.1-94Miroslav Grepl 3.12.1-94Miroslav Grepl 3.12.1-93Miroslav Grepl 3.12.1-92Miroslav Grepl 3.12.1-91Miroslav Grepl 3.12.1-90Miroslav Grepl 3.12.1-89Miroslav Grepl 3.12.1-88Miroslav Grepl 3.12.1-87Miroslav Grepl 3.12.1-86Miroslav Grepl 3.12.1-85Miroslav Grepl 3.12.1-84Miroslav Grepl 3.12.1-83Miroslav Grepl 3.12.1-82Miroslav Grepl 3.12.1-81Miroslav Grepl 3.12.1-80Miroslav Grepl 3.12.1-79Miroslav Grepl 3.12.1-78Miroslav Grepl 3.12.1-77Miroslav Grepl 3.12.1-76Miroslav Grepl 3.12.1-75Miroslav Grepl 3.12.1-74Miroslav Grepl 3.12.1-73Miroslav Grepl 3.12.1-72Miroslav Grepl 3.12.1-71Miroslav Grepl 3.12.1-70Miroslav Grepl 3.12.1-69Miroslav Grepl 3.12.1-68Miroslav Grepl 3.12.1-67Miroslav Grepl 3.12.1-66Miroslav Grepl 3.12.1-65Miroslav Grepl 3.12.1-64Miroslav Grepl 3.12.1-63Miroslav Grepl 3.12.1-62Miroslav Grepl 3.12.1-61Miroslav Grepl 3.12.1-60Miroslav Grepl 3.12.1-59Miroslav Grepl 3.12.1-58Miroslav Grepl 3.12.1-57Miroslav Grepl 3.12.1-56Miroslav Grepl 3.12.1-55Miroslav Grepl 3.12.1-54Miroslav Grepl 3.12.1-53Miroslav Grepl 3.12.1-52Miroslav Grepl 3.12.1-51Miroslav Grepl 3.12.1-50Miroslav Grepl 3.12.1-49Miroslav Grepl 3.12.1-48Miroslav Grepl 3.12.1-47Miroslav Grepl 3.12.1-46Miroslav Grepl 3.12.1-45Miroslav Grepl 3.12.1-44Miroslav Grepl 3.12.1-43Miroslav Grepl 3.12.1-42Miroslav Grepl 3.12.1-41Miroslav Grepl 3.12.1-40Miroslav Grepl 3.12.1-39Miroslav Grepl 3.12.1-38Miroslav Grepl 3.12.1-37Miroslav Grepl 3.12.1-36Miroslav Grepl 3.12.1-35Miroslav Grepl 3.12.1-34Miroslav Grepl 3.12.1-33Miroslav Grepl 3.12.1-32Miroslav Grepl 3.12.1-31Miroslav Grepl 3.12.1-30Miroslav Grepl 3.12.1-29Dan Walsh 3.12.1-28Dan Walsh 3.12.1-27Miroslav Grepl 3.12.1-26Miroslav Grepl 3.12.1-25Miroslav Grepl 3.12.1-24Miroslav Grepl 3.12.1-23Miroslav Grepl 3.12.1-22Miroslav Grepl 3.12.1-21Miroslav Grepl 3.12.1-20Miroslav Grepl 3.12.1-19Miroslav Grepl 3.12.1-18Miroslav Grepl 3.12.1-17Miroslav Grepl 3.12.1-16Miroslav Grepl 3.12.1-15Miroslav Grepl 3.12.1-14Miroslav Grepl 3.12.1-13Miroslav Grepl 3.12.1-12Miroslav Grepl 3.12.1-11Miroslav Grepl 3.12.1-10Miroslav Grepl 3.12.1-9Miroslav Grepl 3.12.1-8Miroslav Grepl 3.12.1-7Miroslav Grepl 3.12.1-6Miroslav Grepl 3.12.1-5Miroslav Grepl 3.12.1-4Miroslav Grepl 3.12.1-3Miroslav Grepl 3.12.1-2Miroslav Grepl 3.12.1-1Dan Walsh 3.11.1-69.1Miroslav Grepl 3.11.1-69Miroslav Grepl 3.11.1-68Miroslav Grepl 3.11.1-67Miroslav Grepl 3.11.1-66Miroslav Grepl 3.11.1-65Miroslav Grepl 3.11.1-64Miroslav Grepl 3.11.1-63Miroslav Grepl 3.11.1-62Miroslav Grepl 3.11.1-61Miroslav Grepl 3.11.1-60Miroslav Grepl 3.11.1-59Miroslav Grepl 3.11.1-58Miroslav Grepl 3.11.1-57Miroslav Grepl 3.11.1-56Miroslav Grepl 3.11.1-55Miroslav Grepl 3.11.1-54Miroslav Grepl 3.11.1-53Miroslav Grepl 3.11.1-52Miroslav Grepl 3.11.1-51Miroslav Grepl 3.11.1-50Miroslav Grepl 3.11.1-49Miroslav Grepl 3.11.1-48Miroslav Grepl 3.11.1-47Miroslav Grepl 3.11.1-46Miroslav Grepl 3.11.1-45Miroslav Grepl 3.11.1-44Miroslav Grepl 3.11.1-43Miroslav Grepl 3.11.1-42Miroslav Grepl 3.11.1-41Miroslav Grepl 3.11.1-40Miroslav Grepl 3.11.1-39Miroslav Grepl 3.11.1-38Miroslav Grepl 3.11.1-37Miroslav Grepl 3.11.1-36Miroslav Grepl 3.11.1-35Miroslav Grepl 3.11.1-34Miroslav Grepl 3.11.1-33Miroslav Grepl 3.11.1-32Miroslav Grepl 3.11.1-31Miroslav Grepl 3.11.1-30Miroslav Grepl 3.11.1-29Miroslav Grepl 3.11.1-28Miroslav Grepl 3.11.1-27Miroslav Grepl 3.11.1-26Miroslav Grepl 3.11.1-25Miroslav Grepl 3.11.1-24Miroslav Grepl 3.11.1-23Miroslav Grepl 3.11.1-22Miroslav Grepl 3.11.1-21Miroslav Grepl 3.11.1-20Miroslav Grepl 3.11.1-19Miroslav Grepl 3.11.1-18Miroslav Grepl 3.11.1-17Miroslav Grepl 3.11.1-16Dan Walsh 3.11.1-15Miroslav Grepl 3.11.1-14Dan Walsh 3.11.1-13Miroslav Grepl 3.11.1-12Miroslav Grepl 3.11.1-11Miroslav Grepl 3.11.1-10Dan Walsh 3.11.1-9Dan Walsh 3.11.1-8Dan Walsh 3.11.1-7Dan Walsh 3.11.1-6Miroslav Grepl 3.11.1-5Miroslav Grepl 3.11.1-4Miroslav Grepl 3.11.1-3Miroslav Grepl 3.11.1-2Miroslav Grepl 3.11.1-1Miroslav Grepl 3.11.1-0Miroslav Grepl 3.11.0-15Miroslav Grepl 3.11.0-14Miroslav Grepl 3.11.0-13Miroslav Grepl 3.11.0-12Fedora Release Engineering - 3.11.0-11Miroslav Grepl 3.11.0-10Miroslav Grepl 3.11.0-9Miroslav Grepl 3.11.0-8Miroslav Grepl 3.11.0-7Miroslav Grepl 3.11.0-6Miroslav Grepl 3.11.0-5Miroslav Grepl 3.11.0-4Miroslav Grepl 3.11.0-3Miroslav Grepl 3.11.0-2Miroslav Grepl 3.11.0-1Miroslav Grepl 3.10.0-128Miroslav Grepl 3.10.0-127Miroslav Grepl 3.10.0-126Miroslav Grepl 3.10.0-125Miroslav Grepl 3.10.0-124Miroslav Grepl 3.10.0-123Miroslav Grepl 3.10.0-122Miroslav Grepl 3.10.0-121Miroslav Grepl 3.10.0-120Miroslav Grepl 3.10.0-119Miroslav Grepl 3.10.0-118Miroslav Grepl 3.10.0-117Miroslav Grepl 3.10.0-116Miroslav Grepl 3.10.0-115Miroslav Grepl 3.10.0-114Miroslav Grepl 3.10.0-113Miroslav Grepl 3.10.0-112Miroslav Grepl 3.10.0-111Miroslav Grepl 3.10.0-110Miroslav Grepl 3.10.0-109Miroslav Grepl 3.10.0-108Miroslav Grepl 3.10.0-107Miroslav Grepl 3.10.0-106Miroslav Grepl 3.10.0-105Miroslav Grepl 3.10.0-104Miroslav Grepl 3.10.0-103Miroslav Grepl 3.10.0-102Miroslav Grepl 3.10.0-101Miroslav Grepl 3.10.0-100Miroslav Grepl 3.10.0-99Miroslav Grepl 3.10.0-98Miroslav Grepl 3.10.0-97Miroslav Grepl 3.10.0-96Miroslav Grepl 3.10.0-95Miroslav Grepl 3.10.0-94Miroslav Grepl 3.10.0-93Miroslav Grepl 3.10.0-92Miroslav Grepl 3.10.0-91Miroslav Grepl 3.10.0-90Miroslav Grepl 3.10.0-89Miroslav Grepl 3.10.0-88Miroslav Grepl 3.10.0-87Miroslav Grepl 3.10.0-86Miroslav Grepl 3.10.0-85Miroslav Grepl 3.10.0-84Miroslav Grepl 3.10.0-83Miroslav Grepl 3.10.0-82Dan Walsh 3.10.0-81.2Miroslav Grepl 3.10.0-81Miroslav Grepl 3.10.0-80Miroslav Grepl 3.10.0-79Miroslav Grepl 3.10.0-78Miroslav Grepl 3.10.0-77Miroslav Grepl 3.10.0-76Miroslav Grepl 3.10.0-75Dan Walsh 3.10.0-74.2Miroslav Grepl 3.10.0-74Miroslav Grepl 3.10.0-73Miroslav Grepl 3.10.0-72Miroslav Grepl 3.10.0-71Miroslav Grepl 3.10.0-70Miroslav Grepl 3.10.0-69Miroslav Grepl 3.10.0-68Miroslav Grepl 3.10.0-67Miroslav Grepl 3.10.0-66Miroslav Grepl 3.10.0-65Miroslav Grepl 3.10.0-64Miroslav Grepl 3.10.0-63Miroslav Grepl 3.10.0-59Miroslav Grepl 3.10.0-58Dan Walsh 3.10.0-57Dan Walsh 3.10.0-56Dan Walsh 3.10.0-55.2Dan Walsh 3.10.0-55.1Miroslav Grepl 3.10.0-55Dan Walsh 3.10.0-54.1Miroslav Grepl 3.10.0-54Dan Walsh 3.10.0-53.1Miroslav Grepl 3.10.0-53Miroslav Grepl 3.10.0-52Miroslav Grepl 3.10.0-51Dan Walsh 3.10.0-50.2Dan Walsh 3.10.0-50.1Miroslav Grepl 3.10.0-50Miroslav Grepl 3.10.0-49Miroslav Grepl 3.10.0-48Miroslav Grepl 3.10.0-47Dan Walsh 3.10.0-46.1Miroslav Grepl 3.10.0-46Dan Walsh 3.10.0-45.1Miroslav Grepl 3.10.0-45Miroslav Grepl 3.10.0-43Miroslav Grepl 3.10.0-42Miroslav Grepl 3.10.0-41Dan Walsh 3.10.0-40.2Miroslav Grepl 3.10.0-40Dan Walsh 3.10.0-39.3Dan Walsh 3.10.0-39.2Dan Walsh 3.10.0-39.1Miroslav Grepl 3.10.0-39Dan Walsh 3.10.0-38.1Miroslav Grepl 3.10.0-38Miroslav Grepl 3.10.0-37Dan Walsh 3.10.0-36.1Miroslav Grepl 3.10.0-36Dan Walsh 3.10.0-35Dan Walsh 3.10.0-34.7Dan Walsh 3.10.0-34.6Dan Walsh 3.10.0-34.4Miroslav Grepl 3.10.0-34.3Dan Walsh 3.10.0-34.2Dan Walsh 3.10.0-34.1Miroslav Grepl 3.10.0-34Miroslav Grepl 3.10.0-33Dan Walsh 3.10.0-31.1Miroslav Grepl 3.10.0-31Miroslav Grepl 3.10.0-29Miroslav Grepl 3.10.0-28Miroslav Grepl 3.10.0-27Miroslav Grepl 3.10.0-26Miroslav Grepl 3.10.0-25Miroslav Grepl 3.10.0-24Miroslav Grepl 3.10.0-23Miroslav Grepl 3.10.0-22Miroslav Grepl 3.10.0-21Dan Walsh 3.10.0-20Miroslav Grepl 3.10.0-19Miroslav Grepl 3.10.0-18Miroslav Grepl 3.10.0-17Miroslav Grepl 3.10.0-16Miroslav Grepl 3.10.0-14Miroslav Grepl 3.10.0-13Miroslav Grepl 3.10.0-12Miroslav Grepl 3.10.0-11Miroslav Grepl 3.10.0-10Miroslav Grepl 3.10.0-9Miroslav Grepl 3.10.0-8Miroslav Grepl 3.10.0-7Miroslav Grepl 3.10.0-6Miroslav Grepl 3.10.0-5Miroslav Grepl 3.10.0-4Miroslav Grepl 3.10.0-3Miroslav Grepl 3.10.0-2Miroslav Grepl 3.10.0-1Miroslav Grepl 3.9.16-30Dan Walsh 3.9.16-29.1Miroslav Grepl 3.9.16-29Dan Walsh 3.9.16-28.1Miroslav Grepl 3.9.16-27Miroslav Grepl 3.9.16-26Miroslav Grepl 3.9.16-25Miroslav Grepl 3.9.16-24Miroslav Grepl 3.9.16-23Miroslav Grepl 3.9.16-22Miroslav Grepl 3.9.16-21Miroslav Grepl 3.9.16-20Miroslav Grepl 3.9.16-19Miroslav Grepl 3.9.16-18Miroslav Grepl 3.9.16-17Dan Walsh 3.9.16-16.1Miroslav Grepl 3.9.16-16Miroslav Grepl 3.9.16-15Miroslav Grepl 3.9.16-14Miroslav Grepl 3.9.16-13Miroslav Grepl 3.9.16-12Miroslav Grepl 3.9.16-11Miroslav Grepl 3.9.16-10Miroslav Grepl 3.9.16-7Miroslav Grepl 3.9.16-6Miroslav Grepl 3.9.16-5Miroslav Grepl 3.9.16-4Miroslav Grepl 3.9.16-3Miroslav Grepl 3.9.16-2Miroslav Grepl 3.9.16-1Miroslav Grepl 3.9.15-5Miroslav Grepl 3.9.15-2Miroslav Grepl 3.9.15-1Fedora Release Engineering - 3.9.14-2Dan Walsh 3.9.14-1Miroslav Grepl 3.9.13-10Miroslav Grepl 3.9.13-9Dan Walsh 3.9.13-8Miroslav Grepl 3.9.13-7Miroslav Grepl 3.9.13-6Miroslav Grepl 3.9.13-5Miroslav Grepl 3.9.13-4Miroslav Grepl 3.9.13-3Miroslav Grepl 3.9.13-2Miroslav Grepl 3.9.13-1Miroslav Grepl 3.9.12-8Miroslav Grepl 3.9.12-7Miroslav Grepl 3.9.12-6Miroslav Grepl 3.9.12-5Dan Walsh 3.9.12-4Dan Walsh 3.9.12-3Dan Walsh 3.9.12-2Miroslav Grepl 3.9.12-1Dan Walsh 3.9.11-2Miroslav Grepl 3.9.11-1Miroslav Grepl 3.9.10-13Dan Walsh 3.9.10-12Miroslav Grepl 3.9.10-11Miroslav Grepl 3.9.10-10Miroslav Grepl 3.9.10-9Miroslav Grepl 3.9.10-8Miroslav Grepl 3.9.10-7Miroslav Grepl 3.9.10-6Miroslav Grepl 3.9.10-5Dan Walsh 3.9.10-4Miroslav Grepl 3.9.10-3Miroslav Grepl 3.9.10-2Miroslav Grepl 3.9.10-1Miroslav Grepl 3.9.9-4Dan Walsh 3.9.9-3Miroslav Grepl 3.9.9-2Miroslav Grepl 3.9.9-1Miroslav Grepl 3.9.8-7Dan Walsh 3.9.8-6Miroslav Grepl 3.9.8-5Miroslav Grepl 3.9.8-4Dan Walsh 3.9.8-3Dan Walsh 3.9.8-2Dan Walsh 3.9.8-1Dan Walsh 3.9.7-10Dan Walsh 3.9.7-9Dan Walsh 3.9.7-8Dan Walsh 3.9.7-7Dan Walsh 3.9.7-6Dan Walsh 3.9.7-5Dan Walsh 3.9.7-4Dan Walsh 3.9.7-3Dan Walsh 3.9.7-2Dan Walsh 3.9.7-1Dan Walsh 3.9.6-3Dan Walsh 3.9.6-2Dan Walsh 3.9.6-1Dan Walsh 3.9.5-11Dan Walsh 3.9.5-10Dan Walsh 3.9.5-9Dan Walsh 3.9.5-8Dan Walsh 3.9.5-7Dan Walsh 3.9.5-6Dan Walsh 3.9.5-5Dan Walsh 3.9.5-4Dan Walsh 3.9.5-3Dan Walsh 3.9.5-2Dan Walsh 3.9.5-1Dan Walsh 3.9.4-3Dan Walsh 3.9.4-2Dan Walsh 3.9.4-1Dan Walsh 3.9.3-4Dan Walsh 3.9.3-3Dan Walsh 3.9.3-2Dan Walsh 3.9.3-1Dan Walsh 3.9.2-1Dan Walsh 3.9.1-3Dan Walsh 3.9.1-2Dan Walsh 3.9.1-1Dan Walsh 3.9.0-2Dan Walsh 3.9.0-1Dan Walsh 3.8.8-21Dan Walsh 3.8.8-20Dan Walsh 3.8.8-19Dan Walsh 3.8.8-18Dan Walsh 3.8.8-17Dan Walsh 3.8.8-16Dan Walsh 3.8.8-15Dan Walsh 3.8.8-14Dan Walsh 3.8.8-13Dan Walsh 3.8.8-12Dan Walsh 3.8.8-11Dan Walsh 3.8.8-10Dan Walsh 3.8.8-9Dan Walsh 3.8.8-8Dan Walsh 3.8.8-7Dan Walsh 3.8.8-6Dan Walsh 3.8.8-5Dan Walsh 3.8.8-4Dan Walsh 3.8.8-3Dan Walsh 3.8.8-2Dan Walsh 3.8.8-1Dan Walsh 3.8.7-3Dan Walsh 3.8.7-2Dan Walsh 3.8.7-1Dan Walsh 3.8.6-3Miroslav Grepl 3.8.6-2Dan Walsh 3.8.6-1Dan Walsh 3.8.5-1Dan Walsh 3.8.4-1Dan Walsh 3.8.3-4Dan Walsh 3.8.3-3Dan Walsh 3.8.3-2Dan Walsh 3.8.3-1Dan Walsh 3.8.2-1Dan Walsh 3.8.1-5Dan Walsh 3.8.1-4Dan Walsh 3.8.1-3Dan Walsh 3.8.1-2Dan Walsh 3.8.1-1Dan Walsh 3.7.19-22Dan Walsh 3.7.19-21Dan Walsh 3.7.19-20Dan Walsh 3.7.19-19Dan Walsh 3.7.19-17Dan Walsh 3.7.19-16Dan Walsh 3.7.19-15Dan Walsh 3.7.19-14Dan Walsh 3.7.19-13Dan Walsh 3.7.19-12Dan Walsh 3.7.19-11Dan Walsh 3.7.19-10Dan Walsh 3.7.19-9Dan Walsh 3.7.19-8Dan Walsh 3.7.19-7Dan Walsh 3.7.19-6Dan Walsh 3.7.19-5Dan Walsh 3.7.19-4Dan Walsh 3.7.19-3Dan Walsh 3.7.19-2Dan Walsh 3.7.19-1Dan Walsh 3.7.18-3Dan Walsh 3.7.18-2Dan Walsh 3.7.18-1Dan Walsh 3.7.17-6Dan Walsh 3.7.17-5Dan Walsh 3.7.17-4Dan Walsh 3.7.17-3Dan Walsh 3.7.17-2Dan Walsh 3.7.17-1Dan Walsh 3.7.16-2Dan Walsh 3.7.16-1Dan Walsh 3.7.15-4Dan Walsh 3.7.15-3Dan Walsh 3.7.15-2Dan Walsh 3.7.15-1Dan Walsh 3.7.14-5Dan Walsh 3.7.14-4Dan Walsh 3.7.14-3Dan Walsh 3.7.14-2Dan Walsh 3.7.14-1Dan Walsh 3.7.13-4Dan Walsh 3.7.13-3Dan Walsh 3.7.13-2Dan Walsh 3.7.13-1Dan Walsh 3.7.12-1Dan Walsh 3.7.11-1Dan Walsh 3.7.10-5Dan Walsh 3.7.10-4Dan Walsh 3.7.10-3Dan Walsh 3.7.10-2Dan Walsh 3.7.10-1Dan Walsh 3.7.9-4Dan Walsh 3.7.9-3Dan Walsh 3.7.9-2Dan Walsh 3.7.9-1Dan Walsh 3.7.8-11Dan Walsh 3.7.8-9Dan Walsh 3.7.8-8Dan Walsh 3.7.8-7Dan Walsh 3.7.8-6Dan Walsh 3.7.8-5Dan Walsh 3.7.8-4Dan Walsh 3.7.8-3Dan Walsh 3.7.8-2Dan Walsh 3.7.8-1Dan Walsh 3.7.7-3Dan Walsh 3.7.7-2Dan Walsh 3.7.7-1Dan Walsh 3.7.6-1Dan Walsh 3.7.5-8Dan Walsh 3.7.5-7Dan Walsh 3.7.5-6Dan Walsh 3.7.5-5Dan Walsh 3.7.5-4Dan Walsh 3.7.5-3Dan Walsh 3.7.5-2Dan Walsh 3.7.5-1Dan Walsh 3.7.4-4Dan Walsh 3.7.4-3Dan Walsh 3.7.4-2Dan Walsh 3.7.4-1Dan Walsh 3.7.3-1Dan Walsh 3.7.1-1Dan Walsh 3.6.33-2Dan Walsh 3.6.33-1Dan Walsh 3.6.32-17Dan Walsh 3.6.32-16Dan Walsh 3.6.32-15Dan Walsh 3.6.32-13Dan Walsh 3.6.32-12Dan Walsh 3.6.32-11Dan Walsh 3.6.32-10Dan Walsh 3.6.32-9Dan Walsh 3.6.32-8Dan Walsh 3.6.32-7Dan Walsh 3.6.32-6Dan Walsh 3.6.32-5Dan Walsh 3.6.32-4Dan Walsh 3.6.32-3Dan Walsh 3.6.32-2Dan Walsh 3.6.32-1Dan Walsh 3.6.31-5Dan Walsh 3.6.31-4Dan Walsh 3.6.31-3Dan Walsh 3.6.31-2Dan Walsh 3.6.30-6Dan Walsh 3.6.30-5Dan Walsh 3.6.30-4Dan Walsh 3.6.30-3Dan Walsh 3.6.30-2Dan Walsh 3.6.30-1Dan Walsh 3.6.29-2Dan Walsh 3.6.29-1Dan Walsh 3.6.28-9Dan Walsh 3.6.28-8Dan Walsh 3.6.28-7Dan Walsh 3.6.28-6Dan Walsh 3.6.28-5Dan Walsh 3.6.28-4Dan Walsh 3.6.28-3Dan Walsh 3.6.28-2Dan Walsh 3.6.28-1Dan Walsh 3.6.27-1Dan Walsh 3.6.26-11Dan Walsh 3.6.26-10Dan Walsh 3.6.26-9Bill Nottingham 3.6.26-8Dan Walsh 3.6.26-7Dan Walsh 3.6.26-6Dan Walsh 3.6.26-5Dan Walsh 3.6.26-4Dan Walsh 3.6.26-3Dan Walsh 3.6.26-2Dan Walsh 3.6.26-1Dan Walsh 3.6.25-1Dan Walsh 3.6.24-1Dan Walsh 3.6.23-2Dan Walsh 3.6.23-1Dan Walsh 3.6.22-3Dan Walsh 3.6.22-1Dan Walsh 3.6.21-4Dan Walsh 3.6.21-3Tom "spot" Callaway 3.6.21-2Dan Walsh 3.6.21-1Dan Walsh 3.6.20-2Dan Walsh 3.6.20-1Dan Walsh 3.6.19-5Dan Walsh 3.6.19-4Dan Walsh 3.6.19-3Dan Walsh 3.6.19-2Dan Walsh 3.6.19-1Dan Walsh 3.6.18-1Dan Walsh 3.6.17-1Dan Walsh 3.6.16-4Dan Walsh 3.6.16-3Dan Walsh 3.6.16-2Dan Walsh 3.6.16-1Dan Walsh 3.6.14-3Dan Walsh 3.6.14-2Dan Walsh 3.6.14-1Dan Walsh 3.6.13-3Dan Walsh 3.6.13-2Dan Walsh 3.6.13-1Dan Walsh 3.6.12-39Dan Walsh 3.6.12-38Dan Walsh 3.6.12-37Dan Walsh 3.6.12-36Dan Walsh 3.6.12-35Dan Walsh 3.6.12-34Dan Walsh 3.6.12-33Dan Walsh 3.6.12-31Dan Walsh 3.6.12-30Dan Walsh 3.6.12-29Dan Walsh 3.6.12-28Dan Walsh 3.6.12-27Dan Walsh 3.6.12-26Dan Walsh 3.6.12-25Dan Walsh 3.6.12-24Dan Walsh 3.6.12-23Dan Walsh 3.6.12-22Dan Walsh 3.6.12-21Dan Walsh 3.6.12-20Dan Walsh 3.6.12-19Dan Walsh 3.6.12-16Dan Walsh 3.6.12-15Dan Walsh 3.6.12-14Dan Walsh 3.6.12-13Dan Walsh 3.6.12-12Dan Walsh 3.6.12-11Dan Walsh 3.6.12-10Dan Walsh 3.6.12-9Dan Walsh 3.6.12-8Dan Walsh 3.6.12-7Dan Walsh 3.6.12-6Dan Walsh 3.6.12-5Dan Walsh 3.6.12-4Dan Walsh 3.6.12-3Dan Walsh 3.6.12-2Dan Walsh 3.6.12-1Dan Walsh 3.6.11-1Dan Walsh 3.6.10-9Dan Walsh 3.6.10-8Dan Walsh 3.6.10-7Dan Walsh 3.6.10-6Dan Walsh 3.6.10-5Dan Walsh 3.6.10-4Dan Walsh 3.6.10-3Dan Walsh 3.6.10-2Dan Walsh 3.6.10-1Dan Walsh 3.6.9-4Dan Walsh 3.6.9-3Dan Walsh 3.6.9-2Dan Walsh 3.6.9-1Dan Walsh 3.6.8-4Dan Walsh 3.6.8-3Dan Walsh 3.6.8-2Dan Walsh 3.6.8-1Dan Walsh 3.6.7-2Dan Walsh 3.6.7-1Dan Walsh 3.6.6-9Dan Walsh 3.6.6-8Fedora Release Engineering - 3.6.6-7Dan Walsh 3.6.6-6Dan Walsh 3.6.6-5Dan Walsh 3.6.6-4Dan Walsh 3.6.6-3Dan Walsh 3.6.6-2Dan Walsh 3.6.6-1Dan Walsh 3.6.5-3Dan Walsh 3.6.5-1Dan Walsh 3.6.4-6Dan Walsh 3.6.4-5Dan Walsh 3.6.4-4Dan Walsh 3.6.4-3Dan Walsh 3.6.4-2Dan Walsh 3.6.4-1Dan Walsh 3.6.3-13Dan Walsh 3.6.3-12Dan Walsh 3.6.3-11Dan Walsh 3.6.3-10Dan Walsh 3.6.3-9Dan Walsh 3.6.3-8Dan Walsh 3.6.3-7Dan Walsh 3.6.3-6Dan Walsh 3.6.3-3Dan Walsh 3.6.3-2Dan Walsh 3.6.3-1Dan Walsh 3.6.2-5Dan Walsh 3.6.2-4Dan Walsh 3.6.2-3Dan Walsh 3.6.2-2Dan Walsh 3.6.2-1Dan Walsh 3.6.1-15Dan Walsh 3.6.1-14Dan Walsh 3.6.1-13Dan Walsh 3.6.1-12Dan Walsh 3.6.1-11Dan Walsh 3.6.1-10Dan Walsh 3.6.1-9Dan Walsh 3.6.1-8Dan Walsh 3.6.1-7Dan Walsh 3.6.1-4Ignacio Vazquez-Abrams - 3.6.1-2Dan Walsh 3.5.13-19Dan Walsh 3.5.13-18Dan Walsh 3.5.13-17Dan Walsh 3.5.13-16Dan Walsh 3.5.13-15Dan Walsh 3.5.13-14Dan Walsh 3.5.13-13Dan Walsh 3.5.13-12Dan Walsh 3.5.13-11Dan Walsh 3.5.13-9Dan Walsh 3.5.13-8Dan Walsh 3.5.13-7Dan Walsh 3.5.13-6Dan Walsh 3.5.13-5Dan Walsh 3.5.13-4Dan Walsh 3.5.13-3Dan Walsh 3.5.13-2Dan Walsh 3.5.13-1Dan Walsh 3.5.12-3Dan Walsh 3.5.12-2Dan Walsh 3.5.12-1Dan Walsh 3.5.11-1Dan Walsh 3.5.10-3Dan Walsh 3.5.10-2Dan Walsh 3.5.10-1Dan Walsh 3.5.9-4Dan Walsh 3.5.9-3Dan Walsh 3.5.9-2Dan Walsh 3.5.9-1Dan Walsh 3.5.8-7Dan Walsh 3.5.8-6Dan Walsh 3.5.8-5Dan Walsh 3.5.8-4Dan Walsh 3.5.8-3Dan Walsh 3.5.8-1Dan Walsh 3.5.7-2Dan Walsh 3.5.7-1Dan Walsh 3.5.6-2Dan Walsh 3.5.6-1Dan Walsh 3.5.5-4Dan Walsh 3.5.5-3Dan Walsh 3.5.5-2Dan Walsh 3.5.4-2Dan Walsh 3.5.4-1Dan Walsh 3.5.3-1Dan Walsh 3.5.2-2Dan Walsh 3.5.1-5Dan Walsh 3.5.1-4Dan Walsh 3.5.1-3Dan Walsh 3.5.1-2Dan Walsh 3.5.1-1Dan Walsh 3.5.0-1Dan Walsh 3.4.2-14Dan Walsh 3.4.2-13Dan Walsh 3.4.2-12Dan Walsh 3.4.2-11Dan Walsh 3.4.2-10Dan Walsh 3.4.2-9Dan Walsh 3.4.2-8Dan Walsh 3.4.2-7Dan Walsh 3.4.2-6Dan Walsh 3.4.2-5Dan Walsh 3.4.2-4Dan Walsh 3.4.2-3Dan Walsh 3.4.2-2Dan Walsh 3.4.2-1Dan Walsh 3.4.1-5Dan Walsh 3.4.1-3Dan Walsh 3.4.1-2Dan Walsh 3.4.1-1Dan Walsh 3.3.1-48Dan Walsh 3.3.1-47Dan Walsh 3.3.1-46Dan Walsh 3.3.1-45Dan Walsh 3.3.1-44Dan Walsh 3.3.1-43Dan Walsh 3.3.1-42Dan Walsh 3.3.1-41Dan Walsh 3.3.1-39Dan Walsh 3.3.1-37Dan Walsh 3.3.1-36Dan Walsh 3.3.1-33Dan Walsh 3.3.1-32Dan Walsh 3.3.1-31Dan Walsh 3.3.1-30Dan Walsh 3.3.1-29Dan Walsh 3.3.1-28Dan Walsh 3.3.1-27Dan Walsh 3.3.1-26Dan Walsh 3.3.1-25Dan Walsh 3.3.1-24Dan Walsh 3.3.1-23Dan Walsh 3.3.1-22Dan Walsh 3.3.1-21Dan Walsh 3.3.1-20Dan Walsh 3.3.1-19Dan Walsh 3.3.1-18Dan Walsh 3.3.1-17Dan Walsh 3.3.1-16Dan Walsh 3.3.1-15Bill Nottingham 3.3.1-14Dan Walsh 3.3.1-13Dan Walsh 3.3.1-12Dan Walsh 3.3.1-11Dan Walsh 3.3.1-10Dan Walsh 3.3.1-9Dan Walsh 3.3.1-8Dan Walsh 3.3.1-6Dan Walsh 3.3.1-5Dan Walsh 3.3.1-4Dan Walsh 3.3.1-2Dan Walsh 3.3.1-1Dan Walsh 3.3.0-2Dan Walsh 3.3.0-1Dan Walsh 3.2.9-2Dan Walsh 3.2.9-1Dan Walsh 3.2.8-2Dan Walsh 3.2.8-1Dan Walsh 3.2.7-6Dan Walsh 3.2.7-5Dan Walsh 3.2.7-3Dan Walsh 3.2.7-2Dan Walsh 3.2.7-1Dan Walsh 3.2.6-7Dan Walsh 3.2.6-6Dan Walsh 3.2.6-5Dan Walsh 3.2.6-4Dan Walsh 3.2.6-3Dan Walsh 3.2.6-2Dan Walsh 3.2.6-1Dan Walsh 3.2.5-25Dan Walsh 3.2.5-24Dan Walsh 3.2.5-22Dan Walsh 3.2.5-21Dan Walsh 3.2.5-20Dan Walsh 3.2.5-19Dan Walsh 3.2.5-18Dan Walsh 3.2.5-17Dan Walsh 3.2.5-16Dan Walsh 3.2.5-15Dan Walsh 3.2.5-14Dan Walsh 3.2.5-13Dan Walsh 3.2.5-12Dan Walsh 3.2.5-11Dan Walsh 3.2.5-10Dan Walsh 3.2.5-9Dan Walsh 3.2.5-8Dan Walsh 3.2.5-7Dan Walsh 3.2.5-6Dan Walsh 3.2.5-5Dan Walsh 3.2.5-4Dan Walsh 3.2.5-3Dan Walsh 3.2.5-2Dan Walsh 3.2.5-1Dan Walsh 3.2.4-5Dan Walsh 3.2.4-4Dan Walsh 3.2.4-3Dan Walsh 3.2.4-1Dan Walsh 3.2.4-1Dan Walsh 3.2.3-2Dan Walsh 3.2.3-1Dan Walsh 3.2.2-1Dan Walsh 3.2.1-3Dan Walsh 3.2.1-1Dan Walsh 3.1.2-2Dan Walsh 3.1.2-1Dan Walsh 3.1.1-1Dan Walsh 3.1.0-1Dan Walsh 3.0.8-30Dan Walsh 3.0.8-28Dan Walsh 3.0.8-27Dan Walsh 3.0.8-26Dan Walsh 3.0.8-25Dan Walsh 3.0.8-24Dan Walsh 3.0.8-23Dan Walsh 3.0.8-22Dan Walsh 3.0.8-21Dan Walsh 3.0.8-20Dan Walsh 3.0.8-19Dan Walsh 3.0.8-18Dan Walsh 3.0.8-17Dan Walsh 3.0.8-16Dan Walsh 3.0.8-15Dan Walsh 3.0.8-14Dan Walsh 3.0.8-13Dan Walsh 3.0.8-12Dan Walsh 3.0.8-11Dan Walsh 3.0.8-10Dan Walsh 3.0.8-9Dan Walsh 3.0.8-8Dan Walsh 3.0.8-7Dan Walsh 3.0.8-5Dan Walsh 3.0.8-4Dan Walsh 3.0.8-3Dan Walsh 3.0.8-2Dan Walsh 3.0.8-1Dan Walsh 3.0.7-10Dan Walsh 3.0.7-9Dan Walsh 3.0.7-8Dan Walsh 3.0.7-7Dan Walsh 3.0.7-6Dan Walsh 3.0.7-5Dan Walsh 3.0.7-4Dan Walsh 3.0.7-3Dan Walsh 3.0.7-2Dan Walsh 3.0.7-1Dan Walsh 3.0.6-3Dan Walsh 3.0.6-2Dan Walsh 3.0.6-1Dan Walsh 3.0.5-11Dan Walsh 3.0.5-10Dan Walsh 3.0.5-9Dan Walsh 3.0.5-8Dan Walsh 3.0.5-7Dan Walsh 3.0.5-6Dan Walsh 3.0.5-5Dan Walsh 3.0.5-4Dan Walsh 3.0.5-3Dan Walsh 3.0.5-2Dan Walsh 3.0.5-1Dan Walsh 3.0.4-6Dan Walsh 3.0.4-5Dan Walsh 3.0.4-4Dan Walsh 3.0.4-3Dan Walsh 3.0.4-2Dan Walsh 3.0.4-1Dan Walsh 3.0.3-6Dan Walsh 3.0.3-5Dan Walsh 3.0.3-4Dan Walsh 3.0.3-3Dan Walsh 3.0.3-2Dan Walsh 3.0.3-1Dan Walsh 3.0.2-9Dan Walsh 3.0.2-8Dan Walsh 3.0.2-7Dan Walsh 3.0.2-5Dan Walsh 3.0.2-4Dan Walsh 3.0.2-3Dan Walsh 3.0.2-2Dan Walsh 3.0.1-5Dan Walsh 3.0.1-4Dan Walsh 3.0.1-3Dan Walsh 3.0.1-2Dan Walsh 3.0.1-1Dan Walsh 2.6.5-3Dan Walsh 2.6.5-2Dan Walsh 2.6.4-7Dan Walsh 2.6.4-6Dan Walsh 2.6.4-5Dan Walsh 2.6.4-2Dan Walsh 2.6.4-1Dan Walsh 2.6.3-1Dan Walsh 2.6.2-1Dan Walsh 2.6.1-4Dan Walsh 2.6.1-2Dan Walsh 2.6.1-1Dan Walsh 2.5.12-12Dan Walsh 2.5.12-11Dan Walsh 2.5.12-10Dan Walsh 2.5.12-8Dan Walsh 2.5.12-5Dan Walsh 2.5.12-4Dan Walsh 2.5.12-3Dan Walsh 2.5.12-2Dan Walsh 2.5.12-1Dan Walsh 2.5.11-8Dan Walsh 2.5.11-7Dan Walsh 2.5.11-6Dan Walsh 2.5.11-5Dan Walsh 2.5.11-4Dan Walsh 2.5.11-3Dan Walsh 2.5.11-2Dan Walsh 2.5.11-1Dan Walsh 2.5.10-2Dan Walsh 2.5.10-1Dan Walsh 2.5.9-6Dan Walsh 2.5.9-5Dan Walsh 2.5.9-4Dan Walsh 2.5.9-3Dan Walsh 2.5.9-2Dan Walsh 2.5.8-8Dan Walsh 2.5.8-7Dan Walsh 2.5.8-6Dan Walsh 2.5.8-5Dan Walsh 2.5.8-4Dan Walsh 2.5.8-3Dan Walsh 2.5.8-2Dan Walsh 2.5.8-1Dan Walsh 2.5.7-1Dan Walsh 2.5.6-1Dan Walsh 2.5.5-2Dan Walsh 2.5.5-1Dan Walsh 2.5.4-2Dan Walsh 2.5.4-1Dan Walsh 2.5.3-3Dan Walsh 2.5.3-2Dan Walsh 2.5.3-1Dan Walsh 2.5.2-6Dan Walsh 2.5.2-5Dan Walsh 2.5.2-4Dan Walsh 2.5.2-3Dan Walsh 2.5.2-2Dan Walsh 2.5.2-1Dan Walsh 2.5.1-5Dan Walsh 2.5.1-4Dan Walsh 2.5.1-2Dan Walsh 2.5.1-1Dan Walsh 2.4.6-20Dan Walsh 2.4.6-19Dan Walsh 2.4.6-18Dan Walsh 2.4.6-17Dan Walsh 2.4.6-16Dan Walsh 2.4.6-15Dan Walsh 2.4.6-14Dan Walsh 2.4.6-13Dan Walsh 2.4.6-12Dan Walsh 2.4.6-11Dan Walsh 2.4.6-10Dan Walsh 2.4.6-9Dan Walsh 2.4.6-8Dan Walsh 2.4.6-7Dan Walsh 2.4.6-6Dan Walsh 2.4.6-5Dan Walsh 2.4.6-4Dan Walsh 2.4.6-3Dan Walsh 2.4.6-1Dan Walsh 2.4.5-4Dan Walsh 2.4.5-3Dan Walsh 2.4.5-2Dan Walsh 2.4.5-1Dan Walsh 2.4.4-2Dan Walsh 2.4.4-2Dan Walsh 2.4.4-1Dan Walsh 2.4.3-13Dan Walsh 2.4.3-12Dan Walsh 2.4.3-11Dan Walsh 2.4.3-10Dan Walsh 2.4.3-9Dan Walsh 2.4.3-8Dan Walsh 2.4.3-7Dan Walsh 2.4.3-6Dan Walsh 2.4.3-5Dan Walsh 2.4.3-4Dan Walsh 2.4.3-3Dan Walsh 2.4.3-2Dan Walsh 2.4.3-1Dan Walsh 2.4.2-8Dan Walsh 2.4.2-7James Antill 2.4.2-6Dan Walsh 2.4.2-5Dan Walsh 2.4.2-4Dan Walsh 2.4.2-3Dan Walsh 2.4.2-2Dan Walsh 2.4.2-1Dan Walsh 2.4.1-5Dan Walsh 2.4.1-4Dan Walsh 2.4.1-3Dan Walsh 2.4.1-2Dan Walsh 2.4-4Dan Walsh 2.4-3Dan Walsh 2.4-2Dan Walsh 2.4-1Dan Walsh 2.3.19-4Dan Walsh 2.3.19-3Dan Walsh 2.3.19-2Dan Walsh 2.3.19-1James Antill 2.3.18-10James Antill 2.3.18-9Dan Walsh 2.3.18-8Dan Walsh 2.3.18-7Dan Walsh 2.3.18-6Dan Walsh 2.3.18-5Dan Walsh 2.3.18-4Dan Walsh 2.3.18-3Dan Walsh 2.3.18-2Dan Walsh 2.3.18-1Dan Walsh 2.3.17-2Dan Walsh 2.3.17-1Dan Walsh 2.3.16-9Dan Walsh 2.3.16-8Dan Walsh 2.3.16-7Dan Walsh 2.3.16-6Dan Walsh 2.3.16-5Dan Walsh 2.3.16-4Dan Walsh 2.3.16-2Dan Walsh 2.3.16-1Dan Walsh 2.3.15-2Dan Walsh 2.3.15-1Dan Walsh 2.3.14-8Dan Walsh 2.3.14-7Dan Walsh 2.3.14-6Dan Walsh 2.3.14-4Dan Walsh 2.3.14-3Dan Walsh 2.3.14-2Dan Walsh 2.3.14-1Dan Walsh 2.3.13-6Dan Walsh 2.3.13-5Dan Walsh 2.3.13-4Dan Walsh 2.3.13-3Dan Walsh 2.3.13-2Dan Walsh 2.3.13-1Dan Walsh 2.3.12-2Dan Walsh 2.3.12-1Dan Walsh 2.3.11-1Dan Walsh 2.3.10-7Dan Walsh 2.3.10-6Dan Walsh 2.3.10-3Dan Walsh 2.3.10-1Dan Walsh 2.3.9-6Dan Walsh 2.3.9-5Dan Walsh 2.3.9-4Dan Walsh 2.3.9-3Dan Walsh 2.3.9-2Dan Walsh 2.3.9-1Dan Walsh 2.3.8-2Dan Walsh 2.3.7-1Dan Walsh 2.3.6-4Dan Walsh 2.3.6-3Dan Walsh 2.3.6-2Dan Walsh 2.3.6-1Dan Walsh 2.3.5-1Dan Walsh 2.3.4-1Dan Walsh 2.3.3-20Dan Walsh 2.3.3-19Dan Walsh 2.3.3-18Dan Walsh 2.3.3-17Dan Walsh 2.3.3-16Dan Walsh 2.3.3-15Dan Walsh 2.3.3-14Dan Walsh 2.3.3-13Dan Walsh 2.3.3-12Dan Walsh 2.3.3-11Dan Walsh 2.3.3-10Dan Walsh 2.3.3-9Dan Walsh 2.3.3-8Dan Walsh 2.3.3-7Dan Walsh 2.3.3-6Dan Walsh 2.3.3-5Dan Walsh 2.3.3-4Dan Walsh 2.3.3-3Dan Walsh 2.3.3-2Dan Walsh 2.3.3-1Dan Walsh 2.3.2-4Dan Walsh 2.3.2-3Dan Walsh 2.3.2-2Dan Walsh 2.3.2-1Dan Walsh 2.3.1-1Dan Walsh 2.2.49-1Dan Walsh 2.2.48-1Dan Walsh 2.2.47-5Dan Walsh 2.2.47-4Dan Walsh 2.2.47-3Dan Walsh 2.2.47-1Dan Walsh 2.2.46-2Dan Walsh 2.2.46-1Dan Walsh 2.2.45-3Dan Walsh 2.2.45-2Dan Walsh 2.2.45-1Dan Walsh 2.2.44-1Dan Walsh 2.2.43-4Dan Walsh 2.2.43-3Dan Walsh 2.2.43-2Dan Walsh 2.2.43-1Dan Walsh 2.2.42-4Dan Walsh 2.2.42-3Dan Walsh 2.2.42-2Dan Walsh 2.2.42-1Dan Walsh 2.2.41-1Dan Walsh 2.2.40-2Dan Walsh 2.2.40-1Dan Walsh 2.2.39-2Dan Walsh 2.2.39-1Dan Walsh 2.2.38-6Dan Walsh 2.2.38-5Dan Walsh 2.2.38-4Dan Walsh 2.2.38-3Dan Walsh 2.2.38-2Dan Walsh 2.2.38-1Dan Walsh 2.2.37-1Dan Walsh 2.2.36-2Dan Walsh 2.2.36-1James Antill 2.2.35-2Dan Walsh 2.2.35-1Dan Walsh 2.2.34-3Dan Walsh 2.2.34-2Dan Walsh 2.2.34-1Dan Walsh 2.2.33-1Dan Walsh 2.2.32-2Dan Walsh 2.2.32-1Dan Walsh 2.2.31-1Dan Walsh 2.2.30-2Dan Walsh 2.2.30-1Dan Walsh 2.2.29-6Russell Coker 2.2.29-5Dan Walsh 2.2.29-4Dan Walsh 2.2.29-3Dan Walsh 2.2.29-2Dan Walsh 2.2.29-1Dan Walsh 2.2.28-3Dan Walsh 2.2.28-2Dan Walsh 2.2.28-1Dan Walsh 2.2.27-1Dan Walsh 2.2.25-3Dan Walsh 2.2.25-2Dan Walsh 2.2.24-1Dan Walsh 2.2.23-19Dan Walsh 2.2.23-18Dan Walsh 2.2.23-17Karsten Hopp 2.2.23-16Dan Walsh 2.2.23-15Dan Walsh 2.2.23-14Dan Walsh 2.2.23-13Dan Walsh 2.2.23-12Jeremy Katz - 2.2.23-11Jeremy Katz - 2.2.23-10Dan Walsh 2.2.23-9Dan Walsh 2.2.23-8Dan Walsh 2.2.23-7Dan Walsh 2.2.23-5Dan Walsh 2.2.23-4Dan Walsh 2.2.23-3Dan Walsh 2.2.23-2Dan Walsh 2.2.23-1Dan Walsh 2.2.22-2Dan Walsh 2.2.22-1Dan Walsh 2.2.21-9Dan Walsh 2.2.21-8Dan Walsh 2.2.21-7Dan Walsh 2.2.21-6Dan Walsh 2.2.21-5Dan Walsh 2.2.21-4Dan Walsh 2.2.21-3Dan Walsh 2.2.21-2Dan Walsh 2.2.21-1Dan Walsh 2.2.20-1Dan Walsh 2.2.19-2Dan Walsh 2.2.19-1Dan Walsh 2.2.18-2Dan Walsh 2.2.18-1Dan Walsh 2.2.17-2Dan Walsh 2.2.16-1Dan Walsh 2.2.15-4Dan Walsh 2.2.15-3Dan Walsh 2.2.15-1Dan Walsh 2.2.14-2Dan Walsh 2.2.14-1Dan Walsh 2.2.13-1Dan Walsh 2.2.12-1Dan Walsh 2.2.11-2Dan Walsh 2.2.11-1Dan Walsh 2.2.10-1Dan Walsh 2.2.9-2Dan Walsh 2.2.9-1Dan Walsh 2.2.8-2Dan Walsh 2.2.7-1Dan Walsh 2.2.6-3Dan Walsh 2.2.6-2Dan Walsh 2.2.6-1Dan Walsh 2.2.5-1Dan Walsh 2.2.4-1Dan Walsh 2.2.3-1Dan Walsh 2.2.2-1Dan Walsh 2.2.1-1Dan Walsh 2.1.13-1Dan Walsh 2.1.12-3Dan Walsh 2.1.11-1Dan Walsh 2.1.10-1Jeremy Katz - 2.1.9-2Dan Walsh 2.1.9-1Dan Walsh 2.1.8-3Dan Walsh 2.1.8-2Dan Walsh 2.1.8-1Dan Walsh 2.1.7-4Dan Walsh 2.1.7-3Dan Walsh 2.1.7-2Dan Walsh 2.1.7-1Dan Walsh 2.1.6-24Dan Walsh 2.1.6-23Dan Walsh 2.1.6-22Dan Walsh 2.1.6-21Dan Walsh 2.1.6-20Dan Walsh 2.1.6-18Dan Walsh 2.1.6-17Dan Walsh 2.1.6-16Dan Walsh 2.1.6-15Dan Walsh 2.1.6-14Dan Walsh 2.1.6-13Dan Walsh 2.1.6-11Dan Walsh 2.1.6-10Dan Walsh 2.1.6-9Dan Walsh 2.1.6-8Dan Walsh 2.1.6-5Dan Walsh 2.1.6-4Dan Walsh 2.1.6-3Dan Walsh 2.1.6-2Dan Walsh 2.1.6-1Dan Walsh 2.1.4-2Dan Walsh 2.1.4-1Dan Walsh 2.1.3-1Jeremy Katz - 2.1.2-3Dan Walsh 2.1.2-2Dan Walsh 2.1.2-1Dan Walsh 2.1.1-3Dan Walsh 2.1.1-2Dan Walsh 2.1.1-1Dan Walsh 2.1.0-3Dan Walsh 2.1.0-2.Dan Walsh 2.1.0-1.Dan Walsh 2.0.11-2.Dan Walsh 2.0.11-1.Dan Walsh 2.0.9-1.Dan Walsh 2.0.8-1.Dan Walsh 2.0.7-3Dan Walsh 2.0.7-2Dan Walsh 2.0.6-2Dan Walsh 2.0.5-4Dan Walsh 2.0.5-1Dan Walsh 2.0.4-1Dan Walsh 2.0.2-2Dan Walsh 2.0.2-1Dan Walsh 2.0.1-2Dan Walsh 2.0.1-1- Allow snapperd_t domain to unmount fs_t filesystems Resolves: rhbz#1561424- Allow snapperd_t to set priority for kernel processes Resolves: rhbz#1558656- Backport several changes for snapperdfrom Fedora Rawhide Resolves: rhbz#1558656- Label /usr/libexec/dbus-1/dbus-daemon-launch-helper as dbusd_exec_t to have systemd dbus services running in the correct domain instead of unconfined_service_t if unconfined.pp module is enabled. Resolves: rhbz#1546721- Allow openvswitch_t stream connect svirt_t Resolves: rhbz#1540702- Allow openvswitch domain to manage svirt_tmp_t sock files Resolves: rhbz#1540702 - Fix broken systemd_tmpfiles_run() interface- Allow dirsrv_t domain to create tmp link files Resolves: rhbz#1536011 - Label /usr/sbin/ldap-agent as dirsrv_snmp_exec_t Resolves: rhbz#1428568 - Allow ipsec_mgmt_t execute ifconfig_exec_t binaries - Allow ipsec_mgmt_t nnp domain transition to ifconfig_t Resolves: rhbz#1539416- Allow svirt_domain to create socket files in /tmp with label svirt_tmp_t Resolves: rhbz#1540702 - Allow keepalived_t domain getattr proc filesystem Resolves: rhbz#1477542 - Rename svirt_sandbox_file_t to container_file_t and svirt_lxc_net_t to container_t Resolves: rhbz#1538544 - Allow ipsec_t nnp transistions to domains ipsec_mgmt_t and ifconfig_t Resolves: rhbz:#1539416 - Allow systemd_logind_t domain to bind on dhcpd_port_t,pki_ca_port_t,flash_port_t Resolves: rhbz#1479350- Allow openvswitch_t domain to read cpuid, write to sysfs files and creating openvswitch_tmp_t sockets Resolves: rhbz#1535196 - Add new interface ppp_filetrans_named_content() Resolves: rhbz#1530601 - Allow keepalived_t read sysctl_net_t files Resolves: rhbz#1477542 - Allow puppetmaster_t domtran to puppetagent_t Resolves: rhbz#1376893 - Allow kdump_t domain to read kernel ring buffer Resolves: rhbz#1540004 - Allow ipsec_t domain to exec ifconfig_exec_t binaries. Resolves: rhbz#1539416 - Allow unconfined_domain_typ to create pppd_lock_t directory in /var/lock Resolves: rhbz#1530601 - Allow updpwd_t domain to create files in /etc with shadow_t label Resolves: rhbz#1412838 - Allow iptables sysctl load list support with SELinux enforced Resolves: rhbz#1535572- Allow virt_domains to acces infiniband pkeys. Resolves: rhbz#1533183 - Label /usr/libexec/ipsec/addconn as ipsec_exec_t to run this script as ipsec_t instead of init_t Resolves: rhbz#1535133 - Allow audisp_remote_t domain write to files on all levels Resolves: rhbz#1534924- Allow vmtools_t domain creating vmware_log_t files Resolves: rhbz#1507048 - Allow openvswitch_t domain to acces infiniband devices Resolves: rhbz#1532705- Allow chronyc_t domain to manage chronyd_keys_t files. Resolves: rhbz#1530525 - Make virtlog_t domain system dbus client Resolves: rhbz#1481109 - Update openvswitch SELinux module Resolves: rhbz#1482682 - Allow virtd_t to create also sock_files with label virt_var_run_t Resolves: rhbz#1484075- Allow domains that manage logfiles to man logdirs Resolves: rhbz#1523811- Label /dev/drm_dp_aux* as xserver_misc_device_t Resolves: rhbz#1520897 - Allow sysadm_t to run puppet_exec_t binaries as puppet_t Resolves: rhbz#1255745- Allow tomcat_t to manage pki_tomcat pid files Resolves: rhbz#1478371 - networkmanager: allow talking to openvswitch Resolves: rhbz#1517247 - Allow networkmanager_t and opensm_t to manage subned endports for IPoIB VLANs Resolves: rhbz#1517895 - Allow domains networkmanager_t and opensm_t to control IPoIB VLANs Resolves: rhbz#1517744 - Fix typo in guest interface file Resolves: rhbz#1468254 - Allow isnsd_t domain to accept tcp connections. Resolves: rhbz#1390208- Allow getty to use usbttys Resolves: rhbz#1514235- Allow ldap_t domain to manage also slapd_tmp_t lnk files Resolves: rhbz#1510883 - Allow cluster_t domain creating bundles directory with label var_log_t instead of cluster_var_log_t Resolves: rhbz:#1508360 - Add dac_read_search and dac_override capabilities to ganesha Resolves: rhbz#1483451- Add dependency for policycoreutils-2.5.18 becuase of new cgroup_seclabel policy capability Resolves: rhbz#1510145- Allow jabber domains to connect to postgresql ports Resolves: rhbz#1438489 - Dontaudit accountsd domain creating dirs in /root Resolves: rhbz#1456760 - Dontaudit slapd_t to block suspend system Resolves: rhbz: #1479759 - Allow spamc_t to stream connect to cyrus. Resolves: rhbz#1382955 - allow imapd to read /proc/net/unix file Resolves: rhbz#1393030 - Allow passenger to connect to mysqld_port_t Resolves: rhbz#1433464- Allow chronyc_t domain to use user_ptys Resolves: rhbz#1470150 - allow ptp4l to read /proc/net/unix file - Allow conmand to use usb ttys. Resolves: rhbz#1505121 - Label all files /var/log/opensm.* as opensm_log_t because opensm creating new log files with name opensm-subnet.lst Resolves: rhbz#1505845 - Allow chronyd daemon to execute chronyc. Resolves: rhbz#1508486 - Allow firewalld exec ldconfig. Resolves: rhbz#1375576 - Allow mozilla_plugin_t domain to dbus chat with devicekit Resolves: rhbz#1460477 - Dontaudit leaked logwatch pipes Resolves: rhbz#1450119 - Label /usr/bin/VGAuthService as vmtools_exec_t to confine this daemon. Resolves: rhbz#1507048 - Allow httpd_t domain to execute hugetlbfs_t files Resolves: rhbz#1507682 - Allow nfsd_t domain to read configfs_t files/dirs Resolves: rhbz#1439442 - Hide all allow rules with ptrace inside deny_ptrace boolean Resolves: rhbz#1421075 - Allow tgtd_t domain to read generic certs Resolves: rhbz#1438532 - Allow ptp4l to send msgs via dgram socket to unprivileged user domains Resolves: rhbz#1429853 - Allow dirsrv_snmp_t to use inherited user ptys and read system state Resolves: rhbz#1428568 - Allow glusterd_t domain to create own tmpfs dirs/files Resolves: rhbz#1411310 - Allow keepalived stream connect to snmp Resolves: rhbz#1401556 - After fix in kernel where LSM hooks for dac_override and dac_search_read capability was swaped we need to fix it also in policy Resolves: rhbz#1507089- Allow pegasus_openlmi_services_t to read generic certs Resolves: rhbz#1462292 - Allow ganesha_t domain to read random device Resolves: rhbz#1494382 - Allow zabbix_t domain to change its resource limits Resolves: rhbz:#1504074 - Add new boolean nagios_use_nfs Resolves: rhbz#1504826 - Allow system_mail_t to search network sysctls Resolves: rhbz#1505779 - Add samba_manage_var_dirs() interface - Fix typo bug in virt filecontext file - Allow nagios_script_t to read nagios_spool_t files Resolves: rhbz#1426824 - Allow samba to manage var dirs/files Resolves: rhbz#1415088 - Allow sbd_t to create own sbd_tmpfs_t dirs/files Resolves: rhbz#1380795 - Allow firewalld and networkmanager to chat with hypervkvp via dbus Resolves: rhbz#1377276 - Allow dmidecode to read rhsmcert_log_t files Resolves: rhbz#1300799 - Allow mail system to connect mariadb sockets. Resolves: rhbz#1368642 - Allow logrotate_t to change passwd and reloead services Resolves: rhbz#1450789 - Allow mail system to connect mariadb sockets. Resolves: rhbz#1368642 - Allow logrotate_t to change passwd and reloead services Resolves: rhbz#1450789 - Allow pegasus_openlmi_services_t to read generic certs Resolves: rhbz#1462292 - Allow ganesha_t domain to read random device Resolves: rhbz#1494382 - Allow zabbix_t domain to change its resource limits Resolves: rhbz:#1504074 - Add new boolean nagios_use_nfs Resolves: rhbz#1504826 - Allow system_mail_t to search network sysctls Resolves: rhbz#1505779 - Add samba_manage_var_dirs() interface - Fix typo bug in virt filecontext file - Allow nagios_script_t to read nagios_spool_t files Resolves: rhbz#1426824 - Allow samba to manage var dirs/files Resolves: rhbz#1415088 - Allow sbd_t to create own sbd_tmpfs_t dirs/files Resolves: rhbz#1380795 - Allow firewalld and networkmanager to chat with hypervkvp via dbus Resolves: rhbz#1377276 - Allow dmidecode to read rhsmcert_log_t files Resolves: rhbz#1300799 - Allow mail system to connect mariadb sockets. Resolves: rhbz#1368642 - Allow logrotate_t to change passwd and reloead services Resolves: rhbz#1450789 - Allow chronyd_t do request kernel module and block_suspend capability Resolves: rhbz#1350765 - Allow system_cronjob_t to create /var/lib/letsencrypt dir with right label Resolves: rhbz#1447278 - Allow httpd_t also read httpd_user_content_type dirs when httpd_enable_homedirs is enables Resolves: rhbz#1491994 - Allow svnserve to use kerberos Resolves: rhbz#1475271 - Allow conman to use ptmx. Add conman_use_nfs boolean Resolves: rhbz#1377915 - Add nnp transition for services using: NoNewPrivileges systemd security feature Resolves: rhbz#1311430 - Add SELinux support for chronyc Resolves: rhbz#1470150 - Add dac_read_search capability to openvswitch_t domain Resolves: rhbz#1501336 - Allow svnserve to manage own svnserve_log_t files/dirs Resolves: rhbz#1480741 - Allow keepalived_t to search network sysctls Resolves: rhbz#1477542 - Allow puppetagent_t domain dbus chat with rhsmcertd_t domain Resolves: rhbz#1446777 - Add dccp_socket into socker_class_set subset Resolves: rhbz#1459941 - Allow iptables_t to run setfiles to restore context on system Resolves: rhbz#1489118 - Label 20514 tcp/udp ports as syslogd_port_t Label 10514 tcp/udp portas as syslog_tls_port_t Resolves: rhbz:#1411400 - Make nnp transition Active Resolves: rhbz#1480518 - Label tcp 51954 as isns_port_t Resolves: rhbz#1390208 - Add dac_read_search capability chkpwd_t Resolves: rhbz#1376991 - Add support for running certbot(letsencrypt) in crontab Resolves: rhbz#1447278 - Add init_nnp_daemon_domain interface - Allow xdm_t to gettattr /dev/loop-control device Resolves: rhbz#1462925 - Allow nnp trasintion for unconfined_service_t Resolves: rhbz#1311430 - Allow unpriv user domains and unconfined_service_t to use chronyc Resolves: rhbz#1470150 - Allow iptables to exec plymouth. Resolves: rhbz#1480374 - Fix typo in fs_unmount_tracefs interface. Resolves: rhbz#1371057 - Label postgresql-check-db-dir as postgresql_exec_t Resolves: rhbz#1490956- We should not ship selinux-policy with permissivedomains enabled. Resolves: rhbz#1494172 - Fix order of installing selinux-policy-sandbox, because of depedencied in sandbox module, selinux-policy-targeted needs to be installed before selinux-policy-sandbox Resolves: rhbz#1492606- Allow tomcat to setsched Resolves: rhbz#1492730 - Fix rules blocking ipa-server upgrade process Resolves: rhbz#1478371 - Add new boolean tomcat_read_rpm_db() Resolves: rhbz#1477887 - Allow tomcat to connect on mysqld tcp ports - Add ctdbd_t domain sys_source capability and allow setrlimit Resolves: rhbz#1491235 - Fix keepalived SELinux module - Allow automount domain to manage mount pid files Resolves: rhbz#1482381 - Allow stunnel_t domain setsched Resolves: rhbz#1479383 - Add keepalived domain setpgid capability Resolves: rhbz#1486638 - Allow tomcat domain to connect to mssql port Resolves: rhbz#1484572 - Remove snapperd_t from unconfined domaines Resolves: rhbz#1365555 - Fix typo bug in apache module Resolves: rhbz#1397311 - Dontaudit that system_mail_t is trying to read /root/ files Resolves: rhbz#1147945 - Make working webadm_t userdomain Resolves: rhbz#1323792 - Allow redis domain to execute shell scripts. Resolves: rhbz#1421326 - Allow system_cronjob_t to create redhat-access-insights.log with var_log_t Resolves: rhbz#1473303 - Add couple capabilities to keepalived domain and allow get attributes of all domains Resolves: rhbz#1429327 - Allow dmidecode read rhsmcertd lock files Resolves: rhbz#1300799 - Add new interface rhsmcertd_rw_lock_files() Resolves: rhbz#1300799 - Label all plymouthd archives as plymouthd_var_log_t Resolves: rhbz#1478323 - Allow cloud_init_t to dbus chat with systemd_timedated_t Resolves: rhbz#1440730 - Allow logrotate_t to write to kmsg Resolves: rhbz#1397744 - Add capability kill to rhsmcertd_t Resolves: rhbz#1398338 - Disable mysqld_safe_t secure mode environment cleansing. Resolves: rhbz#1464063 - Allow winbind to manage smbd_tmp_t files Resolves: rhbz#1475566 - Dontaudit that system_mail_t is trying to read /root/ files Resolves: rhbz#1147945 - Make working webadm_t userdomain Resolves: rhbz#1323792 - Allow redis domain to execute shell scripts. Resolves: rhbz#1421326 - Allow system_cronjob_t to create redhat-access-insights.log with var_log_t Resolves: rhbz#1473303 - Add couple capabilities to keepalived domain and allow get attributes of all domains Resolves: rhbz#1429327 - Allow dmidecode read rhsmcertd lock files Resolves: rhbz#1300799 - Add new interface rhsmcertd_rw_lock_files() Resolves: rhbz#1300799 - Label all plymouthd archives as plymouthd_var_log_t Resolves: rhbz#1478323 - Allow cloud_init_t to dbus chat with systemd_timedated_t Resolves: rhbz#1440730 - Allow logrotate_t to write to kmsg Resolves: rhbz#1397744 - Add capability kill to rhsmcertd_t Resolves: rhbz#1398338 - Disable mysqld_safe_t secure mode environment cleansing. Resolves: rhbz#1464063 - Allow winbind to manage smbd_tmp_t files Resolves: rhbz#1475566 - Add interface systemd_tmpfiles_run - End of file cannot be in comment - Allow systemd-logind to use ypbind Resolves: rhbz#1479350 - Add creating opasswd file with shadow_t SELinux label in auth_manage_shadow() interface Resolves: rhbz#1412838 - Allow sysctl_irq_t assciate with proc_t Resolves: rhbz#1485909 - Enable cgourp sec labeling Resolves: rhbz#1485947 - Add cgroup_seclabel policycap. Resolves: rhbz#1485947 - Allow sshd_t domain to send signull to xdm_t processes Resolves: rhbz#1448959 - Allow updpwd_t domain auth file name trans Resolves: rhbz#1412838 - Allow sysadm user to run systemd-tmpfiles Resolves: rbhz#1325364 - Add support labeling for vmci and vsock device Resolves: rhbz#1451358 - Add userdom_dontaudit_manage_admin_files() interface Resolves: rhbz#1323792 - Allow iptables_t domain to read files with modules_conf_t label Resolves: rhbz#1373220 - init: Add NoNewPerms support for systemd. Resolves: rhbz#1480518 - Add nnp_nosuid_transition policycap and related class/perm definitions. Resolves: rhbz#1480518 - refpolicy: Infiniband pkeys and endports Resolves: rhbz#1464484- Allow certmonger using systemctl on pki_tomcat unit files Resolves: rhbz#1481388- Allow targetd_t to create own tmp files. - Dontaudit targetd_t to exec rpm binary file. Resolves: rhbz#1373860 Resolves: rhbz#1424621- Add few rules to make working targetd daemon with SELinux Resolves: rhbz#1373860 - Allow ipmievd_t domain to load kernel modules Resolves: rhbz#1441081 - Allow logrotate to reload transient systemd unit Resolves: rhbz#1440515 - Add certwatch_t domain dac_override and dac_read_search capabilities Resolves: rhbz#1422000 - Allow postgrey to execute bin_t files and add postgrey into nsswitch_domain Resolves: rhbz#1412072 - Allow nscd_t domain to search network sysctls Resolves: rhbz#1432361 - Allow iscsid_t domain to read mount pid files Resolves: rhbz#1482097 - Allow ksmtuned_t domain manage sysfs_t files/dirs Resolves: rhbz#1413865 - Allow keepalived_t domain domtrans into iptables_t Resolves: rhbz#1477719 - Allow rshd_t domain reads net sysctls Resolves: rhbz#1477908 - Add interface seutil_dontaudit_read_module_store() - Update interface lvm_rw_pipes() by adding also open permission - Label /dev/clp device as vfio_device_t Resolves: rhbz#1477624 - Allow ifconfig_t domain unmount fs_t Resolves: rhbz#1477445 - Label /dev/gpiochip* devices as gpio_device_t Resolves: rhbz#1477618 - Add interface dev_manage_sysfs() Resolves: rhbz#1474989- Label /usr/libexec/sudo/sesh as shell_exec_t Resolves: rhbz#1480791- Allow tomcat_t domain couple capabilities to make working tomcat-jsvc Resolves: rhbz#1470735- Allow llpdad send dgram to libvirt Resolves: rhbz#1472722- Add new boolean gluster_use_execmem Resolves: rhbz#1469027 - Allow cluster_t and glusterd_t domains to dbus chat with ganesha service Resolves: rhbz#1468581- Dontaudit staff_t user read admin_home_t files. Resolves: rhbz#1290633- Allow couple rules needed to start targetd daemon with SELinux in enforcing mode Resolves: rhbz#1424621 - Add interface lvm_manage_metadata Resolves: rhbz#1424621- Allow sssd_t to read realmd lib files. Resolves: rhbz#1436689 - Add permission open to files_read_inherited_tmp_files() interface Resolves: rhbz#1290633 Resolves: rhbz#1457106- Allow unconfined_t user all user namespace capabilties. Resolves: rhbz#1461488- Allow httpd_t to read realmd_var_lib_t files Resolves: rhbz#1436689- Allow named_t to bind on udp 4321 port Resolves: rhbz#1312972 - Allow systemd-sysctl cap. sys_ptrace Resolves: rhbz#1458999- Allow pki_tomcat_t execute ldconfig. Resolves: rhbz#1436689- Allow iscsi domain load kernel module. Resolves: rhbz#1457874 - Allow keepalived domain connect to squid tcp port Resolves: rhbz#1457455 - Allow krb5kdc_t domain read realmd lib files. Resolves: rhbz#1436689 - xdm_t should view kernel keys Resolves: rhbz#1432645- Allow tomcat to connect on all unreserved ports - Allow ganesha to connect to all rpc ports Resolves: rhbz#1448090 - Update ganesha with another fixes. Resolves: rhbz#1448090 - Update rpc_read_nfs_state_data() interface to allow read also lnk_files. Resolves: rhbz#1448090 - virt_use_glusterd boolean should be in optional block Update ganesha module to allow create tmp files Resolves: rhbz#1448090 - Hide broken symptoms when machine is configured with network bounding.- Add new boolean virt_use_glusterd Resolves: rhbz#1455994 - Add capability sys_boot for sbd_t domain - Allow sbd_t domain to create rpc sysctls. Resolves: rhbz#1455631 - Allow ganesha_t domain to manage glusterd_var_run_t pid files. Resolves: rhbz#1448090- Create new interface: glusterd_read_lib_files() - Allow ganesha read glusterd lib files. - Allow ganesha read network sysctls Resolves: rhbz#1448090- Add few allow rules to ganesha module Resolves: rhbz#1448090 - Allow condor_master_t to read sysctls. Resolves: rhbz#1277506 - Add dac_override cap to ctdbd_t domain Resolves: rhbz#1435708 - Label 8750 tcp/udp port as dey_keyneg_port_t Resolves: rhbz#1448090- Add ganesha_use_fusefs boolean. Resolves: rhbz#1448090- Allow httpd_t reading kerberos kdc config files Resolves: rhbz#1452215 - Allow tomcat_t domain connect to ibm_dt_2 tcp port. Resolves: rhbz#1447436 - Allow stream connect to initrc_t domains Resolves: rhbz#1447436 - Allow dnsmasq_t domain to read systemd-resolved pid files. Resolves: rhbz#1453114 - Allow tomcat domain name_bind on tcp bctp_port_t Resolves: rhbz#1451757 - Allow smbd_t domain generate debugging files under /var/run/gluster. These files are created through the libgfapi.so library that provides integration of a GlusterFS client in the Samba (vfs_glusterfs) process. Resolves: rhbz#1447669 - Allow condor_master_t write to sysctl_net_t Resolves: rhbz#1277506 - Allow nagios check disk plugin read /sys/kernel/config/ Resolves: rhbz#1277718 - Allow pcp_pmie_t domain execute systemctl binary Resolves: rhbz#1271998 - Allow nagios to connect to stream sockets. Allow nagios start httpd via systemctl Resolves: rhbz#1247635 - Label tcp/udp port 1792 as ibm_dt_2_port_t Resolves: rhbz#1447436 - Add interface fs_read_configfs_dirs() - Add interface fs_read_configfs_files() - Fix systemd_resolved_read_pid interface - Add interface systemd_resolved_read_pid() Resolves: rhbz#1453114 - Allow sshd_net_t domain read/write into crypto devices Resolves: rhbz#1452759 - Label 8999 tcp/udp as bctp_port_t Resolves: rhbz#1451757- nmbd_t needs net_admin capability like smbd Resolves: rhbz#1431859 - Dontaudit net_admin capability for domains postfix_master_t and postfix_qmgr_t Resolves: rhbz#1431859 - Allow rngd domain read sysfs_t Resolves: rhbz#1451735 - Add interface pki_manage_common_files() Resolves: rhbz#1447436 - Allow tomcat_t domain to manage pki_common_t files and dirs Resolves: rhbz#1447436 - Use stricter fc rules for sssd sockets in /var/run Resolves: rhbz#1448060 - Allow certmonger reads httpd_config_t files Resolves: rhbz#1436689 - Allow keepalived_t domain creating netlink_netfilter_socket. Resolves: rhbz#1451684 - Allow tomcat domain read rpm_var_lib_t files Allow tomcat domain exec rpm_exec_t files Allow tomcat domain name connect on oracle_port_t Allow tomcat domain read cobbler_var_lib_t files. Resolves: rhbz#1451318 - Make able deply overcloud via neutron_t to label nsfs as fs_t Resolves: rhbz#1373321- Allow tomcat domain read rpm_var_lib_t files Allow tomcat domain exec rpm_exec_t files Allow tomcat domain name connect on oracle_port_t Allow tomcat domain read cobbler_var_lib_t files. Resolves: rhbz#1451318 - Allow sssd_t domain creating sock files labeled as sssd_var_run_t in /var/run/ Resolves: rhbz#1448056 Resolves: rhbz#1448060 - Allow tomcat_domain connect to * postgresql_port_t * amqp_port_t Allow tomcat_domain read network sysctls Resolves: rhbz#1450819 - Make able deply overcloud via neutron_t to label nsfs as fs_t Resolves: rhbz#1373321 - Allow netutils setpcap capability Resolves:1444438- Update targetd policy to accommodate changes in the service Resolves: rhbz#1424621 - Allow tomcat_domain connect to * postgresql_port_t * amqp_port_t Allow tomcat_domain read network sysctls Resolves: rhbz#1450819 - Update virt_rw_stream_sockets_svirt() interface to allow confined users set socket options. Resolves: rhbz#1415841 - Allow radius domain stream connec to postgresql Resolves: rhbz#1446145 - Allow virt_domain to read raw fixed_disk_device_t to make working blockcommit Resolves: rhbz#1449977 - Allow glusterd_t domain start ganesha service Resolves: rhbz#1448090 - Made few cosmetic changes in sssd SELinux module Resolves: rhbz#1448060 - sssd-kcm should not run as unconfined_service_t BZ(1447411) Resolves: rhbz#1448060 - Add sssd_secrets labeling Also add named_filetrans interface to make sure all labels are correct Resolves: rhbz#1448056 - Allow keepalived_t domain read usermodehelper_t Resolves: rhbz#1449769 - Allow tomcat_t domain read pki_common_t files Resolves: rhbz#1447436 - Add interface pki_read_common_files() Resolves: rhbz#1447436- Allow hypervkvp_t domain execute hostname Resolves: rhbz#1449064 - Dontaudit sssd_selinux_manager_t use of net_admin capability Resolves: rhbz#1444955 - Allow tomcat_t stream connect to pki_common_t Resolves: rhbz#1447436 - Dontaudit xguest_t's attempts to listen to its tcp_socket - Allow sssd_selinux_manager_t to ioctl init_t sockets Resolves: rhbz#1436689 - Allow _su_t to create netlink_selinux_socket Resolves rhbz#1146987 - Allow unconfined_t to module_load any file Resolves rhbz#1442994- Improve ipa_cert_filetrans_named_content() interface to also allow caller domain manage ipa_cert_t type. Resolves: rhbz#1436689- Allow pki_tomcat_t domain read /etc/passwd. Resolves: rhbz#1436689 - Allow tomcat_t domain read ipa_tmp_t files Resolves: rhbz#1436689 - Label new path for ipa-otpd Resolves: rhbz#1446353 - Allow radiusd_t domain stream connect to postgresql_t Resolves: rhbz#1446145 - Allow rhsmcertd_t to execute hostname_exec_t binaries. Resolves: rhbz#1445494 - Allow virtlogd to append nfs_t files when virt_use_nfs=1 Resolves: rhbz#1402561- Update tomcat policy to adjust for removing unconfined_domain attr. Resolves: rhbz#1432083 - Allow httpd_t domain read also httpd_user_content_type lnk_files. Resolves: rhbz#1383621 - Allow httpd_t domain create /etc/httpd/alias/ipaseesion.key with label ipa_cert_t Resolves: rhbz#1436689 - Dontaudit _gkeyringd_t stream connect to system_dbusd_t Resolves: rhbz#1052880 - Label /var/www/html/nextcloud/data as httpd_sys_rw_content_t Resolves: rhbz#1425530 - Add interface ipa_filetrans_named_content() Resolves: rhbz#1432115 - Allow tomcat use nsswitch Resolves: rhbz#1436689 - Allow certmonger_t start/status generic services Resolves: rhbz#1436689 - Allow dirsrv read cgroup files. Resolves: rhbz#1436689 - Allow ganesha_t domain read/write infiniband devices. Resolves: rhbz#1383784 - Allow sendmail_t domain sysctl_net_t files Resolves: rhbz#1369376 - Allow targetd_t domain read network state and getattr on loop_control_device_t Resolves: rhbz#1373860 - Allow condor_schedd_t domain send mails. Resolves: rhbz#1277506 - Alow certmonger to create own systemd unit files. Resolves: rhbz#1436689 - Allow staff to systemctl virt server when staff_use_svirt=1 Resolves: rhbz#1415841 - Allow unconfined_t create /tmp/ca.p12 file with ipa_tmp_t context Resolves: rhbz#1432115 - Label /sysroot/ostree/deploy/rhel-atomic-host/* as root_t Resolves: rhbz#1428112- Alow certmonger to create own systemd unit files. Resolves: rhbz#1436689- Hide broken symptoms when using kernel 3.10.0-514+ with network bonding. Postfix_picup_t domain requires NET_ADMIN capability which is not really needed. Resolves: rhbz#1431859 - Fix policy to reflect all changes in new IPA release Resolves: rhbz#1432115 Resolves: rhbz#1436689- Allow sbd_t to read/write fixed disk devices Resolves: rhbz#1440165 - Add sys_ptrace capability to radiusd_t domain Resolves: rhbz#1426641 - Allow cockpit_session_t domain connects to ssh tcp ports. Resolves: rhbz#1413509- Update tomcat policy to make working ipa install process Resolves: rhbz#1436689- Allow pcp_pmcd_t net_admin capability. - Allow pcp_pmcd_t read net sysctls - Allow system_cronjob_t create /var/run/pcp with pcp_var_run_t Resolves: rhbz#1336211- Fix all AVC denials during pkispawn of CA Resolves: rhbz#1436383 - Update pki interfaces and tomcat module Resolves: rhbz#1436689- Update pki interfaces and tomcat module Resolves: rhbz#1436689- Dontaudit firewalld wants write to /root Resolves: rhbz#1438708 - Dontaudit firewalld to create dirs in /root/ Resolves: rhbz#1438708 - Allow sendmail to search network sysctls Resolves: rhbz#1369376 - Add interface gssd_noatsecure() Resolves: rhbz#1438036 - Add interface gssproxy_noatsecure() Resolves: rhbz#1438036 - Dontaudit pcp_pmlogger_t search for xserver logs. Allow pcp_pmlogger_t to send signals to unconfined doamins Allow pcp_pmlogger_t to send logs to journals Resolves: rhbz#1379371 - Allow chronyd_t net_admin capability to allow support HW timestamping. Resolves: rhbz#1416015 - Update tomcat policy Resolves: rhbz#1436689 Resolves: rhbz#1436383 - Allow certmonger to start haproxy service Resolves: rhbz#1349394 - Allow init noatsecure for gssd and gssproxy Resolves: rhbz#1438036- geoclue wants to dbus chat with avahi Resolves: rhbz#1434286 - Allow iptables get list of kernel modules Resolves: rhbz#1367520 - Allow unconfined_domain_type to enable/disable transient unit Resolves: rhbz#1337041 - Add interfaces init_enable_transient_unit() and init_disable_transient_unit - Revert "Allow sshd setcap capability. This is needed due to latest changes in sshd" Resolves: rhbz#1435264 - Label sysroot dir under ostree as root_t Resolves: rhbz#1428112- Remove ganesha_t domain from permissive domains. Resolves: rhbz#1436988- Allow named_t domain bind on several udp ports Resolves: rhbz#1312972 - Update nscd_use() interface Resolves: rhbz#1281716 - Allow radius_t domain ptrace Resolves: rhbz#1426641 - Update nagios to allos exec systemctl Resolves: rhbz#1247635 - Update pcp SELinux module to reflect all pcp changes Resolves: rhbz#1271998 - Label /var/lib/ssl_db as squid_cache_t Label /etc/squid/ssl_db as squid_cache_t Resolves: rhbz#1325527 - Allow pcp_pmcd_t domain search for network sysctl Allow pcp_pmcd_t domain sys_ptrace capability Resolves: rhbz#1336211- Allow drbd load modules Resolves: rhbz#1134883 - Revert "Add sys_module capability for drbd Resolves: rhbz#1134883" - Allow stapserver list kernel modules Resolves: rhbz#1325976 - Update targetd policy Resolves: rhbz#1373860 - Add sys_admin capability to amanda Resolves: rhbz#1371561 - Allow hypervvssd_t to read all dirs. Resolves: rhbz#1331309 - Label /run/haproxy.sock socket as haproxy_var_run_t Resolves: rhbz#1386233 - Allow oddjob_mkhomedir_t to mamange autofs_t dirs. Resolves: rhbz#1408819 - Allow tomcat to connect on http_cache_port_t Resolves: rhbz#1432083 - Allow geoclue to send msgs to syslog. Resolves: rhbz#1434286 - Allow condor_master_t domain capability chown. Resolves: rhbz#1277506 - Update mta_filetrans_named_content() interface to allow calling domain create files labeled as etc_aliases_t in dir labeled as etc_mail_t. Resolves: rhbz#1167468 - Allow nova domain search for httpd configuration. Resolves: rhbz#1190761 - Add sys_module capability for drbd Resolves: rhbz#1134883 - Allow user_u users stream connect to dirsrv, Allow sysadm_u and staff_u users to manage dirsrv files Resolves: rhbz#1286474 - Allow systemd_networkd_t communicate with systemd_networkd_t via dbus Resolves: rhbz#1278010- Add haproxy_t domain fowner capability Resolves: rhbz#1386233 - Allow domain transition from ntpd_t to hwclock_t domains Resolves: rhbz#1375624 - Allow cockpit_session_t setrlimit and sys_resource Resolves: rhbz#1402316 - Dontaudit svirt_t read state of libvirtd domain Resolves: rhbz#1426106 - Update httpd and gssproxy modules to reflects latest changes in freeipa Resolves: rhbz#1432115 - Allow iptables read modules_conf_t Resolves: rhbz#1367520- Remove tomcat_t domain from unconfined domains Resolves: rhbz#1432083 - Create new boolean: sanlock_enable_home_dirs() Resolves: rhbz#1432783 - Allow mdadm_t domain to read/write nvme_device_t Resolves: rhbz#1431617 - Remove httpd_user_*_content_t domains from user_home_type attribute. This tighten httpd policy and acces to user data will be more strinct, and also fix mutual influente between httpd_enable_homedirs and httpd_read_user_content Resolves: rhbz#1383621 - Dontaudit domain to create any file in /proc. This is kernel bug. Resolves: rhbz#1412679 - Add interface dev_rw_nvme Resolves: rhbz#1431617- Allow gssproxy to get attributes on all filesystem object types. Resolves: rhbz#1430295 - Allow ganesha to chat with unconfined domains via dbus Resolves: rhbz#1426554 - add the policy required for nextcloud Resolves: rhbz#1425530 - Add nmbd_t capability2 block_suspend Resolves: rhbz#1425357 - Label /var/run/chrony as chronyd_var_run_t Resolves: rhbz#1416015 - Add domain transition from sosreport_t to iptables_t Resolves: rhbz#1359789 - Fix path to /usr/lib64/erlang/erts-5.10.4/bin/epmd Resolves: rhbz:#1332803- Update rpm macros Resolves: rhbz#1380854- Add handling booleans via selinux-policy macros in custom policy spec files. Resolves: rhbz#1380854- Allow openvswitch to load kernel modules Resolves: rhbz#1405479- Allow openvswitch read script state. Resolves: rhbz#1405479- Update ganesha policy Resolves: rhbz#1426554 Resolves: rhbz#1383784 - Allow chronyd to read adjtime Resolves: rhbz#1416015 - Fixes for chrony version 2.2 Resolves: rhbz#1416015 - Add interface virt_rw_stream_sockets_svirt() Resolves: rhbz#1415841 - Label /dev/ss0 as gpfs_device_t Resolves: rhbz#1383784 - Allow staff to rw svirt unix stream sockets. Resolves: rhbz#1415841 - Label /rhev/data-center/mnt as mnt_t Resolves: rhbz#1408275 - Associate sysctl_rpc_t with proc filesystems Resolves: rhbz#1350927 - Add new boolean: domain_can_write_kmsg Resolves: rhbz#1415715- Allow rhsmcertd_t dbus chat with system_cronjob_t Resolves: rhbz#1405341 - Allow openvswitch exec hostname and readinitrc_t files Resolves: rhbz#1405479 - Improve SELinux context for mysql_db_t objects. Resolves: rhbz#1391521 - Allow postfix_postdrop to communicate with postfix_master via pipe. Resolves: rhbz#1379736 - Add radius_use_jit boolean Resolves: rhbz#1426205 - Label /var/lock/subsys/iptables as iptables_lock_t Resolves: rhbz#1405441 - Label /usr/lib64/erlang/erts-5.10.4/bin/epmd as lib_t Resolves: rhbz#1332803 - Allow can_load_kernmodule to load kernel modules. Resolves: rhbz#1423427 Resolves: rhbz#1424621- Allow nfsd_t domain to create sysctls_rpc_t files Resolves: rhbz#1405304 - Allow openvswitch to create netlink generic sockets. Resolves: rhbz#1397974 - Create kernel_create_rpc_sysctls() interface Resolves: rhbz#1405304- Allow nfsd_t domain rw sysctl_rpc_t dirs Resolves: rhbz#1405304 - Allow cgdcbxd_t to manage cgroup files. Resolves: rhbz#1358493 - Allow cmirrord_t domain to create netlink_connector sockets Resolves: rhbz#1412670 - Allow fcoemon to create netlink scsitransport sockets Resolves: rhbz#1362496 - Allow quota_nld_t create netlink_generic sockets Resolves: rhbz#1358679 - Allow cgred_t create netlink_connector sockets Resolves: rhbz#1376357 - Add dhcpd_t domain fowner capability Resolves: rhbz#1358485 - Allow acpid to attempt to connect to the Linux kernel via generic netlink socket. Resolves: rhbz#1358478 - Rename docker module to container module Resolves: rhbz#1386916 - Allow setflies to mount tracefs Resolves: rhbz#1376357 - Allow iptables to read nsfs files. Resolves: rhbz#1411316 - Allow systemd_bootchart_t domain create dgram sockets. Resolves: rhbz#1365953 - Rename docker interfaces to container Resolves: rhbz#1386916- Allow initrc_t domain to run rhel-autorelabel script properly during boot process Resolves: rhbz#1379722 - Allow systemd_initctl_t to create and connect unix_dgram sockets Resolves: rhbz#1365947 - Allow ifconfig_t to mount/unmount nsfs_t filesystem Resolves: rhbz#1349814 - Add interfaces allowing mount/unmount nsfs_t filesystem Resolves: rhbz#1349814- Add interface init_stream_connectto() Resolves:rhbz#1365947 - Allow rhsmcertd domain signull kernel. Resolves: rhbz#1379781 - Allow kdumpgui domain to read nvme device - Allow insmod_t to load kernel modules Resolves: rhbz#1421598 - Add interface files_load_kernel_modules() Resolves: rhbz#1421598 - Add SELinux support for systemd-initctl daemon Resolves:rhbz#1365947 - Add SELinux support for systemd-bootchart Resolves: rhbz#1365953- Allow firewalld to getattr open search read modules_object_t:dir Resolves: rhbz#1418391 - Fix label for nagios plugins in nagios file conxtext file Resolves: rhbz#1277718 - Add sys_ptrace capability to pegasus domain Resolves: rhbz#1381238 - Allow sssd_t domain setpgid Resolves:rhbz#1416780 - After the latest changes in nfsd. We should allow nfsd_t to read raw fixed disk. Resolves: rhbz#1350927 - Allow kdumpgui domain to read nvme device Resolves: rhbz#1415084 - su using libselinux and creating netlink_selinux socket is needed to allow libselinux initialization. Resolves: rhbz#1146987 - Add user namespace capability object classes. Resolves: rhbz#1368057 - Add module_load permission to class system Resolves:rhbz#1368057 - Add the validate_trans access vector to the security class Resolves: rhbz#1368057 - Add "binder" security class and access vectors Resolves: rhbz#1368057 - Allow ifconfig_t domain read nsfs_t Resolves: rhbz#1349814 - Allow ping_t domain to load kernel modules. Resolves: rhbz#1388363- Allow systemd container to read/write usermodehelperstate Resolves: rhbz#1403254 - Label udp ports in range 24007-24027 as gluster_port_t Resolves: rhbz#1404152- Allow glusterd_t to bind on glusterd_port_t udp ports. Resolves: rhbz#1404152 - Revert: Allow glusterd_t to bind on med_tlp port.- Allow glusterd_t to bind on med_tlp port. Resolves: rhbz#1404152 - Update ctdbd_t policy to reflect all changes. Resolves: rhbz#1402451 - Label tcp port 24009 as med_tlp_port_t Resolves: rhbz#1404152 - Issue appears during update directly from RHEL-7.0 to RHEL-7.3 or above. Modules pkcsslotd and vbetools missing in selinux-policy package for RHEL-7.3 which causing warnings during SELinux policy store migration process. Following patch fixes issue by skipping pkcsslotd and vbetools modules migration.- Allow ctdbd_t domain transition to rpcd_t Resolves:rhbz#1402451- Fixes for containers Allow containers to attempt to write to unix_sysctls. Allow cotainers to use the FD's leaked to them from parent processes. Resolves: rhbz#1403254- Allow glusterd_t send signals to userdomain. Label new glusterd binaries as glusterd_exec_t Resolves: rhbz#1404152 - Allow systemd to stop glusterd_t domains. Resolves: rhbz#1400493- Make working CTDB:NFS: CTDB failover from selinux-policy POV Resolves: rhbz#1402451- Add kdump_t domain sys_admin capability Resolves: rhbz#1375963- Allow puppetagent_t to access timedated dbus. Use the systemd_dbus_chat_timedated interface to allow puppetagent_t the access. Resolves: rhbz#1399250- Update systemd on RHEL-7.2 box to version from RHEL-7.3 and then as a separate yum command update the selinux policy systemd will start generating USER_AVC denials and will start returning "Access Denied" errors to DBus clients Resolves: rhbz#1393505- Allow cluster_t communicate to fprintd_t via dbus Resolves: rhbz#1349798- Fix error message during update from RHEL-7.2 to RHEL-7.3, when /usr/sbin/semanage command is not installed and selinux-policy-migrate-local-changes.sh script is executed in %post install phase of selinux-policy package Resolves: rhbz#1392010- Allow GlusterFS with RDMA transport to be started correctly. It requires ipc_lock capability together with rw permission on rdma_cm device. Resolves: rhbz#1384488 - Allow glusterd to get attributes on /sys/kernel/config directory. Resolves: rhbz#1384483- Use selinux-policy-migrate-local-changes.sh instead of migrateStore* macros - Add selinux-policy-migrate-local-changes service Resolves: rhbz#1381588- Allow sssd_selinux_manager_t to manage also dir class. Resolves: rhbz#1368097 - Add interface seutil_manage_default_contexts_dirs() Resolves: rhbz#1368097- Add virt_sandbox_use_nfs -> virt_use_nfs boolean substitution. Resolves: rhbz#1355783- Allow pcp_pmcd_t domain transition to lvm_t Add capability kill and sys_ptrace to pcp_pmlogger_t Resolves: rhbz#1309883- Allow ftp daemon to manage apache_user_content Resolves: rhbz#1097775 - Label /etc/sysconfig/oracleasm as oracleasm_conf_t Resolves: rhbz#1331383 - Allow oracleasm to rw inherited fixed disk device Resolves: rhbz#1331383 - Allow collectd to connect on unix_stream_socket Resolves: rhbz#1377259- Allow iscsid create netlink iscsid sockets. Resolves: rhbz#1358266 - Improve regexp for power_unit_file_t files. To catch just systemd power unit files. Resolves: rhbz#1375462- Update oracleasm SELinux module that can manage oracleasmfs_t blk files. Add dac_override cap to oracleasm_t domain. Resolves: rhbz#1331383 - Add few rules to pcp SELinux module to make ti able to start pcp_pmlogger service Resolves: rhbz#1206525- Add oracleasm_conf_t type and allow oracleasm_t to create /dev/oracleasm Resolves: rhbz#1331383 - Label /usr/share/pcp/lib/pmie as pmie_exec_t and /usr/share/pcp/lib/pmlogger as pmlogger_exec_t Resolves: rhbz#1206525 - Allow mdadm_t to getattr all device nodes Resolves: rhbz#1365171 - Add interface dbus_dontaudit_stream_connect_system_dbusd() Resolves:rhbz#1052880 - Add virt_stub_* interfaces for docker policy which is no longer a part of our base policy. Resolves: rhbz#1372705 - Allow guest-set-user-passwd to set users password. Resolves: rhbz#1369693 - Allow samdbox domains to use msg class Resolves: rhbz#1372677 - Allow domains using kerberos to read also kerberos config dirs Resolves: rhbz#1368492 - Allow svirt_sandbox_domains to r/w onload sockets Resolves: rhbz#1342930 - Add interface fs_manage_oracleasm() Resolves: rhbz#1331383 - Label /dev/kfd as hsa_device_t Resolves: rhbz#1373488 - Update seutil_manage_file_contexts() interface that caller domain can also manage file_context_t dirs Resolves: rhbz#1368097 - Add interface to write to nsfs inodes Resolves: rhbz#1372705 - Allow systemd services to use PrivateNetwork feature Resolves: rhbz#1372705 - Add a type and genfscon for nsfs. Resolves: rhbz#1372705 - Allow run sulogin_t in range mls_systemlow-mls_systemhigh. Resolves: rhbz#1290400- Allow arpwatch to create netlink netfilter sockets. Resolves: rhbz#1358261 - Fix file context for /etc/pki/pki-tomcat/ca/ - new interface oddjob_mkhomedir_entrypoint() - Move label for /var/lib/docker/vfs/ to proper SELinux module - Allow mdadm to get attributes from all devices. - Label /etc/puppetlabs as puppet_etc_t. - Allow systemd-machined to communicate to lxc container using dbus - Allow systemd_resolved to send dbus msgs to userdomains Resolves: rhbz#1236579 - Allow systemd-resolved to read network sysctls Resolves: rhbz#1236579 - Allow systemd_resolved to connect on system bus. Resolves: rhbz#1236579 - Make entrypoint oddjob_mkhomedir_exec_t for unconfined_t - Label all files in /dev/oracleasmfs/ as oracleasmfs_t Resolves: rhbz#1331383- Label /etc/pki/pki-tomcat/ca/ as pki_tomcat_cert_t Resolves:rhbz#1366915 - Allow certmonger to manage all systemd unit files Resolves:rhbz#1366915 - Grant certmonger "chown" capability Resolves:rhbz#1366915 - Allow ipa_helper_t stream connect to dirsrv_t domain Resolves: rhbz#1368418 - Update oracleasm SELinux module Resolves: rhbz#1331383 - label /var/lib/kubelet as svirt_sandbox_file_t Resolves: rhbz#1369159 - Add few interfaces to cloudform.if file Resolves: rhbz#1367834 - Label /var/run/corosync-qnetd and /var/run/corosync-qdevice as cluster_var_run_t. Note: corosync policy is now par of rhcs module Resolves: rhbz#1347514 - Allow krb5kdc_t to read krb4kdc_conf_t dirs. Resolves: rhbz#1368492 - Update networkmanager_filetrans_named_content() interface to allow source domain to create also temad dir in /var/run. Resolves: rhbz#1365653 - Allow teamd running as NetworkManager_t to access netlink_generic_socket to allow multiple network interfaces to be teamed together. Resolves: rhbz#1365653 - Label /dev/oracleasmfs as oracleasmfs_t. Add few interfaces related to oracleasmfs_t type Resolves: rhbz#1331383 - A new version of cloud-init that supports the effort to provision RHEL Atomic on Microsoft Azure requires some a new rules that allows dhclient/dhclient hooks to call cloud-init. Resolves: rhbz#1367834 - Allow iptables to creating netlink generic sockets. Resolves: rhbz#1364359- Allow ipmievd domain to create lock files in /var/lock/subsys/ Resolves:rhbz#1349058 - Update policy for ipmievd daemon. Resolves:rhbz#1349058 - Dontaudit hyperkvp to getattr on non security files. Resolves: rhbz#1349356 - Label /run/corosync-qdevice and /run/corosync-qnetd as corosync_var_run_t Resolves: rhbz#1347514 - Fixed lsm SELinux module - Add sys_admin capability to sbd domain Resolves: rhbz#1322725 - Allow vdagent to comunnicate with systemd-logind via dbus Resolves: rhbz#1366731 - Allow lsmd_plugin_t domain to create fixed_disk device. Resolves: rhbz#1238066 - Allow opendnssec domain to create and manage own tmp dirs/files Resolves: rhbz#1366649 - Allow opendnssec domain to read system state Resolves: rhbz#1366649 - Update opendnssec_manage_config() interface to allow caller domain also manage opendnssec_conf_t dirs Resolves: rhbz#1366649 - Allow rasdaemon to mount/unmount tracefs filesystem. Resolves: rhbz#1364380 - Label /usr/libexec/iptables/iptables.init as iptables_exec_t Allow iptables creating lock file in /var/lock/subsys/ Resolves: rhbz#1367520 - Modify interface den_read_nvme() to allow also read nvme_device_t block files. Resolves: rhbz#1362564 - Label /var/run/storaged as lvm_var_run_t. Resolves: rhbz#1264390 - Allow unconfineduser to run ipa_helper_t. Resolves: rhbz#1361636- Dontaudit mock to write to generic certs. Resolves: rhbz#1271209 - Add labeling for corosync-qdevice and corosync-qnetd daemons, to run as cluster_t Resolves: rhbz#1347514 - Revert "Label corosync-qnetd and corosync-qdevice as corosync_t domain" - Allow modemmanager to write to systemd inhibit pipes Resolves: rhbz#1365214 - Label corosync-qnetd and corosync-qdevice as corosync_t domain Resolves: rhbz#1347514 - Allow ipa_helper to read network state Resolves: rhbz#1361636 - Label oddjob_reqiest as oddjob_exec_t Resolves: rhbz#1361636 - Add interface oddjob_run() Resolves: rhbz#1361636 - Allow modemmanager chat with systemd_logind via dbus Resolves: rhbz#1362273 - Allow NetworkManager chat with puppetagent via dbus Resolves: rhbz#1363989 - Allow NetworkManager chat with kdumpctl via dbus Resolves: rhbz#1363977 - Allow sbd send msgs to syslog Allow sbd create dgram sockets. Allow sbd to communicate with kernel via dgram socket Allow sbd r/w kernel sysctls. Resolves: rhbz#1322725 - Allow ipmievd_t domain to re-create ipmi devices Label /usr/libexec/openipmi-helper as ipmievd_exec_t Resolves: rhbz#1349058 - Allow rasdaemon to use tracefs filesystem. Resolves: rhbz#1364380 - Fix typo bug in dirsrv policy - Some logrotate scripts run su and then su runs unix_chkpwd. Allow logrotate_t domain to check passwd. Resolves: rhbz#1283134 - Add ipc_lock capability to sssd domain. Allow sssd connect to http_cache_t Resolves: rhbz#1362688 - Allow dirsrv to read dirsrv_share_t content Resolves: rhbz#1363662 - Allow virtlogd_t to append svirt_image_t files. Resolves: rhbz#1358140 - Allow hypervkvp domain to read hugetlbfs dir/files. Resolves: rhbz#1349356 - Allow mdadm daemon to read nvme_device_t blk files Resolves: rhbz#1362564 - Allow selinuxusers and unconfineduser to run oddjob_request Resolves: rhbz#1361636 - Allow sshd server to acces to Crypto Express 4 (CEX4) devices. Resolves: rhbz#1362539 - Fix labeling issue in init.fc file. Path /usr/lib/systemd/fedora-* changed to /usr/lib/systemd/rhel-*. Resolves: rhbz#1363769 - Fix typo in device interfaces Resolves: rhbz#1349058 - Add interfaces for managing ipmi devices Resolves: rhbz#1349058 - Add interfaces to allow mounting/umounting tracefs filesystem Resolves: rhbz#1364380 - Add interfaces to allow rw tracefs filesystem Resolves: rhbz#1364380 - Add interface dev_read_nvme() to allow reading Non-Volatile Memory Host Controller devices. Resolves: rhbz#1362564 - Label /sys/kernel/debug/tracing filesystem Resolves: rhbz#1364380 - Allow sshd setcap capability. This is needed due to latest changes in sshd Resolves: rhbz#1357857- Dontaudit mock_build_t can list all ptys. Resolves: rhbz#1271209 - Allow ftpd_t to mamange userhome data without any boolean. Resolves: rhbz#1097775 - Add logrotate permissions for creating netlink selinux sockets. Resolves: rhbz#1283134 - Allow lsmd_plugin_t to exec ldconfig. Resolves: rhbz#1238066 - Allow vnstatd domain to read /sys/class/net/ files Resolves: rhbz#1358243 - Remove duplicate allow rules in spamassassin SELinux module Resolves:rhbz#1358175 - Allow spamc_t and spamd_t domains create .spamassassin file in user homedirs Resolves:rhbz#1358175 - Allow sshd setcap capability. This is needed due to latest changes in sshd Resolves: rhbz#1357857 - Add new MLS attribute to allow relabeling objects higher than system low. This exception is needed for package managers when processing sensitive data. Resolves: rhbz#1330464 - Allow gnome-keyring also manage user_tmp_t sockets. Resolves: rhbz#1257057 - corecmd: Remove fcontext for /etc/sysconfig/libvirtd Resolves:rhbz#1351382- Allow ipa_dnskey domain to search cache dirs Resolves: rhbz#1350957- Allow ipa-dnskey read system state. Reasolves: rhbz#1350957 - Allow dogtag-ipa-ca-renew-agent-submit labeled as certmonger_t to create /var/log/ipa/renew.log file Resolves: rhbz#1350957- Allow firewalld to manage net_conf_t files. Resolves:rhbz#1304723 - Allow logrotate read logs inside containers. Resolves: rhbz#1303514 - Allow sssd to getattr on fs_t Resolves: rhbz#1356082 - Allow opendnssec domain to manage bind chace files Resolves: rhbz#1350957 - Fix typo in rhsmcertd policy module Resolves: rhbz#1329475 - Allow systemd to get status of systemd-logind daemon Resolves: rhbz#1356141 - Label more ndctl devices not just ndctl0 Resolves: rhbz#1355809- Allow rhsmcertd to copy certs into /etc/docker/cert.d - Add interface docker_rw_config() Resolves: rhbz#1344500 - Fix logrotate fc file to label also /var/lib/logrotate/ dir as logrotate_var_lib_t Resolves: rhbz#1355632 - Allow rhsmcertd to read network sysctls Resolves: rhbz#1329475 - Label /var/log/graphite-web dir as httpd_log_t Resolves: rhbz#1310898 - Allow mock to use generic ptys Resolves: rhbz#1271209 - Allow adcli running as sssd_t to write krb5.keytab file. Resolves: rhbz#1356082 - Allow openvswitch connect to openvswitch_port_t type. Resolves: rhbz#1335024 - Add SELinux policy for opendnssec service. Resolves: rhbz#1350957 - Create new SELinux type for /usr/libexec/ipa/ipa-dnskeysyncd Resolves: rhbz#1350957 - label /dev/ndctl0 device as nvram_device_t Resolves: rhbz#1355809- Allow lttng tools to block suspending Resolves: rhbz#1256374 - Allow creation of vpnaas in openstack Resolves: rhbz#1352710 - virt: add strict policy for virtlogd daemon Resolves:rhbz#1311606 - Update makefile to support snapperd_contexts file Resolves: rhbz#1352681- Allow udev to manage systemd-hwdb files - Add interface systemd_hwdb_manage_config() Resolves: rhbz#1350756 - Fix paths to infiniband devices. This allows use more then two infiniband interfaces. Resolves: rhbz#1210263- Allow virtual machines to rw infiniband devices. Resolves: rhbz#1210263 - Allow opensm daemon to rw infiniband_mgmt_device_t Resolves: rhbz#1210263 - Allow systemd_hwdb_t to relabel /etc/udev/hwdb.bin file. Resolves: rhbz#1350756 - Make label for new infiniband_mgmt deivices Resolves: rhbz#1210263- Fix typo in brltty SELinux module - Add new SELinux module sbd Resolves: rhbz#1322725 - Allow pcp dmcache metrics collection Resolves: rhbz#1309883 - Allow pkcs_slotd_t to create dir in /var/lock Add label pkcs_slotd_log_t Resolves: rhbz#1350782 - Allow openvpn to create sock files labeled as openvpn_var_run_t Resolves: rhbz#1328246 - Allow hypervkvp daemon to getattr on all filesystem types. Resolves: rhbz#1349356 - Allow firewalld to create net_conf_t files Resolves: rhbz#1304723 - Allow mock to use lvm Resolves: rhbz#1271209 - Allow keepalived to create netlink generic sockets. Resolves: rhbz#1349809 - Allow mirromanager creating log files in /tmp Resolves:rhbz#1328818 - Rename few modules to make it consistent with source files Resolves: rhbz#1351445 - Allow vmtools_t to transition to rpm_script domain Resolves: rhbz#1342119 - Allow nsd daemon to manage nsd_conf_t dirs and files Resolves: rhbz#1349791 - Allow cluster to create dirs in /var/run labeled as cluster_var_run_t Resolves: rhbz#1346900 - Allow sssd read also sssd_conf_t dirs Resolves: rhbz#1350535 - Dontaudit su_role_template interface to getattr /proc/kcore Dontaudit su_role_template interface to getattr /dev/initctl Resolves: rhbz#1086240 - Add interface lvm_getattr_exec_files() Resolves: rhbz#1271209 - Fix typo Compliling vs. Compiling Resolves: rhbz#1351445- Allow krb5kdc_t to communicate with sssd Resolves: rhbz#1319933 - Allow prosody to bind on prosody ports Resolves: rhbz#1304664 - Add dac_override caps for fail2ban-client Resolves: rhbz#1316678 - dontaudit read access for svirt_t on the file /var/db/nscd/group Resolves: rhbz#1301637 - Allow inetd child process to communicate via dbus with systemd-logind Resolves: rhbz#1333726 - Add label for brltty log file Resolves: rhbz#1328818 - Allow dspam to read the passwd file Resolves: rhbz#1286020 - Allow snort_t to communicate with sssd Resolves: rhbz#1284908 - svirt_sandbox_domains need to be able to execmod for badly built libraries. Resolves: rhbz#1206339 - Add policy for lttng-tools package. Resolves: rhbz#1256374 - Make mirrormanager as application domain. Resolves: rhbz#1328234 - Add support for the default lttng-sessiond port - tcp/5345. This port is used by LTTng 2.x central tracing registry session daemon. - Add prosody ports Resolves: rhbz#1304664 - Allow sssd read also sssd_conf_t dirs Resolves: rhbz#1350535- Label /var/lib/softhsm as named_cache_t. Allow named_t to manage named_cache_t dirs. Resolves:rhbz#1331315 - Label named-pkcs11 binary as named_exec_t. Resolves: rhbz#1331315 - Allow glusterd daemon to get systemd status Resolves: rhbz#1321785 - Allow logrotate dbus-chat with system_logind daemon Resolves: rhbz#1283134 - Allow pcp_pmlogger to read kernel network state Allow pcp_pmcd to read cron pid files Resolves: rhbz#1336211 - Add interface cron_read_pid_files() Resolves: rhbz#1336211 - Allow pcp_pmlogger to create unix dgram sockets Resolves: rhbz#1336211 - Add hwloc-dump-hwdata SELinux policy Resolves: rhbz#1344054 - Remove non-existing jabberd_spool_t() interface and add new jabbertd_var_spool_t. Resolves: rhbz#1121171 - Remove non-existing interface salk_resetd_systemctl() and replace it with sanlock_systemctl_sanlk_resetd() Resolves: rhbz#1259764 - Create label for openhpid log files. esolves: rhbz#1259764 - Label /var/lib/ganglia as httpd_var_lib_t Resolves: rhbz#1260536 - Allow firewalld_t to create entries in net_conf_t dirs. Resolves: rhbz#1304723 - Allow journalctl to read syslogd_var_run_t files. This allows to staff_t and sysadm_t to read journals Resolves: rhbz#1288255 - Include patch from distgit repo: policy-RHEL-7.1-flask.patch. Resolves: rhbz#1329560 - Update refpolicy to handle hwloc Resolves: rhbz#1344054 - Label /etc/dhcp/scripts dir as bin_t - Allow sysadm_role to run journalctl_t domain. This allows sysadm user to read journals. Resolves: rhbz#1288255- Allow firewalld_t to create entries in net_conf_t dirs. Resolves: rhbz#1304723 - Allow journalctl to read syslogd_var_run_t files. This allows to staff_t and sysadm_t to read journals Resolves: rhbz#1288255 - Allow mongod log to syslog. Resolves: rhbz#1306995 - Allow rhsmcertd connect to port tcp 9090 Resolves: rhbz#1337319 - Label for /bin/mail(x) was removed but /usr/bin/mail(x) not. This path is also needed to remove. Resolves: rhbz#1262483 Resolves: rhbz#1277506 - Label /usr/libexec/mimedefang-wrapper as spamd_exec_t. Resolves: rhbz#1301516 - Add new boolean spamd_update_can_network. Resolves: rhbz#1305469 - Allow rhsmcertd connect to tcp netport_port_t Resolves: rhbz#1329475 - Fix SELinux context for /usr/share/mirrormanager/server/mirrormanager to Label all binaries under dir as mirrormanager_exec_t. Resolves: rhbz#1328234 - Allow prosody to bind to fac_restore tcp port. Resolves: rhbz#1321787 - Allow ninfod to read raw packets Resolves: rhbz#1317964 - Allow pegasus get attributes from qemu binary files. Resolves: rhbz#1260835 - Allow pegasus get attributes from qemu binary files. Resolves: rhbz#1271159 - Allow tuned to use policykit. This change is required by cockpit. Resolves: rhbz#1346464 - Allow conman_t to read dir with conman_unconfined_script_t binary files. Resolves: rhbz#1297323 - Allow pegasus to read /proc/sysinfo. Resolves: rhbz#1265883 - Allow sysadm_role to run journalctl_t domain. This allows sysadm user to read journals. Resolves: rhbz#1288255 - Label tcp ports:16379, 26379 as redis_port_t Resolves: rhbz#1348471 - Allow systemd to relabel /var and /var/lib directories during boot. - Add files_relabel_var_dirs() and files_relabel_var_dirs() interfaces. - Add files_relabelto_var_lib_dirs() interface. - Label tcp port 2004 as mailbox_port_t. Resolves: rhbz#1332843 - Label tcp and udp port 5582 as fac_restore_port_t Resolves: rhbz#1321787 - Allow sysadm_t user to run postgresql-setup. Resolves: rhbz#1282543 - Allow sysadm_t user to dbus chat with oddjob_t. This allows confined admin run oddjob mkhomedirfor script. Resolves: rhbz#1297480 - Update netlink socket classes.- Allow conman to kill conman_unconfined_script. Resolves: rhbz#1297323 - Make conman_unconfined_script_t as init_system_domain. Resolves:rhbz#1297323 - Allow init dbus chat with apmd. Resolves:rhbz#995898 - Patch /var/lib/rpm is symlink to /usr/share/rpm on Atomic, due to this change we need to label also /usr/share/rpm as rpm_var_lib_t. Resolves: rhbz#1233252 - Dontaudit xguest_gkeyringd_t stream connect to system_dbusd_t Resolves: rhbz#1052880 - Add mediawiki rules to proper scope Resolves: rhbz#1301186 - Dontaudit xguest_gkeyringd_t stream connect to system_dbusd_t Resolves: rhbz#1052880 - Allow mysqld_safe to inherit rlimit information from mysqld Resolves: rhbz#1323673 - Allow collectd_t to stream connect to postgresql. Resolves: rhbz#1344056 - Allow mediawiki-script to read /etc/passwd file. Resolves: rhbz#1301186 - Add filetrans rule that NetworkManager_t can create net_conf_t files in /etc. Resolves: rhbz#1344505 - Add labels for mediawiki123 Resolves: rhbz#1293872 - Fix label for all fence_scsi_check scripts - Allow ip netns to mounton root fs and unmount proc_t fs. Resolves: rhbz#1343776 Resolves: rhbz#1286851 - Allow sysadm_t to run newaliases command. Resolves: rhbz#1344828 - Add interface sysnet_filetrans_named_net_conf() Resolves: rhbz#1344505- Fix several issues related to the SELinux Userspace changes- Allow glusterd domain read krb5_keytab_t files. Resolves: rhbz#1343929 - Fix typo in files_setattr_non_security_dirs. Resolves: rhbz#1115987- Allow tmpreaper_t to read/setattr all non_security_file_type dirs Resolves: rhbz#1115987 - Allow firewalld to create firewalld_var_run_t directory. Resolves: rhbz#1304723 - Add interface firewalld_read_pid_files() Resolves: rhbz#1304723 - Label /usr/libexec/rpm-ostreed as rpm_exec_t. Resolves: rhbz#1340542 - Allow sanlock service to read/write cephfs_t files. Resolves: rhbz#1315332 - Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) - Added missing docker interfaces: - docker_typebounds - docker_entrypoint Resolves: rhbz#1236580 - Add interface files_setattr_non_security_dirs() Resolves: rhbz#1115987 - Add support for onloadfs - Allow iptables to read firewalld pid files. Resolves: rhbz#1304723 - Add SELinux support for ceph filesystem. Resolves: rhbz#1315332 - Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) Resolves: rhbz#1236580- Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) - Added missing docker interfaces: - docker_typebounds - docker_entrypoint Resolves: rhbz#1236580 - New interfaces needed for systemd-machinectl Resolves: rhbz#1236580 - New interfaces needed by systemd-machine Resolves: rhbz#1236580 - Add interface allowing sending and receiving messages from virt over dbus. Resolves: rhbz#1236580 - Backport docker policy from Fedora. Related: #1303123 Resolves: #1341257 - Allow NetworkManager_t and policykit_t read access to systemd-machined pid files. Resolves: rhbz#1236580 - Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) - Added interfaces needed by new docker policy. Related: rhbz#1303123 - Add support for systemd-machined daemon Resolves: rhbz#1236580 - Allow rpm-ostree domain transition to install_t domain from init_t. Resolves: rhbz#1340542- dnsmasq: allow NetworkManager to control dnsmasq via D-Bus Resolves: rhbz#1336722 - Directory Server (389-ds-base) has been updated to use systemd-ask-password. In order to function correctly we need the following added to dirsrv.te Resolves: rhbz#1333198 - sftpd_* booleans are functionless these days. Resolves: rhbz#1335656 - Label /var/log/ganesha.log as gluster_log_t Allow glusterd_t domain to create glusterd_log_t files. Label /var/run/ganesha.pid as gluster_var_run_t. Resolves: rhbz#1335828 - Allow ganesha-ha.sh script running under unconfined_t domain communicate with glusterd_t domains via dbus. Resolves: rhbz#1336760 - Allow ganesha daemon labeled as glusterd_t create /var/lib/nfs/ganesha dir labeled as var_lib_nfs_t. Resolves: rhbz#1336737 - Label /usr/libexec/storaged/storaged as lvm_exec_t to run storaged daemon in lvm_t SELinux domain. Resolves: rhbz#1264390 - Allow systemd_hostanmed_t to read /proc/sysinfo labeled as sysctl_t. Resolves: rhbz#1337061 - Revert "Allow all domains some process flags." Resolves: rhbz#1303644 - Revert "Remove setrlimit to all domains." Resolves: rhbz#1303644 - Label /usr/sbin/xrdp* files as bin_t Resolves: rhbz#1276777 - Add mls support for some db classes Resolves: rhbz#1303651 - Allow systemd_resolved_t to check if ipv6 is disabled. Resolves: rhbz#1236579 - Allow systemd_resolved to read systemd_networkd run files. Resolves: rhbz#1236579- Allow ganesha-ha.sh script running under unconfined_t domain communicate with glusterd_t domains via dbus. Resolves: rhbz#1336760 - Allow ganesha daemon labeled as glusterd_t create /var/lib/nfs/ganesha dir labeled as var_lib_nfs_t. Resolves: rhbz#1336737- Allow logwatch to domtrans to postqueue Resolves: rhbz#1331542 - Label /var/log/ganesha.log as gluster_log_t - Allow glusterd_t domain to create glusterd_log_t files. - Label /var/run/ganesha.pid as gluster_var_run_t. Resolves: rhbz#1335828 - Allow zabbix to connect to postgresql port Resolves: rhbz#1330479 - Add userdom_destroy_unpriv_user_shared_mem() interface. Related: rhbz#1306403 - systemd-logind remove all IPC objects owned by a user on a logout. This covers also SysV memory. This change allows to destroy unpriviledged user SysV shared memory segments. Resolves: rhbz#1306403- We need to restore contexts on /etc/passwd*,/etc/group*,/etc/*shadow* during install phase to get proper labeling for these files until selinux-policy pkgs are installed. Resolves: rhbz#1333952- Add interface glusterd_dontaudit_read_lib_dirs() Resolves: rhbz#1295680 - Dontaudit Occasionally observing AVC's while running geo-rep automation Resolves: rhbz#1295680 - Allow glusterd to manage socket files labeled as glusterd_brick_t. Resolves: rhbz#1331561 - Create new apache content template for files stored in user homedir. This change is needed to make working booleans: - httpd_enable_homedirs - httpd_read_user_content Resolves: rhbz#1246522 - Allow stunnel create log files. Resolves: rhbz#1296851 - Label tcp port 8181 as intermapper_port_t. Resolves: rhbz#1334783 - Label tcp/udp port 2024 as xinuexpansion4_port_t Resolves: rhbz#1334783 - Label tcp port 7002 as afs_pt_port_t Label tcp/udp port 2023 as xinuexpansion3_port_t Resolves: rhbz#1334783 - Dontaudit ldconfig read gluster lib files. Resolves: rhbz#1295680 - Add interface auth_use_nsswitch() to systemd_domain_template. Resolves: rhbz#1236579- Label /usr/bin/ganesha.nfsd as glusterd_exec_t to run ganesha as glusterd_t. Allow glusterd_t stream connect to rpbind_t. Allow cluster_t to create symlink /var/lib/nfs labeled as var_lib_nfs_t. Add interface rpc_filetrans_var_lib_nfs_content() Add new boolean: rpcd_use_fusefs to allow rpcd daemon use fusefs. Resolves: rhbz#1312809 Resolves: rhbz#1323947 - Allow dbus chat between httpd_t and oddjob_t. Resolves: rhbz#1324144 - Label /usr/libexec/ipa/oddjob/org.freeipa.server.conncheck as ipa_helper_exec_t. Resolves: rhbz#1324144 - Label /var/log/ipareplica-conncheck.log file as ipa_log_t Allow ipa_helper_t domain to manage logs labeledas ipa_log_t Allow ipa_helper_t to connect on http and kerberos_passwd ports. Resolves: rhbz#1324144 - Allow prosody to listen on port 5000 for mod_proxy65. Resolves: rhbz#1316918 - Allow pcp_pmcd_t domain to manage docker lib files. This rule is needed to allow pcp to collect container information when SELinux is enabled. Resolves: rhbz#1309454- Allow runnig php7 in fpm mode. From selinux-policy side, we need to allow httpd to read/write hugetlbfs. Resolves: rhbz#1319442 - Allow openvswitch daemons to run under openvswitch Linux user instead of root. This change needs allow set capabilities: chwon, setgid, setuid, setpcap. Resolves: rhbz#1296640 - Remove ftpd_home_dir() boolean from distro policy. Reason is that we cannot make this working due to m4 macro language limits. Resolves: rhbz#1097775 - /bin/mailx is labeled sendmail_exec_t, and enters the sendmail_t domain on execution. If /usr/sbin/sendmail does not have its own domain to transition to, and is not one of several products whose behavior is allowed by the sendmail_t policy, execution will fail. In this case we need to label /bin/mailx as bin_t. Resolves: rhbz#1262483 - Allow nsd daemon to create log file in /var/log as nsd_log_t Resolves: rhbz#1293140 - Sanlock policy update. - New sub-domain for sanlk-reset daemon Resolves: rhbz#1212324 - Label all run tgtd files, not just socket files Resolves: rhbz#1280280 - Label all run tgtd files, not just socket files. Resolves: rhbz#1280280 - Allow prosody to stream connect to sasl. This will allow using cyrus authentication in prosody. Resolves: rhbz#1321049 - unbound wants to use ephemeral ports as a default configuration. Allow to use also udp sockets. Resolves: rhbz#1318224 - Allow prosody to listen on port 5000 for mod_proxy65. Resolves: rhbz#1316918 - Allow targetd to read/write to /dev/mapper/control device. Resolves: rhbz#1063714 - Allow KDM to get status about power services. This change allow kdm to be able do shutdown. Resolves: rhbz#1316724 - Allow systemd-resolved daemon creating netlink_route sockets. Resolves:rhbz#1236579 - Allow systemd_resolved_t to read /etc/passwd file. Allow systemd_resolved_t to write to kmsg_device_t when 'systemd.log_target=kmsg' option is used Resolves: rhbz#1065362 - Label /etc/selinux/(minimum|mls|targeted)/active/ as semanage_store_t Resolves: rhbz#1321943 - Label all nvidia binaries as xserver_exec_t Resolves: rhbz#1322283- Create new permissivedomains CIL module and make it active. Resolves: rhbz#1320451 - Add support for new mock location - /usr/libexec/mock/mock. Resolves: rhbz#1271209 - Allow bitlee to create bitlee_var_t dirs. Resolves: rhbz#1268651 - Allow CIM provider to read sssd public files. Resolves: rhbz#1263339 - Fix some broken interfaces in distro policy. Resolves: rhbz#1121171 - Allow power button to shutdown the laptop. Resolves: rhbz#995898 - Allow lsm plugins to create named fixed disks. Resolves: rhbz#1238066 - Add default labeling for /etc/Pegasus/cimserver_current.conf. It is a correct patch instead of the current /etc/Pegasus/pegasus_current.confResolves: rhbz#1278777 - Allow hyperv domains to rw hyperv devices. Resolves: rhbz#1309361 - Label /var/www/html(/.*)?/wp_backups(/.*)? as httpd_sys_rw_content_t.Resolves: rhbz#1246780 - Create conman_unconfined_script_t type for conman script stored in /use/share/conman/exec/ Resolves: rhbz#1297323 - Fix rule definitions for httpd_can_sendmail boolean. We need to distinguish between base and contrib. - Add support for /dev/mptctl device used to check RAID status. Resolves: rhbz#1258029 - Create hyperv* devices and create rw interfaces for this devices. Resolves: rhbz#1309361 - Add fixes for selinux userspace moving the policy store to /var/lib/selinux. - Remove optional else block for dhcp ping- Allow rsync_export_all_ro boolean to read also non_auth_dirs/files/symlinks. Resolves: rhbz#1263770 - Fix context of "/usr/share/nginx/html". Resolves: rhbz#1261857 - Allow pmdaapache labeled as pcp_pmcd_t access to port 80 for apache diagnostics Resolves: rhbz#1270344 - Allow pmlogger to create pmlogger.primary.socket link file. Resolves: rhbz#1270344 - Label nagios scripts as httpd_sys_script_exec_t. Resolves: rhbz#1260306 - Add dontaudit interface for kdumpctl_tmp_t Resolves: rhbz#1156442 - Allow mdadm read files in EFI partition. Resolves: rhbz#1291801 - Allow nsd_t to bind on nsf_control tcp port. Allow nsd_crond_t to read nsd pid. Resolves: rhbz#1293140 - Label some new nsd binaries as nsd_exec_t Allow nsd domain net_admin cap. Create label nsd_tmp_t for nsd tmp files/dirs Resolves: rhbz#1293140 - Add filename transition that /etc/princap will be created with cupsd_rw_etc_t label in cups_filetrans_named_content() interface. Resolves: rhbz#1265102 - Add missing labeling for /usr/libexec/abrt-hook-ccpp. Resolves: rhbz#1213409 - Allow pcp_pmie and pcp_pmlogger to read all domains state. Resolves: rhbz#1206525 - Label /etc/redis-sentinel.conf as redis_conf_t. Allow redis_t write to redis_conf_t. Allow redis_t to connect on redis tcp port. Resolves: rhbz#1275246 - cockpit has grown content in /var/run directory Resolves: rhbz#1279429 - Allow collectd setgid capability Resolves:#1310898 - Remove declaration of empty booleans in virt policy. Resolves: rhbz#1103153 - Fix typo in drbd policy - Add new drbd file type: drbd_var_run_t. Allow drbd_t to manage drbd_var_run_t files/dirs. Allow drbd_t create drbd_tmp_t files in /tmp. Resolves: rhbz#1134883 - Label /etc/ctdb/events.d/* as ctdb_exec_t. Allow ctdbd_t to setattr on ctdbd_exec_t files. Resolves: rhbz#1293788 - Allow abrt-hook-ccpp to get attributes of all processes because of core_pattern. Resolves: rhbz#1254188 - Allow abrt_t to read sysctl_net_t files. Resolves: rhbz#1254188 - The ABRT coredump handler has code to emulate default core file creation The handler runs in a separate process with abrt_dump_oops_t SELinux process type. abrt-hook-ccpp also saves the core dump file in the very same way as kernel does and a user can specify CWD location for a coredump. abrt-hook-ccpp has been made as a SELinux aware apps to create this coredumps with correct labeling and with this commit the policy rules have been updated to allow access all non security files on a system. - Allow abrt-hook-ccpp to getattr on all executables. - Allow setuid/setgid capabilities for abrt-hook-ccpp. Resolves: rhbz#1254188 - abrt-hook-ccpp needs to have setfscreate access because it is SELinux aware and compute a target labeling. Resolves: rhbz#1254188 - Allow abrt-hook-ccpp to change SELinux user identity for created objects. Resolves: rhbz#1254188 - Dontaudit write access to inherited kdumpctl tmp files. Resolves: rbhz#1156442 - Add interface to allow reading files in efivarfs - contains Linux Kernel configuration options for UEFI systems (UEFI Runtime Variables) Resolves: rhbz#1291801 - Label 8952 tcp port as nsd_control. Resolves: rhbz#1293140 - Allow ipsec to use pam. Resolves: rhbz#1315700 - Allow to log out to gdm after screen was resized in session via vdagent. Resolves: rhbz#1249020 - Allow setrans daemon to read /proc/meminfo. Resolves: rhbz#1316804 - Allow systemd_networkd_t to write kmsg, when kernel was started with following params: systemd.debug systemd.log_level=debug systemd.log_target=kmsg Resolves: rhbz#1298151 - Label tcp port 5355 as llmnr-> Link-Local Multicast Name Resolution Resolves: rhbz#1236579 - Add new selinux policy for systemd-resolved dawmon. Resolves: rhbz#1236579 - Add interface ssh_getattr_server_keys() interface. Resolves: rhbz#1306197 - Allow run sshd-keygen on second boot if first boot fails after some reason and content is not syncedon the disk. These changes are reflecting this commit in sshd. http://pkgs.fedoraproject.org/cgit/rpms/openssh.git/commit/?id=af94f46861844cbd6ba4162115039bebcc8f78ba rhbz#1299106 Resolves: rhbz#1306197 - Allow systemd_notify_t to write to kmsg_device_t when 'systemd.log_target=kmsg' option is used. Resolves: rhbz#1309417 - Remove bin_t label for /etc/ctdb/events.d/. We need to label this scripts as ctdb_exec_t. Resolves: rhbz#1293788- Prepare selinux-policy package for userspace release 2016-02-23. Resolves: rhbz#1305982- Allow sending dbus msgs between firewalld and system_cronjob domains. Resolves: rhbz#1284902 - Allow zabbix-agentd to connect to following tcp sockets. One of zabbix-agentd functions is get service status of ftp,http,innd,pop,smtp protocols. Resolves: rhbz#1242506 - Add new boolean tmpreaper_use_cifs() to allow tmpreaper to run on local directories being shared with Samba. Resolves: rhbz#1284972 - Add support for systemd-hwdb daemon. Resolves: rhbz#1257940 - Add interface fs_setattr_cifs_dirs(). Resolves: rhbz#1284972- Add new SELinux policy fo targetd daemon. Resolves: rhbz#1063714 - Add new SELinux policy fo ipmievd daemon. Resolves: rhbz#1083031 - Add new SELinux policy fo hsqldb daemon. Resolves: rhbz#1083171 - Add new SELinux policy for blkmapd daemon. Resolves: rhbz#1072997 - Allow p11-child to connect to apache ports. - Label /usr/sbin/lvmlockd binary file as lvm_exec_t. Resolves: rhbz#1278028 - Add interface "lvm_manage_lock" to lvm policy. Resolves: rhbz#1063714- Allow openvswitch domain capability sys_rawio. Resolves: rhbz#1278495- Allow openvswitch to manage hugetlfs files and dirs. Resolves: rhbz#1278495 - Add fs_manage_hugetlbfs_files() interface. Resolves: rhbz#1278495- Allow smbcontrol domain to send sigchld to ctdbd domain. Resolves: #1293784 - Allow openvswitch read/write hugetlb filesystem. Resolves: #1278495Allow hypervvssd to list all mountpoints to have VSS live backup working correctly. Resolves:#1247880- Revert Add missing labeling for /usr/libexec/abrt-hook-ccpp patch Resolves: #1254188- Allow search dirs in sysfs types in kernel_read_security_state. Resolves: #1254188 - Fix kernel_read_security_state interface that source domain of this interface can search sysctl_fs_t dirs. Resolves: #1254188- Add missing labeling for /usr/libexec/abrt-hook-ccpp as a part of #1245477 and #1242467 bugs Resolves: #1254188 - We need allow connect to xserver for all sandbox_x domain because we have one type for all sandbox processes. Resolves:#1261938- Remove labeling for modules_dep_t file contexts to have labeled them as modules_object_t. - Update files_read_kernel_modules() to contain modutils_read_module_deps_files() calling because module deps labeling could remain and it allows to avoid regressions. Resolves:#1266928- We need to require sandbox_web_type attribute in sandbox_x_domain_template(). Resolves: #1261938 - ipsec: The NM helper needs to read the SAs Resolves: #1259786 - ipsec: Allow ipsec management to create ptys Resolves: #1259786- Add temporary fixes for sandbox related to #1103622. It allows to run everything under one sandbox type. Resolves:#1261938 - Allow abrt_t domain to write to kernel msg device. Resolves: #1257828 - Allow rpcbind_t domain to change file owner and group Resolves: #1265266- Allow smbcontrol to create a socket in /var/samba which uses for a communication with smbd, nmbd and winbind. Resolves: #1256459- Allow dirsrv-admin script to read passwd file. Allow dirsrv-admin script to read httpd pid files. Label dirsrv-admin unit file and allow dirsrv-admin domains to use it. Resolves: #1230300 - Allow qpid daemon to connect on amqp tcp port. Resolves: #1261805- Label /etc/ipa/nssdb dir as cert_t Resolves:#1262718 - Do not provide docker policy files which is shipped by docker-selinux.rpm Resolves:#1262812- Add labels for afs binaries: dafileserver, davolserver, salvageserver, dasalvager Resolves: #1192338 - Add lsmd_plugin_t sys_admin capability, Allow lsmd_plugin_t getattr from sysfs filesystem. Resolves: #1238079 - Allow rhsmcertd_t send signull to unconfined_service_t domains. Resolves: #1176078 - Remove file transition from snmp_manage_var_lib_dirs() interface which created snmp_var_lib_t dirs in var_lib_t. - Allow openhpid_t daemon to manage snmp files and dirs. Resolves: #1243902 - Allow mdadm_t domain read/write to general ptys and unallocated ttys. Resolves: #1073314 - Add interface unconfined_server_signull() to allow domains send signull to unconfined_service_t Resolves: #1176078- Allow systemd-udevd to access netlink_route_socket to change names for network interfaces without unconfined.pp module. It affects also MLS. Resolves:#1250456- Fix labeling for fence_scsi_check script Resolves: #1255020 - Allow openhpid to read system state Allow openhpid to connect to tcp http port. Resolves: #1244248 - Allow openhpid to read snmp var lib files. Resolves: #1243902 - Allow openvswitch_t domains read kernel dependencies due to openvswitch run modprobe - Allow unconfined_t domains to create /var/run/xtables.lock with iptables_var_run_t Resolves: #1243403 - Remove bin_t label for /usr/share/cluster/fence_scsi_check\.pl Resolves: #1255020- Fix regexp in chronyd.fc file Resolves: #1243764 - Allow passenger to getattr filesystem xattr Resolves: #1196555 - Label mdadm.conf.anackbak as mdadm_conf_t file. Resolves: #1088904 - Revert "Allow pegasus_openlmi_storage_t create mdadm.conf.anacbak file in /etc." - Allow watchdog execute fenced python script. Resolves: #1255020 - Added inferface watchdog_unconfined_exec_read_lnk_files() - Remove labeling for /var/db/.*\.db as etc_t to label db files as system_db_t. Resolves: #1230877- Allow watchdog execute fenced python script. Resolves: #1255020 - Added inferface watchdog_unconfined_exec_read_lnk_files() - Label /var/run/chrony-helper dir as chronyd_var_run_t. Resolves: #1243764 - Allow dhcpc_t domain transition to chronyd_t Resolves: #1243764- Fix postfix_spool_maildrop_t,postfix_spool_flush_t contexts in postfix.fc file. Resolves: #1252442- Allow exec pidof under hypervkvp domain. Resolves: #1254870 - Allow hypervkvp daemon create connection to the system DBUS Resolves: #1254870- Allow openhpid_t to read system state. Resolves: #1244248 - Added labels for files provided by rh-nginx18 collection Resolves: #1249945 - Dontaudit block_suspend capability for ipa_helper_t, this is kernel bug. Allow ipa_helper_t capability net_admin. Allow ipa_helper_t to list /tmp. Allow ipa_helper_t to read rpm db. Resolves: #1252968 - Allow rhsmcertd exec rhsmcertd_var_run_t files and rhsmcerd_tmp_t files. This rules are in hide_broken_sympthons until we find better solution. Resolves: #1243431 - Allow abrt_dump_oops_t to read proc_security_t files. - Allow abrt_dump_oops to signull all domains Allow abrt_dump_oops to read all domains state Allow abrt_dump_oops to ptrace all domains - Add interface abrt_dump_oops_domtrans() - Add mountpoint dontaudit access check in rhsmcertd policy. Resolves: #1243431 - Allow samba_net_t to manage samba_var_t sock files. Resolves: #1252937 - Allow chrome setcap to itself. Resolves: #1251996 - Allow httpd daemon to manage httpd_var_lib_t lnk_files. Resolves: #1253706 - Allow chronyd exec systemctl Resolves: #1243764 - Add inteface chronyd_signal Allow timemaster_t send generic signals to chronyd_t. Resolves: #1243764 - Added interface fs_dontaudit_write_configfs_dirs - Add label for kernel module dep files in /usr/lib/modules Resolves:#916635 - Allow kernel_t domtrans to abrt_dump_oops_t - Added to files_dontaudit_write_all_mountpoints intefface new dontaudit rule, that domain included this interface dontaudit capability dac_override. - Allow systemd-networkd to send logs to systemd-journald. Resolves: #1236616- Fix label on /var/tmp/kiprop_0 Resolves:#1220763 - Allow lldpad_t to getattr tmpfs_t. Resolves: #1246220 - Label /dev/shm/lldpad.* as lldapd_tmpfs_t Resolves: #1246220 - Allow audisp client to read system state.- Allow pcp_domain to manage pcp_var_lib_t lnk_files. Resolves: #1252341 - Label /var/run/xtables.* as iptables_var_run_t Resolves: #1243403- Add interface to read/write watchdog device - Add labels for /dev/memory_bandwith and /dev/vhci. Thanks ssekidde Resolves:#1210237 - Allow apcupsd_t to read /sys/devices Resolves:#1189185 - Allow logrotate to reload services. Resolves: #1242453 - Allow openhpid use libwatchdog plugin. (Allow openhpid_t rw watchdog device) Resolves: #1244260 - Allow openhpid liboa_soap plugin to read generic certs. Resolves: #1244248 - Allow openhpid liboa_soap plugin to read resolv.conf file. Resolves: #1244248 - Label /usr/libexec/chrony-helper as chronyd_exec_t - Allow chronyd_t to read dhcpc state. - Allow chronyd to execute mkdir command.- Allow mdadm to access /dev/random and add support to create own files/dirs as mdadm_tmpfs_t. Resolves:#1073314 - Allow udev, lvm and fsadm to access systemd-cat in /var/tmp/dracut if 'dracut -fv' is executed in MLS. - Allow admin SELinu users to communicate with kernel_t. It is needed to access /run/systemd/journal/stdout if 'dracut -vf' is executed. We allow it for other SELinux users. - Allow sysadm to execute systemd-sysctl in the sysadm_t domain. It is needed for ifup command in MLS mode. - Add fstools_filetrans_named_content_fsadm() and call it for named_filetrans_domain domains. We need to be sure that /run/blkid is created with correct labeling. Resolves:#1183503 - Add support for /etc/sanlock which is writable by sanlock daemon. Resolves:#1231377 - Allow useradd add homedir located in /var/lib/kdcproxy in ipa-server RPM scriplet. Resolves:#1243775 - Allow snapperd to pass data (one way only) via pipe negotiated over dbus Resolves:#1250550 - Allow lsmd also setuid capability. Some commands need to executed under root privs. Other commands are executed under unprivileged user.- Allow openhpid to use libsnmp_bc plugin (allow read snmp lib files). Resolves: #1243902 - Allow lsm_plugin_t to read sysfs, read hwdata, rw to scsi_generic_device Resolves: #1238079 - Allow lsm_plugin_t to rw raw_fixed_disk. Resolves:#1238079 - Allow rhsmcertd to send signull to unconfined_service.- Allow httpd_suexec_t to read and write Apache stream sockets Resolves: #1243569 - Allow qpid to create lnk_files in qpid_var_lib_t Resolves: #1247279- Allow drbd to get attributes from filesystems. - Allow redis to read kernel parameters. Resolves: #1209518 - Allow virt_qemu_ga_t domtrans to passwd_t - Allow audisp_remote_t to start power unit files domain to allow halt system. Resolves: #1186780 - Allow audisp_remote_t to read/write user domain pty. Resolves: #1186780 - Label /usr/sbin/chpasswd as passwd_exec_t. - Allow sysadm to administrate ldap environment and allow to bind ldap port to allow to setup an LDAP server (389ds). Resolves:#1221121- gnome_dontaudit_search_config() needs to be a part of optinal_policy in pegasus.te - Allow pcp_pmcd daemon to read postfix config files. - Allow pcp_pmcd daemon to search postfix spool dirs. Resolves: #1213740 - Added Booleans: pcp_read_generic_logs. Resolves: #1213740 - Allow drbd to read configuration options used when loading modules. Resolves: #1134883 - Allow glusterd to manage nfsd and rpcd services. - Allow glusterd to communicate with cluster domains over stream socket. - glusterd call pcs utility which calls find for cib.* files and runs pstree under glusterd. Dontaudit access to security files and update gluster boolean to reflect these changes.- Allow glusterd to manage nfsd and rpcd services. - Allow networkmanager to communicate via dbus with systemd_hostanmed. Resolves: #1234954 - Allow stream connect logrotate to prosody. - Add prosody_stream_connect() interface. - httpd should be able to send signal/signull to httpd_suexec_t, instead of httpd_suexec_exec_t. - Allow prosody to create own tmp files/dirs. Resolves:#1212498- Allow networkmanager read rfcomm port. Resolves:#1212498 - Remove non exists label. - Fix *_admin intefaces where body is not consistent with header. - Label /usr/afs/ as afs_files_t, Allow afs_bosserver_t create afs_config_t and afs_dbdir_t dirs under afs_files_t, Allow afs_bosserver_t read kerberos config - Remove non exits nfsd_ro_t label. - Make all interfaces related to openshift_cache_t as deprecated. - Add rpm_var_run_t label to rpm_admin header - Add jabberd_lock_t label to jabberd_admin header. - Add samba_unconfined_script_exec_t to samba_admin header. - inn daemon should create innd_log_t objects in var_log_t instead of innd_var_run_t - Fix ctdb policy - Add samba_signull_winbind() - Add samba_signull_unconfined_net() - Allow ctdbd_t send signull to samba_unconfined_net_t. - Allow openshift_initrc_t to communicate with firewalld over dbus Resolves:#1221326- Allow gluster to connect to all ports. It is required by random services executed by gluster. - Add interfaces winbind_signull(), samba_unconfined_net_signull(). - Dontaudit smbd_t block_suspend capability. This is kernel bug. - Allow ctdbd sending signull to process winbind, samba_unconfined_net, to checking if processes exists. - Add tmpreaper booleans to use nfs_t and samba_share_t. - Fix path from /usr/sbin/redis-server to /usr/bin/redis-server - Allow connect ypserv to portmap_port_t - Fix paths in inn policy, Allow innd read innd_log_t dirs, Allow innd execute innd_etc_t files - Add support for openstack-nova-* packages - Allow NetworkManager_t send signull to dnssec_trigger_t. - Allow glusterd to execute showmount in the showmount domain. - Label swift-container-reconciler binary as swift_t. - Allow dnssec_trigger_t relabelfrom dnssec_trigger_var_run_t files. - Add cobbler_var_lib_t to "/var/lib/tftpboot/boot(/.*)?" Resolves:#1213540 - Merge all nova_* labels under one nova_t.- Add logging_syslogd_run_nagios_plugins boolean for rsyslog to allow transition to nagios unconfined plugins Resolves:#1233550 - Allow dnssec_trigger_t create dnssec_trigger_tmp_t files in /var/tmp/ - Add support for oddjob based helper in FreeIPA. - Add new boolean - httpd_run_ipa to allow httpd process to run IPA helper and dbus chat with oddjob. - Add nagios_domtrans_unconfined_plugins() interface. - Update mta_filetrans_named_content() interface to cover more db files. Resolves:#1167468 - Add back ftpd_use_passive_mode boolean with fixed description. - Allow pmcd daemon stream connect to mysqld. - Allow pcp domains to connect to own process using unix_stream_socket. Resolves:#1213709 - Allow abrt-upload-watch service to dbus chat with ABRT daemon and fsetid capability to allow run reporter-upload correctly. - Add new boolean - httpd_run_ipa to allow httpd process to run IPA helper and dbus chat with oddjob. - Add support for oddjob based helper in FreeIPA. - Allow dnssec_trigger_t create dnssec_trigger_tmp_t files in /var/tmp/- Allow iptables to read ctdbd lib files. Resolves:#1224879 - Add systemd_networkd_t to nsswitch domains. - Allow drbd_t write to fixed_disk_device. Reason: drbdmeta needs write to fixed_disk_device during initialization. Resolves:#1130675 - Allow NetworkManager write to sysfs. - Fix cron_system_cronjob_use_shares boolean to call fs interfaces which contain only entrypoint permission. - Add cron_system_cronjob_use_shares boolean to allow system cronjob to be executed from shares - NFS, CIFS, FUSE. It requires "entrypoint" permissios on nfs_t, cifs_t and fusefs_t SELinux types. - Allow NetworkManager write to sysfs. - Allow ctdb_t sending signull to smbd_t, for checking if smbd process exists. - Dontaudit apache to manage snmpd_var_lib_t files/dirs. - Add interface snmp_dontaudit_manage_snmp_var_lib_files(). - Dontaudit mozilla_plugin_t cap. sys_ptrace. - Rename xodbc-connect port to xodbc_connect - Allow ovsdb-server to connect on xodbc-connect and ovsdb tcp ports. - Allow iscsid write to fifo file kdumpctl_tmp_t. Appears when kdump generates the initramfs during the kernel boot. - Dontaudit chrome to read passwd file. - nrpe needs kill capability to make gluster moniterd nodes working. Resolves:#1235587- We allow can_exec() on ssh_keygen on gluster. But there is a transition defined by init_initrc_domain() because we need to allow execute unconfined services by glusterd. So ssh-keygen ends up with ssh_keygen_t and we need to allow to manage /var/lib/glusterd/geo-replication/secret.pem. - Allow sshd to execute gnome-keyring if there is configured pam_gnome_keyring.so. - Allow gnome-keyring executed by passwd to access /run/user/UID/keyring to change a password. - Label gluster python hooks also as bin_t. - Allow glusterd to interact with gluster tools running in a user domain - Add glusterd_manage_lib_files() interface. - ntop reads /var/lib/ntop/macPrefix.db and it needs dac_override. It has setuid/setgid. - Allow samba_t net_admin capability to make CIFS mount working. - S30samba-start gluster hooks wants to search audit logs. Dontaudit it. Resolves:#1224879- Allow glusterd to send generic signals to systemd_passwd_agent processes. - Allow glusterd to access init scripts/units without defined policy - Allow glusterd to run init scripts. - Allow glusterd to execute /usr/sbin/xfs_dbin glusterd_t domain. Resolves:#1224879- Calling cron_system_entry() in pcp_domain_template needs to be a part of optional_policy block. - Allow samba-net to access /var/lib/ctdbd dirs/files. - Allow glusterd to send a signal to smbd. - Make ctdbd as home manager to access also FUSE. - Allow glusterd to use geo-replication gluster tool. - Allow glusterd to execute ssh-keygen. - Allow glusterd to interact with cluster services. - Allow glusterd to connect to the system DBUS for service (acquire_svc). - Label /dev/log correctly. Resolves:#1230932- Back port the latest F22 changes to RHEL7. It should fix most of RHEL7.2 bugs - Add cgdcbxd policy Resolves:#1072493 - Fix ftp_homedir boolean Resolve:#1097775 - Dontaudit ifconfig writing inhertited /var/log/pluto.log. - Allow cluster domain to dbus chat with systemd-logind. Resolves:#1145215 - Dontaudit write access to inherited kdumpctl tmp files Resolves:#1156442 - Allow isnsd_t to communicate with sssd Resolves:#1167702 - Allow rwho_t to communicate with sssd Resolves:#1167718 - Allow sblim_gatherd_t to communicate with sssd Resolves:#1167732 - Allow pkcs_slotd_t to communicate with sssd Resolves:#1167737 - Allow openvswitch_t to communicate with sssd Resolves:#1167816 - Allow mysqld_safe_t to communicate with sssd Resolves:#1167832 - Allow sshd_keygen_t to communicate with sssd Resolves:#1167840 - Add support for iprdbg logging files in /var/log. Resolves:#1174363 - Allow tmpreaper_t to manage ntp log content Resolves:#1176965 - Allow gssd_t to manage ssh keyring Resolves:#1184791 - Allow httpd_sys_script_t to send system log messages Resolves:#1185231 - Allow apcupsd_t to read /sys/devices Resolves:#1189185 - Allow dovecot_t sys_resource capability Resolves:#1191143 - Add support for mongod/mongos systemd unit files. Resolves:#1197038 - Add bacula fixes - Added label mysqld_etc_t for /etc/my.cnf.d/ dir. Resolves:#1203991- Label /usr/libexec/postgresql-ctl as postgresql_exec_t. - Add more restriction on entrypoint for unconfined domains. - Only allow semanage_t to be able to setenforce 0, no all domains that use selinux_semanage interface - Allow all domains to read /dev/urandom. It is needed by all apps/services linked to libgcrypt. There is no harm to allow it by default. - Update policy/mls for sockets related to access perm. Rules were contradictory. - Add nagios_run_pnp4nagios and nagios_run_sudo booleans to allow r un sudo from NRPE utils scripts and allow run nagios in conjunction w ith PNP4Nagios. Resolves:#1201054 - Don't use deprecated userdom_manage_tmpfs_role() interface calliing and use userdom_manage_tmp_role() instead. - Update virt_read_pid_files() interface to allow read also symlinks with virt_var_run_t type - Label /var/lib/tftpboot/aarch64(/.*)? and /var/lib/tftpboot/images2(/.*)? - Add support for iprdbg logging files in /var/log. - Add fixes to rhsmcertd_t - Allow puppetagent_t to transfer firewalld messages over dbus - Add support for /usr/libexec/mongodb-scl-helper RHSCL helper script. - Added label mysqld_etc_t for /etc/my.cnf.d/ dir. - Add support for mongod/mongos systemd unit files. - cloudinit and rhsmcertd need to communicate with dbus - Allow dovecot_t sys_resource capability- ALlow mongod execmem by default. - Update policy/mls for sockets. Rules were contradictory. Resolves:#1207133 - Allow a user to login with different security level via ssh.- Update seutil_manage_config() interface. Resolves:#1185962 - Allow pki-tomcat relabel pki_tomcat_etc_rw_t. - Turn on docker_transition_unconfined by default- Allow virtd to list all mountpoints. Resolves:#1180713- pkcsslotd_lock_t should be an alias for pkcs_slotd_lock_t. - Allow fowner capability for sssd because of selinux_child handling. - ALlow bind to read/write inherited ipsec pipes - Allow hypervkvp to read /dev/urandom and read addition states/config files. - Allow gluster rpm scripletto create glusterd socket with correct labeling. This is a workaround until we get fix in glusterd. - Add glusterd_filetrans_named_pid() interface - Allow radiusd to connect to radsec ports. - Allow setuid/setgid for selinux_child - Allow lsmd plugin to connect to tcp/5988 by default. - Allow lsmd plugin to connect to tcp/5989 by default. - Update ipsec_manage_pid() interface. Resolves:#1184978- Update ipsec_manage_pid() interface. Resolves:#1184978- Allow ntlm_auth running in winbind_helper_t to access /dev/urandom.- Add auditing support for ipsec. Resolves:#1182524 - Label /ostree/deploy/rhel-atomic-host/deploy directory as system_conf_t - Allow netutils chown capability to make tcpdump working with -w- Allow ipsec to execute _updown.netkey script to run unbound-control. - Allow neutron to read rpm DB. - Add additional fixes for hyperkvp * creates new ifcfg-{name} file * Runs hv_set_ifconfig.sh, which does the following * Copies ifcfg-{name} to /etc/sysconfig/network-scripts - Allow svirt to read symbolic links in /sys/fs/cgroups labeled as tmpfs_t - Add labeling for pacemaker.log. - Allow radius to connect/bind radsec ports. - Allow pm-suspend running as virt_qemu_ga to read /var/log/pm-suspend.log - Allow virt_qemu_ga to dbus chat with rpm. - Update virt_read_content() interface to allow read also char devices. - Allow glance-registry to connect to keystone port. Resolves:#1181818- Allow sssd to send dbus all user domains. Resolves:#1172291 - Allow lsm plugin to read certificates. - Fix labeling for keystone CGI scripts. - Make snapperd back as unconfined domain.- Fix bugs in interfaces discovered by sepolicy. - Allow slapd to read /usr/share/cracklib/pw_dict.hwm. - Allow lsm plugins to connect to tcp/18700 by default. - Allow brltty mknod capability to allow create /var/run/brltty/vcsa. - Fix pcp_domain_template() interface. - Fix conman.te. - Allow mon_fsstatd to read /proc/sys/fs/binfmt_misc - Allow glance-scrubber to connect tcp/9191. - Add missing setuid capability for sblim-sfcbd. - Allow pegasus ioctl() on providers. - Add conman_can_network. - Allow chronyd to read chrony conf files located in /run/timemaster/. - Allow radius to bind on tcp/1813 port. - dontaudit block suspend access for openvpn_t - Allow conman to create files/dirs in /tmp. - Update xserver_rw_xdm_keys() interface to have 'setattr'. Resolves:#1172291 - Allow sulogin to read /dev/urandom and /dev/random. - Update radius port definition to have also tcp/18121 - Label prandom as random_device_t. - Allow charon to manage files in /etc/strongimcv labeled as ipsec_conf_t.- Allow virt_qemu_ga_t to execute kmod. - Add missing files_dontaudit_list_security_dirs() for smbd_t in samba_export_all_ro boolean. - Add additionnal MLS attribute for oddjob_mkhomedir to create homedirs. Resolves:#1113725 - Enable OpenStack cinder policy - Add support for /usr/share/vdsm/daemonAdapter - Add support for /var/run/gluster- Remove old pkcsslotd.pp from minimum package - Allow rlogind to use also rlogin ports. - Add support for /usr/libexec/ntpdate-wrapper. Label it as ntpdate_exec_t. - Allow bacula to connect also to postgresql. - Label /usr/libexec/tomcat/server as tomcat_exec_t - Add support for /usr/sbin/ctdbd_wrapper - Add support for /usr/libexec/ppc64-diag/rtas_errd - Allow rpm_script_roles to access system_mail_t - Allow brltty to create /var/run/brltty - Allow lsmd plugin to access netlink_route_socket - Allow smbcontrol to read passwd - Add support for /usr/libexec/sssd/selinux_child and create sssd_selinux_manager_t domain for it Resolves:#1140106 - Allow osad to execute rhn_check - Allow load_policy to rw inherited sssd pipes because of selinux_child - Allow admin SELinux users mounting / as private within a new mount namespace as root in MLS - Add additional fixes for su_restricted_domain_template to make moving to sysadm_r and trying to su working correctly - Add additional booleans substitions- Add seutil_dontaudit_access_check_semanage_module_store() interface Resolves:#1140106 - Update to have all _systemctl() interface also init_reload_services(). - Dontaudit access check on SELinux module store for sssd. - Add labeling for /sbin/iw. - Allow named_filetrans_domain to create ibus directory with correct labeling.- Allow radius to bind tcp/1812 radius port. - Dontaudit list user_tmp files for system_mail_t. - Label virt-who as virtd_exec_t. - Allow rhsmcertd to send a null signal to virt-who running as virtd_t. - Add missing alias for _content_rw_t. Resolves:#1089177 - Allow spamd to access razor-agent.log. - Add fixes for sfcb from libvirt-cim TestOnly bug. - Allow NetworkManager stream connect on openvpn. - Make /usr/bin/vncserver running as unconfined_service_t. - getty_t should be ranged in MLS. Then also local_login_t runs as ranged domain. - Label /etc/docker/certs.d as cert_t.- Label /etc/strongimcv as ipsec_conf_file_t. - Add support for /usr/bin/start-puppet-ca helper script Resolves:#1160727 - Allow rpm scripts to enable/disable transient systemd units. Resolves:#1154613 - Make kpropdas nsswitch domain Resolves:#1153561 - Make all glance domain as nsswitch domains Resolves:#1113281 - Allow selinux_child running as sssd access check on /etc/selinux/targeted/modules/active - Allow access checks on setfiles/load_policy/semanage_lock for selinux_child running as sssd_t Resolves:#1140106- Dontaudit access check on setfiles/load_policy for sssd_t. Resolves:#1140106 - Add kdump_rw_inherited_kdumpctl_tmp_pipes() Resolves:#1156442 - Make linuxptp services as unconfined. - Added new policy linuxptp. Resolves:#1149693 - Label keystone cgi files as keystone_cgi_script_exec_t. Resolves:#1138424 - Make tuned as unconfined domain- Allow guest to connect to libvirt using unix_stream_socket. - Allow all bus client domains to dbus chat with unconfined_service_t. - Allow inetd service without own policy to run in inetd_child_t which is unconfined domain. - Make opensm as nsswitch domain to make it working with sssd. - Allow brctl to read meminfo. - Allow winbind-helper to execute ntlm_auth in the caller domain. Resolves:#1160339 - Make plymouthd as nsswitch domain to make it working with sssd. Resolves:#1160196 - Make drbd as nsswitch domain to make it working with sssd. - Make conman as nsswitch domain to make ipmitool.exp runing as conman_t working. - Add support for /var/lib/sntp directory. - Add fixes to allow docker to create more content in tmpfs ,and donaudit reading /proc - Allow winbind to read usermodehelper - Allow telepathy domains to execute shells and bin_t - Allow gpgdomains to create netlink_kobject_uevent_sockets - Allow mongodb to bind to the mongo port and mongos to run as mongod_t - Allow abrt to read software raid state. - Allow nslcd to execute netstat. - Allow dovecot to create user's home directory when they log into IMAP. - Allow login domains to create kernel keyring with different level.- Allow modemmanger to connectto itself Resolves:#1120152 - Allow pki_tomcat to create link files in /var/lib/pki-ca. Resolves:#1121744 - varnishd needs to have fsetid capability Resolves:#1125165 - Allow snapperd to dbus chat with system cron jobs. Resolves:#1152447 - Allow dovecot to create user's home directory when they log into IMAP Resolves:#1152773 - Add labeling for /usr/sbin/haproxy-systemd-wrapper wrapper to make haproxy running haproxy_t. - ALlow listen and accept on tcp socket for init_t in MLS. Previously it was for xinetd_t. - Allow nslcd to execute netstat. - Add suppor for keepalived unconfined scripts and allow keepalived to read all domain state and kill capability. - Allow nslcd to read /dev/urandom.- Add back kill permisiion for system class Resolves:#1150011- Add back kill permisiion for service class Resolves:#1150011 - Make rhsmcertd_t also as dbus domain. - Allow named to create DNS_25 with correct labeling. - Add cloudform_dontaudit_write_cloud_log() - Call auth_use_nsswitch to apache to read/write cloud-init keys. - Allow cloud-init to dbus chat with certmonger. - Fix path to mon_statd_initrc_t script. - Allow all RHCS services to read system state. - Allow dnssec_trigger_t to execute unbound-control in own domain. - kernel_read_system_state needs to be called with type. Moved it to antivirus.if. - Added policy for mon_statd and mon_procd services. BZ (1077821) - Allow opensm_t to read/write /dev/infiniband/umad1. - Allow mongodb to manage own log files. - Allow neutron connections to system dbus. - Add support for /var/lib/swiftdirectory. - Allow nova-scheduler to read certs. - Allow openvpn to access /sys/fs/cgroup dir. - Allow openvpn to execute systemd-passwd-agent in systemd_passwd_agent_t to make openvpn working with systemd. - Fix samba_export_all_ro/samba_export_all_rw booleans to dontaudit search/read security files. - Add auth_use_nsswitch for portreserve to make it working with sssd. - automount policy is non-base module so it needs to be called in optional block. - ALlow sensord to getattr on sysfs. - Label /usr/share/corosync/corosync as cluster_exec_t. - Allow lmsd_plugin to read passwd file. BZ(1093733) - Allow read antivirus domain all kernel sysctls. - Allow mandb to getattr on file systems - Allow nova-console to connect to mem_cache port. - Make sosreport as unconfined domain. - Allow mondogdb to 'accept' accesses on the tcp_socket port. - ALlow sanlock to send a signal to virtd_t.- Build also MLS policy Resolves:#1138424- Add back kill permisiion for system class - Allow iptables read fail2ban logs. - Fix radius labeled ports - Add userdom_manage_user_tmpfs_files interface - Allow libreswan to connect to VPN via NM-libreswan. - Label 4101 tcp port as brlp port - fix dev_getattr_generic_usb_dev interface - Allow all domains to read fonts - Make sure /run/systemd/generator and system is labeled correctly on creation. - Dontaudit aicuu to search home config dir. - Make keystone_cgi_script_t domain. Resolves:#1138424 - Fix bug in drbd policy, - Added support for cpuplug. - ALlow sanlock_t to read sysfs_t. - Added sendmail_domtrans_unconfined interface - Fix broken interfaces - radiusd wants to write own log files. - Label /usr/libexec/rhsmd as rhsmcertd_exec_t - Allow rhsmcertd send signull to setroubleshoot. - Allow rhsmcertd manage rpm db. - Added policy for blrtty. - Fix keepalived policy - Allow rhev-agentd dbus chat with systemd-logind. - Allow keepalived manage snmp var lib sock files. - Add support for /var/lib/graphite-web - Allow NetworkManager to create Bluetooth SDP sockets - It's going to do the the discovery for DUN service for modems with Bluez 5. - Allow swift to connect to all ephemeral ports by default. - Allow sssd to read selinux config to add SELinux user mapping. - Allow lsmd to search own plguins. - Allow abrt to read /dev/memto generate an unique machine_id and uses sosuploader's algorithm based off dmidecode[1] fields. - ALlow zebra for user/group look-ups. - Allow nova domains to getattr on all filesystems. - Allow collectd sys_ptrace and dac_override caps because of reading of /proc/%i/io for several processes. - Allow pppd to connect to /run/sstpc/sstpc-nm-sstp-service-28025 over unix stream socket. - Allow rhnsd_t to manage also rhnsd config symlinks. - ALlow user mail domains to create dead.letter. - Allow rabbitmq_t read rabbitmq_var_lib_t lnk files. - Allow pki-tomcat to change SELinux object identity. - Allow radious to connect to apache ports to do OCSP check - Allow git cgi scripts to create content in /tmp - Allow cockpit-session to do GSSAPI logins. - Allow sensord read in /proc - Additional access required by usbmuxd- Allow locate to look at files/directories without labels, and chr_file and blk_file on non dev file systems - Label /usr/lib/erlang/erts.*/bin files as bin_t - Add files_dontaudit_access_check_home_dir() inteface. - Allow udev_t mounton udev_var_run_t dirs #(1128618) - Add systemd_networkd_var_run_t labeling for /var/run/systemd/netif and allow systemd-networkd to manage it. - Add init_dontaudit_read_state() interface. - Add label for ~/.local/share/fonts - Allow unconfined_r to access unconfined_service_t. - Allow init to read all config files - Add new interface to allow creation of file with lib_t type - Assign rabbitmq port. - Allow unconfined_service_t to dbus chat with all dbus domains - Add new interfaces to access users keys. - Allow domains to are allowed to mounton proc to mount on files as well as dirs - Fix labeling for HOME_DIR/tmp and HOME_DIR/.tmp directories. - Add a port definition for shellinaboxd - Label ~/tmp and ~/.tmp directories in user tmp dirs as user_tmp_t - Allow userdomains to stream connect to pcscd for smart cards - Allow programs to use pam to search through user_tmp_t dires (/tmp/.X11-unix) - Update to rawhide-contrib changes Resolves:#1123844- Rebase to 3.13.1 which we have in Fedora21 Resolves:#1128284- Back port fixes from Fedora. Mainly OpenStack and Docker fixes- Add policy-rhel-7.1-{base,contrib} patches- Add support for us_cli ports - Fix labeling for /var/run/user//gvfs - add support for tcp/9697 - Additional rules required by openstack, needs backport to F20 and RHEL7 - Additional access required by docker - ALlow motion to use tcp/8082 port - Allow init_t to setattr/relabelfrom dhcp state files - Dontaudit antivirus domains read access on all security files by default - Add missing alias for old amavis_etc_t type - Allow block_suspend cap for haproxy - Additional fixes for instack overcloud - Allow OpenStack to read mysqld_db links and connect to MySQL - Remove dup filename rules in gnome.te - Allow sys_chroot cap for httpd_t and setattr on httpd_log_t - Allow iscsid to handle own unit files - Add iscsi_systemctl() - Allow mongod to create also sock_files in /run with correct labeling - Allow httpd to send signull to apache script domains and don't audit leaks - Allow rabbitmq_beam to connect to httpd port - Allow aiccu stream connect to pcscd - Allow dmesg to read hwdata and memory dev - Allow all freeipmi domains to read/write ipmi devices - Allow sblim_sfcbd to use also pegasus-https port - Allow rabbitmq_epmd to manage rabbit_var_log_t files - Allow chronyd to read /sys/class/hwmon/hwmon1/device/temp2_input - Allow docker to status any unit file and allow it to start generic unit files- Change hsperfdata_root to have as user_tmp_t Resolves:#1076523- Fix Multiple same specifications for /var/named/chroot/dev/zero - Add labels for /var/named/chroot_sdb/dev devices - Add support for strongimcv - Use kerberos_keytab_domains in auth_use_nsswitch - Update auth_use_nsswitch to make all these types as kerberos_keytab_domain to - Allow net_raw cap for neutron_t and send sigkill to dnsmasq - Fix ntp_filetrans_named_content for sntp-kod file - Add httpd_dbus_sssd boolean - Dontaudit exec insmod in boinc policy - Rename kerberos_keytab_domain to kerberos_keytab_domains - Add kerberos_keytab_domain() - Fix kerberos_keytab_template() - Make all domains which use kerberos as kerberos_keytab_domain Resolves:#1083670 - Allow kill capability to winbind_t- varnishd wants chown capability - update ntp_filetrans_named_content() interface - Add additional fixes for neutron_t. #1083335 - Dontaudit getattr on proc_kcore_t - Allow pki_tomcat_t to read ipa lib files - Allow named_filetrans_domain to create /var/cache/ibus with correct labelign - Allow init_t run /sbin/augenrules - Add dev_unmount_sysfs_fs and sysnet_manage_ifconfig_run interfaces - Allow unpriv SELinux user to use sandbox - Add default label for /tmp/hsperfdata_root- Add file subs also for /var/home- Allow xauth_t to read user_home_dir_t lnk_file - Add labeling for lightdm-data - Allow certmonger to manage ipa lib files - Add support for /var/lib/ipa - Allow pegasus to getattr virt_content - Added some new rules to pcp policy - Allow chrome_sandbox to execute config_home_t - Add support for ABRT FAF- Allow kdm to send signull to remote_login_t process - Add gear policy - Turn on gear_port_t - Allow cgit to read gitosis lib files by default - Allow vdagent to read xdm state - Allow NM and fcoeadm to talk together over unix_dgram_socket- Back port fixes for pegasus_openlmi_admin_t from rawhide Resolves:#1080973 - Add labels for ostree - Add SELinux awareness for NM - Label /usr/sbin/pwhistory_helper as updpwd_exec_t- add gnome_append_home_config() - Allow thumb to append GNOME config home files - Allow rasdaemon to rw /dev/cpu//msr - fix /var/log/pki file spec - make bacula_t as auth_nsswitch domain - Identify pki_tomcat_cert_t as a cert_type - Define speech-dispater_exec_t as an application executable - Add a new file context for /var/named/chroot/run directory - update storage_filetrans_all_named_dev for sg* devices - Allow auditctl_t to getattr on all removeable devices - Allow nsswitch_domains to stream connect to nmbd - Allow unprivusers to connect to memcached - label /var/lib/dirsrv/scripts-INSTANCE as bin_t- Allow also unpriv user to run vmtools - Allow secadm to read /dev/urandom and meminfo Resolves:#1079250 - Add booleans to allow docker processes to use nfs and samba - Add mdadm_tmpfs support - Dontaudit net_amdin for /usr/lib/jvm/java-1.7.0-openjdk-1.7.0.51-2.4.5.1.el7.x86_64/jre-abrt/bin/java running as pki_tomcat_t - Allow vmware-user-sui to use user ttys - Allow talk 2 users logged via console too - Allow ftp services to manage xferlog_t - Make all pcp domanis as unconfined for RHEL7.0 beucause of new policies - allow anaconda to dbus chat with systemd-localed- allow anaconda to dbus chat with systemd-localed - Add fixes for haproxy based on bperkins@redhat.com - Allow cmirrord to make dmsetup working - Allow NM to execute arping - Allow users to send messages through talk - Add userdom_tmp_role for secadm_t- Add additional fixes for rtas_errd - Fix transitions for tmp/tmpfs in rtas.te - Allow rtas_errd to readl all sysctls- Add support for /var/spool/rhsm/debug - Make virt_sandbox_use_audit as True by default - Allow svirt_sandbox_domains to ptrace themselves- Allow docker containers to manage /var/lib/docker content- Allow docker to read tmpfs_t symlinks - Allow sandbox svirt_lxc_net_t to talk to syslog and to sssd over stream sockets- Allow collectd to talk to libvirt - Allow chrome_sandbox to use leaked unix_stream_sockets - Dontaudit leaks of sockets into chrome_sandbox_t - If you create a cups directory in /var/cache then it should be labeled cups_rw_etc_t - Run vmtools as unconfined domains - Allow snort to manage its log files - Allow systemd_cronjob_t to be entered via bin_t - Allow procman to list doveconf_etc_t - allow keyring daemon to create content in tmpfs directories - Add proper labelling for icedtea-web - vpnc is creating content in networkmanager var run directory - Label sddm as xdm_exec_t to make KDE working again - Allow postgresql to read network state - Allow java running as pki_tomcat to read network sysctls - Fix cgroup.te to allow cgred to read cgconfig_etc_t - Allow beam.smp to use ephemeral ports - Allow winbind to use the nis to authenticate passwords- Make rtas_errd_t as unconfined domain for F20.It needs additional fixes. It runs rpm at least. - Allow net_admin cap for fence_virtd running as fenced_t - Make abrt-java-connector working - Make cimtest script 03_defineVS.py of ComputerSystem group working - Fix git_system_enable_homedirs boolean - Allow munin mail plugins to read network systcl- Allow vmtools_helper_t to execute bin_t - Add support for /usr/share/joomla - /var/lib/containers should be labeled as openshift content for now - Allow docker domains to talk to the login programs, to allow a process to login into the container - Allow install_t do dbus chat with NM - Fix interface names in anaconda.if - Add install_t for anaconda. A new type is a part of anaconda policy - sshd to read network sysctls- Allow zabbix to send system log msgs - Allow init_t to stream connect to ipsec Resolves:#1060775- Add docker_connect_any boolean- Allow unpriv SELinux users to dbus chat with firewalld - Add lvm_write_metadata() - Label /etc/yum.reposd dir as system_conf_t. Should be safe because system_conf_t is base_ro_file_type - Allow pegasus_openlmi_storage_t to write lvm metadata - Add hide_broken_symptoms for kdumpgui because of systemd bug - Make kdumpgui_t as unconfined domain Resolves:#1044299 - Allow docker to connect to tcp/5000- Allow numad to write scan_sleep_millisecs - Turn on entropyd_use_audio boolean by default - Allow cgred to read /etc/cgconfig.conf because it contains templates used together with rules from /etc/cgrules.conf. - Allow lscpu running as rhsmcertd_t to read /proc/sysinfo - Fix label on irclogs in the homedir - Allow kerberos_keytab_domain domains to manage keys until we get sssd fix - Allow postgresql to use ldap - Add missing syslog-conn port - Add support for /dev/vmcp and /dev/sclp Resolves:#1069310- Modify xdm_write_home to allow create files/links in /root with xdm_home_ - Allow virt domains to read network state Resolves:#1072019- Added pcp rules - dontaudit openshift_cron_t searching random directories, should be back ported to RHEL6 - clean up ctdb.te - Allow ctdbd to connect own ports - Fix samba_export_all_rw booleanto cover also non security dirs - Allow swift to exec rpm in swift_t and allow to create tmp files/dirs - Allow neutron to create /run/netns with correct labeling - Allow certmonger to list home dirs- Change userdom_use_user_inherited_ttys to userdom_use_user_ttys for systemd-tty-ask - Add sysnet_filetrans_named_content_ifconfig() interface - Allow ctdbd to connect own ports - Fix samba_export_all_rw booleanto cover also non security dirs - Allow swift to exec rpm in swift_t and allow to create tmp files/dirs - Allow neutron to create /run/netns with correct labeling - Allow kerberos keytab domains to manage sssd/userdomain keys" - Allow to run ip cmd in neutron_t domain- Allow block_suspend cap2 for systemd-logind and rw dri device - Add labeling for /usr/libexec/nm-libreswan-service - Allow locallogin to rw xdm key to make Virtual Terminal login providing smartcard pin working - Add xserver_rw_xdm_keys() - Allow rpm_script_t to dbus chat also with systemd-located - Fix ipa_stream_connect_otpd() - update lpd_manage_spool() interface - Allow krb5kdc to stream connect to ipa-otpd - Add ipa_stream_connect_otpd() interface - Allow vpnc to unlink NM pids - Add networkmanager_delete_pid_files() - Allow munin plugins to access unconfined plugins - update abrt_filetrans_named_content to cover /var/spool/debug - Label /var/spool/debug as abrt_var_cache_t - Allow rhsmcertd to connect to squid port - Make docker_transition_unconfined as optional boolean - Allow certmonger to list home dirs- Make snapperd as unconfined domain and add additional fixes for it - Remove nsplugin.pp module on upgrade- Add snapperd_home_t for HOME_DIR/.snapshots directory - Make sosreport as unconfined domain - Allow sosreport to execute grub2-probe - Allow NM to manage hostname config file - Allow systemd_timedated_t to dbus chat with rpm_script_t - Allow lsmd plugins to connect to http/ssh/http_cache ports by default - Add lsmd_plugin_connect_any boolean - Allow mozilla_plugin to attempt to set capabilities - Allow lsdm_plugins to use tcp_socket - Dontaudit mozilla plugin from getattr on /proc or /sys - Dontaudit use of the keyring by the services in a sandbox - Dontaudit attempts to sys_ptrace caused by running ps for mysqld_safe_t - Allow rabbitmq_beam to connect to jabber_interserver_port - Allow logwatch_mail_t to transition to qmail_inject and queueu - Added new rules to pcp policy - Allow vmtools_helper_t to change role to system_r - Allow NM to dbus chat with vmtools - Fix couchdb_manage_files() to allow manage couchdb conf files - Add support for /var/run/redis.sock - dontaudit gpg trying to use audit - Allow consolekit to create log directories and files - Fix vmtools policy to allow user roles to access vmtools_helper_t - Allow block_suspend cap2 for ipa-otpd - Allow pkcsslotd to read users state - Add ioctl to init_dontaudit_rw_stream_socket - Add systemd_hostnamed_manage_config() interface - Remove transition for temp dirs created by init_t - gdm-simple-slave uses use setsockopt - sddm-greater is a xdm type program- Add lvm_read_metadata() - Allow auditadm to search /var/log/audit dir - Add lvm_read_metadata() interface - Allow confined users to run vmtools helpers - Fix userdom_common_user_template() - Generic systemd unit scripts do write check on / - Allow init_t to create init_tmp_t in /tmp.This is for temporary content created by generic unit files - Add additional fixes needed for init_t and setup script running in generic unit files - Allow general users to create packet_sockets - added connlcli port - Add init_manage_transient_unit() interface - Allow init_t (generic unit files) to manage rpc state date as we had it for initrc_t - Fix userdomain.te to require passwd class - devicekit_power sends out a signal to all processes on the message bus when power is going down - Dontaudit rendom domains listing /proc and hittping system_map_t - Dontauit leaks of var_t into ifconfig_t - Allow domains that transition to ssh_t to manipulate its keyring - Define oracleasm_t as a device node - Change to handle /root as a symbolic link for os-tree - Allow sysadm_t to create packet_socket, also move some rules to attributes - Add label for openvswitch port - Remove general transition for files/dirs created in /etc/mail which got etc_aliases_t label. - Allow postfix_local to read .forward in pcp lib files - Allow pegasus_openlmi_storage_t to read lvm metadata - Add additional fixes for pegasus_openlmi_storage_t - Allow bumblebee to manage debugfs - Make bumblebee as unconfined domain - Allow snmp to read etc_aliases_t - Allow lscpu running in pegasus_openlmi_storage_t to read /dev/mem - Allow pegasus_openlmi_storage_t to read /proc/1/environ - Dontaudit read gconf files for cupsd_config_t - make vmtools as unconfined domain - Add vmtools_helper_t for helper scripts. Allow vmtools shutdonw a host and run ifconfig. - Allow collectd_t to use a mysql database - Allow ipa-otpd to perform DNS name resolution - Added new policy for keepalived - Allow openlmi-service provider to manage transitient units and allow stream connect to sssd - Add additional fixes new pscs-lite+polkit support - Add labeling for /run/krb5kdc - Change w3c_validator_tmp_t to httpd_w3c_validator_tmp_t in F20 - Allow pcscd to read users proc info - Dontaudit smbd_t sending out random signuls - Add boolean to allow openshift domains to use nfs - Allow w3c_validator to create content in /tmp - zabbix_agent uses nsswitch - Allow procmail and dovecot to work together to deliver mail - Allow spamd to execute files in homedir if boolean turned on - Allow openvswitch to listen on port 6634 - Add net_admin capability in collectd policy - Fixed snapperd policy - Fixed bugsfor pcp policy - Allow dbus_system_domains to be started by init - Fixed some interfaces - Add kerberos_keytab_domain attribute - Fix snapperd_conf_t def- Addopt corenet rules for unbound-anchor to rpm_script_t - Allow runuser to send send audit messages. - Allow postfix-local to search .forward in munin lib dirs - Allow udisks to connect to D-Bus - Allow spamd to connect to spamd port - Fix syntax error in snapper.te - Dontaudit osad to search gconf home files - Allow rhsmcertd to manage /etc/sysconf/rhn director - Fix pcp labeling to accept /usr/bin for all daemon binaries - Fix mcelog_read_log() interface - Allow iscsid to manage iscsi lib files - Allow snapper domtrans to lvm_t. Add support for /etc/snapper and allow snapperd to manage it. - Make tuned_t as unconfined domain for RHEL7.0 - Allow ABRT to read puppet certs - Add sys_time capability for virt-ga - Allow gemu-ga to domtrans to hwclock_t - Allow additional access for virt_qemu_ga_t processes to read system clock and send audit messages - Fix some AVCs in pcp policy - Add to bacula capability setgid and setuid and allow to bind to bacula ports - Changed label from rhnsd_rw_conf_t to rhnsd_conf_t - Add access rhnsd and osad to /etc/sysconfig/rhn - drbdadm executes drbdmeta - Fixes needed for docker - Allow epmd to manage /var/log/rabbitmq/startup_err file - Allow beam.smp connect to amqp port - Modify xdm_write_home to allow create also links as xdm_home_t if the boolean is on true - Allow init_t to manage pluto.ctl because of init_t instead of initrc_t - Allow systemd_tmpfiles_t to manage all non security files on the system - Added labels for bacula ports - Fix label on /dev/vfio/vfio - Add kernel_mounton_messages() interface - init wants to manage lock files for iscsi- Added osad policy - Allow postfix to deliver to procmail - Allow bumblebee to seng kill signal to xserver - Allow vmtools to execute /usr/bin/lsb_release - Allow docker to write system net ctrls - Add support for rhnsd unit file - Add dbus_chat_session_bus() interface - Add dbus_stream_connect_session_bus() interface - Fix pcp.te - Fix logrotate_use_nfs boolean - Add lot of pcp fixes found in RHEL7 - fix labeling for pmie for pcp pkg - Change thumb_t to be allowed to chat/connect with session bus type - Allow call renice in mlocate - Add logrotate_use_nfs boolean - Allow setroubleshootd to read rpc sysctl- Turn on bacula, rhnsd policy - Add support for rhnsd unit file - Add dbus_chat_session_bus() interface - Add dbus_stream_connect_session_bus() interface - Fix logrotate_use_nfs boolean - Add lot of pcp fixes found in RHEL7 - fix labeling for pmie for pcp pkg - Change thumb_t to be allowed to chat/connect with session bus type - Allow call renice in mlocate - Add logrotate_use_nfs boolean - Allow setroubleshootd to read rpc sysctl - Fixes for *_admin interfaces - Add pegasus_openlmi_storage_var_run_t type def - Add support for /var/run/openlmi-storage - Allow tuned to create syslog.conf with correct labeling - Add httpd_dontaudit_search_dirs boolean - Add support for winbind.service - ALlow also fail2ban-client to read apache logs - Allow vmtools to getattr on all fs - Add support for dey_sapi port - Add logging_filetrans_named_conf() - Allow passwd_t to use ipc_lock, so that it can change the password in gnome-keyring- Update snapper policy - Allow domains to append rkhunter lib files - Allow snapperd to getattr on all fs - Allow xdm to create /var/gdm with correct labeling - Add label for snapper.log - Allow fail2ban-client to read apache log files - Allow thumb_t to execute dbus-daemon in thumb_t- Allow gdm to create /var/gdm with correct labeling - Allow domains to append rkhunterl lib files. #1057982 - Allow systemd_tmpfiles_t net_admin to communicate with journald - Add interface to getattr on an isid_type for any type of file - Update libs_filetrans_named_content() to have support for /usr/lib/debug directory - Allow initrc_t domtrans to authconfig if unconfined is enabled - Allow docker and mount on devpts chr_file - Allow docker to transition to unconfined_t if boolean set - init calling needs to be optional in domain.te - Allow uncofined domain types to handle transient unit files - Fix labeling for vfio devices - Allow net_admin capability and send system log msgs - Allow lldpad send dgram to NM - Add networkmanager_dgram_send() - rkhunter_var_lib_t is correct type - Back port pcp policy from rawhide - Allow openlmi-storage to read removable devices - Allow system cron jobs to manage rkhunter lib files - Add rkhunter_manage_lib_files() - Fix ftpd_use_fusefs boolean to allow manage also symlinks - Allow smbcontrob block_suspend cap2 - Allow slpd to read network and system state info - Allow NM domtrans to iscsid_t if iscsiadm is executed - Allow slapd to send a signal itself - Allow sslget running as pki_ra_t to contact port 8443, the secure port of the CA. - Fix plymouthd_create_log() interface - Add rkhunter policy with files type definition for /var/lib/rkhunter until it is fixed in rkhunter package - Add mozilla_plugin_exec_t for /usr/lib/firefox/plugin-container - Allow postfix and cyrus-imapd to work out of box - Allow fcoemon to talk with unpriv user domain using unix_stream_socket - Dontaudit domains that are calling into journald to net_admin - Add rules to allow vmtools to do what it does - snapperd is D-Bus service - Allow OpenLMI PowerManagement to call 'systemctl --force reboot' - Add haproxy_connect_any boolean - Allow haproxy also to use http cache port by default Resolves:#1058248- Allow apache to write to the owncloud data directory in /var/www/html... - Allow consolekit to create log dir - Add support for icinga CGI scripts - Add support for icinga - Allow kdumpctl_t to create kdump lock file Resolves:#1055634 - Allow kdump to create lnk lock file - Allow nscd_t block_suspen capability - Allow unconfined domain types to manage own transient unit file - Allow systemd domains to handle transient init unit files - Add interfaces to handle transient- Add cron unconfined role support for uncofined SELinux user - Call corenet_udp_bind_all_ports() in milter.te - Allow fence_virtd to connect to zented port - Fix header for mirrormanager_admin() - Allow dkim-milter to bind udp ports - Allow milter domains to send signull itself - Allow block_suspend for yum running as mock_t - Allow beam.smp to manage couchdb files - Add couchdb_manage_files() - Add labeling for /var/log/php_errors.log - Allow bumblebee to stream connect to xserver - Allow bumblebee to send a signal to xserver - gnome-thumbnail to stream connect to bumblebee - Allow xkbcomp running as bumblebee_t to execute bin_t - Allow logrotate to read squid.conf - Additional rules to get docker and lxc to play well with SELinux - Allow bumbleed to connect to xserver port - Allow pegasus_openlmi_storage_t to read hwdata- Allow init_t to work on transitient and snapshot unit files - Add logging_manage_syslog_config() - Update sysnet_dns_name_resolve() to allow connect to dnssec por - Allow pegasus_openlmi_storage_t to read hwdata Resolves:#1031721 - Fix rhcs_rw_cluster_tmpfs() - Allow fenced_t to bind on zented udp port - Added policy for vmtools - Fix mirrormanager_read_lib_files() - Allow mirromanager scripts running as httpd_t to manage mirrormanager pid files - Allow ctdb to create sock files in /var/run/ctdb - Add sblim_filetrans_named_content() interface - Allow rpm scritplets to create /run/gather with correct labeling - Allow gnome keyring domains to create gnome config dirs - Dontaudit read/write to init stream socket for lsmd_plugin_t - Allow automount to read nfs link files - Allow lsm plugins to read/write lsmd stream socket - Allow certmonger to connect ldap port to make IPA CA certificate renewal working. - Add also labeling for /var/run/ctdb - Add missing labeling for /var/lib/ctdb - ALlow tuned to manage syslog.conf. Should be fixed in tuned. #1030446 - Dontaudit hypervkvp to search homedirs - Dontaudit hypervkvp to search admin homedirs - Allow hypervkvp to execute bin_t and ifconfig in the caller domain - Dontaudit xguest_t to read ABRT conf files - Add abrt_dontaudit_read_config() - Allow namespace-init to getattr on fs - Add thumb_role() also for xguest - Add filename transitions to create .spamassassin with correct labeling - Allow apache domain to read mirrormanager pid files - Allow domains to read/write shm and sem owned by mozilla_plugin_t - Allow alsactl to send a generic signal to kernel_t- Add back rpm_run() for unconfined user- Add missing files_create_var_lib_dirs() - Fix typo in ipsec.te - Allow passwd to create directory in /var/lib - Add filename trans also for event21 - Allow iptables command to read /dev/rand - Add sigkill capabilityfor ipsec_t - Add filename transitions for bcache devices - Add additional rules to create /var/log/cron by syslogd_t with correct labeling - Add give everyone full access to all key rings - Add default lvm_var_run_t label for /var/run/multipathd - Fix log labeling to have correct default label for them after logrotate - Labeled ~/.nv/GLCache as being gstreamer output - Allow nagios_system_plugin to read mrtg lib files - Add mrtg_read_lib_files() - Call rhcs_rw_cluster_tmpfs for dlm_controld - Make authconfing as named_filetrans domain - Allow virsh to connect to user process using stream socket - Allow rtas_errd to read rand/urand devices and add chown capability - Fix labeling from /var/run/net-snmpd to correct /var/run/net-snmp Resolves:#1051497 - Add also chown cap for abrt_upload_watch_t. It already has dac_override - Allow sosreport to manage rhsmcertd pid files - Add rhsmcertd_manage_pid_files() - Allow also setgid cap for rpc.gssd - Dontaudit access check for abrt on cert_t - Allow pegasus_openlmi_system providers to dbus chat with systemd-logind- Fix semanage import handling in spec file- Add default lvm_var_run_t label for /var/run/multipathd Resolves:#1051430 - Fix log labeling to have correct default label for them after logrotate - Add files_write_root_dirs - Add new openflow port label for 6653/tcp and 6633/tcp - Add xserver_manage_xkb_libs() - Label tcp/8891 as milter por - Allow gnome_manage_generic_cache_files also create cache_home_t files - Fix aide.log labeling - Fix log labeling to have correct default label for them after logrotate - Allow mysqld-safe write access on /root to make mysqld working - Allow sosreport domtrans to prelikn - Allow OpenvSwitch to connec to openflow ports - Allow NM send dgram to lldpad - Allow hyperv domains to execute shell - Allow lsmd plugins stream connect to lsmd/init - Allow sblim domains to create /run/gather with correct labeling - Allow httpd to read ldap certs - Allow cupsd to send dbus msgs to process with different MLS level - Allow bumblebee to stream connect to apmd - Allow bumblebee to run xkbcomp - Additional allow rules to get libvirt-lxc containers working with docker - Additional allow rules to get libvirt-lxc containers working with docker - Allow docker to getattr on itself - Additional rules needed for sandbox apps - Allow mozilla_plugin to set attributes on usb device if use_spice boolean enabled - httpd should be able to send signal/signull to httpd_suexec_t - Add more fixes for neturon. Domtrans to dnsmasq, iptables. Make neutron as filenamtrans domain.- Add neutron fixes- Allow sshd to write to all process levels in order to change passwd when running at a level - Allow updpwd_t to downgrade /etc/passwd file to s0, if it is not running with this range - Allow apcuspd_t to status and start the power unit file - Allow udev to manage kdump unit file - Added new interface modutils_dontaudit_exec_insmod - Allow cobbler to search dhcp_etc_t directory - systemd_systemctl needs sys_admin capability - Allow sytemd_tmpfiles_t to delete all directories - passwd to create gnome-keyring passwd socket - Add missing zabbix_var_lib_t type - Fix filename trans for zabbixsrv in zabbix.te - Allow fprintd_t to send syslog messages - Add zabbix_var_lib_t for /var/lib/zabbixsrv, also allow zabix to connect to smtp port - Allow mozilla plugin to chat with policykit, needed for spice - Allow gssprozy to change user and gid, as well as read user keyrings - Label upgrades directory under /var/www as httpd_sys_rw_content_t, add other filetrans rules to label content correctly - Allow polipo to connect to http_cache_ports - Allow cron jobs to manage apache var lib content - Allow yppassword to manage the passwd_file_t - Allow showall_t to send itself signals - Allow cobbler to restart dhcpc, dnsmasq and bind services - Allow certmonger to manage home cert files - Add userdom filename trans for user mail domains - Allow apcuspd_t to status and start the power unit file - Allow cgroupdrulesengd to create content in cgoups directories - Allow smbd_t to signull cluster - Allow gluster daemon to create fifo files in glusterd_brick_t and sock_file in glusterd_var_lib_t - Add label for /var/spool/cron.aquota.user - Allow sandbox_x domains to use work with the mozilla plugin semaphore - Added new policy for speech-dispatcher - Added dontaudit rule for insmod_exec_t in rasdaemon policy - Updated rasdaemon policy - Allow system_mail_t to transition to postfix_postdrop_t - Clean up mirrormanager policy - Allow virt_domains to read cert files, needs backport to RHEL7 - Allow sssd to read systemd_login_var_run_t - Allow irc_t to execute shell and bin-t files: - Add new access for mythtv - Allow rsync_t to manage all non auth files - allow modemmanger to read /dev/urand - Allow sandbox apps to attempt to set and get capabilties- Add labeling for /var/lib/servicelog/servicelog.db-journal - Add support for freeipmi port - Add sysadm_u_default_contexts - Make new type to texlive files in homedir - Allow subscription-manager running as sosreport_t to manage rhsmcertd - Additional fixes for docker.te - Remove ability to do mount/sys_admin by default in virt_sandbox domains - New rules required to run docker images within libivrt - Add label for ~/.cvsignore - Change mirrormanager to be run by cron - Add mirrormanager policy - Fixed bumblebee_admin() and mip6d_admin() - Add log support for sensord - Fix typo in docker.te - Allow amanda to do backups over UDP - Allow bumblebee to read /etc/group and clean up bumblebee.te - type transitions with a filename not allowed inside conditionals - Don't allow virt-sandbox tools to use netlink out of the box, needs back port to RHEL7 - Make new type to texlive files in homedir- Allow freeipmi_ipmidetectd_t to use freeipmi port - Update freeipmi_domain_template() - Allow journalctl running as ABRT to read /run/log/journal - Allow NM to read dispatcher.d directory - Update freeipmi policy - Type transitions with a filename not allowed inside conditionals - Allow tor to bind to hplip port - Make new type to texlive files in homedir - Allow zabbix_agent to transition to dmidecode - Add rules for docker - Allow sosreport to send signull to unconfined_t - Add virt_noatsecure and virt_rlimitinh interfaces - Fix labeling in thumb.fc to add support for /usr/lib64/tumbler-1/tumblerddd support for freeipmi port - Add sysadm_u_default_contexts - Add logging_read_syslog_pid() - Fix userdom_manage_home_texlive() interface - Make new type to texlive files in homedir - Add filename transitions for /run and /lock links - Allow virtd to inherit rlimit information Resolves:#975358- Change labeling for /usr/libexec/nm-dispatcher.action to NetworkManager_exec_t Resolves:#1039879 - Add labeling for /usr/lib/systemd/system/mariadb.service - Allow hyperv_domain to read sysfs - Fix ldap_read_certs() interface to allow acess also link files - Add support for /usr/libexec/pegasus/cmpiLMI_Journald-cimprovagt - Allow tuned to run modprobe - Allow portreserve to search /var/lib/sss dir - Add SELinux support for the teamd package contains team network device control daemon. - Dontaudit access check on /proc for bumblebee - Bumblebee wants to load nvidia modules - Fix rpm_named_filetrans_log_files and wine.te - Add conman policy for rawhide - DRM master and input event devices are used by the TakeDevice API - Clean up bumblebee policy - Update pegasus_openlmi_storage_t policy - Add freeipmi_stream_connect() interface - Allow logwatch read madm.conf to support RAID setup - Add raid_read_conf_files() interface - Allow up2date running as rpm_t create up2date log file with rpm_log_t labeling - add rpm_named_filetrans_log_files() interface - Allow dkim-milter to create files/dirs in /tmp - update freeipmi policy - Add policy for freeipmi services - Added rdisc_admin and rdisc_systemctl interfaces - opensm policy clean up - openwsman policy clean up - ninfod policy clean up - Added new policy for ninfod - Added new policy for openwsman - Added rdisc_admin and rdisc_systemctl interfaces - Fix kernel_dontaudit_access_check_proc() - Add support for /dev/uhid - Allow sulogin to get the attributes of initctl and sys_admin cap - Add kernel_dontaudit_access_check_proc() - Fix dev_rw_ipmi_dev() - Fix new interface in devices.if - DRM master and input event devices are used by the TakeDevice API - add dev_rw_inherited_dri() and dev_rw_inherited_input_dev() - Added support for default conman port - Add interfaces for ipmi devices- Allow sosreport to send a signal to ABRT - Add proper aliases for pegasus_openlmi_service_exec_t and pegasus_openlmi_service_t - Label /usr/sbin/htcacheclean as httpd_exec_t Resolves:#1037529 - Added support for rdisc unit file - Add antivirus_db_t labeling for /var/lib/clamav-unofficial-sigs - Allow runuser running as logrotate connections to system DBUS - Label bcache devices as fixed_disk_device_t - Allow systemctl running in ipsec_mgmt_t to access /usr/lib/systemd/system/ipsec.service - Label /usr/lib/systemd/system/ipsec.service as ipsec_mgmt_unit_file_t- Add back setpgid/setsched for sosreport_t- Added fix for clout_init to transition to rpm_script_t (dwalsh@redhat.com)- Dontaudit openshift domains trying to use rawip_sockets, this is caused by a bad check in the kernel. - Allow git_system_t to read git_user_content if the git_system_enable_homedirs boolean is turned on - Add lsmd_plugin_t for lsm plugins - Allow dovecot-deliver to search mountpoints - Add labeling for /etc/mdadm.conf - Allow opelmi admin providers to dbus chat with init_t - Allow sblim domain to read /dev/urandom and /dev/random - Allow apmd to request the kernel load modules - Add glusterd_brick_t type - label mate-keyring-daemon with gkeyringd_exec_t - Add plymouthd_create_log() - Dontaudit leaks from openshift domains into mail domains, needs back port to RHEL6 - Allow sssd to request the kernel loads modules - Allow gpg_agent to use ssh-add - Allow gpg_agent to use ssh-add - Dontaudit access check on /root for myslqd_safe_t - Allow ctdb to getattr on al filesystems - Allow abrt to stream connect to syslog - Allow dnsmasq to list dnsmasq.d directory - Watchdog opens the raw socket - Allow watchdog to read network state info - Dontaudit access check on lvm lock dir - Allow sosreport to send signull to setroubleshootd - Add setroubleshoot_signull() interface - Fix ldap_read_certs() interface - Allow sosreport all signal perms - Allow sosreport to run systemctl - Allow sosreport to dbus chat with rpm - Add glusterd_brick_t files type - Allow zabbix_agentd to read all domain state - Clean up rtas.if - Allow smoltclient to execute ldconfig - Allow sosreport to request the kernel to load a module - Fix userdom_confined_admin_template() - Add back exec_content boolean for secadm, logadm, auditadm - Fix files_filetrans_system_db_named_files() interface - Allow sulogin to getattr on /proc/kcore - Add filename transition also for servicelog.db-journal - Add files_dontaudit_access_check_root() - Add lvm_dontaudit_access_check_lock() interface- Allow watchdog to read /etc/passwd - Allow browser plugins to connect to bumblebee - New policy for bumblebee and freqset - Add new policy for mip6d daemon - Add new policy for opensm daemon - Allow condor domains to read/write condor_master udp_socket - Allow openshift_cron_t to append to openshift log files, label /var/log/openshift - Add back file_pid_filetrans for /var/run/dlm_controld - Allow smbd_t to use inherited tmpfs content - Allow mcelog to use the /dev/cpu device - sosreport runs rpcinfo - sosreport runs subscription-manager - Allow staff_t to run frequency command - Allow systemd_tmpfiles to relabel log directories - Allow staff_t to read xserver_log file - Label hsperfdata_root as tmp_t- More sosreport fixes to make ABRT working- Fix files_dontaudit_unmount_all_mountpoints() - Add support for 2608-2609 tcp/udp ports - Should allow domains to lock the terminal device - More fixes for user config files to make crond_t running in userdomain - Add back disable/reload/enable permissions for system class - Fix manage_service_perms macro - We need to require passwd rootok - Fix zebra.fc - Fix dnsmasq_filetrans_named_content() interface - Allow all sandbox domains create content in svirt_home_t - Allow zebra domains also create zebra_tmp_t files in /tmp - Add support for new zebra services:isisd,babeld. Add systemd support for zebra services. - Fix labeling on neutron and remove transition to iconfig_t - abrt needs to read mcelog log file - Fix labeling on dnsmasq content - Fix labeling on /etc/dnsmasq.d - Allow glusterd to relabel own lib files - Allow sandbox domains to use pam_rootok, and dontaudit attempts to unmount file systems, this is caused by a bug in systemd - Allow ipc_lock for abrt to run journalctl- Fix config.tgz- Fix passenger_stream_connect interface - setroubleshoot_fixit wants to read network state - Allow procmail_t to connect to dovecot stream sockets - Allow cimprovagt service providers to read network states - Add labeling for /var/run/mariadb - pwauth uses lastlog() to update system's lastlog - Allow account provider to read login records - Add support for texlive2013 - More fixes for user config files to make crond_t running in userdomain - Add back disable/reload/enable permissions for system class - Fix manage_service_perms macro - Allow passwd_t to connect to gnome keyring to change password - Update mls config files to have cronjobs in the user domains - Remove access checks that systemd does not actually do- Add support for yubikey in homedir - Add support for upd/3052 port - Allow apcupsd to use PowerChute Network Shutdown - Allow lsmd to execute various lsmplugins - Add labeling also for /etc/watchdog\.d where are watchdog scripts located too - Update gluster_export_all_rw boolean to allow relabel all base file types - Allow x86_energy_perf tool to modify the MSR - Fix /var/lib/dspam/data labeling- Add files_relabel_base_file_types() interface - Allow netlabel-config to read passwd - update gluster_export_all_rw boolean to allow relabel all base file types caused by lsetxattr() - Allow x86_energy_perf tool to modify the MSR - Fix /var/lib/dspam/data labeling - Allow pegasus to domtrans to mount_t - Add labeling for unconfined scripts in /usr/libexec/watchdog/scripts - Add support for unconfined watchdog scripts - Allow watchdog to manage own log files- Add label only for redhat.repo instead of /etc/yum.repos.d. But probably we will need to switch for the directory. - Label /etc/yum.repos.d as system_conf_t - Use sysnet_filetrans_named_content in udev.te instead of generic transition for net_conf_t - Allow dac_override for sysadm_screen_t - Allow init_t to read ipsec_conf_t as we had it for initrc_t. Needed by ipsec unit file. - Allow netlabel-config to read meminfo - Add interface to allow docker to mounton file_t - Add new interface to exec unlabeled files - Allow lvm to use docker semaphores - Setup transitons for .xsessions-errors.old - Change labels of files in /var/lib/*/.ssh to transition properly - Allow staff_t and user_t to look at logs using journalctl - pluto wants to manage own log file - Allow pluto running as ipsec_t to create pluto.log - Fix alias decl in corenetwork.te.in - Add support for fuse.glusterfs - Allow dmidecode to read/write /run/lock/subsys/rhsmcertd - Allow rhsmcertd to manage redhat.repo which is now labeled as system.conf. Allow rhsmcertd to manage all log files. - Additional access for docker - Added more rules to sblim policy - Fix kdumpgui_run_bootloader boolean - Allow dspam to connect to lmtp port - Included sfcbd service into sblim policy - rhsmcertd wants to manaage /etc/pki/consumer dir - Add kdumpgui_run_bootloader boolean - Add support for /var/cache/watchdog - Remove virt_domain attribute for virt_qemu_ga_unconfined_t - Fixes for handling libvirt containes - Dontaudit attempts by mysql_safe to write content into / - Dontaudit attempts by system_mail to modify network config - Allow dspam to bind to lmtp ports - Add new policy to allow staff_t and user_t to look at logs using journalctl - Allow apache cgi scripts to list sysfs - Dontaudit attempts to write/delete user_tmp_t files - Allow all antivirus domains to manage also own log dirs - Allow pegasus_openlmi_services_t to stream connect to sssd_t- Add missing permission checks for nscd- Fix alias decl in corenetwork.te.in - Add support for fuse.glusterfs - Add file transition rules for content created by f5link - Rename quantum_port information to neutron - Allow all antivirus domains to manage also own log dirs - Rename quantum_port information to neutron - Allow pegasus_openlmi_services_t to stream connect to sssd_t- Allow sysadm_t to read login information - Allow systemd_tmpfiles to setattr on var_log_t directories - Udpdate Makefile to include systemd_contexts - Add systemd_contexts - Add fs_exec_hugetlbfs_files() interface - Add daemons_enable_cluster_mode boolean - Fix rsync_filetrans_named_content() - Add rhcs_read_cluster_pid_files() interface - Update rhcs.if with additional interfaces from RHEL6 - Fix rhcs_domain_template() to not create run dirs with cluster_var_run_t - Allow glusterd_t to mounton glusterd_tmp_t - Allow glusterd to unmout al filesystems - Allow xenstored to read virt config - Add label for swift_server.lock and make add filetrans_named_content to make sure content gets created with the correct label - Allow mozilla_plugin_t to mmap hugepages as an executable- Add back userdom_security_admin_template() interface and use it for sysadm_t if sysadm_secadm.pp- Allow sshd_t to read openshift content, needs backport to RHEL6.5 - Label /usr/lib64/sasl2/libsasldb.so.3.0.0 as textrel_shlib_t - Make sur kdump lock is created with correct label if kdumpctl is executed - gnome interface calls should always be made within an optional_block - Allow syslogd_t to connect to the syslog_tls port - Add labeling for /var/run/charon.ctl socket - Add kdump_filetrans_named_content() - Allo setpgid for fenced_t - Allow setpgid and r/w cluster tmpfs for fenced_t - gnome calls should always be within optional blocks - wicd.pid should be labeled as networkmanager_var_run_t - Allow sys_resource for lldpad- Add rtas policy- Allow mailserver_domains to manage and transition to mailman data - Dontaudit attempts by mozilla plugin to relabel content, caused by using mv and cp commands - Allow mailserver_domains to manage and transition to mailman data - Allow svirt_domains to read sysctl_net_t - Allow thumb_t to use tmpfs inherited from the user - Allow mozilla_plugin to bind to the vnc port if running with spice - Add new attribute to discover confined_admins and assign confined admin to it - Fix zabbix to handle attributes in interfaces - Fix zabbix to read system states for all zabbix domains - Fix piranha_domain_template() - Allow ctdbd to create udp_socket. Allow ndmbd to access ctdbd var files. - Allow lldpad sys_rouserce cap due to #986870 - Allow dovecot-auth to read nologin - Allow openlmi-networking to read /proc/net/dev - Allow smsd_t to execute scripts created on the fly labeled as smsd_spool_t - Add zabbix_domain attribute for zabbix domains to treat them together - Add labels for zabbix-poxy-* (#1018221) - Update openlmi-storage policy to reflect #1015067 - Back port piranha tmpfs fixes from RHEL6 - Update httpd_can_sendmail boolean to allow read/write postfix spool maildrop - Add postfix_rw_spool_maildrop_files interface - Call new userdom_admin_user_templat() also for sysadm_secadm.pp - Fix typo in userdom_admin_user_template() - Allow SELinux users to create coolkeypk11sE-Gate in /var/cache/coolkey - Add new attribute to discover confined_admins - Fix labeling for /etc/strongswan/ipsec.d - systemd_logind seems to pass fd to anyone who dbus communicates with it - Dontaudit leaked write descriptor to dmesg- Activate motion policy- Fix gnome_read_generic_data_home_files() - allow openshift_cgroup_t to read/write inherited openshift file types - Remove httpd_cobbler_content * from cobbler_admin interface - Allow svirt sandbox domains to setattr on chr_file and blk_file svirt_sandbox_file_t, so sshd will work within a container - Allow httpd_t to read also git sys content symlinks - Allow init_t to read gnome home data - Dontaudit setroubleshoot_fixit_t execmem, since it does not seem to really need it. - Allow virsh to execute systemctl - Fix for nagios_services plugins - add type defintion for ctdbd_var_t - Add support for /var/ctdb. Allow ctdb block_suspend and read /etc/passwd file - Allow net_admin/netlink_socket all hyperv_domain domains - Add labeling for zarafa-search.log and zarafa-search.pid - Fix hypervkvp.te - Fix nscd_shm_use() - Add initial policy for /usr/sbin/hypervvssd in hypervkvp policy which should be renamed to hyperv. Also add hyperv_domain attribute to treat these HyperV services. - Add hypervkvp_unit_file_t type - Fix logging policy - Allow syslog to bind to tls ports - Update labeling for /dev/cdc-wdm - Allow to su_domain to read init states - Allow init_t to read gnome home data - Make sure if systemd_logind creates nologin file with the correct label - Clean up ipsec.te- Add auth_exec_chkpwd interface - Fix port definition for ctdb ports - Allow systemd domains to read /dev/urand - Dontaudit attempts for mozilla_plugin to append to /dev/random - Add label for /var/run/charon.* - Add labeling for /usr/lib/systemd/system/lvm2.*dd policy for motion service - Fix for nagios_services plugins - Fix some bugs in zoneminder policy - add type defintion for ctdbd_var_t - Add support for /var/ctdb. Allow ctdb block_suspend and read /etc/passwd file - Allow net_admin/netlink_socket all hyperv_domain domains - Add labeling for zarafa-search.log and zarafa-search.pid - glusterd binds to random unreserved ports - Additional allow rules found by testing glusterfs - apcupsd needs to send a message to all users on the system so needs to look them up - Fix the label on ~/.juniper_networks - Dontaudit attempts for mozilla_plugin to append to /dev/random - Allow polipo_daemon to connect to flash ports - Allow gssproxy_t to create replay caches - Fix nscd_shm_use() - Add initial policy for /usr/sbin/hypervvssd in hypervkvp policy which should be renamed to hyperv. Also add hyperv_domain attribute to treat these HyperV services. - Add hypervkvp_unit_file_t type- init reload from systemd_localed_t - Allow domains that communicate with systemd_logind_sessions to use systemd_logind_t fd - Allow systemd_localed_t to ask systemd to reload the locale. - Add systemd_runtime_unit_file_t type for unit files that systemd creates in memory - Allow readahead to read /dev/urand - Fix lots of avcs about tuned - Any file names xenstored in /var/log should be treated as xenstored_var_log_t - Allow tuned to inderact with hugepages - Allow condor domains to list etc rw dirs- Fix nscd_shm_use() - Add initial policy for /usr/sbin/hypervvssd in hypervkvp policy which should be renamed to hyperv. Also add hyperv_domain attribute to treat these HyperV services. - Add hypervkvp_unit_file_t type - Add additional fixes forpegasus_openlmi_account_t - Allow mdadm to read /dev/urand - Allow pegasus_openlmi_storage_t to create mdadm.conf and write it - Add label/rules for /etc/mdadm.conf - Allow pegasus_openlmi_storage_t to transition to fsadm_t - Fixes for interface definition problems - Dontaudit dovecot-deliver to gettatr on all fs dirs - Allow domains to search data_home_t directories - Allow cobblerd to connect to mysql - Allow mdadm to r/w kdump lock files - Add support for kdump lock files - Label zarafa-search as zarafa-indexer - Openshift cgroup wants to read /etc/passwd - Add new sandbox domains for kvm - Allow mpd to interact with pulseaudio if mpd_enable_homedirs is turned on - Fix labeling for /usr/lib/systemd/system/lvm2.* - Add labeling for /usr/lib/systemd/system/lvm2.* - Fix typos to get a new build. We should not cover filename trans rules to prevent duplicate rules - Add sshd_keygen_t policy for sshd-keygen - Fix alsa_home_filetrans interface name and definition - Allow chown for ssh_keygen_t - Add fs_dontaudit_getattr_all_dirs() - Allow init_t to manage etc_aliases_t and read xserver_var_lib_t and chrony keys - Fix up patch to allow systemd to manage home content - Allow domains to send/recv unlabeled traffic if unlabelednet.pp is enabled - Allow getty to exec hostname to get info - Add systemd_home_t for ~/.local/share/systemd directory- Fix lxc labels in config.tgz- Fix labeling for /usr/libexec/kde4/kcmdatetimehelper - Allow tuned to search all file system directories - Allow alsa_t to sys_nice, to get top performance for sound management - Add support for MySQL/PostgreSQL for amavis - Allow openvpn_t to manage openvpn_var_log_t files. - Allow dirsrv_t to create tmpfs_t directories - Allow dirsrv to create dirs in /dev/shm with dirsrv_tmpfs label - Dontaudit leaked unix_stream_sockets into gnome keyring - Allow telepathy domains to inhibit pipes on telepathy domains - Allow cloud-init to domtrans to rpm - Allow abrt daemon to manage abrt-watch tmp files - Allow abrt-upload-watcher to search /var/spool directory - Allow nsswitch domains to manage own process key - Fix labeling for mgetty.* logs - Allow systemd to dbus chat with upower - Allow ipsec to send signull to itself - Allow setgid cap for ipsec_t - Match upstream labeling- Do not build sanbox pkg on MLS- wine_tmp is no longer needed - Allow setroubleshoot to look at /proc - Allow telepathy domains to dbus with systemd logind - Fix handling of fifo files of rpm - Allow mozilla_plugin to transition to itself - Allow certwatch to write to cert_t directories - New abrt application - Allow NetworkManager to set the kernel scheduler - Make wine_domain shared by all wine domains - Allow mdadm_t to read images labeled svirt_image_t - Allow amanda to read /dev/urand - ALlow my_print_default to read /dev/urand - Allow mdadm to write to kdumpctl fifo files - Allow nslcd to send signull to itself - Allow yppasswd to read /dev/urandom - Fix zarafa_setrlimit - Add support for /var/lib/php/wsdlcache - Add zarafa_setrlimit boolean - Allow fetchmail to send mails - Add additional alias for user_tmp_t because wine_tmp_t is no longer used - More handling of ther kernel keyring required by kerberos - New privs needed for init_t when running without transition to initrc_t over bin_t, and without unconfined domain installed- Dontaudit attempts by sosreport to read shadow_t - Allow browser sandbox plugins to connect to cups to print - Add new label mpd_home_t - Label /srv/www/logs as httpd_log_t - Add support for /var/lib/php/wsdlcache - Add zarafa_setrlimit boolean - Allow fetchmail to send mails - Add labels for apache logs under miq package - Allow irc_t to use tcp sockets - fix labels in puppet.if - Allow tcsd to read utmp file - Allow openshift_cron_t to run ssh-keygen in ssh_keygen_t to access host keys - Define svirt_socket_t as a domain_type - Take away transition from init_t to initrc_t when executing bin_t, allow init_t to run chk_passwd_t - Fix label on pam_krb5 helper apps- Allow ldconfig to write to kdumpctl fifo files - allow neutron to connect to amqp ports - Allow kdump_manage_crash to list the kdump_crash_t directory - Allow glance-api to connect to amqp port - Allow virt_qemu_ga_t to read meminfo - Add antivirus_home_t type for antivirus date in HOMEDIRS - Allow mpd setcap which is needed by pulseaudio - Allow smbcontrol to create content in /var/lib/samba - Allow mozilla_exec_t to be used as a entrypoint to mozilla_domtrans_spec - Add additional labeling for qemu-ga/fsfreeze-hook.d scripts - amanda_exec_t needs to be executable file - Allow block_suspend cap for samba-net - Allow apps that read ipsec_mgmt_var_run_t to search ipsec_var_run_t - Allow init_t to run crash utility - Treat usr_t just like bin_t for transitions and executions - Add port definition of pka_ca to port 829 for openshift - Allow selinux_store to use symlinks- Allow block_suspend cap for samba-net - Allow t-mission-control to manage gabble cache files - Allow nslcd to read /sys/devices/system/cpu - Allow selinux_store to use symlinks- Allow xdm_t to transition to itself - Call neutron interfaces instead of quantum - Allow init to change targed role to make uncofined services (xrdp which now has own systemd unit file) working. We want them to have in unconfined_t - Make sure directories in /run get created with the correct label - Make sure /root/.pki gets created with the right label - try to remove labeling for motion from zoneminder_exec_t to bin_t - Allow inetd_t to execute shell scripts - Allow cloud-init to read all domainstate - Fix to use quantum port - Add interface netowrkmanager_initrc_domtrans - Fix boinc_execmem - Allow t-mission-control to read gabble cache home - Add labeling for ~/.cache/telepathy/avatars/gabble - Allow memcache to read sysfs data - Cleanup antivirus policy and add additional fixes - Add boolean boinc_enable_execstack - Add support for couchdb in rabbitmq policy - Add interface couchdb_search_pid_dirs - Allow firewalld to read NM state - Allow systemd running as git_systemd to bind git port - Fix mozilla_plugin_rw_tmpfs_files()- Split out rlogin ports from inetd - Treat files labeld as usr_t like bin_t when it comes to transitions - Allow staff_t to read login config - Allow ipsec_t to read .google authenticator data - Allow systemd running as git_systemd to bind git port - Fix mozilla_plugin_rw_tmpfs_files() - Call the correct interface - corenet_udp_bind_ktalkd_port() - Allow all domains that can read gnome_config to read kde config - Allow sandbox domain to read/write mozilla_plugin_tmpfs_t so pulseaudio will work - Allow mdadm to getattr any file system - Allow a confined domain to executes mozilla_exec_t via dbus - Allow cupsd_lpd_t to bind to the printer port - Dontaudit attempts to bind to ports < 1024 when nis is turned on - Allow apache domain to connect to gssproxy socket - Allow rlogind to bind to the rlogin_port - Allow telnetd to bind to the telnetd_port - Allow ktalkd to bind to the ktalkd_port - Allow cvs to bind to the cvs_port- Cleanup related to init_domain()+inetd_domain fixes - Use just init_domain instead of init_daemon_domain in inetd_core_service_domain - svirt domains neeed to create kobject_uevint_sockets - Lots of new access required for sosreport - Allow tgtd_t to connect to isns ports - Allow init_t to transition to all inetd domains: - openct needs to be able to create netlink_object_uevent_sockets - Dontaudit leaks into ldconfig_t - Dontaudit su domains getattr on /dev devices, move su domains to attribute based calls - Move kernel_stream_connect into all Xwindow using users - Dontaudit inherited lock files in ifconfig o dhcpc_t- Also sock_file trans rule is needed in lsm - Fix labeling for fetchmail pid files/dirs - Add additional fixes for abrt-upload-watch - Fix polipo.te - Fix transition rules in asterisk policy - Add fowner capability to networkmanager policy - Allow polipo to connect to tor ports - Cleanup lsmd.if - Cleanup openhpid policy - Fix kdump_read_crash() interface - Make more domains as init domain - Fix cupsd.te - Fix requires in rpm_rw_script_inherited_pipes - Fix interfaces in lsm.if - Allow munin service plugins to manage own tmpfs files/dirs - Allow virtd_t also relabel unix stream sockets for virt_image_type - Make ktalk as init domain - Fix to define ktalkd_unit_file_t correctly - Fix ktalk.fc - Add systemd support for talk-server - Allow glusterd to create sock_file in /run - Allow xdm_t to delete gkeyringd_tmp_t files on logout - Add fixes for hypervkvp policy - Add logwatch_can_sendmail boolean - Allow mysqld_safe_t to handle also symlinks in /var/log/mariadb - Allow xdm_t to delete gkeyringd_tmp_t files on logout- Add selinux-policy-sandbox pkg0 - Allow rhsmcertd to read init state - Allow fsetid for pkcsslotd - Fix labeling for /usr/lib/systemd/system/pkcsslotd.service - Allow fetchmail to create own pid with correct labeling - Fix rhcs_domain_template() - Allow roles which can run mock to read mock lib files to view results - Allow rpcbind to use nsswitch - Fix lsm.if summary - Fix collectd_t can read /etc/passwd file - Label systemd unit files under dracut correctly - Add support for pam_mount to mount user's encrypted home When a user logs in and logs out using ssh - Add support for .Xauthority-n - Label umount.crypt as lvm_exec_t - Allow syslogd to search psad lib files - Allow ssh_t to use /dev/ptmx - Make sure /run/pluto dir is created with correct labeling - Allow syslog to run shell and bin_t commands - Allow ip to relabel tun_sockets - Allow mount to create directories in files under /run - Allow processes to use inherited fifo files- Add policy for lsmd - Add support for /var/log/mariadb dir and allow mysqld_safe to list this directory - Update condor_master rules to allow read system state info and allow logging - Add labeling for /etc/condor and allow condor domain to write it (bug) - Allow condor domains to manage own logs - Allow glusterd to read domains state - Fix initial hypervkvp policy - Add policy for hypervkvpd - Fix redis.if summary- Allow boinc to connect to @/tmp/.X11-unix/X0 - Allow beam.smp to connect to tcp/5984 - Allow named to manage own log files - Add label for /usr/libexec/dcc/start-dccifd and domtrans to dccifd_t - Add virt_transition_userdomain boolean decl - Allow httpd_t to sendto unix_dgram sockets on its children - Allow nova domains to execute ifconfig - bluetooth wants to create fifo_files in /tmp - exim needs to be able to manage mailman data - Allow sysstat to getattr on all file systems - Looks like bluetoothd has moved - Allow collectd to send ping packets - Allow svirt_lxc domains to getpgid - Remove virt-sandbox-service labeling as virsh_exec_t, since it no longer does virsh_t stuff - Allow frpintd_t to read /dev/urandom - Allow asterisk_t to create sock_file in /var/run - Allow usbmuxd to use netlink_kobject - sosreport needs to getattr on lots of devices, and needs access to netlink_kobject_uevent_socket - More cleanup of svirt_lxc policy - virtd_lxc_t now talks to dbus - Dontaudit leaked ptmx_t - Allow processes to use inherited fifo files - Allow openvpn_t to connect to squid ports - Allow prelink_cron_system_t to ask systemd to reloaddd miscfiles_dontaudit_access_check_cert() - Allow ssh_t to use /dev/ptmx - Make sure /run/pluto dir is created with correct labeling - Allow syslog to run shell and bin_t commands - Allow ip to relabel tun_sockets - Allow mount to create directories in files under /run - Allow processes to use inherited fifo files - Allow user roles to connect to the journal socket- selinux_set_enforce_mode needs to be used with type - Add append to the dontaudit for unix_stream_socket of xdm_t leak - Allow xdm_t to create symlinks in log direcotries - Allow login programs to read afs config - Label 10933 as a pop port, for dovecot - New policy to allow selinux_server.py to run as semanage_t as a dbus service - Add fixes to make netlabelctl working on MLS - AVCs required for running sepolicy gui as staff_t - Dontaudit attempts to read symlinks, sepolicy gui is likely to cause this type of AVC - New dbus server to be used with new gui - After modifying some files in /etc/mail, I saw this needed on the next boot - Loading a vm from /usr/tmp with virt-manager - Clean up oracleasm policy for Fedora - Add oracleasm policy written by rlopez@redhat.com - Make postfix_postdrop_t as mta_agent to allow domtrans to system mail if it is executed by apache - Add label for /var/crash - Allow fenced to domtrans to sanclok_t - Allow nagios to manage nagios spool files - Make tfptd as home_manager - Allow kdump to read kcore on MLS system - Allow mysqld-safe sys_nice/sys_resource caps - Allow apache to search automount tmp dirs if http_use_nfs is enabled - Allow crond to transition to named_t, for use with unbound - Allow crond to look at named_conf_t, for unbound - Allow mozilla_plugin_t to transition its home content - Allow dovecot_domain to read all system and network state - Allow httpd_user_script_t to call getpw - Allow semanage to read pid files - Dontaudit leaked file descriptors from user domain into thumb - Make PAM authentication working if it is enabled in ejabberd - Add fixes for rabbit to fix ##992920,#992931 - Allow glusterd to mount filesystems - Loading a vm from /usr/tmp with virt-manager - Trying to load a VM I got an AVC from devicekit_disk for loopcontrol device - Add fix for pand service - shorewall touches own log - Allow nrpe to list /var - Mozilla_plugin_roles can not be passed into lpd_run_lpr - Allow afs domains to read afs_config files - Allow login programs to read afs config - Allow virt_domain to read virt_var_run_t symlinks - Allow smokeping to send its process signals - Allow fetchmail to setuid - Add kdump_manage_crash() interface - Allow abrt domain to write abrt.socket- Add more aliases in pegasus.te - Add more fixes for *_admin interfaces - Add interface fixes - Allow nscd to stream connect to nmbd - Allow gnupg apps to write to pcscd socket - Add more fixes for openlmi provides. Fix naming and support for additionals - Allow fetchmail to resolve host names - Allow firewalld to interact also with lnk files labeled as firewalld_etc_rw_t - Add labeling for cmpiLMI_Fan-cimprovagt - Allow net_admin for glusterd - Allow telepathy domain to create dconf with correct labeling in /home/userX/.cache/ - Add pegasus_openlmi_system_t - Fix puppet_domtrans_master() to make all puppet calling working in passenger.te - Fix corecmd_exec_chroot() - Fix logging_relabel_syslog_pid_socket interface - Fix typo in unconfineduser.te - Allow system_r to access unconfined_dbusd_t to run hp_chec- Allow xdm_t to act as a dbus client to itsel - Allow fetchmail to resolve host names - Allow gnupg apps to write to pcscd socket - Add labeling for cmpiLMI_Fan-cimprovagt - Allow net_admin for glusterd - Allow telepathy domain to create dconf with correct labeling in /home/userX/.cache/ - Add pegasus_openlmi_system_t - Fix puppet_domtrans_master() to make all puppet calling working in passenger.te -httpd_t does access_check on certs- Add support for cmpiLMI_Service-cimprovagt - Allow pegasus domtrans to rpm_t to make pycmpiLMI_Software-cimprovagt running as rpm_t - Label pycmpiLMI_Software-cimprovagt as rpm_exec_t - Add support for pycmpiLMI_Storage-cimprovagt - Add support for cmpiLMI_Networking-cimprovagt - Allow system_cronjob_t to create user_tmpfs_t to make pulseaudio working - Allow virtual machines and containers to run as user doains, needed for virt-sandbox - Allow buglist.cgi to read cpu info- Allow systemd-tmpfile to handle tmp content in print spool dir - Allow systemd-sysctl to send system log messages - Add support for RTP media ports and fmpro-internal - Make auditd working if audit is configured to perform SINGLE action on disk error - Add interfaces to handle systemd units - Make systemd-notify working if pcsd is used - Add support for netlabel and label /usr/sbin/netlabelctl as iptables_exec_t - Instead of having all unconfined domains get all of the named transition rules, - Only allow unconfined_t, init_t, initrc_t and rpm_script_t by default. - Add definition for the salt ports - Allow xdm_t to create link files in xdm_var_run_t - Dontaudit reads of blk files or chr files leaked into ldconfig_t - Allow sys_chroot for useradd_t - Allow net_raw cap for ipsec_t - Allow sysadm_t to reload services - Add additional fixes to make strongswan working with a simple conf - Allow sysadm_t to enable/disable init_t services - Add additional glusterd perms - Allow apache to read lnk files in the /mnt directory - Allow glusterd to ask the kernel to load a module - Fix description of ftpd_use_fusefs boolean - Allow svirt_lxc_net_t to sys_chroot, modify policy to tighten up svirt_lxc_domain capabilties and process controls, but add them to svirt_lxc_net_t - Allow glusterds to request load a kernel module - Allow boinc to stream connect to xserver_t - Allow sblim domains to read /etc/passwd - Allow mdadm to read usb devices - Allow collectd to use ping plugin - Make foghorn working with SNMP - Allow sssd to read ldap certs - Allow haproxy to connect to RTP media ports - Add additional trans rules for aide_db - Add labeling for /usr/lib/pcsd/pcsd - Add labeling for /var/log/pcsd - Add support for pcs which is a corosync and pacemaker configuration tool- Label /var/lib/ipa/pki-ca/publish as pki_tomcat_cert_t - Add labeling for /usr/libexec/kde4/polkit-kde-authentication-agent-1 - Allow all domains that can domtrans to shutdown, to start the power services script to shutdown - consolekit needs to be able to shut down system - Move around interfaces - Remove nfsd_rw_t and nfsd_ro_t, they don't do anything - Add additional fixes for rabbitmq_beam to allow getattr on mountpoints - Allow gconf-defaults-m to read /etc/passwd - Fix pki_rw_tomcat_cert() interface to support lnk_files- Add support for gluster ports - Make sure that all keys located in /etc/ssh/ are labeled correctly - Make sure apcuspd lock files get created with the correct label - Use getcap in gluster.te - Fix gluster policy - add additional fixes to allow beam.smp to interact with couchdb files - Additional fix for #974149 - Allow gluster to user gluster ports - Allow glusterd to transition to rpcd_t and add additional fixes for #980683 - Allow tgtd working when accessing to the passthrough device - Fix labeling for mdadm unit files- Add mdadm fixes- Fix definition of sandbox.disabled to sandbox.pp.disabled- Allow mdamd to execute systemctl - Allow mdadm to read /dev/kvm - Allow ipsec_mgmt_t to read l2tpd pid content- Allow nsd_t to read /dev/urand - Allow mdadm_t to read framebuffer - Allow rabbitmq_beam_t to read process info on rabbitmq_epmd_t - Allow mozilla_plugin_config_t to create tmp files - Cleanup openvswitch policy - Allow mozilla plugin to getattr on all executables - Allow l2tpd_t to create fifo_files in /var/run - Allow samba to touch/manage fifo_files or sock_files in a samba_share_t directory - Allow mdadm to connecto its own unix_stream_socket - FIXME: nagios changed locations to /log/nagios which is wrong. But we need to have this workaround for now. - Allow apache to access smokeping pid files - Allow rabbitmq_beam_t to getattr on all filesystems - Add systemd support for iodined - Allow nup_upsdrvctl_t to execute its entrypoint - Allow fail2ban_client to write to fail2ban_var_run_t, Also allow it to use nsswitch - add labeling for ~/.cache/libvirt-sandbox - Add interface to allow domains transitioned to by confined users to send sigchld to screen program - Allow sysadm_t to check the system status of files labeled etc_t, /etc/fstab - Allow systemd_localed to start /usr/lib/systemd/system/systemd-vconsole-setup.service - Allow an domain that has an entrypoint from a type to be allowed to execute the entrypoint without a transition, I can see no case where this is a bad thing, and elminiates a whole class of AVCs. - Allow staff to getsched all domains, required to run htop - Add port definition for redis port - fix selinuxuser_use_ssh_chroot boolean- Add prosody policy written by Michael Scherer - Allow nagios plugins to read /sys info - ntpd needs to manage own log files - Add support for HOME_DIR/.IBMERS - Allow iptables commands to read firewalld config - Allow consolekit_t to read utmp - Fix filename transitions on .razor directory - Add additional fixes to make DSPAM with LDA working - Allow snort to read /etc/passwd - Allow fail2ban to communicate with firewalld over dbus - Dontaudit openshift_cgreoup_file_t read/write leaked dev - Allow nfsd to use mountd port - Call th proper interface - Allow openvswitch to read sys and execute plymouth - Allow tmpwatch to read /var/spool/cups/tmp - Add support for /usr/libexec/telepathy-rakia - Add systemd support for zoneminder - Allow mysql to create files/directories under /var/log/mysql - Allow zoneminder apache scripts to rw zoneminder tmpfs - Allow httpd to manage zoneminder lib files - Add zoneminder_run_sudo boolean to allow to start zoneminder - Allow zoneminder to send mails - gssproxy_t sock_file can be under /var/lib - Allow web domains to connect to whois port. - Allow sandbox_web_type to connect to the same ports as mozilla_plugin_t. - We really need to add an interface to corenet to define what a web_client_domain is and - then define chrome_sandbox_t, mozilla_plugin_t and sandbox_web_type to that domain. - Add labeling for cmpiLMI_LogicalFile-cimprovagt - Also make pegasus_openlmi_logicalfile_t as unconfined to have unconfined_domain attribute for filename trans rules - Update policy rules for pegasus_openlmi_logicalfile_t - Add initial types for logicalfile/unconfined OpenLMI providers - mailmanctl needs to read own log - Allow logwatch manage own lock files - Allow nrpe to read meminfo - Allow httpd to read certs located in pki-ca - Add pki_read_tomcat_cert() interface - Add support for nagios openshift plugins - Add port definition for redis port - fix selinuxuser_use_ssh_chroot boolean- Shrink the size of policy by moving to attributes, also add dridomain so that mozilla_plugin can follow selinuxuse_dri boolean. - Allow bootloader to manage generic log files - Allow ftp to bind to port 989 - Fix label of new gear directory - Add support for new directory /var/lib/openshift/gears/ - Add openshift_manage_lib_dirs() - allow virtd domains to manage setrans_var_run_t - Allow useradd to manage all openshift content - Add support so that mozilla_plugin_t can use dri devices - Allow chronyd to change the scheduler - Allow apmd to shut downthe system - Devicekit_disk_t needs to manage /etc/fstab- Make DSPAM to act as a LDA working - Allow ntop to create netlink socket - Allow policykit to send a signal to policykit-auth - Allow stapserver to dbus chat with avahi/systemd-logind - Fix labeling on haproxy unit file - Clean up haproxy policy - A new policy for haproxy and placed it to rhcs.te - Add support for ldirectord and treat it with cluster_t - Make sure anaconda log dir is created with var_log_t- Allow lvm_t to create default targets for filesystem handling - Fix labeling for razor-lightdm binaries - Allow insmod_t to read any file labeled var_lib_t - Add policy for pesign - Activate policy for cmpiLMI_Account-cimprovagt - Allow isnsd syscall=listen - /usr/libexec/pegasus/cimprovagt needs setsched caused by sched_setscheduler - Allow ctdbd to use udp/4379 - gatherd wants sys_nice and setsched - Add support for texlive2012 - Allow NM to read file_t (usb stick with no labels used to transfer keys for example) - Allow cobbler to execute apache with domain transition- condor_collector uses tcp/9000 - Label /usr/sbin/virtlockd as virtd_exec_t for now - Allow cobbler to execute ldconfig - Allow NM to execute ssh - Allow mdadm to read /dev/crash - Allow antivirus domains to connect to snmp port - Make amavisd-snmp working correctly - Allow nfsd_t to mounton nfsd_fs_t - Add initial snapper policy - We still need to have consolekit policy - Dontaudit firefox attempting to connect to the xserver_port_t if run within sandbox_web_t - Dontaudit sandbox apps attempting to open user_devpts_t - Allow dirsrv to read network state - Fix pki_read_tomcat_lib_files - Add labeling for /usr/libexec/nm-ssh-service - Add label cert_t for /var/lib/ipa/pki-ca/publish - Lets label /sys/fs/cgroup as cgroup_t for now, to keep labels consistant - Allow nfsd_t to mounton nfsd_fs_t - Dontaudit sandbox apps attempting to open user_devpts_t - Allow passwd_t to change role to system_r from unconfined_r- Don't audit access checks by sandbox xserver on xdb var_lib - Allow ntop to read usbmon devices - Add labeling for new polcykit authorizor - Dontaudit access checks from fail2ban_client - Don't audit access checks by sandbox xserver on xdb var_lib - Allow apps that connect to xdm stream to conenct to xdm_dbusd_t stream - Fix labeling for all /usr/bim/razor-lightdm-* binaries - Add filename trans for /dev/md126p1- Make vdagent able to request loading kernel module - Add support for cloud-init make it as unconfined domain - Allow snmpd to run smartctl in fsadm_t domain - remove duplicate openshift_search_lib() interface - Allow mysqld to search openshift lib files - Allow openshift cgroup to interact with passedin file descriptors - Allow colord to list directories inthe users homedir - aide executes prelink to check files - Make sure cupsd_t creates content in /etc/cups with the correct label - Lest dontaudit apache read all domains, so passenger will not cause this avc - Allow gssd to connect to gssproxy - systemd-tmpfiles needs to be able to raise the level to fix labeling on /run/setrans in MLS - Allow systemd-tmpfiles to relabel also lock files - Allow useradd to add homdir in /var/lib/openshift - Allow setfiles and semanage to write output to /run/files- Add labeling for /dev/tgt - Dontaudit leak fd from firewalld for modprobe - Allow runuser running as rpm_script_t to create netlink_audit socket - Allow mdadm to read BIOS non-volatile RAM- accountservice watches when accounts come and go in wtmp - /usr/java/jre1.7.0_21/bin/java needs to create netlink socket - Add httpd_use_sasl boolean - Allow net_admin for tuned_t - iscsid needs sys_module to auto-load kernel modules - Allow blueman to read bluetooth conf - Add nova_manage_lib_files() interface - Fix mplayer_filetrans_home_content() - Add mplayer_filetrans_home_content() - mozilla_plugin_config_roles need to be able to access mozilla_plugin_config_t - Revert "Allow thumb_t to append inherited xdm stream socket" - Add iscsi_filetrans_named_content() interface - Allow to create .mplayer with the correct labeling for unconfined - Allow iscsiadmin to create lock file with the correct labeling- Allow wine to manage wine home content - Make amanda working with socket actiovation - Add labeling for /usr/sbin/iscsiadm - Add support for /var/run/gssproxy.sock - dnsmasq_t needs to read sysctl_net_t- Fix courier_domain_template() interface - Allow blueman to write ip_forward - Allow mongodb to connect to mongodb port - Allow mongodb to connect to mongodb port - Allow java to bind jobss_debug port - Fixes for *_admin interfaces - Allow iscsid auto-load kernel modules needed for proper iSCSI functionality - Need to assign attribute for courier_domain to all courier_domains - Fail2ban reads /etc/passwd - postfix_virtual will create new files in postfix_spool_t - abrt triggers sys_ptrace by running pidof - Label ~/abc as mozilla_home_t, since java apps as plugin want to create it - Add passenger fixes needed by foreman - Remove dup interfaces - Add additional interfaces for quantum - Add new interfaces for dnsmasq - Allow passenger to read localization and send signull to itself - Allow dnsmasq to stream connect to quantum - Add quantum_stream_connect() - Make sure that mcollective starts the service with the correct labeling - Add labels for ~/.manpath - Dontaudit attempts by svirt_t to getpw* calls - sandbox domains are trying to look at parent process data - Allow courior auth to create its pid file in /var/spool/courier subdir - Add fixes for beam to have it working with couchdb - Add labeling for /run/nm-xl2tpd.con - Allow apache to stream connect to thin - Add systemd support for amand - Make public types usable for fs mount points - Call correct mandb interface in domain.te - Allow iptables to r/w quantum inherited pipes and send sigchld - Allow ifconfig domtrans to iptables and execute ldconfig - Add labels for ~/.manpath - Allow systemd to read iscsi lib files - seunshare is trying to look at parent process data- Fix openshift_search_lib - Add support for abrt-uefioops-oops - Allow colord to getattr any file system - Allow chrome processes to look at each other - Allow sys_ptrace for abrt_t - Add new policy for gssproxy - Dontaudit leaked file descriptor writes from firewalld - openshift_net_type is interface not template - Dontaudit pppd to search gnome config - Update openshift_search_lib() interface - Add fs_list_pstorefs() - Fix label on libbcm_host.so since it is built incorrectly on raspberry pi, needs back port to F18 - Better labels for raspberry pi devices - Allow init to create devpts_t directory - Temporarily label rasbery pi devices as memory_device_t, needs back port to f18 - Allow sysadm_t to build kernels - Make sure mount creates /var/run/blkid with the correct label, needs back port to F18 - Allow userdomains to stream connect to gssproxy - Dontaudit leaked file descriptor writes from firewalld - Allow xserver to read /dev/urandom - Add additional fixes for ipsec-mgmt - Make SSHing into an Openshift Enterprise Node working- Add transition rules to unconfined domains and to sysadm_t to create /etc/adjtime - with the proper label. - Update files_filetrans_named_content() interface to get right labeling for pam.d conf files - Allow systemd-timedated to create adjtime - Add clock_create_adjtime() - Additional fix ifconfing for #966106 - Allow kernel_t to create boot.log with correct labeling - Remove unconfined_mplayer for which we don't have rules - Rename interfaces - Add userdom_manage_user_home_files/dirs interfaces - Fix files_dontaudit_read_all_non_security_files - Fix ipsec_manage_key_file() - Fix ipsec_filetrans_key_file() - Label /usr/bin/razor-lightdm-greeter as xdm_exec_t instead of spamc_exec_t - Fix labeling for ipse.secrets - Add interfaces for ipsec and labeling for ipsec.info and ipsec_setup.pid - Add files_dontaudit_read_all_non_security_files() interface - /var/log/syslog-ng should be labeled var_log_t - Make ifconfig_var_run_t a mountpoint - Add transition from ifconfig to dnsmasq - Allow ifconfig to execute bin_t/shell_exec_t - We want to have hwdb.bin labeled as etc_t - update logging_filetrans_named_content() interface - Allow systemd_timedate_t to manage /etc/adjtime - Allow NM to send signals to l2tpd - Update antivirus_can_scan_system boolean - Allow devicekit_disk_t to sys_config_tty - Run abrt-harvest programs as abrt_t, and allow abrt_t to list all filesystem directories - Make printing from vmware working - Allow php-cgi from php54 collection to access /var/lib/net-snmp/mib_indexes - Add virt_qemu_ga_data_t for qemu-ga - Make chrome and mozilla able to connect to same ports, add jboss_management_port_t to both - Fix typo in virt.te - Add virt_qemu_ga_unconfined_t for hook scripts - Make sure NetworkManager files get created with the correct label - Add mozilla_plugin_use_gps boolean - Fix cyrus to have support for net-snmp - Additional fixes for dnsmasq and quantum for #966106 - Add plymouthd_create_log() - remove httpd_use_oddjob for which we don't have rules - Add missing rules for httpd_can_network_connect_cobbler - Add missing cluster_use_execmem boolean - Call userdom_manage_all_user_home_type_files/dirs - Additional fix for ftp_home_dir - Fix ftp_home_dir boolean - Allow squit to recv/send client squid packet - Fix nut.te to have nut_domain attribute - Add support for ejabberd; TODO: revisit jabberd and rabbit policy - Fix amanda policy - Add more fixes for domains which use libusb - Make domains which use libusb working correctly - Allow l2tpd to create ipsec key files with correct labeling and manage them - Fix cobbler_manage_lib_files/cobbler_read_lib_files to cover also lnk files - Allow rabbitmq-beam to bind generic node - Allow l2tpd to read ipse-mgmt pid files - more fixes for l2tpd, NM and pppd from #967072- Dontaudit to getattr on dirs for dovecot-deliver - Allow raiudusd server connect to postgresql socket - Add kerberos support for radiusd - Allow saslauthd to connect to ldap port - Allow postfix to manage postfix_private_t files - Add chronyd support for #965457 - Fix labeling for HOME_DIR/\.icedtea - CHange squid and snmpd to be allowed also write own logs - Fix labeling for /usr/libexec/qemu-ga - Allow virtd_t to use virt_lock_t - Allow also sealert to read the policy from the kernel - qemu-ga needs to execute scripts in /usr/libexec/qemu-ga and to use /tmp content - Dontaudit listing of users homedir by sendmail Seems like a leak - Allow passenger to transition to puppet master - Allow apache to connect to mythtv - Add definition for mythtv ports- Add additional fixes for #948073 bug - Allow sge_execd_t to also connect to sge ports - Allow openshift_cron_t to manage openshift_var_lib_t sym links - Allow openshift_cron_t to manage openshift_var_lib_t sym links - Allow sge_execd to bind sge ports. Allow kill capability and reads cgroup files - Remove pulseaudio filetrans pulseaudio_manage_home_dirs which is a part of pulseaudio_manage_home_files - Add networkmanager_stream_connect() - Make gnome-abrt wokring with staff_t - Fix openshift_manage_lib_files() interface - mdadm runs ps command which seems to getattr on random log files - Allow mozilla_plugin_t to create pulseaudit_home_t directories - Allow qemu-ga to shutdown virtual hosts - Add labelling for cupsd-browsed - Add web browser plugins to connect to aol ports - Allow nm-dhcp-helper to stream connect to NM - Add port definition for sge ports- Make sure users and unconfined domains create .hushlogin with the correct label - Allow pegaus to chat with realmd over DBus - Allow cobblerd to read network state - Allow boicn-client to stat on /dev/input/mice - Allow certwatch to read net_config_t when it executes apache - Allow readahead to create /run/systemd and then create its own directory with the correct label- Transition directories and files when in a user_tmp_t directory - Change certwatch to domtrans to apache instead of just execute - Allow virsh_t to read xen lib files - update policy rules for pegasus_openlmi_account_t - Add support for svnserve_tmp_t - Activate account openlmi policy - pegasus_openlmi_domain_template needs also require pegasus_t - One more fix for policykit.te - Call fs_list_cgroups_dirs() in policykit.te - Allow nagios service plugin to read mysql config files - Add labeling for /var/svn - Fix chrome.te - Fix pegasus_openlmi_domain_template() interfaces - Fix dev_rw_vfio_dev definiton, allow virtd_t to read tmpfs_t symlinks - Fix location of google-chrome data - Add support for chome_sandbox to store content in the homedir - Allow policykit to watch for changes in cgroups file system - Add boolean to allow mozilla_plugin_t to use spice - Allow collectd to bind to udp port - Allow collected_t to read all of /proc - Should use netlink socket_perms - Should use netlink socket_perms - Allow glance domains to connect to apache ports - Allow apcupsd_t to manage its log files - Allow chrome objects to rw_inherited unix_stream_socket from callers - Allow staff_t to execute virtd_exec_t for running vms - nfsd_t needs to bind mountd port to make nfs-mountd.service working - Allow unbound net_admin capability because of setsockopt syscall - Fix fs_list_cgroup_dirs() - Label /usr/lib/nagios/plugins/utils.pm as bin_t - Remove uplicate definition of fs_read_cgroup_files() - Remove duplicate definition of fs_read_cgroup_files() - Add files_mountpoint_filetrans interface to be used by quotadb_t and snapperd - Additional interfaces needed to list and read cgroups config - Add port definition for collectd port - Add labels for /dev/ptp* - Allow staff_t to execute virtd_exec_t for running vms- Allow samba-net to also read realmd tmp files - Allow NUT to use serial ports - realmd can be started by systemctl now- Remove userdom_home_manager for xdm_t and move all rules to xserver.te directly - Add new xdm_write_home boolean to allow xdm_t to create files in HOME dirs with xdm_home_t - Allow postfix-showq to read/write unix.showq in /var/spool/postfix/pid - Allow virsh to read xen lock file - Allow qemu-ga to create files in /run with proper labeling - Allow glusterd to connect to own socket in /tmp - Allow glance-api to connect to http port to make glance image-create working - Allow keystonte_t to execute rpm- Fix realmd cache interfaces- Allow tcpd to execute leafnode - Allow samba-net to read realmd cache files - Dontaudit sys_tty_config for alsactl - Fix allow rules for postfix_var_run - Allow cobblerd to read /etc/passwd - Allow pegasus to read exports - Allow systemd-timedate to read xdm state - Allow mout to stream connect to rpcbind - Add labeling just for /usr/share/pki/ca-trust-source instead of /usr/share/pki- Allow thumbnails to share memory with apps which run thumbnails - Allow postfix-postqueue block_suspend - Add lib interfaces for smsd - Add support for nginx - Allow s2s running as jabberd_t to connect to jabber_interserver_port_t - Allow pki apache domain to create own tmp files and execute httpd_suexec - Allow procmail to manger user tmp files/dirs/lnk_files - Add virt_stream_connect_svirt() interface - Allow dovecot-auth to execute bin_t - Allow iscsid to request that kernel load a kernel module - Add labeling support for /var/lib/mod_security - Allow iw running as tuned_t to create netlink socket - Dontaudit sys_tty_config for thumb_t - Add labeling for nm-l2tp-service - Allow httpd running as certwatch_t to open tcp socket - Allow useradd to manager smsd lib files - Allow useradd_t to add homedirs in /var/lib - Fix typo in userdomain.te - Cleanup userdom_read_home_certs - Implement userdom_home_reader_certs_type to allow read certs also on encrypt /home with ecryptfs_t - Allow staff to stream connect to svirt_t to make gnome-boxes working- Allow lvm to create its own unit files - Label /var/lib/sepolgen as selinux_config_t - Add filetrans rules for tw devices - Add transition from cupsd_config_t to cupsd_t- Add filetrans rules for tw devices - Cleanup bad transition lines- Fix lockdev_manage_files() - Allow setroubleshootd to read var_lib_t to make email_alert working - Add lockdev_manage_files() - Call proper interface in virt.te - Allow gkeyring_domain to create /var/run/UID/config/dbus file - system dbus seems to be blocking suspend - Dontaudit attemps to sys_ptrace, which I believe gpsd does not need - When you enter a container from root, you generate avcs with a leaked file descriptor - Allow mpd getattr on file system directories - Make sure realmd creates content with the correct label - Allow systemd-tty-ask to write kmsg - Allow mgetty to use lockdev library for device locking - Fix selinuxuser_user_share_music boolean name to selinuxuser_share_music - When you enter a container from root, you generate avcs with a leaked file descriptor - Make sure init.fc files are labeled correctly at creation - File name trans vconsole.conf - Fix labeling for nagios plugins - label shared libraries in /opt/google/chrome as testrel_shlib_t- Allow certmonger to dbus communicate with realmd - Make realmd working- Fix mozilla specification of homedir content - Allow certmonger to read network state - Allow tmpwatch to read tmp in /var/spool/{cups,lpd} - Label all nagios plugin as unconfined by default - Add httpd_serve_cobbler_files() - Allow mdadm to read /dev/sr0 and create tmp files - Allow certwatch to send mails - Fix labeling for nagios plugins - label shared libraries in /opt/google/chrome as testrel_shlib_t- Allow realmd to run ipa, really needs to be an unconfined_domain - Allow sandbox domains to use inherted terminals - Allow pscd to use devices labeled svirt_image_t in order to use cat cards. - Add label for new alsa pid - Alsa now uses a pid file and needs to setsched - Fix oracleasmfs_t definition - Add support for sshd_unit_file_t - Add oracleasmfs_t - Allow unlabeled_t files to be stored on unlabeled_t filesystems- Fix description of deny_ptrace boolean - Remove allow for execmod lib_t for now - Allow quantum to connect to keystone port - Allow nova-console to talk with mysql over unix stream socket - Allow dirsrv to stream connect to uuidd - thumb_t needs to be able to create ~/.cache if it does not exist - virtd needs to be able to sys_ptrace when starting and stoping containers- Allow alsa_t signal_perms, we probaly should search for any app that can execute something without transition and give it signal_perms... - Add dontaudit for mozilla_plugin_t looking at the xdm_t sockets - Fix deny_ptrace boolean, certain ptrace leaked into the system - Allow winbind to manage kerberos_rcache_host - Allow spamd to create spamd_var_lib_t directories - Remove transition to mozilla_tmp_t by mozilla_t, to allow it to manage the users tmp dirs - Add mising nslcd_dontaudit_write_sock_file() interface - one more fix - Fix pki_read_tomcat_lib_files() interface - Allow certmonger to read pki-tomcat lib files - Allow certwatch to execute bin_t - Allow snmp to manage /var/lib/net-snmp files - Call snmp_manage_var_lib_files(fogorn_t) instead of snmp_manage_var_dirs - Fix vmware_role() interface - Fix cobbler_manage_lib_files() interface - Allow nagios check disk plugins to execute bin_t - Allow quantum to transition to openvswitch_t - Allow postdrop to stream connect to postfix-master - Allow quantum to stream connect to openvswitch - Add xserver_dontaudit_xdm_rw_stream_sockets() interface - Allow daemon to send dgrams to initrc_t - Allow kdm to start the power service to initiate a reboot or poweroff- Add mising nslcd_dontaudit_write_sock_file() interface - one more fix - Fix pki_read_tomcat_lib_files() interface - Allow certmonger to read pki-tomcat lib files - Allow certwatch to execute bin_t - Allow snmp to manage /var/lib/net-snmp files - Don't audit attempts to write to stream socket of nscld by thumbnailers - Allow git_system_t to read network state - Allow pegasas to execute mount command - Fix desc for drdb_admin - Fix condor_amin() - Interface fixes for uptime, vdagent, vnstatd - Fix labeling for moodle in /var/www/moodle/data - Add interface fixes - Allow bugzilla to read certs - /var/www/moodle needs to be writable by apache - Add interface to dontaudit attempts to send dbus messages to systemd domains, for xguest - Fix namespace_init_t to create content with proper labels, and allow it to manage all user content - Allow httpd_t to connect to osapi_compute port using httpd_use_openstack bolean - Fixes for dlm_controld - Fix apache_read_sys_content_rw_dirs() interface - Allow logrotate to read /var/log/z-push dir - Fix sys_nice for cups_domain - Allow postfix_postdrop to acces postfix_public socket - Allow sched_setscheduler for cupsd_t - Add missing context for /usr/sbin/snmpd - Kernel_t needs mac_admin in order to support labeled NFS - Fix systemd_dontaudit_dbus_chat() interface - Add interface to dontaudit attempts to send dbus messages to systemd domains, for xguest - Allow consolehelper domain to write Xauth files in /root - Add port definition for osapi_compute port - Allow unconfined to create /etc/hostname with correct labeling - Add systemd_filetrans_named_hostname() interface- Allow httpd_t to connect to osapi_compute port using httpd_use_openstack bolean - Fixes for dlm_controld - Fix apache_read_sys_content_rw_dirs() interface - Allow logrotate to read /var/log/z-push dir - Allow postfix_postdrop to acces postfix_public socket - Allow sched_setscheduler for cupsd_t - Add missing context for /usr/sbin/snmpd - Allow consolehelper more access discovered by Tom London - Allow fsdaemon to send signull to all domain - Add port definition for osapi_compute port - Allow unconfined to create /etc/hostname with correct labeling - Add systemd_filetrans_named_hostname() interface- Fix file_contexts.subs to label /run/lock correctly- Try to label on controlC devices up to 30 correctly - Add mount_rw_pid_files() interface - Add additional mount/umount interfaces needed by mock - fsadm_t sends audit messages in reads kernel_ipc_info when doing livecd-iso-to-disk - Fix tabs - Allow initrc_domain to search rgmanager lib files - Add more fixes which make mock working together with confined users * Allow mock_t to manage rpm files * Allow mock_t to read rpm log files * Allow mock to setattr on tmpfs, devpts * Allow mount/umount filesystems - Add rpm_read_log() interface - yum-cron runs rpm from within it. - Allow tuned to transition to dmidecode - Allow firewalld to do net_admin - Allow mock to unmont tmpfs_t - Fix virt_sigkill() interface - Add additional fixes for mock. Mainly caused by mount running in mock_t - Allow mock to write sysfs_t and mount pid files - Add mailman_domain to mailman_template() - Allow openvswitch to execute shell - Allow qpidd to use kerberos - Allow mailman to use fusefs, needs back port to RHEL6 - Allow apache and its scripts to use anon_inodefs - Add alias for git_user_content_t and git_sys_content_t so that RHEL6 will update to RHEL7 - Realmd needs to connect to samba ports, needs back port to F18 also - Allow colord to read /run/initial-setup- - Allow sanlock-helper to send sigkill to virtd which is registred to sanlock - Add virt_kill() interface - Add rgmanager_search_lib() interface - Allow wdmd to getattr on all filesystems. Back ported from RHEL6- Allow realmd to create tmp files - FIx ircssi_home_t type to irssi_home_t - Allow adcli running as realmd_t to connect to ldap port - Allow NetworkManager to transition to ipsec_t, for running strongswan - Make openshift_initrc_t an lxc_domain - Allow gssd to manage user_tmp_t files - Fix handling of irclogs in users homedir - Fix labeling for drupal an wp-content in subdirs of /var/www/html - Allow abrt to read utmp_t file - Fix openshift policy to transition lnk_file, sock-file an fifo_file when created in a tmpfs_t, needs back port to RHEL6 - fix labeling for (oo|rhc)-restorer-wrapper.sh - firewalld needs to be able to write to network sysctls - Fix mozilla_plugin_dontaudit_rw_sem() interface - Dontaudit generic ipc read/write to a mozilla_plugin for sandbox_x domains - Add mozilla_plugin_dontaudit_rw_sem() interface - Allow svirt_lxc_t to transition to openshift domains - Allow condor domains block_suspend and dac_override caps - Allow condor_master to read passd - Allow condor_master to read system state - Allow NetworkManager to transition to ipsec_t, for running strongswan - Lots of access required by lvm_t to created encrypted usb device - Allow xdm_t to dbus communicate with systemd_localed_t - Label strongswan content as ipsec_exec_mgmt_t for now - Allow users to dbus chat with systemd_localed - Fix handling of .xsession-errors in xserver.if, so kde will work - Might be a bug but we are seeing avc's about people status on init_t:service - Make sure we label content under /var/run/lock as <> - Allow daemon and systemprocesses to search init_var_run_t directory - Add boolean to allow xdm to write xauth data to the home directory - Allow mount to write keys for the unconfined domain - Add unconfined_write_keys() interface- Add labeling for /usr/share/pki - Allow programs that read var_run_t symlinks also read var_t symlinks - Add additional ports as mongod_port_t for 27018, 27019, 28017, 28018 and 28019 ports - Fix labeling for /etc/dhcp directory - add missing systemd_stub_unit_file() interface - Add files_stub_var() interface - Add lables for cert_t directories - Make localectl set-x11-keymap working at all - Allow abrt to manage mock build environments to catch build problems. - Allow virt_domains to setsched for running gdb on itself - Allow thumb_t to execute user home content - Allow pulseaudio running as mozilla_plugin_t to read /run/systemd/users/1000 - Allow certwatch to execut /usr/bin/httpd - Allow cgred to send signal perms to itself, needs back port to RHEL6 - Allow openshift_cron_t to look at quota - Allow cups_t to read inhered tmpfs_t from the kernel - Allow yppasswdd to use NIS - Tuned wants sys_rawio capability - Add ftpd_use_fusefs boolean - Allow dirsrvadmin_t to signal itself- Allow localectl to read /etc/X11/xorg.conf.d directory - Revert "Revert "Fix filetrans rules for kdm creates .xsession-errors"" - Allow mount to transition to systemd_passwd_agent - Make sure abrt directories are labeled correctly - Allow commands that are going to read mount pid files to search mount_var_run_t - label /usr/bin/repoquery as rpm_exec_t - Allow automount to block suspend - Add abrt_filetrans_named_content so that abrt directories get labeled correctly - Allow virt domains to setrlimit and read file_context- Allow nagios to manage nagios spool files - /var/spool/snmptt is a directory which snmdp needs to write to, needs back port to RHEL6 - Add swift_alias.* policy files which contain typealiases for swift types - Add support for /run/lock/opencryptoki - Allow pkcsslotd chown capability - Allow pkcsslotd to read passwd - Add rsync_stub() interface - Allow systemd_timedate also manage gnome config homedirs - Label /usr/lib64/security/pam_krb5/pam_krb5_cchelper as bin_t - Fix filetrans rules for kdm creates .xsession-errors - Allow sytemd_tmpfiles to create wtmp file - Really should not label content under /var/lock, since it could have labels on it different from var_lock_t - Allow systemd to list all file system directories - Add some basic stub interfaces which will be used in PRODUCT policies- Fix log transition rule for cluster domains - Start to group all cluster log together - Dont use filename transition for POkemon Advanced Adventure until a new checkpolicy update - cups uses usbtty_device_t devices - These fixes were all required to build a MLS virtual Machine with single level desktops - Allow domains to transiton using httpd_exec_t - Allow svirt domains to manage kernel key rings - Allow setroubleshoot to execute ldconfig - Allow firewalld to read generate gnome data - Allow bluetooth to read machine-info - Allow boinc domain to send signal to itself - Fix gnome_filetrans_home_content() interface - Allow mozilla_plugins to list apache modules, for use with gxine - Fix labels for POkemon in the users homedir - Allow xguest to read mdstat - Dontaudit virt_domains getattr on /dev/* - These fixes were all required to build a MLS virtual Machine with single level desktops - Need to back port this to RHEL6 for openshift - Add tcp/8891 as milter port - Allow nsswitch domains to read sssd_var_lib_t files - Allow ping to read network state. - Fix typo - Add labels to /etc/X11/xorg.d and allow systemd-timestampd_t to manage them- Adopt swift changes from lhh@redhat.com - Add rhcs_manage_cluster_pid_files() interface - Allow screen domains to configure tty and setup sock_file in ~/.screen directory - ALlow setroubleshoot to read default_context_t, needed to backport to F18 - Label /etc/owncloud as being an apache writable directory - Allow sshd to stream connect to an lxc domain- Allow postgresql to manage rgmanager pid files - Allow postgresql to read ccs data - Allow systemd_domain to send dbus messages to policykit - Add labels for /etc/hostname and /etc/machine-info and allow systemd-hostnamed to create them - All systemd domains that create content are reading the file_context file and setfscreate - Systemd domains need to search through init_var_run_t - Allow sshd to communicate with libvirt to set containers labels - Add interface to manage pid files - Allow NetworkManger_t to read /etc/hostname - Dontaudit leaked locked files into openshift_domains - Add fixes for oo-cgroup-read - it nows creates tmp files - Allow gluster to manage all directories as well as files - Dontaudit chrome_sandbox_nacl_t using user terminals - Allow sysstat to manage its own log files - Allow virtual machines to setrlimit and send itself signals. - Add labeling for /var/run/hplip- Fix POSTIN scriptlet- Merge rgmanger, corosync,pacemaker,aisexec policies to cluster_t in rhcs.pp- Fix authconfig.py labeling - Make any domains that write homedir content do it correctly - Allow glusterd to read/write anyhwere on the file system by default - Be a little more liberal with the rsync log files - Fix iscsi_admin interface - Allow iscsid_t to read /dev/urand - Fix up iscsi domain for use with unit files - Add filename transition support for spamassassin policy - Allow web plugins to use badly formated libraries - Allow nmbd_t to create samba_var_t directories - Add filename transition support for spamassassin policy - Add filename transition support for tvtime - Fix alsa_home_filetrans_alsa_home() interface - Move all userdom_filetrans_home_content() calling out of booleans - Allow logrotote to getattr on all file sytems - Remove duplicate userdom_filetrans_home_content() calling - Allow kadmind to read /etc/passwd - Dontaudit append .xsession-errors file on ecryptfs for policykit-auth - Allow antivirus domain to manage antivirus db links - Allow logrotate to read /sys - Allow mandb to setattr on man dirs - Remove mozilla_plugin_enable_homedirs boolean - Fix ftp_home_dir boolean - homedir mozilla filetrans has been moved to userdom_home_manager - homedir telepathy filetrans has been moved to userdom_home_manager - Remove gnome_home_dir_filetrans() from gnome_role_gkeyringd() - Might want to eventually write a daemon on fusefsd. - Add policy fixes for sshd [net] child from plautrba@redhat.com - Tor uses a new port - Remove bin_t for authconfig.py - Fix so only one call to userdom_home_file_trans - Allow home_manager_types to create content with the correctl label - Fix all domains that write data into the homedir to do it with the correct label - Change the postgresql to use proper boolean names, which is causing httpd_t to - not get access to postgresql_var_run_t - Hostname needs to send syslog messages - Localectl needs to be able to send dbus signals to users - Make sure userdom_filetrans_type will create files/dirs with user_home_t labeling by default - Allow user_home_manger domains to create spam* homedir content with correct labeling - Allow user_home_manger domains to create HOMEDIR/.tvtime with correct labeling - Add missing miscfiles_setattr_man_pages() interface and for now comment some rules for userdom_filetrans_type to make build process working - Declare userdom_filetrans_type attribute - userdom_manage_home_role() needs to be called withoout usertype attribute because of userdom_filetrans_type attribute - fusefsd is mounding a fuse file system on /run/user/UID/gvfs- Man pages are now generated in the build process - Allow cgred to list inotifyfs filesystem- Allow gluster to get attrs on all fs - New access required for virt-sandbox - Allow dnsmasq to execute bin_t - Allow dnsmasq to create content in /var/run/NetworkManager - Fix openshift_initrc_signal() interface - Dontaudit openshift domains doing getattr on other domains - Allow consolehelper domain to communicate with session bus - Mock should not be transitioning to any other domains, we should keep mock_t as mock_t - Update virt_qemu_ga_t policy - Allow authconfig running from realmd to restart oddjob service - Add systemd support for oddjob - Add initial policy for realmd_consolehelper_t which if for authconfig executed by realmd - Add labeling for gnashpluginrc - Allow chrome_nacl to execute /dev/zero - Allow condor domains to read /proc - mozilla_plugin_t will getattr on /core if firefox crashes - Allow condor domains to read /etc/passwd - Allow dnsmasq to execute shell scripts, openstack requires this access - Fix glusterd labeling - Allow virtd_t to interact with the socket type - Allow nmbd_t to override dac if you turned on sharing all files - Allow tuned to created kobject_uevent socket - Allow guest user to run fusermount - Allow openshift to read /proc and locale - Allow realmd to dbus chat with rpm - Add new interface for virt - Remove depracated interfaces - Allow systemd_domains read access on etc, etc_runtime and usr files, also allow them to connect stream to syslog socket - /usr/share/munin/plugins/plugin.sh should be labeled as bin_t - Remove some more unconfined_t process transitions, that I don't believe are necessary - Stop transitioning uncofnined_t to checkpc - dmraid creates /var/lock/dmraid - Allow systemd_localed to creatre unix_dgram_sockets - Allow systemd_localed to write kernel messages. - Also cleanup systemd definition a little. - Fix userdom_restricted_xwindows_user_template() interface - Label any block devices or char devices under /dev/infiniband as fixed_disk_device_t - User accounts need to dbus chat with accountsd daemon - Gnome requires all users to be able to read /proc/1/- virsh now does a setexeccon call - Additional rules required by openshift domains - Allow svirt_lxc_domains to use inherited terminals, needed to make virt-sandbox-service execute work - Allow spamd_update_t to search spamc_home_t - Avcs discovered by mounting an isci device under /mnt - Allow lspci running as logrotate to read pci.ids - Additional fix for networkmanager_read_pid_files() - Fix networkmanager_read_pid_files() interface - Allow all svirt domains to connect to svirt_socket_t - Allow virsh to set SELinux context for a process. - Allow tuned to create netlink_kobject_uevent_socket - Allow systemd-timestamp to set SELinux context - Add support for /var/lib/systemd/linger - Fix ssh_sysadm_login to be working on MLS as expected- Rename files_rw_inherited_tmp_files to files_rw_inherited_tmp_file - Add missing files_rw_inherited_tmp_files interface - Add additional interface for ecryptfs - ALlow nova-cert to connect to postgresql - Allow keystone to connect to postgresql - Allow all cups domains to getattr on filesystems - Allow pppd to send signull - Allow tuned to execute ldconfig - Allow gpg to read fips_enabled - Add additional fixes for ecryptfs - Allow httpd to work with posgresql - Allow keystone getsched and setsched- Allow gpg to read fips_enabled - Add support for /var/cache/realmd - Add support for /usr/sbin/blazer_usb and systemd support for nut - Add labeling for fenced_sanlock and allow sanclok transition to fenced_t - bitlbee wants to read own log file - Allow glance domain to send a signal itself - Allow xend_t to request that the kernel load a kernel module - Allow pacemaker to execute heartbeat lib files - cleanup new swift policy- Fix smartmontools - Fix userdom_restricted_xwindows_user_template() interface - Add xserver_xdm_ioctl_log() interface - Allow Xusers to ioctl lxdm.log to make lxdm working - Add MLS fixes to make MLS boot/log-in working - Add mls_socket_write_all_levels() also for syslogd - fsck.xfs needs to read passwd - Fix ntp_filetrans_named_content calling in init.te - Allow postgresql to create pg_log dir - Allow sshd to read rsync_data_t to make rsync working - Change ntp.conf to be labeled net_conf_t - Allow useradd to create homedirs in /run. ircd-ratbox does this and we should just allow it - Allow xdm_t to execute gstreamer home content - Allod initrc_t and unconfined domains, and sysadm_t to manage ntp - New policy for openstack swift domains - More access required for openshift_cron_t - Use cupsd_log_t instead of cupsd_var_log_t - rpm_script_roles should be used in rpm_run - Fix rpm_run() interface - Fix openshift_initrc_run() - Fix sssd_dontaudit_stream_connect() interface - Fix sssd_dontaudit_stream_connect() interface - Allow LDA's job to deliver mail to the mailbox - dontaudit block_suspend for mozilla_plugin_t - Allow l2tpd_t to all signal perms - Allow uuidgen to read /dev/random - Allow mozilla-plugin-config to read power_supply info - Implement cups_domain attribute for cups domains - We now need access to user terminals since we start by executing a command outside the tty - We now need access to user terminals since we start by executing a command outside the tty - svirt lxc containers want to execute userhelper apps, need these changes to allow this to happen - Add containment of openshift cron jobs - Allow system cron jobs to create tmp directories - Make userhelp_conf_t a config file - Change rpm to use rpm_script_roles - More fixes for rsync to make rsync wokring - Allow logwatch to domtrans to mdadm - Allow pacemaker to domtrans to ifconfig - Allow pacemaker to setattr on corosync.log - Add pacemaker_use_execmem for memcheck-amd64 command - Allow block_suspend capability - Allow create fifo_file in /tmp with pacemaker_tmp_t - Allow systat to getattr on fixed disk - Relabel /etc/ntp.conf to be net_conf_t - ntp_admin should create files in /etc with the correct label - Add interface to create ntp_conf_t files in /etc - Add additional labeling for quantum - Allow quantum to execute dnsmasq with transition- boinc_cliean wants also execmem as boinc projecs have - Allow sa-update to search admin home for /root/.spamassassin - Allow sa-update to search admin home for /root/.spamassassin - Allow antivirus domain to read net sysctl - Dontaudit attempts from thumb_t to connect to ssd - Dontaudit attempts by readahead to read sock_files - Dontaudit attempts by readahead to read sock_files - Create tmpfs file while running as wine as user_tmpfs_t - Dontaudit attempts by readahead to read sock_files - libmpg ships badly created librarie- Change ssh_use_pts to use macro and only inherited sshd_devpts_t - Allow confined users to read systemd_logind seat information - libmpg ships badly created libraries - Add support for strongswan.service - Add labeling for strongswan - Allow l2tpd_t to read network manager content in /run directory - Allow rsync to getattr any file in rsync_data_t - Add labeling and filename transition for .grl-podcasts- mount.glusterfs executes glusterfsd binary - Allow systemd_hostnamed_t to stream connect to systemd - Dontaudit any user doing a access check - Allow obex-data-server to request the kernel to load a module - Allow gpg-agent to manage gnome content (~/.cache/gpg-agent-info) - Allow gpg-agent to read /proc/sys/crypto/fips_enabled - Add new types for antivirus.pp policy module - Allow gnomesystemmm_t caps because of ioprio_set - Make sure if mozilla_plugin creates files while in permissive mode, they get created with the correct label, user_home_t - Allow gnomesystemmm_t caps because of ioprio_set - Allow NM rawip socket - files_relabel_non_security_files can not be used with boolean - Add interface to thumb_t dbus_chat to allow it to read remote process state - ALlow logrotate to domtrans to mdadm_t - kde gnomeclock wants to write content to /tmp- kde gnomeclock wants to write content to /tmp - /usr/libexec/kde4/kcmdatetimehelper attempts to create /root/.kde - Allow blueman_t to rwx zero_device_t, for some kind of jre - Allow mozilla_plugin_t to rwx zero_device_t, for some kind of jre - Ftp full access should be allowed to create directories as well as files - Add boolean to allow rsync_full_acces, so that an rsync server can write all - over the local machine - logrotate needs to rotate logs in openshift directories, needs back port to RHEL6 - Add missing vpnc_roles type line - Allow stapserver to write content in /tmp - Allow gnome keyring to create keyrings dir in ~/.local/share - Dontaudit thumb drives trying to bind to udp sockets if nis_enabled is turned on - Add interface to colord_t dbus_chat to allow it to read remote process state - Allow colord_t to read cupsd_t state - Add mate-thumbnail-font as thumnailer - Allow sectoolm to sys_ptrace since it is looking at other proceses /proc data. - Allow qpidd to list /tmp. Needed by ssl - Only allow init_t to transition to rsync_t domain, not initrc_t. This should be back ported to F17, F18 - - Added systemd support for ksmtuned - Added booleans ksmtuned_use_nfs ksmtuned_use_cifs - firewalld seems to be creating mmap files which it needs to execute in /run /tmp and /dev/shm. Would like to clean this up but for now we will allow - Looks like qpidd_t needs to read /dev/random - Lots of probing avc's caused by execugting gpg from staff_t - Dontaudit senmail triggering a net_admin avc - Change thumb_role to use thumb_run, not sure why we have a thumb_role, needs back port - Logwatch does access check on mdadm binary - Add raid_access_check_mdadm() iterface- Fix systemd_manage_unit_symlinks() interface - Call systemd_manage_unit_symlinks(() which is correct interface - Add filename transition for opasswd - Switch gnomeclock_dbus_chat to systemd_dbus_chat_timedated since we have switched the name of gnomeclock - Allow sytstemd-timedated to get status of init_t - Add new systemd policies for hostnamed and rename gnomeclock_t to systemd_timedate_t - colord needs to communicate with systemd and systemd_logind, also remove duplicate rules - Switch gnomeclock_dbus_chat to systemd_dbus_chat_timedated since we have switched the name of gnomeclock - Allow gpg_t to manage all gnome files - Stop using pcscd_read_pub_files - New rules for xguest, dontaudit attempts to dbus chat - Allow firewalld to create its mmap files in tmpfs and tmp directories - Allow firewalld to create its mmap files in tmpfs and tmp directories - run unbound-chkconf as named_t, so it can read dnssec - Colord is reading xdm process state, probably reads state of any apps that sends dbus message - Allow mdadm_t to change the kernel scheduler - mythtv policy - Update mandb_admin() interface - Allow dsspam to listen on own tpc_socket - seutil_filetrans_named_content needs to be optional - Allow sysadm_t to execute content in his homedir - Add attach_queue to tun_socket, new patch from Paul Moore - Change most of selinux configuration types to security_file_type. - Add filename transition rules for selinux configuration - ssh into a box with -X -Y requires ssh_use_ptys - Dontaudit thumb drives trying to bind to udp sockets if nis_enabled is turned on - Allow all unpriv userdomains to send dbus messages to hostnamed and timedated - New allow rules found by Tom London for systemd_hostnamed- Allow systemd-tmpfiles to relabel lpd spool files - Ad labeling for texlive bash scripts - Add xserver_filetrans_fonts_cache_home_content() interface - Remove duplicate rules from *.te - Add support for /var/lock/man-db.lock - Add support for /var/tmp/abrt(/.*)? - Add additional labeling for munin cgi scripts - Allow httpd_t to read munin conf files - Allow certwatch to read meminfo - Fix nscd_dontaudit_write_sock_file() interfac - Fix gnome_filetrans_home_content() to include also "fontconfig" dir as cache_home_t - llow mozilla_plugin_t to create HOMEDIR/.fontconfig with the proper labeling- Allow gnomeclock to talk to puppet over dbus - Allow numad access discovered by Dominic - Add support for HOME_DIR/.maildir - Fix attribute_role for mozilla_plugin_t domain to allow staff_r to access this domain - Allow udev to relabel udev_var_run_t lnk_files - New bin_t file in mcelog- Remove all mcs overrides and replace with t1 != mcs_constrained_types - Add attribute_role for iptables - mcs_process_set_categories needs to be called for type - Implement additional role_attribute statements - Sodo domain is attempting to get the additributes of proc_kcore_t - Unbound uses port 8953 - Allow svirt_t images to compromise_kernel when using pci-passthrough - Add label for dns lib files - Bluetooth aquires a dbus name - Remove redundant files_read_usr_file calling - Remove redundant files_read_etc_file calling - Fix mozilla_run_plugin() - Add role_attribute support for more domains- Mass merge with upstream- Bump the policy version to 28 to match selinux userspace - Rebuild versus latest libsepol- Add systemd_status_all_unit_files() interface - Add support for nshadow - Allow sysadm_t to administrate the postfix domains - Add interface to setattr on isid directories for use by tmpreaper - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - Add systemd_status_all_unit_files() interface - Add support for nshadow - Allow sysadm_t to administrate the postfix domains - Add interface to setattr on isid directories for use by tmpreaper - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - Allow sshd_t sys_admin for use with afs logins - Add labeling for /var/named/chroot/etc/localtim- Allow setroubleshoot_fixit to execute rpm - zoneminder needs to connect to httpd ports where remote cameras are listening - Allow firewalld to execute content created in /run directory - Allow svirt_t to read generic certs - Dontaudit leaked ps content to mozilla plugin - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - init scripts are creating systemd_unit_file_t directories- systemd_logind_t is looking at all files under /run/user/apache - Allow systemd to manage all user tmp files - Add labeling for /var/named/chroot/etc/localtime - Allow netlabel_peer_t type to flow over netif_t and node_t, and only be hindered by MLS, need back port to RHEL6 - Keystone is now using a differnt port - Allow xdm_t to use usbmuxd daemon to control sound - Allow passwd daemon to execute gnome_exec_keyringd - Fix chrome_sandbox policy - Add labeling for /var/run/checkquorum-timer - More fixes for the dspam domain, needs back port to RHEL6 - More fixes for the dspam domain, needs back port to RHEL6 - sssd needs to connect to kerberos password port if a user changes his password - Lots of fixes from RHEL testing of dspam web - Allow chrome and mozilla_plugin to create msgq and semaphores - Fixes for dspam cgi scripts - Fixes for dspam cgi scripts - Allow confine users to ptrace screen - Backport virt_qemu_ga_t changes from RHEL - Fix labeling for dspam.cgi needed for RHEL6 - We need to back port this policy to RHEL6, for lxc domains - Dontaudit attempts to set sys_resource of logrotate - Allow corosync to read/write wdmd's tmpfs files - I see a ptrace of mozilla_plugin_t by staff_t, will allow without deny_ptrace being set - Allow cron jobs to read bind config for unbound - libvirt needs to inhibit systemd - kdumpctl needs to delete boot_t files - Fix duplicate gnome_config_filetrans - virtd_lxc_t is using /dev/fuse - Passenger needs to create a directory in /var/log, needs a backport to RHEL6 for openshift - apcupsd can be setup to listen to snmp trafic - Allow transition from kdumpgui to kdumpctl - Add fixes for munin CGI scripts - Allow deltacloud to connect to openstack at the keystone port - Allow domains that transition to svirt domains to be able to signal them - Fix file context of gstreamer in .cache directory - libvirt is communicating with logind - NetworkManager writes to the systemd inhibit pipe- Allow munin disk plugins to get attributes of all directories - Allow munin disk plugins to get attributes of all directorie - Allow logwatch to get attributes of all directories - Fix networkmanager_manage_lib() interface - Fix gnome_manage_config() to allow to manage sock_file - Fix virtual_domain_context - Add support for dynamic DNS for DHCPv6- Allow svirt to use netlink_route_socket which was a part of auth_use_nsswitch - Add additional labeling for /var/www/openshift/broker - Fix rhev policy - Allow openshift_initrc domain to dbus chat with systemd_logind - Allow httpd to getattr passenger log file if run_stickshift - Allow consolehelper-gtk to connect to xserver - Add labeling for the tmp-inst directory defined in pam_namespace.conf - Add lvm_metadata_t labeling for /etc/multipath- consoletype is no longer used- Add label for efivarfs - Allow certmonger to send signal to itself - Allow plugin-config to read own process status - Add more fixes for pacemaker - apache/drupal can run clamscan on uploaded content - Allow chrome_sandbox_nacl_t to read pid 1 content- Fix MCS Constraints to control ingres and egres controls on the network. - Change name of svirt_nokvm_t to svirt_tcg_t - Allow tuned to request the kernel to load kernel modules- Label /var/lib/pgsql/.ssh as ssh_home_t - Add labeling for /usr/bin/pg_ctl - Allow systemd-logind to manage keyring user tmp dirs - Add support for 7389/tcp port - gems seems to be placed in lots of places - Since xdm is running a full session, it seems to be trying to execute lots of executables via dbus - Add back tcp/8123 port as http_cache port - Add ovirt-guest-agent\.pid labeling - Allow xend to run scsi_id - Allow rhsmcertd-worker to read "physical_package_id" - Allow pki_tomcat to connect to ldap port - Allow lpr to read /usr/share/fonts - Allow open file from CD/DVD drive on domU - Allow munin services plugins to talk to SSSD - Allow all samba domains to create samba directory in var_t directories - Take away svirt_t ability to use nsswitch - Dontaudit attempts by openshift to read apache logs - Allow apache to create as well as append _ra_content_t - Dontaudit sendmail_t reading a leaked file descriptor - Add interface to have admin transition /etc/prelink.cache to the proper label - Add sntp support to ntp policy - Allow firewalld to dbus chat with devicekit_power - Allow tuned to call lsblk - Allow tor to read /proc/sys/kernel/random/uuid - Add tor_can_network_relay boolean- Add openshift_initrc_signal() interface - Fix typos - dspam port is treat as spamd_port_t - Allow setroubleshoot to getattr on all executables - Allow tuned to execute profiles scripts in /etc/tuned - Allow apache to create directories to store its log files - Allow all directories/files in /var/log starting with passenger to be labeled passenger_log_t - Looks like apache is sending sinal to openshift_initrc_t now,needs back port to RHEL6 - Allow Postfix to be configured to listen on TCP port 10026 for email from DSPAM - Add filename transition for /etc/tuned/active_profile - Allow condor_master to send mails - Allow condor_master to read submit.cf - Allow condor_master to create /tmp files/dirs - Allow condor_mater to send sigkill to other condor domains - Allow condor_procd sigkill capability - tuned-adm wants to talk with tuned daemon - Allow kadmind and krb5kdc to also list sssd_public_t - Allow accountsd to dbus chat with init - Fix git_read_generic_system_content_files() interface - pppd wants sys_nice by nmcli because of "syscall=sched_setscheduler" - Fix mozilla_plugin_can_network_connect to allow to connect to all ports - Label all munin plugins which are not covered by munin plugins policy as unconfined_munin_plugin_exec_t - dspam wants to search /var/spool for opendkim data - Revert "Add support for tcp/10026 port as dspam_port_t" - Turning on labeled networking requires additional access for netlabel_peer_t; these allow rules need to be back ported to RHEL6 - Allow all application domains to use fifo_files passed in from userdomains, also allow them to write to tmp_files inherited from userdomain - Allow systemd_tmpfiles_t to setattr on mandb_cache_t- consolekit.pp was not removed from the postinstall script- Add back consolekit policy - Silence bootloader trying to use inherited tty - Silence xdm_dbusd_t trying to execute telepathy apps - Fix shutdown avcs when machine has unconfined.pp disabled - The host and a virtual machine can share the same printer on a usb device - Change oddjob to transition to a ranged openshift_initr_exec_t when run from oddjob - Allow abrt_watch_log_t to execute bin_t - Allow chrome sandbox to write content in ~/.config/chromium - Dontaudit setattr on fontconfig dir for thumb_t - Allow lircd to request the kernel to load module - Make rsync as userdom_home_manager - Allow rsync to search automount filesystem - Add fixes for pacemaker- Add support for 4567/tcp port - Random fixes from Tuomo Soini - xdm wants to get init status - Allow programs to run in fips_mode - Add interface to allow the reading of all blk device nodes - Allow init to relabel rpcbind sock_file - Fix labeling for lastlog and faillog related to logrotate - ALlow aeolus_configserver to use TRAM port - Add fixes for aeolus_configserver - Allow snmpd to connect to snmp port - Allow spamd_update to create spamd_var_lib_t directories - Allow domains that can read sssd_public_t files to also list the directory - Remove miscfiles_read_localization, this is defined for all domains- Allow syslogd to request the kernel to load a module - Allow syslogd_t to read the network state information - Allow xdm_dbusd_t connect to the system DBUS - Add support for 7389/tcp port - Allow domains to read/write all inherited sockets - Allow staff_t to read kmsg - Add awstats_purge_apache_log boolean - Allow ksysguardproces to read /.config/Trolltech.conf - Allow passenger to create and append puppet log files - Add puppet_append_log and puppet_create_log interfaces - Add puppet_manage_log() interface - Allow tomcat domain to search tomcat_var_lib_t - Allow pki_tomcat_t to connect to pki_ca ports - Allow pegasus_t to have net_admin capability - Allow pegasus_t to write /sys/class/net//flags - Allow mailserver_delivery to manage mail_home_rw_t lnk_files - Allow fetchmail to create log files - Allow gnomeclock to manage home config in .kde - Allow bittlebee to read kernel sysctls - Allow logrotate to list /root- Fix userhelper_console_role_template() - Allow enabling Network Access Point service using blueman - Make vmware_host_t as unconfined domain - Allow authenticate users in webaccess via squid, using mysql as backend - Allow gathers to get various metrics on mounted file systems - Allow firewalld to read /etc/hosts - Fix cron_admin_role() to make sysadm cronjobs running in the sysadm_t instead of cronjob_t - Allow kdumpgui to read/write to zipl.conf - Commands needed to get mock to build from staff_t in enforcing mode - Allow mdadm_t to manage cgroup files - Allow all daemons and systemprocesses to use inherited initrc_tmp_t files - dontaudit ifconfig_t looking at fifo_files that are leaked to it - Add lableing for Quest Authentication System- Fix filetrans interface definitions - Dontaudit xdm_t to getattr on BOINC lib files - Add systemd_reload_all_services() interface - Dontaudit write access on /var/lib/net-snmp/mib_indexes - Only stop mcsuntrustedproc from relableing files - Allow accountsd to dbus chat with gdm - Allow realmd to getattr on all fs - Allow logrotate to reload all services - Add systemd unit file for radiusd - Allow winbind to create samba pid dir - Add labeling for /var/nmbd/unexpected - Allow chrome and mozilla plugin to connect to msnp ports- Fix storage_rw_inherited_fixed_disk_dev() to cover also blk_file - Dontaudit setfiles reading /dev/random - On initial boot gnomeclock is going to need to be set buy gdm - Fix tftp_read_content() interface - Random apps looking at kernel file systems - Testing virt with lxc requiers additional access for virsh_t - New allow rules requied for latest libvirt, libvirt talks directly to journald,lxc setup tool needs compromize_kernel,and we need ipc_lock in the container - Allow MPD to read /dev/radnom - Allow sandbox_web_type to read logind files which needs to read pulseaudio - Allow mozilla plugins to read /dev/hpet - Add labeling for /var/lib/zarafa-webap - Allow BOINC client to use an HTTP proxy for all connections - Allow rhsmertd to domain transition to dmidecod - Allow setroubleshootd to send D-Bus msg to ABRT- Define usbtty_device_t as a term_tty - Allow svnserve to accept a connection - Allow xend manage default virt_image_t type - Allow prelink_cron_system_t to overide user componant when executing cp - Add labeling for z-push - Gnomeclock sets the realtime clock - Openshift seems to be storing apache logs in /var/lib/openshift/.log/httpd - Allow lxc domains to use /dev/random and /dev/urandom- Add port defintion for tcp/9000 - Fix labeling for /usr/share/cluster/checkquorum to label also checkquorum.wdmd - Add rules and labeling for $HOME/cache/\.gstreamer-.* directory - Add support for CIM provider openlmi-networking which uses NetworkManager dbus API - Allow shorewall_t to create netlink_socket - Allow krb5admind to block suspend - Fix labels on /var/run/dlm_controld /var/log/dlm_controld - Allow krb5kdc to block suspend - gnomessytemmm_t needs to read /etc/passwd - Allow cgred to read all sysctls- Allow all domains to read /proc/sys/vm/overcommit_memory - Make proc_numa_t an MLS Trusted Object - Add /proc/numactl support for confined users - Allow ssh_t to connect to any port > 1023 - Add openvswitch domain - Pulseaudio tries to create directories in gnome_home_t directories - New ypbind pkg wants to search /var/run which is caused by sd_notify - Allow NM to read certs on NFS/CIFS using use_nfs_*, use_samba_* booleans - Allow sanlock to read /dev/random - Treat php-fpm with httpd_t - Allow domains that can read named_conf_t to be able to list the directories - Allow winbind to create sock files in /var/run/samba- Add smsd policy - Add support for OpenShift sbin labelin - Add boolean to allow virt to use rawip - Allow mozilla_plugin to read all file systems with noxattrs support - Allow kerberos to write on anon_inodefs fs - Additional access required by fenced - Add filename transitions for passwd.lock/group.lock - UPdate man pages - Create coolkey directory in /var/cache with the correct label- Fix label on /etc/group.lock - Allow gnomeclock to create lnk_file in /etc - label /root/.pki as a home_cert_t - Add interface to make sure rpcbind.sock is created with the correct label - Add definition for new directory /var/lib/os-probe and bootloader wants to read udev rules - opendkim should be a part of milter - Allow libvirt to set the kernel sched algorythm - Allow mongod to read sysfs_t - Add authconfig policy - Remove calls to miscfiles_read_localization all domains get this - Allow virsh_t to read /root/.pki/ content - Add label for log directory under /var/www/stickshift- Allow getty to setattr on usb ttys - Allow sshd to search all directories for sshd_home_t content - Allow staff domains to send dbus messages to kdumpgui - Fix labels on /etc/.pwd.lock and friends to be passwd_file_t - Dontaudit setfiles reading urand - Add files_dontaudit_list_tmp() for domains to which we added sys_nice/setsched - Allow staff_gkeyringd_t to read /home/$USER/.local/share/keyrings dir - Allow systemd-timedated to read /dev/urandom - Allow entropyd_t to read proc_t (meminfo) - Add unconfined munin plugin - Fix networkmanager_read_conf() interface - Allow blueman to list /tmp which is needed by sys_nic/setsched - Fix label of /etc/mail/aliasesdb-stamp - numad is searching cgroups - realmd is communicating with networkmanager using dbus - Lots of fixes to try to get kdump to work- Allow loging programs to dbus chat with realmd - Make apache_content_template calling as optional - realmd is using policy kit- Add new selinuxuser_use_ssh_chroot boolean - dbus needs to be able to read/write inherited fixed disk device_t passed through it - Cleanup netutils process allow rule - Dontaudit leaked fifo files from openshift to ping - sanlock needs to read mnt_t lnk files - Fail2ban needs to setsched and sys_nice- Change default label of all files in /var/run/rpcbind - Allow sandbox domains (java) to read hugetlbfs_t - Allow awstats cgi content to create tmp files and read apache log files - Allow setuid/setgid for cupsd-config - Allow setsched/sys_nice pro cupsd-config - Fix /etc/localtime sym link to be labeled locale_t - Allow sshd to search postgresql db t since this is a homedir - Allow xwindows users to chat with realmd - Allow unconfined domains to configure all files and null_device_t service- Adopt pki-selinux policy- pki is leaking which we dontaudit until a pki code fix - Allow setcap for arping - Update man pages - Add labeling for /usr/sbin/mcollectived - pki fixes - Allow smokeping to execute fping in the netutils_t domain- Allow mount to relabelfrom unlabeled file systems - systemd_logind wants to send and receive messages from devicekit disk over dbus to make connected mouse working - Add label to get bin files under libreoffice labeled correctly - Fix interface to allow executing of base_ro_file_type - Add fixes for realmd - Update pki policy - Add tftp_homedir boolean - Allow blueman sched_setscheduler - openshift user domains wants to r/w ssh tcp sockets- Additional requirements for disable unconfined module when booting - Fix label of systemd script files - semanage can use -F /dev/stdin to get input - syslog now uses kerberos keytabs - Allow xserver to compromise_kernel access - Allow nfsd to write to mount_var_run_t when running the mount command - Add filename transition rule for bin_t directories - Allow files to read usr_t lnk_files - dhcpc wants chown - Add support for new openshift labeling - Clean up for tunable+optional statements - Add labeling for /usr/sbin/mkhomedir_helper - Allow antivirus domain to managa amavis spool files - Allow rpcbind_t to read passwd - Allow pyzor running as spamc to manage amavis spool- Add interfaces to read kernel_t proc info - Missed this version of exec_all - Allow anyone who can load a kernel module to compromise kernel - Add oddjob_dbus_chat to openshift apache policy - Allow chrome_sandbox_nacl_t to send signals to itself - Add unit file support to usbmuxd_t - Allow all openshift domains to read sysfs info - Allow openshift domains to getattr on all domains- MLS fixes from Dan - Fix name of capability2 secure_firmware->compromise_kerne- Allow xdm to search all file systems - Add interface to allow the config of all files - Add rngd policy - Remove kgpg as a gpg_exec_t type - Allow plymouthd to block suspend - Allow systemd_dbus to config any file - Allow system_dbus_t to configure all services - Allow freshclam_t to read usr_files - varnishd requires execmem to load modules- Allow semanage to verify types - Allow sudo domain to execute user home files - Allow session_bus_type to transition to user_tmpfs_t - Add dontaudit caused by yum updates - Implement pki policy but not activated- tuned wants to getattr on all filesystems - tuned needs also setsched. The build is needed for test day- Add policy for qemu-qa - Allow razor to write own config files - Add an initial antivirus policy to collect all antivirus program - Allow qdisk to read usr_t - Add additional caps for vmware_host - Allow tmpfiles_t to setattr on mandb_cache_t - Dontaudit leaked files into mozilla_plugin_config_t - Allow wdmd to getattr on tmpfs - Allow realmd to use /dev/random - allow containers to send audit messages - Allow root mount any file via loop device with enforcing mls policy - Allow tmpfiles_t to setattr on mandb_cache_t - Allow tmpfiles_t to setattr on mandb_cache_t - Make userdom_dontaudit_write_all_ not allow open - Allow init scripts to read all unit files - Add support for saphostctrl ports- Add kernel_read_system_state to sandbox_client_t - Add some of the missing access to kdumpgui - Allow systemd_dbusd_t to status the init system - Allow vmnet-natd to request the kernel to load a module - Allow gsf-office-thum to append .cache/gdm/session.log - realmd wants to read .config/dconf/user - Firewalld wants sys_nice/setsched - Allow tmpreaper to delete mandb cache files - Firewalld wants sys_nice/setsched - Allow firewalld to perform a DNS name resolution - Allown winbind to read /usr/share/samba/codepages/lowcase.dat - Add support for HTTPProxy* in /etc/freshclam.conf - Fix authlogin_yubike boolean - Extend smbd_selinux man page to include samba booleans - Allow dhcpc to execute consoletype - Allow ping to use inherited tmp files created in init scripts - On full relabel with unconfined domain disabled, initrc was running some chcon's - Allow people who delete man pages to delete mandb cache files- Add missing permissive domains- Add new mandb policy - ALlow systemd-tmpfiles_t to relabel mandb_cache_t - Allow logrotate to start all unit files- Add fixes for ctbd - Allow nmbd to stream connect to ctbd - Make cglear_t as nsswitch_domain - Fix bogus in interfaces - Allow openshift to read/write postfix public pipe - Add postfix_manage_spool_maildrop_files() interface - stickshift paths have been renamed to openshift - gnome-settings-daemon wants to write to /run/systemd/inhibit/ pipes - Update man pages, adding ENTRYPOINTS- Add mei_device_t - Make sure gpg content in homedir created with correct label - Allow dmesg to write to abrt cache files - automount wants to search virtual memory sysctls - Add support for hplip logs stored in /var/log/hp/tmp - Add labeling for /etc/owncloud/config.php - Allow setroubleshoot to send analysys to syslogd-journal - Allow virsh_t to interact with new fenced daemon - Allow gpg to write to /etc/mail/spamassassiin directories - Make dovecot_deliver_t a mail server delivery type - Add label for /var/tmp/DNS25- Fixes for tomcat_domain template interface- Remove init_systemd and init_upstart boolean, Move init_daemon_domain and init_system_domain to use attributes - Add attribute to all base os types. Allow all domains to read all ro base OS types- Additional unit files to be defined as power unit files - Fix more boolean names- Fix boolean name so subs will continue to work- dbus needs to start getty unit files - Add interface to allow system_dbusd_t to start the poweroff service - xdm wants to exec telepathy apps - Allow users to send messages to systemdlogind - Additional rules needed for systemd and other boot apps - systemd wants to list /home and /boot - Allow gkeyringd to write dbus/conf file - realmd needs to read /dev/urand - Allow readahead to delete /.readahead if labeled root_t, might get created before policy is loaded- Fixes to safe more rules - Re-write tomcat_domain_template() - Fix passenger labeling - Allow all domains to read man pages - Add ephemeral_port_t to the 'generic' port interfaces - Fix the names of postgresql booleans- Stop using attributes form netlabel_peer and syslog, auth_use_nsswitch setsup netlabel_peer - Move netlable_peer check out of booleans - Remove call to recvfrom_netlabel for kerberos call - Remove use of attributes when calling syslog call - Move -miscfiles_read_localization to domain.te to save hundreds of allow rules - Allow all domains to read locale files. This eliminates around 1500 allow rules- Cleanup nis_use_ypbind_uncond interface - Allow rndc to block suspend - tuned needs to modify the schedule of the kernel - Allow svirt_t domains to read alsa configuration files - ighten security on irc domains and make sure they label content in homedir correctly - Add filetrans_home_content for irc files - Dontaudit all getattr access for devices and filesystems for sandbox domains - Allow stapserver to search cgroups directories - Allow all postfix domains to talk to spamd- Add interfaces to ignore setattr until kernel fixes this to be checked after the DAC check - Change pam_t to pam_timestamp_t - Add dovecot_domain attribute and allow this attribute block_suspend capability2 - Add sanlock_use_fusefs boolean - numad wants send/recieve msg - Allow rhnsd to send syslog msgs - Make piranha-pulse as initrc domain - Update openshift instances to dontaudit setattr until the kernel is fixed.- Fix auth_login_pgm_domain() interface to allow domains also managed user tmp dirs because of #856880 related to pam_systemd - Remove pam_selinux.8 which conflicts with man page owned by the pam package - Allow glance-api to talk to mysql - ABRT wants to read Xorg.0.log if if it detects problem with Xorg - Fix gstreamer filename trans. interface- Man page fixes by Dan Walsh- Allow postalias to read postfix config files - Allow man2html to read man pages - Allow rhev-agentd to search all mountpoints - Allow rhsmcertd to read /dev/random - Add tgtd_stream_connect() interface - Add cyrus_write_data() interface - Dontaudit attempts by sandboxX clients connectiing to the xserver_port_t - Add port definition for tcp/81 as http_port_t - Fix /dev/twa labeling - Allow systemd to read modules config- Merge openshift policy - Allow xauth to read /dev/urandom - systemd needs to relabel content in /run/systemd directories - Files unconfined should be able to perform all services on all files - Puppet tmp file can be leaked to all domains - Dontaudit rhsmcertd-worker to search /root/.local - Allow chown capability for zarafa domains - Allow system cronjobs to runcon into openshift domains - Allow virt_bridgehelper_t to manage content in the svirt_home_t labeled directories- nmbd wants to create /var/nmbd - Stop transitioning out of anaconda and firstboot, just causes AVC messages - Allow clamscan to read /etc files - Allow bcfg2 to bind cyphesis port - heartbeat should be run as rgmanager_t instead of corosync_t - Add labeling for /etc/openldap/certs - Add labeling for /opt/sartest directory - Make crontab_t as userdom home reader - Allow tmpreaper to list admin_home dir - Add defition for imap_0 replay cache file - Add support for gitolite3 - Allow virsh_t to send syslog messages - allow domains that can read samba content to be able to list the directories also - Add realmd_dbus_chat to allow all apps that use nsswitch to talk to realmd - Separate out sandbox from sandboxX policy so we can disable it by default - Run dmeventd as lvm_t - Mounting on any directory requires setattr and write permissions - Fix use_nfs_home_dirs() boolean - New labels for pam_krb5 - Allow init and initrc domains to sys_ptrace since this is needed to look at processes not owned by uid 0 - Add realmd_dbus_chat to allow all apps that use nsswitch to talk to realmd- Separate sandbox policy into sandbox and sandboxX, and disable sandbox by default on fresh installs - Allow domains that can read etc_t to read etc_runtime_t - Allow all domains to use inherited tmpfiles- Allow realmd to read resolv.conf - Add pegasus_cache_t type - Label /usr/sbin/fence_virtd as virsh_exec_t - Add policy for pkcsslotd - Add support for cpglockd - Allow polkit-agent-helper to read system-auth-ac - telepathy-idle wants to read gschemas.compiled - Allow plymouthd to getattr on fs_t - Add slpd policy - Allow ksysguardproces to read/write config_usr_t- Fix labeling substitution so rpm will label /lib/systemd content correctly- Add file name transitions for ttyACM0 - spice-vdagent(d)'s are going to log over to syslog - Add sensord policy - Add more fixes for passenger policy related to puppet - Allow wdmd to create wdmd_tmpfs_t - Fix labeling for /var/run/cachefilesd\.pid - Add thumb_tmpfs_t files type- Allow svirt domains to manage the network since this is containerized - Allow svirt_lxc_net_t to send audit messages- Make "snmpwalk -mREDHAT-CLUSTER-MIB ...." working - Allow dlm_controld to execute dlm_stonith labeled as bin_t - Allow GFS2 working on F17 - Abrt needs to execute dmesg - Allow jockey to list the contents of modeprobe.d - Add policy for lightsquid as squid_cron_t - Mailscanner is creating files and directories in /tmp - dmesg is now reading /dev/kmsg - Allow xserver to communicate with secure_firmware - Allow fsadm tools (fsck) to read /run/mount contnet - Allow sysadm types to read /dev/kmsg -- Allow postfix, sssd, rpcd to block_suspend - udev seems to need secure_firmware capability - Allow virtd to send dbus messages to firewalld so it can configure the firewall- Fix labeling of content in /run created by virsh_t - Allow condor domains to read kernel sysctls - Allow condor_master to connect to amqp - Allow thumb drives to create shared memory and semaphores - Allow abrt to read mozilla_plugin config files - Add labels for lightsquid - Default files in /opt and /usr that end in .cgi as httpd_sys_script_t, allow - dovecot_auth_t uses ldap for user auth - Allow domains that can read dhcp_etc_t to read lnk_files - Add more then one watchdog device - Allow useradd_t to manage etc_t files so it can rename it and edit them - Fix invalid class dir should be fifo_file - Move /run/blkid to fsadm and make sure labeling is correct- Fix bogus regex found by eparis - Fix manage run interface since lvm needs more access - syslogd is searching cgroups directory - Fixes to allow virt-sandbox-service to manage lxc var run content- Fix Boolean settings - Add new libjavascriptcoregtk as textrel_shlib_t - Allow xdm_t to create xdm_home_t directories - Additional access required for systemd - Dontaudit mozilla_plugin attempts to ipc_lock - Allow tmpreaper to delete unlabeled files - Eliminate screen_tmp_t and allow it to manage user_tmp_t - Dontaudit mozilla_plugin_config_t to append to leaked file descriptors - Allow web plugins to connect to the asterisk ports - Condor will recreate the lock directory if it does not exist - Oddjob mkhomedir needs to connectto user processes - Make oddjob_mkhomedir_t a userdom home manager- Put placeholder back in place for proper numbering of capabilities - Systemd also configures init scripts- Fix ecryptfs interfaces - Bootloader seems to be trolling around /dev/shm and /dev - init wants to create /etc/systemd/system-update.target.wants - Fix systemd_filetrans call to move it out of tunable - Fix up policy to work with systemd userspace manager - Add secure_firmware capability and remove bogus epolwakeup - Call seutil_*_login_config interfaces where should be needed - Allow rhsmcertd to send signal to itself - Allow thin domains to send signal to itself - Allow Chrome_ChildIO to read dosfs_t- Add role rules for realmd, sambagui- Add new type selinux_login_config_t for /etc/selinux//logins/ - Additional fixes for seutil_manage_module_store() - dbus_system_domain() should be used with optional_policy - Fix svirt to be allowed to use fusefs file system - Allow login programs to read /run/ data created by systemd_login - sssd wants to write /etc/selinux//logins/ for SELinux PAM module - Fix svirt to be allowed to use fusefs file system - Allow piranha domain to use nsswitch - Sanlock needs to send Kill Signals to non root processes - Pulseaudio wants to execute /run/user/PID/.orc- Fix saslauthd when it tries to read /etc/shadow - Label gnome-boxes as a virt homedir - Need to allow svirt_t ability to getattr on nfs_t file systems - Update sanlock policy to solve all AVC's - Change confined users can optionally manage virt content - Handle new directories under ~/.cache - Add block suspend to appropriate domains - More rules required for containers - Allow login programs to read /run/ data created by systemd_logind - Allow staff users to run svirt_t processes- Update to upstream- More fixes for systemd to make rawhide booting from Dan Walsh- Add systemd fixes to make rawhide booting- Add systemd_logind_inhibit_var_run_t attribute - Remove corenet_all_recvfrom_unlabeled() for non-contrib policies because we moved it to domain.if for all domain_type - Add interface for mysqld to dontaudit signull to all processes - Label new /var/run/journal directory correctly - Allow users to inhibit suspend via systemd - Add new type for the /var/run/inhibit directory - Add interface to send signull to systemd_login so avahi can send them - Allow systemd_passwd to send syslog messages - Remove corenet_all_recvfrom_unlabeled() calling fro policy files - Allow editparams.cgi running as httpd_bugzilla_script_t to read /etc/group - Allow smbd to read cluster config - Add additional labeling for passenger - Allow dbus to inhibit suspend via systemd - Allow avahi to send signull to systemd_login- Add interface to dontaudit getattr access on sysctls - Allow sshd to execute /bin/login - Looks like xdm is recreating the xdm directory in ~/.cache/ on login - Allow syslog to use the leaked kernel_t unix_dgram_socket from system-jounald - Fix semanage to work with unconfined domain disabled on F18 - Dontaudit attempts by mozilla plugins to getattr on all kernel sysctls - Virt seems to be using lock files - Dovecot seems to be searching directories of every mountpoint - Allow jockey to read random/urandom, execute shell and install third-party drivers - Add aditional params to allow cachedfiles to manage its content - gpg agent needs to read /dev/random - The kernel hands an svirt domains /SYSxxxxx which is a tmpfs that httpd wants to read and write - Add a bunch of dontaudit rules to quiet svirt_lxc domains - Additional perms needed to run svirt_lxc domains - Allow cgclear to read cgconfig - Allow sys_ptrace capability for snmp - Allow freshclam to read /proc - Allow procmail to manage /home/user/Maildir content - Allow NM to execute wpa_cli - Allow amavis to read clamd system state - Regenerate man pages- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- Add realmd and stapserver policies - Allow useradd to manage stap-server lib files - Tighten up capabilities for confined users - Label /etc/security/opasswd as shadow_t - Add label for /dev/ecryptfs - Allow condor_startd_t to start sshd with the ranged - Allow lpstat.cups to read fips_enabled file - Allow pyzor running as spamc_t to create /root/.pyzor directory - Add labelinf for amavisd-snmp init script - Add support for amavisd-snmp - Allow fprintd sigkill self - Allow xend (w/o libvirt) to start virtual machines - Allow aiccu to read /etc/passwd - Allow condor_startd to Make specified domain MCS trusted for setting any category set for the processes it executes - Add condor_startd_ranged_domtrans_to() interface - Add ssd_conf_t for /etc/sssd - accountsd needs to fchown some files/directories - Add ICACLient and zibrauserdata as mozilla_filetrans_home_content - SELinux reports afs_t needs dac_override to read /etc/mtab, even though everything works, adding dontaudit - Allow xend_t to read the /etc/passwd file- Until we figure out how to fix systemd issues, allow all apps that send syslog messages to send them to kernel_t - Add init_access_check() interface - Fix label on /usr/bin/pingus to not be labeled as ping_exec_t - Allow tcpdump to create a netlink_socket - Label newusers like useradd - Change xdm log files to be labeled xdm_log_t - Allow sshd_t with privsep to work in MLS - Allow freshclam to update databases thru HTTP proxy - Allow s-m-config to access check on systemd - Allow abrt to read public files by default - Fix amavis_create_pid_files() interface - Add labeling and filename transition for dbomatic.log - Allow system_dbusd_t to stream connect to bluetooth, and use its socket - Allow amavisd to execute fsav - Allow tuned to use sys_admin and sys_nice capabilities - Add php-fpm policy from Bryan - Add labeling for aeolus-configserver-thinwrapper - Allow thin domains to execute shell - Fix gnome_role_gkeyringd() interface description - Lot of interface fixes - Allow OpenMPI job running as condor_startd_ssh_t to manage condor lib files - Allow OpenMPI job to use kerberos - Make deltacloudd_t as nsswitch_domain - Allow xend_t to run lsscsi - Allow qemu-dm running as xend_t to create tun_socket - Add labeling for /opt/brother/Printers(.*/)?inf - Allow jockey-backend to read pyconfig-64.h labeled as usr_t - Fix clamscan_can_scan_system boolean - Allow lpr to connectto to /run/user/$USER/keyring-22uREb/pkcs11- initrc is calling exportfs which is not confined so it attempts to read nfsd_files - Fixes for passenger running within openshift. - Add labeling for all tomcat6 dirs - Add support for tomcat6 - Allow cobblerd to read /etc/passwd - Allow jockey to read sysfs and and execute binaries with bin_t - Allow thum to use user terminals - Allow cgclear to read cgconfig config files - Fix bcf2g.fc - Remove sysnet_dns_name_resolve() from policies where auth_use_nsswitch() is used for other domains - Allow dbomatic to execute ruby - abrt_watch_log should be abrt_domain - Allow mozilla_plugin to connect to gatekeeper port- add ptrace_child access to process - remove files_read_etc_files() calling from all policies which have auth_use_nsswith() - Allow boinc domains to manage boinc_lib_t lnk_files - Add support for boinc-client.service unit file - Add support for boinc.log - Allow mozilla_plugin execmod on mozilla home files if allow_ex - Allow dovecot_deliver_t to read dovecot_var_run_t - Allow ldconfig and insmod to manage kdumpctl tmp files - Move thin policy out from cloudform.pp and add a new thin poli - pacemaker needs to communicate with corosync streams - abrt is now started on demand by dbus - Allow certmonger to talk directly to Dogtag servers - Change labeling for /var/lib/cobbler/webui_sessions to httpd_c - Allow mozila_plugin to execute gstreamer home files - Allow useradd to delete all file types stored in the users hom - rhsmcertd reads the rpm database - Add support for lightdm- Add tomcat policy - Remove pyzor/razor policy - rhsmcertd reads the rpm database - Dontaudit thumb to setattr on xdm_tmp dir - Allow wicd to execute ldconfig in the networkmanager_t domain - Add /var/run/cherokee\.pid labeling - Allow mozilla_plugin to create mozilla_plugin_tmp_t lnk files too - Allow postfix-master to r/w pipes other postfix domains - Allow snort to create netlink_socket - Add kdumpctl policy - Allow firstboot to create tmp_t files/directories - /usr/bin/paster should not be labeled as piranha_exec_t - remove initrc_domain from tomcat - Allow ddclient to read /etc/passwd - Allow useradd to delete all file types stored in the users homedir - Allow ldconfig and insmod to manage kdumpctl tmp files - Firstboot should be just creating tmp_t dirs and xauth should be allowed to write to those - Transition xauth files within firstboot_tmp_t - Fix labeling of /run/media to match /media - Label all lxdm.log as xserver_log_t - Add port definition for mxi port - Allow local_login_t to execute tmux- apcupsd needs to read /etc/passwd - Sanlock allso sends sigkill - Allow glance_registry to connect to the mysqld port - Dontaudit mozilla_plugin trying to getattr on /dev/gpmctl - Allow firefox plugins/flash to connect to port 1234 - Allow mozilla plugins to delete user_tmp_t files - Add transition name rule for printers.conf.O - Allow virt_lxc_t to read urand - Allow systemd_loigind to list gstreamer_home_dirs - Fix labeling for /usr/bin - Fixes for cloudform services * support FIPS - Allow polipo to work as web caching - Allow chfn to execute tmux- Add support for ecryptfs * ecryptfs does not support xattr * we need labeling for HOMEDIR - Add policy for (u)mount.ecryptfs* - Fix labeling of kerbero host cache files, allow rpc.svcgssd to manage host cache - Allow dovecot to manage Maildir content, fix transitions to Maildir - Allow postfix_local to transition to dovecot_deliver - Dontaudit attempts to setattr on xdm_tmp_t, looks like bogus code - Cleanup interface definitions - Allow apmd to change with the logind daemon - Changes required for sanlock in rhel6 - Label /run/user/apache as httpd_tmp_t - Allow thumb to use lib_t as execmod if boolean turned on - Allow squid to create the squid directory in /var with the correct labe - Add a new policy for glusterd from Bryan Bickford (bbickfor@redhat.com) - Allow virtd to exec xend_exec_t without transition - Allow virtd_lxc_t to unmount all file systems- PolicyKit path has changed - Allow httpd connect to dirsrv socket - Allow tuned to write generic kernel sysctls - Dontaudit logwatch to gettr on /dev/dm-2 - Allow policykit-auth to manage kerberos files - Make condor_startd and rgmanager as initrc domain - Allow virsh to read /etc/passwd - Allow mount to mount on user_tmp_t for /run/user/dwalsh/gvfs - xdm now needs to execute xsession_exec_t - Need labels for /var/lib/gdm - Fix files_filetrans_named_content() interface - Add new attribute - initrc_domain - Allow systemd_logind_t to signal, signull, sigkill all processes - Add filetrans rules for etc_runtime files- Rename boolean names to remove allow_- Mass merge with upstream * new policy topology to include contrib policy modules * we have now two base policy patches- Fix description of authlogin_nsswitch_use_ldap - Fix transition rule for rhsmcertd_t needed for RHEL7 - Allow useradd to list nfs state data - Allow openvpn to manage its log file and directory - We want vdsm to transition to mount_t when executing mount command to make sure /etc/mtab remains labeled correctly - Allow thumb to use nvidia devices - Allow local_login to create user_tmp_t files for kerberos - Pulseaudio needs to read systemd_login /var/run content - virt should only transition named system_conf_t config files - Allow munin to execute its plugins - Allow nagios system plugin to read /etc/passwd - Allow plugin to connect to soundd port - Fix httpd_passwd to be able to ask passwords - Radius servers can use ldap for backing store - Seems to need to mount on /var/lib for xguest polyinstatiation to work. - Allow systemd_logind to list the contents of gnome keyring - VirtualGL need xdm to be able to manage content in /etc/opt/VirtualGL - Add policy for isns-utils- Add policy for subversion daemon - Allow boinc to read passwd - Allow pads to read kernel network state - Fix man2html interface for sepolgen-ifgen - Remove extra /usr/lib/systemd/system/smb - Remove all /lib/systemd and replace with /usr/lib/systemd - Add policy for man2html - Fix the label of kerberos_home_t to krb5_home_t - Allow mozilla plugins to use Citrix - Allow tuned to read /proc/sys/kernel/nmi_watchdog - Allow tune /sys options via systemd's tmpfiles.d "w" type- Dontaudit lpr_t to read/write leaked mozilla tmp files - Add file name transition for .grl-podcasts directory - Allow corosync to read user tmp files - Allow fenced to create snmp lib dirs/files - More fixes for sge policy - Allow mozilla_plugin_t to execute any application - Allow dbus to read/write any open file descriptors to any non security file on the system that it inherits to that it can pass them to another domain - Allow mongod to read system state information - Fix wrong type, we should dontaudit sys_admin for xdm_t not xserver_t - Allow polipo to manage polipo_cache dirs - Add jabbar_client port to mozilla_plugin_t - Cleanup procmail policy - system bus will pass around open file descriptors on files that do not have labels on them - Allow l2tpd_t to read system state - Allow tuned to run ls /dev - Allow sudo domains to read usr_t files - Add label to machine-id - Fix corecmd_read_bin_symlinks cut and paste error- Fix pulseaudio port definition - Add labeling for condor_starter - Allow chfn_t to creat user_tmp_files - Allow chfn_t to execute bin_t - Allow prelink_cron_system_t to getpw calls - Allow sudo domains to manage kerberos rcache files - Allow user_mail_domains to work with courie - Port definitions necessary for running jboss apps within openshift - Add support for openstack-nova-metadata-api - Add support for nova-console* - Add support for openstack-nova-xvpvncproxy - Fixes to make privsep+SELinux working if we try to use chage to change passwd - Fix auth_role() interface - Allow numad to read sysfs - Allow matahari-rpcd to execute shell - Add label for ~/.spicec - xdm is executing lspci as root which is requesting a sys_admin priv but seems to succeed without it - Devicekit_disk wants to read the logind sessions file when writing a cd - Add fixes for condor to make condor jobs working correctly - Change label of /var/log/rpmpkgs to cron_log_t - Access requires to allow systemd-tmpfiles --create to work. - Fix obex to be a user application started by the session bus. - Add additional filename trans rules for kerberos - Fix /var/run/heartbeat labeling - Allow apps that are managing rcache to file trans correctly - Allow openvpn to authenticate against ldap server - Containers need to listen to network starting and stopping events- Make systemd unit files less specific- Fix zarafa labeling - Allow guest_t to fix labeling - corenet_tcp_bind_all_unreserved_ports(ssh_t) should be called with the user_tcp_server boolean - add lxc_contexts - Allow accountsd to read /proc - Allow restorecond to getattr on all file sytems - tmpwatch now calls getpw - Allow apache daemon to transition to pwauth domain - Label content under /var/run/user/NAME/keyring* as gkeyringd_tmp_t - The obex socket seems to be a stream socket - dd label for /var/run/nologin- Allow jetty running as httpd_t to read hugetlbfs files - Allow sys_nice and setsched for rhsmcertd - Dontaudit attempts by mozilla_plugin_t to bind to ssdp ports - Allow setfiles to append to xdm_tmp_t - Add labeling for /export as a usr_t directory - Add labels for .grl files created by gstreamer- Add labeling for /usr/share/jetty/bin/jetty.sh - Add jetty policy which contains file type definitios - Allow jockey to use its own fifo_file and make this the default for all domains - Allow mozilla_plugins to use spice (vnc_port/couchdb) - asterisk wants to read the network state - Blueman now uses /var/lib/blueman- Add label for nodejs_debug - Allow mozilla_plugin_t to create ~/.pki directory and content- Add clamscan_can_scan_system boolean - Allow mysqld to read kernel network state - Allow sshd to read/write condor lib files - Allow sshd to read/write condor-startd tcp socket - Fix description on httpd_graceful_shutdown - Allow glance_registry to communicate with mysql - dbus_system_domain is using systemd to lauch applications - add interfaces to allow domains to send kill signals to user mail agents - Remove unnessary access for svirt_lxc domains, add privs for virtd_lxc_t - Lots of new access required for secure containers - Corosync needs sys_admin capability - ALlow colord to create shm - .orc should be allowed to be created by any app that can create gstream home content, thumb_t to be specific - Add boolean to control whether or not mozilla plugins can create random content in the users homedir - Add new interface to allow domains to list msyql_db directories, needed for libra - shutdown has to be allowed to delete etc_runtime_t - Fail2ban needs to read /etc/passwd - Allow ldconfig to create /var/cache/ldconfig - Allow tgtd to read hardware state information - Allow collectd to create packet socket - Allow chronyd to send signal to itself - Allow collectd to read /dev/random - Allow collectd to send signal to itself - firewalld needs to execute restorecon - Allow restorecon and other login domains to execute restorecon- Allow logrotate to getattr on systemd unit files - Add support for tor systemd unit file - Allow apmd to create /var/run/pm-utils with the correct label - Allow l2tpd to send sigkill to pppd - Allow pppd to stream connect to l2tpd - Add label for scripts in /etc/gdm/ - Allow systemd_logind_t to ignore mcs constraints on sigkill - Fix files_filetrans_system_conf_named_files() interface - Add labels for /usr/share/wordpress/wp-includes/*.php - Allow cobbler to get SELinux mode and booleans- Add unconfined_execmem_exec_t as an alias to bin_t - Allow fenced to read snmp var lib files, also allow it to read usr_t - ontaudit access checks on all executables from mozilla_plugin - Allow all user domains to setexec, so that sshd will work properly if it call setexec(NULL) while running withing a user mode - Allow systemd_tmpfiles_t to getattr all pipes and sockets - Allow glance-registry to send system log messages - semanage needs to manage mock lib files/dirs- Add policy for abrt-watch-log - Add definitions for jboss_messaging ports - Allow systemd_tmpfiles to manage printer devices - Allow oddjob to use nsswitch - Fix labeling of log files for postgresql - Allow mozilla_plugin_t to execmem and execstack by default - Allow firewalld to execute shell - Fix /etc/wicd content files to get created with the correct label - Allow mcelog to exec shell - Add ~/.orc as a gstreamer_home_t - /var/spool/postfix/lib64 should be labeled lib_t - mpreaper should be able to list all file system labeled directories - Add support for apache to use openstack - Add labeling for /etc/zipl.conf and zipl binary - Turn on allow_execstack and turn off telepathy transition for final release- More access required for virt_qmf_t - Additional assess required for systemd-logind to support multi-seat - Allow mozilla_plugin to setrlimit - Revert changes to fuse file system to stop deadlock- Allow condor domains to connect to ephemeral ports - More fixes for condor policy - Allow keystone to stream connect to mysqld - Allow mozilla_plugin_t to read generic USB device to support GPS devices - Allow thum to file name transition gstreamer home content - Allow thum to read all non security files - Allow glance_api_t to connect to ephemeral ports - Allow nagios plugins to read /dev/urandom - Allow syslogd to search postfix spool to support postfix chroot env - Fix labeling for /var/spool/postfix/dev - Allow wdmd chown - Label .esd_auth as pulseaudio_home_t - Have no idea why keyring tries to write to /run/user/dwalsh/dconf/user, but we can dontaudit for now- Add support for clamd+systemd - Allow fresclam to execute systemctl to handle clamd - Change labeling for /usr/sbin/rpc.ypasswd.env - Allow yppaswd_t to execute yppaswd_exec_t - Allow yppaswd_t to read /etc/passwd - Gnomekeyring socket has been moved to /run/user/USER/ - Allow samba-net to connect to ldap port - Allow signal for vhostmd - allow mozilla_plugin_t to read user_home_t socket - New access required for secure Linux Containers - zfs now supports xattrs - Allow quantum to execute sudo and list sysfs - Allow init to dbus chat with the firewalld - Allow zebra to read /etc/passwd- Allow svirt_t to create content in the users homedir under ~/.libvirt - Fix label on /var/lib/heartbeat - Allow systemd_logind_t to send kill signals to all processes started by a user - Fuse now supports Xattr Support- upowered needs to setsched on the kernel - Allow mpd_t to manage log files - Allow xdm_t to create /var/run/systemd/multi-session-x - Add rules for missedfont.log to be used by thumb.fc - Additional access required for virt_qmf_t - Allow dhclient to dbus chat with the firewalld - Add label for lvmetad - Allow systemd_logind_t to remove userdomain sock_files - Allow cups to execute usr_t files - Fix labeling on nvidia shared libraries - wdmd_t needs access to sssd and /etc/passwd - Add boolean to allow ftp servers to run in passive mode - Allow namepspace_init_t to relabelto/from a different user system_u from the user the namespace_init running with - Fix using httpd_use_fusefs - Allow chrome_sandbox_nacl to write inherited user tmp files as we allow it for chrome_sandbox- Rename rdate port to time port, and allow gnomeclock to connect to it - We no longer need to transition to ldconfig from rpm, rpm_script, or anaconda - /etc/auto.* should be labeled bin_t - Add httpd_use_fusefs boolean - Add fixes for heartbeat - Allow sshd_t to signal processes that it transitions to - Add condor policy - Allow svirt to create monitors in ~/.libvirt - Allow dovecot to domtrans sendmail to handle sieve scripts - Lot of fixes for cfengine- /var/run/postmaster.* labeling is no longer needed - Alllow drbdadmin to read /dev/urandom - l2tpd_t seems to use ptmx - group+ and passwd+ should be labeled as /etc/passwd - Zarafa-indexer is a socket- Ensure lastlog is labeled correctly - Allow accountsd to read /proc data about gdm - Add fixes for tuned - Add bcfg2 fixes which were discovered during RHEL6 testing - More fixes for gnome-keyring socket being moved - Run semanage as a unconfined domain, and allow initrc_t to create tmpfs_t sym links on shutdown - Fix description for files_dontaudit_read_security_files() interface- Add new policy and man page for bcfg2 - cgconfig needs to use getpw calls - Allow domains that communicate with the keyring to use cache_home_t instead of gkeyringd_tmpt - gnome-keyring wants to create a directory in cache_home_t - sanlock calls getpw- Add numad policy and numad man page - Add fixes for interface bugs discovered by SEWatch - Add /tmp support for squid - Add fix for #799102 * change default labeling for /var/run/slapd.* sockets - Make thumb_t as userdom_home_reader - label /var/lib/sss/mc same as pubconf, so getpw domains can read it - Allow smbspool running as cups_t to stream connect to nmbd - accounts needs to be able to execute passwd on behalf of users - Allow systemd_tmpfiles_t to delete boot flags - Allow dnssec_trigger to connect to apache ports - Allow gnome keyring to create sock_files in ~/.cache - google_authenticator is using .google_authenticator - sandbox running from within firefox is exposing more leaks - Dontaudit thumb to read/write /dev/card0 - Dontaudit getattr on init_exec_t for gnomeclock_t - Allow certmonger to do a transition to certmonger_unconfined_t - Allow dhcpc setsched which is caused by nmcli - Add rpm_exec_t for /usr/sbin/bcfg2 - system cronjobs are sending dbus messages to systemd_logind - Thumnailers read /dev/urand- Allow auditctl getcap - Allow vdagent to use libsystemd-login - Allow abrt-dump-oops to search /etc/abrt - Got these avc's while trying to print a boarding pass from firefox - Devicekit is now putting the media directory under /run/media - Allow thumbnailers to create content in ~/.thumbails directory - Add support for proL2TPd by Dominick Grift - Allow all domains to call getcap - wdmd seems to get a random chown capability check that it does not need - Allow vhostmd to read kernel sysctls- Allow chronyd to read unix - Allow hpfax to read /etc/passwd - Add support matahari vios-proxy-* apps and add virtd_exec_t label for them - Allow rpcd to read quota_db_t - Update to man pages to match latest policy - Fix bug in jockey interface for sepolgen-ifgen - Add initial svirt_prot_exec_t policy- More fixes for systemd from Dan Walsh- Add a new type for /etc/firewalld and allow firewalld to write to this directory - Add definition for ~/Maildir, and allow mail deliver domains to write there - Allow polipo to run from a cron job - Allow rtkit to schedule wine processes - Allow mozilla_plugin_t to acquire a bug, and allow it to transition gnome content in the home dir to the proper label - Allow users domains to send signals to consolehelper domains- More fixes for boinc policy - Allow polipo domain to create its own cache dir and pid file - Add systemctl support to httpd domain - Add systemctl support to polipo, allow NetworkManager to manage the service - Add policy for jockey-backend - Add support for motion daemon which is now covered by zoneminder policy - Allow colord to read/write motion tmpfs - Allow vnstat to search through var_lib_t directories - Stop transitioning to quota_t, from init an sysadm_t- Add svirt_lxc_file_t as a customizable type- Add additional fixes for icmp nagios plugin - Allow cron jobs to open fifo_files from cron, since service script opens /dev/stdin - Add certmonger_unconfined_exec_t - Make sure tap22 device is created with the correct label - Allow staff users to read systemd unit files - Merge in previously built policy - Arpwatch needs to be able to start netlink sockets in order to start - Allow cgred_t to sys_ptrace to look at other DAC Processes- Back port some of the access that was allowed in nsplugin_t - Add definitiona for couchdb ports - Allow nagios to use inherited users ttys - Add git support for mock - Allow inetd to use rdate port - Add own type for rdate port - Allow samba to act as a portmapper - Dontaudit chrome_sandbox attempts to getattr on chr_files in /dev - New fixes needed for samba4 - Allow apps that use lib_t to read lib_t symlinks- Add policy for nove-cert - Add labeling for nova-openstack systemd unit files - Add policy for keystoke- Fix man pages fro domains - Add man pages for SELinux users and roles - Add storage_dev_filetrans_named_fixed_disk() and use it for smartmon - Add policy for matahari-rpcd - nfsd executes mount command on restart - Matahari domains execute renice and setsched - Dontaudit leaked tty in mozilla_plugin_config - mailman is changing to a per instance naming - Add 7600 and 4447 as jboss_management ports - Add fixes for nagios event handlers - Label httpd.event as httpd_exec_t, it is an apache daemon- Add labeling for /var/spool/postfix/dev/log - NM reads sysctl.conf - Iscsi log file context specification fix - Allow mozilla plugins to send dbus messages to user domains that transition to it - Allow mysql to read the passwd file - Allow mozilla_plugin_t to create mozilla home dirs in user homedir - Allow deltacloud to read kernel sysctl - Allow postgresql_t to connectto itselfAllow postgresql_t to connectto itself - Allow postgresql_t to connectto itself - Add login_userdomain attribute for users which can log in using terminal- Allow sysadm_u to reach system_r by default #784011 - Allow nagios plugins to use inherited user terminals - Razor labeling is not used no longer - Add systemd support for matahari - Add port_types to man page, move booleans to the top, fix some english - Add support for matahari-sysconfig-console - Clean up matahari.fc - Fix matahari_admin() interfac - Add labels for/etc/ssh/ssh_host_*.pub keys- Allow ksysguardproces to send system log msgs - Allow boinc setpgid and signull - Allow xdm_t to sys_ptrace to run pidof command - Allow smtpd_t to manage spool files/directories and symbolic links - Add labeling for jetty - Needed changes to get unbound/dnssec to work with openswan- Add user_fonts_t alias xfs_tmp_t - Since depmod now runs as insmod_t we need to write to kernel_object_t - Allow firewalld to dbus chat with networkmanager - Allow qpidd to connect to matahari ports - policykit needs to read /proc for uses not owned by it - Allow systemctl apps to connecto the init stream- Turn on deny_ptrace boolean- Remove pam_selinux.8 man page. There was a conflict.- Add proxy class and read access for gssd_proxy - Separate out the sharing public content booleans - Allow certmonger to execute a script and send signals to apache and dirsrv to reload the certificate - Add label transition for gstream-0.10 and 12 - Add booleans to allow rsync to share nfs and cifs file sytems - chrome_sandbox wants to read the /proc/PID/exe file of the program that executed it - Fix filename transitions for cups files - Allow denyhosts to read "unix" - Add file name transition for locale.conf.new - Allow boinc projects to gconf config files - sssd needs to be able to increase the socket limit under certain loads - sge_execd needs to read /etc/passwd - Allow denyhost to check network state - NetworkManager needs to read sessions data - Allow denyhost to check network state - Allow xen to search virt images directories - Add label for /dev/megaraid_sas_ioctl_node - Add autogenerated man pages- Allow boinc project to getattr on fs - Allow init to execute initrc_state_t - rhev-agent package was rename to ovirt-guest-agent - If initrc_t creates /etc/local.conf then we need to make sure it is labeled correctly - sytemd writes content to /run/initramfs and executes it on shutdown - kdump_t needs to read /etc/mtab, should be back ported to F16 - udev needs to load kernel modules in early system boot- Need to add sys_ptrace back in since reading any content in /proc can cause these accesses - Add additional systemd interfaces which are needed fro *_admin interfaces - Fix bind_admin() interface- Allow firewalld to read urand - Alias java, execmem_mono to bin_t to allow third parties - Add label for kmod - /etc/redhat-lsb contains binaries - Add boolean to allow gitosis to send mail - Add filename transition also for "event20" - Allow systemd_tmpfiles_t to delete all file types - Allow collectd to ipc_lock- make consoletype_exec optional, so we can remove consoletype policy - remove unconfined_permisive.patch - Allow openvpn_t to inherit user home content and tmp content - Fix dnssec-trigger labeling - Turn on obex policy for staff_t - Pem files should not be secret - Add lots of rules to fix AVC's when playing with containers - Fix policy for dnssec - Label ask-passwd directories correctly for systemd- sshd fixes seem to be causing unconfined domains to dyntrans to themselves - fuse file system is now being mounted in /run/user - systemd_logind is sending signals to processes that are dbus messaging with it - Add support for winshadow port and allow iscsid to connect to this port - httpd should be allowed to bind to the http_port_t udp socket - zarafa_var_lib_t can be a lnk_file - A couple of new .xsession-errors files - Seems like user space and login programs need to read logind_sessions_files - Devicekit disk seems to be being launched by systemd - Cleanup handling of setfiles so most of rules in te file - Correct port number for dnssec - logcheck has the home dir set to its cache- Add policy for grindengine MPI jobs- Add new sysadm_secadm.pp module * contains secadm definition for sysadm_t - Move user_mail_domain access out of the interface into the te file - Allow httpd_t to create httpd_var_lib_t directories as well as files - Allow snmpd to connect to the ricci_modcluster stream - Allow firewalld to read /etc/passwd - Add auth_use_nsswitch for colord - Allow smartd to read network state - smartdnotify needs to read /etc/group- Allow gpg and gpg_agent to store sock_file in gpg_secret_t directory - lxdm startup scripts should be labeled bin_t, so confined users will work - mcstransd now creates a pid, needs back port to F16 - qpidd should be allowed to connect to the amqp port - Label devices 010-029 as usb devices - ypserv packager says ypserv does not use tmp_t so removing selinux policy types - Remove all ptrace commands that I believe are caused by the kernel/ps avcs - Add initial Obex policy - Add logging_syslogd_use_tty boolean - Add polipo_connect_all_unreserved bolean - Allow zabbix to connect to ftp port - Allow systemd-logind to be able to switch VTs - Allow apache to communicate with memcached through a sock_file- Fix file_context.subs_dist for now to work with pre usrmove- More /usr move fixes- Add zabbix_can_network boolean - Add httpd_can_connect_zabbix boolean - Prepare file context labeling for usrmove functions - Allow system cronjobs to read kernel network state - Add support for selinux_avcstat munin plugin - Treat hearbeat with corosync policy - Allow corosync to read and write to qpidd shared mem - mozilla_plugin is trying to run pulseaudio - Fixes for new sshd patch for running priv sep domains as the users context - Turn off dontaudit rules when turning on allow_ypbind - udev now reads /etc/modules.d directory- Turn on deny_ptrace boolean for the Rawhide run, so we can test this out - Cups exchanges dbus messages with init - udisk2 needs to send syslog messages - certwatch needs to read /etc/passwd- Add labeling for udisks2 - Allow fsadmin to communicate with the systemd process- Treat Bip with bitlbee policy * Bip is an IRC proxy - Add port definition for interwise port - Add support for ipa_memcached socket - systemd_jounald needs to getattr on all processes - mdadmin fixes * uses getpw - amavisd calls getpwnam() - denyhosts calls getpwall()- Setup labeling of /var/rsa and /var/lib/rsa to allow login programs to write there - bluetooth says they do not use /tmp and want to remove the type - Allow init to transition to colord - Mongod needs to read /proc/sys/vm/zone_reclaim_mode - Allow postfix_smtpd_t to connect to spamd - Add boolean to allow ftp to connect to all ports > 1023 - Allow sendmain to write to inherited dovecot tmp files - setroubleshoot needs to be able to execute rpm to see what version of packages- Merge systemd patch - systemd-tmpfiles wants to relabel /sys/devices/system/cpu/online - Allow deltacloudd dac_override, setuid, setgid caps - Allow aisexec to execute shell - Add use_nfs_home_dirs boolean for ssh-keygen- Fixes to make rawhide boot in enforcing mode with latest systemd changes- Add labeling for /var/run/systemd/journal/syslog - libvirt sends signals to ifconfig - Allow domains that read logind session files to list them- Fixed destined form libvirt-sandbox - Allow apps that list sysfs to also read sympolicy links in this filesystem - Add ubac_constrained rules for chrome_sandbox - Need interface to allow domains to use tmpfs_t files created by the kernel, used by libra - Allow postgresql to be executed by the caller - Standardize interfaces of daemons - Add new labeling for mm-handler - Allow all matahari domains to read network state and etc_runtime_t files- New fix for seunshare, requires seunshare_domains to be able to mounton / - Allow systemctl running as logrotate_t to connect to private systemd socket - Allow tmpwatch to read meminfo - Allow rpc.svcgssd to read supported_krb5_enctype - Allow zarafa domains to read /dev/random and /dev/urandom - Allow snmpd to read dev_snmp6 - Allow procmail to talk with cyrus - Add fixes for check_disk and check_nagios plugins- default trans rules for Rawhide policy - Make sure sound_devices controlC* are labeled correctly on creation - sssd now needs sys_admin - Allow snmp to read all proc_type - Allow to setup users homedir with quota.group- Add httpd_can_connect_ldap() interface - apcupsd_t needs to use seriel ports connected to usb devices - Kde puts procmail mail directory under ~/.local/share - nfsd_t can trigger sys_rawio on tests that involve too many mountpoints, dontaudit for now - Add labeling for /sbin/iscsiuio- Add label for /var/lib/iscan/interpreter - Dont audit writes to leaked file descriptors or redirected output for nacl - NetworkManager needs to write to /sys/class/net/ib*/mode- Allow abrt to request the kernel to load a module - Make sure mozilla content is labeled correctly - Allow tgtd to read system state - More fixes for boinc * allow to resolve dns name * re-write boinc policy to use boinc_domain attribute - Allow munin services plugins to use NSCD services- Allow mozilla_plugin_t to manage mozilla_home_t - Allow ssh derived domain to execute ssh-keygen in the ssh_keygen_t domain - Add label for tumblerd- Fixes for xguest package- Fixes related to /bin, /sbin - Allow abrt to getattr on blk files - Add type for rhev-agent log file - Fix labeling for /dev/dmfm - Dontaudit wicd leaking - Allow systemd_logind_t to look at process info of apps that exchange dbus messages with it - Label /etc/locale.conf correctly - Allow user_mail_t to read /dev/random - Allow postfix-smtpd to read MIMEDefang - Add label for /var/log/suphp.log - Allow swat_t to connect and read/write nmbd_t sock_file - Allow systemd-tmpfiles to setattr for /run/user/gdm/dconf - Allow systemd-tmpfiles to change user identity in object contexts - More fixes for rhev_agentd_t consolehelper policy- Use fs_use_xattr for squashf - Fix procs_type interface - Dovecot has a new fifo_file /var/run/dovecot/stats-mail - Dovecot has a new fifo_file /var/run/stats-mail - Colord does not need to connect to network - Allow system_cronjob to dbus chat with NetworkManager - Puppet manages content, want to make sure it labels everything correctly- Change port 9050 to tor_socks_port_t and then allow openvpn to connect to it - Allow all postfix domains to use the fifo_file - Allow sshd_t to getattr on all file systems in order to generate avc on nfs_t - Allow apmd_t to read grub.cfg - Let firewallgui read the selinux config - Allow systemd-tmpfiles to delete content in /root that has been moved to /tmp - Fix devicekit_manage_pid_files() interface - Allow squid to check the network state - Dontaudit colord getattr on file systems - Allow ping domains to read zabbix_tmp_t files- Allow mcelog_t to create dir and file in /var/run and label it correctly - Allow dbus to manage fusefs - Mount needs to read process state when mounting gluster file systems - Allow collectd-web to read collectd lib files - Allow daemons and system processes started by init to read/write the unix_stream_socket passed in from as stdin/stdout/stderr - Allow colord to get the attributes of tmpfs filesystem - Add sanlock_use_nfs and sanlock_use_samba booleans - Add bin_t label for /usr/lib/virtualbox/VBoxManage- Add ssh_dontaudit_search_home_dir - Changes to allow namespace_init_t to work - Add interface to allow exec of mongod, add port definition for mongod port, 27017 - Label .kde/share/apps/networkmanagement/certificates/ as home_cert_t - Allow spamd and clamd to steam connect to each other - Add policy label for passwd.OLD - More fixes for postfix and postfix maildro - Add ftp support for mozilla plugins - Useradd now needs to manage policy since it calls libsemanage - Fix devicekit_manage_log_files() interface - Allow colord to execute ifconfig - Allow accountsd to read /sys - Allow mysqld-safe to execute shell - Allow openct to stream connect to pcscd - Add label for /var/run/nm-dns-dnsmasq\.conf - Allow networkmanager to chat with virtd_t- Pulseaudio changes - Merge patches- Merge patches back into git repository.- Remove allow_execmem boolean and replace with deny_execmem boolean- Turn back on allow_execmem boolean- Add more MCS fixes to make sandbox working - Make faillog MLS trusted to make sudo_$1_t working - Allow sandbox_web_client_t to read passwd_file_t - Add .mailrc file context - Remove execheap from openoffice domain - Allow chrome_sandbox_nacl_t to read cpu_info - Allow virtd to relabel generic usb which is need if USB device - Fixes for virt.if interfaces to consider chr_file as image file type- Remove Open Office policy - Remove execmem policy- MCS fixes - quota fixes- Remove transitions to consoletype- Make nvidia* to be labeled correctly - Fix abrt_manage_cache() interface - Make filetrans rules optional so base policy will build - Dontaudit chkpwd_t access to inherited TTYS - Make sure postfix content gets created with the correct label - Allow gnomeclock to read cgroup - Fixes for cloudform policy- Check in fixed for Chrome nacl support- Begin removing qemu_t domain, we really no longer need this domain. - systemd_passwd needs dac_overide to communicate with users TTY's - Allow svirt_lxc domains to send kill signals within their container- Remove qemu.pp again without causing a crash- Remove qemu.pp, everything should use svirt_t or stay in its current domain- Allow policykit to talk to the systemd via dbus - Move chrome_sandbox_nacl_t to permissive domains - Additional rules for chrome_sandbox_nacl- Change bootstrap name to nacl - Chrome still needs execmem - Missing role for chrome_sandbox_bootstrap - Add boolean to remove execmem and execstack from virtual machines - Dontaudit xdm_t doing an access_check on etc_t directories- Allow named to connect to dirsrv by default - add ldapmap1_0 as a krb5_host_rcache_t file - Google chrome developers asked me to add bootstrap policy for nacl stuff - Allow rhev_agentd_t to getattr on mountpoints - Postfix_smtpd_t needs access to milters and cleanup seems to read/write postfix_smtpd_t unix_stream_sockets- Fixes for cloudform policies which need to connect to random ports - Make sure if an admin creates modules content it creates them with the correct label - Add port 8953 as a dns port used by unbound - Fix file name transition for alsa and confined users- Turn on mock_t and thumb_t for unconfined domains- Policy update should not modify local contexts- Remove ada policy- Remove tzdata policy - Add labeling for udev - Add cloudform policy - Fixes for bootloader policy- Add policies for nova openstack- Add fixes for nova-stack policy- Allow svirt_lxc_domain to chr_file and blk_file devices if they are in the domain - Allow init process to setrlimit on itself - Take away transition rules for users executing ssh-keygen - Allow setroubleshoot_fixit_t to read /dev/urand - Allow sshd to relbale tunnel sockets - Allow fail2ban domtrans to shorewall in the same way as with iptables - Add support for lnk files in the /var/lib/sssd directory - Allow system mail to connect to courier-authdaemon over an unix stream socket- Add passwd_file_t for /etc/ptmptmp- Dontaudit access checks for all executables, gnome-shell is doing access(EXEC, X_OK) - Make corosync to be able to relabelto cluster lib fies - Allow samba domains to search /var/run/nmbd - Allow dirsrv to use pam - Allow thumb to call getuid - chrome less likely to get mmap_zero bug so removing dontaudit - gimp help-browser has built in javascript - Best guess is that devices named /dev/bsr4096 should be labeled as cpu_device_t - Re-write glance policy- Move dontaudit sys_ptrace line from permissive.te to domain.te - Remove policy for hal, it no longer exists- Don't check md5 size or mtime on certain config files- Remove allow_ptrace and replace it with deny_ptrace, which will remove all ptrace from the system - Remove 2000 dontaudit rules between confined domains on transition and replace with single dontaudit domain domain:process { noatsecure siginh rlimitinh } ;- Fixes for bootloader policy - $1_gkeyringd_t needs to read $HOME/%USER/.local/share/keystore - Allow nsplugin to read /usr/share/config - Allow sa-update to update rules - Add use_fusefs_home_dirs for chroot ssh option - Fixes for grub2 - Update systemd_exec_systemctl() interface - Allow gpg to read the mail spool - More fixes for sa-update running out of cron job - Allow ipsec_mgmt_t to read hardware state information - Allow pptp_t to connect to unreserved_port_t - Dontaudit getattr on initctl in /dev from chfn - Dontaudit getattr on kernel_core from chfn - Add systemd_list_unit_dirs to systemd_exec_systemctl call - Fixes for collectd policy - CHange sysadm_t to create content as user_tmp_t under /tmp- Shrink size of policy through use of attributes for userdomain and apache- Allow virsh to read xenstored pid file - Backport corenetwork fixes from upstream - Do not audit attempts by thumb to search config_home_t dirs (~/.config) - label ~/.cache/telepathy/logger telepathy_logger_cache_home_t - allow thumb to read generic data home files (mime.type)- Allow nmbd to manage sock file in /var/run/nmbd - ricci_modservice send syslog msgs - Stop transitioning from unconfined_t to ldconfig_t, but make sure /etc/ld.so.cache is labeled correctly - Allow systemd_logind_t to manage /run/USER/dconf/user- Fix missing patch from F16- Allow logrotate setuid and setgid since logrotate is supposed to do it - Fixes for thumb policy by grift - Add new nfsd ports - Added fix to allow confined apps to execmod on chrome - Add labeling for additional vdsm directories - Allow Exim and Dovecot SASL - Add label for /var/run/nmbd - Add fixes to make virsh and xen working together - Colord executes ls - /var/spool/cron is now labeled as user_cron_spool_t- Stop complaining about leaked file descriptors during install- Remove java and mono module and merge into execmem- Fixes for thumb policy and passwd_file_t- Fixes caused by the labeling of /etc/passwd - Add thumb.patch to transition unconfined_t to thumb_t for Rawhide- Add support for Clustered Samba commands - Allow ricci_modrpm_t to send log msgs - move permissive virt_qmf_t from virt.te to permissivedomains.te - Allow ssh_t to use kernel keyrings - Add policy for libvirt-qmf and more fixes for linux containers - Initial Polipo - Sanlock needs to run ranged in order to kill svirt processes - Allow smbcontrol to stream connect to ctdbd- Add label for /etc/passwd- Change unconfined_domains to permissive for Rawhide - Add definition for the ephemeral_ports- Make mta_role() active - Allow asterisk to connect to jabber client port - Allow procmail to read utmp - Add NIS support for systemd_logind_t - Allow systemd_logind_t to manage /run/user/$USER/dconf dir which is labeled as config_home_t - Fix systemd_manage_unit_dirs() interface - Allow ssh_t to manage directories passed into it - init needs to be able to create and delete unit file directories - Fix typo in apache_exec_sys_script - Add ability for logrotate to transition to awstat domain- Change screen to use screen_domain attribute and allow screen_domains to read all process domain state - Add SELinux support for ssh pre-auth net process in F17 - Add logging_syslogd_can_sendmail boolean- Add definition for ephemeral ports - Define user_tty_device_t as a customizable_type- Needs to require a new version of checkpolicy - Interface fixes- Allow sanlock to manage virt lib files - Add virt_use_sanlock booelan - ksmtuned is trying to resolve uids - Make sure .gvfs is labeled user_home_t in the users home directory - Sanlock sends kill signals and needs the kill capability - Allow mockbuild to work on nfs homedirs - Fix kerberos_manage_host_rcache() interface - Allow exim to read system state- Allow systemd-tmpfiles to set the correct labels on /var/run, /tmp and other files - We want any file type that is created in /tmp by a process running as initrc_t to be labeled initrc_tmp_t- Allow collectd to read hardware state information - Add loop_control_device_t - Allow mdadm to request kernel to load module - Allow domains that start other domains via systemctl to search unit dir - systemd_tmpfilses, needs to list any file systems mounted on /tmp - No one can explain why radius is listing the contents of /tmp, so we will dontaudit - If I can manage etc_runtime files, I should be able to read the links - Dontaudit hostname writing to mock library chr_files - Have gdm_t setup labeling correctly in users home dir - Label content unde /var/run/user/NAME/dconf as config_home_t - Allow sa-update to execute shell - Make ssh-keygen working with fips_enabled - Make mock work for staff_t user - Tighten security on mock_t- removing unconfined_notrans_t no longer necessary - Clean up handling of secure_mode_insmod and secure_mode_policyload - Remove unconfined_mount_t- Add exim_exec_t label for /usr/sbin/exim_tidydb - Call init_dontaudit_rw_stream_socket() interface in mta policy - sssd need to search /var/cache/krb5rcache directory - Allow corosync to relabel own tmp files - Allow zarafa domains to send system log messages - Allow ssh to do tunneling - Allow initrc scripts to sendto init_t unix_stream_socket - Changes to make sure dmsmasq and virt directories are labeled correctly - Changes needed to allow sysadm_t to manage systemd unit files - init is passing file descriptors to dbus and on to system daemons - Allow sulogin additional access Reported by dgrift and Jeremy Miller - Steve Grubb believes that wireshark does not need this access - Fix /var/run/initramfs to stop restorecon from looking at - pki needs another port - Add more labels for cluster scripts - Allow apps that manage cgroup_files to manage cgroup link files - Fix label on nfs-utils scripts directories - Allow gatherd to read /dev/rand and /dev/urand- pki needs another port - Add more labels for cluster scripts - Fix label on nfs-utils scripts directories - Fixes for cluster - Allow gatherd to read /dev/rand and /dev/urand - abrt leaks fifo files- Add glance policy - Allow mdadm setsched - /var/run/initramfs should not be relabeled with a restorecon run - memcache can be setup to override sys_resource - Allow httpd_t to read tetex data - Allow systemd_tmpfiles to delete kernel modules left in /tmp directory.- Allow Postfix to deliver to Dovecot LMTP socket - Ignore bogus sys_module for lldpad - Allow chrony and gpsd to send dgrams, gpsd needs to write to the real time clock - systemd_logind_t sets the attributes on usb devices - Allow hddtemp_t to read etc_t files - Add permissivedomains module - Move all permissive domains calls to permissivedomain.te - Allow pegasis to send kill signals to other UIDs- Allow insmod_t to use fds leaked from devicekit - dontaudit getattr between insmod_t and init_t unix_stream_sockets - Change sysctl unit file interfaces to use systemctl - Add support for chronyd unit file - Allow mozilla_plugin to read gnome_usr_config - Add policy for new gpsd - Allow cups to create kerberos rhost cache files - Add authlogin_filetrans_named_content, to unconfined_t to make sure shadow and other log files get labeled correctly- Make users_extra and seusers.final into config(noreplace) so semanage users and login does not get overwritten- Add policy for sa-update being run out of cron jobs - Add create perms to postgresql_manage_db - ntpd using a gps has to be able to read/write generic tty_device_t - If you disable unconfined and unconfineduser, rpm needs more privs to manage /dev - fix spec file - Remove qemu_domtrans_unconfined() interface - Make passenger working together with puppet - Add init_dontaudit_rw_stream_socket interface - Fixes for wordpress- Turn on allow_domain_fd_use boolean on F16 - Allow syslog to manage all log files - Add use_fusefs_home_dirs boolean for chrome - Make vdagent working with confined users - Add abrt_handle_event_t domain for ABRT event scripts - Labeled /usr/sbin/rhnreg_ks as rpm_exec_t and added changes related to this change - Allow httpd_git_script_t to read passwd data - Allow openvpn to set its process priority when the nice parameter is used- livecd fixes - spec file fixes- fetchmail can use kerberos - ksmtuned reads in shell programs - gnome_systemctl_t reads the process state of ntp - dnsmasq_t asks the kernel to load multiple kernel modules - Add rules for domains executing systemctl - Bogus text within fc file- Add cfengine policy- Add abrt_domain attribute - Allow corosync to manage cluster lib files - Allow corosync to connect to the system DBUS- Add sblim, uuidd policies - Allow kernel_t dyntrasition to init_t- init_t need setexec - More fixes of rules which cause an explosion in rules by Dan Walsh- Allow rcsmcertd to perform DNS name resolution - Add dirsrvadmin_unconfined_script_t domain type for 389-ds admin scripts - Allow tmux to run as screen - New policy for collectd - Allow gkeyring_t to interact with all user apps - Add rules to allow firstboot to run on machines with the unconfined.pp module removed- Allow systemd_logind to send dbus messages with users - allow accountsd to read wtmp file - Allow dhcpd to get and set capabilities- Fix oracledb_port definition - Allow mount to mounton the selinux file system - Allow users to list /var directories- systemd fixes- Add initial policy for abrt_dump_oops_t - xtables-multi wants to getattr of the proc fs - Smoltclient is connecting to abrt - Dontaudit leaked file descriptors to postdrop - Allow abrt_dump_oops to look at kernel sysctls - Abrt_dump_oops_t reads kernel ring buffer - Allow mysqld to request the kernel to load modules - systemd-login needs fowner - Allow postfix_cleanup_t to searh maildrop- Initial systemd_logind policy - Add policy for systemd_logger and additional proivs for systemd_logind - More fixes for systemd policies- Allow setsched for virsh - Systemd needs to impersonate cups, which means it needs to create tcp_sockets in cups_t domain, as well as manage spool directories - iptables: the various /sbin/ip6?tables.* are now symlinks for /sbin/xtables-multi- A lot of users are running yum -y update while in /root which is causing ldconfig to list the contents, adding dontaudit - Allow colord to interact with the users through the tmpfs file system - Since we changed the label on deferred, we need to allow postfix_qmgr_t to be able to create maildrop_t files - Add label for /var/log/mcelog - Allow asterisk to read /dev/random if it uses TLS - Allow colord to read ini files which are labeled as bin_t - Allow dirsrvadmin sys_resource and setrlimit to use ulimit - Systemd needs to be able to create sock_files for every label in /var/run directory, cupsd being the first. - Also lists /var and /var/spool directories - Add openl2tpd to l2tpd policy - qpidd is reading the sysfs file- Change usbmuxd_t to dontaudit attempts to read chr_file - Add mysld_safe_exec_t for libra domains to be able to start private mysql domains - Allow pppd to search /var/lock dir - Add rhsmcertd policy- Update to upstream- More fixes * http://git.fedorahosted.org/git/?p=selinux-policy.git- Fix spec file to not report Verify errors- Add dspam policy - Add lldpad policy - dovecot auth wants to search statfs #713555 - Allow systemd passwd apps to read init fifo_file - Allow prelink to use inherited terminals - Run cherokee in the httpd_t domain - Allow mcs constraints on node connections - Implement pyicqt policy - Fixes for zarafa policy - Allow cobblerd to send syslog messages- Add policy.26 to the payload - Remove olpc stuff - Remove policygentool- Fixes for zabbix - init script needs to be able to manage sanlock_var_run_... - Allow sandlock and wdmd to create /var/run directories... - mixclip.so has been compiled correctly - Fix passenger policy module name- Add mailscanner policy from dgrift - Allow chrome to optionally be transitioned to - Zabbix needs these rules when starting the zabbix_server_mysql - Implement a type for freedesktop openicc standard (~/.local/share/icc) - Allow system_dbusd_t to read inherited icc_data_home_t files. - Allow colord_t to read icc_data_home_t content. #706975 - Label stuff under /usr/lib/debug as if it was labeled under /- Fixes for sanlock policy - Fixes for colord policy - Other fixes * http://git.fedorahosted.org/git/?p=selinux-policy.git;a=log- Add rhev policy module to modules-targeted.conf- Lot of fixes * http://git.fedorahosted.org/git/?p=selinux-policy.git;a=log- Allow logrotate to execute systemctl - Allow nsplugin_t to getattr on gpmctl - Fix dev_getattr_all_chr_files() interface - Allow shorewall to use inherited terms - Allow userhelper to getattr all chr_file devices - sandbox domains should be able to getattr and dontaudit search of sysctl_kernel_t - Fix labeling for ABRT Retrace Server- Dontaudit sys_module for ifconfig - Make telepathy and gkeyringd daemon working with confined users - colord wants to read files in users homedir - Remote login should be creating user_tmp_t not its own tmp files- Fix label for /usr/share/munin/plugins/munin_* plugins - Add support for zarafa-indexer - Fix boolean description - Allow colord to getattr on /proc/scsi/scsi - Add label for /lib/upstart/init - Colord needs to list /mnt- Forard port changes from F15 for telepathy - NetworkManager should be allowed to use /dev/rfkill - Fix dontaudit messages to say Domain to not audit - Allow telepathy domains to read/write gnome_cache files - Allow telepathy domains to call getpw - Fixes for colord and vnstatd policy- Allow init_t getcap and setcap - Allow namespace_init_t to use nsswitch - aisexec will execute corosync - colord tries to read files off noxattr file systems - Allow init_t getcap and setcap- Add support for ABRT retrace server - Allow user_t and staff_t access to generic scsi to handle locally plugged in scanners - Allow telepath_msn_t to read /proc/PARENT/cmdline - ftpd needs kill capability - Allow telepath_msn_t to connect to sip port - keyring daemon does not work on nfs homedirs - Allow $1_sudo_t to read default SELinux context - Add label for tgtd sock file in /var/run/ - Add apache_exec_rotatelogs interface - allow all zaraha domains to signal themselves, server writes to /tmp - Allow syslog to read the process state - Add label for /usr/lib/chromium-browser/chrome - Remove the telepathy transition from unconfined_t - Dontaudit sandbox domains trying to mounton sandbox_file_t, this is caused by fuse mounts - Allow initrc_t domain to manage abrt pid files - Add support for AEOLUS project - Virt_admin should be allowed to manage images and processes - Allow plymountd to send signals to init - Change labeling of fping6- Add filename transitions- Fixes for zarafa policy - Add support for AEOLUS project - Change labeling of fping6 - Allow plymountd to send signals to init - Allow initrc_t domain to manage abrt pid files - Virt_admin should be allowed to manage images and processes- xdm_t needs getsession for switch user - Every app that used to exec init is now execing systemdctl - Allow squid to manage krb5_host_rcache_t files - Allow foghorn to connect to agentx port - Fixes for colord policy- Add Dan's patch to remove 64 bit variants - Allow colord to use unix_dgram_socket - Allow apps that search pids to read /var/run if it is a lnk_file - iscsid_t creates its own directory - Allow init to list var_lock_t dir - apm needs to verify user accounts auth_use_nsswitch - Add labeling for systemd unit files - Allow gnomeclok to enable ntpd service using systemctl - systemd_systemctl_t domain was added - Add label for matahari-broker.pid file - We want to remove untrustedmcsprocess from ability to read /proc/pid - Fixes for matahari policy - Allow system_tmpfiles_t to delete user_home_t files in the /tmp dir - Allow sshd to transition to sysadm_t if ssh_sysadm_login is turned on- Fix typo- Add /var/run/lock /var/lock definition to file_contexts.subs - nslcd_t is looking for kerberos cc files - SSH_USE_STRONG_RNG is 1 which requires /dev/random - Fix auth_rw_faillog definition - Allow sysadm_t to set attributes on fixed disks - allow user domains to execute lsof and look at application sockets - prelink_cron job calls telinit -u if init is rewritten - Fixes to run qemu_t from staff_t- Fix label for /var/run/udev to udev_var_run_t - Mock needs to be able to read network state- Add file_contexts.subs to handle /run and /run/lock - Add other fixes relating to /run changes from F15 policy- Allow $1_sudo_t and $1_su_t open access to user terminals - Allow initrc_t to use generic terminals - Make Makefile/Rules.modular run sepolgen-ifgen during build to check if files for bugs -systemd is going to be useing /run and /run/lock for early bootup files. - Fix some comments in rlogin.if - Add policy for KDE backlighthelper - sssd needs to read ~/.k5login in nfs, cifs or fusefs file systems - sssd wants to read .k5login file in users homedir - setroubleshoot reads executables to see if they have TEXTREL - Add /var/spool/audit support for new version of audit - Remove kerberos_connect_524() interface calling - Combine kerberos_master_port_t and kerberos_port_t - systemd has setup /dev/kmsg as stderr for apps it executes - Need these access so that init can impersonate sockets on unix_dgram_socket- Remove some unconfined domains - Remove permissive domains - Add policy-term.patch from Dan- Fix multiple specification for boot.log - devicekit leaks file descriptors to setfiles_t - Change all all_nodes to generic_node and all_if to generic_if - Should not use deprecated interface - Switch from using all_nodes to generic_node and from all_if to generic_if - Add support for xfce4-notifyd - Fix file context to show several labels as SystemHigh - seunshare needs to be able to mounton nfs/cifs/fusefs homedirs - Add etc_runtime_t label for /etc/securetty - Fixes to allow xdm_t to start gkeyringd_USERTYPE_t directly - login.krb needs to be able to write user_tmp_t - dirsrv needs to bind to port 7390 for dogtag - Fix a bug in gpg policy - gpg sends audit messages - Allow qpid to manage matahari files- Initial policy for matahari - Add dev_read_watchdog - Allow clamd to connect clamd port - Add support for kcmdatetimehelper - Allow shutdown to setrlimit and sys_nice - Allow systemd_passwd to talk to /dev/log before udev or syslog is running - Purge chr_file and blk files on /tmp - Fixes for pads - Fixes for piranha-pulse - gpg_t needs to be able to encyprt anything owned by the user- mozilla_plugin_tmp_t needs to be treated as user tmp files - More dontaudits of writes from readahead - Dontaudit readahead_t file_type:dir write, to cover up kernel bug - systemd_tmpfiles needs to relabel faillog directory as well as the file - Allow hostname and consoletype to r/w inherited initrc_tmp_t files handline hostname >> /tmp/myhost- Add policykit fixes from Tim Waugh - dontaudit sandbox domains sandbox_file_t:dir mounton - Add new dontaudit rules for sysadm_dbusd_t - Change label for /var/run/faillock * other fixes which relate with this change- Update to upstream - Fixes for telepathy - Add port defition for ssdp port - add policy for /bin/systemd-notify from Dan - Mount command requires users read mount_var_run_t - colord needs to read konject_uevent_socket - User domains connect to the gkeyring socket - Add colord policy and allow user_t and staff_t to dbus chat with it - Add lvm_exec_t label for kpartx - Dontaudit reading the mail_spool_t link from sandbox -X - systemd is creating sockets in avahi_var_run and system_dbusd_var_run- gpg_t needs to talk to gnome-keyring - nscd wants to read /usr/tmp->/var/tmp to generate randomziation in unixchkpwd - enforce MCS labeling on nodes - Allow arpwatch to read meminfo - Allow gnomeclock to send itself signals - init relabels /dev/.udev files on boot - gkeyringd has to transition back to staff_t when it runs commands in bin_t or shell_exec_t - nautilus checks access on /media directory before mounting usb sticks, dontaudit access_check on mnt_t - dnsmasq can run as a dbus service, needs acquire service - mysql_admin should be allowed to connect to mysql service - virt creates monitor sockets in the users home dir- Allow usbhid-ups to read hardware state information - systemd-tmpfiles has moved - Allo cgroup to sys_tty_config - For some reason prelink is attempting to read gconf settings - Add allow_daemons_use_tcp_wrapper boolean - Add label for ~/.cache/wocky to make telepathy work in enforcing mode - Add label for char devices /dev/dasd* - Fix for apache_role - Allow amavis to talk to nslcd - allow all sandbox to read selinux poilcy config files - Allow cluster domains to use the system bus and send each other dbus messages- Update to upstream- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Update to ref policy - cgred needs chown capability - Add /dev/crash crash_dev_t - systemd-readahead wants to use fanotify which means readahead_t needs sys_admin capability- New labeling for postfmulti #675654 - dontaudit xdm_t listing noxattr file systems - dovecot-auth needs to be able to connect to mysqld via the network as well as locally - shutdown is passed stdout to a xdm_log_t file - smartd creates a fixed disk device - dovecot_etc_t contains a lnk_file that domains need to read - mount needs to be able to read etc_runtim_t:lnk_file since in rawhide this is a link created at boot- syslog_t needs syslog capability - dirsrv needs to be able to create /var/lib/snmp - Fix labeling for dirsrv - Fix for dirsrv policy missing manage_dirs_pattern - corosync needs to delete clvm_tmpfs_t files - qdiskd needs to list hugetlbfs - Move setsched to sandbox_x_domain, so firefox can run without network access - Allow hddtemp to read removable devices - Adding syslog and read_policy permissions to policy * syslog Allow unconfined, sysadm_t, secadm_t, logadm_t * read_policy allow unconfined, sysadm_t, secadm_t, staff_t on Targeted allow sysadm_t (optionally), secadm_t on MLS - mdadm application will write into /sys/.../uevent whenever arrays are assembled or disassembled.- Add tcsd policy- ricci_modclusterd_t needs to bind to rpc ports 500-1023 - Allow dbus to use setrlimit to increase resoueces - Mozilla_plugin is leaking to sandbox - Allow confined users to connect to lircd over unix domain stream socket which allow to use remote control - Allow awstats to read squid logs - seunshare needs to manage tmp_t - apcupsd cgi scripts have a new directory- Fix xserver_dontaudit_read_xdm_pid - Change oracle_port_t to oracledb_port_t to prevent conflict with satellite - Allow dovecot_deliver_t to read/write postfix_master_t:fifo_file. * These fifo_file is passed from postfix_master_t to postfix_local_t to dovecot_deliver_t - Allow readahead to manage readahead pid dirs - Allow readahead to read all mcs levels - Allow mozilla_plugin_t to use nfs or samba homedirs- Allow nagios plugin to read /proc/meminfo - Fix for mozilla_plugin - Allow samba_net_t to create /etc/keytab - pppd_t setting up vpns needs to run unix_chkpwd, setsched its process and write wtmp_t - nslcd can read user credentials - Allow nsplugin to delete mozilla_plugin_tmpfs_t - abrt tries to create dir in rpm_var_lib_t - virt relabels fifo_files - sshd needs to manage content in fusefs homedir - mock manages link files in cache dir- nslcd needs setsched and to read /usr/tmp - Invalid call in likewise policy ends up creating a bogus role - Cannon puts content into /var/lib/bjlib that cups needs to be able to write - Allow screen to create screen_home_t in /root - dirsrv sends syslog messages - pinentry reads stuff in .kde directory - Add labels for .kde directory in homedir - Treat irpinit, iprupdate, iprdump services with raid policy- NetworkManager wants to read consolekit_var_run_t - Allow readahead to create /dev/.systemd/readahead - Remove permissive domains - Allow newrole to run namespace_init- Add sepgsql_contexts file- Update to upstream- Add oracle ports and allow apache to connect to them if the connect_db boolean is turned on - Add puppetmaster_use_db boolean - Fixes for zarafa policy - Fixes for gnomeclock poliy - Fix systemd-tmpfiles to use auth_use_nsswitch- gnomeclock executes a shell - Update for screen policy to handle pipe in homedir - Fixes for polyinstatiated homedir - Fixes for namespace policy and other fixes related to polyinstantiation - Add namespace policy - Allow dovecot-deliver transition to sendmail which is needed by sieve scripts - Fixes for init, psad policy which relate with confined users - Do not audit bootloader attempts to read devicekit pid files - Allow nagios service plugins to read /proc- Add firewalld policy - Allow vmware_host to read samba config - Kernel wants to read /proc Fix duplicate grub def in cobbler - Chrony sends mail, executes shell, uses fifo_file and reads /proc - devicekitdisk getattr all file systems - sambd daemon writes wtmp file - libvirt transitions to dmidecode- Add initial policy for system-setup-keyboard which is now daemon - Label /var/lock/subsys/shorewall as shorewall_lock_t - Allow users to communicate with the gpg_agent_t - Dontaudit mozilla_plugin_t using the inherited terminal - Allow sambagui to read files in /usr - webalizer manages squid log files - Allow unconfined domains to bind ports to raw_ip_sockets - Allow abrt to manage rpm logs when running yum - Need labels for /var/run/bittlebee - Label .ssh under amanda - Remove unused genrequires for virt_domain_template - Allow virt_domain to use fd inherited from virtd_t - Allow iptables to read shorewall config- Gnome apps list config_home_t - mpd creates lnk files in homedir - apache leaks write to mail apps on tmp files - /var/stockmaniac/templates_cache contains log files - Abrt list the connects of mount_tmp_t dirs - passwd agent reads files under /dev and reads utmp file - squid apache script connects to the squid port - fix name of plymouth log file - teamviewer is a wine app - allow dmesg to read system state - Stop labeling files under /var/lib/mock so restorecon will not go into this - nsplugin needs to read network state for google talk- Allow xdm and syslog to use /var/log/boot.log - Allow users to communicate with mozilla_plugin and kill it - Add labeling for ipv6 and dhcp- New labels for ghc http content - nsplugin_config needs to read urand, lvm now calls setfscreate to create dev - pm-suspend now creates log file for append access so we remove devicekit_wri - Change authlogin_use_sssd to authlogin_nsswitch_use_ldap - Fixes for greylist_milter policy- Update to upstream - Fixes for systemd policy - Fixes for passenger policy - Allow staff users to run mysqld in the staff_t domain, akonadi needs this - Add bin_t label for /usr/share/kde4/apps/kajongg/kajongg.py - auth_use_nsswitch does not need avahi to read passwords,needed for resolving data - Dontaudit (xdm_t) gok attempting to list contents of /var/account - Telepathy domains need to read urand - Need interface to getattr all file classes in a mock library for setroubleshoot- Update selinux policy to handle new /usr/share/sandbox/start script- Update to upstream - Fix version of policy in spec file- Allow sandbox to run on nfs partitions, fixes for systemd_tmpfs - remove per sandbox domains devpts types - Allow dkim-milter sending signal to itself- Allow domains that transition to ping or traceroute, kill them - Allow user_t to conditionally transition to ping_t and traceroute_t - Add fixes to systemd- tools, including new labeling for systemd-fsck, systemd-cryptsetup- Turn on systemd policy - mozilla_plugin needs to read certs in the homedir. - Dontaudit leaked file descriptors from devicekit - Fix ircssi to use auth_use_nsswitch - Change to use interface without param in corenet to disable unlabelednet packets - Allow init to relabel sockets and fifo files in /dev - certmonger needs dac* capabilities to manage cert files not owned by root - dovecot needs fsetid to change group membership on mail - plymouthd removes /var/log/boot.log - systemd is creating symlinks in /dev - Change label on /etc/httpd/alias to be all cert_t- Fixes for clamscan and boinc policy - Add boinc_project_t setpgid - Allow alsa to create tmp files in /tmp- Push fixes to allow disabling of unlabeled_t packet access - Enable unlabelednet policy- Fixes for lvm to work with systemd- Fix the label for wicd log - plymouthd creates force-display-on-active-vt file - Allow avahi to request the kernel to load a module - Dontaudit hal leaks - Fix gnome_manage_data interface - Add new interface corenet_packet to define a type as being an packet_type. - Removed general access to packet_type from icecast and squid. - Allow mpd to read alsa config - Fix the label for wicd log - Add systemd policy- Fix gnome_manage_data interface - Dontaudit sys_ptrace capability for iscsid - Fixes for nagios plugin policy- Fix cron to run ranged when started by init - Fix devicekit to use log files - Dontaudit use of devicekit_var_run_t for fstools - Allow init to setattr on logfile directories - Allow hald to manage files in /var/run/pm-utils/ dir which is now labeled as devicekit_var_run_t- Fix up handling of dnsmasq_t creating /var/run/libvirt/network - Turn on sshd_forward_ports boolean by default - Allow sysadmin to dbus chat with rpm - Add interface for rw_tpm_dev - Allow cron to execute bin - fsadm needs to write sysfs - Dontaudit consoletype reading /var/run/pm-utils - Lots of new privs fro mozilla_plugin_t running java app, make mozilla_plugin - certmonger needs to manage dirsrv data - /var/run/pm-utils should be labeled as devicekit_var_run_t- fixes to allow /var/run and /var/lock as tmpfs - Allow chrome sandbox to connect to web ports - Allow dovecot to listem on lmtp and sieve ports - Allov ddclient to search sysctl_net_t - Transition back to original domain if you execute the shell- Remove duplicate declaration- Update to upstream - Cleanup for sandbox - Add attribute to be able to select sandbox types- Allow ddclient to fix file mode bits of ddclient conf file - init leaks file descriptors to daemons - Add labels for /etc/lirc/ and - Allow amavis_t to exec shell - Add label for gssd_tmp_t for /var/tmp/nfs_0- Put back in lircd_etc_t so policy will install- Turn on allow_postfix_local_write_mail_spool - Allow initrc_t to transition to shutdown_t - Allow logwatch and cron to mls_read_to_clearance for MLS boxes - Allow wm to send signull to all applications and receive them from users - lircd patch from field - Login programs have to read /etc/samba - New programs under /lib/systemd - Abrt needs to read config files- Update to upstream - Dontaudit leaked sockets from userdomains to user domains - Fixes for mcelog to handle scripts - Apply patch from Ruben Kerkhof - Allow syslog to search spool dirs- Allow nagios plugins to read usr files - Allow mysqld-safe to send system log messages - Fixes fpr ddclient policy - Fix sasl_admin interface - Allow apache to search zarafa config - Allow munin plugins to search /var/lib directory - Allow gpsd to read sysfs_t - Fix labels on /etc/mcelog/triggers to bin_t- Remove saslauthd_tmp_t and transition tmp files to krb5_host_rcache_t - Allow saslauthd_t to create krb5_host_rcache_t files in /tmp - Fix xserver interface - Fix definition of /var/run/lxdm- Turn on mediawiki policy - kdump leaks kdump_etc_t to ifconfig, add dontaudit - uux needs to transition to uucpd_t - More init fixes relabels man,faillog - Remove maxima defs in libraries.fc - insmod needs to be able to create tmpfs_t files - ping needs setcap- Allow groupd transition to fenced domain when executes fence_node - Fixes for rchs policy - Allow mpd to be able to read samba/nfs files- Fix up corecommands.fc to match upstream - Make sure /lib/systemd/* is labeled init_exec_t - mount wants to setattr on all mountpoints - dovecot auth wants to read dovecot etc files - nscd daemon looks at the exe file of the comunicating daemon - openvpn wants to read utmp file - postfix apps now set sys_nice and lower limits - remote_login (telnetd/login) wants to use telnetd_devpts_t and user_devpts_t to work correctly - Also resolves nsswitch - Fix labels on /etc/hosts.* - Cleanup to make upsteam patch work - allow abrt to read etc_runtime_t- Add conflicts for dirsrv package- Update to upstream - Add vlock policy- Fix sandbox to work on nfs homedirs - Allow cdrecord to setrlimit - Allow mozilla_plugin to read xauth - Change label on systemd-logger to syslogd_exec_t - Install dirsrv policy from dirsrv package- Add virt_home_t, allow init to setattr on xserver_tmp_t and relabel it - Udev needs to stream connect to init and kernel - Add xdm_exec_bootloader boolean, which allows xdm to execute /sbin/grub and read files in /boot directory- Allow NetworkManager to read openvpn_etc_t - Dontaudit hplip to write of /usr dirs - Allow system_mail_t to create /root/dead.letter as mail_home_t - Add vdagent policy for spice agent daemon- Dontaudit sandbox sending sigkill to all user domains - Add policy for rssh_chroot_helper - Add missing flask definitions - Allow udev to relabelto removable_t - Fix label on /var/log/wicd.log - Transition to initrc_t from init when executing bin_t - Add audit_access permissions to file - Make removable_t a device_node - Fix label on /lib/systemd/*- Fixes for systemd to manage /var/run - Dontaudit leaks by firstboot- Allow chome to create netlink_route_socket - Add additional MATHLAB file context - Define nsplugin as an application_domain - Dontaudit sending signals from sandboxed domains to other domains - systemd requires init to build /tmp /var/auth and /var/lock dirs - mount wants to read devicekit_power /proc/ entries - mpd wants to connect to soundd port - Openoffice causes a setattr on a lib_t file for normal users, add dontaudit - Treat lib_t and textrel_shlib_t directories the same - Allow mount read access on virtual images- Allow sandbox_x_domains to work with nfs/cifs/fusefs home dirs. - Allow devicekit_power to domtrans to mount - Allow dhcp to bind to udp ports > 1024 to do named stuff - Allow ssh_t to exec ssh_exec_t - Remove telepathy_butterfly_rw_tmp_files(), dev_read_printk() interfaces which are nolonger used - Fix clamav_append_log() intefaces - Fix 'psad_rw_fifo_file' interface- Allow cobblerd to list cobler appache content- Fixup for the latest version of upowed - Dontaudit sandbox sending SIGNULL to desktop apps- Update to upstream-Mount command from a confined user generates setattr on /etc/mtab file, need to dontaudit this access - dovecot-auth_t needs ipc_lock - gpm needs to use the user terminal - Allow system_mail_t to append ~/dead.letter - Allow NetworkManager to edit /etc/NetworkManager/NetworkManager.conf - Add pid file to vnstatd - Allow mount to communicate with gfs_controld - Dontaudit hal leaks in setfiles- Lots of fixes for systemd - systemd now executes readahead and tmpwatch type scripts - Needs to manage random seed- Allow smbd to use sys_admin - Remove duplicate file context for tcfmgr - Update to upstream- Fix fusefs handling - Do not allow sandbox to manage nsplugin_rw_t - Allow mozilla_plugin_t to connecto its parent - Allow init_t to connect to plymouthd running as kernel_t - Add mediawiki policy - dontaudit sandbox sending signals to itself. This can happen when they are running at different mcs. - Disable transition from dbus_session_domain to telepathy for F14 - Allow boinc_project to use shm - Allow certmonger to search through directories that contain certs - Allow fail2ban the DAC Override so it can read log files owned by non root users- Start adding support for use_fusefs_home_dirs - Add /var/lib/syslog directory file context - Add /etc/localtime as locale file context- Turn off default transition to mozilla_plugin and telepathy domains from unconfined user - Turn off iptables from unconfined user - Allow sudo to send signals to any domains the user could have transitioned to. - Passwd in single user mode needs to talk to console_device_t - Mozilla_plugin_t needs to connect to web ports, needs to write to video device, and read alsa_home_t alsa setsup pulseaudio - locate tried to read a symbolic link, will dontaudit - New labels for telepathy-sunshine content in homedir - Google is storing other binaries under /opt/google/talkplugin - bluetooth/kernel is creating unlabeled_t socket that I will allow it to use until kernel fixes bug - Add boolean for unconfined_t transition to mozilla_plugin_t and telepathy domains, turned off in F14 on in F15 - modemmanger and bluetooth send dbus messages to devicekit_power - Samba needs to getquota on filesystems labeld samba_share_t- Dontaudit attempts by xdm_t to write to bin_t for kdm - Allow initrc_t to manage system_conf_t- Fixes to allow mozilla_plugin_t to create nsplugin_home_t directory. - Allow mozilla_plugin_t to create tcp/udp/netlink_route sockets - Allow confined users to read xdm_etc_t files - Allow xdm_t to transition to xauth_t for lxdm program- Rearrange firewallgui policy to be more easily updated to upstream, dontaudit search of /home - Allow clamd to send signals to itself - Allow mozilla_plugin_t to read user home content. And unlink pulseaudio shm. - Allow haze to connect to yahoo chat and messenger port tcp:5050. Bz #637339 - Allow guest to run ps command on its processes by allowing it to read /proc - Allow firewallgui to sys_rawio which seems to be required to setup masqerading - Allow all domains to search through default_t directories, in order to find differnet labels. For example people serring up /foo/bar to be share via samba. - Add label for /var/log/slim.log- Pull in cleanups from dgrift - Allow mozilla_plugin_t to execute mozilla_home_t - Allow rpc.quota to do quotamod- Cleanup policy via dgrift - Allow dovecot_deliver to append to inherited log files - Lots of fixes for consolehelper- Fix up Xguest policy- Add vnstat policy - allow libvirt to send audit messages - Allow chrome-sandbox to search nfs_t- Update to upstream- Add the ability to send audit messages to confined admin policies - Remove permissive domain from cmirrord and dontaudit sys_tty_config - Split out unconfined_domain() calls from other unconfined_ calls so we can d - virt needs to be able to read processes to clearance for MLS- Allow all domains that can use cgroups to search tmpfs_t directory - Allow init to send audit messages- Update to upstream- Allow mdadm_t to create files and sock files in /dev/md/- Add policy for ajaxterm- Handle /var/db/sudo - Allow pulseaudio to read alsa config - Allow init to send initrc_t dbus messagesAllow iptables to read shorewall tmp files Change chfn and passwd to use auth_use_pam so they can send dbus messages to fpr intd label vlc as an execmem_exec_t Lots of fixes for mozilla_plugin to run google vidio chat Allow telepath_msn to execute ldconfig and its own tmp files Fix labels on hugepages Allow mdadm to read files on /dev Remove permissive domains and change back to unconfined Allow freshclam to execute shell and bin_t Allow devicekit_power to transition to dhcpc Add boolean to allow icecast to connect to any port- Merge upstream fix of mmap_zero - Allow mount to write files in debugfs_t - Allow corosync to communicate with clvmd via tmpfs - Allow certmaster to read usr_t files - Allow dbus system services to search cgroup_t - Define rlogind_t as a login pgm- Allow mdadm_t to read/write hugetlbfs- Dominic Grift Cleanup - Miroslav Grepl policy for jabberd - Various fixes for mount/livecd and prelink- Merge with upstream- More access needed for devicekit - Add dbadm policy- Merge with upstream- Allow seunshare to fowner- Allow cron to look at user_cron_spool links - Lots of fixes for mozilla_plugin_t - Add sysv file system - Turn unconfined domains to permissive to find additional avcs- Update policy for mozilla_plugin_t- Allow clamscan to read proc_t - Allow mount_t to write to debufs_t dir - Dontaudit mount_t trying to write to security_t dir- Allow clamscan_t execmem if clamd_use_jit set - Add policy for firefox plugin-container- Fix /root/.forward definition- label dead.letter as mail_home_t- Allow login programs to search /cgroups- Fix cert handling- Fix devicekit_power bug - Allow policykit_auth_t more access.- Fix nis calls to allow bind to ports 512-1024 - Fix smartmon- Allow pcscd to read sysfs - systemd fixes - Fix wine_mmap_zero_ignore boolean- Apply Miroslav munin patch - Turn back on allow_execmem and allow_execmod booleans- Merge in fixes from dgrift repository- Update boinc policy - Fix sysstat policy to allow sys_admin - Change failsafe_context to unconfined_r:unconfined_t:s0- New paths for upstart- New permissions for syslog - New labels for /lib/upstart- Add mojomojo policy- Allow systemd to setsockcon on sockets to immitate other services- Remove debugfs label- Update to latest policy- Fix eclipse labeling from IBMSupportAssasstant packageing- Make boot with systemd in enforcing mode- Update to upstream- Add boolean to turn off port forwarding in sshd.- Add support for ebtables - Fixes for rhcs and corosync policy-Update to upstream-Update to upstream-Update to upstream- Add Zarafa policy- Cleanup of aiccu policy - initial mock policy- Lots of random fixes- Update to upstream- Update to upstream - Allow prelink script to signal itself - Cobbler fixes- Add xdm_var_run_t to xserver_stream_connect_xdm - Add cmorrord and mpd policy from Miroslav Grepl- Fix sshd creation of krb cc files for users to be user_tmp_t- Fixes for accountsdialog - Fixes for boinc- Fix label on /var/lib/dokwiki - Change permissive domains to enforcing - Fix libvirt policy to allow it to run on mls- Update to upstream- Allow procmail to execute scripts in the users home dir that are labeled home_bin_t - Fix /var/run/abrtd.lock label- Allow login programs to read krb5_home_t Resolves: 594833 - Add obsoletes for cachefilesfd-selinux package Resolves: #575084- Allow mount to r/w abrt fifo file - Allow svirt_t to getattr on hugetlbfs - Allow abrt to create a directory under /var/spool- Add labels for /sys - Allow sshd to getattr on shutdown - Fixes for munin - Allow sssd to use the kernel key ring - Allow tor to send syslog messages - Allow iptabels to read usr files - allow policykit to read all domains state- Fix path for /var/spool/abrt - Allow nfs_t as an entrypoint for http_sys_script_t - Add policy for piranha - Lots of fixes for sosreport- Allow xm_t to read network state and get and set capabilities - Allow policykit to getattr all processes - Allow denyhosts to connect to tcp port 9911 - Allow pyranha to use raw ip sockets and ptrace itself - Allow unconfined_execmem_t and gconfsd mechanism to dbus - Allow staff to kill ping process - Add additional MLS rules- Allow gdm to edit ~/.gconf dir Resolves: #590677 - Allow dovecot to create directories in /var/lib/dovecot Partially resolves 590224 - Allow avahi to dbus chat with NetworkManager - Fix cobbler labels - Dontaudit iceauth_t leaks - fix /var/lib/lxdm file context - Allow aiccu to use tun tap devices - Dontaudit shutdown using xserver.log- Fixes for sandbox_x_net_t to match access for sandbox_web_t ++ - Add xdm_etc_t for /etc/gdm directory, allow accountsd to manage this directory - Add dontaudit interface for bluetooth dbus - Add chronyd_read_keys, append_keys for initrc_t - Add log support for ksmtuned Resolves: #586663- Allow boinc to send mail- Allow initrc_t to remove dhcpc_state_t - Fix label on sa-update.cron - Allow dhcpc to restart chrony initrc - Don't allow sandbox to send signals to its parent processes - Fix transition from unconfined_t -> unconfined_mount_t -> rpcd_t Resolves: #589136- Fix location of oddjob_mkhomedir Resolves: #587385 - fix labeling on /root/.shosts and ~/.shosts - Allow ipsec_mgmt_t to manage net_conf_t Resolves: #586760- Dontaudit sandbox trying to connect to netlink sockets Resolves: #587609 - Add policy for piranha- Fixups for xguest policy - Fixes for running sandbox firefox- Allow ksmtuned to use terminals Resolves: #586663 - Allow lircd to write to generic usb devices- Allow sandbox_xserver to connectto unconfined stream Resolves: #585171- Allow initrc_t to read slapd_db_t Resolves: #585476 - Allow ipsec_mgmt to use unallocated devpts and to create /etc/resolv.conf Resolves: #585963- Allow rlogind_t to search /root for .rhosts Resolves: #582760 - Fix path for cached_var_t - Fix prelink paths /var/lib/prelink - Allow confined users to direct_dri - Allow mls lvm/cryptosetup to work- Allow virtd_t to manage firewall/iptables config Resolves: #573585- Fix label on /root/.rhosts Resolves: #582760 - Add labels for Picasa - Allow openvpn to read home certs - Allow plymouthd_t to use tty_device_t - Run ncftool as iptables_t - Allow mount to unmount unlabeled_t - Dontaudit hal leaks- Allow livecd to transition to mount- Update to upstream - Allow abrt to delete sosreport Resolves: #579998 - Allow snmp to setuid and gid Resolves: #582155 - Allow smartd to use generic scsi devices Resolves: #582145- Allow ipsec_t to create /etc/resolv.conf with the correct label - Fix reserved port destination - Allow autofs to transition to showmount - Stop crashing tuned- Add telepathysofiasip policy- Update to upstream - Fix label for /opt/google/chrome/chrome-sandbox - Allow modemmanager to dbus with policykit- Fix allow_httpd_mod_auth_pam to use auth_use_pam(httpd_t) - Allow accountsd to read shadow file - Allow apache to send audit messages when using pam - Allow asterisk to bind and connect to sip tcp ports - Fixes for dovecot 2.0 - Allow initrc_t to setattr on milter directories - Add procmail_home_t for .procmailrc file- Fixes for labels during install from livecd- Fix /cgroup file context - Fix broken afs use of unlabled_t - Allow getty to use the console for s390- Fix cgroup handling adding policy for /cgroup - Allow confined users to write to generic usb devices, if user_rw_noexattrfile boolean set- Merge patches from dgrift- Update upstream - Allow abrt to write to the /proc under any process- Fix ~/.fontconfig label - Add /root/.cert label - Allow reading of the fixed_file_disk_t:lnk_file if you can read file - Allow qemu_exec_t as an entrypoint to svirt_t- Update to upstream - Allow tmpreaper to delete sandbox sock files - Allow chrome-sandbox_t to use /dev/zero, and dontaudit getattr file systems - Fixes for gitosis - No transition on livecd to passwd or chfn - Fixes for denyhosts- Add label for /var/lib/upower - Allow logrotate to run sssd - dontaudit readahead on tmpfs blk files - Allow tmpreaper to setattr on sandbox files - Allow confined users to execute dos files - Allow sysadm_t to kill processes running within its clearance - Add accountsd policy - Fixes for corosync policy - Fixes from crontab policy - Allow svirt to manage svirt_image_t chr files - Fixes for qdisk policy - Fixes for sssd policy - Fixes for newrole policy- make libvirt work on an MLS platform- Add qpidd policy- Update to upstream- Allow boinc to read kernel sysctl - Fix snmp port definitions - Allow apache to read anon_inodefs- Allow shutdown dac_override- Add device_t as a file system - Fix sysfs association- Dontaudit ipsec_mgmt sys_ptrace - Allow at to mail its spool files - Allow nsplugin to search in .pulse directory- Update to upstream- Allow users to dbus chat with xdm - Allow users to r/w wireless_device_t - Dontaudit reading of process states by ipsec_mgmt- Fix openoffice from unconfined_t- Add shutdown policy so consolekit can shutdown system- Update to upstream- Update to upstream- Update to upstream - These are merges of my patches - Remove 389 labeling conflicts - Add MLS fixes found in RHEL6 testing - Allow pulseaudio to run as a service - Add label for mssql and allow apache to connect to this database port if boolean set - Dontaudit searches of debugfs mount point - Allow policykit_auth to send signals to itself - Allow modcluster to call getpwnam - Allow swat to signal winbind - Allow usbmux to run as a system role - Allow svirt to create and use devpts- Add MLS fixes found in RHEL6 testing - Allow domains to append to rpm_tmp_t - Add cachefilesfd policy - Dontaudit leaks when transitioning- Change allow_execstack and allow_execmem booleans to on - dontaudit acct using console - Add label for fping - Allow tmpreaper to delete sandbox_file_t - Fix wine dontaudit mmap_zero - Allow abrt to read var_t symlinks- Additional policy for rgmanager- Allow sshd to setattr on pseudo terms- Update to upstream- Allow policykit to send itself signals- Fix duplicate cobbler definition- Fix file context of /var/lib/avahi-autoipd- Merge with upstream- Allow sandbox to work with MLS- Make Chrome work with staff user- Add icecast policy - Cleanup spec file- Add mcelog policy- Lots of fixes found in F12- Fix rpm_dontaudit_leaks- Add getsched to hald_t - Add file context for Fedora/Redhat Directory Server- Allow abrt_helper to getattr on all filesystems - Add label for /opt/real/RealPlayer/plugins/oggfformat\.so- Add gstreamer_home_t for ~/.gstreamer- Update to upstream- Fix git- Turn on puppet policy - Update to dgrift git policy- Move users file to selection by spec file. - Allow vncserver to run as unconfined_u:unconfined_r:unconfined_t- Update to upstream- Remove most of the permissive domains from F12.- Add cobbler policy from dgrift- add usbmon device - Add allow rulse for devicekit_disk- Lots of fixes found in F12, fixes from Tom London- Cleanups from dgrift- Add back xserver_manage_home_fonts- Dontaudit sandbox trying to read nscd and sssd- Update to upstream- Rename udisks-daemon back to devicekit_disk_t policy- Fixes for abrt calls- Add tgtd policy- Update to upstream release- Add asterisk policy back in - Update to upstream release 2.20091117- Update to upstream release 2.20091117- Fixup nut policy- Update to upstream- Allow vpnc request the kernel to load modules- Fix minimum policy installs - Allow udev and rpcbind to request the kernel to load modules- Add plymouth policy - Allow local_login to sys_admin- Allow cupsd_config to read user tmp - Allow snmpd_t to signal itself - Allow sysstat_t to makedir in sysstat_log_t- Update rhcs policy- Allow users to exec restorecond- Allow sendmail to request kernel modules load- Fix all kernel_request_load_module domains- Fix all kernel_request_load_module domains- Remove allow_exec* booleans for confined users. Only available for unconfined_t- More fixes for sandbox_web_t- Allow sshd to create .ssh directory and content- Fix request_module line to module_request- Fix sandbox policy to allow it to run under firefox. - Dont audit leaks.- Fixes for sandbox- Update to upstream - Dontaudit nsplugin search /root - Dontaudit nsplugin sys_nice- Fix label on /usr/bin/notepad, /usr/sbin/vboxadd-service - Remove policycoreutils-python requirement except for minimum- Fix devicekit_disk_t to getattr on all domains sockets and fifo_files - Conflicts seedit (You can not use selinux-policy-targeted and seedit at the same time.)- Add wordpress/wp-content/uploads label - Fixes for sandbox when run from staff_t- Update to upstream - Fixes for devicekit_disk- More fixes- Lots of fixes for initrc and other unconfined domains- Allow xserver to use netlink_kobject_uevent_socket- Fixes for sandbox- Dontaudit setroubleshootfix looking at /root directory- Update to upsteam- Allow gssd to send signals to users - Fix duplicate label for apache content- Update to upstream- Remove polkit_auth on upgrades- Add back in unconfined.pp and unconfineduser.pp - Add Sandbox unshare- Fixes for cdrecord, mdadm, and others- Add capability setting to dhcpc and gpm- Allow cronjobs to read exim_spool_t- Add ABRT policy- Fix system-config-services policy- Allow libvirt to change user componant of virt_domain- Allow cupsd_config_t to be started by dbus - Add smoltclient policy- Add policycoreutils-python to pre install- Make all unconfined_domains permissive so we can see what AVC's happen- Add pt_chown policy- Add kdump policy for Miroslav Grepl - Turn off execstack boolean- Turn on execstack on a temporary basis (#512845)- Allow nsplugin to connecto the session bus - Allow samba_net to write to coolkey data- Allow devicekit_disk to list inotify- Allow svirt images to create sock_file in svirt_var_run_t- Allow exim to getattr on mountpoints - Fixes for pulseaudio- Allow svirt_t to stream_connect to virtd_t- Allod hald_dccm_t to create sock_files in /tmp- More fixes from upstream- Fix polkit label - Remove hidebrokensymptoms for nss_ldap fix - Add modemmanager policy - Lots of merges from upstream - Begin removing textrel_shlib_t labels, from fixed libraries- Update to upstream- Allow certmaster to override dac permissions- Update to upstream- Fix context for VirtualBox- Update to upstream- Allow clamscan read amavis spool files- Fixes for xguest- fix multiple directory ownership of mandirs- Update to upstream- Add rules for rtkit-daemon- Update to upstream - Fix nlscd_stream_connect- Add rtkit policy- Allow rpcd_t to stream connect to rpcbind- Allow kpropd to create tmp files- Fix last duplicate /var/log/rpmpkgs- Update to upstream * add sssd- Update to upstream * cleanup- Update to upstream - Additional mail ports - Add virt_use_usb boolean for svirt- Fix mcs rules to include chr_file and blk_file- Add label for udev-acl- Additional rules for consolekit/udev, privoxy and various other fixes- New version for upstream- Allow NetworkManager to read inotifyfs- Allow setroubleshoot to run mlocate- Update to upstream- Add fish as a shell - Allow fprintd to list usbfs_t - Allow consolekit to search mountpoints - Add proper labeling for shorewall- New log file for vmware - Allow xdm to setattr on user_tmp_t- Upgrade to upstream- Allow fprintd to access sys_ptrace - Add sandbox policy- Add varnishd policy- Fixes for kpropd- Allow brctl to r/w tun_tap_device_t- Add /usr/share/selinux/packages- Allow rpcd_t to send signals to kernel threads- Fix upgrade for F10 to F11- Add policy for /var/lib/fprint-Remove duplicate line- Allow svirt to manage pci and other sysfs device data- Fix package selection handling- Fix /sbin/ip6tables-save context - Allod udev to transition to mount - Fix loading of mls policy file- Add shorewall policy- Additional rules for fprintd and sssd- Allow nsplugin to unix_read unix_write sem for unconfined_java- Fix uml files to be owned by users- Fix Upgrade path to install unconfineduser.pp when unocnfined package is 3.0.0 or less- Allow confined users to manage virt_content_t, since this is home dir content - Allow all domains to read rpm_script_tmp_t which is what shell creates on redirection- Fix labeling on /var/lib/misc/prelink* - Allow xserver to rw_shm_perms with all x_clients - Allow prelink to execute files in the users home directory- Allow initrc_t to delete dev_null - Allow readahead to configure auditing - Fix milter policy - Add /var/lib/readahead- Update to latest milter code from Paul Howarth- Additional perms for readahead- Allow pulseaudio to acquire_svc on session bus - Fix readahead labeling- Allow sysadm_t to run rpm directly - libvirt needs fowner- Allow sshd to read var_lib symlinks for freenx- Allow nsplugin unix_read and write on users shm and sem - Allow sysadm_t to execute su- Dontaudit attempts to getattr user_tmpfs_t by lvm - Allow nfs to share removable media- Add ability to run postdrop from confined users- Fixes for podsleuth- Turn off nsplugin transition - Remove Konsole leaked file descriptors for release- Allow cupsd_t to create link files in print_spool_t - Fix iscsi_stream_connect typo - Fix labeling on /etc/acpi/actions - Don't reinstall unconfine and unconfineuser on upgrade if they are not installed- Allow audioentroy to read etc files- Add fail2ban_var_lib_t - Fixes for devicekit_power_t- Separate out the ucnonfined user from the unconfined.pp package- Make sure unconfined_java_t and unconfined_mono_t create user_tmpfs_t.- Upgrade to latest upstream - Allow devicekit_disk sys_rawio- Dontaudit binds to ports < 1024 for named - Upgrade to latest upstream- Allow podsleuth to use tmpfs files- Add customizable_types for svirt- Allow setroubelshoot exec* privs to prevent crash from bad libraries - add cpufreqselector- Dontaudit listing of /root directory for cron system jobs- Fix missing ld.so.cache label- Add label for ~/.forward and /root/.forward- Fixes for svirt- Fixes to allow svirt read iso files in homedir- Add xenner and wine fixes from mgrepl- Allow mdadm to read/write mls override- Change to svirt to only access svirt_image_t- Fix libvirt policy- Upgrade to latest upstream- Fixes for iscsid and sssd - More cleanups for upgrade from F10 to Rawhide.- Add pulseaudio, sssd policy - Allow networkmanager to exec udevadm- Add pulseaudio context- Upgrade to latest patches- Fixes for libvirt- Update to Latest upstream- Fix setrans.conf to show SystemLow for s0- Further confinement of qemu images via svirt- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild- Allow NetworkManager to manage /etc/NetworkManager/system-connections- add virtual_image_context and virtual_domain_context files- Allow rpcd_t to send signal to mount_t - Allow libvirtd to run ranged- Fix sysnet/net_conf_t- Fix squidGuard labeling- Re-add corenet_in_generic_if(unlabeled_t)* Tue Feb 10 2009 Dan Walsh 3.6.5-2 - Add git web policy- Add setrans contains from upstream- Do transitions outside of the booleans- Allow xdm to create user_tmp_t sockets for switch user to work- Fix staff_t domain- Grab remainder of network_peer_controls patch- More fixes for devicekit- Upgrade to latest upstream- Add boolean to disallow unconfined_t login- Add back transition from xguest to mozilla- Add virt_content_ro_t and labeling for isos directory- Fixes for wicd daemon- More mls/rpm fixes- Add policy to make dbus/nm-applet work- Remove polgen-ifgen from post and add trigger to policycoreutils-python- Add wm policy - Make mls work in graphics mode- Fixed for DeviceKit- Add devicekit policy- Update to upstream- Define openoffice as an x_domain- Fixes for reading xserver_tmp_t- Allow cups_pdf_t write to nfs_t- Remove audio_entropy policy- Update to upstream- Allow hal_acl_t to getattr/setattr fixed_disk- Change userdom_read_all_users_state to include reading symbolic links in /proc- Fix dbus reading /proc information- Add missing alias for home directory content- Fixes for IBM java location- Allow unconfined_r unconfined_java_t- Add cron_role back to user domains- Fix sudo setting of user keys- Allow iptables to talk to terminals - Fixes for policy kit - lots of fixes for booting.- Cleanup policy- Rebuild for Python 2.6- Fix labeling on /var/spool/rsyslog- Allow postgresl to bind to udp nodes- Allow lvm to dbus chat with hal - Allow rlogind to read nfs_t- Fix cyphesis file context- Allow hal/pm-utils to look at /var/run/video.rom - Add ulogd policy- Additional fixes for cyphesis - Fix certmaster file context - Add policy for system-config-samba - Allow hal to read /var/run/video.rom- Allow dhcpc to restart ypbind - Fixup labeling in /var/run- Add certmaster policy- Fix confined users - Allow xguest to read/write xguest_dbusd_t- Allow openoffice execstack/execmem privs- Allow mozilla to run with unconfined_execmem_t- Dontaudit domains trying to write to .xsession-errors- Allow nsplugin to look at autofs_t directory- Allow kerneloops to create tmp files- More alias for fastcgi- Remove mod_fcgid-selinux package- Fix dovecot access- Policy cleanup- Remove Multiple spec - Add include - Fix makefile to not call per_role_expansion- Fix labeling of libGL- Update to upstream- Update to upstream policy- Fixes for confined xwindows and xdm_t- Allow confined users and xdm to exec wm - Allow nsplugin to talk to fifo files on nfs- Allow NetworkManager to transition to avahi and iptables - Allow domains to search other domains keys, coverup kernel bug- Fix labeling for oracle- Allow nsplugin to comminicate with xdm_tmp_t sock_file- Change all user tmpfs_t files to be labeled user_tmpfs_t - Allow radiusd to create sock_files- Upgrade to upstream- Allow confined users to login with dbus- Fix transition to nsplugin- Add file context for /dev/mspblk.*- Fix transition to nsplugin '- Fix labeling on new pm*log - Allow ssh to bind to all nodes- Merge upstream changes - Add Xavier Toth patches- Add qemu_cache_t for /var/cache/libvirt- Remove gamin policy- Add tinyxs-max file system support- Update to upstream - New handling of init scripts- Allow pcsd to dbus - Add memcache policy- Allow audit dispatcher to kill his children- Update to upstream - Fix crontab use by unconfined user- Allow ifconfig_t to read dhcpc_state_t- Update to upstream- Update to upstream- Allow system-config-selinux to work with policykit- Fix novel labeling- Consolodate pyzor,spamassassin, razor into one security domain - Fix xdm requiring additional perms.- Fixes for logrotate, alsa- Eliminate vbetool duplicate entry- Fix xguest -> xguest_mozilla_t -> xguest_openiffice_t - Change dhclient to be able to red networkmanager_var_run- Update to latest refpolicy - Fix libsemanage initial install bug- Add inotify support to nscd- Allow unconfined_t to setfcap- Allow amanda to read tape - Allow prewikka cgi to use syslog, allow audisp_t to signal cgi - Add support for netware file systems- Allow ypbind apps to net_bind_service- Allow all system domains and application domains to append to any log file- Allow gdm to read rpm database - Allow nsplugin to read mplayer config files- Allow vpnc to run ifconfig- Allow confined users to use postgres - Allow system_mail_t to exec other mail clients - Label mogrel_rails as an apache server- Apply unconfined_execmem_exec_t to haskell programs- Fix prelude file context- allow hplip to talk dbus - Fix context on ~/.local dir- Prevent applications from reading x_device- Add /var/lib/selinux context- Update to upstream- Add livecd policy- Dontaudit search of admin_home for init_system_domain - Rewrite of xace interfaces - Lots of new fs_list_inotify - Allow livecd to transition to setfiles_mac- Begin XAce integration- Merge Upstream- Allow amanada to create data files- Fix initial install, semanage setup- Allow system_r for httpd_unconfined_script_t- Remove dmesg boolean - Allow user domains to read/write game data- Change unconfined_t to transition to unconfined_mono_t when running mono - Change XXX_mono_t to transition to XXX_t when executing bin_t files, so gnome-do will work- Remove old booleans from targeted-booleans.conf file- Add boolean to mmap_zero - allow tor setgid - Allow gnomeclock to set clock- Don't run crontab from unconfined_t- Change etc files to config files to allow users to read them- Lots of fixes for confined domains on NFS_t homedir- dontaudit mrtg reading /proc - Allow iscsi to signal itself - Allow gnomeclock sys_ptrace- Allow dhcpd to read kernel network state- Label /var/run/gdm correctly - Fix unconfined_u user creation- Allow transition from initrc_t to getty_t- Allow passwd to communicate with user sockets to change gnome-keyring- Fix initial install- Allow radvd to use fifo_file - dontaudit setfiles reading links - allow semanage sys_resource - add allow_httpd_mod_auth_ntlm_winbind boolean - Allow privhome apps including dovecot read on nfs and cifs home dirs if the boolean is set- Allow nsplugin to read /etc/mozpluggerrc, user_fonts - Allow syslog to manage innd logs. - Allow procmail to ioctl spamd_exec_t- Allow initrc_t to dbus chat with consolekit.- Additional access for nsplugin - Allow xdm setcap/getcap until pulseaudio is fixed- Allow mount to mkdir on tmpfs - Allow ifconfig to search debugfs- Fix file context for MATLAB - Fixes for xace- Allow stunnel to transition to inetd children domains - Make unconfined_dbusd_t an unconfined domain- Fixes for qemu/virtd- Fix bug in mozilla policy to allow xguest transition - This will fix the libsemanage.dbase_llist_query: could not find record value libsemanage.dbase_llist_query: could not query record value (No such file or directory) bug in xguest- Allow nsplugin to run acroread- Add cups_pdf policy - Add openoffice policy to run in xguest- prewika needs to contact mysql - Allow syslog to read system_map files- Change init_t to an unconfined_domain- Allow init to transition to initrc_t on shell exec. - Fix init to be able to sendto init_t. - Allow syslog to connect to mysql - Allow lvm to manage its own fifo_files - Allow bugzilla to use ldap - More mls fixes- fixes for init policy (#436988) - fix build- Additional changes for MLS policy- Fix initrc_context generation for MLS- Fixes for libvirt- Allow bitlebee to read locale_t- More xselinux rules- Change httpd_$1_script_r*_t to httpd_$1_content_r*_t- Prepare policy for beta release - Change some of the system domains back to unconfined - Turn on some of the booleans- Allow nsplugin_config execstack/execmem - Allow nsplugin_t to read alsa config - Change apache to use user content- Add cyphesis policy- Fix Makefile.devel to build mls modules - Fix qemu to be more specific on labeling- Update to upstream fixes- Allow staff to mounton user_home_t- Add xace support- Add fusectl file system- Fixes from yum-cron - Update to latest upstream- Fix userdom_list_user_files- Merge with upstream- Allow udev to send audit messages- Add additional login users interfaces - userdom_admin_login_user_template(staff)- More fixes for polkit- Eliminate transition from unconfined_t to qemu by default - Fixes for gpg- Update to upstream- Fixes for staff_t- Add policy for kerneloops - Add policy for gnomeclock- Fixes for libvirt- Fixes for nsplugin- More fixes for qemu- Additional ports for vnc and allow qemu and libvirt to search all directories- Update to upstream - Add libvirt policy - add qemu policy- Allow fail2ban to create a socket in /var/run- Allow allow_httpd_mod_auth_pam to work- Add audisp policy and prelude- Allow all user roles to executae samba net command- Allow usertypes to read/write noxattr file systems- Fix nsplugin to allow flashplugin to work in enforcing mode- Allow pam_selinux_permit to kill all processes- Allow ptrace or user processes by users of same type - Add boolean for transition to nsplugin- Allow nsplugin sys_nice, getsched, setsched- Allow login programs to talk dbus to oddjob- Add procmail_log support - Lots of fixes for munin- Allow setroubleshoot to read policy config and send audit messages- Allow users to execute all files in homedir, if boolean set - Allow mount to read samba config- Fixes for xguest to run java plugin- dontaudit pam_t and dbusd writing to user_home_t- Update gpg to allow reading of inotify- Change user and staff roles to work correctly with varied perms- Fix munin log, - Eliminate duplicate mozilla file context - fix wpa_supplicant spec- Fix role transition from unconfined_r to system_r when running rpm - Allow unconfined_domains to communicate with user dbus instances- Fixes for xguest- Let all uncofined domains communicate with dbus unconfined- Run rpm in system_r- Zero out customizable types- Fix definiton of admin_home_t- Fix munin file context- Allow cron to run unconfined apps- Modify default login to unconfined_u- Dontaudit dbus user client search of /root- Update to upstream- Fixes for polkit - Allow xserver to ptrace- Add polkit policy - Symplify userdom context, remove automatic per_role changes- Update to upstream - Allow httpd_sys_script_t to search users homedirs- Allow rpm_script to transition to unconfined_execmem_t- Remove user based home directory separation- Remove user specific crond_t- Merge with upstream - Allow xsever to read hwdata_t - Allow login programs to setkeycreate- Update to upstream- Update to upstream- Allow XServer to read /proc/self/cmdline - Fix unconfined cron jobs - Allow fetchmail to transition to procmail - Fixes for hald_mac - Allow system_mail to transition to exim - Allow tftpd to upload files - Allow xdm to manage unconfined_tmp - Allow udef to read alsa config - Fix xguest to be able to connect to sound port- Fixes for hald_mac - Treat unconfined_home_dir_t as a home dir - dontaudit rhgb writes to fonts and root- Fix dnsmasq - Allow rshd full login privs- Allow rshd to connect to ports > 1023- Fix vpn to bind to port 4500 - Allow ssh to create shm - Add Kismet policy- Allow rpm to chat with networkmanager- Fixes for ipsec and exim mail - Change default to unconfined user- Pass the UNK_PERMS param to makefile - Fix gdm location- Make alsa work- Fixes for consolekit and startx sessions- Dontaudit consoletype talking to unconfined_t- Remove homedir_template- Check asound.state- Fix exim policy- Allow tmpreadper to read man_t - Allow racoon to bind to all nodes - Fixes for finger print reader- Allow xdm to talk to input device (fingerprint reader) - Allow octave to run as java- Allow login programs to set ioctl on /proc- Allow nsswitch apps to read samba_var_t- Fix maxima- Eliminate rpm_t:fifo_file avcs - Fix dbus path for helper app- Fix service start stop terminal avc's- Allow also to search var_lib - New context for dbus launcher- Allow cupsd_config_t to read/write usb_device_t - Support for finger print reader, - Many fixes for clvmd - dbus starting networkmanager- Fix java and mono to run in xguest account- Fix to add xguest account when inititial install - Allow mono, java, wine to run in userdomains- Allow xserver to search devpts_t - Dontaudit ldconfig output to homedir- Remove hplip_etc_t change back to etc_t.- Allow cron to search nfs and samba homedirs- Allow NetworkManager to dbus chat with yum-updated- Allow xfs to bind to port 7100- Allow newalias/sendmail dac_override - Allow bind to bind to all udp ports- Turn off direct transition- Allow wine to run in system role- Fix java labeling- Define user_home_type as home_type- Allow sendmail to create etc_aliases_t- Allow login programs to read symlinks on homedirs- Update an readd modules- Cleanup spec file- Allow xserver to be started by unconfined process and talk to tty- Upgrade to upstream to grab postgressql changes- Add setransd for mls policy- Add ldconfig_cache_t- Allow sshd to write to proc_t for afs login- Allow xserver access to urand- allow dovecot to search mountpoints- Fix Makefile for building policy modules- Fix dhcpc startup of service- Fix dbus chat to not happen for xguest and guest users- Fix nagios cgi - allow squid to communicate with winbind- Fixes for ldconfig- Update from upstream- Add nasd support- Fix new usb devices and dmfm- Eliminate mount_ntfs_t policy, merge into mount_t- Allow xserver to write to ramfs mounted by rhgb- Add context for dbus machine id- Update with latest changes from upstream- Fix prelink to handle execmod- Add ntpd_key_t to handle secret data- Add anon_inodefs - Allow unpriv user exec pam_exec_t - Fix trigger- Allow cups to use generic usb - fix inetd to be able to run random apps (git)- Add proper contexts for rsyslogd- Fixes for xguest policy- Allow execution of gconf- Fix moilscanner update problem- Begin adding policy to separate setsebool from semanage - Fix xserver.if definition to not break sepolgen.if- Add new devices- Add brctl policy- Fix root login to include system_r- Allow prelink to read kernel sysctls- Default to user_u:system_r:unconfined_t- fix squid - Fix rpm running as uid- Fix syslog declaration- Allow avahi to access inotify - Remove a lot of bogus security_t:filesystem avcs- Remove ifdef strict policy from upstream- Remove ifdef strict to allow user_u to login- Fix for amands - Allow semanage to read pp files - Allow rhgb to read xdm_xserver_tmp- Allow kerberos servers to use ldap for backing store- allow alsactl to read kernel state- More fixes for alsactl - Transition from hal and modutils - Fixes for suspend resume. - insmod domtrans to alsactl - insmod writes to hal log- Allow unconfined_t to transition to NetworkManager_t - Fix netlabel policy- Update to latest from upstream- Update to latest from upstream- Update to latest from upstream- Allow pcscd_t to send itself signals- Fixes for unix_update - Fix logwatch to be able to search all dirs- Upstream bumped the version- Allow consolekit to syslog - Allow ntfs to work with hal- Allow iptables to read etc_runtime_t- MLS Fixes- Fix path of /etc/lvm/cache directory - Fixes for alsactl and pppd_t - Fixes for consolekit- Allow insmod_t to mount kvmfs_t filesystems- Rwho policy - Fixes for consolekit- fixes for fusefs- Fix samba_net to allow it to view samba_var_t- Update to upstream- Fix Sonypic backlight - Allow snmp to look at squid_conf_t- Fixes for pyzor, cyrus, consoletype on everything installs- Fix hald_acl_t to be able to getattr/setattr on usb devices - Dontaudit write to unconfined_pipes for load_policy- Allow bluetooth to read inotifyfs- Fixes for samba domain controller. - Allow ConsoleKit to look at ttys- Fix interface call- Allow syslog-ng to read /var - Allow locate to getattr on all filesystems - nscd needs setcap- Update to upstream- Allow samba to run groupadd- Update to upstream- Allow mdadm to access generic scsi devices- Fix labeling on udev.tbl dirs- Fixes for logwatch- Add fusermount and mount_ntfs policy- Update to upstream - Allow saslauthd to use kerberos keytabs- Fixes for samba_var_t- Allow networkmanager to setpgid - Fixes for hal_acl_t- Remove disable_trans booleans - hald_acl_t needs to talk to nscd- Fix prelink to be able to manage usr dirs.- Allow insmod to launch init scripts- Remove setsebool policy- Fix handling of unlabled_t packets- More of my patches from upstream- Update to latest from upstream - Add fail2ban policy- Update to remove security_t:filesystem getattr problems- Policy for consolekit- Update to latest from upstream- Revert Nemiver change - Set sudo as a corecmd so prelink will work, remove sudoedit mapping, since this will not work, it does not transition. - Allow samba to execute useradd- Upgrade to the latest from upstream- Add sepolgen support - Add bugzilla policy- Fix file context for nemiver- Remove include sym link- Allow mozilla, evolution and thunderbird to read dev_random. Resolves: #227002 - Allow spamd to connect to smtp port Resolves: #227184 - Fixes to make ypxfr work Resolves: #227237- Fix ssh_agent to be marked as an executable - Allow Hal to rw sound device- Fix spamassisin so crond can update spam files - Fixes to allow kpasswd to work - Fixes for bluetooth- Remove some targeted diffs in file context file- Fix squid cachemgr labeling- Add ability to generate webadm_t policy - Lots of new interfaces for httpd - Allow sshd to login as unconfined_t- Continue fixing, additional user domains- Begin adding user confinement to targeted policy- Fixes for prelink, ktalkd, netlabel- Allow prelink when run from rpm to create tmp files Resolves: #221865 - Remove file_context for exportfs Resolves: #221181 - Allow spamassassin to create ~/.spamassissin Resolves: #203290 - Allow ssh access to the krb tickets - Allow sshd to change passwd - Stop newrole -l from working on non securetty Resolves: #200110 - Fixes to run prelink in MLS machine Resolves: #221233 - Allow spamassassin to read var_lib_t dir Resolves: #219234- fix mplayer to work under strict policy - Allow iptables to use nscd Resolves: #220794- Add gconf policy and make it work with strict- Many fixes for strict policy and by extension mls.- Fix to allow ftp to bind to ports > 1024 Resolves: #219349- Allow semanage to exec it self. Label genhomedircon as semanage_exec_t Resolves: #219421 - Allow sysadm_lpr_t to manage other print spool jobs Resolves: #220080- allow automount to setgid Resolves: #219999- Allow cron to polyinstatiate - Fix creation of boot flags Resolves: #207433- Fixes for irqbalance Resolves: #219606- Fix vixie-cron to work on mls Resolves: #207433Resolves: #218978- Allow initrc to create files in /var directories Resolves: #219227- More fixes for MLS Resolves: #181566- More Fixes polyinstatiation Resolves: #216184- More Fixes polyinstatiation - Fix handling of keyrings Resolves: #216184- Fix polyinstatiation - Fix pcscd handling of terminal Resolves: #218149 Resolves: #218350- More fixes for quota Resolves: #212957- ncsd needs to use avahi sockets Resolves: #217640 Resolves: #218014- Allow login programs to polyinstatiate homedirs Resolves: #216184 - Allow quotacheck to create database files Resolves: #212957- Dontaudit appending hal_var_lib files Resolves: #217452 Resolves: #217571 Resolves: #217611 Resolves: #217640 Resolves: #217725- Fix context for helix players file_context #216942- Fix load_policy to be able to mls_write_down so it can talk to the terminal- Fixes for hwclock, clamav, ftp- Move to upstream version which accepted my patches- Fixes for nvidia driver- Allow semanage to signal mcstrans- Update to upstream- Allow modstorage to edit /etc/fstab file- Fix for qemu, /dev/- Fix path to realplayer.bin- Allow xen to connect to xen port- Allow cups to search samba_etc_t directory - Allow xend_t to list auto_mountpoints- Allow xen to search automount- Fix spec of jre files- Fix unconfined access to shadow file- Allow xend to create files in xen_image_t directories- Fixes for /var/lib/hal- Remove ability for sysadm_t to look at audit.log- Fix rpc_port_types - Add aide policy for mls- Merge with upstream- Lots of fixes for ricci- Allow xen to read/write fixed devices with a boolean - Allow apache to search /var/log- Fix policygentool specfile problem. - Allow apache to send signals to it's logging helpers. - Resolves: rhbz#212731- Add perms for swat- Add perms for swat- Allow daemons to dump core files to /- Fixes for ricci- Allow mount.nfs to work- Allow ricci-modstorage to look at lvm_etc_t- Fixes for ricci using saslauthd- Allow mountpoint on home_dir_t and home_t- Update xen to read nfs files- Allow noxattrfs to associate with other noxattrfs- Allow hal to use power_device_t- Allow procemail to look at autofs_t - Allow xen_image_t to work as a fixed device- Refupdate from upstream- Add lots of fixes for mls cups- Lots of fixes for ricci- Fix number of cats- Update to upstream- More iSCSI changes for #209854- Test ISCSI fixes for #209854- allow semodule to rmdir selinux_config_t dir- Fix boot_runtime_t problem on ppc. Should not be creating these files.- Fix context mounts on reboot - Fix ccs creation of directory in /var/log- Update for tallylog- Allow xend to rewrite dhcp conf files - Allow mgetty sys_admin capability- Make xentapctrl work- Don't transition unconfined_t to bootloader_t - Fix label in /dev/xen/blktap- Patch for labeled networking- Fix crond handling for mls- Update to upstream- Remove bluetooth-helper transition - Add selinux_validate for semanage - Require new version of libsemanage- Fix prelink- Fix rhgb- Fix setrans handling on MLS and useradd- Support for fuse - fix vigr- Fix dovecot, amanda - Fix mls- Allow java execheap for itanium- Update with upstream- mls fixes- Update from upstream- More fixes for mls - Revert change on automount transition to mount- Fix cron jobs to run under the correct context- Fixes to make pppd work- Multiple policy fixes - Change max categories to 1023- Fix transition on mcstransd- Add /dev/em8300 defs- Upgrade to upstream- Fix ppp connections from network manager- Add tty access to all domains boolean - Fix gnome-pty-helper context for ia64- Fixed typealias of firstboot_rw_t- Fix location of xel log files - Fix handling of sysadm_r -> rpm_exec_t- Fixes for autofs, lp- Update from upstream- Fixup for test6- Update to upstream- Update to upstream- Fix suspend to disk problems- Lots of fixes for restarting daemons at the console.- Fix audit line - Fix requires line- Upgrade to upstream- Fix install problems- Allow setroubleshoot to getattr on all dirs to gather RPM data- Set /usr/lib/ia32el/ia32x_loader to unconfined_execmem_exec_t for ia32 platform - Fix spec for /dev/adsp- Fix xen tty devices- Fixes for setroubleshoot- Update to upstream- Fixes for stunnel and postgresql - Update from upstream- Update from upstream - More java fixes- Change allow_execstack to default to on, for RHEL5 Beta. This is required because of a Java compiler problem. Hope to turn off for next beta- Misc fixes- More fixes for strict policy- Quiet down anaconda audit messages- Fix setroubleshootd- Update to the latest from upstream- More fixes for xen- Fix anaconda transitions- yet more xen rules- more xen rules- Fixes for Samba- Fixes for xen- Allow setroubleshootd to send mail- Add nagios policy- fixes for setroubleshoot- Added Paul Howarth patch to only load policy packages shipped with this package - Allow pidof from initrc to ptrace higher level domains - Allow firstboot to communicate with hal via dbus- Add policy for /var/run/ldapi- Fix setroubleshoot policy- Fixes for mls use of ssh - named has a new conf file- Fixes to make setroubleshoot work- Cups needs to be able to read domain state off of printer client- add boolean to allow zebra to write config files- setroubleshootd fixes- Allow prelink to read bin_t symlink - allow xfs to read random devices - Change gfs to support xattr- Remove spamassassin_can_network boolean- Update to upstream - Fix lpr domain for mls- Add setroubleshoot policy- Turn off auditallow on setting booleans- Multiple fixes- Update to upstream- Update to upstream - Add new class for kernel key ring- Update to upstream- Update to upstream- Break out selinux-devel package- Add ibmasmfs- Fix policygentool gen_requires- Update from Upstream- Fix spec of realplay- Update to upstream- Fix semanage- Allow useradd to create_home_dir in MLS environment- Update from upstream- Update from upstream- Add oprofilefs- Fix for hplip and Picasus- Update to upstream- Update to upstream- fixes for spamd- fixes for java, openldap and webalizer- Xen fixes- Upgrade to upstream- allow hal to read boot_t files - Upgrade to upstream- allow hal to read boot_t files- Update from upstream- Fixes for amavis- Update from upstream- Allow auditctl to search all directories- Add acquire service for mono.- Turn off allow_execmem boolean - Allow ftp dac_override when allowed to access users homedirs- Clean up spec file - Transition from unconfined_t to prelink_t- Allow execution of cvs command- Update to upstream- Update to upstream- Fix libjvm spec- Update to upstream- Add xm policy - Fix policygentool- Update to upstream - Fix postun to only disable selinux on full removal of the packages- Allow mono to chat with unconfined- Allow procmail to sendmail - Allow nfs to share dosfs- Update to latest from upstream - Allow selinux-policy to be removed and kernel not to crash- Update to latest from upstream - Add James Antill patch for xen - Many fixes for pegasus- Add unconfined_mount_t - Allow privoxy to connect to httpd_cache - fix cups labeleing on /var/cache/cups- Update to latest from upstream- Update to latest from upstream - Allow mono and unconfined to talk to initrc_t dbus objects- Change libraries.fc to stop shlib_t form overriding texrel_shlib_t- Fix samba creating dirs in homedir - Fix NFS so its booleans would work- Allow secadm_t ability to relabel all files - Allow ftp to search xferlog_t directories - Allow mysql to communicate with ldap - Allow rsync to bind to rsync_port_t- Fixed mailman with Postfix #183928 - Allowed semanage to create file_context files. - Allowed amanda_t to access inetd_t TCP sockets and allowed amanda_recover_t to bind to reserved ports. #149030 - Don't allow devpts_t to be associated with tmp_t. - Allow hald_t to stat all mountpoints. - Added boolean samba_share_nfs to allow smbd_t full access to NFS mounts. - Make mount run in mount_t domain from unconfined_t to prevent mislabeling of /etc/mtab. - Changed the file_contexts to not have a regex before the first ^/[a-z]/ whenever possible, makes restorecon slightly faster. - Correct the label of /etc/named.caching-nameserver.conf - Now label /usr/src/kernels/.+/lib(/.*)? as usr_t instead of /usr/src(/.*)?/lib(/.*)? - I don't think we need anything else under /usr/src hit by this. - Granted xen access to /boot, allowed mounting on xend_var_lib_t, and allowed xenstored_t rw access to the xen device node.- More textrel_shlib_t file path fixes - Add ada support- Get auditctl working in MLS policy- Add mono dbus support - Lots of file_context fixes for textrel_shlib_t in FC5 - Turn off execmem auditallow since they are filling log files- Update to upstream- Allow automount and dbus to read cert files- Fix ftp policy - Fix secadm running of auditctl- Update to upstream- Update to upstream- Fix policyhelp- Fix pam_console handling of usb_device - dontaudit logwatch reading /mnt dir- Update to upstream- Get transition rules to create policy.20 at SystemHigh- Allow secadmin to shutdown system - Allow sendmail to exec newalias- MLS Fixes dmidecode needs mls_file_read_up - add ypxfr_t - run init needs access to nscd - udev needs setuid - another xen log file - Dontaudit mount getattr proc_kcore_t- fix buildroot usage (#185391)- Get rid of mount/fsdisk scan of /dev messages - Additional fixes for suspend/resume- Fake make to rebuild enableaudit.pp- Get xen networking running.- Fixes for Xen - enableaudit should not be the same as base.pp - Allow ps to work for all process- more xen policy fixups- more xen fixage (#184393)- Fix blkid specification - Allow postfix to execute mailman_que- Blkid changes - Allow udev access to usb_device_t - Fix post script to create targeted policy config file- Allow lvm tools to create drevice dir- Add Xen support- Fixes for cups - Make cryptosetup work with hal- Load Policy needs translock- Fix cups html interface- Add hal changes suggested by Jeremy - add policyhelp to point at policy html pages- Additional fixes for nvidia and cups- Update to upstream - Merged my latest fixes - Fix cups policy to handle unix domain sockets- NSCD socket is in nscd_var_run_t needs to be able to search dir- Fixes Apache interface file- Fixes for new version of cups- Turn off polyinstatiate util after FC5- Fix problem with privoxy talking to Tor- Turn on polyinstatiation- Don't transition from unconfined_t to fsadm_t- Fix policy update model.- Update to upstream- Fix load_policy to work on MLS - Fix cron_rw_system_pipes for postfix_postdrop_t - Allow audotmount to run showmount- Fix swapon - allow httpd_sys_script_t to be entered via a shell - Allow httpd_sys_script_t to read eventpolfs- Update from upstream- allow cron to read apache files- Fix vpnc policy to work from NetworkManager- Update to upstream - Fix semoudle polcy- Update to upstream - fix sysconfig/selinux link- Add router port for zebra - Add imaze port for spamd - Fixes for amanda and java- Fix bluetooth handling of usb devices - Fix spamd reading of ~/ - fix nvidia spec- Update to upsteam- Add users_extra files- Update to upstream- Add semodule policy- Update from upstream- Fix for spamd to use razor port- Fixes for mcs - Turn on mount and fsadm for unconfined_t- Fixes for the -devel package- Fix for spamd to use ldap- Update to upstream- Update to upstream - Fix rhgb, and other Xorg startups- Update to upstream- Separate out role of secadm for mls- Add inotifyfs handling- Update to upstream - Put back in changes for pup/zen- Many changes for MLS - Turn on strict policy- Update to upstream- Update to upstream - Fixes for booting and logging in on MLS machine- Update to upstream - Turn off execheap execstack for unconfined users - Add mono/wine policy to allow execheap and execstack for them - Add execheap for Xdm policy- Update to upstream - Fixes to fetchmail,- Update to upstream- Fix for procmail/spamassasin - Update to upstream - Add rules to allow rpcd to work with unlabeled_networks.- Update to upstream - Fix ftp Man page- Update to upstream- fix pup transitions (#177262) - fix xen disks (#177599)- Update to upstream- More Fixes for hal and readahead- Fixes for hal and readahead- Update to upstream - Apply- Add wine and fix hal problems- Handle new location of hal scripts- Allow su to read /etc/mtab- Update to upstream- Fix "libsemanage.parse_module_headers: Data did not represent a module." problem- Allow load_policy to read /etc/mtab- Fix dovecot to allow dovecot_auth to look at /tmp- Allow restorecon to read unlabeled_t directories in order to fix labeling.- Add Logwatch policy- Fix /dev/ub[a-z] file context- Fix library specification - Give kudzu execmem privs- Fix hostname in targeted policy- Fix passwd command on mls- Lots of fixes to make mls policy work- Add dri libs to textrel_shlib_t - Add system_r role for java - Add unconfined_exec_t for vncserver - Allow slapd to use kerberos- Add man pages- Add enableaudit.pp- Fix mls policy- Update mls file from old version- Add sids back in - Rebuild with update checkpolicy- Fixes to allow automount to use portmap - Fixes to start kernel in s0-s15:c0.c255- Add java unconfined/execmem policy- Add file context for /var/cvs - Dontaudit webalizer search of homedir- Update from upstream- Clean up spec - range_transition crond to SystemHigh- Fixes for hal - Update to upstream- Turn back on execmem since we need it for java, firefox, ooffice - Allow gpm to stream socket to itself- fix requirements to be on the actual packages so that policy can get created properly at install time- Allow unconfined_t to execmod texrel_shlib_t- Update to upstream - Turn off allow_execmem and allow_execmod booleans - Add tcpd and automount policies- Add two new httpd booleans, turned off by default * httpd_can_network_relay * httpd_can_network_connect_db- Add ghost for policy.20- Update to upstream - Turn off boolean allow_execstack- Change setrans-mls to use new libsetrans - Add default_context rule for xdm- Change Requires to PreReg for requiring of policycoreutils on install- New upstream releaseAdd xdm policyUpdate from upstreamUpdate from upstreamUpdate from upstream- Also trigger to rebuild policy for versions up to 2.0.7.- No longer installing policy.20 file, anaconda handles the building of the app.- Fixes for dovecot and saslauthd- Cleanup pegasus and named - Fix spec file - Fix up passwd changing applications-Update to latest from upstream- Add rules for pegasus and avahi- Start building MLS Policy- Update to upstream- Turn on bash- Initial version/bin/sh  !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'())+,-./0123456789:;<=>?@ABCDEFGHI3.13.1-192.el7_5.3    develMakefileexample.fcexample.ifexample.tehtmlNetworkManager.htmlabrt.htmlabrt_dump_oops.htmlabrt_handle_event.htmlabrt_helper.htmlabrt_retrace_coredump.htmlabrt_retrace_worker.htmlabrt_upload_watch.htmlabrt_watch_log.htmlaccountsd.htmlacct.htmladmin_crontab.htmlafs.htmlafs_bosserver.htmlafs_fsserver.htmlafs_kaserver.htmlafs_ptserver.htmlafs_vlserver.htmlaiccu.htmlaide.htmlajaxterm.htmlajaxterm_ssh.htmlalsa.htmlamanda.htmlamanda_recover.htmlamtu.htmlanaconda.htmlanon_sftpd.htmlantivirus.htmlapcupsd.htmlapcupsd_cgi_script.htmlapm.htmlapmd.htmlarpwatch.htmlasterisk.htmlaudisp.htmlaudisp_remote.htmlauditadm.htmlauditadm_screen.htmlauditadm_su.htmlauditadm_sudo.htmlauditctl.htmlauditd.htmlauthconfig.htmlautomount.htmlavahi.htmlawstats.htmlawstats_script.htmlbacula.htmlbacula_admin.htmlbacula_unconfined_script.htmlbcfg2.htmlbitlbee.htmlblkmapd.htmlblktap.htmlblueman.htmlbluetooth.htmlbluetooth_helper.htmlboinc.htmlboinc_project.htmlbootloader.htmlbrctl.htmlbrltty.htmlbugzilla_script.htmlbumblebee.htmlcachefiles_kernel.htmlcachefilesd.htmlcalamaris.htmlcallweaver.htmlcanna.htmlcardmgr.htmlccs.htmlcdcc.htmlcdrecord.htmlcertmaster.htmlcertmonger.htmlcertmonger_unconfined.htmlcertwatch.htmlcfengine_execd.htmlcfengine_monitord.htmlcfengine_serverd.htmlcgclear.htmlcgconfig.htmlcgdcbxd.htmlcgred.htmlcheckpc.htmlcheckpolicy.htmlchfn.htmlchkpwd.htmlchrome_sandbox.htmlchrome_sandbox_nacl.htmlchronyc.htmlchronyd.htmlchroot_user.htmlcinder_api.htmlcinder_backup.htmlcinder_scheduler.htmlcinder_volume.htmlciped.htmlclogd.htmlcloud_init.htmlcluster.htmlclvmd.htmlcmirrord.htmlcobblerd.htmlcockpit_session.htmlcockpit_ws.htmlcollectd.htmlcollectd_script.htmlcolord.htmlcomsat.htmlcondor_collector.htmlcondor_master.htmlcondor_negotiator.htmlcondor_procd.htmlcondor_schedd.htmlcondor_startd.htmlcondor_startd_ssh.htmlconman.htmlconman_unconfined_script.htmlconsolekit.htmlcontainer.htmlcontainer_auth.htmlcontainer_runtime.htmlcouchdb.htmlcourier_authdaemon.htmlcourier_pcp.htmlcourier_pop.htmlcourier_sqwebmail.htmlcourier_tcpd.htmlcpucontrol.htmlcpufreqselector.htmlcpuplug.htmlcpuspeed.htmlcrack.htmlcrond.htmlcronjob.htmlcrontab.htmlctdbd.htmlcups_pdf.htmlcupsd.htmlcupsd_config.htmlcupsd_lpd.htmlcvs.htmlcvs_script.htmlcyphesis.htmlcyrus.htmldbadm.htmldbadm_sudo.htmldbskkd.htmldcc_client.htmldcc_dbclean.htmldccd.htmldccifd.htmldccm.htmldcerpcd.htmlddclient.htmldeltacloudd.htmldenyhosts.htmldepmod.htmldevicekit.htmldevicekit_disk.htmldevicekit_power.htmldhcpc.htmldhcpd.htmldictd.htmldirsrv.htmldirsrv_snmp.htmldirsrvadmin.htmldirsrvadmin_script.htmldirsrvadmin_unconfined_script.htmldisk_munin_plugin.htmldkim_milter.htmldlm_controld.htmldmesg.htmldmidecode.htmldnsmasq.htmldnssec_trigger.htmldovecot.htmldovecot_auth.htmldovecot_deliver.htmldrbd.htmldspam.htmldspam_script.htmlentropyd.htmleventlogd.htmlevtchnd.htmlexim.htmlfail2ban.htmlfail2ban_client.htmlfcoemon.htmlfenced.htmlfetchmail.htmlfingerd.htmlfirewalld.htmlfirewallgui.htmlfirstboot.htmlfoghorn.htmlfprintd.htmlfreeipmi_bmc_watchdog.htmlfreeipmi_ipmidetectd.htmlfreeipmi_ipmiseld.htmlfreqset.htmlfsadm.htmlfsdaemon.htmlftpd.htmlftpdctl.htmlgames.htmlgames_srv.htmlganesha.htmlgconfd.htmlgconfdefaultsm.htmlgdomap.htmlgeoclue.htmlgetty.htmlgfs_controld.htmlgit_script.htmlgit_session.htmlgit_system.htmlgitosis.htmlglance_api.htmlglance_registry.htmlglance_scrubber.htmlglusterd.htmlgnomesystemmm.htmlgpg.htmlgpg_agent.htmlgpg_helper.htmlgpg_pinentry.htmlgpg_web.htmlgpm.htmlgpsd.htmlgreylist_milter.htmlgroupadd.htmlgroupd.htmlgssd.htmlgssproxy.htmlguest.htmlhaproxy.htmlhddtemp.htmlhostname.htmlhsqldb.htmlhttpd.htmlhttpd_helper.htmlhttpd_passwd.htmlhttpd_php.htmlhttpd_rotatelogs.htmlhttpd_suexec.htmlhttpd_sys_script.htmlhttpd_unconfined_script.htmlhttpd_user_script.htmlhwclock.htmlhwloc_dhwd.htmlhypervkvp.htmlhypervvssd.htmliceauth.htmlicecast.htmlifconfig.htmlindex.htmlinetd.htmlinetd_child.htmlinit.htmlinitrc.htmlinnd.htmlinsmod.htmlinstall.htmliodined.htmliotop.htmlipa_dnskey.htmlipa_helper.htmlipa_otpd.htmlipmievd.htmlipsec.htmlipsec_mgmt.htmliptables.htmlirc.htmlirqbalance.htmlirssi.htmliscsid.htmlisnsd.htmliwhd.htmljabberd.htmljabberd_router.htmljockey.htmljournalctl.htmlkadmind.htmlkdump.htmlkdumpctl.htmlkdumpgui.htmlkeepalived.htmlkeepalived_unconfined_script.htmlkernel.htmlkeyboardd.htmlkeystone.htmlkeystone_cgi_script.htmlkismet.htmlklogd.htmlkmscon.htmlkpropd.htmlkrb5kdc.htmlksmtuned.htmlktalkd.htmll2tpd.htmlldconfig.htmllircd.htmllivecd.htmllldpad.htmlload_policy.htmlloadkeys.htmllocal_login.htmllocate.htmllockdev.htmllogadm.htmllogrotate.htmllogrotate_mail.htmllogwatch.htmllogwatch_mail.htmllpd.htmllpr.htmllsassd.htmllsmd.htmllsmd_plugin.htmllttng_sessiond.htmllvm.htmllwiod.htmllwregd.htmllwsmd.htmlmail_munin_plugin.htmlmailman_cgi.htmlmailman_mail.htmlmailman_queue.htmlman2html_script.htmlmandb.htmlmcelog.htmlmdadm.htmlmediawiki_script.htmlmemcached.htmlmencoder.htmlminidlna.htmlminissdpd.htmlmip6d.htmlmirrormanager.htmlmock.htmlmock_build.htmlmodemmanager.htmlmojomojo_script.htmlmon_procd.htmlmon_statd.htmlmongod.htmlmotion.htmlmount.htmlmount_ecryptfs.htmlmozilla.htmlmozilla_plugin.htmlmozilla_plugin_config.htmlmpd.htmlmplayer.htmlmrtg.htmlmscan.htmlmunin.htmlmunin_script.htmlmysqld.htmlmysqld_safe.htmlmysqlmanagerd.htmlmythtv_script.htmlnagios.htmlnagios_admin_plugin.htmlnagios_checkdisk_plugin.htmlnagios_eventhandler_plugin.htmlnagios_mail_plugin.htmlnagios_openshift_plugin.htmlnagios_script.htmlnagios_services_plugin.htmlnagios_system_plugin.htmlnagios_unconfined_plugin.htmlnamed.htmlnamespace_init.htmlncftool.htmlndc.htmlnetlabel_mgmt.htmlnetlogond.htmlnetutils.htmlneutron.htmlnewrole.htmlnfsd.htmlninfod.htmlnmbd.htmlnova.htmlnrpe.htmlnscd.htmlnsd.htmlnsd_crond.htmlnslcd.htmlntop.htmlntpd.htmlnumad.htmlnut_upsd.htmlnut_upsdrvctl.htmlnut_upsmon.htmlnutups_cgi_script.htmlnx_server.htmlnx_server_ssh.htmlobex.htmloddjob.htmloddjob_mkhomedir.htmlopenct.htmlopendnssec.htmlopenhpid.htmlopenshift.htmlopenshift_app.htmlopenshift_cgroup_read.htmlopenshift_cron.htmlopenshift_initrc.htmlopenshift_net_read.htmlopenshift_script.htmlopensm.htmlopenvpn.htmlopenvpn_unconfined_script.htmlopenvswitch.htmlopenwsman.htmloracleasm.htmlosad.htmlpads.htmlpam_console.htmlpam_timestamp.htmlpassenger.htmlpasswd.htmlpcp_pmcd.htmlpcp_pmie.htmlpcp_pmlogger.htmlpcp_pmmgr.htmlpcp_pmproxy.htmlpcp_pmwebd.htmlpcscd.htmlpegasus.htmlpegasus_openlmi_account.htmlpegasus_openlmi_admin.htmlpegasus_openlmi_logicalfile.htmlpegasus_openlmi_services.htmlpegasus_openlmi_storage.htmlpegasus_openlmi_system.htmlpegasus_openlmi_unconfined.htmlpesign.htmlphc2sys.htmlping.htmlpingd.htmlpiranha_fos.htmlpiranha_lvs.htmlpiranha_pulse.htmlpiranha_web.htmlpkcs_slotd.htmlpki_ra.htmlpki_tomcat.htmlpki_tomcat_script.htmlpki_tps.htmlplymouth.htmlplymouthd.htmlpodsleuth.htmlpolicykit.htmlpolicykit_auth.htmlpolicykit_grant.htmlpolicykit_resolve.htmlpolipo.htmlpolipo_session.htmlportmap.htmlportmap_helper.htmlportreserve.htmlpostfix_bounce.htmlpostfix_cleanup.htmlpostfix_local.htmlpostfix_map.htmlpostfix_master.htmlpostfix_pickup.htmlpostfix_pipe.htmlpostfix_postdrop.htmlpostfix_postqueue.htmlpostfix_qmgr.htmlpostfix_showq.htmlpostfix_smtp.htmlpostfix_smtpd.htmlpostfix_virtual.htmlpostgresql.htmlpostgrey.htmlpppd.htmlpptp.htmlprelink.htmlprelink_cron_system.htmlprelude.htmlprelude_audisp.htmlprelude_correlator.htmlprelude_lml.htmlpreupgrade.htmlprewikka_script.htmlprivoxy.htmlprocmail.htmlprosody.htmlpsad.htmlptal.htmlptchown.htmlptp4l.htmlpublicfile.htmlpulseaudio.htmlpuppetagent.htmlpuppetca.htmlpuppetmaster.htmlpwauth.htmlpyicqt.htmlqdiskd.htmlqemu_dm.htmlqmail_clean.htmlqmail_inject.htmlqmail_local.htmlqmail_lspawn.htmlqmail_queue.htmlqmail_remote.htmlqmail_rspawn.htmlqmail_send.htmlqmail_smtpd.htmlqmail_splogger.htmlqmail_start.htmlqmail_tcp_env.htmlqpidd.htmlquota.htmlquota_nld.htmlrabbitmq.htmlracoon.htmlradiusd.htmlradvd.htmlrasdaemon.htmlrdisc.htmlreadahead.htmlrealmd.htmlrealmd_consolehelper.htmlredis.htmlregex_milter.htmlremote_login.htmlrestorecond.htmlrhev_agentd.htmlrhev_agentd_consolehelper.htmlrhgb.htmlrhnsd.htmlrhsmcertd.htmlricci.htmlricci_modcluster.htmlricci_modclusterd.htmlricci_modlog.htmlricci_modrpm.htmlricci_modservice.htmlricci_modstorage.htmlrlogind.htmlrngd.htmlroundup.htmlrpcbind.htmlrpcd.htmlrpm.htmlrpm_script.htmlrshd.htmlrssh.htmlrssh_chroot_helper.htmlrsync.htmlrtas_errd.htmlrtkit_daemon.htmlrun_init.htmlrwho.htmlsamba_net.htmlsamba_unconfined_net.htmlsamba_unconfined_script.htmlsambagui.htmlsandbox.htmlsandbox_min.htmlsandbox_min_client.htmlsandbox_net.htmlsandbox_net_client.htmlsandbox_web.htmlsandbox_web_client.htmlsandbox_x.htmlsandbox_x_client.htmlsandbox_xserver.htmlsanlk_resetd.htmlsanlock.htmlsaslauthd.htmlsbd.htmlsblim_gatherd.htmlsblim_reposd.htmlsblim_sfcbd.htmlsecadm.htmlsecadm_screen.htmlsecadm_su.htmlsecadm_sudo.htmlsectoolm.htmlselinux_munin_plugin.htmlsemanage.htmlsendmail.htmlsensord.htmlsepgsql_ranged_proc.htmlsepgsql_trusted_proc.htmlservices_munin_plugin.htmlsetfiles.htmlsetfiles_mac.htmlsetkey.htmlsetrans.htmlsetroubleshoot_fixit.htmlsetroubleshootd.htmlsetsebool.htmlsftpd.htmlsge_execd.htmlsge_job.htmlsge_job_ssh.htmlsge_shepherd.htmlshorewall.htmlshowmount.htmlslapd.htmlslpd.htmlsmbcontrol.htmlsmbd.htmlsmbmount.htmlsmokeping.htmlsmokeping_cgi_script.htmlsmoltclient.htmlsmsd.htmlsnapperd.htmlsnmpd.htmlsnort.htmlsosreport.htmlsoundd.htmlspamass_milter.htmlspamc.htmlspamd.htmlspamd_update.htmlspc.htmlspeech-dispatcher.htmlsquid.htmlsquid_cron.htmlsquid_script.htmlsrvsvcd.htmlssh.htmlssh_keygen.htmlssh_keysign.htmlsshd.htmlsshd_keygen.htmlsshd_net.htmlsshd_sandbox.htmlsssd.htmlsssd_selinux_manager.htmlstaff.htmlstaff_consolehelper.htmlstaff_dbusd.htmlstaff_gkeyringd.htmlstaff_screen.htmlstaff_seunshare.htmlstaff_ssh_agent.htmlstaff_sudo.htmlstaff_wine.htmlstapserver.htmlstunnel.htmlstyle.csssulogin.htmlsvc_multilog.htmlsvc_run.htmlsvc_start.htmlsvirt.htmlsvirt_kvm_net.htmlsvirt_qemu_net.htmlsvirt_socket.htmlsvirt_tcg.htmlsvnserve.htmlswat.htmlswift.htmlsysadm.htmlsysadm_dbusd.htmlsysadm_passwd.htmlsysadm_screen.htmlsysadm_seunshare.htmlsysadm_ssh_agent.htmlsysadm_su.htmlsysadm_sudo.htmlsyslogd.htmlsysstat.htmlsystem_cronjob.htmlsystem_dbusd.htmlsystem_mail.htmlsystem_munin_plugin.htmlsystemd_bootchart.htmlsystemd_hostnamed.htmlsystemd_hwdb.htmlsystemd_initctl.htmlsystemd_localed.htmlsystemd_logger.htmlsystemd_logind.htmlsystemd_machined.htmlsystemd_networkd.htmlsystemd_notify.htmlsystemd_passwd_agent.htmlsystemd_resolved.htmlsystemd_sysctl.htmlsystemd_timedated.htmlsystemd_tmpfiles.htmltargetd.htmltcpd.htmltcsd.htmltelepathy_gabble.htmltelepathy_idle.htmltelepathy_logger.htmltelepathy_mission_control.htmltelepathy_msn.htmltelepathy_salut.htmltelepathy_sofiasip.htmltelepathy_stream_engine.htmltelepathy_sunshine.htmltelnetd.htmltftpd.htmltgtd.htmlthin.htmlthin_aeolus_configserver.htmlthumb.htmltimemaster.htmltmpreaper.htmltomcat.htmltor.htmltraceroute.htmltuned.htmltvtime.htmludev.htmlulogd.htmluml.htmluml_switch.htmlunconfined.htmlunconfined_cronjob.htmlunconfined_dbusd.htmlunconfined_mount.htmlunconfined_munin_plugin.htmlunconfined_sendmail.htmlunconfined_service.htmlupdate_modules.htmlupdfstab.htmlupdpwd.htmlusbmodules.htmlusbmuxd.htmluser.htmluser_dbusd.htmluser_gkeyringd.htmluser_mail.htmluser_screen.htmluser_seunshare.htmluser_ssh_agent.htmluser_wine.htmluseradd.htmlusernetctl.htmlutempter.htmluucpd.htmluuidd.htmluux.htmlvarnishd.htmlvarnishlog.htmlvdagent.htmlvhostmd.htmlvirsh.htmlvirsh_ssh.htmlvirt_bridgehelper.htmlvirt_qemu_ga.htmlvirt_qemu_ga_unconfined.htmlvirt_qmf.htmlvirtd.htmlvirtd_lxc.htmlvirtlogd.htmlvlock.htmlvmtools.htmlvmtools_helper.htmlvmware.htmlvmware_host.htmlvnstat.htmlvnstatd.htmlvpnc.htmlw3c_validator_script.htmlwatchdog.htmlwatchdog_unconfined.htmlwdmd.htmlwebadm.htmlwebalizer.htmlwebalizer_script.htmlwinbind.htmlwinbind_helper.htmlwine.htmlwireshark.htmlwpa_cli.htmlxauth.htmlxdm.htmlxdm_unconfined.htmlxenconsoled.htmlxend.htmlxenstored.htmlxguest.htmlxguest_dbusd.htmlxguest_gkeyringd.htmlxserver.htmlypbind.htmlyppasswdd.htmlypserv.htmlypxfr.htmlzabbix.htmlzabbix_agent.htmlzabbix_script.htmlzarafa_deliver.htmlzarafa_gateway.htmlzarafa_ical.htmlzarafa_indexer.htmlzarafa_monitor.htmlzarafa_server.htmlzarafa_spooler.htmlzebra.htmlzoneminder.htmlzoneminder_script.htmlzos_remote.htmlincludeMakefileadminadmin.xmlbootloader.ifconsoletype.ifdmesg.ifnetutils.ifsu.ifsudo.ifusermanage.ifappsapps.xmlseunshare.ifbuild.confcontribcontrib.xmlabrt.ifaccountsd.ifacct.ifada.ifafs.ifaiccu.ifaide.ifaisexec.ifajaxterm.ifalsa.ifamanda.ifamavis.ifamtu.ifanaconda.ifantivirus.ifapache.ifapcupsd.ifapm.ifapt.ifarpwatch.ifasterisk.ifauthbind.ifauthconfig.ifautomount.ifavahi.ifawstats.ifbackup.ifbacula.ifbcfg2.ifbind.ifbird.ifbitlbee.ifblkmapd.ifblueman.ifbluetooth.ifboinc.ifbrctl.ifbrltty.ifbugzilla.ifbumblebee.ifcachefilesd.ifcalamaris.ifcallweaver.ifcanna.ifccs.ifcdrecord.ifcertmaster.ifcertmonger.ifcertwatch.ifcfengine.ifcgdcbxd.ifcgroup.ifchrome.ifchronyd.ifcinder.ifcipe.ifclamav.ifclockspeed.ifclogd.ifcloudform.ifcmirrord.ifcobbler.ifcockpit.ifcollectd.ifcolord.ifcomsat.ifcondor.ifconman.ifconsolekit.ifcontainer.ifcorosync.ifcouchdb.ifcourier.ifcpucontrol.ifcpufreqselector.ifcpuplug.ifcron.ifctdb.ifcups.ifcvs.ifcyphesis.ifcyrus.ifdaemontools.ifdante.ifdbadm.ifdbskk.ifdbus.ifdcc.ifddclient.ifddcprobe.ifdenyhosts.ifdevicekit.ifdhcp.ifdictd.ifdirmngr.ifdirsrv-admin.ifdirsrv.ifdistcc.ifdjbdns.ifdkim.ifdmidecode.ifdnsmasq.ifdnssec.ifdnssectrigger.ifdovecot.ifdpkg.ifdrbd.ifdspam.ifentropyd.ifetcd.ifevolution.ifexim.iffail2ban.iffcoe.iffetchmail.iffinger.iffirewalld.iffirewallgui.iffirstboot.iffprintd.iffreeipmi.iffreqset.ifftp.ifgames.ifganesha.ifgatekeeper.ifgdomap.ifgear.ifgeoclue.ifgift.ifgit.ifgitosis.ifglance.ifglusterd.ifgnome.ifgnomeclock.ifgpg.ifgpm.ifgpsd.ifgssproxy.ifguest.ifhadoop.ifhal.ifhddtemp.ifhostapd.ifhowl.ifhsqldb.ifhwloc.ifhypervkvp.ifi18n_input.ificecast.ififplugd.ifimaze.ifinetd.ifinn.ifiodine.ifiotop.ifipa.ifipmievd.ifirc.ifircd.ifirqbalance.ifiscsi.ifisns.ifjabber.ifjava.ifjetty.ifjockey.ifjournalctl.ifkde.ifkdump.ifkdumpgui.ifkeepalived.ifkerberos.ifkerneloops.ifkeyboardd.ifkeystone.ifkismet.ifkmscon.ifksmtuned.ifktalk.ifkudzu.ifl2tp.ifldap.iflightsquid.iflikewise.iflinuxptp.iflircd.iflivecd.iflldpad.ifloadkeys.iflockdev.iflogrotate.iflogwatch.iflpd.iflsm.iflttng-tools.ifmailman.ifmailscanner.ifman2html.ifmandb.ifmcelog.ifmcollective.ifmediawiki.ifmemcached.ifmilter.ifminidlna.ifminissdpd.ifmip6d.ifmirrormanager.ifmock.ifmodemmanager.ifmojomojo.ifmon_statd.ifmongodb.ifmono.ifmonop.ifmotion.ifmozilla.ifmpd.ifmplayer.ifmrtg.ifmta.ifmunin.ifmysql.ifmythtv.ifnaemon.ifnagios.ifnamespace.ifncftool.ifnessus.ifnetworkmanager.ifninfod.ifnis.ifnova.ifnscd.ifnsd.ifnslcd.ifnsplugin.ifntop.ifntp.ifnumad.ifnut.ifnx.ifoav.ifobex.ifoddjob.ifoident.ifopenca.ifopenct.ifopendnssec.ifopenhpi.ifopenhpid.ifopenshift-origin.ifopenshift.ifopensm.ifopenvpn.ifopenvswitch.ifopenwsman.iforacleasm.ifosad.ifpacemaker.ifpads.ifpassenger.ifpcmcia.ifpcp.ifpcscd.ifpegasus.ifperdition.ifpesign.ifpingd.ifpiranha.ifpkcs.ifpki.ifplymouthd.ifpodsleuth.ifpolicykit.ifpolipo.ifportage.ifportmap.ifportreserve.ifportslave.ifpostfix.ifpostfixpolicyd.ifpostgrey.ifppp.ifprelink.ifprelude.ifprivoxy.ifprocmail.ifprosody.ifpsad.ifptchown.ifpublicfile.ifpulseaudio.ifpuppet.ifpwauth.ifpxe.ifpyzor.ifqemu.ifqmail.ifqpid.ifquantum.ifquota.ifrabbitmq.ifradius.ifradvd.ifraid.ifrasdaemon.ifrazor.ifrdisc.ifreadahead.ifrealmd.ifredis.ifremotelogin.ifresmgr.ifrgmanager.ifrhcs.ifrhev.ifrhgb.ifrhnsd.ifrhsmcertd.ifricci.ifrkhunter.ifrlogin.ifrngd.ifrolekit.ifroundup.ifrpc.ifrpcbind.ifrpm.ifrshd.ifrssh.ifrsync.ifrtas.ifrtkit.ifrwho.ifsamba.ifsambagui.ifsamhain.ifsandbox.ifsandboxX.ifsanlock.ifsasl.ifsbd.ifsblim.ifscreen.ifsectoolm.ifsendmail.ifsensord.ifsetroubleshoot.ifsge.ifshorewall.ifshutdown.ifslocate.ifslpd.ifslrnpull.ifsmartmon.ifsmokeping.ifsmoltclient.ifsmsd.ifsmstools.ifsnapper.ifsnmp.ifsnort.ifsosreport.ifsoundserver.ifspamassassin.ifspeech-dispatcher.ifspeedtouch.ifsquid.ifsssd.ifstapserver.ifstunnel.ifsvnserve.ifswift.ifswift_alias.ifsxid.ifsysstat.iftargetd.iftcpd.iftcsd.iftelepathy.iftelnet.iftftp.iftgtd.ifthin.ifthumb.ifthunderbird.iftimidity.iftmpreaper.iftomcat.iftor.iftransproxy.iftripwire.iftuned.iftvtime.iftzdata.ifucspitcp.ifulogd.ifuml.ifupdfstab.ifuptime.ifusbmodules.ifusbmuxd.ifuserhelper.ifusernetctl.ifuucp.ifuuidd.ifuwimap.ifvarnishd.ifvbetool.ifvdagent.ifvhostmd.ifvirt.ifvlock.ifvmtools.ifvmware.ifvnstatd.ifvpn.ifw3c.ifwatchdog.ifwdmd.ifwebadm.ifwebalizer.ifwine.ifwireshark.ifwm.ifxen.ifxfs.ifxguest.ifxprint.ifxscreensaver.ifyam.ifzabbix.ifzarafa.ifzebra.ifzoneminder.ifzosremote.ifglobal_booleans.xmlglobal_tunables.xmlkernelkernel.xmlcorecommands.ifcorenetwork.ifdevices.ifdomain.iffiles.iffilesystem.ifkernel.ifmcs.ifmls.ifselinux.ifstorage.ifterminal.ifubac.ifunlabelednet.ifrolesroles.xmlauditadm.iflogadm.ifsecadm.ifstaff.ifsysadm.ifsysadm_secadm.ifunconfineduser.ifunprivuser.ifservicesservices.xmlpostgresql.ifssh.ifxserver.ifsupportall_perms.sptdivert.m4file_patterns.sptipc_patterns.sptloadable_module.sptmisc_macros.sptmisc_patterns.sptmls_mcs_macros.sptobj_perm_sets.sptpolicy.dtdsegenxml.pysegenxml.pycsegenxml.pyoundivert.m4systemsystem.xmlapplication.ifauthlogin.ifclock.iffstools.ifgetty.ifhostname.ifhotplug.ifinit.ifipsec.ifiptables.iflibraries.iflocallogin.iflogging.iflvm.ifmiscfiles.ifmodutils.ifmount.ifnetlabel.ifselinuxutil.ifsetrans.ifsysnetwork.ifsystemd.ifudev.ifunconfined.ifuserdomain.ifpolicy.dtdpolicy.xmlinterface_info/usr/share/selinux//usr/share/selinux/devel//usr/share/selinux/devel/html//usr/share/selinux/devel/include//usr/share/selinux/devel/include/admin//usr/share/selinux/devel/include/apps//usr/share/selinux/devel/include/contrib//usr/share/selinux/devel/include/kernel//usr/share/selinux/devel/include/roles//usr/share/selinux/devel/include/services//usr/share/selinux/devel/include/support//usr/share/selinux/devel/include/system//var/lib/sepolgen/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches -m32 -march=x86-64 -mtune=generic -mfpmath=sse -fasynchronous-unwind-tablescpioxz2noarch-redhat-linux-gnu  directoryASCII textSE Linux policy interface sourceSE Linux policy module sourceHTML document, ASCII textmakefile script, ASCII textC++ source, ASCII textASCII text, with very long linesASCII text, with no line terminatorsPython script, ASCII text executablepython 2.7 byte-compiledXML 1.0 document, ASCII textcannot open (No such file or directory)?p7zXZ !#,] b2u jӫ`(5Z?`,5,'*FyVɞR2/jMjD JC%"UiDG.a}줦 q#j(a_C-|vG]&Z\Wǡl _wrͨkB< 7 6a[Z!Gn/aʗ-N|| 8 T9ZL?(5-/Ӓv`'!=[*ţ13Q~쁕A0LpJ5XۑTw)ʫ$W_PH1X s# p2ssAM٦æWC.X^nĞi9vT5ark)v6AjF0vؙkȍL6x:3N> 7P58u4*mCd/Q6yԁcG\j(">Ek;vZ$_[Ǣg9Rr/˘}<$VeF)^`i"[&|v @Wn\(\,ErV⩛8zL-?`N+rR!j//kPk܄.XL1$BڲW?.Pwj"F /" 4M9Yf8&:lkE7YЪ0mJڑBwVo.q\ȗߡ/pxAEQ0Q-jo~@OO7k|;ht pRMk2cOabjB',FwP 6$B5-O|EFHuRڅ T}8MuK2L٬VFk<̭+r}A:jD"6'+ ILpr:D/qaeu#vsXΘ\2yn>2L~rմ"ɝ4^55#'^/:iɡP~]|]Fd Zn+8*s#.Cpr7(F;B"pP$&NPJ4`~0$NW(<ȶ$\.e3KcoH(2c\4`kngV{Fd҉F]i1$Q4l9^t**.oھjXJzr̘`/BaC|Nogh'=lE(bvA+(ֈEwg_:0/&ʉ9v:~RU!! ]rsz Kz5^]@~)d!>bf-D4n)F׀+Zq&<1ceVw>S2*(N,g~``@h8lRE؅*p;VSJߙ9EXT2!2I150E߈1Jfٿ:ΚC4֍c<ь d.4S-K,& $xaJ:l]ܐKF IN8 8(ȸ5(eXgYB㤜: nf7D/ӚtzJҮ,([ 9 d`To0]VOkX|QW>or$ ;qy̢!4rc ކ@8u` L[&AT/x ^l ~jePY#[B{ӟl&%! y>f-J/N'qXݸHǑ3iO}6cb(ۦ~ǎƗlW`U4/i%-soe@qFȑY,]ea[ Y=B>aH:ff?Y@^X/m5IuPa36,Qq0hG3ە 7nD#Rx5Fcv'櫧k+o@X*ʘVPUR,05R[}Rz5=S]^#MΓ:3 <4(VX:]j %4w&44qҙ췇iI^zXA95yȷBgm>`*kW^|a:tZЦ`}ǙTI;fu0 u4L:wYenR-Mπ e":I5`Y5q%9YiC^@7`l?f,@u񫿏ݡh&D0/0G]=0]rng BK O:9D`qZwM:PK"ULDu2޻~UJ?/u `-*V=_5jɕ(~h7O8-(h >mnrU7y$)y,C^Šx MR$,T`|m9ּIzm.g}T\'-Wv8doIe'aS /v}c6 1ྖ\691҃dhB0ރrStI>쾦^'P}?UDu`sv+?ceҩWd%zŹύ *tߙWI_匱D26wxRHM%tq1W}"_}77 Ó,P];i:#Rq81Jb!R.uxUkrq>ػuȍLʼnĭ)MZBh[dhi[gUNg)fTRhCGOϓk)* 6uKx\Ơ1#7ŅkvܿqЃ%-cG\&uİ2Ebn *>!k$#j1?sTy,ֽ<=!jR" -# ,O_z_!͘'"lsZ4$%Yf\+5H6^?~`ϔH5P7Zᵮ`_S;o B(+3IVYw+Jd?YHe b(W?$eb&B<-SCVjmD6ݎ6ߵ ?.4tbon#x=NI6~`ي|'ugҘCk2$i?"'?rμn`dނ=xrU]3ij3FkT<~ 577ǹ.m_w uNe&TzUs+,`ɰ2jޠۧPQsU?'P2BZWBpvK+zbMk!DjJdr?f2M4?W/Z<1ACu?2I& -9_S5 gc }츜Xj^RfӦ!OfATL8f@u33]Do†s= I I< COɎo;ci7Fuԉ$gkr57o/.kh 9ɦ 4 PA#"}vJkZ|/ȡY&C#4*^(9E jkFA⓵"\xO41l yv~ ;pUu(L fiҙRDiË-O\ZAvQСdSr(HϷal$|WVCLQkjm !di5y$ Vv˹ 1M RƂ|p0pMwx׮yntBз{zUJ>c܇#b[/Шi[eJӢǻ}].cȽdJMYz!X_j"]gtʸ}%MPnWӨoWa$J+7'#q¦Q[;%y. W/E,S-am+Uej$<JeVL8z8(q7 X߬7+f`HwǦdP%fFKD8otb 'P2q!b֮D 0I;F K(^͓@9Ht-2 eÃDY$/Zg2⿵B6\SB=UxkqqOZ9'W7_c̈*ye[m 2*QaH!R $[HJ  $9KDe-'hr?(+j:oKi|O[1Z Gv_ѮhIОuT#R@\;N2Ldp_8-uǦڶB-Zm'#U9Wdz q0:Uzsl 윏?J5 E`2ATUI62v ȵBGAf./dݙ gH$+*x:^LNߞ'8Y֩@JrwZ7!yxx@^FaF@1vV6e4nf*I6B2e>zG+ycmOKXT .v\Z+4>` 9^^*߮$rTQ.jZNʏ+h𒅨 6eQSxn;N9WѨ ]phnJMyyM;m z箺kp}4PѬSx%-!@tzU!M'XhJ%-';'!i֦YFVb|)'B"z#seMo{U^-;DaۖlBa;^ryIЌ]W<;(\^eE$5b#g6JvrqyYbbmҧ|"0u.eV0TuEK"s8%so{r|%$H_&?P&dN!pNR,fC {@j\j HQ4%0yl 7SH^ֻK-xUjkѷ0%CPr]x>]sr_ގ6`Hڿӎ䵲HdNlۊ9vwOa -D~DlB E" _ܪi #‡+^1Onu0$\`g,p3f"SfTD`O:qqX [x݀d\'""[W-V6z u[o0SX :ڛEGV7m}H!9jQ[emŸ&Gt(ԧ\#Ȍn eƻrrc33`ːA8`,]mݠF%r^с<}{huГBy:J O:%>I|/hyt; " @ i!W0[fi̿+nBrk*$f ēUnz7JF^-\=L_H*&xŽ cS5Cf ;J%B!v>ID=V.G_f <沄~vF.=\7:1U7ծ4fzX GN!cLn' C-D:"Xpo$I d¾b|J [/=9UfיQKg"o$kR* Fjڹ1q$\[ coga Љe, RTMJh9|u;R-kO%4-1c5֛fOkMKlSfM[fý?sKeBl,w.([P`CMVQ ߄_W,jTO t\7܆z|Qg30]ac'rE-i2쬱L(PKX{Y|f.:luG>KaB!Q^GMc F 3YAT2?ۂ)oQ؈L;{؝P+z"gnbf3zT+$3h{(\T9*ƍp%g#V/#|*E)jP F:L. !ݹ+揹}:&}r:ÙR44MDalך8ny{A*^FSGB*k̡?BeBZ Uċ{_\}QAǚrOgu2doK( yV뺵HPg+`OiJ TeLpS=RCI-j@>xpd̥Rja5I;iR<^ S@y3E~[j  bџOFP=l ~Jm1{(>4b4r'7xɛVH.]0 ;3wBE3;gLv&!^n56~Wy͊ƛ(siTbBj WtcKF.i**Zro=Nӻ_ 6i.+jGLQ^‚SY[#Fubf$+ V) PIL3:eK4?G>9quj̱I4xBJ=EyyWl[.ܩ 6KSQeAI+`\zH 9`H(&Q?jVyYSK*!;ɥQ[%"aC EO[-*? DXF,zTl*@P4J7M8}U*0>Nygu)FVޚpN?|Sv`/WBN~i1v){Vl/Wܳ\z4TJhL̒$xDS[~[OTisr@Jv ,n6+Aph"]83rR%ǁRUbؕ'8Ҩ)'< \H/)C~@9EL{e;M,h/L tNcB}ך~崐i\Pi۲SPp .":KX~ 3zƽA@, ;ّb4jB£cE1 P+ ߮Ǽ- GɗG$tyGGÕ[!€.4"ˌ72JB_*8 qM2ˬ?X%0< qRk9zK3(^*-5\mi5vL[c\b^bXnS@;`AyRhá2 Nd,סm5m(#mLL([Spr(pٛѱ?K'8>lzx cyb݅GA* pU]*t]4P jBL8ѳe%eHfkGtߟILO(n X9)!OZ[~\_>gǞ(3xX)-%TqƶS7ScقafA֨,pU%EWc}@Su^}6*xw;f`oH=a/w(Gi9ZVv]),>= }{- :K:FF'3:|o<2ưgcٙ=֒noMlύ mԖZO1~a"6\EI\?%^ Re+ťuYG2`܋Cv+~{ѳ.Pll;w3=CH|z(Ïi?Rh&6#$ѰVW$XYP3m<4Ct@' )TuE<f*2Fjۖ`J 9."j ! ʬţd)+L@Up nG̛'8[ 6lc*Is2t,+V&⺢"dW!B *Q FѬ`(B~q>-!L{({d#?Чeİۖv:[АO; s7iE #v-S^@ M(\h JE>ہ*Kqi!;1U{-  :f}n$<,ߊ3|@o=F@M;%2w`'/4[ U'ӣ ic: C87>!c{ŕ|'HLml̒\͌Ix a(]N(XQ̏P2f_$?}tY0Ygy!_ТP3Dp cLݗKg~)N IZtzXz`5YY&W@A&C_btO,jC[0!e95%I:Q{iTx`{WGۇz(@ $d})S-Em/&1"2K"O$+xd$8۹ʡnJ[Iu3Py-'sAQJ-S,^XsqH(lr̎^r`Wb/=^֤Y5HMJ(%MYk|J4Ix)$\?.];ٿbo}m.GN56{R0N2fkL ΰL )i@tRٕFWBDL!ataw5"P|cDrE}ME 4kU{6&Do 0ѐ6vzNeaoWRT#A>&RDQRvo'Jt+u7  uc OG5V9`?nQel]2Q}F 2[q " so}`-=ֵű5.}=TgHS O5^=lQ/(+7ihAψť2XfWF D5SKj;ȟwKE5_`F>z &!#ӖN+1D%\n9M5o COsű0q$zuJ(#XJ}l !zܕHCtڴ *4FZ1,a3S'5B,E$9`g6fD&aǧp\ACRg3OpMA#W|A"Z?H>P`1H[`pKH(K+)bt$ƈ6YK[·xhڴcj!7oH1id뷬6GBv-lP`U8J4&Bf$0rZ=vj9lD]nE=lTeՆHm )O=q BD;ACʝ,!b BKcI'.hk Rn}f)8@_SJ (ҝv{8]qm9-$M Y-G9ig=PT9dB,_7+O X l 5qzWC'|h4Hh}g_FާQ v hKT6ﭹZB)6`¤Dx7E[/y/}<Ҳ/"}QnE Z̲WCJ0v~ȝxRzؗ*$M_::g`E潧y* ( )$:Htoe߮a-؜t)D_^}&}=y`ԏ7 cR蝩< \=7e3R*aU{C]ݚYc;%ja ߫(M+p'f;,VbY##~;iW2^{c-u?d$q_jRɼ0S ` P)޼qB$s5{5f&[gCށB^mp.B){p;Cm?j8=wUAΦռ{ Lw6{ݺ/$ l0@7ᮝ~$lc3aډp|цwQ%_@F |ʆZnV,q>]2kDivvM*\\.v] vHeߍАDA/;{|Oߣՠ&(h,-qKD5|[ЍF.N ]>;/@l @>HIPp-LP8,˽>'jw2^5 -|{CNFhE  ʲCS?l-*a6Lp~]Tl 9b.CZhu] n4x/sD8/zZ1Ĥƒ} b|߭Z3邌]Y!o7Rٶ z7$׼N8cͽ/(Э= oqdM@ EtWup) 2FQr׳܉-͒t"s+T q0L 7FXDsK:p2'4 Gri 8;>ҥI()~v-u.1 D}v#f坟gp0Ծ Y.baToIfttـEl- G@[* qR ,Llњ-TI>-wec,3'J4gHvQwل1b y[LRċ\.H&*T$xtrs{͒6sB%47j6M ۵92Ʊnc>wH1Nɖ4}m9 D lyqTx}A[JI4x[J*>elՖ.*B}YHnäU?$c*NO &u&k-iwE"AQ/iˑUs8bb"ֆ/i6ͦ#`t\YfSb"wa1Csl#FZgL;q7Ti6pЮތi7x$m;qJJ*|R:;Bd_8&j-Eװ2!Eo#.ۥA&V%`*=UF5d2?;߮as ЎoU dE F㿘a<"}ӢEqC [$[$ Fk˗w??2֓L-i-#68(-|W;v\u,Ac( ;B8 +[yC~a=Yl؂hQk"b>̐82Vy6^5P3_!'5FhXVj@y9Ө;!)q2Rě=r f]$h/j ~J F{"k Fvh )Ó|>AzV=&2#pnksNm c|1E Q7= vryd>9j:` ;~΀Alsu7󊖾#fQmʟE"tADG&`{!?wu dPzܫϬ=AiE49eoá1Nw$|"_ӏUNSrОvJ.S {s=3> /xuh{4@:pq$\2"/"hUqwD>֌nW@m2!MdWh%j|(0 H,/'1 Yr(5D ˳8vm>*cQjNfn ʕKN28;׊Ƿ{ܪmҪ_!!uE)3bW;Ӥ?˘,O{'Vf[7\[~-y@KKjzPnabs2C=/yTxl/o脟,k|)a({aܯċA;;t*?y!|Ū:vK8iݜ6Kugo{\cÙ̈I/n`pZOG0H0l@H~do03ұ:МzG?M : |<}#`;ғv[# `"F@ +Zӟ}i:IM "U%K=dB @4_z2QpGPU*XbIW|4~DP㯖r: iB78W .)MoUi_ \IC"Pq(`1O^>ƮO~US0!{^P tJ:"5TDc"лAtxf1)qHѨ$Bv2 HRvO[]_{Ըڻ&B+\P%{ @e)e f V=h#gH~>.Kmmdf݋T>ɥǑܢyF|䡭F_d1 zTxKˆt+=O?V{86kgőZ2G`C S ,TpԫVԖ_ۄxe"\1b?GOΔS(uyQa ] XV{qd Rh#[{ZsrCh+[xx-SZWB":I儜 D tiJv,H<_%<0+8?..,VK.$m\/F6IWqo0v}pqVnjlf )!!D37=ҡ$`5B##u;hLr?&{77Ԋp<@[(X3O3Yӳƅ[ml1~2$g]7i t0JUb4D5b bBjY3;AֳH>ƧX+KY@ PbCfn4,{>VjǪ8K; +3w/@GմY^G-i ů|p~X+ B$ mr,h^xIfR(_F6 n? I^ GN%u n1-pj8HW ] eһQ)j3a%F}`~^fZJ8q[_[rT`cwᴰbyE`| /ZQ:pfP-h Mqalgw U6m"ajiqWE|a!h]E>i-G@ fo엩Bfz4[4 GPBu5i>X]]<>Gs sZCm, =5 6k 5`*^@n|EJ0䚡Y#>.YH!~ZUt$]DM>I:${]Z<󱁄9dn|؛Y^jY4{0A:u8ʻbr .dC|a˾̤s,MyHqonDWB5p.AǞBahJF{eQ鞡ObܚB< I1rKjR9jP +_,#BLH6@;eGXnl@?OHQ 3-Pii/fDQIƈLDKcV#uJ%]cUO]= 39ɮp4򸸼5^|dM@\vD@mwdf̊[\:ukʀUp*Flv Mp|Mlmu?k 7 31.՟d~h7.Q#؏ߺfW._,hi~X̸c!%8+ s~/@HZݣh2RNc>)^S{XH3n2jzb^@j# QNO rGX>6pd)@Mlnv=W"Ep+0>#ז̧@ꬅ=5zzỔYR8',$ zQrϽ%UxQ@q7о Xy牔vr$>#q{!Q'klޝf[a&f: ;YHpLk%VZ!e4F}Jq^)  Kc9Wɘ_FJk1FdvՎᲗ/8$+`ԭ>3V}Io罛*A$W`NwD@,"?.nQ!ۦt iȯYVN/462W֎aR.݁ܕj,tI7!$_II֭7%DPD.) OV,ɳQnspYN*h ;KVReA9w*`LJJxLcy8azq@^ओR+jC`ee| -A:f-9: EB4=6Áx?sͦO *}eYx2f?DOPz1u eenyu oII|5ۍt.H>eFU(kdjeI9XV&bV&dNXNHuwK9H^;vFsc.rO?OӚLIϔE彸ZR Lrk<| ! @)yLnEF`G L@sƩo0 MRwjh#zA\jDON#TyX5< ܛW:hI{̙ڶp݃۩ρ|LC#,muZaL¨jXu}nJRUKn}Jᕼ*ؘsȝ))*GٔubW4s< `p@nK/)> SW[)9:OHs3 m,Xl~O'hC#ftNnCވ @(Ft4{+"B# =7?gxU/{̹.Wu+B1PD u=g.θ=c, ʉc#3ҬZXg`/]Q`D.&]*AEAC׃-Σ ǿ̓a}# $tH $TA\I^lf#§!Hg #;|X1^(aR:eqsSouFveqp>Ι] }CH{ XjK]box*!HmhqxȾ <є$S݉X!7fLmlm|*W;F񀲟8Lq1޷!\SR<owvB MA:cSj˚ U }ȶjGERNuV"%VdÑ7d(>H;>iP)ҲiY Eb[6&Br*v`$szAgxq*nz5o 圊7 P ˫ =~@aZ/crE2`jD\DD<\WnKfv6ZzQBpv7XލBX@f@tf[1 Ṉnouz@D9Q(- ujg5Ae1zz#z07"sFbsdUiXC,1@3OMs|jmg0zP!q4=q>OT`F  ke R5.0E {ᜐ "l1)Um3=}7ޜ2Unx?Oe9rX!212-WUFs^- 5C0CD4q),'m"%KiB_dD)!EQN:l6V*7e "󔝔ozS.yGgŋxliy1ɑR  m%21 5`uF4N7o䉘TdRO~\.tB~/ izn83n p'({Jx'lH; Ӈ68C|r Qf:˱JHr`NfX&hqZ٦C?#0tnSRXoOq.`1⼅ɊA|wun3E sQm%zZOzjĹhcħvV7`@F.[ jƝF 1?rr`VTgEG$gh4gqWH#jndŮտٞ% k](UŊHzbF)\(X?S ;,4qҼ^I3R3UEˡmTNPO|k@߱FWIPLFSFQSd0wC<\-ۂerv51뙫  0:ϩS()wUhǓ6*{73АO,3Fe@ɬJ\?B0U=\QG˅@R]$MSFKs\&h*:GHGfzTxݞOGHj)Prɠɶ?m\tsܭ~< la]cSh⃓N:UIrɘ~*WNnZqE Ƕ [|]=Jj6ᳯMIMJ5.b>Om&5W!܊[2;M|F,ijpb=&x08}tk" `$5CH $~C/rʩB! )6{!K"8< 8l4phNFY%$\E(BbjgRd9zgh+WBmTd!lVWnɭ9}@Z%!quY{6zړyCȨPpr4~,v C \gR g~q$!^D{J_m{7ytUiCm؝&JB?v:zJ+EZve]@pv,^nm)ttq'ZfS找Z,,Ae# ɁJnMIl _U0HA>lՏ\G~eڏ-{#3!tf{fj);xnkvwt! :M:PBQA4$Jl,5Np, zSWKz$?ƉI;E5nB$R (čqؙ`h(9T̆+ҔZc I)*n[b!!gc/qR O [?M &2yKLDhpkж8R8bGacЉ"Lo˺۹ ١qy684B5wT'g[uY; Y`  @38E})L,1@_gږu J*LW0<[sui MGN,sA8pMc-+Q;+*#.yz &;4/,ZBцi@R v&Rp >?axҥ Yv~Fm{y]ӸkO,ADԮJg,vv:0N$ F W*H/%Dcn-<$цz_˿MiXVHgE t29|xn]g[l;{/-ڄi-M}LPS&Ì90ssp*WQ5̮T~PB?h<6{#UQO8{n| r?n-vSH({R-nV58-б'rw%EƂ.zI ӯv$4. Å:t -)]S g ےetXE Эr$m .'8($VyR>̦:>}"pWK!'ъE?`qμ&8.)|HTNJ&I:ՄHUƈ4[}0RDk? a@me wZݮq An~Y;t4d^iO?ҤǀGR] [l+yj:QR[nP]lՖmGjQŦS.ki08❨Ns?xN$Jyri2Cnx59if"'!w^ur2E?t,EӴ^qф8VC҄Vt\(/u`)W cWHmaiys&PkxTM'1&NXÒC_ʿ%Ky`=߀<ё`+MO&ʪp 0XQ0L x,ivgtgpfiטG3oKvNC4ɭqjwXl,.\ĿY6NnΎm :O]3RR5< ]N^ssqow67JjKmnZFgX7&NaBCT>EE9V[>b{⬦]0 }4L+)仼ΒDmjjs7 ꃯ-"#J*dl[h'& lbQbC|X={U=a)~{$mGщPSa.̢u x[Y,X>i{a6䝹2bh>i?1=:l[0-XkSJdO';f㧖'H9J AҚQRǖ_]4`P 0aEMS7Qa0<*hɆNߦgz҆`Ch&'ZJ\O'G%#ox%79E:rj [rzB}$rUe}RP-34Qqf-}$y8!cҥCUΙ6Ugh{h$|}S܀w" I_1PZFfȪ:tQ:ְ'-ehmMh&>Fʠi~WZwL7<9#_P&/n"ZYPA8}rF{wvo_Ж*Z_yq1cjU-KjBZEaޒ`ՐX[Z,RgT05^i9_Stvɪy g,JŽۓZu8!.-_UgLCdYŒ\|WlB[^+6+2$ zwe~LJ hhk7\U%^\C fPAvQ UIcqa \Eb j먄{~MҨ z/'W+l>2Nc}9<ڴ(A7A1*lg 1Zt=g»g9-Pl}P6<-CVz#c~r_bx8]W8NVnZfב 3f:-lXwǰ?}L84݆ mVʽ11/[ Ҥȍ?U>D?|4ZRwa#3YؿcH+& 3I-LT `nh9BT9pص׹ezݴw\quz$,qUCN=K4VN[v 4HJ:Pڼ边C(p{X>X76FXJMCE1r)c Z3H:*r]+:cU(pUk ˾kn'\#V|EL˖ښbVW=\VcHF43|1>gJs/* >+JY%W 5*[ Nm\&z<dž*q0DDQL#:X^68gfgaqƋhuo 6 *? ]\xh61.ah`r!E*?|&S#'/l'?.$9)"g$UaÀ1BBF' Zk0g}\٧ l6 p-J}Hj4s}aaIxxm! NGX!vi8vC52 Kvߛ)D $femwŰ;L|Ǝɿ#SG+924_O/:`Teq˜WD∇\((7 {B,2պa]Wh¸sxU, D(W.fIS nc/3VR+umB/Ͻw\vIBl|*\[]PX *ytw p(ʼw۫|9]CJgנ:rBJrlcg1؞q$/78jjxjyCu짷vb`K$BLmj۬чα3o19NEf$w&Y.0Vz<'+~}c!*4L|ZE]2nNsh3>D-S!*3X] +ɫR1@՞3%wpQxËdAcW%:S^ ԡi>pqEU21A#wG5kp~ڋ|r6܆Sm@52z7m5:P0SČgk&T䫨 d+fwKȪ2LU 4<>$j$ "\]`V-P>[ ),Ri)W:#cy@[ ٢*0C(" :i| MNo+v*"cTnKMN棦^}uZ˩Q< ͑ Ȅ\"[$]Ό:I>R!(A4zSfZy骜$CMhˍw.)qZ $n= q "oE?Q.&i읩@E7c hqYoWUƖq`n'g#Db**T]ؖ95iCf-:4Aji1G U A苎) F[⾕ Gb᛹bwvw\-z*,1؈\Y!e h5E̎LC$D#<U,#R'%Y>ϾvbC&7e;ߨNrxU`.hX`۳R4G[A!VQ ̀\i"k:anRbzrD=EKe40V>F?^ۏG!x%ԠNº•AT*YCJmK,xؖPi0vB--Z)I50U$kVJ7;'} Nh+0eE*P:%-{:[VUU ;ƄCk6@#M> vbVJ86 =UzXOTQz jln'm_܅-&X798#r<>JZ"i%տƥ(~s};]yz ~g>_w9 O9 !`j#w"GnS(!VHyeԚ&ڪ0bgU9)}2<#qn㑋 0Rbb L ڧq<2/NUa^4^_hB ?b\z2Ŏj*m;œhyͱ+%N&x<6u@W Q( .ĭUQmҾHٳWL'ɱ`Mi7Ȫ$Ƅ(ګb\}/~^כ3U˷rW| 1)ztiqD@+nUH~CoD رSnc*B!{wΥSyq(W ? PZ Y|֭oDmܲuW12 @g&8 hw!K )l߸v)jwtO&۸Qjr }#ۉ af`cJSc?-gLݟ9Gzm2'ӝ{Y~8Ko { _oPr¾  N2NDQD=u%"{Pe\{x8>{:=yutJ8Bh qta[@?0-niP@K@S ;2eRN+3FKXN)Qne4`φxVt_=@%Cfg_~Osyk97 _U/0cu!#So| bnvGtZ/=`=*>t3UxoDZ]~xo]V_A̍r )R"r:NeZFu@zϘpn;U-9ESgK7rX7Uց@zo[fE7bAQ9#8th?!ٰlX,LD݅./ B4H 5ĮufrN<B|Ob+aYD7`"%/{llZz͍j0Q/r]H ` (bζlCVU\}E'x1S)3X6a0¾I`;] 6 Wc?o]io,/7ZbU7>3L/&GސX d~%y"jfdO! +ɬsQHk-T'&[(̐BPۉ~F~"n{&oO+7drFяa(Q4 ⍗FԬ7rIvOJA!v?E ]NHA7(zjGƦl_UW%>]U)Ĉr*dꙬ\ ,1&K\(TU \˚u`-ף"V+FrÃt8mkt47K{EBhڂ"%X1aXwN&Q C`m3Tq\@R)H'# ,4$iO'}/\jּ$Ң dTQJ^OJ-<Ӛ(kXQ0m'YCc0ӊC~? BĻ+lF\4QޙFpf#K f2I޼{x8svߓ@Ačɂ+ dgg}yV[a{.@jМ¾'흡Lq#=+|g/q3p7y^i.d[ ;[%CX:͠8h|vi%ld HpP}(vLJ w6g^{׿Mg8jg̫l^7eu\oڰWQkŠh獟s ր4ƻ*`BP`fY\R"nZX冏&EZ;#^",Z ?̟V0?8Dl1{蝺_JBst}F8n4kMt@pUya82KT8F㖓 |Yr8OsXP^SKc^n؛/8U~M*;]9c Ҝ `7R'>GŊ!G[Bu@~&aNf ,npKXZCUPAH\ (LKwK@C&`Ihj(y\ۨޗɫ[zM{t\E?[!$pMjng8[6x8 Td ߕ|qlA<Z D+/<7֙V N5Ggʯ(zlv_ rAwwG̡hn ~Pr2!\2 ]i&4{ry[M]s ۄuHdB [PR[҇8˷ )Pξ̔vNp~q22ch > Y'l=i PWxiiEJѥЎ:|Ց̩f vE&Pm^Dc  j{?R9#\נe1|kugP%`Jt*[{G%KЄ"k@51~Jy1s؏ԩJϛl2u6_/|;kWRJGWoQ?QGfͯ)=t]{"s+kXܰƬf+֪{5eS0Ѧ<B( 7Ž\oswپ(3ho IG'{cH1'+$4KQrpe,'(mYd?hE2 . 7ÃPILT6\YE BZC{h&Mqr &}O5Vޖ tV8Z:`̸UT8TrXˌGQ1K.@7I֑Dj.`|ꅣ 7%$??"+3*~:"ѿ8_0G"dz95g0{6ŠaZX#hjdrD39,ٻjON-U& ^H V5)ox7fM;/[Rk4dG8~ʓvj=bޜneqGkU w RD1MZbcϓG |JYqIbjܽyԌht$,pPYyT WrI#47eIܽ#UqYF]haϞv:e]]̾qXzZVjEyw=(RȝQR@bjhv[/B)y9wa(eYqO<9NN詿USMϒULF{6H5%\t}a ,bh9ɿUt`.XED),*gO򳧮BkTwN\``PSA54+Z-{G?܀kz=IuIi4h$sё F̼k8c%ҳu>aQ8bMY_(Q.}sf[] E(IioDhÍfXѹ!#Gkgy^)I Y2nQc8L$R=h ;\Y\zxSWd DOC¢8+̸Jw@5,N{Myo {T~*<u|mNP_x.' s荹8y:v+ %Qh4:0/Xv4FLxfx糧Vi| B|04;I5Utȅp/B3G\NCC?~3qze.6{rh#! f 23=TN+@ofr^1n~_%>2 ΐ籫g<@{ƒHVrxݽeLgJ2Kajwp_ e/Pi2ȫ4]F%A-aq>a"kĬoΌe;L27Nf<cXvpAlj38B"sg{N:J{6ShV$.,~>:;{N&QGT_`Sdޮ7B(Zд@E%oTA6lpzTyZ"ńLUx?Ŋ6/ҹ͙[تt9e\ Y9r )ҋHu.!V'"]@RpYjǼƑ>댸7俄$A7RQ(TܑQatyc53S`S30gUx7f6C/S5P'(n݊5H-= UA;zgW>!H`՛ EVJ4,p_Y*LWUY/qbot[SQy)$9d.% d44̷zX`wtKAN(Ƹ%/j$`yslZwrlھR`^2K}ev2/*Usvj9ojJGo: ]p]TbVL,9QdZ֡M0vc!.;>J`b|Dj%YJg&.;tR찃-TwNK;z p6q R¶:m-@%R#ڋkCq.it΅,20o;T~ֶy@kŸ.|Mj9)IYanHo_uʴ2 Y <]0Me8NQ2X$ODT݁xh#Zs!ҏKx%*=@BJC9s(̦وIEP֊M+l0ZN T6B}!hX lF^VRj ȕ %M1=2qloAdL!CTJnǍ2=[x rР٤V @NUF?_ ,|x$>l#:x]^Y!K P~9Gw#dfљ{a391/y4D06dzq'P#iSC~VئnF͐^{ ӠNkB$E6\w_'+T}\$LO@,q'LL}UfO(^ j^>A%>2sa^BhIĥlbb-ađ "+,J(k=m\}9Vm`dg) .cNRn ->u^°/fږOvYA媸 %Z ȭvE&bi;Ro~@!(A_v!Q4@tD \ 3f2kZx!=j=x }D煱ohfL/m_oc>fPBW 1臖 ;Ӷ)!RH O֑3DSBCX~(rLe@†j(h6Ь>wjA) zHd`#d-$SƸ'^!%-ɁonjW+NF{i{~'ܗ wŅEQ=~R $]%(ٻCLDkjq4MY$֑&Q:.l8-M__S=1Ng h ~mP644d28 )2`p'nX\Fj{aCU-hMĭLO qY,~: Lqnؔgn?S*[cs!T3`lsZrk[.#YN@q Ulz[ 8+Y7]JRgڮ\tp\[8DC"? Ӫj?!=M:'= J@h.5<교kq~=VN,b&80!A7!-Txor6YMu mi:9q#@]'dD+i8J t,{lySG$ ,AV7UHDkB Ks%i O3t̍lcYTwYݼ W 5S'~/BC!#G Wi28=8 SCGLN;23m`>lh!sͤnSd}`{zXjFzջeE.U1F,xwx&Hfp/Df$7(yFON#I, OjW1o>&yDH Z +iFnYDŽ-G뎡tSgV4G7 sgcL)>)a] 1ۛKGyyHuҩ6ϯ{8EXwEQqa@-END.&i76_yޢ7O8{5ox1{%gMlpr }wkCka2u9`ӱkY,#aIehRQnv3UE6P-!f/졜v>Y;aujz0+^{YS~0M(Uy_8XT']x/I)(uEJǷo~ [p݇/W^n@/&rx<2,B!uRJ->n~Tŏv#ԁ E5EQյw!>jq{mZc@9f8%=n}@L(_%;n2ь\č oIȽ|Nm{A?W݉/'w0XI2:9=1g#1""!UXh^oG"j zae/ 5dp[÷$!, E '`*{”YyPo*=Kmf9,=X%B9̮EQ} azbgfm^+f?=\XR;AD_x㡻Kh9COrD^'"{hU$]BA}fV 7|dܔ#QHoMc_f=n iLЬk!'MIw yURFaQxqaH|毁ژH)&!-3Wt sE/ >IҘE쥂Hfu(:9WϜ0.N?S8<Xu0kjhiU=aށ8N$NxA;Ե-){nj;>/P?( ٧B*"6J>F3s2.^;{dٯ4zyӑ?`t/Z`ǣJUv]]—R1y4$+1i1$'m>+ﮀ^cˉL5nΆ>|6&b>c{HeUԜ2:Rg~F_v6gPA| 㟖G{dP6/+;w#j&jܸBㄵ_m@hD? gw՝?aubicIPА*0}n6JGY~~Nd'hKl1;P3 d~׳{^[~?RE:;HfxޑM> xqmhSݪT/m j%9ҙX 8 =q,W8|<Lc =dSݲ4'7ӴA3+RLAɆH #x߂mAuUWW4||@O3w!0iձkї*6e@8 'Afe 5ť5)[sz`E|,dЕTi ѽ~0vWМv 8DR?˵;m a83 y [`)@E_۪ƞ!{56oj(p("Nc5qȺJcIkIs;Wf 8{*Z:Ľ-w*:r~r`҈MIһ\FM 6בdo M !5Y=7GI^BWi$3)?#ɮ#!HbaVTXʂں;nN `9pTfN%brw" C`Mﰔ01DD[]Ozhwb< စ&X@|LJMHƸ ؞0Py]H}QMvC.g)&~ַ'$,"%7]uu$. ˸#oT"j2՞8A:WSЕ|]ODmg"Šϸ(9odDVPgF,`+mV V7+*}lOk鈄XXR'8k싈 H7 EFF4TQ%av/BK śfkQw~=œj-tږD%< tfpw:j&HPRI%,N7U?O{yn!EIv<[UgT=Ciȣ .D<0h#}|V>*i0JT`IY٢w 2ɒ6ș8e^ݞmRVsDP]$5ŏHP3ԼnfGx` 3'#lhaiÆiMv#_OFPܒ-.:m =cyMPci*te,Ff8J/4 ?_UT KrK+XuRxTW2/yIaiMe(TZ\?YaA~7.vg(;.A8x)55CL&(F[U_x.nnDzd*Id>?8s)G{EYS,=p\/B{&gƄOh-[ͶK'e31-\@>x-d*# W(3v9"JZ9DMK4$I \ z@v+^N )Y69N8,215- l1_ga:צ NjUlkK 9{_DIoPq,UmާhWu.H\xgu/i(jQiKZʘyQ uoeƠ#(JP'ݭh akyb:\ u&#kt~ۺSê Ч }DM~+ 3,3特nD*0v1 6b9ҜYx2lLd^RNMbX) 34'!8M.g`P] zs!ttdg>$,^1ry["?T)'aVȐ?d+a!)9_3(׳21KAkEA]N>x81 zLV*Կ}$d,7:`*#q2В'AYzjMŽ*0cjYmH絙hۡ,ˠ DѭXߢEg0B]#?6щē cF]JL{5;p9#D,RXC:Js$|sS><'=?QQkv9o]e9V"xY[RC͕MV'l` F~Um/yތxi1͇hC5}Gl7ce"wL)5%n3C^?y0Jq~:?'[.ݱyY:k!i.)hCF]X&wrRB6-XOn⭶({#a R¹%k9t-]P(@fԫ|˹[GxhoG-c|RQ*cCcA["2xqk?ݚ$Zu[AWZcFN^]lFHC p)?%RF!fmzoUjX`um9ԎDBkS 0OmQ_J Q L*3O^ݪz )qowZVf kÈRMG2< }q}lR/~kpO^f !wgS3H^WLdXRwt1%䛭{Lۓ.{zkAUXU +0lf.1˪̃^>O`+ا&(ywQzZᚰ ޕ<J/-YMij^Zo9;׎ a턅՜Fz8A Q)|#GV]s{g/:sL%-9%q 6R.7N:!$彠=]†@dy jho%Q+e&( 2TIWVc}qhUa ky?RIxi8^6MySF(\U!NMX=!Xԕ_ub~m:' !zR1i*lWV}է0 lƾ!U3W/>c4ŔWf{щHj; :f<)<M[vZK" 3=EQ:%܊S{$ > uY GR#. `ڭzFÕ;Ұa尬\#/=NɚmdA|}S͝zlSrsَIt\0vP' -_$$,!hw 0]r)5Z@sH~f7Ҏ Nu.$1'– ئj~cfA'Qv/-N*֑Ka+/8-+EFRx oNi/ޞJۯaz ,bj% q"ꡘ ~jTˌ \\'g>B%pCќ3M܇Ph)P;h[wur0=p*_zٽκM5@EN8R߅.co9|aƾSƏ)kW4o`%fC葸>=ێ[2eމl[)kPXFh!$qbb$wd&~4D`j} .v^|gmU(~0U3*݂BRpTbj!hU;#=ImP*Rr,)[8ۥہ+6)ƻ" 1)}(0Fzp'eU>u4c_:K1IqG-eGһ|oRn:Ղd)gt+<$z1R ! 8|~[qO,ݜG>][`\#/(`{TMwy_kb`ܗts . wN3CGSF\]ll vy}:9iy=,wE>Z2c:0-e[gv_Cw'b ]} ?=UꊰvZ9ݶQٺsmτ.ג9IXďp[0P> KN ^0C " kcCUUW8-XT>qxLLR?=[Y`xԝ o^Ec$~v#?T_m)fOiP3ղ3GY(Ʌ3-z^Ie hPppQ7ָanG~6 Omd9D(yL ȉ )z#o54cPo "Wew0?܅ذ,$ٙ6*vw`:E߰%EMҹݒKѰND^%Gy~}9 vd?HogCh4G0pl>aԚM;oB k9skH۪yuFfyҢV7.=43f؞WChP*i|ލMց&+*eb=)[~Li,eȖc)%ʒuيy˦Ycǭ:3F\#H .2?Mmǰ6dz9p5&Ei Җ%9+:4"3;G$gYR/^D-C };P"s/GQ/tƗ!ѱ5|hL62'R6s'ptc~iW'nB& %!AX^1ZnWˢW ChQ>fJxƿ?T_C:r:eW7ОPg{T;(k%;ҏNaW qBs@^ήl߁nc Iq79d9ӍC-s8j"!gC&c_j6_@@DPD7YLHQ yp'}.s81-¾ H:C[}~.]XICUOe=/3rI bdǰ3)LHȭhKc99 66iw45?B4u=&>@F0͊H4͛78U|ѭVEW]t e5b5&`L;闁!<[5s O.2N%V,2WB˶!IoՒMUJlZ?>0G/\Kf_"3 ۖ0%p+^?曈vv!&C칌:+<%W謅vhMŢ?59Ӕq>jNOtoTHV^j =-5FH0+G:U딻&)t?#!(W9(Fk]~nnrGV 9VUwxu06R }:8ی(R5d!4>*7%ՔÄ6+SM "(ږhX6wmHr~w4ںrS8@}hƷNFFΈ`ȋCAxS=UAmX'լt.KhЈ"c=|/0!W,oR-㤒V ]  B?S}Q (3YAsU 4# /N T#y]L\e{`Lf24xH$ГIy>2saPH^^J ׇ ^ݭW\sƊ?ԀK Vxot ÷Nzs(R+f$",eH @zBDhG^J=5mdr[H΅qeU2#7K` "qI"ap,va8B,a U06eH3G`/wgh4™}ZmTvfW!XT'<9*/UakD,e5q ¨xӺXMmbF_*.4ccBȰMڹvP}kQVzr&tZ< GNSnX ݵO3="LEx füY;ݫҽ]v+e\ĥd_* xk"7Hm4Y-A67͡GZ9(f >Ԙmf+n 袏-d]ƺ\  8cO<Hך~f75p.Kgw7F`BPaD+ZKv# ؓbFsv2 pAQw_p3݂ PyP(GS\Xs6l&`ᩀ%\~@Y{џ{4>3c&ϣ1W&8'[ebk8 a4pJPT*"13g=˷*gek ݊$I*Н͌=2ƽ3Q>g@_\1@TF&z {(LQ=j:J >*GMҵ܀LV[_GqrBGF?dbBZNv6}TXNe=k;wԌr3k5X2YJ$1jXPT-Hhfr( T#^x=~>1b2(W T)NpVF]L Y|z-z%p]oacV}AqXIYJ+>?Jl,+$ n9P@fyR)Yf'_7{9Iebѣ;3Gi?cA}&kf'^-Fg 23KcdO(YJ#L@01'aTmŌޠĚ1Bδ+Sb[sc~p~u .0 E V?լ3dy.ξ8p+/Neb:ejw*Rl, [_8U7^؆Q1 1Pxݠf&zX3FX1`F?>FU rlof9"i1'Dz%.|Q!15٩:H>nO^╗l#T ‰ZJ'ٟ_pk(uW+m=](]Ht+P̀kv$S+ kro@ӫVBͩ'^G]䞾VN)yr'ScL3q)eeC>Aʴ+1jD5͈t%p ͍u豦+nJJҜef<'*'w"vWہ X8H?Hܘ(c }AP;=d'~GF|MzIrh{ҌKmu}1[Et6kT"uHp At;fTDVCby-7i`a| ^R#R(,#_\x'k(\kg=u]Θja P86Sk! e Xc-~ j^6o({\ ~3]JFscNmeR79yձz3/0H,j>agv3`ն*e*(JGU{Y &"a1z pPXgyj]!S9zJwQq†GAh+de{B$I們3׿gf :6YAcIE4\&+-DW9P\oDdP ܗkz|, hp:{jsA:=PLMԵ2!j}i?hetп_ixzr $cxK5"/S&gDyYWrfoqG?]+K,byHuzI&e v>WP!|-ޏz@.QBΰG[WM1 JCl6pJ9!B1/I :$\(b-9ܔOL6o6E7; sxp.Bcn7QsN{R#K)ɑ֞v $y$)T""_ĺAAX@rM/Lzͯlt\^Cw~9^!2,%xC==L+i T2:?>ãd:$0X^c(ah:7 U‡c"BErtR>\ P@JwwGECieTo^/A8[mt. K¥'^ ] *xWsq\|S!%2@{npZ_ǽJw|zB8ޱ -0tϠLLh=4]EJ@%nf2jpx˲ ]-~y*'P\Oo6&*%ʩ;sUL s%j4S ]ʯeB}.o x`˗7n-;p+DoT5Q/;|Yb7Pͥfji`eXA:B5wJU ..Q}ga7w }ol7֌@! "~}2q PRwZ|>Uy;GZ]a>åuMpqo]IN &JV>d15oS-a 5Y_ݑ|(hD#'[㗝=Fn FmכQ6nD=6Ov:T$`;*봲mPKQ_9 7Ho?-I+ޖX(E x|¹<:͚$[ŏKo .rZJu>XHMQ&H>`B5AIX!T/w!:Klw1G%4+-{k5:kIL~U> _Е4+|SͨHJ aAU` Śԥ !X#;}S4ڵ ( y,_􇼩_b!<FڊSpJzXH3%;$%eŌ3pZI,9cgFwiv\dwV>MD)8zSb&l}DH_Г{̸YE>Ob/L0Qlj-Y+ԹYHT$\BEAg:+c-3 P_>o&Th^[*dx/rtmv`rk!{h[ :-6Ӽh8N;S{/.I x7D9 rW |O/z9]6}_6G;RkZQ\\0&gbq4dYPj˞gD,:W7TraJ$KQ j٥!CZofc)߶踝C G #Xݔ5HmDބD8|8-q'P}I"@ļ_ޓݩ# lcY7Sڶo>Qy>a/ Hc1kWzѼ]}=OsaC%ȃOd&v95`A hk_- y#-7~u WsC}aqQƛ"600{ΕUlN'<GD,vSXSmIYy#\{7FfMB"HҲpj_GP߯@,O1loVTEߝ_ ind g  .(3|;'ǔ)pQ|#,<|7 q_U}Ӻ@bX"l/O*/c(w_ᕡd|]`i.l.jviCigFIcӀ%4^Ov!>qN,Ჺ݋>q!Z7J"ä Qc#z0+"In9)+ :(dG=e@~_PG7>;ec@ly#vj7I($2.[S"#WKRHCotKY4FִmNOr%"61%p~Gߘqǐ]K@tŷ"j}B0n})529/h=Yw]fMx*pujG'$(jDǸY,ijn,l9t֗NuԼ;Knɐ&ۑnPO~ XIxB%VG^473JD*hb"th&10]\OMQ2dk$n 69W6=+p*PqL$o$V1V휒q厈6߻&_S0t@=B=N6kf!+o!=hx=P{wFj2V^^تvUrr $Cqc_}r}b]f%97, 6Y~,65ӛpF*`s/$1"ok"G@WW K6`3$s혪a6: 3 o6h 2Ӊs168,*l5JSlu$bJ4kRqO0`ĬntɺO,սE LtZR m[Dn]K!xJ(&®# rpT_z{u^W|6)[J|_B!]@=Ri&keilN I5Ωr]#ml}C&}Q(vAKzv.v>';ٲ2|N;/\׸MD[;ʤh 8#]ꭳ0'nP=St,tPHEH-ܣ-qުR[BڽQ_ LqQXB3Pr|HA6ߕ􏘐+D6y˭cAH3RmN + Rc7.^TbQM>Bos^'dMsy5^*VPos/OqH_k7k1bTA>z]<$-MlP7 fޣ )(XC4N1VghHrwy%Rt8ukA)սX m2fOnRQcReF:Y)\Qt3MKK뚋cr,̜Y" )|"@H{nT?zQ)Ti, +PI}"zt5nk+Ӗ9q(d7 S %VBdceHa䎧'piHPA84B)CI4=TJr~'3( $+0i[yO/Gi ZY⃑^I\>>3aXnk(ޒa5QݷK+ )|;qvlXFd=O_ieacs Cu&Vbk:0)zEBYa#F\Iܶ9="-RP@J"Gj۪v쐩nojBV3U+S3+a5΃?X]$;)77H;n߀`S@EHX|+L^s=CATp_~3wR/(W*N-sa2: $Jhpɔ(WBڻq7qW:gʡFh]G>aR:1#x)kZWQg]ATD $&i!K+LVM 58̩ V0經JdÚ'8'|Kqbkn<QQ{rrI` QK~ &nazRťP/PZ :IfCWVV<%HY'?{Z dO14OBEԧy<媋"WeYJVAcDb%^O ]@nyY] VU'2VO/t;>>z.:c#)hOhGxZ$eCr0:-`@sS l Tq{z TN.!iQ& bQR45EtU%ȭ kŁg&dj[_>A` ;"9oA\ dK-F`Xq'$sm znD UL9J=5#\M?б+m)`;&4B {]RwK)ysi\jpKֹ@#Ӛ}t =+!Kg'I)%S X"-6w&ﰥL;ZmpuC!48^Qw F>7DLN+0-EX.غM _j*,VS;7 [/[_PZW2(Dx1"*nSv9p5Ft1~"|ȣUaH\k;`a5IR/Bx3O|ۭɧfF#H-W}k: {l}@_:F ^cb@2Kj`F8beukf qmV ]65jX' gI Q~í@n\ld$!-Wf2g1[pB|Ò}`upC{v8e ?mR mVt`~ ?. X`N;"xjIIa8FpD8*O_sk؎Jq%%vcmn0WUi~ش +r $!jNd&ajR5c/DLZ>62+WÙ.gQ-0#'|ǎIeB|!5~ƍ[Ĭҭ^?̏2yKdʳjV(C4P;3Ɋ,-rMi7X ]gD#>jHثwd~\8mC)C2(7g djw‘H\lɢyHR#!W|[5!r-ڙ.MQavBrCuc$Ѵ',.v5pI(.cuyN'p7, D 6 g`-MPi*fUe]]NLIgYv>I_$n6{$F'1k`sZ X.(v^oQϳ;MXֺXv05fXw&@o|D:j;S4vNZ;*}e&F\z=gF*l2ߵqazZ(e>״~>w< i-(8i/I$ Ox^=p#F|N,Te{Y:bU1Q6]>Kn}qo,^9^/R9f*$.Yn Rx<}&'!Kq{ )kv@wA^=j8H4ocB.2@j?w"X\Zb ^L%w}2TU[`ފn1=Y֖"Eg:veߨS myf#٦۬}Y/jk|c|ʭ~#&8T]TQOߘ%O37͆z~YSX'RAN@+JG Q,D*uE7&XB+:׮VNۑغfo[9ydg[c YaΟ2:^A3ZLޡNYoLӬ7ƐC7P ynj J¶]V̓庴aW+Nvj[/j<ntMD "HRϗpAh'#蕶&IY|tiY@}äB k'`91vk3e[n[J+,A ,:%Q VSup '(g僰`zj0"Sg|Qbk tW)ƭF&p9Lph?PKdW_H%*C6ÆgƏI*&)Yg1@PpJ95tX,C5_h pȣe؎?lnE\-r\dž0H xJͩ4kNĜo)x=69`;Œwj8vݪNnuΪS+Pu(!\%cB/r5Z+7i MxK?9a_N)C}2a3IVclA^Ha4 0񌒶i^p_q=i{31` B>pp5ZdAT)ŒZŸ PjH!cA0~r#ԋ,!k>varntiҶDV$n~'/BQ P|Z : 2 u??WrYU [{}OYwK=vXE&{wku(S fz>4"6:wOLK%^hk7pz$xH B!Р'Op%TNBvAQiR[X9'zpQ1R/ߘyhxyZI^2BV (JqZrWPCg!i#(=(0LJ!"w$9}7m!а!"U+^JG8zz-u!:6=v; 󾄻~3ZZU77@s4= @ Ũ4^dGRq]PhDD'7D`˭)&u{#K-*.z4m$Nù!4P^$}lJ qʒ9Ɂȏh4 GM_Ų#}8ͧW L{? 5٨n^foY%&5R:,+:"Wc8 -j,j<+m wXSZ9I'#}u|HQ-':2"dR{?9ȢF`*"`f)\4(e4m 2.[(n.ݯВj_C^ A2 Lz\U!TБ#omh}ݫ N ^z=O.7t˾N +q*~2='؜Ӟ_o>A|5G7z@|>,5EMAz&˕2}VW %HDkz.v8hum?kW]=!d)(؛|H! zx@\e? &"X_1_ aס 7#|9|c_>թ/.IKPAL(bB/35j/ +3ңh hdL= 2{}z2 THf?#5!mSq H!a5õx~1Eߣ>8jp},sV7 74=mL` BN~~QA B&yкv;rU,WYߪyd$4.$;bY)3T@ ^EĹJt+VSn>g+^7/wvU-1 W3 W^~{RaSABۡ_PL 8Nq%t4pe$CEx\g7]tpiҷ>H|7elE_+%\D/Ln.3E8rTR qKLro!Xe)ĒNi4cBxj2 ~r3V?$.P#HGYM~&R;3tȠcX+49`Έ16PZ"ZUI='!Hv<Ɉ(iUhɏp>=&q=[EL-V{.bz<-wq@=ہN,թUF61K!8u]#+O@/j|g遇0D}~N 1EGd wa!"_b ȌZ UòpXyg/yѦ' ]"u# 'hKK@8 &﹛Oysfra.¢73|ɫ{OR!I>^Unr-kO kׄnUrI>K4p_xUuIe0L^ϹX't˨)n1a4SI+K֯:kBڏOU97eO6JӽPw bmTUxEhXŇ??oUDߗH ah9pJmZʕJjvjMA مαa]f\aܵqVnvE7( [~](Tg |`!2~ ճqxwff+E2 Obn>W*>͹J_0EK?' =>'.5 Wmf 64 f]8žߥ z^ǭ/&kJ>HxA`%C6r+#MJSq,7 aЇ@ S<3ڬ |䟫s .7lћ=di_\XT?!dr|b=u(%)쁀Õd`KaÎ;q~5 IImc\ǼQ ]3/FǏjjoJԸ78n5규)`=I;%lsBDv(D+(2*)׃\.dU!1"գ.wxrTKn&ak_ 8T/#qz Fb .b H k _  } nhrriLo7Hj-e?AQV)'Qwqīp>f=X4瑧J`A4v,ݚͮKjI*y5T3i+Zb U.=mwƞLT~g{ց<'!2̴ThY ?VM{h}́9kvÞzvYyܿt Rtx}H;*dė}Sb^E+ځغ2VSM'ЌVL3y/(;r>&髚\y|TҨ/Uuǐq )\䷤=Xv[wLI!yen3gHa <wKNty\#l zǘv~w~jܑ9z]a5lemJn_qv54p<}WǤS r>(ךs7]dGQ5Ԛƕ`nEЁ[G~xڭCY!%S{`k{ѴuulHeJo48ִ6tTm|@[Ul/rȟL(d:ߝ_(F|(m[Vuia:o@~jBx 44?dhЌrV Ymwka[3y@ª2~cig `0&ssWJ'392ޱOnN`F4Y!-F${ŠI( ":OjQVWfS{k:VN̷W,JEscT^T: +h_:5m+Ro5rsSc0"k-I Ê:lXNJ!-YZFBtW>u#Xp6h.g!} ʹH ϻiuclagZicdt4v>58vT.já];*ru,Rs|ϕ}q:8_ b M %"Z8i !g/XF~13LeXIL0P1)-X9>h>-xRBG&=W呄M%TU4MVO $x,ɻ*͡UlMpD4W^pgKXn>.^dW56lW GD&Ke++5u58Vz'T}A-/'H&K%`9eq|& vOJBe Qe2PLsvp{a`dX^_*v]J=.1TsRp`Z{V bD5ƅl_PaST I͹1!JZ/B@NgO8(rQ 4tkAE9C 1 )C۵OwEV6dn& x.b 6x& 'J'laa.|cIܝm3gvB7135.2>U8F$'Rw"{I A%,}b:$xz0Dtwi \]˝lȽ5Fvj(SRhn["jzQG%̇I*f(!E2ѕb)9}Oog#ZaPBM`v*lvo+H-nye>^qguf_i65T-\tY1!]8# Zph1?ߥ0WOg,[K8ҽH/zN$z(6d$/ w 'R*5=X~1"C\@,)+;ۀM$Xq"\˩rbAC<<$u؄"Kn+V6ޒ[(0QdbGhޔs3y! НBj}J,~D 5|ƒQyYğ ӚF!O#Zj,{&¨E_&]jZl!4R Ajzi&~r(1L6/7+yHj*RK$^=хޒE{*p ;Y@9/>m}`I(zEdu0w[wjm'&/ _#Vxf %W$^C]՘X-48zᥨưSm a)=t_m3xb>$ y^Du5h#$?t{@ûs=5X4_?+XD$a)ODojizY:Pv6Rg%'ƻ`[hA%5|e_Dgp<,rx*<ϯA@/$Ne~=#(йGPEVK-l/my9 zUR&z b=tc(Ugͮ}\) V-!,~?Mf^WMb:Q a+n=ѪƸS ڣ#l-OEXQ޾;#ײ ΆDFjYQ $5jL=7:[B`j4Op][aBQp߻)-p'm3 CEHt]l~!O;÷J-fvnyr tƒ:VO1=ƹn :$-0D, e؎؀r;{+&H*᪎蔮YC&~${qϰjFReh`U14g>+Y-mh֠V\}OX#Xt FwzĮ|g{va_(mN/~cA8̩6 ?rXhVIa&oTzs[| HvnԐ1_dG0kܯf- .C2GqCYbajRmwl v=o& WVR@,ݨݸhƧV^fG>sצ:c|mlD6$IfH3 ]ۅ8^hx+/e[=V^*8]Ğ4ێ$ت :%o{Mk}|%wRԷf-hgsj!㹟fW7|Nq!t JN$7gu',経U!4lAQw0עUjJF֩䦕S,׏'ܟ(8BiJdTg!m-_zrP0F|ǼKey XlFј/@ >SlcN \h*2K`θ5^ҘCgt(wKuwGDBʠþ4!fx匁Af$ TmUأ\Ȱwr}Y{\?FC.>BG˟-%e/yA>وE[IB3hQu1SMۈ۵'ўzX?GFi)mp0]P<SQ/+4@⣫|,D KOn'C"hu:ѽ9GQɸ>UDk!E[<&@x1wjV1u#z%-bc ><8F́gANs3E& 12&~ޖ{tI7i u 6|2yqįe?k_P70UL"*atOiఔˬہvd[:To ( x/b- [jj:?OiigLPq*"j ]. ra:XEn&@u2~4XfT]Ҁ-qэ%JK_78໰`׽k3S= x&ޝAI;@Qx?MDk1R5 ]Y uB\;(gK̊aC|p,%aXUSv[ a ?3 '/'LSMR=pmg#BHcE]:O @gY!2IpÇ VWakW Jf=IbhUSJ/SE֔KIG a,j\ܡ6+2pcZhE%1Rz13ոt*TV@Z!94G[߼x ?Fsl=dt3#w!m:\ o ;v_o0/7J* 4HT T9~N3ZXwC؆,Z7$tB*R a,ѓ;bB/6;-FF :ѾTl<0Ck&+i7g;{%aDZU'G+VG5Cmv ~TfY iSiٍAqm:_$Ff;VfGŦD1D8ڤ:~4+8p"{^QWJ&fmwizdJܐ23>g9K^Zųa*:v֎xٴ-q*2!1|.}Kl&-_ <*+~sc)8pjke`[^ߚiH go0HfReɁ5Ou˸FV훌7uzιCsY^Y,OGw WOW7ƹ y gLOk! |̮/\'Z:g(%pXem]3 ̐7:+zCmFeGQ8b__y~_e3%f)b ZuTjU [Яl3+GcØ{<]o!t m`d$%Ô1rgIj%j@RLSn^6V{s&"klCg"F茙GP9D1?`184 U*2(? XQOAA KnG4JQohṉ*a -=rBo:&=˰_B]E2NF"8":7䭉90TQ^΃Sϴ_"cGjr[nq.t>8d3k=܉ۂNWKzwwClfH-f+!g2$K8Fߝ2s]G*)xw*US֣s{I0$xŷ! ^"P R@pJ' zڊQxc.0e:*<\lͫyòOF* %ΧC `^Lvs&[/ Ǿ `FSFz$5"VyAYzWH_,M%6!W|*T5xq岒qPOG0Z6ԦBG)IՊJ%3t'o @UroNX3l<طbrIDN2Npuy1TʙwM^]yZ*AL| |e9qiP4dcݠ L["HmkKDQ>'<&-5mmI/Owo'9:iK:}]+ 1mJK2XEuIװ[j#dmǽnxaY@gy_֡d\\ZYţ+yj)p7 MVcٕ'cQơ:ܨӟ_=!߸SL]8ѼE&_p.;%V{ſ;IUm}k-)z`ɀYF4*ٶKd0ޠ.^ U*$qˎ+[}A4\yU:.lm2Lы! r˪CbvaD它>I ;*8lAXz \5~ AlxOIYvmTTЉjո#&$ 7K?=֒ov$tl.6`Z)Mᅃ>ta%u걌:͑`ܘkھ+'As k[i MEJ'6it$fFJb-DEq ;('|L9r4G/2>#&g^훔q [ou1ecVOoʢgrM*$XVԥڡ"2ˢx.Pj&1%MGKhX!io7%J~3Bjnl$( )sy8}G4((.m6^{HB밫'"΅T rQy/#@!e"{hGC~oOM󉽯嚲\i6ܜ8LóP(eX ']L)8y-:I!+?[ik2~,rlUA"hTe().ɰM{yUstRGzn=ͲihG9ݢ=0Y}ʉ~af:2G9Rr[LZK%ڞǐ#f{Uifd+x8dU!rhh2J4t8ym_쓤uZl*(;T B54ȚBؐ-_ˆF\-VXVPF<蜦¼ ƌ 9?c'`o i@\V"Z|* O֛nD)Y,~ #=#W}Qw|PGڈ 0!v _F`2BxhH(~81WOM\qks Ul Bn.1J,>𞓷Z8 [%lV=IlXÈ4oXP[joƒv?wV#u?5M0'KTs}'qls6u8Ijl6eEF×n/eaj^\NiVc+;+ ](ҡVkA\b_̞Tb:>-)bx@A Ü%b{.8l_TC Dìg_p$JZy [&{s$9'R"N`ɤjmoCLXCoqFӏTܙs~em|-3b3PA_>6dm9ҀV2]>a*0ЄCztqbφ`՚6{%gx2#pK0mmudN\ʈ7W{2Z#4\̃x(* [ W1䚙5Y湦0HrFf6+օ&|MCˑS h/A[#aGHՌ\k#m~0Xew WfIkȋuAfw{c^v?jEl3eEO%햅igT#,.*Z ꐡ]su Rk߽m ky;q>|܆5Cc/q/1HW/ dUJNPɣR_V<ʇTcxX-Vd?ws|׿DóEw5RY S=C*g4Rdvh(xò)~E8n$ ZSLrqS?nNi0X{VnfՇY%Yen>.M_~YH@(:(7U{\tѥLj0g|Tl૟c%,j|`INw *R+1r<ՀUG2?U@>4k'BabҘag+܀#S20ՄItO yl,^O2ц"ƥA%sЊG ޻;M=$7 A"*^{FR4]|/]]O-,I'p_KP~~SR5q]a1{{0r:-R{SX8e׸׹or̖ 'f^H |[t?tР(5@0.uGn Ov5Z]VY\kpNh'}MzVSrn{ؠvFt JzB*ԟ\OhUy0P-,wYzk~CpQ3B) -S.7"}_"6|w`wiZj9-wЉ6`jG8!'s=fw\=cռqLJoAdēQT:!a3 gl#<}, _8*mBSN"2mlӪ6֋ρ#DC]`VZ`!;- BiMzw4!2;MEʕuJ G*f>=[m G7~`ofEqwcel84*^ڶ[fʅlc p†#xO -'vYd%´#%RY-sWyOt D1j%*Fjt 9:FA w$#梹ÈS0x4t*i{lfL)wcRqԅ#AͼG̝!*UGNgO|,!ns]uе3}H^68{ja18gǬnc,(cAf=3TW!]nCVZ:Vpn!.}O`Mj&" g`Ѫ5Y2x7\aWzcO%xTWC~L2:/sױm˅ᯞldPӄĤUR-\~V)#ەP@MǬ,t _5w,xf͚Eve yB`riSLК#93hU{MȌ9s˸ܝiPVy.%s_hYk$^?_X[I~M;;,|giN:̯/t>K|+K~Atg֘brL ^ )(F@yd+XuLw?kz;!L6p˫=:h}\*F[ 7g}=2qkkaLg^!7 凇WpZՏa;BV-ӳ\[@{? 4疍3 *g Qq~3 |G0Ug RB@&PI4F lП@lT]b4T t$`9_[$!t^hxƾňc49IWCD%TPשt;p,*D wZemj9l@!n+|4d"m'c} D9-㋡L0W!evL5#Q-+}-Sȇ߮لK LFq`N<}S?Rׁ3}REhefrRn|jVb=nvP($>.wc3MwIgOTC}t.)iHrU\Bƞ, 1pxB@$-%*gB 11' :Ӵd<$"x!'ӿ/m2Xn1| l[喳u{Lj!\) ;k !bɌPJo YnGͰ =B*v2T'21߆ qR&shlIX+ t5180᫨C5ҁmXñʚ$Z_|8mc;kXԃ g :>3qFg0_b;+"lіc)*ڂDjcl=4|wN3pmb!l\왏gv2.}f1o- '!UJs/ŵb(UCr<D-d16a0 xjy8w!c*\*;'6hEgv Om.XA@HO 6-3sO-z&v7EDI#Qlu-М+ #C BĂ8zGդ2W=AbJiAA mw1\prMp)7}@H|β-e0(J0 `zD 5xv O4nkY?ŽNUAcj{W/'8Ǵï(ㇿLHGG^+I A}4@J؛Zr(jشPӼviws1/g\Ո|nZA Pq4ƪ'!ܝSr$rLB6®Mcb#;ٸ~a;d>P݋C?}.?6怾nz ݼ!tF1.~QCpBF dVUi2Pd[ӀCښ}NI'KPS]oH1~Nv] 5\Kp[#Hh6qݙ~F;!x|tD @❥ nΛ| βW$r(b;x"}`W4+vi$:m<1olü`FmmLq0oohNǥ>D1*&#(k754V0ܰ+ݟ bb[΀ ; $Nk֦8VY0NzJ/Xhke4QtW"<ڏ iˌH Rj 1VEX&K:$s!1 n4F-#P9ʟB% X9= W Nzu5ñۊ4b%r^KÖ[anɂyynjµxZȝ>CBZvBl1m ;oq9:=n/6a}$XZrU֐R|~\츔L]YWZ$a/m:^emW EF}kڽkw$=oHzw8TF$4DZJ )_] svá2}!SjӈZ-ˇ!{+>}e~@hpӋ$`yd&Q&EF(CWXi}j w,y}W)0ut%$$RJ12 epkpMUyF=A 9zs_%ڧW[ E/|{ $-D%'|#'Q8!sl—&:9ٞG3@t}l Ɖf.x=^,-QmU/FegLbrmYkdOI W]`TwR\e GDVȼ@D`}]DO)4ud%m:`ᆝ`M5۲(0}du .m*WlnCrAw['$<ҩ&KIz] >|BlQI{4WD|L+O|=NRw:; \6f[\]# O^Eά9HzHuC_v]RJ9iW;`UmoSP(JVBcsJ]AKXgJ3@ke cx 77w8ר' vVme 9:TyӤnt"jbYܔ_XY0H.7qw%6(fw"ː1|(uf?'q&>fzrmGl9D0l2^R+Ǭ/r*Ev`bWc9F5a#ݭ@z&^q;}fV& ޶쭴j\,z*`oSpAbke[re qjX9;'+4 _thfU_s@=h8UBਤއ~,ԒTe邝{bD(W'hk 4(.7ĖL^9/eO R"@5_睸A. )r1yh>#]+LjIt`{hGT59^Ȑ;r ܦ"#ٸ|20V\D[˖PD͐U%-umq)G{Z_X?"5.{5XU9]PKWՀF@Ba+Ѹ5mۭyU4!a%G.Wj88 4v{aBK ϞCެKERziȶ[- >iɖ }7gl|fa6C=>*xBL<XIC^:. i-uNAU-!Z0| s ZhOG*!\8sze!VA+oeuZ4V꾉nkwdAΠP]TyA"oן殭Jk?Ӧkid=~S6W'w7ݨ7hމ|<,r_Ä^(smң7,?)彲&4Hs?tm 67b2H_Ӯs4>~c^' w PyT,Ku~0vBhQH ӱty:yG+qϝ:}n[!C[zKaW^H  4"K-.Em6K*tpp8m $9I8곾9(&Y ʘG`QaIoz]qz{Efܰx5!5ļimVs08XEU`:I:E[2ST'I€z~1I9=urQDo9/5jz}ؘ}sCXlRtr=MW>JY4>JYm]F-] 1V"`Ѫ.4ǻ~cҎݖgn(;:Q˘ŕ<1MRG4/氡J!E B)zrtjmCmvxrc3K]LOA6'?7\ٶ~3Cz8K󕺂ijFw/c۾"q-r˹?ՓjSIx ^5yɶ8]c(sBH!@8.;6=/`t38Kt\:*"G~o+pM2PKVL(q!"Ri5C_|Ҋ,j8xh9IHR-&qћ.zsVi. @"8(NIcqWUIR 5aR6V*!JEY~&ҁ\e!\z)ugcX;,kȄ5X mlMU?A#3/k-7 #fpzĪ~I(D TbG<aup}n~ܩ%'>U{&J*T_J>r̎YoCB87]>|0EH[Ny&dp iÉn[: ̷$ӝCÍrI_aEN0h )Yje|Je :[8YhFz J"(Rݕ l=,LmEQմuvELNID7#u A=!.خ4d Ѥ3:mt7Xn`nA8>ѮNIa 5Wy8IbfT;H}m2mQ9TU8=ևrfϚAiC7d8^q\i𢉁ނп%В6nPݨe(* =zwF?-hmGZPJ$6a(G#+Z^[]=hqFXvɡQn)9L)(dxR{oocyR:*H}8Y_×)tRo'lj>Pg;2g6טbtYk-g->N_O|ڏ&CUʌf{˩.ZV{:4'o+wy{u>i"#48(h\M-}b;yH@9G1 ק _[VVBe_Yn=pt8"Is#i_P#a34}vPb W~ 0{#XM̃K"h1Wx# s~=E}1 e+;D{29qW*Tppx{l1ώyBZd7⭹WP(^'L6*N/KP:>Xl ,M(џ^Ej5 ȯ@xT8)ѯNԽ.`w13",/!%4\b¾hx/gt7MOdJC{wyliaw1,kKUP'Pc" LbNz{gMuP7Tn1ࣗC210i҆ я)D+a]SΖD~qEZN{\Y~W]3NDr72Y`w. 9)<(l%A_$^{ ľaZj*2w*ƕc:1R2@MՂqjZBOUG`U 5IA[XQ)-i~uŮ~$/Gf|:c_ByE7Lf]Y0e:ҙ1&%Bnv}t2֕#c5kR$`Y4c;o.8 Bjp Te8+Ӛ.m֑oX~95YH ;|8Wqb\T[8J!% e:%P&$~݂!+ee"9N3L88'=i} wBj)3WE FC/׷y O@|z۰[Qv4>$IBi|K]Wc~B ;" h.|IƋn?曚[y y+4wQ9Â`ߋPi"Ш+Ttr6^>WW@;fN] ӸGf F"koĈ*d (5rēdCDbå4`4AT=*1wqHfb:FLP<ްjw^DPXyC`´OҴt:s3`ޚ_jmcI`{y6']Ϭt8ERN$=A5ud>oO`IlMJFjP@bp~ቩ:*g39{= UBCk¥|Zr)۬19ꇅ= KfmD/aĴƔ +fg!~{Bc]16xZЉ|oyP8$c*I*pý }cy|t1hvScn*"OiY|tJ]e@/ [v j4=}°gHb50|AluB<]c? c*c}c۬RXVRnA7*p7 gO_nB*ԫ3o/s:\3#<7TP M w~fg;m]ߵnne|H*7U }ΒplwGZiWLkʯJb| dǭrEyx)ZdUU3!Eb-Le!vIp?cg\=aXU{8Lڄ1@+r8X;v$FQ M?tbcB]1pFye;K'9^U!Xi}o \W :~L Rg'"GSۉ=/nH|<"%x<!{P t?w}R^W>^zSaJoDXW>Z&KI+\! l3ש\/W h$uSakbJK`:NU&w+ߺ#Tcpc]~d`ӠBݾ2O!tvwpL}_f9b=\$rB@&^:Itj%aW?2=;uً1aA 9,&z Rt+9a2PRF/k3_WߎۡZtcQ:[*P1X$޻҂k#²"OR)MV;}*J%R`w9о#9umYbmk8)9jUw-TOA{k8Ad '2 Dt]r@1T$2G_uvz.ΰ̶y;$dYݵj0pa8U)3͂2ۂInQV‡ِu],>C6Pf ax+)Nv [7DTj4?&fѷ81+|JZE8 i𮷄5d mz.?sLt:qքFUe5_wdnްsb@}_oT 3ǒh~OKX[1 $vSVɡPr JhjZBnD^ODqvAV|&qgE${A>nio{ejjh ӄHxQfYKwGMzw2GTul@!d]'7=Nabhy REv:K⋣b#-cI?cl0 T " ^/1*"aQ6wOs4X+سYe9K<~t D^BCk;#}Q]5?')HjkXVQ:[Y]t+DЧje֘ }G!<tl=r, }5$i(XOʤ!&R( eJ  .26du oͶ޴"*ifEڒ$ŔLA>l`A敵* 7ryݢZ6lTMg:UN0^\u5:6=?Mj%Oi9I$P>XЀ һDaGsT{C:j);&h;mdP#.8G[S#EyOFQK=;T~x 4w4v?VL.E{biaLZԫ ,prx{=(qA=K rGJ֠t2k j\zΙU aM`TvQҙ"%]/Xdk,3P-4es+ =9maN~>)B$M86Kƫ:; \kƫ0G$c"rfBWkF|7D 0#3JfABKҴ4Ca6jHQy}-keE2cd$?iXm\vx⯺'2E=,8qxPz[6_5Ʌ zT1m>Hb>gfAVRtw <' hM$!i|42F9;y{*#6vI=k8[䵕_:P.?xB̿>s+0"vƥ?/~9*Bsn< 'j>!ݘ2{ÿ:;t%jWa9Ee'uJh_3Xt ղFr:$76 zǓd\{bkjˡ fqLK!tDU\? [m}A틁yy -gqzLk'qI;Qݨm!%5&O d?Ue84wsG>ۍL#O/-C3UؿUC^`֊sȿy׷3K) Ntm>HP|jw`׈i>.kcb{4;peϘ> [HaOa"/8!҉ӴQHz5:ā[i+άk|TVڕE.h#[O;;vb*lƛlk[ͫT@/_a-nMǑ(51P4cBac3=vɆ4#9:okեtp6ZWP+t"hdinuSf&a{XE>' k楶o !hД=Y6)gieO9aXI(./$b+gPҟJW~0eh잀5X["?.[c͟rH !0]я%T͕f%!ڔ#1uD6ENAkL aqu),NI9xÄEb@c{A~glVrE ; Z-d6 r!(sgd&ڧaO0pJ7>A(,,ކ) n?9Է2r =Pr]8!(uT9"Cj/1H48ݎz6oGyTťԧY򿎌PaRnZ7g1P&>aI0@} >r!;cK_ZyYu6*'ПpQu1҇: @BBHM& Wl' g6qr2VqBW*)U֋b)JF: fwbWQNw}9%I 7 m6`B0ۘIjf|=t24oEӉud usyh*Uն131Nx` JQoLPlԱƨ^5>x3T z7e5CPk؋ᦓ V Ԫg*ЋAŒU'P*I,><g %,p >8A'(-qeI6V>? z.~ͦE&Tc]_.ef"f.HT"2E J'250QYhܺɂ:ǃ%qq\<&\0ӻvCnhJLb*W(B> lc5F}q%IU ?,k}zɗL@>M!ĸHu2.1M^Bɪ28s'7f\HǕճ $^ݷf8ܷؕ?5"֛97o}? z,.}lÍNg+ `]H>R2WSՐSigI̲-Mq{6AO Z阅gӒBWU"|g]מ9N.И6yd=8;䜍kތ 2R7lvرW5%ӓ8]csOMТPqVajfF?_! 74JG;-pnUI*g,\ f-vmnz GuU[fBr)}u/ 1G=i;0P"> {b'.M'zP!`$OS+KFX> uXZFܥҀo9/h(_~Gƒo60Nn+n-{X\]oKEb<'9AXRң?O Un\֬|yx'oiZ(D1<.8;R5"oύ %O0AzшI$ZrN""K-Tٷ0} ʨFV݊@)s @ÇZB/CG\;zi9 @-tKVM \j"mI"jP%4Ob6lFS5/qa @U"zZ: %CQld;rni+-Z)yP*0 ;Jxs}0XA )úzgat辞h98Z=⺇&#z{&eiΑrinx0JX݈B+| ~[^솵X1҄p',&%]H1#/RhbpENzzOi7訁g!㰠+4?Z0F[ZdN޲xmvaչ*jC1JC$W43ykIMAbkW;|iOW*`IWVE=?ؿr)ͻn >>MB n!;s`baZ[#ٞ@V\401VOhG}rvnȒQ8%pOCQB`Ia|>U_ؿ넫]GE^R|tWySdPxT&#ֈԈ˅WQ2 [KROd(:JM JU,}p\\R} oza!(c8>0o"|bX|t筿@ r*n,.B ^Ҕ):HSʥ8Ib`F`bH!Wp z1<)=操E*s̴~P¥Qvxop ﶅ{a&XW6P2(xEU;lp^~I,+3~$$i)ÓԹׁsOKyS%)pp Bllp= #QR7'M0c6CFKJF L0_ 7)`}>YZ[ :]m/->E.]>-CYK 1)m^Ԕ-^u>Kh˿Y7U$4kmLJ-BNa4 NQU=rӱ+^"RTAOK̲EE]dߌ O8?Ez[o4>)NDfat9amGcV<]Q<,z0 fyM)ri^8sp,!?B)7AK)He 0Ȟ$KuԦO*4%~-ϜЅ :½e2ֵ)9'  ,:A"k0eg;G3G1 A >۲jn0}~7vx];f nl>3vZ@,ڝELNʢ\zWG,jlp Gu>4];./di@Po #r@C7Iy]|P2p$"1מ)5"K2o6_엝&߹FуZϔ\k0Oxz Yw.[SkzFp"kߍWV2p}P̑9;2_I2VŬ$Y[(A)A=1  ݙuMjq/P1,]c9\)ca{ޮy$Z$HjLm[= ULhTTC5zQwJ1EnYxf[jb0)]KNr]ɍ.O1c@dgՑ|嗧Ǡ$02ȋQ:ͷcx1'oG1X1Xdk N/&uހD l;3_FW[%'ǝ(O*Vdžiĺkd*2@MKz6fYCV'ѤðFkAknATXnl׭/qq`|~Bh`5!"L=EqNo8K0ҏ>L6wŚ-Ӟv'<> &v"do}eFk~/D!e Hh(=&lRjO}BAxEOjrA,d@.jՊ@sv@di `9?N>wg3}]7p- 1#n+HP mܜC8cC>2ߕ-G 39u`N9/]ב+J3UشV81"#w gec??#Y$*y 'UzW>Z$%,Jgu4VI DÁ "1J=cS7N&n. u[ O1b"_HZV]f0VVP.eIKbQӳ -2\ *E"_A$i^n^ˉuX-wЕ`hZ$)K.^N-wHŌ3#P~K~ J Ư9:bJ؛VAWcsv3f5FEk}Z3 ͯ)"^ӛUK;pحϰojX(đ=nLo-/D m9\3(B,5ٺ6W;!# fNJå/haDs @4E\GB<.KMa0o7P@n f- >>Gr7C3X!*1҉tLhpA+)A=P@^0 VB!/2 ^0Y`;lËXY_af}<\!y']l S9AԄkwp D5*Zcsou$"< +Nb$E:u fwßh/Fz!&|XR73К9N|&F9O!P$ "']PSEͦ-mC ɥ$,!RxDrqc4__XkG1r1 du^_Et4EoC3\#+lW< 6=@$g8硜 !lPY$@H!l²ݿXdH 8:>ϐnw'V\r:1OMYD­0LM2C16NK4fb.ks|>] #-t蝤jxr<0ъB0VD5,p"CZIQe*6$s:R;uqppÓIJ%/5#mH^9q"5> }'ϫha^v{ѯHvGUk0>8?[{a>ȵ,^f tl{'e" |,dtZeJz&zI(e7{pʠ\eRXYJa"1=piڎnjdOIʘ@ :"ܛt }_+rȞZY`dF(߻0RoU4mxdtʢwo[íw}.:IZ9Nlϐ[Wp^@gsat'/HҌ~zp$i#KId HLlcr1qB1'r xQȪi+-=s/G鑤0}rP( {d@oG+g&%#=7?e'2i odGj4+$B^2=إbTֹ2n]0 Lƫ4 ٚyTK+}6}ʃ01o H's;F [&u :LKX S66R %7ѲgCyDѝI3jxfq*{8߮n.HF=߄'JA|Ӌ-^Amڌj4UQLʬD~5T Y.[\`J$w):Hl|L0R"pW 6wbV>QQ+Rr׿d!~2<e(Ɛ@+RWWK(BcP#b?^=Wςmw&BpRyl{4뛮!IlV*-:&F1"7]zuvTAeo=\TJw{5/%:a4"Tx=|ܟ{㟒dG@ OgR.qQTa˫1Lf~+%d+m2STNoX+Zrq- ZO#j ŕ|bCxޡ]r\f Zp:[RJR^3bbmOĘbMkOlzpK&h++?.y0A3/7YwBnbIѽpS{TO|Gpdϵl~d`j}z7y X@̗ۨnˆG, cls%6=.oHIoquʽĨBZYc KR'2 u["l613jr >(T?6p9ϛ+L;Uqԑ  D[ӰFXwl\eVhjo>6%;N9]ȨɃ^Fy|˳}W!9Fk7c|#­" 9E Gu@D,e1GG2N_A|h&^AS|ܧazsE;{YJLkqgFžY ՉBWIإG.-;?f,=7a'B|)X\/ߓB<\͢rCڰ?"gIBGRVX埓O) }Qw%UA2 "iyd1uz=ޗ(&m"i60IcjG߂p?BFx5E|wߣ5z ]0̍? ׳'9hTI8; 6ՎhSӧ(ds2Ï5$zt>W7>[C阢S ЏxG,v}'Nlip:[oSkl* XAGP318ߨWQ <TPezz UQM{"w %:U -3&;Qsc(/ o}߂޺ u<<ɿ-#rjtotǵ>foHVw. ͢Qd%X@lP<@jȔEq4 0olZDDa!C rTa 7'+fRbDh;z`3'f%eQ6Zo \M/G#Xf~L zIil<+8\qj6,Ӎԏ>%AMKLB.]@R" U|a J}7([>RZjdQZdŘޑ <ٶ-wz> G%&}[cdTE1X!ÔUZUJGu3KXtwυmRgGo vL~SlRz۔seBui^E;a2 [H6 `[HAAIcTtsApjңl Mwrr4^!i:sy],%ڞ%oTk $Ѳ|a֦q N]c2a޲}yxԌe+G^PYT5b2i%#? !{Y"61";AVZ*}&',C?8ba8Hwȫ6-- mO(Gν C `\kh֜C<{4 .\%*|Z 8,_u-W /#1QɻQw|ʬw\yANE.)h:1 Ȋ~f>8Q+ c-] 5CVhß>Gi.噒jFqoӡ66J* C%ߐZ)Ѯ?-3ªLY'ETyƵy­ך\1i=_:h%I$p37j*¶S1׌G9<gg F/4dbV+{gmw5 "^{ =-ɱ(VN :Edp2Oo. V>Qa~veNٹ)l5PpƸoA:؅l?ޅ#ŷpB֠EAfA@c&,8X etMLu\w,uIiH1_ "Xr3Ivi#& ڠaO^kiL S ͼ6㇁xVĜTP jFi2WRVE% H݄:jc'FsD-`3PA m)+wQOxF^ ,{9&CoyOtv荍oε.^qTDzW̰*@Lv{i/uǙj,؝7,// f!)G|~ِk][<5I7X& Q1-Qǧ) gݖc>1c?g"ɚnB STj(!*dGSaw ݀0.y{Aaʗ+#zF[ )Ć?dN=FַWIzNx퀭ʗ{!pjVQ-CjuqXYl 4LQr۔fpRČdf`2PU)gq}8D dc= %G yh 6]r]$;a*-eGd߰3皑ZAx$^GwQzU9D߰}եf+l U< pa?ʋQEGq ~¥!Th2{rCL4bC}$vm&&J{p@ɆWJV,^ uFS$ 18ᬦX i H(`S),Z: O~vP&'je3}<4To#XZ1##Zy0AkFV_OXwQ7sؙ{^`| ,So sau Vx!#[dݟ:F4$œ}$>mi繋)ksZlʨKԒPؤ,Ŝ5 [eI,t,AT{,u⒂ Pf?o|R,;QxCPf.ml85 |zTDx=.߁"H=4-842yH0e(=>.PPHq9S&{%k'T\ Ǭbpx50khQcOPeQ VO⮫[Z4goKd&~sW`^5i#C,3KXq|ٙj]>?/1+*E){? _;'N-/zXm8 #ƾ}H.tHIGjiSTg?_%N+{4bq}1KO|q8pu~+nޟm[pc(Lwc׏b;!)8S$mW`lрl&]"*$~TD% \8;pu26$%Lso%~^W|Ny.Ao/_m[/! #;ӏ`Ta٘wȏ&"b_v#CA d̘ WV]zØKZsl UpO!l(gZ9@5PWuW75C62쿨xi F`:=~lIE!EU}/똛 +v|L37ֶ&$AcVe3MR ԧoڰ5]rUi[J%~S (7L QF/XЕ1$U)\ೂZGF>SGA#io++yB&4 wzY 0ә5VW*+ Z`(_Fͨ*6t)(l7C`< WJ# #c7d aeFT^Iǣ3L0(!6;}Ɂ?]&Lqͻ]E/R & Ŋ=%$B[aOXb |C֑Ɋ@b@?F'Th0CMygUWG;wgxiuyĜ6}k͒. /JhvEwB@,ç|QQ"n^pW]o k ߚIz fo݅.,3QBuQOVo!I]o4?"(b! h%"a,;$63Hy(#De0 < ] KmV\ tYe$ޚb Ps8PԒImbj\tQ;З6 r7NnaCF%8Kwi!9 .}Nj'alCHdgg1EPsucȉmb씞zAn\-kL.- yheI`b$}#k3mt`N9#ՠo6oݞe9jt >*@>貤Fd5==yeGŭF4t~tJ{jҘ7mXoWJ͓Iy\k^&rw MA:W QM@$^0xL* dVxYs, V\. $딱~@%D>o.dG=YpRU >AC}׸\gFJ 9CL|uwᅣ:S _QkEo$m eE} "p@>,kݬmUځ*|dYk>J*/80vneB!x)Nb|1 'JfFdN!b3*Lgߒu-"͊ eSO2b nviȒMj2H#u(0tv1 a M藝oSʁO"yhe T+s_Bk3 ;yK+Zb朅•|>]?NjRRHdMh <:IeS%ZL0`GsBSoq9 Ro ?.ӣ[& &W3M3#4[ش:s]$W|>ʚ/O.%0ۜXR0>wbW{뾦!ksg< p{?hVvR+t+{ G.*`ۧS<ɶx.o48]md8c)}nC[liK2~lӏ. h6r̕Y&t$8lyl| Y'̠tSxACbě"4KHJ6(\WO{Ei'V`{b^Z˱!"J *x+}.os5ٞNq)m(gnP$ d>GZ^/pX r@w5-ү>m $Pȫ'ORmPJh JW={as㔏4ZlIgzw瘜~=ry5}yV{1bعF ]Fov#tcCެ᷶t5XwPRL_) /\ϟd*~_Q jMB F0~Pi >_X`N>{'t-SKa^tUւJ/s!@Kwr qOnښV)rL~t^{{Eml |+ u1$GS沈hk#t sκ]}~өC,]eFJÔr/߬d .K *9Q;B=dI6^QGMEbD'*|Eg|HpZ z{0m@ cߏN) O&hJ۶"$gܬPh9;JM~[n$Pr3prJmX,-3mSK4X*F>Lx^;uåfA鰎)| I8@w6y&& kj6 ?Sȃ\ Cm5=YCb`:4́E2'0{͘ V!W>N>ٲ5npW/23 ǬRD60x|N5zG͏Ade0m38gkZ|U"d\]Eм*-#C>倒-:w%s0ŃbO9^9h+e25"ǾlqlA7(w2M_6MC3= ݂x8󶹸7>%>7s6q`:2]е!r*Q"քZ^I-(w]C R f[61htj^lH" }ץ2vw{hg"WX!M$1.2qēg9aY[˯ɞm_ ]yNo5H~a뎶q0Z" {;;:pQ/2q s;7?qe;X+k8 |u3 U*lk+ץPXYu◘-s@y5X,1h [QU?o#<1ȹrPpV*s8<4?V5D[ove|u18q6 Ak]?F`] n:?XW?v0!C_ LC5k*i 1LHNƑ;D~6ļ#({7nu +ȫ -༎XLN@̀y9|t%Z5!VE0P!;ߠϩ^ ."m4`蔬ʦzԼ6Yq±yT%245H+Z:8KM ?Mb1Κ$!Z* B*F.DA7wx93, =%Ldi44!jpb%JMSY}~i;sg/jPP@-ΞXa}\>xFYD1 %BK?5~WFtRgJmmW P_`t!|VnL&+;suYU n|c],ay^g~~*Z&Lћ1ޜ~L㤁*'PG6 ` e#AʔX ͡ϳ +Ї)+EW3դ>8K$,N9=m6QR|Zjt%N奎XґL*a+ښIDp-;Շ b#K2ȉίU/$pbAJ°όGokhF0SOTPG(mQa#3fAL|pݼ/$hھH"IS뛑a[iA<+m'g2@euĉ6_Ke|Kuߗ 4-.X-5Z:]#f% ұi03ʡk;b5J~1 ƾal eGO%Ft8,X)064]Gz}>ȍ" SCUWR[|GVTk Y)lE-a %tՓBؐiŰukt2w<Φ|9h QR5O r. /"A Z8c4߆vms, ǶV3ztBSoE"Q;&$J*K*R%hVQgK~7W?-) eYΑF5Й7IۊFL_mPC~+L X^eH,"U^q6>gfJ@]&_Qk@tt-I iT DC9n$= <ח=!(Ë- iWjgK|dW?2]h*_vˤᄁ4F3|}U4 8g3TU\֛xq)Lz{5Ʋ">^vL/(⛈>@x1z5;zeh?dOiiM~ ! -`Au DqGmh|2#Ϳ+9C$&E筯~TޑEѮfS-e\ݤa ?@@3j)qw ^}۴.)$RJǪ{S.] *c?r}I^q+Cp&FTsѹo.[;'F14O♣x꥛C4Y떁#5 5" ٫|VRuUhxOr2DfB .YH:8Y(,.qV/.4Z&)=Ĉ4Q'he{ >}-qb.d&/[mˠHn;wyAyۃg&<7kN UbF[L`99g|A )nۃyz%g5yD)zEg$Q|dúoy$o-4{\ݼ Teh V>R׳ 5m낻CBo, 9WVIeGV^q g 0+Ve i{ .YH%axDX^NPKߝuWa^4ydy2kJˍSF$|wq j |Y,"Ph!͛x.s.0mT:;_@ݛ!zi~?3IE{ p\4qA΃A~AwxV' 4BZ`ʢ$h]JK/!v*2#c Ӡ.:\ ~_-9lM|̗۠^nƿ{B52W7_ҖC=(g7h+{W GocZܲ]Y+gʍ|Ԅ3ǒ)fgY{ȽQ~MS\WE]hn-(&9K?כą8s6A*!FMhM㴍8%@h'Pǹ,^_M>ỹxC9X A?:愠-H;G\!lWz:Njr(.J= K aZ ov7$ji(H/n<Kwa77SՁKzr10F ˌV1sh}.A37s6W#(6"? f;%+Z? 2|uLSr=ctZA-A q)k o _(ft!Kzg5pwNfb nh\S35fΚHj_֥JN?L+n_)B%Qzo`MfYæ|T”b2ulSO)0sJ||"b6]@0t`9q-f~{oa%8â1+GR]Akzy= N+TYe%_2ޛ<<-yݒPTx>Ex'>{mPt(8"[H[(XrI;)ERU N|Y> v `lW~rr"j06 Uڬn?(sݮ73bڱ+3eRڭ*OԗoCgvm0h*Is*pGIt8(;w-ATBi27A3j=! _uKx"~v8E]l^y#Fן, q@mMET-#Gp0E͕?2%L&-Si!ZɘP7W?R"龼g$3gmϾOs4N꺏cwZ:`^5u2쵬nM(oY+oˀJo.j |UK4"MM֑C7S "[e \DF|a0?h!#Yu+owαѧƀɤ$y0B<(SNG`ǰLje4cXx\H(>&{+3黥' ?ŞRbL 3K&My:˚Ȼ9:[ d Fʒ[aPyUlK+;^1lב +rgfq EB$3>XQ^r>[tI:Zx%ˣ0Z IcTLVomFB:FLByL0ڶa'L)4KdyfSnPMVO*ۊЇ/v?uspD2@#zVk&XE5n݁ZqYzx[_˂LsD.8uҼfZY O]ze,@$˱`zr&j<{Wk#x|:rYu#ֱÂyHNۑ ?9rkddb8&~ | )W_M=>"vz9p|Vh7$EOlYKɬK巽K{PIGz)gr?nd U4p$Vq|‘Wlj225Ur3t~e(oe k{0"d}1(#讂VZٛ Lw1ΛC m-&ij …i&\(uA?a=d^-i謞PHjJb2llfI$cD6Ř=B%@S}0z|R&qSŧ d[rtxw,G)p`1a ܉?P!<$DŽxgezi.qֳ8KvW=ב0mp> bVCyh3Ghǩ_n^<'Lkex[|0+`}J7nDw_34u)8SO8/KxDz0VPdd3b V\V <⏃;Ҋf9\$m75LbB0}Vy.ݔGff(0N*[R=0eĩ]Uf*@j'[P F g @UM; Ub#.xu{/Ւ~wefYLeߴQp<@9cG^涐ޑl]̒iIՄ. $3冽%riB2n;a[ȵ2u]l46I[q8LJPЏ줱Lzhc{Ku[0WC:HH=4+wQwI S%D3 WprAhTjbf4 qza>yU =e~AfCk5^Zi,#rf 0 QzE7XN n)ôaKq$ $aAk{ O-ջaUZX̉1lR®Blӣ5V>@R0}`ԄGޣXة{Kpg(6t۩6"9z{y[5Ls;2: r,$njymvDQ}fssB)ެ؅/BQX)؎`qU} pFyV',{$!>riλ|`doGY Ll6qPrLB9 .Wӌ鲄RHAآ>~5e$[.Y{o2m&ޙ A %)0T&n-UGs] $o,Jb޺ɜ FqQ#Vϕf A7$z: (%5We@wnaD-š(Gl1+X?o"+r~RrB}oC!lBTa \a^|qk8FNs\&V뽴~Ƕ*>V][ӭ$GفGkz)dEtu}p* x{!I7A>e y7Q>_'1bTꓙe3\XϨ9J=ea~u7Jfa)u/nZWQ „O:gͤ28BՀ !\/vT[Mrq_v^Gp)2Bൄ|4}ԡA[Ⰴ*W`څ͝=CKFiqͬ9 -B@ (1Ҽ}A"y0ZkuөA\ gMA1o( <ywPyHw8NѻaUq|;Y"˿p#2BxYlMsրuҎA# ypGz>}]>Iڍ׏wfaGXb=[`Z< Hmi5K6\1|t ~U#U4LmG--iD!&7a3! g'2"abjHcr9r yzΧ oѻ3'$VŃQX{@w>5*m[9͆ ˵rکqj6t}lz6} SFr%e/ѰpԻpi[0>?KOxo_&tQ s@]9`yXǶމ Xj(py:h{_ )Xx\/sZNVw T30e1DmZywET,B+"ԆLPU)7M}!pϬgx!{K=5/yK+ә@VnxpJǸjek,iA.4?j=pFԼaB-ָa*%R* '^gLȕ3b<$ST|zNHnd^%'\``=FHжD~H*ڸk+s#J/c}OD[s U'f7ܟ5κLї0̑B[ NY,  !|WbC]"U:rJ'V^rD͌&aiA7,E~[yXmK5n@oO彮Z1G{$9Cx0EnX9+\ؐ[wM/?ia=Y:p8{HLH/Ϗ4@7[dQECiϋ4\UlCN'8m=6C'd9TdB$'׷NP{F䗱]ۇ6A6/NR%;κZ򿑤:at7 ƞ!zdw BIm,d/sFl(LROB;±m]/1cr[ޮ4N;6WS%{ ]H"L,1,d*[!ۊMBAdI˟6zRk̸S?Tr+ߒ: dI}j.x]lek52G*m_5_Ij^xn:)6-M:@1LykA(pU"r@_TVxkS$wy ?=oEU}o}dnwНԋU|N=Fv`&Mw7-xfV+zD`ql)JhoZFlvlK<]D+!~fz4ٯ$Bu y ps>@+tv!F`Xiy-_ֳK^pjgjӥ5ɸtȼ9i Y\%vkƈ~/C[\OΕeD^*|{AI$ ef&#0.0*ùAq^?;HY酠f! |B7 Ӄt.. 2X5F+-Ji 4}e0㔤z0m'R1B6-YI$Fkڲ۱0T9Ao W LV(`ؿ 8 gFz[\"`hãI2\i{t}cYchbĬ…B4WYRD&yH;uf? d X [2VTU<1Qerd} qEU =6j\fjEܑb;:5Q`P׍e}39L\x*ܨ\\^5iNߘg(ec&%Txڟ#!YU&_&O+z}H9n+5+v/[}Vdd/N醲e$plmBL-eBYjL+onshr͠>xj6E ( B{ZX}3.8^P#hK3PXlFtŠCMBG,o >=(HheMżWIj1dH7_ST9Ɗb>KHSzd !M^x468fƝ5_bƓ\}/$HH Hh`4JlB2`,IלNMфm> #zwF >yqK5d`jT~~qsl,#xX\)D%`AO&+!3F-ǦF*'9/H!`Xf* ]Jꝰ%{f=g5:ݪ5Bߟ <Țrjqn(΅*R_~2,t ~& D "v{Uo1' tmb+J hpR@MU"!~|lHf*odQQNl+9 m$qd|kj2sGx>zf:kƐ8~V[ي$D&+2YS̋[7+l˙hAӵsh1))(u#_X7Y_/9/T]  X}\ܽ~n?`~)Ih[q<+@e#齍Npl4+p=Ș*lAp^BHGPNtzA``7~ ފm<@^%O=B +ɑZc\|y2g^FS7+蘸7 xCe~A`}$5[D8"n4EjGA͙? V˻UӿȲquaݵhHt阱8Vc\X~0G=.VBh䥖Jt *:İ70A˥3^s\{@*w( X'*>8ZV53`,$#n9Ghj4sS7nѠ3ced_ cAz54QJQ|25p1Źƍsf Bq_JP"`6CRw z5NEu(՞'ֽ3y ;:m+4*|nJI TmҽĚ::xEL Zݠzt O1x"?2 :Taxb&HʠƬc[w6hCڬiN~ЎOlss :e/1 0gȢ6Z_0&N(okz;SFp󶕣ZtΊ^>;qh#guzMVLv M8~8 +i~^iDriҟtp4yS Sd~#H!c2=}W*M}4Zo^!%L | X+l8s!8Du.;BN EG6*+ &0[_O3:e+— tiҶ?.82'/ Ҟ, pW[R1]JJ8g,~.[;V2VMߘ_P|5nK(xS&sQ5zܻb8qmy-8zm~Rs{̗K@2h%{3b'AMO4>-\tJ%l=\ŶxsX.Nf?sX KKIW. Owؼ`"@[ЪId4 $M:]/) gn15<<;~`rϗ ?krzV^!ñ$oN ["缁r(Tum !)axW= ys6'@~vB@N_Us}he#x5MЖjwuXS}b'7"@I>C?ػ̜Njg=HF&ܝbb xЬ/k^6t}Y#`^.4ϑM&0@5$7%(!wau^AjlghyÙ0lf1.W8y!f!.UYk+ks#ϓмĮ uigQiQOe@T3e7KXw01[ص$4\@1:faxGzKf  7Ci(;0lB6VeĄ/ኟۦd\<;hUqsTƫ$B|˷r)xY6葫I ){URFx}_f7|.z=֙vGS uŗDN(0`Aڜ JYCnYL@=;ARIrS3l{qwrٽz4!KNɞyD`@}$AjZQ)$Y ClJisn0,s*⎑}0myOqTS!u\Wm;i6wii}'̊=a{6 yA,?:k#(tBWc -lz;0Ff~ \[cCI9ȆD'e65z^sS`>BūQpjveI%=uy'a4sѾuGK:j4䂣UO4l,IY2(Ŧ-%]lVԴK< _@mj-![cvHwŦatL~6BN2z:÷mIo:6=N?-NfLF5B=bܕ/$qGO2R.{kw) FzR%,Ѻi9Y=Ѣ`Wl$pCȲailIr A'ObN3d&lDmmh̒>dGKw'imt zg67z;%ҷ J#lD8jcE6#nEG6/ ?^XaAXD'p7Ы:Ɠ"S!cAwkgM&3"{2ꢓECԙG~k+g*\-I:c2Y6?.Mkݴ_zC&0gdE "ch3?`E}.œW\lBR&T0b/q =EV[zCu[']{_U}qzBi`x Wz;%⤶3b&D}oLsDM-fEYU.SRI+85mؤOr+cRPry)/"|fj$Ղ،5'(2j=F+3k}e 5ȁ҅q,k͑]Qn%J}ArRi][we)G2p٠Ɨ(f(Die2Um| #"b:$tFu 0Y4X,[/JK ֯e+T\K}i iHZ=iY<{-~Fg{;̽){eӛDZ_IH:1BdoeQjqm4rl>v <}Oĥi墭Fhx7٬S.!ax6 ; 7_=R0Mγ;<40,.x9\?[#T PsOm3T_z4Vgy0;17xEOe 7;m;Y'ݸ̤*>fT;2_ĕoW *Cղi”!Z"RMܒ/R~gh6ܸs0l S*G<Q2cc_!7'3bh~ oq4$#T{ '*7zUrWFL1)6G^{E s(SY~g7ŢIzX@[5A̜֝𕅱˫3潃M K*0gPC}en={R`r82\̓|^GC/QK *639&*9LoY{EFKrAcW]wZ?=A0ހ&,p"p-<Zzwz+B@$=:C?dLm3-N64mz*ݱ hr:X:,\\qpM $,Nh{]ŏNH.p4< B&zƌ:A?LN^2#ij-057y4ޑJHtZ޾ZQu/Hz8-?gB?)+L!ٸ#`7)3$ "!ksJNzA\!!<-'?1=`_Ծ >QYAg7VCI`I @$YY,R>?lZ1#mɗ l#*%Q>|CAI;&,fX;Akh 2ǜ3~6$s&`K}ҷvMPJ3 \%Eh%79R4jiSRf@"]{hWkr5KxFYF-ma^Z UJӴ1s3(6(] wLh> $!in;(dpHO34a܇B)+4fHw9!ʧs35֯(PbNG[K2sEvd3E 3Us:~`hTqF쪀07Ej}HE# wM?^r A ̷ilᑃ]Kjl\b9Nqx,^P˺[kKGjLiM8C[4NV<}E!i҈d6Nڐ AjJURJ]ӔM\4`vuG |`dc@q=)یjE@& *pbLw(¬%f&0:Oh4{7렉AE0s@DkXg6@m;;H"Ŀ@D3juz:YҢ7U;nBT6! z'o: Ho4<X=Kl9_JiTskٳG4ޓ#~GB/O?[C0!) rbg(7I4:m9v5; 8|92/)E5SrMtʽXD2[䂹,m92Ez]16x]X%yԥΙ>AoŁYYׄd$1޿PxJwxjM%n(:CڥStK~Ju1`^rX4B[ϓaD>.[7rWӃo}}AI -'^XluN8J [? gt_>kę =Jq3PxE32nMD0X?Þ\+qfI! `иkF{BgLcsc?#1}5~<[/%Q%'9xx'vVOe2 T|uvoʝbnyN_7J-k`9ubu8\P]l]tߧQ2)_ T,z~ C8/oF~v2$3O͑d&ST!V/FӒN% g2RGX]zC A}<غd|VpVL$kpP* ہd%̷tVqzNrN T4{’ʘC4Ǔ4(T@ڡdHs*#{)"|_m|šJ)]*2ox=n(Qr|{ c6āR@d aց}8+VBkDNnE6.BFnX UsX#jT[7"lS3(RQ8еєيLkW֋sdJz= Ae({+EL<ܭmK0A:"fWJ'Zy3۞Xiu)WK)Ng5 ;tC@_gv֬>8qk/ODrV-Pք9 tr  > #T؇]) ʅKtߤ1?@QǪI߰q՝_9J󠭜T׷g:#x%b@q !Ϭ v؏̗DOZLhZYY[{L7*k:8d FjYG QazTvOfXwXsrȍ#P1`OBD&+D8#AT)f5ZߩIvTZf%gQvZ>EA8+\:`葛w#K@w7qJTɸMX4S[Ey+*CZ\GΜ5% au=毝@QIJp& ,!p^X}ŀsS%8N,="VBTIY:9-,rR<)&&ջ@tnɔ4˱L881^P' auzOW!kO.VRŚRIa)tnwp4i6NK 鈕Hchl:qucj拮۸{5߉/] vHfœDV'CBD3)^iU*X|Y/~$I娔+ " PN83+Zrq 1 USFBĄBQPս*Nf8)M:x0&.Rņ GWQf +yKLpDspL[]iE5L~QM0MU@ѷ7xQ|z?|@i8Ivp-!L#S aƸswH cSl^6c3ӸƨҧXhv4m#i{:A?;z?v$o;Fޠw"V`P!`rb"|ol7n`qڈYr&O`5ɍ %!_CYYL;hѭR?+ Ej{;AW= bv]6F:J>+dCJFыDaӮar&H 2J"ZtWnV61 eU'pw8Upl(C4X G# cSrݢ J0f3ƴPQ||zǵ5=p Ѥ|CNdp_qN5@lvSkz"ؐ mOTeb&xVef*0BƅrjօgJ*;,|%lڰo0R! 8wzn ʆ`w}i) S ^p3MdLPZ)Z;^8$Y95AZD] 00RZ75 c:ɮk>aUมs0b5qZiZj933KzF٠sg| w GEqwДEVH)$B*%E*@ncގчºL'g eng@fJתGq`FۤkyjZ6V<=qx3߯ $ lk|`oK(1N  ^Ed άϣUC)?S:ar 1^i`ې>$7¾C:30"^f\ yRyZO n)=I@自y)9+Hw(#L+yU&Q7X#dt,DekX0\Nޟy9\'-2M1ծ (aᶔf*hT{_@MEЩk#b4ZG:1 EUJ<=L.{A^pgQh1s]!%3)|P* {@10 \.=3O_W|i)ܱ]:luPw%h}$WIR{~43bmae!G b axsmاv,J#mO>g2m(!=֭B͋k㭐7), 4c92߃&I :-}h;Z11>O mJ8z4HTWr4%*Do5ўq(a|]|3 ×NN2d'o8O?g+wK7y @fUUoH~' e q[5I^ Gqĭ܉z~zjF6ⰗfǍvD ɖ WD9 VUPS=*@>̐oB p'xc^y/_}1{ּU`K.6y z|kl/g7sF6~#sO(xC jHb yHQ<:3Y=p7RR.Ƥo# r]Uĥ3kC<7g``uZTH6V5c]4ŞeW~NıL 3v=>9]hj~pD %]ƎD52!z7(on/oF@)uȋBH[^3NsfC9~jw+WD34t ?LoKD DZz59]<̰W|%r]EM^$dN{40`^vb_߹~Vaֹ~Bq9TKM EbǠ'XESO?I ":\OHt3"S(-ĔǘN\x鿄HJ}MFVEe&)w$M.rZdӶ(+oU5)XF|F`o$-Evf skRN.p.@dԓ o 1FD.A9iAMO9BY\E)ǓG &R`j\i7Kk # 8w] K41t A74MO¥F[aFm .pr맒\n3kIBIɎy۪L| /&ZXtjQM魷,DQTIH-4U=9X[7vꐪ:@̞IMhFqBx?,* =ǻeQp/R6 Ҫ,[]tB'ͬV%K)ix oawO,OD[u+S,#br2nZ;x%]nlx/ܙA>l7cS?'듮Jl\vB-Efb:,Ɏ)za*Ö zr3cJҫCOVV]O h6CP{cn>dTÅ$k>Is ŢP889rC!Jp5 U$eӲ]Tq:`CQPLA>>~^:_r-ڳKW#tYcq|Q+ZXAXDwK_[EJ̠`\ϴsSndi\IfIRBA9YH}18GrXd_v P=WWݠF3y*ZqT [AJh%'@X 9 V̙;e`Y7h: k3Ρ=\k4l熝 J>ܔO}j1"~>^f.3Mpæ%wFUI03BC5 bV;I\L|WQ'ۆځ3//_u_|~bGa΍u,R+jK몢G)h4>,Ǎ: .Wr :P)A>(Rjj775-Y?F)Z)d&) k-NM@ #Y97яS8 A0 H=%[j=Yf_ܖf9$˂Ec]dO׮G2{6O~0s7&72Tuz UEx; `(;U"ϸ(j@ON/Bj&rv +rP0'mW'@zݥ#wbnzJ?HϚah,a!\=I͊ U(CM,Q/q~8d$:aKn`{ro'mʈqk;T/(On=m 4qleĤol槩vja|gr]0>68,ASf3*&Ox2PѢpF[p>`Iv8B,tlbɱMT`H;lMuŒ˙"O6&]QĜL-ⷚۚۊ_xE$@5J7s>S1^":\WfEiSJN`"Kp=L: $~֗'vjV9:tƔ. PU%ay.^T b]6#-Pl!\M_٪nT"G9o^uh5@>8=p4%@,I3C I*bPwbK0mzCCD"R҄DCbX<}'f9&7 ! 6c)`R+fEO`r!j lO#C8/C.N$C5DN]w|fck*J)UI؃'(_X-%8~MI h}!盿7JsQ&pQu|8!sB7M|u$+`' KbT zBq BvE$U @h 2T]2weI>%Ayu, i܎(WwIf@ i4o &?mhM2uި6|Ƴԡ =, f􇏥 j)̩AR#AaŢ"K~msvXZWAyE{-%zE!\@R"M2ZJljks_VTI}ޛ)A}da0w%U & 3(,]VE3*"'22e;m$kqIku9wj<Å5.q$ܖEGtC+3.:D K%8G^x󱑫=ȄjCIY*~A~ vs>Y;ޔ3FBHf A_r ).kb3:+wDN=b0"ZцvH5U9~3>SؑU5=b69}b=ևt *D1(-t}SkGL2O/Up=2SQa@B `*?yOw1K$|a"HyTy|YP"@ ~8Ѥ>T : _O0|Tmae3H{;Mز[zNP\߿侅G2~2(YA"g;;UdIŝb9vz2ocZBP%^D{ 1QwNI#nPy>pW#'fB!Z+|5RL㜢͢ɃMeRYbߞ@F 9=ODsd"!'!&a&#E W h{t h5/ HN~#"S,sݮC–6@K0w {{6Vխsʲ =$Rp[0mANYZkO^5XEN]eAm*4-^GN9"ڎ\˜5l49N-HS㧞pX=vmD`8FIʜBWHIOJa@y-28//M ZJY,$F) Omߗ+e[{ĎB"X 2۴ƬD Z `7W (B@H,q]U:EJ_Bt!ܡj$`r'?#XwWܾovO2tacM]NJ[\Ymܛo16EƆp J7}µpmcG$6W(^gõ̤ Noe? ju#r`߲V=AATIٍ3&һx4B0r?*DM,܂touY9#ըx ނQ(Ŵ[ea$&n̏LF\QM@(!ۃTN)I~6d(xx[:*[ׅ D#yN{  @\I'e] 7LIonYsBxrU+&Q(NhOZ5BK'3:Cq1߃y×o[AZď1JR_u`܄HgP$ pSmἎB/mG 20cɎKkT6`k$2``]mu<'/Q<|g.[E!N8HI!}G*EIJy'W .v5~dbNT4a⏁=T ҁ^̚tNQn @=$[ؾm)īj?x7JUQbg$wi>*ƞO*eיpHL.Н \D'^B- CXFu?l&긼QlYZ‘"< :\Мh64Q=dm @cIlyx#JTIO4~^.-sKO֮պ?! ʳZ0cOO X/(h"!14Ӡ;`013MPdJnR̈́(] D9.|gdիa3AīI;]{:([vɋ eIe@,{A7:$KSh[ 9Ѥ|acDcor^6^Nߺ;SY(ǪhyϺT|x&3# `X O)1vs-$Ez(Zԯ19 &gzJ']VC\PCk#aVhuNVUpUCF$m9jnS [F߈Af+d>&*^| HorMi@t_΋ Afۢ7,›sdCd_tV ׽)~* BՁP" tNf"PSKko #.e6`H鱅lj kJ 1 |{dL+T-B<CN};2"m;9٫FAbr<0T@Wkn)6k p;tVN1 Sc*G (Q0.>y./|AQ/=E&p C.)nj{ko>6<jdR~Iµ1ڠkJig *USD舎|wM|+ԬhOwH\o-2(c]޵HW'ĉ!ٜ:UT<}QpC $I@n!]*t[O 65L%`(o'3-Dtރ-P279D՛ :DkRR_, jVg XvEH'( =ryI'e3x87N0NgF4dUD;$%]we XL4xfpWwG^a5 @a--,"mkx7 4Dx+v 0A~L'P 6%vsNPYKI`!,k1٪ t!YSH9/W2GBG0lG̭c@|87ϫf+'6U[; <{cIA،#5{v+%wҠ襷_ju1$ n'],KY=Vh޴ 粀`G[D w4G~\ f 62z52RnϹ_8)q#\' r(("shj= e2t&Nd+iA~`!vi-6a>>^vݶJ•3-zpW ,v=6\{"[*{o9}@vKބIi*uY?„K0-l%{`-/! 0PQmH(f$&`(Fۿ=&vBh'F|dPhmM|px?;G-uE|vz2?^U!) `u7;~\lR5ӺpOFL l}Hsι*as2WUT' aG`ZͥJC8?+#B2eE4 *y ? C氤LO} c0q_= $n d/q0E1ch΍W2x}WIC:a Is86JRض2.*zƋbq !^T8Yp#r h˶Vbb%">@ec#`sl{+BT{F5͋&kT <4m?8^\C uz|5aq$ñ$M{P@iY6wM+8BEy'#rA RFQlI.?/"B+ Ѵq凔 \f_>r6ՑSiR2&7;n jYiZ'epJ2ՒPe:-N"i4> }<5ϯ n,# {V!c"ٟՆEu7QN!'~ҟZ@S/\ؔО[}( sOɢW?yҢB|@B|[<{i $E<-(p-j1~|u|7WH<;R;43ïp-URa}V d~E3ڬQLL8H1Gmj+(QG ؐ2<ms:_k7O.`#aɃYz`<P讧=d.Yooaҿ^9RD*)5o0&7 "=k7@}c6"c7ՆR'd;_`uā7B3[i!6:i(!n$̾0 #W!MשE=Og"xәURpJ5v 4:šgܸFB Bj+ĸZb+*L!C5,= v9zDŽRhe&,; [^?óY|f*9~.<-3|z;|~cL  w+B/73oeM ] oufbG[0ҽ]s1g#1t+`@Hq_.NЧ⹡ґ¾,HTZħGI3wpR;{m`2J /jԏ@'s|y$9㥢+X&1~h\πol|/Q$?&S2uk=\ /vI+čX@5n/2w6s 5fzFI( M BFX*(#{k-Wh5F A ցz68Oj2]!(Ԉ8dc!قyK\A{cP^wk7Wlʷz} GZȠ gmI; `块fTxR'\Ymz,8{uS:ol uA?.a7Y@DB11]x8 7Jx4ip]8.isڞ Z'[jb3k ˧=.H(iUʜuE\&!/3|k'oՇORus{--$XBa%<@m@;H4EW5njo )䃀1dWl@Z'_*lū>0Qql Jb2*YNkT@Tl<~w&- | G .&%j|0 pNEAy ~2Dꬌ\TjCɏsM<.}bJk/ͿB ]Lkwߐ0᠈M$hbj@lV/<"}s,oXѐ?^Ȭbc$y{~G!/Bhd]#{Mc0FCoyUkFAʉ)r')&0:dU]j$P *#6Sw%XYd}^²'ԠXHxRNIm3v4wEz#P9{AԾ0CQ#+ 4z&C\w4S$k O69x(8c_"ma 0SNɟgYMhH=)5,8HbD$\g]Y.J8C޽ߧ!Csjb+Z6P?(a8h\^qqNvJ}xdRʧsQ&x $+?5di!ۣ]yyƋu~P.>4F}:[o}w?r70N9FÉ>D#H5Լmңl;'jZDv f5(-j:ɪ _zs# Ir`#!i#k5!X?Q-kr9v/ 9е]@J||}ʊaO3?gڵ~MI,O 8T 칿O5m?A 9!wopSSjY("G|SBf 4S$Gy+8MĶ+=&[;ˀMۮ?Fzil8o&B;n#>λO %a8aޑ;k&PX:y6 yghlt> *xNҾ4}m+٘t3`)/s7BM%P35Vk CqZ__{sDz$3,NV8͆ ' \Fr3Өp}W@V Ϧd%n>껁'MND1T<-⡷ٵI>3-۷\ܕ'C/!vRӂF^wD7{p6^WYTpo"nJ<-M.s$%6,z"s%G-kSHߥTAw_!H% ï j>wWx R.[:4z)vo5F(ʘM5=3|tj0A#o}hw|`﷿D VUI C0L/RͽrF9θ-/JXlvo0.y-)efI:*F/,ojƒpЯ!+3Ki4(ݻ94)@1~k"oŒEN:N pDJܐF!󮎖ggzc;5{ )*̜ bs 80kC!ˀ@eJ1t!N}L+yT6@ L`Nn3ќb1~l'>zyFy#i%" 3WU.e␉ckֿ VDB)2pGY6U2qۭ#jGevh|y=PF!y*[z/}wa,{_̔Fr-eF?`_QTT1Sggos &yHzt A%~/ :m^JRROJ3ybf-,sruS1.dW]b4`k`9k$m4={HWS5 5mW}7gmu4w$ZƄYI\ce B6aida%vی9yw;5E2+՝O>tޠFMƪd{w3/dL6jVc 2X^vw*e>¹OֺR-{wp Ƀ3SMZ7U? >Wc-;3%jLiCN, ݔ`/؏'7bUCeз2JseNr؎Fe⼽٢#(Q'SAKUCS2X.e1 ?P3 o mbw]-K][^܃0W*>AšD<6|1!L-1XZ֣wUj0FӚpQ`҅8\;⫫$}QGVim\aF$@iSbq LUO-Gp_/#L&HYxqu`G%H2 I1viH@)6y4*fg2銡#%?0/BD${:o!-PV(^W\HVl. W1E8l~8}Oq¥XxiBЂ<` ld7K,z?1$p̤ @h~mBS q1a*Z =E r lJN`+rC*SR"Ї]3_6/rIRȏwjNRЭZ#GqRI`E"۟D$g¾M;ZwrXX+C*v %C7 Wf DĨp3N{Mi`g-/ CPeGCpRWa9sUL!}QO', s!GT@Pd#1yfuPe{!!i]6dG_KK@T*OvӇx]2d-nk:MB]i#SؼGV-)O\E|o8RuE3΄C&tMF"ggss{TT_RI|$62DQ\ST xhNY4K +Cҿm*:=89FMB~FOBܮ˸?0Ct.8CM"`XNre*䅢_tTr%l`L26k U6Q_뀐EQ >FT9ãyYUlZb7l:V"4e[L(IۧX+Ee@:\ѥ  OɅXE(x9~U֭wI-C~0 Si[Bv-$XrĢE,ND}!q=X=;ʻM3SG[qD7ɯL`1ﻗKu1s2F[i}\ 0wV>;6i^r-'LulQ&P -bKj~'R]6VM<3lEs{Z vwzv׭"DXde-6}i,oo~[㝡bc:6l(2U2Pg~Y fD׀ؘeϴo`߷5D'Qkkquw\EGn}Qh2 q?DCP'̓zgֈXfBUz|ݥwx$T}~҄) |v=U` H'-Ƃ"ʽ{R ߂KZa^J:#kOrTKVL{\F'2Ndsw&(/,u : [kPoPHóDA@Og.6dbU)E$')B&.>EtЃg#_/i׾`$( HwT?)8HhrU&Q 0نߖ틓ryEN_VlaE=`M3͛t]<bZ`R ef׹1t'hV׌-Et8?FC!e&G|Lz XxeP4&^mm"Sb TpEzlE6φuTe +)7 =qYd̮_`?mGl?ol5gno$HytzߝQ IXrr)s%}o]#W}~;jJJX<ߚDFn\# WGn`J#Rgn4j3LnXh~*-{t?V}6P̫( 2!$b*QW. rFҨ>3öR\J"5 H7O&HslgNؤ2 6hNJSy893F-WGh,s%U0NDqJvVt rnAro1eN͜gס%l~ Pb=؝H~;}x6i>jS,i='N_YJ/q7'W9ծiߎ`ќgeߦk͟,UxrqN ⦩X Z.^aӀ5 گ"‚D*= Ub A9Ƈj1/.+JVY=ήxL1058F.go-Khd*9%q `EvrXϵ'Rų Nw=3 7ޱ)a*|Z+|{ }zW&.hCտ  Qe{Ʊy۷ʮXk9E!,6lǮhEӞ F5f X \ăz<s^&;Zaƻ>vRF +u^3!׵ ' }=&pOySxAh;mii:̳-C怘M^^fs&9[Y9NN8 HBuc$? jzޝc )Jb8OxB(l{Vpsl*`##*w&"|v/W t 8T%# yFs9Hg(,'4r Vd):[iA^g&zFc]#/J1QxktaJ1%1S݆$S"PP.$`v}d ,rJtt"s>h[c[U̥iBB}C-u"| P!/PK32e`SͨjsȽ -1[YSќzܬ<,YӜJ4ߩOƧ3q|6dA,('IH/ Pj0 dA`aR_(a4;_`oxa4S 0XKе=,ERx!04j3ZP'fcF scVk 54}ECEt+j|릹n,cC1FbK?AH^M}ґʾ4aVagG$h\ CM≃;_bb63+m/l0mkȿ=%.traD.ꣽ!F~1=i4ШH4E9 Bln(*|̹R:aM#rx等X.Pʰ>:&cH )ي@}ol(V*.It@?\zaK&53B'y2SfF,M+?c'=_i괚h-cբ |~!V-=wW`!6B)y:z!ɉqa>E4u_XD6fݽ~k+C/UP8`~LY`YM}½ J .|?5s*>ό)a}qKs$JPa'"j!O|D(Fٕ˃*JcD}yrGWs1KW\ႉ ~{}{j J̞έ=~jSv̒Zvp= D6"d_T*[7wO7ӯ,݇H4}] @<ѷBEʱSҵR3h.C|qUT8966Fr^h_,i1N */׫?u،I_RO炁EV)tڮqw^S/6{UH$@{yv6/] y'ձF X'A-Y`i #OµM%>$BK`!X\Qxmt|H7qrs?hy61C ꯡ/ai)v\-%--4\K].#9`U<{qWrJt법LRګfbȌJLl_}q긊#TF=3Lu\֙#0zƩO}G҃߯; Yv҆#6&2CNWNB#Lj M$*'a<u0466;wTǬג"6Fs$JRs 5!ٌ4D A2&p"]|ATqQ/iv ~i>7n;>i/vȅTv@K ۨbZ`vXGWcH/UܓAq#ްyQx!AЪ-&CCߒ>2=O!xӔV438e^;DK)Hpsf︍GޒCnm_9uOzx/Qk @_ES)S#tzќNMHBW" s1J6[4M=,Qw5#a=I I4;~p_%zZ0vbwʅYJ,jc!@?"}Ķ[)[" O""4a$2`s⊞IUþd9Ä@5o_0^ElQ݄J1REV}BwHI բBvW fH}kص1ZGMFѯ@Hv.pޢ0З m =VVmny44BYeF1"Kmۓye#MW~l,(J-ڏŸQm(-~ d^faQ# /BRG~@~ GKwY8~2\I`Bl_ X4 Y]s'S1~4H4 aXp~DBoczDX]e{ \@(Ƽg )⋕H+ZBQcDBd|M/;8xn#ʚ=Ņ0eoai˫ hK<9SՀ)|$ќ3ju08|Kl#ơt4 [r!%=`T1ȹ#X}SBe9#peUR/{‰SEDlGڱHA 7yR$ySFV1w th TA gYb;|/n䛅.|ⅉ>eeVFt(A7S3PZZI>˒Ro_"D=ih] H2DB=#IY몌}@,[hߑi{]j7 8>;K>`("tܒ\ /]Ƈ|?n`̹hr \pCX/ /b_LrYG!xUoJN؍qXGKS5B"[f?:hmU Z'=7b4Zˏ2]Y5v+[σ h.6+k&/ ;;$Os#rg\4g7(:,2u30&9]"!K^L"%qRRAۦq#nXK5k 2攢 =6@۰W9m"u-rx7r ipWuUG>7ɒ7:6ȶxe#ym-?<jr^Qc$;K=&Q&B9=}a'u|a)QȔcs:",';_%#+`P@";w"5_i#0~{89:^rO:.hlV3WrԊ+˛t_^f}8 }usF<8,\>/+,mWi_l{%0 =j=N(a] ܞ}(,卞?/LN '7f](DUSkYr (JRܡf>YO14Zz SrF!A{~V,`)d(|/uC`~2ԂpG ^yd9Ijbm'7$zaJ-Kdm`'`W$q0$aA]1g~sU!H-28L\ %B@=?Kg_7H7ot$$2չDR|.w (xswP;e^/sW=%@ԻΌ%&f]Hİj$f sU|2ƣ'D)ſu" /hx+5^p40fFЏmC!^/Sж$L4h neQQÇn/\!+Х-IuLW(C怽T}<( `|5+'m+& nu3r0 )p۰k6lj U'Ï;%^owoKB+!BO2J3X\l'a?Zݺq.tB1;狕H%(tC:(d_]X (p}ApwQ u'>R+GyW0g2k>ַ-o?y|g޹VԘ9# =!=f-.Ӷ$_Z_O>32werՏvEJkթA;Ax: H\f7Mդl l}p72-5F.o9>ENXjNB3NDj!h9DͧJUj € 'xزޕoyhⲎ؃yv[MO{:i65ڝȨtQht *N9WmǗr|fL]M|x(޵+g^z*Hh&s~=B* 1%UHВ:[/ TYvcߋT]z! RWꁴ٭l+_n^>[O6;Հ2ٖ1uRTJ?'?N,'nLN>O\u0M&yFQIYB9D8~4H£UphpT2ub(;Ȯ眔m)y2T^C:3#nW"SVe`_tKvM`\诅x@Us5DO7|dZy"79%G'fWNܫ r|O ۍfPoSUar (wH5r@1EQ5xiR9.S}1)xE ݢ{0cD,, >|R(G!w ߡRWړ96bDah-t6hl2.>i!k];>޲:dPQ}r+1:ZExe0O/90K3f[c!k?^Yiz(;w ,Gj yOP4v.MQN|mNTezdDB ûQh=қC#F^ЊpQnЁI^N8}-*\R"~*I$зb~2" Jʎb2u;9/clAaee^N3*Yx13^WYGb@BFMt|ɖig@}iT>R=(߱n3Y`3~]㐖&R:V7_%KxCA[J޳{~E(AE2:V=i0KCE$A.p_՚;2 HpȬ6H&˓~M63 |V_*udL-w)}tA>M'A,+I)?o8Xt^ ,7 Bv`664SCwC<]|[Ud$@ǮY ېo| Ps(f@sTJҹcqf>Oaq97_6ÂY5~&dyji׸PHSJn|C..8t;R)6*'DZ-YpX6)c~(^Fr .!p8Jwoy ؁x1Sl&0 Q_ y_+#mgB.0)P?Ђ!VYFD} E9ߢA|]EI\5h *^jE}Nu S\ڱR&[^}W*K/x}t } y0MX6V#ohM?7s  uRe6ʳOw2Ԉ`>vǟsK D2\tQHc"K67/j Fy-˺CxPް?oփ#^!\~_a Gd/P釸ʔ`b#h-~,EM}K51!I M8]А7+a6+pLJ0ʦ5yD.k߈VRJ|.#qa9la 6O7(m kO Y $nQ2. +Xcu$)4 eކw%Xơ<CWdvTx6HZB"Izڀ*8EI8Ĉ`1vvV MlPY'RB+Z#/(R3/ff6~qfm 9XL^6'ÜAFae)I2Ycm=!M*!2<ןwQx,\xRHvglظ`H5X(hs"q—Uo>W=^*e}l6e88 ̚mI*!)cc 4I͏8ruBE1k=Mu<J .%pH eͷZxbAfIm.b?“gSM=9H] `)#6E3 7Fe& x'B Ieq]/& ^=RqۻbrqŃQbh53X~;6A`&IE$Ia46Q|'D=Mk7V z{Nڊ>QOv@!:zm@ȗI li|֗lxuټ\ X)0޴3B29t{xuo' T= ;"^Ol|v*e)%&+4]Ygzl}(ASD/6Vu Mwr"gdWX_|[\(t>`] >DWTڼѪR\V]=,%\F>ZZYvGԎ'Obôr?'Ѿ<]oޥK}Ze> 9d[Щ 4ug ) L=u0²g("aZqS0O>:=},\@ʃ0{DnwYt=5zrB `4hVCq7݉!s1C|8(I 7= f45(r@P^Ii[ Rȫ<-E׽4_hwn:lb@)pxЙ cnb@y8~mgnI&١`;BM>-+ϱ)Qg'䃀Ϡ'k)na]FGCNQJΊgA鬇lX6ǘ8ۥ% fE #\ƄO*PFlX=E !ln w6`on]4xED6UFC%vP+g;ǘ.v- ii_'ՠ\^7l݂PЮ~]>㸗ȄH!Y~_u16(P^?CFzB ۇTg/0b?zvWժo竼i Vh-5\JS]uDc(|I'q2!|΁Wѵ~R֚'~ϏuN@J:{BM[$$c#7t6U8 /LɗXUy3\p07t: mq^ZM1C&5vj1_QVڟ*m3{m:"=lPc[O~f9BP7n4'#DU+|@iK礷,3 Pt=Qy2"|:=9;.HYO|J| X;bENB2vchUqr|Yq%sNcȺ?SucU$mv0[JF]Wm0~85Z BOE ȥG+@m.V,c4CPӁ^'dϺ=M~Cn[ 5X˫a"*Iq}Oה mu71Z?޲ RA%hKy(yW}m8cWуg@O~`!1fH. %1k]‡*Z6*0V<`uYOl|C"a4˥7 馥;3%8" bl$ iނp,VvMcۏ*ǽ#?קam]4InbV8胚=-x$,@1?BYJh#;#5S$`Keҧcbgbx\'0 /Cڏ$)("cV!|`mC):~`v"fg#hLW[/j/}㝟̂qBZ͚W 3^eN7`.hwJ%>/I> #!RN",dQ0XVM9„JT}Tm%7ϒTz/W| -'G.gJ0@U6uVF?*PW0A=]{=xAulLO&,Q}`J ,|y &ԛk@sO2#0t I;B (ʴX?Fc,F}kyS>%I{" ~Um2+Ō_)VXTWs\XUnS@m5fyV>=\QnqW0%3G^nפ~Z+'D9&Yǁ Ϙ &|"Ϳ4e0GkI~r wRa5"Wx_(;W);;(TeJNBah=^[ɓ,ߞ0ԵQO3fbpy"73FuRy>urh?}3\ceXVyTfcoo2<`w HkN@?7?$250#^> rr-O 2|͝t| o2sx+R`L"@>F[Z׆xvIƍռ\̬LYdp!CRH`R# ߏ e& gEP LMEOy'Ko6Z#Iި-nS$eU򧦋l^/mewQ~rQhy$C>ϡoFSMGHe|;:J?Т82FN, @U; >,xW T< }&D beDckUeҍmkt!Zy:]PYȌMf#?^yMK& '-qD Ђql'O#4`Z_5V_Q=Eb [/;*Jzh@\cdnR87/<%9 `Τ95¥Vd=rThN6Z1t:pƶeП|"&"}Z1jWkhg!_1nhr 졜FZ4׏+ov:W j\BO|9n[mw 5F1J'ȶ4f =?EB2Iw2C=d2OMrdY8l![CW$([Ll?JvV .$X@(/ev1{6jIqWVykC@gXFHGA;.M9,W59Q:˩f ?!e!]b[(ر4 NE(اi{@,Z K# bP}y;^\X/g dඟ u@큽|Lo5U ɛsr$:9Dy*\zW։Ym߱Ap@IiKKhs׬ٖLP!٨֓41|,N >?݌otk@3>h6tCG`/77=Um3J0 wт63q,W\4(Iy%dz>Oeֈ}< ǪbS8FsoɳX~2qo\VUңk'E7`kHADs3r,JQ(oJBmTWO7&L͌?{ӆ+ Y>^D >1v6J, Qu+U, s5$a[nW}GߑD 0u%.=yF|htcM5@do8ݤ CzeD'bGD|ޞ +0za}wN"M]: 1n{m *~]$|nb~@u ;|@AH LJ1MIwm @9.dĶVΨA<}:3[\="t! oTN^&P cwe3d{;!T]cG5 K3d=v+;>%k\ L+7pLDEِ*wf8L#LF @8/|%-;S'3y !YAl8& ԐI`,W|!}vb@ &?޼ՏE걅ВgXXnXåz+geKѱkdfշXQ j}XT)v>cڰK!1NX KUt-`K$y["Fh"Iۇg~kVtb1EZfKY% <` WOG>dc5> km rIڿuBjD]nQO0nu}K5Q+@bM$ |R T6 Mz_\^IO/P{geGȳ.p\]>z`Oĥ0}ʓ_;fUnx,d =*&VZgh 5L9 ^ 6ha1)x 4ziƝ7`PHGǒvbpRfoM`5z"ma~Ч^ABfQ.We;'iܑF9$Fvz)}[HཱྀB my6WEmDm&My%uRjQh/am(%OsJKG=NR—C q޹Y7^\f E*b%EmW OiS7,y|<9dOW`Qm?I 'Ā]xQ\lۛ}mcyŻ& '%7ge.x9Wc!5,:^`zu!VfGu!V:ؕ c)7Rj&II~!+Kju餮AvC)8V}O%M8J[cYCEo;WOO1F =,pU#B9N aT8 ½Zh2$[>'x8&yL \_R^锃 rL ҬXsAtj3ףּ+P3h`5g##袏H[TއmvM@sX{wJ(1Z0z:AO7:1}ȒɎ-.$/б^+4)^%\UɥycoOi CxhTQɻ7 AIO7'+ *Jсx25K՘q-b.+;GAwx5jׇT[ƙj\LqSP$JkxӰes6Fm% >6\ PC}ϮhUN ʽO?EԹ/|P͝OV^Gw0-4"ɀjpJbeQ9BSVYll9wSnK{`! HV0' O_-ócy^ğqH5k1ޕqQȝfbZ84 $3\㦧<2* 5= O!$2op-҂ۅiEHcoPalk< (-xT:мR!ӬDrrLeTuh)mf`"vō<,[2˷clxa+t`H=A>f?7ǏqpYh*t}V<%S(~y&8 JѦ"Hom6UF#`i˚/3^*_%t^UIOY!ȶxm HBi_uh`LenݔrD4_w4]hP2ȯCVqJ5KDػNs=pC#IZߍe8/Lv2=ءwdM2|93w8yBL`g::՟ #}uƥ&ܮtg[oSg yn?XZ]8MIBFNhg,Ke3UZ|KlbC|W2H ha.I=ڻo" 6h7鶠#ddim Fc*az#O `fOѭvLd;2&^Us7YuW`,6x*!9 _,Xa/;!嬽>0IUfࢢ(,uCuFVb1u3$GLu0VuXwƥkeNlakNj|1],hs8N")~UUBGF~K'ۥU }!H ^̓Hv7jJ tʱ[ߴdҲltX{N8Pݤ3֖|3?J6å_ݹ6O6sفUXa+n[bkjtM|If3* v.bQ'0`z2,|dԣub%Mcn?O0rfP OxVWI7 vg{ 7Hr!"M~rQ4jZlXRl=xk]K/i/Zh '3\5D2}@%񈚕%q'0BIL58u:^eYޛKY1$YbĝT}ZaIw%X ;.ű٘`\IczE鐧EY~0j?j&=/UtCig=Kܤ4{6M՟YBiuLg?][c99r3%H2ԐCuhdȲz^IRe7>_{oݭ h&U[&`g)Z%b0A+``c\3AA ݄I|L(S gy:SFwWbw>Ӡ^ _<{9&Uj1iӄQABChW`idX,m㈓.W]Ϫ(NQ*sFZ`gg 2g V{-dPCd^[i-ۻ! mb{mtM u5qhW7ڎ l/t ں μ dժ9-L~EFuϒ*J4 WWu_HOOנ5MT,$HN&Kϩ>]4ܭH@rD,Z[`-Ch:ӑ~ FmLEp[LkVA*GF2O R*f"ʟ<(@lnf9|pR\lFeiBMnv۽M3?~z\lNO+: C*Ͷm"S+;+KwV&M{2 i+.PR{ԀY#P> 2U>"h#mcz 2,ݜz5h>%z-8 a'$K-0h5 _ǓZ;5Lww(3pϺ"i7љ݉Ï wqĠmZ 3ut3,w B7Zq"MO;1i{1yI͆W|zp'?-<޾UY 9.ufTUB_Rp]4^/:RR<3]YU1R-͔}B(̲KL|4NNVҫ?Y:< ejĬ%|bQ:&Igc00ސݱDV IrlcٙV èrRYW %d1Ms,0(m<ATkI/wκgYQR4 8K&j؍N(]L/3 ӓ]"ì|G CI~ `E>̷W$;:"1AMSDusuF#|g/9Bx86Y:m6Ԋw4@<5[4oY#Bć^g)ײSoc'l2_eRwB 3ūWa*MZKx HXO}X:p< (cZI>Wؼrv!*GE3S1m/әm{>1Dk3jgmrvDC ֍U83.6VkrNvSI- ]NMEmAų5P qiA%sh foundž7ɢ8 JfHN4:?Sm .Jb'FQ2Em)nŠn}$ٙ2=ֹ҆~XQ)ϭmB+O`F9A,v|԰pXc%qiɨ+Uco["i){P o<&Yx |R-zs1Bn[+aa6@AٖR|Hu!?'VOdQ"T"R(KبF > L k]m]o7XaY{o}G,tAg6})P.L%JS:|: VY3>SS $day7K=0SDxG-.dIǕAr+;6A60dgP 9kP٤M#iGui<AGŁF K-yS8`K EIdR}2M N!rCaAKw8"nw'x܆lX09): ^H c{a"*1B/0nAA/@bL:nwB%xJ&g$]SwypL5gԴ)Xd @Y=YA5\Qמ(WrM{EEm&>MB\ۻī.?ɸh/&<4U'y9 @9ZQ^JPnAhPôȮ]p09=4Mv%[բKyc/)O- 63|r 'ˀ$RW~朻X Ҡ9Ǒ[˼AD~W1IYeNnJ4409S\cY} FF@@T{Aҽ}w"mф] y[¬ư._j}\~=Rw8F򣠏r:e+tƗo_|Edtӑ1'!!LI!u n:qcr̔x 638(ZtQp$c^<*76r$GLo=WqՓSzږ^Q^):Kub!zVqU#e*)fJX17E·{gK pa8q0ꩱXSbI=f9vc^zȼrfxh<{vpM5ac+,M~$vqrZP}ј}oR ٨#xUA#l0Cz*r>9/0h?lqNm'5#)Dݷ54"/Ulbg$;A9 ?Ff"Țt^I>S!" PI`yՏ`e֜J3ތR!]ytƬQL m_8vl+?`}3E£C"d1 R(M 8Ug畡H:%̅zxɐ?<ϒ\jS86SpSvO`SO7B0ka\`Aݡ?b2}[j(]ڣb)b8/;d߱Pk'%<@t4"DzÚ,:n;K7}•o! PQ ex0Xʠzp==DumU[2$֢@HjkjT=eFkH` E`.T\ӸPװ>"pFo\7z{ P lxy'MS2f[<!`2S_T-L(۸bV!&i?-T Qmxw' ;qKؿunYYrH#̓`Y1lx[{޵ݢD:TRؠܔ5pN CF>sĶ.v1U3O5+LLm( j癇dFyM-d Py灟p,qr^r5@Y&<"royfzQ\A"".rDїW@X5~YyD ad>{&()2.>0*{pǼ zc;#ot1o鋱TUj-{8$=RTv_ἑI? d@|}ʳ-Lx-hܮL=|x 6iu qٱi}ņA-,6ǜN 6?8 妪Z K@^e9X>a:W \XO"6x7ٞYJR兊 vyseW hNh7/6iyЁ:qu%}.'\:f̩|wdõxF5Zvf{Q]|= [Oj`3/ϕس rxc%V"n0g> :~?jU :+BݦЃ:W+gc>}[6A~VGjw'Y/0`F(:͚`/&<x(ZUSXbz Gr?Z?- /dU?Uo蠐[`( $-e iCHТ~/3 c /b(+)8L9b3C5-Fp!^6A ow; oq( Ô01u})1%8CyKB7a%i iִIq4V.|Vhp}t4 x!"|f%)}⌒+\rD0^ǭo\{uL (u ߹z£R7I9n-g%HrO[?m,R2ݳk*JNqTms>at0t\-xĢJi@M,~bA>䢞3Ree&R1#Чkp%HzWE's >~(;=gVt.,l֜)7" &ݰ .9tåHrb.KZhyg(Fݥ9h/CKo(+^xŨC:ꭡN:gOjCtJ0;$TB>ڑ?5(Ieg)DgCRm ;e}=FFN]跠-p23l>$KՁ7Y+)UۦCH=)oǟjvN7~I ET*jLA.]:?V-9ke8I3Gr0Z 2* xJ0]W< &;X5M; H3N@ a 7Ckڙ_@LS~1JE`67 Br5)ƌ,/9k_ai&D LNB0_~&%,˸G.<.bRƨ_h ʣJ7i"K*AB/aƋ»J3ęuNKbhx˻rPYr\iC!Buv\iu\ݵz``sUxpo>] &3mq9 Z%q&]41tu*td2ز9 I"=+~ԪLXr=U s d2|\P&J_S(}^Cr$UqfoR O&vj#-VS+Xzy:n5)9q,_nQ_Z8]Dc *ɘ饼}?2;)rz0Lc*7Mب| yLWmPMYُ-m{(։*~&G4z85dVGݖsɦGopVW̭kiMFŤ=A+ E K_X<+;$YZFө EJލiU^1vt^Pn,w#]sr}t!<0j)i?X$%T1[4 d T^Hj{,{ Uk6 ŦyvqStqkA2qZ֋CA[Iiv\Tw'#{zyߐ`p':`;fKiz)n22'8WAOa4%50_K)F> 'rʹsQ+^XH#_ HOAP4$־|l bUxxO$ɠr=]A#-=۾ĹHv70iۤPLg"y"-r0\ZTi7]΢rzT59\2i(v8QnɢOlCu|}]縆μO\/vd$دl[FLY W߸&SYa,~b6/Z" š@~3YLNa#gBlBOT `KZ~xiZ2)~E܊z3 1S:ҕƝ*ԃ)IEG#72Vc0ĖqR{x.ٜ\+Ma@| -09\7SfAjH>̪_^;TdTakEr$;3GU4 f@mHst0(υAϺ"\3N9KQg} ڟ'7:"yT#]~ź'+af^H ʀ܂>C%Y(n$Z)g?50-iA2㿡 4c$Auv~LC4.LrUaэ?Tl*ǫ^Fnnԏ: N K,ΌȒ]3nT5oꂶmXӺiK b?TG4A SelLe-Q.4TAE?]Z:CAJ[)[x-`Ɋtȕa+FM%}Ӻ{9;qNlC0ԲQTs/3%tHp[ڞw<.0?%W no6"%mޗ?k]Ny81[ӕ!d  _!%|&e@eYog~=t*"S~u9vkY!zbڔί>Oۂݚˈj'pK[LslNg0d:D^g> !x GmSLˍ|w #Bt"5P:YT/΀ Yq`0=fH>T_P.'H70쭌lvDs-~n/n:N^P1a ჟqj~WXޠ;5MDž738nΑjHM[.l 5[LC7S)U΃xjs VCsхYky)?˺A#κb! :u"9t4Nhr&fDEP{VU^# kaR8DAQS ?G,Yp$0~#qǎǡk֎_+p!NΊFѨzͽw)PYS\4)l;<7R?mMT"ɠg\e!~ _<Cpo{aY˘p5W$%H9U]LPb42<ߖ.bl `տa؍X^4[gX/)LUEBKɿ[v #>*U w5 p!SXZ }/i.R28Nc^zG0|ee7gw!a/ֱߐ4t͑_Ĝ`ࣖyBkW(w:PF;%|E,*w֦ '?a$T"yk}iW Xʸ<ɩ_ 7v_ 8?EL+Zafaq7'tx?([eaL#J`[PO}i,hthA#G!jZV d hKa4է]vH^Yx4`Vz' I vR0'g9?L][o@ZP,fJʖږ,@ݽ-6+VPSЅem`R9tٚhO{K·[۲scϓВ2Trpe7cHHY=sEN!Ю86ݔ:\wn*VqvՊ;]vȫ ͚Ѻ%!;'}@1,rCWg,-w̞bsR*s+{jv8M|zo;vj[gI''p >2FCs TmD5 %OÑknfJպ 4ШNFI/B@_CCE 5et{:Qcrj Ϲ^F9P2J#>};IUΟϸ v M1x&2ܘg.IC:HZ97Jo 3ɿZ-hbκ!gmg*7}&Ǩmkwщ4Iˋ>7@σކ#2{cwN#JKeZW;yב~(29,WKm% h>|x+Ҧ.S T|cltFS1?G.lœGWgDZe:,fP"ʞp*Lx.ed2pdUëI>%\s>~ȲI~^EO’LDvKK'XC>.,Iݩ¦@A#H:;ULQWZ`GrszBy6Esg^2=ޢhpu؊=E/rJ$pRn%|pNj|@ rU[N]—Ϟl$+wΊ=M5N 5jW+駶x4<ߟ8op(aLJFit߾"s;O?Z8ޝqw}r|pDf^f]>OWS--ķ E|G#] ٧vu25Z^='M,J9aG)>s*k@32?O"lWh>O F0LEP:궠혯\x.&8o2lmNWKM Q"o\~_gR|hE#F㓧wv|xxEdM瑲AtAHM}g%wmFhw҉J0̛ǜljaC^[Nx _1R֤rBA_g#2s'qCZ gv/#!CrK*8_iZP +|NLSD'[W/RbzjVbBG:CFiSi"&&% Xa6|&(0TAͧ6!U=_\1D&2wO=-ډ\bO!2P {VLw,QjVyݫKؑ]H(({4]Q%fFhJU%IE‘o472d_Wdo?9 w7ǀ-bDX6Ԇ)f訂 -G|ED9lmjDi Yۜ,fkUQh%x 9ZMH}s&%H7蟥X^Hj6.yu~X(%w$#zIn 9aVχHΌ1W@yÊ۽~*,3L5ť jxaO]!4{[ZnoEU;;oF8.u-u9~;^=޾f]UR:Rwm7Urn:cʅ>TcLSKrn=BP3׼9,M(eP{U}w[0u;ٯt0P!pGJڽhn;?p"TL`MJ Du^!݉!Q8r_}3ʖqȖ@GJJV;G`L βܜ%[-Ui(͕=Kxyk€i֗*>7ƗTʝ0|YU(lzQL| ޽NrFO4QȨZ6S@7-Q3ƛ@w"#T"r=~9csceq@ _]Q̧e}e:@47~\HV~26f3u%p_Q:ٗ!Wlɞ-αkдMR#˫M N7vE Ȱ$5:P@НZ{!q>"_SDNZmD -g`hs& 81Տ_D Fb=' 'l-Juq_{CS$:= \ nm H=G.M=T_/8|EGX)f&и\ԚTR{Oi'מ]f՚~-f|NM3&'%3P a<2 Ղ;jRkc>@KoRu||-qV[]9dPo3?]xĀš[:+\G`\}כӈ`/6b~"z^UZIZRUMg76K"u"+gW?c(湅9beT: 5_-K\Òmvk,.as|0i8 Q b})l KPSAܟJ tx`*S# RCmWm֧T=G$- A%a09z*ŸyHQxbS7LÆr=GwϣXki^zǜlQ⧒ O2nW1g~gmFܶǬ4 ޅO0TY" ͔->I6BGCq-nqE٦<q\W~o狱G9V8PBސnlBVYU O*(#ѥd?/d/ڂ3sVPJ.uޤ%BN PFI'9Q_mɠ҈Q~ipsϿ]Q^qoўy*V;mG'pJ<&S#,?LY+C:[>y vW$ 'T%#~zKDojvr>YYgvfR7Sf]zW\";6qf& -c 4?aKM35+󟙕gwS[M~'|d)%Bѥp/AI [C9y6Ա#"rUv0,%8NtqPD6yɭ%275aZQw݆yaN#yW2/pr}qc!Sd Vd۴i#j%J8(]]DnG K vwEXH9"6e 4=A5.IvyH|tQڰm!X'd'hBt_ȿt!Mh-bQ/9ZV!S^}$YPs w}Fxހy+jb8"ϸA%))DBr`$)prZ Fj]'ǰs )a]*۳֙to FQgAnpH19| 6DpE{9e>g`c*.\;md4brohE򊙓b6Sy^K"u.U^+!Q']L{#f [GrѨngCORiL,Z}ƭ<+tNx<ى=I#(XnQIE`n=!~KV#lFYz'/)-w /:uBCcN+pdbKEqy( :B)[rz~Y ډ k:2ޓis>2*6ҝW,"(sJ,/x^*6HuvrVnYcsus9mYt"~dG_y~P?K'(ޛ&CO=Oӄ[m']~%W3b^=ǘPx pl&ҵ{驧 ܅BS.[gOJ5[mY}Q\5Y1EQl?`1]_* _QUk~` _]ɝ6!}̺ǢHd]^^a}yT:IQ(sFn\ONO_ Pig[p?#v> TG)bx+Ɓm/Xq]= ,:GzV w0R[skt 4qDGSGol5> XuH/7Qִ =89;K-X䢦%վp`CR3^! ̼[3YDcl-iTIYUO#[dHN3-Gl-xcN[reV"b伭lE&SP DlҩQ2aPm:24^AT@]- L3a)7sȒ\ >OHgLr,XS^ [73b1P|.9d rS[%x^ 7HǔgZCXܴъ|4|%02 @ݨfxY2mRIpb=9y>jyH{-yEkZ[QJ៘D\2Y܊O;0 hy:Z*D!6Aie c)FGv/!:c{ -nLz=(`O F'0fMm3$ Mfegv:m6ۥgm@%W, 66T~[ԐZY^C$GZ^>Lju;'_wiiT ''w$p‡WA]+6.€oiN,vrAܦcƴ3o+1Rڪ>.ֹ26[I9H&J}˸l!H~4#MGR jkHf|e5r47YC݅A诪1j:eL٦Ŷ,cTj"z^iFTOV LdbbQla |JNix/xYx;?o>1O}QT2pD0[8M)A6FShuk Ș%ZJ>F[;zz5Ypl+rI 8AYEW U'?D yP>䃉ӯZf20 G٢nds16TI nb G;V6W2Y>^$-mL_vX:߼H]G< sݶ\BרxU3'/ 'O#(C0o7Syb*kaEE%r狼i P&t#d z#웕 `h8k̛s2)Է8Ä&|O eytA Usn^{Oli,YsKt}Ҽ-,6.hw;CFHWu$?耜[|XB*!"_Mi ghF$ie[ٜSxQ)^$e՛K RRC ?Wl@=2Ug'eL\(76חWNK~SemuXPݩM4 SF:n񼟷аmqjҽ^}VVs;\.DSGDvCRg{nk)TJ>h'g2.DZ=~=G_hVg,Ж## s n(!nU|\Uهx3Ʀ\#TO0KNF.?det**TS&5fDT"Y|ZνGySywhd=1%KʞWt 5O탐8b4C d2Զځ "yke>g/݉'@\gY3 n ImO}dp(s ]5E"i8,L`=Zq&[!O.$g g !Yv7OB.̶Ɍ;C%ؐ(mB6/{9ĮS-]7(9ŷ^f̉b,;ca&R%Hp4ܞ!,XaXt]%J7ML|esN'K2T?ZaSQ=:x.V8O F=ԚT摁HxĪmHˣ=lBjyx(\c?܋M,RuKr=DQA$p- AJip)N't%).0M7rcȽD䜱Mއ±DutHQmWvBQ'7iv9RGQCH0xh&|w"AO[\ܟfX)9B1"lkf2.ZF 6B%'N0V I9.Vc8#͵ zS 4+@jvd{SN'r(nZz~>CHN]p .h.{I7ħ$ =bH l yެ~?N@#dAyeҥ]bnY3%Lz1siVHKU^?`73m@q ᮸O+So.tO|Y2h_gq6b߂-~9sl5ŴVn:RRvN JZCctU -I;(cao6>P"tO,٨QplP@Q:zU sD ̴O$7 'AT) 0ok.czP>#zo[E4n3@' 4$S}]uʑM]F6ci)O6MMr!;Z8ң-f,,BQ+saE#aG2Pe_g}/E{鍕GYJTuWՇe6HN34q¡AƚT:G#@  <.!  ?=13RTA ϓ'Cn??iI!G9oR՛81*Xr[h7o WV8~x>jb)C .{[\qaߞɝrTvqIRLlh:9=p:82j/t˩d FicbN+ 91fIٔc`7# ٹgr[F ,Zj?mdᇝXyF3j )xjlS5 @,bam gR؁}8VNylʅoф 6޼0|F*. Mcwepj aiBGfhXO E|SX U[rjU]N ~,߮ޔ+4IgS%?\t z惙Fbb`hf@sдPE (o\V3CQTj7[ۻՙ^IH/wKB' yrr#mbn.@T7|V}&-\NyB? Br:f;P 2M^d¤r^$N΍a_Y@6$۸^+熆#m?iSg+;< + 4% V)z_⡇>"LO[h7<lhaTSx@k@%`xa8HhRͷtJH4:e  8f~5Mt"1[ZƟc^l KUA!\" iKx٫;6VZ^,0~&+az?Q=@o^rp,,z%eDz(:a۟_rW],SCL?lt&m >) CW{t43޴ńh{ RR;*Ͷ8xX A;ZԈw ӎxӴwFAםh0=H PG?XKo%il/=h|gWݽy'ўL|/0qg=e뫔?2ҦoM, LM8)!,#bY񖲊K&#rB#FxV[ܵf4'((aaS4_YE<8ja`e]b8(]Td&>w;LL1(qwS b3Q%6#Ү.cː#WƯct3+r+;yz36Ȳ9rAO5r&㕍£E2 uv\|VE^@Ë:2yۧ@r m 9y[30='/;fyR sIjC*г#â؂Ber~M76l9RZ DŽ(pbQc0{O$K_l:)fbhIbC5UGf1lƝ""n 9@`QMnM']Nl}nw%ygFd=bll]=aR6rJEpc({xm%`²Ǹ@CH_`W4;fIKX ȝ|6$$t}qT]J:0\ 0;*6[{zC7xp ^DU5B&'.nM VViɛXCb }X8M[=^  s%iS`$һrRy<ܳYgP1n:XSz:ggkX)B5e.-!=PR+f̆$n cD%j7YAlu؟~̌׾B=%p!0Nϳ6YK t);l89qlPNHC#F&@1xXpu3Aw ĝ[<;R+sr6ŨLx?gAQӺ T9W@E)D_|"8&Bu3hbs8^+Z8^q;}>MCo0z˰ua{f$҄2iN}QU(vw ^{eNܪ2ҍ+9!GTDTZY X(&dU ЃڐYq6u У/܈@.5cM8'T4#@ 0d,!QO7›A4L"N Kl`L;>y4?W@b72B͖eFA,Dr=iYs/[oQ|_5=|sp+F!PkGO-SVlgg qt'5sɕ Sy(SN`p 5 ag[3$*Z;hn/(e(Ra/O4Ahɲ,`u6""/(V*++X7}0D6\fFl*`A>PyrٚJbtzE4 p0[ϫGFf^T,[IQXI5ѷ)N*[ O$ݿO fԏϲ- uM3br¡*P4-?}m hU)W;ً~ ,*yTa{c"CTlH@Y_ޥ3С~"&tߊ'iFe 0uP^?0gHρ!8gRb,`d]Tmr\r:ߣf&t!0&"5º;LB RȈi&ڄ43w%_NqJwDNo"ݗkN *?(MݿdM\YMDzlB-#QmYi;Dy&A6*T 9s*e(Oh9괩S,Uf`pd qA+ C6Wz & @)g&E^IckΧjs`Sh aH|e)leo);ot୒+% .oiE /xޚ FN8MY>r̕7cM;P}]`?j+$r-b6?lPf-PzAdJ;A~;r g"ϙ1ݡ?e{vZ/Y7X&)C;__^:gc?b0l]ȰT[d&bee46db+%t e"=rի2 h(BE..L5||J xh.\H6vFC/j]-S|"3AX]p`BIle^dPVH 7{7|6>o~{he,PeV+,5~/,[)ylDB7(k (eRm!x~c}u%@m'\YPq.cRp^sRxV >$#7q>W:_U2*5C&ԸTIB[R("'Q*w;1CVU^[QI|ƛ3ncr",܈3u,,2dyvb`&~R"pq' բ_yj?[ xeko^KF4:Ĩ[äo}t.NLM+BvtU0vS>hE#J՟t /voTW(ǂ? L3/O}6!adnht>Vv: T1Omgg_ tA-C,P83`r8PZ;a],jS T0X4{. %b1S[߾EN1.!b%շ!ko"$&ɽpR㑥鹤 W_ ji LK7tGp#gS\ `~pyT$؆u ?;$:E fP&<^ AmIhoz(VB{}aċ\yT#K`nm{ZO "y 9eU!gVcK{\/8#1 q!/ h8;[ԣ'r۸wvh+FM\­[K,&cr]AN'М=sqle4j??jyX6U%c'ld>{35_x} >B@d(-AWzQM 3 r[3Z> {_߄޼Z$*FF{Dp M'2AeD2Eg)1:¡hl9' 皰\}Gj?gdA/QJe3̉(_3.(ܹe@26m#N feDh Cmv[Ε3G$S%"9A }"]h#qlRA_)c.3vuuݘܤo<?WYc xѯ=Eqd׸ܸBZjyE3S7$t<:k9: vR3\C3VovE8ЛUKۀ]Fdas7Db$SO+x(򇫂 ڝcgޔTCs*fDVC4}f[b8TW (W{!U=?@tfmnqu&l7 Ö$AtZ&2XjU~GK"}Yjd^"u$ʥ fWD tti|tbo(1sX{<$c6 y'ʗQݶbXԟې(D8sJ [V1ؽ!^R(s>/юˮIT+|Pk2 {~Eb9ZXJ7љKv_}}f|a&|spGK[/M" $OPI{KM`Fe2sz7+|b(K_[_7э7F'X`Y 6Ho9I20*F ,/O$K׽HcS"qjǢah잩0ul6:۝ls%}ކbTM yԪzTJ; ('М0sys'&_ ۣyT3`CeOyb@6D]Z=i02F 3&8ɬ.XBDFwXT:mSd+`_{C_`H^%xn?t2]- NQޤؼT0? zt@yL:Eh& ^ϛGbh.vL7qvT\{=Nϒ5SOxN>Iy^$7X9hS$=©9g=>c iSŅ_q(^EeeYx@`DEγ\h, g^8QI޳"2%:+[Sfɱ.Q]O"k_s~\<)JyE1L;0kt{~%kņRbѻSݼ*a:$pQq/_^nrZcgnWޮ@Ng h&CDnsb.#baLVġ 3dn >;[0XU$(&zMd)9[ZJ#bB_0oj+n{bW!"̺ks03b8$ْʚ\`]<~1{<$wE y{5p,y]AƍV1P=W7ɁD$t7 3 }Cxluw 6@A.DM25$:k/O?3^7SA Xg;޽C~ۥZslwPR,Ap( Cf&ܦep)tߖ>`[9g2Cǒ_S)pR`MƿxzIx6F_; Ǵ񚏞O7\DT wo>~Āڼ֫"|1HgK4oel֒&+I?﫩tpʚ5ؽ]HMnzI疋ѣJZtYqRTr ]FJJϩx3 ϜܑAPCǮx-ȏ7^[=q]یNMMf_a}8LI7grוX?|hfi,zQthurw9tDU3M5fwyO%[a6lrE$rUzJIz2 $V^v1(dXF.`}H/!RUuRsڣ0βluc 3>ϡŎ- Wv[m("$勈;g3dPVfA׎ԽZ~ɑφ2O`!8dS +ͻwrS6p_Sк˓$z&ƵS({xCٵVǔ#>rm'JF+$ْnڎ#_c(ϙtɬxFX{i V/ xbtEWS[}w0Mm)q|)w%Ť%`9r@!ny"o&nPB3*yr_ԗVRi|S_vuǘ?fm e%-bĪ1۰vaw_qx { uBqFp%PwqmoWx;ͼ?So\݊VDЦyYIbṋB9j( ; Eb.0Rl&-4qRh+~ܼ܍oOi[dã/:^(:E佞"]WUjEzMs&5 \FؿuG[0$/F| p5:+pg|I,1JDUMUYcwTnFL$EvsuAUR_;#,B+8D¹.5~X5j7 蘇2#ҲɱYEJ$#gz_LSE/C}4ZT"kʁ<8ˈR9Y,.4נ%,6Hir7@!Dh%yB䲁5fJd'G1HU%,)6aefoZr`?7`jy熜9fxhs(`3MUYr0O>Nll|NY$I7iH@;Π '*Mn:{`)t^Z6G (cV¿~lj _R+tS4F$~EѶv*]D|ӊMZF&'oJ 8YL2;tcc$i(@:pm5ϟiB2. _xa[ZƊd4o˚~t)p [:D<v4wk(?D$Q{ K$ty).@ޡy-G*PƊGY/~kUgDuCuËz:#Eǹc}t+y;]2bKu\x}; :2>l;6^#x\ .H!Dw<92sׂP/'\Y`ؒSC_H׆w89MK-k9|ζ-AKu*2w5W)Wؿ$[5^ȅ-K;}0m®*ũ_k6 (YCBjۓ>"8~xNdf:fnM4i9w5 X?=F B~Rr 7t7JuYO7P/M bh v]ܓ+42 Z\Lb$3NG~kkgt|Wi/{HR1(P]zS,ׅD[~@E!_#TßASw3vK s̗ ȧyA(5vuI@3ϻ纒5bE:C\N #fU!QxNA "y&u0S ռ#ejY)zQG($˵bΕnlTZM!}tOz?4Y0DӸ/av{;f`ƃy-6qa^*qc\pIʕ"$^6+{LLe'pL4?[M ݔc Ab~ɚHas$GdLf LL bA–Q%֩9 UKdl(GK2z(=|tǁ6]&"6>kDMq[€OlTgH⪮0G"ܦgL)J&T['8:^du E%R__AY\"2v ť*;B*qv CdV7-nήLl]r#6B ׶]LNS(8. jyDSny7&sc\+3@!d;P7 _ҽ de4*ҽY-tiF([z1D  2}m[氋0 m|՘-W8jxCv,T:'/\O<41s_K29*qRI'J~o. tCY8aX 0DʘބS>%gYuٵy-0He<;nMdxXǜ0O= ^Df- aJ},px+Im&)e^ԏ98xԧ(1{;ڦrrv}Ney00T*>RD.>Cr6ncv(U=M/"ĤPj_}er=rF+o%BeyAc׬N~?W-ePWb aV49~W$m| oNN$yׁf"~/pn Z>Eɇ̓YO$NW+JiHrtBCH0.uQ`CRs gtn'Q{R!ml'NgfۑI3$* 6Ip{[6i5;o_ ֣M6HRfШq]`0/V?C Re"?#,Tt_Rajšש4&x A3]1~lдBO)˶UxhDC.`Ȅvu(hsVy=EP`gBqW(=E#}Yt"}]c裇:5R%SKqݿhUD)S[ Ii;֡BBDfYp6qكn* 4NHmZ9+y\QbHfngŪLp[Z=y#7[ t4\f4`kQFhԆ4#{,zz+,)J^&sYe:S~dq9r1TJ z^Afð@JAE'0| Bk2? lWc>_[&S^+}QȢnϜkBI\HAB1ao?xH GA ܄`7Gzۢ[C@^a8LFnx=k4 ܍HҠ7D?n 1"HJ(/{A6BR,ik~S`)lE+&s:k{OSGgּx >à,^6=&U9tOk"aJ\kl;dAɄ j߀ߥܕœޡ.[84ºZX%ozH9pLTw /|}yFY-]^&kX9L5dKoK'joV$Aï?O)T̲Jݔ7h3숬AfWİ7jW"@csIV~vL6$:-;SGTȜネ_$u}?Vnq x3b!*١ Zfhl!Qx4k.>Pa;:))u ֚ՍI*rd'MC?%VcO b{ ۩R[L I6ph'@fvÒ|e%QEIz.?4]rZ&͆/ZnjR)dPIɹM3,Z8u,"XaVҘePDQ*&az+2ē7j 0?uϸ޻ _ -PYx.FH8t&&]EӝݷT8mPT T:N8W D?H vҘmKba.|VO&Bz=ò .[0pf;%LТ:aj+0g#T6K-)3z Pq0񬠤u:?ۆ8 @<5Ȁi>QknوGoa#pz}Zti|=-v(ӵ# Fc_=A >G͙ Aݴ֍s0K!1Nsgloő 7V0?\;aVȄvzzuz_פ5s~K5@{}/^KC˷..XXm7+I#Vp" 9Ǔ;3għ?j!|#+Ecvv"0#$_"ˍUA&uU_~8jK9{41vI(80^-2@_̟J"xgɌ6 J:_PwO9;NL<ׄx; `"${oLJV'T {InFDCro0z?'.̨7Eai>e9 6^ؚiӝhvn^TC'z~1hRwn Y%~7By<) euߩ%&twQ+M*Ȣ;"v֨ij!{Ⴗ׷7,Myz2q67?1ލj!yOLjyxk9NHd#} t䕵(`u`MkA6rq 7j~U O#VƟLK[]m/V8Ck5>A[?ƫ +6|3t7R!,H$dqdiTtּhs'P/@ I"ri{]Z4zq¡ok7"sɥA.W!ShE /2ʜ2s&컭uCHHdmHn P9~H"2d4h*"xf5GYdUk>1?!TmJ$(qnVÔ@m5pC1 RReQ@XV!r,9ɦkd 2!KdvY\}/(W[בlI_0S&o;o& 8}.jzA+cYG$N~yx9P& #WVKw|\e]̅N9X8e3څѸ^u43zLaX֡$ ]P,6wRX9ya4 Qm |hU"be4#x~)̓ڃ71L:3f+)g )>BM.F HE)mz]{ox@r J˫OhB`zX?]`6c#`|p;]eFZZ@ @8>Ln3/v3?VݤGw@mcO ]#`Ն5NaU4}n']a TXpcGHڂ%Gk㭠[LLz4Ӷ"՜<#p*5^fHǥ;;@n&>4 kVE]K]Sݩ|""MYAqz)6ǟcGmflkF_!oO3ʝeͼlZkz}WkH (!uniV0F|ac]rϭNJZaږ'>%m7U7ftD AlBe6p}'׀ڶTɂ45~?]\9*"m8ѣm4k^QÓ,tݯԡ$\x 5^onGNwڌ+T^b\G\ /g^@yvsO+EM*a4)CJ{ Mu滑x9&a/LɄ/N#(aw\Z>%Ԑ9=دbC99^πfΑ>( {KuQT ELSㅧC̛q̏,UPb9F>XS;= jb|Q80'LKSe[,X\L H Z3b6Y;;cnx9EN#w5{dºmrR)aߟɘƘpQtd3AnWA[0ZVVZ$MUjf'} H,|lv {l= O'naZpq OJh 0h%̤H[_\Rк"*@r 29ZBѝRa>;pn3ƍJ ~KI; go4?z9|Z@qR9؉"zE>9K~eN ZlPLΪρ uc),gRizʘ[#'=b0^WE1]4T(5tG5@]::-HH+K@ mpi ;Jv əݚGW^ Q1e'RR]nY(HttD +$SGKP|}b S'}qyɵO3u:~K=Kp-*i3gߜhXݨZ j\^R3U6dxʉwY8n5xV?8fp ڱtC`ǣmIr ɉ Vp9{sH!<Ϝ_ *w _^?ѭlh>* !" @)`)4d{f;&-"4rr!QRt Qs>e_ׂ1Tr(\{GwOW2Uj:_kj&tdn͂ (t$P0A\g-mI>?_浴er@jH/~9&v2ު>1%mݎ|ZKTcI^?dV5{r|"'gfə ޽6!O rSӠ k9Puټ\Wp⟋0Ъ<ƨ:sE% %)ss0P,JP䧹Gw2רU2Y%`kU*aBP\MA!rva%7FJ1 [dKcJ7K˂7ˏi1%R:ǚ`p^+U '=An2*e;t$ƎY.8c^0V+{Pq^8i){Ƀ׼sVw) =RA$g_7j xX8"iMNu_ Xճh1sjYٜ'ɼCmksPO2*IPnMto#lM*Bhf6wsO6JG+H=Z4~ˈ]ʮQ/ywwSSv˒CG\SzwۜEݼ:^"'*?mlJHJO-ڋ ˋk9j_jI/$tS+rb-y,b`n}Nn;plK'^tuh&\_$([@-Pã(" 瀳'f:Fa]S8w&&x9 x]rml|(iln<݌?]"pX5'$($Er9J Qe-4t51Gs/F,z}F_7Ь: g.MN[`F$yY>.@ḓ}+t<.wO$U0IjO0#-/Ʀvُ!Ά3EOKZ_TǪ ҇$ @NLn;.gT4j<1@\`Y0>̒e @U1_UPlс-8̭2#xOYU=%˗Q=yJ8@4h}4D|z9xŗ|EY9MR 1.7ςpn ;--(²V졾=Hmqf ϹH?'J1S;_zΟL Tow}hN-BqqI`fngOF﷋HF}wGŸۙ& &G$vX:ι9a`#Eh%!ZQKF8vQRtBnKYϾUP龽w>`:{,d7Ԭ`Do)%9[g`\< UА>RZ7/ãJ*kgX-Gd撃2MOB5M_ɀi""; V\#_dσߙm]NWр|%[Cp1i> %M0BW' 6/*JAbvɯ8F u_`\ޏV<ɕ 6TYGydi1 /p6/brpRB;7u.+!+2CCa J*43`"WEѻ`98_Lf7^]IB"(6|M@R xK5-5V/Ztd:X!)$f`WE+Fan͔׺|!*sx#Rn %׀54y3.uПO󏖻z&^J ‘$j0iC5T;I{v>/ iذU~m IKxn=Ld8TMj@~mòpurhd~,[ݲDCX Dd[P)"Hdh2#̥5ê(\J0DNc&2C4 Mu#,VąVF@|!]ǥPƺ㉪ āHs/7hk2_ d2ZO}Ѭsz#=4z?~Q- WМ<< τbHvQB Fq ƣgN㿸U`U JL!/S>pazAL qU: )&UAl?#n4u;{ws*}ԦIٍ 10꽎f 0BT1L yECm$ ]~ :v@/\/wӬ8<ĸ7smqϡTcڑx-XR/s㆖ǹ?|`ի=jc fC(x =Td в%MW!XmVm ^h;1;j6{]`ePut^I&|7E0XWQDl)e2 19Z )@87(JX-^*Ԩ?B3"n+LRfgFU ʔU4߬|sIo1G3;q*ZdBfxSI|jL ^T1M`:JZj#Iui>}sNИXSDM}7uc"isg5vM ̅25]#Q=X2"fcr$AT :._QẨx3:Cv?_5,J !Яk+/x2O@qrQ$_|>_ a16<|^/Zkk;tw(O > 9븰X]֟ @p ndZDZi`i/I~Urms m| ߨ!76ؖ.(콗j'R\K,z8|ﻍK['zՏžc|bӖ!RDZ\L<3?162ݗO q#q98  ϜQK?qp!\d"dظo˕5">ޜ|w]%NXWZM8T9 2d SmYY oѦA|iqEhreBvm#s{R$φ_OzW_0(NWgc\t0 V[QWg$13 QƙΊ{[\8P0 ](_yG`w+Q T @;Qh#͟=7nkd/tI}pp|-Vѽ6dl2z@ٗ$TB cbB4XE)tlTj5>+;1^wp’lr,XE@H<=1$p³|paHAqgA1K3P|2Ͻ {zm"Y~wc)_?ͽ?Q>Z}dӆ]2>۠2cTZ$3:B=]:`(20}ml]8$d9= b/I@Ұ#wh&hqUKʮ_quKŬu$"]6X3AKo5 3Fδ1^bm A>cǐ9+K S[ ٿU]zXum^9OQz̺mC1ݳV[ rG&P /jiUK{-Xvo4b$H/ԏȿ.v&0 ׭5û'\(7 ٠t}xw5˕ |#s6s'E`oDUl?CӞLPX COؿWvbYc`=:q|GVP!XXX>qRҋ>| @|vB[}pQo,XO|fOGnU¿'"_/ɶeFp g/;r›q"*#^CϩUUCFE6U 0C]K::%'opw/Php[q:X Vza[:#RռQ\|18ؒ;9`:Caş-w 1K!Vy}kY L )8 b܆=9 __䬞u"L Y$ Σ'ˣL%WXw`ΪF}Kb2q&/c8ޞ_9OhJ)pc8ޤn#*T|a%gzYHv !d-x 09N):g ߬crvWqD%8LLńpn?[%¾X'} }E6⭄y>\P$kzh6/nzT&e\g-$t/IF<:0w~QG9b 36 {Ir!Ыňz~'s*ǦDp[wޜ x c8S1ҩ} WaD B~(I7`8߈judpT[>K 5ckno%]&u"D+uNwbdy T‰øCc JLMa4 Ǟ~p= Me4, P"ԴÄG:X|\].w,aL;?sErG,Jl ~?r=vTV]ˍ9cs]n*pR(1Oφ%˜,/ē/tT7Kk@3T-G䭓6uHZ/brD Z' /<8?!NJ5Y⍞"`jũSG%̞ϩ:N|lh)Q5–? KO-ϲv|{>䆉7 $-e᳾L!✥ꯥ/xb 1Xv_ȣP㐍]tP6 zӽ]e0?q3H0\5ɱjgp x f(|4W#Lsc$b-{dg\alrLpZw#ݖu42XL޷Տ.}iU.%GW92Vs|ƔDd<+%Y6'x6sCr^FɄoףP *,}5ad?hKP "~AmNBQ8+) @(-71(6ע&<@ vUdnS;kʥo۳]5V\K)`-:-Vjݕo5V,Jn[ˈt$J [~l *pR8]VCQk-7# 3/ز[u=!MƅN\54IϟD hԀ+4rY%D_"C"rp"#Q^DfKؠꢝMOJMw̳]IU~U/Mkfj@17dz\vHT'[*t{ՄYYYT0nUeg{_laROtIR$4+Öx ^ ¨+CphC,?V/E%ņ!A^R׼$Cm^012'YbOH؞/R}yO4> 2[n^\avÉcth` UAf>屝"Ĩ~qFA@4)}.PЄz|ahľ* _g-A%X - t f}H_hV/&*Bq5i{)4 `O  {kClDg9zZq&QsӸ4;Ȭqz86UoU{4pDU)aBYX_7cMj| [?A=OGY k7q|滖s̼Φ ; I7ӂ lVCDȹh@(9gVmERBW>$ul sJBF<<&oM9m#ql/6 CW37 O'LæLJ@, yOnzZ6K W# `^{BpyuIXy@J-tiN&fvq]uɨzz-#@/vXh򍤁]HL;láF!})[[OU*"eF66VY( /&*Y9-00=-I~W,T@cTւv,И7 m ne08epd^fcma{&me™k^_SkIknM;&^8ET"P pXJT44*FAr@QpiSgⰼx{a|Fu2Ӭ_|o. uJڊ -nEG\NVKi!YH=!k+n/qgG݉%8%T;.u GAX8SΌ]ޯa-{2^Rcpyq- b|Vq/(ce p5i!*5 :z; <'~>>#3}7צ2q\#ZFҦ}-ɕ"E#V0#g[Ԭ󔋶Y炝pK{&!)E2̣6k-F=?f`M֗j\j՗b' zepؤCRKDxzKbք],p_KtJ6Me\_bJhȣ*S \ĚHo-YI5_^1SXyД"|首qK\9%0ټܗO4ׄ"$Vm_D@#h'+ ^U΂KZxz4!Ը7G$9KWbuNbi>_0]lt&?4 ?+R7*lO{_g 1h܀4{洩ǻ2]IҘ':Cm0vyPP9L}m_8缒I%1 uLP%ʜY9v~׹"p> -n]]ؘ1;yF}lGPOًۧ|APԘf{ h4u  ; 6y5! ի qS\9hu5Y?hGddT9!S(2K]VE b`2J1 b+C6I*@ r JI(IB1zR9HDk0£O&_g}c{S֌ L~WQ\ /zvP)* ܮX*;厏Rpj/ O]Z faGz`^x0qRFmtVZ_,HJ#QRoFdފLO`9‘T9|ݨ^IX䀑|Dqzmp7guMv/sԇ ,/nb9r|Ɨ#3}y4 pw6 ԕ^:C_N4o$yȠ"Tm Vk'S{u_ U9 "޸kr# *)pBh*Hx(A3P|檪 mDS̔TIEfӐ: RXZu!qaM;23xTG@C,ڋӣWqL%Ho Drf$o梙Z]#F m]hrcY8֛\XvLIkTbKw፠Le]|͑|~2 7w6|MMlB콤]^= t-ӋaGKhde9̌ElO! SbΫ"Ur-⪿6'#ef?UBo>Y; [1:Ht,HzctC:Mj'2vuƟp-뚅C*rd0{P&cE(" !F$a1B&vl:qpF؝i?x 9m>e Nʔ+Cw)ٷW5K?JSò p@ 7(q3/d3ʗs〰M㯹9$\xQ?5:5p갨-i#lwȁIΓ*wHQ7'A W (@Bj,{ b1G\|:DT >;1 A aa!P/P?Xl%T}ӄ_p%1ʣQԯI\(e6h/9΃@ nFۂ+e^yv=S n` 2IIBi]R:;anYP`Mco>^GTz8+JU }FpĖInHABR+ZEĚ||~Y-WmNk$=C?n›D:*"#zA΄CN UD+Iͳ뗡!a;pWX!'8ۤ2Q2ic)\t0\rU%##nf:zy=We.גGZ"$Fza1Ai5R8óxm^3`уs23_M*Zp*EQO I T@ndh@˽=(pEUZЙxCZJP>;3>t>aW^rj:G@7eL:GBQ&:{LhvՉ {׍rm}7/bhl!0]o%3hdjk%4RøR]Tk dȟ?%&L2Nӹ묍#M:YIz:hknq(yƩJ8PA|(&@f!t Q2Ko݁<]fClT.&8f-yf<2Hi5#n`IœQ,mt jhf'1JđMx״fWwV ɟGj(ħyqzσsڿ3lB[/LwT$`PrKL}Pߪyo?`iD nt/Vhh unjܛ'^LNkMTM}-xW*"]LK͵W/ OպNj"Tlץœ<8P_-%2eUAR{k0(2+"guB$dVA&&j }d;d`⧵ 9lZMn3qH F8ʾг4N{.1rjp!6{:)晿I_v r8dM O(Rw^(qǛ8DC񅞪{}:؍`lFD25H=KMml`XH(xj•{hIh[+Ou-SgSM,J,#Bwr8#!+L[}Dj K$ g\mי[_BȔ[T8xƙ5h|a$h { !C2>ʯUb)xZ/n7'Fs -Ǥ őK٧ 1tU9ia8wR^r̛3i=odHr6A&JesdS6}Y_N>ƙf'Zp2jbdϸ*=cR*߷YX`=Δ9@Gt' y4@~Š}КvTb~q!xt_&?ii[G 4Xl^^5bE7-I"~7 ?5|=lE7"., W%,xpHz~si)-$cܞOܪ-Q_R-s[4U3Wo~F< >o_Cf'˪2s.JGBP~ce5Da-Stj;U(:hlE_b<nz/yRax;Z̘{XڢkE* U.[pfh﷙khpmhQbFwҞܠ ~ BRnyvQ`LV_Zu{Dqg0=6. 8 w y+iRn}DӅ`GA{+!nrkf输d Ks*{s2_R{qL%6i>PED JiJ%fArid\IFxhEc !ec;% i˝DY0rSY.HD#rK0GAfB@_IwiEEtW%C[.{*N~לl$AgY?wճb.4ͰG dcč IlJ;7ӹj#jEJ =skDYpiYIA[GC4J0 Zf羣C]huR'_]@LW(5$f&vIB\.l4ݻz9j(R_Q_j-l&0܂6 g8e:Sir Iljt@X >TYK> edg8],;KYyNhzA:7ZѠ[JIh)vS'~iOyT-X|cHx߈_ 85mzrGƻWƅՖ%@'7 p7oc͓fzyVB?GC,xHCHk/)V¦(=}! A ]sWy>qk}t-ְN.JlrMHs_H" ~9>r#?P{o+B4LJ!9 iq gJP,FEL%69fɥ0}QVJ[+w%E[ lmzB{J'mC EecIZOྥRy0ATd6͡`-_3'{2#'kFڽh{܆ #\;ґMǓ9X( ܱURI5spvLd름ORg(꘣^"JIlȧ'z95[XւN [t%ICF5}$s-\[`r6vzkyU9s^ܻ1ר I_/a`XhnMQBՅ1O>XND?)8Jp(6j Fb/@$FK>~5daw~>o6 O{C)2w䝞vH.B7J>ZD6g@댸$8*b۟dIl!ז&sXPJAGL96"jo͘RlPQ/7)F@8" AO{jщץ&.?> TbBRUWb 0 l7W)9?`ExpXcՊ]IPcG9j-̻n~c-i-FB'q%`ǰrf@d)"3|PQ󎝫:ߜǿZ3'z'k[gb+К79IhN[IUpLQ[>0K3D95"?(sIW -}ݐA#/J6n`PuϽG2°$ Ph} Q!,JۻK ~3 ziLC;n\V:s.-t\ $B#AssCыH6\ 90Ax{co 'v . p 2+qaV%{Evߍ-=weHb-U\, Ɛ.zOIj>{ K-nUj'6$c`H0cčGpdM3ȯE%\*V RˆQ1fDzCIr6䆗YEM!tzag5E>#&MpXtjQ7 5IQ/(tR6&H?yoUIȫZؼEu%-1Z[YKGLoLĨb@^fODJblc6Ԅ;tCyOPN}\ C&Oh鈪:0bywȵ8>_ҐvUFOcLY`k S{7oeݦ,ghb1p -pwt#h*Ru[9]4z ]7wt!.UIB[+ޅ0j|+ghdwFϗ3{Uށ\R2KMqNe)頸(RN-9۪pJ*0c6EϽ!Ȉ ;`D.NU*ap :׻;ORA12]# d]g]!oG] {ؘc: ^"s@.(M'RK$ ^uV-&Z; ҜӉUz\|}j724g Uҁ<,ݢ,€w86o^iPZ/%*S|UWlqKH5SF{Gm4ME '"4WV7VzbLHwZR1]h ؛˨F?=cMrr0l0oxܭ:V_g,=1*; mK.ʚ^7|x gEnT_* j3󻐗jrWoѹnT"KKo ΀&⤧> dJ0xk 7xTzݖDXl5k$=O7ۏ~`fLnn*f`wq 'v>MvnP:gu.>&ཊdWEIgōj ֳLcpĚg_0rlEpYu['n[t5w?3DKϵK{yHP_>cK5'H)Q@I,` *Te91k֢~!H**ƽfS~jSll K_D8{#ބhf̣nj4~]J it%wD]ƓW/6ۖ0x"ieFg7U&/0GB~4;aJ`H.V+*/ Ze_BݽXK*Uz@Qe_ }+PBe}gdW"_7U8>"'_W!BCUrĻ^Th4Ğݜfș"H$;8#]|F.[?>Zw_A~NCvrW+-nT,g/+9fd$qn.hnCT1xcQ`P7' (1=/|Z2y/;lϚ jI^JQsp[laRFܵ|0ʻxUnlG7Ǐ@:*ɟ:{xfTI{sM{bP`-1k^J@1w W7/(  :/UgJ`Lq!9([J;ZuOTM䞭,U׾1 V$&Aa.uCe!#nת_Ca:->ͼ2اMbOjP̳>,#={q{ғ!&IGHKwkEE)V?eʡ1 +{yP xh Q6r^'Qݤ)v%&^ 3+&`U,8;vPsR{\M и :1o:V)j3u8aFvAsMYj\"Z!SHB]_^)W?%c8=:%H%?ǀ9#M(Ӣ[rMX%WrpЇ\<`ގ< SqV9o ~F˲b!C[ UU Xb]C}Gc:I̔/_Y: o,~0m_^Xu6mc>i5]oG€m|Ӻ_w`FJU{ˆ3S=Au;`],id"3ݙEl$G8w? OZ3jK|C]0)7wYlFHψ1}˩FC!1/kmԘO`9%JOh ZV,o3kB->*!8W#wd )Ea5?DT0 *DօԁvKLucSrwmm"m)1su!_2 Ս /CZb0׸\+ӌ1&9#@͈n4;Gv}oa?͇s.(g{Y|.eHZe>=ӦXַl'0'8C!Gvj6F`9KA<:J;"%v;L C'Pvgw&`I/A 8~ / nbanrM"$s~GBT_@~P}'Cqm+jo&bJmz[HG˄fN:OVY1%iS86xHu .8miAs ?a/KPWn|BOMLtE֫S!sHyxe/'(pݿ~, @PMתVP8fRin9C\}]s޷%L;*8`7ϮcxBI^n&.4H|*K*Z@O$+[4%̂`i01e509J dJqܤ0+Mr'p vo$zej+5g:&:LqNeY! “~y?#jBEA'cUrT:=(}Rw#0gէς $qA(QIO͒eN= Ip->Pt5bsyBQ6鋛tW}': Ё'-j~dʜ񂃞Z[ckwe*a¡$;7kr챶E 9Js_ƦjE>L`3и2bM;MAPA9 ̈́J.$Q3v˺ ҴĚν;8HNmZߡڇڛc]~' 䝦TrS/7h*K&,OFJG8;#Xs[wz\CBuUkbR$μ%Kn'v}P 4û,%q=ܑ*aߖ86^OՇ>[@~6/r+"57jA~~7DZ&Z6rzi uR?O͏]qLɦ{F:T勾;` ^W@!0/$ 3o;hKΫtLQOxلSb=5/`8{ K;[=NFv8mT={6'nh'y2n=Q':z ;Aґ ETG##BӨ1f?VamcY|OƊXC 2i6z0ura<}>Dch +i-N/nչ3~f9pZ_':7K] "T#-(֍olt%]+>BRÀն.?4$B;#e8*]D V!be| x[PXr+!wgZŘԉ\ИηJlOVZlB$L-? PM?ۙ#q&8抍$j~++E8U-DT7&Cj\PLOoɊӌ).YVP +3Y|o1G'OZ c<&:2x)YWV\>ۃH1L@ɡ(ĄF`В0<_H!觍#XqJtG$,qA1;=Sm _C/i# Nw !D(6l!cnz.I9SM5-LG'2E0Qe4{H/G #Y* 1SpN9B((U\$/ɱBWj!g)/nzGGR;VrCDY%2m$VnPUq)Һal8D|:p35H\mj[ *?;MPㄮ(a4jә'mr 2t/4xUAQ3#m, B#z3m_I8t]DOC\K"Jqii¤N]8AO _UMA"HJ=Ow G]bj2qYgxvѧ `hN @V]0,"kL1=5MFR0K~) 4z`[ /y?MѷggwA/C-#r9R+xg$#*0c/bq5S1ư<%?&bn/LȀ~i2T֠BUr.?貈ݥ,VǎԖZeo&B0 ]^>}h!է=N~9^7Ɗ' >\Zu~#,F b,@.7vz^ xpȖHI.L7AUC7­FI,]I8>,0(Wip`هqZWFnF_e'ݘ*==\퍇"'`]+;J=" XM߉@``WAUqa "FiM>O9xXcb56T' #ϛzLJ Rm{>J#jFrV0SΝcw )ع/"DRd1)cjӁuv&{qu~%n.!~EO+4x%Q6m.%@X[ LDU&N3r׮Pݦ-GSÒkތ+EOU&'*\_xȞ'?gxrA֙X*# ^l"'D}2=LcI3}ZBmœQ#93yca*( a߮YLN'±誉%p)RuCE𢀑O|`yG7 Û,/eH:&4 RU҄oDu&5Z]BS8an\ub9rOTA$J%\C[u>;!r{Ç_ dɐ0j')W"t{ǟLXCsnxƑ\wǝD#cZ!k'Wi$4Su RmxKl*,jxK]}~'#}mN gO$ric 5JU)XO?_+=3O?j2ЀqK^R^}uXlG Oy+CA'ܠMNJۇHC5\5c}*Y{fzX*R0=+1oabskƇǨ?2rVQLqKn@Es \4}|bY+8QCƑr޳hy'WE}׬B󉾃M:0gM+$"E@bMdn! ezޓjLPg+5:M"/; i[A(rOmx&ȋWMr +8P˷,{>/#'?nӇ'ؗ9YoNeCt>')aX.OG&Ylӷ}j# Q!@L"t&L#8^T]M/=Vzއ&vm{<]@ԥ/dI@<9?#%1j)BK#-3'߂|M)b(vL#`p8@EN4*Gガjp½7 H9\ǃ?"TЅ1V E!D#q%C*ˋy*C1Ӗڙ!j tp͕dyX?&7eW(i6mV"$0re)73T Lc5VWq!;w[2W&Sy>g,D&ӹU@&%NL9 eDŽ4^-eD!\4(׻i>;N(9sH_=N5 \vy]f^ܱ+X',&xUT rdD7!߯>oӤQ7wGO>EHS.Ӎ!w&cK%O, 3H*x:\Vu}! @:|O,f=SRY:PMg8U8}npT_c9D0`}~SQo) _ʊ 0ELn#>o})ߍ63sU/9C' LLQO7@D|װR6C>U@X|Yv́zC%׈[tuɑ2 AnI`^*XƇadW.\#˯Ki h*,Q׾ rOzֵmb!|o|}'e턁DյtT{HkWW. NĦ7&dhi)ӆm$w\ %ӛ eZ;G:#ɔN2O.ٰ/O:88ؙ_SWN0ΫL[8ndqx-`7DS6|*/珅o ̜1!z#4[N'-YVzZ>c,'{~R>K1f)#^ʽ*`بIW\iwHn,)vzێ85섀<[GGWy' &; #IQ;YEٮ@ogH 1_U1}VJ޲$dUNZt 5Pe&@W0_Y`5ˋ|B+r˜TPbCwt\[A~XF%[ehM*>U&2q`FZ/i"0F,^CˊmrkL{sdlӔ49{8hgOo&MCmzR0gb $Ù:NIa9}Mxx.;5~y)m%ZFp)JQfT>o0=܏`||^6R7XM>%ZU Wppt2J_>r@zCioY4Rld#\7ݻeVUX70!HVkپB}Jr.܅\ᤵ2 G cLxB}>waK*b.tI;8{r8ZT6Pɴ&0&;sBLL-|48V@9dIWTP8= Cci3 $W7818::*[1Pyu0#r15Ð%R] GXOkBkAQb"\:"m`bh|9urRqtUe,U0 BT MIN$Ƃ]iL/Կl!-'w8 serzAC*v%^>RJlUJg&y Il2(L-7P@D. -HlbOu~P#up janp ֩&* F2F9ň aG!eHϮ/=kݧ13%x&=:f7W`]_ cMN>W"74 (%lAٻl; #^J}Uz:A)jMCd rzkPgT)5ܛ%R'5gdP鱚YҨΘM|a{3}X/m@R6 s菜Y õta`8-\BI+ .n'ڛo/Dx5t&~s?VrʮW\柄s\mElAJ!7"vcş%c`8 [ EJ9T޲[񬛇4-:7b_MUQȖdw߸k7{;q3m`Z>|Zf$ᢼ;xٿ I4PЃ5bEO6P[.V6X:jZpXh=~rCo(*o2Wtc7ੇM]*'/yZޠN9fM..T`6$N='808f$4GI8}QX\+A>U^M-k"HnB(263]U#޸CT ~V gɦ|KFd%p 2Mp{;SwAɕ <QUIkYWwyn _3ȏwX(Gf#ykҵIN&(϶4]Yt !awti'!RD6GɅ^ / =^T,d-rnsl}5EAP c?gcyH#I=Av$Q66JaC2ƫN^[W\>:gd60CvxK=g`8Զb D3K},-luhpsb6C?8')ҹCOL?!X<_M5<ߥt8>?0L=#ܺ3{}^;)Rٛ&ƞ >RM֡(h\lÞVns*;f~e^XƲ1~y)P J)hTvt79H0RAxx0r&9'ŦQJw wE\s+GWIg's[X= ;Ut9ɫJ lxUbpP }V:OMA?Fx%f"Fs3BPq> @[N"u²U)mM J_TYw n TQs8P6^<#ݶB;^?*Zϯ+vPXlHxW31#Kϴqm-ߣ?U_z?;`KZHNǍEn-Ds Q{⛈l)lIXpKCjb  %5;`|8ESd $Ķ׃(5v8oRa}hMLp;UBLlǜ%\t@K z$Us^ۅh9pxY6}:v Xa} !!2VB=^#-c"ȡ9s1HGupWn<1Tolp(.9=<s"EjTPsOǓꋷ5` rc{4} pFоD|p8$[z hݜ1vNӛ$r`N;/t=J@VZDE"l->4 sfG^myj/cM=VS[M*h` RB$#?0¼.NĦf `;s?c|QIN_yHTQߓ@z$,q PlBj}@(dX )߶g.%b,KWg[p R6]kBWmG[ߚR zqip z"-4u;0E\kAjy96v2ZIԘڒI)uK-`GR{|+H! \FeJpj`+0TAZ}lWC>7x<G( 3mE{)QCLIoHnaxWlad9| x+/ѽUFY @̿ơJQ)($졤;S.f.YZZM,X_%u"ԚUWD؈ГUU[y^Kn el5=p֛MW\hDbUa%dGOa/.g_>xt# S0Yx&ߠ\1n['!Xׅ2j.!fA R2$t&xػbi^|vwp2xx fV;b!Qpߜái\ Ky'> eAeAݒ[ ?k +):A}GKSvo)&ftTPn8Fqd}a4]Ϗo0H PTʧ2ZbRr92Wjc"7s2 POm*;H`".Wb!6fQe41aT+H@8zە .dtjYn-1ˎ`a)bSwFHn7G.! 0$V hdYISCgz,*ts=[4\ub5Fot ܱ RXeG0^IA>2*S[3Yaxi#)i}3 ެH8.:#_G6](>G[%ǽ9 chdī[2m m0"7#dΝnƉp[m}h}FT^ȡ܍;lr2KAB_뾆{T}.q2|SNK^^8YH)1#޷N@1.Ojd_3 T#K6&YGT!]RtF9PӰz^q}{^% P{#R @ؿȴNq)s[ 4Q~ cee?JiR=oX(vݚn!p?hHI' h⃑s+WG=39Yw=pVP6A>W,I\Ov[}^T #}ohAioHdP"z4٧ |2aCtv)Bd;2a} oGhׇ50oF<-8[#YD4&p QKrZ06:&̤h^ͤEqYC36f;958ǀ͑Rtd]2ʾh95k.>R\i}p3uS/Ƚ! CEp(]e3P*KfKFqSKK`MiўILsXQƦTvJa :젺b)ꢷy{'[kG*_QMhM .:]&"khg[>]s, aкcCħyjW+lfX hNilеy ݖZPQuY* Lv!Q; FHa[?ؙVɐFGJ[?,V&n]]Vec];V)ϲ*4iE2f߾BDp`D)9!U( !FcM+ ׭ qQ+]1~a13&/yS) ᕦ϶};G}piTZ<bR=XuQi5;j}~|-Ľ5\Uq9iVos"ZIO 31 j; ;11W;:@MlX.rY E_d+ߓ}w]+P!D;^L* 0uuBA>CbyBCS1Ă@w,}Ϣs-8=eX|s˟~,xV<KMkER'p Un \zF72lrdaA|>Ͱfx} vjbuᓽĆCpor~D9\)\,=T-U۔gJ{x~tA}_vQjJ8a{V$eN1U`>./7~ަWkVb3{kH*Q ?qOVmtϠ;?_ %zBƅdnOogyFZ&/#ޞ O!zC=EgghВ'K{k51i /:]_LCLS2}uStcLcםpw/99לsl w7?h9c2>{!Y}|4cfZ!6d,AV3D(&E08DgE.|%-:\?c7PJTg>kBCKP[X|̸oI?E!3yt)kJ,VR\o9${@}x"&hgyܝ x''v%^x#|^#ڌ(6EX}Ɯh]u*"5L Ck\aӗazY@ b(Aa>\FYRP: e_3L7 5c˪Ww 6UE7Au2 @҉lUB]w?e5?^]-[J9c.nĬl:<tPrH8VӋ<{~]Vo4fࠬu%Qd~We8ϙbi_>gxBV,m$@^V/^۱nTXr@Z2ĂBQE+Q̀ohz ;P流7L[$~6 .`h^9TD%a9UҤ$%sj)2vܚ NղV9&[U]GD7(Bn:m.d:c; Y/JlJQT^ef+[ (iJh~G )ƜGKmvzi?koHU=Iⱋ'4hE5o=ӺXUtY % პ3D%Ըd/h"l %Uay=`,{ _m1a9WH\T:H{r(7rbnOLXX;t 0"/c9ɸ;F>2ɢGzHbAсݵzq*N1UQ.1'.ؗwr[bsg_GT2Ov>(GgE5a>C&c~"Y~%Kb>djhz-Bb W< +/=bf ? ͻ)[s# F\Sg 632Qgm"P#xXurߵ"qlsx_f3{_K![ُO. 9yr{%~{pyT܈qfE^Aue%t;M92CvmXT(J'xҽSUv$SOiMI$M61kH` ҔM%rmad^a#ysPZJ2SA{xӯ=8UV9 !$zqܦ`HӤܗ&q{^䣏`{4j Oo&ުMkMM۵= 1g" '2Gue:Taaۯ L1->Ce}.k T2Hd 18giSPb8`9?*C ЦYn) F*#y r#?Hbp;$?Ҿ^= }pB(Vc&".>-A \?e-hl+s[ޏP-ޫSb1gZU&EÌ170 ^RN RluͻLDky~KC^/\|fg)GVs=>(3$ZZO4` ǩ}>hx8(8Ђퟥ/y3Z rb=DcNgvCU`&X< kNÅazɊudT-#Y#G.scnyMr1|jY͂5!B;cI֮ ]%go|D{88TKHM9V|bVa5Q{)Wzl]Ÿ'(l\jMa Z޾``!7q;[-,캞*=2``8ޙ\EyAK u㡒VaN/ЭUwJݜ,,_@-`#ȭ$*RhT @'{%GGz^ _~+K({q]SLwʉ]ACՕPtp)Dɣj lbkD,lX10,{3txThW㓧zlvTd iK0z>B8ZͰ2ը}1Tw \9LRyGԈUvߒ1Nzr1tþJADUz|g+N{@ٜmH1Q򘾞h2L`IH鳓"^'->};"ƪ{Otd.l>;4zLf}t%-*[y fT Q#JŲww(ca#"`׹Ib+R<dpH XF3vvo1!d8m#e^T*hHA#+W):B @:uNk෽ KσS+q&€hA(D @ſYu`;WqA p"X?Fbǎ\w/l۾ճ%<[K/}4KZWjI+ "Cu*5;()8$n@?+UyzIPuPѴJJ@lM)lq-9T :s4MazDzHӛ_/Uq"0d4%Fϑ'6,#hAlݱ^^UK#pR_N"ޞaր =JfA1֎9s^u>ATTJS+0TĕTep$}R`.bD[cBάqpvҭZdV^I6g'Sk4=JH6rvo ^Q*Ex|+?eBQMsCq<:9Nވ v}J$6) eU4Y͟,E!fx'9ø%?5Q&(9ͳ u2dg IP0ȒRNN5t dW"iN!<6Q /xڐw5eE)Eybl]M[M#a.QxpbX6'ABp;T骙[B5x$Mt2-d99(U6n].*/:v$ A?A"Av<@,>/ y7}:wK@Ū>2@FeGXfepkSϿ!is4գXxd-M S?PS[=[eOVU2x)^6¤qzV9Knҭ;vS+>a3.,j&߶rl 4|F} R]]:Zy9<4Zc2,6jUpڄӇpr W ”ۙ@ÛI% Wb~ɃKqڸZLrA DCQ\CaYNd -s6熉3aS3[LGZtM\ў9āssQ%6"SCNG R0#F]uzw+ ExP˔љl3va2Z:&QD, DܽJR MDK)>M[P`Ɂ5].A[sD(``.C:8X|B{W;+2/ tE8,M.#0Xa1@nķO,|ZLO10w.%R;h$"dL:<~V䭔UOfTw _:Vv{ϋG0jaĚ+(!+87E7.6Nb|7>gnLvI,q=Ҵ_n@5<v>m܅gY!n1nѸCϤB+ޯnb1yNx `Wzk;=l{"{'"ps1ay>z;v֕+Y Pv*D"NO^Um7V{c~ &+*@C@}t\Va.ȳX`+/C۶n}}toyDU#r7l% ʞ\P&nb֓9%cIfզ. ߼@+EƪN7_ _P@,O4Ae NJۇ hwk>YE|Nj Rj},*JOehebHu.|wߘ䴲&3 ;t|83TqYy]6oi9,˜W$f)2tB$ΣDʔzaE{Yk\e$k?!3$ HF4M&#Alyn¨d1@]G Owk Gm" ")zVo}f *` ^ ^A٧9@hNbaٝ`0\eڶw7vQ9VKxEcr.E#_CD-& jdělNԢ)R ڌMk2-U6FzM2TBpn2ڀD7 p.X9͞H)hUC8Dq w=JZ3O0; f>}X)uSv6e.26B$aupl,nA.ֲaDX6]PTE:SCk^cm鿭. $ VUJADC`)GKF"z'ӌ~{L4%e 2!DXksOs]M[D# Z/=Oeo `fk~XMQKj:l1""Uz4_¸{X`gԨbpQxck'Eg|x}5;czUOAWHlC<)Ђ%S5/{a4Ñ^+px|i3 nU6E C8837[9fJwKԉ;Tx%a^ \>. 9+ Ȉ='6ݭ#T i1o#|E%ha{ Rۂ ހ|#!MWp'ӹ%(ȗ72 23b&TW:(J\8Kΰ8`'l$)[$ [q%#@&6JVdZiW k0Gd%޲q6yRpcjOpFocê+[qX0ҡ dU~ـ`8a\@b3.V`˯]X,jCf~d`ʁ5W2^=@94biePRW_M A_k˽ӵ2SqK^ -+U7:M}C .h8 IWP=⡰qꥭX3_ޤkA5^0:ڇYxŚw]Z*[AR:JN"'ƞke_Fƭ;So<+)xL6;ciLtJdli9\,RNj$IY vKP# w i{VL_lAl[ rrŧݴ-.&2Ռev73=T29,#y+Kl Y;{!02!GmME~yaƝy pi@ f΢s4`ƽJ;yfM1jQ>-$ڲ8$ʹ3HC5-t߳fI6 SC6y'UC[U )8 `o@7!kR~C&9,jѹm+cT^S? WIQ7fb5z-}6gƭSK xFgr5,Zvma!’Nmc Mvc!# dOS3^ϰ4d&Z<_ P s'̜KNtq}R߬4} L911 -ґˢ.$őͥ6P/o;\|x3'6o5 C)x0YKXs]޶ MPz? hV *]2 SVɘ^7wN!v#LD޾*(>LŦWepT, &RH4Iޗ6 ZPspeP:YTt\Lae%|X ?Cv zݣ8M Y?"gja':_(s } .(;o@95%7E4)"t *̰o,)/m;B7:|hnB|&#͢Qu﬎3ec w ֻhd"4TE /zH6wڿ|bݨF p]!fK .KK6x&   Q@WQ/)zqe33:cc@7_B[?Ww8ӸS֒a`3j펖vU,L<nRmN~L2m}9)u߬lL Y_m+Qx`t!7c^4yQFvTF*1pިZGq,c_xr 勦è,f~zoŨ烼CIopسZEh+u:]`B&@y"(îHәFp9.vۓ}|rU>|MhEnzg}/l^u(`,N-Ϗ q"D $Rt@ݶCd87~/*%a[S=e qsmE~I,24Q+V/k~ k[UkfVb5 .TPw#c?>D.f⭛1Mwwc?72Qx$xM_ ״bq0DuUhُ")H:=gi9k@ Cdj} k15?~ǃ0=!VlCzvQX}֭x>G:OM0 f?VRsuD7W?Cd2!Cޯ'Iۑ9@϶Q= |VqC*ngOCL+MW#g^F_v`1бCD#TI S㪗^6 N Mk->D)g- U8Ocy9^筀dx"ss다SsMzf&]_:@lG^ FX !saJ?e4C\ս[[xN{yjQ\:RՇюթR`+u%h0A?ՉBMí =|E¿=!##"csHݴe$S 5W_%hj];`Fmڗ\\pibl JE 6/ K>ʢLdz'r3hb*Ņe.UQL5`]E씓mpⲍ¿޳hptjkZ76(\5IӖ϶ K#MO r|6E0Dc#{U| Tm8ɈbJsɴbSƥgTo^qB3$$IlqqJSjo 9!Kh%&~X"y MUxߛ}KIі6aHWőcJeH˭X/;A`Hے8+1Q+`AjmWֱ\hۋ #c'2M:Q|Y6?=oeJ́y^_R)sQc9,I7r:c߇chP$?a[A8w$c/^Z,R9% D2!Z)SFփ2|pz=ȖǤ!} і?i> iy=;{i$P60b퐢лr"^9Mc t,3gsq3>~^s5xZqL0D;x@Pd E7u"̤'<5lA&iI1 ,"1C4yeG EwB7{2ֽx"UMzE%s'BƔx=ˌЭx!]#YBqf: "ШsTIϩJ%⿮Y@6 Ӻ-Lo5 jy`s\QQ_kw竵{Vf!&etSo)J o*,nͪ)]jrP 4%v>p-Chmub'oܮt=)!u@I*A<xb,:l낛!* SՑ:9}_4x8ܙ%ΰ8 Be^U \_u=ӋL$%[6:wIqDi@m!"#&#jl 6`Zlo=Gb*kϦ%4KLAvop>)rxcN(ͰGF9ڶs|(fb]_Z8,#6`O=XטNgdȉ5G.2J)js֊N[2r,04?hiPo+ WHT1 '7m#.a;x tAe ~F I=Uws3Vd4lR:݈ uQzk·EzNbw;y|jO(7Us譚DT`݌J(GLDϛ .`FAs0vZ[ K?k|d}-cxҳk#Jd:C|5xaWKȭ_ÑtuуUr:eDZC?H+ETNXBg{q7o4PSW\?>KU?p:6C5oه}7pĘnb*`Bh8|}k}f{ Ry/< "L5|{{VWoUG]oAz[5Λ \NCZ>EM' [$__Pݎ #=G~Yp;!k?=ox=VET mqڈoHSH`Ucdnǚ<דQ8]:`Zs4 7.Շ)d,1˹ ]b=l=*qgv6xUM>UʇtOR%!։^Ee,7kӶ\%wFPݑ[J.T-vsGgA {EcVd9TҐ4ηAqH[ڬ\Z`xxR̿{z+#&FI Sߘ n70| cVvKϵV+k"hRU(9y&aj͉d[_ "M6 BPUΏLzC[rSδث`wI[uP{jD&"V0d:Ɲ~Vfv"L=NM{t0)6RCãAo5)X7/D)Z_q5$@TN]D%cئ͝մ~ 0>se/`6rpo[T#N x.UQ-kʇBڋCՉiޘQ9V 0&Sٔ~6 LTH.N.[@F' SFjsEX*AU-AԉրC$8|% cJc9W};{DQK%D i A c-ǽ@/դ qP!{C84p*V(^V!:= ߼lòOyP1^w Aݡ҂4+0qY􏒉.Wǥ6ƴ3Mkj):`Rʌ9{Ѝt68ֈA4JD:T7yẕGA+]ouZ8ɎV~= چp$v~㘶 uL(*Mzt<(@H),!WTiaAqx$yOJa(/P)Sm9rYFU*q43*W\-D(D#m" yKJEppQ7r p#֭Veb 2ܓW @ޤ6< r_:~N.GOC4Jԏpڨs6{/v~4_oIl2P7Kqrf qJ&wr+-J?lU].Z#xxHu6mJY'Y I\Й5b[hzSlI/C塩H$*)| .2JX 1H}Q,SI٥Oq#܈Țŏn =dhJY g\ N 4=wfǑ:\LaM^`Vd pgs%p>9?ҩYhFb@(~[S3?z2xϹ1CCW!\֍: >} -aO Tg0?5&7ZG~t،Nցi mN%KqS&0u,=#lq OLb,dF)Va24@vW+N&M'D~ ЯDi{`:7$,!tJL ۻЇWS>=*zƼD>Sg2rRݥ}Z{n#2?*jbФzrxeAU{7xk. DgN:[Cc0Fep﫨C+ qQ97)ʷ` =ʌM^_-U D~v_H@G!a4Sd B%3篠Z*wQBaU%QU5ҺF}z3`)5 䶎>:vXFfW5ck56 F _&M!d3XĊgh-W~#I97# KG$y:ʽv^B}e ܱ5djFJ}1n!=ʧ9ga|^i #w?x=]E!'DOWƒ **Zvpx~m\D~O6r };\#'VeF+ew GpQ'ON/% !uͭ1zv|p=̩-.IɈE:G~ؽvf[h3DmF1}tؕ|oqxjSNPMh")PݧY'+6z;Y_ fpO>rZ\Q﬜o1}R_C»p E~5&7C4*(dA0f) /iл4C! y@ W{-4Jt҄j| 3%VjagNR}Z`F[CZz;1Qv N[q7J9߿^s5b섮W[}>|+]ME8RuY: ΀K* 5G=~*idPգ1m~##M<.mdaXb .krZ:pGȬ{m As0" 푌Uд.{f=?-#cɏr@& @nTz Y(ܵs~LP6A+m9`Ծ3GoLҁ*RcKqE :\;O~a^1}l'h',rDҽ XuxP? O7;zwATS8pJ7{Oj&xW+XæMˈ!$W2wK*3=?7b+Bc+Vbwmb{dkwR~ Di2j6쎔l?@!u dpnH]4&+GhfĪkYwjq`_xOִ U/;&6T%MKh^ zәPҀG^{d]0;E?4YGa_| *|D¢ŶbDhi7pliL |鵄|L8uy,TFjQQ8 йuDj;@~.>J<9:ǒX3zC/|cMĿ{FxhBu\+~‰3|בӞf 1nϺFVA[k#qqYgiF)bH.;i8"m]0nzN}i6dFRA%'gmQ˝zʲ @yxNŸyZ;wШZy{#nk$Woڅj1Dg1'p2:eq00ltWhl{AƿUi(OֿN;i=`Y ZuڝoH_k%hp1 (]vlGb__],EiygJ]@\{Y-^ f/mz;~ 2I bWWuIwq+`mG:SbfR.* BBE-3FNF%R wG;^˿u|GW93d{fITPbSi Es3>IO5#7ͣq+ Ǚ2tCL,=DUML\݆Py4n{pu:hfdhs6×#IjkөgmM'Z_髬:n\;]*? I-a3qŞe!m@,[$lES W/!ىs$p *\KQ ɲ@.A̚dq_ lT8 P"T5F1.S{#dOŢ`eEsXkK8Q {z8&0욫QNqŘL+á ҙ у-Vv8?/g@ilZ B5ain`K2dfWS+)t_Mý~?Y4e$XֈÌJbYvv0fOKOKSn[%j Eaڋ/<=s{ ,6+7݀zI[CWE I cv 65yĉggOX3,iBl(fXua3x#ar {I Ō w&^rtq:_T'5tXma4 :;T24RX˽ERgILjJK@#NTz F`{'4Rk:2}H9P03T9< i"b߆+F[+̝H#>)VvA*\Kbme\2 ̺\o?̣! w_rPG0Hk&KiO0-}l S5FeE=4ad1ԟiXcYMC[`¼#זV4LtJ,WL9]9hs2Ox 0)Ɓ@޻4ڴAd( z+tڢDj'KsLJ޳g $!4PLݮ/v~cZKlL 2נn*3ZN1uem" __6QUHX?UU-!дj$f_CNA cl/j{ǰs{!խ y0TQ:nվQQ?Ͼ 9R[,C&zG@>n~&WˇNjxov#3Нo5Fvzgw✩dlN@9j}`d.JR[nP> jbOǼYj*gl( :Ⱦ (@$*N3wF>ʀGL-U 활0Yb5T¦ ܛ=H|ۆQ+@o L0G(9=2T{RםJe3|7)UʮEEh$(/oAJb'i/%J' a 5/JPD7/BS鳧bRmDNFޣ@VXƥk{!_nS$ hhG`,ARSGb6AP@ww+oȁ3zv9aQ|r# Ug 1*][y6Bu/@ |:j럗3s=-.r5zk\@ϧcf)@hqK/(`HIgqflj_pETK! &ƫwJLz-@iEpks(w#ѾȏuXh+F{Iet܄ȢH/Dh\Ec z HeچѡB^\]o`.djs8JfCTb dqN.:ZGލKdN[b,z0S,R]]a$3V0g 0yڀp? 8CAk,>~ Wg<:fX׾M^:D\*<%P=]ns__g)i,ᘉIΦ?i;f|݂aoOo"&%=U{)] x) S:FT1B/K r ˛7e+ӈ;=,sA:5j٣U̾Seĉ29/390@Gy 8/.~pm拼UKVH&m g C\r)D<:l5yŧ̻> >mcqғZ$gvc$pf+NO]t\B (܊vʵ"H)G@>J}p<"'$K[A}(&ް}Ҽ ^r[?^G>pdAͯb,j!b̈́ZDh"S эY|3yOhj:Hvx"^9XMP鄲G9KNY3-grR-"ML N}2{KdS(H1srdXL;')jAdjR^P;2ڊC!GkC HV7ڵ[<~W %\BJឈҮG,)gr٭I6r!ZSK邲Qu?]A ލWcb ng@:p7m+ɜ|{Đ:-e8kUY*nS_\j3wi^$PA[,ԚWNo)'i d%id39֦޻LO:JywN _w˳;vgz9L;{WEm#< sSԥR2WwYEN vVBijayPx2Ϛ3 6!J0'/~RwRփ4gof$"XH2\D,iPXH1A!c۞tz.{'gM4:]`F{^æhfC=vIG~/ ;;iVG]l nL7DHC ]U$iN-&3Ӑ[6){rj~܁dog /ῠV/eLy3z2C21Iv>[ A~q9sH<0XDK11c?l2 87Ha0V[0 "zA"uB"0m^|DHZsf˿9aPI-7Ɉ2ELGd;5Gs!}0g?'"PA}w`XXW )w}2p}E\J2+^,iB'N7Œ-.j&߱d㍠w(E_X:8Zu\I 'Ӌ-ݿ_Yҩ |`i!Uu/ňfaPO)9:AˆS=_)r?`; K!,8=^d;hiaM \63y9}؂es^N`_\nt?{oߡ8īvM_; >3x :w^qΘ=M `Dϫ!_+h3I/4Gl%wU '`6lh,i rJ1=lڄN-8dUc2bЇ|.`v< oNsNp:#|* joVQ+1Z eCۻC>+#*}gTnZ>裦z3Lˢmׁ]%~_l'{~3(ȑzyE@rIJEi U!;돔JӼ KL~ߐVEZy}$E0DyX$m^dr%$4K7$7lȾ츞@kaaX07 >:yL f)y<1VQn*~lylD27uk ZP#~lN(@ {;Z-{=vሉw3z4=NdXb@y')|Gʼt_+o,ډ G'Hwx,}mڅwJo<\cKzPB{; Z 1KPNzV{=$C(+"= DtY֩3Z0kma_WFu9_~Yi' }2 ؔxE% pWoh$!C W4ª J:^d*{ԺjB T¼WO݁mCFV&(3E!&$W{7Bn_I:X#rbME9? %WY"e,kc߅N7kJ6[;^-k ;]'?5jYs){'UgZa_(@*$&eG{gD>ˋG, [tc^[o6>5#a'%yO[)4{M+/ M(o[w{jՔU esy׭Ԍ S t#cmaڐnh[bֿ~[DP<1VvDž]9 ͜]"Dj[U.SPVg~K&.xVQFa4ϹsbmG+W TV jp2Xm@i%_H9M JyҦ͖.NM@L;Z<ӪF0͠ MPjq7@"/?a.^3/tG_ pn[Z?ELU4iBQ?\b*͂ VraBwU "_aw3 LwOX.qc( Z&E,9$ ߈@7ɗ!ejo#,Wto[@rX"!!AACk<>lX{,SM%2ElsZgK@$Ά,Gj=U1pEv_`;)$̊~Y>j_ PY,*l6՗< {pӷ`Gi{r\PW25@yd9oh,Ÿ&W;\||Wz*Y 9qowlۯ0Ls8%ԑ|:1A \FRّZE&<E!bAW0^۶" X\JC J@VѮ7+DaNFJG0Z kG#azc(N쎂EDUz0EvI?o5*}p4j3ř=_sS!>tr gt51W4-^A .4ͦ2{Q_u(FO ]rF'xԌiHlFm,nCkгӪ$k=,fú#r: tll9 E.U ;@DuWj9v81?3*˥[ }(ևBi/p#dɽ0{:v3?ӾYyn )KhzV((;1$MV5~j8cu?Bc-=Dxg_%=syȫ<&&EX\#(gz頫 nÛfbWMN!&gPT Z햏o_`dp> /}Ek9WcM'1Pc2k$zn!8S_$QEG;A nwJFQ `i/?˦$9󓰞[jodl'jvT>С${8Tt~!"ߤ,+ ì @ Aj6&ƦU7Z=Jˆ,,5fIJkC8Z›<͒7k1Sq腟u<ɡYSWR */zR0v4ײl8@Ⱦjۃ\Zb}n)W!deV%:f\AҏA 2=BDKk߾YԪtؖs aY,9ut%\(oqDY 'j?n1ʠ?MLc*a\:A;Z#̡*<^co΀HϗI?UOj!j Pd0G<ŚwNdrd@UHt ̛W= "!uċ|+Ț*֎U=h^C !0qPMPX=(FiFLF=6d\7l*.gGچ?45Ъ@YRro*d ]'8Gq5j;njc,[\ w%\f.?@zٯ˴X-hK˷54xӾ_yOn.>SΜ @mF(.F|8M5Fl-{K3`(ǕQo߉ q[!T$cJT=p{i/st^ӛz&ojJ@O|l[#6'< zq)f}[gDUUg (I eX8BCV:LJ#j|fI> v 1c*(:-JhSgZ=6ںoT7 |ޠ#Ojg>Ӛ!-;eymQ .% +ő*9-G*W]gMڰhқJbԶtU85v$G}!#?@DzcF/S>:<1l s^5R0#zl:HS0j nۺ\7-wI ܛE>=m3)ň_3b{ż}?8S } Ni"*-0g=~ bN|tJ pGPlfHҺܓjqEr.$GO `C +!su ͬO-:攱. {G`V E(E ^6 __!r}F)ig$.Of̥!İɘ8 P\yo8DQ Nvx^zlа P YT3HH.&ЬCcluE ?"74eI<5suLv5ejIMB'LaAxC䠽jWWH=2? `5\}Scj]Ъ=<岹%08_ >6`@hgVJ?c6MEc8K٥O ^~|0Hkr(Ѐh8^/:Aʊ;ݎ-T"{EɳL D2WV% kݝؠʅLVHGiQg\rl?밳ErnG^SK[DRh4-xtcSêb/,Mf6Ҍ'OcP~Zs"ܸݲ gN_S I-U}TsCs"#PGb{|ar8)u4_-b{^6&8bB!tqzMBʵTwK"2%{D٥4bd ~ A;p4LŖꢦ6x11dWY) |Tr )e8avU۳Q*"b;j̬zLx;]hmTB͎W!1F~ZS:̴,Yq6NTrC(W'T`0z3 (ZGЙcEJeP"Y'Ҍd8:CǏ4d/HQ5}!>:~ p\n?iDS3{`W;:yl>"+jxkbQ F6\M*@&K.DX2g-]/K 2_`.^mr؎qPN _@Vdo¾(gZR04U@4Y''E>ZKa쓚d}@U\&S گ N[m'B- lNwB@k N' jj }U5|X1@R1!H6OƆzoB-:|(.rXtK{pjT~9yՆJ4_IOwʢhnĔ@ _J2ꚙ&--*Wq,Tbɉ $r_K$gF?nD&~!e?X Vp+8T0ij48ݐGu@~GfZ 6K/)J](CywW+p"UV9km2A&R?px7˶` *-JR * Tbqs6vHv:U_Be:Jd*HC. > `dzNޒ=+N jĿm9,{ Dq$\Cl+ 0'A+sqLjNeYȐ+@Aj wpX*^hV`$c787xDϵ%,M[JB<*>r&审7 qEа 6Yy; l2U WQO&詳P1.6xE$>:嶲؇AMANjL'኏v]G U=ΖO,<fґؑg~^ETUC36S,Gz 0Wr=v;xS+IA՚]L\,XE5Qܬ8 ]n2[29Z!`01xnD3Ձ0)>N vώYf\.per'Oa:m: Ky_çmdsc28[ yEMnzElz;78J%64&`Eq3,Cl~tb+ZjrH?kR5 5tmz=V\H{=@uF#; :~ y%p;C|!O(7_'%Ehm!XK-7.&vd5tUt!ndޗhh%w'|oj]tR5U5J]0pwxvdFz)m[¨r+,]5!z_&yx#HC(˪HS^# Q޹G!%_HW*Z4J_ęe)pDF*|0ҍvB@3 P-[B1 ]zY2vCq <02}% $(~ k0?N"P>QZszb]q/'>d|z(#;Ukl sK}}Q%Ӱ~^7HcӜ%+,ZŠN g iT}V2b(fO}.\o}XDH\|Zj}vR3جyDz:Q8 eGhNBzRމ%#(dݷQaJ*ҫ9 t,!8Xwn*z\FM!t7؊>_{F>B=H 0y_MLj1͍~aC_H@ Tz5qb]ڰ@Yn]E&)  -Aշ&{L>9GxݚP M&$ŌavnM~d/A7vIp< M5;V<rCg{.jP(كVT23:tKb>m2;m\2Nr ->*8}fZ׎;T<(E%`tM.%R\!X bѱ)Y)y(4FKl֏^IXGq"YH~Ո.@F_abowDv5*1p,㛫;ٷt6F_Gu8x~ sx4 46iEֿ:P 1gJu2q9p@WA&c072Ή}չ/A^fx,Va.k}a tT+ǃ;!@cDM4:E?_ /K3$t\WXZY]6B$ +`x3O4Zes߆n@_Ha8΢ .jw40~.T̴V)gwQ/ˬBC#/4k(9 6VMy( g5յ`n,B)Si_wHPIegm Z)M(!,HO_N} gVXr<=Jqt_>GQѝxz#vgډNay~bDV^Rӱjj㓋<8>~!KXCoВj"%0 D M!oiYQmnl Czhj6.Zj2To_9weRç4}em\|}'ܐ)[32 2ITVF,}tFطh1vT=m0 *lH^)+NPCP"T }`5.B4<󴄀Ժ)h7Mmq0ϒRƵ ~˟qVưc .i2cFoǪ \fk3ϧ!.C0:5q|I[ + lFB8u*YQ>Z^Q_:ww}R˂BΝaB~J7PU+-lh 3n)=I\$}Bq:YedjD4kD[9`-J_{`rp3$׽8S |->o a8fLHk.~ӅըU̓ZbD6L<g{}cN Eh^B7'ncRBE;/>ѿ"d`dUboEƿ[K ?AbH+>FbtMsxbHtfe83v&sɉ$; :c.)oQ]2WTS.RS4qmz%4,Z=dpPd#|.SVz@"{4GqoAXn3I%!:Vz">R+V䞤&6M/CCBLmDknNK/pTB_RqӢG٣ʶ C]94: tɛS+vfs5(1┨u6<XHzpz_=hݛNp//H KwϨIy5\[LCyaW*,.9-^ՈTPf@Bu ֋u{SX/#SRMKm.fHTI3{ݤhpi.F@Y lXV A< #+zՠXB'nΩIzFP+ sMA`sN %Q 9,2R*<J(u=dXnkśml=# ~WB*"{!:+Lw]vԉ?FM"FGOA_X1H%>r`f`#nu6za%=:AO^z{ Qbi7!\El@@Kq,MhNgDJԽ=Fм_: EPS%'e@F*q%, k E钌:jc 4Lekҷ9Zbn!L|*RF/ޛRwIBF'ck*YjAή""/ $ZD2#uh՗V4f嵮[n*b?n>~0Hdq f)\nE51BX_kT,0~E ̷bc3bk#ٻ*2҃Wp/7܁gƅcҠUO 覫ͤ='[fb > j@Xɰ"o$Ns.)Tgr;[1Dߧ5e);gs顶Ow%YuwO5[VM ,_Eg÷ɪB-~I)(!KzȲŲb́'?c0@C\S [wN4QICi&߿ 2i YG+B % Kj,EJH PoQ m[&zW& Yӎ[bGhny~USbeNz\/SD]vzD?Ic Ue@}kT7Ax'FDNLXƒ/ooΩ!H$گڊ@gFQ LpU^**#Bh[5Ko૨?c?>J~CiۧBqQ!%8[hQaS:;-_} RwR2~T <4sZE8*DV5xD_'c Eno!#>;GxAbD&3jz5yնyBs xr:M֭P@~猥;K( g'D*!c7fJ[|Wrzz}9B Ib5$N- g~p"0ogXGGa^m_MtPgS`Թ+g qb9G}0i[`iGcˏ=Z*?ÒC{㛄TT;!'|h2) =~ȍ`#exj3$@ZvqGdDEJuTvZ IgRсj+vn ٜ?zs3!%_껇Fi<h4Ѣ Bϯ:eO*&7tdn/Qeru>EYP޼;I|PW%0|=̒R@gtOÜk3EH@xz3f ufnUU^>zj5w9_9whR8 G>iPE"3FfWIdAH%@=dArnQISbES3A&!+@ytQ-A)l,s"GIk6ڬ?9!f/E멷IzU{gDP. *jur'\/%B?s/S{_7P>bqzwƒҠ!J(L/|dxȵ~gVqvh{'L& 3M5rzjayַPlp$7M64fAtw{8b.h|K {/w~+>r )9$` Bؤp ޕH@㔲k&BX<8Mx{l"J 4@PBMWLy=4͢E5 c$f L4$ -CL0TrU~y.>In>y)L"Cm-Ė 1J@!LS5,!rl܏l*}FPtS暆m ?$OiiGk oG` ,kIשwb1QYj.0h(eO*.~)px1yY u1c[YRڪDD 72-^#$wBCA loNR4 Wx$ C=ZsPc;_jTpx}H9Lם=Ih>QpE@giW u%+@KϲHJ p.ppt˜~': f nPwWx|#XꠎC|L27Q'Ş W}~rzQYׯUEz2bf2/n9Bn=wDM\\Hb]S% jupK3%' l5"XWETQs3be,w%RfܽԿxRP'F#Z⺢7&O03ȄeG4 F{(8jʲu.-V219ҏEA"4qw,4J ::ĹBYj;;M39m-4JZb l:%)MWK J_$kNHNsu/ 4,m%,WPq):e]A*,`ʥD syub\͈H0qENc~&Ile_tyyb}n04Uq[zɜW\+-4G0!/N|20v`q~d"m (9nlϙxY=+hggkumt```N9'{tMʫ(LzuMPp^5 yp7n@Use4I[Y5;"djO-_cJgv6~R7ZhO|IRYz^y/]#0l?Nd2 ͝P0D87\puTx$I;aIGes?0;?֭S^ J=r!Mv3F++ 藙~.lVB=o643(e-kCJX!}C0KN3tJ>=b#~o1rE*S#c}k衢|Tzh+Ŗ8(TT+Rg 2NoeKxpeHH_x2"AvaWռ׮ ]šij mh儿7Fq#"ݥ .NS]G\};b.reKߒ]e&%!ٴ%4bKͿPm6i'?sw61ڜ;i&$M1'3q)}hmT8R.`>JZ8Bq O3ĚWe/0³ϊsl:p%{n5'J~5'7D/.ƨ!&ĚR͎ $@.#, ?n0@SzA4ȫ7{mHf[_V%Q!^3G ~X!Ehp\+ByLa8C\HO> `(g~XrnUE:5%ZS q57v _n; m>Q* fT`ф,vUlXڹѭUallz@ު x "!i(~cADNݞT\6B;@<0$pĻۀy 1!Fo [xn,2L<x ITTMezxʔ3;׼֞lfZдSsex*x^ Vږ+lB"`ΒE\vCTKu{v%"j@yp$c;'mG׋gl"RԙH "A=׈qo US:{dEJ$ 1R ]bE<\*yk_V]+y#t݇#1g/4ՊŒNXz Um<=S26z{t('ez3f z l7= a&Okwa{&'3΋ HlhgqJo>5[w8bL42s^<Ŕܮ;us4sO_hE4ƀEmj_:!?{]YGpmcCebl_Mh7:I[1"#!ſeN 0LC XC #p(Rtr‘9D@j).;kB"p?봷O&q͎s&>Nt_zXmxL U3"ҌH~Uؐ!Fs@W/iƗ"j"b n} gk \(J.XPsU3RSʚl!%|: h-u;p}ޔ-mOuoF,6GYqP'1f#~ꑜ9gWmXIP 0_)&T4]=W)+U>nsk^țLڱ C!ĥm\*#HUcrNcU1ʯFf"(F=.E*hpbORpy#N5:CBޚ5gXdՅYrt>>E{bkA@/XŃYxPy?fR|K[\$0?RG>`1SKTSÖ#KU88>M@T.%YN_)= A5-L/_jM> \t~@r5ӣx'pb]K t x#p f|(o>x b1JB9QtrY{dsӮݏ7PI9L$_ /L7y`kofIJkud*싕>^qnz}}z-TRjb_oDDz M :quPI&u~.Md@+^"Ɩ c՛$ex^`-D9ݬ:-Rת)*/U H|-GGnh,UI> tы{u̠TYJYb_w?،Z5q@!Ài@Vm@#;{@g3]EiJy9 _b(t2j?<UNBJHvNY ˫Y!Wh^}ó?RM()ӯ) $e?e')vk-5ř{QwTܪh fT`DkQ }y\$ pPLUG l\ YYȑ@ T8NT-q87ܳ NyPl ~|tE y򝪙o>>  eJ`Ŭ^ 땯I7B] .# fkc_lu fBl? GC^{Bi/hgsQELkx\q2 r2=Tl(,cQɲ#>mA 8:ǂHCjL2<$xj*&Jeڂ먧[ zh!MoboKĞh?QRևsmNA'_4,f4"K(.k`nfU an0p;1y!x ߸^8 4/o%csjE zQƸiH?+` l}$(8&z҂V)gB3.@ HL?;v/X?绖{Xm|Sdך签ihW=B9Hp1^4Reg5y]Ixe>r:2fpb"g{d5/lrpWT9Ch#lt# Ty o( [ϛHtpUyw_]ّeLȟ*EŲep:)t-anZDa^t>Wz墿j?o\Qؐ(a|nͼ01zZ #U,wJ ׄ"z Nu޳̺*LytEdFF{Ew^ B+*3ʭ g"}:x>oV"-/LU$ޯ4GmUvG3}accjM_oq`0ݑm?X .r6}~>GRR:8!U垶>Z!i@n}D,"#NG~ezq];*sF(,d? 4&:x'`deGdc^葵uR̤ߓ6DĬpD/=#G-?>r|.ᶤP@t1}_١C#cyC=L0ΌՀ^&wmƛLåC2AVs48ˢqz 7ȷgۂ3;DͱZџg&`:6Tp2Euim̊pto$bVdL[VѭX( ՝m8$jngi]hE2/-ȓ)I, Qz!XNbkpGj):#UH&֏ `$UO))yNc:5#3S6ML3({-<5?NܶPȍ- qjn_fDCiq=v~ Gm"6 Dgbx);:E>铷5XRzjb\=bY)Ta)h)oqj_Qg 8wo_cURR6,h{,ߓ rSqp9S[<޶P\.d|N&ʒ H]N팔ir_TT멗ßS:i0HkrAf6h`@PvD{+ &=Z+t`6^&prȥżtvXQj8zjvvБ8{jQ{6K5PCBW']QM0B •c$B],2(/7Yv9JޱSdcbO RplFœǂŤC;>~'N8 /UךkPEx. @<2'*}&24+ZXJ-s*HvHܔ(R٨W'ކyQc8N"塮%)G 3eؙQ O(Vk15UZ,R/s7@&L k2=~Yo6{a_}є Ur;2 Zy^e??A{ԙ2v |.bf'fQ`x7Z)`@ \J)AŚ; \5< kFP-D?2܆lyڂeš;L; bP>ޗ ịb06̢90Ɯ;A_nox_;42GeD~6ׁ5X߶5ev sSJ1IeY:i5OKs;GUݻ;t_}Op n0\4>2 >193gڈ Xf΄8[c.J/![}f_6Hc; l7R@qOӾm|$޳ DXɬvy.\Їt i4I/GjuzQZ3 M>ma=F8n_MU5 3PZ)Q#\36`. "`Vۆ[NZ m1=_ʣ t [/Co(jԃ'R&.-,a+I͒{9~W?M9u¥#ݷQ˄EUfp>/1U Te`S|oZTߢ~X3<Јrvm)(W3L*w`Q,w&| ̜&Je/#b`ڛ +ޭZgT}gܞvr`ty!sҪU HBצ!pW&my?פ?a̎Gw .xOPez!3 L0^m986+o:Y=x(Y}|Ŏxs%\Q#0`ž:mzX5);!d]RcnHY_na!{-v=N n? ,ְ)(,;mNOޠB m˔ΐ9!Dˌ ^xcR7?mnaѫbyiol%ӓs&ƬcL|֝z~f)r*Q9tlJW6]@Ձ\CCK\z)}W4-U.+ s1Ҭҏ } 9{,~׵k ,{+Rmd4FG4XmOUUXcȧ"Pu@<ۦiIіr ;ގ=dm5)iQ;sO; t"u(ǀurIvLU\ 兯 ,_|-hY`ĵ@,}& \ےc@ҼV> 3_0[G[֩EAygko镧cݿZga3<EG\9VN3 CR%pF%&gx<6V/sF;-@ifz8z# Ez<1R<u<}Mvd9.hj -$!$!o%dTGrt(qԎ'Fv>'h8w_;. oL2EIFGbD.Acql;w4fOPRJxq XDLh)+7 w5rV1W,ZbZ61,IizJӲ,Uw.)c'f|.vp6sE`˼66l/8'{QJ ړgdPs1{qah(a_.繝*f|eI 'ZgA$&X{syؚkfz)2v]oi.t,6KH_cdjo=TP5{-A?1Md Gaye@E(-_rKܺ3n4^k qr~ͷr K7.ҿJi|^!5!:+E?lOMA_~h9w9UT^iWPF8#_5XyܯOSt[bJ/f"Gx S9ub]}{{=#3jNc8R=47$ @BXU&ٷcXMzv~5N5ǣ3!{Xޗ'+%k(QCQL Q_/|1ڏh6$X`b0 ] Ґ7jCxFdBi Z*);K_ap.=kyH; 88 HyJ2KQS j+yH'D 8esQM][ԽuܵS2 \C7a~:y)t$|#1GC i 4P*Ckr#:r 5 ^ !u P؍jGwj \X0\8qʶhtNy"(Odm7xw5bcH ʵTѱ%3cŔO5:3qnuۂ0 s- = Lsb1$و}T&uylD _\NIO&w~SvnPQ+V}ax:@Spmf6t\ B0|$Q0X14YrBQ{}A_ڗ~:Jx)\8#[^46g7s$ *|S)00 :yQonxC=3"?z9r=_z^\jŹ4q M,d kP<_/C(I KfDJ&|!xw+|(^*yh"Ōnk#nx!H] ĚD]ոEr^CZV"X7YrH@b'!MG]uyw-6@ݷrVVza0Z_0)v*o1"EbjY\N Z`ō l{a6ΕT$'X88EL@'GmmD *cbr"л">30){APK'Xp1DkxGIK u֥CUR* DDo l"(.v VŘsToW PF^ZČ; /n祔pDY5&P|@ uL}NE &G7Mk(unaU>}e[3X*A9Ȗ鹺I0ZV̦@[#N(_\ h,V p҄`Fgi,u\*6t Iˁ)p?4Yc_j>^HCƮk^ %#A6ӛ1wxG]MkR\ƚwć~މb:N+PRU(nMB?P P4`saN;'㵇ݲp7s4ìd'@b,]sj  oVÔ$v@uz>$f>@{"7#_VBQy9æ< K[~q+cyd W*OHcң=CJ_,OnJ !{9E2UfxA/NO4c1Ub4lֵ+^<ۖD۷R a1Ū\ XEr6dW4_KbqPڔ\׃J޺$&`{72d֖|-3 $K"ĎǓQp;A'2b;|u*t(rTE+hE9sYeM^:񆥖.8"ɩHJ³fƂ[īBժ"2d NI \p,Oe;hMнwb!;$ uؿi* u}9`|ܽQ@-uE2pC33 _A$m9\8d7x aUv 5:8søY*%qwljfF!!λOuK!s̄v=5PP)iw؏St;8z`O5!l6ZrAZW\35-nxZ Yy:ȲX7nklekn@G>i" ea fO{7کh aL ~T'x<eR /P c:`| Zpڥ$41/PNT)0XWíu;2?m(Tc;9HjGvtЋ0Iu }N|WWPQx3 85ܓbzj T8qu!ͯN9ﲖw f$XޅXmY'#c&M SqբsJh_VhNDz0X-S' %,R*=fNuGtILTuiaZ萅%5!TtZ$ +$_l:zƅnΡӶ-@)LR8ҲO"+90ߢߵgi#o_S\.hc7C|sQ S[*OW 0MSu2)`Mu}® ) g \3(<Y>1ͼOMElji*ǯ,7.]QyfqMYQ5ÒDKE+erem_?r]lWGPjpMI$#Yۍ(y_UѪsShy3ƫzX>erM=vzXF uӡqFچ="Sr^O6T-%9+قY榆SA(D|? 7*3(>g= v\^|n4RS믕`u*,ztT HEȓHk& 9dCrLrA\{ìFuKv.*V^Yڌ &׮ mPcA'qXMc7 ]O]B2] 4K2w)*D0NȲ6EG<|:{E:e \eimڳ>{^0HjPu:j;_LMj qƷ6 ڝ-b1H4O ~z ܻUBMKdFICz=뱮+gzϐ䅯c(9 5D+'lj$b :B.9=VF_\vƀ׾:56^E-A ȟ8=yK%HX *nN/>̐Ous\iu@#|zM% xٝ¢C{ gvzZ{HŀВ%ԥs oq+CW#+ygYzNlwޭLBȗakFF<>04h,(#:8|(zW*3M 0(n`4DrS)Q!֌ *GA)Ñ+{G_]e$ bǻr0"Zz=2 VtU9RP~E#-cc[|{O5ul7x'E6VD MSWbO&6NK/99 <LX*㈙y9o`ZkĢ΍;؎WJD7KP3)Y3;mel%c[!.&\=$3a3S5c ȴ'( igOYXͲF!Gda^%GxIAzpp6"1{4%kѽrjb9{Rjx%1Dp}Qm\0$Y j-ӈU&)7j{8vED)a\]2R-`sazx·}7SK䟑3>n 0N@E ؎?W`XtJ1aBڗ6v r&QO>+<#oHS'n=(#6Ubjer}=y Dh.[}(:J9l&gzdzcDvඓ=QQ9MP'NOu%M 4ṯ'qķ|}/-?uHd;( R(]05FR박U{\gLHUA;svOSԀ*}GzhWOꝵB=:$;(&:ac;Lz.9nǠ!F%^xi=5.ZP(.S^ /QDwN{ #7%c"@7@wdLZ 6?<: ǜb`c*gh*kҍD;Q?r޶6Q~kq!w'TjEJJK XySL! Hi{j8GY}}ndDYl7@v$<'c6ǀm5ų铖w"Tl8Ldm\̜bK"oV6e35pf^g"`# *[ZSa&0Wp}j*1;q;&G|D\9~ݔ|44=m%.1k)W)~T*¤idȱbd)#&Xѐs !fƈ\ouxotѠYb͖5/?0Ufa3s1@.Z|S#G?Yqp+4ø q-fA$$8(u@eAp0 _wPہwg/rݑ232ȼGc/CMCB_Ud)էN͒ rJ~pX)*%Ĺ=8nC"z쀊O aZBD -/E[s!4Lq\t`]ؔw)K,i{ߺc|S(Ah#g|U47OWgm}eS&aŻϐ]cW$l?O$/qrSq?ξp/UEcn(;?! "@ ɒQF:%G6ǜjms!R۵nM{s]Iu-51 rr94V$Djh!.on0~!}\4 Q) #(*\Bum& &.^dt*aϫH;, Q0{kw9]UN剤G!})Nx$nXs :ytuU,ƌUh2=أFs{r5 A.m찔jb[ЁMYk*/O;e"Z*:HfWaYe DŽ`6yn Vw|Hꅡ L[cWR^( ` EܷU`xlK:BF=?W(U7ۃ7}݊Vs ֖|ַ 1{5e9HǟwϽ!lYmy *L}rK3ݴv| Q I*;x-ހ[%(ڢم0&A}z1տ 8=}jf#;Uwׯ\ZaImQ&BXy3vO0x_Ho 3 w |]rѨDm }YǷ(n0@|_vAq* hT%9i ל>!XƒVhׅۚD1T~x̂q߯m-['K~}\a]Mڄ8*h:AJyuOak3=tv͇ ݰn@˾>!e5Em'N(6l: hTΙA/ATN@ƿ~GHLyZ,8\;k)c1tHdܞWEaUC';3;#HoP-}c>UAw:R]eMgc@9:^6A_^m=FـF,R'kCM׼| d3G-V\!'ԁHCc7s>v|ӮMg^v:6G+ %!\$!֖;2)K,,A'$`NG ,w?$ |\8f$QcAgxMA;)pmMYSFG<5.s53O{6F3bBhfºz VŨ=&af >!^Gap]fV A3F)_Z5 R%+,850 6a17i! SpHY%pq |GoMc hTu8^`.u8Mvp[O 0|S-vȷ t&V#;hiHV"orGlRzޫZ =6:)X:&':S0|*$90)BdԀY 6s$eޏu)3nۏ了qN:i}A_zMRxmnZ :tTx;yZ ^M%?q b߄lA?t.cX$2%ъ"IĊ!S,ywd]a@uBq~Ʒ\ޠ=r? mBbKf1%͎bgP2gZDh?Dth=nw2}#t5) z&.[&[`q=6+L~@3 wW7YcA*8/e[XVGjÍ ym<;$:c|K+dޚ8M 7h1{ոT/n{@Awr.A<ygvw?-Ӿuܱ-OH&Y,5;B>9>-V-8d_~&,L(Ǧwug"eOɣCt85 c)I"fM62Ȭ]mRt@;/8Usa~ǙT*V/"//G"pƚ&Cǚ%zQ,ؖCݸ޷ 6{2kay_<|^11/bT q W@:g|Nq 5}C5kО4)mլm NH}3V@` P_?BXU, EqCp$1U~HSCCuXid&5u(ޑO&ej⭦ZFA8&~ [O,n*6y0`zg؉]J[_[Tlwr+j-& ݶ,EqPg E]sz!Brzϳשs&ob =1_anFl6'r6xH֐v+s0!Dµ6 ɃsހН'4g5р{£$O;^F;n҂UF(̯נI)ܔ[,d\Muj~/PS 6yP|M8R$B^ʇxQ$'3ȵvIhxh4(}! hp)ɌՀ,{ ^1m@9!M G|1%{ =+y%^M(t2~F]T=4X[Y B=/O&tiTXsiH8fd> sR~bzԤPOQ1a?bk7).(}0:=)q$7KOsҮiN.Zc$"F0T% "g@l0F(j3X 7XsWLWY(_0x*uv/h,; Qqjȗ/*;5E-0V $k"KX:h?F?H{8p}Bi[̫{Ec |kix<̈́ [/b}᭩K^kTDjDj4MUp=nKl,-l#'\0[ZK’~¢N펛T#̞DOG8Ha1=qj};Icm*ȳ5@]Jcw><{k+pDޑԃ`R{$"61_ŀ^U'2 ]|_%Iqߨ&,[Yq|:dG\8<8CaEl&xAYyyws :'ѷ IOJwɶGgV5C8Y"SQTozʭOcMuARO=k9fPL`m9g]u!F`&b*:A*,֐Ln} ۞ qEoi.[:acM@_Z4$1V9EV+_:=cU#<(YTEtr$1L7V*>2 `xNeC p nCa`o%3Rlcb|ub]zzM8;i_@] oڕ}_=.f[/pqѦ^h! U*=N n JCX=+^.AF9j_0j؀iva`u٘)pۮNW}VՑN@;ρ #Q>~_pޱ8.37RqݤsSJʟ'ZƩ{3Y:xYځW<ˣRPqBi~Jn(6B`GU˓ ~Q'VtFfO T!srmO@$tPV.oUfq*ðJ͟4i?4Cv6bkP@~xWGGW, dE61CI1N v04'MPW 9e:~vf* ZT3ÜPBEiLm˰AK Iܛ&ZNeZIva=fGP˃.H,rF_^yhG9z l`%՛WQxHi{XkMNm ه2.[ ̌@/u"~y)YlT߯Pdo*mLw _MO7F(S{{!]_/jΡ<'Q=y uasg ̞ :Ŝnӌה/jfV:&DUwNDV6.{T%NDNn)Á]6ϏP/kLTh.r(hVԙ5f6jC[9Q9cɶ8DJ 0MΐtYn(qk; ؇W({ƚ&] PK)3ށZ HGb3eb:C,>Foj#Jc";pcWfkx/vu|ՔqG_`D }uюGoP^|?Lntk=gq]+q }q R2LWRv/8qӍC~l(pug\-|(~K|b.5*['T ޼OˊI0D~y `1O98S/Cx7H&'xJBaw)z~˞Ӛp'–)gj Ш_|PXg JX5<~;C c93Fhn tjđ^#j~4c"杴V;i]&^Mٶ@ZSkN42_gޑ=ݧdߵ /C@b )0A`#\igOK` XՙXH@ꎇQ-=W;U9hey|]BMs4φfݞg7iiWKbɈ%_63"5R8mpL)MU\%3VzVz~w9 /5L+ ((x`}4G``v͝,aϽgʻ7R |SMb'W#ΊOӏ.|QTs~w\n!kҰWHQr,箙T换+%9򮕄MV=8L-u5'pu/{dgi[m =ȿ#d.1ٺU8 \<}|,Hd"Gwdo慔fhoo,CmF|-Of=Ds!w}s~n%r!403p˶p JWE4rM޲UBV=yXA]q ЙxxƯrcD4s,d-o"jq\sf`s*fXdLQ!Tz\0 RWۨgs?P=R҄Dh@XVB_,r)=/ ^x״~uzoPMơzU[}nWޮ$M|?3W""7!rznPFӺ"ж ՛;vlטSmdCT%+D ߥ~Š*xv8\,@h-%* *5V/\\('N)d Jnzkce(=΄/q#6`j(.O r\j}UVCwb +&G=06Zb£a=$O7:D5%o:SK#s+c #%S^p2Ew&p4:.z8YŵNNiQDt^xX{D"8ꢂ1E -kJp3NFɡ*xڕ6Vsm.12Tb5D w k> WTBd,yR)d3JJX >Óս\wSf,ؚ-~]x/)>VBymV4&yc#iv]:-X(8ӛSܙEwgJ֖U 9is Q訽G+R}AS;ۙoD Q8j\5>-gL ˃V_tz¿ DEǯ?ƭ,J>| ;\Y?vɼWp6Ld}*#sʕƪ >9' ݉G Ųdu϶Dg Un K r)a5 e=̋!%ƈN/Xݑ  9'i^+^9nvgҒr\?x8ۦ|qDz*2{9(M\S4XM#x> ZM@$Tn}]o0.GX3r4i}A7F M` 0b1)!^*tv9<ܯ8ZL'K?:Mƴ[TDѥ f1.ѐ!!*?0=R} \Q/FѶBl^^=C=Vn*!m?f&X|RV i&4 7.iD}@mM[Ha{B}p J;\ՀkoʭY׫#[kǚ;,dCLNʋ*rY7<(i姤#6|[%YSɕ(vDMf!?P}XXbĚE|,qx;q߬i+n1$ #ci06vs1as!K'aXiD7y1P+>'a?Vi_LwҮ~06XZ֌]&US_xz/_CoO 4Dz΄rzZbI.t;ymspH@Z9H9U 3 l"v=C#.˘qס,C@D[‰Vو4˦Z;GӍr04e2[2B&b7~ IUa)PfJؚ/MymKHvvBNOSoKEL =8i&)A:*WQ@*#w4T۰a\&G&#A]jH8 FR|#a~EBsedCnK0 <h&ȯ\`O7,^5j4赜j0/yALݱIV<#67E*@cJ@&Nc#n`ª#5RX[o&#>ĐMޕٔE |9G.'ȸ@g*u9'o56/҄&:!:`LdrBjDEf"C{nR}R=> FtCb#i Ӧ\gN &3#N`S%@cW=ʟ2^lԆb₼7^ ig 7,"gYܓ|B_ʒJͥ?+>\ik:T̾kis54ZrXc'z]]Y6iGQtRU3K35x\aaK oM{-V6R ?Y9(`,i/`,D؏l@y4 `\[HUW-Tv{!ጔ/V+ll޴OPÒ⣽}15q@`u)%{v9j>sudm"2'p* i53 E"JLKE^90A#b!甡^v62{[]XI2ANr 0sgMɛehWFU_8>{,AYa =|[;ԺJ#}^=mg#]y卽gA_tר6к ?c{9 (4/y*}?-|쮂`=_jW’{w|F-#/V['kzU }1(`W/:!ީЍVIy_ 50 #[ nrq3ZDTf[g!p[/6@qtJLձ'Jv^Bk\_LpfllR:7!юŚE{!8\֔ v|޺wIǮ|J,o?̫Њ2GM Gzqd5OМPp&f`H;^2Buv6amcm,2!1~LvEs4~sC(4G({[# Nlz]ӌx} ) n H${̖RU~pocxZwեhCk'{Yά0s^E%~IzL#VrUmcPۣ.'T=QPvJb'Y{R,.!lͯACؑ!.X.DHBy^^:"gU 3<1ָ#zظmxhM7mZ<횕u(G|c^]k ,%]L[؟XD0ې/a *X9ůLMa/<*C?d WIxGfs4* $T+1f40?:QHO~!Wo8 3F-}0ԥl)S\_ЯB#0ȢPrěl&(+еzC+Wp0wYt%yd9|s'v:u j>F294"l=#P75C7I9YUIшhZ8 D%m>]=oeV 'T`DN,,,z@F/ڴDSK;ٗRq~~F$heqd+91#0LY-]I4>9l(]Kô?L 8^XX+##75Em )qM?􍨟jcՠD趠rN8$ 5HUoא2vG X A撃`ũ9ԋ.u诠Q5J׍Hvq؏LmE4M(95Ofh'h:)PU$w2`#cͣ9ǁfv0twBxǃ&2fa JF7Ep<ڔW+%=&ȻIlia.SMEP2e$0]re%@c 8 %a;qch_3=:07n@7'j󏢊O*]ٜ5Fg|ĩoݾVLqh= !o)n?B5rR5yT^J\'T{樊 ,w`e&468Xd J%.lZ0^^3t?^#TWHQ`(jѠ-@l*Á6x)[p4'sh;XgmFKoB-x^G"}[yͷf{mkt]]uH4}/墚m5ãw]տX~G S_Q'Ymsx`Wc_u["E؈;",328t5Wn!:I],߅C[n!KILE >uoi~9i_+DjRL':?O$A21qjHd|:k:#S qsGjo4uPp)5G2WiDGpԘ$Kռ8"H7[6/vBXLF7RHX(tD]\(e.J˥pһEhM3,gPj4M<~*f,mo"!d6x P|Ip*˅fܗ/ $AWٲb*t腸lwd@4hal;жiq8B]] Q 35AyD |I+'&Bh9(|>RZRA}xkEvXTeT"J2ZEٮ~5K DX9lSKl)+L7:U"=N|/)VB 2;x&oŒYoX>q6?QyhcCT >)ťbi1v[F_`M\;jY)W),\DKB$1~k3=D<iY#n4:pr  }K>5RWtj_1^hٻjd?kCWSz ѷo7~4%/R>e3#a _BG]jswe@|LҨ \gIe+9{b9c"ĆImcȢ x! oڻ,`Tڎ.5-4c\WVs~yʴ>dѦ.c,'CYBVl~% B€%J;fϼ4p3k呢죣R5B8 t,&fη)vntNyo5˲HU\ mRi3ͭ˃ ŋj\3ċ~ZrNNH*叧ok8JQ+F2 6QBBؒ$2!F44l!Zf :Xɰn[g ,HkC};44eo},_KDoL;`Y,$xnRԯqu3[ʹؠbՐboܔq*1X^Y9 6L?_ĻEݞX+y9wFqPڔw֟*9j*S5ьiw(]NI^o&' ,OaS<s,yXxufT;S0[+%ms3*Y|P%e}t\ZSQkUO.;1/JV!dpCl.hfz7SIuD>3[?iWUy;f0LoJ?PɬvPA|w^~?44ު88ߴPH;ZRhsM|"0|ė_{2]>vѱ¤?G!5/MHz0mͷf <֔55T[H)8#6$enRaP&|ۑ#) O 8n"O˝|P\9({ŷHl9So}z<0t͇u=<$@5IW1:Z%݁oGRM{zE7YybGPD8rт)xS/wF0e@cѪI+'Y|g n[SR OMtMƪ]\؏M*Y1:qfSi1zw~厥`R\?aq `+${Y=鬭Q6\%T}yCD\s=g="+8vXմ(*,ȻzPFc|hzRPP+%M(uE <-1rND"$u*.'H~t[%͐);?zrشjZa5V;|г4]OQ 8V~wz3 %MzȀPeaGSY`akc-:J|aln/Rtm'lnL!@1JV2-K'4r#/)B0f5I; 6Y qu)bE<>.4*ldE 9'f^aV8xjB*Q_Tujs~c!&Ȭb oBtPHvz:uG ic8\A `P(i/L\謎3%ej&p+S T?m7vEObՉxǑӲB|SF.9#,]i&0洐銘AoV\I1MwZxV}6튩j:NU#Hױq`knj"5golu_`v)V88g];hz-WBTۊq k,)=wzJXd#އLccJT [KޙC0%9%XeD04dC*EYNVZ*DAJ8m.Bqېz0Ŋ?[9~N' 8k^>r&P_6m uw2pepkOPfZԉ PًgKc W NuHKx,<:Q:L=؉6@ G_j+wmdӣo渚le˦3V1; PFB>0)uj)LBg$ MqPYhahoN<'~;10 &\u7q5`GT+fٌ5zKo:%} !l4/o]xokORbovkcmLXnb$\? 8^s6ǔ#g܍v7hc/-r{Dkw_cIF CUy[X N8~ ,w[ WekIz:Ӧ a=|h@Ҕh&brTGj8geu"5jRw6}8ARSZI60AC_/1\H87YP_3'BXZaSv.iame1 Ek͛͟R㫅L]Eܸch嫤p>P 7z Jqd<TØSH`~R왘x8{!et q`Χڸ hXr܀Ԍlui~CN̞ogXY R#lS/wLkվCGFkFrE ?/-zȞfZo9hewD#W{-B*yS&DzDLvAM]P#$ٌ?gԱHCLZ8 pcv8u4oh&uxjK=Da  9ϣyL**&Md8L]|l\xCAIڠ:(x.>·[S/_)@,w :QaFoDN>cUBN1C* յ5G{, h=+!nr03[;#WƅX(!e Ps*iNO /XQpX(+hI  &Yl/N+:1Y3@MvwYsWr'#͎$'5婢h/G^0 n7 Fv-xY=ĘTc"XOkB-FvX<ǵaA2ݟlO.V{^p9E?_Э E"pd,@48e>Vsn<2)/`US]$ٍ0Lmq+(2@,IjiG+TRXJNcTcmpNוl&J E1nF$X7tY;NGyܤ"(@Ge.qc.fZCؤO_zH`vj]18,%A :_GhĨqϔ"&yHy@B=C1MtB:w}+v}ŔtʈcQ;PЛÓz6AU’ķ޷Jě0s{ 9 LYvӖrj5R #rY>4%'h!#Ŝ]#޼lk(#Fh>F]JuGj5f!bp_.{{ r1C)1R Qngqp1S|ߗ㼐vdG/õM7Ǜ×Ƽ>n' aĨҤC0($C$> Bq'z˧B3"g=`3s5e.#s O@}C"& hrh"H&*d#\.=`GJ#~ΎD`~r$KcxDj(JaqXH-J7+rTJ}6[fQ/Y^v0V$(;3+/`i&e\gٙ ^NJ`2J=s ^*g,h K}P rFFjf*;5ϩF x06eyy> ?!L] )䎻?oe w,1B1c8xF] _?;S=*%S{u% |hف^d+WS$G8[z4GixK?[cy@S!0UԖwu)'zbְ.Z8IcBd:u-{e{ޑ-$n4 4 o̳'72/iv9c:to|F*L  '7 {R?3#$@B?/1Ӷr>]E8sL>as?ڬPmoqǨzD]b/X)l =!3'4{`/?D&=E+;5*GftP䧌hnZ4m爩Vj[bl>YV._ W;И\a"A -@' L 7q8\=h g63Iw98[f=OF{2Z_DZnmzP sVO+kY!G`mQ]ňgzMP~\@}{~+d] LlS/g %IJk-^aolRJ^R=LVVo#pnO<\'xr|]#F5jǹSC{@`y&>IHP &}GnNӟ1>,i,>o)M&'XiHm;d1ik9 QIDH[k֌Q& 9o.]V6[I*xY;Hl ŵކ8پd43!2t /PAtRn)n11{嵬څ,qw xol،)ľrNzݞAGF\J+u3s?/PCƘ]j|T_q4ǿ-C+" Eʷ$?lSK")yZ!hJ'rn; cx%O=AYJH<<Ѓ_][WH:*+Lݠ,k)ldsN<ѾrGFaԋ@{<aY Bܾ" <ߵT6{`SP"3 ` Ml?j@P$6wrǠʇl, OzHY뮋f+EqyN&agy6lu AcqC6(t} LI'= BnOW"eT]r<cv–1bZÔsؤEW.S< VɭBn)(=&lF'+TS& P-]V_ LSTÔ0qqT,1{.v)@s3>7DIZ9qbIj7`WGg[¶=ۓ9c_ƈ$vSa9o3T C-,ŏH>jm*kfH7u&U)= 4R}$PFBģ#ºM@+Tţ4R+ǮfD׀ɓO&ދɛN++עe*}ecS7ZSwMOYf/(qvm\p۞c͸r5:pd)AHynzXs23up\QX=e Lׁyb"f6Z˼zObI-M7 Ï$;bf 񌊣Up»$jn#68o֚MHR"zOBՙiR3#,o}efc2.J'b6M׿YT862ٗe09 |B(Z&]$pp=C9:KKnESLIkKz˫#i%#Wr~EE䗻uB|R?u^DIbmzpIa-oZ$x0Vja1%N nknUX'FWr􄺟yȞw^TPQ8Ēki >ʬ;$yFfYxb!)OpifxIARN3Sy1Cw82j`)O:X̺[T'9HMUaids!l])U@Xs %mi *(?G" '|w. ;?A~m+zD2BMU`w@.DrMj< jHKS4|' +f@Y操ZXK{*Oӻ7tJy޳O`|[jʽ(2Z]5KZ:V4> D5@/D(3/ko\ESB!(8ՁŐYu![F\g{:y8#<s‚ Q'Exڛ݄j0 /9s#ɏ"Am @nAf]_qg0NlZ9$ `WHh#;P~./-tďa/sIR;z"U,pzh DG,SJ\'l嬺?*q&}yAOZ>G֪"6G(?V0A(6s,r>Jd:~/ir\}XYk ~ #kLGos`q`|=xˀ y3-YA#/`2Ϙ}f?JˎRCb.G܎FMW !nrW 6^VFYK@g1 3ϱ@M äle/+\z.(h՛)zfV m HcI̱-I_)М. +9^KՖeCF4>Dٰ KY - 窱#j@\٣W9 2pF1p Fsf#%6.ĝU-"tP*trd+⣷d+(\(_FZ ' .dKmvFg$41kNWƂq&RxGa|MUKX'MDB1s#\5NH]D4&xPƜ@8|Sg*mDno=-(W_VK ߀^b[ԙh U C3< ʳavFjC˧RZ:MBa)>V}Ys] ڻYJ^\\ y0$Dd/cEK*!fYf /w{ fe|]1d1%.'=|L'^qdXs$wȄ3mgLsIZݙhVψRۦXs+,`lc 7u1?>Mٟ`P'Ok&7s= ټ=kPL[&lϗoW%N׃#{9^Ӡnz34:3 (oe7$ߋ7,|&IlOj`D N`@=&c#mIҖ'lu6Hy YsEId/ϟ-oJh9蔞ԑ;&d+V*Ñw՘ Hda!6'$Īțo539zтJyV#4Nn_1 h@,hưiPcD-iKŀU1G@!;ԍyk4D *L sUaI D`Rf ZݫdSt+{U_LIe8qԞLj'(}2kR-xf9`9Jvg 2+a(6~?jrKUܡTTlD{;gtf ("y[ Xi#yʻqz,DYe^iJqc5`+MkDS 9ۏF 3 (.c'ahReN&e :$l0&جLڤB- ѢFݙR)2B|x LsLlyW̖\>E= ֟^&^b 7ݯ 5(eZUTα\+qՋ^n!*b.6mcL!R]cz(^KTY .Ϩ1l%vŬ9,f ޸Cw>f!:B4#o,NT٠eD;f{p['mƭI/!+tʱȱniDGV);~,ÌE"SqxL0df[a&2Srлa*3gnbwJ5ȲtE'h }j_?sYuu WT$`:>PZ..nO /sMȟeg& 2f?Ӫ[GD@S袩0qpjW%mӮ=s 8f[9,yʄFib{vu3I1.^N!UsGm^1W{k:UK-%RoPa'8>諺/]];lbtio%񯒗Ŝ^]qtCaM  3؄@u6e70#y0s&@ZK:Ȑ1ê >J]z.C})%6[pv皏y)QRrTCPw3ަCV-8Cwn=9ܬ{sӘS`DN p[Dk"6WC_/%Hsk3!#j }B-5uUh *K+M& 05H1DD,%URc:#-vcEj@/bAPmLab53%PhytKSFV=?F/yS>㶭=7Ðhd :>h ['OPp溺3 jkㄫ$5!=(%#q~ɋa\<9ϊ fAjQOѹ#r[8"C\}pE2 ?9eO`0RŀK2Eú|J#eu xCPC>z˘B qf KW'j.gQZ!De##C3;TL}}Ht^.rhDJm: y'Q/&/qVҰ\zF,x,F/u]#|M)>ْ^;zF/u`Lߏ1 ֝=NXx:KJc}1]D".NT^o>ǞнO;ԋ0[ݸkɂʥC*gyИlx`@j N3CJ1{Wk(gx$¹݇}qNXG4$ޡ! *4(ZR*RqkiH},q#*!{1k7K6B2ޘc8Ᵹ)t e@Ѝ;pm6˾QOh6rr, tȅ+ύ~ӥ;~{D5ï!8U8ӂ*bUL,VPSC4rg?.&g.iN9Arrd݈NO߱tLR,VK dvr<\^ܵ҇ +B<5q Rgh=!@b|G:y5OcXaW'XeJ,#ӶwxFCt|$GX,ꑅAOcUe!@~N_HkaA^*5CHdh/ѼRC a C&NJz܏?a Tٔ$8yN }C, WJE6E(;Z˂t_܏cf^?S;N}q"\^cYWN%?,5?*KkOY@qQ͜G 1r!Ө?ƒK!\+buN􀭉@79E^6Bq7>yxQ2|n E5tU85s@lك|v A5CDD)j޾CJPQ 94>(o؞iA~g5]) \ҟnDF81[_uP"**,g \ 6Jb;߯\u1+DIURq'\}uNy+,J dm1Ƌyn0=  !RO1poNȏk"$A Bg,,P$u5.䅒t->`AuO^@:HXʡtm=OU/2ATF2CݞU|xNBZw3ysVJ%mG_&]lۙǼ()_=.V||qSx$ H4Hs ȅ~OǙA~GZ!F{kR#.mV0chnLn7H Ep `B5”En_n+CKw3 o"(rq;Dc4Cd{[T>@OԼj:|:4ۊ_`IRh^^@\57a˨lL@m{ ʥ OGޗ NQ*߷γ7nppf 5#^G;ҫNvm=YnZ*ktv.Z++`ORo*QPoYKrӆpأXA, vZGm+m# z632 QӼg"y>mqzd']r[i~+wtv5 v64;;]=ߜ lZA1bTkR]܄*c'oJX S.mKha2e%_3Ĕ@__~_ϮE {y,X\6}VZ R}dRi{M$#Rotc%CzukOnן8!` ސxO̠@}뢀7E>z@r}vpWit-H7-+`zpxvgMxp ڤ;ȣldk* &wH{蹯,SM6,Z8 Dz ]s;@٤G#O&' 8DwZR}O`tNMHD 0mlĂ;<*+ xhR;l=~|Zش, 9I@/4kT G GYxZJݗ%A/+o#$:Egv\==Mv=-AwGQx~Vʼ@`v)OM'\-:rk Ȫ͒/ʀ0[ޞ=[A 7H/ٰI };ϐT Х Z pzT,^uMpvʥtC5zUkni zJz*v߰Y'+$śWzCbgX83k,e|%4I"\\p.,>?܆sqY0#_#Ow.$&%ɞl~XG= =%*J5.K$=Ui+GrSubf~E}U1vDD0{s3O8?ϒy,cZ 0V U A,V9Ii7p!KlV yZ x,lqՂEal0Ilcaە/.vu~T84:tGtDU 6WeΫf(yV%2ؒULNJ'j6\ؕ5p$&=$x(; }_+uxQGbɅ).=L.א$X[0O\3x, $ojJ_{@˛1홹+i{^i<~S,Ms`> My@i5@!ա,3^eƷO#"xgJIda=~" ,Dxx]5r5b+R1diR[f R{]+N"A7<.ⒷX`VMg E+g+Vt+=AuPi0{^bjl KPúv\*\T}h6y9Qީ d- LBj>:9%gB=}WǙe[l/aT3G)p-%@1WF5#=8dĘ=5*/j#Z}nci1<-N<y>j/HE'k;*~-midȬ3(̞ofZjB* OekV:=%Ee:4( ;@-T߁5ە.?gDcDnUV:T^nPTiU~ιa>ye3 ;JH(rNDBnZ?WQ%{$ Z  X׹pdz]pMks3҅jA]VDO(j J"JY!:ХEtX q}LșF%!Wxu;23 a\sX 9ODC}R,5E!>'x9θ v:Ћ'wݏ\zx(+Xۈ%WEksd.]X7q6L{A0@n} C(?hL= !p{(ս^~\8kxCIc]q)(>y2qeJ_&t͊i̿'{8~* 'Lq&i 9;`Wv1RE';J}{{D=-IEϙ&:<-t6UWүjH'>7I!ߐ~;}dh;֖} U\Sx9%*ˠ^I !C_*$&%h]aU?M gYzP0F ea_[Nb\[i} zk# k]>2\tMEF -#Pͱȉ`иw>sKI(F7~V5aXKa7Iϥ&!VA79~C/ mmJQ&2Pٿ 5Y&*:>(.Ar4Ւߒ\}͛ɟ2)QC u"ڂr{MS<9&RX+У\ٱĻf2bz$RN4Qų)0O7b0qTS]8 5u{ ?mfаttw2o)f4Vnˉ:I]r7Rk"GCtLH4͹ \HK"*)-Q-C` l  ,e42p%/OT{A4YzRgG4iDӡCFs4p`~QY-lY|MNA=f=L2"WѤ֕c& ɱiT\LzIDg:kJ'{τtYM&szÃ6{;˙;x2Vg木5Wpa")[K'8?B+x+ĠZ_JQЀ_M̹;<(%~UnLV8վ ,͈z ^#x mevad#7f۹:uj` "F`gYxSV RV*8I:qv_0[Ӷ˹# (FJ! j<m8O$qdjMa6P$d$vP@u mH4(osԸ^Hh]\[4mauGHI~a}hRU!$נ5v앭tK"l Sha SZ: -q)"jk{f LBw(u;?ʝkIJ Yow3)ۿ>/Xh9_H̪OܬF~4jGx^[egJLp55#/RAXc4E7vOS 8 zc! ٖ7  R,i'Om} ~P{~W4(i㐆QX3 Ӡ8 *öfszE$$v'zJ˪!l 'Ds[8!7! *uڤ"!9)!z|ura beXT OaTx~XJ9{v}&q@y`D9υF'~Y\~LJdK2d"nf1) 24xА&O r"^TPu37Qf虯(Hp7 VfٸN`F)n҉g'eWFDPn$juF4AT` }-o?|"8QSHv5/Ia=Q=n_toJ0 Ň? $0XWapxP?a!&XCg=~;.zBĞ_f `UMxa"}]^qZh▇'Zj=Qc1ȪiP'7Ֆnp] =k4N4Vh@&S2?q@M_'``_LOwf,2[ 6dVu==D bOfyh&|nc47{GXu~y:,+)`K6]aƯi񾁨=nO<+ e%d"5_l!:]Z4: HR~eh{誈Aw796>UNXD"13WU{60 RgOs,3oԐ-'S iGIIt݈k^R> !MSͭt wrk ;/.o3G C,֎nb#qڈj65bHuhݟ!Bj6V]Gʀ@r$2%KKU+KQz(7&²Θ!d,#{jcƉڣ$ t/֟ʴD=x匳4V= ވf?i>Q%R$ S&9%'(@itumjZ6k)\xQ+LF* aH rI??҇ذId ^|H1s]QH'N)|MVd'nX8m0DM+f6$8ȶo?4C#Hg9zxaPRoY krErG&R+j8]%W;SW"v0^E8& KFWƶSiaYm08K27-u'~"4/?66ze'|[Cv^;j6'D=TZ$i_^(N\,]~EyQ`jCNNRsL,+jdQ\x{GA!4Cgc$Nq ENo>f bDs kw(ό;e&csnON9P]O˴%{_cƶzQt;jҽ62}X% 64.ȠtE߆B~6jʓL{_PA1[K*}/G dP\~P->)p2VsXD za,V_ 0aAaGi8Nڨl6U9xVWݩb`_0T>$ŋ[BUa}z-q9RuV*t84x'X?ܑhQIYGf\CYN"yhC 4YCE ,0:64]x ΝB1/":RʾPЀ 5t ¦:xU^s1:$Pu!Lk@!铝rZpCxʱkH^r[{TE,'pⵘ]Y=9=Jbt86J`P5OwXܗv8* Sʝ?gqR/e?%h5Fo D@AGq:ēPs#=gAzD%HDF4߻%^Z<6>Y JWܟd|~-I0Ġ-eV!ݡ\4c=QS-Wͺސt>xʾ:Kэڽ)] c ̬/᠖_#L}ȓ |VK_:l?$5etjss#R'G=Fؼxs= ;t6,>w~M+ui&12Hۺ eF")]6 v *s߾B1+ۣrL6;X_,dW&c1y+:TfRLzG<>6e/48ndա%iw?Q{oxIi µ„ݳJK'BfܾFqV]$7զiؚcQ^x³*Ψ]Lr"׸ټi9up t`nY:- Jɹ!} X r] I vONفH'cT`peˈ+wT ii]Cb;`HG5'k,4)9V7mV J }}osc"?Zbj6m84j4y>.(:> 1Q 'dޞ&ESv.>pr2LVl<&mJ+PPjIKb gNa`u{22MTTz] K ._To߳wuuy%@q6f. TDkOްB~4EJ67_ty7s ⇡Zv`7S%ҟf\K3$c`\{"|~1`@X^2&mc՛k{SE)ovcPiތhmɨ%xUM~ IgߥHQD6@avwX8aG±clmwchSj_R*=dYWFaYߙ9@{{۪W휖sK:'lBZ@H(-gdjҌrDmRa 1+,F7]v/N]0%˂}L&8Њe.4̓hb)wo 8e*iE $Sn`9 َP$Kk.;3NMAY3o3x"AK?xo@l ~M©bqLV)4)+#k]MY 29Z-E&Z`Q< QhBhPr8Ygh -;ˡv/hRcYv#X #p̈vgUJ>@VasArW&Xp"KQjͼN^dZG3  2oF̞@8s 쯴+YCij!qVk<ܮ2jx@K pQ߸-jM!)V:E3MRBmM7uq? )sPV WK$3%t$*EmUAB3ZOib*WtNnǨU o/k$F1^OGN-y*[w6N-U1sl>UE< Wd6alNDwė(̏>”4Q:(ѾBךW;iQ0ȻdM7s/7hMGD`| "w |"n+#>v(7Ei!#-X#}tTӊ 8Hinq'Oՠ L+DJMmBM! gI YG@w1=@VNU,jn!#l]m[ 2T/qYaCX7AH5 ˒Ia-,au{(p䆨G+x6 ,!6d4s gK*&NJN>79=qPyl^ӵ0/O 4XrsMTlL>sװg 2f,2Yԫ+ IZw#r>p3cp?j%U5=. *gGrDr+GtoT-Ƒ OԯK\ 01jRPUu/Lw ̸NKB^X R 7h=\ (\NHP[(اTJ _6 +NxvJx9-=>Q!P J-Ψ+Ʃ4#`Ja/tKK"8)OB]~MO (Ʊp$Kd 80En]׾e> }U('6unDSS+ܦġM9nP\#_΍AحD$~K6|>Lfm, !LzRRNKR$&i/YgE6@N{1VP,mҤ̿b b*n1 (䨼8Ѣ^z+F73TrC]zS M50 $2 .z\gbБQh.ҥgЃsu$3ԭ{\0Mg?ZJg [Ϯ2?K ̒"A&ŸY 1ɔf"TaOk2YԥsV>Y|V$b9ƌ=ͤ!?Jw]ԛsX]JD?8KXzʼDkx)-;i0*R|I|-|7%<0N"7~+5UH#i&7LkVoPh2ҡ7xjff}l (`V1.aTeDo]f5&*޴獜`I:\e'dBA&oU"'b+2с!3m\PL }kH٩ydRɹ&60/8ɿ; bqT6DgfkM%j9wgMJ/nug+C2MrU4FD<@ lqs wPNFN4j…FA=^I%PinEwSi+8`wLzgH;0,mOF66dGlV)OyUιI8Sq!C\.=ji ?I^WX-v-x}>r_T+jcď3pQP8)Sre{qK] *<۝l2cYZ)9XB;xQVG fMX? ̛*[HkCLh(6A:!3y;=3`aM,ڄc3QI LQdݞVVSjvMeHmI6e 5A3Wh㹒-=UY.OLᤈ_K1}0]#su D4~.cN{N kD M2Ā0M&.󅄏cx5Ѡ/AeʀOZ?}?\[oJzfXNbiĹyz6| Uf2htL^-6}7ųNΙI~N=f'ұU8&8(>ezNt2{ <$eVSѧx|tfw 0/ !HDVC+[y{`Jq=%i&V*þmͬCZ;5'h;.t(ƣC5D9]~DEnҰkY|ɮ#nGf+ҜKՍ;sya]rjy:mu 6׃mxM_x SFOР`Y biCPJa#* `F)o);m'mEBdsy9w_Q! >j+`M+h9G|X+~;X#2ѾbK@bɑjZ¡έɑڱrFGL4v~u9߱CDPp#EX._]܄g]Y c*SZI1l2QD '/qL+ c,Y8%qe+8I)Oz=[O,c䃼,0V Ta0Qʹt 喩8OVOq4+t>v7% ޻ʓ)SI=-&&-'6 50p1f{.E5iPs3Ϥ6smVHf9VL<"c:%K%A:_'H~XyOhyd%Xfc9)A=||R+NG.AGfIppyu! vA!хl7髶- Qg8#ntd( TYǃTB(CQBQsz֕[zRYǸ[r}S?\pióDXme<3˕ -*9=6nBn 2[)r.ʔBw76pٹ̫' o&sJ]p ;oLkza,vel$G@ecU;RdpgFmN~jԝYW]h-`pb^%Y?71=*QohY;h{Gݖ=FB]ecF53zes4JE?+V]<[-AMAG'luy[OIͧ!)w*jӢ}~tIK˭z{t^ xAi\ֱӅ_oD`=Cv߬cw)zCIM0\eT-})ݲ_k\P> Q~cLF,ۥ|ba&- Qp)2hړYnK3zUP1zBjUa ֫_(Q;A1rIDf8%sST?PCq_a4rZ+ZZ*?dx eX 0OֽڸOxB z1Lo5HevJ>rU۰,{Tү -)]9%[漙4;Kiw[T/n8ĭ.3QJM(vg҄SOқR ~wbbK*N%!A#`#Ur?&@WПu+xbD7fF"|P{Kk%"1 }ȽH`nO Q ӧ6@|U|DNVl c_7:_ǿs<%+}4evFp"&~'\?BrS|,j1>3-T%iwgݎպSGz=]H Ik3:vP(EOGT9נݩwڊCݮ}C,OX"(ۆڰTZ@6xSQp;ɗ @[N5 *J׃YO9:.GRU60`ŕ&k\B>Q7n?M I/duΎ"'5{!@ι5oO`.$ ssGʪp98mQk5oBɉ9#7$p E?z|⯌SLJZS z2_3xr]䤶q)t!O.t~oh1w%`1є1z7+r6y@!d l@Mu3oKOZ)v K%z4Po)lOQ >ѽCF"kI G^].ߠ,ew;9 zו-t2u5 +*3BIH@ q*K!4AeIF1<LM!K-!]cUnR2W԰P 5•<㉋QGmrOȔSiq`|{1,U/ʄA#gI2ebB 8T817mUUO<͸*2ĉr2좮O ^v!RWlPR΅GE25[.,0~}dبV8fShs ӦOr%.vk ;V)o̦HZȀQ`h1M\zR zꢐg~a"AXԄgp&KguQH}o2+C邗Jc?Zjp:3LS5HQWC^ɺ 8o;ߋK d(] 6^&HByɟF_ BZ}fڡplT l ep9CAQsFɾlQZA7)-VǀluCc=xGڈ<&- rY-J폶 2@J2;cgNߖ dFO"TJ4P;j ܿ0a:H-+]\%aJ8آ^f$_(5)nKjdžɒ "Wܔ_gmcl*1_=ua=T~0愋~V`.|Ka՝6nF[ՂJMITmI_;o{yX6[' >2y|cҜ I`գ 5V-5b(J '$Oq;ZcS*M#)}$~XX*uyKku'Y^Ҥl09vv;?#g8PO(a <<g,dzH|L 0_oreRÃn$DϚ-^Zc`Aˬ_ ӄ=Aj"S,IT"+(qp|豇9fl mD[HŘ,+NǦ ʹѺubv9h{d $ &O MMc8dҕ.`+:D!a~A+7f 9yy@'jo'+u•ɍ!V: Q(|Kㅨ泉MLXʣ)P~)cI)>r&=Z;C@ ~z b!ZX]ws8.J' 8֑=3aV\'8Yػ,y["ugb= 1!_u]AcF?5Ux &,M-0>): "0!4'7Zr[iHxzq*  $넺5]wg)>J_-aGΈ"󂟵-tafJ5屪aѰwN Y6|p*dMҼ}T(m#oFdJ14yjо=1hszP a҇bE/ÐІL9Ebys7W߶eTX@|J; &uUEF| ~ T04]I8w)Uzn)_ $PߜRuq7\=uuNHpXj٘D_΁=ы3J]bMoWvyքhǮTr%}_E#ޜm;*Ӌar)Ӭ\vd/ܥs2OYؤqʼIcc6Ӽ+`k{_^qV03~^4:0Y X +JFppe'OJ49;Fu@2?(c2A^LZ*& ]j N*e%rlFkM_?-0@$ς@oCW^!#/W@i@XA6rN&KMSǿeX dIr`EW' t3k)gfNډ<ÈyC_ZZpQwޭ56Km$) ƙkΗЃ~J@˶IKឃP"1 = qЬ0COʒ:^_z8Bh=ʄ5ʝu-G- ,bO4ҫFÂLO)n9ɜLJԌnDexUPQf-sF|S7xhRSA͏@o&n,C~“q9)fR!`ܟ7|zuq|a bD-=; kV_p {i\zH$wJa9 iKgOn>E-wѲmM4E~olV/ɋ .5tqSCK[@2 ?uDKK^1r,Su4A]VB@Rgs Еٚ?Ӭv>@# ORVb[ֵKXN4A(lg^fpl(EsH6o<e;Pn}[90ځ>;*9;a)lfř{zD+}I،)[=:ˉ5'_ Vjv$RZyQVD*EHEG߆*iXk0KH"hȬ 29+]1&e\y(Q--KfsKrJK$[. \oXSME`YQ)>h3LpqԸ2bά76:mDO,3l<;$+1n~U.DrwH9md3'LYY"v AH$Ŋ;G-7)SG35xDb7cd҂m% ^ `~Zz{3D.v[;|ۼ*=}*Qoa rne2G!;\.ˁA7kz凙rlZOmuaE=<1a˫bn8݉&I{;GB|Q'c^\GK˦d.~z-Z5Xq4{a!r$ 2yRj %&2a`4n)F`~Rg^U34v9g93*#<`u&Ba:e>q0ďʠ/.]D.A&o䖤nI<)?sI~N!z3 L!R K8`)V* M&PF9Ja ;@W4L&\'tFyVtwfe \ԃ /6 n&} >=yRrG||sz-McRAOaj~]~ƫuj" '#`8z n~c,52Q 'rt^Sɠpt ՜LO3[{Cl[ڭ"bb.uNQW)ڪH25 D;+4Y6RphX ڼ_#<%`(Yʇ !Yp@݃9CZ1)_{K(8h;hV/h5RՎ R+߸O€+ߕٿ|螬#aDg\?{M =F Ns7*K>1n?tξ-9Ѻzu7 E0?"e_=j2CIE3qs: ] 4aY3j4.(ek9_Y7S ({CP4FeilPG3$to`Ge͐S뒟C)/TG8-EJn>/aŁt Q` @H{nm!WtW*qQGXK[rb|;(VJ,S*o -Oq~P{FC"сB݌No8/Qu#4ީؒoGURuzqzNwg3be6iaX? ~HD!<@a7Ub}ծ܂Z5Pizy2G:dR]T"+3 7Z^r?>Ըb iI81.A:h)EH-:,=|EλgLV.MbQ$Ձhkr8;BR?sSD{n]5Y aff ddw^w[f8Jn֜N <e,l,Y U25WfD"x7xй+&yӈ5#\n[ F'zw~P"2nG<"jXVP.*p)2NʙκJ9^=|Okl\}wH~L.AՃq\K*ܮ-q3. 5#zT.7?7'$=P;Z5 $d5C̡^Ċ n7; I!хBIED&:| 7f o`(=gVs1B^/E;#ndlOBZNE$ˑ,[*BPv46eJKHw36j# a:G7 b#wVUtF;(Vؤy:Au $M!{LJЪzGr 0^eAR(vX!c]rh`9L[Zd#՘1D(uGx9~ȮIo8H.'1 M:^ԩRc<۲q_ϷO S=Z[,.AKtby1#$ LKE-6#]52B091Oyݎmzxn OkOQ|˓C>?ao`Y@K}R} Fefa&%䡍:&2^Y:u0wIU0p2({r _}N>`9|ly ;{ S:VZm>gF؅=jNX/;)w}]QJLފM xTCk\\xqt13谥ce65WE W2s ٣(AҴ.H Z.Έ(c2"x :VeOm}a0 /W}Oo_Q\][<^loR&1^)kV Iy?ΖQtca$ pTZPEK_ M۩˘0XWmkͅۊm cvU$Cgkq|y ͮfԗO^)wah $lq0qRfMSEµMP}ʅ' 29mPuzMŜs-–:"^>xE15 :?/07O~j-NZAx%ay 8?SY O?'9B!o~]t7гX@ [;S m_-1C`ʼnji;fM1@{~SF1vs:ElD Uc8#+>s|TU /Zл%:&&<߹6?i'8+c$ L5Vd}U˦/ Jc,@ItAOE-n=[m^gD숮H`Ke /4g:RG!-{#6-S_B bNVWOPs^iF2F:UXr0ߧ(RNm֯h nbc%X X=I#=zH &ll YRaT^wCbrOfgI@kRJS |Eb@8yjFJOSi$(׶-ʩ´UjoҤ&b0w56rMHĵg5{E欄7 $@8^!RTؤȀ;0j\x!nm3ٷa|/\qGq'MN5,ٗ#/3ѡ}ZvJ7i{͔6__Uh 'DYPutR߄Ȓ%lIB~7e{ަ'$.#ˊkȂ2dڼkp.tqr#XGUHlq%س Cy:JnVc$/R1i!in1z32l4b_qG|=X@Pi[Lv8}}1H*"DL5GݍIז6e'^"VD2DeWЍ][0YUFD3-[ܤ?(*.;e6xCUO<5֏Dlˀ?@z7cmYƽfF!xC j))MߔhVPA2r~/zr=4h`/\Z6%\ɢh{z+WUg}=Aez4Ha5k >4]C$}d.9IY)JNru(pdT&wd&h!Cި-fDlit=i#?_ em'ߋj~ /Ѡ27h^ Bo #[jײ?]iJ{ B؏~ceM ) ]KˁM އVZE 9j+7>";k(iLvp-qlnaǠHy0_+#00B3~@IW-*.WGgK h9BԌ&W.ͧu˱gs=X/S饥/K0¶ꓻ]D)B%ã#_}Կz&ݩD2tRʉA%(R0ZJUd'Pa|1MQ'`bGњy:#j|eB``RB`.]l9jڈ8~N<"&겲+Bԓ@u|!cs4]'xXRB}J B2]FeaT\B/{zr-- >pz*<+prHx9h%mgE/5?+Mi7 b(&KǼ6n2fŒAa9>*^lRk7im n*܌Eڨ9Kb Yt+AώH,?g䇛Oh]Qsho pʯg/p@\2"R`-+o wa[ekVZy[^TaOC-^8gM46ͅvK'1ޝ'z|,eKHSp DQ̯jeãa1A&UrNrftY<=% :gY6*ۀ0 2pXE$ 3dm9ftl8ohd6 L6W_ ngV/r.rHaOqǼJ}u(g RB3 0\/2#N߉zKh01h*%2P=bBB0拾\ ^K&pڲHwi!uc7H[e7(GIxH+=4q G)B3xz"F }&|tz ["**6 Nv=ϊÜDx@dz= 7KۇmE{}}J޼ 9cRd0bR+q J8k2ϱSϻa sηJն/{*0Qo'Tȁ19O ~B2I%jԽG8^:-ۨ9Zʫ?7guT̝\0;@&]s+>č:gH >yƊ7\_GlI#_pvɐ]ʶ3Aȍ5 d|,]wiSu2 y1@~k'6m6c.)Wxre; p<>)_elWKM0CY14 V A:'ʈU,NR7%ŮحKZV-9ke֌JfU^GU<,5Gò4x@>byٺc- EC.`ƒ>s pZ ZL>?rUm9voMX&dR/fk鱕fn%KսQ8d+Se[0֩;*י-MGY҉H֫](qO>C?Kvu=hyځDCOo%@yHX0OhKJC][+`wkЧ-4jgr3-Pi%,:Zݗ[~maqQ$t~! qiW͉Um4ğQݶd6bmĭ~q :.rܗ Go3,_AQGϩ`\T2?ĖgiWF.fxc้|W@H>rAWw<-rcok,P{KN'(v`ׂ7&`E@Jü0\=$0̡˙fcmC?:/( bN=tYX11r.!d03Zp~p]Ox;frڵ_ikLP[]̉Fj  uw雮bq9S5?}6bY7tJ.0bPn'Ug;ux`:ge<;G[5ՠs=2i~)6Zlx.%kXl4Zȩy&J VrdQ[[mvPA ]Z*>ӑEt"nn״./N'P tge.DkM;bn P.tI80`k}sƀќ0xg]b<1:w71F67YD82+">6+x s2Sz%a NH*$sh7ʉFcs_ߩSG}">ۡ2-Bt䤗~ [ˀѦ@B}\-ks\hyӴi]SG6R|M@o; 쟬c2^yq=bPBNuŇZں`h$'.`h]Ʌ얜;/ .e{`݉u) Qt"TܯDyR:Ȳ:~ٯѶ =lmԯbc#XSW>rܐv(uW{_'/|eˑ_g6?$=}lhl@w 藝C?ԨYn5)AAM`:tF#YKޭV~5o6%0_2&3FFڗѶԍ /qvlXOk1]4z{niB1#cW즹:@FfҗLn,JmU9o{Ng ePGU% n\tg,V3EZ˰:&(k[p)B1.Z.]~`ŞQ',!~1?wY06y# HOw׊BUNV8CXc82}AF$u^bH`ͨa<784p[1tdc}/I|ʘn袓o/LPrhk1R iq1d5XV'=h}b,zsXyfF ЊzfWt}{{rK n LZdQ"Cil~DrӔ*ٙ ɧljTޝ 7dtS{~{A c*ѯKZXXY< )| VvnwYNOǸ"[461)҉ۣ.)͙ tI a[4|\pJ}8!_zR|g<{'m ΒWm gk1;7YkNX f`8w9Ϥ2(- XA Mq޽Y!Gw"6 z -F!v"/)f\y@DykS»DOꕙdN.Z91<~o+*А2M_Jp |itrIBR kGuL2ޟk ,#*74g@nŊϙDkj >@N9=f Х6k/N ZXj(|k 8- v#oޠ_@3kg"nrˏTf6E)Xfڇi>pBƒ G9Kv߸ &[Bߠ$pօ R`l4d|Χzv7iWٳYO4[r??Gz!IE}EQkݸM{FBc.bWw5fXp{# o+HdكE;CJw&a <̈́ 8$bU.N ņ;䙝U?r""E 77qnfW(Sרx[Osw6Q]d.*);|ᛙ3^Iv BǘtNjsKTV5`,1{SDr ;f=.?+\c+OSsI@^BOywyt4$- G(씵?-՚l=\!{5UtcɊ~t=#|GVWg/FJU'@hWr٩[AױkJ~MUܢx~*ơ]U0R7 Dg %?A׵0a`6ի$*{|._#kTt;vʺtfXfïX'gn{IM[\˜1!U h S R3YhJ3j+3BЂ{޽FB[,5NgݒG V:8vdޝ% `&igc-!GI69UCg"ƃ3Vv#QC @5~ E6&pi9:PmU*g̋lgpI@?msg؉\ RFX;UTge`ϒ~s#^PBUkOd-']񵶺SݳD}flA gHc(x VZӀ'Q!'HC# /k G8暊2 B) eIg}n꩝Uac[q 7P25,lCJ/)gu~WQc5VlQ-}]r\$p U!@!86a)ۏkZ&oEv0Lbck6Uw-9F$ed-+lZn<&"+|BJ]&5elcN #IyrGqN]**Uwg[H.'  fv55OҵV?BPG:jȸ|U3*=Č]`^r6n,nu/Pg`Bsmv y0uXiPph:X,鳩6"-o@S})ojVJ^ ߵB[ԧq /Ƌf`RKOQƩ*fScbcFh?[VP<90j^D^Az9hSEvSP3k<,LcbڧW/]2e({\Wg_Ȣ^})mv$[6UŁØ MFz @hg!3-T^M44Hck߀NM#q10c=Ajc)BU%fh 3|ueH=qnYPj" #ht8q 䎧]Ÿ:VgWJf`#)/͹|x{,⌥?R%AwLΨk=: f! 9 ,fAk["i:]Go8;P 0|BrkH @Sw"dD6*XҬ5>\6;Pg *PLoms%[ s Џ$GCqJ/E6[=^6nzuL瀍;ش > Z}h2Gk^0q$ ^8rkL$j/ӻ95/*fq*ot4|&oAwߞ(?4ʦXQshMgʊ W6bt\7g8]FZ]j9]jɦZ 5B4cf!;p1/bBv7,  Y`qU^S*O"}^jl[n@ Rһ]|AV)iq}c'R WZ [5EFA{0!6~fWÏW@82o[VX;Q֠RrpN)-/!ī~˛%5?ɝ}Gw4U9̅E 85s`n\M$|(ixpAf;Z+ݞ+Ct޼WfKg-s.zc.ؽ@?2emLۨF!DsV+P=^i2貫:~5"eJMSՃJ 7 hyqC ̗0ؤ'KV,>"i=x7Y1)䯢tX_!?L2! 7Tv5-.LhӠWv)!*Kj5/f]W6={ Bq=#lUiq  P ~P9D zFXDSnʀWol/~(!? jtV6񹪓U-$S ~H!@&E.K%|PVV?dK+[t]+XMbC򈁈0 7:kZyrKSHa3 .dbP7X 38e(Ø˘ɼٵEmaQ?h4id1>b@J-r ~3X`nj %F*u?]w^? `翹N_. OgJXg:ƞR58"6n95Q YGJ\?U'o% @jYT]zVj/9P%T/f*S#)N(85FH5goWG8;qtxf 1?;T<YǬs?%f9D)<}z&\ݏT೎L̉eql"Axd]s(4H&|CVŮTn(%0u}`q'fH30,Ӄ]fo3Ue5 xg[R-̏# m [8֔uF Wq <V <7LP5A!\ V17';v5-'.>ǒ0aghc) s942= 邨-A>lcTy ܨ_fgEvjjQbXzef;Vaminr6t8m 2 C,x/xn,@YƟ|NreLHhVPI2}^hy[fԽX/3D#lJpރ6dϱƢKf_jKX_8*Հ±ZH xݐ,w8wsK+n[ieC)?=>>5pWn+H9]fԀBJ]鍦'@wy݁UxJRm&b¥$JJ4 vnְ}1l61[[M|#UE$N)P1a3yi^#!+Ig {-\N%&{_+rf)&qۻQ~+AX//J4,gh I<-gH{4 .NL.<mjB(Ƅ6vix3Up>hhWF rSiL@,l8I{/3YiBuXύs%G!/Xez"M/*lQYܖ5|# /x_gMcpw ЫN KJ)t}( ҘvғHR0sS~nMLvRm]q9%zUZ)42D`[P3F5O6V19Rv{N (:iS\M'S (ݯadIGsi}XiqL_4I놥yԕA̹رjG.`<+s<{kaO*#kޭC10ALLx]!_\xMDi0D.H9]_q5X& fH^˱`BETA>o]D6cHC)^^hζzf*NDp6M^^]Z2'{u׵jO~[M5Oūz@NsLπm yY.Q2{X Fvhs|[ LA)p&7^S* qF~"Pu' Bs1%.pԢ%l>ا㳳X;L.CA D #Z[kS+0`_oq[jRt$G|Jwlֲ-OÓotL>WtbيH! s7eh@N%>ܨddPaSOj^ W`[*cK=v6yG^ֽ:3das 0Syt܉fDrś`UB]"7(+$@S3$K.g0٣;Tޝ|-4?iwkjpdNP}|J!m< Ti(‘Б׏wceБ0rD2ƭu%= 49w f$I ߣW3 L0ZbNi.A\Ec'U8m蔱wrD0v/ F^ W@@/F 6{.q,K(7İ pc.ؙx͝M)8v /?idYvw ]':I~VD0_DDH4̉okNkX#|+Gz.*GA1%2I2W#p%X'+4i.^j` /nuv'CM[bT$ڷ)PL/_%޿ RX SWbhNH"6leS~qr̺m^; jKS8 f$d󗛣@U4[X 㷀V!I"1Hmpq,D,e$Uwݿ6C7S`y7,ʕAX>qZNBi܎W:L{Hz"da~M~[kˤ!gp۳a:Ϥ |jƓ "N& ˱tvzE R 0LRv.Ɛ8bUG9t ?:Nʝ1gá8os $]64"\HZ500%8`fJ>ﴈiج.$w᳿?Ql#i)3X}nNUTtBZHt5`gB ']{vҍ ' W*%ދ-#H PySgl#>4M3r/ըVE^q]%JgО5w%#ktOUO *9R☔z }&ć#G<Ţ6c;JHR] /UvCMBSA@QTw;[JS02*\qɐVN=w4˚ۍI 5TE-[[id]q>%FBC6]MnFSoB,dKAJt>~n.eYf)4jж !aİbM(1; _ uBˠ@B\U>wP*VqҐ0Rr'"3[czWRT/bSndlC\]+V % H},SX6MCېSL _WdHJ·lKBULSŸvXRk 2 _ tyMk&{e4:ӈGӈ$^(䤐bȳ_$-Jb\fTn;*"J_<W^~$I1 cB ގFcb;ɻGKGfۙ'هĺYjYn%j5ʅ=oɜܓEh0*\{87y:ie>E2닙"}n` x1fIm'bc@?u`lBGVvS"+=1.]#Gi )0{u} " %\Cxq=?>e1XV >%S(q}sBEd~I=b@"`fH?X^ <֒qpasE8\2 L"#i\!oNK%o*ӫP>4g@362o񸄵VvC{q 1yk@8w -;oxB؄rǥ~T1hHKTyl:k Q*;IpQN4xUC/ > dTh dS5Aw4˒`Zj2\^Ug6`'txbb<0Ĩd:Ϙٰt]_#/De$3$0jC<^LJ㔮u@,&x9=z,UUA,v!T9lR~)xĝ=,O,9A7#K㦁iӭsiXv6[6C{َ ݬ]ZLt/(%7 5Z\"OʨRh͸Ⱥсb[-wkنmso?~#5#t̗"? bD› RO Go&$~k@qRhNxXoQ֛{`pW4/<hfȡ3ݞvޑvsܺ(s B|&~l#J7 $9@7 _o<4Ƶƨ}ͦ__:wH؇*7vYt|ef{brɖb\H6&e'.%kXXgvT/ʕ)I93AU Ѕ3V8'~W=ffŁbxu2g4ҭKčBD!yFc@po}Zi0?X<[]O2[~f=0@dCadkֳw D(K7jjimzr';"[k!Qh}sQPE1da!̀O B)`iK?$d_#y[RmvCԚ2 CZá#lbxs+XQQ#]AQ|Kʹ4Bkɏo'&pˢs'C3?<n,]#ܿlN~]56ŇIi$8\yYe=oԨ.xӭOcC~+ k>@k Y{nGG;JÁ9\Y_YY^ 5G1ڄDNXCÒ\q\ X]t@똋k&  PNBE+I>89gPmm$ϲo%,?nb֮ҍR6׮Y&s{K\GzmWU{~ %.\h)VX/@ga)ɒq54p"'ui^:"%А: XXڽCdL%/Ĕk<$2=nm*VZd3ӏrg#[H[pLk>(8:@+6=KcVTYt,=7+:qEk 2s6 rmG` ܀\Q؜S!r^<[nݲ[d-[z띇x־d&T ŭ1TD7`DH-غM7!uD}X2S+u,ᬓ.z}pRcOUíN-]ݑslt;.HEj/3'8YGt$cMAd,~헩!%Ȱ>p$1 Y3qf ( K|'}<o'2OZ&qK`AmPR 9AM )HZs\:D'b[*hh=؟%f2tA?IJ)N^̂޹m]`8 !(LRkќw,:Ek|7ZYmph `'b]DD.tKK{Zw>83'J6g hUbńW̬b[aЊȠ3]CXڦ.qKP[I.+Pa 1v%d?mď> G ![hv5i0eb9l\/6_Q\ALhݩ^.'T_<912iM $x6egA)V۸.,F&).7(w:2ԫnB$ $um Vٽc}343rM A\tvz98e1/o&U6ÍT K9}blfJ?cM}eSȤ28Vw<|o)_St?t ^lzu񵣽}a9X!U3w)*&`7A*S8 V:l7vpTMӱP\}mpNeAu "-)5WdyGg[K<K6)_6NHtsI똚3!)87ʄ37Q " eko/F#iOsij)GX3Lk)iq Q2.6BR [JɧS[W;`dCg& }nC_?tc3«N0|/Ʋ.|.Ζ-:1ׁ9OiL1#q$![gZ?|4.0ݝfHʨ s#0;U1*̷M=@cם;qP/HN\HY>줙& ؐrh)Srzzn~byColOd`p@!)1]U/IQUz19h%3s'\ϝ΍"$M\1)  ] `OT4ɐ ZhIm K5Jz&[➎j2YHj'E6sx#LtY Q˟\e1w8|*wz Mr}uB2r9Y_|2GFG;쬀>K=)xԯ _ FU 2t;7>2c.zX&bUv_Pnwd+RTRYF7"°V7>lA9ݱP6HR҂}l5,Ps\^(DU&Q"@}/xNFs6dy (9)+sTs hӓz!BOhQ>\YJ<1O1 4GN][LxgFr#lw<Ua0nII :b\Mj-fɺ p6s{0e gfo=myqr1{* 22,^ց*)'em6<LlzA&OAᄍfn~0R?İGk(P: :[:1 o68_0TrTen "09ҹϼd b@'s$鸖Rs)!,gfKn\JBY\SyV>Xr*qnЧ\㚖vuTy<&2k'H'/JЫN -k!1ؒ/ϖ;b, uL݄'%5pSݳ#%O*kzt' Ղ2Lo`,xywҖe~ 4첅&W[Vݜ5Ҫ)7@T-6䶈̙1[FŚaُNst~V*![2.9׼|,>?V*-;(WIg:'֪UưaA)M 'b S xu%F9Mj{lv߳EpY!%Ȭ nfwXI{alp:z܆;0BuZ~ o5[e黒i_t1f&:0D*.e{.UxDZhp6Ѭ!D`l:1fBm ȟ;g 2WJ4 FGkHxGe0#<][xft\pLZnp{)8KXc$tm5J՚y86 )a_5j0*^͝=ڙby+EBu}04z POmFy?n XlIbzC 4;O<V'C<o굥yq)2՛I y5#78RU$c2OcL'hX?ؽt֙{i^d~~p@,%I"#\X D+&CNׯ^y?`Ռ5ƦD us;)ʻ4wtxvr!>{z[(P70t+XK"HEy n/~Ԛ"3Z7k!M%WHwp۶9k^0QNf!w1'Ɲ){vɈтe 3GGzo6}QHB&lXNaΰ)9t.D d֎ .H k}˕xO`oǸ]W'c Q.(V5๺,:J?^:vصlL4[ q (.遭L`Km=NzJdnJ3:;[|U'd^ _i'~ХI缾}um6 SrgP!D/ >Xb" #6grwgPXyf)j?E3l'ݙ@G&y:i2K:\eƄvօRoyr+ |쬵^#i;ˈ.^-q8E-|# 3bBQV/2FvעQ_h){F~EӘ+T}aΛZXQs0_ &7 \^ zdC7r'Mf1ѳJ9g>.HҰP3.lbP7Jv, 0yYsX/w𕾇ǯoQL/MqmJK S e"s4vr4>al WWn8$S뫜Nݝѥ/^pL; tco02{#=sWm!Wg~ IWn39anT25F0 $a-o*r@Յqx[rY2q&Gn5o;6*m)ȱ4'xKcu ,O@wDdؤ(a3cFɍ3~X\m‬LF&=ښ17FSMy5Eo|gkN%*3!.1MM{;\\QB0®HJ(c:=Cbѱw بMl,{(7`s:ѣ~V qe=Կ/8zu3(m5Z!db/slE2@ 8ٌdE[ {?}c{ S\57QV5#vpze<\.`OzNMa]~ؓ q" ! ZHJmti)Ō"vu^8ыh7Ebqc 8DN!|őMԕ a]ҳ>a8ߐmqzZ5cR' s*o Y9MNw9-ŴӢ E6ᴿс.Lbw=`;>"Kg9regj(9/m*fXmdא>t (1*@둉΅_O@-mL˸xp*((^O]R9AuLpyا3uHQk;׽_';4,R!`7tVTAr< xVf+.`Vy(HxٗηyQ! +]1H$(qʃv fORS[QbSp %V-ɞo`U0$ʦ/?a's s U=A6\uur4 0ڂO?GfL~|)P-mG2#s pE5}U<Rx ?+=.י嗖G[dߓRC?l[E߸h=󡝣ۊƊ:WG瘌G8F7Yk_c^l_g|Q~)d"{"ւثI`<7rst%HV{5{+f]:aX;60Z+iO atLx{Ѱćų1W]^ 1t}NLtENĪV)^/v@ jqk7z> m-P+|~/tACS xJaW m(IgBp힭dxg7, -qW瘛]\(['y#S>ݮkt1\*$\%Vq))*YDj?Ե(ic\{B@Tĺ$={N w?5s)(1ڠK&`>m^\ス=_Zv7RrᒪڞpFՄ*` 5BSsa$H@!Dh/-IAԽ $hD fgXF 8| Qr8*|Ɵר\*bJ{|!ξ>f<;l; H],(A.P 1ӿU WvpaK`JDZx~d<!wݳxҰIC H*r^TbIa(%~$8I O05ڶN"@p$_0.-$dZ*J,-19~ü>y]3'i(}L7Gfí$qY(-))QZ.i~K24Czd@l9Kz`?Knl2g=J j @ReW֜,[{Nn|Q_Cs !ZL\X&;\ff4n T];{r ZBB?m D?E+?>$;B1!lWG+؈+`%/+L0НyMߥ.iCpF[Cڊy"C9zx8̨Y~^.*ڙXvn%חX)N5z8 vp1SwZjk?*G9c}nk6w1,*~ܾ!aq]Z'62RzH8@gB?$Is,!gUW;H2dW ZYlF^F>թTѻ c$wuIQ^:3;+H%(&[hnbmdz|m/dL 0J4qO/FӮ%Ja獊Sl#y+h[??0e.h;鶑x\Yx5TgACB\ۗMڶ=jZ g),=t՞(3ImzzPi7&.QkzCI=SagmG@Z| ^arYA<[aw!Y`4ԄaXR:=/G|CK nOt$\{1܇]Ո9. ]A '\ΥnH|;ga#C# ghhk)r/%g0ga",24-` w(-d$q 3ܝ52J'GTV^XؓX`:%yÛ- +6adm1],6L Y+='l(Bdz5i=bE+.,KeC8]Қ8mÂ%B>! GPd!nkS,Jf]1swckI.fWw%=~ eQg1 DJeJxgO$(Re$,Ei3E0 $Fia|@b6^dQ3-!;=N폦 ڒuk~SׅyB 0AcGY`%vesxO\, {̡?>939vW=7@rU`U//pC70¦i~>FΣ;*X'`/j:z6ʢtYc =rgbOQ[=]]ʦ 8wOlH+k5611otҖm+ `#[A'kz!H9bc ;cPG:0Mgq;BIUOTxk^r wMS62%ToviXd%a<Ts7F:U,=hD gHXDϖ) 4C1L{o0*y a 1o\@рQ+)dj豋srw@C%묈w/3Nm|tsG BΥ4Et,k_XG?8&2>[q:C8%H-p>{ GxTz>JUtJcsK;Z ;6#3|}8GHz ҵ]OR9Y Q|bJ+yEb뾉I1"EKO{e>2^mɄU=_Д=P%ڂ4VDŅd,<Y#MʆVD[7D s;zQ4x!aKt˾>eK;)=K_7~9#< uH%p-IhE 0KS|LO#S96\gƕBV%mN.K}V ÀϹYf!mѣ!lj:6qPg桤1:47 X;s`2?-~jcCoU6`EO 'Գ遾+[a>Cg/d|Ꚅ1y#qcU#6pȉXF{۸בֿU!&3qӸbWn* 3>(fE%(1i~q u ^U{Qh>Hûгb\;BîQrm w* j2Q3 NC#ufܖD _I X{ |&I֚ QTSּqd+]s#$E1ޛu hf0ĠzgSƂ3s@uQe^qIIמlNɞ+( bfػàڕq [4,l֓0읙-?(S:՚ZΚ{bnLV+#tc %bFiG{9r/M7X<* Nj7-}@ِF9f7I~ql峑v}1:?̧TTI`oa*R[6/8l zoio =/߆Z %O yhjj(ج^%f=ocs4&LTIۏGzU^#yE<y;>rǦ@g+?j4S%ѴP(lԴzf!-CiAOe0^uni7mmggc!!l+(iov枌nnsg 7*R5D Ѩ:}X~XȈ+8[s^q/{RȃL=SI+/-A T"$o2 XM*h( ?ϧ92cjaI`eD* owT:C> R:j9*i0gOO); #oӴ?U2S#/0`(j拓6=^Db]h0#"i%ZotY"\ 突 Znp;m"bQd!`2EW> +,)?K1cEzΫ@HH. -ӊQ5'8w?(̮Iٮ{Rxa8:$1'3v{ARxt/xG=IbRY$+^ycCfA~ڠ]Gӭ\ol u*$6Ϊ/ Iъ\KM3s$A>M4lAO<oA~ .,`R=eJw!g-yp.ߵ Јf]M@4:+?>'^B$dAVjSj-"B?RL:Fm̎+V$AyZP:U;v\dK-xVfr}=IZv >q`#]#2u W5zâ "*s !܊Ay8G'kmgx/ޭ~BڱlJJd\tV6#(i*̀k65ʠ9^8u]VOjH!'4ŠB7I'PGJobwc n\A*K_2NK`&ceo1V91 cD/DD/5AN͔ ˧J3}&r0Ub[J/p1_<xA\?}۠ܰ5Dzo.tp$B1|dybު)2U#FeN͓|a8 |aYՀ?׵ٰ|mn!;_ܑE"3r q<}-\jugOtS`[W8U}6BMX )j2s  A[^3'd4l6\ AZ -,<9yiIm]Zg٘]Ϫx*ã`d:O0囷{jw@_ -ZM"\s7+Tbߴm6V**4FgLј2.jA516ôľfSRBnvځ^w~u&gV;'[{QnA6*3=3D@h^UD{'lb S1Nz Fs :p 9#7QR8|Z܊޶j}G1_wx.ȭ]aPOZF_1H JaCUS/ o+?AU~tmYsζyږaKntr~*NT .?7.15f@Ҹk٪) {r祑sLgdynGM=6ЎIMxո 俍 wI-PTO(*1;otHl ~m='r2陎a7 MNFHW .Xbge>EEW=loQxσgP y>KJhT/ 6t* Y:C,ʼn D/ Mf˛$k<@'Ga;܅i-I*^Hcy~-"Ha}:ΜJKTū26mC,cytQktiQ-}ՀKboϲE L6vuR6s9*A=!Pm &E66f\HzuE]>ܠl/8.=7 H*GALrUaUv V a("k8i'"{6ՙ'UE 7dn{P;ЪmXjo:KM'~qTթJ}{ |-rXtʑcEXt3@Q5 6݂!ROz! Pf*?rڮlz(;)\&&3}U+ڿ rwN\bidO0C'y=j8n*`/mVm7T7Lv iB ЀcoBꄳ߹ ΄8 +k7]qWԾ#l5x(,S?ZTR>+B%O+=@TgL-AZ) 6$fXU]겊Ph}DIb@ #HfnAoHn{,fs*1(9IOǻ`Б*Ppt|w0ʠe* :VOYڧx?#?k0֯١I2 k ].SdϤfF+"w;[ 6狊CYJ/XmjvyJ5m&lcfz2V=(b>;Q1joȪv,_mDE mTQ]?0KQ|=0lh "7B4)X m*\5%tl [Ld:7(¾5Oa*Ԣg#ŋ5UG]tHѫH@שH4)bp]+aP{3X `=ܢ{ބW} 2s4:rEP%z;CͧZ;rdxj6C;ynjsdge8[f FА(31  s.cwn:blUuĔɛa&Q.p 8u9c7/NWab4?HqwXVD<;.qڨ?q9&&bF 1p>#0,?:bm.Wz$%k lI.L?G K30N*B\@ "Cpc#)H>c(ȑEː3\^5?M׬wʯ&XJ ] wF"gG\1&wrC0 "3GQ=ޚr*xŕUΟݥU)f2d4@D=G_IAgG.Pj(W2)cz?, aapFrk=8=@ 6Ag^ o7y|r 3(KV/ s|x5a_Pr0*j\ajqAX969õڱV!-9#b@ӾL?MҊ<ы_w<-^٣b,g2ݠ;upfprS<њ/GOJtuǖbNz^Ǥ€K@Cl{vM ߂ p-R%j rxEYV̂:=i{Z~ct^(Rf2iFjDMBnjK!-YWD8[(D'pjAU;Mau7ѼpqX̹ bQA#SoɧLQNMep[~L!uU٦& Ѿl0$Ao& &4+EMq%!Pטi*ِwˏ4(cdZ8C{R/H L I*|[jzOU4G5r߀!Dfn*lS/uیW(H(Ug:p G}lk1핿duݩ䃦jTiD]Ӆ+x{ ˆժp L m0Vt.m-dA߈O 2K̭* &]="~ uNw.()`z>-},8I81>roԺ 巺 WkySJ@#^;ﻴ1Z`o.CYH^y:A}r5D4#4{O[,qTԸש2^ɯ':8lL#hBL&) ?_"BSN%JP}KY猊z ^ohW9$_9bi -'v'0u 7jxynI#`czmT4[-; S+vCK!_C5 >tokWʆRчdY@'N-}1qZXu/h-4^]1^<(Wltj1^]+CJS3bT$msrHW:j\n>vBU &G}vą%jؚ),Գf j%0k|yn7c{/:,`M 2ʡ# _CQm7s3}4+ ͶgLjxEԇpQ} " j<+UC,Ww&mU-8s$pB &7 de36r⁝nE!T>dy=1IML ye!ٕFؾAdfƑ-0Հ -*1ӕ)S&O^(,1_O͆`(ٯ56Kԯ ‚{=6 umK[☰v>az@Y b.a.UZVi3ZDx8VD'Z01Oa[`d(i]&T ٺ v6|Z )vWVqjIJ +pw(eiFoLL3B=^jf NqvFq 9.wpg ;)W/iYmJie$e%^eE:6%gcsTFga2ekaڧ}G7Fz?O2Cڋ,"@~ҲjlIdE<Y#{PhW83VxBrmAsȷFP=u&,3cA=6j7|zo+$걱=Z9G+ʅ+@?c2eyFz S$t"Mxr}71JF!KQ!J{m #hoG[i+04 l^x맏kd8\8aď"ѡ!#' ֱ[dBHo#դٓ93:E5W,yH#m?mu8['q}< dG2"p@{[[B7Mnn~H _*>i"DZK@qc>DƼ`aQ%[9&VA$`%2D `lUao *Oo$P1\ʊT0xo )b/Gf؈)jXNY<%6bʼ680{I4xR~o$HTA$X1L1s'%M(E+H,KhҎyx Re!G+ h0m΂=^\KQ}tRV:̔%fr\_kEY_T!5E:q_A%YMQeaҹߤ0-a޲:@k51Jf+: >cnhA}f|N7{9(n9CLQYu JȌii *}+حde)Lu#ɥ².~o48+Ld[PKa蝼p>l#;;`>U"fKYQ^Ƕ&oUAudE77AcZ9J˽YYM D}8>/`)(_9,~D qcu3rBM6f tG2 [40ryګ6k_;JFO׆!a;uHlS,JjB(߰$}O:}X&sن\trj;k!rW7qm84,9 \刑ю;/'n`ه8$pJxw=>(/l1[4QJƫ>:osoO~qzrR(ֆbDDjcgxd Da#"'M\lBЛQ 05H:]uA*P~d Wt㵱j/"Gp0KL_'3J@-W? DZ|fYcFܦl$W&^t?A 2fē RFe(!d>RE-Qy 쥗r!-:07({*youXŠ6`gI۠\.՞;d,>c?#p#&<<f,L=8%'\/S /xNE'OH6] 37a ]bgrhNQ#^ `5D=F%)*Tc,ç Ë}Aje'F 9WѫVŋE%EpT&K` ΁8:Sln寨[웁[!Bny@CwcqFU鑜D6Z,#Ÿya. /򡃀F `S.Y.#(ual`3ۚ@xeLweihot^sNh,1g]PB(?VRI&Kd&~D;`H?v܉HtL.|],kދ iDf2ZM2nhJX{62yQ&PmHkxra"k9o(hW. h\y'^eCڹii2{3'6/>T @EE00{Ẅ́C͛^"aļۇn?$xWqQY!пp}~)3A@Ѐ_oXI* >^=wcAT Iw[޴-w[bn,DvusdEh(>Y|ha*iU$X3u0K&ZWX>d+d #+?tKCtgAEa64VH`;j>R4 ttp*UՅ9 K8OR0!HT$''w.w LG?vAtL23fID!VcsV E󇶻 O8h- $mkio*mx(}S86 )-5zlu-2$5u{dBr-?eI2F%F'cE~ '*w@Gd3|QL=L_(Z<4GDL˂'i`O}$,r%KF  ,i _02B 2=_=aîB;6䳕 7v 2꧘ҒU2U~ǚ~Yf^F 0ՙ ~(hw-v%, NYZH^}Uµթl"]N,TGXG5c#[Oa*VǀEL2 QbP.cF |j f >}1wmÛƚ٩$<;a;[I , 4~31[dME n iւ]Xs3`s5WT^ ŊR$&!d?? 3 N z8dDj=51Ԓ \UO!P[6ݞ%ɨ_.'h>(A_ q:mSOݕVKL"A>yJ$RNDzf|qNT5Q-EΞݸ%w&uB+z̅h!O8hw |)qÃ{o-ػ{DrŖA%c߮AVŹ5M 7c:Z>u>~8 کWfU$q1"ro+7Jzopi1Ay);< 77Nə[ڢ MT[f#cs^Xͷ'ggVooD>xjg婬f }B['| ^5ڥ2;cf" zˮ3 a } Vf"x0Ba"ux`zg]U_i1fP>Jq:#I׬ˡ7xhO/Ù6&M2uh;wTwrKV|"<8 +AwvZż+a*Σ.@4|A^PxiXtUl.x%+3(PFUA-*CJd2_*T+ jf˃CY`TZT- l\Tad WE#bC&mx}\T .5%dE|]}N'_ eM9#\{;$E]Z%@`<9@F$߷\u&]A̰``Kf21.Ndl-/V;0 2,e4GރQ0fu1rc- NěMR%pT]SPVq#';V.3H;zD1a- ZDHc RT.kpSLT*wc$@sИZq;m7V`&~RmV!ɻgb+uzq F-FE(2u v-rVy$"BNgI4*ժbLTVq"?;՗+sf_=`.yBx`fSFniW3NܣO3Lʩ*6rsC]ҏqz($(ӌwu7ŷj >Cz9#oY_%`'3*Kr-$^ ֝2Q:R({e*]ci/Tͦd;4pd$R`< ߍXur>Dah"=CsQoaܛ4P]n$:)VVЀ'[uԅM_MlYe_+yicJI(%#NwM+ZLz?gjE(]X\PWa4 ouNK=k{ԁCiWƪ6P9cQ-'a"mJ»;HS/bxLDP5n ;.C69h\L3@W8yhRb{;#&JB!NN1!N4>w65na|&xsxذG{(B8&C½*%P+5i.>vFY(>+5T+$F9y[X4l3g[PĒپ^oEJYht}G%orc} \aK1h %#U8 { {6 r5i >+S"v `lQ<hv|mS愓]vji8oLDr\z<QyIegNyo7`aCA\>\OA !(j"VZ}j&瀼JeX$BڪxVzSZ8-H#B,Iޚ0[0%yH,kB{G m1( a$lɹ=7jbOX]_)CD*B: 8}|K{c94Ge@vDDu|%&9~ ʩ+rk>^v>t~eU߈d-D#5Ul̵hl) cPlЫNڹE.gt! &/bb92^TFEF"Zjܥ&M+bCcܯfPh:k&Æθ]1M+c i>TQSoB"UNܬ!i q8#bƗN>c&)u;Y`K-ԉ֚zE)^/h2wF ͣ,rFiǃWM''&+&;L+7  .[]7,V81?1@dsW5ᥗYsV.08yغ9{LrS g$XȪVrqfd (+cgR IDUz` |&)'mv`5'fj0_̨#.1EUw:Iy;'vF+'n!_)q~EA$GШSLx"|*ą'JoE4B?`бO7yvT8=rm%-K4uPB^X:1&]LNL_:&އj4!AU;f10^=%:XGZ9evXS5I>bUk\&0ȫv;|Zepv>*FgیP+mF"7t}I~/dFp fIw<gJdrSASDސ6= -Hy?ˠgefbDpW1up q.űM0cgڭ{f78S3{aLPR[$P2TlWrJ+3k-h*:+)Ϩ(y3ʷo׸AJg_0yj 'ڔ!u^l ӂ=QU5CW}KD~"/̐n(Χ_Oз_U\|OP'nVDv+.z팱G5Mxҋ1"QJ{[KGCϳ`u"~kD_ =d|6IeN5S. 8΢tl&;ZjIw߇:V%E"et{)Zqe V0l,FKU`Y6]L@\)o {j-Nu umWB&aR!oyk9<3| ђ}?u9Z:RՊ~v_J+$a|qɌ0BT#FI#Ƹ.Kk bG[7%j%.RMqښV[^\[PlTU+SfMO)KJk1#x^ɞEax.=1ՋϞY-Nv艤R+gI+dC.߀EǗe`$d&=C>+}R9ۄBpCtka3kz]Ҽak {/T]7ra"tƛqm`1t'R멘GNJn.=\ )](NrhɖT鯘&lcB`Zգ*(iq!{Jəy/Nͧ~'z^mꟑ+S/TY= NElAr#xD?ӹYf?uD/ {nXhA FNÈDLw`C\2js Kvb¨R/FSv7-(xx2)RB~1Z<{F\jKuyȾ89[%W.{⺝@ >)e}$MRr0 &j0AEQdQ~ }d?]iXxy?R?:O*4>y~Eg[žˆEIs4"zND'e9垴w EŪ位y(wKXؖ@7O{ {ZҪպ7NZuu,Tmt]lN>9Ki)>CߡL 2Y ˞(P%άto9t, QG^K&w Tis wBqL&*/ 7-?xy_^U8<-/IgZwc.`lDO9rMGx| r4!?'WM>,lÎ2XX3{<'ٞ ڬ-UPD5[שGGpj®.3w_<\1 ` D= a$mνW ݃5Lȼn"/VG9㍃nih7P#y*Z4SD^I:`qJ5#/GPRK$z <ʈi:`Rv|rEFi(^Oʜf<aC~mJ2iJ?L>ޤršEIrv$I  (+."Ly2ĹOG)g#.g{nl)Vy!llR o8i?쪛3ޠbHiO =X 3H!m~#%Xm_>- P3B`-4 od1D[YGG[]\]ĶJg[iSy"ZX}dmlεa`$\kmEqscQI]ug PdW/ +,EB|շ+p3?B脩HED\ ',Iq!E^;< lPt߄GQZжml]Z~&&I oY _)FCID `'v`]B<n s SsHY 0E4I"zi oCH=Mvh݌2GGwLz?;z}0~Nzz?hY@=Y&u{t  ^m)g!nP\a3j { ew6f%l e?qh^YN-& } /S]O-|jr~Ê78)y؎G %)[4[P_ )jㅞ%[#w^5ƪ+Y؉X{Ura_ЂF#e^m4崃X`{e[[XѬ.TR,lI*]v^U-BI}r#~7܇AyF8ޫ\HjeuCQ5֬^H$,u&Apt2o~up=[a䭈neɹ65]4i{׭} od'vfQc²:N+SjZu>$| |("1U~ai,Sf'&O cEz,!jqj6l>Ԑ佞B.)^ZBj*Jx AS#u/wz]\0 izB*86AuKZupX&`eLϮs03cS^[0|il7c0jj6\nҲ/7'5ߺ%Q}K =QҢ|Vʅ2o*,Q52^f^I.[LS" XO1ڥR,TLڀ>dIcNM` "Jg*8bY!q64*/&̮ A~% l&!Ҡ{ĉ2'f[zvD*w`u"~go+S_ig)湋nվ3]əA*f̜)>`J+̕K,/tT$ m[2GRo䚭y 9 gs=?=+/)oo`Kk[x,*`6ϥ”:H8zz ǎ8eއkg?O)S$۵} ;Y߅ +5Ep >] uAmYs@lrROCX@%YACήzU i ξ G6}vbef:`HOPv3q>` ~Cϐe:*9$JZj\iڦ:bEԋ E¼O)M@ZxJZ-oW@E[Wf]&Ls+1>YNmS.F˷%]t '60Hn^@sWBU~k@bK:b 0A\o #ϮKZ1A0tN$Gejqm'RQ&dvAgP+ dmeZ=G1,p4crDCGȉNlⶁ4gWNjq6Wb(F%~dsV~zU\@`>u ԝ|#LWkaaG{~q k;xu+$xZM +)'F&9BiՌa )A ~,OC mKU?cIy<fVɟf`#ӄ0+A.?脶`;?XKΜ>|UyIb P;lW;)S`=#tAS'SU.. +QZoP⯕Jaݞòt+0j)ъeQ [I&*\P ĥApOϤfϚޜ*[K[OI'9B\ޜ3ӌ~J-$gz=\}˅^`v$ZRI`m|:ElϠj] ru\J7Gè/śIa7 }ȠNPX\>3vSBJU;升-+VQPG9b<(z;bomOAMjT#'{)ӖRPtwBj' #uOB1u 0o7zj,˭y䕣Ah}b5+\8i{4҇' d~DɁِ&=ZD~ 3qKϓmAew)w]1;d36Swx@b>Zd:]MNYuEpS$mL=+en clemo ǑT1 c9\+r #{IAfa8G ^C3+Zxt{/vfG??¢- 2CZA1PBE%/&P⍮p[ѷ}Z? 2nVg59Kwq> #  ^Wa5#:.00,)sj@_70%j2=/+I  J9, T:+F` )EYK#?RݯHw'FnN@p3%=d}A%dgKnlb>`1,~=3S%)K \rc:Cvq1L}JÍmUFk4RmD:KD8z\ٷKe̠T@U)h e.KZ~!{ lM?s[M0K?)U:j)& ]Rv“Y +3RKLdЧ@p :Xx(|Ml! j1 x?#">dbӰGWuW=ZUp ASAEȺ_Ts=(Yp^9v{1xy,r݊'A0tP۫&b&>8=×KͱDq~E8L:_=)$/ tFOLXz\"tLމG?-Bv8+~xGEq;@s${ʭX>B +S-Ypێ=ZIp%/d? ষ2NpgPV0 TSrMhOlù),PZ#){RrxDs*U*X~RÐu8K4""ca̸23Z?$2u:[ Cy=0b@rZvrmȗՔUo-d3~@Ti}[{^*|k4:#[+qZa*C<6 w۽] ۰A18e;p׎z9U?Y)muZkVށ7ւ &Fi^\bE$,x^ o3=jmUSqwW? [ q6X*W\r%1xu-A>7w16_2",AeE9kfimɭA)eKfS{4*ߐʴĮŇ?ޣX*^^R}Rg,c/x9=(@J8AbDG7= MnQ,k\HqjG\N6DLх'#םc^F>߄<eP"6NU7ħ:7>Y 3:\m5Tj-nu}^eB9Lׄ; HsZ$D4U2!4!qzQ/őm.KmolFrh:Vu}N7I9΋MC%L: Z2#JM˙U~_ HL/X8wn_UEɶM{Jd< &Ijiıgn(QXRM̴sֶ}f (ӄ XB d%A4|BLD84}'KZٞvd>bGQ7lPvQF1}@ 7.'cn=$Ek@ f Ջ81A痘V\ boO:p*{o `s<&7h|Klm^T?D56 9s10n[I҉j"';~UęVb8P0{QRz-8ۄ'`eRZ:ܲC0N.Ub1ע. D O Lw5ҬwkDlEʐDֽˬY۵6vIJ$ث ~W9`J\1]X/\/凙E3,PwP2H=7^l~[XYSdZ}/!L REA'>"&>-\F,qξ)E WOaTfv7rx yʴo3coQMnmrCIG=S} 0[p'RWtN^ٗ5܉U0}]Gkv \[F7Yvpޖ`v[ĩtbrM;IDI! =$>pC }I Z-=_i@ ?dF,xsw8ďi7=@DL$)HcCLA8 C7bc9Z"ɷbuQ Ғn۞/H"-b"gBRo>qiBFEJ#y-:1G_+SrXcC#'DPHH*_OwZt=*X!5t4?xT?+Hg>^+4j 5ăe/Vd<7'A["(bv7M\_E3d)"-H8fm4>Y9&-Ϸ" Xj 1Fi#\񎮞pW)PٝA︈od`STa> cT,%Y3q$#ZH+(KFնz|OmQ%^0_PNt GpE"u8uR5GzgC󩘈]e油}}!kgtG vGmBaJ!^JG7M#$́'+g,;)[Lgx¬}QY K%VeGejwEvA5w/Uj+P۵ HV \=@3 1iq:| %пt 4~d̼I=;K#A<<\)! -a|M^tu~_t$\i^N BI)8:?t./3ҦRȈXqeXYBlH'Ӓ8NX1SQQ7լjlǑ%t)d+݆fKcʜH_ i`|C&l!$ K0Iq%Lw-0f}6;gr<D'/>Gn3ԅ]_\s :l]y,A V¿=$69e )մrov4O/0Q\ca`0mɃҎ_xK@5><1ϱ⮯Zfꬎ f'ּ4R],B fS<UnHNV#ngq85[P3y&jԴO6<ُ"/NBGs0FC[ [Bb`p)ࡘrua;4*qV)B CuU1όsM >~KG=I%-bm^$ɮJ>KjȘX=qt2^i5gd]7aov02"+'03SJvhΓz,&!.ÈrUMZY)v2Eת` nSL}Xj34V{qSGtdt8͵ _K0Q~5%=t%S"n-ڠJz*J<_cxdiPP'r4 ?HCe`|ʌnRt>F_y1t-)+D *Ȧӄf!fcW@&OY)K~C|J+V C$A>{XbЈpC9 &Q&+8mW"|qQդF.M$\1gx0 ZI:Z*3s42Gx~֗+rC*%z<:'D@cy6n?T=؊RtsĝprwTUk&JP0eZG=T{T!/UoEJJʴkǫl`WRa:"!7@alsg5TYQK4Ia jd;aϞ*uFĮ acµr;oCH1;@N˿xTx]ΣJNWXq*2*1I 5C?ACs-~t.9z'105`$h |v9Z4B@KcW`u5a,' S{8}J_P6TJaM@Mx״`sO+9 3Y~Cz8`;K6rl!1)@xbS˂>KIp+uM/4k D!Ky29 6ɰ M3ݸ$PIHwF&h >d@CXCtX$+QUɱl>򛕫u e@esvyDTͣ/:€ΡgtGm/N~wY=iE3pMH0D+R{qW*9::;%çT:ʻ9J$DЎI_$MV]lEY/D`"QqϾ'Szdt/(~\si]+NbIMf-2DJGEkym.[Ӧ (z?v/͠܏yc]'R=d$YAg6sib0LoŇz[=VL@.[SRqΖ7M8"ͽBCn4/i$!X/7#r\3Vy|}R H*ˤdg`A|W~ܫO[uɥtNq`v}Oє#v.|!\j+o+KEbdDOoȉsPSm0Lg2CZhsČe}:%5BÕQ\"*M7tC%ϋx9忌 c5T%V;z-n[PCPD{b fŖ$t9EH3bBHfc~/v}-c_79NE$ l"qt^S_!m,|z\-ZpZ ɥmL6eX^ ) rڸj[0/>[ rb:BjKSNBhRSU&n ՊT~oŚ&)RfLVϬs9/4ۮ6-.EsoZ<~GNgH.s(ބ`R񻔤:c}H! ˕!p&;f❵aNm p h"xsqP'rt#3/gz( gX"i=jv}Y^UaJ2q]UOc08 c^Ϻ?@?!&fU o[uuɐi2DݻU)B.erpÛ^$4qz >1F&%m"ٴşiCDJ :l|?j^1I:/mbۻCԼNSq%hݠL;eӂwHMR !?3n1|rY>w.= \4wԪ&/T7CUbwz;MaƸW)e.*kHU 9}$U!NQK>bT4Ng-GEN3<~5kTC-eQ/%n"š-FR(I.BME_*k .ٜ dl&)o/>g`4&aLUvypZQ\[;"|x!<ٔB4W:Et報 II{嗘Dma2vAgs/uQHLǐ؇]P2AфevFs[-oZnC@hrEii"{"ŧ3uf|hő^bSԌlCx}l1|Z$3֘l[$i0қeP8e&WdsVZ4'̪b]?|)of"L $/}9`wA͆ϊUXG@b8ժc=g23$=q#^#o.1؞Tirw^oso8eU.j/SYo$яAQ b$Z]^`7_%J3i*EBuٱfmcg!5QR n>K壖+E^Nд r2O:b,@^23yjw3FYqp8JXv-ߍK Wt:o77*?aSJ|9rJͣ'ΤNfMҗcXu jgV~oߡ'׫z&}؁)KިKBwCE]n͹[kw !0'ߴBۙG[sV4 e{e GyЁtچwcǼ~{=Jm1}~W7Ҿ86qvhuv"ΆpCjexd|/zZ?9R}ST/*ml\%G` edL3&>d'C{aFžFq’% >ۑ!ˍ4DݗLEޠYUFR?b͞,k~1H uMd6M,4c"2:BnMH+us6)2)"L:9<*lK9XM??L=5> ~QE"l64 <*R`|q[ykްBJp~ZAGkk,PPN>=[$yD _Nv\Ybpi̿Z1je9M>"wJApt*V<8w }WyE@1V94gw̻,(${6e-m=S[XaA  [ ~9q6?S ~PF90JiUl!Cfcp^  LmyݭTI~!o"T0܁r<_sq=l2NS3>gCVs:KkA¯!1H'Aw IP~ڃwxӒJW󏦦D[ǧ)[ FD݃*J2M )hb3*fIm-\3p4 ߱LjfƌO5F9G96 &Շ6Ginx 4:MM^3IM%_c ^ytǢgPvՆ=FVGwi b%i"vZX61M Q ڡp ;=؟RMe ^jxwh8Im0$@'.%?X͗#2cNG@}wz3_+z3!5sF>N󲤣b"atKr;qRI;3iM_ r*y:]Q&k$w_`G-J&Ͳ=\<(=(װC oWDaEΗ6\']U ¹To]%N'"6ExC϶[CjȺG-nRF ].H미=e :?H.(ʼnH Y2tF( >YpexA)PAy/U[{G%)15) yk2&sw-kkhr֛g&mb-4D;`**[N.[S6JDVZX:~)&@"=]^X`}UM|,L!!w8MTr>hk9bLG>2̎ EΠ#7M,?"&R{w5 ;ےhLɥL .),ɋ:rac}\(ҾPv֢̋\E#ʄjBx@ ܨ(W(ʎ.omF/d MG"_nRh<ٸx&+F߂Ƅn=d'˟yD̼>oӓ.n_2Q똺[s},z%3&x<쯎r s9e%ȇr<1棁hNKI}sQ~HttΒPZ@`>_e @itv#MT9T%$T6TWSS{g p։5GDrtyw%Qܕ39>sa/2qOR)b< Op$tu*/7M߻/>"%JOYZc=y:!ݤ2:sTijv@agBY/᤻*}菺Zk#=0 D|k"bgoʕJ,OVԥb+Jc̮ ^i[<_"Z )c1Et֍m+do d5X; 7 ndXcdX'*da,6~`>!%3D$N`q]@bsb l {ĜRx tv?rN9 YE|wI-l S)/[ 6c4hW\QIݮ^Q&̓cÑE9pIc 5B`.' ֶ[5D{NK2Y 'Pts¤R}}\"9Q=$&B$}ZdLH|C׈udrIM=\mÿPSrlMt(^9h3XcfDQ{ʥӝZľA - i1Y~fL5E"bJcX<B1UceWAEDYó8X n'nFD_N< tCB?y^ SiuzwE\-IrCܒ GwMxUAI~Mjj vNɥNiH?l9zd{| #ePb*IkuI32JrTB}@Ɖu +bHZ#R6l4 JfÝBFqz Sv^Z&jIuJ~'BڤڟSo七lT +o bWz{YFETk_CL-f:L] `0l]spM8l$Jvj=vvVD{͛m޹0XƨRD-tT[$ G =D׭yjd ?9PJ߅h`]퍨ZUa[6(d+kKCv>u HC8_}wTP,}d)vȭo7?(²e߀=3avLv?G., :ZqZKZ'sT`xk:B7#x%F<ʌڿ %Vx=QbE+hDn&M9`8 rw*ȩ=˫g [kXx铎&+jUM^o'1(مu&gGބ=VSM;N~7irv?L蔀8p>tg+wv/`sr@nmoQmYMo]a9#6%:;wvYYF~M,%T;HpW%oZܿ_h/v-Ԉ/>.P.9N.uY17U֩~r?."Zוlk[x\$}|zp")/+t^ᦤ *,exa!iۉZVAR\z"&vħ( :0(N ۉ93)YlZ |SřKAlQ?)1ja䭿1C=^O xԌ𣉥 Me 84=7pl8~l13ɸr)JF%&e*/׀NYb}n5Hu; žv1R`mEQnn¿> ?P?^`\ UdPa  ֓hXs_LzX%r0s$YXIomڭ Φ%* gPMTd,K++;`F^]*XT~HU6m!{h e!vY%?xډEYo݃Y6Ҭ2n)گBrfUQ e`EEkH=S{(D9qƉuG>øБYC{tBt ȩ`6az• {3S48sqpw +!CK3%">MUaZt;&'ʿKn^V2_H'Zvyg<#Z>Uy/Fr6$ˇC(=qF-~"t2g7$Y ϸg咻70Wh$ 6Ճߠ5=HOSP;5xVa@3n?zQm:x-q|VS7/pYR٦Ѧ_;-WJUhTQ A0s@Mv0F%dl Qf[q87mxq^)Rx܎2eaѤ]q籄]۳"N6,'kIdl; Jes-vC.}~ Fuɒle6 vP "|bGC[%#2#a l+3ۨœ/B9'sGţ\}-k}ru#lKXLKDSuT2 g[WgS(]`N){]8}c!N݀<ނS' .qD Qu02HSrJaɣF)>wIrt0E  z0A≃{kli5Q|}bU L|r X3网5VJJ3s g}FT!1j'̝^ߋ悤=`mgXks薷'SeW(uӵ^arqt'ehFimRs n=UE{/C( ^F\xi}{]m>33CԮu7ZhAPK|xYHo~(Br[4uDIt,Y29I bSԍ{Ք*?h_S:xlcJ|6dr 4ݷWb?MC /kO f8x^}C3 ͑F3SeG|ٻ4 S{n% &{ִu\΅8.fUuEs^j?-E/f"X6H%0l *^J_rz=Jލ~t.¹ Å)5 \RiC@ pν6K%GCF?Zx+k&ק٣ ʬTLdeI Mڦ2rԔSRsGOxHQ.=>v#zkʊXxMsqzwL;+82+JPJкkή rY=$I7|塬 61H7UZe5no. 泔Zᶥ⾋OTKy4Rޗ7T\wʑI.;2*L7%(ۻZQ,cxN$3lOxɁ6Pb,:69l FIE#]_Xjo6 jwS{ d>6iYuU,;A$ ֳ׶g1ۈPc R8SWNnܚ7 M O1"*d&1ڦd ݷ'oͼ#bh4;=>BfI,fՠ׈m7 NU9A:醢O!r { G?ŤP3Ǥ J.%$\M]O)D5_N*J%0E8Sؼ(cZ@`2ww_DY:`[Bi:eWFg Y1<k<GaSX.È~2fIaj"(aU\}I -5tY&d umS_>eJAk Dkc'&fFo<%^BnezMD(2t'U^O# =^ W?.D`Cv.d!_a ԝz Apx?O9<5IY^ДG*bY-NXY)5ؔ~> ʨ tC4 ;Á?9ai9Bc!-OhV~qyz.Ћ5az1A'?o=[gO-~dqld{ ̨p~Fy g6I/~V{Yw 1?~ )a i38Zѭ|*  @bM#UUpR{2,g7" [A](5%Es*-a䎌3Q%VPa]xn)GF8Uu~'sz>AT(9FҼ"9 WF+}|1?mfZۡ*q(3Cbcs3+O!TH p޳f;}5"۴y(i h+o]#m}H,fSP2ޜ\JQhqW9\[Hs1l1*4 o/` q|<]sej J /rpP$1Æt‹RfgGv97V.kN&tfK`K%`O[%޻FؠDţ)xOWS!(el~5/\LxvB͏;5RerbÜGW*s{gh$l7S~}&8W {Ӳou枖SuE$$>~ ( @k}CW` S. 56* 4>S6Iqc^%xE7H%f#lR] .bG'X W^;#a8 uE6wLbnDgYm^A`s>Xa9e2Q\u[rǗp @ F{R4PMT˚ "Jh0k񭯉{RRY._]l둪|&.1C5_zCiLz jw eZ$_fzſ &> ehS1t =?^̾3BI>]/ {8b)S'M'zKC΢QLFЃpO}h0a7R9%㠹yLӚpSjrRY]R6$CTD> h yKjhOJW6K H3k0Y؞^"RHAf~ G7/_,Js:Fl#>'Eh}!?tmCI֫/雊Mz]}D%O.AN2xƂ>6NkP{,Gtnf8oБ:g9N?jMLN ?hd 6l1fKi$`l/bh4[Y8er5P"Ҹ!̜_?/0L3lr^B8J@$?=)n8nR׵O`+&om=E0rjxEt+cyL]68#b!?Z?i{a#tyМPKi&.QPbGpsf mה'`r߳b PEo|Pt>=[P7 A9qJIqшsNe ZV=_xnmRX?Ed.v[3ߣJ0Cf`ޓdT DRQt##Q&h>"0W?w9Yp2eD* l}:@k9 n{+٦a+g+4alѴo^tآHOHiG+5lSvl? o3F-8PmuQBGVNu@P4@J3܆ 2d6'lOdZsšM{ۮYU0wUZ Hw7=- ^FqI%Up9'o{O$ec| "!%&#[^S2~*d]s7!Nlu*:E/0R(z ;רZ7 gvM Re`Q:qrlr8_lí{n Z&)$C?\ݤk(T}TsIp`?ەpc  F(7jepXXoTףw }g쀦 Ƥzg9:` &'<J5#| >#iB0}.iiX) :i1]gw@, , vkO<䅙:Tvy-A3En~fOD'q7  >NZ8<~ؗnC><2]M{3_]o`nE:kGY,6a *JIxSH{ TJ(5xզ伓 v-}o&)$Ab{n4)4:EgW S@q R'. &Yz z!)0sT8 Op:/N~>2y(t3YaqBP_J Gq0RZؘ0?C NeZ^o1H媗)Ag?_d"n MIv3 ގveȭx$ dWy ;cJɇ ,:n q!%(Ya4tOJ ܍k<)F2 *AL+ 5Yli`#< =u}\m^vr~T̙6v|g %#+C}OL[T ŜDЎeú_mEN _I c? \I|2q aYMMX{sCO6c34OD&dKm?}`+|. {>68\TPҀ\x:;f-?'*J ,:\~㗚]Ձ_ߍ~hF' jRNE n4"XrLjV<.M;T5Y@eëCȃ@L1 y%6yjl)*E#}!C8,VhdExXFTD*0^ttU&vg*Q36CV7Ml&{8,NRxѣxД.D-L!2szϭi|}?|YXk8_oܞM8eFm͒4^$T3Q'WޫˀBxSώC7 y/sE̩LG2Ӊ nATJOϪPK jU:﷭cZ-a^VsJ*39J,3p_OE|ks369&ʘ%CuQњ&B)^ ~,J n1k:*$nLڞ>j2OO!\93-{im9\ vHw\poiEuPR)//ޡFsnH )8Q2?rټ!θD ed:x W^jxvQɣv b A]G|%S84zDL3m|(2lKV߅򱋇eeݸ๻$[9w.oIG.s*fkHlDPizsmY;)p\vfΥ2]ymI0#'VVipEpԼJ B5aJ/#  o݋3wÍC`&4 03O ljj ?Gj}D~y5ճ UG; g8 }2.ԓN3=_b-i,\j˚EGň3 T(с=C sKף0 | EnӨbV~3EƁq7k:([4LHKFMIO|^b Tɓ͐_a7WF)SX"`t(jz &x.e"J``Fi#8ۦT=1űo![Mmfq(=*c~vu v.ψlTrb8] (qXJP'j(2*o0("mto6}=%ۯ)`}$.hyJ\&5 )`)_lg'.uI|Źnf: I"]5)1"X4%Թ^)ۚ)֞hj>t5n +٘Cɯ W-;qTTrm9 Խx}DOB$#\T3,fj[pC. &0V1T5),v` EC~< <ťH#ȟUۢeiWGQDڎlՅbE-h͵x $PNX\(ȒI}ݕђMdP'VLY'b6eאdƕ6&H0H%w hl`v9jf@\d3wԉ:@FjOK{؇iRm0%l- 7yg5I m0:w`QSa[noԂr4%'?ldӳIY}4R\U|WM ͒&wR]bhPI+c<Δ@K`d{ڑ:^O{cAw6"i\n:tU(wa~#H+~Y•o7~oAKEޮ)LNZ$h֫uf^aל^.ڒ)lJycv HWEt-g3eyv(!=e1~D!0 Ékx7l ^BM?UAE-f͍uώPk |=|`BUn,y 0 NBA#k_f+e ksJ푇]eXéZe޵R(.bѬ @uܴ46.(v]&Z$ZL ;ZObh [Ks/uƻx ;C?#G˿ al4"-=:N~TvL!$,iDFk-A@re'b\mMzd^cV;T-:Rg6=+Lv kYQ&$ Eb xpd}=3jCPF3i.ZT11N*HO$+Q49 tŸM=):.V+[۾%D𿸷 hd$Mk.$}ŋ5E4bnZOMQuNʼn`bhy*E>Ϲs22VK~e?f6D<}-ݞ&O5.Qh0'b7D5-d9ٜnKi=-]3&'vJk7;>GmO۷-I>g|a@ߩۮNL Z<$He=9=RQڕ5&MO`<<&X!s ڻCN* A^QLPxRV.)JuEZڑSF7ЛX$7{KJBM .L]i[3ྛW}P+U| '7lcz6=t!`|+9H1a}uE+Ihe5 m~ MR!|M*tFCseP#hZ&5؊W4--|`׃ oCs֯\-{D3YgUlx8aЛ(C>wse[l8a~S BfOhSPROmt/yVbڻʈ/+KNٺY~BvC]ӄNT>Hyn9. Z^UC,hHo (OMrzm7&oKL/N>?4Q&$P~Όp&Yg?[B~Ľ6Á/(KPۥ%+#30[hr|0{aE᷆Hg6N$37[lʀϮi+m9A,EH=34'mv]ݡ(Hv(lݔDJsP~rXXǵL. $a'rgʄpKt}A&L#سj+x?0͸P=d-J|Q"CB$qbǞ6Le+ eL$BswĸrGeq`Gܖs ( 9})p3wkN9 @("f/ulT1ozɼ>Nnv5 ^ZC:½-IZa#TW#k(n@Q8S^tW Z7L.577jL,Pj\}E'b<>/v-E1>‡J}׀Pw=k3rWyz_[y 1g]U^z*7|PTD^շr/qHA (SXE-fdž5D.E|݊8/; .WVp\xN۹d{)m%))VQY-] U.o:ҫ˂C jp%fv,ReY{Hg8#F՗- XXV|s%ݕ<&"PB> hdÍ}s[Үt˄J&hmOמ[<= %=td{+BD扴/يcsBX]P!狇qb;V­ #Wf7Eހ/;Ǻ̆5OOPHnsPUn,HraCfC[Eq.գ@Fm/C0-U@c ȷ+|qÆwR?HgtR';pd2BbΧ!ss|Y;99:n_f=lVaY0hg8z 7f|~n8&s/i 5,F.OTaQC94uЛڿMWPv&QP!mhŅfՆVӯ*JɢZг3ߦl>bU 9#B߉0;AFhOզ6/yL0mْ]Ǯၤt5 Tr pgf`fÂFj}jUT4M=Vw1۪0__2djo|ŵ`_@)-!Vp`6z"Nny[(41mqb+ֹ`R;ru}++ܘRܧ^NT`'ܚ+8Ie e_:cq=4`PO|QhVC;Ili "LQ.;#z!FSpU3`GYցaź1RF rKk=_{LͿG#_tHM)@zjwdM}w#jJUg )<ΟuA1=6$W*H. "~~uD5#?R3tɏ/qXOŇp+4Z9VG%3&|<ܑM :*GcPIK+N3^O+LyjVnН iK}AoGVoF NAwF&yF8"YOGXXz.j HŸȈ-!CtpR2Fɧn+LFwo_1X;wOF$߾O3˫V"$#[%XD+J(a '6z5H`dM+ MEZ(mU* a^LiN(c'l}_t#7s/ G"S#Ԑ k'҃AYvPlma;{V"HJ kRZ҄ oi އg~3llR[МZ'(Wq#I7aG oVHl*ZF(C'q$9P5k ' txL5Q@'w%TOd *G/oBCp ̛ժb6AsKyYb-b_oZ[/P35ӛ *ݷ%kQGH7 l<*SdqFVhIkQך*뫎2T7 b-x|K9Tw"BW\<]Ÿ%MY 49Թqd[QSbS)_RȹM2[+?t@e5ߋtSu}ap.(03XN%";= 8{7҂ Z}ql&s;gPqɓF7Jhey K\݉Klèigߤs&ܘiz4=$u,Dj刃D@l(#NI :,}"^?zi{7ï4\TWs' sCތ%mp,h[հ/i-LdQ5wG EvI|v'k|qg4E\ Q<{"40*mDc⚑G<ƉnPaԘdMt DbfLJIPE }>B8ے;&β?e{% R2Ȍ}԰ȝOd#6- nū)F_+/f_뮿`Mm3fy[^btnzI <! i+Iٍ/TAewd!@W_PjQ\1DV uEb4`Qyg2x'3^lB <+ 1_:0Qy k <8kxZ&A fD(y+ ml\& {{ۛ D ɚhz '\P pvQ ܌x@` 칒$ե)I47gs >Rkvѧ˰oP0\ߣ0)& bM I5_XUʮ3-aV S6(sB#vaE􀙏i/+ULC>s_;s&u|TStѮVbS z{a~> ytBW4 Xqe'k,<ܣlm`X;ߋ-uKᗉ̉a%],;'tҦ^+8|-J"ي7ҟН,o.kh6E01 :HbUE@Ya@`bX vT#^ 1`\q-o~ lS;}qu q2dxUaxz0Oj;Lld*dGʬO^ۿ=~ =bqGKCp`G4(VY\md5V= [J'i1ɁP9r0pWg`?\ $QI%r]eK@@D:ErѮ;n2vJJ՞@l X]##'kS ,U,ja¼jնIgGnVN >Jb-;ᰚOwVpj⒲́f%Fļ^0| ZSs `8/6{e6V묹/@$m{sl3z`BؔhNaڼ҃Sir  :: #&))9MkݓyM2u~p. v ˸],_Ěӄ,Lso6+L-ƿR?[06:w s-5 z>R|{]|%fwx c"d3& a{z̃I}[oU䲼! Cm/A0ȁqŧkKOodH^@*ukS|@ں(/GpMz5&zO Q"{xЂl &zH77ޯ9c""X2kAcN[8R!Ú>pCEMmlubI;o=eX! (?HwNNԭ'c׼ քJ;][!Cq ^󅑴4ߜ]R3.͈=>OF`*&%*_f[$Ri'':슐FCa;"~@=wosA1 o1Ade[ 4 529d@qBR+{aeg L &qFY( CcfcLc[ӿbVU%g:IeU7͍?P4IAmh3y7dEr6ݰ1WkvUނ/>@O)%.>jp2ΏT"or돟N9Z&(,1Z:P;cY-^?gC("Z!s:")5ڭ;3tMְj>R2N٫7NC n ȡh6;2dﺔYQRbf%k>N뉤.E L?A3cRs"IA;C;s=+ɼXGľ5ԥKKc ]m9{~^HpI{EqrY5A Pf% E7Mި=׶Kr~GHJJ@!w7sE|q4ZQd$;`ev@bh!vr+.J@j72~ϒZ.KeJhsbF?;"'3%|PΌ{J2LKiPdtez | I24΋UmHyR{Q&y%\O>{P{Vhc)I'/!< 8%kOgk\hSܓF w2"LQ#+d5 ߁ ~UwN=N!Ƭ'Ut|X(s: 񥆖&) kmYrP9FrVĥss >xi}[46dNr *z0Hjf&+ v|ӿ`W7Ğ%G)dh,͔شPbVEQtеg&(rmCp>`k @Ho9d <<ڼym3[_uvm)+ -c ^hey0y՘4=Ԓct0o\2,/e\:_De/̿J?n3Ӭ9ToNZiFjk}RW4Q d+#N| ٶ|SM w(*RouԲ%!jwinL ~0p>7S,Tdђu7U*c #S7nK#grD0~G:%iSQ9ߥ9ݝ,ݬqe.&\Oi1ʸM SiZGzC鄞o3ƕPZ! tTP"),FE?n+ۨh\I~/|Җ':eLuht8E%. ϧ*k 网𜜝+/qWҺX ɟ^i.sOzLIp];!)|O,Tdd{3ǻVxDeyKZ/}c@fa*GJG^.#bUd&K/>vMo؟> ?OFtM¤AcJUiGُ?V8|KA >FG2 op pP[ c1f|K@)#z/^ gҖL ȧJYum'hYH5aPGtpfVi׹:? z TANBj#iBf>,D."ߕ v0?@6}KT;E W ,S*ܐ#]Lb2 < `T#{ HRq2 Nh wSmHRžm_}ulSbG⤾IFΈi] HVx7s01L!ExEhf7{ZCkj"3eާY+-X*}\ǒfs(E)|f,f}褵>jّ|:Y08 .Cl5g ߂O,v1[HxJyw+ փyF;OHc0\QOX(+ vyrti=2Ri%[}16(|#/ymi1&Kxftr Ɲi 4cԺnfRnFQIS=f@ t≰KոwӰ{=Qt8’2]~XTmUTHf~S/׼ty5>*a⯘ρ8=(>]Zj~A(fHuw7''] s(tI _G8'Z>$X?}U R(= ĵ-2eQ/& מHϰ:0A`r!B ?B3y΢9x ;;cufK8uZTW 3&WEΥ$kc+f'30|7ցc.EFJJib_I=`wQ~+8 'i~ b겹 !iuGԇV$]`lcAέL>λ6 A@T7~E>{@lTOJ}[ȨLD F8W4IUt͊tkJcf_6Ni[ųtg3? }W5[ SieT>O einE9KYniIGiFj>@WFk%q/EX]ojwp{R5&t:!$aӜOx* kJtb<훡mDQ.,0Z-VEAW6@?1_wfv;$cAȎl ^<3UZ1"GiA(XLI̗-E.[boI|XT8m{p~b*xi>8 } kl O\a}_Mp*Z4Єm"+c%") U6^ > PyoьtTz:~ &w̭,GۼN[8LX{Ud´Td^rmb : ІL˽"$~OJwYf3QC*fi)ڶJ»>$ nR} TS.risr/po6O4%<zF?&^1;^9Q3NKET|yv7iDRaKܭ߾\W鿚O~05˓nv!]P؄2zLx@\] Z?%9y}`{uA~ o.N*eMtD͛]qyyߋaE-)e|d VsixE-ҏ! fD{s&*|4o4Vcba #- 3ԩۢ `h3<4n%21{^<ˊwexjq\[.vǃo\' h\uϊsR(QUtv{&d|E|q{='Q|^M0M#4T2޼z/Cv:)9Xw|^jJZZ޳IO#\qm/HZ[# :Y-.؄iJCS} ncnC=Xɛ-~1V/2|i7G0[E׀^AwNDIܷdIhɉ8-/VvwS4*mF_&ol`\ ~mz"GݍEʼnöc'TI[n3Q(nyp)>Vk"_:J^u 0D`moo7D<W|fɟ-:ƼeRCȒYlKGrDh$GO-<&j2tͳkÈ}x N<qĿFo LMZݸwM̜%j8gM#π_!A .󊆧clco(C"u>>}{g3Hx/Ķiqr4k'!vY[d1\S%Q,Pyt+zQ6G # 2 Wu^njZ|C4?Zi!:igr tWod|~wp3iXŤ\xBᵴlPThi9дVq kZi]Kp/{ϤTmv{YE=IkCv$_Պ0x &rX7ښN|N\f\=㻖[1o Yr]< 怤=('mW~b7&licdw~H;.%Hnf~- @ubs5QrՖW8O]R2ȡ@ʐW,|2>x̌LVC7B/iiR1Ο\"yiLu1%G^U7.S& W?wNqgCy :.(x\yi"Q880bG})U=D5;(ɘ[[(6 f9z?Kׯ09k)f @;ޢkkz 齕N( n(~#>8$E}Maj(Y?Z63 C/cn+nW pȻGudFTGuho_c :U-GЮF|o_g: 2?u~7BSNRy,M!^^ P`TLA?_?;{(x6(^>4fx% 쵎YN#0܋AK-+ii@]2Ÿax\YٯU;T#*)C \ž텯\Sz~ 2?7/km%mT9+/bAjU"!5e1Dn7x㒂 H v`P(gkLL @JMb0"m=, %&f i" n+bBtXvbh>sūu ԋIdm|2W*Pq҅eW]E @4@j?#1/Z8X{[ 0tфuYF}E DLH LYO5:¤톺Y1fhOܳe 4Qfl1曊@] ٣>-;ܒUThLrj'2U$<3+Ńv*w2(ؒ9OF6P=-)0T>?OCU"٫| SYz7pz>27El5$FW3CG. A.dhjGssFi\üHwCR₏"Q[/^)"'2d9+Z(٢\; ~ʠb`EYPty0l딈郪mUU)̴ϬaQ2|/ %A1(oQ eFJl> SwGE6L%U:"jC"|~r7Q)6Cz7i5Vƃ>m)K°tkA&w 39]_qbp[ x@ sƖ:Ή޼I jm5Yq\K+|4v((3ǨჸsS9cS:&RΨVnjSȕdjb|<|m N~%8KrnOa'tcZy;$]mЦ䷓>4Hd8$OE.1UmH~L$1W# :2mv6eF^byQrCP8߶ީ~yYQsh+FΣC # zI;HTV{(An53R4^ k&$5Ūt0s>ۍfni4jn(zat0Z 61ju] C ;VmQ#TQu/EaQJ ^y } ZR[oIDU<*o: ۯ!i WSt.[rIdFfe!^pVHiE 'd?/>4\WU< @!R$< #;g`PeU 5;o*[#HisL 3rl:%rx1_^~ RG#e>iMA"dI[=X(4gp?RDa^XTڐ=Ȥ>ePy!d/NY< M8z >[[A(wb)D;że$GB-۶&Mq#٩ /Y/f>_muN,$wҰ&F35 NSF*}E-(>zçdK{w6د# ٵ3oڏf\ EDZ_zԅL5* /F6w(Pnda:"&?MV!+Jb2҈,7"ڳhf%ULXk+ёT8h߻B壕"|-o+jǧ\ )yxi9X ݵQ$KswTW ek7|:0Ql `L]BbRf^uae'M}]x[2unC.ĒfJg$rd∂AY`p @֟*ʾF HhٷVЏ%<nI>J'euSV Ε>0%D|{"VsI>6X/`; \|U05ݱ%޻[ 'hְ'kf꽇FߗϘIlC܁R}og](@^c IyBd#T!I=gzTԼv5tL|uO-ѣ>5ej>$1.HƈK&z!V\ zfΜ^M8SF: LY۪6ӷDUuL:iQ}aљ\ Sg_K,mAR#<"ɻ]-6 W^d$,vcv GnBm&-Q LCqm*~'2- z ep6 d0-='M0`7>81M$$Laʌϣ`䑢@TZ)KDjGP9LS.sQ>SSVWv}gt'ylRx5soYAVw$ +E Ce!i1U+](,^4uq5uTw';;[!\{>s7FozsS06։k/s2I9n̽gb;ƅK̽WM3 ȳL}.겍̴dImԉ6pC=#X5?ywE4+H&ѥلO\ftx9}dKݰ'lm4w{)Maj]|A;zgzR 7pmzhtNGܑi TM$=j"!xΊ v; Em1`}fKuMWO%>#D l<蠆7լ"̙Y0̬; vTkԹfNIenX*Nf$*hh`RCxQfי5.>16pFE P?Qe^ab/PypU1%8Y>nRU(!6H7\z_C(;\i%j%^a/IgI-i$VutH,>Ad@:>sy6\/,iC@Q1U>͂'1BZolHԏ.&W"V=sEnI(B=6' 1|sH>qGޜB+>*{fTDNS[[\KشpPL<]3f??e& y/]5}xg6:aWO&cS7: e;09{#\ya|hˀo-z[ 䆎6_ҵ4 Lei+ZC HRŵѬK"r"T Ο4 #-<_\JZe MM:*=w3?f%hحNd4#УbKkb>3 Ӊ.Q;]rZw'gwˆs1FKC?"/x5p4UEf.@pNqdO;Lya*AeӬl\k/]r5 ѠҴ!XπuX]/Nנ x!aMF8?H*m[oyen<7 Y=q}BD;?K50b5= AN5u  *.֢VdoGu:`%M@.h 34pin:Tw9R#RͶcvWً xU7/[ŁMM:>l,Iyn%B{=+]/"}fRu 2X;bjiGH_ic7 ""hs4͹A#|mڿŋ`] I_ygCc 70y%H`kqJD@%ΟЦȆר oNc7OV_8F~\MGHصа>Ϩ0|38 5׍_Y9oc[S X+.+%hf帟 ƿi5tͰ(8&l~2w?&Vx_2 $^m UQI@*֥@1HrqZ]+oxY6a<tK)U4smP6\{mK Hrb|C pl Yt N(ƀQ={IUs%߱A1+eV 9MX%i12ZrN ;%d.T|0[5=ҭ#:ol ЯJ.rQQlGGqŏn^,gހ* 7+N1 ` xBEzO #KyMK1m /py9x–'XYUB)3 ^{V音 E&ͬ]'{0as+kZm 3v!@^8>KP*B6|$MQE`řEK1HšF uvkmD ^ +bt 5y7b NsW97T4A"sq'>C;Jտllo},TvgP>1O^xx- cNX'ܙɋ__Qv2[R3S4qK^r<ON&d \)NB+O ޾5kk$~H"j.%&igho0 o֬D L$Nb PJdq8.|N2V9Oǰ%wox!(\}V'E2-sNG9u!>yohZçTB7O]^N]?c L;gfW@ A  U:,D?YN^rW*մp3LyD*2 Ӗ{1l#] M\sr fxu 'r/2=T;sޠ]ջv1Y^[B 1Ė Waa,f5Y|lgx4٨1C"(!](.(78Ք(;}d(E|gH%Okăq|:VNX葘<-}ʐ4>]Gb}{N!Byf;4-ζd+$LXz8usY 6%0%(e.D Bi?H2hj[ʊ9NI8tCKy}>Y h =aPB$sgą/RJkKvɔvd,OJ^xI)`[]#6x]{όuU؝Hv˕"/Q(dMg%G&?5]UFL[܉?tCԥ Jc;!7ޗi{p{}'aկ8 C*G/ /lUaȥk3/ΤF.$'b~iD8!Vg88wg#i(6dBN r0_v/b U:oZ_g*Ǐ)^C-:cg'1;Nt" +BaPI0&ݱN7ztEAq6wR]ve1gKhڏJ&j4<;xUWB(Z'Js=`Lx KL;Rģ? ~w_j΂-:$ kUgmΟLP'Zi+_Idi>:t4h@"FjgI8ˊ\_|/觛N-ߏ9G:f=@MqV.״,; D>ˍ2-Qe6h)kzgÇ9-iOA+R~G;y:[=ٕʼƧ xɈ"[UmuT%aZRGLi%sR?`^$7za8jjcR-6͟]lƔ#W}<P[#}Oˣ,uE|6!8H@;߅ǐ]B&SZ^ dq;qrD覯 hA[NUYC05Ӧ/ w~H9hhkvϊZ̛Iko|5O]p,ݼ OʘϪ<|BZ NJxX |EnZe4;[yoRA?;STQ%H(U5<^Dݠ*zayOg{P謹o؉pҿWcSC>Vb-W-,P# -\eRqeL} EB  ~!W.A/'Z6ʖUā5.l:? % W~U#3P3@A䛬Lm4 ˾Fi$<^UVnSGw+Uwo?fVD㵆Đ4gxw7m K@?PE*,2 ~W50otIƘ&͘34\.pvļ3i|(Ǫ[ nt$w[=f(ҫsH;bZN?Ϥ";&6pIPzԖ"ݙ "<Г7ٴ' GrNNNΆV5H}If*-W9YsC[;a4/F%)ꕡ)Yb18H`I C%KL|';!tOo[2U?Ρu4tb.rhE =| {qez_gu`'?;3K[j= z /0 K,<gZ _G6 +2-Dqxw~N G(lir*#2l ;֗$0 R++EĖMr@, ƙaO#WV~ .@5-,{жoa(G74(&FG]:NN Dſ vv&s3 BN.۰ZhΡY z@9xdy4X^3pKt*"oe<,1*|RZU%6 ,@Ь:C?fK1Yc$;" XgWeE/*4. =b埴1hfF` j "oyZIo;'I+ljI> @}5A*d`29s0pѢ;gй*ёqHȄ6;Ź~;8B!VD*?ݥvyF!qM8ZVTXNVdۜ'SQ?X#Z'VĆ,YU5'#|AŇĒ>kkr!d葤s)t8n1 TK1quoe‘^Hp&euZ Nţ0F\BԊ1"K*H=R 6g̬UcP2;FnDĒb4w0n~:JhH("9ҿ^Dp#Ō/kmi 5K0MOGټYzDnлzFOkTH*2(I80V<]X ApLs0#>LfjHYI E7Rg 6B^ {aW-ۈhXpR5y3IvhTp1s?"[%*NB-|æ G9|+D0ٗz>uTUG]֢aK_Z-yHbdbPu(~sלCO=l#ŋB~iη7=il `Ӈ^UV1(zC^w\R TD%վj+JS*zvB!z-Rf:唩Ƶa~dFcګϚՎ|ţ;4(9O@ M^%R~u%fĿ'EP9©gS#KU{? ;TӮr>_q67 /;_Y\+W'*'@. VI+T~M};b"{[2kρZH:Yb$ӯw2|7ݘл;"NVkj36R*PDƐbҧB@pW%-Hyrmg!wSbx0pN~x<dYh g0}jcVguojh}]YF,[؈j{h07@ĩ0M?@&ӻ*iu#p$'Xи@cjM/x?PK}xCe3Vj2D +L^顖T.6c}(N?ېN=6]r~B[) *ݫ˰6p#cҟP"׆5ĪҸF }9I60sðҊӬR1'Q*4:ô9 &o=6* !r^SxP!mΰ i.f2a\lPĪF7acN}!8%x$fSV| c/l6;"%۱l) <ʎ{]=+{IXI j`x>UYA{o:k!v{.?Vwj+#uQJt'(2(|[-7DKQL+uzҭ ~xS+C]?͎kxa aGhfnJQIX3e6I)"`Gi~6!B$hv~k-b/+%[q}7Ls6>Z{ɘp<ȡM6ſCh"FVNNڙ/y7\[|z =&lpQFQ)Z">.K-^Bk:v-xsaʬ?zdHRRs]0/#\c(}͹UG.֊qet뺷]+DQ*1JagdFhҹZv_͜Zﬠ^K%nVrI-|C籶;CVdwpJAClm B!CүkhcxO˫ȻNg։~d 7".)Uzu0 T4f g0T`u#AكN8 1W1IA__M&l[8Ʈ@ϱюٗ&+B)˫ yp? v2*\@l#LN*GbW8}ۼ8DJWk1Y O!\a2W6MVKAL$IevkO(s65 йd_h=(љ?eLgd1x0 >oky[:NvcDHKRxhtd].A۴ŗ[?aAlgj(g|y5 W$?mHCeN#Y܃1(!شکUYg1>Zjçp9c$,)Gc1#J&ɴ0rPG{ܽSK˱MMȲgI  L[,{s'r}qI!F^;XDլu ަAh3@iJ#b+ =1`fGB* \~c9,ѳ$4=7AOu&lX;9J[ƅ As[d+t2Lh{ڨ03V."if1FfZ}Dc̠?V]ha,_ P~ \P,)~J9|}΢ӧҴ ɘBʭ`C m Џ`39'K]؊V3/ ã?ag ^؅ۨS]\0uYزn-S“-5;)Oa0D!@{ hbY|]0\_x Hsfb!3 Rm,c8Є AQBj<ˬJfw'L/̆*ZQ+ET1NxZCU^lGp\D{,U@{&e<GD TMuBu=G\{GJ_(Wik!7 N;'L"k1Eniq{\BZT ^h" Z9d=!,fFg!,dZ&yQ #swbp33#  Yutv# ?pf0旕 d 4S!J4D>~0Qpƈa'28c(5w:S3ma26nFb{T: :%eG1>i& ˛٘ J=u;!+:9t[ Z$Y E_ d5jHi~b>?;ȓUOpʎd"i|N7<iHz}qnXyڢ 73DOh LAV܋tO*_dZP3>]`+mGquF/7 Q΁GAF; //PxW"-,Z}Cڟdv Nl^3K!2&^y PRS*}2Gbh8ޥ@GP,&Ee0N^eowMUI`e' qpƨǎ_G@ˇˌ L<(eA+$J14.ov<굂R4)ne(%M@[Ò l>SE&H*ob0h +:hm9UUC߆?bD<, =U6:'Ʉ#^pIƄC-xZo%h +6nH"eױoC)nRX`8kRK%Wf6A$l+LC70Aq,^ї ̏"*W<:Tx63Gd">i?"u>tTʀNelYg)P, ?#PN>W ]v7AmHjlotb {d)$ y] K%I^hJt*.Ț{XY<'I1A_YE?Acޗ=7l|;ׯ *EẐ> YVlu3;>ޭLYK~.'g/O\ƌ~xʖˆ%O,nT ygxr1'RGa5Vnz#F؝fVAܣp K5֓?`~q\EUbLU+,$;X? c@A^|pC)+裐 ralǀg-cq|D*HCR.m-?sOra웏ؾ  p>&P+4@zdٍ"QGVl qtBuh|:Twq[72-п yeoC*,#hWDѨGp6;D^9,J~#1U1 ?e~=۽0 dՠ,q:4*YHrjΌf]E%!sD^ RΦ"Nu 1bʰ{Tפ^\)4ha9oeaaUG1QHx&yꊴ\`阧ȥcooY "cSidwPAR{Ǿ8=.Ռ0h#0?- {5 5uu:v ź IU5cK͑g >qch,?idn`zV,LY6]4pMӜ6d>ܸ095Z(;O͡ S;w3D&\q =6Sp9gkT|YVR| g{|Sj&V)=ӮL_Sx6aS{(š1#LiY84$ˑes(_1Syg#\r\nB)FWaJ\ȮmV- Ɵ`Ϭ:tuUCȆ>|{4=I{yt /k IOkv)5y9vn"S ڝ/N$=p?#,uIexwş VB70J1Õ]Eky|k':ٷ91Ңd\VB!Z,Nu|DAx W٫.oCf>]r-NElQZ`\b7Е(P1DFS)ew6aVi1M,?a~:Ϫ2i|NzLu0ĝGIu3k\$(>*4^LԝoM$w+pϺtWY+x҃t?}B~;/`cZ)T:8k/2.~O`VG*^JՐjpRҜʫo#X2mL (Q=:^\A`M}6W1 {(fh3W2;ݾ~"cSБxǪIb"iǬ!y-|G$;~Uɿ%y ZvJ!y^'Nzf!4 D{UEGP=Yˡ8k"sʇ*`ͼQttyNT!Tj (n+8uyJ=QEF|. o۩IiyżW 8*&CGwR}2aUU{6g{eK,H" : agr7:SBܒTb1LM~ڢ*h$gC?bKOL>S$n9|f2RXמ )ߤ^}d|4mΰ,8;60Q<ٚ|}P/nJ^lPU^oi~,lx٨ė(""jpdyH\t[ie4xNM*{ $07gL+tMrhn8 B+S&1=]98!.Qb8D}%*q4muj~CM[: <2O4mz{/dqP6!s >Nnfn4 ١"oHP'.0sXGj@Y6{u<2̓l2fѬF"rOa:Otnǚ]"ql&LZ/uB;OPOܝAN+< Z: \e榕SwP{]N68i27΋R}5Ǜ!襲WIq :FCrųڔHu93q)ԸQ gјЪ5ķZldnyH*ĐϹ /4g1XZXaY*y B~a3n@VC+>٢*.S0xTDC<ז-53h MTbe N0Nn2)7l:Ac5ӡ#Hpќ}i%/Zx$R)"ڮ'*8̓.4 2ly~zb̄-(ʏN{v tp} b_(e7N䗝5|*0߅U*1[0VVhUW/F\{Bb0p Pu]jIHX@bjCJ,y4)׌IjQtjP[[خj^m@Tgu; ^ rEIgL[%&oH&%`i[zulpV+w+80 }tuH7o7בO ڨXZ-IJܞFi ,O/~{)ˍB6=&U! Ė"f‘C^Z0Ee%J=;^rfY+ޡ})&D.&sY&QrT-F-V3`iBsfK"?:9AH7LR(XMn:E!zHhxFLw7k|p(ڰX`Z+Leؠ;K:*&) -6FF6tW%MDεXѣ;(o&+X~4mӀ%jRCuC];">,sxx5A@x4RQQ`ɏq&CGፂ}EU7va#xQO=B'}4X鬮5gM.+:x.xL-1cB$Gy^ :L!"sZ{i4 Z)Jի `F㎊,xjqM[`Ȃe„,džw7,*H2&5|̋]0&A>H'fvwG9l''Apyф/?hFi%Jaf3. ӘYHղ^6ðizri9ILXdj /B&;ܞwS 8 $b SVSBBY ],ZcJ# MYg,\aVeVkL+/lJʗH/2Z?eXs+I*p3Vo4ʷDz*E7I z*w ў7pԛ{`pn^ꏂOÃ9Vx^Y 1tʸnW_|fsxܡ,rY2| =Xp s exǴǖƑU9su:os r@#VSߪw޾s6>~wˇ„cXLw+ U: h)v*l߫܋%=򞈳 r FӔ؞O\'uq}>n=ܾlu3nf$n\[L $ .q>bNA "!a2  7 WgX+OU5#y~dL,&HlEit?] LlG7J'FY d2 )5Yrb{CdY4Txl"|o*)yN|9Z!äѩ fNJ]) #%D:է3#f; E<$v L@%7PީcgVtq-bcnwnH&2W#xmtȦ*0^/CԻ{6]!]Ǡqw9 v#@GКG8:; d%TxFQ{”ٗY%BtNKtc>VӰqOlHuY 4g]]G]y j/#9hu(h@DdC4rX/0s J0dz)8e,嶨oy9Ħ ;lM VR#HqaOW\bW8No71iy>n^ rK j6G\\5$7r)%3<4.\S@t8'm+ A++.AVg)Bj4JwTa",,WQH^8N>|dKD,hm>UmC9f S Z:6fͤ&> ^Yb~g~R/$vPՁWD Llpf- MSzXW~tOa"ٟ@a"YoS_ߺ ;s% l? +<:Tt9;}@۲w`qjYod=UmqM8ͮCXm"TFLq2a*W=͐5HzMblA`u?o\%'Tݠq k{* jG 䚞(TߖgW%% W6˄y{b ?ǂ&:p,0U`IqlS}RJEOEB¼#!uvc2jVi)TVP dn6ȕ'onnЖ W w9 Q[,Pyd\X<|=D/'y@h%vFZ2Zp9Q|sccH#߂vbׂJ"etk->Od/)ͷ6U~zeHWaM-1TqOb Lym=pw&E ).?*FЮ!_Ca̪@<)@]bX`5Âw7Û#toD|c]&Nb }Sί];[) :ƒb0_U+ꗓojroqF o"w|RYyO"DQDS[ܕs[8'AvѤ߄O̢dTSP;FӁX.EK9uؔ^GehE%?~N5 Y>?W !ZT,oΖKVoٹ5dӮ𥁜tYZ֧8̝X*G ]IKpOSIj}@ t\HG8x-M #BEJ3W _rag+U|n5NޜO^tZ ,vrե码YU]Ry =17#n hP|noT*uㄎ0I]]K8W-4.]] $Pdؘ;sjd0tRh!)8ovƧriv[@>GN}ĭ]pѤ?#_9[g~-ڞ!.}QiQnkLη '֩Q|ogAݒ20ݦ&cNnvҸMݙV+mP˲Aq+$]XG;uBB0sgR_ZvdKR"xd&h}Z_J2Hv,lvw&NNkuuvk" x Q'>\@f 'blNBN 0zxZis/$jK}^*aahǿ:f|,F:ͻ+kb3|I8SJ٣so%#F@ Jy@,CJzCH0cdD~&*wR_de p+sHã\[8~XNc*XV%Ic[ s jWIhm>ݡJѣОFoA3(q"W`)4.~*n/9۽=R{0p>Wpc(LZ5[aP@$>ɩ AdsHQ>w NjǕt\NRd`BZ*> ko}o OHڅJFϯ.AH{n8( 4rZ`d~7[`ǚ4fJM G,:\{-YqȒ`XNڅ.xPL <ͻ [+0f| !M O< -Ljt .-*yEپ"I*߻vv}PW"#٥e)BD6缆Ph/bԧ :Ќ߁7\1ynE 7\YjFM?HghMZeKSb7< r%GJA<?NbVmj@sgS$SHېQq4ۢ~u8D|S0JfJK(]lW齌.|c. `+N&#+bNo,u!<&(p)*ԞC{qLuqMI#B:,V2z$M-| 94.Ն1*ҬQ,&a`;Q4k ߦ@אś^( +3:W"([ڸe7`{ >]>-Lh }ADŽt/ҭi3WA_^ c\EX-P5Τ+ND~Gs"-y0цH;Bگ !a<"jc';E ɳr *BF҃)yOZ BՕ $ųCٲAL0T<)}{I )o7#N3bǮO<țI3:p9 uSF$W E'zpxj딍_Ц2?XPc/#סK y(p[e9PEpV$pM^b|BQr1@{m?*O[~id8?!gDl1{]v8ynx`/x&p9b"2bRC Wl"BPށF kmS|zXUvkᙤ˸Ƒ)KqrC@<أfʾ-3.R^bt@1j1>B( o44I+.VsF%hPZ7(ۘi-asTQwI?0ɽI|{8׺'I/-bo#NI=Fe]Yc`|կ:PV. dWpXS`#";h8!߻;)` ܪQᘴ8_iq%W͟Z0JF2,!#! ̱z}9Ef\wu6]u~=_>2vk%XmXL(ኡ8 ϨdG0 =4mv OA+ 5zhVOE&(h%#BGOu::V}>%9 p?!8󺛸+R*:FP_5ܹt7~%KL]V_2Y9Dt2}Ĕ8k~d:ӡĞAueiC>e1NtBD3U+p4+5u26`PQemURuXNeΌ4j EN“N< &Z.(:lv?1I{QaR#tE#q لqRe>s|'!3!tޭ`:g$J ;SedG$im]3) 1rX: a ָ29JE@ἀ [@NRcZ1VGXhm>J|$gkQ j P)Tq- O5N j}F=nPH.WxQ)]xN"yUEJy4I-8*HG0P=̐su(Bbk!v(gx"'xz&UæBO%${W8b{ y2Eǂn4|ad!`-s=⩲H߰:سnK_> l$v%a6J830dgLKufL8J_~BI%;d|(<8җ~--WzZվ?;C_po|oJPfnizJdcfoEI\kw_OAHU@èU%N;g?-\fIgÞ~=UP\Ħ9berkS&9E mqгTV?RN [V֮{6o,hibY+ z-[٭عMpDaMӉPx̝9 r): h/M3L(^hC VIwcPxuЖ/D^P7Xq-GaKJn/(W-޿<2Hq>%e_X"ΗL5ףթ*%7zq^v νѕ=@VO5 7JzEv5X>}?my "%/y۬zE$,Fa4駴*.5zTV/v5 #-O$W-$FN jO(֌eU~g5U84ȝU_k,330AiJ{QS.4-=:Źg=I7'{2Z:=ߦ:̫ǚZC^v# )=hZL3}k΅)vyt8MjƨYQ&&Ju6Eczm72!0[x%!C< lZ̛kZ7tm񓃅wIyMвj]}`_iT@(L[8T! u"(}q -1)Mcu.c x{6 vZX5DX+FS#2^`9]2vd>Ƶ`^lصI!ǗrT]XOO/9Nf_ ^'ѧt:CM^z\Y;E:>д$e{*"2cJ9SP6L{&O_?/FՙƑՒiqV*rkU֝͏=,sZo6Cs/!vLC](MJ>3*K \08E0+nʊ[9˥}!,\PDڀ/퀐n%A6iOʵHثSe2'-2 1,-pU G|vsi^sbl}}Y)e¢BY=MڿacGLDȗX3iJe1ĠrH$^_t`:w}A܀4BPtvjͻTy3k j VC8?2'uK^W+/BR3>h0uF]3Q8( bK2m|fYju Vu^(TH(@l6zOi6B-ĽՂWg5S cW* NMVhuk+-?#"6 D+;X]鿓l߬=XM6;3Hg*h!NE␆QjWJc _d}$wضϝ`D!<*O- ;zC&x!r V+З(e8 \ʂ yЯ Ka\(t좱k *B(NKI`tD ]=qxbC.-FhQf~ScXBi"?ᒍDGu66C>ǒhɘg@:&Rpf 5!+a0(z 'XƢ&l\1ybf;tܗHRn,OIe&##@HǮ9mIbOTZ]`V|Mdsʆ5 CSHȦ~x4LȀV 9PlKņ( WG`_ ]vԞT.a.msQCMAi3qFC&.Ɩ4-bVJCf =ECD8WܟdpW9y`;hn;;AoT(L,шC̅#r`N=z<@eRr).{~Wq-Uci&!eţeZ-]h8.LR(uZ nxcVm͍C>[r L,%Iև,eŬ[, 9}a8ԏp*RCMާ#rW lFڎ6j/醛wH?駁mFyǟ$ȹ4w!㓛9ʚI L#2wMF='SIT;'VOy`g?@»0F0@x["dטlW.YLS"js!Gw[1{Ib qxa߷>`9kx{Fצ`H!C~o絛(qϸ+rJPB?fF٤&H.z?]*$~'JRxų99[^nG˜٩RHwE_]XTIF{4 q6nY'3~>g5x5;>RE$)]XGO<O/M: /S~)jap$!CUYd6 ͘}&$ʮWUVHQZz Y;SUAKc;$оn*@<7cR/ JeVY;wLw5 3<;bE ( >5 E|S皫0™YcBnZG1OQ?[txR.v:-hL >!Lpb[ Ȼ푇{y[09u}{x6G-6#7PXAwCbI\ M/dЫS D!;Aj#%8K;cEK},daK/eG4s+fz<,ZiފZ;PBYF3C9pak>vI/\*-% 2?fg#5oίO/D7>>Bk5lqêb6a~!QtzK]ca+1(7}?Ia0G|Z+9*#}gL}A K&9ݔfYW a$ Ag=TNf/։ԁ\;R"sZT +("eɇ=LƐ_U8+ocIy?0ty^Zm7%_Nǣy[.E ec|3rB Jl7 gIɮŸ!Q< +zwZ:Z2/sb}&BR?Ӵ_[F v\E 5&ǔ!y~ "aKڽ.L!B2tH(-k+-T{Q@ʫإ)/:/t #4OYHpe;ȺԿɳ&2Q쮳"r³FR5 Z nyh'MXLM2'>4xPV$pBC?5~i/hlU#(Te}$Ⱥa!%#__cW;χTz NDH=TdcQcNA:?c6f%/cbOaNxcZHU uZ`hnb,R*Z:u qWFl*UXMLe\~M%U3f" &\ Hfڄ?l[̂H#J12٤HPO6agXgS΄#~$uȻM5L/F4lթ%Qg/fa` .µìx>Mj)bϧ X]ݫJ]tgb)"j8MuC;DJn1m)-v7-bkiy!֓ @݈9$jo_;H,2vsg:I(o 0Řĭstڤ 8!&"7I{9v` ^\ NAF2Cd\[5ف~ {-f;\I`g09I [~\8kyL}G;s1P×g׏BsjlD2Tŭ:~*x$Bޓh5~aqz~.%vi<Ԃ>Fڧ[x˞hҁ˓v ?4;i%AE(}r 63ޥum )A[/8{~TSбXMlʏ7|Cs==AVYg6<E$~<^ġfPjedPHI>Eoǜ5?N*M If{ :BWwt~C'3"2՗ h-658O~4#me lN &};ڨnV'h D\;JcWuiQ? UdV %lILHifP K FFbkm~0 %ׇ0?wtlE#.A 'ocSmnmـL(D>4;ܤFa]΍n݃@0*,v먨:{*P'+'qDuG xyZsb]2f,I[jKoKs0i7bz@*Kub5%eIWK{y n%V 0eLc}Xmjv~>f]᳣ m' [Wф%]+__P@u'kd3ɀ?6 mo?wI>"۪ߧ눖ۭJ˨K.p( JpmJ?Z3[ &Qk`u1y7PHj0>`rs%Qlq SX>L^ &-ag~pU>f )p&pQM58Sp+Ѕn#Wj펙u^ђ|JRq2kALcTAKv;a.Ez)S,u^"k8pP8Ȣh6RCV.e:GhjaíF~{S(].wO`P`=1? q^-Ndql=P^Ib>6jt# h5(*j.뎉S: 9XEu;P/mUOcAṯ6\)ތ6[ԣ)my;# J.rR@o@p5| @Θصv0Xk9zg:׾۽6k=C/lbcUMyK(ȜgU#MuYxs gDp40KR -,4 OYD!?f?՞R&0іcH=r\}if)bQCH|?a y}̵y\~B{Ups  seZ5l7E1EHn:}ovs !u7eg̚D(a4/FС8 z!Z+Mjpၻ 1teWCg*&{.r) ѭ\L?#bNğx` Ӄ;Ps:F9ȫ/r )FQ}um5: zpW/;|O~<ꦴ)N ^2;*mDv!jk>Y+uY^sV8 !Èꑟ\A7 -WHfWJG#6\郓Ltwt4Bo&-W$;TU=4ܘXMIis$v}%h *YeLw%Px,ctH߿xz,d_pA!"N0 Vo˃G &; *kem4m9ma=uр9=*$+:YdWokbGU Qva` ,G.Rz^I_A<`nn 7 wQҀpyqf۱B>1l$ƕ,[' Fh EfAXȅB-'VU(d`x̞)0|~BJlQqcTSW1 ugމ0gZ? #);۲de٘nC1:Op@UD`$MɉUO2"jR֒p;(Ny)`}AT GfXq8c:qqHǹ8=b$l 7T1FSX8LjY{3BS?6ZΫoIa{ TSI6Ĩ] BͰ@;Q㖲os#h j'ۺqo[z©dj %B.7 h#)6@Scf$n@T}Z80oᣌ_::bw)Wu.9TPnnCufU-DASO [ʉLw1 `bKlt,4esoӓX\Ǹ\y0wͬ0٥Ku!z'ɗ$6Z#=̂20fc A";_PZt3ZGu#͂Όzw- 넋/^\2:GaM RH#F.k@J-y%Q'u4hHN\ÆUj3A_ȄМO?|0_ʫGo,w26'3~el1t& >!iQr0*}S_B4> Y>V<J=-OAcd=S8nGFiLE8U=zeGOPW|tvǦXͰ=SIjn"e0U0CV#Ud[W]5 j5"2A5@kFɧL]0{vN3PkMPz ,뉶EK1UdY.H薄*@1[m8ӨvM+j¦Sj58/t?nxҁ@*6B=(~^wa0Yv!O"#2>h44S{6NM`i.:1iW/ Z.~9r9F(ށ MH2AoP <2=IbR2QhYH+^O_<.$*^=B+p`Ds*ڴB- ӄ1eg|@=F&BSd%Obk&LrbhfH(_IsMH"$ "-hH фg< mU} -~MjL-6Zc"AV(;0D7MC#0Jf<_Xck!t-_Cr=,qu>K P{<]e;aWR/+Oyz'6>^ET-WűxRW)xeP[4 1/"5w,o|{i&?U:>ؔ/h:0rl/:{Ӎ{ӥ(&{> TfZOΌƧUw!9IuY! #1.%/;8Mҏ+&2fC`1 g71IspZ4tX5Ǒ`O옍S I/ٚZf3s.gt>irND]civIc[9?> Vgץ̈hX +y(m[LE0EKTBa(~ xɹu LVR:JS3,j7QEči{ ӂ?76vރCj6 i?w+]D৖ٺ!+x5b*sX}\hNaejXSΝ)/ڒ?ȓpH+ Wx(v_`,0Kmq,XJ~=hZ }(< &.>9i'Hʻr[ב9sI<ѲN.*qw+J5Vk Y4Y,t\9'%4{7 ~˙Z}\Y~U4Eyp˜i~PAt-4[ٿ9uQF}>8|b;mфeęx0O  ^]>6Ƅڽ5me ݗH&4i{hfwM#o8 SZ*r&:g'н:PrU pbGv/BW&*LM3.UF/os3m6kFg5Z$_ܠ6^Z@Nϔ LZͧO2T`HpC\B ufs<$x2n65h;XP')I8RZq1e m 8IMvT9šՋc|ef'^ڵ.<#?ҚSN?cɔ| jg"E_j?0M惸n1 jy9|a)&e$)u}kn׳1pxmhu,5E}o,ծh(&XN:w#@aX޲÷5& zZ\5]ffv@,`v7*b."Pp?UPШ H@:"s @A3fէ'uՖFI/d$֥JpsgAq7{C4I\&aoCsh}JĸoviiJPy؅않u}}nY]+Ð9RIdj Vv9YR:ܱD`mXoaѷz֚l Uq٦^6Q3edFQWg371Ty UX(,TtĴ(*5R?+k &";e^yA6zIF g 2#KEN0H&Iu0V^FA<%O }#<ɮ03G$W]*i;Qf< [Dz ձ66dEx|f}F"3Wj%g.q :O{m71}+_DKa?wԚt6I %#'=~BYtEaR_K&S\X &i4.a6fRL aos,Q8f:+zM0fnR].|~\CQMJ-\UZ=PjapG\^cZ0hG]X}T04m~oQǰ"iqs'I[p=T#\ޟ>sv<3TiJ6KzOGwAB@ Zld+<R{B ݭ}3KAͬ7WuzԭJ2ziAqm"4MiȩkD5!œՠ6"^Ž_45+R9;˨sBGB\S">0?qu*kNv-}q)T |kN6 λlfz9(f`XE$MdbOʶ G,?~8rLZwT b\H (<棅$CΨ[9 k)f z'۰>0t+<A*.AmeQ:&Ѥ\` ( F6P2#Xk;*$q?5AEj_cJbSG+iB Gt'^?.r/PYqT;3Kوu^HL)Ϙ֩Z~!˜atن퉒۔kH)s-R:R.mm*+Bg$ JH)]O ~En+ù*'#}hKHNCrEaZHݙ=3NpF XT1 R_+^(]O!Si_h.JT2"@L>Է{ȞPLYisy4x8BX<ռ7-EmJ?bP +o,[=ku$LkJ4vEWm:UjwZ=Xy^#!z^>x{3DMD65M$30S-`QAˉ aO`ӳȶYN?œh:$\jjBTFӎ!)ڿs~Bq8K:왙bmqrd%كkniYcoFOްVHM*ڞ\L59,54H`ٯ"PyUOyugGHxMDF/po0IžT.#='VF qq8zƨ!*X' 2 }33qsOJOWĆi)D@jOl2(ƉP|"/fW|^%m$qvFXLO3ϻo&a.s52-7*o5K^7J/Mm[?~% مeſ T|!+0`&r\'8s۪^#Jh+KҚo_VnzJiIIf]%OۦWc^niIv@:NAPQ'] "*>"s8|I.ܔQA /+!l_ 0N+aft:'dweDˌ0nna_(kN*m pa<9" VpW7J8,o~@}2~\- Tzr gkhB!N,s3jcq׿MCfBP_[PھcWg..m"˖L&*<-YIdx׈dc[V? Ψ_jlbۅSQc%s5ʚL /ζq^ߝiS`]hz!'n 5ۘU$ŵ«ߧcn &35S "hW)ؾ'b9n˷No:gM+@tU|23++/I )v:t&l5`فlpw!9tے *jU?u8TPY9;_%#GeE+bx tbITbe>lUӸmu٪7+8 pp\*4ݱ."Ev?U͠HrڰS+z;_`hrί$4L/Czr*#MkLlj?vҶUH-8\ s RH r7P4֨0#ˡul# uAoNL 2 W_|B)=äa]7J',(q.YS Cf⚷:qg , D99%u,C5Y]ºYlߕ lYL]74l#3|3Ӎ|Oe*S5ZeyŮ߭V4#4!D3 L*.5eUǓItظA&o㶜3.D[]#Û]wyI2 R+6K^UeSo۽Z CD;>\"+")9ARpa${MDOb\L$0EM䴼A9+Yr~6/.ņpVVqh#q.x:s@8#-vD#VaC" R'xa|7p@JZ O&s08jk닺%0͐^Ț[yFG NWų s ۢL?,8D$~Hq y;,ڱ UO$WKi{g ,yڙR40d@ӢX(œWBFF ^ЈƖkufynA1=|q̔u@*~}oōڌskHfZ:-lavȃE+o][~qQnûڨC<20Y sfYڟU@#OAu)"xa#j1l@b5j4O.ATP& GJ 8ڠT5hPN|m^} ֭RQɘ.{bq R=GngI1l*@ذwDѩl [%,elك;+Mэ, K?C}gJU * O j\n?jb5F#ޖDHYŅ!HFKmcx6ш^vgxE\sCr 5?!:"Y0kN_s B~ B.5B(2_w#gE nY ,SW"p8LP Ek nc~UN;@]L` PV-3©)SQAQh}6)S8dq5# k:􌊶TnŚ)y6uBP;Q1ihx|[y V.u5Ĭ7?ܺܟERz>t^%lC|z:R{&:z;Bɯ<"B[VS>a`ܴyz:^CP (B4Arcwe>ohTŸDĸz^z+* iۼ7XǬ:%jh&Gg={gʽsj;fZDx/%0bnra3[^1^\Q3xβFV8ZY9¥2|#HTR SdB[F.P6L;"1A^iS@ș ;9,jWjs1i3uWo9Yÿ o]eƎ r$jDZJDvt^Im{DA2nxHh%:fO![3]'uu)ގAg>*#5[qOY}}IBG0z;1pТSC:[:E8нp_%-c_4m_ߴulKT+w/? ~tBO YNJ`G[>V)kgՉ[!mو}NWw[ϵ#m]AR =YVԨ!\>*p3h<@g*Vᄒ9)-$2v.Krqj]uY,\nC"^[/,&2.^0q{[04 O Wo]䉩{a<<&u˪/>ydTJ~@K w3b+sf:h`ōWcbcCO>%Mb^]aCnʘ-Цڦ, +B~o" S1iPVs(Vɫ$u#\3ߦ{QE_sab_K\In5%ZB\"yDq45QO88DR Žob} :M s/M&UH|"cxGJ5l]H}6'1BfD=\.w`O{9ұK)d:f8/f4 -ߌYY7@orqKU@Dazf9) tE(â"шe m?nCAH 0e#ESbQ-@5 l=WŮx'\nskQ];E?!+ͮk8H6ðgݫtj}:i|:ZA7ÇfUb(w1E[狨҉T*Nߚ#n l}Jf]+LS<DR3y߽$8 =j/]qĝ"k7~и){j󴃶^(VެtŬNv?aa岆yq;*fOSJżाk(sMtkYIS[ÅDv~f?&)1?o[ zx6K|y]5N+ΙX|Qt)/VC=#^^xynYQHvQQ0ڜwe<.]Rl+37yN a8dLC;ȒO@L4==j?c<-D[&T(CQ <|ƛ M[ F/h65RAGz]Ak";ƒyĻ؊F uOG"l@m?.UX|65ss㘄yKL vBj3*HTJ!VpR:6BY~ǫuB敊Гpީj*rc}HfGO;"gt]Z:{NTbNd&u:M)vItԏ_mBfb,]4Qݞk|hjΣ7~uu+&-EHwCQg"BqLң&,Iү$ttؾHZ]:E,U7ڊ` PV-\Ԍ4QÁ[_͋Q*]MYOw9m ] 첤T%dzH'^ uf>m[n~ jbsY|"J$X"lJN6$>Mxר+y N +kxlL U @M?"w([n \r`W;ӢX T c N:s]m9W376} X-cRvPM*9Ҷ!m%<(B* !ͧAfWZ^QcBW|4zI5K?hkQp zV=|޴|Bu;-Kxgi# F~ۻeY1*̻.㩜GD̀7\בL靚6;Q[f > >ކpDJxeyYŇ[ghts#/>T/LVN{WӅ߆$2TZ^ v#ɫߛj<qOMD$qb0{D`-z Cʲme,uLsmv=ZЫsjix򤸽ei l]4ٸ)y`籡ld<dN|3i720{$o01u\5=k<Բ(]u<똃E C4J, JZo[FhJ[GL Pt׵N 8Rx\ݧ~}+fW#0/%g] +xx0%1T:%@dX=#e FnY!~`;š*thaȟf?>8?6"ST”A zR 44e#m;JfҶߦF;(!ɪXykc to2Đ%]f맍O_)kK߳-giрe2,N[^n& !@9atp2D m ~TКB#&ts._ /[\nwQх(7o:3]|`ih`ޚ,\1WqU:7lp}\/c~FQ( ⼺P($=tU؍Np{!H' ֝"lΌ2d8'(UN$~2e$A? D9Dh[(Dץ$PJò#|\--i2tyS-,HcR,mXոq#N(ٴ ԴW@+Bl  |$/^~z~!>O nAz$EH#ӓLpW9MҢ+i܇}@*&%ƐKiD<}&aY ZsS "諀ki 5ݘw.%}VxMu#=l} "|VZ H~sרYc)M @ )«OIwVQ]^Cp&y{΃s55HmVA)h:WxOAx3!r2l<2@{d`Tn9?0'Ym?m`3 nѲJ#" \桍 ~E̘WtXњlzi6HTf=zޕxj'#.7o)%Tc6|&SLj.)7B>Y7!D&1/QI<|ikP0] dӐk/l&j$sula]!Ld-5-̶*ʼ=K uI6JN= Xn>{]譠Pv MJiV㌨EjLL ZONK`Җ_qf0 MP1ѥ DpGI!?o;d U 2p f ܑWjak6ϨD3Ub.+*I>025I,+*4^!c,ք)CaRX/] * hf" X3G?J|[e `!VUbBB, lH2vc\sc[s)87gӈWqg/q }PcDS׊ҥB/Xwi9;gR?=cYu#' g`Ne 7y Rҏ\  ]tiQd) C=bpy.={ qHC`~lK^6g;|Lk"u(#=f*ؑV Z{q67G<>Eo nH5dlj$Xcfc30 A;짉wDNU84lb~+xÆY4n1~ǻ8mD$pS6&]J֧ȂKaR`(]T\fUv6~y@eH>%(<e^$@yܽްT%s7nRC!r zl^c~ÑZ0e(rapiܯW*e_($"l[ J]tcwfMWgپuobwo6~昵 kw'.y&eSJTFfn}Z ݠx֤8PN̥AW)* ye5zjr4c*7dQ=p^uF c(sfðUǷ UX@f{pfP٨E2F5 VjwnLC ?pi%m#_}MY< rcDc-G E7ra&y\oR)Zq3G{LmMva`Qg,6̧fg^@⪦aD.s*n6 z0$3m-Aa4.+|awIPK=A~5뒛v8z<;.:n( I'}dE)SaŞxH@-NJg?}ukIw=XX S-<M^!H&,[ àm2SM}w4;_%9pq'HZb<}vJ`S׼%MXzNJn?}USGkcE>s>ՍQ%O(RH; K"rxW#Vvq} :J`h5TUdo 9$1=YC<%=R`4rTA`s V?kϑ/hKkA<CC mX1rn#^饁0k6mDEL(eWWqd7iS<@nAdgm8nfɞHV `T0YDIo+$Q98F}e&aEf?޿jwi 7+wT)$N VGZ9]LY%Mtyj`_{y6x;Jpmv${x{u@)D+nj#7Y"F b_[gPǖF& QBsRzgkUߗB^m5zG(E;MqE4z^1Φ[ʜzWC|D_s\e'`΢u\61?^AMBצ9A|_-솂5 f@3r@>j3&s4 4>/3L-*R۹VRT Z^K0[9K;sj\ /I::9 Yךq#'BbCTI}*N9]Vt74,Z>=w}1 Bdn+ aIWlAO\ɦ }E/k𷢣'KE9irOhM:~ivJT}$&+AeGކWWl՟^ Qŀzw1=FA9Z1@{Ee`BAZFpgP%dLsݶ=hA'&lHkZ(7yo `1wp%G6x櫩}0eh:nv>zV`o6SQs'\̶ͅ\@IKooP)n#rkDMs"ذоʑͩpV^;vm5ERzy%&Kcn]H\7ڧsCmWHg3VGmcX08U$@Y* F$u:SY9m3c8sġ_sB1Aal榄 ֐B`*MFYPhiPGI tnp : 0s}=ăjܫPt U[oDɶWy~!O@£q&ڎQ6ۘmdΧq%C~%x~e\zfS1X;D ~>a]z͑iH|VCȟ kZƥ#OQmr8G.H1]-%w"m;NhiiexS:., {M/8ZVX9{ 42MR`?ϙUp*RVzGvҐk^zV@77r<=kb܅N $?U[sa:<1gE"qkpV]{F@ [7qȧM!6'_eLJAJYuELq0qCx->$l6$?L&\cG@AT@/Ǟ6ﷱنoCfxT[΅t|DE_*txbPM8jz} &e&nq@Yz(>x8e+j?UD5ř,6)fN@u"ϸd3T |1$V,K :<v5%?smKl 7P#<ԑb|'~O1rLa+5ǼWZI5oi~c2} cI]3Sis9[U*]r#pj%LjZaʯGgN:=Pza*K"-r'p <>a1SJT#ݞXcvwa5$ɍ.KNo$m+9ƦHcm?e 4UW3ednl'ͨ9(.HJ^p 3` _ v%Y+N%{-t qR ;CGҮ%i LkyHm%H<gm-d[G{υRaR EȌ*ǧNi,0m(3L O۩Ϥk"r#SlQ/{b{{00T1Whʪ/L}2ˋ~zՊor^>{3PvL=σ%X{7T:Lp!(Igm5i՝a "BWKK~˿h|Z9+\xnт~cI.l wsٚb:/ Mm}R18g8HppBV% װCꚣykW2V&i9 ~nYD,~OWz,Q?GcxU]vHj o#xl6Zډ/((\?2\( Fi>1ֺRW+2, eZhWMyUQ.7?~d'{uGGUG)t݁Nl{Y9P<6v9xh%`zY .ԥق> lMt_rҙ$)%Ƭy20b(L\Ա;hQ?VE@AwݭB嚳邔Y1p[ׄyo*bhH57WV~CbbѾN1~w5< מ픰|{ƲIWmde͘Y>U^׮k*eL97uXA7:ĻU5(Qu/F}R}5WPه,WD-eqdnu[EbSO IJZ(&\J%R%~ CJ(55+[EP@]_1 UʢƱA*jVL=)e.?dc6WF>jD]NDgsO5̞xOIևJdĜh%\ipSb:eE,$@m-PE7<^!Ъ\zɄ&z>Am3 DOUx1Xlj0͸. 6(j~Ju+CP'~8/.(6tll9LrIdlםsA*hBN0RnB 3#}Ѥ*\BwA$m hGY>iI{u D*#U}qܸs-?hzJ[7eҠƧ1)OI ٲ}EOrSP:H2yd)"˹ 6|}5IM8$0snl8 EA-#Lkoe2cޯww7n1Ù? I8aP`g@LNjj({JRѼl~4K?YfTQ=?ʖ0s(USq 7x=yVtΒ\Gu8:Ff7R@&eiNr˶!9 e޴=󐭨v F_7LJCjy,x3e9 ޷,Wӡ5,GRs@c&Lh|^%*dCD\L 3;lX7"B+pPD0>{Y2rZh" OyZRsd[n kg CKYͮB Mڰ 8\5PcACƮp{4Ak|1.wrPRR\"u4wYh`lsLg62]SFQ$1"z9\5sExٮ4>@(.+FȡX1ЭQƝn籅]KfVerv/dιUjX-^#mƍRJ, 6#XjdW%PJ'_>b胲RFV!j2cf@۱xu5|#FU-sC]- 3Qz"5g )N|؄gK,˹cʦB҉Bn5&'xGu6yq5?ґۀBkXNp0nl]_#JofcneV\i3=OF#ߢV! xg:ϩ"**N?RI9Ȇoa:_QFM &yhZ`*+YK1[U,( CU/3hE%RqZʪRqV qȨ&f½w?7 D4iVm?0iPp(~~!_ Us3*fe폐iSׁy7\zB&GT`j1H0 а mM\]r↕[|G=M^K+^Evs)1ð@L8beM +>DY CľZEThNmЬ!dȉ~u 57}=bZҲ^EZVϥ/z`cV ̗ւX>Gײb -#\8~) $*\n6M}.(' <LDwL]6k^n<29 @U?ST=Q|\ j0si#Fqt\zco)8섘iaK22<=/sU. 3O7v1ն%^R`m 9|v e-1yR8W.r!jpaG P3UBFl!֭Ŕ.J12_]? 5^n݅w qшU>"degޢES8/<q#l9?EW?Yao{v$$@ ȌrtkfH(rSJ73fΜ`sޯ :NR-MJӋ! V5Gby>B?R4m-_!wNg$ ᕩ]c;-M#%aJ:{ܘ룙rW2)UVE| Cp$Va "肹#?N i󱻣e+hh6 CJ'hT|}sY[K>LG*qVYZF>(qdqA8F Se,DB0,ze*ڨw_%%IH*>\xVhtuu s 4Wi83Pڱh3jNv$6 ƥHݪvO-"#ȨH-(~,IM1 @S]"뇔u5SBa|btP.kԏn6Ƿ2FWɖwD%(N\ y7w9jԍ 7j€ys).Į惣 L)Pm*@tC 3:>a.G@h8[6Θؘ{zHHgXuYM} ޔ!Ye.+heSx5UQš> Mzæ0U-|0,P qAApDB0m%@#RyǦViޢm( [-\f*g 8\rǏ &6Ά5BNkX A]W<)X5Pq$ǸM;$!-kQC?gs4tb.bN?nÏU %#8NjKyˇS9!Ckr's};HZv9 ls?Nz(ːP߳;&F$Ѳ+R}}TF]gx<YVA}ѝnM9X[_uD/0dTٵo>#&c*/(DXv{'+.4_0 eTa+Nv/hcNi*H"sRW9EyeD3L@)Уa\m.h^|&NBN,+ V;objx=]m*T"?8ɦju!BU5&ÿpSh2Op $.ݺ.B͗v @A5jqMeջz8^?R0*Yg'Lwl|H@O1rPJf-]5˛z`l g>YL:+u:/3ZRU@Ne QB.蚤׏874T7!t PP$^8p4\Ȩg&VUv*'o|vL+{EVi6ԈOgGidjp%gи0,S-: ‘ l^Ƅj'L:D&Iq2Z!.nQ`ve.72=l-LM"YŞ/nD{=F,@Ev4$ /CN}̇GI`C*.א0c_2L]z^~+b]xf~J6vv@qcP4~k9ܔ".R'`z7lMI(?~/#ᤓV[g:q^S__:o8I qpg g:|9O~KPܓKS% ŗ<["ݖlul۱I%wGr:eHQꢓؔ,rm%Y^98ޕidЦ;PJ8oݏ00sy'!>,%2k{XN;.fuUr\T$🥒R֦1)ӹ6$SԷoظ5ϝ.',\dM3A41tv1]Z0W' vbPfG.)d .:詝i MyM DSF;{ܰQ9!&ȥ,%KÊ h'*cHZsQ6$rꐄYgXg#[7iUHl,-@G`Βv+5_;O B?q}_ 1sq=YV*o1$2\B?0_x&!6 EkHQIŝ:i;-W)"'݂,ՑtDR3m l׀(X2QqPhe>Y*=y3}\~%X#,(@-1[7w*4GtkX2Jű>G|0ZO 6*"T"@˛E10{$ɯFbg 4] 羽,]/aT.AVH&(s<{K`UpfӒVR0|>o9qx}4:=\?3fWc!85 7Yv[t_{Uc:>v ! g5YQ(Ha'˃zQpInfv& mWj*V^pyE9s%txw?#~WT!MKsWeXy4rx':Pn҈]+Mۼ 8hU ~?J!QC=x?:ԅj({ vKܩ{M{4Ϝ.6 sRW7Cfs'&7`\۶zab|tb."H?wŵpǘQ86P74qϴU?bGD^0Rp*աnXdl,+_Frux8E)Ni_AOL@2+&G O\$~}"k]>DSk،1(*#tH~gIE8~}|Vo])Ȱ/G;N̸\a5X_/a7-){ȺrY{7fwŖ@Up-okYϢ U46ge@{XJqguD1B2rMyqv :3(g&K1.dS9LD%3wtxl9nFpoRz~kBKaam9+Z`FfM-f9qJ{"#%TT,k\{NDo@=هIԴ_2`U8zu$w|Ã1"X-Lf;f;'7O`\u\<;FsqНZP mםvDGIS`@J|ɧB|m;00ψ[&#T+MߵzWD؊ ٗvIOj7Q:Ħ$,G&Bjgf؀ZL`1P"X6ar/S` Y? $[QSrEJ }*L SDudX'6X༎),{?!O7bNjV1\t7a/:& Z/хNjt8$zQ>.j ,gPrDF@GgP25+?yTLF/l 1~H??] Ö Z-F<DWx[qSǼdBA1X/{4%*kx`lhiN5(SzL8}6~h;5' >7/[VaƶeC ^J=PS0 mï0=;ՕR(Mb2I2WbFxhb[9s0! EʊX ӪhϞUs'>{Qo*TXR#ĝ|O%[PÍ@ʵ_1SXl~Wٽ&!:rpgeҒ h%:D%H515bL%w 7" B+@uŴ Clyi5f}إl1WgsZdSx2/L<;/{&˃b̪7'8`C_'}֞"j ?d{WVe}pmFY@nsdGI$`VJ'WA^hk;j%Ւaqhwn(tDy>É(BF7ij@6pbȿOW8 MT'VJL2cF=Dc;sAOrmc`w{3gSX!q7@W'ƭ[h4)Z(:2I? {k 8/Yd1po!Nڈ(TGkM_ߨb2 m3?/]Zv1zl%:μ>>ʤ=iʣ,-s;|3y(wYD40 za*RPv4.M?4"y@pu7CAfwUfFFט[5HCfu0ހOWn%ϹRԵ%"^UOLņ/t"lyF>Wmn@Jm -mtԜvŰq+B\J5(U4?a &8y _$MJdyO0Fe/akM۽E _7}gͫD8:'! 6Γ&!c"kafq-as3A%DXIffb#otvP x|vý)%A;#=7'EYvU'hoޠaTQI)z6z IhZ&d bmV,g ܚ2؀5hLwSsQ{JC;z[9F6F|#M$rwQRCΫѧVXi!qSmk;a?1#0 j[^n ȾL Csp Rr6~ 6mmT|FS_BӜ pH)kRܽ՚ w9L2dj8'#4$&0NL[Kv :I ҋ֢eqhv[+JJ $ۨb:2׀m;ԢW3'\BE/C(6 *QY_yjuk" /눚O!d*dq]&T.*^7xTüC.KWF: <{@~Z8B52K5[8 >D݌Dte$Ag^nzÝWX>ALy}&pY'Et5$IT7`ƒt@G{=KaŁ{LD2&O.72uv5|g9W=<G[Fŧo-w\2`׍θ |\JA'v/sɷ^N`_{Nj\ԝIz6Id%~:?qbLdz{vz-YݻP*Wz$ʟ9~~`f,62/6A9):eչªa6,T6Mm}ezg r Hz= \D օBApHt1 ko]^C +{ Ú.!"HPH{m{.iHG3 _oJjw⢺~] NBljX9Nmi}gD-sCExZAޞ);>xlf!ʟXD\A.G̖ޘDm){F,?LgJjuY$>j(f:[3ē uuFOxN*Dc~z+>i&"}Ee2E- MGʕ"@GzW԰eCn0^jy8 ,H6ss?; /$# mEx6ȭJ@1d e2F?2 Z޾w{6rW$dr4RL`J{'z>W1<nΝ6@ vvskW#cj޺f:iS5)c]0- %cNϱ=Qjiqbݘ5Cu(/U!}5dAJ)))oAFb[CaPp/:ٽ0On/\ غe٢wC] ].#siѠqSz#-LA=F!iP'!|hR ?t1;`+K =KM%M6#}lQr[ip6?رto05bH F׋3!BGLm~ `vؼ4*Ln!>X8&OEѸLNBT4c)@O+@P2%kg*29A.wQ$ӺY"4D`,U-%G/|1厙z3k}jלV SW2XBo>/;̹ީ6(#W UdZ]7X${9pTQ'`5+i.fީ3ȹ"@p:'Yf?35VGN LK 2iDtdCQ? :v0~T^ -g2U eS[+M&`,EzMa+DĸxAZK:~ItHr W•5y}9ty )&C[tIJvi#F δ lOjn>P"Ji:'nI0Ԝq@+EbdWNGR- mR4p*@:Bhf9#vzZh>8ص/WGoy4XU/ijt*7uƷ GSI! Ės_}2򏙣:*Sqo,lS;ic/כl#9y{j%Zu7SUT*I{<.Ld_7T[肫cErB 2|7I` y7Ρ-샫PBJJ{f':gi&6 p$g1kj] ^EK$}h=_CR܇GWI]i_+*%] &87%RB< ]:_Gs'HHa g ?,TXvIw.HhԖ/@߬nG vFJ4.dhT%kYʳ"RQPm6z.UOVq0o ӌ>2GMĤT}Rs3;'ԟ; $*9Nw 8ʆTHUÿ6,w8't}hc'b, A_CBtʃ|jǜܵTBSMz3e_p7ϮOL>pe+ͳ^XxSiY߄ս;|;o=.pݡ@+q38'ҝci@>uL$4$FBr#Tq_6۝ulj1l>B|sm/a\0l(*^&,O%qQ M`p?`^йʞ,Tѫ, q3ė}g E|b5WP^Dt 痈VScr7 C4Sؾ"qc積kxBe \䯊"Х?@=lQ8^+V^6gj9L VE'5Ӓr4lB'|tQ2n> d]k'kl7*q0~ces*;i&aWϘ X Oed 5e^lx{txs#iK"+l 8Mprs@6oJx'o0OPzk%@^o_5uYj6.,(t?*ujc+Nc\>ç6l R͌x`OPE'hp}㯼kR}Or7AEPݾ.D"h yCेX.<؟D1_yތwބE(2\S1Y]P٦hɟU? Q $LOD7# S-_`]ozބ{(.d~3l]lC g}c,Hؗ;SD@1ϒ󛀂`Q Sy۫#wO x3{].v%L}pڝ ]0|Ѻ"AN4O[Ai<#ӏ3}5D?# \|;LG-* Ov:WREh=,(EZy݃d\b#c,=5Y% '=SL/Ojz9˼n%r<|b>.(7bo|ꥠ?'. WVEh&#,?@Rl@P6,j9daJj&SȚ.[GG"]bIMZkv]/by5&kLU*=VTU̾g~CM|MM _*:0 Jz6]4bGb3N_O:чМmzM . rsX#zI@@⍞ xFhلvd&栔lBJO/HQ$$gMucDed'\tUb_;U MYb;X@4W3`$giAD(2!'\YO>X! t?=Iq ߭zlsk id3Ŵۯ}a yie%>j\% _%원( %i h>ƾy8QE;ti~_W<`ux/oC=P'#EJaD؃u;1;q/FJilt>Jdeho > ?i}{&TDntgJ'G乁RO@D*^dm>;>hu9& -õ%]^?SMĂ ::cbaaJ:9}Y d`;k c0LAT&5” Rlg0.E6'knL-8V︇ku& k~%[Dc\YʚqK=/֓=+UZYML[x2yœiKӬB2{7}Sߙ 3L_'^FWӨXQ8ak xIk ge;J8*v+x^+~¢>,l !{ĆcT&^Ѥ(к9h qAri* =-}Mu橎q@'_nvuG_EJ^{s"DiT`qL#Y*rXmel}~@Mh bΧqĥBtJT1۶m%}BG3 J`=Oxzcי4+XƂsȑ$%7 H 8Lk@*)؏&M0/8 F~_<%wqFA/]O8GC>(u ~?*~)*/iLq˾g~YY~=wִ_ nhdL+X40 V:]ڸ*ʗ^ A l97NMt9Sow/6ZPG);L,+I5;}0Y2W嶛TKְWǏ$Lm6]iܲ&'LKR*hP 7(1[[Rȕ8Z3`!A 4[`w ]`DDT&nmwQV8gAXAjW8>KmRoGbͽØH="ǵ@ !Y : lFMP+!Y 6A*ѕn{0֦hGL@ȡwƷ'LM_~W:d$M$ڵqjFiI`A o0} tCxƨߌEcDi</[G.YEvro@ʌbCfsMhL] *lIK*sKda$'0*H`㤻Ab]ڬDa=֊b)M-˅v^,#. Z|f_jF 4I;!F꓂3T[b}sk␬n@W KcسPea&df> HOufiU8Ԝ;P׈VpNMUHQp̮s~yNпw$4dYJcuÇ-%b6b0#.ksnCU^:}Ey? CD".zWlUԲ#L5}gk}paW;Q7EAiCp`pՠr ɋ&D<['{\;ҏw$r%!I滋?=EG;kb2KpjYˑ%|n oTA)WHc+R$鲻7TuA)h2lQO(C'u@ʨ7ɝN堁NG9@Wn >y9ezxJfTBE27>V)ʖ?.-dס:~IiS=;fmHbD-\ƽ)zRP7/\дST.ZjcYrT 8}:<;["z'?bP3l3vOp5IRLD .QH [bdޕt),!y8,jgFv1D+yn BVYʷY}s8"=%?}N&hԪʚu5h-nUՙ¶l`#?埻&hnA V9E)vN+nW)T݋K'N iD2]Luz߹,z/4E1궉Qjނd I;UBT coZ/Zdz߻_ݿa B2d D vcPX8o?>ץ qRLj +G J*NQV҂eϓn`e(WM^#2^@h6ٗq8n{q z-{J idHjBd\w sKAs~9xb_okQ!t.:2BNl]n"0C*3,n\h;!B#*J<~b^`[LgC1,S˯xA]OgT }Vw # ӨD˃@JA_ƙi?F 2veKUbY^-6|(тf+켷MVo2L SC4eES`<_{CEUߡiFp֜2&`zEoŇM/rYo.q~Һ D֟XKc;Cч^GNͅkcklUT+&k8ՙ@q+8؟2Gm@n6Ci_=W+-9EMiFzЈlO}\|?㵉u[+m|e.E:3ݧ;Vn#Ё ݡ9:MPP^m>pmF!RJp)>ţ`:Y 5j0R0~c"R5Pwbm)NIE/kpntPTbW/T6,L8ݟIwTo')'uリ;ߛUKx;okJc6B6[({Uf‰\λj`}!Ejr-)&Νn:C;bD{)t&/OKlq O"Lٍ䙨Ã$~t\prbey`ΈX!Z.o50q >@CZi\FxxK]`:)e-Fc3&td,K^ED&5Y \N[kFy"{{$b6Wn2`,Tz˵"+k V ߢ$ )fLEn]_)%I5ë}a?跰FZ?y%l%庫Zc+ {hT5un$M1sH8Hi܋V"}3" ?5ʁN&-y+K8؛YQW\!x(^~Y#FcEz/elNϑQL'UǙ$_ $!lIep"0H/4&+=I/ٙGP\9!>]ƑzY/{Lny6leHvq 9WqI{ifTy9(T8BcF 4N#B+ Ǯ3eX"fDà"HHb2H\%JG!ay<Iy4w`UsU{73t—@[`\'෢:*'m:PgbAЂM"rD y^1wSBwTvlJ8":/Z]J  o-џ_Loo&eVe 눇:_tk`s@K22 >`sFJR.{~aIkLZ>x'(* vbph8Nt˾C{͛Q7G$Φu6sy b53'0G+^]h^XlD{3%Uf(D 0n.)a ip< #Iv .}%ӌTc2sk PEn4i#hЂ7ck}#* -06Ƣ I^9ʡN+Bw swԇ'x)hCa,H<00KLD:lHV!++UmWzceK3O)msD BH[:`Xq3틘nURRz32@MH{[IW'k!$v~3NH2\D[CN02+)ŧNtGʻ=c" T:8U<;6iśB (' ߛwPX 5 |[X[zJb/ !^"4j<cm$ 5Id(M;d,0Yd(K!۽Utϥ0e7^~E 51񜉁|r"/u2[9 פ6xBX5К?À=T/ӋXϺqvUӬKv*VӹCd!n!jc װnp)L+iR|<UZ[+M7zM.y`h8ռ2 (υfʟJ.$ڽ' k|<5uIoPB녵PѢS|/d8[dm#,P=ADܸsV@'#U)!ק#`OQB a۵.&N>BXS "֑n9 :w@H/DgjBƻ(N6TP6k UcC ='kŃuSkFBVnU[FjV2>ػ1UfCtPGe/H;N3 𺵰7Iou3l)UEE2G"TDVڬA⽊X%C7MSJAV!|!zM Lx, D g@=ѢxjgFUE'=za Õ^{޲TEP2pn`HQ7Ϥ ˃9)h1L,h8Ly/Ev$haKЎG3p+elA mx;vq- X5uBzq垂|@@S`3;a gg \ަXIrJg奓5GH"*$9A!#^]aAtt|hSRm:rZE6Xr o8' VO>xE,t`+ &%@K0Mm<^AxkELU 8iC]lЊ] "yq$[-M⸻]݊;5.)xP,{?qa5)ߡo/Di;k%Ш 4MB55jK3bn KL, 4|79\u-Uw"ٔy,=Ai{w]zNmؿvoPQt`}MX0i%-12|F1+6Gk̂>>R_Uw=Hla?py |&X-6ẳf=6(ܢM1$z-`Ў42g*;$,+2 wULТ&̛@ Ok$z\Ah"S1,/YrZЎQnk|pٞ_Kf|QѩUJbn1i(HběMQ ku&m"ydm)mCK5u>v;V.q G=,LhYiR<ZtÖY>9osD?RIe <{x}d_]E(e҆ pXY>{Hԉe.H5{Q!,eHPkrt_rʶMP UUO#8B7Hޱڎf](e4)~E?$V(k-+_FjM;0a⦥}&dI@/ʐ_wF_ֿy䆮0 dXKM,1"jΌymL['M:ZPPGQR]%Hs7M BvW&X[y) 9pdi`rs7M\LjKZOxZ e -֮~*4P(Outg qIMatڲP QgȄ(VyL?T3Fpy)~[#@}J_rV/;! _+֐F ę{m&*4k9&k2-GYxᔬIc*e\/Y!\rj;H *@)!tHbWfb23">-KQQ_8Є䪤 oM|J3J|5O -oy{#vw6潳V*WBC)ONH- [CwI@2\Ԏ(Jgu{Fks)Ys7P+q %G'dz2:5セ5ݚ7cm;ZP.OmiR9BCv}&\bH G@+Rb{VLDrQ4 /iP҂JqY/T\715zn$%yکdrl5'h &փnhu9{%[(UZn7 kfm%oswrK̮gD$bIL/2m9/eƲ-ۗagљ z<݇Uf&$n} YhL T»kӹ͏jѨުrNJu (mWN[i{[m_UxZ}!K7ARFFIfDkC*(> ֳ i{u o(#]Q+|a?ԘN~p7_w1ڿ2`B\MI*\ةiiG xɠVS e7݉ƻjp CiB["L?Q&@2iEML±"J.dt6RRy] )vNp_?w/9iGN5:UɎZ_UK4!UuH[y#2uAa$qdM-ꟑ8mHImܙ-^MRwo,H'QL-#D [1m/). YVAwo$k8Nw\۷w?rn#@G8%C휞Rf"Y~&ıRweD? =|{ A:g#'v.3yNv !]ęEz !dza(r64e/;<8 SIU(ZKshB67 Z+E` g텽vrOVAS䀡U18/B.6ZqIEoq"M dPtgP>qx],od/gV[{:NI~ıQY R^};"+G+3E^Ơk!.@]hC!婽m+4M8ĜD&ߧ/i-AnǮ y%c,i78hO/LvO9<~zkK͹,Xw=d4zRZ{ J8L R!WIFҞBJ+3Ԕc4YK7x4%A*IX3%ĞFr&CJx8.};jP^H2D4to;#,lվ$fvD.C(CB]_®q% ];/O{ԵA{K^Jڋ`l~#\Tv,Y0MT+@q1(3:+eVgYԢzͷҹ5vbdZMc0I2l FdM:VVݤܡiLV%s%I*'_w\]2~JURQ$'Toȅ̍C^ "!DYN1JkM6`w*IʙwvJG4q*}Z**"2<\<ugv؇58k*Ł8nyE#I8ܡUM8;1:+Ćb&Dew trYtZb6i.aNV@X72FG%"uun/^[A\z\ ?V YFBYA|%VZOOAvRH4'w Y>>ȶEvVmKnĭJV:K$Nb1 'qMa@Kk L@;C&y@4!FL M,egcdz=u^I]WU [R]$LMЍ~Y1w m@OJ p\'QJzvC5R  Y[KO?Qrd S-AT?Nv hYmh=댓a2*D4{ R)9dg=׌!jTx!%D"X $҇!)gkfdP,_yc0u ،DۜfJaM+E6, wvlG/(yЊ :HSLAi0bPc;5 gIR ?UE7ɮߦ,P%<2MѤA¨`)|!$-*R|p (KZv +2S,e f 6X&?p Sq0& cW?ȸg[sVAcQVrl’ۦ|b maFKE' #$e?1=*n%Nn4B7]IEUXNJ}-PY^#<ß`:ZhY.\tnE>\%ePU(6E&7.$q'?<" Uh A$s |j<|>51p_ȪX=[a7=I0c?. u|8#/ 0ÅZ(ۜ lCUue>։c#]/;fdlxAʨhtSz +FoElڙBY\vֶǣt8K3FLxP .8AT ?13p9z(SooU8X0qB+*ݷR}ؼ˯L9l 8(a!/,a| c;N;LXߟB~9XG͉V &Ω<.ap>S;ckXVJZp'ztv-gzD-c6x1Й,frh>4r;!grY?3wQqׅ{IKd|T0{6Ek A_ b)S[u洂'҆}.=p@$>':֮],d8mqyh:\Jn}ȷ_7Q޾S Z~|y2eX~R=b6ko 2r20mYo2[IU#|d6~՗ip)^>GsBeY c)twd R3u >!ZbRay PxY'*"r5 OOvJy F7@#wI0'恗y[)k,2?%3:Ɀa ubWB0 rY5!aMOo -bAdLV^27U[1aby gՑn֯)@12*Ӝ/ՔQV27Z4꤃n~MLk4ΏU*gq֔z3դ^Csy!ov>zAwo4s[оę" 2Yҥإ[[̷:uaP{"*|r$$i6)m]rͶ)ȼ~iQcN$d4h3SG eMY&7(ɨYk;=5ϫk _W?<<f<{fտ<%H4.kCv /M_dEOFp~ [5$i]uQ9l$V'P߈,fq0+b GXP"}Bba$.uXv 32+&Xq݉%LNf7k|MWsV1㱖s&|I!m Uvfc;4la)-qq^n WAx:h}v,p'ȩTz {Q'nW9E)®"!ԋ$}.!ɢ> TM\KxM% idЫlirfPtPG+:NSɿfz4a AwրIfqѵ4[D&厶S~q(g]iy0F̫c<n;:r/DV]w%SyBv[A pY#l`{19/Yd6,|z k2Eۦ\v'>a9scO+JJgA G\x\rBF2d VAh%X @5'^LȪD.2&};AUpM)/`PG#",֝ËPji KǙ; c«nlSt }ߋ(OB,KƇokW(8B,4%9iU rv14؅o:\OR0!h˧eJM 4k"F y\lImC-KC"W'8m*#u٬Z˂^^ӝ{7֡6 -%6g~NEBUY - 4ۏ+А?QͲqΕG{&{)11o$}s]9݁w9<9Z/vP LL,-%QzG$ė>Zȼ ½(/M^DŽfGn "U$@Gj{kKu*n|q%+ dS_@=Ł7+} _oy.03abQիfd27K_u~kH$*Ƕ<>avVL쪴8WU^L3RC(28LL%*v߈q=V)F}E =׸_ٖPNpz6jOyrMɍ.ЗҨngr @fet) B~O%xhY\_t7b$2;d 9| b!by#cnAC>H.>gZodyh.T݋b9 ~ bmCsm!E9!}_xtu-8lxdʗD`.uWIx|PFW`!بmB@#)Nv#FL,M xn=kQGN)Isxlz}⪍i9m:e]O'3 2,LJ.i;~3jt-t3钉iHN.2*J'{ n|6qnl$B c2v8Rҙ:['4Fbx ppBbo6!`/nv)i{1bHP=Y6`R#ұҐB-ռB)(J aR^Y4^ozry j@ $K4"6p!;օQ+>ƒ3]:enCB=,zi]8=`Ѽ:IY%IzkNl`dU{Ų87R/v~_ > d)R=Ը9.NKY7Ȗ̉qGM.yG7L)Ueei*с67m(8} A7z,QJK$/>YB@=a;"bVkn? BkA.byQ|u.Js(g 9D/̾pyʴD;ϋH_SJ$'a;KJ}3k7)4(f,GKI7 COH}΀RŘh_xdU1_6ַ#h3o,U0eT-~3䤽ggb(r^J0kkW' c5|T8wN\U)8ǔ;B8z12A 5y;-JI ('7P: UX/˧Jp_@"dt lIG򽓖rBď\5SVe}Jb,)maO0. ՞˃ɜVlbpZgPH1:U JUeZy){ s3{#)xFܻXf[>їY$3j;&g7VHy=_In/] S47"_}7`F(L8IvGzǽ`&=0ɭ}%I+1սC׬{ڷx<wl_<ȅԄ:`%`Ө}RD3.E$![iTg< s_t0KrHHw=K'%"V:s} qh֝ZXVPoO}ӠϊB:ru'-VpزJ~Rz.gN)2*p,B 0 vZzPK/譭RZkY\t2 hRǁ@;zH#-,5oAH,2&H|,uACTT_65BIr؁.\g$lCi"YJ)~ᘬU|:סL߈ ǂM~@IB5kme(9*P=qή7 r.PQJB|7hZƿ ʂX&2#oզ řFhvZvPɻbDヌž1vLa]2Pr]nşRק ̖6Ds֒(2X4^q%;sHEXg>cH*C 3`w³Em78;UOp;;!0)0&~fQ, ̒ECvb{(0mk'Pb9|8( jl%?i6CݓƔKDsT[~ԯ_l9ANS"Zzo/\>EGļo[,׍j! AN׺QY4 sO.\z\˴ALx͑qIStju8a I(-%/sc#`w"UUgEU5 q&B׋纭`oޣNū[Q>qs6t Y@azM3Թܤ=z=B;qX MQ y.?= Iˋmdg%»!1Ye`uȘ@LB9~E5}m..HJ/b' s*R1t_7l]/ӎhJ[NѺj`Ze $!k}%wQK*=-p>M–BEcW.XϽA~uw1З-TA&d fi. $>< 쉷Ʒ(FÏQ'&\RiQLP٭Ew>b?zVSY 7AHAJ_zs(MrUđZ-hzDxqY@.pLFt!܇J!>5 kͫ {{D s2ܶ9e״[yka=(G/ "xY)$gVy90a?7 5<s 3Yz$"^fogYFb…I]?G+nO\=-lnc"ǽ~v?, ]J:p-p-uv g 7P-`|w H"1w!ȂT GlE^Ob,# tbS몡\Xl23妍߱YțbqQ$TpLcR/`Nz,Tu'זx*Ph%&7aEJR9nMl_DžG*S-Ofv2%_CN f?y6'Uk3\2cۄ3x y@zsh#T C4;p>0+MT΃NAa4_M@?}7U.JbG $(B)˜IRM\_0Ui7s6\nB|F,@9V`Z;WfbB\E IA%<8bCwb%ڬ8LN0bdtpJ>H ]R1>+j+T =Ku/TH85*Vي 3K&+\ft0ȳfq RDаWg`uTW; ybEV X,v+{&6^=>M$/}[?gф?x5w@c[;JMo{@h=U(%X.Bl0=b#cfc!X2ODž8:aƭlތuBg!(9}$P[Ezb53sD'~)YwH(' &:1H9G|֨hv\kw{p6`tQ)ZhFR=T*;u=9.XS!cOy8MZdwGhHP󨰩eNQ\$ڕLhrO+-KXs+@Dy(f}nvAH`jTZbXt; _v e_a&y9* V[xL KբA-.ZP6]o$F*jOvB|BdKm& ۟X~g;ym>ot2sOe1lNN(mє8+T>_q +xD59#x-:^9%)-ģ}=i,@ro/]}AuH*GղFNB妴"Ռ* dHxEiXi}qɆ=MY|88"xW:{JPE`Ԁۻ͜i@ 9L>cT&a= mfh /:eOryZgN M@r ܄bo:xs!`]p$V.45X}8]v'!Vsցr)UeQyJ]V^y~ŭq 2k]FObof~p)#V\ qGR>Ւ<;OQPH#Jc|*M6nV= KFHR 7G1 پ g=c.Nxsuee#,v] % MÀASbʀ{`YH6W]tbUj[|߻Pc.Z> Qx[4 H q_9Ct{Xy"[ASI`0 :vZ_faWCUSP=ybͥ8NWKDܚu 'cqő%j,ZRIѕ}y!$7RQ~'s{:K=yk*NDܫF+?ՄWgD۩0yT BW%05zZIXR$Vr*гO bTHiߣXϵ;aEs2+wC?ja ,X kՍ88"0؋ZJf?[6#$9%\lSP*BQjV{}vrO/ޭvZ"?\:/ x_( 'M j#&doЍ^W o4s?\wdPDkB o7quR͢VUx:ԍvEx]8pw䩞猪o~>qYb"Q/RFgG;oIxR†_k|k;pCmvTXePHW}QvE]q;<7 9{ afzȬ|~Qx)n.jؚ5zӜ .Ѓ4S281ȷJ+DTyFJO Mk<Ӑ>f+,` GS5 o$BiSQ7?5t7`,=/kۋ~S\;qs~9;`\!jRo0i]DfbΝ &7cWG*L'/: X(TC39LjL I}@v0>S࠹2S~ >AM7Є?SmȰ}E v+1ujX{Ibdct@J6g0..peuDD6һ"R3-ASf]p˅O|$c_ֵ{.'%2`?=x T䄔%}\b8>n *QRCp撲Qx&s䢌#e?:i@F:lߢ,w"gqI&ܠdBKX"_:(.&M2Q^r.I|DCENqJ܇Hl"lSFXװ4& ?xN6FB3- _Ux3ѢD*ɂvw/呚btbL% oLF)[MY)àf~|)r.Gfi^h.lPy793xXnDƒU$!|\R׆cu͞^M^?^_-RE/~2}K,GcD7۰ ʖ,UO]3U#-A7hZ*t5HW1 %G%:{d"EZk],2;E[w&Vճ]vwy7ͧ$߯r \dvgj ~ި3Ynk >_s; *1J D3@wGufK?TRx\9ΤA'eϾTSCB O`5(2l%*Xt >tzsUkE^HSS;d+AE8G\>A&U0vء/;U7<=\&b' BnEY=8_o<;33a3OX@3ySX Ƶ*3e a̫ tECi q i x!h ojԢĺ/4J~NA }ߞ`&I3m!%&'^4enc㴳XqXg2Yt1oNU[m/ZvE'9| ohLɔb2 SAc@J{ýEWpSۖx9>! )L2z_ܨ7EK6VrzNl `ZGjJޱCjѳN#<,!P w;~\?&'ES?e\';?Ե-up~fdLf:n4VԦ5+sxjJxˣ~eVuv.d) >.=9g+^kӞ-(E.^NP"q-5Du oǺD Ս /\8f]+G.7#OZF 60), ^h3&}?ܫ=7wJ1k@څVv>7=ouBiiz/٣t퀮<:_1Qpб\;cM-1}!#i2+SQQ7 D\?I0 {5YL#kvq3X]Kz񈶋G޽@UVȖ O=qՂ( =ladf+NjmN YRse+τ9)!⳷DGĸ3Zo E A'coH!ȸ:<'h*51 'zk~>͆!n14<20፭hn{Uڕ~MK0F(!OPoQ0{?єr]'<'52B5jfYW{#^R͉Sz]1+!ΥBvax)^\n||)4JNX&xQ`FuB2.V^ vZAm/ߙA.:s~&,씅 8wG`3)?'߼єY;2u_d{_ J3!B>;FA# kuaꆑ՘m`<> Y!7+Q)b|'oH9M^ѐ1{ o<'vQ]R?Tsۊ w<:g~@к-0BF1a{P!(7''hrΞiD2q}D(a,8schψ+N=Xo@QFI"Pp{}ě^uk}GE+n(uFkli ªr xt2 P#r δT>K뮆)+[fd@yxPR&B.xt0[(M*ZRe M.í%h)ÅgЎXxQI ' W>cDp~K@|~̶DK@@!2PٛFHgs9ԍ:+O,nv)"չ#WzH!`4ivAr->(atϗtH@tXLϷ 4K61Nކ ɴʄ`p. r?~Guߵ}quB_6 S'[CP`εNKvGi&,K::[hRjv*ý]% ;yQ䱝:VaK('gVzS'pzĊdY{6%U]axJb>M *eS{w~7#i޺(lW\1Kqp/ ~V׀7Y9 Fn'3e;|'w@и WvK1/mׅ|Pd>-;"MvUV)0>2N\5ZIdE64r4??z u3]v*;PO\WWtg#'~ ,'a$eoc)o2O6ܒ_bǙOdLŧSr6t84{D<Jp6+]DB؍fVl-Rq=XxtyqƵVZ ˺LokyBK老ԝqpI٦u{V6*1:vH-,_AksqbyKh@ci:>e0g:6*"梕Q֕ZТ.> 0Tjɘ/UK΃yOTRpeݏ>tb@/`G؁:xtO8LIʬKh*#l8V˦9ar 4''*C_[W *9a4Ѭ3|Eש7ٲ}X_vFXoN&ŁS5o:NDgÆeJCbxc&4nt_❁nZӖ2- EH8|ovN*ҩ[ '& Ę-[ʙ1>./Tl]I|wj?FzCc@3lS4dMnB%9:he+F!Y*vg׽/n!u܌}e 7h+ ,">V-,eQg5Ěx͟3݈Ux|9RgкQ#@ I3'EI޳uDIk3 ̆]gvV%.֐ne<9sؿ_1BcYk'9kDvwwH\Y! ohRY[Mxdf bD390a3u궬,bdc-udqEՔiW}t.P,sEHPVY9\ZF+IBG{ĎyG* +N<,aƍC MBHA'Ix@O(F̮f4)cQ%iWكGv8J{g8^AmAx$y>'/oRT]}0U)5A{U%۩Va^%HPfۤVN+[Oy GJmwa 4D,$O^|"Yv NDžDl+Lgѳ>؃V(B? ٤ $ѐȨoEU0:Z*`gvWGG2@1M}EoCPg61 +(38A܎2pR'ޓ #b eB0#zK6sC6Az[\gB#e VE,-'\6MCZH,ɼڹl kLrLL1"ŗC9ϊ4۬ &7x!k3}Eɪڝ$qPkMөY og쟨l3/;-j-0*92^AL ">x<',Q# _Ox@e;AmD.y 2$eWۡ/!O-31:9(Vh=GUeVX?RiD pR]+X[pǛi:*9հ 4*Ƿ䷠ nLaϐlS?':X9{I^L绎4WgpQx61Ws΂20}JSi 4sTaҕ2@;I/zYƣ3oFp' w:idxr_ J9:79TvK- r ?mP bB*Rh%_1 Upع@=oK%,US-+-hgL+#bYEO1X|> x;ПmF 3~R Cn|ܷ1ӝ& tDiy)cWM<3" ;89v7cIܿ\`qf dJūSKݚ.1&Z^,E0"]]Wϰ`<2(xZ!mIGy!¹兇Pеĝҍ\eJkǧ\)T@B6 ѻpO3^,rK(@r%;A4#uM9(zq9;+[XgԄ-7{WE/XbD _(( ],;YwD M)dTR+D XzAg?-c"I\,Vk 6)}v+b6Fq_p~50YKc&ͧP O2#nYl^&ǓWyX*FAh>=<;KRlgMRAGQgr,b#(xrb#PR4}ELV&o+^Ƣm,ߍ75`ؑ~uJuL\Esdu o/uO/UO|# sug8W Y\/W׿5v l MEb|vyseL$^_s* 5s i$EM:Jl ?.OUiΌC!n0㗴whT<ntjeLP,EEٞpT!>#iy~6?i 4op,'evrAS/a,i17dHX_HsEiMVy['s@lQa1e AE|BG[\7vÿbnpTQ%RzaL?=w|KB^D1ĞW[7`JqAgScھ\rHr{M]/ˌyKܫ;WGm1sɎΔ%ջ]W \qeWK($xߐgd 0Fd?^!gsuWNQԱ86tEH@zE o.o*H!( Kˡ+!5Ac[&P1`Lf҉MnU4SuVM ъ6Ϩ6(eikt/Aӈ8m Q7EV7>JCí7c! ohUܙh~n#*H:Z*H^Fp$^h|LOq?ytA& D!*K,0qjb4lѰ0!W^¼9CA_̈́k`;r:|Eb$h<Ǎ #S}kweE٭p&4GJfEd ?Zll6C1 5^׈Qy$ǾQQSLR׷ 0K~ܗЂčtL$2YrXroH]S,܄ {)CJ`Xby^D y NvM<Gey5{m6M8/ܓ#> ۥk5/fvP`{^N98I3썋~aigܜ\J\_ViFe*/Ln \ hBb`\dMB;EfsoSOW)l65)dڹU R?_Dv)'bwbVi]UKYG3uMȔنg_Kz$aAf)G֤euG~Zsȹ{n"y8 /.O@rXsD7JE_8qL&w9c}nu]=(;$m'?$VթU|N@߅fؑ?wQ3ZF)ඪ b`]8J-s[=.>hbS?Z(VkmIe x2NE[D_ @"ԯŬEơrF@BŒa"DTtZ)2Krs+:ΞlB)^ߋh*%x&ADova$j59Ӄ9-|e*)nx ZL:ݰn]k@7_j;`0>o>ZӦNţr:؀=zQ3yQ;Cy "[8 EXcLE8Vھfo:iN(Fb_$ a.@NJbb\]G׼{i7δpj,?SO &_"T!tם`\,`EK_8*ͤ R~QOu2P;(=lc5;0w.|Kv:$gM‚@)H}~z@J4]ee0+~#_S Op>".@6LoZd47s%NܵJ"W՘t.~b!1ˁvfRJN9RI9TCn?C9W/x;,L8o`ōc-2?]$ }T< S#5=M025G{3>Q:8}Hc7:3(ڒë\6"EO9VOj^Vǚ&P. 0>_L=9+$rb|$K倮!JxO0piTMa pU^sTE*Eq"6RVD[8˙Η D`5"Y2M0W|]!^.4`KYO܎70ȥs(pt8(36[{'eKNQGJ՞&HDx[~QNqi2D(C~(WQٽ*4v7{{nVrd@`9M$HǩM]6vٵPDYʃ1!E NQKS-`/ⶍ !3]Ra'hU2)@ž'Cݰ/DhwnfXrnBa^Ru PFKVaN8Zf8'qh0_͒҅c[Q9 ,QCԚ°z‚-rpU?UY䴕?y:!O$ I ?ൃs`ԔI#n*S IYae*Te2mkHZ0\2& 2R$F2-$BKQ ,I)ӌf>,{ݐ^dhV[&y{N\صkSkP"f^ FT%1Ƙ/Ԍ0]uf Dz'wEq.DSptU󕾫~\d sf HE'$Cu#MG ]$H|drHlӟ{ُ/kc?)}O\D $D&:P:ĭx'8|a<"rW>d2P/+]l.\l)g{rk%8M0I{%!RcbYW2!PzLڭIi,ڗLWC.tz+Y^5OF4-8٩>Vmŷ口]ƃ$s\yS;-3r/ H7n<==BO}?**ډH8>KH~84HWhzGwp0P?CN2@P5+(\+i 3 =\eh^ N>7muq~y4DVbWT}Q,E7WlE*ru'H!iM԰8q`-; ANJ2e:Ia{O+HF:(=(FSүO: ^92X˺0 ĝ3ؾ}6 '@TWa3Uߕ;r RdД(g!? F6⿚0hDoh7UsK= iб `MT5/mxYe(Ox<-˜;6gFgN-܁< ~F7ϑj[œ+xS_YFSGlnP&5KyOtr)0pݘO>bx<S/ y={G+?X~HuWSKt]B&SlufRno4 Yw,3/#va΢{\h.B}ݿFpA;$G ~ n,PX<)O863zZgB`Q%fmc{2eij\6ɺ6LQ j;X8Vk|55&;ksl*e{= 1H~|S9 ]PBFw|sfO$3T`VtWN5ܿ^lѸѼ})ScT49]W=g :J<@ t;ȯjf,^+1=̓KuW:PsPtp+y~2}a3 #Yѩާ>a֋&>I78^G9*Hpuã]ie'Br'$5wA HV z?7PW-F dHwDZt@12;5%75hT1? M6F=dջb\H}F[ J-GnAH[ēgIYɥb -K/ h9Y]Ab d5|Ў{q@-!bb]%E a!3utmn_jtCv K#.yE#N"ż^;HPQṞĆV2Jw SFONtk[wQ3_hC?Rt.ֶW:<_@v=vTuVHjfmh;=NskCXچq.n4ywH iN;?@!`q+7'v=jQJKPpb-Q](bV01w`Q{˱Fݲr U?"I}_M6^3:xf`LIWegz*YTSS15i3&T;>yqCWGoӚ8Ijh?ɼ7`Z]fu.g&qbdER#ݓ_ HٟVoS;Q&b0,ǠM̃O^Ե4S/&-R\î~7oNCi@N0 _sEZ))L䨋RKnEw~8vĦy=ZƆ5N-L}oQF>tfwt-t[YU&]i,^,ǒ095X K/t_ȇ#ӞR_셆$$oҠp6'[G;g䌽#,|&w%a$Ѵt:W3o U oզ<āZ#F2 &/6|=OaGt7?f7OY#U׎^z_0ѦWsVȺ( Ky|~Ubj'yn*U5s2A˸&VI a6(('in:ZAaxl"R{ 4mٜ-Ho}<GPr tCRt%T.|p:X *_Q@ӎ[q͹6I)|,YbŵI @`y厘pg f"C3($t6Z)8;$XM_"|oDSpΕ-Lu Nn_Ë8Td:>#ml>bQƒl2@щ/~_f4!xa+di-*fyaS&fx'ޖ<h1y S5HyI,?qN4FCx=Gt[v3W6w1$W-XZ6tXAݍ}t ^-.|l(hĬI{G}rG۰ P (nw^+⑔EmL,O˝a=_ڡ';tHˍ`p` )mgNOAv}MqXNt8w`9e8hޚۦq(r-DDAvh_'da9VB;S`1QwgBþK!W; ^(ى\bPd B!4Ŗ҇cԮƠ&nl=>/i GGkCzol)Kl;@tWpǪAa!3έ2O;kqt5*!BhRca3c)<<48IR+)\.w3&4;f-D Za - ]À";n! fŜ3 bXΰf#kYY `ۻ-L Ȭ8Wq*h핐ۙ}5S׸^emI{SrqhވxJixՄ$3A+?{uBCр饖wERaCBZ /wrY)TΒXzp;fө7ƴ:1/H'@gTq6x,ґwϨIn P~C6qt=8plQ ) in߯2|H@q}>V&s,q&=B+b5\w y'1ܺC0m$𱙉^LmLO]3 Y-YamUNQ\FIޕ6bBؑ7g/)߰.ʩPdlO)"S5v S0,j奓02l̃?͐ڙƻ OnI\>B7ޫ?ZK[)3W{%uEDsA੃ck9[&WhW['=D qzP ͕59VH% ή{LrE,v!s/ZݏJJ+ºw/"M%"P$<maN Mz8FEgp]eO*cJNDCzF=-iPv3_M ۯ$WS2MLR,>9a&px] ЃGKFq8m 3Z줓8ƫHIwzãSM{Ʀ2N7yNnsշ\ypI-Qr}RڝTwwÑ\3w+-eM2Dkɼzo74Ge[ʫ)9sӔG`ɯ2a+F¾Iwts_-N̘Y~J?v$˂s"8FW϶] TdU_R|N tX[Q&zI2NʨS۲e_ ipzDJ Fݬ7(|qP݅ f;RDmԋ+9#"grdi[4RQaI/6Qukd޶F|Ut/GePGt,e\QSBFidL϶Oɚg7cYvn4z5/Xdvo$~!翙¡!Yr6^E,WCuܫwwU]bH[~pSƕh0qTDEܪ78E+°X 0^H `<4TBn4{r%6FBt[L{bg{QtSBoᲪ| >C6d]kX1K HY+=׼]ٟ+$d lX2rDǦl[=|>/F}z:4vfrETx7 i N>"&]=@MF|-R x>l#RU;srʖPz—ʬuڭ,\lF4;ɌdUjq:9|2C ?"rJDDӟBeT(lrL`/8C5*yy-Xby0Of_D@|b\ymWXyC5QRʄQXwҩ;u{h)ò DdD y!63lhQF' %KvWC.w TMROZi6_ "ك*_)`nƒQP[&SJw  (Q@H R*Ia[aXSe qLG!Zc0FAE[t$G G݅sHkRM >r H3^v/Sw9~[.J}2V "nyt.&i'vL @R&{}"b8OxO|@y\J !GxQ/RZ}K`AEC %oa5\.3l}\]N2`5hP}6La-E* f,a]$u>C&χ G 1rjwz0?Ui_~? OǮ$p}OD@HQz_Y֐ L/KHj~%]n40c9PqfFT 4\{9Ȝ+Ɍ{ H/&}89XMN qW@}.6 h%zg`: 7Qr@VPm7d[ڮXrPb T4]tYE=CF&Du0 &uًf5x(uZo˔k=K G7|r3fNiFwP̵%+ט\ƉI=cwg^-1?5w3`j\hSgY6ܴ}H2 upS>($M/]`WEjXxZr,Y/0V~J@!ϲ2U1-5zeR?~P^\I@YSew4dTwߓX[KSȢTe'^" wiP4`bx yc ~ ;sAVvp"*=\HՓq?a+JQWVYQkkc$@FߎU0h;NX'R= ۏ+:s#EKxȔYR{ UPG(ɳaq\uMi3Ԧ{DͿ4Mlߪz;07tP0Ȳ\h$qvB_l]hx OL b䓚1!c#v(ﯭar~WFh:Ims7E)C9ɧ7e <㍁-KwBF~M_u[8 P>`|\"HIPzLH)pQc\ofWj)&zQi}d@Dgp˲ l> `j$oŨvf-.?'k@XWalJI!> xDa:sPG'9,gi ['rn"\321bg7{d?Cے+ۘLFG!;! {+4x5ei 5ilTh3EGt*.lW@e?B@W寢 ml詟Ogp`L<|;~f.C:8l<ۘ~&,~bSۈܿ_k~|J"]D> U/+`oPY Rsld؜dV\wU(EpM"߫X@LYdbc_sYjjiڵbU63³LW֨3ŕ>602א`g; .PN)ƒSbݕ񨘁mARe裠P56W6{TuD%d܋\(Jm$tM 7YH &&ް?J SU"l4 #z.>Jͫ^ҽ҂0:>51nE>E<  ̘5%M^-VPȁ9(t,# 2_;anS9}Lw5~ִxCj8iXZoa-W.?|ņ^g,A$&Eb?PYT+#?W?*sޖplfUoj6a?._o}bD~#SVc"{7wrLX6/,2UK+}3͡b{[V^wG0GN*Q })}thߥmlt]EkZ uX#.D"F3m8 0EDz *4U~u) PoͲ~G9u_t+GT|@0\8%xzGeW#- qn2 9 mi!{'&יH"[!.4~.=}<g(fF%(qLq& dQuC15|\Pi-8Ͱ+IhF4AXYځ6>tP 5)"GlRNo?~2`ӻD̘ vZW+ʑQWV1Dx" Ub r i 1)@ rAl Dg ~_>LBI^5##t7s=Di{Uѽc 7񩟠 FF`,^Mǡ|`ԬY|bϲE.yVyQ")8avAvN7*śnmj^k?d8V9֗A\jhw* ~8pT-I➬Sd`LC l;T>$6>XhR&  o8*D_ֶP9_%\+W[}N9 O[pP- -2t&/[.TÆ2+SmdnuڒnK=$30!NiQ>ĔU*ZMq[a7h7!KVW zV>_mExjN؞mŰӗBRwAӷrF[b?@35֣5 L_4tP-8@3#L?Q$#RKH `7FcvD'ț lH޹3a""-:_/ԅ5z!gƳZV]V)E . "czARiF)g2,ܿr2#+{'ox凔DxK2970$5ͥ()MeNȽ'Ը+V#}pq;֊]UD|GCt1[l՞w:c 2xR~(J;2yr&4ucšDZV2:#k`Il*m_5suXԋˮ5ٖ ^)x\SU KÿWQ@!f"dq&  IѮT7[3ԙ9{K3CkJV,D*X-O+Oc(1 *Y}fc5j iR|A 9.KLZc2v\R0 Zr'f65:b<1}ȏ7h0 ײ-hQ?BW_>! ^t=.?n+:w>2L J)4_;ڄVqTf t.3`u"^P:_<;b2O_クyِ&>D3BjHǏx;gEA{9c HN {jRD+ ;ʄU\rOܳƿ<n2i޻M֎6&c;1ShI"[Ux!x.G:ubt@K2eQHoUҾ:VAY퀶5?.EW b~)f$vX<&:7=V:R͡fN@Տ4 ޻`}]h3a )[I"s 1\ɮx{{Q#0[kY?#`EmT,6{zhyLGG-NׄS8DQEEitߍIEtZ,-OxpL_Ddzjgc,\?7(dݒt}hԒM ,$axM)?yv, BT4+C@:.R 7wRDIaIwaZ_L\ql }W9J &q~I[h10W<:o BkurWݞxTp]j]7*:Mu}*Мm?bgT7h$.P*?y7ZDoVƯ@!pv?Rg_ eMvJM>ǥ_4ct(4ٕR_D[nz+P7{)}`D7ZR%Xb0`~=&f( O䁱&>#P+Cndˈ xqRڿAl 4{VKHjuIpVTpڸ2{ v|i٘کFnz0}򱈓x<Sr<{Ijk=Sx[DW.m&#!t'%']:nXYײZJvRVN!;~d^lx:hOyojвۙw6w@D)jƓQ  t֢lȪ;-sOh)T^A?A#A5*GI1\jsd$p}g<nE2*%vnpCbY^R.R9'{ Y8sKa(3ُuǥnӣh gO`c)6SdnT^:MK?U=2g9џ1YJ @FηEtՓ=I)p Ha8{rf<\&DA7r(l; %t}^(Jy宩eJ}}(㲣h{U"NA)UGԐQ궐eseQ/jyo Qwy \ݓa c!>`GI\ŴC}ނ)f7Cw~^atz.Y%k\q K'&Jly|ӊ<=|` bs"_0]h w~Ko7Έsx6t002p~By299W t&hMKT^H(rʮb(H˷rw@1h&mkKX~4x#>\h?lPeО%B_Aߘ)tk{_]"hs_. 7 5h\H Fᬶr;YӫXkm; N&2~zYx2zOΘ+ M#'!vy zJYRj0 le3gi?SPv:"4q{6->mV27XO+Dh_YKEI+8| TNO`9ah@~"J[l.?9Kj0Sa}ڏilS-jGX{ເpvy|[k(j.@!>Q tK*+_aqY`a:" YemlV5bFH `n_ε`yV9L$R̡:!z-S lGnVTvifOx pSкsmӐ ,[YЄϗ=SnjihTuX/x:4x|߁G{fUFtLz:{ K }P?!XUWJfMϋJQv:}UWjF Ž䌴U6-ml .G":/`ͺ@Yj{ K YB@_Q>䕍r!Ҵcjo4h6$%+H=4^s81nk#^H¦ms-H<1@ZXp+cP;LhX˙"7:KЃ隑<ν׵AR)Օ VyJ,/(Uٟ-{@G!1xXi\ 2f82ku@ Ėv5vWrFz[-zǦ*IZnj+ ';UůwXS=ӹ {w˟$qѱ\Vq" n #%ɀ{k^(g jT# $Ӵǚ{M\lI% %*Ci& |cܔ8V7]8d\ \pQx4:Ky LRa1sY b!b?2"E/ȉɕ;'{# 0_uc6sio*)"\.Sv~q,JjWCUiTg.+pg ( R1?ץaZ^CՌ1#ۂ?ZYu`e>ֱ5̌q8ƐaA͵#^2 cC_<b^ͧ)>k49p.aEsc΅puIYܾP6vw#,a+5^-l@^񣘙қW@G'e tn)8 EF{6$~8 V5Ij=Vtc,Kl1{묒,-A{mn'9 TGo9uM-6P%'HUw|vH&_‘'O,S d;ZQ= 1TM7a\ 9J5@i 6Qn[l,5nW9aH/.yX-|hrwݹEv-ec půHv- ΑifeiliSBÝw>d}.@`n O4Ę1_"h|Eriw ?v1 =U璲kAkX֗bHVouk65{I*2zNW*LK>P7*5 dt3oxeUIy{'1jӼp,X&;RDݔF󒤊p`©<ʩpAC^䵉ܛ VY+8Ԉм$,wX`.}IZibb}gAӖ0ϴSaRf"M-,P 4|H2 OqO>Iv SۢRKy-[AJj)_e# UWCfdv~I[ :&/TO=t]o8;st "4+ Jkb1W R|K* x&PGB] N?Jph+8 Ug35n|^\EhIon܊Fr;ˑ5|W`yFPXL' 4$[BF>w~%n^+'Jt5{l"{W!d,JB'g!rg3[Oc2`W:8ˆ4X I5 >B2"3i)'5-i4ug<|mX|t#Oɱ<Wg>+n-?#Lxd(DJٳ0Nlg8p)_{Ε8.(>*`IPxB/8/ 0Q_EƮݝ/'_Kc4 h Qrd=;󩙚OԬW(Gۖ-A<#ڱ7v*pׇlIKGVVo7OK >J^پ󊏗VSΌmlZ k87ؿgh# ZpXjr$w˘/wr_ϫmT;R y'.\cD"H02LZA}4?0O0j;#oq!HBfoHcL`X{n#V}bwcVc@x8l2Cy8 euƭ23!{E7X'w'DSpr@EK0mzf;ƫ-;|9OېdO!TBY^XH- X2jv>7U>W7z+m˜𝄁^TST13}9J#b+jxKkc3* VufBrA멬G7K_٣jzEKଆMe虑 2 bKWg΂@j*zES+ ˾Qs+$( q5/s~>|R=Ǩo)`Qd)2ށwdjFO>+$)M<Cz!C1.U^rahNZ|bg[3aeNm+.2v- 3F(?|d_t}-1n(Z셡6 ҉#]J+K`VǕ.:8+<GQt(XS\zTqJX밗I\z.$3p;ꛉeK˪'.{83%ȶc4!cQ'?HQONݮ;@J7@i=^9廑3.ʸ$tmxgRa`NAz nQaAY4P,Wmיyw͏ `ōYU._|( j\1erqg·VOVM1~F4Az7hu±r8:* !yG(^0ZMAglm3[NdmPۺyI \P<4ȱ{GR6/N{GP&ѺG JhDlf TG#r3pMtA5P+ȗe{IV˅ xM?/aRt9s/NBkŘ:b n&}L[ H:F0#w h(vd3} ɭ:5$06**a FC崴Jr+2SzpǍ8?UiǂS49V[\M K>IB<}-$3 -BF׮1{MU)D3Z q[CG h?6tg4Vۊ3[9+jEk$(fa}Kl+=1.(qH}@tR]A"F>6= 1 OUD)/%"+}!FDJyd7Ui]iRX oP"#W'F4,v!p동-"QOc/xOi*P(g2FN\nuY4%/4AM]6˗y>.2\VzЪB]/k"kTbc˪Bb Kɥu}PܹBnȦ̳ULBsglT~VlTg<|e]{|zPIj{l,Tu^zvtu-^M<7KD d &Ë[>-2\\<ZD,[B;XVl$Ɵ1M9>hD tŦ v5FR8Vk99Ɣ@ö1b QǷ^F'L-/̙y}pRUZEVWsH1 8 ? st3픖Yx#!rУo-Crоk!6zuڡ [nb s!@*K)PBʠyk`Fe<.oV`bIɢsWCV;X^φ̼6Gv+UaUcoHã(r1*ܗaYAvZ'3lIiL#6ĂgAv_nG;vЗdi2,yA@8s h&oP-| 1\׸馨R@VT>/[rTJ񉽠\_$MI$N[s^A Xi|ӒM\E-0qx("1$x?M~uE:ndѼ5wv2;3:3UfQmgq[QH&QA=")Z4*IPQ06+H)eqBK\ 1.VLJZȜSݭ"ߚs&j`7z=sh>бM Lg!䛚2L?fbBT#fU8EP|aLڛ 9\h`43?kx"sdc '{83sXX(!KU ]A?fn;ӇVt@v@lB/BA}犴ZY D.Rcj==ώ߭[>UdQA)+{j<[ٽ U{6Wvy ɵ {ꝼjnQꈒd貫 / ִzeu*5ЂQL߾OQe@v\0duUq%0rN🾱~QF)N}V& B^>_"@L#0I\)]շ-VN9G}FX}1ϴ*nX.RTiiFqf+[oR~|UhB_BCKCaDde OQ8H973TZ Wm\!Ul)UF4G7`Ԋ+|".|zS2LRm,v3 X-_ gIP|MX@QL^S3ma$(:Gx (x4@O?㙞$rG`=> vD.:Z+RacoZ!ֹlCl3+G8tc5VcO$[4!Fר7KQ Dʭ G_И\EL 99;ɣwAJ?s  1}I(Hn Jv˩YԎ޷\`ݼWZp,j;UfXf Zϡ)dϐ15?F4LxPlR$q4hf[Cw)Q3E9֊7o> IVԟeW< ܆qȉω~01Ąɰ=!|VWuy9k7k$v; `ȱ3 ;/#v0yYxRlh~)_% 1+X tD{5axD-lJ-+ ZA'_Q 80਴Զ˩-exH=hPX|=VC.n1ԝ'6g_f2;Am{|e]=O#T=93;I~W "Wkޒ`-q ܣx6^׼R.!Ht܊?&;[Pɏf:XsP`>aP&U8pAS EdѽWvfiWحs7>ў-=1Iǐ Q\D}er4睠 WDSaJg.3@R,qV幉ԭ :05J#\Uӗci-?F-~cˎ,#iHhA4t*2}лFpˮC(l߉ܥGgĬ %'+Lp:n9ȭ"{(Ti!RT6IEB+H55u`+%gUVd >!a 6$1t9ݿuu?kY8`AtK=xΊDT%A"Vn ; Onq|o<-FVŷ ^?l0B#& k>sߟZ"rg :&0jAեD/4UI%o'-ԢB]WQh<8+(W?k {t!1*ǫiܖzxc4~ړQH큖@BpZba(Vnk$i Z aD|έ륞 ډtEqZ69 zvZkF FkAfݵBCz=FXP?0.י,r'xj9l; N =!p( MllɤSL~hĎHҙ ,VgkK-DXz\02O[8emQ]MV8 lQp$#T'7)7Ha?w>N7L*w[ ׍GL?E(7ws2]oH+͆0w9qaz|( |ƚ&u Eھ$|03O/T18mdʦM7حI8_o(& 毈.^X6gx~D,1|&}cfڌ0o_@TEamOŢTsy}5:jD "-ʨD UT"D2Cꮔ+d4BEePN0 ^½z)))-gFkדN6 zKv [ Whd?_b(1"SGsXxp? 3<ƶo.=^4swficĹ%! oЄ+)@ry10CnX3  f|sS%To4$ن Ɇ>b)LW|UyI2\J7tbNI#tY1+h^(x6[\/HhJ#ֆi?QmoD\"/@(S:+{A0z%aG={nc` kJTSavOĜ_B=Dr9pFc,.j!hp_?C&Evc;uknTB${l+1y^CnB%-WfG9&,eN’@S\a3Wf$i;{ݜ n#|%jFSi TBq1ާ p>9{P,3LƘ =*BR>FbF@VA"_DUwh߇gđ0t7Dp&HX1s*12XHqӕHm uVЀ x\ fSkD#iU#rTG#لu`RC}m.db .TT2=P~` cfXr:t_؞Cn4wg,ׯyfe ]MTw8ŭ;{T (1ޚ_QgzK+q/.y PE|yD͒Dvm=`^SrpǟmF1&MJ-EU4.tLYNxO!}9F&{I@/Zz()v}^Sd#=+13Fq;4??j?"DH/447\ZU\Q+hhtDTy8@kj( v!5@#3DdTGG1Akn-6QBcN[X]Y9ho-bLu/x!>g!5װ ֋PS+__43i0 wb>Mi +;w{~^zb۩Y9Qai}zjUEMtqݡN nM2X(NWp{͓wfaƨ6Y9)Pa-hrT+2wY:fWxN$zaXPMx,UaRq2IǰWy҅N 5qgPE#= 4OXx\W4##\5miT3So%JhlU:)KP܆D#q /db0׃} NO_gX8)g~n 8a|TjM 8Li{a߈UE(-ˁ*b\S@/apOŲ|j'zc|TUgDeƕE0}xiBbc<1H"qY&qK AiFc{룣s w_k1Cz7>>p҃N]D[Jwȵ#ђthJp`D `)♙~"+{DұS 3 Xgxy :10]e!qn4]IU,X@[ p8@g yos5oc>b+nhe)@8&;JN3Md džQ=APYu5 &w&\;Q^l"WwZ (<"IvQo]sxʾ*$z$\!`|IN8+jߜv_p!f  VR,uR@R%8c~GY:2P%?,d3H"N[+=syC#k9*z)BzIKpI3 ]SPa>k 0Jm!DcȨNt\C\n/zw͏(j\;\q6~/iWI %1)\il $PMp'('}E+c9|rY0سy/Ǧ C088"/ֻEۗeo1_(yrЦ%eshj1VxN^GUи+yE̓l^ėXvP0H˄xդj8)GLA\VxTߚR(1xYL 1<큻]dgč(Ko 2& ;1M$csT1

75%LVT>-PMNKnHWhC$(!)v"sY#MG3N+gƝԒ8VQY*AW)Jvxy> 5Nx2?%]u] սd7|W.o,__ơG}3|]Ɯ]<`muW}{h@N_q3R^D +c#Y/}ux\՞?E&4_Lsd:Gېe:aAƬ3ۂ/UhrdAת4VMʼnF,#NNf;cd;v/6 N$X zp~=egTze=J,˪`9%y ə4Gr$ mA=Kv.ӹ35{Ŝ;+hw ݥ+h+P~&ZҘuP=mSuINtq.="G$W$t5=׶y赻 A7>OQw<#W̔qLAMviEQXq\BSr|GҍCVc5gH t *O {œyhxp8݉r*bCoۋ7XRp"';Tz"?ACBkcy{bHs ^J1v .9"з)l௶/VLʄG$j zWF$TH9ÑRL9{jvׇcj;(OAÍP7YMT%O"~}nZӸوU*3=49,0R7@[+ SPDv~za`D0F3 kKUn0m)MHKPlfo}>6<4Hsmfh~0sei-w-@?kš"vO7j 4w9!9 !fv揬V`srb>k]*r3Nނ H[A52%ǹ/ `GP/f5~$'7y]%I魎,TLU@ q"Y{T[qjtfqt,IVb /hF r8Z Q(mXzE{)v_N)ta.mQ}Β^?q?EZLH">U@tE!MQN -$͒0w5/|_Mxa3ߑ&0JNsaNԯUB=^EeE^Jc?~ Y$Sn;y1:jWϲ5~X. $m4]콀uƚ ^M 15@\)^?A#f1ˡfv׊0Qb4+'42 2} "Gip!0,6̮|zʧ 4ys~Iza!䓵Ji6qx5/INDަV/ % ?J,y_]Y a'nܳJ.6_WC'ob07蘌 $mUGe$g&u7Nr05P iigali{)2؀4 3mvS^Yb" w]?q/5xX?$x몫ω ]7082گqm հ^ݻuU/Wu;ඛm _̓ yn߼lҎ;,+j^͟P;AB|dcbuU"β& au?2$F7qR֋@yzNu8tYö{&LQ{g8HWK5"zZpo(;Dw]5r }`nDcPKҟE[9k <)Ů}edt\>7y+Z*bry9~)S9mڒ`9q#DZ/]6- $ixa^a20z/ v =Ne| ,X(=<@[Ӂk:Q~Jd\[]z $/g.wC16yP }K@}Wup ͹ v{¬ ACS !ͼ^t}E @MFߏ`ff>)#4z.2L:z`:0j)hu P#;̾]DUj̇rsp@: -^w^힤Z$2I<{R#OI E)n)Y֍al͵JATQ6 x̀'@ɶ.}烧k];K]鶙M:bu`WvP%[)8jNԾirkR|'|,{^25~tܒj % o T* '`1 dÖ'LN+b/gʻ NiG c*H(]RTGIHT i7*/N6ׂw_Y;dϲ=sz4\?hAޕ[抋&Ă]P9 ϝncx {P ]ܚ"bw#웚Ǵ)ڣZ^X,zZ.;h.(2o|fS$TyJ?˺&礼rIл>O~@1WP`Z]u@H$耋1'g+UYC{pb1'̲qFJC^~+\ ƟFc[0=$S Ln`betFIW g D69ƾ #`o5PG bK=k7wcZoc|XP6NE T'>Eab4 ,ږ.uiy70khO#IN%%^F+ׅ˪Lsn=H4u;\cPbYGܴ| +X*hݏ /FlciSA_ɞE6'0 :O9$YЯ Ez%mY~yМC9:pa}3̓UfDVs՜z6yR=ڽЈuIvҺӟ´鱶s W(I'?܅%`u70) g{?PC./~DLo=ڞ?k+̼dxsG]ޡ5Ǿ)sdEYUFͲvE݀R$~#8 '"f0)QK XrƄN_)bq"8R>y6vqE 1_S(~!gϕe /t&˯f lo֚E$,pӜ ;zB2+Ɲ[e1X4e&{>Rҩ?Ҥ]3V7E!#H\lW N$"䭜=[5x|܇MMqO._5K7e*u[7,Ύr/|7998Ϥ

;g[7ޒBse?j{IL_ yPF7L* 9H Ѩ9KY6Ok.O [̕"έ6SQ;%wR){wvjj_=7AOUBkh{ʻ9ogd/$#O\ը綱8 y$]ta6Em_ˆߋDwD$j`0-QV!YDx6ĥЮh1O;Ih+$tY#nj>Цovcz0]<V^_[ykdhL _:A\2 R[/ QJx{ k|j7ݡE*A#VAYj$.MVbVM~E_' ^lSOH+R2+GS嫷Fo&,ܘT4~"SbIw]p5H[Q-} m0wFs"#ДK^ʧj=Z hmac5O4[ r\(.?mg"j@:~q[v4]xR $RV'3[M8SGI>+a|Dzj[J/ `!kH&P(SΗ "^.S]{ZB6>$wOp6~9m / 9+, 4#4LVR@FatwHoTg\]Tr!S]E3ߠ0ׂ߀2~Ko8LP] l\MaGJ?*&~ iѭι4D{[;7*`#cjUE\'5\`to@Z2DHߛOA%TP6z+Pv(cCtU> j6jo"=Ky.Iu ?jI{pig׸ !pb`b 3N٥ \Ab܍;ZC>.%{A:Bt =h&{bK.TWjI c}[U*Bz(OYKi2$"P a7)8Ah8U_Tp:\\}(L!̋ `;5;TdC&ӖcwpV?0 -!>-~_T,[WM!*ζ}dFlG㋵`H4ޏ+  h̨J-QG &`sSm""UK+[^dO9 B_t.H,ܪ!eIUZ7~_oq e|x0$h c?u|nx>>_O ì(BVRS㟳 W4aՎA qZo |úF >@?a&=mpE 4i|jhԛW,V6A %w>YN g-t9T:=#N@w+w߇?ya;/l$Il ^Ϸ`6ր&ƪb*8{g<pЀK-'&Yqr[86-V͚-;,c 3bm\֬(Jhڢ ;NI#P#p_Ysx ar *u2Rgi.ƮntHcQ v`wŽ+FDb ['}cpէtA{-ںA X E ' Vt-ï{( >'P)T7X5nL <>s: _ ڗ'1Ll*qՌN a +ЍeJm1d?_|VJzG9[!H`+ *hb{6jj$w{x‘EA_1G <+ꜣeRQvc۔&W23cS wMc =UsX@;dJr\!5 nzhrZWcLjolG ۘˆ @ jA(e1I߅J?F=4k2,) -)O2 }x z w?CTп|pKbaP?yXRTR1Jn}Ԅeͻ¶Y3}Pg&l1,*B?oҏKǸþFp˦5!tcx9|J&3-.A,djӚfS MuX9` SɤvʞnC5Sհ( D/h;L'w˝0my)y.H 5BI7b)/>=b|P0ge7/14Iŷ0ᙪ젧 SPChQqFFUkȉ}|2z7AԐG%N<%ᝄS}ˈ#im0 {36:4NB`v^1Uj~5\qb;ZY$G ʏl ,L!X&f}[ŗ (Nyg`XQWuI|jB ٳ:x| mNkY"8F~xf=Kc v!nr>`Mo""~' z#C7\Z~ 6j_VWY*{}1fb'Sbk)FYۥUUnpBw9xiPĽMq[~i_j*㎽Y8R&BCb^mM,}]E" , L[>aٚpLsNv!*b Wf[a=>%= &(;W4uTC=7X~~L8 Pe=@ }b++xIle rcN`ı*,${$\iԂڸW٤n6 2?2S G7;iwBtY#0f#1mȀ!B,弯<<#ݽhO>Y[ gr [ŜWXlX!{oqC~hQ+GI2Jaud1"w O?_#ptҘeh7ZZw})e6xRL%'Ğ#z{}لF8Fum^eCX3QA(tȻhfl"#ۍ0i`H2ihz?%R%Қ _/E|oXE z;$Ìs&&hA.eu6U1(r %eY?L IaK]zkBޞ/\cE]Lm0.ԳOM U) L3X;7hEqv%!YM˜M&",76q)2>d1oR\n k17/kH`?᮰cVeSz4ѻt ozR|V֥".J^-h?|=XX&ڼ^vإǀBs#nZP5!P[?} ΁]='.T:D4^0 \ǡAi/?a^LC8dtY+۲uG{:n33} ,(` v̈́Ҭ]::ȇrLFTrK^e}yz+Ը9I&]QqX=4u"U'~wBP1 :(wEVUݻ=8na h ˞z+A-goUlTo! &X&R& L<%wCFAVi4ǐ Tϛ`5ggw'$O~Pk6߇_<_yȟЛF,ǭ!/bޠF,(A\s \Ce 5 @V0mv_"j5MҼIn3o=W"7x!~p6P|yԠۄ, iAu M$dzI-7M`]O75atY!s]QIz5 8tȘӃَ0M>si Jm4!5#n<RPڌt=B+3^M4mū\-8ZУm~7vTOc6lȮ_?8z%nU J]Z4\րI%jjs]j<|fGA ە(fQF^|Eqg 4ئj ʨo;bˤ0&ssO bs00 eq-H?c>2m͡ ȕ.O|?A UIݝJysc69k@2f/w1,6g3ǭ-—^Y2'TE=$WtτIK [+`SWvҵ[Lt`ڶQIe\%wXeGo O숊mSθ;+E(Iŷ&(c9faH#3)Xͺp6pQTXBEQoŇ@5`-9]ꠉB-Scҭ.&BeCo\U;, &fԔ77 /iPyOSXo PÇv>IwiB=kmk 5EČ iDIJa֌үLC%Qm^fڢWӾnyLV*y:8-hd0+UQdVDjAA '/by:T>vwZ~C 7`Mr~o!"351r~hI?x~PTI| sV<E&g e ݎQɹ.䴞LtY}+‘kw=¤bf%Hj51(~]8&eq(a5td \p=rU>Ĵ/ޕ }1=R'",\OoY͹9 `gTnpt-M(=5yS-$y̞ީG'/cʂQ;<ىG#&D Cw 6b8REyb7:&45(b}@%m|s(ѷaC^uOsF<8ge-͌A L@;Tß"fTj"hB4 _815̖x/\@ TQ>a1n)9TVW3z$qhntzME ~*X9DղLGL 4S.+ְ]`Vg,=r5V5.@eWQJ>+%9C>ZZ'M6f醂|h̰p1Al}esOdg',qkw CgǑ{uwюh[~% yz c@=pIHî-)ffәc&K'4AۉJQu[?XMiHKCµ :wW:s9 ބ"_0 ^vmCU'"#Ve> 0!V]wsH#,}KRkxNwMA2[U])yƨbKldG82L#!.Ȁt;HK ]c7j kH/ˏ#Is :MQck[i5ݺŞW;f aeʬ)+9"2{/MNY*қ'w%q4ZԿ1+m;Q]~#}xs[Eoqn1& c6{8x)%Tq$+A]Q\0%{*t} ^U0m`(b:O̓Ql5UhQ{H2笆 ނd¸Ņ-C9<\TL㥣 ih@HZ66YQCAVB_լ+3T_zb'Kut[q\uHVZ: ;oߚvOPE}vmPSeYq)p 4쾙x#sD:x)e_{NVBm&xC,<dt1&0Z8 >uG.P'`iθcѲry7ΈDYNKjѰMJעRd9Rc!{kѫ6ϰi&i6wK=ߘ(+9=W8(C݂RSLq_&(B.T&\wR٤<=Я2K6#L?Ɋ˞xc }8n r+qJyP$NJ:;Þn&Qr!ly^Q%dWͷLJv6E|!egɖ-}2O7-: k^5D #>x`ׅcYg"U{_cj*:m|I-AEf Y,k-'k ED2Zn,RT2Vޘ[Z%N։P4蚇b^([ BbhÒmBȼ((Nirք/}$raUp a j;71kFp,eU] es U۔M?@셰ij/:}nv3n KbY"Ynm(;A{ݥ<qBӬU 25z)]?&3@޳&,`l佧$D)b<\ X^,%k/[gYV;')R-?9"@*M!1Y ƿǿ{[~zVP6툂xh3ϳj$TL//23-Ԇa,K8b;Ж㛻8v5dTLV_{т km Ӡww¶tz֐w&/5o\C::T6=\遥?D84Ijțz):>_Oۋ}RDeO⼆ 6b+ȥ"YƧhݩ50XKZiOh1"(89'$=<]71Lkz\L3ۇo~ۥ*2js@s]e3yD[^:"M1_sE׷QL\6aM㌈ø웫ʒOwdlD Mi~G4񘧲j+YćEԅ"9ݟGZ ;F¨]w<"x/ $37Ѧѱ9xΑݏYAHva4q }̳G:^(G{[kƑ#ʚ/ v%0ױyಞ/q5T;bfK013%6 g5AZ +=yyU~ӲsH )@zBʜHL ~~}2xi[| 1kίD2rX Xϱ[-xĂ꙽WQfh/"D%\6'PtsG~Qۍ@uy&ӧD|(x8ƽ3'Ģ&oN( ^pIdiVYHzR? C<JQm\m6[ҳ@ %UHo?)K޼꺿 7GB%#{f{[o]$62pޚWyKti pT,Z59a=ۊ,I6$DM A֯&G97u1k+-yS>Q,&K!Ĵ=0jQ|iز}z,#c_؃UZSSm3ؘ_b蒰F[W(gBtC&fZplB~ | ܿiW`ԕUhF-[=vp8F HK5?87.Ü"z wTBLQ2B~`7<N_,O*PdnQ#}HbG }0~%ZjTBl\Lq?Tfm t22|:C2챜MXjti_{U.fն,14G !p2xr0х3Ooa R#CcL:Qq8zVX:lUl ػ؛@yy]-w@+)LGQ$XcAEj uQ#`$p,M_!%U1Z]ODiOAoLixlA1lft뉬"7_N`>~LMv[]R GR-j=Y0؜&4\+Zl-CO$+ւF' VQm&1,^Gª) 1@A*r%Q*|""Q ƽBOu*8=)Gt[_c6poGWFqâIK;=AkTJhؾMt7CS`,A8IQI-&E fOθba*?nKaC?zL2 ƛ!<;~%8?1;E<ݮvXIÔ@#}qy(3~џn`vXcUťemE̟-x'RI'D0ghn>H(PӰ_0`Q*0t5Ȅ^'N.yI\ 8-edlֈͩeJ,16vNb:zH6^CV,ًDB6pA&Wl.H[TwMU4 -XǰsL7#y彘?v]U=S3*,21 ! ]检ҽ%ڶL_ajrڟu TRfĈ8hwehMhRg̗n%Yqʋvrs3nڜةx<)%j?b\[KV|*1q2@5-_&F 'ѱ`¼iss}W{1wstC=Ǭ.qX;_맊zn9AT,!ooHڸ*hy+5`a l4K,J9^H䃌3-'2W s&+vUZ,2O=R,-8f1Z p ̄f#c1Ϧ{uޮҬ[Sr[Ye m?;.ȕ\2ݱ]_kd@ \#BKt\x)bGw}Ʃy.Ag;85dK8x  FĄzcPdw ytb:zcődt[? cG숔v'#hcx%}+ ^Iòz@ۈsoC䢽yqO^\yZ6eަ@ .1Cb40es^Y*mYGYd 攊\C \8#64(aXi E.⮱KbVuvvm!ϛ[*MCƾ*E{By,;'h(F1}Gld;JW,嬳ɔ85laX=_+sd2rF}@m˒E;ǁ6 v(Z ;u[n~JOI uTJ|  ݊3q-f8eRpv\^Tix ^s9f`R%D@ ObQl8ڈ{:p9~š"~3Hv3ƣ^-5#_L"gܮ*!W} E ^N˙yaD[~ITϵ$eyt,8WľH 3J0-j>PV!W>@wgH{jlNV\IJ%*ܑ#>?5hʖN\de#σU|Z9c3zwTTjgKA(@U#۾sbl\riJ!%MWFbfYhМvycq7-Ӻ[zQUbj텽#6y3s9c75m>`^랜̩ΑI{j _Wj^ ep' H1!K9a [I m8;+3ŘJNz- ݝ=3>8_hN7`N}L-=+`P|Ѐ?j3Z4њ?E#ׯ=&CI,qj D2JaVΜQ\VΤ !FzXǍ(#]k & Y#;b߅(M? }g"9!%"*5~+j3ϯ2•`٩3҉#5Ux8LuWXw!mUmEyP,S湵 ̴3^N )FE [a3b=`j.[gIl<%/Т@"}%j!v@-.g_Xl26lEVz [E4υZ A=hFnSܠAc |m\ebfPӒ-Khq.y|A]tKe ޯ<5Si^5E}ar`JD," &<ؘ|ɘ ~s:_JUSkC!Q={ tUH:AlQ=Z[Ul|#?iNO.d:Mb {c> Vh% ͇$l9G5j+}i˿~J6QcH7G!^7 _y0ζg-`w;`%(,(oK?𩀹 eL>&q mU ɠqe}4*x 8v0o$,^,Ǖ=` ܂ Pv6-VP$F]H6v3T뎢 `f͂'Zw$J:AoC?Ul~ Dvi#龌٥Prְ".¨ ik`BJor+4{JBThk[x:.U4^kh3 i]pv:k]ےloP}ȥx w_9M3xBƿӼM7FC*8I5#wN -7嗡OIIU$(WtRɊt E4n42̴Md&0DUB)z g,\HVp49BJIy d苭xe0`7W7858ȁ?|$/4չbK;,]QcLzwdkܘLC8D;ihYZR7wl,OcJDx.0 !Ijo; nBe*1V9[ ?!4e LF'n56%v9͑|,pŴ̞jŧ}FJ;]&i”ff‰7Ҵ5~&0GdV+ġ$XhE۫B?!^vռoQ%2 I>$ wtn9|pW[:]Kો4\}e_@,l{oCB} TI h齐BQMT  Пb}ﴧ_"QLt'9C=4xs-U9 Xa$5A졭QJ"#p9x^;з]?*cSK߆=ǂƩ0߶0_-bӏu+4aidf ]à2gSU;3JjW,*{ W1rx$w #yN_QtjÙ :"%>>Ȩ{mcKrIHXonɨ1 >0v\kWhz@W7?`qfxkZZEbp\?qtFQ-!bjtTl1DLZ')Ҫśz̑XC$ wz[-f3tJ|`^aT_rgѱZ(|}Y&?OkȵCZ"!2Cb>GfT3RτNRXM95essL~7흹(Em1Y`Eml ;F 7%;׽G%4qKWO y'^WPb],ѯR 7Gq4 3tJaH!= _??HPO@T;z@s[HYy䦭5me/ԣ+PG5dyWs@L]`h[`D%gG:&("~4 0N!D )ForX}<(fك !i;^xnW' v@|jv16Me9/bc:2q`r\:d%n6_y6y8bNa~R/X uDg% z9OTɅbj A_^QlQ[)u+f>+l{*WBnGW !uHP+L S٤lIkr|j'wdB!%ϠNs'Iytz~+݂S5lHF濩!kH4+C`?M;5g0%ZzuLŮC4 ũs bfc' 3'ӌ!0iMzeI].V@p])`h45wcX9|fzŀ\ʓqCNO7ǝ0wbՇq~V]|б>GnDپ;hcG <|wcP0`J90k*C܊g3nQm?TPC cQY:jz d%z@fq}fr)IxvͲTEm$Uׂ4$|ϫ zV6Dd9IMW=%wXD6",>h-fJ(_‰PML٢[aY,Anku$9>9gq|3hoe+B |y!r%882' >@ qHqb/@o ^Vu [&r-=h h[Ts]m{zRW--ʉ  v u!dN A*2vRɚhkߋ`s$.J'JP?tz2Rl2n\4|A_LYJˆB>ؤ y{v x"_7m^5G65UJ8o"rat~BD"1Q|g]fM6Zv6{(T-d:}YU\|zdYJR8b$ !;fWx ⺡1U PgD\³z\?2%y@k& .- ^J 5U@ .P}!]ۢH-pÐl(e\rP"5o.&>Nd2ւfHΔ0M)a"_BRۂزcg)J`vm~m@8tV%D^CB݆8]'*gq_$[o$AwUOѩx{;5>&,F}8f Y:.N$>C}xÎu<ɛҟr.>y*^/(tId9^ 9(?&]?_I4my{4aD$3`~3#3]G<dW#Ck6u.->yX_-լkk߇oTl~6RGɸwLAja/`2#{>vo-|`7!2U纮R 6B⛿jdo ؽ6FUWtekR^yf& x @Ԡ*IxW#̚Et)<,#辢s2р)R{B',Ǔ7*<_>f ]2R>4Մ Vؠl_h ~m0Ya"]3ͰH4l?Ϲ+. _H@3] cAJΨP| d;ubJ1愜 Do62-ND*50 h Lۭ+= M"_MͰ ;( D>%W%?B` VEerkp챦-' us QE6A›䳯dZ|_ RI'{83ZI/_KpO|_rJUH|4|!#  :9F7q32uvBLtp)IIx[xw_5rl}Hw;d#jfjŀүzFC,-ӎ;-C;-t0Tf@@ARF{o@27k#Si>:҃ŶQ24DŽ٢k/C 7AVZz{ 8Lc;k {e~wmUo-k_~ѸhQzW4*8tE:LdŌq|VSa'lkۉj<9 F2Bҙ"8TLa.uxbp&_F6v9\M&Pq56BpXv4ːKH,(U1u7 NB[N 7B5GYA0\xpn݌니"BmEmV5;q1i3rJ&/RfHĺ N'Ǫ| ]S$_Gd[C`킚ƐJ#KpI?)R_@l5p|X*<^fc)f$cY=yhA{XǼ*(6pNEE MH] unq!oD F b:TuE' q&0KB{h `CK n/Ћ?ud&&I7X(X皇%b!JfQpfd4sS}]*_໻Ȃ:aK \`DB݆C&x&r_GQ#UsFA^')Ei"Ӂ#DbkngwʑʆL֩6{W9i>l<Rǰq2AR5."iKTq".B11]@0P)Ha^=6@۵1e^YpeD9!7J0D` 䐡/|W\A J5Hgw.W{ ( h޺c1;?v({뼄|Ka#oJڱτ [_}Bj%n)Ti=6"ck{̮B*o#WgigRARbۅ3F%}mo_ebΙ^넵0#axF7cJ?@TRkU'}b|cېSTbqq1%]145ӓ7\e;_\){Z.t*,5}[uDsaۏ2*x\\ބ9؀Ax^e6MIgpMSqgc^*D{sokcnuϴJ:M5ޫR%P䨁4)q(E.iuc%J/W(,C0;kፃiXVFk->M=g=SX(mHuSq0ny(|.e>ϵ\fB%~1S\K$t 72W{&O,켆p*{=_Br7V!`DTTzcXDC7rnW۷_zNB{N RyN0E 8qPpmhx*Xob7.(<+X_$#Xyq=xYԼ T_=Q|ta=FQwIk[DK#^Վ,w.;ʈȠ3t8f0Z[u߷i.dTv y#)1Dҷ PjpGUamYȑHI/" ,? z݄| Pj/@=ǿ85_j;melmt<hJD(kJZƈҰIX{IZ{ *Hghͭ?W ȃLkۭ'#Ly!@Y M{eN*zm{s=ݬXN0s=O#'ZXY&bbeP'0Aa@Uܒc+$V%l4lH=T.JEՌs: OPx$,s SHM=JYdQjE=0ֺb"Tn5?h(5C{pmǻ(hRhdx5½GaVOr iD݀_B{rn d,鲜Hg2Q ͑2 r[15낅pt,gJ  eiPaeу<҆t /OY8>{y?@c$H.l_\n@͹gAah[+B40q`{ֶF"?w3p[FS~dDlU 8sSL?Mrn!Ztcۊ|L|`z4Gv=bI48D־fۦu|;;QEG9~1mB "ݭUmHQ݅=8L`~/+Q1ɑt|،ZxޢKe[Bv֕q8W.%R 3= 7\9J5^41(@y^0\FOExtysH$mmzc]4B\0\-cXKe+_kb{:3 Ѫ\5 zH{sL'Nm&gIjmACCƠ4'z7.("59legmG]I%5j֪\T;灃(%\z}?¡hɢU~ ?RhQ;/ڍgZu;ft+Phh83ﲉ /4B-($)z hR~HKK_4a5Ɂ%r0PGq\^~]S N w{Y2jeҼ {-O0H0, عzxDpC0k1:b\ Ǥ^WX DAzz~}l󤖝_=7yv$7߳egha9kPq}s},7Z'u۩~/P_tu {{L,ɏ}i3 #A\{fZmyz yNݠOr-&בт& GC7fnPKJLjTksK 3|ڗ u)0r[uqwYF21d =U>KAQUd셝S'X5jeŜ--PTECrbi\Par dE-%`y5L.4ģ9Nw`3OA_/aߤ&5&Gڈ<\y UA参 +;C΍WłʀS0W7ip b!HMK.0 6sZX]FLzY7g٥"pi"ONH=| jnp^E)u\$J<PNfS=o^͑νPRz @/mt(,C'*v zBK9L@,L]27bMknj> }rejRLy J 4/.'8a|l;}qqx[T0[Din?p%9Aix;l)$bSn8ɛ8A>A˽ X6L{|Uv;3s{c?Nugz .ŽP5Sqb$fo. |g@P')θˏлlVL:o4p_gR1`%x;~HE MLm2&ыhQ&Q堜Qs,-'ū}f KG461,f'yXObW )ASG ,ho]'{leq?'wpp ٶ/lO9.캯p>,1Ev5S.R|W 3F8oek B">d9fq"Œ}[NMI N g:+KoXguKj?*hb%Qi4hAAގ3}> +VՊ׆ܺ2J? [z5&qrO(6XT@@:e#ӓ})Qd/ /r)Hϫ"阜~xc UnM?^[zME:){' R_Qyni6-o5 I=ף12/3e3ļӱa5x6h/y`B16K /p^~;_ղ(gKG6{ߵ. y)L<#r2G'D s!fC^>>g9̊MzeO'C9~G Zˇ=!'Cq9h(s&zY"p aUkkRiAbt(dgt!Zkcfݻ) j_)#Q$9{;V)剏 ; ӠKP,Ihfnf"nBR;TS6r]Ix$wUF?$ddi}k i!b[WWSp=mcn&uj[:yM"5I8Z*8KS}~_tMN -4M‡i,"܄V`_ #ܲ:xL>n]c1'\u _VH4#j_OFقy`F|R)9N) 8@pGHzB0%2_ח70LV#w-T\WO¢bZ("?ĄA?i B`֫}55+n֚RS^ɜ$ި_ǨqZ˜/5X{4Zeۭ^c( q\l벹Qr8s9JK&-mf[A"cA~ʇai. Fe_}Q~lɴ_[Y0 ׅSF{asщ4j'Mv4@*>~Ϥ}գK٨kM 57눆gZY>nr4`Ӟ}rQ(&3+Ah6QkW-;ϞXCLa2d@XQEQUVJ'۪¸/4jF9^Y_/a=pWL!*mIv O{WܥMKlwWře-!۩1ʳ6)SO%9G /dtg)W*|JǸ(R7?@)y-RQ^Hjw̶SFTyUd'Ec t@\~f # 3GӢ_F[3`^cЏ"nVJscX' :G8=Y| Q#/b%4@7LUmߑ?XqR*:fsKr߀Xّ`99M$5fm`3U\2ܳ7RYP2^M/> <o ݟg#+g7v3qT"8rN+$5AQo}Ne`H4$qWhhax>Q4.g:VZN&B@gĸ9x s)x4s۬?RJ ->jО#^u[ɢr=.SG&+@CGCD Lz ɣ9ٸ  r9$N H!&&So4ryQڶ?` mG]>1fܪ<)ж,Ww~=loĺ XP1ҸY|0 6ǖJ#P]ۈofH"_ˑFan%F|3 e0'\3D!tZ|C:,N2cF0>蝬Wh$>&F ZLeЈK\ԏVvNNe{_rPg|@axR1l.h@%P77$KOQPh"n# 2Q}BV6+- Ψ$h#WE2hwEA {X,}idAym lX&?[P3U$+cRws%#aDdt+3 d6 (+xjM2.4E4@v"i.hzzH@|.IV;vG/{0}rƣ_*&v6Λ`^xъp p$KJ0BmdDh(R%S[A1]VR+RfsQ6 Q_쭟2쪧س= Y[RmFNiHQ}axW)xqwo Sr&'Eʕ5JGU]~$ O|<<:{&S-I7Z"L䄘oX$&9'spQWne@wmewi9j+mjS '>n{<-ϻE=P:0[8|*JvB%xmQ:ǙeFQ tzvUBUy~ރI68峻>8hFN]|laHxƦE8KA+9 gVbѩ#)&Ī-P:}cABR,qx(܀|*Vhn- =yFhc)X(C2+4qlȵo]mz aMwhf\T#|rqӯ+ fn|7v)MA-I(~5'&ܵӫ?(S@ zcrϒPݙ~B+{iotY_vi4cڑau][i(X,b#GqCf87V q-{27Ϫgv]!h,P,~|o NZ2IA37-dY-8NX~J& XX,{%T3-,ZQR|}ˬ;krkRW( ~`.ABA^TAj'\!g$vw$ѣ\MnGU@w>).KA~1|Z^9r@e qz R9@>Tf#sy5nj},\m k".3Oң;{,_Ѹ>]gNMA{b:H?drCJiX^GsVo7nT!Sϩ| FE`yc6f*oyxN1mB d H4dVsH:G %v,6 '0osO W\P#)02'mk_DqM=oDSd r6bir UG49eV@{̴ tkeeBYbʫ ݌\Zq*A^d~ 4B[;-v{TR\PT ֦1F_"N8Ոd6pƢ29Y3oϨ>1vSoN̵vl(,}I[txK֪2rtZS!|³QmyFa]  ,몾\5}+ TEsM:~ko =zV# +Fw["8Hi`Jm]GǺH Ɵ/+uXiO¨%57`}\pܶ#jMLR79Tg~4c佚%5g;a ѽO(" M`*/=p[Mc7*ԊX]'y^*d i1FG .3OvJ Pz0(Kt[TJ:?(AD`X|ely$Ǝu4 .K%8g5["`s<O:` 9G?Z^IȈ+L'DT9 4 ͭ%Яo!csLMՍ_L7Br2pBR2+?|e'C GX~,͘iK~iIJ.;l<׿޷KOGTwtpuLauL)*G;sP]wwnn=K6e 0ݖ ԟMij]f~>=QRҴ1ɶw59aL o+s%VrqN(mmE"Ep\3fl`&,:Ho8yon[m h'f>8.SM(m<>Nn^T _i412_w)AoFwl&֢1 2 694kF :)n'U(hvU O@GDh]M7)+0xOa6Ŵo\/Ϸ*wNxiØ>lGHюC?I xz@y 45 @3l<8\Ӛra,)SЁkȽҴ@q1QOj{$ʑGB1wՐԢC^5`rzbqъ3;嘎,[ %dilnvq{輦B)@džG{BB?#Q읙ٔTg"s#l7Sм;q%%wʀc: w_|LRvoK^| :}z hoZ͒y-,Z,ջK+[ }9N빅^H poU:T !0+X%Nq3Q9u鿵ì*/"/KG;Qnh>*ϋ45j_lm՜:4"MRR;VO$G+RWck%Fi>mTb&xKFX$ SSw$WmB{%Fol3,Jtje@/2RVXT_*900nfpov1v+CTc4!!4$h@a:B \sqHv_>ek meP¬.#BN1Cu۞NéݷC&rqݢT> 9vX~Heo-.n> #0Ma78$\Lg_]3tC ޠ2[jT_p3aȁet@8:aCͳ6q( ֺX&DA*l lh-O,t 6ҮPUzP6d;eI$VXE?aB卅kfO]45Vl󨯗XF.]x kd<8 (3fBsbiQ\O1/0$uR%GJSvK +@,WeøR6g[@:y1}aؠA0#(3/2D pG><&jEWǎ zH]M5 u EVxc1όѥ%pƈRQ̙L-ET$|=?zb߯4G'[GC}/ (UHX`W. ,S&`BjpB7k -q![+"@J)^NÔEMTid9/t=_Lc(jHtsMDh 4u_,Q"daƱGy'gF))XcJEa2޺V݄ Cw۪~c)Cu9Cd5VfEA+o#h S/F5o-e38χi?&/LtQ'“jZ,(̱vZ>}Ŋe3[|Q0M͹FGbӏFuq^?WTL k㎅a5n[H㍱Hǿj%PiqǠ3_ˌhNc=jeLGG3{iyٲ\]Whȝ$P-E K i:X´NT=r=1Ut9=*+qUj:tRdҙ$(C`#;s0gͽ`BPx=Gi#U ntys4Ϻ)xu߂Y̚HrtZ_Dttק#c|i+N[/OߡLB#JT_:8V C\B)5ƤӕHf;n\j 2 #5+QK\ٵ蓩5h&Idʃ|z!$/uQzXn7Ջ%KC3 dN-,4t Mֽjv[ϩ[dU(%5r1 m-XR~||VJ]Tl{z~ؐi 3Ԛ68--`R_Br(?r ͉mjzK3򬞵\ߎa~w1 ŜwJB|kJUnhZtJF9Ht3#'7/{f&gE|YP޸N]r Z뤸k(xjQoqvXmQHyWr `dSA' 1ut}iMأWV%zd6pZ5q?y%YKxZ)MsdLkBxfbiz<Y#e# ,))MM^G۷ ^ni 'F8`KtU盂0Lz :WFCA7vr%=tH2תy_  Jh+e NfUR 0c F:ë^;Eo9.3nCj&LR@_'̲u%JNkr ҐuD4cM B MOy_kCݯx ,M(5JD:{{ټ'}lģRopGA KFEAhya؂Ԏ~ܐaB%jcTf\a%pT*X匚!]RQ:1Js[hJA\Ӏ7UT6-׾2]PL"9AjGZ KϮܺaNtew3G Fwk* (aVZŚB/pL?Y /Uȓ%xo$nAǽ2 yh\_$zh$.4MJ KI&=ԿL).O\*P_`5kN۞u 2G;U(0a]G© U |TX Z>ˡ]?ޭm>l$N_+֝Zc jQ( |s단 2ANWу&qu/ЗoiO{F]6Dfr`%!63_Si (1ސ}Km&GQ ]Fa'ŒQڔl JLGQG$ÂdX!0u|yrԍުt,AWE^ )c ԦU.y~ӶJyTݿ0pmde 24w @ 'chR6}bP[/[c/GmP2 6bc&, fzD_%qmrLrR>1lhmSղNwNfb,adUӵl"r"]G]RԤB}5xs}U ڙtZ4E!YՍ]r?{`!I/kXR>l1|.L7JA)x e55!8or] &BCSJn'Pk Dx$s%tTKt`TkH/Cxs e!S8fOB >J}{3N7l䒽NBF+M$`w>z@Sb $Sae:ũsAL/neoߧ<>M[/::`5Y#?S̔Ģ sO{DMDK%"̀D!`MM~&q!9@ j  60:RNr#AH]4ߟMxKݴ0YnMHX\,@ɋۚ'D@Fʬj"eu!ǖv~ʺ#H||F@++L w-AZ:!1Or["u"DQc!eC u?I⫖Yd< $x#rzCJ v+C{[Q4 y Ѹ#E fr̉#+:pw zk+V2.4if`QHpJ(mIe,))6H}ޭ؍_R7Ƈ=s#b}t4Tn#7 HWZȾqE>jv@O}ߪ` Kglf ߼@]:XskJ%m;3 mMJF'Nvu"rfI>H+u.>&0-kȾ`U%yZEtDW"_ls6*oo~jQ,Ե^I\xu$1^GW%s'4Ea; i)ZT;e:l_]jo=οL`:}El^gæCTC's2)E1:{-xpƃ3_@"tj"n&ct6aCܒq7ڗJf@LC.whH^PW#;{PѯR18y$)~ Ο:e k6lɆZsTbd׭5B qcUĐ1+a?)̂!czO@KdIz̒{ -nK=蒊DqS$G2Kewq6"Wr/!ZڰËFnʩ췂 armQ@hИ:!d vvfȿTrY}]gW*jphPWT0>][4;' m!vd16D 8K9O?E *Mj7;nI:4ՂBkZSY Gi @s&EUFsʭQE[XZ k_LnFɵ#g;3 I+B0PU\?P)= gحv&TM Be0"KDk2: ؛Y3em|5zry,x$WSt3WrOkP!ϮUm=pKͣ]i8iUJ |p9] F <7,bplD]fsA/:~sp3lsl?} ዃN<^*S"M&$=I"SBk$9L#e}m/*OMhzH])aaH*k\PߝX^hw1]lCV8jAD#mԝ&$uXk5Vv^ҩ9z[p?=@.~ږQX?!CُP&~Ԑ'WGM;[7yn"Y8ٲ=J'x@r^ dqĖ O6y[jOIWыe!R\t5KS%8NY G+lʫ*QZbeTۄ)j7C?ٺ;uJȾ%l%/>1]_ #"gU$ YR j-e S!UdG^?]흞Jʰ_y68(3G34@k H!󟺷TވewɎgNP/+tj ,Ljs2~ZI،F6kz.VgJ Ÿ~i~Mʝ2! " fljl $hM⛂"WN%Q1Sp] PeoQ; w띘v"/jWx͔3n#o;=UUSz}kT#NKf[z:7:edrx0W.Y5sKLYt{= ?yHPc}i/sw) |#Cl'6tXe6_kdU nZ×&W'p+9.PCcɁ%;ʅ+"^v?\|v?M͢\)+kfrr= sE1r(z^:ԡzAeQUt2?TUjfr ;:.vx#[tjZؽH'KIu =d:62,ɹ@CkK&,S7oQĨ?H&! II8 0Ě^WIu_]=Yo~$4ڂmYC8), jW64!q  %ToV8x`W"k:5j+uW>8p Q9lb;fUaxdYsP':o ն3zDt$v'HL{S2{g9| ]R ݰ`󎺔v{an`wǗX foMxdRP &5% na\4h]lz_V(Wn!JFCFüٟHĭ9XJ܈X&3 FzxwY_GM{4`2tLvdGS)!ta_wkv>\V)[DAG'oKL{pK.&=^s ~;X?gOO/}H"RRmemibeGՉreMW.4Z>8a ~c(]=1*YFaͱ ,TTm)aihK~k}Ԣ\bz~l\߬<ճp/VZv3̩;zXZ=K!'5"q2R6ATu~#vކc'p:z%r"o).LrV ߘ^҂ S6ڈ~1P8Rqs I 3SŘ7;Nwג4#W;ʹfl`CUIyBVTgQ`?<;AYy VOB.oq] U20LEtIӀ "jVUѫrHfӼ|_rvGam<†j)Սh3K"gWʸ̺)k$gsY^OZmil/[ƉdM`*<'-16oTp%yɀvnM<G\X家Xz& w);1pd;Ծ]$_WˀAoSA C,E&dmh܊G@Zo$DnoыCdW@N'ġk^|9Xj{SZ\@gUQ-c A+i yNg 7H- i:GX # ~2es/_Ӏb5Jלz%6 *41M6hǙSqzS2Of܃ FM#dOk/u|YX/w}->o;@3ϊ2ȝ2,;Lw0N{V?uQ|nז7²}N-W; 7aSerZ]J)_>[?OYmR$T޴MtAc[eSs (' iaPݸblY$s QQ⥒[3-q;_Yy*v(iE=i!)[',x0i0. 禠R[g##d&.85AyF3<DjtRmoY*mؠTE4!B@If=nbF:{;eXj  ;Oe{[nPJvLG?Sv].*15ʦΫ0%}zgֱl|I;'Bóuje9%Y5+Iȡw4ulM|iCC3hF +Z 8ވfŗg-.v4ÄDQ{s&FGk#,.,C BX7δ|UN |ͣ`A#fxA}C^b_= ?Jw-{f,vƃm=d|mRp" 7VYs!EEJY,sYZD">0U#P7q)`$<\|Hg/P`փ(v 40| m;- c8PEqk>RzIAk:DR:rߜ (z[ٝ1ѵ9 rG?F;!pn ֶ ZmwYς͙7(#݂vr 5}Ѥn!3{Z4`sW ~ש"25ɬ*ǀ5q}tDÝ73!$Q=s)G1i, wS\5GۆPr[ ئ2ꕰ 2(X˙0f?1UJ;#@xv a/*5n] ಬL,lAx ntcn7%tvQ1"X0YD&];ƏkBodCtn\#Xp˨- "5PuT"lW,Y`xi#i^\a{L@c0x=XaW׊4 ^Xۡ,3Zђ$eD Cʇ+ ښCh% K`|5 6v xQ )ǜ9$ĪvT`{ @D-b Y=ι 8.EfYG4,.rBjX~w: \4aZ0X H82M.>vLo,|W#9jcB@ذ;EbcjyeV:0u$U^7g;1VSr?nMVBcoFQR,-q~6_A2%~ DJ6jp;VAQq" UIBвҀ%~E|/d@Hv{(6@i1aTX 0Ս=& &pk:#wzVǃ@0qѯEV^Y4[^yqy_5u!ﳫYakYc7QxжgmpJ3P̬..6DVUcQYv^pdf)ڳ9n>OK"i H lz)uZS؏N nve#G,=a,9P S1 VO"rF}dyhǟhMG@~(fO2VACpUg} 2 `X a33֛nķ,sK&87y˥e2{ 1 “/x v.+-fl:2(Zuk^W;3̄Rh6bŇ%! &EcE 7Mte=%eF`ןc0ĜiyCfT94Oaﱢ2lz[Mu[q} Ŋ70/6y7f8aߓwZg74rv(?/t+Kmh&g ޓA Ნ*>Cp~&%;劙,G [RpC;3քv5AlDz2ml+ ֧Fڛ @j_XFwM +#x#@r4G/`^#>(lj_̕d4UQ !d1JD>&R~(;]HuG΍,}B϶)lkq|tX{N3sjd\qݲ DƨYċ^aCy¢0ly7`v1JY`$+pJ d(xq?"kL7Px6ciPDpMCx )z-#yih} x  akd) i axm@Շih [WhÔ@F&o}hd;Ϥa\Lh@o d旐J:AL.!AF<ԄK~"k0=ѿ ;gXdAK#1/FfnZ1.OH?k")Z$DƧܒTV `f%u?ax ;< bޘgɹ~ӵ:v5YtUuGh9(Tm#i\Uw#W(VH952neCS.Lnr7H(+r d /NikГG75~lŭHk$.~ȿ7sW*7Ə]pTaxy %WG&ş5aHɩtӃWZjʏ`7=H9 -ȝ̺LX,vŃf:"R'Y c 'FTL,qzm(.Nf솂䗉>%eٵ} 헥+oX#23#"%87)^Us}v˦3" * ê9p#ou6>  !WK͍{jSW0VBxWo$4dHlƤe_@Yc0t-t•U4NEʫ  >5ud)IƊ kv$!\(& tm'7BjJaW)8޲ChMgjٌ6Dj#Q@?eJxuTޥvuXtR(X}LѨL\ί"gRmIk 㒮_6^x G vAZBa=Ѵbr~jQ(n0ۖ!ݪMD8̰W|vWrp~nTH|*^M: ^~IDF}Ԩ!͑UIEFVDqUUQ'HaS %Z)׼CsQX3cebӐ͌O;z;H39PX` =GdqZA1!\/Rm NYamycCGxDť]@Sjfá0ц$ x~/l5r6>U|QDX>An&QK ,\)gK+oN{D }/;l2ml>ĥ8;.ّu6<uYlKc'aJKN}6hS fA:ߑxދ dа"`+M+bqzqx_sɿǵv ">lDY"`!NsN#gpt"L]7p:'(@pNBI& B# Y־$c%O hm7HlNFoh Sl6%9. {x]ωm:{&unīlSɋ *qj^UqGYjs_"f5֕l#Qhkˀz4Zw(8 S9@a'=={8;e4[J/W/)4qDmMUżnD0?9zQi YWS@in-0p0Cmi:h]+d MʠVs'GA:rCWtO?&EieI/`x8 zzQr2K>ڨĹSGl2_HOUN|Pq+?u 91"5cKX{5#R0ȹ yEZdgcmn;jutFh?ifneɕ=vY9L"^TIcnjcpˍ)Mk%}߃L3 %3O(;d!8&ͤy3*ÊZ43 YH49M* ̊-i ?CCR踎 .4!ͷ2QöM!s쉣ڎ' Hه ),܉j$dMDHwݏe3o9\ggPtC4ZnR>Nbp+Hw("Wxh'r]kT8C '.h`^"8to\0!N?leJY4[>x's/b$EKbo{C V'XH Nv¼H!Uvq,\&|PVR ru H^aT> vx',;%lHrTxm(>'PgڗY &ds+m` !{wP'0Q+݄!NR8מdHk C ad-:HV}:N>Jy'MkD xSpͶ~4FoBB2 EIp%kޑ ^^Fܒ*kmLկoMo)ٛѱI3!פ)n"&EviǤD a\x4.2xG'# "W**lq{23c#`0Bf8X0Qؒ*oNioz.7vz+-xw:]yb=LL8Kkqfߛ&:&7V9bI)W}c4ކw4=7UܨVQWg[`EGuġ끃? aơ 5]vT`6J@#ߤ%lHM&wm_CrWa EoQq̬Ŭ\FKh& fESmFT kPX3~T[Soخy0 :3隴nV;QY^*]9A[&o))_b%w>M&X'}UӲOJ7Us+->0qGt;y\tGĿݶ<؏iCPVn4&m$I?ϓL"ɿ@$g">68cXA'[_ e+_A #V*#&Q.ͥq(E80 mSc>`sN>* +3k(KEY%_'x>}ŕ zY.0UQ-pmkv3ʝ+cbSld?!?!AY^v)u𑓲ZazH2gd)^V!sO\Pj{hNihWJ^thZ<x_&zՐQ5u1H3HLQ[[^K39eyZyK-(QTdX`șr{ N&dß>JQ!b:$ 벹֤S$0;cp?cIZ.8me+cBl[ $Dײq"7񑝛#Wfj߲؜6W ^`h հkbwUtK{cvi2Ko!fuIQٟt܌=_91^Apnp% }G.}\:5<)\O+U:C<}v٠V1J` d,9U{6Zrƫc<y0Y0~c;|Ɉ=W۝NFcf9[1?9oz !pw2ω8, "ګo*aP}ub4S O8f94ƑOЩE3D; Xj>+Clڭ tR:ALC0&{A?AԸ6 $diODPغՉ- c 0=+N5d^eR+˜\յݗ58-k,e'F<_ 9!@Q6?0=EnQd݅da:ʬns;%ijV I4>uQ-]X /ۀdP~cʁ eBb#[m`G(w_vhSCg Gm4drjôaEzCzza!+ijџB1_Lw:)4SaJ4*7ߗ}%~<0(+S(j5ϴ%P .ԪRBvgO⥡EwzlxBn t<߮-t/D\y|"P,TS?B @DžlOy7;; J9707.Tu3Jr67y$ZT̔s)= nʑdǎBxj+_0}ъG8% MŃ:xO4 QR6`/ov=8\K:Q ${\ڥ5^ߺyݏ+w2;-]uqA?Xc3\;j RSЁ1»dFVy+(z@+|5>Y_Ps|4&MCzaZt1)! X0_ŠD<(ݞz^X_fzT6ؠڴp_X{BgԊ"k?)U)UGtp]< v&~jgKKQͤxV47 P׷oJ8 '%a!m*2{UBFQD/L4D6_sdܿ 6Ovo=ڿ{ľc;:\8fOI,"Q-`͙C@qc7So&jo@i}\4p? WZfA?~F| gijfpQ 4ԓ2.=OyPpߴ!PN!RW5d{*EtDp<ڡv=roHQJk#s~RSjgϡWTeY:Q!l4`_&W!(iyQ@r8$#/d @NTT,cr5TD>Ft&{ِY/QDw0daߥ}9@-=I maI%įusw \\f2lWAҶU^<6a`}NE ԝ"?<)g`]nc0KLuᲰ1MJd^ɹm}jG@w6 -!vCVdѓL2dh?69G' AMه+XK{M.\.C^|lƃ‹R8`1jE_fYnxO3jKWc\j{"@4rϺ(ĥGz@dMQH"*㦞Yf_ػcvJ3=M:g$-o}HQ "EEA|3|zQ$wH'*b+0ݞ^1%+iXE7"POzԎ¹9\K[ydV ~O >֪8Hiy(/:Urqpl;F#'"_a/ q3D=@G>l@AZ!P0|t1 ,0- }x U((߼?{i>+Ώaִ$;Z,bD˻Zѩ_tQ~gIt f*?hꅻ%ѿ{qv A|R# O4IUdBҜ$xU/A$ۈc+rmd9P!K9m _s`Ş۞rYiXˊdm3=++u&sUKOЍ"1Z&5/Ic)@6`d[E@tF5hh&7.=g}}(Xu6[ҿ0m6qcEp6PŽN4kEO%ط9`3{WڗfVe8M/jQ;S䡇J![7c+U.vDfSN"j#)lM X >ZWPYx3^`y֞$CNNq("l@2!&xm_Y7ڕNH^Kr1l&Z'k G8mⓠJ7`l0GK7H ױ%7wdfHyveD0Om}V5hd)迒ma$ˠڜk@{!;RpgFU)6  lڵRp`r%{hWcG lusfؗDa)LOSCB,=j8bE3w$b,7vo |~K<Z%(?@jX'c0hb:~7Ch_|(MAd"-OLM1mO|B .H" } JEzf`@Icw ;ne~f&ڠY! O7%rA?K6dO۔PS\)~){E4nGWq`bA*{ceWwD6"dB5:+8EpWPںRbۃ Dj@#xC#{xx`Tf{iW3eC0. fv~B |]:b\` 8~udt0~-.E0r9dԥpG^!3ZVj$Sj.J%%݌4`c%v#rI(/&}[K0ue׭7Fx9%{,&y6j8s29Q%]^5';QW85G,FQtC^bHE(#fVbX?T7oUo;f{1=]$]}˷;[39]bki7F.4Ȕ.[Jt0"8${fΊw31Qs F6kј"KYA^ML; &><3=Mλ+5$XKgQW2x P+PUҖ*{K}0^BLܒoJ{p;o.Q}SG4".yZ3ȏ2c(<lz,dR܉ ּ#QmY4* .%>!8~ɯ D}Z>QG'5 /+q}–yЁ8D1:b HAgzBbSujٽJQ&U͛/Eï:<8&fyY*=u7Rɺ7Kԣ.c9iN^Ǽj*E+xJ##(Qi!FĈ 8⇦)/9bH3_PCw냜1C|X+٨_b|p_e%Zjv68ʷJYN0~="A)쿜I&E!}Lh$A U6;&tnr|{ M0!v*-IqeWpy`Xe/ʭ=0%N5Eߖo?z/;wAce-ZhuYu1m*xG˴mBsXA΍kEL1>qi=nyj z!rmow!*d'އa&Un:^iU4,.};V R}gk2Uqwv '~szK\܌ZxA$*8$;aH 'dFpp-iܙ5]r"c>$aR皋V~&-?_9zqy5OgR,O*8"$-^Aq23(R|} S'La2z8b@M+[/cv|fa#rw. (pzFll]fP?A2l5\xe}"W%c6uE ~ee? m:sI;hIe$/Rl`1odFt:@ɇ{Q^qv[yi5r2 XVN c\`=ZߖlT_nhq[5G9%N6:In0€Y}oX*%rhBhp\͋ѣ݀ǤibcJn<6! zB}Qeث6;/kndd3j+HwJ++/Ꮤ-, A2x ^uk dR[M-`քݲZ (Bz$_B u4)ډleUtĬX2ː<+βPGD%L#2k PUw9vۄGR#-nA`񪖻l$Y q.vJboGKZlߨR3 " 4`> Up:*s<s:M0 m#QRHu9c]{zGjIR { X{4{U鵭ׂ%l|$a΋+(Ǯ)`$5k>t?;?dҊS .N O㎋wB1S罰bm/s߃w[qB7vq,<)nS3K7^k%hyz}m?͸d2;SѵH mŕL RۨqPw@wOE14ƻϽ>j6iSHJ>]#KdtvϺjC,5<Òz;_} qPJZq–TUro9QҌYK3jWBYix5L9-1 ^J9^@5i{g86ei7{:JxavVДLB!B=w_sE$B3-UűgEƉHNJ3.5L7F;/]O.Ax<o )yd_CFwkiúס+nN&@Y7U_nyK'|my*w ͐dAoYó)`m-k`cdDsqwg#? 3cRRYo(r_^}2k2KH;I.9K<EZ TlN+/LvoBX1Hԥp!@599TXz4rK8+}|Nx-4Z\i ȐǻW_)n!4R}]W 7l`pE_68,Jr*9!`10ύ5֥^MSRUSla7MP(fP~]ۉޜzC}<9jCyI,ȲۑGGc: |v`pNQطѤgWe.4b/|j!zS"i販(^A%$Zu&hܛ<`֘pm 7r}>v 3jx8d]-@Ui\6Z=[5Q%6s`fԤ lq8 .aT\7ޙ+= nt-V|SӍFBdK}KMy^ L<~?BdF;[mCwzp,EʅvdŖ~,)L$V T@y?5SQ> hc%r%8=Jr+w;ۈgO/+lЏ2o]j'LvB=Ud{ҋb<ֿAm߈d- K"0^?VŘ}:U%^*ʶ <6˘0+JVZ3O(K,K:x4׷Â>J 4aW68-̑L#i|B`baw`:A-;7)o2_F7X1!PWlI=eíۙfM+T,=kՑϟXh>ZPNM/ȉ0 DN a>T/Yr`[fAS OEv[b)=x8bI:k2e.L5]$x6 ⎖_bf(Kh>QJmw/z7aldX$wI`D#/s\.D+(^[Y"l4 eߋ)_[>uer+6qsZC-&\P[Eڽ^@'"ZԴ6.{܌K6'B Ȟ=:In4v$Nq!a/#ʯ׶&ud+xfɻTޮp{nTN{N5 rt\֧3rkT Xx5p>%SI"x}[*VCT!#nvO{Y zvv~-9JȲ݂Z[Ny~'C4"oq:Xc F/YwVmLО |eʣTM&=3hfKg?3L4  ٣XO)dO,?uI[70q 6S"ӍQMYdf}6ڢ<dX.gZC٧j$57ZI>Yoom;awR]jba|Y?MAPCpGй0Zp*WyN)4u,͎t|$ ^MH`ƻa": JC(Qr(:<9-ӣL}RPړKenm0=v6>ЏȶDyfS~e>9STq=lxC@ !${􈨨ԿP(ExKmvDK njeyֻg&WXRbK5w]uZb֛[伔nUn V-FV*60O_? XQw%ݳtǓY{ڸ|FZTFqxf>d-,NsB.PĢ-Gg^MM b v*,?{4*X.8.3Gy(w9R.Ce>\{ t"9 \p; 4LQ﯁hm'qi#?.DN0-!I]L%sV!{xb0^zfubפ.I&< zQi|wsgd;rB$_t sMt nXzw=pa+p̬k@ S/8%dY(Θڧzґiǭy` ۪f7YBg߈qlHPԨ>_vܚ}Kx5{p /GGe)l-kmQ!$_i9V:Uݐ4]-@epcGG0"͡Px梚m137 BxQ6F\LN։F4;i+ poht of$_,^'%\^+H,'# ̏ X[oph"@O+}ḀƂnbW. I%h6 Y">-Zii,xX[=Zg AԄ!i|+"Aő9ދ=w\R3Ė8~E~ v~D[J Nb9 'h{v%?)-9 :8fM"6R+A:nNhߨQZJݐfEd6P< t~W\A&C`DY"DI |1mZiYJW#-ElvƉP1^J[r'H*Ļ^YF4D?Gn^RP>>W4=¿eNj<"UiZIǛ>UI#4"Kg@J^Q wKV. zfWG!Z8QI'sU_#_laSi|ZPgLcB/ĺ?/wQ95kE dECj|MÉ c+7+=n-[[FձLe}hYiiM2 x!=zK{V^)ηC06OWH |`6(~q}sRD3Ob&1Ef`>c+~}ZqCfsG"V.o n#kFdf?NvD2c)-&)IU|dJF# /02KQރh+ui\z39ǬpQ;Oe R6KKS$r Ji^|"P]rI"]Ԅ5SiMm&1ŀXh33hɃ0:1kfNbX@cb{t+wZ`J1R</|gjsP2C&ľ?>83|$*Ь!Գ4ia87`*P7e$m߷44Pli$pr^IinY5ކUa]J1gfi|I"GHrBPQ/FwUvQLcNkS!4 U짛HM0M%Řϱ7ښU2xG] B0!؀or0 @m:.:r?{:O;n@SsY8>VcJ/3~_%z_{Ńv+QJ[eߣ&y+9o BE+ɊLQGU:p፷#2id09P ƶ1GKv 樳e^{ƻٲ1L nhip{4t%mbb 'k!ïEO!Lof[ eaUwSw?YIFϮWlj ɷ;Jr<8-e6--.$x.&ӇM r$ ~'G>Z'd`;Np4 Eh,24ӧ0.0p-U&h'1G(Q0Y|Λ[`hUr8m 1_W{o8QPa^$J^D&e 8Қ)o _oi.\Fb{ZٜMIq=eݕVТ ZCٵ<gZ4}_Iî{cKF1BaQ]f̿Z{# D/U~_J=7[T5Y,ߚ"AA_t^wI,#%7{ $-P>H&^ uDVyqJI 8%/Lf 6tsώ\6Mot8=]-#wމ}K_5C/1B8@̦ܰҭ'A.vTk<@.73avi0gD2~cT?s<@bF;H2*iuR+56&]'F3LIi0du/]R|/s+{fXb2TW_a-;K:ف4yg3~]O~Uahb+ x+dbTO'U v;MX:vmtlM Z.VhHHUS|]V.9F9˦k97]C@!hkx/!$*ËGl&ۙ.ޥ0ym"G0A:!+flO~(u/ub\ZV@%:ƽ;.`kË:o[sؼZe0@23T/A[!N{t[:ǟyNac1+g3.ч "Ƶ$L7p?`Se (UhO*U ,mf7@T r"*1@Z(h@8QՊ6V@swswEw PP=ϊ$HU矚7ị)~K -$0N/?ǥD$dZofCsЌ0gMcIRT4%ɷ+9mx{ =1?rO&9pR}{D?'{'9 X/ynҙA6ۆ* U"T *'si;cIe0MT=ܻKn'9-i1*34,6k"twjB(*Yzy /~YLa<Fh3}[hD/ujM-&—^x2H?Bz <|A4v|jgN!m÷̄_q#|ҭ)f딦CM=V\SsHz[2]2{W_n\ [%PEk/EU>YMd<#%:fP_qNBA) 7L?G$qEן΋j$ZЫ3=f0!Q;Y*G4؍u\3'Wg Sia@Ń{9ɜw 2WP%BVKIJz A%w[t5i(l $|7{P(p+,74_ !3cVhRtM Ϯ$&1b AvcP%PGzmq:x6iJLrE-|W=< @c&th<>u~ͫwlEz0EB!r'!+sЮX;t  d.XdOkF) V5ryfp ^IQ q̀WF؅"Z.{Ǩr&5%W)삏:R :i>qb2b3cr5 FQ ?1SJ}Zc!^&.BA D?Tr`*s rQsNqtH8A'(l…p{Ƿ`4ά߀ 7lO%n:XFA}ҝ%c ZT%R`,=C/2<\刺oF-L7om|Q+-e CXBh sqXP=/vo !V]Mr`,<Ɛxi`1>zW|!^6^Е{~c#NBDoQ3vIlN^i.N}'q%Ik9kRX_/Fӵ;Uv/rB=W(UUƹ|Iu/9TCAo" \z7s٪SE7-B8 |'<3 gZF8D{`3{g[.4^3 %)^VvEmP2oɏ+Xʹ#TdoyI@/|Ƕ.R6b*BiaOz0+;|l?Ytc&$ zl'y1Cɳ x`S/ijUked:(¯59Ze ~ Ao%"K+zCVHμ)tN%[í}vf|A!ly7]kQf`\x*Oq/[aL {x;vT nh >$$ JF yB⳦C<'kL$ɟ/J#*;'TT< sUeG'Ew:YIl6ԗ6!Ph&CdNyZN3 1ׯ9\c!5O~ ը{= Sw*?nѣ:I\kx 0|C6_c샟\V2Z-`"|J;"ɺ.U@6J ZTBJ#"@}vxx7:XGq#(%+;QD&>˹*g=ύ$Z4/ٵݨ,io26M=+?o3CtB3 *V$.QcU)XпCe=e7U^`>iDk>SWx] 8P\,xvJb-KtU{39#V`Չ\T/{Gb p O'8r5 ՂF/1F Չ6*)O[OAC>']V|bM*; ֮/v.p8xv`p: fƦ׉+ |]Գs2*-r뛷5S3ߚ5zѰ@chy(c>?":wn|oPdj6PTL֝ggT¦ğnuب6U PhM},_|b FS`7_'b͟OжD M}\ gݪR<]\QVrF49A1rRmfU_p O޴Ma˶[y?k"cIŅ;$ԩe3e:VOA>n,Rߥ%VGx'1+>s쑸y{/ Lր 0>FӣeȺF^`ǒ"l&2|# [7~-ک,^Ec!{ _HAjg0K1`AƋ[vdɔlr FO윇/ϸd)/y@ DNokaMM6rD >U3Cbm#?U/VҰݽdDjLd_YN E8Vg)%}C* "ĚJ4$L.v]DL)^R R ,"#' ZԂ5>`X8`PJ!0&VVHQ֗pxq7\G b4,]*4dwGt {jMe2: M_*}o*%eֱn8$: A[FZ-7)xaKvwb8޺rj.En)cd[@)}N>cՔ3 EձO7-ZZOⓑDc%I yzb޸p-܉w ,w:>tEpҘ k5 OroyD|x'qNEۜP7P9Z!' (LEibɞlɮ( `#C T(bހf 0US[hMkP = >tqID'a(pzO#ώN`;j"B,iG\8[ʡv#'e;$7YP0?=ֱdq7 }6ȪƏ4x!U6'h[KЏAϧ;T U X(Jc ='1G,)ƨ&nh_#-zDM i̹)àW,Qщ}DWx:uvM ˾&@ۦ ~_ȞMز[I)mYBly*!TR-wEEd9‘4Lz\o.qK}R+J2rX\|ظ ^ebfb_/Pϴp_zꈊ7PLad=i$_~qҩD?m;>$kO}s@xc *L‡E4y?fYT)P ,.b8xv.(1,<U\࣓V't~RpHR5?.‘ 1ߦ/27gM X]b`.e4GOHVhm0-V_Zϴc`0^*XaFcF'T$˶e8c("q2"5RbKN'M,}+Fe|ɴLJT/Fʁ$O"%#1>]s| jH ZIqs.㯯 b "7G/k{ޘFo4Jޫ:dz6\72vSwK9 M ;WG j/yKqQ#l$p 9b7cqdA{]e p(C"{H|+f#:~=qFcdᔬwvJ@L"D9G pp-$tDebW6FA pMCAImvdp ĝʧ.syX?b .Եɔ͔UA;:S =R'KW!V)!QYe=3#H(8!e[{"R[za¹vkfwZڑo 9Ͱ\{+ /sES>Ԕ\U6֒ m82#Wa<:Uqa3GؙLhF=!~rAQfsmu>)2 W:2ldK\#vE+`}*l@wYs֣,D9q_ s7GK ?j4CU5͞YO Tx Z|l?}|交#Q\]v.lhbJ77{a'0(]3;YRU;rgr>,ntH˳DkvBO6#I00`IPTIt3KJ6;!q7\95mLЭim^hBԊ 4w Jn zAΜ#3Es6RMZcMKǯK;[]UԄ^ Nş|A!LU̐ӴHX>ƲI ' #C_U3p mq9/kـ%]Ջ 7_ )K!xPb6l Rzu}{=n/vP@iN EHW_XY T킉u@n\WFeZ3w,&Mhk#=S0 QZt#~3FH+m!ڜUXN>RӚ'Spo癞巩>AmTu=B́TzǕ:Dɨy&eM?e|UjY>C]qInR84oG.[/EpX7 FB`vH`~{A;m iLKnN''P֏u-"\!G~1SHv=(U 3Dõj_Z>_A)g5Glχ@1#ߤa4sƤ##OID-V d,Lt%}Q<[WiUd9 ?$u#uk$ q<`*}ҎvH\( WFP2vS67"lmG]ua_]{w*1i[RTu~|FHfG>YĤdd77G4aǹĝVBxnl{mX^D{N}ƄW6߉D>ߞуOjT΄a V3KL<>-ש}#$yhceFM 9ܮʼn*r{!<&㯻,!!|xZ.7p;gmDc@`_?LdPe'u g G>/!᳨lG^J\KZ]k_d IvM}(-ORC;_IIPFE]'X MV!WFpq5SǏUIFs8]Ц:M&ǝ!V:&ץL2Z85 Q!?iWOƈXK?{Uݭj&cfkȎK"{QS+o~6T+m.$q*CSH yu `Ԡ:G\(;1KwqM~CKLX6ܾۢ*h>ؓڥxrӘ+" zifɨ G8С謨_Ț\-&vj'6ϲxTl^23 K?p0Amݥa,P4f mQbMa2ƾXTwb-Ì >pg&TN7Ed ^;{F:P+d(l 2 ~-2maDӿTL̮[ -($paX\~خҦ:f4r@bbhSw普H,c9!j."tSf*,A w0Ӡf-/|WZɬT-b4YhV=uyqX7źz#7I(hs5Zg%W/}9!;$=>:BfQ/E4@ *|bw xo+-Ľe,!j?qePor˳\:G[;4Ⱥ8y1Қ^=̿p͓$i |v@l߯ftד5k=~Ŗj;k 1܀'xޚBk@/ Yu٢_0\?$r0 ]ʠut1NZԂ9oL,$,^Oy.C/ Eؤm(W$JqJL_$d5yj,0߆)!𭘬Q[QQ=Κ+ˈx?>D'pqop@ܚyn_Yр>{,?ܦ-pzX Q.L&I7/b?x5 jCkfm_ĸl@I`U@I Uv<92 o(n Dy[CE"NN"nNZ'xrHpFM]#H-nR)EUQ_Њ-=46S Nh`i85{ScBҥPe߼RUҢ~6rSBt3s Yo~_@@:h.ȣtM1#Z>|)e5m0[$]B79!ehsg*B4F0 O{IWdCU;ҧ4hiWfέ,Ga0p OҨ0eSri݌GPcH8f&,N؎< #_rV׉ 9^ ^x3j]v8]; f' gE4f Ԫ[ NV`[ϛc  ?ӟPoCzyfw >T^ljj8n߻lĒ$0m7T?>P҉ărHꀰ(+iyQNt.)ݸ6&$)_^իC9 }}w'/f' !i/4P߅#>">*sVʅ(qv7-3I$ip$P =*OfZ]h.vs؞^x|[]y /]A %J ɎnL_AʕpӴÞVz AV9FcO DT1+)]ٚ ~L=0"p[a : vHN Dc@<2[ϵ5&pG 'LОFh(5N%ӂuAFq_/ns\0]1 qd| ͷCqsMGSbpg$L]3Iξ/6}b"b#dYEuPRĂ= S}Kk5Cж"U$JMYll&>ԏx3M[ ;C 9/1+k@·x6Ҟct"Eu!Z|>#(1K FeA*߆*9!vcA*c vbp6rlzM[/T##Z9Kn²bܺq^!(n\ .':A*S {\"cʇq%Q^51u%Mp# AmN?H@?We8RO/tȱƈ1wzq(yl3խ7׵Ҕyp:}ЭoG΁X4C.[s.wq^ӂYC8- "{9k^/I/[}5Qc59htEz?P9S%1ުj:! M(s^,sűY~00B0.ټn™u>c-g7Rbt-jPhjp(?'N\bxTܩ'w)VXsM B7vXLҲeZ{MBakOp rJ\z'̪9:]C;f:*1 ‰?߂a*1Lا]POEݪ$sHRq̑ddU+Ͷ  AC]/ W zEUp–5gD3+~>(jS5]]Gh }LH\uę/2-5nU7kc̍F2 9iWb SGQCXBbﵮ8-4DYr`gc#<8Lr[3pi;*bTUXmSVAF7q:r X.5+y0^*|M"jZs-)Q">CֿLRŸk@&!U^dK٨X9Crz4u?g4y`5J=,"8-=~q ]@UMCM@5'e x|b7:>TrdزВC hi>R}-rC7hh-E-xNcfU{ I(LJ(H*l*ɬyNȫ`GLW[h3Q0;uH9eDޱ6wou^d̸UeN_o2 DPYzpsavh"wrvglRȲш9%='VNRQ* JSmUKɷ̬qpubtUvLs! iNZ q/uј oL髼7 dJ^E!ecMu:H^^)Z*qL:E0Z`J* PK?Hkr=Hj?O?gi՝7`a7t_Tu*??_V|φ\7%&UUGN )YoB|1/׋$ͮn^A].O3,$LT2$$P6ԚWn$Xvju⃨}A9/ۆj'ѦZk8 狟Fbxڂ)JU8'`'Tۀ*7y%Ⱦ7n3uܵs I*987*MlX$RvbI C%D DX[KO3-zG"#RջKWʚ r^PHh ?Tco2I2VBBBq/= /G-t7`u#3aG;@EjuO*1nu!"͓E8{+vۆm2<3&3+oT͇M秬WWi Sg%OfDvV=?+EVzCלhdAGDe^=6Tv9/-qB3@P}>m Y{sz 1l r,bl] %6't\B]N6#dEyyMN*Ł;-Pm1{-Ҽve۱ pz$P}C}c%.͎lOͥ%*ɭw3v2}Q)n8F5U` z:5E@Mi-K} w&oCނ)֓^LP3Y77W1\nO qC{$b0cQrQmngڀv_P1iaHgI;~=ݲ6,!4 a!<}aG>,3IL_ORcoR[t0)2ao2Jy]r15'!A[Ɓ;?Y(kT'. iSmْ?Å]h!-j"ebܡksE= O\r LgwTӹ.>8H+(vꀌBFxnUuyЋ5d<%Vf'{ȓJُEu5I,Gh)=+#_0EGvu&SHĚrOݶnj5i.:.;~rMF'nro& 3X=,x,FlbV>QyDø=vad:FCz /gv.3l<-o JD~p]*.jЭ Ün_T%G+?I0θV~v:u Ƃ*k&mKt8B"WDӒ1LMmc.}#9`-l{hD֦o-nAvRߎ{3v F6h#>_)m]}c=ucv$FZo mlt 'k\*5ElPsxQ=y% V)4-y(dHI~wY }GblZ_7HCBI`skن 'I/|)j˘@N] 0ᛣ\6 r nN ͪQOϘ}9t_ 2iBKSz$+:.ԟ9Whn~9;C[ݸ”N:Z3l+N/-"rz͙6{32!>Uc/u ŏ0p=X %Ͻ$nJRg}-\erȗq)Iy-$y@^,dbeqAo)eVlH) HY=ŦOؖ$P1M[߼ ,{Vs\ >11>e|-*#2q:+H&(zhƌ(* 2eS!j[4ċ⌒{ faG1\^@8d>G0ǔ j b@S*N[.4^փӯh|Ɨ图M>3zT-\OE::Ų˫XzM `YMS#DyWSAC{ײ&0!{!ΞT?a+;[LGJ/"v!^yr{n,Z* -$"ދ_tf,^u3F# J*DzEGAuԠk:.i/ᐏ$ F 1y.aU%Gs2RcPXըܤ ԛ =)a6 3hs@2RQ Iq9bewמZ`_k0 ?KzC>w~nIK`v5m".~e1+(wbs  V8]D1yܗD HZNEtiRKJGYHq#SnSyJWQpjCޛAiyZ1&I@Ĥp1pL^|?*.#yg7vfF#0[JA|U MI_)~"mb7=boxDCoԢ)IqL; @~Mq:Ƃqy937$%!L <$wnlnS2X$PY|Tjzt>3ՕP G\scTFɩ_'TV6єd 6}wUҫSUZ&ǫY`s {՜Q(94=J tF?c^{dI4l8TR F8G)}&өE[i, y{J]J\pZXs_3I`Z}3:DRI}lhYFP9 jDJ`8>P"I4+e]7=(TX#lvMpqk6`ؿFcܙEXvob0PEV MD m}e6oi޲"tU*wm)9@Q<Ŝ^@Zuw|ON/E%AFj߫̚?I$1Dy=(wf9V >v/UZ[cP-ausG(oRѢޗ0(Vt<̯;cɰ7E&Eɝiy=ṞϚVbV31ذl`X[  eq8uiA1P@CdBԷA$V*Z;r`q H/S1G9Wu[m6m % s?kAd3prgnE61!N,+J,K|~\bD$'>Dl^҉LfryG6k*& ]\rW`Fj h3yXY/A:ա#+O>;U;J 8uXO+Ǩ4Mr[YY:I \ںcy뎙N!RsO(aYIgt iΞByGהOznoȼ5Z G8 r/.?۸͜‹흂/g<øUG7T$t\7\=˾۪:kQ*as˨uaTi PS.7`"W7n2)vQv5١rCmwr9FoڪDչk'E_`Gܷi`gR@y/2Ś܋w$qvƙQ L-0而J(& U bBAv6m&\z|%qOlFѲo?X LWtlޚ] DQJˎa +t}ᑛ\^+¶w'\Nی}ϝH)$2Dm>ƪ;Ԣ!v+7p0,vŖR,3E^;(`s YʒQir~v=!!s:ctZzhrB0q&p>vt M_&8*itNnD2ͷn@vQ眽Wò=1l!I Ȕ^*$!^s-i.`iCdr|ZT]q&>ZP <>{%"ׄ>K@)r0 W'^RЃ<!3wߍ=Qas.Teoci"Ҳ820k EWI󀸑MԂ#gũ)mtӀXE;D(&OdV#vݰ ]L8y:Fj <ԻR"-7%[ Y#6 ٔaY4g+_j/ɓ(G |EB1W>, `\Ŵu^ Y)ӽ(3s_f3#'yJJj!KNK4kt0J9 ߾1=m 3cx)eBfYo=}d%+nC4,3OC{fUdJ/PYf+p4tc)u^@#3u%&Yv;|qȻz_*xӈ5.j/йp]:1ςB ڍDsѨÂ_y֑)+T?v?p@+Qyy q+1MRQ|BԚeUEi&a2;cNcCOT@jßmG;xg<9~Ʒ^pe-vn.(OU÷0lSL>SzmyUsxX0ZƳL&N 常efC'YʒrfŒ0F]b-oih;&( xaz! O"ee.Р{u7l>$KEMA,yD;yVը潎bٜLѩm]o5PK|R)@ ǧeX58!\־P*͒Bgқ6Pb}4iA]؜2fA̋c[U&қqSc8Ǖ/}?eYtf'b{N0zTɎ? ^[.XZ2`Sq_=ʢbG֭9.ʼn@:]x0֣i)T!ݻxSPeJ`i/" +h1@#?ӰGr3ygռhU'Nd8bJ-LXsmΗjt_f&읦SD`l#S5>:@\yUUzQhxБ~mS?Η*~ (<1sCm*xQF>OwK5q>\~RqUʵ/BӕZ|1 2;"pi&\dA #[7w\S~zN`NF-$1O$NQGHBhpZ*π=%hx#"J^f2Kz7Y:܀e/22Df3շ7 3X:ϔY.}(2?TaMKzs|ay-^* Y–X{yf#W'9uRJ y*3\Z᦮-UtOZӛР\N$~$\ĥZAS!>]5%b 9&%tծRdWΫ3 cc\k5szt:?73|3>?"Q׍7zu7xGk&f03r9x6x@>RjeC' 1oȬmeZÊ UIvWiEry~OW֐-;FLbz|w'KZ g\Ar [1m0 V[$}g{%A~l%4rN~>!fnfpRO#>_%hMѻ 摸Yڹ@ƬbkfS]Ϊr,DvgJѨ0'} >P>h sey(%W%C䜝;=n951ll-] F+$jh"[yA)",Y{`D/l@/MsG:xbWxwnEJ+v.Ԇƃ8rV !&N5@ݭLG`D+ђ\NTG;gEYb"W@~󆓔gL,[RL44^IJfQ+v?uG 7Uq~09b e@dJTaH$%ՕUZDk <])޶t ٽ>.h[ ,? ST䲼 =Zv܊l87N_% ,RƃuSq@T A 8X$'[vi?|vh?_әƶvpH+T&碉镮,Jssu斻2+YB`43 ~m 0*>mkt4Œ↙HN@nZyTHDMhsbkpp}0i"/P,uk3i[9 7[%E?薆DKܬQAoAr7~F ks39uD8=i0ssĦ~#b>IxL"#, @7TiʋtJ(e P9 =6|6'k03}c80G_$]|0¤3dm9Ó7_htǠX!m> |mX HJ)(1$,,#4|;3*&]˦BSE6jFA(OrhT!._X읿p,LGø󭬪t*>c6;Z>ReQ_[i2'ČXmͅ ~`c!"Vp5PQ<FPgu{ۘ3,.%'Dq%[LZ1jAH0 q7\p&qܳ҆>bݲT5 A}g1fF}[4IAY'pFV6DcyGhS'/(1E*!Jj٫7|_lqBY=mv2z4q0S:@ a%bBv,GNR"7`Ah-3&p" km]a2,j-u?n,FyV,g{['Do'c"g1oRa"ٙ@LOA"*"̹l/_2Oh(@a[t/K4 D͐Mg`$ZxÏ~>~UE 1@Kt _>L(󤗭&F~-mvj0a#z4H wW- 佥6YlQ -b}$1lLߺ,)w3Tc*CIPN}k¿]mN2WjS8*% S u;׼K^7zsW5bq]bbܫ`jkm[ovM 4Zʟh]M  ƭ)vxǹ=UyD\/:sנ/;&խ^p.V:_XA(yyW53GL4#u.fcH[KᎷJ8 H3?.LMlmendKqMixZ{!Dspʍ/rc7JTnx- FnXBB;v0=^il.WF*c9n]kA&:(1n &_ WRQX 5L- @çizwӐrPM8J![ S>3󟭕@n;5*;ge;-i2E7cx 6GG.:-2]76L7NjvDHC}͆|J[W/[&DUBb5 PU8/ڽBIg [/C.3䒓,7 ʨ=ޛ Beh), ՗{Hs,t2Y(|B)zFqnn ű(];ݝjB?hz'N dAa,3M%|LBPr q ⍣ "?1&Dej bdr]wB,e '5TBbj|9suI:ʼn*xTۨM#i#>wJ,Kaom L p-9ca;H|_GGXNz73DSR2G{syvK~ v::zBEIjFj !`K{5zB%܈= oJ#t\~ I[pп.7'u"IMfH;(i0kSޕEbM~gf;YUg^aZr 9dBLz#@4+0/ZG!k"&[,s-t+~Q!H^H[6 *'>dW2vKo"P\|'ͺIf_#9{1H12ބ#aacx^Y3)N&ef~wIĖ$Zuc#{Aj٤rzϠ?$%)rmfJi#^SjaŁ=!3Z5Ub=(] '>䑢`WθV:oel4qp=dIS۔= OیOw>y)cXq 4Omԃ d@a'5${'}1X^reL=pq%H}\wTr0F5mߌhg)+ aL#AO Yxz95W\6%n(gExMs-0 c;:t53!}]쾿cUzU 4%zUn ?~#$NhI\髐郓Eu7D,i#J+*>im-9NK̲RCN3y !i1|#| %]%}~DC|px3!{'%;0F`G^ 8R\n<H} mZ;duܽ6?Ab3Mf` .$ zz9X ߧΓVRl C[[D9#6z<-AgR:\{mO4yvЯ?#M@p2)s{RN):1J -4|{#=]f'X s!s'f}9~q0脗m R.3et,E57p_?t9sr߉ QUwh$l # LВ ލ1N6]n+q=haD)i1.YS"NBJY"Dgʮ875W%ݭ!?G:r,$ҐDՄ l/5LRW 2wy* j{&_bTÏq}ƑB \sy&UĄ芌I+F͈]wY#Zà>}4p;T|ZoKnEK/)KLx I1P+Y~0XSQ I@54ʎ%/,h3-,BYɗZL\DܤՑ"t>= ܅Tff4BgTE?JKjt`S\A _(9mu ' oŲSWիZrJ\J̖@\c>2t%*`h= > ~ u(ͣl zTg˰׷Hɉ0ۊ]L][1+j'ۃAS!en 4kҋ_l_ M'Ҧg2hEvfk7,)Iv%Ti\ :^fEN.1.ubb\>Rweh9,qbcd~Ix7urq&{$Ai:gA}%L؞S}b/>л][[^dw| 3Gcuy [[3 xV7s~6{ E:*E zo$7HH i Ml2? ι&-D@Q..f3A):qN"G^3^Q[!jk-Pρ8*m0$<"y,!.Hކ=M٨Jpt_QEwŀ  Xoۭ&N7Mc2F#<:h\$&|2K?d}4CdhBJ}Jj[Ӻ'gODZi]gMQWm%RCڛ Nb){=_&bptfCۃ9.OlZbeOVy% ÆTorxpk9=xw30.#i-7rL;/2bܭMM:)K+RUVζPGiZű;L i>F{X13#yX : v9ng\9mu#/-€(_ї@Zt,V nXfPp]YO-KneS9 :=ȫ yV'XsQ|ޝY_y4LPrݵ]:Giʀ jKw㠘xd6n c?\Εѫ'C^Q)[޴B{DIl`G#NYV!5 a/lFDj[VM2P(@T = P#H@ogmytS\6A0;^ LJ=ގ⾷L6)DaahnH Vĸ8ߌIsh.IP3*I(k!7j F ^*P}X9:-gwuYM5;E(\@;1'⹓6Nh69 _ɺVM3%?+VFZdcz`rQb@ 8-ldʝ8j+N$)/BM]l9y miC<#l՝gw+1pّҲG~=(8rV>wK!֩lC4`?bLRLH`\Cy>F^]D@(9359 &Uh>nc UfF'@M MB-tgR׹w(Dgߢ_|>$,06PHeARйAW,SAcW -Ǟg#Н+(ޢqhMA2P᪰"J7[u6 /Ǻhl~:KF]rJ̥%!ܼApцqAhDq~5/$x| S1 "X sKQ=Q5h^]m!!qӢx-=fM:Q Pqnk8=B-5G~&M8Q n'H4}~AuoSc=.Q0l`~uJgi[b΄A)al.pZ>˘fuJI|ݕ5ӹʙ<;tuz?+*pZI_x 0|tkZ0_pl,0?t Hy|Gvkģ觪ؐn`ֽ [d77Kd$swkBGE0 sJKÃCaWYǖKe/x eANtwLBq&N6r9Rdj)JJ'l(7oVy'ahm{^_7;M4e<9_?t&{f,+6 %;oyt;eb$ eZfni0z\0zP>}4E}ʠ ǩ͘orQgs@z%;K-N:xS<;m"@Oti:MQ8ۭ# Ơ(y[@}hs(^+!o(*I p*1q7̺~͸uiYCS\@J'*L%-bZww]»L; Z /es2vblbbHѣEDwUy CwUzn:tXh&{'Թ3$XanRRE3d}vjh,:֭lI!d:d47"v^0t&d'B5lHנpoָIɴD)ڹ&p ScWIIIw5B C<.JdW@%7$/^K8IĽy42K;.n{-}2v- -_v ڮx@d$A`MqWJ(nkmFɉx^.]-ƅ=[R mS]a5vxR~T~W>&$ A?#('0~{G*rk3z ?jD5? )uAB>w79Sw_[Ľ"A. ut,d;Zdz=뢬]*0L}9-2SPb*=F6EbHP)ꫣ&a/k@whrWbɵatd4DbKʊ>:ka.Kz(5Snr oc%x~4s/1BSf'9rNZ6&{kI}p9 o`'|Zo<-%h5bYV"fPae,dvZx8LjC}Vq} k5oGY3|Zݚgnl8+W{˺C4/!GV-=eNln'i="G7'k2w5.߳H(A=j@149?P4>eKEܙ|jGU];ht!jNPj Kn-c&dRlˉd"Nkfr~b4+ZݎKB)M}U&݆ Q2kJi^B~ qx~9:lu!EZ 1_ gzPi]߿t, 8jY{$2إ(IBl }eR qe+A u"ޜ4C>&SEb Men&DXQL5.cAk+3tY 4kw/pҩxf0M\ArOQ$V,TJ)V}8, /&7KY2FB]S_͍7bF: e(i?7mB+jy񢠪Eˠ)!YKgN#=~Q]ES#6m՝xA+:;t8w'UIJu]ax@,) M5삸F:?}x5ea3Mtvc}+܆D̥c k>I)?avX`f 㧽-)QpRN1iL(b&_9y𛽯oH%h-U{S 44L;yλ[ lzAJ\Kw-G=όc>HZ속aO'vwSkH\G&wJ/4fvk9ؼ#HЮB[!@ګ[8~5Q6X幊rfFQ4@|~8MrE7#^ce4WRUw eqo.a~iÆ Q U~Q{2׫=Q:s]'qTX 0Ng9ۧR|^͢8yj9Oe2+-ԝg^8\|2N0^E{7JaJ53 19m anZާ.ofO"dieLƃ0YǏ%g@^sK2X1[WHk =!zJ TߕټPK=ߣz"pg-9uhB9mP#`G-/"{M۰374\_JH;dJm.ӂ#!6 ij_!\%[I?N|Jdy>դ1+]'6C#C9#AiT3Ł4 >$\ʩ 3نw3D8""TرL.GBn5:&+*׉~dr5zѭ sLfIdנj`X}^&3l^4Ș$FͻYE9ZDE+`.Q%C_]I{曾բ J %Kl.*3XRYR~h ޴i#B3AI羏OyKSoTl+@A5ʧn ]ŠĊJ<", F;j9Ǥ'; ;А{s\^n,66O'V[m##$xxZ^}O.Rќ(qvg㧥@,ڿ@#ۡ:B?W H( XxYh*uI[EEZ JzrDNqy^ L6!mcD1mh63UTszd])zYD$!gfu9d"u*kXj|^Zi_76Iぉr+_͵+}gTxќ/>s 5Ew82)\8T~|֬hEVAlUz3:'f!:{PFV0E !;7},7L?]:C)xv[豽LsW%4Z{8"w?#qm ˳:>&/JZ$4 egjcb%j6vW8$!/v&ݢ 2$_#K 5(| Ƹ=寽Ɖbɍy (s!gLP\xy8_97󈓠5\+UeSh8B v ͝YxkPND`I׃9@Jl~?6e5zs`.v_tXE&TUգ!_Lcת}(;w)7s ّ)*͆ w[҅.:م`j}wK#OJײ]||m@6F\M0m_8'Xo{X7%'FXS7C/m;]2XCf8NAXPV zC32p $-}D)h#chGlGr/8G#܉\B䷯IfxژhZDfm/G[w(MΟ(pңĆޟ\KP,ߖn#js*UlKUc_JnX\)+N9f7."nCH$\PlҲc !T rn(wa;Xt-Hv2i`LGՓKr1]Hz}ry4zk1!ԭ_:GTV71 8L"T-t'~|[]SXPrk0R:a܀D.5.֭3ssW-!ݡ)AnlQv>P?h $=7oX&eeYRcky8>\cS09,ڛasP =MzA5DL$Hڒ&W{22"5َSvhoE`k:i|>NT;OTɽCU]ŚCI6YtJD^v c]&TO_x~:X_PtFus5q4V(q &:,]-IErxQeEWcA0͕-p`4|Ǵt,?d:ɲ4nC'ΖAwdisV9,dnuucLŶf?C|!Nd+I, UC`Ϫvnp뀁 ]L}t`<7ReVI&V Kn%Uf3+o9;AE Ԭꃪ_MΎcBK%ǣ|fJo /FRe皬o)yRNU@2$#I vn"WXn^ٚ擅@Pn\7»_]v>jǔIW,rԵ.[78Mxn cZ8X~bzMMd$Hcjcj`qE>yjp6W>Yh!:3R-c;+$1?;yQPc{)uӌ8$>v7Q5_!6`̗乱7FAA?[T9WFL*eDFEI[?;haXH{]Z҉XHT6҄ .%h l ;83ɘS9ؽ1&֥ȿM)ˆiLL28 $M#flRWEiwǵN~0CV^d1ˈ,q TN ^ Cx2 nň Ron;v¬$g #c$"ϋ).g -djH4j8;qo[9 _41K O°w)rPK\ѫ߰oq ж땵18FNcBg{q&pTOj/֟XG&b(&DZ{_8hHJxS3 BZ=!0sH/lhfuV50/.~28/qwV #܏ . [jNYi$]D*=Եq[>;(ٽ@5ωT衬mNPYʬ(ŢϻkC^%y69NE٘5=TwgF'bY.mwT}yFc4ըb~z>KMvri0L ]];7Dn$XyTAQ1}Z/ b.2/|_!RsbAL*Jy9LRv=ϗsƗQx/:ShWLbx*|G$\l<)qy H}8FH֣`Wx "BflvUAŻC:E Cae!w݊;>|B\oic>jD Ěf`32{g8GfOqe|Y)b< $%4P\l/PhkI~jNɄ8 $Mdţ$S$kpY܀A%jH|vXRwt.QqWDvo.!Gw}"򘔰_piLd%{E3j17ȋʈpA*d&!?owE{{-bTR[6nrS =ms> E'c5dWKOԨ_Z5gC)~M҃(|)S؅ƨ'iH @xԝs(9f^T{E'2o~&Ig$acڥـhX(3=~1vH#5xbʥ~`w7s{']NO-o|}^t9,eWYP/ /1RMFrKw=<}u.iv۩)AoUm*ba2XlCr3kz3~m`"-G3tsXqxÈi_ Aʝi]2EMBN֪AؖM*'/:"+1@\&H΁>Y<0_O^Gc ?)45!=>g}ᢢ e|:ߥfB V)n;p#|d$bk }ݱ|)e76 RDu[5ZnOq6 |Ljy_}{iIafYML<-l?ԴQΝ~AGXu>*i qߨFXEC@sk#4ey37IZH7R,RsWjz:]7p;~f =k#+{ 0~$mV3827?t勌^o~%۷v` PB;A5߅C-^Wf'nyn" dmOULvz2:`_e"^ZbÚ:ۖIB"M;+J6[5`I`ʲ\ʁ^c84r 4v AiKTbqgV\t3tZ۵W&6ŚJ ܿh;W+J"re俪%m( _<9emR.7 ᆧi~s!s@n`iaeڙLL؂eF?,Hlq́(G\HI #f;-elhJb̔8(5;9Q>̷Ȓr"2xY}%bu`kQ÷+F'6rsh̤z?woC eJ?4lq :knЮ,2F1XMwAɀ>j ax &fzr*[8 8V794җЙCn>NJ H]8V2MˤgL5WnCx;evSzO}uzVy^vhT:(qKOƣZA/-5^༧}ƒG"_p H,),DcY8{vp>eijCB()'a($/ڞ0N/Td`ϡJ6 b~ĮejR~5ԕ͘ WE0Ԯh J4 hjuO nX޾EQUY'!g5JO ;+D%PAy)bn\if7O)фS)`C=nѬvw39܇X7@KwkUnJej5*K {*RK l蒪3<9' ?v,\ O}xʈ`x;r H ffd]0 x5JPȢ;= -~:'v+5sa?eV=ba=yŖdO:gH4'JxzJaRDU3$? kU܄ <$^  +eS䬸YT"劗pmu{J%Rqp^d[WPjdrlr +`kH Nų885VʩlhϖKzrLJjz~P1(hLEfd__`#x뱬A*=D68ʣzZ8S>v+>ZH~ 'V]m1Ɵfz9vX."ToLڬt/%&@5et G:T4JOb>' p;v#Kc+`"lxN$n;)F$mz'OsK67mz>12ohP(L`s)зsOOVX\H'ڟ:8$k?4n aJD-EV}Hf]+Ö>UptIsLci}G' ˨S<>%yٳRR*j'A~)R:Cb``?|lcM*6`C\mYuc.1sx5 x gh>M%l]~)=(\ˮdeѸe4L9HFsbH:KF*2y]ǃ:<g< *uUqyz Ń,*uW5cW.e ‰<m `/_P{k 'eWJ.L,wqTke HFPRce}Os"0b@CnMcg|4(#KIJO3 ?Yl4[~\zd<8賩; Zܗ.f۴ojO鍔l,alZ(<ʲX1ws:CAyeqh>ݦzdQMھI$5e v,6*':ipB^f6TRg7AV6 =ÿ "JjY^\Miu 7E ߆%=:9#d_ Շk狍^ٕ~$+e6V\/XeRٍNrh@߁K.ejSUubS7sP@Kd.! Aej~&@A2rS$zv#~tw 40݆UbYq4jfav Nۼ_pj95vٗ#3fj`J_ծq~|6ߞ5ڑW7 3nc5ӳT& Ley Ӣz_"XH7jB4ȦX 6$I+48Yuе!G e=J+lPzҨuB,ȯOElPIW=҅pyѼ#9IS?E>!bF{GA19zmld+d͐<#˃Uo遘'pB^jj[HH%PEU۳cR9?f hYPOOnBe ]1~ $]Zd|7Anb9,#ߝ,r#,=fߩ^Жr秓ξ U10lr>_9 ![bVˋSLpe#jLKĬ?'N <ٚSlN*ǖ@Bˌ 3A?-I~gw^ wuw#W:֏yIIiC9 as0Qtυ53NQ*]}'kZsw}#Wm \y|RL@*ɛ{yУS]~uJ^¦F-G.CkfЕHg n2y߭nA|pI@*ȖuY[ -Z͕0-fĨT5LRæx˪aV@$!!Gw?͡w{;Hɾ|R`+P"_[f]cG z7jRi9C9Zy ׳}8bJP[_U^-$A^[Fm,}|YiNɮk^F.&J!1+etV-S3iWJjRf3mϊ8<X:ɑ{6~xƴe4-Ep$N3-E^x+؞%.|.rv(ȃZ;9ǽZ";t0VW,z'WhDK*I#b^S\df4zfPw@ /~yKzP|_s)B>{sÉ;P*{j⃡Nh/7 U.yvNؕ ;0GL'>l}ޫXi 1D(g2}}hD{P^@ 07,NFC!]$0rj5ƚ ^81vbBnב+-;9wg=z 鞞ka u׏s!؅9< *?M^*OGm__DWB^i!k4"^Fk?]ﳗT c& {!RUZEN21Rf$K0Q%3Ot;8ۻHh;(c&;+a]e\|k"}<1SE)5;?Xpz?0+ejmZH:2/)_=eQ*3FIiZϗdK k/E@TАL2QNI>:mPO.v!x~I'dKI~Q#V!=Bf>@6L\jjC_C]AY]}$c7+ GN V&Z Wz%|x5|D\;8 P%=;̠ bqV#j[*Mژ9rJ >l3f'U/hW7=>c 7.<[1`zyl<|u`Et0E%> J#k@BgN(=Kͷk),r#)QFUFE3,q-l6c!R8d>-ls?EyX:e:)&RMm r*׳SOAQU}$:h}I5)o2Ir8=HOܡ, Æy94(R!POujQJ~J^~h5\mDuNsDaÕ^Y ^s oE;FEgݹb~ӰD|Ro̯{6GSt8nGLne3ZNJrat8ã&%0\r`Uڹc$}#^سhxti=7yLM^a8+N}GPɭw s,J/̍9]Dc:=]_D!d뿞+\lB@ck8 T3C$Ȑۏsm@Џx)9`\d^^;G\kw sz\&xyqbb'}%EgKI-E.^sX"">eSg[9ysW,KnpkpܒJĀf0J @q}]-+W qr]qEʴVlx܌~URfpK̂,&a6Pe0ô%8\f.!ąےzepdS0;2 %iF O/\hnecF"8N 4կLV ՛mze4_ppCQD0DWe"I, :r3p+C/Goz ӤǓ^-* ؉%&$XFQEN'y@fhfڧͳ^+ODPSIƔԙ%g䰟FOGzƀ }5FCVZ/ԮoOs 'Zw7ʰbvgzI)-E7y}FJ |TثcltݫV(U5E0Vu} ?Pm' Mx)VjǨr6 (]9*€l$B;@6wTYƊZI$X# 8vGH>O3=~٘o%.=K[ bٝCfN@ᓞ}7LT} 5llˏg 17V`Z]À\!6\}&J:9@r-E?G+bJT˨>[:4^8 ( XR3NɌY(%k jݬdYՀ҆A/jtFa)' =T)VLvTA~_jӤ= :KNC-@uN} *z`Nm9MB__rNJn!J'k֠/t 7XQs\m켭z¼"\YTsNs/~Ր~"l.ݬ[%(9͊oF 'ًFk .R}<*iI | w4bi)"Gl-Wps53I }ّoYśrQqX>Y6{蒤w ~Ggv]sQY4*2L'VMlhs-R#BNb-fȕV3# f7ԿM3 qh,1C;BRM@]Dy_H4YΖ@ Դ D"~rubv8])F!Ϡ{pV1ۊ4_*%Mmp7@w^?{ 8$'8[A9_7eH-DQ׮DTLěx٬IYS 0f @D*&JӝjBvƧX}ENB}kjqЮ.SL-'1iޗ Aj7\],^<>ؕSUK柚t"3,NcKbr2jM'+"|pG*ۨ@jp? ://63l)[xxsΔS@A.)4jFmFClW,S"vh73? .7H4D΢&{T-RTi.@4;he0i[L߳W)xӌ՞%D̀JY4I? +!`㳟Ab_C5c|niN|VN6k*ju(EF-o_\eth4㩇jbӿ|b`_3< ;q Ǩ/專<.t;zo䠧%c},)&5za#;>=ǚN>Yco92t}"Є$P7".o1,Ql,T!|.FvR-.hr?}f%Viš)S:G&K9#'nB d#'h#XčR=.%还2볊3̓gV a3c%Jm&\$3)4I*EyER&{ ȜPbUFLkS qƘpy|щ#&UW2orxy ytuP~UmDNTؿ®lB!-l6fW кfry3 2OczpugWiIl(5"{BUi̽n||]չ1'̵P;Ӥ[8,+Z"h,krD#2ۡLw uu j'DߵQ*.J@E ei\u߿D\K#i,:hK>7Yΐ:J8. بhing1Zl.U ՗#r\nc^5ǘ =_{YjY%'p75Xsg@V^hW,y?dDpLODh\ȁaitn z8!'s~t.͝5Sw/F"⤂? 4lgO̗AU88`;өnM0h,c@\įhWޣGB;] [Zn1rIw'(TBϨ4Ŀ dbl@DB >-dtzvpv8Ff:1z,VT{U;<[&A`E`#즜D?)tHQc ;*Mr2;-2KeL)_(IAjg*>S]194cNIQs7Uz Hlua T物E\nSf%]M<Ŋ: CF__gzB,LPTs-ϲ^;f|Gՠ8f\.xtb rqgQoy'V>GYDQ=K(d{ '}׮ʯI'0=VS,WE ?oB5{4չ. cL+ 179v%_/.;ĝ #o} v٧HKI&E94Cvv%rlxݾY^dּn#C#ޅ8e 2MH>lxވ~L8DQՐ;R:b̨'N>{m'^2[*f \(T۽إK ^P9,KtT߸ۄyO_BP(O~= KlT][ZPChgŝ.8 =rʴ{]Mie𛚢D9T ~98f܄%`fiG.e_P|JE>;9;Z\\#p| ϮuǖSeXhVf>x|md(=`޵MK~xFʠ.ȃ|@.l#B5v}^K06f f`dA[u3_02 6Qjyw I^5tbllαד}-A{o A~4ӿ^E<::Ԉ.;k $\' )P^әWpJ6Xq _$w oW& g0 >8a%7IY?bB S  b\b#|o)!WR ?%g0Brgic,_ 'OeYɪXj;\Nb@ ?6=]fg$1XD+(Udل9}T79)Z_8 ٺ"߃6jZYOz;|[ Cy$]Ph>kG:O!h%a9::q70=V Xclnʲ]NHs@6涜BQ"xHb3%ak$<@АIp7 ɇo,?<~S`?-t GU<;O[dꥱ티s:=tR$E 硫vح/8N >2y'!),=.X 2 mH7}1Լ.Q8&(IճՐj=guxJU` JTcր\!Bʟ%&y{$`[eYUej:bg^ Sf;Esf*eXvi[nr#Ķ{w؁E/D ) uOhiҊࣸ@k5\zt?IF]mG^ iXKU9 Dw)b0G-Jv$-EI )! qҷ$uǖ>9ͫT3Od}'pG"is$*)(2s hm Rxl5?m5]R453ezM2/sjOOJX=b5bmz/O';0Wh/OHMM%?p vא QHm bK5R-H4fK劚S:AQMt7q$jvd^d&+ XbI\n-V M5`X,a8"" EP>(ctco9lMEI(v[zg@iy2Eb?MB$D$%i/4hMW9^y*Ə/LΤG?&ɧ u$G+$L+QI,};yn@LAhZ^XF -Y],JR{('pRC \ă-¦B*@?2 ]N'#Q75D Hf>CG3P6z9z`yQ%Έ"NBҨ@\h 3K}^DtAqDJU"[)Bp3KݫqH5Rvl[#1|("f~;CO;Te63#:[gh%ټ 1sC!*쀀,_y3ԉ &8!}62bLk{8AHBz)rQs65:5y͐ŖՄVi4to+%UT6US:0ޘ*7zDO˹o$8bҒݺ Hp*^~)Ghwj>˹ xb2.8#7J^3TxO'u ģl}Q%aay۵:}tzLxD$XEDŀ$F!Z q`A':i:C%hŇZ5Lᜧ<:i=hKvz݂]QA XPIhz{=tDJ{h_oSw(pjr 2_tqFbʴZԌr| RKe;j1Rir#pfd>dnVEEe\bO  1$U씓5^9oCL`P`^ህTmpKKrL 9b"kޯVx=RFBߣn@!xЮVV=ic[,u t n5Ġr ȪOl؟Y#XCxDqr2w/wۿmG_fb^wY DZҫ!nfN/xwFWՐ`{J T͹]Qn񺘷s\1[R pRV^<3/gR[n3jWڬuo ꚅ%2@3wSL ґfh2P GOsB7`&5V4n.J^bfR o?ukYXiPV!cpRl jn /]j|P|,8h-yh[7bC^(ַHkQ-|^ 罐\7v&Ƭ9r<#9IТ*Z KA6"XgônѷL;~]^kZ+PIy`;`;$`)f+A9Nncg se|d .{bc~`~Y_1su]D'R_+6t큡R/݋82eA_~5@M߇2_`w*xrĭ%TutK$nInnu/JPD(q^bf2* X!'xѕU]1~k]3 vM\)c-Dd}&HQgG =X> 1>CMn_'5h\]C1Gqf,9#8HUvImQKDeW?ykepσ:nmFڳ@;^ s/Tz ; S1ï3 7)Eqs>/YNG)D+{O<#w2.VQjAL$h||q?Fpqܯ yIÒ}4[1.A+/Ғ9PIJ*(fW8.edr*/@KgWq'~q\ "Z ;c0r܇;`3شetOcL#FQ:aqzEoFmv(TΪ(ɞݚ&6 SA[Z؄q(!%Zi.ZRQ$WťJ,QC(l_&"7U%]㞦Ν5C8(ߐŰ)]wuQ0͈os{_X&0(5ʡ^C Y0u)qӊ}BWN;k0b*Q+=$ :{",Q t22s Ι0_VQK"hS2pc&v%vwm0ȯf 3dxG'eà[Rw f,QN?k!,K^(\nf|ͽׁoL\`j5bY{+;Yzz0ŊBD9Dӛ%6PrĘ7MT*0B:PړVZ.Jr 4DڗZ໲"Lʙyo}frMVq;i08u؈9|xh{B.2T\1L;/'@EqK[J"A h= su,e]7&a1S]ݰJS#PkLw8o[[/gbca|s?":0\p~)45k:ɚdaKlWX$; F VpUM Y}i9b"+vؒBhF%ēEfX,e#d2X0:ngu8/W S|p,F|52҇n] t]pI CB_gB?mZپ] ò8wil?u\L?{)!/A{qBf-7 ٞt//i ed @>]5R}PVuoˁEUYCG9 {Yxr:d;-L&RSAc)na* ėpqB~@}k G Lq&yj63ddC3M/~&/Xe6E+ߣ!*Q2؍}W>RXf_$p1F`yRnd;.VL9mHcǤyy+t0+߅etP7C؃ͅո{%l \3C3o`"Cڵcw&^n)JNAWfW'][SEew.7{T(>h'{:-:ˇ[z#|7M21!ovB[˰/VVNСU?ElE9kNF6xy=BMɊ<-A{n7MlPk*SШ<öpqcM1i*.d9b:!|ib&V6W:fmx%k>[5M->ɇ wu~ ~p CZI%zF}Gkaw-JBApɓ&llxqVdSXɗ7\AI9 +VPKE_Hf)#?OBw\geo&tof)%;pjr?koCFh]sFp-$Ix:j̓'`1V"Eof7Oy99 、"vy:LOZ1T+|oIݏO.A 1'X餅trLjU.It oT86]<?}Ql/mE ƁE_Z8fBr%!=W[ޝӟ4]]sc" vЅpC+kx~t5>X4ibny-}٘vsɁ (!uqab8Q!v fssH WdBաQE[Mg*bY]_ d\Ѿ%qaiY V @~FGOЩ ;/ ^6PZk#C3?t!`.T?$2/[#kx]ƟO5R~ t/ᔐz~Kh-.# fl6;Y]feÍ+?E:ߢY/XQZNqbv)zs%F=0o k߄kl>,o3y!6f U-[DH_ IAXev>FŁدVc1 j=]R3A 8V -eF\RG ϣI]jNncmҊ.UG#٨Ľh mKnXER)Wr@( cY&2/koNJءfRA‹*d)%&}Y-  5Wb~SbPٰ'֡o'DB~'~%~,~.aW[0x 1rũRS!4 {?g~쁙>o_ւ=v_WFR J`ч)w;zdPʉ2 aLZ.임piLZB*YY9x*aTSKYV ].;K&9ۉʒƁnƷ֌)(9X^dP;dY>.RGB d-`m艈!ӷ8C+oXb}0lj)kAo>cW:0B=yys3]E)faqfe(iJ_ϱ<`(y(~ `)4}$ ,+)fпєS!u}> c]ԑ;f>r?NJe*~^[.94pכ[k\J̻~553;G7 }śjSU@3B 6v&BqtUeq4[jj 7(1 LUSָ'I+_N~VG.5[WpcߚvIl4j fz~h[^;B5r{i.C6q\!\݊zyDN9s)] ʰ$ uuTYĽF?M2J?1 wbMjhǰjRkP51zTR|p`H΂ V3h`[ћ@yFWN[8*-K]c |3 ^dJJa5]'eWY &pVdt.цBJAa5-C-; qAj)! :zM͞6RIю{}QI`P-W=} b9|_} $TFdNѻ0k@D6qDTZf=Ibm JC1k('wqxzܙC\zR/fGL.a~w17vdHѪҳLk>ս [1R:($SۂSY+ F]+T|LܢL`VCn7];8OC"洌9Ɩ6dgIm#{G|4^ʻK `JvaRuѨ] i./HIR\m͊LaE:(SЗ?>v=H獢0cpIj$OL{fQhR/@Tlb#FϜRA& Vd_\ҢKoY;5rEL(kt1m Xo')L8nïW.AGơ 'tZ9/ǴCP+ אFB"]`3-'Hyi(w>:c^P s{V [. 'q`u6"I\v^!􍁥*MkpfM¾**0pU_=0x8f%P I2 #Hǐ_֙GС*R#긧 J0xJ5QO5^OaKKp7P" vƓ~_@J}N ۞;rmU `;|֐[_#{ 32g#ͪG3,LLD=="mSPn[&(K?!?NoUrye@rl"۷[)eMv~]4j׸F[lצd=_[L=MtMzPVOp#?vAb$K mLp"L%Pqi8ۓW khB1XLZB]LpP&DaNҫwUK'],w*yZ3S̹|z~C9*ت qyadj.q۷,-΃%2n(O\_y=kٮgRhņN?%=PwUޱꏭ 3<.XWAچqqWeO8(O)=&p(UtvȎ1xF_ߗX40DGioՏͶ1QwN-w[V~Syy U|1?FTLby j+_ր돆%|uOq t$u@__9d4cEݘ^3̏, g}#76OOSDssj֩Oh<5n37T3~0 Q2rљjZG)q>|H 7ƕqn%;G!h)3ĬCC!z1]xGܼ-[/0J3̥v ztOK:ThM$@&.JLAJ<;~eĢRgS (dM~* ܇QiPQoh4/$( lM9a@h# c"C֊n .q_vT4 F_) H,^nnA/ީLk-! Gfk#n[T{_BMa5XmW6狊ܠ|T^d>QIHcM{'np62՞(;I1Őd=UzT$Nj%ޡ%8&H0j_3Z1_=s}Gb/Dpݰo鄗zH*T37| |Nh-@K ߚ٬gNcMsSfHs_ﴮ~E oBi@`{RdHa-yOIg9؛yrip+#]t!9+쀻uLAX_9_4хGh)Dp!d6CdweƦ)׼Y:hy@B-xт/iFY=xȐ%FTΆ<75a2^`W-&q[rz}iE4S`릻O-MNSYؤbZ@?$0"ܒYAFײ:w:ebǭ\8 KJq*[ec>̲Cha"F@h{OȸԫgDZ|NCI 0I?;Eupѣ#4Z+/ClD|4υ}DD^CEUufߕ䣇 cuCs_ﲖ+q.?%)p:DҺ '_ v`^(np=v UT8ٙ *UI;Wϟ^?fP7vl1F((_PQ೛q<SЏY<\ܾ-!LG(LXȷSšqtAG`&`:_?D7r⦄Q4#2-4MAUK$ Fҗ#׵K;s)V±vNsE:1]GVo>f&)aDum`!$y[X똞K);:.>:O tcټƜ?֛}e;C %=4#Nu"Bt+Ś@eB+?}2kh ,]#}i[sG @ .1]C;l,nڦA\-}gUU Uf1YÔʼn)G{<7BA[ud&gohD+[|HsCr4Y9{hI{x3kҽ C4P r(x2 S%so~=ϤXtjίe|Kn)ZhB"gQ&btR 0䬜nf?he03OqsYYqcTN{4N=cFہ%9}msb?{7ᔢ|gOŎMև\mۄCcFvOB'9[/dEoFw$Qgw:M=|Vas)Z:2 (GS7;/f)\8;'նu:u@qغT,8¶c_*,4b343sB3Ǧf2BɵwxEݿCӒͷ"Dw?3Rt7#|")8@1PP$2ݬ޹|DK$d.̾=q*'{-`&_v >l[Hqo!;Ba>湀UEOlΚ;Q)I !mF[rBVX2Q̓~gP3r"ґ}kR޳Hg\iq#|'neZ󷫜:ƪ_2^b&yT݉*³VWՋ~b ռ9Өt_;|Yv` ހJ?;-SBN$ᮛp6IB&pȜahPۚI*^t;#|5{m~-$Lky:RܮIy_p ?^L0i=:``%o*-Mj=F}(_Wq3EH.EXEyeqJ?(Bӿ tƒy.E'&O{Ï%FD3{ke8yK"lȊU45065[8"Q^JJ?u6  22_똈Y 搌a@h*Z埞Qx^aioTu͕ $\Nca@m?%tӲ4+S 'RZYD:DѡބltŌNgF)AU66Xtd^ ( P J]veoW.xp%8W^ ;{[xjJG \dcլ$Ap؈-MHũ֧$ok42~X`.i1)9ITZ/DlћdԩU}>ǂd^w.M`TNt ;ռַ]=䦏;8N꾗/| ` ҸD8O=6EJra[kiփglP ='Y4gY]w'#V>)VDŽZ?mV#,#3BѲMBS'^zXkPz΍?̇Mc&71{Br֣ 9 R1vTݑ~TUh0Fk A챐z}E]ٮ%%=APalxHeAqI$V)-.rBCVbSe; I0!QZ}>(Q 't%aYkaB#2+piIz}6劶A[6 2[dVJklA{ ~t}ɐ>\$y+#5> D>`/79,ގ+Mh Ns"@AjXj$@(*ߚt󺻈J\\/v!dy]ތψ r>v8%>@z>zo_%4&f[[3v" l/L&=n&9 VFO D<sM5̓sXg)G^o{G)(mAeW:k$8J;{j`)"Tk1V{񈜔/N!2!25bqKc?f:-jZ*>8)Z 'qRQΖC jQN.W]TZ}/+J.lMQbC5>O! P.H'[ᩑeի ajV/?%(\]w]axa^jeKN0yė1k^>e0?19wp*"3V'+@WH ѿ6v!50 Nz׷XI E+ /֔`ރV\sDY"vk`ƹ H$gr D x%b4~+RKVz{Wpʛ+&펣lTXl^Ğ:AZL57ubb$J_!W!o* pMY) {󰥻3aOO/:wLݿMZەU?_mrP |GÉ 1y U`8x)i 1!_hҎ &ĸl4xr8PPb "AD^q[=ْ?;N{vyK&M\~¦09xCwꥨX@|M]-\G.cTsЏ48pggLi4$L{DSbgט~v)@cF[B+p; )ސT+ϣ D{tt)BݖY*e<#؂h}k^-EQ{FQ ܷBٟ2Ҿ5Y}ǖy~ںkeYwY1 =g`$ݿu\I#Pgw~#8:( dl#}pHDcIvB<d L$Q@L  .'-`{)y/+a3ar"d\:%Tc aG3X00cW64>`NKqfӊc8͐Is*#' *F'W} uqMHunW\6#޽!tR 4 &iʑ~K@Ӄw~ڦ;mGaR볙me2Rp@ZՑv8zS֓o> vi?zG*k=jP=~g50CIL'Lo*Oֿ>;P!z$e RV㭽i^2Oģkc+Ù" ~~.=k#Œg~9(Dws!} =#xR K>+zL̞5~O_Q6kEaJD rP&vCtEnK"nxOB ZB c8NB|e"B-d̈űh~0Y_ɻO?o\ 0޲6u"g}^_{qӅTӍHeC[ؘlHY2, K 'On*:^7/'lC|M\12MI1:ekz~H{ް }j$GSՎE0eɢ"K jȷ&W9AS f\z@bO /Q| ̓dx^'gI Бh2 d!BL?蟜LxZAVxrDMÚRl$9rQ}X'D_+%4e ЪĆpg,9dJ=@B~czyP.d.+elj12:Feb'PY}jKn &j.\mW"b_r0Buӂ~/#ސ罨 1$SK/M,ڮ!Mt6VF=#]i$y-!\9ޤ֜r2_0c3`hAH>EF:9;Ohkd/F$g7j8!n,l"-ܣ(!Ho ;پňش:7l&?y*߽O1Yll1ȊȬd d 6oͬUBa?Sf[͋gT tVOf= v*]sc6PJ*LpCUq́Ǖy|ً#O&>"0  2"^ ӐWB(C;o-Y c#aqB~U@B׶ĚofvOYx%d0\] ~[ʢwqH#Ռ9sLnnc\mؼ&?@.jo6"7>g2J6 h5D IԌpwe/tڋf`Ҋ20ǝʸ7[͙j6&R*t}!c5ŦI )k͝Gq,N3nwDыN45rAچ5(ӝGb ɮ 7$cZ^bĥBGYiLP-j%HPyҎE'5<M{ (3TQ-Eo?5S(`$3tMy5-QM ЈzՂ dO˯ "F2#~#q)HPKF .t_\\^>p ] ə,Qw!; ")ad !C}}YЍpJd)E&Ĥ^̲6*wԺIT oBJ$.O;G )D 1wwf|Tl 8nmf(x>4'ryZI /2] Uݜ+?j'nᄟ=/ĺNfI,顛[p,lB;d)8E."u6lCtetE 54~o%Y\1]IY=}1|:7 3 S(-s4U"aь NhdP޽p.U.:p&m^|$0m&[ `45 #5W!.%6kho2Y SalEd^m^3Xr诞]sq[ ix &%؊A[[ ]#xbfDo[C'Y;ݦ ;Xԁ۟_6m`#٘rCR8uIJXxSw&t$D̽nZ:hcBP@{r 3yr9|9_$X y&% "*'̩G%MXw4l" vtsJԾ%Z`\5!Q:6_`M+ ;$T';?Kd47%d"<摢VŌ~+ɰ9*}v<E[[R~V*,F FTdb60pɮє9 []"ٹWjg03 1G-tK]u Sg-?Y5fEíEICj^`@3~Hȓd`eId>++HĢGSBe~9 9?IVɔW1%HT}]x75{P>!|_zNqߴ{%\} 1ӎ@إM.尻2 daOt.nXo/=(;Xq}6 >=R\bms/"^@9K- ^UCef]~#,q8iٚ<g@ >K ۿ @S=oMIq, A:zϳ\L0jުW9SjWpEjpoݵu7Sxe^ƐsbSZot) 'f7lU!v㓈vJλq9A#: n xz9? hľYH{T9k=}ܐjL ĵxhvSURB4sH΅̣V/N.nImJ$ߺOa0ժR6 vAO5-+OVDwlz tL|`6 N۔@؅b6}Uh]c!-*?~fm~9x Yy Y}͆.^3S:ղe,n%UMZ2=B9D}KIE] ٻp!ǜ]H)8 $ryβ쮭F/Ne)㳔8ɽwgz!9!TC=I%~^D'9gӨ}Ye ܔٝݻpY+(zr/KJp hcʌScC9 V;DЍ{b(emw!:8"(~`QS1qkӟ,)ۛU H=eunG`_n_I1pC~iփcUILLuh2Y :B)7 |$Xo?mn3.Dg˲[!misq|ݪshN@7ޡ1=V[p{2 #廘\=eӑ?^oF#.!LPn"5ź*lyٴʪgƽ 1F:ީSnhG\A߰w#6Zqw=Y8$*%YҰ D7Pl5ox#xn;RK/ J ^D[jZg6ܝ4o!64\X3kH wl!iCuLW19}> 3?Qaz,GiUA 1n&Z6W[h Vcuf"{j i j)GBt,=yqw> &8z43TUͷ!l[u;^$y\w\D UL4. ȆZ~WQh'^Ҋd=>=ѐU?ʾpiƒ^Ȗ2uGD}Q ,\}^~!~Lq1%jM>:ʴ zǽ4|0H-p憚سO+`9|&[2Cl|Ӆ"hP6WTNH[GhDZF;OgYq"{z,K1c*),Eq؎?r+S?'9kD}<7ɰ-Zмpgm9m)HO W roez0kvޅCWMnO/8!eZsy o9Dл8,-LF0PE+_cB Lqх戎qM\,9S 3+=c64bWOfy_BK=6x^qg0LK|xe1Vn`I.҇BTC ?q>Ga*ta.b {$V\ 'l蠫ОVV9yU$Ku5&7Z~LhaeiNU? M.Om=5m&S£2IYW'UUW鑵 ;"6HFv! ЃU4Go>h"ژt't 0%~2u=38Q_FόW֔A8 ʾI&/TFOո0a*C>E1H^ETǟwKKu;LuhҔY /sH%8JkmM#3Ìh%3h3h~\p;?UmVB.:bUJp6b\fNbQ/ieh(BM8f8A6' F9k6YeØh=;Vމэ"}p1ʝΒ]DKk J9׭jɶE=2zk)38Ys\UU.k ǥNmמuŃYG'c,e']p$Vb$!Ը)q)$F"j^rd?RWmG˖e-$XEe+YB./өY(q/Xx^~Cf*/V)ꬰ8X!x*4+pdW!Pgъ}wZ՗{el"h- ( OSut ]L<.X1QVsFK YY3_X*N#)x}*en&'fHKU'IkXpIh!5'?%ڳtmm,Qri^uح'^kbYE~A )V\!"CS".;u(^jy?81իIawލ",,1HI*y',FO=z,xN?c!nVfc$鮡5KVCI7GQտ<Ӊ!_r$7)T>A'Hμ)}'7&oN:՝{rc3cn JW&꧑'&)p2떜˂iIwVOWU,t[cE#3cH%@+ ҁuC&YD%B6΍&ɍAu1H q0 OpR *+?{K P}*X 6T,N^t)].Z9}$Z3, YevJޭQ8/\վ윙m\;+TvAJF{HQ#FAD+2NWyEE@__$^1Y:o,\)MokP?\4DE=r}C"u-i$}fG+hH2ePay ⎊Xz{FMm$]Y4@>ݔnE*X?/^BҒ%!'hN+B5L㻭v$vH[5/2eބ\-GJ0Rؑ_/(aDۆ>ֿjZq> uJ&Q~ocm5ҫSlSc[WEJՑ8 A(]|?ֱ]藺Lz[}iJWvX= jNDZ=zյk xLy@5 LÕ]KێXeJJc5ŽUPGX0)'!:p|jwЃA֑qRCZd`/p[/ =])Vn>V!.D_ vt]w'[}2[#gr.^]ta8Ad;~)͋Z$lK* c:o ޲15Ƙ&9?t PMVv'yjE9cniu`:O irGQFckrf_+&a(̪ b3]Bj EE*_'Vҧia 7W>No+)>.md8$t.aȇDG|/A2}ݓa$n07w g~e+4(c^<%:Ѝ{ٞYGo;CT=l (Rm֑E,K{s#Ae.5V~b/0~"P)Q YFX ̽'G>QĤΫu8g/: +3AXl-fE|)$V÷}i`NCRzm'9 rDƖlǧjxb _3;m|rufӻ0'IeCi{MC5JѼ1J &Xb #y#`/R7C:zm5n~B^0dsP턓s_67z a]hg}0r-?@>дt/ npO30=r݋hS:@r+dX2W.:@ D桙d^sgO@bj|L{ɰteN߈@/ɟ ]&aHꋞny TRUa䫕;]EbQ?gxU"ƜB)Vi9ngA׬`jힲbTLltX}9{"Ӿ[D&Sz.b(y~9|cDFu)g: 9肊uڠuM3jOQU^6+ rQc7IJVgݢtW|LBFj-މQ|p>zMRK52)|)Q(.Ui{DzM.}ƴP9,ñXiNUа]~M XKQ7>5ojJVXUqa|ݼvm^1L^vU/\̄ۍq͟v\]N & ) l1b>x5+#*֟VK\w d5 zD}RDޕOTP1Rz|3Ӕժgsl0UjڕwpHɥ'Hk37u|/$o}'W.-qN)%RUJghi|Gw ItP3Xc?#1;]MWR ZP}-yEmh޵e3-!`@y_j!=r 6l 3#]i"QrBɼYʒLMic|fH4UgԚ)Eѻ6+è!]f;D;粙WiXWL-? Z``=&TȲ%^@ x=F2U`TJHV55m9@o#MZP5)f,h"Ƚͨd+E0x$%RXMDv"p4}=qЋ_MSdeX| 7|y+,QΙr(Î2fhFGŘagqylV́NvkPƐ)*0MVβ(Aq7ݪ;p7˔L-E*5z8. Vߩy mz(Z݁4SG(CԹ!̛dsձ޵2~ q_VeȐ",}R Q~ؕZg%arls_ )SHJBOjX`_vK3 \ ROUvut&dk j~בrj=Ne7=\`y (#Pܱ:Nh*R/GWѾkѥŻ$dn ZpR)^Em2;VH}F0>կ7ksb ѣU0I|+QV82|=q}8Fotq_݂vGiDz{9 B٦V+L8jIL9GWvf3Nk`+a\YWf4u hL !0Ɯ D҉^R|&"3KxhHPT(N;O@ &Q({MNof^c[洈hQEϤ%9R:t-دe Fv.ۋϷY)3-Ggd*=S@Yj:?OLoCD@AXfíH珂p(8 z,#s.=n2\ڪ-gn^'h*$If+-l&^oZ<y [MmP7PMv4JzlGl'pSyʉUPl]*[fCoi=sV'2'Z+mN]T|[١|8FtgHd[@HUQ^9 u"X+fn9 2md|]8͠FJ vc䙮j U hQBc@nn?,ZbZ1GfsV-~u8I#6PqS{t 95E)߫Rz#$$EEq"/tlJAvH6nQ! nQs1v/tRv}A.=awW,:"/6ӛ}~ْ)1;Җꡇ6#>G3w# * :Ԋ7*nJԘ=>=kq r3"PIҋ5׸}E/1z<1d,P9Z>_\T@A2QLc(s!T0ڊ!S~Hce9$C&:/!9UuDܨ Ϛ DWZgk=jy.,ylS.J9TwL {.&yu=*3寏A&Գb2@q!꺫/ yH&s6DCywMټ2b%/ڃ#XI̸_+l Ёb[&P[7wTEKUvm֕Ɖ9e%C + }cE h0g7'9_|tojΜFn4jlCqp/$B:cdq:@^*N"˝P< nÆC)Sf_+Hyz[ g'bj(q|Xhﱶn}L}[lW5LwH&ZqEN4%e8]YG=En>diUƦnX8nq[=;s4 eu`!AF_mji]P* s04[o2_/O%羻̼(%\2m፜MGL$aɎ]X-{8s?69jh ta ֯q ٿS8_ge&n*B,l:E¢}`1D1h FІ p;sJ)2 *#:.j[=‚DDE/)=s7yT@|ח_>`-KE^GIe2̫{$zH/ I\~N|pج\degi8} zX\U+@`( G!|z-.Kt`5,Xyze01.c\,(?5Wb,y}{zpQʔm>MtR; Y)U?+?8/#kEڒI7IX(?m:_@bR_bm!؅= FuWWUOb %sZ ؜#I9ـ4|k9N:.$lqٶWL]_cǞżd027 :{Y>e`܁tљL {ߌ('NELbE> +5g> mR0ܢ֪r%m}HW&w5|̜r1Z\\$fH'wjz/zT}^MFhiט Ԑg3o1f2Ǽa.4Ri[Bˎ@/9WiH ><*c#cLw[R'`axFʦgZb͙-%W7muyaJk}G!\LvC s퀖q+;03[d'0jƑFE7tr섕$J:*FuubC3~{4PI;ųINhvVf,Mc۠W%Pi A7֍Yoa'08tOp1BsQi:{ Ky >B!yae,qgeg5! f?!omUQl:GO]禋6l O[5{X?*vmƺ 'U㌮$'1 ?V@V#Ԣ=Nalw>M9Ju<11]~<g4z?A '_&bk"qhD`KRdnfдFB7zjw\o&+ׅLΕk+8I?pî&ÌPw`ً؎t9t]=O!!1E8xo331J{ x_U J"-ܔŢ-bU^aXqy,Fy{w gv 'jTo|݌V|r󤑒,ԇoB'Z5ˀ}0ų$-Ѐ- C!fH'o1YF16fiҺ.ScgN 15/گ:3Yi0$> F. s%l0K6nNpLAl0g;@W ȒgsVǾ?)H:#8" գǶ/Dp$wU`Co\?vb2M&G>%V[wAt Wm\'xŗ_O.RkQ&dѫ7zܪA+wm2aLF5(iK` *尪򒍥,OiV4sCl4z"00Ҳ"XP Hu0Ȩ?uwUtr>Cu!%P Q#=ɞd:VDc Ĝp Ve=/8ǜ b9le[cz*부i4%1~>be8RzAZaRh.Έn2hhJCY*8Bj@&ݔAcBVy@HO;V1_ 2諝ŧiT/ad̓3K,jJ׹WT^8(0Qs ۰gzӭgϸdq{iQp^^mS8 ? s9lvKEcBu  [ZQ=?[y仜 @`n1zE!#\9@u\>Z#s3GC$H% F%Ɋf1 |Z-W)lrA0|p2{K? ,YXOՔlS"oC61Mi'5Hh$K /0SW:B]( 79/Ilk͢hOAp%x7xP!L>fnY  LgAr 0( !a'2D'&L} *eٰ|W(;>οM(@Fs0«3qTELzwPF%4ߨ>z vǃFScm}0Cd־J%MlUx& 0|zg1RG\o%Ee^>? `P*{u(0WpzQУ֦> 4=s?jxhUc8#qo~b6@i;,M]Y,J`ެ\B,,e%\ t|Z=iWJ%CvЊ9 a뿍w(˰ FwLEo4`GNvո[z¬ߒ9\-kF1djJM1IǓi2h A|u|A[M$ˠ.Ɂ(I4. h!}oZiRE_bpN2U(?*oJ6UWO o.^G>\jO j+,H#L3׻)kJq:i6ܘPņ6U]CdUn{FޘR1;Mj TuW䗾] J6s.TPsdSO!t'N ,T}4X9g飄JC(-{ 2㏓;[T-i v 4V";RP5$iGNLp Sfۯ([6ۂɉg}.˰%.>D/=-}N;G%o+#ZS⩛3\r--DU؏| ݽ ^S3${eLgǝ!:|F5HXK/3܀/so=m4bzNAcY /Z/~FOi6U3)Z/lމיv mr(E>sO[84y'O_"Fv^|O#&J]jZ+9^}.alؾآyCdn.ܛ~0Ƃ;o Ȧ V< p\ "}7^🾩a\(˴lw&3эC{A$Gdhh\{v')<)B]x_\P1 z{M<ô+1-vk~ep4/.,CGnfݫ8`"JLbEGr2iVs6:nݢsY G* S::aScdS q EVO-hTa`6%͗l8iM$dӚ8MW"m;qsI rBSdz9V DÈZc04U(9} ӕ/KSN&hw:\sȜ O8{rwG˧s@5t9vVf MLc L94C4Vb֦j)MieS@؋:O_rHp7d:tEL.2;p~獐I|0zlvLS* ]EK쒙qLZ{mA8^ZQɑc3yZQ,r>0X,Qϵ$_dN9I)LPR+/1 |\?CzfAM6 Hy9>@i -tk[>`v&gjM3|Z,DY{Υ<}B(tv  /!&p:ڝQG_Ki>_F=[z`]c5r^td$Mk4;Uup[.P QSE Aڒ+ERZ!Vj f#d<,wɓ:M)N Ȗq EWz^Lbl9O_ζVZCAՈ `jΑ()j MHf ~Q9I5pQŰQ[itz?8@p̽_ ԯ3y|?$&z>g%m" G:](0_BL ((Bdfc0=@4NzQ(<-S~Zqd8IzdQ}mtaC4̓4#5f+nMMzsJO8f8ɧ TVzI^#U >]]֕< K[ u;<-mh}ua+ej62}FB-n+ܩ(1dؤ,Cè3C6GR g+~ˆEoЉ(mHš/82sBB]Me", X2JFs!Isl<+JA &ClknI-l<<̬\plDK Vz/ŋh1uřvw&T3T7)?җr\΢e7>}<$l|yHwlaL5&m@-V1̍P Z/uؔj٣aƌ o'.!/T B&!AL6:+/\\`tG;\]P Ͽv.9?7JͲȆGP xv9`ԭ+~ 9PB'zk@۰ۺ43%O.#lT1ro)ԥqoŝ2)d${ATǺJ$7 t#Lt-#Rv>dk=B:A.Jo|C$Y$9E$CD0B"Y T@rkpTP\Ѹ]&$#fH\l˯A'A*gE\]/cn)P3ф:'κ56ng+Ѻc!4AQY[ݍC{JaV ſ[ӥzQCWO'3jQG)y);IzbwD몟STEa,{ W3xJ,^$% nVIB}z#)DZkښ  N]¤"VU9\bROvÙz5 34-䁁客d'c> [==y+]z Zf&)iԕ9Bt Zt2X:)dԥrCLUӏw ~P`@ՄPh`[$O$U7_:z %(ںMǴ ZG/"{|Ԩnyu^Jy#r#@UEG"z[op5K-}a49ɂceoašW2I7R5=O@;H/2#u;M匄ZdϷNE!/HPU݄MĪͶT"dp K{m.Wes^\0UwDTVzF(e(SDU4Jah(/ u0 j"@P #RJ/IUC+R8; HʪL)E6437 Oe2L=b&D3XQϓ&1>FxrCbeIV\EN8͡rݱ*x n(kmB/d<-@uR;U a zO}?F7iYn򎭞+|1MZ?.L!RM[=ͻY:)k./mgh?LwyO?Nhw@-FR"Ó,&{1)D.dҔ6;th {޷yɥ Q )!)Jd]g0zuwd:^4 =CdWzz "87LC`M Szw`TW\EE5:V1U2씃ĵ&m]]'[mJx ӠQQ*vɕ ӭFyQpYb6G7nKS5A}>:f.~i?ōylZ( B@e#Tj~xv4-L)%Ao3!298+MNXo36xTQ/NIkrxʾd b?qa&@Sh0Upuľ('A4$L&1,Rɫy Q?۝ueY,^4c^o6;1do鑍b#7izul ġTHM, lS "95ԨTaU 9s1"{YjYs_)ٰvîC8Aue6kn܆Kߠr>:kbs0wwz>#p[*.s20swv}eL ]'G'8C,Ol_O-,8#d4Fe־ ̴.0Gv(2- +eT;ϳ*1PUIS=P~XxʧGϸWɞq0v*C+JyĬDW6rllC51S91&%_# rGER၎vԞO7,W3Vp^s\[ʱ P\R00{@|ʭ*KrO-1'wyzn(s:)qPnH׻;q^xWo7%`E0ff%E!Pڲp#X3FL>h@_OEԫ!X5Xܶ e믑 AJ٦| ~C.=l\<PMb>P=le_sxXȺYH?Z=%[*[*t"[)}@%@9J}/"c a܋^8- 4 L2fZj *#X*oN2[Jc,Elڒ1*Fw/}_>w$^y{U+cC6Bf8.Vw%g*6OI̖Y_ӱ{,, X_뻣%fRJCie:TsP8)3abգj*!Չ4/k_cAA]09,ňCSʰyZS=]GZxğ;AU?"x& ]hnw@bP~c-R$[û鬲ĺ 4msf-ܯ)(3[RsӪWƶ mGJj5?m!迆;ُ )s)'lev``JvmQ'㨨1pPҕ{gay UŚlIHN¥Pltc8~bPp (4M mV[isSCj'oH>=Y xe͋m&!24SҿDqNU*U ,纸x~^qJ; HgvW2,V(^J&S\Rǽu6bls CE.v\t7_8l3MIQwB_Zr F *BXm.+_ m^Pl8ZBMD~ QK RB<ur9qEuc}L~F%u4QGcYL H?KVi=J/ɧ"ݩݖӴַȫrFw9ܸC7w+TyUƬe('\̤JϮд%?d9!,t'Sŗ?}Ce;140F(΄?  ,:ݴ%O@rr8\U~8Y-yBAcuRc[x CcEyk~ ' 8rC1 R96CFj9ő0ꈓĎר{7}a-oNf 75H|6M։ž&uc(ת7P/ Jt_j, FUq{m~a%=BW10u鑰k]Ht^lC3aRȻ t a"t<Ү'q{u# 3 SH t 2\YU.խܸ+HV諼/ Zby)~"6㘯 d59x lpώds"m5T M֋@P+21 a*w}6i.Cep$,L/،@Vp LRpH%'=^Mh WU:v' ~Pd_`Rf[w`kIp[}q]OW>BJJ!t>SP/sm RǍxGPf,3N-3vluB?ܞ̮E莡2ĉvPVlsQ ۵]!mc]2 4x2~s\kjj5diDz(UУs%m\d:Z*bP AlCA ]\#|%֮׎9^x7lTTP6d'|T1mN6hAM ;{ze١ 0V$כakxkP<4f]/!B^U]&e.Q1}7A]Ho yR'g7 ],7>Mi&9By R]g/9!qpɤvk-6ٚ3HoIbI|^cJvK\ˏjW,.fN_< GhZHE%1QG@`\SoS/U`AE .gI 4%RG6F٭M#xCEM-6V KE,u\vSp6v|}`4 eFrZ+b "Ymz!,z6f=oZgoejX)죎8`5r&k* u٤Tb ޣ\@f;0~ K2V"ĈW:[h]Y(`86'JVoFbōRs)!z ydxZw)B{90# )X6fjy߿Og8<JtguSB-ݬK"L[v5QeB>a(Ssȓģ .R Hm<䇊[YL8OVwM;N렖@EC2Ib,%_2:ҽU1\7EݴCw(V1G~xI-纑!4I+'/ -}5s=O6hڶ鏐G ܟ݉m (q ]πgI%* 0rKT91ϲ٩D~4{}b&{#XF^H*+au 2/GJr4V uvt)Dd2(cwk.8ގ:+"kuB8:/r0Yjמ E6>w 3;CYoD>(0I-mC/ZC ^??g)h.B+D OѫGD:^!y"^p,f %l wl,d :͔|GKQ[z r=hKq6uiHݱi+E}-vݙDkk/Vĵ!NZo*"?tF{KD,NȅF Xx+3iL[KO< Eb.:lRU>x0AI9(qW'U`9K) o7h#6A$ʅ##bmYoXOFpNaTF Tc%%d0ˈ#?& 6%o$*zH^A gSkrŦ8N ߠ~QsW&eW24K;m¬XTͩ!Q#?c|9vThAHeS1. ~S5eyX߈+ Z(yT1rUrNbkzOH#jTߠ}IsܒkRYUzFˈieUqm6D%$4W˜n8 ImԁV^ğv8D~ hEIGH*$&7@ :)?R;(G,R<0s,|㿱lOlFܛv"i61]JdK¬< VEܣ(+qZ 3Rcvqg. #2cMϑս.nC +-Y!.637j̥3ƖzWx~5.firRJ`D^4pfm~{GWV~BГVb?*RTqog 83ٴP:Mi׿1(’:LmcdQ }ѼTg1d!IGo]Է^F+d>6 Q< PS\ކrZfO) 2Vk XDdH:v ŋ9; 4̙pŹOfǭxh8U; I ߈pH?v>땤obHx/}<2]e}^eT>#A,>'7I!Dp~P^v\>C3%|GBHx|]lfG43ã7"0A$%v6St6+אjbPka*-WNлh/u~I)MӼג,fSp@,2m_f37?6GN800bÓZ%<-z% Y`5qiXh1adk"0=ٮ. _wp"zH~~b&HDרE{Q:=Dyt >&d,!"0Y` ͝67 ' EgaojE CvښlRRm1x0BDkX2y4pQ,0^ێoǞݻ"-RpMFO̬QA׭j8a%Zg=J@rD0m. ͙og={׊p*~On= kMurG.Ze/ExBwn(M>)6EoAU,MaC4qs]LĞlnݥpEO@ zI-DΖ;;bzmr |910)ά #wS"Wvе>jQzͮ !{F$ m2 c<=GP[ .Wqw !(%}v\0E/.s>I‰TGQH ُΓn*]wŠr!ڄP-|mZt>|[!!nXéWW.H7Y?#.Iv^{Lu>l5mSڌ^"{#A) *~qi\^>#?5}.~g6c#AgÐ+WE쓎̶UT3u8 "hPj鼣V.ۘ:r >Ob Eej:V(eAXZRT>FܱpY"%[ۇ wSOH6}X(&ϛT˝tաa8W1giX1IbP 2xpCBDH]y8?r7FH?gAepN]u3.eďl?TM +Uu'Fto.~Ij,z@1(%..2GOs"dA޵I-J5̗JstID~؜}ГKz@ʓlǘ7SXK;SpzC~f5Sy*rBb@3jCz-u&(6Jwhz5QDM;[ˑnObB{Sn ݭx۰uD, /޻':8+#~MBē-byT%F6ģ'Ӊ6xtaOu/LV|YE[I{k1o*S9&m@JM'0%v/GCA].죄riD6JGշ($>E.ᰖ52C;tCgwxȬyqO]zG];jD SF5.,no E%`t؁V 5 Q<ԬYr-nlW7D͐ %~`n.oPV߷R@*}PXW8662 TX5߉#~wszo+蝈7jFCKUQF&){ב4Ю3rhs"x ʌʾvP,*-d\$&'Ԝ{ f;]m^].*i ׎/}5VR!.Sg&&nit@7Rrb`¶QQ 5$'T؏,^3OlħZi`UO+v PsW}p\6T) L8[tyaObq<SV +)ߧ-"u2}5}l2տ(:0"'Y$NǸK;B0lXsWˆ]Ct$(IP:%f5OrDÁr5*f%[ @o 2i׍@xW;!]`i mczސ5}{!+?1Ķ_J nXᥬ1މz I,285Mc+(60O6fkJ3.kBi S^Kɳ!mѼM0)ˑ`,nRmc=Kb gB үZդtM[%Ha;,z>榑5eؼqv^(m< '޵O '?8f.] 'In:#jUyeh9͞o6 XlfJ[Vr*118aVq XzhHHEdmbGގqJr^p^ƦT"wP]qb>S)Í -1we([TX|dM?O ZqYr.SPdf]◸\Y]E++~ /V}'cH%u8Y_:c΋&ɾ:bGң" qjT199K"sBByOR *.X#6Mtirr$(tġBU'ĔSȟSCqs\d`~/O#kyl[ ͫ/&g({=pmB#zbf2t|%*>N^#)!c7A)~tM̤IYdLpkp܈n Oh]ڍ' S.|Zjr4x_D[|A5XЯly"2Ŋy}BBR"=ߨY _[^_qNLXh?r8ԩ&NT{-iC FF<9K/ՙ46 +hZ}z .}mO5ĿLǦo>)TU ixh0_誦٩%j<羻zc-7:/8 -j1I UD9 mWqHÀMBa- ˌ? ?Spt#;R%tg\س-I5z^ M>t^c0+7P%76C`Qys e{=A3o=*T'P]ۃ?=JD!()33m|*egヒ/+C̥duOGw"8w$NY>T.37}^:'قkkc}ul#x\tV_Jxx͕20hnoc(Xmv*jIw q@w_06|S‰yOJu WN@d!;bMd ӰVճ[QQX=x,ƣȩOa'T1kdAHu 454mr"b;۝tOnb1Usz@E6){\OZ9,L+9#3޶IRyˈ/ ʫoi2"]Z#4'6?4ᮑlrЎvәyre/g!g!@KؐSM}< $~0fOg~6fL7LN|k$i_w. V\ml_Ix>CIf͑Ι޶V^@(x,jZ*⑹SUs#ںjM #H0\)ݛBLN!8)(ś.9jfBinmgf$buZFRUƎ𺏫Ma 8#W47b[jZ+d^Fݔ,|p/@ݭtЛFLb5h-gIoqT?^wӽZȻ'?0ŽzJ-DhNuhK)7Q? 06`pW\~qcs\ʻT:Q.'1BV@HLpnw]H\  2p1p{PP3H))Ń+dN>. qsܲEG\ RM?.sF4#f_M_,^zCZlϕv fjFh$TiGުLz=6e +]Z'\jh.4wNi60#IJq1&6 ʷV{lMͼu#h&j#qQvځ4S<-_w[t7?n>Ԓ!ף[KyY|Y 7QAIu2p0τ54%( 7:|_::e0` e"S7G -{DPJgL >Q` uΜ>c3{UF-wX M_p\ȟrg1{ vch NOe`SĻa2`yWڏj.]KQRf6nm+aP"2C; X?!MXi^[MŐYYj7*UWUa_RءA%B3@t h9p,d0݊S=* Yco2F&7s=U3j͚8?ex$V2sP"S21+&A4Qd63T: -v jp_x|Q +]9"Cir>+N5qLHl?t%9=T/Z] `*N.z3 jގ'ok[w79^*7\w{{ Ȑ @s[.Lt0N?q0 cVXX@5!LÝm4z'Nռ/jo ͊*j>p[RDR5!U˛'FL!r?:-t;|jeR ϱVͳwpR!Vai|C-k3䘠˽yԆJݵuij5ٟ>}:8e낻ƒv#rx/K~p1"!9F6'P|&[} V &3"89>K=okGctx7v)ӌwҵIumYvc>-\QAʓWiKYۍqgXt9uID0i򣣔k5 OtFP]-2tߊY-΁vΈi8vRrL lʚ};Vӕ?'l r[[JY4IPnm5^G>"m7B2%9(ܠ8ڍѩw.#y' z}l*J$݁{ovˡE0~N*AǮ.e\}5յY)OKhD%̾# ³~)ٰu$Kҏ/({V F#vb Pޜ"|Yӫ_&MG²vFgDJ> & ڟ¯*p*9mψwSJ|0Es0 A@,iV4`#B#9U 8P'BC8TS:ROY@xtyuf1Z(d$lgLxœkb<|f#DTlzT4RgbN%F/|j_:l~GkO`n_H2`trh#5\&濇 1{^RyM%R!~?v@}kAG\TYZ8rQ@T3GY~[R  *Kn0|zaC̩b=o@꧒|h(0od'跌D*H[Y/!Sۢ~d'4e6rkxGdMܜLx;i:IO}0<Ȼhѻs8_A&FvعoVm64]9RϷUY{HKe0(bSD@_Ҙ}W;Qdc[P=!{biT1*D,9C mvSh6ʯ6ff :d\`[^* U8a٪:9WFrlUdʬ[Aw\ G8",~XV8쮗R,sf/̬ֈѕ| 1y-wmfE;3t{% )`\)0W+#ơE~t25c!WP2Gޏn, eb.[WUƽ az3MJT3d/_DM:'K¢-,fLx[+0x̠}`JBrɱϿ8 xidq/)T# ,t,s Hۿb"+Qh~ѭ@vaeԐ<F{QX6156W#BQbz j[ͯ! i0U]60h8Tq JrNPzOR6%Lktuާt%,G>!ݬ0uo=ԣskdMtAaHN)*T^r!giL _~k՛OI3:n#_'4c;Knv ;f#2bKc5!v. kwfjů$寮UP|L{ WS)sĶDPXx/4 w1L5MH@iK0T{_PHV gջж>C}}Im$߹zʛXjhJYzc(A&nϤ[K$ OSҸN?(rrvxq4Ŝh+6wE V+CIJ()2mHWM廩,A;N.Jti Hl ow3tBz4Gi նRUxgB&DIouk.𭹈I*Xh --f=1* 'f xKtK ~.(| PcN~ڬ8UwX.c͡ת*SA)T#Pτ0U&$(*sZ㹵'Ωpf?wEb\ŀ{AlC/Ŏ‡s#Tqr#>V "({k[] w"{ǝrABxR*ݮ`}߹-jNEvݩHbu 3`LVCcG&sٳMo̥DLBZZW?~m(iDF| ΁cb&1_ ÷*D!{* Ü:{(W>?-B}U4˞汻yKSq@B (U:.W,,uHO8r`]m~$P$ѓ0e[ %"p> f͘zmDu˪?D3D2Ղ iBk"?Ptks-ʸzCA~?.޾!~ysd.¼H$1J-t9+XOE`/,Ley25H{#9.uZQ{Q4$Recvk8AvgӸ*"Y vr@ongcJOB[('ƭ6 zC^ y~TK)i-S;4ځ'G!^T+4p4ǒj-lnnm+Xׁ[j_r]՚ hyjﮌCFX?iL{uK| !2=^$ΖAY\avvx&qr&Edh;YmҌLv杏=22[o Vl,@ˢLVd|_=`c`) J`,=zǕ s? (F#۝dگu+Ik#Y, s: ?6[\m u+$kh,UqN<1`1ݳ`Tj,qHROa >U _We#vx,l) {PwE xgԎb@s>}h8 ]M-y&Oq _mv͖:=vOk-IlKEK'K"]d*oҗۇ'pw uݰX+/:9[RJ2“Q/]ˑDdJ!}l/.?Uudaf$"A0Ftf_Ii!8xw5ؐq-n]+$f<+$ b˫ B9Ȋ^LPʍc$L+|-USDPyƀl~ y|2v7/gϽJ'EmF:HXs:@ƚVł.Hܯ[fODJ5r+K6C $Fz#l,*3c=]U)cT 6)]y<{}cL|`/r]݆qB_h]0|ukfw-xnTԿ3GW`qn[S󩙩 1 Œh|)%AO_vX7.?oD6ppĘ!b܆"h_qgݕ>`4IP}G/|@M{i,?C'VDcMØWab2 8%T %`56%0J>{N`K؇{I` l͸T3G1Lxd"8gr͇l;(lųp b"bhFE8*bl" С mHIF*̱ה+sIVF^[:+}shEH+1@`z4 4usr;y|#.r"hQ71-%y$4vcBNF\#"`[99[$qhb SQML=2)%<4ӹ86B&?l7 W.]A:Hܬ|51?RKnhVxږ4 `.7ut2}rC|y~A?fr5hXt!ZЋ"_ͫߝ$\rjX|,bqD$J#i#ުS'$snYpZ%BbNrweʸOað`eN}"bR n0lg٩8_vf#9e9wFYًo  R[W\}1<m|[$hC,YfʫhgQk炄CgaC32ɢ@+?3]=H@ڝK\sIZtd$_O&= 71hx$uGs̬NXt`lcSȒ+onAjk3#ܭ g|_p*WEggPƞ߽CMߎ6Ix^-}]5k vj A^phjڷ=N=Ca,Ze!ߦ`ön @W` Bt!-XޔV+3-|R}Cug{ۮI_̰'(KK ׎0 _ncYgo_K?GZP^LRD܋d̏o=b ʅO)yF4AO;VYG/P_U=vZu5x_ J;RFnAjHn2ʩ56@I3bIC39hϧUi Rb Fz͖XlYVmstSw\P݄c6KN*aj\,fXS#}c5sO; hBz,M@^SfX!eάXl˞L~]?P̰=KAN?xm. xш8;D JRNE_c,5 2) @T]b5ϑ= `Dq\D}Z)&u̷S>4Qo%%jzHpLr=ܭn`awL&+^7C3[';1|Zh D-%y0gɢ0ze+)`y^/}V[sڗ6s%t1q̺ 3T2h% jr1~|sؕED(ޖC80F.̙4j:ʗW$I1Yڀ[w=JtH!X<MsOge'e*+BWʋZ=ө:f\|"x K!=x0oSZ˯T;g"C5 "Wͫ4aLf J* }Ѱ(8(xֿGUžA7oLj (V_ȼ'8o)aKیy01|3br< @liRG99;WO[:saX4 8۬8`f3/r""C,Ko4)4y?ת. ~`JFz BHGu-K۝" P9ȳRf~sH/֋maFJ #>BSW #19%wbUd caá9a1R @0%t;~$gl}.cYp}OL#~="9u-j8 ^L ;/?x_->_sx(+.uIܾ[6ch,ۃͩb̍^rj,[q32 kyN űK?w~,"'IӣًՒG㹺h(A>z@d'V3`GA7XFbb+! xFg &7Naueͅ5N[gSpjQ:[kStGսVa[l#s[NϧD;즇"RQ6©qy/P (gOIN5O0TCziY6.C!Ԗ.'̧Jj[)6  K KXM=a <\m%Ha?= EV]8 yqKH\<痥œBع#s֟IU| 3s427෤_ }*+N|IpaǰackA'){JyrWBigFQK˿^'n!q6h,?JGI.~ }IѶj648CUެȜNSPp_gA3լu/ v~X%A93~3OEҲOu5Q>w^ O2S3;)f̸%&'ǐbImVSx˴]D:5&U)؊gdZ\*R(M@dҳ0pI;9Ӓ9zQL}>Y9E;DO_ nEVŀfvsL5 ϩurc%]ɮﻇp!eu*!7.gzoimp:!S+R$3{Fɯp^6^J.u~z狮=Oޫ+j7oYTN7MT|Y33J_Y/u*$`TJAl'xzS%\aqwA%kHH\2-A#|K-i%=c#  +AʫfRoՀ)3B S}=nk@xLd\PBS?Ӯ67S*>:B ~6Un|CaPѨrgcQ;obwN%ӳNöp! 0dgT7YX)~7޻4Ӊ|66ɒeiVD琤vn42 t}'W297&) Pf{ 8sIˈc"A Vm z֜FҰ'-w@KI2PVeS$-T(#^v^dg3Ѝ[$08+UAfVmb|T 4O0ug"8(C#l2(𸽆q0#-%%4@lv\3%x/,L)/NOH]L==X*(BIj viO5F6.Mrj\;>ԗc<'n +<ש}Mr$ }[|dkEv,*uzjWSxL36'JBʓH 9,3 M4 {H}^)f@yRo1W-jy5@!`clk^>Q}k73W 6x HX1hW(2c:mh 3Nf)5_{rhyL'j f,)Iȼ.(&8~C] ,{6gkˣ$q,j!_tH;Sly5sW~+l! ꙳& 9{%Nl}ոyqor?rAw:ojO,U=1߿xKP8X7pJVKh ҧę<];|.l) <[.5#CeoM*G6jN=%R$6  Q6rg&J|x̵,nCP9]gc֭VuB̓od1ƃc(mW0f>!g>mp\)&~b@ ( }AX|*1'G:k_/Ep="b:LlYsYY20RXO9c"=.Fڲ/2KReۀ̡=K@Oċ/PXXjRkGH޹ K}FU;  6)U);ƥLﳰVP"c;%sS|ܚEX *Q2U9=i~>~̌Xs>:;-*iT{t7ÃŊY[i?k.a*Ǡ#%5Ro!r(,=t7| r 4\$!PQ΃p +ZE ļL%|񺙼&_TΖhy Ev/<["&8CjMFZR~N3|GoyM2?@9/OHgq`H :MCvB*;AI$o nXB`!X"T‰)эK }:Ϩv#srwB1m5 %Uc&5wj.k,r q'YIQZ[R5&zE;T'Zo|dz urXHɶ2[>4~;yEX R]:U׋,5C]/'̅ ĕH8Jy$^CaNgD(t9^?n[w=CԱf-H8-8H!9_#1"{kHFxt L$jd5aڛob!AϤJ;S8W.EThMUe4G3-xEiҖhS%@Ѧ" S$FLQ>zb@QZ9+7LB3E[QF>KdGw^_BmX@O[]FDze^ǝ`ŗ$R}6qIPZ5n 4ۧ2DzRNbHU萄HsmЬM>eyb͵# I"z'42.w:Ci'jv T>.2 wv_ڥ;c3AqͥxP\%B|sѹHBG2jRKkHX HhfumH;&#ٵla}O2Vs9MP軒մx~/:9F$<~0qXWL2 ٰ}xx* եxVcpsmQ9Y)+T&&k0ޅe8m[ї3@p4_PR' 1 O7WevQ έvrYAAhr&4H4H'|\O 3I '5k2gz-Y %v6;C9os{1pd= <ԾQ,@ &w[ZѬeIC&C{^}s@ОziDh}d-A?{I,K,9TN%CY.o2QҒ7Xa{xr SYނ6^b8o/߷3Z0?}D6W UWĬ[jٶ0u{%OV~> (R?'MNw=*Å-f() L+x}IQ㡪cb̞PdS$8ŭZJz_ߦrmE=Ɩ!pZ֛+iJ>FNudfM !NS Z4>N.s0o~QzNmӄ]GEhekEf ȸRXWja3Fy,LȉI VK*C>&@4 LOԳH)6_9jKDE=O%L+)+2Y=8~sX@ qJzmZ-w!]P6vmL̝I `6&L v\Az=.+煅6,qZ'-՗kO ˥ fu@6TCbFZx%>4ՠ?ЙrŪGj-&:UDg-Vr% xLdxR@_;_OQuAzy0_LJ$fKG"`(Ti{ R-I%P2YTi#1kfEmQF7 R4  (ql2jY(r+U7cv)ur(Sil8]-F'4nbHZJ j}$Qb|p2FZ\Sg/P d-b!JfϘϞ΀Dʊpof=q+ᒈpx=,\=2,hV'"*Xà][ SK{χeB=M)SwL͛iK&:.]IM _^I{kr1,p$OBB} sAZ?ѥ")/Urz۽rTt(L e穊.h: mR&F_FFa6p&;X v۲oEߘkħ)jI)vvTz"KGL0lii$)[l3\z^I&$FBE+ʇ1ך7.bkF:Je(β=ibG(Vg y-B,E | mvI]mwd'|lh=wѹ0;av Y!Kon: Wdr&d@P֭P4֪FlJ E"nS(l:=B{q#VCs'&T~i JzH\ ;ȨGy3`T7|(gsAnD^f'z!!l:<ܣAM]CPy˯,}hUy.m>fULZJ9Qk:v.#Wo(XL/~fuY qجoœ;ǎ+^d _rWrINWՓwU7b4yϛ%.@+DZ 7H;NubDŽr{drNCB֌B'|a )텃 Zq-q-THv%Ԓ7T6!(uIYy#X ߳}ޕ TLS|oġdՊQ@EM6qD89Gw*nI3ZYّ2)d/w ?U{;INFO$ DKTeԊ!WظP^ndK~ʞ{On6`:pU$):\fVoWh_B!?LfU}1)qGU;d'Fq0|]{n'ȓPDj4fr=0+Hy + a`TbkX43cP,7w`).O>ZQ%|O #ĘUN0y͇tk?ELEîM^;ɵA8^;0i,–tJ×9s->euz/@5nE0v tvU?"K~8Q5D&e# r0 6lt"M1?`'u.Lv|`h@|H[R:^uo@<*["VchۣǏ=AHї A -cy~wBXvqIgYşԿ5mx{-ɵSB6 kT}<ՠt yװ+Ej)rke萈M1/rJ +vl "0C,z5ͺ\T-{z ܧ7sEc` 0} HqNP#Yyk'!Kt~N="#X~!ʥhq 41Л:k760>2 `~=)z"[׊Km '=Y1H lr|1ؑ~?Ccqͥf}cT-] & rIpa^9~,+N<;@YiAU!ڽK5_sH#0 ys/][Z6hB Rɔ J: 7Fv7E]w-F~LiYY@tV XK3ëņLK-g\+xhĒl;"A)E -O mi'_)eYf. b@@y1B fj.@!'q%jneʷNW%zy>\dt'U~oҸ?HZemYٵֆϯ[:Ḧxk_xSKWuf{Pg"yfy&QF&FL}u@Z֤Eg眍jM G)!-m޵&ץ}rx!)Fl_RS|rXUJMp1ѻ-bOޚƘ!yd֭X㻘}xRˈʧYo6$8uLCxMqݪ&z^?TJX&ZDXatھ0$΀jJ4hSJl}|Asn4wҊa W׽TClvֺ8V2cs?K[tmv[;AY22tJgl̙`ZڍA-b3汎vUM_؆hBEy3x@kQ1eydqC$jiWg~࿊Z"rw"(<X ;d۞ qRJSmp!'Ͱ3̙*Dro 45@;ގ8Xj(rHS{( !WiԢ|GAO 8MIOR!0fcvOjj/AG]|.]bd7se(Lj.UX >n4&͏W)[_e6S\~v/`{`j8cw߸C@Vq/]F㍸'ã\&fP/`:ֹkwfvZLv``VA"*^p.QN;,vmPDo Xdlߞ{G񙞮FeJU?Ȥ%O}L;B0涌6n/sm`21E:igBR)Pspod3#lxQ %)hA*# p.=KLz"zRHIAHf~ d8E9€kn@G+:L_WZ U]㊌3X YniG%*C67UƔ>i)]8qe I?>j:Ӵ/lEL$\F7ݾ\$ °/тalL,'-ӮV7y)D؍ {آ|Z:{uE4c[x$cE's֤/)$3P"My.fBiJ:[AwɎ[~ AeU}Ge`WXsp7mtti5dHquJ:5 +[f-5r?T{,/sxcq {*- оaEddeq^^Zg1Fᥱ&l2:RQvOxzUhRIygOJ|lthK 0u}H`D8_0"Y_!8`10a@ɭ^BJICqTdAV<=oϘ?#y3>\;Wd$]z7>u]\V<F c#u48Wq=ceu{jNx.хY[6R46U( Y堍Ժ_xQex xS>V/YeU6tJGuPz TlO@ٳq,WUv?G$ݡ+C2/~ŝ`A^k:>N}e 9͸麺!ۈaG2aB$gP1Z!x'ZczCs]vNT~2< NR3xO,xwMv+sb`{<n%~R^r8G_g`~pY1pͩ8+7^u=5Ww} y \BS&N[\֎[{_Dɺ)kZyEN9&7*U(5>hgF,-ŏTG>yG jF{ @2^>*&7;ʼnvό@up|O\ߋH}S N~ @9rh,l5n/lM x?0TCl*mg8dtJeD&3+4{ W9_X Gd%0(d e1IVy\&nօn)ZC܋bdzߊ5BR_8G&Z ] <B׵"]}K `\jKFA g8Tedl!;߶<*]:ܮADgu\ap5甁؟5k(S9 W+F/6p8^|^p$J\uFyMCZnA;WJ]Oi->ט[vïv7ǴG9 I:90(K泐OK6$9%?0veMHg_g{O@\-9KIx'98w |`rvOleAYh'/Ѱ*|T1%'C#jaJq2ˌ>˜0Z5@z&fm(tYwRpJ.VWv+8Q+I1I( H:" `,Qa2:M%@3ckb4 PDEDsTA1~yͺQvwJ㪸cb\ORclʊ/Qv=f!`4CmNH] t jhOCQ&McA# sRj߬%JBĬ!+oWv_'yHNG?4X\X. ^l͒75PS|ꦦTcfӫu~kr`p Zw,bu,EFsrMfwZ!x侲L DaHpU}dB?( o} Mw[P̝0YfWP{JUnDo@맗!k1@ &ۂV0EBPH>m\º0N4ɚtkBZN dUl^ q^A}en+Ƈ@ճny1]hjT'g}]S9 B Cߞp17+#m6.+iy9?Ltƃ]dʹH)gb .G|NB9CTD>INd7rAO](B0=}Ā,`iZ{p#YL;1wkeҥL~+Y3 1ҴDQSE%] Ci_W~eȲX_y8qNQ7JbY\絡fÉj9΁\[N>"*[/dǁ xm:@B3 P'[3HSOLjƏBѥcEv&"M9~^|3m•Mv?h=W2308ǒ \J&i)<ظe*N{g?2l-l>Qm\ xg$|8\>6mq+MólmDpӷΙsU/ LR&=>$yyNc{Xb>$x=n"Ϭ3Fb >o\Ix@:ٖ۪K<(m&y?0 B4^끧hs=Q?䋮K%F^xW2݂iw|(b*)-[V`ͭ~Lsjc3뗑.z{l.}j8|t"ܬrw;[v«N&>BZW)M;% ߪF͓Yz<AհH 1h }<@<(Fv8b 󽒱~!$sE4]fuʶS- 6 GނF>fn4Ϗkƍ t5'''g%5^Rk_ةD1'l\7B{u^GRi.b63"ǡ-xYƖ!?lSzt˽9)/Q'a_Z-fyjy(q++T-GՊ JGŞ13L-pKH5dI|l݇XC.63Zfϝ,,r".ti ܇Tf(41( >"Zfh f\0P "B94oQM5ɒO,.<Ā佥8*͎'`^?WT)0Sti3/͞p2N:Jsa@ʟi$TQM@ÜFP e Bbj ܷK4bkmr7abF`( itcSݢV}X(K b(,l\Qc~6BޏWHX+XMGX.̐>3u3.rɡLmy(t^`ԷBy)r i%CXG'n@lH3SȇsϜERCx qHg37`@,r{Qe=$$p3l /AZp>t*$8(?p@Nͻ ETH))̥krϠVy >p#-/mb@L%9@ .婡~b`zm˾rG)XKdS#|_DǦ+Wi*~]JOpuZ^C }OJ;>']-[oIx#WsԺFqbS畜F-i Vdi쉵⣴<ʟl?:ݍ^kj.EEn:[_fLAs1LU|rI>Uˀ_(I,~XwZT̹i`NIzȝ(\cVQӊZ1h ӝz\kJxpG: FSXu){Z?Xzi;_Tnֳ8{WJ+#; 1kl$yR=F2C jcl8"fOo4ӊA--=4]߉PmnZd] }~AVΑ>-*3k72|\qG̝෠9@ͪe}j/=-?.q μvSf[a7&jYjVU'x;V,`.[&2F,҈jL]zbN{U`dD "҈|esROU_?R S+`'(sDaZ!crʦF?JW݋}(,Sݽ:),Rm ߠhË{ _|^&V~]ijDeZcWD%4(B0-,_&M= њb *럤#wP37t.bmLSij0LwD $?}`ң"Q:,BV'5n=ct.&?ܟNOVD}aX>Uu|œ[PuiS!+ZpqPK*.-W,`MNd=KSfegVnn4Uk^Nw(ǶإǾ b,LXN"?{hn8'r_pH3ه]h5@Sdk,_KRX72^=Ggrh_[#M~$ jk wŠYhyHW4_OoϦ hexk> i.riSK(Ҫal5( ={tITs:҅s);56d!I ߑK%FNn:U]@SBi5+ c ajؘ{ 1 W8 Z|$|#mn<$Zot 9A7:O "i2m-X]{#I)rsw'Q=,KʜBzB+.P0k#a&<iu0sh%tyM doN9װbH鍖؊6>snꇙ@R hy7PmX6i%zh)IF);)jE$b.ً;f1XT]]ZRq8l+#,rxdf^lTZgϤU3g3(*u(ϋ "t\E6<-`Y!h6~͘1}G> nL_e|YXj}q {B .'xK3gn :T[Ac}/9u\IDJḬ2itWJ|6_OCERS.[5#'wCrZ=Q},t)y6NAp)A1TRJ~-]dMre}c>vRY==wR!5Kf;$sC^@VʈB!Wr-W'v眼& G?|t#N+9>JyXtQVzW^U|G*X}v 9򣿫(}H7utwDk vq`|Әhxt+`ܼ H&QrtP5ږe Un>StR .bJlQZ %zg؊ u#BEP$(榇x͚jҽpK/Vqx.{eNg'†4y|D=֌O%E2h}s@Uoc+bF#M2WIr5q)ì>R j?1Ez%OhܹBmU܏Co_:aW*]4bLLCmp|CzˡŶ <[->,93}1v5ӻVr~(;F"N{=T53[.T>"〣/W:VʷS,p8ә",Դ+>m9[—rʠ|a3p'fq!!GʵW|(Wx|MN`Ul(p*3  Eh ᘋy4%ٝh|?iNcOnaş2!R'pKf?c~'YFg T~J:r9`jgzhM }}-3$<%-oCŚ Oe"lb]QD|-*3(bhڣf-pƨx~U:vjg>0wB&czd52Ÿ&&E@y͊~C!z])nLQ^A͋HXч_j]$R*pl!#@ͥ`|VZm{~`巢2]@# EK][l]\;Q")eHC{«%wz4w7DsFe2W*%Wh}xU=7bd8QޛDWϳ(ʗE?y7U,\[+ ZV|hyeл1?Qp4tX7~IJ };x>$yǖMiG&õx]M߀:<(c#Wס,̇fZ@Nj4 MER :n/`mf'i)}՘ HPLL ‰^\$n/lU·N|E4K{>@FgPׁc(z*qA޳/!6o!l(s0]Q@1eKLG j!-#'+g>IIi٩śDh51:Y&Љ>j_ƌ;;$0 ;m=ȸa$ 0gTsK&F=uWI4*{+!iHRǻESҭPMMbAd$G~y|9MyFCMX6x>-Vxo|%~(N#RCESpH塣Ke;k~>ҭ$FesESWݜ["gVyG3|n lD 1E|gҟȐ2 ͛W(VA^ܰ pl-[@OiGBP Sgqc5)Qr ;auVWV=$-*<1{1 aI zDTjjtJL`ɖ:qT.-뢣u_MlzLY~}KjruVMO뙜, d/zےby;,i,Y宅q{QU&nBwAV'̿ţ 2+%qPC{vT5V}+ T"Fcu%(w2skLEṃ7TŕAzC.;_C'^h\/<)JΜo ݅ԙf|`Do ꌿ0SFw@`J򪩶 m.sj5ӡy]08GlHJuнWwo䇣/:;,aSVuR >^T'X)WlG )ȝÜ  c:9=u"%ID9dK_XrZFR9ӂl,; Rڬ79qP77G7]_i!;7v1=B?W=% _5&䚚, 5/)\@h"0xbCTU5jz@!0L)tzٔ($IT8 RV[ku<{  UX^:OR[_z.g5a_ۑA5F0gJq=h_!a1F55FY3sY*|K(Հe<># ߉>K:{ĵj nPk14>&C[wGo3,Y7.rpa*regA3QY/ ԃq$_Jw7y:#R1?ߐE*.cK-H(:ui!@U: D|QX|A).+)M`V1{M.q`,K}Wg4յoqc$v'!B'^ R+rz"+{14Vv.5W^t(#‘zF=*(\yATH<SA75R=jr`_7{>7/d*KB5oMKlgh,ba$=Nr8 adݯ:ԡޭYk6`Di\$3X)=s6V~L$FK85 *oD&-ҶIc6d\磟ǯj2Oȿij4wvU DgE2M.ڇRCBz;IK,sKWC y]GVdfYg:y[wE|33%]ٗݒoF 1J+N Mͺ1cT3eފ3.i!A>x;Lϖ^F%G& *(%/Tz*g;>:g$\w=9,;MqSDE:pQ;0EzYZ;ùGr6}3}*]X(kds'.v6Gr Lmƿ>H;+!BQU¶ЗG2 ;N%i;\r^~5eaTl<8#<0:AbYňtta/^0DP.k_dt}!Lοdwb_ ~U_w7Jn!٧ǓSoѯ|={ G/C)cךFMیwof57МeK-(7:^79F~G$1R | m_` (f3 ti+si#ۮAvQeϞ[k,T6uI]F\K! 8j(Rin-9hUN^ :]H/P_RbmC%8ŶW6^f &䕚:>ί&{CIsGrAة1}I v{ohDS+/?.V*2ÖSG23CǼm0q#KIoW86} >LkjUE:RmH?KF1bfӽ1͞|o(mt4ʔZ &$ATo s(s{)Of( F>!#+=$@$טFF6)d~Td30m4!RW{{&>qQ2p:WxjyWkyrC\|*>&,CςVHGR¶!!r4|\k~J!*"Q:ՃɗOF/0EE*:NQB~)J!9SXlrqAǭA:MǥhUD澾c;:32$x"rZx0o[0_ *ý=ơpDz 0"KǢn&3)h fX9`@kI򩣵GǞ꣌*+bXl+>3I3mR;CfR.Վb ѤY m(dJR>;eyO9BXXbf<6 hOkYԑ9\0zaf鄲_{?3 YyiZvh9jaNfmjiVr?+[3%\lHk tY|NY72@BjU/T0 FVHnV6'EVKna:=$bɊuSsgsAXqXUmSaMC2FK@FFtyMl?`Y(ı{|s1 b[nRNT(_-CZbJPwyY&4 ^6D^'ɽ|߶LXgo%[Ղgߐ,+]N+CjGUYɣl,,ֶ܁|IgZmN Hz%9rH˕ÕωETVVȲ K+؀R}k%ZM8b)4/Н_a<-*ň6nhP$:g997e13))\c"oampdXrIqftq (adjB^OM=y.ٓѱx="rj?TIcjFk~['?lJ\G{*6s29Q4t0oQg.d ,lPö NkZwqTsѣg1-\_%&& Aw#|QG؍H7%ڡm⃜@c,8B|yftzuKyoFGtÙ;YgDdcC0^3=_ /kSzb$#`~*,{i3KrcVIܘr ڻ ѣ$3V~:Dr$Q:BH@;=O-ZsD=BF-y'EBG` }E3:c!;ш֨;:(+NGiuI'#=K;DKS%x3Rq.#BɎz]lႆ$]_|hRzqZ5CJWOc<`>ﲋn$eq!N)D>$ks$;mٍ(PO ;x#)Fy~TR CFBTNBW+Ǿ[WeD gFW'{n)"HyJNU*$CYSOנk]7u~M V lїƄsv̙Gj V/lcݲL_+f"_~Fz99fU0/@ng]<  o!)6>**zqv{@;,+\_~ZHEɘ{dLϴ;tyNQ \%3ˢWH9" ut<ߖ=zkep |`M}4cp1Y)hg`{4t@ ʍ__ }8_ϳh|RLN'/6g׭DrFճq0g&A>jX\c& jDPwʘ0Dʅ5WILvD&,KjVQ4ؘy , |v~WzX[{igǩS_}AΚimCR۴[{(=1_q))xvg'-*;kxy^G8r(n 0+y>UHVMC rQ^F&.!ӁϪ2XZ9ݶ!T>{l %BV̕M ̂uNt&B+%cb:=lǴm9-$->OŒPLʺj2hj-K"3?3]͒6U G*\9Op޵8ٲ0ټqWݿCNvH^Y0)56qmamɮTG!?EMpO,7^;6ۮ7(~>GbIWuKFD| p)4M%OGj p/'1$o3hFLkYd)+XE6g݌N2I(5;8woZF0s@TE22t&FT^Ot98,j"ftM49oSvw ( ğم+ wu>̐joB?f_K4FPF)jq3.v.2r=2͠Wȣ؏ 72(:#ꫛVbn&p#х"օGG23ʔ6oRKZ{UUum E{z&t(Yx47 P}@hjs_q0"fK^EB"pPkq*F+vǶ(9;+j)Ċ?h<]ۢ0KOv]{[5RS0e(X4&@r[;ArKwA؟@SBXĨp|p)Y #EeYnM Qij"}=!6(_pl03Gp!^-fTƴ|CQ{݄㘁ת CzS"PDbduz8.ZaQ bz"Z擥^n{q*j*N۴_tHJA/u$$SLM&S: DL{XC;lIęu q™HRK_P}mSDmGĠ6͑y|S0|i`[x` 2CAp 򋔽)[nMȮWxDċT| UCx_u;?XY/T)hv7e,3 V{7(`+q(?q.%Dj70%d@|q[G,\^qEx _F]x_GUgT׎!_,ȿ2y35uNKruFTW? J&l,e:lؘ97 EKx3l"rA_K]8#D[t0>!gkN;~l8TVV)Y@J|Xyi&g(%yko¨˂^sL-W%߅τ`T^~ z})i"H⻜HDkVdϗ:"L2{AzQfaCD|[u0뉲9*5$]olr+qvm6xMEW| FeL&<|Ʈg@P[Q8qejZ+/n, %ECUi[$c,lH׶G˹b%!NWv }p*P6WMSIE*ӰCϤZRWE\=euO| tvߙT9ëys UayF -HNT"ݶt`,|*4 4dAR.JBp{otk"]O,f҇b0*$1oV[=I9Paޟ|E!PMC[A;~[ #j#&굉$4i_d?eL~Й4Dx "", O4l61 CS' \WU 2Q*aM>ЗO|iL/czdθ:D!|kCp9vQ2vdj/Kzb0QGED7!]@C|3*~=_$+[8̏W~d(!J=-Jpv,Vȯt-lx==)&_g#K"259í,.BZW"qF_a l:K˾?ޞnfTS@$X>JwgɄ]^gR82khԚ2q|-bsu6oxdiٞM` |16dxUq$^)r(oV֐Z7V*Hb?=}[{)V)☔*HH<Փ<| V 5re|}"+U&rS"qV%_R.W|ױ\>׍FܻFb %nuNۢ OW)!7<{\e[Rޕא1N,*#c.1Տp޷Ys@>as~&+R `*.'1hBw:jqN5H?'F3ǷIE5Sncs0[oQpA8`G%&ψo3i<@2q+Sx)=/RsxUN'{]0ѐ Fpwgp*>~V/5_B"2,B41*xض;40 WMNo W4U7"@"^f{G.ьZ@fͦ-'C[St I3 "[K,.'<.0G?~dzO\&Z‚)d8>gL}7WF*& A@ "su+oby9QKv:Ea6N/E?΋3Dzo!`wVLDXol |'= U?.KlPx$2A6}iq^#36R oG$_v^1d܈F%8}iYWƌOzlC p_.'$K 3 ’NǍ'&r!YP׎}<@q ib(_$9]Q1׵/!cN3-W ѳKz l"0x&Zfi`` O-cv3 g/jXA@56N \"q,< 7/xWV}u}cr~]C}gys>rwY Pbҿ:pL+灸ܦ ز}|QQqIy('sxZļznZ,ޓ霖y~F4z>e,#pu? Gi%ߛnޔrDeFu?v5Ra-I.2˨r9(; a$Q j; uÃh-׷[*4slr,Piy'WE)EpT "L ΝYU3trc2̑ !ϸ^$^WHhYmC&ω1 %h=E)Hi"l5PTq3e&-e($(++w:Of"PfEu#%K=M:XYnnߕ MfyqTxvX;ײ-d$Q'5]c:ez /H /%3/|2B [?WO>G˶!λa^s`sJn!;?:F]EӒ8ܱ #?kkQsq>;lZW?0΁8j?۽_+SX+YUZM+K&͌ Da:Kgb j\FM nK0gW=d|ڏ 0կ#j͙At0਀阮oGf͑ە|sK z ׷Ԓw|D=A ~`ʿhXY zzT7#LSs Aaoj&#:6ѠׇҢ,-QB^<}M!1rb'J5ސi CvL4&RIqv-jeñ'6Ӊ\2~xoXp/3@jOx]/jzY w.}x/jeg&]9F.樛Xu2ˣ0Tl3˾.{LݾQXdn+YQֈCSALj m%f$sAo7C ^ ,8V]"ʷ/:nJ`+N\]B/ B >ÃwN.ЮH-bQ#^ayl Lxnk /%MOpv K 3$%P%b@ D̅m1b 7Wt*&6b^;S'ecHAsgQ]}uVyEcNqmhs :ys f64;=[ܖا*Ft+5ȋWD? @X$䬃2eYbG E㜨w6K/ ..Kob֏*J~',H"ax|$"LJ?rR$gS " t̲zеY(v YXn=[4)<*T$c1.x!@W2,œsJX1d>#k pHJŖ/m(t,\Lq)V̎6?Lg p }Si i7 ?[rxVw.#r&"%pT;]9uNoab0-JZqOP7">-w)62spH"].x]%+oi07_]s1oZ< ȅ6*ٵ}AO"I Ñί'k^G*Ae#o#NsbYVuc=(bBnW+­LZy 2_I9=V z+"iPIAVV#ݺUemEA&/Zh0GZʼhjOHq٘C4ļG7C ^gg¢bjqT(m!V[LuEhUẃCz#EB)X<(ן6d>M!?SL-p+-SO]˺~uzZnIhC/|Inc L [쀑IYGEUly(>J!W"leQT CSq$~_0NϮE)cܪWJ 5w/f$U娠GҢMQZx?1|"{u(wS.[?>;F؉m >ub)GON1o9aZ0K) oqUZA04NJ i9`AnD6mU2vn{-=)7qj$lf۟|+/ԠX2i)[W2#+\bāY hwë-J,& a'L]1b>m7nYV>k٫%CVQ q Z x mfᲓb@[a8㷡¢m$j[(B"5P&`~`(:D#Xv3ݖ|+nl[~&t,9Mc`qӞEOb]kis1I q1ҕʫ|P̌Q9@bX(rt@/hf1*rXpj:nm 1#Ca2 &DPMh;aibЄQ؆F/$ G+^Ĩ ņZ(DX\2uJ,DˈƣMK4PgEZACM!_ކNY6"!@Yn {K1W`P-y0S޻"} t֔AgNpfn.VHEc 范,~xc.H_R0mj[0;H5 (wfbi=T)T}ﬗ!9TB POΝ㹣ZdÕ;"6g&?aT2#-a:wPʪ-R}a1kKFdfq2ṭCGrޑ(؈g'"5!B:pf~u ꈘk;`1ne<W<5b6:OrCZfDv:Z$Sy. Ro(: `[7~Rzb2xgz*tߣK>!i=¢+(**: M.1t}G}lPj|uV]BylVΜ;BSBz3:u8I~CEzR9;MſKNNԅ!8s97[5vT^Dv:ҁ';y&Jw9rz"OVmٮP*c~ 6o&+#1YlLejEMv{.տ{8kP2d B@o \6ntLfzВ撞B4w>zjfLIOJ)^} kzGTTO?T>b$m=pK3LSI"l H~[q2i^oEzP{ q ~GS,ɝ)Yx Q(Flf,ZËEd˳YCɵu^]RRs9ḹXRj| }G9^juqGz5|`'7\Ė0GS g2E`kO6;7$`V iMҢKgaFs~8QZ}gWN}5Xcv^lz;o{*~2Q% u*is`Zuh5G _c O61&ni&f_LWF}f (+_͌qi~;^RnTn*R{k< yBTVyj6ee%_*Wb,M+ĭи$^sPDu7O_0E`=wf^cY̓=m 'w"Hh\YYX"Z;I`"}/}u>PS.2roxaXZ c TRʡeE,)q-Ս X&fV8|S&uRkĀZpY^i"uр X>ߙ(b?Ȳd4~`ڧ3śp^ ^ ʼ!$mvT6B|/(o@iW%;aKߩQvvZ?Ӆ{͈ ^nkAzxZ/%ExQ A̵0Uu†ޝ+n]cߑʮ H+x鶄]m?|Ga&96^,[?;e+Ck;ՙ3C[ h hOJapvÏ%x]=맹q\UcYy'?Qa+^sK9@DK ҳAR4 틥-?%(H8<] `3LJ'Š=ذ39z#]#!OlM(] >4QV D+T[_V@sl i4My?wPLOhX7D_:xL,N|s}ꃀw *"2\XPn(dE.Ry+I?Öɮ L>Կ݋=fdKoFb YxzE|;P_]S#\7{!5QyKKcXS4WDï_SA_|gP UAHa#&*rE_~~ZL;F"&rz\UE\ PPOk'&.Y|ߛ !j%lv]/~2E5 oC?N(ELO~\NI29ۘ`a{?CsqP GRJC<+UeOF,):<=X5:Zsž{ 8ɛvE,k x`ZL>`f{R٢q1mUh;o ^M:id׈6{DQM`ux8?a ?CaMsnykMy;9%vRf髄sơl$Fsǜ4';qFvItP#XŞhabڌ M3͐h3ل]H0NS<.6/!C'ڑst },!GzidĈ"ևpkχ-ՌӷBɯ}C-alS0֮MyqE\˽`syjhLD HYb8psos!Gh ]([1^pkބ4R5QZ=LQJQJ 23H"»shdb>Zv/ձ9 Lb^%nE6)ԛE@6$_M ˺;2WKkR{QMQY(_ZY{J=5t: JzH$}v\"̾ ёx\rmA)f?ӼbRgܐ!6-o76Ho̢Du!!nu3wH[e2'Z/A:fcIf%0\ s h{W@WFZi#.<2KfZsh: WT>TZ%U2N "];4O3k>] D0-PăBB`)8ʄN.b<W6 R/ہW.EƜUxu+If;&dmGfڏUt#ŗM3T ؛rk. ll\ʁeKiln|trA+;;KZ|ƶY-bVR wg͌0uI(\9 Y.V?*P^7'#8KTS@&k?ҹI&c檳1wl1F2 k]My[wyRzI'Gcyb`]N\O~:7@ttohe vHO:961X$䀯I2ʫRf&FTuAi4۪'!-!H[ 1 ĘU;UlK>lI w_%1B|H 1ݣJ%&:ȴRQm% y[ ZUvFl\VУq8&G1 .rVӟ][Y^s|wiovގo"L<,&gHgum\D6!AQeᒮ;j@XJ(d]xla7邎<Eh=(obZeT9^)y?Pi¾߇3Y&FFzPʵiCǠ(KeLWupmwB3Vaaa5t)E΋ O"W}B5u:iѳs.ˉ;əT͖_.lR(0"Wpֱ{ :lAo0\43<.qYE,`wŬEK/9/7XLXTk GNj f/…BU0Tˁ$PwѴMzI>2o]IDt9-wwނhlNxF0_xEъQbFf>~/VP(D!ig:|hQ X؎l1TxbqdVֻMFeoAA6 PdD$69lp^՚yp5 'Fa)KɤFfL15.jpv_kM7X Uܟ'k[/⥐Hl+ZY\x+q즵xH-)O` B3IcMԉ534,u7,ӟ?t+ml,l/ˤ}#5&|zC 47VbSP=%W=gN%n5Fɗ @C튂O!R`,Ց?~BJq0Y5n1}'Xd>T3Ķx(Q }'jhi'76V5^O ;Znõ:W#7MHt Fo%~B:}`Bw 2/NJGˉKnv< R.dT^gr?ANܻjG(dU˲ AīʰlC ѭmZ 39| OW\AP^VgՆRgPȊlZxo YכA;JbsJ!c|ylʡӹ]7d$J <"D ,nrv9e1B$R'1C12g}@P]>a-3cAr#Cu=yVHQ0ٸ"gyw+-QDSWFJN;sw\O%6CMe >~^8gj e 6|3`/P_Nt% gĶn `W^IgkT:D`,-qJE6y7$tYxg*c0#TY-bFT+(Q=]L >{\>oLeJ?++t?@/u@sCEa(Bia` r^/[ux4ڰz\(9W}gTt'\e:xgS(l)VUZG`Y;÷p\ݯT Pvyګ؞>HT^UKnsepTV@^l{,/%"̴{AB2D FyQ"v ]ݥF _I"X<"g|g¦.|3Nb+L$4Csb(8v]U ]v3 oCv}|5Y_g[Hq ۆ8Gz/rl b=r+,홭1 ?Bz.toZ:+ {q,F0:9vZ5K"US{yz~CxVa)Z@9XϧŅ=,G L(MU2T&_TXa(KI[%!G-ٲԈ!J r Z#l?ZDǝ5bnm%RJٯKZ-uC3;nnAf8d*%DVtT{(Qix-qRdc  Q&`["&bSQ'/~&#09KjlXtZ>|q)?icn'$Zh~jҗӰqET175v#!#woZ}2/\s!<"Ȓ oQEׯ5Ia[.(ȖWXawpiz||ذk&tgN8cƻZo]3.%:aߣΌh~{zR=KCɝR9n'cATtA*%5H:f>\>X Vy׸4~'͉mH u+p~iamK&֏Hɑl:qQ]ȊɎD Fj5-ڈ- c!4o@I8!=I:_6I-X`Xગf wUd9M:P+{@41d~lq?cPq 1U7`"ҧ0Y'~ I `/Ko~Ňe".&/nRpk&`X *qÎϟ4`xsD}iEKFXFHC{\Ąpg ` Ds )A6Ftƪ1=h9㇣z%BpbAZ{j?S8s2.+?މ5k{A jf\/32dp]x-Ϊ``7GrM'vUNDOf+2n[0ldJf'xlW\<APAlra=\%[[݃iv~=EeΗ 6U6rcT#Q{4 /[I^&겘eqQZRʢp9L+ q_,7LVA=[Xy^xs)DB @]\M(}CJf׌#Y'+fTWWBS,OwcyFR2P8ŵ5UMsNƔPJwjډ绠مBIW_ -lq跬cǯU%h-,0htyqEIE FE2;s{@.VBS5me_t3%ؾ_MjV6d ^̊Od$EbCeVp]dYgjĞ De{냖R3V nˀ)\.K0̃p l]`x/A毷mLa!2lؒIǵ#e4QƖIS/rEgIulpN[0ˠeO"K")Gw/I,DoBpeNnbY0Okgs`mf}c YpE% Eꬓ% /oT ߰(!IoyNS3xY7 FDϦu IVk} B5Uk չ`T߫`$'utNY .^\Z{EP̽IHD<dU!! TXW@)RpXN X]+z=É$  Ko,Lbi}PiJ U+V .oq&;lD.2)a㕔 v䫺O{A>P 3 jTxix`!ĖҶϪ^aQpFZn0qy[lXkU_tEN^H$f4Ts}TY<-G iuayp$ P1)>yWe5mOG<)1#:<_65zryF Vg5Kw2%5 GcBI_iӔ╅LԎ(тȁnA2$)d cXwFa3ᔍ/vމBb2,_D: (W~Nl$>p{t&DQ)U9~N+O.(}5!l/nA`I>w{KnE;E9­cjR;a&˫ @\~X[*&tݽsfXz9bd=Cz%Ю ce%V590dJOtCq'*‚:3PVF)lcȐh6]Y3&-aP;G7x]ofpr-ɤqq^Omgtw5y?ufr8vEoNWvl;C8w[V 2ǟ掙V bJ*ѳQ+qH6d^|;Wm~;N,xRįiZC7et Puˀ29LES1u~ݡX 5a)!98# [0K$.4^}%VozBEd-c YO KוC_E9Q%YOgr-t_74I\t V=F+H,f/2߽37;((N6z' S0 Cqk V*o5P*gr?Ү(:C  aPsa(Ot;j+}8#k∴z9NYՎZno WwfU؛b3zH@Ůc&Άzr'`#GnALUD^#0-cJA4䊪2;z<č}JG{F:>o[2ৱk 5'%fhoI 31 E ~2%nJ-^1:]}ƒ[PG7xt\LBɺ6f}*zzyW~S,.}U:OBzA`-.d @Ư݂ݴ~ ` KОS &o&Wf./B:0 ;| lu)F*[ 3^p( Nר  oM}t2 ;nn:3UT_;j6ӽ 1nV X_u,;i0شJzmhml>=M^ƫqs8)]fmϣ}FExuVS(;Y;!5ȶ}Tl=4cU_V 785B,?X9s'8h P% \1ŷy)ɂm]t,rA/7Ek\kߥjeQ4}_pհIqc 4253> 8p jeP*F}P{3A8}f 0i?deTߘc"J4R=r*sJS, ]nj 7-W`7Ao=o: 镬)Dzs>V#rufDϗqW$'D$Rۙ_)4{UU{#1x@5v~HVcmշÇ/讈'2gWE娺R>Ϯ|Q@_Xp_5}aHu]쀌Q˦&s:kz6&#v#]90_E.Ķ@.۲TS~;{qt-%@_EG֋ tP4`(77lR'kԂ=Ŵ= tJ8"zq6Mp[ ,.?& 5AE_$M i1nGIvy旓1y;Άas@Ihu_F5c9BO``07K0 fFVK`(;2¥. n1U4 u M.1)ڱ2p,g;xgX !Y7D =cp%2h , ͞.; e(|7Oŕ4ݾ KC%r 9<| $7SÉS}ez AN>jEmdDVKP:$Bu̡2ة hayua~lХ^IkeH4c*)VLU(?HԲPf}d"@Z/>slVk[ʦVZ9oI_C*aŪIfS?2jm3]©Gi#P2A>Ӻ}2/饪M(fMVL-4Ow2X-'2Bt3SX_ėtiJu݈qiiWyY2p|Fp_ 5zA>Ӡ09P`=,BlRZge|Ew I s7"{09Y&N,Ays+DXoP\1a腮PF)(oׅ\DMoG6cT,{C 8MK]S ;yAq(bY غ-(?\,sk8y>,xW,#mi`yOYZN _m/=-'x pU#[myzY۟r5}Z>@vy9Cs<֒eµ=xcaB@^l;ɟX;ȟ4ôk6 ,d)liRy$ѓTH^$ZHʟBL =P&xs`QMY @A7hѢv쑣x8ͧ⡛焸+9\OvYq4[鳭bxhc-)٭!}k;!}/cO:*+#AjTmcepLQz88izoCӯI2H1/!F %Ѝ9L\6LO B$؊>L߼HV Ug(?MlйV ,ڕz6PaR2 kԲdX'K-&oe\VAfC&EsMz"vkF!h/ĭbtо~x] sA*Ҥƿ Gb;ڕG^[@nlq7n?ߗЊ6Yq$j2 'J<7E]dlsz>>t :t#0.xg3ȗdyU B#YG]& Q(|y'Lk^\Iw pTYOpnviݐW~ޝ1^r髣Zen:Rц|pE*2yKYNod'Lf/7F"*ܬA`ab,3XHƶ%وVYqB'߿>:wZ4Mi6M/!Me]nd3㜾kndQmBU2C:MzZd8?Z%O±,Vh5zq:ϫ\Qdiq^xcH"4ut<.x#9 V@gv P>/|W.TC xZݺ.\Gy&Ӱ\rz5u#Uv)gxQ::Bv$Ă/ɚd~_s lh9n* hf&j꣘%A($mtѱ_ۅaP_EqIMZ֎M_ـ0w'1rHR9 6UZ>xdqkC]q'NvL_{Ҵ#MUυ-qNu]Sf!5Hx Fٗb:pV$5`Yϩ:!Rmd/9e;[>9mOcx@wFId[@xvO ,ĥհמÙ%鬁 ߴ#qmV`ǡ5H/:gA8>!x%@})ȡ&rD ,9Acut\75Kr R@ wS }pnlJ*Mb!I~UFcC*!>3x@ B^+x%Ւ=H;b2sѴkb/p\Ҳ:;zrv_P-X]KT?|I V"*IH&VJAfȁW1qJ]!0.b ™F+$E X9 !33H[:_һԥ̢6~!EZ;K8Sw8W _4]a-v_|앮O$6D3¾1XKϐk RNvA6Z@)EKt= Hn#qK?Vلٴ$W7|Be@mvxn!&az5Pn/ ©,-1󹊾 {av,ymQcUdnC %2VDnPERْ'L%5+Z2I1 oafE1.fb %A<9t5štpBqlZ[:lr٩Z>vsZV"cFZm :+g#G=a-ͽIt I ;c¶T&}:It~}.jul?7/Pa ڱA Q B &4H{YxQ7.cʅ[p'.# #[VOǟ-".YsAJ|wQ6g`G7`i0Bl[i‰q 6GMĽGZu0"t\w01 7~S 4E(0[}LB>6; JEcu-H6Բ5+ Ɉ% U8"/w%Cd)> %Re&rEiNjD^S*J,a\ f4IxuUi6i"=5&t U.NIQ 5PPuI*~դ$ܼ ;s:j8+;JטI\ @Ri /wl. UXslHض>sN? NvܗSz(1v )ݦq1Aۑs#S x5aG6X Ҁ`a~Ɨ5CNyK}0MÜ8m`= [gaC5F3s'@N+:i~n!P,zZ2a=xIhiad N`ۉո?+t)h"\.I9emX[IK÷u˪M!LXmh})-DJ=" ˦6@m_nvUp"P[W|a&\@yV'?imãALJEړFѳF,)G`"5lp]7m;3j?K:ce(|ԉ0_'Z&9næv n/Z9SvqSlT#[?hY?:OCN(=^n?VY9BůX+k,.p,3(:|e4p†JH~9 om<; y'Vj[Beic(BCN!2muf^qO@Y7Bу."gT+㒑ʤ6m@$7 cKa?hD`]M}P҆#.$ ypGgj2a6+ԀCʩ )6xcٵfu[2b"8GcG mV~d-sU B{25ȶ:ҥklg꽅X`-c04cJ}"B2'^b|Yƛ#N{4@Dg8d{PG/{cl=s&4Ƥrlv Ur&tm)ՊcnӢ_(s|NU t^!ƥ٘+Vvw=Bb~_Ұk v&KsN=dyѻDO~$*$( #7bWN%R t]{? "lDtBYlvAZE}N~Vԟr65俏, %G&Z3~)t_Bj5NxW ۦ$΍L<!M)$ 9F8EcපK' 1N/ї!E⁏FՀ=0 %i0m ]=qh3RR:֦3Y &5p|F#YM҃}09~Z{UN7̠Zk?j'QVRq]tރo!MX?gyqIsi1}t%NJ,7v{낱I;+B;W 6&"Ѕ7j!B74OO۪4@mAW<ybw(8@[~W9c*b|39,7SM\ j*ܲWYD,pk|DLo6AB7@<H׃RrHŸ pR* A,۟cRYSw)f5 +4TiJK _g߅Ez+9GyFc<;1!kWFWbW¸I{T(-N:ۂիt˅ 8D ;=K_}|v鴫q:$)9qA!ޜKS{Y9"uݾr;COR\;QIq W['6{xG;ؐθc>O^֙ ‚K▷;P>PAz7.;T .5Ҁ3 ZC_ `B@J5.6yȏ|)aYJ*2%C? |]o~h9_ޡUz0ҝ445>wԟD5 o1ȵ2%ebn23=l\ʓ4M)^'ڒSvd^Ba]zUc^z|ɮA3{#,1SDEzp 6 /$!y8 [1/>ӫ.҅T ]}d}ρs3%,|ä/״i&"_wHvFTҌW-!?. F;E(@]gdRD=lJ +5!7n ogsz'Uܟ"[XnF&47Ơx}z8j|ˏ9j b/JvٽcoClk;_n2Ȧaү֏mQWn vc*jf,j(_ ԍh=´~P+Zfh~bGmhxc 9屒iߒr{+ CbӠ.q{Ug#Š$qpG*Ek;\8gJyz]>e,5"'eB`i8 `o.J|;gQTҪT1/PRt(k&{Wn?o>XLo>ờ>lD9~-LEBYpz#I4p8j )&0v<lI:AY8℧p*HCet&- (ޱ`q^B-'۶B2lC!gae 7{~I`(HF_ ΂BBc5!eKôϾRG}滟/Kp5[f&"UIX2Y!.Ipn4x3qo[ 2O?E4(].2ZzyeUSfdTӨ.wHy; z\?H3 %j_{CP(hIO]J]wqıq+Da10 |ta@+#p`wH9.w(#W7\?ץ"hSxv > ,& 2sn]tQM YLu tjeY~x uWt!>X!RhNLeA.q<wҊ{ #4(‡!UHơdo9p=v8e mG/Kbx~lDs޴T__CG.ˀHܞiMC s+ut;lzjL #,iRT2I-ľ<!Kyn묿$ǻu{DHG .@S]3ͽ:<FH[@fBw$:-4)ܔs7⡙iMېˣ_s~Se9F*᭖׃;yu. De/,Fp8qFXv//-ھ\Z?V{?/k1n}m Be?F .<斈gOX8;`%hh'DO xGjUzB3Ο6949!cFezYJX/l 6oƢK)-AYydƖt,:, 4U-jDdc1?ܰ +gYx|wuUU4,c0)n.Z0=`YS RZP-h}V iF ,j7&3J#-rV9lUbTpontMrcj2kziz&`), <lscgd*Kp;pڕ|/a at)._v2Uڒ4UQ"A{L.=Pkoj}-*\=CegJ\Y~óA1ǝCSe@ x FiMQKı6;߄4@D3% )Táv5twt`X\2ܙ>nNj}b|kRX!+y2 7JaE%[iB'{ =¢0 Ve.rmmI!5|iH ڕ}VjJڈ:x6V;kuoPj>75۳%ܵ'q3ixE"t4yGվB ;cvѾ7Dgzm5b.GdaZS oG~iz(Ϳ_aXUzDZn2Z-oˏwDd(dp$uHh*Dɰze/&|o -\r@>hV57Z0 aaЌ3Tuʮbn|vU@ ֲú^p>bf'PHY~h۶<Ӵae%$qbV~3O:#fv ݙŁCb J2o,ƔKhqfp _Ek& h̝ )BJkp5Et_ @[VngFo7qBԆ?y1r.}NUpiҠ $3ٰf?ξH}8 ɸ{|hMP.oϑ1ɖՎO@ +zP2g~Ap _T)ߎhw8m =OPIX_:8$Qfn#i{-Pdim 4n]NILCAv~M5w`BDH GC73|Tm4&ihiOݏ%-neMuYcn|OV! Y3H\%9UN (7X).5j%ptTMu p뇓Dß}ChC.xRf{nk;{ *u?AH YR &8U$aaәk=z$p6g->Wi%_S_3[´c`YbS_(s䜸s56(!=nkZY'j@Sq3L6`?&a1.6*8,EY}Bw]rB~O-n\Ib!#$HS>oυ3 wEUޮ Y6bvCSi(>ܽP1wMkc7۲)P9kRȓ@/F$~M,.HS}3*M";#pCou~ȥ= ^iZE( NsjV&Aq;oWȓ_/`zR/ S1RY&:G5EeBcbAiPR#8hC-CN~`O ;ޠN.$dS89LBd$!(=w0p9 Mʛ `"*1O_a ;'x:CÌ՟K8_o Pgq[:-t)Y{o՘J_ jG" NI P'KY?ƝY_4z(&9kOPf\4lb!͎,l(*^ CEzE_{ȕyORkP]3'W1>F(V@#IUGj Z|̌9EW ͆Ǥ]|8k&AIU>Ц`usJR+y_74UWCvY+f͹_Qu/i6ҢS[A4€?zz: 4%f<.ͩ).pSXk+W4}<L鰹ja"2WYLI='S\Wii׬a؏}0e~a_s{Eaf 8j܁ ]hX8_/7B՟zU7Y"]83eqs5`X{ߵ!Qk{MH oqx n #Ȑad^Bb2@ʼn# !gݲ'L/Zק(&33Ds$ZTk bj.kqV2EfՏ`kKvkA>o`3ddKvI2:+dn?7҂?sN v3$Bu ևejY){]6''CYäCA1&פ:( j8Zu'[J4O"u Jo%sGʰ^L7-q8xH 0,pf^G5x`?>NVtcu@5"|(_-d[еw}b옳`Y 4%ۈ0#]L0ˎ=RcA]8 ([o zE-:Y F%DC !,ꂒW>{Ȅ+J fFejlX,JKG=D1~HRYhxQ9&KIMoAi_1_qdfH%;H'=c'}w3Ď P0[O_Ǔk0#5ґo7$I^Eu +FN9p+?aICjxN]،f|h}):jG)QǪ|%ݺ?35HG hFYD1[$RZ^{i?qI:Jt7ZO%9n&ٗ/uGKgmtѥt!\h224J qLÕ2TXóuٿJqoGQE`ܼ_1cTH!% %UC0q0Mkw5}lS`89,(G/lw8w>+Me jUl}G"H3|kbifpK,1L"Sfw.44jT[@Tq|k׉ 9)U~بWO ͐z4IN(BqiѴJJiƢx3w/_TYIgIJ>,QŬ=2k$?ch&V +2% j]ܼvdY:< .HOLG޶l:3Z2XRoPy7 bH 5Ux6I+)'lT= 2E|\lU7v %۽. }`CR܎PhA2bԱyF)3Hh-BPoGv$_\z"Cfu ]rEVMy}Qf}ZIYr _7-Lg_zYONvPI F~"icNl_07Ӆ XGt=W 5ʸRyt/mbobaic|g~GpŇ-O*sj3d6^=cAIX7A_\%`)ca W,Y#qk0TlKrrc9@^"rglтx*.TZl:gKx#w$toڻm\hL;c Ze!21~Oۈ4n_u%Z<77l^ϒNIU|6SG52W1Hn,DSIX((D,RCv$[]&[- ,;4'hfyBWGx޼? J%U9x`3&6W{#:$yp6h{gRK}oEivHH{~6xHmC!-ȾC 'Oav~i2IçPjzQ$uۑMWd'Ejy($к >@01'( c^(GuWqTNxRɚ6CET/7hY 9\ mT8d$.ZF^/) h vMNR/2 Ӛg aX?57H sp%S(ļN|P?~`;tsm KW[}Mdo@sC8MAq C2XCHV9-}\ lX&ɦX:>Ng qz12lwyT#Ü )7b 8DKs~ .i9Q OJĉ=P߸0rz_z&yRƒ/X[΍U1bfʶrE޺ "|6v$툞|^qY7qR@޸Vj2s=>!eyx2bt4~I7Mx2g=70d Ida0_O-VHz|#~ /d7je!h$83qFW_Z] dot[,^,a`MZa )9v 90/K;>g{`GM8M+v4:jP~C?;>,cKT]+ҼO'm`JX#O_!O9Uh8{q`cy1ʲFZjഢ~ ^g gZ3^pʓ#=> 8 NpUa u<@jH˶]_V+% 87Qc*5w8L=: mҵnY i}Ը/Q6Z)1?'-EةU_]ڡNNbR@9reCn?VӷlN~ߒz3ziBG?E=efLFojѠEe#?$4 EjgwP @ ̥U>ːuIf adҚ~H]*zaG;`Umkbz k H>gr$5 V7y4ep޴R#aV`*iٻ0oH7 iH|~i9`yT*':nv&*ҝ*&& x&YBF"Ү!ӣO(w7 iws|ê :gj< vFiۜV`zB}XºxMЭ //TɆY۰L=*n)MCLЪn:w(v+mwK&c˴C6)sA;T*%; Mk1P<B~l]Yᡵ5 +ʼ//)c}Q^ARG;Z䱄ѝzȡ-,Θ cE{jL/zk] {ޟ.VD4ҊQг*) lS(j*U1*cKUd0`is}ZQK&VXJ(S7Ή1RVh3LRTi#e㞳* IG o;ΐM 6M}ցd%r`4<\1DyJvC .RqWKI+8{ gzIXE&*b%ԧJ4-q\_-"c$fѦfMq%RX:+9Q տXePÞ|嫧mR՟fnaAE]d T%W IjZ'^>PdMlxjn aŅQce!QO&"RLA{'$ gs_.=|Y $& j%:(R ~>ǭ(P[GPT 'X JnY ? kﭝ!s`p" zdsOxu#c8-n[ߚwNԟq!uQ`&2T&uŖJB֍L߿+, ܷf9ɁI ՞Փ3t2E X++UV J|QeG_@Xpd9g`Eng:yO rt ތnE$\nc4׳Q*jQe}KHe"ُ*8ʙ5!)(8yZ~:Snbf&jՇl ©gf~y3R!`#QgnZPjU96m`|W\ڞh INR&dd= Ds)ܙ8L_[OQq踃d?--}qFm tk,'ӳ?0n~ HF_&ơ 'bH\%xS`}:㬶$xC{"ǵjktAnr!G 췙 ѣ-xRM[/$by ߼JUz:+Xf"ohv9ĥ%[WT"Mͳ: ԋ&_#'`|2 s p ~,5ltZeOob^*jp,frߎtg˧ʖ/5+zr?:Va Ngy)]F ?u_vQ*)σbQf od`PDnC[^RsAVL)Pزj(Y|LR-l{!MN' o6#>ڌPu*N˺Yr='pԈP=je[JY J\E|mTX?zҒȠQvn(8u 2w7jqWK>]XEX$on%\ b:xgQ~V6hSwaT0:t.L=%^=,7Z5*V%vD-z5ĶVQt}@͸p% sW7 $~,n9Gnn2|G"۵Hfa| NɃ? rHѦ 3_$•swMSMtdxK5j"id~87A?wt VGoU[55DzɾW4plF2&t ޞk0Rog.,bK8/2EAQh"[>ƓiS, _'(,q4]V#h2v#;y1r{^rlaj !,/PergdHIL0y d'ㇴeJAEL\De;WK*=@ӝaz$- vJK}éύ U&jx f'bJ A\7i\)y #5m Z!XΣ~ɁkiB ǽg׆Pzc#N,5$tP`hViznah" K@n$RTu7<3- 3<VG3?ֿn֮ק0eix Q)p[LUڥMpgǍ9Q^r6sODp[A:Er34ep8u5WRyrK *rfյ-IkOaؾ\sTe@!7*A؀)q&%@vR%_o SC-sc`\3Ě: o:MGSf798s)[Ɔ0u7(c7{֪k,&{`)ojCǼĤ;)\ Ywnpt?@<؋N ¡|vs)釗ʄ$>SN!A2L,0 "xǼu:#VKQ  ںs Mp+qB jŹ).,yW g, {<tLqv`eAaI͗xػ7-1Z}T;&y{$y5%@HB4hXU㹀ZŞ2+ւ}zU:]̬ϑ*/xnƒv0ZJ OJe'L0<z8O׶{A9a¸Spn_?\6IÚk߉yBh%f}/4-`=µcF/׫uŘc2q͟P 2Dhu&JCgV6c[֦r=4]ҹ|ɧnXh\/(fԇ|\nD7?'ڞ$Emr){V]X-Y3Xf 5x+`b]5Pf;5Uah;K1PJbByKwJU]Fki# N7Q(Zi"h2|?aWI+[lhh.&%v| < P)BnZ+(䔬ƚ5 ZBn 6<]{[K~_:(5/9q8,؉au50YϴA`JuY k@#ǸD.4WE0 ֏% n$/jxKXڡx?{GtRMjm 1vf Nb4^3p )R nS8PM4O"fX)vmW_biW=ULr=vjmd Hd:^d6*$eU$&GLd+T $ H#`M7Q-jex}%=ѵR))L1%C̿s| cu'/kF.F r\w;[̫q{ ~CAy\ ƻA{Ӭ|q 64 acL(JTP1{ ~6D*vxnzk}Nf30C#ɼ8dJ yOrCYJsSREkot;٠k5))Cm3p5 C흏WA+Dog 23?о}f:nRLpÞ A{<) ?pV8Ĺ4={ ߋ.QV$tB ;]1ᇓ}('Sp"BEwuxCXx?h;XyC<) jrrWxVm I:;QzvV Nū70n%Eq;zF#D $1 '1Uj*sfR+@R~Q$Nl]?Ax@v̶=NmwN:*sa_ujá>/lYrR jogE0u[EdΖҽ7] !mu5!:܃BzP?v!r|>>W f4Ӫs'M6/ -O䔠86<"`1,xY86I1Tixh"vO>Ot#J3aҨBwj%Ju"A&}<6WCܛ^t^bնx{S/b$Ʌ|z-+ UAGWm&Gw%˨&nlPf7Lu~FCqqð89^NC1-$4C7C2y~n6|!lzxyGDZ?@F?:Dāϕ @LZ0W /?ly+7damhkuϪ^> !*ʏpBs8:,PךoQFB^^~eGziߵmfWޛV oBMlƖv=k#7e;p96Vȏwר"} ,@9mKqph[a|,g>57 0_-E m:&0"g(mH\?;+ v}$f mD䛫&4J4JE RzδCj#6 3URFê9 yUpAvlA@o@Lx|?(Pqlȍ6!Nté?E5˙v0#B(K󂏔I;>o1hݏJʓi nt ucBϱM|Y*;S;u;ȍ9PYN]tK |E)ykV` >I-wTZg5Ϊc0Fi֧ilbjZt 3.LNIOhN)`=$2a[*1߄,*x +$7\{BēgLmp4+v) T]A֨}De$?ϹցP"yLrT̹$-C*"+w_$Ĵ5wX[8-it t\gHl wUvY*2Su53)lvU;8NV {:Jk'}^ >ϞL|/n".%xel$, S,-grUbkg<6,4nl|⃻ i1\/*P|,G\@>[ M2ҍy)3 N8<^ 8P>E+3@рcLRDUs7^[O/hzI*ocy͟bQj(VvI3}iVT& u\I9bW]Q#.Jx; =uDdrX9I"Ai~5ᦪE F{Kj7ena{Dm-+'/=O;>Wi*Qلw ?٦r*tڌ: /d+a@=r3I@d尣ۄ%Nqplxd5 fĖ^~y|@E=S2`npw ͑[]0VjWl{P>%}Do `u:53p\B 1 vDGdJe *J>'!ɂuf~; }hRWۧNB{kX=\  4DѨ ,.6JUG y~Zp%( O'r|@2m:»Muzbր_H[n$R&U@V͇ ccm, 0/[CO쐎]ְîbXC5+*l3,ݩ %I9E`S!ZIz3. ~2=cppuNR' B@L PJ⢔{[9<'0Q!Yi/*GI^mn=]V:<64%7 \ =NFzȾڈߖ'CqX*L, Impxz7l̘+Dt/#_ݤ,VbV[4 v~t5D /u߫ ?.H>߲;r^@V5OԛwSL@~'<_ѭ:SRʤ~qxI0ޓJ*1% m>$^}Nܖd liMviΊ.mS.6 UncÇᄢS+~Z˹ 3b#ڷkp9z5G͡E'o^)tQ/yjuN 5_l~D`qSauU & P'-~4 cu4!=8df a!*`>­23`éY _ N-u$KYGaԝFa 9¯L{ X84"JV9&࢞t-b̂,{3_[m;-i*w6-R:@X3?[xCE`;j:Dsa1pjXPCs_fojQꇩ^k.y}@=8'OZ5ڪ+Kdz BYMO"ӅhIjYp6VhOQ*" Ae"-Zf)s[y`6qo2sN X2#bࣾCK 򈠩q4d"=L#5ÏHP[ӎyW/=,cYh%>'یd( B YXޱsBX:⪭,Ӎ!a.(Z ǂЁBiNUIXZ zlЯMo"_EWA:gM1vsȚ*s疡}εnק⎨ygs1>N[DH v>HSq}`^0U(QV8] 1$뎾8Q:bAR %}ۏax~ ˣCu[[:ϭJxfۑzj0R2L @I> SQ8()T5Nv*F6 '!#QÖv b5Iǻm}ܫl"x;tfQ#I^ Sjp>r La+B7, Y)'|7)s b8 .$@]yh@N\I!At>[閡F ZSWVKg ]u A]k'Al`tVն(a{J\w>g9K*SV bS0 :gj*Gu*z|p58W4@' W;ޙw 灡WKHdj.­PUA`lw !h4:QE,n[rN뵪:``9WEn82=UoLD*EK.O޲z(`ؔ' `{c!`Q,9'~:EO0f7\]h{Ж*۔^@vB^^sx*D'pؒ8Eo D˶8YZz<77GaMXc~r\ LOY %l5D^ȃ{kiaeOXwo%趴z!fa!kv@Or3‰d. gy?-66އ0H;XWd4Z(88MDc]kF ylot^N'\ —Kk,iq][6`['.`ÿC6'@8&'µΜi9aQO#+Պ,R#3%`# 3# ggi` ͚pKcPMEhwG Yy_RMU̓KOe$ ȷ;%qg%$/Nir7 ,e;>aD bր1# 0m0ͯ2π11=z0whʿ>ϜV3iz"̏^#n5>iib6PgJ9k|'껟O}MCF" ȍߎ,C#Q3md߶A2Ax+E=18HMIQ ~-E"o- PLU^_o/jeP )kPxuSGCP-y?g@v$巚_\nL,\+wڅ-2^a1G>p9XlzQ ނ ﱔbʙSSJ]>Ft5fY1}nU0 Z9qs=o[ aBJJz[ƬUwy#c =҃/*;S܍Yp^-ۀ :I}FsqLSnY9%NG9dngb|tԩY}ŸZ6e(&bQËceFGcG1i=ٌr5Eٔ\vMIHAeK/]hPMQ>6_4ߊId\ t>[6٬Ľ*'hk[J,f2$DWR:Dtx=i*1|hpXo;q|%bc,ai0,t! ut9,pAA#_AYWuV^ѱ@198=BD/W >F.b =Ŏ9tl;=ɜ w(AI[)#ю\i]ߦnL"ok7̤֌HO os}=! O4S4MKD=h?n|Zc6.(xu[ސC+FՓZ :̐+lY׏'@vAbk6kxwJvBJӹ,ro^X\n1|#f)1h2=xtֱ ]n땜>Q5׆  _+u[wXTbt!C^\BtggX28.!r0471o:f>>&obM? MZ|ߡ!K氜26䄐 H\*_a#<̥ f 7j9NYv<Sg.{!/r`Z倥o]șFӏ-S0 z({mL+k ,igr7]8o$$ڒ`&bGZ6RXdE_}!9 { 5]O8 y?Xci;拾@aavN܋7\C>8u,D M(@X)o"BQ#o0]Ӆv׃!䤦f!A^Ec cq%.,w#g I=\y7)+j3ʲmel6 -pߒ5}az ;KQB´ 8fC| 8[>0PP$y)i*"XtI şEzj(u_9ɿl9$cUIUnlgȌ4m~†3۬iHuSQJt@Z_- %rmwoq0x6ylu* ݫ^?ĵnrٲ!0wZj[၈zZR:h*zcŅځp}_!;˅NF\JtD;VArاs칖_OAT:q>tX@d|Xt 8(NnNʪ SĩjxvrHP 3MX(I] f1JSp+{}wNX9f~ogC*Q)X [8]58"q2.(9*񴵤חV=`IvTS6"~}XY [%ܕ)&,VcIZp~Q#&Y+AL8s>iք*|\msX3XXcD@s<i;Zޜy  xhg "?1^b?l3'^DVֆk`v>M۞| U#SVwM3 O4Fn3:o uaѯQCЯZ`yg?8I-JEnIHFrJ`0jg.3G@%J{'ko7x9\چ[.ʊY~}/ȘIcRTimT 4== <37~_#Y'BލVZ'(ӌ!-G+4ܝIɉنlL ,`m}E:%"tt$AlE6f?q3 4*vvvtƐ+3oIq(@9o20v&ˠ{'t4->ƃ;[5Lf0ag]FPwvn܆+Z8N7i;xZTI2JP,& A9B~񔋋Ji _"G.XKp~'-ss, w70L#p1t( %:HBmnlFom5^I[+ˏ"|0i,6̜RT;}kɔTu8CKiQwNĺ**24>`l6D 0}p< c63\3Q(1_QF @)<,"oXSNT)-:ݬKbj! ݦ3i Y $Pu+52= ߾v>켿A"R \QJ&L/_`^[Qb}SkxdjٞӴl'Sv^]}G8˂qN)V -ÓoNQO ,OV9}wt4zm?:'rŏ|͍EsaIQW06ـ>F* YK߳@D}VHpWZ62C ) Z<1#=fF` 0nT(Ҏ]zT,漆:nx̲LmĘA<䲀hp¤wEe(e Ɯ8k&_Kn/<[?N~K̲AT'Ѷ\~8+g%La&3Ľ-.`a=Q >~ )ɼ"9h&= oL3mڛnR7V7+X @cE1ثPh$OFI{ub>Ŋ=`}"0Q2 1r9M{N xx9YmT(dqrbR4ev'=VQeݧ$1O*Pw_?wYnֿ5SuoIp_YwƳųnx !b큒$)hz--KkN۱7r'<{!_bD\_6И\Ua{gnACpY!CH¦TVd- !em_Pȳ{d?Йkwp'tdz\6"8N~VMDnT[;7Ɏ~ritзcJ1uT^vn(G MC5ܻx z~e^8~Nax^\\3@N"˭tzJRhW/!?DYE*%F;zli(߭ 6aВJ2> G)mYOCkʖ?sR :7I (*ߐؘ#kz( 4-Az?pK-_ڥ GKn;B>}+cW_ GE+ a |VQ?G_lKmz>NX`l|gL=0aqMl7Gsu=T#zki$\n%OΤ_1SqBTE%|Z[ B8/H$كQ[h@7 P) ebyYӼ5?L-e5 IƵrN0 ];5 孄tz+vp{A:# {# N8y ՍQ 8V,ӑ 0k&υl^A}jHzfI5֬܎ldn*Ԙ6ޔ krİVte]*H[L\M~e~c wA6Z:K;@2!]14X f؜7&{Jk D4Ÿ7y\L| bT4W pm5v+wmV0O$9oTy4WD#?1m%G΋iI1<&ѯRO6lSo:kLo2׵~^=1zձ!;]Lv8vn{B$=p YcXQ<2ſzqR @9DqMOPEn!іpd+@[7y22~2rW׉dq\@!U.+Jwx8*O׺OueWpG= eYDy/g2cn\jJKjbikMd%)Ǿ8Ia :tplLߐ{/shjgԮeT{Y ܲZ; \~U :%Pt@jz^a:mx;A0a[N0-~RχiVHÙnH.ߗրJ+|louALf*edK6  Ha@\”eʾcfr&4/o]v#'$_qsؖ+޶>L1Gy_ X_6\XV{2hFwM|"5.|)o1ݑ&0W؈T̓ZC}%n\6Ꞛf<V^|?K˗iܱ0xd V8p9K4=Gߴc>V~=H[ַ;B‰Gڽc) ctoNI? 콐_YRОSԔ<H(@ԘU!kɍ|W}s׆!FߚCW چRLl,J 2;NvEsm@-!2uܕ_sJC,kJR z7ߘT@~XOi]=*')\oW}gKoAe(aTHu溷ᵈJG Iج`xi x+R!#U0XxI+F ؛ BF+3o%*kzD)$)j|;kU8'/` #imq_IˏOY5KPj]NӜq8qk*83m='ޓEh5#Hظd[#+lQn.~;*? 6܀>xv8+zu' \Sɣ٤@No \#0F+O؞p ,EFMe_*|9cŋܦQ{IݢXsk洤ѫ[K:J#Ld-hmEcIwUs 6HV4.CzI *'oڏa3ESN3 0y_> rv9I :ڽz(@^`ݴ ؜==g-%ѡ酊,B36Yww.neM_N 1qUO U7?+eZ1A0,J F-s4Q(Yӻjb-y$D1>y(fD|GRxkCp >\ݘR9{>gwƌ8(D`_n-h, ܐ~)8zYE$rܵ50WF?bڑ_ cF7fU ŋ_qUZHNK Qr⻬x#Y 4CWI$<#eτy QC1Pffm#kKW>i,×ge_gϐL@ƴ! iy3e w*۴}GkQ@L_y}fc :id@#)}pQ3$SKoьBx8A9,;ScyQB c5xZK;3gHURg,v*l(lcI? ssc'R(-vO4|6O1mq'm.r~]s8Rm=w.?P1$4 VOϟ}SoDB=^/WSjJq")ش\fنA'eе ߤsgD|$c7KsYAo^:QV'5F&ih"ԹWSώ v9~Nֱ:I J#1y) &9~KоyI5jHׄ(F,oFɖ |d-sX!\MA_lEBpQ|RYQ*rmUowV />Ix[c 9,hgP\SGm`d0c28'X6(QЀpuYn' {M K}ѕ64XI%#y\đf' EG}tpb9kYJ ԪlQx5pcfn浯K=oθ$$ *VOϠцh!1uDsxtXc svK}FճwOOHfymsj>HOI UJHG@oc- ăAp$ qc23hftV2q ]Nʋ4Tp/! ^zMx~̥!*[e1iJ5]Bg'X`&S(MNpDhbdׇa/ Zl)hKIH&~3H,i{V:cV3yUu/b WMLa%f !K3g!V6&bngf1v?'Qb쁯'i+&7L7pt)krn':'Tٛwߨ 31w`laʒ.[? 딟Ҩ{쐪d O'fN1Qq@áS_R/7h{Peީ]V &HAΪs];Y 6E;gGm3Vͼ TQ@;?/bLL$٨\,]uxsx.-y ?󾯚&pk}CB;0w@LY],`Yc` 0Ņި~21\Pɍ [Jɲ Bziԑ+3blPZ^.&)f e2O[u&=egi*d)p ^bDS )n0fПLJXs/F%d6-o[0,HuNHj*@ 3HdNLLQJo0*~Ih沋ZxNbo `" \w[쥙D^Npa4p2=~9ْ>@K?Tna*aifqfMbDxfӒBq/z4➠MSDJ`m4B9R.;KTq 8*'vuњK]' sY-x7`*k"ҭ[#7N3qsGc~ ZQCz s2='5:վL|&XvQƠ7s0up5֜'0M,џn|+|X2[=mFUOj>hgt HMDQ~[0ZqCr5t(9NuOZҁR{liKsuhwXS'b Cj_C" NgcBSMlԳc7Sd>)K<&CWKaB /?XKEΆcxM:b[&yM99KH~7c Nv7`Ԍk8nCL7y34Pe~S %@Aٕ֩U_UUQOU$d5!';D&5o?9u LK ,?~CM@bvm,C )ŭC KYB%HY4^yC)33s Bƃ C*q:|ҥ_$Ô yXk Mzttb—P:?v5nɆ'mO92,%D=j:@7е)|BF]Wc{|灊M~R3589>оcc=Y '̪1W8j֙-W\Wg$h0Y?u4?>=m\,Qg*3ح)Z4\Hho+f3FH1&d_A!;@k// |BA̪i ?Io8qW81C:|@NZ{WbIر<ʛ+ ok΋1hk0'M\/afkyʍZYSBdDe 6X/-7bql8DɈy{PcAR`ʟ MHHIiN2ٍmsUb+H!+C'P8dHYL~Ts*/$*5{~0P{]=:DqŠ:]?\iP3miНoM#ڮ+_ ϦzˎK>g-2+LۿKԜxmV\5ZC zo ~c ?+0*||BG]u#v}|P_MvxۓWXY;WiMP1#` VIlq߂!711^˴ q7"3"%JUeL:5AytR.a"T~Җ`,v8]{*s܅P\aR嗩IŶE`zIR[K{])zS 7Ǧɷ@ɑ?q|(寒FۋM x9 }H &(90z8.2_GEcDP#TIhs y_͢"6l*0T~l_^&i}Ejt.x,K[ܧtI@NQxg-Sz+yQ_ÊPS5vo}v8lv TVdO"-_B xm`J}wTy58u7יۗ{f;*RNB-"=넱l?N 6kj2XeCGٲVrz37VR8DAǟ21R/a@>\"`S_@PkݰtYxO(-{''Z/X[e'´vY`/CHhOj4)$CǖH6!B-ZvpC(5"baVXh"1yuJ= {!&|sUbۢ6rU{j$$29J oDANx[,.H%ݹorzS~i6 /oӧ6; L'(JC<?Q?FBeC:hfBɉkh&Z"{7{qhx|O1(( 3%8Z2SBX!:9t9Ht;b5?[3?j g@2Iw ]#^\,衪Y拵'(S&4K » (!("iyDcO~̢5Ygƴ-ʴ0_`R;l ߦJe6XycD⫤n>`lGtC[wNd٢quԌԚ❱KWb c|zL1k(zUEI\&*X[aaRVwat ф+t*9{e͗#|&j~,ϝcA8àEho8uѦwUI2j糬1U r|eu cQT9oS"D}.đse|d?+i3^RC36r}N)I}8~5@hI'w !*e4Fc+ڔ {$L~;~娿ɾ5_X+l,t5ϓ5n1$`uЕetU:꠺.w&FنD`2x45gjJu _V>.X s*/ y_n!H3 }S[ ۟hD.R8ވeM,onj'"h-s1:&;J`H. ]ď[4+y6.Ao M:%T?iqO3c#_*;!=QrL0AmmrQX}7FuKd6  [2ę(㇛J'}"/t5̷OmQԠb)lda[H-~5]KMdMgn ^ ^8?i6ͤ~+EL$N5 vȻMޒb$ &0nwD"KX !Kzf1ߙ*aU0˃X .G fZ:_qo =yE U\J15RX #ěPF_@6?`#c tLk-.Z1/%Pĵl4+~%]U??m2/b6L rEuHa;&-}1 _+lq$ k'{4 C-m;wm/pY<@) |xaҁ7T#%n9Hʧ`^ɣ s~2渐 3IލW8 n4rP& WfVbuU \Vp\S̈́# 澮t"67D<̩rZ]If, 34?vlS]zy~S݅5l3)&0D_+Ն1lH$kxn`h0/ _e!9 tA(lTѿ%+LXLd {ɛ.5#Q>>F̕ς\0f~1IbiuwΝDE_QskSR D^ lV. < ؗ;ޗZ6B <UUYwV 4EgA.4+S祬}6 0辑%\sa/2qRX#Z$1Gwsf9Hyi>`rlOC"yi?"Ь i A|Nrj8y*͏ *d)_a4xM4b)Ɨb7H*el|uqKhɭ]&j?DZA+1mtt>`$ۤK?Lo !PȈ$ީ%} uf\62-p2ۦ"<>B^&„';#yA] s=: a/@#eNFB>Omuhp(` 7` ߅oƗB-G.QS;pOy\vNb,i$s WNI!+a-(8x N"D6"hC]E/tI $2r $K<߼< *jv['+U ]sxUh*٢]),Xߒ\K| GZ)le* Dj }z6Bۯ'P3/lW]xE Rrv2JRdٴQzW5=P[\Y4pP56NUB99PY]|t6}ےi4?iJ+K[63f7=Yf$~Z("Lkt{=vK9~4Mhj68 d>DDwh>\o $ih3ګ sٗ80k[v޷YgÒ\<3V*Udzpn@ѳ/Kϛ9?lSFg}-4 UP ||:bVgF_0X9Ps>|D~MEd~)(ke >⍈LUj,PLTw oHge'`b Ck0Mf E21d~,@t@ttiVeveZazۓ ҾmrTψ7< T]qj|Zk3m{u՞U%u,hTP!?gAN!+输E݋4~=(t]C>QQjP=fw;2>ߐ%Nkh$+Q'&^%Nqta҆uAkAIϑL%̎MbB( /˫H`wz7uv˵i_}Ihz% 9:2^?iRyUK4}0DecvQitRԑK8@G4oAP4L QE` Ss,f[ImKwa<0 =[W^XѪtP^9eA~Mep)YZ j=5`}d`ӝY0FH+7Ie>dizct`O 2tSktL#!eR!}\M\nV GDv˶ W _baFAa;a>AXe*{xWX !?/vg+GZn@QVb)AHE35*-XzxN~n|J<\:QE-E!D-dȷDML"'54A<ΘNٵBa#9/Ѕ6y/)pȜ% IO"Nq6Қ Ais9F84<-n̞lY 62@gb4>m#6I5".ɃFSrG<>=Sj5g=yF@,>ZP cm9-/6F8\[,CEݠK1zbOja|kzCK75X=WAWҹ#.{W3OP2\s*HAD_/H{-Z;*B]K^ORG$u_KgkAf:(Ҳ3OoF6KA =u5*Q)b H^Q:Wi}68~zv>]V{MHx|[?'D;`Ϣ cS._KQk8aO?6 tb򪵍8V|\4,TvbJo6̀[ʞdx?|q6>y!~ϼܩH+Ojnc~y;,F wގ$WK+* -%βhFht9ilGJ0"m8YeXIn/1Z/# ˌc:QFYZ,rڼY_3:5yFK=G>_!߷w={~mE%ɝ< sT _ /K]:G~;~ ?cn.aFs.&!L0/  ms {:c̘ea''EȌ[u1 K^+ y!j_\A>?OS!)4昬%Vbja elLx YkTLBn^d+իDo7 WFxRׇ@0 Fe%]q?}.ϸXa<8 "Gtpj]  v!ϹEv(i3馗m#լ&  EwMNPI@ r&7!?D  R&3C#mRCZuLӨ䝊BOdZ&:(ʒ|A i/]r;!t5]"}w`d мϚEqe ;d+#U5$+exP< O! ⺽W:0Cyx${Cڧ 4?yf%/BYd`țEH- 3wpi(vO U=<(J;4fB UhWUj؁Wǯ¢m`{_&¡Wd& }~ oGUmҠ];f ő,OGH9bzGhꑳm߮kqPRv澓\暴jus}<{#WkcGaEjȨ[y\,> :tㅤadju>Jh>s Br:v}ltx}.`}šSwD*MOS&>_zѤA;җm_:3I_V ΒqhyqYuhmS=8R-il=;#p_ )V 2zNC5xFA{>x{v i`61TCm%5vIB e\aq(tS!"CٴjWQuQKM`Jΐfo&oGauuy)`Nqd'x9DDx ZW8XVPBZw2)m7bMwDv+B::vnt-cOʕP^"(C:K$MKA`{E=0.%q| oQW-na9G9*8o0ץħV A{ o8 y(oV\k!kM'|).0*6*E>n't@.{xg?h**qA\sE5+J|FaTN_]$.ET:*Llj*1h.1K>K ~LO\>8qNDw j CWF7tn/DiJ(5?>'>1ǐDsv8-KSpVdJB0*]grͣ*9eZ_s<뇦g{^+Ε5%KQk0|#{0Gײ0a(0ɵvdhqd@qz2h}:g%=tL$d]_pMxWu 콏*=,ճ3:c8sҎ3vJW´pah zHds0CU<wοB&rw@]h<4&Vs57x΄4|hPL`\P'sL)5GQxOYo mKD6C5\waQFP+9r/s{oZJz2w'[Mj:rs K-\҉bwB3TB:F~0&2uJ/"x[pw lrv5W w Ma>j!KecEҨ.^0NR&@qcI[۾`jj/Fb|&0MQ&9?*Cƿrh+Wqr>|zُ:BV{J6R߯X6\/(*^v t/[iŏ3$MRf.^|#e/C$ ]0 ð;YK~,S"Sv0n;1Τ Y>\rIEs\B gbփp*UF et bl#~A^y% G^L \5 bjp;(ГvX/4bJIurGptV_CAWkU"Z{k߃9ITĩ݊3Eu}5k!&`5R8#27(Be'0t~G@K2b\E)J7Eς oo.H4PO1.|&ߙ0XS?aa`⚠&x8Ƽ1 cP/nk<|0^"c.Qňg=ԋ{g*#Z3pu+gK))>uDӅƃK6D.5b9i9v.><Ӂ[sn;B̓ [=T2(v}{׭M?V5``{'Pz*,A.gif̞Se݂X)f;Gص(üA(^H":.iY+jG~/&ImU#$_ IZ5j[Ȟx@~k>,ڱlkdX# #J4=ݙq-mL 'Ov86y_ 1xm+g.]+F^κW<{T|66RM #P8fB_ mܣ F Փa0l)&u <-[sz/=}[-VCC\ 51lv96@IAU a\)s4.rseKM Qgi"iD^Q^(NY7O.`:YrфxJw`W3̅< vNԊ3&y?.8U: RLs8"_ZJz~[t*B'6 @OTƺ.ϘW+hW,!iQx:W`d:Tן :x_JSf7I#6R5 z[3 9,O ~"w6CP$)9&y;J?W^ YƘW_rAtn$gyn_}IwF;ܑkLApz\$~sSx)0׺SwVhض Վس rX׼Mp|-5n2\4|3Safx֭"67Aci m#jɁuh>y&WkkXI\Ky)% ' %x[5kqvRM9Ah2+$N8a' *\Ϙ~JȂ=g7YRa,f;<"ܘJ $iŨ%Ahfq# 0** q-y7ʠhT0 ﹞FsaEb{ĖcW^xߕoŧ;k+tȾKl߁=;Gh]1 8ϚGW*S-l|d C2j'`E2d @"r){8,"QIϒTBJSjgMܸ /ҔxHT Ћ™'!{lUXJ;oVN7A'rqQ;xGEPTPz$UmNK1_ DIkn?[{~NyYf_(.;p't)9q-<}XZEw9e^;1(vm˂n@]IӴosĺ ,m[PVMZhVM~XXiY"2d|;7B}n2 }V1s*ı7gL˔:!fMD3iRbƩo* WiHL 4z-i's<ȌD>%#ۨ&^pBuO sB2%K_[aQGO-\45Py7#>6ɸ.mll=~T`4ot{d.`xrzT5THH;LYr`;K :5_S=xFjV{)S#cÈH8Zt.Fgz{@n,46_n֫87Sye)YJ.EKłP5 Jjc{5, Og4cԙns(<|4h^ u!X)_=W(y3d]z^׫_lGፌ\].)X ՗jSˌQX JZpE<^fý-`Jp[ u“ jQYԣJ޷ /îZN;v~l裇8XB$<fW^*h'hi{ﷂ>ϽPqnr[ I)x ǏlvL;=Hg]ǥ} 鶉Uc͙roݸИBf@@F;Y!/U fʞY̰Ŗ9LoD#}de"i_#8Løis/#W1IdfK~G (.?]=H;sz$Tzym"`ӸX~%#UpHix顗Oϐ`RvO]x-Jj=*0qc M \{3Ͼ/moXF{&XLKH+q4d\1omHL-5CwY_*J3D_!ad{Ƕ u <#!Lv%u<ԍm4b6^f".0$taˁTUdp/ojGG Ed)\ ٪oD׺ leY`-i h,{v) ?&cv`dÈrƇMt3UuQmo}h^w=L4!Հ1Lb~L/]ׇp^$VƗ9Xîԝu'0enI`M;6OCV7Ad:JAbNXШ A0g;[X]>EA?xhh,ӣ6vkԡÄ-}8-, JY7H;Fd IH7p.&n 5#) iI-u!݌t>X00q* jW/:N.,~9xz8h;$ix1B%kR<FL:s4U1QjrDy>VMu~\ynO.D=.FAd|ш|:tadt~v J2&5*^9Ot,u;y j9:Ғ$^qTRW>U̒`*G v8(3+"gI@B# ƙ#^3<0қ'pE+e NN*,S(xy&9Y%k?y>-&dSMq5&E'] ]+zڣ٬հuKՇ>=]9L;bR=$6IL_~(v̛ŗ*>^Tk}19r"6?n&齃gd Ry*Z{ {(wAoWXߕOȯt[3-ptBJSe:mڽɦ+'^=]9-[/BpʗсKu[)I<Ʀ2SNB"$^HL'"*Zj(| 8Bb[;)zjrjghʞeW Hq6 }j +󖞢 e`h+ww'jLC&KN/[5_cjͥq#o2s xb3@G^ƐFߣi`Qmdok͜"ڕWtzpҍ[ ,tƇԨְ&&^^ (e"?eyq?RExU^^4褐 #>eŃfx?0!d#Es5"J!'&wWSBVi+~CG^G Z`AHƗSOW~%Y-1@ _dSαlC]%iI_͓ I} ,L.3^~O9B2?ߺ)v\3D)9KfI&z6l JȩlIUiE % )v=,SxR/7;C C9dC͊2KXIsd1M NJ~Z{3Ȇ RP!;X/<=!T!|?0J&:F,.N tWF4p8Ylb*$i8'=- ,S,s# }2 MLwfdoD3)ucvsvRܰNWؓs:>a:as;(x\ЗCL^pmA!{~%Ccz緼m)/t{v ?Xm9"#=/ u`3۶PNbtj7:xj2qGS~eSo;J"{զRu|[P$ (UbU.Nz9 ,Ӯ@Y՞:8_H V9q4e]=h\=bY23R5FJ9 me"N{`ȉ=j:n3a6'$ .˶w,mf!HJ;ؤwo>JL*k#' S/̓ 9Sޖu跆Xk>kc ֜EnGjMqämV/ݬB]. ٪NLzɑ.[I"j~2ͬ{$8T;,R)O"ޚ23&fe,\EM7|l2>^x|xn .'C,qsAL8+FI0:m5I(7rT0p§Mulոuܬf,n3~CnZn\)<:m!ny?Y zW8[/Tߏ Ej/y.4cf8WiYrZ]2?CpeDsI˵; -H`ԐS9jdY2(GH/*N9WQ|F8|e$mnfa>pgf]@9XrAtE k9Znω-<T3tEMcb(&S)ˋŪ]$h4wLP;c%+qEzJƎKH&MF.)G +x-xivmY B2K3e2EfdZ8pSC-9s*eyrC]#"a%S$ ȟ%_/Ճ%ߏfܦ+(C SE:nQSa[9<+a0OL޹5$F4` sʘ{ rhh`zwv(C}ɿEUOHs`ahN8dʠ= $9i$1aeޔ!k`ggݘd>c)d9*qe˖~M"TREgd/M!7Q)C ,|q!NHEs_(<*bID mt]+7hèېG дڈƟ3\ffqQdщ~SWu6;SSSXp$ ;C @Np\=24Jy._2 c-GI+m^mYg\T# .4 sR_qW2;of?ru7DDҚ_udAoѨer8tǐb3o)'o w_`W!7e9\!0р'}FS<GJj+ u&(QA!NݼSbeQxM&`xgA)F妅uQ;؜MM\a /D_* Jܺi@##Nf`X{{\W\Ɇ۪?$ biymt\7l ~NaIG t!<^"%@Lxs#mFHuBTվ!uMXLϪh+@Di /ﱈe ,D5yy~4+v=vV@Ϩ;9:~8tCk-bGTSu@hM5&vi#lM&l0PgVOoDʺ]ώ})R:# Cm $nw\Ƙ]Ka۸saMcr ~<ъ;3k̐pbpĪI(fEX2XC3~5slkgev' x#Z}l|Ikl, ߴ^ˡ2W@ƨcNl=ᖤ(%-)-WAjf-̼UśJ , TƗc(q+N2Z{y>ayBbzb8vg{6I;7ۘ2UL3Ui~r BBP<ˤ|Y;KWx46Sz]Lז*8mc7$#s'i5ВzS6O|jCcɓ2(tDM^}xFO ]l =2ə麄4|.|cq?@i='kj:  k5ThW'o}3gM[V̋39aHnCl YG)~ye6EeN6:l[ɛ?\Qyf\s4 ]E7KC<ؐwqpMGdQS}@r8:ʪIK/}x'x' B+X/^1RH)&7l05o &Va)`="8 fؘib9?PIFE%r!*j0|9YFeNE(ڬ(#p~&nJ[TЇD#ɝ¼tIy4)|}(i}KCJ}<+Kxq'k\wBx!>y5m;u(|)J:Jji; a@/FHO aƎ1gQε*n:A,Ao}iiKs\,sR(xT? F[qb'NzQlan*Dβϓq>Uȕib ךu]俹vtCA']h?j23TG^ygH9=B AʍĞtD1 b^e!\WXsw<Hf "z]jך2k&ƈҦ?}~-) ѐT(Z&^#Oo)l3rj`Iut ;%r TY6q74KO/eF]A-Ivc +\N#Njx ӱO[ kD]c ԥ]"3=4mx_Tٔ 7Td,O%7f\Rqϙ 8H{7/)Y8%ֶDMX,P=LB%#Nt]9D&f` rG"j;S܆^6h )g9DYIL{@(q p=m9c˓STqιnK\jNrx2N_i. ‰R wlVχr}/;Dű$޺7:f!La}{Vx\.ڏЯqN75 ]LdD{\[t;[ws F@|uE^Ѧ]PM+?'YFw %:|1O_p#qP*9z, :jx ;v *Xq脡T {Uw5~oUH) nu-'pȸ ] d$c$^!6 $99-?pz_ d?u.C%ι'*8Ḍ I0J&Pvpnk[YBZzMR9${H ½xFK2'ހ?#='y*#>  ]q X7=zaiOb3:O#(h" '{7y綑^MRUO!^Y/{AwN# =p g诼)fzi(C\U#t~4ĎǨu+l92[!&ȀFmbN$j3= g*v PT]Wb|-Ĝ!/FB z a^(e7 ǝEyl>R,~s,h`kP^KYގŲu75r=KG 3x|x,\{a+N4j+}[l)2r&Զ^W6= ֪ A.EY/ic fHsMPJq}sk⚷hQϽ A -)T!y`NIB9WGN)ftmEHWYl'K9o:r [d$\: v*s(MkkKJ="-PUNᨑXţñFQ׮޾y|;~\˹ 8%N/I$u0%|`g=x0~]<:~}[V5< ]tz iUE' +˘+lg7؆:\xGxG'*f!y +RPG@CŲŔNq h8^t9ca.F]&'#Yax#M'3dS?+4"CFY>'ZP3A'[,J aaȦGKHp;\+zv-bHx4Y#h-0mm_F ~ˇ=⢹BxmHe/TFp`B6eEXŪ:W:lYJ?ukp'=-s6P%`695r$^0 ,.gaʘÖpup {%'j=wBHG|u9lĎ# ?V4 ]fPo8Jb)L`ҳw?kX$b=~೩IY'\-DE2DsL(cj0TC xl'=vp+r_پ eh .qk*^E֫J{w(,]%^6Tuݴ|X P̏U`B7Sj3<" JTIxHL9a*#EA i>$EaaN(oxE.Ogbn?=䄂 M9[HdV.b%G%5]+7E}3/u-/H6۶1-L)rrL kɬ@M Qu16#*]61%B rߧ+oy^Hp=Doٛ=bcGďfsU#`WKF{wI8q *@f6#{(S){̚JƩ0L{ 5ݰa=G<` z+Zۣ)=Ct$ߐ6b\FbW怐jKcK@  zsRNK)J~Ā`7"ՋiۻRG ZvA@sn+ȌJc5 *8#ۘދb勺 9+N(-yWƱ:&tj%w[9jXf|G&8 1_UX(7B"M?̨'N>c s>B U"YQ mH[ n q@1$vဥd@{ԡeU2攔.(roV`eLSd/H鎝fPmI7Kqλ6Sܷid+fU1c[j~9^dp z*D42mn[NthqjRxHOЇ?O=K +ߨ8;8Fp?GTtkt|~*ٗVf}vO}LW#Ǧ  @$DLcǾPR2]),[yCBxC}fkyV{ Unٛ#9#"ȡ3r@6g;+"8{ÛuacxK!7_~|v-SBꘑ7S.@Ō,ghDjM*R=|MpȦTP3 _E ׫HG0;Ǔ~Iu{ Y+5PאI!kl5HQv{5 &n!,5HjᙈisQIerq?H% c93?1NV+ܥGtPUg5sea2mt݆P2y|c 8ѦI֯h<#{U>|AVC TVZO m''ބI˄]b{*~NOUMyc. O8[\#Oο8ܙ0&Aś U:雄7j[oԎfv%a$ÒURq'D'(BatGs[f$aWvOm\V!He尭r/h)y&OQQI݆Gnw޾fUa|pL 2vȯKعؕ'^ԨQQ<ޏ5k^KĘAm,/~s 4<pOl>EfJaFpIٻ]!rH-.c 5(ULg1l[D˺vn+dVԼJ&dqMYzDvbi6x> 8c4"KkzUL?F)?-Q:WzE( |]ds^oGePDY_4p,<yR;nn)%tTfqBmAYІ-Rc(Y ͱd'&(D m_Ox,vyB? n::{"q~w==\V&Vmse*` '˳kީ>.Gd=Ac?*)+>tTZEg`rZ%{;]zmSe'eޡ Z۹`$ףpMx&l8}\6lALq,`/y's Vf6ܐ:D:7jar 8R YKݔHݍv68?j qN  6[C l˳ [`Adz^[C D@O/9ѩBU6h@ob.Ws1J-|6 .o}\F\ҨO;5kp\/ϗßI`ܕ(u=12Yדp (QZf.xnyBj Oտ5P?jx3uFf͒=azv];Gb$MrĽ{blqR/سjyj@R(q;47zq 3Jj@Óʷ{8ډL-K1Al 6b gKj!JKh2j%!t֡a<5QX TIOb-$7͟dVVsJJLÌ}aT3Q j:] C]>x~WDRj{Uv}BO8+Ɣ@弟RN0OoxHeZAo rVǾQ&:43A~/tiJr?&e5>xw>kBJO˗ JKpn96&EU\UMy&HfTEn4NJQpP#7n<S>ow;xt#Ke:$nds0>~Vܽx}#x'țx]ފani8U4MTTY%J<%[FGSCh-^áqݘGbewl8D:J*>οZ6m @'! ]j *f[9}#L:`=7OKXum!wjצּNO]@mN{8pGfy[n4%!qOYI]){R8JS+#'" X)~ Ud$vdul*Q#ۊ{-78\]u"cE|?X^{dw=_-FmRX E]益3izϽrR q1X [gQzr,ۗ?~h5p+O.c~!-JdAB{<5E1Q&GIqDJ8i(+R KHUn4*G8Y_x,6ߴiP#^^xxY__ а=12top^D*zJ&`SQjOeG̰Um)ڣkrP=+ZsD OZfq:&NYiJM:֋L؍)U5Jtp\l'lP(CK# 񸭀pv,.?\jiU~c_ו GyrV>OQxlR0Az"iíVq8$Kr {[*8cWb e< L]Ks={;ͣ}UD1ҀBOnb1rO.B'adKUmpquǬ\0?;W(TȊ_ BWb#8􁰻H2B)=#f4dw~2N*لA5OSBrex_a;]|| ĵ\o27@J>vr|[ؠ8{DRmV|q T?^Z^AO9ѳG$ Tϑ4h7{3 I]jGFM0XL oYh/X0"1vנ{#WD~Yg|s|ki#.?iVve;*Hp#Ą!?OvxUl/afI㨑gGUvjOzV]=>DRݲ*7} ҫamr*ʤ z;{MeWS O&g>epySR׶T?cD0t])}?δ+>;EZ/}ݹ{rm[n%[L w[SD!'bl$Q7`C8 f=km9bq;HbS*\vSxRu/lDpgPD|RΗ.s3MqlovNYpSðS qsz[ L+ }q.g:0G ZS}Q-5,c}w]~\3Ru0 *S)\~fix0"7<<수4WMD{xrooOU˭tcp~Rv ҙE}@)j~V`?oGm|hm I,Y OM-`.&'r#y‹a8-u9;g]kQuiЙ9 vX7ũ.ڀR@,gF>kZ ło Kx863`@]FA2H zC)Zh25 ٬Z+)2^nl"A 19#~ZBFM*?b/(INZ LcD T}Ԉ_RNbXG*""kOn]ʑ`i0΅Hȝ_^<sd.%l!^lJkRF:Ky%|O/|r< z:-pg[.(jXu5x+=R 2Y,Pf]w6eRI#9r顔]F>%'Z ݂gKe_Hm+*0;pt4V.Þ'w23=G99̨dq5e73kZFCu6K ma?֖o^rŪ\}떂{IW9XJ8|יp^j%H*-5/a⚖GxKu^B=ZF'O`BxC0cd}dwɃ6[3I.DE] YhBCs],abM8#P&xDk+ gE %M| .iIqxLg}ZARlwI ]g':'4 k7UgMT*9*6+tb>,Fn>K `\:}Ɣ/@Y]C?aJ\Yh֦IN EWbLDO~ws JSLԽMvs j sw שO+qy%\4!8] \ :yK)#ˣFCG i8]eo:>n&>{.(nC{_GTDRdL0Т@׏s+ENAu]߫ ѿt?ƵFuf%K ? pn%x˃t.Iō .5SlAQͬ?hUm:jeNu!v A-W9_wu54<;;$N8?GA;̯ G)9D]ⳉ?9$b@6[J/|1Ө*Mi{ַD1'n?.N#_VbkWOҒ#u̥TAj!ì3 |ԩMƷ*5NBT[6F][ё`PK?af aá )}ֳin/'mя$ l Z fC Q?i%I``pTڝb0!}Nb7g{0iQ?3:WF5`r0fqԮm>N }=xi9^&)[EX\dl90wg)ivby5_9X(f֑MO\ 'n)h>$i  SLfI.!&)Eq:^&▽R*$\ 7ü!ΉT4X|YNhLe tٺB.p)g?N\B)70ُARM".DЀJGIhTցi3gąO_:>Br-XM@( (>,iV8/'<9QvOre; ui HwU &띺{u(nGAJALL =Y*@^_ bH [۴lDe[KڮmDm*2`ygZ|JH8CsXP*:?(l7qZ[X۵y7Ja|5 HeDhC9c>C،2(aA0K(eʞP&EbW g(*>"7 dgpd{`Gf@3g:x- 3KxnfQکp cjж! զxKؖBn8֏d]wH];"R)4Hz0~7Q$rr^#1F㵌JV͚%i+.\<;I+wOMC|[2Vu'[ Da`jwlԫŐy9Ʌ\2q0S߇^QkƣN"RoitlrXZlL3CO.2Hp• 0 F(+Sjf5>3!@;9E6.˙% z'Pn `sf$ n44+ϭ*ER c.fo[I lQlVle w=Mu$B+vokfgPX: ^)lQ=q%^5m.a\TGފx{d-WM 7mi>ׄSێK4'sEo \KȦodo 0Q4cGîۗ>H<@Z"TE}CJ+Hr=ɢ^ns+92Mu1lB8,@R?=/FG>Co ̲ibDٮC*+DX-MQnCC'Y 6$i5љ4Z%pxKRS9 YԊG~\ '|p/ pfVz+ZS GJóOzbZ`tT5)=(i[uOR5{!`[FiM>T l5F5ֳw*$08iuن#O8(h*#?k&V7_ʔfI78H)a`/$ު_徻, 3w2q,K7?NQa0ƞ킥>T'J.9ò5?E@?:/]֡׺gA(>$4MHmV,e.,߳HA0}(Aa( /1tdž~Vhn؎T<(:cY h|MNNabx1,CJgڙ_. jeA6Lx"i/r~|j)=sy)}%6l bO( 7q=(ncFH8IaҭDOyi7TFT0;I8;ϓgZm:ɓ0?X6`y_0 qn^f(o_I>iκvSR8%bNPwS2UK;aIJF+LTY\Uz:^ARmYV \XIQ g[ & h%4Բ>QZFG_r^ql $]>x+7Dt"ǣ5g2$8}3K67X;wGĥ+砩ۍm;ӡL hؠD}m;1-[lViUE]B~p8._"B)P[@ 7s\Y9T CTjEunw/̽M:};&r`SL=j\,|AfHꤶ:ZOs5LC(aKvT_~aFC(zzxyaBޚ=e/9eeHQX\L*%]wTl;_]SԞ6;|ߢM]H+K #!+Yex֐ əo&-9u0e4] ?`J]}A R{gp(||dW狋@~2^`4g`eX(#z9h.D+|38};6Ua(>8yu1Bc78|T>h{#9>#aBsp{爖)?5^):]yuQtgֳ#CD×LO(t7_?uVz1p Q~g:t@ZAkKSAPJI[@u~v^bF.l@HY _Vi)"12=(ɃABQ;E&7.ԍ 4 jiHf3CBtABǧ_J@+:֦ƻ\eˍO "4v[5hp!O M_ZxCςɎ)娧ߙsǷ#Ln,10(M)["wb{к[qC_V$˝|idvqm3F*8 { 3y|3X*dZx[lJlO]JMA^A<ߴaK/H6G{jŀa*>J* Uϒ:8z8I2o=fdmV ]$+D1'Xx@"49 l(A%]bb-Xע~3KѽrѤOLm+dݽnk6EVڣ]\t#D'Ϸmo{$H\:s zMI/b~y8Ō+F>Xᬡ?鳎o)1yS{H~쐷A-yQ)q 2t  ŝcL/u XEɦFAmgAq`?H@ X{s7ۚo_Oc~H7eJշ&s;7Uhf :kf-:py-]QxhñJdX #VR$*gcLj.%TR gbr>N{'ۡAZ x7R ͠!GW`N=A%Xhe0L/!k2 ! wLZ/vllW.+ *,OL2'aޭ7ہmC6|=#w]'<WrIiBD(S1#B F,x-k{h`UѿHmN=Wx;gq7ؕs UǧkfUc˸}:#ڭ,m8DeLQFjj[cZ&ĉī_һ+ry׏|_Q.ӒUlnZϺ^hJ\ɏ\I(ʂ cn +Ie)U' Eɒ h*7~!Rq&j S^p_%P"'`G(wE/M7 FC*Ե:n~ ],ِk%Z\$9Lh{|61J UQ3l$clϕHsXwF/Ƌ5!$T'Ev&*tTnl-}<)E;?=D8ٛc;zgbU6ܑY57v+ p;gGp0@NNi('}T gJ!u XyEg5ЧO+X^ME(^R}PYV;HL#Po7V*]]+!]>;V]1V= z`?-,w:mHُLb07lt^OW]zݰ@REEVMFNFՎP|͛PЁ85H =]v q&ZA(I\y} kCPh4= pltBTmQ`rDS+^uJ)%fZ_aVi^2R{̙PKOO ʆmM$ZeÒnZ=euxz88ypoL.#~6!;v^de9%FRS0Iމ`p;gݑlՀ:3?d\eZswW-b5e!,ѣL/K (`? oD8Ҩ Bi5\(nY҄%h vopVّFWNbp\-hOqhL#&Xf-X!w74 r)+%p17[X _Kk-4Vt5GGRk3>9t\CR.Dr2XP.3ZL Bif DϺ̩΢vaa#S82z饣a~$tpA.p/:/^Lg b95b(ٌ==O0`78*$~3M~D~c'E-Pq6 Nҷ߳w] |Gl/du" )yEl7Dpn`!tAn$E?Il羶FS_M#Z#pl,CFFgB9ÿᄞ,H+&ζUzD8L6-6ߨd!(7F^˜tO潸`{4̯yWT`^Æ"=*#czÊ2q5UN6 O|T1wN386XX +Oc,Eև嶫} 7#eMvM  rS1HxipQew`P"oN:WQcKF=nV] = !1M#Mx4[C-!t9x~n~kJ)b>7wP}--_{aByRK晲:FA7t,E]^a+qO2_SޫJt?/=#U}, O@NC63b ɶM-x)g^ċ _BYDC3ZyWw:Ȼ`.<@pvX5jq$rOuhlN{aR5*}|D3 ēuXIK <5 &hPJJRխQW˶zਰ9SS}N:aF"+¶PEѴ0ez/06G{kdZ5k[xBJVi5?&]y܈N}cd[b>@Nq!?Q[h t?Sq9Һ/Ǭg`,:EIknatN(T*Hǫu7RBPxÑ6(a4p)4_ߡvTc8BX?S7}ןroR}PM+/"cmϊS_ljZ(94+Ā턶wB[,x1I1*9]2F@#|Pہ /$'rIX`>GCC@I<٬g [S]aZ;s*٪߂XүlJ?##0|tBA}x*F"j.URSKW_ %^j*Ho@,+76T!7^Y,PE*sp%Gfbt}'j 40~R8OṰ05w(hٞkqbՂ܁F@o-,l;8DM.`bge^xƋ9 `RݢJ4Y96O@Plyn*ܫMzsCO߆z:Tvc]]CyJkFdN-p?Ƹf[E'z Oai0늸Yv:sp{h-1?%.ax`z?vTQ}n&ueUbDY$2l_ h/iWΨ(*U#ErJ7`PU, L/$yTYv*U],%"t<Jj*f4QOOw #||Xa4Ae¨0ĉNsI ӊt̉x^6ߠE!4A⿳OTb*i*WRnkt+t'z-qtLzvrVؾoІ٦Oۢzcm#>pg 6mv*qQam#48bI7$LV]\P6|dqp`&_ކq)baU ZP\7LNa"`#l ̝AW#Ih}絿R<J.#8RMQ}} xt O} k)g| f$vC\bz6AК1a:!a؍p 4$ӂIcxv${\%  Z0mp8ǘi]};\QG;]17)&U7]ULq|> b0ZBg Pw"@zyE,$IJHWB Dgq`*9 :S4qkp%zhlono#cIW;rx֨F8)Z Ys9#{m|yl3b̈N (.Tg UJSM}F.T3ʷbfdJt_o@`2 ͏%yJ.p^G'H Qh"GWRMlIh:&Em2$LDFg͗JQW!Nb=+IJۿ{:Y-"7kd8ߡL dlbHZ KEpjvXSAʷ,4N ğlpZ3q|:OGP$pbb6A 0|AjMpH ؊?uaR 7痬9u"1#A>OG,6M3:ѠhEZ lwG!/b3`|)^ށTAV[dO)c*ᬦf,?K=e8y-2` 1F&7Qt'|:^. *Br`dii-@+gՋN^L8+2DViVMfU;tPEN挙f*6bBd=V{Kv$ ⳎVW uDzK;ui˩pFȔe}M703m?eԲ]򌣬ƀ^(1p[(_ t sO ?~W<~TI5њ+'* EO;F)7"rby4Epw;Bc4-&rߔ7JwLk$QE)pܴ`< ovd ^_[*$6P)XڃH+Epb8l #(.H~߬ӳ?gB~ ğ)90]̰ݼH7yj—{ݟkEOex+Vq6Ji1}m¢~0Voٹ齪sN[,Q8éjط 6Hx㠡E kM&d6w脅/VZI(f <:Uz>k5=˖|g+ڞ&WAU*!X>!`/\9jn;HeϘu%fl\"o նFg{y+̐*stK{MZtOr!Gt:de9ɕA;s|0xDWbc֛;l53{7yoDV#f+6/ j h38%ȳ!u,͈6(L0H`&w@Ru߀ ڊ5翏5r BkztL폅\"B$NAg4?/3OZcAXw4ä.H$;rw@ N2R86>r4/k+4;2`ƁTߩLV,}9,3dK'TN+4 +w%r6m>"jd -G}s3ZW(,`ht|>QuKDg |yAC2+~1FMnqd}~.x0 M eڭdaB.q)PbFvQ$ O\. _r5?z KISbd)W ٵHx@tOF#^>µCy1M[y՟TT,hak!d* (@?NBlϞIg[y{ 3*B vrewUfyI37zI 'W)ZYRn~͡2t~lDX>+b4^YgV9(Sl-6\"] qaSٷP%2)ҏxp7o͆&|>79hGu%WtPBӃ,PPE&BLO k\pMS߃R6_{k}~q= # Wb8v#ˈ* ?i`7*j;j 썵Exv Zb%_(dPk]RU%d[|˩OKT wL*v]BP-eMEUISX#f@.³C6$>!R7*L(~E;C}[wˉttLܱs/"6i8wS=%1l16jw޸ټڅ}f?#&M/?n5,(Wvvja qû0 .y ;fQ4Ao<TxmϏa oz~ZZ0Џah3DU }Z0P>mVY˓.gAZMR1賝<|4'$_RjZ^o۟;Q;a?M{ng{7re^DַO9ܮ7[K3⠁E(9%`$C:! 2 R'V!۵Xpø+qw97ȔŌ|'x.EDeŮ# 5\{CL:b; +pms1C茨Cl-\r=' iXf8!t܆$]OxZUeU L dȽLA:xx%+6B"|չ6ap 1RV}|PuL1 FlHx:V&KPGXkD-5#ShNw{Q-)2:Y__8˸ϜZR:r7ÕaC"x[shQ97h6S ;k?S`qL[i9aK]٨gJ3!1Mf:r#RP+q<)obV.-Z4lAUWD LتSJN W ^tXaJeG3"%Bhu.;՘w[Ts:9xAXKA񉎔e} %^_aw.zgEFE>=]y0㧔Uuư*_/DTRWӋ:$ulߤY/dBoU8I˽ƌL \sA\`D2*y)'3}+98[z{L䃅.[9!'g;3Y[E8O& ^I] L"SϵBjxY9HWsEqq;P?ʹK$ DEg?-(oV;*XJ 2Rl Su&qVAF{c r"vzOrh=}*ؠ7 ښ@{L{AZ6ΔX,{+c,W#^[D_Dw-}(q"vsl< ."#]xX% 0J$fY/¹ Su(.[c!QO//64LҬd$q 5} .Kf:' 'Έx'4OadLvȎ1I;wJ6'[‰[O/zWJb$/4k0c[ߟ/u|W$ϖ >u$^%ԢLx}}EAv«E=%̳V@a*͛%5m—2{F^P78Amm8 M *jS\Į!+.ԛ[h6wXA$gKQv .jDpy2w~bSC;Eñ&F3>T|0/Y7"NV93ȉpX0<0 2{Wၭ-zD5О&@%cdZ{h-&E;헌mEiB0LѧnZvӸ,ބ>-8 @0;AIf-6"-3HnY}_dOƃ"H`86|dEЄȡC@sv W8'-2[ĿW2dﶝmCb߲oU˜aC#V,]7&U ܊"JOhHqԦiKjrBL&l%~rC\ݽeLCh]S68SGYNJHp8M}(cѫ($o0zD$LRSaxaK[2]4U diŽ R1R& XIڰȐjۣ߭ذ.B!1 3}]#X#UM,F&J8h yL%eOUԊοUmf8^ԝ)3AfӁ}OH\6EHw5;Oz^jE P];F9_g!saT%Kݯcuq p ξv/o? ;nβrLnQH=Ӈ ondC&3uATj($s_P޳43sp U/as"c_uߝϳ~j_Dx[Cw'8Dg ލ3K;gKJTix?̊k/Q,j*jS_4Β&e`Csͭd:i"T]ߔ #^ڛ 4FgX ؜u(䮒YżԡE.e2[.Dbv+hqle)k /J`"v>&`XM\6pש墓/Z\SdG ,yÕl.{|dB\cp]q.Ol-_+w5 bIC-J.;H敏?]j%l8 ~2{NW9sny6XNT;N$m&9.0jK L}`g `1➢lujdXWEgyaK$=U9I9 ӗ:Lwyep>jھu TFW4_'K=36ónݬA )>z}d6;i{!py kG"D3VT9)p'Z:ȻhG!J~Ru#}\;n]=C ~~$633g1,Ok4wLCRyI)g B- u KShq=Pzj!{ZPot|1i!h@1UV!ǀ#of?_mॣVqа\oG¯`]c)}N?h[z>i7C"ϙp~{R+fr7ul)7&ggHYo :luka} SJoY@vA'iPȨZ3oq]g9R{ty&:-> 0f ߑ"?Lds vhn1đP_vQV ( 2ZQEk7uyrc7rm_z/r\b nI{MdZ`7G-@O^#SS U4Sd+P|`ih¡Y^)~V@m=kGKb- vnSnok'Ό8 D߲ztl?ܝJ@28ZAJF6TU9iwvYʂ!y0.U,2 Qhېk?s |?|bǘW}휥L-$"Gڹ!Q2c,#Q(aLF3sS84x*Ybh Mڣ1Ovk3'hOf*Y0 0jUf}֏w}׹DV)_xɣZ=]s ](N/L-(:' _.\UTE)GI!>j4d)}py-9^ŔܒpԉO+ ۗͳJr;|AIRk^9FBB<-r<Tqx3>JR O!ʭaVksfK[,u8`iZ֥6m:ރNz (BTa9Y3ધ&QVyJ?fGE%RYnhDy2<{53dL!=dbuT&$2w1!mm꿄z(yBgXt|t&l}xT5lY1/fwcom0Mq=$5i%Ȭ[T f-mЌ. Wm['x e=sr/)}ylf˹9@SXfu>v;憵6_3p3߹ɓ1 em@*k+u Im:dֈQ+*O@L3CfYм%週beϻǺr}6Pj5s@+_r;](+g ^D< 7 GyYBd;{H!e6Db߽TIxCQճ\}Hfv/,Ar_|Cpy M]%"aq;x :TFx^@J`GW, )Yy8&061}wS=~8mdxީ/[T# 6W0M{xZ+s# G.pے%RJDV3r8XjTzǿ|Ӑ|T7UUP\)@n#Ǹkzҗ}O9v 瓋N ! [G+Y0@f(ȰDE, ґ \r9b/m//mϷ5m[HeU:m\f%?vYja7HP'Lv QG{6d-B$0ANédIHEu]'9TvuJ =G[QkϣN>Tݟ2§Ub)?2dk;}_ϣh"ne!v?}vBoq0):JKa?ߚIڶ"lތԘGrculbj5qu Ka5!48;,Gܬyhv@S`LhsM ~ .@=2 \lɋ("NnҪgCn"fDfGE-ꍺ(2,#384q*cN5{. X^#x+{ ͻXk:9#4$.,=Smv)QiG.&a*Oa/%J0&G7KyP-,zukTu:}˭1`E %An$s{3Ǐ|cU钠ۄWs/ْ(cxeid:x lG?T|<|SX݃b;}qJ>[[1 +Om[ozrTI8,w)SK| *6sXQ%r3q^S:#:=l5i# b_kW*|6:Էf'a` m䬶Ɖ$k[88Ĵ <%yJMgdb2k{nֶSMZf -G9Op.@pxB&a2x5ox"@n\i3<4T} KA#pIA#KGô'1@^E tg-bUx HgPjHhn6X|_j2,BlHxjCW3 Ÿ,sC7YI7L@`- )G%%W#a* 3n[\H0Uūzɛ=X,{f8^X w˞nܴ7֠i#ߡ`YB&–Z+3 %5|6btL6ȵaM&7+&xD{# ;gpY,K#1 ,'lpDmX x% 4b {2[?{8.6KhӀDُx?P4b#WDW/ 7eN`!6;uWcer:("a|deb%TF= 2iWNU.ܖ7Ei\p)KVLStbtZ_⯹G&&'ږ6s:kBDfd(h!u:z+r] Lo E%6ITߩ 0U'}<:Vse&ež$sJՕy4]%:Λ#%e S丟X,bbvė/qUJUEPn7>Q޺ 4{%} E@[eCGUFbS?b=>fIg +Xyig3Vލ?DNyx",~;c4雠"A:{bB!a2KX`Q"fN"c.z._V~R9\dDN"X?FG I}f"pj.˺xlfvj?_8`,T.J W#8=U؊P4s,tq; A bE4.dGDM.x۹GAfnO(i)=ȥ!Z<ֻ O@ҫ(X5iA<-rw3{H `@|TO fqڪ?yWDi>ˠXХ33/H&oAO[ yæ`*ÄJČi{M_M`H.mgP꜂̠ zziz:`:ܼ=_W)\8ޫF}#ְ3wD錊F 2}z^~c:-F5F Kp%Ýg,Аư!P1B᮵4:{F$Pt>H~ȘULJvr6F=:V`~W4(=ZD%v䵳37XBY1 oj-ⴰ^i6vC!Tphhԉ;Q ` 46+^ə|u3hhǍ))ju}'gݒ+2>e50zs!$bjόVh-Š'Cb[筥v.=)J-< ɮHy+/9Lgf'D-eqH|^q)=ё;[tVucrfkA!-٘p^c#gZv-&8ź߳Vnŝl%Xq~H1u}@cXWUܐ PT@C CX ]Y[vRRRX8M`F WzHB}g4s{kNl(I$aT%>7ncr^a8 ˇ͞a0cu0*Iq$w> e= yƅtB{pO ʅxěARPzT|"3ɹHo\肇=M`?@ U7?t sWn_8u%<N<>tX66>lklOIɆ%W2qJJ^ גjpUDq2vJ>{fOXE*jJ,vB!zQ9) k >,hiK-Ï@/L̬;̈Y4@BZvOܖ:/J! ] AX#U#3N>`wڗv!sItRQ-Xxpk(*g]b1_W{8Sfy BN%xhgn:l<|u圤mPr%մ0 RO4>8)ti82 %#;M`ZiVQ1f>J~ b|h쒋cņbU/; :)̝qԋpfc7o#40MuR-Rf!Z۹Vc!H={zsmC5ޠJ4d Qjt/NЛGU%+tXzMUK,?F4I7̃qzܺV;vqixo5~vrF5c '#L;ZRS%8fh$L4 G֏x,kE:NoSx(j*t7%( h%i-:@\w7 DFoHĀdB Z$g Z4x,80s(S)(:ѓڂpJ.ٗpC@~*/M."ۓMhYN&Bw*/UBhG/@{D0/,Op F 6+H F%|00xcfݤw` @YhU aeOH\>^D}SDFEb9oیwf5IQC:87j.q5BܓR3\֕8#EgQO&>l82t3-YmߘE^>O"Z&>X0 y~ LXQJVr90A"'3̶:|(:añI +zQa6/̍D&KV[x1HBsZA`=}y€6-pt)ۥqBnWmΉ!bc.YVŅHS)mzvDO&^&|"qᾔ? \"Jfag{r$'񞺃vEeOO2]A$om/׫mšRLI*:[l~Ky UwԚ1)8 m֢cҵYFAcR]6N^-rmj6d>)y.1} Pkgm{bG g4ԙk24(4}$4@9!t\1Ix^I5oks"Ǻ-iz^Vz x,5ChOsk|5v>ʰȀ24}Oi]-izbxGWj^qVCm;?ApĆ}zT ,*}bܡ )prTMӜgqj>r6\6w&`Ա}4yw&#H6<\}JX5˭+$z>ݖi=6=Ժ o;:YGR9ewXSxtIo3Tcc3m<1ZC1wYwxf3Qi":INWe{bЪ`+~*iFݶ ƪ )ZiWOE*;[ x C~ $;YzGTKhc/ԝGN޵ȶn@59l #7ͿU|_*p#2)tܹQ3 pP Ra6]FjD?;b`^ B1 &ʹУ_$ō| 9GkG0]IlY2חM׾';lbzsm%5%xݘ |9{l Dʙ`E(GMTD+j(5I)Sg>,+6@?׭Z1fLK&n"C2¤V*]m.RґEiO6篫E#k e\{04OHCˆq5vr:P Ht??uܻZ2V%:81-/nWP6꛼5XN]+p0mG˷-~r_ѡuG=I$wPI( h*y{{nN\qD&B-&KcD e0%g Lɖ[gZ%P⩍Gu`Eٳ?}IH10䁬JX>Aqc@ }j_l! 98|a9SB(KbFi!t,9^&5T6cztNvİyF9 U6"C[OĶ<ෑ0rkzZ5?B)oCr1[Bf2h]mr@2zg-jbĹHq`/|xTd3i@f2بJv`~p1`ɕEw>Xd{gv|s7!csNyqLSWs{:,FqQdiD=Li1qc "9и[7v"t/9)N֞>|?uN>C a {>b/IΫ$0FxlܾPFfjI pҪ:^ '8QIA߭n  ɸ^1Aa3I1Nj͜@XHpeIj~+^8| ? /.gCIW!Yaj^wđu@^ԎXu`j;0Q=6n8D =66Gah?aߟe~joIeّ 4:7~E UY8+kb+Uȴl,3 [OV-b\G v=Qp)LPYCmE@ҦpLF8Pb*/9¦@ٹƼ#!fg -dH Fȴ p vy3f HSL@oW۶(-@|zӉbatZ,ǀ_jV_ N_{vڜs :p[8 CNc)]wMSYu85Q5.? ahY5& zP/yt Ȋ2 TiҢXa}UA|fQ7KUclXo0맨,٦fw``̰x[8Crm-ͽ3]Ő*u5tfk?|u⨤j D%0'S v*L78Gc7t"@-FDq_{o[i=,;"F /o9gr׺DTV#B8* 9V(ի:δr"ç}aXƌ[D1$ "&C&3HyA x8R9ԸC\SiwSJ0V -Dwb 㜇;ђ-ɴO7nHݲw^dp cˉ}e|1#*\yVJc+X(UÐ⍖9*;MuT Ew= T7o+{܍6c"_0 qcuA9 gzK'(DxGMbH C#hjb\}Nc %꩒RKRY;3E 3&lYK04$q3h'}^۝H3Ѐ-?nȀL<ݟ5`6O0>4Sk@sQҼ(v4 ~`a+1/H4t2]-gxK "?#)>]˩ބ&N&|C,'U[eW]Oˆabcp9L5 0wS۔I&9zI1ϱй8kQQUaǽ(ˀ߳"?ɐYMA K3a7D>|4WE'd6pi7&_IjuĴB@nj yW ]GLD/i?5&u)-~6C~=pN(+-`\g3P(S'{1{j߅J .mPWec|iHODpHL_fQ72vBmV#ʙz6 *3J#qWþnS pD#/(.@<{]7pisؠqe% `K7O` M@~;TĻd^iS  2ܘnڛx%멲Gb[*B#WO_"kS-<WCj_ $-Ⱥ$H+*)gẅ@kv߳Da j wQV^PǶ<.i|WgZU*&Ź 5c_{Yуsu]erS"0V6, 6[Q*$ 6Ҳi7>:}E!0TU`I %##SxL=ý_rqϳ9Y5_Nt>(O\aH%턤h\]?DS^P4+8*|$bwZ(cBk$jA}WzK)h N*fsCOkyHH*䢳d߫ՈPjd;?kA]ΆpX~TIB{%g+zz\(?F`$t~l]> +||cS}e(ڶ}h~xݶPoTa|ǪOĢ+l*e|ᜥ17h0 _T}̟Ϗ]$؝9bMp(q%r$M)[{'-s%/.*}oYj^ZAv¼Y9S$@?Ƥrd_ۚᄅ 7GOQ͏e@cJxp@z9qOD"b.ጸzեVѺB'$N^۰l~< 9N(7n PD|fYve0y`}4?O=Ԓ=M>wKw@qiPrZẕ_p^ >27/}k .=,S/R#,Ó!W1cMDf)x=~$vn=3ek,>ЈK ÓJD)Nڊy]leW m5(2-+sYE>u'_q@Z: .lΖ'1f²t1)O?ko`~sm4l]aѽO~~F"b0C5`1|Qj;*yJ 1G&s̓AQK/{{zf񲻏IgFy$6BXMF"gPiOjTtEy)d(-foݭh 3Қkoh%Nгf(_Z&9@}n@ 5T\ q|  /AsToRB݆,xDMIx 7Y8P프6-*ݸG٣z{Zfg柉N5Yi[y*0\%͢$S#g!?9G'tPtܭS7.X̀sD ʅ5ݫ4[-(:lJ؃A\Gل?=.0pLк D3SXvJJz4!,pS؊rjwm[m&LJ,j-z@/^LO BԶ xX`RŏI nw|AeE9ݤ@z{gWeXfjs x_Ё;er3.=vRL Ey|xYZ7۬~|DEg$`HQ޼`@gpƏ"-mk-'HN]7#-lz15z^Q%GZml`.|F%]~"\whV4zc7)Rp o֧I ) -HVLv!nvL~.cz ؽX ' gjMAfa?/UM"uc'GYw$`KYzkmGS P p·#+" AH""ߍD>Rڷ@+ϧÎÙ؄Qf漒{SOeuu~~-X'ናc21%BׅCJ 'K܉Aţ"`ٞjfgq3#ݱ&,1 ObKH{㻈ݓalva4h}1`Da'pFE+<7Ma3H9[e>GU:媬T}dipC,v}~EjJ-jm GMioOWlPpЁ KMH鉩^F3UMyF5OZCQ6au Ȧ Pq@e ^qjqu6 dBֽ>YhI{tdD` 2?V;[UΦXMG'Ը'*nJWibrd&)%5{/E1ՃþMQcuTԜ a3^8t醘?.Gt՛_LsQ g !PI Znq Fs~f,[L[n2KD܊n(8͉_,X Z,lG $6ˢ(.zx;*=vo,~G\_c,b2)QE\54D͛ dŜBtNlE3k_}v ]rcH^j3["̭5?yղDŏGL`0|+] +B .dʯ@ o[gH:m SHlH)sc34? EA-ε|/8gtZe}$:>g)4P%f,ьPV('N 72Ӷ?hE O_ncWrC 'sFa{f_w}Lrp9>TFFE~֓# Iߌbnx3JQh\Jף_Y"Psn`F^?%%-⟑bH?Y89at ziUo3zKU2JSyV С4?IT-5ud`D^ee~2}ƼMÚI%:5|懜v\V*%ދP:AS2qrxBN pI(.wPۂ0y2wxHV!ft#Y10=2 c &Wl3Zb_Mųc36tK7ILJZe)xfsxhfXcm/.}rzL9$T4z&)@AyA%bflPV-lݕI濫?J1a H֭pkD ?&y׏~Fs0 ׀47G^T.nyzn χ#_)m0 *]z:bjq§Tf&}fq1R6 X7S;ŷH)(BWy{S*S2^v:B`Fpvg@ Q/ƛu?nk"WV'Dd] ZkMV VK僦ߵ,j{Rj h饨w T̚/zs)8wS$4bgo&}ǑM*"L#0HWb8wJ_Z7QUt >{M+/,_AT@<=9Ia 1g~ßYsbşib[lgm?.,sbx͢/({>"S h,c2/|e&*JouMkao?h<3_yrbmkrlHr]_hU |iVԽᆐEOn҇_lB[Wk;FanAnq ϔ_-MJra*ޑZh @4j!)GJYJfgD;&͞.`! 7# i0~5/3=c` k-j&3[-įFP^Պ#``:p}s%_#snV_-]g oKyz BRV% yi偘תGݖ JWsǎ2!GXcKK0ca=og1oȆÊ *GC'_~ ),%kI(T @"G9] p~:s˽j\N' mg^M-g>Ĭ 'ؿ?c@3-tY'Wtp>lBQ7۩Ui֬/sȸQ 2&K%DȄD~)ҙ!{*Gz R p_S+bg2IғM qS'9A}GB:KdQ9s%ڠҟ# 'L8ϱ9!na$I"Kl #U[`tT^<ų%%D9`o5+"yƻƠY철RV*EOHfa,v[XjtR@pg\$kek0mssӕQ&Od5؞snw?E3-:ta[P\3sQ3)ʎ@64j&DZBU|H/Ђ;>DIpI?8+l#yINH7$]<{$"u5Th v`cB8C~p%O׏oɂ$pX3quJk K묔GSrN7D KYjfhml \ X{<+0x7 2ꖖtH!}͗{XeGdy {YQgH)Z H>yk7z ֣!2gxDF8ɝ#*wD !hLBV^+mYvS?[1R2}NEބD%m&!=1"/ _ sJ$DH]I>tc%9ڮ]:h OtͦazP?To/:#L~jL'x UgcB K@fTr]'LV`t8+,Z^_a>4fle*+gY'Tr0˥[d8 &T}G pɸ"ouzYOw0B\HBL̤]t/2db!y4!i#ZVZvZH3wNSxWo'`BZRY館/t uШ0Bb+=mXxBz!>D)A=ٖѭ%VDKut8ώ"a>||RA:R ~0*]lSOq "|XȜB6~h`].^sTRINj?8MxFCwC\|հg8Qh9bQ޺5B|8(#FVj-Qyvr1=eJas1@ ^l{z(҃y0%*u c8A r(*H͖)[r^A'^EJE!^sv7{J;20 ~'D|hu 9UQ#?:bC Hn)Ռ;QM4#/xDLo\!ߢALqw86Xf&fmcm5 du-[dY.9A&KZ\ *`W!4oEɋc솪Ꮹ?S)Lq1KŶe wșoP֯%-sNok2l V~9V58ޒ=AS;ݵ1#<Ѿ1uy FFk0lk$lTyL,/I*Mpqw>g_<{d/c3VΌ 3zmWYت V$T]7A>D|!]!QPRp ;)@[9zZ 8L4vwj0kgp(.Ʉ 6 Fl'$Bj$u%3G; xZ9rshh&y+(圌.m6UkIMUU" 9/ѵggl]/ ťFX +^LZ1dBBO^M %}G&W4 xPhF \YP,aA[|m 6l8G(V7d//4#Gz=6;H.`n#"b~}(K]_DLbMCS?d#nzUV9 =FQ6 ;mR$m=oHcFrsW3)gX {nQ#]u 䀍wttT0[SI7z*&,gc>ebB'ÑŪnq ҡΝ(LA,Y߿8*_d%qԓm6fD.SŨs\U% >lx8'&)ɇ:]^;g0z/ǟ`ڏRFO_#X\1Oմ z:дx)GwQWn'6Ö,b]k<]dnĽy9v^P}\1¬Y?~@U(!{ZԤ润=w"y;F ,bu_n9м>H$RޥC<1S L[`,Vy×F_/XngTHUSw/  APXy|_^txυ.SbjKTz$4&"5ӹZ|ZMź>M9j|eI j^a(v fLW<7Q_l6Ԗ %Dh`K4z_k&#0MƆ\e,͐$_l6epbtW5LCAk[&,2KR4$)sen:TIgL`7v}]並ץy cO,lD?23;PnRsdU3='OLwZnDMW혂# 6cN+UJ ?+Rד[ a:nb[Zwq.U<5 ZX ɳEh]Za39Q֖EAGTnzvv5f\ !xkz`OA0~&t8S6b'w|0ܳj&ARGZǩ1"W̼*8Y(pF}] <"?`)AY?bg`sdv'g~Hy|Ak__Y q3Yq[+VbiE3譈HrX^+0MTnJcr:iW?aշzX eXp9TM(tpp$?iwڭYi׫!b &Kow"J'D[/F xooƻyct-NUCW۵?ZCgqI,H8u ?]5K/eZ<#HFv߁:ᑎ̄@NFIv-tF}NιQr * O 0?ˀQPM7_'m}C5Փ^, R[ R+gm(C&DiSRK adLnV|7eQWt29VW+ڳPpOqeԯڬ] QgyJ,dN3™ }4/hx&N3#_N|.EE1tMu&'1.S3V>;)eB`J3&'A0NĈd-;cZ%[Sӂi0%QȨʵ(X>T5E+rXik)_Ml؁8e* 9~!nc*e|Yes67ԡ1kJ\M=sK-5x_&!Z}=Hr.^>]K)ТYN|P,  xh sHmQϚz'*"|%DrRPVh%J2֌[!GO#%I\t ]7_Ş:GU<1R:[9uFF8+.죇k+eF̵x5Ki.b*$a_;W_Ә>,3Ga2iwt*-G7V%wHQH哙Bx}? \8ϸd/?w[I?=ȑO%lT:؛5VQy.P EB΍ z5 ˇ;8 H9it\`,,aoXy|ƥ]$U8lZ/,og44xohU,#eP63挘24(gZfz CT[ &I lǓqb (̇BU\91a1UM,MV9B7z4f}ѥ6d7&;,4orQxH9)~k"hDZ$xV!ɝ]i3;;Bkqev3O;_otGd\uk3jG|P50D:-!dxǹr礰LÕ|q.̳9sߪ;i/8%`$ k ;@_탳I֖A^~jV%@U wwq@#tE\ 81η,G`\cF(TḱGq3o'-my^c=`om:ՙ y EAu9Gcam\%L0-D DӚᐐt33,$-gJ8`+M*+UL}-I688Y%EUW}Qt&ϥν$ꨆ5[ 4-'yQ5MvR5?Q._%wBRфL O "=/fD6)mJ96֩hwEg'$\F,eU;w#Za%ȎYOܾ:Ҹ!d!F99hl ԴI3t#-O]0e w 3oe2 &rz %uvrE9LIѺ?^g}xr^;f9_zaR:VtKEeF/ɒwБ m+ɤG8G[qx%EE͡@^o3U {D_us\n+޹MoQ #V-%g@2M=Kk #j RW7K7j̻ ,ҘxUo?_~1a" rḯ: H(ґݼssHƟ+n]R.5=KigYZٝL1k:b@HW߷vm"( A'/B?h2 4*`_*y!{ʧwwN(C/v~/{F s (rPD) }hs_ެù7)sgȕK>l ;I"Cv*bݹr+|Z] VC.6eMIC-n0 \ڧ&*ŸfU`X(Έy(i}^3YWmab$ksZų!VTI,Q%+x _Qu3ާ^:FW=,.ǐ:K=XDFjFKEˍϊ:}OPf8]찦1o,_TYuz^ȹ3(wTY[6&OQt&xeM h b}WV>phqJJz T8|p_S3n9O)t[,i.L2%o'X234js="[vRPS64An/`%їbRϣ%Wac׍"Wq_sm8źOghrm]lV"CUT]RJaձ26XTUhOYڽ k:j8z7/(Y-~l(9@aVdUwjHHM3Xx+KCE$:6fZO/0Pk o#;42u NY%1cW5},Nd3` v;e9b?Ȣ`n1#8s]$8/Z3bx513RjI&9dkBt&xAG#w·Ls3(ϔHfz i ж>X|qEő nP?rBR`ҐZT1KE(hIzlL(ധ_3p"!;/&d@P>(Jw̍Py/6Xr1 1lC?{;粭J +.:3+2UphM&?"M*flSעG-(V5/B ǪvCΤ 7CEc+eĩKXPaw(G|}jLw@N*H*{,<ާ7''j`NMNfD!w$5~A ${>Batʫ/pci*KeCKL1X+ޑ3ZT2 IūRDZ[l$un5 ։]Ix,ryli3вI2;[9> (tG, n6 :5:^Mc;`0U&u%pkҗw7?gQisG=H獓ac3!=QnVh&O}DOCEKA`V|t\JAcP}f`T #q["BOgj*vIRq16p7y7oR3ur4fSR=)1sbb їbGxڵ6sVJKSDqdbRՊ8?]r;Ǻͦp cO.SO)d_g՚8 VjX2=2+w^|8طtf2w$H@Ma5rt.dtueh'Kr*ky8}w,\Q6 6 8iKH)ٟՐjnpC>fVwBu'=ҥn_ m8^,DJǚ[""T2U0^{SnKg(RFM^"ִIsU1%>WDt: {ioh? fGh#wԭ|zrp2S hܯ6<2(Go* ztU&qO?Kw7DNy ׯdcGh-c {'l]';`uP3*tJ̉-MATҳy [`P: <$cE~O7m %#MV ?TCȽHvކ_oew2!6 rߋsTϲPiP(Q7sb2{Q1w1ͥ <%-q ewJŊ]z3v"C_$\V-47ʾlNPB2%ݺ7HOW.(™>>|1F[؛pP~h@wQcxƺ|W \P20* ۰+ZN@i&h$z,1bߘD<:6=b ^6Ry+Z(2˵RdFm֠[@?7Zi ^;Cц I&ַ%g:C6Ԧ v -Kܷdžȏm{ٜLݗyǙa :fb!AVeU*͛W 6uD Sv9g˯Im<9}= ?b\'\Gr"E /gŮrJy>IJ!K}n.dP; ~MEwqoÙL_m ʒކ$Tq6q (LU @qJFckc@tEdk}N| q\ g/gR'3ῦwNV2@D89AK.>q rHOWc/*_O0P:coTkfA}TG9Φ<#PW(ރ~ęed:W @dH_JEA(ĐvSx/|i/YoSPS6y?& E)[`1^SIս qU&ɱX.2RoH5:;ʎ6#pK=baELқeWָIb;&|$":T]~߽JE#~UX{f[}l{{X΢fFՙhcPVLhWd/4QY?F)3f:W~. E:+ՈROFRIn A5LPeX %GoZl(oܣ/!Nr`S %wikSͅ\Rܩ7TP#yg(o*us}n3vT+Ub_wZyYGžq[[٭b }dH? ]qPzqFۜE͐EnO<[KBHzE,B Jf6 aP 蒻jD{D=q U60G)2JSd;/}O`Pb/1 yߩq U1)ZHL3F%1g+JIvmW7+yuFc=~)R8KCV%Ff:728 Q  ;ƤCsIpsDMgَ0g)#A$f,p5ıA'UҤ$HxVcLƳLjᔩKOwACt koܠCYeD> W a\ Lˡ|iWDv|Ж7j gg?[BQ<`mé6LjD?)=D?;;d E0.ΫP5l%W|'bͷL j&B5CI!!<:RzOqpMA+-$ה>nVa84} ha!pXɷx*9[bO{ ׌0M~W A0h!sCcIθxx=È r"olaK^?\oL\lCUTz6ºpìxyzw34@2P)]v,*Mfp*bn bvylhsh㺢t*[ h@܀Mj2937e.SYf f*Ez<aO# Ekx$vV_N%6)MkY7 };^-gfC" ,: { K^/_gDBpZ70g]ůQdE!QźsƶZ9^\~ g>0:F+\JPPCAUӻIPs7WRwg&\xc$'&,W Aɷm<|of`Cd֕{lIrmúѓ@dh7&f:pι.AV҆0[)97T1Fd:C'&SNҨLT+;0;[s6'] ӫE:?!):^"Jh6yC^3@)8e@c9i7WR*7Z2M㔮5'3RGzʜrsO:7<׋:bzTˋ:~`Wj"4Oi'sӫ~zoyC*WDW(xS4MDX1(RvY8՗ߑVl(bK `8f5bSGl cWpֺvhj[oJnnEzr~F3hœX[{ jS}dnDY#pjI IzmDH+ xx;6mG}Ibz>롴{#J[{%s(x9*d)ɖ 2D(,xaq#/u6 gG^򞸭@ZDoGʞ7s cT_?k'sT-z/uʨk]j ker0$ߨpU>ډ 1PCL#csۏy_of.7$Gj;i-SH~mKc='r״?ƀl*tOC0b wPEv"в14`Gݡzmʒ߾QrS.^۲Owꔌ^.r7wyI1o[B)5m/vX@XD宪64 {IAP؝+Ds]>jjMk66@/;C=CbIƩ?)P_ 7 lyUmLiB*TyXI(J;<-:`YGsIo l|׺GRS;>,]Uyo'N)vCړ1N+"SĹ'PEMCL_`[HnI`d :?ph/DA2[L='[[cg|(%׷t*x~ F$e~5rWtKD9Hs5Vclr@R3t4Vh~ՉV7dӞx}l _2U&{Ҧe|C?ՓZ{ݕw Va6_sM z.qZվ`jPtuM։SA rq&>'{lSUQ'$# uh_jAz:f $!@I}5~c%khj n=ʔ>dR'n")8nFuHgBGB9t.e(QD#E mWVf4͓2wܖ.#'bL+Q8e^fZYdT?F>1zѕ. %> %>^ge],QMI2lѪtU5Cpy;f.T7Rmdx5{~m(-`23Sl~ |P;')+f9ʓRs)nj'Nv^MMeO#;dc#5I, \Wϵ*AKJh4İ%v"ߡx'ݘ&ǰ,⁗"&B?M!az3T]4Y}ܲn Ie _G O%PB0زxSzebt]S;~{ 218iC|n57ߩN*:kPe@PY|ƛ_ac쌮jCZ΍T+LOa*YU8a!Y4=< vE˄JATNQ{eIHyK~xL׾D",FPsI/K0&$GIO`h NVYlcٴGh olB@: ʪSYr c #5j/tV@SUe1wVeNێod*Hy:92*Bp4+aߍq/uZcsi.shn^Uh$GyQRe)?0FzV8OLI`}$Q}99zՉɎW>CVQ۩uD?aqoޏ6;(u~>hQz'hxku" Q^+PEupb WH_y%n A%;OJk9w+t_G^B3S,Jbm쐖YգG%P'Kψjm56欆M.v&)1CJ꼤ֈ %eL)k2-# ! r`X$W-"dD@׸g_ 'duϊ>,BF9̦lbЊc)=.d+p2U}!'*a}{e[ ѐ{ 6fƥ="aA>>b}81Ig}b95/uVqTIJdxu=8ѭ̜6'maT\l 5>@/o,@Է 4NmVƞ05|4Zc}X$dDoPiQ|oCYp.'8U4r&Qw ?mrW(1SP/|XI` DIշAe B^%l/ y;r0?6(G&@]+ 6H-P~5,?̨@ZIK CTkYJE]j]UXzQŝցԨPXjAӐ%ڄ*Cls~9;>na^8NEnn!kKk\Y-͑N_geQT5˾\KL .݌f.tVגr(}ߢ^K B9 aauX\pdK6l<@")YPs@6rѐCiJnc4T\,:m$i4yn={$$U_Qw<\ƌL`q?p p9$<.~a /{.ZVc"mM"e#p<.i~1L.hSFY"ƒh=eάV)a>!\5^ {X#%V}?kр"e1Cf{u >7 C5i@jd'?IBZ JFUɪQna uNVj0ܗ"KΊԷ0 \UpTR`a;o VF^(zHi)vH%m:W] Ӳ:IA^]gӷf=Ή2Y'C|rbEO~`|9:gs|+ MݪCRb1t{O/hjJϻ^Fv>l86 ,PZ{hY@.aZҭD)$lucY7]xY`cW/ll:!Af[<8ta ׻Tp:Mrǎ]iZʼx*~ i~[e ɂ(ľ_Eas/R e;|9p((zԦ)mzwP1G+r=nś2llF Jk@UwB/UĨ(T<;4*>Dy?T ]#pA`ILC:=&)1ڊDdi?h0!BQw%H,ๆasEYÿ+@!jvsH\f/AqC+oB1(*!am|/XUiB|kW+!ܬok[UNEN< >Fmި|(Y&l5_ZOV ث.X!' ⵎ!,f@H?LhmjkXTv%j=lW;ol3$}r iDfA4V:lODUvƑaD(0\#EoY@Y\DqL֤?B/?rl6*r9{I5OKp0nK.HxmdHbYH`⿬|@#Q]zP%ozS34ӭIǜ`500ڐPj>4`lCǘlWBII\\mLAAvdW^j{Ӆ{`g-L!4w&P/8Tng6kH{w+¼R>*kR' ۑb{QGcAllU NPJNzK|&߫;#E 9E`{C@'{) ʉϐT&DBsrg\3{I ֈ؄ K|e>wo7x+j͜ŤL7v|t!£Ç QkVuZ#('JgJm>('fZ %BF> $_ϹTЬ1 6vs-}Ȧ(`/SOc#0.@s 罉q\^WEPyR .}0͞z^f1tP6[#%-Q?>9:A"xit ~/}%5FZ̚,2\γi|p | ?g h^Q4i%NPBўD]WSŋf ~2C1=!= VqնBwn̅&~/CӿGUB?V*szOw9g#3'H&.xWMK^f~EuK=o陯eg=T-6@N>sr, sþD+Zx3Xܡ=?)j,L1DWw+TRXi?d Cg L%Uo(O7=$iXO7;t]X'"4õgFUo_F \^Kz,̧L95ul!7)-io1CoTAm(K̦NPS"yq,kh5v*;,%EN؋C& y=6IȂ18f=ӸKzJcQDOo :Yh{<@7"c'DDZT;mи ߖfjj8 !ѝYth`Y Z(=XEaf /M"2&JJtbJOI f5x_ >Y 8t=0U$= c0AtёIPnmxPnA:P6JLs !\GQ?b$5n{ Kx(F?xqsjYAI\.o\5:X>XX?i`p Co-E R92lՁׅs~+@cMfS#ƈs’Uhf>=ء8ZxF#*^3a-1CdğXiǰd#ե1kTkN_I.A; Qctv,#NaqDkP]y@硯pɑHRu76gn_Uxf X;Ћςa o jRF,Eؠ9^2<m<ctj]?0 |T(7 B!MNh*#'u Rӕr(do @P/:tqutưrmPQ豋+QdaxeZYZ)lŜxdt;pl8ogwt,sbM"ݔodՕsaq^z~厨Vu)D$ %ޠ RT\͡rȗ VDVxa,m).&cꆙ+3IynW/1`OXAh]w<8D2q~qeDPLءobJ:(21<|_C[7m5 kX3. JIOFcIq#tV|)˸=&f oIOh(8bS[?t` nNU.:9Ig|U:Qav3SNi}}2tN+r OKa6ѨqCrf@R!'%!ɢdx9_!noߎ!-cVTO<,Z qԐ"~&9,2'0~խ7LEJ=]ݘ*ѢcØ]J0!ZV&d潮8`A\WK8,QrBG,_ ɍ!Fͯa/w|L gOuV8G`p1u.jf/fkCL[dγE9bS5[j~#$hӄZfSG&n[i/GYXśMo`dtLm)cޏՓ73_܇1.spL1 n3x{3@ ]~gcgwKK=Y颴l`]ԣu#G; Ĥ:Sx^KzC@iBn0 =BR152F.g}7;? H%X!)5Ɗ=r lsT&e?"$piy.7G+v5?]]e<70W혃+-lmigAs+eMkIKi H(ZO"{zӂح*2eI4c0fw) Be2p&:7ub8yL_#@S\7 sB,d:GD7jr [t5.y9^:xI/{57jWԍ}/L8A'93]WiSyͬnSzDK~xL82@Rٮ(_ Yw13ZCw"˩,P`pb>2;\)?l;4uP&s[d^CUTJf=&WE% )`G'խqb>fi=DÖ׹H̭A՞'Cx tS ̍<NJN"(-",gGy{y Mc3_eأxy}JfP֖MΤ+Jxv^J*Ka.09ާxVzbg߳f:x3R(v-gEp.˪7tC#W@T}S^cPOd0ɭ z1w)<ҞP. 1s:ڰA&sP?٘ONDy9R!Fs:-[X/\4bdJ(€Ni3Bz]QJij9 :9$IvN@<JG܄`u#^;/Q1X;R*?ZE坳͹92'escϡ4'![n iUotŤ-y5 yQ398VwףPvYS;,}!hw80&`U|$񏥓Sڧ9hikEQTu37b.zLŗ  "q Q9tXDL㘯zҥ]ûжy@ԷuIՋokxc_’w;ЩMg[6hGjRF!Ý&Hޒ%o(OqBde"VDJVya0K|\vS㛀k^)}ک0)WF|C3[>vƊ6 WqoQ,ۈ-s=I&4] ,*P] Hac]S۸^IN̫۟~    L+dJeN'V?OK ; Gr'ް>/] =B#JN!(  hOeV@̇SAI{5u5H`Ux6@[,&^uKSY'lyDc& qCDesgjoxwBɴqa=kp5^Td kzwV(JK%S_(Q:#CA?DN;#3"OVI}v5!]A/1k#,gyp\wMX}pmtPřcjbhzVJsK)RCd-@P4_⺖H\˓XTCZ77v[`?J9V ٝY͟>t%rxҪyU/fi~8Gcwv J( ^R_L8퓻`,a-Pz2o HP NQ;Σ&/ѭ:pN]nj!ʝ2<jR=|hBt*m”v'*|X'X7j)2o|m7%{tB=ۉҖ_5ޭtbkJ&/Te,G͚+ DQ:1loC|HX +N%7MS.=]f*B\`3HouQq8B/s=q`,1i^3 rJ͕qz5v#neVo:Vb.&Fzț%DUV\s-An4/l|xy\%ɠA򽜫Ҕf ҿd;)(eChDdV3͉(>uR{Mm1ۻ]vP9%RY`?|;ǞJCjA.~"SUdL8}ʵE=·>{ 5n*g.wgxI #(j4׺j`4n:»%`/WOj38Ik}44yL2bIyQobs1CJX*ZN!m)[ⲵN:F$2fOftƦ@_&ݹ twn3u<>D^,J@6 S,[f$z $꫿H:ߛ{J|U4`Ji:-("D%#solg(OL oc{k A;1`# R[gTZIzcyE׼kڊd^I6 I^%XF%6G~T'9&)NHXoW'֋}kM]-$h6,8,$!m*ND5o0b%u?×g"DM{~w1Ae行qNEmp#odߑ#FD+n`h5|-Q?fϵëUKRN~&k%1":Dw~'H@˳.^{CY-'U)C :aE gh~ g[S1ʦ ln兿Bw=;ڦMıVMM7c6cFG"\sשׂ'7&cpiٴ{z+` ИnPA1:4.hfqTtm]'Q J/# 0HY@3'eI9,v H[D{[PfÝx WtUH%9T Ix>I>^LrEDt+'p1[k%/'c_K\!Gjy_OrĻs_4k N v9:rn#m95N<卋J!}4̫*7#kpffضqo~FnBmLQ7*شEE2!}L A9M W¢F'AQx4 7<"m_)тj,$v~G-GYnZb2_lVVK Tykv Y Q=l[Q9Im w.14 M.9䝎,+d[}FE< B`(v4ӳNrzo!L~SPn{(gN .F&*dB`@K|QÔ _}=\J𗛾h) }:\4d}}R;Xe|5 2eʚtP?lw`mMMI+@7W XYLg Q=<@\ia(𡑚B2<Z<6 kUΣC5]i3hGm>lp_/c 5|hX,F.hF:hU&O[~4u.yI[4YĽ^Jv/+y?E*n-cܨ+);^e3|{@cX⩮+1,x^ ST8eE5;hM{XBU"/A'y e̶r4q)x3Dp` Ntve35W緪c]y<ęB! /i'$|%tdڞ78rs`A>\$߿VM(Ei:M ߖXU!330r7kA9@2 Tޟث*f n_]9S!&64@?C>}j)g "jCK:X:]nд >P/_!zQA2c->2zl L gⓩg% 5|6DeSzBmXX+%3x~KM"柞X_$9pdo]R2pk{X+6=_z,n.*p]~m3Q?H4,\D,aZ*B݃)+܇kS7M fa9cBIВNwU{$ 3i6[nLB5oHHVjnx~c b\Xz!%qVMipG9p&8Z+uT Z'PCN}$[dJ*4O̩ݦ[OF27l,.SsYQ܊W bu2(Ctixob= HS\a BӷZ)M'.+o2J>~G͛EI Pf!cvsa BzC~_̨ɁE0lGYfp \9@7 IuJl}*&8#.Z׫ vβW:m˅zR9Wq/>syb C~0ѻaf|z bGbt:*nj]Jr؁+b^6l.\Hx~op:UvB9d%͕A9^,Tݕ6=XWHը]t${Xf]Ew.@J3yݏ_Ds`w4S/^{ Rq'91 vqCs쨓Z*!PGx0i"㻻w]>^<".rNmSԌl-OqL] Q9MuC {D|-B$6$ -Dz\ \4@T1)X[!;h#oz"ej~si Kh%d/@=:@U~iDRm/lڟM0y*ɰ҆y2'CɇĢueЛ'=!ޞK5J҃DؒsYj\ ({\` F`<kڒ1zJQ7 e/rg#؞XEIIuSbi˭Ȯ:S> ߾ L/قe|h6{zFh_eӅ12kQXy=OMV*#J[V-ζ~o"\]Z\&Aqòy kf XC<% xྒྷ[\`3C|\PNO>M`WwRxc\ˁ}QB@2v] t3Z+G"x`X$hH2 UUrm+ irpŐ>%ig8Y@~MdX|l#v&A&'Nw@3*V5MT4̔J9A7r/ٳ_T0$T&J%f6O:i7ZrmF؎!<lT*)T)eJw-uV*?B6pq|6 ĐLnN ;aqxӿG't I[!BN%rXN ~Yh-NeՉ~rV6]cK<^;>TE),@SS ;^<͜?!?hg=5iY].- ~YXϴ9/W3`+%%ccLMvUlÜx5:'L>s&ajiqYNzq=*m`U=ķ ڌNڕ0훖='Kt;fMgd-mJ/ȲRt0IVdm~&^#)E5>S~0mϹDb |[+s"uPV^ҥ )8RM<ұ&㦤3FȆg&0-< 4^Uό. ",mة}0QVIczQIiSQʕN' ㍨6ſiY4-G˷9NyϠ, FI2Ƹ[[ҏΤ=P){ uF} jZ6('VC/3'g&s&p |؝L% ;vK/OT<>zy$w8Rm%@Y ~tA؍A$ P'%AEZ ed2ta jB,ZO@x2wjr7<=r,5oHx_#ߢ#V_V _9d)Ktp J! 6 ,FǻxI D(r'1~JY<J+l)j[1 + .q۬T&DeFe6"m9>dʙ۞^ @~DYC 8S֦-eٙE EJqgrӈTM\oN$_8ķ6c4\`(6k$Sw#ͯFX>$@dUlaois÷qsXWUt5C7י <܁וMJ"%+ꆽ5ڦj0X;z5Fj}`79f)-={y{ %"ߵZn|e3Ia<G*V?@qȦTYdzh)tbPQ:!SiHsιN=eK,FsHw_>~jlBq쓊z3O?hgXv٦imW/s7Kqm(zhˡR {dtt: ̙%&+fUmXàg{>+mht ƨ"ÕosZ'D2<>_;w[0Rw/; ;G#f>6FW-8}dX޸E Ő=qN MOUR@9@DosQނԁr `o,CUEYH=qLj: fx"sRT]TC]F?W8iùN]{dCNj&Y'*RwOQFB19%bk:L2:(Hwl -i gi!m=Z|J+-ƻTYm0KbNiϰ^gUWBa-)BlAEs(m=QqeD!0I7Cr:$4P? ToRsughs]wg!rQvUQ~ȫw/Bq\HrՎ#Qm/Rv9dOh@܆M8ҷ_n*TrQbny:]lΧ|4GKG* Ȋ(Dxk߄=DTg"!$ǂZN[\G_ t=o gM,SCWT*DzsBݭH\YI[h6+yYcGͯ95ڣuT yb8-|S׸4/Q:\Wߴ!V W4axKqxgp'Ț@.mQϯy⸊H!tiXr,{piNEI,-4X<|4և3k K]8@w9̌K*>Sc@\ρ+V٤^ji7 C4"10pH*v7E|~Zp{ʩڽ-cqp{iG&=o]^Bu7(1r M6Wբ'#4I61NOE@E?/[)ZX^`&, ?m Y )$ Fy\*u9Z"Zfj@M74D,{TWd{u"ǘjf W b_ekwd(FLTٸxʤn'd"mYtDOVXd;M:,Vüw\2*90B +IК))zX}T$|>!E=ҜA"+ ^Ӑ3ZZn?̜`|e(GDƜ-uun|f d $qqʽM{M56%F.."熍ʘ ]Lb)1&hJk-B"D))IT[K,n#FM'\+_$k # a<%JL^{~^#5CNvSIȟVk;=U*yTHXf&qg,ENMvƒoN5h,EG5=u=UowDjPܡW Itze$0?43?QϢ'i=W$} Gw^rҾ/XnHbciyf2P5%Lilnܮ$:0]V+J4Am}^~q&ӓKxե-XCO;`Hi=oq9x⹀+(B<=sĝ!sz!oN\#Z ݑMGo~bưUi]M߬.8(ۣ3#sLG c[DaqD`=MMLW( tWCNM& (t t|uGwB+Qo).S~U3RURO-sHB ڈb I(ʥL0tH l(}" FJÚXX- |A //tC\A }-LGGKH7lVtz;:QֈXϰ(`$4.|1\ZCju[j߅ %8T=)!SFRo,^ۛ<"7I d=5Defsa".AwpL&nlNF>⧪;6hRy_Vp5dJj7OKbkL/eXyaGL-Rb=0fn{<;=4oXcNet>ۆ0N'f~_@^+gD[vdKXqd*_F5 .U$w3|05\*&V.rW%TF-9Xz^JR۟UИ ?+7P@,X]Cj^! [ liD.@Wڌ 6&5y@~A;0álf+fwK΄(6D@'--yq\zVFG=eZVWsa!//q|o'c Y!:{6>ʗt,*=nRcG T^֢/>m1\ԌN@I:n][Ll>8~=?9{.^Iñj 7Zc (1uek1ԛ&ډFT0hg¢zv,e5_#S(Zݮg89N ù:n=,ċY  F҃ZP@L#@If݇!yWI7A8EFxEl7 ج: {~Y/,C־>'􋐅H+N珒OTaIԒ:g=@pB%rl2X-`(-< ~4!lP<^'VQ/yIr)b(A8g$)(C?K9X~U:(*=LfZV33+W!k;MWx/ 9rcx<S}L'PVϢn>.I _[2 R"H4Ffr-(v|lw|܄nJ*Q`ϨRb+aؐnlxɄaPZ%=ЏNha]ƀBHg-᭻˺%g/&UdتPRYBg Zc5 /@#ؗg$oi<۫$5ARV5BXwBB~M "M",mszܳmվ ^_&Gr:a^0+S˪|~vn$RzOoA^34FːIbۻJYrٴ).^'.Gx(0{y--1(X ^{0{f!J^nMu"c\4BZ'wuD*WVvpϛX:;S_ڎNexPXb̈gYaZ%C8dBN}H_ Ӭ 0&^ֲ+]<`Mma t9ng0\cS=㱴pw=-) }m"4#xn[zJbkg5 KdUt,=J %0PPXcax:'` 젳k̳BN=BuCowiK:|+ds6 eٯ響9scp YxlK38I1hVL1!O*!8mƿ& 0BȖnZÇ TX囃 DO#[,zx]*Xd1:>pk#;fT.ғ+zHew~1+lWV%2SP-{TjOu^ri`MQvFWʰ.L .4C]ʛP! ݎ.2!V#HJ瘐Ѿgnd%e";=+}}L ,B͘zus1: b3')> ;$vMCZoZT7")jX_/b1Q q) "L9$Ho`ye 6BٴOc3Nn}b"'<إ/'+o? 7"XRkO$E,"Vs:|8{7 .eK芥|6Ln` ถchUE=0^=f rCx~lEyX4o6'7Ql?ӷNТY0# t,(fȰ)oоEϸ -/tAvˁMD0 6>=E37sL!p\AV. Aq[o㏢:kA}4! mʌ`]ᘣǩ 4 D{cP>A[v%LvCpwgv듀dyb*ҍƏ:QC) ##inG}gZ2$QA7sޞʩ3ێ1E@yoCH BB i/XϭE+=a_l yu3P'승 %9ͳ5\~/@n_Q]#R+aiGvm٘Q_KF $PI9?1lsc?B^L F4?K '!'}SnPdD Tb\d08#NV# "TQ["'^M "9G!٣u\BW!@?aP\:E/fls,3hn>dtSm$U]k^ğ5d اnT 2:rYGɆOn `0u36&0učdyl1tښJP`+8/Vk,!s[P%mh؜QL"eŲ> C|o(|b 9j>Aͥ %H);+J 0||8 @9yT0輻)U$5%zJdb٧DΓ|#d}2b!`]o{PZBʐM W"IQZP8Me 㕈 !gndB{~cc"vX11©F6i"a:Zq`w Xۀ=N+Φ%z0"֍?T_өW>g@0U ??Fw/˦NR%aTΞݼOfBTGUތA(>ѐ3"ń7{-i=,j&=xh/uwxX94B#W)RuWrIZ&F#(q*k6P pn8b?-j9jJm'&LMph?.:P X'3ouV (H(o <wNҮ6!/}[:=n^a~8(ja̒aY@IVgf׿"ľ_(`e=qd-ES@8DV{!`i_qýԋ&2.U_LJi: @==$  ~8+ 7%Hw 6:9m E#i%s3(kg~DO/+vMCB9m%[mlnim'?wN 3|T cyD5xdgxФ*uTbU.Y7~NAN<Dg;7ZjPN.1}.1˽fQQ%̯u򖔞|)᧊Odx#ft+?/bpEAXHLfKpgf9Y%)@֛a me!5Xc),DHNmκ~?It<"QrmEJ0toM(5Ѥ~&ٿR+aZWkYZ8l_Qڦjb`)K.釢6ח O\~K8i˧KA(N+鑏K ',{B ţe3sY<y ;"B˽hxͥq2]SQ3Q|Kk,#՚ix%Rȭ7/ۉԆ<_J\E/Нp$KɄu[^h{[`/BdRryRg`;{P'axa2qG'v\ lH.bnkٓ !D (nܳ;45oO,&5ؕ|=sz ?Paf00sܽJ' @&Ҵ5kWCaLKtD^ NݸUL)PC0K2Gc:.>H1Ȳ +XQUZE\\]+< 5 vC4Yt#',5_Nk56*D 2"mW~EۏߵQ@/F&X3䱀qSgJSW%J?jH `dYIJ$HT$nrJぱfNpU#.w~ua ^,NEK(5?y\YyO _3 O)qVܷd^8~1z?(87G@+ :AJqMNhwM]DBIJ]@)X7I iWT*"q۸,}z-L;No*a'>E*ÒYI`z&(}UXS9ʜ~)wRpOK3RtQطcާȜE1&"ϴo@/gȧ2ͳWﯙ9|MEsycqXͽtb㷪т$2;mfυI굿sD&ֲ);K2 L;:8|6WVpQ1bI@8t 霣 [7G";o'WHGZZq<~8&2 }sWFcTFN8dNIpkdV@gZyC' GgF$Co)^#!4]f `yiUT\Z4N\]acIx72Dr̩n>S'//"{K1]h< *\uNXG^OgVx@p2ܭBv;M81F }7Ǥ#W굏V:ͻtY70UGx֍J^$PJ/9.JLL"+euxIƽQ5WMW_eggKHȓyfeLJĥy3r5'^^Y 46flq'K Bd)tݰ56mH9Qs8GWq% 1aj0QF#Ul`vl4!tw"d KJ[ڼtomJMეZj8@/˜K) \a*CLo_&K˭.zb3}k|"i=H]_'>FjvʼK/6zw:1\9 9E u~Tph}' KXq&MB2*>@KUŵӌH)zՋ(;BJTZ*XMCEG )A\\ð`UZ]ʾڍ''/9>3v ɉqO/yJK{[RWG䂹9!; Qȼ`Kג喊F` 쑇Px迸Kѻ}h1CW\rezwPX?ɟyHT݂6祥ݯ QFhpfJ銳jK,kbtxN TNi3:k$v jlo^*!Y0q9+>B2qX37+3д5?n5ㇴD>1Z\atxp㪷5Ig}AYRrʿ0X.<:OIyVrbqQ>_053I*pЙ 9̨%9/]D& yFguގ^2CpcqZtLD?2kBd_ $4JYŅl`%R(9CdmԩK;[fE>HZ,'q ǡO7?]Ek t-K|,*m;八AqiM'}h|2eq?JVׇMG9bT$ D#Pb"@^29 k q _ ZPȞę@1!_Wax qdr_%//jL6"3zo6w)D67JiΑdpUy%.*CeR G)󔄷T< d&X:Ϩ'*Z-cm̛JYb7m85މulG敌_3avn@̓pp塑kM,m6cjG@;]N(Cx1*O1m3s ʓ%۟]F1ӄf%AL=bFWKmm$Hʕ[%ѴP&"6[3Iwh,1=lhϒˍT ns5d+@;kTwԄ4/xyb0xS{$Mǻ1 7T7v ̧ky늬 Ӕ=-dInZbH>vBjR@xd3]1"b1G% %1YbŜabB+ N%|7C1$CepZ'<dѠ?*NfYU~ؒAF3G7O!/I7ԺHh~97H׳%dHL CMcm<Tpm-^0{ei俠4V?'Rs,?s_u3=4aKa BC\k+S>¿:1kqyX@v җ{O8-">ġmQ(1 ~1|/E-i ;B(II''q)?VP m~e9ԘEj`.<Pm֔AXju=:k]#s"r=%p>{lPHHEnS)vI;n[PKqP2ENv7aF {f >U}9B#(69fh\4k-)8x!juu53kn(vҡ1GTKUmNEzbGX,UrI8#re~oeL̷gцj{eɶjب-H㇈kkBɔ@B2GqҽËpm=/iiw.#$9^r%Vv+[ɐlO+794yzެtՖz#b;oK5IXw 5!9F>p-O.an11H׍IC/a(wx$=pQn1X`F;,F a(]1WqQe,<\ /ӡYbNurZ)`ɍ-GQD(5+5 ﯁XO#`¤I=2$IY\u렦cuaIɴh.s<ID-Ie0o(PTl'tiv7Lu vo$盤xM K[3[|Ȼ )$pOO0{nR4Q1[)j/aƍh" Q:{[LOxk["<୸ sʤ޴SvN+Vhx0DMf`6}iECV|(p6H=ԫƟB/AoAr\gz|"\\%VM six` 8~➔T:5ÐBR[ C}+W6D|59v y}Hg1D3]l MrUX# :L&|:D1N79}/i6zgtR,TF.)0DFb;Ë{30u)=Lo~z`ي90jo)ʨ12{x}0H+j# F=drZឱ{POѪHJ^r8j`Eqn&<>Σ=JmmBX5#r=^둟EN%3ώ+t1#9vza"X { nQn K}m m (lpT8,[I>`EWՖF:t}wZ'j7{CSk.\'k)nޭgֺES/{ejPC ak˾W *fiEAG8u%{.2V:54Tސګ@LtF c `RH)~L fjVexT/B' cZ>LjgY1~>Wrl,RڨBv@}K@D* {DKGPhA`b4?x>@`Vᜓ[&d9Wk48ګOnPwkBo$,ڣÌIS|wmQ.ic(tRK^<[I & 0C? os׬xhUK"umژeqfuz~ 籛uv1c $ȋ[|eeZv9_1$ XsfVUus\HEk*Z*Ek:.e_P7,fNvqY \  iu!U~dfT72fM[X0es4$ ڷC55^p zLӢe^xsJ[6p\wނ(Ԙ*b[tGlO6o[ag_fTEqh&C^OzO~}jo|#e])FuÐ VIz!T~!>ֲnRskn SDL?^xU]+k@#Z7"S ʹ?8L8q5ODzI4Jd32rXSc[F슕n|*.O743 5'Icԁ? qP = h1]wrT; ֊*-a 0o~o(i%MP4~""$(1^LDW5ҩ\2PUc\zTs\~G`?L_R_V)WQD@κ#|e3π6|Sm ՎNvdv UIjTY ;7G /kh}n,Oa /g bu@ֶw[S|T4e˪VP;m| 6_>ϿkH6 rdTXaE`8. NV/"?" f򖺴[l[ffcګg,Y`us)-H 'dݙkr^2h@ Wp][ U!^r1~95 kMyZ})2p7:w :ZZO8?h1Kڐ|ca#x9(9>ɡY\b~DT9 gŸ<6w-UZ'V--p H~tV͙m } M7cpcENVg_WDYB e&꺄}gj{,VjcmCb7O |_.GjFFW5KHn9fIAX-ln[dz?L3}e/Vq]7zgjl'?pS'uռ|/Fw! BT`J;;eg; Q08XJ~f [c 8;zҁA)`_(.fQ32+xʽ9 ,C~ gN6i jg%9)ä9dF-ſ'۱N`HY+}PzgM.]vg8͵h"|3J%>a_ ~E`f2ޛ̃:&Jk hXNٯ=62fNg -yE6=`aG `z96ӘGanN:^Vy"]]`k2L -Cq2nWFb<;6x-=p_izB-a[".&;΀5o %K߱ ^~98Eqc$:! n|X<DDrL2}m{td==&D93&68l/x!6nz{AZhgzGYO*\ʬ MsroBIS6,%N+,Ku4)9]o@"^{U2x{á.}$SuҔ/ݒ)J5g4J[{PumB5ϐ`mYM+p)]*itK]doRe&L])^}E{Fͥ=ZHGr l s,<*SEYMt+vn5'.AN/ 4/}v*\y?h}ZM~±ng>sWMT7ws}`!u!& g}B0>]̆ ҷgޏ1Nɑ?6 O{vZ &34j~2WdwbHl*rNi(/[BJa5'1 ֽ?r*JH`Kr7Sco"5Z HϋgTNxu[&sh2cܿd,m#]>gsV_& fMCGyt |R+}Hno{_OuK|{Rs`/v(Xy4\zDp4N{hV'v`|Ӡ;(8嶕=J #vK)RRDPazH?kY\Wh$ȱ{wQH],DYt-TStaS= d}nI3$yG"׆HnO6XX,nN|a1!6+aFۧ O,_78i5 wYj7W9C"6+ vƩm"D{EF %{y!athG%spPA/Ujl޲_n]ɮɨl hI(Cuxqq~k_Թ;nَ.Z_8#D*,5D-=bUAz- ƫVょF6A9!ęgyz!߱5T5$j4" b 5X=<{N'\D5@i+q6JTP2ڑt*ٰz}PSY8>V.!HOVCeyXInK3<%/|A%E {eYlx`0UӪpyגE1˸QLhTՉӆOtm:cLs.fZgc |yClNL%AcXJ8Gd" =ѨB )pY=aX %M_/~S%'b| XwۤQq+CI@,t iJO(Sfhq{h``ƗXX9D|Pt{9;ImSԅޤ<_ R}W]k6yg*r2|i4PEcs>ʭ5M.>LbE jFis&ѳ՚l+Rw(]XgdļVW3nHTa0Hvbaz==q;TA0͸qOc0r_uj{:M~;r! SK]o|Ӊ`9li!K Gb,ko' #g?B DySs:PVpf_<$N\\0mz.?K~ps@;`0py:'-u#zH@`9oޫ ||z_Ӽm}hAISi* =PL(y%2w@/+Xl"> 6[U, ?CLR F]->OupwOδeV` 2=b?}αls/%!0 qQ>+{}{{\ ccPԪE0ȣwà`\'@3qZB:]:ū =17 )-,mH#f{mӁ(x`y&6A ĩDp_8 ?Tr(#CZRB/m],5.L84󉏎"ά)8o>4or "AY=Ww1FEy_@1vkU M< ^̌@Iݻ% ?e4~L]G)[a6 b,,LVzhZX5q-gC]H,/wH:X%+%KLH}piÂQmu$<`S$`Udw FiT=:λ ?}KX}폃Daܝ1X>m(GF9O![h'?%7hÎ,FG\$gw}EDzwޟp?r(h4Rз)[Fhr>>4Ȍ@Xqxo )0S' ]7l"&^ÌJE.F5>ׅĺ-Dp $(1fifȦ7l>'nt>%NV;cGQ{ 9-fҫ%]'蔿P4G~?f5lN YI\ ɦΔT%(^Vb:xDxxlr H3$͂zzEOzً7t6-YZ~2I1bnR6hR Q J{T~m[ k_G2Wi,7qa8(n&&[f8 "l*f1Lzs 0EA|y+#q7jifhV޶5?E]R8\?n|oC&`Ýt{ {|d,LeWOi%e > -O/EMa¶Xnub-j.} -fN2?u7e҆fisq=ÚلBkW6"=c!M KD~F La=:@$љ$rkJ.Wq79𗗶91 u%G3i \ LsiޤS%"e#+$:AԱFD +j9]dU9HMD4!&C",|1%c}hAidӵ_6ksc8v+?'L03;c/;F@Ŝmw밈$DbK2A…Rwd<@E; r`Yo҉XjBN?KFK,!)J.m+ޕ&\gWuEƋ.E˺3BIq 𔦇DMq4|\wqؙ=4[.Nb}yegՆtNlLU>>FYrtyZL(\]M}HOvD<.9Vj]%OSֻzu]{ȭ'tP(d4;q Ž 5jtNVʞ%CД#35Q8e]Hr!zV?zOg.~ S|{k6:?S8IGh/8pX!}9,<&RTIZxjquTY_ZA&0myW/*ʀ Yɩ8#*Ȧu^k_vhc؁E*Ij&`~DJEHs+Jwt{{r;\OApV&$\jiD-.-8ܞ_aodH oDW!"^9zPOw|ʶ&"0!̪͟NVw뱑 c sD&+L?.ӓ̤/Q X zh)Eܑܮu+9Ǡ+ہ83* /{,js>6NC z ElPƒ-kȻ 0ܧZTjß~VNr\gV{B|f?Rw^Q߷@VZ1)x.&rŲ¹+ R8a+z.+pV?lt ̤ pu`Ak,f?05;vRL(XB"ǘ92;W{$-LMPbώZy|v,D4'=`#PkWs@T֭iKd mozO/XRb tcXa<Ӥ ^0w90cLk^  ˜[J Av !Ef8-L]sq 9VS+aY2)5_jugl#4'/4.δ4T3 XM +$n/nR{1A, C>'f{Aq07ӑ W [Q qN.թg]23_60>XHgEbks6RC pJ gπhM鼛gV^u:h@5UףbaF-WTRQBcSE,>֍5KPzj O?ߊg,XR236nNu]قkMd3v(qܣ!O`=:14/M\ 6a\2AāJPmYwZW=5E)~ ka|W `P ` 쓷e }:WF-S]L}i†X4 8ף,Ooԍ1<>Vk/AthUM8-׈ݳvԵT^3.VYW: &Vϫs1 -L^_}bsT~#H< ɦ_/LgZ.HHPhW6 q& rPv~AgAoǗTbD cu\EG rb1ɸ2|v)V(d_PKcn E9\gaBdeu׋)BSl8i_7V ܀mLoɩ$Cv_a]^J{dzd"[ڬPȞ_x;))(M[Nm`E(C~􊷻YHꃭH*Yпba- 8/ɳrW'&LcVX Fj-%^Uׄaq$^}c@]0?x2/_7VwRԒޜYL]GAe5 yéi񹘢#XZGHw-\, ȱ`֣""?'fK=+n)[ȇJPc$?ZYha?OηY`wFDZ7u?f#mc $LAFWYS;ZJb|ĜVH-C\BX~1S uU(^eC,^O DIKtDٷ?"~\2,U"e)j>H1[-pߔnBuE^9O4Q Y)Mj%6nFf5 3V|*uDʈoUFP'O4"% ;ҧnE xE 1 8Q?]єOzՍZEHAw2U; S!yx?!dG{ #,${1lQso7ku/~!1fIAal.vD:,䋖 >솵,lXOD*^+ڐYjƛi*F8Y`\>Z Kux "O7jP3]ԺkDJL%Tq-*eĢ.qraGaVdFH VAm? +c_.h>lFyO 9Kw;}mR7s&S^#e8AޫKp8s6ad+L&jaW.mAy1T6e xGc eX%,C gMНsz:Hh]Brb@2Ac]uR !aU4_79K5عA;$~r1QXmed {a}5S+uHbIb0m$E!C Qb#xUC??QpqTBmacdF1g06+~Aϭjzk)]FI™:]6H&fYѾ R |$PNr"g p%LǣokFP#Ɨw"\W]Ņ% EJϖ9pj3q?spK^J$ NT93{{f= >Ӟa߁],3#-x3sg^F\ʼ Gi\,n{Au{,pQhRUѥ"Zη&bCyg~=E`Y"cGJ,k-nb{(׳& pB0_<9f?E9MMmCU8wҹ^fg&lDy0qU+}^q#oƺJC ̃":PjamH0rxg+\$"Y K ^l"6cTS! m-h`ޟ ʚRik-9n,;gI\YX= ;["}ʔilg3_=NU$gj& ȡF(Y$0I@^&rI(z¼ܭ6{ ^ ϕ7bnǙ-6dFXsho^x7@E4Ӝl|Їϯ~!Ud^ujڿz~AIze;IU}sXF;yu䐖MbN2^X,ZRmuGD3,.gM4+9:~zL)q#:rNĎ Tp=RBʪh&`0WʛLcp&?^+ueSY 7O 1 YF`h@ nAٞ`x8ǰMlL]ey@i 6.žh',!xA'2\Uf=,\W>11T<,YY*5##P37ɻo'ְʹ.9$qV>qx2~I3\yaddYFQk7#wo!:8%8bgUmDjTl*?؁w"w>;>v}hϫ[T_Fx,%{fC\P* a !T;Ko¬1/>6^`w,ٺE EWj?QN+"J]]'C7 K#4Y9!Z'Hv\LPQƟ!ivO,"s1Z!% -5DZ̷jD$Kx$ᤗ 1 -1ת(@>[Äޘ ;Ȱ6BͨiEJ{o*kM"E8Fō 3 " ,POGijdF%&WGSޒ= DE+U!/^R4y k񰓲`O+Ɗ,=b;׹Ռkg!SZ1?5eƇQ4ojB87-?eU1bCvX$ӳ0ˍ*]׊Sab6vFN]ONM8cfwA:!%̾W{#.@ꛛ^ TvCQ0o/od3=>֬aKuaP׭wmUY}w$—&m8S8za? jJC u:6MAd@:Xn9deppS(wvHOK]y*rar߳Y爍[ [|`f(lnW[JBFwI31K;(hq7g:*ԉcBE+x{Z5JǤ.vw肧 J-a#5B*IkD;YLW:wʦ}Xd5D/濧ބFC~fH~˵EqE?۞jh>Y5Q@Ln>[,3 Z{tP' {2 rYx;:ӶC@̐Rjl ѵiA*!f K'0/w~Ql&m#+g]@/L,2{.3ީS kjy͇`ICĄRd+x})S ÔQ E(N3 Ղﰴp_ؽ< ĶM oA_{D#o*TG}o3T8.%rL1='\?Z{ci&X]F;b*%,>\6!n 'X*YN,2 DvF6M0ʍn;s(1bu3턁[rV&cAWtZD\I.c5]i>򁣰Ss('ްj~^X}439-+ &vm' a^N݄?׽NdLcH</XX,kG絧;S CJn'ɱR3^0E!hjGΙԦ)Y~FADSʭ71:-1k_p{"^Qq˲\ 9jQ|1`Fέ/"#8?h!A`&==OC\Ab%H1J kn!%_Mseb-\ʈLf ")&WCZ)])|WTTo;W #٣WNXH|* fs/r_)Qn>4n+ m )5C62NK MBSA:rK.J@|!r=+"ͯxM0 m,iT˹ܧ  /Cط+xU<2/u],4a574iESJER:_#*sR?2 >E&PCg)N4H1YmlP 8ZSFnlRu*%\'}ʣeױgsv#ה )9>Phv  a}X3FAngh~~8E )R-ё_"BHO݀IHU2lU+Z ,G +L \! }`ޤ*|F.sXx4>mUݥ @:'!.E9a c(#W(>,ؼU:Cޣi]0Z`#Xd+FBѵ/Q8u?O?-jXpHZŮVxn2j9n͐ul=\+žib0|  k.\fkՕXWDM;Px!'hj2>)ۛ"LfzzH5q0ɗk21-R9my۠b5 ge^ZY4$A%.VW9(>jvcp=#d'prfn):r#ubuIF2z$GM6 P(ne%7'q-"ė=]G`CѪ.ShTRtڇ0jkɿJ[c(f+iX1P=7:#ͱc.ha^ʲ8}iKy^O•ur: }MmVx?D;9il.dh2g(D%("<"Pk%A7p"U0h9jitf-%,Y\uO,nĕJe#ڈ|^M6 X ^{mߌ&MjFKHtvI4fn'jp1ۣ} <ەq>[l`ܕ+/Q3dr2LFPP3+@/p5 (4(&{>JRo bkLRyܦí3eުдw^(Y>`pCQPHC0*|,64=}c]ysҦB(tږv8ݦt9%L=`^-Vm(&n{3E(-% W΋D/9#|@Pp$ `](4OJ3d B=2T ͆'"I dz@ب8U"/=Xkf`10Q0!ꦻ᠈H]1gi⫄k(}j"TCOqK̀QRn"6qdd  to=ˆۋZwkhyM\8EUIE'3xFwp,h: }rke#SpETb]fqĉ5I9O^JNcb9{y`JBl2 /x5 '3rd}jGiqܟS ^߀@MD(T:?.SON vf7;̎7o$C;^.R4iQNFl:c6"v|jXej :__*3߫vkC)(_Fua(Bz >\T2HB~}O/?t0FsАzL Pލ^,Ot䆔? A"̷FiP< A"[Jq R˵'<.tSsۧ+jPg?.߰K#^#a-bUWiʬARNpr;Ή0GXdl3oi;obTh u1Ifԯtq6 5߹!qō~3A݁a͌7Iӏ;*5Va5W8,2.pp0Ys%;Nw7J-T1'B\g1f,ve>0P酌~/wTjn̈́ k2֥yOMiDŽVXn۬>mr0m +P4IMLq<BϪÑ0 1kA5fۦꃗ0ɍ*bܞDD gBƹ]J YLg}ɏjk;^| T1)ZH1$C9PCg}PL'P@ S5$cۃ'Axi2oV| lqEG;Y?ggQ8F=aza 6uRci%mcZBBf!H^{ ]OY]]A}00NU\K=O`gtNL"UmzPI'Z 2lX7~n)Ӂ%qsr2`Y ѤXOGiW^wk O25pHOD*cCt,{uZ8x-::Q}S-TqOK*եz;zW2 &^+#/6 ahK䷎'jDp4+|nu8Cb x5ݺ:&`Y6uY w4*#Hr₱v3Olz19Nd>W`wI`zXKE~(ex?e "!晿啿 ̮i&᝾8/Iɋ>or;뭀w<b˝ZA@eSGa9S}OmhԲʀ8NΨM$2 n;h_QmgU EjאXQdž*73g")z|.8V0T嘥]wܴhA 0s@,I^$~Hi^V=WV70wUQLz`6Zv;! GYՙư^+ޅ U8ttNsa8iGg~bfKt!:2 YH20gV]5Mϵł0t EHPqB@ _˒PG`;6𯴊1Ōh^ [*WYO5`}zŶf&5JE}q^ՆXrz7KM; A_QH qӳmf4>}Z F,YkX_ezl!/97c؇1c3T*e4S eJOM9'Gﶈȡ{7?CM"kmE=݇#$/ǏqFB˂AәD`Zm*dGkKx >0u9M=kvecpg %l!^h* Zr-01|Dnlf=:PDӪ?XZևnYg:8 LsX~ 6<4{{\[-WLO0i=acux|؟l<,g.3k-&nh`/CN_Pףo}'Aߡwtl15.9$. 1z"P"2r+FN^A4*S/4K9Ub ;%|M"L&D~wYntHBi@ϰE7n@mnH8~$MO9D(8 -a/ fn}A?.IZwxvh񍔎l{7xIMt/u)(dӟvTג+Tvw!âZ0|UOQc'B)" +{Ľ?I1LJnל/.W33&l8w*pC?;MGa`M減tYkOmMk (}=Sj-eA.EvvݮrC~~*h/j@4ڃoq`٩RWˬ4S9Iߌkz&t0TnVPQӅKlI<:5F,N5rϋf#7HpԌyrKѽ'Q28 ߶J4k4dT ̫Mu;{g岢 5vMzQ6sy#Q)qQԴs,mni39RhI][F:%1Rv)P>P%9 *9qg{=?TMsEvIL'+fm'3ĭsǡWpc@,5d8\hm `aז,/W2^1O4zQYc%uB.aDJ-]~cŸ*Yvb+bas⺨%܁zKk(TA3բ3TW<\^~|.~=^4?Ab2"IYhrrzΣsD%)Bx~|`I`&Hꁭ7uD ~0v{8 kh!XWfbc%_FߴƮUwMz/|R ~@/HffD5pP+]@Abוv_ReI': [,6@kfn]Ὗ]|'ycmZaŗ-߼"Neg mw~Pxh:7>kiIG$ \_f3 ]vK v"@P%W.7`D X쌦槭 wc֯#21VZHUP9h8-?-ƻS,gUt:7/]]δ۷ݱ8)k>h>?)qy9;Y.qm |WڅnӄŜ8(>&eN[9gVDs;rduY zJT,*T 03_U)+]!=yÇl\W;ab. N]iTРKBk-'BN0d(J_p많2z &R[qed F-Ń2rI2DDfǞc<~*&Ů!F`_ls#RYce^,[;4y"-05bd$aIOU+IP@%5>1dcڶ:RˌU9f p4x̶'] kqBsH$tDˏqbT| SJ k愝>jԞ0pq R*8[USTapZL'v`f w4=Tظ1Qod~JhS3ʒ#, |vDy!Nu-uhb֮`Tf~aB+x7cI;+_뱻IK#28~!r38(=9kYI-aw7`H~`g1f5ߞcmq' Ǻ^ǰ#]rܨMVMR= ]5B"\c\:}ٟrzpLe$M sV.&Y!"]lnG٦kjg£oI+e*6H|厓=~FdnyFMr#~Dbi6>VЋ??\H;YWB ԺeOHşAOBQ(tӐ/V0St&˿Qj#.YBg=v%H4MCqןI$?999&Y \9']OH(@4J40897:sF}ֹ!3ӫa 9x 3CQ }~TOyFh&\I֥ ᣉq',!ѭp#cIwDB',qԏ͗c7V3/?H0) Of*]mU?z#p#wмiO`Ϫ-a:G5Bۦr rٹ呾zdE7dw-OI%RQnuvXgOFx=+*c82t7>j8әW2$̻iVK@G(,+9}#;/LwAr-iu=hM;FE˻9,?ڦEƋo!}(WG33^Lۓ׈92p18 -ARXkG,i F$|IyK/BX?; C4H=r>p5ᢱ_(17|cm)_HBs:|)0EN̤@^t2SžغM]Z+e5v|֒HIyl9Qx#>a#|NkUIZ }ǎdsm<]nfv8󳵺btlmTQ,c0P^SK-KL9| ;|C^i迸H/i7|y!RRf4n; 7㶍ޮYa_h´8T-2H-s-Zç h?fThl<-,o%hSL#:{ɟ!m5^BM *+W$` 1'Ą °zWѲ 3Rv%{VНtWeN_?7&w K+C?#zq;.NtBEZ/>tǙGŘT#,K}N3VOTp|\_`"9 HH+ !J;ա=1:XH3>Y˛x_\P~>z1%D[Mot}1/ Oˆ*#N`qM_ڂԺ18⿀0k5EQ`ǗhGK|ӣU^ga>uxvi{60A;mT]*2A:CO͔HM-($ ׄiZ^YKeRv"`)2:Gc -B-*0M0kK"(Sq"[jLHxy*7bAVGXQXLz,wK(?Fm^$@-Wcp88~mJcGϦt;> lM!Gi G4["Gb*,VktΖ|ڀ J]ht?X0P)ȺͳJL N0vwsVov& 9CTi 0bK_GQ!ٚwO՞Kr@UcErDLr\"yT\_XL߸zn0'%GR[e5[=rwR|0*2u7A Gl ƊA%ƍJφlҙ.-ICJ8ssז[ ` HSHoV7z_QVKYT+]I ф$fkn z=b %zpZ;]~'zAW$vA1Wme&!:tG[hC 65/{/!&K0kcIJĄ1ܖ/;L T-$t?CuPӇ)J`2AFA[n/E؝Wp$g O]s#[&+pz!rkz*DC:\2 )D&Åy/LU^"Qv r\rQi_̠RwgF֩m@\jy5sW8X2E(IAO<z X3p6V+4C@Ǚ*L+Uw<4Bj} r饑 | uK5&@GݩJ_Я3x8)w3<nϼ@N/'{U8D%Ј: 0o͍3 tjS7|3N I+ObV 7@*{RPb-*Xg18nőѥ` 5X}{P`doyS[AQP8lil2uwƴ9%Gfl"CO߬\[I4 kԜ;&<Ҿ)LZ8)z ^z=z280\d2!s4ǧ$;O㤖܈74dÔ$}U3+heczޕ}.{T4 U}G#ADSm WT4@/lO8:44޵BLjhav@1D/+w`)Bs1n}_1DT jiq@5%?ZnHa>8|z Ƣ#uT\DD U,񚑝 Ϧ7+92Wbtqi](xjY^٨j;(` >8壞qIۂï2Eͧ'&C~i[UR^NWL5+Uo̢Te?M r"z)NmpG[$Ln|XYcw[ Բo}}'݉a?EkA.J/րxP/xk^'7puGrֆɢp! ;bN#+th,@ˍ-IOqׁ\ =6ȱ)kgk軸nnGAK)ЇeM% uz%bWo Ɛ""ݾ0`Ll&}$Y5V[TZGR0yT}nl,3-'aeU>,t|` RE&PY{^CE? Ю:\B8Fb{X΋[u`Jl+sx"3iT=A;&')M.\wq> a͋!HMI*6y-2̼ N,}4%qw{0%x?: BBy-?8AP,9. LKXeW؝KY߇Eޑ+88Z5[I2,nWJhh\H!ӔxKɖ"\0#bR~ r4}Tk32L2׺~}h'db C>{څ}3uƺދdL@8w@ζ DAuronw6ualHlҥoɆ]8gJ%'jNpSzԱy:QvՊ~0TXBQ,iJb tt@|{ d2*n~M2ל"vtTR0d3t@/1Ԟls kIj>#6Ьw䑫3m2-l|"I^^cC!3FF~c{:/~{Z\㣜3yXdFI-*D-D1g S @R :SQt__J*- ׎ȋL ._6󃮑mZ.R P0%QF~:hϜ莬űY,nDl/OyNyZT\\ {+yaVNrUOETFrDBhpMPZ^Z@Na8݆@|#sФ򥏜+XAˊqMu_/@U=׵ƌ,I뚭/Ӝi*r$d_1t Y^Tuh9fP i[Hz 9vC+CT[ a]ចss 5mi<-C ,ck': 7r-5hMz?5N?ֳ45#rd"BЯƖ?pUZK ?;I [~S*?VQŌi5AkI!nKG4jݒ 0 Z :&\Ǫ%LT17 91uP't̥92q_x],9mFiao6 XUE(rՉy'RhҸrVٓ'^/,=bø FZRݞQz>^F IJ ,!BRip7me^gn9+5=hLZZ˲_|3K_sr>pie5z#k8>d=r;/cD)hnMgLz=O(OHMc9ĝ)X50Tvh{W{a1߁.xd? z/E.ZH7(1D;d2,UkoyVYk5ޓ0f6ܥks: ,d:~85Z~CGpx!;HN9t$㯗q&8['iC Fg*zۏEo1UW_*+-G[ _N ԅϋ{LH h,s7Bs2m{m)ZP>Nܬf2 tt-16%([2\ꐹbĀq!KO3sm+бfLžTE* $ > eQ$b <վd\[oפ aX: @ALyqCB-7֙8yL廵q s$ -oч_b%)-80]pDh`ѾkG .jk[?~ҽ -][SqkXOuyۑ5+JefB&/q6 Y%RJ|Ua&HΦvC <䍨%Ș9uWj?Ξ߉qc+)?V~ӂ$-x"2}RlV_4mh#T/aڛmYFIv-axfK"mɳ3/q|,$[Ps/ϟ@sVPl_`-5lCG=@0(1ؔ V^[S-1"g3}C5h4soߕG+m -,)VDӜe1sQa4EdXARƿ`YbmSuds^bCtMUee9`L^eWSJ1 qU>ݸӃmW!haxݯi pta)64Ͳ/W[" 5gUM& (3T6z+i&ǎ(k^DQH0@$P$i#E.BF>-%kb_X16' b){Eb,Jve8qEDv !y~*a{S2GL8f ~}"J0) CNSg"g~8P$5 N, kmVU2茧|faGmS( }{S|Lgw8緿.uTQ*O񶵉dUՖIUzc'ev4df2z^yGk0?_2}tv֞_|3EN0giULՒO9>X6M uVGW7>`)D6EuL6V;" ߿]> L߲"PX-PAR7,Hq-{q6~g!$Mt+W5Y1YnQc6%<2C֚̕>cc4LAemax\|8~\KuwPanok}&AvjgjmFN#q=Qʮ+¦,:ny8c75^N)?\uip_:bzd'n,[CgZ]}[:(~7@4m#z!X !A[;{Jp5$-_ṁSxI' ryl#zB聇pf s7,jG!Ny7RR|mxR+ܳq6\mn9| bD=%8iJ/3;$4h;1$LV0ZE-ѧ]ĩ_KHPzk ϗ5ۉdWOj\$B)V>!A BeiHAy o\sr"1ߺ* ŎA>}4yeg̼y?]Ѡo x-^. [6aK΃=Hy*uʘCTH? ݍ_I': n. 5&UK^LK6q$C)֗a*oU_Y+{P8~,,K9rbPs|P8k{?wIi7J:NHUFL; Bbd W;Lj)R{fGOIh@"]1t8A^,͗`9؞ng?㇭[O1uFRyz,~%UPWNHjLgDq%XbDA3+P5i4sű;5\֭7s[q,[Fdž>Nᱧ`XBv]t'ɟSM<C3c!w5/QoT&Uyw! [v8Av7F_PMquo$[]\HuV*rШ/AA[|+$q\ŋ~ˍÕ &3Tp% :c)=-}f ( qo1 k5\RUVso[| 8hCSQԠ%nu`+AX(=zk) '61*^R0*BI\Sp6ۍ%] 0|wrgz#a?ovGz] ~' -JY`Pcu{>[L4S_DhoP6iK7$޺쥺H.YD5#+4+3PwDڪIC<2 ᰖY?ztVjϥD*ނ qI:[ڙV9ANO"fuњkN13u5rFe~9[ƌ;ީE_;^i p-0\ z?Ft1)Cn )n~⚘0GuZ@:W{|2fO7qChu:j$ L|B4w),Zjn%Db:a^l㖛QM!A2'ϥ\k_4Q"3wmG41E[JE2m'm;c`U¦P]ל0"j]f"fbXWU0ا倭TRnm@3rajF6@_0O˸J'i_AYk'TIحiaV|yFrjs-ǯ9x$ͯK}btU"4GW(TD]N@Ip8y~4^f HPu7ZӅ8:QH>9e&$E.0hIdFj84QgRa|+hYHKMn:XhSw'YnJSٯbW0XX&ck1YV(v8fa)r7&k=<}jOR6IlpWdq>:ft$д_0i6w +b_\eY+j67bLkV n 99Pdb2;?P:#7 {%bҹfw%!#s"Ȝ 2X,wkm&AHЍD"L M})}p Ln}LpO`n=M*qАTLdd ,H*JJGq/PpGٚ%5]g PC3xlv`^3D5t1 IGƁd5/_I)HEa܊%!/BVcn[;ț/{L5W?*ߎX ^;gN.6IĴҞ s@cLnK5RYK#D^(W^k뾌(-NN/6 "mSlt|;ۺu )EԊ|7BE&/,[~h4x ԳM0DQhj#n XTJ!kZ ˙e5DyIbK5On[W\K5Slf}V.nn|fǎUkg{tI\ZMFlKd %"8N9G -F?;r Ox SoI U4h/,H`ZKF&a0C2SdbC}R^FikdLv(=,Ewu.wɅOxrF4 6(Qr?@{T3P 3r\g`Mv 7bdJ]hȋY(էFy\R@^5=WS!܋PK&I$pMj*0F~P(`Pz 9v( nl>Gx~n^y)4$I3CJdݙu s<7@*wNkD᭔0KVO^"hF"2fݷydݩɟҚm`i=jޓ[-Y#5w,vDHmX)Dwțnס:1*r{$kĽJns"rvе@ʛ6 r3!fAZ!nU8eo7Wݏ˲5-#ƪo 9ȑO7Mc>vYwĐI' Ou1 wc5Cy󈡛p 01?&r]=x1\~ ivۑ,+Jn\K_^|&p/P1܁sbA|F# ?Ve>((S \3-C+;!Ӝk~/ sK'ltz=NuejUar}6@0ObBx5wCΕ!XMw;=Dy \[͒%-K"6_~;Q8;!.&q0obb@xNJ'5 eͮHۍH'/Z扬4 K-@Iǚ/]rRhq@Lu\ G8[r0/4P1cI X\[_,5rjd`3p ո`T\;%EP-7%G'tܥZXwFgF=ØJ ,X2խ9nKhT!j>sTו_EFG̵pBLmOsj$U 2sqR^s;W)/H 'n󶯥 s/)Ťl5IP7Qu`AB4M|<.PXY).M[Oo}BxYv"Tq A*npK3ͪA\@5f#=$*>z(>c/KNuzqEүKφ=fܤp&݅񅲒v|93ⴌwi՝Ϟ,!Ϯ)ڄN(J(_WU@ڔ՘̮ ?\WO۟8+B.p!4"Tsnk-EL'gwDG 7)c_+-jz=pD塣{lg 亡H%?%?fTa8HE i[V+%n]-O^7.>:Wt<7'ddIΑKǦ(@%fR;K)¥F}=3^ʈ]<ڎβ0˷X {eACf]qMI9ú0O"5kϰ&Y : 0upnr82| (. _m$9}wiX۠S0Yp(}R#y i.6 b:XQwl*Ы緘'O9oQXiwO\wEdH 2m!iIq򔩤r)>P!9pS OC DkYP31 ZTHn2`>^F-b@.Ȯ sAt?d;i%< 'yV hyc9JbbQ?P?LxgK!78JA|3;ݜ >0tQ6%2N}-D @ͶDT)坭js *i?)u"ТeN?'C;2gJ|H\ ]x@ڏar'!KW~:bDJ}( f`s05"KKG"POPGڑِɾ%!p]1pd2fxHyy\XR\>A ּj챁4/&ε"a\4Ȼce3Zpbҁ`x03 M$ Rt W#9>S) C%JGdô [;]yV2LRS`|,z6}d_bt<OH7?X^BkF 54a. HaB;7 S4%v+˾MΘ|)%{|ЪfE\"U'ˋjKdkd(ۈLSe MhQ!'}-AJ`xՇ{&,gOpyţj_#ؔ"=W/.6P٧ ~}%V;74ΓIRs߬mTpoPm j7u+"nܹDJD=u6K@M--_|Pk߉G1c"!| c߯#Xds& 72l@ϊܛ8k0aFoB8JȚ*bHh^5HA=&"x30DF΄ ,wV\XD"M?,S6;o_ckpыc I0g=]8i$9lmːL?*vA-ZdIS &[MSG̋俊 CXjcipy%%r?%j-:?OZ~N!ahS 8(?9`Yxl0!1mZ} Iei/Ur E;;²F]W"v.cN]Sfcŏ6PGNjōۜe@X/ RBw}%~oT!w],^ʴPW۳Νt)ڿ33<:YHu.ra\~xPa֑_!ZJz/)H rtjwW5cC,KfE]eis @)uͮOXk(</'-IwZM^.o ô6KcL2hTHj,2Kgrm> @NH{ʈq #+gO=FQKLEOLP#j{_lPnHg8y&W23%mڂJv`_az5J9@ȋ/!9]Dc45_3߅M{Eh$Jp[ $IJwK&z7av I fMρt X6井B$VYS1*A9o>8I KV6V7;Z!=8gS2ZAB1A)bLf拮ctFg󜊃f\Ņ\׀#g}]mB$PkјBJr@ԟcUַ ~oM#]SJ2 gā ]e ~i7}FER"ޗe*N0b<ճ3]E:9^,w+^N? ލwy0Hv"Na煮@k~lw\?yq#uqL`i#OIIkԖ 8yԔ]]t<z$z'8n;4r]PLu!k Iwp)rvx7=,5Ci9 ~i4$G/m]}VL^ EȸSkO>m6Y:HBJjȪ嚄wXc[D/mQPf r$9gԢ͹Pмv=D*= 9$8~f8aiFc2iwo!Ҟ0k5J3};zq9#rZ#z@tW_:SboAꂌG Uxk@p^91A-),czl8G<s*]m%|so<))hz+x$x.QUO5̤\>1ٮyDSι#oZ\O Lք" DJ3YDA*&n2˚NV[d/y/x+\*@T^ry [pX,l X_e{JϾF[[ [)G61V=P bn&,UpV!>[x@C]-,0 ʝ4&}ɑ֏h֤LY)ǐ&O%8<n>ޥ-ca倶X2ů\,ޱfW+z;FYlʖgP ;_#髞_.pYjքVP.Go*ZX:Xh2-_K)|w?֙} TŮ>dػʌB%|O%"<#a#͔匏jH~NSɷl=GwxrՈu=;*@&O$q~x)7I?#LQ"2!1$4eV^nգTftW$,’e7^pG!bjJ+5]+S׵^ECj#<44@m}n_E[ )\6vWt^ŰWW%dDr4֟F}UhM3Kjg9>~O%PLݫtMK_]9;VVҦfky{e1GOEU@ekU'Z1{ I}:R6q?_o%]GNF*>hXAm?jZ?$f "P7%~ݺɟa8`D3ĻzUqpz * KªM`eVAK4>]lW9VE1ܽ}WSo.|#YIXl|C1fGSJ(Nyd>!3&ø.aTK뻱B ɻF.ї-Zł5SE7?P!o$-Ii#*b<^?Z).tYa~lfo>40ܹ<3+ (B )/e z{:gàpLfd@KUSٞ+!8Wr;E=9}wRƎ=K}Ynu{5 r;Ux:2%*.k3{g\\/#77eYcUk԰)ebKPOE')p}f@*s9jȡzʹP5!4i ܸFR?d3QƲ[%♋1wU& z\m D&/qp3bf]̅;]śyPNJ&m61p?SKYMUwmᎦjW w:pE]>vjWwjDVS-526u.†72ՍralnUU]Iq|גVP; Z$HOMK$Bh;bI</cW:z4./̕YBe~%oD-F<9?!|䗙LhZ0Ƚj-#y&+_+1oX6˖] ,g8NLuvȡh]Qj%p\O;Enke` ]6_*Xɢ,&u&8=3Z2 Ի+aQU%LR.@Sc?ҌUl UUGʤX.T@Woyms羳) /PmQ ɮ&)@*E6(rG/ ^>1"OPQzgօ/W7GrlD.*J!]U]J#5 no4SO0+FoT/(( ;)j3{ƩX^43@8{44a"=I!"|+jQRAB`E2]^M!',=nEZ {ݯoBNG7d>SyA:|njH' U/s*:݅$t5pG1-`7Vu۲R94a@Aj cҿ#tTw1W͈ z eڲBm=IODcD) I(ɣxDPH;'2Ϧ_dhf_[c1$5} lMMYނaT:f;[Kj٩)`q2X1 Hɠ}V'6Nh_,8fWkbUP{Qm@`<,Of赣͵P"j*My;r=dҀ;)N8* Y*%C:EJ}).tg.\)L35]57ڹӷUl~vK_wsMEiۊgnn<vJ2)ť8xcB=SAvСGb+q8U}כ}&dfv-섗Vͅp z=QJE9R15MzT+fKYi5fhN;!8wN,wAQ^SĘ?I@S18i )IIE=N"-51 6&R+6[M1Z>,t=# _fqC!W鞚`"9lXzp+DNĞn7M1cpsc󵐿Sͭߔĩz6 6r`$/ Ϸ0 3^Z ~[ևޑŲ|#<ʄ 쁃 E*cB6j5Kͩl0)#4 "~ Tb-^JHr}*\>f:Rc'gimW$&kwe8kn%x J /^jl쟖&K)gy-AE 2S"՜=?;լտQ([dV--~frן\7iÅj5XuO,'TDqjn"1ijWwnJI%wIqѝ|녍28u u6 n3୸to^EFPW|.[(|tlnQ҉ *%}doI"E]ŰOGQ\[20oDN|x2XDêmfTkYCI-«6)puZͺn|=g_&VߑZTAft{Y|e6z]Ĝ^ [ H恻q@&gX.+ʂd PX3uPf+XLrv zb<-/%eW&cZ)+&)"Zo@.l7C?U$P2=_ u9X(:H.i[eȲa 3 x@5ERt3˿m*8՗t)z{-*s86"&FݾQ!7䃜elHJ AR˹7i4}qc7؛nBԧݒ\4nNN3AC2ʥYbRe]L6*WpNVd9=)>/qƭ0Upga";<\s P B0 }zBVOډ%ul^4*X.4 (o~TJ]iY{F=.>9d&5)O6Q #E YOplM{_XtcS^?v}"gVNpK d}Tqٕ, d)!p*qс檁tB9l|r FrV+2JtOJA6-2gބ,wϳ#;9| 8:T7R OQ^a^BP~zM¶QzJ ,JBRLٮa!nY]tL I3^//!rvG1\8Za`TkGPo%P}1/WON}W\A,r- !:FhzeJ7w0Uy;jU6>YuaU7[lo%gUNַjsڙI:UcE;*!$rP*rQ¼ly`/lX[ƻ>?}2†ye! jJU I/QZt*EکIpL@joLeo1d" %snnqwJg^q~jcY4 oVKJaۅX>E 5 UH'.b{'Br鵊2>Yu:]0`ԙ:V!^ ֿsl; 8k Ff0 bꡀ'|.kմB;W7qw[? r!٬-an6 j*Iqu#?)~fnIZhUJoKe@w' 9?$4g9% o\K]^y7ʎQ)5:Eav|{穢кEK%1oWjd܋YKL뽊E+v͕m$.UNڪ7Nn#;2K ym'r&B$z'v6&@Úx{w:RO_)u/ޥ#Dh<*@ A) zo-Lpq_]gca`!'D96w#h;la2T^!|0h"t]sIJEzB@cZ Y i%r7qMal}7Bg^qf-O}(nvQfu*i=ķ>?Wwˣ7Z ]A!] 2jZLoFyIz-[^Si|OMJ~P@rǃ#8GU;J0"hs#V3M!Þl)»KY ΢_T{YLC:Yڎ5fh *k_~uAص.x+1?R3{|.Ҽ "nh(,#ãAߔ$nf{/!l[`5,LaDk-'aap]EN]-7 9]aK[K:\5WnLq\y=PmwbTu"pSv5!T]/< ^Qj.c.Q{ G}jHFU̠癀5ҵۗrZK1BY(s(sV贅s[US_H"r+,o[y(tE556?*"pD:3dcEQ #s#Ne.jowr̐pL.1n,̡a|-|F,p<7 Vy,bKQoa#hKz/YK'R$:;Vװ<4qNfaE4bhw_eeSm-b&-%nNP t!wTc5th#⭆Wk~ WU{(LӣрDwuQjUbNqN)*zqoRL{`6~mW_b[ c\[ه-EL)ث }Ksb78A4%U قޞ&6fEپ<;ev[Q ;\عۢUzt @g)}G4o뉴"?u4lK}SHrä'[,]TA6Exų|nxts{,|/z7ܱ [7Eo4rر8j*ljރA%| *l1pg* h;_ ENJA1820-xĩ ^ vVJ:9q~')C?vF*!-}e)h Y$؄ƋƙI["Dzjr)j,r{Ea;Hm&\sJĩAPzɇ;N^,EI9zi_$ #89'iXw3p̊ŠKo o"Dļ+Gl<`YU7r 28YEc+Q7/q^1|8Fƥؑ[Iu4Ryy.FBz4MQY.e^D1=cg-bL[B*>]6ReXl~Ӫ4F.M%uo!#%eSatޞVt(FN0 Ch3e&sc7&(fn-ٖԋ;Bu6nvyy~zD pq%V TH' HuH~T,:kPy;GRX׹if N0s!'\2 n C1LG;%)@W,YS}( %*K^ #);.L wbZLY}KK?Z2ˡ!/税a ="ǣHAOOQbM{K{Lz[ ?$7~DFʍe%fJrRn+Rx1.sJd  4+\UjL;9S R9b0Βq#'?,eKC-=YSmL 6/x9:XyϽw'n|0ߊ֍),k& "<7*C5^`8ZRs1MJȍHTPX08ޘ/aLE9> 3jP&i 6qƬ3;XItS88'h-(>ʮC|uwU p5-]D ],G95=,:靊UCHuFd}N;r]biB67̓&"!NQPzp b}Y9_aAu{[[2ʕ+FҰ;m}rj1[nE,TbbfC8c>ې-2 ޛ &)!-?zRZ,n8q*ICn7{ ||'Y*"gQ&pF8O0\LКq /u:Qw?"=2qJ+,`<ѪŐ̘PF!ۥˑ |TԄM` 0 |+5_?bG26L];[0 ol46fnzm${aܮH3hf+m|nzƼiLx;Wֶ#G!*܂kB7 R_cE9t^!IdrW6EC^0a^ˍ˲7ZfpB_(m`*cc% >+IrѠ #'Mlr9ިOxfy6&sur; "._*["P-q Itzy7u?3*Qlm 5sOX)1ZRGNN҂|3;2H[f#ŕMwGy XsU/r\_A*֛ƾZl(s7 H&^,_}~ 9% 9v(a-,$/œ 2)D.ںPnHqQQ*҂4,gR)Lu)n2E(ϡ),hՖG6uFr$vI.P&-:"Y$)=4ſP:Nu ͬI@zzځ "mA,?6kkD~liO;/VD`opޢV^9E[w:hz/b+=JQŚg9TLLR`/ĪKyz"~%1"I&q_LTDެIr<ݯwrt]L04D9O@L)2NzorW066I'>[/2{q'K*ذ=*(ܱ?5P}oL[0QR*;pZ#=MI<D^v/$\o/m E\smEw5uh(THQ&WQ"v;W{w7+C9p[ B ]Pk]wqwGͥD)Gq1H$FU6zL 곸gv{B0'vZpW/aQ} 6GךYTN#;|ocXEFM9߾ɤ,h51F3ɕ "awhP"!ClS)xL 5}j1SrTuwB݈-j5_]Nӟf7`v#>OnM`!QuJm*>[Ȇ-,{؄ `B(j|R3{*^@ҹ%MD©3ZE y=qN0%S )H.FgtI 6|8JA'FLd"rئ-MQHoy!^F;8)fn1x0!?Q=y'g{2eu|p=L1mEAJ0|rmx6o[uPJB/߭S^.ˎLNػ wѡGSaʅw;V{+L CJ P)v6E7c\l; (A"O_8c!vdҹ ^?#vJ"FJBMM/n\M7[¿<)HM~z֛&*0Bgh~Q*ѹHvYzd۲n7 v'?O4ODM]5w:2%8Y!vK|] LWA^ŞmB>|-V~5Mpm`J6%kG$l1ҡON3 g7 .fMr&B X#S5n\0dm'$L^,zJ>؂q>]Cf$Cp3+G֌>B )餘$ſ2]̞Y2 1 JŵR'+dDSŷqt5&Rwfl~m P寮UݮIZPJycp~ih00z| Tq'O N2e_dsfvM @W%{U6$,CۛĨϝWEa)Tr<g8rj$/cw[eJnHVM閔yw鑻gq<=TBvX|ItW4P| b910R{! ጘȦ\,)6^ga{U}I3JME"7 L<ɘ -ߖ5nT@TW+Ȗհ NG"@5al㬏泻YIJ?Óvgͤ #ލ۷R+ާLY=c5E;ѢBq#ޥ5ՆP.^#^ҿu߅}jp/%5$En)ѱ$vMeA$zJCNԟZyE2ͪpk:Q<ªk! |E$VmOQ w]-n,0LL?IoʬN{}JRv-nY 5spy}Ad",Yۅߔ] C`s>|J$+c ⦰`ar3u# KG4܋</ dGS{+* Lˬ5uEѱ4 20mxa:W3 o6BDѣЍ::IW"]3,Yw9VB7:@& M I#qYjH)׀V[O0qEʺhۅ.߽賴:Ƴ)bs[F?An3R[1Xݝ\dZVHQ* hsR4|" T@v`xIp!ۻN ݊Fkt+:4kq Eh:=ջ!k Oq &;>=1$j$'\9ufOr+onL6*vyCWFoX .~kc~0ÉN=JS]if^~QbqPX8ه89`c|zNJ⡄IzJג;CѺ5覐73Kѽ_{X60S\NV8dR^%PkC\Lϩ .={ AR޴xqXV\ՖҍrѢs>PZ9FyEk/?Py!WB#65ĕm옯p# ],y'*P-N. 饖[2}9ԓ45vHN߅Na gj]t]Sf ,v-F/O;J-[. xT} 1w.\;>ovg&Is#m?}" _Mj3 zqD$`ڷ~ 袏+}eJG3ucع?ڷ^y~<^xۅfg=۩1%P6-^=ex>55t>+ATՓZ;RZ\ý?uffѹNgA^v*M0ۧ虉]MP $  ML(oaڳѤ#IBk[tL?lUnbxR 1dзXuM#-L"p,L:4tg,<6O7Cpx]ĕ|'JQ1Q8_zt6<*R]DHE/wm ~|IFb"J)WJ!$){.49mMvjn{`GՏ~ux/ |Q>̭$`J3V)fZVcFNxLOoM!ILq3!(x&49 W.vbl+QEOÕz'Tװ-4,M\s*~>H{2Vyƭ߃H\;*Tۡy_ xyL^GTR! ׬9BM>"!P,j:ّ4ã!1I ʊ~.^GBiTJU.>YY+"t|48j_fǐ+mWjtbO!GEZ'lY0~bF~e\4] [xGl狤GgI~XU:X]=1#uÝo u*r,=)(ѫ~M1W |t(S_֣ Wï#qp 4XU+<*d'%4V7}cmޚ.M#:ȵpK0FXjRfȱPk]~%S(KuW<25,N Pm,L mO4G5/IÂ5ŸDSӈT#Q˔`O̿;DEq1d\iu_$^D.!P~`̒=%yfi<fpg>aWQɍL-p?Blٜy ]0b ht+6YjǒXfftkx Eܽip AQN{JliA.|3m ^~)mG;°\n$`(ѰW ԣcZ6de }QO5h +oUM'#+9Cpؐ:o|/ej m@fSA", JhV5̠v!CJZs&0Ȟ`-Quw 8-p[[b*}L+쯔"c*8lȯf>k W$vɻioU pՓ#T)@g87ҽk G)58Y>=M-QKS^ P6 ͌/etkwfGm1+6@:0X tcؾPJ}t`=X-[ȾGIdJ%=R,1-+:-H3]X U@2댐 fV[p'D|{K'<lBGhīKtckOLó"ggT,4GdN##+y˻ a #$w[Y!Dé~#5$mzEzzecoNvVPGc)Vy)dvPO\g9w;

늭n܄FN>Gkyw`ܹtÒ!}:P ʆ߄I'~VGn@~ 02Ib&J˵b|]Y/N2y=ްz!&lN4rPhp|,>է|WvpVjmqd&ԱLq[V(߭D- +J^L8UfW`!Utn뢡G ;k LJO5T?X:@EmlPZM_@IWC@e3d GsU㉾ ֡0 *mp-RG:wk_{ex:쇽 gs!qr Z1WeOo\s /J+6BSGSbi߬E2ubfyHGfD;$ MWCG0c@4RB\u>!UvL TzphQƱ0>w Zެ<* /݇6W' LV;ߐryn/C u_DǣRq4"L9j\v.F>v bhl bMfujU2gE(R d00ul1$8-\947pOL2UIM^SW3)U0~R!Z>WL7k3x$bK"%.* 41hΏr+ߣPIMmK Q]6~9fd߂+I_yq)8X6f%ヌ {OKwhHL'_-I #M<62' F<[}0y{m!yD@]tz ې͊CeMr*|UU6NC;~*$jE|%u ۨ)8_į %HrTZBmxI\ /jNjd[>U)b-Lo f Q x<;;n^iq̈́sYʩ N7B[3_+ڴ b m>7ő'kI](5C*w]XkDR~$RήMW9FӈklV7K] j%xN([ZX|cU;złSSMX[ݗ˔JQ"~|lAt@n ,E5tY<0x {. m86^Z:τu<#'qSctgWA[L b!Bۧr&62 73F1*\ ‹@ ~P94 aBnc=Sy05 }цG F>-lǧTs3GLoakP;+<V]JF=(DQ:*}1O׆oLU8*&w!{YEY~Ս1jk78Cd22Ef.'@\._{]Vg6Bkw'zX|@1:[PAW˒@Pueˠ&(Mf-bm?jş/&) &`*]sZ ׺\e5 O\a*Ƈ_Eo#([.HF|L(ܒ { o]*/6(IywBѱ_%\2]a^;$z±Й ٛ5z&`L<Ck gu C`.(>O]5q;aIaҡGua.cLTlOYŠtstjo2&9>)6֥1$hy%8zoTGezG!l܌grְMwT5LeU\Z:N~jp #VKEG" A-<f_#K O>`Y<^ Ie2oT][jM#S6+pIĶMY?ǠՓum͡ XjyRv;V.Xǽ1q`HN@$hLcS:m]=یa0#= ]6H_0 ۓ^%%d'ztDY.Ĝ!16L՟_"0!IV9')6%!Q8,@}N2sgaQwEOHl6K^!{w"Xƹ^:99o\ G,SMPej =M?/'hwky5gRm?G&'g`VAؚXLCLmj]%&ɨrGe @vo"^Mfnoopu9.W3u(-1"k4/%XoK/oхiǪ^};PvW##qX8@{ak\1ilƅ\6{yUN"TYob)8/g; EՏ< zp8p8\6>*H U/Iү4:@z,-Pen/'F;&3A+igPVxI *MxȞj,=].#gV {/FAݿB7|jborf [%`F4lWJg'+p;ƜWݯG*\~#f֟ê})m BT5+;yNA \[\0Fw&/D;{yk/)Ns:+ 2]DK[QzyMTD =2#d;+X^-v>'RtCE* VJAamM'ֹU[ V MN|O~ƫ R{_${[AE? c:@E,R/;YJPbQp;b1--L?0.} zhk#$QHo/v$ UpJB.*AVI{ga;rlH`¥1@:;lX)beae4Mld0"N7#g;=(h,!q\϶hk=38;EgKf*؂&؊tpCկ$+(n,R> {Or_md S?JҔKkQ3xn*1?'I9CJԔ12db5ע lLH4]Yz  0Q\]- C8^NY/v_Ic 16mm5C*LSd,|%dhE2t$ <`X`ɵi~r84+rٺ8$1%44:fY뱪%ѳ5DY|lwXWY Jo2aQu(>SV\}pv#2|-R=Ӥnfx%'LJ!^WQFB Pe.sl!a%$FlCJ8ο|Y'Ձ- ek2ORw١hu,Y{~&~@>~TDB0~6Srf\IZ,L8zV V"ïpa6Y2t}& fR!SX"k,L[p\1uj\\[O}I 0+FJe\˼}qqT-,&]nl6z]5:Y3;^ڋ`*Ր@[+l1+Җr(7u˲_;3r!(f.K Mވ`vD?s~fŗ 1++I~4GyI":xjKyL4\(5dǻ=CHWʍFa7D-vC{J٪Df8nU*ARL\ jE7jP9oS^C"ݶ!LZ"qz`M#RφUzG*Z RfEjںŞc@pq rg^=NP'H\#k I J2r0?>> R.3L >n2 nk\#O1D~z^D3@'"rMBΒ#{ɡD󎳃?EΛmQ)M_W|6.峺$)h+o}u)R^g49u?` f;'dys&oG ƹA gw0F-~LN@ 9"d8n'_%#d19}B^''.s],g/@%V14uZ/{hҍ0[YޱТ\ztrȨk@:B( cňi&]3Iˎ@dp Jk{ Zh~jϹ_iOŒtۘDu`7˿iwB2Qeh+mr0b`~߂X$2H+HS.;֧BRM0ٟb(b/~J~P?1X]7oPC$AVb+E=y%K9KR x_ f\+3R-WE6z8 2mM:oex\HQ,jJEL}ײeߗOC;B1twՖ`}0_VRUzfw :TuO=K U*O9@6Z~8 D1kny_H1sk!y`sI¹VB=tQ KAPeExM?mۂ8()wt31fq%T79n" M ӵOg[ܹAa]]<XazZ3J2B\ > Kh_^HOַxs{cpkK ?GfJ4RT`jo%bM .'?a:38 0l-!ӑuA2{ivVTt*`Ӈg~b[ɳڇzC~Pco RS`~/5SĊV14\&As:gE8;77R{#YSB QoG:#rij4.˄W9{Kn5B5%;۔dsAQ[LNr{q| V̭7|b+Rn;aO4`I2vg |eq"#,݇fY-nR Xنz n$rь$SnEtW- ו_ZD>##V/?iQ)_s};+)Eznnĺ#$M _&=c҂{ad5GZa(*8}Oaud%WyBm0}=>po\gZKs3qqbf8n:XlFnvcJh\жOOŸ+rZnQ=@eԑ/sk>ESXfPTX ^v|_MfV t`/Nc(dekG҆6g w=axMQMң©Z2=mPZ3TPHFl \Σ}{>=f^wYKa=iD\`xv?rQayxsh}66;ex!?;^ޖ+ IPo9Utb'C۽̝vAGMñkjbpd-W#X*Z;\ 6Zೆ=3!,1MCOǂ)\ͨ\+b(+uwsWܒɍ o\]wȮ߄x{/M?a|'xY̋~] {ιY`87ER;%w  yה.BFK'QT@SgeZ"TJ9/'t=ATIVCecb}KeГoLX-(P f6BX[m6fX$e˗vw$ן YB\ЊQC'a|lbfpe n!ӆ2V݆v٧iCly~6ceJD\&oiVy"L0SKLI\ ҙ O!cF .>24pi'g*d.c+] K:N.!mPHdn}=xQT;a?|Z ~ȐS \Sq;-ϡvvhHP|}g貝[TnPܾKpg0MM,m/b8?aE4 ~Rӷ}Fٞ#xz`a#:W" T937 I]Id5Șw'_w(!09hJ-J4UdUn +bTnl*be#M1lBҢMb\#27/jZ )T&6PU[څY~Ig/&xWkwpNx3 p+:rN2,ٺqqHgZU{B]w;(m1<ogwFmbSiI$pސl?zB 5>PI<6ɯjSĪ7jkDΏܲL{#mA챂nmko+@X6تB$Q7HE|6~vE5^Ai$;25\\#>6c&CQ.1 * (s*n8_%|m}dCjZ'dyouFZK̈́[Ljv7j2V%l$3"gry J^{G,fv!ZcVL$ȶP{8r]`Sی#2S B$`褋U*yʄ,*(}/FiR?~Ni;Pi#Kꄾ]MH5V=c~*\ۖ&kw/\u+y+S)WHuW+FrVz3Χ1JXfsL"l Oۮ G֮lBu9tmݙ]MĔ5sh[k_Ɵ~/ SO0&i8ܰ3Q)NM`lO5"Z: ̺0!5yңWt~-x6.dx&Xz]'?)e?=#N[Qee=5*u`zߪX 6^0\LStLF W@6QHIѰcto {LpzLe."]P4 -V] pL@YIpق.%\vxP0Cɠ`Ā&}O1[Nީ|lD,ozf㍂H_‡BS잪j tC^hI X~6M\fK̺p qInG82L@w>pbX?1f~XuV,Ypb[fm%=kѢ 8R!%G1Gc-3M}߫%۩vOeh 橌/őXa!-u,|Yx"u$.%GJ.&1 p:_%$ |`qrIE:] FQo ; @*R5Wz>  YؽJM&Ls#VX7r|E0^9VeQC+eDៀ ?b+qI>k(c ^h=riw I"etӾś\&ySkB36gdvXObuDEDGf=1 %V(<@PĐv[FIХ\&K-ېۦ˸;Ora,dcٲh`+*~s˪4Oג TikpJHSqVgktz4/?̯kܫxh1oQdf= o2π={A>j҅ *@lXл<+I̻ӟ˕f<UvH$Fe5E0g ՄϽÔ\CZuŤr9`pߕXKL2~ޱA2 'zJm+)bwjf$?Wt: q.\T2x0mEK#RL` tʆ?F\{;1aLQg/ gFK *Pa<CvB$!}ܳ^M9A/ rvB1ח\*f8;mB]'m TZDyg8dCpXG]&VF.k} V4W/[M 쪱`- y[Al/B@8.U3l@ym@jX2 DYS'Q 'ޔ&7 H[Өq ܦLh˪nHc:;%ɸtJ̬P7Xe1/VNJ6)N^M'N$>6d:Dξg#JX>W^#R]<^Ӗ · u7sf@e'iQb%4E9VmתYڧ%y$j@=/  :ΖO(#}Շc^_iH%Cq&zEJN߆@C?*$s7EfreW}{z_98geeڪdwM曢VܳGebײQ٭I@:ڒ<ĄRWv d Y?lm_4k-e,tAp5W&\bv[}I^s ߼wZ*h}K p0 E |J@˄_'6qH99zz]rUQeZWI)|R/ u85ؚ'Ƕ5կ3o(rN:OhjX5_Fi\f܃R.H 0kR#RlR+`4=M(g?kEYJ"p4 z";c`s%DžOS6ETiA".6Oj?Vf>xJATM- m+%ʭ-Y$U/$[R(Pȿ'~y:[W"z?k7$0&CJj>nN\h ws)%]'!f&KTڣ-7=rM4e2+M2 wո }<1 yKqFI`=U =D²2ٽDlֆIv庡 w}ax"]'U:w%cFgpVT]eLl%4_6U-k|0 E̐zY Q jzV(îJt4 )q6C׶#n5?졀j@6 4>Tȯ[blS飀 ]6jڍ|^Kx@48٤Kj@U|,u{dfUr[ibȪZnL(]OqS[hP3sWPH۹W A9lQ#ȉw2I1â׽[JruWcI'xB1-{AJRA] Os]V[4t5s0n\ ]E$v' ܫRMvM2]^%΢(U ,cDs|p8ePWY,6XOP8*w;0iVHg(@&CGpQ¦VFD}={n쌖$-'$L?Ĵ#v6+t`y,fǞ0 Gh,jO|~Î]/?y;YЍcD)NDBtbFu1GFeG ʪ oՆ0^B e0H&x+9Rp}Vʻl uPXN>d,;>ϻA)z(|[Dz))L_lf\ZᨪoVЕ˓z]0t6g^< n`im0_h4TV F}6G'V+:|qROPV19_L` DG'+`YLwz,ve@dvX&6t"4Fx ('?9ޏN_V585jew,^ѪAsxGN@AROv t Dgµ_ Ja\^YG\'t;ѧa5Q\8j~)0gouB[gܖ4`{  rq.Q u!TD!RЃE{` qfqS!"85+U9UH!Q.ʪd%ZEVq~Fv1f8iǵDHB[Q_-WqLbDM})ݶO.sJ^iY1-fUJs89Y r?)̂EMN#Gah#X#?(AbP$A#AHtr=^[EXbc,goEt`=Uxd/ m/9%A*:1_m %:@D9g閞lu!>R}r]%%Uss֍>k՛,V= F>!R=P'h2bZ_ yg|h}J2o)Lynh t)ZOѣi)euQR;•KM+O8XELkP1wˑAa#`TW#wcEm9{=[ 4u<3Lg٤)8^6ܚmH!Ѭ /j,Ξ\OӯЪH2bxu[Q.{҅h}"-%cvH0pט f%BL|kCt>ۗz /,%M0@x::)#;`Ymjܕ[7!e%B_TI-tLXt4(CkrMJ]sM[6@T3K=_X`buaRRTW-YHա]Eš xO-v\hH>9P`l^sŔ ›>@&u_T<W'jȍ/4.>D2m@A;{KhE'bfxȢ8JoDc,.kH ]s2 [\_,*YJFU pg 6iPF![2N WA! R OmMiuͳP/GTaOY&Hp5d0Lހ-BjBH0KwM:[2#;uM'ZKy~HZp+k<b@ YzGAOi 9X0H$BPD̯L[I/J ~q'3Y/ÒC\rvHpbZGB|nC#,ξ16G#~)6sb|0|.NQtS JO]BHFLйyJJ;s|3d:놞8іOܗ4H -x!/n"aDLf#V]$(ё[_&^|s 0]y_p?@OA`ʹi#0a%]}0/:zy ֽ!M6u<`+Hmeg~~٨\&h){F#Cĵ{$>aqgBhQ([5)֏ǝ:i?E#0um XE,|豈4к;=ULBK"Э_f rdTדMk Bl{]BdghvDOuukV VwHa"{/*]"< %BҳfO^EKr \da9~RS\q< 6]w='PhBAP]RY$,L$4Ws/w tؖ6*iZqi/"3L([3CCagKj%UI'.I*P$Ԅ2 ؈EiDӈFC6Y_`7~%p|F#6tPcgS2~!QEbK ^ziXqЛ^]"`!,˗Ց!6HA> E~>55y6'NT֠hVJza4q8eZ\& 1؀S@YX6|vn>(!!l0h0JT`vrG Ϋw,\GeP!-oz~ \'Rx{:Z2 oE( S S{;D44KsT# NSyV' ٲ% PL=/6y⼎n  L@M)+q0& z1R%D[c3R,Y˿D>AZAswp=%/_6 (zMv}T3!T__[=4̓ r^ N ߘoOCR@]h3M@P*6/h tx֐#M&xo$s<pq[iqGaCdY)M,x--ᐈCRk,Q5:koFrF?[ 'q;WD-UE:TX_jŚ&Ro! >CXsMFG4Wѫ|}q_8!PYY#}S|υ66?v a!Q]5 qmM®9ބ%8xTg"j|L)(E^h."=1gBk QRFҁҐ!ugm6Wڕ k_; io).R%o ݂Cܿ"+㑵k |bU}s14W_ ֳaz6vVNEq<"p_"$Gs%Y\;i!Um?= UM _Z0kE~9+y5ŠyȪRB{` щ^WnWf3T8,b=]|wO1T^*{Xqy`kU)J_µ XµROSzc1box;k@G-Kݗ(ίY?+h7eHҹhzy~"pHڡTCv:"V. < (Q ;{nL @{i4^ \8dp C[=9ܠ d!㵜@0 aD4(Oyf&_YIae੩ yru\xie%n3C 6G_ql,r65mc }+\1ڕ=]o_v#{I#,@q=oٽgZh Y+m_(ĖL9EMN̵IEցͧV{Ni+g67c&yo[d\_i>ʹre6fzWPj ATA'ܣF ݪ\HBcUaAk_v =cG12e=tl- yՍlIl{.xՆw#kKI1vܟm\\! E (DR!x!I9qA weUxLG5]#^7z聸>.^]?f-|K ʝV׋µ*.˶nձ`׋;rWW  03tp1SK>(0't:bNX,\WijCVD 8ɧ{ZFS=ߩYwŁ<>RZfh~IrD9nJh7+G ]̓Q#&oR5le0:c:8$݋ń0!7ҦCHED_7wL[@a(`y՛&efުN]խXo$3~{259[kSUc 1u$uSI>(㫟^w`2?y\ƒGТ6EJZ3\Xp5! q\,(a@NasX?C.S$bν.$SiMVCDbWrX,;4_X=iK[|T; djVt8C4o%t<@Mo_^$D1S]> 5)J݌dx']˱ }xZG V;d֏&@c;HjH&fPg Bԭ(vq; kx'0Z<~=)k6P*{$broy6(*6; q7 2 hiL˻*`J0ݿ9ţh79_ 8WD >ܮN;7,uѿ |c2.\–Azu,& ʾ襡 Di ! 6_U^@bIL/Z= l+DMg+ q^!5;48 1'zzP-C4{4Q%1]RxBÚ=gs6/wS;ac}ܪ=^YW^`,v@ڀj$4WB8g8M;:0UҦ^RA<\XpZ\H(s˖|阒u%MlY ,[W׵е~Vl1÷IuL.F9 iJ ];WKgʡ] $$f(t68fe4<,?!5z%4 uDTǡ"5sC[KWj`CsQ| \EW9:`5:}X ZЌ)Su-^Q6XeO46(g 4S5E8z7m}zjBXgVo0ʩÈǔ6v_~% 5qMbȬBL7vjA﷩EķpHJ!0}P3[[dƂ!e5Ytgپb&]+B]l;Z@l0a BL2r-+ң~%O;hTq ŭWՕۋHg1}2S:?}{rZOsVpHLj(dr9nִߛʋEn"`jVO+LFC}jbÉ.m,d$>B(Ԩ=ñAjJ]N'§jq7#<+/+î)"8a?RrGmֶ Ќ_q#Ԝ'"``gjG˒ g7)]dK"\_}dbA2/?Fp]m^X⍡+#܀\3s@9y^ZV&H/}E,iMK(j9|M w*4>Įeh6$ܘHu/F32w>{e(sϼgkv:S6F.nVO* Ru_a)(S'?ӡU2y3̝ـEOOu\`Hs)9ԌId9WߜȰ# ͜ɥ栣$ƨ™o9wm2&rO| ÿd`)>-\ȋOf.k=0d7W ܮl-հ@u>@ j0I$Es lL>ZRwa;yK5?dz$ѯ%s#*T 3쏺"pQ]e;lrI,. xw1L,!E|KPH_ɊWDŽ)ɳ}RHybAhaMglnä<dfpJh^`wq NBQTia&"/1 NƞN1VHP0B':9́d2bպWSlhAe On9[)KwB~`]T4Yd*o D#* ۈW2:wPI`ãKS >oy ; <f]`VCEzςJ;e5tE꘺mBp4-bj;%Z: :*]c&^8@,gwk_y4.TWmw.ܪZ)'(Y#JAWOoXeuv s%'c1A傩O^9c's~bt`vO` w$]Z& /cSF1鉌iC,@kcOPBYM_feM_Od 3^{Ԍҳ"*,UB5rb3kr!͡i UlRzf|TD+?\24pH \ ϊΤة1 Q5]4;t+'.]ms~Aޢ?+!:>"GĥSuJ#6Xs'Iv(wGM_Ir{+M aWLD'YOiw +]u,*RI - g6PD$X@` &4MlTaէ3Iۧhz3 ΐ`䇶 Hu'nuܓrAQqy:4 C]Isb"hlFe!~VUaK`t%$Vd \D1a=hLt!Ha}sVu~ve#^8SSANA|XzZuzxmayT;#1$4{b/E?)B4>tHqCi].r d)nCs z"~-&rⅇPQUiD c*uMy-r7$N~D~S:-yvJLC\%d( 'vo{W{hAdfp9Cܙ]Uo㲡K&Il|[lkȝ[ӵi15TR#y#ȷ5Jż.ܱEoKhuP䜛DY`?\5xvH-t,@l΢4ؘ:p) >:{ xzAhjXwLZvٖzDR2̣V1vP}Rwc#O^A=qvXTGGݞ`vsA۹6P9w Ia R$~v K.j CK=_z7O-?(;x4HUOms; 52K qgj#3d_պD*nLe}7 }_N7p|֛ %fN"2;V-8#5TJԣ9P"^McŶ%)7ZEp:1q[I~ ?HLA7w@F \ q0x!@O7{ﳣy;*]%j.kEJiM\ 5$SvfUZ Q^特=2zy7ޖPs8QX%ױwgM9Nk K0T[= #'@G2?L 3}MŽRd1?NuhbM;h~m2i4qFXtG?B`~)kub{vm;xi !h_jdHCe :Ih 2`?L1 a݀h3҅hJu&!]$ >{7;vd;G/05b[>B!MI9#=~~M/08cOΤ|,Md<(b#g3c(wHG2GI_Dͅ% G"MKX7w`r&SFRW9^8Qn]w}`I>OٟF8N#]QU>%`4=jHE(j](4WZwPRݨEZj {y~Cxh+固Tɕ 4QHx=1~eHoD*FbU:QR{8* ?Y dI}u8!i.N_kǢ[ލ2DLkn%`8DP/(ެY(36cCj9a3~bf!q|o6%'N/}Tc+QB+ɮ;+P[yBVbffPÖ+:4QB.b:\]΂U tK-2u( =DtWZ˞Bm".{6Lgwx D6J,Q$ jur-6룷EMʉu5|J9G +j鬧(~zAˠ‹ pT89sR[Qk%L#q0f+Le,muɚ5cX FcLă͏K`R8_mrRGb_.?^=[J\Z_{V ^915\(" 턃NT~K`;0Wv9q]9nHij'& TO/MA%إ>~)Wu{ɽp4ob΃~^Ԟ Jm}}`f]XЈ@Ʒ:\| Z?Pk!7zdZ&jPjlN9_b‹YNa@w{ ܙ/$M渱EB)6SQT}[JosҞC"vSL~PXJ,|abit&ɷ5c}+HJAde h þ1tA<7+ɵniK@d'U &X(E@noQ~6P1߹ /=GC D'%6v~f5´Ur3R]Q,Ǎuja7/5U2(;l =˛iԼ3l\jmP'2fG>2$1%]VhЌZҾJ"lؿ=jV$#*Xأ E0WRsqnT=Z:Ů2(Y:^R0 n"ϠS*&QaWE 3ujX8B$*bY)H!@L0%W(Mbox_d뚁]K;g6³F/ڏmìGuMoaNjY?l)6L2^~q&AvWO{yD:2e˘*4+Vx6:ӷ0Jgshu+Y Rtp_gA+,7mOyŁӚ^N@bht(;%YXQbG54$ h\Ь,Hj*_&lCE(^m_wBOih@&TD6)TeW35Z*08»3(w=ܠ4 ȩ#1/k~.77Gpq!P(<a ]+ޔ2UM's;ѫf vtx+X'lxV͕i2ZuR'Xc՞O aZ' @]i2fgfjttX_Q &'6M'p)BW^W}G#hrdq͉)܄Tl4q?ؿkkbˁHX9k 1-ݠܿ;mTJsm~n1ipۺXJkc")o8S8 j^ZLG7'M4nXE`Ib, wRϺ;iNc|5hM綸_ bS&td{#R re (K~o"<+-R>S ]N\b_:fZKEW;'m#j{^`E`- (s^U.[,nWkrRWO4E7|YfNū^^L8pē[WAJR!ks;u2;KX=B8)˟V)~ ֐fLQBbcy v:0 ~8_ ubd=T6k]£* bBtەѱ*{"YZ:} zSԡyKHa[u!&6xevݸ甔(iiH sA}F²q,^k^tl ^MO#t'`kFy?,RoxE|8,z1,L0uhtzXNRm|qܟQܪ 't n +v w̏ ॾ!ˢQ}㨯=@EA1OK?;BT#2_/]6`FGC7V_oH;-n65yь;9SOxP&WYzNl' XN\AYqז6S'LS H;ML2vO.1㸝'ͼ#܏%}5` R7fxnPI! yd5^ iYkLl߭ob6tHU_6Q}f0`uNߢBݛ.߁N:{…ӄZaNni9pUJ.P[]aKRyz'vAc($Vxd7l!9φHgYH3cpyaԻm}+\aVo¼Lf)w؅Ngv ߛ=rirdV`PTB5ᨑ4vI\c3ftrϾH|@. z'.9ٮK{EXt羈plJ*a%IҦIDg~#[ i+i{oī'2soB VxfW%zp,7O츀#4e s] 9f3M~/ Ӽlؒ=P}bMd t)o"(3,rxB_aji}/Y!`2< 3  Mzkc7L.K= )'e747:Syn&"#Ǡq'3&46h}wg}۱rxvjn\0TDС~AY'V]4vsT7 %#TҀf?Uل S0ǽpd(7[yOb^~}4}=>#I]UFRUdT$fER5 I_^}&;Xj-m]L^ێww256LC^U`OӱJ#h_jܰ9q;7Jυ5!L6\'$đڭ/ VѠna#u}ܱ,L;dYZ^=+N$:]$o 9:E؈2x$1UĔdfߏ OqȯD#AsI_l-SX*GP}4iz`EvHXRsd+Ino$-'3ۏۗmv@_7Fqۑ̢ Z Idmy]] ?LE`4V 9~:pgŚI&b QTBT)2 bNK 5La'u#W(hs$Wc oB%&%̸yxRZڛFF:)ɉP8${"PR1|sfk}Z;VϪpMXB`a!aANSc_( .-N &Óv@ k}~4Me65NB;1FwS LUVJ,@}k,/rq}yp-#b0@vt<O|VQŠ5$| =PUߏ~s$.2B2' c̄(8^ ? v~ne?v'  5u…ǾA` Q! vOҌ9VV _YR$e> x])4s(+`'N;hIo|5߈գT>MuSQU5F3Nau)kUB8C}gH,5GNW!5?ds d!qWV#&6^>UEtP?fj˴pQ2eGO>#%j9Fc W^2x&7GL)d}qPM5C $N}ޠ]Nq_6j2Pi@E}آh5OO% y@d7M Q>/|^O 1@2ێ'qIjE4p9/!]] w * PuENtܬI֩kYDmqH6 YޫHX8Ĝ<dL\؟ĵ|'$Ħ%U$46x*ͮAn=}4Ho{k:T3"[2 v.<3֛=,@u꧘Ȁ̔cl2&oŊ&^ NbeLb"%|`l99oqnc[XPӽ\&rF\W&8;Ǐ@K:f J)5CT>]OX"j!^LCy# D,B4  %@zo#\[܇QڤKAM/Q{[贐&cK }ճyn? ܷ~H}劺 ]9hp j^Se&"#E>cbWq7ZtM0#=!g%;lߏՆ7%mH-zbb~[4q[#a K }IO+#ܪ"yrNqrA~vtЪ'vei& ε.!s+ l(LGaK ]JC?K_J 7 (WDieqԾ,Z:ҽkRpH]1,g.21Mio{pX =5ݟE?XciQv])v\CP ޿q"GBfPc\+1EgCLuW*;F+͵Q Z݂[ ؠVe^ײ&4C| p.^pMSٶ %)|I=ֺi  vS/O^$n\LW-UOiLiYRXHk#K[IanD(DeOM3˛773/(ȳF&{`?gHޖdn%L: {=4_[l420:  @OWoVaƒ>JIdߡO9ߴ`%w2XÈ:"xWLTNiQ/Z~NP zbڡ@XI;S>)NN-וᡧ Lܰ};1Ǔo}e@5m ֘qlu0.{l!]c(`2lJffg[|͉ڹLm;s& SvJrTA2# -iii:\L'O7Hbmq/"<3ʽGE565%!n_bsVXLS Z!!cOKBf3N?gY0.]sg&m==$5wH" }GV]?R!j)ĂU-uuт n3wV)F\)a49?bƓ]?K)?2bB@ ctS"Sz/|\ot _xg@-Iw٢_mY#0\XS&R_*jϏ嗼䃠Hz&(+QS+܎M=+TmcuVf>vAA{yOUՕLme:ʅeS^Chn+&UM2To\Q7!˗|ˬ֫)OLρćzc2[t`O(lesmz1Im~0 ;:匔>FS#:LN|,Cر&_Ufh~#y҇$RɊO1a L]}]wEqoX5L'}YTǸB1I %QF@8+VZr!=p,Yk g0 K/8m|,ZŊ;4Xxr9'OU͗?'نU$ 9٢&WgPt́}@I2ξOYX֓#) GPĥ4 $À/p51\Xl\uPd5'@ RR21fԸsWveN0r{«nCRT\d2;X&d{ 7S2{&;Uv[WmSo䞮 I@M\. fMφ|P@^9@2S"`ES!%%FFσ):3$WvQ qouX C\a3CQI}GC! FV iwAp%o&uN.E( ){In+Ư[NG/jj'}O,kl-bǤԚ`v%oD 10c KŰCx)" Hu>_0r1퇑6Ͳ z̻~+X ]a n}̗,NQ[z7dmu6"9%z;@9~0Ig)CrL??) t[f[J<9Ĺ^ "W[-m.vC7{DnY- .TK@*n-L>eGr4:}x %mp5wۢ:ڳg J\-?÷ٵ~GzTs9eFH4(cgZWp1C!6եj2· _ ZY"t)l,)3]DKV߽O-RCWXÀgVȦx3?Y$| %ɩ|EI8ŀzRzM)Z`8^{@V f"Xnvo<{;Rr(RjExKQ~7 k -s/<2֘Nhˣ VmuA"by*Js@hMB;?}#lEyjtus+iH$ `F@xl2鵀D 7)ɢ$2থj|fzBϭNy^\)D& (!ELn u%HR#V]i3{S9YKv*iZjjm}PFț?i3ppL tR^bMuRiRӷLU&)'4- šLڔh!qd?~ m3lmK@hKQ625;9R/A;^B J!PgT~:15HwQeSעړ)Erwznsfrw&X,琱$c"Z[`  {R,7]~6!hH#׆tr酡a.U/HB%ohbuh)6,^ Ȉecԫ$[|<NĶLjwM9$ ;6{K % 1=m|(%'dK%\zYQ0]78j(&8p💊λ$#G=ی{imCkfC– cWnsC-8a9|vιmB APEc'@"=_ʖ|eÔ7=x3ʙ4|C/dhÕx`[m W6h'wvT͹υ~`yz.nDx0Ƿ՘]xkT]Y 5-8^Nk(IƑqſYhz z"-tcq}u˄Ξ[5n)Co3㒆,U`Oj#WGd^rE{fc1_7"2 O/]+qx+g*fvɯe7w%hܔlj{> C轱 E8: YZ